As briefly discussed earlier in this chapter, Meraki Auto VPN is a proprietary Meraki technology that automates VPN tunnel creation and management by utilizing the power of the Meraki Dashboard and cloud management to allow quick and easy configuration of VPN tunnels to any other Meraki MX or Z-series device within the same Dashboard organization.

Meraki has significantly simplified the VPN setup and WAN failover mechanisms by leveraging the Dashboard, which is aware of the full configuration of every organization, including the status of all other Auto VPN participants in each network within the organization. This makes the Meraki Auto VPN setup a simple and easy to implement solution that automates IPsec Phase I and Phase II configurations to create VPN connections between devices across networks.

When using Meraki Auto VPN, it’s important to understand the distinction between the VPN management traffic that traverses between the devices and the Meraki cloud and the actual VPN tunneled traffic that carries user data between sites, as visualized in Figure 5-9.

Figure 5-9 Meraki Auto VPN Traffic Architecture

Auto VPN management traffic is exchanged between devices and the Meraki cloud and is used to exchange connectivity details like peer IPs and ports to enable the negotiation of VPN tunnels between peers. The actual VPN tunnel that carries user data between sites is established directly between devices like a traditional VPN tunnel and does not traverse the Meraki cloud in any way. Figure 5-9 demonstrates the difference between paths taken by Meraki management data and paths taken by user data traversing between sites.

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Routing – MX and MG Best Practices – Cisco Meraki

In addition to the previously discussed security features offered by the MX series, MX devices are also capable of performing L3 routing through a number of different configurations, including basic

Using Webhooks, Syslog, and SNMP to Trigger Outside Automation – Automating the Dashboard – Cisco Meraki

Now that you’ve been introduced to the use of templates within the Dashboard to help automate network configuration, it’s time to start thinking outside the Dashboard. With the help of

SNMP – Automating the Dashboard – Cisco Meraki

SNMP is also a potential option that can be employed for automation with any Meraki platform. One notable difference between SNMP and webhooks or syslog is that when using SNMP,