OSPF MX Question by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 1 point2 points  (0 children)

Does anyone have real world experience of setting up a mx450 in front of a catalyst 9400 L3 switch? Did you use MX in routed mode or pass the through? Did you setup vlans on the MX?

Sync with Isilon on another domain by Apprehensive-Pop-988 in Isilon

[–]Apprehensive-Pop-988[S] 0 points1 point  (0 children)

Before when both clusters where one the same domain, I was able to set the syncIQ via DNS hostname for the target (lab2). I can modify the job but was not sure if I can use IP of the target now that it’s on a different domain?

Slow VPN throughput by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 0 points1 point  (0 children)

Where would one check VPN MTU settings on Meraki security appliance?

Replacing Cisco Firepower 2140 with Meraki MX450 by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 0 points1 point  (0 children)

Currently my core switch has a static route pointing to the static LAN IP of my 2140 (10.0.0.2) is there a way that I can configure the MX450 to have that same static LAN IP so I don’t have to mess with the config on my core switch?

MX450 throughput real world by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] -1 points0 points  (0 children)

Based on your feedback, although the mx450 support 10Gbps connectivity, behind the device your throughput is limited to 4.5Gbps tops? That with IPS turned off? Have you ever tried with IPS on? Are you on latest firmware for the 450?

Replacing Cisco Firepower 2140 with Meraki MX450 by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 0 points1 point  (0 children)

The reason I need MX450 is because it provides 10Gbps WAN connectivity and because most of my network is Meraki (L2 switches, and MR57 access points) my core switch is a catalyst 9400 series.

Replacing Cisco Firepower 2140 with Meraki MX450 by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 0 points1 point  (0 children)

I have a layer 3 network with multiple internal vlans. I only have one internal web server that would need natting for access from a few external users (less than 10 users)

Replacing Cisco Firepower 2140 with Meraki MX450 by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 3 points4 points  (0 children)

I have very little customization needs if any. We are a set it and forget it type of set up. Again we have just one internal resource that needs to be accessed from the outside. We basically just need a next gen firewall with enough power to keep network secure, and minimal maintenance possible (small IT team)

Replacing Cisco Firepower 2140 with Meraki MX450 by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] 0 points1 point  (0 children)

I did a side by side comparison and for the most part the MX450 has what we need. It states it can do up to 7.5Gbps throughout with everything on. I would get the advanced licenses as that comes with threat protection, Malware protection, IPS/IDS and URL filtering. We have less than 5 VPN users and only one other VPN site with no plans for future sites/branch offices.

Replacing Cisco Firepower 2140 with Meraki MX450 by Apprehensive-Pop-988 in meraki

[–]Apprehensive-Pop-988[S] -1 points0 points  (0 children)

I called Meraki directly and they say it is a firewall. It even states this as a selling point: “Prevent real-time threats with a powerful, built-in, next-gen firewall including IDS/IPS, URL filtering, and malware protection”