ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Meraki and Firewall rules

    Scheduled Pinned Locked Moved IT Discussion
    merakifirewallavastwindowscisco
    15 Posts 4 Posters 5.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DustinB3403D
      DustinB3403
      last edited by

      For UltraVNC to work, you must disable under Settings > Active Protection > Mail Shield > "Scan inbound mail (POP3, IMAP4) if you want to be able to remote into these devices.

      Still investigating the other items.

      dafyreD 1 Reply Last reply Reply Quote 1
      • dafyreD
        dafyre @DustinB3403
        last edited by

        @DustinB3403 WTF.... UltraVNC doesn't even run on anything close to SMTP / IMAP, does it?

        DustinB3403D scottalanmillerS 2 Replies Last reply Reply Quote 1
        • DustinB3403D
          DustinB3403 @dafyre
          last edited by DustinB3403

          @dafyre Apparently it does, as disabling the Scanning of inbound POP3, IMAP4 connections allows UltraVNC to connect from within Meraki.

          scottalanmillerS 1 Reply Last reply Reply Quote 0
          • BRRABillB
            BRRABill
            last edited by

            How do you like the Meraki devices?

            I have a free one from them I've been wanting to install at home to play with, but have not done so yet.

            scottalanmillerS 1 Reply Last reply Reply Quote 0
            • dafyreD
              dafyre
              last edited by

              I helped a client setup a Meraki Firewall. Once you get used to the way they do a couple of things, they're actually pretty good.

              BRRABillB scottalanmillerS 2 Replies Last reply Reply Quote 0
              • BRRABillB
                BRRABill @dafyre
                last edited by

                @dafyre said:

                I helped a client setup a Meraki Firewall. Once you get used to the way they do a couple of things, they're actually pretty good.

                It seemed like a great idea.

                1 Reply Last reply Reply Quote 0
                • DustinB3403D
                  DustinB3403
                  last edited by

                  We don't actually use their AP, we did for testing for a long time, and it is a good unit.

                  Just not good enough to pay for it forever.

                  1 Reply Last reply Reply Quote 1
                  • scottalanmillerS
                    scottalanmiller @dafyre
                    last edited by

                    @dafyre said:

                    @DustinB3403 WTF.... UltraVNC doesn't even run on anything close to SMTP / IMAP, does it?

                    Meraki fail.

                    1 Reply Last reply Reply Quote 0
                    • scottalanmillerS
                      scottalanmiller @DustinB3403
                      last edited by

                      @DustinB3403 said:

                      @dafyre Apparently it does, as disabling the Scanning of inbound POP3, IMAP4 connections allows UltraVNC to connect from within Meraki.

                      It definitely does not. That's a broken Meraki issue.

                      1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller @BRRABill
                        last edited by

                        @BRRABill said:

                        How do you like the Meraki devices?

                        I have a free one from them I've been wanting to install at home to play with, but have not done so yet.

                        They were nice before Ubiquiti came along. And before Cisco bought them.

                        1 Reply Last reply Reply Quote 0
                        • scottalanmillerS
                          scottalanmiller @dafyre
                          last edited by

                          @dafyre said:

                          I helped a client setup a Meraki Firewall. Once you get used to the way they do a couple of things, they're actually pretty good.

                          Once you get used to the ways that they don't work like breaking VNC thinking that it is email.

                          dafyreD 1 Reply Last reply Reply Quote 0
                          • dafyreD
                            dafyre @scottalanmiller
                            last edited by

                            @scottalanmiller Ha ha ha. We didn't have that problem. This was only for their firewall. They've got APs on the way.

                            1 Reply Last reply Reply Quote 0
                            • DustinB3403D
                              DustinB3403
                              last edited by

                              So the exclusions I've had to add to get everything "functional" are listed below.

                              File System Shield

                              • C:\Program Files (x86)\Meraki\m_agent_upgrade.exe

                              • C:\Program Files (x86)\Meraki\meraki-ca-bundle.crt

                              • C:\Program Files (x86)\Meraki\ndisscan.exe

                              • C:\Program Files (x86)\Meraki\README-winvnc.txt

                              • C:\Program Files (x86)\Meraki\screenshot-cmd.exe

                              • C:\Program Files (x86)\Meraki\windows-wlan.exe

                              • C:\Program Files (x86)\Meraki\winvnc.exe

                              Mail Shield

                              • Inbound Mail - Un-check 'Scan inbound mail (POP3, IMAP4)' (UltraVNC)

                              Web Shield Process Exclusions
                              The same processes as in File System Shield

                              1 Reply Last reply Reply Quote 0
                              • 1 / 1
                              • First post
                                Last post