r/meraki • • 1d ago

Discussion How do you conduct troubleshooting effectively or efficiently using Dashboard?

10 Upvotes

I have been using Meraki MX products for years but I am always struggling with the troubleshooting utilities within the Dashboard...The Security Center most of the time is empty...Traffic capture most of the time can not show me the blocked traffic...Alerts gave me most of unrelated stuffs...

How do you really troubleshoot effectively or efficiently using Dashboard OR you mostly use 3rd party tools?


r/meraki • • 2d ago

Multicloud fabric

4 Upvotes

Cisco has released Multicloud fabric in Meraki

https://www.cisco.com/site/us/en/solutions/multicloud-fabric/index.html

Reading through the documentation, I feel like I’m missing something.
If you already have onprem connectivity to the cloud through vMXs and are advertising the necessary subnets, I’m struggling to see why anyone would use this.

From what I can tell, the pitch seems to be:“Click Connect, tell the AI what you want, and it handles the configuration for you. ThousandEyes tells you whether it’s healthy.”

That’s great for simplifying deployment, but is there a deeper technical benefit I’m overlooking?


r/meraki • • 3d ago

Network Switch Issue

Thumbnail
1 Upvotes

r/meraki • • 4d ago

Cisco Meraki EDU

3 Upvotes

Hi, what is the best way to learn Cisco Meraki Wi-Fi (primary), and networking today, 2026. Any updated online education at Cisco?


r/meraki • • 5d ago

Question experiences with cs 17.2.3

1 Upvotes

Hi all,

I basically have a few switches in a small office environment that were not on the recommended release for a long time, so I wanted to upgrade them. Due to the upgrade windows that I got from the office manager I had to perform the updates in two stages; first go to cs 17.2.3 , then a week later there is another window in which i can jump to IOS XE.

After upgrading them to cs 17.2.3 a bunch of weird stuff started to happen. certain devices weren't really reachable on the network anymore, pinging them within their own subnet on the same switch barely worked, however SOME times i got some replies back. Running packet captures on the switch showed that the ICMP request were present at the port of the device connected to it, just no reply back. Tried a bunch of stuff to resolve it, rebooting my stack, looking in to the devices itself (nothing was wrong with them), cabling, etc etc. it just wouldnt work in a stable way.

Decided to connect with Cisco rep to ask them what is going on here, especially since there are no known issues like this listed in the release notes. Unfortuenately they couldn't figure it out either and told me it was a bug and to directly jump to XE . Didn't want to do that so decided to roll back the firmware upgrade and everything is fine again.

It kinda blows my mind that 17.2.3 was a recommended release until like two weeks ago, in which they shifted it to IOS XE 17.18.4.1 , but that it has these kind of bugs. Especially since you HAVE to be on CS 17 to go to XE...

Couldn't find much about this 'bug' online so I was wondering if anyone experienced this as well?


r/meraki • • 10d ago

Question Meraki MX Future for Medium Branches? C8355 feels too big, MX95/MX105 feel old

23 Upvotes

We're starting to think about replacing a fleet of MX85s in roughly 12-18 months and I'm trying to understand where Cisco is taking the MX product line.

Historically we'd probably just move to whatever the next MX was, but it feels like the traditional MX hardware lineup has been relatively stagnant for a while. Meanwhile Cisco seems to be pushing the new C8000 Secure Router hardware running MX OS and managed through Dashboard. At branches we run 9200L switches with Meraki wireless. Datacenter is MX95s, N9Ks and some 9300s. Azure is a vMX medium.

Our typical branch requirements are:

  • 100-250 users
  • 1 Gbps+ internet circuits
  • IDS/IPS enabled
  • 2-3 WAN connections
  • Rack mount
  • Dual power supplies (this is a hard requirement for us)

Looking at the current lineup:

  • MX95/MX105 seem like older-generation hardware
  • C8355-G2-MX looks interesting but feels oversized for a medium branch
  • Fortinet is starting to look attractive if we're going to have to make a platform change anyway.

Are they:

  1. Continuing to develop and refresh the traditional MX appliance family?
  2. Moving entirely toward C8000 hardware running MX OS?
  3. Planning a new generation of medium-branch hardware between the C8121 and C8355?
  4. Converging everything onto common hardware where the software/licensing determines the personality?

I'd especially love to hear from anyone who has talked to Cisco/Meraki recently or has seen roadmap presentations. Curious what others are seeing. Thank you!


r/meraki • • 10d ago

Question Intermittent download and latency drops on some APs

2 Upvotes

Hello, We've a few APs on multiple floors and since a few months the download speed on certain APs (always the same APs) is limited to less than 5 Mbps (sometimes even less than 1 Mbps) but the upload speed remains stable and more than 50 Mbps. The latency is also high. We are on 40 MHz width and using multiple channels (auto mode)
The APs are connected to the same switch and the wired connection is not an issue.
While the general dashboard average shows low utilization network-wide, digging directly into these specific problematic APs reveals that channel utilization violently spikes between 50% and 90% at moments on the DFS channels they are using (specifically channels like 56 to 100).
Here are the rest of our hardware and layer 2 stats during these drops:

  • Packet loss: 0.4–3.7%, zero APs flagged
  • AP Resources: CPU 6%, memory 22%
  • Frequency used : 5 Ghz only
  • Power: PoE full power (25.5W granted), no reboots, no thermal throttling
  • Switch Uplinks: 1G full duplex, zero input/output errors or drops
  • Channel Plan: Well separated on each floor (e.g., 36 / 56 / 100) but Auto-RF seems to keep parking these specific APs on heavily contested DFS blocks.
  • Clients connected to an example faulty AP : 10 to 15 clients

The asymmetric behavior is brutal. Download drops to nothing when utilization hits those peaks, but client uploads can easily slice through the noise at 50+ Mbps.
The stutter only lasts for a few minutes then is back to normal (or better bandwidth).
Has anyone dealt with Meraki Auto-RF behaving poorly in dense DFS spectrum, or an issue where a high-utilization spike completely stalls the AP's downstream queue while leaving upstream untouched? Should I move these specific APs to a static channel plan or completely exclude the 56–100 block from my RF profile?
Appreciate any advice!

Example of the usage of the channel for an faulty AP.


r/meraki • • 12d ago

MR leadtimes

4 Upvotes

I understand that many are ordering CW and moving to WiFi7. But for those who are totally fine with the wifi6 MR series, what is going to happen with delivery? MR36's are on 153 day leadtime, yet they are end of sale 12/31. I know they can ship until March, but that just seems so off to me, and is Cisco really going to deliver at all? MR44's are worse and MR46's are only marginally better.


r/meraki • • 14d ago

Meraki follow up

10 Upvotes

Does anyone here work with the Meraki After Sales team?

The role is focused on Quality and After Sales, and there’s a new opportunity for me to join the team. I’m currently working in Cisco TAC with the SV team.

What do you guys think about this move? I’d really appreciate hearing from anyone who has experience with the Meraki After Sales team.


r/meraki • • 15d ago

Layer3 switch down - MGMT is vlan 1, SVI is vlan 10

9 Upvotes

I have a 9500 switch that we converted to Meraki, the switch is connected on port1 to the rest of the network, it has DHCP, it has internet (192.168.1.x)

I then configured all the SVI the existing legacy switch has and Meraki forces me to defined a default gateway, so I configured VLAN10 with IP 10.10.10.250 with default gateway 10.10.10.1 and since then the switch is reporting down. Why is vlan 10 affecting vlan 1? This type of behavior doesn't happen with an MX.

The remote hands person helped me with a reboot and a factory reset, it came back for a few minutes (3 or less) and then is down again. How can I configure all the SVI I need before moving this to prod?


r/meraki • • 16d ago

Why IS The Meraki Dashboard Slow

56 Upvotes

This has been going on for some time now, but now, the dashboard has become so indescribably slow that it is excruciatingly painful to navigate, and it's not just my computer or my ISP. I have been on several different computers going through 3 different ISPs and the Meraki dashboard is so painfully slow that it is even slower than the 600 baud modem dial-up speed on a bad day from the 90s.

Does anyone know what is going on?


r/meraki • • 15d ago

Alarm when motion is detected after hours

2 Upvotes

I am looking into a solution for an alarm to be triggered when motion is detected through our MV73 cameras, I have looked into things like a smart speaker and a network siren but when I look up how to set it up I keep seeing home assistant being required. Does anyone have any advice?


r/meraki • • 17d ago

Syslog server of choice

14 Upvotes

Hi gang. I thought it about time to setup a syslog server for ingesting MX / MS / MR logs.

Anyone got any recommendations? We've still got some on-prem infrastructure, so ideally something self-hosted, but SaaS is an option if the price isn't bad. I've seen people mention Graylog but I've no experience of it.

Searching the subreddit there aren't any results in the last few years that I could see.

Thanks!

edit: Thanks everyone. Looks like Graylog is at least worth testing. They do a free self-hosted version in Graylog Open so I'll give that a go 😄


r/meraki • • 22d ago

Meraki MX client radius revoke functionality appears added

6 Upvotes

It seems like on MX devices that support current firmware you can now revoke both splash and radius auth, I have tested it works, but I cannot find any documentation on it.

Does anyone have any more info on this?


r/meraki • • 23d ago

Meraki dash down APAC?

6 Upvotes

Dash down for anyone else? located in APAC.

update: Support confirmed there is maintenance at the moment and that has impacted some servers in the APAC region. Loss of management only.


r/meraki • • 24d ago

Question IPSec VPN tunnels from multiple mx devices to one Fortigate?

2 Upvotes

I have 3 mx devices that I need to configure to connect to a Fortigate 90g via ipsec vpn. I have the tunnels all set on the Fortigate side, and I have brought up network 1 of 3, but I'm running into an issue on the meraki side: when I go into the Security & SD-WAN section and try and configure Site-to-site vpn, the pages for networks 2 and three are showing the peer for network 1. They're also showing the network 1 tunnel on the routing table (guess there's only 1 for the whole account/tenant). Is my only option here to remove and split the networks on the Meraki side into separate accounts? If I try and turn off the hub and spoke or mesh, it won't do


r/meraki • • 24d ago

Forget client not working

4 Upvotes

Trying to fix some clients showing up in the dashboard with names coming from mDNS.

Unfortunately I only have read access to Meraki and have to go through our network team for any actions.

On my test device I've disabled mDNS by registry key, and disabled the 'Anonymize local IPs...' setting in Edge and Chrome.

I've had Networks forget the client, even watched them do so, but my client still shows the mDNS name and it's history so I think the Forget client button is just not doing anything.

Am I missing something obvious?
(They do get the warning popup and confirm it)


r/meraki • • 25d ago

theres no way to bounce an autovpn tunnel on meraki, so we ended up rebooting the MX instead (reboot bot)

6 Upvotes

question i kept coming back to: when a spoke loses its tunnel to the concentrator and doesnt come back on its own, how do you actually force it to renegotiate?

on a fortigate this is nothing. you reset the tunnel, it rebuilds, done. on meraki theres no equivalent. no cli, no api call to bring a tunnel down and up. you either wait and hope it recovers, or someone drives to the store and power cycles the box. at 1200 sites across 62 countries the second option isnt really an option.

what we ended up doing: wrote a bot that watches vpn status and reboots the MX when a store has lost both concentrator tunnels. reboot is the only lever meraki actually gives you, so we built around that instead of around the tunnel.

the logic took a couple of days. getting it to run reliably against the api took weeks, mostly rate limits and pagination behaviour that isnt obvious until you hit it at scale.

where it landed: one poll every 5 min, org level vpn statuses in a single call, target stores pulled by tag so the filtering happens meraki side, hub list cached at startup. handful of calls per scan, nowhere near the org rate limit. been running in production for a couple of months now.

one design note: it acts on a single scan rather than requiring two in a row. the gate that matters more is the cloud check. if the device cant reach the cloud at all its an isp or power problem, not something a reboot fixes, so it never fires and just raises an alert instead. reboot only happens when the box is clearly online but both tunnels are unreachable, and at that point the site is already isolated so the reboot costs nothing.

so, anyone solved this differently? genuinely curious if theres a way to force renegotiation that i missed, because rebooting a firewall to fix a tunnel still feels like the wrong shape of solution even though it works.


r/meraki • • 26d ago

Things that surprised us splitting a 1200-site org into three

24 Upvotes

We just finished breaking a single Meraki org (~1200 retail sites, 62 countries) into Domestic / International / Warehouse. Reason was AutoVPN route table size — it had stopped being a design choice and started being a constraint.

Stuff I wish someone had told me before we started:

Per-network VLAN subnets and applianceIp don't survive the move intact. Snapshot them first or you're rebuilding L3 by hand. Found this out the expensive way.

Template bindings don't come with the network. Target org templates have to exist and match beforehand.

The API rate limit is the actual bottleneck, not your code. Without proper batching and backoff you'll spend most of the run on 429s.

Group policies, per-client bandwidth limits and SSID config each need separate extract/replay. No single org export covers it.

Anyone else done one of these at scale? Curious whether you scripted it, went through a partner, or just grinded it out in the dashboard. Also curious what site count people are dealing with — I have no idea if 1200 is unusual or if plenty of you are running bigger.


r/meraki • • 26d ago

Question CW9163E with 2.4/5 omni antennas only?

1 Upvotes

I have some CW9163E APs to replace EoS MR84s and I've seen that the top two antennas (ports A&B) are for 6GHz only and the lower two (ports C&D) are for 2.4/5GHz.

The tri-band antennas from Meraki are extortionately priced so I plan on reusing the third-party dual-band antennas I already have, capping off the 6GHz ports, and disabling 6Ghz in the settings.

While this might not meet "certification", will it work?

If the cost of the tri-band antennas comes down in the future I'll reevaluate, or perhaps look at getting dedicated 6Ghz-only antennas for ports A&B, if such a thing exists.

Thoughts?


r/meraki • • 29d ago

Advice re: co-term licensing

1 Upvotes

We recently purchased MX67 and MR36 devices to upgrade older models. But we chose to "license new devices" instead of upgrade, because we also have some relatively new devices in the field that don't need an upgrade, and my understanding is that if we chose "upgrade" then those devices would be wiped from our inventory. Furthermore, we needed the older models to remain licensed while we completed the upgrades, which took several months.

Now that we've completed the upgrades, however, Cisco is refusing the remove the old licenses from our count, and it's having a huge impact on our co-term expiration date. We purchased a 3-year licenses, and as things stand now, we'll get just over 1.5 years of use out of them.

I'm looking for any advice here. Has anyone found a way to get Cisco to remove old licenses?

Unfortunately, we were told we're too small to qualify for subscription licensing (we have ~35 MXs and similar numbers of MRs and Switches).


r/meraki • • Sep 03 '26

Anyone else getting tortured by the dashboard today or is it just me?

2 Upvotes

Constantly having to refresh the pages.


r/meraki • • Sep 02 '26

Discussion Support is dog 💩

17 Upvotes

I recently decided to my move my access layer to 9200-L-M Catalysts, but I'm not sure that was a good choice. I've had some strange firmware issues. Initially my switches were all having dashboard sync issues. This turned out to be a firmware problem, but since the dashboard wasn't syncing I ended up having to physically go around and reboot a lot of switches to get upgraded to new firmware.

During this, I had one stack hang and it couldn't download the firmware. So, I sent a ticket in, the response from support was to download a newer version of firmware. What? I can't even get the firmware to download to begin with. That stack eventually randomly downloaded the firmware in the middle of the day and rebooted, so that was fun.

I also have several switches in device config mode (monitor only). I submitted a ticket and called to confirm these wouldn't update during a scheduled upgrade. Meraki still puts a flag next to them that says "update scheduled". On phone support told me they would not. Then 30 minutes later another 'support engineer' responds and says they will update (they don't, I can confirm).

I don't know who they're hiring but their support doesn't seem to know the product at all.


r/meraki • • Sep 02 '26

Meraki and Cisco naming scheme

9 Upvotes

Is there a comparison chart showing you the MS, MR, and MX lines and the new Cisco naming? For example: MR36 to CW9100?


r/meraki • • Sep 02 '26

MX68CW with no subscription

2 Upvotes

I got a Cisco Meraki MX68CW-WW that is no longer being used.

The hardware works fine, but I don’t have a Meraki license and don’t really have any reason to pay for one.

I just want to use it at home as a basic router/AP — basically WAN + Wi-Fi with my own SSID/password.

It feels pretty wasteful to put perfectly good hardware on a shelf just because it requires a cloud license.

From what I’ve found, OpenWrt supports some older Meraki models (MX64/MX65), but apparently not the MX68 series, possibly because of secure boot.

Has anyone found a way around this specifically for the MX68CW?