Meraki Z1 Devices on standard home internet line with dynamic IP
We recently purchased 5 of the Meraki Z1 devices to test for our home users. The initial configuration has been a huge disapointment thus far, but we finally got a VPN up and running. The only problem is, no matter how we try, it will only connect to the ASA 5510 (8.4.7) when the crypto config uses a static IP address. Is there any way to make this work behind the typical home internet connection with a dyname IP? Some users will actually take these on business trips and use them in hotels, so a static IP is just not gong to work. I really wish Cisco and Meraki would get together and get the Meraki to work with the EasyVPN configuration used in the ASA 5505's, but something tells me that's a pipe dream.
Sorry to revive a really old post but did you ever manage to find a solution to this? We are also testing the Z1 with an ASA at the other end and the Z1 will be dynamic. Works no problem if it's Static but like you that isn't going to be practical. Trying to get a Meraki at the other end to eliminate the issue but that's taking some time!!
The Dynamic IP address isn't really the issue as the Meraki Z1 provides a hostname that is updated as the IP address changes so the use of easydns.com or any other dynamic DNS service isn't required. The problem I have is that I can't get the ASA to work with a hostname only with an IP address (I'm no ASA expert though was hoping to find one :-)) I've been able to use the Meraki hostname to establish VPN between the Z1 and a Sonicwall with very few problems!
I'm still pushing to have a Meraki at the head end to make use of the Auto VPN which works great between Meraki devices!
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...