![cisco meraki vpn client protocol cisco meraki vpn client protocol](https://www.cloudwifiworks.com/images/Routers/MX60W/Cloud-Management.png)
#Cisco meraki vpn client protocol serial
Tip: This requires an unassigned device and its serial number. You want to create a new network that applies to another static route.If you have multiple existing networks: From the Network drop-down list, select an existing network to configure.If you have a single existing network that already applies to the traffic that will route to the Web Security Service, proceed to the next step.Select Security Appliance > Configure > Site-to-Site VPN.Access the Meraki web-based interface: log in.Identify and record the VIP of the closest Web Security Service datacenter.Know the subnet (local network) that is to connect to the Web Security Service.Have access credentials to the Meraki cloud-based interface.Based on the deployment notes above, determine if you are configuring a single Meraki device for all connections or deploying a Meraki device in multiple geographical locations as required for your network security architecture.At least one Meraki firewall is deployed as a security device.The screenshots in the following procedure might not reflect this advisory. If the current setting is less than four hours, you can leave that Note: Symantec has seen outages occur if the Phase 2 Timeout value is set to longer than four (4) hours. The best practice is to set the rekey at the specified lifetime interval instead of for lifebytes.After successful testing, you then add production subnets. You can create a designated host or subnet that tests the IPsec connectivity to the Web Security Service without interrupting the production traffic.Do not send Auth Connector traffic to the Web Security Service.To work around some of the limitations above, separate your firewalls across multiple organizations.Because all Meraki firewalls in the organization will connect to the single third-party peer (DC) configured in the organization, you must add a Location for each Meraki firewall.Because there can be only datacenter VIP configured in the organization, you cannot configure second datacenter for failover purposes.So these sites should be configured in the WSS portal with the same PSK.
![cisco meraki vpn client protocol cisco meraki vpn client protocol](https://content.spiceworksstatic.com/service.community/p/how_to_step_attachments/0000125106/5ad10b6d/attached_file/928f6c80f3454e233d55d40624c7f9c2cef90b0f4990f506fe56d9a6940b4f83_VPN_001.png)