Meraki Access Control Policy
Meraki MX devices may have been managed by the Meraki dashboard before you onboard to CDO and the device may already have some outbound rules. These rules will appear as access control rules in CDO. You can modify these rules and create additional rules within the access control policy. To customize your access control policy, create and attach objects. See the related articles at the bottom for more information.
Note | The action of the Meraki access control policy is Allow by default. You cannot change the action. |
Use this procedure to edit a Meraki access control policy using CDO:
Procedure
Step 1 | Open the Inventory page. | ||
Step 2 | Click the Templates tab. | ||
Step 3 | Click the Meraki tab and select the Meraki MX device template whose access control policy you want to edit. | ||
Step 4 | In the Management pane at the right, select Policy. | ||
Step 5 | Do any of the following:
| ||
Step 6 | In the Order field, select the position for the rule within the policy. Network traffic is evaluated against the list of rules in numerical order, 1 to "last." Rules are applied on a first-match basis, so you must ensure that rules with highly specific traffic matching criteria appear above policies that have more general criteria that would otherwise apply to the matching traffic. The default is to add the rule to the end of the list. If you want to change a rule's location later, edit this option. | ||
Step 7 | Enter the rule name. You can use alphanumeric characters, spaces, and these special characters: + . _ - Note: The Name of the access control rule is used as the name of the rule in CDO while the Remark field is treated as the name of the rule in the Meraki dashboard. The two fields are not dependent on each other. | ||
Step 8 | Select the action to apply if the network traffic is matched by the rule:
| ||
Step 9 | Define the traffic matching criteria by using any combination of attributes in the following tabs:
| ||
Step 10 | Click Save. | ||
Step 11 | Review and deploy now the changes you made, or wait and deploy multiple changes at once. |
What to do next
Related Articles: