{"id":121,"date":"2024-11-26T16:35:03","date_gmt":"2024-11-26T15:35:03","guid":{"rendered":"https:\/\/digitalmaterial.ch\/blog\/?p=121"},"modified":"2024-12-10T11:19:04","modified_gmt":"2024-12-10T10:19:04","slug":"cisco-meraki-wan-breakout-design","status":"publish","type":"post","link":"https:\/\/digitalmaterial.ch\/blog\/cisco-meraki-wan-breakout-design\/","title":{"rendered":"Cisco Meraki WAN Breakout Design"},"content":{"rendered":"\n<p>If you&#8217;re managing a network and struggling with limited connectivity options from your ISP, like a single fiber uplink, an ISP router that lacks robust features or only one port with the required bandwidt, this discussion is for you. We&#8217;re going to explore how Cisco Meraki switches and firewalls can help overcome these challenges. Our focus will be on enhancing network resilience and efficiency, ensuring your setup can handle whatever your ISP throws your way. These constraints can lead to several issues:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Lack of Redundancy:<\/strong> Without multiple uplinks, it&#8217;s difficult to ensure network reliability and continuous service.<\/li>\n\n\n\n<li><strong>High-Availability Requirements:<\/strong> For a high-availability setup to function properly with one or more ISP uplinks, it&#8217;s essential that each firewall in the pair is connected to an uplink. This ensures that the system can maintain continuous operation, even if one firewall fails.<\/li>\n\n\n\n<li><strong>Throttled Bandwidth:<\/strong> If the ISP router has only one port with >=10GbE and it is connected to the primary firewall, the secondary firewall may only be able to connect via a 1GbE port.<\/li>\n<\/ul>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\">Cisco Meraki Solutions Overview<\/h1>\n\n\n\n<p>When integrating Cisco Meraki technology into your network, the approach can vary based on the type of equipment and connectivity your ISP provides. Here are two common scenarios you might encounter, each requiring a different strategy:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>ISP Provides a Router with Multiple Ports:<\/strong> In this scenario, your ISP supplies a router equipped with several ports, offering multiple points for network connections. This setup allows creating a redundant network path to each firewall in the pair.<\/li>\n\n\n\n<li><strong>ISP Provides a Router with a Single Port:<\/strong> Here, the ISP&#8217;s router offers only one port or just one of the ports comes with 10GbE. To configure high availability (HA) with two Meraki firewalls, a WAN switch will be necessary to split the single ISP connection between the two firewalls, ensuring both can maintain an active link for redundancy.<\/li>\n<\/ul>\n\n\n\n<p>In the following sections, we will dive deeper into the specific configurations and necessary equipment adjustments to accommodate each of these ISP scenarios, focusing on maintaining high availability and optimizing network performance.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Minimum IP Address Allocation<\/h2>\n\n\n\n<p>For the HA setups discussed, you will need at least <strong>four public WAN IP addresses<\/strong> from your ISP:<\/p>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li><strong>One IP for the ISP Router<\/strong>: Assigned to the WAN interface of the ISP&#8217;s router connecting to your network. This IP serves as the gateway for your network traffic to the internet.<\/li>\n\n\n\n<li><strong>One Virtual IP (vIP)<\/strong>: Used as a shared IP address between the two Meraki firewalls in your HA pair. The vIP handles <strong>both inbound and outbound communication<\/strong>, ensuring external devices always interact with a single IP address, even during a firewall failover.<\/li>\n\n\n\n<li><strong>One IP for Firewall 1<\/strong>: Assigned to the WAN interface of the primary Meraki firewall. This IP is used for management purposes, including communication with the Meraki dashboard.<\/li>\n\n\n\n<li><strong>One IP for Firewall 2<\/strong>: Assigned to the WAN interface of the secondary Meraki firewall. Similar to Firewall 1, this IP facilitates management tasks and dashboard communication when this firewall is active.<\/li>\n<\/ol>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"Detailed-Solution-Walkthrough\">Detailed Solution Walkthrough<\/h1>\n\n\n\n<p>To effectively implement Cisco Meraki solutions across different ISP scenarios, it&#8217;s crucial to visualize how each setup connects and operates within the network. We&#8217;ll use a single comprehensive network topology drawing that illustrates all ISP scenarios, clearly distinguishing the configurations necessary for each. This visual guide will help you navigate the specifics of setting up your network for high availability using Cisco Meraki equipment, regardless of the ISP setup.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"1005\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/breakout-switch-design.drawio-1024x1005.png\" alt=\"\" class=\"wp-image-144\" srcset=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/breakout-switch-design.drawio-1024x1005.png 1024w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/breakout-switch-design.drawio-300x295.png 300w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/breakout-switch-design.drawio-768x754.png 768w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/breakout-switch-design.drawio-1536x1508.png 1536w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/breakout-switch-design.drawio.png 1544w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"Network-Topology-Drawing-Overview\">Network Topology Drawing Overview<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Visual Elements:<\/strong> The drawing will show two distinct areas, each representing one of the ISP scenarios: a router with multiple ports, a router with a single port. Each section will depict the connections to a WAN switch and the subsequent link to two Meraki firewalls in an HA setup.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"Scenario-Descriptions\">Scenario Descriptions<\/h2>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li><strong>ISP-Provided Router with Multiple Ports<\/strong>\n<ul class=\"wp-block-list\">\n<li><strong>Connectivity:<\/strong> The ISP router\u2019s multiple ports connect to both firewalls directly.<\/li>\n\n\n\n<li><strong>Configuration Goals:<\/strong> Focus on how to leverage multiple ports for effective load balancing and failover capabilities.<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>ISP-Provided Router with a Single Port<\/strong>\n<ul class=\"wp-block-list\">\n<li><strong>Connectivity:<\/strong> The single port from the ISP router connects to a WAN switch, which splits the connection to both Meraki firewalls.<\/li>\n\n\n\n<li><strong>Configuration Goals:<\/strong> Details on configuring the WAN switch to handle the single ISP link effectively and setting up the Meraki firewalls for seamless redundancy.<\/li>\n<\/ul>\n<\/li>\n<\/ol>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"Step-by-Step-Configuration-for-Each-Scenario\">Step-by-Step Configuration for Each Scenario<\/h1>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Detailed Instructions:<\/strong> For each area in the topology drawing, we will provide specific setup steps, highlighting the unique requirements and adjustments needed to optimize each configuration.<\/li>\n\n\n\n<li><strong>Key Considerations:<\/strong> Special attention will be given to ensuring network resilience, scalability, and managing potential points of failure in each scenario.<\/li>\n<\/ul>\n\n\n\n<p>This unified approach not only simplifies the understanding of different setups but also ensures that you have a clear path to implementing a robust network with high availability, tailored to your specific ISP conditions.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"ISP-Provided-Router-with-Multiple-Ports\">ISP-Provided Router with Multiple Ports<\/h2>\n\n\n\n<p>In this scenario, your ISP supplies a router equipped with multiple ports, allowing direct connections to each of your Meraki firewalls in a high-availability (HA) pair. This setup simplifies redundancy and enhances network reliability since each firewall can independently connect to the ISP&#8217;s network.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Connectivity-Setup-overview\">Connectivity Setup overview<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Direct Connections<\/strong>: Connect each Meraki firewall&#8217;s WAN interface directly to a separate port on the ISP&#8217;s router.<\/li>\n\n\n\n<li><strong>IP Address Allocation<\/strong>: Obtain multiple public IP addresses from your ISP\u2014one for each firewall&#8217;s WAN interface. This ensures both firewalls can operate simultaneously and take over if the other fails.<\/li>\n\n\n\n<li><strong>Load Balancing and Failover<\/strong>: Configure the Meraki firewalls to manage traffic efficiently, utilizing both connections for load balancing and ensuring seamless failover.<\/li>\n<\/ul>\n\n\n\n<p><\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Configuration-Steps\">Configuration Steps<\/h3>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li><strong>Physical Connections<\/strong>:<br>Check your ISP router settings if all ports are configured for public IP address distribution, if necessary change the configuration.\n<ul class=\"wp-block-list\">\n<li><strong>Firewall 1<\/strong>: Connect its WAN port to Port 1 on the ISP router.<\/li>\n\n\n\n<li><strong>Firewall 2<\/strong>: Connect its WAN port to Port 2 on the ISP router.<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Firewall Settings<\/strong>:\n<ul class=\"wp-block-list\">\n<li><strong>WAN Interfaces<\/strong>: Assign unique public IP addresses to each firewall&#8217;s WAN interface, as provided by the ISP.\n<ul class=\"wp-block-list\">\n<li>Go to <strong>Security &amp; SD-WAN &gt; Monitor &gt; Appliance Status<\/strong> &gt; <strong>Uplink<\/strong><\/li>\n\n\n\n<li>Configure each WAN uplink and set a static public IP from your address block. Repeat these steps for the spare firewall.<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-093948-1024x831.png\" alt=\"\"><\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>High Availability (HA) Setup<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Navigate to the Meraki dashboard.<\/li>\n\n\n\n<li>Go to <strong>Security &amp; SD-WAN &gt; Monitor &gt; Appliance Status<\/strong>.<\/li>\n\n\n\n<li>Click on the <strong>Edit <\/strong>symbol and Enable <strong>Warm Spare<\/strong> (using VRRP).<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-094849.png\" alt=\"\"><\/li>\n\n\n\n<li>Ensure both firewalls have the <strong>virtual uplink IP<\/strong> (shared IP) configured for seamless failover. This configuration might take a few minutes to apply.<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-094922.png\" alt=\"\"><\/li>\n<\/ul>\n<\/li>\n\n\n\n<li>Afterwards, the device table on your ISP router should look like this:<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-095851.png\" alt=\"\"><\/li>\n\n\n\n<li><strong>Load Balancing<\/strong> (Optional):\n<ul class=\"wp-block-list\">\n<li>Configure load balancing if your ISP supports it, distributing outbound traffic between both firewalls. If needed, go to<strong> Security &amp; SD-WAN &gt; SD-WAN &amp; traffic shaping &gt; Uplink selection.<\/strong><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Testing the Setup<\/strong>:\n<ul class=\"wp-block-list\">\n<li><strong>Failover Test<\/strong>: Disconnect Firewall 1 to ensure Firewall 2 takes over without service interruption.<\/li>\n\n\n\n<li><strong>Load Balancing Verification<\/strong>: Monitor traffic to confirm it\u2019s appropriately balanced across both connections.<br><\/li>\n<\/ul>\n<\/li>\n<\/ol>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Benefits-of-This-Setup\">Benefits of This Setup<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Enhanced Redundancy<\/strong>: Direct connections reduce dependency on additional hardware, minimizing potential points of failure.<\/li>\n\n\n\n<li><strong>Simplified Configuration<\/strong>: Fewer devices mean a more straightforward setup and maintenance process.<\/li>\n\n\n\n<li><strong>Optimized Performance<\/strong>: Direct ISP connections can offer better bandwidth utilization and lower latency.<\/li>\n<\/ul>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"ISP-Provided-Router-with-a-Single-Port\">ISP-Provided Router with a Single Port<\/h2>\n\n\n\n<p>When the ISP provides a router with only a single port\u2014or only one port with the required bandwidth\u2014you&#8217;ll need to introduce a WAN switch to distribute the connection to both Meraki firewalls. This setup ensures both firewalls have access to the WAN link, maintaining high availability despite the ISP&#8217;s hardware limitations.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Connectivity-Setup-overview.1\">Connectivity Setup overview<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Implementing a Meraki WAN Switch<\/strong>: Place a managed switch between the ISP router and your Meraki firewalls. To avoid loops, complete the configuration before connecting every port.<\/li>\n\n\n\n<li><strong>Management VLAN (VLAN1000)<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Configure VLAN1000 as the dedicated management VLAN on the switch.<\/li>\n\n\n\n<li>Connect both firewalls (LAN) to this VLAN for centralized management and monitoring.<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Physical Connections<\/strong>:\n<ul class=\"wp-block-list\">\n<li><strong>ISP Connection<\/strong>: Connect the ISP router&#8217;s single port to the appropriate port (e.g. 10G org mGig Port) on the Meraki WAN switch. We\u2019ll use VLAN1 for the WAN segment.<\/li>\n\n\n\n<li><strong>Firewall Connections<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Connect Firewall 1&#8217;s WAN port to the Meraki WAN switch.<\/li>\n\n\n\n<li>Connect Firewall 2&#8217;s WAN port to the Meraki WAN switch.<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Visualization<\/h3>\n\n\n\n<div class=\"wp-block-cover is-light has-custom-content-position is-position-bottom-center\"><span aria-hidden=\"true\" class=\"wp-block-cover__background has-background-dim-0 has-background-dim\"><\/span><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"483\" class=\"wp-block-cover__image-background wp-image-152\" alt=\"\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-1024x483.png\" data-object-fit=\"cover\" srcset=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-1024x483.png 1024w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-300x142.png 300w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-768x362.png 768w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-1536x725.png 1536w, https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-2048x967.png 2048w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><div class=\"wp-block-cover__inner-container is-layout-flow wp-block-cover-is-layout-flow\">\n<p class=\"has-text-align-center has-large-font-size\"><\/p>\n<\/div><\/div>\n\n\n\n<p class=\"has-text-align-center\">ref: <a href=\"https:\/\/docs.google.com\/presentation\/d\/1xsb8imtUFjN13so86kIZ04IR9f6WEKdbpUrYVON64Zg\/edit\">MX, MS &#8211; WAN Breakout Switch &#8211; Google Pr\u00e4sentationen<\/a><\/p>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Configuration-Steps.1\">Configuration Steps<\/h3>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li><strong>Meraki WAN Switch Setup<\/strong>:\n<ul class=\"wp-block-list\">\n<li><strong>Add the Switch to a new Network<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Create a new Meraki Network to avoid topology issues.<\/li>\n\n\n\n<li>Claim the Meraki switch in your Meraki dashboard under <strong>Organization &gt; Inventory<\/strong>.<\/li>\n\n\n\n<li>Add the switch to your network under <strong>Network-wide &gt; Add devices<\/strong>.<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>VLANs and Ports<\/strong>\n<ul class=\"wp-block-list\">\n<li>Ensure to set every port as <strong>access<\/strong> and both management uplink ports have <strong>STP loop guard<\/strong> enabled and <strong>UDLD <\/strong>set to <strong>enforce<\/strong>.<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-103327-1024x555.png\" alt=\"\"><br><\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Power Redundancy<\/strong> (Optional):\n<ul class=\"wp-block-list\">\n<li>Select a switch with dual power supplies or connect it to a UPS for increased reliability.<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Firewall Settings<\/strong>:\n<ul class=\"wp-block-list\">\n<li><strong>WAN Interfaces<\/strong>: Assign unique public IP addresses to each firewall&#8217;s WAN interface, as provided by the ISP.\n<ul class=\"wp-block-list\">\n<li>Go to <strong>Security &amp; SD-WAN &gt; Monitor &gt; Appliance Status<\/strong> &gt; <strong>Uplink<\/strong><\/li>\n\n\n\n<li>Configure each WAN uplink and set a static public IP from your address block. Repeat these steps for the spare firewall.<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-093948-1-1024x831.png\" alt=\"\"><\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>High Availability (HA) Setup<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Navigate to the Meraki dashboard.<\/li>\n\n\n\n<li>Go to <strong>Security &amp; SD-WAN &gt; Monitor &gt; Appliance Status<\/strong>.<\/li>\n\n\n\n<li>Click on the <strong>Edit <\/strong>symbol and Enable <strong>Warm Spare<\/strong> (using VRRP)<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-094849.png\" alt=\"\"><\/li>\n\n\n\n<li>Ensure both firewalls have the <strong>virtual uplink IP<\/strong> (shared IP) configured for seamless failover. This configuration might take a few minutes to apply.<br><img decoding=\"async\" src=\"https:\/\/digitalmaterial.ch\/blog\/wp-content\/uploads\/2024\/11\/image-20241003-094922.png\" alt=\"\"><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Testing the Setup<\/strong>:\n<ul class=\"wp-block-list\">\n<li><strong>Failover Test<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Simulate a failure on Firewall 1 by disconnecting it.<\/li>\n\n\n\n<li>Verify that Firewall 2 assumes the active role without disrupting network services.<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>Connectivity Check<\/strong>:\n<ul class=\"wp-block-list\">\n<li>Ensure both firewalls can reach the internet through the WAN switch when active.<br><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/li>\n<\/ol>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Benefits-of-This-Setup.1\">Benefits of This Setup<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>High Availability Maintained<\/strong>: Overcomes the ISP&#8217;s hardware limitations to provide a resilient network.<\/li>\n\n\n\n<li><strong>Cost-Effective Solution<\/strong>: Avoids the need for expensive ISP hardware upgrades by using an affordable switch.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\" id=\"Considerations\">Considerations<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Single Point of Failure<\/strong>: The WAN switch becomes critical. Mitigate risks by:\n<ul class=\"wp-block-list\">\n<li><strong>Using High-Quality Hardware<\/strong>: Invest in a reliable switch from a reputable manufacturer.<\/li>\n\n\n\n<li><strong>Redundancy<\/strong>: Consider stacking two switches for redundancy if supported.<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"Conclusion\">Conclusion<\/h1>\n\n\n\n<p>Navigating the complexities of network configurations, especially when faced with ISP-imposed limitations, can be challenging. However, as we&#8217;ve explored, Cisco Meraki switches and firewalls provide flexible solutions to enhance your network&#8217;s resilience and efficiency. By tailoring your setup to your specific ISP scenario, whether they provide a router with multiple ports or a single port, you can establish a robust high-availability infrastructure.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"Tested-Swiss-ISP\">Tested Swiss ISP<\/h1>\n\n\n\n<p>The configurations and solutions outlined in this discussion have been tested and validated with several leading Swiss Internet Service Providers (ISPs). This ensures that the high-availability setups using Cisco Meraki switches and firewalls are compatible and effective within the Swiss networking environment. The following ISPs have been confirmed to support the configurations described:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Swisscom (Centro Business 2.0 and 3.0 Router)<\/strong><\/li>\n\n\n\n<li><strong>iWay (Mikrotik RB3011UiAS-RM)<\/strong><\/li>\n\n\n\n<li><strong>SASAG (Cisco ISR 1100)<\/strong><\/li>\n\n\n\n<li><strong>Init7 (MikroTik CRS310)<\/strong><\/li>\n<\/ul>\n\n\n\n<p>By collaborating with these ISPs, we&#8217;ve verified that they accommodate the necessary technical requirements, such as supporting virtual MAC addresses and allowing for HA configurations without restrictive policies. This compatibility ensures that you can confidently implement the solutions discussed, knowing they have been proven to work effectively with these providers.<\/p>\n\n\n\n<p><\/p>\n\n\n\n<h1 class=\"wp-block-heading\" id=\"Resources-and-Further-Reading\">Resources and Further Reading<\/h1>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Visualizations of WAN Switch topologies: <a href=\"https:\/\/docs.google.com\/presentation\/d\/1xsb8imtUFjN13so86kIZ04IR9f6WEKdbpUrYVON64Zg\/edit#slide=id.g13c30242b26_4_252\">MX, MS &#8211; WAN Breakout Switch &#8211; Google Pr\u00e4sentationen<\/a><\/li>\n\n\n\n<li>Meraki Documentation: <a href=\"https:\/\/documentation.meraki.com\/MX\/Deployment_Guides\/MX_Warm_Spare_-_High_Availability_Pair\">MX Warm Spare &#8211; High-Availability Pair &#8211; Cisco Meraki Documentation<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>If you&#8217;re managing a network and struggling with limited connectivity options from your ISP, like a single fiber uplink, an ISP router that lacks robust features or only one port with the required bandwidt, this discussion is for you. We&#8217;re going to explore how Cisco Meraki switches and firewalls can help overcome these challenges. Our [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":146,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[],"class_list":["post-121","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-networking"],"_links":{"self":[{"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/posts\/121","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/comments?post=121"}],"version-history":[{"count":9,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/posts\/121\/revisions"}],"predecessor-version":[{"id":239,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/posts\/121\/revisions\/239"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/media\/146"}],"wp:attachment":[{"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/media?parent=121"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/categories?post=121"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/digitalmaterial.ch\/blog\/wp-json\/wp\/v2\/tags?post=121"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}