Cisco Meraki

Here is a step-by-step guide on how to configure Cisco Meraki to work with VAULT.

Please refer to Cisco Meraki's documentation for additional information on how to configure VAULT with Cisco Meraki.

Configuration Steps Overview

  1. Configure SSID.

  2. Configure Access Control.

  3. Configure RADIUS.

  4. Configure Client IP and VLAN.

Configure SSID

  1. Click on “Wireless.”

  2. Click on “Configure -> SSID.”

  1. Under the SSID Slot select “Enabled.”

  2. Click “Rename” to Enter SSID Name – VAULT.

  1. Click "Save Changes."

Configure Access Control

  1. Click “edit settings" next to Access Control.

  1. Under Security select “Identity PSK with RADIUS.”

  2. Select “Easy PSK” from the drop-down list.

  1. Wi-Fi Personal Network (WPN) – “Disabled.”

  2. WPA encryption – “WPA2 only.”

  3. 802.11r – “Disabled.”

  4. 802.11w – “Disabled.”

  5. Mandatory DHCP – “Disabled.”

  1. Splash page – “Non (direct Access).”

Configure RADIUS

  1. Under RADIUS servers click “Add Server” and enter the following information.

    1. Host IP or FQDN – xx.xx.xx.x

    2. Auth port – xxxx

    3. Secret – XXXXXXX

  2. Click “Done.”

  3. Click “Add Server” to add a Secondary RADIUS server and enter the following information.

    1. Host IP or FQDN – xx.xx.xx.x

    2. Auth port – xxxx

    3. Secret – XXXXXXX

  4. Click “Done.”

  5. Under RADIUS accounting servers Click “Add Server” and enter the following information.

    1. Host IP or FQDN – xx.xx.xx.x

    2. Acct port – xxxx

    3. Secret –XXXXXXX

  6. Click “Done.”

  7. Click “Add Server” to add a Secondary RADIUS server and enter the following information.

    1. Host IP or FQDN – xx.xx.xx.x

    2. Acct port – xxxx

    3. Secret – XXXXXXX

  8. Click “Done.”

  9. Set Accounting interim interval to “30 Minutes.”

  10. RADIUS testing – “Disabled.”

  11. RADIUS CoA support – “Disabled.”

  12. RADIUS CoA support – “Disabled.”

  13. Dashboard RADIUS proxy – “Enabled.”

  14. Click on “Advanced RADIUS Settings.”

  15. Set NAS ID to “Custom.”

  16. Enter “Custom” String for NAS ID.

  17. All other settings may be left as default or set to Best Practices.

Configure Client IP and VLAN

  1. Under Client IP and VLAN select “External DHCP server assigned.”

  2. Select “Bridged.”

  3. Select “Override VLAN tag” next to RADIUS override.

  4. Select “VLAN ID” as VLAN tagging option.

  5. Set a DEFAULT VLAN ID (per best Practices).

  1. Click “Save” to complete all changes.

Last updated

Was this helpful?