Cisco Meraki (MX and Z1 series)

Follow

Purpose

In this guide we will see how to configure a Cisco Meraki device (MX and Z1 series) for Volare.

Please note that the images contained in this article may contain outdated configuration data. Therefore, please check the data contained in the article "Parameters for the Solution" at the bottom of the page, as they are certainly up to date.

Prerequisites

This article applies to the following models:

  • MX series
  • Z1 series
In order to use these devices it is necessary for the router to be connected to the Internet.
 
It is recommended to update your device firmware to the last available version.
You may choose to configure the device to automatically receive and install last firmware updates.
 

Accessing the web interface

Cisco Meraki products can be configured and managed through the appropriate public web interface.

RADIUS accounting not available

Please note that these devices do not support RADIUS accounting!
It is possible to use these devices with Volare but, in this case, all the features of the platform dealing with RADIUS accounting (such as Service Profiles, statistics, report etc.) will not be available.
 

Configuring wireless network

As first step, it is necessary to set your wireless network as open, with no encryption. In order to do this it is necessary to click Teleworker gateway in the left toolbar and then select Configure > Wireless.
 
 
Then you can set the name of your network and set the Security field to "Open", as described in the picture below.
 
 

Configuring RADIUS settings

You can configure RADIUS settings by clicking Teleworker gateway in the left toolbar and then selecting Configure > Access control.
 

It is necessary to configure this part as described below:
  • Splash page: Sign-on with my RADIUS server
  • RADIUS for splash page: Please check the Parameters for the Solution paragraph, at the end of this article.
  • Failover policy: Deny access
  • Network access control : Disabled: do not check clients for antivirus software
  • Captive portal strength: Block all access until sign-on is complete
 

Walled garden

In the same Access control page, it is also possible to set some hosts or a range of IP addresses that can be visited by end-users even without being authenticated. To do this, you must configure the walled garden.
In order to configure the walled garden please check the following articles:
Please note that you must add the WPortal URL into this list, otherwise you can experience problems. You can find this URL in the Parameters for the solution paragraph, as Custom splash URL field.

Configuring the Welcome Portal

Finally by clicking Teleworker gateway in the left toolbar and then selecting Configure > Splash page, you are able to set the following two options to redirect unauthenticated end-users towards the Welcome Portal:
 
  1. The field labeled as Or provide a URL where users will be redirected, in the Custom Splash URL fieldset, must be set to the URL of the Welcome Portal
  2. The field labeled as Where should users go after the splash page?, in the Splash behavior field, must be set to the URL of the Welcome Portal (A different URL)
You can find the correct URL for the Welcome Portal in the Parameters for the Solution paragraph, at the end of this article.
 
 

Allowing free access to the CDN

As explained in the article Enabling the CDN, it's necessary to add some IP addresses to the walled garden in order to support the access to the CDN.
The domains to add for this purpose are:

  • c4wstatic.cloud4wi.com
  • c4wstaticjs.cloud4wi.com

Entering the device to the Admin Panel

For Cisco Meraki devices, the Admin Panel requires only the MAC address and the Identifier field is not required.
 
If you need help in finding the MAC address of your device, please check the following article from Cisco Meraki documentation: Locating the MAC address of Cisco Meraki devices.
 
In order to add a new access point to the system, please see How to add an access point.

Parameters for the Solution

The parameters indicated above for the Mode Settings section are mandatory for the proper functioning. The parameters to integrate the device with the Solution are the following:

RADIUS for splash page (primary)
Host: 54.247.117.188
Port: 1812
Secret: (it will be communicated by Cloud4Wi)
 
RADIUS for splash page (secondary)
Host: 79.125.111.180
Port: 1812
Secret: (it will be communicated by Cloud4Wi)

Custom splash URL

URL: https://splashportal.cloud4wi.com/

Please note that it is necessary to enter the Welcome Portal URL exactly as it is written above.
If you enter the Welcome Portal URL in different formats (e.g. https://splashportal.cloud4wi.com/c4wportal/mysplashportal), then the redirection will fail and the end-user will not be able to see the Welcome Portal.

If these parameters change in the future, we will promptly inform you about new values.
Have more questions? Submit a request

Comments