General Flashcards
Dashboard role in SAML SSO- SAML response or request?
“As Meraki is supposed to use idp initiated SSO, idP creates response (token/assertion?) and redirects user to Meraki SSO server for validation? Server will then redirect user to resource(dashboard)? i.e Meraki does not create original SAML request, while idP provides SAML response?
Test options are: dashboard sends SAML response, SAML request, provides user access credentials,parses and authenticates users
Answer: dashboard provides user access credentials? not clear on this as idP does the authentication, but dasboard does subsequently grant access based on roles defined on it, which need to match roles passed by idP on SAML tokens.”
How device and network tags are used (select 2)
“i)The Organization > Configure > Manage Tags page allows Administrators to configure a combination of Network and Device specific tags to create Summary Reports filtered for specific devices across multiple networks. This allows for the easy creation of much more specific Summary Reports than creating reports based on entire Networks.
ii)General admin- Network tags used to give admins access to all networks with that tag
For reference:
-In Systems Manager, device tags can be used to give Network admins access to selected devices (test option for giving device access in orgs with many networs is incorrect)”
When would syslog be used over SNMP
Detailed information for network events needed (eg. device flows, client connectivity, config changes, etc.)
Question on HA support on MX/MS devices
“Believe both MX and MS support using VRRP
(MS Series switches configured for layer 3 routing can also be configured with a warm spare for gateway redundancy)”
Meraki best practice to preserve historical event log data - external syslog? setting event log retention to unlimited?
if more than three months of event log history is required for administrative, legal, or compliance requirements then an external log server can be used.
Exhibit showing Org with coterm lic model for various device types, with AP licence device limit of 7,and current AP count of 1 - what happens if 7 more APs are added?
AP device limit will be exceeded and this will affect whole Org, not just APs - 30 day grace period will be invoked after which org will shut
Types of org admin permissions
Full, Read-only
OSPF authentication type
MD5
What does ‘out of licence’ mean?
‘Out of license’ is a term that refers to an organization that is in one of the following two states: (1) Cloud license has expired, or (2) The number of hardware devices exceeds the number of cloud licenses. If an organization is out of license it means it has been deactivated, and either license renewals or additional licenses are required for the Meraki products to function, and for these products to be manageable using the Meraki cloud.
If coterm licence has expired, how to rectify (2 ways)?
Renew dashboard licence or increase total no of devices licensed (assume if cause was device count being exceeded)
ADDITIONAL INFO:
If org with coterm lic exceeds device lic limit and enters 30 day grace period, can be brough back into compliance by either removing devices from networks or by purchasing additiona licencing. If same happens due to passing coterm date, need to purchase additional licencing. If a device type that org currently has no licences for is added, whole org will be affected as well and enter 30 day grace period
When co-termination date is about to expire, you can purchase a renewal through an authorized Meraki partner.
ADDITIONAL INFO:
If org with coterm lic exceeds device lic limit and enters 30 day grace period, can be brough back into compliance by either removing devices from networks or by purchasing additiona licencing. If same happens due to passing coterm date, need to purchase additional licencing. If a device type that org currently has no licences for is added, whole org will be affected as well and enter 30 day grace period
When co-termination date is about to expire, you can purchase a renewal through an authorized Meraki partner.