Skip to main content

Site to Site VPN

Location in Dashboard: Security and SD-WAN >> Configure >> Site-to-site VPN

Diagram

Classes

appliance (meraki.domains.organizations.networks)

NameTypeConstraintMandatoryDefault Value
vpn_site_to_site_vpnClass[vpn_site_to_site_vpn]No

vpn_site_to_site_vpn (meraki.domains.organizations.networks.appliance)

NameTypeConstraintMandatoryDefault Value
modeChoicehub, none, spokeYes
hubsList[hubs]No
subnetsList[subnets]No
subnet_natBooleantrue, falseNo

hubs (meraki.domains.organizations.networks.appliance.vpn_site_to_site_vpn)

NameTypeConstraintMandatoryDefault Value
use_default_routeBooleantrue, falseNo
hub_network_nameStringmin: 1, max: 127Yes

subnets (meraki.domains.organizations.networks.appliance.vpn_site_to_site_vpn)

NameTypeConstraintMandatoryDefault Value
local_subnetStringRegex: ^(?i:any|(\d{1,3}\.){3}\d{1,3}(\/\d{1,2})?)(,(any|(\d{1,3}\.){3}\d{1,3}(\/\d{1,2})?))*$Yes
use_vpnBooleantrue, falseNo
natClass[nat]No

nat (meraki.domains.organizations.networks.appliance.vpn_site_to_site_vpn.subnets)

NameTypeConstraintMandatoryDefault Value
enabledBooleantrue, falseNo
remote_subnetStringNo

Config Sample

meraki:
domains:
- name: EMEA
administrator:
name: Foo Bar
organizations:
- name: Dev
networks:
- name: Dev-main-cx-provider
product_types:
- appliance
- camera
- switch
- wireless
appliance:
vpn_site_to_site_vpn:
mode: hub
hubs:
# - hub_network_name: Dev-main-test-site
# use_default_route: true
subnets:
- local_subnet: "192.168.20.0/24"
use_vpn: true