Meraki Firewall with Ovnicom IT Managed Services

By having a Meraki Firewall MX, with Integrated LTE Modem, your branch becomes much more resistant to Internet link failures, it can provide better load balancing capacity, it can enhance the SD-WAN solution

I want to start this post by talking about the spectacular series of Cisco Meraki MX Series Firewalls.

In the previous image I want to start this post by talking about the spectacular series of Cisco Meraki MX Series Firewalls.or, you can see the Cisco Meraki Security and SD-WAN catalog, which has been designed to provide connectivity to different segments or types of companies, regardless of their size.

So we have Firewall MX equipment for:

  • Telecommuting.
  • Medium offices.
  • Great Offices.
  • Virtual Environments in
  • AWS y Azure.

Additionally, within the main characteristics we have:

  • Next Generation Firewall.
  • SD-WAN.
  • Site to Site VPN and Remote Access VPN.
  • QoS, Web Caching, Content Filtering.
  • Active/Passive High Availability.(Firewall Arrangement)
  • Link Bonding and Failover.
  • Intrusion Prevention Systems.(Vía Cisco SNORT)
  • URL Content Filtering.
  • Security Rules based on Geolocation.
  • Cisco Advanced Malware Protection.(Vía Cisco Talos Intelligence Group)
  • PCI Compliance.
  • API.

The main benefits of having Meraki MX Firewall in your Business Network are:

  • MX Firewalls are natively integrated with the Meraki Portfolio Solution and are managed through a Single Dashboard.
  • It is a UTM (Unified Thread Management).
  • All Meraki MX Series Firewalls have native SD-WAN capability and are included in the license.
  • All equipment management traffic is secured via SSL to the Meraki network, while Client traffic remains Out-Off Band and never passes through the Meraki network.
  • Expansion via API. (Application Programmability Interface)

Another great characteristic of the Cisco Meraki MX Firewalls is having 2 RJ-45 connections to support 2 Internet Providers, being able to place their interfaces in ACTIVE-ACTIVE or ACTIVE-PASSIVE mode, allowing load balancing or redundancy of communication links. Internet on the same computer.


Additionally, to its native capacity of 2 Internet Interfaces, it offers a third Internet connection capacity through a 3G/4G/LTE Cellular Telephone Provider, by integrating (in some of its models) an LTE Modem. By having the LTE modem integrated directly into the Cisco Meraki Firewall MX chassis, all you need for that LTE interface to work is to place the SIM card in the LTE slot.


By having an MX Firewall with Integrated LTE Modem, your branch becomes much more resistant to Internet link failures, it can provide better load balancing capacity, it can enhance the SD-WAN solution and it even allows you, it can offer you a better experience for your network user and client, and finally allows you to design and implement the following redundancy scenarios:

  • ACTIVE-ACTIVE-ACTIVE (Load Balancing and Dynamic VPN)
  • ACTIVE-ACTIVE-PASSIVE (Load Balancing and Dynamic VPN)
  • ACTIVE-PASSIVE-PASSIVE (Dynamic VPN)

And in the event that you have multiple branches, you have WAN services such as MPLS or Point-to-Point links installed and running, and you want to activate SD-WAN in the Meraki Firewalls, you will have the option of managing the 3 redundancy and high availability models, described above. , and additionally, make use of one of the best technologies in terms of routing and load balancing available in Meraki firewalls, which is known as Performance Routing.

This feature allows you to create Link Selection Policies, based on the Link Quality added to the definition of the maximum DELAY, LOSS and JITTER that a business application can support.

Finally, remember that the entire Cisco Meraki MX Firewall Series, as well as the Complete Cisco Meraki Portfolio, can be purchased directly through the Managed Business Network Services that Ovnicom offers to the corporate segment in Panama and in the Central America Region.

The entire Cisco Meraki Complete Portfolio can be purchased directly through the Managed Business Network Services that Ovnicom offers to the corporate segment in Panama and the Central American Region.

Excellent! Until here today’s post!

For any comment or requirement, you can write to [email protected]

Jesús Espinoza

EVP & CTO

Ovnicom