Home > Wireless LAN > Firewall and Traffic Shaping > All VLANS can ping the Cisco Meraki AP's LAN Interface

All VLANS can ping the Cisco Meraki AP's LAN Interface

Table of contents
No headers

By design, all devices connecting through a Meraki AP can ping the AP's Management Interface, even if they are on different VLANs.

This can be disconcerting when administrators expect ICMP traffic to be denied by their Inter-VLAN routing rules.

For example, a computer connected to a Guest SSID on will be able to ping and AP with an IP address of, even if there are Deny Permissions set on the upstream router.

See Diagram:


All other communication will follow the rules of the Inter-VLAN router.

For additional security, you can set the My.Meraki.com password by following this Knowledge Base Article:

Change My.meraki.com and Wired.meraki.com password

Last modified



This page has no classifications.

Explore the Product

Click to Learn More

Article ID

ID: 1666

Explore Meraki

You can find out more about Cisco Meraki on our main site, including information on products, contacting sales and finding a vendor.

Explore Meraki

Contact Support

Most questions can be answered by reviewing our documentation, but if you need more help, Cisco Meraki Support is ready to work with you.

Open a Case

Ask the Community

In the Meraki Community, you can keep track of the latest announcements, find answers provided by fellow Meraki users and ask questions of your own.

Visit the Community