Setup and guides

About the SmartSecurity network

Understand your SmartSecurity network. Learn about the three preconfigured networks that are set up and how to manage their IP Space and DHCP settings.

Network overview

ComplexityMedium

SmartSecurity’s MX64 security appliance sits between your business’ devices and the Internet and is the heart of the network. It manages both your internal and Internet traffic, along with managing IPs and VLANs within your network.

Network configuration Your SmartSecurity appliance comes with a base configuration comprised of three distinct networks (subnets) that all the devices within the network will use. While this base configuration will meet the majority of a business’s needs, the configuration can be modified to suit the specific requirements of your business.

SmartSecurity’s MX64 security appliance sits between your business’ devices and the Internet and is the heart of the network. It manages both your internal and Internet traffic, along with managing IPs and VLANs within your network.

Network configuration Your SmartSecurity appliance comes with a base configuration comprised of three distinct networks (subnets) that all the devices within the network will use. While this base configuration will meet the majority of a business’s needs, the configuration can be modified to suit the specific requirements of your business.



The predefined networks are:

  • Management: VLAN 1 default address space is 192.168.100.x./24. This is where non-Internet devices such as Voice Traffic will reside.

  • Private: VLAN 10 default address space is 192.168.1.x./24. This is where all of your business networks will reside. Connecting to the private wireless network (Private SSID) will automatically place your wireless devices into the private network where they will share the same access rights and network policies as the wired business devices (and will be able to print and share files as well).

  • Guest: VLAN 50 default address space is 192.168.50.x/23. The guest network is where guests who visit your business can go to access the Internet while on your premises. This network is most often used over WiFi and seamlessly integrates with SmartWiFi. Joining the Guest SSID automatically places a guest in the guest network.

  • Demilitarized zone (DMZ): VLAN 75 default address space is 192.168.75.x/24. This is where all Internet-facing servers in your network should be housed. Examples of such servers include a website you host from a web server in your business or your email server. The DMZ separates these Internet-facing servers from your private and guest networks so that those networks are protected from any potential attacks.

SmartSecurity network overview
SmartSecurity network overview

Show more

Support scope for the SmartSecurity network

ComplexityMedium

Learn which SmartSecurity features are supported by Shaw and which support areas will require your own IT department to manage.

Shaw-supported features: These features and/or functionalities are present and supported by Shaw Support.

  • DMZ and forwarding rules
  • Firewall settings
  • IP space
  • SmartSwitch Meraki switches

Learn which SmartSecurity features are supported by Shaw and which support areas will require your own IT department to manage.

Shaw-supported features: These features and/or functionalities are present and supported by Shaw Support.

  • DMZ and forwarding rules
  • Firewall settings
  • IP space
  • SmartSwitch Meraki switches

Available but unsupported features: These features and/or functionalities are present on SmartSecurity but would require your own IT department to support and manage. A Shaw Support agent will not be able to assist with these features.

  • Third party equipment setup (e.g., wireless access points, switches, etc.)
  • Third party VPN connection
  • Access control/Splash pages
  • Active directory
  • Third party radius
  • Third Party DHCP on a VLAN other than the native VLAN
  • Passthrough or PVN concentrator - The MX is the main gateway (Meraki Dashboard setting)
  • Switch ports
  • Wireless concentrator
  • 3G/4G failover and third party Internet failover
  • Dual WAN links

Unavailable features: SmartSecurity does not provide these features and/or functionalities.

  • Web caching
  • Adding non Shaw-supplied Meraki equipment
  • SmartSecurity remote
  • Broadcasting of Shaw Go on SmartWiFi sites (at this time)
Show more

About the SmartSecurity Global Network Settings

ComplexityAdvanced

All of the settings for your private, guest, and demilitarized zone (DMZ) networks are pre-configured so they should only be altered if you have a specific requirement, such as adding new equipment, or if you need to modify the IP space for your private and/or DMZ network(s).

Note: If changes to the default settings have been made and you wish to restore your network(s) back to the pre-configured settings, please contact your local Shaw Business Technical Support representative for assistance.



All of the settings for your private, guest, and demilitarized zone (DMZ) networks are pre-configured so they should only be altered if you have a specific requirement, such as adding new equipment, or if you need to modify the IP space for your private and/or DMZ network(s).

Note: If changes to the default settings have been made and you wish to restore your network(s) back to the pre-configured settings, please contact your local Shaw Business Technical Support representative for assistance.



Addressing and VLANs

This section is where you can change the IP address space used for your subnets and VLAN IDs, and where you can configure your appliance ports to serve specific VLANs. To view and manage your security network settings:

  1. Log in to dashboard.meraki.com.
  2. Hover over 'Security appliance', then select 'Addressing & VLANs'.

SmartSecurity Addressing and VLANs
SmartSecurity Addressing and VLANs



Dynamic Host Configuration Protocol (DHCP)

This allows you to configure how IP addresses are handed out on your networks. All devices that connect to a network are assigned an IP address, and the IP range as well as DHCP settings can be adjusted for each network. You can also adjust fixed IP assignments and reserved ranges here. To view and manage your DHCP settings:

  1. Log in to dashboard.meraki.com.
  2. Hover over 'Security appliance', then select 'DHCP'.

SmartSecurity DHCP Configuration
SmartSecurity DHCP Configuration

Show more

SmartSecurity network reporting

ComplexityMedium

This is a useful tool for viewing the performance of your network, client usage in the last day, and whether your hardware has the most up-to-date firmware. View the status of your network by following these steps:

This is a useful tool for viewing the performance of your network, client usage in the last day, and whether your hardware has the most up-to-date firmware. View the status of your network by following these steps:

  1. Log in to dashboard.meraki.com.
  2. Hover over 'Security appliance', then select 'Appliance Status'.

SmartSecurity Appliance status settings
SmartSecurity Appliance status settings

Show more

SmartSecurity Network monitoring

ComplexityMedium

You will be able to see all devices connecting to your network and what they are doing while on your network. To view analytics on users:

You will be able to see all devices connecting to your network and what they are doing while on your network. To view analytics on users:

  1. Log in to dashboard.meraki.com.
  2. Hover over 'Network-wide', then select 'Clients'. Network Monitoring: Network-wide Clients

Network Monitoring Networkwide Clients
Network Monitoring Networkwide Clients

Show more