I'm kind of a rookie too ;)
This setup was done by someone else (3 years ago) and nobody tested it until I came to this company. From my point of view is kind of overkill tbh and doesn't really make sense in company I work for now. It is what it is and no budget to change it in near future ;)
Here switches are needed so CPE modems could exchange vrrp packets over L2 and decide which one is a master and holds virtual MAC address with "main public ip address" which is then configured as a gateway on Meraki firewall's wan ports.
Anyway I saw and configure similar solutions with WAN switches in front in places when you, for example, distribute internet connectivity. Lets say you have one ISP and /27 subnet of public ip addresses. You connect ISP modem into your switch, keep all ports in pvid1and done. You can connect your customers firewalls into your WAN switch and lend them one of your public ip addresses to be assigned on theirs firewalls.
------------------------------
Marcel Staniaszek
------------------------------
Original Message:
Sent: 01-04-2023 10:29 AM
From: Ethan Kozak
Subject: 2x 1930 as WAN switches - failover issue
I'm curious and perplexed; why do you have switches in front of your MX Router/Firewalls?
Perhaps I'm just a rookie and haven't seen this config before, but tossing web-managed Layer2 switches in front of your Firewalls seems nonsensical to me. I'd love to know why this was done.
------------------------------
Ethan
------------------------------