Skip to content
Meraki WPN

Meraki WPN quickstart

From zero to one apartment connected to its own Wireless Personal Network, with its Group Administrator invited to the Self-Service portal — about 20 minutes.

This quickstart covers Meraki WPN, the Meraki Dashboard-API delivery of EasyPSK for Cisco Networks. It takes an Organization from no Context to one apartment with a Wireless Personal Network, a Group Administrator who can connect their phone, and two roommates they’ve invited. Expect about 20 minutes, most of it spent collecting the Meraki API key and verifying the SSID in the Meraki dashboard.

Note

Looking for the primary delivery method? EasyPSK via RADIUS serves both Cisco Meraki and Catalyst 9800 and scales past 100,000 keys: start at EasyPSK via RADIUS.

Warning

External DHCP required. EasyPSK doesn’t work with Meraki access-point-assigned DHCP (NAT mode). Confirm your Meraki network uses an external DHCP service before starting.

You have administrator access to the Organization and the Admin Dashboard is open at the Services overview. You’ll also need:

  • A Cisco Meraki dashboard with an MR-series wireless network.
  • A Meraki Dashboard API key. Full organization access (Read/Write) is required for the Template based configuration type; a network-scoped key (Read/Write) is sufficient for the Networks based types.
  • An SSID configured for Identity PSK without RADIUS in the Meraki dashboard.
  • The email address of the first resident you’ll appoint as Group Administrator.
  1. Open the Add Service Context picker

    From the Organization’s Services overview, click Add Service Context.

  2. Pick Meraki - Wireless Private Network

    Click the Meraki - Wireless Private Network card. You’ll land on the new Context’s landing page with Create Wireless Personal Network still disabled — the Meraki integration isn’t configured yet.

Open Configuration → Basic Configuration and fill the Meraki WPN fields:

  1. Paste the Meraki API Key

    40 characters. The platform immediately queries the Meraki Dashboard for the organizations the key can reach.

  2. Pick the Meraki Organization

    Select the Meraki organization that owns your wireless network.

  3. Choose a Configuration type

    • Template based — the Meraki network inherits from a configuration template. Pick the template.
    • Networks based (single network) — one specific Meraki network. Pick it.
    • Networks based (multiple networks) — the same WPN SSID on several networks. Enter the SSID name, click Fetch matching networks, then check the networks to cover.
  4. Pick the SSID

    The dropdown shows SSIDs configured for Identity PSK without RADIUS on the selected network or template. One Context governs one SSID.

  5. Choose a Meraki Group Policy Strategy

    Shown for Template based and single-network setups; the multiple-networks setup always uses One policy per group.

    • One policy per group — every Wireless Personal Network gets its own Meraki Group Policy. Fine-grained per-unit behaviour at the cost of more policies in the Meraki dashboard.
    • Shared Policy — every Wireless Personal Network references the same pre-existing Meraki Group Policy. Fewer policies, uniform treatment.

    See Meraki connection for the trade-off.

  6. Set Pre-Shared Key defaults

    Pick the character classes (capital / lowercase / numbers / special) and the default length (8–63). These apply to auto-generated PSKs going forward.

  7. Save

    The landing page’s Create Wireless Personal Network button now becomes active.

Basic Configuration tab showing Meraki WPN Configuration, Meraki API User Info, Context Name & Description, Pre-Shared Key defaults, and Delete Context sections
Basic Configuration — Meraki integration summary, PSK defaults, and Context details.
  1. Click Create Wireless Personal Network

    On the Context landing page. The form shows two tabs: Create single and Create multiple.

  2. Create single — for the first apartment

    Enter the Name (for example, Apartment 301) and accept the auto-generated Pre-Shared Key (or paste your own, 8–63 characters). Click Create Wireless Personal Network. The platform writes a Meraki Identity PSK on each associated network and lands you on the new Wireless Personal Network’s detail page.

Tip

Onboarding an entire building? Switch to Create multiple — enter a Name prefix (e.g. Apartment  ), a starting counter, and how many units. The platform creates the whole batch in one go.

  1. Open the Self-Service Users tab

    In the Wireless Personal Network’s detail view.

  2. Click Add Self-Service User

    Enter the resident’s email. Check Group Administrator (the User (default) permission is always on). Leave Send email invite? checked and click Add Self-Service User.

The resident receives a Self-Service portal login email. When they click the link they see their apartment’s How to connect card (SSID + PSK + QR code), a Change Passphrase card to rotate the key, View Connected Devices to see everything joined to their bubble, and Group Users to invite their roommates.

Self-Service portal on a phone in dark mode showing the How to connect card expanded for Apartment 301 with SSID student-wifi, a masked PSK with Show toggle, and the connection QR code
Group Administrator view of Apartment 301 in the Self-Service portal — How to connect with QR code.

The resident scans the QR code (or types the PSK manually) on their phone. The phone joins the shared SSID with the apartment’s private key. Back on the admin side, under the Wireless Personal Network’s Connected Devices tab, their phone shows up within minutes.

Next