Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Complex DHCP Issue 1

Status
Not open for further replies.
Apr 11, 2003
105
US
I have 3 separate networks that are on MetroEhternet2 as their backbone. Each Location has its own DHCP Server on a Cisco 2950 Switch. The Main Location has a Cisco 4506 switch for a total of 4 locations. The problem is that Sites 2 Site 3 and site 4 keep picking up IP address from each site, so a computer or printer at site 2 might pick up an IP address from the DHCP Server at Site 4. This problem effects only the locations that have the 2950 switch. Computers at site 1, which is the 4506 dose, not suffer from this problem nor has site 2, 3, or 4, picked up an IP address from site 1. Any Help would be great.
 
What is the routing setup? Also are there any vlans involved?
 
if these networks are connected .... i would look at the way the DHCP is giving out the addresses. Also, remember, dhcp is a broadcast packet.. so if you block port 67 and 68 "UDP" at the router / switch, you can stop the dhcp from transmitting its broadcast to any of the other sections of the network..
 
so how exactly would you block those ports? Use an access list to block those? The DHCP servers have not changed, the only change is the topology that we use to interconnect the offices, previously we were using a Nimly and/or a Frame T1, Now we are using MetroEthernet.
 
well.. im not expert with the cisco IOS, but i would assum you would do something like

acces-list 92 deney UDP 67 UDP 68

something like that.. BUT PLEASE NOTE.. i dont know much about CISCO IOS.. :).. i am trying to learn more though .. .good luck..
 
ohh.. you could also do this..

access-list 33 deny 172.17.207.17 255.255.0.0

just substitute your IP for the one i put in//

you could also do without the subnett mask..

but you may need it depending on your situation and ip class

ex.. class a 255.0.0.0 class b 255.255.0.0 class c 255.255.255.0 have fun.. :)
 
geesh.. i forgot to say.. use the IP's of the other DHCP servers..
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top