Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

DHCP Replication

Status
Not open for further replies.

detroit

MIS
Sep 13, 2002
160
CA
Hello to all....

There's got to be some way to replicate DHCP scopes.

I'm using Mac reservation to keep unauthorized people from just plugging into my network and getting access to it.

What I want to do is replicate this across to other DHCP servers at other sites for redundancy, without having to type in the mac address reservations.

What I could then do is put 2 IP-Helper addresses in my router, and if the first failed, it could go to the second one as a backup.

If anyone has a way to do this, I would appreciate it.

OR

If someone has a better way to resrict the network from people just plugging in, and getting an address, I'm all ears!

Thanks

Detroit
 
You should be able to suck out those reservations from your existing server using 'netsh dhcp' command and then import them into the new server. Here are the netsh dhcp docs:


and here's someone's walkthrough for the procedure you're interested in:


ShackDaddy
 
If someone has a better way to resrict the network from people just plugging in, and getting an address, I'm all ears!

Do you have managed switches? If you do then you can assign MAC addresses to individual ports on the switch, rather than over DHCP. This has advantages and disadvantages; it stops any device getting onto the network (unless they spoof a MAC address from a device plugged into that port) and is independent from other network systems. If a device is plugged in and the MAC address does not match, it will lock the port until an administrator enables it. So, double-edged sword if people move devices around a lot.

Remember that limiting DHCP by MAC does not stop people getting onto your network, it simply means they will not automatically get the network settings. They could type them in manually.


Carlsberg don't run I.T departments, but if they did they'd probably be more fun.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top