cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 

DHCP Forwarding

DHCP Forwarding

Alex
New Contributor
We have a VLAN that we want isolated from the rest of the network (hosts on this VLAN can only talk to hosts on same VLAN). The problem is, we also want DHCP on this VLAN (traffic should get out of that VLAN just to get DHCP addresses from our server). I have enabled bootprelay on the core router. The problem is: if I enable IPForwarding on this VLAN, it won't be isolated anymore.

Is there a way to keep IPForwarding disabled while routing DHCP traffic only?

Thanks in advance.
7 REPLIES 7

Eric_Burke
New Contributor III
Another thought. Can you stretch the vlan to a subinterface on your dhcp and disable other services on that interface?

Interesting idea... however, the DHCP server is managed by a different group and they will not allow this setup.

Eric_Burke
New Contributor III
Perhaps a policy to deny all but dhcp originating in that vlan?

Yep, it's looking like I may have to go this route (I was trying to avoid deploying an ACL in our Core router). It'd be nice if Extreme switches could have IPForwarding disabled but bootpr enabled for a particular VLAN ļ™‚ .

GTM-P2G8KFN