DHCP on Sonicwall with UC320

Hello!
I needed help setting up a netowrk. How can I have a sonicwall act as a DHCP server for the UC320 I have?
The computers are connected via LAN. And the Sonicwall is connected via WAN.
Thanks for your help.

Here's a sample of the debug output, which never gets a response:
-- packet received on direct-connect port requires forwarding to external DHCP server. Next-hop is 10.1.1.1
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcp option len, including the magic cookie = 64
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcp option: received DHCP DISCOVER msg
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcp option: skipping option 61, len 7
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcp option: skipping option 12, len 11
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcp option: vendor class id = MSFT 5.0 (len 8)
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcp option: skipping option 55, len 12
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 dhcpParseOptions: options end, len 64, actual 64
Mon Mar 26 19:11:45 2012: 00:11:22:33:44:55 Forwarding DHCP packet (332 octets) from 00:11:22:33:44:55
The gateway of the new WLAN is 10.1.1.1/24
The client MAC is 00:11:22:33:44:55
The IP address of the new WLAN interface is 10.1.1.4/24
I can't ping 10.1.1.1 from 10.1.1.4.  I can ping 10.1.1.4 from everything else, including hosts on other subnets.  There are no ACLs in the way. 

Similar Messages

  • DHCP NACK BAD_ADDRESS with MAC 3c80a00a & 802.1x

    Hello,
    We have   implemented 802.1x on our network. Problem is with  computers that have  DHCP reservation.  With those  computers, that is “escalation” problem. 
    We have VALID DHCP reservation for several computers, and it works, but   few times a week those computers do not get IP address, usually at the client side we gat address conflict with ip 0.0.0.0 and mac address is 
    CISCO vendor, but we can not determent  which or what  device.
    I know that  when  computer   get IP address and before it assignee that address it try’s  with ARP broadcast if that address is already used.
    When that happened,  I get NACK  event. Problem is that WHEN it happens, it fills up DHCP client long in  a few seconds., the same happened ad  DHCP server.
    I have  setup wireshark  to listen only for  DHCP Server, and everything look ok. Now i`m in a process to setup monitoring on client side, to capture what is happening,
    Interesting is that DGCP reservation fro that client change when  NACK happed  It change from VALID client MAC address to .We have to  basically  recreate reservation, or client  does not get IP address 
    it will get APIPA. Strange is that even if we reboot client PC several times, it will not get any valid IP address from DHCP scope,  only APIPA.
    We have setup to IP helpers,  but we have ONLY one DHCP server. Alll servers (2008 R2)are up to date and the same is with clients (Windows 7).
    What could be problem ?

    
    Hi,
    If the switch sends out an ARP Probe for the client while the Windows PC is in its duplicate-address detection phase, Windows detects the probe as a duplicate IP
    address and presents the user with a message that a duplicate IP address was found on the network for 0.0.0.0.
    The issue is described in Cisco Web site:
    Duplicate IP Address Error Message Troubleshoot
    http://www.cisco.com/c/en/us/support/docs/ios-nx-os-software/8021x/116529-problemsolution-product-00.html
    You can follow the article to resolve the issue.
    Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.
    Hope this helps.

  • Apple Airport Extreme Base Station for PPPoE, DHCP and NAT with ActionTec DSL modem

    I just spent several hours trying to track down proper instructions for setting up my Apple AEBS to do the PPPoE, DHCP and NAT while connected to an ActionTec M1000 (no wireless module).  It turns out my initial set ups on both devices were correct, but that the order for rebooting and reconnecting the two devices is critical.  All of the threads I found on this forum and on many others suggested this was not possible, but it is.  What I don't yet know is whether it is the best method for running my home network DSL connection to my ISP (CenturyLink). 
    The instructions I found that worked come courtesy of Brandon Konkle's blog and are both simple and clear:  http://brandon.konkle.us/post/19637529637/centurylink-actiontec-q1000-airport-ex treme-bridge
    The proper settings for the ActionTec DSL Modem can be found under Advanced Setup/IP Adressing/WAN IP Address
    Click RFC 1483 Transparent Bridging then click on Apply.
    (see also http://qwest.centurylink.com/internethelp/modems/m1000/pdf/M1000_BRIDGE.pdf )
    To reduce time, do this BEFORE you reset your AEBS then set the AEBS so that you don't have to wait for the AEBS to reboot. 
    In contrast to what Brandon described for the Q1000 modem, my AEBS never reconnected to the modem (he describes his as getting an IP from his ISP, then dropping it then getting another over and over - mine never got an IP).  Once you have reset both devices as described, the critical steps I have not found described elsewhere were:
    1.  Disconnect the power from both the modem and the Airport Extreme.
    2.  Disconnect the Ethernet cable between the two devices
    3.  Restore power to the 2 devices and allow them to fully reboot.  For the ActionTec M1000, this is indicated when the lights stop blinking.  (Note that the Internet light will NOT be lit in this instance since the modem is acting only as a bridge.  You will NOT have an Internet connection until the AEBS is reconnected.)  The AEBS will be blinking yellow.
    4.  Reconnect the Ethernet cable between the devices (make sure on the M1000 that you are using the connector with the circle icon over it, not the arrow icon).
    Within about 60 seconds, the AEBS light went to steady green and the connection to the Internet was restored.
    Now I have to see if this is a more stable configuration than the flaky one I had before while using the AEBS as a bridge and the M1000 to do everything. 
    Does anyone think or know if it will make a difference?
    Message was edited by: Bud Shaw

    Now I have to see if this is a more stable configuration than the flaky one I had before while using the AEBS as a bridge and the M1000 to do everything.
    Does anyone think or know if it will make a difference?
    No one can accurately predict in advance what the actual results might be. I've tried both ways with different products and cannot say that one method is better than the other.  What works is best.
    In theory, it is preferable to have the modem provide the PPPoE connection service since it is the device connected directly to the Internet.
    In practice, results vary depending on the service provider, products used, phase of the moon, alignment of the planets, etc.

  • Internet DHCP/DNS issues with WRT1900ac

    I've had a WRT1900ac now for about 2 weeks and the problems seem to be escalating.  Need help.  And yes, I've already read dozens of threads about these issues and nothing seems to be working.
    Most of the problems seem to be centered around this DHCP/DNS issue that so many have been reporting.
    First, the symptoms:
    Galaxy S4 phones when connected via wifi have some apps that don't update (facebook and google play)
    Some computers (both Win 7) will connect to the network just fine, both wired and wireless - but won't be able to get to the internet
    I've spent the last 2-3 days of my life reading forums and trying all sorts of things to get this to work properly (like my old router) and I'm still stuck.  Some things I've tried:
    Firmware is up-to-date (latest version: 1.1.8.164461)
    Manually assigned static DNS in router config settings (connectivity -> local network) to various combinations including the router address, 8.8.8.8, 8.8.4.4, 75.75.75.75, 75.75.76.76 (I have comcast), OpenDNS addresses, etc.  I read that the router address is not needed, so I stopped including it.
    I manually assigned IPs and DNS on the Galaxy S4 phones and that seemed to work... but also seems unnecessary.
    I've reserved DHCP addresses on the computers in question, that didn't seem to work, I also manually set DNS on one of the comupters (can't on the other... long story/not my computer) and that worked for a while and then stopped working.
    The only way to get one of the computers on the internet now is to turn on the guest network (even though the computer is hard wired to the router), connect, and then the wired network works.  No clue why this is, but my guess is that it needs the guest network for DNS, then it fails back over to the wired network.  Once that happens, I can actually turn off the wifi on the computer and everything works great... until I reboot.  Key point: I can't change any settings on that box other than entering in SSID/passphrase info for the wireless connection.  I can connect to the regular (non-Guest) wifi just fine - I just can't ever get to the internet.
    I've tried massaging DHCP settings on the router until I'm blue in the face - Static DNS, reserving DHCP addresses, hell I even put one of the computers in the DMZ to see if that would work and it still can't connect to the internet (it's worth noting that with my old router, Linksys WRT310N, the setup was literally plug-and-play - no hassle with any of this).
    I've tried countless router reboots, factory resets, turning off my modem and router for 2+ minutes, and nothing is working.
    I even read somewhere that if you modify your DHCP settings at all that the WRT1900ac stops doing DNS properly and breaks, so I even tried several "hard" factory resets and used all the default DHCP/DNS settings.  And it worked... for a few hours.
    Seriously, I'm at my wit's end.  I'm out a lot of money on this thing and it's been one headache after another.  Please help.

    I think for most people its a bad idea to hold out that hope, lol. It seems like a great piece of hardware but if you really need a router and don't want to have to 'play' with it, its probably not a good choice. I have an EA6900 that I am very happy with but it has the same restrictions as far as DNS and I really hate the idea that I am forced to use the smartwifi portal. I would really like for them to give me a choice of the old gui or the new one and let ME decide. Lots of routers to choose from out there now and new ones seem to be coming out all the time so do some reading and see if something suits you better. Good luck!

  • [SOLVED] Can't get DHCP to work with wifi

    On my recent install my wireless connection won't work with DHCP. If I use static IP I can associate with my AP and all is well but with DHCP wicd-gtk goes through the connection process and then just says "Not Connected". Any ideas?
    Last edited by ill (2013-01-22 01:18:28)

    ill wrote:I don't believe that's the issue. wicd successfully autodetected the interfaces... plus if it had the wrong interface I don't think using static IPs would fix the problem.
    Have you tried connecting manually with wpa-supplicant?
    The wiki says this
    If wicd repeatedly fails to get an IP address using the default dhcpcd client, try installing and using dhclient instead:
    # pacman -S dhclient
    I'd try manually with wpa-supplicant and if that works try the new dhcp client

  • No dhcp for airport with parallels

    hi,
    i have a macbook and installed parallels yesterday. since i rebooted the mac, my airport can not get an address from dhcp. it only has a self assigned ip address. when i first ran paralles i chose bridged network. but now it makes no difference which network option i choose in parallels. there is no ip from dhcp for airport anymore. the ethernet card still works fine. but i`m afraid that once i use it with parallels the same thing will happen to it. anyone got an idea what to do about that?
    greetz,
    mike

    Hi, Mike / James Hetfield.
    I don't mean to send you somewhere else, but this is a question you need to address with Parallels Support. I presume you've reviewed the Parallels User Guide concerning DHCP.
    You might also want to search the AirPort & AirPort Express Discussions in case it has been addressed there, where AirPort-related questions are answered.
    Good luck!
    Dr. Smoke
    Author: Troubleshooting Mac® OS X

  • NAT & DHCP on C1760 with switch/InterVLAN routing

    Hello,
    trying to achieve following (see also Connection diagram.txt attachment):
    There is satellite link, which goes to receiver.
    Receiver is connected to Cisco 1760 router via switch. From router on serial interface there is one way outgoing satellite link.
    On switch between receiver and router resides customers with public and private IP addresses, which can access Internet. Here I do not have problems, using DHCP for assigning private and NAT on stick, everything just works.
    Problem is too achieve NAT working on switch (WIC-4ESW), which is inserted into Cisco1760.
    Most important that other DHCP pool should be assigned here, we need to use other NAT pool (to split public IP assigned).
    DHCP started to work, NAT is working only one way - from private to public IP address.
    When reply comes to public IP which should be translated again, it does not.
    I see that packets come on VLAN40 interface (see also configuration file of router), but do not see translation happening.
    Right now in configuration NAT for VLAN40 is done using NAT on stick.
    I also have tried plain NAT (using serial0/0 as NAT outside, no policy route on VLAN40) - result is same.
    May be tried to achieve is practically not possible?
    Thanks!

    Hello,
    looking at the configuration of your router, I do not see access list 110, which should be matched in your route map:
    access-list 10 permit 192.168.200.0 0.0.0.255
    access-list 11 permit 192.168.100.0 0.0.0.255
    access-list 100 permit ip any 193.100.100.0 0.0.0.3
    access-list 100 permit ip 192.168.200.0 0.0.0.255 any
    route-map NAT_Internet permit 10
    match ip address 110
    set ip next-hop 192.168.1.2
    Can you check if this is a typo ?
    Regards,
    GP

  • DHCP Lease process with static clients

    Hi ,
    I have a question regarding DHCP .
    Let us assume that DHCP server has been configured with ip address pool,  say for ex: 192.168.1.2 to 192.168.2.254.
    Now  assume that in the LAN network we have 3 clients which have got the  DHCP addresses from the above pool say from 192.168.1.2 to 192.168.1.4.
    Now  I will add one more client with static ip address from the above pool say IP: 192.168.1.5.
    Now if I add one more DHCP client, in the above LAN network, will the DHCP server come to know that there is already static client with IP address 192.168.1.5 is exist? and for the newly added client, will it give the same static ip address 192.168.1.5 or will give the next available IP address?
    Basically I want to understand that whether DHCP server will have idea of static clients?

    Hi,
    you can do this creating more than one dhcp server on your router, and you can provide the IP address from the different dhcp servers through assigning ip address from the blog to the specific interface in the router.
      regarding the static IP address that have been assigned to a host in your network, the dhcp try to lease the same IP address to another hosts in the network, but once it detected that this IP address is conflected the dhcp server remove this IP address and assign the next IP to the host.
    please let me know if this is not cleare.
    regards,

  • Static IP works, DHCP doesn't with road runner

    The boss has a road runner cable modem in his office. He is directed connected from port 2. I ran a wire from port 1 to the downstairs and connected it to a WRT54G. I did this so people downstairs could get wireless access. No one is wire connected to the router.
    If I set up the router as DHCP, everyone can see the WRT54G but cannot get internet connectivity. Since we do have a static IP, I set that up in the WRT54G and everyone can connect. That is until the boss uses his machine.
    I spoke with Road Runner and they said the cable modem is set up for dynamic IP but we do have a static IP. The best I can decipher is that once the boss signs on the cable modem goes back to dynamic.
    But my question is why doesn't the DHCP work? If I unplug the wire from the WRT54G and plug straight into my laptop, it works fines.
    Of course Road Runner is blaming the Linksys as the problem.
    Thanks
    Keith

    Will you please let me know when you connect 2 computer from the 2 Ports on the Modem are you able to go online from both the Computer at a time.....if yes then you have to configure the Router....if No then You have to connect the Modem to the Internet Port of the Router and configure it accordingly...while configuring make sure you have your computer connected to any one of the 4 ports on the Router.
    follow the Steps as Follows:-
    Open the set up page of the router by launching an Internet Explorer Browser and type the address bar, 192.168.1.1 and press enter. When it prompts for the username and password, leave the username field empty and provide password as admin and click on ok.
    On the main setup page the ""Internet Connection Type"" should be
    on ""Obtain IP Automatically - DHCP “. Click on the Save Settings
    button.
    Now click on the sub tab ""MAC address clone"".
    - Click on enable
    Click Clone your PC's Mac & click save settings
    Check Internet  IP on Status page of router ....
    If getting Valid IP .... try going online
    If not ... power cycle for 4-5 minutes & then again check the Internet IP address by login into the Setup page of the Router....checked the Internet IP Address....

  • DHCP Renew Issue with Road Runner

    I have had Road Runner for 6 weeks, the first four weeks everything was running smoothly. However, for the last two weeks the connection has been sporadic and I am constantly losing my connection.
    My computer is connected directly to the modem with an ethernet cable; there is no router, there are no other computers. I'm simply trying to stay online with my little computer.
    My network settings are for built-in ethernet, using DHCP, with the addresses provided by my ISP (Road Runner) and I've added two DNS server addresses for Road Runner (because several other discussions, posts, etc. recommended using those to help stay connected). I've tried turning my IPv6 off, I've tried manually configuring my DHCP connection, I've scoured the internet for help. All to no avail. Most topics deal with networking with PC's or airports and I have neither attached to this computer. I've created new locations to try and "erase" any default settings and I've kicked the modem a few times (accidentally I assure you ).
    From what I can tell, (keep in mind I sell trees and know nothing about this) the DHCP lease does not renew when it's supposed to. I am disconnected every half hour or so, or I have to press "renew" to be able to stay online (highly annoying).
    When I first subscribed to Road Runner the connection was fine and I was able to stay online indefinitely. Two weeks ago that changed, even though I did nothing (intentionally) to change network settings. This means I downloaded nothing that would affect my network configuration, I didn't poke around in network configurations, I did not change any settings. I've spoken with their online "tech" support four times. I've spoken to three people on the phone and I've had a tech come out to replace my modem and ethernet cable. When the problem persisted I contacted them again and was told the problem was with Apple <gasp>.
    I believe I need help in finding a way to have my mac recognize changes in DHCP and to renew the lease automatically, for all I know it could be that the moon isn't aligned with Saturn <shrug>...preferably in vernacular I can understand. Thank you in advance for any help!
    Lori

    Hi Lori,
    You're not really in the right forum for your problem (this area is for Apple-server) but I'll give it a go...
    First, short explanation on DHCP. This process is pretty straightforward for the client's function so I'm suspicious of the "blame the mac" conclusion from Road Runner (although does not exclude possibility). When the mac starts up, it issues a 'Discovery' broadcast, looking for a DHCP server. The server responds with an 'Offer' of an IP address. The client then responds with a 'Request' to the server for the same IP address and the server then sends an 'Acknowledgement' that it may use this address, along with other information including the 'Lease Time' - how long the client may continue to use that info.
    The lease time is important. After 50% of this time has gone, the client will attempt to renew it from the same server by issuing another Request and awaiting another Acknowledgement. Should there be no Acknowledgement, the client will continue to issue Requests up until the expiry of the original lease time at which point it will drop all the info which it received from the server and then issue another Offer broadcast, looking for a new server (which may or may not be available).
    So, first thing, lets see what lease time you are getting from Road Runner and see if this corresponds with the 30 minutes you seem to get from a session...
    Ensure you have a cable connection to your router, restart computer. In Applications-> Utilities, start up Terminal. Enter the following line, ending with normal 'return' key (new line)...
    ipconfig getpacket en0
    That's a zero at the end.
    Look for the line similar to this, "lease_time (uint32): 0x1bd8", and post back the string of chars you get at the end of your line (corresponding to the "0x1bd8" part). Quit the Terminal utility.
    Can you also confirm what computer model you use, and the system version?
    -david
        Server 10.4.8

  • DHCP Proxy broken with particular interface/server (7.0.235.3)

    We are evaulating a NAC solution that wants to be the authoritative DHCP server for its quarantine vlans.
    So we created a new interface on the controller, and set that interface to use this product as the DHCP server.
    Systemwide, we are running with DHCP Proxy enabled because some years ago the passthrough option was not working reliably for us alongside DHCP_REQD.  Since this is a global setting we are somewhat reluctant to go playing around with it.
    The WiSM card sends the DHCP request to the alternate DHCP server, that server replies, and we can even see the DHCP offer being sent out the PortChannel to the controller via a span sniff. All the source and destination addresses on the offer look OK.  However, clients assigned to this interface do not acquire a DHCP address.
    A DHCP address can be successfully obtained from a wired client joined to the same VLAN (the helper address is there, too.  This should not interfere, and doesn't, as we tried removing it just to be thorough and still the WLC does not work.)
    In the debug logs we see that interface marked as dirty for failure to resolve DHCP.  However we are not using interface groups so there should be no other alternative, and as far as we can tell delivery of the requests to the DHCP server is not being blocked by the failover mechanism:
    *DHCP Proxy DTL Recv Task: Feb 21 13:58:24.70 9: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response
    on interface 'regtest'. Marking interface dirty.
    We've tried moving the APs temporarily and rebooting the controller with the interface configuration saved to flash.  This did not jog anything loose.  If we set the DHCP servers on the interface back to the same servers that all the other interfaces use, DHCP works for wireless clients.
    The NAC appliance uses what appears to be a vanilla Linux server, as do we in production.  We can see and even alter the config for that server, and it does not contain anything eclectic, just the run of the mill options.
    We've tried using DHCP override on the test SSID to send all DHCP for every interface to the NAC appliance (not our desired final result, just as a test.)  This fails as well.
    Anybody have any other ideas as to how to jog this loose, how to ferret more information out of the controllers, something we may have missed configuration-wise, or a bug ID?

    It's a hold over from the Airespace code.  In the early versions, the way the WLC learned the client IP address to put them into a RUN state, was to proxy the DHCP request, so they could see the IP offered to the client.
    Granted it wasn't ideal but it was the way they did it.  Now it's learned a different way, but proxy is still the default, and required if the WLC acts as a DHCP server.
    HTH,
    Steve
    Please remember to rate useful posts, and mark questions as answered

  • Microsoft PPTP / GRE not working with UC320

    We just upgraded our phone system to a UC320.  We are configured with the default VLAN settings.  I have added port forwarding for 47 and 1723 but when I try to cennted with the Microsoft VPN optin with my Windows 7 desktop I receive an error 619.  Does anyknow if this is possible with the UC320 adn what I should try to get this working again.  It worked with our old router.

    Hello.  So, does Portforwarding work at all on this unit? 
    I am trying to do some portforwarding on my UC320.  I am using the ip address of 192.168.24.1 as the default gateway for my LAN, which is the UC320.  I am using a Cisco SF302-08P Managed POE switch with an IP address of 192.168.24.2.  From the UC320 i can ping the SF302-08P and visa versa.  However, when i try to port forward in the UC320 to the switch (so i can manage both remotely) it doesn't work. 
    The Port Forward rule i'm using is as follows:
    TCP/UDP Port 8090 forward to 192.168.24.2 port 80. 
    I have also tried many permutations of this rule using multiple ports on the WAN side (80, 8081) and just using TCP (no UDP).  All variations produce the same result - nothing!
    Also, i do have http management enabled on the switch.  I can manage the switch just fine from my web browser just by entering 192.168.24.2.  So that seems to be working as well. 
    PLEASE HELP!!!!

  • Error while trying to use the DNS/DHCP record sync with IPAM script

    Could somebody help me to resolve the below error.
    I get this error message , when i try to do a Invode-ipamdhcplease
    ===========================================
    Invoke-IpamDhcpLease : [] Connecting to remote server failed with the following error message :
    The WS-Management service cannot process the request. Cannot find the Microsoft.ipam session configuration in the
    WSMan: drive on the  computer. For more information, see the about_Remote_Troubleshooting Help topic.
    At line:1 char:1

    + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : OpenError: (System.Manageme....RemoteRunspace:RemoteRunspace) [Invoke-IpamDhcpLease], PS
       RemotingTransportException
        + FullyQualifiedErrorId : InvalidResourceUri,PSSessionOpenFailed

    Try the following:
    Reason for issue:
        Possibly the Microsoft.ipam ps session configuration is missing from the ipam server.
    Resolution:
         Log into the ipam server
    Launch a powershell window with administrator privileges
    Execute the following commands:
    New-PSSessionConfigurationFile -Path ./ipam.pssc
    Register-PSSessionConfiguration -Name Microsoft.ipam -Path .\ipam.pssc
    Set-PSSessionConfiguration -name Microsoft.ipam –ShowSecurityDescriptorUI
    Add the following groups from the local machine scope:
            IPAM Administrators
            IPAM ASM Administrators
            Make sure they have full control privileges.
    Get-PSSessionConfiguration *ipam
            Now you should be able to see the Microsoft.ipam ps session configuration
    If the following command succeeds then the error should no longer occur
    $testSession = New-PSSession -computerName <ipamFQDN> -configurationName Microsoft.ipam.

  • IP or DHCP address issue with VPN

    setup: Mac server 10.6.8, VPN service L2TP, Airpot Extreme software fully updated in company LAN set to DHCP: IP range is 10.0.0/24, DHCP service is OFF in server admin...
    VPN IP range is 10.0.0/24
    I noticed sometimes when I VPN into my company network via L2TP (which I do IT support for) that someone on the company LAN gets a notice that another device on the network is using the same IP as their machine.
    All clients in the company LAN are set to DHCP and the remote connecting Mac is set to DHCP, and the remote LAN is a different network than the company LAN.
    This instance once interrupted remote server access (via VPN) because the remote connecting client somehow attain the IP of the companys' Drobo File server , which itself has a manual IP.
    Do I need to set the VPN IP range to a different scope than the company DHCP range? ie. Company DHCP range (in AE) to 10.0.0.1 - 10.0.200 and in VPN IP range settings 10.0.0.201 - 10.0.0.254
    Is there a setting I've missed?
    Can anyone help?
    Thx

    Do I need to set the VPN IP range to a different scope than the company DHCP range? ie. Company DHCP range (in AE) to 10.0.0.1 - 10.0.200 and in VPN IP range settings 10.0.0.201 - 10.0.0.254
    Yes, You need TWO pools of IP addresses in your LAN.
    One is kept by the DHCP server and addresses from this pool are assigned to DHCP clients on the LAN.
    The other range is handled by the VPN server and clients connecting to the VPN are assigned one of these addresses. VPN clients do NOT get a DHCP address from the LAN DHCP server.

  • Using DHCP Option 60 with Aironet APs

    Hello,
    I'm trying to configure Aironet 1000 series and Aironet 1130 series APs to talk to a wireless controller card inside a 2811 ISR. I have a Catalyst 3550 L2/L3 Switch between my APs and the 2811. So far the Aironet 1000 series found the wireless controller successfully. The following is the current configuration for the 3550 DHCP pool:
    ip dhcp pool WLAN_CM
    network 172.27.2.0 255.255.255.0
    option 60 ascii "Airespace.AP1200"
    default-router 172.27.2.1
    option 43 ascii "172.27.3.12"
    I would like to add another option 60 statement to be able to connect the Aironet 1130 AP. Would this configuration work?:
    ip dhcp pool WLAN_CM
    network 172.27.2.0 255.255.255.0
    option 60 ascii "Airespace.AP1200"
    option 60 ascii "Cisco AP c1130"
    default-router 172.27.2.1
    option 43 ascii "172.27.3.12"
    I will try shortly in the lab. I am not sure if I need to create another DHCP pool entirely dedicated for the 1130.
    Any input will be much appreciated.

    Hello
    why do you use option 60?
    From my view, the AP needs just to know option 43 to find the controller, but the problem is that the airespace-ap wanna have option 43 in ascii and ios-ap in lwapp mode wanna have the option in hex.
    best regards
    Oliver

Maybe you are looking for