Maximum no of DHCP pools on a WLC
Hi, I want to create a separate ip pool pool based on the WLAN, what the maximum no of DHCP pools allowed on a WLC.
Internal DHCP is only for small networks and lab use.
We do not recommend to use it for any large deployment, please use an external DHCP server instead.
This is documented:
The internal DHCP server was introduced initially for branch offices where an external DHCP server is not available. It is designed to support a small wireless network with less than ten APs that are on the same subnet.
It is not a full-blown general purpose DHCP server. It only supports limited functionality and will not scale in a larger deployment.
http://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/110865-dhcp-wlc.html#Internal-DHCP
While you can configure multiple DHCP pools and it can work fine for some time, in my experience I have seen this internal DHCP server stop leasing IP address with 2 or 3 class C networks configured.
My recommendation, use an external DHCP server.
Similar Messages
-
WLC 5508 Flexconnect dhcp request landing on wrong vlan/dhcp pool
Hi,
We've recently setup our 5508 to work with Flexconnect. The 5508's run on 8.0.100, they are setup redundant. On the remote site we've setup a local dhcp pool for the various WLAN's/VLAN's. The AP's have registered with the WLC succesfully.
We then setup the flexconnect groups, added the ap's and configured 1 vlan mapping to it's corresponding wlan id. Alsio setup the wlan, made it so it's using flexconnect, bound it to the interface which will allow it to reach the local dhcp machine.
User can see the SSID, can login using the password, but they are awarded an ip addres from a different dhcp pool, meant for antoher vlan than the bonding in the flexconnect group is indicating.
When I check the local dhcp pool for bindings on the mac address of a machine I can see multiple bindings. At 1 point I had 3 bindings in different pools, 1 on the native vlan for the AP, 1 on the vlan it should have and 1 on another vlan which wasn't configured anywhere in the flexconnect setup.
Does anybody have a clue how and why this is happening?Just to add to Salma... All your AP's in FlexConnect are most likely connected to a trunk port. Make sure the native Vlan is defined and the vlan's are allowed on the trunk port. Then you need to verify that the AP's native Vlan and WLAN to Vlan mappings are correct. Seems like you might have some AP's that are not defined properly and that's why users that connect to a WLAN is getting in the wrong subnet.
Scott -
Wireless dhcp issue after upgrading WLC to 7.6.100
Hi All,
We have upgraded our controllers to version 7.6.100. After upgrading, the access points also upgraded their version to 15.2(4)JB3. But, the problem is that after this process the APs do not get IP. It stays on this state:
*Sep 26 03:55:36.334: %CAPWAP-3-DHCP_RENEW: Could not discover WLC using DHCP IP. Renewing DHCP IP.
Not in Bound state.
The DCHP configuration is OK, since it is working in other two controllers we have and that we are not upgrading untill this issue is solved.
If we connect the APs via console and configure a static IP and controller's IP, the AP registers and works fine. But, the access points are located in 20 remote sites, so we would like to avoid going site by site.
Has anyone suffered this issue and knows how to "recover" those access points?
Thank you very mucho for your help!Hi,
Thank you for your answer conraddaniel.
But, our issue was an error on the DHCP. The DHCP server pool for the APs was configured with lease time infinite (on a Cisco 6500). After capturing the packets and debugging on the AP we realized that the AP were receiving wrong values:
DHCP: Scan: Renewal time: 2147483647
DHCP: Scan: Rebind time: 536870911
So, on the AP debugging we saw:
DHCP: Scan: Renewal time larger than Rebind time
On Cisco documentation:
T1 Timer(Renewal) After a certain portion of the lease time has expired, you attempt to contact the server that initially granted the lease in order to renew the lease so its IP address can still be used.
T2 Timer(Rebinding) If renewal with the original leasing server fails, because, for example, the server was taken offline, then you ideally try to rebind to any active DHCP server and try to extend its current lease with any server that allows it to do so.
These T1 and T2 timers can be any values, but must be less than the IP address lease duration. T1 Timer must be less than T2. Generally T1 is set to 50 percent of the lease duration and T2 is set to 87.5 percent of the lease duration. Use this rule to set T1 and T2 timers.
On the previous version of the WLC, the DHCP was configured in the same way and we confirmed that the APs received same times, but they ignored those wrong values.
The workaround was to modify the lease time of the DHCP pool (1 day). This way, both timers had valid values and the APs accepted the DHCP OFFER. We still do not know why with lease infinite these timers have wrong values (a bug?). -
DHCP pools for LWAP's with multiple models
I have 2 different AP models (1130's & 1140's) for which I want to create a DHCP pool on a core layer 3 switch with an Option 43 pointing to the Wireless LAN Controller. In conjunction with the Option 43 entry however, I need to specify the AP type as an ASCII string in the Option 60 parameter. Problem is, how can this be done for multiple ASCII strings; ie. multiple AP models? The DHCP pool option 60 entry only allows for one string and you can only enter one option 60 command per DHCP pool. Surely it is common to have more than one AP model and that this can be done without having to resort to multiple DHCP pools (one for every model)?
Can anyone shed some light on this for me please? Would be much apprciated as I've come up blank on CCO documentation!I usually just stage the AP first to join a WLC and to make sure it works prior to installing it. Pllace it on the same submnet as the management and let it join and then set the primary, secondary and or tertiary. Then you can move it to any vlan you want. If you want to use DHCP Option or DNS, then you should know that if for example it is an RCVK IOS previous to capwap it will only do LWAPP. Once it joins to the WLC in LWAPP it takes a new IOS the unit will do CAPWAP.
As an example 1140 have an RCVK IOS that only run CAPWAP, so it should only do CAPWAP:
CISCO-LWAPP-CONTROLLER and CISCO-CAPWAP-CONTROLLER
Create two A records both pointing to the same controller if you want to use DNS.
DHCP Option 43:
DHCP Option 43 is limited to one access point type per DHCP pool. You must configure a separate DHCP pool for each access point type.
http://www.cisco.com/en/US/docs/wireless/access_point/1140/quick/guide/ap1140getstart.html#wp37440 -
DNS in DHCP Pool (Internal DNS issue)
I know that we can setup multiple DNS server under DHCP pool. But I like to make sure the order.
I have multiple branch offices.
Let us say that Branch 1 office has a router with 10.30.1.1 as default gateway.
Our internal DNS is 10.0.0.1 and 10.0.0.2 as Pri and Sec.
My order of DNS server is like below.
1. gateway
2. internal DNS
3. public DNS provided by ISP
I saw couple of issues that when I put internal DNS first. Particular situation is when IPsec is not working, users could not access internet through domain name because they had internal DNS which is not reachable.
But, when gateway is first order, I am not sure whether user are able to access internal website because gateway DNS doesn't have internal DNS records.
So, my question is that. what should be the best order for DNS setup under DHCP among default gateway, internal DNS and public DNS? Our current setup doesn't have even gateway address, it only has internal DNS addresses only.
ip dhcp pool ccp-pool1
network 10.30.1.0 255.255.255.0
domain-name test.org
default-router 10.30.1.1
netbios-name-server 10.30.1.1
dns-server 10.30.1.1 10.0.0.1 10.0.0.2 24.25.5.60Thank you, Richard.
You are right. when I setup router IP for DNS server in DHCP pool. it did not work.
Let me ask regarding external DNS forwarding.
I like to know the process of exteranl DNS.
User --> Internal website --> OK with internal DNS
User --> External website --> Internal DNS forwarding to External DNS
We have our own external DNS (ns), in this case, if external DNS (ns) is down, every branch users are not able to resolve any external IP because internal DNS can't get reply from external DNS?
2nd question)
IPsec is split-tunneled, but in this case, every DNS request goes internal DNS which is located in HQ and goes back through IPsec? Usually Split tunnel doesn't go internet traffic through IPsec but internet directly.
3rd Question)
what is for ip name-server x.x.x.x when I setup ip name-server 8.8.8.8 and I tried to ping 8.8.8.8 from router, it didn't work. Am i missing something?
https://supportforums.cisco.com/thread/230711
Thanks for your time and knowledge. -
DHCP pool to large. I want to shrink it.
Hi. So I have a DHCP Pool from say x.x.x.1 to x.x.x.200 buti want to reduce it to allow more static IP addresses at the top end so I want for example to change it to x.x.x.1 to x.x.x.170 to do this do I need to make a not of all the settings and delete the pool entirely and recreate the new pool, or is there which I would prefer to do, some way to shrink the pool, without blowing it away.
I'm paranoid and hate the idea of deleting it and creating a new pool, just in case. :)
ThanksAlong with Anders comments...
I'm not sure, but with NetWare one could adjust begin and end ranges for the DHCP pool... no? (Can't check). That option was gone with Linux (eDir integrated) DHCP services, but can still be done "under water".
If it's just the range and no real subnet changes... you can also edit the range using iManager or ConsoleOne (by looking at the values of the subnet pool in the "other" tab). Then reload the service. You should give the PC's some time (depending on lease time and how ofter PC's get rebooted) to get an assignment that's inside the new set range before handing out the addresses for static assignment.
As added note:
The export/import will work just as well, but a word of warning: with the Linux DHCP version you can lose certain info like class definitions and other little stuff. So it's always good to make note of the settings before doing that.
Cheers,
Willem -
ip dhcp pool POOL52
network 10.10.52.0 255.255.255.0
domain-name didata.ise
dns-server 10.10.50.11 10.10.50.1
default-router 10.10.52.1
option 43 ascii 10.10.50.100
lease 7
Interface Vlan52
description EmployeeVLAN-52
ip address 10.10.52.1 255.255.255.0
ip helper-address 10.10.50.10
In this case above, 10.10.50.10 is the ISE server...Yes you can do that. just add secondary DHCP as "ip helper-address "ISE IP Address" ".
-
adm-r1#sh run | sec dhcp
ip dhcp relay information option
ip dhcp bootp ignore
ip dhcp excluded-address 10.1.5.1 10.1.5.99
ip dhcp excluded-address 10.1.5.200 10.1.5.254
ip dhcp pool XXXXXXXXXXXXXXXXXXXX
network 10.1.5.0 255.255.255.0
default-router 10.1.5.1
dns-server 10.1.100.22 10.1.100.36 10.1.100.249
domain-name XXXXXXXXXXXXXXXXXXXXX
option 43 ip 10.1.5.100 10.1.5.199
option 60 ip 10.1.5.100 10.1.5.199
CUT
The customer here wanted to set an option 43 and 60 to dhcp adresses in this local pool.
What I am wondering is if the option command I have set works like the excluded addresses command does. Aka setting the option in range from .100 to .199?
I also added the ip dhcp relay information option to the config.
Other suggestions for this?
Haven't really set up many dhcp pools with option before. The customer's goal is to get autodiscovery going on their end.
My apologies if this question is posted in the wrong community, I found something with the word "LAN" and went for it.
/ErikThis may be a little late, but to help people in the future, I'm posting my working config
ip dhcp pool Solo
option 119 hex 0563.6973.636f.0363.6f6d.0002.636f.0275.6b00
This has to two domains, cisco.com and co.uk.
05 length in hex
00 null route label per RFC 1035. This goes at the end of each domain name.
63 ascii hex value of character
05636973636f03636f6d0002636f02756b00
05 C I S C O 03 C O M 0002 CO 02U K00
Yours would be configured as
option 119 0e6c6f7475732d696e7465726e616c02636f02756b0004636f7270056c6f63616c00
lotus-internal co uk corp local -
Can not create or modify DHCP pool in UC560
I can't create new or modify existing DHCP pool inside our UC560 by using CCA 3.2.3 version: Configurate->Routing->DHCP server. I always get error "invalid DHCP pool range. The default gateway IP address 192.168.2.1 must be within the range of the address excluded from the DHCP pool."
I check my DHCP exclude tab: I already have start IP: 192.168.2.1 and End IP 192.168.2.10.
I would like to know solution to modify my current DHCP pool or I can add new DHCP pool by using CCA. If I have to use CLI, please let me know how to do it.
Thanks
JacquesSomething with my configuration that CCA can't modify it.. It have to go through CLI
Thanks,
Jacque -
Cannot make DHCP reservation out of the DHCP pool
Hello,
I foud a bug in the router:
I am using network 172.16.20.0 with subnet 255.255.252.0 wich means i can use IP adresses from 172.16.20.1 until 172.16.23.254.
When i setup my DHCP server on the router (from 172.16.20.1 to 172.16.20.100) i cannot make a DHCP reservation outside of this DHCP pool.
Is there a workaround or am i doing something wrong?
Thanks in advance.This is normal networking standards. When a DHCP pool is set up, only reservations work with in this pool. You can set up static IPs out side this pool if needed. Which is recommended for printer, NAS and low priority devices.
-
DNS not resolving to new machines on network after increasing DHCP pool size
Hello,
I am having a very strange issue with connecting new machines to reach the internet.
We have a ASA 5505 which the previous tech configured the DHCP pool to 192.168.1.60 - 192.168.1.110
We ended up reaching our limit which I changed it to: 192.168.1.60 - 192.168.187
Then next day when I arrived to work, our DC was hung from windows updates. Once we got everything back up, every computer currently on the network can reach the internet/VPN tunnels etc. So (continuing with my day) I created a new server in a VM (Hyper-V)
I can ping everything internally (even the router) 192.168.1.1, but I cannot resolve DNS. I have configured a static IP, tried Dynamic IP.
I have looked for any ACL indicating to block outside the range of the old DHCP pool but no luck.
On my local maching I can ping the DNS addresses, but just not on the new server.
Can anyone point me in the right direction to where to look for this issue?I ended up figuring out what the issue was.
Since it was in a Hyper-V VM. the hosting server had to be updated to SP1.
Once completed, and rebooted. The VM in question got an IP address. -
I´m doing a design for presale, where I will need a router what support PAT for 500 or a little more of users, it not need any more features only static routing and dhcp pool for 500 users, can you help me for know what router recommend?
What is your WAN speed currently and projected WAN speed in the next 3 years?
-
Maximum number of connection pools?
Hello,
I'm running WL 5.1, sp11 on Solaris with Oracle 8.1.7. I was
wondering, is there a maximum number of connection pools allowed by
weblogic? Or does it not matter so long as the sum of all the max
connections in each pool is less than the max connections oracle will
let you make simultaneously?
Thanks, DaveHi. There is no limit to the number of pools weblogic will let you
make. The number of connections Oracle will let you have is
between them and you. :-)
Joe
"D. Alvarado" wrote:
Hello,
I'm running WL 5.1, sp11 on Solaris with Oracle 8.1.7. I was
wondering, is there a maximum number of connection pools allowed by
weblogic? Or does it not matter so long as the sum of all the max
connections in each pool is less than the max connections oracle will
let you make simultaneously?
Thanks, Dave -
PC takes first IP from DHCP pool instead of binding (router 851)
I have configured main dhcp pool, and several bindings for my PCs. Whenever I connect PC it takes first available IP from main pool !!! What am I doing wrong??
ip dhcp pool local-pool
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
domain-name lan.local
dns-server 4.2.2.2 4.2.2.1
lease 0 0 1
ip dhcp pool Jurek
host 192.168.1.253 255.255.255.0
hardware-address 0000.aaaa.bbbbThanks Mikael.
Almost works with your advice.... I have to add 01 before MAC address, so when client-identifier is: 0100.00aa.aabb.bb then everything works perfectly !!
Thanks. -
DHCP Pool - DNS Search list - Option 119
Hello Experts
I've configured a DHCP Pool for a customer who wants the router to also give out a couple of dns suffixes to the clients.
This is what I've done. Can you please advise how i can get it to work ?
ip dhcp pool LAN
import all
network 10.106.0.0 255.255.0.0
default-router 10.106.20.10
dns-server 10.101.10.14 10.102.10.14
option 119 ascii "lotus-internal.co.uk,corp.local"
many thanks
aravindThis may be a little late, but to help people in the future, I'm posting my working config
ip dhcp pool Solo
option 119 hex 0563.6973.636f.0363.6f6d.0002.636f.0275.6b00
This has to two domains, cisco.com and co.uk.
05 length in hex
00 null route label per RFC 1035. This goes at the end of each domain name.
63 ascii hex value of character
05636973636f03636f6d0002636f02756b00
05 C I S C O 03 C O M 0002 CO 02U K00
Yours would be configured as
option 119 0e6c6f7475732d696e7465726e616c02636f02756b0004636f7270056c6f63616c00
lotus-internal co uk corp local
Maybe you are looking for
-
Why do Songs cut off while playing on ipod??
My songs que cut off the last 20-15 seconds while playing on my ipod touch 4gen Not all of them. Just a few.
-
Dev 6.0 to 8iEE Connection on same NT Box
Hi, Seems from what I have read it is a common problem to connect Dev 6.0 to 8i on same NT Box. Reckon we all need this process documented. I am currently unsuccessful in this task and so need some help. 1. Load NT with TCP/IP machine name "delly" 2.
-
Procument through Internal Order
Hi We got few real internal orders (overhead) where it got a budget value and a settlement rule to be settled to a cost center When raising PO, we use F (Internal Order) as the account assignment adn the double entry is passed to debiting as asset a
-
Flash Player plugin.exe could not be found
Hi, since a few days Flash Player is giving me an error message saying "C:\Users\Username\AppData\Roaming\Adobe\Flash Player\Addons\plugin.exe could not be found. Please make sure you have typed the name correctly and repeat the process." on every bo
-
My battery drained on my Ipod Touch. I did not end up using it for a week. Yesterday I charged it with my USB to the computer, came back the next morning and it was still dead. I then tried charging it on my laptop....same thing. Went through the