RE: [nsp] VLAN 1 support of DHCP

From: Douglas M. Todd, Jr. (dtodd@partners.org)
Date: Thu Mar 07 2002 - 12:50:03 EST


 
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Uhh... what type of switch are you using?
The vlan makes no difference as to whether dhcp works or not. DHCP
will work on a switch with L3 card in vlan 1.

==DMT>

- ----SIGNATURE------
Douglas M. Todd, Jr.
CCNP
Network Engineering
Partners Health Care
Building 149
149 13 Street
Charlestown, MA 02129-200
Tel: 617.726.1403
Email: dtodd@partners.org
- --------------------------------------------------------------------
PGP Finger Print: 9429 CAE3 B2D1 C2E1 DFBC E7A6 E90A 9BE5 C7B6 47BC
Key
available:http://keyserver.pgp.com:80/pks/lookup?op=get&exact=off&sear
ch=dtodd%40partners.org
Verisign S/N: 3ff65cdf58b9dceda004baeed49e16cf
https://digitalid.verisign.com/services/client/index.html

>-----Original Message-----
>From: Stephen Sprunk [mailto:ssprunk@cisco.com]
>Sent: Thursday, March 07, 2002 12:48 PM
>To: Tom Scott; cisco-nsp@puck.nether.net
>Subject: Re: [nsp] VLAN 1 support of DHCP
>
>
>Thus spake "Tom Scott" <telecomtom@dacor.net>
>> We are having a religious debate about the use of VLAN 1,
>specifically
>> about using it to support DHCP.
>>
>> Our policy is to disable all ports on all switches. A port must be
>> enabled manually by CLI or by script to function. In a
>secured room (for
>> example the server/equipment room), we manually configured VLAN 1
>> on, say, 4 ports. We tried unsuccessfully to get DHCP to assign
>IP addresses
>> (and default-router etc.) to endsystems on those ports. A
>> preliminary inspection of the config files on the switch and the
>> DHCP
>srvr reveals
>> no obvious errors, causing us to wonder if the switch OS, by
>> design, does not support DHCP on VLAN 1.
>
>As a Layer 2 device, the switch is oblivious to DHCP; that's a
>Layer 3 job.
>
>Check if your router (perhaps an MSFC) is properly configured
>to forward
>DHCP requests on VLAN 1.
>
>There are other religious reasons not to use VLAN 1 on
>Catalysts, but this
>is not one of them.
>
>S

-----BEGIN PGP SIGNATURE-----
Version: PGP 7.0

iQA/AwUBPIeoSwgiZycqTvq3EQIq0QCdEohooLpMBuCkKL3/Te3Wr5GhiNQAniwE
giZremkq4sEP8UJ6pCx9hv66
=/lAf
-----END PGP SIGNATURE-----



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:13:35 EDT