[c-nsp] DHCP snooping with PIX 7.22 as dhcp server fails

Daniel Dib daniel.dib at reaper.nu
Wed Jul 18 15:51:11 EDT 2007



-----Ursprungligt meddelande-----
Från: cisco-nsp-bounces at puck.nether.net
[mailto:cisco-nsp-bounces at puck.nether.net] För Jay Hennigan
Skickat: den 18 juli 2007 21:45
Till: Masood Ahmad Shah
Kopia: cisco-nsp at puck.nether.net
Ämne: Re: [c-nsp] DHCP snooping with PIX 7.22 as dhcp server fails

Masood Ahmad Shah wrote:
> The caveat with DHCP snooping is that you must establish a trust
> relationship with downstream DHCP snoopers on a trunk port:
> 
>     Switch(config-if)# ip dhcp relay information trusted

I saw that in the docs, but there is no trunking and no downstream 
switch.  One PIX connected to one switch port f0/48 as an access port.


--
Jay Hennigan - CCIE #7880 - Network Engineering - jay at impulse.net
Impulse Internet Service  -  http://www.impulse.net/
Your local telephone and internet company - 805 884-6323 - WB6RDV

You are inserting option 82 in the DHCP request.
Maybe the PIX doesn't understand this format and that's why it's not working
with snooping?

Try no ip dhcp snooping information option in global config mode.

/Daniel



More information about the cisco-nsp mailing list