<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cant configure FTD2100 DHCP Server to /23 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776687#M1097840</link>
    <description>&lt;P&gt;Just to add to what&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt;&amp;nbsp;has said,&amp;nbsp; Here is a link to documentation stating this limitation.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-fdm-config-guide-720/fptd-fdm-system.html#task_5E428B7B30F9436ABF3BD93608A5D1C5" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-fdm-config-guide-720/fptd-fdm-system.html#task_5E428B7B30F9436ABF3BD93608A5D1C5&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Quote:&lt;/P&gt;
&lt;UL class="ul"&gt;
&lt;LI id="task_5E428B7B30F9436ABF3BD93608A5D1C5__li_1C66AF9F21D743CCA887DBF6710C7DB5" class="li"&gt;
&lt;P class="p"&gt;&lt;SPAN class="ph uicontrol"&gt;"Address Pool&lt;/SPAN&gt;—The range of IP addresses from lowest to highest that the server is allowed to provide to clients that request an address. Specify the start and end address for the pool, separated by a hyphen. For example, 10.100.10.12-10.100.10.250.&lt;/P&gt;
&lt;P class="p"&gt;The range of IP addresses must be on the same subnet as the selected interface and cannot include: the IP address of the interface itself, the broadcast address, or the subnet network address.&lt;/P&gt;
&lt;P class="p"&gt;The size of the address pool is limited to 256 addresses per pool on the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;device. If the address pool range is larger than 253 addresses, the netmask of the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;interface cannot be a Class C address (for example, 255.255.255.0) and needs to be something larger, for example, 255.255.254.0."&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;</description>
    <pubDate>Thu, 16 Feb 2023 10:56:20 GMT</pubDate>
    <dc:creator>Marius Gunnerud</dc:creator>
    <dc:date>2023-02-16T10:56:20Z</dc:date>
    <item>
      <title>Cant configure FTD2100 DHCP Server to /23</title>
      <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776344#M1097835</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;I am trying to do a deployment that needs to use a /23 subnet. And unless im missing something super simple, it seems that the DHCP server cant do any more than a /24.&lt;/P&gt;
&lt;P&gt;I have the interface set like below&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jbates5873_0-1676515934743.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/176606i07E46A1BFD9D0C51/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jbates5873_0-1676515934743.png" alt="jbates5873_0-1676515934743.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;results in this error&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jbates5873_1-1676516430998.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/176607i256E2511B366E9A9/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jbates5873_1-1676516430998.png" alt="jbates5873_1-1676516430998.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Looking at the CIDR breakout, my range should fall within the correct ranges.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jbates5873_2-1676516550023.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/176608i1D326FCF63AE14F6/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jbates5873_2-1676516550023.png" alt="jbates5873_2-1676516550023.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Am i missing something here? or is there some hidden setting? If i drop the DHCP range to be &amp;lt; 255 ips, its all good. but fails as soon as i go over. even though the interface is set to /23&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Jasin&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Feb 2023 03:04:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776344#M1097835</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2023-02-16T03:04:39Z</dc:date>
    </item>
    <item>
      <title>Re: Cant configure FTD2100 DHCP Server to /23</title>
      <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776598#M1097839</link>
      <description>&lt;P&gt;This is a FTD software limitation (even same apply with ASA code too). you can not exceed more than 256 host ip address. it has to be lower than 255 ip addresses.&lt;/P&gt;
&lt;P&gt;unless otherwise you use a External DHCP server.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Feb 2023 09:04:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776598#M1097839</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2023-02-16T09:04:09Z</dc:date>
    </item>
    <item>
      <title>Re: Cant configure FTD2100 DHCP Server to /23</title>
      <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776687#M1097840</link>
      <description>&lt;P&gt;Just to add to what&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/287680"&gt;@Sheraz.Salim&lt;/a&gt;&amp;nbsp;has said,&amp;nbsp; Here is a link to documentation stating this limitation.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-fdm-config-guide-720/fptd-fdm-system.html#task_5E428B7B30F9436ABF3BD93608A5D1C5" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/720/fdm/fptd-fdm-config-guide-720/fptd-fdm-system.html#task_5E428B7B30F9436ABF3BD93608A5D1C5&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Quote:&lt;/P&gt;
&lt;UL class="ul"&gt;
&lt;LI id="task_5E428B7B30F9436ABF3BD93608A5D1C5__li_1C66AF9F21D743CCA887DBF6710C7DB5" class="li"&gt;
&lt;P class="p"&gt;&lt;SPAN class="ph uicontrol"&gt;"Address Pool&lt;/SPAN&gt;—The range of IP addresses from lowest to highest that the server is allowed to provide to clients that request an address. Specify the start and end address for the pool, separated by a hyphen. For example, 10.100.10.12-10.100.10.250.&lt;/P&gt;
&lt;P class="p"&gt;The range of IP addresses must be on the same subnet as the selected interface and cannot include: the IP address of the interface itself, the broadcast address, or the subnet network address.&lt;/P&gt;
&lt;P class="p"&gt;The size of the address pool is limited to 256 addresses per pool on the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;device. If the address pool range is larger than 253 addresses, the netmask of the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;interface cannot be a Class C address (for example, 255.255.255.0) and needs to be something larger, for example, 255.255.254.0."&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Thu, 16 Feb 2023 10:56:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776687#M1097840</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2023-02-16T10:56:20Z</dc:date>
    </item>
    <item>
      <title>Re: Cant configure FTD2100 DHCP Server to /23</title>
      <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776689#M1097841</link>
      <description>Thanks, but thats what I don't get, as I'm using a class a network (I think) 10.x.x.x/23&lt;BR /&gt;&lt;BR /&gt;But it seems that it can't be done. Sigh. I will have to find another solution.&lt;BR /&gt;</description>
      <pubDate>Thu, 16 Feb 2023 10:59:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776689#M1097841</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2023-02-16T10:59:30Z</dc:date>
    </item>
    <item>
      <title>Re: Cant configure FTD2100 DHCP Server to /23</title>
      <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776699#M1097844</link>
      <description>&lt;P&gt;(preference 1)dont you have any external Server. or (preference 2) you can use the switch or router if you like for the DHCP server.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;but thats what I don't get, as I'm using a class a network (I think) 10.x.x.x/23&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;as &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/319690"&gt;@Marius Gunnerud&lt;/a&gt;&amp;nbsp; noted from the documentation The size of the address pool is limited to 256 addresses per pool on the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;device. If the address pool range is larger than 253 addresses, the netmask of the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="ph"&gt;threat defense&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;interface cannot be a Class C address (for example, 255.255.255.0) and needs to be something larger, for example, 255.255.254.0."&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;in other words it a limitation on the appliances (software).&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Feb 2023 11:36:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4776699#M1097844</guid>
      <dc:creator>Sheraz.Salim</dc:creator>
      <dc:date>2023-02-16T11:36:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cant configure FTD2100 DHCP Server to /23</title>
      <link>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4777083#M1097876</link>
      <description>&lt;P&gt;Yes, i will have to go with preference 2 in this case.&lt;/P&gt;
&lt;P&gt;Thanks all.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Feb 2023 22:34:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cant-configure-ftd2100-dhcp-server-to-23/m-p/4777083#M1097876</guid>
      <dc:creator>jbates5873</dc:creator>
      <dc:date>2023-02-16T22:34:55Z</dc:date>
    </item>
  </channel>
</rss>

