<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5500 and DHCP Problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909953#M438031</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Shouldn't the source address for the request be "0.0.0.0" and not an actual IP address from the same subnet?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or is some network device forwarding initial DHCP messages to the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There shouldnt be many things that could be wrong with the DHCP on ASA. Either you use DHCP for hosts that are connected to the ASAs interface running the DHCP or you are using dhcprelay on the ASA to relay the DHCP messages to an actual server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 25 Apr 2012 14:59:32 GMT</pubDate>
    <dc:creator>Jouni Forss</dc:creator>
    <dc:date>2012-04-25T14:59:32Z</dc:date>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909952#M438029</link>
      <description>&lt;P&gt;Hello everybody.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am facing a problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;DHCP is active on the INSIDE interface.&lt;/P&gt;&lt;P&gt;However i get the following log messages:&lt;/P&gt;&lt;PRE __default_attr="plain" __jive_macro_name="code" class="jive_text_macro jive_macro_code"&gt;&lt;P&gt;&lt;SPAN style="white-space: normal; font-family: arial, helvetica, sans-serif; "&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;&lt;BR /&gt;&lt;/TD&gt;&lt;TD&gt;UDP request discarded from 192.168.1.254/67 to INSIDE:192.168.1.1/67&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE __default_attr="plain" __jive_macro_name="code" class="jive_text_macro jive_macro_code"&gt;&lt;PRE style="color: #000000; text-align: -webkit-auto; word-wrap: break-word; white-space: pre-wrap;"&gt;dhcpd address 192.168.1.2-192.168.1.249 INSIDE
dhcpd dns 8.8.8.8 8.8.4.4 interface INSIDE
dhcpd lease 36000 interface INSIDE
dhcpd enable INSIDE&lt;/PRE&gt;
&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The dhcpd state shows inside as active.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I really dont get, why it doesnt get an offer back.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:58:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909952#M438029</guid>
      <dc:creator>kakados2000</dc:creator>
      <dc:date>2019-03-11T22:58:09Z</dc:date>
    </item>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909953#M438031</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Shouldn't the source address for the request be "0.0.0.0" and not an actual IP address from the same subnet?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or is some network device forwarding initial DHCP messages to the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There shouldnt be many things that could be wrong with the DHCP on ASA. Either you use DHCP for hosts that are connected to the ASAs interface running the DHCP or you are using dhcprelay on the ASA to relay the DHCP messages to an actual server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2012 14:59:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909953#M438031</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2012-04-25T14:59:32Z</dc:date>
    </item>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909954#M438035</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jouni,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;basically the requests commning from a wireless controller. thats why its not 0.0.0.0.&lt;/P&gt;&lt;P&gt;If i connect a host directly to the ASA i get a DHCP. I would like to use the ASA as DHCP over the wireless controller.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2012 15:02:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909954#M438035</guid>
      <dc:creator>kakados2000</dc:creator>
      <dc:date>2012-04-25T15:02:10Z</dc:date>
    </item>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909955#M438037</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have any logs while the issue happens, I mean we can see on that monitor tool that you were dropping packets but we will need to see what the logs say to determine why this happens.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2012 17:16:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909955#M438037</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-04-25T17:16:59Z</dc:date>
    </item>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909956#M438038</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the only log message i see (that is related to this), is the one i posted:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE style="border-collapse: collapse; font-size: 12px; list-style-type: none; margin-top: 10px; margin-right: 20px; margin-bottom: 10px; margin-left: 20px; padding-left: 10px;"&gt;&lt;CODE style="border-collapse: collapse; list-style-type: none;"&gt;UDP request discarded from 192.168.1.254/67 to INSIDE:192.168.1.1/67&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2012 17:46:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909956#M438038</guid>
      <dc:creator>kakados2000</dc:creator>
      <dc:date>2012-04-25T17:46:24Z</dc:date>
    </item>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909957#M438041</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hmm it got to be something else, I mean that log does not show that the Interface went down it only shows that a UDP packets was not allowed to traverse the ASA due to the Accelerated Security Path ( ASP algorithm)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2012 17:54:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909957#M438041</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-04-25T17:54:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909958#M438043</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am having the same issue, did you find any solution for this...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Below is my config&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; dhcpd dns 208.67.222.123 208.67.220.123&lt;/P&gt;&lt;P&gt;dhcpd lease 43200&lt;/P&gt;&lt;P&gt;dhcpd ping_timeout 20&lt;/P&gt;&lt;P&gt;dhcpd option 3 ip 172.16.8.1&lt;/P&gt;&lt;P&gt;dhcpd address 172.16.8.40-172.16.8.167 guest&lt;/P&gt;&lt;P&gt;dhcpd enable guest&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and the logs..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;%ASA-7-710005: UDP request discarded from 172.16.8.201/67 to guest:172.16.8.1/67&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;172.16.8.201 is the wireless controller and 172.16.8.1 is the Firewall Guest interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Siddhartha&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Mar 2013 14:10:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909958#M438043</guid>
      <dc:creator>siddhartham</dc:creator>
      <dc:date>2013-03-07T14:10:28Z</dc:date>
    </item>
    <item>
      <title>ASA 5500 and DHCP Problem</title>
      <link>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909959#M438045</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;found the issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA s don't support Unicast DHCP requests, thts why its discarding the proxied DHCP requests from the wireless controller.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;work around- Disable DHCP proxy on the controller ( its a global setting not a per WLAN setting)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/thread/2178369"&gt;https://supportforums.cisco.com/thread/2178369&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Siddhartha&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Mar 2013 16:11:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5500-and-dhcp-problem/m-p/1909959#M438045</guid>
      <dc:creator>siddhartham</dc:creator>
      <dc:date>2013-03-07T16:11:23Z</dc:date>
    </item>
  </channel>
</rss>

