<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA DHCP relay in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611327#M596495</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a look here:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-thread-small" href="https://community.cisco.com/thread/2054584"&gt;https://supportforums.cisco.com/thread/2054584&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and here:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-thread-small" href="https://community.cisco.com/thread/221243"&gt;https://supportforums.cisco.com/thread/221243&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;they answer the same question.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Fadi.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 20 Dec 2010 22:53:16 GMT</pubDate>
    <dc:creator>fadlouni</dc:creator>
    <dc:date>2010-12-20T22:53:16Z</dc:date>
    <item>
      <title>ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611325#M596493</link>
      <description>&lt;P&gt;Need to configure DHCP relay&amp;nbsp;&amp;nbsp; Here is the setup:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;inside 172.16.0.1/24 (clients are requesting DHCP) -&amp;nbsp; ASA5505 OUTSIDE 10.1.0.1&amp;nbsp; &amp;lt;---VPN Tunnel--&amp;gt; outside 10.2.0.1 ASA5520 - inside 172.16.1.0/24 DHCP Server 172.16.1.1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do I put the IP of the 5505 outside interface and the DHCP sever in the crypto maps?&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:24:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611325#M596493</guid>
      <dc:creator>gizbri</dc:creator>
      <dc:date>2019-03-11T19:24:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611326#M596494</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It should be ASA inside IP instead of outside IP.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 22:50:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611326#M596494</guid>
      <dc:creator>Yudong Wu</dc:creator>
      <dc:date>2010-12-20T22:50:35Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611327#M596495</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a look here:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-thread-small" href="https://community.cisco.com/thread/2054584"&gt;https://supportforums.cisco.com/thread/2054584&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and here:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-thread-small" href="https://community.cisco.com/thread/221243"&gt;https://supportforums.cisco.com/thread/221243&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;they answer the same question.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Fadi.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 22:53:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611327#M596495</guid>
      <dc:creator>fadlouni</dc:creator>
      <dc:date>2010-12-20T22:53:16Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611328#M596496</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the links. It is still throwing me an error from the VPN tunnel Group = 10.2.0.1, IP = 10.2.0.1, QM FSM error (P2 struct &amp;amp;0xc9259bf8, mess id 0xda84031e)!&amp;nbsp; - I have the inside and outside interfaces to the dhcp in the crypto map on the 5505 and the DHCP sevrer to the 5505 inside is excluded from NAT as suggested in the 2nd link&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was hoping someone can construct the commands for each end , it would take me a while to scrub the configs&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 Dec 2010 16:10:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611328#M596496</guid>
      <dc:creator>gizbri</dc:creator>
      <dc:date>2010-12-21T16:10:11Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611329#M596497</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you add "dhcp server to 5505 outside ip" and "dhcp server to 5505 inside ip" at the other side?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 Dec 2010 16:31:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611329#M596497</guid>
      <dc:creator>Yudong Wu</dc:creator>
      <dc:date>2010-12-21T16:31:31Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611330#M596498</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the reply:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Going off the info from the link &lt;SPAN style="font-family: &amp;quot;Tahoma&amp;quot;, &amp;quot;sans-serif&amp;quot;; font-size: 10pt;"&gt;&lt;A href="https://community.cisco.com/thread/221243"&gt;https://supportforums.cisco.com/thread/221243&lt;/A&gt; , I only added the inside&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Also, at the ASA end, it has to be made sure that the traffic from the DHCP server to the client interface of the PIX is excluded from being natted by the ASA."&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 Dec 2010 16:38:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611330#M596498</guid>
      <dc:creator>gizbri</dc:creator>
      <dc:date>2010-12-21T16:38:58Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611331#M596499</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Got it working with the help of TAC&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;BR /&gt;On ASA5520 in the crypto map to ASA5505&amp;nbsp; add entries for the DHCP Server IP&amp;nbsp; to both ASA5505 inside and outside interface&lt;BR /&gt;On ASA5520 nat exempt the DHCP Server IP Address to both ASA5505 inside and outside interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On ASA5505 in the crypto map to ASA5520&amp;nbsp; add entries for the inside and outside interface to the DHCP Server IP&amp;nbsp; &lt;BR /&gt;On ASA5505 nat exempt the outside interface to the DHCP Server&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 22 Dec 2010 15:50:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611331#M596499</guid>
      <dc:creator>gizbri</dc:creator>
      <dc:date>2010-12-22T15:50:43Z</dc:date>
    </item>
    <item>
      <title>Re: ASA DHCP relay</title>
      <link>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611332#M596500</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm glad you got it fixed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if your issue is now solved can you please mark this thread as sovled?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Fadi.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 22 Dec 2010 16:33:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-dhcp-relay/m-p/1611332#M596500</guid>
      <dc:creator>fadlouni</dc:creator>
      <dc:date>2010-12-22T16:33:36Z</dc:date>
    </item>
  </channel>
</rss>

