<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DHCP proxy with 5520 in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335420#M107430</link>
    <description>&lt;P&gt;Hello experts , i have the following setup&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;5520 anchor wlc ------ DMZ switch ------- Firewall (which has the layer 3 of user subnet ) -----internet router --------- DHCP server (hosted somewhere else&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the scope is created on the dhcp server , which is pingable from the anchor wlc .&lt;/P&gt;
&lt;P&gt;i have enabled dhcp proxy on the anchor 5520 wlc globally and defined dhcp server IP address on the dynamic interface , on that interface i have checked the dhcp proxy option as "global".&lt;/P&gt;
&lt;P&gt;my clients do not grab an IP , is there something am i missing ?&lt;/P&gt;
&lt;P&gt;do i need to define the dhcp server IP on the management interface as well ?&lt;/P&gt;
&lt;P&gt;dhcp proxy helps the wlc to act as a helper , so maybe it is not working ?&lt;/P&gt;
&lt;P&gt;do i have to put the ip helper ip address on the firewall, where it has the layer 3 of the user subnet ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the 5520 does not support internal dhcp server.&lt;/P&gt;</description>
    <pubDate>Mon, 05 Jul 2021 15:17:20 GMT</pubDate>
    <dc:creator>atifali.zaidi1</dc:creator>
    <dc:date>2021-07-05T15:17:20Z</dc:date>
    <item>
      <title>DHCP proxy with 5520</title>
      <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335420#M107430</link>
      <description>&lt;P&gt;Hello experts , i have the following setup&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;5520 anchor wlc ------ DMZ switch ------- Firewall (which has the layer 3 of user subnet ) -----internet router --------- DHCP server (hosted somewhere else&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the scope is created on the dhcp server , which is pingable from the anchor wlc .&lt;/P&gt;
&lt;P&gt;i have enabled dhcp proxy on the anchor 5520 wlc globally and defined dhcp server IP address on the dynamic interface , on that interface i have checked the dhcp proxy option as "global".&lt;/P&gt;
&lt;P&gt;my clients do not grab an IP , is there something am i missing ?&lt;/P&gt;
&lt;P&gt;do i need to define the dhcp server IP on the management interface as well ?&lt;/P&gt;
&lt;P&gt;dhcp proxy helps the wlc to act as a helper , so maybe it is not working ?&lt;/P&gt;
&lt;P&gt;do i have to put the ip helper ip address on the firewall, where it has the layer 3 of the user subnet ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the 5520 does not support internal dhcp server.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 15:17:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335420#M107430</guid>
      <dc:creator>atifali.zaidi1</dc:creator>
      <dc:date>2021-07-05T15:17:20Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP proxy with 5520</title>
      <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335439#M107431</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;You need to configure DHCP IP address on the WLC dynamic interface only.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;The problem is that you have a firewall in the middle right? How about that? How did you permit dhcp request from WLC to the DHCP server?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Did you look at firewall logs to see if DHCP transaction is going back and forth?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;You don't need IP helper address as the WLC does not send DHCP request as broadcast but unicast.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;You do need permit dhcp through firewall.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-If I helped you somehow, please, rate it as useful.-&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 21 Feb 2018 20:51:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335439#M107431</guid>
      <dc:creator>Flavio Miranda</dc:creator>
      <dc:date>2018-02-21T20:51:18Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP proxy with 5520</title>
      <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335573#M107432</link>
      <description>Hi there , i have asked the firewall team to.check if dhcp traffic is allowed through the firewall.&lt;BR /&gt;Since dhcp uses udp, is there source/destination ports that we would need to open in this scenario ?&lt;BR /&gt;Also since in dhcp proxy the wlc unicasts the dhcp request to dhcp server , the source ip address in this case would be the wlc's mamagement ip address amd then then destination ip address wud be dhcp server ip address ?&lt;BR /&gt;</description>
      <pubDate>Thu, 22 Feb 2018 03:00:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335573#M107432</guid>
      <dc:creator>atifali.zaidi1</dc:creator>
      <dc:date>2018-02-22T03:00:43Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP proxy with 5520</title>
      <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335577#M107433</link>
      <description>&lt;P&gt;The source interface must be the interface you setup proxy on, probably an dynamic interface.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;But, just in case, you can easily see this on the firewall logs.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Permit DHCP through firewall is not an too easy task. I´d need to know which firewall we are talking about but you need to permit at least&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;bootpc = port67 and&amp;nbsp;bootpc = port68.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-If I helped you somehow, please, rate it as useful.-&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Feb 2018 03:12:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335577#M107433</guid>
      <dc:creator>Flavio Miranda</dc:creator>
      <dc:date>2018-02-22T03:12:07Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP proxy with 5520</title>
      <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335900#M107434</link>
      <description>&lt;P&gt;hi Flavio , thanks for the assistance here &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;yes infact i have now involved the firewall team and we will do some log capturing today, hopefully it the firewall which is blocking the dhcp traffic and therefore we would need to open those dhcp ports as well.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Feb 2018 14:17:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335900#M107434</guid>
      <dc:creator>atifali.zaidi1</dc:creator>
      <dc:date>2018-02-22T14:17:51Z</dc:date>
    </item>
    <item>
      <title>Re: DHCP proxy with 5520</title>
      <link>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335909#M107435</link>
      <description>&lt;P&gt;Depending on the switch model, It is pretty straightforward create a DHCP scope on the switch and validate is the problem is firewall or not.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-If I helped you somehow, please, rate it as useful.-&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Feb 2018 14:28:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/dhcp-proxy-with-5520/m-p/3335909#M107435</guid>
      <dc:creator>Flavio Miranda</dc:creator>
      <dc:date>2018-02-22T14:28:45Z</dc:date>
    </item>
  </channel>
</rss>

