cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1912
Views
0
Helpful
3
Replies

Need Advice Configure DHCP server NAC

hi all,

i no idea how to the best practice configure DHCP server on NAC. Coreswitch using nexus 7K and access switch cisco 3760 .My problem is user not receive ip address through dhcp on cas.i follow user guide setup dhcp but not detail ...now i need to kown what actual config on N7K and Access Switch ?

3 Replies 3

edwjames
Level 3
Level 3

What is the Type of Deployment That You are using? It changes the Way DHCP will function.

On which side do you have your DHCP Server Configured.. Trusted Or Untrusted?

**Share your knowledge. It’s a way to achieve immortality. --Dalai Lama** Please Rate if helpful. Regards Ed

Deployment method is client access mode  layer 3 , for traffic flow model is out of band  , and then for physical deploy model using central (cam,cas,profiler directly connect to distribution and then direct to Core switch Nexus 7K.For operation mode i choose Real IP gateway. reveice ip form untrusted side ..

for vlan info

user vlan 2042,2044

cas vlan trusted 2010

cas vlan untrusted 2011

cam vlan 2009

authen vlan 2000

i try configure dhcp server on cas . i get dhcp server on vlan auth 2000 but when i try switch to vlan user i cannot reveiced ip from dhcp server ?

Hi ahmed,


You have configured your CAS to be your DHCP server, Thats well and good because you are using Real IP mode, Which Supports the CAS to be a DHCP server.

Remember

This Setting is only For your Authentication VLAN that your client gets an ip While Authentication ok.

When your Client switches to Access VLAN , your client trafiic no longer flows through the CAS so CAS is now not responsible for DHCP.

You'll have to configure another DHCP on the Trusted Side which can Lease IPs to the Acess VLAN Members.

As you have configured OOB then your client is in Acess VLAN and does not come in contact with the CAS so you need the Trusted side DHCP to give the Client an IP address.

Here in your Scenario your ACCESS VLANS are 2022,2044

Hope this helps, Do reply after Testing.

Thank You

Regards

Edward

**Share your knowledge. It’s a way to achieve immortality. --Dalai Lama** Please Rate if helpful. Regards Ed
Review Cisco Networking for a $25 gift card