07-14-2020 04:53 PM
Hi,
I have a device connected to port 6(VLAN 6), which has ACL "EXEC" applied. Up link port 25 is connected to Meraki MX and port 25 does not have any ACL. Meraki MX is the DHCP server. However, device connected on port 6 does not receive IP address from DHCP Server. After trying various options, I finally decided to let all traffic to pass through on "EXEC" ACE and it still failed to receive an IP address.
It only receives IP address when I remove the ACL from port 6. Could anyone help me to rectify this issue?
Any suggestions are appreciated.
Switch - Cisco SG220-26P
07-14-2020 05:47 PM
it is bit trick one, had seen in the past with other switches, not sure if that works in SG220
since the device does not have an IP address to match any ACL, so it looking for broadcast address 255.255.255.255 to get an IP address.
Make a New ACE rule simple to test, "permit ip host 0.0.0.0 host 255.255.255.255" or "permit udp host 0.0.0.0 host 255.255.255.255 eq bootpc"
let us know how it goes.
07-15-2020 01:07 AM
07-15-2020 11:42 AM
I was thinking other option - is this switch pure L2 extend till Meraki, it has also Layer 3 interface configured.
if Layer3 interface configured, configure DHCP relay so it can direct the client to MX
just suggestion.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide