09-26-2018 12:40 PM - edited 03-08-2019 04:15 PM
On a catalyst switch I have two VLANs. I have a need to configure a DHCP server on the switch for one VLAN but not the other. The issue is that on the VLAN with no DHCP server configured, the switch is still sending a DHCPNACK when it receives a DHCPREQUEST. The DHCPNACK is causing an application I am running in that VLAN to have issues. I was expecting that if DHCP was not configured for a VLAN the switch wouldn't send any sort of DHCP response. Is there a way to block these NACKs or suppress them somehow? Thanks, Mike
Solved! Go to Solution.
09-26-2018 01:58 PM
Hello,
can't you just put an access list on the SVI of the VLAN ?
ip access-list extended BLOCK_DHCP
deny udp any any eq bootpc
deny udp any any eq bootps
permit ip any any
!
interface Vlan20
ip access-group BLOCK_DHCP in
09-26-2018 01:11 PM
Can you post the full configuration to have a look.
09-26-2018 01:58 PM
Hello,
can't you just put an access list on the SVI of the VLAN ?
ip access-list extended BLOCK_DHCP
deny udp any any eq bootpc
deny udp any any eq bootps
permit ip any any
!
interface Vlan20
ip access-group BLOCK_DHCP in
09-27-2018 06:07 AM
That was my next question :) I tried to create an ACL to do just that but I guess I did it wrong. Your ACL did the trick. Thanks so much for the assist @Georg Pauwen.
Mike
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide