12-02-2019 07:04 AM - edited 07-05-2021 11:22 AM
Hi is it now possible to configure MX appliances in SSID VPN termination mode to act as a client DHCP server, this was not supported last time I looked.
Thanks
12-02-2019 12:11 PM
not sure is this what you looking :
12-03-2019 01:42 AM
12-03-2019 05:02 AM
I'm also not sure if this is what you want:
When tunneling an SSID to an MX, you specify a local MX VLAN to terminate the SSID on. This VLAN is configured for DHCP and the client gets an IP out of that pool.
12-03-2019 05:43 AM
12-03-2019 06:04 AM
The MX can get its IP in any way: static, DHCP or PPPoE. But for a central device running as a concentrator I would only use an internet-connection with statically assigned IPs.
For the client-addressing: Running a DHCP-server is one of the base features of the MX. Probably that's the reason the above document does not mention it.
12-03-2019 06:08 AM
12-03-2019 06:29 AM
Ok, I think I really did not get your environment. Up to now I only ran the concentrator on devices in NAT-Mode. Although "officially" unsupported it works fine. You are right that in passthrough there is no DHCP-server. But you should be able to provide DHCP-services from the upstream device. Or is exactly this what you want to avoid?
12-03-2019 07:15 AM
12-03-2019 07:51 AM
Yes, here you are right that the MX still can not provide DHCP. Is there any reason you don't want to use the upstream device at your MX-location for this task? There has to be a L3 device like a router or a firewall and that device should provide DHCP or at least send the DHCP-requests as a relay to the corporate DHCP server.
12-03-2019 07:55 AM
12-03-2019 08:41 AM
In this use case I would look into the option to use the MX as the main firewall and use NAT-mode where you also can use DHCP-server.
08-24-2020 03:51 AM
Hi,
The problem is this doesn't solve the essential question, which is how to get an MX concentrator at say the Headquarters site in "Passthrough mode" to service DHCP for wireless clients at a branch site? Given that the MX concentrator in one armed passtrhough mode, has no ability to run a DHCP server.
However, the above configuration, but with the MX concentrator in NAT or routed mode, works, but is not supported by Meraki and anyway (in my environment at least) the speed at the wireless client is very poor.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide