Solved

Windows 2008 & 2003 Server Split DHCP

Posted on 2011-02-26
5
321 Views
Last Modified: 2012-05-11
I have a Win2k3 Server running DHCP i am adding DHCP on the 2k8 server now to act as a split pooling for redundancy.

My question is i have a cisco router with a few VLANS. So I am wondering how the 'ip helper-address' would look and if it needs to be modified and or the second DHCP server added to the interface too. if so how?

here is what one looks like now for example:interface FastEthernet0/0.5
 description $FW_INSIDE$$ETH-LAN$
 encapsulation dot1Q 90
 ip address 172.17.17.20 255.255.255.0
 ip access-group 106 in
 ip helper-address 192.168.1.58
 no ip redirects
 no ip unreachables
 no ip proxy-arp
 ip nat inside
 ip inspect VLAN90-interneal in
 ip inspect VLAN90-interneal out
 ip virtual-reassembly
 no cdp enable
0
Comment
Question by:mxrider_420
  • 3
  • 2
5 Comments
 
LVL 42

Accepted Solution

by:
kevinhsieh earned 500 total points
Comment Utility
You go to each vlan interface and configure an additional ip helper-address.

configure terminal
interface FastEthernet0/0.2
 ip helper-address 192.168.1.xx
interface FastEthernet0/0.3
 ip helper-address 192.168.1.xx
interface FastEthernet0/0.4
 ip helper-address 192.168.1.xx
interface FastEthernet0/0.5
 ip helper-address 192.168.1.xx
etc.

Open in new window


It will look like

interface FastEthernet0/0.5
 description $FW_INSIDE$$ETH-LAN$
 encapsulation dot1Q 90
 ip address 172.17.17.20 255.255.255.0
 ip access-group 106 in
 ip helper-address 192.168.1.58
 ip helper-address 192.168.1.xx
 no ip redirects
 no ip unreachables
 no ip proxy-arp

Open in new window

0
 
LVL 1

Author Comment

by:mxrider_420
Comment Utility
thanks and as for the new domain controller it obviously has a static IP. when setting the static DNS settings primary and secondary is is best to have them point at each other or external?


ie:

on domain controller 1 (192.168.1.59)
primary: 192.168.1.59
secondary: 192.168.1.60

on domain controller 2 (192.168.1.60)
prim: 192.168.60
seco: 192.168.1.59

or should the secondary always be an ISP or OPEN DNS server on the internet?

i know this sounds stupid but my internet has slown down due to DNS after i added #2 DC to domain.
0
 
LVL 42

Assisted Solution

by:kevinhsieh
kevinhsieh earned 500 total points
Comment Utility
Your DCs should point to themselves as the primary and another DC as secondary. Do not ever point them to an external DNS server.
0
 
LVL 1

Author Comment

by:mxrider_420
Comment Utility
Thank you this is great everything is working fine now!

Finally because you seem so knowledgeable i have one final question:

In a previous closed post i was told my Cisco 2651xm is running at times reaching 100& utilization.

Was suggested to me to buy a ASA 5055 from ebay. Does the ASA do routing too or is it just a security appliance? Sorry if this is a stupid question but before i spend $400 - $900 on a used appliance i want to be sure what i am getting is all in one.


THanks
0
 
LVL 42

Expert Comment

by:kevinhsieh
Comment Utility
I don't have enough information to answer whether or not you should add an ASA or use it to replace your 2651. Besides, you should ask it as a new question since as it's not even remotely related to the original question. FWIW, I have used some routing protocols with my ASA (RIP, EIGRP) but I don't use it to route between internal networks.
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

Suggested Solutions

Managing 24/7 IT Operations is a hands-on job and indeed a difficult one. Over the years I have found some simple tips and techniques to increase the efficiency of the overall operations. The core concept has always been on continuous improvement; a…
Network ports are the threads that hold network communication together. They are an essential part of networking that can be easily ignore or misunderstood, my goals is to show those who don't have a strong network foundation how network ports opera…
This tutorial will show how to push an installation of Backup Exec to an additional server in both 2012 and 2014 versions of the software. Click on the Backup Exec button in the upper left corner. From here, select Installation and Licensing, then I…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now