Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win


Windows Server 2003, DHCP - Out of IP addresses

Posted on 2012-03-19
Medium Priority
Last Modified: 2012-06-27
One of the folks in the office saw this message today:

“IP address conflict. Another computer on this network has the same IP address as this computer.”  

I checked DHCP, and sure enough, every single IP was issued today.  I have a /24 network, and I'm out of IPs.  Over the last 2 years I've reduced the DHCP lease duration from 5 days to 4, to 3, to 2, and now I'm down to 1.  

The obvious fix seems to be to change the subnet mask on the network.  (I'm thinking of going with /16).  The effort required to do so, however, would be considerable.  

Anyone have any clever workarounds?  Or, do I need to bite the bullet and change the subnet mask?
Question by:jdana
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2

Assisted Solution

Duff614 earned 400 total points
ID: 37739672
Arguably just as much work, but do you have the capability to VLAN it out to multiple separate subnets? That might be a better solution in the long run than using a /16 for a few hundred addresses.
LVL 10

Accepted Solution

172pilotSteve earned 1600 total points
ID: 37739715
Absolutely...  You can do a "SuperNet"...  

Create another DHCP scope for another /24 address, so for example, if you were using 192.168.1.x before, create another scope for 192.168.2.x now, and configure it basically the same way as your other DHCP scope is configured.

THEN, create a "SuperNet", and add both of the subnet scopes into the supernet.  What this will do is to tell the server that it can answer DHCP requests from that physical subnet with addresses from EITHER range of addresses.

SO.,.   Now, the potentially tough part is that now you'll have to have a default gateway for the second subnet.  For example, a 192.168.2.x machine wont be able to talk directly to a 192.168.1.x machine (or gateway) so to get to the Internet, that would be a problem...

If you're using a Cisco router, then you can add a command like:

Router Config Int# ip address SECONDARY

The "Secondary" will tell it to add a SECOND address to the same NIC...

If your default gateway is a Windows PC, such as the server itself (and probably is, if you're using SBS or ISA), then you can just give your windows server a second IP address on the same NIC, and it will route between the 2 LAN subnets.   You might have to (or want to) install the "Routing and Remote access" component as a "LAN router" if you absolutely need peer to peer access between the subnets (like workstation to workstation)  otherwise  you might be able to get away with just the secondary IP address.

Another way is that if you have a lot of printers which ONLY have to talk to the server, then you can just move the PRINTERS to the new subnet, not worry about the Supernet, and not worry about the RRAS, and just understand that the SERVER will be able to talk to the printers because it has an address on both subnets, but the workstations wont be able to talk straight to the printers (They dont have to, as long as you're using a server based queue)

Of course, the CLEANEST solution would be to get rid of the DHCP scope, change the subnet mask to /23 ( and then re-create a DHCP scope with the bigger range, but if you do that, then you'll need to go to all your static machines and change the subnet mask too.

If this doesn't make sense, let me know what your WAN connectivity is using and how much control you have over it, and maybe I can recommend something else, but I've done all of the above in a pinch, and it's worked well...


Author Comment

ID: 37739787
Steve and  Duff614,

Wow.  Terrific responses.  

I have a Cisco ASA 5505 firewall associated with the network, and, candidly, it's the one device in the network that makes me nervous to configure.  I'm a really developer who has a part time gig as a network administrator with my big client.

I'm not sure if this is an appropriate question to pose on EE, but what the hell, it can't hurt to ask.  Do either of you work with Cisco firewalls?  If not, do you know of a good contractor that does?  (I could remote them in.)  This is one project I'd like to tackle with some assistance.
LVL 10

Expert Comment

ID: 37740570
Ahh!  Cool..  YEs - I have a 5505 here at home too..  (Gotta have a good lab, right?!)  so I think I can walk you through what you might need..

Can  you copy your ASA config into here?  Be careful to block out any passwords, and even any EXTERNAL ip addresses, just to be safe..  Like, if your external ip was, maybe you could do a global search/replace to change that to or something.

Do you use the GUI to program the ASA, or do you use the command line?  Personally I'm more of a command-line guy, but if you use the GUI, I can try to simulate what you're doing, and come up with some steps in the GUI..

Author Closing Comment

ID: 37752136

I figured out the lease issue.  (There was a little stupidity on my part.)  Thanks for the terrific suggestions.  I saved them to my master cheat sheet.

I appreciate the offer as well.  

You have an ASA 5505 at home.  That's pretty funny.


Featured Post

How to Use the Help Bell

Need to boost the visibility of your question for solutions? Use the Experts Exchange Help Bell to confirm priority levels and contact subject-matter experts for question attention.  Check out this how-to article for more information.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

618 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question