Link to home
Start Free TrialLog in
Avatar of Jared_Brown
Jared_Brown

asked on

Dhcp Issue Relay through ASA Firewall

I have 3 networks with an ASA firewall between them and my main network.  One of these is just for routing and contains an interface on the firewall, the other 2 are client networks which route through that network.  My dhcp server is on the main network on the other side of the firewall from the 2 client networks.  I am using IP helper-Address commands on cisco layer 3 switches pointing to my DHCP server and then rules allowing port 67 and 68 through the firewall to the server.  I see hits on the rules but do not get an address.  The scope worked before I added the firewall.
Avatar of ArneLovius
ArneLovius
Flag of United Kingdom of Great Britain and Northern Ireland image

is the ASA running NAT, or in transparent mode ?
Avatar of btan
btan

Wonder if you have dhcp relay for asa...instead of ip helper address to simplify
http://www.packetu.com/2012/03/27/ip-helper-address-on-the-asa/
Can you post a network diagram with the various IP subnets and the firewall configs?
ASKER CERTIFIED SOLUTION
Avatar of Jared_Brown
Jared_Brown

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Jared_Brown

ASKER

As it turns out the origional configuration was correct but old information must have been held somewhere in the network, or something like that which resolved itself with time.  The problem resolved itself after a few hours had passed.