Jared_Brown
asked on
Dhcp Issue Relay through ASA Firewall
I have 3 networks with an ASA firewall between them and my main network. One of these is just for routing and contains an interface on the firewall, the other 2 are client networks which route through that network. My dhcp server is on the main network on the other side of the firewall from the 2 client networks. I am using IP helper-Address commands on cisco layer 3 switches pointing to my DHCP server and then rules allowing port 67 and 68 through the firewall to the server. I see hits on the rules but do not get an address. The scope worked before I added the firewall.
is the ASA running NAT, or in transparent mode ?
Wonder if you have dhcp relay for asa...instead of ip helper address to simplify
http://www.packetu.com/2012/03/27/ip-helper-address-on-the-asa/
http://www.packetu.com/2012/03/27/ip-helper-address-on-the-asa/
Can you post a network diagram with the various IP subnets and the firewall configs?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
As it turns out the origional configuration was correct but old information must have been held somewhere in the network, or something like that which resolved itself with time. The problem resolved itself after a few hours had passed.