Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 232
  • Last Modified:

Split DHCP Configuration

Setup DHCP split scope but second server won't give leases

I have configured Split DHCP Scope on Windows 2008 R2 Server.
I have scoped 80-20 on to each DHCP Server.
My problem is that the secondary DHCP server is not giving IP Address leases. and all machines are getting timed-out.
The Layer 3 Switch is 3560. Is their anything I need to do on L3 Switch.
0
Subhashis Sahoo
Asked:
Subhashis Sahoo
  • 4
  • 3
2 Solutions
 
AkinsdNetwork AdministratorCommented:
Make sure the server is reachable. You will need ip helper addresses configured.

I am a little concerned or confused by this statement.
....and all machines are getting timed-out

Does this mean even the primary DHCP is not responding?

You might want to take a look at this link for reference

http://networkengineering.stackexchange.com/questions/2814/best-practice-using-ciscos-ip-helper-for-dhcp
0
 
Subhashis SahooTechnical ConsultantAuthor Commented:
I have come across a situation where in my company they want to use multiple DHCP servers to respond to queries, however they want to have the local DHCP server respond first and if that fails then they want the second DHCP server responding. The second DHCP server sits in a data center while the first is in the local office.

My question is
 
1. If I have 2 helper addresses configured, will the router sequentially choose the first and if it doesn't respond try the second helper OR will it forward the packet to both helper addresses and then its a race to whoever responds first?
 
I hope my question is clear and look forward to your expert advice.

So here I stopped the DHCP Service on the primary Server and tried testing few machines. But were getting timed out.

I have added ip helper-address for all DHCP Servers on all vlans.
0
 
AkinsdNetwork AdministratorCommented:
Both addresses configured with IP helper will be contacted. The PC will negotiate with the server that responds first which usually will be the server that's closest to the PC assuming all other factors (speed, processing time etc) are equal.

For your setup, you will need to put both servers in a cluster.
See link below on how to do that
http://technet.microsoft.com/en-us/library/hh831385.aspx

In your case, you will also need to fix connectivity to your server first to ensure that it will respond in the event the primary fails
0
Evaluating UTMs? Here's what you need to know!

Evaluating a UTM appliance and vendor can prove to be an overwhelming exercise.  How can you make sure that you're getting the security that your organization needs without breaking the bank? Check out our UTM Buyer's Guide for more information on what you should be looking for!

 
Subhashis SahooTechnical ConsultantAuthor Commented:
I was going through some links. Interestingly I found the below link:
http://serverfault.com/questions/355686/setup-dhcp-split-scope-but-second-server-wont-give-leases

Though I have given ip helper-address for both the DDHCP Servers, yet the second DHCP Server is not giving lease on a 80-20 setup.

Does the below config help on Core Switch. Is their any other thing that I need to check to make it work.
interface <on which the two DHCP Servers are connected>
switchport access vlan XX
** ip arp inspection trust
spanning-tree portfast
** ip dhcp snooping trust
end
0
 
AkinsdNetwork AdministratorCommented:
None of those will help your situation. What you need is a cluster configuration for your DHCP servers

 **
ip arp inspection trust
You will have to not trust the secondary DHCP server in order for it not to respond, meaning it won't respond also when the primary goes down

 
spanning-tree portfast
This puts the port on the switch the server is connected to to go straight into forwarding mode at initial connection. Notice "initial connection". This only happens when you plug the cable in or reboot your server. It has nothing to do with who gets the request first

 
** ip dhcp snooping trust
Similar to the 1st, untrusting the port the secondary connects to blocks the server out completely from offering addresses
0
 
Subhashis SahooTechnical ConsultantAuthor Commented:
Generally making a DHCP Server cluster, best suits for your Windows Server 2012.
As we have Windows 2008 R2 edition in our environment
0
 
AkinsdNetwork AdministratorCommented:
Server clustering has been in existence since Server 2000.

The steps in the link will guide you.

Your alternative is to use load balancers which I will assume you don't have right now. Server clustering is very easy to configure though just in case you feel intimidated. Just follow the steps

http://technet.microsoft.com/en-us/library/hh831385.aspx
0

Featured Post

Free recovery tool for Microsoft Active Directory

Veeam Explorer for Microsoft Active Directory provides fast and reliable object-level recovery for Active Directory from a single-pass, agentless backup or storage snapshot — without the need to restore an entire virtual machine or use third-party tools.

  • 4
  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now