Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1033
  • Last Modified:

IP helper for Juniper switches

Can the experts help me to understand how IP helper works for the Juniper switch? I have the below config snapshot. I understand for vlan.3. But I am not sure about ge-0/0/28. Does it mean that everything going through that port with vlan 10 will get a DHCP?

forwarding-options {
    helpers {
        bootp {
            server 192.168.1.230;
            server 192.168.1.231;
            interface {
                vlan.3 {
                    server 192.168.1.230;
                    server 192.168.1.231;  }
                ge-0/0/28 {
                   server 192.168.1.230;
                    server 192.168.1.231;
                }
...
vlans {
   users1 {
        vlan-id 10;
        interface { 
                ge-0/0/28; 
                ge-0/0/29;}
        l3-interface vlan.0;
      }
      users2 {
        vlan-id 25;                               
        l3-interface vlan.3;
...

Open in new window

0
leblanc
Asked:
leblanc
  • 2
1 Solution
 
vivigattCommented:
I can't remember for sure if the syntax is correct (It's been a long time since I did not configure a JunOS device).
If the syntax is correct, it would mean that every broadcast packet on UDP port 68 (bootp/dhcp client) that the interfaces vlan3 and ge-0/0/28 are forwarded as Unicast to server 192.168.1.230 and server 192.168.1.231. 2 DHCP servers, that may be quite unusual, except if there are a DHCP and a PXE server, or if there are relationships (failover, split-scopes...) between the 2 servers
Now I am not too sure about your config, especially the "default servers" which seem to be the same as the specific servers for all the defined interfaces.

If applicable, you may use a J-Web configuration editor in order to configure dhcp relay, as described here:
http://www.juniper.net/techpubs/software/junos-es/junos-es92/junos-es-admin-guide/configuring-the-device-as-a-bootpdhcp-relay-agent.html
0
 
pergrCommented:
Note that "vlan.3" is the L3 interface (in cisco language SVI), so you need to look for that under:

interfaces {
     vlan   {
            unit 3   {

This is the default gateway in vlan "users2"/vlan-id 25, and I am not sure if any physical interfaces are actually connected to that vlan.

Also, not that this just means the switch is forwarding the DHCP packets to the DHCP server, so it is up to the server if the PCs will get IP address or not.

You could also configure the switch itself as a DHCP server.
0
 
leblancAccountingAuthor Commented:
So what ge-0/0/28 { server 192.168.1.230; server 192.168.1.231;} means? Thx
0
 
vivigattCommented:
It means that all packets that this interface (this port on the switch if you want) receives and that are sent on UDP Port 68 to broadcast address, such as the first packet a DHCP client sends to initiate a DHCP transaction, will be forwarded to 192.168.1.230 and 192.168.2.231, as Unicast packets.
Check this small Wikipedia section in DHCP article:
http://en.wikipedia.org/wiki/Dynamic_Host_Configuration_Protocol#DHCP_relaying
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now