Solved

Adding a 2nd subnet on our network

Posted on 2016-07-29
7
82 Views
Last Modified: 2016-08-03
Hello - I just want to get some general guidance on this.  We're at capacity on our 192.168.1.x /24 subnet, and are adding a 2nd subnet to our DHCP server for 192.168.2.x / 24.  We've had Cisco add another VLAN to our network so that both VLANs 1& 2 can talk to each other.  What I need clarity on is when adding the 2nd subnet to the DHCP server, how do I control what clients take addresses from 1 subnet as opposed to the other?  Do I just statically address machines to control that?  Or do I NEED to worry about that at all?  Will DHCP automatically hand out addresses from the 2nd one when the 1st one gets down to 0 IPs left?

Thanks for your help.
Damian
0
Comment
Question by:Damian_Gardner
  • 4
  • 3
7 Comments
 
LVL 24

Expert Comment

by:Ken Boone
ID: 41735287
So the DCHP is on your 192.168.1.x network.  This is how it works.  Your DHCP server is listening for two things.

1) Broadcast DHCP requests.  - Since it is a broadcast, the DHCP server knows that it must be from the network that the DHCP server is on because broadcasts are local to the network.  Therefore it gets a DHCP request as a broadcast on the interface on the 192.168.1.x network.  It then responds with an address out of that pool.

2) DHCP relay requests - These are DHCP unicast packets that are sent from a router in order to relay a DHCP request from another network segment.  When the DHCP server receives these packets, the relay packet has the network from where the request is coming in the packet.  The DHCP server sees this and then knows which scope to send an IP address from.

Now to make it work on the DHCP server you just need to build your scope and activate it.

So on the layer 3 device that is handling the default gateway function for the new network is where you will need to configure the dhcp relay.  

So for instance it might look like the following:

If on layer 3 switch:

vlan 2
  name Network2

interface vlan 2
  ip address 192.168.2.1 255.255.255.0
  ip helper-address 192.168.1.10

The address defined as the ip helper-address is the address of your dhcp server.

That is pretty much all you need to do.
0
 

Author Comment

by:Damian_Gardner
ID: 41737983
Ken - thanks for your help on this.  So - when you say the DHCP relay packets will identify which network it came from - does that mean I will need to specify the ports on my switch stack as either VLAN 1 or VLAN2, and based on which port the clients are connected to, will determine which network they're from?  And do I understand it correctly that I can have both subnets hosted on the same DHCP server?  or do I need a 2nd server to live on the new 192.168.2.x subnet?
0
 
LVL 24

Accepted Solution

by:
Ken Boone earned 500 total points
ID: 41738411
Ok so to do this right, you will need to have the users on the 192.168.2.x network to be connected to switch ports that are on vlan 2.  So yes you will need to identify those users that should be on vlan 2 and configure their switch ports to be access ports on vlan 2.  Both subnets can be handled on the single DHCP server.  The DHCP server is currently on vlan 1 which is 192.168.1.x network.  The DHCP server will respond with a 192.168.1.x lease assignment to those users as it will receive broadcast DHCP requests from those users on vlan1.  The same DHCP server will also received DHCP relay packets from the layer 3 gateway device (switch or router) form the users on VLAN 2.  The relay packet will identify that the request is coming from the 192.168.2.x network so the DHCP server will respond with a lease assignment on the 192.168.2.x network.
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 

Author Comment

by:Damian_Gardner
ID: 41740845
ok - that makes sense.  so I need to separate a grouping of ports on the switch and make those VLAN2, it sounds like.  Great - thanks for your help.
0
 

Author Comment

by:Damian_Gardner
ID: 41740887
One thing I just thought of - what happens if a client is connected thru a VLAN1 port, and the 1st subnet is maxed out and has 0 addresses available?  Will the DHCP server default over to the 2nd subnet and assign a free address from the 192.168.2.x subnet?  Or would the client not get an IP?

Thanks again
0
 
LVL 24

Expert Comment

by:Ken Boone
ID: 41740978
The client will not get an IP address in that situation.  You will need to change their port to vlan 2.
0
 

Author Comment

by:Damian_Gardner
ID: 41741100
ok.  I sort of figured that.  thanks again Ken
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
When it comes to security, there are always trade-offs between security and convenience/ease of administration. This article examines some of the main pros and cons of using key authentication vs password authentication for hosting an SFTP server.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

776 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question