Solved

Adding a 2nd subnet on our network

Posted on 2016-07-29
7
71 Views
Last Modified: 2016-08-03
Hello - I just want to get some general guidance on this.  We're at capacity on our 192.168.1.x /24 subnet, and are adding a 2nd subnet to our DHCP server for 192.168.2.x / 24.  We've had Cisco add another VLAN to our network so that both VLANs 1& 2 can talk to each other.  What I need clarity on is when adding the 2nd subnet to the DHCP server, how do I control what clients take addresses from 1 subnet as opposed to the other?  Do I just statically address machines to control that?  Or do I NEED to worry about that at all?  Will DHCP automatically hand out addresses from the 2nd one when the 1st one gets down to 0 IPs left?

Thanks for your help.
Damian
0
Comment
Question by:Damian_Gardner
  • 4
  • 3
7 Comments
 
LVL 24

Expert Comment

by:Ken Boone
Comment Utility
So the DCHP is on your 192.168.1.x network.  This is how it works.  Your DHCP server is listening for two things.

1) Broadcast DHCP requests.  - Since it is a broadcast, the DHCP server knows that it must be from the network that the DHCP server is on because broadcasts are local to the network.  Therefore it gets a DHCP request as a broadcast on the interface on the 192.168.1.x network.  It then responds with an address out of that pool.

2) DHCP relay requests - These are DHCP unicast packets that are sent from a router in order to relay a DHCP request from another network segment.  When the DHCP server receives these packets, the relay packet has the network from where the request is coming in the packet.  The DHCP server sees this and then knows which scope to send an IP address from.

Now to make it work on the DHCP server you just need to build your scope and activate it.

So on the layer 3 device that is handling the default gateway function for the new network is where you will need to configure the dhcp relay.  

So for instance it might look like the following:

If on layer 3 switch:

vlan 2
  name Network2

interface vlan 2
  ip address 192.168.2.1 255.255.255.0
  ip helper-address 192.168.1.10

The address defined as the ip helper-address is the address of your dhcp server.

That is pretty much all you need to do.
0
 

Author Comment

by:Damian_Gardner
Comment Utility
Ken - thanks for your help on this.  So - when you say the DHCP relay packets will identify which network it came from - does that mean I will need to specify the ports on my switch stack as either VLAN 1 or VLAN2, and based on which port the clients are connected to, will determine which network they're from?  And do I understand it correctly that I can have both subnets hosted on the same DHCP server?  or do I need a 2nd server to live on the new 192.168.2.x subnet?
0
 
LVL 24

Accepted Solution

by:
Ken Boone earned 500 total points
Comment Utility
Ok so to do this right, you will need to have the users on the 192.168.2.x network to be connected to switch ports that are on vlan 2.  So yes you will need to identify those users that should be on vlan 2 and configure their switch ports to be access ports on vlan 2.  Both subnets can be handled on the single DHCP server.  The DHCP server is currently on vlan 1 which is 192.168.1.x network.  The DHCP server will respond with a 192.168.1.x lease assignment to those users as it will receive broadcast DHCP requests from those users on vlan1.  The same DHCP server will also received DHCP relay packets from the layer 3 gateway device (switch or router) form the users on VLAN 2.  The relay packet will identify that the request is coming from the 192.168.2.x network so the DHCP server will respond with a lease assignment on the 192.168.2.x network.
0
Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

 

Author Comment

by:Damian_Gardner
Comment Utility
ok - that makes sense.  so I need to separate a grouping of ports on the switch and make those VLAN2, it sounds like.  Great - thanks for your help.
0
 

Author Comment

by:Damian_Gardner
Comment Utility
One thing I just thought of - what happens if a client is connected thru a VLAN1 port, and the 1st subnet is maxed out and has 0 addresses available?  Will the DHCP server default over to the 2nd subnet and assign a free address from the 192.168.2.x subnet?  Or would the client not get an IP?

Thanks again
0
 
LVL 24

Expert Comment

by:Ken Boone
Comment Utility
The client will not get an IP address in that situation.  You will need to change their port to vlan 2.
0
 

Author Comment

by:Damian_Gardner
Comment Utility
ok.  I sort of figured that.  thanks again Ken
0

Featured Post

How to improve team productivity

Quip adds documents, spreadsheets, and tasklists to your Slack experience
- Elevate ideas to Quip docs
- Share Quip docs in Slack
- Get notified of changes to your docs
- Available on iOS/Android/Desktop/Web
- Online/Offline

Join & Write a Comment

Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now