Link to home
Start Free TrialLog in
Avatar of Riaad Kamaludeen
Riaad Kamaludeen

asked on

Cisco ASA 5505 and Microsoft DHCP superscope

I had this question after viewing Cisco ASA 5505 and Microsoft DHCP superscope.

Hello everyone, i am new to this forum and i have a question similar to this one.

i have a Microsoft Sever 2008 R2 which is the DNS and DHCP . IP Scope is 10.1.1.0 - 10.1.1.255
its sonnected to a switch and then to an ASA5505 that goes outside to the internet. its all working and fine. but then the users using WIFI and cable to connect and the IP range is all but used up so i want to extend. i created a supercope in microsoft sever 2008 r2 and its range is 10.1.0.0 -10.1.0.255. also on the ASA i created an interface name inside1 and assinged it an ip of 10.1.0.1 /24

how can i get this to work using the ASA?

Thanks
Avatar of Pete Long
Pete Long
Flag of United Kingdom of Great Britain and Northern Ireland image

It looks like you were using a /24 mask (I'm assuming based on your IP subnets), why not simply change to a /23 mask, then you will get

10.1.0.0 (subnet)
255.255.254.0 (subnet mask)
Usable IPs 10.1.0.1 to 10.1.1.254 (510 hosts)

Then all you have to do is change the mask on the existing Firewall interface :)

To change the subnet man on the DHCP server see my article below
Windows Server – Change a DHCP Scopes Subnet Mask
Or if you want you wired and wireless clients on different subnets see the following

Cisco ASA 5500 – Sub Interfaces and VLANS

To see how your DHCP server can 'serve' BOTH scopes see the following;

Cisco IOS – DHCP Helper (DHCP Relay) – IP-Helper Setup

Pete
Avatar of Riaad Kamaludeen
Riaad Kamaludeen

ASKER

Hi Pete, great feedbacks but the thing is i cant change the subnet it will bring down the live network and i would have to change all the switches and so fort subnet mask.

the other two is also great but this doe snot work for me.

i have one network 10.1.1.1 - 10.1.1.255 /24  that is almost finish i need to add a new subnet 10.1.0.1-10.1.0.255 /24. it will go to ASA 5505 be able to route to access network resources and be able to go to the internet.
 thanks Pete
This question needs an answer!
Become an EE member today
7 DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform.
View membership options
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.