Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DHCP Requests dropped by "LOCAL_ACL"

Hi Guys,

we have currently the strange behavior.

DHCP Request are not being answered by the XG from a RED location.

VIA tcpdump we can see the requests on the right interface

XG210_WP03_SFOS 17.5.8 MR-8# tcpdump -ni reds1
tcpdump: Starting Packet Dump

15:33:07.981735 reds1, IN: IP 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from XXXXXXX:62:97, length 300
15:33:12.981487 reds1, IN: IP 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from XXXXXXX:62:97, length 300
15:33:17.722272 reds1, IN: IP 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from XXXXXXX:62:97, length 300
15:33:26.464993 reds1, IN: IP 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from XXXXXXX:62:97, length 300
15:33:43.337091 reds1, IN: IP 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from XXXXXXX:62:97, length 300


In the Packet Capture i can see that the Traffic is dropped by LOCAL ACL.





When we give the Client behind the red a static IP - it work

Attached are the RED & DHCP Settings





XG has 17.5.8 and RED firmware 2.0.018

Attached also the Device Access:

 

Does anyone know how to fix that or why are these Requests dropped ?

I am grateful for every tip!

Kind Regards,

Max



This thread was automatically locked due to age.
Parents Reply
  • Max,

    red can act as DHCP server for the network connected on the lan. This is the first approach to allow remote networks to get an IP address.

    If you want to let the central DHCP server to send proper IP address to red network, you need dhcp relay. Red blocks dhcp traffic as router does.

    I hope it is clear now.        

Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?