This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DHCP Relay, VLANs, Gateways

Hi,

I have 3 VLANs on XG at the moment:

Guest WiFi (we don't use Sophos APs) - 172.18.x.x
Admin WiFi - 172.14.x.x
VoIP - 172.16.x.x

Each of these is using XG's native DHCP Server. We also have Windows DHCP in use for the corporate LAN, including WiFi.

I am thinking of moving the DHCP to the Windows DHCP Servers so it's all in one place. What is the correct process with XG? I have added the 2 Windows DHCP Server IPs in to XG DHCP Relay section.

Thanks



This thread was automatically locked due to age.
Parents
  • Once you direct DHCP requests from the VLANs to the Admin/DHCP Server subnet, then you'll just need to create and activate the scopes in the DHCP Server, and disable/delete the scope from the XG. 

  • Thanks. I'm doing something wrong in Sophos then because I have to have the Scope to be able to set a relay, and then XG doesn't let me leave the range empty.

    Windows DHCP Servers: 10.0.0.x / 10.0.0.y
    Sophos XH LAN IP (GW): 10.0.0.1

  • There's no need to setup a DHCP Server or Scope in the XG; all DHCP functions will be done on the server.  As long as the 10.0.0.x and 172.x.x.x subnets are all accessible from the XG, then you just tell it to forward those broadcast packets from 172.x.x.x to the DHCP server on 10.0.0.x.   Edit: I'm assuming you have all VLANs defined as sub-interfaces on your primary LAN port...

    In example, I have one DHCP Server (10.4.5.25), and one of these for each VLAN:

    Hope that helps.. 

  • Thanks again. I see, so the Relay config. is actually for devices on relevant interface. I thought the Relay was just what IPs DHCP existed on, and then the 'use relay' on the DHCP Scope in Sophos just forwarded it on to the IPs in the Relay.

    So it needs to be like this - with a Relay config. for each VLAN. Will I need to add FW rules for DHCP to travel between zones? My 2 WiFi VLANs are on the WiFi zone and VoIP is on the LAN zone

Reply
  • Thanks again. I see, so the Relay config. is actually for devices on relevant interface. I thought the Relay was just what IPs DHCP existed on, and then the 'use relay' on the DHCP Scope in Sophos just forwarded it on to the IPs in the Relay.

    So it needs to be like this - with a Relay config. for each VLAN. Will I need to add FW rules for DHCP to travel between zones? My 2 WiFi VLANs are on the WiFi zone and VoIP is on the LAN zone

Children