Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Disable BOOTP Protocol

Hi.

Since Firewall support BOOTP/DHCP simultaneos It's possible to disable BOOTP offers?



This thread was automatically locked due to age.
Parents
  • Do you mean disable it for the XG or stop it on the network? It appears that BOOTP and DHCP both use the same ports (TCP/UDP ports 67 and 68), but you should be able to make a firewall rule to only allow packets to ports 67 and 68 that are directed to your DHCP server -- which could be your XG or another machine.

    Then make sure your DHCP server doesn't also service BOOTP. Probably the default for other servers. For the XG I think you simply would not fill in the Boot Host name in the XG's settings (Network > DHCP > Boot Options > Next-Server) and leave the Boot File field empty. I don't see how the XG could service BOOTP with those two fields empty.

Reply
  • Do you mean disable it for the XG or stop it on the network? It appears that BOOTP and DHCP both use the same ports (TCP/UDP ports 67 and 68), but you should be able to make a firewall rule to only allow packets to ports 67 and 68 that are directed to your DHCP server -- which could be your XG or another machine.

    Then make sure your DHCP server doesn't also service BOOTP. Probably the default for other servers. For the XG I think you simply would not fill in the Boot Host name in the XG's settings (Network > DHCP > Boot Options > Next-Server) and leave the Boot File field empty. I don't see how the XG could service BOOTP with those two fields empty.

Children