Home
Help
Search
Login
Register
OPNsense Forum
»
Archive
»
21.7 Legacy Series
»
Forward DHCP requests without relay between VLANs
« previous
next »
Print
Pages: [
1
]
Author
Topic: Forward DHCP requests without relay between VLANs (Read 2684 times)
cwt
Newbie
Posts: 46
Karma: 1
Forward DHCP requests without relay between VLANs
«
on:
December 06, 2021, 12:56:05 pm »
Howdy!
Is there a possibility to forward DHCP requests from one VLAN to another without using the OPNsense DHCP relay?
I have 3 different VLANs in OPNsense (VLAN 100, 200, 300) and want to forward each DHCP request to one server in VLAN 200 (Windows DHCP with scopes for each VLAN) which has only one NIC (tagged to VLAN 200).
How can I achieve that?
Thx in advance
Logged
Patrick M. Hausen
Hero Member
Posts: 6825
Karma: 573
Re: Forward DHCP requests without relay between VLANs
«
Reply #1 on:
December 06, 2021, 01:54:01 pm »
That's precisely what the relay is for. Why don't you want to use it?
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do.
(Isaac Asimov)
cwt
Newbie
Posts: 46
Karma: 1
Re: Forward DHCP requests without relay between VLANs
«
Reply #2 on:
December 06, 2021, 03:49:24 pm »
Because I want to use OPNsense' DHCP on other interfaces. Using both is not possible.
Logged
Patrick M. Hausen
Hero Member
Posts: 6825
Karma: 573
Re: Forward DHCP requests without relay between VLANs
«
Reply #3 on:
December 06, 2021, 04:29:02 pm »
A relay agent is necessary, you cannot achieve the same with e.g. firewall rules. This is due to the broadcast nature of the DHCP requests which are not forwarded by a firewall/router.
Why the DHCP server and relay agent cannot run at the same time as long as they serve different interfaces, I don't know. I'm a bit surprised, honestly.
Logged
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do.
(Isaac Asimov)
cwt
Newbie
Posts: 46
Karma: 1
Re: Forward DHCP requests without relay between VLANs
«
Reply #4 on:
December 07, 2021, 07:50:17 am »
Yep, I also don't understand why it's not possible to use both services on different interfaces.
What works is DHCP relaying on the switches or a simple ruleset on the VLAN interface:
(Note: virtual AD DHCP and DNS servers are in VLAN100, virtual Windows 11 in VLAN200)
- Protocol: IPv4 TCP/UDP | Source: VLAN200 | Port: * | Destination: <Alias_For_Virtual_AD_Servers> | Port: 53 (DNS)
- Protocol: IPv4 UDP | Source: VLAN200 | Port: * | Destination: <Alias_For_Virtual_AD_Servers> | Port: 67-68
Didn't test it with Windows 10 but I guess it will work also.
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
Archive
»
21.7 Legacy Series
»
Forward DHCP requests without relay between VLANs