snaky_85 Posted December 17, 2019 Posted December 17, 2019 (edited) Здравствуйте. Не получается настроить опцию 82 на коммутаторе, сетевая карта не получает адреса. Вот конфиг свича нашего, подскажите что не так: ! ip dhcp relay information option ! ! ip dhcp snooping enable ip dhcp snooping vlan XXXX ip dhcp snooping binding enable ! ip dhcp snooping information enable ip dhcp snooping information option allow-untrusted ! ! ! ! ! ! ! ! vlan 1 ! vlan YYYY name MNGMNT_NEKR_YYYY ! vlan XXXX name nekrasovka_park_opt82_XXXX ! Interface Ethernet1/0/1 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/2 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/3 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/4 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/5 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/6 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/7 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/8 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/9 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/10 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/11 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/12 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/13 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/14 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/15 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/16 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/17 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/18 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/19 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/20 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/21 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/22 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/23 switchport access vlan XXXX ip dhcp snooping binding user-control ip dhcp snooping binding user-control max-user 1 ! Interface Ethernet1/0/24 switchport mode trunk switchport trunk allowed vlan YYYY;XXXX ip dhcp snooping trust vlan XXXX ! Interface Ethernet1/0/25 switchport mode trunk ! Interface Ethernet1/0/26 switchport mode trunk ! Interface Ethernet1/0/27 switchport mode trunk ! Interface Ethernet1/0/28 switchport mode trunk ! interface Vlan1 ! interface VlanYYYY description MNGMNT_NEKR_YYYY ip address X.X.X.X 255.255.255.0 ! ip default-gateway X.X.X.254 ! ! no login ! ! isolate-port group 1 captive-portal ! end Edited December 17, 2019 by snaky_85 Вставить ник Quote
Evgeny Mirhasanov Posted December 18, 2019 Posted December 18, 2019 Добрый день. Коммутатор подключен сразу к DHCP-серверу? Покажите его конфиг.https://shop.nag.ru/article/razdacha-ip-adresov-pomoschyu-dhcp-op82-na-kommutatorah-snr https://shop.nag.ru/article/snr-switch-dhcp-snooping-option-82 Вставить ник Quote
Evgeny Mirhasanov Posted December 18, 2019 Posted December 18, 2019 Если используете ISC-DHCP, то попробуйте добавить в конфигурацию коммутатора ip dhcp snooping information option subscriber-id format hex Вставить ник Quote
snaky_85 Posted December 19, 2019 Author Posted December 19, 2019 По L2 через 5-7 коммутаторов, dhcp сервер поднят на микротике. Со свитчами d-link и eltex данная схема работает. Вставить ник Quote
Evgeny Mirhasanov Posted December 19, 2019 Posted December 19, 2019 В таком случае хотелось бы увидеть конфиги d-link и eltex, а также настройки DHCP сервера на Mikrotik. Вставить ник Quote
snaky_85 Posted December 19, 2019 Author Posted December 19, 2019 Вот конфиг eltex 2124MB console#sh running-config ip dhcp relay enable ip dhcp information option ip dhcp snooping ip dhcp information option format-type option bin ip dhcp snooping vlan XXXX ! no spanning-tree spanning-tree bpdu filtering ! bridge multicast filtering ! vlan database vlan ZZZZ,XXXX,YYYY exit ! ip igmp snooping ip igmp snooping vlan XXXX ip igmp snooping vlan YYYY ip igmp snooping vlan YYYY mrouter interface gi1/0/25 ip igmp snooping vlan YYYY immediate-leave ip igmp snooping vlan YYYY replace source-ip 192.168.80.100 ! ip arp inspection ip arp inspection vlan XXXX ! errdisable recovery interval 60 errdisable recovery cause loopback-detection errdisable recovery cause stp-bpdu-guard ! loopback-detection enable ! username root password encrypted 5a1dc1dc45fd090a2df8a884f6cbc3f75a76a1ba privilege 15 username support password encrypted f51d6e51a462159e128ed59b18abdb5e6517e89d ! snmp-server community encrypted dd878f2448b9e4287c rw view Default ! interface gigabitethernet 1/0/1 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/2 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/3 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/4 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/5 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/6 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/7 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/8 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/9 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/10 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/11 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/12 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/13 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/14 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/15 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/16 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/17 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/18 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/19 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/20 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/21 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/22 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/23 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/24 loopback-detection enable switchport access vlan XXXX bridge multicast unregistered filtering storm-control broadcast enable storm-control broadcast level kbps 128 switchport forbidden default-vlan switchport access multicast-tv vlan YYYY exit ! interface gigabitethernet 1/0/25 ip arp inspection trust ip dhcp snooping trust switchport mode trunk switchport trunk allowed vlan add ZZZZ,XXXX,YYYY switchport forbidden default-vlan exit ! interface gigabitethernet 1/0/26 ip arp inspection trust ip dhcp snooping trust switchport mode trunk switchport trunk allowed vlan add ZZZZ,XXXX,YYYY switchport forbidden default-vlan switchport protected GigabitEthernet 1/0/25 exit ! interface gigabitethernet 1/0/27 ip arp inspection trust ip dhcp snooping trust switchport mode trunk switchport trunk allowed vlan add ZZZZ,XXXX,YYYY switchport forbidden default-vlan switchport protected GigabitEthernet 1/0/25 exit ! interface gigabitethernet 1/0/28 ip arp inspection trust ip dhcp snooping trust switchport mode trunk switchport trunk allowed vlan add ZZZZ,XXXX,YYYY switchport forbidden default-vlan switchport protected GigabitEthernet 1/0/25 exit ! interface vlan ZZZZ name MNGMNT ip address X.X.X.X 255.255.255.0 exit ! interface vlan XXXX name nekrasovka_park_opt82_XXXX exit ! interface vlan YYYY name NEKR_TV_YYYY exit ! ip default-gateway X.X.X.254 ! Ворт часть конфига d-link # DHCP_RELAY disable dhcp_relay config dhcp_relay hops 4 time 0 config dhcp_relay option_82 state disable config dhcp_relay option_82 check disable config dhcp_relay option_82 policy replace config dhcp_relay option_82 circuit_id default config dhcp_relay option_82 remote_id default config dhcp_relay ports 1-26 state enable # DHCP_LOCAL_RELAY enable dhcp_local_relay config dhcp_local_relay option_82 circuit_id default config dhcp_local_relay option_82 remote_id user_define B8-A3-86-CE-4B-C0 config dhcp_local_relay vlan vlanid XXXX state enable config dhcp_local_relay option_82 ports 1-26 policy keep # NDP # ROUTE create iproute default X.X.X.254 1 # DHCPV6_LOCAL_RELAY disable dhcpv6_local_relay # RELAY6 config dhcpv6_relay hop_count 4 disable dhcpv6_relay config dhcpv6_relay option_37 state disable check disable config dhcpv6_relay option_37 remote_id default config dhcpv6_relay option_18 state enable check disable config dhcpv6_relay option_18 interface_id default #------------------------------------------------------------------- # End of configuration file for DES-3200-26 #------------------------------------------------------------------ Вставить ник Quote
Evgeny Mirhasanov Posted December 20, 2019 Posted December 20, 2019 @snaky_85 А если на Eltex прописать ip dhcp information option format-type option sv, то будет ли работать релей? Есть подозрение, что причина в неверном формате опции. Вставить ник Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.