Конфиг без snmp-server и username
Код: Выделить всё
ip dhcp relay enable
ip dhcp information option
ip dhcp snooping
ip dhcp snooping vlan 999
ip dhcp snooping vlan 1007
ip dhcp snooping vlan 1014
ip dhcp snooping vlan 1015
ip dhcp snooping vlan 1016
ip dhcp snooping vlan 1017
ip dhcp snooping vlan 1018
ip dhcp snooping vlan 1019
ip dhcp snooping vlan 1020
ip dhcp snooping vlan 1021
ip dhcp snooping vlan 1022
ip dhcp snooping vlan 1023
ip dhcp snooping vlan 1024
ip dhcp snooping vlan 1025
ip dhcp snooping vlan 1026
ip dhcp snooping vlan 1027
ip dhcp snooping vlan 1028
ip dhcp snooping vlan 1029
ip dhcp snooping vlan 1030
ip dhcp snooping vlan 1031
!
vlan database
vlan 246,999,1007,1014-1031
exit
!
loopback-detection enable
!
hostname 246-32
!
no ip http server
!
interface fastethernet 1/0/1
ip dhcp relay enable
loopback-detection enable
switchport access vlan 1017
switchport forbidden default-vlan
ip dhcp information option format-type circuit-id Vlan1017+Ethernet1/1
ip dhcp information option format-type remote-id 246-32
exit
!
interface fastethernet 1/0/2
ip dhcp relay enable
loopback-detection enable
switchport access vlan 1017
switchport forbidden default-vlan
ip dhcp information option format-type circuit-id Vlan1017+Ethernet1/2
ip dhcp information option format-type remote-id 246-32
exit
!
interface fastethernet 1/0/24
loopback-detection enable
switchport access vlan 1007
switchport forbidden default-vlan
ip dhcp information option format-type circuit-id Vlan1007+Ethernet1/24
ip dhcp information option format-type remote-id 246-32
exit
!
interface gigabitethernet 1/0/1
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 246,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface gigabitethernet 1/0/2
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 246,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface gigabitethernet 1/0/3
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 246,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface gigabitethernet 1/0/4
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 246,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface vlan 246
ip address 192.168.246.32 255.255.255.0
exit
Через
trunk c
ip dhcp snooping trust dhcp-пакеты ходят c других свичей, абоненты работают. На самом коммутаторе, получаем такое:
show ip dhcp snooping bindingКод: Выделить всё
Total number of binding: 2
MAC Address IP Address Lease (sec) Type VLAN Interface
------------------ --------------- ------------ ---------- ---- ----------
d4:ca:6d:7d:53:a0 0.0.0.0 93 learned 1007 fa1/0/24
00:0c:42:8b:73:bf 0.0.0.0 5 learned 1017 fa1/0/2
tcpdump -nn -s 0 -v port 67 or port 68 ничего не ловит с этого коммутатора (:
Как пример другой коммутатор, в таких же условиях:
Код: Выделить всё
ip dhcp relay enable
ip dhcp information option
ip dhcp information option format-type remote-id 243-13
ip dhcp snooping
ip dhcp snooping vlan 999
ip dhcp snooping vlan 1007
ip dhcp snooping vlan 1014
ip dhcp snooping vlan 1015
ip dhcp snooping vlan 1016
ip dhcp snooping vlan 1017
ip dhcp snooping vlan 1018
ip dhcp snooping vlan 1019
ip dhcp snooping vlan 1020
ip dhcp snooping vlan 1021
ip dhcp snooping vlan 1022
ip dhcp snooping vlan 1023
ip dhcp snooping vlan 1024
ip dhcp snooping vlan 1025
ip dhcp snooping vlan 1026
ip dhcp snooping vlan 1027
ip dhcp snooping vlan 1028
ip dhcp snooping vlan 1029
ip dhcp snooping vlan 1030
ip dhcp snooping vlan 1031
!
vlan database
vlan 243,999,1007,1014-1031
exit
!
loopback-detection enable
!
hostname 243-13
!
no ip http server
!
interface fastethernet 1/0/1
ip dhcp relay enable
loopback-detection enable
switchport access vlan 1016
switchport forbidden default-vlan
ip dhcp information option format-type circuit-id Vlan1016+Ethernet1/1
ip dhcp information option format-type remote-id 243-13
exit
!
interface gigabitethernet 1/0/1
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 243,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface gigabitethernet 1/0/2
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 243,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface gigabitethernet 1/0/3
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 243,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface gigabitethernet 1/0/4
ip dhcp snooping trust
switchport mode trunk
switchport trunk allowed vlan add 243,999,1007,1014-1031
switchport forbidden default-vlan
exit
!
interface vlan 243
ip address 192.168.243.13 255.255.255.0
exit
show ip dhcp snooping bindingКод: Выделить всё
Total number of binding: 1
MAC Address IP Address Lease (sec) Type VLAN Interface
------------------ --------------- ------------ ---------- ---- ----------
1c:af:f7:1e:62:a5 93.xx.xx.119 26607 learned 1016 fa1/0/1
Ну а вообще пока что по почте с поддержкой общаемся. Соберу на столе с обнуление конфига.
До этого собирался, есть один момент что в vlan 1(default) все работает!