+ Post New Thread
Results 1 to 11 of 11
Wireless Networks Thread, DHCP in Technical; OK. On from my DNS query, we have run into a problem that I saw coming but need to try ...
  1. #1

    Join Date
    Jul 2005
    Location
    Corby
    Posts
    1,056
    Thank Post
    12
    Thanked 20 Times in 18 Posts
    Rep Power
    24

    DHCP

    OK.

    On from my DNS query, we have run into a problem that I saw coming but need to try and fix before we spend lots of money calling in CSE to do for us: we have a split site computer network. My Systems Manager wants to keep our new "lower" site separate from our managed "upper" site, and to do this we have to dat installed a separate server, used local profiles with redirected folders etc., and it runs nice.

    The "problem" occurs when we RIS image the systems. They don't know where to get their DHCP address from (the upper site server or the lower site server). This shows itself in lack of ability to browse to the REMINST folder all the way to not even seeing the server on the LAN at all!

    I'm aware that you aren't "supposed" to run two DHCP servers on the same LAN. I told them this a while ago while planning was taking place. But no-one listens and they want what they want.

    My solution would be to have CSE come in and make the LAN one contiguous space (install the server as a member of the upper site network etc). The Sys. Manager is reluctant and wants to try different solutions next week. We have exactly one week to decide what to do before things start getting critical mass.

    All that said (sorry for the length), I want to know:

    (a) If running two separate DHCP servers (with different subnets) on the same LAN is possible and can work, and

    (b) How to make it work. Can I use prestaging of the clients in the AD and then RIS? Can I block DHCP broadcast requests on our switches so that DHCP requests don't travel across sites? Or is there another way?

    Any advice via PM, email, or on the forum would be greatly appreciated.

    Thanks!

    Paul

  2. #2

    mac_shinobi's Avatar
    Join Date
    Aug 2005
    Posts
    9,896
    Thank Post
    3,418
    Thanked 1,081 Times in 997 Posts
    Rep Power
    369

    Re: DHCP

    I found this, not sure how much help this is :

    http://www.neowin.net/forum/lofivers...p/t350146.html

    Also I asked a question on EE here :

    http://www.experts-exchange.com/Netw..._21549499.html

    Just keep going back to that URL and checking up to see if anyone replies there ( As you can notice I copied and pasted your question above lol )

    2 minds are better then 1 and 3 minds are better then 2 and so on and so fourth , so hopefully all this delegation and collaboration helps lol

  3. #3
    ICTNUT's Avatar
    Join Date
    Jul 2005
    Location
    Hereford
    Posts
    1,419
    Thank Post
    196
    Thanked 249 Times in 122 Posts
    Rep Power
    62

    Re: DHCP

    @ Kingswood:

    (a) If running two separate DHCP servers (with different subnets) on the same LAN is possible and can work
    This indeed can work and does as this is the way that I do it and allows for DHCP failover I have one server dishing out 192.168.0.1 -> 192.168.2.254 and the other doing 192.168.3.1 -> 192.168.4.254 this way we do not get any conflicts.

    I am not sure how you have done your image for RIS but we do complete clean installs and have done this summer on over 500 machines, each machine when it hit the GUI protion of the install found either DHCP 1 or DHCP 2 and grabbed an IP and continued without issue.

    Not one of the 500 PC's failed to get on the network and continue the install.

    I am however running 1 domain, 2 Windows 2003 DC's both of the set as GC's with DC 1 being the FSMO role holder and schema master.

    The domian is split into 2 ASync VLANs and controlled at switch level this is how I split the Admin and Curriculum networks but this is just extra in my case.

    If you need any further help shout me ;-)

  4. #4
    mark's Avatar
    Join Date
    Jun 2005
    Posts
    3,983
    Thank Post
    268
    Thanked 52 Times in 46 Posts
    Blog Entries
    2
    Rep Power
    47

    Re: DHCP

    OK I'm sitting down ICTNUT - now can you explain that to me!!! :P:P:P hehe!

    [to be serious tho' ]
    ....so if I had contiguous IP ranges as yourself, [172.16.57.x & 172.15.58.x] I could set my DHCP server to spread across the two ranges???

    [news to me if you can!]

  5. #5

    Join Date
    Jul 2005
    Location
    Corby
    Posts
    1,056
    Thank Post
    12
    Thanked 20 Times in 18 Posts
    Rep Power
    24

    Re: DHCP

    Great help ICTNUT!

    What's different between our two networks is that (if I read you right) we are running two completely separate domains- each with their own DHCP server. If it were a case of one domain (as your own is) then spreading DHCP across more than one server makes a lot of sense.

    What I've found out since asking the question is that a good way of actually blocking DHCP requests from crossing physical sites is to install either (a) a router (which won't forward broadcasts) or (b) use VLANs.

    I'm going (I think) with (b) VLANs. One for each domain. Well, I'm going to try it anyway- lol!

    Does this make sense?

    Summary: two separate networks (I know it's stupid, but it's what they want); two separate DHCP servers; separated by two VLANs so that DHCP broadcasts stay on the local subnet only.

    Thanks again- and if you think I'm heading down the wrong track here feel free to say so :-)

    Paul

  6. #6

    GrumbleDook's Avatar
    Join Date
    Jul 2005
    Location
    Gosport, Hampshire
    Posts
    9,992
    Thank Post
    1,359
    Thanked 1,827 Times in 1,134 Posts
    Blog Entries
    19
    Rep Power
    602

    Re: DHCP

    Paul

    If you are talking about a DHCP box on each site (presuming one on yours and the other at the old OLPJ site) then IIRC you can add an extra tag on the DHCP request that is unique to each site and that can be blocked at switch level (I can't remember whether this requires layer 4 or layer 3 switches though ...) so one from site A never reacher site B ... Also, if you are using reservations via Mac address you can have the reservation on one server and not the other, and as long as you don't have any other addresses available within the scopes the rqueting machine will fail on the first server and make the request to the second server.

    Speak with David Oram for more help on the switch side of things ... if you can get hold of him.

  7. #7

    Join Date
    Jun 2005
    Posts
    223
    Thank Post
    6
    Thanked 8 Times in 8 Posts
    Rep Power
    30

    Re: DHCP

    One way to control DHCP between networks is with the use of class ids so that you can set scopes for certain machines with set class ids. You can set a classid with ipconfig as in
    http://www.microsoft.com/resources/d.../ipconfig.mspx

    This takes a bit of manual config but strikes me as a fun tool.


  8. #8

    Join Date
    Jul 2005
    Location
    Corby
    Posts
    1,056
    Thank Post
    12
    Thanked 20 Times in 18 Posts
    Rep Power
    24

    Re: DHCP

    Hi Tony.

    I think you may be suggesting we use tagging a la 802.1q (used in VLANs on layer 3 switches). We have two layer 3 switches (one on each site) and I'll get on to David Oram on Monday and get his body over here to configure them (he hasn't given us the correct username and password for the switches--incredible!). As you say, *if* I can get hold of him :-(

    Thanks a bunch!!

    Paul

  9. #9

    Join Date
    Jul 2005
    Location
    Corby
    Posts
    1,056
    Thank Post
    12
    Thanked 20 Times in 18 Posts
    Rep Power
    24

    Re: DHCP

    _Bob_

    Thanks- that looks interesting but I'll have to dig deeper today and see what it offers. If it's *that* easy I'll be impressed! :-)

    Paul

  10. #10
    ICTNUT's Avatar
    Join Date
    Jul 2005
    Location
    Hereford
    Posts
    1,419
    Thank Post
    196
    Thanked 249 Times in 122 Posts
    Rep Power
    62

    Re: DHCP

    @Kingswood: I belive that the VLAN route would be the best option for you and seeing as you have invested in Layer 3 switches I see no reason why you should not use them as they should be.

    Configuring the VLAN's should be a doddle howver the tagging and if used backbone trunking is where the nightmare could rear it's head.

  11. #11

    Join Date
    Jul 2005
    Location
    Corby
    Posts
    1,056
    Thank Post
    12
    Thanked 20 Times in 18 Posts
    Rep Power
    24

    Re: DHCP

    Hi.

    Here's an update to the issue: I said that the Sys Admin wants the networks separate (as does the head of ICT) but after extensive discussions with .ICT (County) and also our managed solution providers, we are joining the networks and making sure that we can manage most of the LAN centrally.

    It took a lot of convincing however. Thanks to all of you for your contribution- I actually went away and did my research and presented most of the points as arguments for or against managing these networks separately.

    ICTNUT: you were right on the use of tagging and backbone trunking- apparently we would have had a lot of problems with this and shared internet access.

    Paul

SHARE:
+ Post New Thread

Similar Threads

  1. MAC OSX NOT GETTING IP FROM DHCP
    By thegrassisgreener in forum Mac
    Replies: 4
    Last Post: 18th January 2008, 08:50 AM
  2. Replies: 3
    Last Post: 24th January 2007, 11:11 PM
  3. VLAN's And DHCP
    By barryfl in forum Wireless Networks
    Replies: 1
    Last Post: 7th December 2006, 11:08 AM
  4. DHCP Refresh
    By Grommit in forum Windows
    Replies: 5
    Last Post: 4th December 2006, 10:55 AM
  5. VPN +DHCP
    By Dos_Box in forum Wireless Networks
    Replies: 7
    Last Post: 30th September 2005, 01:14 AM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •