3com 8807 User Guide

Page of 883
700
C
HAPTER
 57: DHCP C
ONFIGURATION
The DHCP client applies for an IP address through the DHCP relay. When the 
packet from DHCP client passes the DHCP relay, the DHCP relay adds its 
primary IP address in the packet and forwards the packet to the DHCP server. 
When receiving the packet, DHCP server allocates an IP address in the same 
segment as the IP address added by the DHCP relay.
If there is a local DHCP Server, when the DHCP Client applies for IP addresses, it 
can be assigned with only the address which is in the same network segment 
with the primary IP address of the interface connecting the client to the server. 
The client cannot be assigned with the address which is in the same network 
segment with the secondary IP address of the interface connecting the client to 
the server.
If there is no local DHCP Server, when the DHCP client applies for IP address 
through Relay, the DHCP Serer can be assigned with only the address which is 
in the same network segment with the primary IP address of the Relay. The 
DHCP Server cannot be assigned with the address which is in the same 
network segment with the secondary IP address of the Relay.
Enable/Disable DHCP security on a VLAN interface
If you enable the DHCP security feature on a VLAN interface, the switch performs 
user address checking on the VLAN interface to prevent unauthorized binding 
request. If you disable the DHCP security feature on a VLAN interface, the switch 
does not perform user address checking on the VLAN interface.
Perform the following configuration in VLAN interface view.
The DHCP security feature is disabled on a VLAN interface by default.
CAUTION: After the DHCP security feature is enabled on a VLAN interface, the 
client that has already obtained an IP address will lose its access right and has to 
apply for an IP address again. Therefore, it is recommended that the administrator 
should conduct this configuration before any user has obtained an IP address.
Displaying and 
Debugging DHCP Relay
After the above configuration, you can execute the display command in any view 
to display running information about DHCP Relay to verify your configuration.
Execute the debugging command in user view to debug DHCP Relay.
Table 652   Enable/disable DHCP security on a VLAN interface
Operation 
Command 
Enable DHCP security on a VLAN interface 
dhcp relay security address-check enable 
Disable DHCP security on a VLAN interface 
dhcp relay security address-check disable
Table 653   Display and debug DHCP Relay
Operation 
Command 
Display information about the DHCP relay 
configured for VLAN interface 
display dhcp relay address { interface 
vlan-interface
 vlan-id | all } 
Display information about legal user address 
entries for DHCP relay 
display dhcprelay-security [ ip-address ]