HP VPN Firewall Appliances Network Management Configuration Guide

203
Figure 123 Network diagram
Configuration procedure
# Specify IP addresses for the interfaces. (Details not shown.)
# Enable DHCP.
<Firewall> system-view
[Firewall] dhcp enable
# A d d D H C P s e r v e r 10 .1.1.1 i n t o D H C P s e r v e r g r o u p 1
[Firewall] dhcp relay server-group 1 ip 10.1.1.1
# Enable the DHCP relay agent on GigabitEthernet 0/1.
[Firewall] interface gigabitethernet 0/1
[Firewall-GigabitEthernet0/1] dhcp select relay
# Correlate GigabitEthernet 0/1 to DHCP server group 1.
[Firewall-GigabitEthernet0/1] dhcp relay server-select 1
Verifying the configuration
DHCP clients can obtain IP addresses and other network parameters from the DHCP server through the
DHCP relay agent. You can use the display dhcp relay statistics command to view the statistics of DHCP
packets forwarded by the DHCP relay agents. If you enable address check of the DHCP relay agents with
the dhcp relay address-check enable command, you can use the display dhcp relay security command
to view client entries.
DHCP relay agent Option 82 support configuration example
Network requirements
As shown in Figure 123, the DHCP relay agent (Firewall) replaces Option 82 in DHCP requests before
forwarding them to the DHCP server (Router).
The circuit ID sub-option is company001.
The remote ID sub-option is device001.
Configuration procedure
# Specify IP addresses for the interfaces. (Details not shown.)
# Enable DHCP.
<Firewall> system-view
Router
DHCP server
Firewall
DHCP relay agent
DHCP client DHCP client
DHCP clientDHCP client
GE0/2
10.1.1.2/24
GE0/1
10.10.1.1/24
GE0/1
10.1.1.1/24