Reference Guide
344 | Dynamic Host Configuration Protocol (DHCP)
www.dell.com | support.dell.com
Implementation Information
• The Dell Force10 implementation of DHCP is based on RFC 2131 and RFC 3046.
• IP Source Address Validation is a sub-feature of DHCP Snooping; FTOS uses ACLs internally to 
implement this feature and as such, you cannot apply ACLs to an interface which has IP Source 
Address Validation. If you configure IP Source Address Validation on a member port of a VLAN and 
then attempt to apply a access list to the VLAN, FTOS displays the first line in Message 1. If you first 
apply an ACL to a VLAN and then attempt enable IP Source Address Validation on one of its member 
ports, FTOS displays the second line in Message 1. 
• FTOS provides 40K entries that can be divided between leased addresses and excluded addresses. By 
extension, the maximum number of pools you can configure depends on the on the subnet mask that 
you give to each pool. For example, if all pools were configured for a /24 mask, the total would be 
40000/253 (approximately 158). If the subnet is increased, more pools can be configured. The 
maximum subnet that can be configured for a single pool is /17. FTOS displays an error message for 
configurations that exceed the allocated memory.
• E-Series supports 16K DHCP Snooping entries across 500 VLANs.
• C-Series, S-Series (S25/S50), S55, S60, S4810, and S4820T support 4K DHCP Snooping entries.
• All platforms support Dynamic ARP Inspection on 16 VLANs per system. Refer to Dynamic ARP 
Inspection. 
Configuration Tasks
• Configure the System to be a DHCP Server
• Configure the System to be a Relay Agent
• Configure Secure DHCP
Configure the System to be a DHCP Server
Configure the System to be a DHCP Server is supported only on platforms: c s   
Message 1 DHCP Snooping with VLAN ACL Compatibility Error
% Error: Vlan member has access-list configured.
% Error: Vlan has an access-list configured.
Note: If DHCP snooping is enabled globally and any L2 port is configured, any IP ACL,MAC ACL, or 
DHCP Source-Address validation ACL won't block DHCP packets.
Note: If the DHCP server is located on the ToR and the VLTi (ICL) is down due to a failed link when a VLT 
node is rebooted in JumpStart mode, it will not be able to reach the DHCP server, resulting in BMP failure.
S4820T










