Configure dhclient to check value of DHCP options

Sten Carlsen stenc at s-carlsen.dk
Tue Jul 21 07:22:28 UTC 2009


How about using a number of uncommon options? It would be strange that 
"some" other server could give out a number of unusual  options.

You could even define your very own  option that nobody else would know
about.

I can't tell you how but somebody else will be able to.
 

Jon Smaller wrote:
> Hi Alan,
>
> That approach would work but would involve having firewall rules on
> each of the boxes ... And for different installations of our
> monitoring solution, the main DHCP server would have different ip
> addresses, thus increasing the configuration complexity of the
> individual boxes (I intend to have a large number of these monitoring
> boxes in the field).
>
> Also were the IP/NIC of the main server to change, then we would have
> to manually reconfigure the firewall rules on each of these boxes,
> which could number in the hundreds.
>
> Jon
>
>
>
> On 20/07/2009, at 6:58 PM, A.L.M.Buxey at lboro.ac.uk wrote:
>
>> Hi,
>>
>> you know your servers - their IP and MAC addresses - so just stick
>> a host-based firewall (eg iptables for linux) onto your box
>> and configure it to only allow DHCP to pass through from your
>> boxes?
>>
>> alan
>> _______________________________________________
>> dhcp-users mailing list
>> dhcp-users at lists.isc.org
>> https://lists.isc.org/mailman/listinfo/dhcp-users
> _______________________________________________
> dhcp-users mailing list
> dhcp-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/dhcp-users

-- 
Best regards

Sten Carlsen

No improvements come from shouting:

       "MALE BOVINE MANURE!!!" 




More information about the dhcp-users mailing list