- Bronze, 100 points or more
what are the exact ACL permit statements that i need to configure on my firewall if dhcp clients are residing on the inside network and DHCP server on the outside network, Assuming that i have access-group statments applied on both inside and outside interface in the inward direction.
Take a look here (Routed Mode / DHCP Relay):
In routed firewall mode, broadcast and multicast traffic is blocked even if you allow it in an access list, including unsupported dynamic routing protocols and DHCP (unless you configure DHCP relay). Transparent firewall mode can allow any IP traffic through.
1.If you are not using ASA/PIX in transparent mode, then you need to make ASA/PIX as DHCP Relay Agent
dhcprelay server x.x.x.x outside
dhcprelay enable inside
dhcprelay setroute inside
2.If you are using AS/PIX in transparent mode then you need to basically allow UDP port 67 & 68
HTH..rate if helpfull...