Module 3: DHCP as a
Solution for IP
Configuration
Overview
Introducing DHCP
Designing a Functional DHCP Solution
Securing a DHCP Solution
Enhancing a DHCP Design for Availability
Enhancing a DHCP Design for Performance
Introducing DHCP
Design Decisions
DHCP Features
Integration Benefits
Design Decisions
Segment 1 Segment 2
Router
Number of Hosts?
Number of Subnets?
Network Configuration?
DHCP Features
RFC Compliance
Scopes
Superscopes
TCP/IP Options
DNS Integration
Active Directory Integration
Microsoft’s Vendor-Specific Options
Microsoft Support for Multicast IP Address Allocation
Integration Benefits
Routing
and Remote
Access Server
DNS
Server
Active
Directory
IP Address
Name Registration
DHCP
Server Server Authorization
Routing and Remote Access
DNS
Active Directory
Designing a Functional DHCP Solution
Designing a DHCP Service for a LAN
Designing a DHCP Service for a Routed Network
Providing DHCP Service to Non-Microsoft Hosts
Discussion: Evaluating DHCP Functional Requirements
Designing a DHCP Service for a LAN
DHCP 1 DHCP 2 Reserved
TCP/IP
Options Class
Scope A Scope X
Active Active Scope
Global
“Portable”
Scope B Scope Y
Active Active Reserved
Class
SuperScope 1 SuperScope 2 Scope
Configuration for 2 DHCP Servers Global
Server Placement
“Desktop”
LAN TCP/IP Options
Designing a DHCP Service for a Routed Network
DHCP
Clients
DHCP Client Non-DHCP
Subnet 1 Client
DHCP With BOOTP
No BOOTP Forwarding Subnet 2
Relay Agent Forwarding
Router Router
DHCP
Client
DHCP
Server
Subnet 3
DHCP Relay Agent
DHCP Server Placement
Providing DHCP Service to Non-Microsoft Hosts
Non-DHCP
Client
DHCP
Non-Microsoft Server
DHCP Client
IP Address1
Diskless DHCP Database
IP Address2
Workstation IP Address1
BOOTP Client IP Address2
IP Address3
Non-Microsoft DHCP Clients
BOOTP Clients
Non-DHCP Clients
Securing a DHCP Solution
Securing the DHCP Service
Preventing Unauthorized DHCP Servers
Using DHCP in Screened Subnets
Securing the DHCP Service
DHCPServer
Object
Active
Directory Authorized
List
ADSI
Authorized
List
DHCP
Servers Running
DHCP Windows 2000 Server
Server
Authorize DHCP Servers in Active Directory
Using Windows 2000 Groups to Secure Management
Preventing Unauthorized DHCP Servers
DHCPServer
Object
Authorized
List
In authorized list Not in authorized list
(Start up)
Active Directory (Shut down)
DHCP Service
DHCPINFORM DHCPINFORM
Authorized Unauthorized
Windows 2000 Windows 2000
DHCP Server DHCP Server
Using DHCP Servers in Windows 2000
Authorizing DHCP Servers in Active Directory
Using DHCP in Screened Subnets
Shared
Resource DHCP
External Server
Firewall Server
Internet
Internal
Firewall
Private
Network
Web and Shared
Resource Server
DHCP
Screened Subnet Server
Enhancing a DHCP Design for Availability
Single Computer
DHCP Server
Distributed
Scopes
DHCP Server
Cluster
Single Computer
DHCP Server
DHCP Server Cluster
IP Address
Using Distributed Scopes
Using Windows Clustering Cluster-based
DHCP Server
Discussion: Evaluating DHCP
Availability Requirements
Enhancing DHCP Availability with Distributed Scopes
Scope for
172.81.X.X/20
defined in both
DHCP Servers
Active Addresses Reserved Addresses
Reserved Addresses Active Addresses
DHCP Server DHCP Server
Enhancing DHCP Availability with Windows Clustering
Multiple Physical Computers
DHCP Server
Cluster
DHCP Server Cluster
IP Address
Single Logical
DHCP Server
Discussion: Evaluating DHCP Availability
Requirements
Proxy
Server
Link to Internet
Subnet A1
Subnet A2
Router A1 Router A2
Subnet B1
DHCP Server
Router A3
with 4 scopes
Subnet A3
Enhancing a DHCP Design for Performance
Enhancing DHCP Performance of a Single Server
Enhancing DHCP Performance by Using Multiple Servers
Improving DHCP Performance by Modifying Lease
Length
Enhancing DHCP Performance of a Single Server
Memory
Memory
CPUs
CPUs Disk
Disk
DHCP
Network
Network Cards
Cards Client
DHCP
Server
Multihomed DHCP Server
Improving DHCP Server Response Times
Enhancing DHCP Performance By Using Multiple Servers
DHCP
Clients
DHCP
Clients
DHCP
Multihomed Servers
DHCP Server with
Distributed Scopes Sydney
Router
New York Router
Router
WAN
DHCP Connection
Clients
Improving DHCP Performance by Modifying Lease Length
As
As Lease
Lease Length
Length Network
Network Traffic
Traffic IP
IP Addresses
Addresses Release
Release
Later
Later
Sooner
Sooner
Lab A: Designing a DHCP Solution
Review
Introducing DHCP
Designing a Functional DHCP Solution
Securing a DHCP Solution
Enhancing a DHCP Design for Availability
Enhancing a DHCP Design for Performance