...
! This is an ENHANCEMENT request ! This is a request to include the LINK-SELECTION (RFC 3527) and SUBNET-SELECTION (RFC 3011) as part of the DHCP server configuration for RAVPN on FMC. This options exist on ASA and their command syntax is as follows: dhcp-server link-selection dhcp-server subnet-selection Without those, default DHCP behavior when we configure the "dhcp-network-scope" is that the DHCP server will send the Offer back to the IP address configured as the "dhcp-network-scope". And, on certain cases, this requires the configuration on routes on the DHCP server or any other 3 layer hop that is in the middle in case the DHCP server and the FTD are not directly connected and the FTD is not the default gateway of the network. Implementation of those options, will avoid the above and the DHCP packets will be exchanged between the IP addresses of the DHCP server and the FTD (the IP address defined on the dhcp-network-scope won't be used as source/destination in the IP packets) while accomplishing the goal defined by the "dhcp-network-scope"
You can use any IP address as the dhcp-network-scope, but it may require that static routes be added to the network (DHCP server will send the offer to the IP address defined in the dhcp-network-scope, and the FTD needs to receive this packet) The FlexConfig policy can be used to configure link-selection and subnet-selection
Cisco Integration
Learn more about where this data comes from
Bug Scrub Advisor
Streamline upgrades with automated vendor bug scrubs
BugZero Enterprise
Wish you caught this bug sooner? Get proactive today.