Configure DHCP Relay
If you have configured two DHCP servers for failover, add the IP addresses of both the primary and secondary DHCP servers to the configuration for DHCP relay. The Firebox sends DHCP requests to the IP addresses of all DHCP servers you specify.
In Fireware v12.1.1 or higher, you can specify DHCP relay servers for each interface. The DHCP relay servers you specify apply only to DHCP requests received on that interface.
Make sure the Firebox has a route to the IP addresses you specify for DHCP relay. If the DHCP server you want to use is not on a network protected by your Firebox, you must set up a branch office VPN (BOVPN) tunnel between your Firebox and the network where the DHCP server is for this feature to operate correctly.
The Firebox limits the number of interfaces on which DHCP relay works. In Fireware v12.7 or higher, DHCP relay works on all interfaces configured for DHCP relay if you configure 750 or fewer interfaces to use DHCP relay. In lower Firebox versions, the limit is different. For more information, go to DHCP relay fails if configured on more than 255 interfaces in the WatchGuard Knowledge Base.
In Fireware v12.1 or lower, the DHCP relay servers you specify are used for DHCP requests received all interfaces.
Configure DHCP Relay
To configure DHCP relay, from Fireware Web UI:
- Select Network > Interfaces.
The Network Interfaces page opens.
- Select a trusted, optional, or custom interface and click Configure.
- From the drop-down list at the bottom of the page, select Use DHCP Relay.
- In the DHCP Server text box, type the IP address of a DHCP server and click Add.
- Repeat the previous step to add the IP addresses of up to three DHCP servers.
To configure DHCP relay, from Policy Manager:
- Select Network > Configuration.
The Network Configuration dialog box opens. - Select a trusted, optional, or custom interface and click Configure.
The Interface Settings dialog box opens.
- Select Use DHCP Relay.
- Type the IP address of the DHCP server and click Add.
- Repeat the previous step to add the IP addresses of up to three DHCP servers.
Make sure to add a static route to each DHCP server, if necessary. The DHCP server can be on the network at the remote end of a branch office VPN tunnel.