Knowledge Search


×
 

Configuration example - Configuring SRX as a DHCPv6 Server

  [KB26678] Show Article Properties


Summary:
This article provides information on how to configure a SRX device as a DHCPv6 server and verify the configuration.
Symptoms:
How to configure a SRX Series device as a DHCPv6 server for a subnet.
Cause:

Solution:

Note:This feature is supported on SRX platform from Junos 12.1 or later.

For a DHCPv6 overview and other configuration examples, refer to the technical documentation: DHCPv6 Server Overview.



Configuration example
:


To configure the device as a DHCPv6 server for a subnet, perform the following procedure:

  1. Specify the lowest IP address of the pool range (for example, 2607:f650:102:ffee::200/128):
    root#set access address-assignment pool my-pool family inet6 range r1 low 2607:f650:102:ffee::200/128
  2. Specify the highest IP address of the pool range (for example, 2607:f650:102:ffee::299/128):
    root#set access address-assignment pool my-pool family inet6 range r1 high 2607:f650:102:ffee::299/128
  3. Specify the DNS server that the clients use (for example, 2001:4860:4860::8888):
    root#set access address-assignment pool my-pool family inet6 dhcp-attributes dns-server 2001:4860:4860::8888
  4. Specify the IP address of the router that is assigned to clients for the DHCP pool:
    root#set access address-assignment neighbor-discovery-router-advertisement my-pool
    root#set access address-assignment pool my-pool family inet6 prefix 2607:f650:102:ffee::/64
  5. Specify DHCP as an allowed inbound service for each interface that is associated with DHCP:
    user@host# set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic system-services dhcp
    
    user@host# set security zones security-zone untrust interfaces ge-0/0/1.0 host-inbound-traffic system-services dhcp
    Note: The IP address of the interface must be in the same network as that of the DHCP pool.
    root#set system services dhcp-local-server dhcpv6 group mygroup interface ge-0/0/0.0
    root#set interfaces ge-0/0/0 unit 0 family inet6 address 2607:f650:102:ffee::1/64
    root#set protocols router-advertisement interface ge-0/0/1.0 prefix 2607:f650:102:ffee::/64
  6. Enable IPV6 flow in the security forwarding-options and then reboot the device:
    root# set security forwarding-options family inet6 mode flow-based
    
    root# exit
    
    root> request system reboot

Verification:

To verify the DHCPv6 service configuration, use the following operational commands:

root# run show dhcpv6 server binding
Prefix                      Session Id Expires State Interface Client DUID
2607:f650:102:ffee::200/128 2          85293   BOUND ge-0/0/0.0 LL_TIME0x1-0x17484efa-00:23:18:10:a6:8b

root# run show dhcpv6 server statistics
Dhcpv6 Packets dropped:
Total 0

Messages received:
DHCPV6_DECLINE 0
DHCPV6_SOLICIT 3
DHCPV6_INFORMATION_REQUEST 0
DHCPV6_RELEASE 0
DHCPV6_REQUEST 2
DHCPV6_CONFIRM 1
DHCPV6_RENEW 0
DHCPV6_REBIND 0
DHCPV6_RELAY_FORW 0
DHCPV6_RELAY_REPL 0

Messages sent:
DHCPV6_ADVERTISE 2
DHCPV6_REPLY 2
DHCPV6_RECONFIGURE 0
DHCPV6_RELAY_REPL 0


	
	
Related Links: