Support Support Downloads Knowledge Base Case Manager My Juniper Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

DNS Server Settings Overwritten by DHCP Connection (DHCP Relay Environment)



Article ID: KB6624 KB Last Updated: 30 Aug 2010Version: 4.0
DNS Server Settings Overwritten by DHCP Connection (DHCP Relay Environment)
  • NetScreen firewall is configured as a DHCP Relay
  • Remote NetScreen firewall is configured as a DHCP server
  • Centralized DHCP Management over VPN Connection
  • PC behind NetScreen obtains DHCP IP address from the Remote NetScreen firewall thru DHCP Relay
  • NetScreen firewall obtains untrust IP address from Internet Service Provider (ISP) via Point to Point Protocol over Ethernet (PPPoE)
  • NetScreen configured as a DNS server
Symptoms & Errors:
  • DNS server options get overwritten by PPPoE server on untrust side
  • PPPoE overwrites internal DNS settings
  • Don't want to use DNS the ISP provides
  • Use split DNS for private and public networks
  • set PPPoE DHCP-nochange does not work


Use of "set PPPoE DHCP-nochange" command to retain the internal DNS Server settings on the NetScreen applies to DHCP Server Environment ONLY.

By design, for NetScreen Device configured as a DHCP relay agent, the DNS Server settings will be overwritten by the PPPoE Connection. There is no way currently to prevent DNS settings from being overwritten if the DHCP clients obtain their addresses from the NetScreen via DHCP Relay.

To implement "set PPPoE DHCP-nochange" on Netscreen as DHCP Server, please refer to KB5240

Comment on this article > Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search