Você está na página 1de 4

GNU/Linux

Corporate
Mdulo 07 DHCP Server

Autor: Salim Aouar


Instalao e Configurao

Configuraes do Servidor: 4 criar diretrio e arquivos:


sudo mkdir /etc/dhcp/confs/
1 instalar o isc-dhcp-server:
touch /etc/dhcp/confs/lan1.conf
sudo apt update
touch /etc/dhcp/confs/lan2.conf
sudo apt install isc-dhcp-server
touch /etc/dhcp/confs/dmz.conf

2 editar /etc/default/isc-dhcp-server:
5 editar os trs arquivos (ex.: lan1.conf):
- inserir as interfaces para responder:
subnet 192.168.10.0 netmask 255.255.255.0 {
INTERFACES=eth1 eth2 eth3
interface eth1;
range 192.168.10.30 192.168.10.150;
3 modificar /etc/dhcp/dhcpd.conf:
option routers 192.168.10.1;
ddns-update-style none;
option domain-name-servers 8.8.8.8,8.8.4.4;
default-lease-time 600;
option broadcast-address 192.168.10.255;
max-lease-time 7200;
}
log-facility local7;
include "/etc/dhcp/confs/lan1.conf";
6 reiniciar o servio de dhcp:
include "/etc/dhcp/confs/lan2.conf";
service isc-dhcp-server restart
include "/etc/dhcp/confs/dmz.conf";
ou
systemctl restart isc-dhcp-server

GNU/Linux Corporate | Mdulo 07 DHCP Server 2


Controles Avanados

MAC-Address: Class:
1 inserir o MAC e IP no arquivo (lan1.conf): 1 criar a classe no arquivo (lan1.conf):
host PC_A { class "net_internal" {
hardware ethernet 00:03:11:11:11:11; match if (substring(hardware, 1, 2) = 00:01) or
fixed-address 192.168.10.10; (substring(hardware, 1, 2) = 00:02) or
} (substring(hardware, 1, 2) = 00:03);
}
2 reiniciar o servio dhcp:
service isc-dhcp-server restart 2 autorizar a classe 'net_internal' na subnet :
ou subnet 192.168.10.0 netmask 255.255.255.0 {
systemctl restart isc-dhcp-server interface eth1;
allow members of "net_internal";
deny unknown-clients;
..

3 reiniciar o servidor dhcp:


service isc-dhcp-server restart
ou
systemctl restart isc-dhcp-server

GNU/Linux Corporate | Mdulo 07 DHCP Server 3


Controles Avanados

VLAN (se for o caso): 5 criar o arquivo .conf:


touch /etc/dhcp/confs/vlan100.conf
1 instalar o pacote 'vlan':
apt update
6 editar a configurao (vlan100.conf):
apt install vlan
subnet 192.168.100.0 netmask 255.255.255.0 {
interface eth1.100;
2 configurar a interface com o id da vlan:
range 192.168.100.30 192.168.100.150;
ifconfig eth1.100 192.168.100.1/24
option routers 192.168.100.1;
ou
option domain-name-servers 8.8.8.8,8.8.4.4;
- /etc/network/interfaces (permanente)
option broadcast-address 192.168.100.255;
}
3 editar /etc/default/isc-dhcp-server:
- inserir a nova interface:
7 reiniciar o servidor dhcp:
INTERFACES=eth1 eth2 eth3 eth1.100
service isc-dhcp-server restart
ou
4 modificar /etc/dhcp/dhcpd.conf:
systemctl restart isc-dhcp-server
...
include "/etc/dhcp/confs/vlan100.conf";

GNU/Linux Corporate | Mdulo 07 DHCP Server 4

Você também pode gostar