Score:0

Dedicated RAS DHCP pool

ru flag

We have an SSTP server providing VPN access to our users. Said server is assigning IPs from the default DHCP pool from our Windows DHCP server.

Now, I COULD set up the DHCP server on the SSTP server directly (there's an option for that), but I'd much rather use the server we already have (especially since we have two SSTP VMs where one's a failover for the other). However, I'd also like it if SSTP users didn't use the same IP pool as everyone else.

I can see that assignments from SSTP have the "RAS" as their unique ID and the same name (pointing towards the SSTP server name), however I can't use the "RAS" as a filter or anything because it's not a valid MAC address.

Is there any way I can set up our Windows DHCP-server to provide a different range of IPs for SSTP clients?

joeqwerty avatar
cv flag
I dislike when someone posts a comment asking the OP what their motivation and reasoning is, so my apologies for being "that guy", but I have to ask; What's your reasoning for this? What are you trying to accomplish? Is it necessary? Are you adding unneeded complexity?
Shaamaan avatar
ru flag
@joeqwerty There are two distinct SSTP servers with one working as failover from the other - I'm worried what would happen if both had the same local DHCP configuration and if there's a chance that could duplicate assignments (or I'd need separate pools - which is fine I guess). I'm just thinking "I've already got a DHCP server, can I use it?" - which I obviously CAN, but I'd also like the SSTP assignments to be different purely for security reasons (I can then create a dedicated IP pool in our firewall and start making rules - right now SSTP has the same pool as non-SSTP).
joeqwerty avatar
cv flag
Understood. If it were me, I'd configure each SSTP server with it's own distinct DHCP pool.
mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.