Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

dhcp-relay: Filtering existing option 82 #1

Open
tohojo opened this issue Aug 18, 2021 · 2 comments
Open

dhcp-relay: Filtering existing option 82 #1

tohojo opened this issue Aug 18, 2021 · 2 comments

Comments

@tohojo
Copy link
Member

tohojo commented Aug 18, 2021

When adding an option 82 to the relayed DHCP packets, we should filter any
existing options as well.

@yoelcaspersen
Copy link
Contributor

As clients are untrusted by definition, client originated DHCP packets containing Option 82 should be discarded - from RFC3046 section 2:

Relay agents receiving a DHCP packet from an untrusted circuit with giaddr set to zero (indicating that they are the first-hop router) but with a Relay Agent Information option already present in the packet SHALL discard the packet and increment an error count.

@sachintiptur
Copy link

@tohojo @yoelcaspersen is there any task that i can pick it up?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants