PXE boot

Reply
L2 Linker

PXE boot

I'm trying to get pxe boot to work through the firewall. Now options 66 and 67 are available in palos dhcp server but I can't get it to work anyway.

 

Besdies normal dhcp options I've setup option 66 with IP and ip-address and option 67 with ASCII and \path\bootfile

I have a sec pol with any any to the sccm server.

 

All I can see is tftp traffic hitting the gateway, no traffic trying to hit the sccm server at all.

 

So I'm thinking I've setup the dhcp server wrong.

 

Any ideas?

L3 Networker

Re: PXE boot

> By any chance are you using DHCP relay ?

L2 Linker

Re: PXE boot

Nope.

 

I have on other interfaces but here I have a server.

L5 Sessionator

Re: PXE boot

Are you saying that you have configured dhcp server somewhere on your network and firewall is droping some dhcp traffic? I think you need to configure dhcp replay and create proper security policies.

L2 Linker

Re: PXE boot

No I'm saying that I've configured Palos own dhcp server with custom options 66 and 67.

Highlighted
L3 Networker

Re: PXE boot

Few suggestions that you may try:

 

> Remove any App Over-ride policy

> Remove QoS if you have it config

L2 Linker

Re: PXE boot

Nothing of those in place.

 

Just to clarify. Client gets ip, dns etc from palos dhcp server. Lease is 192.168.0.100/24 gw 192.168.0.1 (palo). Option 66 says 192.168.1.23.

 

Only traffic I can see is udp/69 with destination 192.168.0.1.

L5 Sessionator

Re: PXE boot

Try dhcp option 66 with ASCII and type the hostname of the tftp server not the ip address.

L2 Linker

Re: PXE boot

I have already tried that but no go I'm afraid.

 

L5 Sessionator

Re: PXE boot

Configure only option 66 first and don't configure option 67 check if only option 66 is working or not. Take pcap on the firewall you will get to know if firewall is sending packets with proper option or not.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!