Check-Mac-Address
These scenarios show how the feature
check-mac-address
works for DHCP server
Test Check MAC Address
Description
The check-mac-address
option filters packets if there are differences between the MAC address found at the ethernet header and the MAC address found in the DHCP packet.
To check this option, you should send packets with these differences and enable this option and see if there are warnings in your logs.
Also, this test check the server’s behaviour in regular conditions.
Scenario
Step 1: Set the following configuration in DUT0
:
set interfaces ethernet eth0 address 10.0.0.1/24 set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.5
Step 2: Run command system journal show | tail
at DUT0
and check if output contains the following tokens:
DHCPDISCOVER from 10:00:00:00:00:02 via eth0Show output
Apr 09 08:54:02.147247 osdx OSDxCLI[7130]: User 'admin' added a new cfg line: 'set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.5'. Apr 09 08:54:02.325622 osdx kernel: 8021q: adding VLAN 0 to HW filter on device eth0 Apr 09 08:54:02.391897 osdx systemd[1]: Started "DHCP Server Service instance main". Apr 09 08:54:02.395591 osdx cfgd[1120]: [7130]Completed change to active configuration Apr 09 08:54:02.399323 osdx OSDxCLI[7130]: User 'admin' committed the configuration. Apr 09 08:54:02.403371 osdx dhcpd[8362]: Wrote 0 leases to leases file. Apr 09 08:54:02.426608 osdx OSDxCLI[7130]: User 'admin' left the configuration menu. Apr 09 08:54:02.489919 osdx dhcpd[8362]: Server starting service. Apr 09 08:54:02.599205 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal show | tail'. Apr 09 08:54:03.508367 osdx dhcpd[8362]: DHCPDISCOVER from 10:00:00:00:00:02 via eth0
Step 3: Set the following configuration in DUT0
:
set service dhcp-server check-mac-address
Step 4: Run command system journal clear
at DUT0
.
Step 5: Run command system journal show | tail
at DUT0
and check if output does not contain the following tokens:
DHCPDISCOVER from 10:00:00:00:00:02 via eth0Show output
-- Logs begin at Tue 2024-04-09 08:54:04 UTC, end at Tue 2024-04-09 08:54:04 UTC. -- Apr 09 08:54:04.381350 osdx systemd-journald[1044]: Runtime journal (/run/log/journal/2dc26f94a9f34e56b62b3c0d209c4be0) is 2.0M, max 16.0M, 14.0M free. Apr 09 08:54:04.409655 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal clear'.
Step 6: Run command system journal show | tail
at DUT0
and check if output contains the following tokens:
MAC received in DHCP packet (10:00:00:00:00:02) is different than source MAC in ethernet header (10:00:00:00:00:01)Show output
-- Logs begin at Tue 2024-04-09 08:54:04 UTC, end at Tue 2024-04-09 08:54:04 UTC. -- Apr 09 08:54:04.381350 osdx systemd-journald[1044]: Runtime journal (/run/log/journal/2dc26f94a9f34e56b62b3c0d209c4be0) is 2.0M, max 16.0M, 14.0M free. Apr 09 08:54:04.409655 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal clear'. Apr 09 08:54:04.499392 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal show | tail'. Apr 09 08:54:04.548340 osdx dhcpd[8404]: MAC received in DHCP packet (10:00:00:00:00:02) is different than source MAC in ethernet header (10:00:00:00:00:01)
Step 7: Set the following configuration in DUT1
:
set interfaces eth0 mac 10:00:00:00:00:05
Step 8: Set the following configuration in DUT1
:
set interfaces eth0 address dhcp
Step 9: Run command interfaces ethernet eth0 show
at DUT1
and check if output contains the following tokens:
10.0.0.5
Show output
----------------------------------------------------------------- Name IP Address Admin Oper Vrf Description ----------------------------------------------------------------- eth0 10.0.0.5/24 up up fe80::dcad:beff:feef:6c20/64
Step 10: Run command service dhcp-server show leases main | grep 10.0.0.5
at DUT0
and check if output contains the following tokens:
10:00:00:00:00:05Show output
10.0.0.5 10:00:00:00:00:05 2024/04/09 08:54:06 2024/04/09 20:54:06 2024/04/09 08:54:06
Test Check MAC Address VRF
Description
This scenario configures a DHCP server with VRF instead of regular interfaces and checks the option check-mac-address
.
To check this option you will need to send packets with differences in Source MAC for link layer and the client MAC from the application layer.
Scenario
Step 1: Set the following configuration in DUT0
:
set interfaces eth0 address 10.0.0.1/24 set interfaces eth0 vrf VRF0 set service dhcp-server shared-network dhcp local-vrf VRF0 set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.6 set system vrf VRF0
Step 2: Run command system journal show | tail
at DUT0
and check if output contains the following tokens:
DHCPDISCOVER from 10:00:00:00:00:02 via eth0Show output
Apr 09 08:54:16.323510 osdx cfgd[1120]: [7130]Completed change to active configuration Apr 09 08:54:16.326830 osdx OSDxCLI[7130]: User 'admin' committed the configuration. Apr 09 08:54:16.328843 osdx dhcpd[8685]: Wrote 0 leases to leases file. Apr 09 08:54:16.368803 osdx OSDxCLI[7130]: User 'admin' left the configuration menu. Apr 09 08:54:16.396920 osdx dhcpd[8685]: Server starting service. Apr 09 08:54:16.517933 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal show | tail'. Apr 09 08:54:16.570664 osdx dhcpd[8685]: DHCPDISCOVER from 10:00:00:00:00:02 via eth0 Apr 09 08:54:17.571829 osdx dhcpd[8685]: DHCPOFFER on 10.0.0.5 to 10:00:00:00:00:02 via eth0 Apr 09 08:54:17.618637 osdx dhcpd[8685]: DHCPDISCOVER from 10:00:00:00:00:02 via eth0 Apr 09 08:54:17.618659 osdx dhcpd[8685]: DHCPOFFER on 10.0.0.5 to 10:00:00:00:00:02 via eth0
Step 3: Set the following configuration in DUT0
:
set service dhcp-server check-mac-address
Step 4: Run command system journal clear
at DUT0
.
Step 5: Run command system journal show | tail
at DUT0
and check if output does not contain the following tokens:
DHCPDISCOVER from 10:00:00:00:00:02 via eth0Show output
-- Logs begin at Tue 2024-04-09 08:54:18 UTC, end at Tue 2024-04-09 08:54:18 UTC. -- Apr 09 08:54:18.339738 osdx systemd-journald[1044]: Runtime journal (/run/log/journal/2dc26f94a9f34e56b62b3c0d209c4be0) is 2.0M, max 16.0M, 14.0M free. Apr 09 08:54:18.382007 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal clear'.
Step 6: Run command system journal show | tail
at DUT0
and check if output contains the following tokens:
MAC received in DHCP packet (10:00:00:00:00:02) is different than source MAC in ethernet header (10:00:00:00:00:01)Show output
-- Logs begin at Tue 2024-04-09 08:54:18 UTC, end at Tue 2024-04-09 08:54:18 UTC. -- Apr 09 08:54:18.339738 osdx systemd-journald[1044]: Runtime journal (/run/log/journal/2dc26f94a9f34e56b62b3c0d209c4be0) is 2.0M, max 16.0M, 14.0M free. Apr 09 08:54:18.382007 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal clear'. Apr 09 08:54:18.489305 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal show | tail'. Apr 09 08:54:18.595732 osdx OSDxCLI[7130]: User 'admin' executed a new command: 'system journal show | tail'. Apr 09 08:54:18.666623 osdx dhcpd[8727]: MAC received in DHCP packet (10:00:00:00:00:02) is different than source MAC in ethernet header (10:00:00:00:00:01)
Step 7: Set the following configuration in DUT1
:
set interfaces eth0 mac 10:00:00:00:00:05
Step 8: Set the following configuration in DUT1
:
set interfaces eth0 address dhcp
Step 9: Run command interfaces ethernet eth0 show
at DUT1
and check if output contains the following tokens:
10.0.0.5
Show output
----------------------------------------------------------------- Name IP Address Admin Oper Vrf Description ----------------------------------------------------------------- eth0 10.0.0.5/24 up up fe80::dcad:beff:feef:6c20/64
Step 10: Run command service dhcp-server show leases VRF0 | grep 10.0.0.5
at DUT0
and check if output contains the following tokens:
10:00:00:00:00:05Show output
10.0.0.5 10:00:00:00:00:05 2024/04/09 08:54:21 2024/04/09 20:54:21 2024/04/09 08:54:21