Options

These scenarios check the functionality of different DHCP server options.

Test One Lease Per Client

Description

This scenario checks the one-lease-per-client option. In this scenario, you need two active leases at the same time. First, check those leases are active and then activate this option and check that no two leases belonging to the same client (same MAC address) are active at the same time.

Scenario

Step 1: Set the following configuration in DUT0 :

set interfaces ethernet eth0 vif 100 address 10.0.0.1/24
set interfaces ethernet eth0 vif 200 address 10.0.0.2/24
set interfaces ethernet eth1 address 10.215.168.64/24
set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 options lease 4
set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 options max-lease 4
set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.6
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'

Step 2: Set the following configuration in DUT1 :

set interfaces ethernet eth0 vif 100 mac '10:00:00:00:00:01'
set interfaces ethernet eth0 vif 200 mac '10:00:00:00:00:01'
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'

Step 3: Modify the following configuration lines in DUT1 :

set interfaces ethernet eth0 vif 100 address dhcp
set interfaces ethernet eth0 vif 200 address dhcp

Warning

If you do not see changes after enabling the options, refresh all your interfaces

Step 4: Run command service dhcp-server show leases main | grep 10.0.0.5 at DUT0 and check if output contains the following tokens:

10:00:00:00:00:01
Show output
10.0.0.5   10:00:00:00:00:01  2020/11/08 08:43:51

Step 5: Run command service dhcp-server show leases main | grep 10.0.0.6 at DUT0 and check if output contains the following tokens:

10:00:00:00:00:01
Show output
10.0.0.6   10:00:00:00:00:01  2025/06/20 14:56:12  2025/06/20 14:56:16  2025/06/20 14:56:12

Step 6: Modify the following configuration lines in DUT0 :

set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 options one-lease-per-client

Step 7: Run command service dhcp-server show leases main | grep 10.0.0.5 at DUT0 and check if output does not contain the following tokens:

10:00:00:00:00:01

Step 8: Run command service dhcp-server show leases main | grep 10.0.0.6 at DUT0 and check if output contains the following tokens:

10:00:00:00:00:01
Show output
10.0.0.6   10:00:00:00:00:01  2025/06/20 14:56:14  2025/06/20 14:56:18  2025/06/20 14:56:14

Step 9: Run command service dhcp-server clear main lease all at DUT0.

Step 10: Run command interfaces show detailed at DUT1 and check if output does not contain the following tokens:

10.0.0.5
Show output
--------------------------------------------------------------------------------------------------------------------
  Name    Idx           IP Address           Admin  Oper  Link  MTU   Vrf  Upper  Lower    Type        Phys addr
--------------------------------------------------------------------------------------------------------------------
    eth0  2    fe80::dcad:beff:feef:6c10/64  up     up    up    1500                     ethernet  de:ad:be:ef:6c:10
eth0.100  308  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
eth0.200  309  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
    eth1  3                                  down   down  down  1500                     ethernet  de:ad:be:ef:6c:11

Step 11: Run command interfaces show detailed at DUT1 and check if output contains the following tokens:

10.0.0.6
Show output
--------------------------------------------------------------------------------------------------------------------
  Name    Idx           IP Address           Admin  Oper  Link  MTU   Vrf  Upper  Lower    Type        Phys addr
--------------------------------------------------------------------------------------------------------------------
    eth0  2    fe80::dcad:beff:feef:6c10/64  up     up    up    1500                     ethernet  de:ad:be:ef:6c:10
eth0.100  308  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
eth0.200  309  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
    eth1  3                                  down   down  down  1500                     ethernet  de:ad:be:ef:6c:11

Test One Lease Per Client VRF

Description

This scenario checks the one-lease-per-client option for DHCP-server, but it is configured with VRF instead of regular interfaces. It first checks whether there are 2 simultaneous leases for the same client. When the option is enabled, it checks there are no two active leases for the same client at the same time.

Scenario

Step 1: Set the following configuration in DUT0 :

set interfaces ethernet eth0 vif 100 address 10.0.0.1/24
set interfaces ethernet eth0 vif 100 vrf VRF0
set interfaces ethernet eth0 vif 200 address 10.0.0.2/24
set interfaces ethernet eth0 vif 200 vrf VRF0
set interfaces ethernet eth1 address 10.215.168.64/24
set service dhcp-server shared-network dhcp local-vrf VRF0
set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 options lease 4
set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 options max-lease 4
set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.6
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'
set system vrf VRF0

Step 2: Set the following configuration in DUT1 :

set interfaces ethernet eth0 vif 100 mac '10:00:00:00:00:01'
set interfaces ethernet eth0 vif 200 mac '10:00:00:00:00:01'
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'

Step 3: Modify the following configuration lines in DUT1 :

set interfaces ethernet eth0 vif 100 address dhcp
set interfaces ethernet eth0 vif 200 address dhcp

Warning

If you do not see changes after enabling the options, refresh all your interfaces

Step 4: Run command service dhcp-server show leases VRF0 | grep 10.0.0.5 at DUT0 and check if output contains the following tokens:

10:00:00:00:00:01
Show output
10.0.0.5   10:00:00:00:00:01  2020/11/08 08:43:51

Step 5: Run command service dhcp-server show leases VRF0 | grep 10.0.0.6 at DUT0 and check if output contains the following tokens:

10:00:00:00:00:01
Show output
10.0.0.6   10:00:00:00:00:01  2025/06/20 14:56:31  2025/06/20 14:56:35  2025/06/20 14:56:31

Step 6: Modify the following configuration lines in DUT0 :

set service dhcp-server shared-network dhcp subnet 10.0.0.0/24 options one-lease-per-client

Step 7: Run command service dhcp-server show leases VRF0 | grep 10.0.0.5 at DUT0 and check if output does not contain the following tokens:

10:00:00:00:00:01

Step 8: Run command service dhcp-server show leases VRF0 | grep 10.0.0.6 at DUT0 and check if output contains the following tokens:

10:00:00:00:00:01
Show output
10.0.0.6   10:00:00:00:00:01  2025/06/20 14:56:33  2025/06/20 14:56:37  2025/06/20 14:56:33

Step 9: Run command service dhcp-server clear VRF0 lease all at DUT0.

Step 10: Run command interfaces show detailed at DUT1 and check if output does not contain the following tokens:

10.0.0.5
Show output
--------------------------------------------------------------------------------------------------------------------
  Name    Idx           IP Address           Admin  Oper  Link  MTU   Vrf  Upper  Lower    Type        Phys addr
--------------------------------------------------------------------------------------------------------------------
    eth0  2    fe80::dcad:beff:feef:6c10/64  up     up    up    1500                     ethernet  de:ad:be:ef:6c:10
eth0.100  310  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
eth0.200  311  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
    eth1  3                                  down   down  down  1500                     ethernet  de:ad:be:ef:6c:11

Step 11: Run command interfaces show detailed at DUT1 and check if output contains the following tokens:

10.0.0.6
Show output
--------------------------------------------------------------------------------------------------------------------
  Name    Idx           IP Address           Admin  Oper  Link  MTU   Vrf  Upper  Lower    Type        Phys addr
--------------------------------------------------------------------------------------------------------------------
    eth0  2    fe80::dcad:beff:feef:6c10/64  up     up    up    1500                     ethernet  de:ad:be:ef:6c:10
eth0.100  310  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
eth0.200  311  10.0.0.6/24                   up     up    up    1500              eth0   ethernet  10:00:00:00:00:01
               fe80::dcad:beff:feef:6c10/64
    eth1  3                                  down   down  down  1500                     ethernet  de:ad:be:ef:6c:11

Test Authoritative

Description

This scenario checks the authoritative option. First, you need to configure a DHCP server without enabling the option and give a lease to the client. Then, change the configuration of the server for another subnet. The client will refresh his lease and see a problem: the new server is not in the same subnet and is not authorized to give a lease. Finally, if you enable the option and refresh the interface, you will see the server is authorized and can provide the lease to the client.

Scenario

Step 1: Set the following configuration in DUT0 :

set interfaces ethernet eth0 address 10.0.0.1/24
set service dhcp-server shared-network authoritative subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.5
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'

Step 2: Set the following configuration in DUT1 :

set interfaces ethernet eth0 mac '10:00:00:00:00:01'
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'

Step 3: Modify the following configuration lines in DUT1 :

set interfaces ethernet eth0 address dhcp

Warning

If you do not see changes after enabling the options, refresh all your interfaces

Step 4: Run command interfaces ethernet eth0 show at DUT1 and check if output contains the following tokens:

10.0.0.5
Show output
-----------------------------------------------------------------
Name           IP Address           Admin  Oper  Vrf  Description
-----------------------------------------------------------------
eth0  10.0.0.5/24                   up     up
      fe80::dcad:beff:feef:6c10/64

Step 5: Modify the following configuration lines in DUT0 :

delete interfaces
delete service

Step 6: Modify the following configuration lines in DUT0 :

set interfaces ethernet eth0 address 11.0.0.1/24
set service dhcp-server shared-network authoritative subnet 11.0.0.0/24 start 11.0.0.5 stop 11.0.0.5

Step 7: Run command interfaces ethernet eth0 show at DUT1 and check if output contains the following tokens:

10.0.0.5
Show output
-----------------------------------------------------------------
Name           IP Address           Admin  Oper  Vrf  Description
-----------------------------------------------------------------
eth0  10.0.0.5/24                   up     up
      fe80::dcad:beff:feef:6c10/64

Step 8: Run command system journal show | tail at DUT0 and check if output contains the following tokens:

DHCPREQUEST for 10.0.0.5 from 10:00:00:00:00:01 via eth0: ignored (not authoritative)
Show output
Jun 20 14:56:48.532267 osdx kernel: 8021q: adding VLAN 0 to HW filter on device eth0
Jun 20 14:56:48.605324 osdx sudo[334254]: pam_limits(sudo:session): invalid line '@200:215        hard        maxlogins        ' - skipped
Jun 20 14:56:48.612760 osdx sudo[334256]: pam_limits(sudo:session): invalid line '@200:215        hard        maxlogins        ' - skipped
Jun 20 14:56:48.652743 osdx systemd[1]: Started dhcpd@main.service - "DHCP Server Service instance main".
Jun 20 14:56:48.654427 osdx cfgd[1460]: [333531]Completed change to active configuration
Jun 20 14:56:48.655636 osdx dhcpd[334258]: Wrote 0 leases to leases file.
Jun 20 14:56:48.665321 osdx OSDxCLI[333531]: User 'admin' committed the configuration.
Jun 20 14:56:48.681189 osdx OSDxCLI[333531]: User 'admin' left the configuration menu.
Jun 20 14:56:48.708383 osdx dhcpd[334258]: Server starting service.
Jun 20 14:56:49.051081 osdx dhcpd[334258]: DHCPREQUEST for 10.0.0.5 from 10:00:00:00:00:01 via eth0: ignored (not authoritative).

Step 9: Modify the following configuration lines in DUT0 :

set service dhcp-server options authoritative

Step 10: Run command system journal show | tail at DUT0 and check if output contains the following tokens:

DHCPNAK on 10.0.0.5 to 10:00:00:00:00:01 via eth0
Show output
Jun 20 14:56:49.784581 osdx systemd[1]: dhcpd@main.service: Deactivated successfully.
Jun 20 14:56:49.784707 osdx systemd[1]: Stopped dhcpd@main.service - "DHCP Server Service instance main".
Jun 20 14:56:49.808674 osdx systemd[1]: Started dhcpd@main.service - "DHCP Server Service instance main".
Jun 20 14:56:49.810038 osdx cfgd[1460]: [333531]Completed change to active configuration
Jun 20 14:56:49.811590 osdx dhcpd[334309]: Wrote 0 leases to leases file.
Jun 20 14:56:49.812423 osdx OSDxCLI[333531]: User 'admin' committed the configuration.
Jun 20 14:56:49.837667 osdx OSDxCLI[333531]: User 'admin' left the configuration menu.
Jun 20 14:56:49.872429 osdx dhcpd[334309]: Server starting service.
Jun 20 14:56:50.183099 osdx dhcpd[334309]: DHCPREQUEST for 10.0.0.5 from 10:00:00:00:00:01 via eth0: wrong network.
Jun 20 14:56:50.183257 osdx dhcpd[334309]: DHCPNAK on 10.0.0.5 to 10:00:00:00:00:01 via eth0

Step 11: Run command interfaces ethernet eth0 show at DUT1 and check if output contains the following tokens:

11.0.0.5
Show output
-----------------------------------------------------------------
Name           IP Address           Admin  Oper  Vrf  Description
-----------------------------------------------------------------
eth0  11.0.0.5/24                   up     up
      fe80::dcad:beff:feef:6c10/64

Test Authoritative VRF

Description

This scenario checks the authoritative option when the server is configured with VRF instead of regular interfaces. First, configure the server and give a lease to the client. Then, change the configuration of the server and put it on a different subnet. Refresh the interfaces and you will see the server cannot do it. Change the configuration again and add the authoritative option. With this change, the server will be able to give a lease to the client.

Scenario

Step 1: Set the following configuration in DUT0 :

set interfaces ethernet eth0 address 10.0.0.1/24
set interfaces ethernet eth0 vrf VRF0
set service dhcp-server shared-network authoritative local-vrf VRF0
set service dhcp-server shared-network authoritative subnet 10.0.0.0/24 start 10.0.0.5 stop 10.0.0.5
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'
set system vrf VRF0

Step 2: Set the following configuration in DUT1 :

set interfaces ethernet eth0 mac '10:00:00:00:00:01'
set system login user admin authentication encrypted-password '$6$GSjsCj8gHLv$/VcqU6FLi6CT2Oxn0MJQ2C2tqnRDrYKNF8HIYWJp68nvXvPdFccDsT04.WtigUONbKYrgKg8d6rEs8PjljMkH0'

Step 3: Modify the following configuration lines in DUT1 :

set interfaces ethernet eth0 address dhcp

Warning

If you do not see changes after enabling the options, refresh all your interfaces

Step 4: Run command interfaces ethernet eth0 show at DUT1 and check if output contains the following tokens:

10.0.0.5
Show output
-----------------------------------------------------------------
Name           IP Address           Admin  Oper  Vrf  Description
-----------------------------------------------------------------
eth0  10.0.0.5/24                   up     up
      fe80::dcad:beff:feef:6c10/64

Step 5: Modify the following configuration lines in DUT0 :

delete interfaces
delete service

Step 6: Modify the following configuration lines in DUT0 :

set interfaces ethernet eth0 address 11.0.0.1/24
set interfaces ethernet eth0 vrf VRF0
set service dhcp-server shared-network authoritative local-vrf VRF0
set service dhcp-server shared-network authoritative subnet 11.0.0.0/24 start 11.0.0.5 stop 11.0.0.5

Step 7: Run command interfaces ethernet eth0 show at DUT1 and check if output contains the following tokens:

10.0.0.5
Show output
-----------------------------------------------------------------
Name           IP Address           Admin  Oper  Vrf  Description
-----------------------------------------------------------------
eth0  10.0.0.5/24                   up     up
      fe80::dcad:beff:feef:6c10/64

Step 8: Run command system journal show | tail at DUT0 and check if output contains the following tokens:

DHCPREQUEST for 10.0.0.5 from 10:00:00:00:00:01 via eth0: ignored (not authoritative)
Show output
Jun 20 14:57:03.626428 osdx kernel: 8021q: adding VLAN 0 to HW filter on device eth0
Jun 20 14:57:03.714981 osdx sudo[334922]: pam_limits(sudo:session): invalid line '@200:215        hard        maxlogins        ' - skipped
Jun 20 14:57:03.723099 osdx sudo[334924]: pam_limits(sudo:session): invalid line '@200:215        hard        maxlogins        ' - skipped
Jun 20 14:57:03.763013 osdx systemd[1]: Started dhcpd@VRF0.service - "DHCP Server Service instance VRF0".
Jun 20 14:57:03.765257 osdx cfgd[1460]: [333531]Completed change to active configuration
Jun 20 14:57:03.766775 osdx dhcpd[334926]: Wrote 0 leases to leases file.
Jun 20 14:57:03.777266 osdx OSDxCLI[333531]: User 'admin' committed the configuration.
Jun 20 14:57:03.795401 osdx OSDxCLI[333531]: User 'admin' left the configuration menu.
Jun 20 14:57:03.830561 osdx dhcpd[334926]: Server starting service.
Jun 20 14:57:04.173348 osdx dhcpd[334926]: DHCPREQUEST for 10.0.0.5 from 10:00:00:00:00:01 via eth0: ignored (not authoritative).

Step 9: Modify the following configuration lines in DUT0 :

set service dhcp-server options authoritative

Step 10: Run command system journal show | tail at DUT0 and check if output contains the following tokens:

DHCPNAK on 10.0.0.5 to 10:00:00:00:00:01 via eth0
Show output
Jun 20 14:57:04.870738 osdx systemd[1]: dhcpd@VRF0.service: Deactivated successfully.
Jun 20 14:57:04.870859 osdx systemd[1]: Stopped dhcpd@VRF0.service - "DHCP Server Service instance VRF0".
Jun 20 14:57:04.887073 osdx systemd[1]: Started dhcpd@VRF0.service - "DHCP Server Service instance VRF0".
Jun 20 14:57:04.888668 osdx cfgd[1460]: [333531]Completed change to active configuration
Jun 20 14:57:04.889323 osdx dhcpd[334977]: Wrote 0 leases to leases file.
Jun 20 14:57:04.890826 osdx OSDxCLI[333531]: User 'admin' committed the configuration.
Jun 20 14:57:04.914591 osdx OSDxCLI[333531]: User 'admin' left the configuration menu.
Jun 20 14:57:04.954543 osdx dhcpd[334977]: Server starting service.
Jun 20 14:57:05.273245 osdx dhcpd[334977]: DHCPREQUEST for 10.0.0.5 from 10:00:00:00:00:01 via eth0: wrong network.
Jun 20 14:57:05.273270 osdx dhcpd[334977]: DHCPNAK on 10.0.0.5 to 10:00:00:00:00:01 via eth0

Step 11: Run command interfaces ethernet eth0 show at DUT1 and check if output contains the following tokens:

11.0.0.5
Show output
-----------------------------------------------------------------
Name           IP Address           Admin  Oper  Vrf  Description
-----------------------------------------------------------------
eth0  11.0.0.5/24                   up     up
      fe80::dcad:beff:feef:6c10/64