Method used to configure the DNS for the USG2000 interface address pool

5

You can run the dhcp server dns-list command to configure the DNS for the USG2000 interface address pool.

Other related questions:
Method used to configure the L2TP over IPSec user address segment on the USG2000 and USG5000
The method used to configure the L2TP over IPSec user address segment on the USG2000 and USG5000 is as follows: Configure the L2TP over IPSec user address segment using the CLI: # Define an address pool and allocate an IP address to the dial-up user. [LNS] aaa [LNS-aaa] ip pool 1 10.1.1.1 10.1.1.100 # Set the user name and password (consistent with those configured on the PC of the employee on a business trip). [LNS-aaa] local-user vpdnuser password cipher Hello123 [LNS-aaa] quit # Allocate an address in the IP address pool to the peer interface. [LNS] interface virtual-template 1 [LNS-Virtual-Template1] remote address pool 1 [LNS-Virtual-Template1] quit Configure the L2TP over IPSec user address segment using the web UI: Configure the L2TP parameters. 1. Choose Network > L2TP > L2TP. 2. In Configure L2TP, select Enable and click Apply. 3. In L2TP Group List, click New. 4. Set Group Type to LNS. 5. Configure the L2TP parameters. The server address shall be in the same network segment as the address in the address pool. In this way, you do not need to configure a route. Peer Tunnel Name must be consistent with Local Tunnel Name configured on the LAC. Group Type: LNS Peer Tunnel Name: LAC Tunnel Password Authentication: Enable Password Type: Ciphertext Tunnel password: Hello123 Confirm Tunnel password: Hello123 User Group: default Set the user address allocation parameters as follows: Server Address/Subnet Mask: 10.2.1.1/255.255.255.0 User Address Pool: 10.2.1.2-10.2.1.100 6. Click OK.

Configure the DHCP server based on the interface address pool on the AR
Configure the DHCP server based on the interface address pool, that is, assign IP addresses to the interfaces. The AR assigns the IP addresses on the same network segment as the interface IP address to clients. This mode is easy to configure and applies to the scenario where the DHCP server and clients are on the same network segment, that is, no DHCP relay agent exists. Perform the following configuration: [Huawei] dhcp enable //Enable the DHCP function. [Huawei] interface ethernet 2/0/0 //Enter the view of the interface connected to the DHCP clients. [Huawei-Ethernet2/0/0] port link-type access [Huawei-Ethernet2/0/0] port default vlan 10 [Huawei-Ethernet2/0/0] quit [Huawei] interface vlanif 10 [Huawei-Vlanif10] ip address 10.1.1.1 24 //Configure the network segment where the DHCP client is located as 10.1.1.1 24. [Huawei-Vlanif10] quit [Huawei] interface vlanif 10 [Huawei-Vlanif10] dhcp select interface //Enable the DHCP server based on the interface address pool. [Huawei-Vlanif10] dhcp server lease day 30 //Set the DHCP address lease to 30 days. [Huawei-Vlanif10] quit

Method used to lock a DHCP address pool on the AR
When a DHCP server needs to be redeployed, you need to migrate address pools on the DHCP server to another DHCP server on the live network. To retain the addresses that have been assigned to clients from a global address pool, run the lock command to lock the global address pool. After the lock command is run, the specified IP address pool is locked and IP addresses in this address pool cannot be assigned to clients. When new users get online, they apply for IP addresses from a new address pool. Perform the following configuration: [Huawei] ip pool global1 [Huawei-ip-pool-global1] lock

Configuring routes to addresses in the address pool for network extension
The virtual IP address pool and device intranet interface can be set on the same network segment. If the virtual IP address pool and device intranet interface are on different network segments, configure routes to addresses in the address pool and configure the intranet interface of the firewall as the outbound interface of the routes.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top