Closed AdSchellevis closed 9 months ago
Please add the feautre to add custom dhcp ranges (which aren't interfaces on the opensense) for the dhcp. I dont want to have separate dhcp servers anymore in a setup witch L3 Switches and a transit route to opensense.
Need to add "ip_address" to the reservation table, currently just lists "subnet", "MAC", "Description" and "Commands".
Understand it’s a work in progress. Any plans for opnsense to convert the isc-dhcp settings to this new service?
A hostname field would be a nice addition to the table as well.
no plans for a migration, maybe a button to import the static assignments, but not decided yet. They will likely coexist for some time, the old code and data structure is quite a mess with a high risk of breakage when forcing people to automatically use the new one.
Did you already try this code by the way? just curious about your findings so-far, the hostname field can certainly be added.
Had used Kea-dhcp before in plus-sense land before my transition to OPNsense. The migration was painless and didn’t have any issues with it.
Only had it briefly enabled in OPNsense. Noticed that I had to populate my 30+ static assignments first. That’s done, not sure the next testing steps now. An active lease table maybe needed to track its operation. I assume that simultaneous operation of both dhcp services would not be desirable.
It's likely not an issue to have both enabled on different interfaces, insights in leases is certainly on the list before release. This is just the first draft, things like high-availability are also points of interest and ipv6 as well.
Applied Kea-dhcp to four interfaces (3-DMZs and a LAN) and changed the lease time to 86400. From the log entries, seems to be performing its function. Left DHCpv6 active on the LAN for now with no ill effects.
Thanks for the hostname addition.
Had a odd behavior yesterday. Added a new Hyper-V VM and it was assigned a address out of the subnet pool. Went into the reservation table and updated one of the static reservations to the new mac address. Could not get the static reservation to take hold in the VM. Tried restarting the dhclient, removing the lease file, rebooting the VM. etc. Only way I could get the address to take hold was to disable Kea-dhcp and re-enable ISC-dhcp briefly to get the VM to accept the static assignment, then re-enable kea-dhcp. Not sure if there is a Kea configuration setting that needs to be adjusted.
Thanks for the hostname addition.
You're welcome, it's a work in progress.
Only way I could get the address to take hold was to disable Kea-dhcp and re-enable ISC-dhcp briefly to get the VM to accept the static assignment, then re-enable kea-dhcp. Not sure if there is a Kea configuration setting that needs to be adjusted.
If I'm not mistaken both disable/enable and just apply should restart kea at the moment, but there might be some other reason for kea to pickup the old lease, I haven't tried that yet.
Hi, how will this impact the DHCPv6 service since it is also end of life? Is KEA as dhcpv6 service also planned?
@MaZe3D not officially (as in roadmap), but it's certainly on my list. Quite some development time currently goes into digesting the kea documentation, I kind of hope the v6 variant is roughly the same in implementation.
Please add the feautre to add custom dhcp ranges (which aren't interfaces on the opensense) for the dhcp. I dont want to have separate dhcp servers anymore in a setup witch L3 Switches and a transit route to opensense.
Did you integrate this feature?
easy to try isn't it...
easy to try isn't it...
It's really important. So it doesn't need a an additional device (raspy, docker container an more) only for the dhcp serving. A lot of the user uses opnsense in a L3 Setup (OS as Firewall, L3Switch for Routing).
easy to try isn't it...
It's really important. So it doesn't need a an additional device (raspy, docker container an more) only for the dhcp serving. A lot of the user uses opnsense in a L3 Setup (OS as Firewall, L3Switch for Routing).
This would be a very important and useful feature to implement. I agree with the requests already made.
Thank you
We know. That's why it was implemented.
I've tested with the RC1:
DHCP Log: DHCP4_CONFIG_SYNTAX_WARNING configuration syntax warning: /usr/local/etc/kea/kea-dhcp4.conf:70.10: Extraneous comma. A piece of configuration may have been omitted.
KEA for DHCP6 is missing
Testing with RC1:
It’s in my humble opinion pretty useless to mention missing features nobody promised in the comments. If you’re looking for additions, open a pull-request or ask nicely (per feature) in a ticket.
It’s in my humble opinion pretty useless to mention missing features nobody promised in the comments. If you’re looking for additions, open a pull-request or ask nicely (per feature) in a ticket.
Understood. No disrespect meant on my post. Just wanted to share my own experience after experimenting with KEA if it will replace ISC dhcpd sometime in the (near? far?) future.
Soory @AdSchellevis No disrespect. I was in hurry with testing this feautre. I wan't to push the news as fast as possible to the developer so that, they have the possiblity to add the missing feautre and make Opnsense even better than it already is. So thanks to all developers for the great work!
Important notices
Before you add a new report, we ask you kindly to acknowledge the following:
Is your feature request related to a problem? Please describe.
With isc-dhcp being eol'd (https://www.isc.org/blogs/isc-dhcp-eol/), we should start aiming for a successor on our end. The number of realistic options is relatively small unfortunately. DNSmasq looked nice in terms of options, but lacks support for high availability, which in the long run might be problematic.
Describe the solution you like
Offer KEA DHCP (https://www.isc.org/kea/) as optional alternative for the existing DHCPv4 server. Since the dhcp code is rather old, we shouldn't try to aim for a migration at the moment to prevent wasting precious time in trying to solve past inconsistencies.
Describe alternatives you considered
Mostly DNSmasq, small and simple.
Notes and findings