NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
Arnaud_D
Dec 08, 2017Aspirant
DHCP Snooping Block DNS Packet
Hi, I've just encounter an issue with my GS724TPv2. As soon as I enabled the DHCP Snooping mode, I cant make dns resolving. Trusted Inferfaces are ok, and I retrieve an Ip from my dhcp server (w...
- May 11, 2018
Hi, that happened to me, what I did to solve the problem was to install the firmware
more recent, since the firmware 1.0.0.24 that brought that switch is the cause of the problem.
Arnaud_D
Dec 11, 2017Aspirant
Hi DaneA,
I did as you said :
-DL the firmware
-Factory reset
-Flash the firmware
-I tried to import my previous configuration > same error
-Factory reset N°2
-Minimalist configuration (2 vlans, switch ip, dhcp snooping on/off) > The same problem occurs, as I enable the dhcp filtering > no dns traffic
The 3 GS724TP are new, first configurations testing last week.
Thx for any further advice
Hopchen
Dec 11, 2017Prodigy
Hi Arnaud_D
Thanks for trying the suggestions by DaneA. It is always good be on latest FW, etc.
You still have the problem I can see. This is of course not normal behaviour for DHCP snooping. I would like to try and replicate the issue in the lab, today. I will keep you posted.
Cheers!
- HopchenDec 11, 2017Prodigy
Hi again,
I tested in the lab and I have the same problem as you. I confirmed with a packet capture that the switch allows the DNS request to travel up the network, but the DNS response is blocked. It the exact way that DHCP snooping works, but of course this should not be applied to normal DNS requests.
I will need to log this issue to our R&D department. I suggest you use ACLs in the meantime to help combat this. I will send you a PM and we can take it from there.
Thanks!- Arnaud_DDec 11, 2017Aspirant
Thx, i'll reply to ur PM as i get all the informations u asked.
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!