<div dir="ltr"><div><div><div><div>Thank you for the answer :).<br><br></div>I have tried to make some restriction. Here is my approach:<br><br>class "N-005-BA-OLT-02"<br>{<br>  match if substring (option dhcp6.interface-id, 0, 15) = "N-005-BA-OLT-02";<br>}<br><br>#06/06/2017 zoznam komplet subnetov nie len pre SK region<br>#---------------------------------------------------------------------------------------------<br> subnet6 2a01:c840:0070:0140::/64 {<br>   prefix6 2A01:C846:140:: 2A01:C846:17F:F000:: /56;<br>   # N-005-BA-OLT-02<br>   option dhcp6.aftr-name 61:61:66:74:72:32:2e:61:75:72:6f:2e:6f:72:61:6e:67:65:2e:73:6b ;<br>   # <a href="http://aaftr2.auro.orange.sk">aaftr2.auro.orange.sk</a><br>   option dhcp6.name-servers 2a01:c840:110:c000::10 , 2a01:c840:130:c000::10 ;<br>   allow members of N-005-BA-OLT-02;<br>   deny all clients;<br> }<br><br></div><div>I was unable to run dhcp sevrer.<br></div><div><br><br></div>Then i checked source code:<br>/* allow-deny-keyword :== BOOTP<br>        | BOOTING<br>      | DYNAMIC_BOOTP<br>      | UNKNOWN_CLIENTS */<br><br></div>Currect version doesnt support "allow members of ..." :(.<br><br></div>Any idea?<br><div><div><div><br><br></div></div></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Fri, Jan 26, 2018 at 1:24 AM, Bill Shirley <span dir="ltr"><<a href="mailto:bill@c3po.polymerindustries.biz" target="_blank">bill@c3po.polymerindustries.biz</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
  
    
  
  <div text="#000000" bgcolor="#FFFFFF">
    As I see it, you have no restrictions on either subnet so DHCP is<br>
    free to allocate from either one.<br>
    <br>
    Bill<div><div class="h5"><br>
    <br>
    <br>
    <div class="m_-4996554198750595892moz-cite-prefix">On 1/25/2018 10:22 AM, Peter Balsianok
      wrote:<br>
    </div>
    </div></div><blockquote type="cite"><div><div class="h5">
      <div dir="ltr">
        <div>
          <div>Hi,<br>
            <br>
          </div>
          We have following configuration for ISC DHCPv6:<br>
          <br>
          omapi-port 8913;<br>
          ddns-update-style none;<br>
          ping-check off;<br>
          authoritative;<br>
          default-lease-time 604800;<br>
          max-lease-time 604800;<br>
          log-facility local3;<br>
          preferred-lifetime 259200;<br>
          option dhcp6.info-refresh-time 129600;<br>
          option dhcp6.aftr-name code 64 = string;<br>
          <br>
          deny duplicates;<br>
          one-lease-per-client on;<br>
          <br>
          #dhcp01<br>
          subnet6 2a01:c840:110:8004::229/128 {<br>
          }<br>
          subnet6 2a01:c840:110:8004::230/128 {<br>
          }<br>
          subnet6 2a01:c840:110:8004::228/128 {<br>
          }<br>
          #dhcp02<br>
          subnet6 2a01:c840:130:8004::20/128 {<br>
          }<br>
          subnet6 2a01:c840:130:8004::21/128 {<br>
          }<br>
          subnet6 2a01:c840:130:8004::19/128 {<br>
          }<br>
          <br>
          #testovaci subnet 1<br>
          subnet6 2a01:c840:50:5000::/62 {<br>
            prefix6 2a01:c840:0050:2000:: 2a01:c840:0050:2300:: /56;<br>
            #prefix6 2a01:c840:0050:2400:: 2a01:c840:0050:2700:: /56;
          #dedicated for static assigement<br>
            # Additional options<br>
            # aftr je <a href="http://aftr2.auro.orange.sk" target="_blank">aftr2.auro.orange.sk</a><br>
            option dhcp6.aftr-name
          05:61:66:74:72:32:04:61:75:72:<wbr>6f:06:6f:72:61:6e:67:65:02:73:<wbr>6b:00;<br>
            option dhcp6.name-servers 2a01:c840:130:c000::10,
          2a01:c840:110:c000::10;<br>
          }<br>
          <br>
        </div>
        <div>#test subnet2<br>
        </div>
        <div> subnet6 2a01:c840:0070:0140::/64 {<br>
             prefix6 2A01:C846:140:: 2A01:C846:17F:F000:: /56;<br>
             # N-005-BA-OLT-02<br>
             option dhcp6.aftr-name
          61:61:66:74:72:32:2e:61:75:72:<wbr>6f:2e:6f:72:61:6e:67:65:2e:73:<wbr>6b
          ;<br>
             # <a href="http://aaftr2.auro.orange.sk" target="_blank">aaftr2.auro.orange.sk</a><br>
             option dhcp6.name-servers 2a01:c840:110:c000::10 ,
          2a01:c840:130:c000::10 ;<br>
           }<br>
          <br>
        </div>
        <div>I am testing following scenarion:<br>
        </div>
        <div>- two relay agent exists (one for subnet1 and second from
          subnet 2)<br>
        </div>
        <div>- i try to migrate device from subnet2 into subnet1. I
          suppose that i will get another prefix delegation. But as you
          can see in the debug messages, it doesnt work.<br>
          <br>
        </div>
        <div>Could you help me please? Thx<br>
        </div>
        <div><br>
          <br>
          <br>
        </div>
        Here are log messages:<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Internet Systems Consortium
        DHCP Server 4.3.6<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Copyright 2004-2017
        Internet Systems Consortium.<br>
        20180125155309 dhcp01 dhcpd-zk-inet: All rights reserved.<br>
        20180125155309 dhcp01 dhcpd-zk-inet: For info, please visit <a href="https://www.isc.org/software/dhcp/" target="_blank">https://www.isc.org/software/<wbr>dhcp/</a><br>
        20180125155309 dhcp01 dhcpd-zk-inet: Wrote 0 deleted host decls
        to leases file.<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Wrote 0 new dynamic host
        decls to leases file.<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Wrote 0 NA, 0 TA, 1 PD
        leases to lease file.<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Bound to *:547<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Listening on
        Socket/5/zk-inet0/2a01:c840:<wbr>110:8004::228/128<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Sending on  
        Socket/5/zk-inet0/2a01:c840:<wbr>110:8004::228/128<br>
        20180125155309 dhcp01 dhcpd-zk-inet: Server starting service.<br>
        20180125155311 dhcp01 dhcpd-zk-inet: Relay-forward message from
        2a01:c840:70:140::1 port 547, link address 2a01:c840:70:140::1,
        peer address fe80::427d:fff:fe99:4727<br>
        20180125155311 dhcp01 dhcpd-zk-inet: Picking pool prefix
        2a01:c846:17f:f000::/56<br>
        20180125155311 dhcp01 dhcpd-zk-inet: Advertise PD: address
        2a01:c846:17f:f000::/56 to client with duid
        00:03:00:01:40:7d:0f:99:47:27 iaid = 0 valid for 604800 seconds<br>
        20180125155311 dhcp01 dhcpd-zk-inet: Sending Relay-reply to
        2a01:c840:70:140::1 port 547<br>
        20180125155312 dhcp01 dhcpd-zk-inet: Relay-forward message from
        2a01:c840:70:140::1 port 547, link address 2a01:c840:70:140::1,
        peer address fe80::427d:fff:fe99:4727<br>
        20180125155312 dhcp01 dhcpd-zk-inet: Reply PD: address
        2a01:c846:17f:f000::/56 to client with duid
        00:03:00:01:40:7d:0f:99:47:27 iaid = 0 valid for 604800 seconds<br>
        20180125155312 dhcp01 dhcpd-zk-inet: Sending Relay-reply to
        2a01:c840:70:140::1 port 547<br>
        20180125160001 dhcp01 dhcpd-zk-inet: Relay-forward message from
        2a01:c840:70:140::1 port 547, link address 2a01:c840:70:140::1,
        peer address fe80::427d:fff:fe99:4727<br>
        20180125160001 dhcp01 dhcpd-zk-inet: Advertise PD: address
        2a01:c846:17f:f000::/56 to client with duid
        00:03:00:01:40:7d:0f:99:47:27 iaid = 0 valid for 604800 seconds<br>
        20180125160001 dhcp01 dhcpd-zk-inet: Sending Relay-reply to
        2a01:c840:70:140::1 port 547<br>
        20180125160002 dhcp01 dhcpd-zk-inet: Relay-forward message from
        2a01:c840:70:140::1 port 547, link address 2a01:c840:70:140::1,
        peer address fe80::427d:fff:fe99:4727<br>
        20180125160002 dhcp01 dhcpd-zk-inet: Reply PD: address
        2a01:c846:17f:f000::/56 to client with duid
        00:03:00:01:40:7d:0f:99:47:27 iaid = 0 valid for 604800 seconds<br>
        20180125160002 dhcp01 dhcpd-zk-inet: Sending Relay-reply to
        2a01:c840:70:140::1 port 547<br>
        20180125160129 dhcp01 dhcpd-zk-inet: Relay-forward message from
        2a01:c840:50:5001::1 port 547, link address
        2a01:c840:50:5001::1, peer address fe80::427d:fff:fe99:4727<br>
        20180125160129 dhcp01 dhcpd-zk-inet: Advertise PD: address
        2a01:c846:17f:f000::/56 to client with duid
        00:03:00:01:40:7d:0f:99:47:27 iaid = 0 valid for 604800 seconds<br>
        20180125160129 dhcp01 dhcpd-zk-inet: Sending Relay-reply to
        2a01:c840:50:5001::1 port 547<br>
        20180125160130 dhcp01 dhcpd-zk-inet: Relay-forward message from
        2a01:c840:50:5001::1 port 547, link address
        2a01:c840:50:5001::1, peer address fe80::427d:fff:fe99:4727<br>
        20180125160130 dhcp01 dhcpd-zk-inet: Reply PD: address
        2a01:c846:17f:f000::/56 to client with duid
        00:03:00:01:40:7d:0f:99:47:27 iaid = 0 valid for 604800 seconds<br>
        20180125160130 dhcp01 dhcpd-zk-inet: Sending Relay-reply to
        2a01:c840:50:5001::1 port 547<br>
        <br>
      </div>
      <br>
      <fieldset class="m_-4996554198750595892mimeAttachmentHeader"></fieldset>
      <br>
      </div></div><pre>______________________________<wbr>_________________
dhcp-users mailing list
<a class="m_-4996554198750595892moz-txt-link-abbreviated" href="mailto:dhcp-users@lists.isc.org" target="_blank">dhcp-users@lists.isc.org</a>
<a class="m_-4996554198750595892moz-txt-link-freetext" href="https://lists.isc.org/mailman/listinfo/dhcp-users" target="_blank">https://lists.isc.org/mailman/<wbr>listinfo/dhcp-users</a></pre>
    </blockquote>
    <br>
  </div>

<br>______________________________<wbr>_________________<br>
dhcp-users mailing list<br>
<a href="mailto:dhcp-users@lists.isc.org">dhcp-users@lists.isc.org</a><br>
<a href="https://lists.isc.org/mailman/listinfo/dhcp-users" rel="noreferrer" target="_blank">https://lists.isc.org/mailman/<wbr>listinfo/dhcp-users</a><br></blockquote></div><br></div>