85
Figure 29 Trusted and untrusted ports
In a cascaded network as shown in Figure 30, configure the DHCP snooping devices' ports facing
the DHCP server as trusted ports. To save system resources, you can enable only the untrusted
ports directly connected to the DHCP clients to record DHCP snooping entries.
Figure 30 Trusted and untrusted ports in a cascaded network
DHCP snooping support for Option 82
Option 82 records the location information about the DHCP client so the administrator can locate the
DHCP client for security and accounting purposes. For more information about Option 82, see
"Relay agent option (Option 82)."
DHCP snooping uses the same strategies as the DHCP relay agent to handle Option 82 for DHCP
request messages, as shown in Table 5. If a re
sponse returned by the DHCP server contains Option
82, DHCP snooping removes Option 82 before forwarding the response to the client. If the response
contains no Option 82, DHCP snooping forwards it directly.