• Skip to main content
  • Skip to secondary menu
  • Skip to primary sidebar
  • Skip to footer
  • Home
  • Disclaimer & Policy

Elan Shudnow's Blog

MVP Logo
  • Azure
  • Exchange
  • Lync

DHCP Scope vs Superscope

November 20, 2007 by Elan Shudnow 3 Comments

I wanted to provide a short description of when you would use a superscope vs scope(s) in a real-world scenario. One of my coworkers had an issue described below:

The real-world scenario that I’m running into is that a client configured a single Superscope for all 175+ address ranges they have (scattered all over the country) and there are only two DHCP servers. They are using the 50/50 scenario and configuring half of the addresses on one server and half on the other. Laptops are not able to obtain a new IP Address when going from one building to another. It keeps trying to grab an address from its original location. I’m assuming that the reason is because they have a Superscope configured and not multiple scopes, but I have yet to come across Superscopes in the field.

My explanation of superscopes vs scope(s):

In an environment where you have multiple segments segmented by a Layer 3 device, each of those segments will have a different IP Range of course. That Layer 3 device will be configured with a DHCP IP (DHCP Helper IP) that is located in a different segment. Because of this, you only need to use regular scopes, as the DHCP server will see that it was requested from a different segment.

When you have different IP ranges on the same segment, the DHCP server will return a NACK because that DHCP server’s NIC is not on that segment. One way to get around this, is by adding another NIC that contains that same IP range. So if you have 3 different IP ranges on the same physical segment, you’ll need 3 different NICs. There is a way to get around this, and that is by using a superscope.

Using a superscope, you can have multiple logical IP ranges within the same physical segment and be able to hand out IP addresses even if the DHCP’s NIC does not belong to that same IP address range. Because of this, a superscope will help transition to a new scope using a different IP range for the same single physical segment.

So for the scenario stated above, all they would need to do is have 2 physical segments (one for each building), 2 different IP ranges (1 per segment), 2 scopes on the DHCP server, and have the layer 3 device configured with a DHCP Helper IP Address. So when a client moves, boots up and requests a new DHCP IP, it will broadcast, hit the Layer 3 device, the layer 3 device would see that the DHCP is on the different segment and the DHCP would see the request is from a different IP Segment and would provide them with a new IP from the appropriate scope.

Share this:

  • Click to share on X (Opens in new window) X
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Reddit (Opens in new window) Reddit

Filed Under: Personal

Reader Interactions

Comments

  1. ahmdkhan ahmadzai says

    October 14, 2012 at 2:58 am

    how can we active two scope in same time

    Reply
  2. Tim O says

    October 7, 2009 at 9:44 pm

    Dan,

    I am assuming your users are laptop users. When traveling from site to site do you know if they are booting up their computers or do they just suspend them? Depending on your lease duration on your DHCP server the the computer may not be looking for a new IP if it was just suspended. Computers will not check the validity of their IP until 50% at wich poing they will aske the DHCP server if it is still valid. So if you have an 8 day lease duration the computer will not check it's IP until day 4. I would start there.

    Reply
  3. Dan says

    April 8, 2009 at 12:21 pm

    I’m curious if you can help me. I’m supporting users that travel from site to site – each site has a different subnet. Occaisonally when they log into a respective site, the IP address they obtain is still pointing to the last site they were at. Our network admin is a peach to work with and I’m not sure how things are set up. I know we use DHCP and the quick fix is just deleting/releasing that ‘stuck’ IP address. Is this a symptom of something that isn’t configured properly in DHCP? We get multiple calls weekly to correct this.

    Thanks,
    Dan

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

  • GitHub
  • LinkedIn
  • RSS
  • YouTube

More to See

Azure AD User Settings

Pre-creating Azure AD App for Azure Migrate

January 24, 2023 By Elan Shudnow

Azure Runbooks Connecting to Exchange Online and Microsoft Graph

July 22, 2022 By Elan Shudnow

Using Python 3.8.0 Azure Runbooks with Python Packages

July 11, 2022 By Elan Shudnow

Preserving UNC Path after Azure Files Migration using DFS-N

April 10, 2022 By Elan Shudnow

Tags

ACR Always Encrypted Ansible Automation Availability Sets Availability Zones Azure Azure Active Directory Azure Application Gateway Azure Files Azure Firewall Azure Key Vault Azure Load Balancer Azure Migrate Azure Monitor Azure Web App CDN Cluster DevOps DFS Docker DPM Event Grid Exchange Exchange 2010 Exchange Online Function App ISA iSCSI Log Analytics Logic App Lync Microsoft Graph OCS Office Personal PowerShell Proximity Placement Groups Runbook SCOM Storage Accounts Symantec Virtual Machines Windows Server 2008 Windows Server 2008 R2

Footer

About Me

Microsoft Cloud Solution Architect focused on Azure IaaS, PaaS, DevOps, Ansible, Terraform, ARM and PowerShell.

Previously a 6x Microsoft MVP in Exchange Server and Lync Server.

My hobbies include watching sports (Baseball, Football and Hockey) as well as Aviation.

Recent

  • GRS Storage and BCDR Considerations
  • Pre-creating Azure AD App for Azure Migrate
  • Azure Runbooks Connecting to Exchange Online and Microsoft Graph
  • Using Python 3.8.0 Azure Runbooks with Python Packages
  • Preserving UNC Path after Azure Files Migration using DFS-N

Search

Tags

ACR Always Encrypted Ansible Automation Availability Sets Availability Zones Azure Azure Active Directory Azure Application Gateway Azure Files Azure Firewall Azure Key Vault Azure Load Balancer Azure Migrate Azure Monitor Azure Web App CDN Cluster DevOps DFS Docker DPM Event Grid Exchange Exchange 2010 Exchange Online Function App ISA iSCSI Log Analytics Logic App Lync Microsoft Graph OCS Office Personal PowerShell Proximity Placement Groups Runbook SCOM Storage Accounts Symantec Virtual Machines Windows Server 2008 Windows Server 2008 R2

Copyright © 2025 · Magazine Pro on Genesis Framework · WordPress · Log in