Sophos Firewall v22 EAP is now available! Click here to learn more.
Hello Community Members,
Hope all is well on your end.
I would like your support concerning PXE boot when the DHCP services are provided by SFOS Firewall.
My WDS/PXE server is on a different VLAN and the laptops/desktops are on a different VLAN.
The IP range for WDS/PXE servers is 172.22.1.0/24(NO DHCP) and the laptops desktops is 172.22.10.0/24(DHCP through SFOS).
I was earlier using Windows Server as a DHCP server and it was working fine but due to certain circumstances I am looking to see if I can use DHCP through SFOS to assist with PXE boot to my WDS server.
My current SFOS firmware is (SFOS 19.5.0 GA-Build197).
Can you please suggest a solution?
Hi Prateek Singhal ,
I use Windows DHCP servers and Windows WDS server.
Simply create a Relay (under Network -> DHCP) on the desired interface (in your case the one with 172.22.10.0) and add your IP of your WDS server and Windows DHCP servers in it.

But if you want to stay with SFOS you can try to use the "DHCP options":

_______________________________________________________
Sophos SG 210 with Sophos XG Home - 20.0 MR 1
If a post solves your question please use the 'Verify Answer' button.
Thomas_XG : he wrote that he don't want to use / cannot use a windows server for this.
Prateek Singhal : Use the DHCP options for this, a list of needed options can be found here: https://techdirectarchive.com/2020/05/26/wds-and-dhcp-deployment-scenarios-how-to-configure-dhcp-server-option-60-66-and-67-for-windows-deployment-services/
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
PhilippRusch : Thank you so much for sharing your inputs. Yes I want to use SFOS as the DHCP server due to certain reasons.
But the issue is I do not have Option 66 & 67 in the DHCP Options. I have these Boot options which don't work for PXE boot when I enter the details in Next-server and Boot file location.

Just select "custom" and enter 66 into "Code", same with 67
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
Sorry, that didn't work. When I added the IP Address of my WDS server in the value and saved.

I am getting below error.

Maybe these Links help:
https://support.sophos.com/support/s/article/KB-000035918?language=en_US
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
PhilippRusch : Can you please suggest/confirm if DHCP Options need to be on the same VLAN/Subnet to work properly?
did you try to set this via CLI ?
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
Has this been resolved for you yet? If not, then you might take a look in this discussion: PXE Boot DHCP Option 66 + 67 - Client falsely using the Firewall IP-Address as TFTP Server
Boot options 66 and 67 don't work properly on Sophos (doesn't give PXE Client "Next Server" information)