<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: dhcp server option 43 for unifi controller in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145337#M6684</link>
    <description>&lt;P&gt;No luck means does not work.I already check the url you sent it's the first think i write at the first post.&lt;/P&gt;&lt;P&gt;Let me explain.&lt;/P&gt;&lt;P&gt;O unifi ubiquiti access-point needs to know the ip address or the hostname of the unifi controller.&lt;/P&gt;&lt;P&gt;By default it looks for the hostname "unifi". If you have a dns A record for unifi mached to an ip then it can find it.&lt;/P&gt;&lt;P&gt;But if you have more controllers then you have to change that name with the ip address you want and you can offer this to access-point via the dhcp-server.You can do that by option 43 at the dhcp server. That way you can send the controllers ip to the access-point.&lt;/P&gt;&lt;P&gt;I have done that many times with mikrotik dhcp server:&lt;/P&gt;&lt;P&gt;option 43&lt;/P&gt;&lt;P&gt;ventor id (0x0104)&lt;/P&gt;&lt;P&gt;mac in hex. (eg 192.168.1.1 in hex is c0a80101)&lt;/P&gt;&lt;P&gt;the string is 0x0104c0a80101&lt;/P&gt;&lt;P&gt;and it works. either after factory default to an access-point. dhcp-server offers ip,gw,dns and unifi controller address to access-point.&lt;/P&gt;&lt;P&gt;My question is: which is the exact syntax to checkpoint to achieve that. Does anybody knows?&lt;/P&gt;&lt;P&gt;i tried with thomson-voip (sk107393) lets say the ip is 192.168.1.1&lt;/P&gt;&lt;P&gt;choices:&lt;/P&gt;&lt;P&gt;192.168.1.1&lt;/P&gt;&lt;P&gt;c0a80101&lt;/P&gt;&lt;P&gt;0104c0a80101&lt;/P&gt;&lt;P&gt;0x0104c0a80101&lt;/P&gt;&lt;P&gt;access-point never gets the controller's ip address.&lt;/P&gt;&lt;P&gt;manuals said NOTHING about the syntax of the options field. No error occurs to /var/log/messages (just db error which is a bug from older versions and it still exists)&lt;/P&gt;&lt;P&gt;thanks again for your time again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 03 Apr 2022 22:24:47 GMT</pubDate>
    <dc:creator>chaigeo</dc:creator>
    <dc:date>2022-04-03T22:24:47Z</dc:date>
    <item>
      <title>dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145178#M6666</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;Tried to add option 43 for ubnt unifi controller via gaia to a quantum spark 1570 80.20.25 appliance with no luck.&lt;/P&gt;&lt;P&gt;According to sk107393 option 43 is reserved for thomson-voip.&lt;/P&gt;&lt;P&gt;Tried to add the ip (hex or decimal) to thomson-voip field no luck again.&lt;/P&gt;&lt;P&gt;Does anybody knows how to add correctly unifi controller ip to dhcp server options?&lt;/P&gt;&lt;P&gt;I know how it works to mikrotik (and it works) but to checkpoint... no luck.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Mar 2022 18:35:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145178#M6666</guid>
      <dc:creator>chaigeo</dc:creator>
      <dc:date>2022-03-31T18:35:14Z</dc:date>
    </item>
    <item>
      <title>Re: dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145181#M6667</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have check in a newer spark model and its located from Device &amp;gt; Local Network &amp;gt; Selected LAN &amp;gt; DCHPv4 Settings Tab at the bottom &amp;gt; Custom Options. You will need to make the IP hexadecimal.&lt;/P&gt;
&lt;P&gt;You can try with the following site&lt;/P&gt;
&lt;P&gt;&lt;A href="https://string-functions.com/hex-string.aspx" target="_blank"&gt;https://string-functions.com/hex-string.aspx&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Mar 2022 19:44:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145181#M6667</guid>
      <dc:creator>K_montalvo</dc:creator>
      <dc:date>2022-03-31T19:44:38Z</dc:date>
    </item>
    <item>
      <title>Re: dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145216#M6668</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I already tried that. First problem is that according to sk107393 i cannot use a reserved tag. Unifi needs 43 and it is already reserved for thomson-voip. I tried with ip or hex-ip in thomson-voip field...no luck.&lt;/P&gt;&lt;P&gt;Let's say that i can make custom option. I don't know the exact syntax. Do i have to use hex-string or string? Do i have to use only ip in hex only or vendor specific attributes (for unifi is 0104) in front of the ip hex number?&lt;/P&gt;&lt;P&gt;eg. for ip let's say 192.168.1.50 and string or hex-string&lt;/P&gt;&lt;P&gt;0XC0A80132 or 01040XC0A80132&lt;/P&gt;&lt;P&gt;i tried every combination every time i get db error.&lt;/P&gt;&lt;P&gt;thanks!&lt;/P&gt;</description>
      <pubDate>Fri, 01 Apr 2022 08:23:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145216#M6668</guid>
      <dc:creator>chaigeo</dc:creator>
      <dc:date>2022-04-01T08:23:47Z</dc:date>
    </item>
    <item>
      <title>Re: dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145254#M6669</link>
      <description>&lt;P&gt;You definitely cannot use option 43 as a custom option, see:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk107393" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk107393&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When you say "no luck" what is the precise behavior you expect and what is the precise result you get?&lt;BR /&gt;More details are definitely required.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Apr 2022 13:53:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145254#M6669</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-04-01T13:53:07Z</dc:date>
    </item>
    <item>
      <title>Re: dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145337#M6684</link>
      <description>&lt;P&gt;No luck means does not work.I already check the url you sent it's the first think i write at the first post.&lt;/P&gt;&lt;P&gt;Let me explain.&lt;/P&gt;&lt;P&gt;O unifi ubiquiti access-point needs to know the ip address or the hostname of the unifi controller.&lt;/P&gt;&lt;P&gt;By default it looks for the hostname "unifi". If you have a dns A record for unifi mached to an ip then it can find it.&lt;/P&gt;&lt;P&gt;But if you have more controllers then you have to change that name with the ip address you want and you can offer this to access-point via the dhcp-server.You can do that by option 43 at the dhcp server. That way you can send the controllers ip to the access-point.&lt;/P&gt;&lt;P&gt;I have done that many times with mikrotik dhcp server:&lt;/P&gt;&lt;P&gt;option 43&lt;/P&gt;&lt;P&gt;ventor id (0x0104)&lt;/P&gt;&lt;P&gt;mac in hex. (eg 192.168.1.1 in hex is c0a80101)&lt;/P&gt;&lt;P&gt;the string is 0x0104c0a80101&lt;/P&gt;&lt;P&gt;and it works. either after factory default to an access-point. dhcp-server offers ip,gw,dns and unifi controller address to access-point.&lt;/P&gt;&lt;P&gt;My question is: which is the exact syntax to checkpoint to achieve that. Does anybody knows?&lt;/P&gt;&lt;P&gt;i tried with thomson-voip (sk107393) lets say the ip is 192.168.1.1&lt;/P&gt;&lt;P&gt;choices:&lt;/P&gt;&lt;P&gt;192.168.1.1&lt;/P&gt;&lt;P&gt;c0a80101&lt;/P&gt;&lt;P&gt;0104c0a80101&lt;/P&gt;&lt;P&gt;0x0104c0a80101&lt;/P&gt;&lt;P&gt;access-point never gets the controller's ip address.&lt;/P&gt;&lt;P&gt;manuals said NOTHING about the syntax of the options field. No error occurs to /var/log/messages (just db error which is a bug from older versions and it still exists)&lt;/P&gt;&lt;P&gt;thanks again for your time again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 03 Apr 2022 22:24:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145337#M6684</guid>
      <dc:creator>chaigeo</dc:creator>
      <dc:date>2022-04-03T22:24:47Z</dc:date>
    </item>
    <item>
      <title>Re: dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145373#M6685</link>
      <description>&lt;P&gt;Maybe a tcpdump will show what the DHCP server on the device is actually sending.&lt;BR /&gt;Meanwhile, I recommend a TAC case so we can investigate.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Apr 2022 13:30:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/145373#M6685</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-04-04T13:30:54Z</dc:date>
    </item>
    <item>
      <title>Re: dhcp server option 43 for unifi controller</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/157862#M7457</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Well the problem was so simple .... you must add the hex-string with letters IN CAPITAL not in lower case.&lt;/P&gt;&lt;P&gt;The correct form for a custom option&amp;nbsp; (eg for ip 192.168.15.10 and vendor specific 0104 which is ubiquiti)&lt;/P&gt;&lt;P&gt;tag: 43&lt;/P&gt;&lt;P&gt;hex-string: 01:04:C0:A8:0F:0A&lt;/P&gt;&lt;P&gt;then you get in&amp;nbsp; tcpdump :&lt;/P&gt;&lt;P&gt;Vendor-Option Option 43, length 6: 1.4.192.168.15.10&lt;/P&gt;&lt;P&gt;This works an now ubnt access-point can resolve the hostname "unifi" to the correct ip and find the controller.&lt;/P&gt;&lt;P&gt;At checkpoint must change the error message and define that you must add the mac address in capital letters (it shows an example in capital but i never thought that a mac address can be case sensitive..)&lt;/P&gt;&lt;P&gt;And someone to change the sk107393. You can add a new custom option with tag 43 although&amp;nbsp; is predefined (probably they fixed sk is from 2015)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Sep 2022 16:45:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/dhcp-server-option-43-for-unifi-controller/m-p/157862#M7457</guid>
      <dc:creator>chaigeo</dc:creator>
      <dc:date>2022-09-22T16:45:18Z</dc:date>
    </item>
  </channel>
</rss>

