Splits the LAN into four /24 zones: 10.0.0.0/24 static (no DHCP, DNS only), 10.0.1.0/24 fixed DHCP reservations by MAC, 10.0.2.0/24 dynamic DHCP pool, 10.0.3.0/24 spare/unused. ipadm now derives the required subnet from whether a host has a MAC, auto-assigns free IPs, and auto-migrates a host's IP when its MAC is added/removed. Migrated the existing archerc80 reservation from 10.0.0.2 to 10.0.1.2. Also fixes a latent bug found while doing this: dnsmasq's SIGHUP (`systemctl reload`) only re-reads /etc/hosts, not the conf-dir files ipadm writes to, so config changes were silently not applied on reload. ipadm now restarts dnsmasq instead. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
24 lines
981 B
Plaintext
24 lines
981 B
Plaintext
# Nur auf dem LAN-Interface lauschen (DHCP + DNS) — niemals auf enp3s0 (WAN/öffentlich)!
|
|
interface=enp7s0
|
|
bind-interfaces
|
|
except-interface=enp3s0
|
|
except-interface=lo
|
|
|
|
# DHCP für 10.0.0.0/22, aufgeteilt in vier /24er:
|
|
# 10.0.0.0/24 statische Adressen (kein DHCP, nur DNS via ipadm)
|
|
# 10.0.1.0/24 feste DHCP-Reservierungen anhand MAC-Adresse (via ipadm, siehe hosts.conf)
|
|
# 10.0.2.0/24 dynamischer Pool für alle anderen Clients (dieser dhcp-range)
|
|
# 10.0.3.0/24 Reserve, aktuell unbenutzt
|
|
# Ein dhcp-range genügt: die Netzmaske definiert das gesamte /22 als ein
|
|
# DHCP-Netz, dhcp-host-Reservierungen (hosts.conf) außerhalb dieses Bereichs
|
|
# funktionieren trotzdem, solange sie im selben /22 liegen.
|
|
dhcp-range=10.0.2.10,10.0.2.250,255.255.252.0,12h
|
|
dhcp-option=option:router,10.0.0.1
|
|
dhcp-option=option:dns-server,10.0.0.1
|
|
dhcp-authoritative
|
|
|
|
# DNS: als Forwarder für den internen DNS/Search-Domain der Institution
|
|
domain=fhi.mpg.de
|
|
no-resolv
|
|
server=141.14.128.1
|