Article ID: 326116 - Last Review: June 14, 2007 - Revision: 2.8 FIX: Cannot Renew DHCP Assigned IP Address on External ISA Interface
This article was previously published under Q326116 SYMPTOMS On a computer running Internet Security and Acceleration
Server, where the external interface is configured to have its IP address
dynamically assigned from DHCP, you may not be able to renew the IP address on
the interface. For example, if you run ipconfig /release, followed by ipconfig /renew, from a command prompt, you may receive an error message similar to the following: The following error occurred when renewing adapter
MyAdapterName: DHCP Server unreachable This problem also occurs when you have the DHCP Client Static Packet filter turned on in ISA Server. The only way to renew the IP address is to temporarily turn off packet filtering or restart the computer running ISA Server. CAUSE The DHCP Client Static Packet filter only permits you to
refresh the already assigned external IP address. For example, when the DHCP lease has expired and the IP address on the external interface is lost or manually released, a renew of the IP address is blocked by the ISA Server Packet Filter module. The ISA service is not fully Plug and Play when the IP address is released on the external interface. Therefore, packet filtering is still applied to the interface. RESOLUTION You must install ISA Server Service Pack 1 (SP1) before you
install the following hotfix.
For additional information about how to obtain the
latest ISA Server service pack, click the article number below to view the
article in the Microsoft Knowledge Base: 313139
(http://support.microsoft.com/kb/313139/EN-US/
)
How to Obtain the Latest Internet Security and Acceleration Server 2000 Service Pack
A supported hotfix is available from Microsoft. However, this hotfix is intended to correct only the problem that is described in this article. Apply this hotfix only to systems that are experiencing this specific problem. This hotfix might receive additional testing. Therefore, if you are not severely affected by this problem, we recommend that you wait for the next software update that contains this hotfix.If the hotfix is available for download, there is a "Hotfix download available" section at the top of this Knowledge Base article. If this section does not appear, contact Microsoft Customer Service and Support to obtain the hotfix. Note If additional issues occur or if any troubleshooting is required, you might have to create a separate service request. The usual support costs will apply to additional support questions and issues that do not qualify for this specific hotfix. For a complete list of Microsoft Customer Service and Support telephone numbers or to create a separate service request, visit the following Microsoft Web site: http://support.microsoft.com/contactus/?ws=support
(http://support.microsoft.com/contactus/?ws=support)
Note The "Hotfix download available" form displays the languages for which the hotfix is available. If you do not see your language, it is because a hotfix is not available for that language. To install the fix,
run the self-extracting file. You do not have to restart the ISA Server
computer. If the computer is part of an ISA Server array, you do not have to
shut down the whole array. You can still install this fix on a one-by-one
basis. The English version of this fix has the file attributes (or later) that are listed in the following table. The dates and times for these files are listed in coordinated universal time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the Time Zone tab in the Date and Time tool in Control Panel. Date Time Version Size File name -------------------------------------------------------- 24-Oct-2002 20:21 3.0.1200.179 176,912 Mspadmin.exe 24-Oct-2002 20:20 3.0.1200.179 388,368 W3proxy.exe 24-Oct-2002 20:21 3.0.1200.179 297,232 Wspsrv.exe 24-Oct-2002 20:21 3.0.1200.179 99,600 Msphlpr.dll STATUSMicrosoft
has confirmed that this is a problem in the Microsoft products that are listed
at the beginning of this article.
MORE INFORMATION Note that after you install this hotfix, while you are
renewing the DHCP assigned IP address, you may receive an event notice in the
Application Event Log similar to the following: Event
Type: Warning Event Source: Microsoft Firewall Event ID: 14223 Description: The description for Event ID (14223) in Source (Microsoft Firewall) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. This event may be logged if some of the packet filters
could not be restored when the interface is re-created by using the new IP
address. As a result, some active connections may be dropped during the renewal
process. Event
Type: Warning Event Source: Microsoft ISA Server Control Event Category: Packet filter Event ID: 15108 Description: ISA Server detected a spoof attack from Internet Protocol (IP) address 10.10.10.10. A spoof attack occurs when an IP address that is not reachable via the interface on which the packet was received. If logging for dropped packets is set, you can view details in the packet filter log. The following is still not supported after you install this hotfix:
| Article Translations
|
Back to the top
