Utility to limit client access to DHCP Server

SHAKLES@cliffy.polaroid.com Fri, 08 March 1996 22:04 UTC

Received: from ietf.cnri.reston.va.us by IETF.CNRI.Reston.VA.US id aa20109; 8 Mar 96 17:04 EST
Received: from CNRI.Reston.VA.US by IETF.CNRI.Reston.VA.US id aa20105; 8 Mar 96 17:04 EST
Received: from coral.bucknell.edu by CNRI.Reston.VA.US id aa14136; 8 Mar 96 17:04 EST
Received: from charcoal-gw.eg.bucknell.edu by coral.bucknell.edu; (5.65v3.0/1.1.8.2/29Aug94-0956AM) id AA15565; Fri, 8 Mar 1996 16:34:45 -0500
Received: from reef.bucknell.edu by charcoal (5.x/SMI-SVR4) id AA06938; Fri, 8 Mar 1996 16:25:03 -0500
Received: from prdnet.polaroid.com by reef.bucknell.edu with SMTP (5.65/IDA-1.2.8) id AA06421; Fri, 8 Mar 1996 16:25:02 -0500
Received: from cliffy.polaroid.com (cliffy.polaroid.com) by PRDNET.POLAROID.COM (PMDF V5.0-5 #5856) id <01I23P2QJX4G008HC9@PRDNET.POLAROID.COM> for dhcp-v4@bucknell.EDU; Fri, 08 Mar 1996 16:25:46 -0400 (EDT)
Received: from ccmail.polaroid.com by cliffy.polaroid.com (PMDF V4.3-10 #5856) id <01I23P0PR54G007TEX@cliffy.polaroid.com>; Fri, 08 Mar 1996 16:24:14 -0400 (EDT)
Date: Fri, 08 Mar 1996 16:19 -0400 (EDT)
Sender: ietf-archive-request@IETF.CNRI.Reston.VA.US
From: SHAKLES@cliffy.polaroid.com
Subject: Utility to limit client access to DHCP Server
To: dhcp-v4@bucknell.edu
Message-Id: <01I23P0VPQTQ007TEX@cliffy.polaroid.com>
Mime-Version: 1.0
Content-Type: TEXT/PLAIN
Content-Transfer-Encoding: 7BIT

I'm looking for a server implementation that would allow me to put an access-
list structure of ethernet addresses that would be check before the DHCP server 
responds to a request.  

The rational behind this is I want to put some a DHCP server on the network for 
our mobile users, but limit the use of the server to that small subset. If there 
is a way to have the server check the MAC address before responding, that would 
be great.  The big problem I have is a policy issue.  Even if a small group is 
allowed to use the service, by word-of-mouth, it would start to be used by 
everyone, thus eating up the allocated addresses.

Is there anyone that implements such a server?  Is this such a far out request?

Thanks in advance

Scott Shakley
shakles@polaroid.com