I have a few 300 series switches with a few VLANS on them. I have DHCP snooping enabled on the bridge of all the switches. I have all the necessarily trusted ports marked. When I try to pull a DHCP address is only works on the native vlan. Any other of the VLANS and DHCP doesn't work. If I turn off DHCP snooping on all the switches then everything works great and DHCP works on all the different VLANS.
Not sure what I am missing..... Here is a config export from one of the switches, hope it helps to spot something simple I am missing....
may/01/2024 08:20:17 by RouterOS 6.48.6
software id = 17BV-YQM0
model = CRS326-24S+2Q+
serial number = HCS084X77N0
/interface bridge
add dhcp-snooping=yes ether-type=0x88a8 name=LOCAL.BRIDGE protocol-mode=none
vlan-filtering=yes
/interface ethernet
set [ find default-name=ether1 ] l2mtu=2028
set [ find default-name=qsfpplus1-1 ] l2mtu=10218
set [ find default-name=qsfpplus1-2 ] l2mtu=10218
set [ find default-name=qsfpplus1-3 ] l2mtu=10218
set [ find default-name=qsfpplus1-4 ] l2mtu=10218
set [ find default-name=qsfpplus2-1 ] l2mtu=10218
set [ find default-name=qsfpplus2-2 ] l2mtu=10218
set [ find default-name=qsfpplus2-3 ] l2mtu=10218
set [ find default-name=qsfpplus2-4 ] l2mtu=10218
set [ find default-name=sfp-sfpplus1 ] comment=
"Backup wireless link Connection for Locust Router 23" l2mtu=10218
set [ find default-name=sfp-sfpplus2 ] comment=
"Connection for 8 Port Locust Well Switch COE OLD Corporate Network"
l2mtu=10218
set [ find default-name=sfp-sfpplus3 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus4 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus5 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus6 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus7 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus8 ] l2mtu=10218
set [ find default-name=sfp-sfpplus9 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus10 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus11 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus12 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus13 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus14 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus15 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus16 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus17 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus18 ] l2mtu=10218
set [ find default-name=sfp-sfpplus19 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus20 ] disabled=yes l2mtu=10218
set [ find default-name=sfp-sfpplus21 ] comment=
"Trunk Port 60LR Link to Water Tower" l2mtu=2024
set [ find default-name=sfp-sfpplus22 ] comment="Trunk Port" disabled=yes
l2mtu=10218
set [ find default-name=sfp-sfpplus23 ] comment="Trunk Port" disabled=yes
l2mtu=10218
set [ find default-name=sfp-sfpplus24 ] advertise=
10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full,10000M-full
comment="Trunk Port Fiber to Water Tower.Rack2.TransportSwtich1"
disabled=yes l2mtu=10218 speed=10Gbps
/interface vlan
add disabled=yes interface=LOCAL.BRIDGE name=management.vlan988
use-service-tag=yes vlan-id=988
/interface ethernet switch port
set 0 limit-unknown-multicasts=yes storm-rate=1
set 1 limit-unknown-multicasts=yes storm-rate=1
set 2 limit-unknown-multicasts=yes storm-rate=1
set 3 limit-unknown-multicasts=yes storm-rate=1
set 4 limit-unknown-multicasts=yes storm-rate=1
set 5 limit-unknown-multicasts=yes storm-rate=1
set 6 limit-unknown-multicasts=yes storm-rate=1
set 7 limit-unknown-multicasts=yes storm-rate=1
set 8 limit-unknown-multicasts=yes storm-rate=1
set 9 limit-unknown-multicasts=yes storm-rate=1
set 10 limit-unknown-multicasts=yes storm-rate=1
set 11 limit-unknown-multicasts=yes storm-rate=1
set 12 limit-unknown-multicasts=yes storm-rate=1
set 13 limit-unknown-multicasts=yes storm-rate=1
set 14 limit-unknown-multicasts=yes storm-rate=1
set 15 limit-unknown-multicasts=yes storm-rate=1
set 16 limit-unknown-multicasts=yes storm-rate=1
set 17 limit-unknown-multicasts=yes storm-rate=1
set 18 limit-unknown-multicasts=yes storm-rate=1
set 19 limit-unknown-multicasts=yes storm-rate=1
set 20 limit-unknown-multicasts=yes storm-rate=1
set 21 limit-unknown-multicasts=yes storm-rate=1
set 22 limit-unknown-multicasts=yes storm-rate=1
set 23 limit-unknown-multicasts=yes storm-rate=1
set 24 storm-rate=5
set 25 storm-rate=5
set 26 storm-rate=5
set 27 storm-rate=5
set 28 storm-rate=5
set 29 storm-rate=5
set 30 storm-rate=5
set 31 storm-rate=5
set 33 limit-unknown-multicasts=yes storm-rate=1
/interface list
add name=Local.Login
add name=test
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/system logging action
set 3 remote=192.168.169.141
/interface bridge port
add bpdu-guard=yes bridge=LOCAL.BRIDGE comment=
"Connection for Locust Router 23" interface=sfp-sfpplus1
multicast-router=disabled pvid=3992 trusted=yes
add bpdu-guard=yes bridge=LOCAL.BRIDGE comment=
"Connection for 8 Port Locust Well Switch COE OLD Corporate Network"
interface=sfp-sfpplus2 multicast-router=disabled pvid=4075
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus3
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus4
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus5
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus6
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus7
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus8 pvid=4075
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus9
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus10 pvid=3990
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus11
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus12
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus13
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus14
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus15
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus16
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus17 pvid=3710
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus18
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus19
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus20
add bpdu-guard=yes bridge=LOCAL.BRIDGE comment="60LR Connection" interface=
sfp-sfpplus21 multicast-router=disabled trusted=yes
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus22 trusted=yes
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus23 trusted=yes
add bpdu-guard=yes bridge=LOCAL.BRIDGE interface=sfp-sfpplus24 trusted=yes
add bridge=LOCAL.BRIDGE interface=qsfpplus1-1
add bridge=LOCAL.BRIDGE interface=qsfpplus1-2
add bridge=LOCAL.BRIDGE interface=qsfpplus1-3
add bridge=LOCAL.BRIDGE interface=qsfpplus1-4
add bridge=LOCAL.BRIDGE interface=qsfpplus2-1
add bridge=LOCAL.BRIDGE interface=qsfpplus2-2
add bridge=LOCAL.BRIDGE interface=qsfpplus2-3
add bridge=LOCAL.BRIDGE interface=qsfpplus2-4
/ip neighbor discovery-settings
set discover-interface-list=Local.Login
/interface bridge vlan
add bridge=LOCAL.BRIDGE disabled=yes tagged=
LOCAL.BRIDGE,sfp-sfpplus24,sfp-sfpplus23 untagged=sfp-sfpplus1 vlan-ids=
988
add bridge=LOCAL.BRIDGE comment="IRON-COE Use" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3000
add bridge=LOCAL.BRIDGE comment="Safe Link" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3010
add bridge=LOCAL.BRIDGE comment=FatBeam tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3020
add bridge=LOCAL.BRIDGE comment="Vickery IT" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3030
add bridge=LOCAL.BRIDGE comment="Syringa Networks" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3040
add bridge=LOCAL.BRIDGE comment="Cambridge Telephone" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3050
add bridge=LOCAL.BRIDGE comment="Emmett School District" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3100
add bridge=LOCAL.BRIDGE comment="Payette River Technical" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3110
add bridge=LOCAL.BRIDGE comment="City of Emmett" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 untagged=
sfp-sfpplus10 vlan-ids=3990
add bridge=LOCAL.BRIDGE comment="COE Backup Highlands to Water Tower" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3991
add bridge=LOCAL.BRIDGE comment="COE Backup Locust to Water Tower" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 untagged=
sfp-sfpplus1 vlan-ids=3992
add bridge=LOCAL.BRIDGE comment="COE Backup Ind Park to Water Tower" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3993
add bridge=LOCAL.BRIDGE comment="COE Backup Cemetery to Water Tower" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3994
add bridge=LOCAL.BRIDGE comment=
"BGP Peer Emmett ISP Primary Edge R50 to IRON" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=2000
add bridge=LOCAL.BRIDGE comment=
"Emmett ISP Local Network Switch connections R51" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=2010
add bridge=LOCAL.BRIDGE comment="Emmett ISP Transit Link R50 to R51" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=2200
add bridge=LOCAL.BRIDGE comment="Test VLan" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=4089
add bridge=LOCAL.BRIDGE comment="IRON-All Other" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3001
add bridge=LOCAL.BRIDGE comment=
"Emmett Fiber - Customer Transport back to W9.R2.DS1.ISP Port 20" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 vlan-ids=3710
add bridge=LOCAL.BRIDGE comment="COE OLD Corporate Network" tagged=
sfp-sfpplus24,sfp-sfpplus23,sfp-sfpplus22,sfp-sfpplus21 untagged=
sfp-sfpplus2,sfp-sfpplus8 vlan-ids=4075
/interface list member
add interface=ether1 list=Local.Login
/ip address
add address=192.168.169.51/24 interface=LOCAL.BRIDGE network=192.168.169.0
/ip dns
set servers=192.168.169.1
/ip firewall address-list
add address=192.168.169.0/24 list=Management
add address=192.168.170.0/24 list=Management
/ip firewall filter
add action=accept chain=input comment="Allow established and related"
connection-state=established,related,untracked
add action=drop chain=input comment="Drop Invalid" connection-state=invalid
add action=accept chain=input comment="Allow Pings" protocol=icmp
add action=accept chain=input comment="Winbox Login" dst-port=8290 protocol=
tcp src-address-list=Management
add action=accept chain=input comment="SSH Winbox Login" dst-port=65222
protocol=tcp src-address-list=Management
add action=accept chain=input comment="SNMP Allow" dst-port=161 protocol=udp
add action=drop chain=input comment="Drop ALL"
/ip route
add distance=1 gateway=192.168.169.1
/ip service
set telnet disabled=yes
set ftp disabled=yes
set www disabled=yes
set ssh port=65222
set api disabled=yes
set winbox port=8290
set api-ssl disabled=yes
/snmp
set enabled=yes trap-version=2
/system clock
set time-zone-autodetect=no time-zone-name=America/Boise
/system identity
set name="Locust.Rack4.Transport Switch1"
/system leds
set 2 type=interface-activity
set 3 type=interface-activity
set 4 type=interface-activity
set 5 type=interface-activity
set 6 type=interface-activity
set 7 type=interface-activity
set 8 type=interface-activity
set 9 type=interface-activity
set 10 type=interface-activity
set 11 type=interface-activity
set 12 type=interface-activity
set 13 type=interface-activity
set 14 type=interface-activity
set 15 type=interface-activity
set 16 type=interface-activity
set 17 type=interface-activity
set 18 type=interface-activity
set 19 type=interface-activity
set 20 type=interface-activity
set 21 type=interface-activity
set 22 type=interface-activity
set 23 type=interface-activity
set 24 type=interface-activity
set 25 type=interface-activity
/system logging
add topics=stp
add action=remote topics=critical
add action=remote topics=error
add action=remote topics=info
add action=remote topics=warning
/system ntp client
set enabled=yes primary-ntp=192.168.169.20 secondary-ntp=216.239.35.4
/system routerboard settings
set boot-os=router-os
/tool bandwidth-server
set authenticate=no enabled=no
/tool mac-server
set allowed-interface-list=none
/tool mac-server mac-winbox
set allowed-interface-list=Local.Login
/tool mac-server ping
set enabled=no