I have this situation:
MAIN ROUTER: RB HEX G3 with 6.44.6
eth1: WAN 184.108.40.206/24
eth2: TOWER 100.64.100.254/24 (here is the DHCP SERVER)
the eth2 is connected to a CRS112-8P-4S on the port eth8.
On it, from the port eth1 to eth7 are Wireless AP.
On the CRS there is a bridge, with all the ports on it.
I have enabled on the CRS the DHCP SNOOPING feature, and set to "trusted" the eth8, that is facing the router of my tower, wich is also doing DHCP SERVER.
I have customers that sometimes connects their router on the LAN PORT, so creating a rogue dhcp server.
The function dhcp snooping doesnt seem to work since the dhcp offers are not dropped.
how can I verify the situation?
I also tried the port-isolation but without success since the wiki is quite unclear to me.