VMware NSX
By default DFW rules are applied to VMs connected to a NSX managed networks. When Reject/Block rules exist then an explicit allow rule for DHCP traffic must be configured.
Under Security -> Distributed firewall, configure an Allow rule for source any, destination any and service type DHCP-client, DHCP-server.
As DFW rules are evaluated top down within a section, e.g. Application, and sections are evaluated from left to right, ensure a deny rule does not exist higher up or in previous section.