<

[Last Call] Learn about multicloud storage options and how to improve your company's cloud strategy. Register Now

x

Cisco IOS Privilege Limitation

Published on
8,407 Points
2,407 Views
Last Modified:
Problem Description:  

Couple of months ago we upgraded the ADSL line at our branch office from Home to Business line. The purpose of transforming the service to have static public IP’s.
We were in need for public IP’s to publish our web resources at the branch office
Also Home ADSL connection ISP leases the DHCP IP address to the customers and this will IP can change on frequent basis  and sometimes you will find it difficult  for port forwarding
 
Anyway so after the upgrade we were given pre-configured Cisco Router by ISP. Unfortunately, the LAN subnet configured on the router was conflicting with our IP Addressing Schema. Therefore, it was important to change the subnet on the router.

When I access to the router through the console and issue sh running-config command but the resulting configuration was virtually blank.
Moreover, I was not privileged to enter configuration mode. Then I used the command in exec mode

R1# sh run config
Current configuration : 3743 bytes
! No configuration change since last restart
version 15.1
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname R1
!
boot-start-marker
boot-end-marker
!
end 

Open in new window


Moreover, I was not privileged to enter configuration mode. Then I used the command in exec mode
Show privilege:  This command displays the current privilege. Here's an example:

R1# show privilege
Current privilege level is 2

Open in new window


With this privilege only the configure commands that are permitted are actually displayed.

Solution

Follows the below steps to resolve this issue and of course we can’t’ afford to lose the configurations

1.      Enter into the router in rom monitor mode.
2.      rommon 1 > confreg 0x2142
You must reset or power cycle for new config to take effect
rommon 2 > reset
3.      The router will now reset and start its normal bootup process; however, the current configuration will be ignored. When the bootup is complete, you will be prompted to 'enter the initial configuration dialog', answer 'no':
4.      Next step is to enter 'Privileged Mode' and load the router's configuration from nvram.

Router>
Router> enable
Router# copy startup-config running-config
Destination filename [running-config]? (hit enter)
Building configuration...
[OK]
R1# configure terminal
R1(config)# enable password cisco
R1(config)# enable secret cisco
R1(config)# line console 0
R1(config-line)# password cisco
R1(config)# username cisco privilege 15 secret cisco
R1(config)# config-register 0x2102
R1(config)# exit 
R1#copy running-config startup-config
Destination filename [startup-config]? (hit enter) 
Building configuration...
[OK]
R1#reload

Open in new window


7.       The router will now reload and use the new configuration that contains the newly username and password.
0
Comment
Author:cciedreamer
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 3

Author Comment

by:cciedreamer
Thank you very much.
0

Featured Post

Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

Join & Write a Comment

After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

Keep in touch with Experts Exchange

Tech news and trends delivered to your inbox every month