PIX firewall password recovery

I have a PIX firewall which is in a production network. The password is not known because the former network administrator left the company. Is there anyway to get into the PIX with restarting the PIX?


Thank You
vreyesiiAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

InteraXCommented:
To reset the password on a PIX/ASA you need to reboot into monitor mode and load a password reset utility onto the PIX.

Which model and version of the OS are you running?
0
vreyesiiAuthor Commented:
I do not know the version because I cannot get into the PIX. The model of the PIX is 515.

0
batry_boyCommented:
If you console into the PIX and power cycle it, it will list the PIX OS version as part of the boot process.
0
Powerful Yet Easy-to-Use Network Monitoring

Identify excessive bandwidth utilization or unexpected application traffic with SolarWinds Bandwidth Analyzer Pack.

Alan Huseyin KayahanCommented:
 First, you have to clear the password of your PIX. For this process, you should enter the monitor mode by pressing ESC during the boot of PIX. You should use CLI (Command line interface) during the process.
     You can reach the CLI with a rollover cable that one end with RJ45 to PIX's console port and the other end serial 9 pin female to your COM1. Then a hyperterminal connection on this, will allow you to see CLI.
      In this process, we will send PIX the password reset file which will run automatically and ask you to reset password or not. But we have to determine the suitable password file fot your PIX. First, you have to determine whic IOS your PIX is running. Then you should download the related password reset file.
     And you need a tftp server, which is a small program that has the capability to send/receive files to/from IOS devices.
    Link below tells the procedure. Skip the "PIX with a floppy"  and read the rest
    http://www.cisco.com/warp/public/110/34.shtml

After resetting the password, enter the privillaged console bye typing enable, then press enter for blanked password. Then type config terminal for entering config mode, then type config factory for PIX to load factory defaults. Type wr mem to write the changes to memory and reload for PIX to restart itself
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Alan Huseyin KayahanCommented:
   Do not do
"After resetting the password, enter the privillaged console bye typing enable, then press enter for blanked password. Then type config terminal for entering config mode, then type config factory for PIX to load factory defaults. Type wr mem to write the changes to memory and reload for PIX to restart itself"

if you dont need to reset to factory defaults.
0
vreyesiiAuthor Commented:
Thank you all for your help and input.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Software Firewalls

From novice to tech pro — start learning today.