Solved

PIX firewall password recovery

Posted on 2007-03-22
6
384 Views
Last Modified: 2013-11-16
I have a PIX firewall which is in a production network. The password is not known because the former network administrator left the company. Is there anyway to get into the PIX with restarting the PIX?


Thank You
0
Comment
Question by:vreyesii
6 Comments
 
LVL 16

Assisted Solution

by:InteraX
InteraX earned 50 total points
ID: 18773129
To reset the password on a PIX/ASA you need to reboot into monitor mode and load a password reset utility onto the PIX.

Which model and version of the OS are you running?
0
 

Author Comment

by:vreyesii
ID: 18773318
I do not know the version because I cannot get into the PIX. The model of the PIX is 515.

0
 
LVL 28

Assisted Solution

by:batry_boy
batry_boy earned 50 total points
ID: 18773699
If you console into the PIX and power cycle it, it will list the PIX OS version as part of the boot process.
0
NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

 
LVL 29

Accepted Solution

by:
Alan Huseyin Kayahan earned 400 total points
ID: 18775117
 First, you have to clear the password of your PIX. For this process, you should enter the monitor mode by pressing ESC during the boot of PIX. You should use CLI (Command line interface) during the process.
     You can reach the CLI with a rollover cable that one end with RJ45 to PIX's console port and the other end serial 9 pin female to your COM1. Then a hyperterminal connection on this, will allow you to see CLI.
      In this process, we will send PIX the password reset file which will run automatically and ask you to reset password or not. But we have to determine the suitable password file fot your PIX. First, you have to determine whic IOS your PIX is running. Then you should download the related password reset file.
     And you need a tftp server, which is a small program that has the capability to send/receive files to/from IOS devices.
    Link below tells the procedure. Skip the "PIX with a floppy"  and read the rest
    http://www.cisco.com/warp/public/110/34.shtml

After resetting the password, enter the privillaged console bye typing enable, then press enter for blanked password. Then type config terminal for entering config mode, then type config factory for PIX to load factory defaults. Type wr mem to write the changes to memory and reload for PIX to restart itself
0
 
LVL 29

Expert Comment

by:Alan Huseyin Kayahan
ID: 18775165
   Do not do
"After resetting the password, enter the privillaged console bye typing enable, then press enter for blanked password. Then type config terminal for entering config mode, then type config factory for PIX to load factory defaults. Type wr mem to write the changes to memory and reload for PIX to restart itself"

if you dont need to reset to factory defaults.
0
 

Author Comment

by:vreyesii
ID: 18785807
Thank you all for your help and input.
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
This article is a how to to configure a UCS Ethernet-uplink portchannel via the console. It is easy to do and can be done quite quickly. In certain versions of the UCS manager the portchannel has issues coming up and this is a workaround. I am…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

837 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question