Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
B-7
Cisco ASDM User Guide
OL-16647-01
Appendix B Troubleshooting
Performing Password Recovery
Performing Password Recovery
This section describes how to recover passwords if you have forgotten them or you are locked out
because of AAA settings, and how to disable password recovery for extra security. This section includes
the following topics:
Recovering Passwords for the ASA 5500 Series Adaptive Security Appliance, page B-7
Recovering Passwords for the PIX 500 Series Security Appliance, page B-8
Disabling Password Recovery, page B-9
Using the ROM Monitor to Load a Software Image, page B-10
Recovering Passwords for the ASA 5500 Series Adaptive Security Appliance
To recover passwords for the ASA 5500 Series adaptive security appliance, perform the following steps:
Step 1 Connect to the adaptive security appliance console port.
Step 2 Power off the adaptive security appliance, and then power it on.
Step 3 After startup, press the Escape key when you are prompted to enter ROMMON mode.
Step 4 To update the configuration register value, enter the following command:
rommon #1> confreg 0x41
Update Config Register (0x41) in NVRAM...
Step 5 To set the adaptive security appliance to ignore the startup configuration, enter the following command:
rommon #1> confreg
The adaptive security appliance displays the current configuration register value, and asks whether you
want to change it:
Current Configuration Register: 0x00000041
Configuration Summary:
boot default image from Flash
ignore system configuration
Do you wish to change this configuration? y/n [n]: y
Step 6 Record the current configuration register value, so you can restore it later.
Step 7 At the prompt, enter Y to change the value.
The adaptive security appliance prompts you for new values.
Step 8 Accept the default values for all settings. At the prompt, enter Y.
Step 9 Reload the adaptive security appliance by entering the following command:
rommon #2> boot
Launching BootLoader...
Boot configuration file contains 1 entry.
Loading disk0:/asa800-226-k8.bin... Booting...Loading...
The adaptive security appliance loads the default configuration instead of the startup configuration.
Step 10 Access the privileged EXEC mode by entering the following command:
hostname> enable