<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTD Root access password ? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281280#M1077749</link>
    <description>&lt;P&gt;Hi Ida71 when i try to type sudo su always show error " invalid command" , i am using a console , because the DME is crashed am i need restart the pmon service , but i have no idea how to login or use the sentence like a root user.&lt;/P&gt;&lt;P&gt;thanks fo all.&lt;/P&gt;</description>
    <pubDate>Thu, 28 Jan 2021 11:38:45 GMT</pubDate>
    <dc:creator>Vanjulen1</dc:creator>
    <dc:date>2021-01-28T11:38:45Z</dc:date>
    <item>
      <title>FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136374#M1073015</link>
      <description>&lt;P&gt;I have used Admin password to login to CLI on FTD's since they were built &amp;amp; can access expert mode. But just tried to run an upgrade readyness check at CLi &amp;amp; it says I don't have privilege so tried sudo to root &amp;amp; none of the passwords I have configured work, including the default one.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I changed the admin account password when the box was built, but never added a separate root password, as I don't recall it being in the build docs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any ideas ?&lt;/P&gt;</description>
      <pubDate>Sat, 15 Aug 2020 20:26:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136374#M1073015</guid>
      <dc:creator>ida71</dc:creator>
      <dc:date>2020-08-15T20:26:44Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136424#M1073018</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;You can run your commands using sudo at the beginning or from the expert mode entering the privileged mode by typing sudo su. The password is the same as your admin password.&lt;BR /&gt;I use this very often and never got an issue where my admin password wasn't taken.&lt;BR /&gt;</description>
      <pubDate>Sun, 16 Aug 2020 03:18:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136424#M1073018</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2020-08-16T03:18:14Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136481#M1073022</link>
      <description>&lt;P&gt;My experience matches &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/321306"&gt;@Francesco Molino&lt;/a&gt; .&lt;/P&gt;
&lt;P&gt;When you say you changed the admin password do you mean the standard prompt to do so during initial setup or did you use some other method?&lt;/P&gt;</description>
      <pubDate>Sun, 16 Aug 2020 11:55:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136481#M1073022</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-08-16T11:55:50Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136706#M1073037</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;During initial setup, I set an admin password. But have never needed sudo access until now, so never tested it.&lt;/P&gt;&lt;P&gt;I can login &amp;amp; get to expert mode. But it won't accept the admin password for sudo.&lt;/P&gt;</description>
      <pubDate>Mon, 17 Aug 2020 08:42:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136706#M1073037</guid>
      <dc:creator>ida71</dc:creator>
      <dc:date>2020-08-17T08:42:01Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136710#M1073038</link>
      <description>Thanks Francisco,&lt;BR /&gt;&lt;BR /&gt;Every other Unix/Linux system I have used in the past either just "su -" or "sudo" got you access, but as per your advice above "sudo su" is required from expert mode &amp;amp; I now have access. Many thanks.</description>
      <pubDate>Mon, 17 Aug 2020 08:47:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4136710#M1073038</guid>
      <dc:creator>ida71</dc:creator>
      <dc:date>2020-08-17T08:47:42Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137202#M1073068</link>
      <description>So just to be sure, did you manage getting it working?</description>
      <pubDate>Tue, 18 Aug 2020 02:10:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137202#M1073068</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2020-08-18T02:10:20Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137310#M1073084</link>
      <description>&lt;P&gt;Yes, now working but requires specific "sudo su" rather than the "su -" I'm more accustomed to.&lt;/P&gt;&lt;P&gt;I assumed it was not working because typing just "sudo" or "su -" both returned the password prompt, but would NOT accept the admin password !&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Many thanks.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Chris.&lt;/P&gt;</description>
      <pubDate>Tue, 18 Aug 2020 08:42:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137310#M1073084</guid>
      <dc:creator>ida71</dc:creator>
      <dc:date>2020-08-18T08:42:34Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137776#M1073103</link>
      <description>Can you try to change your admin password and retry?&lt;BR /&gt;If it is not working, create a new admin user and test it please.&lt;BR /&gt;&lt;BR /&gt;It's not recommended but the last chance, if all above aren't working, is to connect on your FTD in expert mode, then make sure you are connected using admin (command whoami) and finally type passwd to change the password.&lt;BR /&gt;Normally by changing the admin password using the official way through UI or CLI (not expert), it should work or at least with a new admin account as well.</description>
      <pubDate>Wed, 19 Aug 2020 01:11:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137776#M1073103</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2020-08-19T01:11:14Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137927#M1073113</link>
      <description>&lt;P&gt;Hi Francesco,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think you misunderstood my last reply, it is now WORKING &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Chris&lt;/P&gt;</description>
      <pubDate>Wed, 19 Aug 2020 08:29:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4137927#M1073113</guid>
      <dc:creator>ida71</dc:creator>
      <dc:date>2020-08-19T08:29:40Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4138441#M1073144</link>
      <description>Ok sorry&lt;span class="lia-unicode-emoji" title=":face_with_tears_of_joy:"&gt;😂&lt;/span&gt;</description>
      <pubDate>Thu, 20 Aug 2020 01:42:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4138441#M1073144</guid>
      <dc:creator>Francesco Molino</dc:creator>
      <dc:date>2020-08-20T01:42:32Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281162#M1077736</link>
      <description>&lt;P&gt;Hi i have the same problem , but in my fp1010 i have not allowed use the command sudo or su , i am trying to type sudo pmon stop and it is failing , if i type without sudo the command runs but asking for a password if i type the admin password show the mesages :Password:&lt;BR /&gt;Sorry, user admin is not allowed to execute '/usr/bin/pkill -SIGUSR1 pmon' as root&lt;/P&gt;&lt;P&gt;pls need help , thanks in advance.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 07:07:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281162#M1077736</guid>
      <dc:creator>Vanjulen1</dc:creator>
      <dc:date>2021-01-28T07:07:39Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281191#M1077741</link>
      <description>&lt;P&gt;Yes i am in the same situation only have admin access , and never before use or configure a root password , and if i use the admin password to stop for example the pmon show one error saying it is not valid user admin , and you need to be a root ... need help pls, ty.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 08:16:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281191#M1077741</guid>
      <dc:creator>Vanjulen1</dc:creator>
      <dc:date>2021-01-28T08:16:24Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281205#M1077743</link>
      <description>&lt;P&gt;Hi Vanjulen1,&lt;/P&gt;&lt;P&gt;I think your issue is the same as mine, i.e. previous experience with Unix/Linux. Ignore what you know, the FTD platform is NOT the same, its close, but different.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do NOT use sudo or su - to initiate Root commands, they won't work. You need to change context first then issue your root commands.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So login as admin via SSH to CLi, then issue&amp;nbsp; &amp;nbsp; sudo su&amp;nbsp; &amp;nbsp; &amp;nbsp;followed by the&amp;nbsp; &amp;nbsp; admin user password&amp;nbsp; &amp;nbsp; to change context to Root user.&amp;nbsp;&lt;/P&gt;&lt;P&gt;This worked for me, now issue your required commands without the "sudo" precursor, so your command "&lt;SPAN&gt;sudo pmon stop"&amp;nbsp; becomes "pmon stop" because you are now issuing it as the root user.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I hope that works for you.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 08:46:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281205#M1077743</guid>
      <dc:creator>ida71</dc:creator>
      <dc:date>2021-01-28T08:46:26Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281280#M1077749</link>
      <description>&lt;P&gt;Hi Ida71 when i try to type sudo su always show error " invalid command" , i am using a console , because the DME is crashed am i need restart the pmon service , but i have no idea how to login or use the sentence like a root user.&lt;/P&gt;&lt;P&gt;thanks fo all.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 11:38:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281280#M1077749</guid>
      <dc:creator>Vanjulen1</dc:creator>
      <dc:date>2021-01-28T11:38:45Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281303#M1077750</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/373449"&gt;@Vanjulen1&lt;/a&gt; you are trying to run the command from FXOS. That's different than running it from FTD. The "sudo" instructions are specific to FTD as it has Linux underlying in expert mode. FXOS should not require sudo.&lt;/P&gt;
&lt;P&gt;I don't have a 1010 handy but here is the example on a Firepower 1120 running FTD 6.7:&lt;/P&gt;
&lt;PRE&gt;fp1120-v-1(local-mgmt)# show pmon state

SERVICE NAME             STATE     RETRY(MAX)    EXITCODE    SIGNAL    CORE
------------             -----     ----------    --------    ------    ----
svc_sam_dme            running           0(4)           0         0      no 
svc_sam_dcosAG         running           0(4)           0         0      no 
svc_sam_portAG         running           0(4)           0         0      no 
svc_sam_statsAG        running           0(4)           0         0      no 
httpd.sh               running           0(4)           0         0      no 
svc_sam_sessionmgrAG   running           0(4)           0         0      no 
sam_core_mon           running           0(4)           0         0      no 
svc_sam_svcmonAG       running           0(4)           0         0      no 
svc_sam_serviceOrchAG   running           0(4)           0         0      no 
svc_sam_appAG          running           0(4)           0         0      no 
svc_sam_envAG          running           0(4)           0         0      no 
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# pmon 
  start  Start operation 
  stop   Stop operation 

fp1120-v-1(local-mgmt)# pmon stop
fp1120-v-1(local-mgmt)# show pmon state

SERVICE NAME             STATE     RETRY(MAX)    EXITCODE    SIGNAL    CORE
------------             -----     ----------    --------    ------    ----
svc_sam_dme         terminated           0(4)           0         0      no 
svc_sam_dcosAG      terminated           0(4)           0         0      no 
svc_sam_portAG      terminated           0(4)           0         0      no 
svc_sam_statsAG     terminated           0(4)           0         0      no 
httpd.sh                killed           0(4)           0         0      no 
svc_sam_sessionmgrAGterminated           0(4)           0         0      no 
sam_core_mon        terminated           0(4)           0         0      no 
svc_sam_svcmonAG    terminated           0(4)           0         0      no 
svc_sam_serviceOrchAGterminated           0(4)           0         0      no 
svc_sam_appAG       terminated           0(4)           0         0      no 
svc_sam_envAG       terminated           0(4)           0         0      no 
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# pmon start
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# 
fp1120-v-1(local-mgmt)# show pmon state

SERVICE NAME             STATE     RETRY(MAX)    EXITCODE    SIGNAL    CORE
------------             -----     ----------    --------    ------    ----
svc_sam_dme            running           0(4)           0         0      no 
svc_sam_dcosAG         running           0(4)           0         0      no 
svc_sam_portAG         running           0(4)           0         0      no 
svc_sam_statsAG        running           0(4)           0         0      no 
httpd.sh               running           0(4)           0         0      no 
svc_sam_sessionmgrAG   running           0(4)           0         0      no 
sam_core_mon           running           0(4)           0         0      no 
svc_sam_svcmonAG       running           0(4)           0         0      no 
svc_sam_serviceOrchAG   running           0(4)           0         0      no 
svc_sam_appAG          running           0(4)           0         0      no 
svc_sam_envAG          running           0(4)           0         0      no 
fp1120-v-1(local-mgmt)# 
&lt;/PRE&gt;
&lt;P&gt;If you are unable to run the commands as I demonstrated, perhaps opening a TAC case would be useful. Even if you could run them, you should not be having to run those commands normally.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 12:19:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281303#M1077750</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2021-01-28T12:19:44Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281314#M1077751</link>
      <description>&lt;P&gt;Hi Marvin thanks for you reply ,&amp;nbsp; i have a cisco tac , and the last workaround is , i have to stop the pmon service , but if i use the command show pmon state , dont do nothing , it doent show any result only return the prompt , and when i try to stop the service , asking me for a password and i use the admin password , and after that , show the errorSorry, user admin is not allowed to execute '/usr/bin/pkill -SIGUSR1 pmon' as root on&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I need some help ,&amp;nbsp; thanks in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 12:41:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281314#M1077751</guid>
      <dc:creator>Vanjulen1</dc:creator>
      <dc:date>2021-01-28T12:41:17Z</dc:date>
    </item>
    <item>
      <title>Re: FTD Root access password ?</title>
      <link>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281324#M1077752</link>
      <description>&lt;P&gt;If you are working with TAC, it would be most effective to continue doing so. If the current engineer is unable to assist then request escalation to a more senior engineer or lead.&lt;/P&gt;
&lt;P&gt;You didn't mention what version of software you are running.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 12:48:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftd-root-access-password/m-p/4281324#M1077752</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2021-01-28T12:48:53Z</dc:date>
    </item>
  </channel>
</rss>

