<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Locked out of ASA 5525-X - Username and password unknown in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4679010#M1093079</link>
    <description>&lt;P&gt;unfortunately there is not recognized command in Rommon for that.&lt;/P&gt;&lt;P&gt;See below.&lt;/P&gt;&lt;P&gt;----------------------------------------------------------------------------&lt;BR /&gt;&lt;EM&gt;Use BREAK or ESC to interrupt boot.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Use SPACE to begin boot immediately.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Boot interrupted.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;GigabitEthernet0/0&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Link is DOWN&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;MAC Address: 00c8.8b7d.3577&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;EM&gt;Use ? for help.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;rommon #0&amp;gt; password_reset&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Invalid or incorrect command. Use 'help' for help.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;rommon #0&amp;gt; ?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Variables: Use "sync" to store in NVRAM&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;ADDRESS= &amp;lt;addr&amp;gt; local IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;CONFIG= &amp;lt;name&amp;gt; config file path/name&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;GATEWAY= &amp;lt;addr&amp;gt; gateway IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;IMAGE= &amp;lt;name&amp;gt; image file path/name&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;LINKTIMEOUT= &amp;lt;num&amp;gt; Link UP timeout (seconds)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;PKTTIMEOUT= &amp;lt;num&amp;gt; packet timeout (seconds)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;PORT= &amp;lt;name&amp;gt; ethernet interface port&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;RETRY= &amp;lt;num&amp;gt; Packet Retry Count (Ping/TFTP)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;SERVER= &amp;lt;addr&amp;gt; server IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;VLAN= &amp;lt;num&amp;gt; enable/disable DOT1Q tagging on the selected port&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Commands:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;? valid command list&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;address &amp;lt;addr&amp;gt; local IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;boot &amp;lt;args&amp;gt; boot an image, valid args are:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- "image file spec" and/or&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- "cfg=&amp;lt;config file spec&amp;gt;"&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;clear clear interface statistics&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;confreg &amp;lt;value&amp;gt; set hex configuration register&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;dev display platform interface devices&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;erase &amp;lt;arg&amp;gt; erase storage media&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;file &amp;lt;name&amp;gt; application image file path/name&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;gateway &amp;lt;addr&amp;gt; gateway IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;gdb &amp;lt;cmd&amp;gt; edit image gdb settings&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;help valid command list&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;history display command history&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;interface &amp;lt;name&amp;gt; ethernet interface port&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;no &amp;lt;feat&amp;gt; clear feature settings&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;ping &amp;lt;addr&amp;gt; send ICMP echo&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;reboot halt and reboot system&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;reload halt and reboot system&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;repeat &amp;lt;arg&amp;gt; repeat previous command, valid arguments:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- no arg: repeat last command&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- number: index into command history table&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- string: most recent 1st arg match in command history table&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;reset halt and reboot system&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;server &amp;lt;addr&amp;gt; server IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;set display all variable settings&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;show &amp;lt;cmd&amp;gt; display cmd-specific information&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;sync save variable settings in NVRAM&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;tftpdnld TFTP download&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;timeout &amp;lt;num&amp;gt; packet timeout (seconds)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;trace toggle packet tracing&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;unset &amp;lt;varname&amp;gt; unset a variable name&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;rommon #1&amp;gt;&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 31 Aug 2022 03:44:24 GMT</pubDate>
    <dc:creator>parcelsa</dc:creator>
    <dc:date>2022-08-31T03:44:24Z</dc:date>
    <item>
      <title>Locked out of ASA 5525-X - Username and password unknown</title>
      <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678400#M1093039</link>
      <description>&lt;P&gt;I am trying to gain access to our ASA 5525-X. Was setup by someone no longer here.&lt;/P&gt;&lt;P&gt;I have tried all the password disable reset instructions by going into ROMMON mode and changing to 0x00000041 configuration.&lt;/P&gt;&lt;P&gt;Cannot find anything online anywhere that helps with this issue. Please help remove username and password so I can use the ASA.&lt;/P&gt;&lt;P&gt;See output below...&lt;/P&gt;&lt;P&gt;------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Cisco BIOS Version:9B2C109A&lt;BR /&gt;Build Date:05/15/2013 16:34:44&lt;/P&gt;&lt;P&gt;CPU Type: Intel(R) Xeon(R) CPU X3430 @ 2.40GHz, 2394 MHz&lt;BR /&gt;Total Memory:8192 MB(DDR3 1333)&lt;BR /&gt;System memory:619 KB, Extended Memory:3573 MB&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;PCI Device Table:&lt;BR /&gt;Bus Dev Func VendID DevID Class IRQ&lt;BR /&gt;---------------------------------------------------------&lt;BR /&gt;00 00 00 8086 D130 Bridge Device&lt;BR /&gt;00 03 00 8086 D138 PCI Bridge,IRQ=11&lt;BR /&gt;00 05 00 8086 D13A PCI Bridge,IRQ=11&lt;BR /&gt;00 08 00 8086 D155 System Device&lt;BR /&gt;00 08 01 8086 D156 System Device&lt;BR /&gt;00 08 02 8086 D157 System Device&lt;BR /&gt;00 08 03 8086 D158 System Device&lt;BR /&gt;00 10 00 8086 D150 System Device&lt;BR /&gt;00 10 01 8086 D151 System Device&lt;BR /&gt;00 16 00 8086 3B64 I/O Port Device,IRQ=11&lt;BR /&gt;00 1A 00 8086 3B3C USB Controller,IRQ=11&lt;BR /&gt;00 1C 00 8086 3B42 PCI Bridge,IRQ=10&lt;BR /&gt;00 1C 04 8086 3B4A PCI Bridge,IRQ=10&lt;BR /&gt;00 1C 05 8086 3B4C PCI Bridge,IRQ=11&lt;BR /&gt;00 1D 00 8086 3B34 USB Controller,IRQ=7&lt;BR /&gt;00 1E 00 8086 244E PCI Bridge&lt;BR /&gt;00 1F 00 8086 3B16 Bridge Device&lt;BR /&gt;00 1F 02 8086 3B22 SATA DPA,IRQ=5&lt;BR /&gt;00 1F 03 8086 3B30 SMBus,IRQ=11&lt;BR /&gt;01 00 00 10B5 8618 PCI Bridge,IRQ=11&lt;BR /&gt;02 01 00 10B5 8618 PCI Bridge,IRQ=10&lt;BR /&gt;02 03 00 10B5 8618 PCI Bridge,IRQ=5&lt;BR /&gt;02 05 00 10B5 8618 PCI Bridge,IRQ=10&lt;BR /&gt;02 07 00 10B5 8618 PCI Bridge,IRQ=5&lt;BR /&gt;02 09 00 10B5 8618 PCI Bridge,IRQ=10&lt;BR /&gt;02 0B 00 10B5 8618 PCI Bridge,IRQ=5&lt;BR /&gt;02 0D 00 10B5 8618 PCI Bridge,IRQ=10&lt;BR /&gt;02 0F 00 10B5 8618 PCI Bridge,IRQ=5&lt;BR /&gt;03 00 00 8086 10D3 Ethernet,IRQ=10&lt;BR /&gt;04 00 00 8086 10D3 Ethernet,IRQ=5&lt;BR /&gt;05 00 00 8086 10D3 Ethernet,IRQ=10&lt;BR /&gt;06 00 00 8086 10D3 Ethernet,IRQ=5&lt;BR /&gt;07 00 00 8086 10D3 Ethernet,IRQ=10&lt;BR /&gt;08 00 00 8086 10D3 Ethernet,IRQ=5&lt;BR /&gt;09 00 00 8086 10D3 Ethernet,IRQ=10&lt;BR /&gt;0A 00 00 8086 10D3 Ethernet,IRQ=5&lt;BR /&gt;0B 00 00 10B5 8624 PCI Bridge,IRQ=11&lt;BR /&gt;0C 04 00 10B5 8624 PCI Bridge,IRQ=11&lt;BR /&gt;0C 05 00 10B5 8624 PCI Bridge,IRQ=10&lt;BR /&gt;0C 08 00 10B5 8624 PCI Bridge,IRQ=11&lt;BR /&gt;0C 09 00 10B5 8624 PCI Bridge,IRQ=10&lt;BR /&gt;0F 00 00 1000 0A05 Processor,IRQ=11&lt;BR /&gt;11 00 00 177D 0010 Cavium Encryption,IRQ=11&lt;BR /&gt;12 00 00 8086 10D3 Ethernet,IRQ=11&lt;BR /&gt;13 00 00 1A03 1150 PCI Bridge,IRQ=10&lt;BR /&gt;14 00 00 1A03 2000 VGA,IRQ=10&lt;BR /&gt;FF 00 00 8086 2C50 Bridge Device&lt;BR /&gt;FF 00 01 8086 2C81 Bridge Device&lt;BR /&gt;FF 02 00 8086 2C90 Bridge Device&lt;BR /&gt;FF 02 01 8086 2C91 Bridge Device&lt;BR /&gt;FF 03 00 8086 2C98 Bridge Device&lt;BR /&gt;FF 03 01 8086 2C99 Bridge Device&lt;BR /&gt;FF 03 02 8086 2C9A Bridge Device&lt;BR /&gt;FF 03 04 8086 2C9C Bridge Device&lt;BR /&gt;FF 04 00 8086 2CA0 Bridge Device&lt;BR /&gt;FF 04 01 8086 2CA1 Bridge Device&lt;BR /&gt;FF 04 02 8086 2CA2 Bridge Device&lt;BR /&gt;FF 04 03 8086 2CA3 Bridge Device&lt;BR /&gt;FF 05 00 8086 2CA8 Bridge Device&lt;BR /&gt;FF 05 01 8086 2CA9 Bridge Device&lt;BR /&gt;FF 05 02 8086 2CAA Bridge Device&lt;BR /&gt;FF 05 03 8086 2CAB Bridge Device&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Booting from ROMMON&lt;/P&gt;&lt;P&gt;Cisco Systems ROMMON Version (2.1(9)8) #1: Wed Oct 26 17:14:40 PDT 2011&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Use BREAK or ESC to interrupt boot.&lt;BR /&gt;Use SPACE to begin boot immediately.&lt;BR /&gt;Boot interrupted.&lt;/P&gt;&lt;P&gt;GigabitEthernet0/0&lt;BR /&gt;Link is DOWN&lt;BR /&gt;MAC Address: 00c8.8b7d.3577&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Use ? for help.&lt;BR /&gt;rommon #0&amp;gt; confreg&lt;/P&gt;&lt;P&gt;Current Configuration Register: 0x00000041&lt;BR /&gt;Configuration Summary:&lt;BR /&gt;boot default image from Flash&lt;BR /&gt;ignore system configuration&lt;/P&gt;&lt;P&gt;Do you wish to change this configuration? y/n [n]: n&lt;/P&gt;&lt;P&gt;rommon #1&amp;gt; boot&lt;BR /&gt;Launching BootLoader...&lt;BR /&gt;Default configuration file contains 1 entry.&lt;/P&gt;&lt;P&gt;Searching / for images to boot.&lt;/P&gt;&lt;P&gt;Loading /os.img... Booting...&lt;BR /&gt;Platform ASA5525&lt;/P&gt;&lt;P&gt;Loading...&lt;BR /&gt;IO memory blocks requested from bigphys 32bit: 56314&lt;BR /&gt;INIT: version 2.88 booting&lt;BR /&gt;Starting udev&lt;BR /&gt;Configuring network interfaces... done.&lt;BR /&gt;Populating dev cache&lt;BR /&gt;Found device serial number FCH200379EC.&lt;BR /&gt;Found USB flash drive /dev/sdb&lt;BR /&gt;Found hard drive(s): /dev/sda&lt;BR /&gt;fsck from util-linux 2.23.2&lt;BR /&gt;dosfsck 2.11, 12 Mar 2005, FAT32, LFN&lt;BR /&gt;There are differences between boot sector and its backup.&lt;BR /&gt;Differences: (offset:original/backup)&lt;BR /&gt;65:01/00&lt;BR /&gt;Not automatically fixing this.&lt;BR /&gt;/dev/sdb1: 45 files, 26381/2011044 clusters&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;==============================================&lt;BR /&gt;Use ESC to interrupt boot and launch boot CLI.&lt;BR /&gt;Use SPACE to launch Cisco FTD immediately.&lt;BR /&gt;Cisco FTD launch in 26 seconds ...&lt;BR /&gt;Running on saleenb&lt;BR /&gt;Mounting disk partitions ...&lt;BR /&gt;Initializing Threat Defense ... [ OK ]&lt;BR /&gt;Starting system log daemon... [ OK ]&lt;BR /&gt;Flushing all current IPv4 rules and user defined chains: ...success&lt;BR /&gt;Clearing all current IPv4 rules and user defined chains: ...success&lt;BR /&gt;Applying iptables firewall rules:&lt;BR /&gt;Flushing chain `PREROUTING'&lt;BR /&gt;Flushing chain `INPUT'&lt;BR /&gt;Flushing chain `FORWARD'&lt;BR /&gt;Flushing chain `OUTPUT'&lt;BR /&gt;Flushing chain `POSTROUTING'&lt;BR /&gt;Flushing chain `INPUT'&lt;BR /&gt;Flushing chain `FORWARD'&lt;BR /&gt;Flushing chain `OUTPUT'&lt;BR /&gt;Applying rules successed&lt;BR /&gt;Flushing all current IPv6 rules and user defined chains: ...success&lt;BR /&gt;Clearing all current IPv6 rules and user defined chains: ...success&lt;BR /&gt;Applying ip6tables firewall rules:&lt;BR /&gt;Flushing chain `PREROUTING'&lt;BR /&gt;Flushing chain `INPUT'&lt;BR /&gt;Flushing chain `FORWARD'&lt;BR /&gt;Flushing chain `OUTPUT'&lt;BR /&gt;Flushing chain `POSTROUTING'&lt;BR /&gt;Flushing chain `INPUT'&lt;BR /&gt;Flushing chain `FORWARD'&lt;BR /&gt;Flushing chain `OUTPUT'&lt;BR /&gt;Applying rules successed&lt;BR /&gt;Starting nscd...&lt;BR /&gt;mkdir: created directory '/var/run/nscd' [ OK ]&lt;BR /&gt;Starting , please wait......complete.&lt;BR /&gt;Configuring NTP... [ OK ]&lt;BR /&gt;IPMI over LAN not active&lt;BR /&gt;fatattr: can't open '/mnt/disk0/.private2': No such file or directory&lt;BR /&gt;fatattr: can't open '/mnt/disk0/.ngfw': No such file or directory&lt;BR /&gt;Not reconfigurating [ OK ]&lt;BR /&gt;Starting xinetd:&lt;BR /&gt;Sat Jan 1 21:23:50 UTC 2005&lt;BR /&gt;Starting MySQL...&lt;BR /&gt;Pinging mysql&lt;BR /&gt;Pinging mysql, try 1&lt;BR /&gt;Found mysql is running&lt;BR /&gt;Running initializeObjects...&lt;BR /&gt;Stopping MySQL...&lt;BR /&gt;Killing mysqld with pid 3557&lt;BR /&gt;Wait for mysqld to exit\c&lt;BR /&gt;done&lt;BR /&gt;Sat Jan 1 21:23:58 UTC 2005&lt;BR /&gt;Starting sfifd... [ OK ]&lt;BR /&gt;Starting Cisco ASA5525-X Threat Defense, please wait...No PM running!&lt;BR /&gt;...started.&lt;BR /&gt;INIT: SwitchingStarting system message bus: dbus.&lt;BR /&gt;Starting OpenBSD Secure Shell server: sshd&lt;BR /&gt;Could not load host key: /etc/ssh/ssh_host_ed25519_key&lt;BR /&gt;done.&lt;BR /&gt;Starting Advanced Configuration and Power Interface daemon: acpid.&lt;BR /&gt;Starting crond: OK&lt;BR /&gt;Jan 01 21:24:01 ciscoasa SF-IMS[4264]: [4264] init script:system [INFO] pmmon Setting affinity to 1...&lt;BR /&gt;pid 4260's current affinity list: 0-3&lt;BR /&gt;pid 4260's new affinity list: 1&lt;BR /&gt;Jan 01 21:24:01 ciscoasa SF-IMS[4266]: [4266] init script:system [INFO] pmmon The Process Manager is not running...&lt;BR /&gt;Jan 01 21:24:01 ciscoasa SF-IMS[4267]: [4267] init script:system [INFO] pmmon Starting the Process Manager...&lt;BR /&gt;Jan 01 21:24:02 ciscoasa SF-IMS[4268]: [4268] pm:pm [INFO] Using model number 75G&lt;/P&gt;&lt;P&gt;ciscoasa login: IO Memory Nodes: 1&lt;BR /&gt;IO Memory Per Node: 230686720 bytes&lt;/P&gt;&lt;P&gt;Global Reserve Memory Per Node: 692060160 bytes Nodes=1&lt;/P&gt;&lt;P&gt;LCMB: got 230686720 bytes on numa-id=0, phys=0x178c00000, virt=0x2aaaab000000&lt;BR /&gt;LCMB: HEAP-CACHE POOL got 692060160 bytes on numa-id=0, virt=0x7fedf0600000&lt;BR /&gt;Processor memory: 4425920271&lt;/P&gt;&lt;P&gt;Compiled on Fri 31-Mar-17 07:44 PDT by builders&lt;/P&gt;&lt;P&gt;Total NICs found: 13&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq10 dev 0 index 08 MAC: 00c8.8b7d.3576&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq10 dev 0 index 07 MAC: 00c8.8b7d.357a&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq05 dev 0 index 06 MAC: 00c8.8b7d.3575&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq05 dev 0 index 05 MAC: 00c8.8b7d.3579&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq10 dev 0 index 04 MAC: 00c8.8b7d.3574&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq10 dev 0 index 03 MAC: 00c8.8b7d.3578&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq05 dev 0 index 02 MAC: 00c8.8b7d.3573&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq05 dev 0 index 01 MAC: 00c8.8b7d.3577&lt;BR /&gt;i82574L rev00 Gigabit Ethernet @ irq11 dev 0 index 00 MAC: 00c8.8b7d.3572&lt;BR /&gt;en_vtun rev00 Backplane Control Interface @ index 09 MAC: 0000.0001.0001&lt;BR /&gt;en_vtun rev00 Backplane Int-Mgmt Interface @ index 10 MAC: 0000.0001.0003&lt;BR /&gt;en_vtun rev00 Backplane Ext-Mgmt Interface @ index 11 MAC: 0000.0000.0000&lt;BR /&gt;en_vtun rev00 Backplane Tap Interface @ index 12 MAC: 0000.0100.0001&lt;BR /&gt;Encryption hardware device : Cisco ASA Crypto on-board accelerator (revision 0x1)&lt;BR /&gt;Boot microcode : CNPx-MC-BOOT-2.00&lt;BR /&gt;SSL/IKE microcode : CNPx-MC-SSL-SB-PLUS-0005&lt;BR /&gt;IPSec microcode : CNPx-MC-IPSEC-MAIN-0026&lt;/P&gt;&lt;P&gt;ciscoasa login: cisco&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;****************************** Warning *******************************&lt;BR /&gt;This product contains cryptographic features and is&lt;BR /&gt;subject to United States and local country laws&lt;BR /&gt;governing, import, export, transfer, and use.&lt;BR /&gt;Delivery of Cisco cryptographic products does not&lt;BR /&gt;imply third-party authority to import, export,&lt;BR /&gt;distribute, or use encryption. Importers, exporters,&lt;BR /&gt;distributors and users are responsible for compliance&lt;BR /&gt;with U.S. and local country laws. By using this&lt;BR /&gt;product you agree to comply with applicable laws and&lt;BR /&gt;regulations. If you are unable to comply with U.S.&lt;BR /&gt;and local laws, return the enclosed items immediately.&lt;/P&gt;&lt;P&gt;A summary of U.S. laws governing Cisco cryptographic&lt;BR /&gt;products may be found at:&lt;BR /&gt;&lt;A href="http://www.cisco.com/wwl/export/crypto/tool/stqrg.html" target="_blank" rel="noopener"&gt;http://www.cisco.com/wwl/export/crypto/tool/stqrg.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;If you require further assistance please contact us by&lt;BR /&gt;sending email to export@cisco.com.&lt;BR /&gt;******************************* Warning *******************************&lt;/P&gt;&lt;P&gt;Copyright (c) 1996-2016 by Cisco Systems, Inc.&lt;/P&gt;&lt;P&gt;Restricted Rights Legend&lt;BR /&gt;Use, duplication, or disclosure by the Government is&lt;BR /&gt;subject to restrictions as set forth in subparagraph&lt;BR /&gt;(c) of the Commercial Computer Software - Restricted&lt;BR /&gt;Rights clause at FAR sec. 52.227-19 and subparagraph&lt;BR /&gt;(c) (1) (ii) of the Rights in Technical Data and Computer&lt;BR /&gt;Software clause at DFARS sec. 252.227-7013.&lt;/P&gt;&lt;P&gt;Cisco Systems, Inc.&lt;BR /&gt;170 West Tasman Drive&lt;BR /&gt;San Jose, California 95134-1706&lt;/P&gt;&lt;P&gt;Ignoring startup configuration as instructed by configuration register.&lt;/P&gt;&lt;P&gt;INFO: Power-On Self-Test in process.&lt;BR /&gt;.......................................................................&lt;BR /&gt;INFO: Power-On Self-Test complete.&lt;/P&gt;&lt;P&gt;INFO: Starting HW-DRBG health test...&lt;BR /&gt;INFO: HW-DRBG health test passed.&lt;/P&gt;&lt;P&gt;INFO: Starting SW-DRBG health test...&lt;BR /&gt;INFO: SW-DRBG health test passed.&lt;BR /&gt;Typ&lt;BR /&gt;Login incorrect&lt;BR /&gt;ciscoasa login: cisco&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;Login incorrect&lt;BR /&gt;ciscoasa login:&lt;/P&gt;</description>
      <pubDate>Mon, 29 Aug 2022 23:42:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678400#M1093039</guid>
      <dc:creator>parcelsa</dc:creator>
      <dc:date>2022-08-29T23:42:13Z</dc:date>
    </item>
    <item>
      <title>Re: Locked out of ASA 5525-X - Username and password unknown</title>
      <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678457#M1093041</link>
      <description>&lt;P&gt;this guide clean and explaining step by step.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-knowledge-base/asa-password-recovery/ta-p/3126046" target="_blank"&gt;https://community.cisco.com/t5/security-knowledge-base/asa-password-recovery/ta-p/3126046&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Aug 2022 05:28:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678457#M1093041</guid>
      <dc:creator>Kasun Bandara</dc:creator>
      <dc:date>2022-08-30T05:28:16Z</dc:date>
    </item>
    <item>
      <title>Re: Locked out of ASA 5525-X - Username and password unknown</title>
      <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678954#M1093076</link>
      <description>&lt;P&gt;I have tried that. As you can see in the output it still prompts for a username and password&lt;/P&gt;</description>
      <pubDate>Tue, 30 Aug 2022 23:02:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678954#M1093076</guid>
      <dc:creator>parcelsa</dc:creator>
      <dc:date>2022-08-30T23:02:22Z</dc:date>
    </item>
    <item>
      <title>Re: Locked out of ASA 5525-X - Username and password unknown</title>
      <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678989#M1093078</link>
      <description>&lt;P&gt;Your ASA is running the FTD image so the procedure to recover the password for ASA running ASA image will not work. We can see the image from the following:&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;Use ESC to interrupt boot and launch boot CLI.
Use SPACE to launch Cisco FTD immediately.&lt;/LI-CODE&gt;
&lt;P&gt;Instead, try the procedure for recovering the FTD password - break into rommon during the boot process (using ESC key as indicated above) and type "password_reset" (without the quotes).&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-2100-series/213257-password-recovery-procedure-for-fp2100-s.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-2100-series/213257-password-recovery-procedure-for-fp2100-s.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 31 Aug 2022 03:02:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4678989#M1093078</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-31T03:02:02Z</dc:date>
    </item>
    <item>
      <title>Re: Locked out of ASA 5525-X - Username and password unknown</title>
      <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4679010#M1093079</link>
      <description>&lt;P&gt;unfortunately there is not recognized command in Rommon for that.&lt;/P&gt;&lt;P&gt;See below.&lt;/P&gt;&lt;P&gt;----------------------------------------------------------------------------&lt;BR /&gt;&lt;EM&gt;Use BREAK or ESC to interrupt boot.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Use SPACE to begin boot immediately.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Boot interrupted.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;GigabitEthernet0/0&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Link is DOWN&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;MAC Address: 00c8.8b7d.3577&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;EM&gt;Use ? for help.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;rommon #0&amp;gt; password_reset&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;Invalid or incorrect command. Use 'help' for help.&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;rommon #0&amp;gt; ?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Variables: Use "sync" to store in NVRAM&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;ADDRESS= &amp;lt;addr&amp;gt; local IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;CONFIG= &amp;lt;name&amp;gt; config file path/name&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;GATEWAY= &amp;lt;addr&amp;gt; gateway IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;IMAGE= &amp;lt;name&amp;gt; image file path/name&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;LINKTIMEOUT= &amp;lt;num&amp;gt; Link UP timeout (seconds)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;PKTTIMEOUT= &amp;lt;num&amp;gt; packet timeout (seconds)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;PORT= &amp;lt;name&amp;gt; ethernet interface port&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;RETRY= &amp;lt;num&amp;gt; Packet Retry Count (Ping/TFTP)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;SERVER= &amp;lt;addr&amp;gt; server IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;VLAN= &amp;lt;num&amp;gt; enable/disable DOT1Q tagging on the selected port&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Commands:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;? valid command list&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;address &amp;lt;addr&amp;gt; local IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;boot &amp;lt;args&amp;gt; boot an image, valid args are:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- "image file spec" and/or&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- "cfg=&amp;lt;config file spec&amp;gt;"&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;clear clear interface statistics&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;confreg &amp;lt;value&amp;gt; set hex configuration register&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;dev display platform interface devices&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;erase &amp;lt;arg&amp;gt; erase storage media&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;file &amp;lt;name&amp;gt; application image file path/name&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;gateway &amp;lt;addr&amp;gt; gateway IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;gdb &amp;lt;cmd&amp;gt; edit image gdb settings&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;help valid command list&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;history display command history&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;interface &amp;lt;name&amp;gt; ethernet interface port&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;no &amp;lt;feat&amp;gt; clear feature settings&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;ping &amp;lt;addr&amp;gt; send ICMP echo&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;reboot halt and reboot system&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;reload halt and reboot system&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;repeat &amp;lt;arg&amp;gt; repeat previous command, valid arguments:&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- no arg: repeat last command&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- number: index into command history table&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;- string: most recent 1st arg match in command history table&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;reset halt and reboot system&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;server &amp;lt;addr&amp;gt; server IP address&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;set display all variable settings&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;show &amp;lt;cmd&amp;gt; display cmd-specific information&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;sync save variable settings in NVRAM&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;tftpdnld TFTP download&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;timeout &amp;lt;num&amp;gt; packet timeout (seconds)&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;trace toggle packet tracing&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;unset &amp;lt;varname&amp;gt; unset a variable name&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;rommon #1&amp;gt;&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 31 Aug 2022 03:44:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4679010#M1093079</guid>
      <dc:creator>parcelsa</dc:creator>
      <dc:date>2022-08-31T03:44:24Z</dc:date>
    </item>
    <item>
      <title>Re: Locked out of ASA 5525-X - Username and password unknown</title>
      <link>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4679016#M1093080</link>
      <description>&lt;P&gt;I was afraid of that. It looks that that procedure only works on the Firepower hardware with FXOS running.&lt;/P&gt;
&lt;P&gt;You should be able to reimage altogether. Follow this procedure:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/reimage/asa-ftd-reimage.html#id_51368" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/quick_start/reimage/asa-ftd-reimage.html#id_51368&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 31 Aug 2022 04:11:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/locked-out-of-asa-5525-x-username-and-password-unknown/m-p/4679016#M1093080</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-08-31T04:11:56Z</dc:date>
    </item>
  </channel>
</rss>

