<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Exiting Expert Mode in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970538#M43452</link>
    <description>&lt;P&gt;Somehow my MC got stuck in Expert mode, and I need to perform an ACL rollback. Some schmo deleted the any any and killed ALL HTTP/SSH access to it,(not me).&amp;nbsp; I logged in via the VM console and got presented with ~$, which is the expert shell, but can't find anywhere how to return to the system command prompt.&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 13:42:43 GMT</pubDate>
    <dc:creator>tahscolony</dc:creator>
    <dc:date>2019-03-10T13:42:43Z</dc:date>
    <item>
      <title>Exiting Expert Mode</title>
      <link>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970538#M43452</link>
      <description>&lt;P&gt;Somehow my MC got stuck in Expert mode, and I need to perform an ACL rollback. Some schmo deleted the any any and killed ALL HTTP/SSH access to it,(not me).&amp;nbsp; I logged in via the VM console and got presented with ~$, which is the expert shell, but can't find anywhere how to return to the system command prompt.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 13:42:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970538#M43452</guid>
      <dc:creator>tahscolony</dc:creator>
      <dc:date>2019-03-10T13:42:43Z</dc:date>
    </item>
    <item>
      <title>The system command prompt</title>
      <link>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970539#M43454</link>
      <description>&lt;P&gt;The system command prompt (sfcli) is only available on sensors as far as I know. You may add a temporary rule to iptables to permit https access, reconfigure your acl via the web ui and everything should work just fine again (your temp rule will be overwritten too, so no need to delete it afterwards).&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Just do the following...&lt;/P&gt;
&lt;P&gt;sudo su -&amp;nbsp;&lt;/P&gt;
&lt;P&gt;iptables -I INPUT -p tcp --dport 443 -j ACCEPT&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Then goto FMC UI and configure your acl again.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Mark as helpful if this solved your issue or let me know if you have any additional questions&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2016 20:08:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970539#M43454</guid>
      <dc:creator>Oliver Kaiser</dc:creator>
      <dc:date>2016-11-09T20:08:54Z</dc:date>
    </item>
    <item>
      <title>I did some digging around and</title>
      <link>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970540#M43456</link>
      <description>&lt;P&gt;I did some digging around and found it to be regular linux underneath and was able to find that he didn't completely delete all rules, I still had access from our monitoring server and was able to gain GUI there and restore the broken rules.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2016 20:41:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970540#M43456</guid>
      <dc:creator>tahscolony</dc:creator>
      <dc:date>2016-11-09T20:41:22Z</dc:date>
    </item>
    <item>
      <title>Try the 'clish' command</title>
      <link>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970541#M43457</link>
      <description>&lt;H5 class="prettyprint"&gt;Try the 'clish' command&lt;/H5&gt;</description>
      <pubDate>Wed, 09 Nov 2016 21:34:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/exiting-expert-mode/m-p/2970541#M43457</guid>
      <dc:creator>Cory Brown</dc:creator>
      <dc:date>2016-11-09T21:34:49Z</dc:date>
    </item>
  </channel>
</rss>

