03-28-2011 09:55 PM - edited 03-11-2019 01:14 PM
How do I get the Pre-Shared Key in Plain text rather than in XXXXX form when I take backup and what is the best tool available to take the backup of my ASA boxes.
Solved! Go to Solution.
03-28-2011 10:04 PM
The best tool to backup your ASA configuration is through the ASA Configuration backup tool itself.
ASDM --> Tools --> Backup Configurations --> and choose which files you want to backup
The backup file will be backup and zip, and if you open the zip file, it will contain the configuration files that has the pre-shared key in plain text.
Hope that helps.
03-28-2011 10:04 PM
The best tool to backup your ASA configuration is through the ASA Configuration backup tool itself.
ASDM --> Tools --> Backup Configurations --> and choose which files you want to backup
The backup file will be backup and zip, and if you open the zip file, it will contain the configuration files that has the pre-shared key in plain text.
Hope that helps.
03-28-2011 11:27 PM
Thank you for the reply Jennifer,
I tried from the ASDM and the zip file is only showing the Pre-Shared key in Start ( * ). It is not showing up in plain text.
Do you have any information about any other tool like Cisco Works that can help me? Can you tell me the information along with details like version number also?
03-29-2011 12:59 AM
I have just tested the backup configuration and the zip file that contains the pre-shared key is in the actual plain text format.
What version of ASDM are you running?
Did you back up both the running and start up config as well? Can you double check if it's in plain text? I just did exactly the same and I saw the plain text format of the pre-shared key.
Also if you grab the pre-shared key from command line, it will also show you the plain text.
Here is the example that I have run:
ASA# more system:running-config | b tunnel-group
tunnel-group 1.1.1.1 type ipsec-l2l
tunnel-group 1.1.1.1 ipsec-attributes
pre-shared-key cisco123
03-29-2011 01:18 AM
I am using ASDM 6.1
03-29-2011 01:33 AM
I had backup both the running and start up config.
But its not coming up on plain text.
Yes I am able to grab the pre-shared key from command line in plain text.
But I need to have it being done automatically backed up in plain text along with the remaining configuration.
I am using ASDM 6.1.
03-29-2011 03:12 AM
Please kindly upgrade to the latest version of ASDM that is supported by your ASA. BTW, what is your current ASA version?
03-29-2011 08:36 PM
Jennifer,
I nearly have 60 ASA firewalls.
They are mostly 5510 and few are 5505 and 5520.
Some are 8.0(3), 8.2(1), 7.2(2).
Please let me know what version supports which ASDM.
Thanks.
03-30-2011 06:41 PM
Here is the hardware software compatibility matrix for your reference:
http://www.cisco.com/en/US/docs/security/asa/compatibility/asamatrx.html
For all ASA 8.x version, you can use ASDM version 6.4.1
For ASA 7.x version, it is recommended to use ASDM version 5.2.4.
03-30-2011 09:47 PM
Jennifer,
Thank you for the information.
03-30-2011 11:05 PM
Great, thank you. Please kindly mark the post as answered so others can learn from your post. Thanks.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide