cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1076
Views
0
Helpful
3
Replies

Trying to reset PIX 501 password

bleujaegel
Level 1
Level 1

I've followed the instructions, and still am not able to pull the password reset file off my TFTP server. I'm running SecureCRT in serial emulation mode. I can connect to the router without a problem normally, but I want to know how to reset password in case of future emergency. Here is what I get when I try to ping the firewall inside interface (192.168.1.1). I cannot ping the TFTP server (192.168.1.35) either.

Use BREAK or ESC to interrupt flash boot.

Use SPACE to begin flash boot immediately.

Flash boot interrupted.

0: i8255X @ PCI(bus:0 dev:17 irq:9 )

1: i8255X @ PCI(bus:0 dev:18 irq:10)

Using 1: i82557 @ PCI(bus:0 dev:18 irq:10), MAC: 0008.a32b.89e6

Use ? for help.

monitor> address 192.168.1.1

address 192.168.1.1

monitor> file np63.bin

file np63.bin

monitor> server 192.168.1.35

server 192.168.1.35

monitor> timeout 1

timeout 1

monitor> ping 192.168.1.1

Sending 5, 100-byte 0xeb3c ICMP Echoes to 192.168.1.1, timeout is 1 seconds:

Success rate is 0 percent (0/5)

monitor>

What am I doing wrong? Thanks.

3 Replies 3

stomasko
Level 4
Level 4

I don't see the interface command in the output above. See the following site for the procedure and an example.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_password_recovery09186a008009478b.shtml

Hope this helps.

Steve

It chooses interface 1, which is correct. Here is where it is:

0: i8255X @ PCI(bus:0 dev:17 irq:9 )

1: i8255X @ PCI(bus:0 dev:18 irq:10)

Using 1: i82557 @ PCI(bus:0 dev:18 irq:10), MAC: 0008.a32b.89e6

I tried entering the interface manually, which didn't help.

You might want to ping the TFTP server not your own device, never tried it myself

on a pix 501:

Interface 0 = outside port

Interface 1 = inside port(switch)

You also need to set all the parameters: interface, address, server, file and if needed the gateway. (I've never set the timeout)

When you have done all that, yust type: tftp

And it should start loading from your tftp server.

To setup a TFTP server take a peek in this doc. :

http://www.cisco.com/en/US/products/sw/netmgtsw/ps2032/products_installation_guide_chapter09186a008007d777.html#wp1007898

Good luck,

ps: ssh pix/cisco, enable

Review Cisco Networking for a $25 gift card