cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
61575
Views
23
Helpful
14
Replies

Retrieve WLAN password from WLC

Martin Smid
Level 1
Level 1

Hi,

I have been wondering whether we can retrieve a lost WPA password from our WLC.

All I see int he config is 

wlan security static-wep-key encryption 4 104 <mode unknown> <passwd hidden> 1

Any ideas?

14 Replies 14

pcroak
Cisco Employee
Cisco Employee

Hello Martin,

We have a procedure to retrieve WEP keys from the WLC, however we cannot retrieve WPA keys. We use a stronger encryption algorithm for WPA which prevents a simple retrieval process.

You might have a wireless client that has the option to "show key" in the wireless profile that could help here, but unfortunately if the key has been lost you may need to re-configure it.

-Pat

Hey Pat,

thank you for the info. Can you please share a link to a Cisco website with me for the procedure? All I find is password recovery for WLC. It might not help with this particular case, but might come in handy in the future.

Thank you,

Martin

Hi Martin,

I don't think we have any documentation for the WEP recovery procedure, I will outline the steps for you quickly, but this will only work for WEP:

From the WLC CLI:

config passwd-cleartext enable

config switchconfig secret-obfuscation disable

Then, upload your configuration file via tftp/file upload (this will take longer than normal config uploads, need to be running WLC 6.0/7.0 I believe).

When you open your configuration file, the WEP key will be listed in the command, the relevant portion is the leading HEX section before all of the zeros. You can convert those hex values to ascii if desired.

-Pat

Pat -- Great post!

"Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin
___________________________________________________________

This procedure saved me from having to retype 223 passwords for local net users, on an upgrade, as the encrypted format one controller exported was not accepted by the newer controller.

Thanks. Really!

George Stefanick
VIP Alumni
VIP Alumni

WPA / WPA2 PSK can be broken with CowPatty. It's based on a dicionary attack. With that being said you could spend forever trying to crack it ...

Oh, and BTW.. If you used PSK with windows zero config, I understand the PSK sits in the registration.

"Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin
___________________________________________________________

Hi George,

yeah, I have been thinking about trying to crack the password. The WLAN is unfortunately not used by PCs, but Cisco wi-fi phones. And they are manually configured. The person responsible lost the password so we are trying to help out.

Cheers,

Martin

Any luck of retireveing key for WPA2 from WLC?

I am having that issue as no body know what is the key being used.

Any luck of retireveing key for WPA2 from WLC?

I am having that issue as no body know what is the key being used.

The keys cannot be retrieved.  It's encrypted. 

You'll need to find someone who can hack it.

Thanks for advice Leo

Your better off getting that info from a windows 7 machine if one is configured for it. Windows 7 allows you to view the preshared key.

Sent from Cisco Technical Support iPhone App

-Scott
*** Please rate helpful posts ***

Problem is it is used for Cisco Wireless Phones.

No PC is ever connected to it.

Sorry, but there is no way to retrieve the preshared key.

Thanks,

Scott

Help out other by using the rating system and marking answered questions as "Answered"

-Scott
*** Please rate helpful posts ***

Thank you Scott for confirmation.

Review Cisco Networking products for a $25 gift card