10-14-2011 04:12 AM - edited 07-03-2021 08:55 PM
Hi,
I have been wondering whether we can retrieve a lost WPA password from our WLC.
All I see int he config is
wlan security static-wep-key encryption 4 104 <mode unknown> <passwd hidden> 1
Any ideas?
10-14-2011 08:58 AM
Hello Martin,
We have a procedure to retrieve WEP keys from the WLC, however we cannot retrieve WPA keys. We use a stronger encryption algorithm for WPA which prevents a simple retrieval process.
You might have a wireless client that has the option to "show key" in the wireless profile that could help here, but unfortunately if the key has been lost you may need to re-configure it.
-Pat
10-17-2011 12:52 AM
Hey Pat,
thank you for the info. Can you please share a link to a Cisco website with me for the procedure? All I find is password recovery for WLC. It might not help with this particular case, but might come in handy in the future.
Thank you,
Martin
10-17-2011 09:17 AM
Hi Martin,
I don't think we have any documentation for the WEP recovery procedure, I will outline the steps for you quickly, but this will only work for WEP:
From the WLC CLI:
config passwd-cleartext enable
config switchconfig secret-obfuscation disable
Then, upload your configuration file via tftp/file upload (this will take longer than normal config uploads, need to be running WLC 6.0/7.0 I believe).
When you open your configuration file, the WEP key will be listed in the command, the relevant portion is the leading HEX section before all of the zeros. You can convert those hex values to ascii if desired.
-Pat
10-17-2011 09:49 AM
Pat -- Great post!
09-02-2014 01:22 PM
This procedure saved me from having to retype 223 passwords for local net users, on an upgrade, as the encrypted format one controller exported was not accepted by the newer controller.
Thanks. Really!
10-15-2011 05:48 AM
WPA / WPA2 PSK can be broken with CowPatty. It's based on a dicionary attack. With that being said you could spend forever trying to crack it ...
Oh, and BTW.. If you used PSK with windows zero config, I understand the PSK sits in the registration.
10-17-2011 12:55 AM
Hi George,
yeah, I have been thinking about trying to crack the password. The WLAN is unfortunately not used by PCs, but Cisco wi-fi phones. And they are manually configured. The person responsible lost the password so we are trying to help out.
Cheers,
Martin
11-28-2013 05:37 PM
Any luck of retireveing key for WPA2 from WLC?
I am having that issue as no body know what is the key being used.
11-28-2013 05:38 PM
Any luck of retireveing key for WPA2 from WLC?
I am having that issue as no body know what is the key being used.
The keys cannot be retrieved. It's encrypted.
You'll need to find someone who can hack it.
11-28-2013 07:02 PM
Thanks for advice Leo
11-28-2013 05:40 PM
Your better off getting that info from a windows 7 machine if one is configured for it. Windows 7 allows you to view the preshared key.
Sent from Cisco Technical Support iPhone App
11-28-2013 06:04 PM
Problem is it is used for Cisco Wireless Phones.
No PC is ever connected to it.
11-28-2013 06:31 PM
Sorry, but there is no way to retrieve the preshared key.
Thanks,
Scott
Help out other by using the rating system and marking answered questions as "Answered"
11-28-2013 07:02 PM
Thank you Scott for confirmation.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide