Recovering an FWSM Password
Follow these steps to reload and erase the FWSM passwords:
1. Boot the FWSM into the maintenance partition:
Router# hw-module module slot-number reset cf:1 Router# session slot slot-number processor 1
From the Catalyst 6500 Supervisor IOS EXEC prompt, the FWSM in slot slot-number can be reset so that it reboots into its maintenance partition. Log in as the user root. The default root password is cisco.
2. Reset the passwords in the compact Flash configuration file:
root@localhost# clear passwd cf:partition number root@localhost# exit
|
Table 5-4. FWSM Compact Flash Partitions |
||
|
Partition |
Function |
Description |
|
cf:1 |
Maintenance |
Used for module file maintenance and upgrades |
|
cf:2 |
Network configuration |
Maintenance image network configuration |
|
cf:3 |
Crash dump |
Crashinfo contents |
|
cf:4 |
Application |
Firewall image and configuration |
|
cf:5 |
Application |
Alternative image and configuration |
To clear the passwords in the application partition, where the normal firewall image is executed, use partition-number 4 or 5, depending on which one contains the bootable image. For example, the clear passwd cf:4 command clears the passwords in the application partition 4 configuration file.
You are prompted to delete the password configuration commands (enable_1 becomes cisco; enable_15 becomes blank) and any AAA commands.
3. Reload the FWSM into the application partition:
Router# hw-module module slot-number reset cf:partition-number
Specify the partition number that contains the bootable firewall image.
The application partition image is booted. You can log in to the FWSM using the default passwords.
The FWSM contains two types of partitions you can boot: the maintenance partition and the application partition. You can reset the passwords in either partition by first booting into the opposite partition. For example, as the preceding sequence of steps illustrates, you can reset the application partition passwords by booting into the maintenance partition. You also can reset the maintenance partition passwords by booting into the application partition.
You cannot clear the passwords in the configuration of the partition that is booted, however. You can clear them only in a partition that is not currently in use.
Continue reading here: Routed and Transparent Firewall Modes
Was this article helpful?