This is how to fix the problem on your hand.

Because the PIX firewall was configured to use AAA authentication, even 
after when you use the npXX.bin to erase the password, chance is that you 
will NOT be able to log onto the PIX because the configuration is STILL 
there, only the password has been reset.  I am pretty certained that the AAA 
server is located on the network that the INSIDE interface resides.  In that 
case, you would have to physically remove the cable that is connected to the 
INSIDE interface.  That way, the PIX will be cutoff from the AAA server.  
When you first logon (from console port), you will still prompt for 
username; since AAA server is not reachable, the username you will be using 
is "pix".  The password you will use for username pix will be "cisco" or 
"pixfirewall" or "pixadmin" (it has been a while since I did this).  That's 
about it.

Let me know if you have questions.

A. Lam
Juniper Network Certified Internet Specialist (JNCIS)


>From: "Peter B" 
>Reply-To: "Peter B" 
>To: [EMAIL PROTECTED]
>Subject: Getting past aaa password on PIX 515 [7:26562]
>Date: Fri, 16 Nov 2001 19:12:32 -0500
>
>Does anyone know a way to get past the Username: after using the
>no passord utility on a PIX 515 it claims to erase the config.
>I have now tried every np*.bin on Cisco's page...
>this is really getting painfull.
_________________________________________________________________
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=26603&t=26562
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to