How to recover PASSWORD on Cisco PIX Firewall

There are situations when you need to recover the password on PIX Firewall. Below is the step by step guide to reset the password.

Pre-requisites :

You need the PIX Password Lockout Utility (which you must download from Cisco CCO), which includes the following files:
  • rawrite.exe (needed only for PIX machines with a floppy drive)
  • A file named as "npXX.bin", depending on the PIX software version you are running where XX represents release number e.g., for release 6.3 use file np63.bin

Step by Step Procedure:

  1. Execute the rawrite.exe file on your PC and answer the questions on the screen using the correct password recovery file.

  2. Install a serial terminal or a PC with terminal emulation software on the PIX console port.

  3. Verify that you have a connection with the PIX, and that characters are going from the terminal to the PIX, and from the PIX to the terminal.

    Note: Because you are locked out, you only see a password prompt.

  4. Insert the PIX Password Lockout Utility disk into the floppy drive of the PIX.

  5. Push the reset button on the front of the PIX. The PIX reboots from the floppy and prints this message:

    Erasing Flash Password. Please eject diskette and reboot.
  6. Eject the disk and press the reset button. You are now able to log in without a password. Press ENTER when you are prompted for a password.

  7. The default Telnet password after this process is “cisco.” There is no default enable password. Go into configuration mode and issue the passwd your_password command
    to change your Telnet password and the enable password your_enable_password
    command to create an enable password, and then save your configuration.

________________________________________________________________________________

To Receive FREE PIX Articles in Email...Click Here

________________________________________________________________________________