{"id":78,"date":"2009-01-25T21:13:18","date_gmt":"2009-01-25T20:13:18","guid":{"rendered":""},"modified":"2018-12-20T21:29:07","modified_gmt":"2018-12-20T20:29:07","slug":"catalyst-2960-password-recovery","status":"publish","type":"post","link":"https:\/\/nil.uniza.sk\/en\/catalyst-2960-password-recovery\/","title":{"rendered":"Catalyst 2960 &#8211; password recovery"},"content":{"rendered":"<h2>Recovering from a Lost or Forgotten Password<\/h2>\n<p>&nbsp;<\/p>\n<p>The default configuration for the switch allows an end user with physical access to the switch to recover from a lost password by interrupting the boot process during power-on and by entering a new password. These recovery procedures require that you have physical access to the switch.<\/p>\n<div class=\"Note1B\"><\/div>\n<hr class=\"Cautn1table\" \/>\n<p>&nbsp;<\/p>\n<p class=\"pN1_Note1\">Note <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"1\" height=\"2\" \/>On these switches, a system administrator can disable some of the functionality of this feature by allowing an end user to reset a password only by agreeing to return to the default configuration. If you are an end user trying to reset a password when password recovery has been disabled, a status message shows this during the recovery process.<\/p>\n<hr class=\"Cautn1table\" \/>\n<p>&nbsp;<\/p>\n<p>These sections describes how to recover a forgotten or lost switch password:<\/p>\n<p>&nbsp;<\/p>\n<p class=\"pBu1_Bullet1\">\u2022<img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"19\" height=\"2\" \/><a href=\"http:\/\/www.cisco.com\/en\/US\/docs\/switches\/lan\/catalyst2960\/software\/release\/12.2_25_see\/configuration\/guide\/swtrbl.html#wp1090048\">Procedure with Password Recovery Enabled<\/a><\/p>\n<p>&nbsp;<\/p>\n<p class=\"pBu1_Bullet1\">\u2022<img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"19\" height=\"2\" \/><a href=\"http:\/\/www.cisco.com\/en\/US\/docs\/switches\/lan\/catalyst2960\/software\/release\/12.2_25_see\/configuration\/guide\/swtrbl.html#wp1090113\">Procedure with Password Recovery Disabled<\/a><\/p>\n<p>&nbsp;<\/p>\n<p>You enable or disable password recovery by using the service password-recovery global configuration command. Follow the steps in this procedure if you have forgotten or lost the switch password.<\/p>\n<hr noshade=\"noshade\" \/>\n<p>&nbsp;<\/p>\n<p class=\"pSF_StepFirst\">Step 1 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Connect a terminal or PC with terminal-emulation software to the switch console port.<\/p>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">tep 2 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Set the line speed on the emulation software to 9600 baud.<\/p>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 3 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Power off the switch. Reconnect the power cord to the switch and, within 15 seconds, press the Mode button while the System LED is still flashing green. Continue pressing the Mode button until the System LED turns briefly amber and then solid green; then release the Mode button.<\/p>\n<p>&nbsp;<\/p>\n<p>Several lines of information about the software appear with instructions, informing you if the password recovery procedure has been disabled or not.<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u2022<img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"19\" height=\"2\" \/>If you see a message that begins with this:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx2_Example2\">\n<pre>The system has been interrupted prior to initializing the flash file system. The \r\nfollowing commands will initialize the flash file system\r\n<\/pre>\n<\/div>\n<p>&nbsp;<\/p>\n<p>proceed to the <a href=\"http:\/\/www.cisco.com\/en\/US\/docs\/switches\/lan\/catalyst2960\/software\/release\/12.2_25_see\/configuration\/guide\/swtrbl.html#wp1090048\">&#8222;Procedure with Password Recovery Enabled&#8220; section<\/a>, and follow the steps.<\/p>\n<p>&nbsp;<\/p>\n<p>\u2022<img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"19\" height=\"2\" \/>If you see a message that begins with this:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx2_Example2\">\n<pre>The password-recovery mechanism has been triggered, but is currently disabled. \r\n<\/pre>\n<\/div>\n<p>&nbsp;<\/p>\n<p>proceed to the <a href=\"http:\/\/www.cisco.com\/en\/US\/docs\/switches\/lan\/catalyst2960\/software\/release\/12.2_25_see\/configuration\/guide\/swtrbl.html#wp1090113\">&#8222;Procedure with Password Recovery Disabled&#8220; section<\/a>, and follow the steps.<\/p>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 4 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>After recovering the password, reload the switch:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch&gt; reload\r\nProceed with reload? [confirm] y\r\n<\/pre>\n<\/div>\n<div class=\"pEx1_Example1\"><\/div>\n<div class=\"pPreformatted\"><\/div>\n<hr class=\"Cautn1table\" \/>\n<p>&nbsp;<\/p>\n<h3>Procedure with Password Recovery Enabled<\/h3>\n<p>&nbsp;<\/p>\n<p>If the password-recovery mechanism is enabled, this message appears:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre>The system has been interrupted prior to initializing the flash file system. The following \r\ncommands will initialize the flash file system, and finish loading the operating system \r\nsoftware:\r\nflash_init\r\nload_helper\r\nboot\r\n<\/pre>\n<\/div>\n<div class=\"pEx1_Example1\"><\/div>\n<hr noshade=\"noshade\" \/>\n<p>&nbsp;<\/p>\n<p class=\"pSF_StepFirst\">Step 1 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Initialize the flash file system:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->switch: flash_init<\/pre>\n<\/div>\n<div class=\"pPreformatted\">Step 2 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>If you had set the console port speed to anything other than 9600, it has been reset to that particular speed. Change the emulation software line speed to match that of the switch console port.<\/div>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 3 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Load any helper files:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre>swtch: load_helper<\/pre>\n<\/div>\n<p class=\"pSN_StepNext\">Step 4 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Display the contents of flash memory:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre>switch: dir flash:<\/pre>\n<\/div>\n<p>The switch file system appears:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre>Directory of flash:\r\n   13  drwx         192   Mar 01 1993 22:30:48  c2960-lanbase-mz.122-25.FX\r\n   11  -rwx        5825   Mar 01 1993 22:31:59  config.text\r\n   18  -rwx         720   Mar 01 1993 02:21:30  vlan.dat\r\n16128000 bytes total (10003456 bytes free)<\/pre>\n<\/div>\n<p class=\"pSN_StepNext\">Step 5 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Rename the configuration file to config.text.old.<\/p>\n<p>&nbsp;<\/p>\n<p>This file contains the password definition.<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->switch: rename flash:config.text flash:config.text.old<\/pre>\n<\/div>\n<p>Step 6<\/p>\n<p><img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/><\/p>\n<p>Boot the system:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->switch: boot<\/pre>\n<\/div>\n<p>You are prompted to start the setup program. Enter N at the prompt:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Continue with the configuration dialog? [yes\/no]: N<\/pre>\n<\/div>\n<p class=\"pSN_StepNext\">Step 7 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>At the switch prompt, enter privileged EXEC mode:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch&gt; enable<\/pre>\n<\/div>\n<p class=\"pSN_StepNext\">Step 8 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Rename the configuration file to its original name:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch# rename flash:config.text.old flash:config.text \r\n<\/pre>\n<\/div>\n<div class=\"pPreformatted\">\n<pre><\/pre>\n<\/div>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 9 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Copy the configuration file into memory:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch# copy flash:config.text system:running-config \r\nSource filename [config.text]? \r\nDestination filename [running-config]?<\/pre>\n<\/div>\n<p>Press Return in response to the confirmation prompts.<\/p>\n<p>&nbsp;<\/p>\n<p>The configuration file is now reloaded, and you can change the password.<\/p>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 10 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Enter global configuration mode:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch# configure terminal<\/pre>\n<\/div>\n<p class=\"pSN_StepNext\">Step 11 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Change the password:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch (config)# enable secret password<\/pre>\n<\/div>\n<p>The secret password can be from 1 to 25 alphanumeric characters, can start with a number, is case sensitive, and allows spaces but ignores leading spaces.<\/p>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 12 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Return to privileged EXEC mode:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch (config)# exit \r\nSwitch# \r\n<\/pre>\n<\/div>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 13 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Write the running configuration to the startup configuration file:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch# copy running-config startup-config<\/pre>\n<\/div>\n<p>The new password is now in the startup configuration.<\/p>\n<div class=\"Note2\"><\/div>\n<hr class=\"Note2\" \/>\n<p>&nbsp;<\/p>\n<p class=\"pN2_Note2\">Note <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"6\" height=\"2\" \/>This procedure is likely to leave your switch virtual interface in a shutdown state. You can see which interface is in this state by entering the show running-config privileged EXEC command. To re-enable the interface, enter the interface vlan vlan-id global configuration command, and specify the VLAN ID of the shutdown interface. With the switch in interface configuration mode, enter the no shutdown command.<\/p>\n<hr class=\"Note2\" \/>\n<p>&nbsp;<\/p>\n<p class=\"pSN_StepNext\">Step 14 <img decoding=\"async\" src=\"http:\/\/www.cisco.com\/en\/US\/i\/templates\/blank.gif\" alt=\"\" width=\"5\" height=\"2\" \/>Reload the switch:<\/p>\n<p>&nbsp;<\/p>\n<div class=\"pEx1_Example1\">\n<pre><!--<code class=\"cExPlain\">-->Switch# reload\r\n<\/pre>\n<\/div>\n<p>&nbsp;<\/p>","protected":false},"excerpt":{"rendered":"<h2>\n\tRecovering from a Lost or Forgotten Password<\/h2>\n<p>\n\t&nbsp;<\/p>\n<p>\n\tThe default configuration for the switch allows an end user with physical access to the switch to recover from a lost password by interrupting the boot process during power-on and by entering a new password. These recovery procedures require that you have physical access to the switch.<\/p>\n<div class=\"Note1B\">\n\t&nbsp;<\/div>\n<hr class=\"Cautn1table\" \/>\n<p>\n\t&nbsp;<\/p>","protected":false},"author":7,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_seopress_robots_primary_cat":"","_seopress_titles_title":"","_seopress_titles_desc":"","_seopress_robots_index":"","_kad_blocks_custom_css":"","_kad_blocks_head_custom_js":"","_kad_blocks_body_custom_js":"","_kad_blocks_footer_custom_js":"","_kad_post_transparent":"","_kad_post_title":"","_kad_post_layout":"","_kad_post_sidebar_id":"","_kad_post_content_style":"","_kad_post_vertical_padding":"","_kad_post_feature":"","_kad_post_feature_position":"","_kad_post_header":false,"_kad_post_footer":false,"footnotes":""},"categories":[697,701,747,767],"tags":[],"class_list":["post-78","post","type-post","status-publish","format-standard","hentry","category-ccna-en","category-ccnp-en","category-practical_-_cisco-en","category-switching-en"],"taxonomy_info":{"category":[{"value":697,"label":"CCNA"},{"value":701,"label":"CCNP"},{"value":747,"label":"Practical - Cisco"},{"value":767,"label":"Switching"}]},"featured_image_src_large":false,"author_info":{"display_name":"admin","author_link":"https:\/\/nil.uniza.sk\/en\/author\/admin\/"},"comment_info":0,"category_info":[{"term_id":697,"name":"CCNA","slug":"ccna-en","term_group":0,"term_taxonomy_id":695,"taxonomy":"category","description":"","parent":695,"count":12,"filter":"raw","cat_ID":697,"category_count":12,"category_description":"","cat_name":"CCNA","category_nicename":"ccna-en","category_parent":695},{"term_id":701,"name":"CCNP","slug":"ccnp-en","term_group":0,"term_taxonomy_id":699,"taxonomy":"category","description":"","parent":695,"count":8,"filter":"raw","cat_ID":701,"category_count":8,"category_description":"","cat_name":"CCNP","category_nicename":"ccnp-en","category_parent":695},{"term_id":747,"name":"Practical - Cisco","slug":"practical_-_cisco-en","term_group":0,"term_taxonomy_id":745,"taxonomy":"category","description":"","parent":0,"count":17,"filter":"raw","cat_ID":747,"category_count":17,"category_description":"","cat_name":"Practical - Cisco","category_nicename":"practical_-_cisco-en","category_parent":0},{"term_id":767,"name":"Switching","slug":"switching-en","term_group":0,"term_taxonomy_id":765,"taxonomy":"category","description":"","parent":747,"count":2,"filter":"raw","cat_ID":767,"category_count":2,"category_description":"","cat_name":"Switching","category_nicename":"switching-en","category_parent":747}],"tag_info":false,"_links":{"self":[{"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/posts\/78","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/comments?post=78"}],"version-history":[{"count":0,"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/posts\/78\/revisions"}],"wp:attachment":[{"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/media?parent=78"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/categories?post=78"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nil.uniza.sk\/en\/wp-json\/wp\/v2\/tags?post=78"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}