Cisco IPS-4255-K9 Installation Guide - Page 285

Recovering the Password

Page 285 highlights

Chapter A Troubleshooting Recovering the Password When a disaster happens and you need to recover the sensor, try the following: 1. Reimage the sensor. 2. Log in to the sensor with the default user ID and password-cisco. Note You are prompted to change the cisco password. 3. Initialize the sensor. 4. Upgrade the sensor to the IPS software version it had when the configuration was last saved and copied. Warning Trying to copy the saved configuration without getting the sensor back to the same IPS software version it had before the disaster can cause configuration errors. 5. Copy the last saved configuration to the sensor. 6. Update clients to use the new key and certificate of the sensor. Reimaging changes the sensor SSH keys and HTTPS certificate, so you must add the hosts back to the SSN known hosts list. 7. Create previous users. For More Information • For the procedure for backing up a configuration file, see Creating and Using a Backup Configuration File, page A-3. • For the procedures for reimagine a sensor, see Chapter 12, "Upgrading, Downgrading, and Installing System Images." • For the procedure for using the setup command to initialize the sensor, see Chapter 10, "Initializing the Sensor." • For more information on obtaining IPS software and how to install it, see Obtaining Cisco IPS Software, page 11-1. • For the procedure for using a remote server to copy and restore the a configuration file, see Backing Up and Restoring the Configuration File Using a Remote Server, page A-3. • For the procedure for adding hosts to the SSH known hosts list, refer to Adding Hosts to the SSH Known Hosts Lists. • For the procedure for adding users and obtaining a list of the current users on the sensor, refer to Configuring User Parameters. Recovering the Password For most IPS platforms, you can now recover the password on the sensor rather than using the service account or reimaging the sensor. This section describes how to recover the password for the various IPS platforms. It contains the following topics: • Understanding Password Recovery, page A-8 • Recovering the Appliance Password, page A-8 • Recovering the AIM IPS Password, page A-10 OL-18504-01 Cisco Intrusion Prevention System Appliance and Module Installation Guide for IPS 7.0 A-7

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412

A-7
Cisco Intrusion Prevention System Appliance and Module Installation Guide for IPS 7.0
OL-18504-01
Chapter A
Troubleshooting
Recovering the Password
When a disaster happens and you need to recover the sensor, try the following:
1.
Reimage the sensor.
2.
Log in to the sensor with the default user ID and password—
cisco
.
Note
You are prompted to change the
cisco
password.
3.
Initialize the sensor.
4.
Upgrade the sensor to the IPS software version it had when the configuration was last saved and
copied.
Warning
Trying to copy the saved configuration without getting the sensor back to the same IPS software
version it had before the disaster can cause configuration errors.
5.
Copy the last saved configuration to the sensor.
6.
Update clients to use the new key and certificate of the sensor.
Reimaging changes the sensor SSH keys and HTTPS certificate, so you must add the hosts back to
the SSN known hosts list.
7.
Create previous users.
For More Information
For the procedure for backing up a configuration file, see
Creating and Using a Backup
Configuration File, page A-3
.
For the procedures for reimagine a sensor, see
Chapter
12, “Upgrading, Downgrading, and Installing
System Images.”
For the procedure for using the
setup
command to initialize the sensor, see
Chapter 10, “Initializing
the Sensor.”
For more information on obtaining IPS software and how to install it, see
Obtaining Cisco IPS
Software, page 11-1
.
For the procedure for using a remote server to copy and restore the a configuration file, see
Backing
Up and Restoring the Configuration File Using a Remote Server, page A-3
.
For the procedure for adding hosts to the SSH known hosts list, refer to
Adding Hosts to the SSH
Known Hosts Lists
.
For the procedure for adding users and obtaining a list of the current users on the sensor, refer to
Configuring User Parameters.
Recovering the Password
For most IPS platforms, you can now recover the password on the sensor rather than using the service
account or reimaging the sensor. This section describes how to recover the password for the various IPS
platforms. It contains the following topics:
Understanding Password Recovery, page A-8
Recovering the Appliance Password, page A-8
Recovering the AIM IPS Password, page A-10