JediFonger
2[H]4U
- Joined
- Jan 2, 2003
- Messages
- 2,777
hey ya'll,
I'm an admin@a small network. We have a older Cisco PIX 501 that hadn't been used yet. The FW's just been sitting there. No one knows the PW. The only way to reset it is with the blue serial console cable. Yes I'm aware of all these resources:
http://www.cisco.com/en/US/products...ducts_password_recovery09186a008009478b.shtml
http://www.experts-exchange.com/Security/Firewalls/Q_21244026.html
http://www.tech-recipes.com/cisco_firewall_tips639.html
I'm using Tera Term as the terminal, com1 is enabled and I can communicate with the PIX no problem. I can boot into the monitor> CLI. I'm also using the Solarwind TFTP server. I've tried following all of the directions but I can't reset the pw cause I'm unable to ping the firewall and the tftp server from the monitor> CLI.
Settings:
-PIX's internal IP is 192.168.1.1 (same ole', same ole'), gateway's the same. external IP&config is configured to a static IP on internet.
-PC's ethernet address is 192.168.1.2, gateway 192.168.1.1. i've tried using to do it through the external connection using diff set of IPs similar to the external IP configs, but that didn't work either. i was trying to replicate what the cisco instructions said, but can't ping anything.
Here are the combos of how I've connected all of the components.
combo#1:
-PC to PIX via blue serial console cable ONLY.
combo#2:
-PC to PIX via console cable
-PC's ethernet to PIX's internal ethernet (tried crossover cables as well)
combo#3:
-PC to PIX via console cable
-PC's ethernet to PIX's external ethernet (tried crossover cables as well)
questions:
1. how am i supposed to physically connect all of the components for a pw reset.
2. looking at the solarwind tftp server's help files, it looks like the status screen is supposed to say it's getting info from the gateway:
i'm not getting anything. the same screen is blank. The reset bin file location is correct, i already set it to send/receive, the IP address is correct.
3. am i supposed to be able to ping the fw's IP for eth0 and the tftp server's IP from the monitor>? the instructions say i should be able to before transferring the bin file.
4. when in monitor> mode i can use window's command prompt to ping 192.168.1.2 but not 192.168.1.1. if i can't do so in windows, how can i do it via PIX console's CLI?
i'm stuck. any suggestions?
I'm an admin@a small network. We have a older Cisco PIX 501 that hadn't been used yet. The FW's just been sitting there. No one knows the PW. The only way to reset it is with the blue serial console cable. Yes I'm aware of all these resources:
http://www.cisco.com/en/US/products...ducts_password_recovery09186a008009478b.shtml
http://www.experts-exchange.com/Security/Firewalls/Q_21244026.html
http://www.tech-recipes.com/cisco_firewall_tips639.html
I'm using Tera Term as the terminal, com1 is enabled and I can communicate with the PIX no problem. I can boot into the monitor> CLI. I'm also using the Solarwind TFTP server. I've tried following all of the directions but I can't reset the pw cause I'm unable to ping the firewall and the tftp server from the monitor> CLI.
Settings:
-PIX's internal IP is 192.168.1.1 (same ole', same ole'), gateway's the same. external IP&config is configured to a static IP on internet.
-PC's ethernet address is 192.168.1.2, gateway 192.168.1.1. i've tried using to do it through the external connection using diff set of IPs similar to the external IP configs, but that didn't work either. i was trying to replicate what the cisco instructions said, but can't ping anything.
Here are the combos of how I've connected all of the components.
combo#1:
-PC to PIX via blue serial console cable ONLY.
combo#2:
-PC to PIX via console cable
-PC's ethernet to PIX's internal ethernet (tried crossover cables as well)
combo#3:
-PC to PIX via console cable
-PC's ethernet to PIX's external ethernet (tried crossover cables as well)
questions:
1. how am i supposed to physically connect all of the components for a pw reset.
2. looking at the solarwind tftp server's help files, it looks like the status screen is supposed to say it's getting info from the gateway:
i'm not getting anything. the same screen is blank. The reset bin file location is correct, i already set it to send/receive, the IP address is correct.
3. am i supposed to be able to ping the fw's IP for eth0 and the tftp server's IP from the monitor>? the instructions say i should be able to before transferring the bin file.
4. when in monitor> mode i can use window's command prompt to ping 192.168.1.2 but not 192.168.1.1. if i can't do so in windows, how can i do it via PIX console's CLI?
i'm stuck. any suggestions?