[上課筆記] Router password recover

請對此台2811路由器執行密碼回復程序:

1. 請檢查Router的configuration register
2. 請重開機,並中斷IOS解壓縮程序(ctrl+break)
3. 請更改configuration register值為0x2142
>confreg 2142
>reset
4. 重開機
5. 進入特權模式
6. 將startup-config 載入
7. 將密碼改為您需要的密碼
8. 將configuration register改回來0x2102
(config-register 0x2102)

--------------------------------------------

Router>en
Password:
Password:
Password:
% Bad secrets

Router>
Router>
Router>
Router>
Router>System Bootstrap, Version 12.1(3r)T2, RELEASE SOFTWARE (fc1)
Copyright (c) 2000 by cisco Systems, Inc.
cisco 2811 (MPC860) processor (revision 0x200) with 60416K/5120K bytes of memory

Self decompressing the image :
####################
monitor: command "boot" aborted due to user interrupt
rommon 1 > configreg 2142
rommon 2 > reset
System Bootstrap, Version 12.1(3r)T2, RELEASE SOFTWARE (fc1)
Copyright (c) 2000 by cisco Systems, Inc.
cisco 2811 (MPC860) processor (revision 0x200) with 60416K/5120K bytes of memory

Self decompressing the image :
########################################################################## [OK]
Restricted Rights Legend

Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.

cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706



Cisco IOS Software, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 12.4(15)T1, RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2007 by Cisco Systems, Inc.
Compiled Wed 18-Jul-07 06:21 by pt_rel_team
Image text-base: 0x400A925C, data-base: 0x4372CE20

This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to
export@cisco.com.
cisco 2811 (MPC860) processor (revision 0x200) with 60416K/5120K bytes of memory
Processor board ID JAD05190MTZ (4292891495)
M860 processor: part number 0, mask 49
2 FastEthernet/IEEE 802.3 interface(s)
239K bytes of non-volatile configuration memory.
62720K bytes of ATA CompactFlash (Read/Write)
Cisco IOS Software, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 12.4(15)T1, RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2007 by Cisco Systems, Inc.
Compiled Wed 18-Jul-07 06:21 by pt_rel_team


--- System Configuration Dialog ---

Continue with configuration dialog? [yes/no]: n


Press RETURN to get started!



Router>
Router>en
Router#copy srt
Router#copy startup-config riun
Router#copy startup-config running-config
Destination filename [running-config]?

428 bytes copied in 0.416 secs (1028 bytes/sec)
Router#config t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#enable cerr
Router(config)#enable cr?
password Assign the privileged level password
secret Assign the privileged level secret
Router(config)#enable sec
Router(config)#enable secret cisco
Router(config)#econf
Router(config)#config-register 0x24102
Router(config)#exit
%SYS-5-CONFIG_I: Configured from console by console
Router#cioopy run start
Router#copy run startup-config
Destination filename [startup-config]?
Building configuration...
[OK]
Router#exit









Router con0 is now available






Press RETURN to get started.













Router>
Router>en
Password:
Router#

留言