C-10
Cisco Intrusion Prevention System Sensor CLI Configuration Guide for IPS 7.2
OL-29168-01
AppendixC Troubleshooting
Password Recovery
Recovering the Password for the ASA 5500-X IPS SSP
You can reset the password to the default (cisco) for the ASA5500-X IPS SSP using the CLI or the
ASDM. Resetting the password causes it to reboot. IPS services are not available during a reboot.
Note
To reset the password, you must have ASA 8.6.1 or later.
Use the sw-module module ips password-reset command to reset the password to the default cisco. If
the module in the specified slot has an IPS version that does not support password recovery, the
following error message is displayed:
ERROR: the module in slot <n> does not support password recovery.
To reset the password on the ASA 5500-X IPS SSP, follow these steps:
Step 1
Log into the adaptive security appliance and enter the following command:
asa# sw-module module ips password-reset
Reset the password on module ips? [confirm]
Step 2
Press Enter to confirm.
Password-Reset issued for module ips.
Step 3
Verify the status of the module. Once the status reads
Up
, you can session to the ASA 5500-X IPS SSP.
asa# show module ips
Mod Card Type Model Serial No.
--- -------------------------------------------- ------------------ -----------
ips ASA 5555-X IPS Security Services Processor ASA5555-IPS FCH151070GR
Mod MAC Address Range Hw Version Fw Version Sw Version
--- --------------------------------- ------------ ------------ ---------------
ips 503d.e59c.7c4c to 503d.e59c.7c4c N/A N/A 7.2(1)E4
Mod SSM Application Name Status SSM Application Version
--- ------------------------------ ---------------- --------------------------
ips IPS Up 7.2(1)E4
Mod Status Data Plane Status Compatibility
--- ------------------ --------------------- -------------
ips Up Up
Mod License Name License Status Time Remaining
--- -------------- --------------- ---------------
ips IPS Module Enabled 210 days
Step 4
Session to the ASA 5500-X IPS SSP.
asa# session ips
Opening command session with module ips.
Connected to module ips. Escape character sequence is 'CTRL-^X'.
Step 5
Enter the default username (cisco) and password (cisco) at the login prompt.
login: cisco
Password: cisco
You are required to change your password immediately (password aged)
Changing password for cisco.
(current) password: cisco