Chapter 18 Troubleshooting 845

Boot user password

The default Boot user password cannot be changed, and can therefore never really be lost. If you have forgotten the Boot user password, see “Accessing the Nortel SNAS 4050 cluster” on page 775.

The reason the Boot user password cannot be changed is that, if you lost both the Administrator password and the Boot user password, the Nortel SNAS 4050 would be rendered completely inaccessible to all users except the Operator, who does not have rights to make configuration changes.

The fact that the Boot user password cannot be changed is not a security concern. The Boot user can only access the Nortel SNAS 4050 with a console connection using a serial cable, and it is assumed that the Nortel SNAS 4050 device is set up in a server room with restricted access.

A user fails to connect to the Nortel SNAS 4050 domain

The following are common reasons why a user may have difficulty authenticating to the Nortel SNAS 4050 domain or why a client connection cannot be established.

The user name or password is wrong.

The configured authentication server cannot be reached.

The group name retrieved from the authentication server does not exist on the Nortel SNAS 4050.

Trace tools

Use the /maint/starttrace command to trace the different steps involved in a specific process, such as authorization.

>>Main# maint/starttrace

Enter tags (list of all,aaa,dns,ssl,tg,snas) [all]:

aaa,ssl

Enter Domain (or 0 for all Domains) [0]:

Output mode (interactive/tftp/ftp/sftp) [interactive]:

Nortel Secure Network Access Switch 4050 User Guide

Page 845
Image 845
Nortel Networks manual Trace tools, User fails to connect to the Nortel Snas 4050 domain, Boot user password, Aaa,ssl