發新話題
打印

[轉貼]Fortigate Firewall admin password recovery

[轉貼]Fortigate Firewall admin password recovery

http://dheep.net/?p=3

This article will explain how to recover a password from Fortigate with out erasing the configuration. A reboot of the Fortigate is required, so if the Fortigate is in production please do this procedure during the night when there is minimum business impact.

NOTE: The Hardware serial no. has been modified for security reasons. Console output is maked in blue.

  1. Connect a windows PC (or Laptop) to the console port of the Fortigate firewall.
  2. Use HyperTerminal to view Fortigate firewall’s console (make sure if you are able to see the login screen of the Fortigate)
  3. Reboot the firewall.
  4. While the hardware reboots it displays various status messages and Serial no. and halts with the login screen.
  5. Note down the Serial No. of the hardware.

Eg. FG100A123456789

Fortigate Console output

Ver:04000000

Serial number:FG100A123456789 ß make a note this serial no.

RAM activation

Total RAM: 256MB

Enabling cache…Done.

Scanning PCI bus…Done.

Allocating PCI resources…Done.

Enabling PCI resources…Done.

Zeroing IRQ settings…Done.

Verifying PIRQ tables…Done.

Disabling local APIC…Done.

Boot up, boot device capacity: 61MB.

Press any key to display configuration menu…

……

Reading boot image 1149913 bytes.

Initializing firewall…

System is started.

FORTIGATE100A login:

  1. In the login screen enter the following user name
    1. Login: maintainer
  2. use the following password
    1. password: bcpb[serial no.]

eg. bcpbFG100A123456789

NOTE: This procedure should be done within 20secs of the Fortigate reboot. Above 20secs you will not be able to login with ‘maintainer’ username. You have to start again you have to reboot the Fortigate.

Fortigate Console output

FORTIGATE100A login: maintainer

Password: ********************

Welcome !

FORTIGATE100A #

  1. enter the following commands one by one (this will reset the admin password)

· config system admin

· edit admin

· set password [password]

· end

Fortigate Console output

FORTIGATE100A # config system admin

FORTIGATE100A (admin) # edit admin

FORTIGATE100A (admin) # set password passsecure

FORTIGATE100A (admin) # end

FORTIGATE100A #

NOTE: remember to issue the command “end” else the new password will not take effect.

Reader Comments

Thank you very much! I was able to reset the admin password by just followinf these steps.

Thanks in a million!

#1 
 
WRITTEN BY DANNY ON JANUARY 20TH, 2009 @ 11:52 AM

Thanks a ton as this is a great help

I follow simple steps and my password recovered very well.

Thanks a TON
Kanwaljit Singh Oberoi

TOP

發新話題