Wednesday, June 15, 2011

SRX - Root Password Recovery

To recover the root password:

Connect the management device to the SRX Firewall on Console port.

On the management device, start your asynchronous terminal emulation application (such as Microsoft Windows Hyperterminal) and select the appropriate COM

port to use (for example, COM1).
Configure the port settings as follows:
Bits per second: 9600
Data bits: 8
Parity: None
Stop bits: 1
Flow control: None

Now power cycle the SRX Firewall. Verify that the POWER LED on the front panel turns green.

The terminal emulation screen on your management device displays the boot sequence.

When the following prompt appears, press the Spacebar to access the router’s bootstrap loader command prompt:

Hit [Enter] to boot immediately, or space bar for command prompt.
Booting [kernel] in 9 seconds...

At the following prompt, enter boot -s to start up the system in single-user mode.

At the following prompt, enter recovery to start the root password recovery procedure.

Enter full pathname of shell or 'recovery' for root password recovery or RETURN for /bin/sh: recovery

Enter configuration mode in the CLI.

Set the root password. For example:

user@host# set system root-authentication plain-text-password
At the following prompt, enter the new root password. For example:

New password: juniper1
Retype new password: juniper1

At the second prompt, reenter the new root password.
After you have finished configuring the password, commit the configuration.

root@host# commit
commit complete
Exit configuration mode in the CLI.
Exit operational mode in the CLI.
At the prompt, enter y to reboot the router.

Reboot the system? [y/n] y

