Setting Cisco Passwords and Password Security 93
Router(config)#username roland password 7
darktower
Creates a locally stored
password of darktower for
the username roland. The
password is encrypted
with the weak Vigenere
algorithm.
Router(config)#username roland secret 0
darktower
Enables enhanced
username password
security that uses MD5
hashing on the plaintext
password darktower
Router(config)#username roland secret 5
$1$ExxV$YMPap5SrXimAKcWilh2Sp1
Enables enhanced
username password
security that uses a
previously encrypted
MD5 secret
NOTE: MD5 encryption
is considered to be
a strong encryption
method and is therefore
not retrievable. You
cannot use MD5
encryption with
protocols that require
plaintext passwords,
such as CHAP.
94 Securing ROMMON
Securing ROMMON
CAUTION: Using the no service password-recovery command prevents all
access to ROMMON. You cannot perform a password recovery with the Break
sequence to enter ROMMON.
A valid Cisco IOS image should be in ?¬‚ash memory before this command is
entered. If you do not have a valid image in ?¬‚ash, you will not be able to use the
ROMMON> xmodem command to load a new ?¬‚ash image.
NOTE: To recover a device once the no service password-recovery command
has been entered, press the Break key within 5 seconds after the image
decompresses during the boot.
Pages:
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88