cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
482
Views
20
Helpful
5
Replies

isakmp - pix506e

peterhong
Level 1
Level 1

Hello,

When I transfer the text of my old pix's configuration to a text file, the "isakmp key" doesn't come out, all I see is "*********". I am in the "config t" mode. Can you show me how. I have a full access of my old Pix506e. Thank you.

Peter

5 Replies 5

mj11
Level 3
Level 3

Hi Peter

I think there are 2 ways of doing this:

sh tech-support detail | in isakmp

or set up a TFTP server and use command

write net

Then you can look the configuration file on the TFTP server and check the passwords.

Please rate post.

Regards MJ

I tried out both solutions on a PIX506E. The tech-support does not work but the TFTP server does.

Thanks! I also had the need to do this today.

Regards,

Paulo

pjhenriqs
Level 1
Level 1

I don't know if this is true for all PIX/ASA versions but in some you can go into the ASDM/PDM and check the pre-shared key (for some reason it's not encrypted on the web interface).

Not sure that this is the case with you.

pjhenriqs
Level 1
Level 1

It turns out that the TFTP functionality is a Cisco bug.

It makes sense that they fix it since TFTP is not safe. So, in the future, just remind your passwords because there won't be anyway to recover them it seems.

Regards,

Paulo

santukumar
Level 1
Level 1

U can changed it through PIX GUI or PDM.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: