FWSM Production - Unable to get into 'Config t'

Unanswered Question
Jun 20th, 2009


I am stuck in Production environment. I did some changes. And now I am not able to do 'config t' on FWSM. THe response is 'ERROR: Command authorization failed'

Currently, there are total of 3 users. One is privilege level 2 (admin) and other two belong to privilege level 5. No user for privilege level 15.

I get into FWSM via ssh directly or via ssh into 6500 and then sessioning into FWSM.

How can I retain the privilege level 15 on FWSM. I am not close to the 6500 so I have not tried direct console.

I have not saved the configurations. The last change I did was 'aaa authorization command LOCAL' while 'aaa authentiction enable console LOCAL' was already present. Since there was no user with privilege level 15, and the admin was on level 2, now I am restricted to everything.

The current user config is while doing sh run

username admin password xxxxx encrypted

enable password yyyyyy encrypted

Please assist.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
tech_trac Sat, 06/20/2009 - 11:37

Thanks. Is there a way to recover from lock out situation without doing FWSM reboot.

I would like to avoid it since it is in Production.


This Discussion