Dear all,
We cant access the Fortigat. We need to reset the admin account.
(fortigate virtual appliance) FGVM64-5.04-FW-build1011-151221
Its a virtual appliance running on Vmware. We are able to enter the config files.
So we can edit the files if needed.
Or how to enable the fortigate maintainer ? Its disabled.
We need to reset this by editing the config files directly. Thats the only
access we have, We mounted the system with a linux boot cd. So thats how we can enter the system.
Help needed urgent !!!!
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
hi,
as Dave Hall has already posted, put a new password in cleartext into the config file. The entry will be converted to the encrypted form ("ENC b0980a8fddsjkfdlj...") by FortiOS at the next reboot.
IF you can, boot up the FGT, 'restore' the config, and after the reboot you can use the new password.
IF you can't restore (because of lack of admin rights...) then you can put the config onto a USB stick, set the auto-config option (cf. CLI Reference), and reboot.
So you see, physical access control is key to a secure firewall!
If you have access to an unencrypted config file, just look for the config system admin section, then edit the password in the "admin" section. eg.
config system admin edit "admin" set password <enter new password> next end
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
Dave Hall wrote:The config file looks likt this:If you have access to an unencrypted config file, just look for the config system admin section, then edit the password in the "admin" section. eg.
config system admin edit "admin" set password <enter new password> next end
set password ENC AK1wTiFOMv7*******
Looks like a special password .. ENC AK1
Experience with this ? Will that work ? Will try and let you know.
Option 2 how to enable the maintainer account ?
Also i have 2 config files ?
cfg0000000001 and cfg0000000002 what file is the "master"
1 or 2 ?
hi,
as Dave Hall has already posted, put a new password in cleartext into the config file. The entry will be converted to the encrypted form ("ENC b0980a8fddsjkfdlj...") by FortiOS at the next reboot.
IF you can, boot up the FGT, 'restore' the config, and after the reboot you can use the new password.
IF you can't restore (because of lack of admin rights...) then you can put the config onto a USB stick, set the auto-config option (cf. CLI Reference), and reboot.
So you see, physical access control is key to a secure firewall!
ede_pfau wrote:hi,
as Dave Hall has already posted, put a new password in cleartext into the config file. The entry will be converted to the encrypted form ("ENC b0980a8fddsjkfdlj...") by FortiOS at the next reboot.
IF you can, boot up the FGT, 'restore' the config, and after the reboot you can use the new password.
IF you can't restore (because of lack of admin rights...) then you can put the config onto a USB stick, set the auto-config option (cf. CLI Reference), and reboot.
So you see, physical access control is key to a secure firewall!
Thnx i will test this fryday !!!! I keep you all updated :)
ede_pfau wrote:hi,
as Dave Hall has already posted, put a new password in cleartext into the config file. The entry will be converted to the encrypted form ("ENC b0980a8fddsjkfdlj...") by FortiOS at the next reboot.
IF you can, boot up the FGT, 'restore' the config, and after the reboot you can use the new password.
IF you can't restore (because of lack of admin rights...) then you can put the config onto a USB stick, set the auto-config option (cf. CLI Reference), and reboot.
So you see, physical access control is key to a secure firewall!
Here is my config as you can see i did change the password to admin.
After reboot password is still there but cant login
config system admin edit "admin" set accprofile "super_admin" set vdom "root" config dashboard-tabs edit 1 set name "Status" next end config dashboard edit 1 set tab-id 1 set column 1 next edit 2 set widget-type licinfo set tab-id 1 set column 1 next edit 3 set widget-type jsconsole set tab-id 1 set column 1 next edit 4 set widget-type sysres set tab-id 1 set column 2 next edit 5 set widget-type gui-features set tab-id 1 set column 2 next edit 6 set widget-type alert set tab-id 1 set column 2 set top-n 10 next end set password admin
UPDATE 2:
Is it possible that we are editing the wrong file ? Because all instructions do not work.
The file that we are editing is the Location: /config/cfg0000000001
Is there a other file binary and or encrypted ? Or in a database ?
Are we editing the correct file ?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.