request system zeroize (FIPS)
request system zeroize
Remove all configuration information on the Routing Engines hypervisor and reset all key values. The command removes all data files, including customized configuration and log files, by unlinking the files from their directories. The command removes all user-created files from the system including all plain-text passwords, secrets, and private keys for SSH, local encryption, local authentication, IPsec, RADIUS, TACACS+, and SNMP. This command reboots the device and sets it to the factory default configuration. After the reboot, you cannot access the device through the management Ethernet interface. Log in through the console as root and start the Junos OS CLI by typing cli at the prompt.
Required Privilege Level
List of Sample Outputrequest system zeroize (FIPS)
When you enter this command, you are provided feedback on the status of your request.
request system zeroize (FIPS)
root@device: fips> request system zeroize
warning: System will be rebooted and may not boot without configuration Erase all data, including configuration and log files? [yes,no] (no) yes warning: zeroizing re0 : Switching to runlevel: 6 INIT: Sending processes the TERM signal root@porter3s1E-p2a-02:fips> stopping rsyslogd ... done Stopping OpenBSD Secure Shell server: sshdno /usr/sbin/sshd found; none killed jdm Error response from daemon: Driver aufs failed to remove root filesystem 31ff0cdaaa47d367954de0ca657bcf2d5e1913be3bd90f3d12ed32dc266c6819: rename /var/lib/docker/aufs/mnt/31ff0cdaaa47d367954de0ca657bcf2d5e1913be3bd90f3d12ed32dc266c6819 /var/lib/docker/aufs/mnt/31ff0cdaaa47d367954de0ca657bcf2d5e1913be3bd90f3d12ed32dc266c6819-removing: device or resource busy Error: failed to remove containers: [jdm] [ OK ] Stopping atd: OK Unmounting cgroups...umount: /sys/fs/cgroup: target is busy (In some cases useful info about processes that use the device is found by lsof(8) or fuser(1).) Done Stopping system message bus: dbus. stopping DNS forwarder and DHCP server: dnsmasq... stopped /usr/bin/dnsmasq (pid 11215 11213) done. Stopping docker: /etc/init.d/functions: line 286: usleep: command not found [ OK ] Unmounting fuse control filesystem. Unloading fuse module failed! Shutting down irqbalance: stopped irqbalance (pid 3357) done Stopping ntpd: done stopping rsyslogd ... done Stopping internet superserver: xinetd. Waiting for sanlock to stop: Success Clearing ebtables rulesets: filter nat broute done. ok Kdump has been stopped. Stopping crond: OK Stopping S.M.A.R.T. daemon: smartd. Stopping fan control daemon: fancontrol... no process in pidfile '/var/run/fancontrol.pid' found; none killed done. Stopping sensors logging daemon: sensord... stopped /usr/sbin/sensord (pid 3738) done. * Stopping virtualization library daemon: libvirtd Deconfiguring network interfaces... done. Stopping tcsd: tcsd (pid 3826 5058) is running... /etc/init.d/functions: line 286: usleep: command not found OK Stopping redis-server... /etc/rc6.d/K99lte.init: line 38: ltelog: command not found cp: cannot stat '/var/platform/lte_vm_xml_params': No such file or directory / error: failed to connect to the hypervisor error: no valid connection error: Failed to connect socket to '/var/run/libvirt/libvirt-sock': No such file or directory Sending all processes the TERM signal... Merlin_daemon: Exiting daemon Sending all processes the KILL signal... Unmounting remote filesystems... Deactivating swap... Unmounting local filesystems...