Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Recover the Root Password for vSRX Virtual Firewall in a KVM Environment

If you forget the root password for a vSRX Virtual Firewall instance deployed in a KVM environment, use this password recovery procedure to reset the root password. (KB article 31790).

Note:

You need console access to recover the root password

To recover the root password for a vSRX Virtual Firewall instance:

  1. Reboot the vSRX Virtual Firewall instance by entering the virsh reboot command, specifying either domain-id or domain-name.
  2. Immediately attempt to login to the vSRX Virtual Firewall instance by entering the virsh console domain-name command to access the vSRX Virtual Firewall console.
    Note:

    We recommend that you specify domain-name when attempting the vSRX Virtual Firewall instance login. It is possible that domain-id might change after the vSRX Virtual Firewall instance reboot.

  3. After login you will see a prompt similar to Escape character is ^]. Press Enter two or three times until the boot process begins. Continue with the boot process until you see the following prompt:
  4. Press the space bar two or three times to stop the boot sequence, and then enter boot -s to login to single-user mode.
  5. Enter recovery to start the root password recovery procedure.

    Once the script terminates you will be in vSRX Virtual Firewall operational mode.

  6. Enter configuration mode in the CLI.
  7. Set the root password.
  8. Enter the new root password.
  9. At the second prompt, reenter the new root password.
  10. If you are finished configuring the new root password for the vSRX Virtual Firewall instance, commit the configuration.
  11. Exit from configuration mode.
  12. Exit from operational mode.
  13. Enter y to reboot the device.

    The start up messages display on the screen.

  14. Once again, press the space bar two or three times to access the bootstrap loader prompt.
  15. The vSRX Virtual Firewall instance starts up again and prompts you to enter a user name and password. Enter the newly configured password.