Access Security Guide K/KA/KB.15.15

3. Release the Reset button.
4. When the Test LED to the right of the Clear button begins flashing, release the Clear button.
It takes approximately 20-25 seconds for the switch to reboot. This process restores the switch
configuration to the factory default settings.
Enabling and disabling password recovery
Disabling the password recovery process means that the only method for recovering from a lost
manager username and password is to reset the switch to its factory-default configuration, removing
any non-default configuration settings.
CAUTION: Disabling password-recovery requires that factory-reset be enabled, and
locks out the ability to recover a lost manager username and password on the switch. In this event,
there is no way to recover from a lost manager username/password situation without resetting the
switch to its factory default configuration. This can disrupt network operation and make it necessary
to temporarily disconnect the switch from the network to prevent unauthorized access and other
problems while it is being reconfigured. Also, with factory-reset enabled, unauthorized users
can use the Reset +Clear button combination to reset the switch to factory default configuration
and gain management access to the switch.
Syntax:
[no]front-panel-security password-recovery
Enables or disables the ability to recover a lost password.
When enabled the switch allows management access through the password recovery
process described below. This provides a method for recovering from lost manager
usernames and passwords.
When disabled the password recovery process is disabled and the only way to
regain management access to the switch is to use the Reset+Clear button
combination. See “Restoring the factory default configuration” (page 43) to restore
the switch to its factory default configuration.
Default: Enabled.
44 Configuring Username and Password Security