Reference v4.1.0 Instruction Manual

286 Network OS Command Reference
53-1003115-01
fips root disable
2
fips root disable
Permanently disables root access to a switch for compliance with Federal Information Processing
Standards (FIPS).
Synopsis fips root disable
Operands None
Defaults Root access is enabled.
Command Modes Privileged EXEC mode
Description Use this command to disable root access to a switch permanently when preparing the switch for
FIPS compliance. Refer to the Network OS Administrator’s Guide for details about preparing a
switch for FIPS compliance.
Usage Guidelines Under normal operation, this command is hidden to prevent accidental use. Enter the unhide fips
command with password “fibranne to make the command available.
This command applies only in the standalone mode. It can be issued only from a user account with
the admin role assigned.
CAUTION
Once root access is disabled, it cannot be re-enabled.
Examples To disable root access to a switch:
switch# unhide fips
Password: *****
switch# fips root disable
This operation disables root account. Do you want to continue? [yes,NO] yes
See Also cipherset, fips selftests, fips zeroize, prom-access disable, show prom-access, unhide fips