Skip to main content

How to reset a Juniper SSG Firewall back to Factory Defaults

 To perform a hardware reset of your Firewall device to factory default settings, perform the following steps:

 

Note: If you have lost or forgotten the root username or password of your Firewall, it is necessary to reset the device to factory default settings.

Step one: Connect to the device with a console connection. For more information on accessing the device with a console connection, select from the list below:

* Establishing a Console Session on Your NetScreen-5XP, -5XT, or -5GT
* Accessing the Command Line Interface via the Console Port on Your NetScreen, SSG, or ISG Firewall device

Note: It is highly recommended to have a console connection while resetting the Firewall to Factory Defaults. A console connection allows you to see the progress of the reset procedure. This is definitely a little tricky so you'll want to see the console output.

Step two: Locate the Asset Recovery Pinhole on the front panel.

Note: For this example, we have selected a NetScreen-25/50 device.

ns25-50.gif

Step three: Using a thin, firm wire (such as a paper clip), push the pinhole for four to six seconds, and then release. A serial console message states that the Configuration Erasure Process has been initiated, and the system sends an SNMP/SYSLOG alert. The Status LED blinks amber / red once every second.

Step four: Wait for one-half to two seconds. After the first reset is accepted, the Power LED blinks green; the device is now waiting for the second reset push. The serial console message now reads, Waiting for 2nd confirmation.

Step five: Push the reset pinhole again for four to six seconds. The Status LED lights amber / red for one-half second, and then returns to the blinking green state.

Step six: The device resets to its original factory settings. When the device resets, the Status LED will turn amber /red for one-half second and then return to the blinking green state. The serial console message states Configuration Erase sequence accepted, unit reset. The system generates SNMP and SYSLOG alerts to configured SYSLOG or SNMP trap hosts.

Step seven: The device now reboots. The default factory settings are:

* System IP Address 192.168.1.1
* username netscreen
* password netscreen

Note: If you do not follow the complete sequence, the reset process cancels without any configuration change and the serial console message states Configuration Erasure Process aborted. The Status LED returns to blinking green. During a reset, there is no guarantee that the final SNMP alert sent to the receiver before the reset will be received.

 

Your rating: None Average: 5 (1 vote)