Cisco 3560G-48TS Login
We are replacing our managed switch and need to log in to see how they are setup. One problem is that they were setup 5 years ago by an integration company that has gone out of business. I was wondering if Cisco has a overriding username and password?
Thanks in advance...
Ben S.
Password recovery for switches, read THIS.
Similar Messages
-
Hello
I have an Cisco 3560G with an version 15.0(1)SE2 IOS. I want to forward Jumbo frames (ISCSI packets) through this switch.
On my SAN, each interface have been configured on 9000 bytes.
On this switch, I have this output :
Sw1#sh system mtu
System MTU size is 1500 bytes
System Jumbo MTU size is 9000 bytes
System Alternate MTU size is 1500 bytes
Routing MTU size is 1500 bytes
Sw1#
I would like to know how to increase, if possible, the Jumbo MTU to 9198 bytes. I want to do that because the 9000 bytes ISCSI packets normally will been encapsuled using vlan so the ethernet packet will increase to 9022 (Ethernet 18bytes and extra 4 bytes for vlan).
If the Jumbo MTU reconfiguration is not possible, the ISCSI packets will be fragmented each time it forwarded through the switch isn't it ??
Thanks in advance for your help.
Have a nice day
MattHi Bilal
Thanks for your reply.
In the document, Cisco add note on the top of the webpage on the Components Used : "Note: In all the examples in this document, unless specifically mentioned, all values that quote MTU in bytes omit the 18 bytes for the Ethernet header and Frame Check Sequence (FCS)."
So In my mind, the 3560G switch will not drop 9018 ethernet bytes but will normally drop the vlan Jumbo frames (9022 ethernet bytes).
I think Cisco will included the Ethernet header and FCS on the document because networks admins included it and not think to on payload data.
Matt -
Cisco mds9216 fabric login issue
Hi,
I have 2 cisco mds 9216 login. I restarted the fabric manager and database service to refresh the GUI but since then iam unable to login into the fabric manager. It is stuck as "Discovering the Network",please wait.Hello Vu Phan,
I would have logged a support call but these switches are too old and not under any support contract.Hence checking for answers in the forum. -
Cisco ISE Guest Login without provisioning
Hi,
I have setup the ise based on https://supportforums.cisco.com/docs/DOC-26442 whereby I have an authorization rule for CWA and an authorization rule for guestflow with provisioning. All is working great, however I was wondering if it may be possible to setup the ise with the following scenarios with dual ssid:
1. user login to guest ssid and redirects to guest web portal and input guest credential created by sponsor (this is working well)
2. user login to guest ssid and redirects to guest web portal and input credential from AD goes to provisioning (this is working well)
3. user login to guest ssid and redirects to guest web portal and input credential from specified AD group and get internet/network access without provisioning.
For point 3, I was wondering if it may be possible and if so on how it may be accomplished? I have attached the present Authz rule for reference as well as the rule I have tried which does not seems to be working.
Any help is appreciated!
Thanks.No it doesn't, you can test the same , while editing the wireless SSID profile, opting authentication method as smart card other than PEAP/EAP.
-
Hi,
I have a weird problem; after a guest user account has been created on Cisco ise 1.1.4 patch 8; when the guest user is redirected to the ise guest portal; the first login is always unsuccessful. Upon entering the login credential and password correctly; the client would be redirected to the same login page. Upon retrying the process a few times; it would succeed after 2-3 times.
On the ise authentication; I see a guest authentication error; "Guest Authentication Failed : 86020: Unknown exception" with only a single step seen on the logs for troubleshooting "5431 Guest Authentication Failed"
I would like to check if anyone has seen such an issue/behaviour?
Any suggestions is appreciated.
Thanks.No it doesn't, you can test the same , while editing the wireless SSID profile, opting authentication method as smart card other than PEAP/EAP.
-
Cisco UCS Director Login Problem
Hello Community,
I have recently installed Cisco UCS Director 5.1. According to the documentation the initial login requirements are admin for username and admin for password, see image;
http://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/ucs-director/vsphere-install-guide/5-1/b_Installing_UCSDirector_on_vSphere_5_1/b_Installing_UCSDirector_on_vSphere_5_1_chapter_010.html
However, authentication keeps on failing.
Any ideas?
Cheers
CarltonSergey,
If this is a real I2C issue, you may still see the same behavior on 2.0.x release if the I2C bus was not cleared before the upgrade. (in this moment I don't know if you recently performed an upgrade on the system or not)
I2C bus tranports information about the different components of the Unified System, this, meaning Chassis, IOMs, Fans, PSU, etc... What happens is that all those components try to send theit status update while other do the same and then the I2C bus gets overwhelmed, and then noone can really report their real status, so we usually recommend the customer ro reseat all major components, one at the time, to clear the bus and then do the upgrade, if that is not done before the upgrade, it still should be done after.
Try reseating the Fans and PSU, one at the time, leaving a minute in between and then, IOMs one at the time, leaving three minutes in between and begining with the subordinate to cause minimun disruption.
If this does not clear the situation, then you will need to remove one of the components already mentioned, one at the time and do a "show tech-support chassis # all brief" to see what the I2C bus reports segment by segment (chassis, Fans, PSUs...) once you remove a component and the errors on each segment stop incrementing you will have your faulty piece of hardware, and a TAC case will be needed to send a replacement.
For further analysis or assistance, I strongly recommend a TAC case to be opened.
-Kenny -
Cisco connect cloud login issue
Hello,
I am trying to connect to my router from the internet and I get an error message saying that my router is not connected. I have checked everything that I know, it worked fine upto two days ago and I have not changed any settings.
Any suggestions much appreciated.I am having a similar issue with my new EA2700 router. I have several wifi devices connected via wifi and dont seem to have a problem getting out to the internet or accessing my local area network but when i try to access the cisco connect cloud via internally or externally by typing the ip or ciscoconnectcloud.com in a browser window I receive msg: "router offline" the only way i can resolve the issue is by power reset my router. Once i power reset the router i am then able to access my router both internally and externally thru my web browsers and/or android app. Please help!... this is very fustrating especially when i am not at home to reboot my router. I have never had this issue with my old Linksy WRT54G router and have been always been able to access and reboot it remotely. I currently have the lastest firmware....Thanks
-
No, they are MD7 at best (service password-encryption).
I would seriously recommend you don't use this method of authentication, create a username:
username privilege 15 secret
And then set local login on all line ports.
line con 0
login local
If you also apply this to your line vty lines it will secure your remote sessions also.
As long as you use "secret" and not "password" in the username line it will be MD5 hashed, using password there also makes it MD7.
Obviously replace and and set the privilege level to one that is appropriate for that user. This will also work if you have any management system that logs in for back ups etc.Hello,
Using this in the console:
line con 0
password console
logging synchronous
login local
exec-timeout 0 0
You can see that i'm using the "login local" command, which seems to force me to use that username and password instead of the "password console". Then it doesn't make sense having the "password console" command does it?
Also, Is there anyway to encrypt the console and vty passwords not using the weak "service password-encryption" command?
Thanks.
This topic first appeared in the Spiceworks Community -
Does this unit come with a default website that allows a username/password to access the WiFi? Example, a user comes in and sees the SSID and connects. When he gets on the web, he's presented with a screen for a username and password. Once he gets pass that, he has full access to the web.
Thank you.Yes, There is a default internal web authentication that would prompt you to enter username and password. Once given, it will allow you for internet access as per configuration. This is called Internal Web authentication.
-
Cisco Nexus 5010 & Cisco 3560G Native Vlan 55 ?
Hello Everyone,
I have 2 switches named in the title that have Switchport mode Trunk Native Vlan 55. In the vlan configurations I do not see a Vlan 55.
Does anyone know why this is configured this way ?
P.S I am new to the configIt's odd because I did that last time on both switches and it didn't show.
But I did it when you sent this message and lo and behold it was.
Thank you -
Login failure - Cisco Jabber 9.2.4 for windows
I have built up CUCM 8.6(2a), CUPS 8.6(5), and integrated them according to the cisco official docs.
Now, I finished the configuration according to the Jabber install guide & Server Setup Guide. However, the first login experience indicates that Jabber is a quite tricky software to deal with.
When I run Cisco Jabber for Windows 9.2.4 for the first time, it prompt me as below,
Server Type: Cisco Webex / Cisco Unified Presence
Login Server: Server address / Domain
Q1: What is going on there? Whe Webex get involved here? Why CUCM is not listed as a Server Type? How should I input here for a successful login (My CUCM IP: 192.168.169.11, CUPS IP: 192.168.169.12, DNS is not used here, let alone Domain)?Those parameters and steps are never mentioned in the End user Guide. The Jabber is not behaving as expected at all !!
Q2: As far as I know, Jabber can work in only 2 modes, Full UC Mode, Phone-Mode, only difference between them is media terminates at PC or desktop phone. Am I right? how can I determine which mode I am currently in?
Q3, In Connectin Setting Diagram, I select Cisco Unified Presence as server type, and input CUPS IP for Server Address & Domain, then, I use end user ID and password configured on CUCM to login, but end up with "cannot communicate with the server". Is that a bug ?
Thanks in advance.A1: Because it can use either (webex or CUPS), there are two deployment modes, all is on the documentation if you haven't gone thru it.
You type in what it's asking, nothing more. Choose one, and then use the CUPS hostname, DNS is basically mandatory, the PC needs name resolution for all you have configured (VM/CUCM/etc)
A2: No, it can be IM&P, full UC and phone mode. No, Full UC and phone mode use the PC for media termination, deskphone control uses the phone for media. Did you change the parameters during install for phone mode??? If not, it's not in phone mode.
A3: No, that can be many things, DNS, connectivity, credentials, etc
You mention DNS is not used, so, most likely that's the problem.
I'd strongly recommend you to review the whole deployment guide for Jabber for Windows.
HTH
java
if this helps, please rate
www.cisco.com/go/pdihelpdesk -
Cisco LMS4: Identity Work Center
Hello,
i have some questions regarding Identity Monitoring in Cisco LMS 4
We have a bunch of Catalyst 3560 managed by LMS but only one shows up in the readiness assessment as Radius capable device. What is preventing the other switches for beeing ready for identity? IOS Versions are all the same.
I had configued manually 802.1x in monitoring mode on of the other switches and i worked without any problem. But this devices does not show up.
any ideas?
regards
alexThanks for your email.
radius-capable devices
.1.3.6.1.4.1.9.1.1208 Cisco Catalyst 2960 stack 12.2(53)SE2
.1.3.6.1.4.1.9.1.633 Cisco Catalyst 3560-24TS Switch 12.2(52)SE
identity capable device
.1.3.6.1.4.1.9.1.617 Cisco Catalyst 3560G-48TS Switch 12.2(53)SE1
.1.3.6.1.4.1.9.1.1226 Image C3560-UNIVERSALK9-M Software 12.2(53) SE2
identity software incable devices
.1.3.6.1.4.1.9.1.717 Cisco Catalyst 2960-48TT Switch 12.2(50)
.1.3.6.1.4.1.9.1.717 Cisco Catalyst 2960-48TT Switch 12.2(50)SE5
.1.3.6.1.4.1.9.1.716 Cisco Catalyst 2960-24TT Switch 12.2(50)SE5
.1.3.6.1.4.1.9.1.952 Cisco Catalyst 2960CPD-8TT-L Switch 12.2(50)SE5
.1.3.6.1.4.1.9.1.1006 Cisco Catalyst 2960-8TC-S Compact Switch 12.2(50)
not showing up at all
.1.3.6.1.4.1.9.1.1226 Image C3560E-Universalk9-M Software 12.2(55)SE1
.1.3.6.1.4.1.9.1.1227 Image C3560E-Universalk9-NPE-M Software 12.2(55)SE1
.1.3.6.1.4.1.9.1.1256 Image C2960S-Universalk9M Software 12.2.(53)SE2
.1.3.6.1.4.1.9.1.563 Image C3560-IPBASE-K9 Software 12.2.(55)SE
.1.3.6.1.4.1.9.1.1006 Image C2960-LANLITEK9-M Software 12.2.(50)SE5
.1.3.6.1.4.1.9.1.717 Image C2960-LANBASEK9-M Software 12.2.(50)SE5
.1.3.6.1.4.1.9.1.617 Image C3560-IPBASEK9-M Software 12.2.(50) SE3
.1.3.6.1.4.1.9.1.1226 Image C3560-UNIVERSALK9-M Software 12.2(53) SE2
Hope this will help
alex -
What connection/cable could I buy to connect to my Cisco switch?
I'm in a purchase project of a new Gigabit switch for my company.
Currently my company has a "Catalyst 3560G-48TS". It has four additional ports called SFP that I supposed can be used to connect to another switch to constitute a sort of "backbone", right? I want to connect the current switch to the new one with as much transfer rate as possible. Ideally at least 5Gbps (yeah, if I use a single 1gbps cable, it's certainly not enough). Both switches will be separated at a distance of about 15m.
I know nothing about this SFP. Could someone tell me what are supported or supporting this? What cables should I buy? Optical fibers? What's the transfer rate could I expect from EACH SFP port?
Of course, I'm more interested to not so expensive solution, or at least a good quality/price ratio solution.
Thanks in advance.SFP is a small form factor pluggable interface module (transceiver). The SFP port on the switch allows a user to insert a SFP module to meet the distance requirements between the interconnecting equipment.
According to the 3860 datasheet, the SFP ports are 1Gbps. The ports can be outfitted with a copper-based SFP module (100m maximum distance) or optical modules (short reach and long-reach, with wavelength dependent options as well). The copper-based SFP uses standard CAT 5 cabling with RJ45s. The optical SFPs will use optical jumpers with LC-type connectors, either with single- or multi-mode types of fiber, depending on the selected SFP.
The list of supported SFP modules is listed in the data sheet (link below).
Your network could use the CAT5 copper module (probably the lowest cost).
Hope this helps!
3560 Data Sheet:
http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps5528/product_data_sheet09186a00801f3d7d.html
SFP Data Sheet
http://www.cisco.com/en/US/prod/collateral/modules/ps5455/ps6577/product_data_sheet09186a008014cb5e.html -
HOME#sho run
Building configuration...
Current configuration : 5657 bytes
! Last configuration change at 10:51:11 UTC Fri May 17 2013 by admin
version 15.0
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
hostname HOME
boot-start-marker
boot-end-marker
logging buffered 51200 warnings
enable secret 5 $1$bgx9$VrtQW3Wg182VyYhKAHLbN.
no aaa new-model
memory-size iomem 10
crypto pki trustpoint TP-self-signed-1190003239
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-1190003239
revocation-check none
rsakeypair TP-self-signed-1190003239
crypto pki certificate chain TP-self-signed-1190003239
certificate self-signed 01
3082024A 308201B3 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 31313930 30303332 3339301E 170D3133 30353137 31303333
35315A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 31393030
30333233 3930819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100C002 80BBF151 E095E469 AA7DBB18 2A9E3CC2 4AC223F6 ABE0AF49 876C1203
65D0E246 786F174D E5B7897A 44C5755A 2571E58A 184A6C62 DD992A2A D8A24878
25A8D3C3 03F5D3C2 522EC8BB 302B0CCD 2945087A 7AF01418 D0056679 6F64DB4A
BE2D5DA1 106CD03A 83B422A2 3CCBAE88 F2413123 12269390 6949DFE0 411118E7
8F210203 010001A3 72307030 0F060355 1D130101 FF040530 030101FF 301D0603
551D1104 16301482 12484F4D 452E7777 772E7961 686F6F2E 636F6D30 1F060355
1D230418 30168014 3D2D854D 1203F50D 77F4ABC5 B61CEAF6 C922F4DF 301D0603
551D0E04 1604143D 2D854D12 03F50D77 F4ABC5B6 1CEAF6C9 22F4DF30 0D06092A
864886F7 0D010104 05000381 8100B24C 48BACACE 87ADEA03 386F2045 CC89624A
4EB1AD09 062EB2A4 CF4C96CA 0B2CF001 BD2C3804 8DC47FED 6A5B5F0D 3965AC6E
4FC4682F 707E4132 8F27C083 C7FAE1BD 21D055E6 C79D5DAD 051B6321 D35DB4F2
044E6BBD DAD08B6A 6ED87C7E 08F4F7E1 4EFDFB6F 867AF6FA 84165CFC D219D56F
A82EABD4 AD9CFA24 A5088145 E571
quit
ip source-route
ip routing protocol purge interface
ip dhcp excluded-address 10.10.10.1
ip dhcp pool ccp-pool
import all
network 10.10.10.0 255.255.255.248
default-router 10.10.10.1
domain-name www.google.com
dns-server 192.168.1.1
lease 0 2
ip cef
ip domain name www.yahoo.com
ip name-server 84.235.6.55
ip name-server 84.235.57.230
no ipv6 cef
multilink bundle-name authenticated
license udi pid CISCO881-SEC-K9 sn FCZ1516933C
username admin privilege 15 password 0 cisco
interface FastEthernet0
interface FastEthernet1
interface FastEthernet2
interface FastEthernet3
interface FastEthernet4
ip address dhcp
ip access-group 101 in
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
interface Vlan1
description $ETH-SW-LAUNCH$$INTF-INFO-HWIC 4ESW$
ip address 10.10.10.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat inside
ip nat enable
ip virtual-reassembly
ip tcp adjust-mss 1452
interface Vlan2
no ip address
ip nat inside
ip virtual-reassembly
ip default-gateway 192.168.1.1
ip forward-protocol nd
ip http server
ip http access-class 23
ip http authentication local
ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
ip nat inside source list 101 interface FastEthernet4 overload
ip route 0.0.0.0 0.0.0.0 FastEthernet4
access-list 23 permit 10.10.10.0 0.0.0.7
access-list 101 permit ip any any
dialer-list 1 protocol ip permit
no cdp run
control-plane
banner exec ^C
% Password expiration warning.
Cisco Configuration Professional (Cisco CP) is installed on this device
and it provides the default username "cisco" for one-time use. If you have
already used the username "cisco" to login to the router and your IOS image
supports the "one-time" user option, then this username has already expired.
You will not be able to login to the router with this username after you exit
this session.
It is strongly suggested that you create a new username with a privilege level
of 15 using the following command.
username <myuser> privilege 15 secret 0 <mypassword>
Replace <myuser> and <mypassword> with the username and password you
want to use.
^C
banner login ^C
Cisco Configuration Professional (Cisco CP) is installed on this device.
This feature requires the one-time use of the username "cisco" with the
password "cisco". These default credentials have a privilege level of 15.
YOU MUST USE CISCO CP or the CISCO IOS CLI TO CHANGE THESE
PUBLICLY-KNOWN CREDENTIALS
Here are the Cisco IOS commands.
username <myuser> privilege 15 secret 0 <mypassword>
no username cisco
Replace <myuser> and <mypassword> with the username and password you want
to use.
IF YOU DO NOT CHANGE THE PUBLICLY-KNOWN CREDENTIALS, YOU WILL
NOT BE ABLE TO LOG INTO THE DEVICE AGAIN AFTER YOU HAVE LOGGED OFF.
For more information about Cisco CP please follow the instructions in the
QUICK START GUIDE for your router or go to http://www.cisco.com/go/ciscocp
^C
banner motd ^Cuthorized ^C
line con 0
login local
no modem enable
line aux 0
line vty 0 4
access-class 23 in
privilege level 15
password cisco
logging synchronous
login local
transport input telnet ssh
scheduler max-task-time 5000
endHOME#ping 4.2.2.2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 4.2.2.2, timeout is 2 seconds:
Success rate is 0 percent (0/5)
HOME#sh ip int br
Interface IP-Address OK? Method Status Protocol
FastEthernet0 unassigned YES unset down down
FastEthernet1 unassigned YES unset down down
FastEthernet2 unassigned YES unset down down
FastEthernet3 unassigned YES unset down down
FastEthernet4 192.168.1.120 YES DHCP up up
NVI0 10.10.10.1 YES unset up up
Vlan1 10.10.10.1 YES NVRAM down down
Vlan2 unassigned YES NVRAM down down
HOME#
fast ethernet is connected to my internet connection -
EA4500: weird login screen; can't login
I tried to login into my EA4500 today, and instead of the simple window that asks for the user name and passord, I am getting a Cisco Connect Cloud login screen. It is very strange.
At the top it says: Cisco Connect Cloud/Powering Linksys Products
and below that:
Sign In If you have not yet created an account, click the 'Create Account' button in the upper right corner of the page
There is a help button, a button to create an account. There is a place where I can enter an email address and a password.
Pressing the Help button I learned that I can probably bypass this silly screen by disconnecting the internet. Is there a better way to bypass this screen and turn off Cisco Connect Cloud?
Solved!
Go to Solution.This is unacceptable. What if the cloud is 'down" Please, Cisco, fix this mistake and let us access the router we bought the old fashioned way!! I don't want to downgrade firmware either but I will. PS, any good hackers find the back door?
Maybe you are looking for
-
Hey Guys I've been trying to find an option for auto-save in Logic (and to set how often it does this)... but I can't find anything... Does it just do auto-save in the background? Or is there no auto-save feature? It's easy to forget to keep saving i
-
Flagging Equipment for Deletion
Can anyone tell me which table is updated when setting the 'Flagged for Deletion' indicator on an Equipment Master record (IE02). Thanks in advance.
-
The payroll has been run up to July 2010. I press the wrong button of the reverse payment function to reverse May 2010 payroll, which I just want to reverse July 2010 payroll. How can I run May 2010 payroll in order to recover the missed out May 2010
-
How do I remove avg link scanner.....
I have used the search engines, within the last two hours talked directly to customer support, and trying utilizing their faq pages. 1) They have not created a macintosh compatible removal program, if they did I cannot find it on their site. 2) Custo
-
I am trying to start my own package, however there was no classpath varable by default in the windows 2000 environment variables, I therefore created a user classpath variable and put the location of my package as a path, i have however had no succes