Jason

> -----Original Message-----
> From: [email protected] [mailto:cisco-nsp-
> [email protected]] On Behalf Of Jason Lixfeld
> Sent: Wednesday, August 18, 2010 4:04 PM
> To: [email protected]
> Subject: [c-nsp] Retrieving *'d secrets in PIX6.3(5)
> 
> In current PIX/ASA OS 7+, one is able to look at things like *'d out
> ipsec/isakmp secrets using 'more system:running-configuration' which makes
> it easy to move the config over to a new box or something.  Is there a way to
> do the same thing with PIX6?  6.3(5) more specifically?  I'm looking to
> upgrade a couple of PIX firewalls to proper ASAs and would like to avoid
> having to reconfigure every IPSec client (dynamic and static) that terminates
> on this box currently.
> 

Dump it to a TFTP server using write net.  You'll have all your passwords then.

-ryan

_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to