1826164 Members
4302 Online
109691 Solutions
New Discussion

root account disabled

 
SOLVED
Go to solution
Shankar_6
Regular Advisor

root account disabled

Hi,

One of the server root account got disabled.How can i check is there any LAN console available on the server and it is configured..?I need this info as server is located remotely and i cant connect manually a terminal to the server(thro serial port)

Server Model : D270(old model not even sure whether the server has LAN console)
OS : 10.20

Cheers,
Shankar



9 REPLIES 9
Robert-Jan Goossens
Honored Contributor
Solution

Re: root account disabled

Shankar,

There is no lan console on the D270, you will need to logon to the console or use a laptop as a console with hyperterminal software.

# /usr/lbin/modprpw -k root

Best regards,
Robert-Jan
Steven E. Protter
Exalted Contributor

Re: root account disabled

Shalom, as noted, you must use a console. If you don't have one, you are going to need to get one. A PC with hyperterminal or procom and a null modem cable or usb to serial adapater will do the trick in a pinch.

SEP
Steven E Protter
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com
Rick Garland
Honored Contributor

Re: root account disabled

No LAN console.
This task will have to be done locally.

Once in, look at getting a Lantronix or Secure Web Console configured to the system. This will give you remote console capability.
Shankar_6
Regular Advisor

Re: root account disabled

Hi

Thanks for all ur quick replies.I will get it done locally.

I just need to know how we will check whether LAN console is configured in case server has got the LAN console.

Cheers
Shankar
Mel Burslan
Honored Contributor

Re: root account disabled

In the old times, when HP sold D-Class machines, they sometimes sold something called secure web console. I had quite few of these. I know they are a pain in the neck to work with but in a remote situation like this, they may help.

Unfortunately, there is no way of knowing if this device exists and connected to the console. without making a visual check on the back plane of the machine. Ask the local guys if they see a serial cable attached to the console port, the other end of which is connected to a charcoal gray colored plastic box roughly as big as a paperback book, i.e, 7x3x1 inches around. If it is connected, you need to know the ip address of this box to connect. Good admins, write the ip address of the box on a sticker on top of the box itself.

If you have this box connected, you can search the forums to find how to reset the IP address of it.

Hope this helps.
________________________________
UNIX because I majored in cryptology...
Shankar_6
Regular Advisor

Re: root account disabled

Hi,

Thanks for ur valuable reply.

How to check the LAN console configuration in new model servers(like RP,L.K and N series)..?

Regards
Shankar.
SGUX
Valued Contributor

Re: root account disabled

Shankar,
a workaround could be to rlogin (as root)from another box and reactivate the root-account. But for security reasons this could not be possible.

Another workaround could be to restore (from OB or another backup-tool)
/tcb/files/auth/r/root
from before the date the root-account get disabled.

This would save you the trip to remote location.
GBR
Regular Advisor

Re: root account disabled

I just had a similar issue, but lucky for me I sit about 20 feet from my D250, so I was able to connect my Windows box via the serial port, using Windows HyperTerminal. (Start -> Programs -> Accessories -> Communications)

I tried connecting a web console to the D250 and couldn't get it to work/configured properly. I'm not sure what the issue was because I had been able to connect to my Sun Solaris box using the web console.

As Mel has stated, your best bet would be to contact one of the locals.

Let me know if you can get the Web Console working.

GBR
Rick Garland
Honored Contributor

Re: root account disabled

Checking the LAN console is not easily done.

You could do an ioscan and if you know the HW address you could verify the device as CLAIMED.

Connecting to the console would be the best check. If you can ssh/telnet to the specific IP address for the LAN console and get into the GSP, MP, EFI (whatever) odds are you will have success in having a working remote console.

Other option is something like a Lantronix or a Cyclades. If you are always able to maintain connection to this device, you could connect to it and issue a reset for the specific port in which the remote console is attached to. With this type of solution you have a single device that can connect consoles for multiple systems. Not the best solution as you still have a single device for multiple consoles - if this device went out you lost all console.