Check Point R75e R77 gaia expert password reset
If you forget your CP gaia expert password, use the following method to reset it.
The idea is to use the passwords of existing users to overwrite the passwords of expert, because the passwords in CP are encrypted, so even if you can SSH into gaia, the password can not be decrypted in reverse, so it can only be overwritten.
Follow these steps:
Connect to CLI on Gaia machine (over SSH, or console).
Log in to CLISH with the user that has an 'adminRole' (user with' monitorRole' does not have sufficient permissions).
Find the hash of the CLISH password:
HostName > show configuration
One line near the end will look similar to this:
Set user USERNAME password-hash $1 $vCbd0F3d$FjawgvrKBN.4Ed27hTPpB0
Set the hash of the CLISH password to be the hash of the Expert mode password:
R75.40 / R75.40VS / R75.45 / R75.46 / R75.47:
HostName > set expert-password hash HASH_of_CLISH_PASSWORD
Based on our example:
HostName > set expert-password hash $1 $vCbd0F3d$FjawgvrKBN.4Ed27hTPpB0
R76 / R77 and above (dash was added in the syntax):
HostName > set expert-password-hash HASH_of_CLISH_PASSWORD
Based on our example:
HostName > set expert-password-hash $1 $vCbd0F3d$FjawgvrKBN.4Ed27hTPpB0
Save the configuration:
HostName > save config
Set new Expert mode password:
R75.45 and above:
HostName > set expert-password
Enter current expert password: type the current CLISH password
Enter new expert password:
Enter new expert password (again):
R75.40 and R75.40VS:
HostName > set expert-password plain
Enter current expert password: type the current CLISH password
Enter new expert password:
Enter new expert password (again):
Save the configuration:
HostName > save config