- play_arrow Overview
- play_arrow Configuring Administrative Credentials and Privileges
- play_arrow Configuring Roles and Authentication Methods
- Understanding Roles and Services for Junos OS
- Understanding the Operational Environment for Junos OS in FIPS Mode
- Understanding Password Specifications and Guidelines for Junos OS in FIPS Mode
- Downloading Software Packages from Juniper Networks
- Installing Software on a Device with Single Routing Engine
- Understanding Zeroization to Clear System Data for FIPS Mode
- Zeroizing the System
- Enabling FIPS Mode
- Configuring Crypto Officer and FIPS User Identification and Access
- play_arrow Configuring SSH and Console Connection
- play_arrow Configuring MACsec
- play_arrow Configuring Event Logging
- play_arrow Performing Self-Tests on a Device
request vmhost zeroize no-forwarding
Description
For REMX2K-X8, remove all configuration information on the Routing Engines and reset all key values. If the device has dual Routing Engines, the command is broadcast to both Routing Engines on the device. The command removes all data files, including customized configuration and log files, by unlinking the files from their directories. The command removes all user-created files from the system including all plain-text passwords, secrets, and private keys for SSH, local encryption, local authentication, IPsec, RADIUS, TACACS+, and SNMP.
This command reboots the device and sets it to the factory-default configuration. After the reboot, you cannot access the device through the management Ethernet interface. Log in through the console as the root user and start the Junos OS CLI by typing cli at the prompt.
Sample Output
request vmhost zeroize no-forwarding
user@host> request vmhost zeroize no-forwarding VMHost Zeroization : Erase all data, including configuration and log files ? [yes,no] (no) yes re0: -------------------------------------------------------------------------- warning: Vmhost will reboot and may not boot without configuration warning: Proceeding with vmhost zeroize Zeroise secondary internal disk ... Proceeding with zeroize on secondary disk Mounting device in preparation for zeroize... Cleaning up target disk for zeroize ... Zeroize done on target disk. Zeroize of secondary disk completed Zeroize primary internal disk ... Proceeding with zeroize on primary disk /etc/ssh/ssh_host_ecdsa_key.pub /etc/ssh/ssh_host_rsa_key /etc/ssh/ssh_host_dsa_key.pub /etc/ssh/ssh_host_rsa_key.pub /etc/ssh/ssh_host_ecdsa_key /etc/ssh/ssh_host_dsa_key Mounting device in preparation for zeroize... Cleaning up target disk for zeroize ... Zeroize done on target disk. Zeroize of primary disk completed Zeroize done ---(more)--- Stopping cron. Waiting for PIDS: 6135. . Feb 16 14:59:33 jlaunchd: periodic-packet-services (PID 6181) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: smg-service (PID 6234) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: application-identification (PID 6236) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: ifstate-tracing-process (PID 6241) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: resource-management (PID 6243) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: charged (PID 6246) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: license-service (PID 6255) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: ntp (PID 6620) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: gkd-chassis (PID 6621) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: gkd-lchassis (PID 6622) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: routing (PID 6625) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: sonet-aps (PID 6626) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: remote-operations (PID 6627) terminate signal 15 sent Feb 16 14:59:33 jlaunchd: class-of-service ........ 99