Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Enable Secret vs Enable Password 1

Status
Not open for further replies.

redwolf52

IS-IT--Management
May 3, 2002
75
0
0
US
Anyone know the difference? i know that enable secret overides enable password but why would you need to set password if you already have secret or even have a secret at all?
 
The enable password isn't secured in the config. And even with the "enable password encrypt" command it can still be broken.

Whereas the "enable secret" password is encrypted and can not be broken.

See:
Todd VanDerwerken, CCNA, CCDA
Technical Consultant
"If at first you don't succeed...then sky diving isn't for you!"
 
Correction.. the *secret* password can be broken using tools like "john the ripper". All it is a hashed key and *john* can break it.


It's harder then the type 7 password but not impossible to break.

For more amusing reading:


MikeS
Find me at
"Take advantage of the enemy's unreadiness, make your way by unexpected routes, and attack unguarded spots."
Sun Tzu
 
The enable password is there for backword compatibility and is not usually needed. The enable secret is encrypted but the password can still be broken using readily available tools on the internet. Use "no enable password" to remove it and use service password-encryption to encrypt your line and con passwords.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top