Any body solve this issue? I have the same issue with 2 srx 240 that do not accept any psw since configured in cluster. They do not accept to be reset. I like to kow how to get the SRX reset. I also try the faillover and load factory command and it's still not possible to get the change commit.
@paulkil wrote:
Hi guys,
I'm in a pickle here. Trying to install srx240.
I cannot log on to it since I configured clustering without deleting switching first.
I tried the revcovery procedure to reset the root password but it would not let me commit the change saying "cannot configure ge0/0/0 while in clustering mode.
When I reboot the device I get this alarm:
***** FILE SYSTEM MARKED CLEAN *****
Loading configuration ...
mgd: error: Cannot open configuration file: /config/juniper.conf
mgd: warning: activating factory configuration
Interface control process: [edit interfaces]
Interface control process: 'ge-0/0/0'
Interface control process: HA management port cannot be configured
mgd: error: configuration check-out failed
Warning: Commit failed, activating partial configuration.
Warning: Edit the router configuration to fix these errors.
Setting initial options: debugger_on_panic=NO debugger_on_break=NO.
Starting optional daemons: usbd.
Doing initial network setup:
Is there any way around this???
Thanks,
Paul
Loading configuration ...
mgd: error: Cannot open configuration file: /config/juniper.conf
mgd: warning: activating factory configuration
Interface control process: [edit interfaces]
Interface control process: 'ge-0/0/0'
Interface control process: HA management port cannot be configured
mgd: error: configuration check-out failed
Warning: Commit failed, activating partial configuration.
Warning: Edit the router configuration to fix these errors.
Setting initial options: .
Starting optional daemons: usbd.
Doing initial network setup:
.
Initial interface configuration:
additional daemons: eventd.
Additional routing options:kern.module_path: /boot//kernel;/boot/modules -> /boot/modules;/modules/ifpfe_drv;/modules;
kld netpfe drv: ifpfed_dialer.
Doing additional network setup:.
Starting final network daemons:.
setting ldconfig path: /usr/lib /opt/lib
starting standard daemons: cron.
Initial rc.mips initialization:.
Local package initialization:.
starting local daemons:.
Creating JAIL MFS partition...
JAIL MFS partition created
boot.upgrade.uboot="0xBFC00000"
boot.upgrade.loader="0xBFE00000"
Boot media /dev/da0 has dual root support
** /dev/da0s2a
FILE SYSTEM CLEAN; SKIPPING CHECKS
clean, 245781 free (21 frags, 30720 blocks, 0.0% fragmentation)
Wed Sep 16 08:17:35 UTC 2015
Running recovery script ...
machdep.bootsuccess: 1 -> 1
Performing initialization of management services ...
Performing checkout of management services ...
NOTE: Once in the CLI, you will need to enter configuration mode using
NOTE: the 'configure' command to make any required changes. For example,
NOTE: to reset the root password, type:
NOTE: configure
NOTE: set system root-authentication plain-text-password
NOTE: (enter the new password when asked)
NOTE: commit
NOTE: exit
NOTE: exit
NOTE: When you exit the CLI, you will be asked if you want to reboot
NOTE: the system
Starting CLI ...
{hold:node0}
root> set chassis cluster disable
error: the jsrp-service subsystem is not running
root> configure
warning: Clustering enabled; using private edit
error: shared configuration database modified
Please temporarily use 'configure shared' to commit
outstanding changes in the shared database, exit,
and return to configuration mode using 'configure'
{hold:node0}
root> configure shared
Entering configuration mode
The configuration has been changed but not committed
root# set system root-authentication plain-text-password
New password:
Retype new password:
root# commit
[edit interfaces]
'ge-0/0/0'
HA management port cannot be configured
error: configuration check-out failed
root# show interfaces
ge-0/0/0 {
unit 0;
}
ge-0/0/1 {
unit 0 {
family ethernet-switching {
vlan {
members vlan-trust;
}
}
}
}
ge-0/0/2 {
unit 0 {
family ethernet-switching {
vlan {
members vlan-trust;
}
}
}
}
ge-0/0/3 {
unit 0 {
family ethernet-switching {
vlan {
members vlan-trust;
}
}