Nope I try all options to get to CLI, but no luck. I'm using putty to access device over console. I try to send break key several times after each line or in various time during boot/load. No luck I try also CTRL + C, CTRL +}
I'm getting crazy here.
Original Message:
Sent: 03-12-2022 20:19
From: STEVE PULUKA
Subject: Recovery help - Netscreen 5GT
It's been a while since I've seen this but my memory is that you are on the command line after the bogus image is detected and it can be deleted from there.
Followed by a new reboot.
If it is is in a boot loop then this would need to be interrupted to get to the command line of the boot loader for the command to run.
------------------------------
Steve Puluka BSEET - Juniper Ambassador
IP Architect - DQE Communications Pittsburgh, PA (Metro Ethernet & ISP)
http://puluka.com/home
Original Message:
Sent: 03-11-2022 06:21
From: Ivan Galic
Subject: Recovery help - Netscreen 5GT
Hi Steve,
only access on device that I have is console access. And device is only asking me to provide folowing info
Hit any key to run loader
Serial Number [0127052005000233]: READ ONLY
HW Version Number [1010]: READ ONLY
Self MAC Address [0010-dbb0-3730]: READ ONLY
Boot File Name [A]: ns5gt.6.2.0r6.0
Self IP Address [10.10.50.1]:
TFTP IP Address [10.10.50.5]:
Is there a way that I can break this and go in underlay to wipe key?
If it will help you on advice\ t-shoot maybe we can jump on zoom session and you can see device status.
------------------------------
Ivan Galic
Original Message:
Sent: 03-11-2022 05:34
From: STEVE PULUKA
Subject: Recovery help - Netscreen 5GT
You can recover by deleting the signing key.
After this you can follow the initial upgrade instructions to get and install the new signing key.
Error: Bogus image – not authenticated!!!
This error will occur if you upgrade to the new ScreenOS image and still have the OLD signing key on your device. The boot screen on the console port will show this message:
********Invalid image!!!
********Bogus image – not authenticated!!!
Fips check failed
Done
To recover from this error and allow the device to boot you need to delete the signing key.
delete crypto auth-key
Then reboot the device and the new ScreenOS should load.
http://puluka.com/home/networking/screenos/critical-screenos-security-flaw/
------------------------------
Steve Puluka BSEET - Juniper Ambassador
IP Architect - DQE Communications Pittsburgh, PA (Metro Ethernet & ISP)
http://puluka.com/home
Original Message:
Sent: 03-11-2022 03:12
From: Ivan Galic
Subject: Recovery help - Netscreen 5GT
Hi there,
I know that above mention device is End of sale and End of support but still it is a good device for learning so looking for support on best can do base to recover it so I can continue to learn on it.
I have problem that came after screen os Upgrade . Device is not able to boot and it is complaing on Below message
Juniper Networks NS-5GT-ADSL Boot Loader Version 3.1.0 (Checksum: A5AFC47B)
Copyright (c) 1997-2005 Juniper Networks, Inc.
Total physical memory: 128MB
Test - Pass
Initialization - Done
Hit any key to run loader
Hit any key to run loader
Serial Number [0127052005000233]: READ ONLY
HW Version Number [1010]: READ ONLY
Self MAC Address [0010-dbb0-3730]: READ ONLY
Boot File Name [A]: ns5gt.6.2.0r6.0
Self IP Address [10.10.50.1]:
TFTP IP Address [10.10.50.5]:
Save loader config (56 bytes)... Done
Loading file "ns5gt.6.2.0r6.0"...
rtatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatatat
Loaded Successfully! (size = 11,160,435 bytes)
********Invalid DSA signature
********Bogus image - not authenticated
Juniper Networks NS-5GT-ADSL Boot Loader Version 3.1.0 (Checksum: A5AFC47B)
Copyright (c) 1997-2005 Juniper Networks, Inc.
Total physical memory: 128MB
By looking at https://kb.juniper.net/InfoCenter/index?page=content&id=TSB16495&actp=METADATA I get info that problem is image Key but how to break from this loop so I can add correct image Key (new or old) so I can update image and boot device ?
In fail bootloader device goes also in this sequence but no luck on boot
Juniper Networks NS-5GT-ADSL Boot Loader Version 3.1.0 (Checksum: A5AFC47B)
Copyright (c) 1997-2005 Juniper Networks, Inc.
Total physical memory: 128MB
Test - Pass
Initialization - Done
Hit any key to run loader
Hit any key to run loader
Hit any key to run loader
Hit any key to run loader
Loading default system image from on-board flash disk...
19%
29%
45%
99%
100%
Done! (size = 11,190,272 bytes)
********Invalid DSA signature
********Bogus image - not authenticated
Serial Number [0127052005000233]: READ ONLY
HW Version Number [1010]: READ ONLY
Self MAC Address [0010-dbb0-3730]: READ ONLY
Boot File Name [ns5gt.6.2.0r6.0]:
Please advise with help.
------------------------------
Ivan Galic
------------------------------