How to disable OTP (TOTP/Email) from the exported settings and import the edited settings to appliance.

Description

When administrator cannot login to the appliance with TOTP and no backup codes saved.

When the Email server is down or the authentication password is expired. OTP is not generated.

Resolution

1. Open the settings file "sslvpnSettings-1xx8.zip" which is backed-up from SMA appliance.

2. Edit the file "settings.json" using notepad.

3. Search for the user name (user saved in appliance database), example: "admin".

4. Look for the option otpEnable.

5. Change the value to "0" from "1", this disables the OTP settings for the user "admin".

6. Save the settings.json file back in the zip folder.

7. Reset the appliance to save mode by holding the reset button.

If the appliance is in safe mode, the IP changes to X0 IP: 192.168.200.1/24

8. Connect a machine (configure the machine in the same network matching to the interface IP). Access the device with URL http://192.168.200.1

9. In the safe mode, firmware management options click on boot icon for Current Firmware. Enable the option "boot with factory default settings", and click on boot.

Image

10. Browse to the SMA appliance default IP 192.168.200.1 and login with admin/password/LocalDomain.

11. Navigate to System|settings, and import the edited configuration.


For the virtual appliances.

The virtual appliance needs to be re-deployed, and import the settings.

Related Articles

  • How to Provision SMA1000 in Monthly Billing (MSSP Program)
    Read More
  • SMA 1000 Series Support Matrix
    Read More
  • How to Configure SAML 2.0 SSO with Microsoft Entra ID for SonicWall SMA 1000 Series
    Read More
not finding your answers?