How to disable OTP (TOTP/Email) from the exported settings and import the edited settings to appliance.

Description

When administrator cannot login to the appliance with TOTP and no backup codes saved.

When the Email server is down or the authentication password is expired. OTP is not generated.

Resolution

1. Open the settings file "sslvpnSettings-1xx8.zip" which is backed-up from SMA appliance.

2. Edit the file "settings.json" using notepad.

3. Search for the user name (user saved in appliance database), example: "admin".

4. Look for the option otpEnable.

5. Change the value to "0" from "1", this disables the OTP settings for the user "admin".

6. Save the settings.json file back in the zip folder.

7. Reset the appliance to save mode by holding the reset button.

If the appliance is in safe mode, the IP changes to X0 IP: 192.168.200.1/24

8. Connect a machine (configure the machine in the same network matching to the interface IP). Access the device with URL http://192.168.200.1

9. In the safe mode, firmware management options click on boot icon for Current Firmware. Enable the option "boot with factory default settings", and click on boot.

Image

10. Browse to the SMA appliance default IP 192.168.200.1 and login with admin/password/LocalDomain.

11. Navigate to System|settings, and import the edited configuration.


For the virtual appliances.

The virtual appliance needs to be re-deployed, and import the settings.

Related Articles

  • SMA100 End of Support No-Charge Replacement FAQ
    Read More
  • SMA1000: Post upgrade to 12.5.0 on AWS and Azure, we show the error Could not retrieve the DNS settings once we log in to AMC/CMS console
    Read More
  • Firmware version required to upgrade to version 12.5.0.
    Read More
not finding your answers?