Administrator Guide

Dell EMC Networking OS Behavior after System Power-Cycle
If the system reboots due reasons such as power-cycle, the current startup conguration may be dierent than the one you veried the
hash using the verified boot hash command. When the system comes up, the system may use the last-veried startup
conguration.
Dell EMC Networking recommends backing up the startup conguration to a safe location after you use the verified boot hash
command. When the startup conguration verication fails, you can restore it from the backup.
The system continues to display a message stating that startup conguration verication failed. You can disable the startup conguration
feature either by disabling startup conguration verication or save the running conguration to the startup conguration and update the
hash for the startup conguration.
Enabling and Conguring Startup Conguration Hash Verication
To enable and congure startup conguration hash verication, follow these steps:
1 Enable the startup conguration hash verication feature.
CONFIGURATION mode
verified startup-config
2 Generate the hash checksum for your startup conguration le.
EXEC Privilege
generate hash {md5 | sha1 | sha256} {flash://filename | startup-config}
3 Verify the hash checksum of the current startup conguration on the local le system.
EXEC Privilege
verified boot hash startup—config hash-value
NOTE
: The verified boot hash command is only applicable for the startup conguration le in the local le
system.
After enabling and conguring startup conguration verication, the device veries the hash checksum of the startup conguration during
every reload.
DellEMC# verified boot hash startup—config 619A8C1B7A2BC9692A221E2151B9DA9E
Conguring the root User Password
For added security, you can change the root user password.
If you congure the secure-cli command on the system, the Dell EMC Networking OS resets any previously-congured root access
password without displaying any warning message. With the
secure-cli command enabled on the system, the CONFIGURATION mode
does not display the root access password option.
To change the default root user password, follow these steps:
Change the default root user password.
CONFIGURATION mode
root-access password [encryption-type] root-password
Security
819