Build for Linksys EA9500

No. But I chose not to keep the original settings. Lemme try reset the router and then update tonight.

November build still no internet. I was on May build. Tried August and it works. Reset the settings.

When we reflash the May build, we rewrite the /dev/mtd1 in CFE. I found mtd1-6 in dev, so I wonder why do we only re-encode the mtd1?

@hermitman Please try this build and let me know - https://www.dropbox.com/s/x5137qffucodkiz/openwrt-20181121.zip?dl=0

1 Like

Out of town throughout the holiday season. Will try it out once I am back :slight_smile: Thanks for the awesome build. Huge kudo!

1 Like

@npcomplete the Nov 21st build works perfectly for me so far. I flashed it while keeping my settings. I should note that I'm running mine as a bridged AP and not using the WAN port.

1 Like

@AliceGrey Thanks for confirmation! I'll upload an updated build later today or earliest by tomorrow.

1 Like

Tried the updated one and confirm it works.

1 Like

Any other simple way?

Can you tell me how to brush back the official firmware of linksys? Thank you

You can flash this: https://www.dropbox.com/s/qq9tsz23xhb66sh/EA9500_Factory.trx?dl=0

Thank you very much!!
Hello, my flush EA9500_Factory.trx can't start, I don't know if it is a method problem.

flash -noheader 192.168.1.10:/EA9500_Factory.trx nflash0.trx

nvram set bootpartition=0 && nvram set partialboots=0 && nvram commit

reboot

Flush success status 0, but can't start the router

Is my flush method wrong?

please help me !!

I tried a few times and flushed directly from the web page. Failed to start.

TTL content details can be seen, the device is always restarting

My English is very bad, all translated by google, I am very sorry.
Thank you very much for helping meThank you very much for helping me
Can you speak Chinese?

Startup failed,Will always restart

The following is the boot process record

The following startup log has been updated

I am very sorry, because of the forum restrictions, I can only have 3 comments.

The partition after the flash openwrt is completed is like this,

Can I execute the following command? I want to restore the backup file, I suspect my partition has changed,
thank you very much

root@OpenWrt:/# cat /proc/mtd
dev: size erasesize name
mtd0: 00080000 00020000 "boot"
mtd1: 00100000 00020000 "nvram"
mtd2: 00080000 00020000 "nvram"
mtd3: 01d00000 00020000 "firmware"
mtd4: 003fffe4 00020000 "linux"
mtd5: 01900000 00020000 "ubi"
mtd6: 06100000 00020000 "failsafe"

dd if=/dev/mtd0 of=/tmp/boot.bin
dd if=/dev/mtd1 of=/tmp/nvram1.bin
dd if=/dev/mtd2 of=/tmp/nvram2.bin
dd if=/dev/mtd3 of=/tmp/firmware.bin
dd if=/dev/mtd4 of=/tmp/linux.bin
dd if=/dev/mtd5 of=/tmp/ubi.bin
dd if=/dev/mtd6 of=/tmp/failsafe.bin

just flash using OpenWrt web interface, then go to 192.168.1.1

Can you flash back the openwrt firmware and then flash the factory firmware.

Boot version: v0.5.1__7.14.131.35

Device eth0:  hwaddr 60-38-E0-71-A7-F3, ipaddr 192.168.1.1, mask 255.250
        gateway not set, nameserver not set
Startup canceled
CFE> ^C
CFE> flash -noheader 192.168.1.10:/EA9500.trx nflash0.trx
Reading 192.168.1.10:/EA9500.trx: Done. 20025344 bytes read
Programming...done. 20025344 bytes written
*** command status = 0
CFE> nvram set bootpartition=0 && nvram set partialboots=0 && nvram comt
*** command status = 0
CFE> reboot
Digital core power voltage set to 1.05V
Decompressing...done
Digital core power voltage set to 1.05V

CFE Boot Loader v0.5.1__7.14.131.35

SHMOO VER 1.13

PKID07DC06011801080000000000001A103F01000000

S300001FF
00001610


RDLYW0 00000004

RDENW0 00000037

RDQSW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 --------+-+++++++++++++++++++++++X+++++++++++++++++++++++-------
 01 ------------++++++++++++++++++++++++X++++++++++++++++++++++++---
 02 --------+++++++++++++++++++++++++X+++++++++++++++++++++++++-----
 03 -------++++++++++++++++++++++++X++++++++++++++++++++++++--------
 04 -++-+++++++++++++++++++++++X++++++++++++++++++++++--------------
 05 ---------+++++++++++++++++++++++++X++++++++++++++++++++++++-----
 06 ----+++++++++++++++++++++++X+++++++++++++++++++++++-------------
 07 --------+++++++++++++++++++++++++X++++++++++++++++++++++++------
 08 ---+++++++++++++++++++++++++X+++++++++++++++++++++++++----------
 09 -------+++++++++++++++++++++++X+++++++++++++++++++++++----------
 10 -------++++++++++++++++++++++++X++++++++++++++++++++++++--------
 11 ------++++++++++++++++++++++++X+++++++++++++++++++++++----------
 12 -+++++++++++++++++++++++++X++++++++++++++++++++++++-------------
 13 ----+++++++++++++++++++++++X++++++++++++++++++++++--------------
 14 ---+++++++++++++++++++++++++X+++++++++++++++++++++++++----------
 15 --+++++++++++++++++++++++++X++++++++++++++++++++++++------------


PW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 ++++++++++++++++++++++++++++X++++++++++++++++++++++++++++-------
 01 ----++++++++++++++++++++++++++++X++++++++++++++++++++++++++++---
 02 +++++++++++++++++++++++++++++X+++++++++++++++++++++++++++++-----
 03 ++++++++++++++++++++++++++++X+++++++++++++++++++++++++++--------
 04 +++++++++++++++++++++++++X++++++++++++++++++++++++--------------
 05 -+++++++++++++++++++++++++++++X++++++++++++++++++++++++++++-----
 06 ++++++++++++++++++++++++++X+++++++++++++++++++++++++------------
 07 -++++++++++++++++++++++++++++X++++++++++++++++++++++++++++------
 08 +++++++++++++++++++++++++++X+++++++++++++++++++++++++++---------
 09 +++++++++++++++++++++++++++X++++++++++++++++++++++++++----------
 10 ++++++++++++++++++++++++++++X+++++++++++++++++++++++++++--------
 11 ++++++++++++++++++++++++++X++++++++++++++++++++++++++-----------
 12 +++++++++++++++++++++++++X+++++++++++++++++++++++++-------------
 13 +++++++++++++++++++++++++X++++++++++++++++++++++++--------------
 14 +++++++++++++++++++++++++++X++++++++++++++++++++++++++----------
 15 ++++++++++++++++++++++++++X+++++++++++++++++++++++++------------


NW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 -------+++++++++++++++++++++++++++X++++++++++++++++++++++++++---
 01 -----------++++++++++++++++++++++++++X++++++++++++++++++++++++++
 02 ---------+-+++++++++++++++++++++++++X++++++++++++++++++++++++---
 03 -------+++++++++++++++++++++++++++X++++++++++++++++++++++++++---
 04 -+-++++++++++++++++++++++++X++++++++++++++++++++++++------------
 05 ---------+++++++++++++++++++++++++X+++++++++++++++++++++++++----
 06 ----++++++++++++++++++++++++++X+++++++++++++++++++++++++--------
 07 ---------+++++++++++++++++++++++++X+++++++++++++++++++++++++----
 08 ---++++++++++++++++++++++++++X++++++++++++++++++++++++++--------
 09 ------+++++++++++++++++++++++++X+++++++++++++++++++++++++-------
 10 --------++++++++++++++++++++++++X++++++++++++++++++++++++-------
 11 ------+++++++++++++++++++++++++X++++++++++++++++++++++++--------
 12 ++++++++++++++++++++++++++X+++++++++++++++++++++++++------------
 13 ----+++++++++++++++++++++++++X++++++++++++++++++++++++----------
 14 ---+-++++++++++++++++++++++++X++++++++++++++++++++++++----------
 15 ---++++++++++++++++++++++++X++++++++++++++++++++++++------------


WRDQW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 +++++++++++++++++++++++++X+++++++++++++++++++++++++----------++-
 01 +++++++++++++++++++++++++++X++++++++++++++++++++++++++-------++-
 02 +++++++++++++++++++++++++++X++++++++++++++++++++++++++------+++-
 03 ++++++++++++++++++++++++++X+++++++++++++++++++++++++-------++++-
 04 ++++++++++++++++++++++X+++++++++++++++++++++-+---------------++-
 05 +++++++++++++++++++++++++++X++++++++++++++++++++++++++--------+-
 06 ++++++++++++++++++++++++X+++++++++++++++++++++++------------+++-
 07 +++++++++++++++++++++++++++X+++++++++++++++++++++++++++-----+++-
 08 ++++++++++++++++++++++++X++++++++++++++++++++++++------------++-
 09 +++++++++++++++++++++++++X+++++++++++++++++++++++++----------++-
 10 ++++++++++++++++++++++++++X++++++++++++++++++++++++++-------+++-
 11 ++++++++++++++++++++++++X++++++++++++++++++++++++-----------+++-
 12 +++++++++++++++++++++++X+++++++++++++++++++++++--------------++-
 13 ++++++++++++++++++++++++X+++++++++++++++++++++++------------+++-
 14 +++++++++++++++++++++++++X++++++++++++++++++++++++-----------++-
 15 +++++++++++++++++++++++X+++++++++++++++++++++++-------------+++-


WRDMW0 00000025
WRDMW0 00000024


ADDR

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 ++++++++++++++++++++++S++++++++X++++++++++++++++++++++++++++++++

Decompressing...done
Found a Toshiba NAND flash:
Total size:  128MB
Block size:  128KB
Page Size:   2048B
OOB Size:    64B
Sector size: 512B
Spare size:  16B
ECC level:   8 (8-bit)
Device ID: 0x98 0xf1 0x80 0x15 0xf2 0x16
find_devinfo: devinfo block found at 0x00180000!

Press Ctrl+C to stop in CFE


CFE version 7.14.131.35 (r612453) based on BBP 1.0.37 for BCM947XX (32b)
Build Date: Fri Jan 22 18:07:59 CST 2016 (proc@ubuntu12d04LTS), for thed
Copyright (C) 2000-2008 Broadcom Corporation.
Copyright (C) 2016 Arcadyan Corporation.

Flashing all LEDs ...

Init Arena
Init Devs.
Boot partition size = 262144(0x40000)
DDR Clock: 800 MHz
Info: DDR frequency set from clkfreq=1400,*800*

### RoboID=53012, vid=1 val32=0x35faf val16=0x1 ###

### RoboID=53012, vid=2 val32=0x22110 val16=0x2 ###
et2: Broadcom BCM47XX 10/100/1000 Mbps Ethernet Controller 7.14.131.35 )
CPU type 0x0: 1400MHz
Tot mem: 262144 KBytes

CFE mem:    0x00F00000 - 0x01799D2C (9018668)
Data:       0x00F601E0 - 0x00F608A8 (1736)
BSS:        0x00F608B8 - 0x00F97D2C (226420)
Heap:       0x00F97D2C - 0x01797D2C (8388608)
Stack:      0x01797D2C - 0x01799D2C (8192)
Text:       0x00F00000 - 0x00F52488 (337032)
Boot:       0x0179A000 - 0x017DA000
Reloc:      I:00000000 - D:00000000

Boot version: v0.5.1__7.14.131.35

Device eth0:  hwaddr 60-38-E0-71-A7-F3, ipaddr 192.168.1.1, mask 255.250
        gateway not set, nameserver not set
Loader:raw, invalid tftp target filename (:)!
Could not load :: Invalid parameter
Checking CRC validity of nflash1.trx ... OK
Booting(0): boot -raw -z -addr=0x8000 -max=0xef8000 nflash0.os:
Loader:raw Filesys:raw Dev:nflash0.os File: Options:(null)
Loading: ..... 5438272 bytes read
Entry at 0x00008000
Closing network.
Starting program at 0x00008000
cfe_start: launch kernel with blue LED2 is on!

console [ttyS0] enabled, bootconsole disabled
serial8250.0: ttyS1 at MMIO 0x18000400 (irq = 117) is a 16550
brd: module loaded
loop: module loaded
pflash: found no supported devices
bcmsflash: found no supported devices
The first offset=200000, 2nd offset=1f00000
Boot partition size = 524288(0x80000)
lookup_nflash_rootfs_offset: offset = 0x200000
nflash: squash filesystem with lzma found at block 33
lookup_nflash_rootfs_offset: offset = 0x1f00000
nflash: squash filesystem with lzma found at block 265
Creating 6 MTD partitions on "nflash":
0x000000000000-0x000000080000 : "boot"
0x000000080000-0x000000200000 : "nvram"
0x000000200000-0x000001f00000 : "linux"
0x00000042db34-0x000001f00000 : "rootfs"
0x000001f00000-0x000005200000 : "linux2"
0x00000212db34-0x000005200000 : "rootfs2"
PPP generic driver version 2.4.2
PPP MPPE Compression module registered
NET: Registered protocol family 24
PPTP driver version 0.8.5
SLIP: version 0.8.4-NET3.019-NEWTTY (dynamic channels, max=256).
CSLIP: code copyright 1989 Regents of the University of California.
sdhci: Secure Digital Host Controller Interface driver
sdhci: Copyright(c) Pierre Ossman
u32 classifier
    Actions configured
Netfilter messages via NETLINK v0.30.
nf_conntrack version 0.5.0 (3972 buckets, 15888 max)
ctnetlink v0.93: registering with nfnetlink.
nf_conntrack_rtsp v0.6.21 loading
IPv4 over IPv4 tunneling driver
nf_nat_rtsp v0.6.21 loading
ip_tables: (C) 2000-2006 Netfilter Core Team
TCP cubic registered
NET: Registered protocol family 10
ip6_tables: (C) 2000-2006 Netfilter Core Team
IPv6 over IPv4 tunneling driver
NET: Registered protocol family 17
Bridge firewalling registered
Ebtables v2.0 registered
L2TP core driver, V2.0
PPPoL2TP kernel driver, V2.0
L2TP IP encapsulation support (L2TPv3)
L2TP netlink interface
L2TP ethernet pseudowire support (L2TPv3)
802.1Q VLAN Support v1.8 Ben Greear <greearb@candelatech.com>
All bugs added by David S. Miller <davem@redhat.com>
Northstar brcmnand NAND Flash Controller driver, Version 0.1 (c) Broadc2
NAND device: Manufacturer ID: 0x98, Chip ID: 0xf1 (Toshiba NAND 128MiB )
Spare area=64 eccbytes 56, ecc bytes located at:
 2 3 4 5 6 7 8 9 10 11 12 13 14 15 18 19 20 21 22 23 24 25 26 27 28 29 3
Available 7 bytes at (off,len):
(1,1) (16,2) (32,2) (48,2) (0,0) (0,0) (0,0) (0,0) 
Scanning device for bad blocks
Bad eraseblock 768 at 0x000006000000
Options: NO_AUTOINCR,NO_READRDY,
Creating 1 MTD partitions on "brcmnand":
0x000005200000-0x000008000000 : "brcmnand"
VFS: Mounted root (squashfs filesystem) readonly on device 31:3.
devtmpfs: mounted
Freeing init memory: 248K
Failed to execute /sbin/preinit.  Attempting defaults...
************************************************************************
              _        _  __    _    __ _____ __   __ _____
             | |      | ||  \  | |  / // ____]\ \ / // ____]TM
             | |      | ||   \ | | / /| (___   \ V /| (____
             | |      | || |\ \| |\ \  \____ \  \ /  \____ \
             | |_____ | || | \   | \ \  ____) | | |   ____) |
             |_______||_||_|  \__|  \_\[____ /  |_|  [_____/

 (c) 2013 Belkin International, Inc. and/or its affiliates. All rights .
 Booting panamera (firmware version 1.1.7.180968) 
************************************************************************
[utopia][init] System Initialization
[utopia][init] Creating /proc
[utopia][init] Creating /sys
[utopia][init] Creating /dev
[utopia][init] Creating /tmp
[utopia][init] Allocating 40M for /tmp
[utopia][init] Prepairing /dev/pts
[utopia][init] Setting /tmp and /var permissions
[utopia][init] Starting udev..
bdutil board utility kernel module, version 1.4
bdutil board utility kernel module boardId (1)
bdutil board utility buttons kernel module, version 1.3
bdutil board utility LEDs kernel module, version 1.3
bdutil board utility usbhub kernel module, version 1.1
[utopia][init] Using persistent syscfg data from /var/config/syscfg
[utopia][init] Starting system logging
[utopia][init] Starting sysevent subsystem
[utopia][init] Setting any unset system values to default
[utopia][init] no persistence config file (/var/config/pstcfg) found
[utopia][init] Late loading usb drivers
inserting ctf.ko for broadcom
Internal error: Oops: 17 [#1] PREEMPT SMP
last sysfs file: /sys/class/tty/ttyzf/uevent
module:  wl      7f357000        4782247
module:  dhd     7f03f000        3183071
module:  dpsta   7f039000        2760
module:  igs     7f031000        11979
module:  emf     7f026000        21425
module:  et      7f012000        49601
module:  ctf     7f008000        19667
module:  mod_bdutil      7f000000        12046
Modules linked in: wl(P+) dhd dpsta(P) igs(P) emf(P) et(P) ctf(P) mod_bl
CPU: 0    Tainted: P             (2.6.36.4 #1)
PC is at osl_pcie_rreg+0x80/0xdc
LR is at osl_pcie_rreg+0xd0/0xdc
pc : [<802a0d14>]    lr : [<802a0d64>]    psr: 80000093
sp : 8c4f9ae0  ip : 00000007  fp : 90f90000
r10: 8c4f9b20  r9 : 8c4f9b24  r8 : 00000001
r7 : 00000001  r6 : 8c4f9afc  r5 : 00000003  r4 : 00000000
r3 : 00000000  r2 : 60000013  r1 : 60000013  r0 : 60000013
Flags: Nzcv  IRQs off  FIQs on  Mode SVC_32  ISA ARM  Segment user
Control: 10c53c7d  Table: 4c4f404a  DAC: 00000015
Process insmod (pid: 2357, stack limit = 0x8c4f8270)
Stack: (0x8c4f9ae0 to 0x8c4fa000)
9ae0: 8e6c7800 00000000 8c4f9afc 8d6cac80 00000001 80291afc 8f04b400 000
9b00: 00000007 8e6c7800 00000000 8d6cac80 8e6c7800 80291c5c 00000000 008
9b20: 60000013 00000000 8f04b400 00000000 8c4f9b5c 8d6cac80 8e6c7800 900
9b40: 00000007 00000000 00000001 80291dac 00000001 8c4f9b5c 18100000 000
9b60: 00000000 8e6c7800 00000003 8d6cac80 8d6cac80 8c4f9cd0 00000007 000
9b80: 8e6c781c 8029bf64 00000000 80054378 60000013 8c4f9cd4 8e6c7800 8d0
9ba0: 90f90000 80286e6c 18103000 18003000 00000070 8d6cac80 18103000 004
9bc0: 90f90000 00000000 00000000 00000000 00000003 8e6c7800 00000001 900
9be0: 8d6cac80 00000000 00000007 18003000 8e6c781c 802aca30 8c4f9cd4 8c0
9c00: 00000003 00000001 00000016 00000003 00000001 00000000 90f90000 001
9c20: ffffffff 90f90000 8c4f8000 8a22324c 8d6cadc0 285c4e1f 00000644 8e0
9c40: 8c4f9cd0 8c4f9cd4 8d6cac80 00004365 00000001 90f90000 000014e4 80c
9c60: 00000001 8f035c00 8c4f9cd4 8c4f9cd0 00000000 00004365 00004365 000
9c80: 8d6ee200 8f035c00 8d6cac80 7f4d735c 8f035c00 8c4f9cd4 8c4f9cd0 90f
9ca0: 90f93fff 77c70000 8051d0dc 00008c00 00000000 00000003 00004000 000
9cc0: 00004365 8d6cac80 00000003 8004f4c0 00000000 00000000 00000000 08f
9ce0: 8d6cf000 8d6ee200 00000000 8d6cf000 7f791290 8d6eec00 00004365 8d0
9d00: 00000003 7f4ba604 00000000 8d6cac80 90f90000 00000001 8f035c00 000
9d20: 8c4f9dcc 00000020 8c4f9d6c 8f035c00 08c00000 000014e4 8c4f9d7c 000
9d40: 00000000 00000001 8f811100 8f811104 8f05d240 80054290 8f04b400 004
9d60: 00000000 80054a04 00000000 8f812850 8f05d240 80054290 8f04b400 004
9d80: 00000000 80054a04 8f05d240 80054290 8f04b400 00000040 00000000 804
9da0: 00000000 80054378 60000013 8c4f9e04 40000013 00000040 8f04b400 000
9dc0: 0001d769 0000001c 00000000 00000000 8c4f9ddc 8f035c00 00000000 7f4
9de0: 7f58f608 7f7b7000 0001d769 0000001c 00000000 7f58f6c4 000000a3 000
9e00: 7f790a04 00000000 8f035c00 80209c80 80209c24 8056dacc 7f790a34 8f0
9e20: 7f790a34 80228134 8f035c60 7f790a34 8f035c94 00000000 7f7b7000 80c
9e40: 7f790a34 8c4f9e50 80228230 80227390 8f8ce280 8f0198d8 8f8ce250 7f4
9e60: 80524300 8f0aec60 00000000 80227a88 7f6f2234 801ef384 8f8ce240 7f4
9e80: 7f790a34 80524300 00000000 7f7b7000 0000001c 802284c0 7f790a04 7f4
9ea0: 80524300 00000000 7f7b7000 80209ee8 00000000 7f790ef4 80538000 8c0
9ec0: 00000000 800465bc 00000001 800cbb40 000004e1 8c9c9800 00000000 7f4
9ee0: 7f790eac 7f790ef4 7f790eac 00000001 8d6caa40 00000001 0000001c 808
9f00: 7f790eb8 0000d7d0 8009977c 7f790fe0 80562f20 8c4f8000 924332a4 008
9f20: 8c9cd288 92002000 004e0a84 92440bf8 924409cf 92456320 88bf8000 000
9f40: 00448c50 00000000 00000000 0000002f 00000030 00000025 00000029 00f
9f60: 00000000 00000000 00000000 00000000 00000000 00000000 00000000 80c
9f80: 00000003 7e970f65 2ad2c008 0009e008 00000080 80046c68 8c4f8000 000
9fa0: 00000000 80046ac0 7e970f65 2ad2c008 2ad2c008 004e0a84 0009e008 000
9fc0: 7e970f65 2ad2c008 0009e008 00000080 000001e3 0000d7d0 7e970df8 000
9fe0: 2abb41f4 7e970d70 000185cc 2abb4204 20000010 2ad2c008 64686400 6ff
[<802a0d14>] (PC is at osl_pcie_rreg+0x80/0xdc)
[<802a0d14>] (osl_pcie_rreg+0x80/0xdc) from [<80291afc>] (si_pmu_get_pm)
[<80291afc>] (si_pmu_get_pmutimer+0x50/0x15c) from [<80291c5c>] (si_pmu)
[<80291c5c>] (si_pmu_wait_for_res_pending+0x34/0x10c) from [<80291dac>])
[<80291dac>] (si_pmu_wait_for_steady_state+0x78/0xa4) from [<8029bf64>])
[<8029bf64>] (si_pmu_is_otp_powered+0x34/0x2b4) from [<80286e6c>] (srom)
[<80286e6c>] (srom_var_init+0x128/0x390) from [<802aca30>] (si_doattach)
[<802aca30>] (si_doattach+0x540/0x1228) from [<802ad88c>] (si_attach+0x)
[<802ad88c>] (si_attach+0x58/0x9c) from [<7f4d735c>] (wlc_attach+0x64/0)
[<7f4d735c>] (wlc_attach+0x64/0x1ec0 [wl]) from [<7f4ba604>] (wl_attach)
[<7f4ba604>] (wl_attach.clone.10.clone.11+0x220/0x728 [wl]) from [<7f58)
[<7f58f6c4>] (wl_pci_probe+0xbc/0xe0 [wl]) from [<80209c80>] (pci_devic)
[<80209c80>] (pci_device_probe+0x5c/0x80) from [<80228134>] (driver_pro)
[<80228134>] (driver_probe_device+0x78/0x174) from [<802282bc>] (__driv)
[<802282bc>] (__driver_attach+0x8c/0x90) from [<80227390>] (bus_for_eac)
[<80227390>] (bus_for_each_dev+0x54/0x80) from [<80227a88>] (bus_add_dr)
[<80227a88>] (bus_add_driver+0x98/0x230) from [<802284c0>] (driver_regi)
[<802284c0>] (driver_register+0x78/0x13c) from [<80209ee8>] (__pci_regi)
[<80209ee8>] (__pci_register_driver+0x44/0xb4) from [<800465bc>] (do_on)
[<800465bc>] (do_one_initcall+0x30/0x19c) from [<8009ad58>] (sys_init_m)
[<8009ad58>] (sys_init_module+0x11c/0x1bac) from [<80046ac0>] (ret_fast)
Code: 08bd81f0 e59f005c e8bd41f0 ea04bb61 (e5943000) 
---[ end trace ca56806eabd4afe5 ]---
Kernel panic - not syncing: Fatal exception
[<8004d004>] (unwind_backtrace+0x0/0xf8) from [<803ccea0>] (panic+0x74/)
[<803ccea0>] (panic+0x74/0x1a0) from [<8004a6d8>] (die+0x1a4/0x1dc)
[<8004a6d8>] (die+0x1a4/0x1dc) from [<8004e48c>] (__do_kernel_fault+0x6)
[<8004e48c>] (__do_kernel_fault+0x64/0x84) from [<8004e5fc>] (do_page_f)
[<8004e5fc>] (do_page_fault+0x150/0x1ec) from [<800463a4>] (do_DataAbor)
[<800463a4>] (do_DataAbort+0x30/0x9c) from [<804c9cac>] (__dabt_svc+0x4)
Exception stack(0x8c4f9a98 to 0x8c4f9ae0)
9a80:                                                       60000013 603
9aa0: 60000013 00000000 00000000 00000003 8c4f9afc 00000001 00000001 8c4
9ac0: 8c4f9b20 90f90000 00000007 8c4f9ae0 802a0d64 802a0d14 80000093 fff
[<804c9cac>] (__dabt_svc+0x4c/0x60) from [<802a0d14>] (osl_pcie_rreg+0x)
[<802a0d14>] (osl_pcie_rreg+0x80/0xdc) from [<80291afc>] (si_pmu_get_pm)
[<80291afc>] (si_pmu_get_pmutimer+0x50/0x15c) from [<80291c5c>] (si_pmu)
[<80291c5c>] (si_pmu_wait_for_res_pending+0x34/0x10c) from [<80291dac>])
[<80291dac>] (si_pmu_wait_for_steady_state+0x78/0xa4) from [<8029bf64>])
[<8029bf64>] (si_pmu_is_otp_powered+0x34/0x2b4) from [<80286e6c>] (srom)
[<80286e6c>] (srom_var_init+0x128/0x390) from [<802aca30>] (si_doattach)
[<802aca30>] (si_doattach+0x540/0x1228) from [<802ad88c>] (si_attach+0x)
[<802ad88c>] (si_attach+0x58/0x9c) from [<7f4d735c>] (wlc_attach+0x64/0)
[<7f4d735c>] (wlc_attach+0x64/0x1ec0 [wl]) from [<7f4ba604>] (wl_attach)
[<7f4ba604>] (wl_attach.clone.10.clone.11+0x220/0x728 [wl]) from [<7f58)
[<7f58f6c4>] (wl_pci_probe+0xbc/0xe0 [wl]) from [<80209c80>] (pci_devic)
[<80209c80>] (pci_device_probe+0x5c/0x80) from [<80228134>] (driver_pro)
[<80228134>] (driver_probe_device+0x78/0x174) from [<802282bc>] (__driv)
[<802282bc>] (__driver_attach+0x8c/0x90) from [<80227390>] (bus_for_eac)
[<80227390>] (bus_for_each_dev+0x54/0x80) from [<80227a88>] (bus_add_dr)
[<80227a88>] (bus_add_driver+0x98/0x230) from [<802284c0>] (driver_regi)
[<802284c0>] (driver_register+0x78/0x13c) from [<80209ee8>] (__pci_regi)
[<80209ee8>] (__pci_register_driver+0x44/0xb4) from [<800465bc>] (do_on)
[<800465bc>] (do_one_initcall+0x30/0x19c) from [<8009ad58>] (sys_init_m)
[<8009ad58>] (sys_init_module+0x11c/0x1bac) from [<80046ac0>] (ret_fast)
CPU1: stopping
[<8004d004>] (unwind_backtrace+0x0/0xf8) from [<80046334>] (do_IPI+0x11)
[<80046334>] (do_IPI+0x114/0x154) from [<804c9d20>] (__irq_svc+0x60/0x1)
Exception stack(0x8b429de0 to 0x8b429e28)
9de0: 8055de78 9343fcf8 60000013 00000001 8b428000 00000001 8b429e58 001
9e00: 00000008 00000001 8c990000 8b429e60 00000010 8b429e28 802a0d64 800
9e20: 20000013 ffffffff
[<804c9d20>] (__irq_svc+0x60/0x138) from [<803cfd30>] (__raw_spin_lock_)
[<803cfd30>] (__raw_spin_lock_irqsave+0x9c/0xb8) from [<802a0d64>] (osl)
[<802a0d64>] (osl_pcie_rreg+0xd0/0xdc) from [<7f0513c4>] (dhd_bus_ringb)
[<7f0513c4>] (dhd_bus_ringbell+0x870/0x1bd8 [dhd]) from [<7f051ca4>] (d)
[<7f051ca4>] (dhd_bus_ringbell+0x1150/0x1bd8 [dhd]) from [<7f053ab8>] ()
[<7f053ab8>] (dhd_bus_watchdog+0x58/0x70 [dhd]) from [<7f0442d4>] (dhd_)
[<7f0442d4>] (dhd_watchdog_thread+0xb4/0x188 [dhd]) from [<80086220>] ()
[<80086220>] (kthread+0x88/0x90) from [<80047b8c>] (kernel_thread_exit+)
Rebooting in 3 seconds..Digital core power voltage set to 1.05V
Decompressing...done
Digital core power voltage set to 1.05V

CFE Boot Loader v0.5.1__7.14.131.35

SHMOO VER 1.13

PKID07DC06011801080000000000001A103F01000000

S30000203
00001660


RDLYW0 00000004

RDENW0 00000038

RDQSW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 -----------++++++++++++++++++++++++X+++++++++++++++++++++++-----
 01 --------------+++++++++++++++++++++++++X+++++++++++++++++++++++-
 02 -----------+-++++++++++++++++++++++++X+++++++++++++++++++++++---
 03 ---------++++++++++++++++++++++++X++++++++++++++++++++++++------
 04 -----+++++++++++++++++++++++X+++++++++++++++++++++++------------
 05 ------------++++++++++++++++++++++++X+++++++++++++++++++++++----
 06 ------+++++++++++++++++++++++X+++++++++++++++++++++++-----------
 07 -----------++++++++++++++++++++++++X++++++++++++++++++++++++----
 08 -----++++++++++++++++++++++++++X+++++++++++++++++++++++++-------
 09 -------++++++++++++++++++++++++X++++++++++++++++++++++++--------
 10 ---------++++++++++++++++++++++++X++++++++++++++++++++++++------
 11 --------++++++++++++++++++++++++X+++++++++++++++++++++++--------
 12 --+++++++++++++++++++++++++X+++++++++++++++++++++++++-----------
 13 ------+++++++++++++++++++++++X+++++++++++++++++++++++-----------
 14 -----+++++++++++++++++++++++++X+++++++++++++++++++++++++--------
 15 ----+++++++++++++++++++++++++X++++++++++++++++++++++++----------


PW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 -+++++++++++++++++++++++++++++X++++++++++++++++++++++++++++-----
 01 ---++++++++++++++++++++++++++++++X+++++++++++++++++++++++++++++-
 02 --+++++++++++++++++++++++++++++X++++++++++++++++++++++++++++----
 03 +++++++++++++++++++++++++++++X++++++++++++++++++++++++++++------
 04 ++++++++++++++++++++++++++X+++++++++++++++++++++++++------------
 05 -+++++++++++++++++++++++++++++X+++++++++++++++++++++++++++++----
 06 ++++++++++++++++++++++++++X++++++++++++++++++++++++++-----------
 07 --+++++++++++++++++++++++++++++X++++++++++++++++++++++++++++----
 08 ++++++++++++++++++++++++++++X++++++++++++++++++++++++++++-------
 09 ++++++++++++++++++++++++++++X+++++++++++++++++++++++++++--------
 10 +++++++++++++++++++++++++++++X+++++++++++++++++++++++++++++-----
 11 ++++++++++++++++++++++++++++X+++++++++++++++++++++++++++--------
 12 ++++++++++++++++++++++++++X++++++++++++++++++++++++++-----------
 13 ++++++++++++++++++++++++++X++++++++++++++++++++++++++-----------
 14 ++++++++++++++++++++++++++++X+++++++++++++++++++++++++++--------
 15 +++++++++++++++++++++++++++X++++++++++++++++++++++++++----------


NW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 ----------+++++++++++++++++++++++++++X++++++++++++++++++++++++++
 01 --------------+++++++++++++++++++++++++X++++++++++++++++++++++++
 02 -----------++++++++++++++++++++++++++X++++++++++++++++++++++++++
 03 ---------+++++++++++++++++++++++++++X++++++++++++++++++++++++++-
 04 -----+++++++++++++++++++++++++X++++++++++++++++++++++++---------
 05 ------------++++++++++++++++++++++++++X+++++++++++++++++++++++--
 06 ------++++++++++++++++++++++++++X+++++++++++++++++++++++++------
 07 -----------++++++++++++++++++++++++++X++++++++++++++++++++++++--
 08 -----+++++++++++++++++++++++++++X++++++++++++++++++++++++++-----
 09 --------+++++++++++++++++++++++++X+++++++++++++++++++++++++-----
 10 --------+++++++++++++++++++++++++X+++++++++++++++++++++++++-----
 11 ---------+++++++++++++++++++++++++X++++++++++++++++++++++++-----
 12 ---+++++++++++++++++++++++++X+++++++++++++++++++++++++----------
 13 -------++++++++++++++++++++++++X++++++++++++++++++++++++--------
 14 ------+++++++++++++++++++++++++X++++++++++++++++++++++++--------
 15 ----+++++++++++++++++++++++++X++++++++++++++++++++++++----------


WRDQW0 

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 ++++++++++++++++++++++++++X+++++++++++++++++++++++++---------++-
 01 +++++++++++++++++++++++++++X++++++++++++++++++++++++++-------++-
 02 +++++++++++++++++++++++++++X+++++++++++++++++++++++++++-----+++-
 03 ++++++++++++++++++++++++++X++++++++++++++++++++++++++-------+++-
 04 ++++++++++++++++++++++X++++++++++++++++++++++---------------+++-
 05 ++++++++++++++++++++++++++X++++++++++++++++++++++++++---------+-
 06 ++++++++++++++++++++++++X+++++++++++++++++++++++-------------++-
 07 +++++++++++++++++++++++++++X++++++++++++++++++++++++++-------++-
 08 +++++++++++++++++++++++++X++++++++++++++++++++++++-----------++-
 09 +++++++++++++++++++++++++X+++++++++++++++++++++++++---------+++-
 10 ++++++++++++++++++++++++++X+++++++++++++++++++++++++--------+++-
 11 ++++++++++++++++++++++++X+++++++++++++++++++++++-----------++++-
 12 ++++++++++++++++++++++++X+++++++++++++++++++++++------------+++-
 13 +++++++++++++++++++++++X+++++++++++++++++++++++------------++++-
 14 +++++++++++++++++++++++++X++++++++++++++++++++++++-----------++-
 15 ++++++++++++++++++++++++X+++++++++++++++++++++++------------+++-


WRDMW0 00000025
WRDMW0 00000024


ADDR

    0000000000111111111122222222223333333333444444444455555555556666
    0123456789012345678901234567890123456789012345678901234567890123
 00 ++++++++++++++++++++++S++++++++X++++++++++++++++++++++++++++++++

Decompressing...done
Found a Toshiba NAND flash:
Total size:  128MB
Block size:  128KB
Page Size:   2048B
OOB Size:    64B
Sector size: 512B
Spare size:  16B
ECC level:   8 (8-bit)
Device ID: 0x98 0xf1 0x80 0x15 0xf2 0x16
find_devinfo: devinfo block found at 0x00180000!

Press Ctrl+C to stop in CFE


CFE version 7.14.131.35 (r612453) based on BBP 1.0.37 for BCM947XX (32b)
Build Date: Fri Jan 22 18:07:59 CST 2016 (proc@ubuntu12d04LTS), for thed
Copyright (C) 2000-2008 Broadcom Corporation.
Copyright (C) 2016 Arcadyan Corporation.

Flashing all LEDs ...

Init Arena
Init Devs.
Boot partition size = 262144(0x40000)
DDR Clock: 800 MHz
Info: DDR frequency set from clkfreq=1400,*800*

### RoboID=53012, vid=1 val32=0x35faf val16=0x1 ###

### RoboID=53012, vid=2 val32=0x22110 val16=0x2 ###
et2: Broadcom BCM47XX 10/100/1000 Mbps Ethernet Controller 7.14.131.35 )
CPU type 0x0: 1400MHz
Tot mem: 262144 KBytes

CFE mem:    0x00F00000 - 0x01799D2C (9018668)
Data:       0x00F601E0 - 0x00F608A8 (1736)
BSS:        0x00F608B8 - 0x00F97D2C (226420)
Heap:       0x00F97D2C - 0x01797D2C (8388608)
Stack:      0x01797D2C - 0x01799D2C (8192)
Text:       0x00F00000 - 0x00F52488 (337032)
Boot:       0x0179A000 - 0x017DA000
Reloc:      I:00000000 - D:00000000

Boot version: v0.5.1__7.14.131.35


nvram set bootpartition=0 && nvram set partialboots=0 && nvram commit
go

you need to run this from CFE serial terminal. Then hit enter. Send me the logs.

I want to restore the backup file, I suspect my partition has changed,
thank you very much

root@OpenWrt:/# cat /proc/mtd
dev: size erasesize name
mtd0: 00080000 00020000 "boot"
mtd1: 00100000 00020000 "nvram"
mtd2: 00080000 00020000 "nvram"
mtd3: 01d00000 00020000 "firmware"
mtd4: 003fffe4 00020000 "linux"
mtd5: 01900000 00020000 "ubi"
mtd6: 06100000 00020000 "failsafe"

dd if=/dev/mtd0 of=/tmp/boot.bin
dd if=/dev/mtd1 of=/tmp/nvram1.bin
dd if=/dev/mtd2 of=/tmp/nvram2.bin
dd if=/dev/mtd3 of=/tmp/firmware.bin
dd if=/dev/mtd4 of=/tmp/linux.bin
dd if=/dev/mtd5 of=/tmp/ubi.bin
dd if=/dev/mtd6 of=/tmp/failsafe.bin

I need these files to recover,
If you don't mind, please share it, thank you very much.

Hi NP,

Thanks for all the work you have put in this. I think the latest version (Dec 26th) may have an issue. I cant seem to get it to grab a dhcp address from my cable router so I have no internet with it. My previous version I was using was I believe 2018-08-03.

EDIT: Downgraded to the 11-27 version and its back up.

Thanks for your feedback. I've marked the build as test. Can you reset your settings first, then flash the new firmware?

@yefx1
You will need cfe, nvram1 and nvram2 which corresponds to mtd0, mtd1 and mtd2.

I think your nvram is corrupt or the firmware flash damaged. First try flashing nvram and your cfe has no issues. If that doesn't work, I'm pretty sure that your flash chip is toast.

I've uploaded mtd0,mtd1 and mtd2 here: https://www.dropbox.com/sh/agmhwz107bnu5u6/AAB-78KkBVfMbk7q7nXnSrQHa?dl=0

mtd3 has firmware copy 1
mtd6 has firmware copy 2

You can flash both copies using:

mtd3:

flash -noheader 192.168.1.10:/openwrt.trx nflash0.trx

mtd6:

flash -noheader 192.168.1.10:/openwrt.trx nflash0.trx2

Good luck!