Netgear BR100 IPQ4018 SoC

What are the specs, as well do you have the stock FW to pull the DTS from?

I don't have any specifications, I only have access to the configuration page

Its most likely supportable HW, but without the stock DTS its a guessing game

ok, this a part of configuration file:

  config login
	option username 'root'
	option password '$p$root'
	list read '*'
	list write '*'                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               ```

That is useless

does it help if i put all the configuration file?

# sysstat.ioconf
#
#  Copyright (C) 2004, Red Hat, Inc.
#
#  Maintained by Sebastien Godard (sysstat [at] orange.fr)
#
#  This file gives iostat and sadc a clue about how to find whole
#   disk devices in /proc/partitions and /proc/diskstats
#  Authoritative source is: linux/Documentation/devices.txt
#
# line format, general record:
#   major:name:ctrlpre:ctrlno:devfmt:devcnt:partpre:partcnt:description
#
#  major:		major # for device
#  name:		base of device name
#  ctrlpre:		string to use in generating controller designators
#			 eg: the c in c0d2p6, decimal formatting implied
#			'*' means none or irrelevant
#			'x': exception... record contains a specific name
#                       for a specific minor #, stored in the ctrlno field
#  ctrlno:		which controller of this type is this
#  devfmt:		type of device naming convention
#	a:		alpha: xxa, xxb, ... xxaa, xxab, ... xxzz
#	%string:	string to use in generating drive designators,
#			 eg: the 'd' in c0d2p6 , decimal formatting implied
#	d:		no special translations (decimal formatting)
#  devcnt:		how many whole devs per major number
#  partpre:         	appended to whole dev before part designator
#                        eg. the p in c0d2p6, decimal formatting implied
#			 '*' means none
#  partcnt:		number of partitions per volume
#			 or minor # for exception records
#  description:		informative text
#
# line format, indirect record:
#   major:base_major:ctrlno[:[desc]]
#
#  major:		major number of the device
#  base_major:		major number of the template for this type,
#			 0 for not supported
#  ctrlno:		controller number of this type
#  desc:		controller-specific description
#			if absent the desc from base_major will be
#			 used in sprintf( buf, desc, ctrlno )


1:ram:*:0:d:256:*:1:RAM disks (ram0..ram255)
1:initrd:x:250:d:256:*:1:Initial RAM Disk (initrd)

#2:0:0:Floppy Devices
2:fd:*:0:d:4:*:1:Floppy Devices fd0,fd1,fd2,fd3

3:hd:*:0:a:2:*:64:IDE - Controller %d
22:3:1:
33:3:2:
34:3:3:
56:3:4:
57:3:5:
88:3:6:
89:3:7:
90:3:8:
91:3:9:

#4:0:0:NODEV
#5:0:0:NODEV
#6:0:0:NODEV
7:loop:*:0:d:256:*:1:Loop Devices 

8:sd:*:0:a:16:*:16:SCSI - Controller %d
65:8:1:
66:8:2:
67:8:3:
68:8:4:
69:8:5:
70:8:6:
71:8:7:
128:8:8:
129:8:9:
130:8:10:
131:8:11:
132:8:12:
133:8:13:
134:8:14:
135:8:15:

9:md:*:0:d:256:*:1:Metadisk (Software RAID) devices  (md0..md255)

#10:0:0:NODEV

#11:sr:*:0:d:256:*:1:CDROM - CDROM (sr0..sr255) (deprecated)
11:scd:*:0:d:256:*:1:CDROM - CDROM (scd0..scd255)

#12:0:0:MSCDEX CD-ROM Callback

13:xd:*:0:a:2:*:64:8-bit MFM/RLL/IDE controller (xda, xdb)

#14:0:0:BIOS Hard Drive Callback
#15:0:0:CDROM - Sony CDU-31A/CDU-33A
#16:0:0:CDROM - Goldstar
#17:0:0:CDROM - Optics Storage
#18:0:0:CDROM - Sanyo

19:double:*:0:d:256:*:1:Compressed Disk (double0..double255)

#20:0:0:CDROM - Hitachi

21:mfm:*:0:a:2:*:64:Acorn MFM Hard Drive (mfma, mfmb)

# 22: see IDE, dev 3

#23:0:0:CDROM - Mistumi Proprietary
#24:0:0:CDROM - Sony CDU-535
#25:0:0:CDROM - Matsushita (Panasonic/Soundblaster) #1
#26:0:1:CDROM - Matsushita (Panasonic/Soundblaster) #2
#27:0:2:CDROM - Matsushita (Panasonic/Soundblaster) #3
#28:0:3:CDROM - Matsushita (Panasonic/Soundblaster) #4
# 28:0:0:! ACSI (Atari) Disk Not Supported
#29:0:0:CDROM - Aztech/Orchid/Okano/Wearnes
#30:0:0:CDROM - Philips LMS CM-205
#31:0:0:ROM/flash Memory Card
#32:0:0:CDROM -  Phillips LMS CM-206

# 33: See IDE, dev 3
# 34: See IDE, dev 3

#35:0:0:Slow Memory RAM Disk

36:ed:*:0:a:2:*:64:MCA ESDI Hard Disk (eda, edb)

#37:0:0:Zorro II Ram Disk
#38:0:0:Reserved For Linux/AP+
#39:0:0:Reserved For Linux/AP+
#40:0:0:Syquest EZ135 Parallel Port Drive
#41:0:0:CDROM -  MicroSolutions Parallel Port BackPack
#42:0:0:For DEMO Use Only

43:nb:*:0:d:256:*:1:Network Block devices (nb0..nb255)
44:ftl:*:0:a:16:*:16:Flash Translation Layer (ftla..ftlp)
45:pd:*:0:a:4:*:16:Parallel Port IDE (pda..pdd)

#46:0:0:CDROM - Parallel Port ATAPI

47:pf:*:0:d:256:*:1:Parallel Port ATAPI Disk Devices (pf0..pf255)

48:rd:/c:0:%d:32:p:8:Mylex DAC960 RAID, Controller %d
49:48:1:
50:48:2:
51:48:3:
52:48:4:
53:48:5:
54:48:6:
55:48:7:
136:48:8:
137:48:9:
138:48:10:
139:48:11:
140:48:12:
141:48:13:
142:48:14:
143:48:15:

# 56, 57: see IDE, dev 3:

58:lvm:*:0:d:256:*:1:Logical Volume Manager (lvm0..lvm255)

#59:0:0:PDA Filesystem Device
#60:0:0:Local/Experimental Use
#61:0:0:Local/Experimental Use
#62:0:0:Local/Experimental Use
#63:0:0:Local/Experimental Use
#64:0:0:NODEV

# 65..71: See SCSI, dev 8:

72:ida/:c:0:%d:16:p:16:Compaq Intelligent Drive Array - Controller %d
73:72:1:
74:72:2:
75:72:3:
76:72:4:
77:72:5:
78:72:6:
79:72:7:

80:i2o/hd:*:0:a:16:*:16:I2O Disk - Controller %d
81:80:1:
82:80:2:
83:80:3:
84:80:4:
85:80:5:
86:80:6:
87:80:7:

# 88..91: see IDE, dev 3:

#92:0:0:PPDD Encrypted Disk
#93:0:0:NAND Flash Translation Layer not supported

94:dasd:*:0:a:64:*:4:IBM S/390 DASD Block Storage (dasda, dasdb, ...)

#95:0:0:IBM S/390 VM/ESA Minidisk
#96:0:0:NODEV
#97:0:0:CD/DVD packed writing devices not supported

98:ubd:*:0:d:256:*:1:User-mode Virtual Block Devices (ubd0..ubd256)

#99:0:0:JavaStation Flash Disk
#100:0:0:NODEV

101:amiraid/ar:*:0:d:16:p:16:AMI HyperDisk RAID (amiraid/ar0 - amiraid/ar15)

#102:0:0:Compressed Block Device
#103:0:0:Audit Block Device

104:cciss:/c:0:%d:16:p:16:HP SA 5xxx/6xxx (cciss) Controller %d
105:104:1:
106:104:2:
107:104:3:
108:104:4:
109:104:5:
110:104:6:
111:104:7:

112:iseries/vd:*:0:a:32:*:8:IBM iSeries Virtual Disk (.../vda - .../vdaf)

#113:0:0:CDROM - IBM iSeries Virtual

# 114..159 NODEV

120:emcpower:*:0:a:16:*:16:EMC PowerPath Unit %d

#160:sx8/:*:0:d:8:p:32:Promise SATA SX8 Unit %d
#161:160:1:
160:carmel/:*:0:d:8:p:32:Carmel 8-port SATA Disks (carmel/0 - carmel/7)
161:160:1:

# 162..198 UNUSED

180:ub:*:0:a:32:p:8:USB block devices

#199:0:0:Veritas Volume Manager (VxVM) Volumes
#200:0:0:NODEV
#201:0:0:Veritas VxVM Dynamic Multipathing Driver

202:xvd:*:0:a:16:p:16:Xen Virtual Block Device

# 203..230: UNUSED

232:emcpower:*:0:a:16:*:16:EMC PowerPath Unit %d
233:232:1:
234:232:2:
235:232:3:
236:232:4:
237:232:5:
238:232:6:
239:232:7:
240:232:8:
241:232:9:
242:232:10:
243:232:11:
244:232:12:
245:232:13:
246:232:14:
247:232:15:

# 240..254: LOCAL/Experimental
# 255: reserved for big dev_t expansion

No, that kind of stuff is useless.
You need to have a firmware image or DTS, or even better GPL sources.

Anything else is not helpfull

with the configuration file could you prepare a hack to enter ssh and then make an image of the fw?

No, without the stuff I listed its all useless.

Can you point to a Netgear website for this BR100?
Reason for asking: I can not find any BR100 at Netgear, only at other OEMs.

this product is part of an abandoned beta test project

1 Like

Hello,

Is there any way to extract the firmware image or DTS through SSH?

Thank you in advance!

Sure, just dump all of the storage partitions

Can you please give me the commands for doing that? I'm completely new to all of this...

Well no as I have no idea what board and layout are you having

1 Like

It is the BR100 mentioned in this thread. Is there anything specific that would help? I do know the SOC is IPQ4018, the flash is 2MB + 128 MB, and the ram is 256 MB.

Thank you for your help, I truly appreciate it.

Again, that thing is just a prototype.
Can you at least show us: cat /proc/mtd

1 Like

Format: Log Type - Time(microsec) - Message - Optional Info
Log Type: B - Since Boot(Power On Reset), D - Delta, S - Statistic
S - QC_IMAGE_VERSION_STRING=BOOT.BF.3.1.1-00126
S - IMAGE_VARIANT_STRING=DAABANAZA
S - OEM_IMAGE_VERSION_STRING=CRM
S - Boot Config, 0x00000021
S - Reset status Config, 0x00000000
S - Core 0 Frequency, 0 MHz
B - 261 - PBL, Start
B - 1339 - bootable_media_detect_entry, Start
B - 1679 - bootable_media_detect_success, Start
B - 1693 - elf_loader_entry, Start
B - 5079 - auth_hash_seg_entry, Start
B - 7227 - auth_hash_seg_exit, Start
B - 578508 - elf_segs_hash_verify_entry, Start
B - 696520 - PBL, End
B - 696543 - SBL1, Start
B - 787353 - pm_device_init, Start
D - 7 - pm_device_init, Delta
B - 788818 - boot_flash_init, Start
D - 52790 - boot_flash_init, Delta
B - 845748 - boot_config_data_table_init, Start
D - 3840 - boot_config_data_table_init, Delta - (419 Bytes)
B - 852964 - clock_init, Start
D - 7562 - clock_init, Delta
B - 865000 - CDT version:2,Platform ID:8,Major ID:1,Minor ID:1,Subtype:0
B - 868414 - sbl1_ddr_set_params, Start
B - 873511 - cpr_init, Start
D - 2 - cpr_init, Delta
B - 877893 - Pre_DDR_clock_init, Start
D - 4 - Pre_DDR_clock_init, Delta
D - 13176 - sbl1_ddr_set_params, Delta
B - 891633 - pm_driver_init, Start
D - 2 - pm_driver_init, Delta
B - 961758 - sbl1_wait_for_ddr_training, Start
D - 28 - sbl1_wait_for_ddr_training, Delta
B - 977193 - Image Load, Start
D - 153158 - QSEE Image Loaded, Delta - (299560 Bytes)
B - 1130778 - Image Load, Start
D - 1445 - SEC Image Loaded, Delta - (2048 Bytes)
B - 1141195 - Image Load, Start
D - 208197 - APPSBL Image Loaded, Delta - (425619 Bytes)
B - 1349790 - QSEE Execution, Start
D - 60 - QSEE Execution, Delta
B - 1356011 - SBL1, End
D - 661576 - SBL1, Delta
S - Flash Throughput, 2006 KB/s (727646 Bytes, 362614 us)
S - DDR Frequency, 537 MHz

U-Boot 2012.07-gee252ce-dirty [Chaos Calmer 15.05.1,cfeef9f+r49254] (Jul 04 2019 - 15:41:46)

QSDK IPQ4019 ILQ.6.1.0.1 CS hw verification U-boot v0.0.5 for DNI HW ID: 29766070+2+128+256+0+0; NOR flash 2MB; NAND flash 128MB; RAM 256MB

smem ram ptable found: ver: 1 len: 3
DRAM: 256 MiB
machid : 0x8010100
NAND: spi_nand: spi_nand_flash_probe SF NAND ID 0:ef:aa:21
ipq_spi: page_size: 0x100, sector_size: 0x1000, size: 0x200000
130 MiB
*** Warning - bad CRC, using default environment

In: serial
Out: serial
Err: serial
machid: 8010100
flash_type: 0
Net: MAC0 addr:38:94:ed:2f:4a:38
PHY ID1: 0x4d
PHY ID2: 0xd0b1
ipq40xx_ess_sw_init done
eth0
Hit any key to stop autoboot: 2 1 0
crashdump switch : 54783853
crashdump switch is off, tftp-crashdump is disable
eth0 PHY0 Down Speed :10 Half duplex
eth0 PHY1 Down Speed :10 Half duplex
eth0 PHY2 Down Speed :10 Half duplex
eth0 PHY3 Down Speed :10 Half duplex
eth0 PHY4 Down Speed :10 Half duplex

nmrp server is stopped or failed !
Loading DNI firmware for checking…
Loading firmware 1 …

NAND read: device 1 offset 0x0, size 0x20000
131072 bytes read: OK
kernel partition include 0 bad blocks

NAND read: device 1 offset 0x3e0000, size 0x20000
131072 bytes read: OK
Rootfs header is found, rootfs size is 14419968
kernel size is 4194304, rootfs size is 14419968
dniimg_len is 18614272 (aligned to 18743296)
dniimg_size is 18743296
NAND read: device 1 offset 0x0, size 0x11e0000
18743296 bytes read: OK
if iminfo 0x84000000; then echo kernel checksum OK !;if iminfo 0x843FFFC0; then echo rootfs checksum OK !;;true;else echo rootfs checksum error !!!;fw_recovery;false;fi;else echo kernel checksum error !!!;fw_recovery;false;fi;

Checking Image at 84000000 …

FIT image found
FIT description: ARM OpenWrt FIT (Flattened Image Tree)
Image 0 (kernel@1)
Description: ARM OpenWrt Linux-3.14.77
Type: Kernel Image
Compression: gzip compressed
Data Start: 0x840000e4
Data Size: 3547661 Bytes = 3.4 MiB
Architecture: ARM
OS: Linux
Load Address: 0x80208000
Entry Point: 0x80208000
Hash algo: crc32
Hash value: ba4be275
Hash algo: sha1
Hash value: 9fa7da9aa2193e47f2e056557fc2ec384af5b8dd
Image 1 (fdt@1)
Description: ARM OpenWrt qcom-ipq40xx-ap.br100 device tree blob
Type: Flat Device Tree
Compression: uncompressed
Data Start: 0x84362434
Data Size: 34719 Bytes = 33.9 KiB
Architecture: ARM
Hash algo: crc32
Hash value: 39244c8d
Hash algo: sha1
Hash value: 1e6118eb7509938e9911131e3f65f0dde4b93bb2
Default Configuration: ‘config@1’
Configuration 0 (config@1)
Description: OpenWrt
Kernel: kernel@1
FDT: fdt@1

Checking hash(es) for FIT Image at 84000000 …

Hash(es) for Image 0 (kernel@1): crc32+ sha1+
Hash(es) for Image 1 (fdt@1): crc32+ sha1+
kernel checksum OK !

Checking Image at 843fffc0 …

Legacy image found
Image Name: ARM OpenWrt Linux-3.14.77
Image Type: ARM Linux Kernel Image (uncompressed)
Data Size: 14419968 Bytes = 13.8 MiB
Load Address: 80208000
Entry Point: 80208000
Verifying Checksum … OK
rootfs checksum OK !

Booting kernel from FIT Image at 84000000 …

Using ‘config@1’ configuration
Trying ‘kernel@1’ kernel subimage
Description: ARM OpenWrt Linux-3.14.77
Type: Kernel Image
Compression: gzip compressed
Data Start: 0x840000e4
Data Size: 3547661 Bytes = 3.4 MiB
Architecture: ARM
OS: Linux
Load Address: 0x80208000
Entry Point: 0x80208000
Hash algo: crc32
Hash value: ba4be275
Hash algo: sha1
Hash value: 9fa7da9aa2193e47f2e056557fc2ec384af5b8dd
Verifying Hash Integrity … crc32+ sha1+ OK

Flattened Device Tree from FIT Image at 84000000

Using ‘config@1’ configuration
Trying ‘fdt@1’ FDT blob subimage
Description: ARM OpenWrt qcom-ipq40xx-ap.br100 device tree blob
Type: Flat Device Tree
Compression: uncompressed
Data Start: 0x84362434
Data Size: 34719 Bytes = 33.9 KiB
Architecture: ARM
Hash algo: crc32
Hash value: 39244c8d
Hash algo: sha1
Hash value: 1e6118eb7509938e9911131e3f65f0dde4b93bb2
Verifying Hash Integrity … crc32+ sha1+ OK
Booting using the fdt blob at 0x84362434
Uncompressing Kernel Image … OK
Loading Device Tree to 86ff4000, end 86fff79e … OK
eth1 MAC Address from ART is not valid
Using machid 0x8010100 from environment

Starting kernel …

[ 0.000000] Booting Linux on physical CPU 0x0
[ 0.000000] Initializing cgroup subsys cpuset
[ 0.000000] Initializing cgroup subsys cpu
[ 0.000000] Initializing cgroup subsys cpuacct
[ 0.000000] Linux version 3.14.77 (vagrant@dnetlab) (gcc version 4.8.3 (OpenWrt/Linaro GCC 4.8-2014.04 3eef723+r49254) ) #287 SMP PREEMPT Fri Aug 23 16:10:46 CST 2019
[ 0.000000] CPU: ARMv7 Processor [410fc075] revision 5 (ARMv7), cr=10c5387d
[ 0.000000] CPU: PIPT / VIPT nonaliasing data cache, VIPT aliasing instruction cache
[ 0.000000] Machine model: Netgear Business Router BR100
[ 0.000000] Memory policy: Data cache writealloc
[ 0.000000] PERCPU: Embedded 7 pages/cpu @cfdca000 s8064 r8192 d12416 u32768
[ 0.000000] Built 1 zonelists in Zone order, mobility grouping on. Total pages: 60928
[ 0.000000] Kernel command line: console=ttyMSM0,115200n8 rootfstype=squashfs ubi.mtd=netgear root=/dev/mtdblock10 clk_ignore_unused
[ 0.000000] PID hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.000000] Dentry cache hash table entries: 32768 (order: 5, 131072 bytes)
[ 0.000000] Inode-cache hash table entries: 16384 (order: 4, 65536 bytes)
[ 0.000000] allocated 524288 bytes of page_cgroup
[ 0.000000] please try ‘cgroup_disable=memory’ option if you don’t want memory cgroups
[ 0.000000] Memory: 234956K/245760K available (4867K kernel code, 410K rwdata, 1776K rodata, 175K init, 551K bss, 10804K reserved, 0K highmem)
[ 0.000000] Virtual kernel memory layout:
[ 0.000000] vector : 0xffff0000 - 0xffff1000 ( 4 kB)
[ 0.000000] fixmap : 0xfff00000 - 0xfffe0000 ( 896 kB)
[ 0.000000] vmalloc : 0xd0800000 - 0xff000000 ( 744 MB)
[ 0.000000] lowmem : 0xc0000000 - 0xd0000000 ( 256 MB)
[ 0.000000] pkmap : 0xbfe00000 - 0xc0000000 ( 2 MB)
[ 0.000000] modules : 0xbf000000 - 0xbfe00000 ( 14 MB)
[ 0.000000] .text : 0xc0208000 - 0xc0885024 (6645 kB)
[ 0.000000] .init : 0xc0886000 - 0xc08b1f80 ( 176 kB)
[ 0.000000] .data : 0xc08b2000 - 0xc0918b48 ( 411 kB)
[ 0.000000] .bss : 0xc0918b48 - 0xc09a2810 ( 552 kB)
[ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1
[ 0.000000] Preemptible hierarchical RCU implementation.
[ 0.000000] NR_IRQS:16 nr_irqs:16 16
[ 0.000000] Architected cp15 timer(s) running at 48.00MHz (virt).
[ 0.000008] sched_clock: 56 bits at 48MHz, resolution 20ns, wraps every 2863311552512ns
[ 0.000017] Switching to timer-based delay loop
[ 0.000303] Calibrating delay loop (skipped), value calculated using timer frequency.. 96.00 BogoMIPS (lpj=480000)
[ 0.000321] pid_max: default: 32768 minimum: 301
[ 0.000592] Mount-cache hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.000608] Mountpoint-cache hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.011290] Initializing cgroup subsys memory
[ 0.011332] Initializing cgroup subsys devices
[ 0.011345] Initializing cgroup subsys net_cls
[ 0.011354] Initializing cgroup subsys net_prio
[ 0.011405] CPU: Testing write buffer coherency: ok
[ 0.011800] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000
[ 0.011871] Setting up static identity map for 0x802126e0 - 0x80212738
[ 0.090676] CPU1: Booted secondary processor
[ 0.090723] CPU1: thread -1, cpu 1, socket 0, mpidr 80000001
[ 0.110662] CPU2: Booted secondary processor
[ 0.110699] CPU2: thread -1, cpu 2, socket 0, mpidr 80000002
[ 0.130697] CPU3: Booted secondary processor
[ 0.130732] CPU3: thread -1, cpu 3, socket 0, mpidr 80000003
[ 0.130882] Brought up 4 CPUs
[ 0.130923] SMP: Total of 4 processors activated (384.00 BogoMIPS).
[ 0.130931] CPU: All CPU(s) started in SVC mode.
[ 0.141681] VFP support v0.3: implementor 41 architecture 2 part 30 variant 7 rev 5
[ 0.142170] pinctrl core: initialized pinctrl subsystem
[ 0.142616] regulator-dummy: no parameters
[ 0.143308] NET: Registered protocol family 16
[ 0.144866] DMA: preallocated 2048 KiB pool for atomic coherent allocations
[ 0.145528] cpuidle: using governor ladder
[ 0.145542] cpuidle: using governor menu
[ 0.153784] hw-breakpoint: Debug register access (0xee003e17) caused undefined instruction on CPU 3
[ 0.153792] hw-breakpoint: Debug register access (0xee003e17) caused undefined instruction on CPU 2
[ 0.153799] hw-breakpoint: Debug register access (0xee003e17) caused undefined instruction on CPU 1
[ 0.153803] hw-breakpoint: CPU 2 failed to disable vector catch
[ 0.153835] hw-breakpoint: Debug register access (0xee003e17) caused undefined instruction on CPU 0
[ 0.153924]
[ 0.153924] Version Rollback Feature Disabled
[ 0.156921] glink_init: unable to create log context
[ 0.157540] sps:sps is ready.
[ 0.162863] bio: create slab at 0
[ 0.164824] SCSI subsystem initialized
[ 0.165677] msm_bus_fabric_init_driver
[ 0.165859] msm_bus_device 580000.ad-hoc-bus: Util-fact is missing, default to 100
[ 0.165876] msm_bus_device 580000.ad-hoc-bus: Vrail-comp is missing, default to 100
[ 0.165896] msm_bus_device 580000.ad-hoc-bus: Failed to get bus clk for bus4096 ctx1
[ 0.165942] msm_bus_device 580000.ad-hoc-bus: Util-fact is missing, default to 100
[ 0.165956] msm_bus_device 580000.ad-hoc-bus: Vrail-comp is missing, default to 100
[ 0.165973] msm_bus_device 580000.ad-hoc-bus: Failed to get bus clk for bus1024 ctx1
[ 0.192083] Advanced Linux Sound Architecture Driver Initialized.
[ 0.193102] Switched to clocksource arch_sys_counter
[ 0.194953] NET: Registered protocol family 2
[ 0.196307] TCP established hash table entries: 2048 (order: 1, 8192 bytes)
[ 0.196358] TCP bind hash table entries: 2048 (order: 2, 16384 bytes)
[ 0.196407] TCP: Hash tables configured (established 2048 bind 2048)
[ 0.196463] TCP: reno registered
[ 0.196480] UDP hash table entries: 256 (order: 1, 8192 bytes)
[ 0.196514] UDP-Lite hash table entries: 256 (order: 1, 8192 bytes)
[ 0.196894] NET: Registered protocol family 1
[ 0.197600] hw perfevents: enabled with ARMv7 Cortex-A7 PMU driver, 5 counters available
[ 0.198981] futex hash table entries: 1024 (order: 4, 65536 bytes)
[ 0.208581] squashfs: version 4.0 (2009/01/31) Phillip Lougher
[ 0.208599] jffs2: version 2.2 (NAND) (SUMMARY) (LZMA) (RTIME) (CMODE_PRIORITY) (c) 2001-2006 Red Hat, Inc.
[ 0.209551] msgmni has been set to 458
[ 0.211592] Key type asymmetric registered
[ 0.211608] Asymmetric key parser ‘x509’ registered
[ 0.211648] io scheduler noop registered
[ 0.211658] io scheduler deadline registered (default)
[ 0.213051] tcsr 194b000.tcsr: setting usb hs phy mode select = e700e7
[ 0.213217] tcsr 1953000.ess_tcsr: setting ess interface select = 0
[ 0.213299] tcsr 1949000.tcsr: setting wifi_glb_cfg = 41000000
[ 0.213361] tcsr 1957000.tcsr: setting wifi_noc_memtype_m0_m2 = 2222222
[ 0.214409] Serial: 8250/16550 driver, 2 ports, IRQ sharing disabled
[ 0.215550] msm_serial_hsl_probe: detected port #0 (ttyMSM0)
[ 0.215592] msm_serial_hsl_probe: Bus scaling is disabled
[ 0.215758] 78af000.serial: ttyMSM0 at MMIO 0x78af000 (irq = 139, base_baud = 115200) is a MSM
[ 0.215838] msm_hsl_console_setup: console setup on port #0
[ 0.857989] console [ttyMSM0] enabled
[ 0.862093] msm_serial_hsl_init: driver initialized
[ 0.866934] msm_serial_hs module loaded
[ 0.870643] qca_serial_hs module loaded
[ 0.877955] sps: BAM device 0x07884000 is not registered yet.
[ 0.882680] sps:BAM 0x07884000 is registered.
[ 0.887087] sps:BAM 0x07884000 (va:0xd0b40000) enabled: ver:0x19, number of pipes:12
[ 0.895682] m25p80 spi0.0: found s25fl016k, expected n25q128a11
[ 0.900652] m25p80 spi0.0: s25fl016k (2048 Kbytes)
[ 0.905487] 9 ofpart partitions found on MTD device spi0.0
[ 0.910883] Creating 9 MTD partitions on “spi0.0”:
[ 0.915684] 0x000000000000-0x000000040000 : “0:SBL1”
[ 0.921706] 0x000000040000-0x000000060000 : “0:MIBIB”
[ 0.926705] 0x000000060000-0x0000000c0000 : “0:QSEE”
[ 0.931592] 0x0000000c0000-0x0000000d0000 : “0:CDT”
[ 0.936533] 0x0000000d0000-0x0000000e0000 : “0:DDRPARAMS”
[ 0.941903] 0x0000000e0000-0x0000000f0000 : “0:APPSBLENV”
[ 0.947304] 0x0000000f0000-0x000000170000 : “0:APPSBL”
[ 0.952430] 0x000000170000-0x000000180000 : “0:ART”
[ 0.957328] 0x000000180000-0x000000190000 : “Manufacture”
[ 0.963667] libphy: Fixed MDIO Bus: probed
[ 0.967105] libphy: ipq40xx_mdio: probed
[ 0.974456] ipq40xx-mdio 90000.mdio: ipq40xx-mdio driver was registered
[ 0.980094] i2c /dev entries driver
[ 0.985549] sdhci: Secure Digital Host Controller Interface driver
[ 0.990697] sdhci: Copyright(c) Pierre Ossman
[ 0.995069] sdhci-pltfm: SDHCI platform and OF driver helper
[ 1.005222] nand: device found, Manufacturer ID: 0xef, Chip ID: 0xaa
[ 1.010543] nand: Winbond W25N01GV 128MiB 3.3V
[ 1.015011] nand: 128MiB, SLC, page size: 2048, OOB size: 64
[ 1.020626] Scanning device for bad blocks
[ 1.308337] random: nonblocking pool is initialized
[ 1.801976] 7 ofpart partitions found on MTD device spi0.1
[ 1.806452] Creating 7 MTD partitions on “spi0.1”:
[ 1.811219] 0x000000000000-0x000000400000 : “kernel”
[ 1.817242] 0x000000400000-0x000002400000 : “rootfs”
[ 1.822168] mtd: device 10 (rootfs) set to be root filesystem
[ 1.828777] mtd: find squashfs magic at 0x400000 of “spi0.1”
[ 1.833428] the correct location of partition “rootfs”: 0x000000400000-0x000002400000
[ 1.841221] 0x000002400000-0x000007900000 : “netgear”
[ 1.847387] 0x000007900000-0x000007980000 : “crashdump”
[ 1.852579] 0x000007980000-0x000007d00000 : “language”
[ 1.857749] 0x000007d00000-0x000007e20000 : “config”
[ 1.862703] 0x000007e20000-0x000007f40000 : “pot”
[ 1.870593] TCP: cubic registered
[ 1.873588] NET: Registered protocol family 10
[ 1.878461] NET: Registered protocol family 17
[ 1.881978] Bridge firewalling registered
[ 1.885921] 8021q: 802.1Q VLAN Support v1.8
[ 1.890164] Registering SWP/SWPB emulation handler
[ 1.895943] regulator-dummy: disabling
[ 1.899157] UBI: attaching mtd11 to ubi0
[ 4.674006] UBI: scanning is finished
[ 4.722882] UBI warning: print_rsvd_warning: cannot reserve enough PEBs for bad PEB handling, reserved 6, need 20
[ 4.733126] UBI: attached mtd11 (name “netgear”, size 85 MiB) to ubi0
[ 4.738538] UBI: PEB size: 131072 bytes (128 KiB), LEB size: 126976 bytes
[ 4.745331] UBI: min./max. I/O unit sizes: 2048/2048, sub-page size 2048
[ 4.751990] UBI: VID header offset: 2048 (aligned 2048), data offset: 4096
[ 4.758865] UBI: good PEBs: 680, bad PEBs: 0, corrupted PEBs: 0
[ 4.764767] UBI: user volume: 1, internal volumes: 1, max. volumes count: 128
[ 4.771870] UBI: max/mean erase counter: 45/31, WL threshold: 4096, image sequence number: 2108413036
[ 4.781087] UBI: available PEBs: 0, total reserved PEBs: 680, PEBs reserved for bad PEB handling: 6
[ 4.790142] UBI: background thread “ubi_bgt0d” started, PID 72
[ 4.791211] drivers/rtc/hctosys.c: unable to open rtc device (rtc0)
[ 4.794878] clk: Not disabling unused clocks
[ 4.794882] ALSA device list:
[ 4.794885] No soundcards found.
^@^@¸^A^H ^@^@^@^@^@Šà^@B^Bâ^A^AÍ}‘•Ù¥•Õ‚‚‚‚r
‘µ¡½µ‰ÕÍ遪ѥ±µ™…Ñ^A^@^@½^@^@^@^@[ 4.823766] VFS: Mounted root (squashfs filesystem) readonly on device 31:10.
[ 4.830296] Freeing unused kernel memory: 172K (c0886000 - c08b1000)
[ 6.042166] init: Console is alive
[ 6.044863] init: - watchdog -
[ 8.698738] Button Hotplug driver version 0.4.1
[ 9.048646] init: - preinit -
Press the [f] key and hit [enter] to enter failsafe mode
Press the [1], [2], [3] or [4] key and hit [enter] to select the debug level
Prepare for mount root
Before mount_root
[ 11.722118] UBIFS: background thread “ubifs_bgt0_0” started, PID 105
[ 11.951296] UBIFS: recovery needed
[ 12.762631] UBIFS: recovery completed
[ 12.765441] UBIFS: mounted UBI device 0, volume 0, name “rootfs_data”
[ 12.771707] UBIFS: LEB size: 126976 bytes (124 KiB), min./max. I/O unit sizes: 2048 bytes/2048 bytes
[ 12.780850] UBIFS: FS size: 83677184 bytes (79 MiB, 659 LEBs), journal size 4190208 bytes (3 MiB, 33 LEBs)
[ 12.790476] UBIFS: reserved for root: 3952280 bytes (3859 KiB)
[ 12.796306] UBIFS: media format: w4/r0 (latest is w4/r0), UUID 4E03D62A-09CB-4B6C-BFE3-CAD203581145, small LPT model
[ 12.822668] mount_root: switching to jffs2 overlay
After mount_root
377+0 records in
377+0 records out
12064 bytes (11.8KB) copied, 0.041240 seconds, 285.7KB/s
377+0 records in
377+0 records out
12064 bytes (11.8KB) copied, 0.036482 seconds, 322.9KB/s
[ 12.978585] procd: - early -
[ 12.980576] procd: - watchdog -
[ 13.790075] procd: - ubus -
[ 14.804225] procd: - init -
Please press Enter to activate this console.
[ 17.178274] QCE50: __qce_init_clk: Unable to get CE core src clk, set to NULL
[ 17.184574] qcrypto 8e20000.qcrypto: Qualcomm Crypto 5.3.1 device found @0x8e20000
[ 17.191944] qcrypto 8e20000.qcrypto: CE device = 0x0
[ 17.191944] , IO base, CE = 0xd1080000
[ 17.191944] , Consumer (IN) PIPE 2, Producer (OUT) PIPE 3
[ 17.191944] IO base BAM = 0x (null)
[ 17.191944] BAM IRQ 239
[ 17.191944] Engines Availability = 0x2010453
[ 17.216760] sps:BAM 0x08e04000 is registered.
[ 17.221661] sps:BAM 0x08e04000 (va:0xd10c0000) enabled: ver:0x27, number of pipes:4
[ 17.229532] QCE50: qce_sps_init: Qualcomm MSM CE-BAM at 0x0000000008e04000 irq 239
[ 17.236552] bus_scale_table is NULL
[ 17.239834] qcrypto 8e20000.qcrypto: qcrypto-ecb-aes
[ 17.244782] qcrypto 8e20000.qcrypto: qcrypto-cbc-aes
[ 17.249657] qcrypto 8e20000.qcrypto: qcrypto-ctr-aes
[ 17.254629] qcrypto 8e20000.qcrypto: qcrypto-ecb-des
[ 17.259542] qcrypto 8e20000.qcrypto: qcrypto-cbc-des
[ 17.264525] qcrypto 8e20000.qcrypto: qcrypto-ecb-3des
[ 17.269531] qcrypto 8e20000.qcrypto: qcrypto-cbc-3des
[ 17.274588] qcrypto 8e20000.qcrypto: qcrypto-xts-aes
[ 17.279511] qcrypto 8e20000.qcrypto: qcrypto-sha1
[ 17.284259] qcrypto 8e20000.qcrypto: qcrypto-sha256
[ 17.289057] qcrypto 8e20000.qcrypto: qcrypto-aead-hmac-sha1-cbc-aes
[ 17.295331] qcrypto 8e20000.qcrypto: qcrypto-aead-hmac-sha1-cbc-des
[ 17.301556] qcrypto 8e20000.qcrypto: qcrypto-aead-hmac-sha1-cbc-3des
[ 17.307937] qcrypto 8e20000.qcrypto: qcrypto-aead-hmac-sha256-cbc-aes
[ 17.314348] qcrypto 8e20000.qcrypto: qcrypto-aead-hmac-sha256-cbc-des
[ 17.320738] qcrypto 8e20000.qcrypto: qcrypto-aead-hmac-sha256-cbc-3des
[ 17.327301] qcrypto 8e20000.qcrypto: qcrypto-hmac-sha1
[ 17.332373] qcrypto 8e20000.qcrypto: qcrypto-hmac-sha256
[ 17.337687] qcrypto 8e20000.qcrypto: qcrypto-aes-ccm
[ 17.342619] qcrypto 8e20000.qcrypto: qcrypto-rfc4309-aes-ccm
[ 17.348174] qcrypto: FIPS140-2 Known Answer Tests: Skipped
[ 17.365696] nf_conntrack version 0.5.0 (3673 buckets, 14692 max)
[ 17.375239] NTFS driver 2.1.30 [Flags: R/O MODULE].
[ 17.386000] Initializing XFRM netlink socket
[ 17.390607] NET: Registered protocol family 15
[ 17.396713] PPP generic driver version 2.4.2
[ 17.997918] ssdk_alloc_priv[3822]:INFO:ess-switch dts node number: 1
[ 18.003287] regi_init[3967]:INFO:qca-ssdk module init, no device found!
[ 18.045608] ESS reset ok!
[ 18.080903] ESS reset ok!
[ 18.613156] [ar40xx] lan_bmp=30 vlan=1
[ 18.615869] [ar40xx] wan_bmp=32 vlan=2
[ 18.619783] [ar40xx] schedule_delayed_work mib_work
[ 18.624486] [ar40xx] schedule_delayed_work ar40xx_qm_err_check_work_start
[ 18.631384] [ar40xx] thread: link_scan create success pid:696
[ 18.631402] [ar40xx] port 3:0 4:0 5:0
[ 18.642333] tun: Universal TUN/TAP device driver, 1.6
[ 18.646426] tun: (C) 1999-2004 Max Krasnyansky maxk@qualcomm.com
[ 18.658255] **********************************************************
[ 18.663815] * Driver :NSS GMAC Driver for RTL v(3.72a)
[ 18.669136] * Version :1.0
[ 18.672001] * Copyright :Copyright (c) 2013-2016 The Linux Foundation. All rights reserved.
[ 18.680376] **********************************************************
[ 18.704650] l2tp_core: L2TP core driver, V2.0
[ 18.709058] l2tp_netlink: L2TP netlink interface
[ 18.742720] qca-nss-drv.ko is loaded for symbol link
[ 18.750056] sit: IPv6 over IPv4 tunneling driver
[ 18.756551] nat46: module (version 8ff2ae59ec9840a7b8b45f976c51cae80abe0226) loaded.
[ 18.767874] gre: GRE over IPv4 demultiplexor driver
[ 18.773057] ip_gre: GRE over IPv4 tunneling driver
[ 18.781202] ip6_gre: GRE over IPv6 tunneling driver
[ 18.790021] bonding: Ethernet Channel Bonding Driver: v3.7.1 (April 27, 2011)
[ 18.806729] Start account timer
[ 18.811359] QCA multicast snooping installed successfully
[ 18.817353] ip6_tables: (C) 2000-2006 Netfilter Core Team
[ 18.844823] Netfilter messages via NETLINK v0.30.
[ 18.851028] ip_set: protocol 6
[ 18.879752] nss_lag_init[354]:LAG Manager Installed
[ 18.886729] NET: Registered protocol family 24
[ 18.891785] PPTP driver version 0.8.5
[ 18.899183] :module loaded (platform - IPQ806x, build - Build_ID - 08/23/19, 16:08:06)
[ 18.907343] :qca-nss-crypto.ko is loaded for symbol link
[ 18.914668] crypto bench loaded - Build_ID - 08/23/19, 16:08:07
[ 18.919599] nss_crypto_register_user[151]:bf61516c: Crypto Device is not ready
[ 18.929846] nss_macsec init success
[ 18.938193] nss_crypto_register_user[151]:bf61516c: Crypto Device is not ready
[ 18.947210] nss is not enabled on this platform
[ 18.950721] nss_ipsecmgr_init[1262]:NSS is not enabled in this platform
[ 18.962461] nss_crypto_register_user[151]:bf61516c: Crypto Device is not ready
[ 18.969957] nss is not enabled on this platform
[ 18.980162] u32 classifier
[ 18.981843] input device check on
[ 18.985655] Actions configured
[ 18.990896] Mirror/redirect action on
[ 19.017951] fuse init (API version 7.22)
[ 19.026352] arp_tables: (C) 2002 David S. Miller
[ 19.036672] ip_tables: (C) 2000-2006 Netfilter Core Team
[ 19.051613] l2tp_ppp: PPPoL2TP kernel driver, V2.0
[ 19.094501] ctnetlink v0.93: registering with nfnetlink.
[ 19.102669] nf_conntrack_rtsp v0.6.21 loading
[ 19.217792] nf_nat_rtsp v0.6.21 loading
[ 19.227830] PPP MPPE Compression module registered
[ 19.280672] xt_time: kernel timezone is -0000
———————————>
38:94:ed:2f:4a:38
———————————>
[ 23.932136] ECM init
[ 23.933407] ECM database jhash random seed: 0xd33b0bbc
[ 23.940334] ECM init complete
[ 24.815916] [ar40xx] lan_bmp=30 vlan=1
[ 24.818640] [ar40xx] wan_bmp=32 vlan=2
[ 25.628329] device eth0.2 entered promiscuous mode
[ 25.632108] device eth0 entered promiscuous mode
[ 25.640929] br-lan: port 1(eth0.1) entered forwarding state
[ 25.645628] br-lan: port 1(eth0.1) entered forwarding state
[ 27.643137] br-lan: port 1(eth0.1) entered forwarding state
[ 32.704140] ECM exit
[ 33.063315] ECM exit complete
[ 34.059022] br-lan: port 1(eth0.1) entered disabled state
[ 34.066315] device eth0.2 left promiscuous mode
[ 34.069819] device eth0 left promiscuous mode
[ 34.074394] br-lan: port 1(eth0.1) entered disabled state
[ 34.097797] IPv6: ADDRCONF(NETDEV_UP): eth0.2: link is not ready
[ 34.186414] ECM init
[ 34.187643] ECM database jhash random seed: 0xaa43daa
[ 34.214999] ECM init complete
[ 35.912162] [ar40xx] lan_bmp=30 vlan=1
[ 35.915562] [ar40xx] wan_bmp=32 vlan=2
[ 36.534425] device eth0.3 entered promiscuous mode
[ 36.538205] device eth0 entered promiscuous mode
[ 36.547067] br-lan: port 1(eth0.2) entered forwarding state
[ 36.551704] br-lan: port 1(eth0.2) entered forwarding state
[ 38.543151] br-lan: port 1(eth0.2) entered forwarding state
[ 42.849049] ECM exit
[ 43.253286] ECM exit complete
[ 44.356940] ECM init
[ 44.358181] ECM database jhash random seed: 0xf036d0a5
[ 44.365718] ECM init complete