Spectrum SAX1V1K (Askey RT5010W) OpenWrt Support

This device is similar to the Dynalink DL-WRX36 but not the same.

So far i've been able to access serial console and dump the startup log. UBoot has been modified and asks for a password after being interrupted.

I will dump the startup log here as well as some photos to assist in accessing the serial pins.

This device is of interest because it has good hardware but because it is locked to Spectrum (doesnt even have a web admin interface) it sells for dirt cheap. I picked mine up for about $15 on ebay.

SOC is IPQ8072A

Format: Log Type - Time(microsec) - Message - Optional Info
Log Type: B - Since Boot(Power On Reset),  D - Delta,  S - Statistic
S - QC_IMAGE_VERSION_STRING=BOOT.BF.3.3.1-00163
S - IMAGE_VARIANT_STRING=HAASANAZA
S - OEM_IMAGE_VERSION_STRING=CRM
S - Boot Config, 0x000002e3
B -       203 - PBL, Start
B -      2740 - bootable_media_detect_entry, Start
B -    125736 - bootable_media_detect_success, Start
B -    125740 - elf_loader_entry, Start
B -    127165 - auth_hash_seg_entry, Start
B -    165240 - auth_hash_seg_exit, Start
B -    179714 - elf_segs_hash_verify_entry, Start
B -    242349 - PBL, End
B -    246470 - SBL1, Start
B -    296887 - GCC [RstStat:0x10, RstDbg:0x600000] WDog Stat : 0x4
B -    303170 - pm_device_init, Start
B -    426603 - PM_SET_VAL:Skip
D -    123098 - pm_device_init, Delta
B -    429043 - pm_driver_init, Start
D -      5215 - pm_driver_init, Delta
B -    435265 - clock_init, Start
D -      2135 - clock_init, Delta
B -    439383 - boot_flash_init, Start
D -      7869 - boot_flash_init, Delta
B -    450942 - boot_config_data_table_init, Start
D -      1037 - boot_config_data_table_init, Delta - (575 Bytes)
B -    458567 - Boot Setting :  0x00000618
B -    462319 - CDT version:2,Platform ID:8,Major ID:117,Minor ID:1,Subtype:6
B -    469425 - sbl1_ddr_set_params, Start
B -    473238 - CPR configuration: 0x30c
B -    476684 - cpr_init, Start
B -    479460 - Rail:0 Mode: 5 Voltage: 808000
B -    484675 - CL CPR settled at 760000mV
B -    487512 - Rail:1 Mode: 5 Voltage: 880000
B -    491690 - Rail:1 Mode: 7 Voltage: 920000
D -     16531 - cpr_init, Delta
B -    498583 - Pre_DDR_clock_init, Start
B -    502609 - Pre_DDR_clock_init, End
B -    505903 - DDR Type : PCDDR4
B -    512674 - do ddr sanity test, Start
D -      1067 - do ddr sanity test, Delta
B -    516395 - DDR: Start of HAL DDR Boot Training
B -    521123 - DDR: End of HAL DDR Boot Training
B -    526796 - DDR: Checksum to be stored on flash is 432286550
B -    537105 - Image Load, Start
D -    345107 - QSEE Image Loaded, Delta - (1380872 Bytes)
B -    882273 - Image Load, Start
D -       457 - SEC Image Loaded, Delta - (0 Bytes)
B -    889807 - Image Load, Start
D -    287859 - DEVCFG Image Loaded, Delta - (32468 Bytes)
B -   1177757 - Image Load, Start
D -    292861 - RPM Image Loaded, Delta - (93060 Bytes)
B -   1470710 - Image Load, Start
D -    312533 - APPSBL Image Loaded, Delta - (617520 Bytes)
B -   1783365 - QSEE Execution, Start
D -        61 - QSEE Execution, Delta
B -   1789160 - USB D+ check, Start
D -         0 - USB D+ check, Delta
B -   1795565 - SBL1, End
D -   1551383 - SBL1, Delta
S - Flash Throughput, 34465 KB/s  (2125167 Bytes,  61660 us)
S - DDR Frequency, 600 MHz
S - Core 0 Frequency, 1651 MHz


U-Boot 1.3.3 [spf11.1_csu2] (Jan 27 2021 - 09:14:27 +0000)

DRAM:  smem ram ptable found: ver: 1 len: 4
2 GiB
[Askey] Led init ...
NAND:  Could not find nand_gpio in dts, using defaults
Not an ONFI device
ONFI probe failed
ID = ffffffff
Vendor = ff
Device = ff
qpic_nand: unknown NAND device manufacturer: ff device: ff
U-Boot BUG at drivers/mtd/mtdcore.c:420!
SF: Unsupported flash IDs: manuf ff, jedec ffff, ext_jedec ffff
ipq_spi: SPI Flash not found (bus/cs/speed/mode) = (0/0/48000000/0)
0 MiB
MMC:   <NULL>: 0 (eMMC)
In:    serial@78B3000
Out:   serial@78B3000
Err:   serial@78B3000
machid: 8750106
eth5 MAC Address from ART is not valid
Hit space key to stop autoboot:  0


[Askey] do_bootaskey()
 check temperature of soc 31 ,and threshold 80

[Askey] thermal_check_temp pass
mmc:mmcargs=mmc_mid=15
[Askey] do_boot_signedimg_askey()
debug cert - not found
verify init: active_part [1], bak_part [0]
verify FW [1] start
do verify start
verify kernel start

MMC read: dev # 0, block # 51746, count 16384 ... 16384 blocks read: OK
qca_verify.c [29] load_addr:0x44000000 size:0x800000
Kernel image authentication success
verify rootfs start

MMC read: dev # 0, block # 346658, count 66569 ... 66569 blocks read: OK
qca_verify.c [57] load_addr:0x41000000 size:0x2082928
Rootfs image authentication success
do verify success
verify FW [1] success
backup start ...

MMC read: dev # 0, block # 35362, count 16384 ... 16384 blocks read: OK
no need backup, FW & FW_1 is same.
secure boot fuse is enabled
## Loading kernel from FIT Image at 44000028 ...
   Using 'config@rt5010w-d187-rev6' configuration
   Trying 'kernel@1' kernel subimage
     Description:  ARM64 OpenWrt Linux-4.4.60
     Type:         Kernel Image
     Compression:  gzip compressed
     Data Start:   0x44000110
     Data Size:    4008064 Bytes = 3.8 MiB
     Architecture: AArch64
     OS:           Linux
     Load Address: 0x41080000
     Entry Point:  0x41080000
     Hash algo:    crc32
     Hash value:   3634c621
     Hash algo:    sha1
     Hash value:   242cc21d85aa3a954791df443b093df2679171cb
   Verifying Hash Integrity ... crc32+ sha1+ OK
## Loading fdt from FIT Image at 44000028 ...
   Using 'config@rt5010w-d187-rev6' configuration
   Trying 'fdt@rt5010w-d187-rev6' fdt subimage
     Description:  ARM64 OpenWrt rt5010w-d187 device tree blob
     Type:         Flat Device Tree
     Compression:  uncompressed
     Data Start:   0x44438340
     Data Size:    82599 Bytes = 80.7 KiB
     Architecture: AArch64
     Hash algo:    crc32
     Hash value:   673020ac
     Hash algo:    sha1
     Hash value:   f9c50d76e06dbb20061fc21d533b78a3de39a80d
   Verifying Hash Integrity ... crc32+ sha1+ OK
   Booting using the fdt blob at 0x44438340
   Uncompressing Kernel Image ... OK
   Loading Device Tree to 4a1e8000, end 4a1ff2a6 ... OK
Using machid 0x8750106 from environment

Starting kernel ...

Jumping to AARCH64 kernel via monitor
[    0.000000] Booting Linux on physical CPU 0x0
[    0.000000] Initializing cgroup subsys cpuset
[    0.000000] Initializing cgroup subsys cpu
[    0.000000] Initializing cgroup subsys cpuacct
[    0.000000] Linux version 4.4.60 (jenkins@ip-47-228-8-81) (gcc version 5.2.0 (OpenWrt GCC 5.2.0 SCP_WIFI6_SAX1V1K_v3.0.0+r49254) ) #1 SMP PREEMPT Fri Apr 22 18:31:15 UTC 2022
[    0.000000] Boot CPU: AArch64 Processor [410fd034]
[    0.000000] Ignoring memory range 0x40000000 - 0x41000000
[    0.000000] Machine: Askey RT5010W-D187/REV6
[    0.000000] efi: Getting EFI parameters from FDT:
[    0.000000] efi: UEFI not found.
[    0.000000] Reserved memory: OVERLAP DETECTED!
[    0.000000] wifi_dump@51100000 (0x0000000051100000--0x0000000051700000) overlaps with wigig_dump@51300000 (0x0000000051300000--0x0000000051700000)
[    0.000000] psci: probing for conduit method from DT.
[    0.000000] psci: PSCIv1.0 detected in firmware.
[    0.000000] psci: Using standard PSCI v0.2 function IDs
[    0.000000] psci: MIGRATE_INFO_TYPE not supported.
[    0.000000] PERCPU: Embedded 15 pages/cpu @ffffffc07ef4a000 s20864 r8192 d32384 u61440
[    0.000000] Detected VIPT I-cache on CPU0
[    0.000000] CPU features: enabling workaround for ARM erratum 845719
[    0.000000] Built 1 zonelists in Zone order, mobility grouping on.  Total pages: 482112
[    0.000000] Kernel command line: console=ttyMSM0,115200n8 mmc_mid=0x15 boot_signedimg root=PARTUUID=2cd77494-4eb2-3b89-496c-e6d54bde6587 gpt uboot-version=1.3.3 rea=ffffffff time=ffffffff rootwait secboot=1 swiotlb=1 coherent_pool=2M
[    0.000000] PID hash table entries: 4096 (order: 3, 32768 bytes)
[    0.000000] Dentry cache hash table entries: 262144 (order: 9, 2097152 bytes)
[    0.000000] Inode-cache hash table entries: 131072 (order: 8, 1048576 bytes)
[    0.000000] software IO TLB [mem 0xbfe02000-0xbfe42000] (0MB) mapped at [ffffffc07ee02000-ffffffc07ee41fff]
[    0.000000] Memory: 1914752K/1960960K available (5496K kernel code, 627K rwdata, 2352K rodata, 228K init, 422K bss, 46208K reserved, 0K cma-reserved)
[    0.000000] Virtual kernel memory layout:
[    0.000000]     vmalloc : 0xffffff8000000000 - 0xffffffbdbfff0000   (   246 GB)
[    0.000000]     vmemmap : 0xffffffbdc0000000 - 0xffffffbfc0000000   (     8 GB maximum)
[    0.000000]               0xffffffbdc0040000 - 0xffffffbdc2000000   (    31 MB actual)
[    0.000000]     fixed   : 0xffffffbffa7fd000 - 0xffffffbffac00000   (  4108 KB)
[    0.000000]     PCI I/O : 0xffffffbffae00000 - 0xffffffbffbe00000   (    16 MB)
[    0.000000]     modules : 0xffffffbffc000000 - 0xffffffc000000000   (    64 MB)
[    0.000000]     memory  : 0xffffffc000000000 - 0xffffffc07f000000   (  2032 MB)
[    0.000000]       .init : 0xffffffc00082c000 - 0xffffffc000865000   (   228 KB)
[    0.000000]       .text : 0xffffffc000080000 - 0xffffffc00082c000   (  7856 KB)
[    0.000000]       .data : 0xffffffc000874000 - 0xffffffc000910c00   (   627 KB)
[    0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1
[    0.000000] Preemptible hierarchical RCU implementation.
[    0.000000]  Build-time adjustment of leaf fanout to 64.
[    0.000000] NR_IRQS:64 nr_irqs:64 0
[    0.000000] Architected cp15 timer(s) running at 19.20MHz (virt).
[    0.000000] clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x46d987e47, max_idle_ns: 440795202767 ns
[    0.000005] sched_clock: 56 bits at 19MHz, resolution 52ns, wraps every 4398046511078ns
[    0.000420] Calibrating delay loop (skipped), value calculated using timer frequency.. 38.40 BogoMIPS (lpj=192000)
[    0.000432] pid_max: default: 32768 minimum: 301
[    0.000529] Mount-cache hash table entries: 4096 (order: 3, 32768 bytes)
[    0.000540] Mountpoint-cache hash table entries: 4096 (order: 3, 32768 bytes)
[    0.001115] Initializing cgroup subsys io
[    0.001132] Initializing cgroup subsys memory
[    0.001158] Initializing cgroup subsys devices
[    0.001170] Initializing cgroup subsys freezer
[    0.001182] Initializing cgroup subsys net_cls
[    0.001192] Initializing cgroup subsys pids
[    0.001445] EFI services will not be available.
[    0.001470] ASID allocator initialised with 65536 entries
[    0.051945] MSM Memory Dump base table set up
[    0.051968] MSM Memory Dump apps data table set up
[    0.090102] Detected VIPT I-cache on CPU1
[    0.090149] CPU1: Booted secondary processor [410fd034]
[    0.120100] Detected VIPT I-cache on CPU2
[    0.120132] CPU2: Booted secondary processor [410fd034]
[    0.150138] Detected VIPT I-cache on CPU3
[    0.150168] CPU3: Booted secondary processor [410fd034]
[    0.150231] Brought up 4 CPUs
[    0.150258] SMP: Total of 4 processors activated.
[    0.150269] CPU: All CPU(s) started at EL1
[    0.150297] alternatives: patching kernel code
[    0.167186] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 19112604462750000 ns
[    0.167216] futex hash table entries: 1024 (order: 5, 131072 bytes)
[    0.167593] pinctrl core: initialized pinctrl subsystem
[    0.168510] NET: Registered protocol family 16
[    0.190081] cpuidle: using governor ladder
[    0.220105] cpuidle: using governor menu
[    0.220310] NET: Registered protocol family 42
[    0.220470] vdso: 2 pages (1 code @ ffffffc000879000, 1 data @ ffffffc000878000)
[    0.220503] hw-breakpoint: found 6 breakpoint and 4 watchpoint registers.
[    0.221158] DMA: preallocated 2048 KiB pool for atomic allocations
[    0.221282] CPU: IPQ8072A, SoC Version: 2.0
[    0.221719] IPC logging disabled
[    0.221726] IPC logging disabled
[    0.221732] IPC logging disabled
[    0.221738] IPC logging disabled
[    0.221744] IPC logging disabled
[    0.224385] Soc version is not 1, changing clock offsets
[    0.233191] irq: no irq domain found for /soc/smp2p-wcss/slave-kernel !
[    0.235731] irq: no irq domain found for /soc/smp2p-wcss/slave-kernel !
[    0.239180] sps:sps is ready.
[    0.244172] spmi spmi-0: PMIC Arb Version-2 (0x20010000)
[    0.250731] qcom,cpr4-apss-regulator b018000.cpr4-ctrl: CPR valid fuse count: 4
[    0.251021] qcom,cpr3-npu-regulator a4000.npu-cpr: NPU CPR valid fuse count: 2
[    0.292218] pps_core: LinuxPPS API ver. 1 registered
[    0.292227] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti <giometti@linux.it>
[    0.292252] PTP clock support registered
[    0.293708] Advanced Linux Sound Architecture Driver Initialized.
[    0.294433] clocksource: Switched to clocksource arch_sys_counter
[    0.297657] NET: Registered protocol family 2
[    0.298290] TCP established hash table entries: 16384 (order: 5, 131072 bytes)
[    0.298496] TCP bind hash table entries: 16384 (order: 6, 262144 bytes)
[    0.298858] TCP: Hash tables configured (established 16384 bind 16384)
[    0.298919] UDP hash table entries: 1024 (order: 3, 32768 bytes)
[    0.298985] UDP-Lite hash table entries: 1024 (order: 3, 32768 bytes)
[    0.299200] NET: Registered protocol family 1
[    0.299758] hw perfevents: enabled with armv8_cortex_a53 PMU driver, 7 counters available
[    0.307790] squashfs: version 4.0 (2009/01/31) Phillip Lougher
[    0.307810] jffs2: version 2.2 (NAND) (SUMMARY) (LZMA) (RTIME) (CMODE_PRIORITY) (c) 2001-2006 Red Hat, Inc.
[    0.311580] Key type asymmetric registered
[    0.311598] Asymmetric key parser 'x509' registered
[    0.311633] io scheduler noop registered
[    0.311649] io scheduler deadline registered (default)
[    0.318260] msm_rpm_log_probe: OK
[    0.318598] msm-dcc b3000.dcc: DCC XPU is not specified
[    0.318840] msm-dcc b3000.dcc: jiffies_64: 0xffff8aef, cntvct_64: 0x9721f0e
[    0.318854] msm-dcc b3000.dcc: gcnt_hi: 0x00000000(0xffffff800027e004)
[    0.318866] msm-dcc b3000.dcc: gcnt_lo: 0x09722117(0xffffff800027e000)
[    0.319435] TZ SMMU State: SMMU Stage2 Enabled
[    0.319491] TZ Log : Will warn on Access Violation, as paniconaccessviolation is not set
[    0.321077] msm_serial 78b3000.serial: msm_serial: detected port #0
[    0.321119] msm_serial 78b3000.serial: uartclk = 3686400
[    0.321156] 78b3000.serial: ttyMSM0 at MMIO 0x78b3000 (irq = 78, base_baud = 230400) is a MSM
[    0.321177] msm_serial: console setup on port #0
[    1.037497] console [ttyMSM0] enabled
[    1.042472] msm_serial: driver initialized
[    1.046027] msm_serial_hsl_init: driver initialized
[    1.058786] brd: module loaded
[    1.063127] loop: module loaded
[    1.063853] spi_qup 78b8000.spi: IN:block:16, fifo:64, OUT:block:16, fifo:64
[    1.067263] libphy: Fixed MDIO Bus: probed
[    1.512979] qca-mdio 90000.mdio: Could not find phy-reset-gpio
[    1.513100] libphy: qca_mdio: probed
[    1.519190] qca-mdio 90000.mdio: qca-mdio driver was registered
[    1.521615] Unable to create IPC log context!
[    1.527402] Skip QCA8074V1 in V2 platform
[    1.531858] cnss[2]: INFO: Platform driver probed successfully. plat ffffffc07b940018 tgt 0xfffe
[    1.535863] i2c /dev entries driver
[    1.574929] device-mapper: ioctl: 4.34.0-ioctl (2015-10-28) initialised: dm-devel@redhat.com
[    1.575410] sdhci: Secure Digital Host Controller Interface driver
[    1.582428] sdhci: Copyright(c) Pierre Ossman
[    1.588450] sdhci-pltfm: SDHCI platform and OF driver helper
[    1.593286] mmc:emmc actual mid 0x15 and syscon select node DsLow,syscon
[    1.598633] mmc:syscon reg base 0xa000 regval 0x9e5b
[    1.605290] qcom_ice_get_pdevice: invalid device list
[    1.610210] sdhci_msm 7824900.sdhci: sdhci_msm_ice_get_dev: ICE device not probed yet
[    1.615180] sdhci_msm 7824900.sdhci: sdhci_msm_probe: required ICE device not probed yet err = -517
[    1.623673] qcom_ice_get_device_tree_data: No vdd-hba-supply regulator, assuming not needed
[    1.631926] ICE IRQ = 81
[    1.640706]
[    1.640706] Version Rollback Feature Disabled
[    1.645544] remoteproc remoteproc0: releasing cd00000.qcom_q6v5_wcss
[    1.649811] SPMI VADC - Min ch: 0 Max ch: 15
[    1.656941] of_graph_get_next_endpoint(): no port node found in /soc/csr@6001000
[    1.659426] coresight-csr 6001000.csr: CSR initialized
[    1.666917] of_graph_get_next_endpoint(): no port node found in /soc/cti@6010000
[    1.671837] of_graph_get_next_endpoint(): no port node found in /soc/cti@6011000
[    1.679407] of_graph_get_next_endpoint(): no port node found in /soc/cti@6012000
[    1.686764] of_graph_get_next_endpoint(): no port node found in /soc/cti@6013000
[    1.694116] of_graph_get_next_endpoint(): no port node found in /soc/cti@6014000
[    1.701522] of_graph_get_next_endpoint(): no port node found in /soc/cti@6015000
[    1.708900] of_graph_get_next_endpoint(): no port node found in /soc/cti@6016000
[    1.716278] of_graph_get_next_endpoint(): no port node found in /soc/cti@6017000
[    1.723635] of_graph_get_next_endpoint(): no port node found in /soc/cti@6018000
[    1.731035] of_graph_get_next_endpoint(): no port node found in /soc/cti@6019000
[    1.738412] of_graph_get_next_endpoint(): no port node found in /soc/cti@601a000
[    1.745791] of_graph_get_next_endpoint(): no port node found in /soc/cti@601b000
[    1.753153] of_graph_get_next_endpoint(): no port node found in /soc/cti@601c000
[    1.760545] of_graph_get_next_endpoint(): no port node found in /soc/cti@601d000
[    1.767925] of_graph_get_next_endpoint(): no port node found in /soc/cti@601e000
[    1.775301] of_graph_get_next_endpoint(): no port node found in /soc/cti@601f000
[    1.782670] of_graph_get_next_endpoint(): no port node found in /soc/cti@6198000
[    1.790072] of_graph_get_next_endpoint(): no port node found in /soc/cti@6199000
[    1.797449] of_graph_get_next_endpoint(): no port node found in /soc/cti@619a000
[    1.804826] of_graph_get_next_endpoint(): no port node found in /soc/cti@619b000
[    1.812194] of_graph_get_next_endpoint(): no port node found in /soc/cti@610c000
[    1.819748] sps_register_bam_device : unable to create IPC Logging 0 for bam 0x0000000006044000
[    1.826813] sps_register_bam_device : unable to create IPC Logging 1 for bam 0x0000000006044000sps_register_bam_device : unable to create IPC Logging 2 for bam 0x0000000006044000
[    1.843890] sps_register_bam_device : unable to create IPC Logging 3 for bam 0x0000000006044000sps_register_bam_device : unable to create IPC Logging 4 for bam 0x0000000006044000
[    1.859791] sps:BAM 0x0000000006044000 is registered.[    1.867539] coresight-tmc 6028000.tmc: TMC initialized
[    1.872228] coresight-tmc 6027000.tmc: TMC initialized
[    1.877395] coresight-funnel 6021000.funnel: FUNNEL initialized
[    1.882406] coresight-funnel 6100000.funnel: FUNNEL initialized
[    1.888237] coresight-funnel 6120000.funnel: FUNNEL initialized
[    1.894126] coresight-funnel 6130000.funnel: FUNNEL initialized
[    1.900059] coresight-funnel 61a1000.funnel: FUNNEL initialized
[    1.906430] coresight-etm4x 619c000.etm: ETM 4.0 initialized
[    1.912071] coresight-etm4x 619d000.etm: ETM 4.0 initialized
[    1.917996] coresight-etm4x 619e000.etm: ETM 4.0 initialized
[    1.923625] coresight-etm4x 619f000.etm: ETM 4.0 initialized
[    1.929079] coresight-replicator-qcom 6026000.replicator: REPLICATOR 1.0 initialized
[    1.934669] ------------[ cut here ]------------
[    1.942147] WARNING: at drivers/clk/clk.c:689
[    1.946745] Modules linked in:
[    1.953941]
[    1.954038] CPU: 0 PID: 1 Comm: swapper/0 Not tainted 4.4.60 #1
[    1.955603] Hardware name: Askey RT5010W-D187/REV6 (DT)
[    1.961247] task: ffffffc010778000 ti: ffffffc010778000 task.ti: ffffffc010778000
[    1.966464] PC is at clk_core_disable+0x98/0xa0
[    1.974092] LR is at clk_disable+0x2c/0x44
[    1.978432] pc : [<ffffffc00045e044>] lr : [<ffffffc00045f4d0>] pstate: 60000085
[    1.982604] sp : ffffffc010783bd0
[    1.990147] x29: ffffffc010783bd0 x28: 0000000000000000
[    1.998473] x27: ffffffc00085e640 x26: ffffffc000858100
[    2.003769] x25: 0000000000000000 x24: ffffffc00094b000
[    2.009065] x23: ffffffc0008e4300 x22: ffffffc0008e4258
[    2.014359] x21: ffffffc07bc7ad70 x20: 0000000000000000
[    2.019655] x19: ffffffc07ba5b680 x18: 0000000000000008
[    2.024950] x17: 0000000000000000 x16: 0000000000000000
[    2.030245] x15: 0000000000000000 x14: ffffffffffffffff
[    2.035540] x13: 0000000000000030 x12: 0101010101010101
[    2.040836] x11: 0000000000000001 x10: 0000000000000720
[    2.046129] x9 : ffffffc010783ab0 x8 : ffffffc010778780
[    2.051425] x7 : 0000000000000000 x6 : ffffffc07ef4dde8
[    2.056721] x5 : 0000000000000001 x4 : 0000000000000000
[    2.062016] x3 : 00000000ffff8b91 x2 : 0000000000000804
[    2.067311] x1 : 0000000000000001 x0 : ffffffc07bc26a00
[    2.072605]
[    2.072797] ---[ end trace 1f7c01b9584b2428 ]---
[    2.074353] Call trace:
[    2.078950] [<ffffffc00045e044>] clk_core_disable+0x98/0xa0
[    2.081130] [<ffffffc0003085e4>] amba_put_disable_pclk.isra.4+0x1c/0x38
[    2.086684] [<ffffffc0003087b8>] amba_probe+0xc0/0x124
[    2.093281] [<ffffffc000357e50>] driver_probe_device+0x19c/0x3dc
[    2.098491] [<ffffffc0003580f4>] __driver_attach+0x64/0x90
[    2.104653] [<ffffffc0003561b0>] bus_for_each_dev+0x68/0x98
[    2.109947] [<ffffffc000357878>] driver_attach+0x20/0x28
[    2.115416] [<ffffffc0003573b8>] bus_add_driver+0x130/0x248
[    2.120971] [<ffffffc000358998>] driver_register+0x90/0xdc
[    2.126266] [<ffffffc000308194>] amba_driver_register+0x54/0x5c
[    2.131822] [<ffffffc00084f80c>] stm_init+0x14/0x1c
[    2.137638] [<ffffffc000082a18>] do_one_initcall+0x19c/0x1b8
[    2.142502] [<ffffffc00082cb20>] kernel_init_freeable+0x18c/0x22c
[    2.148406] [<ffffffc0005d17dc>] kernel_init+0x10/0xec
[    2.154391] [<ffffffc000085d50>] ret_from_fork+0x10/0x40
[    2.159519] ------------[ cut here ]------------
[    2.164891] WARNING: at drivers/clk/clk.c:581
[    2.169489] Modules linked in:
[    2.176684]
[    2.176779] CPU: 0 PID: 1 Comm: swapper/0 Tainted: G        W       4.4.60 #1
[    2.178350] Hardware name: Askey RT5010W-D187/REV6 (DT)
[    2.185378] task: ffffffc010778000 ti: ffffffc010778000 task.ti: ffffffc010778000
[    2.190419] PC is at clk_core_unprepare+0x78/0x80
[    2.198052] LR is at clk_unprepare+0x28/0x3c
[    2.202737] pc : [<ffffffc00045dc44>] lr : [<ffffffc00045ecf0>] pstate: 60000005
[    2.207082] sp : ffffffc010783bd0
[    2.214452] x29: ffffffc010783bd0 x28: 0000000000000000
[    2.222779] x27: ffffffc00085e640 x26: ffffffc000858100
[    2.228075] x25: 0000000000000000 x24: ffffffc00094b000
[    2.233369] x23: ffffffc0008e4300 x22: ffffffc0008e4258
[    2.238665] x21: ffffffc07bc7ad70 x20: ffffffc07ba5b680
[    2.243959] x19: ffffffc07ba5b680 x18: 0000000000000008
[    2.249254] x17: 0000000000000000 x16: 0000000000000000
[    2.254550] x15: 0000000000000000 x14: ffffffffffffffff
[    2.259845] x13: 0000000000000030 x12: 0101010101010101
[    2.265141] x11: 0000000000000001 x10: 0000000000000720
[    2.270436] x9 : ffffffc010783b00 x8 : ffffffc010778780
[    2.275731] x7 : 0000000000000000 x6 : ffffffc07ef4cb80
[    2.281025] x5 : 0000000000000001 x4 : 0000000000000001
[    2.286320] x3 : 0000000000000000 x2 : 0000000000000804
[    2.291615] x1 : 0000000000000001 x0 : ffffffc07bc26a00
[    2.296910]
[    2.297088] ---[ end trace 1f7c01b9584b2429 ]---
[    2.298657] Call trace:
[    2.303256] [<ffffffc00045dc44>] clk_core_unprepare+0x78/0x80
[    2.305434] [<ffffffc0003085ec>] amba_put_disable_pclk.isra.4+0x24/0x38
[    2.311337] [<ffffffc0003087b8>] amba_probe+0xc0/0x124
[    2.317760] [<ffffffc000357e50>] driver_probe_device+0x19c/0x3dc
[    2.322971] [<ffffffc0003580f4>] __driver_attach+0x64/0x90
[    2.329130] [<ffffffc0003561b0>] bus_for_each_dev+0x68/0x98
[    2.334426] [<ffffffc000357878>] driver_attach+0x20/0x28
[    2.339896] [<ffffffc0003573b8>] bus_add_driver+0x130/0x248
[    2.345451] [<ffffffc000358998>] driver_register+0x90/0xdc
[    2.350746] [<ffffffc000308194>] amba_driver_register+0x54/0x5c
[    2.356301] [<ffffffc00084f80c>] stm_init+0x14/0x1c
[    2.362116] [<ffffffc000082a18>] do_one_initcall+0x19c/0x1b8
[    2.366980] [<ffffffc00082cb20>] kernel_init_freeable+0x18c/0x22c
[    2.372884] [<ffffffc0005d17dc>] kernel_init+0x10/0xec
[    2.378869] [<ffffffc000085d50>] ret_from_fork+0x10/0x40
[    2.383946] coresight-stm: probe of 6002000.stm failed with error -1
[    2.390663] of_graph_get_next_endpoint(): no port node found in /soc/hwevent@6101000
[    2.395836] coresight-hwevent 6101000.hwevent: Hardware Event driver initialized
[    2.406902] NET: Registered protocol family 10
[    2.411505] MAP-T DMR module registered. enter
[    2.415095] Registering family.
[    2.419519] NET: Registered protocol family 17
[    2.422657] bridge: automatic filtering via arp/ip/ip6tables has been deprecated. Update your scripts to load br_netfilter if you need this.
[    2.427193] Bridge firewalling registered
[    2.439913] 8021q: 802.1Q VLAN Support v1.8
[    2.445263] qcom,cpr4-apss-regulator b018000.cpr4-ctrl: CPR valid fuse count: 4
[    2.447982] pmd9655_s3: supplied by e-smps1-reg
[    2.455275] cpr4_ipq807x_apss_read_fuse_data: apc_corner: speed bin = 0
[    2.459601] cpr4_ipq807x_apss_read_fuse_data: apc_corner: CPR fusing revision = 1
[    2.466222] cpr4_ipq807x_apss_read_fuse_data: apc_corner: CPR misc fuse value = 0
[    2.473863] cpr4_ipq807x_apss_read_fuse_data: apc_corner: Voltage boost fuse config = 0 boost = disable
[    2.481398] cpr3_mem_acc_init: apc: not using memory accelerator regulator
[    2.490525] cpr4_ipq807x_apss_calculate_open_loop_voltages: apc_corner: fused      SVS: open-loop= 704000 uV
[    2.497476] cpr4_ipq807x_apss_calculate_open_loop_voltages: apc_corner: fused      NOM: open-loop= 808000 uV
[    2.507455] cpr4_ipq807x_apss_calculate_open_loop_voltages: apc_corner: fused    TURBO: open-loop= 864000 uV
[    2.517262] cpr4_ipq807x_apss_calculate_open_loop_voltages: apc_corner: fused   STURBO: open-loop= 960000 uV
[    2.527127] cpr4_ipq807x_apss_calculate_target_quotients: apc_corner: fused      SVS: quot[ 7]= 720, quot_offset[ 7]=   0
[    2.536884] cpr4_ipq807x_apss_calculate_target_quotients: apc_corner: fused      NOM: quot[ 7]= 917, quot_offset[ 7]= 195
[    2.547733] cpr4_ipq807x_apss_calculate_target_quotients: apc_corner: fused    TURBO: quot[ 7]=1012, quot_offset[ 7]=  95
[    2.558671] cpr4_ipq807x_apss_calculate_target_quotients: apc_corner: fused   STURBO: quot[ 7]=1186, quot_offset[ 7]= 170
[    2.569733] cpr3_regulator_init_ctrl: apc: Default CPR mode = closed-loop
[    2.581065] qcom,cpr3-npu-regulator a4000.npu-cpr: NPU CPR valid fuse count: 2
[    2.587388] pmd9655_s4: supplied by e-smps1-reg
[    2.594573] cpr3_mem_acc_init: npu: not using memory accelerator regulator
[    2.598838] npu_corner: fused      NOM: open-loop= 776000 uV
[    2.605798] npu_corner: fused    TURBO: open-loop= 848000 uV
[    2.611633] npu_corner: fused      NOM: open-loop= 776000 uV
[    2.617254] npu_corner: fused    TURBO: open-loop= 848000 uV
[    2.622902] npu_corner: Normal and Cold condition init done. Default to normal.
[    2.629464] cpufreq: cpufreq_online: CPU0: Running at unlisted freq: 800000 KHz
[    2.635727] cpufreq: cpufreq_online: CPU0: Unlisted initial frequency changed to: 1017600 KHz
[    2.643353] mmc:emmc actual mid 0x15 and syscon select node DsLow,syscon
[    2.651555] mmc:syscon reg base 0xa000 regval 0x9e5b
[    2.658321] qcom_ice_get_pdevice: found ice device ffffffc07b863200
[    2.663242] qcom_ice_get_pdevice: matching platform device ffffffc07bc3d000
[    2.669275] sdhci_msm 7824900.sdhci: No vreg data found for vdd
[    2.676193] sdhci_msm 7824900.sdhci: No vreg data found for vdd-io
[    2.682240] qcom_ice 7803000.sdcc1ice: QC ICE 2.1.44 device found @0xffffff8000f3c000
[    2.689401] sdhci_msm 7824900.sdhci: No vmmc regulator found
[    2.696239] sdhci_msm 7824900.sdhci: No vqmmc regulator found
[    2.744438] mmc0: SDHCI controller on 7824900.sdhci [7824900.sdhci] using ADMA 64-bit
[    2.750403] qcom-q6v5-wcss-pil cd00000.qcom_q6v5_wcss: ssr registeration success qcom_q6v5_wcss
[    2.751281] remoteproc remoteproc0: cd00000.qcom_q6v5_wcss is available
[    2.761980] hctosys: unable to open rtc device (rtc0)
[    2.787279] pmd9655_ldo11: disabling
[    2.787742] ALSA device list:
[    2.789924]   No soundcards found.
[    2.793007] Waiting for root device PARTUUID=2cd77494-4eb2-3b89-496c-e6d54bde6587...
[    2.817157] mmc0: MAN_BKOPS_EN bit is not set
[    2.840905] mmc0: new HS200 MMC card at address 0001
[    2.851251] mmcblk0: mmc0:0001 8GTF4R 7.28 GiB
[    2.851378] mmcblk0rpmb: mmc0:0001 8GTF4R partition 3 512 KiB
[    2.855582] Alternate GPT is invalid, using primary GPT.
[    2.860498] GPT: device [179:20] (rootfs) set to be root filesystem
[    2.865889]  mmcblk0: p1 p2 p3 p4 p5 p6 p7 p8 p9 p10 p11 p12 p13 p14 p15 p16 p17 p18 p19 p20 p21 p22 p23 p24 p25 p26 p27 p28 p29 p30 p31 p32 p33 p34 p35 p36 p37 p38
[    2.905911] VFS: Mounted root (squashfs filesystem) readonly on device 179:22.
[    2.906012] Freeing unused kernel memory: 228K (ffffffc00082c000 - ffffffc000865000)
[    2.912032] Freeing alternatives memory: 44K (ffffffc000865000 - ffffffc000870000)
failed to open /proc/modules
[    3.074173] init: Console is alive
[    3.074255] init: - watchdog -
[    3.653116] Button Hotplug driver version 0.4.1
[    3.654133] device-mapper: req-crypt: dm-req-crypt successfully initalized.
[    3.654133]
[    3.658935] SCSI subsystem initialized
[    4.076864] init: - preinit -
[    4.080130] led_smooth init
[    4.080234]
Before mount_root
[    4.381721]
/dev/mmcblk0p24: clean, 207/32768 files, 11630/131072 blocks
/dev/mmcblk0p24: clean, 207/32768 files, 11630/131072 blocks
/dev/mmcblk0p25: recovering journal
/dev/mmcblk0p25: clean, 322/32768 files, 6751/131072 blocks
/dev/mmcblk0p25: clean, 322/32768 files, 6751/131072 blocks
[    4.668086] random: procd: uninitialized urandom read (4 bytes read, 10 bits of entropy available)
[    4.668255] EXT4-fs (mmcblk0p25): mounted filesystem with ordered data mode. Opts: (null)
[    4.676950] mount_root: switching to jffs2 overlay
[    4.681744]
[    4.767395] EXT4-fs (mmcblk0p29): recovery complete
[    4.767422] EXT4-fs (mmcblk0p29): mounted filesystem with ordered data mode. Opts: (null)
[    4.836728] EXT4-fs (mmcblk0p30): recovery complete
[    4.836755] EXT4-fs (mmcblk0p30): mounted filesystem with ordered data mode. Opts: (null)
[    4.907959] EXT4-fs (mmcblk0p31): recovery complete
[    4.907987] EXT4-fs (mmcblk0p31): mounted filesystem with ordered data mode. Opts: (null)
[    4.981755]
[    5.127769] EXT4-fs (mmcblk0p34): recovery complete
[    5.127795] EXT4-fs (mmcblk0p34): mounted filesystem with ordered data mode. Opts: (null)
[    5.219248] EXT4-fs (mmcblk0p38): recovery complete
[    5.219276] EXT4-fs (mmcblk0p38): mounted filesystem with ordered data mode. Opts: (null)
After mount_root
[    5.281780]
12064+0 records in
12064+0 records out
131072+0 records in
131072+0 records out
[    5.526825] procd: - early -
[    5.526923] procd: - watchdog -
[    5.581799]
[    5.881818]
[    6.174225] procd: - ubus -
[    6.181836]
[    6.481856]
[    6.781873]
[    7.081882]
[    7.175400] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.175505] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.183250] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.192866] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.201138] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.210104] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.219043] random: ubusd: uninitialized urandom read (4 bytes read, 13 bits of entropy available)
[    7.228027] procd: - init -
Please press Enter to activate this console.
[    7.381899]
[    7.392965] random: lvm: uninitialized urandom read (4 bytes read, 14 bits of entropy available)
[    7.681920]
[    7.981934]
[    8.281944]
[    8.340446] random: lvm: uninitialized urandom read (4 bytes read, 19 bits of entropy available)
[    8.382654] device-mapper: req-crypt: req_crypt_ctr: Mapping block_device /dev/mmcblk0p27 to dm-req-crypt ok!
[    8.382654]
[    8.402866] EXT4-fs (dm-0): mounted filesystem with ordered data mode. Opts: (null)
[    8.410292] device-mapper: req-crypt: req_crypt_ctr: Mapping block_device /dev/mmcblk0p28 to dm-req-crypt ok!
[    8.410292]
[    8.441728] EXT4-fs (dm-1): mounted filesystem with ordered data mode. Opts: (null)
[    8.581962]
 WIFI FW is successful
[    8.881981]
[    9.155912] tmpfs: Bad value '885.1m' for mount option 'size'
[    9.182008]
[    9.217647]
[    9.217647] Loaded tz app Module Successfully!
[    9.217693]
[    9.217693] Loaded Sec Key Module Successfully!
[    9.222383]
[    9.222383] Loaded RSA Sec Key Module Successfully!
[    9.262297] luabase64: module license 'unspecified' taints kernel.
[    9.262327] Disabling lock debugging due to kernel taint
[    9.270122] ntfs: driver 2.1.32 [Flags: R/O MODULE].
[    9.277112] Initializing XFRM netlink socket
[    9.278376] NET: Registered protocol family 15
[    9.383097] ssdk_switch_device_num_init[1159]:INFO:ess-switch dts node number: 1
[    9.383162] ssdk_dt_get_switch_node[970]:INFO:ess-switch DT exist!
[    9.389626] ssdk_dt_parse_access_mode[856]:INFO:switch_access_mode: local bus
[    9.395555] ssdk_dt_parse_access_mode[869]:INFO:switchreg_base_addr: 0x3a000000
[    9.402748] ssdk_dt_parse_access_mode[870]:INFO:switchreg_size: 0x1000000
[    9.409874] ssdk_dt_parse_mac_mode[295]:INFO:mac mode = 0xb
[    9.416816] ssdk_dt_parse_mac_mode[304]:INFO:mac mode1 = 0xff
[    9.422191] ssdk_dt_parse_mac_mode[313]:INFO:mac mode2 = 0xf
[    9.428112] ssdk_dt_parse_phy_info[659]:INFO:[PORT 6] port_mac_sel = QGMAC_PORT
[    9.433836] ssdk_dt_parse_uniphy[332]:INFO:ess-uniphy DT exist!
[    9.440938] ssdk_dt_parse_intf_mac[801]:INFO:dp1 MAC 2c:ea:dc:04:d6:17
[    9.446808] ssdk_dt_parse_intf_mac[801]:INFO:dp2 MAC 2c:ea:dc:04:d6:18
[    9.453370] ssdk_dt_parse_intf_mac[801]:INFO:dp3 MAC 2c:ea:dc:04:d6:18
[    9.459891] ssdk_dt_parse_intf_mac[801]:INFO:dp4 MAC 2c:ea:dc:04:d6:18
[    9.466413] ssdk_dt_parse_intf_mac[801]:INFO:dp5 MAC 2c:ea:dc:04:d6:18
[    9.472916] ssdk_plat_init start
[    9.482031]
[    9.556309] ssdk_gcc_clock_init[1011]:INFO:SSDK gcc clock init successfully!
[    9.556509] ssdk_probe[1997]:INFO:ess_rst doesn't exist!
[    9.562916] HPPE initializing...
[    9.567923] malibu_phy_api_ops_init[2848]:INFO:qca probe malibu phy driver succeeded!
[    9.574510] qca808x_phy_api_ops_init[2208]:INFO:qca probe qca808x phy driver succeeded!
[    9.579596] qca808x_ptp_register[1407]:INFO:qca808x ptp clock registered
[    9.586542] regi_init[3526]:INFO:Initializing HPPE!!
[    9.782775]
[    9.804431] ssdk_ppe_reset_init[1243]:INFO:ppe reset successfully!
[    9.807485] qca_hppe_tdm_hw_init[674]:INFO:tdm setup num=96
[    9.809768] qca_hppe_portctrl_hw_init[105]:INFO:Hawkeye PPE port initializing
[   10.082788]
[   10.382796]
[   10.682805]
[   10.982814]
[   11.261484] ssdk_switch_register[1691]:INFO:Chip version 0x1500
[   11.261513] qca_link_polling_select[1307]:INFO:link-polling-required node does not exist
[   11.266209] ssdk_switch_register[1717]:INFO:polling is selected
[   11.274538] regi_init[3530]:INFO:Initializing HPPE Done!!
[   11.280227] regi_init[3590]:INFO:qca-ssdk module init succeeded!
[   11.282823]
[   11.304018] tun: Universal TUN/TAP device driver, 1.6
[   11.304041] tun: (C) 1999-2004 Max Krasnyansky <maxk@qualcomm.com>
[   11.311662] EDMA ver 1 hw init
[   11.314333] EDMA HW Reset completed succesfully
[   11.317211] Num rings - TxDesc:1 (23-23) TxCmpl:1 (7-7)
[   11.321580] RxDesc:1 (15-15) RxFill:1 (7-7)
[   11.530996] **********************************************************
[   11.531021] * NSS Data Plane driver
[   11.536434] **********************************************************
[   11.553035] l2tp_core: L2TP core driver, V2.0
[   11.554096] l2tp_netlink: L2TP netlink interface
[   11.582830]
[   11.662877] nss_driver - fw of size 780620  bytes copied to load addr: 40000000, nss_id : 0
[   11.664713] Supported Frequencies -
[   11.670022] 748.8 MHz 1.4976 GHz
[   11.676129] 1.6896 GHz [   11.677048]
[   11.679465] ffffffbffcecdd00: set sdma ffffffc079e02100
[   11.680947] ffffffbffcecdd00: meminfo init succeed
[   11.715689] node size 2 # items 4
[   11.715720] memory: 40000000 2147483648 (avl 1987850240) items 4 active_cores 2
[   11.718010] addr/size storage words 2 2 # words 4 in DTS, ddr size 1000000
[   11.725114] ffffffbffcecdd00: nss core 0 booted successfully
[   11.733229] nss_driver - fw of size 291696  bytes copied to load addr: 40800000, nss_id : 1
[   11.738930] Supported Frequencies -
[   11.745960] 748.8 MHz 1.4976 GHz
[   11.751912] 1.6896 GHz [   11.752955]
[   11.755387] ffffffbffced4c80: set sdma ffffffc078564e00
[   11.756829] ffffffbffced4c80: meminfo init succeed
[   11.764500] sit: IPv6 over IPv4 tunneling driver
[   11.765255] node size 2 # items 4
[   11.765259] memory: 40000000 2147483648 (avl 1987850240) items 4 active_cores 2
[   11.765265] addr/size storage words 2 2 # words 4 in DTS, ddr size 1000000
[   11.765277] ffffffbffced4c80: nss core 1 booted successfully
[   11.790551] nat46: module (version 8ff2ae59ec9840a7b8b45f976c51cae80abe0226) loaded.
[   11.799439] nf_conntrack version 0.5.0 (16384 buckets, 65536 max)
[   11.804220] gre: GRE over IPv4 demultiplexor driver
[   11.809333] ip_gre: GRE over IPv4 tunneling driver
[   11.814610] ip6_gre: GRE over IPv6 tunneling driver
[   11.820323] Ethernet Channel Bonding Driver: v3.7.1 (April 27, 2011)
[   11.845053] ip6_tables: (C) 2000-2006 Netfilter Core Team
[   11.852594] rmnet_nss_init(): initializing rmnet_nss
[   11.882859]
[   12.182883]
qcawifi configuration is disable
[   12.482904]
[   12.782921]
[   14.345217] Netfilter messages via NETLINK v0.30.
[   14.346651] ip_set: protocol 6
[   15.578153] configuring additional NSS pbufs
[   15.598731] additional pbufs of size 7802880 got added to NSS
[   15.961638] wlan: [2160:I:RPTR] qca_multi_link_init_module:
[   15.961638] ******QCA Repeater Initialization Done***********
[   15.961638]
******FW ini file not found******
******No cold_boot_support*****
[   16.063230] random: nonblocking pool is initialized
[   16.179288] wlan: [2165:I:ANY] =======ol_if_register_wifi3_0==========
[   16.179288]
[   16.179324] wlan: [2165:I:ANY] osif_nss_register_module: NSS wifi ops registered for target_type:1 with soc_ops:ffffffbffdb66a68
[   16.186181] wlan: [2165:I:ANY] ol_ath_wifi_ssr: ol_ath_wifi_ssr: SSR event 2 bus_type 1
[   16.197930] remoteproc remoteproc0: powering up cd00000.qcom_q6v5_wcss
[   16.215534] remoteproc remoteproc0: Booting fw image IPQ8074/q6_fw.mdt, size 668
[   16.925546] Subsystem error monitoring/handling services are up
[   16.925873] remoteproc remoteproc0: remote processor cd00000.qcom_q6v5_wcss is now up
[   16.926289] rpmsg_dev_probe: No pm domain
[   16.926504] rpmsg_dev_probe: No pm domain
[   16.927373] cnss[2]: INFO: QMI WLFW service connected, state: 0x1
[   16.927529] cnss[2]: INFO: device_id : 65534 mem mode : [0]
[   16.928204] cnss[2]: INFO: platform name: Askey RT5010W-D187/REV6
[   16.928206] cnss[2]: INFO: Target capability: chip_id: 0x0, chip_family: 0x0, board_id: 0xff, soc_id: 0xffffffff, fw_version: 0x240d84a5, fw_build_timestamp: 2021-04-27 02:43, otp_version: 0x0 eeprom_caldata_read_timeout 0s
[   16.928220] cnss[2]: INFO: No board_id entry in device tree
[   16.931852] cnss[2]: INFO: BDF location : 0x4b0c0000
[   16.931858] cnss[2]: INFO: BDF IPQ8074/bdwlan.bin size 131072
[   16.932414] cnss[2]: INFO: per device BDF location : 0x4b0e0000
[   16.932500] cnss[2]: INFO: CALDATA IPQ8074/caldata.bin size 131072 offset 0x20000
[   17.005754] wlan: [2165:I:ANY] ol_ath_wifi_ssr: ol_ath_wifi_ssr: SSR event 3 bus_type 1
[   17.013351] cnss[2]: INFO: Waiting for FW ready. Device: 0xfffe, FW ready timeout: 15 seconds
[   17.021164] cnss[2]: INFO: FW ready received for device 0xfffe
[   17.030268] wlan: [2165:I:ANY] pld_ahb_wlan_enable: cnss_mode: Mission mode
[   17.035779] cnss[2]: INFO: Sending mode message, mode: MISSION(0), state: 0x7
[   17.052653] wlan: [2165:I:ANY] qca_napi_create: qca_napi_create: napi instance 0 created on pipe 4
[   17.052851] wlan: [2165:I:ANY] __ol_ath_attach: Allocated soc ffffffc074e80880
[   17.060558] wlan: [2165:D:dfs] WLAN_DEBUG_DFS1 : dfs_psoc_obj_create_notification: DFS obj attach to psoc successfully
[   17.089209] wlan: [2165:E:CONFIG] cfg_uint_item_handler: dp_rxdma_monitor_desc_ring=2048 - Out of range [4096, 16384]; Using 4096
[   17.089432] wlan: [2165:I:ANY] osif_nss_wifi_soc_setup: nss-wifili:#1 register wifili function for soc
[   17.099860] wlan: [2165:I:ANY] osif_nss_wifi_soc_setup: nss register id -1 nss config 3 Target Type 18
[   17.109063] wlan: [2165:I:ANY] __ol_ath_attach: dev name soc0
[   17.118603] wlan: [2165:I:ANY] ol_ath_soc_attach: WMI attached. wmi_handle ffffffc074d71800
[   17.126385] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.132825] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.142649] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.142668] wlan: [2158:E:ANY] send_filled_buffers_to_user: Send Failed -3 drop_count = 1
[   17.162779] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.171141] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.181015] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.191082] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.201150] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.211219] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.221287] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.231358] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.241427] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.251498] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.261566] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.271636] wlan: [2165:I:MBSSIE] ol_ath_sanitize_ema_vendor_ie_config: vendor_ie_size: 0 ven_ie_size_nibble: 3
[   17.281731] wlan: [2165:I:ANY] htc_wmi_init: HT Create . ffffffc078572000
[   17.292001] wlan: [2165:I:ANY] htc_wmi_init: Skipping BMI Done
[   17.298713] wlan: [2165:I:ANY] htc_wmi_init: host_enable 0 nss_nwifi_offload 0
[   17.310171] wlan: [2165:I:ANY] ol_ath_soc_rate_stats_attach: enable rdk stats 1 soc: ffffffc074e80880
[   17.311645] wlan: [2165:I:ANY] ol_target_init_complete: CDP soc attach success
[   17.320945] wlan: [2165:I:ANY] ol_target_init_complete: Soc attach success NSS config 0
[   17.328194] wlan: [2165:I:ANY] htc_set_async_ep: htc_set_async_ep: htc_handle ffffffc078572000, ep 2, value 1
[   17.336441] wlan: [2165:I:ANY] htc_set_async_ep: htc_set_async_ep: htc_handle ffffffc078572000, ep 3, value 1
[   17.346552] wlan: [89:I:TIF] init_deinit_atf_config_enable: Airtime Fairness: num_peers=0 num_active_peer=0
[   17.356138] wlan: [89:I:TIF] HE_CAP Info = 9a18010d
[   17.365641] wlan: [89:I:TIF] Num HW modes = 1
[   17.370492] wlan: [89:I:TIF] Num PHY = 2
[   17.375022] wlan: [89:I:TIF] FW Build Version (Ext.) = 0
[   17.378998] wlan: [89:I:TIF] HDL Version: MajorVersion.MinorVersion = 0.0
[   17.384297] wlan: [89:I:TIF] Preferred HW Mode = 1 Num Radios = 2
[   17.392248] wlan: [89:I:TIF] init_deinit_add_11ax_modes: hw_mode_id = 1 phy_id = 0 wireless modes = f97f9001



[   17.397102] wlan: [89:I:TIF] init_deinit_add_11ax_modes: hw_mode_id = 1 phy_id = 1 wireless modes = 680688c
[   17.407729] wlan: [89:I:TIF] init_deinit_alloc_pdevs: CDP PDEV ATTACH success
[   17.417007] wlan: [89:I:TIF] init_deinit_alloc_pdevs: CDP PDEV ATTACH success
[   17.423715] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: num_radios: 2
[   17.430871] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: ema_max_vap_cnt: 0
[   17.437963] wlan: [89:I:TIF] init_deinit_get_total_num_vdevs_for_soc: num_vdevs: 34
[   17.446498] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: num_radios: 2
[   17.453133] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: ema_max_vap_cnt: 0
[   17.460451] wlan: [89:I:TIF] init_deinit_get_total_num_vdevs_for_soc: num_vdevs: 34
[   17.467997] wlan: [89:I:TIF] init_deinit_get_total_beaconing_vdevs_for_soc: beacon_tx_offload_max_vdev: 32
[   17.475648] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: num_radios: 2
[   17.485353] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: ema_max_vap_cnt: 0
[   17.492549] wlan: [89:I:TIF] init_deinit_get_total_num_vdevs_for_soc: num_vdevs: 34
[   17.500115] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: num_radios: 1
[   17.507741] wlan: [89:I:TIF] init_deinit_get_total_num_ema_vaps: ema_max_vap_cnt: 0
[   17.515205] wlan: [89:I:TIF] init_deinit_get_total_num_vdevs_for_soc: num_vdevs: 17
[   17.522583] wlan: [89:I:ANY] init_deinit_update_pdev_tgt_info: pdev id:0 wmi_handle:ffffffc074d71800
[   17.530557] wlan: [89:F:DP] dp_rx_enable_mon_dest_frag: Feature DP_RX_MON_MEM_FRAG for mon_dest is enabled
[   17.541114] wlan: [89:I:ANY] init_deinit_update_pdev_tgt_info: Pdev = 0 Number of peers = 529 vdevs = 17
[   17.549070] wlan: [89:I:TIF] init_deinit_update_pdev_tgt_info: CDP PDEV INIT success
[   17.558846] wlan: [89:I:ANY] init_deinit_update_pdev_tgt_info: pdev id:1 wmi_handle:ffffffc079efd000
[   17.566766] wlan: [89:F:DP] dp_rx_enable_mon_dest_frag: Feature DP_RX_MON_MEM_FRAG for mon_dest is enabled
[   17.577069] wlan: [89:I:ANY] init_deinit_update_pdev_tgt_info: Pdev = 1 Number of peers = 529 vdevs = 17
[   17.585006] wlan: [89:I:TIF] init_deinit_update_pdev_tgt_info: CDP PDEV INIT success
[   17.696437] wlan: [89:I:ANY] copy_fw_abi_version_tlv: copy_fw_abi_version_tlv: INIT_CMD version: 1, 0, 0x5f414351, 0x4c4d, 0x0, 0x0
[   17.909096] wlan: [89:I:ANY] ready_extract_init_status_tlv: ready_extract_init_status_tlv:0
[   17.909129] wlan: [89:I:ANY] dp_peer_map_attach_wifi3: dp_peer_map_attach_wifi3 max_peers 1109, max_ast_index: 4112
[   17.909129]
[   17.916457] wlan: [2165:I:ANY] ol_ath_connect_htc: WMI is ready
[   17.972489] wlan: [2165:I:ANY] ath_get_radio_index: Error: Could not match the device name : wifi%d
[   17.972526] wlan: [2165:E:NSS] [nss-wifili]: pdev:ffffffc073ba0880 radio_ifnum:28 scheme_id:0 radio_priority:1
[   17.985782] wlan: [2165:E:TIF] target_if_lro_hash_config: pdev with id 0 is NULL
[   17.990496] wlan: [2165:I:ANY] ath_get_radio_index: Error: Could not match the device name : wifi%d
[   17.998095] wlan: [2165:E:NSS] [nss-wifili]: pdev:ffffffc073480880 radio_ifnum:29 scheme_id:1 radio_priority:0
[   18.012233] wlan: [2165:E:TIF] target_if_lro_hash_config: pdev with id 1 is NULL
[   18.017162] wlan: [2165:I:ANY] ol_ath_soc_attach: connect HTC
[   18.024552] wlan: [2165:I:ANY] ol_ath_soc_attach: bypasswmi : 0
[   18.030177] wlan: [2165:I:MSCS] qca_mscs_module_init:
[   18.030177] ****QCA MSCS Initialization Done**** SoC ffffffc074e80880
[   18.035921] wlan: [2165:I:ANY] ol_ath_soc_attach: UMAC attach
[   18.047771] wlan: [2165:I:ANY] __ol_ath_attach: pdev_netdev name wifi0
[   18.053347] wlan: [2165:I:ANY] __ol_ath_attach: Skip txrx_pdev_attach_target
[   18.060370] wlan: [2165:I:ANY] __ol_ath_attach: BURSTING enabled by default
[   18.067032] wlan: [2165:I:ANY] ol_ath_pdev_attach: interface_id 0
[   18.073662] wlan: [2165:I:TIF] ol_ath_pdev_regdmn_init:  phy id = 0 Modes supported
[   18.079912] wlan: [2165:I:TIF] ol_ath_pdev_regdmn_init:  11b = 0 11g = 0 11a = 1 11n = 1 11ac = 1 11ax = 1
[   18.087382] wlan: [2165:I:TIF] ol_ath_pdev_regdmn_init:  Reg cap - phy_id = 0 supp_bnd = 2, modes = 793f9001, lo_2g = 0, hi_2g = 0 lo_g5 = 4900, hi_5g = 5920
[   18.097112] wlan: [2165:I:ANY] ol_ath_update_wireless_modes: wireless_modes = 793f9001 before update
[   18.111251] wlan: [2165:I:ANY] ol_ath_update_wireless_modes: Wireless_modes = 793f9001 after update
[   18.120457] wlan: [2165:I:ANY] ol_ath_update_ext_caps: 11ax 5G supported case
[   18.129267] wlan: [2165:I:MBSSIE] ol_ath_assign_mbssid_ref_bssid: MBSSID reference bssid is 2e:ea:dc:04:d6:fc soc: soc0 pdev: wifi0
[   18.136575] wlan: [2165:I:MBSSIE] ieee80211_mbss_attach: :>
[   18.148136] wlan: [2165:I:MBSSIE] ieee80211_mbss_attach: :<
[   18.153684] wlan: [2165:I:ANY] ol_resmgr_create: OL Resmgr Init-ed
[   18.159393] wlan: [2165:I:ANY] acfg_attach: acfg_attach: 3290: Netlink socket created:ffffffc074d73400
[   18.165525] wlan: [2165:I:ANY] ol_ath_stats_attach: periodic_chan_stats: 1
[   18.175493] wlan: [2165:I:ANY] wlan_scan_update_channel_list: num_chan: 25
[   18.181673] wlan: [0:I:ANY] ol_ath_pdev_attach: Set global_ic[1], ptr:ffffffbffd7e9fe0
[   18.188505] pdev(ffffffc079efcc08) Enabling DBDC Repeater 0  soc_lag ffffffc079c58a00
[   18.196432] wlan: [0:I:ANY] dp_lag_pdev_set_primary_radio: pdev(ffffffc079efcc08) is_primary 0
[   18.196434] [nss-wifili]: NSS Wifili DBDC Repeater enable message passed[   18.213050] wlan: [0:I:ANY] ol_ath_twt_enable_complete_event_handler: twt enabled
[   18.214328] wlan: [2165:I:ANY] ol_ath_ucfg_set_rx_pkt_protocol_tagging: Set RX packet type TAG, opcode : 0, pkt_type : 18, metadata : 0xca0,pdev_id = 0, REO dest ring = 5
[   18.214328]
[   18.214363] wlan: [2165:I:ANY] ol_ath_pri20_cfg_blockchanlist_parse: cfg block channel list is empty
[   18.214375] wlan: [2165:I:ANY] ol_ath_configure_cong_ctrl_max_msdus: pdev_idx = 0 tx_desc_limit = 32768
[   18.214392] wlan: [2165:I:ANY] osif_wrap_attach: osif wrap attached
[   18.214392]
[   18.214397] wlan: [2165:I:ANY] osif_wrap_devt_init: osif wrap dev table init done
[   18.214397]
[   18.214404] wlan: [2165:I:ANY] osif_wrap_attach:  Wrap Attached: Wrap_com =ffffffc074d73800 ic->ic_wrap_com=ffffffc074d73800 &wrap_com->wc_devt=ffffffc074d73800
[   18.214404]
[   18.214454] wlan: [2165:I:ANY] __ol_ath_attach: needed_headroom reservation 60
[   18.214461] wlan: [2165:I:ANY] ol_ath_enable_fraglist: Enabled Fraglist bit for the radio wifi0 features 41
[   18.214648] wlan: [2165:I:ANY] ieee80211_cfg80211_radio_attach: ic: 0xffffffc073ba0880, wdev: 0xffffffc073bb8ad8, wiphy: 0xffffffc0751ecaa0, netdev: 0xffffffc073ba0000
[   18.215097] wlan: [2165:I:ANY] __ol_ath_attach: pdev_netdev name wifi1
[   18.215115] wlan: [2165:I:ANY] __ol_ath_attach: Skip txrx_pdev_attach_target
[   18.215708] wlan: [2165:I:ANY] __ol_ath_attach: BURSTING enabled by default
[   18.215755] wlan: [2165:I:ANY] ol_ath_pdev_attach: interface_id 1
[   18.215768] wlan: [2165:I:TIF] ol_ath_pdev_regdmn_init:  phy id = 1 Modes supported
[   18.215779] wlan: [2165:I:TIF] ol_ath_pdev_regdmn_init:  11b = 1 11g = 1 11a = 0 11n = 1 11ac = 1 11ax = 1
[   18.215786] wlan: [2165:I:TIF] ol_ath_pdev_regdmn_init:  Reg cap - phy_id = 1 supp_bnd = 1, modes = 680680c, lo_2g = 2312, hi_2g = 2732 lo_g5 = 0, hi_5g = 0
[   18.215792] wlan: [2165:I:ANY] ol_ath_update_wireless_modes: wireless_modes = 680680c before update
[   18.215798] wlan: [2165:I:ANY] ol_ath_update_wireless_modes: Wireless_modes = 680680c after update
[   18.215805] wlan: [2165:I:ANY] ol_ath_update_ext_caps: 11ax 2G supported case
[   18.215838] wlan: [2165:I:ANY] ol_ath_pdev_regdmn_init: LDPC not supported in 5G HE CAP
[   18.215864] wlan: [2165:I:MBSSIE] ol_ath_assign_mbssid_ref_bssid: MBSSID reference bssid is 2e:ea:dc:04:d6:88 soc: soc0 pdev: wifi1
[   18.215925] wlan: [2165:I:MBSSIE] ieee80211_mbss_attach: :>
[   18.215930] wlan: [2165:I:MBSSIE] ieee80211_mbss_attach: :<
[   18.215937] wlan: [2165:I:ANY] ol_resmgr_create: OL Resmgr Init-ed
[   18.216055] wlan: [2165:I:ANY] acfg_attach: Offload using existing sock ffffffc074d73400
[   18.216065] wlan: [2165:I:ANY] ol_ath_stats_attach: periodic_chan_stats: 1
[   18.216243] wlan: [2165:I:ANY] wlan_scan_update_channel_list: num_chan: 11
[   18.216272] wlan: [0:I:ANY] ol_ath_pdev_attach: Set global_ic[2], ptr:ffffffbffd7e9fe0
[   18.216306] pdev(ffffffc079efd408) Enabling DBDC Repeater 0  soc_lag ffffffc079c58a00
[   18.216307] wlan: [0:I:ANY] dp_lag_pdev_set_primary_radio: pdev(ffffffc079efd408) is_primary 0
[   18.217718] wlan: [2165:I:ANY] ol_ath_ucfg_set_rx_pkt_protocol_tagging: Set RX packet type TAG, opcode : 0, pkt_type : 18, metadata : 0xca0,pdev_id = 1, REO dest ring = 5
[   18.217718]
[   18.217751] wlan: [2165:I:ANY] ol_ath_pri20_cfg_blockchanlist_parse: cfg block channel list is empty
[   18.217760] wlan: [2165:I:ANY] ol_ath_configure_cong_ctrl_max_msdus: pdev_idx = 1 tx_desc_limit = 32768
[   18.217775] wlan: [2165:I:ANY] osif_wrap_attach: osif wrap attached
[   18.217775]
[   18.217780] wlan: [2165:I:ANY] osif_wrap_devt_init: osif wrap dev table init done
[   18.217780]
[   18.217787] wlan: [2165:I:ANY] osif_wrap_attach:  Wrap Attached: Wrap_com =ffffffc06f026000 ic->ic_wrap_com=ffffffc06f026000 &wrap_com->wc_devt=ffffffc06f026000
[   18.217787]
[   18.217809] wlan: [2165:I:ANY] __ol_ath_attach: needed_headroom reservation 60
[   18.217816] wlan: [2165:I:ANY] ol_ath_enable_fraglist: Enabled Fraglist bit for the radio wifi1 features 41
[   18.217838] wlan: [2165:I:ANY] wlan_cfg80211_init: Number of 2G channels: 11
[   18.217979] wlan: [2165:I:ANY] ieee80211_cfg80211_radio_attach: ic: 0xffffffc073480880, wdev: 0xffffffc073498ad8, wiphy: 0xffffffc06ed202a0, netdev: 0xffffffc073480000
[   18.218354] wlan: [2165:I:Dynamic Mode Change] ol_ath_check_and_reconfig_hw_mode: Running with HW mode = 1
[   18.218533] wlan: [2165:E:QLD] qld_register: Handle or address is NULL
[   18.218556] wlan: [2165:I:ANY] wlan_pdev_operation: num_radios=1, wifi_radios[0].sc = ffffffc073ba0880_radio_type = 2
[   18.218562] wlan: [2165:I:ANY] wlan_pdev_operation: num_radios=2, wifi_radios[1].sc = ffffffc073480880_radio_type = 2
[   18.218585] wlan: [2165:I:ANY] init_ath_pci_3_0: 6ath_ol_pci_wifi3.0 :  (Atheros/multi-bss)
[   18.637469] [nss-wifili]: NSS Wifili DBDC Repeater enable message passed
[   18.646028] wlan: [0:I:ANY] ol_ath_twt_enable_complete_event_handler: twt enabled
[   18.664401] wlan: [2177:I:ANY] osif_nss_register_module: NSS wifi ops registered for target_type:0 with soc_ops:ffffffbffdd15fe0
[   18.664758] wlan: [2177:I:ANY] init_ath_pci_2_0: 6ath_ol_pci_2_0:  (Atheros/multi-bss)
No Direct-Attach chipsets found.
acfg_tool: Issuing blocking call to wait for events
acfg_tool: Issuing blocking call to wait for events
lbd: stopping daemon
lbd: stopping daemon
qcawifi qcawificfg80211 disable radio wifi0
qcawifi qcawificfg80211 disable radio wifi1
qcawifi qcawificfg80211 disable radio wifi0
qcawifi qcawificfg80211 disable radio wifi1
******FW ini file not found******
No qca-mad module enabled
**** Platform Name: ap *****
Copy ART caldata from /dev/mmcblk0p17 to /tmp/virtual_art.bin
VERIFY_IB: Success. verify IB ok

I have mine completely disassembled because I am going to desolder the EMMC flash and dump its content, but to access the serial pins, it is not necessary- you only need to take out the bottom 2 screws and the bottom plastic cover will come off revealing the serial pins. They are behind an iron weight so access is not easy. No need for further disassembly- all I did was remove 2 of the screws that hold one of the iron weights/fan. (They have added two weights inside the case so the device does not fall over easily)

I stuck my male-to-male breadboard jumper wire in there at this point and was able to access the serial console and interrupt uboot.



thank you for the pics.
i see you got the plastic faceplate off (the thing with the labels on it). that thing seems to be holding everything together despite taking out about 6 screws. how did you ge the faceplate off?

I cant remember.. i did this 2 weeks ago. But I think it just clips off once the bottom cover comes off + one or two screws. However you shouldnt need to take it out to access the serial pins

I think you need to slide the top cover off first, before taking that off

got that step. then used a lot of force.
my board is definitely different.
picture attached

  • becasue mine is a SAX1V1S

i'll get serial access in a day or too and post

Oh shoot, that is the Sagemcom, its not an Askey. Would be interesting to see what SOC that has, but I recall not selecting that device because it involved a lot of work, whereas the Askey more or less already has platform support.

SoC is BCM4908: https://fccid.io/VW3FAST5285/Internal-Photos/Internal-Photos-4851407

Maybe that Sagemcom is similar to https://openwrt.org/toh/netgear/r8000p ?

yup - it's sagecom / broadcom. no good openwrt opportunity here.
thanks

There is also a SAX1V1R variant (Sercomm IP5446A) but the SoC is unknown: https://fccid.io/P27IP5446A/Internal-Photos/Internal-photos-4824756

@meisterlone , @lytr -
i got serial log on SAX1V1S - it's broadcom quadcore@1.8Mhz
i started a thread for the SAX1V1S here: SAX1V1S / Sagemcom
i'd welcome any help - cant interrupt cfe.
thanks

@meisterlone -
i just got a SAX1v1K and am excited to get going on this.
how far did you get towards openwrt?
did you try mounting the wrx36 initramfs image?

They put a password on uboot, which has halted progress. I am going to try crack the password, but first I need to dump the emmc content and im still waiting on some parts to arrive to do that. I will dump the flash contents here as soon as I have it. Uboot doesnt support adding a password in the GPL code so they added that in some custom code. Will need some RE.

yup - i got stuck there too. let'ss keep in touch and let eachother know about progress.

I was able to dump the EMMC flash contents

https://drive.google.com/file/d/1vKD-Azmts5M7D66zFZgweIzjFiO306Vm/view?usp=sharing