Late to the party here
I stupidly flashed the wrong firmware (tried it from here as they have the same model name in sysinfo)
- Interrupting boot by pressing space, "root" and "router serial number" no longer work for logging in (no idea why that broke it)?
I can still get to the IPQ807x# CLI, but I can't run that open.sh script as I'm not exactly in a Linux shell. Have been trying to run the commands piecemeal but it's not quite working out.
So I'm stuck in this uboot console and wondering if there is any way out? Trying tftboot doesn't seem to do anything (though i can tftpput successfully to my computer). Is this thing bricked?
printenv:
IPQ807x# printenv
baudrate=115200
bootargs=console=ttyMSM0,115200n8 mmc_mid=0x15 boot_signedimg mmc_mid=0x15 boot_signedimg mmc_mid=0x15 boot_signedimg root=/dev/mmcblk0p20 rootwait
bootcmd=usbboot
bootdelay=2
dump_to_flash=0x00e7afe2
eth1addr=88:de:7c:cb:be:5c
eth2addr=88:de:7c:cb:be:5c
eth3addr=88:de:7c:cb:be:5c
eth4addr=88:de:7c:cb:be:5c
ethact=eth0
ethaddr=88:de:7c:cb:be:5b
fdt_high=0x4A200000
fdtcontroladdr=4a9884a0
fileaddr=44000000
filesize=1a0
fix_uboot=mw 4a9115c8 0a000007 1;mw 4a91e534 0a000006 1;setenv loadaddr 44000000;setenv ipaddr 192.168.1.222;setenv serverip 192.168.1.210;
flash_type=5
ipaddr=192.168.1.222
loadaddr=44000000
machid=8750106
mmcargs=mmc_mid=0x15
netmask=255.255.255.0
read_hlos_emmc=mmc read 44000000 0x8A22 0x4000
reboot-reason=rea=ffffffff
reboot-time=time=ffffffff
serverip=192.168.1.111
set_custom_bootargs=setenv bootargs console=ttyMSM0,115200n8 mmc_mid=0x15 boot_signedimg mmc_mid=0x15 boot_signedimg mmc_mid=0x15 boot_signedimg root=/dev/mmcblk0p20 rootwait
setup_and_boot=run set_custom_bootargs;run fix_uboot; run read_hlos_emmc; bootm
soc_hw_version=200d0200
soc_version_major=2
soc_version_minor=0
stderr=serial@78B3000
stdin=serial@78B3000
stdout=serial@78B3000
and then here's the boot seq output:
Environment size: 1264/262140 bytes
IPQ807x#
Format: Log Type - Time(microsec) - Message - Optional Info
Log Type: B - Since Boot(Power On Reset), D - Delta, S - Statistic
S - QC_IMAGE_VERSION_STRING=BOOT.BF.3.3.1-00163
S - IMAGE_VARIANT_STRING=HAASANAZA
S - OEM_IMAGE_VERSION_STRING=CRM
S - Boot Config, 0x000002e3
B - 201 - PBL, Start
B - 2735 - bootable_media_detect_entry, Start
B - 125728 - bootable_media_detect_success, Start
B - 125733 - elf_loader_entry, Start
B - 127165 - auth_hash_seg_entry, Start
B - 165230 - auth_hash_seg_exit, Start
B - 179657 - elf_segs_hash_verify_entry, Start
B - 242290 - PBL, End
B - 249978 - SBL1, Start
B - 301126 - GCC [RstStat:0x10, RstDbg:0x600000] WDog Stat : 0x4
B - 307501 - pm_device_init, Start
B - 431758 - PM_SET_VAL:Skip
D - 123891 - pm_device_init, Delta
B - 434198 - pm_driver_init, Start
D - 5215 - pm_driver_init, Delta
B - 440328 - clock_init, Start
D - 2165 - clock_init, Delta
B - 444507 - boot_flash_init, Start
D - 7869 - boot_flash_init, Delta
B - 456188 - boot_config_data_table_init, Start
D - 1067 - boot_config_data_table_init, Delta - (575 Bytes)
B - 463783 - Boot Setting : 0x00000618
B - 467534 - CDT version:2,Platform ID:8,Major ID:117,Minor ID:1,Subtype:6
B - 474641 - sbl1_ddr_set_params, Start
B - 478453 - CPR configuration: 0x30c
B - 481930 - cpr_init, Start
B - 484706 - Rail:0 Mode: 5 Voltage: 832000
B - 489921 - CL CPR settled at 784000mV
B - 492727 - Rail:1 Mode: 5 Voltage: 896000
B - 496906 - Rail:1 Mode: 7 Voltage: 936000
D - 16531 - cpr_init, Delta
B - 503707 - Pre_DDR_clock_init, Start
B - 507825 - Pre_DDR_clock_init, End
B - 511119 - DDR Type : PCDDR4
B - 518164 - do ddr sanity test, Start
D - 1067 - do ddr sanity test, Delta
B - 521611 - DDR: Start of HAL DDR Boot Training
B - 526338 - DDR: End of HAL DDR Boot Training
B - 532103 - DDR: Checksum to be stored on flash is -270238469
B - 542412 - Image Load, Start
D - 345077 - QSEE Image Loaded, Delta - (1380872 Bytes)
B - 887550 - Image Load, Start
D - 457 - SEC Image Loaded, Delta - (0 Bytes)
B - 895083 - Image Load, Start
D - 287859 - DEVCFG Image Loaded, Delta - (32468 Bytes)
B - 1183034 - Image Load, Start
D - 292800 - RPM Image Loaded, Delta - (93060 Bytes)
B - 1475925 - Image Load, Start
D - 313388 - APPSBL Image Loaded, Delta - (628336 Bytes)
B - 1789404 - QSEE Execution, Start
D - 61 - QSEE Execution, Delta
B - 1795230 - USB D+ check, Start
D - 0 - USB D+ check, Delta
B - 1801604 - SBL1, End
D - 1553944 - SBL1, Delta
S - Flash Throughput, 34368 KB/s (2135983 Bytes, 62150 us)
S - DDR Frequency, 600 MHz
S - Core 0 Frequency, 1651 MHz
U-Boot 1.5.1 [spf11.4_csu2] (Jun 15 2022 - 09:05:59 +0000)
DRAM: smem ram ptable found: ver: 1 len: 4
2 GiB
[Askey] Led init ...
NAND: Could not find nand_gpio in dts, using defaults
Not an ONFI device
ONFI probe failed
ID = ffffffff
Vendor = ff
Device = ff
qpic_nand: unknown NAND device manufacturer: ff device: ff
U-Boot BUG at drivers/mtd/mtdcore.c:420!
SF: Unsupported flash IDs: manuf ff, jedec ffff, ext_jedec ffff
ipq_spi: SPI Flash not found (bus/cs/speed/mode) = (0/0/48000000/0)
0 MiB
MMC: <NULL>: 0 (eMMC)
In: serial@78B3000
Out: serial@78B3000
Err: serial@78B3000
machid: 8750106
eth5 MAC Address from ART is not valid
Hit space key to stop autoboot: 0
** No device specified **
Net: MAC0 addr:88:de:7c:cb:be:5b
PHY ID1: 0x4d
PHY ID2: 0xd0b1
PHY ID1: 0x4d
PHY ID2: 0xd101
EDMA ver 1 hw init
Num rings - TxDesc:1 (0-0) TxCmpl:1 (7-7)
RxDesc:1 (15-15) RxFill:1 (7-7)
ipq807x_edma_alloc_rings: successfull
ipq807x_edma_setup_ring_resources: successfull
ipq807x_edma_configure_rings: successfull
ipq807x_edma_hw_init: successfull
eth0
IPQ807x#
Much obliged if anyone can help. Really perplexed why the root / serial number login doesn't work any more.