TPLink EAP245 v3 bricked

I am a total Newbee, has once been able to unbrick TL MR3020 but following the instructions on the internet (It got bricked while trying to get back into stock firmware from openwrt, many years ago - using usb to serial thing)

While installing OpenWRT, I uploaded the openWRT firmware once more using luck and got to bricked. Have been able to boot into recovery mode and try to load the stock firmware a number of times, but nothing worked. Also uploaded firmware - both stock and Openwrt a no of times with tftp, but did not work.

Finally opened up the box and established Serial connection.

On serial consol (picocom) I am getting only the following -

U-Boot 1.1.4--LSDK-10.2-00082-4 (Mar 19 2018 - 14:55:50)

board956x - Dragonfly 1.0DRAM:  
sri
ath_ddr_initial_config(312): (ddr1 init)
ath_sys_frequency: ref_clk 25000000
ath_sys_frequency: cpu 775 ddr 650 ahb 258
Tap values = (0x11, 0x11, 0x11, 0x11)
 4 MB
Top of RAM usable for U-Boot at: 80400000
Reserving 454k for U-Boot at: 8038c000
Reserving 192k for malloc() at: 8035c000
Reserving 44 Bytes for Board Info at: 8035bfd4
Reserving 36 Bytes for Global Data at: 8035bfb0
Reserving 128k for boot params() at: 8033bfb0
Stack Pointer at: 8033bf98

It stops at 'Stack Pointer at: 8033bf98'

And 4MB ?? Wondering what has happened to the rest of memory

While the serial port is connected and being monitored, I am not able to get the recovery web interface or boot to the TFTP mode.

I booted into recovery mode and connected the serial port later and could see the output of uploading the stock firmware -

Data will be downloaded at 0x81000000 in RAM
Upgrade type: firmware
Upload file size: 8115830 bytes
Loading: #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #######################################
         #####################################

Firmware Recovery file length : 8115702

Rsa verify success
Firmware process common.

Image verify OK!

Firmware file Verify ok!

Firmwave supports EAP245(TP-Link|UN|AC1750-D):3.0, check OK..

Firmware Recovery check ok!

upgrade_filecheck ok
HTTP upload is done! Upgrading...
do http upgrade
Firmware Recovery file length : 8115702

Rsa verify success
Firmware process common.

Image verify OK!

Firmware file Verify ok!

Firmwave supports EAP245(TP-Link|UN|AC1750-D):3.0, check OK..

Firmware Recovery check ok!

set integer flag to 0.

[NM_Error](nm_updateDataToNvram) 00652: memory malloc failed.

[NM_Error](nm_upgradeFwupFile) 01666: updateDataToNvram failed.

[NM_Error](nm_tpFirmwareRecovery) 01627: upgrade firmware failed!

Web recovery failed type 0.
## Error: HTTP ugrade failed!

Trying eth0
HTTP server is starting at IP: 192.168.1.1
## Error: Httpd buffer initial failed!
HTTP server is ready!

I tried following the topics in the forum, but am not able to understand many a things - like how to boot into 'initramfs.bin' through tftp ( not sure in which terminal the commands have to be typed into). My apologies for my lack of know how

Does my EAP245 still has any hope of survival!!

Apologies for repeating this topic - I was not able to get the EAP245 back after trying to follow the previous posts.

Some updates -

Situation 1 – Booting with UART port connected to my mac and monitoring –

picocom -b 115200 /dev/tty.usbserial-0001
picocom v3.1

port is        : /dev/tty.usbserial-0001
flowcontrol    : none
baudrate is    : 115200
parity is      : none
databits are   : 8
stopbits are   : 1
escape is      : C-a
local echo is  : no
noinit is      : no
noreset is     : no
hangup is      : no
nolock is      : no
send_cmd is    : sz -vv
receive_cmd is : rz -vv -E
imap is        : 
omap is        : 
emap is        : crcrlf,delbs,
logfile is     : none
initstring     : none
exit_after is  : not set
exit is        : no

Type [C-a] [C-h] to see available commands
Terminal ready
?

U-Boot 1.1.4--LSDK-10.2-00082-4 (Mar 19 2018 - 14:55:50)

board956x - Dragonfly 1.0DRAM:  
sri
ath_ddr_initial_config(312): (ddr1 init)
ath_sys_frequency: ref_clk 25000000
ath_sys_frequency: cpu 775 ddr 650 ahb 258
Tap values = (0x11, 0x11, 0x11, 0x11)
 4 MB
Top of RAM usable for U-Boot at: 80400000
Reserving 454k for U-Boot at: 8038c000
Reserving 192k for malloc() at: 8035c000
Reserving 44 Bytes for Board Info at: 8035bfd4
Reserving 36 Bytes for Global Data at: 8035bfb0
Reserving 128k for boot params() at: 8033bfb0
Stack Pointer at: 8033bf98

Pressing Ctrl-c has no effect

Situation 2 – Booted while USB to TTL UART not connected to mac. UART connected after booting and monitoring started –

picocom -b 115200 /dev/tty.usbserial-0001
picocom v3.1

port is        : /dev/tty.usbserial-0001
flowcontrol    : none
baudrate is    : 115200
parity is      : none
databits are   : 8
stopbits are   : 1
escape is      : C-a
local echo is  : no
noinit is      : no
noreset is     : no
hangup is      : no
nolock is      : no
send_cmd is    : sz -vv
receive_cmd is : rz -vv -E
imap is        : 
omap is        : 
emap is        : crcrlf,delbs,
logfile is     : none
initstring     : none
exit_after is  : not set
exit is        : no

Type [C-a] [C-h] to see available commands
Terminal ready
Trying eth0
dup 1 speed 1000
HTTP server is starting at IP: 192.168.1.1
HTTP server is ready!

I am able to get this on web browser –

Pressing ctrl-c

Web failsafe mode aborted!

Net:   ath_gmac_enet_initialize...
No valid address in Flash. Using fixed address
ath_gmac_enet_initialize: reset mask:c02200 
athr_mgmt_init ::done
Dragonfly  ----> S17 PHY *
SGMII in forced mode
athr_gmac_sgmii_setup SGMII done
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
eth0 up
eth0
ath>

not able to boot using initramfs.bin even after resetting (with reset command) and pressing Ctrl-B when prompted.

Situation 3 – Boot into recovery mode while the UART is not connected to mac, then connect the UART

picocom -b 115200 /dev/tty.usbserial-0001
picocom v3.1

port is        : /dev/tty.usbserial-0001
flowcontrol    : none
baudrate is    : 115200
parity is      : none
databits are   : 8
stopbits are   : 1
escape is      : C-a
local echo is  : no
noinit is      : no
noreset is     : no
hangup is      : no
nolock is      : no
send_cmd is    : sz -vv
receive_cmd is : rz -vv -E
imap is        : 
omap is        : 
emap is        : crcrlf,delbs,
logfile is     : none
initstring     : none
exit_after is  : not set
exit is        : no

Type [C-a] [C-h] to see available commands
Terminal ready
T Tx Timed out
Tftp server tranfer fail!
run command tftp 0x81000000 EAP245v3_up.bin
Trying eth0
dup 1 speed 1000
Using eth0 device
TFTP from server 192.168.1.100; our IP address is 192.168.1.1
Filename 'EAP245v3_up.bin'.
Load address: 0x81000000
Loading: *
TFTP error: 'File not found' (1)
Starting again

Trying eth0
Tftp server tranfer fail!
tftpboot firmware failed, now start normally.
[NM_Error](nm_api_checkInteger) 00373: factory boot check integer flag is not 1.

Net:   ath_gmac_enet_initialize...
No valid address in Flash. Using fixed address
ath_gmac_enet_initialize: reset mask:c02200 
athr_mgmt_init ::done
Dragonfly  ----> S17 PHY *
SGMII in forced mode
athr_gmac_sgmii_setup SGMII done
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
eth0 up
eth0
Trying eth0
dup 1 speed 1000
HTTP server is starting at IP: 192.168.1.1
HTTP server is ready!



Ctrl-c




Web failsafe mode aborted!

Net:   ath_gmac_enet_initialize...
No valid address in Flash. Using fixed address
ath_gmac_enet_initialize: reset mask:c02200 
athr_mgmt_init ::done
Dragonfly  ----> S17 PHY *
SGMII in forced mode
athr_gmac_sgmii_setup SGMII done
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
eth0 up
eth0
ath>


ath> reset				#and pressing Ctrl-B when asked for

U-Boot 1.1.4--LSDK-10.2-00082-4 (Mar 19 2018 - 14:55:50)

board956x - Dragonfly 1.0DRAM:  
sri
ath_ddr_initial_config(287): (ddr2 init)
ath_ddr_initial_config: DDR_EMR2_ADDRESS=0x180000bc, EMR2 value=0x80
ath_sys_frequency: ref_clk 25000000
ath_sys_frequency: cpu 775 ddr 650 ahb 258
Tap values = (0x10, 0x10, 0x10, 0x10)
128 MB
Top of RAM usable for U-Boot at: 88000000
Reserving 454k for U-Boot at: 87f8c000
Reserving 192k for malloc() at: 87f5c000
Reserving 44 Bytes for Board Info at: 87f5bfd4
Reserving 36 Bytes for Global Data at: 87f5bfb0
Reserving 128k for boot params() at: 87f3bfb0
Stack Pointer at: 87f3bf98
Now running in RAM - U-Boot at: 87f8c000
Flash Manuf Id 0x1c, DeviceId0 0x70, DeviceId1 0x18
flash size 16MB, sector count = 256
Flash: 16 MB
*** Warning - bad CRC, using default environment

In:    serial
Out:   serial
Err:   serial
Setting 0x181162c0 to 0x40802100
Hit Ctrl+B to stop autoboot:  0 
Net:   ath_gmac_enet_initialize...
No valid address in Flash. Using fixed address
ath_gmac_enet_initialize: reset mask:c02200 
athr_mgmt_init ::done
Dragonfly  ----> S17 PHY *
athrs17_reg_init: complete
SGMII in forced mode
athr_gmac_sgmii_setup SGMII done
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
eth0 up
eth0
ath>
ath> setenv ipaddr 192.168.1.1
ath> setenv serverip 192.168.1.100
ath> tftp 0x80800000 initramfs.bin
Trying eth0
dup 1 speed 1000
Using eth0 device
TFTP from server 192.168.1.100; our IP address is 192.168.1.1
Filename 'initramfs.bin'.
Load address: 0x80800000
Loading: #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 #################################################################
	 ###########################
done
Bytes transferred = 5458276 (534964 hex)
ath>
ath> bootelf $fileaddr
Loading .text @ 0x80060000 (5453767 bytes)
## Starting application at 0x80060000 ...


OpenWrt kernel loader for AR7XXX/AR9XXX
Copyright (C) 2011 Gabor Juhos <juhosg@openwrt.org>
Decompressing kernel... done!
Starting kernel at 80060000...

[    0.000000] Linux version 5.15.127 (builder@buildhost) (mips-openwrt-linux-musl-gcc (OpenWrt GCC 12.3.0 r23769-324673914d) 12.3.0, GNU ld (GNU Binutils) 2.40.0) #0 Fri Aug 18 21:45:16 2023
[    0.000000] printk: bootconsole [early0] enabled
[    0.000000] CPU0 revision is: 00019750 (MIPS 74Kc)
[    0.000000] MIPS: machine is TP-Link EAP245 v3 / EAP265 HD v1
[    0.000000] SoC: Qualcomm Atheros QCA956X ver 1 rev 0
[    0.000000] Initrd not found or empty - disabling initrd
[    0.000000] Primary instruction cache 64kB, VIPT, 4-way, linesize 32 bytes.
[    0.000000] Primary data cache 32kB, 4-way, VIPT, cache aliases, linesize 32 bytes
[    0.000000] Zone ranges:
[    0.000000]   Normal   [mem 0x0000000000000000-0x0000000007ffffff]
[    0.000000] Movable zone start for each node
[    0.000000] Early memory node ranges
[    0.000000]   node   0: [mem 0x0000000000000000-0x0000000007ffffff]
[    0.000000] Initmem setup node 0 [mem 0x0000000000000000-0x0000000007ffffff]
[    0.000000] Built 1 zonelists, mobility grouping on.  Total pages: 32480
[    0.000000] Kernel command line: console=ttyS0,115200n8 rootfstype=squashfs,jffs2
[    0.000000] Dentry cache hash table entries: 16384 (order: 4, 65536 bytes, linear)
[    0.000000] Inode-cache hash table entries: 8192 (order: 3, 32768 bytes, linear)
[    0.000000] Writing ErrCtl register=00000000
[    0.000000] Readback ErrCtl register=00000000
[    0.000000] mem auto-init: stack:off, heap alloc:off, heap free:off
[    0.000000] Memory: 108468K/131072K available (6087K kernel code, 592K rwdata, 1328K rodata, 13040K init, 217K bss, 22604K reserved, 0K cma-reserved)
[    0.000000] SLUB: HWalign=32, Order=0-3, MinObjects=0, CPUs=1, Nodes=1
[    0.000000] NR_IRQS: 51
[    0.000000] CPU clock: 775.000 MHz
[    0.000000] clocksource: MIPS: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 4932285024 ns
[    0.000001] sched_clock: 32 bits at 387MHz, resolution 2ns, wraps every 5541893118ns
[    0.008294] Calibrating delay loop... 385.84 BogoMIPS (lpj=1929216)
[    0.074824] pid_max: default: 32768 minimum: 301
[    0.080528] Mount-cache hash table entries: 1024 (order: 0, 4096 bytes, linear)
[    0.088266] Mountpoint-cache hash table entries: 1024 (order: 0, 4096 bytes, linear)
[    0.102669] clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 19112604462750000 ns
[    0.113089] futex hash table entries: 256 (order: -1, 3072 bytes, linear)
[    0.120449] pinctrl core: initialized pinctrl subsystem
[    0.127707] NET: Registered PF_NETLINK/PF_ROUTE protocol family
[    0.134515] thermal_sys: Registered thermal governor 'step_wise'
[    0.150536] clocksource: Switched to clocksource MIPS
[    0.163587] NET: Registered PF_INET protocol family
[    0.168962] IP idents hash table entries: 2048 (order: 2, 16384 bytes, linear)
[    0.177507] tcp_listen_portaddr_hash hash table entries: 512 (order: 0, 4096 bytes, linear)
[    0.186403] Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear)
[    0.194585] TCP established hash table entries: 1024 (order: 0, 4096 bytes, linear)
[    0.202684] TCP bind hash table entries: 1024 (order: 0, 4096 bytes, linear)
[    0.210128] TCP: Hash tables configured (established 1024 bind 1024)
[    0.216984] UDP hash table entries: 256 (order: 0, 4096 bytes, linear)
[    0.223941] UDP-Lite hash table entries: 256 (order: 0, 4096 bytes, linear)
[    0.231697] NET: Registered PF_UNIX/PF_LOCAL protocol family
[    0.237706] PCI: CLS 0 bytes, default 32
[    0.320980] workingset: timestamp_bits=14 max_order=15 bucket_order=1
[    0.332591] squashfs: version 4.0 (2009/01/31) Phillip Lougher
[    0.338752] jffs2: version 2.2 (NAND) (SUMMARY) (LZMA) (RTIME) (CMODE_PRIORITY) (c) 2001-2006 Red Hat, Inc.
[    0.371837] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 251)
[    0.393697] pinctrl-single 1804002c.pinmux: 544 pins, size 68
[    0.401025] Serial: 8250/16550 driver, 16 ports, IRQ sharing enabled
[    0.410239] printk: console [ttyS0] disabled
[    0.414869] 18020000.uart: ttyS0 at MMIO 0x18020000 (irq = 9, base_baud = 1562500) is a 16550A
[    0.423990] printk: console [ttyS0] enabled
[    0.423990] printk: console [ttyS0] enabled
[    0.433060] printk: bootconsole [early0] disabled
[    0.433060] printk: bootconsole [early0] disabled
[    0.512614] spi-nor spi0.0: en25qh128 (16384 Kbytes)
[    0.517866] 10 fixed-partitions partitions found on MTD device spi0.0
[    0.524601] OF: Bad cell count for /ahb/spi@1f000000/flash@0/partitions
[    0.531487] OF: Bad cell count for /ahb/spi@1f000000/flash@0/partitions
[    0.538574] Creating 10 MTD partitions on "spi0.0":
[    0.543660] 0x000000000000-0x000000040000 : "factory-boot"
[    0.566364] 0x000000040000-0x000000080000 : "u-boot"
[    0.572654] 0x000000080000-0x000000090000 : "partition-table"
[    0.581164] 0x000000090000-0x0000000a0000 : "info"
[    0.587149] 0x0000000a0000-0x0000000b0000 : "art"
[    0.594696] 0x0000000b0000-0x0000000c0000 : "extra-para"
[    0.601218] 0x0000000c0000-0x000000f00000 : "firmware"
[    0.609141] 0x000000f00000-0x000000f30000 : "config"
[    0.615453] 0x000000f30000-0x000000fb0000 : "mutil-log"
[    0.623420] 0x000000fb0000-0x000000ff0000 : "oops"
[    1.384388] switch0: Atheros AR8337 rev. 2 switch registered on mdio.0
[    2.035041] ag71xx 19000000.eth: connected to PHY at mdio.0:00 [uid=004dd036, driver=Atheros AR8216/AR8236/AR8316]
[    2.046352] eth0: Atheros AG71xx at 0xb9000000, irq 4, mode: sgmii
[    2.053175] i2c_dev: i2c /dev entries driver
[    2.059739] NET: Registered PF_INET6 protocol family
[    2.073785] Segment Routing with IPv6
[    2.077649] In-situ OAM (IOAM) with IPv6
[    2.081874] NET: Registered PF_PACKET protocol family
[    2.087207] bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this.
[    2.100929] 8021q: 802.1Q VLAN Support v1.8
[    2.106499] PCI host bridge to bus 0000:00
[    2.110797] pci_bus 0000:00: root bus resource [mem 0x12000000-0x13ffffff]
[    2.117902] pci_bus 0000:00: root bus resource [io  0x0000]
[    2.123670] pci_bus 0000:00: No busn resource found for root bus, will use [bus 00-ff]
[    2.131908] pci 0000:00:00.0: [168c:0040] type 00 class 0x028000
[    2.138149] pci 0000:00:00.0: reg 0x10: [mem 0x00000000-0x001fffff 64bit]
[    2.145302] pci 0000:00:00.0: PME# supported from D0 D3hot D3cold
[    2.151645] pci 0000:00:00.0: 2.000 Gb/s available PCIe bandwidth, limited by 2.5 GT/s PCIe x1 link at 0000:00:00.0 (capable of 4.000 Gb/s with 5.0 GT/s PCIe x1 link)
[    2.168002] pci_bus 0000:00: busn_res: [bus 00-ff] end is updated to 00
[    2.174909] pci 0000:00:00.0: BAR 0: assigned [mem 0x12000000-0x121fffff 64bit]
[    2.256642] Freeing unused kernel image (initmem) memory: 13040K
[    2.262894] This architecture does not have kernel memory protection.
[    2.269553] Run /init as init process
[    2.743098] init: Console is alive
[    2.747108] init: - watchdog -
[    2.772293] kmodloader: loading kernel modules from /etc/modules-boot.d/*
[    2.785453] kmodloader: done loading kernel modules from /etc/modules-boot.d/*
[    2.804357] init: - preinit -
[    3.133059] random: jshn: uninitialized urandom read (4 bytes read)
[    3.279797] random: jshn: uninitialized urandom read (4 bytes read)
[    3.369325] random: jshn: uninitialized urandom read (4 bytes read)
[    4.343582] random: procd: uninitialized urandom read (4 bytes read)
[    4.359093] eth0: link up (1000Mbps/Full duplex)
[    4.370033] IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready
[    4.382982] IPv6: ADDRCONF(NETDEV_CHANGE): eth0.1: link becomes ready
Press the [f] key and hit [enter] to enter failsafe mode
Press the [1], [2], [3] or [4] key and hit [enter] to select the debug level
[    5.380953] Atheros AR8216/AR8236/AR8316 mdio.0:00: Port 5 is up
[    6.546087] eth0: link down
[    6.567971] procd: - early -
[    6.571915] procd: - watchdog -
[    7.197414] procd: - watchdog -
[    7.201068] procd: - ubus -
[    7.212586] random: ubusd: uninitialized urandom read (4 bytes read)
[    7.254967] random: ubusd: uninitialized urandom read (4 bytes read)
[    7.262089] random: ubusd: uninitialized urandom read (4 bytes read)
[    7.272272] procd: - init -
Please press Enter to activate this console.
[    7.966990] kmodloader: loading kernel modules from /etc/modules.d/*
[    8.419142] Loading modules backported from Linux version v6.1.24-0-g0102425ac76b
[    8.426935] Backport generated by backports.git v5.15.92-1-44-gd6ea70fafd36
[    8.680008] PPP generic driver version 2.4.2
[    8.701583] NET: Registered PF_PPPOX protocol family
[    8.802566] ieee80211 phy0: Atheros AR9561 Rev:0 mem=0xb8100000, irq=2
[    8.860959] kmodloader: done loading kernel modules from /etc/modules.d/*
[    9.765372] urngd: v1.0.2 started.
[   10.206396] random: jshn: uninitialized urandom read (4 bytes read)
[   10.661564] random: jshn: uninitialized urandom read (4 bytes read)
[   10.918606] random: jshn: uninitialized urandom read (4 bytes read)
[   11.460931] random: crng init done
[   11.464464] random: 30 urandom warning(s) missed due to ratelimiting
[   59.385477] eth0: link up (1000Mbps/Full duplex)
[   59.390288] IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready
[   59.413559] br-lan: port 1(eth0.1) entered blocking state
[   59.419164] br-lan: port 1(eth0.1) entered disabled state
[   59.425076] device eth0.1 entered promiscuous mode
[   59.430040] device eth0 entered promiscuous mode
[   59.457493] br-lan: port 1(eth0.1) entered blocking state
[   59.463138] br-lan: port 1(eth0.1) entered forwarding state
[   60.420868] IPv6: ADDRCONF(NETDEV_CHANGE): br-lan: link becomes ready



BusyBox v1.36.1 (2023-08-18 21:45:16 UTC) built-in shell (ash)

  _______                     ________        __
 |       |.-----.-----.-----.|  |  |  |.----.|  |_
 |   -   ||  _  |  -__|     ||  |  |  ||   _||   _|
 |_______||   __|_____|__|__||________||__|  |____|
          |__| W I R E L E S S   F R E E D O M
 -----------------------------------------------------
 OpenWrt SNAPSHOT, r23769-324673914d
 -----------------------------------------------------
=== WARNING! =====================================
There is no root password defined on this device!
Use the "passwd" command to set up a new password
in order to prevent unauthorized SSH logins.
--------------------------------------------------
root@OpenWrt:/#


####transferred openwrt-23.05.0-rc2-ath79-generic-tplink_eap245-v3-squashfs-sysupgrade.bin with scp


root@OpenWrt:/# ls tmp
TZ
board.json
dhcp.leases
dnsmasq.d
etc
hosts
lib
lock
log
openwrt-23.05.0-rc2-ath79-generic-tplink_eap245-v3-squashfs-sysupgrade.bin
resolv.conf
resolv.conf.d
run
shm
state
sysinfo
tmp
root@OpenWrt:/# cd tmp
root@OpenWrt:/tmp# sysupgrade openwrt-23.05.0-rc2-ath79-generic-tplink_eap245-v3
-squashfs-sysupgrade.bin 
Cannot save config while running from ramdisk.
Fri Aug 18 21:49:53 UTC 2023 upgrade: Commencing upgrade. Closing all shell sessions.
Watchdog handover: fd=3
- watchdog -
Watchdog did not previously reset the system
Fri Aug 18 21:49:54 UTC 2023 upgrade: Sending TERM to remaining processes ...
Fri Aug 18 21:49:58 UTC 2023 upgrade: Sending KILL to remaining processes ...
[  296.048374] stage2 (2100): drop_caches: 3
Fri Aug 18 21:50:04 UTC 2023 upgrade: Switching to ramdisk...
Fri Aug 18 21:50:07 UTC 2023 upgrade: Performing system upgrade...
[  298.528021] do_stage2 (2100): drop_caches: 3
Unlocking firmware ...

Writing from <stdin> to firmware ...     
Appending jffs2 data from /tmp/sysupgrade.tgz to firmware..
.File /tmp/sysupgrade.tgz does not exist
    
Fri Aug 18 21:50:39 UTC 2023 upgrade: Upgrade completed
Fri Aug 18 21:50:40 UTC 2023 upgrade: Rebooting system...
umount: can't unmount /dev: Resource busy
umount: can't unmount /tmp: Resource [  331.654604] reboot: Restarting system


U-Boot 1.1.4--LSDK-10.2-00082-4 (Mar 19 2018 - 14:55:50)

board956x - Dragonfly 1.0DRAM:  
sri
ath_ddr_initial_config(287): (ddr2 init)
ath_ddr_initial_config: DDR_EMR2_ADDRESS=0x180000bc, EMR2 value=0x80
ath_sys_frequency: ref_clk 25000000
ath_sys_frequency: cpu 775 ddr 650 ahb 258
Tap values = (0x10, 0x10, 0x10, 0x10)
128 MB
Top of RAM usable for U-Boot at: 88000000
Reserving 454k for U-Boot at: 87f8c000
Reserving 192k for malloc() at: 87f5c000
Reserving 44 Bytes for Board Info at: 87f5bfd4
Reserving 36 Bytes for Global Data at: 87f5bfb0
Reserving 128k for boot params() at: 87f3bfb0
Stack Pointer at: 87f3bf98
Now running in RAM - U-Boot at: 87f8c000
Flash Manuf Id 0x1c, DeviceId0 0x70, DeviceId1 0x18
flash size 16MB, sector count = 256
Flash: 16 MB
*** Warning - bad CRC, using default environment

In:    serial
Out:   serial
Err:   serial
Setting 0x181162c0 to 0x40802100
Hit Ctrl+B to stop autoboot:  0 
[NM_Error](nm_api_checkInteger) 00373: factory boot check integer flag is not 1.

Net:   ath_gmac_enet_initialize...
No valid address in Flash. Using fixed address
ath_gmac_enet_initialize: reset mask:c02200 
athr_mgmt_init ::done
Dragonfly  ----> S17 PHY *
athrs17_reg_init: complete
SGMII in forced mode
athr_gmac_sgmii_setup SGMII done
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
eth0 up
eth0
Trying eth0
eth0 link down
FAIL
Trying eth0
dup 1 speed 1000
HTTP server is starting at IP: 192.168.1.1
HTTP server is ready!

I tried force installing openwrt-23.05.0-rc2-ath79-generic-tplink_eap245-v3-squashfs-factory image as well, but ended here again.

Had the same end result with the force install attempt with TPLink official image - EAP245v3_5.1.0_[20230104-rel79433]_up_signed

Finally got it back - working - with original TP-Link firmware.

Thanks to the post - Adding OpenWrt support for TP-Link EAP245 - #145 by svanheule

converted the tp_link firmware file to sysupgrade file.

Interrupted the boot process (while connected to serial port) by Ctrl-B

Uploaded the sys upgrade file using tftp to 0x81000000 and booted with 'bootelf 0x81000000'.

At times it worked while at times some errors cropped in.

Once booted into Tp-Link firmware, setup the password, and flashed the Tp-Link firmware -EAP245v3_5.1.0_[20230104-rel79433]_up_signed.bin.

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.