So I have this device I was trying to get the firmware off of (its an xfinity flex) and I was able to get UART messages off the board but not a shell, so I was trying to interupt the bootloader by shorting the nand device pins to ground but it was a BGA so I soldered a wire to ground and I just began to poke things and the CPU would always just restart and I would see the same messages on the UART over and over so I began just poking random stuff on the bottom of the board to try and interupt it and I either messed something up permanetly or fried something but its weird the device still works (sortof) I mean I see the "Welcome" screen on the TV and then it says "Connecting to Wifi" on the TV but when I try to use the remore nothing moves on the TV and the UART messages are permantly different now (see below)
before poking around I would see this message on UART
[A1][M1][A][M][B1][B]
PSCI: Init...
[P1]
PSCI: v0.2
AVS: park check
***[ Technicolor Stage1 v3.45.21.121 ]***
DevProfile: xi6brcm - 1.45.0.7 [UCX6020COM]
SignCert: [CMS CVC Xi6 Stage2 (updatable) 01, r3] BL=3.45 OTP=16
Loader: S2X1-3.45.21.134
>>> Stage1 exit <<<
____________________________
***[ Technicolor Stage2 v3.45.21.134 ]***
DevProfile: xi6brcm - 1.45.0.7 [UCX6020COM]
CmsTrack: RW VFY #1
CmsSign: PROD NR=4 BL=3.45 CC=0 MC=0x0001000E SOCID=0x0000010D0397DCD9
SOC-ID: 0x0000000000000000 [JL]
Device ID: MBSN="000000000000000" CSN="000000000000" TCOM="0000000"
HardwareID: HWID=0x00000000 PT=0x0000 PV=0x0000 PR=0x0000 OUI=0x000000
BankerBlok: FACT#613: xi6brcm - 1.45.0.7
SignCert: [CMS CVC Xi6 Artwork 01] BL=3.45 OTP=16
Banker Table: (#613) BootOrder: MAIN PDRI BDRI
Bank State Full Version Message
------- ------------ ---- ------------- ------------------------------
BDRI-0: Confirmed 30% 203.45.1.62 dpstore: TX061AEI_BDRI_203.45.1.62.bin
PDRI-0: Confirmed 30% 213.45.1.68 xi6tool: TX061AEI_PDRI_213.45.1.68- signed.bin [2021-06-23 07:24:08]
MAIN-0: TrialBoot#7 25% 1.0.0.1 xi6tool: TX061AEI_4.10p8s4_PROD_sey-signed.bin [2021-08-26 04:34:16]
MAIN-1: Confirmed#10 24% 1.0.0.1 xi6tool: download.bin [2021-08-26 04:29:32]
SaErr=1046
SaErr=1046
Banker: Boot MAIN-0 LaunchKit
SignCert: [CMS CVC Xi6 PCI 01, r3] BL=3.45 TRK=4 SVN=0 OTP=16
SignCert: [CMS CVC Xi6 PCI 01, r3] BL=3.45 TRK=4 SVN=0 OTP=16
SignCert: [CMS CVC Xi6 PCI 01, r3] BL=3.45 TRK=4 SVN=0 OTP=16
Loader: KRNL-1.0.0.1
>>> Stage2 exit <<<
but now I see this permenatly
[A1][M1][A][M][B1][B]
PSCI: Init...
[P1]
PSCI: v0.2
AVS: park check
***[ Technicolor Stage1 v3.45.21.137 ]***
DevProfile: xi6brcm - 1.45.0.7 [UCX6020COM]
SignCert: [CMS CVC Xi6 Stage2 (updatable) 01, r3] BL=3.45 OTP=16
Loader: S2X1-3.45.21.137
>>> Stage1 exit <<<
____________________________
***[ Technicolor Stage2 v3.45.21.137 ]***
DevProfile: xi6brcm - 1.45.0.7 [UCX6020COM]
CmsTrack: RW VFY #1
CmsSign: PROD NR=4 BL=3.45 CC=0 MC=0x0001000E SOCID=0x0000010D03497998
SOC-ID: 0x0000010D03497998 [JL]
Device ID: MBSN="192876610001841" CSN="TM01131U4865" TCOM="3783814"
HardwareID: HWID=0x00000DAD PT=0x003D PV=0x0001 PR=0x000B OUI=0x28BE9B
BankerBlok: FACT#74: xi6brcm - 1.45.0.7
SignCert: [CMS CVC Xi6 Artwork 01] BL=3.45 OTP=16
Banker Table: (#74) BootOrder: MAIN PDRI BDRI
Bank State Full Version Message
------- ------------ ---- ------------- ------------------------------
BDRI-0: Confirmed 30% 203.45.1.62 dpstore: TX061AEI_BDRI_203.45.1.62.bin
PDRI-0: TrialBoot#8 30% 213.45.1.68 xi6tool: TX061AEI_PDRI_213.45.1.68-sign ed.bin [2023-02-02 06:08:00]
MAIN-0: FailUnstable xi6tool: TX061AEI_5.10p7s1_PROD_sey-sig ned.bin [2023-02-02 06:01:15]
MAIN-1: FailUnstable xi6tool: TX061AEI_5.10p7s1_PROD_sey-sig ned.bin [2023-02-02 06:01:15]
SaErr=1046
SaErr=1046
Banker: Boot MAIN-0 SaErr=4667
Banker: Boot MAIN-1 SaErr=4667
Banker: Boot PDRI-0 LaunchKit
SignCert: [CMS CVC Xi6 PDRI 01, r2] BL=3.45 TRK=3 SVN=0 OTP=16
SignCert: [CMS CVC Xi6 PDRI 01, r2] BL=3.45 TRK=3 SVN=0 OTP=16
SignCert: [CMS CVC Xi6 PDRI 01, r2] BL=3.45 TRK=3 SVN=0 OTP=16
Loader: KRNL-213.45.1.68
>>> Stage2 exit <<<
____________________________
[ 0.000000] Booting Linux on physical CPU 0x0
[ 0.000000] Linux version 4.1.20-1.12 (build#runner-2772cd7b-project-4032-con current-0) (gcc version 4.8.5 (Broadcom stbgcc-4.8-1.6) ) #4 SMP Mon May 3 18:47 :22 UTC 2021
[ 0.000000] CPU: ARMv7 Processor [420f1000] revision 0 (ARMv7), cr=30c5383d
[ 0.000000] CPU: PIPT / VIPT nonaliasing data cache, VIPT aliasing instructio n cache
[ 0.000000] Machine model: xi6brcm
[ 0.000000] moving dtb from 0x0000000014600000 to 0x00000000009bef58
[ 0.000000] bmem: Reserved 1692 MiB at 0x0000000010000000
[ 0.000000] cma: Reserved 16 MiB at 0x000000000ec00000
[ 0.000000] Forcing write-allocate cache policy for SMP
[ 0.000000] Memory policy: Data cache writealloc
[ 0.000000] psci: probing for conduit method from DT.
[ 0.000000] psci: PSCIv0.2 detected in firmware.
[ 0.000000] psci: Using standard PSCI v0.2 function IDs
[ 0.000000] PERCPU: Embedded 12 pages/cpu #cfd92000 s17024 r8192 d23936 u4915 2
[ 0.000000] Built 1 zonelists in Zone order, mobility grouping on. Total pag es: 515584
[ 0.000000] Kernel command line: root=/dev/ram0 ramdisk_size=37380096
[ 0.000000] PID hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.000000] Dentry cache hash table entries: 32768 (order: 5, 131072 bytes)
[ 0.000000] Inode-cache hash table entries: 16384 (order: 4, 65536 bytes)
[ 0.000000] Memory: 183632K/2064384K available (6859K kernel code, 303K rwdat a, 2188K rodata, 340K init, 243K bss, 1864368K reserved, 16384K cma-reserved, 11 88K highmem)
[ 0.000000] Virtual kernel memory layout:
[ 0.000000] vector : 0xffff0000 - 0xffff1000 ( 4 kB)
[ 0.000000] fixmap : 0xffc00000 - 0xfff00000 (3072 kB)
[ 0.000000] vmalloc : 0xd0800000 - 0xff000000 ( 744 MB)
[ 0.000000] lowmem : 0xc0000000 - 0xd0000000 ( 256 MB)
[ 0.000000] pkmap : 0xbfe00000 - 0xc0000000 ( 2 MB)
[ 0.000000] modules : 0xbf000000 - 0xbfe00000 ( 14 MB)
[ 0.000000] .text : 0xc0008000 - 0xc08de408 (9050 kB)
[ 0.000000] .init : 0xc08df000 - 0xc0934000 ( 340 kB)
[ 0.000000] .data : 0xc0934000 - 0xc097fec0 ( 304 kB)
[ 0.000000] .bss : 0xc0982000 - 0xc09bef58 ( 244 kB)
[ 0.000000] Hierarchical RCU implementation.
[ 0.000000] Additional per-CPU info printed with stalls.
[ 0.000000] NR_IRQS:16 nr_irqs:16 16
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0802000, parent irq: 91)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0808000, parent irq: 63)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd080aa00, parent irq: 64)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd080c640, parent irq: 93)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd080e200, parent irq: 57)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0810600, parent irq: 97)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0812c00, parent irq: 98)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0814640, parent irq: 95)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0816c40, parent irq: 96)
[ 0.000000] irq_brcmstb_l2: registered L2 intc (mem: 0xd0818000, parent irq: 100)
[ 0.000000] Architected cp15 timer(s) running at 27.00MHz (phys).
[ 0.000000] clocksource arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x63a1e71a3, max_idle_ns: 440795203123 ns
[ 0.000003] sched_clock: 56 bits at 27MHz, resolution 37ns, wraps every 43980 46511093ns
[ 0.000009] Switching to timer-based delay loop, resolution 37ns
[ 0.000376] Console: colour dummy device 80x30
[ 0.000394] Calibrating delay loop (skipped), value calculated using timer fr equency.. 54.00 BogoMIPS (lpj=27000)
[ 0.000401] pid_max: default: 32768 minimum: 301
[ 0.000487] Mount-cache hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.000491] Mountpoint-cache hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.000838] CPU: Testing write buffer coherency: ok
[ 0.001037] CPU0: thread -1, cpu 0, socket 0, mpidr 80000000
[ 0.001070] Setting up static identity map for 0x8480 - 0x84d8
[ 0.002971] MCP: Enabling write pairing
[ 0.004430] CPU1: thread -1, cpu 1, socket 0, mpidr 80000001
[ 0.005731] CPU2: thread -1, cpu 2, socket 0, mpidr 80000002
[ 0.007024] CPU3: thread -1, cpu 3, socket 0, mpidr 80000003
[ 0.007048] Brought up 4 CPUs
[ 0.007057] SMP: Total of 4 processors activated (216.00 BogoMIPS).
[ 0.007061] CPU: All CPU(s) started in HYP mode.
[ 0.007064] CPU: Virtualization extensions available.
[ 0.007362] devtmpfs: initialized
[ 0.015046] VFP support v0.3: implementor 42 architecture 3 part 10 variant 0 rev 0
[ 0.015198] clocksource jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max _idle_ns: 1911260446275000 ns
[ 0.016165] NET: Registered protocol family 16
[ 0.016662] DMA: preallocated 256 KiB pool for atomic coherent allocations
[ 0.022204] cpuidle: using governor ladder
[ 0.028218] cpuidle: using governor menu
[ 0.033277] hw-breakpoint: found 5 (+1 reserved) breakpoint and 4 watchpoint registers.
[ 0.033282] hw-breakpoint: maximum watchpoint size is 8 bytes.
[ 0.033534] Broadcom Brahma-B15 readahead cache at: 0xd08ca078
[ 0.044039] brcmstb-gpio f040a500.gpio: Registered 4 banks (GPIO(s): 0-127)
[ 0.044190] brcmstb-gpio f0419c80.gpio: Registered 2 banks (GPIO(s): 128-191)
[ 0.245926] SCSI subsystem initialized
[ 0.246132] usbcore: registered new interface driver usbfs
[ 0.246164] usbcore: registered new interface driver hub
[ 0.246189] usbcore: registered new device driver usb
[ 0.246256] Linux video capture interface: v2.00
[ 0.246280] pps_core: LinuxPPS API ver. 1 registered
[ 0.246284] pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giome tti <giometti#linux.it>
[ 0.246298] PTP clock support registered
[ 0.246558] Advanced Linux Sound Architecture Driver Initialized.
[ 0.246927] Switched to clocksource arch_sys_counter
[ 0.251000] thermal thermal_zone0: failed to read out thermal zone (-22)
[ 0.251086] NET: Registered protocol family 2
[ 0.251392] TCP established hash table entries: 2048 (order: 1, 8192 bytes)
[ 0.251408] TCP bind hash table entries: 2048 (order: 2, 16384 bytes)
[ 0.251429] TCP: Hash tables configured (established 2048 bind 2048)
[ 0.251457] UDP hash table entries: 256 (order: 1, 8192 bytes)
[ 0.251468] UDP-Lite hash table entries: 256 (order: 1, 8192 bytes)
[ 0.251558] NET: Registered protocol family 1
[ 0.251675] RPC: Registered named UNIX socket transport module.
[ 0.251679] RPC: Registered udp transport module.
[ 0.251681] RPC: Registered tcp transport module.
[ 0.251683] RPC: Registered tcp NFSv4.1 backchannel transport module.
[ 0.251776] Trying to unpack rootfs image as initramfs...
[ 0.251855] rootfs image is not initramfs (junk in compressed archive); looks like an initrd
[ 0.303229] Freeing initrd memory: 36504K (ca000000 - cc3a6000)
[ 0.303454] CPU PMU: Failed to parse /pmu/interrupt-affinity[0]
[ 0.303485] hw perfevents: enabled with armv7_cortex_a15_on_a53 PMU driver, 7 counters available
[ 0.304343] futex hash table entries: 1024 (order: 4, 65536 bytes)
[ 0.305094] squashfs: version 4.0 (2009/01/31) Phillip Lougher
[ 0.305217] NFS: Registering the id_resolver key type
[ 0.305235] Key type id_resolver registered
[ 0.305238] Key type id_legacy registered
[ 0.305247] nfs4filelayout_init: NFSv4 File Layout Driver Registering...
[ 0.305270] jffs2: version 2.2. (NAND) © 2001-2006 Red Hat, Inc.
[ 0.305328] fuse init (API version 7.23)
[ 0.305743] bounce: pool size: 64 pages
[ 0.305765] Block layer SCSI generic (bsg) driver version 0.4 loaded (major 2 51)
[ 0.305772] io scheduler noop registered
[ 0.305778] io scheduler deadline registered
[ 0.305786] io scheduler cfq registered (default)
[ 0.305983] brcm-gisb-arb f0400000.gisb-arb: registered mem: d0952000, irqs: 261, 262
[ 0.306491] brcmstb-sata-phy f0b10100.sata_phy: registered 1 port(s)
[ 0.307072] brcm-pci f0460000.pcie: fixing incorrect interrupt-map in DT node
[ 0.407363] brcm-pci f0460000.pcie: link down
[ 0.408669] brcmstb_memc f1102000.memc-ddr: registered
[ 0.408934] brcm-waketimer f041a080.waketimer: rtc core: registered brcmstb-w aketmr as rtc0
[ 0.408942] brcm-waketimer f041a080.waketimer: registered, with irq 264
[ 0.432439] Serial: 8250/16550 driver, 4 ports, IRQ sharing disabled
[ 0.433284] bcm7271-uart f040c000.serial: BAUD MUX clock found
[ 0.433557] console [ttyS0] disabled
[ 0.433581] f040c000.serial: ttyS0 at MMIO 0xf040c000 (irq = 102, base_baud = 5062500) is a 16550A
[ 1.205766] console [ttyS0] enabled
[ 1.209412] bcm7271-uart f040d000.serial: BAUD MUX clock found
[ 1.215484] f040d000.serial: ttyS1 at MMIO 0xf040d000 (irq = 103, base_baud = 5062500) is a 16550A
[ 1.224585] bcm7271-uart f040e000.serial: BAUD MUX clock found
[ 1.230570] f040e000.serial: ttyS2 at MMIO 0xf040e000 (irq = 104, base_baud = 5062500) is a 16550A
[ 1.240195] [drm] Initialized drm 1.1.0 20060810
[ 1.248544] brd: module loaded
[ 1.253931] loop: module loaded
[ 1.257717] brcm-ahci f0b12000.sata: controller can do ALPM, turning on CAP_A LPM
[ 1.265129] brcm-ahci f0b12000.sata: masking port_map 0x1 -> 0x1
[ 1.271162] brcm-ahci f0b12000.sata: SSS flag set, parallel bus scan disabled
[ 1.288943] brcm-ahci f0b12000.sata: AHCI 0001.0300 32 slots 1 ports 6 Gbps 0 x1 impl platform mode
[ 1.297918] brcm-ahci f0b12000.sata: flags: 64bit ncq sntf stag pm clo pmp sl um part
[ 1.306317] scsi host0: brcm-ahci
[ 1.309767] ata1: SATA max UDMA/133 mmio [mem 0xf0b12000-0xf0b1299b] port 0x1 00 irq 89
[ 1.317700] brcm-ahci f0b12000.sata: Broadcom AHCI SATA3 registered
[ 1.324934] libphy: Fixed MDIO Bus: probed
[ 1.329450] bcmgenet f0480000.ethernet: GENET 5.0 EPHY: 0x0000
[ 1.347928] libphy: bcmgenet MII bus: probed
[ 1.372070] Broadcom BCM7268 f0480000.etherne:01: failed to request GPHY cloc k
[ 1.379897] e1000e: Intel(R) PRO/1000 Network Driver - 2.3.2-k
[ 1.385740] e1000e: Copyright(c) 1999 - 2014 Intel Corporation.
[ 1.391707] pegasus: v0.9.3 (2013/04/25), Pegasus/Pegasus II USB Ethernet dri ver
[ 1.399152] usbcore: registered new interface driver pegasus
[ 1.404850] usbcore: registered new interface driver asix
[ 1.410284] usbcore: registered new interface driver ax88179_178a
[ 1.416412] usbcore: registered new interface driver cdc_ether
[ 1.422295] usbcore: registered new interface driver cdc_ncm
[ 1.422941] ata1: SATA link down (SStatus 0 SControl 300)
[ 1.433479] xhci-brcm: xHCI BRCM driver
[ 1.454359] xhci-brcm f0b01000.xhci_v2: xHCI Host Controller
[ 1.460104] xhci-brcm f0b01000.xhci_v2: new USB bus registered, assigned bus number 1
[ 1.468116] xhci-brcm f0b01000.xhci_v2: hcc params 0x0250f17d hci version 0x1 00 quirks 0x00010090
[ 1.477014] xhci-brcm f0b01000.xhci_v2: irq 124, io mem 0xf0b01000
[ 1.483530] hub 1-0:1.0: USB hub found
[ 1.487302] hub 1-0:1.0: config failed, hub doesn't have any ports! (err -19)
[ 1.494553] xhci-brcm f0b01000.xhci_v2: xHCI Host Controller
[ 1.500293] xhci-brcm f0b01000.xhci_v2: new USB bus registered, assigned bus number 2
[ 1.508165] usb usb2: We don't know the algorithms for LPM for this host, dis abling LPM.
[ 1.516541] hub 2-0:1.0: USB hub found
[ 1.520314] hub 2-0:1.0: 2 ports detected
[ 1.524612] ehci-brcm: EHCI BRCM driver
[ 1.528519] ehci-brcm f0b00300.ehci_v2: EHCI Host Controller
[ 1.534262] ehci-brcm f0b00300.ehci_v2: new USB bus registered, assigned bus number 3
[ 1.552180] ehci-brcm f0b00300.ehci_v2: irq 122, io mem 0xf0b00300
[ 1.563935] ehci-brcm f0b00300.ehci_v2: USB 2.0 started, EHCI 1.00
[ 1.570419] hub 3-0:1.0: USB hub found
[ 1.574190] hub 3-0:1.0: 1 port detected
[ 1.578300] ehci-brcm f0b00500.ehci_v2: EHCI Host Controller
[ 1.584044] ehci-brcm f0b00500.ehci_v2: new USB bus registered, assigned bus number 4
[ 1.601949] ehci-brcm f0b00500.ehci_v2: irq 126, io mem 0xf0b00500
[ 1.613935] ehci-brcm f0b00500.ehci_v2: USB 2.0 started, EHCI 1.00
[ 1.620427] hub 4-0:1.0: USB hub found
[ 1.624248] hub 4-0:1.0: 1 port detected
[ 1.628398] ohci-brcm: OHCI BRCM driver
[ 1.632297] ohci-brcm f0b00400.ohci_v2: BRCM OHCI controller
[ 1.638040] ohci-brcm f0b00400.ohci_v2: new USB bus registered, assigned bus number 5
[ 1.645919] ohci-brcm f0b00400.ohci_v2: irq 123, io mem 0xf0b00400
[ 1.707276] hub 5-0:1.0: USB hub found
[ 1.711048] hub 5-0:1.0: 1 port detected
[ 1.715132] ohci-brcm f0b00600.ohci_v2: BRCM OHCI controller
[ 1.720874] ohci-brcm f0b00600.ohci_v2: new USB bus registered, assigned bus number 6
[ 1.729169] ohci-brcm f0b00600.ohci_v2: irq 127, io mem 0xf0b00600
[ 1.790209] hub 6-0:1.0: USB hub found
[ 1.793979] hub 6-0:1.0: 1 port detected
[ 1.798112] ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver
[ 1.804658] ehci-pci: EHCI PCI platform driver
[ 1.809149] ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver
[ 1.815350] ohci-pci: OHCI PCI platform driver
[ 1.819938] usbcore: registered new interface driver usb-storage
[ 1.826290] mousedev: PS/2 mouse device common for all mice
[ 1.832070] i2c /dev entries driver
[ 1.835682] gspca_main: v2.14.0 registered
[ 1.840015] brcmstb_thermal f04d1500.thermal: registered AVS TMON of-sensor d river
[ 1.950867] brcmstb-avs-cpufreq f04c4000.avs-cpu-data-mem: registered
[ 1.957528] sdhci: Secure Digital Host Controller Interface driver
[ 1.963720] sdhci: Copyright(c) Pierre Ossman
[ 1.968089] sdhci-pltfm: SDHCI platform and OF driver helper
[ 1.974931] sdhci-brcmstb f0200200.sdhci: No vmmc regulator found
[ 1.981036] sdhci-brcmstb f0200200.sdhci: No vqmmc regulator found
[ 2.016936] mmc0: SDHCI controller on f0200200.sdhci [f0200200.sdhci] using A DMA
[ 2.024460] Hello world, from the lp5560 driver
[ 2.029274] usbcore: registered new interface driver usbhid
[ 2.034857] usbhid: USB HID core driver
[ 2.038996] Netfilter messages via NETLINK v0.30.
[ 2.043731] nf_conntrack version 0.5.0 (3695 buckets, 14780 max)
[ 2.050005] ip_tables: (C) 2000-2006 Netfilter Core Team
[ 2.056263] NET: Registered protocol family 10
[ 2.061057] ip6_tables: (C) 2000-2006 Netfilter Core Team
[ 2.066526] sit: IPv6 over IPv4 tunneling driver
[ 2.071458] NET: Registered protocol family 17
[ 2.075933] bridge: automatic filtering via arp/ip/ip6tables has been depreca ted. Update your scripts to load br_netfilter if you need this.
[ 2.088719] Key type dns_resolver registered
[ 2.093055] Registering SWP/SWPB emulation handler
[ 2.099428] brcm-waketimer f041a080.waketimer: setting system clock to 1970-0 1-01 00:00:17 UTC (17)
[ 2.110469] vreg-wlan_reg_on-pwr: disabling
[ 2.111517] mmc0: MAN_BKOPS_EN bit is not set
[ 2.119085] ALSA device list:
[ 2.122060] No soundcards found.
[ 2.125813] RAMDISK: squashfs filesystem found at block 0
[ 2.126146] mmc0: new high speed MMC card at address 0001
[ 2.126323] mmcblk0: mmc0:0001 DG4016 5.98 GiB
[ 2.126365] mmcblk0boot0: mmc0:0001 DG4016 partition 1 4.00 MiB
[ 2.126405] mmcblk0boot1: mmc0:0001 DG4016 partition 2 4.00 MiB
[ 2.126442] mmcblk0gp0: mmc0:0001 DG4016 partition 4 1.00 GiB
[ 2.126482] mmcblk0gp1: mmc0:0001 DG4016 partition 5 40.0 MiB
[ 2.126519] mmcblk0rpmb: mmc0:0001 DG4016 partition 3 4.00 MiB
[ 2.133198] mmcblk0: p1 p2 p3 p4
[ 2.135257] mmcblk0gp1: p1
[ 2.176487] RAMDISK: Loading 36502KiB [1 disk] into ram disk... done.
[ 2.797138] VFS: Mounted root (squashfs filesystem) readonly on device 1:0.
[ 2.804308] devtmpfs: mounted
[ 2.807430] Freeing unused kernel memory: 340K (c08df000 - c0934000)
starting pid 1281, tty '': '/etc/init.d/rcS'
Mounting virtual filesystems
Configuring eth0 interface
[ 2.944934] f0480000.etherne:01: Broadcom BCM7268 PHY revision: 0x01
[ 2.952105] bcmgenet f0480000.ethernet: configuring instance for internal PHY
[ 2.959307] IPv6: ADDRCONF(NETDEV_UP): eth0: link is not ready
Configuring lo interface
Configuring sit0 interface
Starting network services
********************************************************************************
* |||||| Cisco Common Disaster Recovery Agent (Common DRA) |||||| *
*** *** *
* * *
********************************************************************************
Script: /etc/init.d/S26DRA-platform-init
[ 4.956000] bcmgenet f0480000.ethernet eth0: Link is Down
Done
HW ID: 0013173
Checking, mounting /mnt/crit_nvs
/dev/mmcblk0gp1p1: recovering journal
/dev/mmcblk0gp1p1: clean, 560/10000 files, 10848/39936 blocks
[ 6.128152] EXT4-fs (mmcblk0gp1p1): mounted filesystem with ordered data mode . Opts: (null)
WARNING: Partition version from unit is newer than script (3 > 1)
No partition changes will be made
Checking, mounting /opt
/dev/mmcblk0p2: recovering journal
/dev/mmcblk0p2: clean, 1137/17928 files, 42892/71680 blocks
[ 6.310967] EXT4-fs (mmcblk0p2): mounted filesystem with ordered data mode. O pts: (null)
/usr/bin/tch_nvram.sh: Success
rm: can't remove '/tmp/draDisplayMsgQueue': No such file or directory
Missing /tmp/draDisplayMsgQueue, Creating...
Unknown HZ value! (94) Assume 100.
1373 ? S 0:00 grep /usr/bin/cisco/dra_display.bin
killall: /usr/bin/cisco/dra_display.bin: no process killed
Starting /usr/bin/cisco/dra_display.bin ...
Couldn't fit the whole UART log on here due to char limit...
[ 0.363026] SELinux: Loaded file_contexts
[ 0.364133] [libfs_mgr]Invalid f2fs superblock on '/dev/block/bootdevice/by-name/userdata'
[ 0.364605] recovery: [libfs_mgr]Failed to mount /data: File exists
[ 0.364611] recovery: [libfs_mgr]Failed to mount for path [/data]
[ 0.455114] stage is []
[ 0.455128] reason is [enablefilecrypto_failed]
[ 0.455130] SELinux: Loaded file_contexts
[ 0.455131] I:[libfs_mgr]dt_fstab: Skip disabled entry for partition vendor
[ 0.466396] emulated failed to mount /dev/block/bootdevice/by-name/userdata on /mnt/staging/emulated: Invalid argumentI:VolumeManager initialized
[ 0.467628] installing_text: en (1052 x 48 # 712)
[ 0.476511] W:recvmsg failed (No buffer space available)
[ 0.477404] Command: "/system/bin/recovery" "--prompt_and_wipe_data" "--reason=enablefilecrypto_failed"
Suggestions to fix this issue
I am trying to copy a file from AOSP vendor/*/hardware/interfaces/gnss/file.txt to /data/vendor/gnss/file.txt using PRODUCT_COPY_FILES in Android.mk file.
At build there is no problem and even i can see in out folder the file is copied successfully at the destination folder.
But at boot time my system is going into recovery mode.
Here is the boot logs from serial port.
[ 18.057011] init (pid 1) is setting an IV_INO_LBLK_32 encryption policy.
This should only be used if there are certain hardware limitations.
[ 18.071009] fscrypt: AES-256-CTS-CBC using implementation "cts-cbc-aes-ce"
[ 18.121583] type=1400 audit(1716.495:868): avc: denied { read } for comm="ls" name="vendor" dev="dm-6"
ino=22 scontext=u:r:toolbox:s0 tcontext=u:object_r:vendor_data_file:s0 tclass=dir permissive=1
[ 18.140034] type=1400 audit(1716.495:869): avc: denied { open } for comm="ls" path="/data/vendor" dev="dm-6"
ino=22 scontext=u:r:toolbox:s0 tcontext=u:object_r:vendor_data_file:s0 tclass=dir permissive=1
[ 18.159105] type=1400 audit(1716.495:870): avc: denied { getattr } for comm="ls" path="/data/vendor/gnss" dev="dm-6"
ino=23 scontext=u:r:toolbox:s0 tcontext=u:object_r:hal_gnss_data_file:s0 tclass=dir permissive=1
[ 18.217990] binder: 561:561 ioctl 40046210 7fe9923eb4 returned -22
[ 18.223410] binder: release 460:460 transaction 133 out, still active
[ 18.227181] binder: 561:561 ioctl 40046210 7fe9923d74 returned -22
[ 18.233098] binder: undelivered TRANSACTION_COMPLETE
[ 18.246410] binder: release 457:457 transaction 133 in, still active
[ 18.253062] binder: send failed reply for transaction 133, target dead
[ 18.254199] ais_server (388) used greatest stack depth: 10656 bytes left
[ 18.257814] rmt_storage:ERR:main: Mmap Failed for rmts (-1)...pausing execution!
[ 18.366280] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 469 IFE2 close
[ 18.372738] CAM_INFO: CAM-ISP: ais_ife_csid_force_reset: 1088 Exit (0)
[ 18.379467] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 487 IFE2 shutdown complete
[ 18.387035] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 469 IFE1 close
[ 18.393477] CAM_INFO: CAM-ISP: ais_ife_csid_force_reset: 1088 Exit (0)
[ 18.400194] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 487 IFE1 shutdown complete
[ 18.407742] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 469 IFE0 close
[ 18.414249] CAM_INFO: CAM-ISP: ais_ife_csid_force_reset: 1088 Exit (0)
[ 18.420990] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 487 IFE0 shutdown complete
[ 18.428560] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 469 IFE0 close
[ 18.435024] CAM_ERR: CAM-ISP: ais_ife_subdev_close: 473 IFE device is already closed
[ 18.442977] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 469 IFE1 close
[ 18.449431] CAM_ERR: CAM-ISP: ais_ife_subdev_close: 473 IFE device is already closed
[ 18.457389] CAM_INFO: CAM-ISP: ais_ife_subdev_close: 469 IFE2 close
[ 18.463847] CAM_ERR: CAM-ISP: ais_ife_subdev_close: 473 IFE device is already closed
[ 21.273726] init: Waiting for 21 pids to be reaped took 3038ms with 1 of them still running
[ 21.282355] init: [service-misbehaving] : service 'ais_v4l2_proxy' is still running 3000ms after receiving SIGTERM
[ 21.293013] init: Stopping 242 services by sending SIGKILL
[ 21.298681] init: Sending signal 9 to service 'ais_v4l2_proxy' (pid 467) process group...
[ 21.312689] libprocessgroup: Successfully killed process cgroup uid 1000 pid 467 in 5ms
[ 21.322026] init: Service 'ais_v4l2_proxy' (pid 467) received signal 9
[ 21.331809] init: Calling /system/bin/vdc volume abort_fuse
[ 21.361675] binder: 564:564 ioctl 40046210 7feb9b29a4 returned -22
[ 21.372695] init: Calling /system/bin/vdc volume shutdown
[ 21.401521] binder: 565:565 ioctl 40046210 7fe283f284 returned -22
[ 21.412071] init: Sending signal 9 to service 'vold' (pid 463) process group...
[ 21.425189] libprocessgroup: Successfully killed process cgroup uid 0 pid 463 in 5ms
[ 21.657274] mmc0: error -22 during shutdown
[ 21.662032] msm-dwc3 a800000.hsusb: DWC3 exited from low power mode
[ 21.670224] Calling SCM to disable SPMI PMIC arbiter
[ 21.675438] Failed to halt_spmi_pmic_arbiter=0xfffffffb
[ 21.681356] reboot: Restarting system with command 'recovery'
[ 21.687346] Going down for restart now
#Excepting:
system should boot normally and stay idle. It should not reboot again into recovery mode.
I'm new to the forum and am currently working on virtualizing Android on a Raspi4.
The crux of the matter is that the Raspi has an ARM processor and therefore seems well suited for Android.
Now I have compiled Lineage according to the instructions for arm https://wiki.lineageos.org/emulator
I used a Linux computer with AMD for this.
I just want to start it directly with qemu in order to be able to control how many instances of it are running. With the emulator command I don't get any further either, since the 200GB of repo and all of the other data are not on the Raspi.
I've pulled the kernel 5.4 and the system.img over, which is in / home / android / lineage / out / target / product / generic_arm64 and am now trying to get it to work somehow. Unfortunately I get the message from qemu-system-aarch64 that the root file system cannot be mounted with the current command:
qemu-system-aarch64 -M virt,accel=kvm -cpu host -no-reboot -serial stdio -append "root=/dev/ panic=1 rootfstype=ext4 loglevel=8 rw" -drive "file=system.img,index=0,media=disk,format=raw" -kernel kernel-5.4
I tried many paths like root=/dev/sda0 sda1 vda...
[ 0.651008] Please append a correct "root=" boot option; here are the available partitions:
[ 0.651754] 0100 8192 ram0
[ 0.651755] (driver?)
[ 0.652319] 0101 8192 ram1
[ 0.652319] (driver?)
[ 0.652891] 0102 8192 ram2
[ 0.652891] (driver?)
[ 0.653511] platform regulatory.0: Direct firmware load for regulatory.db failed with error -2
[ 0.654294] platform regulatory.0: Falling back to sysfs fallback for: regulatory.db
[ 0.655023] 0103 8192 ram3
[ 0.655024] (driver?)
[ 0.655587] 0104 8192 ram4
[ 0.655587] (driver?)
[ 0.656154] 0105 8192 ram5
[ 0.656155] (driver?)
[ 0.656716] 0106 8192 ram6
[ 0.656717] (driver?)
[ 0.657310] 0107 8192 ram7
[ 0.657311] (driver?)
[ 0.657885] 0108 8192 ram8
[ 0.657885] (driver?)
[ 0.658446] 0109 8192 ram9
[ 0.658446] (driver?)
[ 0.659010] 010a 8192 ram10
[ 0.659010] (driver?)
[ 0.659578] 010b 8192 ram11
[ 0.659579] (driver?)
[ 0.660154] 010c 8192 ram12
[ 0.660154] (driver?)
[ 0.660732] 010d 8192 ram13
[ 0.660733] (driver?)
[ 0.661102] kworker/u2:0 (102): highest shadow stack usage: 144 bytes
[ 0.661917] cryptomgr_probe (104): highest shadow stack usage: 168 bytes
[ 0.662536] 010e 8192 ram14
[ 0.662536] (driver?)
[ 0.663116] 010f 8192 ram15
[ 0.663117] (driver?)
[ 0.663689] Kernel panic - not syncing: VFS: Unable to mount root fs on unknown-block(0,0)
Do any of you have an idea or approach how to get all of this working?
Thanks and regards,
Hal
I currently want to run my compiled android kernel with emulator but emulator doesn't work correctly and just show black page on phone screen.
I use these commands for downloading and compiling android kernel:
git clone https://android.googlesource.com/kernel/goldfish/ -b android goldfish-3.18
git clone https://android.googlesource.com/platform/prebuilts/gcc/linux-x86/x86/x86_64-linux-android-4.9
cd goldfish
export CROSS_COMPILE=x86_64-linux-android-
export ARCH=x86_64
export PATH=$PATH:/path/to/x86_64-linux-android-4.9/bin
make x86_64_ranchu_defconfig
make menuconfig # enable overlayfs and namespaces support here
make -j8
after that i use emulator of SDK to run my kernel with these command:
(I use Android 7.0 x86_64 google api level 24 for Nexus_5X_API_23)
./emulator -avd Nexus_5_API_24 -kernel ~/Desktop/goldfish/arch/x86/boot/bzImage -show-kernel
but after that these text is coming on terminal (come and again come) and screen of mobile is showing boot animation.
[ 270.896420] init: Service 'audioserver' is being killed...
[ 270.897184] init: Service 'cameraserver' is being killed...
[ 270.897986] init: Service 'media' is being killed...
[ 270.898725] init: Service 'netd' is being killed...
[ 270.899573] init: Service 'audioserver' (pid 6354) killed by signal 9
[ 270.900441] init: Service 'audioserver' (pid 6354) killing any children in process group
[ 270.901661] init: Service 'cameraserver' (pid 6355) killed by signal 9
[ 270.902456] init: Service 'cameraserver' (pid 6355) killing any children in process group
[ 270.903456] init: Service 'media' (pid 6356) killed by signal 9
[ 270.904071] init: Service 'media' (pid 6356) killing any children in process group
[ 270.904909] init: Service 'netd' (pid 6357) killed by signal 9
[ 270.905518] init: Service 'netd' (pid 6357) killing any children in process group
[ 270.915485] init: Service 'zygote_secondary' (pid 6587) killed by signal 11
[ 270.916367] init: Service 'zygote_secondary' (pid 6587) killing any children in process group
[ 271.918795] init: Starting service 'audioserver'...
[ 271.919822] init: Starting service 'cameraserver'...
[ 271.920826] type=1400 audit(1501255007.918:530): avc: denied { getattr } for pid=6598 comm="audioserver" path="/vendor" dev="rootfs" ino=6328 scontext=u:r:audioserver:s0 tcontext=u:object_r:rootfs:s0 tclass=lnk_file permissive=0
[ 271.920848] init: couldn't write 6599 to /dev/cpuset/camera-daemon/tasks: No such file or directory
[ 271.920871] init: Starting service 'media'...
[ 271.921227] init: Starting service 'netd'...
[ 271.927633] type=1400 audit(1501255007.918:531): avc: denied { getattr } for pid=6599 comm="cameraserver" path="/vendor" dev="rootfs" ino=6328 scontext=u:r:cameraserver:s0 tcontext=u:object_r:rootfs:s0 tclass=lnk_file permissive=0
[ 272.523185] type=1400 audit(1501255008.518:532): avc: denied { module_request } for pid=6601 comm="netd" kmod="netdev-dummy0" scontext=u:r:netd:s0 tcontext=u:r:kernel:s0 tclass=system permissive=0
[ 272.524725] type=1400 audit(1501255008.518:533): avc: denied { module_request } for pid=6601 comm="netd" kmod="net-pf-16-proto-5" scontext=u:r:netd:s0 tcontext=u:r:kernel:s0 tclass=system permissive=0
[ 275.926349] init: Starting service 'ipv6proxy'...
[ 275.927882] init: Starting service 'emu_hostapd'...
[ 275.929091] init: Starting service 'zygote'...
[ 275.930412] init: Starting service 'zygote_secondary'...
the logcat is here: link
can anybody help?