[GUIDA] Flash, Root e Modding Technicolor TG789vac v2 (VANT-6)

  • 4738 Risposte
  • 2533595 Visite

0 Utenti e 11 Visitatori stanno visualizzando questo topic.

Offline LuKePicci

  • Global Moderator
  • VIP
  • *****
  • 2789
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #570 il: 15 Maggio 2018, 18:50 »
@renpasa Intanto ho trovato qui nella repo le immagini del firmware che ho ora e dei successivi.
Delle chiavi per fastweb però nemmeno l'ombra. Si, come dici le chiavi per 1.0.4 ed 1.0.6 sono le stesse ma cosa c'entra? Nella guida vedo le chiavi TIM per la 1.0.2 e precedenti e per la 1.0.4 e successive, ma ovviamente non funzionano. Tu a cosa ti riferisci?

@larsen64it non ho capito che scopo avrebbe il flash di iiNet se prima di farlo devo comunque aver sbloccato quello fastweb per poterlo copiare sulla bank2

Offline larsen64it

  • VIP
  • *****
  • 2697
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #571 il: 15 Maggio 2018, 18:54 »
Il tuo intento non era vedere la configurazione di fastweb oppure mi sbaglio?
P.S. Nei repositoy di Ansuel c'è una cartella fw fastweb
 
« Ultima modifica: 15 Maggio 2018, 18:56 da larsen64it »

Offline LuKePicci

  • Global Moderator
  • VIP
  • *****
  • 2789
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #572 il: 15 Maggio 2018, 19:58 »
Ni, ho sia bisogno di vedere come è fatta una configurazione originale completa sul quel firmware e sia poter usare quel firmware e poi poterne rivedere le configurazioni create. Quindi in pratica mi basterebbe sbloccare quello. Quindi l'idea di flashare iiNet per poi usare quello per andare a guardare i files del fastweb è buona ma ho bisogno di un modo per flasharlo sulla bank2 (supponendo che la attiva di default sia la 1) senza sovrascrivere la 1 e poi di un modo per bootare quella. Se però questo modo è sbloccare il fw fastweb allora siamo punto e a capo… Per questo se come ha detto @nproduction il flash di iinet tramite boot-p da situazione vergine avviene sulla bank2, e se riesce a far bootare quella col metodo dei boot abortiti male dovrei esserci. Ti torna?

Si quei files che ho trovato erano lì infatti, anche se per stare meglio non mi dispiacerebbero anche le versioni precedenti, anche se non indispensabili.

Offline nproduction

  • Membro Anziano
  • ***
  • 149
  • Sesso: Maschio
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #573 il: 15 Maggio 2018, 20:24 »
Codice: [Seleziona]
----
PHYS
STRF
400H
PHYE
DDR3
SIZ3
DINT
USYN
LSYN
MFAS
LMBE
RACE
PASS
----

Technicolor Gateway
(c) 2015, All rights reserved

Decompressing Bootloader................................
Gateway initialization sequence started
Boot Loader Version : 2.0.85
CPU                 : BCM63168-D0
RAM                 : 256MB
Flash               : 128MB NAND, blocksize=128KB, pagesize=2048B
Board Mnemonic      : VANT-6
Market ID           : FFFCExternal switch id = 53125

Booting             : Bank 2
Magic packet        : [link up]ethd_release : DMA ring out of buffers
ethd_release : DMA ring out of buffers
ethd_release : DMA ring out of buffers
ethd_release : DMA ring out of buffers
ethd_release : RX DMA restart performed

SW Version          : 10.A.B.H.0
Starting the Linux kernel

Initializing cgroup subsys cpu
Linux version 2.6.30 (gcc version 3.4.6) #1 Wed Apr 26 12:34:03 CEST 2017
BCM63XX prom init
Linux TP ID = 1
CPU revision is: 0002a080 (Broadcom4350)

physical memory available  : 262004 KiB
  GOMP shared mem          : address 0x8CCDE000 size 4 KiB
  GOMP stack               :                    size 4 KiB
  GOMP core                :                    size 52224 KiB
Reserving DSL memory: 010CE000-011FFFFF
Determined physical RAM map:
 memory: 010cc000 @ 00002000 (usable)
 memory: 0bade000 @ 01200000 (usable)
Wasting 64 bytes for tracking 2 unused pages
Zone PFN ranges:
  DMA      0x00000002 -> 0x00001000
  Normal   0x00001000 -> 0x0000ccde
Movable zone start PFN for each node
early_node_map[2] active PFN ranges
    0: 0x00000002 -> 0x000010ce
    0: 0x00001200 -> 0x0000ccde
On node 0 totalpages: 52138
free_area_init_node: node 0, pgdat 8029bd80, node_mem_map 81200040
  DMA zone: 32 pages used for memmap
  DMA zone: 0 pages reserved
  DMA zone: 4062 pages, LIFO batch:0
  Normal zone: 378 pages used for memmap
  Normal zone: 47666 pages, LIFO batch:15
Built 1 zonelists in Zone order, mobility grouping on.  Total pages: 51728
Kernel command line: root=31:0 ro noinitrd memsize=0xFFDD000 btab=0xc004900c btab_bootid=2 tbbt_addr=0x7d20000 board=VANT-6 console=ttyS0,115200 root=/dev/mtdblock1 rootfstype=squashfs
wait instruction: enabled
Primary instruction cache 64kB, VIPT, 4-way, linesize 16 bytes.
Primary data cache 32kB, 2-way, VIPT, cache aliases, linesize 16 bytes
NR_IRQS:128
PID hash table entries: 1024 (order: 10, 4096 bytes)
console [ttyS0] enabled
Dentry cache hash table entries: 32768 (order: 5, 131072 bytes)
Inode-cache hash table entries: 16384 (order: 4, 65536 bytes)
Allocating memory for DSP module core and initialization code
Allocated DSP module memory - CORE=0x0 SIZE=0, INIT=0x0 SIZE=0
Allocated NMON module memory - CORE=0x813d1a60 SIZE=1843200, INIT=0x0 SIZE=0
allocated 1048880 bytes of page_cgroup
please try cgroup_disable=memory option if you don't want
Memory: 200484k/208552k available (2064k kernel code, 7792k reserved, 549k data, 112k init, 0k highmem)
Calibrating delay loop... 399.36 BogoMIPS (lpj=199680)
Mount-cache hash table entries: 512
--Kernel Config--
  SMP=0
  PREEMPT=0
  DEBUG_SPINLOCK=0
  DEBUG_MUTEXES=0
Initializing cgroup subsys memory
net_namespace: 584 bytes
NET: Registered protocol family 16
registering PCI controller with io_map_base unset
registering PCI controller with io_map_base unset
bio: create slab <bio-0> at 0
usbcore: registered new interface driver usbfs
usbcore: registered new interface driver hub
usbcore: registered new device driver usb
pci 0000:00:00.0: reg 10 32bit mmio: [0x10004000-0x10013fff]
pci 0000:00:00.0: reg 30 32bit mmio: [0x000000-0x0007ff]
pci 0000:00:00.0: supports D1 D2
pci 0000:00:00.0: PME# supported from D0 D3hot D3cold
pci 0000:00:00.0: PME# disabled
pci 0000:00:09.0: reg 10 32bit mmio: [0x10002600-0x100026ff]
pci 0000:00:0a.0: reg 10 32bit mmio: [0x10002500-0x100025ff]
pci 0000:01:00.0: PME# supported from D0 D3hot
pci 0000:01:00.0: PME# disabled
pci 0000:02:00.0: reg 10 64bit mmio: [0x000000-0x007fff]
pci 0000:02:00.0: supports D1 D2
pci 0000:01:00.0: PCI bridge, secondary bus 0000:02
pci 0000:01:00.0:   IO window: disabled
pci 0000:01:00.0:   MEM window: 0x11000000-0x110fffff
pci 0000:01:00.0:   PREFETCH window: disabled
PCI: Enabling device 0000:01:00.0 (0000 -> 0002)
PCI: Setting latency timer of device 0000:01:00.0 to 64
BLOG Rule v1.0 Initialized
Broadcom IQoS v0.1 Apr 26 2017 12:33:31 initialized
NET: Registered protocol family 2
IP route cache hash table entries: 2048 (order: 1, 8192 bytes)
TCP established hash table entries: 8192 (order: 4, 65536 bytes)
TCP bind hash table entries: 8192 (order: 3, 32768 bytes)
TCP: Hash tables configured (established 8192 bind 8192)
TCP reno registered
NET: Registered protocol family 1
squashfs: version 4.0 (2009/01/31) Phillip Lougher
squashfs: version 4.0 with LZMA457 ported by BRCM
JFFS2 version 2.2. (NAND) © 2001-2006 Red Hat, Inc.
msgmni has been set to 392
io scheduler noop registered (default)
Broadcom DSL NAND controller (BrcmNand Controller)
-->brcmnand_scan: CS=0, numchips=1, csi=0
mtd->oobsize=0, mtd->eccOobSize=0
NAND_CS_NAND_XOR=00000000
NAND_CS_NAND_SELECT=40000001
Disabling XOR: Before: SEL=40000001, XOR=00000000
Disabling XOR: After: SEL=40000000, XOR=00000000
Disabling XOR on CS#0
brcmnand_scan: Calling brcmnand_probe for CS=0
B4: NandSelect=40000000, nandConfig=15142200, chipSelect=0
brcmnand_read_id: CS0: dev_id=2cf18095
After: NandSelect=40000000, nandConfig=15142200
Block size=00020000, erase shift=17
NAND Config: Reg=15142200, chipSize=128 MB, blockSize=128K, erase_shift=11
busWidth=1, pageSize=2048B, page_shift=11, page_mask=000007ff
timing1 not adjusted: 6574845b
timing2 not adjusted: 00001e96
brcmnand_adjust_acccontrol: gAccControl[CS=0]=00000000, ACC=f7881010
BrcmNAND mfg 2c f1 MICRON MT29F1G08ABA 128MB on CS0

Found NAND on CS0: ACC=f7881010, cfg=15142200, flashId=2cf18095, tim1=6574845b, tim2=00001e96
BrcmNAND version = 0x0400 128MB @00000000
brcmnand_scan: Done brcmnand_probe
brcmnand_scan: B4 nand_select = 40000000
brcmnand_scan: After nand_select = 40000000
100 CS=0, chip->ctrl->CS[0]=0
handle_acc_control: default CORR ERR threshold  6 bits
ECC level threshold set to 6 bits
ECC level 8, threshold at 6 bits
ACC: 16 OOB bytes per 512B ECC step; from ID probe: 16
reqEccLevel=0, eccLevel=8
190 eccLevel=8, chip->ecclevel=8, acc=f7881010
brcmnand_scan 10
200 CS=0, chip->ctrl->CS[0]=0
200 chip->ecclevel=8, acc=f7881010
page_shift=11, bbt_erase_shift=17, chip_shift=27, phys_erase_shift=17
brcmnand_scan 220
Brcm NAND controller version = 4.0 NAND flash size 128MB @18000000
brcmnand_scan 230
brcmnand_scan 40, mtd->oobsize=64, chip->ecclayout=00000000
brcmnand_scan 42, mtd->oobsize=64, chip->ecclevel=8, isMLC=0, chip->cellinfo=0
ECC layout=brcmnand_oob_bch8_16_2k
brcmnand_scan:  mtd->oobsize=64
brcmnand_scan: oobavail=11, eccsize=512, writesize=2048
brcmnand_scan, eccsize=512, writesize=2048, eccsteps=4, ecclevel=8, eccbytes=13
300 CS=0, chip->ctrl->CS[0]=0
500 chip=8ca04d80, CS=0, chip->ctrl->CS[0]=0
brcmnand_scan 99
Gateway flash mapping
brcmnand_reset_corr_threshold: default CORR ERR threshold  6 bits for CS0
ECC level threshold default value is 6 bits for CS0
[NAND] : tBBT loaded
<5>Technicolor nand flash translation layer initialized.
flash mapping initialized
parse_btab: num_banks (5)
bank #0: 0, 80000 (<NULL>)
bank #1: 0, 2000000 (<NULL>)
bank #2: 0, 4e60000 (<NULL>)
bank #3: 0, 20000 (<NULL>)
bank #4: 0, 40000 (<NULL>)
Creating 1 MTD partitions on "technicolor-nand-tl":
0x000004f60000-0x000007cc0000 : "rootfs"
Creating 5 MTD partitions on "technicolor-nand-tl":
0x000000080000-0x000002000000 : "userfs"
0x000002000000-0x000004e60000 : "bank_1"
0x000004e60000-0x000007cc0000 : "bank_2"
0x000000020000-0x000000040000 : "eripv2"
0x000000040000-0x000000080000 : "rawstorage"
brcmboard: brcm_board_init entry
Serial: BCM63XX driver $Revision: 3.00 $
ttyS0 at MMIO 0xb0000180 (irq = 13) is a BCM63XX
ttyS1 at MMIO 0xb00001a0 (irq = 42) is a BCM63XX
TCP cubic registered
NET: Registered protocol family 17
NET: Registered protocol family 15
VFS: Mounted root (squashfs filesystem) readonly on device 31:1.
Freeing unused kernel memory: 112k freed
init started:  BusyBox v1.00 (2017.04.26-10:34+0000) multi-call binary
init started:  BusyBox v1.00 (2017.04.26-10:34+0000) multi-call binary
Starting pid 137, console /dev/ttyS0: '/etc/init.d/rcS'
JFFS2 notice: (150) jffs2_build_xattr_subsystem: complete building xattr subsystem, 0 of xdatum (0 unchecked, 0 orphan) and 0 of xref (0 dead, 0 orphan) found.
Initializing random number generator
kserport: module license 'unspecified' taints kernel.
Disabling lock debugging due to kernel taint
loading cryptodev kernel modules...
loading crypto_wrapper kernel modules...
loading geniodb kernel modules...
 geniodb driver: Loading ...
 geniodb driver: Loading finished with SUCCESS
Button char device has been created and initialized.
eRIPv2 secrets passed correctly to Linux
[BCM ADSL] BcmAdsl_SetOverlayMode = 85 new=0
Initialize the IPC channels.
Loading GOMP firmware : /nmon/firmware/gomp.firm
loaded 7535 Kb @ 0x8CF69570
Kicking off Forward Core at entry point 0x8CF69570...
Wait for completion....


Gateway GOMP -- CORE ID 1 initialization sequence started.

Enabling SMISBUS PHYS_FAP_BASE[0] is 0x10c01000
FAP Soft Reset Done
4ke Reset Done
Enabling SMISBUS PHYS_FAP_BASE[1] is 0x10e01000
FAP Soft Reset Done
4ke Reset Done
Allocated FAP0 TM SDRAM Queue Storage (0xad37a4cc) : 365760 bytes @ 0xafe56d38
Allocated FAP1 TM SDRAM Queue Storage (0xad39edbc) : 365760 bytes @ 0xafdfd830
[FAP0] fapDrv_construct: wastage 8 bytes
[FAP1] fapDrv_construct: wastage 8 bytes
bcmPktDma_bind: FAP Driver binding successfull
4KE> [0] FAP BPM Initialized.
4KE> [1] FAP BPM Initialized.
4KE> [0] FAP TM: ON
4KE> [1] FAP TM: ON
pci 0000:00:00.0: firmware: requesting phy
[BCM ADSL] ------    dslFileLoadImage : OverlayMode = 0 fname=ZWKAAA
pci 0000:00:00.0: firmware: requesting ZWKAAA
Bring AdslCore out of Reset
Successfully started AdslCore
[BCM ADSL] : request_firmware size=994452 : 0x0 0x0 0x21 0x58
[BCM ADSL] Firmware load : 994452 994452 LMEM=(0xB0780000, 8536) SDRAM=(0xA10CE000, 985908)
[BCM ADSL] ------    dslFileLoadImage : OverlayMode = 0 fname=ZWKAAA
pci 0000:00:00.0: firmware: requesting ZWKAAA
[BCM ADSL] : request_firmware size=994452 : 0x0 0x0 0x21 0x58
[BCM ADSL] Firmware load : 994452 994452 LMEM=(0xB0780000, 8536) SDRAM=(0xA10CE000, 985908)
Total # RxBds=1448
bcmPktDmaBds_init: Broadcom Packet DMA BDs initialized

fapDrv_psmAlloc: fapIdx=1, size: 1600, offset=0xb0a20790 bytes remaining 9400
GMAC Driver initialized
ETHD - BPM DMA Init Tx Drop Thresh: chnl=0 txbds=200 thr[0]=150 thr[1]=150 thr[2]=170 thr[3]=200
ETHD - BPM DMA Init Tx Drop Thresh: chnl=1 txbds=200 thr[0]=150 thr[1]=150 thr[2]=170 thr[3]=200
fapDrv_psmAlloc: fapIdx=1, size: 4000, offset=0xb0a20dd0 bytes remaining 5400
ETHD - BPM Set Tx Chan=0 Owner=2
fapDrv_psmAlloc: fapIdx=0, size: 4000, offset=0xb0820790 bytes remaining 7000
ETHD - BPM Set Tx Chan=1 Owner=1
fapDrv_psmAlloc: fapIdx=0, size: 4800, offset=0xb0821730 bytes remaining 2200
fapDrv_psmAlloc: fapIdx=1, size: 4800, offset=0xb0a21d70 bytes remaining 600
b6w_init
OSL_PKTTAG_SZ = 20, sizeof(wlc_pkttag_t) = 20
METADATA_CLEAR_SIZE = 28, sizeof(vb_metadata) = 28
FOUND WL DEVICE 0, bus=0, device=0, func=0, vendorid=14E4, deviceid=435F, regaddr=10004000, irq=15
wl:srom/otp not programmed, using main memory mapped srom info(wombo board)
FOUND WL DEVICE 1, bus=2, device=0, func=0, vendorid=14E4, deviceid=4360, regaddr=11000000, irq=48
wl:srom/otp not programmed, using main memory mapped srom info(wombo board)
IPC bcm63268 : rtems core has finished init, continueing...
GOMP firmware loaded and running.
Linux Driver Relay v0.1 Apr 26 2017 13:09:46 loaded
veth0 (): not using net_device_ops yet
Forwarding Adaptation Layer v0.1 Apr 26 2017 13:09:46
veth1 (): not using net_device_ops yet
Forwarding Adaptation Layer v0.1 Apr 26 2017 13:09:46
NET: Registered protocol family 9
NET: Registered protocol family 6
NET: Registered protocol family 5
NET: Registered protocol family 18
NET: Registered protocol family 25
NET: Registered protocol family 10
NET: Registered protocol family 24
Device ipsec not present.
Device rt_event not present.
voice will be loaded
Endpoint: endpoint_init entry
Endpoint: endpoint_init COMPLETED
Device ikanos not present.
Device soc4e not present.
Syncing hardware clock to system time
Starting pid 464, console /dev/ttyS0: '/etc/init.d/rc'
Switching to RUNLEVEL 1 ...
route: SIOC[ADD|DEL]RT: File exists
linux application start ...

************* ERROR RECORD *************
000000:00:00.000000
Application NMON started after POWERON.
****************** END *****************

appl_init: BUILD VERIFIED! boardname(VANT-6)
****application_init:byte_rd=1,str_rd=isVoiceOn:1
****application_init:pstr=1,offset=10,sizeof(param_str)=11
****application_init:voice_enabled=1
wait for linux_appl to initialize (1)
wait for linux_appl to initialize (2)
wait for linux_appl to initialize (3)
 start fseventd ...
 fseventd is started.
 start storagepl ...
 storagepl is started
 start vfspl ...
 vfspl is started
MVFS plugin started
/etc/rc1.d/S47cifs: 54: /usr/bin/rootcontainerpl: not found
cifs plug-in: initializing ...
 cifs plug-in is started
upnpavpl start ...
/usr/bin/fusermount
Loading fuse modulefuse init (API version 7.11)
.
Mounting fuse control filesystem.
S67stopload: wait until configuration load reaches phase 9...
S67stopload: wait until configuration load reaches phase 9 (now -1, 1s)
S67stopload: wait until configuration load reaches phase 9 (now -1, 2s)
adsl: adsl_open entry
ADSL Line state is: DOWN
S67stopload: wait until configuration load reaches phase 9 (now -1, 3s)
S67stopload: wait until configuration load reaches phase 9 (now -1, 4s)

 Version of IGD from the config -1
****application_init:voice_enabled=1,call sipSecurityInit
****application_init:voice_enabled=1,call sipServerInit
S67stopload: wait until configuration load reaches phase 9 (now -1, 5s)
register sip autoprov service
****application_init:voice_enabled=1,call VoIp_init
endpoint_open COMPLETED
S67stopload: wait until configuration load reaches phase 9 (now -1, 6s)
****application_init:voice_enabled=1,call voiceservprof_prefix_init
****application_init:voice_enabled=1,call lmcgi_register_basic_voip_cgi
****application_init:voice_enabled=1,call lmcgi_register_basic_addressbook_cgi
WARNING: Unknown Parameter Type (1) brgroup for groupname group
****application_init:voice_enabled=1,call lm_cli_register_sipserver_cmds
[xdsl/adsl] start diagd
[diagd] BRCM- Version = PH=A2pv6F039g1.d24n Drv=24n
[adsl] trace = 5 0
S67stopload: wait until configuration load reaches phase 9 (now -1, 7s)
****application_init:voice_enabled=1,call lm_cli_register_voice_cmds
S67stopload: wait until configuration load reaches phase 9 (now -1, 8s)
S67stopload: wait until configuration load reaches phase 9 (now -1, 9s)
S67stopload: wait until configuration load reaches phase 9 (now -1, 10s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 11s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 12s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 13s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 14s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 15s)
Failed to delete Efm Qos
Failed to delete EFM QOS Interface.
Invalid option => v2_IAD
Invalid option => v2_IAD
ADSL configuration:
        adslmultimode = adsl2plus
        vdslmultimode = vdsl2
        syslog = disabled
ADSL configuration:
        adslmultimode = adsl2plus
        vdslmultimode = vdsl2
        syslog = disabled
Invalid option => v2_IAD
S67stopload: wait until configuration load reaches phase 9 (now 3, 16s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 17s)
Invalid label name.
Bad value for parameter 'name FW_Telnet_CWMP_QoS'
Invalid label name.
Bad value for parameter 'name CWMP_QoS'
S67stopload: wait until configuration load reaches phase 9 (now 3, 18s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 19s)
Ignore higher mark rates then drop rates.
Invalid interface name.
Bad value for parameter 'intf Internet'
Invalid interface name.
Bad value for parameter 'intf Internet'
Invalid interface name.
Bad value for parameter 'intf Internet'
Invalid interface name.
Bad value for parameter 'intf Internet'
Invalid interface name.
Bad value for parameter 'intf Internet'
Not a valid label.
Bad value for parameter 'label CWMP_QoS'
Not a valid label.
Bad value for parameter 'label FW_Telnet_CWMP_QoS'
Not a valid label.
Bad value for parameter 'childqos Video'
Not a valid label.
Bad value for parameter 'qoslabel Management'
Failed to parse ':connection flow qoslabeladd'.
Adding new linux user
Adding new linux user
Adding new linux user
Adding new linux user
S67stopload: wait until configuration load reaches phase 9 (now 3, 20s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 21s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 22s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 23s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 24s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 25s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 26s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 27s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 28s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 29s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 30s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 31s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 32s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 33s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 34s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 35s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 36s)
Invalid option => fxodisconnect
S67stopload: wait until configuration load reaches phase 9 (now 3, 37s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 38s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 39s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 40s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 41s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 42s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 43s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 44s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 45s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 46s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 47s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 48s)
Not a valid label.
Bad value for parameter 'qoslabel FW_Telnet_CWMP_QoS'
S67stopload: wait until configuration load reaches phase 9 (now 3, 49s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 50s)
******* DSP: Found BCM963268 *******
******* DSP: In PCM Mode *******
******* DSP: PCM running in 16 bit mode *******
gInterruptCounter     = 0xC09494C8
gInterruptErrors      = 0xC09494CC
gNextRxDesc           = 0xC09495EC
gNextTxDesc           = 0xC09495E8
gDectTestMode         = 0xc076852c
dectBuffStart         = 0xc0768538
gDectRxOutOfSyncCounter = 0xc076853c
gDectTxOutOfSyncCounter = 0xc0768540
64 ms ECAN tail-length
*** gStartRxDesc[0] = 0xA0C00000
*** gBufferSizeBytes = 640
*** gStartTxDesc[0] = 0xA0C01000
halPcmInit 370 nextTxDesc = 0xA0C01000
halPcmInit 370 nextTxDesc = 0xA0C01008
halPcmInit 374 Ownership for TX desc not set. Use this buffer.
S67stopload: wait until configuration load reaches phase 9 (now 3, 51s)
boardHalInit completed
Custom configuration loaded!
DSP: Interrupt Masks
---------------
IrqMask                   = 0x00000100
IrqMask1                  = 0x00000400

DSP: Interrupt Status
-----------------
IrqStatus                 = 0x00000000
IrqStatus1                = 0x00000000
S67stopload: wait until configuration load reaches phase 9 (now 3, 52s)
Adaptive Voltage Scaling is now disabled
cgroup_partitioning start ...
EndpointInit completed
b6358_start:remove rfc2833_work_around
S67stopload: wait until configuration load reaches phase 9 (now 3, 53s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 54s)
S67stopload: wait until configuration load reaches phase 9 (now 3, 55s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 56s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 57s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 58s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 59s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 60s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 61s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 62s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 63s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 64s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 65s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 66s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 67s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 68s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 69s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 70s)
S67stopload: wait until configuration load reaches phase 9 (now 6, 71s)
S67stopload: configuration load reached phase 9...
nlplugd start ...
Initializing.
Starting netlink plugin
Daemonize netlink plugin

udhcpcd start ...
monitoripd start ...
anti_spoofd start ...
Starting dlistaccess ...
anti_spoofd : process exit !
dlistaccess: running
 mud ...
 mud start ...
ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver
PCI: Enabling device 0000:00:0a.0 (0000 -> 0002)
PCI: Setting latency timer of device 0000:00:0a.0 to 64
ehci_hcd 0000:00:0a.0: EHCI Host Controller
ehci_hcd 0000:00:0a.0: new USB bus registered, assigned bus number 1
ehci_hcd 0000:00:0a.0: Enabling legacy PCI PM
ehci_hcd 0000:00:0a.0: irq 18, io mem 0x10002500
ehci_hcd 0000:00:0a.0: USB f.f started, EHCI 1.00
usb usb1: configuration #1 chosen from 1 choice
hub 1-0:1.0: USB hub found
hub 1-0:1.0: 2 ports detected
ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver
PCI: Enabling device 0000:00:09.0 (0000 -> 0002)
PCI: Setting latency timer of device 0000:00:09.0 to 64
ohci_hcd 0000:00:09.0: OHCI Host Controller
ohci_hcd 0000:00:09.0: new USB bus registered, assigned bus number 2
ohci_hcd 0000:00:09.0: irq 17, io mem 0x10002600
usb usb2: configuration #1 chosen from 1 choice
hub 2-0:1.0: USB hub found
hub 2-0:1.0: 2 ports detected
usbcore: registered new interface driver usblp
usbcore: registered new interface driver usbserial
USB Serial support registered for generic
usbcore: registered new interface driver usbserial_generic
usbserial: USB Serial Driver core
USB Serial support registered for pl2303
usbcore: registered new interface driver pl2303
pl2303: Prolific PL2303 USB to serial adaptor driver
USB Serial support registered for FTDI USB Serial Device
usbcore: registered new interface driver ftdi_sio
ftdi_sio: v1.4.3:USB FTDI Serial Converters Driver
SCSI subsystem initialized
Driver 'sd' needs updating - please use bus_type methods
Initializing USB Mass Storage driver...
usbcore: registered new interface driver usb-storage
USB Mass Storage support registered.
smount /etc/init.d/../../var/uuidmount/ shared
Starting power manager...
 start rgpl ...
 rgpl is started
Intel MicroStack 1.0 - Digital Media Server (DLNA 1.5)(pid = 1111),

loc_generate_uuid:cbc87729-8bac-5009-9f38-13a74da4edcf
Name: /etc/usbmgr/usbmgr.conf

Username :
Ecco il log da seriale del TG789vac v2 di Fastweb versione fw 10.A.B.H
Quel "Username:" finale è un ingresso possibile da seriale ? è possibile loggarsi da seriale ?
@larsen64it
« Ultima modifica: 15 Maggio 2018, 20:27 da nproduction »
TIM HUB 17.3.c GUI ANSUEL/ROOT
TIM AGTOT 16.3 GUI ANSUEL/ROOT
TIM AGTOT 16.3 GUI ANSUEL/ROOT
TIM TG789vac v2 17.2 GUI ANSUEL/ROOT
FB TG789vac v2.(ex FW IAD) 17.2 GUI ANSUEL/ROOT
FASTGate (DGA4131) Forse Brikkato
FASTGate (Askey)

Offline larsen64it

  • VIP
  • *****
  • 2697
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #574 il: 15 Maggio 2018, 20:31 »
@LuKePicci Se questo è il senso della discussione, all'ora avevo capito bene che non avevi capito di essere OT. Poco male. Fattibile ma da un'altra parte.

Offline larsen64it

  • VIP
  • *****
  • 2697
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #575 il: 15 Maggio 2018, 21:08 »
@nproduction La risposta e si se attiva come è attivabile in iinet/UNO modificando /etc/inittab. Digita qualcosa e vedi se ti risponde. Per user e pwd non sono l'oracolo di delfi. Spero che tu non voglia continuare l'OT al pari di LuKePicci. No problem.

Offline nproduction

  • Membro Anziano
  • ***
  • 149
  • Sesso: Maschio
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #576 il: 15 Maggio 2018, 21:11 »
@larsen64it
Mi dice username/password errata, perciò riceve l'input e mi restituisce l'output
Per il problema usw/pass, e per l'OT, tranquillo, ho scritto il problema sul forum australiano così non intasiamo questo thread
« Ultima modifica: 15 Maggio 2018, 21:15 da nproduction »
TIM HUB 17.3.c GUI ANSUEL/ROOT
TIM AGTOT 16.3 GUI ANSUEL/ROOT
TIM AGTOT 16.3 GUI ANSUEL/ROOT
TIM TG789vac v2 17.2 GUI ANSUEL/ROOT
FB TG789vac v2.(ex FW IAD) 17.2 GUI ANSUEL/ROOT
FASTGate (DGA4131) Forse Brikkato
FASTGate (Askey)

Offline renpasa

  • Membro Anziano
  • ***
  • 114
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #577 il: 15 Maggio 2018, 22:19 »
Senza andare OT credo di poter riaffermare che con bootp si flasha sempre e solo la bank_1.
Salvo, in questo campo, dimostrare il contrario.
Detto questo, domani mattina prendo il martello e vedo se riesco ad eliminare definitivamente iinet 2.2.1 dal bank 2.
Sono due giorni che provo con le buone maniere.😁😁

Offline LuKePicci

  • Global Moderator
  • VIP
  • *****
  • 2789
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #578 il: 16 Maggio 2018, 01:52 »
Buone nuove, non sono riuscito a rootare il fw stock ma ho trovato un modo per editare il file di config senza chiavi, senza passare per il backup della configurazione. Quindi sono riuscito ad abilitare SSH e dalla CLI di technicolor a duplicare il fw sulla bank2. Quella attiva è la 1. Ma non è abbastanza, mi occorre l'accesso come root, per cui procederò col flashare iiNet ed a fare il root su quello. Ora sarò immensamente felice di tornare in-topic: visto quello che ci devo fare dite che posso procedere tranquillamente con iiNet o pensate che quello UNO vada meglio? Vi ricordo che la cosa fondamentale è che non mi vada a toccare nulla dei file del fw stock di fastweb.

Offline larsen64it

  • VIP
  • *****
  • 2697
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #579 il: 16 Maggio 2018, 05:29 »
@LuKePicci
Visto che + o - siamo tornati in una discussione generale intervergo di nuovo a fare confusione:
root@dsldevice:~# cat /proc/mtd
dev:    size   erasesize  name
mtd0: 08000000 00020000 "brcmnand.0"
mtd1: 02c40000 00020000 "rootfs"
mtd2: 01f80000 00020000 "userfs"
mtd3: 02e60000 00020000 "bank_1"
mtd4: 02e60000 00020000 "bank_2"
mtd5: 00020000 00020000 "eripv2"
mtd6: 00040000 00020000 "rawstorage"
mtd7: 00000003 00020000 "blversion"
Quello che hai fatto equivale a copiare mtd3 su mtd4 ma non necessariamente copiare i files di configurazione contenuti in mtd2(overlay), partizione comune alle 2 banks, che per iinet/UNO si chiamano "casualmente" bank_1 e bank_2, per tim config-bank-1 e config-bank-2, per fastweb si potrebbe anche chiamare pippo_1 e pippo_2. Quello che ti serve è la capacità di fare switchover da una bank(mtd) all'altra per vedere se tutto funziona a dovere. Fatto questo riposizionarti su bank_1(mtd3) e flashare solo ed esclusivamente iinet versione max 2.2.1. Dico riposizionarti su bank_1(mtd3) perché al 99,9% con TFTP ti flasha quella bank. Dico 99,9% perché in taluni casi è stato dimostrato il contrario. Poco male se hai la possibilità di fare switchover.
Ciao

Offline cubamito

  • Membro Giovane
  • **
  • 74
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #580 il: 16 Maggio 2018, 05:38 »
@LuKePicci

Devi usare iinet 2.2.1 o inferiore perché l'ultima versione di iinet e anche il firmware UNO NON sono direttamente sbloccabili

Offline larsen64it

  • VIP
  • *****
  • 2697
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #581 il: 16 Maggio 2018, 08:12 »
Notizie dall'altro capo del mondo:
Trovato il modo per avere l'accesso diretto dei fw 17.2(UNO), c'è qualcuno che afferma che potrebbe funzionare anche su tg789vac v2
Se qualcuno ha voglia di provare:
hzzps://blog.superautomation.co.uk/2018/05/lan-side-root-on-technicolor.html
« Ultima modifica: 16 Maggio 2018, 08:17 da larsen64it »

Offline ^NiCo^

  • Ex-Staff
  • Esperto
  • *****
  • 1258
  • Se non và dagli un calcio e riprova.
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #582 il: 16 Maggio 2018, 08:19 »
Secondo me funziona ! posso provare solo stasera xò :(
Ci sarebbe da provare se funziona anche al contrario, ovvero metti il router in ascolto e quando hai fatto ti colleghi.

Cmq ricordo che c'era qualcuno che chiedeva cosa cambia tra enginer e root, UN MONDO INTERO direi visto che l' account engineer usa una versione ridotta di ash
root -> /bin/ash
engineer -> /usr/bin/restricted-clash

e si vede bene dallo screen nel sito quanto è ridotta all' osso, xò idea ottima !
« Ultima modifica: 16 Maggio 2018, 08:23 da ^NiCo^ »

Offline renpasa

  • Membro Anziano
  • ***
  • 114
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #583 il: 16 Maggio 2018, 08:55 »
In giornata posso provare anch'io ma senza impegno.
Purtroppo la pensione mi lascia poco tempo libero😁😁

Offline larsen64it

  • VIP
  • *****
  • 2697
Re:[GUIDA] TG789vac v2 iiNET/UNO Flash, Sblocco e Modding
« Risposta #584 il: 16 Maggio 2018, 10:00 »
Credevo di avere l'esclusiva per la deficenza.
Renato
6  1  scemo!
Best regards
Larsen64it