stilia.johny

Tetra firmware upgrade failed

28 posts in this topic

Hi all,

 

I try to update the firmware via the web-interface and it seems like it failed. 

so I try to do it with the firmware recovery through the (http://wiki.wifipineapple.com/#!troubleshooting.md%23Firmware_Recovery)

And it still failing. 

Afte I upgrade the firmware the ethernet gets disconnected and connected again. 

I cannot access neither 172.16.42.1 nor 192.168.1.1 after the reboot. and the yellow light is Solid  durring this process.

 

Please help! 

 

Thanks in advance.

 

 

PS.: Not sure but i believe I can still save it via accessing the UART, but not sure how! 

0

Share this post


Link to post
Share on other sites

I have done a few firmware recovery's and each one has gone well. Your description doesn't explain what exactly you did and in what order so im just chucking some thoughts to try. If you have already tried them then disregard.

Connections, only use the Y usb lead when updating firmware connected to the ETH micro USB port on the Tetra, I even remove my mains power and LAN cable.

Firmware file, Always checksum the firmware binary before flashing anything.

Once in recovery mode and connected wait for USB to create the network connection, then enter the network settings and manually change ipv4 from dhcp to 192.168.1.2 with 255.255.255.0 netmask.

Hope you get it sorted.

0

Share this post


Link to post
Share on other sites
3 hours ago, Just_a_User said:

I have done a few firmware recovery's and each one has gone well. Your description doesn't explain what exactly you did and in what order so im just chucking some thoughts to try. If you have already tried them then disregard.

Connections, only use the Y usb lead when updating firmware connected to the ETH micro USB port on the Tetra, I even remove my mains power and LAN cable.

Firmware file, Always checksum the firmware binary before flashing anything.

Once in recovery mode and connected wait for USB to create the network connection, then enter the network settings and manually change ipv4 from dhcp to 192.168.1.2 with 255.255.255.0 netmask.

Hope you get it sorted.

Thank you for the response. 

I connect my tetra with the power cable and a single micro USB to the eth port. 

The problem is that as soon as the firmware file gets uploaded the network connection cut off and the tetra never reboot. 

 

I will  have a look on your comments above. 

Thanks a lot  

Ps : how can I have access from the UART port ? 

 

 

0

Share this post


Link to post
Share on other sites

Take a look at the FAQ section - it has serial information, factory reset and  firmware recovery details. https://www.wifipineapple.com/pages/faq

I haven't had a bricked Pineapple as yet so haven't needed UART/serial connection.

I have had a TP-MR3020 running OpenWRT that was inaccessible (the firmware was present just mis-configured) it just required a "firstboot" and "mtd -r erase rootfs_data" command over serial. But i don't know if thats exactly how the pineapples roll and its different to firmware flashing via serial as it just resets whats already there.

When you power your tetra up (without holding reset) does it fully boot up to blue light?

0

Share this post


Link to post
Share on other sites
2 hours ago, Just_a_User said:

Take a look at the FAQ section - it has serial information, factory reset and  firmware recovery details. https://www.wifipineapple.com/pages/faq

I haven't had a bricked Pineapple as yet so haven't needed UART/serial connection.

I have had a TP-MR3020 running OpenWRT that was inaccessible (the firmware was present just mis-configured) it just required a "firstboot" and "mtd -r erase rootfs_data" command over serial. But i don't know if thats exactly how the pineapples roll and its different to firmware flashing via serial as it just resets whats already there.

When you power your tetra up (without holding reset) does it fully boot up to blue light?

It stay solid Yellow when I power it up as normal. 

It seems the same reaction as if it was boot up with the reset hold. 

 

( unless the reset button stuck ?? !! ) 

 

I will defiantly give a go to boot it up with Y usb and i will have a look on the file I am downloading 

 

I will keep you updated! 

 

Thanks again! 

Edited by stilia.johny
0

Share this post


Link to post
Share on other sites
1 hour ago, stilia.johny said:

It stay solid Yellow when I power it up as normal. 

It seems the same reaction as if it was boot up with the reset hold. 

 

( unless the reset button stuck ?? !! ) 

 

I will defiantly give a go to boot it up with Y usb and i will have a look on the file I am downloading 

 

I will keep you updated! 

 

Thanks again! 

I try all the above but it is not recovering the firmware.

@Darren Kitchen Would you have any idea?? 

I connect via Serial (UART) and I get this :>

picocom -b 115200 /dev/tty.usbserial-A104LYEC 
picocom v2.1

port is        : /dev/tty.usbserial-A104LYEC
flowcontrol    : none
baudrate is    : 115200
parity is      : none
databits are   : 8
stopbits are   : 1
escape is      : C-a
local echo is  : no
noinit is      : no
noreset is     : no
nolock is      : no
send_cmd is    : sz -vv
receive_cmd is : rz -vv -E
imap is        : 
omap is        : 
emap is        : crcrlf,delbs,

Type [C-a] [C-h] to see available commands

Terminal ready

what is the next step?

 

 

Many thanks in advance! 

0

Share this post


Link to post
Share on other sites

As i said i haven't done it myself so cant help much more. From what you describe it does seem to point to what sounds like an interrupted flash or stuck reset button - constant orange light.

The most i can do to help is find this old web page, something @Mr-Protocol did for the MK4 wifipineapple so im not sure it would still ring true for the MK6.

You can either wait for response by someone else here, try the link and adapt it for the MK6 (at your own risk) or create a separate post specifically about flashing via serial.

https://mr-protocol.blogspot.nl/2013/12/wifi-pineapple-mark-iv-clean-flash-uart.html

***Do not use the above instructions for TETRA - Mr-Protocol

Hope this helps. good luck.

Edited by Mr-Protocol
0

Share this post


Link to post
Share on other sites

I got a step closer! 

 

I connect to the 192.168.1.1 web interface ( by the normal process) and on the other side i got the Serial connection running 

These are the results from the moment I hit Upload for the firmware from the web interface 

uboot> httpd
Using eth0
MAC address: 0x0:0x3:0x7f:0x9:0xb:0xad
HTTP server is starting at IP: 192.168.1.1
HTTP server is ready!

Request for: /
Data will be downloaded at 0x81000000 in RAM
Upload file size: 15216673 bytes
Loading: 
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
##########################
###



FIRMWARE UPGRADING, DO NOT POWER OFF DEVICE! 

nand erase 0x0 0xe83021; nand write 0x81000000 0x0 0xe83021

NAND erase: device 0 offset 0x0, size 0xe83021 ath_nand_erase: 0x0 30
   0arrd1 = 0x0, addr0 = 0x0
   1arrd1 = 0x0, addr0 = 0x800000
   2arrd1 = 0x0, addr0 = 0x1000000
   3arrd1 = 0x0, addr0 = 0x1800000
   4arrd1 = 0x0, addr0 = 0x2000000
   5arrd1 = 0x0, addr0 = 0x2800000
   6arrd1 = 0x0, addr0 = 0x3000000
   7arrd1 = 0x0, addr0 = 0x3800000
   8arrd1 = 0x0, addr0 = 0x4000000
   9arrd1 = 0x0, addr0 = 0x4800000
  10arrd1 = 0x0, addr0 = 0x5000000
  11arrd1 = 0x0, addr0 = 0x5800000
  12arrd1 = 0x0, addr0 = 0x6000000
  13arrd1 = 0x0, addr0 = 0x6800000
  14arrd1 = 0x0, addr0 = 0x7000000
  15arrd1 = 0x0, addr0 = 0x7800000
  16arrd1 = 0x0, addr0 = 0x8000000
  17arrd1 = 0x0, addr0 = 0x8800000
  18arrd1 = 0x0, addr0 = 0x9000000
  19arrd1 = 0x0, addr0 = 0x9800000
  20arrd1 = 0x0, addr0 = 0xa000000
  21arrd1 = 0x0, addr0 = 0xa800000
  22arrd1 = 0x0, addr0 = 0xb000000
  23arrd1 = 0x0, addr0 = 0xb800000
  24arrd1 = 0x0, addr0 = 0xc000000
  25arrd1 = 0x0, addr0 = 0xc800000
  26arrd1 = 0x0, addr0 = 0xd000000
  27arrd1 = 0x0, addr0 = 0xd800000
  28arrd1 = 0x0, addr0 = 0xe000000
  29arrd1 = 0x0, addr0 = 0xe800000
Skipped 0 bad blocks

OK

NAND write: device 0 offset 0x0, size 15216673 ...  15216673 bytes written: OK
HTTP ugrade is done! Rebooting...


Resetting...

U-Boot 1.1.4 (Dec 22 2015 - 12:54:58)

DB120
DRAM:  
sri
Wasp 1.2
wasp_ddr_initial_config(249): (32bit) ddr2 init
wasp_ddr_initial_config(426): Wasp ddr init done
Tap value selected = 0xf [0x0 - 0x1f]
128 MB
Top of RAM usable for U-Boot at: 88000000
Reserving 276k for U-Boot at: 87fb8000
Reserving 192k for malloc() at: 87f88000
Reserving 44 Bytes for Board Info at: 87f87fd4
Reserving 36 Bytes for Global Data at: 87f87fb0
Reserving 128k for boot params() at: 87f67fb0
Stack Pointer at: 87f67f98
Now running in RAM - U-Boot at: 87fb8000
Flash Manuf Id 0xef, DeviceId0 0x40, DeviceId1 0x14
flash size 1MB, sector count = 16
Flash:  1 MB
*** Warning - bad CRC, using default environment

Now starting pci_init process
pci_init_board: PCIe PLL not set for 40MHz refclk
BOARD IS NOT CALIBRATED!!!
pci_init finished

In:    serial
Out:   serial
Err:   serial
Net:   ag934x_enet_initialize...
No valid address in Flash. Using fixed address
No valid address in Flash. Using fixed address
 wasp  reset mask:c02200 
WASP ----> S27 PHY 
s27 reg init 
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
athrs27_phy_setup ATHR_PHY_CONTROL 4 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 4 :12
eth0 up
WASP ----> S27 PHY 
s27 reg init lan 
ATHRS27: resetting s27
ATHRS27: s27 reset done
: cfg1 0x800c0000 cfg2 0x7214
eth1: 00:03:7f:09:0b:ad
athrs27_phy_setup ATHR_PHY_CONTROL 0 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 0 :10
athrs27_phy_setup ATHR_PHY_CONTROL 1 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 1 :10
athrs27_phy_setup ATHR_PHY_CONTROL 2 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 2 :10
athrs27_phy_setup ATHR_PHY_CONTROL 3 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 3 :10
eth1 up
eth0, eth1
Atheros on-chip NAND FLash Controller Driver, Version 0.1 (c) 2010 Atheros Communications, Ltd.
Ath Nand ID[87fef17c]: 2c:48:00:26:89
ONFI MICRON      MT29F16G08ABABAWP  
Micronset ns -0x80000-0x1000
====== NAND Parameters ======
sc = 0x87fef158 bbt = 0x87f98538 bbt_size = 0x400 nf_ctrl = 0x485
page = 0x1000 block = 0x80000 oob = 0xe0
size = 2048MB
Setting 0xb8116290 to 0x20402d0f
Hit any key to stop autoboot:  0 

Loading from device 0: ath-nand (offset 0x0)

** Bad Magic Number 0x73797375 **
uboot>

 

0

Share this post


Link to post
Share on other sites
7 hours ago, Mr-Protocol said:

This looks like a job for @Sebkinne 

Well I think I messed it up, I was in a conversation with @Foxtrot yesterday and I try to be smart by erasing memory banks .! Now it does not even load uboot on the serial terminal! 

It seems like I brick it properly! 

 

0

Share this post


Link to post
Share on other sites

I have the exact same issue. Except I didn't frag my flash. 

I attempted to update from 1.1.0 to 1.1.1.

This is my serial dump:

uboot> reset

Resetting...

U-Boot 1.1.4 (Dec 22 2015 - 12:54:58)

DB120
DRAM:
sri
Wasp 1.2
wasp_ddr_initial_config(249): (32bit) ddr2 init
wasp_ddr_initial_config(426): Wasp ddr init done
Tap value selected = 0xf [0x0 - 0x1f]
128 MB
Top of RAM usable for U-Boot at: 88000000
Reserving 276k for U-Boot at: 87fb8000
Reserving 192k for malloc() at: 87f88000
Reserving 44 Bytes for Board Info at: 87f87fd4
Reserving 36 Bytes for Global Data at: 87f87fb0
Reserving 128k for boot params() at: 87f67fb0
Stack Pointer at: 87f67f98
Now running in RAM - U-Boot at: 87fb8000
Flash Manuf Id 0xef, DeviceId0 0x40, DeviceId1 0x14
flash size 1MB, sector count = 16
Flash:  1 MB
*** Warning - bad CRC, using default environment

Now starting pci_init process
pci_init_board: PCIe PLL not set for 40MHz refclk
BOARD IS NOT CALIBRATED!!!
pci_init finished

In:    serial
Out:   serial
Err:   serial
Net:   ag934x_enet_initialize...
No valid address in Flash. Using fixed address
No valid address in Flash. Using fixed address
 wasp  reset mask:c02200
WASP ----> S27 PHY
s27 reg init
: cfg1 0x80000000 cfg2 0x7114
eth0: 00:03:7f:09:0b:ad
athrs27_phy_setup ATHR_PHY_CONTROL 4 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 4 :10
eth0 up
WASP ----> S27 PHY
s27 reg init lan
ATHRS27: resetting s27
ATHRS27: s27 reset done
: cfg1 0x800c0000 cfg2 0x7214
eth1: 00:03:7f:09:0b:ad
athrs27_phy_setup ATHR_PHY_CONTROL 0 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 0 :10
athrs27_phy_setup ATHR_PHY_CONTROL 1 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 1 :10
athrs27_phy_setup ATHR_PHY_CONTROL 2 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 2 :10
athrs27_phy_setup ATHR_PHY_CONTROL 3 :1000
athrs27_phy_setup ATHR_PHY_SPEC_STAUS 3 :10
eth1 up
eth0, eth1
Atheros on-chip NAND FLash Controller Driver, Version 0.1 (c) 2010 Atheros Communications, Ltd.
Ath Nand ID[87fef17c]: 2c:48:00:26:89
ONFI MICRON      MT29F16G08ABABAWP
Micronset ns -0x80000-0x1000
====== NAND Parameters ======
sc = 0x87fef158 bbt = 0x87f98538 bbt_size = 0x400 nf_ctrl = 0x485
page = 0x1000 block = 0x80000 oob = 0xe0
size = 2048MB
Setting 0xb8116290 to 0x20402d0f
Hit any key to stop autoboot:  0

Loading from device 0: ath-nand (offset 0x0)

** Bad Magic Number 0x73797375 **
uboot>
 

0

Share this post


Link to post
Share on other sites

Confirmed the NAND data onboard the pineapple matches the header in the 1.1.1 firmware binary. Curiously enough the previous 1.1.0 update worked, with the same header that this one seems to be choking on.  " Bad Magic Number 0x73797375 "

uboot> nand dump 0x0
Page 00000000 dump:
        73 79 73 75 70 67 72 61  64 65 2d 74 65 74 72 61
        2f 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 30 30 30 30  37 35 35 00 30 30 30 31
        37 35 30 00 30 30 30 31  37 35 30 00 30 30 30 30
        30 30 30 30 30 30 30 00  31 32 37 35 34 32 36 36
        33 37 30 00 30 31 34 33  35 33 00 20 35 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 75 73 74 61 72 20 20  00 6f 70 65 6e 77 72 74
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 6f 70 65 6e 77 72 74
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        73 79 73 75 70 67 72 61  64 65 2d 74 65 74 72 61
        2f 6b 65 72 6e 65 6c 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 30 30 30 30  36 34 34 00 30 30 30 31
        37 35 30 00 30 30 30 31  37 35 30 00 30 30 30 31
        30 30 30 30 30 30 30 00  31 32 37 37 35 30 36 30
        31 31 30 00 30 31 35 35  33 30 00 20 30 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 75 73 74 61 72 20 20  00 6f 70 65 6e 77 72 74
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 6f 70 65 6e 77 72 74
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00
        33 37 30 33 97 6e ff 45  57 f4 60 48 00 1d ff 7f
        80 06 00 00 80 06 00 00  7b dd 7e 3d 05 05 02 03
        4d 49 50 53 20 4f 70 65  6e 57 72 74 20 4c 69 6e
        75 78 2d 33 2e 31 38 2e  33 36 00 00 00 00 00 00
        6d 00 00 10 00 cc 9a 38  00 00 00 00 00 00 00 6f
        fd ff ff a3 b7 7f 4c 34  f7 f8 df 51 7a 6e db 3c
        ec 7d 4e a1 71 78 8f 3e  66 2e 59 21 b1 52 73 85
        5b 46 52 b4 ee 63 b0 a1  d3 66 73 90 ed f4 97 09
        41 a6 cc fc 9c ff 69 bf  cc ca cc d3 8e b8 ee 25
        6f 15 85 fa 5d 5b 1c 2c  77 d3 03 78 25 0b cf 07
        31 b9 73 43 c4 31 96 2b  4a 66 0b b8 e6 c8 b7 51
        06 aa c8 26 00 c5 1a f6  c1 8d 78 16 d7 f7 7e 70
        5a 40 cf 88 c0 85 08 e2  1e 4c 49 ad 43 1e 79 ea
        c7 ce 7d 74 b6 93 11 8d  d8 05 4a 97 2d d0 16 24
        4b 23 cf 9d 5e 3a 0b ae  94 c8 2b 17 20 84 a8 12
        aa f8 5d 2a 4d 83 ef 46  52 76 e9 55 88 f0 7a 04
        34 7e b7 be fc 6e bd 68  7d 88 13 93 5a 02 c3 ad
        80 53 7d f8 7a 74 69 fb  1e d4 ac c0 a2 f6 74 63
        a9 92 60 ed bf 54 4b 3d  b5 a7 51 88 5c d9 85 69
        e6 ae de 3a 65 9a f0 a5  d7 f0 96 33 2a bf 8e e2
        ff 96 5a cf 33 29 41 63  2a e9 83 40 9b 49 67 ab
        00 d1 4b 81 df cf ac c4  de 72 b3 be 79 0f bc ae
        e9 65 b4 e4 9c 16 17 68  f1 7f e5 b4 11 ed dd 74
        e1 db e3 c0 07 62 32 f6  0f cd 2f 4a f3 39 89 7b
        36 99 f5 ee f4 af 0c 4b  ce d4 a3 3d b1 50 b4 cf
        8e de 78 87 2b 96 c3 1b  69 e5 d7 84 1a bf 0a 52
        dd 1b 57 ba 4b 92 19 f8  31 47 98 49 02 6a 81 89
        90 47 5b f1 11 d7 55 4a  e7 7e dc fb 9f 71 41 09
        8b af 2e 32 20 bf e6 69  45 b8 52 3b 95 af 6e 77
        b4 e4 76 f4 45 ea b6 f4  ad a4 68 89 f0 26 d9 dc
        67 9e 26 97 aa 36 f0 10  5c 6f ef 5e 10 7e 0a 15
        92 13 00 ba aa c8 c6 10  2d d5 19 b3 cc 3b 7e bf
        13 6a 36 7a d9 66 04 93  6a e4 6e c8 67 9f 6a fe
        75 fb 62 20 dd 37 fc 93  42 aa fd 9c 9b f6 c2 ad
        81 69 30 1b 71 0d 3b fc  ed ea 08 29 63 6b c5 a5
        e6 c2 74 6d af af b2 15  53 b6 5b 82 51 d7 18 f6
        e1 44 93 d4 41 a6 db a0  8f 5c 9b c2 86 cb 13 56
        b3 35 3e 37 a5 eb 68 81  e9 80 dc 2f 8c 30 d6 b9
        5d b6 83 64 68 ba 50 b9  9e 11 f9 f2 73 ac 4e 61
        e0 f9 d6 ca f7 f2 b1 8e  b6 f7 8c 8e 0f 57 89 fc
        a5 23 b4 c1 b2 d2 92 66  a3 3d b4 24 84 70 4f 57
        71 b8 4e de e2 c9 b2 94  2c 5f 62 dc 58 17 a4 80
        ec 53 4e 12 28 d8 43 8d  61 d0 a7 4e 9f fd 21 df
        44 c4 b8 62 00 40 52 11  5c 33 01 78 7e 73 e2 52
        4e 36 58 e1 26 e6 09 be  eb f0 1e 83 40 86 74 7a
        44 47 db 93 56 b9 75 1b  09 5b 17 1e 4e 39 a3 03
        5c 79 4f 75 9c fc 5d 11  9f d9 7a 52 ee 49 f6 fe
        ea 19 ff 8c aa 27 fe 8d  1a c4 8b f3 9c 28 df c1
        a8 eb cd a1 d7 36 6a cb  b1 96 15 49 cc 8e 46 2f
        42 65 40 64 7e 57 e6 30  34 73 a5 62 7c e1 25 58
        73 82 31 6b fc 56 f8 6d  7b 5d e0 c7 d5 f3 3c 24
        6f 15 82 dc f3 5f b2 51  4b 64 5e 62 c1 b1 4e 93
        6e 3a 3b 5e 18 ac 83 5a  e6 e8 aa 3c c1 c3 e8 74
        b8 c3 85 27 00 f3 83 52  c6 57 10 3a 15 9c 0f 47
        d3 a3 7d 52 62 36 51 2c  9e 5f 95 55 86 a7 f5 ae
        bf 8e f8 72 75 7a 12 1c  66 e7 85 3e fd 9b 81 7e
        af 7f 43 d1 39 3c c4 2a  14 51 fa f0 e7 0b 29 86
        85 d5 1f 13 24 e7 f2 0c  ab 9d a3 3c b8 b5 7b d1
        99 78 ba 04 44 3e 75 be  60 17 10 f6 37 db c3 6e
        ad e4 e1 e0 b9 b1 70 bd  a2 20 0d 35 71 12 ba 2d
        2e 18 ae c5 cf 5f 22 0f  eb 22 3c 3f 33 e4 b8 69
        86 bd 45 c8 ed 1d b6 75  26 1e 4b e6 fb 82 fc 03
        79 a7 f9 fa 4b 96 4a 61  5c 32 40 44 91 b1 1d 86
        3e ba 36 88 31 d8 bb 53  23 71 e6 bc 73 1b d6 db
        2d c2 6d 7e 94 79 d9 12  6a fa e5 22 41 b6 ce 54
        97 57 57 b2 98 dd 38 94  b3 cb 95 7b eb 13 e4 ca
        29 40 f9 53 cb fe af 60  37 db ba d5 25 d3 48 a9
        bf da dd 1d c0 f2 9d f8  68 42 09 ec 5d b7 b7 b4
        bf f1 9b dd 0c c4 5b 72  cc 28 96 32 85 77 a8 93
        e3 c9 d9 48 76 84 da 55  f4 da ca 74 9b bd ad 64
        c8 28 e7 01 63 de c8 ea  d0 57 81 28 31 7c b4 17
        f4 80 77 8c 1e 6b 5a e7  59 30 69 34 47 2a c1 71
        04 8f 7f fd 51 f0 02 b2  f0 af c3 7e 71 2f cd 82
        33 14 57 ad 89 dd df 55  36 d8 aa c8 8d 33 25 c5
        e4 15 d9 55 80 78 10 ad  e0 8b 04 6d 35 ee e5 3d
        44 b6 81 9f af ac 37 13  c0 87 2c 34 54 e9 cd b4
        0f 51 7a 6f 1b e9 c4 7d  53 55 d0 d0 37 34 32 18
        a0 5f 7a a2 96 7f 46 e0  4e ab 70 00 b2 ea be eb
        89 cd 37 d5 cd 2d e4 59  67 00 d1 0f 5f 13 4b 09
        86 07 1a bf a5 0a 7b 8a  7a aa d4 c1 f2 8f ac 26
        52 63 17 8b b6 8a 35 f5  49 0a 9f 2a 42 b1 94 60
        0f f3 4d 26 c3 4f 5c d5  fc 35 84 ea b7 6b d3 e3
        8f 7d 04 85 49 60 09 d5  43 dc 27 2f 83 57 b7 e9
        1d a4 45 8f 10 27 6f 1c  d9 b7 92 7a 5a 70 13 33
        f1 78 05 6b 33 76 0f 92  f0 10 70 b4 b8 d2 73 27
        4c 43 ec fe 23 6f f1 d9  a4 6e d8 d6 30 db 13 92
        df 2a b2 a3 e9 74 40 6a  8f 11 24 a5 d7 e6 c6 70
        85 24 8d 38 70 9d 01 ae  d2 f5 89 af 1d dc 1c ae
        11 68 60 42 24 a1 aa fa  c4 a9 9b a8 a4 8c 58 64
        36 90 c7 f0 48 d6 03 d4  49 44 62 3e 35 41 6e 66
        fc 64 e9 89 a1 da 5b af  eb 16 58 d2 b0 ec 76 e1
        1d 7b c1 e9 c2 ca b0 8b  ad 22 57 b7 65 47 64 fa
        58 09 1d 6a a3 43 40 64  6c b6 eb 9b 70 6e c3 4d
        fb 52 5e 1d f9 fb 38 80  d3 45 f8 4b 90 26 99 3d
        77 50 a8 a4 86 c7 30 a7  e4 74 52 5f 41 6f 13 80
        38 ce 50 34 45 1a 1e 5c  a9 80 a8 52 d6 83 36 cf
        ae d8 bc 58 67 16 7c 4c  7c 44 f8 11 29 ba 90 65
        6d 46 5a 83 52 58 a8 58  ac a7 b7 fc 1f d5 03 d8
        55 72 5b cd d1 dd 32 bd  91 8f 58 1b 0d fe a1 3e
        bd 53 85 54 f3 c2 93 6a  97 ac 26 0e 69 51 9a d5
        2c fa 76 4a 1a 4c 2e 46  fb 06 d7 4d f4 0f f7 67
        9f b4 09 09 35 9f bc 72  f1 aa c2 db 3f c8 27 8c
        a8 91 30 95 b2 ca 97 0b  3d 95 07 9a 21 f3 04 8c
        07 76 44 87 10 8b 7f 91  29 7d 52 24 40 4e 57 65
        df 26 63 0b 53 27 b2 f5  f2 7e 90 31 ee eb b5 56
        05 d0 40 20 4e f3 9b bf  e6 64 25 7e a4 7a 20 c5
        97 22 d3 4e 49 b3 9e 21  a5 35 e2 1b 23 1b ce 5b
        5b c8 15 16 75 e0 44 00  42 65 e6 6c e2 69 a2 74
        78 ae 9c c3 d6 64 a2 dd  73 5e 0b a3 f4 f9 76 f6
        73 6f 80 0b b9 f7 51 5c  5f c4 64 23 11 1a 08 5a
        2f ed a6 87 20 bb 54 03  41 f0 1e 34 cc d7 65 c3
        ed e4 64 ff cb 3c e5 ac  fe 56 69 29 d1 e0 c3 cc
        e9 93 ed 5c f5 dc c6 9a  b3 c3 00 b9 4a 0a e7 e7
        b0 9b bb 53 2c 9f 64 eb  42 ad 60 80 71 5e cf ce
        26 e1 c4 0f 1c ca d8 ab  36 37 7b 60 34 40 03 b0
        82 bc 42 03 9d 90 0d e0  08 8e d5 d0 f1 4a 46 ed
        df 4b 3b 7d b4 c5 7b dd  4c 05 92 6f 22 aa d7 4d
        0a 2e 0b fd a4 3c bb ab  6e ba c1 20 36 d1 2f bd
        e4 55 93 d8 21 28 2f 2a  4d fe 0e d0 03 57 69 f9
        96 61 78 b3 4c 7f 0f 8e  b7 a5 39 ec 7a 91 b0 2d
        57 cb 04 36 1d e5 6f 8d  bd 74 25 d4 44 55 22 e0
        67 5e 5d ca 7f 91 8a d5  7f 32 20 d6 d7 21 82 8f
        ca 51 c8 1c fc f3 3f 2c  41 38 86 06 b5 9e 04 e9
        a0 fd 66 8e bd 4f 32 b4  89 ac 3b ae b2 cd ea 42
        17 bf a5 43 bc 23 29 e6  5a 6f 4e 28 5e 56 9f 0e
        2c 69 ba 37 6e 0e ef 2b  94 65 77 ed 6d c9 3a 00
        73 42 06 79 a9 ea 3d 60  ef eb 02 8c c1 cf 92 59
        f5 f2 17 bf 2c 42 68 50  9e 01 b9 bd f1 48 2a 80
        83 9c 33 60 e9 ff ae 78  ee 0e a2 17 22 0f 16 61
        7f 28 42 ba 3e 67 ef 2d  ae 41 4e ca 19 1d b2 d2
        5b 11 5c 8b 36 8e 36 1a  fd 30 bf fe f3 db 13 bd
        d1 96 9e c4 38 c2 d2 de  cb de e2 e6 f6 62 5e 9f
        68 74 56 5a f5 e8 60 55  da f4 90 4b 8e d8 de 88
        a6 f9 ac e5 f9 3f c1 ad  30 48 64 90 d8 43 1e 0c
        01 4c 38 58 0c 99 c1 0c  36 b0 a8 e9 18 a5 24 97
        d7 d8 7c 31 a3 8a f2 eb  54 8d da a5 ac fc 20 74
        e9 48 19 a0 cb ea c1 6b  98 b7 8e 8c 5a 74 c8 be
        1c c9 21 31 f3 9a 28 7b  44 ef ac 6f e1 0b 79 47
        10 25 75 e3 14 84 6d ec  4b bb 9c 7a 7c 6f 61 e3
        23 0c 48 5f d4 54 41 55  6d 79 12 58 f8 34 ed f0
        2c 55 d2 7a d7 bd 27 b5  8f c9 9b 2c 2f 2a 41 d0
        f8 96 93 63 50 41 92 e2  b2 c1 a7 68 ea b3 e6 56
        3a 3d 95 6b 3d 69 72 3a  74 30 e9 27 3d dc 3b d6
        b9 96 4e d7 ac b2 59 fd  cc 37 b5 ec 87 de dc ca
        9f 16 12 54 ac ad f1 2e  32 8a b5 a4 57 f1 00 1d
        b3 b2 67 10 64 27 4c 24  10 bc 70 c8 c4 84 8c 33
        e9 6e 24 81 40 73 75 90  49 82 e5 6d 69 ff 5e 84
        86 3e dc 68 35 fb 06 df  ad e8 4e f5 49 4d cb aa
        5d e7 13 6e 31 d4 8d a1  5c 60 e3 41 a5 8a 43 1a
        1d 3b b0 e5 b0 57 83 1a  d1 f4 ce 23 64 e3 a3 f4
        79 bd f2 e1 81 4b d1 64  cf 0d c3 d0 29 16 f4 30
        7c c8 9d 6d 76 41 d5 7e  dd e5 36 c8 14 ba 7d 47
        7e 05 62 6a 26 6e fc 1a  2f 3b 52 b3 9f 2e 1f 6c
        40 f1 7d 46 10 0f 70 c7  9f 6f 04 2e 0e 8c 16 50
        bc d4 46 ef 72 30 be 91  32 c0 02 fb 2a c3 b6 bd
        47 7f 6b 13 2f d2 b9 68  13 74 28 7f a8 06 7d 3f
        3e 79 4c 53 b7 28 10 5c  2c 68 73 6e 05 35 d9 51
        be 7a 5d 80 24 ab 1a 97  20 f3 e2 d4 65 c6 31 e7
        c8 66 a0 39 39 5c a7 c4  63 a4 d4 ba 83 fb 43 b6
        58 e5 81 49 4e 87 3b 8a  2b 73 62 a4 ca f1 cb dd
        cb 20 30 1f fc 7a a7 7c  d2 0e 5b 23 1e d6 78 e9
        eb 3d b5 aa 7f a3 bb c1  a1 4f f3 01 9a 93 51 74
        46 03 84 12 f4 94 5a dd  8d 10 2c a8 f6 a3 10 f1
        00 92 dc 07 aa 07 5a 9f  d8 d1 0b 16 31 dc a8 d8
        e8 ee ad 84 b6 6a 9c 70  e5 9f 88 31 9a 13 c2 9a
        c3 7b 2c c4 d5 07 12 32  25 cd ee bd 92 9f e0 c2
        9a e4 07 bd ed fd d5 ea  9a c7 9a 32 99 9e c4 d5
        ca 93 1a 7a f9 7f 76 9b  d3 82 90 30 7e 92 c1 5b
        31 bc ea b0 b5 30 e0 f2  c8 0c d0 3a 50 d9 83 23
        7e 80 2e 48 c0 f8 f5 bd  30 6c 93 3e a9 6a 33 25
        7e a0 6d 62 9e fd b0 64  a5 17 60 65 43 93 1b 4f
        22 af 03 e7 e9 48 c3 34  7f c8 aa 5f 12 39 52 7a
        48 55 69 98 15 14 fc f5  1f c7 5a 01 3f 88 02 20
        0a 52 f1 a9 6a a3 d6 96  ec f4 52 8e 58 3b 65 f1
        00 aa 29 c6 7a da db 7d  b4 03 a6 86 5b af 0d c3
        c9 3c 43 f9 d0 b1 93 fb  58 4d 2a 9d 95 68 75 aa
        fa 6c 43 b9 c8 0b 4b e9  9d 7f 38 ec 10 14 c9 7f
        82 05 f6 45 92 88 7d ec  1d 29 ef f8 dd 9e 6b 81
        00 06 ed 2d 7c e1 e1 75  9f 95 70 35 b2 c4 23 4f
        0a 89 4c 9b fa 94 ce de  1f db 87 b9 e0 5d e7 1f
        b0 6f 4a 39 82 1b 5a a2  d6 c9 b3 5b ef 16 fc d3
        24 02 d4 5c 11 38 da 43  b8 0b 73 65 72 3b 22 aa
        33 78 83 7b e0 d0 53 85  96 b3 b4 ab 62 6d b8 84
        01 5c a6 82 2d bd 96 27  3d 68 74 f3 b9 d7 62 67
        b7 16 8a b8 58 b7 dc e8  df cf da 75 ef 6a 67 5b
        1b e3 84 23 8d 1c 38 31  2c 4b 63 ff 50 56 90 cc
        76 9c 64 c2 57 55 90 db  be cc 0e b4 9c 60 08 e4
        42 99 57 0a aa 4c e1 86  b9 ec 0a d1 c0 fc f4 d2
        12 95 78 46 52 e5 3e db  40 37 03 bd c4 dd cb 42
        c2 66 67 d5 6c 45 3f 1f  30 7b 1b 90 3d 6e 24 80
        e7 4b 41 b2 89 90 37 74  e5 76 be 33 b2 d8 df 42
        c4 d6 a9 3c a0 94 29 61  b3 36 39 ac 80 80 fb 8a
OOB:
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff 10 64 11 ad
        d4 07 d7 d4 b1 29 84 16
        f8 78 04 71 fd ec d6 c9
        8b 1c 5a 0a 02 fe 8a 20
        9e 56 51 40 c3 0d b6 ca
        9a ae 43 d8 45 e6 0e 61
        47 57 c0 b1 e2 31 fd 00
        0e 14 17 aa ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
        ff ff ff ff ff ff ff ff
uboot>

0

Share this post


Link to post
Share on other sites

I also tried the 1.1.0 firmware again, which it was running on before, and it did the same thing. 

0

Share this post


Link to post
Share on other sites

Seb, can you please direct me to any documentation regarding recovery from this issue? I have found a few things in the openwrt documentation, but nothing that specifically regards this issue with the ATH chipset. I am stumped and my tetra is effectively bricked at the moment. 

Thanks in advance.

0

Share this post


Link to post
Share on other sites

Same, I tried the factory firmware as well. Still getting the same error. I've done the legwork on this issue, I just need a pointer in a direction I may not have anticipated. Not asking anyone to solve this for me. 

To sum it up:

 

  • The tetra was running on 1.1.0 and factory firmware previously.
  • After update to 1.1.1 I started getting the 'bad magic number' error. 
  • Magic number looks good, and is the same as in the other 2 previous firmware releases.
  • I've tried the update process with 3 different firmwares, and after the flash to 1.1.1 none of them work anymore.


My next step is to move to jtag the board, and see what I can see. Will post results if I get them. However, if anyone has any advice on how to proceed that would be welcome. 

 

0

Share this post


Link to post
Share on other sites

I guess I don't know enough about this 'magic number.'  I saw a bad CRC message on post or boot that I thought might be related but I was told that's normal.  Is there a way to completely format this without making it a bring and needing to jtag it?  Maybe erase everything then rebuild before rebooting?

0

Share this post


Link to post
Share on other sites
On 21/10/2016 at 4:07 PM, theDingosBaby said:

Same, I tried the factory firmware as well. Still getting the same error. I've done the legwork on this issue, I just need a pointer in a direction I may not have anticipated. Not asking anyone to solve this for me. 

To sum it up:

 

  • The tetra was running on 1.1.0 and factory firmware previously.
  • After update to 1.1.1 I started getting the 'bad magic number' error. 
  • Magic number looks good, and is the same as in the other 2 previous firmware releases.
  • I've tried the update process with 3 different firmwares, and after the flash to 1.1.1 none of them work anymore.


My next step is to move to jtag the board, and see what I can see. Will post results if I get them. However, if anyone has any advice on how to proceed that would be welcome. 

 

Hi Dude.

 

I have a bricked Pineapple .. 

 

Would you be able to tell me how I can Jtag it ?! 

 

if this is an option?! 

 

I did delete a memory slot ( by being stupid and trying things around the net. ) 

 

I will appreciate it ! 

Thanks  a lot ! 

0

Share this post


Link to post
Share on other sites

I have some pics of the pcb that show where i think the jtag/programming pads are, but I didn't end up having to do that. Are you certain that it is no longer capable of any DFU access via the ETH micro usb port? I followed this guide using my linux rig, with factory firmware. Then updated to latest build, and got mine running again. 

http://wiki.wifipineapple.com/#!./troubleshooting.md#Firmware_Recovery

0

Share this post


Link to post
Share on other sites

Yes.. I can't access it via the UART port or ETH port. 

 

I could access it via UART port but I messed with the memory and I delete something.. 

Would you know if there is any way I could restore it ..

That will be great.

 

Many thanks

0

Share this post


Link to post
Share on other sites
1 hour ago, stilia.johny said:

Yes.. I can't access it via the UART port or ETH port. 

 

I could access it via UART port but I messed with the memory and I delete something.. 

Would you know if there is any way I could restore it ..

That will be great.

 

Many thanks

If you messed with the memory, and lost UART, then you most certainly corrupted the bootloader. 

Without proper flashing hardware for the TETRA, I don't think you'd be able to fix it. 

0

Share this post


Link to post
Share on other sites

Lol, what did you do via UART? It's not open source, but I suspect there exists a custom made programming jig, or software that interfaces the NAND flash. It is just speculation at this point, since my reverse engineering chops aren't as good as I'd like, but it won't be long before i figure it out. How familiar are you with OpenWRT devices?

0

Share this post


Link to post
Share on other sites
7 hours ago, stilia.johny said:

I could access it via UART port but I messed with the memory and I delete something.. 

This most likely means he erased partitions and with that uboot. If uboot is gone there is nothing to boot, so the entire device will need to be reflashed. This is done using a specialized flashing tool and is done at the factory. I am finding out if it is easily possible with readily available hardware.

0

Share this post


Link to post
Share on other sites
7 hours ago, Sebkinne said:

This most likely means he erased partitions and with that uboot. If uboot is gone there is nothing to boot, so the entire device will need to be reflashed. This is done using a specialized flashing tool and is done at the factory. I am finding out if it is easily possible with readily available hardware.

Yes you are right.. no uboot is coming up. :(

0

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!


Register a new account

Sign in

Already have an account? Sign in here.


Sign In Now

  • Recently Browsing   0 members

    No registered users viewing this page.