Hey there, I would apprieciate some help on my bricked FirWRT:
Recently I bricked my FireWRT after trying to flash OpenWRT (openwrt-ramips-mt7621-firewrt-squashfs-sysupgrade.bin) from here:
http://wiki.openwrt.org/toh/firefly/firewrt
I could re-flash the original firmware
2015-05-07-firewrt-mt7621-openwrt-trunk.bin or
2015-06-02-firewrt-mt7621-openwrt-trunk.bin
from here:
http://en.t-firefly.com/en/firelink/firewrt/download/
as described in the official guide (HTTP download):
http://wiki.t-firefly.com/index.php/FireWRT/Update_Firmware/en#Download_OpenWrt_Firmware
The problem is, that the device is not coming up but running a boot loop.
The serial debug console looks like this:
U-Boot 1.1.3 (May 7 2015 - 10:40:34)
Board: Ralink APSoC DRAM: 448 MB
relocate_code Pointer at: 9bfb4000
Config XHCI 40M PLL
***********************
Watchdog Reset Occurred
***********************
flash manufacture id: ef, device id 40 18
find flash: W25Q128BV
============================================
FireWRT UBoot Version: 1.0
--------------------------------------------
ASIC MT7621A DualCore (MAC to MT7530 Mode)
DRAM_CONF_FROM: Auto-Detection
DRAM_TYPE: DDR3
DRAM bus: 16 bit
Xtal Mode=3 OCP Ratio=1/4
Flash component: SPI Flash
Date:May 7 2015 Time:10:40:34
============================================
icache: sets:256, ways:4, linesz:32 ,total:32768
dcache: sets:256, ways:4, linesz:32 ,total:32768
set LAN/WAN WLL
.-------. __ __
| _____/ | | | | __
| __/__ .----..----.| | __ .-----.| |/ /
| | | || _|| -__|| |__ | || || <
|__| |__||__| |____||_____||__||__|__||__|\__\
--------------------------------------------------
FIREFLY Team
Full of enthusiasm and dream
<fl.service@t-firely.com>
--------------------------------------------------
Please choose the operation:
1: Load system code to SDRAM via TFTP.
2: Load system code then write to Flash via TFTP.
3: Boot system code via Flash (default).
4: Entr boot command line interface.
5: Load system code then write to Flash via Httpd.
7: Load Boot Loader code then write to Flash via Serial.
9: Load Boot Loader code then write to Flash via TFTP.
0
3: System Boot system code via Flash.
## Booting image at bfc50000 ...
Image Name: MIPS OpenWrt Linux-3.18.11
Image Type: MIPS Linux Kernel Image (lzma compressed)
Data Size: 1194098 Bytes = 1.1 MB
Load Address: 80001000
Entry Point: 80001000
Verifying Checksum ... OK
Uncompressing Kernel Image ... OK
No initrd
## Transferring control to Linux (at address 80001000) ...
## Giving linux memsize in MB, 448
Starting kernel ...
[ 0.000000] Linux version 3.18.11 (wengbj@tchip-server) (gcc version 4.8.3 (OpenWrt/Linaro GCC 4.8-2014.04 r45583) ) #8 SMP Tue Jun 2 16:56:47 CST 2015
[ 0.000000] SoC Type: Mediatek MT7621 ver:1 eco:3
[ 0.000000] bootconsole [early0] enabled
[ 0.000000] CPU0 revision is: 0001992f (MIPS 1004Kc)
[ 0.000000] MIPS: machine is Firefly FireWRT
[ 0.000000] Determined physical RAM map:
[ 0.000000] memory: 10000000 @ 00000000 (usable)
[ 0.000000] Initrd not found or empty - disabling initrd
[ 0.000000] Zone ranges:
[ 0.000000] Normal [mem 0x00000000-0x0fffffff]
[ 0.000000] HighMem empty
[ 0.000000] Movable zone start for each node
[ 0.000000] Early memory node ranges
[ 0.000000] node 0: [mem 0x00000000-0x0fffffff]
[ 0.000000] Initmem setup node 0 [mem 0x00000000-0x0fffffff]
[ 0.000000] Detected 3 available secondary CPU(s)
[ 0.000000] Primary instruction cache 32kB, VIPT, 4-way, linesize 32 bytes.
[ 0.000000] Primary data cache 32kB, 4-way, PIPT, no aliases, linesize 32 bytes
[ 0.000000] MIPS secondary cache 256kB, 8-way, linesize 32 bytes.
[ 0.000000] PERCPU: Embedded 9 pages/cpu @8120d000 s5696 r8192 d22976 u36864
[ 0.000000] Built 1 zonelists in Zone order, mobility grouping on. Total pages: 65024
[ 0.000000] Kernel command line: console=ttyS0,57600 rootfstype=squashfs,jffs2
[ 0.000000] PID hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.000000] Dentry cache hash table entries: 32768 (order: 5, 131072 bytes)
[ 0.000000] Inode-cache hash table entries: 16384 (order: 4, 65536 bytes)
[ 0.000000] Writing ErrCtl register=00001031
[ 0.000000] Readback ErrCtl register=00001031
[ 0.000000] Memory: 255912K/262144K available (2688K kernel code, 144K rwdata, 520K rodata, 156K init, 224K bss, 6232K reserved, 0K highmem)
[ 0.000000] SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=4, Nodes=1
[ 0.000000] Hierarchical RCU implementation.
[ 0.000000] NR_IRQS:256
[ 0.000000] gic: revision 3.0
[ 0.000000] CPU Clock: 880MHz
[ 0.000000] Calibrating delay loop... 577.53 BogoMIPS (lpj=2887680)
[ 0.060000] pid_max: default: 32768 minimum: 301
[ 0.070000] Mount-cache hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.080000] Mountpoint-cache hash table entries: 1024 (order: 0, 4096 bytes)
[ 0.090000] Primary instruction cache 32kB, VIPT, 4-way, linesize 32 bytes.
[ 0.090000] Primary data cache 32kB, 4-way, PIPT, no aliases, linesize 32 bytes
[ 0.090000] MIPS secondary cache 256kB, 8-way, linesize 32 bytes.
[ 0.090000] CPU1 revision is: 0001992f (MIPS 1004Kc)
[ 0.200000] Synchronize counters for CPU 1: done.
[ 0.210000] Primary instruction cache 32kB, VIPT, 4-way, linesize 32 bytes.
[ 0.210000] Primary data cache 32kB, 4-way, PIPT, no aliases, linesize 32 bytes
[ 0.210000] MIPS secondary cache 256kB, 8-way, linesize 32 bytes.
[ 0.210000] CPU2 revision is: 0001992f (MIPS 1004Kc)
[ 0.310000] Synchronize counters for CPU 2: done.
[ 0.330000] Primary instruction cache 32kB, VIPT, 4-way, linesize 32 bytes.
[ 0.330000] Primary data cache 32kB, 4-way, PIPT, no aliases, linesize 32 bytes
[ 0.330000] MIPS secondary cache 256kB, 8-way, linesize 32 bytes.
[ 0.330000] CPU3 revision is: 0001992f (MIPS 1004Kc)
[ 0.430000] Synchronize counters for CPU 3: done.
[ 0.450000] Brought up 4 CPUs
[ 0.450000] pinctrl core: initialized pinctrl subsystem
[ 0.460000] NET: Registered protocol family 16
[ 0.470000] pull PCIe RST: RALINK_RSTCTRL = 6000000
[ 0.770000] release PCIe RST: RALINK_RSTCTRL = 7000000
[ 0.780000] ***** Xtal 40MHz *****
[ 0.780000] release PCIe RST: RALINK_RSTCTRL = 7000000
[ 0.790000] Port 0 N_FTS = 1b105000
[ 0.790000] Port 1 N_FTS = 1b105000
[ 0.800000] Port 2 N_FTS = 1b105000
[ 1.940000] -> 21007f2
[ 1.940000] PCIE0 enabled
[ 1.950000] PCIE1 enabled
[ 1.950000] PCIE2 enabled
[ 1.960000] PCI host bridge /pcie@1e140000 ranges:
[ 1.970000] MEM 0x0000000060000000..0x000000006fffffff
[ 1.980000] IO 0x000000001e160000..0x000000001e16ffff
[ 2.020000] mt7621_gpio 1e000600.gpio: registering 32 gpios
[ 2.030000] mt7621_gpio 1e000600.gpio: registering 32 gpios
[ 2.040000] mt7621_gpio 1e000600.gpio: registering 32 gpios
[ 2.050000] PCI host bridge to bus 0000:00
[ 2.060000] pci_bus 0000:00: root bus resource [mem 0x60000000-0x6fffffff]
[ 2.080000] pci_bus 0000:00: root bus resource [io 0xffffffff]
[ 2.090000] pci_bus 0000:00: No busn resource found for root bus, will use [bus 00-ff]
[ 2.110000] pci 0000:00:01.0: bridge configuration invalid ([bus 00-00]), reconfiguring
[ 2.130000] pci 0000:00:00.0: BAR 0: no space for [mem size 0x80000000]
[ 2.150000] pci 0000:00:00.0: BAR 0: failed to assign [mem size 0x80000000]
[ 2.160000] pci 0000:00:01.0: BAR 0: no space for [mem size 0x80000000]
[ 2.180000] pci 0000:00:01.0: BAR 0: failed to assign [mem size 0x80000000]
[ 2.190000] pci 0000:00:02.0: BAR 0: no space for [mem size 0x80000000]
[ 2.210000] pci 0000:00:02.0: BAR 0: failed to assign [mem size 0x80000000]
[ 2.220000] pci 0000:00:00.0: BAR 8: assigned [mem 0x60000000-0x600fffff]
[ 2.240000] pci 0000:00:00.0: BAR 9: assigned [mem 0x60100000-0x601fffff pref]
[ 2.250000] pci 0000:00:01.0: BAR 8: assigned [mem 0x60200000-0x602fffff]
[ 2.270000] pci 0000:00:01.0: BAR 9: assigned [mem 0x60300000-0x603fffff pref]
[ 2.290000] pci 0000:00:02.0: BAR 8: assigned [mem 0x60400000-0x604fffff]
[ 2.300000] pci 0000:00:02.0: BAR 9: assigned [mem 0x60500000-0x605fffff pref]
[ 2.320000] pci 0000:00:00.0: BAR 1: assigned [mem 0x60600000-0x6060ffff]
[ 2.330000] pci 0000:00:01.0: BAR 1: assigned [mem 0x60610000-0x6061ffff]
[ 2.350000] pci 0000:00:02.0: BAR 1: assigned [mem 0x60620000-0x6062ffff]
[ 2.360000] pci 0000:00:02.0: BAR 7: no space for [io size 0x1000]
[ 2.380000] pci 0000:00:02.0: BAR 7: failed to assign [io size 0x1000]
[ 2.390000] pci 0000:01:00.0: BAR 0: assigned [mem 0x60000000-0x600fffff 64bit]
[ 2.410000] pci 0000:01:00.0: BAR 6: assigned [mem 0x60100000-0x6010ffff pref]
[ 2.430000] pci 0000:00:00.0: PCI bridge to [bus 01]
[ 2.440000] pci 0000:00:00.0: bridge window [mem 0x60000000-0x600fffff]
[ 2.450000] pci 0000:00:00.0: bridge window [mem 0x60100000-0x601fffff pref]
[ 2.470000] pci 0000:02:00.0: BAR 0: assigned [mem 0x60200000-0x602fffff 64bit]
[ 2.490000] pci 0000:02:00.0: BAR 6: assigned [mem 0x60300000-0x6030ffff pref]
[ 2.500000] pci 0000:00:01.0: PCI bridge to [bus 02]
[ 2.510000] pci 0000:00:01.0: bridge window [mem 0x60200000-0x602fffff]
[ 2.530000] pci 0000:00:01.0: bridge window [mem 0x60300000-0x603fffff pref]
[ 2.540000] pci 0000:03:00.0: BAR 6: assigned [mem 0x60500000-0x6050ffff pref]
[ 2.560000] pci 0000:03:00.0: BAR 5: assigned [mem 0x60400000-0x604001ff]
[ 2.580000] pci 0000:03:00.0: BAR 4: no space for [io size 0x0020]
[ 2.590000] pci 0000:03:00.0: BAR 4: failed to assign [io size 0x0020]
[ 2.600000] pci 0000:03:00.0: BAR 0: no space for [io size 0x0008]
[ 2.620000] pci 0000:03:00.0: BAR 0: failed to assign [io size 0x0008]
[ 2.630000] pci 0000:03:00.0: BAR 2: no space for [io size 0x0008]
[ 2.650000] pci 0000:03:00.0: BAR 2: failed to assign [io size 0x0008]
[ 2.660000] pci 0000:03:00.0: BAR 1: no space for [io size 0x0004]
[ 2.680000] pci 0000:03:00.0: BAR 1: failed to assign [io size 0x0004]
[ 2.690000] pci 0000:03:00.0: BAR 3: no space for [io size 0x0004]
[ 2.710000] pci 0000:03:00.0: BAR 3: failed to assign [io size 0x0004]
[ 2.720000] pci 0000:00:02.0: PCI bridge to [bus 03]
[ 2.730000] pci 0000:00:02.0: bridge window [mem 0x60400000-0x604fffff]
[ 2.750000] pci 0000:00:02.0: bridge window [mem 0x60500000-0x605fffff pref]
[ 2.760000] BAR0 at slot 0 = 0
[ 2.770000] bus=0x0, slot = 0x0
[ 2.780000] BAR0 at slot 1 = 0
[ 2.780000] bus=0x0, slot = 0x1
[ 2.790000] BAR0 at slot 2 = 0
[ 2.800000] bus=0x0, slot = 0x2
[ 2.810000] bus=0x1, slot = 0x0, irq=0xff
[ 2.810000] bus=0x2, slot = 0x1, irq=0xff
[ 2.820000] bus=0x3, slot = 0x2, irq=0x0
[ 2.830000] Switched to clocksource MIPS
[ 2.850000] NET: Registered protocol family 2
[ 2.860000] TCP established hash table entries: 2048 (order: 1, 8192 bytes)
[ 2.870000] TCP bind hash table entries: 2048 (order: 2, 16384 bytes)
[ 2.890000] TCP: Hash tables configured (established 2048 bind 2048)
[ 2.900000] TCP: reno registered
[ 2.910000] UDP hash table entries: 256 (order: 1, 8192 bytes)
[ 2.920000] UDP-Lite hash table entries: 256 (order: 1, 8192 bytes)
[ 2.940000] NET: Registered protocol family 1
[ 2.950000] futex hash table entries: 1024 (order: 4, 65536 bytes)
[ 2.970000] squashfs: version 4.0 (2009/01/31) Phillip Lougher
[ 2.980000] jffs2: version 2.2 (NAND) (SUMMARY) (LZMA) (RTIME) (CMODE_PRIORITY) (c) 2001-2006 Red Hat, Inc.
[ 3.000000] msgmni has been set to 499
[ 3.010000] io scheduler noop registered
[ 3.020000] io scheduler deadline registered (default)
[ 3.030000] Serial: 8250/16550 driver, 2 ports, IRQ sharing disabled
[ 3.050000] console [ttyS0] disabled
[ 3.060000] 1e000c00.uartlite: ttyS0 at MMIO 0x1e000c00 (irq = 34, base_baud = 3125000) is a 16550A
[ 3.080000] console [ttyS0] enabled
[ 3.080000] console [ttyS0] enabled
[ 3.090000] bootconsole [early0] disabled
[ 3.090000] bootconsole [early0] disabled
[ 3.110000] m25p80 spi32766.0: w25q128 (16384 Kbytes)
[ 3.120000] m25p80 spi32766.0: using chunked io
[ 3.130000] 4 ofpart partitions found on MTD device spi32766.0
[ 3.150000] Creating 4 MTD partitions on "spi32766.0":
[ 3.160000] 0x000000000000-0x000000030000 : "u-boot"
[ 3.170000] 0x000000030000-0x000000040000 : "u-boot-env"
[ 3.180000] 0x000000040000-0x000000050000 : "factory"
[ 3.200000] 0x000000050000-0x000001000000 : "firmware"
[ 3.300000] random: nonblocking pool is initialized
[ 3.320000] 2 uimage-fw partitions found on MTD device firmware
[ 3.340000] 0x000000050000-0x0000001738b2 : "kernel"
[ 3.350000] mtd: partition "kernel" must either start or end on erase block boundary or be smaller than an erase block -- forcing read-only
[ 3.380000] 0x0000001738b2-0x000001000000 : "rootfs"
[ 3.390000] mtd: partition "rootfs" must either start or end on erase block boundary or be smaller than an erase block -- forcing read-only
[ 3.420000] mtd: device 5 (rootfs) set to be root filesystem
[ 3.430000] 1 squashfs-split partitions found on MTD device rootfs
[ 3.440000] 0x000000640000-0x000001000000 : "rootfs_data"
[ 3.460000] netif_napi_add() called with weight 128 on device eth%d
[ 3.480000] change HW-TRAP to 0x17ccf
[ 3.490000] libphy: mdio: probed
[ 3.510000] ralink_soc_eth 1e100000.ethernet: loaded mt7530 driver
[ 3.530000] ralink_soc_eth 1e100000.ethernet eth0: ralink at 0xbe100000, irq 11
[ 3.540000] mt7621_wdt 1e000100.wdt: Initialized
[ 3.560000] TCP: cubic registered
[ 3.560000] NET: Registered protocol family 17
[ 3.570000] bridge: automatic filtering via arp/ip/ip6tables has been deprecated. Update your scripts to load br_netfilter if you need this.
[ 3.600000] 8021q: 802.1Q VLAN Support v1.8
[ 3.620000] VFS: Mounted root (squashfs filesystem) readonly on device 31:5.
[ 3.640000] Freeing unused kernel memory: 156K (80349000 - 80370000)
[ 5.420000] init: failed to symlink /tmp -> /var
[ 5.430000] init: Console is alive
[ 5.440000] init: - watchdog -
[ 7.870000] ralink_soc_eth 1e100000.ethernet eth0: port 3 link up
[ 8.950000] usbcore: registered new interface driver usbfs
[ 8.960000] usbcore: registered new interface driver hub
[ 8.970000] usbcore: registered new device driver usb
[ 8.990000] exFAT: Version 1.2.9
[ 9.030000] SCSI subsystem initialized
[ 9.060000] ahci 0000:03:00.0: SSS flag set, parallel bus scan disabled
[ 9.070000] ahci 0000:03:00.0: AHCI 0001.0200 32 slots 2 ports 6 Gbps 0x3 impl SATA mode
[ 9.090000] ahci 0000:03:00.0: flags: 64bit ncq sntf stag led clo pmp pio slum part ccc sxs
[ 9.110000] scsi host0: ahci
[ 9.120000] scsi host1: ahci
[ 9.120000] ata1: SATA max UDMA/133 abar m512@0x60400000 port 0x60400100 irq 33
[ 9.140000] ata2: SATA max UDMA/133 abar m512@0x60400000 port 0x60400180 irq 33
[ 9.510000] ata1: SATA link down (SStatus 0 SControl 300)
[ 9.870000] ata2: SATA link down (SStatus 0 SControl 300)
[ 9.900000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 9.930000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 9.960000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 9.990000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.020000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.050000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.080000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.110000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.140000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.170000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.240000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.270000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.300000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.330000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.360000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.390000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.420000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.450000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.480000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.510000] FM_OUT value: u4FmOut = 0(0x00000000)
[ 10.670000] xhci-hcd xhci-hcd: xHCI Host Controller
[ 10.680000] xhci-hcd xhci-hcd: new USB bus registered, assigned bus number 1
[ 10.700000] xhci-hcd xhci-hcd: irq 30, io mem 0x1e1c0000
[ 10.710000] hub 1-0:1.0: USB hub found
[ 10.720000] hub 1-0:1.0: 2 ports detected
[ 10.730000] xhci-hcd xhci-hcd: xHCI Host Controller
[ 10.740000] xhci-hcd xhci-hcd: new USB bus registered, assigned bus number 2
[ 10.760000] hub 2-0:1.0: USB hub found
[ 10.760000] hub 2-0:1.0: 1 port detected
[ 10.780000] MTK MSDC device init.
[ 10.830000] msdc0 -> set mclk to 0!!! <- msdc_set_mclk() : L<641> PID<kworker/u8:1><0x17>
[ 10.830000] mtk-sd: MediaTek MT6575 MSDC Driver
[ 10.830000] sdhci: Secure Digital Host Controller Interface driver
[ 10.830000] sdhci: Copyright(c) Pierre Ossman
[ 10.830000] sdhci-pltfm: SDHCI platform and OF driver helper
[ 10.830000] usbcore: registered new interface driver usb-storage
[ 11.440000] init: - preinit -
Press the [f] key and hit [enter] to enter failsafe mode
Press the [1], [2], [3] or [4] key and hit [enter] to select the debug level
[ 15.180000] mount_root: jffs2 not ready yet, using temporary tmpfs overlay
[ 15.210000] procd: - early -
[ 15.220000] procd: - watchdog -
[ 16.060000] procd: - ubus -
[ 17.070000] procd: - init -
Please press Enter to activate this console.
[ 17.980000] NET: Registered protocol family 10
[ 18.000000] ntfs: driver 2.1.31 [Flags: R/O MODULE].
[ 18.020000] ip6_tables: (C) 2000-2006 Netfilter Core Team
[ 18.050000] hidraw: raw HID events driver (C) Jiri Kosina
[ 18.070000] fuse init (API version 7.23)
[ 19.070000]
[ 19.070000]
[ 19.070000] === pAd = c0781000, size = 1980536 ===
[ 19.070000]
[ 19.090000] <-- RTMPAllocTxRxRingMemory, Status=0
[ 19.100000] <-- RTMPAllocAdapterBlock, Status=0
[ 19.110000] device_id =0x7662
This is reproducable and always happening around second 18/19 after the following two lines:
← RTMPAllocAdapterBlock, Status=0
← RTMPAllocTxRxRingMemory, Status=0
I can enter boot command line interface, tftp and http-download and failsafe-mode via serial debug console.
The device is not responding to “ping” in any mode. The only mode where it responds is http-download. Telnet doesnt seem to work. TFTP wont accept any files.
In failsafe mode Im able to do “mount_root” and “firstboot”:
root@(none):/# mount_root
[ 90.950000] mount_root: jffs2 not ready yet, using temporary tmpfs overlay
root@(none):/# firstboot -y
[ 95.170000] jffs2reset: /dev/mtdblock6 is not mounted
[ 95.180000] jffs2reset: /dev/mtdblock6 will be erased on next mount
Is there any way to revive this device? I would be happy to bring in any details needed…
Thanks for your efforts _ moritz