Welcome! Log In Create A New Profile

Advanced

Buffalo LS421DE Password for root via Serial Console/Reset root password/Boot Single User mode

Posted by Antonas 
I replaced PID device
dumpnf > /tmp/nas_feature
sed -i 's/PID=0x0000300С/PID=0x00002025/g' /tmp/nas_feature
setnf < /tmp/nas_feature

After restarting it disappeared in the network.
BootLog via Serial Console
BootROM 1.08
Booting from SPI flash


General initialization - Version: 1.0.0
mvBoardSerdesModulesScan: mvTwsiRead error, Using default serdes configuration ****
High speed PHY - Version: 2.1.4 (COM-PHY-V20)
Update PEX Device ID 0x67100
High speed PHY - Ended Successfully
DDR3 Training Sequence - Ver 5.7.1

DDR3 Training Sequence - Run DDR3 at 600 Mhz

########### LOG LEVEL 1 (D-UNIT SETUP)###########

Static D-UNIT Setup:
0x00001400 = 0x73014924
0x00001404 = 0x3000B808
0x00001408 = 0x56159996
0x0000140C = 0x3AD93F96
0x00001410 = 0x120F0000
0x00001414 = 0x00000000
0x00001418 = 0x00000E00
0x0000141C = 0x00000642
0x00001420 = 0x00000004
0x00001424 = 0x0100F37F
0x00001428 = 0x000F8830
0x00001454 = 0x00000000
0x00001474 = 0x00000000
0x0000142C = 0x014C4EE4
0x0000147C = 0x0000C671
0x00001494 = 0x00010000
0x00001498 = 0x00000000
0x0000149C = 0x0000030F
DDR3 Training Sequence - Run without PBS.
Cuurrent frequency is: 100MHz
Cuurrent frequency is: 444MHz
DDR3 - Write Leveling - Starting HW WL procedure
DDR3 - Write Leveling - Write Leveling Cs - 0 Results:
DDR3 - Write Leveling - PUP: 0, Phase: 0, Delay: 03
DDR3 - Write Leveling - PUP: 1, Phase: 0, Delay: 07
DDR3 - Write Leveling - HW WL Ended Successfully
DDR3 - Read Leveling - Starting HW RL procedure
DDR3 - Read Leveling - Results for CS - 0
DDR3 - Read Leveling - PUP: 0, Phase: 1, Delay: 1F
DDR3 - Read Leveling - PUP: 1, Phase: 2, Delay: 02
DDR3 - Read Leveling - Read Sample Delay: 09
DDR3 - Read Leveling - Read Ready Delay: 0D
DDR3 - Read Leveling - HW RL Ended Successfully
DDR3 - Write Leveling Hi-Freq Supplement - Starting
DDR3 - Write Leveling Hi-Freq Supplement - SW Override Enabled
COUNT = 0
DATA PUP:
04030201 08070605 0C0B0A09 100F0E0D
14131211 18171615 1C1B1A19 201F1E1D
24232221 28272625 2C2B2A29 302F2E2D
34333231 38373635 3C3B3A39 403F3E3D
44434241 48474645 4C4B4A49 504F4E4D
54535251 58575655 5C5B5A59 605F5E5D
64636261 68676665 6C6B6A69 706F6E6D
74737271 78777675 7C7B7A79 807F7E7D
CS: 0 PUP: 0
Actual Data = 21
Expected Data = 21
uiError = 00
uiErrorN = 00

CS: 0 PUP: 1
Actual Data = 22
Expected Data = 22
uiError = 00
uiErrorN = 00
COUNT = 1
DATA PUP:
04030201 08070605 0C0B0A09 100F0E0D
14131211 18171615 1C1B1A19 201F1E1D
24232221 28272625 2C2B2A29 302F2E2D
34333231 38373635 3C3B3A39 403F3E3D
44434241 48474645 4C4B4A49 504F4E4D
54535251 58575655 5C5B5A59 605F5E5D
64636261 68676665 6C6B6A69 706F6E6D
74737271 78777675 7C7B7A79 807F7E7D
CS: 0 PUP: 0
Actual Data = 21
Expected Data = 21
uiError = 00
uiErrorN = 00

CS: 0 PUP: 1
Actual Data = 22
Expected Data = 22
uiError = 00
uiErrorN = 00
DDR3 - Write Leveling Hi-Freq Supplement - Ended Successfully

########## LOG LEVEL 3(Windows margins per-DQ) ##########
DDR3 - RX  CS: 0

DATA RESULTS:

BYTE:0
  DQ's        LOW       HIGH       WIN-SIZE
============================================
DQ[ 0]     0x41       0x2D       0xED
DQ[ 1]     0x33       0x2F       0xFD
DQ[ 2]     0xE8       0x4B       0x64
DQ[ 3]     0x01       0xFA       0xFA
DQ[ 4]     0x59       0xFE       0xA6
DQ[ 5]     0x9A       0xE5       0x4C
DQ[ 6]     0x6F       0x03       0x95
DQ[ 7]     0x3B       0xAD       0x73

BYTE:1
  DQ's        LOW       HIGH       WIN-SIZE
============================================
DQ[ 8]     0x5D       0x9D       0x41
DQ[ 9]     0x4E       0x0D       0xC0
DQ[10]     0xC7       0x79       0xB3
DQ[11]     0x41       0x01       0xC1
DQ[12]     0xE2       0x40       0x5F
DQ[13]     0x7A       0x86       0x0D
DQ[14]     0xFA       0xC7       0xCE
DQ[15]     0x20       0x08       0xE9


############ LOG LEVEL 2(Windows margins) ############
DDR3 - DQS RX - Set Dqs Centralization Results - CS: 0

DQS    LOW     HIGH     WIN-SIZE      Set
==============================================
0     0x00      0x1A      0x1A       0x0D
1     0x00      0x1B      0x1B       0x0D

########## LOG LEVEL 3(Windows margins per-DQ) ##########
DDR3 - TX  CS: 0

DATA RESULTS:

BYTE:0
  DQ's        LOW       HIGH       WIN-SIZE
============================================
DQ[ 0]      0x2E        0x41        0x13
DQ[ 1]      0x30        0x33        0x03
DQ[ 2]      0x4C        0xE8        0x9C
DQ[ 3]      0xFB        0x01        0x06
DQ[ 4]      0xFF        0x59        0x5A
DQ[ 5]      0xE6        0x9A        0xB4
DQ[ 6]      0x04        0x6F        0x6B
DQ[ 7]      0xAE        0x3B        0x8D

BYTE:1
  DQ's        LOW       HIGH       WIN-SIZE
============================================
DQ[ 8]      0x9E        0x5D        0xBF
DQ[ 9]      0x0E        0x4E        0x40
DQ[10]      0x7A        0xC7        0x4D
DQ[11]      0x02        0x41        0x3F
DQ[12]      0x41        0xE2        0xA1
DQ[13]      0x87        0x7A        0xF3
DQ[14]      0xC8        0xFA        0x32
DQ[15]      0x09        0x20        0x17


############ LOG LEVEL 2(Windows margins) ############
DDR3 - DQS TX - Set Dqs Centralization Results - CS: 0

DQS    LOW     HIGH     WIN-SIZE      Set
==============================================
0     0x00      0x1B      0x1B       0x0D
1     0x00      0x1B      0x1B       0x0D
DDR3 Training Sequence - Ended Successfully
BootROM: Image checksum verification PASSED

____                            _
| __ )  _   _  ___   ___   ___  | |  ___
|  _  \| | | |/   | /   | / _  \| | / _  \
| |_) || |_| ||  __||  __| (_) || || (_) |
|____/  \___/ |_|   |_|   \__/|||_| \___/
         _   _     ____                _
        | | | |   | __ )   ___   ___  | |_
        | | | |___|  _  \ / _  \/ _  \| __|
        | |_| |___| |_) || (_) | (_) || |_
         \___/    |____/  \___/ \___/  \__|
** LOADER **


U-Boot 2011.12 (Jan 15 2015 - 21:22:47) Marvell version: v2011.12 2014_T2.0p1

Board: YANAGI
BoardID= 0
SoC:   MV6710 A1
CPU:   Marvell PJ4B v7 UP (Rev 1) LE
       CPU    @ 1200 [MHz]
       L2     @ 600 [MHz]
       TClock @ 200 [MHz]
       DDR    @ 600 [MHz]
       DDR 16Bit Width, FastPath Memory Access
DRAM:  512 MiB
PHY ID = 1d
PHY ID = 1d

Map:   Code:            0x1ff0d000:0x1ffa2b68
       BSS:             0x1ffefaa4
       Stack:           0x1f9fcef8
       Heap:            0x1f9fd000:0x1ff0d000

NAND:  512 MiB
MMC:   MRVL_MMC: 0
SF: Detected MX25L8005 with page size 64 KiB, total 1 MiB

Initialize and scan all PCI interfaces
PEX unit.port(active IF[-first bus]):
------------------------------------------
PEX 0: Root Complex Interface, Detected Link X1, GEN 1.1
PEX 0.1(1): Detected No Link.
u-boot envinit tval=f24c458d
FPU initialized to Run Fast Mode.
USB 0: Host Mode
USB 1: Host Mode
Modules/Interfaces Detected:
       RGMII0 Phy
       RGMII1 Phy
       PEX0 (Lane 0)
       PEX1 (Lane 1)
       SATA0 (Lane 2)
       SATA1 (Lane 3)
USB Power ON

Marvell Serial ATA Adapter
Integrated Sata device found

MAC Address : 10:6F:3F:XX:XX:XX
Net:   egiga0, egiga1 [PRIME]
hit any key to switch tftp boot.
Hit any key to stop autoboot:  0
Hit any key to stop autoboot:  0
Creating 1 MTD partitions on "nand0":
0x000000000000-0x000002000000 : "mtd=0"
Bad block table found at page 262080, version 0x01
Bad block table found at page 262016, version 0x01
nand_read_bbt: Bad block at 0x000001c40000
nand_read_bbt: Bad block at 0x000001c60000
nand_read_bbt: Bad block at 0x000003fa0000
nand_read_bbt: Bad block at 0x000006080000
nand_read_bbt: Bad block at 0x0000060a0000
nand_read_bbt: Bad block at 0x000008ac0000
nand_read_bbt: Bad block at 0x00000b800000
nand_read_bbt: Bad block at 0x00000efa0000
nand_read_bbt: Bad block at 0x00001a480000
UBI: attaching mtd1 to ubi0
UBI: physical eraseblock size:   131072 bytes (128 KiB)
UBI: logical eraseblock size:    126976 bytes
UBI: smallest flash I/O unit:    2048
UBI: VID header offset:          2048 (aligned 2048)
UBI: data offset:                4096
UBI: attached mtd1 to ubi0
UBI: MTD device name:            "mtd=0"
UBI: MTD device size:            32 MiB
UBI: number of good PEBs:        254
UBI: number of bad PEBs:         2
UBI: max. allowed volumes:       128
UBI: wear-leveling threshold:    4096
UBI: number of internal volumes: 1
UBI: number of user volumes:     1
UBI: available PEBs:             0
UBI: total number of reserved PEBs: 254
UBI: number of PEBs reserved for bad PEB handling: 2
UBI: max/mean erase counter: 3/1
UBIFS: mounted UBI device 0, volume 1, name "boot"
UBIFS: mounted read-only
UBIFS: file system size:   30347264 bytes (29636 KiB, 28 MiB, 239 LEBs)
UBIFS: journal size:       1523712 bytes (1488 KiB, 1 MiB, 12 LEBs)
UBIFS: media format:       w4/r0 (latest is w4/r0)
UBIFS: default compressor: LZO
UBIFS: reserved for root:  1499787 bytes (1464 KiB)
Loading file '/uImage.buffalo' to addr 0x01200000 with size 2905032 (0x002c53c8)...
Done
Loading file '/initrd.buffalo' to addr 0x02600000 with size 11911739 (0x00b5c23b)...
Done
No SPI flash selected. Please run `sf probe'
## Booting kernel from Legacy Image at 01200000 ...
   Image Name:   Linux-3.3.4
   Created:      2015-06-19   9:04:10 UTC
   Image Type:   ARM Linux Kernel Image (uncompressed)
   Data Size:    2904968 Bytes = 2.8 MiB
   Load Address: 00008000
   Entry Point:  00008000
   Verifying Checksum ... OK
## Loading init Ramdisk from Legacy Image at 02600000 ...
   Image Name:   initramfs.cpio
   Created:      2015-06-19   9:04:46 UTC
   Image Type:   ARM Linux RAMDisk Image (gzip compressed)
   Data Size:    11911675 Bytes = 11.4 MiB
   Load Address: 00000000
   Entry Point:  00000000
   Verifying Checksum ... OK
   Loading Kernel Image ... OK
OK

Starting kernel ...


Starting kernel ...

Uncompressing Linux... done, booting the kernel.
Booting Linux on physical CPU 0
Initializing cgroup subsys cpu
Linux version 3.3.4 (root@buildsrv1) (gcc version 4.6.2 (Linaro GCC branch-4.6.2. Marvell GCC 201201-883.01c949de) ) #1 Fri Jun 19 18:04:05 JST 2015
CPU: Marvell PJ4Bv7 Processor [561f5811] revision 1 (ARMv7), cr=10c53c7d
CPU: PIPT / VIPT nonaliasing data cache, PIPT instruction cache
Machine: Marvell Armada-370
Using UBoot passing parameters structure
>>>>>>>Tag MAC 45:8d:4c:XX:XX:XX
>>>>>>>Tag MAC 4c:13:cd:XX:XX:XX
Memory policy: ECC disabled, Data cache writealloc
Built 1 zonelists in Zone order, mobility grouping off.  Total pages: 130048
Kernel command line: console=ttyS0,115200 root=/dev/nfs rw BOOTVER=0.16 UBOOT_DATE=2015/01/15 mtdparts=armada-nand:0x2000000(boot),0x1e000000(rootfs) nandboot=yes
PID hash table entries: 2048 (order: 1, 8192 bytes)
Dentry cache hash table entries: 65536 (order: 6, 262144 bytes)
Inode-cache hash table entries: 32768 (order: 5, 131072 bytes)
Memory: 512MB = 512MB total
Memory: 498096k/498096k available, 26192k reserved, 0K highmem
Virtual kernel memory layout:
    vector  : 0xffff0000 - 0xffff1000   (   4 kB)
    fixmap  : 0xfff00000 - 0xfffe0000   ( 896 kB)
    vmalloc : 0xe0800000 - 0xff000000   ( 488 MB)
    lowmem  : 0xc0000000 - 0xe0000000   ( 512 MB)
    pkmap   : 0xbfe00000 - 0xc0000000   (   2 MB)
    modules : 0xbf000000 - 0xbfe00000   (  14 MB)
      .text : 0xc0008000 - 0xc0538a4c   (5315 kB)
      .init : 0xc0539000 - 0xc055e000   ( 148 kB)
      .data : 0xc055e000 - 0xc058e160   ( 193 kB)
       .bss : 0xc058e184 - 0xc05c6b50   ( 227 kB)
NR_IRQS:256
axp_time_init
Calibrating delay loop... 1196.85 BogoMIPS (lpj=5984256)
pid_max: default: 32768 minimum: 301
Mount-cache hash table entries: 512
CPU: Testing write buffer coherency: ok
hw perfevents: no hardware support available
Setting up static identity map for 0x3dd9c8 - 0x3dda0c
devtmpfs: initialized
xor: measuring software checksum speed
   arm4regs  :  1151.600 MB/sec
   8regs     :   816.800 MB/sec
   32regs    :  1149.200 MB/sec
xor: using function: arm4regs (1151.600 MB/sec)
NET: Registered protocol family 16
L0 cache Enabled
Speculative Prefetch Disabled
aurora_l2_init
Aurora: Enabling L2
AuroraL2: System L2 cache support initialised
Support IO coherency.
Enable DLB and DRAM write coalescing

CPU Interface
-------------
SDRAM_CS0 ....base 00000000, size 512MB
SDRAM_CS1 ....disable
SDRAM_CS2 ....disable
SDRAM_CS3 ....disable
DEVICE_CS0 ....base f2000000, size  32MB
DEVICE_CS1 ....no such
DEVICE_CS2 ....no such
DEVICE_CS3 ....no such
PEX0_MEM ....base e0000000, size  32MB
PEX0_IO ....base f1100000, size   1MB
PEX1_MEM ....base e2000000, size  32MB
PEX1_IO ....base f1200000, size   1MB
INTER_REGS ....base d0000000, size   1MB
DMA_UART ....no such
SPI_CS0 ....base f0000000, size  16MB
SPI_CS1 ....no such
SPI_CS2 ....no such
SPI_CS3 ....no such
SPI_CS4 ....no such
SPI_CS5 ....no such
SPI_CS6 ....no such
SPI_CS7 ....no such
BOOT_ROM_CS ....no such
DEV_BOOTCS ....base f5000000, size  16MB
PMU_SCRATCHPAD ....no such
CRYPT0_ENG ....base c8010000, size  64KB

  Marvell Armada370 Board-- YANAGI  Soc: MV6710 A1 LE
  LSP version: Armada370_LSP_3.1.0_p15_NQ


Detected Tclk 200000000, SysClk 600000000, FabricClk 600000000
gpiochip_add: registered GPIOs 0 to 64 on device: mv_gpio
hw-breakpoint: debug architecture 0x4 unsupported.
Marvell USB EHCI Host controller #0: d004c400
Marvell USB EHCI Host controller #1: d004c200
PCI host bridge to bus 0000:00
pci_bus 0000:00: root bus resource [io  0x0000-0xfffff]
pci_bus 0000:00: root bus resource [mem 0xe0000000-0xe1ffffff]
PCI: bus0: Fast back to back transfers disabled
PCI host bridge to bus 0000:01
pci_bus 0000:01: root bus resource [io  0x100000-0x1fffff]
pci_bus 0000:01: root bus resource [mem 0xe2000000-0xe3ffffff]
PCI: bus1: Fast back to back transfers enabled
pci 0000:00:01.0: BAR 0: assigned [mem 0xe0000000-0xe0001fff 64bit]
bio: create slab <bio-0> at 0
raid6: int32x1    135 MB/s
raid6: int32x2    210 MB/s
raid6: int32x4    203 MB/s
raid6: int32x8    244 MB/s
raid6: using algorithm int32x8 (244 MB/s)
vgaarb: loaded
SCSI subsystem initialized
Switching to clocksource armada370_clocksource
NET: Registered protocol family 2
IP route cache hash table entries: 4096 (order: 2, 16384 bytes)
TCP established hash table entries: 16384 (order: 5, 131072 bytes)
TCP bind hash table entries: 16384 (order: 4, 65536 bytes)
TCP: Hash tables configured (established 16384 bind 16384)
TCP reno registered
UDP hash table entries: 256 (order: 0, 4096 bytes)
UDP-Lite hash table entries: 256 (order: 0, 4096 bytes)
NET: Registered protocol family 1
RPC: Registered named UNIX socket transport module.
RPC: Registered udp transport module.
RPC: Registered tcp transport module.
RPC: Registered tcp NFSv4.1 backchannel transport module.
Trying to unpack rootfs image as initramfs...
Freeing initrd memory: 11632K
cesadev_init(c0540b7c)
mvCesaInit: channels=1, session=640, queue=64
Armada XP hwmon thermal sensor initialized.
Initializing Armada-XP CPU power management  (DISABLED)
MICON ctrl (C) BUFFALO INC. V.1.00 installed.
Buffalo Gpio Control Driver (C) BUFFALO INC. Ver.1.00 installed.
[Switch Driver]irq = -1 install
[Switch Driver] fail install irq(-1)[Switch Driver]irq = 144 install
Buffalo Switch Driver (C) BUFFALO INC. Ver.0.01 installed.
Kernel event proc (C) BUFFALO INC. V.1.00 installed.
initial_polarity_val = 0x0001f800
initial_polarity_val_high = 0x00000000
Buffalo GPIO SATA Hotplug Event Driver (C) BUFFALO INC. Ver.1.00 installed.
VFS: Disk quotas dquot_6.5.2
Dquot-cache hash table entries: 1024 (order 0, 4096 bytes)
JFFS2 version 2.2. (NAND) © 2001-2006 Red Hat, Inc.
fuse init (API version 7.18)
SGI XFS with ACLs, security attributes, large block/inode numbers, no debug enabled
SGI XFS Quota Management subsystem
msgmni has been set to 995
async_tx: api initialized (async)
io scheduler noop registered
io scheduler deadline registered
io scheduler cfq registered (default)
Initializing ths8200_init
Initializing dove_adi9889_init
mv_xor_shared mv_xor_shared.0: Marvell shared XOR driver
mv_xor_shared mv_xor_shared.1: Marvell shared XOR driver
mv_xor mv_xor.0: Marvell XOR: ( xor )
mv_xor mv_xor.1: Marvell XOR: ( xor )
mv_xor mv_xor.2: Marvell XOR: ( cpy )
mv_xor mv_xor.3: Marvell XOR: ( fill cpy )
Serial: 8250/16550 driver, 2 ports, IRQ sharing disabled
serial8250.0: ttyS0 at MMIO 0xd0012000 (irq = 41) is a 16550A
console [ttyS0] enabled
brd: module loaded
loop: module loaded
** BUFFALO Disable Command Queuing Function [sata_mv sata_mv.0] **
sata_mv sata_mv.0: slots 32 ports 2
scsi0 : sata_mv
scsi1 : sata_mv
ata1: SATA max UDMA/133 irq 55
ata2: SATA max UDMA/133 irq 55
SPI Serial flash detected @ 0xf0000000, 1024KB (16sec x 64KB)
armada-nand armada-nand.0: Initialize HAL based NFC in 8bit mode with DMA Disabled using BCH 4bit ECC
NAND device: Manufacturer ID: 0xad, Chip ID: 0xdc (Hynix NAND 512MiB 3,3V 8-bit)
Bad block table found at page 262080, version 0x01
Bad block table found at page 262016, version 0x01
nand_read_bbt: bad block at 0x000001c40000
nand_read_bbt: bad block at 0x000001c60000
nand_read_bbt: bad block at 0x000003fa0000
nand_read_bbt: bad block at 0x000006080000
nand_read_bbt: bad block at 0x0000060a0000
nand_read_bbt: bad block at 0x000008ac0000
nand_read_bbt: bad block at 0x00000b800000
nand_read_bbt: bad block at 0x00000efa0000
nand_read_bbt: bad block at 0x00001a480000
2 cmdlinepart partitions found on MTD device armada-nand
Creating 2 MTD partitions on "armada-nand":
0x000000000000-0x000002000000 : "boot"
0x000002000000-0x000020000000 : "rootfs"
mv_eth_probe: port_mask=0x3, cpu_mask=0x1
0 - Base 0x00000000 , Size = 0x20000000.
4 - Base 0xf2000000 , Size = 0x02000000.
8 - Base 0xe0000000 , Size = 0x02000000.
9 - Base 0xf1100000 , Size = 0x00100000.
10 - Base 0xe2000000 , Size = 0x02000000.
11 - Base 0xf1200000 , Size = 0x00100000.
12 - Base 0xd0000000 , Size = 0x00100000.
14 - Base 0xf0000000 , Size = 0x01000000.
23 - Base 0xf5000000 , Size = 0x01000000.
25 - Base 0xc8010000 , Size = 0x00010000.
  o 2 Giga ports supported
  o NETA acceleration mode 1
  o RX Queue support: 1 Queues * 128 Descriptors
  o TX Queue support: 1 Queues * 512 Descriptors
  o GSO supported
  o GRO supported
  o Receive checksum offload supported
  o Transmit checksum offload supported
  o Driver ERROR statistics enabled
  o Switch support enabled

  o Loading network interface(s)

  o Port 0 is connected to Linux netdevice
        giga p=0: mtu=1500, mac=d002beec
    o eth0, ifindex = 2, GbE port = 0

  o Port 1 is connected to Linux netdevice
        giga p=1: mtu=1500, mac=d002beec
    o eth1, ifindex = 3, GbE port = 1

sky2: driver version 1.30
i2c /dev entries driver
rtc-rs5c372 0-0032: rs5c372a found, 24hr, driver version 0.6
rtc-rs5c372 0-0032: create wakealarm
rtc-rs5c372 0-0032: rtc core: registered rtc-rs5c372 as rtc0
md: linear personality registered for level -1
md: raid0 personality registered for level 0
md: raid1 personality registered for level 1
md: raid10 personality registered for level 10
md: raid6 personality registered for level 6
md: raid5 personality registered for level 5
md: raid4 personality registered for level 4
cpuidle: using governor ladder
cpuidle: using governor menu
mmc0: mvsdio driver initialized, lacking card detect (fall back to polling)
TCP cubic registered
NET: Registered protocol family 17
VFP support v0.3: implementor 56 architecture 2 part 20 variant 9 rev 6
rtc-rs5c372 0-0032: setting system clock to 2007-10-31 15:07:00 UTC (1193843220)
ata1: SATA link down (SStatus 0 SControl F300)
ata2: SATA link down (SStatus 0 SControl F300)
Freeing init memory: 148K
---- in /init ---
mount: mounting devpts on /dev/pts failed: No such file or directory
mount: mounting shm on /dev/shm failed: No such file or directory
mount: mounting devpts on /dev/pts failed: No such file or directory
ldconfig: /usr/lib/libstdc++.so.6.0.16-gdb.py is not an ELF file - it has the wrong magic bytes at the start.

err:
ls: /dev/rtc: No such file or directory
libsys: /dev/rtc was updated : /dev/rtc 254 0
Thu Nov  1 00:07:02 JST 2007
*** Caution!!! /etc/fanctld.conf create failed!
ldconfig: /usr/lib/libstdc++.so.6.0.16-gdb.py is not an ELF file - it has the wrong magic bytes at the start.

modprobe: module e1000e not found in modules.dep
LibSys_GetUsbDiskStartNum : Usb device not found(/sys/block/sda/device). Returning 1
grep: /var/tmp/devlink: No such file or directory
create_devlink:Using new routine.
linuxrc:choose operation (timeout 4[s])
1:RamRoot 2:sda1 2:sda2 other:HddRoot  ? -HddRoot-
Starting :fsck_disks(boot) ...         [Failed. ]
Starting :mount(boot) ...              [Success.]
Starting :umount(boot) ...             [Success.]
touch: /rootfs/etc/melco/shareinfo: No such file or directory
touch: /rootfs/etc/melco/shareinfo.hidden: No such file or directory
touch: /rootfs/etc/melco/shareinfo.vfs: No such file or directory
grep: /rootfs/etc/linkstation_release: No such file or directory
PRODUCTID=0x00002026
** use initrd mode. **
TestRootfs failed
-RamdiskRoot-
--- rcStart (initrd) ---
mount: mounting proc on /proc failed: Device or resource busy
mount: mounting sysfs on /sys failed: Device or resource busy
mount: mounting devpts on /dev/pts failed: No such file or directory
ldconfig: /usr/lib/libstdc++.so.6.0.16-gdb.py is not an ELF file - it has the wrong magic bytes at the start.

Cannot set device ring parameters: Operation not supported
Cannot set device ring parameters: Operation not supported
Cannot set device ring parameters: Operation not supported
Cannot set device ring parameters: Operation not supported
Cannot get device ring settings: No such device
Cannot get device ring settings: No such device
Cannot get device ring settings: No such device
Cannot get device ring settings: No such device
modprobe: module e1000e not found in modules.dep
=== checkroot.sh ===
grep: /var/tmp/devlink: No such file or directory
create_devlink:Using new routine.
swapon: /dev/: Is a directory
create dir : /var/www
=== create_devlink.sh ===
create_devlink:Using new routine.
=== startSysMd.sh ===
This model doesn't support raid!!!
=== fwupdate.sh ===
umount: can't umount /boot: Invalid argument
mkdir: can't create directory '/boot': File exists
u-boot.files not found
fwupdate.sh:FW not updated
=== check_nandboot.sh ===
grep: /tmp/check_nandboot: No such file or directory
=== acpid.sh ===
/etc/init.d/rcS: line 47: /etc/init.d/acpid.sh: No such file or directory
=== closeSysMd.sh ===
=== sethostname.sh ===
configure files from Buffalo parameters.
=== restore_config.sh ===
Restore previous configuration files
tar (child): /boot/conf_save.tgz: Cannot open: No such file or directory
tar (child): Error is not recoverable: exiting now
/bin/tar: Child returned status 2
/bin/tar: Error is not recoverable: exiting now
tar (child): /boot/conf_save.tgz: Cannot open: No such file or directory
tar (child): Error is not recoverable: exiting now
/bin/tar: Child returned status 2
/bin/tar: Error is not recoverable: exiting now
unzip  fail.
/tmp/etc/localtime ->
BusyBox v1.19.4 (2015-06-19 17:45:55 JST) multi-call binary.

Usage: dirname FILENAME

Strip non-directory suffix from FILENAME

BusyBox v1.19.4 (2015-06-19 17:45:55 JST) multi-call binary.

Usage: mkdir [OPTIONS] DIRECTORY...

Create DIRECTORY

        -m MODE Mode
        -p      No error if exists; make parent directories as needed

mv: can't rename '/tmp/info': No such file or directory
grep: /etc/melco/iscsi_info: No such file or directory
/etc/init.d/restore_config.sh: line 58: perl: command not found
=== EnablingAutoip.sh ===
=== networking.sh ===
/etc/init.d/networking.sh : Clear /etc/dhcpc/dhcpcd-eth1.pid eth1
/etc/init.d/networking.sh : Clear /etc/dhcpc/dhcpcd-eth1.pid eth1
/etc/init.d/networking.sh : Clear /etc/dhcpc/dhcpcd-bond0.pid bond0
/etc/init.d/networking.sh : Read dhcpc file
/etc/init.d/networking.sh : configure :
create network files.. (eth0)
IP=[dhcp], netmask=[], dgw=[], dns1=[], dns2=[]
create network files.. (eth1)
IP=[dhcp], netmask=[], dgw=[]
dhcpcd: no process found
/etc/init.d/networking.sh : Delete /etc/dhcpc/dhcpcd-.pid
Configuration network interface: lo eth0 eth1
/etc/init.d/networking.sh: line 221: [: : integer expression expected
/sbin/ifconfig eth0 mtu 1500 multicast
/etc/init.d/networking.sh: line 221: [: : integer expression expected
/sbin/ifconfig eth1 mtu 1500 multicast
/sbin/ifconfig eth1  netmask
/sbin/ifconfig eth0  netmask
Checking network address for each network device
SIOCGIFADDR :No such device
SIOCGIFADDR :No such device
Warn!!!  and  has same network address!
Waiting fot linkup detection
cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
.cat: can't open '/sys/class/net//operstate': No such file or directory
cat: can't open '/sys/class/net//operstate': No such file or directory
networking.sh: Each network is not same in physically(or virtually).
networking.sh:         Shutting down
cat: can't open '/var/run/dhcpcd-.pid': No such file or directory
ifconfig: SIOCSIFADDR: No such device
networking.sh: arp_newip_notify_sub : Can't get ipaddr of eth0.
networking.sh: arp_newip_notify_sub : Can't get ipaddr of eth1.
add default if
route: SIOCADDRT: Network is down
configure files from Buffalo parameters.
=== syslog.sh ===
Starting system logger: load_info ItemValue = off
LoadConfFileStringEx:key=[ad_dns] not found in /etc/melco/info.
LoadConfFileOnOffEx:key=[info_visible] not found in /etc/melco/info.
LoadConfFileOnOffEx:key=[smb2] not found in /etc/melco/info.
LoadConfFileOnOffEx:key=[recycle_admin] not found in /etc/melco/info.
LoadConfFileOnOffEx:key=[recycle_macinfo] not found in /etc/melco/info.

Starting kernel logger:
=== kernelmon.sh ===
Starting kernelmon:=== fanctld.sh ===
grep: /usr/local/sbin/temprature.sh: No such file or directory
* Starting fanctld ...    [ ok ]
=== usb.sh ===
usbcore: registered new interface driver usbfs
usbcore: registered new interface driver hub
usbcore: registered new device driver usb
xhci_hcd 0000:00:01.0: xHCI Host Controller
xhci_hcd 0000:00:01.0: new USB bus registered, assigned bus number 1
xhci_hcd 0000:00:01.0: irq 58, io mem 0xe0000000
hub 1-0:1.0: USB hub found
hub 1-0:1.0: 2 ports detected
xhci_hcd 0000:00:01.0: xHCI Host Controller
xhci_hcd 0000:00:01.0: new USB bus registered, assigned bus number 2
hub 2-0:1.0: USB hub found
hub 2-0:1.0: 2 ports detected
ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver
ehci_marvell ehci_marvell.0: Marvell Orion EHCI
ehci_marvell ehci_marvell.0: new USB bus registered, assigned bus number 3
ehci_marvell ehci_marvell.0: irq 45, io base 0xfbb50100
ehci_marvell ehci_marvell.0: USB 2.0 started, EHCI 1.00
hub 3-0:1.0: USB hub found
hub 3-0:1.0: 1 port detected
ehci_marvell ehci_marvell.1: Marvell Orion EHCI
ehci_marvell ehci_marvell.1: new USB bus registered, assigned bus number 4
ehci_marvell ehci_marvell.1: irq 46, io base 0xfbb51100
ehci_marvell ehci_marvell.1: USB 2.0 started, EHCI 1.00
hub 4-0:1.0: USB hub found
hub 4-0:1.0: 1 port detected
ohci_hcd: USB 1.1 'Open' Host Controller (OHCI) Driver
Initializing USB Mass Storage driver...
usbcore: registered new interface driver usb-storage
USB Mass Storage support registered.
usbcore: registered new interface driver usblp
cp: can't stat '/tmp/usbshareinfo': No such file or directory
rm: can't remove '/tmp/usbshareinfo': No such file or directory
=== clientUtil_servd.sh ===
KERNELMOn (SATA 0 unplugged)
Starting clientUtil_server:
  ->Starting on eth0
  ->Starting on eth1
=== daemonwatch.sh ===
Starting daemonwatch:daemonwatch Ver.1.01
watch list file : /etc/daemonwatch.list
=== bootcomplete.sh ===
No need to run drivecheck.sh
hdd_raid_syncspeed.sh: USERLAND_MD=
=== micon_setup.sh ===
=== late_inspection_phase.sh ===
KERNELMOn (SATA 1 unplugged)
=== buffalo_rescue.sh ===
buffalo_rescue.sh: Its not a usb boot environment.
=== bootcomplete.sh(create_file) ===

BUFFALO INC. LinkStation series
LS421DE-EM148 login:

without root does not perform

admin@LS421DE-EMF73:~$ dumpnf > /tmp/nas_feature
Permission denied
admin@LS421DE-EMF73:~$

It is possible to bypass the root in the bootloader through boootargs?


BUFFALO>> printenv
CASset=min
EnableNandBoot=1
MALLOC_len=5
SerialNo=80060334XXXXXX
autoload=n
bootargs_end=:10.4.50.254:255.255.255.0:KW40:eth0:none
bootargs_root=root=/dev/nfs rw
bootcmd=for i in $bootorder; do run ${i}bootcmd; done
bootcommon=setenv bootargs $console $bootargs_root $bootargs_func $buffalo_ver $uboot_date $mtdparts $bootsystem; ;sf protect off; bootm 0x1200000 0x2600000
bootcommon-u=setenv bootargs $console $bootargs_func $buffalo_ver $uboot_date $mtdparts $bootsystem; ;sf protect off; bootm 0x1200000
bootdelay=3
bootorder=nand usb fail tftp
buffalo_ver=BOOTVER=0.16
cacheShare=no
console=console=ttyS0,115200
deviceid=_tysgkFFSEb9du4Dwukzi6HjzZXXXXXX
disL2Cache=yes
disaMvPnp=no
eeeEnable=no
enaAutoRecovery=yes
enaClockGating=no
enaFPU=yes
enaWrAllo=no
eth1addr=10:6F:3F:XX:XX:XX
eth1mtu=1500
ethact=egiga1
ethaddr=00:50:43:XX:XX:XX
ethmtu=1500
ethprime=egiga1
failbootcmd=bootfail
hdddelay=14
idebootcmd=ext2load ide 0:1 0x1200000 /$kernel; ext2load ide 0:1 0x2600000 /$initrd; setenv bootsystem hddboot=yes; run bootcommon
image_name=uImage
initrd=initrd.buffalo
initrd_name=uInitrd
ipaddr=192.168.11.150
kernel=uImage.buffalo
loadaddr=0x02000000
mtdids=nand0=armada-nand
mtdparts=mtdparts=armada-nand:0x2000000(boot),0x1e000000(rootfs)
mvNetConfig=switch_config=none
nandEcc=1bit
nandbootcmd=ubi part boot; ubifsmount boot; ubifsload 0x1200000 /$kernel; ubifsload 0x2600000 /$initrd; setenv bootsystem nandboot=yes; run bootcommon
netbsd_en=no
netmask=255.255.255.0
netretry=no
pcieTune=no
pexMode=rc
pxe_files_load=:default.arm-armada370-db:default.arm-armadaxp:default.arm
pxefile_addr_r=3100000
rcvrip=169.254.100.100
sata_delay_reset=0
sata_dma_mode=yes
serverip=192.168.11.1
sn=375910017221DXXXXXX
standalone=fsload $load_addr $image_name;setenv bootargs $console $mtdparts root=/dev/mtdblock0 rw ip=$ipaddr:$serverip$bootargs_end; bootm $load_addr;
stderr=serial
stdin=serial
stdout=serial
tftpbootcmd=tftp 0x1200000 $kernel; tftp 0x2600000 $initrd; setenv bootsystem tftpboot=yes; run bootcommon
uboot_date=UBOOT_DATE="2015/01/15"
usb0Mode=host
usb1Mode=host
usb1bootcmd=setenv usbActive 0;usb start;fatload usb 0 0x1200000 /boot/uImage370;sf protect off;run bootcommon-u
usb2Mode=device
usb2bootcmd=fatload usb 0 0x1200000 /boot/uImage.buffalo;fatload usb 0 0x2600000 /boot/initrd.buffalo;setenv bootsystem usbboot=yes;run bootcommon
usbActive=0
usbbootcmd=setenv usbActive 0;usb start;fatload usb 0 0x1200000 /uImage.buffalo;fatload usb 0 0x2600000 /initrd.buffalo;if fatIsSettingRecoveryDisk usb 0;then setenv bootsystem usbboot=yes mode=rescue; elif fatIsSettingInitializeDisk usb 0;then setenv bootsystem usbboot=yes mode=initialize; else setenv bootsystem usbboot=yes;fi;run bootcommon
vxworks_en=no

Environment size: 2863/65532 bytes
BUFFALO>>
have registered
Re: Buffalo LS421DE Password for root via Serial Console/Reset root password/Boot Single User mode
January 24, 2017 05:32AM
Antonas,

I don't have the Buffalo LS421De, so cannot tell you a specific way to gain root. But in the past, I recall seeing posts that decribes a possible way to gain root for this box. May be you should try (google search gave this):
http://kuhnboy.blogspot.com/2014/08/gain-ssh-access-to-buffalo-linkstation.html

If all fails, you can try to boot with a kernel that is a close cousin for this box using the MVEBU rootfs I've just released:
http://forum.doozan.com/read.php?2,32146
and then mount the flash rootfs partition, modify the /etc/shadow file to remove root passwrod.

-bodhi
===========================
Wiki
latest Kirkwood kernel builds and rootfs
latest u-boot-kirkwood builds
latest Oxnas kernel builds and rootfs
latest u-boot-oxnas builds
latest MVEBU Armada kernel builds and rootfs
U-Boot & Kernel Booting process
bodhi's u-boot GitHub
bodhi's corner



Edited 1 time(s). Last edit at 01/24/2017 05:33AM by bodhi.
bodhi Wrote:
-------------------------------------------------------
> Antonas,
>
> I don't have the Buffalo LS421De, so cannot tell
> you a specific way to gain root. But in the past,
> I recall seeing posts that decribes a possible way
> to gain root for this box. May be you should try
> (google search gave this):
> http://kuhnboy.blogspot.com/2014/08/gain-ssh-acces
> s-to-buffalo-linkstation.html

I changed PID this way.
this method does not suit me, do not work Ethernet after PID change. (see u-boot Log)

>
> If all fails, you can try to boot with a kernel
> that is a close cousin for this box using the
> MVEBU rootfs I've just released:
> http://forum.doozan.com/read.php?2,32146
> and then mount the flash rootfs partition, modify
> the /etc/shadow file to remove root passwrod.

Maybe there is a possibility of such a decision? https://wrgms.com/entering-single-user-mode-on-a-synology/



Edited 1 time(s). Last edit at 01/25/2017 03:28AM by Antonas.
Re: Buffalo LS421DE Password for root via Serial Console/Reset root password/Boot Single User mode
January 25, 2017 02:49PM
Author:

Your Email:


Subject:


Spam prevention:
Please, enter the code that you see below in the input field. This is for blocking bots that try to post this form automatically. If the code is hard to read, then just try to guess it right. If you enter the wrong code, a new image is created and you get another chance to enter it right.
Message: