Hello,
After i read this posts in a attempt to unbriked my htc magic 32a briked with a radio version of 32b the v2.22.27.08. i was stuck in the jtag commands.
openocd -f magic.cfg
Open On-Chip Debugger 0.4.0 (2011-01-02-15:41)
Licensed under GNU GPL v2
For bug reports, read
http://openocd.berlios.de/doc/doxygen/bugs.html
parport port = 0x0
trst_and_srst srst_pulls_trst srst_gates_jtag trst_push_pull srst_open_drain
dcc downloads are enabled
fast memory access is enabled
Info : clock speed 500 kHz
Info : JTAG tap: arm9.cpu tap/device found: 0x301700e1 (mfg: 0x070, part: 0x0170, ver: 0x3)
Info : Embedded ICE version 6
Info : arm9: hardware has 2 breakpoint/watchpoint units
Info : accepting 'telnet' connection from 0
target state: halted
target halted in ARM state due to debug-request, current mode: Supervisor
cpsr: 0x200000d3 pc: 0x00907348
MMU: disabled, D-Cache: disabled, I-Cache: disabled
magic.cfg:
interface parport
parport_port 0
parport_cable wiggler
reset_config trst_and_srst srst_pulls_trst
set _CHIPNAME arm926ejs
set _ENDIAN little
set _CPUTAPID 0x301700e1
proc dbreg {} {
#show 16 arm registers only
reg 0
reg 1
reg 2
reg 3
reg 4
reg 5
reg 6
reg 7
reg 8
reg 9
reg 10
reg 11
reg 12
reg 13
reg 14
reg 15
}
jtag newtap arm9 cpu -irlen 4 -ircapture 0x1 -irmask 0xf -expected-id $_CPUTAPID
set _TARGETNAME arm9.cpu
target create arm9 arm926ejs -endian $_ENDIAN -chain-position $_TARGETNAME
arm7_9 dcc_downloads enable
arm7_9 fast_memory_access enable
Question is cfg ok for 32a?
When i got to blue led mode, i can write "?" so it works.
when i flash the new radio, i type 'resume' but i can't get access to the serial console to write the "radata 103B5300 01500000" seams freezed.
so i try pass the hboot, but to do it i need the mww address's to the radio "2.22.27.08", can anyone provide it?
i try the addresses of others radio but, no luck with the version or cego cmd shows up.
What can i do more?
OpenSys
After i read this posts in a attempt to unbriked my htc magic 32a briked with a radio version of 32b the v2.22.27.08. i was stuck in the jtag commands.
openocd -f magic.cfg
Open On-Chip Debugger 0.4.0 (2011-01-02-15:41)
Licensed under GNU GPL v2
For bug reports, read
http://openocd.berlios.de/doc/doxygen/bugs.html
parport port = 0x0
trst_and_srst srst_pulls_trst srst_gates_jtag trst_push_pull srst_open_drain
dcc downloads are enabled
fast memory access is enabled
Info : clock speed 500 kHz
Info : JTAG tap: arm9.cpu tap/device found: 0x301700e1 (mfg: 0x070, part: 0x0170, ver: 0x3)
Info : Embedded ICE version 6
Info : arm9: hardware has 2 breakpoint/watchpoint units
Info : accepting 'telnet' connection from 0
target state: halted
target halted in ARM state due to debug-request, current mode: Supervisor
cpsr: 0x200000d3 pc: 0x00907348
MMU: disabled, D-Cache: disabled, I-Cache: disabled
magic.cfg:
interface parport
parport_port 0
parport_cable wiggler
reset_config trst_and_srst srst_pulls_trst
set _CHIPNAME arm926ejs
set _ENDIAN little
set _CPUTAPID 0x301700e1
proc dbreg {} {
#show 16 arm registers only
reg 0
reg 1
reg 2
reg 3
reg 4
reg 5
reg 6
reg 7
reg 8
reg 9
reg 10
reg 11
reg 12
reg 13
reg 14
reg 15
}
jtag newtap arm9 cpu -irlen 4 -ircapture 0x1 -irmask 0xf -expected-id $_CPUTAPID
set _TARGETNAME arm9.cpu
target create arm9 arm926ejs -endian $_ENDIAN -chain-position $_TARGETNAME
arm7_9 dcc_downloads enable
arm7_9 fast_memory_access enable
Question is cfg ok for 32a?
When i got to blue led mode, i can write "?" so it works.
when i flash the new radio, i type 'resume' but i can't get access to the serial console to write the "radata 103B5300 01500000" seams freezed.
so i try pass the hboot, but to do it i need the mww address's to the radio "2.22.27.08", can anyone provide it?
i try the addresses of others radio but, no luck with the version or cego cmd shows up.
What can i do more?
OpenSys
Last edited: