I have a ISR 9024S-M which can not take admin password. Looks like the partition is fed up by log file. Is there any way to free the partition or how to factory reset it? Please help!
Here is the screen dump from RS232 console:
(none) login: admin
login:
(none) login:
PPCBoot 1.1.6 (Nov 16 2004 - 08:21:51)
CPU: IBM PowerPC 440 Rev. C
Board: Artesyn Technologies PM/PPC-440gp
Artesyn Monitor Version 1.5.0
VCO: 800 MHz
CPU: 400 MHz
PLB: 133 MHz
OPB: 66 MHz
EPB: 66 MHz
I2C: ready
DRAM: ECC Init ....Done 128 MB
FLASH: 64 MB
Initializing board as Monarch....
Scanning for PCI devices....
Scanning PCI devices on bus 0
LOCALE VEND DEV REV BASE0 BASE1 BASE2 BASE3 BASE4 BASE5
------- ---- ---- --- -------- -------- -------- -------- -------- --------
00,0d,0 10b5 9056 ba 80000000 b0800000 80200000 80400000 ........ ........
In: serial
Out: serial
Err: serial
Net: EMAC0, EMAC1
BEDBUG:ready
Hit any key to stop autoboot: 0
=> <INTERRUPT>
=> <INTERRUPT>
=> <INTERRUPT>
=> <INTERRUPT>
=> <INTERRUPT>
=> <INTERRUPT>
=> <INTERRUPT>
=> nmap -v -sn 192.168.2.0/24 -e ib1
Usage:
nm - memory modify (constant address)
=> imm 53 90.1
00000090:I2c read: failed 4
Error reading the chip,
? 01
Error writing the chip.
00000091:I2c read: failed 4
Error reading the chip,
? 53
Error writing the chip.
00000092:I2c read: failed 4
Error reading the chip,
? 51
Error writing the chip.
00000093:I2c read: failed 4
Error reading the chip,
? 50
Error writing the chip.
00000094:I2c read: failed 4
Error reading the chip,
? => help
as - assemble memory
autoscr - run script from memory
base - print or set address offset
bdinfo - print Board Info structure
bootelf - Boot from an ELF image in memory
bootm - boot application image from memory
bootp - boot image via network using BootP/TFTP protocol
bootvx - Boot vxWorks from an ELF image
bootd - boot default, i.e., run 'bootcmd'
break - set or clear a breakpoint
cmp - memory compare
coninfo - print console devices and informations
continue- continue from a breakpoint
cp - memory copy
crc32 - checksum calculation
date - get/set/reset date & time
dhcp - invoke DHCP client to obtain IP/boot params
ds - disassemble memory
echo - echo args to console
erase - erase FLASH memory
flinfo - print FLASH memory information
getdcr - Get an IBM PPC 4xx DCR's value
go - start application at address 'addr'
help - print online help
imd - i2c memory display
imm - i2c memory modify (auto-incrementing)
inm - memory modify (constant address)
imw - memory write (fill)
icrc32 - checksum calculation
iprobe - probe to discover valid I2C chip addresses
iloop - infinite loop on address range
isdram - print SDRAM configuration information
iminfo - print header information for application image
irqinfo - print information about IRQs
loadb - load binary file over serial line (kermit mode)
loads - load S-Record file over serial line
loop - infinite loop on address range
md - memory display
mm - memory modify (auto-incrementing)
mtest - simple RAM test
mw - memory write (fill)
next - single step execution, stepping over subroutines.
nm - memory modify (constant address)
printenv- print environment variables
protect - enable or disable FLASH write protection
rarpboot- boot image via network using RARP/TFTP protocol
rdump - Show registers.
reset - Perform RESET of the CPU
run - run commands in an environment variable
saveenv - save environment variables to persistent storage
setdcr - Set an IBM PPC 4xx DCR's value
setenv - set environment variables
sleep - delay execution for some time
where - Print the running stack.
step - single step execution.
tftpboot- boot image via network using TFTP protocol
and env variables ipaddr and serverip
version - print monitor version
? - alias for 'help'
pci_enum - Enumerates and displays PCI Bus Enumeration Info
pci_info - Displays PCI Bus Enumeration Info
prog_i2c - Programs default i2c bootstrap settings
moninit - Copies PPCBoot monitor into Soldered Flash
monship - Erases soldered flash, inits environment variables
initenv - Initializes Board Environment variables
um - destructive memory test
=> imm
Usage:
imm - i2c memory modify (auto-incrementing)
=> where
Not at a breakpoint
=> version
PPCBoot 1.1.6 (Nov 16 2004 - 08:21:51)
=> coninfo
List of available devices:
serial 80000003 SIO stdin stdout stderr
=> dhcp
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 0
BOOTP broadcast 1
BOOTP broadcast 2
BOOTP broadcast 3
BOOTP broadcast 4
BOOTP broadcast 5
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 6
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 7
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 8
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 9
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 10
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 11
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 12
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 13
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 14
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 15
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Abort
BOOTP broadcast 16
eth_send -1
Retry count exceeded; starting again
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 17
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 18
Retry count exceeded; starting again
Trying EMAC0
Waiting for PHY auto negotiation to complete... TIMEOUT !
Trying EMAC1
ENET Speed is 100 Mbps - FULL duplex connection
BOOTP broadcast 19
Abort
=> help
as - assemble memory
autoscr - run script from memory
base - print or set address offset
bdinfo - print Board Info structure
bootelf - Boot from an ELF image in memory
bootm - boot application image from memory
bootp - boot image via network using BootP/TFTP protocol
bootvx - Boot vxWorks from an ELF image
bootd - boot default, i.e., run 'bootcmd'
break - set or clear a breakpoint
cmp - memory compare
coninfo - print console devices and informations
continue- continue from a breakpoint
cp - memory copy
crc32 - checksum calculation
date - get/set/reset date & time
dhcp - invoke DHCP client to obtain IP/boot params
ds - disassemble memory
echo - echo args to console
erase - erase FLASH memory
flinfo - print FLASH memory information
getdcr - Get an IBM PPC 4xx DCR's value
go - start application at address 'addr'
help - print online help
imd - i2c memory display
imm - i2c memory modify (auto-incrementing)
inm - memory modify (constant address)
imw - memory write (fill)
icrc32 - checksum calculation
iprobe - probe to discover valid I2C chip addresses
iloop - infinite loop on address range
isdram - print SDRAM configuration information
iminfo - print header information for application image
irqinfo - print information about IRQs
loadb - load binary file over serial line (kermit mode)
loads - load S-Record file over serial line
loop - infinite loop on address range
md - memory display
mm - memory modify (auto-incrementing)
mtest - simple RAM test
mw - memory write (fill)
next - single step execution, stepping over subroutines.
nm - memory modify (constant address)
printenv- print environment variables
protect - enable or disable FLASH write protection
rarpboot- boot image via network using RARP/TFTP protocol
rdump - Show registers.
reset - Perform RESET of the CPU
run - run commands in an environment variable
saveenv - save environment variables to persistent storage
setdcr - Set an IBM PPC 4xx DCR's value
setenv - set environment variables
sleep - delay execution for some time
where - Print the running stack.
step - single step execution.
tftpboot- boot image via network using TFTP protocol
and env variables ipaddr and serverip
version - print monitor version
? - alias for 'help'
pci_enum - Enumerates and displays PCI Bus Enumeration Info
pci_info - Displays PCI Bus Enumeration Info
prog_i2c - Programs default i2c bootstrap settings
moninit - Copies PPCBoot monitor into Soldered Flash
monship - Erases soldered flash, inits environment variables
initenv - Initializes Board Environment variables
um - destructive memory test
=> ds
Usage:
ds - disassemble memory
=> as
Usage:
as - assemble memory
=> help
as - assemble memory
autoscr - run script from memory
base - print or set address offset
bdinfo - print Board Info structure
bootelf - Boot from an ELF image in memory
bootm - boot application image from memory
bootp - boot image via network using BootP/TFTP protocol
bootvx - Boot vxWorks from an ELF image
bootd - boot default, i.e., run 'bootcmd'
break - set or clear a breakpoint
cmp - memory compare
coninfo - print console devices and informations
continue- continue from a breakpoint
cp - memory copy
crc32 - checksum calculation
date - get/set/reset date & time
dhcp - invoke DHCP client to obtain IP/boot params
ds - disassemble memory
echo - echo args to console
erase - erase FLASH memory
flinfo - print FLASH memory information
getdcr - Get an IBM PPC 4xx DCR's value
go - start application at address 'addr'
help - print online help
imd - i2c memory display
imm - i2c memory modify (auto-incrementing)
inm - memory modify (constant address)
imw - memory write (fill)
icrc32 - checksum calculation
iprobe - probe to discover valid I2C chip addresses
iloop - infinite loop on address range
isdram - print SDRAM configuration information
iminfo - print header information for application image
irqinfo - print information about IRQs
loadb - load binary file over serial line (kermit mode)
loads - load S-Record file over serial line
loop - infinite loop on address range
md - memory display
mm - memory modify (auto-incrementing)
mtest - simple RAM test
mw - memory write (fill)
next - single step execution, stepping over subroutines.
nm - memory modify (constant address)
printenv- print environment variables
protect - enable or disable FLASH write protection
rarpboot- boot image via network using RARP/TFTP protocol
rdump - Show registers.
reset - Perform RESET of the CPU
run - run commands in an environment variable
saveenv - save environment variables to persistent storage
setdcr - Set an IBM PPC 4xx DCR's value
setenv - set environment variables
sleep - delay execution for some time
where - Print the running stack.
step - single step execution.
tftpboot- boot image via network using TFTP protocol
and env variables ipaddr and serverip
version - print monitor version
? - alias for 'help'
pci_enum - Enumerates and displays PCI Bus Enumeration Info
pci_info - Displays PCI Bus Enumeration Info
prog_i2c - Programs default i2c bootstrap settings
moninit - Copies PPCBoot monitor into Soldered Flash
monship - Erases soldered flash, inits environment variables
initenv - Initializes Board Environment variables
um - destructive memory test
=> flinfo
Bank # 1: CFI conformant FLASH (16 x 16) Size: 16 MB in 128 Sectors
Erase timeout 4096 ms, write timeout 0 ms, buffer write timeout 1024 ms, buffer
size 32
Sector Start Addresses:
D0000000 D0020000 D0040000 D0060000 D0080000
D00A0000 D00C0000 D00E0000 D0100000 D0120000
D0140000 D0160000 D0180000 D01A0000 D01C0000
D01E0000 D0200000 D0220000 D0240000 D0260000
D0280000 D02A0000 D02C0000 D02E0000 D0300000
D0320000 D0340000 D0360000 D0380000 D03A0000
D03C0000 D03E0000 D0400000 D0420000 D0440000
D0460000 D0480000 D04A0000 D04C0000 D04E0000
D0500000 D0520000 D0540000 D0560000 D0580000
D05A0000 D05C0000 D05E0000 D0600000 D0620000
D0640000 D0660000 D0680000 D06A0000 D06C0000
D06E0000 D0700000 D0720000 D0740000 D0760000
D0780000 D07A0000 D07C0000 D07E0000 D0800000
D0820000 D0840000 D0860000 D0880000 D08A0000
D08C0000 D08E0000 D0900000 D0920000 D0940000
D0960000 D0980000 D09A0000 D09C0000 D09E0000
D0A00000 D0A20000 D0A40000 D0A60000 D0A80000
D0AA0000 D0AC0000 D0AE0000 D0B00000 D0B20000
D0B40000 D0B60000 D0B80000 D0BA0000 D0BC0000
D0BE0000 D0C00000 D0C20000 D0C40000 D0C60000
D0C80000 D0CA0000 D0CC0000 D0CE0000 D0D00000
D0D20000 D0D40000 D0D60000 D0D80000 D0DA0000
D0DC0000 D0DE0000 D0E00000 D0E20000 D0E40000
D0E60000 D0E80000 D0EA0000 D0EC0000 D0EE0000
D0F00000 D0F20000 D0F40000 D0F60000 D0F80000
D0FA0000 D0FC0000 D0FE0000
Bank # 2: CFI conformant FLASH (16 x 16) Size: 16 MB in 128 Sectors
Erase timeout 4096 ms, write timeout 0 ms, buffer write timeout 1024 ms, buffer
size 32
Sector Start Addresses:
D1000000 D1020000 D1040000 D1060000 D1080000
D10A0000 D10C0000 D10E0000 D1100000 D1120000
D1140000 D1160000 D1180000 D11A0000 D11C0000
D11E0000 D1200000 D1220000 D1240000 D1260000
D1280000 D12A0000 D12C0000 D12E0000 D1300000
D1320000 D1340000 D1360000 D1380000 D13A0000
D13C0000 D13E0000 D1400000 D1420000 D1440000
D1460000 D1480000 D14A0000 D14C0000 D14E0000
D1500000 D1520000 D1540000 D1560000 D1580000
D15A0000 D15C0000 D15E0000 D1600000 D1620000
D1640000 D1660000 D1680000 D16A0000 D16C0000
D16E0000 D1700000 D1720000 D1740000 D1760000
D1780000 D17A0000 D17C0000 D17E0000 D1800000
D1820000 D1840000 D1860000 D1880000 D18A0000
D18C0000 D18E0000 D1900000 D1920000 D1940000
D1960000 D1980000 D19A0000 D19C0000 D19E0000
D1A00000 D1A20000 D1A40000 D1A60000 D1A80000
D1AA0000 D1AC0000 D1AE0000 D1B00000 D1B20000
D1B40000 D1B60000 D1B80000 D1BA0000 D1BC0000
D1BE0000 D1C00000 D1C20000 D1C40000 D1C60000
D1C80000 D1CA0000 D1CC0000 D1CE0000 D1D00000
D1D20000 D1D40000 D1D60000 D1D80000 D1DA0000
D1DC0000 D1DE0000 D1E00000 D1E20000 D1E40000
D1E60000 D1E80000 D1EA0000 D1EC0000 D1EE0000
D1F00000 D1F20000 D1F40000 D1F60000 D1F80000
D1FA0000 D1FC0000 D1FE0000
Bank # 3: CFI conformant FLASH (16 x 16) Size: 16 MB in 128 Sectors
Erase timeout 4096 ms, write timeout 0 ms, buffer write timeout 1024 ms, buffer
size 32
Sector Start Addresses:
D2000000 D2020000 D2040000 D2060000 D2080000
D20A0000 D20C0000 D20E0000 D2100000 D2120000
D2140000 D2160000 D2180000 D21A0000 D21C0000
D21E0000 D2200000 D2220000 D2240000 D2260000
D2280000 D22A0000 D22C0000 D22E0000 D2300000
D2320000 D2340000 D2360000 D2380000 D23A0000
D23C0000 D23E0000 D2400000 D2420000 D2440000
D2460000 D2480000 D24A0000 D24C0000 D24E0000
D2500000 D2520000 D2540000 D2560000 D2580000
D25A0000 D25C0000 D25E0000 D2600000 D2620000
D2640000 D2660000 D2680000 D26A0000 D26C0000
D26E0000 D2700000 D2720000 D2740000 D2760000
D2780000 D27A0000 D27C0000 D27E0000 D2800000
D2820000 D2840000 D2860000 D2880000 D28A0000
D28C0000 D28E0000 D2900000 D2920000 D2940000
D2960000 D2980000 D29A0000 D29C0000 D29E0000
D2A00000 D2A20000 D2A40000 D2A60000 D2A80000
D2AA0000 D2AC0000 D2AE0000 D2B00000 D2B20000
D2B40000 D2B60000 D2B80000 D2BA0000 D2BC0000
D2BE0000 D2C00000 D2C20000 D2C40000 D2C60000
D2C80000 D2CA0000 D2CC0000 D2CE0000 D2D00000
D2D20000 D2D40000 D2D60000 D2D80000 D2DA0000
D2DC0000 D2DE0000 D2E00000 D2E20000 D2E40000
D2E60000 D2E80000 D2EA0000 D2EC0000 D2EE0000
D2F00000 D2F20000 D2F40000 D2F60000 D2F80000
D2FA0000 D2FC0000 D2FE0000
Bank # 4: CFI conformant FLASH (16 x 16) Size: 16 MB in 128 Sectors
Erase timeout 4096 ms, write timeout 0 ms, buffer write timeout 1024 ms, buffer
size 32
Sector Start Addresses:
D3000000 D3020000 D3040000 D3060000 D3080000
D30A0000 D30C0000 D30E0000 D3100000 D3120000
D3140000 D3160000 D3180000 D31A0000 D31C0000
D31E0000 D3200000 D3220000 D3240000 D3260000
D3280000 D32A0000 D32C0000 D32E0000 D3300000
D3320000 D3340000 D3360000 D3380000 D33A0000
D33C0000 D33E0000 D3400000 D3420000 D3440000
D3460000 D3480000 D34A0000 D34C0000 D34E0000
D3500000 D3520000 D3540000 D3560000 D3580000
D35A0000 D35C0000 D35E0000 D3600000 D3620000
D3640000 D3660000 D3680000 D36A0000 D36C0000
D36E0000 D3700000 D3720000 D3740000 D3760000
D3780000 D37A0000 D37C0000 D37E0000 D3800000
D3820000 D3840000 D3860000 D3880000 D38A0000
D38C0000 D38E0000 D3900000 D3920000 D3940000
D3960000 D3980000 D39A0000 D39C0000 D39E0000
D3A00000 D3A20000 D3A40000 D3A60000 D3A80000
D3AA0000 D3AC0000 D3AE0000 D3B00000 D3B20000
D3B40000 D3B60000 D3B80000 D3BA0000 D3BC0000
D3BE0000 D3C00000 D3C20000 D3C40000 D3C60000
D3C80000 D3CA0000 D3CC0000 D3CE0000 D3D00000
D3D20000 D3D40000 D3D60000 D3D80000 D3DA0000
D3DC0000 D3DE0000 D3E00000 D3E20000 D3E40000
D3E60000 D3E80000 D3EA0000 D3EC0000 D3EE0000
D3F00000 D3F20000 D3F40000 D3F60000 D3F80000 (RO)
D3FA0000 (RO) D3FC0000 (RO) D3FE0000 (RO)
=>