PS3Hax Network - Playstation 3 Hacks and Mods

PS3Hax Network - Playstation 3 Hacks and Mods (http://www.ps3hax.net/forums.php)
-   PS3 | General Discussion (http://www.ps3hax.net/forumdisplay.php?f=11)
-   -   What can you do with a converted console? (http://www.ps3hax.net/showthread.php?t=33709)

zecoxao 01-27-2012 11:23 AM

What can you do with a converted console?
 
This has bugged me for quite some time, so i'll ask the question here in hopes that someone will be able to clarify me.

So, i have a retail 4.00 ps3 that's downgradable to CFW, and i have a plan to get the per console keys and use them to convert my console. Thing is, i don't know the advantages/disadvantages of a converted console over a retail console, and i'd like some insight on this.

I'd like to know:

Differences between retail and CEX-DEX
Cons/pros to 3.55 CFW retail and (any version, since Install Pkg Files is permanently there) OFW converted .

Thanks :)

Edit: Oh, and sorry if i put this in the wrong section, this seemed the appropriate one

Warning 01-27-2012 11:34 AM

There is a comparison chart on ps3devwiki somewhere, but I am having trouble finding it ATM.

Found it

http://www.ps3devwiki.com/wiki/Models

It's at the bottom of the page

zecoxao 01-27-2012 12:43 PM

Well, that partially answered my question. I was more interested in the .pkgs that can be installed on debug. Any clarifications on that?

iwasaperson 01-27-2012 12:55 PM

With a converted console, you will be able to install and use unsigned software. No backup managers on OFW though.

Sent from my Galaxy Nexus using Tapatalk

zecoxao 01-27-2012 01:37 PM

fine by me... thanks

moogie 01-27-2012 02:56 PM

depends on what you convert the console to. I am assuming to a debug unit. you would be able to use the features of a debug unit (obviously) such as RSX Profiling Debug, Target Manager etc, debug's are able to execute FSELF's, (fake-signed) an FSELF is neither signed nor encrypted, you do not need keys to FSELF an executable.

There are a number of way's of doing CEX-DEX, the one you are attempting, is editing the target id in the IDPS field of EID0 and EID5, to decrypt eEID, you will need to get the per console keys: eid_root_key, eid0_key

You can get eid_root_key from either dumping metldr, or dumping the local storage of sector 0 when said key get's copied to it, you can achieve that by patching isoldr to do so.

You can obtain eid0_key through AES from eid_root_key.

You will also need some static keys that can be found in aim_spu_module.self and appldr.

Once you have all that, you will also need the EID algorithm to correctly re-encrypt eEID.

Links:

Per Console Keys - PS3 Development Wiki
Dumping Metldr - PS3 Development Wiki
Patched isoldr.self to dump the local storage of sector 0
static keys

Rautz 01-27-2012 03:56 PM

Quote:

Originally Posted by moogie (Post 322922)
There are a number of way's of doing CEX-DEX,

Wow, I never knew that. I thought there was only one way to skin the cat. Too bad devs like Twinaphex had to pay money to get a converted console :(

zecoxao 01-27-2012 04:04 PM

Quote:

Originally Posted by moogie (Post 322922)
depends on what you convert the console to. I am assuming to a debug unit. you would be able to use the features of a debug unit (obviously) such as RSX Profiling Debug, Target Manager etc, debug's are able to execute FSELF's, (fake-signed) an FSELF is neither signed nor encrypted, you do not need keys to FSELF an executable.

There are a number of way's of doing CEX-DEX, the one you are attempting, is editing the target id in the IDPS field of EID0 and EID5, to decrypt eEID, you will need to get the per console keys: eid_root_key, eid0_key

You can get eid_root_key from either dumping metldr, or dumping the local storage of sector 0 when said key get's copied to it, you can achieve that by patching isoldr to do so.

You can obtain eid0_key through AES from eid_root_key.

You will also need some static keys that can be found in aim_spu_module.self and appldr.

Once you have all that, you will also need the EID algorithm to correctly re-encrypt eEID.

Links:

Per Console Keys - PS3 Development Wiki
Dumping Metldr - PS3 Development Wiki
Patched isoldr.self to dump the local storage of sector 0
static keys

hi moogie :) and thanks for fueling this up, i thought people forgot about this option, turns out they didn't know how valuable it is xD


All times are GMT -5. The time now is 07:51 AM.

Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2013, vBulletin Solutions, Inc.