Go Back  
Reply
 
Thread Tools
Old 07-15-2012   #231
v8s10
Member
 
Join Date: Sep 2010
Posts: 120
Likes: 48
Liked 40 Times in 27 Posts
Mentioned: 6 Post(s)
Tagged: 0 Thread(s)
Originally Posted by svenmullet View Post
But what I mean is after one modifies their console to be a DEX, it still allows the CEX firmware to boot? (I know it won't allow you to install other CEX firmwares at that point, but it still boots the CEX firmware that is already installed?) Because if I understand correctly how the PS3 works, DEX features are allowed by checking the target ID, etc, so you could theoretically stay on CEX FW, but have all the debug features? Or would this be a sort of hybrid where nothing really works?
After booting to gameOS from petitboot (just after writing the nor, which only a very small section is actually changed) it is still booting the cex firmware that is installed. It isn't on debug fw yet, so there are no debug options. All this does is allow you to install a debug firmware.
v8s10 is offline   Reply With Quote
Old 07-15-2012   #232
evilsperm
Member
 
evilsperm's Avatar
 
Join Date: Oct 2010
Posts: 82
Likes: 6
Liked 185 Times in 53 Posts
Mentioned: 89 Post(s)
Tagged: 0 Thread(s)
Originally Posted by v8s10 View Post
After booting to gameOS from petitboot (just after writing the nor, which only a very small section is actually changed) it is still booting the cex firmware that is installed. It isn't on debug fw yet, so there are no debug options. All this does is allow you to install a debug firmware.
Correct
evilsperm is offline   Reply With Quote
Old 07-15-2012   #233
svenmullet
Member
 
svenmullet's Avatar
 
Join Date: Jun 2011
Location: The Frozen North.
Posts: 732
Likes: 479
Liked 678 Times in 304 Posts
Mentioned: 82 Post(s)
Tagged: 0 Thread(s)
Originally Posted by v8s10 View Post
After booting to gameOS from petitboot (just after writing the nor, which only a very small section is actually changed) it is still booting the cex firmware that is installed. It isn't on debug fw yet, so there are no debug options. All this does is allow you to install a debug firmware.
You don't understand what I mean. To clarify what I'm getting at:

You change the target ID to DEX, it's now a debug PS3, yet it still happily boots CEX FW, right? Can you power-cycle the machine and still boot CEX FW? Because if so, it makes me wonder if the opposite is true, ie. convert target ID back to CEX after installing debug FW and be able to boot DEX FW on a retail machine... this is why I asked if this would only result in a hybrid where nothing really works.
[edit] Or am I wandering into "sensitive" territory here? Perhaps a TB/Cobra dev could pop up and tell me I'm wasting my time/nothing to see here/etc
[edit2] As in, you mount the flash r/w very early in the boot process, read/decrypt the target id sections, convert/encrypt them on a microcontroller and flash them back, then boot a modified FW that appears to be retail but actually is a hybrid debug.
[edit3] That doesn't make sense after thinking about it for a bit. Never mind
__________________

Last edited by svenmullet; 07-15-2012 at 11:18 PM.
svenmullet is offline   Reply With Quote
Likes: (1)
Old 07-15-2012   #234
butnut
Member
 
Join Date: Jul 2011
Posts: 680
Likes: 275
Liked 249 Times in 146 Posts
Mentioned: 87 Post(s)
Tagged: 0 Thread(s)
Originally Posted by svenmullet View Post
You don't understand what I mean. To clarify what I'm getting at:

You change the target ID to DEX, it's now a debug PS3, yet it still happily boots CEX FW, right? Can you power-cycle the machine and still boot CEX FW? Because if so, it makes me wonder if the opposite is true, ie. convert target ID back to CEX after installing debug FW and be able to boot DEX FW on a retail machine... this is why I asked if this would only result in a hybrid where nothing really works.
[edit] Or am I wandering into "sensitive" territory here? Perhaps a TB/Cobra dev could pop up and tell me I'm wasting my time/nothing to see here/etc
Basically you would have a ps3 that could not run any homebrew or play any games.
butnut is offline   Reply With Quote
Old 07-16-2012   #235
JonahUK
Senior Member
 
Join Date: Jul 2011
Location: Salford, UK
Posts: 1,264
Likes: 579
Liked 785 Times in 495 Posts
Mentioned: 166 Post(s)
Tagged: 0 Thread(s)
@evilsperm

For this to be done on a NAND, would the following change be all that is needed:

NAND:
13. WRITE eEID: dd if=dex_eid.bin of=/dev/ps3nflasha bs=1 seek=$((0x80800)) count=$((0x10000))
JonahUK is offline   Reply With Quote
Old 07-16-2012   #236
DJ-1
Member
null
 
Join Date: Jul 2008
Posts: 47
Likes: 41
Liked 1 Time in 1 Post
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Originally Posted by evilsperm View Post
Thats just for making a nor dump and yes you can extract your metldr from it, but you still no matter what need to exploit your own metldr on you're own console hence the need for petitboot and metldrpwn. Only then can you get your eid_root_key. All of this is easy once you get the hang of it but if you do not understand or follow instructions to the letter your gonna brick when flashing your system, and without a hardware flasher your 100% fuct.
Have I misread something here, or not understanding what I've read....but as afaik nobody has succeeded in getting the eid-root-key at all ??.

Sent from my Galaxy S II using tapatalk
DJ-1 is online now   Reply With Quote
Old 07-16-2012   #237
DJ-1
Member
null
 
Join Date: Jul 2008
Posts: 47
Likes: 41
Liked 1 Time in 1 Post
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
Also, I've not touched my cfw PS3 for ages now, its still on 3.55 kmeaw cfw... what is the best hardware flasher? E3 ?,progskeet... ( I don't wanna solder anything though ) I've seen bad report on here about the e3.... ???

Sent from my Galaxy S II using tapatalk
DJ-1 is online now   Reply With Quote
Old 07-16-2012   #238
malex
Member
 
malex's Avatar
 
Join Date: Oct 2011
Location: New Jersey, USA
Posts: 299
Likes: 92
Liked 209 Times in 115 Posts
Mentioned: 23 Post(s)
Tagged: 0 Thread(s)
Originally Posted by DJ-1 View Post
Also, I've not touched my cfw PS3 for ages now, its still on 3.55 kmeaw cfw... what is the best hardware flasher? E3 ?,progskeet... ( I don't wanna solder anything though ) I've seen bad report on here about the e3.... ???

Sent from my Galaxy S II using tapatalk
If you have a nor ps3, then both offer solderless solutions (not 100% sure about E3), if like me you have a nand... then as of yet there's no solderless solution (reason I'm not dual-booting my ps3 yet).
malex is offline   Reply With Quote
Old 07-16-2012   #239
DJ-1
Member
null
 
Join Date: Jul 2008
Posts: 47
Likes: 41
Liked 1 Time in 1 Post
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
I've got a 250GB, so that'll be Nor (16mb ? )

Sent from my Galaxy S II using tapatalk
DJ-1 is online now   Reply With Quote
Old 07-16-2012   #240
malex
Member
 
malex's Avatar
 
Join Date: Oct 2011
Location: New Jersey, USA
Posts: 299
Likes: 92
Liked 209 Times in 115 Posts
Mentioned: 23 Post(s)
Tagged: 0 Thread(s)
Originally Posted by DJ-1 View Post
I've got a 250GB, so that'll be Nor (16mb ? )

Sent from my Galaxy S II using tapatalk
If that's the stock HDD on it seems so, as I don't see any 250GB nand ps3's, but don't take my word for it. Rather than just trusting my half-baked memory, here's a nice little table with the different ps3 skus courtesy of ps3devwiki

Look for your model# and make sure of what equipment you've got. Hope that helps to clarify your situation.
malex is offline   Reply With Quote
Reply

Bookmarks

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump



PS3Hax.net is Copyright © 2010-2013.
Use of this site is governed by our Terms of Use and Privacy Policy. All Trademarks and images are owned by their respected owners.
Posts and links are subject to each author on this forum and are no way affiliated with the operations and/or opinions of ps3hax.net
All times are GMT -5. The time now is 08:31 PM.