Hikvision g6 V5.8.30 firmware for DS-2CD1067G2-L IP camera

Mar 11, 2020
11
0
Europe
Hi
I need to download the DS-2CD1067G2-L camera firmware, but there is no firmware on the global Hikvision website.
By chance, I found a release note file for the G6 V5.8.30 firmware and saw that it was also the DS-2CD1067G2-L model in the list of supported models. I uploaded this file here as well.
The problem with cameras is that they don't store any settings. Any settings, such as changing the IP, changing the password, etc. After turning it on and off, it will return to its previous state.
I REVERTED THE CAMERA TO FACTORY SETTINGS USING UART, BUT NOW EVERY TIME THE CAMERA RESTARTS, IT'S INACTIVE.
I'm sure this problem has nothing to do with the power outage. Even when I restart the camera via UART and don't unplug the power, the camera still reverts to the default settings.
Thank you for helping me
 

Attachments

Thank you for your attention.

No, it's not a problem with the reset key.

Let me explain it completely and from the beginning.
They gave me 5 Hikvision DS-2CD1067G2-L cameras, which were already installed somewhere and worked properly. But later, when they wanted to change the NVR, they realized that any changes in the camera configuration would return to the previous state after it was turned off.
For example, a camera with IP 192.168.1.205 was connected to the previous NVR. But now that they want to connect the camera to the new NVR device with a different IP, even though the IP changes, it returns to the previous IP i.e. 192.168.1.205 after it is turned off.
As I said before, in the first step, I REVERTED THE CAMERA TO FACTORY SETTINGS USING UART, BUT NOW EVERY TIME THE CAMERA RESTARTS, IT'S INACTIVE again!

I THINK THIS PROBLEM CAN BE SOLVED WITH THE CORRECT FIRMWARE, BUT I CAN'T FIND ANY SUITABLE FIRMWARE.
 
any changes in the camera configuration would return to the previous state after it was turned off.
It sounds like the configuration is not able to be written to the flash memory when changes are saved.

A suggestion to try :
As you have access to the serial console via the UART connection, make a change to the configuration settings or network settings and observe what the serial console shows when 'save' is pressed.
Maybe there will be some clue there as to the cause of the problem.
 
It sounds like the configuration is not able to be written to the flash memory when changes are saved.

A suggestion to try :
As you have access to the serial console via the UART connection, make a change to the configuration settings or network settings and observe what the serial console shows when 'save' is pressed.
Maybe there will be some clue there as to the cause of the problem.
Hi
I tried changing the Server IP using UART. It was strange to me that these settings were saved correctly and did not return to the original state after the camera was turned off and on.(I uploaded the log file of this operation: "change env test.txt")
I also found the update file for this camera, but I was unable to perform the update operation via TFTP and UART, and the camera would restart after several warnings.(also uploaded the log file of this operation along with the errors: "update.txt")
I'll also post the download link for the digicap.dav firmware file here. Maybe it'll be useful to some people:
Download Link of Firmware_3000692886_EN_V5.8.40_251205:
Release Notes:
 
I tried changing the Server IP using UART. It was strange to me that these settings were saved correctly and did not return to the original state after the camera was turned off and on.
That's a bootloader environment variable, that's saved in a different part of the flash memory than where the camera configuration values are held.

There are no logfiles attached to your post.

What does the serial console show when you attempt to change and save the camera configuration via the web GUI?
 
That's a bootloader environment variable, that's saved in a different part of the flash memory than where the camera configuration values are held.

There are no logfiles attached to your post.

What does the serial console show when you attempt to change and save the camera configuration via the web GUI?
Server ip change log:
Code:
NDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 00001204
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0xFFFFFFFF
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU:   960 MHz
DRAM:  512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND:  NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id =  0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC:   0
 misc_init_r: boot time: 1596189(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1603659(us)
Net:   phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot:  0
HKVS # help
"?"       - alias for 'help'
erase     - erase flash except bootloader area
format    - format app_pri app_sec cfg_pri cfg_sec partition
go        - go
gos       - gos
gpio      - set the gpio
help      - print command description/usage
loadk     - load kernel to DRAM
upbs      - update u-boot via serial
upc       - format cfg0 and cfg1 (factory use) via ethernet
update    - update digicap.dav via ethernet
updateb   - update u-boot via ethernet
updatebusb- update u-boot via usbnet
upf       - update firm, format and update (factory use) via ethernet
upfusb    - update firm, format and update (factory use) via usbnet
upm       - update minisystem via ethernet
upmusb    - update minisystem via usbnet
upt       - update optee via ethernet
?         - alias for 'help'
bootm     - boot application image from memory
env       - environment handling commands
help      - print command description/usage
nvt_apb_freq- change apb freq
nvt_cpu_freq- change cpu freq
nvt_encrypt- To encrypt via key manager sample
nvt_get_cpu_freq- get cpu freq
nvt_get_ddr_freq- get ddr freq/type

nvt_optee - optee test cmd:
ping      - send ICMP ECHO_REQUEST to network host
printenv  - print environment variables
reset     - Perform RESET of the CPU
saveenv   - save environment variables to persistent storage
setenv    - set environment variables
updateb   - update u-boot via ethernet
HKVS # printenv
arch=arm
baudrate=115200
board=nvt-na51089
board_name=nvt-na51089
bootargs=earlyprintk console=ttyS0,115200 rootwait nprofile_irq_duration=on root=ubi0:rootfs rootfstype=ubifs ubi.fm_autoconvert=1 init=/linuxrc   boot_mode=0 
bootcmd=loadk;bootm
bootdelay=3
cpu=armv7
dbg=0
ethact=eth_hik
ethaddr=3c:1b:f8:be:fc:0c
fdtcontroladdr=6f9ade0
gatewayip=192.168.1.1
hostname=soclnx
ipaddr=192.168.1.64
netmask=255.255.255.0
phy_addr=0
serverip=192.168.1.128
soc=nvt-na51089_a32
stderr=serial
stdin=serial
stdout=serial
vendor=novatek
ver=U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800)
verify=0

Environment size: 601/131068 bytes
HKVS # setenv serverip 192.168.1.127
HKVS # savee
Saving Environment to NAND... Erasing NAND...
Erasing at 0x2a0000 -- 100% complete.
Writing to NAND... OK
OK
HKVS # printenv
arch=arm
baudrate=115200
board=nvt-na51089
board_name=nvt-na51089
bootargs=earlyprintk console=ttyS0,115200 rootwait nprofile_irq_duration=on root=ubi0:rootfs rootfstype=ubifs ubi.fm_autoconvert=1 init=/linuxrc   boot_mode=0 
bootcmd=loadk;bootm
bootdelay=3
cpu=armv7
dbg=0
ethact=eth_hik
ethaddr=3c:1b:f8:be:fc:0c
fdtcontroladdr=6f9ade0
gatewayip=192.168.1.1
hostname=soclnx
ipaddr=192.168.1.64
netmask=255.255.255.0
phy_addr=0
serverip=192.168.1.127
soc=nvt-na51089_a32
stderr=serial
stdin=serial
stdout=serial
vendor=novatek
ver=U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800)
verify=0

Environment size: 601/131068 bytes
HKVS # NDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 00001204
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0x77FCEFFD
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU:   960 MHz
DRAM:  512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND:  NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id =  0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC:   0
 misc_init_r: boot time: 1596408(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1603878(us)
Net:   phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot:  0
HKVS # printenv
arch=arm
baudrate=115200
board=nvt-na51089
board_name=nvt-na51089
bootargs=earlyprintk console=ttyS0,115200 rootwait nprofile_irq_duration=on root=ubi0:rootfs rootfstype=ubifs ubi.fm_autoconvert=1 init=/linuxrc   boot_mode=0 
bootcmd=loadk;bootm
bootdelay=3
cpu=armv7
dbg=0
ethact=eth_hik
ethaddr=3c:1b:f8:be:fc:0c
fdtcontroladdr=6f9ade0
gatewayip=192.168.1.1
hostname=soclnx
ipaddr=192.168.1.64
netmask=255.255.255.0
phy_addr=0
serverip=192.168.1.127
soc=nvt-na51089_a32
stderr=serial
stdin=serial
stdout=serial
vendor=novatek
ver=U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800)
verify=0

Environment size: 602/131068 bytes
HKVS # setenv serverip 192.168.1.128
HKVS # savee
Saving Environment to NAND... Erasing NAND...
Erasing at 0x2a0000 -- 100% complete.
Writing to NAND... OK
OK
HKVS # printenv
arch=arm
baudrate=115200
board=nvt-na51089
board_name=nvt-na51089
bootargs=earlyprintk console=ttyS0,115200 rootwait nprofile_irq_duration=on root=ubi0:rootfs rootfstype=ubifs ubi.fm_autoconvert=1 init=/linuxrc   boot_mode=0 
bootcmd=loadk;bootm
bootdelay=3
cpu=armv7
dbg=0
ethact=eth_hik
ethaddr=3c:1b:f8:be:fc:0c
fdtcontroladdr=6f9ade0
gatewayip=192.168.1.1
hostname=soclnx
ipaddr=192.168.1.64
netmask=255.255.255.0
phy_addr=0
serverip=192.168.1.128
soc=nvt-na51089_a32
stderr=serial
stdin=serial
stdout=serial
vendor=novatek
ver=U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800)
verify=0

Environment size: 602/131068 bytes
HKVS #
Update error log:
Code:
HKVS # update
Load kernel to 0xc700000 ...
<sbal_wb_aes_update>...decrypt
<sbal_wb_aes_update>...decrypt
<sbal_seboot>body_total_len=7003616
<sbal_seboot>verify success ##successful to load enc_uImage##
gzip_image_size 6addc0 image_size d493f8
nvt_ker_img_ungzip_linux: gz_uncompress linux
nvt_ker_img_ungzip_linux: generating uImage header for linux
CHIP_1.
boot of image at addr 0x0C700000 ...
## Booting kernel from Legacy Image at 0c720000 ...
   Image Name:
   Image Type: ARM Linux Kernel Image (uncompressed)
   Data Size: 13931512 Bytes = 13.3 MiB
   Load Address: 00008000
   Entry Point: 00008000
## Flattened Device Tree blob at 0c700000
   Booting using the fdt blob at 0xc700000
   Loading Kernel Image
   Loading Device Tree to 087dd000, end 087fffff ... OK

Starting kernel ...

l2cache:0
Disable MMU
Clear MMU
Uboot L2 cache aux val: 0x72420000
Uboot L2 cache prefetch ctrl val: 0x70000000
Uboot L2 cache ctrl val: 0x00000000
Done
[ 0.000000] Booting Linux on physical CPU 0x0
[ 0.000000] Linux version 4.19.91 (root@CI-HZV-FRONTEND-SLAVE-71-108) (gcc version 8.4.0 (Buildroot 2020.02.9-3-g58c1c2e-dirty)) #1 Thu Jun 29 20:11:10 CST 2023
[ 0.000000] CPU: ARMv7 Processor [414fc091] revision 1 (ARMv7), cr=10c5787d
[ 0.000000] CPU: PIPT / VIPT nonaliasing data cache, VIPT aliasing instruction cache
[ 0.000000] fdt unable to read /mmc@f0510000
[ 0.000000] OF: fdt: Machine model: Novatek NA51089
▒▒. 0.000000] OF: fdt: 2 initial_boot_params = ▒
[ 0.000000] ###os_dram0_size:0xf400000, os_dram1_size:0x0##
[ 0.000000] bootconsole [earlycon0] enabled
starting pid 143, tty '': '/etc/init.d/rcS'
Starting udev: [ OK ]
create static device nodes under /dev dir
SYS_NOBACKUP:1
BLD_VER:3380961
Set output direction of gpio[109],value:1
done
SYS_NOBACKUP1
SYS_NOBACKUP_test
prepare_partition.sh SYS_NOBACKUP:1!
the device nobackup, don't mount app_sec!
[ERROR][MIN]MOUNT: mount config primary partition failed!
[ERROR][MIN]MOUNT: please format and re-mount.
[ERROR][MIN]MOUNT_APP: mount app failed!
NDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 00001204
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0x00000000
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU: 960 MHz
DRAM: 512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND: NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id = 0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC: 0
 misc_init_r: boot time: 1596311(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1603781(us)
Net: phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot: 0
 
The serial console shows that the attempt to mount the partition holding the configuration files has failed.
The reason is unknown -

Code:
SYS_NOBACKUP1
SYS_NOBACKUP_test
prepare_partition.sh SYS_NOBACKUP:1!
the device nobackup, don't mount app_sec!
[ERROR][MIN]MOUNT: mount config primary partition failed!
[ERROR][MIN]MOUNT: please format and re-mount.
[ERROR][MIN]MOUNT_APP: mount app failed!

If it's UBIFS, it may be corrupted:
Code:
    # mount config_pri: /dev/mtd10
    if [ -e /dev/ubi3_0 ] ; then
        /bin/mount -t ubifs -o chk_data_crc -o sync /dev/ubi3_0 /davinci > /dev/null 2>&1
    else
        /usr/sbin/mount_ubifs_prt.sh 12 3 /davinci > /dev/null 2>&1
    fi
    if [ "$?" != "0" ]; then
        echo "[ERROR][MIN]MOUNT: mount config primary partition failed!"
        echo "[ERROR][MIN]MOUNT: please format and re-mount."
        exit 1
    fi


Suggestion to try :
Interrupt the bootloader, and use the 'upc' command to reformat the partitions.
This should reset the device to 'Inactive' and hopefully allow activation and configuration.
 
Suggestion to try :
Interrupt the bootloader, and use the 'upc' command to reformat the partitions.
This should reset the device to 'Inactive' and hopefully allow activation and configuration.
I used the upc command in the boot menu. The camera became inactive. Then I reactivated the camera. But after restarting, it went back to inactive.
Result of "upc" command:
Code:
 NDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 00001204
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0x00000000
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU: 960 MHz
DRAM: 512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND: NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id = 0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC: 0
 misc_init_r: boot time: 1596180(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1603649(us)
Net: phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot: 0
HKVS # upc
Load kernel to 0xc700000 ...
<sbal_wb_aes_update>...decrypt
<sbal_wb_aes_update>...decrypt
<sbal_seboot>body_total_len=7003616
<sbal_seboot>verify success ##successful to load enc_uImage##
gzip_image_size 6addc0 image_size d493f8
nvt_ker_img_ungzip_linux: gz_uncompress linux
nvt_ker_img_ungzip_linux: generating uImage header for linux
CHIP_1.
boot of image at addr 0x0C700000 ...
## Booting kernel from Legacy Image at 0c720000 ...
   Image Name:
   Image Type: ARM Linux Kernel Image (uncompressed)
   Data Size: 13931512 Bytes = 13.3 MiB
   Load Address: 00008000
   Entry Point: 00008000
## Flattened Device Tree blob at 0c700000
   Booting using the fdt blob at 0xc700000
   Loading Kernel Image
   Loading Device Tree to 087dd000, end 087fffff ... OK

Starting kernel ...

l2cache:0
Disable MMU
Clear MMU
Uboot L2 cache aux val: 0x72420000
Uboot L2 cache prefetch ctrl val: 0x70000000
Uboot L2 cache ctrl val: 0x00000000
Done
[ 0.000000] Booting Linux on physical CPU 0x0
[ 0.000000] Linux version 4.19.91 (root@CI-HZV-FRONTEND-SLAVE-71-108) (gcc version 8.4.0 (Buildroot 2020.02.9-3-g58c1c2e-dirty)) #1 Thu Jun 29 20:11:10 CST 2023
[ 0.000000] CPU: ARMv7 Processor [414fc091] revision 1 (ARMv7), cr=10c5787d
[ 0.000000] CPU: PIPT / VIPT nonaliasing data cache, VIPT aliasing instruction cache
[ 0.000000] fdt unable to read /mmc@f0510000
[ 0.000000] OF: fdt: Machine model: Novatek NA51089
▒▒. 0.000000] OF: fdt: 2 initial_boot_params = ▒
[ 0.000000] ###os_dram0_size:0xf400000, os_dram1_size:0x0##
[ 0.000000] bootconsole [earlycon0] enabled
starting pid 143, tty '': '/etc/init.d/rcS'
Starting udev: [ OK ]
create static device nodes under /dev dir
SYS_NOBACKUP:1
BLD_VER:3380961
done
Set output direction of gpio[109],value:1

starting pid 462, tty '': '-/bin/psh'
BusyBox v3.0.0-2405855 Protect Shell (psh)
Enter 'help' for a list of davinci system commands.
#

After using the "upc" command, I tried to update the camera with the "update" command, but the previous errors still appeared during the update.
 
Last edited:
These are the logs via UART when I try to activate the camera by giving it a new password:
Code:
###################################  Device Is Ready ########################################
[01-01 00:01:24][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:25][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:26][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:27][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:28][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:29][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:30][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:31][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:32][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:33][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[DSP][LOG]hikdsp still alive!   [build:Aug 22 2023--16:22:36]   (Has running 1 min and 13 sec )
[01-01 00:01:34][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:35][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:36][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:37][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:38][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:39][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:40][pid:0][OTHER][ERROR]add_user_online_info param error
[01-01 00:01:40][pid:0][OTHER][ERROR]add_user_online_info param error
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][OTHER][ERROR]CheckPasswordLevel: password length is less than 8
[01-01 00:01:40][pid:0][STRM_ANLS][ERROR]endhkpwent get_hkpwhandle is null.
[01-01 00:01:40][pid:0][STRM_ANLS][ERROR]endhkpwent get_hkpwhandle is null.
ref_inc Linux.
count = 2.
ref_num count= 2
ref_dec Linux.
count = 1.
ref_dec Linux.
free(p_ref)
count = 0.
[01-01 00:01:40][pid:0][CGI][ERROR]new session login.
[01-01 00:01:40][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:41][pid:933][CGI][ERROR]get wifi ipaddr failed, do ZeroConfig failed
[01-01 00:01:41][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:42][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:43][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:44][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:45][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:46][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:47][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:48][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:49][pid:0][OTHER][ERROR]add_user_online_info param error
[01-01 00:01:49][pid:0][OTHER][ERROR]add_user_online_info param error
[01-01 00:01:49][pid:0][OTHER][ERROR]add_user_online_info param error
auth_lock_ret.times_to_lock: 7
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][CGI][ERROR]new session login.
[01-01 00:01:49][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:51][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:52][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:53][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:54][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:54][pid:0][OTHER][ERROR]add_user_online_info param error
[01-01 00:01:54][pid:0][OTHER][ERROR]add_user_online_info param error
[01-01 00:01:54][pid:0][OTHER][ERROR]add_user_online_info param error
auth_lock_ret.times_to_lock: 7
[01-01 00:01:54][pid:0][CGI][ERROR]new session login.
[01-01 00:01:54][pid:0][CGI][ERROR]new session login.
[01-01 00:01:54][pid:0][CGI][ERROR]new session login.
[01-01 00:01:54][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[01-01 00:01:55][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][CGI][ERROR]new session login.
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: ADJUSTTIME_MODE_WITHOUTRTC SetCallerIp(192.168.1.128) OK !
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Now clock_gettime 115 s 319914091 ns!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Now gettimeofday 115 s 319941 us!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: ADJUSTTIME_MODE_WITHOUTRTC SetCallerIp(192.168.1.128) OK !
TIMODE_CORRECT isapi set time,ip=192.168.1.128
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Now clock_gettime 115 s 333921091 ns!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Now gettimeofday 115 s 333952 us!
ref_inc Linux.
count = 2.
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::g_adjusttm_mqd has totally received 2 msg !
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::mq receive the number 1 msg success,  ADJUSTTIME_MODE_WEB_ZONE
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: It' is  in WinterTime !
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: Illegal settingTime, tv_sec= -16085, tv_usec= 337864!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: setSysTime error!!!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::mq receive the number 2 msg success,  ADJUSTTIME_MODE_WITHOUTRTC
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Receive setting time is 1776108563 s 0 us!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: Setting time has already include Zone(DevItself)!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM:: Setting time has already include DST(DevItself)!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Start at 115 s 333921091 ns, now is 115 s 338001633 ns, Msg cost time is 4080 us!
[01-01 00:01:55][pid:0][SYSINIT][ERROR]ADTM::Ready setting time is 1776108563 s 4080 us, and sys is 115 s 338024 us now, diff is 2000001 us!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::settimeofday OK, 1776108563 s 4080 us!
ref_num count= 2
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::iRefNum = 2 !!!
ref_dec Linux.
count = 1.
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::Now clock_gettime 115 s 338291099 ns!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::Now gettimeofday 1776108563 s 4323 us!
ref_inc Linux.
count = 2.
ref_dec Linux.
free(p_ref)
count = 0.
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::  ADJUSTTIME_MODE_WITHOUTRTC adjresult is  ADJUSTTIME_OK!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::g_adjusttm_mqd has totally received 1 msg !
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::mq receive the number 1 msg success,  ADJUSTTIME_MODE_WITHOUTRTC
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::Receive setting time is 1776108563 s 0 us!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM:: Setting time has already include Zone(DevItself)!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM:: Setting time has already include DST(DevItself)!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::Start at 115 s 338291099 ns, now is 115 s 338918165 ns, Msg cost time is 627 us!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::Ready setting time is 1776108563 s 627 us, and sys is 1776108563 s 4947 us now, diff is -4320 us!
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::settimeofday OK, 1776108563 s 627 us!
ref_num count= 2
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::iRefNum = 2 !!!
ref_dec Linux.
count = 1.
ref_dec Linux.
free(p_ref)
count = 0.
[04-13 19:29:23][pid:0][SYSINIT][ERROR]ADTM::  ADJUSTTIME_MODE_WITHOUTRTC adjresult is  ADJUSTTIME_OK!
[04-13 19:29:23][pid:0][EDA_FTP][ERROR]Adjust time no change.
appweb: 1: pruneWorkers: ws->idleThreads->length:5
appweb: 1: pruneWorkers: ws->idleThreads->length:4
appweb: 1: pruneWorkers: ws->idleThreads->length:3
appweb: 1: No free worker threads. Increase ThreadLimit. (currently allocated 6)
appweb : 1 : mprInvokeWaitCallback: Can't create or get a worker handle.....
appweb : 1 : mprInvokeWaitCallback: Can't create or get a worker handle.....
appweb : 1 : mprInvokeWaitCallback: Can't create or get a worker handle.....
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]VCAResource is not supported .
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Traffic/capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Traffic/channels/1/vehicleDetect/capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Traffic/channels/1/capability]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/AUXInfo/attributes/Channels]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][UNI_IF][ERROR]Param ERROR---chan = 0.
[04-13 19:29:23][pid:0][UNI_IF][ERROR]Param ERROR---chan = 0.
[04-13 19:29:23][pid:0][UNI_IF][ERROR]Param ERROR---chan = 0.
[04-13 19:29:23][pid:0][CGI][ERROR]device does not support gis function!
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Panorama/channels/1/imageParam/capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Panorama/channels/1/imageParam]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Panorama/sensor/capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][OTHER][ERROR]add_user_online_info param error
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/System/Network/Bond/1]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]SW_ACTIVE_MULTICAST_SUP NOT SUPPORT
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Custom/ParamConfiguration/capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/Capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/channels/1/capabilities]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]Get iris cfg failed
[04-13 19:29:23][pid:0][CGI][ERROR]get_image_gamma_correction failed
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:23][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:23][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:23][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Security/advanced]...
[04-13 19:29:23][pid:0][CGI][ERROR]new session login.
[04-13 19:29:23][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:23][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:23][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:23][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:23][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Security/advanced]...
[04-13 19:29:23][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:24][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Panorama/capabilities]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/channels/1/manualFaceSnap/capabilities]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/Capabilities]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/channels/1/capabilities]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:25][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:25][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:25][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Security/advanced]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/AUXInfo/attributes/Channels]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/channels/1/mixedTargetDetection/capabilities]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/AUXInfo/attributes/Channels]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:25][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/AUXInfo/attributes/Channels]...
[04-13 19:29:25][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Intelligent/channels/1/mixedTargetDetection/capabilities]...
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR]hikext_twowaychans_basic error, not support audio
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:26][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:26][pid:0][CGI][ERROR]Parse URI to get process error:unknow service node:advanced
[04-13 19:29:26][pid:0][CGI][ERROR]1found but protocol format not match...
[04-13 19:29:26][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/Security/advanced]...
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/AUXInfo/attributes/Channels]...
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][PSIA][ERROR]==system_process is not found [/ISAPI/AUXInfo/attributes/Channels]...
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR] ptz not support
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR] ptz not support
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR] ptz not support
[04-13 19:29:26][pid:0][CGI][ERROR]new session login.
[04-13 19:29:26][pid:0][CGI][ERROR] ptz not support
[04-13 19:29:26][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:27][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:28][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:28][pid:0][CGI][ERROR]new session login.
[04-13 19:29:29][pid:933][CGI][ERROR]get wifi ipaddr failed, do ZeroConfig failed
[04-13 19:29:29][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:30][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
[04-13 19:29:31][pid:0][SDKCMD][ERROR]sdk_switch_flag is [0]
 
The camera didn't accept this Firmware...

I have two new questions that may bring us closer to a solution.
1. When pressing the "upf" command, it gives the following error. It's like the camera needs a file called "mimage_g6."1. When pressing the "upf" command, it gives the following error. It's like the camera needs a file called "mImage_g6". Can you advise me on what this file is and whether or not it solves the problem?

Code:
 HKVS # help upf
upf - update firm, format and update (factory use) via ethernet

Usage:
upf - No additional help available.
Unknown command 'upf' - try 'help' without arguments for list of all known commands

HKVS # upf
***** UPDATE START *****
Using eth_hik device
TFTP from server 192.168.1.128; our IP address is 192.168.1.64
Filename 'mImage_g6'.
Load address: 0x4000000
Loading: *
TFTP error: 'File not found' (1)
Not retrying...
error: tftp.(error!)
error: upm.(error!)
error: upf.(error!)
***** UPDATE  FAIL *****

2-What do you think about the "format" command? Do you think you can help? Or will it cause the camera to lose completely?
Code:
format    - format app_pri app_sec cfg_pri cfg_sec partition
 
Last edited:
Worth trying, in my view, would be the format of
cfg_pri
and
cfg_sec
This is what the error is suggesting is needed when the mount of the configuration partition fails.
 
Worth trying, in my view, would be the format of
cfg_pri
and
cfg_sec
This is what the error is suggesting is needed when the mount of the configuration partition fails.
Thank you so much for your help. I was finally able to fix all 5 cameras and they are all working now!

I used the "format" and then "update" commands to fix the cameras. I'm including the logs, maybe it will be useful for someone later.
I also used the firmware that I had posted the download link to a few posts ago. Thank you for helping me.
Log:
First, use "format" command:
Code:
NDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 0000120C
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0x26500080
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU:   960 MHz
DRAM:  512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND:  NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id =  0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC:   0
 misc_init_r: boot time: 1595391(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1602862(us)
Net:   phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot:  0
HKVS # format
Load kernel to 0xc700000 ...
<sbal_wb_aes_update>...decrypt
<sbal_wb_aes_update>...decrypt
<sbal_seboot>body_total_len=7003616
<sbal_seboot>verify success ##successful to load enc_uImage##
gzip_image_size  6addc0  image_size   d493f8
nvt_ker_img_ungzip_linux: gz_uncompress linux
nvt_ker_img_ungzip_linux: generating uImage header for linux
CHIP_1.
boot of image at addr 0x0C700000 ...
## Booting kernel from Legacy Image at 0c720000 ...
   Image Name:
   Image Type:   ARM Linux Kernel Image (uncompressed)
   Data Size:    13931512 Bytes = 13.3 MiB
   Load Address: 00008000
   Entry Point:  00008000
## Flattened Device Tree blob at 0c700000
   Booting using the fdt blob at 0xc700000
   Loading Kernel Image
   Loading Device Tree to 087dd000, end 087fffff ... OK

Starting kernel ...

l2cache:0
Disable MMU
Clear MMU
Uboot L2 cache aux val: 0x72420000
Uboot L2 cache prefetch ctrl val: 0x70000000
Uboot L2 cache ctrl val: 0x00000000
Done
[    0.000000] Booting Linux on physical CPU 0x0
[    0.000000] Linux version 4.19.91 (root@CI-HZV-FRONTEND-SLAVE-71-108) (gcc version 8.4.0 (Buildroot 2020.02.9-3-g58c1c2e-dirty)) #1 Thu Jun 29 20:11:10 CST 2023
[    0.000000] CPU: ARMv7 Processor [414fc091] revision 1 (ARMv7), cr=10c5787d
[    0.000000] CPU: PIPT / VIPT nonaliasing data cache, VIPT aliasing instruction cache
[    0.000000] fdt unable to read /mmc@f0510000
[    0.000000] OF: fdt: Machine model: Novatek NA51089
▒▒.  0.000000] OF: fdt: 2 initial_boot_params = ▒
[    0.000000] ###os_dram0_size:0xf400000, os_dram1_size:0x0##
[    0.000000] bootconsole [earlycon0] enabled
starting pid 143, tty '': '/etc/init.d/rcS'
Starting udev:      [ OK ]
create static device nodes under /dev dir
SYS_NOBACKUP:1
BLD_VER:3380961
Set output direction of gpio[109],value:1
done
Formatting ...
1
..........................................the device nobackup, don't formatting app_sec!
..........................................the device nobackup, don't formatting cfg_sec!
...... done!

starting pid 492, tty '': '-/bin/psh'
BusyBox v3.0.0-2405855 Protect Shell (psh)
Enter 'help' for a list of davinci system commands.
Restarting the camera with a power cable:

Code:
# NDI>XSRCNDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 0000120C
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0xFFFFFFFF
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU:   960 MHz
DRAM:  512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND:  NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id =  0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC:   0
 misc_init_r: boot time: 1595739(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1603208(us)
Net:   phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot:  0
|RCV UDP pack timeout| error: auto upgrade.(error!!)
TFTP server auto connect disabled
Unknown command 'crc' - try 'help'

booting from sys part...
Load kernel to 0xc700000 ...
<sbal_wb_aes_update>...decrypt
NDI>XSRCTOdma1 ini_ver 0x11210818
ETH trim = 0000120C
speed 000003A5
dma1 ssc 00000002
Non S3
>ddr3
WT = 0E3100F3
dma ok

UNZOK!
Loader Start ...
LD_VER 04.01.02

560_DRAM1_933_4096Mb 06/29/2023 20:10:03

NAND,BS= 0x00000002
Pad driving increased
SPI NAND MID=000000EF DEV=000000AA
storagesizeH= 0x00000000
storagesizeL= 0x08000000
ld.LdCtrl2 0xFFFFFFFF
LdCtrl2 0x00000000
teeos_addr 0x02000000
uboot_addr 0x0E000000
uboot_size 0x02000000
jump 0x02000180


U-Boot 2019.04-svn3380961 (Jun 29 2023 - 20:10:25 +0800), Build: jenkins-Frontend.BSP.CCI.devCloud-12821

CPU:   960 MHz
DRAM:  512 MiB
l2cache:0
l2cache:1
bootmode = 0 addr=00007e00!
otp_init!
120MHz
otp_timing_reg= 0xff6050
NAND:  NAND version: 1.0.33
drv_nand_reset(603) nodeoffset < 0
drv_nand_reset: path /top/spi not found
ecc-mode = <0>
nand chip_sel = <0>
id =  0xef 0xaa 0x21 0x00
use flash on-die ecc
nvt spinand 4-bit mode @ 12000000 Hz
128 MiB
MMC:   0
 misc_init_r: boot time: 1595499(us)
Set CPU clk 960MHz
set usb power down
 misc_init_r: boot time: 1602970(us)
Net:   phy interface: LED1
phy interface: INTERNAL MII

pclk_freq(5000000) div(23)
[Uboot] In release mode!
Hit Ctrl+u to stop autoboot:  0
Now stop autoboot and "update" command:

Code:
HKVS # update
Load kernel to 0xc700000 ...
<sbal_wb_aes_update>...decrypt
<sbal_wb_aes_update>...decrypt
<sbal_seboot>body_total_len=7003616
<sbal_seboot>verify success ##successful to load enc_uImage##
gzip_image_size  6addc0  image_size   d493f8
nvt_ker_img_ungzip_linux: gz_uncompress linux
nvt_ker_img_ungzip_linux: generating uImage header for linux
CHIP_1.
boot of image at addr 0x0C700000 ...
## Booting kernel from Legacy Image at 0c720000 ...
   Image Name:
   Image Type:   ARM Linux Kernel Image (uncompressed)
   Data Size:    13931512 Bytes = 13.3 MiB
   Load Address: 00008000
   Entry Point:  00008000
## Flattened Device Tree blob at 0c700000
   Booting using the fdt blob at 0xc700000
   Loading Kernel Image
   Loading Device Tree to 087dd000, end 087fffff ... OK

Starting kernel ...

l2cache:0
Disable MMU
Clear MMU
Uboot L2 cache aux val: 0x72420000
Uboot L2 cache prefetch ctrl val: 0x70000000
Uboot L2 cache ctrl val: 0x00000000
Done
[    0.000000] Booting Linux on physical CPU 0x0
[    0.000000] Linux version 4.19.91 (root@CI-HZV-FRONTEND-SLAVE-71-108) (gcc version 8.4.0 (Buildroot 2020.02.9-3-g58c1c2e-dirty)) #1 Thu Jun 29 20:11:10 CST 2023
[    0.000000] CPU: ARMv7 Processor [414fc091] revision 1 (ARMv7), cr=10c5787d
[    0.000000] CPU: PIPT / VIPT nonaliasing data cache, VIPT aliasing instruction cache
[    0.000000] fdt unable to read /mmc@f0510000
[    0.000000] OF: fdt: Machine model: Novatek NA51089
▒▒.  0.000000] OF: fdt: 2 initial_boot_params = ▒
[    0.000000] ###os_dram0_size:0xf400000, os_dram1_size:0x0##
[    0.000000] bootconsole [earlycon0] enabled
starting pid 143, tty '': '/etc/init.d/rcS'
Starting udev:      [ OK ]
create static device nodes under /dev dir
SYS_NOBACKUP:1
BLD_VER:3380961
Set output direction of gpio[109],value:1
done
SYS_NOBACKUP1
SYS_NOBACKUP_test
prepare_partition.sh SYS_NOBACKUP:1!
the device nobackup, don't mount app_sec!
the device nobackup, don't mount config_sec!
================================================
= !!  the  minisys  is  used  for  [ ipc ]  !! =
================================================
[ INFO][MIN]TFTP: TFTP from server 192.168.1.128
[ INFO][MIN]TFTP: tftp: server error: (1) File not found
digicap.dav            9% |**                             |  2512k  0:00:10 ETA#digicap.dav           32% |**********                     |  9144k  0:00:04 ETA#digicap.dav           56% |*****************              | 15760k  0:00:02 ETA#digicap.dav           80% |************************       | 22416k  0:00:00 ETA#digicap.dav          100% |*******************************| 27868k  0:00:00 ETA

[ INFO][MIN]TFTP: Download File [OK]
[ INFO][MIN]BURN: ### chip_map = 1, chip_id = 1 ###
[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][262]:###### unpack source[0] bPackVerFlg=0x00,bPackDevFlg=2600050041111120011,iFirmMapFlg=0x00000001,iFirmKeyFlg=0x01040000
[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][264]:###### unpack source[0] iFirmOffset=0x0000006c,iFileLength=0x01b3709c,iCheckSumU8=0xd8ea3310,pPackFile->bFlashModel=0x00000000
[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][293]:###pack[0] iFirmFlg=0x01040000,iPlatform=260,iDevMajor=111,iDevMinor=112,iLanguage=1
[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[0] szFileName=_cfgUpgClass,iFirmOffset=0x00001a00,iFileLength=0x00000160,iCheckSumU8=0x8a883e26
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[1] szFileName=app.tar.gz,iFirmOffset=0x00001b60,iFileLength=0x00958b27,iCheckSumU8=0xe7a498ab
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[2] szFileName=uImage,iFirmOffset=0x0095a687,iFileLength=0x00601fc0,iCheckSumU8=0xbafd6be6
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.................................................[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[3] szFileName=webLib.img,iFirmOffset=0x00f5c647,iFileLength=0x004ff000,iCheckSumU8=0x6fe1563b
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[4] szFileName=mpp_modules.tgz,iFirmOffset=0x0145b647,iFileLength=0x0028496e,iCheckSumU8=0x4390194b
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[5] szFileName=heop.tgz,iFirmOffset=0x016dffb5,iFileLength=0x00257391,iCheckSumU8=0xc876c32e
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[6] szFileName=solib.tar.gz,iFirmOffset=0x01937346,iFileLength=0x000720e5,iCheckSumU8=0xdeeb15ab
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[7] szFileName=sound.tar.gz,iFirmOffset=0x019a942b,iFileLength=0x00069094,iCheckSumU8=0x0ad0ecb2
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[8] szFileName=g6_modules.tgz,iFirmOffset=0x01a124bf,iFileLength=0x000634b1,iCheckSumU8=0x81931568
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[9] szFileName=libhal_bsp.so.tar.gz,iFirmOffset=0x01a75970,iFileLength=0x0004f490,iCheckSumU8=0x1b1a3e1d
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[10] szFileName=dsp_extres.tgz,iFirmOffset=0x01ac4e00,iFileLength=0x00042a82,iCheckSumU8=0x37468a4d
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[11] szFileName=g6_isp_config.tgz,iFirmOffset=0x01b07882,iFileLength=0x0002589d,iCheckSumU8=0xb719aa4d
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[12] szFileName=dsp_capability.tar.lzma,iFirmOffset=0x01b2d11f,iFileLength=0x000034a8,iCheckSumU8=0x25fd416c
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[13] szFileName=initrun.sh,iFirmOffset=0x01b305c7,iFileLength=0x00002200,iCheckSumU8=0xd920703f
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[14] szFileName=bsp_resources.tar.gz,iFirmOffset=0x01b327c7,iFileLength=0x000015ea,iCheckSumU8=0x8b20b157
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[15] szFileName=media_capability.tar.lzma,iFirmOffset=0x01b33db1,iFileLength=0x00000ec7,iCheckSumU8=0xdac25608
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[16] szFileName=media_capability_uncompress.sh,iFirmOffset=0x01b34c78,iFileLength=0x00000b7f,iCheckSumU8=0x0febaeff
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[17] szFileName=dsp_exres_uncompress.sh,iFirmOffset=0x01b357f7,iFileLength=0x00000ade,iCheckSumU8=0x2fd468c3
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[18] szFileName=light.json,iFirmOffset=0x01b362d5,iFileLength=0x000005ba,iCheckSumU8=0x11059f2a
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[19] szFileName=trans.sh,iFirmOffset=0x01b3688f,iFileLength=0x00000535,iCheckSumU8=0xcd579300
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[20] szFileName=cap.json,iFirmOffset=0x01b36dc4,iFileLength=0x000001d6,iCheckSumU8=0xd99d2c5d
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_ERRO][src/firm_unpack_lib.c][firm_pack_decode][403]:###file[21] szFileName=media_init.sh,iFirmOffset=0x01b36f9a,iFileLength=0x00000102,iCheckSumU8=0x7e3db8cf
[PACK][DBG_ERRO][src/firm_crypt_lib.c][firm_dec_aes_unif][590]:firm_dec_aes_unif
###SHA_hash_initSHA_512!!!!
.[PACK][DBG_HINT][src/firm_unpack_lib.c][firm_pack_decode][342]:###pack num=1,decode succ=1,permit denied=0
[BSP MCU] digicap.dav update over, waiting mcu update ......

[ INFO][MIN]BURN: Write Flash [OK]
***** UPDATE COMPLETE *****

The system is going down NOW!
Sent SIGTERM to all processes
Sent SIGKILL to all processes
Requesting system reboot
 
Last edited: