blob: 5ede423ee72f1820693a653c1ca76a6c194ec609 [file] [log] [blame]
Joerg Mayera93d9dc2013-08-29 00:38:19 +00001.TH FLASHROM 8 "" ""
Stefan Reinauer261144c2006-07-27 23:29:02 +00002.SH NAME
Uwe Hermann530cb2d2009-05-14 22:58:21 +00003flashrom \- detect, read, write, verify and erase flash chips
Stefan Reinauer261144c2006-07-27 23:29:02 +00004.SH SYNOPSIS
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +00005.B flashrom \fR[\fB\-h\fR|\fB\-R\fR|\fB\-L\fR|\fB\-z\fR|\
6\fB\-p\fR <programmername>[:<parameters>]
7 [\fB\-E\fR|\fB\-r\fR <file>|\fB\-w\fR <file>|\fB\-v\fR <file>] \
8[\fB\-c\fR <chipname>]
9 [\fB\-l\fR <file> [\fB\-i\fR <image>]] [\fB\-n\fR] [\fB\-f\fR]]
10 [\fB\-V\fR[\fBV\fR[\fBV\fR]]] [\fB-o\fR <logfile>]
Stefan Reinauer261144c2006-07-27 23:29:02 +000011.SH DESCRIPTION
12.B flashrom
Uwe Hermanne8ba5382009-05-22 11:37:27 +000013is a utility for detecting, reading, writing, verifying and erasing flash
Uwe Hermann530cb2d2009-05-14 22:58:21 +000014chips. It's often used to flash BIOS/EFI/coreboot/firmware images in-system
Uwe Hermann941a2732011-07-25 21:12:57 +000015using a supported mainboard. However, it also supports various external
16PCI/USB/parallel-port/serial-port based devices which can program flash chips,
17including some network cards (NICs), SATA/IDE controller cards, graphics cards,
Ilya A. Volynets-Evenbakh2c714ab2012-09-26 00:47:09 +000018the Bus Pirate device, various FTDI FT2232/FT4232H/FT232H based USB devices, and more.
Uwe Hermanne74b9f82009-04-10 14:41:29 +000019.PP
Uwe Hermann9ff514d2010-06-07 19:41:25 +000020It supports a wide range of DIP32, PLCC32, DIP8, SO8/SOIC8, TSOP32, TSOP40,
Uwe Hermann941a2732011-07-25 21:12:57 +000021TSOP48, and BGA chips, which use various protocols such as LPC, FWH,
22parallel flash, or SPI.
Stefan Reinauer261144c2006-07-27 23:29:02 +000023.SH OPTIONS
Uwe Hermann9ff514d2010-06-07 19:41:25 +000024.B IMPORTANT:
Carl-Daniel Hailfinger5de93412009-05-01 10:53:49 +000025Please note that the command line interface for flashrom will change before
26flashrom 1.0. Do not use flashrom in scripts or other automated tools without
Uwe Hermanne8ba5382009-05-22 11:37:27 +000027checking that your flashrom version won't interpret options in a different way.
Carl-Daniel Hailfinger5de93412009-05-01 10:53:49 +000028.PP
Uwe Hermann9ff514d2010-06-07 19:41:25 +000029You can specify one of
30.BR \-h ", " \-R ", " \-L ", " \-z ", " \-E ", " \-r ", " \-w ", " \-v
31or no operation.
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +000032If no operation is specified, flashrom will only probe for flash chips. It is
Michael Karcher31fd8252010-03-12 06:41:39 +000033recommended that if you try flashrom the first time on a system, you run it
Uwe Hermann941a2732011-07-25 21:12:57 +000034in probe-only mode and check the output. Also you are advised to make a
Uwe Hermann9ff514d2010-06-07 19:41:25 +000035backup of your current ROM contents with
36.B \-r
Stefan Taunere34e3e82013-01-01 00:06:51 +000037before you try to write a new image. All operations involving any chip access (probe/read/write/...) require the
38.B -p/--programmer
39option to be used (please see below).
Stefan Reinauerde063bf2006-09-21 13:09:22 +000040.TP
Uwe Hermanne74b9f82009-04-10 14:41:29 +000041.B "\-r, \-\-read <file>"
42Read flash ROM contents and save them into the given
43.BR <file> .
Uwe Hermann941a2732011-07-25 21:12:57 +000044If the file already exists, it will be overwritten.
Stefan Reinauerde063bf2006-09-21 13:09:22 +000045.TP
Uwe Hermanne74b9f82009-04-10 14:41:29 +000046.B "\-w, \-\-write <file>"
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +000047Write
48.B <file>
Uwe Hermann9ff514d2010-06-07 19:41:25 +000049into flash ROM. This will first automatically
50.B erase
51the chip, then write to it.
Stefan Taunerac54fbe2011-07-21 19:52:00 +000052.sp
53In the process the chip is also read several times. First an in-memory backup
54is made for disaster recovery and to be able to skip regions that are
55already equal to the image file. This copy is updated along with the write
56operation. In case of erase errors it is even re-read completely. After
57writing has finished and if verification is enabled, the whole flash chip is
58read out and compared with the input image.
Stefan Reinauerde063bf2006-09-21 13:09:22 +000059.TP
Uwe Hermannea07f622009-06-24 17:31:08 +000060.B "\-n, \-\-noverify"
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +000061Skip the automatic verification of flash ROM contents after writing. Using this
Uwe Hermannea07f622009-06-24 17:31:08 +000062option is
63.B not
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +000064recommended, you should only use it if you know what you are doing and if you
Uwe Hermannea07f622009-06-24 17:31:08 +000065feel that the time for verification takes too long.
66.sp
67Typical usage is:
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +000068.B "flashrom \-p prog \-n \-w <file>"
Uwe Hermannea07f622009-06-24 17:31:08 +000069.sp
70This option is only useful in combination with
71.BR \-\-write .
72.TP
Uwe Hermanne74b9f82009-04-10 14:41:29 +000073.B "\-v, \-\-verify <file>"
74Verify the flash ROM contents against the given
75.BR <file> .
Stefan Reinauerde063bf2006-09-21 13:09:22 +000076.TP
Stefan Reinauer261144c2006-07-27 23:29:02 +000077.B "\-E, \-\-erase"
Uwe Hermanne74b9f82009-04-10 14:41:29 +000078Erase the flash ROM chip.
Stefan Reinauerde063bf2006-09-21 13:09:22 +000079.TP
Stefan Reinauer261144c2006-07-27 23:29:02 +000080.B "\-V, \-\-verbose"
Uwe Hermann9ff514d2010-06-07 19:41:25 +000081More verbose output. This option can be supplied multiple times
Stefan Taunereebeb532011-08-04 17:40:25 +000082(max. 3 times, i.e.
83.BR \-VVV )
Uwe Hermann9ff514d2010-06-07 19:41:25 +000084for even more debug output.
Stefan Reinauerde063bf2006-09-21 13:09:22 +000085.TP
Stefan Reinauer261144c2006-07-27 23:29:02 +000086.B "\-c, \-\-chip" <chipname>
Uwe Hermann9ff514d2010-06-07 19:41:25 +000087Probe only for the specified flash ROM chip. This option takes the chip name as
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +000088printed by
89.B "flashrom \-L"
Uwe Hermann9ff514d2010-06-07 19:41:25 +000090without the vendor name as parameter. Please note that the chip name is
91case sensitive.
Joerg Mayer645c6df2010-03-13 14:47:48 +000092.TP
Joerg Mayer645c6df2010-03-13 14:47:48 +000093.B "\-f, \-\-force"
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +000094Force one or more of the following actions:
Joerg Mayer645c6df2010-03-13 14:47:48 +000095.sp
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +000096* Force chip read and pretend the chip is there.
97.sp
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +000098* Force chip access even if the chip is bigger than the maximum supported \
Uwe Hermann9ff514d2010-06-07 19:41:25 +000099size for the flash bus.
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000100.sp
101* Force erase even if erase is known bad.
102.sp
103* Force write even if write is known bad.
Joerg Mayer645c6df2010-03-13 14:47:48 +0000104.TP
105.B "\-l, \-\-layout <file>"
106Read ROM layout from
107.BR <file> .
Uwe Hermann87c07932009-05-05 16:15:46 +0000108.sp
109flashrom supports ROM layouts. This allows you to flash certain parts of
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000110the flash chip only. A ROM layout file contains multiple lines with the
111following syntax:
112.sp
113.B " startaddr:endaddr imagename"
114.sp
115.BR "startaddr " "and " "endaddr "
116are hexadecimal addresses within the ROM file and do not refer to any
117physical address. Please note that using a 0x prefix for those hexadecimal
118numbers is not necessary, but you can't specify decimal/octal numbers.
119.BR "imagename " "is an arbitrary name for the region/image from"
120.BR " startaddr " "to " "endaddr " "(both addresses included)."
121.sp
122Example:
Uwe Hermann87c07932009-05-05 16:15:46 +0000123.sp
124 00000000:00008fff gfxrom
125 00009000:0003ffff normal
126 00040000:0007ffff fallback
127.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000128If you only want to update the image named
129.BR "normal " "in a ROM based on the layout above, run"
Uwe Hermann87c07932009-05-05 16:15:46 +0000130.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000131.B " flashrom \-p prog \-\-layout rom.layout \-\-image normal \-w some.rom"
Uwe Hermann87c07932009-05-05 16:15:46 +0000132.sp
Stefan Taunere34e3e82013-01-01 00:06:51 +0000133To update only the images named
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000134.BR "normal " "and " "fallback" ", run:"
Uwe Hermann87c07932009-05-05 16:15:46 +0000135.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000136.B " flashrom \-p prog \-l rom.layout \-i normal -i fallback \-w some.rom"
Uwe Hermann87c07932009-05-05 16:15:46 +0000137.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000138Overlapping sections are not supported.
Stefan Reinauerde063bf2006-09-21 13:09:22 +0000139.TP
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000140.B "\-i, \-\-image <imagename>"
141Only flash region/image
142.B <imagename>
Uwe Hermann67808fe2007-10-18 00:29:05 +0000143from flash layout.
Stefan Reinauerde063bf2006-09-21 13:09:22 +0000144.TP
Uwe Hermanne5ac1642008-03-12 11:54:51 +0000145.B "\-L, \-\-list\-supported"
Uwe Hermann941a2732011-07-25 21:12:57 +0000146List the flash chips, chipsets, mainboards, and external programmers
147(including PCI, USB, parallel port, and serial port based devices)
Uwe Hermanne8ba5382009-05-22 11:37:27 +0000148supported by flashrom.
Uwe Hermanne5ac1642008-03-12 11:54:51 +0000149.sp
Uwe Hermanne8ba5382009-05-22 11:37:27 +0000150There are many unlisted boards which will work out of the box, without
151special support in flashrom. Please let us know if you can verify that
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000152other boards work or do not work out of the box.
153.sp
154.B IMPORTANT:
155For verification you have
Uwe Hermanne8ba5382009-05-22 11:37:27 +0000156to test an ERASE and/or WRITE operation, so make sure you only do that
157if you have proper means to recover from failure!
Uwe Hermanne5ac1642008-03-12 11:54:51 +0000158.TP
Uwe Hermann20a293f2009-06-19 10:42:43 +0000159.B "\-z, \-\-list\-supported-wiki"
160Same as
161.BR \-\-list\-supported ,
162but outputs the supported hardware in MediaWiki syntax, so that it can be
Uwe Hermann941a2732011-07-25 21:12:57 +0000163easily pasted into the wiki page at
Stefan Tauner352e50b2013-02-22 15:58:45 +0000164.nh
Uwe Hermann941a2732011-07-25 21:12:57 +0000165.BR http://www.flashrom.org/ .
166Please note that MediaWiki output is not compiled in by default.
Uwe Hermann20a293f2009-06-19 10:42:43 +0000167.TP
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000168.B "\-p, \-\-programmer <name>[:parameter[,parameter[,parameter]]]"
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000169Specify the programmer device. This is mandatory for all operations
170involving any chip access (probe/read/write/...). Currently supported are:
Carl-Daniel Hailfingerce986772009-05-09 00:27:07 +0000171.sp
Uwe Hermann530cb2d2009-05-14 22:58:21 +0000172.BR "* internal" " (default, for in-system flashing in the mainboard)"
173.sp
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000174.BR "* dummy" " (virtual programmer for testing flashrom)"
Uwe Hermannc7e8a0c2009-05-19 14:14:21 +0000175.sp
Uwe Hermann530cb2d2009-05-14 22:58:21 +0000176.BR "* nic3com" " (for flash ROMs on 3COM network cards)"
177.sp
Sergey Lichack98f47102012-08-27 01:24:15 +0000178.BR "* nicrealtek" " (for flash ROMs on Realtek and SMC 1211 network cards)"
Uwe Hermann829ed842010-05-24 17:39:14 +0000179.sp
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000180.BR "* nicnatsemi" " (for flash ROMs on National Semiconductor DP838* network \
181cards)"
182.sp
Uwe Hermann314cfba2011-07-28 19:23:09 +0000183.BR "* nicintel" " (for parallel flash ROMs on Intel 10/100Mbit network cards)
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000184.sp
Uwe Hermann2bc98f62009-09-30 18:29:55 +0000185.BR "* gfxnvidia" " (for flash ROMs on NVIDIA graphics cards)"
186.sp
TURBO Jb0912c02009-09-02 23:00:46 +0000187.BR "* drkaiser" " (for flash ROMs on Dr. Kaiser PC-Waechter PCI cards)"
188.sp
Uwe Hermannc7e8a0c2009-05-19 14:14:21 +0000189.BR "* satasii" " (for flash ROMs on Silicon Image SATA/IDE controllers)"
190.sp
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000191.BR "* satamv" " (for flash ROMs on Marvell SATA controllers)"
192.sp
Uwe Hermannddd5c9e2010-02-21 21:17:00 +0000193.BR "* atahpt" " (for flash ROMs on Highpoint ATA/RAID controllers)"
194.sp
Ilya A. Volynets-Evenbakh2c714ab2012-09-26 00:47:09 +0000195.BR "* ft2232_spi" " (for SPI flash ROMs attached to an FT2232/FT4232H/FT232H family \
Uwe Hermann314cfba2011-07-28 19:23:09 +0000196based USB SPI programmer), including the DLP Design DLP-USB1232H, \
197FTDI FT2232H Mini-Module, FTDI FT4232H Mini-Module, openbiosprog-spi, Amontec \
Steve Markgraf0528b7f2011-08-12 01:19:32 +0000198JTAGkey/JTAGkey-tiny/JTAGkey-2, Dangerous Prototypes Bus Blaster, \
Samir Ibradžić7189a5f2011-10-20 23:14:10 +0000199Olimex ARM-USB-TINY/-H, Olimex ARM-USB-OCD/-H, TIAO/DIYGADGET USB
200Multi-Protocol Adapter (TUMPA), and GOEPEL PicoTAP.
Paul Fox05dfbe62009-06-16 21:08:06 +0000201.sp
Uwe Hermann314cfba2011-07-28 19:23:09 +0000202.BR "* serprog" " (for flash ROMs attached to a programmer speaking serprog), \
203including AVR flasher by Urja Rannikko, AVR flasher by eightdot, \
204Arduino Mega flasher by fritz, InSystemFlasher by Juhana Helovuo, and \
205atmegaXXu2-flasher by Stefan Tauner."
Carl-Daniel Hailfingerdfade102009-08-18 23:51:22 +0000206.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000207.BR "* buspirate_spi" " (for SPI flash ROMs attached to a Bus Pirate)"
Carl-Daniel Hailfingerd5b28fa2009-11-24 18:27:10 +0000208.sp
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000209.BR "* dediprog" " (for SPI flash ROMs attached to a Dediprog SF100)"
210.sp
Carl-Daniel Hailfingerae418d82011-09-12 06:17:06 +0000211.BR "* rayer_spi" " (for SPI flash ROMs attached to a RayeR parport "
212or Xilinx DLC5 compatible cable)
Carl-Daniel Hailfingere7fdd6e2010-07-21 10:26:01 +0000213.sp
Michael Karchere5449392012-05-05 20:53:59 +0000214.BR "* pony_spi" " (for SPI flash ROMs attached to a SI-Prog serial port "
215bitbanging adapter)
216.sp
Uwe Hermann314cfba2011-07-28 19:23:09 +0000217.BR "* nicintel_spi" " (for SPI flash ROMs on Intel Gigabit network cards)"
Idwer Vollering004f4b72010-09-03 18:21:21 +0000218.sp
Uwe Hermann314cfba2011-07-28 19:23:09 +0000219.BR "* ogp_spi" " (for SPI flash ROMs on Open Graphics Project graphics card)"
Mark Marshall90021f22010-12-03 14:48:11 +0000220.sp
Carl-Daniel Hailfinger8541d232012-02-16 21:00:27 +0000221.BR "* linux_spi" " (for SPI flash ROMs accessible via /dev/spidevX.Y on Linux)"
222.sp
James Lairdc60de0e2013-03-27 13:00:23 +0000223.BR "* usbblaster_spi" " (for SPI flash ROMs attached to an Altera USB-Blaster compatible cable)"
224.sp
Michael Karchere5eafb22010-03-07 12:11:08 +0000225Some programmers have optional or mandatory parameters which are described
226in detail in the
227.B PROGRAMMER SPECIFIC INFO
228section. Support for some programmers can be disabled at compile time.
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000229.B "flashrom \-h"
Michael Karchere5eafb22010-03-07 12:11:08 +0000230lists all supported programmers.
231.TP
232.B "\-h, \-\-help"
233Show a help text and exit.
234.TP
Carl-Daniel Hailfinger0b9af362012-07-21 16:56:04 +0000235.B "\-o, \-\-output <logfile>"
236Save the full debug log to
237.BR <logfile> .
238If the file already exists, it will be overwritten. This is the recommended
239way to gather logs from flashrom because they will be verbose even if the
240on-screen messages are not verbose.
241.TP
Michael Karchere5eafb22010-03-07 12:11:08 +0000242.B "\-R, \-\-version"
243Show version information and exit.
244.SH PROGRAMMER SPECIFIC INFO
245Some programmer drivers accept further parameters to set programmer-specific
Uwe Hermann4e3d0b32010-03-25 23:18:41 +0000246parameters. These parameters are separated from the programmer name by a
Michael Karchere5eafb22010-03-07 12:11:08 +0000247colon. While some programmers take arguments at fixed positions, other
248programmers use a key/value interface in which the key and value is separated
249by an equal sign and different pairs are separated by a comma or a colon.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000250.SS
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000251.BR "internal " programmer
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000252.TP
253.B Board Enables
254.sp
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000255Some mainboards require to run mainboard specific code to enable flash erase
256and write support (and probe support on old systems with parallel flash).
257The mainboard brand and model (if it requires specific code) is usually
258autodetected using one of the following mechanisms: If your system is
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000259running coreboot, the mainboard type is determined from the coreboot table.
260Otherwise, the mainboard is detected by examining the onboard PCI devices
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000261and possibly DMI info. If PCI and DMI do not contain information to uniquely
Carl-Daniel Hailfinger2d927fb2012-01-04 00:48:27 +0000262identify the mainboard (which is the exception), or if you want to override
263the detected mainboard model, you can specify the mainboard using the
264.sp
Stefan Taunerb4e06bd2012-08-20 00:24:22 +0000265.B " flashrom \-p internal:mainboard=<vendor>:<board>"
Carl-Daniel Hailfinger2d927fb2012-01-04 00:48:27 +0000266syntax.
267.sp
268See the 'Known boards' or 'Known laptops' section in the output
269of 'flashrom \-L' for a list of boards which require the specification of
270the board name, if no coreboot table is found.
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000271.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000272Some of these board-specific flash enabling functions (called
273.BR "board enables" )
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000274in flashrom have not yet been tested. If your mainboard is detected needing
275an untested board enable function, a warning message is printed and the
276board enable is not executed, because a wrong board enable function might
277cause the system to behave erratically, as board enable functions touch the
278low-level internals of a mainboard. Not executing a board enable function
279(if one is needed) might cause detection or erasing failure. If your board
280protects only part of the flash (commonly the top end, called boot block),
281flashrom might encounter an error only after erasing the unprotected part,
282so running without the board-enable function might be dangerous for erase
283and write (which includes erase).
284.sp
285The suggested procedure for a mainboard with untested board specific code is
286to first try to probe the ROM (just invoke flashrom and check that it
287detects your flash chip type) without running the board enable code (i.e.
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000288without any parameters). If it finds your chip, fine. Otherwise, retry
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000289probing your chip with the board-enable code running, using
290.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000291.B " flashrom \-p internal:boardenable=force"
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000292.sp
293If your chip is still not detected, the board enable code seems to be broken
294or the flash chip unsupported. Otherwise, make a backup of your current ROM
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000295contents (using
296.BR \-r )
297and store it to a medium outside of your computer, like
298a USB drive or a network share. If you needed to run the board enable code
Stefan Taunereb582572012-09-21 12:52:50 +0000299already for probing, use it for reading too.
300If reading succeeds and the contens of the read file look legit you can try to write the new image.
301You should enable the board enable code in any case now, as it
Michael Karcher7f0c3ec2010-03-07 22:29:28 +0000302has been written because it is known that writing/erasing without the board
303enable is going to fail. In any case (success or failure), please report to
304the flashrom mailing list, see below.
305.sp
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000306.TP
307.B Coreboot
308.sp
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000309On systems running coreboot, flashrom checks whether the desired image matches
310your mainboard. This needs some special board ID to be present in the image.
311If flashrom detects that the image you want to write and the current board
312do not match, it will refuse to write the image unless you specify
313.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000314.B " flashrom \-p internal:boardmismatch=force"
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000315.TP
316.B ITE IT87 Super I/O
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000317.sp
Vadim Girlin4dd0f902013-08-24 12:18:17 +0000318If your mainboard is manufactured by GIGABYTE and supports DualBIOS it is very likely that it uses an
319ITE IT87 series Super I/O to switch between the two flash chips. Only one of them can be accessed at a time
320and you can manually select which one to use with the
321.sp
322.B " flashrom \-p internal:dualbiosindex=chip"
323.sp
324syntax where
325.B chip
326is the index of the chip to use (0 = main, 1 = backup). You can check which one is currently selected by
327leaving out the
328.B chip
329parameter.
330.sp
Carl-Daniel Hailfinger01f3ef42010-03-25 02:50:40 +0000331If your mainboard uses an ITE IT87 series Super I/O for LPC<->SPI flash bus
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000332translation, flashrom should autodetect that configuration. If you want to
333set the I/O base port of the IT87 series SPI controller manually instead of
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000334using the value provided by the BIOS, use the
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +0000335.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000336.B " flashrom \-p internal:it87spiport=portnum"
337.sp
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000338syntax where
339.B portnum
340is the I/O port number (must be a multiple of 8). In the unlikely case
341flashrom doesn't detect an active IT87 LPC<->SPI bridge, please send a bug
342report so we can diagnose the problem.
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000343.sp
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000344.TP
Rudolf Marek70e14592013-07-25 22:58:56 +0000345.B AMD chipsets
346.sp
347Beginning with the SB700 chipset there is an integrated microcontroller (IMC) based on the 8051 embedded in
348every AMD southbridge. Its firmware resides in the same flash chip as the host's which makes writing to the
349flash risky if the IMC is active. Flashrom tries to temporarily disable the IMC but even then changing the
350contents of the flash can have unwanted effects: when the IMC continues (at the latest after a reboot) it will
351continue executing code from the flash. If the code was removed or changed in an unfortunate way it is
352unpredictable what the IMC will do. Therefore, if flashrom detects an active IMC it will disable write support
353unless the user forces it with the
354.sp
355.B " flashrom \-p internal:amd_imc_force=yes"
356.sp
357syntax. The user is responsible for supplying a suitable image or leaving out the IMC region with the help of
358a layout file. This limitation might be removed in the future when we understand the details better and have
359received enough feedback from users. Please report the outcome if you had to use this option to write a chip.
360.sp
361.TP
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000362.B Intel chipsets
363.sp
Stefan Tauner50e7c602011-11-08 10:55:54 +0000364If you have an Intel chipset with an ICH8 or later southbridge with SPI flash
Stefan Taunereb582572012-09-21 12:52:50 +0000365attached, and if a valid descriptor was written to it (e.g.\& by the vendor), the
Stefan Tauner50e7c602011-11-08 10:55:54 +0000366chipset provides an alternative way to access the flash chip(s) named
367.BR "Hardware Sequencing" .
368It is much simpler than the normal access method (called
369.BR "Software Sequencing" "),"
370but does not allow the software to choose the SPI commands to be sent.
371You can use the
372.sp
373.B " flashrom \-p internal:ich_spi_mode=value"
374.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000375syntax where
376.BR "value " "can be"
Stefan Tauner50e7c602011-11-08 10:55:54 +0000377.BR auto ", " swseq " or " hwseq .
378By default
379.RB "(or when setting " ich_spi_mode=auto )
Stefan Taunereb582572012-09-21 12:52:50 +0000380the module tries to use swseq and only activates hwseq if need be (e.g.\& if
Stefan Tauner50e7c602011-11-08 10:55:54 +0000381important opcodes are inaccessible due to lockdown; or if more than one flash
382chip is attached). The other options (swseq, hwseq) select the respective mode
383(if possible).
384.sp
Stefan Tauner5210e722012-02-16 01:13:00 +0000385ICH8 and later southbridges may also have locked address ranges of different
386kinds if a valid descriptor was written to it. The flash address space is then
387partitioned in multiple so called "Flash Regions" containing the host firmware,
388the ME firmware and so on respectively. The flash descriptor can also specify up
389to 5 so called "Protected Regions", which are freely chosen address ranges
390independent from the aforementioned "Flash Regions". All of them can be write
391and/or read protected individually. If flashrom detects such a lock it will
392disable write support unless the user forces it with the
393.sp
394.B " flashrom \-p internal:ich_spi_force=yes"
395.sp
396syntax. If this leads to erase or write accesses to the flash it would most
397probably bring it into an inconsistent and unbootable state and we will not
398provide any support in such a case.
399.sp
Carl-Daniel Hailfinger46fa0682011-07-25 22:44:09 +0000400If you have an Intel chipset with an ICH6 or later southbridge and if you want
401to set specific IDSEL values for a non-default flash chip or an embedded
402controller (EC), you can use the
403.sp
404.B " flashrom \-p internal:fwh_idsel=value"
405.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000406syntax where
407.B value
408is the 48-bit hexadecimal raw value to be written in the
Carl-Daniel Hailfinger46fa0682011-07-25 22:44:09 +0000409IDSEL registers of the Intel southbridge. The upper 32 bits use one hex digit
410each per 512 kB range between 0xffc00000 and 0xffffffff, and the lower 16 bits
411use one hex digit each per 1024 kB range between 0xff400000 and 0xff7fffff.
412The rightmost hex digit corresponds with the lowest address range. All address
413ranges have a corresponding sister range 4 MB below with identical IDSEL
414settings. The default value for ICH7 is given in the example below.
415.sp
416Example:
417.B "flashrom \-p internal:fwh_idsel=0x001122334567"
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000418.TP
419.B Laptops
Carl-Daniel Hailfinger46fa0682011-07-25 22:44:09 +0000420.sp
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000421Using flashrom on laptops is dangerous and may easily make your hardware
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000422unusable (see also the
423.B BUGS
424section). The embedded controller (EC) in these
425machines often interacts badly with flashing.
Stefan Tauner352e50b2013-02-22 15:58:45 +0000426.nh
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000427.B http://www.flashrom.org/Laptops
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000428has more information. For example the EC firmware sometimes resides on the same
429flash chip as the host firmware. While flashrom tries to change the contents of
430that memory the EC might need to fetch new instructions or data from it and
431could stop working correctly. Probing for and reading from the chip may also
432irritate your EC and cause fan failure, backlight failure, sudden poweroff, and
433other nasty effects. flashrom will attempt to detect if it is running on a
434laptop and abort immediately for safety reasons if it clearly identifies the
435host computer as one. If you want to proceed anyway at your own risk, use
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000436.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000437.B " flashrom \-p internal:laptop=force_I_want_a_brick"
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000438.sp
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000439We will not help you if you force flashing on a laptop because this is a really
440dumb idea.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000441.sp
442You have been warned.
443.sp
444Currently we rely on the chassis type encoded in the DMI/SMBIOS data to detect
445laptops. Some vendors did not implement those bits correctly or set them to
446generic and/or dummy values. flashrom will then issue a warning and bail out
447like above. In this case you can use
448.sp
449.B " flashrom \-p internal:laptop=this_is_not_a_laptop"
450.sp
451to tell flashrom (at your own risk) that it does not running on a laptop.
452.SS
Michael Karchere5eafb22010-03-07 12:11:08 +0000453.BR "dummy " programmer
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000454The dummy programmer operates on a buffer in memory only. It provides a safe
455and fast way to test various aspects of flashrom and is mainly used in
456development and while debugging.
457.sp
458It is able to emulate some chips to a certain degree (basic
459identify/read/erase/write operations work).
460.sp
Michael Karchere5eafb22010-03-07 12:11:08 +0000461An optional parameter specifies the bus types it
Carl-Daniel Hailfinger3504b532009-06-01 00:02:11 +0000462should support. For that you have to use the
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000463.sp
464.B " flashrom \-p dummy:bus=[type[+type[+type]]]"
465.sp
Carl-Daniel Hailfinger3504b532009-06-01 00:02:11 +0000466syntax where
467.B type
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000468can be
Carl-Daniel Hailfinger744132a2010-07-06 09:55:48 +0000469.BR parallel ", " lpc ", " fwh ", " spi
470in any order. If you specify bus without type, all buses will be disabled.
471If you do not specify bus, all buses will be enabled.
Carl-Daniel Hailfinger3504b532009-06-01 00:02:11 +0000472.sp
473Example:
Carl-Daniel Hailfinger744132a2010-07-06 09:55:48 +0000474.B "flashrom \-p dummy:bus=lpc+fwh"
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000475.sp
476The dummy programmer supports flash chip emulation for automated self-tests
477without hardware access. If you want to emulate a flash chip, use the
478.sp
479.B " flashrom \-p dummy:emulate=chip"
480.sp
481syntax where
482.B chip
483is one of the following chips (please specify only the chip name, not the
484vendor):
485.sp
486.RB "* ST " M25P10.RES " SPI flash chip (RES, page write)"
487.sp
488.RB "* SST " SST25VF040.REMS " SPI flash chip (REMS, byte write)"
489.sp
490.RB "* SST " SST25VF032B " SPI flash chip (RDID, AAI write)"
491.sp
Stefan Tauner0b9df972012-05-07 22:12:16 +0000492.RB "* Macronix " MX25L6436 " SPI flash chip (RDID, SFDP)"
493.sp
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000494Example:
495.B "flashrom -p dummy:emulate=SST25VF040.REMS"
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000496.TP
497.B Persistent images
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000498.sp
499If you use flash chip emulation, flash image persistence is available as well
500by using the
501.sp
502.B " flashrom \-p dummy:emulate=chip,image=image.rom"
503.sp
504syntax where
505.B image.rom
506is the file where the simulated chip contents are read on flashrom startup and
507where the chip contents on flashrom shutdown are written to.
508.sp
509Example:
510.B "flashrom -p dummy:emulate=M25P10.RES,image=dummy.bin"
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000511.TP
512.B SPI write chunk size
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000513.sp
514If you use SPI flash chip emulation for a chip which supports SPI page write
515with the default opcode, you can set the maximum allowed write chunk size with
516the
517.sp
518.B " flashrom \-p dummy:emulate=chip,spi_write_256_chunksize=size"
519.sp
520syntax where
521.B size
Stefan Taunereb582572012-09-21 12:52:50 +0000522is the number of bytes (min.\& 1, max.\& 256).
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000523.sp
524Example:
525.sp
526.B " flashrom -p dummy:emulate=M25P10.RES,spi_write_256_chunksize=5"
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000527.TP
528.B SPI blacklist
Carl-Daniel Hailfinger1b83be52012-02-08 23:28:54 +0000529.sp
530To simulate a programmer which refuses to send certain SPI commands to the
531flash chip, you can specify a blacklist of SPI commands with the
532.sp
533.B " flashrom -p dummy:spi_blacklist=commandlist"
534.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000535syntax where
536.B commandlist
537is a list of two-digit hexadecimal representations of
Stefan Taunereb582572012-09-21 12:52:50 +0000538SPI commands. If commandlist is e.g.\& 0302, flashrom will behave as if the SPI
Carl-Daniel Hailfinger1b83be52012-02-08 23:28:54 +0000539controller refuses to run command 0x03 (READ) and command 0x02 (WRITE).
540commandlist may be up to 512 characters (256 commands) long.
541Implementation note: flashrom will detect an error during command execution.
542.sp
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000543.TP
544.B SPI ignorelist
545.sp
Carl-Daniel Hailfinger1b83be52012-02-08 23:28:54 +0000546To simulate a flash chip which ignores (doesn't support) certain SPI commands,
547you can specify an ignorelist of SPI commands with the
548.sp
549.B " flashrom -p dummy:spi_ignorelist=commandlist"
550.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000551syntax where
552.B commandlist
553is a list of two-digit hexadecimal representations of
Stefan Taunereb582572012-09-21 12:52:50 +0000554SPI commands. If commandlist is e.g.\& 0302, the emulated flash chip will ignore
Carl-Daniel Hailfinger1b83be52012-02-08 23:28:54 +0000555command 0x03 (READ) and command 0x02 (WRITE). commandlist may be up to 512
556characters (256 commands) long.
557Implementation note: flashrom won't detect an error during command execution.
Stefan Tauner5e695ab2012-05-06 17:03:40 +0000558.sp
559.TP
560.B SPI status register
561.sp
562You can specify the initial content of the chip's status register with the
563.sp
564.B " flashrom -p dummy:spi_status=content"
565.sp
Carl-Daniel Hailfinger4e3391f2012-07-22 12:01:43 +0000566syntax where
567.B content
568is an 8-bit hexadecimal value.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000569.SS
Sergey Lichack98f47102012-08-27 01:24:15 +0000570.BR "nic3com" , " nicrealtek" , " nicnatsemi" , " nicintel\
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000571" , " nicintel_spi" , " gfxnvidia" , " ogp_spi" , " drkaiser" , " satasii\
572" , " satamv" ", and " atahpt " programmers
Michael Karchere5eafb22010-03-07 12:11:08 +0000573These programmers have an option to specify the PCI address of the card
574your want to use, which must be specified if more than one card supported
575by the selected programmer is installed in your system. The syntax is
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000576.sp
577.BR " flashrom \-p xxxx:pci=bb:dd.f" ,
578.sp
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000579where
Uwe Hermannc7e8a0c2009-05-19 14:14:21 +0000580.B xxxx
581is the name of the programmer
Uwe Hermann530cb2d2009-05-14 22:58:21 +0000582.B bb
583is the PCI bus number,
584.B dd
585is the PCI device number, and
586.B f
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000587is the PCI function number of the desired device.
Uwe Hermann530cb2d2009-05-14 22:58:21 +0000588.sp
589Example:
Carl-Daniel Hailfinger744132a2010-07-06 09:55:48 +0000590.B "flashrom \-p nic3com:pci=05:04.0"
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000591.SS
Carl-Daniel Hailfinger71127722010-05-31 15:27:27 +0000592.BR "ft2232_spi " programmer
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000593An optional parameter specifies the controller
Stefan Taunerfbc71ac2012-09-26 00:46:02 +0000594type and channel/interface/port it should support. For that you have to use the
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000595.sp
Carl-Daniel Hailfinger744132a2010-07-06 09:55:48 +0000596.B " flashrom \-p ft2232_spi:type=model,port=interface"
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000597.sp
Carl-Daniel Hailfingerfeea2722009-07-01 00:02:23 +0000598syntax where
599.B model
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000600can be
Ilya A. Volynets-Evenbakh2c714ab2012-09-26 00:47:09 +0000601.BR 2232H ", " 4232H ", " 232H ", " jtagkey ", " busblaster ", " openmoko ", " \
Uwe Hermann836b26a2011-10-14 20:33:14 +0000602arm-usb-tiny ", " arm-usb-tiny-h ", " arm-usb-ocd ", " arm-usb-ocd-h \
Samir Ibradžić7189a5f2011-10-20 23:14:10 +0000603", " tumpa ", or " picotap
Carl-Daniel Hailfingerfeea2722009-07-01 00:02:23 +0000604and
605.B interface
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000606can be
Stefan Taunerfbc71ac2012-09-26 00:46:02 +0000607.BR A ", " B ", " C ", or " D .
Carl-Daniel Hailfingerfeea2722009-07-01 00:02:23 +0000608The default model is
609.B 4232H
610and the default interface is
Stefan Taunerfbc71ac2012-09-26 00:46:02 +0000611.BR A .
Samir Ibradžićb482c6d2012-05-15 22:58:19 +0000612.sp
Shik Chen14fbc4b2012-09-17 00:40:54 +0000613If there is more than one ft2232_spi-compatible device connected, you can select which one should be used by
614specifying its serial number with the
615.sp
616.B " flashrom \-p ft2232_spi:serial=number"
617.sp
618syntax where
619.B number
620is the serial number of the device (which can be found for example in the output of lsusb -v).
621.sp
Samir Ibradžićb482c6d2012-05-15 22:58:19 +0000622All models supported by the ft2232_spi driver can configure the SPI clock rate by setting a divisor. The
Stefan Tauner0554ca52013-07-25 22:54:25 +0000623expressible divisors are all
624.B even
625numbers between 2 and 2^17 (=131072) resulting in SPI clock frequencies of
Samir Ibradžićb482c6d2012-05-15 22:58:19 +00006266 MHz down to about 92 Hz for 12 MHz inputs. The default divisor is set to 2, but you can use another one by
627specifying the optional
628.B divisor
629parameter with the
630.sp
631.B " flashrom \-p ft2232_spi:divisor=div"
632.sp
633syntax.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000634.SS
Michael Karchere5eafb22010-03-07 12:11:08 +0000635.BR "serprog " programmer
636A mandatory parameter specifies either a serial
Carl-Daniel Hailfingerdfade102009-08-18 23:51:22 +0000637device/baud combination or an IP/port combination for communication with the
Michael Karchere5eafb22010-03-07 12:11:08 +0000638programmer. In the device/baud combination, the device has to start with a
639slash. For serial, you have to use the
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000640.sp
Carl-Daniel Hailfinger744132a2010-07-06 09:55:48 +0000641.B " flashrom \-p serprog:dev=/dev/device:baud"
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000642.sp
Carl-Daniel Hailfingerdfade102009-08-18 23:51:22 +0000643syntax and for IP, you have to use
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000644.sp
Carl-Daniel Hailfinger744132a2010-07-06 09:55:48 +0000645.B " flashrom \-p serprog:ip=ipaddr:port"
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000646.sp
Stefan Taunerb98f6eb2012-08-13 16:33:04 +0000647instead. In case the device supports it, you can set the SPI clock frequency
648with the optional
649.B spispeed
Stefan Tauner0554ca52013-07-25 22:54:25 +0000650parameter. The frequency is parsed as hertz, unless an
Stefan Taunerb98f6eb2012-08-13 16:33:04 +0000651.BR M ", or " k
652suffix is given, then megahertz or kilohertz are used respectively.
653Example that sets the frequency to 2 MHz:
654.sp
Stefan Tauner0554ca52013-07-25 22:54:25 +0000655.B " flashrom \-p serprog:dev=/dev/device:baud,spispeed=2M"
Stefan Taunerb98f6eb2012-08-13 16:33:04 +0000656.sp
657More information about serprog is available in
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000658.B serprog-protocol.txt
659in the source distribution.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000660.SS
Carl-Daniel Hailfinger71127722010-05-31 15:27:27 +0000661.BR "buspirate_spi " programmer
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000662A required
663.B dev
664parameter specifies the Bus Pirate device node and an optional
665.B spispeed
666parameter specifies the frequency of the SPI bus. The parameter
Michael Karchere5eafb22010-03-07 12:11:08 +0000667delimiter is a comma. Syntax is
Carl-Daniel Hailfingerdfade102009-08-18 23:51:22 +0000668.sp
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000669.B " flashrom \-p buspirate_spi:dev=/dev/device,spispeed=frequency"
Michael Karchere5eafb22010-03-07 12:11:08 +0000670.sp
Carl-Daniel Hailfingerd5b28fa2009-11-24 18:27:10 +0000671where
672.B frequency
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000673can be
674.BR 30k ", " 125k ", " 250k ", " 1M ", " 2M ", " 2.6M ", " 4M " or " 8M
Michael Karchere5eafb22010-03-07 12:11:08 +0000675(in Hz). The default is the maximum frequency of 8 MHz.
Brian Salcedo30dfdba2013-01-03 20:44:30 +0000676.sp
677An optional pullups parameter specifies the use of the Bus Pirate internal pull-up resistors. This may be
678needed if you are working with a flash ROM chip that you have physically removed from the board. Syntax is
679.sp
680.B " flashrom -p buspirate_spi:pullups=state"
681.sp
682where
683.B state
684can be
685.BR on " or " off .
686More information about the Bus Pirate pull-up resistors and their purpose is available at
687.nh
688.BR "http://dangerousprototypes.com/docs/Practical_guide_to_Bus_Pirate_pull-up_resistors " .
689Only the external supply voltage (Vpu) is supported as of this writing.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000690.SS
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000691.BR "dediprog " programmer
Carl-Daniel Hailfingerc2441382010-11-09 22:00:31 +0000692An optional
693.B voltage
694parameter specifies the voltage the Dediprog should use. The default unit is
695Volt if no unit is specified. You can use
696.BR mV ", " milliVolt ", " V " or " Volt
697as unit specifier. Syntax is
698.sp
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000699.B " flashrom \-p dediprog:voltage=value"
Carl-Daniel Hailfingerc2441382010-11-09 22:00:31 +0000700.sp
701where
702.B value
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000703can be
Carl-Daniel Hailfingerc2441382010-11-09 22:00:31 +0000704.BR 0V ", " 1.8V ", " 2.5V ", " 3.5V
705or the equivalent in mV.
Nathan Laredo21541a62012-12-24 22:07:36 +0000706.sp
707An optional
708.B device
709parameter specifies which of multiple connected Dediprog devices should be used.
710Please be aware that the order depends on libusb's usb_get_busses() function and that the numbering starts
711at 0.
712Usage example to select the second device:
713.sp
714.B " flashrom \-p dediprog:device=1"
Nico Huber77fa67d2013-02-20 18:03:36 +0000715.sp
716An optional
717.B spispeed
Patrick Georgiefe2d432013-05-23 21:47:46 +0000718parameter specifies the frequency of the SPI bus. The firmware on the device needs to be 5.0.0 or newer.
719Syntax is
Nico Huber77fa67d2013-02-20 18:03:36 +0000720.sp
721.B " flashrom \-p dediprog:spispeed=frequency"
722.sp
723where
724.B frequency
725can be
726.BR 375k ", " 750k ", " 1.5M ", " 2.18M ", " 3M ", " 8M ", " 12M " or " 24M
727(in Hz). The default is a frequency of 12 MHz.
Stefan Taunere659d2d2013-05-03 21:58:28 +0000728.sp
729An optional
730.B target
731parameter specifies which target chip should be used. Syntax is
732.sp
733.B " flashrom \-p dediprog:target=value"
734.sp
735where
736.B value
737can be
738.BR 1 " or " 2
739to select target chip 1 or 2 repectively. The default is target chip 1.
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000740.SS
Carl-Daniel Hailfingere7fdd6e2010-07-21 10:26:01 +0000741.BR "rayer_spi " programmer
Carl-Daniel Hailfinger37c42522010-10-05 19:19:48 +0000742The default I/O base address used for the parallel port is 0x378 and you can use
743the optional
744.B iobase
745parameter to specify an alternate base I/O address with the
746.sp
747.B " flashrom \-p rayer_spi:iobase=baseaddr"
748.sp
749syntax where
750.B baseaddr
751is base I/O port address of the parallel port, which must be a multiple of
752four. Make sure to not forget the "0x" prefix for hexadecimal port addresses.
753.sp
Carl-Daniel Hailfingerae418d82011-09-12 06:17:06 +0000754The default cable type is the RayeR cable. You can use the optional
755.B type
756parameter to specify the cable type with the
757.sp
758.B " flashrom \-p rayer_spi:type=model"
759.sp
760syntax where
761.B model
762can be
763.BR rayer " for the RayeR cable or " xilinx " for the Xilinx Parallel Cable III
764(DLC 5).
765.sp
766More information about the RayeR hardware is available at
Stefan Tauner352e50b2013-02-22 15:58:45 +0000767.nh
Carl-Daniel Hailfingerae418d82011-09-12 06:17:06 +0000768.BR "http://rayer.ic.cz/elektro/spipgm.htm " .
769The schematic of the Xilinx DLC 5 was published at
Stefan Tauner352e50b2013-02-22 15:58:45 +0000770.nh
Carl-Daniel Hailfingerae418d82011-09-12 06:17:06 +0000771.BR "http://www.xilinx.com/itp/xilinx4/data/docs/pac/appendixb.html " .
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000772.SS
Michael Karchere5449392012-05-05 20:53:59 +0000773.BR "pony_spi " programmer
774The serial port (like /dev/ttyS0, /dev/ttyUSB0 on Linux or COM3 on windows) is
775specified using the mandatory
Stefan Taunere34e3e82013-01-01 00:06:51 +0000776.B dev
Michael Karchere5449392012-05-05 20:53:59 +0000777parameter. The adapter type is selectable between SI-Prog (used for
778SPI devices with PonyProg 2000) or a custom made serial bitbanging programmer
779named "serbang". The optional
Stefan Taunere34e3e82013-01-01 00:06:51 +0000780.B type
Michael Karchere5449392012-05-05 20:53:59 +0000781parameter accepts the values "si_prog" (default) or "serbang".
782.sp
783Information about the SI-Prog adapter can be found at
Stefan Tauner352e50b2013-02-22 15:58:45 +0000784.nh
Michael Karchere5449392012-05-05 20:53:59 +0000785.BR "http://www.lancos.com/siprogsch.html " .
786.sp
787An example call to flashrom is
788.sp
789.B " flashrom \-p pony_spi:dev=/dev/ttyS0,type=serbang"
790.sp
791Please note that while USB-to-serial adapters work under certain circumstances,
792this slows down operation considerably.
793.SS
Mark Marshall90021f22010-12-03 14:48:11 +0000794.BR "ogp_spi " programmer
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000795The flash ROM chip to access must be specified with the
Mark Marshall90021f22010-12-03 14:48:11 +0000796.B rom
797parameter.
798.sp
799.B " flashrom \-p ogp_spi:rom=name"
800.sp
801Where
802.B name
803is either
804.B cprom
805or
806.B s3
Stefan Taunere34e3e82013-01-01 00:06:51 +0000807for the configuration ROM and
Mark Marshall90021f22010-12-03 14:48:11 +0000808.B bprom
809or
810.B bios
Uwe Hermann68b9cca2011-06-15 23:44:52 +0000811for the BIOS ROM. If more than one card supported by the ogp_spi programmer
Mark Marshall90021f22010-12-03 14:48:11 +0000812is installed in your system, you have to specify the PCI address of the card
813you want to use with the
814.B pci=
815parameter as explained in the
Stefan Taunere34e3e82013-01-01 00:06:51 +0000816.B nic3com et al.\&
Mark Marshall90021f22010-12-03 14:48:11 +0000817section above.
818.sp
819More information about the hardware is available at
Stefan Tauner352e50b2013-02-22 15:58:45 +0000820.nh
Uwe Hermann941a2732011-07-25 21:12:57 +0000821.BR http://wiki.opengraphics.org .
Carl-Daniel Hailfinger8541d232012-02-16 21:00:27 +0000822.SS
823.BR "linux_spi " programmer
824You have to specify the SPI controller to use with the
825.sp
826.B " flashrom \-p linux_spi:dev=/dev/spidevX.Y"
827.sp
828syntax where
829.B /dev/spidevX.Y
830is the Linux device node for your SPI controller.
831.sp
Stefan Tauner0554ca52013-07-25 22:54:25 +0000832In case the device supports it, you can set the SPI clock frequency with the optional
833.B spispeed
834parameter. The frequency is parsed as kilohertz.
835Example that sets the frequency to 8 MHz:
836.sp
837.B " flashrom \-p linux_spi:dev=/dev/spidevX.Y,spispeed=8000"
838.sp
Carl-Daniel Hailfinger8541d232012-02-16 21:00:27 +0000839Please note that the linux_spi driver only works on Linux.
Carl-Daniel Hailfinger0b9af362012-07-21 16:56:04 +0000840.SH EXAMPLES
841To back up and update your BIOS, run
842.sp
843.B flashrom -p internal -r backup.rom -o backuplog.txt
844.br
845.B flashrom -p internal -w newbios.rom -o writelog.txt
846.sp
847Please make sure to copy backup.rom to some external media before you try
848to write. That makes offline recovery easier.
849.br
850If writing fails and flashrom complains about the chip being in an unknown
851state, you can try to restore the backup by running
852.sp
853.B flashrom -p internal -w backup.rom -o restorelog.txt
854.sp
855If you encounter any problems, please contact us and supply
856backuplog.txt, writelog.txt and restorelog.txt. See section
857.B BUGS
858for contact info.
Peter Stuge42688e52009-01-26 02:20:56 +0000859.SH EXIT STATUS
860flashrom exits with 0 on success, 1 on most failures but with 2 if /dev/mem
861(/dev/xsvc on Solaris) can not be opened and with 3 if a call to mmap() fails.
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000862.SH REQUIREMENTS
863flashrom needs different access permissions for different programmers.
864.sp
865.B internal
866needs raw memory access, PCI configuration space access, raw I/O port
867access (x86) and MSR access (x86).
868.sp
Sergey Lichack98f47102012-08-27 01:24:15 +0000869.BR nic3com ", " nicrealtek " and " nicnatsemi "
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000870need PCI configuration space read access and raw I/O port access.
871.sp
872.B atahpt
873needs PCI configuration space access and raw I/O port access.
874.sp
875.BR gfxnvidia " and " drkaiser
876need PCI configuration space access and raw memory access.
877.sp
Carl-Daniel Hailfingere7fdd6e2010-07-21 10:26:01 +0000878.B rayer_spi
879needs raw I/O port access.
880.sp
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000881.B satasii
882needs PCI configuration space read access and raw memory access.
883.sp
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000884.B satamv
885needs PCI configuration space read access, raw I/O port access and raw memory
886access.
887.sp
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000888.B serprog
889needs TCP access to the network or userspace access to a serial port.
890.sp
891.B buspirate_spi
892needs userspace access to a serial port.
893.sp
James Lairdc60de0e2013-03-27 13:00:23 +0000894.BR dediprog ", " ft2232_spi " and " usbblaster_spi
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000895need access to the USB device via libusb.
896.sp
897.B dummy
898needs no access permissions at all.
899.sp
Sergey Lichack98f47102012-08-27 01:24:15 +0000900.BR internal ", " nic3com ", " nicrealtek ", " nicnatsemi ", "
Carl-Daniel Hailfinger9321f062011-07-24 18:41:13 +0000901.BR gfxnvidia ", " drkaiser ", " satasii ", " satamv " and " atahpt
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000902have to be run as superuser/root, and need additional raw access permission.
903.sp
James Lairdc60de0e2013-03-27 13:00:23 +0000904.BR serprog ", " buspirate_spi ", " dediprog ", " usbblaster_spi " and " ft2232_spi
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000905can be run as normal user on most operating systems if appropriate device
906permissions are set.
907.sp
Mark Marshall90021f22010-12-03 14:48:11 +0000908.B ogp
909needs PCI configuration space read access and raw memory access.
910.sp
Carl-Daniel Hailfingerb63b0672010-07-02 17:12:50 +0000911On OpenBSD, you can obtain raw access permission by setting
Uwe Hermann941a2732011-07-25 21:12:57 +0000912.B "securelevel=-1"
913in
914.B "/etc/rc.securelevel"
915and rebooting, or rebooting into single user mode.
Stefan Reinauer261144c2006-07-27 23:29:02 +0000916.SH BUGS
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000917Please report any bugs to the flashrom mailing list at
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000918.B "<flashrom@flashrom.org>"
919.sp
920We recommend to subscribe first at
Uwe Hermann9ff514d2010-06-07 19:41:25 +0000921.sp
922.B " http://www.flashrom.org/mailman/listinfo/flashrom"
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000923.sp
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000924Many of the developers communicate via the
925.B "#flashrom"
926IRC channel on
927.BR chat.freenode.net .
928You are welcome to join and ask questions, send us bug and success reports there
Stefan Taunereb582572012-09-21 12:52:50 +0000929too. Please provide a way to contact you later (e.g.\& a mail address) and be
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000930patient if there is no immediate reaction. Also, we provide a pastebin service
931at
Stefan Tauner352e50b2013-02-22 15:58:45 +0000932.nh
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000933.B http://paste.flashrom.org
Stefan Taunereb582572012-09-21 12:52:50 +0000934that is very useful when you want to share logs etc.\& without spamming the
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000935channel.
936.SS
937.B Laptops
938.sp
Carl-Daniel Hailfinger27023762010-04-28 15:22:14 +0000939Using flashrom on laptops is dangerous and may easily make your hardware
Stefan Tauner9e9f6842012-02-16 20:55:27 +0000940unusable. flashrom will attempt to detect if it is running on a laptop and abort
941immediately for safety reasons. Please see the detailed discussion of this topic
942and associated flashrom options in the
943.B Laptops
944paragraph in the
945.B internal programmer
946subsection of the
947.B PROGRAMMER SPECIFIC INFO
Stefan Tauner352e50b2013-02-22 15:58:45 +0000948section and the information in our wiki at
949.BR "http://www.flashrom.org/Laptops " .
Daniel Lenski65922a32012-02-15 23:40:23 +0000950.SS
951One-time programmable (OTP) memory and unique IDs
952.sp
953Some flash chips contain OTP memory often denoted as "security registers".
954They usually have a capacity in the range of some bytes to a few hundred
Stefan Taunereb582572012-09-21 12:52:50 +0000955bytes and can be used to give devices unique IDs etc. flashrom is not able
Daniel Lenski65922a32012-02-15 23:40:23 +0000956to read or write these memories and may therefore not be able to duplicate a
957chip completely. For chip types known to include OTP memories a warning is
958printed when they are detected.
959.sp
960Similar to OTP memories are unique, factory programmed, unforgeable IDs.
961They are not modifiable by the user at all.
Stefan Taunerac54fbe2011-07-21 19:52:00 +0000962.SH LICENSE
Stefan Reinauer261144c2006-07-27 23:29:02 +0000963.B flashrom
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000964is covered by the GNU General Public License (GPL), version 2. Some files are
965additionally available under the GPL (version 2, or any later version).
Stefan Reinauer261144c2006-07-27 23:29:02 +0000966.SH COPYRIGHT
Stefan Reinauer261144c2006-07-27 23:29:02 +0000967.br
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000968Please see the individual files.
Stefan Reinauer261144c2006-07-27 23:29:02 +0000969.SH AUTHORS
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000970Andrew Morgan
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000971.br
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000972Carl-Daniel Hailfinger
973.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000974Claus Gindhart
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000975.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000976David Borg
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000977.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000978David Hendricks
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000979.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000980Dominik Geyer
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000981.br
Stefan Reinaueredc61882010-01-03 14:40:30 +0000982Eric Biederman
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000983.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000984Giampiero Giancipoli
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000985.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000986Helge Wagner
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000987.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000988Idwer Vollering
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000989.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000990Joe Bao
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000991.br
Stefan Taunerc0aaf952011-05-19 02:58:17 +0000992Joerg Fischer
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000993.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000994Joshua Roys
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +0000995.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +0000996Luc Verhaegen
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +0000997.br
Carl-Daniel Hailfinger451dc802009-05-01 11:00:39 +0000998Li-Ta Lo
999.br
Mark Marshall90021f22010-12-03 14:48:11 +00001000Mark Marshall
1001.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001002Markus Boas
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001003.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001004Mattias Mattsson
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +00001005.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001006Michael Karcher
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +00001007.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001008Nikolay Petukhov
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001009.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001010Patrick Georgi
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +00001011.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001012Peter Lemenkov
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +00001013.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001014Peter Stuge
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001015.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001016Reinder E.N. de Haan
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001017.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001018Ronald G. Minnich
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001019.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001020Ronald Hoogenboom
Stefan Reinauer261144c2006-07-27 23:29:02 +00001021.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001022Sean Nelson
Carl-Daniel Hailfinger8841d3e2010-05-15 15:04:37 +00001023.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001024Stefan Reinauer
Stefan Reinauer261144c2006-07-27 23:29:02 +00001025.br
Uwe Hermann68b9cca2011-06-15 23:44:52 +00001026Stefan Tauner
1027.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001028Stefan Wildemann
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001029.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001030Stephan Guilloux
Carl-Daniel Hailfinger3e854422010-10-06 23:03:21 +00001031.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001032Steven James
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001033.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001034Uwe Hermann
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001035.br
Stefan Reinaueredc61882010-01-03 14:40:30 +00001036Wang Qingpei
Carl-Daniel Hailfinger851ecf22009-01-08 04:56:59 +00001037.br
Stefan Reinaueredc61882010-01-03 14:40:30 +00001038Yinghai Lu
Stefan Reinauerf8337dd2006-08-03 10:49:09 +00001039.br
Carl-Daniel Hailfingeref697832010-10-07 22:21:45 +00001040some others, please see the flashrom svn changelog for details.
1041.br
Uwe Hermann68b9cca2011-06-15 23:44:52 +00001042All authors can be reached via email at <flashrom@flashrom.org>.
Stefan Reinauer261144c2006-07-27 23:29:02 +00001043.PP
Stefan Taunerac54fbe2011-07-21 19:52:00 +00001044This manual page was written by Uwe Hermann <uwe@hermann-uwe.de>,
1045Carl-Daniel Hailfinger and others.
Uwe Hermann42eb17f2008-01-18 17:48:51 +00001046It is licensed under the terms of the GNU GPL (version 2 or later).