Posts: 10
Threads: 2
Joined: Jan 2012
Reputation:
0
12-10-2013, 02:13 PM
Hi guys im a noob need advice and bit explanations...
I have 2 modems EPC2100R2 (haxorware r39) and DPC2100R3 (stock). For about 2 years i was running on modded nicely until 3 days ago it stops and says auth reject on the logs with TLV-11 bad OID things. So now im running with my stock version which is slow as hell.
I tried to change bpi + docsis 1.1 and signal is locked but stuck on ranging complete wherenever it says sending registration it shows auth reject permanent blabla... so i think this happened because i dont have valid certs. i did try to copy my stock mac to hax but the error remains the same... the questions is if it possible to use the stock mac to hax and untick firmware upgrade as well enable SNMP after registration?? i want to trick CM to send valid certs, does this exposing my installed hax to cc?
Posts: 1,516
Threads: 16
Joined: Dec 2009
Reputation:
79
12-10-2013, 03:13 PM
(This post was last modified: 12-10-2013, 03:15 PM by ABMJR.)
CM never send certs. certs are born and made at the time of production...
Unless you know CC really well, your done testing
CC will co-sign valid certs with a new MFC cert, but only if the CM is provisioned and the certs are valid. Unless you do the TELNET trick...
Knowledge=Power
Posts: 1,516
Threads: 16
Joined: Dec 2009
Reputation:
79
12-10-2013, 07:25 PM
(This post was last modified: 12-10-2013, 07:29 PM by ABMJR.)
Haxorware and its self signed certs are useless. Who said anything about Haxorware having certs. Its a GUI. Nothing more. You people amaze me with the questions. HAXORWARE is a small modified GUI over the shell of the firmware. Certs are made at birth/production. I have said, if you have a valid virgin bin, you can force the CMTS to provision you in an un-official way. I do not post this telnet command as it will be abused.
No to your question...
Knowledge=Power
Posts: 1,483
Threads: 24
Joined: May 2010
Reputation:
65
Auth Reject means you swapped the mac and that killed the corresponding certs which means w/o a backup of the original certs you will just range forever in BP+ because you cannot show the proper license to be on the network. You are on CC and you just now got bpi??? wow.
There is no simple way to test CC anymore. No Modded firm by itself will get you what you want nowadays. Wish I had a better answer for you, but there just isn't one. It's a long, arduous journey through countless hours of reading and testing to get there....especially on CC.
Posts: 1,516
Threads: 16
Joined: Dec 2009
Reputation:
79
The certs dont get "killed" they are the wrong values for the HFC MAC used. Change the HFC MAC back to the original and the certs will be mated to them and correct. Then you get the provisioning page
Knowledge=Power
Posts: 1,516
Threads: 16
Joined: Dec 2009
Reputation:
79
Change what MAC and what certificate? Makes no sense
Knowledge=Power
Posts: 1,483
Threads: 24
Joined: May 2010
Reputation:
65
when you change the mac addy without uploading the original bpi keys you get "ranging forever". when you change the mac addy back it will not work. You must upload either the 5 original keys or upload the original nonvol to be bpi+ compliant. If you get all lights operational then the certs are good. good certs does not mean you will get online. Good certs will allow the cm to be provisioned on the network. good certs only gets you to the doorman, you still need to be on the guest list to get in the club.