Editing Devices
Jump to navigation
Jump to search
The edit can be undone. Please check the comparison below to verify that this is what you want to do, and then publish the changes below to finish undoing the edit.
Latest revision | Your text | ||
Line 1: | Line 1: | ||
Note for ioctls: * indicates name is assumed from RE and may not be accurate. | Note for ioctls: * indicates name is assumed from RE and may not be accurate. | ||
== Device Listing == | == Device Listing == | ||
Note: only unique devices are listed. Benign devices like /dev/null are omitted for brevity's sake. | |||
{| class="wikitable sortable" | {| class="wikitable sortable" | ||
|- | |- | ||
! | ! Path !! Device Name !! Notes | ||
|- | |- | ||
| a53{io,mm,mmsys} || A53 Input/Output, Memory Management (sys) || See MP4 section | | /dev/a53{io,mm,mmsys} || A53 Input/Output, Memory Management (sys) || See MP4 section | ||
|- | |- | ||
| ajm{i} || Audio Job Manager || - | | /dev/ajm{i} || Audio Job Manager || - | ||
|- | |- | ||
| auditpipe || | | /dev/auditpipe || - || - | ||
|- | |- | ||
| authmgr || | | /dev/authmgr || - || - | ||
|- | |- | ||
| az{1,ctl} || - || | | /dev/az{1,ctl} || - || - | ||
|- | |- | ||
| bar || | | /dev/bar || - || - | ||
|- | |- | ||
| bfs/ctl || - || - | | /dev/bfs/ctl || - || - | ||
|- | |- | ||
| bluetooth_hid || | | /dev/bluetooth_hid || - || - | ||
|- | |- | ||
| bt || | | /dev/bt || - || - | ||
|- | |- | ||
| camera || Camera || - | | /dev/camera || Camera || - | ||
|- | |- | ||
| cloudsd || | | /dev/cloudsd || - || - | ||
|- | |- | ||
| console || Console || Usermode logging | | /dev/console || Console || Usermode logging | ||
|- | |- | ||
| crepo || | | /dev/crepo || - || - | ||
|- | |- | ||
| ctrlp{_sync} || - | | /dev/ctrlp{_sync} || - || - | ||
|- | |- | ||
| dbggc{_control} || Debug GPU? || - | | /dev/dbggc{_control} || Debug GPU? || - | ||
|- | |- | ||
| deci_coredump || | | /dev/deci_coredump || Debug Com. Interface (DECI) coredump || - | ||
|- | |- | ||
| deci_mp4_ioc || | | /dev/deci_mp4_ioc || DECI I/O Control? || - | ||
|- | |- | ||
| deci_mp4_mmc || | | /dev/deci_mp4_mmc || - || - | ||
|- | |- | ||
| deci_std{in,out,err} || | | /dev/deci_std{in,out,err} || DECI Input/Output/Error || - | ||
|- | |- | ||
| deci_tty* || | | /dev/deci_tty* || DECI Terminals || - | ||
|- | |- | ||
| devctl || | | /dev/devctl || - || - | ||
|- | |- | ||
| diag || | | /dev/diag || - || - | ||
|- | |- | ||
| dipsw || | | /dev/dipsw || Dip Switch || - | ||
|- | |- | ||
| dldbg || | | /dev/dldbg || - || - | ||
|- | |- | ||
| dmem{0,1,2} || - || - | | /dev/dmem{0,1,2} || - || - | ||
|- | |- | ||
| dngl || - || - | | /dev/dngl || - || - | ||
|- | |- | ||
| duid || | | /dev/duid || - || - | ||
|- | |- | ||
| encdec || | | /dev/encdec || EncDec || - | ||
|- | |- | ||
| envelope || | | /dev/envelope || - || - | ||
|- | |- | ||
| evlg{0,1} || | | /dev/evlg{0,1} || - || - | ||
|- | |- | ||
| exthdd || External HDD || - | | /dev/exthdd || External HDD || - | ||
|- | |- | ||
| fcram || - || - | | /dev/fcram || - || - | ||
|- | |- | ||
| fsctrl || | | /dev/fsctrl || - || - | ||
|- | |- | ||
| fttrm || | | /dev/fttrm || - || - | ||
|- | |- | ||
| gbase || - || - | | /dev/gbase || - || - | ||
|- | |- | ||
| gc || GPU command || - | | /dev/gc || GPU command || - | ||
|- | |- | ||
| geom.ctl || - || - | | /dev/geom.ctl || - || - | ||
|- | |- | ||
| gic || - || - | | /dev/gic || - || - | ||
|- | |- | ||
| gsched_bds.ctl || - || - | | /dev/gsched_bds.ctl || - || - | ||
|- | |- | ||
| hdmi || HDMI || - | | /dev/hdmi || HDMI || - | ||
|- | |- | ||
| hid || | | /dev/hid || - || - | ||
|- | |- | ||
| hmd2_* || | | /dev/hmd2_* || VR 2? || - | ||
|- | |- | ||
| hmd_* || | | /dev/hmd_* || VR || - | ||
|- | |- | ||
| iccnvs{0,1,2,4,6} || | | /dev/iccnvs{0,1,2,4,6} || - || - | ||
|- | |- | ||
| icc_configuration || ICC | | /dev/icc_configuration || ICC Config || - | ||
|- | |- | ||
| icc_crash_report || ICC Crash Report || - | | /dev/icc_crash_report || ICC Crash Report || - | ||
|- | |- | ||
| icc_device_power || ICC Device Power || - | | /dev/icc_device_power || ICC Device Power || - | ||
|- | |- | ||
| icc_fan || ICC Fan || - | | /dev/icc_fan || ICC Fan || - | ||
|- | |- | ||
| icc_floyd || ICC | | /dev/icc_floyd || ICC TPM? || - | ||
|- | |- | ||
| icc_indicator || ICC | | /dev/icc_indicator || ICC LED || - | ||
|- | |- | ||
| icc_nvs || ICC NVS || | | /dev/icc_nvs || ICC NVS || - | ||
|- | |- | ||
| icc_power || ICC Power || - | | /dev/icc_power || ICC Power || - | ||
|- | |- | ||
| icc_sc_config || ICC | | /dev/icc_sc_config || ICC Syscon? Config || - | ||
|- | |- | ||
| icc_thermal || ICC Thermal || - | | /dev/icc_thermal || ICC Thermal || - | ||
|- | |- | ||
| klog || Kernel Log || Read syscall on this device can be used to get kernel log if privileged | | /dev/klog || Kernel Log || Read syscall on this device can be used to get kernel log if privileged | ||
|- | |- | ||
| kmbp || - || - | | /dev/kmbp || - || - | ||
|- | |- | ||
| lvdctl || | | /dev/lvdctl || - || - | ||
|- | |- | ||
| lvd{0,1} || | | /dev/lvd{0,1} || - || - | ||
|- | |- | ||
| | | /dev/m2.ctl || m.2 NVMe Control? || - | ||
|- | |- | ||
| | | /dev/mbus || Event bus || - | ||
|- | |- | ||
| | | /dev/mbus_av || Event bus (audio video?) || - | ||
|- | |- | ||
| | | /dev/md0 || - || - | ||
|- | |- | ||
| | | /dev/md2 || - || - | ||
|- | |- | ||
| | | /dev/mdctl || - || - | ||
|- | |- | ||
| | | /dev/metadbg || - || - | ||
|- | |- | ||
| | | /dev/mp1 || System Management Unit (SMU) || Power management, thermals, etc. (see mp1 section) | ||
|- | |- | ||
| | | /dev/mp3 || Trusted Execution Environment (TEE) || See mp3 section | ||
|- | |- | ||
| | | /dev/mp4/dump{_for_decid} || A53 (mdbg?) || See mp4 section | ||
|- | |- | ||
| | | /dev/notification{0-9} || Notification || - | ||
|- | |- | ||
| | | /dev/npdrm || - || - | ||
|- | |- | ||
| | | /dev/nsfsctl || - || - | ||
|- | |- | ||
| | | /dev/nsid1.ctl || - || - | ||
|- | |- | ||
| | | /dev/otpaccess || One-Time Programmable Access? || - | ||
|- | |- | ||
| | | /dev/pfsctldev || - || - | ||
|- | |- | ||
| | | /dev/pfsmgr || - || - | ||
|- | |- | ||
| | | /dev/playgo_emu_param{1,2,3} || PlayGo emulator params || - | ||
|- | |- | ||
| | | /dev/pltauth{0,1} || - || - | ||
|- | |- | ||
| | | /dev/pup_update0 || PUP Update || - | ||
|- | |- | ||
| | | /dev/qafutkn || QA flag / utoken || - | ||
|- | |- | ||
| | | /dev/rnps || React Native PS || PSN related | ||
|- | |- | ||
| | | /dev/rootparam || - || - | ||
|- | |- | ||
| | | /dev/s3da || 3D Audio || - | ||
|- | |- | ||
| | | /dev/sbl_secreg || - || - | ||
|- | |- | ||
| | | /dev/sbl_srv || - || - | ||
|- | |- | ||
| | | /dev/scanin || - || - | ||
|- | |- | ||
| | | /dev/sce_zlib{_sys} || zlib || zlib (de)compression | ||
|- | |- | ||
| | | /dev/sc_fw_update0 || (syscon?) firmware update || - | ||
|- | |- | ||
| | | /dev/sflash0 || SPI flash || 2MB. Has EMC firmware and (non-secure) NVS. | ||
|- | |- | ||
| | | /dev/srtc || - || - | ||
|- | |- | ||
| | | /dev/ssd0.* || Internal SSD partitions || - | ||
|- | |- | ||
| | | /dev/sshot || Screenshot || - | ||
|- | |- | ||
| | | /dev/transactionid.ctl || - || - | ||
|- | |- | ||
| | | /dev/ufssuspend || - || - | ||
|- | |- | ||
| | | /dev/usbctl || USB control || - | ||
|- | |- | ||
| | | /dev/uvd_{dec/enc/bgt} || Unified Video Decoder? || - | ||
|- | |- | ||
| | | /dev/wlanbt || - || - | ||
|- | |- | ||
| | | /dev/xtp0 || - || - | ||
|- | |||
|} | |} | ||
== Platform Security Processor Core (PSP) (MP0) == | == Platform Security Processor Core (PSP) (MP0) == | ||
* All the fun things are here | |||
* All the fun things | * Named SMU PSP as well | ||
* Named | * Named ASP as well (AMD Secure Processor) | ||
== System Management Unit (SMU) (MP1) == | == System Management Unit (SMU) (MP1) == | ||
MP1 (System Management Unit or "SMU") is an xtensa CPU responsible for power management, clock management, sampling sensor data, and other power/thermal-related tasks. The /dev/mp1 device can be used to issue commands to it. Below are known commands. | MP1 (System Management Unit or "SMU") is an xtensa CPU responsible for power management, clock management, sampling sensor data, and other power/thermal-related tasks. The /dev/mp1 device can be used to issue commands to it. Below are known commands. | ||
Line 261: | Line 229: | ||
== Sensor Fusion Processor (SFP) (MP2) == | == Sensor Fusion Processor (SFP) (MP2) == | ||
* | * doesn't exist on ps5 | ||
* mainly for mobiles | |||
== Trusted Execution Environment (TEE) (MP3) == | == Trusted Execution Environment (TEE) (MP3) == | ||
MP3 consists of the Trusted Execution Environment (TEE) running on the AMD Platform Security Processor (PSP/SP). Its primary function is Digital Rights Management (DRM) via [https://www.microsoft.com/playready/features/EnhancedContentProtection.aspx PlayReady SL3000]. In userspace, the libSceTEEClient library is used for interfacing with it, which internally uses /dev/mp3 to load secure binaries (sbins) and establish sessions. Below are known commands. | |||
MP3 consists of the Trusted Execution Environment (TEE) running on the | |||
{| class="wikitable sortable" | {| class="wikitable sortable" | ||
|- | |- | ||
! IOCTL # !! Name !! Notes | ! IOCTL # !! Name !! Notes | ||
|- | |- | ||
| 0xC010B403 || TEE_IOC_INVOKE || Invoke commands | | 0xC010B403 || TEE_IOC_INVOKE || Invoke commands | ||
|- | |- | ||
| 0xC010B408 || TEE_IOC_DLM_GET_DEBUG_TOKEN || - | | 0xC010B408 || TEE_IOC_DLM_GET_DEBUG_TOKEN || - | ||
Line 303: | Line 259: | ||
== A53MM/A53IO (MP4) == | == A53MM/A53IO (MP4) == | ||
MP4, which consists of /dev/a53mm, /dev/a53mmsys, and /dev/a53io, is used for various tasks, and its overall purpose is not fully understood. Some of the things it includes are debugging (mdbg), video encode/decode, and other various memory-management related things. Below are known commands. | MP4, which consists of /dev/a53mm, /dev/a53mmsys, and /dev/a53io, is used for various tasks, and its overall purpose is not fully understood. Some of the things it includes are debugging (mdbg), video encode/decode, and other various memory-management related things. Below are known commands. | ||
Line 333: | Line 288: | ||
| 0xC004AC0D || A53MM_WAIT_COMMAND_BUFFER_COMPLETION || - | | 0xC004AC0D || A53MM_WAIT_COMMAND_BUFFER_COMPLETION || - | ||
|- | |- | ||
| 0xC018AC0E || | | 0xC018AC0E || - || - | ||
|- | |- | ||
| 0xC018AC0F || - || - | | 0xC018AC0F || - || - | ||
|- | |- | ||
| 0xC018AC10 || | | 0xC018AC10 || A53MM_VA_TO_IOMA * || - | ||
|- | |- | ||
| 0xC004AC11 || | | 0xC004AC11 || A53MM_PAGE_TABLE_POOL_OCCUPANCY_THRESHOLD || - | ||
|- | |- | ||
| 0xC018AC12 || | | 0xC018AC12 || - || - | ||
|- | |- | ||
| 0xC004AC13 || - || - | | 0xC004AC13 || - || - | ||
Line 351: | Line 306: | ||
! IOCTL # !! Name !! Notes | ! IOCTL # !! Name !! Notes | ||
|- | |- | ||
| 0xc020b501 || | | 0xc020b501 || - || - | ||
|- | |- | ||
| 0xc028b502 || - || - | | 0xc028b502 || - || - | ||
Line 376: | Line 331: | ||
|- | |- | ||
! IOCTL # !! Name !! Notes | ! IOCTL # !! Name !! Notes | ||
|- | |- | ||
| 0xC03861A1 || BFS_A53IO_READ_BLOCK || - | | 0xC03861A1 || BFS_A53IO_READ_BLOCK || - | ||
|- | |- | ||
| 0xC03861A2 || BFS_A53IO_WRITE_BLOCK || - | | 0xC03861A2 || BFS_A53IO_WRITE_BLOCK || - | ||
|} | |} |