[Q] Root from latest Stock Lollipop firmware and keep TA partition safe - Xperia Z2 Tablet Q&A, Help & Troubleshooting

Hi guys,
I recently bought a Xperia Z2 Tablet SGP512, and for some reason I find the touchscreen quite unresponsive if connected with USB to the computer.
Anyway I've updated to the latest Stock firmware (Android 5.1.1, build 23.4.A.1.200) and now I'd like to try another ROM.
Since I haven't unlocked my bootloader yet, I want to make a backup of the TA partition. But in order to do that, I need to root the device. And I haven't found a simple way to root it. I can't find how to keep my TA partition safe; do you guys know if the following will erase my TA partition:
If I downgrade the firmware?
If I flash a pre-rooted firmware?
Is using flashtool the good way to go (flashing a ftf file)?
Thank you for your help.

Related

[Q] Rooting 1.136 firmware ZU

I have searched and read through the forums and I am sorry, but I am very very confused. I ultimately don't want to screw up my phone so I am posting here to ask your guidance.
Got a brand new ZU with the 14.2.A.1.136 firmware. Now I want to flash it with the gpe firmware. I read that the first thing I need to do is TA Backup. But the TA Backup back up tool says I need root do to the backup. Now to root, I need to unlock the boot loader which will destroy the DRM keys and defeats the purpose of TA Backup.
Can some good heart, guide on exact tools and steps to use to properly backup my current firmware so that I can restore to stock when necessary and finally flash a custom rom? Thanks!
This may help you : http://forum.xda-developers.com/showthread.php?t=2569904
I did go through this. This guide is pretty unclear for the 1.136 fw. One guide for rooting as per the link in the guide requires you to unlock the BL. The other one requires you to use vroot, which I believe is not a legit tool?
It's not that hard...
Downgrade (see my sticky in the general section)
From here down follow Lordmanhattan's guide posted above
Root (Bin4ries tool)
Back up TA
Flash 4.3 or 4.4.2 FTF (Flashtool - you need the newer firmware for baseband etc)
Unlock BootLoader (Flashtool and Sony's dev site)
Flash boot.img from ROM zip (Use flashtool - this has the recoveries and kernel)
Boot into recovery and flash ROM

Confirming everything about rooting... (and a bit more)

I have found many sites with conflicting answers, so please don't tell me "google is your best friend" for my silly/already asked questions...
So first what I have: a 5 month old, non modified M4 aqua (E2306), bought from a Canadian carrier. The firmware version is 26.1.A.3.111 (bootloader locked). My goal is to root my phone when I update to MM (using the method PiSpecialist has posted, I cannot post links), but I haven't done so for the fear of losing TA partition when unlocking BL. There is currently no way to root MM with locked bootloader.
Now, my questions:
1. When I unlock my BL, I will lose the TA partition (DRM keys) of the device. Yet to back these up, I need root access. Should I root my device while it is still on Lollipop? There are ways to root BL Lollipop correct? If so, please link a preferable way to do this.
2. Will I receive OTA updates after rooting my phone? If not, I should download and flash firmware from Xperifirm?
3. Will I lose root when flashing new firmware (e.g. flashing MM to a rooted Lollipop device)?
4. Is it dangerous to flash official firmware to a rooted phone? What is a safe way?
I found that dealing with TA is dangerous and can hard brick a phone. Anybody found a reliable script/tool to do this?
So this is pretty much what I am planning to do so far, if the above is correct:
Root my phone while it is still on Lollipop with a locked bootloader.
Backup my TA partition.
Get MM (from either flashing, or OTA, depending if I still get OTA updates)
Unlock bootloader (as there is no way to root for locked bootloaders in MM)
Root phone while it is on MM (if I don't keep the root after updating from lollipop)
Restore TA partition
DONE!
Not as many questions as I thought.... Any other advice/things to look out for would be appreciated
Theres no way yet to have root in mm /system, it needs to be in kernel and you cant use custom kernel and restore ta. All the questions you did are already answered in forums.
But in case your interested ill tell you what i did step by step to have original TA part with drm and "tunned" but unrooted /system.
Keep in mind that your warranty is void, you will loose all your data and you may brick your device. Messing up with TA partition is serious and dangerous stuff. The following steps are just to tell you what i did.
If you want to do so, do it at your own risk.
1. Clean install LP 3.120 via flashtool wipping user data.
2. Root with rootkit 3.xxx and installed twrp for BL
3. Backup TA
4. Unlock bootloader and install MM fw via flashtool
5. Now with BU installed boot.img and recovery.img
6. Now with root, deleted unwanted apps, installed adblocker, installed xposed, tunned some settings/apps etc.
7. When /system was how i wanted, i made a backup via twrp (data, system, cache).
8. Clean install LP 3.120 again via flashtool, wipping user data.
9. Root via rootkit and installed twrp for BL.
10. Restored TA partition
11. Restored the backup via twrp and SHUTTED DOWN the phone because itll not match with the rest of the fw.
12. Installed MM fw again via flashtool but this time, excluded /system part and DID NOT WIPE user data nor Apps log. (as ive restored MM /data backup before)
13. Started the phone.
Now i have MM with drm, locked bootloader, unrooted, xposed working with few modules, adblocker applied and some other mods. Also i receive updates via sony apps such as whats new. And the low speaker volume seems to be fixed.
thewailer said:
Theres no way yet to have root in mm /system, it needs to be in kernel and you cant use custom kernel and restore ta. All the questions you did are already answered in forums.
But in case your interested ill tell you what i did step by step to have original TA part with drm and "tunned" but unrooted /system.
Keep in mind that your warranty is void, you will loose all your data and you may brick your device. Messing up with TA partition is serious and dangerous stuff. The following steps are just to tell you what i did.
If you want to do so, do it at your own risk.
1. Clean install LP 3.120 via flashtool wipping user data.
2. Root with rootkit 3.xxx and installed twrp for BL
3. Backup TA
4. Unlock bootloader and install MM fw via flashtool
5. Now with BU installed boot.img and recovery.img
6. Now with root, deleted unwanted apps, installed adblocker, installed xposed, tunned some settings/apps etc.
7. When /system was how i wanted, i made a backup via twrp (data, system, cache).
8. Clean install LP 3.120 again via flashtool, wipping user data.
9. Root via rootkit and installed twrp for BL.
10. Restored TA partition
11. Restored the backup via twrp and SHUTTED DOWN the phone because itll not match with the rest of the fw.
12. Installed MM fw again via flashtool but this time, excluded /system part and DID NOT WIPE user data nor Apps log. (as ive restored MM /data backup before)
13. Started the phone.
Now i have MM with drm, locked bootloader, unrooted, xposed working with few modules, adblocker applied and some other mods. Also i receive updates via sony apps such as whats new. And the low speaker volume seems to be fixed.
Click to expand...
Click to collapse
Thank you.
What adblocker can be install?
Btw, false alarm regarding speaker volume, it still saturate with bass at higher volume resulting in a lower and kinda cracked volume output, it may need to be tweaked, or even try to port LP audio parametres to MM rom, if thats even a thing and possible, until sony fix it (if they do lol). Ive tested a variety of songs
thewailer said:
Now i have MM with drm, locked bootloader, unrooted, xposed working with few modules, adblocker applied and some other mods. Also i receive updates via sony apps such as whats new. And the low speaker volume seems to be fixed.
Click to expand...
Click to collapse
Is there possibility for system to stay rooted? Btw how do u enter into recovery on MM ?
Tnx
harisdelic said:
Is there possibility for system to stay rooted? Btw how do u enter into recovery on MM ?
Tnx
Click to expand...
Click to collapse
Theres no method at this moment to put su binaries in /system, but if you dont mind you can keep the root as long as you dont restore your TA / lock bootloader as it needs a stock kernel signed by sony.
I enter twrp recovery in MM by holding power+vol down
---------- Post added at 09:42 PM ---------- Previous post was at 09:41 PM ----------
sucsong said:
Thank you.
What adblocker can be install?
Click to expand...
Click to collapse
Ive installed adaway that blocks via host file.
thewailer said:
Theres no method at this moment to put su binaries in /system, but if you dont mind you can keep the root as long as you dont restore your TA / lock bootloader as it needs a stock kernel signed by sony.
I enter twrp recovery in MM by holding power+vol down
Click to expand...
Click to collapse
Thanks man. I will try metod you write above right now
harisdelic said:
Thanks man. I will try metod you write above right now
Click to expand...
Click to collapse
No problem . Here in m4 aqua forums you have everything you need to backup TA, unlock bootloader, flash, drowngrade etc. Just follow all the tutorials carefully good luck
thewailer said:
Theres no method at this moment to put su binaries in /system, but if you dont mind you can keep the root as long as you dont restore your TA / lock bootloader as it needs a stock kernel signed by sony.
I enter twrp recovery in MM by holding power+vol down
---------- Post added at 09:42 PM ---------- Previous post was at 09:41 PM ----------
Ive installed adaway that blocks via host file.
Click to expand...
Click to collapse
I don't understand about "excluded /system part"? Flash only system file or everything
sucsong said:
I don't understand about "excluded /system part"? Flash only system file or everything
Click to expand...
Click to collapse
No, you exclude system as you restored it early via twrp, flash the rest of the firmware like modem, kernel etc. Remember to dont wipe data and apps log also
Edit: if you flash system youll loose the changes you did thats why you need to exclude from bundle when choosin in flashtool
thewailer said:
Theres no way yet to have root in mm /system, it needs to be in kernel and you cant use custom kernel and restore ta. All the questions you did are already answered in forums.
But in case your interested ill tell you what i did step by step to have original TA part with drm and "tunned" but unrooted /system.
Keep in mind that your warranty is void, you will loose all your data and you may brick your device. Messing up with TA partition is serious and dangerous stuff. The following steps are just to tell you what i did.
If you want to do so, do it at your own risk.
1. Clean install LP 3.120 via flashtool wipping user data.
2. Root with rootkit 3.xxx and installed twrp for BL
3. Backup TA
4. Unlock bootloader and install MM fw via flashtool
5. Now with BU installed boot.img and recovery.img
6. Now with root, deleted unwanted apps, installed adblocker, installed xposed, tunned some settings/apps etc.
7. When /system was how i wanted, i made a backup via twrp (data, system, cache).
8. Clean install LP 3.120 again via flashtool, wipping user data.
9. Root via rootkit and installed twrp for BL.
10. Restored TA partition
11. Restored the backup via twrp and SHUTTED DOWN the phone because itll not match with the rest of the fw.
12. Installed MM fw again via flashtool but this time, excluded /system part and DID NOT WIPE user data nor Apps log. (as ive restored MM /data backup before)
13. Started the phone.
Now i have MM with drm, locked bootloader, unrooted, xposed working with few modules, adblocker applied and some other mods. Also i receive updates via sony apps such as whats new. And the low speaker volume seems to be fixed.
Click to expand...
Click to collapse
Thanks! This was what I was looking for!
Also, will you be able to root after this? (If someone comes up with a method)
DarkerJava said:
Thanks! This was what I was looking for!
Also, will you be able to root after this? (If someone comes up with a method)
Click to expand...
Click to collapse
Your welcome. Yeah if someones finds a way to do the classic root like in LP this will be rootable for sure.
At least in the meanwhile we can have ads blocked and xposed with some modules and still keep bootloader locked with drm keys to keep functions and receive updates.
thewailer said:
Your welcome. Yeah if someones finds a way to do the classic root like in LP this will be rootable for sure.
At least in the meanwhile we can have ads blocked and xposed with some modules and still keep bootloader locked with drm keys to keep functions and receive updates.
Click to expand...
Click to collapse
This is what im going to do...
Root bootloader locked in LL
Back up TA
Unlock bootloader
MM through flashtool
Root MM (boot.img , recovery.img) (This IS what you did by flashing these, right?)
http***://forum.xda-developers.com/m4-aqua/general/root-t3421932 (going to use this boot and recovery .img)
Chang/add to Marshmallow firmware
At this point, the device should be rooted on MM, with UB TWRP and SuperSU.
Now, is it okay if I just restore TA partition NOW, instead of going back to LL? I'm not really interested in saving OTA updates... speaking of which, how did you manage to still get them? I thought as soon as you modify your device, you are excluded from OTA updates...
DarkerJava said:
This is what im going to do...
Root bootloader locked in LL
Back up TA
Unlock bootloader
MM through flashtool
Root MM (boot.img , recovery.img) (This IS what you did by flashing these, right?)
http***://forum.xda-developers.com/m4-aqua/general/root-t3421932 (going to use this boot and recovery .img)
Chang/add to Marshmallow firmware
At this point, the device should be rooted on MM, with UB TWRP and SuperSU.
Now, is it okay if I just restore TA partition NOW, instead of going back to LL? I'm not really interested in saving OTA updates... speaking of which, how did you manage to still get them? I thought as soon as you modify your device, you are excluded from OTA updates...
Click to expand...
Click to collapse
Yeah you root mm by flashimg boot.img.
First, some people reported that is recommended to restore TA partition in the same firmware as you backed them up. Second, if you restore your TA and you have custom boot.img (like that one to get the root) your device will not boot
thewailer said:
Theres no way yet to have root in mm /system, it needs to be in kernel and you cant use custom kernel and restore ta. All the questions you did are already answered in forums.
But in case your interested ill tell you what i did step by step to have original TA part with drm and "tunned" but unrooted /system.
Keep in mind that your warranty is void, you will loose all your data and you may brick your device. Messing up with TA partition is serious and dangerous stuff. The following steps are just to tell you what i did.
If you want to do so, do it at your own risk.
1. Clean install LP 3.120 via flashtool wipping user data.
2. Root with rootkit 3.xxx and installed twrp for BL
3. Backup TA
4. Unlock bootloader and install MM fw via flashtool
5. Now with BU installed boot.img and recovery.img
6. Now with root, deleted unwanted apps, installed adblocker, installed xposed, tunned some settings/apps etc.
7. When /system was how i wanted, i made a backup via twrp (data, system, cache).
8. Clean install LP 3.120 again via flashtool, wipping user data.
9. Root via rootkit and installed twrp for BL.
10. Restored TA partition
11. Restored the backup via twrp and SHUTTED DOWN the phone because itll not match with the rest of the fw.
12. Installed MM fw again via flashtool but this time, excluded /system part and DID NOT WIPE user data nor Apps log. (as ive restored MM /data backup before)
13. Started the phone.
Now i have MM with drm, locked bootloader, unrooted, xposed working with few modules, adblocker applied and some other mods. Also i receive updates via sony apps such as whats new. And the low speaker volume seems to be fixed.
Click to expand...
Click to collapse
i have locked bootloader and its not unlockable (buyed to a company) and after some test i can tell you that don't need to unlock bootloader to do this
you can do it from rooted LP with twrp, first wipe data , system and cache, install MM fromzip (you can create the zip with PRF creator using the dummy_flashable.zip instead supersu zip) after MM its installed you can now install xposed, and other kind of flashable mods, lastly, power off phone and flash tft skipping system.sin
you will have android modded and untouched bootloader without root
sergioslk said:
i have locked bootloader and its not unlockable (buyed to a company) and after some test i can tell you that don't need to unlock bootloader to do this
you can do it from rooted LP with twrp, first wipe data , system and cache, install MM fromzip (you can create the zip with PRF creator using the dummy_flashable.zip instead supersu zip) after MM its installed you can now install xposed, and other kind of flashable mods, lastly, power off phone and flash tft skipping system.sin
you will have android modded and untouched bootloader without root
Click to expand...
Click to collapse
id rather prefer to do the system changes with root in the mm firm, but sounds like a good method for those ones that cant unlock the BL.
sergioslk said:
i have locked bootloader and its not unlockable (buyed to a company) and after some test i can tell you that don't need to unlock bootloader to do this
you can do it from rooted LP with twrp, first wipe data , system and cache, install MM fromzip (you can create the zip with PRF creator using the dummy_flashable.zip instead supersu zip) after MM its installed you can now install xposed, and other kind of flashable mods, lastly, power off phone and flash tft skipping system.sin
you will have android modded and untouched bootloader without root
Click to expand...
Click to collapse
Can't everyone unlock from the Sony website?
DarkerJava said:
I have found many sites with conflicting answers, so please don't tell me "google is your best friend" for my silly/already asked questions...
So first what I have: a 5 month old, non modified M4 aqua (E2306), bought from a Canadian carrier. The firmware version is 26.1.A.3.111 (bootloader locked). My goal is to root my phone when I update to MM (using the method PiSpecialist has posted, I cannot post links), but I haven't done so for the fear of losing TA partition when unlocking BL. There is currently no way to root MM with locked bootloader.
Now, my questions:
1. When I unlock my BL, I will lose the TA partition (DRM keys) of the device. Yet to back these up, I need root access. Should I root my device while it is still on Lollipop? There are ways to root BL Lollipop correct? If so, please link a preferable way to do this.
2. Will I receive OTA updates after rooting my phone? If not, I should download and flash firmware from Xperifirm?
3. Will I lose root when flashing new firmware (e.g. flashing MM to a rooted Lollipop device)?
4. Is it dangerous to flash official firmware to a rooted phone? What is a safe way?
I found that dealing with TA is dangerous and can hard brick a phone. Anybody found a reliable script/tool to do this?
So this is pretty much what I am planning to do so far, if the above is correct:
Root my phone while it is still on Lollipop with a locked bootloader.
Backup my TA partition.
Get MM (from either flashing, or OTA, depending if I still get OTA updates)
Unlock bootloader (as there is no way to root for locked bootloaders in MM)
Root phone while it is on MM (if I don't keep the root after updating from lollipop)
Restore TA partition
DONE!
Not as many questions as I thought.... Any other advice/things to look out for would be appreciated
Click to expand...
Click to collapse
If on rooted 5.0 all you need to do is flash a pre-rooted mm zip via recovery on lollipop, no need to unlock the Bootloader for root unless you have a device that has drm-verity security activated.
Sent from my Xperia XA using XDA Labs
aidy.lucas said:
If on rooted 5.0 all you need to do is flash a pre-rooted mm zip via recovery on lollipop, no need to unlock the Bootloader for root unless you have a device that has drm-verity security activated.
Sent from my Xperia XA using XDA Labs
Click to expand...
Click to collapse
Oh yeah I completely forgot about that... someone released a prerooted rom about a week ago on the forums. This will less complicate the process for bl locked rooted MM, thanks!

How to completely unroot?

So, I backed up the DRM keys, rooted, installed custom recovery and kernel. Now I want to bring the phone back to the same status as it was when I received it. I thought I start by restoring the DRM keys that should also lock the BootLoader, but I'm a bit stuck and have 3 questions.
1. I bought the US variant, flashed an European one to get the fingerprint sensor - is it enough to flas the US firmware to make the phone the same way as when I got it?
2. How to get rid of custom recovery, will flashing the original US firmware take care of that?
There is a thread about restoring TA, you need also flash stock fw.
mele80 said:
There is a thread about restoring TA, you need also flash stock fw.
Click to expand...
Click to collapse
True, but this is all it says. Says nothing about flashing anything or how to restore original recovery.
===================================How To Restore TA Partiton?==================================
Note : Restoring TA Partiton Will Re-Lock The Boot-Loader And You Will Loose Root Access.
* Copy your TA partition backup to the TA tool's extracted folder.
* Connect your device with USB Debugging Enabled
* Open up a command prompt to the extracted folder and type in the following:
tarestore.bat {Your TA Backup File}
Example :
tarestore.bat TA-14102016.img
This new restored TA partition should persist across device wipes and Android upgrades.​
Well you will just need to restore To ( relock bootloader) and then flash stock rom with flashtool ( wipe all, but take backups)
I was in ur shoes last week. First, if u backed up ur TA, downgrade to the firmware u did d backup (lollipop i presume), then restore ur TA, it will not restore on Marshmallow, after that then upgrade to marshmallow, u will bun-rooted n stock with ur drm keys.
Is there a way to restore back to normal if you didn't backup a TA?
I just want to unroot mine and relock the bootloader.
Root back
Hello, i tried root my phone but did not get any luck. As i understand i did not root it but changed kernel to Androplus. I want back to stock but not sure which steps i should make. At the moment i don't have rooted device also cant get sony updates as it is modified.
This is my phones data
Model E5823
Baseband version 8994-FAAAANAZQ-00033-25
Kernel version 3.10.84-v23 Androplus
Build number 32.1.A.1. 185
1) How much far i did got to root my phone?
2) What should i do get back stock firmware?
Thanks!

Upgrading to Oreo with unlocked bootloader

Hi guys, I hope someone can answer my questions.
I have an xperia X on android 7.1.1 with stock Rom and kernel, root and unlocked bootloader, I used the dirtycow script to backup the TA partition and then used the TA poc tool to make a boot.img with drm. I did this in September and now that Oreo is rolling out I would like to upgrade but I lost my TA backup, I only have the boot.img created. My question is, can I just upgrade to Oreo with flashtool or I will lose my drm? There is a way to extract them from the boot.img I still have?
Hi,
if you upgrade through FlashTool it will replace your boot.img with the one which is included in FTF file you are flashing.
IDK if you can extract TA from boot.img but definitely you should contact the author of program / script that you used for adding TA to boot.img if there is reverse way.
Keep your boot.img safe before you upgrade.
You can at least use DRM fix which isn't 100% replacement if you haven't flashed TA as DK but Bravia engine and no noise should work with that.
Sent from my F5121 using Tapatalk

Unable to flash stock DRM RESTORE

Hello dev
My xperia Z2 was rooted and running on Lineage 15 unofficial also rooted by magisk. My wish was i want to restore my original ta backup to my device and i tried with this method https://forum.xda-developers.com/xperia-xz/how-to/how-to-unlock-bl-kernel-twrp-root-t3541648 after this bootloader is locked and device is brick.
Now device functions as only flash mode but unable to flash stock please help
First of all you have a z2 and you are following a guide of XZ.You should have used this guide as it is much more simple https://forum.xda-developers.com/showthread.php?t=2292598. Secondly when did you restore the ta backup were you on stock rom or lineage os 15? and if you were on lineage then it would brick as phone would not let another kernal boot. Make sure all drivers are installed and flash stock ftf using flashtool available at xda for z2. If flash tool is giving an error please tell
Hi thanks for reply yes I was on lineage, but the thing is that now in this situation flashtool able unlock boot loader again in flash mode but not flashing stock also fastboot is not working please give a solution
use lower flashtool version . 0.9.19.2 for example like im using right now .
Can you mirror it for me please
Hi dev's now i had recovered my Z2 Using EMMA but before bricked i am able to use $g services In india on My D6503 but now phone doesn't able to search 4G network tried with different firmware RU and MEA please Help.......

Categories

Resources