]> FriiDump Source - friidump.git/blob - docs/reports/FRIIDUMP_XGD1_RAW_ID_GEOMETRY_PROBE_0.5.3.12.md
Document exact-release Linux hardware validation
[friidump.git] / docs / reports / FRIIDUMP_XGD1_RAW_ID_GEOMETRY_PROBE_0.5.3.12.md
1 # FriiDump 0.5.3.12 XGD1 raw-sector ID geometry probe
2
3 ## Objective
4
5 Use the modified GDR-8050L HIT 0xE7 memory-dump surface to recover the raw DVD
6 ID fields associated with selected logical LBAs. The 24-bit physical-sector
7 number in each raw ID can test the logical-to-physical geometry that ordinary
8 READ(10)/READ(12) could not resolve.
9
10 ## Command
11
12 ```powershell
13 friidump -d f: --xgd1-raw-id-probe "docs\debug\xgd1-raw-id-probe.json"
14 ```
15
16 This mode is Windows-only, exclusive with all image-output and other probe
17 modes, limited to the GDR-8050L challenge-handshake path, and additionally
18 requires the modified HIT 0xE7 profile.
19
20 ## Capture sequence
21
22 1. Record entry capacity.
23 2. Tray-cycle to the 6,992-sector locked/video state.
24 3. For selected locked LBAs, issue a 16-sector streaming READ(12), retain the
25    target 2048-byte logical sector, and dump the corresponding 2064-byte raw
26    cache slot from base 0x80000000.
27 4. Apply the existing challenge handshake and verify the 3,431,264-sector game
28    state.
29 5. Repeat at selected unlocked LBAs, including source start, XDFS start, mapped
30    layer-break neighbors, and source end.
31 6. Restore the entry state when needed, atomically publish JSON, and issue one
32    STOP UNIT.
33
34 ## Evidence per sample
35
36 - logical LBA, cache-fill LBA, cache slot, and absolute memory address;
37 - READ(12) and HIT 0xE7 command status plus sense;
38 - full logical 2048-byte sector and full raw 2064-byte cache sector;
39 - SHA-1 for logical, raw, and raw-user-data regions;
40 - raw-user/logical equality;
41 - raw 12-byte ID/IED/CPR_MAI header and four-byte EDC;
42 - sector-information byte;
43 - decoded 24-bit physical-sector number.
44
45 ## Interpretation boundary
46
47 A valid raw ID can prove geometry or a discontinuity between logical views. It
48 does not make omitted filler sectors readable and does not establish their
49 bytes. `physical_geometry_resolved`, `pregame_filler_content_resolved`, and
50 `postgame_filler_content_resolved` remain false in the generated report until
51 the captured values are analyzed.
52
53 ## Safety
54
55 The probe issues readiness, tray, authentication, READ CAPACITY, READ(12), and
56 HIT 0xE7 data-in memory reads only. It does not issue firmware updates, flash,
57 erase, vendor-memory writes, 3B06, 3B07, or FLASHUP commands and does not create
58 an ISO.