You are here: Home Tutorials SB4100 / SB4200 Modification with Chapter21 and Open Sesame
Decrease font size  Default font size  Increase font size 
SB4100 / SB4200 Modification with Chapter21 and Open Sesame PDF Print E-mail
Written by The Theoryshare Team   
Wednesday, 27 May 2009 03:04

In this tutorial you will learn to modify your Motorola Surfboard SB4100 or SB4200 using Chapter21, and Open Sesame.

Whats Required:

Motorola SB4100 or SB4200 Cable Modem with Compatible Firmware

Chapter21 Software Build 117 (Available in the Theoryshare Downloads Section)

Open Sesame Software (Available in the Theoryshare Downloads Section)

Modified SB4100 / SB4200 Firmware (Available in the Theoryshare Downloads Section - Hackware Used in this Tutorial)

 

Step 1. Check Firmware Compatibility

With your cable modem connected directly to your computer and the coax disconnected go to http://192.168.100.1, under help to check the software version, refer to the demonstration screenshot below, the firmware version is highlighted:

Checking the Firmware on a SB4200

Depending on your firmware version you will need to use Chapter21 & Open Sesame, Open Sesame only, or you may have to connect a JTAG to your modem in order to modify it.

Chapter21 changes the high version firmware on your SB4100 / SB4200 to a lower version which can be hacked using Open Sesame. If your modem already has Open Sesame compatible firmware then using Chapter21 is unnecessary. Unfortunately for those with firmware that is not compatible with Chapter21 or Open Sesame you must use a JTAG to modify your modem.

Firmwares Compatible with Chapter21 & Open Sesame Method:

SB4100-0.4.5.0-SCM00-NOSH
SB4100-1.4.9.0-SCM00-NOSH
SB4100-1.4.9.2-SCM01-NOSH
SB4100-1.4.9.6-SCM01-NOSH
SB4100-1.4.9.9-SCM02-NOSH
SB4200-0.4.5.0-SCM00-NOSH
SB4200-1.4.9.0-SCM00-NOSH
SB4200-1.4.9.1-SCM01-NOSH
SB4200-1.4.9.2-SCM01-NOSH
SB4200-0.4.9.6-SCM02-NOSH
SB4200-1.4.9.6-SCM01-NOSH
SB4200-1.4.9.9-SCM02-NOSH
SB4200E-1.4.9.2-SCM01-NOSH
SB4200E-0.4.5.0-SCM00-NOSH

Firmwares Compatible with the Open Sesame Only Method:

  • Supported SB4100 Firmware
    • SB4100-4.0.3-SCM-NOSHELL
    • SB4100-4.0.6-SCM-NOSHELL
    • SB4100-4.0.9-SCM07-NOSHELL
    • SB4100-4.0.11-SCM07-NOSHELL
    • SB4100-4.0.12-SCM05-NOSHELL
    • SB4100-0.4.3.3-SCM01-NOSH
    • SB4100-0.4.4.0-SCM06-NOSH
    • SB4100-0.4.4.2-SCM01-NOSH
    • SB4100-0.4.4.3-SCM01-NOSH
    • SB4100-0.4.4.5-SCM01-NOSH
    • SB4100-0.4.4.7-SCM00-NOSH
    • SB4100-0.4.4.8-SCM00-NOSH
  • Supported SB4100E Firmware
    • SB4100E-4.1.3-SCM-NOSHELL
    • SB4100E-4.1.4-SCM9-NOSHELL
    • SB4100E-4.1.11-SCM05-NOSHELL
    • SB4100E-4.1.12-SCM05-NOSHELL
    • SB4100E-0.4.3.4-SCM03-NOSH
    • SB4100E-0.4.4.2-SCM01-NOSH
    • SB4100E-0.4.4.5-SCM01-NOSH
    • SB4100E-0.4.4.7-SCM00-NOSH
    • SB4100E-0.4.4.8-SCM00-NOSH
  • Supported SB4200 Firmware
    • SB4200-0.4.3.3-SCM01-NOSH
    • SB4200-0.4.4.0-SCM06-NOSH
    • SB4200-0.4.4.2-SCM01-NOSH
    • SB4200-0.4.4.3-SCM01-NOSH
    • SB4200-0.4.4.4-SCM00-NOSH
    • SB4200-0.4.4.5-SCM01-NOSH
    • SB4200-0.4.4.6-SCM00-NOSH
    • SB4200-0.4.4.8-SCM00-NOSH
  • Supported SB4200E Firmware
    • SB4200E-0.4.3.4-SCM02-NOSH
    • SB4200E-0.4.3.4-SCM03-NOSH
    • SB4200E-0.4.4.2-SCM01-NOSH
    • SB4200E-0.4.4.4-SCM00-NOSH
    • SB4200E-0.4.4.5-SCM01-NOSH
    • SB4200E-0.4.4.6-SCM00-NOSH
    • SB4200E-0.4.4.8-SCM00-NOSH

Firmware on which a JTAG must be Used:

Any other firmware which is not listed

 

 

Step 2. Using Chapter21 to Downgrade to Open Sesame Compatible Firmware (If you already have compatible firmware installed skip to step 4)

Part 1. Change your network card IP address to settings compatible with Chapter 21.

IP: 192.168.100.10

Subnet: 255.255.255.0

Gateway: 192.168.100.1

This is illustrated below:

This picture shows IP settings compatible with Chapter21

Part 2. Reset all defaults on your modem

Go to http://192.168.100.1 under configuration reset all defaults, then reboot the cable modem, by unplugging it then plugging it back in. (Pictured Below)

How-to reset all defaults on your SB4100 / SB4200

Part 3. Running Chapter21

Open Chapter21, and click Lets Go. This will cause your modem to download a bitfile from the Chapter21 application, a successful result looks like this:

A Successful Bitfile Download By Chapter21 on a SB4200

After this happens, the modem will reboot and begin initalizing the shell code. When this happens you will likely get some errors, ignore these and click ok.

 This picture shows normal Chapter21 errors on a SB4200

Once this is done, your modem will reboot once more, and if you are lucky will begin downloading the new firmware image. If this happens wait until Chapter21 reports that the new 4.4.0 firmware has been installed on your modem before continuing. But more than likely the upgrade will fail, and you will see a result like the one below:

Chapter21 Failed to Install on This Modem

If this happens unplug your modem, then when recieve begins blinking hit lets go again, and the modem should download the firmware. Occassionally stubborn modems can take a few tries, once this is done you will get a screen like the one below:

Chapter21 has sucessfully installed 4.4.0 firmware in this instance.

After this is done, make sure to close Chapter21 before continuing to step 3.

Step 3. Using Open Sesame to Load Modified Firmware on your SB4100 / SB4200

Once your modem has a compatible firmware installed, run Open Sesame. Once the application is open, click Open Sesame, then use the update firmware function to load modified firmware on to your modem. If you are unsure what image to use, we recommend Docsis 1.1 Hackware for the SB4200, and Hackware 2.03 for the SB4100. After selecting the firmware image you should get a result like this:

Open Sesame Installing Firmare on a SB4200

Once the transfer is complete wait 5 minutes before unplugging or changing any settings on your modem to ensure that you do not corrupt the flash while the modem is still updating.

Step 4. Clear left over settings from your modem and enjoy

Once the upgrade is complete, there will be some left over settings on your modem which need to be cleared. Go to the hack tab on http://192.168.100.1 and clear out any settings in the config boxes, then click change configuration file.

Extra parameters left over in Hackware after netbooting

 

You are now finished, enjoy your newly modified modem using other tutorials on the site. Particularly useful on is the following tutorial: SB4200 Config File Application / MAC Change on Modified Firmware

 

Terms of Use:

THIS TUTORIAL IS INTENDED FOR THEORETICAL USE ONLY, USE ON PRODUCTION SYSTEMS MAY VIOLATE YOUR ISP's TERMS OF SERVICE. THEORYSHARE TAKES NO RESPONSIBILITY FOR YOUR ACTIONS. THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. THIS SOFTWARE IS INTENDED FOR EDUCATIONAL USE ONLY AND MAY BE ILLEGAL IF USED IMPROPORLY. USERS ASSUME FULL RESPONSIBILITY FOR THEIR ACTIONS. 

 

Last Updated on Wednesday, 27 May 2009 04:09