1 /* flasher for HomeMatic-devices supporting OTA updates
3 * Copyright (c) 2014-15 Michael Gernoth <michael@gernoth.net>
5 * Permission is hereby granted, free of charge, to any person obtaining a copy
6 * of this software and associated documentation files (the "Software"), to
7 * deal in the Software without restriction, including without limitation the
8 * rights to use, copy, modify, merge, publish, distribute, sublicense, and/or
9 * sell copies of the Software, and to permit persons to whom the Software is
10 * furnished to do so, subject to the following conditions:
12 * The above copyright notice and this permission notice shall be included in
13 * all copies or substantial portions of the Software.
15 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
16 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
17 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
18 * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
19 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING
20 * FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS
32 #include <sys/types.h>
36 #include <libusb-1.0/libusb.h>
47 #define NORMAL_MAX_PAYLOAD 37
48 #define LOWER_MAX_PAYLOAD 17
54 uint8_t key
[16] = {0};
57 /* Maximum payloadlen supported by IO */
58 uint32_t max_payloadlen
= NORMAL_MAX_PAYLOAD
;
67 struct hmcfgusb_dev
*hmcfgusb
;
68 struct culfw_dev
*culfw
;
78 enum message_type message_type
;
85 static int parse_hmcfgusb(uint8_t *buf
, int buf_len
, void *data
)
87 struct recv_data
*rdata
= data
;
95 ((buf
[0x11] == ((hmid
>> 16) & 0xff)) &&
96 (buf
[0x12] == ((hmid
>> 8) & 0xff)) &&
97 (buf
[0x13] == (hmid
& 0xff)))) {
98 memset(rdata
->message
, 0, sizeof(rdata
->message
));
99 memcpy(rdata
->message
, buf
+ 0x0d, buf
[0x0d] + 1);
100 rdata
->message_type
= MESSAGE_TYPE_E
;
104 memset(rdata
->message
, 0, sizeof(rdata
->message
));
105 memcpy(rdata
->message
, buf
+ 0x0e, buf
[0x0e] + 1);
106 rdata
->status
= (buf
[5] << 8) | buf
[6];
107 rdata
->message_type
= MESSAGE_TYPE_R
;
110 rdata
->speed
= buf
[1];
113 rdata
->version
= (buf
[11] << 8) | buf
[12];
114 rdata
->credits
= buf
[36];
115 my_hmid
= (buf
[0x1b] << 16) | (buf
[0x1c] << 8) | buf
[0x1d];
127 static int parse_culfw(uint8_t *buf
, int buf_len
, void *data
)
129 struct recv_data
*rdata
= data
;
132 memset(rdata
, 0, sizeof(struct recv_data
));
142 while(validate_nibble(buf
[(pos
* 2) + 1]) &&
143 validate_nibble(buf
[(pos
* 2) + 2]) &&
144 (pos
+ 1 < buf_len
)) {
145 rdata
->message
[pos
] = ascii_to_nibble(buf
[(pos
* 2) + 1]) << 4;
146 rdata
->message
[pos
] |= ascii_to_nibble(buf
[(pos
* 2) + 2]);
150 if (hmid
&& (SRC(rdata
->message
) != hmid
))
153 rdata
->message_type
= MESSAGE_TYPE_E
;
161 s
= ((char*)buf
) + 2;
164 fprintf(stderr
, "Unknown response from CUL: %s", buf
);
169 rdata
->version
= v
<< 8;
174 fprintf(stderr
, "Unknown response from CUL: %s", buf
);
187 if (!strcmp(s
, "a-culfw")) {
188 rdata
->version
= 0xffff;
194 if (!strncmp((char*)buf
, "ERR:CCA", 7)) {
195 fprintf(stderr
, "CCA didn't complete, too much traffic\n");
200 fprintf(stderr
, "Unknown response from CUL: %s", buf
);
208 int send_hm_message(struct ota_dev
*dev
, struct recv_data
*rdata
, uint8_t *msg
)
210 static uint32_t id
= 1;
216 case DEVICE_TYPE_HMCFGUSB
:
217 if (gettimeofday(&tv
, NULL
) == -1) {
218 perror("gettimeofay");
222 memset(out
, 0, sizeof(out
));
225 out
[1] = (id
>> 24) & 0xff;
226 out
[2] = (id
>> 16) & 0xff;
227 out
[3] = (id
>> 8) & 0xff;
230 out
[11] = (tv
.tv_usec
>> 24) & 0xff;
231 out
[12] = (tv
.tv_usec
>> 16) & 0xff;
232 out
[13] = (tv
.tv_usec
>> 8) & 0xff;
233 out
[14] = tv
.tv_usec
& 0xff;
235 memcpy(&out
[0x0f], msg
, msg
[0] + 1);
237 memset(rdata
, 0, sizeof(struct recv_data
));
238 hmcfgusb_send(dev
->hmcfgusb
, out
, sizeof(out
), 1);
241 if (rdata
->message_type
== MESSAGE_TYPE_R
) {
242 if (((rdata
->status
& 0xdf) == 0x01) ||
243 ((rdata
->status
& 0xdf) == 0x02)) {
246 if ((rdata
->status
& 0xff00) == 0x0400) {
247 fprintf(stderr
, "\nOut of credits!\n");
248 } else if ((rdata
->status
& 0xff) == 0x08) {
249 fprintf(stderr
, "\nMissing ACK!\n");
250 } else if ((rdata
->status
& 0xff) == 0x30) {
251 fprintf(stderr
, "\nUnknown AES-key requested!\n");
253 fprintf(stderr
, "\nInvalid status: %04x\n", rdata
->status
);
259 pfd
= hmcfgusb_poll(dev
->hmcfgusb
, 1000);
260 if ((pfd
< 0) && errno
) {
261 if (errno
!= ETIMEDOUT
) {
262 perror("\n\nhmcfgusb_poll");
268 case DEVICE_TYPE_CULFW
:
273 memset(buf
, 0, sizeof(buf
));
276 for (i
= 0; i
< msg
[0] + 1; i
++) {
277 buf
[2 + (i
* 2)] = nibble_to_ascii((msg
[i
] >> 4) & 0xf);
278 buf
[2 + (i
* 2) + 1] = nibble_to_ascii(msg
[i
] & 0xf);
280 buf
[2 + (i
* 2) ] = '\r';
281 buf
[2 + (i
* 2) + 1] = '\n';
283 memset(rdata
, 0, sizeof(struct recv_data
));
284 if (culfw_send(dev
->culfw
, buf
, 2 + (i
* 2) + 1) == 0) {
285 fprintf(stderr
, "culfw_send failed!\n");
289 if (msg
[CTL
] & 0x20) {
294 pfd
= culfw_poll(dev
->culfw
, 200);
295 if ((pfd
< 0) && errno
) {
296 if (errno
!= ETIMEDOUT
) {
297 perror("\n\nculfw_poll");
301 if (rdata
->message_type
== MESSAGE_TYPE_E
) {
302 if (rdata
->message
[TYPE
] == 0x02) {
303 if (rdata
->message
[PAYLOAD
] == 0x04) {
305 uint8_t challenge
[6];
309 req_kNo
= rdata
->message
[rdata
->message
[LEN
]] / 2;
310 memcpy(challenge
, &(rdata
->message
[PAYLOAD
+1]), 6);
312 if (req_kNo
!= kNo
) {
313 fprintf(stderr
, "AES request for unknown key %d!\n", req_kNo
);
315 resp
= hm_sign(key
, challenge
, msg
, NULL
, respbuf
);
319 memset(rbuf
, 0, sizeof(rbuf
));
320 rbuf
[MSGID
] = rdata
->message
[MSGID
];
321 rbuf
[CTL
] = rdata
->message
[CTL
];
323 SET_SRC(rbuf
, DST(rdata
->message
));
324 SET_DST(rbuf
, SRC(rdata
->message
));
325 memcpy(&(rbuf
[PAYLOAD
]), resp
, 16);
326 SET_LEN_FROM_PAYLOADLEN(rbuf
, 16);
328 return send_hm_message(dev
, rdata
, rbuf
);
331 } else if (rdata
->message
[PAYLOAD
] >= 0x80 && rdata
->message
[PAYLOAD
] <= 0x8f) {
332 fprintf(stderr
, "NACK\n");
333 } else { /* ACK or ACKinfo */
337 fprintf(stderr
, "Unexpected message received: ");
338 for (i
= 0; i
< rdata
->message
[LEN
]; i
++) {
339 fprintf(stderr
, "%02x", rdata
->message
[i
+1]);
341 fprintf(stderr
, "\n");
347 fprintf(stderr
, "\nMissing ACK!\n");
359 static int switch_speed(struct ota_dev
*dev
, struct recv_data
*rdata
, uint8_t speed
)
364 printf("Entering %uk-mode\n", speed
);
367 case DEVICE_TYPE_HMCFGUSB
:
368 memset(out
, 0, sizeof(out
));
372 hmcfgusb_send(dev
->hmcfgusb
, out
, sizeof(out
), 1);
376 pfd
= hmcfgusb_poll(dev
->hmcfgusb
, 1000);
377 if ((pfd
< 0) && errno
) {
378 if (errno
!= ETIMEDOUT
) {
379 perror("\n\nhmcfgusb_poll");
383 if (rdata
->speed
== speed
)
387 case DEVICE_TYPE_CULFW
:
389 return culfw_send(dev
->culfw
, "AR\r\n", 4);
391 return culfw_send(dev
->culfw
, "Ar\r\n", 4);
399 void flash_ota_syntax(char *prog
)
401 fprintf(stderr
, "Syntax: %s parameters options\n\n", prog
);
402 fprintf(stderr
, "Mandatory parameters:\n");
403 fprintf(stderr
, "\t-f firmware.eq3\tfirmware file to flash\n");
404 fprintf(stderr
, "\t-s SERIAL\tserial of device to flash (optional when using -D)\n");
405 fprintf(stderr
, "\nOptional parameters:\n");
406 fprintf(stderr
, "\t-c device\tenable CUL-mode with CUL at path \"device\"\n");
407 fprintf(stderr
, "\t-b bps\t\tuse CUL with speed \"bps\" (default: %u)\n", DEFAULT_CUL_BPS
);
408 fprintf(stderr
, "\t-l\t\tlower payloadlen (required for devices with little RAM, e.g. CUL v2 and CUL v4)\n");
409 fprintf(stderr
, "\t-h\t\tthis help\n");
410 fprintf(stderr
, "\nOptional parameters for automatically sending device to bootloader\n");
411 fprintf(stderr
, "\t-C\t\tHMID of central (3 hex-bytes, no prefix, e.g. ABCDEF)\n");
412 fprintf(stderr
, "\t-D\t\tHMID of device (3 hex-bytes, no prefix, e.g. 123456)\n");
413 fprintf(stderr
, "\t-K\t\tKNO:KEY AES key-number and key (hex) separated by colon (Fhem hmKey attribute)\n");
416 int main(int argc
, char **argv
)
418 const char twiddlie
[] = { '-', '\\', '|', '/' };
419 const uint8_t cc1101_regs
[] = { 0x10, 0x5B, 0x11, 0xF8, 0x15, 0x47 };
420 char *fw_file
= NULL
;
422 char *culfw_dev
= NULL
;
424 unsigned int bps
= DEFAULT_CUL_BPS
;
426 struct recv_data rdata
;
441 printf("HomeMatic OTA flasher version " VERSION
"\n\n");
443 while((opt
= getopt(argc
, argv
, "b:c:f:hls:C:D:K:")) != -1) {
455 printf("Reducing payload-len from %d to %d\n", max_payloadlen
, LOWER_MAX_PAYLOAD
);
456 max_payloadlen
= LOWER_MAX_PAYLOAD
;
462 my_hmid
= strtoul(optarg
, &endptr
, 16);
463 if (*endptr
!= '\0') {
464 fprintf(stderr
, "Invalid central HMID!\n\n");
465 flash_ota_syntax(argv
[0]);
470 hmid
= strtoul(optarg
, &endptr
, 16);
471 if (*endptr
!= '\0') {
472 fprintf(stderr
, "Invalid device HMID!\n\n");
473 flash_ota_syntax(argv
[0]);
478 kNo
= strtoul(optarg
, &endptr
, 10);
479 if (*endptr
!= ':') {
480 fprintf(stderr
, "Invalid key number!\n\n");
481 flash_ota_syntax(argv
[0]);
485 for (cnt
= 0; cnt
< 16; cnt
++) {
486 if (*endptr
== '\0' || *(endptr
+1) == '\0' ||
487 !validate_nibble(*endptr
) ||
488 !validate_nibble(*(endptr
+1))) {
489 fprintf(stderr
, "Invalid key!\n\n");
490 flash_ota_syntax(argv
[0]);
493 key
[cnt
] = ascii_to_nibble(*endptr
) << 4 | ascii_to_nibble(*(endptr
+1));
501 flash_ota_syntax(argv
[0]);
508 if (!fw_file
|| (!serial
&& !hmid
)) {
509 flash_ota_syntax(argv
[0]);
513 fw
= firmware_read_firmware(fw_file
, debug
);
517 memset(&rdata
, 0, sizeof(rdata
));
518 memset(&dev
, 0, sizeof(struct ota_dev
));
521 printf("Opening culfw-device at path %s with speed %u\n", culfw_dev
, bps
);
522 dev
.culfw
= culfw_init(culfw_dev
, bps
, parse_culfw
, &rdata
);
524 fprintf(stderr
, "Can't initialize CUL at %s with rate %u\n", culfw_dev
, bps
);
527 dev
.type
= DEVICE_TYPE_CULFW
;
529 printf("Requesting firmware version\n");
530 culfw_send(dev
.culfw
, "\r\n", 2);
531 culfw_flush(dev
.culfw
);
534 culfw_send(dev
.culfw
, "V\r\n", 3);
537 pfd
= culfw_poll(dev
.culfw
, 1000);
538 if ((pfd
< 0) && errno
) {
539 if (errno
!= ETIMEDOUT
) {
540 perror("\n\nhmcfgusb_poll");
548 printf("culfw-device firmware version: ");
549 if (rdata
.version
!= 0xffff) {
551 (rdata
.version
>> 8) & 0xff,
552 rdata
.version
& 0xff);
557 if (rdata
.version
< 0x013a) {
558 fprintf(stderr
, "\nThis version does _not_ support firmware upgrade mode, you need at least 1.58!\n");
562 uint32_t new_hmid
= my_hmid
;
564 hmcfgusb_set_debug(debug
);
566 dev
.hmcfgusb
= hmcfgusb_init(parse_hmcfgusb
, &rdata
);
568 fprintf(stderr
, "Can't initialize HM-CFG-USB\n");
571 dev
.type
= DEVICE_TYPE_HMCFGUSB
;
573 memset(out
, 0, sizeof(out
));
575 hmcfgusb_send(dev
.hmcfgusb
, out
, sizeof(out
), 1);
579 pfd
= hmcfgusb_poll(dev
.hmcfgusb
, 1000);
580 if ((pfd
< 0) && errno
) {
581 if (errno
!= ETIMEDOUT
) {
582 perror("\n\nhmcfgusb_poll");
590 if (rdata
.version
< 0x3c7) {
591 fprintf(stderr
, "HM-CFG-USB firmware too low: %u < 967\n", rdata
.version
);
595 printf("HM-CFG-USB firmware version: %u, used credits: %u%%\n", rdata
.version
, rdata
.credits
);
597 if (rdata
.credits
>= 40) {
598 printf("\nRebooting HM-CFG-USB to avoid running out of credits\n\n");
600 if (!dev
.hmcfgusb
->bootloader
) {
601 printf("HM-CFG-USB not in bootloader mode, entering bootloader.\n");
602 printf("Waiting for device to reappear...\n");
606 if (!dev
.hmcfgusb
->bootloader
)
607 hmcfgusb_enter_bootloader(dev
.hmcfgusb
);
608 hmcfgusb_close(dev
.hmcfgusb
);
611 } while (((dev
.hmcfgusb
= hmcfgusb_init(parse_hmcfgusb
, &rdata
)) == NULL
) || (!dev
.hmcfgusb
->bootloader
));
614 if (dev
.hmcfgusb
->bootloader
) {
615 printf("HM-CFG-USB in bootloader mode, rebooting\n");
619 if (dev
.hmcfgusb
->bootloader
)
620 hmcfgusb_leave_bootloader(dev
.hmcfgusb
);
621 hmcfgusb_close(dev
.hmcfgusb
);
624 } while (((dev
.hmcfgusb
= hmcfgusb_init(parse_hmcfgusb
, &rdata
)) == NULL
) || (dev
.hmcfgusb
->bootloader
));
628 printf("\n\nHM-CFG-USB opened\n\n");
630 if (new_hmid
&& (my_hmid
!= new_hmid
)) {
631 printf("Changing hmid from %06x to %06x\n", my_hmid
, new_hmid
);
633 memset(out
, 0, sizeof(out
));
635 out
[1] = (new_hmid
>> 16) & 0xff;
636 out
[2] = (new_hmid
>> 8) & 0xff;
637 out
[3] = new_hmid
& 0xff;
639 hmcfgusb_send(dev
.hmcfgusb
, out
, sizeof(out
), 1);
645 printf("Setting AES-key\n");
647 memset(out
, 0, sizeof(out
));
651 out
[3] = sizeof(key
);
652 memcpy(&(out
[4]), key
, sizeof(key
));
653 hmcfgusb_send(dev
.hmcfgusb
, out
, sizeof(out
), 1);
655 memset(out
, 0, sizeof(out
));
660 hmcfgusb_send(dev
.hmcfgusb
, out
, sizeof(out
), 1);
662 memset(out
, 0, sizeof(out
));
667 hmcfgusb_send(dev
.hmcfgusb
, out
, sizeof(out
), 1);
671 if (!switch_speed(&dev
, &rdata
, 10)) {
672 fprintf(stderr
, "Can't switch speed!\n");
676 if (hmid
&& my_hmid
) {
677 printf("Sending device with hmid %06x to bootloader\n", hmid
);
680 SET_SRC(out
, my_hmid
);
683 SET_LEN_FROM_PAYLOADLEN(out
, 1);
687 out
[MSGID
] = msgid
++;
688 if (send_hm_message(&dev
, &rdata
, out
)) {
693 printf("Failed to send device to bootloader, please enter bootloader manually.\n");
698 printf("Waiting for device with serial %s\n", serial
);
700 printf("Waiting for device with HMID %06x\n", hmid
);
706 case DEVICE_TYPE_CULFW
:
707 pfd
= culfw_poll(dev
.culfw
, 1000);
709 case DEVICE_TYPE_HMCFGUSB
:
711 pfd
= hmcfgusb_poll(dev
.hmcfgusb
, 1000);
715 if ((pfd
< 0) && errno
) {
716 if (errno
!= ETIMEDOUT
) {
722 if ((rdata
.message
[LEN
] == 0x14) && /* Length */
723 (rdata
.message
[MSGID
] == 0x00) && /* Message ID */
724 (rdata
.message
[CTL
] == 0x00) && /* Control Byte */
725 (rdata
.message
[TYPE
] == 0x10) && /* Messagte type: Information */
726 (DST(rdata
.message
) == 0x000000) && /* Broadcast */
727 (rdata
.message
[PAYLOAD
] == 0x00)) { /* FUP? */
728 if (serial
&& !strncmp((char*)&(rdata
.message
[0x0b]), serial
, 10)) {
729 hmid
= SRC(rdata
.message
);
731 } else if (!serial
&& SRC(rdata
.message
) == hmid
) {
732 serial
= (char*)&(rdata
.message
[0x0b]);
738 printf("Device with serial %s (HMID: %06x) entered firmware-update-mode\n", serial
, hmid
);
740 if (dev
.type
== DEVICE_TYPE_HMCFGUSB
) {
741 printf("Adding HMID\n");
743 memset(out
, 0, sizeof(out
));
745 out
[1] = (hmid
>> 16) & 0xff;
746 out
[2] = (hmid
>> 8) & 0xff;
747 out
[3] = hmid
& 0xff;
749 hmcfgusb_send(dev
.hmcfgusb
, out
, sizeof(out
), 1);
754 printf("Initiating remote switch to 100k\n");
756 memset(out
, 0, sizeof(out
));
758 out
[MSGID
] = msgid
++;
761 SET_SRC(out
, my_hmid
);
764 memcpy(&out
[PAYLOAD
], cc1101_regs
, sizeof(cc1101_regs
));
765 SET_LEN_FROM_PAYLOADLEN(out
, sizeof(cc1101_regs
));
767 if (!send_hm_message(&dev
, &rdata
, out
)) {
771 if (!switch_speed(&dev
, &rdata
, 100)) {
772 fprintf(stderr
, "Can't switch speed!\n");
776 printf("Has the device switched?\n");
778 memset(out
, 0, sizeof(out
));
780 out
[MSGID
] = msgid
++;
783 SET_SRC(out
, my_hmid
);
786 memcpy(&out
[PAYLOAD
], cc1101_regs
, sizeof(cc1101_regs
));
787 SET_LEN_FROM_PAYLOADLEN(out
, sizeof(cc1101_regs
));
791 if (send_hm_message(&dev
, &rdata
, out
)) {
792 /* A0A02000221B9AD00000000 */
801 if (!switch_speed(&dev
, &rdata
, 10)) {
802 fprintf(stderr
, "Can't switch speed!\n");
806 } while ((!switched
) && (switchcnt
--));
809 fprintf(stderr
, "Too many errors, giving up!\n");
815 printf("Flashing %d blocks", fw
->fw_blocks
);
819 printf(": %04u/%04u %c", 0, fw
->fw_blocks
, twiddlie
[0]);
823 for (block
= 0; block
< fw
->fw_blocks
; block
++) {
826 len
= fw
->fw
[block
][2] << 8;
827 len
|= fw
->fw
[block
][3];
829 pos
= &(fw
->fw
[block
][2]);
831 len
+= 2; /* length */
834 hexdump(pos
, len
, "F> ");
839 int payloadlen
= max_payloadlen
- 2;
843 payloadlen
= max_payloadlen
;
847 if ((len
- (pos
- &(fw
->fw
[block
][2]))) < payloadlen
)
848 payloadlen
= (len
- (pos
- &(fw
->fw
[block
][2])));
850 if (((pos
+ payloadlen
) - &(fw
->fw
[block
][2])) == len
)
853 memset(&rdata
, 0, sizeof(rdata
));
855 memset(out
, 0, sizeof(out
));
861 SET_SRC(out
, my_hmid
);
864 memcpy(&out
[PAYLOAD
], pos
, payloadlen
);
865 SET_LEN_FROM_PAYLOADLEN(out
, payloadlen
);
867 if (send_hm_message(&dev
, &rdata
, out
)) {
870 pos
= &(fw
->fw
[block
][2]);
872 if (cnt
== MAX_RETRIES
) {
873 fprintf(stderr
, "\nToo many errors, giving up!\n");
876 printf("Flashing %d blocks: %04u/%04u %c", fw
->fw_blocks
, block
+ 1, fw
->fw_blocks
, twiddlie
[msgnum
% sizeof(twiddlie
)]);
883 printf("\b\b\b\b\b\b\b\b\b\b\b%04u/%04u %c",
884 block
+ 1, fw
->fw_blocks
, twiddlie
[msgnum
% sizeof(twiddlie
)]);
887 } while((pos
- &(fw
->fw
[block
][2])) < len
);
895 if (!switch_speed(&dev
, &rdata
, 10)) {
896 fprintf(stderr
, "Can't switch speed!\n");
900 printf("Waiting for device to reboot\n");
906 case DEVICE_TYPE_CULFW
:
907 pfd
= culfw_poll(dev
.culfw
, 1000);
909 case DEVICE_TYPE_HMCFGUSB
:
911 pfd
= hmcfgusb_poll(dev
.hmcfgusb
, 1000);
914 if ((pfd
< 0) && errno
) {
915 if (errno
!= ETIMEDOUT
) {
920 if (rdata
.message_type
== MESSAGE_TYPE_E
) {
925 if (rdata
.message_type
== MESSAGE_TYPE_E
) {
926 printf("Device rebooted\n");
930 case DEVICE_TYPE_HMCFGUSB
:
931 hmcfgusb_close(dev
.hmcfgusb
);
934 case DEVICE_TYPE_CULFW
:
935 culfw_close(dev
.culfw
);