+34 641 10 27 16

Unlocking AML control boards over UART

Firmware documentation

AML board unlocking: the UART connection

The only working way to get the rollback option back on Amlogic boards that arrived with stock dated 29 September 2025 and newer. No soldering iron needed, a steady hand is.

Bitmain closed SSH on these boards and blocked the downgrade. The software routes are gone, the hardware one is left: connect to the debug port on the board, get into the uboot loader and allow USB to work by hand. After that the stock downgrades the normal way, and then the custom firmware goes on.

Judge your own skills You work with a board under 12 V and you short a jumper. A mistake costs you the control board. If you have doubts, bring the ASIC to our workshop, for us this is routine work.

What you need

  • An AML control board and a 12 V power supply.
  • A computer or laptop with Windows.
  • Any USB-UART adapter with the drivers installed. In this example, a Silicon Labs CP2102.
  • A terminal program. In this example, PuTTY.
  • Tweezers or a thin screwdriver to short the jumper.
Image goes herePhoto of the work area: AML control board, 12 V power supply connected, CP2102 adapter with three wires
The unlocking bench: board, 12 V power supply, USB-UART adapter

Wiring

AdapterControl board
GNDGND
RXDLINUX_TX
TXDLINUX_RX

The wires cross over: the adapter receive line goes to the board transmit line and the other way round. No power goes from the adapter to the board, it runs from its own 12 V supply.

Image goes hereDiagram or photo of an AML control board with GND, LINUX_TX, LINUX_RX labeled and the JP2 jumper circled
The UART pins and the JP2 jumper. The layout differs between board revisions

Order of work

  1. Connect the adapter to the computer and find the COM port number in device manager. In this example it is COM7.
  2. Find the UART pins on the control board and connect as in the table above.
  3. Open PuTTY, select Serial mode, enter the port number and the speed 115200. Leave the rest at the defaults.
  4. Power the board up. The boot log should start running in the terminal. If nothing appears, check the port, the speed and whether RX and TX got swapped.
  5. Cut the power. Short the JP2 jumper with the tweezers.
  6. Make the terminal window active and power up. As soon as the first boot line appears, open the jumper and press space a couple of times. The ENV load should start.
  7. It did not work on the first try, that is normal. Cut the power, apply it again and short JP1 or JP2 a couple of times so the board goes into uboot mode.
  8. At the prompt enter setenv bitmain_usb_switch 1. The command enables the USB port.
  9. Enter saveenv to save the setting into the board memory.
  10. Reboot the control board.

After that the stock version downgrades the usual way, and you can put the firmware on the ASIC.

Image goes hereScreenshot of the PuTTY window with uboot boot lines and a command prompt
This is what a good connection looks like: the boot log runs into the terminal

If it does not work out

  • Nothing in the terminal. Wrong port, wrong speed, or RX and TX swapped. Swap the two wires, that is safe.
  • Garbled characters. The speed is not 115200. Check the setting in PuTTY.
  • The board will not enter uboot. The moment you open the jumper is critical. Try again, in our workshop this rarely works on the first attempt.
  • The command is not accepted. The board booted in normal mode, not into uboot. Repeat from step 5.
The same bench comes in handy again The same connection is used to pull the control board boot logs. That is the first thing support asks for when an ASIC will not start and the web interface is unreachable.

Quick answers

Do all AML boards need unlocking?
No, only those running stock FR 1.20 and newer, that is from 29 September 2025. On earlier stock a normal rollback is enough.
Does the method work for xil, bb and cv?
They do not need it: rollback via SD card works there the normal way.
Will the unlocking leave any traces?
The bootloader variables will keep the USB port enabled. It does not show up in warranty diagnostics, but keep in mind that Bitmain takes a hard line on unauthorized software.
Written by , ASIC repair and tuning engineer at asic.es.