Hacking Final Steps for Clean sysNAND

_Pro_Man_

Well-Known Member
OP
Member
Joined
May 21, 2015
Messages
190
Trophies
0
XP
1,099
Country
United States
Hello!

I recently changed my setup where I ran CFW on sysNAND (since emuNAND was not a thing when I hacked my Switch). Now I have set up emuNAND and I am running CFW on emuNAND with the goal of having a "dirty" emuNAND that remains offline and having a "clean" sysNAND where I can play games online. I had some questions related to this setup, but let me provide some context:

So far, I have restored my clean boot0/boot1/rawnand.bin to my sysNAND. These 3 files were taken before I did any modifications to my Switch. My Switch has remained offline since I modified it. After restoring, sysNAND boots perfectly fine.

My emuNAND has all of my games and saves which were previously on sysNAND, and emuNAND boots perfectly fine as well.




1. Am I correct in stating that all I have to do now to achieve a clean sysNAND where I can play online is update my sysNAND?

2. It is my understanding that when I update my Switch through the "official" Nintendo way, I will no longer have AutoRCM and have to reinstall it. Is there any way to avoid this? I don't believe there is, but I wanted to double-check.

3. If I do install AutoRCM, what is the proper way to launch sysNAND to play online? My understanding is to push the Hekate payload and then boot "Stock".

4. Is there any other file configuration that I should check before adding an internet connection to my sysNAND? hekate_ipl.ini for example?

5. Is it any safer to have AutoRCM disabled and boot sysNAND without Hekate?

6. If it's significantly safer to boot without Hekate, should I restore my clean boot0/boot1/rawnand.bin again since I have booted sysNAND with Hekate in order to see if restoring the files worked? Or would my sysNAND only have been "dirtied" if I was connected to the internet while I booted with Hekate?

Thank you for any help that you might be able to provide!
 
  • Like
Reactions: eza

BaamAlex

UDE GA NARU ZE!
Member
Joined
Jul 23, 2018
Messages
6,086
Trophies
1
Age
29
Location
Lampukistan
Website
hmpg.net
XP
6,216
Country
Germany
1. Am I correct in stating that all I have to do now to achieve a clean sysNAND where I can play online is update my sysNAND?
I would factory reset the sysMMC. After that, your sysMMC should be really clean. Never use such tools which clear the switch's logs. It is known that "too much cleaned" logs caused bans in the past.

Is there any way to avoid this?
Since Atmosphère v0.8.0 the "ns" module is no longer granted write access to the BCT public keys, which prevents the fixing of BOOT0 ("AutoRCM-Protection").

If I do install AutoRCM, what is the proper way to launch sysNAND to play online? My understanding is to push the Hekate payload and then boot "Stock".
Yeah this should work.

Is there any other file configuration that I should check before adding an internet connection to my sysNAND? hekate_ipl.ini for example?
Both have nothing to do with each other. The hekate_ipl.ini is just a configuration file to boot a cfw (emuMMC or sysMMC) or ofw.

Is it any safer to have AutoRCM disabled and boot sysNAND without Hekate?
Keep in mind that you always have a slight risk to get banned when you use homebrew/cfw on your console. Use an emuMMC, blanked PRODinfo in there with blocked nintendo servers and you should be safe. Relatively...

If it's significantly safer to boot without Hekate, should I restore my clean boot0/boot1/rawnand.bin again since I have booted sysNAND with Hekate in order to see if restoring the files worked? Or would my sysNAND only have been "dirtied" if I was connected to the internet while I booted with Hekate?
I speak from my own experience. I always boot my ofw via hekate (except i coldboot my switch) and i am not banned until now. Technically nintendo could see what you do "outside the OS"...but i doubt that a firmware in the future will change that. They never did it nor they will do that in the future...hopefully.
 
  • Like
Reactions: _Pro_Man_

_Pro_Man_

Well-Known Member
OP
Member
Joined
May 21, 2015
Messages
190
Trophies
0
XP
1,099
Country
United States
I would factory reset the sysMMC. After that, your sysMMC should be really clean. Never use such tools which clear the switch's logs. It is known that "too much cleaned" logs caused bans in the past.
Ok sounds good! I'll go ahead and factory reset just to be extra safe, I assume that is the reason why. I didn't really plan on using any cleaning tools since by nature of running them on your sysNAND, you are "dirtying" your sysNAND because you are running homebrew. I did not know that having too cleaned of a log could cause a ban, thank you for that information!

Since Atmosphère v0.8.0 the "ns" module is no longer granted write access to the BCT public keys, which prevents the fixing of BOOT0 ("AutoRCM-Protection").
Since I am booting stock, am I going to be using Atmosphere? This is sort of addressed in my next response.

Both have nothing to do with each other. The hekate_ipl.ini is just a configuration file to boot a cfw (emuMMC or sysMMC) or ofw.
I just wanted to be sure that I had the proper hekate_ipl.ini so that when I was booting OFW (stock with no CFW, I think that I might have been referring to this incorrectly as sysNAND previously so apologies for this). Right now my hekate_ipl.ini file is:

INI:
[config]
updater2p=1
{------ Atmosphere ------}
[Atmosphere FSS0 EmuMMC]
fss0=atmosphere/package3
kip1=atmosphere/kips/*
emummcforce=1
icon=bootloader/res/emu_boot.bmp
{}
[Atmosphere FSS0 SYS]
fss0=atmosphere/package3
kip1=atmosphere/kips/*
emummc_force_disable=1
icon=bootloader/res/sys_cfw_boot.bmp
{}
{-------- Stock ---------}
[Stock SYS]
fss0=atmosphere/package3
stock=1
emummc_force_disable=1
icon=bootloader/res/stock_boot.bmp

I guess my concern comes from the fact that there is the line fss0=atmosphere/package3 so are you utilizing Atmosphere while you launch Stock? If so, that addresses my question above.

Keep in mind that you always have a slight risk to get banned when you use homebrew/cfw on your console. Use an emuMMC, blanked PRODinfo in there with blocked nintendo servers and you should be safe. Relatively...
I was going to keep my emuNAND offline completely, which I believe is the "most" safe option. However, if blanking out my PRODinfo and blocking Nintendo servers provide some more protection in addition to keeping my emuNAND offline, I can go ahead and do this as well.

I speak from my own experience. I always boot my ofw via hekate (except i coldboot my switch) and i am not banned until now. Technically nintendo could see what you do "outside the OS"...but i doubt that a firmware in the future will change that. They never did it nor they will do that in the future...hopefully.
I think there might be a misunderstanding on my part, but were you banned? Hopefully not :(. Also, when you say coldboot, that means you have a hardware mod instead of using a Jig or AutoRCM right?
 

_Pro_Man_

Well-Known Member
OP
Member
Joined
May 21, 2015
Messages
190
Trophies
0
XP
1,099
Country
United States
Re-read what I wrote. I'm not banned.
Ok that's good, glad that you aren't banned. That's what I thought you meant, but you did write "not banned until now" which could be interpreted as you been being banned recently (now), so thank you for clarifying.

Thank you so much again for all of your information so far.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • K3Nv2 @ K3Nv2:
    Anyone wanna play with my joydock
  • BigOnYa @ BigOnYa:
    Biomutant looks cool tho, may have to try that
  • Quincy @ Quincy:
    Usually when such a big title leaks the Temp will be the first to report about it (going off of historical reports here, Pokemon SV being the latest one I can recall seeing pop up here)
  • K3Nv2 @ K3Nv2:
    I still like how a freaking mp3 file hacks webos all that security defeated by text yet again
  • BigOnYa @ BigOnYa:
    They have simulators for everything nowdays, cray cray. How about a sim that shows you playing the Switch.
  • K3Nv2 @ K3Nv2:
    That's called yuzu
    +1
  • BigOnYa @ BigOnYa:
    I want a 120hz 4k tv but crazy how more expensive the 120hz over the 60hz are. Or even more crazy is the price of 8k's.
  • K3Nv2 @ K3Nv2:
    No real point since movies are 30fps
  • BigOnYa @ BigOnYa:
    Not a big movie buff, more of a gamer tbh. And Series X is 120hz 8k ready, but yea only 120hz 4k games out right now, but thinking of in the future.
  • K3Nv2 @ K3Nv2:
    Mostly why you never see TV manufacturers going post 60hz
  • BigOnYa @ BigOnYa:
    I only watch tv when i goto bed, it puts me to sleep, and I have a nas drive filled w my fav shows so i can watch them in order, commercial free. I usually watch Married w Children, or South Park
  • K3Nv2 @ K3Nv2:
    Stremio ruined my need for nas
  • BigOnYa @ BigOnYa:
    I stream from Nas to firestick, one on every tv, and use Kodi. I'm happy w it, plays everything. (I pirate/torrent shows/movies on pc, and put on nas)
  • K3Nv2 @ K3Nv2:
    Kodi repost are still pretty popular
  • BigOnYa @ BigOnYa:
    What the hell is Kodi reposts? what do you mean, or "Wut?" -xdqwerty
  • K3Nv2 @ K3Nv2:
    Google them basically web crawlers to movie sites
  • BigOnYa @ BigOnYa:
    oh you mean the 3rd party apps on Kodi, yea i know what you mean, yea there are still a few cool ones, in fact watched the new planet of the apes movie other night w wifey thru one, was good pic surprisingly, not a cam
  • BigOnYa @ BigOnYa:
    Damn, only $2.06 and free shipping. Gotta cost more for them to ship than $2.06
  • BigOnYa @ BigOnYa:
    I got my Dad a firestick for Xmas and showed him those 3rd party sites on Kodi, he loves it, all he watches anymore. He said he has got 3 letters from AT&T already about pirating, but he says f them, let them shut my internet off (He wants out of his AT&T contract anyways)
  • K3Nv2 @ K3Nv2:
    That's where stremio comes to play never got a letter about it
  • BigOnYa @ BigOnYa:
    I just use a VPN, even give him my login and password so can use it also, and he refuses, he's funny.
  • BigOnYa @ BigOnYa:
    I had to find and get him an old style flip phone even without text, cause thats what he wanted. No text, no internet, only phone calls. Old, old school.
    K3Nv2 @ K3Nv2: https://youtu.be/z9E_uv5IT-o?si=0qMdVEnRK8mmclzS