image.health: the watchdog's proof is WDOG1's own WCR, not the sysfs state

The sysfs state of watchdog0 says whether a process holds the device, and
none does: the kernel's core feeds the boot-armed hardware. The check
reads WCR through /dev/mem (WDE set, a 60 s period) and expects the state
to read inactive. Bench: PASS on image 20260903003213 with WCR 0x771f. The
BRINGUP facts bullet says the same.
This commit is contained in:
ScottW514
2026-09-02 20:46:48 -04:00
parent 5d2aa41a1c
commit 7c45642f05
2 changed files with 42 additions and 8 deletions
+6 -2
View File
@@ -1264,8 +1264,12 @@ is committed.
115200, the strings present in the fielded binary); the same adapter on the
SoC console pins shows U-Boot at every normal boot and a console in the
recovery image after a button-hold recovery from power-off. An oddity of
the watchdog reboot, recorded, not an open item. The kernel config now
carries CONFIG_WATCHDOG_SYSFS so the state is readable without /dev/mem.
the watchdog reboot, recorded, not an open item. The kernel config carries
CONFIG_WATCHDOG_SYSFS (identity, timeout, bootstatus). The sysfs `state`
reads `inactive`: it says whether a process holds the device, which none
does, the kernel's core feeds the hardware. The proof that WDOG1 is armed
is its own WCR (WDE set, a 60 s period), which `image.health` reads through
/dev/mem.
## Next work
Open items only. Anything closed is in `CAMPAIGN-LOG.md`. Open items (bugs,