Related
I'm new to XDA and to ROMs, so let me begin by saying hello and thank you to the regular posters. Many of my initial questions were answered by browsing and searching here.
My Nextbit Robin is still on the factory ROM: 7.1.1, security patch level April 1 2017. That's already too long to go without security updates in my opinion, hence my interest in moving to a maintained ROM that gets regular security fixes. My questions are:
Are there ROMs for Nextbit that are especially good on security updates? Or alternatively ROMs that aren't?
How are security updates usually handled by ROMs? Are they rolled into regular OTA updates? Are they separate and have to be manually applied? Something else?
Those ROMs I've looked most closely at (OmniROM and LineageOS) are at 7.1.2, just one minor release beyond the factory's 7.1.1. Does this imply that OmniROM and LineageOS's security releases haven't proceeded beyond when 7.1.2 was released quite some time ago?
I did search this forum, the sites of OmniROM and LineageOS, and the web, but if the answers are out there I didn't find them. Telling me to RTFM is fine; just point me to the FM.
Although I would not reject other things that ROMs can bring (improved performance vs. factory ROM, non-security bugfixes, new features, etc.), my chief interest is in keeping the phone up to date with all future security fixes via automatic OTA that I don't have to think about. Anything else that comes along with that would be great but would not be part of my decision making.
Feel free to go beyond my questions and point out things that I haven't mentioned but ought to know. I'm don't mind admitting that I'm new at this and there's a lot I don't yet know.
wpost said:
Are there ROMs for Nextbit that are especially good on security updates? Or alternatively ROMs that aren't?
How are security updates usually handled by ROMs? Are they rolled into regular OTA updates? Are they separate and have to be manually applied? Something else?
Those ROMs I've looked most closely at (OmniROM and LineageOS) are at 7.1.2, just one minor release beyond the factory's 7.1.1. Does this imply that OmniROM and LineageOS's security releases haven't proceeded beyond when 7.1.2 was released quite some time ago?
Click to expand...
Click to collapse
1. I recommend LineageOS. It's good on security updates. (Currently on March 5, 2018 security patch level.)
2. Yes, They are rolled into regular OTA. They usually include security updates within one or two weeks after they are released.
3. I may not have understood the third quesion correctly. 7.1.2 is the latest version of Android 7.x.x. After That It's 8.x. I don't think that affects the security updates.
OTA updates are checked automatically and you will be notified once an update available. But they won't be downloaded automatically. You have to press download button and then install it.
If you are planning to use encryption, you should use TWRP from LineageOS. I had problems with decrypting using TWRP from their official site.
And there are Oreo roms for robin. I think they also have latest security patches. I can't tell you much about them because I haven't tried all of them. However I've used AICP 13.1 and unofficial LineageOS 15.1 (OREO) releases (Read the last few pages of this thread and you can download them from here). Both are very usable. AICP is more customizable.
Thank you for the clear and complete answer. This will be my project for next weekend then.
KA5UN said:
1. I recommend LineageOS. It's good on security updates. (Currently on March 5, 2018 security patch level.)
2. Yes, They are rolled into regular OTA. They usually include security updates within one or two weeks after they are released.
3. I may not have understood the third quesion correctly. 7.1.2 is the latest version of Android 7.x.x. After That It's 8.x. I don't think that affects the security updates.
OTA updates are checked automatically and you will be notified once an update available. But they won't be downloaded automatically. You have to press download button and then install it.
If you are planning to use encryption, you should use TWRP from LineageOS. I had problems with decrypting using TWRP from their official site.
And there are Oreo roms for robin. I think they also have latest security patches. I can't tell you much about them because I haven't tried all of them. However I've used AICP 13.1 and unofficial LineageOS 15.1 (OREO) releases (Read the last few pages of this thread and you can download them from here). Both are very usable. AICP is more customizable.
Click to expand...
Click to collapse
Interesting that you brought up TWRP from Lineage OS.
I had used TWRP from TWRP site which I need to Format Data at first use which will decrypt me. So if I want to stay encrypted I should use TWRP from Lineage OS not normal TWRP?
iluvatrix said:
Interesting that you brought up TWRP from Lineage OS.
I had used TWRP from TWRP site which I need to Format Data at first use which will decrypt me. So if I want to stay encrypted I should use TWRP from Lineage OS not normal TWRP?
Click to expand...
Click to collapse
Yeah.
I had the same problem while using official version. I couldn't install OTA updates while using encryption because twrp can't decrypt data partition.
Also I think I read somewhere to remove any screen locks before encrypting (set them after). But I'm not sure if it's necessary.
KA5UN said:
Yeah.
I had the same problem while using official version. I couldn't install OTA updates while using encryption because twrp can't decrypt data partition.
Also I think I read somewhere to remove any screen locks before encrypting (set them after). But I'm not sure if it's necessary.
Click to expand...
Click to collapse
I'm confused now.
I want to be encrypted while on Lineage.
So if I rolled back to last stock ROM which is encrypted I should then flash the Lineage twrp you linked?
Thereafter on Lineage with Lineage twrp remaining encrypted I would be able to receive Lineage ota updates?
iluvatrix said:
I'm confused now.
I want to be encrypted while on Lineage.
So if I rolled back to last stock ROM which is encrypted I should then flash the Lineage twrp you linked?
Thereafter on Lineage with Lineage twrp remaining encrypted I would be able to receive Lineage ota updates?
Click to expand...
Click to collapse
TWRP can't decrypt stock encryption. If you're coming from stock you have to Format Data before installing lineage. After flashing lineage, you can encrypt the phone again. Then twrp (from lineage) can decrypt it.
If you are already on lineage and not encrypted, just flash that TWRP from lineage and encrypt the phone from settings.
If you're on lineage and encrypted, you can try flashing that TWRP. but I don't know if it'll be able to decrypt since I haven't tried to do that.
And yes, you would be able to install OTA updates.
KA5UN said:
TWRP can't decrypt stock encryption. If you're coming from stock you have to Format Data before installing lineage. After flashing lineage, you can encrypt the phone again. Then twrp (from lineage) can decrypt it.
If you are already on lineage and not encrypted, just flash that TWRP from lineage and encrypt the phone from settings.
If you're on lineage and encrypted, you can try flashing that TWRP. but I don't know if it'll be able to decrypt since I haven't tried to do that.
And yes, you would be able to install OTA updates.
Click to expand...
Click to collapse
Thanks for the detailed response. I'm concerned about encrypting under Lineage & getting bricked.
Is there a way to go from Stock encrypted > Lineage encrypted directly?
iluvatrix said:
Thanks for the detailed response. I'm concerned about encrypting under Lineage & getting bricked.
Is there a way to go from Stock encrypted > Lineage encrypted directly?
Click to expand...
Click to collapse
I don't think that's possible
KA5UN said:
I don't think that's possible
Click to expand...
Click to collapse
Yeah no prob
I'll just run unencrypted
Hello all the people out there.
Im new in the forum and english is not my mother language so, please be kind.
Hardware:
Moto G5 cedric (XT1060)
Situation:
Installed twrp-3.2.1-0-cedric.img without problems
Installed lineage-15.1-20180415-UNOFFICIAL-cedric.zip without problems
Installed open_gapps-arm64-8.1-aroma-20181116.zip without problems
Problem:
When the phone inits, the fingerprint sensor does nothing at all.
When i go to Security > Screen lock the fingerprint option doesnt exists at all. Exploring the coms (Apps > All Apps) i dont see the fingerprint service installed.
I have installed the "Ampare Fingerprint test" app and when run only says "Native Fingerprint API not found!".
Thing done:
Flash all again (TWRP + Lineage 15.1 + gapps) and the situation is the same.
Anyone have an idea and can guide me?
sk8avp said:
Hello all the people out there.
Im new in the forum and english is not my mother language so, please be kind.
Hardware:
Moto G5 cedric (XT1060)
Situation:
Installed twrp-3.2.1-0-cedric.img without problems
Installed lineage-15.1-20180415-UNOFFICIAL-cedric.zip without problems
Installed open_gapps-arm64-8.1-aroma-20181116.zip without problems
Problem:
When the phone inits, the fingerprint sensor does nothing at all.
When i go to Security > Screen lock the fingerprint option doesnt exists at all. Exploring the coms (Apps > All Apps) i dont see the fingerprint service installed.
I have installed the "Ampare Fingerprint test" app and when run only says "Native Fingerprint API not found!".
Thing done:
Flash all again (TWRP + Lineage 15.1 + gapps) and the situation is the same.
Anyone have an idea and can guide me?
Click to expand...
Click to collapse
Did you flash stock 8.1 before?
Andrej_SK said:
Did you flash stock 8.1 before?
Click to expand...
Click to collapse
Hi Andrej_SK, thanks for your reply.
This phone was never flashed.
I had the stock version and it was updated with Android Oreo 8.1, which was updated a few weeks ago.
sk8avp said:
Hi Andrej_SK, thanks for your reply.
This phone was never flashed.
I had the stock version and it was updated with Android Oreo 8.1, which was updated a few weeks ago.
Click to expand...
Click to collapse
If you installed stock Oreo 8.1 using any method (OTA, Fastboot...), you have to downgrade to stock Nougat first (using fastboot image) to make fingerprint work with CustomROMs. However, you need unlocked bootloader to downgrade. Don't flash both gpt and bootloader (if flashed any of these, you will get hardbrick because gpt/bootloader downgrade is not allowed). Also, don't run erase modem commands, they will wipe your IMEI in this case. As soon as you downgrade to stock Nougat, check the fingerprint availibility in Settings. If you can see options related to it, you're good to go - you can install any CustomROM as you normally would and your fingerprint will work.
Andrej_SK said:
If you installed stock Oreo 8.1 using any method (OTA, Fastboot...), you have to downgrade to stock Nougat first (using fastboot image) to make fingerprint work with CustomROMs. However, you need unlocked bootloader to downgrade. Don't flash both gpt and bootloader (if flashed any of these, you will get hardbrick because gpt/bootloader downgrade is not allowed). Also, don't run erase modem commands, they will wipe your IMEI in this case. As soon as you downgrade to stock Nougat, check the fingerprint availibility in Settings. If you can see options related to it, you're good to go - you can install any CustomROM as you normally would and your fingerprint will work.
Click to expand...
Click to collapse
Hi Andrej_SK, really thanks for your help.
Sorry but I'm pretty new flashing android 6+.
Lets see if i have done the correct step.
Flashed 7.x Nougat following this post: https://forum.xda-developers.com/g5/development/official-stock-moto-g5-cedric-firmware-t3733897
IMEI is OK, fingerprint working perfectly.
This has erased TWRP, so, now i can install TWRP and then install any custom rom?
sk8avp said:
Hi Andrej_SK, really thanks for your help.
Sorry but I'm pretty new flashing android 6+.
Lets see if i have done the correct step.
Flashed 7.x Nougat following this post: https://forum.xda-developers.com/g5/development/official-stock-moto-g5-cedric-firmware-t3733897
IMEI is OK, fingerprint working perfectly.
This has erased TWRP, so, now i can install TWRP and then install any custom rom?
Click to expand...
Click to collapse
Yes. Keep in mind that if you want to install any Oreo CustomROM, you need to do it using 64bit TWRP. If you decide to install Gapps alongside with any Oreo CustomROM too, use this tutorial https://forum.xda-developers.com/g5/how-to/how-to-repair-bootloop-oreo-roms-t3791189 to avoid bootloop.
Andrej_SK said:
Yes. Keep in mind that if you want to install any Oreo CustomROM, you need to do it using 64bit TWRP. If you decide to install Gapps alongside with any Oreo CustomROM too, use this tutorial https://forum.xda-developers.com/g5/how-to/how-to-repair-bootloop-oreo-roms-t3791189 to avoid bootloop.
Click to expand...
Click to collapse
Andrej_SK I have no words to thank you for your help.
I decided to continue using the stock rom, at least until Lineage OS is in a more stable state.
Some functions work better and I really need them.
Again thank you very much!
Fingerprint not working
Andrej_SK said:
If you installed stock Oreo 8.1 using any method (OTA, Fastboot...), you have to downgrade to stock Nougat first (using fastboot image) to make fingerprint work with CustomROMs. However, you need unlocked bootloader to downgrade. Don't flash both gpt and bootloader (if flashed any of these, you will get hardbrick because gpt/bootloader downgrade is not allowed). Also, don't run erase modem commands, they will wipe your IMEI in this case. As soon as you downgrade to stock Nougat, check the fingerprint availibility in Settings. If you can see options related to it, you're good to go - you can install any CustomROM as you normally would and your fingerprint will work.
Click to expand...
Click to collapse
Hello,
I'm facing the same problem, I came Stock rom Oreo 8.1 and then fingerprint is not working on any custom rom I've tested.
Detail: Project Treble does not even start the boot for me.
I will perform the procedure that you mentioned and leave the feedback here if the problem was solved since I saw in other forums for this device that many are with the same problem.
Edit
I downgraded to the Nougat stock rom and installation rom Pixel Experience 8.1, fingerprint is working for me now =D
Thanks Andrej_SK for the great help
Hey there, can't get my fingerprint to work on LOS 17.1, it's like it's there, but it doesn't react to anything. When I go to the fingerprint settings, it ask me to touch it in order to setup the thing, but when I place my finger on it, it does nothing. Did anyone ever heard of this issue or any fix for it? Thanks in advance.
jaroulz said:
Hey there, can't get my fingerprint to work on LOS 17.1, it's like it's there, but it doesn't react to anything. When I go to the fingerprint settings, it ask me to touch it in order to setup the thing, but when I place my finger on it, it does nothing. Did anyone ever heard of this issue or any fix for it? Thanks in advance.
Click to expand...
Click to collapse
Did you flash stock Oreo prior to flashing LOS 17.1?
rahimali said:
Did you flash stock Oreo prior to flashing LOS 17.1?
Click to expand...
Click to collapse
Nope coz I use a Galaxy S7 so Oreo is not compatible with it, isn't it?
jaroulz said:
Nope coz I use a Galaxy S7 so Oreo is not compatible with it, isn't it?
Click to expand...
Click to collapse
You are posting in the Moto G5 forum
If you are using a galaxy s7 I suggest that you go and post your question in the correct rom section for your phone as no one here will be able to help you
Goto the following thread for Los 17 on a galaxy s7 & make sure you are using that build
https://forum.xda-developers.com/ga...ta-lineageos-17-0-galaxy-s7-build-1-t3980101/
please delete this post, can't find the option to delete...
Hi. I own a moto g5 xt1670, stock nougat with some security patch I believe. I'd like to stay on nougat for a while, so I guess I must root, then freeze the updater app because it's turning pretty annoying. The question is...can I install Oreo Ota with the device rooted in case I want in the future?
I'm not planning to install roms, so I prefer to stay on locked BL.
Many thanks.
no
mortadelax said:
Hi. I own a moto g5 xt1670, stock nougat with some security patch I believe. I'd like to stay on nougat for a while, so I guess I must root, then freeze the updater app because it's turning pretty annoying. The question is...can I install Oreo Ota with the device rooted in case I want in the future?
I'm not planning to install roms, so I prefer to stay on locked BL.
Many thanks.
Click to expand...
Click to collapse
Well to start with you need to unlock your bootloader if you want to root your device
And otas can only be installed on a totally unmodified device so you would need to flash stock firmware via fastboot (and lock the bootloader to make sure the images are totally unmodified) before any ota is attempted to installed
Thanks both of you for the reply!
So, let's say I'm not interested in Oreo Ota, how can I stop the upgrade spam notification? I guess I must unlock BL, then root, then freeze the updater app. Is that correct? In case I want Oreo in the future I guess I can install some rom...
Does this make sense? I've read bad reviews about oreo and battery drain. This is my mother's phone. I don't want any possible problem. Nougat is just fine, and works well.
Thanks a lot. I'll be waiting for your reply.
mortadelax said:
Thanks both of you for the reply!
So, let's say I'm not interested in Oreo Ota, how can I stop the upgrade spam notification? I guess I must unlock BL, then root, then freeze the updater app. Is that correct? In case I want Oreo in the future I guess I can install some rom...
Does this make sense? I've read bad reviews about oreo and battery drain. This is my mother's phone. I don't want any possible problem. Nougat is just fine, and works well.
Thanks a lot. I'll be waiting for your reply.
Click to expand...
Click to collapse
Force stopping system update app (you need to show system apps in app list) will temporarily remove the notification until restart or the app starts again
And as far as I'm aware there's nothing wrong with oreo - Always makes me laugh when people say they have read something but provide no source or context
Hi everyone!
I've updated my z2 force to pie, and i wish I hadn't. Is it possible to downgrade back to Oreo and how? If possible, i wouldn't want to loose my gpay/banking apps, so i presume I'd have to relock the bootloader after downgrading. Sorry, newb here.
Thanks.
crnispot said:
Hi everyone!
I've updated my z2 force to pie, and i wish I hadn't. Is it possible to downgrade back to Oreo and how? If possible, i wouldn't want to loose my gpay/banking apps, so i presume I'd have to relock the bootloader after downgrading. Sorry, newb here.
Thanks.
Click to expand...
Click to collapse
Based on all of the things that have happened over the last couple of weeks with several users in this forum, it appears that there is no going back to Oreo from Pie. Once you have installed a Pie modem, so far, no one had come up with a way to get an Oreo modem back in the device and get one working. There may be hope in the future but it hasnt been worked out yet.
Hot tip, If you lock you bootloader after flashing Oreo and can no longer enable OEM Unlock as you cannot access internet... use Bluetooth Tether to other phone to access internet, then OEM Unlock is available again.
Hi.
I'm update to OOS12 stable c.38 (2123 EU).
How to downgrade?
Downgrade zip's didn't work.
You must use Local Update.apk
And download the downgrade rom again.
I was on Oxygen OB2 & my phone power off by it self. I try downgrade rom 3 times. First & second flashed but still on A12. Third time finally i was on A11.
I have download the rom at least 2 times.
Another suggestion, MSM Tool. This Wipe All in youre phone ! I don't care. You may do.