Re-Lock Bootloader? - Samsung Galaxy S9 Questions & Answers

So a little while ago i tried to root my S9, it did not go well so i flashed stock firmware in Odin and everything started working fine again.
Yesterday my bank finally started supporting Google pay so i went to add my card but it said i was still rooted. After some searching i found out the my CTS Profile Match was failing because i unlocked the bootloader, is there anyway to relock the bootloader to pass safetynet?

on developer options you can disable bootloader unlock but its gonna factory reset your device.

dimitrispas22 said:
on developer options you can disable bootloader unlock but its gonna factory reset your device.
Click to expand...
Click to collapse
ok, are you sure that it will work. I have heard some theorys that once you trip Knox you can't relock the bootloader

thewoolysheep08 said:
ok, are you sure that it will work. I have heard some theorys that once you trip Knox you can't relock the bootloader
Click to expand...
Click to collapse
that knox how much i HATE it....
anyway i have the same device and i did that...
your knox is already 0x1 samsung pay and some other features for example s health you can not access it anymore via the original apk and firmware if you don't have root..
google pay will work just fine after you gonna lock the bootloader.
and if you want to use gpay with custom rom you must delete google play services and install a version that starts from 14. something and hide magisk but it works just fine
aparently

dimitrispas22 said:
that knox how much i HATE it....
anyway i have the same device and i did that...
your knox is already 0x1 samsung pay and some other features for example s health you can not access it anymore via the original apk and firmware if you don't have root..
google pay will work just fine after you gonna lock the bootloader.
and if you want to use gpay with custom rom you must delete google play services and install a version that starts from 14. something and hide magisk but it works just fine
aparently
Click to expand...
Click to collapse
I don't really care about the Samsung pay and that stuff. but will locking the bootloader even work with Knox tripped? all I want to do is pass safetynet

thewoolysheep08 said:
I don't really care about the Samsung pay and that stuff. but will locking the bootloader even work with Knox tripped? all I want to do is pass safetynet
Click to expand...
Click to collapse
after locking the bootloader you gonna pass safetynet yes

dimitrispas22 said:
after locking the bootloader you gonna pass safetynet yes
Click to expand...
Click to collapse
yeah I know that, but doesn't having Knox tripped make it unable to lock? have you done this exact thing before?

thewoolysheep08 said:
I don't really care about the Samsung pay and that stuff. but will locking the bootloader even work with Knox tripped? all I want to do is pass safetynet
Click to expand...
Click to collapse
https://photos.app.goo.gl/FVWPKofhji5EQKvq7
dont worry this is a google photo link which contains a proof that gpay works when you gonna lock the bootloader..
you can use smart switch to backup your data

dimitrispas22 said:
https://photos.app.goo.gl/FVWPKofhji5EQKvq7
dont worry this is a google photo link which contains a proof that gpay works when you gonna lock the bootloader..
you can use smart switch to backup your data
Click to expand...
Click to collapse
have you done this exact same thing before?

thewoolysheep08 said:
have you done this exact same thing before?
Click to expand...
Click to collapse
yes

dimitrispas22 said:
yes
Click to expand...
Click to collapse
alright, thanks so much for your help. I'll try this tomorrow and let you know how it went

dimitrispas22 said:
yes
Click to expand...
Click to collapse
ok, thanks so much for your help. I'll try it tomorrow and let you know how it goes

dimitrispas22 said:
yes
Click to expand...
Click to collapse
Thanks so much for your help, just did it today and it worked great!

I have a custom rom. If I block the bootloader, can I have google play certified?
I've a Samsung Galaxy S9 Plus

Related

Tamper flag and Android Pay

Hi all,
Just got a OP3 and was thinking about unlocking the bootloader. Having read OnePlus' policy on warranty and root, there should be no problem.
However, I have read about the "Tampered flag" that is set when unlocking the bootloader and which doesn't get reset even after relocking it. Could this affect my ability to run Android Pay or any other similarly secure software? I've read that Knox will start doing that, so better to be safe than sorry
Thanks!
You can use Android Pay with an unlocked bootloader fine even when you've re-locked it. it'd just root that will stop Android Pay from working.
Roxas598 said:
You can use Android Pay with an unlocked bootloader fine even when you've re-locked it. it'd just root that will stop Android Pay from working.
Click to expand...
Click to collapse
Thank you!
I guess there's no way to reset the tampered flag?
vagaerg said:
Thank you!
I guess there's no way to reset the tampered flag?
Click to expand...
Click to collapse
I don't think there even is one, if there is i've never noticed it or it causing issues to anything.
Roxas598 said:
I don't think there even is one, if there is i've never noticed it or it causing issues to anything.
Click to expand...
Click to collapse
Awesome. Thanks a lot again!

Play Protect Certified: Device is not certified

Not sure if it has anything to do with unlocking bootloader, but it seems that I can't install Netflix because my device is not certified in the Play Store. Anyone else come across this issue?
It is caused by the unlocked bootloader. It has been that way with Pixels since the originals. The solutions are to root with Magisk (do not know if Magisk works with the Pixel 3 or not) or use a custom kernel when one becomes available provided the P3 works like the P and P2.
Sideload it, done.
krabman said:
Sideload it, done.
Click to expand...
Click to collapse
what level is your widevine since you have unlocked your bootloader, did it change?
Actually I need to backtrack here, Netflix wont install on a rooted device and while some say it works I've never had it work with Magisk either. On the other hand you can just sideload and it will work fine rooted. I don't actually know what happens if the device is unlocked but not rooted because I've never done that. lol My bad. I would try sideloading though, it's got a good shot at working and nothing lost if it doesn't.
Just download apk file from apk mirror
Works fine
https://www.apkmirror.com/apk/netfl...flix-6-13-0-build-29940-android-apk-download/
Figured, it's been this way for a fair while now and thats been the fix from the start.
Just open play store in settings\apps, clear data. Reopen the play store and see if it still says it. Might have to do it more than once. I unlocked my bootloader, and I saw that. I had to clear data twice. Now mine shows as certified.
gettinwicked said:
Just open play store in settings\apps, clear data. Reopen the play store and see if it still says it. Might have to do it more than once. I unlocked my bootloader, and I saw that. I had to clear data twice. Now mine shows as certified.
Click to expand...
Click to collapse
No dice for me Google Pay won't work either... strange
virtyx said:
what level is your widevine since you have unlocked your bootloader, did it change?
Click to expand...
Click to collapse
How do I check widevine?
JeromeLeung said:
No dice for me Google Pay won't work either... strange
Click to expand...
Click to collapse
Weird, mine went back to not certified. I did the clear data again and it's good, again. Hrmm
gettinwicked said:
Weird, mine went back to not certified. I did the clear data again and it's good, again. Hrmm
Click to expand...
Click to collapse
Will Google Pay allow you to add a card?
JeromeLeung said:
Will Google Pay allow you to add a card?
Click to expand...
Click to collapse
Nope. Says it cannot complete setup because the device has been rooted or modified. And play store keeps jumping back to uncertified. Guess it won't stick. Have to wait for root. No biggie, I haven't fully jumped on the GPay train yet.
gettinwicked said:
Nope. Says it cannot complete setup because the device has been rooted or modified. And play store keeps jumping back to uncertified. Guess it won't stick. Have to wait for root. No biggie, I haven't fully jumped on the GPay train yet.
Click to expand...
Click to collapse
Okay, I thought something was wrong with my device. Good to know we're all in the same boat
I'm kiinda wondering if the much talked about Titan chip is going to make it harder to hide root. Some of the stuff out there is making that claim. Something related is that I followed a link to a google blog about it and the said that one of it's (Titian's) features is the ability to block unlocking. Not that it did block it, that it had that ability, so presumably it will depend on the OEM whether or not that feature is active. Was wondering where that will put the Verizon guys... Not trying to scare anyone because I haven't run into anything specific that comes from google and says exactly what it does but I know it's got my attention.
JeromeLeung said:
How do I check widevine?
Click to expand...
Click to collapse
you can download an app to check, just search widevine
virtyx said:
you can download an app to check, just search widevine
Click to expand...
Click to collapse
Widevine Security Level: L1
JeromeLeung said:
Widevine Security Level: L1
Click to expand...
Click to collapse
with unlocked bootloader?
Hi
It happens to me on samsung s8 device not certified. I have tried some things( saw in youtube and foruns) and nothing.
So try this...
Open setting/apps/ and look if any app of google is disabled( chrome/gmail/play movies...) activate all from google and voila
My s8 is now certified
virtyx said:
with unlocked bootloader?
Click to expand...
Click to collapse
That's correct

Device is not certified Error

from miui global stable 10.0.6.0 I downgraded to 9.6.4 global stable by fastboot method and unlocking the bootloader but its showing device is not certified on play store hence I cant install netflix and use other banking related apps
PS: I'm not rooted and on stock recovery too just bootloader is unlocked
is there any way I could fix that without relocking the bootloader again? I dont wanna root
Try using Mi Flash Tool and selecting "Clean All" but not "Clean All and Lock"
Letrix said:
Try using Mi Flash Tool and selecting "Clean All" but not "Clean All and Lock"
Click to expand...
Click to collapse
That's what I select ofc while flashing 9.6.4
It is expected since bootloader is unlocked..
Infact play store settings will display uncertified if you install beta ROM
KrishuFC said:
from miui global stable 10.0.6.0 I downgraded to 9.6.4 global stable by fastboot method and unlocking the bootloader but its showing device is not certified on play store hence I cant install netflix and use other banking related apps
PS: I'm not rooted and on stock recovery too just bootloader is unlocked
is there any way I could fix that without relocking the bootloader again? I dont wanna root
Click to expand...
Click to collapse
i am on a custom rom, rooted, but safetynet passed
just magisk it, place safety net in play , HIDE magisk from Playstore and try!
also! if playstore is not allowing! just download the netflix app from
1. apk mirror
2. apk pure
3. uptodown etc
why going thru so much of reflashing / wiping / rooting not rooting hassle?
SunilSuni said:
It is expected since bootloader is unlocked..
Infact play store settings will display uncertified if you install beta ROM
Click to expand...
Click to collapse
Well its understandable for beta rom but on stable rom??
YasuHamed said:
i am on a custom rom, rooted, but safetynet passed
just magisk it, place safety net in play , HIDE magisk from Playstore and try!
also! if playstore is not allowing! just download the netflix app from
1. apk mirror
2. apk pure
3. uptodown etc
why going thru so much of reflashing / wiping / rooting not rooting hassle?
Click to expand...
Click to collapse
I've tried installing apps from third party its not working ,I wanna stay on miui unrooted..
KrishuFC said:
Well its understandable for beta rom but on stable rom??
Click to expand...
Click to collapse
Its doesnt matter. You have unlocked bootloader and it is a reason. To pass safetynet device need fulfill some criteria like no root, no unlocked bootloader, stable rom etc.
Grellenort said:
Its doesnt matter. You have unlocked bootloader and it is a reason. To pass safetynet device need fulfill some criteria like no root, no unlocked bootloader, stable rom etc.
Click to expand...
Click to collapse
this is shocking it means we cant unlock bootloader or even root on global stock wow IDK if everybody is facing this problem or only me btw thanks
KrishuFC said:
this is shocking it means we cant unlock bootloader or even root on global stock wow IDK if everybody is facing this problem or only me btw thanks
Click to expand...
Click to collapse
The post is 1 year old but I'm facing same problem now. Did you manage to do it without locking bootloader or rooting? Thanks
seniug said:
The post is 1 year old but I'm facing same problem now. Did you manage to do it without locking bootloader or rooting? Thanks
Click to expand...
Click to collapse
By rooting
I'm also facing this issue, how did u guys managed to solve the problem?
seniug said:
The post is 1 year old but I'm facing same problem now. Did you manage to do it without locking bootloader or rooting? Thanks
Click to expand...
Click to collapse
Dedede_ said:
I'm also facing this issue, how did u guys managed to solve the problem?
Click to expand...
Click to collapse
Here is the solution:
Install this app https://www.androidfilehost.com/?fid=673956719939830832
You'll find a Google Services Framework Id , copy it and go on this website https://www.google.com/android/uncertified/
Paste your GSF id and click register. Your device will get registered with Google. This might take some time to reflect in your PlayStore
Hit thanks if this works
Prathamesh 27 said:
Here is the solution:
Install this app https://www.androidfilehost.com/?fid=673956719939830832
You'll find a Google Services Framework Id , copy it and go on this website https://www.google.com/android/uncertified/
Paste your GSF id and click register. Your device will get registered with Google. This might take some time to reflect in your PlayStore
Hit thanks if this works
Click to expand...
Click to collapse
Thanks!, Did it and waiting. Should I get any notification or it gets certified and that's it?
seniug said:
Thanks!, Did it and waiting. Should I get any notification or it gets certified and that's it?
Click to expand...
Click to collapse
No, you won't be notified just check your Playstore after a while and it would show "Device is certified". Mine was also not certified and got it certified by this.
Prathamesh 27 said:
No, you won't be notified just check your Playstore after a while and it would show "Device is certified". Mine was also not certified and got it certified by this.
Click to expand...
Click to collapse
same problem with my xiaomi fold2,did all the above . buy the playstore is still not certified.

Relocking bootloader

My phone is stock in every way, except bootloader.
What is the best way to lock the bootloader again without loosing any data?
I need my phone locked again to use google pay
rockuman_ex said:
My phone is stock in every way, except bootloader.
What is the best way to lock the bootloader again without loosing any data?
I need my phone locked again to use google pay
Click to expand...
Click to collapse
To use Google Pay, you need to pass Safety net.
It is not related to bootloader.
And relocking bootloader without losing any data is possible if and only if you did not flash any custom mods like recovery , kernel ..As it validates md5 checksum
rockuman_ex said:
My phone is stock in every way, except bootloader.
What is the best way to lock the bootloader again without loosing any data?
I need my phone locked again to use google pay
Click to expand...
Click to collapse
You don't need to re-lock the bootloader to use Google Pay. Install TWRP as your recovery and then install Magisk!
kingme.sri said:
To use Google Pay, you need to pass Safety net.
It is not related to bootloader.
And relocking bootloader without losing any data is possible if and only if you did not flash any custom mods like recovery , kernel ..As it validates md5 checksum
Click to expand...
Click to collapse
My phone is stock, not custom recovery or custom rom. Using 9.05 rom now.
So how do i re lock without losing any data
tye_time said:
You don't need to re-lock the bootloader to use Google Pay. Install TWRP as your recovery and then install Magisk!
Click to expand...
Click to collapse
That's what I'm trying to avoid.
I want to go 100% stock.
I just ran safetynet test, i got cts profile match failed.
How do i fix this?
You will need to relock the bootloader then, you may lose data. Just back up everything first like pictures and videos. All your apps will re-download when you sign back into Google
tye_time said:
You will need to relock the bootloader then, you may lose data. Just back up everything first like pictures and videos. All your apps will re-download when you sign back into Google
Click to expand...
Click to collapse
Is there a way to keep my phone as is when i relock the bootloader?
And how do i relock it?
Link to guide please?
Here is the guide: https://www.androidexplained.com/oneplus-5-lock-bootloader/
You won't be able to keep your phone 'as is' unfortunately, all data will be wiped and the phone reset.
rockuman_ex said:
My phone is stock in every way, except bootloader.
What is the best way to lock the bootloader again without loosing any data?
I need my phone locked again to use google pay
Click to expand...
Click to collapse
I am on latest open beta everything stock no root.. Google pay works flawless.. try disabling telephone permission of google play services & try registering google pay
Yash93 said:
I am on latest open beta everything stock no root.. Google pay works flawless.. try disabling telephone permission of google play services & try registering google pay
Click to expand...
Click to collapse
didn't work for me. still saying my phone is modified etc... :crying:
tye_time said:
Here is the guide: https://www.androidexplained.com/oneplus-5-lock-bootloader/
You won't be able to keep your phone 'as is' unfortunately, all data will be wiped and the phone reset.
Click to expand...
Click to collapse
sigh..... i have everything set up since i got the phone.... a bit reluctant to do this... but there's NO OTHER way right? :crying::crying::crying:
rockuman_ex said:
sigh..... i have everything set up since i got the phone.... a bit reluctant to do this... but there's NO OTHER way right? :crying::crying::crying:
Click to expand...
Click to collapse
Doesn't look like it I'm afraid. Sad times.
tye_time said:
Doesn't look like it I'm afraid. Sad times.
Click to expand...
Click to collapse
finally took the plunge and got my phone re-locked... everything was wiped :crying:

Not able to add a visa card to Google Pay when unlocked

Hi there,
I'm in contact with google support to add a visa card to Google Pay. After several issues finally sorted, I have now a message saying I can not add a card because my phone is altered.
Is the fact that my phone is unlocked won't allow me to use Google Pay / NFC feature?
Thx guys
I managed to make work my banking app and Google Pay with these steps:
1. Enable Magisk hide + enable hide for Google Pay and Google Play services
2. Repackage Magisk Manager app (you will need to enable installation of apps from USB source in system developer settings)
3. Force basic Safetynet test by installing MagiskHide Props Config and selecting Mi 10T pro as a phone model (as a bonus, AR will work too)
Reboot phone and it should work now.
Hummm... after some research, it looks like this method won't work for a long time. Can I unlock my device for the time being? It's unclear how I can do it...
air0ne said:
Hummm... after some research, it looks like this method won't work for a long time. Can I unroot my device for the time being? It's unclear how I can do it...
Click to expand...
Click to collapse
Maybe it will, maybe it won't.. There is a secondary method involving modification of Google Pay sql database which might work for a longer time.
Anyway, to unroot your phone and to pass safetynet you'll need to reflash whole ROM and lock the bootloader (make sure that phone is working before locking).
My Google Pay NFC visa was working after passing safetynet on magisk but stopped working today. Tried to unroot but still got the same error.
I didn't update the app at all so I'm guessing on the server side they did some changes to detect for root / custom rom /unlocked bootloader or something.
Now I'm gonna re-root since removing it didn't helped. Lol
Is a factory reset will do?
ogichi said:
My Google Pay NFC visa was working after passing safetynet on magisk but stopped working today. Tried to unroot but still got the same error.
I didn't update the app at all so I'm guessing on the server side they did some changes to detect for root / custom rom /unlocked bootloader or something.
Now I'm gonna re-root since removing it didn't helped. Lol
Click to expand...
Click to collapse
Safetynet will fail with unlocked bootloader, you need either unlocked bootloader + Magisk hide + basic Safetynet test (can be forced with using for example Mi 10T pro as a phone model), or completely stock rom with locked bootloader. Mine Google pay seems to be still working (at least app doesn't complain about anything ).
air0ne said:
Is a factory reset will do?
Click to expand...
Click to collapse
No, see above.
Thx for your quick answer _mysiak_
I guess there is no stock rom with locked bootloader available for this device yet
air0ne said:
Thx for your quick answer _mysiak_
I guess there is no stock rom with locked bootloader available for this device yet
Click to expand...
Click to collapse
Yes there is. Complete list here, choose the right region and fastboot ROM type. https://xiaomifirmwareupdater.com/miui/gauguin/
_mysiak_ said:
Yes there is. Complete list here, choose the right region and fastboot ROM type. https://xiaomifirmwareupdater.com/miui/gauguin/
Click to expand...
Click to collapse
Cool Thx... My device is a "Mi 10T Lite 5G". Is the "Mi 10T Lite Global" includes the 5G version?
air0ne said:
Cool Thx... My device is a "Mi 10T Lite 5G". Is the "Mi 10T Lite Global" includes the 5G version?
Click to expand...
Click to collapse
All versions are 5G - check which MIUI version exactly do you have now (settings->about) and then download a ROM for the same region.
_mysiak_ said:
All versions are 5G - check which MIUI version exactly do you have now (settings->about) and then download a ROM for the same region.
Click to expand...
Click to collapse
When downloaded, what am I supposed to do? I supposed there is a tutorial somewhere? Sorry to ask. It's been a while since I played with that kind of things :/
Ok I found how to do it. Damn... It's too easy now
Thx again guys
Long story short. After bricking my device (XiaoMiTool V2 hit it hard), I managed to get it back and flash a Fastboot ROM (through XiaoMiFlash).
And Google Pay still say I can not add a Visa Card because my Device is rooted or is altered in a way. I downloaded a root checker and it says I'm not rooted... WTF???
air0ne said:
Long story short. After bricking my device (XiaoMiTool V2 hit it hard), I managed to get it back and flash a Fastboot ROM (through XiaoMiFlash).
And Google Pay still say I can not add a Visa Card because my Device is rooted or is altered in a way. I downloaded a root checker and it says I'm not rooted... WTF???
Click to expand...
Click to collapse
1. is your bootloader locked?
2. do you pass Safetynet (check with this app for example https://play.google.com/store/apps/details?id=org.freeandroidtools.safetynettest&hl=en&gl=US)?
2. do you happen to have MagiskManager still installed?
_mysiak_ said:
1. is your bootloader locked?
Click to expand...
Click to collapse
I flashed a fastboot global ROM. Is it not locked by default? I haven't unlock it afterwards. Is there a way to check? I found only root checker on Google Play
_mysiak_ said:
2. do you pass Safetynet (check with this app for example https://play.google.com/store/apps/details?id=org.freeandroidtools.safetynettest&hl=en&gl=US)?
Click to expand...
Click to collapse
No, I don't
_mysiak_ said:
2. do you happen to have MagiskManager still installed?
Click to expand...
Click to collapse
I never installed it so I doubted it
Crap... should I have used this option when flashing?
"Clean all and lock"
Yes, flash all and lock is the right script. But it's a good point to lock your bootloader only after you are sure that your phone works.
When you are sure that you are with a fresh stock ROM, reboot to fastboot mode and issue command:
" fastboot flashing lock"
Beware, it will erase your data and if you by any chance have modified boot or system partition, you will brick your phone and it must be revived by EDL mode.
_mysiak_ said:
Yes, flash all and lock is the right script. But it's a good point to lock your bootloader only after you are sure that your phone works.
When you are sure that you are with a fresh stock ROM, reboot to fastboot mode and issue command:
" fastboot flashing lock"
Beware, it will erase your data and if you by any chance have modified boot or system partition, you will brick your phone and it must be revived by EDL mode.
Click to expand...
Click to collapse
I tried the command but the device says it was not a "known command" so I flashed it again with the right script (I had to remove the antirollback section tho)
I'm restoring at the moment. Will tell you if I can add my VISA soon
So it works but Google Pay is saying that my Bank does not support this feature (Welcome to Canada!)
All of this for... NOTHING °*&(?$?&)
Ah ah ah... At least, I know how to properly flash my device. Thx a lot _mysiak_

Categories

Resources