Interesting... what about IAP-225 that seems like same pattern that you mention (The AP goes down, i did troubleshoot then i try to upgrade and doesnt work still down):
Finally (resume) this is the last log:
apboot> purge
Un-Protected 1 sectors
. done
Erased 1 sectors
Writing 9....8....7....6....5....4....3....2....1....
apboot> saveenv
Saving Environment to Flash...
Un-Protected 1 sectors
. done
Erased 1 sectors
Writing 9....8....7....6....5....4....3....2....1....
apboot> reset
APBoot 1.4.0.6 (build 38177)
Built: 2013-04-25 at 22:52:20
Model: AP-22x
CPU0: P1020E, Version: 1.1, (0x80ec0011)
Core: E500, Version: 5.1, (0x80212051)
Clock:
CPU0: 800 MHz
CPU1: 800 MHz
CCB: 400 MHz
DDR: 333.333 MHz (666.667 MT/s data rate) (Asynchronous)
LBC: 25 MHz
L1: D-cache 32KB enabled
I-cache 32KB enabled
I2C: ready
DRAM: Configuring DDR for 666.667 MT/s data rate
DDR: 512 MB (DDR3, 32-bit, CL=5, ECC off)
POST1: memory passed
Flash: 32 MB
L2: 256 KB enabled
Power: 802.3af POE+
PCIe1: RC, link up, x1
dev fn venID devID class rev MBAR0 MBAR1 MBAR2 MBAR3
00 00 14e4 43a2 00002 03 80000004 00000000 80200004 00000000
PCIe2: RC, link up, x1
dev fn venID devID class rev MBAR0 MBAR1 MBAR2 MBAR3
00 00 14e4 43a1 00002 03 a0000004 00000000 a0200004 00000000
Net: eth0, eth1
Radio: bcm43460#0, bcm43460#1
Hit <Enter> to stop autoboot: 0
apboot>
apboot>
apboot> version
APBoot 1.4.0.6 (build 38177)
Built: 2013-04-25 at 22:52:20
apboot> dir
(Re)start USB...
USB: Register 10011 NbrPorts 1
USB EHCI 1.00
scanning bus for devices... 1 USB Device(s) found
scanning bus for storage devices... 0 Storage Device(s) found
** Invalid boot device **
apboot> osinfo
Partition 0:
image type: 0
machine type: 25
size: 7231396
version: 6.4.4.11
build string: ArubaOS version 6.4.4.11 for 22x (p4build@chios) (gcc version 4.5.1) #57673 SMP Thu Dec 8 10:44:50 PST 2016
flags:
Image is signed; verifying checksum... passed
Signer Cert OK
Policy Cert OK
RSA signature verified.
Partition 1:
image type: 0
machine type: 25
size: 6418672
version: 6.3.1.0
build string: ArubaOS version 6.3.1.0 for 22x (p4build@tortuga) (gcc version 4.5.1) #39345 SMP Thu Aug 8 16:30:24 PDT 2013
flags: preserve factory
Image is signed; verifying checksum... passed
Signer Cert OK
Policy Cert OK
RSA signature verified.
apboot>
Controller:
Jan 5 13:31:56 sapd[2146]: <311002> <WARN> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| Rebooting: SAPD: Rebooting after setting cert_cap=1. Need to open a secure channel(IPSEC)
Jan 5 13:31:57 nanny[2093]: <303086> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 nanny| Process Manager (nanny) shutting down - AP will reboot!
Jan 5 13:33:28 nanny[2098]: <303022> <WARN> |AP 18:64:72:xx:xx:30@10.10.4.249 nanny| Reboot Reason: AP rebooted Thu Jan 5 13:31:57 MST 2017; SAPD: Rebooting after setting cert_cap=1. Need to open a secure channel(IPSEC)
Jan 5 13:33:36 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:09>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:33:36 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:09>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:33:42 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:15>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:33:42 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:15>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:33:48 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:21>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:33:48 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:21>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:33:54 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:27>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:33:54 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:27>>ERROR>>TPM Setup at System Initialization failed
Jan 5 13:33:54 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:27>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:34:01 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:34>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:34:01 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:34>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:34:07 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:40>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:34:07 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:40>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:34:13 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:46>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:34:13 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:46>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:34:19 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:52>>ERROR>>Failed to evict key (0xffdfdffe) at index 0
Jan 5 13:34:19 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:52>>ERROR>>TPM Setup at System Initialization failed
Jan 5 13:34:19 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:52>>ERROR>>TPM or Device Cert Initialization failed.
Jan 5 13:34:19 sapd[2151]: <129002> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| 12311969:16:01:52>>ERROR>>TPM_EvictKey failed with return code (0x00000044)
Jan 5 13:34:19 sapd[2151]: <311020> <ERRS> |AP 18:64:72:xx:xx:30@10.10.4.249 sapd| An internal system error has occurred at file sapd_main.c function main line 2986 error Unable to initialize Factory Certificates or Field Certificates.
Jan 5 13:36:38 stm[3931]: <305049> <WARN> |stm| Unsecure AP "18:64:72:xx:xx:30" (MAC 18:64:72:xx:xx:30, IP 10.10.4.249) has been denied access because Control Plane Security is enabled and the AP is not approved.
Best regards.