Jump to content
  • 0

[Feature Request] Bypass DoT/DoH for NTP servers


Alex M

Question

Hello!

Currently I’m experiencing the problem with NTP and DoT/DoH on my Keenetic Speedster (KN-3010) v3.6.10.

Sometimes I turn off the router before the night or weekend. I believe it is normal for consumer grade hardware to not forced to be on 24/7/365.

And when I turn it on sometimes, not always, there’s no internet access (websites are not working on any device in local network).

When I check the logs, there’s a repeating error about DoT/DoH not being able to validate TLS-certificate and NTP messages about unable to sync time with 0.pool, 1.pool and etc.

My assumption is that is a chicken and egg problem. So the loop is the following:

Local time is wrong on startup -> Need to sync NTP -> Need to start up DoT/DoH (at least for resolving NTP hostnames) -> Unable to do that (TLS-certificate for DoT/DoH services doesn’t validate because of wrong local time) -> Unable to sync time

Please, consider bypassing DoT/DoH for NTP servers.

Thank you!

  • Thanks 1
Link to comment
Share on other sites

1 answer to this question

Recommended Posts

  • 0

Add Cloudflare NTP 162.159.200.1 and 162.159.200.123 by ip. They may change, but likely not frequently.

You can add nameserver by ip for a domain "ntp.org"  - some of the following  for example:

$$$dig  +short c.ntpns.org A
89.40.214.141
212.12.50.229
45.11.105.142
46.227.203.69
50.116.32.247
$$$dig  +short b.ntpns.org A
102.130.49.148
185.120.22.23
$$$dig  +short a.ntpns.org A
185.209.85.151
45.79.130.187
185.134.197.79
185.209.84.218
185.126.112.98
212.25.19.23
 

 

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Answer this question...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...