Currently I’m experiencing the problem with NTP and DoT/DoH on my Keenetic Speedster (KN-3010) v3.6.10.
Sometimes I turn off the router before the night or weekend. I believe it is normal for consumer grade hardware to not forced to be on 24/7/365.
And when I turn it on sometimes, not always, there’s no internet access (websites are not working on any device in local network).
When I check the logs, there’s a repeating error about DoT/DoH not being able to validate TLS-certificate and NTP messages about unable to sync time with 0.pool, 1.pool and etc.
My assumption is that is a chicken and egg problem. So the loop is the following:
Local time is wrong on startup -> Need to sync NTP -> Need to start up DoT/DoH (at least for resolving NTP hostnames) -> Unable to do that (TLS-certificate for DoT/DoH services doesn’t validate because of wrong local time) -> Unable to sync time
Please, consider bypassing DoT/DoH for NTP servers.
You can post now and register later.
If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.
Question
Alex M
Hello!
Currently I’m experiencing the problem with NTP and DoT/DoH on my Keenetic Speedster (KN-3010) v3.6.10.
Sometimes I turn off the router before the night or weekend. I believe it is normal for consumer grade hardware to not forced to be on 24/7/365.
And when I turn it on sometimes, not always, there’s no internet access (websites are not working on any device in local network).
When I check the logs, there’s a repeating error about DoT/DoH not being able to validate TLS-certificate and NTP messages about unable to sync time with 0.pool, 1.pool and etc.
My assumption is that is a chicken and egg problem. So the loop is the following:
Local time is wrong on startup -> Need to sync NTP -> Need to start up DoT/DoH (at least for resolving NTP hostnames) -> Unable to do that (TLS-certificate for DoT/DoH services doesn’t validate because of wrong local time) -> Unable to sync time
Please, consider bypassing DoT/DoH for NTP servers.
Thank you!
1 answer to this question
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.