Community discussions

MikroTik App
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

v7.1.1 woes [workarounds available]

Thu Dec 30, 2021 10:04 pm

I recently upgraded my CRS125-24G-1S-RM to v7.1.1 from v6.49.2.
I am having a couple of issues: not sure whether those are bugs or something that needs some tuning.
Both could be the same problem under two different situations, though.

1. I cannot configure NTP to point to a server by name (DNS) like time.google.com like I did previously w/ v6.

2. I cannot check version upgrades any more as the check seems to run forever: "finding out latest version...". Also this used to work in v6.

Any idea/fix?

UPDATES

You can workaround issue no.1 by either using SSH cli or by using a terminal via serial console or webfig.
/system ntp client
set enabled=yes
/system ntp client servers
add address=your.ntp.server.dns
You can workaround issue no.2 by defining static DNS entries pointing at Mikrotik servers:
/ip/dns/static
add type=a name=download.mikrotik.com. address=159.148.172.226
add type=a name=download.mikrotik.com. address=159.148.172.204
add type=cname name=upgrade.mikrotik.com. cname=download.mikrotik.com.
Last edited by Uqbar on Mon Jan 03, 2022 3:04 pm, edited 1 time in total.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19323
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: v7.1.1 woes

Thu Dec 30, 2021 10:49 pm

Let me check my magic wand, crystal ball, tarot cards, and bones.............
Yes, its becoming clearer......
I see a future where you
post your config.
/export file=anynameyouwish
(just ensure no public WANIPs or Gateways are showing)
 
User avatar
deadkat
Frequent Visitor
Frequent Visitor
Posts: 57
Joined: Sun Nov 15, 2020 11:14 pm
Location: Alabama, USA

Re: v7.1.1 woes

Fri Dec 31, 2021 4:35 am

1)
in v6.x you have a separate field for NTP server and NTP server DNS names. in v7.x these fields are combined and you can enter a url into the primary/secondary server field on winbox

2)
why are you trying to check for upgrades when you just installed the latest version? that aside......is this problem manifesting when you tried to update from v6 to v7 or after the update was done?
if it manifests when moving from v6 to v7 then you probably have separate packages installed instead of the bundle. this is known to not and has been mentioned several times in multiple other threads work as v7 only has bundle and it can't fetch the separate packages......they don't exist. just get npk from MT website, upload and reboot (if downgrading be sure to use `/system packages downgrade` instead of a normal reboot)
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Fri Dec 31, 2021 10:12 am

1)
in v6.x you have a separate field for NTP server and NTP server DNS names. in v7.x these fields are combined and you can enter a url into the primary/secondary server field on winbox
URL? Like NTP://time.server.net/ ?
2)
why are you trying to check for upgrades when you just installed the latest version? that aside......is this problem manifesting when you tried to update from v6 to v7 or after the update was done?
if it manifests when moving from v6 to v7 then you probably have separate packages installed instead of the bundle. this is known to not and has been mentioned several times in multiple other threads work as v7 only has bundle and it can't fetch the separate packages......they don't exist. just get npk from MT website, upload and reboot (if downgrading be sure to use `/system packages downgrade` instead of a normal reboot)
Upgrade went fine, of course. Subsequent checks didn't.
I tried the check because there is a number of reports of random dns-related issues with those checks.
Upgrade went fine at 1st try and now I see a single package instead of several ones.
As i wrote, i don't get a check error. It simply seems to run forever.
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Sat Jan 01, 2022 9:51 pm

Let me check my magic wand, crystal ball, tarot cards, and bones.............
Yes, its becoming clearer......
I see a future where you
post your config.
/export file=anynameyouwish
(just ensure no public WANIPs or Gateways are showing)
I am not sure how the configuration I have can help to solve the problems.
Anyway, here it is:
bekindplease.rsc
If I were a knowledgeable person, I would have tried that configuration item (NTP) and the new version check as my first thing before giving any reply.
But, unluckily, I am the one who needs help...
You do not have the required permissions to view the files attached to this post.
 
User avatar
anav
Forum Guru
Forum Guru
Posts: 19323
Joined: Sun Feb 18, 2018 11:28 pm
Location: Nova Scotia, Canada
Contact:

Re: v7.1.1 woes

Sat Jan 01, 2022 10:04 pm

1. Is this device acting as a router?
2. Is this device connected directly to the internet?
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Sun Jan 02, 2022 10:43 am

1. Is this device acting as a router?
Nope. It's a switch. Sometimes i use it also as a router for tests.
2. Is this device connected directly to the internet?
Hmm... It is connected to the internet via a NAT router (0.0.0.0 and possibly other NAT devices within the ISP network). You can see that from the default route, the DNS specification and the NTP client (if only it worked).

But my box has no public IP on any of it's interfaces.

The same box was connected to the same ISP and (hopefully) the same configuration while running V6.
 
User avatar
BartoszP
Forum Guru
Forum Guru
Posts: 2879
Joined: Mon Jun 16, 2014 1:13 pm
Location: Poland

Re: v7.1.1 woes

Sun Jan 02, 2022 11:23 am

URL? Like NTP://time.server.net/ ?
Try simple

pool.ntp.org
0.pool.ntp.org
ca.pool.ntp.org
1.it.pool.ntp.org

Each DNS name from the list serves addresses in a round-robin way.
You can try 2,3 instead of 0 and 1 or change ca or it to us, pl, jp, or any other country suffix you can use in DNS names
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Sun Jan 02, 2022 11:39 am

URL? Like NTP://time.server.net/ ?
Try simple

pool.ntp.org
0.pool.ntp.org
ca.pool.ntp.org
1.it.pool.ntp.org

Each DNS name from the list serves addresses in a round-robin way.
You can try 2,3 instead of 0 and 1 or change ca or it to us, pl, jp, or any other country suffix you can use in DNS names
I tried time.google.com and it doesn't work, nor it shows up in the configuration. Have you tried that yourself?
How would it be different to use pool.ntp.org from time.google.com?
 
tangent
Forum Guru
Forum Guru
Posts: 1390
Joined: Thu Jul 01, 2021 3:15 pm
Contact:

Re: v7.1.1 woes

Sun Jan 02, 2022 12:25 pm

I tried time.google.com and it doesn't work, nor it shows up in the configuration.

WinBox 3.31 let me put us.pool.ntp.org into the address field here, but WebFig on ROS 7.1.1 will not.

Older versions of WinBox predating ROS 7 might also have this problem.


How would it be different to use pool.ntp.org from time.google.com?

The ntp.org pools are comprised of many organizations offering service to the community. The Google ones are just that one company.

The nice thing about using a DNS name for a pool is that the answers can change over time as organizations enter the pool and leave it.

Better, use one of the regional zones to ensure fastest response.
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Sun Jan 02, 2022 1:06 pm

I tried time.google.com and it doesn't work, nor it shows up in the configuration.

WinBox 3.31 let me put us.pool.ntp.org into the address field here, but WebFig on ROS 7.1.1 will not.

Older versions of WinBox predating ROS 7 might also have this problem.
So, this is a bug, not something I did wrong.

All of my PCs are Linux, winbox is not an option. Will try SSH.

Anyway, i upgraded the ROS and i was expecting it to keep *all* of the existing configuration. Instead it removed my NTP altogether. This seems to be another bug.
How would it be different to use pool.ntp.org from time.google.com?

The ntp.org pools are comprised of many organizations offering service to the community. The Google ones are just that one company.

The nice thing about using a DNS name for a pool is that the answers can change over time as organizations enter the pool and leave it.

Better, use one of the regional zones to ensure fastest response.
I want/need to use Google NTP servers. Your considerations are irrelevant to my issue, while totally meaningful.
Also google uses DNS for the same reasons. But it seems DNS has issues.
Infact I still cannot have an "upgrade check" working likely due to DNS issues.
 
mducharme
Trainer
Trainer
Posts: 1777
Joined: Tue Jul 19, 2016 6:45 pm
Location: Vancouver, BC, Canada

Re: v7.1.1 woes

Sun Jan 02, 2022 1:31 pm

Hello,

Try from the CLI, as this works for me:
/system ntp client
set enabled=yes
/system ntp client servers
add address=pool.ntp.org
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Sun Jan 02, 2022 3:38 pm

Hello,

Try from the CLI, as this works for me:
/system ntp client
set enabled=yes
/system ntp client servers
add address=pool.ntp.org
These commands work while webfig doesn't: the server address isn't shown at all!
See attached screenshots.
SHOT-20220102_142128.png
SHOT-20220102_142119.png
Webgig doesn't seem to understand an NTP server DNS name!
Using the terminal to complement webfig is not a solution: it's a workaround!

System/Packages/Check for updates still times out.
But, If I add a few static DNS entries, it works! (addresses taken from current DNS values).
This is clearly a workaround too, not a solution.
SHOT-20220102_143343.png
You do not have the required permissions to view the files attached to this post.
Last edited by Uqbar on Sun Jan 02, 2022 5:59 pm, edited 2 times in total.
 
gotsprings
Forum Guru
Forum Guru
Posts: 2118
Joined: Mon May 14, 2012 9:30 pm

Re: v7.1.1 woes

Sun Jan 02, 2022 4:51 pm

Hello,

Try from the CLI, as this works for me:
/system ntp client
set enabled=yes
/system ntp client servers
add address=pool.ntp.org
time.ntp.gov

works solid for me in command line.
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Sun Jan 02, 2022 5:57 pm

Hello,

Try from the CLI, as this works for me:
/system ntp client
set enabled=yes
/system ntp client servers
add address=pool.ntp.org
time.ntp.gov

works solid for me in command line.
The actual NTP server(s) choice is not relevant here: the bug is related to webfig being unable to do it.
 
mducharme
Trainer
Trainer
Posts: 1777
Joined: Tue Jul 19, 2016 6:45 pm
Location: Vancouver, BC, Canada

Re: v7.1.1 woes

Sun Jan 02, 2022 10:28 pm

The actual NTP server(s) choice is not relevant here: the bug is related to webfig being unable to do it.
They haven't yet fully implemented all the new functionality in v7 in winbox/webfig, and this would be part of the new functionality. Webfig is actually further behind compared to winbox.
 
gotsprings
Forum Guru
Forum Guru
Posts: 2118
Joined: Mon May 14, 2012 9:30 pm

Re: v7.1.1 woes

Sun Jan 02, 2022 10:32 pm

The actual NTP server(s) choice is not relevant here: the bug is related to webfig being unable to do it.
They haven't yet fully implemented all the new functionality in v7 in winbox/webfig, and this would be part of the new functionality. Webfig is actually further behind compared to winbox.
It did work in winbox.

I never open webfig. Usually disable it as soon as I log into a router.
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Mon Jan 03, 2022 12:08 am



They haven't yet fully implemented all the new functionality in v7 in winbox/webfig, and this would be part of the new functionality. Webfig is actually further behind compared to winbox.
It did work in winbox.

I never open webfig. Usually disable it as soon as I log into a router.
I use webfig only via local TCP forward (ssh).
I confirm winbox doesn't work either.
But terminal via webfig does work (of course).
 
User avatar
Uqbar
Member Candidate
Member Candidate
Topic Author
Posts: 126
Joined: Tue May 05, 2015 11:56 am
Contact:

Re: v7.1.1 woes

Mon Jan 03, 2022 1:51 pm

I still have the issue with the DNS used during the update check: I am forced to add static DNS entries in order to make it work!
Updated OP.

Who is online

Users browsing this forum: Majestic-12 [Bot] and 59 guests