beeyev.Mikrotik-RouterOS-au.../BackupAndUpdate.rsc

693 lines
28 KiB
Text
Raw Normal View History

# Script name: BackupAndUpdate
#
2025-04-15 21:36:49 +02:00
# SCRIPT INFORMATION
#
# Script: Mikrotik RouterOS automatic backup & update
2025-04-15 21:36:49 +02:00
# Version: 25.04.15
# Created: 07/08/2018
2025-04-15 21:36:49 +02:00
# Updated: 15/04/2025
# Author: Alexander Tebiev
# Website: https://github.com/beeyev
# You can contact me by e-mail at tebiev@mail.com
#
# IMPORTANT!
# Minimum supported RouterOS version is v6.43.7
#
2025-04-15 21:36:49 +02:00
# --- MODIFY THIS SECTION AS NEEDED ---
# Notification e-mail
# (Make sure you have configured Email settings in Tools -> Email)
:local emailAddress "yourmail@example.com";
2025-04-15 21:36:49 +02:00
# Script mode, possible values: backup, osupdate, osnotify.
2022-11-12 11:30:05 +01:00
# backup - Only backup will be performed. (default value, if none provided)
#
2025-04-15 21:36:49 +02:00
# osupdate - Installs new RouterOS if available and creates backups before/after update (ignores `forceBackup`)
# Sends email only when an update is found.
# Set `forceBackup` to true to always create backups, even without updates
#
2025-04-15 21:36:49 +02:00
# osnotify - Sends email only if a new RouterOS update is found (no backups)
# Set `forceBackup` to always create backups on every run
2025-04-12 22:31:55 +02:00
:local scriptMode "osupdate"
2025-04-15 21:36:49 +02:00
# Additional parameter if you set `scriptMode` to `osupdate` or `osnotify`
2025-04-12 22:31:55 +02:00
# Set `true` if you want the script to perform backup every time its fired, whatever script mode is set.
:local forceBackup false
2025-04-15 21:36:49 +02:00
# Backup encryption password, no encryption if no password.
:local backupPassword ""
2025-04-15 21:36:49 +02:00
# If true, passwords will be included in exported config.
2025-04-12 22:31:55 +02:00
:local sensitiveDataInConfig true
## Update channel. Possible values: stable, long-term, testing, development
2025-04-12 22:31:55 +02:00
:local updateChannel "stable"
2025-04-15 21:36:49 +02:00
# Installs patch updates only (scriptMode = "osupdate").
# Works for `stable` and `long-term` channels.
# Updates only if MAJOR.MINOR match (e.g. 6.43.2 → 6.43.6 allowed, 6.44.1 skipped).
# Sends info if a newer (non-patch) version is found.
2025-04-12 22:31:55 +02:00
:local installOnlyPatchUpdates false
2025-04-15 21:36:49 +02:00
# Include public IP info in email if set to true
2025-04-12 22:31:55 +02:00
:local detectPublicIpAddress true
2023-11-25 14:50:04 +01:00
2025-04-12 22:31:55 +02:00
## Allow anonymous statistics collection. (script mode and generic non-sensitive device info)
2025-04-15 21:36:49 +02:00
:local anonStats true
2023-11-25 14:50:04 +01:00
2025-04-15 21:36:49 +02:00
# !!! DO NOT EDIT BELOW THIS LINE UNLESS YOU KNOW WHAT YOURE DOING !!!
2025-04-15 21:36:49 +02:00
:local scriptVersion "25.04.15"
2025-04-12 22:31:55 +02:00
# default and fallback public IP detection services
:local ipAddressDetectServiceDefault "https://ipv4.mikrotik.ovh/"
:local ipAddressDetectServiceFallback "https://api.ipify.org/"
2025-04-12 22:31:55 +02:00
#Script messages prefix
:local SMP "Bkp&Upd:"
2023-11-11 19:50:38 +01:00
2025-04-12 22:31:55 +02:00
:local exitErrorMessage "$SMP script stopped due to an error. Please check logs for more details."
:log info "\n\n$SMP Script \"Mikrotik RouterOS automatic backup & update\" v.$scriptVersion started."
:log info "$SMP Script Mode: `$scriptMode`, Update channel: `$updateChannel`, Force backup: `$forceBackup`, Install only patch updates: `$installOnlyPatchUpdates`"
2025-04-15 21:36:49 +02:00
## vv FUNCTIONS vv ##
2025-04-12 22:31:55 +02:00
# Returns currently running RouterOS version
# :put [$FuncGetRunningOsVersion] # Output: 6.48.1
:local FuncGetRunningOsVersion do={
2025-04-15 21:36:49 +02:00
:local runningOsAndChannel [/system resource get version]
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local spacePos [:find $runningOsAndChannel " "]
:if ([:len $spacePos] = 0) do={
:log error "Bkp&Upd: Could not extract installed OS version string: `$runningOsAndChannel`."
:error "Bkp&Upd: error, check logs"
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:local versionOnly [:pick $runningOsAndChannel 0 $spacePos]
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:return $versionOnly
2025-04-12 22:31:55 +02:00
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
# Returns currently running RouterOS channel
2025-04-12 22:31:55 +02:00
# :put [$FuncGetRunningOsChannel] # Output: stable
:local FuncGetRunningOsChannel do={
2025-04-15 21:36:49 +02:00
:local runningOsAndChannel [/system resource get version]
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:local open [:find $runningOsAndChannel "("]
:if ([:len $open] = 0) do={
:log error "Bkp&Upd: Could not extract installed OS channel from version string: `$runningOsAndChannel`."
:error "Bkp&Upd: error, check logs"
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:local rest [:pick $runningOsAndChannel ($open+1) [:len $runningOsAndChannel]]
:local close [:find $rest ")"]
:local channel [:pick $rest 0 $close]
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:return $channel
}
2025-04-15 21:36:49 +02:00
# Checks if two RouterOS version strings differ only by the patch version
2025-04-12 22:31:55 +02:00
# :put [$FuncIsPatchUpdateOnly "6.2.1" "6.2.4"] # Output: true
# :put [$FuncIsPatchUpdateOnly "6.2.1" "6.3.1"] # Output: false
:local FuncIsPatchUpdateOnly do={
2025-04-15 21:36:49 +02:00
:local ver1 $1
:local ver2 $2
# Extract the major and minor components from a version
:local extractMajorMinor do={
:local ver $1
:local dot1 [:find $ver "."]
:if ($dot1 = -1) do={ :return $ver }
:local major [:pick $ver 0 $dot1]
:local rest [:pick $ver ($dot1 + 1) [:len $ver]]
:local dot2 [:find $rest "."]
:local minor $rest
:if ($dot2 >= 0) do={ :set minor [:pick $rest 0 $dot2] }
:return ($major . "." . $minor)
}
# Compare the major and minor components of both version strings
:if ([$extractMajorMinor $ver1] = [$extractMajorMinor $ver2]) do={
:return true
}
:return false
2025-04-12 22:31:55 +02:00
}
2025-04-15 21:36:49 +02:00
# Creates backups and returns array of names
2022-11-12 11:30:05 +01:00
# Possible arguments:
2025-04-15 21:36:49 +02:00
# $1 - file name, without extension
# $2 - password (optional)
# $3 - sensitive data in config (optional, default: false)
# Example:
2025-04-12 22:31:55 +02:00
# :put [$FuncCreateBackups "daily-backup"]
:local FuncCreateBackups do={
2025-04-15 21:36:49 +02:00
:local backupName $1
:local backupPassword $2
:local sensitiveDataInConfig $3
#Script messages prefix
:local SMP "Bkp&Upd:"
:local exitErrorMessage "$SMP script stopped due to an error. Please check logs for more details."
:log info ("$SMP global function `FuncCreateBackups` started, input: `$backupName`")
# validate required parameter: backupName
:if ([:typeof $backupName] != "str" or [:len $backupName] = 0) do={
:log error "$SMP parameter 'backupName' is required and must be a non-empty string"
:error $exitErrorMessage
}
:local backupFileSys "$backupName.backup"
:local backupFileConfig "$backupName.rsc"
:local backupNames {$backupFileSys;$backupFileConfig}
## Perform system backup
:if ([:len $backupPassword] = 0) do={
:log info ("$SMP starting backup without password, backup name: `$backupName`")
/system backup save dont-encrypt=yes name=$backupName
} else={
:log info ("$SMP starting backup with password, backup name: `$backupName`")
/system backup save password=$backupPassword name=$backupName
}
:log info ("$SMP system backup created: `$backupFileSys`")
## Export config file
:if ($sensitiveDataInConfig = true) do={
:log info ("$SMP starting export config with sensitive data, backup name: `$backupName`")
# Since RouterOS v7 it needs to be explicitly set that we want to export sensitive data
:if ([:pick [/system resource get version] 0 1] < 7) do={
:execute "/export compact terse file=$backupName"
2022-11-12 11:30:05 +01:00
} else={
2025-04-15 21:36:49 +02:00
:execute "/export compact show-sensitive terse file=$backupName"
2025-04-12 22:31:55 +02:00
}
2025-04-15 21:36:49 +02:00
} else={
:log info ("$SMP starting export config without sensitive data, backup name: `$backupName`")
/export compact hide-sensitive terse file=$backupName
}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log info ("$SMP Config export complete: `$backupFileConfig`")
:log info ("$SMP Waiting a little to ensure backup files are written")
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:delay 20s
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:if ([:len [/file find name=$backupFileSys]] > 0) do={
:log info ("$SMP system backup file successfully saved to the file system: `$backupFileSys`")
} else={
:log error ("$SMP system backup was not created, file does not exist: `$backupFileSys`")
:error $exitErrorMessage
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:if ([:len [/file find name=$backupFileConfig]] > 0) do={
:log info ("$SMP config backup file successfully saved to the file system: `$backupFileConfig`")
} else={
:log error ("$SMP config backup was not created, file does not exist: `$backupFileConfig`")
:error $exitErrorMessage
}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log info ("$SMP global function `FuncCreateBackups` finished. Created backups, system: `$backupFileSys`, config: `$backupFileConfig`")
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:return $backupNames
}
2025-04-15 21:36:49 +02:00
# Sends an email
2025-04-12 22:31:55 +02:00
# Parameters:
2025-04-15 21:36:49 +02:00
# $1 - to (email address)
# $2 - subject
# $3 - body
# $4 - file attachments (optional; pass "" if not needed)
2025-04-12 22:31:55 +02:00
#
# Example:
2025-04-15 21:36:49 +02:00
# $FuncSendEmailSafe "admin@domain.com" "Backup Done" "Backup complete." "backup1.backup"
2025-04-12 22:31:55 +02:00
:local FuncSendEmailSafe do={
2025-04-15 21:36:49 +02:00
:local emailTo $1
:local emailSubject $2
:local emailBody $3
:local emailAttachments $4
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local SMP "Bkp&Upd:"
:local exitErrorMessage "$SMP script stopped due to an error. Please check logs for more details."
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log info "$SMP Attempting to send email to `$emailTo`"
2025-04-15 21:36:49 +02:00
# SAFETY: wait for any previously queued email to finish
:local waitTimeoutPre 60
:local waitCounterPre 0
:while (([/tool e-mail get last-status] = "resolving-dns" or [/tool e-mail get last-status] = "in-progress")) do={
:if ($waitCounterPre >= $waitTimeoutPre) do={
:log error "$SMP Email send aborted: previous send did not complete after $waitTimeoutPre seconds"
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
2023-11-11 19:50:38 +01:00
2025-04-15 21:36:49 +02:00
:log info "$SMP Waiting for previous email to finish (status: $[/tool e-mail get last-status])..."
:delay 1s
:set waitCounterPre ($waitCounterPre + 1)
}
2023-11-11 19:50:38 +01:00
2025-04-15 21:36:49 +02:00
# Send the email
:do {
/tool e-mail send to=$emailTo subject=$emailSubject body=$emailBody file=$emailAttachments
} on-error={
:log error "$SMP Email send command failed to execute. Check logs and verify email settings."
:error $exitErrorMessage
}
# Wait for send status to change from "in-progress" / "resolving-dns"
:local waitTimeout 60
:local waitCounter 0
:local emailStatus ""
:log info "$SMP Waiting for email to be sent, timeout in `$waitTimeout` seconds..."
:while ($waitCounter < $waitTimeout) do={
:set emailStatus [/tool e-mail get last-status]
:if ($emailStatus != "in-progress" and $emailStatus != "resolving-dns") do={
:log info "$SMP Email send status received: $emailStatus"
# exit loop
:set waitCounter $waitTimeout
2025-04-12 22:31:55 +02:00
} else={
2025-04-15 21:36:49 +02:00
:delay 1s
:set waitCounter ($waitCounter + 1)
2025-04-12 22:31:55 +02:00
}
2025-04-15 21:36:49 +02:00
}
# Final decision based on last status
:if ($emailStatus = "succeeded") do={
:log info "$SMP Email successfully sent to `$emailTo`"
} else={
:log error "$SMP Email failed to send. Status: `$emailStatus`. Check logs for more details and verify email settings."
:error $exitErrorMessage
}
2025-04-12 22:31:55 +02:00
}
# Global variable to track current update step
# They need to be initialized here first to be available in the script
:global buGlobalVarTargetOsVersion
:global buGlobalVarScriptStep
:local scriptStep $buGlobalVarScriptStep
:do {/system script environment remove buGlobalVarScriptStep} on-error={}
:if ([:len $scriptStep] = 0) do={
2025-04-15 21:36:49 +02:00
:set scriptStep 1
2025-04-12 22:31:55 +02:00
}
2025-04-15 21:36:49 +02:00
## ^^ FUNCTIONS ^^ ##
2025-04-12 22:31:55 +02:00
#
# Initial validation
#
## Check email settings
:if ([:len $emailAddress] < 3) do={
2025-04-15 21:36:49 +02:00
:log error ("$SMP Parameter `\$emailAddress` is not set, or contains invalid value. Script stopped.")
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
# Values will be defined later in the script
:local emailServer ""
:local emailFromAddress [/tool e-mail get from]
:log info "$SMP Validating email settings..."
:do {
2025-04-15 21:36:49 +02:00
:set emailServer [/tool e-mail get server]
2025-04-12 22:31:55 +02:00
} on-error={
2025-04-15 21:36:49 +02:00
# This is a workaround for the RouterOS v7.12 and older versions
:set emailServer [/tool e-mail get address]
2025-04-12 22:31:55 +02:00
}
:if ($emailServer = "0.0.0.0") do={
2025-04-15 21:36:49 +02:00
:log error ("$SMP Email server address is not correct: `$emailServer`, check `Tools -> Email`. Script stopped.");
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
:if ([:len $emailFromAddress] < 3) do={
2025-04-15 21:36:49 +02:00
:log error ("$SMP Email configuration FROM address is not correct: `$emailFromAddress`, check `Tools -> Email`. Script stopped.");
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
# Script mode validation
:if ($scriptMode != "backup" and $scriptMode != "osupdate" and $scriptMode != "osnotify") do={
2025-04-15 21:36:49 +02:00
:log error ("$SMP Script parameter `\$scriptMode` is not set, or contains invalid value: `$scriptMode`. Script stopped.")
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
# Update channel validation
:if ($updateChannel != "stable" and $updateChannel != "long-term" and $updateChannel != "testing" and $updateChannel != "development") do={
2025-04-15 21:36:49 +02:00
:log error ("$SMP Script parameter `\$updateChannel` is not set, or contains invalid value: `$updateChannel`. Script stopped.")
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
2025-04-15 21:36:49 +02:00
# Verify if script is set to install patch updates and if the update channel is valid
2025-04-12 22:31:55 +02:00
:if ($scriptMode = "osupdate" and $installOnlyPatchUpdates = true) do={
2025-04-15 21:36:49 +02:00
:if ($updateChannel != "stable" and $updateChannel != "long-term") do={
:log error ("$SMP Patch-only updates enabled, but update channel `$updateChannel` is invalid. Only `stable` and `long-term` are supported. Script stopped")
:error $exitErrorMessage
}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local susRunningOsChannel [$FuncGetRunningOsChannel]
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:if ($susRunningOsChannel != "stable" and $susRunningOsChannel != "long-term") do={
:log error ("$SMP Script is set to install only patch updates, but the installed RouterOS version is not from `stable` or `long-term` channel: `$susRunningOsChannel`. Script stopped")
:error $exitErrorMessage
}
2025-04-12 22:31:55 +02:00
}
#
2025-04-15 21:36:49 +02:00
# Get current date and time
2025-04-12 22:31:55 +02:00
#
:local rawTime [/system clock get time]
:local rawDate [/system clock get date]
2025-04-15 21:36:49 +02:00
# Current time in specific format `hh-mm-ss`
2025-04-12 22:31:55 +02:00
:local currentTime ([:pick $rawTime 0 2] . "-" . [:pick $rawTime 3 5] . "-" . [:pick $rawTime 6 8])
2025-04-15 21:36:49 +02:00
# Current date `YYYY-MM-DD` or `YYYY-Mon-DD`
2025-04-12 22:31:55 +02:00
:local currentDate "undefined"
2025-04-15 21:36:49 +02:00
# Check if the date is in the old format
2025-04-12 22:31:55 +02:00
:if ([:len [:tonum [:pick $rawDate 0 1]]] = 0) do={
2025-04-15 21:36:49 +02:00
# Convert old format `nov/11/2023` → `2023-nov-11`
:set currentDate ([:pick $rawDate 7 11] . "-" . [:pick $rawDate 0 3] . "-" . [:pick $rawDate 4 6])
2023-11-11 20:53:44 +01:00
} else={
2025-04-15 21:36:49 +02:00
# Use new format as is `YYYY-MM-DD`
:set currentDate $rawDate
2025-04-12 22:31:55 +02:00
}
:local currentDateTime ($currentDate . "-" . $currentTime)
:local deviceBoardName [/system resource get board-name]
2025-04-15 21:36:49 +02:00
## Check if it's a cloud hosted router
2025-04-12 22:31:55 +02:00
:local isCloudHostedRouter false;
:if ([:pick $deviceBoardName 0 3] = "CHR" or [:pick $deviceBoardName 0 3] = "x86") do={
2025-04-15 21:36:49 +02:00
:set isCloudHostedRouter true;
2023-11-11 19:50:38 +01:00
};
2022-11-12 11:19:19 +01:00
2025-04-15 21:36:49 +02:00
:local deviceIdentityName [/system identity get name];
2022-11-12 11:30:05 +01:00
:local deviceIdentityNameShort [:pick $deviceIdentityName 0 18]
2022-11-12 11:19:19 +01:00
2025-04-15 21:36:49 +02:00
:local deviceRbModel "CloudHostedRouter";
:local deviceRbSerialNumber "--"
:local deviceRbCurrentFw "--"
:local deviceRbUpgradeFw "--"
2025-04-12 22:31:55 +02:00
:if ($isCloudHostedRouter = false) do={
2025-04-15 21:36:49 +02:00
:set deviceRbModel [/system routerboard get model]
:set deviceRbSerialNumber [/system routerboard get serial-number]
:set deviceRbCurrentFw [/system routerboard get current-firmware]
:set deviceRbUpgradeFw [/system routerboard get upgrade-firmware]
2022-11-12 11:19:19 +01:00
};
2025-04-12 22:31:55 +02:00
:local runningOsChannel [$FuncGetRunningOsChannel]
:local runningOsVersion [$FuncGetRunningOsVersion]
:local deviceOsVerAndChannelRunning [/system resource get version]
2025-04-15 21:36:49 +02:00
:local backupNameTemplate "backup_v$runningOsVersion_$runningOsChannel_$currentDateTime"
:local backupNameBeforeUpdate "backup_before_update_$backupNameTemplate"
:local backupNameAfterUpdate "backup_after_update_$backupNameTemplate"
2025-04-12 22:31:55 +02:00
## Email body template
2025-04-15 21:36:49 +02:00
:local mailSubjectPrefix "$SMP Device - `$deviceIdentityNameShort`"
2025-04-15 21:36:49 +02:00
:local mailBodyCopyright "Mikrotik RouterOS automatic backup & update (ver. $scriptVersion) \nhttps://github.com/beeyev/Mikrotik-RouterOS-automatic-backup-and-update"
:local changelogUrl "Check RouterOS changelog: https://mikrotik.com/download/changelogs/"
2025-04-12 22:31:55 +02:00
:local mailBodyDeviceInfo ""
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "Device information:")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\n---------------------")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nName: $deviceIdentityName")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nModel: $deviceRbModel")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nBoard: $deviceBoardName")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nSerial number: $deviceRbSerialNumber")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nRouterOS version: v$deviceOsVerAndChannelRunning")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nBuild time: $[/system resource get build-time]")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nRouterboard FW: $deviceRbCurrentFw")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nDevice date-time: $rawDate $rawTime ($[/system clock get time-zone-name ])")
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nUptime: $[/system resource get uptime]")
# IP address will be appended later if needed
2025-04-12 22:31:55 +02:00
:local mailAttachments [:toarray ""]
2025-04-15 21:36:49 +02:00
## IP address detection
2025-04-12 22:31:55 +02:00
:if ($scriptStep = 1 or $scriptStep = 3) do={
2025-04-15 21:36:49 +02:00
:if ($scriptStep = 3) do={
:log info ("$SMP Waiting for one minute before continuing to the final step.")
:delay 1m
}
# default values
:local publicIpAddress "not-detected"
:local telemetryDataQuery ""
:if ($detectPublicIpAddress = true or $anonStats = true) do={
:if ($anonStats = true) do={
:set telemetryDataQuery ("\?mode=" . $scriptMode . "&scriptver=" . $scriptVersion . "&updatechannel=" . $updateChannel . "&osver=" . $runningOsVersion . "&step=" . $scriptStep . "&forcebackup=" . $forceBackup . "&onlypatchupdates=" . $installOnlyPatchUpdates . "&model=" . $deviceRbModel . "&deviceboard=" . $deviceBoardName)
2023-11-25 14:50:04 +01:00
}
2025-04-15 21:36:49 +02:00
:do {:set publicIpAddress ([/tool fetch http-method="get" url=($ipAddressDetectServiceDefault . $telemetryDataQuery) output=user as-value]->"data")} on-error={
:if ($detectPublicIpAddress = true) do={
:log warning "$SMP Failed to detect public IP using default service: `$ipAddressDetectServiceDefault`"
:log warning "$SMP Trying fallback service: `$ipAddressDetectServiceFallback`"
2023-11-25 14:50:04 +01:00
2025-04-15 21:36:49 +02:00
:do {:set publicIpAddress ([/tool fetch http-method="get" url=$ipAddressDetectServiceFallback output=user as-value]->"data")} on-error={
:log warning "$SMP Could not detect public IP address using fallback detection service: `$ipAddressDetectServiceFallback`"
2023-11-25 14:50:04 +01:00
}
2025-04-15 21:36:49 +02:00
}
}
2023-11-25 14:50:04 +01:00
2025-04-15 21:36:49 +02:00
# basic safety
:set publicIpAddress ([:pick $publicIpAddress 0 15])
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:if ($detectPublicIpAddress = true) do={
:set mailBodyDeviceInfo ($mailBodyDeviceInfo . "\nPublic IP address: $publicIpAddress")
:log info "$SMP Public IP address detected: `$publicIpAddress`"
2023-11-25 14:50:04 +01:00
}
2025-04-15 21:36:49 +02:00
}
2023-11-25 14:50:04 +01:00
}
2025-04-15 21:36:49 +02:00
## STEP 1: Create backups, check for new RouterOS, and send email
## Steps 23 run only if auto-update is enabled and a new version is available
2025-04-12 22:31:55 +02:00
:if ($scriptStep = 1) do={
2025-04-15 21:36:49 +02:00
:local routerOsVersionAvailable "0.0.0"
:local isNewOsUpdateAvailable false
:local isLatestOsAlreadyInstalled true
:local isOsNeedsToBeUpdated false
:local isUpdateCheckSucceeded false
:local isEmailNeedsToBeSent false
:local mailSubjectPartAction ""
:local mailPtBodyAction ""
:local mailPtSubjectBackup ""
:local mailPtBodyBackup ""
# Checking for new version
:if ($scriptMode = "osupdate" or $scriptMode = "osnotify") do={
log info ("$SMP Setting update channel to `$updateChannel`")
/system package update set channel=$updateChannel
log info ("$SMP Checking for new RouterOS version. Current installed version is: `$runningOsVersion`")
/system package update check-for-updates
# Wait to allow the system to check for updates
:delay 5s;
:local packageUpdateStatus "undefined"
:set routerOsVersionAvailable [/system package update get latest-version]
:set packageUpdateStatus [/system package update get status]
:if ($packageUpdateStatus = "New version is available") do={
:log info ("$SMP New RouterOS version is available: `$routerOsVersionAvailable`")
:set isNewOsUpdateAvailable true
:set isLatestOsAlreadyInstalled false
:set isUpdateCheckSucceeded true
:set isEmailNeedsToBeSent true
:set mailSubjectPartAction "New RouterOS available"
:set mailPtBodyAction "New RouterOS version is available, current version: v$runningOsVersion, new version: v$routerOsVersionAvailable. \n$changelogUrl"
} else={
:if ($packageUpdateStatus = "System is already up to date") do={
:log info ("$SMP No new RouterOS version is available, the latest version is already installed: `v$runningOsVersion`")
:set isUpdateCheckSucceeded true
:set mailSubjectPartAction "No os update available"
:set mailPtBodyAction "No new RouterOS version is available, the latest version is already installed: `v$runningOsVersion`"
} else={
:log error ("$SMP Failed to check for new RouterOS version. Package check status: `$packageUpdateStatus`")
:set isEmailNeedsToBeSent true
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:set mailSubjectPartAction "Error unable to check new os version"
:set mailPtBodyAction "An error occurred while checking for a new RouterOS version.\nStatus returned: `$packageUpdateStatus`\n\nPlease review the logs on the device for more details and verify internet connectivity."
}
2022-11-12 11:30:05 +01:00
}
2025-04-15 21:36:49 +02:00
}
# Checking if the script needs to install new os version
:if ($scriptMode = "osupdate" and $isNewOsUpdateAvailable = true) do={
:if ($installOnlyPatchUpdates = true) do={
:if ([$FuncIsPatchUpdateOnly $runningOsVersion $routerOsVersionAvailable] = true) do={
:log info "$SMP New RouterOS version is available, and it is a patch update. Current version: v$runningOsVersion, new version: v$routerOsVersionAvailable"
:set isOsNeedsToBeUpdated true
} else={
:log info "$SMP The script will not install this update, because it is not a patch update. Current version: v$runningOsVersion, new version: v$routerOsVersionAvailable"
:set mailPtBodyAction ($mailPtBodyAction . "\nThis update will not be installed, because the script is set to install only patch updates.")
}
} else={
:set isOsNeedsToBeUpdated true
}
}
2022-11-12 11:30:05 +01:00
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
# Checking If the script needs to create a backup
:if ($forceBackup = true or $scriptMode = "backup" or $isOsNeedsToBeUpdated = true) do={
:log info ("$SMP Starting backup process.")
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:set isEmailNeedsToBeSent true
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local backupName $backupNameTemplate
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
# This means it's the first step where we create a backup before the update process
:if ($isOsNeedsToBeUpdated = true) do={
:set backupName $backupNameBeforeUpdate
#Email body if the purpose of the script is to update the device
:set mailSubjectPartAction "Update preparation"
:set mailPtBodyAction ($mailPtBodyAction . "\nThe update process for device '$deviceIdentityName' is scheduled to upgrade RouterOS from version v.$runningOsVersion to version v.$routerOsVersionAvailable (Update channel: $updateChannel)")
:set mailPtBodyAction ($mailPtBodyAction . "\nPlease note: The update will proceed only after a successful backup.")
:set mailPtBodyAction ($mailPtBodyAction . "\nA final report with detailed information will be sent once the update process is completed.")
:set mailPtBodyAction ($mailPtBodyAction . "\nIf you do not receive a second email within the next 10 minutes, there may be an issue. Please check your device logs for further information.")
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:do {
:set mailAttachments [$FuncCreateBackups $backupName $backupPassword $sensitiveDataInConfig];
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:set mailPtSubjectBackup "Backup created"
:set mailPtBodyBackup "System backups have been successfully created and attached to this email."
} on-error={
#failed to create backup
:set isOsNeedsToBeUpdated false
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:set mailPtSubjectBackup "Backup failed"
:set mailPtBodyBackup "The script failed to create backups. Please check device logs for more details."
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log warning "$SMP Backup creation failed. Update process will be canceled if automatic update is enabled"
2022-11-12 11:30:05 +01:00
}
2025-04-15 21:36:49 +02:00
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:if ($isEmailNeedsToBeSent = true) do={
:log info "$SMP Preparing to send email..."
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local mailStep1Subject $mailSubjectPrefix
:local mailStep1Body ""
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
# subject
:if ($mailSubjectPartAction != "") do={:set mailStep1Subject ($mailStep1Subject . " - " . $mailSubjectPartAction)}
:if ($mailPtSubjectBackup != "") do={:set mailStep1Subject ($mailStep1Subject . " - " . $mailPtSubjectBackup)}
# body
:if ($mailPtBodyAction != "") do={:set mailStep1Body ($mailStep1Body . $mailPtBodyAction . "\n\n")}
:if ($mailPtBodyBackup != "") do={:set mailStep1Body ($mailStep1Body . $mailPtBodyBackup . "\n\n")}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:set mailStep1Body ($mailStep1Body . $mailBodyDeviceInfo . "\n\n" . $mailBodyCopyright)
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
# Send email with backups
:do {$FuncSendEmailSafe $emailAddress $mailStep1Subject $mailStep1Body $mailAttachments} on-error={
:set isOsNeedsToBeUpdated false
:log error "$SMP The script will not proceed with the update process, because the email was not sent."
2022-11-12 11:30:05 +01:00
}
2025-04-15 21:36:49 +02:00
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:if ([:len $mailAttachments] > 0) do={
:log info "$SMP Cleaning up backup files from the file system..."
/file remove $mailAttachments;
:delay 2s;
}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:if ($isOsNeedsToBeUpdated = true) do={
:log info "$SMP everything is ready to install new RouterOS, going to start the update process and reboot the device."
:do {
:local nextStep 2
:if ($isCloudHostedRouter = true) do={
:log info "$SMP The device is a cloud hosted router, the second step updating the Routerboard firmware will be skipped."
:set nextStep 3
}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local scheduledCommand (":delay 5s; /system scheduler remove BKPUPD-NEXT-BOOT-TASK; :global buGlobalVarScriptStep $nextStep; :global buGlobalVarTargetOsVersion \"$routerOsVersionAvailable\"; :delay 10s; /system script run BackupAndUpdate;")
/system scheduler add name=BKPUPD-NEXT-BOOT-TASK on-event=$scheduledCommand start-time=startup interval=0
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
/system package update install
} on-error={
# Failed to install new os version, remove the task
:do {/system scheduler remove BKPUPD-NEXT-BOOT-TASK} on-error={}
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log error "$SMP Failed to install new RouterOS version. Please check device logs for more details."
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:local mailUpdateErrorSubject ($mailSubjectPrefix . " - Update failed")
:local mailUpdateErrorBody "The script was unable to install new RouterOS version. Please check device logs for more details."
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
# Send email with error
$FuncSendEmailSafe $emailAddress $mailUpdateErrorSubject $mailUpdateErrorBody ""
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:error $exitErrorMessage
2025-04-12 22:31:55 +02:00
}
2025-04-15 21:36:49 +02:00
}
}
2025-04-15 21:36:49 +02:00
## STEP 2: (Post-reboot) Upgrade RouterBOARD firmware
## Runs only if auto-update is enabled and a new RouterOS version was found
2025-04-12 22:31:55 +02:00
:if ($scriptStep = 2) do={
2025-04-15 21:36:49 +02:00
:log info "$SMP The script is in the second step, updating Routerboard firmware."
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log info "$SMP Upgrading routerboard firmware from v.$deviceRbCurrentFw to v.$deviceRbUpgradeFw"
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
/system routerboard upgrade
:delay 2s
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
:log info "$SMP routerboard upgrade process was completed, going to reboot in a moment!";
2025-04-12 22:31:55 +02:00
2025-04-15 21:36:49 +02:00
## Set task to send final report on the next boot
/system scheduler add name=BKPUPD-NEXT-BOOT-TASK on-event=":delay 5s; /system scheduler remove BKPUPD-NEXT-BOOT-TASK; :global buGlobalVarScriptStep 3; :global buGlobalVarTargetOsVersion \"$buGlobalVarTargetOsVersion\"; :delay 10s; /system script run BackupAndUpdate;" start-time=startup interval=0
/system reboot;
}
2025-04-15 21:36:49 +02:00
## STEP 3: Final report (after second reboot, with delay).
## Runs only if auto-update is enabled and a new RouterOS version was found.
2025-04-12 22:31:55 +02:00
:if ($scriptStep = 3) do={
2025-04-15 21:36:49 +02:00
:log info ("$SMP The script is in the third step, sending final report.")
2025-04-15 21:36:49 +02:00
:local targetOsVersion $buGlobalVarTargetOsVersion
:do {/system script environment remove buGlobalVarTargetOsVersion} on-error={}
:if ([:len $targetOsVersion] = 0) do={
:log warning "$SMP Something is wrong, the script was unable to get the target updated OS version from the global variable."
}
2025-04-15 21:36:49 +02:00
:local mailStep3Subject $mailSubjectPrefix
:local mailStep3Body ""
2025-04-15 21:36:49 +02:00
:if ($targetOsVersion = $runningOsVersion) do={
:log info "$SMP Successfully verified new RouterOS version: target: `$targetOsVersion`, current: `$runningOsVersion`"
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:set mailStep3Subject ($mailStep3Subject . " - Update completed - Backup created")
:set mailStep3Body ($mailStep3Body . "RouterOS and routerboard upgrade process was completed")
:set mailStep3Body ($mailStep3Body . "\nNew RouterOS version: v.$targetOsVersion, routerboard firmware: v.$deviceRbCurrentFw")
:set mailStep3Body ($mailStep3Body . "\n$changelogUrl\nBackups of the upgraded system are in the attachment of this email.\n\n$mailBodyDeviceInfo\n\n$mailBodyCopyright")
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:set mailAttachments [$FuncCreateBackups $backupNameAfterUpdate $backupPassword $sensitiveDataInConfig];
} else={
:log error "$SMP Failed to verify new RouterOS version: target: `$targetOsVersion`, current: `$runningOsVersion`"
:set mailStep3Subject ($mailStep3Subject . " - Update failed")
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:set mailStep3Body ($mailStep3Body . "The script was unable to verify that the new RouterOS version was installed, target version: `$targetOsVersion`, current version: `$runningOsVersion`\nCheck device logs for more details.\n\n$mailBodyDeviceInfo\n\n$mailBodyCopyright")
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
$FuncSendEmailSafe $emailAddress $mailStep3Subject $mailStep3Body $mailAttachments
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:if ([:len $mailAttachments] > 0) do={
:log info "$SMP Cleaning up backup files from the file system..."
/file remove $mailAttachments;
:delay 2s;
}
2022-11-12 11:30:05 +01:00
2025-04-15 21:36:49 +02:00
:log info "$SMP Final report email sent successfully, and the script has finished."
}
2025-04-12 22:31:55 +02:00
:log info "$SMP the script has finished, script step: `$scriptStep` \n\n"