<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTDv managed by FMC ntp issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641754#M1091468</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm using FTDv 7 managed by FMC v7. Logging issues are there and there is an error about FTD not synced.&lt;/P&gt;&lt;P&gt;So, first step seems to solve the ntp issues.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;FMC GUI is there for ntp which I set and it seems to be ok, but I cannot find where is the ntp settings for FTD device (I go to FMC, devices, choose the FTD device, ... nothing there)&lt;/P&gt;&lt;P&gt;Also when I SSH to FTD and run ntpd -u ntpserver, it says operation not permitted. I set the time exactly as the same with FMC (with date -s command and copy the same output of date command on SSH session of FMC) but the problem is still there)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any idea?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
    <pubDate>Thu, 30 Jun 2022 17:07:24 GMT</pubDate>
    <dc:creator>mhdganji110</dc:creator>
    <dc:date>2022-06-30T17:07:24Z</dc:date>
    <item>
      <title>FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641754#M1091468</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm using FTDv 7 managed by FMC v7. Logging issues are there and there is an error about FTD not synced.&lt;/P&gt;&lt;P&gt;So, first step seems to solve the ntp issues.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;FMC GUI is there for ntp which I set and it seems to be ok, but I cannot find where is the ntp settings for FTD device (I go to FMC, devices, choose the FTD device, ... nothing there)&lt;/P&gt;&lt;P&gt;Also when I SSH to FTD and run ntpd -u ntpserver, it says operation not permitted. I set the time exactly as the same with FMC (with date -s command and copy the same output of date command on SSH session of FMC) but the problem is still there)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any idea?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2022 17:07:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641754#M1091468</guid>
      <dc:creator>mhdganji110</dc:creator>
      <dc:date>2022-06-30T17:07:24Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641759#M1091469</link>
      <description>&lt;P&gt;check below document help you :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215468-configure-verify-and-troubleshoot-netwo.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/firepower-ngfw/215468-configure-verify-and-troubleshoot-netwo.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2022 17:14:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641759#M1091469</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-06-30T17:14:55Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641764#M1091470</link>
      <description>&lt;P&gt;Already checked it. It is not helping about Virtual FTD managed by FMC (virtual). It's all about physical ones, FXOS, etc.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2022 17:33:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641764#M1091470</guid>
      <dc:creator>mhdganji110</dc:creator>
      <dc:date>2022-06-30T17:33:52Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641839#M1091471</link>
      <description>&lt;P&gt;Let me add that under device, platform setting, I created a FTD policy, added my FTD, set the same NTP server as FMC under the settings and saved and applied the policy to the device. But, the error is still there.&lt;/P&gt;&lt;P&gt;While the date output is exactly the same on FTD and FMC, it syas there is a 54000 seconds offset between the FTD device and its manager&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2022 18:16:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4641839#M1091471</guid>
      <dc:creator>mhdganji110</dc:creator>
      <dc:date>2022-06-30T18:16:09Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642245#M1091481</link>
      <description>&lt;P&gt;I recently saw similar behaviour on a customer deployment and had to change the NTP for the FTD devices to be something different than the FMC. Nothing wrong with pointing the FTD to your domain controllers for example if they have the NTP services enabled, or, pointing even to an external trusted NTP server as long as both the FTDs and the FMC do not have any time skew.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Jul 2022 08:52:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642245#M1091481</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2022-07-01T08:52:27Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642447#M1091492</link>
      <description>&lt;P&gt;It's not recommended to use FMC as the NTP server for managed devices. Use a reliable time server instead.&lt;/P&gt;
&lt;P&gt;I use time.nist.gov for US-based customers (along with a valid DNS setup and making sure outbound ntp traffic is allowed through the firewall).&lt;/P&gt;</description>
      <pubDate>Fri, 01 Jul 2022 14:09:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642447#M1091492</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2022-07-01T14:09:15Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642578#M1091504</link>
      <description>&lt;P&gt;I didn't do that. Both were aimed to use an internal ntp server in the network&lt;/P&gt;</description>
      <pubDate>Fri, 01 Jul 2022 18:40:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642578#M1091504</guid>
      <dc:creator>mhdganji110</dc:creator>
      <dc:date>2022-07-01T18:40:34Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642581#M1091505</link>
      <description>&lt;P&gt;I managed to solve the problem in this way&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Went to FMC and my created FTD policy and chose a timezone (it was blank). Applied it to my FTD and all is ok now.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Jul 2022 18:43:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/4642581#M1091505</guid>
      <dc:creator>mhdganji110</dc:creator>
      <dc:date>2022-07-01T18:43:27Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5078400#M1111603</link>
      <description>&lt;P&gt;I noticed&amp;nbsp;127.0.0.2 is shown to be used on our FTD that is managed via FMC.&amp;nbsp; How can I fix this - the FMC is using and configured for a nist NTP server? Not too familiar with FIrepower in comparison to ASA.&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 12:08:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5078400#M1111603</guid>
      <dc:creator>CiscoBrownBelt</dc:creator>
      <dc:date>2024-04-25T12:08:38Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5078410#M1111605</link>
      <description>&lt;P&gt;Make new post it better&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MHM&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 12:11:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5078410#M1111605</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2024-04-25T12:11:25Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5078417#M1111606</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/124138"&gt;@CiscoBrownBelt&lt;/a&gt; for an FMC-managed FTD appliance, use the platform settings. Devices &amp;gt; Platforms Settings and then edit the settings under the Time Synchronization section to set the clock via NTP from a valid reachable time server. Deploy the change and watch for it to update on FTD - it will take a few minutes to sync and decide to take the NTP server's assertion as valid.&lt;/P&gt;</description>
      <pubDate>Thu, 25 Apr 2024 12:16:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5078417#M1111606</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-04-25T12:16:46Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5079465#M1111664</link>
      <description>&lt;P&gt;Hi Marvin. It is already set for via NTP from Mgmt Center. There is not reachability issues or anything so not sure why it is not listed as the server in "show ntp"?&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2024 12:49:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5079465#M1111664</guid>
      <dc:creator>CiscoBrownBelt</dc:creator>
      <dc:date>2024-04-26T12:49:28Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5079787#M1111686</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/124138"&gt;@CiscoBrownBelt&lt;/a&gt; if your FMC is an FMCv, they don't reliably serve up NTP. That's why we configure the managed devices to go directly to an NTP server.&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2024 16:12:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5079787#M1111686</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-04-26T16:12:02Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5079819#M1111689</link>
      <description>&lt;P&gt;No it is a physical FMC. I know its better to peer directly to a NTP server but for now using this.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Apr 2024 16:30:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5079819#M1111689</guid>
      <dc:creator>CiscoBrownBelt</dc:creator>
      <dc:date>2024-04-26T16:30:35Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5087797#M1112033</link>
      <description>&lt;P&gt;Hi Marvin, although it states:&lt;/P&gt;&lt;P&gt;NTP Server : 127.0.0.2&lt;BR /&gt;Status : Being Used&lt;BR /&gt;Offset : -0.582 (milliseconds)&lt;BR /&gt;Last Update : 13 (seconds)&lt;/P&gt;&lt;P&gt;The time is still correct:&lt;/P&gt;&lt;P&gt;&amp;gt; show time&lt;BR /&gt;UTC - Thu May 2 14:43:14 UTC 2024&lt;BR /&gt;Localtime - Thu May 02 10:43:15 EDT 2024&lt;/P&gt;&lt;P&gt;Shouldn't it not have accurate time?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 May 2024 14:48:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5087797#M1112033</guid>
      <dc:creator>CiscoBrownBelt</dc:creator>
      <dc:date>2024-05-02T14:48:08Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5087884#M1112041</link>
      <description>&lt;P&gt;Time can be accurate without NTP. We use NTP to make it consistently accurate across many devices to ensure that time-dependent services, logs etc. are all in good working order and presenting accurate timestamps.&lt;/P&gt;</description>
      <pubDate>Thu, 02 May 2024 16:16:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5087884#M1112041</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-05-02T16:16:54Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5088918#M1112088</link>
      <description>&lt;P&gt;Right but thing is the FTD has been offline recently and clock was never manually hard coded or anything. Where would it get its accurate time from?&lt;/P&gt;</description>
      <pubDate>Fri, 03 May 2024 15:26:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5088918#M1112088</guid>
      <dc:creator>CiscoBrownBelt</dc:creator>
      <dc:date>2024-05-03T15:26:41Z</dc:date>
    </item>
    <item>
      <title>Re: FTDv managed by FMC ntp issue</title>
      <link>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5088964#M1112092</link>
      <description>&lt;P&gt;A firewall, just like most PCs, has a system clock with an internal battery-power source. It keeps track of time even when the device is powered off. In the absence of an external time source like ntp, that clock can still provide (usually) accurate time.&lt;/P&gt;</description>
      <pubDate>Fri, 03 May 2024 16:17:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftdv-managed-by-fmc-ntp-issue/m-p/5088964#M1112092</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-05-03T16:17:08Z</dc:date>
    </item>
  </channel>
</rss>

