cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
16275
Views
15
Helpful
4
Replies

Cisco ASA as NTP server

Aknab Aknab
Level 1
Level 1

Is it possible for Cisco ASA FW to become as NTP server?

Due to Security issues can only sync time to Cisco ASA FW.

4 Replies 4

rvarelac
Level 7
Level 7

Hi Aknab, 

 

Checking the latest command reference seems the ASA still only support NTP as client , not server. 

 

http://www.cisco.com/c/en/us/td/docs/security/asa/asa-command-reference/I-R/cmdref2/n.html

 

Hope it helps

-Randy-

Does the ASA have access to an NTP server on a separate interface?  If so, could you not configure a NAT that translates UDP/123 to the local interface of the ASA through to that server?  Twice NAT it so the source comes from the other side of the ASA?

johnlloyd_13
Level 9
Level 9

hi,

to my knowledge, you can't.

see helpful link:

http://ccnpsecuritywannabe.blogspot.com/2013/08/network-time-protocol-ntp-on-asa.html

Ganesh Hariharan
VIP Alumni
VIP Alumni
 
Is it possible for Cisco ASA FW to become as NTP server?

Due to Security issues can only sync time to Cisco ASA FW.
 

 

Hi Aknab,

As far of my understanding ASA can be setup as an NTP client but not as an NTP Master.

Hope it Helps.

-GI

Rate if it Helps

Review Cisco Networking for a $25 gift card