06-17-2010 06:23 AM - edited 03-11-2019 11:00 AM
Through ASDM i checked the time of our firewall it shows may2003. I want to fix this but i am afraid if i did this asa5510 setting may go away or something else will happen. Does the time matter on firewall and should i change it?
Solved! Go to Solution.
06-17-2010 06:49 AM
Hi,
It is a good idea to have the correct time.
If you're using digital certificates or time-based ACLs or any feature based on time, it is required that the time is set up correctly.
Also very helpful for logging and troubleshooting.
However, it is not mandatory to have the ASA with the right time to have it operational.
Federico.
06-17-2010 06:49 AM
Hi,
It is a good idea to have the correct time.
If you're using digital certificates or time-based ACLs or any feature based on time, it is required that the time is set up correctly.
Also very helpful for logging and troubleshooting.
However, it is not mandatory to have the ASA with the right time to have it operational.
Federico.
06-17-2010 08:32 AM
Yes - dear god change the time or even better find a NTP source to synchronize to. If you ever have to produce your logs in a investigation and your timestamps are out your case (and perhaps your job) will die in the starting gates. Having said that if your log server has the correct time and it stamps the entries, then the device being unsynchronised is just, well, embarassing but not neccesarily carrer limiting.
Digital certificates will also not behave (or some methods of authentication) if the time is not accurate.
06-17-2010 08:48 AM
06-17-2010 09:04 AM
Nothing is going to fail, unless you have digital certificates that expire on a certain time, if the time was wrong and you change it, perhaps the certificates couuld fail.
There are a few time-dependent applications...
If this is not the case, you can change the time with no problems.
Federico.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide