cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2074
Views
0
Helpful
5
Replies

I'm not sure how I messed up my time synchronization so badly

confused_guy45
Level 1
Level 1

Hello,
One of my ASAs has a critical error of being out of sync. The weird part... is that my policy can shut off or turn on the time synchronization option and the error goes away, but then says it's another ASA having the time sync problem. If I log in individually to each ASA vid ADSM, all of the times are correct and seem to be syncing from NTP servers properly. Going to VMware vSphere, the time clock seems correct there as well.

So if it's not my policy, and it's not actually off, what is the time synchronization referring to? I appreciate any help!

5 Replies 5

yogdhanu
Cisco Employee
Cisco Employee

Hi

Are you talking about the ASA-SFR modules or the ASA itself?

If you are talking about the SFR, are you managing it with Firesight? where you see the time sync error?

If that's the case, you need to make sure system policy or platform settings is configured where the SFR sensor is pointing to a NTP server or the Firesight itself.

Rate if helps.

Yogesh

I'm inside of the Cisco Firepower Management Center and on the top-right it says a few critical errors based on time synchronization.

I do see some unused platform settings targeting 0 devices, I just have been using a basic health policy. Time synchronization monitoring is turned off though.

On the places where it's asking for time servers, I have:
0.sourcefire.pool.ntp.org, 1.sourcefire.pool.ntp.org, 2.sourcefire.pool.ntp.org, 3.sourcefire.pool.ntp.org

I appreciate your help!

You need to configure platform settings policy with time sync pointed to FMC. Then on the system>configuration >time settings and point that to NTP servers which you mentioned is already there.

In the platform settings, include your sensors and then deploy changes. sensors should be able to sync time with FMC.

Rate if helps.

Yogesh

i Second that. .

Follow those steps and it'll come right

Jetsy Mathew
Cisco Employee
Cisco Employee

Hello Team,

Here is the reference for the NTP issues techzone  :-

http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118626-technote-firesight-00.html

Rate if this answer helps you.

Regards

Jetsy 

Review Cisco Networking for a $25 gift card