06-09-2016 07:45 AM - edited 03-12-2019 06:02 AM
Hello,
One of my ASAs has a critical error of being out of sync. The weird part... is that my policy can shut off or turn on the time synchronization option and the error goes away, but then says it's another ASA having the time sync problem. If I log in individually to each ASA vid ADSM, all of the times are correct and seem to be syncing from NTP servers properly. Going to VMware vSphere, the time clock seems correct there as well.
So if it's not my policy, and it's not actually off, what is the time synchronization referring to? I appreciate any help!
06-09-2016 08:53 AM
Hi
Are you talking about the ASA-SFR modules or the ASA itself?
If you are talking about the SFR, are you managing it with Firesight? where you see the time sync error?
If that's the case, you need to make sure system policy or platform settings is configured where the SFR sensor is pointing to a NTP server or the Firesight itself.
Rate if helps.
Yogesh
06-09-2016 09:26 AM
I'm inside of the Cisco Firepower Management Center and on the top-right it says a few critical errors based on time synchronization.
I do see some unused platform settings targeting 0 devices, I just have been using a basic health policy. Time synchronization monitoring is turned off though.
On the places where it's asking for time servers, I have:
0.sourcefire.pool.ntp.org, 1.sourcefire.pool.ntp.org, 2.sourcefire.pool.ntp.org, 3.sourcefire.pool.ntp.org
I appreciate your help!
06-09-2016 09:52 AM
You need to configure platform settings policy with time sync pointed to FMC. Then on the system>configuration >time settings and point that to NTP servers which you mentioned is already there.
In the platform settings, include your sensors and then deploy changes. sensors should be able to sync time with FMC.
Rate if helps.
Yogesh
06-09-2016 07:55 PM
i Second that. .
Follow those steps and it'll come right
06-09-2016 10:24 PM
Hello Team,
Here is the reference for the NTP issues techzone :-
http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118626-technote-firesight-00.html
Rate if this answer helps you.
Regards
Jetsy
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide