A
A
Alexey Rudovich2021-05-17 19:00:47
Domain Name System
Alexey Rudovich, 2021-05-17 19:00:47

How to fix time error in AD DS?

I can't figure out how to fix the errors that appeared during the

AD best practices check DC DC: Primary Domain Controller Emulator Master

local
this forest must be configured to correctly synchronize time with a valid time source

DNS configuration: The list of DNS servers on the Ethernet must have a loopback address that does not have to be listed first.

Answer the question

In order to leave comments, you need to log in

2 answer(s)
S
Sasha Odarchuk, 2021-05-17
@Fanta

w32tm.exe /config /manualpeerlist:"ntp1.colocall.net,0x8" /syncfromflags:manual /reliable:yes /update
Useful commands:
1) Apply changes to time service configuration
w32tm /config /update
2) Force sync from source
w32tm /resync /rediscover
3) Display the synchronization status of domain controllers in the domain
w32tm /monitor
4) Display current synchronization sources and their status
w32tm /query /peers
via argon.pro/blog/2010/05/ad-time-sync

A
Alexey Dmitriev, 2021-05-18
@SignFinder

1. A DC with the PDC Emulator role in the forest root domain must have time synchronization with a trusted source.
2. All DCs should have 127.0.0.1 as the second DNS server (unless, of course, it has a DNS server). This is necessary so that the DC starts correctly when there is no connection with other DNS servers.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question