Domain member time offset from domain controller

Posted on 2011-09-12
Last Modified: 2012-05-12
Hi Experts,

We have some servers that recently joined the domain, some of the servers' time seem to sync with DC fine, while the others just off a minute or so.

The config of these servers is pretty much identical.

Any advice will be appreciated.

Question by:jimmy1829
LVL 59

Expert Comment

by:Darius Ghassem
ID: 36526231
LVL 17

Expert Comment

by:Tony Massa
ID: 36526500
Are these VMs?  Disable the VMTools option to sync with the HOST time.
LVL 10

Accepted Solution

abhijitwaikar earned 250 total points
ID: 36526714
Are these members within +/- 5 minutes range?

By default, the domain controller will broadcast time to all clients. It has a phase offset of +/- five minutes, that you can see within the authoritative time server article below. This phase offset means, if clients are more than or less than 5 minutes off the domain controller time, they will synchronize their time with the server, you can reduce that phase offset on the domain server. That will help your clients keep a little more accurate time.

Author Comment

ID: 36526977
Thanks guys,

These are physical servers, and yes, they are all in +/-5 mins range. Does that mean everything is fine?
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

LVL 17

Expert Comment

by:Tony Massa
ID: 36527064
As long as your servers have the successful W32Time entries, you should be fine

Author Comment

ID: 36527107
Thanks again,

So for the maxallowedphaseoffset setting, do I configure that on the domain controller as a group policy to apply to the proper OU?
LVL 17

Assisted Solution

by:Tony Massa
Tony Massa earned 250 total points
ID: 36527143

I would make sure that you're following best practices in the TechNet article above.  There generally shouldn't be any need to configure any of the client settings unless you have time-sensitive applications.  Make sure that you're servers have the default settings and then make any adjustments you may need.

Author Comment

ID: 36527155
thanks guys, it works like a charm!

Featured Post

Too many email signature changes to deal with?

Are you constantly being asked to update your organization's email signatures? Do they take up too much of your time? Wouldn't you love to be able to manage all signatures from one central location, easily design them and deploy them quickly to users. Well, you can!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Synchronize a new Active Directory domain with an existing Office 365 tenant
The recent Microsoft changes on update philosophy for Windows pre-10 and their impact on existing WSUS implementations.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

911 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now