Ask the Expert

How do we run time sync on our new root DC without disabling our firewall?

We are deploying new servers and PCs and are migrating from NT 4.0 to Windows 2000. We want to run time synchronization on our new root domain controller but we can't even ping the NTP server sites from any machine but our NT4 firewall. How do we get around this without disabling our firewall?

Requires Free Membership to View

You will want to open the NTP port on the firewall to go to a specific IP address. So you would allow traffic originating from your DC, which holds the PDC (primary domain controller) Emulator role to some time server on the Internet via NTP (TPC port 123/udp). Click here for a listing of US Naval Observatory Time Servers.

This was first published in February 2003

There are Comments. Add yours.

TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: