Samba4 AD 時間同步

Samba4 AD 時間同步

我知道這個問題被問了很多,我已經用谷歌搜尋了好幾天,但到目前為止我找到的解決方案都不起作用。我的問題是這樣的:

Windows 10 工作站未與我的 Samba4 網域控制站同步時間。

我已經驗證 ntpd 正在運行。我按照本文配置了 ntpd 和網域策略: https://wiki.samba.org/index.php/Time_Synchronization

當我以管理員身份執行“net time /domain /set /Y”時,時間同步正確,但自動同步不起作用。

“w32tm /重新同步”返回:“https://wiki.samba.org/index.php/Time_Synchronization

w32tm /query /status 返回:

Leap Indicator: 3(last minute has 61 seconds)
Stratum: 0 (unspecified)
Precision: -23 (119.209ns per tick)
Root Delay: 0.0000000s
Root Dispersion: 0.0000000s
ReferenceId: 0x00000000 (unspecified)
Last Successful Sync Time: unspecified
Source: Local CMOS Clock
Poll Interval: 6 (64s)

w32tm /查詢/設定回傳:

[Configuration]

EventLogFlags: 2 (Policy)
AnnounceFlags: 10 (Policy)
TimeJumpAuditOffset: 28800 (Local)
MinPollInterval: 6 (Policy)
MaxPollInterval: 10 (Policy)
MaxNegPhaseCorrection: 172800 (Policy)
MaxPosPhaseCorrection: 172800 (Policy)
MaxAllowedPhaseOffset: 300 (Policy)

FrequencyCorrectRate: 4 (Policy)
PollAdjustFactor: 5 (Policy)
LargePhaseOffset: 50000000 (Policy)
SpikeWatchPeriod: 900 (Policy)
LocalClockDispersion: 10 (Policy)
HoldPeriod: 5 (Policy)
PhaseCorrectRate: 1 (Policy)
UpdateInterval: 100 (Policy)

FileLogName: c:\temp\time_debug.log (Local)
FileLogEntries: 0-300 (Local)
FileLogSize: 100000 (Local)

[TimeProviders]

NtpClient (Local)
DllName: C:\WINDOWS\SYSTEM32\w32time.DLL (Local)
Enabled: 1 (Local)
InputProvider: 1 (Local)
CrossSiteSyncFlags: 2 (Policy)
AllowNonstandardModeCombinations: 1 (Local)
ResolvePeerBackoffMinutes: 15 (Policy)
ResolvePeerBackoffMaxTimes: 7 (Policy)
CompatibilityFlags: 2147483648 (Local)
EventLogFlags: 0 (Policy)
LargeSampleSkew: 3 (Local)
SpecialPollInterval: 3600 (Policy)
Type: NT5DS (Policy)

我不知道該去哪裡看。

答案1

我剛剛發布了類似的答案超級用戶。簡而言之,我們透過ntpsigndsocket在以下位置添加正確的行來修復它/etc/ntp.conf

ntpsigndsocket  /var/lib/ntp_signd/

套接字路徑可以透過以下方式確定:

% sudo lsof -Un | grep signd
samba       525            root   23u  unix 0x0000000029f51b41      0t0 15061 /var/lib/samba/ntp_signd/socket type=STREAM

我們透過停止時間提供程式服務、重新註冊並再次重新啟動服務來修復 Windows 成員:

net stop w32time
w32tm /unregister
w32tm /register
net start w32time

然後,網域控制器應顯示為w32tm /query /source

mfoley信用和榮譽歸於用戶LinuxQuestions.org。謝謝!

相關內容