Description | This article describes how to fix the FortiAuthenticator error 'Miscellaneous failure (see text): Clock skew too great'. |
Scope | FortiAuthenticator. |
Solution |
If similar logs to the following example are seen during debugging, it means there is a mismatch between the DC and FortiAuthenticator. For best results, use the same NTP source on both systems.
Example:
2023-10-31T17:15:08.371209-06:00 Fac winad_mon[1497]: * ADS join for LDAP 1 (pid 2027) exited.
Change the timezone on the FortiAuthenticator and validate the log:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.