Configuring the PDC Emulator to synchronize time with a reliable source
The domain controller holding the PDC Emulator FSMO role in the forest root domain is the authoritative source for time in an Active Directory domain in the default time synchronization hierarchy.
Getting ready
Before a Windows Server installation can synchronize time, the Network Time Protocol (NTP) should be available. By default, NTP is allowed inbound to domain controllers through their Windows Firewalls. However, NTP traffic toward the internet might not be available.
When an organization has deployed a reliable time source within the network, with, for instance, a GPS-enabled network time appliance, then the IP address or the hostname for this appliance can be used to configure the domain controller holding the PDC Emulator FSMO role to synchronize time with a reliable source.
In other scenarios, synchronizing time with a reliable source depends on the availability of a reliable internet-based...