Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 35 Source: W32Time

Source
Level
Description
The time service is now synchronizing the system time with the time source <computer name> (ntp.d|<ip address>:123-><ip address>:123).
Comments
 
This is a very important event from the System event log, where you can see if time synchronization is successful or not. You can also see the IP addresses and ports that the NTP synchronization is using.

If you are experiencing problems with time synchronization please follow the steps below:

1. Click Start, click Run, type cmd, and then press Enter.
2. At the command prompt, type the following commands in the order that they are given. After you type each command, press Enter:
w32tm /config /manualpeerlist:NTP_server_IP_Address, 0x8 syncfromflags:MANUAL
net stop w32time
net start w32time
w32tm /resync
See ME875424 for more details.
This event is also recorded when the computer is powered on.
This event is reported when the net time /setsntp command is run successfully.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...