internet time sync windows 2008 r2

From workstation point of view to configure a client computer for automatic domain time synchronization: and to check if its syncing: and to re-sync: If therere any errors then these will be written to Event Viewer please check if youre having issues.
To view the time configuration you can use w32tm /query /configuration command.
The computers that are joined to a domain are configured to synchronize from a manual time source.Type the following command and then press enter: w32tm /config /syncfromflags: domhier /update.You may follow the steps to configure a client computer for automatic domain time synchronization.You may find the Group Policy settings used to configure W32Time in the Group Policy Object Editor snap-in in the following locations: Configure Global Configuration Settings here, computer TemplatesSystemWindows Time Service.ServerToSyncFrom should be a reliable ntp time source, probably something from pool.Type the following command to display the time difference between the local computer and a target computer, and then press enter: (without"tion mark) "w32tm /stripchart /computer: m /samples:5 /dataonly.This will ensure that all time in the domain is in sync.Please leave them below!Many other sites exist throughout the world that you can use for time synchronization.If it is a domain member, it will sync time from the Domain Controllers, which in turn sync from the server that holds the PDC Emulator role.
Open UDP port 123 (or a different port you have selected) for incoming NTP traffic.
Type the following command and then press enter: net stop w32time.Open a Command Prompt.Nist provides the Automated Computer Time Service (acts which can set a computer clock with an uncertainty of less than 10 milliseconds.If the clocks between the Kerberos KDC and the clients are out of sync by too much, any Kerberos tickets issues will be considered invalid (I believe 5 minutes is the threshold.) You don't want this to happen, because it will break SSO for file.By default, all machines in the domain will sync time from the domain controller which is the internal time server if you have more than one DC then time will sync from the DC that holds the PDC emulator fsmo role.More reference: How to configure an authoritative time server in Windows Server 2003 m/kb/816042/en-us, windows Time Service Best practices px?Type the following command to configure the PDC emulator and then press enter: (without"tion mark) "w32tm /config /manualpeerlist: m /syncfromflags:manual /reliable:yes /update".