Server time drift causes authentication failures

Minimal guidance for messy support realities.

Scenario

Kerberos, MFA, and secure website access all begin failing intermittently because one server is off by several minutes.

Recommended Resolution Path

  1. Identify the authoritative time source and check Windows Time or chrony configuration.
  2. Correct hypervisor time sync conflicts for virtual machines.
  3. Force a resync and monitor whether drift returns after reboot or resume.
  4. Treat recurring time drift as an infrastructure issue, not a one-off nuisance.

Technician Notes

Confirm the business impact, document the root cause, and capture any preventative follow-up in the PSA or client knowledge base.