'Database and Web are outside time buffer (15 seconds)' error when starting RSA Identity Governance & Lifecycle
Originally Published: 2018-12-28
Article Number
Applies To
RSA Version/Condition: 7.x
Issue
$ acm status
● aveksa_server.service - Aveksa Server
● aveksa_server.service - Aveksa Server
Loaded: loaded (/etc/systemd/system/aveksa_server.service; enabled; vendor preset: disabled)
Active: failed since Fri 2018-12-28 14:03:06 EST; 3 s ago
Process: 22611 ExecStop=/etc/init.d/aveksa_server stop (code=exited, status=0/SUCCESS)
Process: 23000 ExecStart=/etc/init.d/aveksa_server start (code=exited, status=1/FAILURE)
Main PID: 23000 (code=exited, status=0/SUCCESS)
Active: failed since Fri 2018-12-28 14:03:06 EST; 3 s ago
Process: 22611 ExecStop=/etc/init.d/aveksa_server stop (code=exited, status=0/SUCCESS)
Process: 23000 ExecStart=/etc/init.d/aveksa_server start (code=exited, status=1/FAILURE)
Main PID: 23000 (code=exited, status=0/SUCCESS)
Dec 28 14:02:11 acm-710 su[24315]: aveksa_server [24315]: verifying Oracle and system time match …
Dec 28 14:02:36 acm-710 su[24521]: (to oracle) root on none
Dec 28 14:02:36 acm-710 su[24521]: aveksa_server [24315] Database and Web are outside time buffer ( 15 seconds )
Dec 28 14:03:00 acm-710 su[24686]: aveksa_server [24315] Database: 12-28-2018 14:03:03 -0600 < Web : 12-28-2018 14:04:43 -0600
Dec 28 14:03:00 acm-710 su[24686]: aveksa_server [24315] [ Startup Failed]
Dec 28 14:03:06 acm-710 aveksa_server[23000]: aveksa_server.service: Main process started, code=existed, status=1/FAILURE
Dec 28 14:03:06 acm-710 aveksa_server[23000]: Failed to start Aveksa Server
Dec 28 14:03:06 acm-710 aveksa_server[23000]: aveksa_server.service: Unit entered failed state:
Dec 28 14:03:06 acm-710 aveksa_server[23000]: aveksa_server.service: Failed with result ‘exit-code’:
Dec 28 14:02:36 acm-710 su[24521]: (to oracle) root on none
Dec 28 14:02:36 acm-710 su[24521]: aveksa_server [24315] Database and Web are outside time buffer ( 15 seconds )
Dec 28 14:03:00 acm-710 su[24686]: aveksa_server [24315] Database: 12-28-2018 14:03:03 -0600 < Web : 12-28-2018 14:04:43 -0600
Dec 28 14:03:00 acm-710 su[24686]: aveksa_server [24315] [ Startup Failed]
Dec 28 14:03:06 acm-710 aveksa_server[23000]: aveksa_server.service: Main process started, code=existed, status=1/FAILURE
Dec 28 14:03:06 acm-710 aveksa_server[23000]: Failed to start Aveksa Server
Dec 28 14:03:06 acm-710 aveksa_server[23000]: aveksa_server.service: Unit entered failed state:
Dec 28 14:03:06 acm-710 aveksa_server[23000]: aveksa_server.service: Failed with result ‘exit-code’:
Cause
Resolution
acm-710:~ # ntpq -p
remote refid st t when poll reach delay offset jitter
==============================================================================
perturb.org .INIT. 16 u - 1024 0 0.000 0.000 0.000
The ntpq command also returns the name of the NTP server used by the machine. As a best practice, use the same NTP source for both the Application server and for the Oracle database server wherever possible. This will ensure that both machines are in sync should one of the NTP sources be unreliable.
Workaround
RSA does not recommend working around this issue by adjusting the machine time.
Notes
Related Articles
Envision: Why are we writing to the master database when collecting Microsoft SQL database logs 21Number of Views RSA Identity Governance and Lifecycle RESTful web service response: java.lang.IllegalStateException 276Number of Views Way We Do - SAML My Page SSO Configuration - RSA Ready Implementation Guide 5Number of Views Way We Do - SAML Relying Party Configuration - RSA Ready Implementation Guide 1Number of Views Way We Do - RSA Ready Implementation Guide 4Number of Views
Trending Articles
RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Unable to login to RSA Authentication Manager Security Console as super admin Error Unable to resolve user by login ID and/or alias, or authenticator not assigned to user when attempting to authentica…
Don't see what you're looking for?