Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 10028 Source: Microsoft-Windows-DistributedCOM

Level
Description
DCOM was unable to communicate with the computer msmail.acme.com using any of the configured protocols; requested by PID 1577 (c:\windows\system32\inetsrv\w3wp.exe).
Comments
 
This event indicates a communication problem between the local computer and the one specified in the event. The problem can be caused by several factors:
- remote computer is offline
- the network is experiencing problems (cabling, switches, routers, etc)
- firewalls may block the traffic between the two computers
- the DNS servers may be unavailable or they may provide the wrong IP address for that particular host name

Verify each of the potential issues mentioned above and ensure that they are not blocking the communication between the computers.

In certain cases, the settings of the TCP/IP protocol can affect the network traffic. See the explanations and the adjustments described in EV100428 (Symantec TECH197934).

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...