Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The service metabase path '/LM/RESVC/' could not be opened. The data is the error code.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the metabase?
Go to ME277770 and make the registry changes as described. Next, download the "Internet Information Services (IIS) 6.0 Resource Kit Tools" and start the Metabase Explorer. Copy the /LM/IMAP4SVC Key to /LM and give to that Key the Name /RESVC. Change the first entry in the key (Data) to IIsResvcService. After that, start the Microsoft Exchange Routing Engine service.
As per Microsoft: "This issue may occur if the Microsoft Internet Information Services (IIS) metabase entry for the Microsoft Exchange Routing Engine service is removed or becomes corrupted. The routing engine component of Exchange runs under IIS and uses information that is contained in the IIS metabase. Typically, this issue occurs when IIS is removed and reinstalled from a computer that is running Exchange 2003 or Exchange 2000. Additionally, this issue may occur when IIS stops responding or when the Exchange computer is turned off before the IIS shutdown is complete". See ME841576 to fix this problem.
|Private comment: Subscribers only. See example of private comment|
|Links: ME277770, ME841576, Internet Information Services (IIS) 6.0 Resource Kit Tools|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated