Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
A File Server Resource Manager Service email action could not be run because the specified SMTP server is invalid. Use the FSRM management console to specify and test a valid SMTP server.
Running email action.
Handling a file screen audit event.
Processing File Server Resource Manager event
Action type: Email Action
Action name: Email Action0
SMTP server: Email server IP
Mail subject: Unauthorized file matching "Temporary Files" file group detected
Mail message text: The system detected that user Domain\User
attempted to save D:\pptE2.tmp on D:\ on server XXXX. This file matches the "Temporary Files" file group which is not permitted on the system.
File screen path: D:\Data\Shared
Error: IMessage::Send - cdoNTLM 0x80040211
Error: IMessage::Send - cdoAnonymous 0x80040211.
|English: Request a translation of the event description in plain English.|
In my case, this problem appeared because McAfee was blocking port 25.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated