Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 137 Source: MSExchangeMTA

A fatal directory error occurred. Change to the maximum logging level for more details. [MTA MAIN BASE 1 15] (16).
As per Microsoft: "The value of the following registry key in the HKEY_LOCAL_MACHINE subtree does not match the corresponding directory entry: System\CurrentControlSet\Services\MSExchangeMTA\Parameters\X500 DN. The wrong Organization or Site name was used when Exchange Server was reinstalled on the server". See ME155027 to solve this problem.

See ME298954 and MSEX2K3DB for additional information on this event.
Check to make sure the Microsoft Exchange directory service is started. The MTA relies on the directory service to properly initialize. See ME170005, ME830828, ME840469, and ME840470 for more details.
MPSS had me run “c:\exchsrvr\dsadata>find /i "ou=" dir.edb |more” to query the DS for the OU info. Then checked this against the HKLM/system/currentcontrolset/services/MSExchangeMTA/Parameters X500 DN String. The /o= should equal the Dir.edb query from the above command. Changed the X500 DN string such that the /o is the same as the above find command.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.