Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The following handles in user profile hive <server>\<user> (S-1-5-21-2897372762-2933521463-2593353803-1006) have been remapped because they were preventing the profile from unloading successfully:
|English: Request a translation of the event description in plain English.|
This event was appearing on our Citrix Server when a user was logging off. The only users it was happening to did not have a Home Folder specified under the Profile in Active Directory. Access to the Citrix Servers local drives was being restricted. Specifying an alternate Home Folder resolved the issue.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated