Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 14148 Source: MicrosoftISAServerWebProxy

The Web Proxy filter failed to bind its socket to <ip address> port <port number>. This may have been caused by another service that is already using the same port or by a network adapter that is not functional. To resolve this issue, restart the Microsoft Firewall service. The error code specified in the data area of the event properties indicates the cause of the failure.

Data: 0000: 40 27 07 80
See ME925733 for information about this event.
Failure code: 0x80072740 - As per ME284662, this occurs if another program is using the port. After the outgoing Web requests listener is reconfigured, the Web Proxy tries to bind to the port in the new configuration. If that does not work, the Web Proxy returns to the same condition as after a failure during startup, with no port bound and waiting for reconfiguration.

From a newsgroup post: "The most common in your situation is to have IIS listening on the same port. Try to change ISA or IIS port."

From the ISA documentation: "The requested service port is already in use, or data loss may have resulted from a large number of packet collisions on the local network segment. It is also possible that there is a problem with the network interface card (NIC). Check the NIC. Monitor the service that failed for the server and the client, or monitor traffic on your local network." - This was applicable in one case where the external interface configured for ISA was a PPPoE connection. At restart, the connection was not yet established so ISA failed to bind to it. Re-establishing the PPPoE connection fixed this issue.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.