Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
An error occurred while ASN.1 was decoding an object (dump reference 674). [child length exceeds given maximum 85 2921 1msev 674 MTA XFER-IN 21 98] (14)
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the role of the Exchange MTA Service?
This behavior can occur when the MTA Open Interval time is set too low. These settings are located in a few places depending on the setup. See ME176489 for more information on how to resolve this problem.
As per Microsoft: "The Zoomit gateway may have sent a message with an improperly encoded content length. Improperly encoded messages may cause the MTA to terminate unexpectedly". See ME151395 to fix this problem.
This behavior indicates a corrupted field in the X.400 P1 message header. You can use the PDU dump reference given in this event to identify the corrupted message in the Bf0.log log file. See ME235534 and MSEX2KDB for more information about this issue.
|Private comment: Subscribers only. See example of private comment|
|Links: ME151395, ME176489, ME235534, MSEX2KDB|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated