Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
MSExchangeIS (344) A read of the database file F:\EXCHSRVR\MDBDATA\PRIV.EDB between offsets 0x0000000B1C7A8000 and 0x0000000B1C7AFFFF succeeded after 1 failed read attempts. The error seen during the failed attempts was -1018. There is a transient software or hardware problem affecting the database drive that must be corrected to preserve database integrity. Contact Microsoft Product Support Services.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the role of the Microsoft Exchange Information Store service?
Who are Microsoft Product Support Services and how to contact them?
Woodrow Wayne Collins
Microsoft recognizes the need for the Exchange Server database engine to retry when -1018 errors are encountered. Exchange Server version 5.5 Service Pack 2 and later versions and service packs are modified so that the Exchange Server database engine retries a maximum of 16 times if a -1018 error is encountered, and then logs an event in the application event log for each retry. Events 200 & 201; Source: ESE97 were created for this purpose. See ME192333, ME812531 and compaq customer advisory link below.
|Private comment: Subscribers only. See example of private comment|
|Links: ME192333, ME812531, Compaq customer advisory|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated