Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
Process MAD.EXE (PID=1632). DSAccess will use the servers from the following list:
The Configuration Domain Controller is set to mcp-dc-01.mcp.mcsenetworks.net.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the role of the Microsoft Exchange Directory service?
What is the role of the Global Catalog?
What is MAD.EXE?
As per MSEX2K3DB, this is an informational event that indicates the DSAccess process will use the named domain controllers, global catalogs, and Config domain controller.
From a newsgroup post: "I had just completed a hardware upgrade of Exchange 2000 server using the upgrade path described in the ME297289 article. The "new" installation was successful. However I had to manually mount the information stores after I restart the server. This happened every time I restarted the server. Once Iíve mounted the stores everything worked like a champ. I was receiving this event along with event 8260 from: MSExchangeAL. After a few days trying to fix this problem I finally called Tech Support only to find that there is a check box EX Sys Manager->storage group->database tab->"do not mount this store at start up" that is checked by default".
Elliott Fields Jr
This message shows which domain controllers will be used by Exchange for Directory Access lookups.
|Private comment: Subscribers only. See example of private comment|
|Links: ME297289, MSEX2K3DB|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated