Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 2089 Source: Microsoft-Windows-ActiveDirectory_DomainService

This directory partition has not been backed up since at least the following number of days.

Directory partition:
DC=DomainDnsZones,DC=internal,DC=domain DC=com

'Backup latency interval' (days):

It is recommended that you take a backup as often as possible to recover from accidental loss of data. However if you haven't taken a backup since at least the 'backup latency interval' number of days, this message will be logged every day until a backup is taken. You can take a backup of any replica that holds this partition.

By default the 'Backup latency interval' is set to half the 'Tombstone Lifetime Interval'. If you want to change the default 'Backup latency interval', you could do so by adding the following registry key. 'Backup latency interval' (days) registry key:

System\CurrentControlSet\Services\NTDS\Parameters\Backup Latency Threshold (days)
According to TD941837, you need to ensure that backups are taken more frequently than the backup latency interval. See the article for details.
From a support forum: "Verify your backup settings and make sure to enable Application-Aware Image processing whenever you back up Virtual Machines that run special Windows applications, like Exchange, SharePoint, SQL, DC and others."
See T816584 for details about the backup latency interval.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.