Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The Server service is not started.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the role of the Netlogon share?
Even though you have the Startup Type of the NetLogon service set to automatic, it does not start, and this event is logged. You, or an application install, modified the DependOnService value of the NetLogon service, and failed to include LanmanServer and LanmanWorkstation in the REG_MULTI_SZ data type. See "JSI Tip 2791" for details on solving this problem.
As per Microsoft: "This behavior can occur when the dependent services of the Netlogon service have been changed in the registry and are not configured correctly". See ME284850 to fix this problem.
As per Micosoft: "This behavior can occur when the dependent services of the Netlogon service have been changed from the default values and are not properly configured. You may be unable to access some network resources on the machine because the netlogon service is not started. " How to resolve this issue and for more details see ME269375.
|Private comment: Subscribers only. See example of private comment|
|Links: ME269375, ME284850, JSI Tip 2791|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated