Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 21251 Source: OnePointOperations

Level
Description
A rule has generated 50 alerts in the last 60 seconds. Usually, when a rule generates this many alerts, it is because the rule definition is misconfigured. Please examine the rule for errors, and also consider creating an event consolidation rule for events that may match the rule.

In order to avoid excessive load on the consolidator, this rule will be temporarily disabled until <date> <time>.

Rule description:
Rule Id:      {<ID>}
Group Id:     {<ID>}
Name:         Error <error code>: <error message>.
Provider Id:  {<ID>}
Provider: <provider>
Criteria:
Provider Name == <provider name>
Source Name == <source name>
Event Number == <value>
Description matches substring [0x012b]
Type:         Event Processing Rule
Alert Level:  30
Res state:    0
Description:  <message>
Owner:        <owner>
Source:       <source>
Cust1:        
Cust2:        
Cust3:        
Cust4:        
Cust5:        
Suppress:    
62 ,50 ,52 ,05 ,01 ,10 ,03 ,55 ,14 ,04 ,08 ,06 ,13
Responses: .
Comments
 
No information available. If you have additional details about this event, please, send them to us!

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...