Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The performance counter explain text string value in the registry is incorrectly formatted. The last valid index value is DWORD 0 in the Record Data.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is a DWORD?
This is caused by the use Regedt32.exe to edit a value of type REG_MULTI_SZ that has more than 1, 024 characters in a single string. See ME268486 to troubleshoot this problem.
In my case, applying the suggestions from ME268486 did not fix the problem.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated