Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
An attempt to connect to host <ip address> for <domain name> was refused.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the role of the Microsoft Exchange Internet Mail Connector service?
As per Microsoft: "When the Internet Mail Service is started, it uses the first outbound mail message to populate these events. The service then uses that domain as the default for all mail that is delivered during the session with the relay host. This procedure decreases the workload of Exchange Server because Exchange Server does not look at the other outbound mail domains of any subsequent outbound mail.
To work around this issue, change the Diagnostics Logging level for SMTP interface events to None."
|Private comment: Subscribers only. See example of private comment|
|Links: ME283255, ME260330|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated