Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
|Source: Central Quarantine|
A general error was detected with Central Quarantine. [Error Connecting to Gateway - Unable to connect to the Gateway] Quarantine Server: <server> Address: <ip adress> DNS name: <server>.<domain>.com download: QServer cannot connect to the gateway to download definitions. Ensure QServer has access to an adequate Internet connection.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is the role of a DNS server?
As per Symantec: "Central Quarantine is working as designed. If the Digital Immune System servers are busy when Central Quarantine tries to contact them, they request that Central Quarantine try to contact it again later. When that happens, Central Quarantine logs this message and then tries again at a later time". See the link to Symantec Knowledge Base for more details.
|Private comment: Subscribers only. See example of private comment|
|Links: Symantec Knowledge Base|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated