Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 36874 Source: Schannel

An SSL connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
EV100573 (Why Schannel EventID 36888 / 36874 Occurs and How to Fix It) blog post provides some suggestions on how to fix this issue.
EV100490 (SChannel Errors on SCOM Agent) indicates a situation where this event is generated due to a incompatibility between TLS 1.2 and SHA 512 (Secure Hash Algorithm, a cipher suite component used for ensuring data integrity).
From a newsgroup post: "The error message is expected when a client is using unaccepted cipher bits, or  some crypto protocols has been disabled/unsupported on your server and a client is asking to use one of them. Have you disabled something like PCT in registry? Look at the following articles: ME241447, ME245030, and ME260729".
As per Citrix Document ID: CTX172208, both the client and server must be capable of 128-bit encryption in order to connect through Citrix Secure Gateway. To resolve this issue, install Windows 2000 Service Pack 2 on the Citrix Secure Gateway server, and ensure that the client machine has either Windows 2000 Service Pack 2 or the High Encryption Pack for Windows. See Citrix Document ID: CTX172208 for more details.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.