Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 412 Source: DNS

Source
Level
Description
The DNS server is bound to a large number of IP addresses. Each of these server IP addresses consumes additional system resources and can add a slight increase in performance overhead for DNS query reception. In most cases, you can remove secondary IP addresses that are not required to support server networking hardware. For more information, see "Configuring multihomed servers" in the online Help.
Comments
 
From a newsgroup post: "The event error appears because you are running DNS on your IIS box and each time you add an IP address to the NIC the DNS server service adds it as an address it must listen on. This is because the default setting for DNS is "All IP Addresses". You need to remove extra IP addresses from the DNS server configuration. Follow the following steps and the event error should vanish:
1. Click Start, point to Program Files, point to Administrative Tools, and then click DNS to start the DNS Console.
2. In the DNS Console, right-click the <server name> in the left pane, click Properties, and then click the Interfaces tab.
3. Click "Only the following IP addresses", type the internal IP address of the server that your clients use for DNS resolution and then click Add.
4. Click Apply, and then click OK.
5. Stop, and then restart the DNS Server service".

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...