Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 4199 Source: TCPIP

Source
Level
Description
The system detected an address conflict for IP address 0.0.0.0 with the system having network hardware address <MAC>. Network operations on this system may be disrupted as a result.
Comments
 
I had this with an Intel Based server that had dual network cards installed. The cards were teamed and presenting a single IP address but after about 6 weeks we started to get the IP address conflict which turned out to be between the 2 cards themselves. Breaking and recreating the team resolved the issue although only time will tell if this is a permanent fix or whether it will happen again in a few weeks.
You will see this event if Windows detects a duplicate media access control address on the network. See ME164903 for details.
See the link to "EventID 4199 from source Tcpip" for details on this event.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...