Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 489 Source: ESE98

Source
Level
Description
<process name> (<process id>) An attempt to open the file "<path to file>" for read only access failed with system error <decimal error code> (<hex error code>): "<error description>". The open file operation will fail with error -1032 (0xfffffbf8).
Comments
 
- Error: 5 - As per Microsoft: "This issue may occur if you do not have the appropriate permissions to the Mdbdata folder to mount the mailbox or the public store". See ME823022 to resolve this problem.
- Error: 3 - See ME817944.

See the link to "EventID 489 from source ESENT" for additional information on this event.
Error 3 = The system cannot find the path specified. - See the link to Error code 3 for some information regarding this type of errors.
Error 32 = The process cannot access the file because it is being used by another process. - If the process is ESEUTIL then you get this because you must dismount the database before running eseutil on it (MSExchangeIS has exclusive access to the priv1.edb while it is mounted). After dismounting, you can run eseutil with switches against the database.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...