Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The description for Event ID ( 50015 ) in Source ( IPMGM ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event:
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is a DLL?
What is causing the “The description for Event ID ( … ) in Source ( …. ) cannot be found… “?
On my server, I uninstalled an interface which was used by the RRAS before (as IGMP proxy). This interface was not properly removed. If you look at the registry settings of RemoteAccess (HKLM\CurrentControlSet\Services\RemoteAccess\Interfaces\) you see different numbers. Each of them is one interface. In my case netsh routing ip igmp show interfaces listed one GUID of an interface which was not present anymore. You can compare "InterfaceName" with the list of interfaces at "tcpip\Parameters\Interfaces" (under services, too). After I removed the old interface (deleted the whole number) from RemoteAccess\Interfaces and restarted the server the message was gone.
Removing the IPMGM resolved the problem for me too. Open Routing and Remote Access; Under IP Routing, delete the IGMP protocol completely.
These error occured on my RAS server after I disabled IGMP. They continued until I removed that routing protocol altogether.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated