Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
|Source: NetOp Host for NT|
|Type: Failure Audit|
NetOp event number 131 on SERVERNAME
The Max Password rejections was reached.
Type= HSECPWLIM! Arg= < >
Codes= 0000 0000
Local logging time <20020604 18:50>
|English: Request a translation of the event description in plain English.|
Elliott Fields Jr
The Maximum amount of login attempts have been reached.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated