Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
Plugin DSScheduler reports exception.
Data Sources: Cannot open data source.
Additional info: External component has thrown an exception.
|English: Request a translation of the event description in plain English.|
I have found that this error can be caused by a malformed or corrupted e-mail that ends up in the archive of the exchange journaling mailbox which cannot be moved by MARC 3. Possible Solution: Delete or move the oldest e-mails from the mailbox archive and restart the MARC 3 services. This can also happen if a rule has been set up to not allow archiving for a certain folder.
In my case, restarting the GFI MailArchiver v3 service solved the problem.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated