Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 6398 Source: SharePointFoundation

The Execute method of job definition Microsoft.SharePoint.Administration.SPUsageImportJobDefinition (ID f4c89880-b184-42e9-a9c9-1d7786124282) threw an exception. More information is included below.

Access to the path ''C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\14\LOGS'' is denied.
ME2616940 indicates this this issue can occur because of a failed job CEIP Data Collection for SharePoint Foundation. The article provides a workaround.
TE513069 provides a list of potential causes for this event.
According to ME2483007, after the installation of a Windows SBS 2011, this type of errors are benign and may be safely ignored.
After applying the update KB2345322: MS10-072 to the SBS 2011 server we received the Critical events in Application Log. According to EV100257 (SBS 2011 SharePoint Foundation Event ID 6398 Access Denied Every 30 Minutes), the permissions on the Logs folder need to be corrected.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.