Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The description for Event ID ( 756 ) in Source ( smtpsvc ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: 5.1.1, rfc822;<email address>, <NSYFkuutSgcOrBLSAQV00000026@ns.domain.com>.
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What is a DLL?
What is causing the “The description for Event ID ( … ) in Source ( …. ) cannot be found… “?
Associated with 4000 and 4001 events, this event is generated whenever a bad SMTP address is sent out by, or received by the server. This happened following a server crash and rebuild. The server had previously been configured with Exchange SP3, but the recovery team forgot to reinstall it following system rebuild. Re-application of SP3 seemed to fix the problem.
The description of this event should be similar to event 756 recorded by MSExchangeTransport. SMTPSVC service does not properly register its event message dll.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated