Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
Service Performance Logs and Alerts is stopped!
|English: Request a translation of the event description in plain English.|
Any event with the source "EMONSVC" relates to TNT Software's ''Event Log Monitor'' software. This is the source name of their agents deployed to the monitored system(s).
Service SAP Front-End Distribution Service is stopped - In my case, the server which had the error was a SAP Distribution Server, used to distribute packages through an administrative setup to client workstations on the network. The service itself was using a domain-account instead of the local system account on the server. I changed the service to (log on with) local system and once I restarted the service, the problem was solved. Generally, I believe that almost every 900 event is caused by a service, which uses the wrong account to enable or start a service because the account has insufficient permission, is locked out or disabled.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated