Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 9116 Source: MSExchangeSA

OALGen encountered an error while generating the changes.oab file for differential downloads. Clients will not be able to incrementally update to the new version of the OAL. This is normal if this is the first time this OAL has been generated. There is no previous version for clients to start with. Check other logged events to see if this is a serious error. (\Global Address List)
When you create the new user in Active Directory, the Recipient Update Services is under a heavy load in Exchange Server 2003. Then, you use Microsoft Outlook to download the offline address book. In this situation, Outlook may receive a full download of the offline address book instead of an incremental download. See ME896355 for a hotfix applicable to Microsoft Exchange Server 2003.

See the link to "MSDN Blog" for information about a situation in which this event occurs.
When you try to generate an offline address list on the default Offline Address Lists folder in Exchange 2000 Server, the list may not be generated successfully. When an offline address list is deleted, it stays in the system public folder for seven days. If a new offline address list with the same name is created in this seven-day period, this event is logged. See ME867506 and MSEX2K3DB for other causes and a solution to this problem.
The closest match I found is ME278641, Microsoft says that the problem is corrected and "obtain the latest service pack for Microsoft Exchange 2000 Server".
If for some reason the system folder "OAB version 2" is deleted, the warning it is logged the next time the update is scheduled or rebuilt manually from System Manager/Recipients/Offline Address List. The scheduled update is default daily at 05:00 AM.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.