Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 9202 Source: MSExchangeMTA

Source
Level
Description
A sockets error 0 on an accept() call was detected. The MTA will attempt to recover the sockets connection. Control block index: 1. [BASE IL TCP/IP DRVR 8 256] (12)
Comments
 
As per Microsoft: "This event can occur when there is insufficient bandwidth or there are many network errors. It could be due to heap corruption when two or more threads in the message transfer agent (MTA) try to access the same data structures without proper synchronization". See MSEX2KDB for additional information about this event.
This event indicates a problem with the connectivity over X400 connections. This could be due to network or name resolution problems. See ME193380, ME197378, ME254909 and ME300445 for some of the conditions that may trigger this event. Sometimes this event can occur due to misconfiguation of the remote server. ME276222 describes an occurrence of this event due to a bug in the ExchangeMTA - a fix is available from Microsoft.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...