Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Event ID: 9215 Source: MSExchangeMTA

A sockets error 10061 on a connect() call was detected. The MTA will attempt to recover the sockets connection. Control block index: 1. [BASE IL TCP/IP DRVR 8 274] (12)
This event may be logged when you experience mail flow issue. See ME824054 for details on this situation.

See ME152941 and ME154301 for additional information about this event.
As per Microsoft: "This event can occur when there is insufficient bandwidth or there are many network errors. It could be due to heap corruption when two or more threads in the message transfer agent (MTA) try to access the same data structures without proper synchronization. This event has been particularly noted in networks in which many associations are being opened and closed between MTAs. Frequently, these MTA failures are associated with slow and unreliable connections". See MSEX2K3DB for more details on this event.

As per Microsoft: "When setting up the X.400 Connector using TP4, the remote message transfer agent (MTA) address needs to be defined on the X.400 Connector properties Stack tab. This value can be either hexadecimal or text and must match the value defined in the remote MTA. If this value does not match, it generates the invalid argument error and the association to the remote MTA is not made". See ME164400 for more details.
This error indicates that the server that the messages are destined for is either down or cannot be reached on the network. As per a newsgroup post: "This problem is a "Fix" that was introduced in SP3. I would guess that you are running, like we are, a number of X400 connectors on this server. We got lots of 9215 and 9156 errors. Prior to SP2 the MTA would just hang and not recover. Post SP2 it logs these errors and does recover". See ME170056 and ME261251 for more details.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.