Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
The Microsoft NNTP Service 5.00.0984 Version: 5.0.2195.1608 Virtual server 1 has been stopped.
|English: Request a translation of the event description in plain English.|
On Windows 2000 Server, disable the NNTP service if it is not going to be used because it fills up the Event Viewer System log file with EventID 420 from source NNTPSVC and EventID 421 from source NNTPSVC. Windows Server 2003 does not normally use this service.
This can be disabled in the "Default Domain Policy". Go to Computer configuration -> Windows Settings -> Security Settings -> System Services and double click Network News Transport Protocol (NNTP). To disable the Network News Transport Protocol service, select the Disabled radio button and click Edit Security. The Administrators, Domain Admins and SYSTEM groups have Full Control. The Everyone group has Read permission only. If the NNTP service is already running, the change will take effect the next time each computer in the domain is restarted.
Occurs when the NNTP (news) service (IIS component) is stopped.
|Private comment: Subscribers only. See example of private comment|
|Links: EventID 420 from source NNTPSVC, EventID 421 from source NNTPSVC|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated