Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Comments for event ID 20189 currently in the processing queue.

Note: We have not reviewed this information yet so it is unfiltered, exactly how it was submitted by our contributors.

Event ID: 20189
Event Source: RemoteAccess
Event Type: -
Event Description: -
Comment: Denis Betsi (5/10/2003) and Ionut Marin (11/19/2003) made essentially the same suggestion. In former case, you have to edit registry setting and in the latter case, you can do it from local security policy (GPO) -- much safer.

What is not mentioned in these comments is that this change must be made on Domain Controllers -- all of them. The RRAS server may also be changed but that is not essential. Index: 2505

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...