Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Comments for event ID 2006 currently in the processing queue.

Note: We have not reviewed this information yet so it is unfiltered, exactly how it was submitted by our contributors.

Event ID: 2006
Event Source: InterScan MSS
Event Type: Error
Event Description: An Error occurred while initialize InterScan filters. The InterScan Messaging Security Suite for SMTP service stopped. Please restart the service and check error information in InterScan application log.
Comment: in the ISNTSysmonitor.log we have this line:
"IsntSmtp.exe is not available"

causes: old signature files prevent IMSS to update.

delete all lpt'$ files in the ISNTSmtp directory excepted the two last ones.
Make an update of your IMSS via the administration console
restart the IMSS service.
Event ID: 2006
Event Source: MSExchangeTransport
Event Type: Warning
Event Description: Date and Time: dd/mm/yyyy hh:mm:ss
Log Name: Application
Source: MSExchangeTransport
Event Number: 2006
Level: 2
Logging Computer: <servername>
User: N/A
Send connector {xxxx-2007-SMTP-Internet}: the connection to was disconnected by the remote server.  

Comment: check mail relay in DMZ to see that it is accepting the 2007 HUB as relay.
check that mail relay in DMZ does not have max connections set
check that mail relay in DMZ does not have connection time limits.

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to



Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.