1 comment for event id 6 from source MSExchange CmdletLogs ... Windows Event Log Analysis Splunk App Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. In Event Viewer > Windows Logs > Applications and … Event ID: 3014 Source: Microsoft Search, Category:Gatherer Showing 1-12 of 12 messages. If your organization has multiple Exchange servers, run the following command in the Exchange Management Shell to confirm if the OAuth certificate is present on other Exchange servers: The resolution for me was to completely remove MM for Exchange and then re-install it. Monitor unlimited number of servers at System.Net.Sockets.Socket.DoConnect(EndPoint endPointSnapshot, SocketAddress socketAddress) Hostname: null The Winlogon process terminates unexpectedly and prevents new logins from processing. Hello All, I've just shut down an old exchange 2003 server and I've started to get the following errors on my DC. TCP error code 10061: No connection could be made because the target machine actively refused it 127.0.0.1:890. Event id 6. I recently encountered a mail flow problem between two of my test lab environments that was being caused by the DNS configuration on the receiving server’s network interface. The Windows Server 2008 R2 has the following events in the event viewer. To fix this issue, install Update Rollup 11 for Exchange Server 2010 Service Pack 3. Streaming notifications … In Microsoft Exchange Server 2019 or Exchange Server 2016, EdgeTransport.exe crashes because of a stack overflow exception. —> System.Net.Sockets.SocketException: No connection could be made because the target machine actively refused it 127.0.0.1:890 EventID.Net Subscription. I check event viewer and i found Event ID 1013 " event id 1310 asp.net 4.0 ", i did the following but non of them worked: 1- Copied sharedWebConfig.config file from C:\Program Files\Microsoft\Exchange … The issue is, indeed, related to Symantec Backup Exec and has nothing to do with Exchange. Direct access to Microsoft articles Customized keywords for major search engines Access to premium content Event ID: 6 … System.ServiceModel.EndpointNotFoundException: Could not connect to  net.tcp://localhost:890/Microsoft.Exchange.Directory.TopologyService. This section describes how each type of subscription works in more detail. Running the same as the above in the existing Exchange DAG farm, does not show the new server: Running the same on the new server only outputed itself. Take advantage of dashboards built to optimize the threat analysis process. System.ServiceModel.EndpointNotFoundException: Could not connect to net.tcp://localhost:890/Microsoft.Exchange.Directory.TopologyService. Brought up a new Exchange 2013 server as part of a migration prep. Monitor unlimited number of servers Filter log events Create email and web-based reports. Cmdlet Get-MailboxDatabase, parameters {Server=SERVERNAME}. And The Exchange computer dc03.supertekboy.com does not have Audit Security Privilege on the domain controller dc03.supertekboy.com. Cmdlet Get-User, parameters {Identity=NT AUTHORITY\SYSTEM}. Access to premium content. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. EventID.Net Subscription. 2. "Process **\SAFeService.exe pid (3060) contains signed but untrusted code, but was allowed to perform a privileged operation with a McAfee driver. This is from event viewer: Event 6, MSExchange CmdLetLogs Cmdlet failed. McAfee ePolicy Orchestrator (ePO) 5.x McAfee Security for Domino (MSD) 7.x McAfee Security for Exchange (MSME) 8.x.