The following table summarizes the ISA Server predefined alert definitions.
|
Alert definition
|
Description
|
Event
|
Additional conditions
|
|---|
|
Access to Configuration Storage server is blocked (Enterprise Edition only)
|
As a result of changes made to the configuration, access to the Configuration Storage server is blocked.
|
Access to Configuration Storage server is blocked
|
Any connection failure
|
|
Account name resolution failed (Enterprise Edition only)
|
The Configuration Agent is unable to resolve the account specified for administration.
|
Account name resolution failed
|
None
|
|
Alert action failure
|
The action associated with this alert fails.
|
Alert action failure
|
None
|
|
Application filter not registered
|
The application filter is not registered on this server.
|
Application filter not registered
|
None
|
|
Array member status verification failed (Enterprise Edition only)
|
Array member status verification failed. Virtual private network (VPN) tunnels may not be established.
|
Array member status verification failed
|
None
|
|
Array member status verification succeeded (Enterprise Edition only)
|
ISA Server successfully verified the array member's status. VPN tunnels can be established.
|
Array member status verification succeeded
|
None
|
|
Array-level policy rule was deleted (Enterprise Edition only)
|
The enterprise policy does not permit some types of array-level policy rules.
|
Array-level policy rule was deleted
|
None
|
|
Broken reference in cross-array configuration (Enterprise Edition only)
|
The ISA Server Control service detected a reference to a rule element that does not exist in a Web publishing rule defined in an array.
|
Broken reference in cross-array configuration
|
None
|
|
Cache container initialization error
|
The cache container initialization fails, and the container is ignored.
|
Cache container initialization error
|
None
|
|
Cache container recovery complete
|
The recovery of a single container is complete.
|
Cache container recovery complete
|
Any
|
|
Cache file resize failure
|
The operation to reduce the size of the cache file fails.
|
Cache file resize failure
|
None
|
|
Cache initialization failure
|
The Web cache proxy is disabled because of global failure.
|
Cache initialization failure
|
None
|
|
Cache permissions insufficient
|
When you configure a drive for caching, a cache file, Dir1.cdat, is created in the drive:\urlcache folder. This alert definition indicates that the Network Services account does not have sufficient permissions for the root folder and the Urlcache folder on one or more cache drives. Verify that the Network Services account has at least List Folder and Read permissions for the root folder, and Read permission for the Urlcache folder on all cache drives.
|
Cache permissions insufficient
|
None
|
|
Cache restoration completed
|
The cache content restoration is complete.
|
Cache restoration completed
|
Any
|
|
Cache write error
|
There is a failure in writing content to the cache.
|
Cache write error
|
None
|
|
Cached object discarded
|
During cache recovery, an object with conflicting information is detected. The object is ignored.
|
Cached object ignored
|
None
|
|
Certificate on ISA Server about to expire
|
A certificate on ISA Server is nearing its expiration date.
|
Certificate on ISA Server about to expire
|
None
|
|
Certificate on ISA Server invalid
|
There is a validity problem with a certificate used by ISA Server to establish a Secure Sockets Layer (SSL) connection with a client.
|
Certificate on ISA Server invalid
|
None
|
|
Code page invalid
|
One or more code pages are invalid, or the applicable conversion tables are not installed.
|
Code page invalid
|
None
|
|
Component load failure
|
There is a failure to load an extension component.
|
Component load failure
|
Any component
|
|
Compression by unsupported method
|
A response compressed by an unsupported method (indicated in the HTTP Content-Encoding header) was received. ISA Server only supports GZIP compression.
|
Compression by unsupported method
|
None
|
|
Compression failure
|
ISA Server failed to compress the content of a response.
|
Compression failure
|
None
|
|
Compression failure (allocated memory exhausted)
|
The compression filter cannot handle a response because the memory allocated for compression is in use.
|
Compression failure (allocated memory exhausted)
|
None
|
|
Compression failure (decompression failed)
|
ISA Server was unable to decompress the content of a response.
|
Compression failure (decompression failed)
|
None
|
|
Compression failure (filter misconfiguration)
|
The compression filters are configured incorrectly. Both filters must be in the same state, either enabled or disabled.
|
Compression failure (filter misconfiguration)
|
None
|
|
Concurrent TCP connection from one IP address limit exceeded
|
The number of concurrent TCP connections allowed from an IP address is exceeded.
|
Per-client network traffic limit
Concurrent TCP connections from one IP address
|
Concurrent TCP connections from one IP address limit exceeded
|
|
Configuration Agent removed overlapping ranges (Enterprise Edition only)
|
The ISA Server Configuration Agent has removed ranges from the included enterprise network, because they overlap with another array network.
|
Configuration Agent removes overlapping ranges
|
None
|
|
Configuration changes cannot be loaded by ISA Server services (Enterprise Edition only)
|
ISA Server fails to load the new configuration. When a new configuration is saved, ISA Server will renew its attempt to apply the changes.
|
Configuration changes cannot be loaded by ISA Server services
|
None
|
|
Configuration changes overload (Enterprise Edition only)
|
Continuous or excessive changes to the configuration are detected. This may indicate an attack on the Configuration Storage server.
|
Configuration changes overload
|
None
|
|
Configuration error
|
An error occurs while reading configuration information.
|
Configuration error
|
None
|
|
Connection limit exceeded
|
A user or an IP address exceeds its connection limit.
|
Connection limit exceeded
|
None
|
|
Connection limit for a rule was exceeded
|
The number of connections per second allowed for a rule is exceeded.
|
Connection limit for a rule was exceeded
|
None
|
|
Credentials delegation failure
|
ISA Server attempts to delegate credentials but the published Web site rejects the credentials.
|
Credentials delegation failure
|
None
|
|
Credentials delegation using Kerberos constrained delegation failure
|
ISA Server fails to delegate credentials using Kerberos constrained delegation to a published Web site.
|
Credentials delegation using Kerberos constrained delegation failure
|
None
|
|
Cross-array link translation configuration inconsistency (Enterprise Edition only)
|
Cross-array link translation includes this array. However, link translation is disabled at the array level. Links to this array will not be translated and will be broken.
|
Cross-array link translation configuration inconsistency
|
None
|
|
Denied connections per minute from one IP address limit exceeded
|
The number of denied connections per minute allowed from one IP address is exceeded.
|
Per-client network traffic limit
|
Denied connections per minute from one IP address limit exceeded
|
|
DHCP anti-poisoning intrusion detection disabled
|
The Dynamic Host Configuration Protocol (DHCP) anti-poisoning intrusion detection mechanism is disabled.
|
DHCP anti-poisoning intrusion detection disabled
|
None
|
|
Dial-on-demand failure
|
There is a failure to create a dial-on-demand connection, because there is no answer or the line is busy.
|
Dial-on-demand failure
|
None
|
|
DNS intrusion
|
A host name overflow, length overflow, or zone transfer attack occurs.
|
DNS intrusion
|
All DNS intrusions
|
|
DNS zone transfer intrusion
|
A zone transfer attack occurs.
|
DNS intrusion
|
DNS zone transfer intrusions
|
|
Event log failure
|
There is a failure to log the event information to the system event log. This alert is disabled by default.
|
Event log failure
|
None
|
|
Firewall communication failure
|
There is a failure in communication between the Firewall client and the ISA Server service.
|
Client/server communication failure
|
None
|
|
Free disk space limit exceeded
|
The free disk space limit for log storage is exceeded.
|
Log storage limits
|
Free disk space limit exceeded
|
|
FTP filter initialization warning
|
The File Transfer Protocol (FTP) filter fails to parse the allowed FTP commands. Verify that the commands are stored in the correct format. Each command should be no more than four characters, and each command should be separated from the previous one with a space character.
|
FTP filter initialization warning
|
None
|
|
Global denied packets rate limit
|
The number of denied TCP and non-TCP packets per second exceeds the allowed limit.
|
Global denied packets rate limit
|
None
|
|
Host ID assigned to this server is not valid (Enterprise Edition only)
|
This server has the same host ID as another server. This is not a valid configuration. A valid host ID is unique to each server in the array, within the range 2–32. The Firewall service cannot start until the server is assigned a valid host ID.
|
Host ID assigned to this server is not valid
|
None
|
|
HTTP requests from one IP address limit exceeded
|
The number of HTTP requests per minute from one IP address exceeds the specified limit.
|
Per-client network traffic limit
|
HTTP requests from one IP address limit exceeded
|
|
Intra-array configuration error (Enterprise Edition only)
|
The ISA Server intra-array configuration is invalid.
|
Intra-array configuration error
|
None
|
|
Intrusion detected
|
An intrusion is attempted by an external user.
|
Intrusion detected
|
Any intrusion
|
|
Invalid configuration settings
|
Configuration settings cannot be applied.
|
Invalid configuration settings
|
Any failure
|
|
Invalid CRL found
|
A client certificate is revoked due to an invalid or missing certificate revocation list (CRL). The CRL may have expired, and ISA Server is unable to download a valid CRL. Verify that the CRL download system policy configuration group is enabled, and that there is connectivity to the CRL distribution points.
|
Invalid CRL found
|
None
|
|
Invalid DHCP offer
|
The DHCP offer IP address is not valid.
|
Invalid DHCP offer
|
None
|
|
Invalid dial-on-demand credentials
|
Invalid dial-on-demand credentials are detected.
|
Invalid dial-on-demand credentials
|
None
|
|
Invalid network adapter configuration
|
The network adapter is configured with several IP addresses that belong to several networks. This is an illegal configuration.
|
Invalid network adapter configuration
|
None
|
|
IP spoofing
|
The IP packet source address is not valid.
|
IP spoofing
|
None
|
|
ISA Server cannot connect to the Configuration Storage server (Enterprise Edition only)
|
ISA Server cannot connect to the Configuration Storage server. The configuration, currently stored on the local computer, remains in effect.
|
ISA Server cannot connect to the Configuration Storage server
|
None
|
|
ISA Server computer restart is required
|
Changes made to the configuration only take effect after restarting the computer.
|
ISA Server computer restart is required
|
None
|
|
ISA Server computer switched Configuration Storage servers (Enterprise Edition only)
|
ISA Server switches from one Configuration Storage server to the other due to a change in the configuration, connectivity issues, or Configuration Storage server availability.
|
ISA Server computer switched Configuration Storage servers
|
Any reason for switching between servers
|
|
ISA Server VPN tunnel redistribution is recommended (Enterprise Edition only)
|
The VPN tunnels are not distributed evenly among the ISA Server computers in the array.
|
ISA Server VPN tunnel redistribution is recommended
|
None
|
|
LDAP server recovered
|
The connection to the LDAP server is restored.
|
LDAP server recovered
|
None
|
|
LDAP server unavailable
|
The LDAP server requested did not respond.
|
LDAP server unavailable
|
None
|
|
Link translation configuration insecure
|
The Web listener used in a Web publishing rule specifies an HTTP connection to clients, but the rule is configured with an HTTPS connection to the published server or Web farm. HTTPS links will be translated to HTTP links.
|
Link translation configuration insecure
|
None
|
|
Link translation configuration invalid
|
One or more link translation mappings are invalid. Link translation mappings must be between 4 and 2,057 bytes. Invalid mappings are ignored.
|
Link translation configuration invalid
|
None
|
|
Link translation redirection unpublished site contains invalid character
|
The URL of a site specified in the list of unpublished sites for link translation redirection contains one or more non-ANSI characters.
|
Link translation redirection unpublished site contains invalid character
|
None
|
|
Link translation redirection unpublished site length invalid
|
The length of the URL for a site specified in the list of unpublished sites for link translation redirection is invalid.
|
Link translation redirection unpublished site length invalid
|
None
|
|
Local NLB configuration change
|
The Microsoft Firewall service identifies changes to the local Network Load Balancing (NLB) configuration or state. Changes to the NLB configuration or state are supported only through the ISA Server administrator. Any local changes will be overridden.
|
Local NLB configuration change
|
None
|
|
Log deletion failure
|
Log deletion, according to configuration, fails.
|
Log deletion failure
|
None
|
|
Log failure
|
One of the service logs fails.
|
Log failure
|
Any ISA Server service
|
|
Log storage limits
|
One or more of the log storage limits is reached.
|
Log storage limits
|
Any
|
|
Logging resumed
|
One of the services resumes logging following a previous failure.
|
Logging resumed
|
Any ISA Server service
|
|
Low non-paged pool
|
The size of the free non-paged pool fell below the system-defined minimum.
|
Low non-paged pool
|
None
|
|
Low non-paged pool recovered
|
The size of the free non-paged pool exceeds the system-defined minimum.
|
Low non-paged pool recovered
|
None
|
|
Misconfigured alert
|
An alert definition contains an invalid property.
|
Misconfigured alert
|
None
|
|
Network configuration changed
|
A network configuration change that affects ISA Server is detected.
|
Network configuration changed
|
Any network configuration change
Network interface card (NIC) enabled
NIC disabled
IP added or removed
Network connected
Network disconnected
Network addresses modified
|
|
NLB configuration failure
|
There is a failure to configure Network Load Balancing to work with ISA Server.
|
NLB configuration failure
|
None
|
|
NLB inconsistent configuration detected (Enterprise Edition only)
|
Network Load Balancing inconsistency is found on some networks. Traffic might not be routed properly.
|
NLB inconsistent configuration detected (Enterprise Edition only)
|
None
|
|
NLB is draining and stopping (Enterprise Edition only)
|
Network Load Balancing is draining and stopping due to a request by the administrator.
|
NLB is draining and stopping (Enterprise Edition only)
|
None
|
|
NLB possible reduced load balancing performance (Enterprise Edition only)
|
Network Load Balancing performance may be impaired due to a failure to resolve a Web server name.
|
NLB possible reduced load balancing performance (Enterprise Edition only)
|
None
|
|
NLB shutdown - Firewall service not responding (Enterprise Edition only)
|
Network Load Balancing on the local computer is stopped because the Firewall service has stopped responding.
|
NLB shutdown - Firewall service not responding (Enterprise Edition only)
|
None
|
|
NLB shutdown - Firewall service stopped (Enterprise Edition only)
|
Network Load Balancing on the local computer is stopped because the Firewall service is stopped.
|
NLB shutdown - Firewall service stopped (Enterprise Edition only)
|
None
|
|
NLB started (Enterprise Edition only)
|
Network Load Balancing on the local computer is started.
|
NLB started (Enterprise Edition only)
|
None
|
|
NLB stopped - configuration failure (Enterprise Edition only)
|
The Firewall service fails to apply Network Load Balancing configuration. NLB on the local computer will be disabled.
|
NLB stopped - configuration failure (Enterprise Edition only)
|
None
|
|
NLB stopped - network adapter problem (Enterprise Edition only)
|
There is no suitable network adapter for Network Load Balancing on some networks. NLB on the local computer will be stopped.
|
NLB stopped - network adapter problem (Enterprise Edition only)
|
None
|
|
NLB stopped - NLB integration is unavailable (Enterprise Edition only)
|
Network Load Balancing integration cannot be configured on this server.
|
NLB stopped - NLB integration is unavailable (Enterprise Edition only)
|
None
|
|
NLB stopped - RRAS service not responding (Enterprise Edition only)
|
Network Load Balancing on the local computer is stopped because Routing and Remote Access is not responding.
|
NLB stopped - RRAS service not responding (Enterprise Edition only)
|
None
|
|
NLB stopped - VPN static address pool is empty (Enterprise Edition only)
|
Network Load Balancing on the local computer is stopped because the VPN static address pool on this computer is empty.
|
NLB stopped - VPN static address pool is empty (Enterprise Edition only)
|
None
|
|
NLB stopped manually (Enterprise Edition only)
|
Network Load Balancing on the local computer is stopped manually by the administrator.
|
NLB stopped manually (Enterprise Edition only)
|
None
|
|
No available ports
|
Network sockets are not created because there are no available ports.
|
No available ports
|
None
|
|
No connectivity
|
ISA Server fails to establish a connection to the requested server.
|
No connectivity
|
None
|
|
Non-TCP sessions from one IP address limit exceeded
|
The number of non-TCP sessions allowed from one IP address is exceeded.
|
Per-client network traffic limit
|
Non-TCP sessions from one IP address limit exceeded
|
|
OS component conflict
|
There is a conflict with one of the operating system components: IP network address translation (NAT) editor, Internet Connection Sharing (ICS), or Routing and Remote Access.
|
Operating system component conflict
|
Any operating system component conflict
|
|
Oversized UDP packet
|
ISA Server drops a User Datagram Protocol (UDP) packet because it exceeds the maximum UDP packet size. For more information, see the ISA Server COM property: UdpBufferSize.
|
Oversized UDP packet
|
None
|
|
Pending DNS requests resource usage limit exceeded
|
The percentage of threads used for pending Domain Name System (DNS) requests out of the total number of available threads exceeds the system-defined maximum.
|
Pending DNS requests resource usage limit exceeded
|
None
|
|
Pending DNS requests resource usage limit within limits
|
The percentage of threads used for pending DNS requests out of the total number of available threads is now below the system-defined maximum, and connections that require DNS name resolution can be accepted.
|
Pending DNS requests resource usage limit within limits
|
None
|
|
POP intrusion
|
A Post Office Protocol (POP) buffer overflow is detected.
|
POP intrusion
|
None
|
|
Propagate configuration change failed (Enterprise Edition only)
|
A change to the configuration in the central storage cannot be propagated to the ISA Server computer.
|
Propagate configuration change failed
|
None
|
|
Published server certificate expiration warning
|
A certificate on a server published by ISA Server is nearing its expiration date.
|
Published server certificate expiration warning
|
None
|
|
Published Web server name not resolvable
|
ISA Server cannot resolve the name of a published Web server. All requests handled by the Web published rule will be denied.
|
Published Web server name not resolvable
|
None
|
|
Quarantined VPN Clients network changes
|
A user is removed from the Quarantined VPN Clients network. This alert is disabled by default.
|
Quarantined VPN Clients network changes
|
Quarantined user changed state
|
|
RADIUS server recovered
|
The connection to the RADIUS server was restored.
|
RADIUS server recovered
|
None
|
|
RADIUS server unavailable
|
The RADIUS server requested did not respond.
|
RADIUS server unavailable
|
None
|
|
Report summary generation failure
|
An error is received while generating a report summary from log files.
|
Report summary generation failure
|
None
|
|
Resource allocation failure
|
There is a resource allocation failure. For example, the system is out of memory.
|
Resource allocation failure
|
None
|
|
Revert to last known configuration failed (Enterprise Edition only)
|
The ISA Server Configuration Agent is unable to revert to the last known configuration.
|
Revert to last known configuration failed (Enterprise Edition only)
|
None
|
|
Revert to last known configuration succeeded (Enterprise Edition only)
|
The ISA Server Configuration Agent successfully reverts the configuration.
|
Revert to last known configuration succeeded (Enterprise Edition only)
|
None
|
|
Routing (chaining) failure
|
ISA Server fails to route the request to an upstream server.
|
Routing (chaining) failure
|
None
|
|
Routing (chaining) recovery
|
ISA Server resumes routing to an upstream server.
|
Routing (chaining) recovery
|
None
|
|
RPC filter - bind failure
|
A remote procedure call (RPC) filter cannot use the defined port because it is already in use.
|
RPC filter - bind failure
|
None
|
|
RPC filter - connectivity changed
|
The connectivity to the publishing RPC service <server name> changed. <additional key>
|
RPC filter - connectivity changed
|
Any
|
|
Server publishing failure
|
The server publishing rule is configured incorrectly.
|
Server publishing failure
|
Incorrect rule configuration
|
|
Server publishing is not applicable
|
The server publishing rule cannot be applied.
|
Server publishing is not applicable
|
Rule cannot be applied
|
|
Server publishing recovery
|
The server publishing rule can now be applied.
|
Server publishing recovery
|
None
|
|
Service initialization failure
|
There is a service initialization failure.
|
Service initialization failure
|
Any ISA Server service
|
|
Service not responding
|
An ISA Server service terminates or stops functioning unexpectedly.
|
Service not responding
|
Any ISA Server service
|
|
Service shutdown
|
A service stops properly. <%service name%>
|
Service shutdown
|
Any ISA Server service
|
|
Service started
|
A service starts properly. <%service name%>
|
Service started
|
Any ISA Server service
|
|
Slow connectivity
|
ISA Server encounters a slow connection to the requested server.
|
Slow connectivity
|
None
|
|
SMTP filter encountered an invalid bare CR or LF
|
Bare carriage return/line feed (CR/LF) may pose a security risk. The connection has been terminated.
|
SMTP filter event
|
Bare CR/LF terminator
|
|
SMTP filter encountered an invalid DATA terminator
|
Some character combinations in DATA may pose a security risk. The connection has been terminated.
|
SMTP filter event
|
Invalid DATA termination
|
|
SMTP filter event
|
A Simple Mail Transfer Protocol (SMTP) command rule is violated.
|
SMTP filter event
|
Any
|
|
SOCKS configuration failure
|
The port specified in SOCKS properties is in use by another protocol.
|
SOCKS configuration failure
|
None
|
|
SSL connection failure with published server (name mismatch)
|
ISA Server failed to establish an SSL connection with a published server. There is a name mismatch.
|
SSL connection failure with published server
|
None
|
|
SSL connection failure with published server (no trust)
|
ISA Server failed to establish an SSL connection with a published server. There is a domain trust issue.
|
SSL connection failure with published server (no trust)
|
None
|
|
SSL connection failure with published server (server certificate not valid)
|
ISA Server failed to establish an SSL connection with a published server. A server certificate is not valid.
|
SSL connection failure with published server (server certificate not valid)
|
None
|
|
SSL connection failure with published server (unknown reason)
|
ISA Server failed to establish an SSL connection with a published server.
|
SSL connection failure with published server (unknown reason)
|
None
|
|
SYN attack
|
ISA Server detects a SYN attack.
|
SYN attack
|
None
|
|
TCP connections per minute from one IP address limit exceeded
|
The number of TCP connections per minute allowed from one IP address is exceeded.
|
Per-client network traffic limit
|
TCP connections per minute from one IP address limit exceeded
|
|
The Configuration Agent has restored its connection with the Configuration Storage server (Enterprise Edition only)
|
The Configuration Agent restores its connection to the Configuration Storage server. Changes made during the disconnection time are now be applied to the service.
|
The Configuration Agent has restored its connection with the Configuration Storage server
|
None
|
|
The configuration was reloaded (Enterprise Edition only)
|
The configuration reloads. The Configuration Agent recovers from the error and successfully reloads the configuration information.
|
The configuration was reloaded
|
None
|
|
The response was rejected because a compressed response was not requested
|
The response was rejected because a compressed response was not requested. ISA Server blocks compressed HTTP responses when it does not request compression.
|
The response was rejected because a compressed response was not requested
|
None
|
|
Total log size limit exceeded
|
The log storage total size limit is exceeded.
|
Log storage limits
|
Total log size limit exceeded
|
|
Undefined account for intra-array authentication (Enterprise Edition only)
|
For intra-array authentication when array members are in a workgroup, the intra-array account must be defined and enabled. Some features, such as VPN, Cache Array Routing Protocol (CARP), and reporting, will not work unless the intra-array account is properly configured.
|
Undefined account for intra-array authentication
|
None
|
|
Unregistered event
|
An unregistered event is raised.
|
Unregistered event
|
None
|
|
Unresolvable remote gateway address on a VPN network
|
A remote gateway address specified for a VPN site-to-site network cannot be resolved. As a result, a VPN connection cannot be established to the remote network. In ISA Server 2006 Enterprise Edition, if the network used for the VPN connection from the remote server is enabled for NLB, VPN traffic may be picked up by the wrong array member, and not by the intended server.
|
Unresolvable remote gateway address on a VPN network
|
None
|
|
Unresolvable server name
|
A server name cannot be resolved to an IP address.
|
Unresolvable server name
|
None
|
|
Upload new configuration to services failed (Enterprise Edition only)
|
The ISA Server Configuration Agent is unable to upload the configuration to the ISA Server services.
|
Upload new configuration to services failed (Enterprise Edition only)
|
None
|
|
Upstream chaining credentials
|
The upstream chaining credentials are incorrect.
|
Upstream chaining credentials
|
None
|
|
VPN connection failure
|
VPN client connection attempt fails.
|
VPN connection failure
|
None
|
|
Web farm servers unavailable
|
A Web published rule stopped forwarding requests to a Web farm because there are currently no servers in the Web farm that can accept requests.
|
Web farm servers unavailable
|
None
|
|
Web filter not registered
|
The Web filter is not registered on this server.
|
Web filter not registered
|
None
|
|
Windows NLB is not installed (Enterprise Edition only)
|
Network Load Balancing is not installed on this computer. NLB configuration cannot be applied or monitored.
|
Windows NLB is not installed (Enterprise Edition only)
|
None
|
|
Windows user-based policy in workgroup (Enterprise Edition only)
|
The applied policy contains one or more policy rules specifying Windows-based user authentication. The ISA Server array is in a workgroup. Windows-based user authentication cannot be applied to an ISA Server array in a workgroup.
|
Windows user authentication in workgroup
|
None
|
|
WMI service connection was lost (Enterprise Edition only)
|
The connection to the Microsoft Windows® Management Instrumentation (WMI) service was lost. For NLB to function properly, a continuous connection to the WMI service is required. To ensure proper NLB functionality, do the following: Stop NLB by typing NLB stop at a command prompt. Then stop the Firewall service. Verify that the WMI service is running, and then restart the Firewall service. When the Firewall service is restarted, NLB will restart.
|
WMI service connection was lost
|
None
|