This Rule generates alerts when While restoring cache data, objects with conflicting information were detected
Windows user-based authentication is required for the applied policy. However, ISA Server is installed in a workgroup environment and Windows authentication cannot be performed in a workgroup environment.
One or more policy rules require Windows-based user authentication. The rule is either an array-level rule, or an enterprise-level rule.
ISA Server is installed in a workgroup environment. In a workgroup environment, Windows-based user authentication is available only for a single-server array, and when the Configuration Storage Server is installed locally on the ISA Server computer.
To resolve this problem, do one of the following:
If the rule with Windows users is an enterprise rule, apply a different enterprise policy to this array.
Delete or disable the rule with Windows based users.
Remove the user set with the Windows users from the rule.
Remove the Windows users from the user set (in case there are other users in the set, like Radius users).
Join the ISA Server array to the Windows domain.
For a single-server array, install the Configuration Storage Server locally on the ISA server computer.
Target | Microsoft.ISAServer.2006.VPN.ServerRole |
Category | EventCollection |
Enabled | True |
Alert Generate | False |
Remotable | True |
ID | Module Type | TypeId | RunAs |
---|---|---|---|
DS | DataSource | Microsoft.ISAServer.2006.Rule.AlertGenerate.DS | Default |
WA | WriteAction | Microsoft.ISAServer.2006.Rule.AlertGenerate.WA | Default |
<Rule ID="Microsoft.ISAServer.2006.While_restoring_cache_data_objects_with_conflicting_information_were_detected.Rule" Enabled="onEssentialMonitoring" Target="Microsoft.ISAServer.2006.VPN.ServerRole" ConfirmDelivery="true" Remotable="true" Priority="Normal" DiscardLevel="100">
<Category>EventCollection</Category>
<DataSources>
<DataSource ID="DS" TypeID="Microsoft.ISAServer.2006.Rule.AlertGenerate.DS">
<ComputerName>$Target/Host/Property[Type="Windows!Microsoft.Windows.Computer"]/NetworkName$</ComputerName>
<LogName>Application</LogName>
<EventsPattern>^(14169)$</EventsPattern>
<EventType>2</EventType>
<SourcePattern>Microsoft ISA Server Web Proxy</SourcePattern>
</DataSource>
</DataSources>
<WriteActions>
<WriteAction ID="WA" TypeID="Microsoft.ISAServer.2006.Rule.AlertGenerate.WA">
<AlertMessageId>$MPElement[Name="Microsoft.ISAServer.2006.While_restoring_cache_data_objects_with_conflicting_information_were_detected.AlertMessage"]$</AlertMessageId>
<DomainName>$Target/Host/Property[Type="Windows!Microsoft.Windows.Computer"]/DomainDnsName$</DomainName>
<Priority>1</Priority>
<Severity>2</Severity>
</WriteAction>
</WriteActions>
</Rule>