Using APM 5.2 to monitor a Windows 2003 R2 server, and seeing some peculiar behaviour... I'm using SNMP and a domain account that is a local admin on the server I am monitoring. However every few minutes, I see a series of audit failures in the security log of the Windows server, coming from my monitoring server (identified in the events by its IP address). Event ID 529, Logon/Logoff, the reason listed in each event as a Logon Failure, "Unknown user name or bad password". The source port of the failure seem to be a variety of ports in the 6000 range. The server is coming back fine in the monitoring software, and all the applications I'm monitoring are listed as being up and available, so the monitor seems to be working fine, but it is filling up the security log of the client server with these bad logon attempts for some reason. Hoping someone has an idea as to what might be the issue.
Thanks,
Tom F.