0byt3m1n1
Path:
C:
/
Windows
/
PLA
/
Rules
/
en-US
/
[
Home
]
File: Rules.AD.xml
<?xml version="1.0" encoding="UTF-8"?> <StringTable> <String ID="wpdcAdvisor" loc.comment="Report name seen in RPM">Active Directory Domain Services</String> <String ID="TopicADTuningParams" loc.comment="Topic name seen in RPM">Tuning Parameters</String> <String ID="TableADTuningParameters" loc.comment="Table name seen in RPM">Registry Settings</String> <String ID="GroupAD.Report" loc.comment="Group name seen in RPM">Active Directory</String> <String ID="RuleDirInsertTuningParameters" loc.comment="Rule name seen in RPM">Add Active Directory tuning parameters</String> <String ID="wpdcAdvisor" loc.comment="Report name seen in RPM">Active Directory Domain Services</String> <String ID="TopicADTuningParams" loc.comment="Topic name seen in RPM">Tuning Parameters</String> <String ID="TableADTuningParameters" loc.comment="Table name seen in RPM">Registry Settings</String> <String ID="GroupAD" loc.comment="Group name seen in RPM">Active Directory</String> <String ID="RuleHideNtdsCtrs" loc.comment="Rule name seen in RPM">Hide Infrequently Used NTDS Performance Counters</String> <String ID="RuleDirSearchLatency" loc.comment="Rule name seen in RPM">Directory Search - Search Latency Too High</String> <String ID="RuleDirSearchAncestry" loc.comment="Rule name seen in RPM">Directory Search - Misused Ancestry Index</String> <String ID="RuleDirSearchPdnt" loc.comment="Rule name seen in RPM">Directory Search - Misused PDNT Index</String> <String ID="RuleDirSearchDnt" loc.comment="Rule name seen in RPM">Directory Search - Misused DNT Index Search</String> <String ID="RuleDirSearchNameCache" loc.comment="Rule name seen in RPM">Directory Search - Name Cache Usage Too Low</String> <String ID="RuleDirSearchReferrals" loc.comment="Rule name seen in RPM">Directory Search - Search Referrals are Occurring</String> <String ID="RuleDirSearchTooManyObj" loc.comment="Rule name seen in RPM">Directory Search - Too Many Objects Visited</String> <String ID="RuleDirSearchTooManyObjRtn" loc.comment="Rule name seen in RPM">Directory Search - Too Many Objects Returned</String> <String ID="RuleDirSearchHighCpu" loc.comment="Rule name seen in RPM">Directory Search - Search Client Using Too Much CPU</String> <String ID="RuleDirSearchCpu" loc.comment="Rule name seen in RPM">Directory Search - Search Using Too Much CPU</String> <String ID="RuleKerbError" loc.comment="Rule name seen in RPM">Kerberos Protocol - High Error Rate</String> <String ID="RuleKerbMixedEncrypt" loc.comment="Rule name seen in RPM">Kerberos Protocol - Kerberos Encryption Modes are Mixed</String> <String ID="RuleLdapError" loc.comment="Rule name seen in RPM">LDAP - High Error Rate</String> <String ID="RuleLdapErrorCpu" loc.comment="Rule name seen in RPM">LDAP - High Error Rate Based on CPU Usage</String> <String ID="RuleSystemHighDisk" loc.comment="Rule name seen in RPM">System - High Disk I/O rate for a Non-Active Directory File</String> <String ID="RuleSystemHighCpuNotAD" loc.comment="Rule name seen in RPM">System - High CPU utilization for a Non-Active Directory Process</String> <String ID="WarnAdTopResponseTime_symptom" loc.comment="Symptom string for warning message: WarnAdTopResponseTime">Top directory search taking {result} milliseconds which is above the rule threshold value.</String> <String ID="WarnAdTopResponseTime_details" loc.comment="Details string for warning message: WarnAdTopResponseTime">Maximum acceptable directory search response time (in milliseconds). This rule will issue a warning if the search response time exceeds this value. The default value is > 10000 (10 seconds).</String> <String ID="WarnAdTopResponseTime_res1" loc.comment="Resolution string for warning message: WarnAdTopResponseTime">Examine the query details.</String> <String ID="WarnAdAncestorsIndex_symptom" loc.comment="Symptom string for warning message: WarnAdAncestorsIndex">Inappropriate ancestry index searches are occurring.</String> <String ID="WarnAdPdntIndex_symptom" loc.comment="Symptom string for warning message: WarnAdPdntIndex">Inappropriate Parent Distinguished Name Tag index searches are occurring</String> <String ID="WarnAdDntIndex_symptom" loc.comment="Symptom string for warning message: WarnAdDntIndex">Distinguised Name Tag index searches are occurring. Because this method searches the entire directory tree, it should occur only rarely. Consider adding indexes if this query is done frequently.</String> <String ID="WarnAdDsNameCacheLow_symptom" loc.comment="Symptom string for warning message: WarnAdDsNameCacheLow">The directory search name cache hit rate is low compared to the number of LDAP searches that are occurring.</String> <String ID="WarnAdReferrals_symptom" loc.comment="Symptom string for warning message: WarnAdReferrals">A client application is using search referrals, indicating that its LDAP_OPT_REFERRALS option is on. LDAP client applications should explicitly disable search referrals unless their code is willing to use the referral data.</String> <String ID="WarnAdTopObjectVisited_symptom" loc.comment="Symptom string for warning message: WarnAdTopObjectVisited">Top directory search visited {result} objects and consumed {cpu} percent CPU. The search may need a new index or an adjusted scope.</String> <String ID="WarnAdTooManyObjectReturned_symptom" loc.comment="Symptom string for warning message: WarnAdTooManyObjectReturned">Top Directory Search returning {result} objects. Consider the use of paged searches or setting the maximum objects read per search to reduce the number of objects read.</String> <String ID="WarnAdTopObjectReturned_symptom" loc.comment="Symptom string for warning message: WarnAdTopObjectReturned">Top client taking {result} percent CPU.</String> <String ID="WarnAdTopCPUSearch_symptom" loc.comment="Symptom string for warning message: WarnAdTopCPUSearch">Single search taking {result} percent CPU.</String> <String ID="WarnAdTgsFailures_symptom" loc.comment="Symptom string for warning message: WarnAdTgsFailures">Kerberos protocol is failing more often than succeeding.</String> <String ID="WarnAdEncryptionOverhead_symptom" loc.comment="Symptom string for warning message: WarnAdEncryptionOverhead">Kerberos protocol modes are mixed.</String> <String ID="WarnAdLdapFailures_symptom" loc.comment="Symptom string for warning message: WarnAdLdapFailures">More LDAP failures than successes are occurring.</String> <String ID="WarnAdLdapExitIdFailure_symptom" loc.comment="Symptom string for warning message: WarnAdLdapExitIdFailure">LDAP errors are consuming {result} percent CPU.</String> <String ID="WarnAdDitFile_symptom" loc.comment="Symptom string for warning message: WarnAdDitFile">On directory servers, Ntds.dit and Edb.log should be the most active files. In this case, {file} has the highest I/O rate ({result} operations/sec).</String> <String ID="WarnAdWhereslsass_symptom" loc.comment="Symptom string for warning message: WarnAdWhereslsass">Process {result} has the highest CPU percent ({image}%). For this server role, the top process should be Lsass.exe (for Active Directory Domain Services) or Dsamain.exe (for Active Directory Lightweight Directory Services).</String> </StringTable>