Hello, I'm experiencing an issue related to DCOM error logs generated in Active Directory. I saw that they already have several records for other users, who faced the same problem with these logs, but in none found a solution or some conclusive answer on the part of Sophos support. I've reviewed WMI query releases in AD, but it turns out that there are log logs even from IPs outside my network scope.
So far, none of my attempts to solve the logs have taken effect. Could anyone who has gone through this situation, could you point me to a way to eliminate these logs? on my network I have two domain controllers, I have STAS on both and both occur these logs.
For the STAS configuration, I followed the following KBs:
Sophos Firewall: Implement clientless SSO with multiple Active Directory Domain Controllers
This thread was automatically locked due to age.