DNS Event ID 3000 and 9999


We have a Win2k SP4 DC that is logging many, many DNS events for (mostly) event id 3000 and (sometimes) 9999.  It's being logged as a warning message.  Here is the text:

Event ID 3000
The DNS server is logging numerous run-time events.  For information about these events, see previous DNS Server event log entries.  To prevent the DNS Server from clogging server logs, further logging of this event and other events with higher Event IDs will now be suppressed.

Event ID 9999
The DNS server has encountered numerous run-time events.  These are usually caused by the reception of bad or unexpected packets, or from problems with or excessive replication traffic.  The data is the number of suppressed events encountered in the last 15 minute interval.

I looked under support.microsoft.com and they don't have anything useful to say in terms of how to troubleshoot it.  Of course if there was any config issue that I could change to prevent this warning message from coming up, I would be glad to, but so far no clues as to what might be causing it.  If anyone has access to EventID.com, that would be great.  I don't have a subscription.

Kirk Bostwick

Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

According to this, those events are unimportant and caused by normal zone transfers


Here's the eventid.net info; no subscription is required, but it's not much use


Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
kbostwickAuthor Commented:
Thanks very much!
I had the same problem on one of my DNS servers in my domain. The DNS zones (forward & reverse) on the affected server were set to allow zone transfer to other DNS servers (listed in Name Servers tab) on request. But all DNS zones on all DNS servers in my domain are primary-active directory integrated zones so zone transfer is unnecessary. After I disallow zone transfer on the DNS, no more warning events (9999 & 3000) appeared in eventlog.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Operating Systems

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.