Exchange 2010 – Monitoring Back Pressure on Edge Servers
Monitoring Exchange back pressure messages is a way to detect when your Exchange 2010 server might be at risk of becoming unavailable due to resource overload.
The Exchange Hub Transport and Edge Transport servers log a several differnt event log messages when resource utilization passes defined thresholds. Specifically, you want to monitor for EventIDs 15005, 15006, and 15007. You can read more about these Event IDs at the Understanding Back Pressure: Exchange 2010 SP1 article on Technet.
Event log entry for an increase in any resource utilization level – Event ID 15004
Event Type: Error Event Source: MSExchangeTransport Event Category: Resource Manager Event ID: 15004 Description: Resource pressure increased from Previous Utilization Level to Current Utilization Level.
Event log entry for a decrease in any resource utilization level – Event ID 15005
Event Type: Information Event Source: MSExchangeTransport Event Category: Resource Manager Event ID: 15005 Description: Resource pressure decreased from Previous Utilization Level to Current Utilization Level.
Event log entry for critically low available disk space – Event ID 15006
Event Type: Error Event Source: MSExchangeTransport Event Category: Resource Manager Event ID: 15006 Description: The Microsoft Exchange Transport service is rejecting messages because available disk space is below the configured threshold. Administrative action may be required to free disk space for the service to continue operations.
Event log entry for critically low available memory – Event ID 15007
Event Type: Error Event Source: MSExchangeTransport Event Category: Resource Manager Event ID: 15007 Description: The Microsoft Exchange Transport service is rejecting message submissions because the service continues to consume more memory than the configured threshold. This may require that this service be restarted to continue normal operation.