This article describes how to troubleshoot WinCollect Error code 0x06B5: The interface is unknown.
If your agent runs into this error, the device log can display the following error message in C:\Program Files\IBM\WinCollect\logs\WinCollect_Device.(timestamp).log:
C:\Program Files\IBM\WinCollect\logs\WinCollect_Device.(timestamp).log:
ERROR Device.WindowsLog.EventLogMonitor : Failed to open event log IP address [\\IP address:Security]; will try again in approx 60 seconds. Reason: Error code 0x06B5: The interface is unknown.
A single WinCollect Agent in a deployment stopped sending events and is reporting the following error in the device log of the stopped agent:
Error code 0x06B5: The interface is unknown.
When an interface is unknown, errors occur. The most common cause is that the Microsoft Event Log service is not starting, is not running, or is not in a stable state.
Restart the Windows Event Logs service, then restart the WinCollect service:
Click Start > Run .
Type services.msc , then click OK .
Locate the Event Log service and ensure that it is started. If it is started, restart the service to ensure that the operating system's event log service is working as intended.
Exit the Services snap-in.