Event ID - 1708

Event Id1708
SourceMSExchangeTransport
DescriptionSMTP Authentication was performed successfully with client remote_computername. The authentication method was LOGIN and the username was company\username.
Event InformationAccording to Microsoft :

RESOLUTION


In this case, if the relaying appears to come from a hacked account password, go to the Active Directory Users and Computers snap-in and delete the account, disable the account, or change the password on the account.
Microsoft recommends that you implement a strong password policy.
Reference LinksHow to block open SMTP relaying and clean up Exchange Server SMTP queues in Windows Small Business Server

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.