For a few weeks now, our MC Eventlog gets "spammed" by these events:
Auditing error (Audit messages transmission resumed.) occurred at
Auditing error (Audit messages started to drop. Reason = No buffer space available) occurred at
This "eventflood" happens several times a week and goes on for about two hours, with a total of ~2000 events during this time.
So far we've found that the process for this is "MGWD", but that's it. No further info on how to identify the source of this.
I believe "Transmit Queue Overflows" but need somehow to validate it's also increasing in times corresponding to the error. You can maybe dig it from ASUP emails or MyASUP site (https://mysupport.netapp.com/myautosupport/)
If you are using the e0M to send the traffic to the syslog and see that counter grow, try disable/enable the port as the article suggest, and for the long term you might need to add a node-mgmt LIF or move the existing one to more powerful port...