Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4877 (0x130D) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services backup completed. |
Event text (German): | The certificate services backup has been completed. |
Details of the event with ID 4876 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4876 (0x130C) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services backup started. Backup Type: %1 |
Event text (German): | The backup of certificate services has been started. Backup type: %1 |
Details of the event with ID 4875 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4875 (0x130B) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services received a request to shut down. |
Event text (German): | The certificate services have received a request to shut down. |
Details of the event with ID 4874 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4874 (0x130A) |
Event log: | Security |
Event type: | Information |
Event text (English): | One or more certificate request attributes changed. Request ID: %1 Attributes: %2 |
Event text (German): | At least one certificate request attribute has been changed. Request ID: %1 Attributes: %2 |
Details of the event with ID 4873 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4873 (0x1309) |
Event log: | Security |
Event type: | Information |
Event text (English): | A certificate request extension changed. Request ID: %1 Name: %2 Type: %3 Flags: %4 Data: %5 |
Event text (German): | A certificate request extension has been changed. Request ID: %1 Name: %2 Type: %3 Flag: %4 Data: %5 |
Details of the event with ID 4872 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4872 (0x1308) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services published the certificate revocation list (CRL). Base CRL: %1 CRL Number: %2 Key Container: %3 Next Publish: %4 Publish URLs: %5 |
Event text (German): | The certificate services have published the certificate revocation list (CRL). Basic CRL: %1 CRL number: %2 Key container: %3 Next publication: %4 Publication URLs: %5 |
Details of the event with ID 4871 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4871 (0x1307) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services received a request to publish the certificate revocation list (CRL). Next Update: %1 Publish Base: %2 Publish Delta: %3 |
Event text (German): | The certificate services have received a request to publish the certificate revocation list (CRL). Next update: %1 Publication basis: %2 Publication delta: %3 |
Details of the event with ID 4870 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4870 (0x1306) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services revoked a certificate. Serial Number: %1 Reason: %2 |
Event text (German): | Certificate Services has revoked a certificate. Serial number: %1 Cause: %2 |
Details of the event with ID 4869 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4869 (0x1305) |
Event log: | Security |
Event type: | Information |
Event text (English): | Certificate Services received a resubmitted certificate request. Request ID: %1 |
Event text (German): | Certificate Services has received a resubmitted certificate request. Request ID: %1 |
Details of the event with ID 4868 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4868 (0x1304) |
Event log: | Security |
Event type: | Information |
Event text (English): | The certificate manager denied a pending certificate request. Request ID: %1 |
Event text (German): | Certificate management has rejected a pending certificate request. Request ID: %1 |
Details of the event with ID 4719 of the source Microsoft-Windows-Security-Auditing
Event Source: | Microsoft Windows Security Auditing |
Event ID: | 4719 (0x126F) |
Event log: | Security |
Event type: | Information |
Event text (English): | System audit policy was changed. Subject: Security ID: %1 Account Name: %2 Account Domain: %3 Logon ID: %4 Audit Policy Change: Category: %5 Subcategory: %6 Subcategory GUID: %7 Changes: %8 |
Event text (German): | The system monitoring policy has been changed. Applicant: Security ID: %1 Account name: %2 Account domain: %3 Logon ID: %4 Monitoring policy change: Category: %5 Subcategory: %6 Subcategory GUID: %7 Changes: %8 |
Details of the event with ID 134 of the source Microsoft-Windows-CertificationAuthority
Event Source: | Microsoft-Windows-CertificationAuthority |
Event ID: | 134 (0x86) |
Event log: | Application |
Event type: | Information |
Event text (English): | A certificate in the chain for CA certificate %3 for %1 has expired. %2. |
Event text (German): | A certificate in the chain for the certification authority certificate "%3" for "%1" has expired. %2. |
Details of the event with ID 133 of the source Microsoft-Windows-CertificationAuthority
Event Source: | Microsoft-Windows-CertificationAuthority |
Event ID: | 133 (0x85) |
Event log: | Application |
Event type: | Error |
Event text (English): | The certification authority (CA) failed to encode a server extension required to validate a certificate or certification revocation list (CRL). The CA will not issue any certificates or CRLs that do not contain this extension. To correct this problem, use the Certification Authority snap-in to remove any Unicode characters in the URLs for the AIA, CDP, and IDP extensions, then restart the CA. |
Event text (German): | The server extension required for the verification of a certificate or revocation list could not be encoded by the certification authority. The certification authority will not issue certificates or revocation lists that do not contain this extension. To resolve this issue, use the CA snap-in to remove all Unicode characters in the URLs for the "AIA", "CDP" and "IDP" extensions and then restart the CA. |
Details of the event with ID 132 of the source Microsoft-Windows-CertificationAuthority
Event Source: | Microsoft-Windows-CertificationAuthority |
Event ID: | 132 (0x84) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | MSG_E_AES_ARCHIVAL_WITH_CAPI_PROV |
Event text (English): | The certification authority (CA) was unable to perform a decryption operation. This error can occur when an advanced encryption algorithm such as Advanced Encryption Standard (AES) is used and the CA has not been configured to use a CryptoAPI Next Generation (CNG) key storage provider. If this error occurred during certificate enrollment, check the certificate template to ensure that advanced encryption for key archival is not enabled. |
Event text (German): | A decryption process could not be performed by the certification authority. This error can occur if an advanced encryption algorithm such as the Advanced Encryption Standard (AES) is used and the certificate authority is not configured to use a CNG key storage provider. If this error occurred during certificate enrollment, check the certificate template and make sure that advanced encryption is not enabled for key archiving. |
Details of the event with ID 131 of the source Microsoft-Windows-CertificationAuthority
Event Source: | Microsoft-Windows-CertificationAuthority |
Event ID: | 131 (0x83) |
Event log: | Application |
Event type: | Warning |
Event text (English): | An invalid OID has been detected in the EKUOIDsForPublishExpiredCertInCRL configuration setting. To resolve, run: "certutil -getreg ca\EKUOIDsForPublishExpiredCertInCRL" to identify the invalid OID and correct it. The default OIDs ("1.3.6.1.5.5.7.3.3" and "1.3.6.1.4.1.311.61.1.1") will be used. |
Event text (German): | An invalid OID was detected in the EKUOIDsForPublishExpiredCertInCRL configuration setting. To fix it, run the certutil -getreg ca\EKUOIDsForPublishExpiredCertInCRL command to detect and correct the invalid OID. The default OIDs ("1.3.6.1.5.7.3.3" and "1.3.6.1.4.1.311.61.1.1") are used. |