Microsoft-Windows-CertificationAuthority-EnterprisePolicy

25 events across 1 channel

Event IDTitleChannel
1113260059Active Directory Certificate Services is configured to use LDAP referrals to …Operational
1113325584The {CertificateTemplateName} Certificate Template was loaded.Operational
1113325585The {CertificateTemplateName} Certificate Template requires …Operational
2187001861The Active Directory Certificate Services Policy contains no valid Certificate …Operational
2187001882Active Directory Certificate Services detected that LDAP referrals are enabled.Operational
2187067399The Enrollee ({EnrolleeName}) has no DNS name registered in the Active …Operational
2187067400The Enrollee ({EnrolleeName}) has no E-Mail name registered in the Active …Operational
2187067405The {CertificateTemplateName} Certificate Template could not be loaded.Operational
2187067411The certificate validity period will be shorter than the …Operational
3260743684Active Directory Certificate Services could not find required Active Directory …Operational
3260743692The Active Directory containing the Certification Authority could not be …Operational
3260743701Initialization failure loading information from the Active Directory containing …Operational
3260743705The requested validity period is invalid.Operational
3260743709The key archival request specified that it should not be persisted in the …Operational
3260809225The Enrollee was not able to successfully authenticate to the Certificate …Operational
3260809226The request was for a certificate template that is not supported by the Active …Operational
3260809227The request does not contain a certificate template extension or the …Operational
3260809230The request specifies conflicting certificate templates: {TemplateNames}.Operational
3260809231The Active Directory connection to {OldDSHostName} has been reestablished to …Operational
3260809234The {CertificateTemplateName} Certificate Template requires the following …Operational
3260809236Renewing a certificate with the {CertificateTemplateName} Certificate Template …Operational
3260809238The requester's Active Directory object is not in the current forest.Operational
3260809239The requester's Active Directory object could not be retrieved.Operational
3260809240Active Directory Certificate Services could not connect to the global catalog …Operational
3260809244An invalid OID has been detected in the EKUOIDsForVolatileRequests configuration …Operational

Event ID 1113260059 — Active Directory Certificate Services is configured to use LDAP referrals to request user data from the Active Directory directory service.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

Active Directory Certificate Services is configured to use LDAP referrals to request user data from the Active Directory directory service.

Event ID 1113325584 — The {CertificateTemplateName} Certificate Template was loaded.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The {CertificateTemplateName} Certificate Template was loaded.

Fields

NameDescription
CertificateTemplateName

Event ID 1113325585 — The {CertificateTemplateName} Certificate Template requires {RequiredSignatureCount} signatures; but only {AccepedSignatureCount} were accepted.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The {CertificateTemplateName} Certificate Template requires {RequiredSignatureCount} signatures; but only {AccepedSignatureCount} were accepted.

Fields

NameDescription
CertificateTemplateName
RequiredSignatureCount
AccepedSignatureCount

Event ID 2187001861 — The Active Directory Certificate Services Policy contains no valid Certificate Templates.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The Active Directory Certificate Services Policy contains no valid Certificate Templates.

Event ID 2187001882 — Active Directory Certificate Services detected that LDAP referrals are enabled.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

Active Directory Certificate Services detected that LDAP referrals are enabled. The current license of Windows does not allow LDAP referrals for Active Directory Certificate Services and this setting will be ignored. To disable LDAP referrals; open a command prompt window; type: certutil -setreg policy\EditFlags -EDITF_ENABLELDAPREFERRALS and press Enter and restart the CA.

Event ID 2187067399 — The Enrollee ({EnrolleeName}) has no DNS name registered in the Active Directory.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The Enrollee ({EnrolleeName}) has no DNS name registered in the Active Directory. The certificate cannot be generated.

Fields

NameDescription
EnrolleeName

Event ID 2187067400 — The Enrollee ({EnrolleeName}) has no E-Mail name registered in the Active Directory.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The Enrollee ({EnrolleeName}) has no E-Mail name registered in the Active Directory.  The E-Mail name will not be included in the certificate.

Fields

NameDescription
EnrolleeName

Event ID 2187067405 — The {CertificateTemplateName} Certificate Template could not be loaded.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The {CertificateTemplateName} Certificate Template could not be loaded.  {ErrorCode}.

Fields

NameDescription
CertificateTemplateName
ErrorCode

Event ID 2187067411 — The certificate validity period will be shorter than the {CertificateTemplateName} Certificate Template specifies; because the template validity pe...

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The certificate validity period will be shorter than the {CertificateTemplateName} Certificate Template specifies; because the template validity period is longer than the maximum certificate validity period allowed by the CA.  Consider renewing the CA certificate; reducing the template validity period; or increasing the registry validity period.

Fields

NameDescription
CertificateTemplateName

Event ID 3260743684 — Active Directory Certificate Services could not find required Active Directory information.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

Active Directory Certificate Services could not find required Active Directory information.

Event ID 3260743692 — The Active Directory containing the Certification Authority could not be contacted.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The Active Directory containing the Certification Authority could not be contacted.

Event ID 3260743701 — Initialization failure loading information from the Active Directory containing the Certification Authority.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

Initialization failure loading information from the Active Directory containing the Certification Authority.

Event ID 3260743705 — The requested validity period is invalid.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The requested validity period is invalid. Confirm that the validity period or expiration date and time specified in the request does not extend beyond the validity period of the CA certificate; the certificate template; and the CA. The validity period of the CA can be verified by running the following commands: certutil -getreg ca\validityPeriod & certutil -getreg ca\ValdityPeriodUnits.

Event ID 3260743709 — The key archival request specified that it should not be persisted in the database.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The key archival request specified that it should not be persisted in the database. Key Archival requests must always be persisted.

Event ID 3260809225 — The Enrollee was not able to successfully authenticate to the Certificate Service.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The Enrollee was not able to successfully authenticate to the Certificate Service.  Please check your security settings.

Event ID 3260809226 — The request was for a certificate template that is not supported by the Active Directory Certificate Services policy: {CertificateTemplateName}.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The request was for a certificate template that is not supported by the Active Directory Certificate Services policy: {CertificateTemplateName}.

Fields

NameDescription
CertificateTemplateName

Event ID 3260809227 — The request does not contain a certificate template extension or the {RequestAttributeName} request attribute.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The request does not contain a certificate template extension or the {RequestAttributeName} request attribute.

Fields

NameDescription
RequestAttributeName

Event ID 3260809230 — The request specifies conflicting certificate templates: {TemplateNames}.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The request specifies conflicting certificate templates: {TemplateNames}.

Fields

NameDescription
TemplateNames

Event ID 3260809231 — The Active Directory connection to {OldDSHostName} has been reestablished to {NewDSHostName}.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The Active Directory connection to {OldDSHostName} has been reestablished to {NewDSHostName}.

Fields

NameDescription
OldDSHostName
NewDSHostName

Event ID 3260809234 — The {CertificateTemplateName} Certificate Template requires the following issuance policies that signing certificates did not include: {MissingIssu...

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The {CertificateTemplateName} Certificate Template requires the following issuance policies that signing certificates did not include: {MissingIssuancePolicyOIDsInSigningCertificate}.

Fields

NameDescription
CertificateTemplateName
MissingIssuancePolicyOIDsInSigningCertificate

Event ID 3260809236 — Renewing a certificate with the {CertificateTemplateName} Certificate Template failed because the renewal overlap period is longer than the certifi...

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

Renewing a certificate with the {CertificateTemplateName} Certificate Template failed because the renewal overlap period is longer than the certificate validity period.

Fields

NameDescription
CertificateTemplateName

Event ID 3260809238 — The requester's Active Directory object is not in the current forest.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The requester's Active Directory object is not in the current forest.  Cross forest enrollment is not enabled.  {RequesterName}  {ErrorCode}

Fields

NameDescription
RequesterName
ErrorCode

Event ID 3260809239 — The requester's Active Directory object could not be retrieved.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

The requester's Active Directory object could not be retrieved.  {RequesterName}  {ErrorCode}

Fields

NameDescription
RequesterName
ErrorCode

Event ID 3260809240 — Active Directory Certificate Services could not connect to the global catalog server.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

Active Directory Certificate Services could not connect to the global catalog server.  {RequesterName}  {ErrorCode}

Fields

NameDescription
RequesterName
ErrorCode

Event ID 3260809244 — An invalid OID has been detected in the EKUOIDsForVolatileRequests configuration setting.

Provider
Microsoft-Windows-CertificationAuthority-EnterprisePolicy
Channel
Operational

Message

An invalid OID has been detected in the EKUOIDsForVolatileRequests configuration setting. To resolve; run: 'certutil -getreg policy\EKUOIDsForVolatileRequests' to identify the invalid OID and correct it.