Event ID 668 — Federation Service Proxy Logging

Applies To: Windows Server 2008

You can use Active Directory Federation Services (AD FS) log files to troubleshoot issues with the federation server proxy. The creation and updating of AD FS log files are monitored here.

Event Details

Product: Windows Operating System
ID: 668
Source: Microsoft-Windows-ADFS
Version: 6.0
Symbolic Name: LogFileCannotTruncateFile
Message: The AD FS troubleshooting log detected that the current file has reached the maximum size, but a new file cannot be created to continue the log.
Directory: %2
File name: %3
File size: %5
Maximum file size: %4

Troubleshooting information will continue to be written to the current log file, which will exceed the maximum log file size. This event will recur every %1 minutes until the condition is corrected.
Retry period: %1

User Action
Check the permissions on the log file directory.

Additional Data
This error occurred as a result of a failed attempt to create a new file.
File to be created: %6
File creation error: %7

Resolve

Check the permission on the log file directory and the name of the existing files

This error occurred as a result of a failed attempt to create a new file. Check the permissions on the log file directory. In addition, check to see if a file by that name already exists.

Verify

Verify that Active Directory Federation Services (AD FS) log files have been generated in the log files directory.

To perform this procedure, you must be a member of the local Administrators group, or you must have been delegated the appropriate authority.

To locate the log files directory

  1. On the federation server, click Start, point to Administrative Tools, and then click Active Directory Federation Services.
  2. In the console tree, right-click Federation Service and then click Properties.
  3. On the Troubleshooting tab, check the location of the log files under Log files directory.

Federation Service Proxy Logging

Active Directory Federation Services