Event ID 5478 — IPsec Policy Agent Service Initialization

Applies To: Windows Server 2008 R2

The IPsec Policy Agent service must be running to receive and process Internet Protocol security (IPsec) policies that were made by using earlier versions of Windows.

Note: This service provides compatibility with Internet Protocol security (IPsec) policies used in earlier versions of Windows. New deployments of Windows Vista and Windows Server 2008 should not use the policies supported by the IPsec Policy Agent service since those policies support only a subset of the features supported by Windows Firewall with Advanced Security. Instead, new deployments should use policies created by using Windows Firewall with Advanced Security to take full advantage of the additional security and features.

When appropriate auditing events are enabled (https://go.microsoft.com/fwlink/?linkid=92666), Windows reports successes and failures in starting the service, or when the service stops operating due to a failure.

Event Details

Product: Windows Operating System
ID: 5478
Source: Microsoft-Windows-Security-Auditing
Version: 6.1
Symbolic Name: SE_AUDITID_ETW_POLICYAGENT_IPSECSVC_SUCCESSFUL_START
Message: IPsec Services has started successfully.

Resolve

This is a normal condition. No further action is required.

IPsec Policy Agent Service Initialization

Windows Firewall with Advanced Security