Event ID 10560 — Windows NT Token-Based Application Auditing

Applies To: Windows Server 2008

Audit events are written to the audit log during the auditing process. The Windows token-based agent records Success and Failure audits, such as the state of the AD FS Web Agent Authentication Service.

Event Details

Product: Windows Operating System
ID: 10560
Source: Microsoft-Windows-ADFS
Version: 6.0
Symbolic Name: WS_ASPNET_TOKEN_AUDIT
Message: %1
Key identifier: %2
Error code: %3
Token ID: %4
Identity: %5
Issuer: %6
Audience: %7
Effective time: %8 %9
Expiration time: %10 %11
Claim source: %12
Authentication methods:
Method%t%tTime
%13
UPN: %14
E-mail: %15
Common name: %16

Resolve

This is a normal condition. No further action is required.

Windows NT Token-Based Application Auditing

Active Directory Federation Services