Event ID 2015 — IPsec Service Initialization

Updated: December 16, 2008

Applies To: Windows Server 2008 R2

green

The IKE and AuthIP IPsec Keying Modules (IKEEXT) service must be running for Internet Protocol security (IPsec) to provide authentication and encryption services. This service implements the Internet Key Exchange (IKE) and Authenticated Internet Protocol (AuthIP) protocols. These keying modules support the authentication and key exchange features required by Internet Protocol security (IPsec).

When appropriate auditing events are enabled (http://go.microsoft.com/fwlink/?linkid=92666), Windows reports successes and failures in starting the service, or when the service stops operating due to a failure.

Event Details

Product: Windows Operating System
ID: 2015
Source: Microsoft-Windows-Windows Firewall with Advanced Security
Version: 6.1
Symbolic Name: WFCSStartupRuleAddEvent
Message: A connection security rule was added to IPsec settings when Windows Firewall started.

%tRule ID:%t%1
%tRuleName:%t%2
%tOrigin:%t%3
%tActive:%t%4
%tProtocol:%t%5
%tEndPoint1Ports:%t%6
%tEndPoint2Ports:%t%7
%tLocalTunnelEndpointV4:%t%8
%tLocalTunnelEndpointV6:%t%9
%tRemoteTunnelEndpointV4:%t%10
%tRemoteTunnelEndpointV6:%t%11
%tPhase1AuthSetId:%t%12
%tPhase2AuthSetId:%t%13
%tPhase2CryptoSetId:%t%14
%tAction:%t%15
%tProfiles:%t%16
%tLocalAddresses:%t%17
%tRemoteAddresses:%t%18
%tEmbeddedContext:%t%20
%tIsDTM:%t%22
%tApplyAuthZ:%t%23
%tBypassTunnelIfEncrypted:%t%24
%tNoIPSecOnOutbound:%t%25
%tModifyingUser:%t%26
%tModifyingApplication:%t%27

Resolve

This is a normal condition. No further action is required.

Related Management Information

IPsec Service Initialization

Windows Firewall with Advanced Security

Community Additions

ADD
Show: