Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 48 (0x30) |
Event log: | Application |
Event type: | Information |
Event text (English): | The Network Device Enrollment Service loaded the Registration Authority (RA) signature certificate with serial number %1 from the "%2" store. |
Event text (German): | The network device registration service has loaded the registration authority signing certificate with the serial number %1 from the memory "%2". |
Author: Uwe Gradenegger
Details of the event with ID 47 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 47 (0x2F) |
Event log: | Application |
Event type: | Information |
Event text (English): | The Network Device Enrollment Service loaded the Registration Authority (RA) key exchange certificate with serial number %1 from the "%2" store. |
Event text (German): | The network device registration service has loaded the registration authority key exchange certificate with the serial number %1 from the memory "%2". |
Details of the event with ID 46 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 46 (0x2E) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_FAILED_HASH_ALGORITHM |
Event text (English): | The Network Device Enrollment Service failed to load the hash algorithm specified at location %1. Use the command "certutil -v -csplist" to verify that the computer on which the Network Device Enrollment Service is installed supports the hash algorithm specified. Near the end of the command output, look for the section labeled "Hash Algorithms". If the algorithm specified in the registry is not listed, configure a different hash algorithm in the registry. The error returned was (%2). %3 |
Event text (German): | The hash algorithm specified under "%1" could not be loaded by the registry service for network devices. Use the "certutil -v -csplist" command to ensure that the computer on which the Network Device Enrollment Service is installed supports the specified hash algorithm. Look for a section labeled "hash algorithms" at the end of the command output. If the algorithm specified in the registry is not listed, configure a different hash algorithm in the registry. Error returned: (%2). %3 |
Details of the event with ID 45 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 45 (0x2D) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_NOMATCH_ISSUERNAME_SERIALNUMBER |
Event text (English): | The Network Device Enrollment Service cannot match the issuer name and serial number in the device request to any certification authority (CA) certificate. Verify that the device request contains the correct CA certificate information, then resubmit the request. |
Event text (German): | The network device registration service cannot associate the issuer name and serial number in the device request with a CA certificate. Ensure that the device request contains the correct certificate authority certificate information and then resubmit the request. |
Details of the event with ID 44 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 44 (0x2C) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_GETCRL_FAILED |
Event text (English): | The Network Device Enrollment Service cannot obtain the certificate revocation list (CRL) for key %1 from the certification authority. Verify that the CA service is running, the Network Device Enrollment Service account has Read permission on the CA service, and the CA service has successfully created the latest CRL. Use the Certification Authority management console to verify the permissions on the CA service. Use the command: Certutil -config "%2" -cainfo crl %3 to verify that the CA service has created the latest CRL. The error returned was (%4). %5 |
Event text (German): | The certificate revocation list for the key %1 cannot be retrieved from the certification authority by the registration service for network devices. Ensure that the CA service is running, that the Network Device Enrollment Service account has read permission for the CA service, and that the CA service has successfully created the latest certificate revocation list. Use the Certificate Authority Management Console to check the permissions for the Certificate Authority Service. Use the command "Certutil -config "%2″ -cainfo crl %3" to ensure that the CA service has created the latest certificate revocation list. Error returned: (%4). %5 |
Details of the event with ID 43 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 43 (0x2B) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_INVALID_USAGE_FOR_PASSWORD |
Event text (English): | This password has already been used to request a (%1) certificate. Only one signing certificate and one exchange certificate can be issued per password. Obtain a new password to use with this request, or create a new request with a different key usage and the same password, then try again. |
Event text (German): | This password has already been used to request a (%1) certificate. Only one signing certificate and one exchange certificate can be issued per password. Set a new password for this request or create a new request with a different key usage and the same password. Then repeat the process. |
Details of the event with ID 42 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 42 (0x2A) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_FAIL_DECODE_X509_REQUEST |
Event text (English): | The Network Device Enrollment Service cannot decode an X509 certificate request. |
Event text (German): | An X509 certificate request cannot be decrypted by the enrollment service for network devices. |
Details of the event with ID 41 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 41 (0x29) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_NO_PASSWORD_STANDALONE |
Event text (English): | The Network Device Enrollment Service cannot issue a password because the requester is not an administrator of this computer. |
Event text (German): | No password can be issued by the registration service for network devices because the requester is not an administrator of this computer. |
Details of the event with ID 39 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 39 (0x27) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_NO_KEY_USAGE |
Event text (English): | The Network Device Enrollment Service cannot find key usage information in the certificate request and will use both the Signature and Exchange key usages. |
Event text (German): | No key usage information can be found in the certificate request from the enrollment service for network devices. Therefore, both signature and exchange key usage is used. |
Details of the event with ID 38 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 38 (0x26) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_BAD_MESSAGE_TYPE |
Event text (English): | The Network Device Enrollment Service detected an invalid message type in the client's PKCS7 message. |
Event text (German): | The network device registration service detected an invalid message type in the client's PKCS7 message. |
Details of the event with ID 37 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 37 (0x25) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_SCEP_WRITE_DATA |
Event text (English): | The Network Device Enrollment Service failed while attempting to write the data portion of an http response (%1). %2 |
Event text (German): | An error occurred in the registration service for network devices when an attempt was made to write to the data area of an HTTP response (%1). %2 |
Details of the event with ID 36 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 36 (0x24) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_SCEP_SERVER_SUPPORT |
Event text (English): | The Network Device Enrollment Service failed while attempting to write the header portion of an http response (%1). %2 |
Event text (German): | An error occurred in the registration service for network devices when an attempt was made to write to the header area of an HTTP response (%1). %2 |
Details of the event with ID 35 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 35 (0x23) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_SCEP_RA_CLOSE_TO_EXPIRE |
Event text (English): | At least one of the certificates for the Network Device Enrollment Service will expire soon. Check the validity period for both the encryption and signing certificates. Renew any certificates that are nearing the end of their validity period and restart the service. |
Event text (German): | At least one certificate for the network device registration service will expire soon. Check the validity period for both encryption and signing certificates. Renew any certificates that are about to expire and restart the service. |
Details of the event with ID 34 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 34 (0x22) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_SCEP_RA_EXPIRE |
Event text (English): | At least one of the certificates for the Network Device Enrollment Service has expired. Verify that both the encryption and signing certificates are valid and restart the service. |
Event text (German): | At least one certificate for the network device registration service has expired. Make sure that both the encryption and the signing certificates are valid and restart the service. |
Details of the event with ID 33 of the source Microsoft-Windows-NetworkDeviceEnrollmentService
Event Source: | Microsoft-Windows-NetworkDeviceEnrollmentService |
Event ID: | 33 (0x21) |
Event log: | Application |
Event type: | Error |
Symbolic Name: | EVENT_MSCEP_ADD_ID |
Event text (English): | The Network Device Enrollment Service failed to cache this certificate ID and transaction ID (%1). %2 |
Event text (German): | The certificate ID and the transaction ID cannot be cached by the registration service for network devices (%1). %2 |