0x1200 | Windows 正在啟動。%n%n當 LSASS.EXE 啟動且稽核子系統已初始化,會記錄此事件。 |
Windows is starting up.%n%nThis event is logged when LSASS.EXE starts and the auditing subsystem is initialized. |
0x1201 | Windows 正在關機。%n此關機將會終止所有登入工作階段。 |
Windows is shutting down.%nAll logon sessions will be terminated by this shutdown. |
0x1202 | [本機安全性授權] 已經載入驗證用的封裝軟體。%n這個驗證封裝會用來驗證登入嘗試。%n%n驗證封裝名稱:%t%1 |
An authentication package has been loaded by the Local Security Authority.%nThis authentication package will be used to authenticate logon attempts.%n%nAuthentication Package Name:%t%1 |
0x1203 | 已經在 [本機安全性授權] 登錄信任的登入處理。%n將信任這個登入處理,以便提交登入要求。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入處理名稱:%t%t%5 |
A trusted logon process has been registered with the Local Security Authority.%nThis logon process will be trusted to submit logon requests.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Process Name:%t%t%5 |
0x1204 | 用來處理稽核訊息佇列的內部資源已經用完,所以部分稽核資料遺失。%n%n遺失審核訊息數目:%t%1%n%n當填入稽核佇列,且事件必須放棄時,就會產生這個事件。當安全性事件產生的速度快於被寫入到磁碟中的速度,或是當稽核系統遺失到事件記錄檔的連線,例如當事件記錄檔服務停止的時候,通常就會產生這個事件。 |
Internal resources allocated for the queuing of audit messages have been exhausted, leading to the loss of some audits.%n%nNumber of audit messages discarded:%t%1%n%nThis event is generated when audit queues are filled and events must be discarded. This most commonly occurs when security events are being generated faster than they are being written to disk, or when the auditing system loses connectivity to the event log, such as when the event log service is stopped. |
0x1206 | [安全性帳戶管理員] 已載入通知封裝軟體。%n這個封裝軟體會通知您任何帳戶或密碼變更消息。%n%n通知封裝軟體名稱:%t%1 |
A notification package has been loaded by the Security Account Manager.%nThis package will be notified of any account or password changes.%n%nNotification Package Name:%t%1 |
0x1207 | 無效使用 LPC 連接埠。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%tPID:%t%t%t%7%n%t名稱:%t%t%t%8%n%n不正確使用:%t%t%5%n%nLPC 伺服器連接埠名稱:%t%6%n%nWindows 本機安全性授權單位 (LSA) 使用本機程序呼叫 (LPC) 連接埠與 Windows 核心通訊。如果您看到這個事件,表示一個應用程式已經不小心或是非有意地存取了這個保留供 LSA 單獨使用的連接埠。應該調查這個應用程式 (處理程序) 以確保它並非嘗試竄改這個通訊通道。 |
Invalid use of LPC port.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tPID:%t%t%t%7%n%tName:%t%t%t%8%n%nInvalid Use:%t%t%5%n%nLPC Server Port Name:%t%6%n%nWindows Local Security Authority (LSA) communicates with the Windows kernel using Local Procedure Call (LPC) ports. If you see this event, an application has inadvertently or intentionally accessed this port which is reserved exclusively for LSA's use. The application (process) should be investigated to ensure that it is not attempting to tamper with this communications channel. |
0x1208 | 系統時間已經變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%t處理程序識別碼:%t%7%n%t名稱:%t%t%8%n%n之前的時間:%t%t%5%n新時間:%t%t%6%n%n當系統時間改變時,就會產生此事件。對於以系統權限執行的 Windows 時間服務而言,定期變更系統時間是正常的。其他的系統時間變更則可能表示有人意圖竄改電腦。 |
The system time was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tProcess ID:%t%7%n%tName:%t%t%8%n%nPrevious Time:%t%t%5%nNew Time:%t%t%6%n%nThis event is generated when the system time is changed. It is normal for the Windows Time Service, which runs with System privilege, to change the system time on a regular basis. Other system time changes may be indicative of attempts to tamper with the computer. |
0x120A | 發生監視的安全性事件型態。%n%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n警示資訊:%n%t電腦:%t%t%2%n%t事件識別碼:%t%t%1%n%t事件數目:%t%7%n%t期間:%t%t%8%n%n當根據一般條件安全性稽核分析要求 (FAU_SAA) 設定 Windows,並且發生可稽核的事件型態時,就會產生這個事件。 |
A monitored security event pattern has occurred.%n%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nAlert Information:%n%tComputer:%t%t%2%n%tEvent ID:%t%t%1%n%tNumber of Events:%t%7%n%tDuration:%t%t%8%n%nThis event is generated when Windows is configured to generate alerts in accordance with the Common Criteria Security Audit Analysis requirements (FAU_SAA) and an auditable event pattern occurs. |
0x120D | 系統管理員將系統從 CrashOnAuditFail 還原。現在將會允許非系統管理員的使用者登入。某些可稽核活動可能沒有被記錄。%n%nCrashOnAuditFail 數值:%t%1%n%n在系統因為 CrashOnAuditFail 而重新啟動之後,將會記錄這個事件。 |
Administrator recovered system from CrashOnAuditFail. Users who are not administrators will now be allowed to log on. Some auditable activity might not have been recorded.%n%nValue of CrashOnAuditFail:%t%1%n%nThis event is logged after a system reboots following CrashOnAuditFail. |
0x120E | 本機安全性授權已經載入安全性封裝。%n%n安全性封裝名稱:%t%1 |
A security package has been loaded by the Local Security Authority.%n%nSecurity Package Name:%t%1 |
0x1210 | 帳戶已順利登入。%n%n主體:%n%t安全性識別碼:%t%t%1%n%tA帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入資訊:%n%t登入類型:%t%t%9%n%t受限制的系統管理模式:%t%22%n%t虛擬帳戶:%t%t%25%n%t提高權限的權杖:%t%t%27%n%n模擬層級:%t%t%21%n%n新登入:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%t連結的登入識別碼:%t%t%26%n%t網路帳戶名稱:%t%23%n%t網路帳戶網域:%t%24%n%t登入 GUID:%t%t%13%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%17%n%t處理程序名稱:%t%t%18%n%n網路資訊:%n%t工作站名稱:%t%12%n%t來源網路位址:%t%19%n%t來源連接埠:%t%t%20%n%n詳細的驗證資訊:%n%t登入處理程序:%t%t%10%n%t驗證封裝:%t%11%n%t轉送的服務:%t%14%n%t封裝名稱 (僅 NTLM):%t%15%n%t金鑰長度:%t%t%16%n%n建立登入工作階段時會產生此事件。它是在所存取的電腦上產生。%n%n主體欄位指出要求登入之本機系統上的帳戶。這通常是發生在服務 (例如伺服器服務) 或是本機處理程序 (例如 Winlogon.exe 或 Services.exe)。%n%n登入類型欄位指出發生的登入類型。最常見的類型是 2 (互動式) 與 3 (網路)。%n%n新登入欄位指出是哪個帳戶建立新登入,例如登入的帳戶。%n%n網路欄位指出遠端登入要求的來源。工作站名稱並非一律可用,在某些情況下可能會是空白。%n%n模擬層級欄位指出登入工作階段中的處理程序可以模擬的範圍。%n%n驗證資訊欄位提供關於此特定登入要求的詳細資訊。%n%t- 登入 GUID 是唯一識別碼,可用於關聯這個事件與 KDC 事件。%n%t- 轉送的服務指出哪一個中介服務已經加入這個登入要求。%n%t- 封裝名稱指出在 NTLM 通訊協定中使用哪一個子協定。%n%t- 金鑰長度指出產生的工作階段金鑰長度。如果沒有要求工作階段金鑰則為 0。 |
An account was successfully logged on.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Information:%n%tLogon Type:%t%t%9%n%tRestricted Admin Mode:%t%22%n%tVirtual Account:%t%t%25%n%tElevated Token:%t%t%27%n%nImpersonation Level:%t%t%21%n%nNew Logon:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%tLinked Logon ID:%t%t%26%n%tNetwork Account Name:%t%23%n%tNetwork Account Domain:%t%24%n%tLogon GUID:%t%t%13%n%nProcess Information:%n%tProcess ID:%t%t%17%n%tProcess Name:%t%t%18%n%nNetwork Information:%n%tWorkstation Name:%t%12%n%tSource Network Address:%t%19%n%tSource Port:%t%t%20%n%nDetailed Authentication Information:%n%tLogon Process:%t%t%10%n%tAuthentication Package:%t%11%n%tTransited Services:%t%14%n%tPackage Name (NTLM only):%t%15%n%tKey Length:%t%t%16%n%nThis event is generated when a logon session is created. It is generated on the computer that was accessed.%n%nThe subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.%n%nThe logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).%n%nThe New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.%n%nThe network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.%n%nThe impersonation level field indicates the extent to which a process in the logon session can impersonate.%n%nThe authentication information fields provide detailed information about this specific logon request.%n%t- Logon GUID is a unique identifier that can be used to correlate this event with a KDC event.%n%t- Transited services indicate which intermediate services have participated in this logon request.%n%t- Package name indicates which sub-protocol was used among the NTLM protocols.%n%t- Key length indicates the length of the generated session key. This will be 0 if no session key was requested. |
0x1211 | 帳戶無法登入。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入類型:%t%t%t%11%n%n登入失敗的帳戶:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%n失敗資訊:%n%t失敗原因:%t%t%9%n%t狀態:%t%t%t%8%n%t子狀態:%t%t%10%n%n處理程序資訊:%n%t呼叫者處理程序識別碼:%t%18%n%t呼叫者處理程序名稱:%t%19%n%n網路資訊:%n%t工作站名稱:%t%14%n%t來源網路位址:%t%20%n%t來源連接埠:%t%t%21%n%n詳細驗證資訊:%n%t登入處理程序:%t%t%12%n%t驗證封裝:%t%13%n%t轉送的服務:%t%15%n%t封裝名稱 (僅限 NTLM):%t%16%n%t金鑰長度:%t%t%17%n%n當登入要求失敗的時候,就會產生這個事件。這個事件在嘗試存取的電腦上產生。%n%n主旨欄位顯示要求登入的本機系統上的帳戶。這通常是發生在服務 (例如伺服器服務) 或是本機處理程序 (例如 Winlogon.exe 或 Services.exe)。%n%n登錄類型欄位顯示要求的登入類型。最常見的類型是 2 (互動式) 與 3 (網路)。%n%n處理程序資訊欄位顯示系統上哪個帳戶與處理程序要求登入。%n%n網路資訊欄位顯示遠端登入要求的來源。工作站名稱不是每次都有,並可能在某些狀況是空白。%n%n驗證資訊欄位提供關於此次特定登入要求的詳細資訊。%n%t- 轉送的服務欄位顯示哪一個中介服務已經加入這個登入要求。%n%t- 封裝名稱欄位顯示在 NTLM 通訊協定中使用哪一個子協定。%n%t- 金鑰長度欄位顯示產生的工作階段金鑰長度。如果沒有要求工作階段金鑰則為 0。 |
An account failed to log on.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Type:%t%t%t%11%n%nAccount For Which Logon Failed:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%nFailure Information:%n%tFailure Reason:%t%t%9%n%tStatus:%t%t%t%8%n%tSub Status:%t%t%10%n%nProcess Information:%n%tCaller Process ID:%t%18%n%tCaller Process Name:%t%19%n%nNetwork Information:%n%tWorkstation Name:%t%14%n%tSource Network Address:%t%20%n%tSource Port:%t%t%21%n%nDetailed Authentication Information:%n%tLogon Process:%t%t%12%n%tAuthentication Package:%t%13%n%tTransited Services:%t%15%n%tPackage Name (NTLM only):%t%16%n%tKey Length:%t%t%17%n%nThis event is generated when a logon request fails. It is generated on the computer where access was attempted.%n%nThe Subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.%n%nThe Logon Type field indicates the kind of logon that was requested. The most common types are 2 (interactive) and 3 (network).%n%nThe Process Information fields indicate which account and process on the system requested the logon.%n%nThe Network Information fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.%n%nThe authentication information fields provide detailed information about this specific logon request.%n%t- Transited services indicate which intermediate services have participated in this logon request.%n%t- Package name indicates which sub-protocol was used among the NTLM protocols.%n%t- Key length indicates the length of the generated session key. This will be 0 if no session key was requested. |
0x1212 | 使用者/裝置宣告資訊。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入類型:%t%t%t%9%n%n新登入:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n事件序列:%t%t%10 / %11%n%n使用者宣告:%t%t%t%12%n%n裝置宣告:%t%t%t%13%n%n主體欄位顯示要求登入之本機系統上的帳戶。這通常是發生在服務 (例如伺服器服務) 或是本機處理程序 (例如 Winlogon.exe 或 Services.exe)。%n%n登入類型欄位顯示發生的登入類型。最常見的類型是 2 (互動式) 與 3 (網路)。%n%n新登入欄位顯示是哪個帳戶建立新登入,例如登入的帳戶。%n%n當已設定稽核使用者/裝置宣告子類別且使用者的登入權杖包含使用者/裝置宣告資訊時,會產生此事件。登入識別碼欄位可用於關聯這個事件與對應的使用者登入事件,以及此登入工作階段期間產生的任何其他安全性稽核事件。 |
User / Device claims information.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Type:%t%t%t%9%n%nNew Logon:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nEvent in sequence:%t%t%10 of %11%n%nUser Claims:%t%t%t%12%n%nDevice Claims:%t%t%t%13%n%nThe subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.%n%nThe logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).%n%nThe New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.%n%nThis event is generated when the Audit User/Device claims subcategory is configured and the user’s logon token contains user/device claims information. The Logon ID field can be used to correlate this event with the corresponding user logon event as well as to any other security audit events generated during this logon session. |
0x1213 | 群組成員資格資訊。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入類型:%t%t%t%9%n%n新的登入:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n順序中的事件:%t%t%10 / %11%n%n群組成員資格:%t%t%t%12%n%n主體欄位指出要求登入之本機系統上的帳戶。這通常是發生在服務 (例如伺服器服務) 或是本機處理程序 (例如 Winlogon.exe 或 Services.exe)。%n%n登入類型欄位指出發生的登入類型。最常見的類型是 2 (互動式) 與 3 (網路)。%n%n新登入欄位指出是哪個帳戶建立新登入,例如登入的帳戶。%n%n設定「稽核群組成員資格」子類別時,會產生此事件。登入識別碼欄位可用來將此事件與對應的使用者登入事件關聯,以及與在此登入工作階段期間產生的任何其他安全性稽核事件關聯。 |
Group membership information.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Type:%t%t%t%9%n%nNew Logon:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nEvent in sequence:%t%t%10 of %11%n%nGroup Membership:%t%t%t%12%n%nThe subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.%n%nThe logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).%n%nThe New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.%n%nThis event is generated when the Audit Group Membership subcategory is configured. The Logon ID field can be used to correlate this event with the corresponding user logon event as well as to any other security audit events generated during this logon session. |
0x121A | 帳戶已登出。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入類型:%t%t%t%5%n%n當登入工作階段損毀時,就會產生這個事件。這個事件可能與使用登入識別碼數值的登入事件正面相關。登入識別碼僅有在重新啟動相同電腦之間才會是唯一的。 |
An account was logged off.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Type:%t%t%t%5%n%nThis event is generated when a logon session is destroyed. It may be positively correlated with a logon event using the Logon ID value. Logon IDs are only unique between reboots on the same computer. |
0x1226 | %1%n |
%1%n |
0x1227 | 使用者初始登出:%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n初始化登出時,就會產生這個事件。無法再發生使用者初始化活動。這個事件可以解釋為登出事件。 |
User initiated logoff:%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nThis event is generated when a logoff is initiated. No further user-initiated activity can occur. This event can be interpreted as a logoff event. |
0x1228 | 使用明確宣告的認證嘗試登入。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%t登入 GUID:%t%t%5%n%n使用其認證的帳戶:%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入 GUID:%t%t%8%n%n目標伺服器:%n%t目標伺服器名稱:%t%9%n%t其他資訊:%t%10%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%11%n%t處理程序名稱:%t%t%12%n%n網路資訊:%n%t網路位址:%t%13%n%t連接埠:%t%t%t%14%n%n當處理程序嘗試以帳戶的明確宣告認證登入那個帳戶時,就會產生這個事件。這通常發生在批次類型的設定,例如排程工作,或是當使用 RUNAS 命令時。 |
A logon was attempted using explicit credentials.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%tLogon GUID:%t%t%5%n%nAccount Whose Credentials Were Used:%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon GUID:%t%t%8%n%nTarget Server:%n%tTarget Server Name:%t%9%n%tAdditional Information:%t%10%n%nProcess Information:%n%tProcess ID:%t%t%11%n%tProcess Name:%t%t%12%n%nNetwork Information:%n%tNetwork Address:%t%13%n%tPort:%t%t%t%14%n%nThis event is generated when a process attempts to log on an account by explicitly specifying that account’s credentials. This most commonly occurs in batch-type configurations such as scheduled tasks, or when using the RUNAS command. |
0x1229 | 偵測到重新執行攻擊。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n重新執行的認證:%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%12%n%t處理程序名稱:%t%t%13%n%n網路資訊:%n%t工作站名稱:%t%10%n%n詳細驗證資訊:%n%t要求類型:%t%t%7%n%t登入處理程序:%t%t%8%n%t驗證封裝:%t%9%n%t轉送的服務:%t%11%n%n這個事件表示偵測到 Kerberos 重新執行攻擊 (相同資訊的要求收到兩次)。這個狀況可能是因為網路設定錯誤造成。 |
A replay attack was detected.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCredentials Which Were Replayed:%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%nProcess Information:%n%tProcess ID:%t%t%12%n%tProcess Name:%t%t%13%n%nNetwork Information:%n%tWorkstation Name:%t%10%n%nDetailed Authentication Information:%n%tRequest Type:%t%t%7%n%tLogon Process:%t%t%8%n%tAuthentication Package:%t%9%n%tTransited Services:%t%11%n%nThis event indicates that a Kerberos replay attack was detected- a request was received twice with identical information. This condition could be caused by network misconfiguration. |
0x122A | IPSec 主要模式安全性關聯已經建立。延伸模式尚未啟用。沒有使用憑證驗證。%n%n本機端點:%n%t主體名稱:%t%1%n%t網路位址:%t%3%n%t金鑰處理模組連接埠:%t%4%n%n遠端端點:%n%t主體名稱:%t%2%n%t網路位址:%t%5%n%t金鑰處理模組連接埠:%t%6%n%n安全性關聯資訊:%n%t存留期 (分):%t%12%n%t快速模式限制:%t%13%n%t主要模式 SA 識別碼:%t%17%n%n密碼編譯資訊:%n%t密碼演算法:%t%9%n%t完整性演算法:%t%10%n%tDiffie-Hellman 群組:%t%11%n%n其他資訊:%n%t金鑰處理模組名稱:%t%7%n%t驗證方法:%t%8%n%t角色:%t%14%n%t模擬狀態:%t%15%n%t主要模式篩選器識別碼:%t%16 |
An IPsec main mode security association was established. Extended mode was not enabled. Certificate authentication was not used.%n%nLocal Endpoint:%n%tPrincipal Name:%t%1%n%tNetwork Address:%t%3%n%tKeying Module Port:%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%2%n%tNetwork Address:%t%5%n%tKeying Module Port:%t%6%n%nSecurity Association Information:%n%tLifetime (minutes):%t%12%n%tQuick Mode Limit:%t%13%n%tMain Mode SA ID:%t%17%n%nCryptographic Information:%n%tCipher Algorithm:%t%9%n%tIntegrity Algorithm:%t%10%n%tDiffie-Hellman Group:%t%11%n%nAdditional Information:%n%tKeying Module Name:%t%7%n%tAuthentication Method:%t%8%n%tRole:%t%14%n%tImpersonation State:%t%15%n%tMain Mode Filter ID:%t%16 |
0x122B | IPSec 主要模式安全性關聯已經建立。延伸模式尚未啟用。已使用憑證驗證。%n%n本機端點:%n%t主體名稱:%t%1%n%t網路位址:%t%9%n%t金鑰處理模組連接埠:%t%10%n%n本機憑證:%n%tSHA 指紋:%t%2%n%t簽發 CA:%t%t%3%n%t根 CA:%t%t%4%n%n遠端端點:%n%t主體名稱:%t%5%n%t網路位址:%t%11%n%t金鑰處理模組連接埠:%t%12%n%n遠端憑證:%n%tSHA 指紋: %t%6%n%t簽發 CA:%t%t%7%n%t根 CA:%t%t%8%n%n密碼編譯資訊:%n%t密碼演算法:%t%15%n%t完整性演算法:%t%16%n%tDiffie-Hellman 群組:%t%17%n%n安全性關聯資訊:%n%t存留期 (分):%t%18%n%t快速模式限制:%t%19%n%t主要模式 SA 識別碼:%t%23%n%n其他資訊:%n%t金鑰處理模組名稱:%t%13%n%t驗證方法:%t%14%n%t角色:%t%20%n%t模擬狀態:%t%21%n%t主要模式篩選器識別碼:%t%22 |
An IPsec main mode security association was established. Extended mode was not enabled. A certificate was used for authentication.%n%nLocal Endpoint:%n%tPrincipal Name:%t%1%n%tNetwork Address:%t%9%n%tKeying Module Port:%t%10%n%nLocal Certificate:%n%tSHA Thumbprint:%t%2%n%tIssuing CA:%t%t%3%n%tRoot CA:%t%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%5%n%tNetwork Address:%t%11%n%tKeying Module Port:%t%12%n%nRemote Certificate:%n%tSHA thumbprint: %t%6%n%tIssuing CA:%t%t%7%n%tRoot CA:%t%t%8%n%nCryptographic Information:%n%tCipher Algorithm:%t%15%n%tIntegrity Algorithm:%t%16%n%tDiffie-Hellman Group:%t%17%n%nSecurity Association Information:%n%tLifetime (minutes):%t%18%n%tQuick Mode Limit:%t%19%n%tMain Mode SA ID:%t%23%n%nAdditional Information:%n%tKeying Module Name:%t%13%n%tAuthentication Method:%t%14%n%tRole:%t%20%n%tImpersonation State:%t%21%n%tMain Mode Filter ID:%t%22 |
0x122C | IPsec 主要模式交涉失敗。%n%n%n本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%9%n%t金鑰處理模組連接埠:%t%10%n%n本機憑證:%n%tSHA 指紋:%t%2%n%t簽發 CA:%t%t%3%n%t根 CA:%t%t%4%n%n遠端端點:%n%t主體名稱:%t%t%5%n%t網路位址:%t%11%n%t金鑰處理模組連接埠:%t%12%n%n遠端憑證:%n%tSHA 指紋:%t%t%6%n%t簽發 CA:%t%t%7%n%t根 CA:%t%t%8%n%n其他資訊:%n%t金鑰處理模組名稱:%t%13%n%t驗證方法:%t%16%n%t角色:%t%t%t%18%n%t模擬狀態:%t%19%n%t主要模式篩選器識別碼:%t%20%n%n失敗資訊:%n%t失敗點:%t%t%14%n%t失敗原因:%t%t%15%n%t狀態:%t%t%t%17%n%t啟動器 Cookie:%t%t%21%n%t回應程式 Cookie:%t%22 |
An IPsec main mode negotiation failed.%n%n%nLocal Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%9%n%tKeying Module Port:%t%10%n%nLocal Certificate:%n%tSHA Thumbprint:%t%2%n%tIssuing CA:%t%t%3%n%tRoot CA:%t%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%t%5%n%tNetwork Address:%t%11%n%tKeying Module Port:%t%12%n%nRemote Certificate:%n%tSHA thumbprint:%t%t%6%n%tIssuing CA:%t%t%7%n%tRoot CA:%t%t%8%n%nAdditional Information:%n%tKeying Module Name:%t%13%n%tAuthentication Method:%t%16%n%tRole:%t%t%t%18%n%tImpersonation State:%t%19%n%tMain Mode Filter ID:%t%20%n%nFailure Information:%n%tFailure Point:%t%t%14%n%tFailure Reason:%t%t%15%n%tState:%t%t%t%17%n%tInitiator Cookie:%t%t%21%n%tResponder Cookie:%t%22 |
0x122D | IPsec 主要模式交涉失敗。%n%n本機端點:%n%t主體名稱:%t%1%n%t網路位址:%t%3%n%t金鑰處理模組連接埠:%t%4%n%n遠端端點:%n%t主體名稱:%t%t%2%n%t網路位址:%t%5%n%t金鑰處理模組連接埠:%t%6%n%n其他資訊:%n%t金鑰處理模組名稱:%t%7%n%t驗證方法:%t%10%n%t角色:%t%t%t%12%n%t模擬狀態:%t%13%n%t主要模式篩選器識別碼:%t%14%n%n失敗資訊:%n%t失敗點:%t%t%8%n%t失敗原因:%t%t%9%n%t狀態:%t%t%t%11%n%t啟動器 Cookie:%t%t%15%n%t回應程式 Cookie:%t%16 |
An IPsec main mode negotiation failed.%n%nLocal Endpoint:%n%tLocal Principal Name:%t%1%n%tNetwork Address:%t%3%n%tKeying Module Port:%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%t%2%n%tNetwork Address:%t%5%n%tKeying Module Port:%t%6%n%nAdditional Information:%n%tKeying Module Name:%t%7%n%tAuthentication Method:%t%10%n%tRole:%t%t%t%12%n%tImpersonation State:%t%13%n%tMain Mode Filter ID:%t%14%n%nFailure Information:%n%tFailure Point:%t%t%8%n%tFailure Reason:%t%t%9%n%tState:%t%t%t%11%n%tInitiator Cookie:%t%t%15%n%tResponder Cookie:%t%16 |
0x122E | IPsec 快速模式交涉失敗。%n%n本機端點:%n%t網路位址:%t%1%n%t網路位址遮罩:%t%2%n%t連接埠:%t%t%t%3%n%t通道端點:%t%t%4%n%n遠端端點:%n%t網路位址:%t%5%n%t位址遮罩:%t%t%6%n%t連接埠:%t%t%t%7%n%t通道端點:%t%t%8%n%t私人位址:%t%t%10%n%n其他資訊:%n%t通訊協定:%t%t%9%n%t金鑰處理模組名稱:%t%11%n%t虛擬介面通道識別碼:%t%20%n%t流量選擇器識別碼:%t%21%n%t模式:%t%t%t%14%n%t角色:%t%t%t%16%n%t快速模式篩選器識別碼:%t%18%n%t主要模式 SA 識別碼:%t%19%n%n失敗資訊:%n%t狀態:%t%t%t%15%n%t訊息識別碼:%t%t%17%n%t失敗點:%t%t%12%n%t失敗原因:%t%t%13 |
An IPsec quick mode negotiation failed.%n%nLocal Endpoint:%n%tNetwork Address:%t%1%n%tNetwork Address mask:%t%2%n%tPort:%t%t%t%3%n%tTunnel Endpoint:%t%t%4%n%nRemote Endpoint:%n%tNetwork Address:%t%5%n%tAddress Mask:%t%t%6%n%tPort:%t%t%t%7%n%tTunnel Endpoint:%t%t%8%n%tPrivate Address:%t%t%10%n%nAdditional Information:%n%tProtocol:%t%t%9%n%tKeying Module Name:%t%11%n%tVirtual Interface Tunnel ID:%t%20%n%tTraffic Selector ID:%t%21%n%tMode:%t%t%t%14%n%tRole:%t%t%t%16%n%tQuick Mode Filter ID:%t%18%n%tMain Mode SA ID:%t%19%n%nFailure Information:%n%tState:%t%t%t%15%n%tMessage ID:%t%t%17%n%tFailure Point:%t%t%12%n%tFailure Reason:%t%t%13 |
0x122F | IPsec 主要模式安全性關聯結束。%n%n本機網路位址:%t%t%1%n遠端網路位址:%t%2%n金鑰處理模組名稱:%t%t%3%n主要模式 SA 識別碼:%t%t%4 |
An IPsec main mode security association ended.%n%nLocal Network Address:%t%t%1%nRemote Network Address:%t%2%nKeying Module Name:%t%t%3%nMain Mode SA ID:%t%t%4 |
0x1230 | 已要求物件控制代碼。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t物件類型:%t%t%6%n%t物件名稱:%t%t%7%n%t控制代碼識別碼:%t%t%8%n%t資源屬性:%t%17%n%n程序資訊:%n%t程序識別碼:%t%t%15%n%t程序名稱:%t%t%16%n%n存取要求資訊:%n%t交易識別碼:%t%t%9%n%t存取:%t%t%10%n%t存取原因:%t%t%11%n%t存取遮罩:%t%t%12%n%t存取檢查所使用的權限:%t%13%n%t限制的 SID 數目:%t%14 |
A handle to an object was requested.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tObject Type:%t%t%6%n%tObject Name:%t%t%7%n%tHandle ID:%t%t%8%n%tResource Attributes:%t%17%n%nProcess Information:%n%tProcess ID:%t%t%15%n%tProcess Name:%t%t%16%n%nAccess Request Information:%n%tTransaction ID:%t%t%9%n%tAccesses:%t%t%10%n%tAccess Reasons:%t%t%11%n%tAccess Mask:%t%t%12%n%tPrivileges Used for Access Check:%t%13%n%tRestricted SID Count:%t%14 |
0x1231 | 登錄值已修改。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件名稱:%t%t%5%n%t物件值名稱:%t%6%n%t控制代碼識別碼:%t%t%7%n%t操作類型:%t%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%13%n%t處理程序名稱:%t%t%14%n%n變更資訊:%n%t舊值類型:%t%t%9%n%t舊值:%t%t%10%n%t新值類型:%t%t%11%n%t新值:%t%t%12 |
A registry value was modified.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Name:%t%t%5%n%tObject Value Name:%t%6%n%tHandle ID:%t%t%7%n%tOperation Type:%t%t%8%n%nProcess Information:%n%tProcess ID:%t%t%13%n%tProcess Name:%t%t%14%n%nChange Information:%n%tOld Value Type:%t%t%9%n%tOld Value:%t%t%10%n%tNew Value Type:%t%t%11%n%tNew Value:%t%t%12 |
0x1232 | 物件控制代碼已關閉。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t控制代碼識別碼:%t%t%6%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%7%n%t處理程序名稱:%t%t%8 |
The handle to an object was closed.%n%nSubject :%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tHandle ID:%t%t%6%n%nProcess Information:%n%tProcess ID:%t%t%7%n%tProcess Name:%t%t%8 |
0x1233 | 已要求刪除物件控制代碼。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%13%n%n存取要求資訊:%n%t交易識別碼:%t%9%n%t存取:%t%10%n%t存取遮罩:%t%11%n%t存取檢查所使用的權限:%t%12 |
A handle to an object was requested with intent to delete.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%13%n%nAccess Request Information:%n%tTransaction ID:%t%9%n%tAccesses:%t%10%n%tAccess Mask:%t%11%n%tPrivileges Used for Access Check:%t%12 |
0x1234 | 物件已刪除。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t控制代碼識別碼:%t%6%n%n處理程序資訊:%n%t處理程序識別碼:%t%7%n%t處理程序名稱:%t%8%n%t交易識別碼:%t%9 |
An object was deleted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tHandle ID:%t%6%n%nProcess Information:%n%tProcess ID:%t%7%n%tProcess Name:%t%8%n%tTransaction ID:%t%9 |
0x1235 | 已要求物件控制代碼。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%16%n%t處理程序名稱:%t%17%n%n存取要求資訊:%n%t交易識別碼:%t%9%n%t存取:%t%10%n%t存取原因:%t%t%11%n%t存取遮罩:%t%12%n%t存取檢查所使用的權限:%t%13%n%t內容:%t%14%n%t限制的 SID 數目:%t%15 |
A handle to an object was requested.%n%nSubject :%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%16%n%tProcess Name:%t%17%n%nAccess Request Information:%n%tTransaction ID:%t%9%n%tAccesses:%t%10%n%tAccess Reasons:%t%t%11%n%tAccess Mask:%t%12%n%tPrivileges Used for Access Check:%t%13%n%tProperties:%t%14%n%tRestricted SID Count:%t%15 |
0x1236 | 已對物件執行操作。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t物件類型:%t%t%6%n%t物件名稱:%t%t%7%n%t控制代碼識別碼:%t%t%9%n%n操作:%n%t操作類型:%t%t%8%n%t存取:%t%t%10%n%t存取遮罩:%t%t%11%n%t內容:%t%t%12%n%n其他資訊:%n%t參數 1:%t%t%13%n%t參數 2:%t%t%14 |
An operation was performed on an object.%n%nSubject :%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tObject Type:%t%t%6%n%tObject Name:%t%t%7%n%tHandle ID:%t%t%9%n%nOperation:%n%tOperation Type:%t%t%8%n%tAccesses:%t%t%10%n%tAccess Mask:%t%t%11%n%tProperties:%t%t%12%n%nAdditional Information:%n%tParameter 1:%t%t%13%n%tParameter 2:%t%t%14 |
0x1237 | 嘗試存取物件。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t物件類型:%t%t%6%n%t物件名稱:%t%t%7%n%t控制代碼識別碼:%t%t%8%n%t資源屬性:%t%13%n%n程序資訊:%n%t程序識別碼:%t%t%11%n%t程序名稱:%t%t%12%n%n存取要求資訊:%n%t存取:%t%t%9%n%t存取遮罩:%t%t%10 |
An attempt was made to access an object.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tObject Type:%t%t%6%n%tObject Name:%t%t%7%n%tHandle ID:%t%t%8%n%tResource Attributes:%t%13%n%nProcess Information:%n%tProcess ID:%t%t%11%n%tProcess Name:%t%t%12%n%nAccess Request Information:%n%tAccesses:%t%t%9%n%tAccess Mask:%t%t%10 |
0x1238 | 嘗試建立永久連結。%n%n主旨:%n%t帳戶名稱:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n連結資訊:%n%t檔案名稱:%t%5%n%t連結名稱:%t%6%n%t交易識別碼:%t%7 |
An attempt was made to create a hard link.%n%nSubject:%n%tAccount Name:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLink Information:%n%tFile Name:%t%5%n%tLink Name:%t%6%n%tTransaction ID:%t%7 |
0x1239 | 嘗試建立應用程式用戶端內容。%n%n主旨:%n%t用戶端名稱:%t%t%3%n%t用戶端網域:%t%t%4%n%t用戶端內容識別碼:%t%5%n%n應用程式資訊:%n%t應用程式名稱:%t%1%n%t應用程式例項識別碼:%t%2%n%n狀態:%t%6 |
An attempt was made to create an application client context.%n%nSubject:%n%tClient Name:%t%t%3%n%tClient Domain:%t%t%4%n%tClient Context ID:%t%5%n%nApplication Information:%n%tApplication Name:%t%1%n%tApplication Instance ID:%t%2%n%nStatus:%t%6 |
0x123A | 應用程式嘗試操作:%n%n主旨:%n%t用戶端名稱:%t%t%5%n%t用戶端網域:%t%t%6%n%t用戶端內容識別碼:%t%7%n%n物件:%n%t物件名稱:%t%t%3%n%t領域名稱:%t%t%4%n%n應用程式資訊:%n%t應用程式名稱:%t%1%n%t應用程式例項識別碼:%t%2%n%n存取要求資訊:%n%t角色:%t%t%t%8%n%t群組:%t%t%t%9%n%t操作名稱:%t%10 (%11) |
An application attempted an operation:%n%nSubject:%n%tClient Name:%t%t%5%n%tClient Domain:%t%t%6%n%tClient Context ID:%t%7%n%nObject:%n%tObject Name:%t%t%3%n%tScope Names:%t%t%4%n%nApplication Information:%n%tApplication Name:%t%1%n%tApplication Instance ID:%t%2%n%nAccess Request Information:%n%tRole:%t%t%t%8%n%tGroups:%t%t%t%9%n%tOperation Name:%t%10 (%11) |
0x123B | 應用程式用戶端內容已刪除。%n%n主旨:%n%t用戶端名稱:%t%t%3%n%t用戶端網域:%t%t%4%n%t用戶端內容識別碼:%t%5%n%n應用程式資訊:%n%t應用程式名稱:%t%1%n%t應用程式例項識別碼:%t%2 |
An application client context was deleted.%n%nSubject:%n%tClient Name:%t%t%3%n%tClient Domain:%t%t%4%n%tClient Context ID:%t%5%n%nApplication Information:%n%tApplication Name:%t%1%n%tApplication Instance ID:%t%2 |
0x123C | 應用程式已初始化。%n%n主旨:%n%t用戶端名稱:%t%3%n%t用戶端網域:%t%4%n%t用戶端識別碼:%t%5%n%n應用程式資訊:%n%t應用程式名稱:%t%1%n%t應用程式例項識別碼:%t%2%n%n其他資訊:%n%t原則存放區 URL:%t%6 |
An application was initialized.%n%nSubject:%n%tClient Name:%t%3%n%tClient Domain:%t%4%n%tClient ID:%t%5%n%nApplication Information:%n%tApplication Name:%t%1%n%tApplication Instance ID:%t%2%n%nAdditional Information:%n%tPolicy Store URL:%t%6 |
0x123E | 物件的權限已變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n處理程序:%n%t處理程序識別碼:%t%11%n%t處理程序名稱:%t%12%n%n權限變更:%n%t原始安全性描述元:%t%9%n%t新安全性描述元:%t%10 |
Permissions on an object were changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nPermissions Change:%n%tOriginal Security Descriptor:%t%9%n%tNew Security Descriptor:%t%10 |
0x123F | 應用程式嘗試透過 TBS 存取封鎖的序數。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n序數:%t%5 |
An application attempted to access a blocked ordinal through the TBS.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nOrdinal:%t%5 |
0x1240 | 特殊權限已指派給新登入。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n特殊權限:%t%t%5 |
Special privileges assigned to new logon.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nPrivileges:%t%t%5 |
0x1241 | 已呼叫特許服務。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n服務:%n%t伺服器:%t%5%n%t服務名稱:%t%6%n%n處理程序:%n%t處理程序識別碼:%t%8%n%t處理程序名稱:%t%9%n%n服務要求資訊:%n%t特殊權限:%t%t%7 |
A privileged service was called.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nService:%n%tServer:%t%5%n%tService Name:%t%6%n%nProcess:%n%tProcess ID:%t%8%n%tProcess Name:%t%9%n%nService Request Information:%n%tPrivileges:%t%t%7 |
0x1242 | 嘗試操作特殊權限物件。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t物件控制代碼:%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%11%n%t處理程序名稱:%t%12%n%n要求的操作:%n%t想要的存取:%t%9%n%t特殊權限:%t%t%10 |
An operation was attempted on a privileged object.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tObject Handle:%t%8%n%nProcess Information:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nRequested Operation:%n%tDesired Access:%t%9%n%tPrivileges:%t%t%10 |
0x1243 | 已篩選 SID。%n%n目標帳戶:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%n信任資訊:%n%t信任方向:%t%4%n%t信任屬性:%t%5%n%t信任類型:%t%6%n%tTDO 網域 SID:%t%7%n%n篩選出的 SID:%t%8 |
SIDs were filtered.%n%nTarget Account:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%nTrust Information:%n%tTrust Direction:%t%4%n%tTrust Attributes:%t%5%n%tTrust Type:%t%6%n%tTDO Domain SID:%t%7%n%nFiltered SIDs:%t%8 |
0x1250 | 已建立新的處理程序。%n%n建立者主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n目標主體:%n%t安全性識別碼:%t%t%10%n%t帳戶名稱:%t%t%11%n%t帳戶網域:%t%t%12%n%t登入識別碼:%t%t%13%n%n處理程序資訊:%n%t新處理程序識別碼:%t%t%5%n%t新處理程序名稱:%t%6!S!%n%t權杖權限提高類型:%t%7%n%t必要標籤:%t%t%15%n%t建立者處理程序識別碼:%t%8%n%t建立者處理程序名稱:%t%14!S!%n%t處理程序命令列:%t%9!S!%n%n權杖權限提高類型指出根據使用者帳戶控制原則所指派給新處理程序的權杖類型。%n%n類型 1 是完整權杖,沒有權限被移除,也沒有群組被停用。只有在使用者帳戶控制已停用,或是使用者是內建的系統管理員帳戶或服務帳戶時,才會使用完整權杖。%n%n類型 2 是提高權限的權杖,沒有權限被移除,也沒有群組被停用。當使用者帳戶控制已經啟用,而且使用者選擇使用 [以系統管理員身分執行] 啟動程式時,將使用提高權限的權杖。當應用程式設定為永遠要求系統管理員權限或是永遠要求最大權限,而且使用者是 Administrators 群組的成員時,也會使用提高權限的權杖。%n%n類型 3 是受限制的權杖,系統管理權限會被移除,且會停用系統管理群組。當使用者帳戶控制已經啟用,應用程式不需要系統管理權限,而且使用者沒有選擇使用 [以系統管理員身分執行] 啟動程式時,就會使用受限制的權杖。 |
A new process has been created.%n%nCreator Subject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTarget Subject:%n%tSecurity ID:%t%t%10%n%tAccount Name:%t%t%11%n%tAccount Domain:%t%t%12%n%tLogon ID:%t%t%13%n%nProcess Information:%n%tNew Process ID:%t%t%5%n%tNew Process Name:%t%6!S!%n%tToken Elevation Type:%t%7%n%tMandatory Label:%t%t%15%n%tCreator Process ID:%t%8%n%tCreator Process Name:%t%14!S!%n%tProcess Command Line:%t%9!S!%n%nToken Elevation Type indicates the type of token that was assigned to the new process in accordance with User Account Control policy.%n%nType 1 is a full token with no privileges removed or groups disabled. A full token is only used if User Account Control is disabled or if the user is the built-in Administrator account or a service account.%n%nType 2 is an elevated token with no privileges removed or groups disabled. An elevated token is used when User Account Control is enabled and the user chooses to start the program using Run as administrator. An elevated token is also used when an application is configured to always require administrative privilege or to always require maximum privilege, and the user is a member of the Administrators group.%n%nType 3 is a limited token with administrative privileges removed and administrative groups disabled. The limited token is used when User Account Control is enabled, the application does not require administrative privilege, and the user does not choose to start the program using Run as administrator. |
0x1251 | 處理程序已結束。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%t處理程序識別碼:%t%6%n%t處理程序名稱:%t%7%n%t結束狀態:%t%5 |
A process has exited.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tProcess ID:%t%6%n%tProcess Name:%t%7%n%tExit Status:%t%5 |
0x1252 | 嘗試複製物件控制代碼。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n來源控制代碼資訊:%n%t來源控制代碼識別碼:%t%5%n%t來源處理程序識別碼:%t%6%n%n新控制代碼資訊:%n%t目標控制代碼識別碼:%t%7%n%t目標處理程序識別碼:%t%8 |
An attempt was made to duplicate a handle to an object.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nSource Handle Information:%n%tSource Handle ID:%t%5%n%tSource Process ID:%t%6%n%nNew Handle Information:%n%tTarget Handle ID:%t%7%n%tTarget Process ID:%t%8 |
0x1253 | 要求間接存取物件。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件類型:%t%5%n%t物件名稱:%t%6%n%n處理程序資訊:%n%t處理程序識別碼:%t%9%n%n存取要求資訊:%n%t存取:%t%7%n%t存取遮罩:%t%8 |
Indirect access to an object was requested.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Type:%t%5%n%tObject Name:%t%6%n%nProcess Information:%n%tProcess ID:%t%9%n%nAccess Request Information:%n%tAccesses:%t%7%n%tAccess Mask:%t%8 |
0x1254 | 嘗試備份資料保護主要金鑰。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n金鑰資訊:%n%t金鑰識別元:%t%5%n%t復原伺服器:%t%6%n%t復原金鑰識別碼:%t%7%n%n狀態資訊:%n%t狀態碼:%t%8 |
Backup of data protection master key was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nKey Information:%n%tKey Identifier:%t%5%n%tRecovery Server:%t%6%n%tRecovery Key ID:%t%7%n%nStatus Information:%n%tStatus Code:%t%8 |
0x1255 | 嘗試復原資料保護主要金鑰。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n金鑰資訊:%n%t金鑰識別元:%t%5%n%t復原伺服器:%t%6%n%t復原金鑰識別碼:%t%8%n%t復原原因:%t%7%n%n狀態資訊:%n%t狀態碼:%t%9 |
Recovery of data protection master key was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nKey Information:%n%tKey Identifier:%t%5%n%tRecovery Server:%t%6%n%tRecovery Key ID:%t%8%n%tRecovery Reason:%t%7%n%nStatus Information:%n%tStatus Code:%t%9 |
0x1256 | 嘗試保護可稽核的受保護資料。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n受保護的資料:%n%t資料描述:%t%6%n%t金鑰識別元:%t%5%n%t受保護的資料旗標:%t%7%n%t保護演算法:%t%8%n%n狀態資訊:%n%t狀態碼:%t%9 |
Protection of auditable protected data was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProtected Data:%n%tData Description:%t%6%n%tKey Identifier:%t%5%n%tProtected Data Flags:%t%7%n%tProtection Algorithms:%t%8%n%nStatus Information:%n%tStatus Code:%t%9 |
0x1257 | 嘗試解除保護可稽核的受保護資料。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n受保護的資料:%n%t資料描述:%t%6%n%t金鑰識別元:%t%5%n%t受保護的資料旗標:%t%7%n%t保護演算法:%t%8%n%n狀態資訊:%n%t狀態碼:%t%9 |
Unprotection of auditable protected data was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProtected Data:%n%tData Description:%t%6%n%tKey Identifier:%t%5%n%tProtected Data Flags:%t%7%n%tProtection Algorithms:%t%8%n%nStatus Information:%n%tStatus Code:%t%9 |
0x1258 | 主要權杖指派給處理程序。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%t處理程序識別碼:%t%11%n%t處理程序名稱:%t%12%n%n目標處理程序:%n%t目標處理程序識別碼:%t%9%n%t目標處理程序名稱:%t%10%n%n新權杖資訊:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8 |
A primary token was assigned to process.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nTarget Process:%n%tTarget Process ID:%t%9%n%tTarget Process Name:%t%10%n%nNew Token Information:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8 |
0x1259 | 服務已經安裝在系統中。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n服務資訊:%n%t服務名稱: %t%t%5%n%t服務檔案名稱:%t%6%n%t服務類型: %t%t%7%n%t服務啟動類型:%t%8%n%t服務帳戶: %t%t%9 |
A service was installed in the system.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nService Information:%n%tService Name: %t%t%5%n%tService File Name:%t%6%n%tService Type: %t%t%7%n%tService Start Type:%t%8%n%tService Account: %t%t%9 |
0x125A | 已建立排定的工作。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n工作資訊:%n%t工作名稱: %t%t%5%n%t工作內容: %t%t%6%n%t |
A scheduled task was created.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTask Information:%n%tTask Name: %t%t%5%n%tTask Content: %t%t%6%n%t |
0x125B | 已刪除排定的工作。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n工作資訊:%n%t工作名稱: %t%t%5%n%t工作內容: %t%t%6%n%t |
A scheduled task was deleted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTask Information:%n%tTask Name: %t%t%5%n%tTask Content: %t%t%6%n%t |
0x125C | 已啟用排定的工作。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n工作資訊:%n%t工作名稱: %t%t%5%n%t工作內容: %t%t%6%n%t |
A scheduled task was enabled.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTask Information:%n%tTask Name: %t%t%5%n%tTask Content: %t%t%6%n%t |
0x125D | 已停用排定的工作。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n工作資訊:%n%t工作名稱: %t%t%5%n%t工作內容: %t%t%6%n%t |
A scheduled task was disabled.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTask Information:%n%tTask Name: %t%t%5%n%tTask Content: %t%t%6%n%t |
0x125E | 已更新排定的工作。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n工作資訊:%n%t工作名稱: %t%t%5%n%t工作新內容: %t%t%6%n%t |
A scheduled task was updated.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTask Information:%n%tTask Name: %t%t%5%n%tTask New Content: %t%t%6%n%t |
0x125F | 已調整權杖權限。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n目標帳戶:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%10%n%t處理程序名稱:%t%t%9%n%n已啟用的權限:%n%t%t%t%11%n%n已停用的權限:%n%t%t%t%12 |
A token right was adjusted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTarget Account:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nProcess Information:%n%tProcess ID:%t%t%10%n%tProcess Name:%t%t%9%n%nEnabled Privileges:%n%t%t%t%11%n%nDisabled Privileges:%n%t%t%t%12 |
0x1260 | 已指派使用者權限。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n目標帳戶:%n%t帳戶名稱:%t%t%5%n%n新權限:%n%t使用者權限:%t%t%6 |
A user right was assigned.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTarget Account:%n%tAccount Name:%t%t%5%n%nNew Right:%n%tUser Right:%t%t%6 |
0x1261 | 已移除使用者權限。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n目標帳戶:%n%t帳戶名稱:%t%t%5%n%n移除的權限:%n%t使用者權限:%t%t%6 |
A user right was removed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTarget Account:%n%tAccount Name:%t%t%5%n%nRemoved Right:%n%tUser Right:%t%t%6 |
0x1262 | 網域中建立新的信任。%n%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n受信任網域%n%t網域名稱:%t%t%1%n%t網域識別碼:%t%t%2%n%n信任資訊:%n%t信任類型:%t%t%7%n%t信任方向:%t%t%8%n%t信任屬性:%t%t%9%n%tSID 篩選:%t%t%10 |
A new trust was created to a domain.%n%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nTrusted Domain:%n%tDomain Name:%t%t%1%n%tDomain ID:%t%t%2%n%nTrust Information:%n%tTrust Type:%t%t%7%n%tTrust Direction:%t%t%8%n%tTrust Attributes:%t%t%9%n%tSID Filtering:%t%t%10 |
0x1263 | 已移除對網域的信任。%n%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n網域資訊:%n%t網域名稱:%t%t%1%n%t網域識別碼:%t%t%2 |
A trust to a domain was removed.%n%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nDomain Information:%n%tDomain Name:%t%t%1%n%tDomain ID:%t%t%2 |
0x1265 | IPsec 原則代理服務已啟動。%n%n%1%n%n原則來源: %t%2%n%n%3 |
The IPsec Policy Agent service was started.%n%n%1%n%nPolicy Source: %t%2%n%n%3 |
0x1266 | IPsec 原則代理服務已停用。%n%n%1%n%2 |
The IPsec Policy Agent service was disabled.%n%n%1%n%2 |
0x1267 | %1 |
%1 |
0x1268 | IPsec 原則代理服務遇到潛在性嚴重失敗。%n%1 |
IPsec Policy Agent encountered a potentially serious failure.%n%1 |
0x1269 | Kerberos 原則已變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n變更內容:%n('--' 表示無變更,否則每一變更將顯示為:%n(Parameter Name):%t(new value) (old value))%n%5 |
Kerberos policy was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nChanges Made:%n('--' means no changes, otherwise each change is shown as:%n(Parameter Name):%t(new value) (old value))%n%5 |
0x126A | 加密檔案系統 (EFS) 的資料修復代理群組原則已變更。已套用新的變更。 |
Data Recovery Agent group policy for Encrypting File System (EFS) has changed. The new changes have been applied. |
0x126B | 物件的稽核原則 (SACL) 已變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域: %t%3%n%t登入識別碼: %t%t%4%n%n稽核原則變更:%n%t原始安全性描述元: %t%5%n%t新安全性描述元: %t%t%6 |
The audit policy (SACL) on an object was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain: %t%3%n%tLogon ID: %t%t%4%n%nAudit Policy Change:%n%tOriginal Security Descriptor: %t%5%n%tNew Security Descriptor: %t%t%6 |
0x126C | 受信任網域資訊已修改。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n受信任網域:%n%t網域名稱:%t%t%5%n%t網域識別碼:%t%t%6%n%n新信任資訊:%n%t信任類型:%t%t%7%n%t信任方向:%t%t%8%n%t信任屬性:%t%t%9%n%tSID 篩選:%t%t%10 |
Trusted domain information was modified.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTrusted Domain:%n%tDomain Name:%t%t%5%n%tDomain ID:%t%t%6%n%nNew Trust Information:%n%tTrust Type:%t%t%7%n%tTrust Direction:%t%t%8%n%tTrust Attributes:%t%t%9%n%tSID Filtering:%t%t%10 |
0x126D | 已將系統安全性存取賦予帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n修改的帳戶:%n%t帳戶名稱:%t%t%5%n%n賦予的存取:%n%t存取權利:%t%t%6 |
System security access was granted to an account.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nAccount Modified:%n%tAccount Name:%t%t%5%n%nAccess Granted:%n%tAccess Right:%t%t%6 |
0x126E | 已從帳戶移除系統安全性存取。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n修改的帳戶:%n%t帳戶名稱:%t%t%5%n%n移除的存取:%n%t存取權利:%t%t%6 |
System security access was removed from an account.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nAccount Modified:%n%tAccount Name:%t%t%5%n%nAccess Removed:%n%tAccess Right:%t%t%6 |
0x126F | 系統稽核原則已變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n稽核原則變更:%n%t類別:%t%t%5%n%t子類別:%t%t%6%n%t子類別 GUID:%t%7%n%t變更:%t%t%8 |
System audit policy was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nAudit Policy Change:%n%tCategory:%t%t%5%n%tSubcategory:%t%t%6%n%tSubcategory GUID:%t%7%n%tChanges:%t%t%8 |
0x1270 | 已建立使用者帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n新帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%t顯示名稱:%t%t%10%n%t使用者主體名稱:%t%11%n%t主目錄:%t%t%12%n%t主磁碟:%t%t%13%n%t指令檔路徑:%t%t%14%n%t設定檔路徑:%t%t%15%n%t使用者工作站:%t%16%n%t最近的密碼設定:%t%17%n%t帳戶有效期:%t%t%18%n%t主要群組識別碼:%t%19%n%t允許委派於:%t%20%n%t舊的 UAC 數值:%t%t%21%n%t新的 UAC 數值:%t%t%22%n%t使用者帳戶控制:%t%23%n%t使用者參數:%t%24%n%tSID 歷程記錄:%t%t%25%n%t登入時段:%t%t%26%n%n其他資訊:%n%t特殊權限%t%t%8 |
A user account was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nNew Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tDisplay Name:%t%t%10%n%tUser Principal Name:%t%11%n%tHome Directory:%t%t%12%n%tHome Drive:%t%t%13%n%tScript Path:%t%t%14%n%tProfile Path:%t%t%15%n%tUser Workstations:%t%16%n%tPassword Last Set:%t%17%n%tAccount Expires:%t%t%18%n%tPrimary Group ID:%t%19%n%tAllowed To Delegate To:%t%20%n%tOld UAC Value:%t%t%21%n%tNew UAC Value:%t%t%22%n%tUser Account Control:%t%23%n%tUser Parameters:%t%24%n%tSID History:%t%t%25%n%tLogon Hours:%t%t%26%n%nAdditional Information:%n%tPrivileges%t%t%8 |
0x1272 | 使用者帳戶已啟用。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2 |
A user account was enabled.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2 |
0x1273 | 嘗試變更帳戶的密碼。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n其他資訊:%n%t特殊權限%t%t%8 |
An attempt was made to change an account's password.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges%t%t%8 |
0x1274 | 嘗試重設帳戶的密碼。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2 |
An attempt was made to reset an account's password.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2 |
0x1275 | 使用者帳戶已停用。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2 |
A user account was disabled.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2 |
0x1276 | 使用者帳戶已刪除。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n其他資訊:%n%t特殊權限%t%8 |
A user account was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges%t%8 |
0x1277 | 已經建立安全性啟用通用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n新群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled global group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nNew Group:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1278 | 已新增成員到已啟用安全性的全域群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n到期時間:%t%t%11 |
A member was added to a security-enabled global group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%nExpiration time:%t%t%11 |
0x1279 | 已移除安全性啟用通用群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a security-enabled global group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x127A | 已刪除安全性啟用通用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n刪除的群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled global group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nDeleted Group:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x127B | 已建立安全性啟用本機群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n新群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled local group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nNew Group:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x127C | 已新增成員到已啟用安全性的本機群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n%t到期時間:%t%t%11 |
A member was added to a security-enabled local group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%n%tExpiration time:%t%t%11 |
0x127D | 已移除安全性啟用本機群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a security-enabled local group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x127E | 已移除安全性啟用本機群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled local group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x127F | 已變更安全性啟用本機群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled local group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nChanged Attributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1281 | 已變更安全性啟用通用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled global group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nChanged Attributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1282 | 已變更使用者帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n目標帳戶:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%10%n%t顯示名稱:%t%t%11%n%t使用者主體名稱:%t%12%n%t主目錄:%t%t%13%n%t主磁碟:%t%t%14%n%t指令檔路徑:%t%t%15%n%t設定檔路徑:%t%t%16%n%t使用者工作站:%t%17%n%t最近的密碼設定:%t%18%n%t帳戶有效期:%t%t%19%n%t主要群組識別碼:%t%20%n%t允許委派於:%t%21%n%t舊的 UAC 數值:%t%t%22%n%t新的 UAC 數值:%t%t%23%n%t使用者帳戶控制:%t%24%n%t使用者參數:%t%25%n%tSID 歷程記錄:%t%t%26%n%t登入時段:%t%t%27%n%n其他資訊:%n%t特殊權限:%t%t%9 |
A user account was changed.%n%nSubject:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nTarget Account:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%nChanged Attributes:%n%tSAM Account Name:%t%10%n%tDisplay Name:%t%t%11%n%tUser Principal Name:%t%12%n%tHome Directory:%t%t%13%n%tHome Drive:%t%t%14%n%tScript Path:%t%t%15%n%tProfile Path:%t%t%16%n%tUser Workstations:%t%17%n%tPassword Last Set:%t%18%n%tAccount Expires:%t%t%19%n%tPrimary Group ID:%t%20%n%tAllowedToDelegateTo:%t%21%n%tOld UAC Value:%t%t%22%n%tNew UAC Value:%t%t%23%n%tUser Account Control:%t%24%n%tUser Parameters:%t%25%n%tSID History:%t%t%26%n%tLogon Hours:%t%t%27%n%nAdditional Information:%n%tPrivileges:%t%t%9 |
0x1283 | 已變更網域原則。%n%n變更類型:%t%t%1 已修改%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n網域:%n%t網域名稱:%t%t%2%n%t網域識別碼:%t%t%3%n%n變更的屬性:%n%t最短密碼壽命:%t%9%n%t最長密碼壽命:%t%10%n%t強制登出:%t%t%11%n%t鎖定閾值:%t%12%n%t鎖定觀察視窗:%t%13%n%t鎖定期間:%t%14%n%t密碼內容:%t%15%n%t密碼最短長度:%t%16%n%t密碼歷程記錄長度:%t%17%n%t電腦帳戶配額:%t%18%n%t混合網域模式:%t%19%n%t網域行為版本:%t%20%n%tOEM 資訊:%t%21%n%n其他資訊:%n%t特殊權限:%t%t%8 |
Domain Policy was changed.%n%nChange Type:%t%t%1 modified%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nDomain:%n%tDomain Name:%t%t%2%n%tDomain ID:%t%t%3%n%nChanged Attributes:%n%tMin. Password Age:%t%9%n%tMax. Password Age:%t%10%n%tForce Logoff:%t%t%11%n%tLockout Threshold:%t%12%n%tLockout Observation Window:%t%13%n%tLockout Duration:%t%14%n%tPassword Properties:%t%15%n%tMin. Password Length:%t%16%n%tPassword History Length:%t%17%n%tMachine Account Quota:%t%18%n%tMixed Domain Mode:%t%19%n%tDomain Behavior Version:%t%20%n%tOEM Information:%t%21%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1284 | 已鎖定使用者帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n鎖定的帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%n其他資訊:%n%t呼叫者電腦名稱:%t%2 |
A user account was locked out.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nAccount That Was Locked Out:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%nAdditional Information:%n%tCaller Computer Name:%t%2 |
0x1285 | 已建立電腦帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n新電腦帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%t顯示名稱:%t%t%10%n%t使用者主體名稱:%t%11%n%t主目錄:%t%t%12%n%t主磁碟:%t%t%13%n%t指令檔路徑:%t%t%14%n%t設定檔路徑:%t%t%15%n%t使用者工作站:%t%16%n%t最近的密碼設定:%t%17%n%t帳戶有效期:%t%t%18%n%t主要群組識別碼:%t%19%n%t允許委派於:%t%20%n%t舊的 UAC 數值:%t%t%21%n%t新的 UAC 數值:%t%t%22%n%t使用者帳戶控制:%t%23%n%t使用者參數:%t%24%n%tSID 歷程記錄:%t%t%25%n%t登入時段:%t%t%26%n%tDNS 主機名稱:%t%t%27%n%t服務主體名稱:%t%28%n%n其他資訊:%n%t特殊權限%t%t%8 |
A computer account was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nNew Computer Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tDisplay Name:%t%t%10%n%tUser Principal Name:%t%11%n%tHome Directory:%t%t%12%n%tHome Drive:%t%t%13%n%tScript Path:%t%t%14%n%tProfile Path:%t%t%15%n%tUser Workstations:%t%16%n%tPassword Last Set:%t%17%n%tAccount Expires:%t%t%18%n%tPrimary Group ID:%t%19%n%tAllowedToDelegateTo:%t%20%n%tOld UAC Value:%t%t%21%n%tNew UAC Value:%t%t%22%n%tUser Account Control:%t%23%n%tUser Parameters:%t%24%n%tSID History:%t%t%25%n%tLogon Hours:%t%t%26%n%tDNS Host Name:%t%t%27%n%tService Principal Names:%t%28%n%nAdditional Information:%n%tPrivileges%t%t%8 |
0x1286 | 已變更電腦帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n變更的電腦帳戶:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%10%n%t顯示名稱:%t%t%11%n%t使用者主體名稱:%t%12%n%t主目錄:%t%t%13%n%t主磁碟:%t%t%14%n%t指令檔路徑:%t%t%15%n%t設定檔路徑:%t%t%16%n%t使用者工作站:%t%17%n%t最近的密碼設定:%t%18%n%t帳戶有效期:%t%t%19%n%t主要群組識別碼:%t%20%n%t允許委派於:%t%21%n%t舊的 UAC 數值:%t%t%22%n%t新的 UAC 數值:%t%t%23%n%t使用者帳戶控制:%t%24%n%t使用者參數:%t%25%n%tSID 歷程記錄:%t%t%26%n%t登入時段:%t%t%27%n%tDNS 主機名稱:%t%t%28%n%t服務主體名稱:%t%29%n%n其他資訊:%n%t特殊權限:%t%t%9 |
A computer account was changed.%n%nSubject:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nComputer Account That Was Changed:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%nChanged Attributes:%n%tSAM Account Name:%t%10%n%tDisplay Name:%t%t%11%n%tUser Principal Name:%t%12%n%tHome Directory:%t%t%13%n%tHome Drive:%t%t%14%n%tScript Path:%t%t%15%n%tProfile Path:%t%t%16%n%tUser Workstations:%t%17%n%tPassword Last Set:%t%18%n%tAccount Expires:%t%t%19%n%tPrimary Group ID:%t%20%n%tAllowedToDelegateTo:%t%21%n%tOld UAC Value:%t%t%22%n%tNew UAC Value:%t%t%23%n%tUser Account Control:%t%24%n%tUser Parameters:%t%25%n%tSID History:%t%t%26%n%tLogon Hours:%t%t%27%n%tDNS Host Name:%t%t%28%n%tService Principal Names:%t%29%n%nAdditional Information:%n%tPrivileges:%t%t%9 |
0x1287 | 已刪除電腦帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標電腦:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A computer account was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Computer:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1288 | 已建立安全性停用本機群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n新群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled local group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nNew Group:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1289 | 已變更安全性停用本機群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled local group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nChanged Attributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x128A | 已新增成員到已停用安全性的本機群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n到期時間:%t%t%11 |
A member was added to a security-disabled local group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%nExpiration time:%t%t%11 |
0x128B | 已移除安全性停用本機群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a security-disabled local group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x128C | 已刪除安全性停用本機群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled local group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x128D | 已建立安全性停用通用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled global group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x128E | 已變更安全性停用通用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled global group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nChanged Attributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x128F | 已新增成員到已停用安全性的全域群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n到期時間:%t%t%11 |
A member was added to a security-disabled global group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%nExpiration time:%t%t%11 |
0x1290 | 已移除安全性停用通用群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a security-disabled global group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x1291 | 已刪除安全性停用通用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled global group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1292 | 已建立安全性啟用萬用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled universal group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1293 | 已變更安全性啟用萬用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled universal group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nChanged Attributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1294 | 已新增成員到已啟用安全性的萬用群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n到期時間:%t%t%11 |
A member was added to a security-enabled universal group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%nExpiration time:%t%t%11 |
0x1295 | 已移除安全性啟用萬用群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a security-enabled universal group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x1296 | 已刪除安全性啟用萬用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-enabled universal group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1297 | 已建立安全性停用萬用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled universal group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1298 | 已變更安全性停用萬用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n變更的屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled universal group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nChanged Attributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x1299 | 已新增成員到已停用安全性的萬用群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n到期時間:%t%t%11 |
A member was added to a security-disabled universal group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%nExpiration time:%t%t%11 |
0x129A | 已移除安全性停用萬用群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a security-disabled universal group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x129B | 已刪除安全性停用萬用群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A security-disabled universal group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x129C | 群組的類型已經變更。%n%n主旨:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n變更類型:%t%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%4%n%t群組名稱:%t%t%2%n%t群組網域:%t%t%3%n%n其他資訊:%n%t特殊權限:%t%t%9 |
A group’s type was changed.%n%nSubject:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nChange Type:%t%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%4%n%tGroup Name:%t%t%2%n%tGroup Domain:%t%t%3%n%nAdditional Information:%n%tPrivileges:%t%t%9 |
0x129D | 已新增 SID 歷程記錄到帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n目標帳戶:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%n來源帳戶:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n其他資訊:%n%t特殊權限:%t%t%10%n%tSID 清單:%t%t%t%11 |
SID History was added to an account.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nTarget Account:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%nSource Account:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nAdditional Information:%n%tPrivileges:%t%t%10%n%tSID List:%t%t%t%11 |
0x129E | 嘗試新增 SID 歷程記錄到帳戶失敗。%n%n主旨:%n%t安全性識別碼:%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%n來源帳戶%n%t帳戶名稱:%t%t%1%n%n其他資訊:%n%t特殊權限:%t%t%8 |
An attempt to add SID History to an account failed.%n%nSubject:%n%tSecurity ID:%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%nSource Account%n%tAccount Name:%t%t%1%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x129F | 已解除鎖定使用者帳戶。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2 |
A user account was unlocked.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2 |
0x12A0 | 已要求 Kerberos 驗證票證 (TGT)。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t支援領域名稱:%t%2%n%t使用者識別碼:%t%t%t%3%n%n服務資訊:%n%t服務名稱:%t%t%4%n%t服務識別碼:%t%t%5%n%n網路資訊:%n%t用戶端位址:%t%t%10%n%t用戶端連接埠:%t%t%11%n%n其他資訊:%n%t票證選項:%t%t%6%n%t結果碼:%t%t%7%n%t票證加密類型:%t%8%n%t預先驗證類型:%t%9%n%n憑證資訊:%n%t憑證簽發者名稱:%t%t%12%n%t憑證序號:%t%13%n%t憑證指紋:%t%t%14%n%n只有當使用憑證進行預先驗證時,才會提供憑證資訊。%n%n預先驗證類型、票證選項、加密類型與結果代碼定義於 RFC 4120。 |
A Kerberos authentication ticket (TGT) was requested.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tSupplied Realm Name:%t%2%n%tUser ID:%t%t%t%3%n%nService Information:%n%tService Name:%t%t%4%n%tService ID:%t%t%5%n%nNetwork Information:%n%tClient Address:%t%t%10%n%tClient Port:%t%t%11%n%nAdditional Information:%n%tTicket Options:%t%t%6%n%tResult Code:%t%t%7%n%tTicket Encryption Type:%t%8%n%tPre-Authentication Type:%t%9%n%nCertificate Information:%n%tCertificate Issuer Name:%t%t%12%n%tCertificate Serial Number:%t%13%n%tCertificate Thumbprint:%t%t%14%n%nCertificate information is only provided if a certificate was used for pre-authentication.%n%nPre-authentication types, ticket options, encryption types and result codes are defined in RFC 4120. |
0x12A1 | 已要求 Kerberos 服務票證。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%t登入 GUID:%t%t%10%n%n服務資訊:%n%t服務名稱:%t%t%3%n%t服務識別碼:%t%t%4%n%n網路資訊:%n%t用戶端位址:%t%t%7%n%t用戶端連接埠:%t%t%8%n%n其他資訊:%n%t票證選項:%t%t%5%n%t票證加密類型:%t%6%n%t錯誤碼:%t%t%9%n%t轉送的服務:%t%11%n%n每次要求存取資源 (例如電腦或 Windows 服務) 時,就會產生此事件。服務名稱指出要求存取的資源。%n%n比較每一個事件中的登入 GUID 欄位,即可將這個事件與 Windows 登入事件關聯。登入事件發生在存取的電腦中,通常與簽發服務票證之網域控制站的電腦不同。%n%n票證選項、加密類型與失敗碼定義於 RFC 4120。 |
A Kerberos service ticket was requested.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%tLogon GUID:%t%t%10%n%nService Information:%n%tService Name:%t%t%3%n%tService ID:%t%t%4%n%nNetwork Information:%n%tClient Address:%t%t%7%n%tClient Port:%t%t%8%n%nAdditional Information:%n%tTicket Options:%t%t%5%n%tTicket Encryption Type:%t%6%n%tFailure Code:%t%t%9%n%tTransited Services:%t%11%n%nThis event is generated every time access is requested to a resource such as a computer or a Windows service. The service name indicates the resource to which access was requested.%n%nThis event can be correlated with Windows logon events by comparing the Logon GUID fields in each event. The logon event occurs on the machine that was accessed, which is often a different machine than the domain controller which issued the service ticket.%n%nTicket options, encryption types, and failure codes are defined in RFC 4120. |
0x12A2 | 已更新 Kerberos 服務票證。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n服務資訊:%n%t服務名稱:%t%t%3%n%t服務識別碼:%t%t%4%n%n網路資訊:%n%t用戶端位址:%t%t%7%n%t用戶端連接埠:%t%t%8%n%n其他資訊:%n%t票證選項:%t%t%5%n%t票證加密類型:%t%6%n%n票證選項與加密類型定義於 RFC 4120。 |
A Kerberos service ticket was renewed.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nService Information:%n%tService Name:%t%t%3%n%tService ID:%t%t%4%n%nNetwork Information:%n%tClient Address:%t%t%7%n%tClient Port:%t%t%8%n%nAdditional Information:%n%tTicket Options:%t%t%5%n%tTicket Encryption Type:%t%6%n%nTicket options and encryption types are defined in RFC 4120. |
0x12A3 | Kerberos 預先驗證失敗。%n%n帳戶資訊:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n服務資訊:%n%t服務名稱:%t%t%3%n%n網路資訊:%n%t用戶端位址:%t%t%7%n%t用戶端連接埠:%t%t%8%n%n其他資訊:%n%t票證選項:%t%t%4%n%t錯誤碼:%t%t%5%n%t預先驗證類型:%t%6%n%n憑證資訊:%n%t憑證簽發者名稱:%t%t%9%n%t憑證序號:%t%10%n%t憑證指紋:%t%t%11%n%n只有當使用憑證進行預先驗證時,才會提供憑證資訊。%n%n預先驗證類型、票證選項與失敗碼定義於 RFC 4120。%n%n若票證在傳輸期間發生格式錯誤或損壞且無法解密,則此事件中的許多欄位可能不會顯示任何資訊。 |
Kerberos pre-authentication failed.%n%nAccount Information:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nService Information:%n%tService Name:%t%t%3%n%nNetwork Information:%n%tClient Address:%t%t%7%n%tClient Port:%t%t%8%n%nAdditional Information:%n%tTicket Options:%t%t%4%n%tFailure Code:%t%t%5%n%tPre-Authentication Type:%t%6%n%nCertificate Information:%n%tCertificate Issuer Name:%t%t%9%n%tCertificate Serial Number: %t%10%n%tCertificate Thumbprint:%t%t%11%n%nCertificate information is only provided if a certificate was used for pre-authentication.%n%nPre-authentication types, ticket options and failure codes are defined in RFC 4120.%n%nIf the ticket was malformed or damaged during transit and could not be decrypted, then many fields in this event might not be present. |
0x12A4 | Kerberos 驗證票證要求失敗。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t提供的領域名稱:%t%2%n%n服務資訊:%n%t服務名稱:%t%3%n%n網路資訊:%n%t用戶端位址:%t%6%n%t用戶端連接埠:%t%7%n%n其他資訊:%n%t票證選項:%t%4%n%t錯誤碼:%t%5%n%n票證選項與錯誤碼定義於 RFC 4120。 |
A Kerberos authentication ticket request failed.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tSupplied Realm Name:%t%2%n%nService Information:%n%tService Name:%t%3%n%nNetwork Information:%n%tClient Address:%t%6%n%tClient Port:%t%7%n%nAdditional Information:%n%tTicket Options:%t%4%n%tFailure Code:%t%5%n%nTicket options and failure codes are defined in RFC 4120. |
0x12A5 | Kerberos 服務票證要求失敗。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n服務資訊:%n%t服務名稱:%t%3%n%n網路資訊:%n%t用戶端位址:%t%6%n%t用戶端連接埠:%t%7%n%n其他資訊:%n%t票證選項:%t%4%n%t錯誤碼:%t%5%n%n票證選項與錯誤碼定義於 RFC 4120。 |
A Kerberos service ticket request failed.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nService Information:%n%tService Name:%t%3%n%nNetwork Information:%n%tClient Address:%t%6%n%tClient Port:%t%7%n%nAdditional Information:%n%tTicket Options:%t%4%n%tFailure Code:%t%5%n%nTicket options and failure codes are defined in RFC 4120. |
0x12A6 | 帳戶對應到登入。%n%n驗證封裝:%t%1%n帳戶 UPN:%t%2%n對應名稱:%t%3 |
An account was mapped for logon.%n%nAuthentication Package:%t%1%nAccount UPN:%t%2%nMapped Name:%t%3 |
0x12A7 | 帳戶無法對應到登入。%n%n驗證封裝:%t%t%1%n帳戶名稱:%t%t%2 |
An account could not be mapped for logon.%n%nAuthentication Package:%t%t%1%nAccount Name:%t%t%2 |
0x12A8 | 電腦嘗試驗證帳戶的認證。%n%n驗證封裝:%t%1%n登入帳戶:%t%2%n來源工作站:%t%3%n錯誤碼:%t%4 |
The computer attempted to validate the credentials for an account.%n%nAuthentication Package:%t%1%nLogon Account:%t%2%nSource Workstation:%t%3%nError Code:%t%4 |
0x12A9 | 網域控制站無法驗證帳戶的認證。%n%n驗證封裝:%t%1%n登入帳戶:%t%2%n來源工作站:%t%3%n錯誤碼:%t%4 |
The domain controller failed to validate the credentials for an account.%n%nAuthentication Package:%t%1%nLogon Account:%t%2%nSource Workstation:%t%3%nError Code:%t%4 |
0x12AA | 工作階段重新連線到 Window 工作站。%n%n主旨:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%t登入識別碼:%t%t%3%n%n工作階段:%n%t工作階段名稱:%t%t%4%n%n其他資訊:%n%t用戶端名稱:%t%t%5%n%t用戶端位址:%t%t%6%n%n當使用者重新連線到現有的終端機服務工作階段,或使用者使用「快速切換使用者」切換到現有桌面,就會產生這個事件。 |
A session was reconnected to a Window Station.%n%nSubject:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%tLogon ID:%t%t%3%n%nSession:%n%tSession Name:%t%t%4%n%nAdditional Information:%n%tClient Name:%t%t%5%n%tClient Address:%t%t%6%n%nThis event is generated when a user reconnects to an existing Terminal Services session, or when a user switches to an existing desktop using Fast User Switching. |
0x12AB | Window 工作站中斷工作階段連線。%n%n主旨:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%t登入識別碼:%t%t%3%n%n工作階段:%n%t工作階段名稱:%t%t%4%n%n其他資訊:%n%t用戶端名稱:%t%t%5%n%t用戶端位址:%t%t%6%n%n%n當使用者中斷現有終端機服務工作階段的連線,或是使用者使用「快速切換使用者」從現有桌面切換到其他桌面,就會產生這個事件。 |
A session was disconnected from a Window Station.%n%nSubject:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%tLogon ID:%t%t%3%n%nSession:%n%tSession Name:%t%t%4%n%nAdditional Information:%n%tClient Name:%t%t%5%n%tClient Address:%t%t%6%n%n%nThis event is generated when a user disconnects from an existing Terminal Services session, or when a user switches away from an existing desktop using Fast User Switching. |
0x12AC | 已經設定 administrators 群組成員帳戶的 ACL。%n%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n目標帳戶:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8%n%n保有網域主控站 (PDC) 彈性單一主機操作 (FSMO) 角色的 Windows 網域控制站,每隔一小時都會根據 AdminSDHolder 物件的 ACL,比較 Active Directory 網域中存在所有安全性主體帳戶 (使用者、群組與電腦帳戶) 的 ACL 與它們在系統管理群組的 ACL。如果主體帳戶的 ACL 與 AdminSDHolder 物件的 ACL 不同,則主體帳戶的 ACL 會重設為與 AdminSDHolder 物件的 ACL 相同,並且會產生這個事件。 |
The ACL was set on accounts which are members of administrators groups.%n%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nTarget Account:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8%n%nEvery hour, the Windows domain controller that holds the primary domain controller (PDC) Flexible Single Master Operation (FSMO) role compares the ACL on all security principal accounts (users, groups, and machine accounts) present for its domain in Active Directory and that are in administrative groups against the ACL on the AdminSDHolder object. If the ACL on the principal account differs from the ACL on the AdminSDHolder object, then the ACL on the principal account is reset to match the ACL on the AdminSDHolder object and this event is generated. |
0x12AD | 已變更帳戶的名稱。%n%n主旨:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%n目標帳戶:%n%t安全性識別碼:%t%t%4%n%t帳戶網域:%t%t%3%n%t舊帳戶名稱:%t%1%n%t新帳戶名稱:%t%2%n%n其他資訊:%n%t特殊權限:%t%t%9 |
The name of an account was changed:%n%nSubject:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%nTarget Account:%n%tSecurity ID:%t%t%4%n%tAccount Domain:%t%t%3%n%tOld Account Name:%t%1%n%tNew Account Name:%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%9 |
0x12AE | 已存取雜湊帳戶的密碼。%n%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n目標帳戶:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2 |
The password hash an account was accessed.%n%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nTarget Account:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2 |
0x12AF | 已建立基本應用程式群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A basic application group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x12B0 | 已變更基本應用程式群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A basic application group was changed.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x12B1 | 已新增成員到基本應用程式群組。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n到期時間:%t%t%11 |
A member was added to a basic application group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%nExpiration time:%t%t%11 |
0x12B2 | 已移除基本應用程式群組的成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was removed from a basic application group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0x12B3 | 已新增非成員到基本應用程式群組。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n%n非成員是明確排除在基本應用程式群組成員之外的帳戶。即使帳戶指定為應用程式群組的成員,不管是明確宣告或是透過巢狀的群組成員關係,只要它列在非成員中,帳戶將不會視為是群組成員。 |
A non-member was added to a basic application group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%n%nA non-member is an account that is explicitly excluded from membership in a basic application group. Even if the account is specified as a member of the application group, either explicitly or through nested group membership, the account will not be treated as a group member if it is listed as a non-member. |
0x12B4 | 已移除基本應用程式群組的非成員。%n%n主旨:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10%n%n非成員是明確排除在基本應用程式群組成員之外的帳戶。即使帳戶指定為應用程式群組的成員,不管是明確宣告或是透過巢狀的群組成員關係,只要它列在非成員中,帳戶將不會視為是群組成員。 |
A non-member was removed from a basic application group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%n%nA non-member is an account that is explicitly excluded from membership in a basic application group. Even if the account is specified as a member of the application group, either explicitly or through nested group membership, the account will not be treated as a group member if it is listed as a non-member. |
0x12B5 | 已刪除基本應用程式群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
A basic application group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x12B6 | 已建立 LDAP 查詢群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n屬性:%n%tSAM 帳戶名稱:%t%9%n%tSID 歷程記錄:%t%t%10%n%n其他資訊:%n%t特殊權限:%t%t%8 |
An LDAP query group was created.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAttributes:%n%tSAM Account Name:%t%9%n%tSID History:%t%t%10%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x12B8 | 已刪除 LDAP 查詢群組。%n%n主旨:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n其他資訊:%n%t特殊權限:%t%t%8 |
An LDAP query group was deleted.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nAdditional Information:%n%tPrivileges:%t%t%8 |
0x12B9 | 已呼叫密碼原則檢查 API。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n其他資訊:%n%t呼叫者工作站:%t%5%n%t提供的帳戶名稱 (未驗證的):%t%6%n%t狀態碼:%t%7 |
The Password Policy Checking API was called.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nAdditional Information:%n%tCaller Workstation:%t%5%n%tProvided Account Name (unauthenticated):%t%6%n%tStatus Code:%t%7 |
0x12BA | 嘗試設定目錄服務還原模式的%n系統管理員密碼。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n其他資訊:%n%t呼叫者工作站:%t%5%n%t狀態碼:%t%6 |
An attempt was made to set the Directory Services Restore Mode%nadministrator password.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nAdditional Information:%n%tCaller Workstation:%t%5%n%tStatus Code:%t%6 |
0x12BD | 已嘗試查詢某帳戶是否有空白密碼。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n其他資訊:%n%t呼叫者工作站:%t%5%n%t目標帳戶名稱:%t%6%n%t目標帳戶網域:%t%7 |
An attempt was made to query the existence of a blank password for an account.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nAdditional Information:%n%tCaller Workstation:%t%5%n%tTarget Account Name:%t%6%n%tTarget Account Domain:%t%7 |
0x12BE | 已列舉使用者的本機群組成員資格。%n%n主體:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n使用者:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%8%n%t處理程序名稱:%t%t%9 |
A user's local group membership was enumerated.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nUser:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%nProcess Information:%n%tProcess ID:%t%t%8%n%tProcess Name:%t%t%9 |
0x12BF | 已列舉已啟用安全性的本機群組成員資格。%n%n主體:%n%t安全性識別碼:%t%t%4%n%t帳戶名稱:%t%t%5%n%t帳戶網域:%t%t%6%n%t登入識別碼:%t%t%7%n%n群組:%n%t安全性識別碼:%t%t%3%n%t群組名稱:%t%t%1%n%t群組網域:%t%t%2%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%8%n%t處理程序名稱:%t%t%9 |
A security-enabled local group membership was enumerated.%n%nSubject:%n%tSecurity ID:%t%t%4%n%tAccount Name:%t%t%5%n%tAccount Domain:%t%t%6%n%tLogon ID:%t%t%7%n%nGroup:%n%tSecurity ID:%t%t%3%n%tGroup Name:%t%t%1%n%tGroup Domain:%t%t%2%n%nProcess Information:%n%tProcess ID:%t%t%8%n%tProcess Name:%t%t%9 |
0x12C0 | 已鎖定工作站。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%t工作階段識別碼:%t%5 |
The workstation was locked.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%tSession ID:%t%5 |
0x12C1 | 已解除鎖定工作站。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%t工作階段識別碼:%t%5 |
The workstation was unlocked.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%tSession ID:%t%5 |
0x12C2 | 已啟動螢幕保護裝置。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%t工作階段識別碼:%t%5 |
The screen saver was invoked.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%tSession ID:%t%5 |
0x12C3 | 已解除螢幕保護裝置。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%t工作階段識別碼:%t%5 |
The screen saver was dismissed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%tSession ID:%t%5 |
0x12D0 | RPC 在解密連入訊息時,偵測到完整性違規。%n%n同儕節點名稱:%t%1%n通訊協定順序:%t%2%n安全性錯誤:%t%3 |
RPC detected an integrity violation while decrypting an incoming message.%n%nPeer Name:%t%1%nProtocol Sequence:%t%2%nSecurity Error:%t%3 |
0x12D1 | 物件的稽核設定已經變更。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%n稽核設定:%n%t原始安全性描述元:%t%8%n%t新安全性描述元:%t%t%9 |
Auditing settings on object were changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%nAuditing Settings:%n%tOriginal Security Descriptor:%t%8%n%tNew Security Descriptor:%t%t%9 |
0x12D2 | 建議的集中存取原則與目前的集中存取原則授與的存取權限不同。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t物件類型:%t%t%6%n%t物件名稱:%t%t%7%n%t控制代碼識別碼:%t%t%8%n%n程序資訊:%n%t程序識別碼:%t%t%9%n%t程序名稱:%t%t%10%n%n目前的集中存取原則結果:%n%n%t存取原因:%t%t%11%n與目前的集中存取原則結果相異的建議的集中存取原則結果:%n%n%t存取原因:%t%t%12 |
Proposed Central Access Policy does not grant the same access permissions as the current Central Access Policy.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tObject Type:%t%t%6%n%tObject Name:%t%t%7%n%tHandle ID:%t%t%8%n%nProcess Information:%n%tProcess ID:%t%t%9%n%tProcess Name:%t%t%10%n%nCurrent Central Access Policy results:%n%n%tAccess Reasons:%t%t%11%nProposed Central Access Policy results that differ from the current Central Access Policy results:%n%n%tAccess Reasons:%t%t%12 |
0x12D3 | 電腦上的集中存取原則已變更。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t物件類型:%t%t%6%n%n新增的 CAP:%7%n%n刪除的 CAP:%8%n%n修改的 CAP:%9%n%n保持原狀的 CAP:%10 |
Central Access Policies on the machine have been changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tObject Type:%t%t%6%n%nCAPs Added:%7%n%nCAPs Deleted:%8%n%nCAPs Modified:%9%n%nCAPs As-Is:%10 |
0x12D4 | Kerberos 票證授權票證 (TGT) 已被拒絕,因為裝置不符合存取控制限制。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t提供的領域名稱:%t%2%n%t使用者識別碼:%t%t%t%3%n%n驗證原則資訊:%n%t定址接收器名稱:%t%t%16%n%t原則名稱:%t%t%17%n%tTGT 存留期:%t%t%18%n%n裝置資訊:%n%t裝置名稱:%t%t%4%n%n服務資訊:%n%t服務名稱:%t%t%5%n%t服務識別碼:%t%t%6%n%n網路資訊:%n%t用戶端位址:%t%t%11%n%t用戶端連接埠:%t%t%12%n%n其他資訊:%n%t票證選項:%t%t%7%n%t結果代碼:%t%t%8%n%t票證加密類型:%t%9%n%t預先驗證類型:%t%10%n%n憑證資訊:%n%t憑證簽發者名稱:%t%t%13%n%t憑證序號:%t%14%n%t憑證指紋:%t%t%15%n%n只有當使用憑證進行預先驗證時,才會提供憑證資訊。%n%n預先驗證類型、票證選項、加密類型與結果代碼定義於 RFC 4120。 |
A Kerberos Ticket-granting-ticket (TGT) was denied because the device does not meet the access control restrictions.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tSupplied Realm Name:%t%2%n%tUser ID:%t%t%t%3%n%nAuthentication Policy Information:%n%tSilo Name:%t%t%16%n%tPolicy Name:%t%t%17%n%tTGT Lifetime:%t%t%18%n%nDevice Information:%n%tDevice Name:%t%t%4%n%nService Information:%n%tService Name:%t%t%5%n%tService ID:%t%t%6%n%nNetwork Information:%n%tClient Address:%t%t%11%n%tClient Port:%t%t%12%n%nAdditional Information:%n%tTicket Options:%t%t%7%n%tResult Code:%t%t%8%n%tTicket Encryption Type:%t%9%n%tPre-Authentication Type:%t%10%n%nCertificate Information:%n%tCertificate Issuer Name:%t%t%13%n%tCertificate Serial Number:%t%14%n%tCertificate Thumbprint:%t%t%15%n%nCertificate information is only provided if a certificate was used for pre-authentication.%n%nPre-authentication types, ticket options, encryption types and result codes are defined in RFC 4120. |
0x12D5 | Kerberos 服務票證已被拒絕,因為使用者、裝置或兩者不符合存取控制限制。%n%n帳戶資訊:%n%t帳戶名稱:%t%t%1%n%t帳戶網域:%t%t%2%n%t登入 GUID:%t%t%11%n%n驗證原則資訊:%n%t定址接收器名稱:%t%t%13%n%t原則名稱:%t%t%14%n%n裝置資訊:%n%t裝置名稱:%t%t%3%n%n服務資訊:%n%t服務名稱:%t%t%4%n%t服務識別碼:%t%t%5%n%n網路資訊:%n%t用戶端位址:%t%t%8%n%t用戶端連接埠:%t%t%9%n%n其他資訊:%n%t票證選項:%t%t%6%n%t票證加密類型:%t%7%n%t失敗碼:%t%t%10%n%t轉送的服務:%t%12%n%n每次要求存取資源 (例如電腦或 Windows 服務) 時,就會產生此事件。服務名稱指出要求存取的資源。%n%n比較每一個事件中的登入 GUID 欄位,即可將這個事件與 Windows 登入事件關聯。登入事件發生在存取的電腦中,通常與簽發服務票證之網域控制站的電腦不同。%n%n票證選項、加密類型與失敗碼定義於 RFC 4120。 |
A Kerberos service ticket was denied because the user, device, or both does not meet the access control restrictions.%n%nAccount Information:%n%tAccount Name:%t%t%1%n%tAccount Domain:%t%t%2%n%tLogon GUID:%t%t%11%n%nAuthentication Policy Information:%n%tSilo Name:%t%t%13%n%tPolicy Name:%t%t%14%n%nDevice Information:%n%tDevice Name:%t%t%3%n%nService Information:%n%tService Name:%t%t%4%n%tService ID:%t%t%5%n%nNetwork Information:%n%tClient Address:%t%t%8%n%tClient Port:%t%t%9%n%nAdditional Information:%n%tTicket Options:%t%t%6%n%tTicket Encryption Type:%t%7%n%tFailure Code:%t%t%10%n%tTransited Services:%t%12%n%nThis event is generated every time access is requested to a resource such as a computer or a Windows service. The service name indicates the resource to which access was requested.%n%nThis event can be correlated with Windows logon events by comparing the Logon GUID fields in each event. The logon event occurs on the machine that was accessed, which is often a different machine than the domain controller which issued the service ticket.%n%nTicket options, encryption types, and failure codes are defined in RFC 4120. |
0x12D6 | NTLM 驗證失敗,因為帳戶是 Protected User 群組的成員。%n%n帳戶名稱:%t%1%n裝置名稱:%t%2%n錯誤碼:%t%3 |
NTLM authentication failed because the account was a member of the Protected User group.%n%nAccount Name:%t%1%nDevice Name:%t%2%nError Code:%t%3 |
0x12D7 | NTLM 驗證失敗,因為需要存取控制限制。%n%n帳戶名稱:%t%1%n裝置名稱:%t%2%n錯誤碼:%t%3%n%n驗證原則資訊:%n%t定址接收器名稱:%t%4%n%t原則名稱:%t%5 |
NTLM authentication failed because access control restrictions are required.%n%nAccount Name:%t%1%nDevice Name:%t%2%nError Code:%t%3%n%nAuthentication Policy Information:%n%tSilo Name:%t%4%n%tPolicyName:%t%5 |
0x12D8 | 使用 DES 或 RC4 的 Kerberos 預先驗證失敗,因為帳戶是 Protected User 群組的成員。%n%n帳戶資訊:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n服務資訊:%n%t服務名稱:%t%t%3%n%n網路資訊:%n%t用戶端位址:%t%t%7%n%t用戶端連接埠:%t%t%8%n%n其他資訊:%n%t票證選項:%t%t%4%n%t失敗碼:%t%t%5%n%t預先驗證類型:%t%6%n%n憑證資訊:%n%t憑證簽發者名稱:%t%t%9%n%t憑證序號: %t%10%n%t憑證指紋:%t%t%11%n%n只有當使用憑證進行預先驗證時,才會提供憑證資訊。%n%n預先驗證類型、票證選項與失敗碼定義於 RFC 4120。%n%n若票證在傳輸期間發生格式錯誤或損壞且無法解密,則此事件中的許多欄位可能不會顯示任何資訊。 |
Kerberos preauthentication by using DES or RC4 failed because the account was a member of the Protected User group.%n%nAccount Information:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nService Information:%n%tService Name:%t%t%3%n%nNetwork Information:%n%tClient Address:%t%t%7%n%tClient Port:%t%t%8%n%nAdditional Information:%n%tTicket Options:%t%t%4%n%tFailure Code:%t%t%5%n%tPre-Authentication Type:%t%6%n%nCertificate Information:%n%tCertificate Issuer Name:%t%t%9%n%tCertificate Serial Number: %t%10%n%tCertificate Thumbprint:%t%t%11%n%nCertificate information is only provided if a certificate was used for pre-authentication.%n%nPre-authentication types, ticket options and failure codes are defined in RFC 4120.%n%nIf the ticket was malformed or damaged during transit and could not be decrypted, then many fields in this event might not be present. |
0x12D9 | 使用者存取「遠端桌面」遭拒。根據預設值,只有當使用者是 Remote Desktop Users 群組或 Administrators 群組的成員時,才能連線。%n%n主體:%n%t使用者名稱:%t%1%n%t網域:%t%t%2%n%t登入識別碼:%t%3%n%n其他資訊:%n%t用戶端位址:%t%4%n%n%n當已驗證的使用者 (但系統不允許該使用者從遠端登入) 嘗試透過「遠端桌面」連線到此電腦時,會產生此事件。 |
A user was denied the access to Remote Desktop. By default, users are allowed to connect only if they are members of the Remote Desktop Users group or Administrators group.%n%nSubject:%n%tUser Name:%t%1%n%tDomain:%t%t%2%n%tLogon ID:%t%3%n%nAdditional Information:%n%tClient Address:%t%4%n%n%nThis event is generated when an authenticated user who is not allowed to log on remotely attempts to connect to this computer through Remote Desktop. |
0x12DA | 已載入開機設定資料。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n一般設定:%n%t載入選項:%t%t%5%n%t進階選項:%t%t%6%n%t設定存取原則:%t%7%n%t系統事件記錄:%t%8%n%t核心偵錯:%t%9%n%tVSM 啟動類型:%t%10%n%n簽章設定:%n%t測試簽署:%t%t%11%n%t快速簽署:%t%t%12%n%t停用完整性檢查:%t%13%n%nHyperVisor 設定:%n%tHyperVisor 載入選項:%t%14%n%tHyperVisor 啟動類型:%t%15%n%tHyperVisor 偵錯:%t%16 |
Boot Configuration Data loaded.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nGeneral Settings:%n%tLoad Options:%t%t%5%n%tAdvanced Options:%t%t%6%n%tConfiguration Access Policy:%t%7%n%tSystem Event Logging:%t%8%n%tKernel Debugging:%t%9%n%tVSM Launch Type:%t%10%n%nSignature Settings:%n%tTest Signing:%t%t%11%n%tFlight Signing:%t%t%12%n%tDisable Integrity Checks:%t%13%n%nHyperVisor Settings:%n%tHyperVisor Load Options:%t%14%n%tHyperVisor Launch Type:%t%15%n%tHyperVisor Debugging:%t%16 |
0x12DE | 已從帳戶移除 SID 歷程記錄。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n目標帳戶:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%n其他資訊:%n%t權限:%t%t%10%n%tSID 清單:%t%t%t%11 |
SID History was removed from an account.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nTarget Account:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10%n%tSID List:%t%t%t%11 |
0x1300 | 偵測到命名空間衝突。%n%n目標類型:%t%1%n目標名稱:%t%2%n樹系根目錄:%t%3%n頂層名稱:%t%4%nDNS 名稱:%t%5%nNetBIOS 名稱:%t%6%n安全性識別碼:%t%t%7%n新旗標:%t%8 |
A namespace collision was detected.%n%nTarget Type:%t%1%nTarget Name:%t%2%nForest Root:%t%3%nTop Level Name:%t%4%nDNS Name:%t%5%nNetBIOS Name:%t%6%nSecurity ID:%t%t%7%nNew Flags:%t%8 |
0x1301 | 已新增受信任的樹系資訊項目。%n%n主旨:%n%t安全性識別碼:%t%t%10%n%t帳戶名稱:%t%t%11%n%t帳戶網域:%t%t%12%n%t登入識別碼:%t%t%13%n%n信任資訊:%n%t樹系根目錄:%t%1%n%t樹系根目錄 SID:%t%2%n%t操作識別碼:%t%3%n%t項目類型:%t%4%n%t旗標:%t%5%n%t頂層名稱:%t%6%n%tDNS 名稱:%t%7%n%tNetBIOS 名稱:%t%8%n%t網域 SID:%t%9 |
A trusted forest information entry was added.%n%nSubject:%n%tSecurity ID:%t%t%10%n%tAccount Name:%t%t%11%n%tAccount Domain:%t%t%12%n%tLogon ID:%t%t%13%n%nTrust Information:%n%tForest Root:%t%1%n%tForest Root SID:%t%2%n%tOperation ID:%t%3%n%tEntry Type:%t%4%n%tFlags:%t%5%n%tTop Level Name:%t%6%n%tDNS Name:%t%7%n%tNetBIOS Name:%t%8%n%tDomain SID:%t%9 |
0x1302 | 已移除受信任的樹系資訊項目。%n%n主旨:%n%t安全性識別碼:%t%t%10%n%t帳戶名稱:%t%t%11%n%t帳戶網域:%t%t%12%n%t登入識別碼:%t%t%13%n%n信任資訊:%n%t樹系根目錄:%t%1%n%t樹系根目錄 SID:%t%2%n%t操作識別碼:%t%3%n%t項目類型:%t%4%n%t旗標:%t%5%n%t頂層名稱:%t%6%n%tDNS 名稱:%t%7%n%tNetBIOS 名稱:%t%8%n%t網域 SID:%t%9 |
A trusted forest information entry was removed.%n%nSubject:%n%tSecurity ID:%t%t%10%n%tAccount Name:%t%t%11%n%tAccount Domain:%t%t%12%n%tLogon ID:%t%t%13%n%nTrust Information:%n%tForest Root:%t%1%n%tForest Root SID:%t%2%n%tOperation ID:%t%3%n%tEntry Type:%t%4%n%tFlags:%t%5%n%tTop Level Name:%t%6%n%tDNS Name:%t%7%n%tNetBIOS Name:%t%8%n%tDomain SID:%t%9 |
0x1303 | 已修改受信任的樹系資訊項目。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n信任資訊:%n%t樹系根目錄:%t%5%n%t樹系根目錄 SID:%t%6%n%t操作識別碼:%t%7%n%t項目類型:%t%8%n%t旗標:%t%9%n%t頂層名稱:%t%10%n%tDNS 名稱:%t%11%n%tNetBIOS 名稱:%t%12%n%t網域 SID:%t%13 |
A trusted forest information entry was modified.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTrust Information:%n%tForest Root:%t%5%n%tForest Root SID:%t%6%n%tOperation ID:%t%7%n%tEntry Type:%t%8%n%tFlags:%t%9%n%tTop Level Name:%t%10%n%tDNS Name:%t%11%n%tNetBIOS Name:%t%12%n%tDomain SID:%t%13 |
0x1304 | 憑證管理員已拒絕擱置憑證的要求。%n%t%n要求識別碼:%t%1 |
The certificate manager denied a pending certificate request.%n%t%nRequest ID:%t%1 |
0x1305 | 憑證服務已收到重新提交憑證的要求。%n%t%n要求識別碼:%t%1 |
Certificate Services received a resubmitted certificate request.%n%t%nRequest ID:%t%1 |
0x1306 | 憑證服務已撤銷一個憑證。%n%t%n序號:%t%1%n原因:%t%2 |
Certificate Services revoked a certificate.%n%t%nSerial Number:%t%1%nReason:%t%2 |
0x1307 | 憑證服務已收到發佈憑證撤銷清單 (CRL) 的要求。%n%t%n下次更新:%t%1%n發佈基礎:%t%2%n發佈間隔:%t%3 |
Certificate Services received a request to publish the certificate revocation list (CRL).%n%t%nNext Update:%t%1%nPublish Base:%t%2%nPublish Delta:%t%3 |
0x1308 | 憑證服務已發佈憑證撤銷清單 (CRL)。%n%t%n基礎 CRL:%t%1%nCRL 編號:%t%2%n金鑰容器:%t%3%n下次發佈:%t%4%n發佈 URLs:%t%5 |
Certificate Services published the certificate revocation list (CRL).%n%t%nBase CRL:%t%1%nCRL Number:%t%2%nKey Container:%t%3%nNext Publish:%t%4%nPublish URLs:%t%5 |
0x1309 | 憑證要求延伸已變更。%n%t%n要求識別碼:%t%1%n名稱:%t%2%n類型:%t%3%n旗標:%t%4%n資料:%t%5 |
A certificate request extension changed.%n%t%nRequest ID:%t%1%nName:%t%2%nType:%t%3%nFlags:%t%4%nData:%t%5 |
0x130A | 一個以上的憑證要求屬性已變更。%n%t%n要求識別碼:%t%1%n屬性:%t%2 |
One or more certificate request attributes changed.%n%t%nRequest ID:%t%1%nAttributes:%t%2 |
0x130B | 憑證服務收到了關機的要求。 |
Certificate Services received a request to shut down. |
0x130C | 憑證服務備份已啟動。%n%n備份類型:%t%1 |
Certificate Services backup started.%n%nBackup Type:%t%1 |
0x130D | 憑證服務備份已完成。 |
Certificate Services backup completed. |
0x130E | 憑證服務還原已啟動。 |
Certificate Services restore started. |
0x130F | 憑證服務還原已完成。 |
Certificate Services restore completed. |
0x1310 | 憑證服務已啟動。%n%t%n憑證資料庫雜湊:%t%1%n私密金鑰使用計數:%t%2%nCA 憑證雜湊:%t%3%nCA 公開金鑰雜湊:%t%4 |
Certificate Services started.%n%t%nCertificate Database Hash:%t%1%nPrivate Key Usage Count:%t%2%nCA Certificate Hash:%t%3%nCA Public Key Hash:%t%4 |
0x1311 | 憑證服務已停止。%n%t%n憑證資料庫雜湊:%t%1%n私密金鑰使用計數:%t%2%nCA 憑證雜湊:%t%3%nCA 公開金鑰雜湊:%t%4 |
Certificate Services stopped.%n%t%nCertificate Database Hash:%t%1%nPrivate Key Usage Count:%t%2%nCA Certificate Hash:%t%3%nCA Public Key Hash:%t%4 |
0x1312 | 憑證服務的安全性權限已變更。%n%t%n%1 |
The security permissions for Certificate Services changed.%n%t%n%1 |
0x1313 | 憑證服務抓取了一個備份金鑰。%n%t%n要求識別碼:%t%1 |
Certificate Services retrieved an archived key.%n%t%nRequest ID:%t%1 |
0x1314 | 憑證服務將憑證匯入其資料庫。%n%t%n憑證:%t%1%n要求識別碼:%t%2 |
Certificate Services imported a certificate into its database.%n%t%nCertificate:%t%1%nRequest ID:%t%2 |
0x1315 | 憑證服務的稽核篩選器已變更。%n%t%n篩選器:%t%1 |
The audit filter for Certificate Services changed.%n%t%nFilter:%t%1 |
0x1316 | 憑證服務收到了憑證要求。%n%t%n要求識別碼:%t%1%n要求者:%t%2%n屬性:%t%3 |
Certificate Services received a certificate request.%n%t%nRequest ID:%t%1%nRequester:%t%2%nAttributes:%t%3 |
0x1317 | 憑證服務已同意憑證要求,而且簽發了憑證。%n%t%n要求識別碼:%t%1%n要求者:%t%2%n屬性:%t%3%n說明:%t%4%nSKI:%t%t%5%n主旨:%t%6 |
Certificate Services approved a certificate request and issued a certificate.%n%t%nRequest ID:%t%1%nRequester:%t%2%nAttributes:%t%3%nDisposition:%t%4%nSKI:%t%t%5%nSubject:%t%6 |
0x1318 | 憑證服務拒絕了憑證要求。%n%t%n要求識別碼:%t%1%n要求者:%t%2%n屬性:%t%3%n說明:%t%4%nSKI:%t%t%5%n主旨:%t%6 |
Certificate Services denied a certificate request.%n%t%nRequest ID:%t%1%nRequester:%t%2%nAttributes:%t%3%nDisposition:%t%4%nSKI:%t%t%5%nSubject:%t%6 |
0x1319 | 憑證服務將憑證要求的狀態設定為擱置。%n%t%n要求識別碼:%t%1%n要求者:%t%2%n屬性:%t%3%n說明:%t%4%nSKI:%t%t%5%n主旨:%t%6 |
Certificate Services set the status of a certificate request to pending.%n%t%nRequest ID:%t%1%nRequester:%t%2%nAttributes:%t%3%nDisposition:%t%4%nSKI:%t%t%5%nSubject:%t%6 |
0x131A | 憑證服務的憑證管理員設定已變更。%n%t%n啟用:%t%1%n%n%2 |
The certificate manager settings for Certificate Services changed.%n%t%nEnable:%t%1%n%n%2 |
0x131B | 憑證服務的設定項目已變更。%n%t%n節點:%t%1%n項目:%t%2%n數值:%t%3 |
A configuration entry changed in Certificate Services.%n%t%nNode:%t%1%nEntry:%t%2%nValue:%t%3 |
0x131C | 憑證服務的內容已變更。%n%t%n內容:%t%1%n索引:%t%2%n類型:%t%3%n數值:%t%4 |
A property of Certificate Services changed.%n%t%nProperty:%t%1%nIndex:%t%2%nType:%t%3%nValue:%t%4 |
0x131D | 憑證服務備份了一個金鑰。%n%t%n要求識別碼:%t%1%n要求者:%t%2%nKRA 雜湊:%t%3 |
Certificate Services archived a key.%n%t%nRequest ID:%t%1%nRequester:%t%2%nKRA Hashes:%t%3 |
0x131E | 憑證服務已匯入並備份了一個金鑰。%n%t%n要求識別碼:%t%1 |
Certificate Services imported and archived a key.%n%t%nRequest ID:%t%1 |
0x131F | 憑證服務發佈了一份 CA 憑證給 Active Directory 網域服務。%n%t%n憑證雜湊:%t%1%n有效期自:%t%2%n有效期至:%t%t%3 |
Certificate Services published the CA certificate to Active Directory Domain Services.%n%t%nCertificate Hash:%t%1%nValid From:%t%2%nValid To:%t%t%3 |
0x1320 | 已從憑證資料庫刪除了一行以上的資料行。%n%t%n表格識別碼:%t%1%n篩選器:%t%2%n刪除的行:%t%3 |
One or more rows have been deleted from the certificate database.%n%t%nTable ID:%t%1%nFilter:%t%2%nRows Deleted:%t%3 |
0x1321 | 已啟用角色隔離:%t%1 |
Role separation enabled:%t%1 |
0x1322 | 憑證服務已載入範本。%n%n%1 v%2 (架構 V%3)%n%4%n%5%n%n範本資訊:%n%t範本內容:%t%t%7%n%t安全性描述元:%t%t%8%n%n其他資訊:%n%t網域控制站:%t%6 |
Certificate Services loaded a template.%n%n%1 v%2 (Schema V%3)%n%4%n%5%n%nTemplate Information:%n%tTemplate Content:%t%t%7%n%tSecurity Descriptor:%t%t%8%n%nAdditional Information:%n%tDomain Controller:%t%6 |
0x1323 | 憑證服務範本已更新。%n%n%1 v%2 (架構 V%3)%n%4%n%5%n%n範本變更資訊:%n%t舊範本內容:%t%8%n%t新範本內容:%t%t%7%n%n其他資訊:%n%t網域控制站:%t%6 |
A Certificate Services template was updated.%n%n%1 v%2 (Schema V%3)%n%4%n%5%n%nTemplate Change Information:%n%tOld Template Content:%t%8%n%tNew Template Content:%t%t%7%n%nAdditional Information:%n%tDomain Controller:%t%6 |
0x1324 | 憑證服務範本安全性已更新。%n%n%1 v%2 (架構 V%3)%n%4%n%5%n%n範本變更資訊:%n%t舊範本內容:%t%t%9%n%t新範本內容:%t%7%n%t舊安全性描述元:%t%t%10%n%t新安全性描述元:%t%t%8%n%n其他資訊:%n%t網域控制站:%t%6 |
Certificate Services template security was updated.%n%n%1 v%2 (Schema V%3)%n%4%n%5%n%nTemplate Change Information:%n%tOld Template Content:%t%t%9%n%tNew Template Content:%t%7%n%tOld Security Descriptor:%t%t%10%n%tNew Security Descriptor:%t%t%8%n%nAdditional Information:%n%tDomain Controller:%t%6 |
0x1326 | 每個使用者稽核原則表格已建立。%n%n元素數目:%t%1%n原則識別碼:%t%2 |
The Per-user audit policy table was created.%n%nNumber of Elements:%t%1%nPolicy ID:%t%2 |
0x1328 | 嘗試登錄安全性事件來源。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序:%n%t處理程序識別碼:%t%7%n%t處理程序名稱:%t%8%n%n事件來源:%n%t來源名稱:%t%5%n%t事件來源識別碼:%t%6 |
An attempt was made to register a security event source.%n%nSubject :%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess:%n%tProcess ID:%t%7%n%tProcess Name:%t%8%n%nEvent Source:%n%tSource Name:%t%5%n%tEvent Source ID:%t%6 |
0x1329 | 嘗試取消登錄安全性事件來源。%n%n主旨%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序:%n%t處理程序識別碼:%t%7%n%t處理程序名稱:%t%8%n%n事件來源:%n%t來源名稱:%t%5%n%t事件來源識別碼:%t%6 |
An attempt was made to unregister a security event source.%n%nSubject%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess:%n%tProcess ID:%t%7%n%tProcess Name:%t%8%n%nEvent Source:%n%tSource Name:%t%5%n%tEvent Source ID:%t%6 |
0x132A | CrashOnAuditFail 值已經變更。%n%n新的 CrashOnAuditFail 值:%t%1 |
The CrashOnAuditFail value has changed.%n%nNew Value of CrashOnAuditFail:%t%1 |
0x132B | 物件的稽核設定已經變更。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%11%n%t處理程序名稱:%t%12%n%n稽核設定:%n%t原始安全性描述元:%t%9%n%t新安全性描述元:%t%t%10 |
Auditing settings on object were changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nAuditing Settings:%n%tOriginal Security Descriptor:%t%9%n%tNew Security Descriptor:%t%t%10 |
0x132C | 已修改特殊群組登入表。%n%n特殊群組:%t%1%n%n當登錄中的特殊群組清單已更新,或是透過安全性原則更新,就會產生這個事件。事件中會顯示更新的特殊群組清單。 |
Special Groups Logon table modified.%n%nSpecial Groups:%t%1%n%nThis event is generated when the list of special groups is updated in the registry or through security policy. The updated list of special groups is indicated in the event. |
0x132D | 已變更 TBS 的本機原則設定。%n%n舊的封鎖序數:%t%1%n新的封鎖序數:%t%2 |
The local policy settings for the TBS were changed.%n%nOld Blocked Ordinals:%t%1%nNew Blocked Ordinals:%t%2 |
0x132E | 已變更 TBS 的群組原則設定。%n%n群組原則設定:%t%t略過預設設定%n%t舊值:%t%t%1%n%t新值:%t%t%2%n%n群組原則設定:%t%t略過本機設定%n%t舊值:%t%t%3%n%t新值:%t%t%4%n%n舊的封鎖序數:%t%5%n新的封鎖序數:%t%6 |
The group policy settings for the TBS were changed.%n%nGroup Policy Setting:%t%tIgnore Default Settings%n%tOld Value:%t%t%1%n%tNew Value:%t%t%2%n%nGroup Policy Setting:%t%tIgnore Local Settings%n%tOld Value:%t%t%3%n%tNew Value:%t%t%4%n%nOld Blocked Ordinals:%t%5%nNew Blocked Ordinals:%t%6 |
0x132F | 物件的資源屬性已變更。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n程序資訊:%n%t程序識別碼:%t%11%n%t程序名稱:%t%12%n%n資源屬性:%n%t原始安全性描述元:%t%9%n%t新安全性描述元:%t%t%10 |
Resource attributes of the object were changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nResource Attributes:%n%tOriginal Security Descriptor:%t%9%n%tNew Security Descriptor:%t%t%10 |
0x1330 | 已變更每個使用者稽核原則。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n帳戶的原則:%n%t安全性識別碼:%t%t%5%n%n原則變更詳細資料:%n%t類別:%t%6%n%t子類別:%t%7%n%t子類別 GUID:%t%8%n%t變更:%t%9 |
Per User Audit Policy was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nPolicy For Account:%n%tSecurity ID:%t%t%5%n%nPolicy Change Details:%n%tCategory:%t%6%n%tSubcategory:%t%7%n%tSubcategory GUID:%t%8%n%tChanges:%t%9 |
0x1331 | 物件上的集中存取原則已變更。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n程序資訊:%n%t程序識別碼:%t%11%n%t程序名稱:%t%12%n%n集中存取原則識別碼:%n%t原始安全性描述元:%t%9%n%t新安全性描述元:%t%t%10 |
Central Access Policy on the object was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nCentral Policy ID:%n%tOriginal Security Descriptor:%t%9%n%tNew Security Descriptor:%t%t%10 |
0x1340 | 已建立 Active Directory 複寫來源命名內容。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n來源位址:%t%3%n命名內容:%t%4%n選項:%t%t%5%n狀態碼:%t%6 |
An Active Directory replica source naming context was established.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nSource Address:%t%3%nNaming Context:%t%4%nOptions:%t%t%5%nStatus Code:%t%6 |
0x1341 | 已移除 Active Directory 複寫來源命名內容。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n來源位址:%t%3%n命名內容:%t%4%n選項:%t%t%5%n狀態碼:%t%6 |
An Active Directory replica source naming context was removed.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nSource Address:%t%3%nNaming Context:%t%4%nOptions:%t%t%5%nStatus Code:%t%6 |
0x1342 | 已修改 Active Directory 複寫來源命名內容。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n來源位址:%t%3%n命名內容:%t%4%n選項:%t%t%5%n狀態碼:%t%6 |
An Active Directory replica source naming context was modified.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nSource Address:%t%3%nNaming Context:%t%4%nOptions:%t%t%5%nStatus Code:%t%6 |
0x1343 | 已修改 Active Directory 複寫目的地命名內容。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n目的地位址:%t%3%n命名內容:%t%4%n選項:%t%t%5%n狀態碼:%t%6 |
An Active Directory replica destination naming context was modified.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nDestination Address:%t%3%nNaming Context:%t%4%nOptions:%t%t%5%nStatus Code:%t%6 |
0x1344 | 同步化 Active Directory 命名內容的複寫已經開始。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n命名內容:%t%3%n選項:%t%t%4%n工作階段識別碼:%t%5%n開始 USN:%t%6 |
Synchronization of a replica of an Active Directory naming context has begun.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nNaming Context:%t%3%nOptions:%t%t%4%nSession ID:%t%5%nStart USN:%t%6 |
0x1345 | 同步化 Active Directory 命名內容的複寫已經結束。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n命名內容:%t%3%n選項:%t%t%4%n工作階段識別碼:%t%5%n結束 USN:%t%6%n狀態碼:%t%7 |
Synchronization of a replica of an Active Directory naming context has ended.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nNaming Context:%t%3%nOptions:%t%t%4%nSession ID:%t%5%nEnd USN:%t%6%nStatus Code:%t%7 |
0x1346 | 已複寫 Active Directory 物件的屬性。%n%n工作階段識別碼:%t%1%n物件:%t%t%2%n屬性:%t%3%n變更類型:%t%4%n新值:%t%5%nUSN:%t%t%6%n狀態碼:%t%7 |
Attributes of an Active Directory object were replicated.%n%nSession ID:%t%1%nObject:%t%t%2%nAttribute:%t%3%nType of change:%t%4%nNew Value:%t%5%nUSN:%t%t%6%nStatus Code:%t%7 |
0x1347 | 複寫失敗開始。%n%n複寫事件:%t%1%n稽核狀態碼:%t%2 |
Replication failure begins.%n%nReplication Event:%t%1%nAudit Status Code:%t%2 |
0x1348 | 複寫失敗結束。%n%n複寫事件:%t%1%n稽核狀態碼:%t%2%n複寫狀態碼:%t%3 |
Replication failure ends.%n%nReplication Event:%t%1%nAudit Status Code:%t%2%nReplication Status Code:%t%3 |
0x1349 | 移除複寫的延遲物件。%n%n目的地 DRA:%t%1%n來源 DRA:%t%2%n物件:%t%3%n選項:%t%4%n狀態碼:%t%5 |
A lingering object was removed from a replica.%n%nDestination DRA:%t%1%nSource DRA:%t%2%nObject:%t%3%nOptions:%t%4%nStatus Code:%t%5 |
0x1350 | Windows 防火牆啟動時下列原則已啟動。%n%n套用的群組原則:%t%1%n使用的設定檔:%t%2%n操作模式:%t%3%n允許遠端系統管理:%t%4%n允許單點傳送回應多點傳送/廣播流量:%t%5%n安全性記錄檔:%n%t記錄丟棄的封包:%t%6%n%t記錄成功的連線:%t%7 |
The following policy was active when the Windows Firewall started.%n%nGroup Policy Applied:%t%1%nProfile Used:%t%2%nOperational mode:%t%3%nAllow Remote Administration:%t%4%nAllow Unicast Responses to Multicast/Broadcast Traffic:%t%5%nSecurity Logging:%n%tLog Dropped Packets:%t%6%n%tLog Successful Connections:%t%7 |
0x1351 | Windows 防火牆啟動時規則已列出。%n%t%n使用的設定檔:%t%1%n%n規則:%n%t規則識別碼:%t%2%n%t規則名稱:%t%3 |
A rule was listed when the Windows Firewall started.%n%t%nProfile used:%t%1%n%nRule:%n%tRule ID:%t%2%n%tRule Name:%t%3 |
0x1352 | Windows 防火牆的例外清單已變更。規則已經新增。%n%t%n變更的設定檔:%t%1%n%n新增的規則:%n%t規則識別碼:%t%2%n%t規則名稱:%t%3 |
A change was made to the Windows Firewall exception list. A rule was added.%n%t%nProfile Changed:%t%1%n%nAdded Rule:%n%tRule ID:%t%2%n%tRule Name:%t%3 |
0x1353 | Windows 防火牆的例外清單已變更。規則已經修改。%n%t%n變更的設定檔:%t%1%n%n修改的規則:%n%t規則識別碼:%t%2%n%t規則名稱:%t%3 |
A change was made to the Windows Firewall exception list. A rule was modified.%n%t%nProfile Changed:%t%1%n%nModified Rule:%n%tRule ID:%t%2%n%tRule Name:%t%3 |
0x1354 | Windows 防火牆的例外清單已變更。規則已經刪除。%n%t%n變更的設定檔:%t%1%n%n刪除的規則:%n%t規則識別碼:%t%2%n%t規則名稱:%t%3 |
A change was made to the Windows Firewall exception list. A rule was deleted.%n%t%nProfile Changed:%t%1%n%nDeleted Rule:%n%tRule ID:%t%2%n%tRule Name:%t%3 |
0x1355 | Windows 防火牆設定已經還原到預設值。 |
Windows Firewall settings were restored to the default values. |
0x1356 | Windows 防火牆的設定已變更。%n%t%n變更的設定檔:%t%1%n%n新設定:%n%t類型:%t%2%n%t值:%t%3 |
A Windows Firewall setting was changed.%n%t%nChanged Profile:%t%1%n%nNew Setting:%n%tType:%t%2%n%tValue:%t%3 |
0x1357 | Windows 防火牆已略過規則,因為無法辨識其主要版本號碼。%n%t%n設定檔:%t%1%n%n略過的規則:%n%t識別碼:%t%2%n%t名稱:%t%3 |
Windows Firewall ignored a rule because its major version number is not recognized.%n%t%nProfile:%t%1%n%nIgnored Rule:%n%tID:%t%2%n%tName:%t%3 |
0x1358 | Windows 防火牆已略過部分規則,因為無法辨識其次要版本號碼。會強制執行規則的其他部分。%n%t%n設定檔:%t%1%n%n部分略過的規則:%n%t識別碼:%t%2%n%t名稱:%t%3 |
Windows Firewall ignored parts of a rule because its minor version number is not recognized. Other parts of the rule will be enforced.%n%t%nProfile:%t%1%n%nPartially Ignored Rule:%n%tID:%t%2%n%tName:%t%3 |
0x1359 | Windows 防火牆已略過規則,因為無法剖析規則。%n%t%n設定檔:%t%1%n%n拒絕的理由:%t%2%n%n規則:%n%t識別碼:%t%3%n%t名稱:%t%4 |
Windows Firewall ignored a rule because it could not be parsed.%n%t%nProfile:%t%1%n%nReason for Rejection:%t%2%n%nRule:%n%tID:%t%3%n%tName:%t%4 |
0x135A | Windows 防火牆的群組原則設定已變更,且已套用新設定。 |
Group Policy settings for Windows Firewall were changed, and the new settings were applied. |
0x135C | Windows 防火牆已變更使用中的設定檔。%n%n新的使用中設定檔:%t%1 |
Windows Firewall changed the active profile.%n%nNew Active Profile:%t%1 |
0x135D | Windows 防火牆沒有套用下列規則:%n%n規則資訊:%n%t識別碼:%t%1%n%t名稱:%t%2%n%n錯誤資訊:%n%t原因:%t%3 解析為空集合。 |
Windows Firewall did not apply the following rule:%n%nRule Information:%n%tID:%t%1%n%tName:%t%2%n%nError Information:%n%tReason:%t%3 resolved to an empty set. |
0x135E | 因為規則參照的項目並未在這部電腦上設定,所以 Windows 防火牆沒有套用下列規則:%n%n規則資訊:%n%t識別碼:%t%1%n%t名稱:%t%2%n%n錯誤資訊:%n%t錯誤:%t%3%n%t原因:%t%4 |
Windows Firewall did not apply the following rule because the rule referred to items not configured on this computer:%n%nRule Information:%n%tID:%t%1%n%tName:%t%2%n%nError Information:%n%tError:%t%3%n%tReason:%t%4 |
0x1360 | IPsec 已丟棄沒有通過完整性檢查的輸入封包。如果問題持續發生,這可能表示網路問題或是封包傳輸到這部電腦的過程中遭到修改。請檢查遠端電腦所傳送的封包與這部電腦所接收的封包相同。這個錯誤也可能是其他 IPsec 執行所導致的互通性問題。%n%n遠端網路位址:%t%1%n輸入 SA SPI:%t%t%2 |
IPsec dropped an inbound packet that failed an integrity check. If this problem persists, it could indicate a network issue or that packets are being modified in transit to this computer. Verify that the packets sent from the remote computer are the same as those received by this computer. This error might also indicate interoperability problems with other IPsec implementations.%n%nRemote Network Address:%t%1%nInbound SA SPI:%t%t%2 |
0x1361 | IPsec 已丟棄沒有通過重新執行檢查的輸入封包。如果問題持續發生,可能表示這部電腦遭到重新執行攻擊。%n%n遠端網路位址:%t%1%n輸入 SA SPI:%t%t%2 |
IPsec dropped an inbound packet that failed a replay check. If this problem persists, it could indicate a replay attack against this computer.%n%nRemote Network Address:%t%1%nInbound SA SPI:%t%t%2 |
0x1362 | IPsec 已丟棄沒有通過重新執行檢查的輸入封包。輸入封包的序號太少,不能確定它不是重新執行。%n%n遠端網路位址:%t%1%n輸入 SA SPI:%t%t%2 |
IPsec dropped an inbound packet that failed a replay check. The inbound packet had too low a sequence number to ensure it was not a replay.%n%nRemote Network Address:%t%1%nInbound SA SPI:%t%t%2 |
0x1363 | IPsec 已丟棄應該安全的輸入純文字封包。如果遠端電腦設定了要求輸出 IPsec 原則,則這個情況可能是有益且預期中的。這也可能是因為遠端電腦變更其 IPsec 原則,卻沒有通知這部電腦。也可能是詐騙攻擊嘗試。%n%n遠端網路位址:%t%1%n輸入 SA SPI:%t%t%2 |
IPsec dropped an inbound clear text packet that should have been secured. If the remote computer is configured with a Request Outbound IPsec policy, this might be benign and expected. This can also be caused by the remote computer changing its IPsec policy without informing this computer. This could also be a spoofing attack attempt.%n%nRemote Network Address:%t%1%nInbound SA SPI:%t%t%2 |
0x1364 | 特殊群組已經指派到新登入。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%t登入 GUID:%t%5%n%n新登入:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%t登入 GUID:%t%10%n%t指派的特殊群組:%t%11 |
Special groups have been assigned to a new logon.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%tLogon GUID:%t%5%n%nNew Logon:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%tLogon GUID:%t%10%n%tSpecial Groups Assigned:%t%11 |
0x1365 | IPsec 收到的遠端電腦封包,具有不正確的安全性參數索引 (SPI)。這通常是因為不正常的硬體損毀封包所造成。如果這個錯誤持續,請檢查遠端電腦所傳送的封包與這部電腦所接收的封包相同。這個錯誤也可能表示其他 IPsec 執行方式的互通性問題。如果是這樣,假如連線不受影響,則可以忽略這些事件。%n%n遠端網路位址:%t%1%n輸入 SA SPI:%t%t%2 |
IPsec received a packet from a remote computer with an incorrect Security Parameter Index (SPI). This is usually caused by malfunctioning hardware that is corrupting packets. If these errors persist, verify that the packets sent from the remote computer are the same as those received by this computer. This error might also indicate interoperability problems with other IPsec implementations. In that case, if connectivity is not impeded, then these events can be ignored.%n%nRemote Network Address:%t%1%nInbound SA SPI:%t%t%2 |
0x1370 | 在主要模式交涉期間,IPsec 收到不正確的交涉封包。如果這個問題持續發生,則可能表示網路問題,或者是嘗試修改或重新執行這個交涉。%n%n本機網路位址:%t%1%n遠端網路位址:%t%2%n金鑰處理模組名稱:%t%3 |
During main mode negotiation, IPsec received an invalid negotiation packet. If this problem persists, it could indicate a network issue or an attempt to modify or replay this negotiation.%n%nLocal Network Address:%t%1%nRemote Network Address:%t%2%nKeying Module Name:%t%3 |
0x1371 | 在快速模式交涉期間,IPsec 收到不正確的交涉封包。如果這個問題持續發生,則可能表示網路問題,或者是嘗試修改或重新執行這個交涉。%n%n本機網路位址:%t%1%n遠端網路位址:%t%2%n金鑰處理模組名稱:%t%3 |
During quick mode negotiation, IPsec received an invalid negotiation packet. If this problem persists, it could indicate a network issue or an attempt to modify or replay this negotiation.%n%nLocal Network Address:%t%1%nRemote Network Address:%t%2%nKeying Module Name:%t%3 |
0x1372 | 在延伸模式交涉期間,IPsec 收到不正確的交涉封包。如果這個問題持續發生,則可能表示網路問題,或者是嘗試修改或重新執行這個交涉。%n%n本機網路位址:%t%1%n遠端網路位址:%t%2%n金鑰處理模組名稱:%t%3 |
During extended mode negotiation, IPsec received an invalid negotiation packet. If this problem persists, it could indicate a network issue or an attempt to modify or replay this negotiation.%n%nLocal Network Address:%t%1%nRemote Network Address:%t%2%nKeying Module Name:%t%3 |
0x1373 | 已經建立 IPsec 主要模式及延伸模式安全性關聯。%n%n主要模式本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%3%n%t金鑰處理模組連接埠:%t%4%n%n主要模式遠端端點:%n%t主體名稱:%t%2%n%t網路位址:%t%5%n%t金鑰處理模組連接埠:%t%6%n%n主要模式密碼編譯資訊:%n%t密碼演算法:%t%8%n%t完整性演算法:%t%9%n%tDiffie-Hellman 群組:%t%10%n%n主要模式安全性關聯:%n%t存留期 (分):%t%11%n%t快速模式限制:%t%12%n%t主要模式 SA 識別碼:%t%16%n%t%n主要模式其他資訊:%n%t金鑰處理模組名稱:%tAuthIP%n%t驗證方法:%t%7%n%t角色:%t%t%t%13%n%t模擬狀態:%t%14%n%t主要模式篩選器識別碼:%t%15%n%n延伸模式資訊:%n%t本機主體名稱:%t%17%n%t遠端主體名稱:%t%18%n%t驗證方法:%t%19%n%t模擬狀態:%t%20%n%t快速模式篩選器識別碼:%t%21 |
IPsec main mode and extended mode security associations were established.%n%nMain Mode Local Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%3%n%tKeying Module Port:%t%4%n%nMain Mode Remote Endpoint:%n%tPrincipal Name:%t%2%n%tNetwork Address:%t%5%n%tKeying Module Port:%t%6%n%nMain Mode Cryptographic Information:%n%tCipher Algorithm:%t%8%n%tIntegrity Algorithm:%t%9%n%tDiffie-Hellman Group:%t%10%n%nMain Mode Security Association:%n%tLifetime (minutes):%t%11%n%tQuick Mode Limit:%t%12%n%tMain Mode SA ID:%t%16%n%t%nMain Mode Additional Information:%n%tKeying Module Name:%tAuthIP%n%tAuthentication Method:%t%7%n%tRole:%t%t%t%13%n%tImpersonation State:%t%14%n%tMain Mode Filter ID:%t%15%n%nExtended Mode Information:%n%tLocal Principal Name:%t%17%n%tRemote Principal Name:%t%18%n%tAuthentication Method:%t%19%n%tImpersonation State:%t%20%n%tQuick Mode Filter ID:%t%21 |
0x1374 | 已經建立 IPsec 主要模式安全性關聯及延伸模式安全性關聯。%n%n主要模式本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%3%n%t金鑰處理模組連接埠:%t%4%n%n主要模式遠端端點:%n%t主體名稱:%t%2%n%t網路位址:%t%5%n%t金鑰處理模組連接埠:%t%6%n%n主要模式密碼編譯資訊:%n%t密碼演算法:%t%8%n%t完整性演算法:%t%9%n%tDiffie-Hellman 群組:%t%10%n%n主要模式安全性關聯:%n%t存留期 (分):%t%11%n%t快速模式限制:%t%12%n%t主要模式 SA 識別碼:%t%16%n%t%n主要模式其他資訊:%n%t金鑰處理模組名稱:%tAuthIP%n%t驗證方法:%t%7%n%t角色:%t%t%t%13%n%t模擬狀態:%t%14%n%t主要模式篩選器識別碼:%t%15%n%n延伸模式本機端點:%n%t主體名稱:%t%17%n%t憑證 SHA 指紋:%t%18%n%t憑證簽發 CA:%t%19%n%t憑證根 CA:%t%20%n%n延伸模式遠端端點:%n%t主體名稱:%t%21%n%t憑證 SHA 指紋:%t%22%n%t憑證簽發 CA:%t%23%n%t憑證根 CA:%t%24%n%n延伸模式其他資訊:%n%t驗證方法:%tSSL%n%t模擬狀態:%t%25%n%t快速模式篩選器識別碼:%t%26 |
IPsec main mode and extended mode security associations were established.%n%nMain Mode Local Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%3%n%tKeying Module Port:%t%4%n%nMain Mode Remote Endpoint:%n%tPrincipal Name:%t%2%n%tNetwork Address:%t%5%n%tKeying Module Port:%t%6%n%nMain Mode Cryptographic Information:%n%tCipher Algorithm:%t%8%n%tIntegrity Algorithm:%t%9%n%tDiffie-Hellman Group:%t%10%n%nMain Mode Security Association:%n%tLifetime (minutes):%t%11%n%tQuick Mode Limit:%t%12%n%tMain Mode SA ID:%t%16%n%t%nMain Mode Additional Information:%n%tKeying Module Name:%tAuthIP%n%tAuthentication Method:%t%7%n%tRole:%t%t%t%13%n%tImpersonation State:%t%14%n%tMain Mode Filter ID:%t%15%n%nExtended Mode Local Endpoint:%n%tPrincipal Name:%t%17%n%tCertificate SHA Thumbprint:%t%18%n%tCertificate Issuing CA:%t%19%n%tCertificate Root CA:%t%20%n%nExtended Mode Remote Endpoint:%n%tPrincipal Name:%t%21%n%tCertificate SHA Thumbprint:%t%22%n%tCertificate Issuing CA:%t%23%n%tCertificate Root CA:%t%24%n%nExtended Mode Additional Information:%n%tAuthentication Method:%tSSL%n%tImpersonation State:%t%25%n%tQuick Mode Filter ID:%t%26 |
0x1375 | 已經建立 IPsec 主要模式安全性關聯及延伸模式安全性關聯。%n%n本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%9%n%t金鑰處理模組連接埠:%t%10%n%n本機憑證:%n%tSHA 指紋:%t%2%n%t簽發 CA:%t%t%3%n%t根 CA:%t%t%4%n%n遠端端點:%n%t主體名稱:%t%t%5%n%t網路位址:%t%11%n%t金鑰處理模組連接埠:%t%12%n%n遠端憑證:%n%tSHA 指紋:%t%6%n%t簽發 CA:%t%t%7%n%t根 CA:%t%t%8%n%n密碼編譯資訊:%n%t密碼演算法:%t%13%n%t完整性演算法:%t%14%n%tDiffie-Hellman 群組:%t%15%n%n安全性關聯資訊:%n%t存留期 (分):%t%16%n%t快速模式限制:%t%17%n%t主要模式 SA 識別碼:%t%21%n%n其他資訊:%n%t金鑰處理模組名稱:%tAuthIP%n%t驗證方法:%tSSL%n%t角色:%t%t%t%18%n%t模擬狀態:%t%19%n%t主要模式篩選器識別碼:%t%20%n%t%n延伸模式資訊:%n%t本機主體名稱:%t%22%n%t遠端主體名稱:%t%23%n%t驗證方法:%t%24%n%t模擬狀態:%t%25%n%t快速模式篩選器識別碼:%t%26 |
IPsec main mode and extended mode security associations were established.%n%nLocal Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%9%n%tKeying Module Port:%t%10%n%nLocal Certificate:%n%tSHA Thumbprint:%t%2%n%tIssuing CA:%t%t%3%n%tRoot CA:%t%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%t%5%n%tNetwork Address:%t%11%n%tKeying Module Port:%t%12%n%nRemote Certificate:%n%tSHA Thumbprint:%t%6%n%tIssuing CA:%t%t%7%n%tRoot CA:%t%t%8%n%nCryptographic Information:%n%tCipher Algorithm:%t%13%n%tIntegrity Algorithm:%t%14%n%tDiffie-Hellman Group:%t%15%n%nSecurity Association Information:%n%tLifetime (minutes):%t%16%n%tQuick Mode Limit:%t%17%n%tMain Mode SA ID:%t%21%n%nAdditional Information:%n%tKeying Module Name:%tAuthIP%n%tAuthentication Method:%tSSL%n%tRole:%t%t%t%18%n%tImpersonation State:%t%19%n%tMain Mode Filter ID:%t%20%n%t%nExtended Mode Information:%n%tLocal Principal Name:%t%22%n%tRemote Principal Name:%t%23%n%tAuthentication Method:%t%24%n%tImpersonation State:%t%25%n%tQuick Mode Filter ID:%t%26 |
0x1376 | 已經建立 IPsec 主要模式安全性關聯及延伸模式安全性關聯。%n%n本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%n%t金鑰處理模組連接埠:%t%9%n%n本機憑證:%n%tSHA 指紋:%t%2%n%t簽發 CA:%t%t%3%n%t根 CA:%t%t%4%n%n遠端端點:%n%t主體名稱:%t%t%5%n%t網路位址:%t%10%n%t金鑰模組連接埠:%t%11%n%n遠端憑證:%n%tSHA 指紋t:%t%6%n%t簽發 CA:%t%t%7%n%t根 CA:%t%t%8%n%n密碼編譯資訊:%n%t密碼演算法:%t%12%n%t完整性演算法:%t%13%n%tDiffie-Hellman 群組:%t%14%n%n安全性關聯資訊:%n%t存留期 (分):%t%15%n%t快速模式限制:%t%16%n%t主要模式 SA 識別碼:%t%20%n%n其他資訊:%n%t金鑰處理模組名稱:%tAuthIP%n%t驗證方法:%tSSL%n%t角色:%t%t%t%17%n%t模擬狀態:%t%18%n%t主要模式篩選器識別碼:%t%19%n%t%n延伸模式本機端點:%n%t主體名稱:%t%t%21%n%t憑證 SHA 指紋:%t%22%n%t憑證簽發 CA:%t%23%n%t憑證根 CA:%t%24%n%n延伸模式遠端端點:%n%t主體名稱:%t%t%25%n%t憑證 SHA 指紋:%t%26%n%t憑證簽發 CA:%t%27%n%t憑證根 CA:%t%28%n延伸模式其他資訊:%n%t驗證方法:%tSSL%n%t模擬狀態:%t%29%n%t快速模式篩選器識別碼:%t%30 |
IPsec main mode and extended mode security associations were established.%n%nLocal Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%n%tKeying Module Port:%t%9%n%nLocal Certificate:%n%tSHA Thumbprint:%t%2%n%tIssuing CA:%t%t%3%n%tRoot CA:%t%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%t%5%n%tNetwork Address:%t%10%n%tKeying Module Port:%t%11%n%nRemote Certificate:%n%tSHA Thumbprint:%t%6%n%tIssuing CA:%t%t%7%n%tRoot CA:%t%t%8%n%nCryptographic Information:%n%tCipher Algorithm:%t%12%n%tIntegrity Algorithm:%t%13%n%tDiffie-Hellman Group:%t%14%n%nSecurity Association Information:%n%tLifetime (minutes):%t%15%n%tQuick Mode Limit:%t%16%n%tMain Mode SA ID:%t%20%n%nAdditional Information:%n%tKeying Module Name:%tAuthIP%n%tAuthentication Method:%tSSL%n%tRole:%t%t%t%17%n%tImpersonation State:%t%18%n%tMain Mode Filter ID:%t%19%n%t%nExtended Mode Local Endpoint:%n%tPrincipal Name:%t%t%21%n%tCertificate SHA Thumbprint:%t%22%n%tCertificate Issuing CA:%t%23%n%tCertificate Root CA:%t%24%n%nExtended Mode Remote Endpoint:%n%tPrincipal Name:%t%t%25%n%tCertificate SHA Thumbprint:%t%26%n%tCertificate Issuing CA:%t%27%n%tCertificate Root CA:%t%28%nExtended Mode Additional Information:%n%tAuthentication Method:%tSSL%n%tImpersonation State:%t%29%n%tQuick Mode Filter ID:%t%30 |
0x1377 | IPsec 延伸模式交涉失敗。相對的主要模式安全性關聯已經刪除。%n%n%n本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%9%n%t金鑰處理模組連接埠:%t%10%n%n本機憑證:%n%tSHA 指紋:%t%2%n%t簽發 CA:%t%t%3%n%t根 CA:%t%t%4%n%n遠端端點:%n%t主體名稱:%t%t%5%n%t網路位址:%t%11%n%t金鑰處理模組連接埠:%t%12%n%n遠端憑證:%n%tSHA 指紋:%t%6%n%t簽發 CA:%t%t%7%n%t根 CA:%t%t%8%n%n其他資訊:%n%t金鑰處理模組名稱:%tAuthIP%n%t驗證方法:%tSSL%n%t角色:%t%t%t%16%n%t模擬狀態:%t%17%n%t快速模式篩選器識別碼:%t%18%n%n失敗資訊:%n%t失敗點:%t%t%13%n%t失敗原因:%t%t%14%n%t狀態:%t%t%t%15 |
An IPsec extended mode negotiation failed. The corresponding main mode security association has been deleted.%n%n%nLocal Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%9%n%tKeying Module Port:%t%10%n%nLocal Certificate:%n%tSHA Thumbprint:%t%2%n%tIssuing CA:%t%t%3%n%tRoot CA:%t%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%t%5%n%tNetwork Address:%t%11%n%tKeying Module Port:%t%12%n%nRemote Certificate:%n%tSHA Thumbprint:%t%6%n%tIssuing CA:%t%t%7%n%tRoot CA:%t%t%8%n%nAdditional Information:%n%tKeying Module Name:%tAuthIP%n%tAuthentication Method:%tSSL%n%tRole:%t%t%t%16%n%tImpersonation State:%t%17%n%tQuick Mode Filter ID:%t%18%n%nFailure Information:%n%tFailure Point:%t%t%13%n%tFailure Reason:%t%t%14%n%tState:%t%t%t%15 |
0x1378 | IPsec 延伸模式交涉失敗。對應的主要模式安全性關聯已經刪除。%n%n本機端點:%n%t主體名稱:%t%t%1%n%t網路位址:%t%3%n%t金鑰處理模組連接埠:%t%4%n%n遠端端點:%n%t主體名稱:%t%t%2%n%t網路位址:%t%5%n%t金鑰處理模組連接埠:%t%6%n%n其他資訊:%n%t金鑰處理模組名稱:%tAuthIP%n%t驗證方法:%t%9%n%t角色:%t%t%t%11%n%t模擬狀態:%t%12%n%t快速模式篩選器識別碼:%t%13%n%n失敗資訊:%n%t失敗點:%t%t%7%n%t失敗原因:%t%t%8%n%t狀態:%t%t%t%10 |
An IPsec extended mode negotiation failed. The corresponding main mode security association has been deleted.%n%nLocal Endpoint:%n%tPrincipal Name:%t%t%1%n%tNetwork Address:%t%3%n%tKeying Module Port:%t%4%n%nRemote Endpoint:%n%tPrincipal Name:%t%t%2%n%tNetwork Address:%t%5%n%tKeying Module Port:%t%6%n%nAdditional Information:%n%tKeying Module Name:%tAuthIP%n%tAuthentication Method:%t%9%n%tRole:%t%t%t%11%n%tImpersonation State:%t%12%n%tQuick Mode Filter ID:%t%13%n%nFailure Information:%n%tFailure Point:%t%t%7%n%tFailure Reason:%t%t%8%n%tState:%t%t%t%10 |
0x1379 | 交易的狀態已經變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n交易資訊:%n%tRM 交易識別碼:%t%5%n%t新狀態:%t%t%6%n%t資源管理員:%t%7%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%8%n%t處理程序名稱:%t%t%9 |
The state of a transaction has changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nTransaction Information:%n%tRM Transaction ID:%t%5%n%tNew State:%t%t%6%n%tResource Manager:%t%7%n%nProcess Information:%n%tProcess ID:%t%t%8%n%tProcess Name:%t%t%9 |
0x13A0 | Windows 防火牆服務已成功啟動。 |
The Windows Firewall service started successfully. |
0x13A1 | Windows 防火牆服務已停止。 |
The Windows Firewall service was stopped. |
0x13A3 | Windows 防火牆服務無法從本機存放區抓取安全性原則。Windows 防火牆會繼續強制執行目前的原則。%n%n錯誤碼:%t%1 |
The Windows Firewall service was unable to retrieve the security policy from the local storage. Windows Firewall will continue to enforce the current policy.%n%nError Code:%t%1 |
0x13A4 | Windows 防火牆無法剖析新的安全性原則。Windows 防火牆會繼續強制執行目前的原則。%n%n錯誤碼:%t%1 |
Windows Firewall was unable to parse the new security policy. Windows Firewall will continue to enforce the current policy.%n%nError Code:%t%1 |
0x13A5 | Windows 防火牆服務無法初始化驅動程式。Windows 防火牆會繼續強制執行目前的原則。%n%n錯誤碼:%t%1 |
The Windows Firewall service failed to initialize the driver. Windows Firewall will continue to enforce the current policy.%n%nError Code:%t%1 |
0x13A6 | Windows 防火牆服務無法啟動。%n%n錯誤碼:%t%1 |
The Windows Firewall service failed to start.%n%nError Code:%t%1 |
0x13A7 | Windows 防火牆已封鎖應用程式,讓應用程式無法接受網路上的連入連線。%n%n設定檔:%t%t%1%n應用程式:%t%t%2 |
Windows Firewall blocked an application from accepting incoming connections on the network.%n%nProfiles:%t%t%1%nApplication:%t%t%2 |
0x13A8 | Windows 防火牆無法通知使用者已經封鎖應用程式接受網路上的輸入連線。%n%n錯誤碼:%t%1 |
Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network.%n%nError Code:%t%1 |
0x13A9 | Windows 防火牆驅動程式已成功啟動。 |
The Windows Firewall Driver started successfully. |
0x13AA | Windows 防火牆驅動程式已停止。 |
The Windows Firewall Driver was stopped. |
0x13AB | Windows 防火牆驅動程式無法開始。%n%n錯誤碼:%t%1 |
The Windows Firewall Driver failed to start.%n%nError Code:%t%1 |
0x13AD | Windows 防火牆驅動程式偵測到重大的執行階段錯誤,正在終止。%n%n錯誤碼:%t%1 |
The Windows Firewall Driver detected a critical runtime error, terminating.%n%nError Code:%t%1 |
0x13AE | 程式碼完整性已經判斷檔案的映像雜湊不正確。檔案可能因為未授權的修改而損毀,或不正確的雜湊表示潛在的磁碟裝置錯誤。%n%n檔案名稱:%t%1%t |
Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.%n%nFile Name:%t%1%t |
0x13AF | 已經模擬登錄機碼。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t機碼名稱:%t%t%5%n%t虛擬機碼名稱:%t%t%6%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%7%n%t處理程序名稱:%t%t%8 |
A registry key was virtualized.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tKey Name:%t%t%5%n%tVirtual Key Name:%t%t%6%n%nProcess Information:%n%tProcess ID:%t%t%7%n%tProcess Name:%t%t%8 |
0x13B0 | IPSec 設定已變更。已新增驗證組。%n%t%n變更的設定檔:%t%t%1%n%n新增的驗證組:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. An authentication set was added.%n%t%nProfile Changed:%t%t%1%n%nAdded Authentication Set:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B1 | IPSec 設定已變更。已修改驗證組。%n%t%n變更的設定檔:%t%t%1%n%n修改的驗證組:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. An authentication set was modified.%n%t%nProfile Changed:%t%t%1%n%nModified Authentication Set:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B2 | IPSec 設定已變更。已刪除驗證組。%n%t%n變更的設定檔:%t%t%1%n%n刪除的驗證組:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. An authentication set was deleted.%n%t%nProfile Changed:%t%t%1%n%nDeleted Authentication Set:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B3 | IPSec 設定已變更。已新增連線安全性規則。%n%t%n變更的設定檔:%t%t%1%n%n新增的連線安全性規則:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. A connection security rule was added.%n%t%nProfile Changed:%t%t%1%n%nAdded Connection Security Rule:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B4 | IPSec 設定已變更。已修改連線安全性規則。%n%t%n變更的設定檔:%t%1%n%n修改的連線安全性規則:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. A connection security rule was modified.%n%t%nProfile Changed:%t%1%n%nModified Connection Security Rule:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B5 | IPSec 設定已變更。已刪除連線安全性規則。%n%t%n變更的設定檔:%t%1%n%n刪除的連線安全性規則:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. A connection security rule was deleted.%n%t%nProfile Changed:%t%1%n%nDeleted Connection Security Rule:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B6 | IPSec 設定已變更。已新增密碼編譯集。%n%t%n變更的設定檔:%t%1%n%n新增的密碼編譯集:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. A crypto set was added.%n%t%nProfile Changed:%t%1%n%nAdded Crypto Set:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B7 | IPSec 設定已變更。已修改密碼編譯集。%n%t%n變更的設定檔:%t%1%n%n修改的密碼編譯集:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. A crypto set was modified.%n%t%nProfile Changed:%t%1%n%nModified Crypto Set:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B8 | IPSec 設定已變更。已刪除密碼編譯集。%n%t%n變更的設定檔:%t%1%n%n刪除的密碼編譯集:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
A change was made to IPsec settings. A crypto set was deleted.%n%t%nProfile Changed:%t%1%n%nDeleted Crypto Set:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13B9 | IPSec 安全性關聯已刪除。%n%t%n變更的設定檔:%t%1%n%n刪除的 SA:%n%t識別碼:%t%t%t%2%n%t名稱:%t%t%t%3 |
An IPsec security association was deleted.%n%t%nProfile Changed:%t%1%n%nDeleted SA:%n%tID:%t%t%t%2%n%tName:%t%t%t%3 |
0x13BA | 已拒絕以程式方式使用 INetFwProfile.FirewallEnabled(FALSE) 介面呼叫停用 Windows 防火牆的嘗試,因為此 Windows 版本不支援此 API。發生此問題最可能的原因是程式與此 Windows 版本不相容。請連絡該程式的製造商,以確定您使用的是相容的程式版本。%n%n錯誤碼:%t%tE_NOTIMPL%n呼叫者處理程序名稱:%t%t%1%n處理程序識別碼:%t%t%2%n發行者:%t%t%3 |
An attempt to programmatically disable Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on this version of Windows. This is most likely due to a program that is incompatible with this version of Windows. Please contact the program's manufacturer to make sure you have a compatible program version.%n%nError Code:%t%tE_NOTIMPL%nCaller Process Name:%t%t%1%nProcess Id:%t%t%2%nPublisher:%t%t%3 |
0x13BB | 已經模擬檔案。%n%n主旨:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%t%4%n%n物件:%n%t檔案名稱:%t%t%t%5%n%t虛擬檔案名稱:%t%6%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%t%7%n%t處理程序名稱:%t%t%t%8 |
A file was virtualized.%n%nSubject:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%t%4%n%nObject:%n%tFile Name:%t%t%t%5%n%tVirtual File Name:%t%6%n%nProcess Information:%n%tProcess ID:%t%t%t%7%n%tProcess Name:%t%t%t%8 |
0x13C0 | 已執行密碼編譯自我測試。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n模組:%t%t%5%n%n傳回碼:%t%6 |
A cryptographic self test was performed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nModule:%t%t%5%n%nReturn Code:%t%6 |
0x13C1 | 密碼編譯基本操作失敗。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n密碼編譯參數:%n%t提供者名稱:%t%t%5%n%t演算法名稱:%t%6%n%n失敗資訊:%n%t原因:%t%t%t%7%n%t傳回碼:%t%t%8 |
A cryptographic primitive operation failed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCryptographic Parameters:%n%tProvider Name:%t%t%5%n%tAlgorithm Name:%t%6%n%nFailure Information:%n%tReason:%t%t%t%7%n%tReturn Code:%t%t%8 |
0x13C2 | 金鑰檔案操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n密碼編譯參數:%n%t提供者名稱:%t%5%n%t演算法名稱:%t%6%n%t金鑰名稱:%t%7%n%t金鑰類型:%t%8%n%n金鑰檔案操作資訊:%n%t檔案路徑:%t%9%n%t操作:%t%10%n%t傳回碼:%t%11 |
Key file operation.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCryptographic Parameters:%n%tProvider Name:%t%5%n%tAlgorithm Name:%t%6%n%tKey Name:%t%7%n%tKey Type:%t%8%n%nKey File Operation Information:%n%tFile Path:%t%9%n%tOperation:%t%10%n%tReturn Code:%t%11 |
0x13C3 | 金鑰移轉操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n密碼編譯參數:%n%t提供者名稱:%t%5%n%t演算法名稱:%t%6%n%t金鑰名稱:%t%7%n%t金鑰類型:%t%8%n%n其他資訊:%n%t操作:%t%9%n%t傳回碼:%t%10 |
Key migration operation.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCryptographic Parameters:%n%tProvider Name:%t%5%n%tAlgorithm Name:%t%6%n%tKey Name:%t%7%n%tKey Type:%t%8%n%nAdditional Information:%n%tOperation:%t%9%n%tReturn Code:%t%10 |
0x13C4 | 驗證操作失敗。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n密碼編譯參數:%n%t提供者名稱:%t%5%n%t演算法名稱:%t%6%n%t金鑰名稱:%t%7%n%t金鑰類型:%t%8%n%n失敗資訊:%n%t原因:%t%9%n%t傳回碼:%t%10 |
Verification operation failed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCryptographic Parameters:%n%tProvider Name:%t%5%n%tAlgorithm Name:%t%6%n%tKey Name:%t%7%n%tKey Type:%t%8%n%nFailure Information:%n%tReason:%t%9%n%tReturn Code:%t%10 |
0x13C5 | 密碼編譯操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n密碼編譯參數:%n%t提供者名稱:%t%5%n%t演算法名稱:%t%6%n%t金鑰名稱:%t%7%n%t金鑰類型:%t%8%n%n密碼編譯操作:%n%t操作:%t%9%n%t傳回碼:%t%10 |
Cryptographic operation.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCryptographic Parameters:%n%tProvider Name:%t%5%n%tAlgorithm Name:%t%6%n%tKey Name:%t%7%n%tKey Type:%t%8%n%nCryptographic Operation:%n%tOperation:%t%9%n%tReturn Code:%t%10 |
0x13C6 | 已執行核心模式密碼編譯自我測試。%n%n模組:%t%1%n%n傳回碼:%t%2 |
A kernel-mode cryptographic self test was performed.%n%nModule:%t%1%n%nReturn Code:%t%2 |
0x13C7 | 已嘗試密碼編譯提供者操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n密碼編譯提供者:%n%t名稱:%t%5%n%t模組:%t%6%n%n操作:%t%7%n%n傳回碼:%t%8 |
A cryptographic provider operation was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCryptographic Provider:%n%tName:%t%5%n%tModule:%t%6%n%nOperation:%t%7%n%nReturn Code:%t%8 |
0x13C8 | 已嘗試密碼編譯內容操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%n操作:%t%7%n%n傳回碼:%t%8 |
A cryptographic context operation was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%nOperation:%t%7%n%nReturn Code:%t%8 |
0x13C9 | 已嘗試密碼編譯內容修改。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%n變更資訊:%n%t舊值:%t%7%n%t新值:%t%8%n%n傳回碼:%t%9 |
A cryptographic context modification was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%nChange Information:%n%tOld Value:%t%7%n%tNew Value:%t%8%n%nReturn Code:%t%9 |
0x13CA | 已嘗試密碼編譯函式操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%t介面:%t%7%n%t函數:%t%8%n%t位置:%t%9%n%n操作:%t%10%n%n傳回碼:%t%11 |
A cryptographic function operation was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%tInterface:%t%7%n%tFunction:%t%8%n%tPosition:%t%9%n%nOperation:%t%10%n%nReturn Code:%t%11 |
0x13CB | 已嘗試密碼編譯函式修改。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%t介面:%t%7%n%t函數:%t%8%n%n變更資訊:%n%t舊值:%t%9%n%t新值:%t%10%n%n傳回碼:%t%11 |
A cryptographic function modification was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%tInterface:%t%7%n%tFunction:%t%8%n%nChange Information:%n%tOld Value:%t%9%n%tNew Value:%t%10%n%nReturn Code:%t%11 |
0x13CC | 已嘗試密碼編譯函式提供者操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%t介面:%t%7%n%t函數:%t%8%n%t提供者:%t%9%n%t位置:%t%10%n%n操作:%t%11%n%n傳回碼:%t%12 |
A cryptographic function provider operation was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%tInterface:%t%7%n%tFunction:%t%8%n%tProvider:%t%9%n%tPosition:%t%10%n%nOperation:%t%11%n%nReturn Code:%t%12 |
0x13CD | 已嘗試密碼編譯函式內容操作。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%t介面:%t%7%n%t函數:%t%8%n%t內容:%t%9%n%n操作:%t%10%n%n數值:%t%11%n%n傳回碼:%t%12 |
A cryptographic function property operation was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%tInterface:%t%7%n%tFunction:%t%8%n%tProperty:%t%9%n%nOperation:%t%10%n%nValue:%t%11%n%nReturn Code:%t%12 |
0x13CE | 已嘗試密碼編譯函式內容修改。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n設定參數:%n%t領域:%t%5%n%t內容:%t%6%n%t介面:%t%7%n%t函數:%t%8%n%t內容:%t%9%n%n變更資訊:%n%t舊值:%t%10%n%t新值:%t%11%n%n傳回碼:%t%12 |
A cryptographic function property modification was attempted.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nConfiguration Parameters:%n%tScope:%t%5%n%tContext:%t%6%n%tInterface:%t%7%n%tFunction:%t%8%n%tProperty:%t%9%n%nChange Information:%n%tOld Value:%t%10%n%tNew Value:%t%11%n%nReturn Code:%t%12 |
0x13CF | Microsoft 金鑰發佈服務拒絕金鑰存取。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n安全性描述元:%t%5 |
Key access denied by Microsoft key distribution service.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nSecurity Descriptor:%t%5 |
0x1400 | OCSP 回應程式服務已經啟動。 |
OCSP Responder Service Started. |
0x1401 | OCSP 回應程式服務已經停止。 |
OCSP Responder Service Stopped. |
0x1402 | OCSP 回應程式服務的設定項目已經變更。%n%nCA 設定識別碼:%t%t%1%n新值:%t%t%2 |
A Configuration entry changed in the OCSP Responder Service.%n%nCA Configuration ID:%t%t%1%nNew Value:%t%t%2 |
0x1403 | OCSP 回應程式服務的設定項目已經變更。%n%n內容名稱:%t%t%1%n新值:%t%t%2 |
A configuration entry changed in the OCSP Responder Service.%n%nProperty Name:%t%t%1%nNew Value:%t%t%2 |
0x1404 | OCSP 回應程式服務的安全性設定已經更新。%n%n新值:%t%1 |
A security setting was updated on OCSP Responder Service.%n%nNew Value:%t%1 |
0x1405 | 要求已經提交至 OCSP 回應程式服務。%n%n憑證序號: %1%n簽發者 CA 名稱: %2%n撤銷狀態: %3 |
A request was submitted to OCSP Responder Service. %n%nCertificate Serial Number: %1%nIssuer CA Name: %2%nRevocation Status: %3 |
0x1406 | OCSP 回應程式服務已經自動更新簽署憑證。%n%nCA 設定識別碼:%t%t%1%n新簽署憑證雜湊:%t%t%2 |
Signing Certificate was automatically updated by the OCSP Responder Service.%n%nCA Configuration ID:%t%t%1%nNew Signing Certificate Hash:%t%t%2 |
0x1407 | OCSP 撤銷提供者已成功更新撤銷資訊。%n%nCA 設定識別碼:%t%t%1%n基本 CRL 號碼:%t%t%2%n基本 CRL 這個更新:%t%t%3%n基本 CRL 雜湊:%t%t%4%nDelta CRL 號碼:%t%t%5%nDelta CRL 指示器:%t%t%6%nDelta CRL 這個更新:%t%t%7%nDelta CRL 雜湊:%t%t%8 |
The OCSP Revocation Provider successfully updated the revocation information.%n%nCA Configuration ID:%t%t%1%nBase CRL Number:%t%t%2%nBase CRL This Update:%t%t%3%nBase CRL Hash:%t%t%4%nDelta CRL Number:%t%t%5%nDelta CRL Indicator:%t%t%6%nDelta CRL This Update:%t%t%7%nDelta CRL Hash:%t%t%8 |
0x1410 | 已修改目錄服務物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n目錄服務:%n%t名稱:%t%7%n%t類型:%t%8%n%t%n物件:%n%tDN:%t%9%n%tGUID:%t%10%n%t類別:%t%11%n%t%n屬性:%n%tLDAP 顯示名稱:%t%12%n%t語法 (OID):%t%13%n%t值:%t%14%n%t%n操作:%n%t類型:%t%15%n%t相互關聯識別碼:%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was modified.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nDirectory Service:%n%tName:%t%7%n%tType:%t%8%n%t%nObject:%n%tDN:%t%9%n%tGUID:%t%10%n%tClass:%t%11%n%t%nAttribute:%n%tLDAP Display Name:%t%12%n%tSyntax (OID):%t%13%n%tValue:%t%14%n%t%nOperation:%n%tType:%t%15%n%tCorrelation ID:%t%1%n%tApplication Correlation ID:%t%2 |
0x1411 | 已建立目錄服務物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%t%n目錄服務:%n%t名稱:%t%7%n%t類型:%t%8%n%t%n物件:%n%tDN:%t%9%n%tGUID:%t%10%n%t類別:%t%11%n%t%n操作:%n%t相互關聯識別碼:%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was created.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%t%nDirectory Service:%n%tName:%t%7%n%tType:%t%8%n%t%nObject:%n%tDN:%t%9%n%tGUID:%t%10%n%tClass:%t%11%n%t%nOperation:%n%tCorrelation ID:%t%1%n%tApplication Correlation ID:%t%2 |
0x1412 | 已解除刪除目錄服務物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%t%n目錄服務:%n%t名稱:%t%7%n%t類型:%t%8%n%t%n物件:%n%t舊 DN:%t%9%n%t新 DN:%t%10%n%tGUID:%t%11%n%t類別:%t%12%n%t%n操作:%n%t相互關聯識別碼:%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was undeleted.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%t%nDirectory Service:%n%tName:%t%7%n%tType:%t%8%n%t%nObject:%n%tOld DN:%t%9%n%tNew DN:%t%10%n%tGUID:%t%11%n%tClass:%t%12%n%t%nOperation:%n%tCorrelation ID:%t%1%n%tApplication Correlation ID:%t%2 |
0x1413 | 已移動目錄服務物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%t%n目錄服務:%n%t名稱:%t%t%7%n%t類型:%t%t%8%n%t%n物件:%n%t舊 DN:%t%t%9%n%t新 DN:%t%10%n%tGUID:%t%t%11%n%t類別:%t%t%12%n%t%n操作:%n%t相互關聯識別碼:%t%t%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was moved.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%t%nDirectory Service:%n%tName:%t%t%7%n%tType:%t%t%8%n%t%nObject:%n%tOld DN:%t%t%9%n%tNew DN:%t%10%n%tGUID:%t%t%11%n%tClass:%t%t%12%n%t%nOperation:%n%tCorrelation ID:%t%t%t%1%n%tApplication Correlation ID:%t%2 |
0x1414 | 已存取網路共用物件。%n%t%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n網路資訊:%t%n%t物件類型:%t%t%5%n%t來源位址:%t%t%6%n%t來源連接埠:%t%t%7%n%t%n共用資訊:%n%t共用名稱:%t%t%8%n%t共用路徑:%t%t%9%n%n存取要求資訊:%n%t存取遮罩:%t%t%10%n%t存取:%t%t%11%n |
A network share object was accessed.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nNetwork Information:%t%n%tObject Type:%t%t%5%n%tSource Address:%t%t%6%n%tSource Port:%t%t%7%n%t%nShare Information:%n%tShare Name:%t%t%8%n%tShare Path:%t%t%9%n%nAccess Request Information:%n%tAccess Mask:%t%t%10%n%tAccesses:%t%t%11%n |
0x1415 | 已刪除目錄服務物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%t%n目錄服務:%n%t名稱:%t%7%n%t類型:%t%8%n%t%n物件:%n%tDN:%t%9%n%tGUID:%t%10%n%t類別:%t%11%n%t%n操作:%n%t目錄刪除:%t%12%n%t相互關聯識別碼:%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was deleted.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%t%nDirectory Service:%n%tName:%t%7%n%tType:%t%8%n%t%nObject:%n%tDN:%t%9%n%tGUID:%t%10%n%tClass:%t%11%n%t%nOperation:%n%tTree Delete:%t%12%n%tCorrelation ID:%t%1%n%tApplication Correlation ID:%t%2 |
0x1416 | 已新增網路共用物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n共用資訊:%t%n%t共用名稱:%t%t%5%n%t共用路徑:%t%t%6 |
A network share object was added.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nShare Information:%t%n%tShare Name:%t%t%5%n%tShare Path:%t%t%6 |
0x1417 | 已修改網路共用物件。%n%t%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n共用資訊:%n%t物件類型:%t%t%5%n%t共用名稱:%t%t%6%n%t共用路徑:%t%t%7%n%t舊的備註:%t%t%8%n%t新的備註:%t%t%9%n%t舊的 MaxUsers:%t%t%10%n%t新的 Maxusers:%t%t%11%n%t舊的 ShareFlags:%t%t%12%n%t新的 ShareFlags:%t%t%13%n%t舊的 SD:%t%t%t%14%n%t新的 SD:%t%t%t%15%n |
A network share object was modified.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nShare Information:%n%tObject Type:%t%t%5%n%tShare Name:%t%t%6%n%tShare Path:%t%t%7%n%tOld Remark:%t%t%8%n%tNew Remark:%t%t%9%n%tOld MaxUsers:%t%t%10%n%tNew Maxusers:%t%t%11%n%tOld ShareFlags:%t%t%12%n%tNew ShareFlags:%t%t%13%n%tOld SD:%t%t%t%14%n%tNew SD:%t%t%t%15%n |
0x1418 | 已刪除網路共用物件。%n%t%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n共用資訊:%t%n%t共用名稱:%t%t%5%n%t共用路徑:%t%t%6 |
A network share object was deleted.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nShare Information:%t%n%tShare Name:%t%t%5%n%tShare Path:%t%t%6 |
0x1419 | 已檢查網路共用物件,查看是否可授與用戶端想要的存取權。%n%t%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n網路資訊:%t%n%t物件類型:%t%t%5%n%t來源位址:%t%t%6%n%t來源連接埠:%t%t%7%n%t%n共用資訊:%n%t共用名稱:%t%t%8%n%t共用路徑:%t%t%9%n%t相對目標名稱:%t%10%n%n存取要求資訊:%n%t存取遮罩:%t%t%11%n%t存取:%t%t%12%n存取檢查結果:%n%t%13%n |
A network share object was checked to see whether client can be granted desired access.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nNetwork Information:%t%n%tObject Type:%t%t%5%n%tSource Address:%t%t%6%n%tSource Port:%t%t%7%n%t%nShare Information:%n%tShare Name:%t%t%8%n%tShare Path:%t%t%9%n%tRelative Target Name:%t%10%n%nAccess Request Information:%n%tAccess Mask:%t%t%11%n%tAccesses:%t%t%12%nAccess Check Results:%n%t%13%n |
0x141A | Windows 篩選平台已封鎖封包。%n%n網路資訊:%n%t方向:%t%t%1%n%t來源位址:%t%2%n%t目的地位址:%t%3%n%tEtherType:%t%t%4%n%tVlanTag:%t%t%5%n%tvSwitchId:%t%t%6%n%t來源 vSwitch 連接埠:%t%t%7%n%t目的地 vSwitch 連接埠:%t%8%n%n篩選資訊:%n%t篩選執行階段識別碼:%t%9%n%t階層名稱:%t%t%10%n%t階層執行階段識別碼:%t%11 |
The Windows Filtering Platform has blocked a packet.%n%nNetwork Information:%n%tDirection:%t%t%1%n%tSource Address:%t%2%n%tDestination Address:%t%3%n%tEtherType:%t%t%4%n%tVlanTag:%t%t%5%n%tvSwitchId:%t%t%6%n%tSource vSwitch Port:%t%t%7%n%tDestination vSwitch Port:%t%8%n%nFilter Information:%n%tFilter Run-Time ID:%t%9%n%tLayer Name:%t%t%10%n%tLayer Run-Time ID:%t%11 |
0x141B | 更嚴格的 Windows 篩選平台篩選器已經封鎖封包。%n%n網路資訊:%n%t方向:%t%t%1%n%t來源位址:%t%2%n%t目的地位址:%t%3%n%tEtherType:%t%t%4%n%tVlanTag:%t%t%5%n%tvSwitchId:%t%t%6%n%t來源 vSwitch 連接埠:%t%t%7%n%t目的地 vSwitch 連接埠:%t%8%n%n篩選器資訊:%n%t篩選執行階段識別碼:%t%9%n%t階層名稱:%t%t%10%n%t階層執行階段識別碼:%t%11 |
A more restrictive Windows Filtering Platform filter has blocked a packet.%n%nNetwork Information:%n%tDirection:%t%t%1%n%tSource Address:%t%2%n%tDestination Address:%t%3%n%tEtherType:%t%t%4%n%tVlanTag:%t%t%5%n%tvSwitchId:%t%t%6%n%tSource vSwitch Port:%t%t%7%n%tDestination vSwitch Port:%t%8%n%nFilter Information:%n%tFilter Run-Time ID:%t%9%n%tLayer Name:%t%t%10%n%tLayer Run-Time ID:%t%11 |
0x141C | Windows 篩選平台已經偵測到 DoS 攻擊並且進入防禦模式; 將會丟棄與此攻擊相關的封包。%n%n網路資訊:%n%t類型:%t%t%1 |
The Windows Filtering Platform has detected a DoS attack and entered a defensive mode; packets associated with this attack will be discarded.%n%nNetwork Information:%n%tType:%t%t%1 |
0x141D | DoS 攻擊已經平息且標準處理正在恢復。%n%n網路資訊:%n%t類型:%t%t%1%n%t丟棄的封包:%t%t%t%2 |
The DoS attack has subsided and normal processing is being resumed.%n%nNetwork Information:%n%tType:%t%t%1%n%tPackets Discarded:%t%t%t%2 |
0x141E | Windows 篩選平台已經封鎖封包。%n%n網路資訊:%n%t方向:%t%t%1%n%t來源位址:%t%t%2%n%t目的地位址:%t%3%n%tEtherType:%t%t%4%n%t媒體類型:%t%t%5%n%t介面類型:%t%t%6%n%tVlanTag:%t%t%t%7%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%8%n%t階層名稱:%t%t%9%n%t階層執行階段識別碼:%t%10 |
The Windows Filtering Platform has blocked a packet.%n%nNetwork Information:%n%tDirection:%t%t%1%n%tSource Address:%t%t%2%n%tDestination Address:%t%3%n%tEtherType:%t%t%4%n%tMediaType:%t%t%5%n%tInterfaceType:%t%t%6%n%tVlanTag:%t%t%t%7%n%nFilter Information:%n%tFilter Run-Time ID:%t%8%n%tLayer Name:%t%t%9%n%tLayer Run-Time ID:%t%10 |
0x141F | 更嚴格的 Windows 篩選平台篩選器已經封鎖封包。%n%n網路資訊:%n%t方向:%t%t%1%n%t來源位址:%t%t%t%2%n%t目的地位址:%t%3%n%tEtherType:%t%t%4%n%t媒體類型:%t%t%5%n%t介面類型:%t%t%6%n%tVlanTag:%t%t%t%7%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%8%n%t階層名稱:%t%t%9%n%t階層執行階段識別碼:%t%10 |
A more restrictive Windows Filtering Platform filter has blocked a packet.%n%nNetwork Information:%n%tDirection:%t%t%1%n%tSource Address:%t%t%t%2%n%tDestination Address:%t%3%n%tEtherType:%t%t%4%n%tMediaType:%t%t%5%n%tInterfaceType:%t%t%6%n%tVlanTag:%t%t%t%7%n%nFilter Information:%n%tFilter Run-Time ID:%t%8%n%tLayer Name:%t%t%9%n%tLayer Run-Time ID:%t%10 |
0x1420 | Windows 篩選平台已經封鎖封包。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t方向:%t%t%3%n%t來源位址:%t%t%4%n%t來源連接埠:%t%t%5%n%t目的地位址:%t%6%n%t目的地連接埠:%t%t%7%n%t通訊協定:%t%t%8%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%9%n%t階層名稱:%t%t%10%n%t階層執行階段識別碼:%t%11 |
The Windows Filtering Platform has blocked a packet.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tDirection:%t%t%3%n%tSource Address:%t%t%4%n%tSource Port:%t%t%5%n%tDestination Address:%t%6%n%tDestination Port:%t%t%7%n%tProtocol:%t%t%8%n%nFilter Information:%n%tFilter Run-Time ID:%t%9%n%tLayer Name:%t%t%10%n%tLayer Run-Time ID:%t%11 |
0x1421 | 更嚴格的 Windows 篩選平台篩選器已經封鎖封包。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t方向:%t%t%3%n%t來源位址:%t%t%4%n%t來源連接埠:%t%t%5%n%t目的地位址:%t%6%n%t目的地連接埠:%t%t%7%n%t通訊協定:%t%t%8%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%9%n%t階層名稱:%t%t%10%n%t階層執行階段識別碼:%t%11 |
A more restrictive Windows Filtering Platform filter has blocked a packet.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tDirection:%t%t%3%n%tSource Address:%t%t%4%n%tSource Port:%t%t%5%n%tDestination Address:%t%6%n%tDestination Port:%t%t%7%n%tProtocol:%t%t%8%n%nFilter Information:%n%tFilter Run-Time ID:%t%9%n%tLayer Name:%t%t%10%n%tLayer Run-Time ID:%t%11 |
0x1422 | Windows 篩選平台已經允許應用程式或服務接聽連接埠是否有連入連線。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t來源位址:%t%t%3%n%t來源連接埠:%t%t%4%n%t通訊協定:%t%t%5%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%6%n%t階層名稱:%t%t%7%n%t階層執行階段識別碼:%t%8 |
The Windows Filtering Platform has permitted an application or service to listen on a port for incoming connections.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tSource Address:%t%t%3%n%tSource Port:%t%t%4%n%tProtocol:%t%t%5%n%nFilter Information:%n%tFilter Run-Time ID:%t%6%n%tLayer Name:%t%t%7%n%tLayer Run-Time ID:%t%8 |
0x1423 | Windows 篩選平台已經封鎖應用程式或服務接聽連接埠是否有連入連線。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t來源位址:%t%t%3%n%t來源連接埠:%t%t%4%n%t通訊協定:%t%t%5%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%6%n%t階層名稱:%t%t%7%n%t階層執行階段識別碼:%t%8 |
The Windows Filtering Platform has blocked an application or service from listening on a port for incoming connections.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tSource Address:%t%t%3%n%tSource Port:%t%t%4%n%tProtocol:%t%t%5%n%nFilter Information:%n%tFilter Run-Time ID:%t%6%n%tLayer Name:%t%t%7%n%tLayer Run-Time ID:%t%8 |
0x1424 | Windows 篩選平台已經允許一個連線。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t方向:%t%t%3%n%t來源位址:%t%t%4%n%t來源連接埠:%t%t%5%n%t目的地位址:%t%6%n%t目的地連接埠:%t%t%7%n%t通訊協定:%t%t%8%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%9%n%t階層名稱:%t%t%10%n%t階層執行階段識別碼:%t%11 |
The Windows Filtering Platform has permitted a connection.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tDirection:%t%t%3%n%tSource Address:%t%t%4%n%tSource Port:%t%t%5%n%tDestination Address:%t%6%n%tDestination Port:%t%t%7%n%tProtocol:%t%t%8%n%nFilter Information:%n%tFilter Run-Time ID:%t%9%n%tLayer Name:%t%t%10%n%tLayer Run-Time ID:%t%11 |
0x1425 | Windows 篩選平台已經封鎖一個連線。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t方向:%t%t%3%n%t來源位址:%t%t%4%n%t來源連接埠:%t%t%5%n%t目的地位址:%t%6%n%t目的地連接埠:%t%t%7%n%t通訊協定:%t%t%8%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%9%n%t階層名稱:%t%t%10%n%t階層執行階段識別碼:%t%11 |
The Windows Filtering Platform has blocked a connection.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tDirection:%t%t%3%n%tSource Address:%t%t%4%n%tSource Port:%t%t%5%n%tDestination Address:%t%6%n%tDestination Port:%t%t%7%n%tProtocol:%t%t%8%n%nFilter Information:%n%tFilter Run-Time ID:%t%9%n%tLayer Name:%t%t%10%n%tLayer Run-Time ID:%t%11 |
0x1426 | Windows 篩選平台已經允許繫結到本機連接埠。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t來源位址:%t%t%3%n%t來源連接埠:%t%t%4%n%t通訊協定:%t%t%5%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%6%n%t階層名稱:%t%t%7%n%t階層執行階段識別碼:%t%8 |
The Windows Filtering Platform has permitted a bind to a local port.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tSource Address:%t%t%3%n%tSource Port:%t%t%4%n%tProtocol:%t%t%5%n%nFilter Information:%n%tFilter Run-Time ID:%t%6%n%tLayer Name:%t%t%7%n%tLayer Run-Time ID:%t%8 |
0x1427 | Windows 篩選平台已經封鎖繫結到本機連接埠。%n%n應用程式資訊:%n%t處理程序識別碼:%t%t%1%n%t應用程式名稱:%t%2%n%n網路資訊:%n%t來源位址:%t%t%3%n%t來源連接埠:%t%t%4%n%t通訊協定:%t%t%5%n%n篩選器資訊:%n%t篩選器執行階段識別碼:%t%6%n%t階層名稱:%t%t%7%n%t階層執行階段識別碼:%t%8 |
The Windows Filtering Platform has blocked a bind to a local port.%n%nApplication Information:%n%tProcess ID:%t%t%1%n%tApplication Name:%t%2%n%nNetwork Information:%n%tSource Address:%t%t%3%n%tSource Port:%t%t%4%n%tProtocol:%t%t%5%n%nFilter Information:%n%tFilter Run-Time ID:%t%6%n%tLayer Name:%t%t%7%n%tLayer Run-Time ID:%t%8 |
0x1430 | SPN 檢查 SMB/SMB2 失敗。%n%t%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%nSPN:%t%n%tSPN 名稱:%t%t%5%n%t錯誤碼:%t%t%6%n%n伺服器資訊:%n%t伺服器名稱:%t%t%7%n%t設定的名稱:%t%t%8%n%tIP 位址:%t%t%9 |
Spn check for SMB/SMB2 fails.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nSPN:%t%n%tSPN Name:%t%t%5%n%tError Code:%t%t%6%n%nServer Information:%n%tServer Names:%t%t%7%n%tConfigured Names:%t%t%8%n%tIP Addresses:%t%t%9 |
0x1431 | 已修改目錄服務物件。%n%t%n主體:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n目錄服務:%n%t名稱:%t%7%n%t類型:%t%8%n%t%n物件:%n%tDN:%t%9%n%tGUID:%t%10%n%t類別:%t%11%n%t%n屬性:%n%tLDAP 顯示名稱:%t%12%n%t語法 (OID):%t%13%n%t值:%t%14%n%t到期時間:%t%15%n%t%n作業:%n%t類型:%t%16%n%t相互關聯識別碼:%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was modified.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nDirectory Service:%n%tName:%t%7%n%tType:%t%8%n%t%nObject:%n%tDN:%t%9%n%tGUID:%t%10%n%tClass:%t%11%n%t%nAttribute:%n%tLDAP Display Name:%t%12%n%tSyntax (OID):%t%13%n%tValue:%t%14%n%tExpiration Time:%t%15%n%t%nOperation:%n%tType:%t%16%n%tCorrelation ID:%t%1%n%tApplication Correlation ID:%t%2 |
0x1432 | 已在執行背景清除工作期間修改目錄服務物件。%n%t%n主體:%n%t安全性識別碼:%t%t%3%n%t帳戶名稱:%t%t%4%n%t帳戶網域:%t%t%5%n%t登入識別碼:%t%t%6%n%n目錄服務:%n%t名稱:%t%7%n%t類型:%t%8%n%t%n物件:%n%tDN:%t%9%n%tGUID:%t%10%n%t類別:%t%11%n%t%n屬性:%n%tLDAP 顯示名稱:%t%12%n%t語法 (OID):%t%13%n%t值:%t%14%n%t到期時間:%t%15%n%t%n作業:%n%t類型:%t%16%n%t相互關聯識別碼:%t%1%n%t應用程式相互關聯識別碼:%t%2 |
A directory service object was modified during a background cleanup task.%n%t%nSubject:%n%tSecurity ID:%t%t%3%n%tAccount Name:%t%t%4%n%tAccount Domain:%t%t%5%n%tLogon ID:%t%t%6%n%nDirectory Service:%n%tName:%t%7%n%tType:%t%8%n%t%nObject:%n%tDN:%t%9%n%tGUID:%t%10%n%tClass:%t%11%n%t%nAttribute:%n%tLDAP Display Name:%t%12%n%tSyntax (OID):%t%13%n%tValue:%t%14%n%tExpiration Time:%t%15%n%t%nOperation:%n%tType:%t%16%n%tCorrelation ID:%t%1%n%tApplication Correlation ID:%t%2 |
0x1500 | 已備份認證管理員認證。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n當使用者備份他們自己的認證管理員認證時,就會發生這個事件。使用者 (甚至是系統管理員) 不能備份非自己所有的帳戶認證。 |
Credential Manager credentials were backed up.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nThis event occurs when a user backs up their own Credential Manager credentials. A user (even an Administrator) cannot back up the credentials of an account other than his own. |
0x1501 | 認證管理員認證已經從備份還原。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n當使用者從備份還原他自己的認證管理員認證時,就會發生這個事件。使用者 (甚至是系統管理員) 不能還原非自己所有的帳戶認證。 |
Credential Manager credentials were restored from a backup.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nThis event occurs when a user restores his Credential Manager credentials from a backup. A user (even an Administrator) cannot restore the credentials of an account other than his own. |
0x1502 | 要求的認證委派不被原則所允許。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n認證委派資訊:%n%t安全性封裝%t%5%n%t使用者的 UPN:%t%6%n%t目標伺服器:%t%7%n%t認證類型:%t%8 |
The requested credentials delegation was disallowed by policy.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nCredential Delegation Information:%n%tSecurity Package:%t%5%n%tUser's UPN:%t%6%n%tTarget Server:%t%7%n%tCredential Type:%t%8 |
0x1540 | 當 Windows 篩選平台基礎篩選引擎啟動時,已顯示下列圖說文字。%n%n提供者資訊:%t%n%t識別碼:%t%t%1%n%t名稱:%t%t%2%n%n圖說資訊:%n%t識別碼:%t%t%3%n%t名稱:%t%t%4%n%t類型:%t%t%5%n%t執行階段識別碼:%t%6%n%n階層資訊:%n%t識別碼:%t%t%7%n%t名稱:%t%t%8%n%t執行階段識別碼:%t%9 |
The following callout was present when the Windows Filtering Platform Base Filtering Engine started.%n%nProvider Information:%t%n%tID:%t%t%1%n%tName:%t%t%2%n%nCallout Information:%n%tID:%t%t%3%n%tName:%t%t%4%n%tType:%t%t%5%n%tRun-Time ID:%t%6%n%nLayer Information:%n%tID:%t%t%7%n%tName:%t%t%8%n%tRun-Time ID:%t%9 |
0x1541 | 當 Windows 篩選平台基礎篩選引擎啟動時,已顯示下列篩選器。%n%n提供者資訊:%t%n%t識別碼:%t%t%1%n%t名稱:%t%t%2%n%n篩選器資訊:%n%t識別碼:%t%t%3%n%t名稱:%t%t%4%n%t類型:%t%t%5%n%t執行階段識別碼:%t%6%n%n階層資訊:%n%t識別碼:%t%t%7%n%t名稱:%t%t%8%n%t執行階段識別碼:%t%9%n%t權數:%t%t%10%n%t%n其他資訊:%n%t狀況:%t%11%n%t篩選器動作:%t%12%n%t圖說文字識別碼:%t%13%n%t圖說文字名稱:%t%14 |
The following filter was present when the Windows Filtering Platform Base Filtering Engine started.%n%nProvider Information:%t%n%tID:%t%t%1%n%tName:%t%t%2%n%nFilter Information:%n%tID:%t%t%3%n%tName:%t%t%4%n%tType:%t%t%5%n%tRun-Time ID:%t%6%n%nLayer Information:%n%tID:%t%t%7%n%tName:%t%t%8%n%tRun-Time ID:%t%9%n%tWeight:%t%t%10%n%t%nAdditional Information:%n%tConditions:%t%11%n%tFilter Action:%t%12%n%tCallout ID:%t%13%n%tCallout Name:%t%14 |
0x1542 | 當 Windows 篩選平台基礎篩選引擎啟動時,已顯示下列提供者。%n%t%n提供者識別碼:%t%1%n提供者名稱:%t%2%n提供者類型:%t%3 |
The following provider was present when the Windows Filtering Platform Base Filtering Engine started.%n%t%nProvider ID:%t%1%nProvider Name:%t%2%nProvider Type:%t%3 |
0x1543 | 當 Windows 篩選平台基礎篩選引擎啟動時,已顯示下列提供者內容。%n%t%n提供者識別碼:%t%1%n提供者名稱:%t%2%n提供者內容識別碼:%t%3%n提供者內容名稱:%t%4%n提供者內容類型:%t%5 |
The following provider context was present when the Windows Filtering Platform Base Filtering Engine started.%n%t%nProvider ID:%t%1%nProvider Name:%t%2%nProvider Context ID:%t%3%nProvider Context Name:%t%4%nProvider Context Type:%t%5 |
0x1544 | 當 Windows 篩選平台基礎篩選引擎啟動時,已顯示下列子階層。%n%t%n提供者識別碼:%t%1%n提供者名稱:%t%2%n子階層識別碼:%t%3%n子階層名稱:%t%4%n子階層類型:%t%5%n權數:%t%t%6 |
The following sub-layer was present when the Windows Filtering Platform Base Filtering Engine started.%n%t%nProvider ID:%t%1%nProvider Name:%t%2%nSub-layer ID:%t%3%nSub-layer Name:%t%4%nSub-layer Type:%t%5%nWeight:%t%t%6 |
0x1546 | Windows 篩選平台圖說文字已經變更。%n%t%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%n處理程序資訊:%n%t處理程序識別碼:%t%1%n%n提供者資訊:%n%t識別碼:%t%t%4%n%t名稱:%t%t%5%n%n變更資訊:%n%t變更類型:%t%6%n%n圖說資訊:%n%t識別碼:%t%t%7%n%t名稱:%t%t%8%n%t類型:%t%t%9%n%t執行階段識別碼:%t%10%n%n階層資訊:%n%t識別碼:%t%t%11%n%t名稱:%t%t%12%n%t執行階段識別碼:%t%13 |
A Windows Filtering Platform callout has been changed.%n%t%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%nProcess Information:%n%tProcess ID:%t%1%n%nProvider Information:%n%tID:%t%t%4%n%tName:%t%t%5%n%nChange Information:%n%tChange Type:%t%6%n%nCallout Information:%n%tID:%t%t%7%n%tName:%t%t%8%n%tType:%t%t%9%n%tRun-Time ID:%t%10%n%nLayer Information:%n%tID:%t%t%11%n%tName:%t%t%12%n%tRun-Time ID:%t%13 |
0x1547 | Windows 篩選平台篩選器已經變更。%n%t%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%n處理程序資訊:%n%t處理程序識別碼:%t%1%n%n提供者資訊:%n%t識別碼:%t%t%4%n%t名稱:%t%t%5%n%n變更資訊:%n%t變更類型:%t%6%n%n篩選器資訊:%n%t識別碼:%t%t%7%n%t名稱:%t%t%8%n%t類型:%t%t%9%n%t執行階段識別碼:%t%10%n%n階層資訊:%n%t識別碼:%t%t%11%n%t名稱:%t%t%12%n%t執行階段識別碼:%t%13%n%n圖說資訊:%n%t識別碼:%t%t%17%n%t名稱:%t%t%18%n%n其他資訊:%n%t權數:%t%14%t%n%t狀況:%t%15%n%t篩選器動作:%t%16 |
A Windows Filtering Platform filter has been changed.%n%t%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%nProcess Information:%n%tProcess ID:%t%1%n%nProvider Information:%n%tID:%t%t%4%n%tName:%t%t%5%n%nChange Information:%n%tChange Type:%t%6%n%nFilter Information:%n%tID:%t%t%7%n%tName:%t%t%8%n%tType:%t%t%9%n%tRun-Time ID:%t%10%n%nLayer Information:%n%tID:%t%t%11%n%tName:%t%t%12%n%tRun-Time ID:%t%13%n%nCallout Information:%n%tID:%t%t%17%n%tName:%t%t%18%n%nAdditional Information:%n%tWeight:%t%14%t%n%tConditions:%t%15%n%tFilter Action:%t%16 |
0x1548 | Windows 篩選平台提供者已經變更。%n%t%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%n處理程序資訊:%n%t處理程序識別碼:%t%1%n%n變更資訊:%n%t變更類型:%t%4%n%n提供者資訊:%n%t識別碼:%t%t%5%n%t名稱:%t%t%6%n%t類型:%t%t%7 |
A Windows Filtering Platform provider has been changed.%n%t%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%nProcess Information:%n%tProcess ID:%t%1%n%nChange Information:%n%tChange Type:%t%4%n%nProvider Information:%n%tID:%t%t%5%n%tName:%t%t%6%n%tType:%t%t%7 |
0x1549 | Windows 篩選平台提供者內容已經變更。%n%t%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%n處理程序資訊:%n%t處理程序識別碼:%t%1%n%n提供者資訊:%n%t提供者識別碼:%t%4%n%t提供者名稱:%t%5%n%n變更資訊:%n%t變更類型:%t%6%n%n提供者內容:%n%t識別碼:%t%7%n%t名稱:%t%8%n%t類型:%t%9 |
A Windows Filtering Platform provider context has been changed.%n%t%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%nProcess Information:%n%tProcess ID:%t%1%n%nProvider Information:%n%tProvider ID:%t%4%n%tProvider Name:%t%5%n%nChange Information:%n%tChange Type:%t%6%n%nProvider Context:%n%tID:%t%7%n%tName:%t%8%n%tType:%t%9 |
0x154A | Windows 篩選平台子階層已經變更。%n%t%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%n處理程序資訊:%n%t處理程序識別碼:%t%1%n%n提供者資訊:%n%t提供者識別碼:%t%4%n%t提供者名稱:%t%5%n%n變更資訊:%n%t變更類型:%t%6%n%n子階層資訊:%n%t子階層識別碼:%t%7%n%t子階層名稱:%t%8%n%t子階層類型:%t%9%n%n其他資訊:%n%t權數:%t%10 |
A Windows Filtering Platform sub-layer has been changed.%n%t%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%nProcess Information:%n%tProcess ID:%t%1%n%nProvider Information:%n%tProvider ID:%t%4%n%tProvider Name:%t%5%n%nChange Information:%n%tChange Type:%t%6%n%nSub-layer Information:%n%tSub-layer ID:%t%7%n%tSub-layer Name:%t%8%n%tSub-layer Type:%t%9%n%nAdditional Information:%n%tWeight:%t%10 |
0x154B | IPsec 快速模式安全性關聯已經建立。%n%t%n本機端點:%n%t網路位址:%t%1%n%t網路位址遮罩:%t%2%n%t連接埠:%t%t%t%3%n%t通道端點:%t%t%4%n%n遠端端點:%n%t網路位址:%t%5%n%t網路位址遮罩:%t%6%n%t連接埠:%t%t%t%7%n%t私人位址:%t%t%8%n%t通道端點:%t%t%9%n%n%t通訊協定:%t%t%10%n%t金鑰處理模組名稱:%t%11%n%n密碼編譯資訊:%n%t完整性演算法 - AH:%t%12%n%t完整性演算法 - ESP:%t%13%n%t加密演算法:%t%14%n%n安全性關聯資訊:%n%t存留期 - 秒:%t%15%n%t存留期 - 資料:%t%t%16%n%t存留期 - 封包:%t%17%n%t模式:%t%t%t%18%n%t角色:%t%t%t%19%n%t快速模式篩選器識別碼:%t%20%n%t主要模式 SA 識別碼:%t%21%n%t快速模式 SA 識別碼:%t%22%n%n其他資訊:%n%t輸入 SPI:%t%t%23%n%t輸出 SPI:%t%t%24%n%t虛擬介面通道識別碼:%t%t%25%n%t流量選擇器識別碼:%t%t%26 |
An IPsec quick mode security association was established.%n%t%nLocal Endpoint:%n%tNetwork Address:%t%1%n%tNetwork Address mask:%t%2%n%tPort:%t%t%t%3%n%tTunnel Endpoint:%t%t%4%n%nRemote Endpoint:%n%tNetwork Address:%t%5%n%tNetwork Address Mask:%t%6%n%tPort:%t%t%t%7%n%tPrivate Address:%t%t%8%n%tTunnel Endpoint:%t%t%9%n%n%tProtocol:%t%t%10%n%tKeying Module Name:%t%11%n%nCryptographic Information:%n%tIntegrity Algorithm - AH:%t%12%n%tIntegrity Algorithm - ESP:%t%13%n%tEncryption Algorithm:%t%14%n%nSecurity Association Information:%n%tLifetime - seconds:%t%15%n%tLifetime - data:%t%t%16%n%tLifetime - packets:%t%17%n%tMode:%t%t%t%18%n%tRole:%t%t%t%19%n%tQuick Mode Filter ID:%t%20%n%tMain Mode SA ID:%t%21%n%tQuick Mode SA ID:%t%22%n%nAdditional Information:%n%tInbound SPI:%t%t%23%n%tOutbound SPI:%t%t%24%n%tVirtual Interface Tunnel ID:%t%t%25%n%tTraffic Selector ID:%t%t%26 |
0x154C | IPsec 快速模式安全性關聯已經結束。%n%t%n本機端點:%n%t網路位址:%t%1%n%t網路位址遮罩:%t%2%n%t連接埠:%t%t%t%3%n%t通道端點:%t%t%4%n%n遠端端點:%n%t網路位址:%t%5%n%t網路位址遮罩:%t%6%n%t連接埠:%t%t%t%7%n%t通道端點:%t%t%8%n%n其他資訊:%n%t通訊協定:%t%t%9%n%t快速模式 SA 識別碼:%t%10%n%t虛擬介面通道識別碼:%t%t%11%n%t流量選擇器識別碼:%t%t%12 |
An IPsec quick mode security association ended.%n%t%nLocal Endpoint:%n%tNetwork Address:%t%1%n%tNetwork Address mask:%t%2%n%tPort:%t%t%t%3%n%tTunnel Endpoint:%t%t%4%n%nRemote Endpoint:%n%tNetwork Address:%t%5%n%tNetwork Address mask:%t%6%n%tPort:%t%t%t%7%n%tTunnel Endpoint:%t%t%8%n%nAdditional Information:%n%tProtocol:%t%t%9%n%tQuick Mode SA ID:%t%10%n%tVirtual Interface Tunnel ID:%t%t%11%n%tTraffic Selector ID:%t%t%12 |
0x154D | 因為 IKE 與 AuthIP IPsec 金鑰處理模組 (IKEEXT) 服務並未啟動,與遠端電腦的 IPsec 交涉失敗。 |
An IPsec negotiation with a remote computer failed because the IKE and AuthIP IPsec Keying Modules (IKEEXT) service is not started. |
0x1550 | IPsec 原則代理已在電腦上套用 Active Directory 存放 IPSec 原則。%n%n原則:%t%t%1 |
IPsec Policy Agent applied Active Directory storage IPsec policy on the computer.%n%nPolicy:%t%t%1 |
0x1551 | IPsec 原則代理無法在電腦上套用 Active Directory 存放 IPSec 原則。%n%nDN:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to apply Active Directory storage IPsec policy on the computer.%n%nDN:%t%t%1%nError code:%t%t%2 |
0x1552 | IPsec 原則代理已在電腦上套用 Active Directory 存放 IPSec 原則的本機快取複本。%n%n原則:%t%t%1 |
IPsec Policy Agent applied locally cached copy of Active Directory storage IPsec policy on the computer.%n%nPolicy:%t%t%1 |
0x1553 | IPsec 原則代理無法在電腦上套用 Active Directory 存放 IPSec 原則的本機快取複本。%n%n原則:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to apply locally cached copy of Active Directory storage IPsec policy on the computer.%n%nPolicy:%t%t%1%nError Code:%t%t%2 |
0x1554 | IPsec 原則代理已在電腦上套用本機登錄存放 IPSec 原則。%n%n原則:%t%t%1 |
IPsec Policy Agent applied local registry storage IPsec policy on the computer.%n%nPolicy:%t%t%1 |
0x1555 | IPsec 原則代理無法在電腦上套用本機登錄存放 IPSec 原則。%n%n原則:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to apply local registry storage IPsec policy on the computer.%n%nPolicy:%t%t%1%nError Code:%t%t%2 |
0x1556 | IPsec 原則代理無法在電腦上套用使用中 IPSec 原則的部分規則。請使用 IP 安全性監視器嵌入式管理單元來診斷問題。%n%n原則:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to apply some rules of the active IPsec policy on the computer. Use the IP Security Monitor snap-in to diagnose the problem.%n%nPolicy:%t%t%1%nError Code:%t%t%2 |
0x1557 | IPsec 原則代理已輪詢對使用中 IPSec 原則所做的變更,結果偵測出並無變更。 |
IPsec Policy Agent polled for changes to the active IPsec policy and detected no changes. |
0x1558 | IPsec 原則代理已輪詢對使用中 IPSec 原則所做的變更,結果偵測出變更,並套用變更。 |
IPsec Policy Agent polled for changes to the active IPsec policy, detected changes, and applied them. |
0x1559 | IPsec 原則代理收到一個強制重新載入 IPSec 原則的控制項,並已成功處理該控制項。 |
IPsec Policy Agent received a control for forced reloading of IPsec policy and processed the control successfully. |
0x155A | IPsec 原則代理已輪詢對 Active Directory IPSec 原則所做的變更,結果判定無法連線 Active Directory,將使用 Active Directory IPSec 原則的快取複本來取代。上次輪詢後對 Active Directory IPSec 原則所做任何的變更都無法套用。 |
IPsec Policy Agent polled for changes to the Active Directory IPsec policy, determined that Active Directory cannot be reached, and will use the cached copy of the Active Directory IPsec policy instead. Any changes made to the Active Directory IPsec policy since the last poll could not be applied. |
0x155B | IPsec 原則代理已輪詢對 Active Directory IPSec 原則所做的變更,結果判定可連線 Active Directory,並發現沒有對原則做任何變更。將不再使用 Active Directory IPSec 原則的快取複本。 |
IPsec Policy Agent polled for changes to the Active Directory IPsec policy, determined that Active Directory can be reached, and found no changes to the policy. The cached copy of the Active Directory IPsec policy is no longer being used. |
0x155C | IPsec 原則代理已輪詢對 Active Directory IPSec 原則所做的變更,結果判定可連線 Active Directory,並在發現對原則所做的變更後套用這些變更。將不再使用 Active Directory IPSec 原則的快取複本。 |
IPsec Policy Agent polled for changes to the Active Directory IPsec policy, determined that Active Directory can be reached, found changes to the policy, and applied those changes. The cached copy of the Active Directory IPsec policy is no longer being used. |
0x155F | IPsec 原則代理已在電腦中載入本機存放 IPsec 原則。%n%n原則:%t%t%1 |
IPsec Policy Agent loaded local storage IPsec policy on the computer.%n%nPolicy:%t%t%1 |
0x1560 | IPsec 原則代理無法在電腦中載入本機存放 IPsec 原則。%n%n原則:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to load local storage IPsec policy on the computer.%n%nPolicy:%t%t%1%nError Code:%t%t%2 |
0x1561 | IPsec 原則代理已在電腦中載入目錄存放 IPsec 原則。%n%n原則:%t%t%1 |
IPsec Policy Agent loaded directory storage IPsec policy on the computer.%n%nPolicy:%t%t%1 |
0x1562 | IPsec 原則代理無法在電腦中載入目錄存放 IPsec 原則。%n%n原則:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to load directory storage IPsec policy on the computer.%n%nPolicy:%t%t%1%nError Code:%t%t%2 |
0x1565 | IPsec 原則代理無法新增快速模式篩選器。%n%n快速模式篩選器:%t%t%1%n錯誤碼:%t%t%2 |
IPsec Policy Agent failed to add quick mode filter.%n%nQuick Mode Filter:%t%t%1%nError Code:%t%t%2 |
0x1566 | IPsec 原則代理服務已啟動。 |
The IPsec Policy Agent service was started. |
0x1567 | IPsec 原則代理服務已停止。停止此服務可能讓電腦承受網路攻擊的極大風險,或是將電腦暴露於潛在的安全性風險。 |
The IPsec Policy Agent service was stopped. Stopping this service can put the computer at greater risk of network attack or expose the computer to potential security risks. |
0x1568 | IPsec 原則代理服務無法取得完整的電腦網路介面清單。這樣會使電腦暴露於潛在的安全性風險,因為某些網路介面沒有取得套用的 IPSec 篩選器所提供的保護。請使用 IP 安全性監視器嵌入式管理單元來診斷問題。 |
IPsec Policy Agent failed to get the complete list of network interfaces on the computer. This poses a potential security risk because some of the network interfaces may not get the protection provided by the applied IPsec filters. Use the IP Security Monitor snap-in to diagnose the problem. |
0x156B | IPsec 原則代理服務無法初始化其 RPC 伺服器。無法啟動該服務。%n%n錯誤碼:%t%t%1 |
The IPsec Policy Agent service failed to initialize its RPC server. The service could not be started.%n%nError Code:%t%t%1 |
0x156C | IPsec 原則代理服務發生嚴重失敗並已關閉。關閉此服務可能讓電腦承受網路攻擊的極大風險,或是使電腦暴露於潛在的安全性風險。%n%n錯誤碼:%t%t%1 |
The IPsec Policy Agent service experienced a critical failure and has shut down. The shutdown of this service can put the computer at greater risk of network attack or expose the computer to potential security risks.%n%nError Code:%t%t%1 |
0x156D | IPSec 原則代理無法為網路介面處理隨插即用事件上的一些 IPSec 篩選器。這樣會使電腦暴露於潛在的安全性風險,因為某些網路介面沒有取得套用的 IPSec 篩選器所提供的保護。請使用 IP 安全性監視器嵌入式管理單元來診斷問題。 |
IPsec Policy Agent failed to process some IPsec filters on a plug-and-play event for network interfaces. This poses a potential security risk because some of the network interfaces may not get the protection provided by the applied IPsec filters. Use the IP Security Monitor snap-in to diagnose the problem. |
0x1600 | 已要求驗證無線網路。%n%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%t登入識別碼:%t%t%5%n%n網路資訊:%n%t名稱 (SSID):%t%t%1%n%t介面 Guid:%t%t%8%n%t本機 MAC 位址:%t%7%n%t對等 MAC 位址:%t%6%n%n其他資訊:%n%t理由代碼:%t%t%10 (%9)%n%t錯誤碼:%t%t%11%n%tEAP 理由代碼:%t%12%n%tEAP 根本原因字串:%t%13%n%tEAP 錯誤碼:%t%t%14 |
A request was made to authenticate to a wireless network.%n%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%tLogon ID:%t%t%5%n%nNetwork Information:%n%tName (SSID):%t%t%1%n%tInterface GUID:%t%t%8%n%tLocal MAC Address:%t%7%n%tPeer MAC Address:%t%6%n%nAdditional Information:%n%tReason Code:%t%t%10 (%9)%n%tError Code:%t%t%11%n%tEAP Reason Code:%t%12%n%tEAP Root Cause String:%t%13%n%tEAP Error Code:%t%t%14 |
0x1601 | 已要求驗證有線網路。%n%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%t登入識別碼:%t%t%5%n%n介面:%n%t名稱:%t%t%t%1%n%n其他資訊%n%t理由代碼:%t%t%7 (%6)%n%t錯誤碼:%t%t%8 |
A request was made to authenticate to a wired network.%n%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%tLogon ID:%t%t%5%n%nInterface:%n%tName:%t%t%t%1%n%nAdditional Information%n%tReason Code:%t%t%7 (%6)%n%tError Code:%t%t%8 |
0x1650 | 嘗試遠端程序呼叫 (RPC)。%n%n主旨:%n%tSID:%t%t%t%1%n%t名稱:%t%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%tPID:%t%t%t%5%n%t名稱:%t%t%t%6%n%n網路資訊:%n%t遠端 IP 位址:%t%7%n%t遠端連接埠:%t%t%8%n%nRPC 屬性:%n%t介面 UUID:%t%t%9%n%t通訊協定順序:%t%10%n%t驗證服務:%t%11%n%t驗證等級:%t%12 |
A Remote Procedure Call (RPC) was attempted.%n%nSubject:%n%tSID:%t%t%t%1%n%tName:%t%t%t%2%n%tAccount Domain:%t%t%3%n%tLogonId:%t%t%4%n%nProcess Information:%n%tPID:%t%t%t%5%n%tName:%t%t%t%6%n%nNetwork Information:%n%tRemote IP Address:%t%7%n%tRemote Port:%t%t%8%n%nRPC Attributes:%n%tInterface UUID:%t%t%9%n%tProtocol Sequence:%t%10%n%tAuthentication Service:%t%11%n%tAuthentication Level:%t%12 |
0x1700 | COM+ 類別目錄的物件已修改。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%tCOM+ 類別目錄集合:%t%5%n%t物件名稱:%t%t%t%6%n%t修改的物件內容:%t%7 |
An object in the COM+ Catalog was modified.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tCOM+ Catalog Collection:%t%5%n%tObject Name:%t%t%t%6%n%tObject Properties Modified:%t%7 |
0x1701 | 刪除 COM+ 類別目錄的物件。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%tCOM+ 類別目錄集合:%t%5%n%t物件名稱:%t%t%t%6%n%t物件詳細資料:%t%t%t%7%n當從 COM+ 類別目錄刪除物件時就會發生這個事件。 |
An object was deleted from the COM+ Catalog.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tCOM+ Catalog Collection:%t%5%n%tObject Name:%t%t%t%6%n%tObject Details:%t%t%t%7%nThis event occurs when an object is deleted from the COM+ catalog. |
0x1702 | 新增物件到 COM+ 類別目錄。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%tCOM+ 類別目錄集合:%t%5%n%t物件名稱:%t%t%t%6%n%t物件詳細資料:%t%t%t%7 |
An object was added to the COM+ Catalog.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tCOM+ Catalog Collection:%t%5%n%tObject Name:%t%t%t%6%n%tObject Details:%t%t%t%7 |
0x1800 | 群組原則物件中的安全性原則已經套用成功。%n%n傳回碼:%t%1%n%nGPO 清單:%n%2 |
Security policy in the group policy objects has been applied successfully. %n%nReturn Code:%t%1%n%nGPO List:%n%2 |
0x1801 | 處理群組原則物件中的安全性原則時,發生一或多個錯誤。%n%n錯誤碼:%t%1%nGPO 清單:%n%2 |
One or more errors occured while processing security policy in the group policy objects.%n%nError Code:%t%1%nGPO List:%n%2 |
0x1880 | 「網路原則伺服器」已將存取權授與使用者。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t呼叫的工作站識別碼:%t%t%8%n%t發出呼叫的工作站識別碼:%t%t%9%n%nNAS:%n%tNAS IPv4 位址:%t%t%10%n%tNAS IPv6 位址:%t%t%11%n%tNAS 識別碼:%t%t%t%12%n%tNAS 連接埠類型:%t%t%t%13%n%tNAS 連接埠:%t%t%t%14%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%15%n%t用戶端 IP 位址:%t%t%t%16%n%n驗證詳細資料 :%n%t連線要求原則名稱:%t%17%n%t網路原則名稱:%t%t%18%n%t驗證提供者:%t%t%19%n%t驗證伺服器:%t%t%20%n%t驗證類型:%t%t%21%n%tEAP 類型:%t%t%t%22%n%t帳戶工作階段識別碼:%t%t%23%n%t記錄結果:%t%t%t%24%n |
Network Policy Server granted access to a user.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tCalled Station Identifier:%t%t%8%n%tCalling Station Identifier:%t%t%9%n%nNAS:%n%tNAS IPv4 Address:%t%t%10%n%tNAS IPv6 Address:%t%t%11%n%tNAS Identifier:%t%t%t%12%n%tNAS Port-Type:%t%t%t%13%n%tNAS Port:%t%t%t%14%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%15%n%tClient IP Address:%t%t%t%16%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%17%n%tNetwork Policy Name:%t%t%18%n%tAuthentication Provider:%t%t%19%n%tAuthentication Server:%t%t%20%n%tAuthentication Type:%t%t%21%n%tEAP Type:%t%t%t%22%n%tAccount Session Identifier:%t%t%23%n%tLogging Results:%t%t%t%24%n |
0x1881 | 「網路原則伺服器」已拒絕使用者存取。%n%n請連絡網路原則伺服器系統管理員,以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t呼叫的工作站識別碼:%t%t%8%n%t發出呼叫的工作站識別碼:%t%t%9%n%nNAS:%n%tNAS IPv4 位址:%t%t%10%n%tNAS IPv6 位址:%t%t%11%n%tNAS 識別碼:%t%t%t%12%n%tNAS 連接埠類型:%t%t%t%13%n%tNAS 連接埠:%t%t%t%14%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%15%n%t用戶端 IP 位址:%t%t%t%16%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%17%n%t網路原則名稱:%t%t%18%n%t驗證提供者:%t%t%19%n%t驗證伺服器:%t%t%20%n%t驗證類型:%t%t%21%n%tEAP 類型:%t%t%t%22%n%t帳戶工作階段識別碼:%t%t%23%n%t記錄結果:%t%t%t%26%n%t理由代碼:%t%t%t%24%n%t理由:%t%t%t%t%25%n |
Network Policy Server denied access to a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tCalled Station Identifier:%t%t%8%n%tCalling Station Identifier:%t%t%9%n%nNAS:%n%tNAS IPv4 Address:%t%t%10%n%tNAS IPv6 Address:%t%t%11%n%tNAS Identifier:%t%t%t%12%n%tNAS Port-Type:%t%t%t%13%n%tNAS Port:%t%t%t%14%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%15%n%tClient IP Address:%t%t%t%16%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%17%n%tNetwork Policy Name:%t%t%18%n%tAuthentication Provider:%t%t%19%n%tAuthentication Server:%t%t%20%n%tAuthentication Type:%t%t%21%n%tEAP Type:%t%t%t%22%n%tAccount Session Identifier:%t%t%23%n%tLogging Results:%t%t%t%26%n%tReason Code:%t%t%t%24%n%tReason:%t%t%t%t%25%n |
0x1882 | 「網路原則伺服器」已捨棄使用者的要求。%n%n請連絡網路原則伺服器系統管理員,以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t呼叫的工作站識別碼:%t%t%8%n%t發出呼叫的工作站識別碼:%t%t%9%n%nNAS:%n%tNAS IPv4 位址:%t%t%10%n%tNAS IPv6 位址:%t%t%11%n%tNAS 識別碼:%t%t%t%12%n%tNAS 連接埠類型:%t%t%t%13%n%tNAS 連接埠:%t%t%t%14%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%15%n%t用戶端 IP 位址:%t%t%t%16%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%17%n%t網路原則名稱:%t%t%18%n%t驗證提供者:%t%t%19%n%t驗證伺服器:%t%t%20%n%t驗證類型:%t%t%21%n%tEAP 類型:%t%t%t%22%n%t帳戶工作階段識別碼:%t%t%23%n%t理由代碼:%t%t%t%24%n%t理由:%t%t%t%t%25%n |
Network Policy Server discarded the request for a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tCalled Station Identifier:%t%t%8%n%tCalling Station Identifier:%t%t%9%n%nNAS:%n%tNAS IPv4 Address:%t%t%10%n%tNAS IPv6 Address:%t%t%11%n%tNAS Identifier:%t%t%t%12%n%tNAS Port-Type:%t%t%t%13%n%tNAS Port:%t%t%t%14%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%15%n%tClient IP Address:%t%t%t%16%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%17%n%tNetwork Policy Name:%t%t%18%n%tAuthentication Provider:%t%t%19%n%tAuthentication Server:%t%t%20%n%tAuthentication Type:%t%t%21%n%tEAP Type:%t%t%t%22%n%tAccount Session Identifier:%t%t%23%n%tReason Code:%t%t%t%24%n%tReason:%t%t%t%t%25%n |
0x1883 | 「網路原則伺服器」已捨棄使用者的帳戶處理要求。%n%n請連絡網路原則伺服器系統管理員,以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t呼叫的工作站識別碼:%t%t%8%n%t發出呼叫的工作站識別碼:%t%t%9%n%nNAS:%n%tNAS IPv4 位址:%t%t%10%n%tNAS IPv6 位址:%t%t%11%n%tNAS 識別碼:%t%t%t%12%n%tNAS 連接埠類型:%t%t%t%13%n%tNAS 連接埠:%t%t%t%14%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%15%n%t用戶端 IP 位址:%t%t%t%16%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%17%n%t網路原則名稱:%t%t%18%n%t驗證提供者:%t%t%19%n%t驗證伺服器:%t%t%20%n%t驗證類型:%t%t%21%n%tEAP 類型:%t%t%t%22%n%t帳戶工作階段識別碼:%t%t%23%n%t理由代碼:%t%t%t%24%n%t理由:%t%t%t%t%25%n |
Network Policy Server discarded the accounting request for a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tCalled Station Identifier:%t%t%8%n%tCalling Station Identifier:%t%t%9%n%nNAS:%n%tNAS IPv4 Address:%t%t%10%n%tNAS IPv6 Address:%t%t%11%n%tNAS Identifier:%t%t%t%12%n%tNAS Port-Type:%t%t%t%13%n%tNAS Port:%t%t%t%14%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%15%n%tClient IP Address:%t%t%t%16%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%17%n%tNetwork Policy Name:%t%t%18%n%tAuthentication Provider:%t%t%19%n%tAuthentication Server:%t%t%20%n%tAuthentication Type:%t%t%21%n%tEAP Type:%t%t%t%22%n%tAccount Session Identifier:%t%t%23%n%tReason Code:%t%t%t%24%n%tReason:%t%t%t%t%25%n |
0x1884 | 網路原則伺服器隔離使用者。%n%n請連絡網路原則伺服器管理員以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t被呼叫的工作站識別碼:%t%t%9%n%t發出呼叫的工作站識別碼:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別碼:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%n隔離資訊:%n%t結果:%t%t%t%t%25%n%t延伸結果:%t%t%t%26%n%t工作階段識別元:%t%t%t%27%n%t說明 URL:%t%t%t%28%n%t系統健康情況驗證程式結果:%t%29%n |
Network Policy Server quarantined a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%nQuarantine Information:%n%tResult:%t%t%t%t%25%n%tExtended-Result:%t%t%t%26%n%tSession Identifier:%t%t%t%27%n%tHelp URL:%t%t%t%28%n%tSystem Health Validator Result(s):%t%29%n |
0x1885 | 網路原則伺服器授與使用者存取,但將它置於觀察期,因為主機不符合定義的健康原則。%n%n請連絡網路原則伺服器管理員以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t被呼叫的工作站識別碼:%t%t%9%n%t發出呼叫的工作站識別碼:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別碼:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%n隔離資訊:%n%t結果:%t%t%t%t%25%n%t延伸結果:%t%t%t%26%n%t工作階段識別元:%t%t%t%27%n%t說明 URL:%t%t%t%28%n%t系統健康情況驗證程式結果:%t%29%n%t隔離寬限期:%t%t%30%n |
Network Policy Server granted access to a user but put it on probation because the host did not meet the defined health policy.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%nQuarantine Information:%n%tResult:%t%t%t%t%25%n%tExtended-Result:%t%t%t%26%n%tSession Identifier:%t%t%t%27%n%tHelp URL:%t%t%t%28%n%tSystem Health Validator Result(s):%t%29%n%tQuarantine Grace Time:%t%t%30%n |
0x1886 | 網路原則伺服器授與使用者完整存取,因為主機符合定義的健康原則。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t被呼叫的工作站識別碼:%t%t%9%n%t發出呼叫的工作站識別碼:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別碼:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%n隔離資訊:%n%t結果:%t%t%t%t%25%n%t延伸結果:%t%t%t%26%n%t工作階段識別元:%t%t%t%27%n%t說明 URL:%t%t%t%28%n%t系統健康情況驗證程式結果:%t%29%n |
Network Policy Server granted full access to a user because the host met the defined health policy.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%nQuarantine Information:%n%tResult:%t%t%t%t%25%n%tExtended-Result:%t%t%t%26%n%tSession Identifier:%t%t%t%27%n%tHelp URL:%t%t%t%28%n%tSystem Health Validator Result(s):%t%29%n |
0x1887 | 網路原則伺服器鎖定使用者帳戶,因為重複的失敗驗證嘗試。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n |
Network Policy Server locked the user account due to repeated failed authentication attempts.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n |
0x1888 | 網路原則伺服器解除鎖定使用者帳戶。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n |
Network Policy Server unlocked the user account.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n |
0x1889 | 程式碼完整性已經判斷映像檔案的分頁雜湊不正確。檔案可能沒有分頁雜湊的正確簽署,或者因為未授權的修改而損毀。不正確的雜湊表示潛在的磁碟裝置錯誤。%n%n檔案名稱:%t%1%t |
Code Integrity determined that the page hashes of an image file are not valid. The file could be improperly signed without page hashes or corrupt due to unauthorized modification. The invalid hashes could indicate a potential disk device error.%n%nFile Name:%t%1%t |
0x1900 | BranchCache: 探索內容可用性時收到格式錯誤的回應。%n%n傳送此回應的用戶端 IP 位址:%t%t%t%1%n%t%n |
BranchCache: Received an incorrectly formatted response while discovering availability of content. %n%nIP address of the client that sent this response:%t%t%t%1%n%t%n |
0x1901 | BranchCache: 從對等收到無效的資料。已捨棄資料。%n%n傳送此資料的用戶端 IP 位址:%t%t%t%1%n%t%n |
BranchCache: Received invalid data from a peer. Data discarded. %n%nIP address of the client that sent this data:%t%t%t%1%n%t%n |
0x1902 | BranchCache: 傳送至託管快取以提供資料的訊息格式錯誤。%n%n傳送此訊息的用戶端 IP 位址: %t%t%t%1%n%t%n |
BranchCache: The message to the hosted cache offering it data is incorrectly formatted. %n%nIP address of the client that sent this message: %t%t%t%1%n%t%n |
0x1903 | BranchCache: 託管快取為提供資料給用戶端訊息而傳送了格式錯誤的回應。%n%n託管快取的網域名稱為:%t%t%t%1%n%t%n |
BranchCache: The hosted cache sent an incorrectly formatted response to the client's message to offer it data. %n%nDomain name of the hosted cache is:%t%t%t%1%n%t%n |
0x1904 | BranchCache: 無法使用佈建的 SSL 憑證驗證託管快取。%n%n託管快取的網域名稱:%t%t%t%1%n%t%n錯誤碼:%t%t%t%2%n%t%n |
BranchCache: Hosted cache could not be authenticated using the provisioned SSL certificate. %n%nDomain name of the hosted cache:%t%t%t%1%n%t%nError Code:%t%t%t%2%n%t%n |
0x1905 | BranchCache: 出現 %2 個事件識別碼 %1 的例項。%n |
BranchCache: %2 instance(s) of event id %1 occurred.%n |
0x1906 | 登錄 %1 到 Windows 防火牆以控制下列項目的篩選: %n%2。 |
%1 registered to Windows Firewall to control filtering for the following: %n%2. |
0x1908 | 登錄產品 %1 失敗,Windows 防火牆目前正在控制 %2 的篩選。 |
Registered product %1 failed and Windows Firewall is now controlling the filtering for %2. |
0x1909 | BranchCache: 無法剖析服務連接點物件。%n%nSCP 物件 GUID: %1 |
BranchCache: A service connection point object could not be parsed. %n%nSCP object GUID: %1 |
0x190A | 程式碼完整性發現檔案不符合載入到處理程序的安全性需求。這可能是因為使用了共用區段或其他問題。%n%n檔案名稱:%t%1%t |
Code integrity determined that a file does not meet the security requirements to load into a process. This could be due to the use of shared sections or other issues.%n%nFile Name:%t%1%t |
0x1910 | 系統已識別新的外接式裝置。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n廠商識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
A new external device was recognized by the system.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nVendor IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1911 | FIPS 模式密碼編譯自我測試成功。%n%n%t處理程序識別碼:%t%t%1%n%t處理程序名稱:%t%t%2 |
The FIPS mode crypto selftests succeeded.%n%n%tProcess ID:%t%t%1%n%tProcess Name:%t%t%2 |
0x1912 | FIPS 模式密碼編譯自我測試失敗。%n%n%t處理程序識別碼:%t%t%1%n%t處理程序名稱:%t%t%2%n%t失敗的測試代碼:%t%t%3 |
The FIPS mode crypto selftests failed.%n%n%tProcess ID:%t%t%1%n%tProcess Name:%t%t%2%n%tFailed test code:%t%t%3 |
0x1913 | 已提出停用裝置要求。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n硬體識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
A request was made to disable a device.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nHardware IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1914 | 裝置已停用。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n硬體識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
A device was disabled.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nHardware IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1915 | 已提出啟用裝置要求。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n硬體識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
A request was made to enable a device.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nHardware IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1916 | 已啟用裝置。%n%n主體:%n%t 安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n硬體識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
A device was enabled.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nHardware IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1917 | 系統原則禁止安裝此裝置。%n%n主體:%n%t 安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n硬體識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
The installation of this device is forbidden by system policy.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nHardware IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1918 | 在先前原則禁止之後,已允許安裝此裝置。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n裝置識別碼:%t%5%n%n裝置名稱:%t%6%n%n類別識別碼:%t%t%7%n%n類別名稱:%t%8%n%n硬體識別碼:%t%9%n%n相容識別碼:%t%10%n%n位置資訊:%t%11 |
The installation of this device was allowed, after having previously been forbidden by policy.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nDevice ID:%t%5%n%nDevice Name:%t%6%n%nClass ID:%t%t%7%n%nClass Name:%t%8%n%nHardware IDs:%t%9%n%nCompatible IDs:%t%10%n%nLocation Information:%t%11 |
0x1FFF | 最高系統-定義的稽核訊息值。 |
Highest System-Defined Audit Message Value. |
0x30000000 | 資訊 |
Info |
0x70003000 | 安全性狀態變更 |
Security State Change |
0x70003001 | 安全性系統延伸 |
Security System Extension |
0x70003002 | 系統完整性 |
System Integrity |
0x70003003 | IPSEC driver |
IPsec Driver |
0x70003004 | 其他系統事件 |
Other System Events |
0x70003100 | 登入 |
Logon |
0x70003101 | 登出 |
Logoff |
0x70003102 | 帳戶鎖定 |
Account Lockout |
0x70003103 | IPsec 主要模式 |
IPsec Main Mode |
0x70003104 | 特殊登入 |
Special Logon |
0x70003105 | IPsec 快速模式 |
IPsec Quick Mode |
0x70003106 | IPsec 延伸模式 |
IPsec Extended Mode |
0x70003107 | 其他登入/登出事件 |
Other Logon/Logoff Events |
0x70003108 | 網路原則伺服器 |
Network Policy Server |
0x70003109 | 使用者/裝置宣告 |
User / Device Claims |
0x7000310A | 群組成員資格 |
Group Membership |
0x70003200 | 檔案系統 |
File System |
0x70003201 | 登錄 |
Registry |
0x70003202 | 核心物件 |
Kernel Object |
0x70003203 | SAM |
SAM |
0x70003204 | 其他物件存取事件 |
Other Object Access Events |
0x70003205 | 憑證服務 |
Certification Services |
0x70003206 | 產生的應用程式 |
Application Generated |
0x70003207 | 控制代碼操縱 |
Handle Manipulation |
0x70003208 | 檔案共用 |
File Share |
0x70003209 | 篩選平台封包丟棄 |
Filtering Platform Packet Drop |
0x7000320A | 篩選平台連線 |
Filtering Platform Connection |
0x7000320B | 詳細檔案共用 |
Detailed File Share |
0x7000320C | 抽取式存放裝置 |
Removable Storage |
0x7000320D | 集中存取原則暫存 |
Central Access Policy Staging |
0x70003300 | 機密特殊權限使用 |
Sensitive Privilege Use |
0x70003301 | 非機密特殊權限使用 |
Non Sensitive Privilege Use |
0x70003302 | 其他特殊權限使用事件 |
Other Privilege Use Events |
0x70003400 | 建立處理程序 |
Process Creation |
0x70003401 | 終止處理程序 |
Process Termination |
0x70003402 | DPAPI 活動 |
DPAPI Activity |
0x70003403 | RPC 事件 |
RPC Events |
0x70003404 | 隨插即用事件 |
Plug and Play Events |
0x70003405 | 權杖權限調整事件 |
Token Right Adjusted Events |
0x70003500 | 稽核原則變更 |
Audit Policy Change |
0x70003501 | 驗證原則變更 |
Authentication Policy Change |
0x70003502 | 授權原則變更 |
Authorization Policy Change |
0x70003503 | MPSSVC 規則層級原則變更 |
MPSSVC Rule-Level Policy Change |
0x70003504 | 篩選平台原則變更 |
Filtering Platform Policy Change |
0x70003505 | 其他原則變更事件 |
Other Policy Change Events |
0x70003600 | 使用者帳戶管理 |
User Account Management |
0x70003601 | 電腦帳戶管理 |
Computer Account Management |
0x70003602 | 安全性群組管理 |
Security Group Management |
0x70003603 | 發佈群組管理 |
Distribution Group Management |
0x70003604 | 應用程式群組管理 |
Application Group Management |
0x70003605 | 其他帳戶管理事件 |
Other Account Management Events |
0x70003700 | 目錄服務存取 |
Directory Service Access |
0x70003701 | 目錄服務變更 |
Directory Service Changes |
0x70003702 | 目錄服務複寫 |
Directory Service Replication |
0x70003703 | 詳細目錄服務複寫 |
Detailed Directory Service Replication |
0x70003800 | 認證驗證 |
Credential Validation |
0x70003801 | Kerberos 服務票證操作 |
Kerberos Service Ticket Operations |
0x70003802 | 其他帳戶登入事件 |
Other Account Logon Events |
0x70003803 | Kerberos 驗證服務 |
Kerberos Authentication Service |
0x7000FF00 | 無法判斷子類別 |
Subcategory could not be determined |
0x90000001 | Microsoft Windows security auditing. |
Microsoft Windows security auditing. |
0x90000002 | Security |
Security |
0xB0001208 | 系統時間已變更。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%t處理程序識別碼:%t%9%n%t名稱:%t%t%10%n%n之前的時間:%t%t%6 %5%n新時間:%t%t%8 %7%n%n當系統時間改變的時候會產生這個事件。對於 Windows 時間服務這是正常的,因為它是以系統權限執行,定期更改系統時間。其他的系統時間改變可能表示嘗試竄改電腦。 |
The system time was changed.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tProcess ID:%t%9%n%tName:%t%t%10%n%nPrevious Time:%t%t%6 %5%nNew Time:%t%t%8 %7%n%nThis event is generated when the system time is changed. It is normal for the Windows Time Service, which runs with System privilege, to change the system time on a regular basis. Other system time changes may be indicative of attempts to tamper with the computer. |
0xB0001210 | 帳戶成功登入。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入類型:%t%t%t%9%n%n新登入:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%t登入 GUID:%t%t%13%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%17%n%t處理程序名稱:%t%t%18%n%n網路資訊:%n%t工作站名稱:%t%12%n%t來源網路位址:%t%19%n%t來源連接埠:%t%t%20%n%n詳細驗證資訊:%n%t登入程序:%t%t%10%n%t驗證封裝:%t%11%n%t轉送的服務:%t%14%n%t封裝名稱 (僅限 NTLM):%t%15%n%t金鑰長度:%t%t%16%n%n當建立登入工作階段的時候,就會產生這個事件。它在被存取的電腦上產生。%n%n主體欄位顯示要求登入之本機系統上的帳戶。這通常是發生在服務 (例如伺服器服務) 或是本機處理程序 (例如 Winlogon.exe 或 Services.exe)。%n%n登入類型欄位顯示發生的登入類型。最常見的類型是 2 (互動式) 與 3 (網路)。%n%n新登入欄位顯示是哪個帳戶建立新登入,例如登入的帳戶。%n%n網路欄位顯示遠端登入要求的來源。工作站名稱不是每次都有,而且在某些情況下可能是空白。%n%n模擬等級欄位顯示登入工作階段中的處理程序可以模擬的範圍。%n%n驗證資訊欄位提供關於此特定登入要求的詳細資訊。%n%t- 登入 GUID 是唯一識別碼,可用於關聯這個事件與 KDC 事件。%n%t- 轉送的服務欄位顯示哪一個中介服務已經加入這個登入要求。%n%t- 封裝名稱欄位顯示在 NTLM 通訊協定中使用哪一個子協定。%n%t- 金鑰長度顯示產生的工作階段金鑰長度。如果沒有要求工作階段金鑰則為 0。 |
An account was successfully logged on.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Type:%t%t%t%9%n%nNew Logon:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%tLogon GUID:%t%t%13%n%nProcess Information:%n%tProcess ID:%t%t%17%n%tProcess Name:%t%t%18%n%nNetwork Information:%n%tWorkstation Name:%t%12%n%tSource Network Address:%t%19%n%tSource Port:%t%t%20%n%nDetailed Authentication Information:%n%tLogon Process:%t%t%10%n%tAuthentication Package:%t%11%n%tTransited Services:%t%14%n%tPackage Name (NTLM only):%t%15%n%tKey Length:%t%t%16%n%nThis event is generated when a logon session is created. It is generated on the computer that was accessed.%n%nThe subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.%n%nThe logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).%n%nThe New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.%n%nThe network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.%n%nThe impersonation level field indicates the extent to which a process in the logon session can impersonate.%n%nThe authentication information fields provide detailed information about this specific logon request.%n%t- Logon GUID is a unique identifier that can be used to correlate this event with a KDC event.%n%t- Transited services indicate which intermediate services have participated in this logon request.%n%t- Package name indicates which sub-protocol was used among the NTLM protocols.%n%t- Key length indicates the length of the generated session key. This will be 0 if no session key was requested. |
0xB000122E | IPsec 快速模式交涉失敗。%n%n本機端點:%n%t網路位址:%t%1%n%t網路位址遮罩:%t%2%n%t連接埠:%t%t%t%3%n%t通道端點:%t%t%4%n%n遠端端點:%n%t網路位址:%t%5%n%t位址遮罩:%t%t%6%n%t連接埠:%t%t%t%7%n%t通道端點:%t%t%8%n%t私人位址:%t%t%10%n%n其他資訊:%n%t通訊協定:%t%t%9%n%t金鑰處理模組名稱:%t%11%n%t模式:%t%t%t%14%n%t角色:%t%t%t%16%n%t快速模式篩選器識別碼:%t%18%n%t主要模式 SA 識別碼:%t%19%n%n失敗資訊:%n%t狀態:%t%t%t%15%n%t訊息識別碼:%t%t%17%n%t失敗點:%t%t%12%n%t失敗原因:%t%t%13 |
An IPsec quick mode negotiation failed.%n%nLocal Endpoint:%n%tNetwork Address:%t%1%n%tNetwork Address mask:%t%2%n%tPort:%t%t%t%3%n%tTunnel Endpoint:%t%t%4%n%nRemote Endpoint:%n%tNetwork Address:%t%5%n%tAddress Mask:%t%t%6%n%tPort:%t%t%t%7%n%tTunnel Endpoint:%t%t%8%n%tPrivate Address:%t%t%10%n%nAdditional Information:%n%tProtocol:%t%t%9%n%tKeying Module Name:%t%11%n%tMode:%t%t%t%14%n%tRole:%t%t%t%16%n%tQuick Mode Filter ID:%t%18%n%tMain Mode SA ID:%t%19%n%nFailure Information:%n%tState:%t%t%t%15%n%tMessage ID:%t%t%17%n%tFailure Point:%t%t%12%n%tFailure Reason:%t%t%13 |
0xB0001230 | 已要求物件控制代碼。%n%n主旨:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%t%5%n%t物件類型:%t%t%6%n%t物件名稱:%t%t%7%n%t控制代碼識別碼:%t%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%14%n%t處理程序名稱:%t%t%15%n%n存取要求資訊:%n%t交易識別碼:%t%t%9%n%t存取:%t%t%10%n%t存取遮罩:%t%t%11%n%t存取檢查所使用的權限:%t%12%n%t限制的 SID 數目:%t%13 |
A handle to an object was requested.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%t%5%n%tObject Type:%t%t%6%n%tObject Name:%t%t%7%n%tHandle ID:%t%t%8%n%nProcess Information:%n%tProcess ID:%t%t%14%n%tProcess Name:%t%t%15%n%nAccess Request Information:%n%tTransaction ID:%t%t%9%n%tAccesses:%t%t%10%n%tAccess Mask:%t%t%11%n%tPrivileges Used for Access Check:%t%12%n%tRestricted SID Count:%t%13 |
0xB0001235 | 已要求物件控制代碼。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n處理程序資訊:%n%t處理程序識別碼:%t%15%n%t處理程序名稱:%t%16%n%n存取要求資訊:%n%t交易識別碼:%t%9%n%t存取:%t%10%n%t存取遮罩:%t%11%n%t存取檢查所使用的權限:%t%12%n%t內容:%t%13%n%t限制的 SID 數目:%t%14 |
A handle to an object was requested.%n%nSubject :%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%15%n%tProcess Name:%t%16%n%nAccess Request Information:%n%tTransaction ID:%t%9%n%tAccesses:%t%10%n%tAccess Mask:%t%11%n%tPrivileges Used for Access Check:%t%12%n%tProperties:%t%13%n%tRestricted SID Count:%t%14 |
0xB0001237 | 嘗試存取物件。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n物件:%n%t物件伺服器:%t%5%n%t物件類型:%t%6%n%t物件名稱:%t%7%n%t控制代碼識別碼:%t%8%n%n程序資訊:%n%t程序識別碼:%t%11%n%t程序名稱:%t%12%n%n存取要求資訊:%n%t存取:%t%9%n%t存取遮罩:%t%10 |
An attempt was made to access an object.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nObject:%n%tObject Server:%t%5%n%tObject Type:%t%6%n%tObject Name:%t%7%n%tHandle ID:%t%8%n%nProcess Information:%n%tProcess ID:%t%11%n%tProcess Name:%t%12%n%nAccess Request Information:%n%tAccesses:%t%9%n%tAccess Mask:%t%10 |
0xB0001250 | 已建立新的處理程序。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%t新處理程序識別碼:%t%t%5%n%t新處理程序名稱:%t%6%n%t權杖權限提高類型:%t%7%n%t建立者處理程序識別碼:%t%8%n%n權杖權限提高類型指出根據使用者帳戶控制原則指派給新處理程序的權杖類型。%n%n類型 1 是完整權杖,沒有權限被移除,也沒有群組被停用。只有在使用者帳戶控制已停用,或是使用者是內建的系統管理員帳戶或服務帳戶時,才會使用完整權杖。%n%n類型 2 是提高權限的權杖,沒有權限被移除,也沒有群組被停用。當使用者帳戶控制已經啟用,而且使用者選擇使用 [以系統管理員身分執行] 啟動程式時,將使用提高權限的權杖。當應用程式被設定為一律要求系統管理員權限或一律要求最大權限,而且使用者是 Administrators 群組的成員時,也會使用提高權限的權杖。%n%n類型 3 是受限制的權杖,系統管理權限已被移除,且系統管理群組已被停用。當使用者帳戶控制已經啟用,應用程式不需要系統管理權限,而且使用者沒有選擇使用 [以系統管理員身分執行] 啟動程式時,就會使用受限制的權杖。 |
A new process has been created.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tNew Process ID:%t%t%5%n%tNew Process Name:%t%6%n%tToken Elevation Type:%t%7%n%tCreator Process ID:%t%8%n%nToken Elevation Type indicates the type of token that was assigned to the new process in accordance with User Account Control policy.%n%nType 1 is a full token with no privileges removed or groups disabled. A full token is only used if User Account Control is disabled or if the user is the built-in Administrator account or a service account.%n%nType 2 is an elevated token with no privileges removed or groups disabled. An elevated token is used when User Account Control is enabled and the user chooses to start the program using Run as administrator. An elevated token is also used when an application is configured to always require administrative privilege or to always require maximum privilege, and the user is a member of the Administrators group.%n%nType 3 is a limited token with administrative privileges removed and administrative groups disabled. The limited token is used when User Account Control is enabled, the application does not require administrative privilege, and the user does not choose to start the program using Run as administrator. |
0xB0001278 | 已新增成員到已啟用安全性的全域群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a security-enabled global group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB000127C | 已新增成員到已啟用安全性的本機群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a security-enabled local group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB000128A | 已新增成員到已停用安全性的本機群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a security-disabled local group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB000128F | 已新增成員到已停用安全性的全域群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a security-disabled global group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB0001294 | 已新增成員到已啟用安全性的萬用群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a security-enabled universal group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB0001299 | 已新增成員到已停用安全性的萬用群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a security-disabled universal group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB00012B1 | 已新增成員到基本應用程式群組。%n%n主體:%n%t安全性識別碼:%t%t%6%n%t帳戶名稱:%t%t%7%n%t帳戶網域:%t%t%8%n%t登入識別碼:%t%t%9%n%n成員:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%1%n%n群組:%n%t安全性識別碼:%t%t%5%n%t群組名稱:%t%t%3%n%t群組網域:%t%t%4%n%n其他資訊:%n%t特殊權限:%t%t%10 |
A member was added to a basic application group.%n%nSubject:%n%tSecurity ID:%t%t%6%n%tAccount Name:%t%t%7%n%tAccount Domain:%t%t%8%n%tLogon ID:%t%t%9%n%nMember:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%1%n%nGroup:%n%tSecurity ID:%t%t%5%n%tGroup Name:%t%t%3%n%tGroup Domain:%t%t%4%n%nAdditional Information:%n%tPrivileges:%t%t%10 |
0xB0001405 | 要求已經提交至 OCSP 回應程式服務。 |
A request was submitted to OCSP Responder Service. |
0xB0001414 | 已存取網路共用物件。%n%t%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n網路資訊:%t%n%t來源位址:%t%t%5%n%t來源連接埠:%t%t%6%n%t%n共用名稱:%t%t%t%7 |
A network share object was accessed.%n%t%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nNetwork Information:%t%n%tSource Address:%t%t%5%n%tSource Port:%t%t%6%n%t%nShare Name:%t%t%t%7 |
0xB000154B | IPsec 快速模式安全性關聯已經建立。%n%t%n本機端點:%n%t網路位址:%t%1%n%t網路位址遮罩:%t%2%n%t連接埠:%t%t%t%3%n%t通道端點:%t%t%4%n%n遠端端點:%n%t網路位址:%t%5%n%t網路位址遮罩:%t%6%n%t連接埠:%t%t%t%7%n%t私人位址:%t%t%8%n%t通道端點:%t%t%9%n%n%t通訊協定:%t%t%10%n%t金鑰處理模組名稱:%t%11%n%n密碼編譯資訊:%n%t完整性演算法 - AH:%t%12%n%t完整性演算法 - ESP:%t%13%n%t加密演算法:%t%14%n%n安全性關聯資訊:%n%t存留期 - 秒:%t%15%n%t存留期 - 資料:%t%t%16%n%t存留期 - 封包:%t%17%n%t模式:%t%t%t%18%n%t角色:%t%t%t%19%n%t快速模式篩選器識別碼:%t%20%n%t主要模式 SA 識別碼:%t%21%n%t快速模式 SA 識別碼:%t%22%n%n其他資訊:%n%t輸入 SPI:%t%t%23%n%t輸出 SPI:%t%t%24 |
An IPsec quick mode security association was established.%n%t%nLocal Endpoint:%n%tNetwork Address:%t%1%n%tNetwork Address mask:%t%2%n%tPort:%t%t%t%3%n%tTunnel Endpoint:%t%t%4%n%nRemote Endpoint:%n%tNetwork Address:%t%5%n%tNetwork Address Mask:%t%6%n%tPort:%t%t%t%7%n%tPrivate Address:%t%t%8%n%tTunnel Endpoint:%t%t%9%n%n%tProtocol:%t%t%10%n%tKeying Module Name:%t%11%n%nCryptographic Information:%n%tIntegrity Algorithm - AH:%t%12%n%tIntegrity Algorithm - ESP:%t%13%n%tEncryption Algorithm:%t%14%n%nSecurity Association Information:%n%tLifetime - seconds:%t%15%n%tLifetime - data:%t%t%16%n%tLifetime - packets:%t%17%n%tMode:%t%t%t%18%n%tRole:%t%t%t%19%n%tQuick Mode Filter ID:%t%20%n%tMain Mode SA ID:%t%21%n%tQuick Mode SA ID:%t%22%n%nAdditional Information:%n%tInbound SPI:%t%t%23%n%tOutbound SPI:%t%t%24 |
0xB000154C | IPsec 快速模式安全性關聯已經結束。%n%t%n本機端點:%n%t網路位址:%t%1%n%t連接埠:%t%t%t%2%n%t通道端點:%t%t%3%n%n遠端端點:%n%t網路位址:%t%4%n%t連接埠:%t%t%t%5%n%t通道端點:%t%t%6%n%n其他資訊:%n%t通訊協定:%t%t%7%n%t快速模式 SA 識別碼:%t%8 |
An IPsec quick mode security association ended.%n%t%nLocal Endpoint:%n%tNetwork Address:%t%1%n%tPort:%t%t%t%2%n%tTunnel Endpoint:%t%t%3%n%nRemote Endpoint:%n%tNetwork Address:%t%4%n%tPort:%t%t%t%5%n%tTunnel Endpoint:%t%t%6%n%nAdditional Information:%n%tProtocol:%t%t%7%n%tQuick Mode SA ID:%t%8 |
0xB0001600 | 已要求驗證無線網路。%n%n主旨:%n%t安全性識別碼:%t%t%2%n%t帳戶名稱:%t%t%3%n%t帳戶網域:%t%t%4%n%t登入識別碼:%t%t%5%n%n網路資訊:%n%t名稱 (SSID):%t%t%1%n%t介面 GUID:%t%t%8%n%t本機 MAC 位址:%t%7%n%t對等 MAC 位址:%t%6%n%n其他資訊:%n%t理由代碼:%t%t%10 (%9)%n%t錯誤碼::%t%t%11 |
A request was made to authenticate to a wireless network.%n%nSubject:%n%tSecurity ID:%t%t%2%n%tAccount Name:%t%t%3%n%tAccount Domain:%t%t%4%n%tLogon ID:%t%t%5%n%nNetwork Information:%n%tName (SSID):%t%t%1%n%tInterface GUID:%t%t%8%n%tLocal MAC Address:%t%7%n%tPeer MAC Address:%t%6%n%nAdditional Information:%n%tReason Code:%t%t%10 (%9)%n%tError Code:%t%t%11 |
0xB0001880 | 網路原則伺服器授與使用者的存取。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t呼叫的工作站識別元:%t%t%9%n%t發出呼叫的工作站識別元:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別元:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%tProxy 原則名稱:%t%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%n隔離資訊:%n%t結果:%t%t%t%t%25%n%t工作階段識別元:%t%t%t%26%n |
Network Policy Server granted access to a user.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tProxy Policy Name:%t%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%nQuarantine Information:%n%tResult:%t%t%t%t%25%n%tSession Identifier:%t%t%t%26%n |
0xB0001881 | 網路原則伺服器拒絕使用者的存取。%n%n請連絡網路原則伺服器管理員以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t呼叫的工作站識別元:%t%t%9%n%t發出呼叫的工作站識別元:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別元:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%tProxy 原則名稱:%t%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%t原因碼:%t%t%t%25%n%t原因:%t%t%t%t%26%n |
Network Policy Server denied access to a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tProxy Policy Name:%t%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%tReason Code:%t%t%t%25%n%tReason:%t%t%t%t%26%n |
0xB0001882 | 網路原則伺服器捨棄使用者的要求。%n%n請連絡網路原則伺服器管理員以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t被呼叫的工作站識別碼:%t%t%9%n%t發出呼叫的工作站識別碼:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別碼:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%t理由代碼:%t%t%t%25%n%t原因:%t%t%t%t%26%n |
Network Policy Server discarded the request for a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%tReason Code:%t%t%t%25%n%tReason:%t%t%t%t%26%n |
0xB0001883 | 網路原則伺服器捨棄使用者的帳戶處理要求。%n%n請連絡網路原則伺服器管理員以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t被呼叫的工作站識別碼:%t%t%9%n%t發出呼叫的工作站識別碼:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別碼:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%t理由代碼:%t%t%t%25%n%t原因:%t%t%t%t%26%n |
Network Policy Server discarded the accounting request for a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%tReason Code:%t%t%t%25%n%tReason:%t%t%t%t%26%n |
0xB0001910 | 系統已識別新的外接式裝置。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n類別識別碼:%t%t%5%n%n廠商識別碼:%t%6%n%n相容識別碼:%t%7%n%n位置資訊:%t%8 |
A new external device was recognized by the system.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nClass ID:%t%t%5%n%nVendor IDs:%t%6%n%nCompatible IDs:%t%7%n%nLocation Information:%t%8 |
0xB0011210 | 帳戶成功登入。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n登入類型:%t%t%t%9%n%n模擬等級:%t%t%21%n%n新登入:%n%t安全性識別碼:%t%t%5%n%t帳戶名稱:%t%t%6%n%t帳戶網域:%t%t%7%n%t登入識別碼:%t%t%8%n%t登入 GUID:%t%t%13%n%n處理程序資訊:%n%t處理程序識別碼:%t%t%17%n%t處理程序名稱:%t%t%18%n%n網路資訊:%n%t工作站名稱:%t%12%n%t來源網路位址:%t%19%n%t來源連接埠:%t%t%20%n%n詳細驗證資訊:%n%t登入程序:%t%t%10%n%t驗證封裝:%t%11%n%t轉送的服務:%t%14%n%t封裝名稱 (僅限 NTLM):%t%15%n%t金鑰長度:%t%t%16%n%n當建立登入工作階段的時候,就會產生這個事件。它在被存取的電腦上產生。%n%n主體欄位顯示要求登入之本機系統上的帳戶。這通常是發生在服務 (例如伺服器服務) 或是本機處理程序 (例如 Winlogon.exe 或 Services.exe)。%n%n登入類型欄位顯示發生的登入類型。最常見的類型是 2 (互動式) 與 3 (網路)。%n%n新登入欄位顯示是哪個帳戶建立新登入,例如登入的帳戶。%n%n網路欄位顯示遠端登入要求的來源。工作站名稱不是每次都有,而且在某些情況下可能是空白。%n%n模擬等級欄位顯示登入工作階段中的處理程序可以模擬的範圍。%n%n驗證資訊欄位提供關於此特定登入要求的詳細資訊。%n%t- 登入 GUID 是唯一識別碼,可用於關聯這個事件與 KDC 事件。%n%t- 轉送的服務欄位顯示哪一個中介服務已經加入這個登入要求。%n%t- 封裝名稱欄位顯示在 NTLM 通訊協定中使用哪一個子協定。%n%t- 金鑰長度顯示產生的工作階段金鑰長度。如果沒有要求工作階段金鑰則為 0。 |
An account was successfully logged on.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nLogon Type:%t%t%t%9%n%nImpersonation Level:%t%t%21%n%nNew Logon:%n%tSecurity ID:%t%t%5%n%tAccount Name:%t%t%6%n%tAccount Domain:%t%t%7%n%tLogon ID:%t%t%8%n%tLogon GUID:%t%t%13%n%nProcess Information:%n%tProcess ID:%t%t%17%n%tProcess Name:%t%t%18%n%nNetwork Information:%n%tWorkstation Name:%t%12%n%tSource Network Address:%t%19%n%tSource Port:%t%t%20%n%nDetailed Authentication Information:%n%tLogon Process:%t%t%10%n%tAuthentication Package:%t%11%n%tTransited Services:%t%14%n%tPackage Name (NTLM only):%t%15%n%tKey Length:%t%t%16%n%nThis event is generated when a logon session is created. It is generated on the computer that was accessed.%n%nThe subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.%n%nThe logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).%n%nThe New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.%n%nThe network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.%n%nThe impersonation level field indicates the extent to which a process in the logon session can impersonate.%n%nThe authentication information fields provide detailed information about this specific logon request.%n%t- Logon GUID is a unique identifier that can be used to correlate this event with a KDC event.%n%t- Transited services indicate which intermediate services have participated in this logon request.%n%t- Package name indicates which sub-protocol was used among the NTLM protocols.%n%t- Key length indicates the length of the generated session key. This will be 0 if no session key was requested. |
0xB0011250 | 已建立新的處理程序。%n%n主體:%n%t安全性識別碼:%t%t%1%n%t帳戶名稱:%t%t%2%n%t帳戶網域:%t%t%3%n%t登入識別碼:%t%t%4%n%n處理程序資訊:%n%t新處理程序識別碼:%t%t%5%n%t新處理程序名稱:%t%6%n%t權杖權限提高類型:%t%7%n%t建立者處理程序識別碼:%t%8%n%t處理程序命令列:%t%9%n%n權杖權限提高類型指出根據使用者帳戶控制原則指派給新處理程序的權杖類型。%n%n類型 1 是完整權杖,沒有權限被移除,也沒有群組被停用。只有在使用者帳戶控制已停用,或是使用者是內建的系統管理員帳戶或服務帳戶時,才會使用完整權杖。%n%n類型 2 是提高權限的權杖,沒有權限被移除,也沒有群組被停用。當使用者帳戶控制已經啟用,而且使用者選擇使用 [以系統管理員身分執行] 啟動程式時,將使用提高權限的權杖。當應用程式設定為一律要求系統管理員權限或一律要求最大權限,而且使用者是 Administrators 群組的成員時,也會使用提高權限的權杖。%n%n類型 3 是受限制的權杖,系統管理權限已被移除,且系統管理群組已被停用。當使用者帳戶控制已經啟用,應用程式不需要系統管理權限,而且使用者沒有選擇使用 [以系統管理員身分執行] 啟動程式時,就會使用受限制的權杖。 |
A new process has been created.%n%nSubject:%n%tSecurity ID:%t%t%1%n%tAccount Name:%t%t%2%n%tAccount Domain:%t%t%3%n%tLogon ID:%t%t%4%n%nProcess Information:%n%tNew Process ID:%t%t%5%n%tNew Process Name:%t%6%n%tToken Elevation Type:%t%7%n%tCreator Process ID:%t%8%n%tProcess Command Line:%t%9%n%nToken Elevation Type indicates the type of token that was assigned to the new process in accordance with User Account Control policy.%n%nType 1 is a full token with no privileges removed or groups disabled. A full token is only used if User Account Control is disabled or if the user is the built-in Administrator account or a service account.%n%nType 2 is an elevated token with no privileges removed or groups disabled. An elevated token is used when User Account Control is enabled and the user chooses to start the program using Run as administrator. An elevated token is also used when an application is configured to always require administrative privilege or to always require maximum privilege, and the user is a member of the Administrators group.%n%nType 3 is a limited token with administrative privileges removed and administrative groups disabled. The limited token is used when User Account Control is enabled, the application does not require administrative privilege, and the user does not choose to start the program using Run as administrator. |
0xB0011880 | 網路原則伺服器授與使用者的存取。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t呼叫的工作站識別元:%t%t%9%n%t發出呼叫的工作站識別元:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別元:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%t記錄結果:%t%t%t%27%n%n隔離資訊:%n%t結果:%t%t%t%t%25%n%t工作階段識別元:%t%t%t%26%n |
Network Policy Server granted access to a user.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%tLogging Results:%t%t%t%27%n%nQuarantine Information:%n%tResult:%t%t%t%t%25%n%tSession Identifier:%t%t%t%26%n |
0xB0011881 | 網路原則伺服器拒絕存取使用者。%n%n請連絡網路原則伺服器管理員以取得詳細資訊。%n%n使用者:%n%t安全性識別碼:%t%t%t%1%n%t帳戶名稱:%t%t%t%2%n%t帳戶網域:%t%t%t%3%n%t完整帳戶名稱:%t%4%n%n用戶端電腦:%n%t安全性識別碼:%t%t%t%5%n%t帳戶名稱:%t%t%t%6%n%t完整帳戶名稱:%t%7%n%t作業系統版本:%t%t%t%8%n%t呼叫的工作站識別元:%t%t%9%n%t發出呼叫的工作站識別元:%t%t%10%n%nNAS:%n%tNAS IPv4 位址:%t%t%11%n%tNAS IPv6 位址:%t%t%12%n%tNAS 識別元:%t%t%t%13%n%tNAS 連接埠類型:%t%t%t%14%n%tNAS 連接埠:%t%t%t%15%n%nRADIUS 用戶端:%n%t用戶端易記名稱:%t%t%16%n%t用戶端 IP 位址:%t%t%t%17%n%n驗證詳細資料:%n%t連線要求原則名稱:%t%18%n%t網路原則名稱:%t%t%19%n%t驗證提供者:%t%t%20%n%t驗證伺服器:%t%t%21%n%t驗證類型:%t%t%22%n%tEAP 類型:%t%t%t%23%n%t帳戶工作階段識別元:%t%t%24%n%t記錄結果:%t%t%t%27%n%t原因碼:%t%t%t%25%n%t原因:%t%t%t%t%26%n |
Network Policy Server denied access to a user.%n%nContact the Network Policy Server administrator for more information.%n%nUser:%n%tSecurity ID:%t%t%t%1%n%tAccount Name:%t%t%t%2%n%tAccount Domain:%t%t%t%3%n%tFully Qualified Account Name:%t%4%n%nClient Machine:%n%tSecurity ID:%t%t%t%5%n%tAccount Name:%t%t%t%6%n%tFully Qualified Account Name:%t%7%n%tOS-Version:%t%t%t%8%n%tCalled Station Identifier:%t%t%9%n%tCalling Station Identifier:%t%t%10%n%nNAS:%n%tNAS IPv4 Address:%t%t%11%n%tNAS IPv6 Address:%t%t%12%n%tNAS Identifier:%t%t%t%13%n%tNAS Port-Type:%t%t%t%14%n%tNAS Port:%t%t%t%15%n%nRADIUS Client:%n%tClient Friendly Name:%t%t%16%n%tClient IP Address:%t%t%t%17%n%nAuthentication Details:%n%tConnection Request Policy Name:%t%18%n%tNetwork Policy Name:%t%t%19%n%tAuthentication Provider:%t%t%20%n%tAuthentication Server:%t%t%21%n%tAuthentication Type:%t%t%22%n%tEAP Type:%t%t%t%23%n%tAccount Session Identifier:%t%t%24%n%tLogging Results:%t%t%t%27%n%tReason Code:%t%t%t%25%n%tReason:%t%t%t%t%26%n |