Event ID 10560 — Windows NT Token-Based Application Auditing

Applies To: Windows Server 2008 R2

Audit events are written to the audit log during the auditing process. The Windows token-based agent records Success and Failure audits, such as the state of the AD FS Web Agent Authentication Service.

Event Details

Product: Windows Operating System
ID: 10560
Source: Microsoft-Windows-ADFS
Version: 6.1
Message: %1
Key identifier: %2
Error code: %3
Token ID: %4
Identity: %5
Issuer: %6
Audience: %7
Effective time: %8 %9
Expiration time: %10 %11
Claim source: %12
Authentication methods:
UPN: %14
E-mail: %15
Common name: %16


This is a normal condition. No further action is required.

Windows NT Token-Based Application Auditing

Active Directory Federation Services