Event ID 5464 — IPsec Policy Agent Service Runtime

Applies To: Windows Server 2008 R2

The IPsec Policy Agent Service applies IPsec policy and rule changes to the current operating state of the IPsec filtering software.

Note: The IPsec Policy Agent service provides compatibility with Internet Protocol security (IPsec) policies created by using Group Policy editing tools on computers that are running earlier versions of Windows. New deployments of Windows Vista and Windows Server 2008 should not use the policies supported by the IPsec Policy Agent service since those policies support only a subset of the features supported by Windows Firewall with Advanced Security. Instead, new deployments should use policies created by using Windows Firewall with Advanced Security to take full advantage of the additional security and features.

When appropriate auditing events are enabled (http://go.microsoft.com/fwlink/?linkid=92666), Windows reports when the service cannot perform its required tasks, such as properly processing filters, or cannot protect traffic sent or received by one or more of the network adapters attached to the computer.

Event Details

Product: Windows Operating System
ID: 5464
Source: Microsoft-Windows-Security-Auditing
Version: 6.1
Message: PAStore Engine polled for changes to the active IPsec policy, detected changes, and applied them to IPsec Services.


This is a normal condition. No further action is required.

IPsec Policy Agent Service Runtime

Windows Firewall with Advanced Security