Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

AD FS logs don't contain client IP address for account lockout scenarios in Windows Server 2012 R2


View products that this article applies to.

This article describes a problem in which Active Directory Federation Services (AD FS) logs are missing client device details in Windows Server 2012 R2. An update is available to fix this problem. This update adds the client IP address to events 406, 411, and 413 when the events get triggered during account lockout scenarios. 

↑ Back to the top


Symptoms

AD FS logs are missing client IP address details for account lockout scenarios. Specifically, the logs don't identify the source IP address and package headers that may indicate the detail information of a client device if there are failures. 

↑ Back to the top


How to get this update

To fix this problem, install the update that's described in security update 3134222.

↑ Back to the top


Status

Microsoft has confirmed that this is a problem in the Microsoft products that are listed in the "Applies to" section.

↑ Back to the top


References

Learn about the terminology that Microsoft uses to describe software updates.

↑ Back to the top


Keywords: kbsurveynew, atdownload, kbexpertiseadvanced, kbfix, kb

↑ Back to the top

Article Info
Article ID : 3134787
Revision : 1
Created on : 1/7/2017
Published on : 2/16/2016
Exists online : False
Views : 179