Microsoft-Windows-DAL-Provider
Event ID 1: The Unencrypted request data for IPMI request NetFn.
#Event ID 2: The Decrypted response data for IPMI request NetFn.
#Event ID 3: Starts enumeration of PCSVDevice
#Event ID 4: Stops enumeration of PCSVDevice
#Event ID 5: Starts getting instance of PCSVDevice
#Event ID 6: Stops getting instance of PCSVDevice
#Event ID 7: Start RequestStateChange
#Event ID 8: Stops RequestStateChange
#Event ID 9: Starts SetOneTimeBootSource
#Event ID 10: Stops SetOneTimeBootSource
#Event ID 11: Result of PCSVDevice operation
#Fields #
| Name | Description |
|---|---|
MI_Result Int32 | |
Operation UnicodeString | Known values
|
Event ID 17: Get operations options
#Fields #
| Name | Description |
|---|---|
target UnicodeString | |
protocol UInt16 | |
port UInt16 | |
authentication UInt16 | |
usessl Boolean | |
skipcacheck Boolean | |
skipcncheck Boolean | |
skiprevocationcheck Boolean | |
timeoutsec UInt32 |
Event ID 18: Starts ModifyPersistentBootConfigOrder
#Event ID 19: Stops ModifyPersistentBootConfigOrder
#Event ID 20: Starts ChangeBootConfiguration
#Event ID 21: Stops ChangeBootConfiguration
#Event ID 22: Starts ChangeNetworkConfiguration
#Event ID 23: Stops ChangeNetworkConfiguration
#Event ID 24: Starts ChangeUserPassword
#Event ID 25: Stops ChangeUserPassword
#Event ID 26: Starts getting PCSV device log
#Event ID 27: Stops getting PCSV device log
#Event ID 28: Starts clearing PCSV device log
#Event ID 29: Stops clearing PCSV device log
#Event ID 30: The request data for in-band IPMI request NetFn.
#Provenance
ETW provider GUID 7e87506f-bace-4bf1-bc09-3a1f37045c71
Defined in pcsvDevice.dll, which carries the event manifest.
- WS2022-20348.4893, schema read from the registered manifest, binary version 10.0.20348.1, captured 2026-06-02 — Manifest XML pack, 1.9 MB
- Win11-26200.6584, schema read from the registered manifest, binary version 10.0.26100.1, captured 2026-06-02 — Manifest XML pack, 2.0 MB