Microsoft-Windows-Provisioning-Diagnostics-Provider

EventTitleChannelSampleRule
10Configuring ProvXML with category 'Message1'.AdminYN
11ProvXML category 'Message1' completed successfully.AdminYN
12ProvXML category 'Message1' failed with 'HRESULT' at CSP node 'Message2'.AdminNN
13Setting Message1 was ignored because it was not available on this OS build.AdminNN
20Applying package 'Message1' ID: Message2.AdminYN
21Package 'Message1' has completed.AdminNN
22Package 'Message1' failed with 'HRESULT'.AdminNN
23Skipping package 'Message1' ID: Message2.AdminNN
30Initiating provisioning turn '{Int1}'.AdminNN
31Provisioning turn '{Int1}' has completed.AdminNN
32Provisioning turn '{Int1}' failed with '{HRESULT}'.AdminNN
40Registry specified search path is invalid: Message1.AdminNN
41InitiateSystemShutdownEx succeeded.AdminNN
42InitiateSystemShutdownEx failed.AdminNN
43Start RebootSystem.AdminNN
44InitiateSystemShutdownEx succeeded.AdminNN
45InitiateSystemShutdownEx failed.AdminNN
60AddPackage initiated, pathCount = UInt1.AdminNN
61AddPackage succeeded, targetPath = Message1.AdminNN
62AddPackage failed.AdminNN
63RemovePackage initiated, package id = Message1.AdminNN
64RemovePackage succeeded, package id = Message1.AdminNN
65RemovePackage failed.AdminNN
66RemovePackageMetadata succeeded, package id = Message1.AdminNN
67RemovePackageMetadata failed.AdminNN
68RemoveResourceManagerPackageMetadataForCsp succeeded, package id = Message1.AdminNN
69RemoveResourceManagerPackageMetadataForCsp failed.AdminNN
70ApplyKnownPackages initiated, turn = Int1.AdminNN
71ApplyKnownPackages succeeded, turn = Int1.AdminNN
72ApplyKnownPackages failed.AdminNN
73PublishDeviceProvisioningLogs failedAdmin, OperationalNN
74PublishDeviceProvisioningLogs succeededAdmin, OperationalNN
75CleanupOOBEProvisioningLogs failedAdmin, OperationalNN
76CleanupOOBEProvisioningLogs succeededAdmin, OperationalNN
80GetLastProvisioningResultsAsync succeeded, resultCount = UInt1.AdminNN
81GetLastProvisioningResultsAsync failed.AdminNN
82GetLastProvisioningCommandResultsAsync succeeded, resultCount = UInt1.AdminNN
83GetLastProvisioningCommandResultsAsync.AdminNN
90Settings detail.AdminYN
91RegisterForCspAlerts succeeded.AdminYN
92RegisterForCspAlerts Failed.AdminNN
93UpdatePendingResultInternal succeeded.AdminNN
94UpdatePendingResultInternal Failed.AdminNN
100AutoPilot policy [Message1] not found.AutoPilotNN
101AutoPilotGetPolicyDwordByName succeeded: policy name = Message1; policy value = …AutoPilotNN
102AutoPilotGetPolicyDwordByName error: policy name = Message1; HRESULT = HRESULT.AutoPilotNN
103AutoPilotGetPolicyStringByName succeeded: policy name = Message1; policy value = …AutoPilotNN
104AutoPilotGetPolicyStringByName error: policy name = Message1; HRESULT = HRESULT.AutoPilotNN
105AutoPilotDisable succeeded.AutoPilotNN
106AutoPilotDisable error: HRESULT = HRESULT.AutoPilotNN
107AutoPilot state = Message1.AutoPilotNN
108AutoPilotIsDisabled error: HRESULT = HRESULT.AutoPilotNN
109AutoPilotGetOobeSettingsOverride succeeded: OOBE setting = Message1; state = …AutoPilotNN
110AutoPilotGetOobeSettingsOverride error: OOBE setting = Message1; HRESULT = …AutoPilotNN
111AutoPilotRetrieveSettings succeeded.AutoPilotNN
112AutoPilotRetrieveSettings error: HRESULT = HRESULT.AutoPilotNN
113AutoPilot reported the DLL was unloaded while there were Int1 outstanding calls.AutoPilotNN
114AutoPilotRetrieveSettings was skipped because this version of Windows does not …AutoPilotNN
115Autopilot discovery failed to find a valid MDM.AutoPilotNN
150AutoPilotManager started the MSA service for TPM attestation identity.AutoPilotNN
151AutoPilotManager started the TPM task to update TPM attestation.AutoPilotNN
152AutoPilotManager reported TPM task is complete.AutoPilotNN
153AutoPilotManager reported the state changed from InitialState to UpdateState.AutoPilotNN
154AutoPilotManager failed to start MSA service.AutoPilotNN
155AutoPilotManager failed to start TPM task.AutoPilotNN
156AutoPilotManager reported that MSA TPM is not configured for hardware TPM …AutoPilotNN
157AutoPilotManager reported that TPM attestation lasted UInt1 microseconds.AutoPilotNN
160AutoPilotRetrieveSettings beginning acquisition.AutoPilotNN
161AutoPilotManager retrieve settings succeeded.AutoPilotNN
162AutoPilotManager determined download is not required and the device is not …AutoPilotNN
163AutoPilotManager determined download is not required and the device is already …AutoPilotNN
164AutoPilotManager determined Internet is available to attempt policy download.AutoPilotNN
165AutoPilotManager determined Internet is not available; policy download will …AutoPilotNN
166AutoPilotManager reported Internet is now available.AutoPilotNN
167AutoPilotManager reported Internet is still not available.AutoPilotNN
168AutoPilotManager reported MSA TPM device identity was updated.AutoPilotNN
169AutoPilotManager set TPM identity confirmed.AutoPilotNN
170AutoPilotManager set AutoPilot profile as available.AutoPilotNN
171AutoPilotManager failed to set TPM identity confirmed.AutoPilotNN
172AutoPilotManager failed to set AutoPilot profile as available.AutoPilotNN
173AutoPilotManager failed to register for network availability.AutoPilotNN
174AutoPilotManager failed to register for device identity availability.AutoPilotNN
175AutoPilotManager failed to register for device identity task update.AutoPilotNN
176MSA TPM keystate has been updated.AutoPilotNN
177TPM attestation retry is being attempted.AutoPilotNN
178AutoPilotManager began device enrollment with internal state Int1.AutoPilotNN
179AutoPilotManager began device enrollment phase State.AutoPilotNN
180AutoPilotManager failed during device enrollment phase State.AutoPilotNN
181AutoPilotManager completed device enrollment phase State.AutoPilotNN
182AutoPilotManager reported that the retry timer event was set to UInt1 …AutoPilotNN
183AutoPilotManager reported that the retry timer event occurredAutoPilotNN
184AutoPilotManager failed to register for MSA keystate update availability.AutoPilotNN
300AutoPilotManager device enrollment reported an initialization failure.AutoPilotNN
301AutoPilotManager device enrollment reported a blocking failure.AutoPilotNN
302AutoPilotManager device enrollment failed during stage State with error HRESULT.AutoPilotNN
303AutoPilotManager device enrollment succeeded.AutoPilotNN
310AutoPilot configuration file path: AutoPilot_configuration_file_path.AutoPilotNN
311Failed to load AutoPilot configuration file, HRESULT = HRESULT.AutoPilotNN
312Failed to parse AutoPilot configuration file, HRESULT = HRESULT.AutoPilotNN
313Invalid ZtdCorrelationId found in Autopilot configuration file, HRESULT = …AutoPilotNN
1000Management service starting.ManagementServiceNN
1001Management service started.ManagementServiceNN
1002Management service failed to start.ManagementServiceNN
1003Management service failed to register.ManagementServiceNN
1004Management service shutdown.ManagementServiceNN
1005Management service WIL error was reported.ManagementServiceNN
1006Management service call Message1 is deprecated!ManagementServiceNN
1007Management service cleared the local Autopilot cached state.ManagementServiceNN
1008Management service failed to clear the local Autopilot cached state.ManagementServiceNN
2000Device rename has been blocked through MDM because machine is domain joinedManagementServiceNN

Event ID 10: Configuring ProvXML with category 'Message1'.

#
Channel
Admin
Level
Informational

Message #

Configuring ProvXML with category '%1'.

ProvXML data:
%2

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeStringProvXML data

Example Event #

{
  "system": {
    "provider": "Microsoft-Windows-Provisioning-Diagnostics-Provider",
    "guid": "ED8B9BD3-F66E-4FF2-B86B-75C7925F72A9",
    "event_source_name": "",
    "event_id": 10,
    "version": 0,
    "level": 4,
    "task": 0,
    "opcode": 0,
    "keywords": 9223372036854775808,
    "time_created": "2023-11-06T06:25:52.831967+00:00",
    "event_record_id": 113,
    "correlation": {},
    "execution": {
      "process_id": 3584,
      "thread_id": 3588
    },
    "channel": "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin",
    "computer": "WinDev2310Eval",
    "security": {
      "user_id": "S-1-5-18"
    }
  },
  "event_data": {
    "Message1": "PowerSettings",
    "Message2": "MCSF/Power/Controls/EnergyEstimationEnabled"
  },
  "message": ""
}

References #

Event ID 11: ProvXML category 'Message1' completed successfully.

#
Channel
Admin
Level
Informational

Description

ProvXML category 'Message1' completed successfully. Message2.

Message #

ProvXML category '%1' completed successfully. %2

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString

Example Event #

{
  "system": {
    "provider": "Microsoft-Windows-Provisioning-Diagnostics-Provider",
    "guid": "ED8B9BD3-F66E-4FF2-B86B-75C7925F72A9",
    "event_source_name": "",
    "event_id": 11,
    "version": 0,
    "level": 4,
    "task": 0,
    "opcode": 0,
    "keywords": 9223372036854775808,
    "time_created": "2023-11-05T22:26:45.490065+00:00",
    "event_record_id": 132,
    "correlation": {
      "ActivityID": "F590C418-1079-0003-3DF1-90F57910DA01"
    },
    "execution": {
      "process_id": 3584,
      "thread_id": 3588
    },
    "channel": "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin",
    "computer": "WinDev2310Eval",
    "security": {
      "user_id": "S-1-5-18"
    }
  },
  "event_data": {
    "Message1": "PowerSettings",
    "Message2": "Provisioning succeeded"
  },
  "message": ""
}

References #

Event ID 12: ProvXML category 'Message1' failed with 'HRESULT' at CSP node 'Message2'.

#
Channel
Admin

Description

ProvXML category 'Message1' failed with 'HRESULT' at CSP node 'Message2'. Message3.

Message #

ProvXML category '%1' failed with '%2' at CSP node '%3'. %4

Fields #

NameDescription
Message1 UnicodeString
HRESULT HexInt32
Message2 UnicodeString
Message3 UnicodeString

Event ID 13: Setting Message1 was ignored because it was not available on this OS build.

#
Channel
Admin

Message #

Setting %1 was ignored because it was not available on this OS build

Fields #

NameDescription
Message1 UnicodeString

Event ID 20: Applying package 'Message1' ID: Message2.

#
Channel
Admin
Level
Informational

Message #

Applying package '%1' ID: %2.

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString1' ID.

Example Event #

{
  "system": {
    "provider": "Microsoft-Windows-Provisioning-Diagnostics-Provider",
    "guid": "ED8B9BD3-F66E-4FF2-B86B-75C7925F72A9",
    "event_source_name": "",
    "event_id": 20,
    "version": 0,
    "level": 4,
    "task": 0,
    "opcode": 0,
    "keywords": 9223372036854775808,
    "time_created": "2023-11-06T06:25:50.949676+00:00",
    "event_record_id": 111,
    "correlation": {},
    "execution": {
      "process_id": 3584,
      "thread_id": 3588
    },
    "channel": "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin",
    "computer": "WinDev2310Eval",
    "security": {
      "user_id": "S-1-5-18"
    }
  },
  "event_data": {
    "Message1": "Microsoft.Windows.Cosa.Desktop.Client.ppkg",
    "Message2": "{c8a326e4-f518-4f14-b543-97a57e1a975e}"
  },
  "message": ""
}

References #

Event ID 21: Package 'Message1' has completed.

#
Channel
Admin

Message #

Package '%1' has completed.

Fields #

NameDescription
Message1 UnicodeString

Event ID 22: Package 'Message1' failed with 'HRESULT'.

#
Channel
Admin

Message #

Package '%1' failed with '%2'.

Fields #

NameDescription
Message1 UnicodeString
HRESULT HexInt32

Event ID 23: Skipping package 'Message1' ID: Message2.

#
Channel
Admin

Message #

Skipping package '%1' ID: %2.

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString

Event ID 30: Initiating provisioning turn '{Int1}'.

#
Channel
Admin

Fields #

NameDescription
Int1

Event ID 31: Provisioning turn '{Int1}' has completed.

#
Channel
Admin

Fields #

NameDescription
Int1

Event ID 32: Provisioning turn '{Int1}' failed with '{HRESULT}'.

#
Channel
Admin

Fields #

NameDescription
Int1
HRESULT

Event ID 40: Registry specified search path is invalid: Message1.

#
Channel
Admin

Message #

Registry specified search path is invalid: %1.

Fields #

NameDescription
Message1 UnicodeString

Event ID 41: InitiateSystemShutdownEx succeeded.

#
Channel
Admin

Event ID 42: InitiateSystemShutdownEx failed.

#
Channel
Admin

Description

InitiateSystemShutdownEx failed. HRESULT = HRESULT.

Message #

InitiateSystemShutdownEx failed. HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 43: Start RebootSystem.

#
Channel
Admin

Event ID 44: InitiateSystemShutdownEx succeeded.

#
Channel
Admin

Event ID 45: InitiateSystemShutdownEx failed.

#
Channel
Admin

Description

InitiateSystemShutdownEx failed. HRESULT = HRESULT.

Message #

InitiateSystemShutdownEx failed. HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 60: AddPackage initiated, pathCount = UInt1.

#
Channel
Admin

Message #

AddPackage initiated, pathCount = %1

Fields #

NameDescription
UInt1 UInt32

Event ID 61: AddPackage succeeded, targetPath = Message1.

#
Channel
Admin

Message #

AddPackage succeeded, targetPath = %1

Fields #

NameDescription
Message1 UnicodeString

Event ID 62: AddPackage failed.

#
Channel
Admin

Description

AddPackage failed. HRESULT = HRESULT.

Message #

AddPackage failed. HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 63: RemovePackage initiated, package id = Message1.

#
Channel
Admin

Message #

RemovePackage initiated, package id = %1

Fields #

NameDescription
Message1 UnicodeString

Event ID 64: RemovePackage succeeded, package id = Message1.

#
Channel
Admin

Message #

RemovePackage succeeded, package id = %1

Fields #

NameDescription
Message1 UnicodeString

Event ID 65: RemovePackage failed.

#
Channel
Admin

Description

RemovePackage failed. HRESULT = HRESULT, package id = Message1, at stage = Uint1.

Message #

RemovePackage failed. HRESULT = %1, package id = %2, at stage = %3

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString
Uint1 UInt32

Event ID 66: RemovePackageMetadata succeeded, package id = Message1.

#
Channel
Admin

Message #

RemovePackageMetadata succeeded, package id = %1

Fields #

NameDescription
Message1 UnicodeString

Event ID 67: RemovePackageMetadata failed.

#
Channel
Admin

Description

RemovePackageMetadata failed. HRESULT = HRESULT, package id = Message1, at stage = Uint1.

Message #

RemovePackageMetadata failed. HRESULT = %1, package id = %2, at stage = %3

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString
Uint1 UInt32

Event ID 68: RemoveResourceManagerPackageMetadataForCsp succeeded, package id = Message1.

#
Channel
Admin

Message #

RemoveResourceManagerPackageMetadataForCsp succeeded, package id = %1

Fields #

NameDescription
Message1 UnicodeString

Event ID 69: RemoveResourceManagerPackageMetadataForCsp failed.

#
Channel
Admin

Description

RemoveResourceManagerPackageMetadataForCsp failed. HRESULT = HRESULT, package id = Message1.

Message #

RemoveResourceManagerPackageMetadataForCsp failed. HRESULT = %1, package id = %2

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 70: ApplyKnownPackages initiated, turn = Int1.

#
Channel
Admin

Message #

ApplyKnownPackages initiated, turn = %1

Fields #

NameDescription
Int1 Int32

Event ID 71: ApplyKnownPackages succeeded, turn = Int1.

#
Channel
Admin

Message #

ApplyKnownPackages succeeded, turn = %1

Fields #

NameDescription
Int1 Int32

Event ID 72: ApplyKnownPackages failed.

#
Channel
Admin

Description

ApplyKnownPackages failed. turn = Int1, HRESULT = HRESULT.

Message #

ApplyKnownPackages failed. turn = %1, HRESULT = %2

Fields #

NameDescription
Int1 Int32
HRESULT HexInt32

Event ID 73: PublishDeviceProvisioningLogs failed

#
Channel
Admin, Operational

Description

PublishDeviceProvisioningLogs failed. HRESULT = HRESULT.

Message #

PublishDeviceProvisioningLogs failed. HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 74: PublishDeviceProvisioningLogs succeeded

#
Channel
Admin, Operational

Event ID 75: CleanupOOBEProvisioningLogs failed

#
Channel
Admin, Operational

Description

CleanupOOBEProvisioningLogs failed. HRESULT = HRESULT.

Message #

CleanupOOBEProvisioningLogs failed. HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 76: CleanupOOBEProvisioningLogs succeeded

#
Channel
Admin, Operational

Event ID 80: GetLastProvisioningResultsAsync succeeded, resultCount = UInt1.

#
Channel
Admin

Message #

GetLastProvisioningResultsAsync succeeded, resultCount = %1

Fields #

NameDescription
UInt1 UInt32

Event ID 81: GetLastProvisioningResultsAsync failed.

#
Channel
Admin

Description

GetLastProvisioningResultsAsync failed. HRESULT = HRESULT.

Message #

GetLastProvisioningResultsAsync failed. HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 82: GetLastProvisioningCommandResultsAsync succeeded, resultCount = UInt1.

#
Channel
Admin

Message #

GetLastProvisioningCommandResultsAsync succeeded, resultCount = %1

Fields #

NameDescription
UInt1 UInt32

Event ID 83: GetLastProvisioningCommandResultsAsync.

#
Channel
Admin

Description

GetLastProvisioningCommandResultsAsync. HRESULT = HRESULT.

Message #

GetLastProvisioningCommandResultsAsync. HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 90: Settings detail.

#
Channel
Admin
Level
Informational

Message #

Settings detail.
source = %1.
packageIdToDelete = %2.
packagePathsToAdd = %3.

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString
Message3 UnicodeString

Example Event #

{
  "system": {
    "provider": "Microsoft-Windows-Provisioning-Diagnostics-Provider",
    "guid": "ED8B9BD3-F66E-4FF2-B86B-75C7925F72A9",
    "event_source_name": "",
    "event_id": 90,
    "version": 0,
    "level": 4,
    "task": 0,
    "opcode": 0,
    "keywords": 9223372036854775808,
    "time_created": "2023-11-06T06:25:42.966867+00:00",
    "event_record_id": 89,
    "correlation": {},
    "execution": {
      "process_id": 3584,
      "thread_id": 3588
    },
    "channel": "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin",
    "computer": "WinDev2310Eval",
    "security": {
      "user_id": "S-1-5-18"
    }
  },
  "event_data": {
    "Message1": "OOBE",
    "Message2": "<Not Present>",
    "Message3": "<Not Present>"
  },
  "message": ""
}

References #

Event ID 91: RegisterForCspAlerts succeeded.

#
Channel
Admin
Level
Informational

Description

RegisterForCspAlerts succeeded. EnrollmentId = Message1.

Message #

RegisterForCspAlerts succeeded. EnrollmentId = %1.

Fields #

NameDescription
Message1 UnicodeString

Example Event #

{
  "system": {
    "provider": "Microsoft-Windows-Provisioning-Diagnostics-Provider",
    "guid": "ED8B9BD3-F66E-4FF2-B86B-75C7925F72A9",
    "event_source_name": "",
    "event_id": 91,
    "version": 0,
    "level": 4,
    "task": 0,
    "opcode": 0,
    "keywords": 9223372036854775808,
    "time_created": "2023-11-06T06:25:52.831884+00:00",
    "event_record_id": 112,
    "correlation": {},
    "execution": {
      "process_id": 3584,
      "thread_id": 3588
    },
    "channel": "Microsoft-Windows-Provisioning-Diagnostics-Provider/Admin",
    "computer": "WinDev2310Eval",
    "security": {
      "user_id": "S-1-5-18"
    }
  },
  "event_data": {
    "Message1": "{1e05dd5d-a022-46c5-963c-b20de341170f}"
  },
  "message": ""
}

References #

Event ID 92: RegisterForCspAlerts Failed.

#
Channel
Admin

Description

RegisterForCspAlerts Failed. HResult = HRESULT, EnrollmentId = Message1.

Message #

RegisterForCspAlerts Failed. HResult = %1, EnrollmentId = %2.

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 93: UpdatePendingResultInternal succeeded.

#
Channel
Admin

Description

UpdatePendingResultInternal succeeded. PackageId = Message1.

Message #

UpdatePendingResultInternal succeeded. PackageId = %1.

Fields #

NameDescription
Message1 UnicodeString

Event ID 94: UpdatePendingResultInternal Failed.

#
Channel
Admin

Description

UpdatePendingResultInternal Failed. HResult = HRESULT, PackageId = Message1.

Message #

UpdatePendingResultInternal Failed. HResult = %1, PackageId = %2.

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 100: AutoPilot policy [Message1] not found.

#
Channel
AutoPilot

Message #

AutoPilot policy [%1] not found.

Fields #

NameDescription
Message1 UnicodeString

Event ID 101: AutoPilotGetPolicyDwordByName succeeded: policy name = Message1; policy value = Int1.

#
Channel
AutoPilot

Message #

AutoPilotGetPolicyDwordByName succeeded:  policy name = %1; policy value = %2.

Fields #

NameDescription
Message1 UnicodeString
Int1 Int32

Event ID 102: AutoPilotGetPolicyDwordByName error: policy name = Message1; HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotGetPolicyDwordByName error:  policy name = %2; HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 103: AutoPilotGetPolicyStringByName succeeded: policy name = Message1; policy value = Message2.

#
Channel
AutoPilot

Message #

AutoPilotGetPolicyStringByName succeeded:  policy name = %1; policy value = %2.

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString

Event ID 104: AutoPilotGetPolicyStringByName error: policy name = Message1; HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotGetPolicyStringByName error:  policy name = %2; HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 105: AutoPilotDisable succeeded.

#
Channel
AutoPilot

Event ID 106: AutoPilotDisable error: HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotDisable error:  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 107: AutoPilot state = Message1.

#
Channel
AutoPilot

Message #

AutoPilot state = %1.

Fields #

NameDescription
Message1 UnicodeString

Event ID 108: AutoPilotIsDisabled error: HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotIsDisabled error:  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 109: AutoPilotGetOobeSettingsOverride succeeded: OOBE setting = Message1; state = Message2.

#
Channel
AutoPilot

Message #

AutoPilotGetOobeSettingsOverride succeeded:  OOBE setting = %1; state = %2.

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString

Event ID 110: AutoPilotGetOobeSettingsOverride error: OOBE setting = Message1; HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotGetOobeSettingsOverride error:  OOBE setting = %2; HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 111: AutoPilotRetrieveSettings succeeded.

#
Channel
AutoPilot

Event ID 112: AutoPilotRetrieveSettings error: HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotRetrieveSettings error:  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 113: AutoPilot reported the DLL was unloaded while there were Int1 outstanding calls.

#
Channel
AutoPilot

Message #

AutoPilot reported the DLL was unloaded while there were %1 outstanding calls.

Fields #

NameDescription
Int1 Int32

Event ID 114: AutoPilotRetrieveSettings was skipped because this version of Windows does not support Azure Active Directory join.

#
Channel
AutoPilot

Event ID 115: Autopilot discovery failed to find a valid MDM.

#
Channel
AutoPilot

Description

Autopilot discovery failed to find a valid MDM. Confirm that the AAD tenant is properly provisioned and licensed for exactly one MDM. HRESULT = HRESULT.

Message #

Autopilot discovery failed to find a valid MDM.  Confirm that the AAD tenant is properly provisioned and licensed for exactly one MDM.  HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 150: AutoPilotManager started the MSA service for TPM attestation identity.

#
Channel
AutoPilot

Event ID 151: AutoPilotManager started the TPM task to update TPM attestation.

#
Channel
AutoPilot

Event ID 152: AutoPilotManager reported TPM task is complete.

#
Channel
AutoPilot

Event ID 153: AutoPilotManager reported the state changed from InitialState to UpdateState.

#
Channel
AutoPilot

Message #

AutoPilotManager reported the state changed from %1 to %2.

Fields #

NameDescription
InitialState UInt32
UpdateState UInt32

Event ID 154: AutoPilotManager failed to start MSA service.

#
Channel
AutoPilot

Description

AutoPilotManager failed to start MSA service. HRESULT = HRESULT.

Message #

AutoPilotManager failed to start MSA service.  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 155: AutoPilotManager failed to start TPM task.

#
Channel
AutoPilot

Description

AutoPilotManager failed to start TPM task. HRESULT = HRESULT.

Message #

AutoPilotManager failed to start TPM task.  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 156: AutoPilotManager reported that MSA TPM is not configured for hardware TPM attestation even though the profile indicates it is required.

#
Channel
AutoPilot

Description

AutoPilotManager reported that MSA TPM is not configured for hardware TPM attestation even though the profile indicates it is required. AutoPilot cannot proceed.

Message #

AutoPilotManager reported that MSA TPM is not configured for hardware TPM attestation even though the profile indicates it is required.  AutoPilot cannot proceed.

Event ID 157: AutoPilotManager reported that TPM attestation lasted UInt1 microseconds.

#
Channel
AutoPilot

Message #

AutoPilotManager reported that TPM attestation lasted %1 microseconds.

Fields #

NameDescription
UInt1 UInt64

Event ID 160: AutoPilotRetrieveSettings beginning acquisition.

#
Channel
AutoPilot

Event ID 161: AutoPilotManager retrieve settings succeeded.

#
Channel
AutoPilot

Event ID 162: AutoPilotManager determined download is not required and the device is not provisioned.

#
Channel
AutoPilot

Description

AutoPilotManager determined download is not required and the device is not provisioned. Clean or reset the device to change this.

Message #

AutoPilotManager determined download is not required and the device is not provisioned.  Clean or reset the device to change this.

Event ID 163: AutoPilotManager determined download is not required and the device is already provisioned.

#
Channel
AutoPilot

Description

AutoPilotManager determined download is not required and the device is already provisioned. Clean or reset the device to change this.

Message #

AutoPilotManager determined download is not required and the device is already provisioned.  Clean or reset the device to change this.

Event ID 164: AutoPilotManager determined Internet is available to attempt policy download.

#
Channel
AutoPilot

Event ID 165: AutoPilotManager determined Internet is not available; policy download will queue when available.

#
Channel
AutoPilot

Event ID 166: AutoPilotManager reported Internet is now available.

#
Channel
AutoPilot

Event ID 167: AutoPilotManager reported Internet is still not available.

#
Channel
AutoPilot

Event ID 168: AutoPilotManager reported MSA TPM device identity was updated.

#
Channel
AutoPilot

Event ID 169: AutoPilotManager set TPM identity confirmed.

#
Channel
AutoPilot

Event ID 170: AutoPilotManager set AutoPilot profile as available.

#
Channel
AutoPilot

Event ID 171: AutoPilotManager failed to set TPM identity confirmed.

#
Channel
AutoPilot

Description

AutoPilotManager failed to set TPM identity confirmed. HRESULT = HRESULT.

Message #

AutoPilotManager failed to set TPM identity confirmed.  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 172: AutoPilotManager failed to set AutoPilot profile as available.

#
Channel
AutoPilot

Description

AutoPilotManager failed to set AutoPilot profile as available. HRESULT = HRESULT.

Message #

AutoPilotManager failed to set AutoPilot profile as available.  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 173: AutoPilotManager failed to register for network availability.

#
Channel
AutoPilot

Description

AutoPilotManager failed to register for network availability. HRESULT = HRESULT.

Message #

AutoPilotManager failed to register for network availability.  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 174: AutoPilotManager failed to register for device identity availability.

#
Channel
AutoPilot

Description

AutoPilotManager failed to register for device identity availability. HRESULT = HRESULT.

Message #

AutoPilotManager failed to register for device identity availability.  HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 175: AutoPilotManager failed to register for device identity task update.

#
Channel
AutoPilot

Description

AutoPilotManager failed to register for device identity task update. HRESULT = HRESULT.

Message #

AutoPilotManager failed to register for device identity task update.  HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 176: MSA TPM keystate has been updated.

#
Channel
AutoPilot

Description

MSA TPM keystate has been updated. New server state = Uint1, new client state = Uint2.

Message #

MSA TPM keystate has been updated.  New server state = %1, new client state = %2

Fields #

NameDescription
Uint1 UInt32
Uint2 UInt32

Event ID 177: TPM attestation retry is being attempted.

#
Channel
AutoPilot

Description

TPM attestation retry is being attempted. Current retry attempt Uint1 of Uint2 maximum.

Message #

TPM attestation retry is being attempted.  Current retry attempt %1 of %2 maximum

Fields #

NameDescription
Uint1 UInt32
Uint2 UInt32

Event ID 178: AutoPilotManager began device enrollment with internal state Int1.

#
Channel
AutoPilot

Message #

AutoPilotManager began device enrollment with internal state %1.

Fields #

NameDescription
Int1 Int32

Event ID 179: AutoPilotManager began device enrollment phase State.

#
Channel
AutoPilot

Message #

AutoPilotManager began device enrollment phase %1.

Fields #

NameDescription
State UInt32

Event ID 180: AutoPilotManager failed during device enrollment phase State.

#
Channel
AutoPilot

Description

AutoPilotManager failed during device enrollment phase State. HRESULT = HRESULT.

Message #

AutoPilotManager failed during device enrollment phase %1.  HRESULT = %2

Fields #

NameDescription
State UInt32
HRESULT HexInt32

Event ID 181: AutoPilotManager completed device enrollment phase State.

#
Channel
AutoPilot

Description

AutoPilotManager completed device enrollment phase State. HRESULT = HRESULT.

Message #

AutoPilotManager completed device enrollment phase %1.  HRESULT = %2

Fields #

NameDescription
State UInt32
HRESULT HexInt32

Event ID 182: AutoPilotManager reported that the retry timer event was set to UInt1 milliseconds.

#
Channel
AutoPilot

Message #

AutoPilotManager reported that the retry timer event was set to %1 milliseconds.

Fields #

NameDescription
UInt1 UInt32

Event ID 183: AutoPilotManager reported that the retry timer event occurred

#
Channel
AutoPilot

Event ID 184: AutoPilotManager failed to register for MSA keystate update availability.

#
Channel
AutoPilot

Description

AutoPilotManager failed to register for MSA keystate update availability. HRESULT = HRESULT.

Message #

AutoPilotManager failed to register for MSA keystate update availability.  HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 300: AutoPilotManager device enrollment reported an initialization failure.

#
Channel
AutoPilot

Description

AutoPilotManager device enrollment reported an initialization failure. HRESULT = HRESULT.

Message #

AutoPilotManager device enrollment reported an initialization failure.  HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 301: AutoPilotManager device enrollment reported a blocking failure.

#
Channel
AutoPilot

Description

AutoPilotManager device enrollment reported a blocking failure. Overall error HRESULT, last reported stage State.

Message #

AutoPilotManager device enrollment reported a blocking failure.  Overall error %2, last reported stage %1.

Fields #

NameDescription
State UInt32
HRESULT HexInt32

Event ID 302: AutoPilotManager device enrollment failed during stage State with error HRESULT.

#
Channel
AutoPilot

Message #

AutoPilotManager device enrollment failed during stage %1 with error %2.

Fields #

NameDescription
State UInt32
HRESULT HexInt32

Event ID 303: AutoPilotManager device enrollment succeeded.

#
Channel
AutoPilot

Description

AutoPilotManager device enrollment succeeded. Last valid stage: State.

Message #

AutoPilotManager device enrollment succeeded.  Last valid stage: %1.

Fields #

NameDescription
State UInt32

Event ID 310: AutoPilot configuration file path: AutoPilot_configuration_file_path.

#
Channel
AutoPilot

Message #

AutoPilot configuration file path: %1 
Expanded path:%2 
File path source:%3

Fields #

NameDescription
Message1 UnicodeString
Message2 UnicodeString
Message3 UnicodeString

Event ID 311: Failed to load AutoPilot configuration file, HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

Failed to load AutoPilot configuration file, HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 312: Failed to parse AutoPilot configuration file, HRESULT = HRESULT.

#
Channel
AutoPilot

Message #

Failed to parse AutoPilot configuration file, HRESULT = %1.

Fields #

NameDescription
HRESULT HexInt32

Event ID 313: Invalid ZtdCorrelationId found in Autopilot configuration file, HRESULT = HRESULT.

#
Channel
AutoPilot

Description

Invalid ZtdCorrelationId found in Autopilot configuration file, HRESULT = HRESULT. ZtdCorrelationId: 'Message1'.

Message #

Invalid ZtdCorrelationId found in Autopilot configuration file, HRESULT = %1. ZtdCorrelationId: '%2'.

Fields #

NameDescription
HRESULT HexInt32
Message1 UnicodeString

Event ID 1000: Management service starting.

#
Channel
ManagementService

Event ID 1001: Management service started.

#
Channel
ManagementService

Event ID 1002: Management service failed to start.

#
Channel
ManagementService

Description

Management service failed to start. HRESULT = HRESULT.

Message #

Management service failed to start.  HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 1003: Management service failed to register.

#
Channel
ManagementService

Event ID 1004: Management service shutdown.

#
Channel
ManagementService

Event ID 1005: Management service WIL error was reported.

#
Channel
ManagementService

Message #

Management service WIL error was reported.
HRESULT: %1
File: %2, line %3
Message: %4

Fields #

NameDescription
HRESULT HexInt32
File AnsiString
Line Int32
Message UnicodeString

Event ID 1006: Management service call Message1 is deprecated!

#
Channel
ManagementService

Message #

Management service call %1 is deprecated!

Fields #

NameDescription
Message1 UnicodeString

Event ID 1007: Management service cleared the local Autopilot cached state.

#
Channel
ManagementService

Event ID 1008: Management service failed to clear the local Autopilot cached state.

#
Channel
ManagementService

Description

Management service failed to clear the local Autopilot cached state. HRESULT = HRESULT.

Message #

Management service failed to clear the local Autopilot cached state.  HRESULT = %1

Fields #

NameDescription
HRESULT HexInt32

Event ID 2000: Device rename has been blocked through MDM because machine is domain joined

#
Channel
ManagementService

Provenance

ETW provider GUID ed8b9bd3-f66e-4ff2-b86b-75c7925f72a9

Defined in provdiagnostics.dll, which carries the event manifest.

  • Win11-26200.6584, schema read from the registered manifest, binary version 10.0.26100.4202, captured 2026-06-02 — Manifest XML pack, 2.0 MB