Help and Support

Article ID: 936849 - Last Review: December 4, 2007 - Revision: 1.3

Event 21252 is logged every time that the computer starts after you install ISA Server 2004 Service Pack 3

Important This article contains information about how to modify the registry. Make sure that you back up the registry before you modify it. Make sure that you know how to restore the registry if a problem occurs. For more information about how to back up, restore, and modify the registry, click the following article number to view the article in the Microsoft Knowledge Base:
256986  (http://support.microsoft.com/kb/256986/ ) Description of the Microsoft Windows registry
Expand all | Collapse all

SYMPTOMS

After you install Internet Security and Acceleration (ISA) Server 2004 Service Pack 3 (SP3), the following event is logged in the System log every time that the computer starts:

Event ID: 21252
Text: ISA Server Control service failed to enable tracing on startup.
Additional data 0000: 0d 00 07 80

CAUSE

This event is a false event log entry. This event does not indicate any problem in ISA Server tracing.

You can safely ignore this event.

WORKAROUND

Warning Serious problems might occur if you modify the registry incorrectly by using Registry Editor or by using another method. These problems might require that you reinstall the operating system. Microsoft cannot guarantee that these problems can be solved. Modify the registry at your own risk.To work around this issue, modify the registry to prevent ISA Server from logging the false event.

To modify the registry, follow these steps:
  1. Click Start, click Run, type regedit, and then click OK.
  2. In Registry Editor, locate the following registry subkey:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ISATrace\Components Name
  3. Right-click Components Name, point to New, and then click DWORD (32-bit) Value.
  4. In the Name column of the values list, type WP_POLICY.
  5. Right-click WP_POLICY, and then click Modify.
  6. In the Edit DWORD (32-bit) Value dialog box, leave the default Hexidecimal setting, and in the Value data box, type 00000001.
  7. Repeat steps 3 through 6, substituting the following names for WP_POLICY in steps 4 and 5.
    • POLICY_DIAG_LOG
    • WEB_PROXY_DIAG_LOG
    • AUTH_DIAG_LOG
  8. Exit Registry Editor.
After you make this registry change, the event that is described in the "Symptoms" section is not logged when computer starts. For ISA Server 2004 Enterprise Edition, make this registry change on each array member.

APPLIES TO
  • Microsoft Internet Security and Acceleration Server 2004 Standard Edition
  • Microsoft Internet Security and Acceleration Server 2004 Enterprise Edition
Keywords: 
kbtshoot kbexpertiseadvanced kbnofix kbprb KB936849

Article Translations