Event ID1001 CertificateServicesClient-Lifecycle-System/Operational

PKInoob88 101 Reputation points


from this link, https://social.technet.microsoft.com/wiki/contents/articles/14250.certificate-services-lifecycle-notifications.aspx

It is said that the event log will show event id 1001 when i replace a cert via these methods.

• Renewal via autoenrollment (action=renew)
• Enrollment for a superseding (action=supersede)
• Renewal via MMC enrollment (action=renew)
• Renewal via certreq.exe (action=renew)
• Manually replacing on cert with another using Replace-Certificate PowerShell CmdLet (action=replace)

I have created a task scheduler with powershell script to auto-bind my rdp certs when i renew them.

However, when i request for a new cert via MMC, the task scheduler does not trigger my script (to re-bind the new cert to Rdp-Tcp) and it doesn't show up in the event viewer as well.
Can someone please guide me on this?

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,216 questions
0 comments No comments
{count} votes

Accepted answer
  1. Daisy Zhou 21,046 Reputation points Microsoft Vendor

    Hello @PKInoob88 ,

    Thank you for posting here.

    Based on the description "when i request for a new cert via MMC", do you mean you renew cert or enroll/request cert?

    How do you renew the cert?

    Have you renewed the cert successfully? You can check if there is such renewed cert in the certificate store.

    I have done a test in my lab as below:

    1.Enable Event Viewer\Applications and Services Logs\Microsoft\Windows\CertificateServicesClient-LifeCycle-System log.

    2.Renew a machine cert manually via MMC.

    3.After the cert has been renewed successfully, I can see the event ID 1001.



    Should you have any question or concern, please feel free to let us know.

    Best Regards,
    Daisy Zhou

    0 comments No comments

1 additional answer

Sort by: Most helpful
  1. PKInoob88 101 Reputation points

    Thank you, but i tried "Request new certificate with new key", the event doesn't appear on my event logs.