Hi Mithilesh,
Here are the events logs I was able to obtain. I have provided table view and details view. 
I'll need to wait until tomorrow for our sys admin to provide trace assistance.
Table View:
Information	18/03/2015 7:30:18 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 7:30:18 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 7:28:38 PM	Ci	4137	CI Service
Information	18/03/2015 7:25:06 PM	LoadPerf	1000	None
Information	18/03/2015 7:25:06 PM	LoadPerf	1001	None
Information	18/03/2015 7:24:02 PM	VSS	8224	None
Information	18/03/2015 7:23:27 PM	MSCRMSandboxClient	20246	None
Information	18/03/2015 7:23:27 PM	MSCRMSandboxService	20248	None
Information	18/03/2015 7:23:09 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:23:08 PM	MSCRMSandboxClient	20246	None
Information	18/03/2015 7:23:08 PM	MSCRMSandboxService	20248	None
Information	18/03/2015 7:23:04 PM	Desktop Window Manager	9003	None
Information	18/03/2015 7:23:03 PM	Winlogon	4101	None
Information	18/03/2015 7:22:59 PM	MSCRMSandboxService	20224	None
Information	18/03/2015 7:22:08 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 7:22:07 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 7:22:07 PM	MSCRMKeyService	18960	None
Information	18/03/2015 7:22:04 PM	MSCRMPlatform	17209	None
Information	18/03/2015 7:22:04 PM	MSCRMPlatform	17210	None
Information	18/03/2015 7:22:04 PM	MSCRMPlatform	17210	None
Information	18/03/2015 7:21:09 PM	MSCRMPlatform	17209	None
Information	18/03/2015 7:21:09 PM	MSCRMPlatform	17210	None
Information	18/03/2015 7:21:09 PM	MSCRMPlatform	17210	None
Information	18/03/2015 7:21:08 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:21:08 PM	MSCRMPlatform	17209	None
Information	18/03/2015 7:21:08 PM	MSCRMPlatform	17210	None
Information	18/03/2015 7:21:08 PM	MSCRMPlatform	17210	None
Information	18/03/2015 7:21:08 PM	MSCRMSandboxClient	20226	None
Information	18/03/2015 7:21:07 PM	MSCRMPlatform	17202	None
Information	18/03/2015 7:21:07 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:21:07 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:21:07 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:21:07 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:21:05 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:21:05 PM	CertificateServicesClient-CertEnroll	64	None
Information	18/03/2015 7:21:05 PM	CertificateServicesClient-CertEnroll	65	None
Information	18/03/2015 7:21:03 PM	Security-SPP	902	None
Information	18/03/2015 7:21:03 PM	Security-SPP	1003	None
Information	18/03/2015 7:21:03 PM	Security-SPP	1066	None
Information	18/03/2015 7:21:02 PM	VMUpgradeHelper	271	None
Information	18/03/2015 7:21:02 PM	VMUpgradeHelper	270	None
Information	18/03/2015 7:21:01 PM	MSDTC 2	4202	TM
Information	18/03/2015 7:21:00 PM	VMUpgradeHelper	258	None
Information	18/03/2015 7:21:00 PM	MSCRMSandboxClient	20226	None
Information	18/03/2015 7:21:00 PM	Complus	781	None
Information	18/03/2015 7:20:58 PM	Security-SPP	900	None
Information	18/03/2015 7:20:57 PM	WMI	5617	None
Information	18/03/2015 7:20:57 PM	MSCRMAsyncService	17408	None
Information	18/03/2015 7:20:56 PM	WMI	5615	None
Information	18/03/2015 7:20:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 7:20:56 PM	VMTools	105	None
Information	18/03/2015 7:20:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 7:20:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 7:20:56 PM	MSCRMAsyncService$maintenance	17408	None
Information	18/03/2015 7:20:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 7:20:56 PM	MSCRMKeyArchiveManager	18952	None
Information	18/03/2015 7:20:56 PM	MSCRMKeyGenerator	18947	None
Information	18/03/2015 7:20:56 PM	MSCRMPlatform	17202	None
Information	18/03/2015 7:20:56 PM	MSCRMPlatform	17202	None
Information	18/03/2015 7:20:55 PM	SRMSVC	8202	None
Information	18/03/2015 7:20:55 PM	SRMSVC	8202	None
Information	18/03/2015 7:20:55 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:55 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:55 PM	MSCRMAsyncService	17419	None
Information	18/03/2015 7:20:54 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:54 PM	MSCRMAsyncService$maintenance	17419	None
Information	18/03/2015 7:20:54 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:54 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:54 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:54 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:52 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:52 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:52 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:52 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:20:51 PM	MSCRMEmail	6271	None
Information	18/03/2015 7:20:47 PM	User Profile Service	1531	None
Information	18/03/2015 7:20:47 PM	EventSystem	4625	None
Information	18/03/2015 7:20:27 PM	User Profile Service	1532	None
Warning	18/03/2015 7:20:27 PM	User Profile Service	1530	None
Warning	18/03/2015 7:20:27 PM	User Profile Service	1530	None
Information	18/03/2015 7:20:27 PM	VMTools	108	None
Information	18/03/2015 7:20:27 PM	VMUpgradeHelper	272	None
Information	18/03/2015 7:20:27 PM	VMUpgradeHelper	280	None
Information	18/03/2015 7:20:27 PM	VMUpgradeHelper	260	None
Warning	18/03/2015 7:20:27 PM	VMware Tools	1000	None
Information	18/03/2015 7:20:26 PM	Desktop Window Manager	9009	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:19:53 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 7:19:53 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 7:18:44 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:18:43 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 7:15:45 PM	Windows Error Reporting	1001	None
Information	18/03/2015 7:15:12 PM	Windows Error Reporting	1001	None
Information	18/03/2015 7:15:09 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 7:15:09 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 7:07:04 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 7:07:04 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 7:04:53 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 7:04:53 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 6:57:20 PM	Ci	4137	CI Service
Information	18/03/2015 6:56:21 PM	Security-SPP	903	None
Information	18/03/2015 6:54:04 PM	LoadPerf	1000	None
Information	18/03/2015 6:54:04 PM	LoadPerf	1001	None
Information	18/03/2015 6:53:03 PM	VSS	8224	None
Information	18/03/2015 6:52:11 PM	MSCRMSandboxClient	20246	None
Information	18/03/2015 6:52:11 PM	MSCRMSandboxService	20248	None
Information	18/03/2015 6:52:02 PM	Windows Error Reporting	1001	None
Information	18/03/2015 6:52:00 PM	MSCRMPlatform	17209	None
Information	18/03/2015 6:52:00 PM	MSCRMPlatform	17210	None
Information	18/03/2015 6:52:00 PM	MSCRMPlatform	17210	None
Information	18/03/2015 6:51:59 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:51:59 PM	MSCRMSandboxClient	20246	None
Information	18/03/2015 6:51:59 PM	MSCRMSandboxService	20248	None
Information	18/03/2015 6:51:57 PM	MSCRMSandboxService	20224	None
Information	18/03/2015 6:51:41 PM	Windows Error Reporting	1001	None
Information	18/03/2015 6:51:41 PM	MSCRMKeyService	18960	None
Warning	18/03/2015 6:51:40 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 6:50:55 PM	Desktop Window Manager	9003	None
Information	18/03/2015 6:50:55 PM	Winlogon	4101	None
Information	18/03/2015 6:50:13 PM	MSCRMPlatform	17209	None
Information	18/03/2015 6:50:13 PM	MSCRMPlatform	17210	None
Information	18/03/2015 6:50:13 PM	MSCRMPlatform	17210	None
Information	18/03/2015 6:50:12 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:50:12 PM	MSCRMPlatform	17209	None
Information	18/03/2015 6:50:12 PM	MSCRMPlatform	17210	None
Information	18/03/2015 6:50:12 PM	MSCRMPlatform	17210	None
Information	18/03/2015 6:50:11 PM	MSCRMSandboxClient	20226	None
Information	18/03/2015 6:50:10 PM	MSCRMPlatform	17202	None
Information	18/03/2015 6:50:10 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:50:10 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:50:09 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:50:09 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:50:09 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:50:02 PM	SceCli	1704	None
Information	18/03/2015 6:50:02 PM	CertificateServicesClient-CertEnroll	64	None
Information	18/03/2015 6:50:02 PM	CertificateServicesClient-CertEnroll	65	None
Information	18/03/2015 6:50:01 PM	MSDTC 2	4202	TM
Information	18/03/2015 6:50:00 PM	Security-SPP	902	None
Information	18/03/2015 6:50:00 PM	Security-SPP	1003	None
Information	18/03/2015 6:50:00 PM	Security-SPP	1066	None
Information	18/03/2015 6:50:00 PM	MSCRMSandboxClient	20226	None
Information	18/03/2015 6:50:00 PM	VMUpgradeHelper	271	None
Information	18/03/2015 6:50:00 PM	VMUpgradeHelper	270	None
Information	18/03/2015 6:49:59 PM	VMUpgradeHelper	258	None
Information	18/03/2015 6:49:59 PM	Complus	781	None
Information	18/03/2015 6:49:58 PM	MSCRMAsyncService	17408	None
Information	18/03/2015 6:49:56 PM	Security-SPP	900	None
Information	18/03/2015 6:49:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 6:49:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 6:49:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 6:49:56 PM	MSCRMAsyncService$maintenance	17408	None
Information	18/03/2015 6:49:56 PM	MSCRMKeyArchiveManager	18954	None
Information	18/03/2015 6:49:56 PM	MSCRMKeyArchiveManager	18952	None
Information	18/03/2015 6:49:56 PM	MSCRMKeyGenerator	18947	None
Information	18/03/2015 6:49:55 PM	WMI	5617	None
Information	18/03/2015 6:49:55 PM	MSCRMPlatform	17202	None
Information	18/03/2015 6:49:55 PM	MSCRMPlatform	17202	None
Information	18/03/2015 6:49:53 PM	WMI	5615	None
Information	18/03/2015 6:49:53 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:53 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:53 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:53 PM	MSCRMAsyncService	17419	None
Information	18/03/2015 6:49:53 PM	MSCRMAsyncService$maintenance	17419	None
Information	18/03/2015 6:49:53 PM	VMTools	105	None
Information	18/03/2015 6:49:53 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:53 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:52 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:52 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:50 PM	SRMSVC	8202	None
Information	18/03/2015 6:49:50 PM	SRMSVC	8202	None
Information	18/03/2015 6:49:49 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:49 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:49 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:49 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:49:47 PM	MSCRMEmail	6271	None
Information	18/03/2015 6:49:40 PM	User Profile Service	1531	None
Information	18/03/2015 6:49:40 PM	EventSystem	4625	None
Information	18/03/2015 6:49:05 PM	User Profile Service	1532	None
Information	18/03/2015 6:49:04 PM	VMTools	108	None
Information	18/03/2015 6:49:04 PM	VMUpgradeHelper	272	None
Information	18/03/2015 6:49:04 PM	VMUpgradeHelper	280	None
Information	18/03/2015 6:49:04 PM	VMUpgradeHelper	260	None
Warning	18/03/2015 6:49:04 PM	VMware Tools	1000	None
Information	18/03/2015 6:49:02 PM	Desktop Window Manager	9009	None
Information	18/03/2015 6:47:25 PM	CAPI2	4111	None
Information	18/03/2015 6:47:25 PM	CAPI2	4108	None
Information	18/03/2015 6:47:25 PM	CAPI2	4108	None
Information	18/03/2015 6:46:55 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:46:53 PM	MSCRMPerfCounters	17189	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:44:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 6:44:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 6:37:00 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 6:37:00 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:29:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 6:29:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 6:21:59 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 6:21:59 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 6:14:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 6:14:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 6:06:58 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 6:06:58 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:59:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 5:59:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 5:51:57 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 5:51:57 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:44:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 5:44:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 5:36:56 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 5:36:56 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:29:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 5:29:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 5:22:45 PM	Windows Error Reporting	1001	None
Information	18/03/2015 5:21:55 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 5:21:55 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 5:18:26 PM	Windows Error Reporting	1001	None
Information	18/03/2015 5:18:18 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 5:18:18 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 5:14:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 5:14:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 5:07:44 PM	Windows Error Reporting	1001	None
Information	18/03/2015 5:06:54 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 5:06:54 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:59:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 4:59:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 4:52:43 PM	Windows Error Reporting	1001	None
Information	18/03/2015 4:51:53 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 4:51:53 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:44:30 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 4:44:30 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 4:37:42 PM	Windows Error Reporting	1001	None
Information	18/03/2015 4:36:52 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 4:36:52 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:29:30 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 4:29:30 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 4:22:42 PM	Windows Error Reporting	1001	None
Information	18/03/2015 4:21:51 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 4:21:51 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 4:14:31 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 4:14:31 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 4:07:41 PM	Windows Error Reporting	1001	None
Information	18/03/2015 4:06:50 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 4:06:50 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:59:30 PM	MSCRMMonitoringServerRole	18689	None
Warning	18/03/2015 3:59:30 PM	MSCRMMonitoringTest	25088	None
Information	18/03/2015 3:52:40 PM	Windows Error Reporting	1001	None
Information	18/03/2015 3:51:49 PM	Windows Error Reporting	1001	None
Warning	18/03/2015 3:51:49 PM	ASP.NET 4.0.30319.0	1309	Web Event
Information	18/03/2015 3:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:44:30 PM	MSCRMMonitoringServerRole	18689	None
Information	18/03/2015 3:44:30 PM	MSCRMMonitoringServerRole	18689	None
Details View:
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 7:30:18 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-193018.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0960da9a
Analysis symbol: 
Rechecking for solution: 0
Report Id: 01d00036-cd49-11e4-af99-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:30:18.000000000Z" />
    <EventRecordID>372380</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-193018.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0960da9a</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>01d00036-cd49-11e4-af99-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 7:30:18 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 7:30:18 PM 
Event time (UTC): 18/03/2015 8:30:18 AM 
Event ID: 23aacc805ef2498295fb23de25b24fa6 
Event sequence: 11 
Event occurrence: 2 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711404633247500 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 2924 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: auth.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.41 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 21 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:30:18.000000000Z" />
    <EventRecordID>372379</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 7:30:18 PM</Data>
    <Data>18/03/2015 8:30:18 AM</Data>
    <Data>23aacc805ef2498295fb23de25b24fa6</Data>
    <Data>11</Data>
    <Data>2</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711404633247500</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>2924</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>auth.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.41</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>21</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Ci
Date:          18/03/2015 7:28:38 PM
Event ID:      4137
Task Category: CI Service
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
CI has started for catalog c:\program files\microsoft dynamics crm\server\applicationfiles\catalog.wci.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Ci" />
    <EventID Qualifiers="16384">4137</EventID>
    <Level>4</Level>
    <Task>1</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:28:38.000000000Z" />
    <EventRecordID>372378</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>c:\program files\microsoft dynamics crm\server\applicationfiles\catalog.wci</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-LoadPerf
Date:          18/03/2015 7:25:06 PM
Event ID:      1000
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-LoadPerf" Guid="{122EE297-BB47-41AE-B265-1CA8D1886D40}" />
    <EventID>1000</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:25:06.123090400Z" />
    <EventRecordID>372377</EventRecordID>
    <Correlation />
    <Execution ProcessID="3804" ThreadID="3884" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <UserData>
    <EventXML xmlns:auto-ns2="schemas.microsoft.com/.../events" xmlns="LoadPerf">
      <param1>WmiApRpl</param1>
      <param2>WmiApRpl</param2>
      <binaryDataSize>16</binaryDataSize>
      <binaryData>667A0000367B0000677A0000377B0000</binaryData>
    </EventXML>
  </UserData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-LoadPerf
Date:          18/03/2015 7:25:06 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-LoadPerf" Guid="{122EE297-BB47-41AE-B265-1CA8D1886D40}" />
    <EventID>1001</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:25:06.044964900Z" />
    <EventRecordID>372376</EventRecordID>
    <Correlation />
    <Execution ProcessID="3804" ThreadID="3884" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <UserData>
    <EventXML xmlns:auto-ns2="schemas.microsoft.com/.../events" xmlns="LoadPerf">
      <param1>WmiApRpl</param1>
      <param2>WmiApRpl</param2>
      <binaryDataSize>12</binaryDataSize>
      <binaryData>647A0000657A000034070000</binaryData>
    </EventXML>
  </UserData>
</Event>
Log Name:      Application
Source:        VSS
Date:          18/03/2015 7:24:02 PM
Event ID:      8224
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The VSS service is shutting down due to idle timeout. 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VSS" />
    <EventID Qualifiers="0">8224</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:24:02.000000000Z" />
    <EventRecordID>372375</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Binary>2D20436F64653A2020434F525356434330303030303737332D2043616C6C3A2020434F525356434330303030303735352D205049443A202030303030333034342D205449443A202030303030333036342D20434D443A2020433A5C57696E646F77735C73797374656D33325C76737376632E6578652020202D20557365723A204E616D653A204E5420415554484F524954595C53595354454D2C205349443A532D312D352D313820</Binary>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 7:23:27 PM
Event ID:      20246
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Host is available.
 Source: CrmAsyncService.exe (1256)
 Sandbox Host: APCRM01
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20246</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:27.000000000Z" />
    <EventRecordID>372374</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmAsyncService.exe (1256)</Data>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxService
Date:          18/03/2015 7:23:27 PM
Event ID:      20248
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Client has been detected.
 Source: Microsoft.Crm.Sandbox.HostService.exe (2300)
 Sandbox Client: apcrm01: CrmAsyncService.exe (1256)
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxService" />
    <EventID Qualifiers="16384">20248</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:27.000000000Z" />
    <EventRecordID>372373</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Microsoft.Crm.Sandbox.HostService.exe (2300)</Data>
    <Data>apcrm01: CrmAsyncService.exe (1256)</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:23:09 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:09.000000000Z" />
    <EventRecordID>372372</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 7:23:08 PM
Event ID:      20246
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Host is available.
 Source: w3wp.exe (2924)
 Sandbox Host: APCRM01
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20246</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:08.000000000Z" />
    <EventRecordID>372371</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>w3wp.exe (2924)</Data>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxService
Date:          18/03/2015 7:23:08 PM
Event ID:      20248
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Client has been detected.
 Source: Microsoft.Crm.Sandbox.HostService.exe (2300)
 Sandbox Client: apcrm01: w3wp.exe (2924)
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxService" />
    <EventID Qualifiers="16384">20248</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:08.000000000Z" />
    <EventRecordID>372370</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Microsoft.Crm.Sandbox.HostService.exe (2300)</Data>
    <Data>apcrm01: w3wp.exe (2924)</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Desktop Window Manager
Date:          18/03/2015 7:23:04 PM
Event ID:      9003
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Desktop Window Manager was unable to start because a composited theme is not in use
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Desktop Window Manager" />
    <EventID Qualifiers="16384">9003</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:04.000000000Z" />
    <EventRecordID>372369</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Winlogon
Date:          18/03/2015 7:23:03 PM
Event ID:      4101
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Windows license validated.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Winlogon" Guid="{DBE9B383-7CF3-4331-91CC-A3CB16A3B538}" EventSourceName="Winlogon" />
    <EventID Qualifiers="16384">4101</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:23:03.000000000Z" />
    <EventRecordID>372368</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0x00000000</Data>
    <Data>0x00000001</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxService
Date:          18/03/2015 7:22:59 PM
Event ID:      20224
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Sandbox Host service has started.
 Source: Microsoft.Crm.Sandbox.HostService.exe (2300)
 Endpoint: net.pipe://localhost/CrmSandboxHost
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxService" />
    <EventID Qualifiers="16384">20224</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:59.000000000Z" />
    <EventRecordID>372367</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Microsoft.Crm.Sandbox.HostService.exe (2300)</Data>
    <Data>net.pipe://localhost/CrmSandboxHost</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 7:22:08 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-192207.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0405603b
Analysis symbol: 
Rechecking for solution: 0
Report Id: dd998b5a-cd47-11e4-af99-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:08.000000000Z" />
    <EventRecordID>372366</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-192207.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0405603b</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>dd998b5a-cd47-11e4-af99-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 7:22:07 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 7:22:07 PM 
Event time (UTC): 18/03/2015 8:22:07 AM 
Event ID: 0cb71153b0504f87a5f3f8806f77a216 
Event sequence: 9 
Event occurrence: 1 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711404633247500 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 2924 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 11 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:07.000000000Z" />
    <EventRecordID>372365</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 7:22:07 PM</Data>
    <Data>18/03/2015 8:22:07 AM</Data>
    <Data>0cb71153b0504f87a5f3f8806f77a216</Data>
    <Data>9</Data>
    <Data>1</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711404633247500</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>2924</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>11</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyService
Date:          18/03/2015 7:22:07 PM
Event ID:      18960
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Active Key of type : CrmStaticVersionScaleGroupKey loaded : 3b41fa30-8db8-e411-8c82-005056856257 for scalegroup : 00000000-0000-0000-0000-000000000000
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyService" />
    <EventID Qualifiers="16384">18960</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:07.000000000Z" />
    <EventRecordID>372364</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmStaticVersionScaleGroupKey</Data>
    <Data>3b41fa30-8db8-e411-8c82-005056856257</Data>
    <Data>00000000-0000-0000-0000-000000000000</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:22:04 PM
Event ID:      17209
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The initialization of the CRM authentication pipline has succeeded for: 
Host: crm.ap-cs.com.au:443
Request Url: crm.ap-cs.com.au/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="0">17209</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:04.000000000Z" />
    <EventRecordID>372363</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
Host: crm.ap-cs.com.au:443
Request Url: crm.ap-cs.com.au/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:22:04 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): CreateAggregateTokenResolver - Loading encryption certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:04.000000000Z" />
    <EventRecordID>372362</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CreateAggregateTokenResolver - Loading encryption certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:22:04 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): TrustedIssuerRegistry ctor - Signing certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:22:04.000000000Z" />
    <EventRecordID>372361</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuerRegistry ctor - Signing certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:09 PM
Event ID:      17209
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The initialization of the CRM authentication pipline has succeeded for: 
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="0">17209</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:09.000000000Z" />
    <EventRecordID>372360</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:09 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:09.000000000Z" />
    <EventRecordID>372359</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:09 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:09.000000000Z" />
    <EventRecordID>372358</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:21:08 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Authentication.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:08.000000000Z" />
    <EventRecordID>372357</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Authentication</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:08 PM
Event ID:      17209
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The initialization of the CRM authentication pipline has succeeded for: 
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="0">17209</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:08.000000000Z" />
    <EventRecordID>372356</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:08 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:08.000000000Z" />
    <EventRecordID>372355</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:08 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:08.000000000Z" />
    <EventRecordID>372354</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 7:21:08 PM
Event ID:      20226
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Sandbox SDK Listener has started.
 Source: w3wp.exe (2924)
 Endpoint: net.tcp://localhost/CrmSandboxSdkListener-w3wp
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20226</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:08.000000000Z" />
    <EventRecordID>372353</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>w3wp.exe (2924)</Data>
    <Data>net.tcp://localhost/CrmSandboxSdkListener-w3wp</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:21:07 PM
Event ID:      17202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Enterprise transaction manager initialized with 0 data collectors and 0 throttle providers. Data statistics collection: Off, data statistics logging: Off, request throttling: Off.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:07.000000000Z" />
    <EventRecordID>372352</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0</Data>
    <Data>0</Data>
    <Data>Off</Data>
    <Data>Off</Data>
    <Data>Off</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:21:07 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Discovery.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:07.000000000Z" />
    <EventRecordID>372351</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Discovery</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:21:07 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Platform.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:07.000000000Z" />
    <EventRecordID>372350</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Platform</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:21:07 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Server.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:07.000000000Z" />
    <EventRecordID>372349</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Server</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:21:07 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:07.000000000Z" />
    <EventRecordID>372348</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:21:05 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:05.000000000Z" />
    <EventRecordID>372347</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CertificateServicesClient-CertEnroll
Date:          18/03/2015 7:21:05 PM
Event ID:      64
Task Category: None
Level:         Information
Keywords:      Classic
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Certificate enrollment for Local system successfully load policy from policy server 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CertificateServicesClient-CertEnroll" Guid="{54164045-7C50-4905-963F-E5BC1EEF0CCA}" EventSourceName="CertEnroll" />
    <EventID Qualifiers="33370">64</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:05.000000000Z" />
    <EventRecordID>372346</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data Name="Context">Local system</Data>
    <Data Name="ServerID">
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CertificateServicesClient-CertEnroll
Date:          18/03/2015 7:21:05 PM
Event ID:      65
Task Category: None
Level:         Information
Keywords:      Classic
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Certificate enrollment for Local system is successfully authenticated by policy server {71586B56-0176-4126-B749-A4C089D8E605}
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CertificateServicesClient-CertEnroll" Guid="{54164045-7C50-4905-963F-E5BC1EEF0CCA}" EventSourceName="CertEnroll" />
    <EventID Qualifiers="33370">65</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:05.000000000Z" />
    <EventRecordID>372345</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data Name="Context">Local system</Data>
    <Data Name="ServerURL">{71586B56-0176-4126-B749-A4C089D8E605}</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 7:21:03 PM
Event ID:      902
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service has started.
6.1.7601.17514
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">902</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:03.000000000Z" />
    <EventRecordID>372344</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>6.1.7601.17514</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 7:21:03 PM
Event ID:      1003
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service has completed licensing status check.
Application Id=55c92734-d682-4d71-983e-d6ec3f16059f
Licensing Status=
1: 039998e3-3ef5-4adf-b758-d25fa0128ff4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 47188d7c-b5ef-4336-91a9-3857b219fe95, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 68531fb9-5511-4989-97be-d11a0f55633f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 6a4bd364-4b60-4856-a727-efb59d94348e, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 30 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
5: 6d47464d-e43d-4228-b051-fddd47fd403f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 8fe15d04-fc66-40e6-bf34-942481e06fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 9a159de8-d114-41d7-a5bf-d3574edb42fa, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: a60c85a9-7eff-4690-8aa1-010ddf5d38f0, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: a7dad4b1-8065-4576-9e61-2fd025fe16cc, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: c60b048b-8071-4532-8398-f15f4c981861, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: c837408d-3762-4dea-a4d7-6dba48f6c305, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: c99b641f-c4ea-4e63-bec3-5ed2ccd0f357, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: da71774d-b2c9-4c42-bb7b-a66365d5abb2, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: f14c8ee3-560d-441e-aee1-325c2e9ae74a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">1003</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:03.000000000Z" />
    <EventRecordID>372343</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>55c92734-d682-4d71-983e-d6ec3f16059f</Data>
    <Data>
1: 039998e3-3ef5-4adf-b758-d25fa0128ff4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 47188d7c-b5ef-4336-91a9-3857b219fe95, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 68531fb9-5511-4989-97be-d11a0f55633f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 6a4bd364-4b60-4856-a727-efb59d94348e, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 30 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
5: 6d47464d-e43d-4228-b051-fddd47fd403f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 8fe15d04-fc66-40e6-bf34-942481e06fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 9a159de8-d114-41d7-a5bf-d3574edb42fa, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: a60c85a9-7eff-4690-8aa1-010ddf5d38f0, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: a7dad4b1-8065-4576-9e61-2fd025fe16cc, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: c60b048b-8071-4532-8398-f15f4c981861, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: c837408d-3762-4dea-a4d7-6dba48f6c305, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: c99b641f-c4ea-4e63-bec3-5ed2ccd0f357, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: da71774d-b2c9-4c42-bb7b-a66365d5abb2, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: f14c8ee3-560d-441e-aee1-325c2e9ae74a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 7:21:03 PM
Event ID:      1066
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Initialization status for service objects.
C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/2005, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/licenserenewal/1.0, 0x00000000, 0x00000000
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">1066</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:03.000000000Z" />
    <EventRecordID>372342</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/2005, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/licenserenewal/1.0, 0x00000000, 0x00000000
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 7:21:02 PM
Event ID:      271
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Restored network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">271</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:02.000000000Z" />
    <EventRecordID>372341</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 7:21:02 PM
Event ID:      270
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Not restoring network configuration for adapter with MAC address 00:50:56:85:62:57. The device ID for this adapter is unchanged.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">270</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:02.000000000Z" />
    <EventRecordID>372340</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>00:50:56:85:62:57</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-MSDTC 2
Date:          18/03/2015 7:21:01 PM
Event ID:      4202
Task Category: TM
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
MSDTC started with the following settings:
 Security Configuration (OFF = 0 and ON = 1):
 Allow Remote Administrator = 0,
 Network Clients = 0,
 Trasaction Manager Communication: 
 Allow Inbound Transactions = 0,
 Allow Outbound Transactions = 0,
 Transaction Internet Protocol (TIP) = 0,
  Enable XA Transactions = 0,
  Enable SNA LU 6.2 Transactions = 1,
  MSDTC Communications Security = Mutual Authentication Required,
 Account = NT AUTHORITY\NetworkService,
  Firewall Exclusion Detected = 0
 Transaction Bridge Installed = 0
 Filtering Duplicate Events = 1
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-MSDTC 2" Guid="{5D9E0020-3761-4f36-90C8-38CE6511BD12}" EventSourceName="MSDTC 2" />
    <EventID Qualifiers="16384">4202</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>2</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:01.000000000Z" />
    <EventRecordID>372339</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">0</Data>
    <Data Name="param2">0</Data>
    <Data Name="param3">0</Data>
    <Data Name="param4">0</Data>
    <Data Name="param5">0</Data>
    <Data Name="param6">0</Data>
    <Data Name="param7">1</Data>
    <Data Name="param8">Mutual Authentication Required</Data>
    <Data Name="param9">NT AUTHORITY\NetworkService</Data>
    <Data Name="param10">0</Data>
    <Data Name="param11">0</Data>
    <Data Name="param12">1</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 7:21:00 PM
Event ID:      258
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Restoring network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">258</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:00.000000000Z" />
    <EventRecordID>372338</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 7:21:00 PM
Event ID:      20226
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Sandbox SDK Listener has started.
 Source: CrmAsyncService.exe (1256)
 Endpoint: net.tcp://localhost/CrmSandboxSdkListener-CrmAsyncService
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20226</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:00.000000000Z" />
    <EventRecordID>372337</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmAsyncService.exe (1256)</Data>
    <Data>net.tcp://localhost/CrmSandboxSdkListener-CrmAsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Complus
Date:          18/03/2015 7:21:00 PM
Event ID:      781
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The COM+ sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\COM3\Eventlog.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Complus" Guid="{0f177893-4a9c-4709-b921-f432d67f43d5}" EventSourceName="COM+" />
    <EventID Qualifiers="16384">781</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:21:00.000000000Z" />
    <EventRecordID>372336</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">86400</Data>
    <Data Name="param2">SuppressDuplicateDuration</Data>
    <Data Name="param3">Software\Microsoft\COM3\Eventlog</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 7:20:58 PM
Event ID:      900
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service is starting.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">900</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:58.000000000Z" />
    <EventRecordID>372335</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-WMI
Date:          18/03/2015 7:20:57 PM
Event ID:      5617
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Windows Management Instrumentation Service subsystems initialized successfully
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-WMI" Guid="{1edeee53-0afe-4609-b846-d8c0b2075b1f}" EventSourceName="WinMgmt" />
    <EventID Qualifiers="49152">5617</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:57.000000000Z" />
    <EventRecordID>372334</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService
Date:          18/03/2015 7:20:57 PM
Event ID:      17408
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: started monitoring asynchronous operations queue.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService" />
    <EventID Qualifiers="16384">17408</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:57.000000000Z" />
    <EventRecordID>372333</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-WMI
Date:          18/03/2015 7:20:56 PM
Event ID:      5615
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Windows Management Instrumentation Service started sucessfully
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-WMI" Guid="{1edeee53-0afe-4609-b846-d8c0b2075b1f}" EventSourceName="WinMgmt" />
    <EventID Qualifiers="49152">5615</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372332</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 7:20:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmStaticVersionScaleGroupKey that were created on or before 16/01/2015 8:20:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372331</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmStaticVersionScaleGroupKey</Data>
    <Data>16/01/2015 8:20:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMTools
Date:          18/03/2015 7:20:56 PM
Event ID:      105
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The service was started.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMTools" />
    <EventID Qualifiers="0">105</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372330</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 7:20:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmEmailCredentialsKey that were created on or before 3/04/2000 2:20:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372329</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmEmailCredentialsKey</Data>
    <Data>3/04/2000 2:20:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 7:20:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmWRPCTokenKey that were created on or before 12/02/2015 8:20:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372328</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmWRPCTokenKey</Data>
    <Data>12/02/2015 8:20:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService$maintenance
Date:          18/03/2015 7:20:56 PM
Event ID:      17408
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: started monitoring asynchronous operations queue.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService$maintenance" />
    <EventID Qualifiers="16384">17408</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372327</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 7:20:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmTicketKey that were created on or before 15/03/2015 8:20:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372326</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmTicketKey</Data>
    <Data>15/03/2015 8:20:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 7:20:56 PM
Event ID:      18952
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager has started.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="0">18952</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372325</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyGenerator
Date:          18/03/2015 7:20:56 PM
Event ID:      18947
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyGenerator has started.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyGenerator" />
    <EventID Qualifiers="0">18947</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372324</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:20:56 PM
Event ID:      17202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Enterprise transaction manager initialized with 0 data collectors and 0 throttle providers. Data statistics collection: Off, data statistics logging: Off, request throttling: Off.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372323</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0</Data>
    <Data>0</Data>
    <Data>Off</Data>
    <Data>Off</Data>
    <Data>Off</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 7:20:56 PM
Event ID:      17202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Enterprise transaction manager initialized with 0 data collectors and 0 throttle providers. Data statistics collection: Off, data statistics logging: Off, request throttling: Off.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:56.000000000Z" />
    <EventRecordID>372322</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0</Data>
    <Data>0</Data>
    <Data>Off</Data>
    <Data>Off</Data>
    <Data>Off</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        SRMSVC
Date:          18/03/2015 7:20:55 PM
Event ID:      8202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Communication port '\DataScreenCommPort' to the 'DataScrn' filter driver was established.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="SRMSVC" />
    <EventID Qualifiers="32772">8202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:55.000000000Z" />
    <EventRecordID>372321</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>\DataScreenCommPort</Data>
    <Data>DataScrn</Data>
    <Data>
Operation:
   Handling events from file system filter '\DataScreenCommPort'.</Data>
    <Binary>2D20436F64653A2053524D464C54524330303030313732342D2043616C6C3A2053524D464C54524330303030313730392D205049443A202030303030313730342D205449443A202030303030313938382D20434D443A2020433A5C57696E646F77735C73797374656D33325C737663686F7374202D6B2073726D7376637320202D20557365723A204E616D653A204E5420415554484F524954595C53595354454D2C205349443A532D312D352D313820</Binary>
  </EventData>
</Event>
Log Name:      Application
Source:        SRMSVC
Date:          18/03/2015 7:20:55 PM
Event ID:      8202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Communication port '\QuotaCommPort' to the 'Quota' filter driver was established.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="SRMSVC" />
    <EventID Qualifiers="32772">8202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:55.000000000Z" />
    <EventRecordID>372320</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>\QuotaCommPort</Data>
    <Data>Quota</Data>
    <Data>
Operation:
   Handling events from file system filter '\QuotaCommPort'.</Data>
    <Binary>2D20436F64653A2053524D464C54524330303030313732342D2043616C6C3A2053524D464C54524330303030313730392D205049443A202030303030313730342D205449443A202030303030313937362D20434D443A2020433A5C57696E646F77735C73797374656D33325C737663686F7374202D6B2073726D7376637320202D20557365723A204E616D653A204E5420415554484F524954595C53595354454D2C205349443A532D312D352D313820</Binary>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:55 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Server.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:55.000000000Z" />
    <EventRecordID>372319</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Server</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:55 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Platform.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:55.000000000Z" />
    <EventRecordID>372318</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Platform</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService
Date:          18/03/2015 7:20:55 PM
Event ID:      17419
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: starting service MSCRMAsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService" />
    <EventID Qualifiers="16384">17419</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:55.000000000Z" />
    <EventRecordID>372317</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>MSCRMAsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:54 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Server.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:54.000000000Z" />
    <EventRecordID>372316</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Server</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService$maintenance
Date:          18/03/2015 7:20:54 PM
Event ID:      17419
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: starting service MSCRMAsyncService$maintenance.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService$maintenance" />
    <EventID Qualifiers="16384">17419</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:54.000000000Z" />
    <EventRecordID>372315</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>MSCRMAsyncService$maintenance</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:54 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:54.000000000Z" />
    <EventRecordID>372314</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:54 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:54.000000000Z" />
    <EventRecordID>372313</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:54 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:54.000000000Z" />
    <EventRecordID>372312</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:54 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:54.000000000Z" />
    <EventRecordID>372311</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:52 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:52.000000000Z" />
    <EventRecordID>372310</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:52 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:52.000000000Z" />
    <EventRecordID>372309</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:52 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:52.000000000Z" />
    <EventRecordID>372308</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:20:52 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:52.000000000Z" />
    <EventRecordID>372307</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMEmail
Date:          18/03/2015 7:20:51 PM
Event ID:      6271
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
#6271 - Service started successfully.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMEmail" />
    <EventID Qualifiers="0">6271</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:51.000000000Z" />
    <EventRecordID>372306</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>#6271 - Service started successfully.</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-User Profiles Service
Date:          18/03/2015 7:20:47 PM
Event ID:      1531
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
The User Profile Service has started successfully.  
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
    <EventID>1531</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:47.796875000Z" />
    <EventRecordID>372305</EventRecordID>
    <Correlation />
    <Execution ProcessID="784" ThreadID="812" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-EventSystem
Date:          18/03/2015 7:20:47 PM
Event ID:      4625
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-EventSystem" Guid="{899daace-4868-4295-afcd-9eb8fb497561}" EventSourceName="EventSystem" />
    <EventID Qualifiers="16384">4625</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:47.000000000Z" />
    <EventRecordID>372304</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">86400</Data>
    <Data Name="param2">SuppressDuplicateDuration</Data>
    <Data Name="param3">Software\Microsoft\EventSystem\EventLog</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-User Profiles Service
Date:          18/03/2015 7:20:27 PM
Event ID:      1532
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
The User Profile Service has stopped.  
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
    <EventID>1532</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.994226700Z" />
    <EventRecordID>372303</EventRecordID>
    <Correlation />
    <Execution ProcessID="780" ThreadID="808" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-User Profiles Service
Date:          18/03/2015 7:20:27 PM
Event ID:      1530
Task Category: None
Level:         Warning
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.  
 DETAIL - 
 2 user registry handles leaked from \Registry\User\S-1-5-21-1935655697-1390067357-682003330-13227_Classes:
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227_CLASSES
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227_CLASSES
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
    <EventID>1530</EventID>
    <Version>0</Version>
    <Level>3</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.884850300Z" />
    <EventRecordID>372302</EventRecordID>
    <Correlation />
    <Execution ProcessID="780" ThreadID="3976" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData Name="EVENT_HIVE_LEAK">
    <Data Name="Detail">2 user registry handles leaked from \Registry\User\S-1-5-21-1935655697-1390067357-682003330-13227_Classes:
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227_CLASSES
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227_CLASSES
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-User Profiles Service
Date:          18/03/2015 7:20:27 PM
Event ID:      1530
Task Category: None
Level:         Warning
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.  
 DETAIL - 
 10 user registry handles leaked from \Registry\User\S-1-5-21-1935655697-1390067357-682003330-13227:
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows NT\CurrentVersion
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Control Panel\International
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Internet Explorer\Main
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Policies
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
    <EventID>1530</EventID>
    <Version>0</Version>
    <Level>3</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.791099100Z" />
    <EventRecordID>372301</EventRecordID>
    <Correlation />
    <Execution ProcessID="780" ThreadID="3976" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData Name="EVENT_HIVE_LEAK">
    <Data Name="Detail">10 user registry handles leaked from \Registry\User\S-1-5-21-1935655697-1390067357-682003330-13227:
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows NT\CurrentVersion
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Control Panel\International
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Internet Explorer\Main
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Policies
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 2856 (\Device\HarddiskVolume2\Windows\System32\inetsrv\w3wp.exe) has opened key \REGISTRY\USER\S-1-5-21-1935655697-1390067357-682003330-13227\Software
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMTools
Date:          18/03/2015 7:20:27 PM
Event ID:      108
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The service was stopped.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMTools" />
    <EventID Qualifiers="0">108</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.000000000Z" />
    <EventRecordID>372300</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 7:20:27 PM
Event ID:      272
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Saved network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">272</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.000000000Z" />
    <EventRecordID>372299</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 7:20:27 PM
Event ID:      280
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Saving network configuration for adapter with MAC address 00:50:56:85:62:57.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">280</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.000000000Z" />
    <EventRecordID>372298</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>00:50:56:85:62:57</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 7:20:27 PM
Event ID:      260
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Saving network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">260</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.000000000Z" />
    <EventRecordID>372297</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMware Tools
Date:          18/03/2015 7:20:27 PM
Event ID:      1000
Task Category: None
Level:         Warning
Keywords:      Classic
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
[ warning] [vmsvc:autoUpgrade] vmx returned Autoupgrade is not supported for guest.initiateUpgradeAtShutdown.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMware Tools" />
    <EventID Qualifiers="0">1000</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:27.000000000Z" />
    <EventRecordID>372296</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data>[ warning] [vmsvc:autoUpgrade] vmx returned Autoupgrade is not supported for guest.initiateUpgradeAtShutdown.
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Desktop Window Manager
Date:          18/03/2015 7:20:26 PM
Event ID:      9009
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Desktop Window Manager has exited with code (0x40010004)
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Desktop Window Manager" />
    <EventID Qualifiers="16384">9009</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:20:26.000000000Z" />
    <EventRecordID>372295</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0x40010004</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372294</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372293</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372292</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372291</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372290</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372289</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372288</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372287</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372286</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:19:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372285</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 7:19:53 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:19:53.000000000Z" />
    <EventRecordID>372284</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:18:44 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:18:44.000000000Z" />
    <EventRecordID>372283</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 7:18:43 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:18:43.000000000Z" />
    <EventRecordID>372282</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 7:15:45 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-191545.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0fe8310d
Analysis symbol: 
Rechecking for solution: 0
Report Id: f9a03457-cd46-11e4-9bc0-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:15:45.000000000Z" />
    <EventRecordID>372281</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-191545.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0fe8310d</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>f9a03457-cd46-11e4-9bc0-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 7:15:12 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-191511.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0e43ad37
Analysis symbol: 
Rechecking for solution: 0
Report Id: e57f37ce-cd46-11e4-9bc0-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:15:12.000000000Z" />
    <EventRecordID>372280</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-191511.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0e43ad37</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>e57f37ce-cd46-11e4-9bc0-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 7:15:09 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-191508.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_04dfa1fc
Analysis symbol: 
Rechecking for solution: 0
Report Id: e3c32620-cd46-11e4-9bc0-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:15:09.000000000Z" />
    <EventRecordID>372279</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-191508.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_04dfa1fc</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>e3c32620-cd46-11e4-9bc0-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 7:15:09 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 7:15:09 PM 
Event time (UTC): 18/03/2015 8:15:09 AM 
Event ID: b75df84c966546a6a2338028839d3f3f 
Event sequence: 34 
Event occurrence: 4 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711386017287500 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 2856 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: auth.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.110 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 17 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:15:09.000000000Z" />
    <EventRecordID>372278</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 7:15:09 PM</Data>
    <Data>18/03/2015 8:15:09 AM</Data>
    <Data>b75df84c966546a6a2338028839d3f3f</Data>
    <Data>34</Data>
    <Data>4</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711386017287500</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>2856</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>auth.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.110</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>17</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 7:07:04 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-190703.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0e443b26
Analysis symbol: 
Rechecking for solution: 0
Report Id: c2a285d6-cd45-11e4-9bc0-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:07:04.000000000Z" />
    <EventRecordID>372277</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-190703.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0e443b26</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>c2a285d6-cd45-11e4-9bc0-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 7:07:04 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 7:07:03 PM 
Event time (UTC): 18/03/2015 8:07:03 AM 
Event ID: 5c815c4aeb754053a5c2841be3e9141b 
Event sequence: 28 
Event occurrence: 3 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711386017287500 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 2856 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 17 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:07:04.000000000Z" />
    <EventRecordID>372276</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 7:07:03 PM</Data>
    <Data>18/03/2015 8:07:03 AM</Data>
    <Data>5c815c4aeb754053a5c2841be3e9141b</Data>
    <Data>28</Data>
    <Data>3</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711386017287500</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>2856</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>17</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372275</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372274</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372273</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372272</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372271</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372270</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372269</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372268</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372267</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 7:04:53 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372266</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 7:04:53 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T08:04:53.000000000Z" />
    <EventRecordID>372265</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Ci
Date:          18/03/2015 6:57:20 PM
Event ID:      4137
Task Category: CI Service
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
CI has started for catalog c:\program files\microsoft dynamics crm\server\applicationfiles\catalog.wci.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Ci" />
    <EventID Qualifiers="16384">4137</EventID>
    <Level>4</Level>
    <Task>1</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:57:20.000000000Z" />
    <EventRecordID>372264</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>c:\program files\microsoft dynamics crm\server\applicationfiles\catalog.wci</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 6:56:21 PM
Event ID:      903
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service has stopped.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">903</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:56:21.000000000Z" />
    <EventRecordID>372263</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-LoadPerf
Date:          18/03/2015 6:54:04 PM
Event ID:      1000
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-LoadPerf" Guid="{122EE297-BB47-41AE-B265-1CA8D1886D40}" />
    <EventID>1000</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:54:04.373225600Z" />
    <EventRecordID>372262</EventRecordID>
    <Correlation />
    <Execution ProcessID="3516" ThreadID="4032" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <UserData>
    <EventXML xmlns:auto-ns2="schemas.microsoft.com/.../events" xmlns="LoadPerf">
      <param1>WmiApRpl</param1>
      <param2>WmiApRpl</param2>
      <binaryDataSize>16</binaryDataSize>
      <binaryData>667A0000367B0000677A0000377B0000</binaryData>
    </EventXML>
  </UserData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-LoadPerf
Date:          18/03/2015 6:54:04 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-LoadPerf" Guid="{122EE297-BB47-41AE-B265-1CA8D1886D40}" />
    <EventID>1001</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:54:04.295100600Z" />
    <EventRecordID>372261</EventRecordID>
    <Correlation />
    <Execution ProcessID="3516" ThreadID="4032" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <UserData>
    <EventXML xmlns:auto-ns2="schemas.microsoft.com/.../events" xmlns="LoadPerf">
      <param1>WmiApRpl</param1>
      <param2>WmiApRpl</param2>
      <binaryDataSize>12</binaryDataSize>
      <binaryData>647A0000657A000034070000</binaryData>
    </EventXML>
  </UserData>
</Event>
Log Name:      Application
Source:        VSS
Date:          18/03/2015 6:53:03 PM
Event ID:      8224
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The VSS service is shutting down due to idle timeout. 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VSS" />
    <EventID Qualifiers="0">8224</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:53:03.000000000Z" />
    <EventRecordID>372260</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Binary>2D20436F64653A2020434F525356434330303030303737332D2043616C6C3A2020434F525356434330303030303735352D205049443A202030303030323434302D205449443A202030303030323732342D20434D443A2020433A5C57696E646F77735C73797374656D33325C76737376632E6578652020202D20557365723A204E616D653A204E5420415554484F524954595C53595354454D2C205349443A532D312D352D313820</Binary>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 6:52:11 PM
Event ID:      20246
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Host is available.
 Source: w3wp.exe (2856)
 Sandbox Host: APCRM01
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20246</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:52:11.000000000Z" />
    <EventRecordID>372259</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>w3wp.exe (2856)</Data>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxService
Date:          18/03/2015 6:52:11 PM
Event ID:      20248
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Client has been detected.
 Source: Microsoft.Crm.Sandbox.HostService.exe (3268)
 Sandbox Client: apcrm01: w3wp.exe (2856)
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxService" />
    <EventID Qualifiers="16384">20248</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:52:11.000000000Z" />
    <EventRecordID>372258</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Microsoft.Crm.Sandbox.HostService.exe (3268)</Data>
    <Data>apcrm01: w3wp.exe (2856)</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 6:52:02 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-185202.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_096a7a95
Analysis symbol: 
Rechecking for solution: 0
Report Id: a972afb6-cd43-11e4-9bc0-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:52:02.000000000Z" />
    <EventRecordID>372257</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-185202.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_096a7a95</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>a972afb6-cd43-11e4-9bc0-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:52:00 PM
Event ID:      17209
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The initialization of the CRM authentication pipline has succeeded for: 
Host: crm.ap-cs.com.au:443
Request Url: crm.ap-cs.com.au/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="0">17209</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:52:00.000000000Z" />
    <EventRecordID>372256</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
Host: crm.ap-cs.com.au:443
Request Url: crm.ap-cs.com.au/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:52:00 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): CreateAggregateTokenResolver - Loading encryption certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:52:00.000000000Z" />
    <EventRecordID>372255</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CreateAggregateTokenResolver - Loading encryption certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:52:00 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): TrustedIssuerRegistry ctor - Signing certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:52:00.000000000Z" />
    <EventRecordID>372254</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuerRegistry ctor - Signing certificates:
Host: crm.ap-cs.com.au:443
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:51:59 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:59.000000000Z" />
    <EventRecordID>372253</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 6:51:59 PM
Event ID:      20246
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Host is available.
 Source: CrmAsyncService.exe (1272)
 Sandbox Host: APCRM01
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20246</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:59.000000000Z" />
    <EventRecordID>372252</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmAsyncService.exe (1272)</Data>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxService
Date:          18/03/2015 6:51:59 PM
Event ID:      20248
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A Sandbox Client has been detected.
 Source: Microsoft.Crm.Sandbox.HostService.exe (3268)
 Sandbox Client: apcrm01: CrmAsyncService.exe (1272)
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxService" />
    <EventID Qualifiers="16384">20248</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:59.000000000Z" />
    <EventRecordID>372251</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Microsoft.Crm.Sandbox.HostService.exe (3268)</Data>
    <Data>apcrm01: CrmAsyncService.exe (1272)</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxService
Date:          18/03/2015 6:51:57 PM
Event ID:      20224
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Sandbox Host service has started.
 Source: Microsoft.Crm.Sandbox.HostService.exe (3268)
 Endpoint: net.pipe://localhost/CrmSandboxHost
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxService" />
    <EventID Qualifiers="16384">20224</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:57.000000000Z" />
    <EventRecordID>372250</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Microsoft.Crm.Sandbox.HostService.exe (3268)</Data>
    <Data>net.pipe://localhost/CrmSandboxHost</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 6:51:41 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-185140.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_06ce27a2
Analysis symbol: 
Rechecking for solution: 0
Report Id: 9cb3ef24-cd43-11e4-9bc0-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:41.000000000Z" />
    <EventRecordID>372249</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-185140.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_06ce27a2</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>9cb3ef24-cd43-11e4-9bc0-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyService
Date:          18/03/2015 6:51:41 PM
Event ID:      18960
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Active Key of type : CrmStaticVersionScaleGroupKey loaded : 3b41fa30-8db8-e411-8c82-005056856257 for scalegroup : 00000000-0000-0000-0000-000000000000
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyService" />
    <EventID Qualifiers="16384">18960</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:41.000000000Z" />
    <EventRecordID>372248</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmStaticVersionScaleGroupKey</Data>
    <Data>3b41fa30-8db8-e411-8c82-005056856257</Data>
    <Data>00000000-0000-0000-0000-000000000000</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 6:51:40 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 6:51:40 PM 
Event time (UTC): 18/03/2015 7:51:40 AM 
Event ID: 5fe9ee8fce1b45fb82cfa32b944fb1f1 
Event sequence: 6 
Event occurrence: 1 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711386017287500 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 2856 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: auth.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.110 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 12 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:51:40.000000000Z" />
    <EventRecordID>372247</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 6:51:40 PM</Data>
    <Data>18/03/2015 7:51:40 AM</Data>
    <Data>5fe9ee8fce1b45fb82cfa32b944fb1f1</Data>
    <Data>6</Data>
    <Data>1</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711386017287500</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>2856</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>auth.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.110</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>12</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Desktop Window Manager
Date:          18/03/2015 6:50:55 PM
Event ID:      9003
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Desktop Window Manager was unable to start because a composited theme is not in use
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Desktop Window Manager" />
    <EventID Qualifiers="16384">9003</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:55.000000000Z" />
    <EventRecordID>372246</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Winlogon
Date:          18/03/2015 6:50:55 PM
Event ID:      4101
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Windows license validated.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Winlogon" Guid="{DBE9B383-7CF3-4331-91CC-A3CB16A3B538}" EventSourceName="Winlogon" />
    <EventID Qualifiers="16384">4101</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:55.000000000Z" />
    <EventRecordID>372245</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0x00000000</Data>
    <Data>0x00000001</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:13 PM
Event ID:      17209
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The initialization of the CRM authentication pipline has succeeded for: 
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="0">17209</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:13.000000000Z" />
    <EventRecordID>372244</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:13 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:13.000000000Z" />
    <EventRecordID>372243</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:13 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:13.000000000Z" />
    <EventRecordID>372242</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:50:12 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Authentication.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:12.000000000Z" />
    <EventRecordID>372241</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Authentication</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:12 PM
Event ID:      17209
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The initialization of the CRM authentication pipline has succeeded for: 
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="0">17209</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:12.000000000Z" />
    <EventRecordID>372240</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
Host: apcrm01:80
Request Url: apcrm01/.../Organization.svc
LogFederationProviders - Federation Provider:  - Name: fs.ap-cs.com.au/.../trust
AddAudienceUri - Audience Uri: crminternal.ap-cs.com.au
AddAudienceUri - Audience Uri: https://auth.ap-cs.com.au/
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:12 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:12.000000000Z" />
    <EventRecordID>372239</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CreateAggregateTokenResolver - Loading encryption certificates:
Host: apcrm01:80
Subject: CN=*.ap-cs.com.au, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)14, OU=GT44315316, SERIALNUMBER=-wDMHmUcYZ/dZcO-KTcivMUozs/bsCDn, Thumbprint: 81567A2836086472D27E01E0EC2E54F77BB8C67B, Valid On: 03/27/2014 10:24:57, Expires: 03/28/2017 20:49:03
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:12 PM
Event ID:      17210
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CRM authentication pipeline has loaded the following certificate(s): TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17210</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:12.000000000Z" />
    <EventRecordID>372238</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuerRegistry ctor - Signing certificates:
Host: apcrm01:80
Subject: CN=ADFS Signing - fs.ap-cs.com.au, Thumbprint: 23E730D00C0CA34C1F9062D5694113E04A35F2DB, Valid On: 03/31/2014 11:56:54, Expires: 03/31/2015 11:56:54
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 6:50:11 PM
Event ID:      20226
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Sandbox SDK Listener has started.
 Source: w3wp.exe (2856)
 Endpoint: net.tcp://localhost/CrmSandboxSdkListener-w3wp
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20226</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:11.000000000Z" />
    <EventRecordID>372237</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>w3wp.exe (2856)</Data>
    <Data>net.tcp://localhost/CrmSandboxSdkListener-w3wp</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:50:10 PM
Event ID:      17202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Enterprise transaction manager initialized with 0 data collectors and 0 throttle providers. Data statistics collection: Off, data statistics logging: Off, request throttling: Off.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:10.000000000Z" />
    <EventRecordID>372236</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0</Data>
    <Data>0</Data>
    <Data>Off</Data>
    <Data>Off</Data>
    <Data>Off</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:50:10 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Discovery.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:10.000000000Z" />
    <EventRecordID>372235</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Discovery</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:50:10 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Platform.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:10.000000000Z" />
    <EventRecordID>372234</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Platform</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:50:09 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Server.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:09.000000000Z" />
    <EventRecordID>372233</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Server</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:50:09 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:09.000000000Z" />
    <EventRecordID>372232</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:50:09 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:09.000000000Z" />
    <EventRecordID>372231</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        SceCli
Date:          18/03/2015 6:50:02 PM
Event ID:      1704
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Security policy in the Group policy objects has been applied successfully.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="SceCli" />
    <EventID Qualifiers="16384">1704</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:02.000000000Z" />
    <EventRecordID>372230</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CertificateServicesClient-CertEnroll
Date:          18/03/2015 6:50:02 PM
Event ID:      64
Task Category: None
Level:         Information
Keywords:      Classic
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Certificate enrollment for Local system successfully load policy from policy server 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CertificateServicesClient-CertEnroll" Guid="{54164045-7C50-4905-963F-E5BC1EEF0CCA}" EventSourceName="CertEnroll" />
    <EventID Qualifiers="33370">64</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:02.000000000Z" />
    <EventRecordID>372229</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data Name="Context">Local system</Data>
    <Data Name="ServerID">
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CertificateServicesClient-CertEnroll
Date:          18/03/2015 6:50:02 PM
Event ID:      65
Task Category: None
Level:         Information
Keywords:      Classic
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
Certificate enrollment for Local system is successfully authenticated by policy server {71586B56-0176-4126-B749-A4C089D8E605}
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CertificateServicesClient-CertEnroll" Guid="{54164045-7C50-4905-963F-E5BC1EEF0CCA}" EventSourceName="CertEnroll" />
    <EventID Qualifiers="33370">65</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:02.000000000Z" />
    <EventRecordID>372228</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data Name="Context">Local system</Data>
    <Data Name="ServerURL">{71586B56-0176-4126-B749-A4C089D8E605}</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-MSDTC 2
Date:          18/03/2015 6:50:01 PM
Event ID:      4202
Task Category: TM
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
MSDTC started with the following settings:
 Security Configuration (OFF = 0 and ON = 1):
 Allow Remote Administrator = 0,
 Network Clients = 0,
 Trasaction Manager Communication: 
 Allow Inbound Transactions = 0,
 Allow Outbound Transactions = 0,
 Transaction Internet Protocol (TIP) = 0,
  Enable XA Transactions = 0,
  Enable SNA LU 6.2 Transactions = 1,
  MSDTC Communications Security = Mutual Authentication Required,
 Account = NT AUTHORITY\NetworkService,
  Firewall Exclusion Detected = 0
 Transaction Bridge Installed = 0
 Filtering Duplicate Events = 1
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-MSDTC 2" Guid="{5D9E0020-3761-4f36-90C8-38CE6511BD12}" EventSourceName="MSDTC 2" />
    <EventID Qualifiers="16384">4202</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>2</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:01.000000000Z" />
    <EventRecordID>372227</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">0</Data>
    <Data Name="param2">0</Data>
    <Data Name="param3">0</Data>
    <Data Name="param4">0</Data>
    <Data Name="param5">0</Data>
    <Data Name="param6">0</Data>
    <Data Name="param7">1</Data>
    <Data Name="param8">Mutual Authentication Required</Data>
    <Data Name="param9">NT AUTHORITY\NetworkService</Data>
    <Data Name="param10">0</Data>
    <Data Name="param11">0</Data>
    <Data Name="param12">1</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 6:50:00 PM
Event ID:      902
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service has started.
6.1.7601.17514
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">902</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:00.000000000Z" />
    <EventRecordID>372226</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>6.1.7601.17514</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 6:50:00 PM
Event ID:      1003
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service has completed licensing status check.
Application Id=55c92734-d682-4d71-983e-d6ec3f16059f
Licensing Status=
1: 039998e3-3ef5-4adf-b758-d25fa0128ff4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 47188d7c-b5ef-4336-91a9-3857b219fe95, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 68531fb9-5511-4989-97be-d11a0f55633f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 6a4bd364-4b60-4856-a727-efb59d94348e, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 30 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
5: 6d47464d-e43d-4228-b051-fddd47fd403f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 8fe15d04-fc66-40e6-bf34-942481e06fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 9a159de8-d114-41d7-a5bf-d3574edb42fa, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: a60c85a9-7eff-4690-8aa1-010ddf5d38f0, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: a7dad4b1-8065-4576-9e61-2fd025fe16cc, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: c60b048b-8071-4532-8398-f15f4c981861, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: c837408d-3762-4dea-a4d7-6dba48f6c305, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: c99b641f-c4ea-4e63-bec3-5ed2ccd0f357, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: da71774d-b2c9-4c42-bb7b-a66365d5abb2, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: f14c8ee3-560d-441e-aee1-325c2e9ae74a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">1003</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:00.000000000Z" />
    <EventRecordID>372225</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>55c92734-d682-4d71-983e-d6ec3f16059f</Data>
    <Data>
1: 039998e3-3ef5-4adf-b758-d25fa0128ff4, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 47188d7c-b5ef-4336-91a9-3857b219fe95, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 68531fb9-5511-4989-97be-d11a0f55633f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 6a4bd364-4b60-4856-a727-efb59d94348e, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 30 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
5: 6d47464d-e43d-4228-b051-fddd47fd403f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 8fe15d04-fc66-40e6-bf34-942481e06fd8, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 9a159de8-d114-41d7-a5bf-d3574edb42fa, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: a60c85a9-7eff-4690-8aa1-010ddf5d38f0, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: a7dad4b1-8065-4576-9e61-2fd025fe16cc, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: c60b048b-8071-4532-8398-f15f4c981861, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: c837408d-3762-4dea-a4d7-6dba48f6c305, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: c99b641f-c4ea-4e63-bec3-5ed2ccd0f357, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: da71774d-b2c9-4c42-bb7b-a66365d5abb2, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: f14c8ee3-560d-441e-aee1-325c2e9ae74a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 6:50:00 PM
Event ID:      1066
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Initialization status for service objects.
C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/2005, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/licenserenewal/1.0, 0x00000000, 0x00000000
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">1066</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:00.000000000Z" />
    <EventRecordID>372224</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>C:\Windows\system32\sppwinob.dll, msft:spp/windowsfunctionality/agent/7.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/phone/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:rm/algorithm/pkey/2005, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/TaskScheduler/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/1.0, 0x00000000, 0x00000000
C:\Windows\system32\sppobjs.dll, msft:spp/volume/services/kms/licenserenewal/1.0, 0x00000000, 0x00000000
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMSandboxClient
Date:          18/03/2015 6:50:00 PM
Event ID:      20226
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Sandbox SDK Listener has started.
 Source: CrmAsyncService.exe (1272)
 Endpoint: net.tcp://localhost/CrmSandboxSdkListener-CrmAsyncService
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMSandboxClient" />
    <EventID Qualifiers="16384">20226</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:00.000000000Z" />
    <EventRecordID>372223</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmAsyncService.exe (1272)</Data>
    <Data>net.tcp://localhost/CrmSandboxSdkListener-CrmAsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 6:50:00 PM
Event ID:      271
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Restored network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">271</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:00.000000000Z" />
    <EventRecordID>372222</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 6:50:00 PM
Event ID:      270
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Not restoring network configuration for adapter with MAC address 00:50:56:85:62:57. The device ID for this adapter is unchanged.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">270</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:50:00.000000000Z" />
    <EventRecordID>372221</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>00:50:56:85:62:57</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 6:49:59 PM
Event ID:      258
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Restoring network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">258</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:59.000000000Z" />
    <EventRecordID>372220</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Complus
Date:          18/03/2015 6:49:59 PM
Event ID:      781
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The COM+ sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\COM3\Eventlog.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Complus" Guid="{0f177893-4a9c-4709-b921-f432d67f43d5}" EventSourceName="COM+" />
    <EventID Qualifiers="16384">781</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:59.000000000Z" />
    <EventRecordID>372219</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">86400</Data>
    <Data Name="param2">SuppressDuplicateDuration</Data>
    <Data Name="param3">Software\Microsoft\COM3\Eventlog</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService
Date:          18/03/2015 6:49:58 PM
Event ID:      17408
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: started monitoring asynchronous operations queue.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService" />
    <EventID Qualifiers="16384">17408</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:58.000000000Z" />
    <EventRecordID>372218</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-Security-SPP
Date:          18/03/2015 6:49:56 PM
Event ID:      900
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Software Protection service is starting.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-Security-SPP" Guid="{E23B33B0-C8C9-472C-A5F9-F2BDFEA0F156}" EventSourceName="Software Protection Platform Service" />
    <EventID Qualifiers="16384">900</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372217</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 6:49:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmStaticVersionScaleGroupKey that were created on or before 16/01/2015 7:49:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372216</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmStaticVersionScaleGroupKey</Data>
    <Data>16/01/2015 7:49:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 6:49:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmEmailCredentialsKey that were created on or before 3/04/2000 1:49:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372215</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmEmailCredentialsKey</Data>
    <Data>3/04/2000 1:49:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 6:49:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmWRPCTokenKey that were created on or before 12/02/2015 7:49:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372214</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmWRPCTokenKey</Data>
    <Data>12/02/2015 7:49:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService$maintenance
Date:          18/03/2015 6:49:56 PM
Event ID:      17408
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: started monitoring asynchronous operations queue.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService$maintenance" />
    <EventID Qualifiers="16384">17408</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372213</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 6:49:56 PM
Event ID:      18954
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager is archiving keys of type CrmTicketKey that were created on or before 15/03/2015 7:49:56 AM
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="16384">18954</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372212</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>CrmTicketKey</Data>
    <Data>15/03/2015 7:49:56 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyArchiveManager
Date:          18/03/2015 6:49:56 PM
Event ID:      18952
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyArchiveManager has started.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyArchiveManager" />
    <EventID Qualifiers="0">18952</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372211</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMKeyGenerator
Date:          18/03/2015 6:49:56 PM
Event ID:      18947
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The CrmKeyGenerator has started.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMKeyGenerator" />
    <EventID Qualifiers="0">18947</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:56.000000000Z" />
    <EventRecordID>372210</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-WMI
Date:          18/03/2015 6:49:55 PM
Event ID:      5617
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Windows Management Instrumentation Service subsystems initialized successfully
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-WMI" Guid="{1edeee53-0afe-4609-b846-d8c0b2075b1f}" EventSourceName="WinMgmt" />
    <EventID Qualifiers="49152">5617</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:55.000000000Z" />
    <EventRecordID>372209</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:49:55 PM
Event ID:      17202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Enterprise transaction manager initialized with 0 data collectors and 0 throttle providers. Data statistics collection: Off, data statistics logging: Off, request throttling: Off.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:55.000000000Z" />
    <EventRecordID>372208</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0</Data>
    <Data>0</Data>
    <Data>Off</Data>
    <Data>Off</Data>
    <Data>Off</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPlatform
Date:          18/03/2015 6:49:55 PM
Event ID:      17202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Enterprise transaction manager initialized with 0 data collectors and 0 throttle providers. Data statistics collection: Off, data statistics logging: Off, request throttling: Off.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPlatform" />
    <EventID Qualifiers="16384">17202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:55.000000000Z" />
    <EventRecordID>372207</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0</Data>
    <Data>0</Data>
    <Data>Off</Data>
    <Data>Off</Data>
    <Data>Off</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-WMI
Date:          18/03/2015 6:49:53 PM
Event ID:      5615
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Windows Management Instrumentation Service started sucessfully
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-WMI" Guid="{1edeee53-0afe-4609-b846-d8c0b2075b1f}" EventSourceName="WinMgmt" />
    <EventID Qualifiers="49152">5615</EventID>
    <Version>0</Version>
    <Level>0</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372206</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:53 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Server.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372205</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Server</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:53 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Platform.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372204</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Platform</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:53 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: Server.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372203</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Server</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService
Date:          18/03/2015 6:49:53 PM
Event ID:      17419
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: starting service MSCRMAsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService" />
    <EventID Qualifiers="16384">17419</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372202</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>MSCRMAsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMAsyncService$maintenance
Date:          18/03/2015 6:49:53 PM
Event ID:      17419
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Host APCRM01: starting service MSCRMAsyncService$maintenance.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMAsyncService$maintenance" />
    <EventID Qualifiers="16384">17419</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372201</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>MSCRMAsyncService$maintenance</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMTools
Date:          18/03/2015 6:49:53 PM
Event ID:      105
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The service was started.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMTools" />
    <EventID Qualifiers="0">105</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372200</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:53 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372199</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:53 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:53.000000000Z" />
    <EventRecordID>372198</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:52 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:52.000000000Z" />
    <EventRecordID>372197</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:52 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:52.000000000Z" />
    <EventRecordID>372196</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        SRMSVC
Date:          18/03/2015 6:49:50 PM
Event ID:      8202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Communication port '\DataScreenCommPort' to the 'DataScrn' filter driver was established.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="SRMSVC" />
    <EventID Qualifiers="32772">8202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:50.000000000Z" />
    <EventRecordID>372195</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>\DataScreenCommPort</Data>
    <Data>DataScrn</Data>
    <Data>
Operation:
   Handling events from file system filter '\DataScreenCommPort'.</Data>
    <Binary>2D20436F64653A2053524D464C54524330303030313732342D2043616C6C3A2053524D464C54524330303030313730392D205049443A202030303030313735362D205449443A202030303030313932302D20434D443A2020433A5C57696E646F77735C73797374656D33325C737663686F7374202D6B2073726D7376637320202D20557365723A204E616D653A204E5420415554484F524954595C53595354454D2C205349443A532D312D352D313820</Binary>
  </EventData>
</Event>
Log Name:      Application
Source:        SRMSVC
Date:          18/03/2015 6:49:50 PM
Event ID:      8202
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Communication port '\QuotaCommPort' to the 'Quota' filter driver was established.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="SRMSVC" />
    <EventID Qualifiers="32772">8202</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:50.000000000Z" />
    <EventRecordID>372194</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>\QuotaCommPort</Data>
    <Data>Quota</Data>
    <Data>
Operation:
   Handling events from file system filter '\QuotaCommPort'.</Data>
    <Binary>2D20436F64653A2053524D464C54524330303030313732342D2043616C6C3A2053524D464C54524330303030313730392D205049443A202030303030313735362D205449443A202030303030313930382D20434D443A2020433A5C57696E646F77735C73797374656D33325C737663686F7374202D6B2073726D7376637320202D20557365723A204E616D653A204E5420415554484F524954595C53595354454D2C205349443A532D312D352D313820</Binary>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:49 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:49.000000000Z" />
    <EventRecordID>372193</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:49 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:49.000000000Z" />
    <EventRecordID>372192</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:49 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:49.000000000Z" />
    <EventRecordID>372191</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:49:49 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:49.000000000Z" />
    <EventRecordID>372190</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMEmail
Date:          18/03/2015 6:49:47 PM
Event ID:      6271
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
#6271 - Service started successfully.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMEmail" />
    <EventID Qualifiers="0">6271</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:47.000000000Z" />
    <EventRecordID>372189</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>#6271 - Service started successfully.</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-User Profiles Service
Date:          18/03/2015 6:49:40 PM
Event ID:      1531
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
The User Profile Service has started successfully.  
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
    <EventID>1531</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:40.062500000Z" />
    <EventRecordID>372188</EventRecordID>
    <Correlation />
    <Execution ProcessID="780" ThreadID="808" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-EventSystem
Date:          18/03/2015 6:49:40 PM
Event ID:      4625
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The EventSystem sub system is suppressing duplicate event log entries for a duration of 86400 seconds.  The suppression timeout can be controlled by a REG_DWORD value named SuppressDuplicateDuration under the following registry key: HKLM\Software\Microsoft\EventSystem\EventLog.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-EventSystem" Guid="{899daace-4868-4295-afcd-9eb8fb497561}" EventSourceName="EventSystem" />
    <EventID Qualifiers="16384">4625</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:40.000000000Z" />
    <EventRecordID>372187</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">86400</Data>
    <Data Name="param2">SuppressDuplicateDuration</Data>
    <Data Name="param3">Software\Microsoft\EventSystem\EventLog</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-User Profiles Service
Date:          18/03/2015 6:49:05 PM
Event ID:      1532
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
The User Profile Service has stopped.  
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-User Profiles Service" Guid="{89B1E9F0-5AFF-44A6-9B44-0A07A7CE5845}" />
    <EventID>1532</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8000000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:05.866250000Z" />
    <EventRecordID>372186</EventRecordID>
    <Correlation />
    <Execution ProcessID="800" ThreadID="824" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMTools
Date:          18/03/2015 6:49:04 PM
Event ID:      108
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The service was stopped.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMTools" />
    <EventID Qualifiers="0">108</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:04.000000000Z" />
    <EventRecordID>372185</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 6:49:04 PM
Event ID:      272
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Saved network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">272</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:04.000000000Z" />
    <EventRecordID>372184</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 6:49:04 PM
Event ID:      280
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Saving network configuration for adapter with MAC address 00:50:56:85:62:57.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">280</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:04.000000000Z" />
    <EventRecordID>372183</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>00:50:56:85:62:57</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        VMUpgradeHelper
Date:          18/03/2015 6:49:04 PM
Event ID:      260
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Saving network configuration.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMUpgradeHelper" />
    <EventID Qualifiers="0">260</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:04.000000000Z" />
    <EventRecordID>372182</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
  </EventData>
</Event>
Log Name:      Application
Source:        VMware Tools
Date:          18/03/2015 6:49:04 PM
Event ID:      1000
Task Category: None
Level:         Warning
Keywords:      Classic
User:          SYSTEM
Computer:      APCRM01.1QR.COM.AU
Description:
[ warning] [vmsvc:autoUpgrade] vmx returned Autoupgrade is not supported for guest.initiateUpgradeAtShutdown.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="VMware Tools" />
    <EventID Qualifiers="0">1000</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:04.000000000Z" />
    <EventRecordID>372181</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security UserID="S-1-5-18" />
  </System>
  <EventData>
    <Data>[ warning] [vmsvc:autoUpgrade] vmx returned Autoupgrade is not supported for guest.initiateUpgradeAtShutdown.
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Desktop Window Manager
Date:          18/03/2015 6:49:02 PM
Event ID:      9009
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
The Desktop Window Manager has exited with code (0x40010004)
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Desktop Window Manager" />
    <EventID Qualifiers="16384">9009</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:49:02.000000000Z" />
    <EventRecordID>372180</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>0x40010004</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CAPI2
Date:          18/03/2015 6:47:25 PM
Event ID:      4111
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Successful auto update of third-party root list with effective date: Saturday, 21 February 2015 7:14:50 AM.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CAPI2" Guid="{5bbca4a8-b209-48dc-a8c7-b23d3e5216fb}" EventSourceName="Microsoft-Windows-CAPI2" />
    <EventID Qualifiers="0">4111</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8080000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:47:25.770614500Z" />
    <EventRecordID>372179</EventRecordID>
    <Correlation />
    <Execution ProcessID="936" ThreadID="6048" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>Saturday, 21 February 2015 7:14:50 AM</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CAPI2
Date:          18/03/2015 6:47:25 PM
Event ID:      4108
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Successful auto delete of third-party root certificate:: Subject: <OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US> Sha1 thumbprint: <4F65566336DB6598581D584A596C87934D5F2AB4>.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CAPI2" Guid="{5bbca4a8-b209-48dc-a8c7-b23d3e5216fb}" EventSourceName="Microsoft-Windows-CAPI2" />
    <EventID Qualifiers="0">4108</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8080000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:47:25.770614500Z" />
    <EventRecordID>372178</EventRecordID>
    <Correlation />
    <Execution ProcessID="936" ThreadID="6048" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US</Data>
    <Data>4F65566336DB6598581D584A596C87934D5F2AB4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Microsoft-Windows-CAPI2
Date:          18/03/2015 6:47:25 PM
Event ID:      4108
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Successful auto delete of third-party root certificate:: Subject: <OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 3 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US> Sha1 thumbprint: <97E2E99636A547554F838FBA38B82E74F89A830A>.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Microsoft-Windows-CAPI2" Guid="{5bbca4a8-b209-48dc-a8c7-b23d3e5216fb}" EventSourceName="Microsoft-Windows-CAPI2" />
    <EventID Qualifiers="0">4108</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8080000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:47:25.770614500Z" />
    <EventRecordID>372177</EventRecordID>
    <Correlation />
    <Execution ProcessID="936" ThreadID="6048" />
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 3 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US</Data>
    <Data>97E2E99636A547554F838FBA38B82E74F89A830A</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:46:55 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: ConfigDB.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:46:55.000000000Z" />
    <EventRecordID>372176</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>ConfigDB</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMPerfCounters
Date:          18/03/2015 6:46:53 PM
Event ID:      17189
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Performance Counters Loaded Successfully. Counter Category: LocatorService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMPerfCounters" />
    <EventID Qualifiers="0">17189</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:46:53.000000000Z" />
    <EventRecordID>372175</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>LocatorService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372174</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372173</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372172</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372171</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372170</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372169</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372168</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372167</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372166</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372165</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 6:44:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:44:31.000000000Z" />
    <EventRecordID>372164</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 6:37:00 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-183700.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_140dd67a
Analysis symbol: 
Rechecking for solution: 0
Report Id: 8f9364b7-cd41-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:37:00.000000000Z" />
    <EventRecordID>372163</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-183700.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_140dd67a</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>8f9364b7-cd41-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 6:37:00 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 6:37:00 PM 
Event time (UTC): 18/03/2015 7:37:00 AM 
Event ID: 773b181aeb33428c95938ce2c5021249 
Event sequence: 342 
Event occurrence: 53 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 13 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:37:00.000000000Z" />
    <EventRecordID>372162</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 6:37:00 PM</Data>
    <Data>18/03/2015 7:37:00 AM</Data>
    <Data>773b181aeb33428c95938ce2c5021249</Data>
    <Data>342</Data>
    <Data>53</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>13</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372161</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372160</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372159</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372158</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372157</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372156</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372155</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372154</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372153</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372152</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 6:29:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:29:31.000000000Z" />
    <EventRecordID>372151</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 6:21:59 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-182159.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_14c8176f
Analysis symbol: 
Rechecking for solution: 0
Report Id: 769ba485-cd3f-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:21:59.000000000Z" />
    <EventRecordID>372150</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-182159.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_14c8176f</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>769ba485-cd3f-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 6:21:59 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 6:21:59 PM 
Event time (UTC): 18/03/2015 7:21:59 AM 
Event ID: 0b15b2aba67442d4850b4b22db9f5849 
Event sequence: 331 
Event occurrence: 52 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 14 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:21:59.000000000Z" />
    <EventRecordID>372149</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 6:21:59 PM</Data>
    <Data>18/03/2015 7:21:59 AM</Data>
    <Data>0b15b2aba67442d4850b4b22db9f5849</Data>
    <Data>331</Data>
    <Data>52</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>14</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372148</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372147</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372146</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372145</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372144</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372143</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372142</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372141</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372140</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 6:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372139</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 6:14:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:14:31.000000000Z" />
    <EventRecordID>372138</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 6:06:58 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-180658.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_11ae573b
Analysis symbol: 
Rechecking for solution: 0
Report Id: 5d7434fb-cd3d-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:06:58.000000000Z" />
    <EventRecordID>372137</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-180658.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_11ae573b</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>5d7434fb-cd3d-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 6:06:58 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 6:06:58 PM 
Event time (UTC): 18/03/2015 7:06:58 AM 
Event ID: 36f3d9c01b924e3ead41c58277cb9bbb 
Event sequence: 324 
Event occurrence: 51 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 14 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T07:06:58.000000000Z" />
    <EventRecordID>372136</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 6:06:58 PM</Data>
    <Data>18/03/2015 7:06:58 AM</Data>
    <Data>36f3d9c01b924e3ead41c58277cb9bbb</Data>
    <Data>324</Data>
    <Data>51</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>14</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372135</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372134</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372133</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372132</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372131</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372130</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372129</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372128</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372127</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372126</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 5:59:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:59:31.000000000Z" />
    <EventRecordID>372125</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:51:57 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-175157.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_1364988e
Analysis symbol: 
Rechecking for solution: 0
Report Id: 4485fe41-cd3b-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:51:57.000000000Z" />
    <EventRecordID>372124</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-175157.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_1364988e</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>4485fe41-cd3b-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 5:51:57 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 5:51:57 PM 
Event time (UTC): 18/03/2015 6:51:57 AM 
Event ID: 2fff119e368042ba9bca88e6a17e6a3b 
Event sequence: 317 
Event occurrence: 50 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 14 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:51:57.000000000Z" />
    <EventRecordID>372123</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 5:51:57 PM</Data>
    <Data>18/03/2015 6:51:57 AM</Data>
    <Data>2fff119e368042ba9bca88e6a17e6a3b</Data>
    <Data>317</Data>
    <Data>50</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>14</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372122</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372121</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372120</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372119</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372118</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372117</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372116</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372115</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372114</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:44:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372113</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 5:44:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:44:31.000000000Z" />
    <EventRecordID>372112</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:36:56 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-173656.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_1662d8b8
Analysis symbol: 
Rechecking for solution: 0
Report Id: 2b6cdceb-cd39-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:36:56.000000000Z" />
    <EventRecordID>372111</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-173656.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_1662d8b8</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>2b6cdceb-cd39-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 5:36:56 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 5:36:56 PM 
Event time (UTC): 18/03/2015 6:36:56 AM 
Event ID: 228d196ddac34e3e8e7cf50d9c831cab 
Event sequence: 310 
Event occurrence: 49 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 14 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:36:56.000000000Z" />
    <EventRecordID>372110</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 5:36:56 PM</Data>
    <Data>18/03/2015 6:36:56 AM</Data>
    <Data>228d196ddac34e3e8e7cf50d9c831cab</Data>
    <Data>310</Data>
    <Data>49</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>14</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372109</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372108</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372107</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372106</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372105</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372104</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372103</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372102</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372101</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:29:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372100</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 5:29:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:29:31.000000000Z" />
    <EventRecordID>372099</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:22:45 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-172245.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0d6ddbb4
Analysis symbol: 
Rechecking for solution: 0
Report Id: 3010a203-cd37-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:22:45.000000000Z" />
    <EventRecordID>372098</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-172245.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0d6ddbb4</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>3010a203-cd37-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:21:55 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-172155.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_11c1196e
Analysis symbol: 
Rechecking for solution: 0
Report Id: 126930e3-cd37-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:21:55.000000000Z" />
    <EventRecordID>372097</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-172155.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_11c1196e</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>126930e3-cd37-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 5:21:55 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 5:21:55 PM 
Event time (UTC): 18/03/2015 6:21:55 AM 
Event ID: e78ac5c5d7114195b69034c4dce80628 
Event sequence: 296 
Event occurrence: 47 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 3 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:21:55.000000000Z" />
    <EventRecordID>372096</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 5:21:55 PM</Data>
    <Data>18/03/2015 6:21:55 AM</Data>
    <Data>e78ac5c5d7114195b69034c4dce80628</Data>
    <Data>296</Data>
    <Data>47</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>3</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:18:26 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-171826.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_17d9ea9c
Analysis symbol: 
Rechecking for solution: 0
Report Id: 9615e14d-cd36-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:18:26.000000000Z" />
    <EventRecordID>372095</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-171826.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_17d9ea9c</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>9615e14d-cd36-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:18:18 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-171818.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_1515c90b
Analysis symbol: 
Rechecking for solution: 0
Report Id: 90f68b59-cd36-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:18:18.000000000Z" />
    <EventRecordID>372094</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-171818.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_1515c90b</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>90f68b59-cd36-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 5:18:18 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 5:18:18 PM 
Event time (UTC): 18/03/2015 6:18:18 AM 
Event ID: 6159f5f982d941b18fb83db3c1d9431d 
Event sequence: 275 
Event occurrence: 45 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: auth.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.7.2.196 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 14 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:18:18.000000000Z" />
    <EventRecordID>372093</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 5:18:18 PM</Data>
    <Data>18/03/2015 6:18:18 AM</Data>
    <Data>6159f5f982d941b18fb83db3c1d9431d</Data>
    <Data>275</Data>
    <Data>45</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>auth.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.7.2.196</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>14</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372092</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372091</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372090</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372089</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372088</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372087</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372086</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372085</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372084</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 5:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372083</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 5:14:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:14:31.000000000Z" />
    <EventRecordID>372082</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:07:44 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-170744.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_02781ce8
Analysis symbol: 
Rechecking for solution: 0
Report Id: 171da68d-cd35-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:07:44.000000000Z" />
    <EventRecordID>372081</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-170744.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_02781ce8</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>171da68d-cd35-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 5:06:54 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-170654.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_05eb5979
Analysis symbol: 
Rechecking for solution: 0
Report Id: f94b4ad1-cd34-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:06:54.000000000Z" />
    <EventRecordID>372080</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-170654.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_05eb5979</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>f94b4ad1-cd34-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 5:06:54 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 5:06:54 PM 
Event time (UTC): 18/03/2015 6:06:54 AM 
Event ID: 817346421a7b406392d98d45d51595d6 
Event sequence: 266 
Event occurrence: 43 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 12 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T06:06:54.000000000Z" />
    <EventRecordID>372079</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 5:06:54 PM</Data>
    <Data>18/03/2015 6:06:54 AM</Data>
    <Data>817346421a7b406392d98d45d51595d6</Data>
    <Data>266</Data>
    <Data>43</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>12</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372078</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372077</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372076</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372075</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372074</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372073</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372072</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372071</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372070</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:59:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372069</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 4:59:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:59:31.000000000Z" />
    <EventRecordID>372068</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:52:43 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-165243.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_11b65ee7
Analysis symbol: 
Rechecking for solution: 0
Report Id: fe4e6e99-cd32-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:52:43.000000000Z" />
    <EventRecordID>372067</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-165243.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_11b65ee7</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>fe4e6e99-cd32-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:51:53 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-165153.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_15399adb
Analysis symbol: 
Rechecking for solution: 0
Report Id: e0643b31-cd32-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:51:53.000000000Z" />
    <EventRecordID>372066</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-165153.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_15399adb</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>e0643b31-cd32-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 4:51:53 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 4:51:53 PM 
Event time (UTC): 18/03/2015 5:51:53 AM 
Event ID: 2985860a740b46feb906ef3edf7db0f2 
Event sequence: 254 
Event occurrence: 41 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 8 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:51:53.000000000Z" />
    <EventRecordID>372065</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 4:51:53 PM</Data>
    <Data>18/03/2015 5:51:53 AM</Data>
    <Data>2985860a740b46feb906ef3edf7db0f2</Data>
    <Data>254</Data>
    <Data>41</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>8</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372064</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372063</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372062</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372061</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372060</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372059</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372058</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372057</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372056</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372055</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 4:44:30 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:44:30.000000000Z" />
    <EventRecordID>372054</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:37:42 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-163742.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_12d8a039
Analysis symbol: 
Rechecking for solution: 0
Report Id: e5629a3d-cd30-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:37:42.000000000Z" />
    <EventRecordID>372053</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-163742.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_12d8a039</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>e5629a3d-cd30-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:36:52 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-163652.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_145fdb82
Analysis symbol: 
Rechecking for solution: 0
Report Id: c75e2ccb-cd30-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:36:52.000000000Z" />
    <EventRecordID>372052</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-163652.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_145fdb82</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>c75e2ccb-cd30-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 4:36:52 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 4:36:52 PM 
Event time (UTC): 18/03/2015 5:36:52 AM 
Event ID: a5841a3bb9b34c898284f4170e243a08 
Event sequence: 242 
Event occurrence: 39 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 3 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:36:52.000000000Z" />
    <EventRecordID>372051</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 4:36:52 PM</Data>
    <Data>18/03/2015 5:36:52 AM</Data>
    <Data>a5841a3bb9b34c898284f4170e243a08</Data>
    <Data>242</Data>
    <Data>39</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>3</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372050</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372049</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372048</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372047</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372046</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372045</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372044</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372043</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372042</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:29:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372041</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 4:29:30 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:29:30.000000000Z" />
    <EventRecordID>372040</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:22:42 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-162242.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_17d6e1da
Analysis symbol: 
Rechecking for solution: 0
Report Id: cc82b1b7-cd2e-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:22:42.000000000Z" />
    <EventRecordID>372039</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-162242.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_17d6e1da</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>cc82b1b7-cd2e-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:21:51 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-162151.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0c5a1c58
Analysis symbol: 
Rechecking for solution: 0
Report Id: ae5f457f-cd2e-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:21:51.000000000Z" />
    <EventRecordID>372038</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-162151.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0c5a1c58</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>ae5f457f-cd2e-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 4:21:51 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 4:21:51 PM 
Event time (UTC): 18/03/2015 5:21:51 AM 
Event ID: 1b8677557b05401ea166ce59f553bdc3 
Event sequence: 228 
Event occurrence: 37 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 12 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:21:51.000000000Z" />
    <EventRecordID>372037</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 4:21:51 PM</Data>
    <Data>18/03/2015 5:21:51 AM</Data>
    <Data>1b8677557b05401ea166ce59f553bdc3</Data>
    <Data>228</Data>
    <Data>37</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>12</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372036</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372035</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372034</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372033</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372032</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372031</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372030</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372029</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372028</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 4:14:31 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372027</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 4:14:31 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:14:31.000000000Z" />
    <EventRecordID>372026</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:07:41 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-160741.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0c09232d
Analysis symbol: 
Rechecking for solution: 0
Report Id: b396dd5b-cd2c-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:07:41.000000000Z" />
    <EventRecordID>372025</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-160741.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_0c09232d</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>b396dd5b-cd2c-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 4:06:50 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-160650.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_16a45c82
Analysis symbol: 
Rechecking for solution: 0
Report Id: 9543c1cb-cd2c-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:06:50.000000000Z" />
    <EventRecordID>372024</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-160650.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_16a45c82</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>9543c1cb-cd2c-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 4:06:50 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 4:06:50 PM 
Event time (UTC): 18/03/2015 5:06:50 AM 
Event ID: 73cb6329411b4c499e6bd0c9a086906b 
Event sequence: 216 
Event occurrence: 35 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 3 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T05:06:50.000000000Z" />
    <EventRecordID>372023</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 4:06:50 PM</Data>
    <Data>18/03/2015 5:06:50 AM</Data>
    <Data>73cb6329411b4c499e6bd0c9a086906b</Data>
    <Data>216</Data>
    <Data>35</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>3</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372022</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372021</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372020</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372019</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372018</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: HelpServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372017</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>HelpServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AppServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372016</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AppServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: AsyncService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372015</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>AsyncService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: ApiServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372014</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>ApiServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:59:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DiscoveryService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372013</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DiscoveryService</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringTest
Date:          18/03/2015 3:59:30 PM
Event ID:      25088
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
A certificate registered for use by Microsoft Dynamics CRM is nearing its expiration date.  Certificate type: TrustedIssuer Certificate Name: fs.ap-cs.com.au/.../trust Expiration Date: 31/03/2015 11:56:54 AM Store Location:  Store Name: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringTest" />
    <EventID Qualifiers="32768">25088</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:59:30.000000000Z" />
    <EventRecordID>372012</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>TrustedIssuer</Data>
    <Data>fs.ap-cs.com.au/.../trust</Data>
    <Data>31/03/2015 11:56:54 AM</Data>
    <Data>
    </Data>
    <Data>
    </Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 3:52:40 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-155240.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_070b652c
Analysis symbol: 
Rechecking for solution: 0
Report Id: 9ac54309-cd2a-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:52:40.000000000Z" />
    <EventRecordID>372011</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-155240.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_070b652c</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>9ac54309-cd2a-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        Windows Error Reporting
Date:          18/03/2015 3:51:49 PM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Fault bucket , type 0
Event Name: CRMmanaged2
Response: Not available
Cab Id: 0
Problem signature:
P1: 6.0.0002.0051
P2: w3wp
P3: Microsoft.Crm.Application.Pages
P4: SecurityTokenException
P5: CreateClaims
P6: 11B
P7: 
P8: 
P9: 
P10: 
Attached files:
C:\Windows\Temp\CRMmanaged2Info-155149.txt
These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_126a9d48
Analysis symbol: 
Rechecking for solution: 0
Report Id: 7c427821-cd2a-11e4-8c82-005056856257
Report Status: 4
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="Windows Error Reporting" />
    <EventID Qualifiers="0">1001</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:51:49.000000000Z" />
    <EventRecordID>372010</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>CRMmanaged2</Data>
    <Data>Not available</Data>
    <Data>0</Data>
    <Data>6.0.0002.0051</Data>
    <Data>w3wp</Data>
    <Data>Microsoft.Crm.Application.Pages</Data>
    <Data>SecurityTokenException</Data>
    <Data>CreateClaims</Data>
    <Data>11B</Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
    </Data>
    <Data>
C:\Windows\Temp\CRMmanaged2Info-155149.txt</Data>
    <Data>C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_6.0.0002.0051_9e954bff772eb7de4d367cd62f9829f3f865ac5c_cab_126a9d48</Data>
    <Data>
    </Data>
    <Data>0</Data>
    <Data>7c427821-cd2a-11e4-8c82-005056856257</Data>
    <Data>4</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        ASP.NET 4.0.30319.0
Date:          18/03/2015 3:51:49 PM
Event ID:      1309
Task Category: Web Event
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
Event code: 3005 
Event message: An unhandled exception has occurred. 
Event time: 18/03/2015 3:51:49 PM 
Event time (UTC): 18/03/2015 4:51:49 AM 
Event ID: 9ce4f2244015428ca6148cb3ef32b160 
Event sequence: 204 
Event occurrence: 33 
Event detail code: 0 
Application information: 
    Application domain: /LM/W3SVC/1/ROOT-1-130711161894743274 
    Trust level: Full 
    Application Virtual Path: / 
    Application Path: C:\Program Files\Microsoft Dynamics CRM\CRMWeb\ 
    Machine name: APCRM01 
Process information: 
    Process ID: 3956 
    Process name: w3wp.exe 
    Account name: APBC\SVC_CRMAPP 
Exception information: 
    Exception type: SecurityTokenException 
    Exception message: ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Request information: 
    Request URL: crm.ap-cs.com.au/default.aspx 
    Request path: /default.aspx 
    User host address: 10.10.2.32 
    User:  
    Is authenticated: False 
    Authentication Type:  
    Thread account name: APBC\SVC_CRMAPP 
Thread information: 
    Thread ID: 13 
    Thread account name: APBC\SVC_CRMAPP 
    Is impersonating: True 
    Stack trace:    at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
Custom event details: 
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="ASP.NET 4.0.30319.0" />
    <EventID Qualifiers="32768">1309</EventID>
    <Level>3</Level>
    <Task>3</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:51:49.000000000Z" />
    <EventRecordID>372009</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>3005</Data>
    <Data>An unhandled exception has occurred.</Data>
    <Data>18/03/2015 3:51:49 PM</Data>
    <Data>18/03/2015 4:51:49 AM</Data>
    <Data>9ce4f2244015428ca6148cb3ef32b160</Data>
    <Data>204</Data>
    <Data>33</Data>
    <Data>0</Data>
    <Data>/LM/W3SVC/1/ROOT-1-130711161894743274</Data>
    <Data>Full</Data>
    <Data>/</Data>
    <Data>C:\Program Files\Microsoft Dynamics CRM\CRMWeb\</Data>
    <Data>APCRM01</Data>
    <Data>
    </Data>
    <Data>3956</Data>
    <Data>w3wp.exe</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>SecurityTokenException</Data>
    <Data>ID4175: The issuer of the security token was not recognized by the IssuerNameRegistry. To accept security tokens from this issuer, configure the IssuerNameRegistry to return a valid name for this issuer.
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
    <Data>crm.ap-cs.com.au/default.aspx</Data>
    <Data>/default.aspx</Data>
    <Data>10.10.2.32</Data>
    <Data>
    </Data>
    <Data>False</Data>
    <Data>
    </Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>13</Data>
    <Data>APBC\SVC_CRMAPP</Data>
    <Data>True</Data>
    <Data>   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.CreateClaims(SamlSecurityToken samlSecurityToken)
   at Microsoft.IdentityModel.Tokens.Saml11.Saml11SecurityTokenHandler.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Tokens.SecurityTokenHandlerCollection.ValidateToken(SecurityToken token)
   at Microsoft.IdentityModel.Web.TokenReceiver.AuthenticateToken(SecurityToken token, Boolean ensureBearerToken, String endpointUri)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.SignInWithResponseMessage(HttpRequest request)
   at Microsoft.IdentityModel.Web.WSFederationAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at Microsoft.Crm.Authentication.Claims.CrmFederatedAuthenticationModule.OnAuthenticateRequest(Object sender, EventArgs args)
   at System.Web.HttpApplication.SyncEventExecutionStep.System.Web.HttpApplication.IExecutionStep.Execute()
   at System.Web.HttpApplication.ExecuteStep(IExecutionStep step, Boolean& completedSynchronously)
</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: EmailConnector.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:44:30.000000000Z" />
    <EventRecordID>372008</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>EmailConnector</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: VssWriter.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:44:30.000000000Z" />
    <EventRecordID>372007</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>VssWriter</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentManagementTools.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:44:30.000000000Z" />
    <EventRecordID>372006</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentManagementTools</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: SandboxServer.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:44:30.000000000Z" />
    <EventRecordID>372005</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>SandboxServer</Data>
  </EventData>
</Event>
Log Name:      Application
Source:        MSCRMMonitoringServerRole
Date:          18/03/2015 3:44:30 PM
Event ID:      18689
Task Category: None
Level:         Information
Keywords:      Classic,Audit Success
User:          N/A
Computer:      APCRM01.1QR.COM.AU
Description:
All monitoring tests succeeded: Machine: APCRM01: ServerRole: DeploymentService.
Event Xml:
<Event xmlns="schemas.microsoft.com/.../event">
  <System>
    <Provider Name="MSCRMMonitoringServerRole" />
    <EventID Qualifiers="0">18689</EventID>
    <Level>0</Level>
    <Task>0</Task>
    <Keywords>0xa0000000000000</Keywords>
    <TimeCreated SystemTime="2015-03-18T04:44:30.000000000Z" />
    <EventRecordID>372004</EventRecordID>
    <Channel>Application</Channel>
    <Computer>APCRM01.1QR.COM.AU</Computer>
    <Security />
  </System>
  <EventData>
    <Data>APCRM01</Data>
    <Data>DeploymentService</Data>
  </EventData>
</Event>
Thank you,
Elina