Windows Security Log Event ID 4945

Operating Systems Windows 2008 R2 and 7
Windows 2012 R2 and 8.1
Windows 2016 and 10
Windows Server 2019 and 2022
Category
 • Subcategory
Policy Change
 • MPSSVC Rule-Level Policy Change
Type Success
Corresponding events
in Windows 2003
and before
849 , 850  

4945: A rule was listed when the Windows Firewall started

On this page

This event is logged aproximately 1.7 bazillion times everytime Windows Firewall starts which results in a full record of all rules that were in place at the time Windows Firewall started. 

These rules are defined in Group Policy and in the Windows Firewall with Advanced Services MMC console.

Free Security Log Resources by Randy

Supercharger Free Edition


Your entire Windows Event Collection environment on a single pane of glass.

Free.

 

Examples of 4945

A rule was listed when the Windows Firewall started.

Profile used: Public

Rule:

   Rule ID: DNSSrv-UDP-Out
   Rule Name: All Outgoing (UDP)

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection



 

Upcoming Webinars
    Additional Resources

      Go To Event ID:

      Security Log
      Quick Reference
      Chart
      Download now!