DirectAccess Server Availability - Network Security BFE

DirectAccess_Server_Availability_NetworkSecurityBFE (DependencyMonitor)

This alarm is a roll-up of the alarm in the Network Security component and indicates a BFE service crash.

Knowledge Base article:

Summary

This alarm is a roll-up of the alarm in Network Security component. This is a critical (red) alarm generated because the Base Filtering Engine (BFE) service crashed. The Base Filtering Engine (BFE) is a service that manages firewall and Internet Protocol security (IPsec) policies and implements user mode filtering. The alarm is cleared when the service comes back up. Disabling the BFE service will significantly reduce the security of the system and will also result in unpredictable behavior in IPsec management and firewall applications.

Resolutions

The service will restart automatically, or it can be restarted manually.

Element properties:

TargetDirectAccess_Server_Class
Parent MonitorSystem.Health.AvailabilityState
AlgorithmWorstOf
Source MonitorNetwork_Security_AvailabilityBFE
RelationshipDirectAccess_Server.Network_Security
CategoryCustom
EnabledTrue
Alert GenerateFalse
Alert Auto ResolveFalse
RemotableTrue
AccessibilityPublic

Source Code:

<DependencyMonitor ID="DirectAccess_Server_Availability_NetworkSecurityBFE" Accessibility="Public" Enabled="true" Target="DirectAccess_Server_Class" ParentMonitorID="Health!System.Health.AvailabilityState" Remotable="true" Priority="Normal" RelationshipType="DirectAccess_Server.Network_Security" MemberMonitor="Network_Security_AvailabilityBFE">
<Category>Custom</Category>
<Algorithm>WorstOf</Algorithm>
<MemberUnAvailable>Error</MemberUnAvailable>
</DependencyMonitor>