Windows Security Log Event ID 4653

Operating Systems Windows 2008 R2 and 7
Windows 2012 R2 and 8.1
Windows 2016 and 10
Windows Server 2019 and 2022
 • Subcategory
 • IPsec Main Mode
Type Failure
Corresponding events
in Windows 2003
and before

4653: An IPsec Main Mode negotiation failed

On this page

Free Security Log Resources by Randy

Supercharger Free Edition

Supercharger's built-in Xpath filters leave the noise behind.



Examples of 4653

An IPsec Main Mode negotiation failed.

Local Endpoint:
   Local Principal Name: %1
   Network Address: %3
   Keying Module Port: %4

Remote Endpoint:
   Principal Name:  %2
   Network Address: %5
   Keying Module Port: %6

Additional Information:
   Keying Module Name: %7
   Authentication Method: %10
   Role:   %12
   Impersonation State: %13
   Main Mode Filter ID: %14

Failure Information:
   Failure Point:  %8
   Failure Reason:  %9
   State:   %11
   Initiator Cookie:  %15
   Responder Cookie: %16

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection


Upcoming Webinars
    Additional Resources