EAC Events

The following table  describes the EAC events (App ID = 28).

Event Name

ID

Description

Parameters

Trigger

EAC Posture Signer set

0

A certificate handle for signing EAC postures was either set or removed (event is logged only if the posture is modified).

None

WS-MAN:

An association of type AMT_EACCredentialContext was created or deleted between Intel AMT EAC Service and a certificate.

AMT_EACCredentialContext.Put

EAC Enabled

1

EAC was set to "enabled" by WS-MAN interface (only if state actually changed)

None

WS-MAN: method RequestStateChange of object AMT_EndpointAccessControlService called with parameter "Enabled" and executed successfully.

EAC Disabled

2

EAC was set to "disabled" by WS-MAN interface (only if state actually changed)

None

WS-MAN: RequestStateChange of object AMT_EndpointAccessControlService called with parameter "Disabled".

EAC Posture State update

3

Controllable fields of EAC posture (BOOT counters or Agent Presence counters) were reset manually by WS-MAN interface

None

WS-MAN: UpdatePostureState of object AMT_EndpointAccessControlService called with a valid parameter.

EAC Set Options

4

EAC options were changed

UINT32 EacVendors

WS-MAN: AMT_EndpointAccessControlService.SetEacOptions called and executed successfully.

Log may be recorded also when the method fails afterwards with PT_STATUS_INTERNAL_ERROR or PT_STATUS_FLASH_WRITE_LIMIT_EXCEEDED return values.

Copyright © 2006-2022, Intel Corporation. All rights reserved.