Event ID - 16

Event Id16
SourceMicrosoft-Windows-CertificationAuthority
DescriptionActive Directory Certificate Services did not start: Unable to initialize OLE: %1.
Event InformationAccording to Microsoft :

Cause :

This event is logged when Active Directory Certificate Services did not start and unable to initialize the OLE.

Resolution

Fix problems with OLE components

To perform these procedures, you must have Manage CA permission, or you must have been delegated the appropriate authority.

To resolve problems with OLE components:

Check the event message description, as well as any additional messages, particularly COM and DCOM errors or warnings, preceding or immediately following this message for additional information.

Use the Reliability and Performance Monitor to assess memory and disk usage on the computer hosting the certification authority (CA). If necessary, increase Windows resources by adding physical memory, virtual memory, or physical storage.

Restart the computer and, if it does not restart automatically, the CA.

Create a debug log

To create a debug log:
  1. On the computer hosting the CA, click Start , type cmd and press ENTER.
  2. Type certutil -setreg ca\debug 0xffffffe3 and press ENTER.
  3. Click Start , point to Administrative Tools , and click Services .
  4. Select the Active Directory Certificate Services service, and click Start .
  5. When you have reproduced the issue, locate the certsrv.log file containing advanced diagnostic information in the %windir% directory.
  6. When you have finished generating the diagnostics, disable debugging by opening a command prompt window.
  7. Type certutil -delreg ca\debug and press ENTER.
Enable CryptoAPI 2.0 Diagnostics

To enable CryptoAPI 2.0 Diagnostics:
  1. On the computer hosting the CA, click Start , point to Administrative Tools , and click Event Viewer .
  2. In the console tree, expand Event Viewer, Applications and Services Logs, Microsoft, Windows , and CAPI2 .
  3. Right-click Operational , and click Enable Log .
  4. Click Start , point to Administrative Tools , and click Services .
  5. Right-click Active Directory Certificate Services , and click Restart .
Verify :

To perform this procedure, you must have membership in local Administrators on the computer hosting the certification authority (CA), or you must have been delegated the appropriate authority.

To confirm that the CA service is available:
  1. On the computer hosting the CA, click Start , type cmd and press ENTER.
  2. Type certutil -config -ping and press ENTER.CAconfig is the CA configuration string, in the form CAhostname\CAname.
Reference LinksEvent ID 16 from Source Microsoft-Windows-CertificationAuthority

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.