is this normail?



what should I do about this?

Event Type: Failure Audit
Event Source: Security
Event Category: Detailed Tracking
Event ID: 861
Date: 2006-11-20
Time: 08:36:59
User: NT AUTHORITY\SYSTEM
Computer: IEI-A64
Description:
The Windows Firewall has detected an application listening for incoming
traffic.

Name: -
Path: C:\WINDOWS\system32\lsass.exe
Process identifier: 1064
User account: SYSTEM
User domain: NT AUTHORITY
Service: Yes
RPC server: No
IP version: IPv4
IP protocol: UDP
Port number: 4500
Allowed: No
User notified: No

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.


.



Relevant Pages

  • Re: Event 861 fills event log on newly built Domain Controller
    ... Event Source: Security ... Event Category: Detailed Tracking ... User domain: NT AUTHORITY ...
    (microsoft.public.windows.server.active_directory)
  • Event ID 861
    ... I am getting a lot of events in the security log with ID 861: ... Event Type: Failure Audit ... Event Source: Security ... Event Category: Detailed Tracking ...
    (microsoft.public.windowsxp.general)
  • Event ID 861
    ... My Security Log is filling up with these: ... Event Type: Failure Audit ... Event Source: Security ... Event Category: Detailed Tracking ...
    (microsoft.public.windowsxp.general)
  • event ID 861
    ... Event Source: Security ... Event Category: Detailed Tracking ... Computer: mypc ...
    (microsoft.public.windowsxp.security_admin)
  • Windows XP/Server 2003 firewall logging
    ... >Is it possible to disable security logging of 861 events ... (Detailed Tracking ... >of Windows Firewall), ...
    (microsoft.public.security)