---
title: "ControlUp-action-auditing-Event-ID-5000"
slug: "controlup-action-auditing-event-id-5000"
updated: 2025-09-07T11:14:21Z
published: 2025-09-07T11:14:21Z
canonical: "support.controlup.com/controlup-action-auditing-event-id-5000"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://support.controlup.com/llms.txt
> Use this file to discover all available pages before exploring further.

# ControlUp-action-auditing-Event-ID-5000

## **Symptoms**

Event ID 5000 Error appears on the Application Log, in the event viewer with the source ControlUp Auditing. This event comes as an error and information, and indicates whether an action within the Real-Time DX Console (i.e. Get Session Screenshot, start Hypervisor, power actions, Change XenApp Logon Mode, etc.) succeeded or failed.

If the action was on the agent\target machine, i.e. **Flush DNS**, the event will be written in the event viewer of the target machine.

![Event properties window with Event 5000 as an error](https://cdn.document360.io/098100b7-b9da-4bea-b4b9-017140ab863e/Images/Documentation/ControlUp%20KaaS%20Event%20ID%205000.png)

![Event properties window with Event 5000 as an information](https://cdn.document360.io/098100b7-b9da-4bea-b4b9-017140ab863e/Images/Documentation/ControlUp%20KaaS%20Event%20ID%205000_1.png)

Event ID 5000 appears on ControlUp Monitor as an Information

## **Solution**

The audit trail in ControlUp allows you to track actions that took place in the Console (successful and failed). The auditing trail is crucial due to the extensive management actions that are available within the Console. The audit trail is hard-coded in the product and not configurable.
