Site icon EfmSoft

What does NTSTATUS 0xC000A010 (STATUS_IPSEC_QUEUE_OVERFLOW) mean?

 
Previous Next
STATUS_EOF_ON_GHOSTED_RANGE STATUS_ND_QUEUE_OVERFLOW

STATUS_IPSEC_QUEUE_OVERFLOW

A pipeline-capacity status, not an IPsec authenticity verdict

STATUS_IPSEC_QUEUE_OVERFLOW means that Windows reached the capacity of an internal queue used while IPsec-related processing was still pending. The packet was not accepted for later processing simply because the queue had no room; this status does not say that the packet failed ESP authentication, matched the wrong security association, or violated a policy selector.

Treat it as a pressure signal. Correlate the time of the drops with packet rate, IKE/AuthIP negotiation activity, CPU pressure, and any WFP callout or firewall telemetry. The useful question is which stage was backlogged and why; increasing retries at the application layer normally cannot recover the packet that has already been discarded.

What to verify

References


Looking for a different code? Search another status or error code.

Exit mobile version