Event 2889 reports the Client's IP Address of Bind Requests without LDAPServerIntegrity of the LDAP Message
From what LDAPWiki can determine this is done regardless of weather this Domain Controller is configured to reject Bind Request without LDAPServerIntegrity
The following client performed a SASL (Negotiate/Kerberos/NTLM/Digest) LDAP bind without requesting signing (integrity verification), or performed a simple bind over a cleartext (non-SSL/TLS-encrypted) LDAP connection. Client IP address: "Value" Identity the client attempted to authenticate as: "Value"