Object Access: Audit File ShareID: oval:org.secpod.oval:def:14747 | Date: (C)2013-08-13 (M)2022-10-10 |
Class: COMPLIANCE | Family: windows |
This policy setting allows you to audit attempts to access a shared folder.
If you configure this policy setting, an audit event is generated when an attempt is made to access a shared folder. If this policy setting is defined, the administrator can specify whether to audit only successes, only failures, or both successes and failures.
Note: There are no system access control lists (SACLs) for shared folders.
If this policy setting is enabled, access to all shared folders on the system is audited.
Volume: High on a file server or domain controller because of SYSVOL network access required by Group Policy.
Fix:
(1) GPO: Computer Configuration\Windows Settings\Security Settings\Advanced Audit Policy Configuration\System Audit Policies\Object Access\Audit File Share
(2) REG: INFO NOT AVAILABLE
Platform: |
Microsoft Windows 7 |