[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Audit Policy: Object Access: Removable Storage

ID: oval:org.secpod.oval:def:96126Date: (C)2023-12-27   (M)2023-12-27
Class: COMPLIANCEFamily: windows




This policy setting allows you to audit user attempts to access file system objects on a removable storage device. A security audit event is generated only for all objects for all types of access requested. If you configure this policy setting, an audit event is generated each time an account accesses a file system object on a removable storage. Success audits record successful attempts and Failure audits record unsuccessful attempts. If you do not configure this policy setting, no audit event is generated when an account accesses a file system object on a removable storage. The recommended state for this setting is: Success and Failure . Fix: (1) GPO: Computer Configuration\Windows Settings\Security Settings\Advanced Audit Policy Configuration\Audit Policies\Object Access\Audit Policy: Object Access: Removable Storage (2) REG: NO REGISTRY INFO

Platform:
Microsoft Windows Server 2012
Reference:
CCE-99887-2
CPE    1
cpe:/o:microsoft:windows_server_2012:-
CCE    1
CCE-99887-2
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_2012

© SecPod Technologies