[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244625

 
 

909

 
 

193379

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

Audit Policy: System: Security State Change

ID: oval:org.secpod.oval:def:18947Date: (C)2014-05-29   (M)2021-06-02
Class: COMPLIANCEFamily: windows




Auditing of System: Security State Change events on failure should be enabled or disabled as appropriate. Audit Security State Change, which determines whether Windows generates audit events for changes in the security state of a system. Changes in the security state of the operating system include: * System startup and shutdown. * Change of system time. System recovery from CrashOnAuditFail. This event is logged after a system reboots following CrashOnAuditFail. System startup and shutdown events are important for understanding system usage. Fix: (1) GPO: Commandline: auditpol.exe (2) REG: NO INFO

Platform:
Microsoft Windows Server 2008 R2
Reference:
CCE-10892-8
CPE    1
cpe:/o:microsoft:windows_server_2008:r2
CCE    1
CCE-10892-8

© SecPod Technologies