[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Audit Policy: Global Object Access Auditing: File System

ID: oval:org.secpod.oval:def:19097Date: (C)2014-05-29   (M)2021-06-02
Class: COMPLIANCEFamily: windows




Auditing of Global Object Access Auditing: File System events on success should be enabled or disabled as appropriate. File System (Global Object Access Auditing), which enables you to configure a global system access control list (SACL) on the file system for an entire computer. If you select the Configure security check box on the policy's property page, you can add a user or group to the global SACL. This enables you to define computer system access control lists (SACLs) per object type for the file system. The specified SACL is then automatically applied to every file system object type. If both a file or folder SACL and a global SACL are configured on a computer, the effective SACL is derived by combining the file or folder SACL and the global SACL. This means that an audit event is generated if an activity matches either the file or folder SACL or the global SACL. This policy setting must be used in combination with the File System security policy setting under Object Access. Fix: (1) GPO: Commandline: auditpol.exe (2) REG: NO INFO

Platform:
Microsoft Windows Server 2008 R2
Reference:
CCE-11153-4
CPE    1
cpe:/o:microsoft:windows_server_2008:r2
CCE    1
CCE-11153-4

© SecPod Technologies