Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.109587
Categoría:Policy
Título:Microsoft Windows: Audit Logon
Resumen:Audit Logon determines whether the operating system generates;audit events when a user attempts to log on to a computer.;;These events are related to the creation of logon sessions and occur on the computer that was;accessed. For an interactive logon, events are generated on the computer that was logged on to. For;a network logon, such as accessing a share, events are generated on the computer that hosts the;resource that was accessed.;;The following events are recorded:;; - Logon success and failure.;; - Logon attempts by using explicit credentials. This event is generated when a process attempts to;log on an account by explicitly specifying that account's credentials. This most commonly occurs in;batch configurations such as scheduled tasks, or when using the RunAs command.;; - Security identifiers (SIDs) are filtered.;;Logon events are essential to tracking user activity and detecting potential attacks.;;Event volume:;; - Low on a client computer.;; - Medium on a domain controllers or network servers.;;;(C) Microsoft Corporation 2017.
Descripción:Summary:
Audit Logon determines whether the operating system generates
audit events when a user attempts to log on to a computer.

These events are related to the creation of logon sessions and occur on the computer that was
accessed. For an interactive logon, events are generated on the computer that was logged on to. For
a network logon, such as accessing a share, events are generated on the computer that hosts the
resource that was accessed.

The following events are recorded:

- Logon success and failure.

- Logon attempts by using explicit credentials. This event is generated when a process attempts to
log on an account by explicitly specifying that account's credentials. This most commonly occurs in
batch configurations such as scheduled tasks, or when using the RunAs command.

- Security identifiers (SIDs) are filtered.

Logon events are essential to tracking user activity and detecting potential attacks.

Event volume:

- Low on a client computer.

- Medium on a domain controllers or network servers.


(C) Microsoft Corporation 2017.

CVSS Score:
0.0

CVSS Vector:
AV:L/AC:H/Au:S/C:N/I:N/A:N

CopyrightCopyright (C) 2018 Greenbone Networks GmbH

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.