Windows 2003 Auditing help
Hi,Is there a way to audit the NW settings change in Windows 2003? I mean if somebody changes the settings in local area connection may be DNS suffix etc. Also how to audit the access events on Default shares like C$ and D$?Which auditing should I enable to achieve this like object access, previlage use or any other?Also, any idea on which events (event ID) will be ogged for above scenerios?Thanks in advance for any help!
February 8th, 2010 12:55pm
Hi,
You can enable the object access auditing:
Audit object accesshttp://technet.microsoft.com/en-us/library/cc776774(WS.10).aspxThanks.<!---->
This posting is provided "AS IS" with no warranties, and confers no rights.
Free Windows Admin Tool Kit Click here and download it now
February 10th, 2010 6:22am


