Ensure No Auditing for 'Audit Policy: Object Access: Kernel Object'
|ID: oval:org.secpod.oval:def:22765||Date: (C)2015-01-07 (M)2017-09-27|
|Class: COMPLIANCE||Family: windows|
This settings determines whether to audit the event of a user who attempts to access an object that has a specified system access control list (SACL), effectively enabling auditing to take place. It is targeted to Kernal Object access processes.
|Microsoft Windows Server 2012 R2|