<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Auditing Changes in Windows Server 2003 SP1</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx</link><description>DISCLAIMER: To the best of my knowledge the information here is correct. However the lawyers make me say, that this information is provided "AS-IS" with no warranty, and confers no rights. In other words, if this stuff isn't in SP1, you can't sue us,</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>re: Auditing Changes in Windows Server 2003 SP1</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#327885</link><pubDate>Tue, 21 Dec 2004 03:20:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:327885</guid><dc:creator>Pavel Lebedinsky</dc:creator><description>&amp;gt; As background, some privileges are not audited when used...&lt;br&gt;&lt;br&gt;What is the reason for this? Performance?</description></item><item><title>re: Auditing Changes in Windows Server 2003 SP1</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#328774</link><pubDate>Tue, 21 Dec 2004 15:14:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:328774</guid><dc:creator>Drew</dc:creator><description>Sounds useful but its a pity that this could not be set on a group by group basis. Unless I am missing something... (more than likely!)</description></item><item><title>Per-User Selective Audit in Windows Server 2003</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#329693</link><pubDate>Wed, 22 Dec 2004 12:10:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:329693</guid><dc:creator>Sergey Simakov blog</dc:creator><description /></item><item><title>re: Auditing Changes in Windows Server 2003 SP1</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#330023</link><pubDate>Wed, 22 Dec 2004 17:58:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:330023</guid><dc:creator>Eric Fitzgerald</dc:creator><description>The privileges originally excluded from audit were just too noisy- for example, SeChangeNotifyPrivilege (bypass traverse checking) is used in practically every access to the file &amp;amp; registry.&lt;br&gt;&lt;br&gt;Per-group auditing is under consideration post-Longhorn.  It poses significant technical challenges to implement.&lt;br&gt;</description></item><item><title>Windows Security Logging and Other Esoterica</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#330193</link><pubDate>Thu, 23 Dec 2004 00:53:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:330193</guid><dc:creator>strawberryJAMM's Security and User Experience WebL</dc:creator><description>I discovered that one of the colleagues on my team - Eric Fitzgerald, the </description></item><item><title>Windows Security Logging and Other Esoterica</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#331029</link><pubDate>Thu, 23 Dec 2004 06:55:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:331029</guid><dc:creator>strawberryJAMM's Security and User Experience WebL</dc:creator><description>I discovered that one of the colleagues on my team - Eric Fitzgerald, the </description></item><item><title>Per-User Selective Audit in Windows Server 2003</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#331651</link><pubDate>Fri, 24 Dec 2004 10:27:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:331651</guid><dc:creator>Sergey Simakov blog</dc:creator><description /></item><item><title>Keeping the noise down in your security log</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#350849</link><pubDate>Tue, 11 Jan 2005 23:02:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:350849</guid><dc:creator>Windows Security Logging and Other Esoterica</dc:creator><description /></item><item><title>Keeping the noise down in your security log</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#351025</link><pubDate>Wed, 12 Jan 2005 03:18:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:351025</guid><dc:creator>Windows Security Logging and Other Esoterica</dc:creator><description /></item><item><title>Keeping the noise down in your security log</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#354239</link><pubDate>Mon, 17 Jan 2005 09:27:00 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:354239</guid><dc:creator>Windows Security Logging and Other Esoterica</dc:creator><description /></item><item><title>WS03 User based auditing </title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#447146</link><pubDate>Wed, 03 Aug 2005 17:23:55 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:447146</guid><dc:creator>Learning to Fly - Mika's Blog</dc:creator><description /></item><item><title>WS03 User based auditing </title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#447148</link><pubDate>Wed, 03 Aug 2005 17:25:25 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:447148</guid><dc:creator>Learning to Fly - Mika's Blog</dc:creator><description /></item><item><title>WS03 User based auditing </title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#447156</link><pubDate>Wed, 03 Aug 2005 17:50:32 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:447156</guid><dc:creator>Learning to Fly - Mika's Blog</dc:creator><description /></item><item><title>Windows Security Blogs  &amp;raquo; Blog Archive   &amp;raquo; Auditing Changes in Windows Server 2003 SP1</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#1876350</link><pubDate>Wed, 14 Mar 2007 02:18:52 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:1876350</guid><dc:creator>Windows Security Blogs  » Blog Archive   » Auditing Changes in Windows Server 2003 SP1</dc:creator><description>&lt;p&gt;PingBack from &lt;a rel="nofollow" target="_new" href="http://winblogs.security-feed.com/2004/12/20/auditing-changes-in-windows-server-2003-sp1/"&gt;http://winblogs.security-feed.com/2004/12/20/auditing-changes-in-windows-server-2003-sp1/&lt;/a&gt;&lt;/p&gt;
</description></item><item><title>Parolele Windows şi recomandări în rapoarte de audit. Dileme din practică</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#2163412</link><pubDate>Tue, 17 Apr 2007 17:02:11 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:2163412</guid><dc:creator>Adrian Munteanu - Jurnal de optimist</dc:creator><description>&lt;p&gt;Deşi subiectul este destul de sensibil, risc. Mă frăm&amp;#238;ntă de vreo c&amp;#238;teva zile unele lucruri descoperite&lt;/p&gt;
</description></item><item><title> Windows Security Logging and Other Esoterica Auditing Changes in | debt consolidator</title><link>http://blogs.msdn.com/ericfitz/archive/2004/12/20/327478.aspx#9789150</link><pubDate>Fri, 19 Jun 2009 18:24:49 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:9789150</guid><dc:creator> Windows Security Logging and Other Esoterica Auditing Changes in | debt consolidator</dc:creator><description>&lt;p&gt;PingBack from &lt;a rel="nofollow" target="_new" href="http://mydebtconsolidator.info/story.php?id=19320"&gt;http://mydebtconsolidator.info/story.php?id=19320&lt;/a&gt;&lt;/p&gt;
</description></item></channel></rss>