2.2.3 Global Object Access Audit Settings

This section defines settings that enable an administrator to set the global object access auditing settings for an advanced audit policy.

Global object access audit settings are used by administrators to define system access control lists (SACLs) that apply dynamically to every object in a specific resource manager. When a global object access audit setting is defined, the auditing system combines the SACL defined in the security descriptor that is being accessed with the global object access SACL for the corresponding resource manager. An event is logged if either of the two SACLs (object SACL or global SACL) determines that the activity is to be audited.

The syntax for the entries in this category MUST be as follows.

  
 GlobalObjectAccessAuditSettings = MachineName ",," ResourceGlobalSaclType ",,,," GlobalSACL