Event ID 16937 — Security Configuration

Applies To: Windows Server 2008

The Security Accounts Manager (SAM) is a service that is used during the logon process. The SAM maintains user account information, including groups to which a user belongs. The SAM is attempting to secure the computer accounts by removing the default Full Control permissions, which are assigned to the Builtin Account Operators group, from the access control entry (ACE) of a computer account.

Event Details

Product: Windows Operating System
ID: 16937
Source: SAM
Version: 6.0
Symbolic Name: SAMMSG_MACHINE_ACCOUNT_SECURE
Message: Secured the computer account %1. Full control was removed for the builtin\account operators acess control entry for the security descriptor of this object.

Resolve

This is a normal condition. No further action is required.

Security Configuration

Active Directory