This section contains the exercises and the Chapter review section in this chapter.
In Windows, the maximum size of a log is defined by right-clicking the log and selecting Properties. Then adjust the size in the Maximum Log Size field. Control what the system should do when the log size has been reached just below that by selecting Overwrite Events As Needed (called circular logging; overwrites and loses events), Archive The Log (saves the events in the full log as a separate file and will not lose events), or Do Not Overwrite Events (log must be cleared manually; log stops accepting new events and could lose event when full). See Figure 2-15.
Figure 2-15. Configuration of the security event logs (Windows)
In Ubuntu Linux, the ...