June 2017
Beginner to intermediate
742 pages
18h 29m
English
As we have seen previously, for successful auditing, we need to have SACL configured for the relevant AD objects. If there is no SACL entry, no events will be generated against that object. In order to configure SACL, we need domain admin or enterprise admin privileges. To add an SACL entry, perform the following steps: