in

eEye Digital Security

The endpoint to vulnerability starts here.

 

Audit 3490

Last post 11-05-2009 11:47 PM by SpaceAvailable. 2 replies.
Page 1 of 1 (3 items)
Sort Posts: Previous Next
  • 10-16-2009 6:34 AM

    Audit 3490

    I believe that I have my registry settings correctly set, but because this audit continues to show I am starting to doubt myself.

    Presently,

    I have set to audit the "everyone" group for failures and have the following checked: Set Value "Failed", Create subkey "Failed", and Delete "Failed". I have Allow Ingeritable permissions from parent to propagate to this object selected both under Access Control Settings and Permission for hive.

     

     

     

  • 10-16-2009 11:11 AM In reply to

    Re: Audit 3490

    Can you copy and paste the audit into this post please so we can see it?  What OS are you receving this audit result on?

  • 11-05-2009 11:47 PM In reply to

    Re: Audit 3490

     Major groan......... I recently re-wrote this audit because of several issues with propagation and inheritence. I still have nightmares about the code! I'm at home now and going from memory, but I believe the fixes are in 5.10.18 and later. Don't hold me to that, but it has been addressed.

    If you are running 5.10.18 are later and are still having this issue, please open a ticket and attach the support package so I can analyze it.

Page 1 of 1 (3 items)
© 1995 - 2009 eEye Incorporated