Kerberos by Garman Jason
				
							 
							
								
							
							
							Author:Garman, Jason. [Jason Garman]
							
							
							
							Language: eng
							
							
							
							Format: epub
							
							
							
							Tags: COMPUTERS / Security / General
							
							
																				
							ISBN: 9781449390778
							
							
							
							
							
							
							
							Publisher: O'Reilly Media
							
							
							
							Published: 2010-03-24T16:00:00+00:00
							
							
							
							
							
							
Open MMC and load the Active Directory Users and Computers snap-in.
Right-click on your domain, and choose Properties.
Select the Group Policy tab.
Select the Default Domain Policy GPO, and click Edit.
Navigate to Computer Configuration → Windows Settings → Security Settings → Event Log → Settings for Event Log.
You will now see the window shown in Figure 6-6.
Figure 6-6. Active Directory Group Policy event log settings
By double-clicking on Maximum security log size, you’ll be presented with a dialog box. Click “Define this policy setting” and set a maximum size (in this case, 10240 Kbytes). If you would like to change the log retention options, you can change the “Retain security log” and “Retention method for security log” settings in this window.
Next we’ll enable auditing for our domain. There are two different auditing options included in Windows, rather obscurely named “logon auditing” and “account logon auditing.” They both audit authentication requests, however, they audit different parts of the login process, and store the information on different hosts. Confused yet? Let’s take a look at the two choices:
Logon Auditing
This setting toggles the auditing of local Windows login events. These login events are not constrained to Kerberos-based logins; logon auditing will record login events for every type of authentication that Windows supports, such as NTLM. This type of logging is similar to a Secure Shell (or other application-level) log on a Unix box; it records the start and finish of a user’s login session. Therefore, logon auditing occurs on the individual servers that users log in to, and the corresponding audit logs only appear in that server’s Event Log.
Download
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.
Sass and Compass in Action by Wynn Netherland Nathan Weizenbaum Chris Eppstein Brandon Mathis(7921)
Grails in Action by Glen Smith Peter Ledbrook(7890)
Azure Containers Explained by Wesley Haakman & Richard Hooper(7231)
Configuring Windows Server Hybrid Advanced Services Exam Ref AZ-801 by Chris Gill(7229)
Running Windows Containers on AWS by Marcio Morales(6763)
Kotlin in Action by Dmitry Jemerov(5302)
Microsoft 365 Identity and Services Exam Guide MS-100 by Aaron Guilmette(5285)
Microsoft Cybersecurity Architect Exam Ref SC-100 by Dwayne Natwick(5004)
Combating Crime on the Dark Web by Nearchos Nearchou(4863)
The Ruby Workshop by Akshat Paul Peter Philips Dániel Szabó and Cheyne Wallace(4554)
Management Strategies for the Cloud Revolution: How Cloud Computing Is Transforming Business and Why You Can't Afford to Be Left Behind by Charles Babcock(4499)
The Age of Surveillance Capitalism by Shoshana Zuboff(4126)
Python for Security and Networking - Third Edition by José Manuel Ortega(4116)
Learn Wireshark by Lisa Bock(3929)
The Ultimate Docker Container Book by Schenker Gabriel N.;(3775)
Learn Windows PowerShell in a Month of Lunches by Don Jones(3576)
DevSecOps in Practice with VMware Tanzu by Parth Pandit & Robert Hardt(3443)
Windows Ransomware Detection and Protection by Marius Sandbu(3437)
Blockchain Basics by Daniel Drescher(3435)
