EventSentry
  • System32
  • Sysmon
  • Events
  • Compliance
  • Validator
  • TLS/SSL
  • GeoIP
  • Tools


Windows Security Events



Audit Category
  • Policy Change (4)
Operating Systems
  • Windows 10 (4)
  • Windows 11 (4)
  • Windows 2008 (4)
  • Windows 2008 R2 (4)
  • Windows 2012 (4)
  • Windows 2012 R2 (4)
  • Windows 2016 (4)
  • Windows 2019 (4)
  • Windows 2022 (4)
  • Windows 7 (4)
  • Windows 8 (4)
  • Windows 8.1 (4)
  • Windows Vista (4)
Tags
  • Audit Failure (3)
  • Audit Success (1)
Auditing
  • Always (4)
Volume
  • Low (4)
Audit Subcategory
  • MPSSVC Rule-Level Policy Change (4)

AppLocker
  • All AppLocker events
EventSentry
  • All EventSentry events
Security
  • All Windows Security events
Sysmon
  • All Sysmon events
ID Event Description
4944 The following policy was active when the Windows Firewall started
Audit Success
4951 Windows Firewall ignored a rule because its major version number is not recognized
Audit Failure
4952 Windows Firewall ignored parts of a rule because its minor version number is not recognized
Audit Failure
4953 Windows Firewall ignored a rule because it could not be parsed
Audit Failure



© netikus.net ltd 2002-2025 | EventSentry | Event Log Messages | Codes | Sysmon | STIG | AppLocker | Privacy Policy