WS-Management操作生成安全审核事件 [英] WS-Management operations generating security audit events
问题描述
我观察到,当我使用WS-Management执行远程操作时,会为每个操作生成单独的登录事件。 例如,如果我创建一个shell或执行get操作,则会生成三个新的安全审核事件(每个
操作):
I am observing that, when I use WS-Management to perform remote operations, a separate logon event is generated for each one. For example, if I create a shell or if I perform a get operation, there are three new security audit events generated (per operation):
Audit Success 5/11/2016 8:53:47 AM Microsoft Windows security auditing. 4672 Special Logon
Audit Success 5/11/2016 8:53:47 AM Microsoft Windows security auditing. 4624 Logon
Audit Success 5/11/2016 8:53:47 AM Microsoft Windows security auditing. 4624 Logoff
我有一个广泛使用WS-Management WMI提供程序的应用程序,因此它产生了大量的这些事件。 有什么办法可以避免产生这些事件吗?
I have an application that makes extensive use of the WS-Management WMI provider, and consequently it is generating tons of these events. Is there any way to avoid generating these events?
谢谢!
推荐答案
你好fhv_dave,
Hi fhv_dave,
感谢您联系协议论坛。 在审核中,这是其他论坛的问题。 协议论坛适用于开放规范计划的文档支持团队,但不适用于咨询支持。
Thank you for contacting the protocols forums. In reviewing, this is a question for other forums. The protocols forum is for the documentation support team on the open specifications program but not for advisory support.
但是,我们做的ave其他论坛,可以针对Windows SDK支持引导此问题。 此问题适合Windows SDK论坛:
However, we do have other forums that this question could be directed for Windows SDK support. This question fits the Windows SDK forums:
  https://social.msdn.microsoft.com/Forums/en-US/home?forum=windowssdk
https://social.msdn.microsoft.com/Forums/en-US/home?forum=windowssdk
这可以在那里发布,供社区评论并提供任何评论。
This can be posted there for community to review and offer any commentary.
谢谢你,
Nathan Manis
Nathan Manis
Microsoft协议文档支持团队
Microsoft Protocols Documentation Support Team
这篇关于WS-Management操作生成安全审核事件的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!