mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-13 05:47:23 +00:00
Merge pull request #10523 from michaelAngeloEgypt/patch-7
implementing #10325
This commit is contained in:
commit
c5ef3deddf
@ -14,12 +14,18 @@ author: jsuther1974
|
||||
ms.reviewer: jogeurte
|
||||
ms.author: dansimp
|
||||
manager: dansimp
|
||||
ms.date: 04/30/2022
|
||||
ms.date: 05/09/2022
|
||||
ms.technology: windows-sec
|
||||
---
|
||||
|
||||
# Understanding Application Control events
|
||||
|
||||
**Applies to**
|
||||
|
||||
- Windows 10
|
||||
- Windows 11
|
||||
- Windows Server 2016 and later (limited events)
|
||||
|
||||
A Windows Defender Application Control (WDAC) policy logs events locally in Windows Event Viewer in either enforced or audit mode. These events are generated under two locations:
|
||||
|
||||
- Events about WDAC policy activation and the control of executables, dlls, and drivers appear in **Applications and Services logs** > **Microsoft** > **Windows** > **CodeIntegrity** > **Operational**
|
||||
|
Loading…
x
Reference in New Issue
Block a user