Files
windows-itpro-docs/windows/device-security/auditing/event-4774.md
Nicholas Brower 1ae3f0b230 Merged PR 4822: "msdate update (generated from most recent commit date)"
"msdate update (generated from most recent commit date)"
2017-12-05 22:36:05 +00:00

974 B

title, description, ms.pagetype, ms.prod, ms.mktglfcycl, ms.sitesec, author, ms.date
title description ms.pagetype ms.prod ms.mktglfcycl ms.sitesec author ms.date
4774(S, F) An account was mapped for logon. (Windows 10) Describes security event 4774(S, F) An account was mapped for logon. security w10 deploy library Mir0sh 04/19/2017

4774(S, F): An account was mapped for logon.

Applies to

  • Windows 10
  • Windows Server 2016

Success events do not appear to occur. Failure event has been reported.

Subcategory: Audit Credential Validation

Event Schema:

An account was mapped for logon.

Authentication Package:Schannel

Account UPN:<Acccount>@<Domain>

Mapped Name:<Account>

Required Server Roles: no information.

Minimum OS Version: no information.

Event Versions: 0.

Security Monitoring Recommendations

  • There is no recommendation for this event in this document.