5.1 KiB
title, description, ms.assetid, ms.pagetype, ms.prod, ms.mktglfcycl, ms.sitesec, author, ms.date
title | description | ms.assetid | ms.pagetype | ms.prod | ms.mktglfcycl | ms.sitesec | author | ms.date |
---|---|---|---|---|---|---|---|---|
Audit Certification Services (Windows 10) | This topic for the IT professional describes the Advanced Security Audit policy setting, Audit Certification Services, which determines whether the operating system generates events when Active Directory Certificate Services (ADÂ CS) operations are performed. | cdefc34e-fb1f-4eff-b766-17713c5a1b03 | security | w10 | deploy | library | Mir0sh | 04/19/2017 |
Audit Certification Services
Applies to
- Windows 10
- Windows Server 2016
Audit Certification Services determines whether the operating system generates events when Active Directory Certificate Services (AD CS) operations are performed.
Examples of AD CS operations include:
-
AD CS starts, shuts down, is backed up, or is restored.
-
Certificate revocation list (CRL)-related tasks are performed.
-
Certificates are requested, issued, or revoked.
-
Certificate manager settings for AD CS are changed.
-
The configuration and properties of the certification authority (CA) are changed.
-
AD CS templates are modified.
-
Certificates are imported.
-
A CA certificate is published to Active Directory Domain Services.
-
Security permissions for AD CS role services are modified.
-
Keys are archived, imported, or retrieved.
-
The OCSP Responder Service is started or stopped.
Monitoring these operational events is important to ensure that AD CS role services are functioning properly.
Event volume: Low to medium on servers that provide AD CS role services.
Role-specific subcategories are outside the scope of this document.
Computer Type | General Success | General Failure | Stronger Success | Stronger Failure | Comments |
---|---|---|---|---|---|
Domain Controller | IF | IF | IF | IF | IF – if a server has the Active Directory Certificate Services (AD CS) role installed and you need to monitor AD CS related events, enable this subcategory. |
Member Server | IF | IF | IF | IF | IF – if a server has the Active Directory Certificate Services (AD CS) role installed and you need to monitor AD CS related events, enable this subcategory. |
Workstation | No | No | No | No | Active Directory Certificate Services (AD CS) role cannot be installed on client OS. |