WindowsAdvancedAuditPolicyMap
The main purpose of this project is to establish an exhaustive map of the correspondence between Windows advanced audit policy settings and event ids.
Install / Use
/learn @little-kawa/WindowsAdvancedAuditPolicyMapREADME
Purpose
The first purpose of this project is to establish an exhaustive map of the correspondence between Windows advanced audit policy settings and event ids.<br/> I then added the estimated volume of each policy settings if enabled.<br/> I also marked audit policy settings recommended by ANSSI to be enabled.<br/> This project is based on the documentation for Windows 10/11 and Windows Server >= 2016<br/><br/>
<p align="center"> <a href="Files/WindowsAdvancedAuditPolicy.pdf" alt="WindowsAdvancedAuditPolicy.pdf">Display the PDF version</a> </p>Contribution
If you have ideas to improve this project, contributions are of course welcome <3
Documentation
Related Skills
healthcheck
349.9kHost security hardening and risk-tolerance configuration for OpenClaw deployments
node-connect
349.9kDiagnose OpenClaw node connection and pairing failures for Android, iOS, and macOS companion apps
prose
349.9kOpenProse VM skill pack. Activate on any `prose` command, .prose files, or OpenProse mentions; orchestrates multi-agent workflows.
frontend-design
109.8kCreate distinctive, production-grade frontend interfaces with high design quality. Use this skill when the user asks to build web components, pages, or applications. Generates creative, polished code that avoids generic AI aesthetics.
Security Score
Audited on Jun 2, 2025
