mirror of
https://github.com/Yamato-Security/WELA.git
synced 2025-12-06 17:22:50 +01:00
fix: subcategory
This commit is contained in:
36
WELA.ps1
36
WELA.ps1
@@ -758,12 +758,12 @@ function GuideYamatoSecurity
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Logon/Logoff)",
|
"Security Advanced (Logon/Logoff)",
|
||||||
"Group Membership",
|
"Logoff",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"Success",
|
||||||
"No Auditing",
|
"Success",
|
||||||
"Adds an extra 4627 event to every logon",
|
"",
|
||||||
""
|
""
|
||||||
)
|
)
|
||||||
|
|
||||||
@@ -850,7 +850,7 @@ function GuideYamatoSecurity
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Object Access)",
|
"Security Advanced (Object Access)",
|
||||||
"Certification Services",
|
"Detailed File Share",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"No Auditing",
|
||||||
@@ -1213,7 +1213,7 @@ function GuideYamatoSecurity
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (System)",
|
"Security Advanced (System)",
|
||||||
"Other System Events",
|
"Security State Change",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"Success",
|
"Success",
|
||||||
@@ -1957,10 +1957,10 @@ function GuideASD {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Logon/Logoff)",
|
"Security Advanced (Logon/Logoff)",
|
||||||
"Group Membership",
|
"Logoff",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"Success",
|
||||||
"Success",
|
"Success",
|
||||||
"",
|
"",
|
||||||
""
|
""
|
||||||
@@ -2049,7 +2049,7 @@ function GuideASD {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Object Access)",
|
"Security Advanced (Object Access)",
|
||||||
"Certification Services",
|
"Detailed File Share",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"No Auditing",
|
||||||
@@ -2412,7 +2412,7 @@ function GuideASD {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (System)",
|
"Security Advanced (System)",
|
||||||
"Other System Events",
|
"Security State Change",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"Success",
|
"Success",
|
||||||
@@ -3155,10 +3155,10 @@ function GuideMSC {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Logon/Logoff)",
|
"Security Advanced (Logon/Logoff)",
|
||||||
"Group Membership",
|
"Logoff",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"Success",
|
||||||
"Success",
|
"Success",
|
||||||
"",
|
"",
|
||||||
""
|
""
|
||||||
@@ -3247,7 +3247,7 @@ function GuideMSC {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Object Access)",
|
"Security Advanced (Object Access)",
|
||||||
"Certification Services",
|
"Detailed File Share",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"No Auditing",
|
||||||
@@ -3610,7 +3610,7 @@ function GuideMSC {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (System)",
|
"Security Advanced (System)",
|
||||||
"Other System Events",
|
"Security State Change",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"Success",
|
"Success",
|
||||||
@@ -4353,10 +4353,10 @@ function GuideMSS {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Logon/Logoff)",
|
"Security Advanced (Logon/Logoff)",
|
||||||
"Group Membership",
|
"Logoff",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"Success",
|
||||||
"Success",
|
"Success",
|
||||||
"",
|
"",
|
||||||
""
|
""
|
||||||
@@ -4445,7 +4445,7 @@ function GuideMSS {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (Object Access)",
|
"Security Advanced (Object Access)",
|
||||||
"Certification Services",
|
"Detailed File Share",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"No Auditing",
|
"No Auditing",
|
||||||
@@ -4808,7 +4808,7 @@ function GuideMSS {
|
|||||||
|
|
||||||
$auditResult += [WELA]::New(
|
$auditResult += [WELA]::New(
|
||||||
"Security Advanced (System)",
|
"Security Advanced (System)",
|
||||||
"Other System Events",
|
"Security State Change",
|
||||||
$auditpol[$guid],
|
$auditpol[$guid],
|
||||||
[array]$rules,
|
[array]$rules,
|
||||||
"Success",
|
"Success",
|
||||||
|
|||||||
Reference in New Issue
Block a user