This reference contains information on security-relevant objects and values.
In order to create easy to analyze events, there are a number of events that need to be combined so that
they can provide a full picture of what can be seen in the log. This section describes the correlation
logic to be used.
Kerberos error code list
The Kerberos error code list provides a complete overview over errors from the Kerberos authentication system.
Windows Event-Specific Articles
Information on events we have researched. Often works together with the
Work in Progress
Papers in this section are not finished, but may already provide some value.
Please use them at your sole risk - they may be incomplete, inconsistent and even
Comments on these papers are highly appreciated. If you would like
to do so, please directly contact the author specified in the paper.
Windows Default User Objects
If you are interested in specific Windows Event IDs, you may find related
information at the Network Event Parsing Database.
Would you like to discuss this object? Have a look at our
Windows event forum or post a question there!
Analysis, monitoring, near-real-time alerting of the Windows event log can be done with
by MonitorWare Agent.
All information in this section is to the best of our knowledge but without warrenty of
any kind. This is free information - use it at your sole risk.
[Back to the Security Reference]