-
Notifications
You must be signed in to change notification settings - Fork 1
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Check what rules can be used with the current settings #7
Comments
memo: Output auditpol results in Englishopen cmd.exe
|
@YamatoSecurity
|
In the prototype, we're starting with |
Strictly speaking, some logs, such as PowerShell:4103/4104, are not output unless enabled, but counting rules other than
|
Yes! Don't worry, I will create issues to check all logs except |
@fukusuket Can you put Right now, since we only look at |
@YamatoSecurity |
After the necessary config files are created, we can check what rules are usable and not usable.
Ex:
For now, we can save the detailed rule list to CSV but later want to create two HTML reports that are easy to read.
The text was updated successfully, but these errors were encountered: