Vue lecture

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.

Audit Group Policy changes in the event log using XML queries and PowerShell

Custom views in the Event Viewer allow you to filter the metadata of log entries based on various criteria. However, these filters do not assess the content of the log entry messages. To evaluate the log messages, you can extend filters using an XPath query. The examples below demonstrate how to audit Group Policy changes with XML queries, which you can further process with PowerShell.
❌