Windows events links
Some links I’ve collected, nowhere near comprehensive but they have served me well.
- Eric Fitzgerald’s Windows Security Logging and Other Esoterica - Always a great blog to get all kinds of good info on Windows events. Eric’s a Program Manager for Windows Core Security. He’s pretty active on the loganalysis list as well and always gives out great tips.
- Windows & Active Directory Auditing
- Top 5 Security Settings to Audit
- Windows Security Logging and Other Esoterica : What is up with Audit Collection Services?
- Software Update Services White Paper - Lots of info here that talks about the different event IDs related to SUS
- Randy Franklin Smith’s Security Log Encyclopedia - The one and only resource you need if you want a good categorization of windows events
- Microsoft Events and Errors Message Center - Find detailed message explanations, recommended user actions, and links to additional support and resources.
- Automating Windows Patch Management: Part II - Some more event IDs here…
There are plenty of links out there. Can you add to this list?