Return to HomePage


Log Key Events

Description

The types of events that should be logged include successful and failed logon attempts, modification of data, retrieval of data, network communications, and administrative functions such as the enabling or disabling of logging. Logs should include the time of the event, the location of the event including the machine name, the identity of the current user, the identity of the process initiating the event, and a detailed description of the event.

Additional Resources

* See Improving Web Application Security: Threats and Countermeasures at http://msdn.microsoft.com/library/en-us/dnnetsec/html/THCMCh04.asp

Related Items




Return to HomePage
Microsoft Communities