Return to
HomePage
Log Key Events
Description
The types of events that should be logged include successful and failed logon attempts, modification of data, retrieval of data, network communications, and administrative functions such as the enabling or disabling of logging. Logs should include the time of the event, the location of the event including the machine name, the identity of the current user, the identity of the process initiating the event, and a detailed description of the event.
Additional Resources
* See Improving Web Application Security: Threats and Countermeasures at
http://msdn.microsoft.com/library/en-us/dnnetsec/html/THCMCh04.asp
Related Items
Return to
HomePage