SIEM, Vulnerability Scanning, Server Monitoring and Compliance Training for IT Professionals
Table of Contents

System Security Monitor Template

The System Security Monitor Template enables Network Administrators and ISSMs to monitor results returned from the Windows secedit command-line executable. This template is typically used by ISSMs that want to scan for DISA vulnerabilities and DoD STIG compliance.

For more information, see secedit /export.

In this Topic

To Configure the System Security Monitor Template

  • From the Menu Bar, select File | New. The Create New Object View displays.
  • From the Create New Object View, expand Templates | Windows Monitors then select System Security Monitor. The New Template Properties View displays.
  • The Template Properties view contains 5 tabs.

Options Configuration

  • Use the Security Policy checkbox to scan secedit's [System Access] section.
  • Use the User Rights Assignment checkbox to scan secedit's [Privilege Rights] section.
  • Click the Refresh button to load available results.
Note
SID values, found when scanning User Rights Assignments, are automatically resolved.
  • Use the Column Definitions controls to select the target properties to monitor and include in triggers and other notifications.
  • Click Load Columns to execute secedit then load all relevant section key value pairs returned.
  • Use the Warning and Critical triggers controls to define trigger filter criteria and value thresholds.
System Security Monitor Template Properties for DISA Vulnerability ID V-253300
System Security Monitor Template Properties for DISA Vulnerability ID V-253300

Related Topics

secedit /export

Template Properties

Windows Monitor Templates