Domain Policy Changed: Domain: %1 Domain ID: %2 Caller User Name: %3 Caller Domain: %4 Caller Logon ID: %5 Privileges: %6

Details
Product: Windows Operating System
Event ID: 643
Source: Security
Version: 5.0
Component: Security Event Log
Symbolic Name: SE_AUDITID_DOMAIN_POLICY_CHANGE
Message: Domain Policy Changed: Domain: %1 Domain ID: %2 Caller User Name: %3 Caller Domain: %4 Caller Logon ID: %5 Privileges: %6
   
Explanation

This event record indicates that a domain policy has been changed. There is no Failure Audit form of this audit event record. Domain policy changes can have security implications.

   
User Action

The person with administrative rights for the computer should check to make sure there are no security implications because of the change.

Related:

Leave a Reply