Skip to main content

Windows Advanced Audit Policy

Overview​

Configures Windows Advanced Audit Policy settings, event log sizes, and firewall logging based on machine role. On Domain Controllers, the script additionally enables Directory Service Access and Directory Service Changes audit subcategories along with increased Event Log MaxSize registry settings. On all machines, it applies 34 auditpol subcategory commands, 3 category-level commands, and configures Windows Firewall logging for Standard, Public, and Domain profiles.

Sample Run​

SampleRun1

Dependencies​

Automation Setup/Import​

Automation Configuration

Output​

  • Activity Details

Changelog​

2026-10-08​

  • This is initial version of document