The xaudit‑ command removes entries from the SACL, and is valid for resource types FILE, PRINTER, REGKEY, DISK, COM, or SHARE.
This command has the following format:
xaudit‑ className, resourceName \
[gid(groupName)] \
[uid(userName)]
Specifies the name of the resource type to which the resource belongs.
Specifies the groups or groups whose access to the resource is being audited. When specifying more than one group, separate the names with spaces or commas.
Specifies the name of the resource record whose system access control list (SACL) is being removed.
Specifies the user whose access to the resource is being audited. When specifying more than one user, separate the user names with spaces or commas. To specify all users who are defined in the Windows NT database, specify an asterisk (*) for userName.
| Copyright © 2012 CA. All rights reserved. | Tell Technical Publications how we can improve this information |