Unlike Windows 2000, Windows Server 2003 only logs this
event once for each new domain. Although the description says
"new *trusted* domain" this event gets logged
for both trusted and trusting relationships.
If directory service access auditing is turned on, the DC
also logs an event 565 (object opened) and 564 (object deleted)
where the object service is LSA and the object type is TrustedDomainObject.
Object name identifies the domain.
See also event IDs 610, 611 and 620