SQL Server Audit Log Event ID 24278

SourceSQL Server (LOGbinder SQL)
Windows Security Log
 • Subcategory
Object Access
 • Application Generated
Type Success
Discussions on Event ID 24278
Ask a question about this event

24278: Issued enable trace C2 audit mode command (action_id C2ON)

This is an event from SQL Server audit event from LOGbinder SQL generated by Action Group  TRACE_CHANGE_GROUP.

On this page

A command to turn on the C2 audit mode for trace was issued

Free Security Log Resources by Randy

Description Fields in 24278

Field Description
Occurred When event was reported by SQL Server
Authorization result If the command passed authorization checks
Session ID ID of the session on which the event occurred
Statement Transact-SQL statement

Setup PowerShell Audit Log Forwarding in 4 Minutes


Where Does This Event Come From?

This Event Is Produced By

Which Integrates with Your SIEM

Examples of 24278

Issued enable trace C2 audit mode command
A command to turn on the C2 audit mode for trace was issued
Occurred: 6/23/2014 5:19:12.0000000 PM
Authorization result: Access allowed
Session ID: 61
User: LB\Administrator
Server: DEV2

For more information, see http://www.ultimatewindowssecurity.com/securitylog/encyclopedia/event.aspx?eventid=24278

Keep me up-to-date on the Windows Security Log.
*We will NOT share this

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection


Additional Resources