SQL Server Audit Log Event ID 24353

SourceSQL Server (LOGbinder SQL)
Action GroupDATABASE_OBJECT_OWNERSHIP_CHANGE_GROUP
Windows Security Log
Category
 • Subcategory
Object Access
 • Application Generated
Type Success
Discussions on Event ID 24353

24353: Issued a change database scoped credential owner command (action_id TO; class_type DC)

This is an event from SQL Server audit event from LOGbinder SQL generated by Action Group  DATABASE_OBJECT_OWNERSHIP_CHANGE_GROUP.

On this page

A command to change the owner of a database scoped credential was issued

Free Security Log Resources by Randy

Description Fields in 24353

Field Description
Occurred When event was reported by SQL Server.
Session ID ID of the session on which the event occurred.
User User
Server Server
Database Database affected by the event.
Target object  
  Name Target object name
  Permission bitmask Target object permission bitmask
Statement Transact-SQL statement

Supercharger Free Edition


Supercharger's built-in Xpath filters leave the noise behind.

Free.

 

Where Does This Event Come From?

This Event Is Produced By

Which Integrates with Your SIEM

Examples of 24353

Issued a change database scoped credential owner command
A command to change the owner of a database scoped credential was issued
Action Group: DATABASE_OBJECT_OWNERSHIP_CHANGE_GROUP
Occurred: 5/12/2018 3:42:14.0000000 AM
Authorization result: Access allowed
Session ID: 146
User: LAB\tuser
Server: LAB-SQL-13\SQLSERVER2017
Database: test
Target Object
  ID: 65538
  Name: AppCred
  New owner: test
Statement: ALTER AUTHORIZATION; ON DATABASE SCOPED CREDENTIAL :: AppCred; TO [test]

For more information, see http://www.ultimatewindowssecurity.com/securitylog/encyclopedia/event.aspx?eventid=24353

Keep me up-to-date on the Windows Security Log.
Email*:
*We will NOT share this

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection



 

Additional Resources