Windows Security Log Event ID 4819

Operating Systems Windows 2012 R2 and 8.1
Windows 2016 and 10
Windows Server 2019 and 2022
Category
 • Subcategory
Policy Change
 • Other Policy Change Events
Type Success
Corresponding events
in Windows 2003
and before
 

4819: Central Access Policies on the machine have been changed

On this page

Free Security Log Resources by Randy

Supercharger Free Edition


Supercharger's built-in Xpath filters leave the noise behind.

Free.

 

Examples of 4819

Central Access Policies on the machine have been changed.

Subject:
    Security ID:     %1
    Account Name:    %2
    Account Domain:  %3
    Logon ID:        %4

Object:
    Object Server:   %5
    Object Type:     %6

CAPs Added:
    %7

CAPs Deleted:
  %8

CAPs Modified:
  %9

CAPs As-Is:
    %10

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection

 

Upcoming Webinars
    Additional Resources

      Go To Event ID:

      Security Log
      Quick Reference
      Chart
      Download now!