Windows Security Log Event ID 4913

Operating Systems Windows 2012 R2 and 8.1
Windows 2016 and 10
Windows Server 2019 and 2022
Category
 • Subcategory
Policy Change
 • Authorization Policy Change
Type Success
Corresponding events
in Windows 2003
and before
 

4913: Central Access Policy on the object was changed

On this page

Free Security Log Resources by Randy

Setup PowerShell Audit Log Forwarding in 4 Minutes

 

Examples of 4913

Central Access Policy on the object was changed.

Subject:
    Security ID:     %1
    Account Name:    %2
    Account Domain:  %3
    Logon ID:        %4

Object:
    Object Server:  %5
    Object Type:    %6
    Object Name:    %7
    Handle ID:   
  %8

Process Information:
    Process ID:    %11
    Process Name:  %12

Central Policy ID:
    Original Security Descriptor:    %9
    New Security Descriptor:        %10

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection

 

Additional Resources

    Go To Event ID:

    Security Log
    Quick Reference
    Chart
    Download now!