Windows Security Log Event ID 696

Operating Systems Windows 2003 and XP
CategoryAccount Management
Type Success
Corresponding events
in Windows 2008
and Vista

696: LDAP Query Group Deleted

On this page

These events are not confirmed.

These events evidently relate to application groups which are created by application developers using Authorization Manager. These groups include basic application groups and LDAP query groups as special cases. Application groups are specific to Authorization Manager role based administration. Authorization Manager provides a flexible framework for integrating role-based access control.

Free Security Log Resources by Randy

Description Fields in 696

  •  Target Account Name: %1
  •  Target Domain: %2
  •  Target Account ID: %3
  •  Caller User Name: %4
  •  Caller Domain: %5
  •  Caller Logon ID: %6
  •  Privileges: %7

Supercharger Free Edition


Examples of 696

LDAP Query Group Deleted:
Target Account Name:%1
Target Domain:%2
Target Account ID:%3
Caller User Name:%4
Caller Domain:%5
Caller Logon ID:%6

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection


Additional Resources