Endpoint configuration · GraphQL type

AuditSystem type

System audit subcategories for system-level security events.

Fields

Field Name Description
securityStateChange - AuditPolicySetting! Audits changes to the security state of the system, such as starting or stopping the audit service.
securitySystemExtension - AuditPolicySetting! Audits events related to security system extensions, such as loading authentication packages.
systemIntegrity - AuditPolicySetting! Audits events that indicate a violation of system integrity, such as hash mismatches.
ipsecDriver - AuditPolicySetting! Audits IPsec driver events and errors.
otherSystemEvents - AuditPolicySetting! Audits other system events not covered by specific subcategories.

Used by

Example

Example

{
  "securityStateChange": "SUCCESS",
  "securitySystemExtension": "SUCCESS",
  "systemIntegrity": "SUCCESS",
  "ipsecDriver": "SUCCESS",
  "otherSystemEvents": "SUCCESS"
}