Skip to content

Commit 92377ea

Browse files
Update RootA_Specification.md
1 parent 298d497 commit 92377ea

File tree

1 file changed

+4
-4
lines changed

1 file changed

+4
-4
lines changed

RootA_Specification.md

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -282,7 +282,7 @@ Example: `service: apache`
282282

283283
Required: *optional*
284284

285-
Description: ?????
285+
Description: This section describes in detail what logging service should be enabled to have the logs required for the rule.
286286

287287

288288
### source
@@ -291,7 +291,7 @@ Format: `text (max 128 characters)`
291291

292292
Required: *optional*
293293

294-
Description: ?????
294+
Description: The full name of the logging provider or logging service that logged the event. For example, Microsoft-Windows-Security-Auditing.
295295

296296
Example: `source: Microsoft-Windows-PowerShell/Operational`
297297

@@ -302,7 +302,7 @@ Format: `text (max 2048 characters)`
302302

303303
Required: *optional*
304304

305-
Description: ?????
305+
Description: This section provides detailed instructions on how to enable the required log audit in the source system.
306306

307307
Example: `enable: 'Computer Configuration -> Windows Settings -> Security Settings -> Advanced Audit Policy Configuration -> System Audit Policies -> Detailed Tracking -> Audit Process Creation'`
308308

@@ -311,7 +311,7 @@ Example: `enable: 'Computer Configuration -> Windows Settings -> Security Settin
311311

312312
Required: *mandatory*
313313

314-
Description:
314+
Description:
315315

316316

317317
### language

0 commit comments

Comments
 (0)