Category Archives: Group Policy

Disable Enumeration of SID’s

One way for an attacker to scope out a target system and, particularly, to identify the Administrator account so they can focus their efforts on the account with the most privileges is to list, or enumerate, the SID”s (serial identifiers) on a Windows machine.

How to disable Vista’s Setup log

Windows Vista includes a Setup log which can be viewed and analyzed using Event Viewer. By default new Setup events generated are added to this log, but you can disable this functionality using local Group Policy as follows: