Domain Controller Granular Event Log Delegation

Posted on Posted in Active Directory, Microsoft, Powershell

So you’ve combed through 7 year old TechNet forum posts, cursed the limitations of Event Log Readers group when trying to use Get-WinEvent, and then tried to decipher SDDL to no avail.  A treatment for all those woes:

The basic gist here is that the CustomSD registry value will contain your new permissions and […]