疑似Oday
Ensure the "Shutdown on Audit Failure" policy is disabled.
The registry value should be set to "4,0" to prevent the system from shutting down if it cannot log security audit events.
If set to "4,1", the system will shut down on audit failure, which could result in a denial-of-service condition.
id: crash-on-audit-fail
info:
name: Shutdown on Audit Failure Check
author: nukunga[SungHyunJeo
...