When I enable a host for File Monitoring, it turns on the SACL audit settings very high for "EVERYONE"
Am I able to customize the audit settings to reduce the amount of events getting created?
For example:
Everyone: Write/Modify/Delete
SecurityGroup: Read/Write/Modify/Delete
I am getting lots of events especially when a backup runs and scans the system for changed files.