Configuring security log size and retention settings
Configuring security log size
Configure security log size for Group Policy audit data using the steps below:
- Go to Start > Windows Administrative Tools > Group Policy Management.
- In GPMC, right-click the GPO "domain name"_ADAudit Plus Audit policy, and select Edit.
- In the Group Policy Management Editor, choose Computer configuration > Policies > Windows settings > Security settings > Event Log > Retention Method for Security Log.
- Check Define these policy settings, and select Overwrite events as needed.
- Click OK.

Configuring the retention settings
Configure the retention settings for Group Policy audit data using the steps below:
- Open ADAudit Plus.
- Go to Admin > Configuration > Archive Events.
- Click Archive Folder on the right and specify the location where you wish to store the archive files.
- Scroll down to GPO Management, then click the Enable icon and the gear icon under the Actions column to open the Archive Settings pop-up.
- Under Live Tier, specify the Hot Data Retention Time in days, months, or years.
- Under Archive Tier, check the Retain data indefinitely box if you want to retain archive data forever. Alternatively, uncheck it and specify the Frozen Data Retention Time in days, months, or years.
- Click Save.
Note: Learn more about archive tiers and the various states of data on the Archive Events page.
Don't see what you're looking for?
-
Visit our community
Post your questions in the forum.
-
Request additional resources
Send us your requirements.
-
Need implementation assistance?
Try OnboardPro