SQL Server Audit Log Event ID 24196

SourceSQL Server (LOGbinder SQL)
Action GroupDATABASE_OBJECT_PERMISSION_CHANGE_GROUP
Windows Security Log
Category
 • Subcategory
Object Access
 • Application Generated
Type Success

24196: Issued deny database object permissions with cascade command (action_id DWC; class_type US)

This is an event from SQL Server audit event from LOGbinder SQL generated by Action Group  DATABASE_OBJECT_PERMISSION_CHANGE_GROUP.

On this page

A command to deny permissions to a database object was issued, including cascade of permissions

Free Security Log Resources by Randy

Description Fields in 24196

Field Description
Occurred When event was reported by SQL Server
Authorization result If the command passed authorization checks
Session ID ID of the session on which the event occurred
User  
Server  
Database Database affected by the event
Target object  
  ID Target object ID
  Name Target object name
  Type Target object type
  Permission bitmask Target object permission bitmask
Statement Transact-SQL statement

Supercharger Free Edition

 

Where Does This Event Come From?

This Event Is Produced By

Which Integrates with Your SIEM

Examples of 24196

Issued deny database object permissions with cascade command
A command to deny permissions to a database object was issued, including cascade of permissions
Action Group: DATABASE_OBJECT_PERMISSION_CHANGE_GROUP
Occurred: 8/22/2013 6:07:51.0000000 PM
Authorization result: Access allowed
Session ID: 67
User: LB\Administrator
Server: DEV3
Database: TestDatabase
Target Object
  ID: 6
  Name: TestUser2
  Type: SQL user
  Permission bitmask: System.Byte[]
Statement: DENY CONTROL ON USER::TestUser2 TO TestUser1 CASCADE

For more information, see http://www.ultimatewindowssecurity.com/securitylog/encyclopedia/event.aspx?eventid=24196

Top 10 Windows Security Events to Monitor

Free Tool for Windows Event Collection

 

Additional Resources

    Go To Event ID:

    Security Log
    Quick Reference
    Chart
    Download now!