SQL Server Audit Log Event ID 24196
        
        
        
        
        
    
    
    
    
        24196: Issued deny database object permissions with cascade command (action_id DWC; class_type US)
    
    
        
            This is an event from 
            SQL Server
            audit event from
            LOGbinder SQL
            generated by
             
            .
        
    
    
        On this page
    
    
    A command to deny permissions to a database object was issued, including cascade of permissions
Free Security Log Resources by Randy 
    
    
        
                    
    
        
            | Field | 
            Description | 
        
        
            | Occurred | 
            When event was reported by SQL Server | 
        
        
            | Authorization result | 
            If the command passed authorization checks | 
        
        
            | Session ID | 
            ID of the session on which the event occurred | 
        
        
            | User | 
              | 
        
        
            | Server | 
              | 
        
        
            | Database | 
            Database affected by the event | 
        
        
            | Target object | 
              | 
        
        
            |   | 
            ID | 
            Target object ID | 
        
        
            |   | 
            Name | 
            Target object name | 
        
        
            |   | 
            Type | 
            Target object type | 
        
        
            |   | 
            Permission bitmask | 
            Target object permission bitmask | 
        
        
            | Statement | 
            Transact-SQL statement | 
        
    
        
            
                Setup PowerShell Audit Log Forwarding in 4 Minutes
                
                
             
        
    
 
    
	
        
            
            
                This Event Is Produced By
            
            
		
                
                    Which Integrates with Your SIEM
                
            
	 
         
    
 
    
        
        Issued deny database object permissions with cascade command
A command to deny permissions to a database object was issued, including cascade of permissions
Action Group: DATABASE_OBJECT_PERMISSION_CHANGE_GROUP
Occurred: 8/22/2013 6:07:51.0000000 PM
Authorization result: Access allowed
Session ID: 67
User: LB\Administrator
Server: DEV3
Database: TestDatabase
Target Object
  ID: 6
  Name: TestUser2
  Type: SQL user
  Permission bitmask: System.Byte[]
Statement: DENY CONTROL ON USER::TestUser2 TO TestUser1 CASCADE
For more information, see http://www.ultimatewindowssecurity.com/securitylog/encyclopedia/event.aspx?eventid=24196
        
            Top 10 Windows Security Events to Monitor
        
        
            Free Tool for Windows Event Collection