How to monitor Access Mask for WMI Win32_NTEventlogFile ?

With IPHost Network Monitor you can run WMI Access Mask monitoring of various devices in your network.

To create a WMI monitor for Access Mask, provide host name (it must be a Windows host) and specify custom WQL query:

SELECT AccessMask FROM Win32_NTEventlogFile

The AccessMask property is a bit array representing the access rights to the given file or directory held by the user or group on whose behalf the instance is returned. This property is only supported under Windows NT and Windows 2000. On Windows 98 and on Windows NT/2000 FAT volumes, FULL_ACCESS is returned, indicating no security has been set on the object.

CIM_DataFile is a type of logical file that is a named collection of data or executable code. <B>The behavior of the provider backing this class will be changed in future releases. Currently the provider returns both files on fixed disks as well as files on mapped logical disks. In the future, only instances of files on local fixed disks will be returned.<B>

IPHost Network Monitor is an advanced and easy tool for monitoring LAN and WAN networks, network servers, workstations and TCP/IP devices. Use IPHost Network Monitor to monitor your servers, domains, computers and devices.