Re: Active Directory Audit logs



What events are you wanting to monitor? Most logging of account related
events (logon, logoff etc) is done on the default domain controllers OU so
it wouldn't be a simple task to pluck your users data out of this.

"JR Biggs" <JR Biggs@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:DB6423F5-123F-4D99-A8C3-F4674CEA8EC9@xxxxxxxxxxxxxxxx
> My domain is managed by higher level authority. I have OU administration.
> I
> need to request that event data related to my OU be segregated from the
> rest
> of the domain audit data for me to capture with my SIM product. I do not
> see
> how that is possible without complex scripting against the event log data.
> Am I missing something?


.



Relevant Pages

  • concurrent logins
    ... How can I prevent users from logging in with their accounts more than once ... I they will have to logoff a pc before they can logon to ...
    (microsoft.public.win2000.security)
  • Re: Logon to Secondary Server
    ... > I have two Windows 2000 Domain Controllers for logging ... > unable to logon to the domain on the secondary server. ...
    (microsoft.public.windows.server.networking)
  • Logon to Secondary Server
    ... I have two Windows 2000 Domain Controllers for logging ... unable to logon to the domain on the secondary server. ...
    (microsoft.public.windows.server.networking)
  • Re: Please Help
    ... In an Active Directory setup I use logon and logoff scripts that log the ... Use the Event logs. ...
    (microsoft.public.windows.server.active_directory)
  • RE: Events 40960 & 40961
    ... the user etchee attempts to logon from workstation WS1, ... other users that can do so fine from this workstation. ... What am I looking for in the winlogon and userenv logging? ... Start Registry Editor. ...
    (microsoft.public.windowsxp.general)