Re: Active Directory Audit logs
- From: "JR Biggs" <JRBiggs@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Tue, 14 Jun 2005 13:10:06 -0700
Accout logon events, account management, directory service access (for SACL
protected objects), Logon events, policy change, system events (to capture
audit log cleared at DC)- All for events related to my OU only. That is the
dilema. I cannot ask for event logs of the entire domain because of data
ownership issues (other OUs). So...Knee pads and a solution to recommend
globally is what I need.
"Simon Geary" wrote:
> What events are you wanting to monitor? Most logging of account related
> events (logon, logoff etc) is done on the default domain controllers OU so
> it wouldn't be a simple task to pluck your users data out of this.
>
> "JR Biggs" <JR Biggs@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> news:DB6423F5-123F-4D99-A8C3-F4674CEA8EC9@xxxxxxxxxxxxxxxx
> > My domain is managed by higher level authority. I have OU administration.
> > I
> > need to request that event data related to my OU be segregated from the
> > rest
> > of the domain audit data for me to capture with my SIM product. I do not
> > see
> > how that is possible without complex scripting against the event log data.
> > Am I missing something?
>
>
>
.
- Follow-Ups:
- Re: Active Directory Audit logs
- From: Ryan Hanisco
- Re: Active Directory Audit logs
- References:
- Active Directory Audit logs
- From: JR Biggs
- Re: Active Directory Audit logs
- From: Simon Geary
- Active Directory Audit logs
- Prev by Date: Re: Auto lock computer using GPO
- Next by Date: Setting up AD Users and Computers on desktop
- Previous by thread: Re: Active Directory Audit logs
- Next by thread: Re: Active Directory Audit logs
- Index(es):