Re: ADAM auditing



Hi

once you have enabled "Audit directory service access" in the
security policy of the server that is running ADAM you need
to set a system ACL (SACL) for the security principals of
interest on those parts of the directory tree you want to audit.

If you google for info. on AD DS audit it's much the same,
the security editor in ldp.exe is the tool of choice for ADAM
SACL manipulation. Practice on a non-production ADAM instance
and be wary of generating high volumes of "success" audit as
this might load a production server.

ADAM audit requires W2k3 code base.

Lee Flight


"mike" <michael.burutzis@xxxxxxxxx> wrote in message
news:1183490051.299661.200880@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
I have installed ADAM and was wondering how I can activate auditing so
I can know who does what? Right now, all audits are under the service
account name...

thanks in advance



.



Relevant Pages

  • Re: ADAM Security Logging
    ... so if you look at the effective local security policy on the ADAM ... "Audit account management". ... account "Generate security audits" right in User Rights Assignment ...
    (microsoft.public.windows.server.active_directory)
  • Re: ADAM Security Logging
    ... so if you look at the effective local security policy on the ADAM ... "Audit account management". ... account "Generate security audits" right in User Rights Assignment ...
    (microsoft.public.windows.server.active_directory)
  • Re: Detailed Listing of SACLs
    ... on the Audit tab in the advanced view ... inherited SACL set at the domain object that audits pretty ... Security) ... > accesses an Active Directory object that has a SACL specified. ...
    (microsoft.public.win2000.active_directory)
  • Re: Detailed Listing of SACLs
    ... on the Audit tab in the advanced view ... inherited SACL set at the domain object that audits pretty ... Security) ... > accesses an Active Directory object that has a SACL specified. ...
    (microsoft.public.windows.server.security)
  • Re: Detailed Listing of SACLs
    ... on the Audit tab in the advanced view ... inherited SACL set at the domain object that audits pretty ... Security) ... > accesses an Active Directory object that has a SACL specified. ...
    (microsoft.public.security)

Loading