Re: Logging User Login and Logoff



Thanks...sounds like I'll write my own service.

-Chris

"JPolicelli" <JPolicelli@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:F9493934-7304-4FD4-8DA7-2566495CEA00@xxxxxxxxxxxxxxxx
This really depends on the size of your environment and the number of
domain
controllers.
If you have a handful of DCs, then I would simply turn Success and/or
Failure auditing for "Audit account logon events" in the Default Domain
GPO,
which is in the Computer Configuration\Windows Settings\Security
Settings\Local Policies\Audit Policy section of the GPO. You can then
write a
script to query the Security logs of your one or more DCs, or use
eventcombmt.exe from MS resource kit.
If you have a large number of DCs, I would look at using a third-party
product to scrap the Security log on your DCs. Microsoft Operations
Manager
is an example and it does a good job of collecting this information.



"Yoder" wrote:

What is the easiest way to log this activity? I could play a game with
login
scripts to do an ugly work around to know about logins but there must be
some simple tracking I can enable either in active directory isn't there?





.



Relevant Pages

  • Re: Can someone help modify this VBScript
    ... Where would I place this code in your script? ... There are only 5 DCs that I want to query, would it be easier to tell the ... Save Domain Controller ... >> ' Because the lastLogon attribute is not replicated, ...
    (microsoft.public.scripting.vbscript)
  • Re: LastLogon attribute
    ... Thanks for the information (fact is I am using your script as one of my ... acctinfo.dll and ADUC pointing to DC1 shows a date/time stamp (as far as I ... shouldn't I get an answer from all DCs? ... If a user never authenticated to a DC, the lastLogon ...
    (microsoft.public.win2000.active_directory)
  • Re: Server needs to logon to preferred DC
    ... The best way to list all sites and dcs in a site, is to script a query. ... Spacer Hey, Scripting Guy! ... Active Directory Sites and Subnets ScriptsList All Domain Controllers List ... I was more concerned about your terminal server and what site it is in, and how many DCs in that site. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Login Script in AD Tree
    ... The logon script, if in sysvol will be replicated to all the DCs in that ... he will contact one of these DCs as ... stored with the user in the Root domain run (the root domain is remote to ...
    (microsoft.public.windows.server.active_directory)
  • Re: Metadata cleanup
    ... but as I wrote I have several hundreds of DCs, and the script clears ... metadata one-by-one. ... With some modifications of the script all DCs ...
    (microsoft.public.windows.server.active_directory)