infoblox_nios:network_users
This is an old revision of the document!
Network Users
First of all, check your auditing settings: In the Group Policy Management Editor, choose Computer Configuration → Go to Policies → Go to Windows Settings → Go to Security Settings → Go to Local Policies → Go to Audit Policy. Set the following audit policies:
- Audit account management: “Success”
- Audit directory service access: “Success”
- Audit logon events: “Success” and “Failure”
Alternatively, you can set Advanced audit policies: In the Group Policy Management Editor, expand Computer Configuration → Go to Policies → Go to Windows Settings → Go to Security Settings → Go to Advanced Audit Policy Configuration → Go to Audit Policies. Set the following audit policies: Account Logon
- Audit Kerberos Authentication Service: “Success, Failure”
- Audit Kerberos Service Ticket Operations: “Success, Failure”
- Audit Other Account Logon Events : “Success, Failure”
Account Management
- Audit Computer Account Management: “Success”
- Audit Distribution Group Management: “Success”
- Audit Security Group Management: “Success”
- Audit User Account Management: “Success”
DS Access
- Audit Directory Service Access: “Success”
Logon/Logoff
- Audit Logoff: “Success”
- Audit Logon: “Success”
- Audit Other Logon/Logoff Events: “Success”
- Audit Special Logon: “Success”
infoblox_nios/network_users.1772531228.txt.gz · Last modified: by bstafford
