Over the past several years I’ve been explaining the diffence between these two audit polices. One is for logon/logoff events the other (Account Logon) is for authentication events. In the pas… more →
Event Log Managmentithompson wrote 2 months ago: Over the past several years I’ve been explaining the diffence between these two audit polices. … more →
ithompson wrote 4 months ago: Quite awhile ago I wrote a blog entry on Tracking Down File Deletes, it continues to be one of my mo … more →
ithompson wrote 7 months ago: Randy F. Smith has a good resource for the Windows 2008 Audit Policy. … more →
ithompson wrote 1 year ago: If you think that your users would never steal any data from the company then take a look at these 3 … more →
ithompson wrote 1 year ago: Windows does not track drive mappings for auditing out of the box. To audit drive mappings you will … more →
ithompson wrote 1 year ago: This week has been a busy one for me. I have had several web training sessions and 2 onsite trainin … more →
ithompson wrote 1 year ago: Yesterday I held a webinar about how to track down changes to your Audit Policy. I have had several … more →