Support
 
Phone Get Quote
 
Support
 
US: +1 888 720 9500
US: +1 888 791 1189
Intl: +1 925 924 9500
Aus: +1 800 631 268
UK: 0800 028 6590
CN: +86 400 660 8680

Direct Inward Dialing: +1 408 916 9892

 

Configuring object-level auditing

Manual process

Configure object-level auditing manually using the steps below:

To configure object-level auditing automatically:

  • Using domain admin credentials, log in to any computer that has Active Directory Users and Computers on it.
  • Go to Start > Windows Administrative Tools > Active Directory Users and Computers.
  • Click View > Advanced features.
  • Right-click on the domain, and go to Properties > Security > Advanced > Auditing > Add.
  • In the Auditing Entry window, click Select a principal. Under Enter the object name to select, type in Everyone, and click OK.
  • Advanced security settings for ADAP
  • Select Type: Success. Select the appropriate permissions as directed below.

Note: Use Clear all to remove all permissions and properties before selecting the appropriate permissions.

Auditing entry number Auditing entry for Access Apply to Windows Server 2003 Apply to Windows Server 2008/Windows Server 2012
3 and 4 GPO

Create groupPolicyContainer objects

Delete groupPolicyContainer objects

Write all properties

Delete

Modify permissions

This object and all child objects
groupPolicyContainer objects
This object and all descendant objects
Descendant groupPolicyContainer objects

Write all properties

Delete

Modify permissions

groupPolicyContainer objects Descendant groupPolicyContainer objects
Permission entry for ADAP

ADAudit Plus Trusted By

A single pane of glass for complete Active Directory Auditing and Reporting