Auditing capability in Microsoft Windows Server has always been a somewhat unsophisticated affair: either filling up event logs so quickly that they truncate or spiralling out of control. Extraneous ...
Have you ever scrolled through the Windows Server DHCP logs in the Notepad app while trying to troubleshoot something? Then you know that it's a tedious task. There are many alternatives to Notepad ...
Knowing what’s in your Event Logs is a key to knowing what your servers are doing. Here’s how to make sense of them. Have you taken a look in the Event Viewer lately? Are you afraid to? Does it just ...
I'm trying to figure out how audit policy settings work, and there's something I don't understand. This is Windows 7 64-bit (my home PC). Not in a domain. In the group policy editor, under Computer ...
Having an issue today. It seems like DNS records for various workstations are disappearing from DNS. On the DNS server, I'm seeing DNS 520 events. It looks like the host itself is sending dynamic ...
In Event Viewer, Audit Success is an event that records an audited security access attempt that is successful, whereas Audit Failure is an event that records an audited security access attempt that ...
Event 4688 documents each program a computer executes, its identifying data, and the process that started it. Several event 4688s occur on your system when you log into a system. For example, Session ...