Answer the question
In order to leave comments, you need to log in
Utilities for monitoring/logging servers in Active Directory?
Recommend utilities for normal display of logs in AD (for example, who last deleted / edited a file)
proven systems for monitoring and auditing files / applications on servers in AD
Do not offer scripts and self-writing, this is rather inconvenient
Answer the question
In order to leave comments, you need to log in
for the normal display of logs in AD (for example, who last deleted / edited the file)Have you already set up advanced audit policy so that in principle those logs that you want to "normally display" are kept?
Do not offer scripts and samopisy, it is rather inconvenientThose. want paid software.
for example, Solarwinds, Netwrix, ManageEngine, Quest, Lepide, PRTG, Graylog, System Center Operations Manager (SCOM)...
however, as comrade hint000 pointed out , advanced configuration of auditing, logs, performance counters, etc. is required everywhere.
You need a logging tool (such as sysmon+nxlog), a SIEM for event correlation and viewing, and an IRP for incident investigation.
russian market map
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question