If your question i relating to SMB connections (for example \\servername\fileshare),
then you can see all logons in Windows Security Log. Just enable "Audit Logon Events" and "Audit Account Logon Events" in Administrative Tools->Local Security Policy->Local Policies->Audit Policy.
After some user is successfuly logged through network,
you can to find event 540 in Event Viewer->Security log. There is also IP address of client computer.
Main Topics
Browse All Topics





by: omarfaridPosted on 2009-02-27 at 20:24:12ID: 23761734
please look into your webserver logs for that