• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 12756
  • Last Modified:

Active Directory LastLogon LDAP Query

I want to query LDAP for the lastLogon attribute of all users in my domain so i can prune any that have been inactive for more than four months.  does anyone know of any tools/scripts that will accomplish this??

0
internetsavant
Asked:
internetsavant
  • 3
1 Solution
 
Pete LongTechnical ConsultantCommented:
A user account’s real last logon information indicates the last date and time when a user has logged on to the network for the last time. The real last logon information of Windows 2003-XP-2000-NT is a mystery for system administrators; especially, when an organization has multiple domain controllers. Different values are stored on different domain controllers. RealLastLogon finds the actual true value from the appropriate domain controller.
BENEFITS
The RealLastLogon (Real Last Logon) tool solves the problem of inaccurate last logon information. The tool collects the last logon information from all domain controllers. In one scenario, the collection of user account information for more than 30,000 user accounts and 5 domain controllers took just 15 minutes.
http://www.tools4ever.com/products/utilities/reallastlogon/
0
 
Pete LongTechnical ConsultantCommented:
ThanQ
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now