[2 days left] What’s wrong with your cloud strategy? Learn why multicloud solutions matter with Nimble Storage.Register Now

x
?
Solved

Fomer ColleagueOU contents deleted

Posted on 2007-03-30
3
Medium Priority
?
287 Views
Last Modified: 2010-04-20
Hi,

In my ADS there is a OU called former Colleague in that we move in disabled user accounts suddenly i see today that all the users are deleted how can i find who deleted and from which machine this has happened.

THX
Sharath
0
Comment
Question by:bsharath
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 30

Accepted Solution

by:
LauraEHunterMVP earned 2000 total points
ID: 18822762
If you have auditing turned on for the "Directory Service Access" event category, this will appear in the Security logs in the Event Viewer on your domain controllers.

Though it may be shutting the barn door after the horse has bolted where this particular incident is concerned, here is a step-by-step KB for configuring auditing of Active Directory objects: http://support.microsoft.com/kb/814595/

Hope this helps.

Laura E. hunter - Microsoft MVP: Windows Server - Networking
0
 
LVL 11

Author Comment

by:bsharath
ID: 18840894
Can we enable auditing on a win xp and win 2003 local machines.

How do i do this.

THX
Sharath
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A hard and fast method for reducing Active Directory Administrators members.
This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
Suggested Courses

649 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question