Solved

ip to user mapping in AD environment

Posted on 2008-06-12
4
305 Views
Last Modified: 2013-12-24
I am working on a network gateway appliance and like to log all the users going out to the internet through this gateway. Every user gets the ip address from a dhcp server and must be authenticated by a AD server first. All I have is the source ip address in the ip packet. Is there a way to query the userid from the AD server using the ip address?

Thanks.
0
Comment
Question by:mike233
  • 3
4 Comments
 
LVL 5

Assisted Solution

by:pbeirne
pbeirne earned 250 total points
ID: 21775070
There is no inherent Active Directory user to IP mapping.  You would have to use some other means to create a database that contains the mapping such as a logon script that populates a database with the user info and IP.
0
 

Author Comment

by:mike233
ID: 21775097
Can you give me a pointer how the logon script can be done? Is it run on the AD server? Thanks.
0
 
LVL 5

Accepted Solution

by:
pbeirne earned 250 total points
ID: 21778785
0
 
LVL 5

Assisted Solution

by:pbeirne
pbeirne earned 250 total points
ID: 21778821
One other alternative might be to programmatically query the WINS database which holds both user and IP registrations and then parse the output to a file or database.

You can download a tool from microsoft to run a WINS query via command line. It's called NBLOOKUP and works pretty much like NSLOOKUP for DNS.

http://support.microsoft.com/Default.aspx?kbid=830578

0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

Creating and Managing Databases with phpMyAdmin in cPanel.
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
Video by: Steve
Using examples as well as descriptions, step through each of the common simple join types, explaining differences in syntax, differences in expected outputs and showing how the queries run along with the actual outputs based upon a simple set of dem…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now