Solved

Last login date/time for users in Active Directory

Posted on 2011-02-24
4
1,508 Views
Last Modified: 2012-05-11
Hi Experts,
Is there a way to get a list of the last login date and time for the users of a specific OU. I have made some changes to login script and need to know what users (Ihave about 400) have not get the changes because they have not logout/login their account.

Thank you,
0
Comment
Question by:dguandique
  • 2
4 Comments
 
LVL 3

Accepted Solution

by:
pitchford earned 50 total points
ID: 34975939
There are a couple of options for you. I highly recommend DoveStones True Last Logon; it costs $100 but it is WELL worth it. I run this periodically because we never find out when people quit or are terminated! It also scans computers.
http://www.dovestones.com/ 

If you're looking for a script method you can refer to:

http://www.windowsitpro.com/article/vbscript/how-can-i-generate-a-list-of-last-user-logon-times-for-a-domain-.aspx
0
 
LVL 27

Expert Comment

by:KenMcF
ID: 34975977
There are two attributes you can look for. One is lastlogon and the other is lastlogontimestamp. The difference is that lastlogon is not replicated between DCs and the lastlogontimestamp is replicated every 9-14 days. To get these I like to use either powershell with the quest ad cmdlets or ADFind. The reason I like these is becuase it does the conversion for you.

Get-qaduser USERNAME | FL Name, Lastlogontimestamp

adfind -default -f "(samaccountname=USERNAME)" name lastlogontimestamp -tdcs

0
 
LVL 3

Expert Comment

by:pitchford
ID: 34976079
0
 
LVL 13

Expert Comment

by:Felix Leven
ID: 34979269
What about Active Directory Users and Computers go to the OU -> View -> add/remove column -> add modified

with every domain logon a user is "modified"
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Synchronize a new Active Directory domain with an existing Office 365 tenant
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

831 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question