Solved

Local admin logon reporting script

Posted on 2011-09-21
3
204 Views
Last Modified: 2012-05-12
I run a user logon script that writes each domain user's logon and off times to a text file. Works great. I also now need a script that I can push to all domain computers that will record each time that the machine's local administrator logs on and off. I know that some users have been given the admin password for machines and need to find out which machines are being used. Don't want to change all local admin machine passwords yet!

Thanks in advance for any help.

Gill
0
Comment
Question by:gillpardesc
3 Comments
 
LVL 7

Accepted Solution

by:
Dusan_Bajic earned 250 total points
ID: 36579072
It is little unclear, you already have a script that writes time when someone logs in. Will it not record when local admin logs in, same as for any other user? It could be so if script is pushed to domain users only, but then all you have to do is to apply script to domain computers.  
0
 
LVL 8

Assisted Solution

by:jawa29
jawa29 earned 250 total points
ID: 36707988
Hi Gill

Am I right in thinking that the current script is either set by the users AD account? or on Group Policy?

Group Policy objects only apply to AD accounts, the Computer section does apply to the local Machine but has no option to run a Logon script only Start up scripts.

You have a few options to achieve this. (all of these options will run the script when any user logs in, including Domain Users)

1. Edit the local User Policy to add the script you already have gpedit.msc

2. Add your script to the Run key in HKLM\Software\Microsoft\Windows\CurrentVersion\Run

3. Set-up a scheduled task to run everytime a user logs in

2 & 3 could be set-up through a startup script on the Machine.

Jawa29
0
 

Author Closing Comment

by:gillpardesc
ID: 37254465
Abandoned this but thanks to those who replied
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
Always backup Domain, SYSVOL etc.using processes according to Microsoft Best Practices. This is meant as a disaster recovery process for small environments that did not implement backup processes and did not run a secondary domain controller that ne…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

756 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question