Solved

What triggers AD "last AD logon"

Posted on 2014-12-02
5
154 Views
Last Modified: 2014-12-18
We have users that have their accounts supposedly disabled once they leave the company, but checking their last logon in AD shows the date, days and weeks after they leave the company.

Does accessing your exchange email show as an AD logon?

Does access exchange email using smartphone show as AD logon?

thanks
0
Comment
Question by:rdefino
5 Comments
 
LVL 11

Expert Comment

by:sumeshbnr
Comment Utility
Most probably Yes because exchange uses AD to authenticate the user .But I am doubting how do access the mail if the users account is disabled.
0
 
LVL 76

Accepted Solution

by:
arnold earned 500 total points
Comment Utility
Any Ad authentication is sent to the DC that updates the event.
Based on your question "disabled" means password changed? Or supposedly means someone should have, but not clear when this step to actually disable the account was undertaken?

If you aggregate your DCs security log, you can query it to identify the source and type of AUTH requests received for this user.
0
 
LVL 5

Expert Comment

by:A Karelin
Comment Utility
supposedly disabled or disabled or not?
0
 
LVL 23

Expert Comment

by:NVIT
Comment Utility
I think the OP means the account is disabled but AD (where is this shown?) still shows logon dates occurring.
0
 
LVL 5

Expert Comment

by:A Karelin
Comment Utility
What attribute did you check? LastLogonTimeStamp or LastLogon.
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

In this article, we will see the basic design consideration while designing a Multi-tenant web application in a simple manner. Though, many frameworks are available in the market to develop a multi - tenant application, but do they provide data, cod…
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now