GPO Audit logon failures no longer working in 2016


we've had functionality working in past, in fact on our 2012 domain controllers.

we replaced dc's 2016 , gpo functionality no longer works.

we've gone through gpo , ensured settings correct according, logging failures , success audit logon events.

we're @ loss why no longer wants function.. thoughts??

for domain controllers, policy defined in default domain controllers group policy object (gpo). default setting no auditing .

if define policy setting, can specify whether audit successes, audit failures, or not audit event type @ all, event of account failed logon generate on client , event not generate on dc.  

more information, refer article below.

audit logon

https://technet.microsoft.com/en-us/library/dn319080.aspx

please check article describe steps enable security auditing , audit successful logon/logoff , failed logons in active directory: http://www.lepide.com/blog/audit-successful-logon-logoff-and-failed-logons-in-activedirectory/

thanks,



Windows Server  >  Windows Server 2016 General



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Windows 2016 RDS event 1306 Connection Broker Client failed to redirect the user... Error: NULL