Windows DatabaseebooksStatistical Information

LWE10280 : How to monitor who is accessing your computer.

Symptom:

--

Cause:

You want to know who is accessing or trying to change settings of computer.

Solution:

Windows give you the option to monitor who is accessing or trying to change settings of you computer. This is called "auditing". If you want to activate auditing take the following steps:

- Click Start > run and type "secpol.msc" then click ok or press enter. If you are prompted for an administrator password, type in the password.
 
- Click "Local Policies" and then double click "Audit Policy".
 
- Double click the type of event that you want to monitor and select the Success or Failure check box or both and then click OK.
(If Success is selected, Windows will record any successful  attempts to complete the type of event that you are monitoring. If Failure is selected, any unsuccessful attempt will be recorded. If you select both Success and Failure, Windows will record all events.
 
 
If you want ot view the audit log just open the event viewer and selecet the "Windows logs" pane and then choose "Security". In the list of event, just double click on an entry to see details.
 
 
Note: If the audit log gets too big, it will slow down your computer. To make more space, you can delete events from the log when you are viewing them in Event Viewer. To delete the complete log, click "clear log" in the Actions pane.

Disclaimer:

The information provided in this document is intended for your information only. Lubby makes no claims to the validity of this information. Use of this information is at own risk!
Copyright © 2004-2011 Lubby (V3.0.10 Aug 2011)
Sponsored by Keskon.
Statistical information by Google Analytics