Quantcast
Channel: THWACK: Popular Discussions - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5911

Looking for a way to filter out legit password changes in audit logs

$
0
0

when a user's password expires in AD, we first get logon failures, then account changed for Domain Events, next password change, then user properties changed. seeing as we have a lot of users, these alerts happen regularly. of course all these alerts do cause some fatigue. what i am thinking we have to do is create an event group to include those alerts but im not sure how well that works. has anyone had any luck with this?


Viewing all articles
Browse latest Browse all 5911

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>