Enabling Windows Security Events using Audit Policy

Modified on Thu, 7 May at 5:18 PM

TABLE OF CONTENTS


Overview

Sometimes during the configuration of Window AD, the Local Security Policy is disabled. We can enable the Local Security Policy using Group Policy Management.


Steps to Enable Windows Event

  1. Go to Local Security Policy/Group management policy.
  2. Find Local Security Policy
  3. Go to "Local Policies" under "Security Settings" and select "Audit Policy":

  4. Click on any of the events, say "Account Audit Logon":
  5. Check "Success" and "Failures", then click "Apply"
  6. Repeat the same for all the events.

  7. For Group Policy Management, please refer to the link below:
    https://www.lepide.com/blog/audit-successful-logon-logoff-and-failed-logons-in-activedirectory/

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article