When creating reports in Active Administrator Console | Auditing and Reporting, the filter "Acting Users" does not return all the users in the domain.
The program is working as designed.
"Acting Users" are users logged into the network who are performing activities that are audited by the Active Administrator audit agent.
It is possible that certain domain users may not be logged into the network during the report time frame, or may not have performed an action that was captured according to the audit policies in the domain, and Active Administrator.
When looking for any object in the Active Administrator database, it is preferable to create an "Event Description" filter.
This filter will look for a text string in the database that corresponds to an object name or activity.
For example: an Event Description of "jsmith" would capture all activity in the network for the user with that login, within the time frame specified in the Date/Time Range.
Adding an additional filter such as "Event", or "Affected Object Type" would narrow the search even further, producing a report that, for example, only showed Login events, or Group Memberships, etc.
© 2024 Quest Software Inc. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy Cookie Preference Center