Chat now with support
Chat with Support

Change Auditor 7.0.3 - Installation Guide

Installation Overview Install Change Auditor Add Users to Change Auditor Security Groups Connecting to the Clients Deploy Change Auditor Agents Upgrade Change Auditor Installation Notes and Best Practices Multi-Forest Deployments Workstation Agent Deployment Agent Comparison Install an agent to audit ADAM (AD LDS) on workgroup servers Active Roles Integration Quest GPOADmin Integration Windows Installer Command Line Options

Manual workstation agent deployment

When installed manually, the workstation agent installer must be run as an account with the local administrator account privileges and with elevated User Account Control (UAC) permissions.

NOTE: Depending on the UAC policies (see User Account Control (UAC) Settings), elevated UAC permissions may require starting the installer using one of the following methods:

 

Agent Comparison

There are a few client features that are not available for workstation agents. The following table displays the agent-related features that are available for server and workstation agents.

The Deployment page does not display non-member objects, such as ADAM workgroup servers or non-Active Directory workstations, because agents cannot be deployed to non-member objects using the Deployment tab.

Yes

Yes

Yes

Yes

Yes

Yes

Yes

Yes

Yes

No

Yes

Yes

Yes

No

<Domain> (member and non-member objects)

 

Yes

No

Yes

Yes

 

No

Yes

Yes

Yes

 

Yes

 

Yes

 

Yes

Yes

Yes

No

Yes

 

Yes

No

No

Yes

Yes

Search Properties Tabs

Yes

Yes

Yes

Yes

Yes

Yes

Yes

Yes

No

No

Yes

Yes

Yes

Yes

Yes

Yes
(See Note below)

Yes

Yes

Yes

No

Yes

No
(Uses Default Configuration)

Yes

Yes
(From Default Configuration)

Yes

No

Yes

No

Yes

No

Yes

No

Yes

No

Install an agent to audit ADAM (AD LDS) on workgroup servers

Change Auditor audits Active Directory Application Mode (ADAM) or Active Directory Lightweight Directory Services (AD LDS) events. This section provides information regarding the agent installation necessary for auditing ADAM (AD LDS) instances on workgroup servers.

On the Active Directory Information screen, enter the Active Directory information required for the agent to establish a coordinator connection.

Name of Active Directory Root Domain
(domain.com)

Enter the DNS name (domain.com) of the root domain of Active Directory.

Account Name (domain\user)

Enter the name of the user (domain\user) that can find and connect to a Change Auditor coordinator in the Active Directory forest.

Account Password

Enter the password associated with the previously entered user account.

The Installation Name screen prompts you to enter the installation name to identify the database to which the coordinator is to be connected. A workgroup agent must join an existing Change Auditor installation.

ChangeAuditor Installation Name

Enter an existing Change Auditor installation or click Browse to select from a list of existing installations.

Active Roles Integration

Active Roles uses a proxy account (service account) to connect and change Active Directory objects and group policies. Change Auditor can deploy to an Active Roles server which signals it to retrieve and send the name of the user that was logged in to the Active Roles console to Change Auditor. This additional information is then displayed in the Change Auditor client for events initiated using Active Roles.

This section covers the following topics for Active Roles integrations:

Related Documents