ADAM (AD LDS) event logging
For ADAM (AD LDS) events, event logging is disabled by default. When enabled, all ADAM activity is sent to the InTrust for ADAM event log. See the Change Auditor for Active Directory Event Reference Guide for a list of the events that can be sent to this event log.
To enable ADAM (AD LDS) event logging:
2 Click Configuration.
3 Select Agent in the Configuration task list to display the Agent Configuration page.
4 Click Event Logging.
5 On the Event Logging dialog, select ADAM (AD LDS).
6 Click OK to save your selection and close the dialog.
Active Directory Database Auditing
Introduction
Active Directory Database Auditing page
The Active Directory Database Auditing page is displayed when Active Directory Database is selected from the Auditing task list in the navigation pane of the Administration Tasks page. From this page you can start the Active Directory Auditing wizard to monitor your Active Directory database for unauthorized access. You can also edit existing templates, disable/enable templates and remove templates that are no longer being used.
The Active Directory Database Auditing page contains an expandable view of all the templates that have been previously defined. To add a new template to the list, use the Add tool bar button.
Once added, the following information is provided for the template:
Template Displays the name assigned to the template when it was created.
Status Indicates whether the template is enabled or disabled. To enable/disable the template, place your cursor in this Status cell, click the arrow control and select the appropriate option from the drop-down menu.
Exempt Process Filter Displays a list of processes which bypass Active Directory database auditing.