The easiest way to do this is to turn on auditing for logons and logoffs. In Active Directory Users and Computers, open a group policy object (GPO), and maneuver to Computer Configuration\Windows Settings\Security Settings\Local Policies\Audit Policy. Under Audit Logon Events, you can set the machine to log whenever a user attempts to log on to a system, either interactively or over the network. This will also log failed as well as successful logons and logoffs.
Related Q&A from Serdar Yegulalp
This week, our expert answers the question of how to get DVD data off a disc, even if the user's PC doesn't have an optical drive.continue reading
This week, our expert answers a question on how to connect a phone or tablet to a USB drive with a micro-USB connector.continue reading
Open source and free suites such as LibreOffice and OpenOffice could save organizations money, but not effort in comparison with Microsoft Office.continue reading
Have a question for an expert?
Please add a title for your question
Get answers from a TechTarget expert on whatever's puzzling you.