You can track logging successes and failures by setting up an audit policy using Local Computer Policy. From the Group Policy Editor (gpedit.msc), drill down to Computer Configuration | Windows Settings | Security Settings | Local Policies | Audit Policy | Audit logon events. Be cautious logging successes, as this will make the event log very full.
Dig deeper on Microsoft Group Policy Management
Related Q&A from Christa Anderson, WinIT
Expert Christa Anderson offers some ideas for monitoring who is connecting to a terminal server, and when they are connecting.continue reading
Expert Christa Anderson offers advice for dealing with a crashing spooler service.continue reading
Expert Christa Anderson explains why it isn't possible to allow drive mapping with Windows 2000 Terminal Services.continue reading
Have a question for an expert?
Please add a title for your question
Get answers from a TechTarget expert on whatever's puzzling you.