Quest Authentication Services

Authentication Services Events that can be Monitored in AD

Change Auditor for Authentication Services EventDescription
NIS Object AddedCreated when an NIS object is added to Active Directory.
NIS Object Attribute ChangedCreated when the data stored in an NIS object in Active Directory is changed.
NIS Object DeletedCreated when an NIS object is deleted from Active Directory.
NIS Object MovedCreated when an NIS object is moved within Active Directory.
NIS Object RenamedCreated when an NIS object is renamed within Active Directory.
Personality Object AddedCreated when a Unix user or group personality object is added to Active Directory.
Personality Object Attribute ChangedCreated when the data stored in a Unix personality object in Active Directory is changed.
Personality Object DeletedCreated when a Unix user or group personality object is deleted from Active Directory.
Personality Object MovedCreated when a Unix personality object is moved within Active Directory.
Personality Object RenamedCreated when a Unix personality object is renamed within Active Directory.
Authentication Services Computer Object AddedCreated when a new Authentication Services computer object is added to an Active Directory domain.
Authentication Services Computer Object Attribute ChangedCreated when an attribute for Authentication Services computer object is changed.
Authentication Services Computer Object DeletedCreated when a QAS computer object is removed from an Active Directory domain.
Authentication Services Computer Object MovedCreated when Authentication Services computer object is moved in an Active Directory domain.
Authentication Services Computer Object RenamedCreated when Authentication Services computer object is renamed in an Active Directory domain.
Authentication Services GPO Setting ChangedCreated when Authentication Services Group Policy settings is changed.

NOTE: To capture Authentication Services GPO events, Authentication Services must be installed on the DC which is used to perform the GPO changes (in most cases this will be the PDC).
Unix GECOS ChangedCreated when the GECOS attribute of a Unix-enabled Active Directory user is changed.
Unix Group ID Number Changed for GroupCreated when the group ID number of a Unix-enabled Active Directory group is changed.
Unix Group ID Number Changed for UserCreated when the primary group ID number of a Unix-enabled Active Directory user is changed.
Unix Group Name ChangedCreated when the Unix name of a Unix-enabled Active Directory group is changed.
Unix Home Directory ChangedCreated when the Unix home directory of a Unix-enabled Active Directory user is changed.
Unix Login Name ChangedCreated when the Unix login name of a Unix-enabled Active Directory user is changed.
Unix Login Shell ChangedCreated when the Unix login shell of a Unix-enabled Active Directory user is changed.
Unix User ID Number ChangedCreated when the user ID number of a Unix-enabled Active Directory user is changed.
Unix-Enabled Changed for GroupCreated when the Unix attributes of an Active Directory group are changed such that it no longer exists on a Unix or Linux system.
Unix-Enabled Changed for UserCreated when the Unix attributes of an Active Directory user are changed such that it no longer exists on a Unix or Linux system.
Unix-Enabled Group CreatedCreated when a new Active Directory group with configured Unix attributes is created.
Unix-Enabled Group DeletedCreated when a Unix-enabled Active Directory group is deleted.
Unix-Enabled User CreatedCreated when a new Active Directory user with configured Unix attributes is created.
Unix-Enabled User DeletedCreated when a Unix-enabled Active Directory user is deleted.