Restore previous values on unauthorized, mistaken or improper changes with the click of a button, directly in the Change Auditor console, honoring the rights and privileges of the user requesting the rollback.
Capture the originating IP address/workstation name for account lockout events to simplify troubleshooting.
Provide instant, one-click access to all information on the change you're viewing and all related events, such as what other changes came from specific users and workstations, eliminating additional guesswork and unknown security concerns.
Correlate disparate IT data from numerous systems and devices into IT Security Search, an interactive search engine for fast security incident response and forensic analysis. Include user entitlements and activity, event trends, suspicious patterns and more with rich visualizations and event timelines.
Remove auditing limitations and captures change information without the need for native audit logs, resulting in faster results and significant savings of storage resources.
View, highlight and filter change events and discover their relation to other security events in chronological order across your AD and Azure AD environment for better forensic analysis and security incident response.
Configure access so auditors can run searches and reports without making any configuration changes to the application, and without requiring the assistance and time of the administrator.
Search from anywhere using a web browser and create targeted dashboard reports to provide upper management and auditors with access to the information they need without having to understand architecture or administration.
Alert on and monitor critical changes made to Active Directory.
Alert on and monitor critical changes made to Group Policy objects.
Receive alerts when accounts are locked.
Prevent changes to critical objects and settings.
Provide role-based access to control who can do or see what.
There are specific system requirements for the Change Auditor coordinator (server-side), Change Auditor client (client-side), Change Auditor agent (server-side), and the Change Auditor workstation and web client (optional components). For a full list of system requirements and required permissions for all components and target systems that can be audited by Change Auditor please refer to the Change Auditor Installation Guide.
The Change Auditor coordinator is responsible for fulfilling client and agent requests and for generating alerts.
Quad core Intel® Core™ i7 equivalent or better
Minimum: 8 GB RAM or better
Recommended: 32 GB RAM or better
SQL databases supported up to the following versions:
NOTE: Change Auditor supports SQL AlwaysOn Availability Groups and SQL Clusters.
Installation platforms (x64) supported up to the following versions:
NOTE: Microsoft Windows Data Access Components (MDAC) must be enabled. (MDAC is part of the operating system and enabled by default.)
For the best performance, Quest strongly recommends:
NOTE: Do NOT pre-allocate a fixed size for the Change Auditor database.
In addition, the following software/configuration is required:
Additional Account Coordinator minimum permissions required, please see Change Auditor Installation Guide .
Improve AD security and compliance auditing.
Self-service tools will help you to install, configure and troubleshoot your product.
Find the right level of support to accommodate the unique needs of your organization.
Search from a wide range of available service offerings delivered onsite or remote to best suit your needs.
Training courses delivered through online web-based, on-site or virtual instructor-led.