ADAudit Plus periodically collects the audit-data from the configured servers and stores the information in the database for reporting. To avoid data loss, we recommend the below Event Log Settings.
Operating System of Server | Role | Security Log Size (Mb) | Security Log Retention |
---|---|---|---|
Windows Server 2003 | Domain Controller | 307.2 | Overwrite Events As Needed |
Windows Server 2008 and above | Domain Controller | 1048.5 | Overwrite Events As Needed |
Windows Server 2003 | File Server | 307.2 | Overwrite Events As Needed |
Windows Server 2008 and above | File Server | 4194.3 | Overwrite Events As Needed |
Windows Server 2003 | Member Server | 307.2 | Overwrite Events As Needed |
Windows Server 2008 and above | Member Server | 1048.5 | Overwrite Events As Needed |
Windows 10, 8, 7, Vista, and XP | Windows workstation | 512 | Overwrite Events As Needed |
For detailed stepd on how to configure security log settings for domain controllers, file servers, member servers, and workstations, click on their respective links found below:
Note: Ensure that the security log can hold a minimum of 12 hours worth of data.