Getting Data In

Password policy logs in Active Directory.

aalhabbash1
Path Finder

Hi Splunker;

Is there way for Splunk monitor password policy in AD, such as; what is content this policy about how number of characters used and how must be long the characters and so on.

Best Regards;

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Password policy is set in Group Policy Objects, which Splunk does not monitor. You may, however, be able to write a script that collects this information.

---
If this reply helps you, Karma would be appreciated.
0 Karma

aalhabbash1
Path Finder

Dear Richgalloway,

Thank you to response; if you have this script please share the script with me.

Best Regards;

0 Karma

richgalloway
SplunkTrust
SplunkTrust

I do not have such a script, but it should be easy to create one in PowerShell.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Combine Multiline Logs into a Single Event with SOCK - a Guide for Advanced Users

This article is the continuation of the “Combine multiline logs into a single event with SOCK - a step-by-step ...

Everything Community at .conf24!

You may have seen mention of the .conf Community Zone 'round these parts and found yourself wondering what ...

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...