Is there a way to get a Domain Controller to report (via the Event Log, I assume) which IP Addresses are authenticating against it? We get 5778 events when an IP Address is authenticating against a DC and their subnet isn't defined. But we aren't interested in that. We want them to report it (for short-term diagnostics purposes only) when they do have a site defined.
Don't know how this could be done, but I thought I'd ask the experts. Scott List info : http://www.activedir.org/List.aspx List FAQ : http://www.activedir.org/ListFAQ.aspx List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
