Trying to Audit changes to a DNS zone stored in AD, I have enabled all the native auditing in Group Policy and set SACLs on the Registry and AD objects that are associated with DNS, but the changes are ALL reported by the "System" account.  I am looking for a way to audit WHO made changes to DNS,
 
T

Reply via email to