look at the owner....
if it lists ADMINISTRATORS, you might wanna change the security option in the 
default DCs GPO which is called: "system objects: default owner for objects 
created by members of the administrators group"
Met vriendelijke groeten / Kind regards,
Ing. Jorge de Almeida Pinto
Senior Infrastructure Consultant
MVP Windows Server - Directory Services
LogicaCMG Nederland B.V. (BU RTINC Eindhoven)
(   Tel     : +31-(0)40-29.57.777
(   Mobile : +31-(0)6-
*   E-mail : <see sender address>


From: [EMAIL PROTECTED] on behalf of Mitch Reid
Sent: Mon 2006-12-04 21:14
To: ActiveDir@mail.activedir.org
Subject: [ActiveDir] Is it possible to determine who created an AD object?

We had a few user accounts that were deleted and then recreated and nobody will 
take responsibility.
I used ADSIedit to verify the creation date/time.
While auditing is enabled, the Security log rolled and we missed the event (yes 
I know it's an issue).
Is there a way to see who created the the user object?
Thanks, Mitch.

This e-mail and any attachment is for authorised use by the intended 
recipient(s) only. It may contain proprietary material, confidential 
information and/or be subject to legal privilege. It should not be copied, 
disclosed to, retained or used by, any other party. If you are not an intended 
recipient then please promptly delete this e-mail and any attachment and all 
copies and inform the sender. Thank you.


Reply via email to