User LastLogin not changed when accessing a shared folder.

D

Don

I have some users that are authenticated on a different domain then mine and
they
need to access some shared folders located on our network.

There is not trust relationship between the two domains so they need to use
accounts from our domain in order to access the resources they need.

So far so good until I am running SOX reports and that is the time when I
see that
LastLogin property is not updated for these users so I cannot use something
like 30
days since last login to disable the accounts for inactivity.

Is there a way to fix this and have “LastLogin†updated when they
authenticate?

TIA,
Don
 
M

Marcin

Don,
what version of Windows is installed on your domain controllers? Are you
checking its value on all domain controllers?
If you are have any Windows Server 2003-based domain controllers, you might
want to refer to http://support.microsoft.com/kb/886705/
Finally, if you operate Windows Server 2003 functional level domain and are
using lastLogonTimestamp attribute (or considering doing so), keep in mind
that, by default, its value might be off by 14 days (more info at
http://technet2.microsoft.com/Windo...71f6-4be8-8ebf-faa45bc5db4c1033.mspx?mfr=true )

hth
Marcin
 
D

Don

Marcin:

I forgot to say that we have a NT domain but we are migrating to Windows
server 2003.
Your answer is exactly what I was looking for.

Thank you very
much for your help,

Don
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top