Group policy + Account lockout audit
Found out the strange thing: my script for locked out accounts stopped working after 21 November 2018. I checked eventlog and didn’t see any 4740 events. After investigation I resolved it.
It must be turned on there:
Computer configuration/Policies/Windows Settings/Security settings/Advanced Audit Policy Configuration/Logon/Logoff/Audit Account Lockout
Then I checked it: Auditpol /get /category:*
MDT + Script for joining to a domain Powershell + string to array
Comments are currently closed.