Splunk® App for Windows Infrastructure (Legacy)

Splunk App for Windows Infrastructure Reference

On October 20, 2021, the Splunk App for Windows Infrastructure will reach its end of life. After this date, Splunk will no longer maintain or develop this product. The functionality in this app is migrating to a content pack in Data Integrations. Learn about the Content Pack for Windows Dashboards and Reports.

Group Audit

Exch 30 adgroupaudit.png

The Group Audit dashboard displays information about Active Directory group objects, and includes statistics on:

  • Active Directory record.
  • A full Group Membership list.
  • Recent changes to the group membership.

How to use this page

In this selection panel, you can choose the domain from which you want to display group audit data by selecting the Account Domain drop-down list. You must do so in order to get information on group account activity within the domain.

You can further narrow down your search by typing in the name of a valid group object in the Group Name field. If you type in '*' (asterisk), the Splunk App for Windows Infrastructure searches against all groups.

You can also control how much data gets displayed by selecting the time range you desire in the time range picker on the upper left side of the dashboard.

Last modified on 30 November, 2016
Computer Changes   Group Changes

This documentation applies to the following versions of Splunk® App for Windows Infrastructure (Legacy): 1.4.1, 1.4.2, 1.4.3, 1.4.4, 1.5.0, 1.5.1, 1.5.2, 2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4

Was this topic useful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters