Getting Data In

Password policy logs in Active Directory.

aalhabbash1
Path Finder

Hi Splunker;

Is there way for Splunk monitor password policy in AD, such as; what is content this policy about how number of characters used and how must be long the characters and so on.

Best Regards;

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Password policy is set in Group Policy Objects, which Splunk does not monitor. You may, however, be able to write a script that collects this information.

---
If this reply helps you, Karma would be appreciated.
0 Karma

aalhabbash1
Path Finder

Dear Richgalloway,

Thank you to response; if you have this script please share the script with me.

Best Regards;

0 Karma

richgalloway
SplunkTrust
SplunkTrust

I do not have such a script, but it should be easy to create one in PowerShell.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

SOCin’ it to you at Splunk University

Splunk University is expanding its instructor-led learning portfolio with dedicated Security tracks at .conf25 ...

Credit Card Data Protection & PCI Compliance with Splunk Edge Processor

Organizations handling credit card transactions know that PCI DSS compliance is both critical and complex. The ...

Stay Connected: Your Guide to July Tech Talks, Office Hours, and Webinars!

What are Community Office Hours?Community Office Hours is an interactive 60-minute Zoom series where ...