What does AzureActiveDirectoryStsLogon mean

Gabriela-Simona Corşatea 0 Reputation points
2024-07-10T13:43:30.66+00:00

Hi team,

What does AzureActiveDirectoryStsLogon mean in logs?

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,551 questions
0 comments No comments
{count} votes

5 answers

Sort by: Most helpful
  1. MARWAN ABDULMALEK 0 Reputation points
    2024-07-10T13:49:34.23+00:00

    Hello Gabriela, The AzureActiveDirectoryStsLogon event in sign-in logs refers to a user’s successful authentication using Security Token Service (STS) protocols in Azure Active Directory (Azure AD). If you have further questions, feel free to ask!

    Marwan

    0 comments No comments

  2. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

  3. Yanhong Liu 9,985 Reputation points Microsoft Vendor
    2024-07-11T05:43:22.1366667+00:00

    Hello,

    Thank you for posting in Q&A forum.

    The AzureActiveDirectoryStsLogon event in logs typically pertains to authentication activities associated with Azure Active Directory (Azure AD). More specifically, it indicates that a Security Token Service (STS) logon has occurred.

    STS is responsible for issuing security tokens that are used for user authentication and access control in services integrated with Azure AD. When you see AzureActiveDirectoryStsLogon in your logs, it usually means that a user or application has authenticated through Azure AD to access resources or services.

    I hope the information above is helpful.

    Best Regards,

    Yanhong Liu

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

  4. Gabriela-Simona Corşatea 0 Reputation points
    2024-07-16T13:33:59.16+00:00

    Hello both,

    Thank you for the information provided!
    I have a last question. Where can I find the logs for the following apps:

    • OfficeHome
    • Office365ExchangeOnline
    • Microsoft Account Controls V2

    Thank you,
    Gabriela

    0 comments No comments

  5. MARWAN ABDULMALEK 0 Reputation points
    2024-07-16T14:30:35.86+00:00

    Hello Gabriela, that might help you to find the logs.

    For OfficeHome: in Windows: Logs are often found in the %temp% directory or %appdata%\Microsoft\Office\Logs.

    In Mac: Logs can be found in ~/Library/Logs/Microsoft/.

    For Office365ExchangeOnline: Navigate to the Exchange Admin Center EAC, go to Compliance management > Auditing, and then choose the type of logs you need (admin audit log, mailbox audit log, etc.). You also can use powershell For Microsoft Account Controls V2: With the Azure Portal: Go to Azure Active Directory > Sign-ins or Audit logs to view logs related to user sign-ins and directory changes. Don't hesitate to ask if needed. Marwan

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.