Who add or delete users in ACL on AD

Grzegorz Goljanek 41 Reputation points
2022-03-08T09:03:43.723+00:00

Hello fellows!
I've checked forum about ACL, but not found answer.
I have domain, and file server (WS2019). I have on AD server ACLs that give users certain access to folders on FS. All works fine.
There are two admins too. I wonder is possible to check who changes ACL, add or delete users. Can I check it somewhere?

Thank you in advance.
Greg

Windows for business | Windows Server | User experience | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Thameur-BOURBITA 36,261 Reputation points Moderator
    2022-03-10T23:38:05.123+00:00

    Hi,

    You have to create a GPO to enable the setting Audit object access and set required SACL.
    You can refer to the following links to have more details about gpo setting and SACL required to enable the audit.

    basic-audit-object-access

    how-to-audit-changed-permissions-on-ntfs-folders-the-best-way

    Please don't forget to mark helpful reply as answer

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.