NPS access and failed logs not generating


hi,

we have windows server 2008r2 dc , have integrated wlc dc of radius server. 2 days before have enabled audit policy account, directory , object changes success , failure. after these changes nps access , failed logs not generated on radius server, before 2 days logs generated. 4400 event id generated on server. users accessing wireless network. please me.


thanks, manish


hi manish,

it seems setting overridden. maybe can use group policy enable nps auditing. please run gpedit.msc, expand computer configuration àwindows settingsàsecurity settingsà advanced audit policy configurationàsystem audit policies - local group policy objectàlogon/logoff. then open audit network policy server properties, check configure following audit events, check success , failure. then run gpupdate /force command in command prompts make policy work @ once. security policy setting determines whether operating system generates audit events radius(ias) , network access protecion(nap) activity on user access requests(grant, deny, discard, quarantine, lock, , unlock).

here success case enabling network policy server logon/logoff auditing via group policy,

http://social.technet.microsoft.com/forums/windowsserver/en-us/064f3e68-42fa-4669-aede-838e7cc7df92/nps-events-and-audit-policy?forum=winservernap

and more details audit network policy server,please refer link below,

http://technet.microsoft.com/en-us/library/dd772634(v=ws.10).aspx

best regards,

tina



Windows Server  >  Network Access Protection



Comments

Popular posts from this blog

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com

Azure MFA with Azure AD and RDS