Skip to main content

31 docs tagged with "Accounts"

Documents dealing with user or system account management and related topics

View all tags

Audit - Inactive AD Users - X Days

This script detects the inactive users over X days and records the data into the custom table so that it can be represented in a dataview.

Audit Inactive AD Users

This internal monitor detect the online AD Infrastructure Server where the client EDF "Audit Inactive AD Users" should be checked for the auditing to be enabled

cPVAL Local Admin Default Password

Set the default password for the local admin in this field. If provided, the script will use this password instead of generating a random one during account creation.

cPVAL Local Admin Display Name

Enter the display name for the local admin account. If left blank, the username will be used as the display name by default.

cPVAL Local Admin Maximum Password Length

Set the maximum password length for the local admin account. Applies only to auto-rotation. Ignored if a default password is set. Default: minimum length + 5 characters.

cPVAL Local Admin Password

Stores the password for the local admin account created by the Local Admin Process. This value is used for authentication and should be kept secure.

cPVAL Local Admin Password Rotation Day

Set the number of days for automatic password rotation. If this field is blank or set to 0, the Local Admin password will not rotate, but will be set initially if a username is provided.

cPVAL Local Admin Process

Select the operating system to enable the "Local Admin Process" solution. Choose Disabled at location or computer level to exclude that device or location from automatic local admin account creation.

cPVAL Local Admin Username

Enter the username for the local admin account to be created. This name will be used when setting up the account as part of the Local Admin Process solution.

Disable - Inactive AD Users - X Days

This script detects the inactive users over X days and disables them, and records the data into the custom table so that it can be represented in a dataview.

Disable Inactive AD Users

This internal monitor detect the online AD Infrastructure Server where the "pvl_ad_inactive_users" has an enabled users list over threshold and are not excluded.

Enable Inactive Disabled AD Users

This internal monitor detect the online domain controllers where the client-EDF "Enable Inactive Disabled AD Users" is checked. It also ensures to detect only those AD Infrastructure Master servers where the "pvl_ad_inactive_users" has a disabled users list.

Excesive Logon Attempts

This ticket template is used to manage the CW Manage ticket generation settings for the Excessive Logon Attempts Alert Condition

Excessive Logon Attempts

Detects and summarizes failed logon attempts (Event ID 4625) from the Windows Security event log within a specified time window.

Excessive Logon Attempts

The condition runs the automation once per hour and generates a ticket with the script’s results if any monitored event log is detected.

Excessive Logon Attempts

This will Detect and summarize failed logon attempts (Event ID 4625) from the Windows Security event log within a specified time window.

Get Domain Users

Exports a detailed report of all domain users to a CSV file from a Windows Domain Controller. (Path: C:\ProgramData\_Automation\Script\Get-DomainUsers\DomainUsers.csv)

Inactive AD Users Audit

This dataview stores the data of the users that were either disabled via script "Disable - AD Inactive Users - X Days" or enabled via script "Enable - Inactive Disabled AD Users - X Days"

New Account Audit and Disable For Approve

This dataview provides insights into newly created accounts, including details about the creator, account type, and logon status. It is essential for auditing account creation on servers and helps in monitoring security and compliance.

Windows - Local Admin Process - Servers

Triggers the Windows - Local Admin - Create/Update script on Windows servers where the Windows - Local Admin - Process solution is active. The script executes when the local admin account is absent or when a password rotation is due.

Windows - Local Admin Process - Workstations

Triggers the Windows - Local Admin - Create/Update script on workstations where the Windows - Local Admin - Process solution is active. The script executes when the local admin account is absent or when a password rotation is due.