Direct Inward Dialing: +1 408 916 9892
User accounts in Active Directory can get locked out either because a legitimate user locks themselves out, or because of a security issue. In either case, IT administrators need to search for locked-out accounts and take remedial action.
The following is a comparison between using Windows PowerShell and ADAudit Plus, to obtain the list of locked-out users in Active Directory:
Search-ADAccount –LockedOut -UsersOnly
The following are the limitations of using PowerShell to track the source of an account lockout:
On the other hand, ADAudit Plus will automatically scan all DCs in the domain to retrieve the list of account lockouts.
Logon-Logoff
Account lockouts
Windows event logs
File server auditing
Active Directory auditing
Azure AD
Server auditing
Computer start-ups and shut-downs