I have a virtual machine running Windows Server 2016. I want to track all actions that user performs.
Ex: If user runs a python script on it, should come in windows logs or Application and services logs.
Any thoughts on the most optimal and feasible way of doing it?
View best response
Hi you can see this part https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/plan/security-best-practices/audit-po...
if accomplish your task for specific event.
Let me know,