Configure Active Directory Monitor and Sync

Active Directory Monitor and Sync app

Overview

The Active Directory Monitor and Sync app provides visibility into changes made to Microsoft Active Directory user accounts in an on-premise Active Directory installation.

To monitor for changes to Entra ID accounts, please use the Office 365 Log Monitor app.

Configuration

  1. Go to the App Store and enable the Active Directory Monitor and Sync app.
    screen-shot-2020-02-06-at-4-04-46-pm.png
  2. Switch context to the specific organization that you want to configure. From the top right context switch menu, click the down arrow, then click on the desired organization.
  3.  From the Dashboard, click on the Configure button in the lower right corner of the app card.
    screen-shot-2020-02-06-at-5-28-42-pm.png
  4. From the Monitoring Device list, choose the device that you want to run the app on. Note this app will only run on the specified device.
  5. When finished click Create to save the configuration.

How it works

The app will be run on the specified target machine. Periodically, based on the value specified in the Sync Interval configuration, it will check for changes to active directory users.

When the app starts for the first time, you should expect to see a complete inventory of active directory user accounts in the app results for this app. From that point forward it will only report changes made to user accounts since the last time it ran.

Reset Button

The app maintains a local cache record of account activity. In the event you find these needs to be reset, you can click the Reset button on the Active Directory Monitor and Sync app card. This will send a message to the device running this app to clear the cache and rescan Active Directory for user accounts.