In my job we have to investigate people on our network for various
Increasingly I am finding I need some sort of tool to help me out.
Preferably something that I can run on a server, point at a client or
a user account and have it monitor that user/machine activity over a
period of time.
The best tool would have these sorts of features:-
Audit log - everything the user does (shared drives, applications,
Data copy - copy data from the machine, including from pen drives
(automatically would be nice)
Offline logging - ability to log what the user does with the machine
when its off the network
Alerting system - alert me when the user does something defined in
Has anyone come across a tool that does any of these things?
I guess the best solution would be to write something in house, as it
would almost never get picked up by Anti Virus scanners, but
that's a lot of effort.
Any pointers appreciated, thanks in advance.