Dear all,
thanks to the great logging functionalists of Linux in general and SME & Contribs special i managed to track back illegal browsing actions to the internal IP address of the computer (Sarg, and dansguardian)
Now i would like to know who has logged in on that machine (known is machine name, machine IP (static) and the time)
we have all PCs in the domain and the PCs and the network is configured with roaming profiles.
I thought i could be possible to get this out of the Samba log's but i was unsuccessful as the samba/IP logs are only error logs and not event logs.
is there some other log i can check to get the login / logout actions on the PCs attached to the network?
Kind regards,