Hi,
My network is setup like this: I am on a domain with several workstations in it. A VPN is setup to a production environment where servers are not in a domain. My workstation is running Windows 7 Pro.
On one server running Windows 2003 R2, I see this kind of entry in the Security log every 2 minutes. To my knowledge, I have no permanent connection to this server (RDP is closed, no shared folder, no web page, no connection to SQL).
Event Type: Success Audit
Event Source: Security
Event Category: Account Logon
Event ID: 680
Date: 2/26/2012
Time: 2:37:27 AM
User: SERVER01\PDube
Computer: SERVER01
Description:
Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
Logon account: PDube
Source Workstation: PDUBE-PC
Error Code: 0x0
Should I be concerned about these entries? Why is this logged every 2 minutes?
Paul
My network is setup like this: I am on a domain with several workstations in it. A VPN is setup to a production environment where servers are not in a domain. My workstation is running Windows 7 Pro.
On one server running Windows 2003 R2, I see this kind of entry in the Security log every 2 minutes. To my knowledge, I have no permanent connection to this server (RDP is closed, no shared folder, no web page, no connection to SQL).
Event Type: Success Audit
Event Source: Security
Event Category: Account Logon
Event ID: 680
Date: 2/26/2012
Time: 2:37:27 AM
User: SERVER01\PDube
Computer: SERVER01
Description:
Logon attempt by: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
Logon account: PDube
Source Workstation: PDUBE-PC
Error Code: 0x0
Should I be concerned about these entries? Why is this logged every 2 minutes?
Paul