We did some cleanup and added several devices to our OpManager last week. This triggered alot of error messages from ADAudit over the weekend (>700) as we monitor failed administrator logins.
| Alert Message: |
Login failure for User 'Administrator' in 'netmon01.westcanbulk.local'. Reason: 'Bad password'. |
| Severity: |
Attention |
We did not add any new credentials so it would not be a bad password, but more likely a device is checked off to use a credential it can't accept.
How do we trace this in OpManager to see which devices are using the administrator credential they don't accept?