This article explains how to check the audit policy status of machines in a domain using the ADAudit Plus product UI.
Have access to the ADAudit Plus console.
The service account must have administrative privileges.
Have WMI and DCOM permissions on the target machines.
Domain computers must be reachable from the server where ADAudit Plus is installed.
Under the Administration section, select Audit Policy Status.
From the Domain drop-down list, select the domain you wish to audit.
In the Computer section, pick the specific machine (domain controller, member server, or workstation) whose audit policy status you want to view.
Click the Generate button.
The current audit policy configuration for the selected machine will be displayed.
If policies appear missing or disabled, reconfigure them via a GPO or local security policy and regenerate the report.
Regularly review audit policy status for all critical machines to maintain visibility over audit configurations.
For large environments, consider creating a scheduled task in ADAudit Plus to routinely monitor and alert on audit policy deviations.
Use the Export options to keep offline records or share audit policy statuses with compliance teams.