Excluding Certain Users from Being Logged

skbryan's picture

We out Server 2003 & use active directory.  Is there an easy way to exclude certain users from being logged in im manager?  Thank you.

Filed under: ,
skbryan's picture

didn't mean to post this

didn't mean to post this twice

i.m.legend's picture

Would you be willing to share

Would you be willing to share your solution?

skbryan's picture

haven't figured it out yet

Surely there is an easy way to do this. . .

i.m.legend's picture

Well, you can disable the

Well, you can disable the default logging policy, and then create a new logging policy that is associated with an LDAP group. That way only users in that group would be logged. It achieves the same goal, but does it in the opposite way I understand you were expecting.

Mr.BadExample's picture

Another approach...

IM Manager was created for security and compliance for IM.

It really wants to save your messages for you unless you specifically go through additional steps to tell it not to.

Out of the box it will save all messages.

You can create a custom rule for a group that will not log their messages (using a Logging Level Rule).  When you do that any user that belongs to the group that has the custom logging level will not have their messages logged.  Remember that IM Manager rules are based on groups.  Rules are always applied to groups, not to users.  You need to get a group (either make one or get one from LDAP) and create a Logging Level Rule to apply to that group.

Bear in mind...  If you have 2 users in 2 different groups where one should be recorded and the other should not and they are talking... IM Manager will record that conversation.

When IMM is in a situation of 2 users that have different levels of message logging, it will always  use the rule that logs the most data.  This to make sure that it always records messages for people that should be recorded.

N1500's picture

hi

hey what is this............

qinger0044's picture

nice to see

Blocking executable files via GPO is only good if the clients would not rename the file...
They always rename it... that is a real problem... :(
I hope we could resolve it hear in the forums first..
if not then we might just get a ticket from Symantec...

Thanks...
Well wishes from my team,
Gand Bhari team - Cystic Acne

qinger0044's picture

Still i am having doubt about

Still i am having doubt about How to uninstall my Antivirus tool.
thanks.
regards,
GB team.

Jimmi's picture

Do you mean 'logged in', as

Do you mean 'logged in', as in:

Can access the IM Manager.

or

Have their conversations recorded.

2 very different cases. I thought you meant the first (so you want to prevent access to IM Manager), but all the other replies thought the 2nd.

Let me know how you go. Jimmi @ Flights