Use this Exchange auditing software to get a single, correlated view of all Exchange and Office 365 activity, with visibility of all changes whether on-prem or in the cloud.
Track user and administrator activity with detailed information for change events, plus original and current values for all changes.
Audit any changes made to mailboxes that have been accessed by a non-owner, which enhances security and compliance.
Prevent anyone but the mailbox owner from accessing sensitive or critical mailboxes using this Exchange auditing software.
Send critical change and pattern alerts to email and mobile devices to prompt immediate action, even while you're not on site.
Enrich SIEM solutions including Sentinel, Splunk, ArcSight, QRadar or any platform supporting Syslog by integrating Change Auditor’s detailed activity logs.
Generate best practices reports for regulatory compliance mandates for GDPR, SOX, PCI-DSS, HIPAA, FISMA, GLBA and more.
Capture changes information without the need for Microsoft-provided Exchange audit logs, resulting in faster results and massive storage savings.
Use this Exchange audit tool to administrator access and end user mailbox activity for mailboxes hosted on Office 365. Events are searchable and integrated into reports for a more complete picture of what’s happening in Exchange and Exchange Online.
Correlate disparate IT data from numerous systems and devices into IT Security Search, an interactive search engine for fast security incident response and forensic analysis. Include user entitlements and activity, event trends, suspicious patterns and more with rich visualizations and event timelines.
View, highlight and filter change events and discover their relation to other security events in chronological order across your Microsoft environment for better forensic analysis and security incident response.
Provide instant, one-click access to all information on the change you're viewing and all related events, such as what other changes came from specific users and workstations, eliminating additional guesswork and unknown security concerns.
Use this Exchange auditing software to track changes made to Exchange public folders, which speeds troubleshooting and ensures compliance.
Audit mobile devices using the Microsoft ActiveSync to track email and calendar access, device registration and more for on-premises Exchange.
There are specific system requirements for the Change Auditor coordinator (server-side), Change Auditor client (client-side), Change Auditor agent (server-side), and the Change Auditor workstation and web client (optional components). For a full list of system requirements and required permissions for all components and target systems that can be audited by Change Auditor please refer to the Change Auditor Installation Guide.
The Change Auditor coordinator is responsible for fulfilling client and agent requests and for generating alerts.
Quad core Intel® Core™ i7 equivalent or better
Minimum: 8 GB RAM or better
Recommended: 32 GB RAM or better
SQL databases supported up to the following versions:
NOTE: Performance may vary depending on network configuration, topology, and Azure SQL Managed Instance configuration.
NOTE: Change Auditor supports SQL AlwaysOn Availability Groups, SQL Clusters, and databases that have row and page compression applied.
Installation platforms (x64) supported up to the following versions:
NOTE: Microsoft Windows Data Access Components (MDAC) must be enabled. (MDAC is part of the operating system and enabled by default.)
For the best performance, Quest strongly recommends:
NOTE: Microsoft ODBC Driver 17 for SQL Server is required when the Change Auditor database resides on Azure SQL Managed Instance and Azure Active Directory authentication is selected.
NOTE: Do NOT pre-allocate a fixed size for the Change Auditor database.
In addition, the following software/configuration is required:
Additional Account Coordinator minimum permissions required, please see Change Auditor Installation Guide .