Home / CPTRAX for Windows

Tracking Workstation Logons and Server Authentication Events

CPTRAX for Windows

  • Track workstation logons, locks, and unlocks
  • Track user password change attempts
  • Track Windows Server authentications
  • Track Remote Desktop, Terminal Server, and Citrix logons
  • Identify logon time, username, workstation, and IP address
  • Receive email alerts when actions of interest occur
  • Quickly detect and automatically stop threats - Learn More

Track user workstation logons, locks, and password change attempts

CPTRAX provides visibility of user logon activity at each workstation, including workstation locks and unlocks. You'll be able to see all failed logon attempts, password changes, and failed password change attempts.

Workstation logon and password changes are tracked even when workstations are offline. When workstations reconnect to the network, records are automatically uploaded and available for reporting.

Track logons to Windows Servers, Remote Desktop/Terminal Servers, and Citrix Sessions

CPTRAX enables real-time logon auditing for Windows Servers, Remote Desktop Servers, Terminal Servers, and Citrix Sessions. Audit logons as they occur and quickly provide auditors with the session details they need.

Document the following logon activity:

  • Local Workstation
  • Kerberos
  • NTLM
  • NTLMSSP
  • Remote desktop
  • Terminal server
  • Citrix Sessions
  • All failed attempts

Get detailed information about who is logging on, including:

  • Username (LDAP or SAM account name)
  • Workstation name
  • Workstation IP address
  • Total session time
  • Remote computer name (for Remote Desktop and Terminal server sessions)
  • Remote computer IP address (for Remote Desktop and Terminal server sessions)

Real-time email alerts

Know immediately when an action of interest occurs. CPTRAX can send you and your staff an email when certain server authentication or failed longon activities occur on your server, while quietly auditing everything else.

Quickly Detect and Automatically Stop Threats

Detect threats with Pattern alerts which can be configured to alert you when interesting actions occur repeatedly on your Windows servers such as mass file deletions or ransomware behavior. Optionally call a PowerShell script to immediately stop the action from happening. Learn More

Other features

  • Customizable tracking profiles
  • Central management console
  • Automated report scheduling
  • Centralized log files
  • Encrypted Log Files
  • Send log data to Microsoft SQL Server (Optional)
  • Send event messages to Syslog Server (Optional)

Get a free trial of CPTRAX for Windows today!

CPTRAX includes 1 YEAR of our world class support!

Assisted Installation

Our team will help you implement CPTRAX from start to finish.

Unlimited Training

We'll make sure you can get the information you need out of CPTRAX.

Unlimited Support

Our rapid-response support team can assist with any questions you may have.