Once you assign a user or group account specific user rights, you can monitor their privilege use by enabling auditing. For example, if you assign a user the right to Back up files and directories, you can monitor when the user performs any backups. This is done by enabling the Audit privilege use option within the audit policy.

To do so, open the Group Policy console by clicking Start and click Run. Type gpedit.msc and Click OK. Navigate to the following container: Computer Configuration | Windows Settings | Security Settings | Local Policies | Audit Policy. Double click the option to Audit privilege use. Place a check beside Success and/or Failures (depending on the events you want to monitor). Click OK.

[tags]microsoft,xp,gpedit.msc,diana huggins,user rights[/tags]