I have a user whose account is constantly being locked out every few seconds. She accesses our LAN from a remote office via Terminal Services. We have got a bit of workaround to enable the user to continue working however I am not satisfied as we have not pinpointed the exact problem that was causing it. To me this problem is saying that something somewhere is trying to use her account credentials to access a network resource and due to a recent password change and latency in the AD replicationis out of sync and causing her account to continually lockup. The question is does anybody know of any tools for Active Directory that can trace any connections a user might have open. I have already gone through the Terminal Server connection manager and there are none, nor is there any connections open from Computer Managment MMC on the server where her home folder resides. However when trying to perform an operation on her home drive profile folder it stated that there were 3 connections open. As I was unable to trace where these were we had to go with the workaround. However as stated i am not happy with this. I have been through the Support tools and resource kits but cannot see anything obvious that would let me do this. I might be blind or simply stupid so some help would be appreciated, if there are any Support tools to trace open connections or connections that are trying to be made (like a drive mapping) when the user is not even logged in.
Many thanks in advance for anyassistance.
Steve Johnson