15.10. Using Perfmon to Monitor AD

Problem

You want to use Perfmon to monitor the performance of Active Directory.

Solution

Using a graphical user interface

  1. Open the Performance Monitor.

  2. Click on System Monitor in the left pane.

  3. Type Ctrl + I. This will bring up the page to add counters.

  4. Under Select counters from computer, enter the name of the domain controller you want to target.

  5. Select the NTDS performance object.

  6. Select the counters you want to monitor.

  7. After you done with your selections, click Close.

Discussion

There are several Perfmon counters that can be very valuable for monitoring and troubleshooting Active Directory. The NTDS performance object has counters for address book lookups, inbound and outbound replication, LDAP reads, writes and searches, Kerberos authentication, and the Security Account Manager (SAM).

Here is a list of some of the most useful NTDS counters. I’ve also included their Perfmon explanation, which you can view by clicking on the Explain button in the Add Counters dialog box.

DRA Inbound Bytes Total/sec

Shows the total number of bytes replicated in. It is the sum of the number of uncompressed bytes (never compressed) and the number of compressed bytes (after compression).

DRA Inbound Objects/sec

Shows the number of objects received from neighbors through inbound replication. A neighbor is a domain controller from which the local domain controller replicates locally.

DRA Inbound Values Total/sec

Shows the total number of object property values received from inbound ...

Get Active Directory Cookbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.