A method for detecting the invalid access to a computer network is
disclosed. The method preferably operates in a computer network having
computer servers operating on different operating systems and a plurality
of computer devices. Each computer device is managed by a computer server
at the operating system level. The computer network includes a plurality
of information databases that contain information associated with the
users and with the computer devices of the computer network. On each
computer server, the method, system, and program generates a set of
identifying files for each computer device managed by the computer
server. All sets of identifying files from the plurality of computer
servers are next gathered into a unique central violation database. Links
are created between each set of identifying files and the plurality of
information databases in order to determine a level of network access
violation for each computer device. Violation messages for each computer
device are generated based on the level of network access violation.