The answer: No.
As explained, you need to force users to login as themselves and su or sudo.
I guess in the old days, it would suffice to figure out from what IP/computer the user used, look at the logs on that computer and figure out who was on when access was made. With Remote Desktop Connection and PC anywhere,etc., the trail might be harder to follow.
gene