hi anoble1
a simple way is to check the audit trail on the web applications, that will tell you who is making what on the system.
that works given that every user has a non shared password, if not, it would be needed to organize that firstly.
=== having a NICE time with NICE ===