OS2sandbox / sandbox-myndighedsidentitet-issues

Sandbox issuetracker for an OS2 configured IdP and SSO provider Authentik
https://goauthentik.io/
Creative Commons Zero v1.0 Universal
5 stars 0 forks source link

Security by design: Observability and Audit traces #23

Open janhalen opened 10 months ago

janhalen commented 10 months ago

Adhering to the Security by design pattern:

The responsible identity team should be able to track all actions taken by a certain Identy, with full name, timestamp, action performed (eventID), and the network origin/device used to perform the action. The logs should be accesible and searchable including data from the last 90 days.

A log archive from the last year should also be possible to restore for audit purposes.