Skip to main content

Audit Trails

DZDESK maintains comprehensive audit trails for security and compliance.

What's Logged

User Actions

ActionDetails Logged
LoginTime, IP, device, success/fail
LogoutTime, session duration
Request actionsCreate, update, delete
Data exportsWhat, when, by whom
Setting changesBefore/after values

Administrative Actions

ActionDetails Logged
User managementCreate, modify, deactivate
Role changesOld/new role
Permission changesWhat changed
ConfigurationAll settings changes

System Events

EventDetails Logged
API accessEndpoint, method, response
Failed attemptsAction, reason, context
Security eventsAlerts, detections

Audit Log Format

Log Entry Structure

{
"timestamp": "2024-01-15T14:30:00Z",
"eventType": "request.updated",
"actor": {
"id": "usr_123",
"email": "user@company.com",
"role": "agent"
},
"resource": {
"type": "request",
"id": "req_456"
},
"changes": {
"status": {
"from": "open",
"to": "in_progress"
}
},
"context": {
"ipAddress": "192.168.1.100",
"userAgent": "Mozilla/5.0...",
"sessionId": "sess_789"
}
}

Accessing Audit Logs

In Dashboard

  1. Navigate to Settings > Audit Logs
  2. Use filters to search
  3. View log details

Required Permissions

  • Admin role required
  • Audit access logged
  • Cannot modify logs

Log Retention

Retention Period

Log TypeRetention
Security events2 years
User actions2 years
System events1 year

After Retention

  • Logs archived or deleted
  • Based on policy
  • Configurable per tenant

Available Filters

FilterDescription
Date rangeStart and end dates
Event typeSpecific action types
UserSpecific actor
ResourceSpecific item

Search Examples

  • All logins today
  • Actions by specific user
  • Changes to specific request
  • Failed authentication attempts

Export and Reporting

Export Formats

  • CSV
  • JSON
  • PDF reports

Scheduled Exports

Configure automatic exports:

  • Daily, weekly, monthly
  • Email delivery
  • Secure storage

Integration

SIEM Integration

Forward logs to:

  • Azure Sentinel
  • Splunk
  • Other SIEM tools

API Access

Query logs via API:

  • Real-time access
  • Filter parameters
  • Pagination support

Compliance

Regulatory Requirements

Audit logs support:

  • KVKK compliance
  • GDPR requirements
  • SOC 2 audits
  • ISO 27001

Audit Evidence

Logs provide evidence for:

  • Access reviews
  • Incident investigations
  • Compliance audits
  • Forensic analysis

Log Security

Tamper Protection

  • Append-only logs
  • No modification capability
  • Integrity verification
  • Separate storage

Access Control

  • Admin-only access
  • Access itself logged
  • Role-based visibility