At POC meeting discuss , a government manager want to know when he know user get file from filr, he want to know which mehtod (Web/Mobile/Client) and user's IP to do advance track.
Whether filr could add user's IP and login mehtods (Web/Mobile/Client), I beleive it shoue be easy to get these infromation from filr.
it could let use sell filr and add good security feeling about filr

Comments

  • Good idea, I would like to see these informations (IP-Address and access method) in the reports as well.

  • We have achieved this at the load balancer level by enabling access logging using the common Apache/NCSA format.

    Running multiple appliances this is the most central place to collect the access log data. We use syslog to the then send the data to graylog. Using graylog we can do the usual log diagnostics and alerting but we also have a dashboard with client access totals based on agent string (windows, mac, ios, android and browsers). You can even run reports based on username for clients that use basic auth (desktop/mobile rest api)

    It also allows us to identify easily users running old filr clients.

    You could setup something similar with Splunk or Sentinel.

  • Noted!

  • Access logging should work with reverse proxies in front of filr. (x-forwarded-for)