This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

[Feature Request] Remote Access Reporting

Hi when can we expect to see some Remote Access Reporting in any form?
As a basic I would like to see in the daily Executive Reports who logged in.
As a Security Tool we really do need to see who is logging on to or attempting to log on to our Networks.

Thanks

Mark


This thread was automatically locked due to age.
Parents Reply
  • Reporting on connected VPN users would be a good start.  I would also say that being able to add time restrictions onto VPN access would be a good thing as well.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

Children
  • @BrucekConvergent

    time based profiles are possible for vpn users. just disable automatic packet filter, and setup an own one with time based filter rules.

    Sven

    Astaro user since 2001 - Astaro/Sophos Partner since 2008

  • Sven, thanks for the new trick!

    That looks like it would work for SSL and IPSec Remote Access, but not for PPTP, L2TP over IPSec or Cisco.

    Seems this is another reason to choose SSL over L2TP for some situations.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Sorry Barry
    That is Reporting on VPN Users.
    (I have email turned on for Console and Wedmin Access).

    Thanks
    Mark
  • @BrucekConvergent

    time based profiles are possible for vpn users. just disable automatic packet filter, and setup an own one with time based filter rules.

    Sven


    I know you can do that; however, it'd be better to be able to restrict actual VPN logins to certain hours, and be able to pull a report if attempts to connect were made outside of the restricted hours; makes it easier to detect if someone's credentials were compromised and someone is using them to attempt to hack in.

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.