Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

2.04 Audit Logs: All admin actions should be logged in L1 #30

Open
mperklin opened this issue Nov 4, 2016 · 0 comments
Open

2.04 Audit Logs: All admin actions should be logged in L1 #30

mperklin opened this issue Nov 4, 2016 · 0 comments

Comments

@mperklin
Copy link
Contributor

mperklin commented Nov 4, 2016

Following the audit of an information system, it became clear that all administrative actions within the system should have been logged to ensure retention of valuable information.

Section 2.04 currently states the following for L1 compliance:

Audit trails exist for a subset of actions that are performed within the information system. Examples of this would include recording audit information of all withdrawals and deposits made with the system.

This should be changed to something similar to

Audit trails exist for all administrative actions that are performed within the information system. Examples of this would include recording login/logout times of admins, or balance adjustments to accounts within an off-chain exchange

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant