Post by michael84 » Thu Apr 26, 2012 11:59 pm

Dear OC Developers...

I'm setting up an account with PayPal. In their API License Agreement I am required (as well as everyone who agrees to it) to have an administrator logon/logoff report, in case there is a security breach and they need to investigate who logged on and at what time(s) on any given date.
Can there be a distinction between different administrators? Can a function be implemented that records the dates and times for logon/logoff for each administrator for at least 60 days, and a module developed to view those records?

For reference, here is the PayPal requirement on their API License Agreement:
2. Security Requirements
Event Monitoring.
Any of your systems that communicate with PayPal's API or stores PayPal Content must log access events (i.e., logons and logoffs), along with the time of day and the associated User ID. These logs should be kept for at least sixty (60) days. In the event of unauthorized access to PayPal's systems via your systems, PayPal reserves the right to audit these event logs as part of its investigation.

Many thanks in advance for this help.
Michael

Newbie

Posts

Joined
Wed Apr 25, 2012 5:35 am

Post by straightlight » Fri Apr 27, 2012 11:10 am

There's a module doing that already: http://www.opencart.com/index.php?route ... on_id=5342 :)

Dedication and passion goes to those who are able to push and merge a project.

Regards,
Straightlight
Programmer / Opencart Tester


Legendary Member

Posts

Joined
Mon Nov 14, 2011 11:38 pm
Location - Canada, ON
Who is online

Users browsing this forum: No registered users and 6 guests