HomeGuidesAPI
HomeGuidesAPILog In
Guides
These docs are for v15. Click to read the latest docs for v33.

Logging and Retention

šŸ“˜

Deployment Availability

Some logging settings are restricted depending on deployment architecture.

Logs providing diagnostic and auditing information are kept by SmartIQ, available to authorized administrators. The logs are categorized based on their type, for example, a system error is different to audit records such as a change of password. How long each category of logs is stored is configured in Retention Settings.

šŸ“˜

Personally Identifiable Information (PII) and Encryption

Documents, files and text data containing PII are all encrypted before storage.

Retention Settings

Retention settings determine the length of time the logs are kept. This setting can be changed in Manage > Settings > Retention.

Each setting has a default as seen in the screenshot below.

For more information on each setting:

šŸ“˜

Retention period changes

If retention periods are reduced, the new value will apply immediately to all existing data. At the next scheduled clean-up, all data that lies outside the new retention values will be removed.

Version History Maximum

Sets the maximum number of revisions to Projects and Content Items to retain, allowing a rollback where necessary.

šŸ“˜

Project major and minor versions

Each save to a project in Design represents a minor version, whereas a major change is defined as when the project is closed and the designer is prompted for version comments (optional).

Generation Log

Records within then generation log track a progress once a user has opened a new form or workflow state. The record tracks:

  • General metadata such as user, date started updated, etc.
  • Whether the user exited the form unexpectedly, allowing recovery.
  • The latitude and longitude of the user (where configured)
  • The current user’s (or culmination of users where a workflow is involved) final response to each question within the form at the time the record was

Generation logs can be demanding on storage. Where possible, the default of 365 should be reduced.

Management Console displays information or errors associated with generation logs, such as an error encountered when attempting to run an Action. These logs can be accessed from Manage > Management.

Click View for additional information.

Event Logs

The Event log tracks errors, warnings, and other events useful to system administrators. Records are viewed from Manage > Event Logs by administrators with the "View event log" permission.

The default number of days that SmartIQ keeps Event logs is 90 days.

Keep Workflow History and Workflow Logs

Granular logs pertaining to each state within a workflow are kept by SmartIQ. Each records tracks the user, create date, updated date, state within the workflow, completeness and, most importantly, the actual responses made during the state. These records allow the tracking of changes throughout a workflow. For example, user1 responded with Apple and user2 changed the response to Banana.

Enabling the keep workflow setting will keep the completed records after the workflow has been completed in full.
Workflow data can be large in volume thus, by default, completed workflow records are removed. When configured to be kept an appropriate workflow logs retention should be considered.

Store Location Data

When configured, stores IP/location upon user login.

Audit Logs

🚧

Caution

Enabling audit logs can potentially add large volumes of data to a SmartIQ environment Therefore, auditing should only be enabled as part of an investigation and not left on as a matter of course.

Additionally, audit Log require database access which may not be available in multi-tenant deployment.

Audit Logs record administrative activities and accesses within SmartIQ that are security related and can provide evidence for compliance and auditing admin activity. Logs include activities such as: Login/Logout attempts, updates to users, other system entities etc. Each record contains data such as the user and date of the event it is tracking.

Auditing is enabled or disabled from Manage > Settings > General > Enable Auditing.

Audit logs are not available from the Manage interface and require database access to the AuditLog table. Enabling audit logs add large volumes of data and should only be enabled when necessary with an appropriate retention setting.

The following table indicates what actions are logged into the Audit Log.

EventManageAdmin APIProduce
Account access control - User logged ināœ…āœ…āœ…
Account access control - User login failedāœ…āœ…āœ…
Account access control - Temporary User access failedāœ…
Account access control - User changed passwordāœ…
Account access control - User reset passwordāœ…
Approvals - Create/Edit Approvalāœ…
Approvals - Delete Approvalāœ…
Approvals - Restore version of approval due to project version restoreāœ…
Categories - Create/Edit Categoryāœ…
Categories - Delete Categoryāœ…
Content Folders - Create Content Folderāœ…āœ…
Content Folders - Edit Content Folderāœ…āœ…
Content Folders - Delete Content Folderāœ…āœ…
Content Library - Approve Content Itemāœ…
Content Library - Export Itemāœ…
Content Library - Create Categoryāœ…
Content Library - Create/Edit Itemāœ…āœ…
Content Library - Delete Itemāœ…āœ…
Content Library - Export Historical Itemāœ…
Content Library - Delete Content Item Folderāœ…
Content Library - Restore version of Content Itemāœ…
Create User Action - Create/Edit Userāœ…
Custom Fields Create/Edit Custom Fieldāœ…
Custom Fields Create/Edit Metadata Custom Fieldāœ…
Data Connections - Create/Edit Data Connectionāœ…āœ…
Data Connections - Delete Data Connectionāœ…āœ…
Data Connections - Delete Data Connection folderāœ…
Data Objects - Delete Data Objectāœ…āœ…
Data Objects - Create/Edit
Data Object
āœ…āœ…
Data Objects - Access denied to data object schemaāœ…
Data Objects - Create/Edit Custom Data columnāœ…
Data Objects - Delete Custom Data columnāœ…
LDAP Identity Provider - Create/Edit User from LDAP Logināœ…
LDAP Identity Provider - Create/Edit User from LDAP Syncāœ…
License - Update Licenseāœ…
Projects - Edit Projectāœ…āœ…
Projects - Delete Projectāœ…āœ…
Projects - Export Projectāœ…āœ…
Projects - Delete Project Folderāœ…
Projects - Access denied to project during exportāœ…
Projects - Restore Project versionāœ…
Projects- Import Projectāœ…
Project Submission - Cancel Project Generationāœ…
Project Sync Pack - Export Sync Packāœ…
Project Sync Pack - Begin Import Sync Packāœ…
Project Sync Pack - End Import Sync Packāœ…
Published Projects - Unpublish Projectāœ…
Published Projects - Publish Project/Edit Project Publishāœ…āœ…
Publish Folders - Create Folderāœ…
Publish Folders - Edit Folderāœ…
Publish Folders - Delete Folderāœ…
Roles - Create/Edit Roleāœ…āœ…
Roles - Delete Roleāœ…āœ…
SAML Identity Provider - Create/Edit User from SAML Logināœ…
Scheduled Projects - Pause Allāœ…
Scheduled Projects - Cancel Allāœ…
Scheduled Projects - Resume Allāœ…
Scheduled Projects - Pause Selectedāœ…
Scheduled Projects - Cancel Selectedāœ…
Scheduled Projects - Edit Scheduled Project definitionāœ…
Scheduled Projects - Delete Scheduled Project definitionāœ…
Scheduler - Automatic removal of Data Controller role from user(s)āœ…
Sequences - Create/Edit Sequenceāœ…
Sequences - Delete Sequenceāœ…
Settings - Update Settingsāœ…āœ…
Settings - Update Connector Settingsāœ…āœ…
Settings - Import Themeāœ…
Settings - Export Themeāœ…āœ…
Settings - Access denied to system theme during exportāœ…
User Groups - Create/Edit Groupāœ…āœ…
User Groups - Delete Groupāœ…āœ…
Users Groups - Edit Group Addressāœ…
Users - Create/Edit Userāœ…āœ…
Users - Export Usersāœ…
Users - Edit Roles/Groupsāœ…āœ…
Users - Delete Userāœ…āœ…
Windows AD Identity Provider - User Logināœ…
Windows AD Identity Provider Create User - Basic Windows Authenticationāœ…
Windows AD Identity Provider - Create/Edit User from Windows Authentication Logināœ…
Windows AD Identity Provider - Create/Edit User from Windows Authentication Syncāœ…
Workflow - Terminate Workflow Taskāœ…āœ…
Workflow - Unlock Workflow Taskāœ…āœ…
Workflow - Unlock Concurrent Workflow Task for editāœ…
Workflow - Reassign Workflow Task to userāœ…
Workflow Reassign - Create Temporary User for recovery of taskāœ…āœ…
Workflow Save - Create Temporary User via workflow assignmentāœ…
Client API (all areas) - Action with User Impersonation*āœ…

*This applies to the client API: any action with user impersonation enabled