Security, Logins, and Access Control

LogScale has created an ecosystem of security measures designed to keep organizations, their data, and their users safe, visible, and accessible within given parameters.

Role Based Access Control (RBAC)

Maintaining appropriate security boundaries and controlling access within your LogScale environment relies on effective user management.

User Access

Administrators can complete the following tasks for their LogScale environments:

  • Creating and editing user accounts

  • Assigning and customizing roles with specific permission sets

  • Granting granular permissions to specific assets

  • Removing users from the system

Group Access

Establishing groups in LogScale allows administrators to efficiently control user permissions across access levels, roles, repositories and views, etc.

General Data Protection Regulation (GDPR)

LogScale incorporates methodologies that align to GDPR standards so as to avoid more third parties involved with an organization's data than necessary.

API Tokens

There are three types of API token:

  • General API tokens that have a limited set of capabilities based on user need and often come with an expiration date

  • Personal API tokens that also have a set of capabilities, usually much more broad, that has no expiration date

  • Organization API tokens that provide granular access to an organization for management tasks

IP Filters

IP filters are named groups of filter rules that either deny or allow access based on the standard IPv4 or IPv6 address best practice for naming rules.

Administrative Security Policies

Administrative Security Policies allow administrators to enforce heightened security measures for particular features within LogScale.

Session Management

LogScale employs session management to control the security and duration of a user's connection to the platform.

Audit Logging

LogScale automatically creates audit log events for many user actions to maintain a transparent and trustworthy record of activity, with built-in compliance for GDPR requirements.