Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

(Logs) Impossible travel entry #2955

Open
DNS-ERROR31 opened this issue Dec 17, 2024 · 0 comments
Open

(Logs) Impossible travel entry #2955

DNS-ERROR31 opened this issue Dec 17, 2024 · 0 comments

Comments

@DNS-ERROR31
Copy link

(Logs) Impossible travel entry

Problem

The system flags Impossible travel but Could we get more info in the message? Previous location, IP, Machine Info?

Solution

Give more back story of the previous login. So if the log hits the SIEM we can say yes that is valid. So if Steve travels from New York or Las Vegas in that one message we can perform an evaluation of distance traveled and if lets say that time is less 5 hours we can alert on it. But with the extra info we can look at it and go "Oh thats our VPN" or "They went on a hotspot" quite easily.

Alternatives/workarounds

A clear and concise description of any alternative solutions or workarounds you've considered.

Additional context

Add any other context or screenshots about the feature request here.

Community guidelines

All issues filed in this repository must abide by the FusionAuth community guidelines.

How to vote

Please give us a thumbs up or thumbs down as a reaction to help us prioritize this feature. Feel free to comment if you have a particular need or comment on how this feature should work.

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant