Access Governance
Know who currently has access to each VPN, and keep a record of every time that access was granted or revoked, and by whom.
Every time access to a VPN is granted or revoked, PrivyNet records who was affected, when, and which admin made the change. Exportable evidence of your access control history, ready when you need it.
Knowing who currently has access to a VPN isn't enough on its own - you also want a record of how that access changed over time, and who authorised it.
Know who currently has access to each VPN, and keep a record of every time that access was granted or revoked, and by whom.
When someone leaves or a policy question comes up, you can see exactly when their access was granted and when it was revoked.
An exportable grant/revoke history is useful supporting evidence alongside your own access control processes for regulator or insurer reviews.
If you need to confirm who had access to a VPN at a given time, the grant/revoke history tells you exactly that.
Every time a user's access to a VPN is granted or revoked, PrivyNet automatically records the following - no configuration required
Whose access to the VPN was changed
Whether access was granted or revoked
When the change was made
Which admin made the change
Regular users can't view or change access logs - only your organisation's admins can, and they only ever see records for your own users and VPNs. Admins can clear their organisation's log from the dashboard if needed.
Pull your access records into your existing compliance or reporting workflow without any manual transformation
Download your access log as a flat CSV file directly from the dashboard. Open it in Excel or Google Sheets, or import it into your compliance tool with no transformation required.
CSV export is available directly from the PrivyNet dashboard. No API key required for manual exports - select your date range and download.
An access grant/revoke history is useful supporting evidence for the network access monitoring requirements in these frameworks
| Framework | Requirement | PrivyNet Coverage |
|---|---|---|
| GDPR | Access records & accountability | Access grant/revoke history |
| SOC 2 | Logical access monitoring | Access grant/revoke history |
| ISO 27001 | Access control evidence | Exportable grant/revoke history |
| Cyber Essentials | Network access control | Access grant/revoke history |
PrivyNet provides a Data Processing Agreement (DPA) as part of every subscription. Combined with your access log export, this gives auditors useful supporting documentation - it's not a substitute for your own access control policy and records.
Common questions about VPN access logs and compliance evidence
It's a record of access control changes: whenever a user is granted or revoked access to a VPN, PrivyNet logs who was affected, which action was taken, when, and which admin performed it. It does not log individual connection sessions - PrivyNet does not track connection/disconnection times, IP addresses used, or session duration.
Tenant admins can clear their organisation's access log from the dashboard if needed. Regular users cannot view or modify logs at all - only admins have access.
Your own admins only ever see logs for your organisation's users and VPNs - there's no visibility into other tenants. PrivyNet's own platform administrators can access logs across accounts where needed for support and compliance purposes.
Yes. Logs can be exported from the PrivyNet dashboard as a CSV file, ready to open in a spreadsheet or feed into your own reporting workflow.
Entries are retained until an admin chooses to clear them - there's no automatic expiry. Contact support if you need guidance on retention for your own compliance requirements.
They provide access grant/revoke records that support GDPR's accountability principle around who can access data and when that changed. We also provide a Data Processing Agreement (DPA) as part of your subscription.
Every access change recorded automatically. Exportable whenever you need it. No extra configuration required.