← All guides

Joomla: User Actions Log without IP address

Joomla's User Actions Log can log administrative and other user actions. Storing the IP address is a separately configurable option.

Disable IP logging

In the administrator area Users → User Actions Log → Options set the option IP logging to No if the IP is not required for your own security or verification purposes.

Minimize events as well

Joomla also allows you to select the events to be logged. Limit not only individual data fields, but also the scope of the entire action log to the actual purpose.

Do not confuse with web server logs

This setting affects the Joomla User Actions Log. Apache/nginx, PHP, proxy, security and hosting logs are independent of this and must be checked separately.

Joomla overall configuration

The action logs are only part of the installation. Further data protection functions are available in Configure Joomla to save data.

Prerequisites

Joomla administration access and knowledge of which action log events are actually required for administration or security.

Test

After the change, trigger a controlled test event and check which fields remain in the action log and whether web server logs continue to store IP addresses regardless.

Dismantling

If the IP is needed for a specific audit purpose, specifically reactivate the function and limit access and retention period.

Related guides

Sources and verification

This guide is based on multiple current sources. Vendor documentation is not treated as proof that every concrete installation automatically follows the same privacy characteristics.

Important: IP processing is not IP storage

An IP address has to be processed to establish and deliver a network connection. Hosting providers, firewalls or DDoS protection may also process or retain it for a limited time for security purposes. No Logging distinguishes this security layer from unnecessary persistent visitor logging by the website, application and ordinary access logs.

↑