How to grant access to event logs

Your company admin can grant you access to the Event Log dialog page by creating a role with the Event Logs permission checked on.

How to watch and filter event logs

When you have access to your company's event logs, go to Event logs in the left navigation panel of the Admin settings.

If event logging is active for your company, you will see the following screen:

You can now start to search for specific events by using the given filter possibilities:

  • Date range: use this filter to search for events in a specific date range.
    • Be aware that the maximum date range is one month. You need to execute multiple searches if you want to search for events throughout multiple months.
  • User: Use this filter to search for events a specific person executes.
  • Change: Use this filter to search for a certain change made by any user.
  • Event type: use this filter to search for multiple events grouped under a certain category. It will help you, for example, to search for all changes done by any user in the User Management.

Now, you can click on single events to see more details for each event.

Whose data is collected during remote control sessions?

Event data during remote control sessions are only collected from users authenticated as company member that has enabled event logging.

Examples of a remote control session with two users:

User 1 (initiator of the RC session)
User 2
whose event data is collected?

Company member (authenticated)

Company member (authenticated)

User 1 and user 2

Company member (authenticated)

Company member (not authenticated)

User 1

Company member (authenticated)

Foreign user (authenticated)

User 1

Company member (authenticated)

Foreign user (not authenticated)

User 1

Company member (authenticated)

Quick support user

User 1

Foreign user (authenticated)

Company member (not authenticated)

no data collected

 

Data retention

All event data is logged on TeamViewer servers (in Frankfurt) for one year. This retention period can't be changed. After one year, all data will be automatically and completely deleted.

List of Events

This is the list of events TeamViewer catches and stores:

User action
Short event name
Event origin
Event type

Used authentication to initiate a remote session

-

Remote Session

Session

Initiate a remote session

Started session (event name for initiator)

Incoming session (event name for receiver)

Remote Session

Session

Closed a remote session

Ended session

Remote Session

Session

The user joins/leaves a running remote session

Joined session

Left session

Remote Session

Session

Additional user joins/leaves a remote session

Participant joined session

Participant left session

Remote Session

Session

Trigger switching of sides during a remote session

Switched sides

Remote Session

Session

Activate/deactivate remote input during a remote session

Changed Disabled Remote Input (event name for initiator)

Received Disabled Local Input (event name for receiver)

Remote Session

Session

Activate/deactivate black screen during a remote session

Changed Show Black Screen (event name for initiator)

Received Show Black Screen (event name for receiver)

Remote Session

Session

Start screen recording

Started recording (event name for initiator)

Remote Session

Session

Stop screen recording

Ended recording (event name for initiator)

Remote Session

Session

Pause screen recording

Paused recording (event name for initiator)

Remote Session

Session

Continue screen recording

Resumed recording (event name for initiator)

Remote Session

Session

Start a file transfer

Sent file (event name for initiator)

Received file (event name for receiver)

Remote Session

Session

Editing own user properties

Edit own user profile

Management Console

User profile

Activating/deactivating TFA of own account

De-/activate TFA

Management Console

User profile

Creating a user in the Management Console

Created user

Management Console

User profile

Editing user properties

Edit user properties

Management Console

User profile

Editing user permissions

Edit user permissions

Management Console

User profile

Deleting a user

Delete user

Management Console

User profile

Join a company

Join company

Management Console

Company Administration

Creating a new custom host module

Create custom host module

Management Console

Custom Modules

Editing a custom host module

Edit custom host module

Management Console

Custom Modules

Delete a custom host module

Delete custom host module

Management Console

Custom Modules

Create a new group

Add group

Management Console

Group Management

Share a group

Share group

Management Console

Group Management

Edit a group

Edit group

Management Console

Group Management

Delete a group

Delete group

Management Console

Group Management

Create a new script token

Create Script Token

Management Console

Company Administration

Edit script token properties

Edit Script Token

Management Console

Company Administration

Edit existing script token permissions

Edit Script Token Permissions

Management Console

Company Administration

Delete a script token

Delete Script Token

Management Console

Company Administration

Adding a policy

Policy added

Management Console

Policy

Editing a policy

Policy updated

Management Console

Policy

Deleting a policy

Policy deleted

Management Console

Policy

Add user to a user group

User group added

Management Console

UserGroup

Delete user to a user group

User group deleted

Management Console

UserGroup

Rename user in a user group

User group updated

Management Console

UserGroup

Add account to a user group

Member(s) added to a user group

Management Console

UserGroup

Remove account from a user group

Member(s) removed from a user group

Management Console

UserGroup

User toggled Block Meetings switch

Block meeting state changed

Management Console

Conditional Access

User created a new directory group via Web API

Directory group added

Management Console

Conditional Access

User deleted a directory group via Web API

Directory group deleted

Management Console

Conditional Access

User added members to a directory group via Web API

Members added to directory group

Management Console

Conditional Access

User removed members from a directory group via Web API

Members deleted from directory group

Management Console

Conditional Access

User created a new conditional access rule

Rule added

Management Console

Conditional Access

User deleted a conditional access rule

Rule deleted

Management Console

Conditional Access

User edited expiration settings of an existing rule

Rule modified

Management Console

Conditional Access

User toggled Activate Conditional Access switch

Rule verification changed

Management Console

Conditional Access

A conditional access session went through approval process

Session approval

All platforms

Conditional Access

 

Policy is assigned/updated/unassigned to device

Device policy updated

MCO/TVRemote

Device Management

Add managers to device

Device manager added

MCO/TVRemote

Device Management

Update manager permissions to device

Device manager updated

MCO/TVRemote

Device Management

Remove managers from device

Device manager removed

MCO/TVRemote

Device Management

Add device to device group

Device added to group

MCO/TVRemote

Device Management

Remove device from group

Device removed from group

MCO/TVRemote

Device Management

Create a device group

Device group created

MCO/TVRemote

Device group management

Delete a device group

Device group deleted

MCO/TVRemote

Device group management

Update the name of a device group

Device group name updated

MCO/TVRemote

Device group management

Add managers to device group

Device group manager added

MCO/TVRemote

Device group management

Update the permissions of the managers to device group

Device group manager updated

MCO/TVRemote

Device group management

Remove managers from a device group

Device group manager removed

MCO/TVRemote

Device group management

Policy is assigned/updated/unassigned to group

Device group policy updated

MCO/TVRemote

Device group management

Alias updated to device

Device alias updated

MCO/TVRemote

Device management

Description updated to device

Device description updated

MCO/TVRemote

Device management

Manage this device

Device managed

MCO/TVRemote

Device management

Unmanage the device

Device unmanaged

MCO/TVRemote

Device management

Invitation code created to invite other companies to join parent’s multitenancy organization.

Invitation created

TV Remote

Multitenancy

Invitation code is revoked by main company and can no longer be used by any other company.

Invitation created

TV Remote

Multitenancy

Invitation code used by other company, requesting to join creator’s organization.

Relation request created

TV Remote

Multitenancy

Parent company reviewed the request sent (approving/rejecting it).

Relation request created

TV Remote

Multitenancy

Child company, who requested to join an organization, revoked the pending request, cancelling it.

Relation request created

TV Remote

Multitenancy

Relation is terminated by any side.

Relation deleted

TV Remote

Multitenancy

User from parent invited to access a child company as a tenant manager.

Tenant manager request created

TV Remote

Multitenancy

Child reviews (accepts/declines) a request to access its environment.

Tenant manager request updated

TV Remote

Multitenancy

Parent or child removes a tenant manager from the child’s company.

Tenant manager access deleted

TV Remote

Multitenancy