Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Cloud Connectors: Secure Tunnels now built into DC–Cloud setup

Hi Data Center Community 👋

Last year we introduced OAuth 2.0 and Cloud Connectors — a simpler, more secure way to connect Atlassian Data Center to Cloud — and more recently extended that support to the previous LTS versions of Jira and Confluence.

Today we’re excited to share the next step: Secure Tunnels are now built directly into the Cloud Connectors setup flow. If your Data Center instance sits behind a firewall, connecting it to Cloud just became dramatically simpler — no manual credential copying, and no server restart on supported versions.



🔒 The problem we set out to solve

If your Data Center instance is behind a firewall, Cloud can’t reach it directly. Until now, connecting a firewalled instance to Cloud features like Rovo meant setting up an application tunnel separately from the connector itself — a fragmented, multi-step process that involved:

  • Leaving the connector setup flow to configure a tunnel

  • Manually copying credentials between Cloud and your Data Center instance

  • Making direct server configuration changes — often requiring a restart of your Data Center instance

  • Manually rotating tunnel keys to stay secure

Every one of those steps was an opportunity for error, downtime, or a credential to leak. We wanted connecting a behind-the-firewall instance to be as easy as connecting one that isn’t.



✨ What’s new: integrated Secure Tunnels

Secure Tunnel setup is now part of the Cloud Connector wizard itself. When you set up a Rovo and Team Graph connector for a Data Center instance that needs a tunnel, everything happens inline — in one flow, in one place.

  • Integrated tunnel setup — create a secure, encrypted tunnel without ever leaving the Cloud Connector setup flow.

  • Automatic detection and reuse — if a suitable tunnel already exists, the wizard detects it and reuses it instead of asking you to create a new one.

  • Automated credential management — no more copying client IDs, secrets, or tokens by hand. Credentials are generated and exchanged for you.

  • Zero-restart setup — is supported on the same versions that ‘Automated credential management’ and ‘Integrated tunnel setup’ are on supported Data Center versions, setting up a tunnel no longer requires restarting your instance.

  • Automatic key rotation — tunnel credentials are rotated automatically to keep your connection secure over time.

  • Live health visibility — see the health status of your tunnels right in the Atlassian Admin Hub, with clear indicators if a connection is interrupted.



🛠️ How it works

This functionality is available from Jira 11.3.11 and Confluence 10.2.16

  1. Go to Atlassian Administration → Connected Sources.

  2. Create Rovo connector for your Jira and Confluence (for example, to connect Jira or Confluence Data Center to Rovo).

  3. If your instance needs a tunnel, the wizard auto-detects an existing tunnel or offers to create one inline — no separate setup, no credential copying.

  4. Approve the connection in your Data Center instance. No restart required.

  5. Start using Cloud-powered features like Rovo and Teamwork Graph.

 



💡 Why it matters

  • Faster, simpler setup — tunnel and connector configuration are unified into a single workflow, cutting a fragmented process down to a handful of clicks.
  • Stronger security — automated credential handling and key rotation remove the manual steps where secrets could be mishandled or leaked.

  • Less downtime — no need to restart your Data Center instance to stand up a tunnel.

  • Better visibility — tunnel health and dependent connections are surfaced in the Admin Hub, so you can spot and resolve issues quickly.

  • Ready for hybrid and migration — keep Data Center and Cloud connected securely while you run in hybrid mode or migrate in stages.



✅ Availability

Integrated Secure Tunnel setup is available for Rovo and Teamwork Graph connectors on Data Center instances running supported versions. Manual tunnel setup is still available for older Data Center versions or for standalone tunnel management.

This functionality is available — Jira 11.3.11+ and Confluence 10.2.16+ onwards.


📚 Learn more



Have you tried the new integrated tunnel setup?
We’d love to hear how it’s working for you — share your experience, use cases, or questions in the comments below. 💬

2 comments

Adrien Ragot _Requirement Yogi_
Contributor
September 1, 2026

Honestly, I still haven't succeeded to make OAuth 2.0 work. There's no validation on the form of "Outgoing auth", and the dropdown for permission scopes remains empty, no error messages, no way to reload the permission scopes after entering the keys.

Badly programmed form.

Giuseppe Miccoli
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Champions.
September 2, 2026

Hi and thank you for this!

Artificial Intelligence cannot exist without Data Centers, the actual "digital factories" that provide the computing power needed to train and run the entire AI stack.

The Artificial Intelligence gold rush depends on software & on how fast and efficiently we can supporting the grow.

 

 

Comment

Log in or Sign up to comment
TAGS
AUG Leaders

Atlassian Community Events