1.
www.atlassian.com/blog/developer/building-secure-and-scalable-integrations-our-guidance-for-third-party-apps
says
says "Asking customers to create individual apps for each Atlassian tenant, rather than using a single, centralised app"
and they ask us to create a centralised app, which will implement 3LO
Does individual apps mean service account as well here?
(ref
https://support.atlassian.com/user-management/docs/create-oauth-2-0-credential-for-service-accounts/
)
reason is, we want to create a centralised app but then use SA account mechanism mentioned in above link to do the auth (2LO basically but with centralised app on our side), is that against their best practices or its accepted?
https://community.atlassian.com/forums/Trust-Security-articles/OAuth-Support-for-Service-Accounts/ba-p/3126134
they in fact promote this in the above link where they support admins creating third party apps using oauth 2LO
2. What does it mean, when Atlassian says they will no longer support the app?
Hi Prince,
Yes, I think you are right in your assumptions, but it would be better to get Atlassian's official answer on that by opening a support ticket.
https://bluestreamfiberglobal.atlassian.net/browse/NOC-1733
Please post back here with their response for future readers and so we can close this one out. Best of luck!
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.