The Atlassian Community Forums are currently in read-only mode. We will be relaunching on a new platform on September 22 (read more here). We apologize for the extended downtime. For concerns or questions, please email communitymanagers@atlassian.com. See you on the other side, on the new Atlassian Community Forums! :)

×

Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

How to modify login page to comply with NIST SP800-53 rev4 AC-8

Jeff Wimberley
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
May 6, 2020

More and more government agencies (.i.e. Federal, state, and local) are using Atlassian products. NIST SP800-53 rev 4 AC-8 requires systems to display to a user prior to logging into it certain requirements. This needs to be displayed on the login page before the user logs into the system and the act of logging into the system is consent by the user to follow the "rules".

I have researched and found the only way seem to be to de-compile the jira-gadgets-plugins jar, modify the login.soy, and perhaps a few other things, recompile the jra file and replace the original with the updated archive, then restart the application. This seems a laborious and potentially dangerous way to complete this requirement for every patch or upgrade across the different project. The Atlassian Cloud products may have addressed this but are the standalone products intending to address this as an enhancement?

0 answers

Comments for this post are closed

Community moderators have prevented the ability to post new answers.