Hi,
We wish to enable logs collection and monitoring however we also want to keep the least privilege principle.
Is it possible to define a role for accessing the audit logs without granting the user full admin rights?
Thanks, Noam
Hi,
Welcome to the community
As stated by the documentation you need to have the Administer Jira global permission
https://support.atlassian.com/jira-cloud-administration/docs/audit-activities-in-jira-applications/
Thank you Mohamed,
Can you tell if there are plans to allow RBAC or some sort of least privilege role so API token for security monitoring only purposes won't need admin rights and add unnecessary risk?
Best,
Noam
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
I don't know you should ask Atlassian directly. But one solution could be to export all the log to an outside product.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Thanks for the response! What's the best way to ask Atlassian directly?
The API token to access/export the logs requires admin rights, this is what I wish to avoid, and I believe it would be beneficial to all customers if they won't need to use such privileges account/token instead of using an account with RO rights.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.