Is there a JIRA-specific security checklist published by Atlassian or a reliable organization?
Our JIRA instance runs behind Apache (reverse proxy) and is open to the public Internet.
Many thanks!
--
Shaakunthala
As far as I know there isn't a official check lsit as such, there are few articles which address this issue.
You can have a look at following documentation https://confluence.atlassian.com/display/JIRA/Securing+JIRA+with+Apache+HTTP+Server
Also you should have a look at mod_security apache module .
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.