I have some questions regarding the implementation of SAML single sign-on with Atlassian Access.
This is the current scenario:
- Single Atlassian organization using JIRA/Confluence/Bitbucket products suite.
- User email addresses belong either @branch.contoso.com or @branch.acme.com domains.
- There are Trello users outside of the Atlassian organization using @branch.contoso.com email addresses.
We are planning to enable Atlassian Access, verify the subdomain "branch.contoso.com", claim accounts, and enable SAML single sign-on.
If we enabled Atlassian Access with "branch.contoso.com", what will happen with users still under "@branch.acme.com" email addresses?
If we migrate them to @branch.contoso.com after Atlassian Access is enabled.
- Will they keep their same access level and content (Bitbucket commits, JIRA ticketc. etc) associated with the previous account ID (@branch.acme.com)?
- Should we move everyone to the @branch.contoso.com email address before enabling Atlassian Access to avoid any issues?
- How about the Trello users, Will they become managed accounts even though they are outside of the Atlassian organization? If so, How can they avoid it?
Thank you, everyone, for your insights
Regards