We have created a new permission scheme and are in the process of migrating all of our projects to it. We have project roles set up to make it easier to manage permissions on each project. Part of this scheme is application access (any logged in user) being able to browse our projects. This is something our senior management level requested. Until now, this hasn't caused us any issues.
However, we have a request for some external contractors to have access and work in a particular project. I am trying to figure out how we can set up permissions so the contractors only can see/work in this 1 project.
Whenever we add a new employee to our active directory, they automatically get added to the default access group called 'confluence-users' and when we add this person to Jira, they automatically get added to the default access group "jira-software-users". It is my understanding that being in those 2 default groups is what the application access (any logged in user) is pulling from.
Looking for some ideas on what we can do other than removing the application access from our permission scheme. Thank you!