Hi,
We are using Confluence as our main information management system. We have different spaces for different projects or departments - like: development, marketing, sales, HR, IT, etc..
We want to encourage our users to use Confluence as the single source for all information - which is the goal of the wiki.
However, we are having an issue related to storing sensitive information in the Confluence, with which some of the departments deal/store. For example:
* the HR department would like to store employee profiles (incl. personal data, renumeration figures, bonuses, etc.) on the wiki;
* the marketing & sales departments would like to store their prospects, commercial information, on the wiki as well
* etc...
At the same time, it seems that the Confluence System administrators (who have System Administrator permissions) would be able to access each and every page within the Confluence, regardless of what permissions they have.
This is a real issue for the management, as this is preventing half of the organization to store their (sensitive) content on the wiki.
We know that it is possible to configure permissions for the system administrators so that they have only Confluence Administrator permissions, however this is not allowing them to access multiple important admin functionalities, so this is not a real option.
So, the questions is: How can we restrict the access of the Confluence System Administrators so they are not able to access some spaces or pages?
One idea would be to have the possibility to define per space encryption or password, which is known only to the users who are permitted to access the content. This way:
* The confluence administrators can see the space but without being able to see the content inside it
* At the same time the users who are allowed to see the space/pages (e.g. know the password used to encrypt them) will be able to provide the password and access the content within the space / pages
The above is just an idea about possible solution. Probably you might have a better idea how this can be solved.
In our opinion this is a a very essential feature for an enterprise wiki product.
We would be thankful to know your suggestion how to solve the above case.
Thanks,
Georgi
PS: We have came across the Security and Encryption Plugin of Customware (http://www.customware.net/store/confluence/security_and_encryption_plugin.html), however it seems that the plugin allows only pieces of information (like passwords) to be encrypted. This is not a solution for the above case - imagine that the HR department have a personal profile of the employees where they keep on the page information like: Employee personal data, hiring history, performance evaluation notes, renumeration package, etc... Obviously there is a need to encrypt the page as a whole.