Hi 👋🏼,
We are setting up JSM for a team in charge of support for tools used internaly and by our partners.
Those users can have multiple email domains (internal, partners...) so we want to avoid restricting who can raise a request by email so in Customer permissions, we set up :
Choose who can send requests to “Support” via support@domain.com or the portal :
Anyone allowed on the customer access settings
Within a couple of hours we received a warning from our cybersecurity team because the portal was publicly accessible which is a security risk as we are dealing with support for sensitive tools. Especially because we plan to add knowledge base articles to the project in the near future.
Therefore we are looking for a way to :
- Allow anyone to contact the support by email
- And either :
- Deactivate the portal
- Restrict portal access to only internal users (but not partners) through IP whitelisting or behind a login
Anyone faced the same issue?
Thanks.