Hello Atlassian Community,
I am reviewing the firewall allowlist requirements described in the Atlassian documentation:
IP addresses and domains for Atlassian cloud apps
Our organization only uses Jira Cloud (we are not using Confluence, Bitbucket, Trello, Opsgenie, etc.).
To minimize the number of domains that must be whitelisted on our firewall, I would like to confirm whether allowing the following domains is sufficient for Jira to function properly, including user authentication, issue management, attachments, notifications, and general UI functionality.
1. Atlassian domains
*.atl-paas.net
*.atlassian.com
*.ss-inf.net
{our-instance}.atlassian.net
*.jira.com2. Partner domains
*.cloudfront.net
*.awswaf.com
*.cookielaw.org
*.googleapis.com
Questions
- If we only use Jira Cloud, are the domains listed above sufficient for normal Jira operation?
- Are there any additional domains that should be allowlisted for:
- User authentication (Atlassian accounts / SSO)
- Has anyone successfully implemented a minimal Jira-only firewall allowlist and can share the required domains?
Thank you for your help.