Hello everyone,
i need some guidance on how to turn this filter view off for not log in users?
Also is there some type of jira security audit checklist?
There's nothing in Jira that will do this. You could block it at a proxy level if you are using one, or something on your network, but that's not something Atlassian support.
There is a simple thing to do though - just make sure none of your projects have "Browse projects: group: anyone" and the searches will return no results for non logged-in users.
What type of "security audit" are you looking for?
Hello, thank you for the information.
As for the security audit some type of a check list or best practices will be helpful(like the one you mentioned above) The goal is to assure that we have hardened the jira application as much as possible.
I haven't mentioned any check lists or best practices. I don't know what you want from a "security audit"
Hello Nic, i had the advice above: "none of your projects have "Browse projects: group: anyone" in mind when i said best practice. As for the security audit.
First i want to mention i am not an administrator of jira and i am not familiar with most of its internal settings.
What my security audit goal will be is to validate if we are using the recommended security settings, if settings like the one you mentioned are known to our jira administrators and etc.
The goal will be to assure that only logged in employees or partners can view, browse and edit jira task, dashboards or access any data(usernames, project names, ticket etc)
It looks like you're new here. Sign in or register to get started.