Are there known security risks when enabling the remote APIs in Confluence?

Hi,

to link Confluence pages in JIRA the remote APIs need to be enabled. Are there any known issues connected to either linking Confluence and JIRA or enabling the APIs?

Any advice, point where to look or link to documentation is appreciated.

Thanks!

KR,
Iakov

1 answer

1 accepted

This widget could not be displayed.

Hi,

I experienced this one:

Invalid name for a single Jira user made Confluence inaccessible for any user.

It also applies to Jira-Jira linking and Jira-Crowd.

More info:

https://jira.atlassian.com/browse/CWD-3740

https://jira.atlassian.com/browse/JRA-32029

Andris.

Hi Andris,

Thank you for your answer. In our setup we're using delegated LDAP as user directory so that the issues you mentioned doesn't apply.

Are there other known issues when remote APIs are enabled?

KR

Iakov

LDAP may or may not solve that issue. If there will be wrong character in username in LDAP you will not be able to synchronize jira or confluence to jira instance which uses that particular LDAP.

We also had issue where by opening project in jira, project timeline showed all the last changes from confluence (not related to that project). I suggest to test it before you go to production. Probably it was caused by incorrect setup - not sure.

OK, I will keep that in mind.

Many thanks!

Suggest an answer

Log in or Sign up to answer
Atlassian Summit 2018

Meet the community IRL

Atlassian Summit is an excellent opportunity for in-person support, training, and networking.

Learn more
Community showcase
Published yesterday in Confluence

Add-on evaluation with confluence templates

Atlassian market place contains number of Apps/Addons which improves the capability of out of the box Atlassian products. It is good to follow a plugin evaluation process before install add-ons. So t...

34 views 5 3
Read article

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you