Denial of Service for JSM Forms

george_bullock January 5, 2025

How to you (or I) reduce the likelihood of a Denial of Service attack to a JSM Form

Our form as 1st time sign in but I am sure that could be breached

2 answers

1 vote
John Funk
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
January 5, 2025
george_bullock January 6, 2025

Thanks John - but that seems to point to what we do.

As we are on JSM Cloud I assume JSM has some sort of Denial of Service approach - we are getting our external Users to create a password but like all these things we cannot mandate to them the password other than what JSM already does.

John Funk
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
January 6, 2025

Correct - user accounts (and therefore passwords) belong to Atlassian, not your instance. So the same user account (i.e. email address) can be used in multiple instances across the world - not just ones owned by a single organization. 

0 votes
Marc - Devoteam
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
January 6, 2025
george_bullock January 6, 2025

Thanks Marc

I am guessing this is the answer

Atlassian Security Engineering uses IPS technologies that are implemented in our office environments. Network threat protection is performed by AWS, including DDoS protection and some Web Application Firewall features.

Regarding Specific ProductsJira Align uses Cloudflare for WAF, DDOS, DNS-SEC. We use Alert Logic IDS, log analysis, and cloudtrail. We use Nexpose for scanning shared network components with Atlassian Cloud stack. We use custom Splunk log analysis.

Like Marc - Devoteam likes this

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
PRODUCT PLAN
STANDARD
TAGS
AUG Leaders

Atlassian Community Events