User management Issue

Olivier Nipshagen June 1, 2022

Hi everyone,

 

We added a new user (outside company) to a single project with 'view' rights.  User suddenly has access to all the company projects.   What did we do wrong?

 

Kind regards,
Olivier

1 answer

1 vote
Alex Koxaras _Relational_
Community Leader
Community Leader
Community Leaders are connectors, ambassadors, and mentors. On the online community, they serve as thought leaders, product experts, and moderators.
June 1, 2022

Hi @Olivier Nipshagen and welcome to the community!

How did you add this user to a project? You gave membership to him directly or via a group. From what is seems you:

  • Added this user to a group with product access
  • This group was added to all projects with a project role
  • This project role was associated of course with certain permissions rights

What I would do in your case is:

  • Create a group called e.g. "Customer View Only Permission" (or any similar according to your likings)
  • Add this user ONLY to this group
  • Grant this group product access
  • Create a project role called "Viewer"
  • Go to the project and grant the Viewer membership to this user
  • Edit the project permissions scheme and grant the Browse project permission to the Viewer role

CAUTION: Make sure that the project permission scheme isn't shared with any other project. If it is, then automatically, if you change it like suggested, that user will be able to see all shared projects.

Hope the above helps!
Alex

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
PRODUCT PLAN
STANDARD
TAGS
AUG Leaders

Atlassian Community Events