What is the Maximum Authentication Attempts Allowed for JIRA Cloud Version

I am trying to see if JIRA Cloud has a maximum # of login attempts for I need to complete my security assessment.

2 answers

0 vote

Hi Kathi,

Using Atlassian ID login on Cloud will allow a user to attempt a login 10 times. On the 11th time, it will ask the user to complete a Google Captcha.

There is no "lockout" per se, and the user will continue to be asked for the Captcha until there is a successful login.

If attempting via API it will lock them out once the 11th try is reached, and then they will need to attempt to login normally from a browser to reset it.

Lastly, I have created a feature request below to be able to set maximum attempts for any users who have managed domains:

Please feel free to vote on this if you would be interested in such a feature.

One thing to note, if you decide to implement SAML on your instance, or use GSuite or login via Google, the policies on those providers will be enforced instead.

I hope this helps.

Kind Regards,
Shannon

Thanks!  Can you point me to the information/documentation around the user ids for the Cloud?  I need to also capture the password (length, complexity, etc.)

Thanks again!

Hi Kathi,

The password policy for Atlassian ID is only that it needs to be between 8 and 100 characters long. This and the maximum login attempts are not documented on our site, but I was able to verify them by testing.

We will be rolling out our new Identity Manager for Cloud within the next few weeks, and once it's implemented on your instance, you'll be able to create an organization and control your own password policies for any managed domains that you have claimed.

For more information on the usage of the current setup, Atlassian Account, review the following:

If you want full control, however, I would definitely look into setting up SAML for your instance from the article I sent you earlier. Do let me know if you have any questions about that!

Kind Regards,
Shannon

Suggest an answer

Log in or Join to answer
Community showcase
Sarah Schuster
Posted Jan 29, 2018 in Jira

What are common themes you've seen across successful & failed Jira Software implementations?

Hey everyone! My name is Sarah Schuster, and I'm a Customer Success Manager in Atlassian specializing in Jira Software Cloud. Over the next few weeks I will be posting discussion topics (8 total) to ...

3,190 views 13 19
Join discussion

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you
Atlassian Team Tour

Join us on the Team Tour

We're bringing product updates and pro tips on teamwork to ten cities around the world.

Save your spot