Allow for enforcement of personal access tokens for HTTPS REST/GIT calls.

XMLWordPrintable

    • 1
    • 2

      When integrating Bitbucket with a strong-authentication (2FA) frontend proxy, we crossed an interesting wonder as to how can we do  strong-authentication with SourceTree/GIT clients.

      The suggestion here is to have a global system configuration that would require REST/SCM HTTPS services to use the user's personal access tokens, and reject user passwords.

      This would nudge users away from hard-coding their corporate passwords in clear-text files, and instead resort to personal access tokens and usage awareness.  

              Assignee:
              Justin Thomas
              Reporter:
              Kristopher Lalletti
              Votes:
              3 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated: