Uploaded image for project: 'Bitbucket Data Center'
  1. Bitbucket Data Center
  2. BSERV-3186

Provide better logging/audits for failed access attempts

    XMLWordPrintable

Details

    • Suggestion
    • Resolution: Duplicate
    • None
    • None
    • None
    • We collect Bitbucket feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

    Description

      If I perform an access request to Stash using an invalid password, I don't see anything logged.

      This can help also help track rogue build bots using invalid credentials that trigger CAPTCHAs that currently can't be disabled (STASH-3001).

      It would be nice to have it in a security log similar to what JIRA offers and log: failed attempts, password changes, SSH key changes, etc.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              a38518e05741 David Yu
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: