Uploaded image for project: 'Confluence Cloud'
  1. Confluence Cloud
  2. CONFCLOUD-14341

Confluence "Not Permitted" pages should be served with status code 403 instead of 200

    • Icon: Bug Bug
    • Resolution: Won't Fix
    • Icon: Low Low
    • None

      NOTE: This bug report is for Confluence Cloud. Using Confluence Server? See the corresponding bug report.

      When a user is not permitted to view a page due to the lack of sufficient page level permissions, we currently serve a not permitted page explaining this. This is served with a HTTP status code of 200. This should be fixed and changed to 403.

      This would, for example, assist crawlers to not interpret these pages as content.

            [CONFCLOUD-14341] Confluence "Not Permitted" pages should be served with status code 403 instead of 200

            Monique Khairuliana (Inactive) made changes -
            Workflow Original: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2371414 ] New: JAC Bug Workflow v3 [ 3416903 ]
            Status Original: Resolved [ 5 ] New: Closed [ 6 ]
            Katherine Yabut made changes -
            Workflow Original: Confluence Workflow - Public Facing - Restricted v5 [ 2254093 ] New: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2371414 ]
            Katherine Yabut made changes -
            Workflow Original: Confluence Workflow - Public Facing - Restricted v5.1 - TEMP [ 2206640 ] New: Confluence Workflow - Public Facing - Restricted v5 [ 2254093 ]
            Katherine Yabut made changes -
            Workflow Original: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2150796 ] New: Confluence Workflow - Public Facing - Restricted v5.1 - TEMP [ 2206640 ]
            Katherine Yabut made changes -
            Workflow Original: Confluence Workflow - Public Facing - Restricted v5 [ 1905908 ] New: Confluence Workflow - Public Facing - Restricted v5 - TEMP [ 2150796 ]
            Katherine Yabut made changes -
            Workflow Original: Confluence Workflow - Public Facing - Restricted v3 [ 1804535 ] New: Confluence Workflow - Public Facing - Restricted v5 [ 1905908 ]
            jonah (Inactive) made changes -
            Description Original: When a user is not permitted to view a page due to the lack of sufficient page level permissions, we currently serve a not permitted page explaining this. This is served with a HTTP status code of 200. This should be fixed and changed to 403.

            This would, for example, assist crawlers to not interpret these pages as content.

            New: {panel:bgColor=#e7f4fa}
              *NOTE:* This bug report is for *Confluence Cloud*. Using *Confluence Server*? [See the corresponding bug report|http://jira.atlassian.com/browse/CONFSERVER-14341].
              {panel}

            When a user is not permitted to view a page due to the lack of sufficient page level permissions, we currently serve a not permitted page explaining this. This is served with a HTTP status code of 200. This should be fixed and changed to 403.

            This would, for example, assist crawlers to not interpret these pages as content.

            jonah (Inactive) made changes -
            Link New: This issue is related to CONFSERVER-14341 [ CONFSERVER-14341 ]
            vkharisma made changes -
            Project Import New: Sat Apr 01 14:06:06 UTC 2017 [ 1491055566265 ]
            Katherine Yabut made changes -

              shaffenden Steve Haffenden (Inactive)
              dave@atlassian.com dave (Inactive)
              Affected customers:
              1 This affects my team
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: