Uploaded image for project: 'Confluence Data Center'
  1. Confluence Data Center
  2. CONFSERVER-45397

Hide Overview,Content tools and Activity from Anonymous users

    XMLWordPrintable

Details

    • We collect Confluence feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

    Description

      NOTE: This suggestion is for Confluence Server. Using Confluence Cloud? See the corresponding suggestion.

      Problem Definition

      After enabling "view" in Space permissions for anonymous users, they are able to view the Overview, Content Tools and Activity section of a Space.

      Suggested Solution

      These options must not be available for Anonymous Users, the Overview screen, for instance, clearly gives away all the Admin users of a space, allowing malicious attackers to identify admin user accounts to target.

      Why this is important

      Security issues.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              lsimon Lucas Simon (Inactive)
              Votes:
              1 Vote for this issue
              Watchers:
              7 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: