Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-16122

HTTP Basic auth should be enabled by default

    XMLWordPrintable

Details

    • Suggestion
    • Resolution: Fixed
    • 4.0
    • None
    • We collect Jira feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

    Description

      In JIRA, you need to append &os_authType=basic to the URL to get it to accept standard HTTP Basic auth. Hardly anyone knows about this, and people fall back to using &os_username=..&os_password=.. params, which is even less secure.

      JIRA should accept HTTP Basic auth by default, without any magic parameters.

      Attachments

        Issue Links

          Activity

            People

              Unassigned Unassigned
              7ee5c68a815f Jeff Turner
              Votes:
              1 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: