-
Type:
Suggestion
-
Resolution: Unresolved
-
None
-
Component/s: Data Center - Installer, Installation, UPM (Universal Plugin Manager)
-
27
-
19
Problem Statement:
As an administrator, its difficult to setup and manage the UPM truststore and certificates in order to enable and utilize App Signing.
Summary:
In Jira 11, App signing is now enabled by default for app installations. This requires administrators to add specific directories and certificates to their Jira deployment to work properly
- App Signing Rollout to Boost App Security
- Jira 11 Release Notes - App Signing
- Configuring UPM App Signature Check
- Atlassian Certificate Bundle for UPM
This is a tedious task and prone to errors which in turn prevents plugins from being installed or updated.
Idea:
Atlassian should include the required folders and bundled certificates as apart of the Jira Download. This will help minimize the level of effort for administrators to install and setup Jira.
Work Around:
If necessary, you are able to disable the feature using the JVM arguments found here: UPM Signature Check Configuration