Comment created on issue in restricted project containing valid key via email

XMLWordPrintable

    • 1
    • Severity 3 - Minor

      Issue Summary

      A comment is created on an issue in a project that is set to restricted containing a valid key via email. Based on the settings listed in Allow external emails to be added as comments on issues, comments should only be allowed if the project access is set to open and a valid key is listed.

      This will only enable comments from people with a customer account. To enable comments from everyone, you must ensure the relevant permissions are enabled:

      1. Select Yes for Can customers create their own accounts? on the same page as above.
      2. From your service project, select Project settings, then Access, then Customer permissions.
      3. Under Channel access, select Open.

      Steps to Reproduce

      1. In JSM configuration Email set "Yes, allow all emails that contain a valid issue key to be added as a comment to the issue"
        /jira/settings/products/jira-service-management-configuration
      2. Configure JSM project channel access to "Restricted"
        /jira/servicedesk/projects/<KEY>/settings/customer-permissions
      3. Send email to the project email channel from an email account that does not have a customer account in the project including a valid issue key in the subject.

      Expected Results

      A comment should not be created on an issue where project channel access is set to restricted.

      Actual Results

      A comment is added to the issue where the project channel access is set to restricted.

      Workaround

      Set option in /jira/settings/products/jira-service-management-configuration to "No, do not allow all emails that contain a valid issue key to be added as a comment to the issue"

            Assignee:
            Unassigned
            Reporter:
            Gerry Martinez
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: