Uploaded image for project: 'Jira Service Management Data Center'
  1. Jira Service Management Data Center
  2. JSDSERVER-6097

Other SD Projects Knowledge Base are accessible through direct link

    • 0
    • 3
    • We collect Jira Service Desk feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

      Summary:

      If a Customer only able to access one SD Portal and log in to Confluence, it is actually possible for that Customer to access other SD Project KBs through a Direct URL Link including navigating the space.

      Steps to Reproduce:

      1. Prepare a JIRA instance that is connected to Confluence with the same User Base.
      2. Create two SD Project (SD1 and SD2) and connect it to a Confluence Space each (KB1 and KB2)
      3. Both SD projects have permissions set: "Customers who are added to the project"
      4. Make sure the option below is enabled when connecting the Spaces:
        "All active users and customers can access the knowledge base without a Confluence license."
      1. Create a Customer that only exists in SD1 and log in as the Customer to SD1 Portal.
      2. Search for an Article in KB1 to clarify that it returns a result.
      3. Search for an Article in KB2 to clarify that it should not returns anything.
      4. Log in to Confluence using the Customer credentials and clarify that there is no other menu beside the Confluence Logo to clarify that the Customer does not have a Confluence License.
      5. Open another session and log in to Confluence as an Admin.
      6. Access the KB2 space and copy the URL.
      7. Back to the Customer session and paste the link

      Expected Result:

      With the customer is only allowed to access SD1, the connected KB2 will return the "not permitted" error.

      Actual Result:

      The Customer will access the space and able to navigate around it.

            [JSDSERVER-6097] Other SD Projects Knowledge Base are accessible through direct link

            Andrew Culver added a comment -

            Was this fixed? Is it still reproduceable with the steps above?

            Andrew Culver added a comment - Was this fixed? Is it still reproduceable with the steps above?

            Ishwinder Kaur added a comment - - edited
            Atlassian Update - 03 March 2025

            Hello,

            Thank you for submitting this suggestion. We appreciate you taking the time to share your ideas for improving our products, as many features and functions come from valued customers such as yourself.

            Atlassian is committed to enhancing the security and compliance of our Data Center products, with an emphasis on sustainable scalability and improving the product experience for both administrators and end-users. We periodically review older suggestions to ensure we're focusing on the most relevant feedback. This suggestion has had very low engagement over the past four years, with no new watchers, votes, or comments. As a result, we're closing it for now.

            We understand that this suggestion might still be important to you. If you'd like to provide additional context or information about why it remains relevant, please contact our Technical Support team for assistance. We'll be happy to review your feedback.

            You can read more about our approach to highly voted suggestions here and how we prioritize what to implement here.

            To learn more about our recent investments in Jira Service Management Data Center, please check our public roadmap and our dashboards, which contain recently resolved issues, current work, and future plans.

            Kind regards,
            Jira Service Management Data Center

            Ishwinder Kaur added a comment - - edited Atlassian Update - 03 March 2025 Hello, Thank you for submitting this suggestion. We appreciate you taking the time to share your ideas for improving our products, as many features and functions come from valued customers such as yourself. Atlassian is committed to enhancing the security and compliance of our Data Center products, with an emphasis on sustainable scalability and improving the product experience for both administrators and end-users. We periodically review older suggestions to ensure we're focusing on the most relevant feedback. This suggestion has had very low engagement over the past four years, with no new watchers, votes, or comments. As a result, we're closing it for now. We understand that this suggestion might still be important to you. If you'd like to provide additional context or information about why it remains relevant, please contact our Technical Support team for assistance. We'll be happy to review your feedback. You can read more about our approach to highly voted suggestions here and how we prioritize what to implement here. To learn more about our recent investments in Jira Service Management Data Center, please check our public roadmap and our dashboards, which contain recently resolved issues , current work, and future plans. Kind regards, Jira Service Management Data Center

            Just interesting is this possible to get direct link through internet?
            We have an exposed JSD, just curiuos, it can be a problem or not.

            Gonchik Tsymzhitov added a comment - Just interesting is this possible to get direct link through internet? We have an exposed JSD, just curiuos, it can be a problem or not.

              Unassigned Unassigned
              58b33c6e73c4 Henri Volk [amily]
              Votes:
              3 Vote for this issue
              Watchers:
              7 Start watching this issue

                Created:
                Updated:
                Resolved: