Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Disable WebSudo as described on for Jira: https://confluence.atlassian.com/adminjiraserver073/configuring-secure-administrator-sessions-861254024.html
    For Confluence: Please navigate to the address:
    <your_confluence_url>/admin/viewsecurityconfig.action and turn off the value “Secure administrator sessions”.

  • Provision admin accounts separately/in a way that makes passwords available: LDAP, Crowd, manually created Internal Directory accounts).

  • For JIT user accounts specifically, an admin can simply set a password manually, or the user can use the “forgot password” link. Note however that this password is not sync’ed with the identity provider password in any way. It also allows these users to bypass SSO and just authenticate directly with their password, unless you disable traditional login in KSSO.

...