We've recently setup a Jira Software/Confluence install on a dedicated server hosted with a Cloud provider, however to have a smooth login experience for our internal staff we'd like to link this to our Active Directory. This would all be possible if we created/moved a domain controller to the DMZ, however is this possible without having to do that? E.g. have an authentication page internally that users login to, which then forwards to our externally hosted Jira?
Would it be possible for you make use of Microsoft ADFS (or maybe Keycloak) here?
ADFS manages authentication through a proxy service hosted between AD and the target application. It uses a Federated Trust, linking ADFS and the target application to grant access to users. This enables users to log onto the federated application (like Jira or Confluence) through SSO without needing to authenticate their identity on application directly.
Regards,
Jon Espen
Kantega SSO
Thanks for the quick reply! That would be great if possible. We do have an ADFS server that our users utilise to login to our Office 365 portal with, is there an add-on available that we could use to link this to our Jira install that you know of?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
There are several add-ons in Atlassian Marketplace allowing you to setup ADFS login to Jira.
I work for Kantega SSO, one of the add-on vendors.
You find our ADFS step-by-step setup guide here: https://docs.kantega.no/display/KA/AD+FS
Do not hesitate to reach out to our support team if you need help or have questions during the setup.
Have a nice weekend!
-Jon Espen
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.