...
The Plugin People follow Atlassian guidelines (see https://developer.atlassian.com/platform/marketplace/app-security-guidelines/) on minimum transport security ciphers.
The Plugin People use TLS version 1.2 is used for all public facing network access. HSTS (HTTP Strict Transport Security) is enabled with a maximum age of at least one year. Server TLS keys and certificates are managed by AWS and deployed via Application Load Balancers.
Inbound / Outbound mail connections all support SSL/TLS connectivity. 3rd party integrations like Slack and SMS provider web gateways are only accessible over secure transportsconnections.
Data Residency
See /wiki/spaces/JEMHC/pages/4102750249 for more information.
...
Key management is delegated to AWS wherever possible making rotation automated. Best practice Role based security is applied to all application nodes. Legacy password usage is already limited, future work is planned to
Jira Legacy | ||||||
---|---|---|---|---|---|---|
|
...