What is a default authentication policy?
Who can do this? |
Your managed accounts provide you with a pool of users for authentication policies. You assign users to be members of policies.
Your organization starts with a default authentication policy. The default policy contains login settings for its members. When you provision new managed accounts, or when users' accounts are claimed with a linked domain, we add them as members to your default policy.
While users are automatically added as members to your default authentication policy, you must manually remove them if you don't want them included in an authentication policy.
Make a policy the default
To make another policy the default policy:
Go to Atlassian Administration. Select your organization if you have more than one.
Select Security > User security > Authentication policies.
Select Edit for the policy you want to make the default.
Select Make default policy in the (•••) menu.
Add a policy
To add a policy
Go to Atlassian Administration. Select your organization if you have more than one.
Select Security > User security > Authentication policies.
Select Add policy.
Select the Directory for your identity provider
Name the policy.
Select Settings you’d like to apply
Select Update policy in the (•••) menu.
Delete a policy
Remove IDP configurations
Before you delete a policy, we recommend you ensure that any related Identity Provider (IDP) configurations such as User provisioning and SAML are removed.
To remove IDP configurations:
Go to Atlassian Administration. Select your organization if you have more than one.
Select Security > User security > Identity providers.
Locate the associated directory and remove the User Provisioning and SAML entries.
Delete non-default policy
To delete a policy:
Go to Atlassian Administration. Select your organization if you have more than one.
Select Security > User security > Authentication policies.
Select Edit for the policy you want to delete.
Select Delete policy.
Delete default policy
You can’t delete a default policy, but you can select another policy to be the default, then delete it.
To delete a default policy:
Make another policy the default policy:
Go to Atlassian Administration. Select your organization if you have more than one.
Select Security > User security > Authentication policies.
Select Edit for the policy you want to make the default.
Select Make default policy in the (•••) menu.
Delete the policy that is no longer the default one:
Select Security > User security > Authentication policies.
Select Edit for the policy you want to delete.
Select Delete policy.
What happens to users when you delete a policy?
When you delete an authentication policy, users under that policy automatically transition to a local policy where Single Sign-On (SSO) is no longer enforced. This includes deactivated users, who retain their deactivated status within your organization.
Was this helpful?