Important Update Effective February 1, 2024!
Due to recent changes in Jira and Confluence, we've made the tough decision to discontinue the OpenID Connect (OIDC)/OAuth app and no longer provide new versions for the newest Jira/Confluence releases as of January 31, 2024.
This is due to some necessary components no longer shipping with Jira/Confluence, which would require some extensive rewrites of the OIDC App.
Important Update! This app will be discontinued soon!
Due to recent changes in Jira, which no longer ships with some components required for our Read Receipts app to run, we've made the tough decision to discontinue the app, as of Februar 5, 2025.
Important Update! This app will be discontinued soon!
We've made the tough business decision to discontinue the app, as of January 11, 2025.
3.5.x release notes
What's new
User Sync functionality is now also support for Bamboo.
Variety of Bugfixes (see Changelog for Details)
Upgrade consideration
No special considerations apply for this update.
Data Center
This version is fully compatible with Jira, Confluence and Bitbucket Data Center.
Changelog
3.5.8/3.5.0.3
Released on 12 January 2023 for Confluence (Server and Data Center).
Fix a medium level security vulnerability potentially allowing replay attacks, see https://wiki.resolution.de/doc/saml-sso/latest/jira/security-advisories/2023-01-12-response-can-be-replayed-with-modified-id-when-only-the-assertion-is-signed.
3.5.6
Released on 3 August 2021 for Confluence (Server and Data Center).
Fixes a critical security vulnerability.
Please update to this version or one of the other fix versions (5.0.5, 4.0.12, 3.6.6, 2.5.9) as soon as possible. Existing customers should have received or will soon receive a mailing with some details. They will be published in a few days.
3.5.5
Released on 23 May 2020 for Jira, Confluence, Bitbucket (Server and Data Center) and Bamboo
- This update includes the bugfix release of User Sync 1.5.0.
- The error page does no longer contain a stacktrace.
Changes specific to Jira
- None
Changes specific to Confluence
- None
Changes specific to Bitbucket
- None
Changes specific to Bamboo
- None
3.5.4
Released on 7 May 2020 for Jira, Confluence, Bitbucket (Server and Data Center) and Bamboo
- This update includes the bugfix release of User Sync 1.4.4.
- Fixed possible vulnerability when redirecting to malicious URLs without protocol part.
- Fixed bug where login was not possible when the Issuer is only present in the assertion.
Changes specific to Jira
- Fixed NullPointerException when accessing Service Desk logout URL when not logged in.
Changes specific to Confluence
- None
Changes specific to Bitbucket
- Fixed bug that prevented the regeneration of the session ID after login.
Changes specific to Bamboo
- Fixed setting lastAuthenticated date on login.
3.5.3
Released on 12 March 2020 for Jira, Confluence, Bitbucket (Server and Data Center) and Bamboo
- This update includes the bugfix release of User Sync 1.4.3.
Changes specific to Jira
- None
Changes specific to Confluence
- Fixed hanging upgrade from older versions caused by a bug in User Sync.
Changes specific to Bitbucket
- None
Changes specific to Bamboo
- None
3.5.2
Released on 3 March 2020 for Jira, Confluence, Bitbucket (Server and Data Center) and Bamboo
- This update includes the bugfix release of User Sync 1.4.2.
- Support for sending RelayState during Single Logout, when the IdP requests this.
- Added option to use a query parameter ?entityID=<IDP entity ID> to support IdP selection via Shibboleth where are you from (WAYF) pages in large Federations.
Changes specific to Jira
- Fixed: Redirection to originally requested Page was not working after login, if the User account was updated via Just in Time Provisioning (Updates via SAML attributes).
Changes specific to Confluence
- None
Changes specific to Bitbucket
- None
Changes specific to Bamboo
- None
3.5.1
Released on 18 December 2019 for Jira, Confluence, Bitbucket (Server and Data Center) and Bamboo
- This update includes the bugfix release of User Sync 1.4.1.
- Added: option to rename users during login when using EMAIL oder ADDITIONALID as authentication attribute. This is optional and needs to be explicitly enabled in the section "User Creation and Update from SAML Attributes".
Changes specific to Jira
- Fixed: redirection to Jira mobile view after Sign on.
Changes specific to Confluence
- None
Changes specific to Bitbucket
- None
Changes specific to Bamboo
- Fixed: Just in Time User Provisioning in combination with REDIRECT binding no longer results in a Server Error.
3.5.0
Released on 11 November 2019 for Jira, Confluence, Bitbucket (Server and Data Center) and Bamboo
- This update includes User Sync 1.4.0 with support for Bamboo.
- Fixed Sign On issues when clicking links from Microsoft Office applications.
- Fixed problem with IdP selection when multiple Atlassian applications are running on the same host.
Changes specific to Jira
- Fixed redirection to specific Jira dashboards after Sign On.
Changes specific to Confluence
- None
Changes specific to Bitbucket
- None
Changes specific to Bamboo
- This is the first release of SAML Single Sign On version 3.x for Bamboo with User Sync and the new functionality that was released for Jira, Confluence and Bitbucket in the meantime. Due to technical restrictions of Bamboo the minimal required Bamboo version from now on is 6.6.0.