Hello there!

Need Help? We are right here!

Support Icon
miniOrange Email Support
success

Thanks for your Enquiry. Our team will soon reach out to you.

If you don't hear from us within 24 hours, please feel free to send a follow-up email to info@xecurify.com

Search Results:

×

How to secure Atlassian using CASB Solution


Secure your Atlassian with the miniOrange CASB solution to protect sensitive business information against unauthorized user access by enabling dynamic security restrictions, deep visibility, active threat detection, and granular access controls. In this guide, we will see how you can configure Atlassian with CASB for your organization.


Step 1: Sign up with miniOrange CASB

  • Click here to log into your miniOrange account.

    (Don’t have an account? No worries, click here to create a new account)

  • Login into miniOrange Atlassian apps CASB

  • After signing in, navigate to the Authentication Source in the left sidebar.
  • Atlaasian CASB Access Restriction authentication method dashboard

  • You will see a list of all existing authentication sources. Click "Add New" to create a new Authentication Source.
  • Google CASB Access Restriction Add New authentication

  • In the configuration screen, enter the Authentication Source Name and click Download Metadata.
  • Google CASB Authentication Generate Metadata

Step 2: Configure your Identity Provider

  • Sign in to miniOrange IAM using the same credentials as the CASB dashboard and navigate to the Apps section.
    (In this guide, we are using miniOrange as the IDP, but you can contact us at proxysupport@xecurify.com to set up your preferred IDP.)
  • Atlassian CASB  with your Identity Provider- miniOrange IDP

  • You will see a list of all configured applications. Click Add Application to create a new one.
  • Atlassian CASB  with your Identity Provider- Add Application

  • Search for the Custom SAML App in the search box and click on it.
  • Atlassian CASB  with your Identity Provider- Custom SAML App

  • Enter a custom application name and click on the Import SP Metadata button in the right corner.
  • Atlassian CASB  with your Identity Provider- Import SP Metadata

  • Add the App Name, and select the file option in SP Metadata. Next, click on the Choose File button. Select the file downloaded in Step 1 and click on Import Button.
  • Atlassian CASB  with your Identity Provider- select the file

  • After the file is successfully uploaded, Click on Next Button.
  • Atlassian CASB  with your Identity Provider- click next

  • In the Attribute Mapping section, follow these steps:
    1. Click on the Add Attribute button.
    2. Enter groups as the Attribute Name and select User Groups as the Attribute Value.
    3. Add another attribute by clicking Add Attribute again.
    4. Enter fullname as the Attribute Name and select Full Name as the Attribute Value.
    5. Click on the Save button to apply the changes.
  • Atlassian CASB  with your Identity Provider- Attribute Mapping section

  • Now, you will be redirected to the Applications, screen where your configured application will be listed. Click on the three dots next to the application and select the Metadata option.
  • Atlassian CASB  with your Identity Provider- Applications

  • In the View IDP Metadata section, click on the copy to clipboard next to the Metadata URL to copy it.
  • Atlassian CASB  with your Identity Provider- copy to clipboard

  • Return to the CASB Dashboard tab, in the Configure Authentication Source section, locate the IDP Metadata section, and click on Upload Metadata.
  • Atlassian CASB  with your Identity Provider- DP Metadata

  • In Import IDP Metadata, select Import Format as URL, add IDP Metadata url copied from miniOrange IDP, and click the Import button.
  • Atlassian CASB  with your Identity Provider- miniOrange IDP

  • A prompt will appear confirming that the metadata has been uploaded successfully. Click Save to finalize the configuration.
  • Atlassian CASB  with your Identity Provider- click on save

  • Now, return to miniOrange IDP, click on the Users tab in the navigation menu on the left and select User List.
  • Atlassian CASB  with your Identity Provider- user list

  • In the Add User page, add the user's personal details like Email, Username, First Name, Last Name, Phone and Password and click on the Create User Button. (To add multiple users, use Bulk User Registration feature)
  • Atlassian CASB  with your Identity Provider- add user

  • Now, go to the Groups tab, select Manage Groups, and click on the Create Group button.
  • Atlassian CASB  with your Identity Provider- create group

  • In the Add Group section, enter a name for the group in the Group Name field and click on the Create Group button.
  • Atlassian CASB  with your Identity Provider- group name

  • In the Manage Groups section, search for the newly created group and click on the select button next to it. Click on Assign Users option in the dropdown.
  • Atlassian CASB  with your Identity Provider- select

  • On the Assign Users page, follow these steps:
    1. select the checkbox for the user created in here.
    2. Click on the Select Action button and choose Assign to group.
    3. Click Apply to add users to the group.
  • Atlassian CASB  with your Identity Provider- assgin group

  • Now, return to the CASB Dashboard and click on Test Connection in the action button for the Authentication Source.
  • Atlassian CASB  with your Identity Provider- Test Connection

  • You will be redirected to the miniOrange IDP Sign-In screen. Enter the credentials for the user added in the previous steps.
  • Atlassian CASB  with your Identity Provider- mo sign in

  • After successful authentication, you will see a screen displaying Test Connection Details. On the left side, you will find attribute keys, and on the right side, their corresponding values.
  • Atlassian CASB  with your Identity Provider- Test Connection Details

Step 3: Configure SSO in Atlassian Admin Dashboard

  • Once this is done, navigate to the Applications section from the sidebar, go to Atlassian, and click on Configure.
  • Atlassian CASB  with your Atlassian Admin Console console

  • In this section, open the Authentication Source dropdown, select the authentication source you created earlier, and click Save and Next.
  • Atlassian CASB  with your Atlassian Admin Console console

  • Now, You are redirected to Basic Settings section.
  • Fill in the following details to configure the Atlassian Application:
    • Application Name: Enter the name of your application
      Organization Domain: Enter your organization's domain.
      Attribute Key: Enter the Group Attribute Key for the SSO app, which you have configured in the IDP under the SAML attribute section.
      Name Attribute Key: Enter the attribute names, such as fname, lname, etc., that you have configured in the earlier steps in the SAML Attributes section.
      Enter ACS URL: You can get the Atlassian ACS URL from the Atlassian admin dashboard.
      Enter Entity URL: You can get the Atlassian Entity URL from the Atlassian admin dashboard.
      Enable MDM: If you want to configure miniOrange MDM on your device, enable it. (This check only works with miniOrange MDM)
      Enable Reporting: If you want to monitor your users’ activities, enable it.
    Atlassian CASB Basic Settings Details

  • For ACS URL and Entity URL, you need to first configure Atlassian Admin Authentication using the steps below.
  • Go to admin.atlassian.com and login with your admin account.
  • Atlassian CASB - go to admin dashboard

  • Navigate to Security > User Security > Identity Providers. Locate the Other provider option and click Choose.
  • Atlassian CASB - click on other provider

  • Enter a name for the Identity Provider Directory and click Add.
  • Atlassian CASB - enter directory name

  • Under the Authenticate users section, click Set up SAML single sign-on.
  • Atlassian CASB - setup sso

  • Click Next.
  • Atlassian CASB - click next

  • Go to the CASB Dashboard basic settings screen and click on the View IDP Metadata button.
  • Atlassian CASB - View IDP Metadata

  • Find the IDP entity ID and Sign-in page URL. You can also Download the X.509 Certificate using download icon.
  • Atlassian CASB - Sign-in page URL

  • In Atlassian, enter the following CASB Dashboard values:
    • IDP entity ID into Identity Provider Entity ID.
    • Sign-in page URL into the Identity provider SSO URL.
    • X.509 Certificate into Public x509 certificate.
  • Once done, click Next.
  • Atlassian CASB - saml deatails

  • Copy the URLs under Copy URLs to your identity provider section and click on Next.
  • Atlassian CASB - saml sp deatails

  • Go to the CASB Dashboard basic settings and paste the URL copied from the previous step into the ACS URL and Entity URL fields.
  • Atlassian CASB - CASB Dashboard basic settings

  • Once done, click on the Save and Next button to update the configuration.
  • Atlassian CASB - click Save and Next

  • Select your domain from the drop-down menu and click Next.
  • Atlassian CASB - enter domain name

  • If provisioning is needed, click Set up provisioning. Otherwise, click Stop and Save SAML.
  • Atlassian CASB - set up provision

  • Navigate to Security > User Security > Authentication Policy and click Edit on your policy.
  • Atlassian CASB - authentication policy

  • Enable the checkbox for Enforce single sign-on.
  • Atlassian CASB - enable sso

  • Go to the Members tab and click Add members to add members into your directory from the local directory.
  • Atlassian CASB - add members

  • Search for your users in the search bar to add the user or you can add bulk users inside the Bulk entry tab.
  • Atlassian CASB - bulk entry

  • Return to the Settings tab and click Update at the bottom of the page.
  • Confirm by clicking Update again in the pop-up.
  • Atlassian CASB - update

Step 4: Configure Groups

  • Go to the CASB Dashboard, navigate to Group Settings, and click Add New to create a new group.
  • Atlassian CASB - update

  • In the Group Settings section, provide the group name the same as the one you created earlier in miniOrange IDP and enter a description.
  • Atlassian CASB - update

  • Now, we'll proceed to assign permissions for applications to the group.
    • a) App Restriction: In this, the restrictions will be applied over the application based on the policy that you have configured for the group.

      b) No App Restriction: In this, there will be no restrictions on the application for the group.

      c) Disable App: By choosing this option, the application becomes inaccessible from anywhere for the entire group.

      d) Custom App Restriction: By using this, you can apply an application-specific custom application restriction policy to an application that overpowers the group's restriction policy.

  • Once done, click on Save button.
  • Atlassian CASB - update

  • You have successfully completed admin configuration for the Cloud Access Security Broker (CASB).
  • Now, let's move forward with the User Onboarding Process. Follow the CASB extension guide to complete the setup.

External References

miniOrange CASB offers a wide variety of security features with flexible scalability, all available at the most affordable price to all types of businesses. Start by signing up now!


Not able to configure or test Atlassian CASB?
No worry, you need to Contact us or email us at proxysupport@xecurify.com and we'll help you setting it up in no time.


Request a Free Demo!

  

 Thank you for your response. We will get back to you soon.

Please enter your enterprise email-id.

miniOrange CASB solutions making it affordable for organizations