Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Info

Jira Data Center Approved (tick)

OWASP Security Verified (tick)


Simple add-on to remove License for Inactive users and Deactivate or remove Security access groups for users who left organization.

Use Cases:

  • To remove License for Jira users who are Never Login or Not active and exists.
  • To remove License for JSM users who are Never Login or Not active and exists.
  • To remove License or Access Security Groups for Jira users who left company or Not exists in organization directory
  • To restore license Or Grant Access on Successful Login attempt.
  • To search inactive users certain number of days and export to CSV.
  • To notify license alerts.

Features:

  • Supports to process Large enterprise users base.
  • All Atlassian provided user directories are supported.
  • Supports custom remote external Directories, to check user status either active or deactivated.
  • Option to choose Multi User Directories to process users.
  • Option to process users from specific groups.
  • Option to skip users from specific groups.
  • Option to rename Deactivated user to {username}_inactive_yyyyMMdd
  • Option to send ​Alert Notifications active license reaches threshold.
  • Useful REST APIs



Info

Top Trusted Users

  • BNP Paribas Bank Polska S.A.
  • Paytm Bank
  • OTP Bank
  • OCBC Bank
  • Autodesk, Inc
  • Thales
  • Expedia
  • Mercedes-Benz
  • Broadcom
  • Intel


Info

Quick Start Steps.

Here is Quick Start Steps to start using this plugin.


Status
colourGreen
titleUse Case #1

Go to, add-ons admin page > Click Manage Inactive Users


Info
titleUse Case 1 > --- To reduce the license count.

Configuration to Remove License or Access Security Groups for Jira users who are Never Login or Not active.

Please see, Jira Manage Inactive Users


Status
colourGreen
titleUse Case #2

Info
titleUse Case 2 > --- To deactivate users. (Optional)

To remove License or Access Security Groups for Jira users who left company or Not exists in organization directory.

  • Validates user status either active or deactivated in Atlassian supported user directories or a custom remote user directories like Okta, Google G-Suite and Azure AD.

Please see, Jira Manage Former X Users


Status
colourGreen
titleUse Case #3

Go to, add-ons admin page > Click Manage JSM Users

Info
titleUse Case 3 > --- To reduce the license count for JSM

Configuration to Remove License or Access Security Groups for JSM users who are Never Login or Not active.

Please see, JSM Manage Inactive Users


Status
colourGreen
titleUse Case #4

Info
titleUse Case 4 --- Automatic license reclamation
.

To enable / grant Login access back to those inactive users automatically

:

.

Please see, Jira License reclamation



Status
colourGreen
titleDebug

To Two ways to Debug Manage Inactive Users App :i.e.

>>> Through atlassian log file — atlassian-jira.log

Go to, System General Configuration > Logging and profiling > Default Loggers > Click Configure.

Code Block
Class/Package Name: com.tse.jira.deactivateusers.plugin
Level: Debug
Click Add

>>> Through Audit log.

Go to, System General Configuration > Audit log.

Anchor
customer1
customer1




Status
colourGreen
titleCustomer #1 Feedback

We use manage Inactive users plugin along side with Atlassian provided SAML / SSO Plugin for Overall Security as per InfoSec guideline.

  • To deactivate users who left company in Delegated User Directory.
  • To Clean up Inactive users who are not logged in last 90 days.
  • Grant license to Inactive users who comes back on successful attempt.

Atlassian provided SAML SSO plugin with Delegated LDAP / AD User Directory On login:

  • Helps us to create new users with default group.
  • Helps us to trigger groups synchronise from AD LDAP / Okta with custom prefix.

Anchor
customer2
customer2




Status
colourGreen
titleCUSTOMER #2 FEEDBACK

We used manage Inactive users plugin's REST API to migrate AD Users from Company X to Company Y.

From Connector User Directory to Delegated User Directory.

Step-1, We created New Delegated User Directory.

Step-2, Go to database update existing connector user directory users in cwd_user, membership and group tables with delegated directory ID

Step-3, Use manage Inactive users plugin's attribute update REST API to rename username and email addresses.




Status
colourGreen
titleCUSTOMER #3 FEEDBACK

We use Manage Inactive users plugin with Re:Solution SAML plugin.

  • To deactivate users who left company in Delegated User Directory.
  • To Clean up Inactive users who are not logged in last 90 days.
  • Re:Solution SAML plugin helps to provision / grant license on login.


Status
colourGreen
titleCUSTOMER #4 FEEDBACK

We use Manage Inactive users plugin with MiniOrange SAML plugin.

  • To deactivate users who left company in Delegated User Directory.
  • To Clean up Inactive users who are not logged in last 180 days.
  • MiniOrange SAML plugin helps to provision / grant license on login.


Please see, Common Asked Questions and Hints