Skip to content
Jenkins
Manage Jenkins
Security
Search
Manage Jenkins
Sign in
Security
Secure Jenkins; define who is allowed to access/use the system.
Authentication
Disable “Keep me signed in”
?
Loading...
Security Realm
Delegate to servlet container
Jenkins’ own user database
LDAP
None
?
Loading...
Allow users to sign up
?
Loading...
Authorization
Anyone can do anything
Legacy mode
Logged-in users can do anything
Matrix-based security
Project-based Matrix Authorization Strategy
?
Loading...
Markup Formatter
Markup Formatter
?
Loading...
Plain text
Safe HTML
Shows descriptions mostly as written. HTML unsafe characters like < and & are escaped to their respective character entities, and line breaks are converted to their HTML equivalent.
Agents
TCP port for inbound agents
?
Fixed
Random
Disable
Loading...
CSRF Protection
Crumb Issuer
Default Crumb Issuer
Git plugin notifyCommit access tokens
Current access tokens
?
There are no access tokens yet.
Generate
Revoke
Cancel
Access token will only be displayed once.
Add new access token
Loading...
Prism syntax highlighting
Permitted Source Code Directories
?
Valid and permitted source code locations on agents (outside the workspace).
Absolute path of permitted directory
Delete
Add
Loading...
Git Hooks
Allow on Controller
?
Loading...
Allow git hooks to run on the Jenkins Controller
Allow on Agents
?
Loading...
Allow git hooks to run on Jenkins Agents
Hidden security warnings
Security warnings
Edited
This section allows you to suppress warnings, applicable to your Jenkins configuration, provided by the update site(s). If you do, they won’t be shown by the Update Site Warnings administrative monitor. Checked warnings are reported (the default), unchecked warnings are hidden.
Security warnings
?
Loading...
API Token
Generate a legacy API token for each newly created user (Not recommended)
?
Loading...
Allow users to manually create a legacy API token (Not recommended)
?
Loading...
Enable API Token usage statistics
?
Loading...
Content Security Policy
Content-Security-Policy enforcement is currently disabled.
Learn more.
SSH Server
SSHD Port
?
Fixed
Random
Disable
Loading...
Git Host Key Verification Configuration
Host Key Verification Strategy
?
Loading...
Accept first connection
Known hosts file
Manually provided keys
No verification
Sandbox Configuration
Force the use of the sandbox globally in the system
?
Loading...
Save
Apply