Strengthening security of Jenkins for PaaS customers

What is the problem you are trying to solve?

Currently, PaaS users login to their Jenkins instances via standard login (ID/Password).
However, customers are wishing for a more layers of security.

What is your proposed solution?

Some ideas for how it could be more secure:

  • Allowing MFA when logging in
  • Implementing IP restrictions on the endpoint
  • Disallowing logging into the Jenkins instance

If the team could consider this, it would be much appreciated.
Thank you.

1 Like