JIRA Spoke - ServiceNow should see only some data from JIRA project, how?

Petr Pastuszek1
Tera Contributor


Hello,
does anyone solved this?

We integrated ServiceNow to Jira via SPOKE.
We created Incident in ServiceNow to JIRA, all OK.
After issue in JIRA is created in predefined project, this become bi directional integration, all OK.

 

Now the problem why we cannot implement this integration currently:
We did follow all instructions from ServiceNow for JIRA spoke, all OK.
Problem is JIRA side and we dont know how to solve this, even in JIRA team they have no idea.

In JIRA, there is one project. Cannot be more than one, 3rd party company politics/decisions.
In this project there are many data from 20 different customers.
With what we have (JIRA spoke and Oauth2 following SevriceNow instructions), we will be able to read all this 20 customers data within one JIRA project. This is security breach for JIRA, because our company shouldnt be able to see from SevriceNow data from another 19 companies stored in JIRA project.

Has anyone solved this?


ServiceNow integration to JIRA should be able only see issues that were created from ServiceNow.

Please note we are not looking for 3rd party tools which could be between JIRA/ServiceNow.
thank you for understanding

Currently using Oauth2

 

PS: We tried many things and either we see everything or nothing

/Petr

4 REPLIES 4

DrewW
Mega Sage
Mega Sage

Sounds like you need to create a separate project in JIRA for the ServiceNow stuff whether or not they want to otherwise you will be violating your security policy.

 

Thank you for the message.

/Petr

Let me keep this post opened little more time if anyone else got some other idea as 3rd party provider is not open currently to create new project in JIRA for this purpose and split us as a company into separate project. Under discussions.

 

/Petr

 

 

/Petr

Mathieu Lepoutr
Mega Guru

Hi @Petr Pastuszek1 

 

The best way to solve this would be Exalate, which is a decentralized integration solution, where you can granuarly decide which data will be send over and how it will be applied. Since it is decentalized, it brings in a lot of security advantages, both sides have full control. Any use-case becomes possible.