Documentation for JIRA 4.3. Documentation for other versions of JIRA is available too.

A dedicated user should be created to run JIRA, as JIRA runs as the user it is invoked under and therefore can potentially be abused. Here is an example of how to create a dedicated user to run JIRA in Linux/Solaris:

$ sudo /usr/sbin/useradd --create-home --home-dir /usr/local/jira --shell /bin/bash jira

Ensure that only the following directories can be written to by Tomcat:

  • logs
  • temp
  • work
  • database (this directory will be created the first time you run JIRA)
  • your JIRA Home directory

See also Tomcat security best practices

  • No labels