ã¬ãŒãå¶éã§ã€ã³ã¹ã¿ã³ã¹ã®å®å®æ§ãæ¹åãã
èªååããã飿ºãã¹ã¯ãªããã Jira ã«å€§éã®ãªã¯ãšã¹ããéä¿¡ãããšãJira ã®å®å®æ§ã«åœ±é¿ãäžããããã©ãŒãã³ã¹ã®äœäžãããŠã³ã¿ã€ã ã«ã€ãªããæãããããŸããã¬ãŒãå¶éã䜿çšãããšããŠãŒã¶ãŒãèªååæ©èœãéä¿¡å¯èœãªå€éš REST API ãªã¯ãšã¹ãã®æ°ãšé »åºŠãå¶åŸ¡ããJira ã€ã³ã¹ã¿ã³ã¹ãå®å®ããç¶æ ãä¿ã€ããã«ã§ããŸãã
ã¬ãŒãå¶é㯠Jira Software Data Center ããã³ Jira Service Management Data Center ã§äœ¿çšã§ããŸãã
次ã®ã»ã¯ã·ã§ã³ã«ãžã£ã³ã
- ã¬ãŒãå¶éã®ä»çµã¿
- ã¬ãŒãå¶éãæå¹åããæ¹æ³
- ãªã¯ãšã¹ãã®å¶é - 詳现
- äŸå€ã®è¿œå
- ã¬ãŒãå¶éãããŠãããŠãŒã¶ãŒã®ç¹å®
- ã¬ãŒãå¶éãšã¯ - ãŠãŒã¶ãŒã®èгç¹ãã
- URL ãšå€éšã¢ããªã±ãŒã·ã§ã³ã®èš±å¯ãªã¹ã
- OAuth 2.0 ãªã¯ãšã¹ãã®ã¬ãŒãå¶é
- ã¬ãŒãå¶éçšã«ã³ãŒãã調æŽãã
- æ¢ç¥ã®åé¡
ã¬ãŒãå¶éã®ä»çµã¿
Jira ã§ã®ã¬ãŒãå¶éã®ä»çµã¿ã®è©³çްã«ã€ããŠã説æããŸãã
ã¬ãŒãå¶éãæå¹åããæ¹æ³
ã¬ãŒãå¶éãæå¹åããã«ã¯ãJira ã·ã¹ãã 管çè ã§ããå¿ èŠããããŸãã
ã¬ãŒãå¶éãæå¹åããã«ã¯ãæ¬¡ã®æé ãå®è¡ããŸãã
Jira ã§ã[管ç] > [ã·ã¹ãã ] > [ã¬ãŒãå¶é] ã«ç§»åããŸãã
ã¹ããŒã¿ã¹ã [æå¹] ã«å€æŽããŸãã
次ã®ãªãã·ã§ã³ã®ãã¡ 1 ã€ãéžæããŸã: ç¡å¶éã®ãªã¯ãšã¹ããèš±å¯ããã¹ãŠã®ãªã¯ãšã¹ãããããã¯ããŸãã¯ãªã¯ãšã¹ããå¶éãæåã®ãªãã·ã§ã³ãš 2 çªç®ã®ãªãã·ã§ã³ã¯èš±å¯ãªã¹ããšãããã¯ãªã¹ãã«é¢é£ããŸããæåŸã®ãªãã·ã§ã³ã®å Žåãå®éã®å¶éãå ¥åããå¿ èŠã¯ãããŸããã詳现ã«ã€ããŠã¯ä»¥äžããèªã¿ãã ããã
ä¿åãã¯ãªãã¯ããŸãã
èš±å¯ãªã¹ããŸãã¯ãããã¯ãªã¹ããéžæããŠããå Žåã¯ç¹ã«ã远å ãªã¯ãšã¹ããæ¬åœã«å¿ èŠãšãããŠãŒã¶ãŒã«äŸå€ã远å ããããã«ããŸãããäŸå€ã®è¿œå ããåç §ããŠãã ããã
ãªã¯ãšã¹ãã®å¶é - 詳现
èš±å¯ãªã¹ãããããã¯ãªã¹ããšåæ§ã«ãã°ããŒãã«èšå®ãé©çšé€å€ã§ã¯ããªã¯ãšã¹ãå¶éã®ãªãã·ã§ã³ãé »ç¹ã«äœ¿çšããããšã«ãªãã¯ãã§ãã
ãã®ãªãã·ã§ã³ãšä»çµã¿ã«ã€ããŠè©³ããèŠãŠã¿ãŸãããã
èš±å®¹èŠæ±æ°: åãŠãŒã¶ãŒã¯ãéžæããæéééã«ç¹å®ã®ä»¶æ°ã®ãªã¯ãšã¹ããèš±å¯ãããŠããŸãã1 ç§ããã 10 ä»¶ã®ãªã¯ãšã¹ãã1 æéããã 100 ä»¶ã®ãªã¯ãšã¹ããªã©ãä»»æã®èšå®ãéžæã§ããŸãã
éžæããæéã®åäœ (ç§ãåãæé) ã«é¢ä¿ãªããJira ã§ã¯åžžã«æéééãç§åäœã«å€æããŸãã
- æå€§èŠæ±æ° (é«åºŠ): ãªã¯ãšã¹ããé »ç¹ã«éä¿¡ãããªãå Žåã¯ãèš±å®¹èŠæ±æ°ããŠãŒã¶ãŒããšã«æå€§æ°ãŸã§èç©ã§ããŸãããã®ãªãã·ã§ã³ã䜿çšãããšããŠãŒã¶ãŒã¯éåžžãšç°ãªãé »åºŠ (ã¬ãŒãã§æå®ããã 1 åããã 10 ä»¶ã®ä»£ããã« 2 åããã 20 ä»¶ãªã©) ã§ãªã¯ãšã¹ããäœæããããæéããããŠå€ãã®ãªã¯ãšã¹ããèç©ããäžåºŠã«éä¿¡ã§ããŸããæå€§æ°ã®èšå®ãé£ããå Žåã¯ã[èš±å®¹èŠæ±æ°] ãšåãå€ã«èšå®ããŠããã°ããã®ãã£ãŒã«ãã®åœ±é¿ã¯ãªããèç©ããããªã¯ãšã¹ãããããŸããã
äŸ
é©åãªå¶éãèŠã€ãã
äŸå€ã®è¿œå
åæ§ã«äŸå€ã¯ãä»ã®ãŠãŒã¶ãŒãããå€ãã®ãªã¯ãšã¹ããå®éã«å¿ èŠãšãããŠãŒã¶ãŒã®ããã®ç¹å¥ãªå¶éã§ããéžæããäŸå€ã¯ãã°ããŒãã«èšå®ãããåªå ãããŸãã
äŸå€ã远å ãŸãã¯ç·šéããåŸã倿Žã¯ããã«åæ ãããŸãããæ°ããèšå®ããŠãŒã¶ãŒã«é©çšãããã«ã¯æå€§ã§ 1 åããããŸãã
äŸå€ã远å ããã«ã¯ãæ¬¡ã®æé ãå®è¡ããŸãã
[äŸå€] ã¿ããéããŸãã
[äŸå€ã®è¿œå ] ãã¯ãªãã¯ããŸãã
ãŠãŒã¶ãŒãèŠã€ãããã®ãŠãŒã¶ãŒã®ããã®æ°ããèšå®ãéžæããŸãã
ã°ã«ãŒããéžæããããšã¯ã§ããŸããããè€æ°ã®ãŠãŒã¶ãŒãéžæã§ããŸãã
ããã§å©çšå¯èœãªãªãã·ã§ã³ã¯ã°ããŒãã«ãªèšå®ã®å Žåãšåãã§ã: "ç¡å¶éã®ãªã¯ãšã¹ããèš±å¯"ã"ãã¹ãŠã®ãªã¯ãšã¹ããããã㯠"ã"ã«ã¹ã¿ã å¶éãå²ãåœãŠ"ã
ä¿åãã¯ãªãã¯ããŸãã
åŸããäŸå€ãç·šéãããå Žåã¯ã[äŸå€] ã¿ãã§ãŠãŒã¶ãŒåã®æšªã«ãã [ç·šé] ãã¯ãªãã¯ããŸãã
æšå¥š: å¿åã¢ã¯ã»ã¹ãžã®äŸå€ã远å
Jira ã§ã¯ããã¹ãŠã®å¿åãã©ãã£ãã¯ã "Anonymous" ãšãã 1 人ã®ãŠãŒã¶ãŒã«ãããã®ã§ãããšã¿ãªããŸããã¬ãŒãå¶éãååã«é«ããªãå Žåã1 人ã®ãŠãŒã¶ãŒãå¿åãŠãŒã¶ãŒã«å²ãåœãŠãããå¶éã䜿ãæããå¯èœæ§ããããŸãããã®ã¢ã«ãŠã³ãã«é«ãå¶éå€ãå²ãåœãŠãäŸå€ã远å ãããããªã远å ãå¿ èŠãã©ããã確èªããããšãããããããŸããÂ
ã¬ãŒãå¶éãããŠãããŠãŒã¶ãŒã®ç¹å®
ãŠãŒã¶ãŒãã¬ãŒãå¶éãåããŠããå ŽåãHTTP 429 ãšã©ãŒ ã¡ãã»ãŒãž (too many requests) ã衚瀺ãããããããŠãŒã¶ãŒã¯ããã«ãã®ããšã確èªã§ããŸãã管çè ã¯ã¬ãŒãå¶éèšå®ããŒãžã® [å¶éãåããŠããã¢ã«ãŠã³ãã®äžèЧ] ãéããŠãã¬ãŒãå¶éãåããŠãããŠãŒã¶ãŒãç¹å®ã§ããŸããäžèЧã«ã¯ãã¯ã©ã¹ã¿å šäœã®ãã¹ãŠã®ãŠãŒã¶ãŒã衚瀺ãããŸãã
ãŠãŒã¶ãŒãã¬ãŒãå¶éãåããŠããå Žåã衚ã«è¡šç€ºãããã«ã¯æå€§ã§ 5 åããããŸãã
ç°åžžãªã¢ã«ãŠã³ã
ãŠãŒã¶ãŒã¯äžèЧã«ãŠãŒã¶ãŒåã§è¡šç€ºãããŸãããã ãäžèЧã«ã¯ãããã€ãã®ç°åžžãªã¢ã«ãŠã³ãã衚瀺ãããå ŽåããããŸãã以äžã«äŸã瀺ããŸãã
Unknown: Jira ã§åé€ããããŠãŒã¶ãŒã§ãããããã®ãŠãŒã¶ãŒã¯ 24 æéãçµéãããšäžèЧã«ã¯è¡šç€ºãããŸããã (ãŠãŒã¶ãŒãã¬ãŒãå¶éããããšã¯ã§ããªããªã£ãŠãããã)ãäŸå€ã®äžèЧã«ã¯è¡šç€ºãããå ŽåããããŸãããããã®ãŠãŒã¶ãŒã«ã¯ã¬ãŒãå¶éã¯äžèŠãªãããèšå®ãåé€ããŠããŸããŸããã
Anonymous: ãã®ãšã³ããªã¯ãèªèšŒãããŠããªãã¢ã«ãŠã³ãããè¡ããããã¹ãŠã®ãªã¯ãšã¹ããåéããŸãã1 人ã®ãŠãŒã¶ãŒã§å¿åã¢ã¯ã»ã¹ã®å¶éãŸã§ã®ãªã¯ãšã¹ãæ°ãç°¡åã«äœ¿çšã§ããŠããŸãããšããããããå¿åãã©ãã£ãã¯ã«äŸå€ã远å ããŠãé«ãå¶éå€ã远å ããããšãããããããŸãã
å¶éä»ãã®ãªã¯ãšã¹ãããã° ãã¡ã€ã«ã«è¿œå ãã
Jira ã®ãã° ãã¡ã€ã«ã§ã¬ãŒãå¶éãããŠãããŠãŒã¶ãŒããªã¯ãšã¹ãæ°ã®æ å ±ã衚瀺ããããšãã§ããŸããããã¯ããªã¯ãšã¹ãã®å®å URL ããªã¯ãšã¹ãå ã® URL ã®è©³çްãç¥ãããå Žåã«äŸ¿å©ã§ãã
ã¬ãŒãå¶éãšã¯ - ãŠãŒã¶ãŒã®èгç¹ãã
ãŠãŒã¶ãŒãèªèšŒæžã¿ã®ãªã¯ãšã¹ããäœæãããšãã¬ã¹ãã³ã¹ã«ã¬ãŒãå¶éã®ããããŒã衚瀺ãããŸãããããã®ããããŒã¯ã¬ãŒãå¶éãããŠãããšãã ãã§ãªãããã¹ãŠã®ã¬ã¹ãã³ã¹ã«è¿œå ãããŸãã
| ããã㌠| 説æ |
|---|---|
| ãããŸã§ã«æã€ããšãã§ãããªã¯ãšã¹ã (ããŒã¯ã³) ã®æå€§æ°ããã®å¶éã«å°éããåŸã¯ãæ°ããããŒã¯ã³ããã±ããã«è¿œå ãããŸããã管çè ã¯ããã [æå€§èŠæ±æ°] ãšããŠèšå®ããŸãã |
| ããŒã¯ã³ã®æ®ãã®æ°ãèªèº«ãçŸåšä¿æããŠããŠãããã«äœ¿çšã§ããããŒã¯ã³æ°ã§ãã |
| æééé (ç§åäœ)ããã®ééããšã«æ°ããããŒã¯ã³ã®ããããååŸã§ããŸãã |
| æéééããšã«ååŸããããŒã¯ã³ã®æ°ã管çè ã¯ãããã [èš±å®¹èŠæ±æ°] ãšããŠèšå®ããŸãã |
| æ°ããããŒã¯ã³ãååŸãããŸã§ã«åŸ æ©ããå¿ èŠãããæéã HTTP ã¹ããŒã¿ã¹ ã³ãŒã 429 ã§äœåºŠã倱æããåŸã«ã |
ãŠãŒã¶ãŒãã¬ãŒãå¶éãåããŠããŠãªã¯ãšã¹ããåŠçãããªãå ŽåãHTTP 429 ãšã©ãŒ ã¡ãã»ãŒãž (too many requests) ãè¿ãããŸãããŠãŒã¶ãŒã¯ãã®ããããŒã䜿çšããŠãã¹ã¯ãªãããèªååãå¶éã«åãããŠèª¿æŽãã劥åœãªé »åºŠã§ãªã¯ãšã¹ããéä¿¡ã§ããŸãã
URL ãšå€éšã¢ããªã±ãŒã·ã§ã³ã®èš±å¯ãªã¹ã
URL ãšãªãœãŒã¹ãèš±å¯ãªã¹ãã«è¿œå ãã
Jira ã€ã³ã¹ã¿ã³ã¹ã§ URL å šäœããã³ãªãœãŒã¹ãèš±å¯ãªã¹ãã«ç»é²ããæ¹æ³ã远å ããŸãããããã䜿çšããããšã§ãã¬ãŒãå¶éãããŠããããå¶éãããã¹ãã§ã¯ãªããã®ããçŽ æ©ãä¿®æ£ã§ããŸãã
[管ç] > [ã·ã¹ãã ] > [äžè¬èšå®] ã«ç§»åããŸãã
[é«åºŠãªèšå®] ãã¯ãªãã¯ããŸãã
com.atlassian.ratelimiting.whitelisted-url-patternsããããã£ãèŠã€ããã«ã³ãåºåããªã¹ãã®åœ¢åŒã§ URL ãå ¥åããŸããäŸ:Â/**/rest/applinks/**,/**/rest/capabilities,/**/rest/someapi
URL ãã¿ãŒã³ã®äœææ¹æ³ã®è©³çްã«ã€ããŠã¯ãAntPathMatcher: URL patternsããåç §ããŠãã ããã
å€éšã¢ããªã±ãŒã·ã§ã³ãèš±å¯ãªã¹ãã«è¿œå ãã
ã³ã³ã·ã¥ãŒã㌠ããŒãèš±å¯ãªã¹ãã«è¿œå ããŠãã¢ããªã±ãŒã·ã§ã³ ãªã³ã¯ãéããŠé£æºãããå€éšã¢ããªã±ãŒã·ã§ã³ã®ã¬ãŒãå¶éãåé€ã§ããŸãã
ã¢ãã©ã·ã¢ã³ ã¯ã©ãŠã補åã®å Žåãã³ã³ã·ã¥ãŒã㌠ããŒã®ååŸæ¹æ³ã¯ç°ãªããŸããã¯ã©ãŠã補åã®ã¬ãŒãå¶éãåé€ãããå Žåããã¢ãã©ã·ã¢ã³ ã¯ã©ãŠã補åã«å¯Ÿããã¬ãŒãå¶éã®åé€ããåç §ããŠãã ããã
ã¢ããªã±ãŒã·ã§ã³ã®ã³ã³ã·ã¥ãŒã㌠ããŒãèŠã€ããŸãã
[管ç] > [ã¢ããªã±ãŒã·ã§ã³] > [ã¢ããªã±ãŒã·ã§ã³ ãªã³ã¯] ã«ç§»åããŸãã
ã¢ããªã±ãŒã·ã§ã³ãèŠã€ã㊠[ç·šé] ãã¯ãªãã¯ããŸãã
[åä¿¡èªèšŒ] ãéããã³ã³ã·ã¥ãŒã㌠ããŒãã³ããŒããŸãã
ã³ã³ã·ã¥ãŒã㌠ããŒãèš±å¯ãªã¹ãã«è¿œå ããŸãã
[管ç] > [ã·ã¹ãã ] > [äžè¬èšå®] ã«ç§»åããŸãã
[é«åºŠãªèšå®] ãã¯ãªãã¯ããŸãã
com.atlassian.ratelimiting.whitelisted-oauth-consumersã®å€ãšããŠã³ã³ã·ã¥ãŒã㌠ããŒãå ¥åããŸããã³ã³ãåºåããªã¹ãã®åœ¢åŒã§è€æ°ã®ã³ã³ã·ã¥ãŒã㌠ããŒãå ¥åã§ããŸãã
ã³ã³ã·ã¥ãŒã㌠ããŒãå ¥åãããšãé¢é£ããã¢ããªã±ãŒã·ã§ã³ããã®ãã©ãã£ãã¯ã¯å¶éãããªããªããŸãã
OAuth 2.0 ãªã¯ãšã¹ãã®ã¬ãŒãå¶é
次ã®ãã¹ãŠã®æé ãè¡ãã«ã¯ãJira ã·ã¹ãã 管çè ã°ããŒãã«æš©éãæã€ãŠãŒã¶ãŒãšããŠãã°ã€ã³ããå¿ èŠããããŸãã
OAuth 2.0 ãªã¯ãšã¹ãã®ã¬ãŒãå¶éã¯ä»ã® API ãªã¯ãšã¹ããšã¯å¥ã«èšå®ã§ãããããRovo ã³ãã¯ã¿ãŒãªã©ã®çµ±åã管çãããããªããŸãããã¹ãŠã® REST API ã¯ã©ã€ã¢ã³ãã¯ãã¬ãŒãå¶éä»ãã®ãªã¯ãšã¹ããåŠçã§ããå¿ èŠããããŸãããã ããéå¹ççãªèšå®ã¯ã圱é¿ãåãããšã³ããã€ã³ãã®ããã©ãŒãã³ã¹ã«æªåœ±é¿ãåãŒãå¯èœæ§ããããŸãããšã³ããã€ã³ãã§ 429 ãšã©ãŒãçºçããå Žåã¯ãã¬ãŒãå¶éã®èšå®ã確èªããŠèª¿æŽããŠãã ãããHTTP ãã©ãã£ãã¯ç£èŠããŒã«ã䜿çšããŠãããã®åé¡ãç¹å®ããã¹ã ãŒãºãªçµ±åããã©ãŒãã³ã¹ã確ä¿ããããšããå§ãããŸãã
OAuth 2.0 ãªã¯ãšã¹ãã®ã¬ãŒãå¶é㯠Jira ã«ã®ã¿é©çšãããããšã«æ³šæããŠãã ãããä»ã®ã¢ãã©ã·ã¢ã³è£œåã䜿çšããŠããå Žåã¯ãOAuth 2.0 ãªã¯ãšã¹ãã¯å¿åã®èªèšŒæžã¿ãªã¯ãšã¹ããšããŠæ±ãããŸããã¬ãŒã ãªããã¿ãŒãæå¹ã«ãããšããªã¯ãšã¹ãã«æ¢å®ã®ãŠãŒã¶ãŒ ã¬ãŒãå¶éãé©çšãããŸããå OAuth2 2LO ã¯ã©ã€ã¢ã³ãã¯ãã¬ãŒãå¶éã®å¯Ÿè±¡ãšãªãåå¥ã®ãŠãŒã¶ãŒãšããŠæ±ãããŸãã
次㮠REST API ãšã³ããã€ã³ãã䜿çšããŠã¬ãŒãå¶éã管çã§ããŸãã
説æ | ãšã³ããã€ã³ã |
|---|---|
èšå®ãæŽæ°ããŸãã |
äŸ:
ããã§:
|
çŸåšã®èšå®ã確èªããŸããäœã倿ŽãããŠããªãå Žåãçµæã¯è¿ãããŸããã |
|
OAuth 2.0 ãªã¯ãšã¹ããèš±å¯ããŸãããã®æäœãå®è¡ãããšãOAuth 2.0 ãªã¯ãšã¹ãã¯ã¬ãŒãå¶éã®å¯Ÿè±¡ããé€å€ãããŸãã |
|
OAuth 2.0 ãªã¯ãšã¹ãããããã¯ããŸãã |
|
èšå®ãåé€ããŸãã |
|
ã¬ãŒãå¶éçšã«ã³ãŒãã調æŽãã
ã³ãŒã (ã¹ã¯ãªããã飿ºãã¢ããª) ã«é©çšããŠã¬ãŒãå¶éã§äœ¿çšã§ãããäžé£ã®æŠç¥ãäœæããŸããã詳ããã¯ããã¬ãŒãå¶éçšã«ã³ãŒãã調æŽããããåç §ããŠãã ããã
æ¢ç¥ã®åé¡
Jira ã®ã¬ãŒãå¶éèšå®ãæåŸ ã©ããã«æ©èœããªãå Žåã¯ããã®ãã¬ããž ããŒã¹èšäºã§è§£æ±ºçãã確èªãã ããã
課é¡ããªã¯ãšã¹ãã®ã¯ãããŒãŸãã¯ããããŒã«ãããã®ãã©ããã確èªããã«ã¯ããã®ãã¬ããž ããŒã¹èšäºã§ä¿®æ£ã«ã€ããŠã確èªãã ããã
ãã®å 容ã¯ã圹ã«ç«ã¡ãŸããã?
ã¯ã ãã®èšäºã«ã€ããŠã®ãã£ãŒãããã¯ãéä¿¡ãã![Jira 管çã³ã³ãœãŒã«ã® [ã¬ãŒãå¶é] ããŒãžãç»åã®äžã«æ³šéã®èª¬æããããŸãã Jira 管çã³ã³ãœãŒã«ã® [ã¬ãŒãå¶é] ããŒãžãç»åã®äžã«æ³šéã®èª¬æããããŸãã](https://confluence.atlassian.com/adminjiraserver/files/983794911/983794914/1/1576574008062/rl_main.png)
![ã¬ãŒãå¶éããé€å€ããããŠãŒã¶ãŒã衚瀺ããã [äŸå€] ã¿ã ã¬ãŒãå¶éããé€å€ããããŠãŒã¶ãŒã衚瀺ããã [äŸå€] ã¿ã](https://confluence.atlassian.com/adminjiraserver/files/983794911/983794913/1/1576574007882/rl_exemptions.png)
