mO Two Factor Authentication (2FA) for Bitbucket

mO Two Factor Authentication (2FA) for Bitbucket

Vendor: miniOrange | Key: com.miniorange.twofactor.bitbucket-twofactor

bitbucket server datacenter

Secure Bitbucket Data Center login by enabling Two Factor Authentication with TOTP and U2F(Yubikey). Includes various 2FA methods (U2F, Google Authenticator, OTP over Email, backup 2FA), Whitelist IP, Brute Force Protection, Remember Me.

View on Marketplace
Versions (36) - Last 1 Year, Server/Data Center Only
Version Build Release Date Compatibility Hosting Status Actions Description
3.0.1 30000001000 2025-12-31 Bitbucket Data Center 10.0.0 - 10.1.4 datacenter Pending
Release Notes:

UI Upgrade:

  • Redesigned the Basic Configuration page for improved usability and added direct navigation links.
  • Reorganized Advanced Options into three tabs: Security Settings, Skip 2FA, and User Experience, making it easier for admins to find and configure specific features.
  • Added method videos for all 2FA methods and introduced a comprehensive UI Migration Guide.

New Features:

  • 2FA as a Choice: Introduced a 2FA policy where users can choose whether or not to enable two-factor authentication, giving them the flexibility to opt in or out as per their preference.
  • Remember User for 2FA (REST Calls): Added “Remember Me” support for 2FA on REST API calls to reduce repeated 2FA prompts.

Bug Fixes:

  • Fixed an issue where users were encountering a 500 Internal Server Error.
3.0.0 30000000000 2025-12-17 Bitbucket Data Center 7.0.1 - 9.6.5 datacenter Pending
Release Notes:

UI Upgrade

  • Redesigned the Basic Configuration page for improved usability and added direct navigation links.
  • Reorganized Advanced Options into three tabs: Security Settings, Skip 2FA, and User Experience, making it easier for admins to find and configure specific features.
  • Added method videos for all 2FA methods and introduced a comprehensive UI Migration Guide.

New Features:

  • 2FA as a Choice: Introduced a 2FA policy where users can choose whether or not to enable two-factor authentication, giving them the flexibility to opt in or out as per their preference.
  • Remember User for 2FA (REST Calls): Added “Remember Me” integration for 2FA on REST calls to reduce repeated 2FA prompts.

Improvements:

  • Improved 2FA validation checks on the end-user 2FA page for a more consistent verification experience.
2.10.0 20100000000 2025-11-19 Bitbucket Data Center 10.0.0 - 10.1.4 datacenter Pending
Release Notes:

The add-on is now fully compatible with Bitbucket v10.x.x, ensuring seamless functionality and improved stability with the latest Bitbucket Data Center Version.

2.9.1 20090001100 2025-09-23 Bitbucket Data Center 7.0.1 - 9.6.5 datacenter Pending
Release Notes:

Improvements:

  • Updated third-party libraries to the latest patched versions to address known vulnerabilities and improve overall plugin security.
  • Enhanced OTP over SMS, Email, and Out-of-Band Email functionality by enabling automatic email/SMS delivery, streamlining the authentication process for users.

Bug Fixes:

  • Resolved redirection issues to enhance both security and user experience.
2.9.0 20090001000 2025-07-30 Bitbucket Data Center 7.0.1 - 9.6.5 datacenter Pending
Release Notes:

Features:

  • 2FA on REST API Calls: Enhances security by requiring users to validate 2FA from any source (browser, command-line interface) before making REST API calls.
  • Twilio Gateway support for OTP over SMS: Added support for sending OTPs via SMS using Twilio Gateway, with the option to send OTPs using either Twilio’s 'From' number or 'MessagingServiceSID'.

Bug Fixes:

  • Resolved minor bugs and UI refinements to enhance overall user experience.
2.8.1 20080001000 2025-06-24 Bitbucket Data Center 7.0.1 - 9.6.3 datacenter Pending
Release Notes:

Improvements :

  • Updated third-party libraries to their latest patched versions to resolve known vulnerabilities and enhance overall plugin security.
  • We have added a Knowledge Base page to provide a unified view of all our documentation resources, including the setup guide, setup video, demo videos, use case articles, and the handbook.

Bugfix

  • Minor bug fixes and UI/UX enhancements.
2.8.0 20080000001 2025-05-20 Bitbucket Data Center 7.0.1 - 9.6.2 datacenter Pending
Release Notes:

New Feature

  • One-Time 2FA for Atlassian Apps – Users only need to validate 2FA once per session, eliminating the need to re-authenticate across multiple connected Atlassian applications.

Enhancements:

  • Improved Brute force: Invalid 2FA attempts are now persistently tracked, ensuring users are blocked after exceeding the number of failed attempts.

Bug Fixes:

  • Resolved redirection issues.
  • Minor bug fixes and small UI/UX enhancements
2.7.1 20070001001 2025-05-02 Bitbucket Data Center 7.0.1 - 9.6.2 datacenter Pending
Release Notes:

Usability Enhancements

  • Introduced a Reset button for the search filter and one-click copy functionality for IP addresses to enhance usability and streamline access.

Bug Fixes

  • Resolved minor issues related to YubiKey Hardware Token functionality.
  • Minor security improvements to enhance overall system stability.
2.7.0 20070000001 2025-03-07 Bitbucket Data Center 7.0.1 - 9.6.2 datacenter Pending
Release Notes:

New Features:

  • Restrict 2FA Methods by Group: Enable different 2FA methods to specific user groups.
  • Email Notifications for 2FA Resets: Added option to notify end users via email when an admin resets their 2FA.
  • Phone Number Search: Added phone number-based search in the user management tab for OTP over SMS.

Improvements:

  • IPv6 Support: Enabled IPv6 compatibility for IP-based restrictions.
  • Enhanced Privacy: User inputs are now masked for better security.
  • Improved Duo Push: Duo Push now automatically sends push notifications, simplifying the authentication process.

Bug Fix:

  • Resolved minor issues related to audit logs and redirection.
2.6.0 20060000001 2025-01-02 Bitbucket Data Center 7.0.0 - 9.5.2 datacenter Pending
Release Notes:
  • Made plugin compatible with Dark mode
  • Enhance security by updating external libraries to the latest patched versions
  • Resolved a few redirection issues
2.5.0 20050000002 2024-11-25 Bitbucket Data Center 7.0.0 - 9.4.7 datacenter Pending
Release Notes:

New Features :

  • Added support for 2FA on Git operations.
  • Added support for multiple Yubikeys and WebAuthn configurations for users.
  • Added Option to redirect based on the URL accessed (instead of configured base URL in Bitbucket)

Fixes & Enhancements:

  • Enhanced search functionality for Audit logs
  • Fixed some redirection fixes related to accessing repositories
2.5.0 20050000001 2024-11-25 Bitbucket Server 7.0.0 - 9.3.2 server Pending
Release Notes:

New Features :

  • Added support for 2FA on Git operations.
  • Added support for multiple Yubikeys and WebAuthn configurations for users.
  • Added Option to redirect based on the URL accessed (instead of configured base URL in Bitbucket)

Fixes & Enhancements:

  • Enhanced search functionality for Audit logs
  • Fixed some redirection fixes related to accessing repositories
2.4.0 20040000002 2024-09-06 Bitbucket Data Center 7.0.0 - 9.4.7 datacenter Pending
Release Notes:

Made the add-on compatible with Bitbucket v9.x.x

2.4.0 20040000001 2024-09-06 Bitbucket Server 7.0.0 - 9.3.2 server Pending
Release Notes:

Made the add-on compatible with Bitbucket v9.x.x

2.3.1 20030001002 2024-08-07 Bitbucket Data Center 6.6.2 - 8.19.18 datacenter Pending
Release Notes:

External libraries with identified vulnerabilities used in the plugin have been upgraded to their latest patched versions.

2.3.1 20030001001 2024-08-07 Bitbucket Server 6.6.2 - 8.19.18 server Pending
Release Notes:

External libraries with identified vulnerabilities used in the plugin have been upgraded to their latest patched versions.

2.3.0 20030000000 2024-06-18 Bitbucket Server 5.16.2 - 8.19.18 server Pending
Release Notes:

We have released a fix for a security vulnerability. We suggest upgrading to this version to ensure your environment is safe.

New

  • Added support for new 2FA method: Out of Band Email
  • Allow end users to select the Remember Device duration
  • Option to search Active and Inactive users in the 2FA User Management section
  • Added support to request a new feature

Improvements

  • Improved implementation of One Time 2FA feature in Crowd setups
  • Pagination and Performance improvements in the User Management section of the addon

Bug Fixes

  • Security vulnerability fix
  • Handled enable/disable 2FA on user synchronization from Crowd
  • Fixed issue with enabling user modules on installing the addon
2.3.0 20030000001 2024-06-12 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
Release Notes:

We have released a fix for a security vulnerability. We suggest upgrading to this version to ensure your environment is safe.

New

  • Added support for new 2FA method: Out of Band Email
  • Allow end users to select the Remember Device duration
  • Option to search Active and Inactive users in the 2FA User Management section
  • Added support to request a new feature

Improvements

  • Improved implementation of One Time 2FA feature in Crowd setups
  • Pagination and Performance improvements in the User Management section of the addon

Bug Fixes

  • Security vulnerability fix
  • Handled enable/disable 2FA on user synchronization from Crowd
  • Fixed issue with enabling user modules on installing the addon
2.2.2 20020020001 2024-04-04 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
Release Notes:
  • Fixed the issue for sending OTP emails using SMTP mail servers that do not require authentication.
  • 2.2.2 20020020000 2024-04-04 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:
  • Fixed the issue for sending OTP emails using SMTP mail servers that do not require authentication.
  • 2.2.1 20020010001 2024-02-14 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    Release Notes:
    • Added a fix for an issue in Remember device feature due to an issue in fetching user agent
    2.2.1 20020010000 2024-02-14 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:
    • Added a fix for an issue in Remember device feature due to an issue in fetching user agent
    2.2.0 20020000001 2024-01-31 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    Release Notes:

    New features:

    • Admin Audit logs: Added support for tracking 2FA plugin admin activities in Audit logs
    • Added support for configuring a custom mail server which will be used for sending any emails from the 2FA plugin.
    • Added support for configuring a custom SMS server which will be used for sending any SMS from the 2FA plugin.

    Improvements

    • Option to set a default country code
    • Bug fixes and UI enhancements
    2.2.0 20020000000 2024-01-31 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:

    New features:

    • Admin Audit logs: Added support for tracking 2FA plugin admin activities in Audit logs
    • Added support for configuring a custom mail server which will be used for sending any emails from the 2FA plugin.
    • Added support for configuring a custom SMS server which will be used for sending any SMS from the 2FA plugin.

    Improvements

    • Option to set a default country code
    • Bug fixes and UI enhancements
    2.1.0 20010000001 2023-12-22 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    Release Notes:

    New Features:

    • Added multilingual support: End users can choose their preferable language
    • Plugin Access Control: Provision to give plugin configuration access (VIEW/EDIT) based on groups to non-admin users.
    2.1.0 20010000000 2023-12-22 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:

    New Features:

    • Added multilingual support: End users can choose their preferable language
    • Plugin Access Control: Provision to give plugin configuration access (VIEW/EDIT) based on groups to non-admin users.
    2.0.2 20000020001 2023-11-21 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    2.0.2 20000020000 2023-11-21 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    2.0.0 20000000001 2023-10-12 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    Release Notes:

    UI changes:

    New Features:

    • Customizable Security Questions with support for all languages
    • Provision to change the look and feel of 2FA registration and 2FA validation pages for WebAuthn and Duo methods
    2.0.0 20000000000 2023-10-12 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:

    UI changes:

    New Features:

    • Customizable Security Questions with support for all languages
    • Provision to change the look and feel of 2FA registration and 2FA validation pages for WebAuthn and Duo methods
    1.0.25 10000010251 2023-07-20 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    1.0.25 10000010250 2023-07-20 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    1.0.24 10000010241 2023-03-28 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    Release Notes:
    • Added a fix for a redirection issue faced by some customers.
    • Fixed an issue faced while trying to upload the plugin.
    • Fixes for the One-time 2fa validation feature.
    1.0.24 10000010240 2023-03-28 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:
    • Added a fix for a redirection issue faced by some customers.
    • Fixed an issue faced while trying to upload the plugin.
    • Fixes for the One-time 2fa validation feature.
    1.0.23 10000010231 2023-02-03 Bitbucket Data Center 5.16.2 - 8.19.18 datacenter Pending
    Release Notes:

    New Feature

    • Added feature to Skip 2FA on SSO or Crowd SSO

    Improvements & Bug Fixes

    • Added next scheduler run information in the Audit Logs tab
    • UI Improvements (In all tables for handling large usernames)
    • Pagination on User Management tab of plugin
    1.0.23 10000010230 2023-02-03 Bitbucket Server 5.16.2 - 8.19.18 server Pending
    Release Notes:

    New Feature

    • Added feature to Skip 2FA on SSO or Crowd SSO

    Improvements & Bug Fixes

    • Added next scheduler run information in the Audit Logs tab
    • UI Improvements (In all tables for handling large usernames)
    • Pagination on User Management tab of plugin