The Settings Menu (Pro)
The Settings section of the sidebar groups every administrative page in DefectDojo Pro. Which layout you see depends on when your instance was created:
- New installations open on the reorganized layout described below.
- Existing installations keep the previous layout until an administrator turns on Menu 2.0 (see Switching layouts).
Either way, every settings page keeps the same URL. Bookmarks, saved links and anything in your own runbooks continue to work regardless of which layout is active.
The reorganized layout
Settings is divided into eight groups, named for what you are trying to do rather than for the part of the system involved.
| Group | What it holds |
|---|---|
| System | System Settings, Appearance, Announcement Banner, Login Banner, E-mail |
| UI Defaults | Form Configuration, Layout Defaults |
| Users & Permissions | Users, Groups, Roles |
| Finding Workflow | The three Deduplication pages, Finding Enrichment, Service Level Agreements, Prioritization Engines, Mitigation Policies |
| Configuration | Environments, Regulations, Note Types, Test Types, CI/CD Infrastructure, Tool Types, Tool Configurations |
| Notifications | Notification Events, Notification Webhooks |
| Operations | Audit Logs, Usage Logs, Schedules, Celery Status, and β on DefectDojo Cloud β Message Portal, Firewall Rules, Maintenance Windows |
| License & Support | License Manager, Version Manager, Contact Support |
You only ever see the entries your account has permission to open, and a group disappears entirely when none of its pages are available to you.
Feature Flags sits above the groups, directly under All Settings, rather than inside any of them. It is the page administrators open most often, and it reads alongside All Settings: one lists what exists, the other controls what is switched on. It is still filed under System in the All Settings directory.
Two conventions are worth knowing:
- There are no separate “New” entries. Each list page has a New button that opens the create form, so the menu carries one entry per catalog instead of two. If your account can create a record but not list them, the menu entry takes you straight to the create form.
- Nothing nests more than one level below a group. Reaching a page is at most Settings β group β page.
All Settings
The first entry in the section, All Settings, opens a directory of every settings page your account can reach, arranged in the same groups as the menu and searchable by name or by what the page does. Searching deduplication finds the three deduplication pages and System Settings, because System Settings holds deduplication options too.
The last category, Elsewhere in the app, lists pages that configure DefectDojo but live in other sidebar sections β the authorization providers, Login and MFA settings, Jira instances, the Upstream and Downstream connectors, and the Universal Parser. Each tile is chipped with the section it belongs to.
UI Defaults
The UI Defaults group collects the settings that control how much of the interface each person can tailor:
- Form Configuration: choose which fields the create and edit forms show and require, and whether the Optional Fields panel starts expanded.
- Layout Defaults: the Restrict Layout Customization switch, plus the global defaults designated for dashboards, page layouts, and table views. With the switch on, only superusers can create or change dashboards, page layouts, and table views; everyone else is shown the designated defaults, or the built-in defaults when none are chosen. Personal layouts saved earlier are kept and reappear if the switch is turned back off. You choose each default from a dropdown of the layouts an administrator has shared, or designate one in context (a shared dashboard’s Manage dialog, a view page’s layout menu, or a table’s Views menu).
What moved
If you are used to the previous layout:
| Previously | Now |
|---|---|
| Settings β (top level) β Feature Flags | Unchanged β still at the top level, below All Settings |
| Settings β Pro Settings β System Settings | Settings β System β System Settings |
| Settings β Pro Settings β Appearance | Settings β System β Appearance |
| Settings β Pro Settings β Banner Settings β Announcement Banner Settings | Settings β System β Announcement Banner |
| Settings β Pro Settings β Banner Settings β Login Banner Settings | Settings β System β Login Banner |
| Settings β Pro Settings β E-mail Settings | Settings β System β E-mail |
| Settings β Users β All Users / New User | Settings β Users & Permissions β Users |
| Settings β Users β All Groups / New Group | Settings β Users & Permissions β Groups |
| Settings β Users β Roles | Settings β Users & Permissions β Roles |
| Settings β Pro Settings β Deduplication Settings β (three pages) | Settings β Finding Workflow β Same Tool / Cross Tool / Reimport Deduplication |
| Settings β Pro Settings β Finding Enrichment Settings | Settings β Finding Workflow β Finding Enrichment |
| Settings β Configuration β Service Level Agreements | Settings β Finding Workflow β Service Level Agreements |
| Settings β Configuration β Prioritization Engines | Settings β Finding Workflow β Prioritization Engines |
| Settings β Configuration β Mitigation Policies | Settings β Finding Workflow β Mitigation Policies |
| Settings β Configuration β (reference-data catalogs) | Settings β Configuration β (unchanged) |
| Settings β Pro Settings β Notification Settings | Settings β Notifications |
| Settings β Configuration β Audit Logs | Settings β Operations β Audit Logs |
| Settings β Configuration β Usage log | Settings β Operations β Usage Logs |
| Settings β Configuration β All Schedules | Settings β Operations β Schedules |
| Settings β Pro Settings β Celery Status | Settings β Operations β Celery Status |
| Settings β Cloud Manager β (cloud pages) | Settings β Operations |
| Settings β License Manager / Version Manager / Contact Support | Settings β License & Support |
The group that was named after your license package β Pro Settings on a Pro instance, Enterprise Settings on an Enterprise one β no longer exists. Its pages are distributed across System, Finding Workflow, Notifications and Operations.
Switching layouts
Menu 2.0 on the Feature Flags page controls which layout is active. Turning it on or off reshapes the sidebar immediately; no restart is needed and nothing else about your instance changes.
New installations start with it on. Existing installations start with it off, so an upgrade never rearranges the menu under a team mid-flight β turn it on when your administrators are ready.
While it is off, the All Settings page is unavailable and its URL returns Not Found.