Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

My ideas: Security

Showing 39
421 VOTE

DKIM and DMARC support

well, it’s 2018. DKIM is from 2004 and DMARC is 2010.
over 6 years ago in Domino / Security 65 Assessment
262 VOTE

TLS 1.3 Support for the Domino INET Stack

TLS 1.3 should be added in Domino 11. There are already recommendations to disable TLS 1.0 and I have seen customers who already disabled TLS 1.0 on their SMTP servers. On the other side there are still unpatched environments which do not support ...
over 6 years ago in Domino / Security 15 Assessment
142 VOTE

Add "Anonymous" with "No Access" as default for new database ACL

Domino's great strength has always been security. But according to latest tests, Anonymous is not added automatically when creating a new database. Adding Anonymous with "No Access" as default for new applications will cause no backwards-compatibi...
over 5 years ago in Domino / Security 5 Assessment
120 VOTE

Internet Password Security Parity with Notes Password Security Policy

Many Domino applications are now presented to the user through the browser. Many directories are strictly "Internet Users". IBM needs to invest in improving Internet Password Policy Features such that they are at least as good as Notes Password Po...
about 6 years ago in Domino / Security 7 Assessment
110 VOTE

Enforce TLS

If your organization is required to use TLS for email sent to recipients in specific domains, you can configure outbound email to ensure that TLS (Transport Layer Security) is used for those domains. Enforced TLS forces a secure connection between...
over 6 years ago in Domino / Security 10 Assessment

Allow HTTP Basic Authentication with Umlauts using UTF-8

Currently Domino HTTP Basic Authentication Passwords need to be encoded in ISO-8859-1.Many other systems allow to use UTF.8. The standard is unclear but there is a specification where you can announce which encoding the server expects. See https:/...
over 5 years ago in Domino / Security 2 Assessment

Improve SAML - We need act also as a Idp Provider

Currently, Domino can use SAML for authentication, but NOT to act as an IdP provider. There is a lot of product on cloud that in order to do SSO, they do require an IdP, an your are forced to use ADFS or Tivoli for that. On the same way that Domin...
over 6 years ago in Domino / Security 7 Assessment

Domino Inbound SMTP STARTTLS -- Log TLS Version and used Cipher

Most other applications add the TLS Version and used cipher to the received header.Example: from xyz.acme.local (10.100.1.234) by abc.acme.local (10.100.109.233) with Acme SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P...
over 6 years ago in Domino / Security 3 Assessment

Central handling of SMIME Certificates

Make SMIME certificates managable by the admin. the user's are not able to do that. Maybe the certificate file can be imported in the persondocument in names.nsf or in ID-Vault, so that the server can decrypt / sign emails?
over 6 years ago in Domino / Security 1 Assessment

Domino to become SAML IDP / OAuth + OpenID

SAML and OAuth OpenID provide high value to Domino when Domino is configured as a Service provider. But for a quick start an IDP is required - it would be great if the IBM Platform delivers this out of the box. If it also supports Kerberos / Windo...
almost 6 years ago in Domino / Security 0 Assessment