Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

FILTER BY CATEGORY

Security

Showing 258

Add DNS-01 challenge end-status at the end of the operation.

When I submit a DNS-01 challenge request, you see the following lines in log.nsf. But the end-result is not set. We need the end-result in the log so we can add a trigger on it whenever it failed. We have push all logs (event driven) to Elastic Se...
7 months ago in Domino / Administration / Security 1 Planning to Implement

SSO/SPNEGO applicable for higher encryption

Domino team hasn't changed the SSO/SPNEGO integration code that was added back in 9.0.1x. Customer wants integration for higher encryption since R4 is already outdated and there are lots of higher encryption available today.
about 1 year ago in Domino / Security 5 Assessment

Add a blanket grant for the XPages JVM to the default java.policy file

I just lost two days, just to find out that our RuntimePermission exception (getClassLoader) in Java is caused by a missing setting in a java.policy file, somewhere deep in the Domino tree. In the end, after trying several different settings, the ...
over 2 years ago in Domino / Security 3 Under Consideration

A new NoReaders field type

It would be great to have a NoReaders field type that can be used to stop specified user(s)/Group(s) being able to access a document. I have been asked often if it is possible to stop some users from accessing specific documents. In some cases it...
about 5 years ago in Domino / Security 3 No Plans to Implement

Add - SHA 256+ option in configuring password.

moving away from having SHA1 on an approved list. So it will not longer be allowed as part of FIPS-140 compliance. Customer needs additional option to configure password hashing.
9 months ago in Domino / Security 1 Assessment

LDAP is not flushing old entries in its database and also auto populates mail address for Domino Groups

A Domino Group initially added an internet address, then it was removed from the document and now when doing ldapsearch, we noticed that address is still being populated in the mail= field. Another scenario was on a newly created test group where ...
about 1 year ago in Domino / Security 5 Needs Clarification

Custom Internet Password Policy Enforcement

We can't keep treating the Internet password as a second citizen. You have custom password enforcement for the Notes Client. Now you MUST implement it for the Internet password as well. Risk/Audit/Security isn't going to stand for less security co...
about 5 years ago in Domino / Security 7 No Plans to Implement

Honor "disable ability to change ownership" also in Mailin databases

We disabled the ability to change ownership by our users. Unfortunately mailin databases still can be changed by users. Please honor this policy setting also for mailindatabase or add a new policy setting for it. We don't want our users to change ...
7 months ago in Domino / Security 0 Under Consideration

list of users registered in the Domino Directory cannot be referenced by end users

In recent years, privacy protection has become increasingly strict. In ACL of the Domino Directory, the "Author" privilege is granted for "-Defaut-", and a list of all users registered in the Domino Directory can be viewed by opening the Domino D...
10 months ago in Domino / Security 3 Needs Clarification

Support TOTP for AD as LDAP

Currently TOTP can work for Single Server or Multiple Server SSO authentication and domino as LDAP . Since it is possible for user to setup AD for web server authentication and TOTP is a widely requested requirement, we need to be able to setup TO...
10 months ago in Domino / Security 1 Needs Review