Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Clear

Ideas

Showing 493 of 9014

Allow not sending trusted root certificate on TLS handshake

RFC 5246 (TLS 1.2) and 8446 (TLS 1.3) clearly state that sending the root certificate is unnecessary, as it is supposed to be known to clients. https://www.rfc-editor.org/rfc/rfc5246#section-7.4.2 https://www.rfc-editor.org/rfc/rfc8446#section-4.4...
5 months ago in Domino / Security 0 Needs Review

Document that describes Domino HTTP security settings

There's a document created years ago: https://www.caicorp.com/2017/11/22/adding-security-http-response-headers-to-ibm-lotus-domino-server-to-get-an-a-rating/ HCL should have a similar document with more security settings.
over 1 year ago in Domino / Security 1 Needs Review

When a person or Group added to ACL, it is always unspecified while user type is known when selecting from NAB

When we add entry to ACL, we have directory and we see user type, User, Group, Server, but when Added to ACL we should always set this from UNSPECIFIED to proper type again. seems few lines of code will make it for friendly
over 7 years ago in Domino / Security 0 Under Consideration

Password policy functioning improvements with "Check vault first then directory"

ID vault is implemented on the server and in configuration document "Check vault first then directory" is enabled. All users authenticate to the server through ID vault successfully. Use case: The web user is able to login even though the warning ...
over 1 year ago in Domino / Security 0 Needs Review

In Nomad web, there's no Browse button like notes client. Need this button.

In normal Notes client, there's a Browse button and you can select any database from the filesystem (or even network share). In Nomad, there's no Browse button.
almost 3 years ago in Nomad / Nomad (Web) 2 No Plans to Implement

Implement Auto Launch first attachment - open file in new browser tab

We use Auto Launch first attachment to open preview of attachments, printed documents in pdf.We copy attachment to a new document that has only a RichText with Auto Launch set.It is one of crucial features for printing and quick preview of attachm...
over 3 years ago in Nomad / Nomad (Web) 1 Already Exists

SAML configuration for Internet site with multiple hostnames

When you configure a SAML for an internet site shared by multiple sites, the SAML authentication leads to a redirect to the first server in the configuration as the response url is always pointing to that server. We tried to set it up with AAD. Th...
almost 3 years ago in Domino / Security 2 Under Consideration

Allow Nomad to update the internet password when user changes an ID file password

Currently when the user changes the password from Nomad Web via "Change Password" menu then it can successfully change the password in the ID Vault. However if there is a Security Policy set in Domino to sync the ID file password with internet pas...
over 1 year ago in Nomad / Nomad (Web) 1 Future Consideration

When creating new Web User accounts, enable them and their passwords immediately.

Currently if you add a new user to the Directory for web access, you have to do things like refresh http, refresh some view indexes. Otherwise the user has to wait 5-10 minutes before they can login. In 2018 this isn't acceptable, people expect to...
over 7 years ago in Domino / Security 1 Assessment

Automatically add "secure" flag to all cookies, when https is used

When a Domino server serves http requests through encrypted https, it should automatically add the " secure " flag to all cookies. There should be a global flag to enable/disable this feature. (default: enabled) In reality, most Domino servers wit...
over 2 years ago in Domino / Security 0 Needs Review