Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Clear

Ideas

Showing 871 of 8858

Disabling wink to be used as a potential attack vector

Seeing more and more attempts to use Wink as an attack vector (see example below). Looking into possibility to disable wink so that it wont cause any potential security risk. 03/17/2022 10:04:27 AM HTTP JVM: 1399490 [Thread-11] INFO org.apache.win...
about 3 years ago in Domino / Security 2 Already Exists

Set up User Profile for jobs AMGR tasks

Reason : Internal Security Rules, Compliance. Environment : DOMINO 9.0.1 FP9 hosted on IBM i The User profile QNOTES is automatically affected to any jobs into a DOMINO subsystem, including the AMGR tasks. These programmed AMGR tasks are very oft...
over 6 years ago in Domino / Security 0 No Plans to Implement

Domino to have permissions policy header

There are customers who are experiencing permissions-policy vulnerability. This is the former "Feature Policy" with new specs. Can domino have the same to mitigate vulnerabilities related to it?
about 3 years ago in Domino / Security 3 Needs Clarification

Rate limiting protections for Domino

An authentication endpoint without rate limiting protections can be susceptible to innumerable amounts of credential stuffing and eventual guessing of set of credentials used for authentication. API endpoints can also be used to attack further inf...
about 3 years ago in Domino / Security 1 Needs Clarification

SafeLinx http-service: Exempt URL paths from Authentication

The Let's Encrypt servers need access to `/.well-known/acme-challenge/<TOKEN>` without authentication https://letsencrypt.org/docs/challenge-types/ For HCL Connections external user registration and password reset, users need to access the W...
about 3 years ago in SafeLinx 1 Already Exists

Include Oracle in the SafeLinx install procedure

To use Oracle Database as the persistent storage repository for the SafeLinx Server several manual configuration instructions as described at , https://help.hcltechsw.com/safelinx/1.3/adminguide/configuring_oracle.html have to be completed. Please...
about 3 years ago in SafeLinx 1 No Plans to Implement

logout to be added to inotes when logging out as otherwise users can log back into mail file

logout to be added to inotes when logging out as otherwise users can log back into mail file
over 6 years ago in Domino / Security 0 Under Consideration

Internal service messages

In our workflow, the application prepares a mail in the user's mail box, then opens it using ws.EditDocument(...). Very flexible, albeit with a serious drawback: the mail moves out of my control, meaning that it gets very difficult for the applica...
about 3 years ago in Domino Designer / LotusScript 0 Needs Review

Request "ViewExpandWithChildren" works on the Web

ViewExpandWithChildren of @Command doesn't work on the Web. We request This command works on the Web. The following is the help for this command. ViewExpandWithChildren @Command (Formula Language) https://help.hcltechsw.com/dom_designer/12.0.0/bas...
over 3 years ago in Domino Designer / @Formulas 0 Needs Review

User defined keystore for Domino

Currently, the Notes/Domino v9.x (same with newer versions) can only use the default JAVA trust keystore under Domino application server. The JAVA update overwrites this default keystore. Please add the option to set a custom,user defined keystore...
over 3 years ago in Domino / Security 2 Needs Review