Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

FILTER BY CATEGORY

My ideas: Security

Showing 242

Internet Lockout not per server, but per website or per domain.

When you have a clustered Domino backend for hosting websites or web-apps, and you have a loadbalancer in front of them......and internet lockout only occurs per server.....it's possible that you end up on another cluster-member and can continue t...
about 1 year ago in Domino / Security 2 Assessment

HTTP Cookie limit

When there are more than 4k worth of cookie data passed to Domino, Domino does not capture the information in the CGI variable HTTP_cookie.
over 1 year ago in Domino / Security 0 Under Consideration

A new NoReaders field type

It would be great to have a NoReaders field type that can be used to stop specified user(s)/Group(s) being able to access a document. I have been asked often if it is possible to stop some users from accessing specific documents. In some cases it...
over 4 years ago in Domino / Security 3 No Plans to Implement

Cookie consent functionallity built in

It would be good to have a configurable cookie consent functionallity inside Domino built in from start. Like the one presented on https://help.hcltechsw.com And the configurable option could be accessable using @formula, Lotusscript and Java so y...
8 months ago in Domino / Security 0 Needs Review

Custom Internet Password Policy Enforcement

We can't keep treating the Internet password as a second citizen. You have custom password enforcement for the Notes Client. Now you MUST implement it for the Internet password as well. Risk/Audit/Security isn't going to stand for less security co...
over 4 years ago in Domino / Security 7 No Plans to Implement

Lock certain ACL entries ( extra option ) because users can remove them by deleting the entries in delegations

We added certain groups in the Calendar delegations in order to perform audits or application access. Users can remove them, because it is a adminp request that deletes this entry. We would like to see the ACL enhanced by adding an extra option in...
4 months ago in Domino / Security 0 Needs Review

Consider removing configure ID Vault for TOTP

It's domino 12 one new feature that support TOTP, and HCL Traveler server also support TOTP authentication, but it requires to configure ID Vault, we could not skip or ignore this step. https://help.hcltechsw.com/domino/12.0.0/admin/wn_security.ht...
7 months ago in Domino / Security 1 No Plans to Implement

NSF_ENABLE_LARGE_ACL should also apply for roles and role name length

As of Domino V12, NSF_ENABLE_LARGE_ACL was introduced. The setting increases the number of individual entries in the ACL of an application. Unfortunately this does not apply to the number of role entries, which is still limited to 75. Pls. increas...
about 2 years ago in Domino / Security 0 Under Consideration

Force logout web mail users (i.e. Verse & iNotes)

Customer wants to apply a force logout to users whose accounts are compromised. Changing their password or restarting http task does not automatically logout the user. Waiting for token expiration could be risky if set for a long duration. Current...
about 1 year ago in Domino / Security 1 Under Consideration

Support for CSRF Tokens in domino

The security landscape is changing all the time, and one of the new things that customers and security experts are asking for is anti forgery tokens that is sent with forms up to prevent forgery data sent back from clients. It would be good if dom...
almost 2 years ago in Domino / Security 3 Already Exists