Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 109

Domlog is not reliable for authenticated users

The Authenticated requests is not reliable if I do a basic auth get request against a domino server and write any username and any password this username shows up as an authenticated request. It would be good that we could rely on authenticated r...
about 5 years ago in Domino / Security 1 Under Consideration

Force password change after next login checkbox

Please add a policy that forces the password to be changed at the next login. The policy should be immediately broadcast to all connected HCL Notes clients so that in case of a security problem, everyone is forced to use a new password. The settin...
10 months ago in Domino / Security 3 Under Consideration

Internet Password History and Complexity

Password history and complexity checks are possible on notes id passwords but for internet password validation so we have to use using custom code, it would be nice to include the internet password history and complexity as part of standard Domino...
almost 3 years ago in Domino / Security 1 Under Consideration

Prompt password quality during change the password from webmail

This feature will show the password quality requirements when changing credentials via webmail
almost 4 years ago in Domino / Security 1 Under Consideration

The ability to delete certificates from a server's ID file especially for SAML enabled servers

Currently when creating a IdP Configuration document if the certificate name must be unique as the certificate is stored in the server's ID file, which is an issue when you wish to create new IdP configuration documents for the same server and wis...
almost 5 years ago in Domino / Security 2 Under Consideration

block emails coming from the Internet that have a null sender address (i.e. <>) in the “MAIL FROM” field.

block emails coming from the Internet that have a null sender address (i.e. <>) in the “MAIL FROM” field. we should configure our anti-spam gateway to check if the “MAIL FROM” header is the same as the email’s “From:” address for all incomin...
over 5 years ago in Domino / Security 1 Under Consideration

New command to show the number of failed login attempts since last successful web login

Please add the possibility, to let the developer show the amount of login failures since the last successful web login to the the user. As this behaviour is well known in the web, it would improve security and transparence, if the user knows when ...
over 5 years ago in Domino / Security 0 Under Consideration

ID Vault can collect Notes ID from different Domino Domains

Currently, ID vault only support consolidation of Notes in single domain. All replicas of a vault must be located within a single Domino® domain and all vault users must have home servers in that domain. Note, though, that users under different...
over 5 years ago in Domino / Administration / Security 0 Under Consideration

Configure the Domino HTTP server to ignore "Authorization: Bearer" headers on Domino 12.0.2

This has always worked well in Domino 10, 11 and 12.0 but now HCL has implemented an option on the internet site to use a bearer token. The problem with this option is that you then need to configure an OIDC provider which is not well documentated...
about 1 year ago in Domino / Security 3 Under Consideration

HTTP Cookie limit

When there are more than 4k worth of cookie data passed to Domino, Domino does not capture the information in the CGI variable HTTP_cookie.
over 2 years ago in Domino / Security 0 Under Consideration