Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 312

Automatically add "secure" flag to all cookies, when https is used

When a Domino server serves http requests through encrypted https, it should automatically add the " secure " flag to all cookies. There should be a global flag to enable/disable this feature. (default: enabled) In reality, most Domino servers wit...
over 1 year ago in Domino / Security 0 Needs Review

View user log in information with IP address

By adding the ini parameter - log_sessions=2 users login information will also add the IP address from where the notes client is accessed We can see the data in the console.log or log.nsf It will be better if there is a seperate view to display th...
about 2 months ago in Domino / Security 0 Needs Review

Dashboard or view to collect the user log-in information along with IP address

To have a consolidated view that shows the user's information along with the IP address When we enable the log_sessions=2 parameter, users login information is added to the console log, need a view to show the information to know the notes logged ...
about 2 months ago in Domino / Security 0 Needs Review

SAML configuration for Internet site with multiple hostnames

When you configure a SAML for an internet site shared by multiple sites, the SAML authentication leads to a redirect to the first server in the configuration as the response url is always pointing to that server. We tried to set it up with AAD. Th...
almost 2 years ago in Domino / Security 2 Under Consideration

Integrate SafeLinx and Domino MFA/2FA/TOTP implementation

SafeLinx is able to to provide MFA <https://help.hcltechsw.com/safelinx/1.2/adminguide/using_radius_authentication_profiles.html> and Domino 12 now also has MFA functionality <https://help.hcltechsw.com/domino/12.0.0/admin/conf_totp_overv...
almost 4 years ago in Domino / Security 0 Assessment

Central logging for all password changes

Have a central logging for all password(Notes and Internet) changes on the whole environment. It should contain the username, date/time, how was the password changed(note client, web, etc.), and where it was changed(IP address). This way we can tr...
12 months ago in Domino / Security 1 Needs Clarification

Inbound SMTP DDOS Detection

Inbound SMTP Intruder Detection Prevent from smtp denial of service attacks, when Domino gets bombed with inbound mail from one address. Domino stops routing mail if this happens, the error logged is: "Router: Error searching mailbox file mail*.bo...
about 1 year ago in Domino / Security 4 Assessment

Domino to become SAML IDP / OAuth + OpenID

SAML and OAuth OpenID provide high value to Domino when Domino is configured as a Service provider. But for a quick start an IDP is required - it would be great if the IBM Platform delivers this out of the box. If it also supports Kerberos / Windo...
over 6 years ago in Domino / Security 1 Assessment

Simplify the process to implement a third party certificate in idpcat.nsf for SAML use

Currently, in order to use a third party certificate in the idpcat.nsf, it involves manual steps of importing the certificate into the server's ID using Domino console commands, modifying the notes.ini, and modifying the design of idpcat.nsf. It w...
about 4 years ago in Domino / Security 1 Assessment

Enhance CA Profile access and configuration options

There is an option to change the certificate duration for CA enabled certifiers, but this setting cannot be enforced, so that it cannot be overwritten by the registration authority (RA). The CA profile shows this option, but it is not possible to ...
6 months ago in Domino / Security 0 Needs Review