Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 315

Disable database access during CL COPY process because ACL is set to -default- manager during the copy.

When you copy or replica a database using the CL COPY command, the ACL will set the database wide open on the destination server. ACL is set to -default- with manager access rights.This is a huge security issue. What we want: a. disable ...
over 5 years ago in Domino / Security 1 Under Consideration

Synchronizing of the User ID in mail files ($shimmerid) with the Internet password/ID vault

Synchronizing of the User ID in mail files ($shimmerid) with the Internet password/ID vaultID file can't be uploaded to mail file when SAML is enabled
over 6 years ago in Domino / Security 0 Assessment

Fallback to password authentication when SAML has been activated as

Fallback to password authentication when SAML has been activated as needed. Server should accept SAML and password authentication, depending on the policy
over 6 years ago in Domino / Security 1 Under Consideration

Internet password lockout whitelist

The internet passowrd lockout feature needs to be improved, like more logging, idea: DOMINO-I-389. It would be an improvment if there would be an option to add a whitelist for IP ranges. So if a user is locked out he could still login within an tr...
over 6 years ago in Domino / Security 3 Under Consideration

users locked out due to wrong password or wrong password strikes have their own Statistics in Domino, so later they can be monitored.

Another idea on Domino.ideas.aha.io is to log per protocol strikes and locks. If we can create new statistics this would help to monitor security with DDM or external solution Security Security.POP3.Strikes.Total = 30 Security.POP3.Locks.Total = 2...
over 6 years ago in Domino / Security 0 No Plans to Implement

Password Security / Policy for Internet MUST track history for specified reuse

This capability is missing on the Internet side. Password policies everywhere now require that you cannot reuse past passwords for at least 'x' iterations. Security/Auditors/Risk people are demanding that we write something to ensure that browser ...
almost 7 years ago in Domino / Security 0 Under Consideration

Add Quantum-Resilient Cryptography

This idea requests to add Quantum-Resilient Cryptography (QC) for: Encryption of Notes ID files, Encryption of NRPC-based traffic, Database Encryption, Internet Protocols (http, smtp, imap, ldap, etc.), Encryption of DAOS attachments, Everything e...
5 months ago in Domino / Security 2 Needs Review

Passkey only authentication for Domino

Currently passkeys are an option but cannot made required once a user registered a passkey. There should be an option to not allow password authentication for a user once a passkey is available. Passkeys are more secure than passwords. Keeping the...
about 1 year ago in Domino / Security 1 Assessment

In the certstore.nsf, create user certificates or self-signed user certificates for client authentication

Certstore \ certmgr should use the CA process internet certificate to generate a certificate request and store the certificate for each person to use during browser authentication.
over 1 year ago in Domino / Security 1 Needs Review

Option to enable SMS OTP for Verse (web login)

Give an option to enable SMS OTP to login in HCL Verse or Webmail
about 2 years ago in Domino / Security 2 Already Exists