Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 312

Fallback to password authentication when SAML has been activated as

Fallback to password authentication when SAML has been activated as needed. Server should accept SAML and password authentication, depending on the policy
over 6 years ago in Domino / Security 1 Under Consideration

Internet password lockout whitelist

The internet passowrd lockout feature needs to be improved, like more logging, idea: DOMINO-I-389. It would be an improvment if there would be an option to add a whitelist for IP ranges. So if a user is locked out he could still login within an tr...
over 6 years ago in Domino / Security 3 Under Consideration

users locked out due to wrong password or wrong password strikes have their own Statistics in Domino, so later they can be monitored.

Another idea on Domino.ideas.aha.io is to log per protocol strikes and locks. If we can create new statistics this would help to monitor security with DDM or external solution Security Security.POP3.Strikes.Total = 30 Security.POP3.Locks.Total = 2...
over 6 years ago in Domino / Security 0 No Plans to Implement

Password Security / Policy for Internet MUST track history for specified reuse

This capability is missing on the Internet side. Password policies everywhere now require that you cannot reuse past passwords for at least 'x' iterations. Security/Auditors/Risk people are demanding that we write something to ensure that browser ...
over 6 years ago in Domino / Security 0 Under Consideration

Add Quantum-Resilient Cryptography

This idea requests to add Quantum-Resilient Cryptography (QC) for: Encryption of Notes ID files, Encryption of NRPC-based traffic, Database Encryption, Internet Protocols (http, smtp, imap, ldap, etc.), Encryption of DAOS attachments, Everything e...
3 months ago in Domino / Security 2 Needs Review

Password policy functioning improvements with "Check vault first then directory"

ID vault is implemented on the server and in configuration document "Check vault first then directory" is enabled. All users authenticate to the server through ID vault successfully. Use case: The web user is able to login even though the warning ...
6 months ago in Domino / Security 0 Needs Review

Passkey only authentication for Domino

Currently passkeys are an option but cannot made required once a user registered a passkey. There should be an option to not allow password authentication for a user once a passkey is available. Passkeys are more secure than passwords. Keeping the...
10 months ago in Domino / Security 1 Assessment

In the certstore.nsf, create user certificates or self-signed user certificates for client authentication

Certstore \ certmgr should use the CA process internet certificate to generate a certificate request and store the certificate for each person to use during browser authentication.
over 1 year ago in Domino / Security 1 Needs Review

Option to enable SMS OTP for Verse (web login)

Give an option to enable SMS OTP to login in HCL Verse or Webmail
almost 2 years ago in Domino / Security 2 Already Exists

Encryption Database on server Automatically

Currently, the database on the server can not be encrypted in any way. The provision of database encryption on the databases on the server using 256-bit AES encryption should be given in Domino server so all new databases created on the server can...
almost 2 years ago in Domino / Security 0 Assessment