Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 323

Allow 2FA to use Email Only

We host systems that are used by customers who change companies all the time. Sometimes when they leave companies, we are not notified. Since people now take their BYOD phones with them, any MFA/2FA using SMS or Authenticator Apps can be used outs...
7 months ago in Domino / Security 1 Needs Review
147 VOTE

Add "Anonymous" with "No Access" as default for new database ACL

Domino's great strength has always been security. But according to latest tests, Anonymous is not added automatically when creating a new database. Adding Anonymous with "No Access" as default for new applications will cause no backwards-compatibi...
over 6 years ago in Domino / Security 5 Assessment

Domino Internet CA should support current standards

The Domino Internet CA currently does not have extended key usage nor Subject Key Identifier/Authorized Key Identifier (not yet enforced) added to certificates. Those attributes are needed today to be compatible with other environments like Apple ...
2 months ago in Domino / Security 0 Needs Review

To support Migrate Internet Certifier ( keyring file option) that is not self signed.

Migrate Internet Certifier (keyring file option) only supports migrating a self signed CA. This enhancement request is to support Migrate Internet Certifier ( keyring file option) that is third party certificate
3 months ago in Domino / Security 1 Needs Clarification

Domino should support modern SMTP related protocols DANE, MTA-STS and TLS-RPT

Domino is a bit behind in implementing e-mail security protocols. While DMARC is waiting for implementation, new protocols are already around: DANE, MTA-STS and TLS-RPT. 1. DANE (DNS-Based Authentication of Named Entities) RFC 6698: The DNS-Based ...
about 1 year ago in Domino / Security 1 Under Consideration

ClamAV support for Domino CScan

Domino CScan supporting ICAP as a standard is a great addition to Domino 12. It turns out that most customers don't use an anti virus solution supporting ICAP. Switching to a different anti virus product isn't an option for most customer. Adding a...
over 2 years ago in Domino / Security 0 Assessment
125 VOTE

Internet Password Security Parity with Notes Password Security Policy

Many Domino applications are now presented to the user through the browser. Many directories are strictly "Internet Users". IBM needs to invest in improving Internet Password Policy Features such that they are at least as good as Notes Password Po...
about 7 years ago in Domino / Security 7 Assessment

Option for the user to choose whether they want to set TOTP or not

Just like in other mail applications (i.e. gmail/yahoo), the user should have the ability to choose whether or not to enable TOTP. Currently, it seems the only choice is to have it enabled on the server side which applies for all (yes with TOTP op...
over 4 years ago in Domino / Security 8 Under Consideration

Allow users to self-manage their Passkeys in the Passkey database

In Domino 14, the Passkeys database maintains user specific records for every Authenticator that the user has ever used on that system, in order to create a passkey. Over time, the number of these records will likely grow to include records for...
9 months ago in Domino / Security 0 Needs Review
112 VOTE

Enforce TLS

If your organization is required to use TLS for email sent to recipients in specific domains, you can configure outbound email to ensure that TLS (Transport Layer Security) is used for those domains. Enforced TLS forces a secure connection between...
about 7 years ago in Domino / Security 10 Assessment