Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 296

Add logout endpoint to DRAPI's oauth system

The .well-known/openid-configuration in DRAPI does not show a logout endpoint. A client web application can use the /oauth/authorization and /oauth/token endpoints to authenticate and refresh the authorization token. A logout is currently only pos...
about 1 month ago in Domino / Security 0 Needs Review

Force password change after next login checkbox

Please add a policy that forces the password to be changed at the next login. The policy should be immediately broadcast to all connected HCL Notes clients so that in case of a security problem, everyone is forced to use a new password. The settin...
over 1 year ago in Domino / Security 3 Under Consideration

Website Documents with ability to select Directories

Overview This idea is related to the way in which multiple directories in Domino can be used. Currently, Domino supports multiple Directories in the form of Directory Assistance , which allows to add multiple directories to the whole server. All s...
about 1 year ago in Domino / Security 0 Needs Review

Integrate SafeLinx and Domino MFA/2FA/TOTP implementation

SafeLinx is able to to provide MFA <https://help.hcltechsw.com/safelinx/1.2/adminguide/using_radius_authentication_profiles.html> and Domino 12 now also has MFA functionality <https://help.hcltechsw.com/domino/12.0.0/admin/conf_totp_overv...
over 3 years ago in Domino / Security 0 Assessment

Simplify the process to implement a third party certificate in idpcat.nsf for SAML use

Currently, in order to use a third party certificate in the idpcat.nsf, it involves manual steps of importing the certificate into the server's ID using Domino console commands, modifying the notes.ini, and modifying the design of idpcat.nsf. It w...
over 3 years ago in Domino / Security 1 Assessment

Restart/maintenance shouldn't require user-reauthentication in HCL Verse. But make a setting for this

Today when restarting server (http service) users are required to reauthenticate to HCL Verse. This sets limitations when performing maintenance. Reauthentication should be a setting to be adjusted according to security guidelines.
about 2 months ago in Domino / Security 2 Needs Clarification

Ability to send trusted certificate list even if destination endpoint sends empty DN

Domino currently is designed to decline sending any certificate and requires the destination endpoint to send a list of trusted DN CAs. As per EXO "Exchange sends its certificate along with the certificate request to Domino. In our certificate req...
8 months ago in Domino / Security 1 Assessment

Block access ( HTTP / SMTP ) for entire countries instead of separated ipranges

We need to block certain countries from accessing Domino by HTTP and/or SMTP. For now SMTP is important. Now it's not possible because the amount of ipranges per/country are huge. Like Russia: 45,315,584 ipaddresses and 8799 ip-ranges. If you add ...
5 months ago in Domino / Security 3 Under Consideration

Domino to become SAML IDP / OAuth + OpenID

SAML and OAuth OpenID provide high value to Domino when Domino is configured as a Service provider. But for a quick start an IDP is required - it would be great if the IBM Platform delivers this out of the box. If it also supports Kerberos / Windo...
almost 6 years ago in Domino / Security 0 Assessment

Time-based One Time Password (TOTP) two-factor authentication for Domino server

Currently, Multi Factor Authentification (MFA) is only possible via external service providers. However, components such as SMS gateways (e.g. SMSEagle) are already available in many server architectures. For this reason, support for the internall...
4 months ago in Domino / Security 2 Already Exists