Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 298

Add logout endpoint to DRAPI's oauth system

The .well-known/openid-configuration in DRAPI does not show a logout endpoint. A client web application can use the /oauth/authorization and /oauth/token endpoints to authenticate and refresh the authorization token. A logout is currently only pos...
about 2 months ago in Domino / Security 0 Needs Review

Configure the Domino HTTP server to ignore "Authorization: Bearer" headers on Domino 12.0.2

This has always worked well in Domino 10, 11 and 12.0 but now HCL has implemented an option on the internet site to use a bearer token. The problem with this option is that you then need to configure an OIDC provider which is not well documentated...
over 1 year ago in Domino / Security 3 Under Consideration

Time-based One Time Password (TOTP) two-factor authentication for Domino server

Currently, Multi Factor Authentification (MFA) is only possible via external service providers. However, components such as SMS gateways (e.g. SMSEagle) are already available in many server architectures. For this reason, support for the internall...
4 months ago in Domino / Security 2 Already Exists

When a person or Group added to ACL, it is always unspecified while user type is known when selecting from NAB

When we add entry to ACL, we have directory and we see user type, User, Group, Server, but when Added to ACL we should always set this from UNSPECIFIED to proper type again. seems few lines of code will make it for friendly
over 6 years ago in Domino / Security 0 Under Consideration

Additional Option required to access database on other Domino Server by Agent Signer ID.

Agent Manager task is currently responsible for execution of all scheduled agents that run on Domino Server. The agent manager is one of the Domino server processes. When any scheduled agent needs to access some other database present on another D...
over 2 years ago in Domino / Security 1 Already Exists

Add CScan function / option: Scan on upload

This IDEA is is to enhance CScan to scan files upon / during an upload function. HCL Connections has the ability to utilize ICAP for scanning files during the upload. We would like to see something similar implemented for HCL Domino. Currently we ...
over 1 year ago in Domino / Security 0 Under Consideration

Restart/maintenance shouldn't require user-reauthentication in HCL Verse. But make a setting for this

Today when restarting server (http service) users are required to reauthenticate to HCL Verse. This sets limitations when performing maintenance. Reauthentication should be a setting to be adjusted according to security guidelines.
2 months ago in Domino / Security 2 Needs Clarification

Scrub logs ( anonymize ) before sending it to support "Tell Domino Support"

This is a new feature in Domino V12.0.2 ( now in beta ) It's a great feature, but some companies have strict policies for sending logs to vendors. No server names No ipaddresses No user-names/-information No domain information Nothing what could ...
over 2 years ago in Domino / Security 0 Planning to Implement

When creating new Web User accounts, enable them and their passwords immediately.

Currently if you add a new user to the Directory for web access, you have to do things like refresh http, refresh some view indexes. Otherwise the user has to wait 5-10 minutes before they can login. In 2018 this isn't acceptable, people expect to...
over 6 years ago in Domino / Security 1 Assessment

Need any setting or Notes.ini parameter to bypass ICAP server if ICAP server is unresponsive

When scanning is enabled, messages are held in mail.box until are processed by ICAP server. In case the ICAP server is unreachable (no matter what is the reason) messages are held in mailbox. Need a setting or notes.ini switch to inform Domino t...
9 months ago in Domino / Security 4 No Plans to Implement