Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 300

SSO/SPNEGO applicable for higher encryption

Domino team hasn't changed the SSO/SPNEGO integration code that was added back in 9.0.1x. Customer wants integration for higher encryption since R4 is already outdated and there are lots of higher encryption available today.
over 2 years ago in Domino / Security 5 Assessment

SAML user binding using email

Binding SAML user identity using email is an good way but insecure way.Because a user at an connected IDP could if open go in and change email address and then become another user. It would be good to increase security to add a secondary field tha...
4 months ago in Domino / Security 2 Needs Clarification

RFC 8058 compliant functionality is required

Google will apply "Email sender guidelines" with enhanced anti-spam measures from February 2024. As a result, e-mails from companies that do not have sufficient countermeasures may not be delivered to Gmail accounts. The ability to insert MIME hea...
8 months ago in Domino / Security 1 Under Consideration

Support TOTP for AD as LDAP

Currently TOTP can work for Single Server or Multiple Server SSO authentication and domino as LDAP . Since it is possible for user to setup AD for web server authentication and TOTP is a widely requested requirement, we need to be able to setup TO...
about 2 years ago in Domino / Security 2 Needs Review

HTTP Cookie limit

When there are more than 4k worth of cookie data passed to Domino, Domino does not capture the information in the CGI variable HTTP_cookie.
about 3 years ago in Domino / Security 0 Under Consideration

Update OpenJDK that comes with Domino 12

Due to recent multiple vulnerabilities relating to OpenJDK (JRE), Domino servers are being reported as vulnerable. Domino v11 comes with JRE 11, while Domino v12 comes with JRE 11.0.2 which is one of the reported versions affected by this vulnearb...
about 2 years ago in Domino / Security 1 Assessment

Extend User Details / Activity table size in Notes Database properties

The database property / "User details" (the table with adds/reads/writes/updates, timestamp and ID) is a limited table which starts overwriting if there are too many entries. On heavily used databases, this table can start overwriting very soon, e...
almost 4 years ago in Domino / Security 0 Under Consideration

Single user recall action causes confusion on message addressed to multiple users

When an user does recall to one user from a message that has been sent to multiple people and one of them responds to all, it also includes the person who was recalled, bringing confusion and the user thinks that it has been an error and has not r...
about 2 years ago in Domino / Security 2 No Plans to Implement

Let's Encrypt certificate manager program to be available for IBM i

Certificate Manager (CertMgr) server task. This task runs on one server in a Domino domain and handles the certificate processing. It leverages new back-end security APIs and requires a HCL Domino® version 12 or higher server running on Docker, Wi...
over 3 years ago in Domino / Security 4 No Plans to Implement

Export LTPAToken from Domino into Sametime V12

In Sametime V12 there is no connection anymore to a Domino server. The proxy does not import the LTPAToken automatically anymore. The documentation tells us the setup a temp. WebSphere-Liberty server and creates a LTPAToken. This is a workaround i...
over 2 years ago in Domino / Security 1 No Plans to Implement