Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Clear

Ideas

Simplify the process to implement a third party certificate in idpcat.nsf for SAML use

Currently, in order to use a third party certificate in the idpcat.nsf, it involves manual steps of importing the certificate into the server's ID using Domino console commands, modifying the notes.ini, and modifying the design of idpcat.nsf. It w...
about 5 years ago in Domino / Security 1 Assessment

Document that describes Domino HTTP security settings

There's a document created years ago: https://www.caicorp.com/2017/11/22/adding-security-http-response-headers-to-ibm-lotus-domino-server-to-get-an-a-rating/ HCL should have a similar document with more security settings.
over 1 year ago in Domino / Security 1 Needs Review

Allow not sending trusted root certificate on TLS handshake

RFC 5246 (TLS 1.2) and 8446 (TLS 1.3) clearly state that sending the root certificate is unnecessary, as it is supposed to be known to clients. https://www.rfc-editor.org/rfc/rfc5246#section-7.4.2 https://www.rfc-editor.org/rfc/rfc8446#section-4.4...
5 months ago in Domino / Security 0 Needs Review

Add logout button to SAML enabled Sametime (webchat and meetings)

If Sametime (webchat or meetings) are SAML enabled for login, there is no logout button available. This leads to issues if login into different Sametime meeting environments because all Sametime cookies are stored in browser unless the are removed...
over 4 years ago in Sametime / Meetings 0 Future Consideration

End-to-End Encryption enable by default for all meetings

in the moment, E2EE can only be enabled in a running meeting. My customer wants that this is enabled by default for all meetings, and that the clients can not change this setting. They dont use Mobile clients, and they dont use recording or sharin...
10 months ago in Sametime / Meetings 0 Under Consideration

When a person or Group added to ACL, it is always unspecified while user type is known when selecting from NAB

When we add entry to ACL, we have directory and we see user type, User, Group, Server, but when Added to ACL we should always set this from UNSPECIFIED to proper type again. seems few lines of code will make it for friendly
over 7 years ago in Domino / Security 0 Under Consideration

Password policy functioning improvements with "Check vault first then directory"

ID vault is implemented on the server and in configuration document "Check vault first then directory" is enabled. All users authenticate to the server through ID vault successfully. Use case: The web user is able to login even though the warning ...
over 1 year ago in Domino / Security 0 Needs Review

Is a proper integration of current Sametime Meetings planned with Notes?

Is a proper integration of current Sametime Meetings planned with Notes (compared to how Microsoft does it with MS Teams integrated into Outlook calendar)? Currently there is no integration into the Notes-Client as with the former Sametime 9 versi...
about 5 years ago in Sametime / Meetings 2 Already Exists

SAML configuration for Internet site with multiple hostnames

When you configure a SAML for an internet site shared by multiple sites, the SAML authentication leads to a redirect to the first server in the configuration as the response url is always pointing to that server. We tried to set it up with AAD. Th...
almost 3 years ago in Domino / Security 2 Under Consideration

When creating new Web User accounts, enable them and their passwords immediately.

Currently if you add a new user to the Directory for web access, you have to do things like refresh http, refresh some view indexes. Otherwise the user has to wait 5-10 minutes before they can login. In 2018 this isn't acceptable, people expect to...
over 7 years ago in Domino / Security 1 Assessment