Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

My ideas: Security

Showing 297

Enhance CA Profile access and configuration options

There is an option to change the certificate duration for CA enabled certifiers, but this setting cannot be enforced, so that it cannot be overwritten by the registration authority (RA). The CA profile shows this option, but it is not possible to ...
about 20 hours ago in Domino / Security 0 Needs Review
421 VOTE

DKIM and DMARC support

well, it’s 2018. DKIM is from 2004 and DMARC is 2010.
over 6 years ago in Domino / Security 65 Assessment

Document that describes Domino HTTP security settings

There's a document created years ago: https://www.caicorp.com/2017/11/22/adding-security-http-response-headers-to-ibm-lotus-domino-server-to-get-an-a-rating/ HCL should have a similar document with more security settings.
about 1 month ago in Domino / Security 1 Needs Review

Domino should support modern SMTP related protocols DANE, MTA-STS and TLS-RPT

Domino is a bit behind in implementing e-mail security protocols. While DMARC is waiting for implementation, new protocols are already around: DANE, MTA-STS and TLS-RPT. 1. DANE (DNS-Based Authentication of Named Entities) RFC 6698: The DNS-Based ...
about 1 month ago in Domino / Security 0 Needs Review
262 VOTE

TLS 1.3 Support for the Domino INET Stack

TLS 1.3 should be added in Domino 11. There are already recommendations to disable TLS 1.0 and I have seen customers who already disabled TLS 1.0 on their SMTP servers. On the other side there are still unpatched environments which do not support ...
over 6 years ago in Domino / Security 15 Assessment

Password policy functioning improvements with "Check vault first then directory"

ID vault is implemented on the server and in configuration document "Check vault first then directory" is enabled. All users authenticate to the server through ID vault successfully. Use case: The web user is able to login even though the warning ...
19 days ago in Domino / Security 0 Needs Review

ClamAV support for Domino CScan

Domino CScan supporting ICAP as a standard is a great addition to Domino 12. It turns out that most customers don't use an anti virus solution supporting ICAP. Switching to a different anti virus product isn't an option for most customer. Adding a...
over 1 year ago in Domino / Security 0 Assessment
142 VOTE

Add "Anonymous" with "No Access" as default for new database ACL

Domino's great strength has always been security. But according to latest tests, Anonymous is not added automatically when creating a new database. Adding Anonymous with "No Access" as default for new applications will cause no backwards-compatibi...
over 5 years ago in Domino / Security 5 Assessment

Periodic CScan on rest scan of databases

Scanning mail data in the mail flow is a great addition to the Domino 12. But this feature would be mainly useful for customers having no external SMTP gateway mail scan in place already. Scanning only on the company edge leaves the door open for ...
over 1 year ago in Domino / Security 1 Assessment

Ability to enable "Enforce a consistent Access Control List across all replicas" through Domino policy.

Would like to enable "Enforce a consistent Access Control List across all replicas" through Domino policy to enable it on all database including local databases without a server copy.
about 2 months ago in Domino / Security 1 Under Consideration