Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

ADD A NEW IDEA

Security

Showing 38

Allow 2FA to use Email Only

We host systems that are used by customers who change companies all the time. Sometimes when they leave companies, we are not notified. Since people now take their BYOD phones with them, any MFA/2FA using SMS or Authenticator Apps can be used outs...
18 days ago in Domino / Security 1 Needs Review

Add new audit function to trace activities executed with Domino Administrator Privilege

One of our customer in Japan wish HCL could add the following new audit function to trace activities executed with Domino Administrator Privilege: 1. The activity was executed from which PC (IP address, hostname) and when it was executed. 2. The d...
6 days ago in Domino / Security 0 Needs Review

Allow users to self-manage their Passkeys in the Passkey database

In Domino 14, the Passkeys database maintains user specific records for every Authenticator that the user has ever used on that system, in order to create a passkey. Over time, the number of these records will likely grow to include records for...
3 months ago in Domino / Security 0 Needs Review

Domino should support modern SMTP related protocols DANE, MTA-STS and TLS-RPT

Domino is a bit behind in implementing e-mail security protocols. While DMARC is waiting for implementation, new protocols are already around: DANE, MTA-STS and TLS-RPT. 1. DANE (DNS-Based Authentication of Named Entities) RFC 6698: The DNS-Based ...
7 months ago in Domino / Security 1 Needs Review

Add Quantum-Resilient Cryptography

This idea requests to add Quantum-Resilient Cryptography (QC) for: Encryption of Notes ID files, Encryption of NRPC-based traffic, Database Encryption, Internet Protocols (http, smtp, imap, ldap, etc.), Encryption of DAOS attachments, Everything e...
2 months ago in Domino / Security 1 Needs Review

Server-Rules for E-Mail-Header

Our provider uses anti-spam software that writes the SPAM probability in the email header. Example: X-Spam-Level: ***** There should be a central way to evaluate the email header in Domino, for example to add a keyword to the subject line of affec...
10 months ago in Domino / Security 2 Needs Review

Authenticated Received Chain (ARC) signing support

After the integration of the DKIM signature key, SPF evaluation, it would be interesting to complete the support for the anti-spam scheme through the integration of ARC signatures (RFC 8617), which for example solve the problem of message forwardi...
over 1 year ago in Domino / Security 0 Needs Review

Document that describes Domino HTTP security settings

There's a document created years ago: https://www.caicorp.com/2017/11/22/adding-security-http-response-headers-to-ibm-lotus-domino-server-to-get-an-a-rating/ HCL should have a similar document with more security settings.
7 months ago in Domino / Security 1 Needs Review

Password policy functioning improvements with "Check vault first then directory"

ID vault is implemented on the server and in configuration document "Check vault first then directory" is enabled. All users authenticate to the server through ID vault successfully. Use case: The web user is able to login even though the warning ...
6 months ago in Domino / Security 0 Needs Review

Domino support on the rfc5280 certificate

Currently, Domino does not support the rfc5280 type of certificates. https://datatracker.ietf.org/doc/html/rfc5280
3 months ago in Domino / Security 0 Needs Review