Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.


For more information on products and upcoming events around #dominoforever, please visit: HCL Domino Page


ADD A NEW IDEA

Clear

Security

Add "generate secret" action for new OAuth Clients in idpcat

When setting up Client Secret auth, we need to come up with a random value for the client secret. It's not terribly difficult to make a UUID or similar externally and paste it in, but it'd be nice to have an action to generate one automatically - ...
6 months ago in Domino / Security 0 Needs Review

Internet Lockout not per server, but per website or per domain.

When you have a clustered Domino backend for hosting websites or web-apps, and you have a loadbalancer in front of them......and internet lockout only occurs per server.....it's possible that you end up on another cluster-member and can continue t...
over 4 years ago in Domino / Security 2 Assessment

Force logout web mail users (i.e. Verse & iNotes)

Customer wants to apply a force logout to users whose accounts are compromised. Changing their password or restarting http task does not automatically logout the user. Waiting for token expiration could be risky if set for a long duration. Current...
over 4 years ago in Domino / Security 1 Under Consideration

ACL Role Description Field

Add description field for each acl role.
over 7 years ago in Domino / Security 2 No Plans to Implement

Missing Secure Attribute in Encrypted Session (SSL) Cookie.

Hi Team, Regarding case no : CS0038809 - Require SSL protected communication HTTPS for single server session cookie As suggested by Melnicl(HCL PMR Team) we need to enable http only : false option in DOMRELAYSTATE cookies. we require this option t...
over 6 years ago in Domino / Security 5 No Plans to Implement

Time-based One Time Password (TOTP) two-factor authentication for Domino server

Currently, Multi Factor Authentification (MFA) is only possible via external service providers. However, components such as SMS gateways (e.g. SMSEagle) are already available in many server architectures. For this reason, support for the internall...
about 2 years ago in Domino / Security 4 Already Exists

Support for CSRF Tokens in domino

The security landscape is changing all the time, and one of the new things that customers and security experts are asking for is anti forgery tokens that is sent with forms up to prevent forgery data sent back from clients. It would be good if dom...
about 5 years ago in Domino / Security 3 Already Exists

Prompt password quality during change the password from webmail

This feature will show the password quality requirements when changing credentials via webmail
over 6 years ago in Domino / Security 1 Under Consideration

mail notification should come when someone tried mutiple time wrong password in users lotus notes account

if any users attempted wrong password more that 3-4 times then user(owner on account) should get mail mail from Server that, someone is trying accessing your mail.
almost 7 years ago in Domino / Security 4 Needs Clarification

Server-Based email encryption

We have to use IQ-Suite in order to send server-based encrypted mail to third party smtp servers. It would be great to have that out-of-the-box in Domino.
almost 7 years ago in Domino / Security 2 No Plans to Implement