Domino Server

Domino Server - Security 


Restrict access to server configuration info

: Domino Server / Security
: domino, directory, server, administration
Leonard Gray414 - 15 2008 / (0)
As internal data security becomes more and more of a concern, allowing end-users access to server configuration information poses more of a risk than when the Domino Directory was first envisioned and implemented.
While we can make customizations to the Domino Directory to accommodate our needs, the product "off ...

Include Transport Layer Security (TLS) support in the Domino server

: Domino Server / Security
: ssl, tls, security
Paul Calhoun265 - 09 2009 / (0)
Currently there is no version of Notes/Domino that supports connecting to a site/web service that only supports Transport Layer Security (TLS) also know as SSL version 3.1.
As more and more sites are implementing TLS (and some are implementing them exclusivly) it keeps domino developers from being able to ...

Add Support for OpenID

: Domino Server / Security
: openid
Sean Burgess6178 - 30 2008 / (0)
With Yahoo and Google supporting OpenID, it would be a real step towards openness and web interoperability.  This would also allow Domino Extranet sites to be better players with the rest of the web.
"With OpenID, you create a single username and password .... and login to an increasing ...

Support Oauth & OpenID authentication for Domino

: Domino Server / Security
: oauth, openid, domino, saml
Craig Wiseman24988 - 14 2011 / (0)
Domino has always had strong standards support for Interweb protocols, but that seems to be slipping a bit. At present, Domino supports SAML authentication. In order to maintain Domino's viability and competitive reasons, ...

log deletions

: Domino Server / Security
: domino, database, log, delete, deletion
Bastian Wieczorek8390 - 28 2007 / (0)
Sometimes my users delete a document in a DB and after that they couldn´t remember that they have deleted it. So I would have the option to see which person deleted a document. Maybe in the DB Access log or somewhere else.

ID Vault should support CA process

: Domino Server / Security
: id vault, ca process, certifier, certificate
Ninke Westra2116 - 15 2009 / (0)
Currently when creating an ID vault you don't have the option to use the CA process to generate the certifier trust, instead you need to use the certifier id file.
This is all nice and dandy until you've decided to perform a certifier key roll over of a certifier ...

Using more universal SSL certificate stores instead of keyring files

: Domino Server / Security
: ssl, configuration, http, keyring
Serdar Basegmez902 - 18 2011 / (0)
As far as I know, keyring files are not supported by other powerful web servers on the market. Even Websphere group is not using and supporting this file format.
I'd like to know if there is a clear advantage of SSL keyring files. If not, it should be replaced ...

Add a IP Adress to the Internet lockout Documents

: Domino Server / Security
: add, a, ip, adress, to, the, internet, lockout, documents
Bastian Wieczorek8390 - 10 2008 / (0)
We just implemented/activated the internet logout feature from Domino 8.
(See page 5 of ID218: Help Protect Yourself with New Security Features
in IBM Lotus Domino 8
{ Link })
BUT there is no information available which hostname tried to login with the ...

Free Exchange/Sharepoint Migrator

: Domino Server / Security
: domino, notes, outlook, exchange, microsoft
Michael Tassati5289 - 29 2010 / (0)
At download sites of MS, there is a serverside tool for migration from Lotus Domino to Exchang...This tool is free.
On Lotusphere 2010 i've seen a businesspartner in Procuct Showcase with some tools to migrate also Lotus Notes/Domino Applications to MS ínfrastructure. The same business partner has also tools ...

Grant access to create databases/replicas on a server IN A DESIGNATED DIRECTORY

: Domino Server / Security
: create database
David Hablewitz15116 - 25 2010 / (0)
Currently the security setting to allow creating databases on a server is an all-or-nothing option.  I would like to give users limited ability to create databases on the server in a designated directory.  This would allow them to replicate local databases like their archives to the server in a managed ...

Server should adjust [Adminsitration Server] settings in ACL when creating a server based archive

: Domino Server / Security
: server based archiving, archiving, acl
Victor Toal158 - 08 2009 / (0)
when server based archiving is anabled and the a different server than the mail server is chosen as the target, the ACL of the archive and the log file is not adjusted. the [Adminsitration Server] is still set to whatever the mail file has it set to. Subsequently, any AdminP ...

Allow easier configuration of SSO for DIIOP

: Domino Server / Security
: diiop, sso
Christian Brandlehner3226 - 29 2008 / (0)
I suggest to allow the configuration of SSO within the DIIOP internet site document. Currently the configuration is not intuitive.
See this TN for details:

Make "Internet lockout" able to send text message (SMS) to registered user when lockout is performed

: Domino Server / Security
: security, login, failed attempts, sms
Kenneth Axi2537 - 22 2012 / (0)
 When You have activated the internet lockout feature of the Domino server, I would like to be able to have the function to also send a text message (SMS) to the users registered mobile phone, informing him/her that his account has been locked because of too many incorrect attemts.

Spam Relay, We love to hate you

: Domino Server / Security
: spam, smtp
Keith Brooks6439 - 07 2007 / (0)
Is it so hard to just have simple SMTP Relay configuration? Can it be written in better english? It is most confusing for people between what is internal control, external control and beyond control.
Granted Exchange has nothing on this, but at least it is simple to setup.

SSO between Domino server and Websphere Portal

: Domino Server / Security
: sso between domino & websphere portal
Kathleen Dakin-Hunter40 - 21 2009 / (0)
I have my Websphere portal server set up for SSO with our Domino LDAP.  Everything worked fine until the department controlling the LDAP server started implementing "idle session timeout" for their server.  Once they did that, they were unable to import the LTPA token from my Websphere Application server because ...

Allow more granular control of the Database Administrators security setting on the server document for roaming upgrade

: Domino Server / Security
: administration, roaming, database administrators
Matt Cook501 - 23 2011 / (0)
Note: Idea description updated to correct functionality after further testing.  Roaming at registration is fine.  Upgrade to roaming afterwards is not for our service desk.
We currently delegate user registration to the service desk and desktop levels.
We would also like to delegate roaming upgrades to the service ...

Allow @domain in reader & author fields

: Domino Server / Security
: domain, consolidation, integration
Mike Woolsey4870 - 03 2011 / (0)
Allow the @domain part of a user identifier to be included in a reader or author field entry. This'd allow use of the reader or author field in email as well as for security purposes, and the field wouldn't need to be re-created to guarantee emailing the author, e.g.

Allow Lotus supplied web Lotus supplied login forms to work when server's anonymous access is disabled.

: Domino Server / Security
: anonymous, login
Steve Davis1179 - 09 2008 / (0)
Web login forms provided in Lotus-created templates such as webmail redirect (iwaredir.ntf) and Quickr (and probably others) will not work if the server is set to disallow anonymous HTTP access (Server document: Ports --> Internet Ports --> Web --> Authentication options --> Anonymous --> No).  When anonymous access is disabled, ...

Disable to open or copy mails in the

: Domino Server / Security
: mail, disable,
Marius Jaeger2466 - 17 2009 / (2)
Any domino administrator can open mails in the or can copy mails from the into an other database.
It is not necessary for any administrator to do this.
So disable open documents and copy documents in the


Welcome to IdeaJam

You can run IdeaJam™ in your company. It's easy to install, setup and customize. Your employees, partners and customers will immediately see results.

Use IdeaJam to:

  • Collect ideas from employees
  • Solicit feedback and suggestions from employees and customers
  • Run innovation contests and competitions
  • Validate concepts
  • Use the power of "crowd-sourcing" to rank ideas and allow the best ideas to rise to the top

IdeaJam™ works with:

  • IBM Connections
  • IBM Lotus Quickr
  • Blogs and Wikis
  • Websphere Portal
  • Microsoft Sharepoint
  • and other applications.

IdeaJam has an extensive set of widgets and API's that allow you to extend and integrate IdeaJam™ with other applications.

Learn more about IdeaJam >>

IdeaJam developed by

Elguji Software Logo