-
Votes
1
accept only PKI keys from trusted CAs
Add an option to disable the item "Generate a key pair" when the user register a PKI token, and let users only select a valid certificate from the token. This would be ...
Comments (1) | by: Livio B. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
7
Let's change eToken/Smartcard password on credential provider
Now there is no possibility to change the eToken password at the credential provider. if the password is expired the user has to phone the Helpdesk to create a emergency ...
Comments (2) | by: Markus D. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
1
Adding parameters to MSI properties - NAAF Device Service MSI Package
We would like to install device service and change these 2 custom parameters: pki.vendorModule pki.forceVirtualChannels Is it possible that you will add these ...
Comments (1) | by: Harel E. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Planned
3
A way to delete OATH seed-files more than one per selection.
A way to delete OATH seed-files more than one per selection. If we would get a checkbox for the selection of the file to be deleted. To delete several Seed-files at once.
Comments (1) | by: Dennis M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
2
Netiq Mobile Application for Smartphones
Can we have an Option for, after a rollout the Application via AirWatch have a way for Auto Accept the EULA.
Comments (4) | by: Dennis M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
CEF Log Forward Policy Increase the Number of Servers
Today we have the Option to set only one Server. But if we can increase the number of servers, we have the option to spread the logfiles. This would a better solution ...
Comments (2) | by: Dennis M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Check if firewall ports are open
We would prefer an Option to check if needed Firewall Ports are open. In our opinion this check-up can be located in the Management Consol of AAF. Additionally there ...
Comments (0) | by: Dennis M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
Method: Password Policy
An Option to set different Password Policy for each user Group, if the Password set as a chain from MFA such as Pin + OTP. We want able to set for the UserGroups a Simple ...
Comments (0) | by: Dennis M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
1
Disallow user to scan QR code if user has enrolled already
By disable the re-enrollment function, user not able to rescan (by click the Save button) and delete the enrolled authenticator (By click the delete button) Can the ...
Comments (1) | by: Kin Fai L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
2
Smooth transition of authenticators: no need to re-enrolment when ...
This is future request . Migrate the authenticators for already enrolled users who are migrated from existing MS AD domain to the new MS AD domain without all those ...
Comments (1) | by: Tomasz S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
1
Syslog message when user account is locked by AAF application
It would be beneficial to have a syslog event generated when a user account is locked by AAF using the Lockout Policy. We created a Lockout Policy designed to lock a ...
Comments (0) | by: Jerome M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
2
Offline mode: Allow computer to fail open
Currently: If a user is offline, and if he has lost/broken one authenticator (if 2FA deployed with 'something you know' + 'something you have'), he can't login to his ...
Comments (0) | by: Jerome M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
Windows Client Debug Log logrotate
You can enable client debug logging by setting logenabled=true in the config.properties. But the logfiles will grow and grow. Please add an option to enable some kind ...
Comments (0) | by: Christian B. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
9
Add a "password never expires" option for the local user repository
We need this option for the local Admin Account. The local Admin Account's password expires as any other user account. Please add a "password never expires" option to the ...
Comments (0) | by: Christian B. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
implement repository search order
In an environment with multiple repositories, it should be possible to define a search order for the repository. The first match wins should be used for authentication. ...
Comments (6) | by: Christian B. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Windows Client set default Domain in config.properties
Add an option to the Windows Client to set a default Domain in config.properties. Example: defaultDomain: DOMAINNAME Expected behaviour: The user types USERNAME (without ...
Comments (1) | by: Christian B. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
Radius Client Method - Disable Username Management
Make it possible to turn username management off for the radius client method. --> Via the enrollment portal the user has the ability to change the username that is ...
Comments (0) | by: Bart A. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
Allow multifactor when enrolling smartphone via /smartphone/enroll url ...
As an Administrator of AAf, admin should be able to add MFA for direct smartphone enrollment url as well. Currently, the product (AAf 6.2) support direct smartphone ...
Comments (1) | by: Micky R. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Support for Configuring SMS Sender Policy Using a JSON Body or CURL ...
Currently when configuring the SMS Sender policy we only support submitting parameters in the http request URL. I was working with a customer that uses Avaya as their ...
Comments (0) | by: Eric L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
3
messagebird
The AAF 6.2 product contains an SMS TOTP method preconfigured for MessageBird. Which is great. However, the method uses the "OLD HTTP-API_v1" as MessageBird refers to ...
Comments (0) | by: John M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration