• Votes

    3

    Configure endpoint whitlist based on ad group

    We would like the ability to configure endpoints whitlist based on ad/eDirectory group, not by specifying the endpoints directly.

  • Votes

    4

    Redesign the TOTP flow for an enduser

    We are working with version 6.1.x The NAAF screens are very technical for an end user. Make security easy for those who are non technical please. Ask a UX-er to help ...

  • Votes

    1

    OTP Support Multiple Languages

    Hello, We want to be able to send SMS OTP in multiple languages. It will be great if we will be able to map a LDAP attribute for user proffered language, and the AAF ...

  • Votes

    1

    Custom VOICE OTP Sender

    Hello, We will like to have the ability to use our own Voice OTP senders. Currently only Twilio is supported.

  • Planned

    3

    Reduce privileges for device service on Windows

    Hello, When device service is installed on Windows, it installs a windows service that runs with local\system account permissions. We want to be able to run it using a ...

  • Planned

    11

    Allow more than one smartphone\PKI card for user

    We want to be able to use more than one smartphone\PKI card authenticators. For example, user has more than one smartphone and he want to be able to authenticate using ...

  • Votes

    3

    NAAF Client 5.6 should get the language for a parameter that it can be ...

    NAAF Client 5.6 should get the language for a parameter that it can be changed by the end user. In our case the system locale can only be changed by the administrator and ...

  • Votes

    1

    Extend API to simplify user repo migrations

    It happens that clients need to migrate directory services. Even because of technology changes, mergers or acquisitions. In such cases they need to manually rewrite ...

  • Planned

    8

    Extend Radius server by PEAP support

    Currently Radius server supports only PAP while new (esp. mobile) devices use PEAP. It's the reason customers may not use AA for Radius & mobile device combination and ...

  • Votes

    1

    Retrieve and accept user names in different format

    Some applications/systems use naming schema different then simple username. Good example might be FUDO running in "bastion" mode. In that case username consists of two ...

  • Votes

    1

    accept only PKI keys from trusted CAs

    Add an option to disable the item "Generate a key pair" when the user register a PKI token, and let users only select a valid certificate from the token. This would be ...

  • Votes

    7

    Let's change eToken/Smartcard password on credential provider

    Now there is no possibility to change the eToken password at the credential provider. if the password is expired the user has to phone the Helpdesk to create a emergency ...

  • Votes

    1

    Adding parameters to MSI properties - NAAF Device Service MSI Package

    We would like to install device service and change these 2 custom parameters: pki.vendorModule pki.forceVirtualChannels Is it possible that you will add these ...

  • Planned

    3

    A way to delete OATH seed-files more than one per selection.

    A way to delete OATH seed-files more than one per selection. If we would get a checkbox for the selection of the file to be deleted. To delete several Seed-files at once.

  • Votes

    2

    Netiq Mobile Application for Smartphones

    Can we have an Option for, after a rollout the Application via AirWatch have a way for Auto Accept the EULA.

  • Votes

    3

    LDAP Password Expired

    If the LDAP Password Expired, can we get an Option for Set a New Password in the Enrollment Center to change or set a new Password.

  • Votes

    3

    CEF Log Forward Policy Increase the Number of Servers

    Today we have the Option to set only one Server. But if we can increase the number of servers, we have the option to spread the logfiles. This would a better solution ...

  • Votes

    3

    Method: Password Policy

    An Option to set different Password Policy for each user Group, if the Password set as a chain from MFA such as Pin + OTP. We want able to set for the UserGroups a Simple ...

  • Votes

    5

    Check if firewall ports are open

    We would prefer an Option to check if needed Firewall Ports are open. In our opinion this check-up can be located in the Management Consol of AAF. Additionally there ...

  • Votes

    1

    Disallow user to scan QR code if user has enrolled already

    By disable the re-enrollment function, user not able to rescan (by click the Save button) and delete the enrolled authenticator (By click the delete button) Can the ...