• Votes

    6

    Offline Update for AAF

    It would be nice if you make a solution to update AAF with an offline file over the Web Management Console (9443). Reason: In some customer environments it is not ...

  • Votes

    6

    AAF Webserver without directly connection to LDAP

    In adition to https://ideas.microfocus.com/MFI/advance-authentication/Idea/Detail/14920 It would be very nice if an AAF Webserver may check user data directly over their ...

  • Votes

    5

    Gernerate OTPs for other Services with the OTP Tool

    Customers wish an ability to generate OTPs for other services with the OTP Tool.

  • Votes

    7

    Ability to enroll Windows Hello Fingerprint / Face Recognition ...

    Provide the ability to easy enroll the Windows Hello "Face Recognition, Fingerprint, etc" directly with the self enrollment portal. Provide also the ability to do this ...

  • Votes

    6

    Igel ThinClient Support

    It will be great if Igel ThinClients will be supported. We expect more than 10.000 Users which will need this.

  • Votes

    7

    Helpdesk - Granular access rights for enrolladmin to edit users

    Today every Enroll-Admin can change all authenticator of every users. This may cause a security issue. Which means that an enroll admin can take over an account from ...

  • Votes

    7

    Helpdesk - Two-Eyes procedure to change authenticator from user

    In regard to this Idea: https://ideas.microfocus.com/MFI/advance-authentication/Idea/Detail/15336 It would be good if there is an option to define which groups need a ...

  • Votes

    3

    REST-API Allow other authentication methods for "Destroy endpount"

    Today it is only possible to use PASSWORD:1 for Destroy Endpoint. We would like to have the ability to use other Methods like, LDAP_PASSWORD:1, TOTP:1, HOTP:1 etc.

  • Votes

    2

    Radius only return the CN from the group name

    Some customers have trouble with specific VPN Solutions from Cisco or Watchguard. Because with this tools it seems that there is a limitation for the group name field (as ...

  • Votes

    4

    AAF should recognize if user was authenticated by thirdparty before ...

    In our viewpoint AAF should be able to recognize if the user comes from the ThinClient. For an example: Scenario1: ThinClient & Citrix &VDI (without AAF) 1. Customer ...

  • Votes

    4

    More flexibility for Reports

    Some customers wish more flexibility for their Reports. Please provide an option that an admins can select which specific information are needed for the report. As an ...

  • Votes

    12

    MFA Smartphone native NetIQ App avoid additonal info after QR code ...

    - Customer uses AAF Version: 5.6 and Access Manager 4.4. - Using the current version, an additonal info entry is offered after the scan of the QR code for an ...

  • Votes

    3

    Native U2F Support beyond chrome browser

    Since chrome support for FIDO U2F was added some time ago but now other browsers like Firefox support it as well. While it does work if enabled manually on older firefox ...

  • Votes

    5

    Brute force / BOT Attack and Data leakage Prevention

    A change in authentication flow can help prevent brute force bot attacks: 1. Information leakage - valid usernames & passwords discovery 2. User lockout due to bad ...

  • Votes

    3

    Voice Call method phone number self enroll / register

    The newer Voice OTP has a feature that allows the user to add his/her phone number during enrollment whereas the Voice Call (requires PIN) method requires this to come ...

  • Votes

    1

    Enrollment portal messages

    Messages are easily missed because they are hidden since they appear in the upper right under built-in browser form fill capture tools. Unless the user is both very ...

  • Votes

    3

    Ability to specify the shortname deliminator and placement

    For a RADIUS Server event, you can specify multiple chains which is very helpful in allowing the user to choose the best method to which they have enrolled - similar to ...

  • Votes

    6

    TACACS support

    It would be great to support TACACS integration, not only RADIUS. Many network devices today are configured using TACACS, not RADIUS.

  • Votes

    1

    QR and Bar code methods for identities

    Please create a method for QR Code and Bar Code for identities. This allows for assets to be identified (authenticated) quickly and easily for activities like asset ...

  • Votes

    4

    Allow AAF to import branding from Access Manager automatically

    Hi guys, Can we please update the https://aafapp.demo.live/admin#/policies/WebAuthOptions page so that it can automatically download the standard branding from Access ...