• Votes

    3

    Voice Call method phone number self enroll / register

    The newer Voice OTP has a feature that allows the user to add his/her phone number during enrollment whereas the Voice Call (requires PIN) method requires this to come ...

  • Votes

    1

    Enrollment portal messages

    Messages are easily missed because they are hidden since they appear in the upper right under built-in browser form fill capture tools. Unless the user is both very ...

  • Votes

    3

    Ability to specify the shortname deliminator and placement

    For a RADIUS Server event, you can specify multiple chains which is very helpful in allowing the user to choose the best method to which they have enrolled - similar to ...

  • Votes

    6

    TACACS support

    It would be great to support TACACS integration, not only RADIUS. Many network devices today are configured using TACACS, not RADIUS.

  • Votes

    1

    QR and Bar code methods for identities

    Please create a method for QR Code and Bar Code for identities. This allows for assets to be identified (authenticated) quickly and easily for activities like asset ...

  • Votes

    4

    Allow AAF to import branding from Access Manager automatically

    Hi guys, Can we please update the https://aafapp.demo.live/admin#/policies/WebAuthOptions page so that it can automatically download the standard branding from Access ...

  • Votes

    2

    Caps Log notification on CP not prominent enough

    Hey Team, we have had an enhancement request to make the caps lock notification on the CP more prominent. Possible enhancements could be a larger font size below the ...

  • Planned

    23

    Offline emergency password

    Requested: Several customers The idea behind this is an emergency situation. For example: Company XYZ will be facing an audit, so they are establishing a 2FA for all ...

  • Votes

    4

    Azure AD as repository

    Advanced Authentication can be configured as an IDP for Azure AD. However, it is necessary AA connects to Active Directory in order to register the user and enrol ...

  • Votes

    1

    Integrate in NAAF similar functionnality as eDirectory HOTP function

    Actually eDirectory offer a way to make 2 factor authentication using a simple LDAP bind. User concatenate their password with the HOTP code (mypassword123456). Some ...

  • Votes

    5

    Ability to rename Interface field names (Especially the Interfaces ...

    I have a customer that rolled out AAF for enterprise users with SMS and TOTP as their authentication mechanisms. On roll out they noticed that helpdesk started receiving ...

  • Votes

    4

    OTP Message should include a variable with the timestamp of the OTP

    On version 5.6U1 the SMS OTP method allows for specific variables to be added as part of the message to be sent to the user. At the moment, only 4 variables are available ...

  • Votes

    3

    AAF Desktop OTP tool improvements / new requirements

    I have a customer in South Africa that is very interested in the functionality provided by the Desktop OTP tool but, AS IS, the Desktop OTP tool poses critical challenges ...

  • Votes

    7

    Add integration with Cisco VPN as part of the AAF documentation

    Similar to OpenVPN, we have done a few integrations between AAF and Cisco AnyConnect (VPN) so we could have these steps as part of the documentation for AAF and we could ...

  • Votes

    3

    Provide option to disable the ability for the Enroll admin (Helpdesk) ...

    Currently a helpdesk admin can enroll/remove enrollments for his/her own user and some clients do see this as a potential risk. Could we perhaps have a policy, similar to ...

  • Votes

    5

    Using the Smartphone app push notification to Accept/Decline ...

    During enrollment, we don't have a notification of the enrollment process that is acknowledged by the user being enrolled. So far the methods we have assume that the ...

  • Votes

    3

    Ability to link AAF v6.x Configuration portal and Desktop OTP app to ...

    In multiple conversations with clients there is often the question around how does the NetIQ Smartphone App compares with Google authenticator and often enough the ...

  • Votes

    4

    PIN complexity requirements policy

    There is a 'Rename to PIN' functionality in the 'Password' method. I observed that the complexity requirements policy - in this method - does not reflect this. For ...

  • Votes

    3

    Disallow modifications to the Email OTP authenticator method from end ...

    There is no ability to disable modifications made to the Email OTP Authenticator via the end user portal. The end user is now able to edit the default email address for ...

  • Votes

    3

    Disallow modifications to the SMS OTP authenticator method from end ...

    There is no ability to disable modifications made to the SMS OTP Authenticator via the end user portal. The end user is now able to edit the default cell phone number ...