• Planned

    21

    Ability to use Radius Attributes

    make Radius more configurable in AAF so that attributes can be changed / configured

  • Planned

    21

    Integrate AT citizen card ( Buergerkarte ) as authenticator

    the information around the citizen card are limited however you can have a look here: There are two options of the "Buergerkarte": As mobile ignatur and as Smart Card ...

  • Votes

    16

    Synchronizing changes from mobile devices back to AAF server

    After deleting the smartphone authenticator, the template within the native application (NetIQ Advanced Authentication) is also deleted at the AAF start page (/Account, ...

  • Votes

    14

    Azure Active Directory Integration for conditional access

    Would like to see that we can integrate Advanced Authentication with Microsoft Azure Active Directory conditional access policies to add two-factor authentication to ...

  • Votes

    13

    Allow SSO from AFF to NAM

    It would be great to allow AFF SSO to NAM. The idea: having the AAF Client installed on a workstation and authenticate during the windows login to AFF. Then AAF ...

  • Planned

    11

    Allow more than one smartphone\PKI card for user

    We want to be able to use more than one smartphone\PKI card authenticators. For example, user has more than one smartphone and he want to be able to authenticate using ...

  • Votes

    11

    Add support for Mac OS TouchID as an advanced auth authentication ...

    Add support for Mac OS TouchID as an advanced authentication authentication method

  • Planned

    10

    Support for more Linux distribution

    Some customer would like to integrate the AAF with other linux derivatives as example debian. So it is possible to get more security on environments with different ...

  • Votes

    8

    Allow for customization of labels when using TOTP

    Typically, when you enroll a device using a TOTP authenticator app like Google's or Microsoft's, after you enroll, the account shows up with the name of the application ...

  • Votes

    8

    Support AD Global Catalog in AAF

    As customers tend to have many ADs in their forest, we need support for global catalog functionality for AAF by using LDAPS on 3269. ...

  • Votes

    7

    Add integration with Cisco VPN as part of the AAF documentation

    Similar to OpenVPN, we have done a few integrations between AAF and Cisco AnyConnect (VPN) so we could have these steps as part of the documentation for AAF and we could ...

  • Votes

    7

    Ability to enroll Windows Hello Fingerprint / Face Recognition ...

    Provide the ability to easy enroll the Windows Hello "Face Recognition, Fingerprint, etc" directly with the self enrollment portal. Provide also the ability to do this ...

  • Votes

    7

    Lets encrypt integration

    Not just for AAF, but also Filr etc it would be great to have support / automation possibility to use lets encrypt certificates.

  • Votes

    7

    Helpdesk - Granular access rights for enrolladmin to edit users

    Today every Enroll-Admin can change all authenticator of every users. This may cause a security issue. Which means that an enroll admin can take over an account from ...

  • Votes

    7

    Helpdesk - Two-Eyes procedure to change authenticator from user

    In regard to this Idea: https://ideas.microfocus.com/MFI/advance-authentication/Idea/Detail/15336 It would be good if there is an option to define which groups need a ...

  • Votes

    7

    Kerberos Authentication for internal AD users

    It would be great, if we could allow internal AD members Kerberos integrated authentication.

  • Votes

    6

    Igel ThinClient Support

    It will be great if Igel ThinClients will be supported. We expect more than 10.000 Users which will need this.

  • Votes

    6

    TACACS support

    It would be great to support TACACS integration, not only RADIUS. Many network devices today are configured using TACACS, not RADIUS.

  • Votes

    6

    Add the ability to restrict authentication to only managed devices

    Customer would like the ability to restrict mobile device (specifically Smartphone method) to ONLY devices that are currently being managed by an MDM solution. In this ...

  • Votes

    6

    Provide PKCS#11 (SmartCard) Libraries automatically

    Please provide several PKCS#11 Libraries (Safenet[Gemalto,Axalt,...], OpenSC, CardOS, YubiKey, etc) automatically with the Device Service. This makes it easier to use ...