• Votes

    5

    Ability to authenticate trough RADIUS if LDAP Passwor dis expired

    Please provide an option to allow authentication trough RADIUS if LDAP Password is expired. Today: It is not possible to authenticate trough the radius event with a ...

  • Planned

    5

    Add more than one bluetooth authenticator device

    Customer ask for ability to configure more than one bluetooth device as an authenticator. For example, to use either smart watch or smartphone.

  • Planned

    5

    Modify Client Login Extension

    We would like to request the client login extension link be shown before chain selection in the Windows agent. Currently it only shows up if the user selects the LDAP ...

  • Votes

    5

    Rolling over RADIUS authentication

    getting a possibility to check PIN + OTP on AA and once this is not accepting / valid fowarding the PIN and OTP to a 3rd party AAA server -> using then the Radius Client ...

  • Votes

    5

    Different set of security questions for different groups of users

    Currently when defining security questions, we define a set of questions applicable for the entire AA instance. It is desirable to have different sets of security ...

  • Votes

    5

    Separate out application logs into it's own tab/file

    Current situation: Application logs (in CEF) are written to Syslog. Syslog also has OS-related information written to it. It is sometimes difficult to find certain ...

  • Votes

    5

    Allow IP address in multiple RADIUS events

    We are leveraging the NAS Identifier in that each of our RADIUS configurations have an Event for each chain. This enables us to provide our users a clever way to select ...

  • Votes

    5

    Set CEF log forward policy per site

    We want to forward the CEF logs to our enterprise logging solution that has data collectors all over the globe. It would be desirable to set the Syslog destination on a ...

  • Votes

    5

    Ability to rename Interface field names (Especially the Interfaces ...

    I have a customer that rolled out AAF for enterprise users with SMS and TOTP as their authentication mechanisms. On roll out they noticed that helpdesk started receiving ...

  • Votes

    5

    pin expiry reminder

    Could you add a reminder on login if a PIN is about to expire soon? Ideally I can configure how many days before expiry the reminder comes up.

  • Votes

    4

    The exported report to include combined metrics from sites

    Currently reports generated only for site, where it was initiated. It will be nice to have an option to select is specific report should be generated by site or cluster.

  • Votes

    4

    Change or delete a single secret question

    We would like the ability to delete or change the answer to a single secret question. As it seems now, when a user wants to change the value for a secret question or have ...

  • Votes

    4

    SMS OTP and Mail OTP: Force number/mail validation during Save

    We would like to be able to force user to verify his email address / mobile number when they are adding/modofying manually an SMS OTP / Mail OTP method from ...

  • Votes

    4

    OTP Message should include a variable with the timestamp of the OTP

    On version 5.6U1 the SMS OTP method allows for specific variables to be added as part of the message to be sent to the user. At the moment, only 4 variables are available ...

  • Votes

    4

    Don't include Smartphone enrollments as part of backed up app data for ...

    This behavior was observed when a user migrated from an older iPhone to a new iPhone but may also apply to Android devices. Current situation: The Smartphone enrollments ...

  • Planned

    4

    Configurable RADIUS auto-enrollment behavior

    Current status: When the RADIUS method is configured with a Radius client, a user is auto-enrolled in the RADIUS method no matter if they have an account in the ...

  • Votes

    4

    Allow Events to be configured to use a default repo (if desired) that ...

    For our linux clients we need the option to either have an event ignore the login options list of repositories and use a default repo set at the event level or we need ...

  • Votes

    4

    Allow the servers used by a repository to be configured on one site ...

    Current situation: The configuration for a repository is replicated to each site except for the servers. It requires the administrator set the servers on each site and ...

  • Votes

    4

    Automatic linking of authenticators to like users

    This can be done in the Helpdesk portal but it would be nice to have the automatic linking of authenticators to like users. The criteria by which to define 'like users' ...

  • Votes

    4

    Configurable clean up limit to prevent the mass deletion of users as a ...

    Repositories will do a periodic sync. A user is deleted from an AA repository if they are not returned in the result set of a repository sync. Deleting a user from AA is ...