-
Votes
5
Add NAS-IP-Address to Radius event
Please add NAS-IP-Address (Attribut-Type 4) to Radius event. Because some Appliances (as example Cisco ASA) do not support NAS-Identifier.
Comments (0) | by: Kevin S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Option to hide QR Code in TOTP enrollment
It would be a good feature if there is an option to disable the QR-Code or hide the QR Code, if TOTP method is enrolled. If a user re-open an enrolled T-OTP over the ...
Comments (3) | by: Kevin S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Check if firewall ports are open
We would prefer an Option to check if needed Firewall Ports are open. In our opinion this check-up can be located in the Management Consol of AAF. Additionally there ...
Comments (0) | by: Dennis M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Using the Smartphone app push notification to Accept/Decline ...
During enrollment, we don't have a notification of the enrollment process that is acknowledged by the user being enrolled. So far the methods we have assume that the ...
Comments (0) | by: Bruno U. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Support for Configuring SMS Sender Policy Using a JSON Body or CURL ...
Currently when configuring the SMS Sender policy we only support submitting parameters in the http request URL. I was working with a customer that uses Avaya as their ...
Comments (0) | by: Eric L. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Disable/remove save button when (smartphone) method is enrolled, ...
The save button is confusing for users if the method is already enrolled. Deleting an re-adding the method is easier to explain to users, especially if "Enroll TOTP ...
Comments (2) | by: Bart A. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualization
-
Votes
5
Help Desk "Change User"
Currently need to click on 'username' to get to 'change user'. Not as intuitive for new users. Can it be a separate button on top to click?
Comments (2) | by: Bryan W. | over a year ago | Last activity over a year ago | Status changed over a year ago | Dashboards/Visualization
-
Votes
5
Define authentication levels for each individual chain
We have an enterprise access management/SSO application (ForgeRock OpenAM) used to protect web applications. We are looking to integrate Advanced Authentication with it ...
Comments (1) | by: Tim S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Brute force / BOT Attack and Data leakage Prevention
A change in authentication flow can help prevent brute force bot attacks: 1. Information leakage - valid usernames & passwords discovery 2. User lockout due to bad ...
Comments (3) | by: Paul M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
5
AA should have a well-thought out configuration option for explicitly ...
AA should have a well-thought out configuration option for explicitly designated AA Webserver role servers to turn off access to all portals ...
Comments (0) | by: brian r. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Improve Client Log rotation
Please improve the client log rolling The debugging of a sporadically issue is very worse if the logging is running several days/weeks. Today for the naming of the log ...
Comments (0) | by: Kevin S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
5
Temporarily block user account after x failed attempts – when endpoint ...
Feature: Being able to configure the system to temporarily block user account after x failed attempts (for instance account could be blocked for 30mn after 5 failed ...
Comments (0) | by: Jerome M. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Votes
5
Ability to authenticate trough RADIUS if LDAP Passwor dis expired
Please provide an option to allow authentication trough RADIUS if LDAP Password is expired. Today: It is not possible to authenticate trough the radius event with a ...
Comments (0) | by: Kevin S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Planned
5
AAF smartphone app should allow you to copy the TOTP enrollments
AAF smartphone app should allow you to copy the TOTP enrollments
Comments (1) | by: brian r. | over a year ago | Last activity over a year ago | Status changed over a year ago | Other
-
Planned
5
Add more than one bluetooth authenticator device
Customer ask for ability to configure more than one bluetooth device as an authenticator. For example, to use either smart watch or smartphone.
Comments (0) | by: Yarden B. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Ability to install Export file from Console as root
Customer has AA Appliances inside DMZ and unable to import from a web or ftp server. Would like ability to install from console to a UNC path. Even better allow to ...
Comments (1) | by: Kevin P. | over a year ago | Last activity over a year ago | Status changed over a year ago | Installation/Deployment
-
Planned
5
Modify Client Login Extension
We would like to request the client login extension link be shown before chain selection in the Windows agent. Currently it only shows up if the user selects the LDAP ...
Comments (1) | by: Dennis R. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Gernerate OTPs for other Services with the OTP Tool
Customers wish an ability to generate OTPs for other services with the OTP Tool.
Comments (3) | by: Kevin S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Integrations
-
Votes
5
Rolling over RADIUS authentication
getting a possibility to check PIN + OTP on AA and once this is not accepting / valid fowarding the PIN and OTP to a 3rd party AAA server -> using then the Radius Client ...
Comments (1) | by: Frank S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration
-
Votes
5
Different set of security questions for different groups of users
Currently when defining security questions, we define a set of questions applicable for the entire AA instance. It is desirable to have different sets of security ...
Comments (3) | by: Tim S. | over a year ago | Last activity over a year ago | Status changed over a year ago | Configuration