• Planned

    5

    Add more than one bluetooth authenticator device

    Customer ask for ability to configure more than one bluetooth device as an authenticator. For example, to use either smart watch or smartphone.

  • Votes

    5

    Ability to install Export file from Console as root

    Customer has AA Appliances inside DMZ and unable to import from a web or ftp server. Would like ability to install from console to a UNC path. Even better allow to ...

  • Planned

    5

    Modify Client Login Extension

    We would like to request the client login extension link be shown before chain selection in the Windows agent. Currently it only shows up if the user selects the LDAP ...

  • Votes

    5

    Gernerate OTPs for other Services with the OTP Tool

    Customers wish an ability to generate OTPs for other services with the OTP Tool.

  • Votes

    5

    Rolling over RADIUS authentication

    getting a possibility to check PIN + OTP on AA and once this is not accepting / valid fowarding the PIN and OTP to a 3rd party AAA server -> using then the Radius Client ...

  • Votes

    5

    Different set of security questions for different groups of users

    Currently when defining security questions, we define a set of questions applicable for the entire AA instance. It is desirable to have different sets of security ...

  • Votes

    5

    Separate out application logs into it's own tab/file

    Current situation: Application logs (in CEF) are written to Syslog. Syslog also has OS-related information written to it. It is sometimes difficult to find certain ...

  • Votes

    5

    Allow IP address in multiple RADIUS events

    We are leveraging the NAS Identifier in that each of our RADIUS configurations have an Event for each chain. This enables us to provide our users a clever way to select ...

  • Votes

    5

    Set CEF log forward policy per site

    We want to forward the CEF logs to our enterprise logging solution that has data collectors all over the globe. It would be desirable to set the Syslog destination on a ...

  • Votes

    5

    Ability to rename Interface field names (Especially the Interfaces ...

    I have a customer that rolled out AAF for enterprise users with SMS and TOTP as their authentication mechanisms. On roll out they noticed that helpdesk started receiving ...

  • Votes

    5

    Extend REST-API - Assign User to existing OTP Token or Bulk import

    Please add these two functions in the Rest-API 1) Assign Users to an Existing OTP Token which is imported 2) Import for OTP tokens with Serialnumber & set a flag to make ...

  • Votes

    5

    pin expiry reminder

    Could you add a reminder on login if a PIN is about to expire soon? Ideally I can configure how many days before expiry the reminder comes up.

  • Votes

    4

    The exported report to include combined metrics from sites

    Currently reports generated only for site, where it was initiated. It will be nice to have an option to select is specific report should be generated by site or cluster.

  • Votes

    4

    Just in time import of SMS OTP and MAIL OTP when available on LDAP

    When using LDAP attribute to autocreate SMS OTP and Mail OTP methods, they are imported with delay If a customer has alternive ways to enroll SMS OTP and Mail OTP ...

  • Votes

    4

    Change or delete a single secret question

    We would like the ability to delete or change the answer to a single secret question. As it seems now, when a user wants to change the value for a secret question or have ...

  • Votes

    4

    Azure AD as repository

    Advanced Authentication can be configured as an IDP for Azure AD. However, it is necessary AA connects to Active Directory in order to register the user and enrol ...

  • Votes

    4

    SMS OTP and Mail OTP: Force number/mail validation during Save

    We would like to be able to force user to verify his email address / mobile number when they are adding/modofying manually an SMS OTP / Mail OTP method from ...

  • Votes

    4

    More flexibility for Reports

    Some customers wish more flexibility for their Reports. Please provide an option that an admins can select which specific information are needed for the report. As an ...

  • Votes

    4

    Mobile application for Android Face-Unlock option

    Since more and more Android mobiles are providing face unlock option it would be great to have face unlock as an additional option for the existing pin & fingerprint ...

  • Votes

    4

    AAF should recognize if user was authenticated by thirdparty before ...

    In our viewpoint AAF should be able to recognize if the user comes from the ThinClient. For an example: Scenario1: ThinClient & Citrix &VDI (without AAF) 1. Customer ...