• Votes

    3

    Set user attribute in repository after enrollment (LDAP hook)

    Often AAF is working in conjunction with Identity Management / Access Management systems. In these cases it is desirable to know when users have enrolled (one or more) ...

  • Planned

    4

    Logon Filter for "other" directories

    A potential customer is looking for the logon filter feature but for non-AD directories, in their case an Apple OpenDirectory (a fork of openLDAP). This could as well be ...

  • Votes

    2

    Ability to set a user specific fixed token

    With other Radius solutions (e.g. SMS Passcode) it is possible to set a fixed code in case the user forgot his smartphone.

  • Votes

    14

    Azure Active Directory Integration for conditional access

    Would like to see that we can integrate Advanced Authentication with Microsoft Azure Active Directory conditional access policies to add two-factor authentication to ...

  • Votes

    6

    TACACS support

    It would be great to support TACACS integration, not only RADIUS. Many network devices today are configured using TACACS, not RADIUS.

  • Votes

    1

    Mobile App 3rd Party CA Support

    Android 8 and Mobile App 3.1.5 doesn't allow use of 3rd Party Certificate Authorities, even though they are installed for "VPN & Apps" on the device. The response is ...

  • Votes

    3

    Ability to specify the shortname deliminator and placement

    For a RADIUS Server event, you can specify multiple chains which is very helpful in allowing the user to choose the best method to which they have enrolled - similar to ...

  • Votes

    4

    Multi-language support for Twilio

    Twilio supports many different languages for their text-to-speech converter. This is a simple extension to the current Twilio configuration in AAF. At ...

  • Votes

    4

    Specify chain through RADIUS attribute

    For RADIUS Server event, you can specify multiple chains. As part of the RADIUS challenge-response authentication, it is possible to explictly define a chain to ...

  • Votes

    6

    Support for RSA's Next Token Mode

    RSA SecurID Access has Next Token Mode. This is where the user may be challenged to provide a second token code on their RSA keyfob after providing a first one due to ...

  • Votes

    6

    Add the ability to restrict authentication to only managed devices

    Customer would like the ability to restrict mobile device (specifically Smartphone method) to ONLY devices that are currently being managed by an MDM solution. In this ...

  • Votes

    1

    Integrate in NAAF similar functionnality as eDirectory HOTP function

    Actually eDirectory offer a way to make 2 factor authentication using a simple LDAP bind. User concatenate their password with the HOTP code (mypassword123456). Some ...

  • Planned

    21

    Integrate AT citizen card ( Buergerkarte ) as authenticator

    the information around the citizen card are limited however you can have a look here: There are two options of the "Buergerkarte": As mobile ignatur and as Smart Card ...

  • Votes

    2

    Resend OTP

    In our current scenario SMS contract is used as default authentication contract for user to login into the portal. When a user trying to login SMS Password is asking, ...

  • Planned

    10

    Support for more Linux distribution

    Some customer would like to integrate the AAF with other linux derivatives as example debian. So it is possible to get more security on environments with different ...

  • Planned

    21

    Ability to use Radius Attributes

    make Radius more configurable in AAF so that attributes can be changed / configured

  • Votes

    4

    Ability to use Repository Attribute as PIN

    Requested by: 7-11 Description: ability to assign an attribute (such as employee #) as default PIN

  • Votes

    1

    Offline Server Update

    Requested by: NXP Description: Provide a method for Offline updates

  • Planned

    4

    Alert on Security Patch

    Requested by: NXP Description: Ability to define email address(es) for alert of critical patches availability

  • Votes

    4

    Second Factor Skipping Assignment

    Requested by: CHS Description: Ability to assign skipping behavior by group (Physicians =16 hours, Clinicians =10hours, Administration =0hours)