• Votes

    6

    Add date/time parameter for Email OTP method

    We want to have the ability to configure date/time parameter. Currently we're limited in what we can configure in the email template. By sending date/time, users can for ...

  • Votes

    3

    Option to use repositories instead of groups

    Everywhere we can limit something by group, it would be nice to be able to limit by repository as well. We have a repository that contains only user objects. We can ...

  • Votes

    7

    Configurable Offline OTP Cache Size

    We have laptops setup to use 2 factor authentication on logon. Windows natively handles the caching of AD credentials properly (and can be configured via group policy). ...

  • Votes

    2

    Apply Advanced authentication by IP or wireless network (Windows ...

    Hi Our client asks if the second factor can be applied only to users who are out of the office. They have the NAAF client installed on their Surface equipment and they ...

  • Planned

    9

    Allow enroll admins the ability to unlock user accounts

    When a user is locked out according to the Lockout policy, it would be desirable for someone with enroll admin role to be able to unlock a user. Typically unlocking users ...

  • Votes

    7

    Validate correct password when saving repository settings

    Every time you adjust the settings of a repository, you are required to provide a password for the user you are connecting as however there is no check to see if the ...

  • Votes

    6

    Regenerate endpoint id and secret without having to delete and ...

    It would be convinenet to be able to regenerate an Endpoint's id and secret instead of the current process of having to delete the endpoint and re-creating it. When ...

  • Votes

    5

    Different set of security questions for different groups of users

    Currently when defining security questions, we define a set of questions applicable for the entire AA instance. It is desirable to have different sets of security ...

  • Votes

    4

    Configurable clean up limit to prevent the mass deletion of users as a ...

    Repositories will do a periodic sync. A user is deleted from an AA repository if they are not returned in the result set of a repository sync. Deleting a user from AA is ...

  • Votes

    3

    Configurable grace period before a user is deleted from AA due to not ...

    Repositories will do a periodic sync. A user is deleted from an AA repository if they are not returned in the result set of a repository sync. Deleting a user from AA is ...

  • Votes

    5

    Ability to rename Interface field names (Especially the Interfaces ...

    I have a customer that rolled out AAF for enterprise users with SMS and TOTP as their authentication mechanisms. On roll out they noticed that helpdesk started receiving ...

  • Votes

    6

    Configuration of Windows Client through command line arguments at ...

    The Windows Client must be configured/customized post installation through the config.properties file. For options where it makes sense, it would be beneficial to ...

  • Votes

    4

    Automatic linking of authenticators to like users

    This can be done in the Helpdesk portal but it would be nice to have the automatic linking of authenticators to like users. The criteria by which to define 'like users' ...

  • Votes

    9

    Audit logging of configuration changes

    It would be beneficial to have an audit log of configuration changes (repositories, methods, chains, events, endpoints, etc.) to have some accountability and for ...

  • Votes

    2

    Policy for Help desk Emergency Password.

    Have a Policy that will limit time of how long an Emergency Password can be set for or used. Currently you can create for many years. Max age of Emergency Password ...

  • Planned

    8

    Smartphone Enrollment - Provide ways to seed Username and Description

    When user scans the QR they are prompted to enter username and description. Would like ability to customize where you use: Username: %REPO%\%USERNAME% Description: ...

  • Votes

    2

    Use Case: Workers will be on a ship or out of office for 1 – 6 months, ...

    We have this for NSL and would like to see same option for AA cached credentials

  • Votes

    1

    QR code generator

    Automatically generate QR for manually write seed/secret. After refresh page or immediately when written in box. Or add section to web management with this functionality. ...

  • Votes

    3

    Only Allow Simple Chain On Same Workstation Where High Security Chain ...

    Add a feature that stops user based simple chain use. Normally if a use authenticates using a high security chain they are able to then use the simple chain on any ...

  • Votes

    3

    Disallow modifications to the SMS OTP authenticator method from end ...

    There is no ability to disable modifications made to the SMS OTP Authenticator via the end user portal. The end user is now able to edit the default cell phone number ...