• Votes

    3

    CEF Log Forward Policy Increase the Number of Servers

    Today we have the Option to set only one Server. But if we can increase the number of servers, we have the option to spread the logfiles. This would a better solution ...

  • Votes

    9

    Ability that an enroll admin can only manage users from specific ...

    Today every enroll admin can set or change methods for every user. This can be a security risk. We would like to have the ability that an enroll admin can only manage ...

  • Votes

    9

    Customize wording inside user facing interfaces

    Looking to customize verbiage inside user facing web interfaces to match either internal language/references or technical level of staff. For instance: "<p>Welcome to ...

  • Votes

    5

    Rolling over RADIUS authentication

    getting a possibility to check PIN + OTP on AA and once this is not accepting / valid fowarding the PIN and OTP to a 3rd party AAA server -> using then the Radius Client ...

  • Planned

    2

    granular rights for authenticator sharing

    Customer needs this option on the one hand for admins, but it could be to much risk if a helpdesk employee can takeover an CxO authenticator provide an extra role to ...

  • Votes

    3

    LDAP Password Expired

    If the LDAP Password Expired, can we get an Option for Set a New Password in the Enrollment Center to change or set a new Password.

  • Planned

    5

    AAF smartphone app should allow you to copy the TOTP enrollments

    AAF smartphone app should allow you to copy the TOTP enrollments

  • Planned

    12

    Allow the AAF smartphone app to acceptance requests from the locked ...

    Allow the AAF smartphone app to acceptance requests from the locked phone screen

  • Votes

    7

    Combine some AAF client login screens the login process is to heavy

    AAF login screen 1 username input AAF login screen 2 chain selection input AAF login screen 3 password input AAF login screen 4 other method input For example ...

  • Votes

    2

    Netiq Mobile Application for Smartphones

    Can we have an Option for, after a rollout the Application via AirWatch have a way for Auto Accept the EULA.

  • Votes

    6

    Event Based Lockout Policies

    We would like to see event based lockout policies with the ability to configure different lockout attempt thresholds and durations and not effect other events for the ...

  • Planned

    3

    A way to delete OATH seed-files more than one per selection.

    A way to delete OATH seed-files more than one per selection. If we would get a checkbox for the selection of the file to be deleted. To delete several Seed-files at once.

  • Votes

    1

    Adding parameters to MSI properties - NAAF Device Service MSI Package

    We would like to install device service and change these 2 custom parameters: pki.vendorModule pki.forceVirtualChannels Is it possible that you will add these ...

  • Votes

    4

    Allow the servers used by a repository to be configured on one site ...

    Current situation: The configuration for a repository is replicated to each site except for the servers. It requires the administrator set the servers on each site and ...

  • Votes

    3

    Device Fingerprint

    Hi, At the moment, we could define 2 Chains whereby Chain1 is LDAP Password+Smartphone and Chain2 is LDAP Password for example. Chain 1 is used for the 1st time and ...

  • Votes

    7

    Support FIDO 2 for Windows Authentication

    AAF supports only FIDO2 for webauthentication. Please add support for FIDO2 authentication in the windows login.

  • Planned

    6

    Hide offline OTP option if offline OTP is disabled in Smartphone ...

    Current situation: When offline OTP is disabled for the Smartphone method, the user is still presented the ability to authenticate with the offline OTP at the AAF web ...

  • Votes

    7

    Let's change eToken/Smartcard password on credential provider

    Now there is no possibility to change the eToken password at the credential provider. if the password is expired the user has to phone the Helpdesk to create a emergency ...

  • Votes

    1

    accept only PKI keys from trusted CAs

    Add an option to disable the item "Generate a key pair" when the user register a PKI token, and let users only select a valid certificate from the token. This would be ...

  • Votes

    5

    Separate out application logs into it's own tab/file

    Current situation: Application logs (in CEF) are written to Syslog. Syslog also has OS-related information written to it. It is sometimes difficult to find certain ...