• Votes

    4

    Security notification after user logs in through NAAF

    1) User logs in through NAAF. 2) After logging in, the user receives a security notification by email or text message that says for example "your account was used to log ...

  • Votes

    4

    Linux Stop Duplicate Messages in Shell

    In Linux when using the CLI (Or Terminal) there are duplicate messages generated before authenticating. This feature would fix this. EX: $ sudo whoami Please wait... ...

  • Votes

    3

    Only Allow Simple Chain On Same Workstation Where High Security Chain ...

    Add a feature that stops user based simple chain use. Normally if a use authenticates using a high security chain they are able to then use the simple chain on any ...

  • Votes

    3

    Linux Simple Chain After Successful Auth With High Security Chain

    Add the feature for Linux systems to be able to behave like the Windows Client allowing for a simple chain to be used after a high security chain has been authenticated ...

  • Votes

    4

    Linux Credential Caching

    Add the ability for credentials to be cached on Linux. This way if the AA Server is unavailable users can still login or if on a laptop without internet access a user can ...

  • Votes

    4

    4-Eyes Authentication

    Most of the authentication mechanisims do not have a feature for authentication approval process by design. If AAF would able to do this enterprise customers can use it ...

  • Votes

    15

    Kiosk Mode

    Customer is working with generic system accounts that are used by multiple employees. As AAF is not able to enroll multiple otp-/uwf-tokens/cards this will not work with ...

  • Votes

    1

    Allow to configure the authenticator on multiple devices

    Allow to configure the smartphone authenticator on multiple devices. Such as on a tablet as an additional device.

  • Planned

    10

    update notification

    Notify the administrator about open updates (of services as well as OS). Ideally this would automatically be part of the admin dashboard on login. Also a customization ...

  • Votes

    3

    Disallow modifications to the SMS OTP authenticator method from end ...

    There is no ability to disable modifications made to the SMS OTP Authenticator via the end user portal. The end user is now able to edit the default cell phone number ...

  • Votes

    3

    Disallow modifications to the Email OTP authenticator method from end ...

    There is no ability to disable modifications made to the Email OTP Authenticator via the end user portal. The end user is now able to edit the default email address for ...

  • Votes

    2

    Check for the similarity of the new passwords with the password ...

    Method: Password New Option: Check for the similarity of the new passwords with the password history

  • Votes

    4

    PIN complexity requirements policy

    There is a 'Rename to PIN' functionality in the 'Password' method. I observed that the complexity requirements policy - in this method - does not reflect this. For ...

  • Votes

    4

    OTP Message should include a variable with the timestamp of the OTP

    On version 5.6U1 the SMS OTP method allows for specific variables to be added as part of the message to be sent to the user. At the moment, only 4 variables are available ...

  • Votes

    3

    Voice Call method phone number self enroll / register

    The newer Voice OTP has a feature that allows the user to add his/her phone number during enrollment whereas the Voice Call (requires PIN) method requires this to come ...

  • Planned

    23

    Offline emergency password

    Requested: Several customers The idea behind this is an emergency situation. For example: Company XYZ will be facing an audit, so they are establishing a 2FA for all ...

  • Planned

    10

    Support for more Linux distribution

    Some customer would like to integrate the AAF with other linux derivatives as example debian. So it is possible to get more security on environments with different ...

  • Votes

    10

    Ability to use configurable LDAP queries

    depending of content of custom attributes like CUSTOMER_EMPLOYEE_TYPE either internal or external or 401k the customer wants to adjust LDAP queries and searches

  • Votes

    3

    configurable methods or adding custom methods with different ...

    We want through the methods settings yesterday and when looking into the fingerprint options there was a threshold value to be adjusted. Some other adjustments in other ...

  • Planned

    21

    Ability to use Radius Attributes

    make Radius more configurable in AAF so that attributes can be changed / configured