Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

Status Under Consideration
Workspace Domino
Categories Security
Created by Guest
Created on Nov 20, 2018

Internet password lockout whitelist

The internet passowrd lockout feature needs to be improved, like more logging, idea: DOMINO-I-389.

It would be an improvment if there would be an option to add a whitelist for IP ranges. So if a user is locked out he could still login within an trustet internal IP range. The user could then still be able to work within this IP range and not be completly locked out. 

  • Attach files
  • Admin
    Thomas Hampel
    Reply
    |
    Jan 6, 2023

    Still it is unclear to me what problem it would solve. Can you please explain?

  • Guest
    Reply
    |
    Nov 21, 2018

    It's very unlikely that a brute force attack is done within an internal (trusted) range.
    For the user it would be less disruptive if an attack from the internet is locking his account all the time. So he would be able to login at least within this defined range. It would be just optional.

  • Admin
    Thomas Hampel
    Reply
    |
    Nov 21, 2018

    I don't get the benefit of this. If the password is entered wrong, why would you allow unlimited wrong attempts? Isn't this an invitation for running brute force attacks from within this network range?