A great 2 factor authentication tool for Domino

After having received a request for a 2FA solution for Domino I searched the web and found this great solution from cyone – the Two-Factor authentication.

Some mails later with Sergey Golubev he sent me some information about this solution and also the pricing which is extremely straightforward.

Now to the implementation: it took about 30 minutes for implementing this tool for an environment with one server and one test user ( me ). You can choose 3 types of notification – I took the one with the Google Authenticator and it´s running very fine !

The login process is looking this way without great customizations:

login_1

login_2

login_3

You also can exclude some content for the 2FA like Traveler and can choose each single user from your directory for which you can enable the requirement.

Compared with other solutions this is the most simple and effective way for a more secure environment.

 

Update on Monday, August 19th:

Today I checked the feature of the “Self registration” and created the requested database on our server. Just some modifications in the ACL of the main application and the self registration for users works like a charm.

IBM Notes V10.x: Search for attachment names not working anymore

Yesterday I received an email from a customer complaining that a search on a full text indexed mail database does not find attachment names.

I tried this on my mail database on a local replica and also on our server and could see the same result: attachment names are not found.

After opening a case @HCL yesterday, today I received the information, that this regression in well known under the SPR # JCUS975RGX:

SPR # JCUS975RGX => Allow attachments to be found by searching for their file names
This is regression started on V10.0.0 and was working on previous versions.

If you also are facing this problem with Notes/Domino V10.x just open a case and refer to this SPR to increase the weightage for getting a solution.

RFC822StripUnquotedDelimiters

https://www-01.ibm.com/support/docview.wss?uid=ibm10882634&myns=swglotus&mynp=OCSSKTMJ&mync=E&cm_sp=swglotus-_-OCSSKTMJ-_-E

Abstract
SPR# CEMABAVNMT RFC822 addresses with unquoted commas and semicolons in a friendly part causes an issue on the Domino server mail addressing. RFC822StripUnquotedDelimiters serves as a work around in fixing the issue

Content
From the SPR# JALS658T7S – Mail is parsed into two separate addresses on a reply/reply with history.

This fix prevents splitting of RFC822 addresses caused by unquoted commas and semicolons in a friendly part. This fix requires setting the Notes.ini variable “RFC822StripUnquotedDelimiters=1”.

But on some cases, setting the parameter to RFC822StripUnquotedDelimiters=0 will workaround the issue for inbound SMTP when User in the TO field goes to the BCC field when entering a Domino 10.0.1 server

Permanent fix will be available in Domino 10.0.1 FP2. SPR# CEMABAVNMT

Debug parameters used to identify the issue(only to be set when working with support):

set config SMTPSaveImportErrors=2
set config MIMEExceptions=2
set config Debugitrfc822.cpp=1
set config Debug_iCal_Addresses=1
set config SMTPDebugIO=3
restart task smtp
restart task router

Great publications in the last days

IBM/HCL just release the following enhancements in the last days:

Domino AppDev Pack 1.0.1 for Linux and NEW: 1.0.1 for Windows

> Link to the official announcement: https://ibm.co/2WE4iio

IBM Verse on Premises 1.0.7 with the following enhancements:

https://www.ibm.com/support/knowledgecenter/en/SS4RQV_1.0.7/whats_new/whats_new_in_version_1.0.7_.html

  • Enhancements to importing internet calendar events
    In this release, you can import internet calendar events from an .ics file that is attached to a mail message, in addition to importing from an .ics file on your computer. Also, using either import method, you can import up to 100 events from one .ics file. The previous limit was 50 events.
  • Original times shown when repeat meetings are rescheduled
    When a repeat meeting is rescheduled, attendees see the original times followed by the new times when they open the reschedule notice.
  • Read messages marked as “Prevent copying” or “Keep Private”
    When IBM® Notes® users and IBM iNotes® users send “private” messages that cannot be copied, IBM Verse® users can now read those messages. Previously, the messages could be read only through Notes or iNotes.
  • Attachment name used as message subject if no subject provided
    If a new message with an attachment doesn’t include a subject, the attachment name (minus the file extension) is used as the subject. If the message has multiple attachments, the first attachment listed is used.
  • Option to download all attachments at once
    When there are multiple attachments in a message, a Download All option is available to download all of them at once. Previously, you had to download each attachment separately.
  • Improved integration of forwarding addresses
    When a person has a forwarding address – used to deliver mail to an external address – the person’s forwarding address and primary directory address can now both be shown.
  • Filter by unread messages after searching
    You can now filter search results to show only unread messages. Previously, you could show unread messages only for the entire Inbox or an entire folder.
  • Clearer prompt to search directory when using typeahead
    When you use typeahead in an addressing field to find names, the prompt to search the directory is clearer.

IBM Domino 10.0.1 FP1

> Link to the downloads: https://ibm.co/2CQ1dnI

IBM Notes 10.0.1 FP1

> Link to the downloads: https://ibm.co/2FFaQq2

 

As mentioned the Language Pack German will be available in the next days.

Domino Directory Integration – Question

HCL asks their customers and also their partners about the needed integration of any directory in the Domino environment.

If you want to be part of this group and want to participate you´re welcome to answer some questions regarding your needs here:

https://t.co/IL3JwWwDWg

The only think you need is an IBM ID.

The Total Economic Impact™ Of IBM Domino – Cost Savings And Business Benefits Enabled By IBM Domino Application Development Platform

Yesterday I received a great link from a good friend. They use IBM Domino for business critical applications and participated in this analysis of Forrester.

Take some time and read this summary about the positive aspects about Domino as application platform.

forrester-tei-ibm-domino-jan-16-2019_final_01022901usen

Hidden “Rules” tab for mail rules in the configuration document

Today I had the issue ( after some years again ) that I could not see the rules tab inside the configuration document for a specific mail server:

config_document

I did the mentioned steps in the following IBM TN:

Create a Formula agent, designed to act on selected documents, to delete the field ActForm:
Steps to create the agent:
1. Start the Domino Designer client and open the Domino Directory database.
2. From the menu, select Create -> Agent.
3. The Agent Properties dialog will appear. Give the agent a name. The Runtime settings can be left at the defaults of “Action Menu Selection” and “All Selected Documents”.
4. Click on the X mark in the upper righthand corner to close and save the Agent Properties settings. 5. In the main pane, change the “Run” keyword selection from “Simple Action(s)” to “Formula”.
6. Enter the following code into the main window: FIELD ActForm :=@Deletefield
7. From the menu select File -> Save.
8. Exit from the Domino Designer client.

Steps to run the agent:
1. Open the Domino Directory from the Notes client.
2. Open the view Configuration -> Servers -> Configurations.
3. Select the affected configuration documents.
4. From the menu select Actions -> <agent name>.

Now when the Configuration document is opened from the Notes client, the Rules tab will display as expected.