{"id":244951,"date":"2024-02-08T10:59:30","date_gmt":"2024-02-08T10:59:30","guid":{"rendered":"https:\/\/wordpress.prominic.net\/?p=244951"},"modified":"2024-02-07T11:28:25","modified_gmt":"2024-02-07T11:28:25","slug":"domino-v14-deep-dive-into-enhanced-security-measures","status":"publish","type":"post","link":"https:\/\/wordpress.prominic.net\/domino-v14-deep-dive-into-enhanced-security-measures\/","title":{"rendered":"Domino V14: Deep Dive into Enhanced Security Measures"},"content":{"rendered":"\n[et_pb_section fb_built=”1″ _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_row _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”]
HCL has progressed with its deep-dive series on Domino V14 with a great overview of security. Let\u2019s explore why security is such an important piece of the Domino puzzle.<\/span><\/p>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”] Here are some of the things that you must have by now in terms of security:<\/span><\/p>\n \n \n HCL Domino V14 comes with some more security benefits, making a good product better. You might have noticed when talking to people in IT that security does not mean the same thing for everyone. Here are some aspects included when talking about security:<\/span><\/p>[\/et_pb_text][et_pb_image src=”https:\/\/wordpress.prominic.net\/wp-content\/uploads\/2024\/02\/Domino-V14_-Security.png” alt=”Domino V14_ Security” title_text=”Domino V14_ Security” align=”center” _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][\/et_pb_image][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”] When talking about authentication you must make sure that it is simple and secure and yet sometimes we get experiences that are not that easy:<\/span><\/p>[\/et_pb_text][et_pb_image src=”https:\/\/wordpress.prominic.net\/wp-content\/uploads\/2024\/02\/Domino-V14_-Security1.png” alt=”Domino V14_ Security1″ title_text=”Domino V14_ Security1″ align=”center” _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][\/et_pb_image][et_pb_image src=”https:\/\/wordpress.prominic.net\/wp-content\/uploads\/2024\/02\/Domino-V14_-Security2.png” alt=”DominoV14_Authentication_Approaches” title_text=”Domino V14_ Security2″ align=”center” _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_text quote_border_weight=”14px” quote_border_color=”#811937″ _builder_version=”4.24.0″ link_font=”||||||||” quote_font=”|700|||||||” quote_text_color=”#000000″ quote_font_size=”18px” quote_line_height=”1.8em” header_font=”||||||||” header_2_font=”|700|||||||” header_2_font_size=”25px” header_2_line_height=”1.5em” max_width=”700px” max_width_tablet=”” max_width_phone=”” max_width_last_edited=”on|tablet” header_2_font_size_tablet=”30px” header_2_font_size_phone=”15px” header_2_font_size_last_edited=”on|desktop” locked=”off” global_colors_info=”{}” header_font_size__hover=”30px” header_font_size__hover_enabled=”30px” header_letter_spacing__hover=”0px” header_letter_spacing__hover_enabled=”0px” header_text_shadow_style__hover=”none” header_text_shadow_style__hover_enabled=”none” header_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_2_font_size__hover=”26px” header_2_font_size__hover_enabled=”26px” header_2_letter_spacing__hover=”0px” header_2_letter_spacing__hover_enabled=”0px” header_2_line_height__hover=”1em” header_2_line_height__hover_enabled=”1em” header_2_text_shadow_style__hover=”none” header_2_text_shadow_style__hover_enabled=”none” header_2_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_2_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_3_font_size__hover=”22px” header_3_font_size__hover_enabled=”22px” header_3_letter_spacing__hover=”0px” header_3_letter_spacing__hover_enabled=”0px” header_3_line_height__hover=”1em” header_3_line_height__hover_enabled=”1em” header_3_text_shadow_style__hover=”none” header_3_text_shadow_style__hover_enabled=”none” header_3_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_3_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_4_font_size__hover=”18px” header_4_font_size__hover_enabled=”18px” header_4_letter_spacing__hover=”0px” header_4_letter_spacing__hover_enabled=”0px” header_4_line_height__hover=”1em” header_4_line_height__hover_enabled=”1em” header_4_text_shadow_style__hover=”none” header_4_text_shadow_style__hover_enabled=”none” header_4_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_4_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_5_font_size__hover=”16px” header_5_font_size__hover_enabled=”16px” header_5_letter_spacing__hover=”0px” header_5_letter_spacing__hover_enabled=”0px” header_5_line_height__hover=”1em” header_5_line_height__hover_enabled=”1em” header_5_text_shadow_style__hover=”none” header_5_text_shadow_style__hover_enabled=”none” header_5_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_5_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_6_font_size__hover=”14px” header_6_font_size__hover_enabled=”14px” header_6_letter_spacing__hover=”0px” header_6_letter_spacing__hover_enabled=”0px” header_6_line_height__hover=”1em” header_6_line_height__hover_enabled=”1em” header_6_text_shadow_style__hover=”none” header_6_text_shadow_style__hover_enabled=”none” header_6_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_6_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” text_letter_spacing__hover=”0px” text_letter_spacing__hover_enabled=”0px” text_text_shadow_style__hover=”none” text_text_shadow_style__hover_enabled=”none” text_text_shadow_color__hover=”rgba(0,0,0,0.4)” text_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)”] There are several approaches to the authentication process, these being just a small number of them:<\/span><\/p>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”] Many of these rely on passwords, and it\u2019s best not to have to use passwords since they need to be remembered by the user’s number one.<\/span><\/p>\n Secondly, they need to be strong, unique, changed regularly, and never reused. That often is not the case as experience has taught us all.\u00a0<\/span><\/p>\n Last but not least, passwords are the weakest link due to phishing, shoulder surfing, keylogging, etc.<\/span><\/p>\n Fortunately, there is a solution to this problem. The first step to take is to authenticate to a central identity provider, not the back-end server.\u00a0<\/span><\/p>\n The old classic standard here is Security Assertion Markup Language 2.0 (SAML). It\u2019s web browser-centric, heavy-weight, and supported by Domino for federated identity since version 9.0.<\/span><\/p>\n Another option is OpenID Connect 1.0 (OIDC). This is the new standard built on top of the OAuth 2.0 framework. It connects well with bearerAuth, it\u2019s mobile\/native \/ SPA friendly and lighter weight than SAML.\u00a0<\/span><\/p>\n Some problems that arise with both are: the configuration is usually hard, interoperability is iffy, they are not a universal solution, and cannot federate everything.<\/span><\/p>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”] Challenges with Federated Identity<\/span><\/p>\n [\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][et_pb_text quote_border_weight=”14px” quote_border_color=”#811937″ _builder_version=”4.24.0″ link_font=”||||||||” quote_font=”|700|||||||” quote_text_color=”#000000″ quote_font_size=”18px” quote_line_height=”1.8em” header_font=”||||||||” header_2_font=”|700|||||||” header_2_font_size=”25px” header_2_line_height=”1.5em” max_width=”700px” max_width_tablet=”” max_width_phone=”” max_width_last_edited=”on|tablet” header_2_font_size_tablet=”30px” header_2_font_size_phone=”15px” header_2_font_size_last_edited=”on|desktop” locked=”off” global_colors_info=”{}” header_font_size__hover=”30px” header_font_size__hover_enabled=”30px” header_letter_spacing__hover=”0px” header_letter_spacing__hover_enabled=”0px” header_text_shadow_style__hover=”none” header_text_shadow_style__hover_enabled=”none” header_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_2_font_size__hover=”26px” header_2_font_size__hover_enabled=”26px” header_2_letter_spacing__hover=”0px” header_2_letter_spacing__hover_enabled=”0px” header_2_line_height__hover=”1em” header_2_line_height__hover_enabled=”1em” header_2_text_shadow_style__hover=”none” header_2_text_shadow_style__hover_enabled=”none” header_2_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_2_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_3_font_size__hover=”22px” header_3_font_size__hover_enabled=”22px” header_3_letter_spacing__hover=”0px” header_3_letter_spacing__hover_enabled=”0px” header_3_line_height__hover=”1em” header_3_line_height__hover_enabled=”1em” header_3_text_shadow_style__hover=”none” header_3_text_shadow_style__hover_enabled=”none” header_3_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_3_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_4_font_size__hover=”18px” header_4_font_size__hover_enabled=”18px” header_4_letter_spacing__hover=”0px” header_4_letter_spacing__hover_enabled=”0px” header_4_line_height__hover=”1em” header_4_line_height__hover_enabled=”1em” header_4_text_shadow_style__hover=”none” header_4_text_shadow_style__hover_enabled=”none” header_4_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_4_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_5_font_size__hover=”16px” header_5_font_size__hover_enabled=”16px” header_5_letter_spacing__hover=”0px” header_5_letter_spacing__hover_enabled=”0px” header_5_line_height__hover=”1em” header_5_line_height__hover_enabled=”1em” header_5_text_shadow_style__hover=”none” header_5_text_shadow_style__hover_enabled=”none” header_5_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_5_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” header_6_font_size__hover=”14px” header_6_font_size__hover_enabled=”14px” header_6_letter_spacing__hover=”0px” header_6_letter_spacing__hover_enabled=”0px” header_6_line_height__hover=”1em” header_6_line_height__hover_enabled=”1em” header_6_text_shadow_style__hover=”none” header_6_text_shadow_style__hover_enabled=”none” header_6_text_shadow_color__hover=”rgba(0,0,0,0.4)” header_6_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)” text_letter_spacing__hover=”0px” text_letter_spacing__hover_enabled=”0px” text_text_shadow_style__hover=”none” text_text_shadow_style__hover_enabled=”none” text_text_shadow_color__hover=”rgba(0,0,0,0.4)” text_text_shadow_color__hover_enabled=”rgba(0,0,0,0.4)”] Passkeys are considered to be a solution to the whole password management issue:<\/span><\/p>[\/et_pb_text][et_pb_image src=”https:\/\/wordpress.prominic.net\/wp-content\/uploads\/2024\/02\/Domino-V14_-Security3.png” alt=”Domino V14_Passkeys” title_text=”Domino V14_ Security3″ align=”center” _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”][\/et_pb_image][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”] You can check out a demo of how passkeys work with Domino v14 in the <\/span>recording of the webinar.\u00a0<\/span><\/a><\/p>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”] Requirements<\/span><\/p>\n Supported Platforms:<\/span><\/p>\n Create Passkey database<\/b><\/p>\n Replication<\/b>:<\/span><\/p>\n Optional: Customize the Domino Server Relying Party Name<\/b><\/p>\n For example your site is: <\/span>https:\/\/www.domino.example.com:8443<\/span><\/a><\/p>\n\n
\n
\n
\n
Authentication Approaches<\/span><\/h3>\n<\/blockquote>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”]
\n
\n
Passkeys<\/span><\/h3>\n<\/blockquote>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”]
Passkeys – Setup<\/span><\/h4>[\/et_pb_text][et_pb_text _builder_version=”4.24.0″ _module_preset=”default” global_colors_info=”{}”]
\n
\n
\n
\n
\n
\n