SlideShare a Scribd company logo
1 of 101
Download to read offline
#engage
#engageug
Ad12
Domino TOTP/2FA - Best Practices and Pitfalls
Martin Leyrer
Milan Matejic
Engage 2022
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 2
Martin Leyrer
Martin Leyrer is a Senior Lab Services Consultant in HCL's Digital
Solutions Lab Services organizations since autumn 2019.
Before joining HCL, worked for eight years in IBM's Software
Group Services Organization, gaining in-depth knowledge on the
whole HCL Collaboration software stack.
Looking beyond the core HCL software stack, other areas of
expertise for Martin are Linux command line tools, IT
Security/Hacking, making stuff blink and combining all of these
areas.
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 3
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Milan Matejic
About us
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 4
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 5
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 6
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation
Wording
How Does it Work?
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 7
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation
Wording
How Does it Work?
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 8
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation
Wording
How Does it Work?
Prerequisites
Setup
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 9
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation
Wording
How Does it Work?
Prerequisites
Setup
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 10
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation User Workflow
Wording
How Does it Work?
Prerequisites
Setup
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 11
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation User Workflow
Wording Administration
How Does it Work?
Prerequisites
Setup
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 12
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites
Setup
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 13
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 14
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Table of Contents
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 15
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Motivation
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 16
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Motivation
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 17
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 18
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
MFA – Multi-factor authentication
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 19
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
2FA – Two-factor authentication
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 20
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
TOTP – Time-based one-time password
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 21
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
TOTP algorithm
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 22
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Authentication server / verifier
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Authy Google Authenticator Microsoft Authenticator
23
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
TOTP Authenticator / Prover
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 24
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Scratch codes
Wording
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 25
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 26
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
RFC 6238
Prover
Verifier
Shared Secret
Moving Factor
Timestep
How Does it Work?
4. Web server forwards TOTP
config to TOTP application
3. ID-Vault sends user s
TOTP config to web server
1. User configures TOTP
application
2. Web server sends the
information to ID-Vault
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 27
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
How Does it Work? – Prover Setup
4. Web server forwards TOTP
config to TOTP application
3. ID-Vault sends user s
TOTP config to web server
1. User configures TOTP
application
2. Web server sends the
information to ID-Vault
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 28
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
How Does it Work? - Authentication
4. Web server grants
access
3. ID-Vault authenticates
the user
1. User enters
credentials and TOTP
2. Web server sends the
TOTP to ID-Vault
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 29
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 30
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Time Sync
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 31
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
DNS
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 32
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Public TLS Certificate
Domino Certificate Manager
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 33
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
ID-Vault
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 34
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Certifier ID File
Inside of Domino Data
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 35
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
HCL Domino 12.0
Incl. v12.0 Templates
Prerequisites
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 36
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 37
37
MFA Trust Certificate
Enable TOTP Login Form
TOTP Configuration
Restart
Setup
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 38
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Create MFA Trust Certificate
mfamgmt create trustcert <Notes_DN_to_allow>
<certifier_ID_file> <certifier_password>
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 39
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Create MFA Trust Certificate Command
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 40
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Check if MFA Trust Certificate is Created
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 41
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Check MFA Trust Certificate and ID-Vault Trust
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 42
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Enable TOTP - Configuration Document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 43
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Enable TOTP - Web Site Document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 44
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Enable TOTP - Web Site Document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 45
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Enable TOTP - Web Site Document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 46
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Enable TOTP - Web Site Document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 47
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
LTPA Token Expiration
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 48
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Configure TOTP Login Form
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 49
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Configure TOTP Login Form (cont.)
domcfg.nsf database
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 50
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Configure TOTP Login Form (cont.)
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 51
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Configure TOTP Login Form - $$LoginUserFormMFA
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 52
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Secure Mail Operations for TOTP
Allow access to ID-Files with TOTP
Optional
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 53
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Secure Mail Operations for TOTP (cont.)
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 54
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Additional Security for ID-Vault
Restrict server access to ID-Vault
Optional
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 55
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Additional Security for ID-Vault – Policy
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 56
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Additional Security for ID-Vault – ID-Vault Conf.
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 57
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Restart
Domino Server
HTTP Task
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 58
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Demo – User Enables MFA
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 59
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 60
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler & TOTP
Fully Supported
Additional settings needed
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 61
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler & TOTP – Verse App
Apple iOS
Google Android
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 62
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler & TOTP – Third Party Apps
Not Supported
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 63
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler & TOTP – Disabling TOTP
Reinstall / Reconfigure
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 64
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler & TOTP – Self-Signed Certificates
Possible!
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 65
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler & TOTP – MFA Setup
Must be done elsewhere!
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 66
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler TOTP Configuration
Identical as for Domino
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 67
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler TOTP Configuration – Security Policy
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 68
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler TOTP Configuration – Token Expiration
Token Expiration
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 69
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Demo New Traveler User
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 70
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Demo Existing Traveler User
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 71
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 72
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
User Workflow
Add additional TOTP devices
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 73
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Add Additional TOTP Devices
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 74
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
User Workflow
Delete TOTP devices
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 75
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Delete TOTP Devices
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 76
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
User Workflow
Request new scratch codes
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 77
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Request New Scratch Codes
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 78
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 79
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration
Check user’s configuration
TOTP Checker
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 80
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration – TOTP Checker
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 81
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration – TOTP Checker Linux - “Interim” Fix
SPR # SPPPCDFF4W
Contact Support
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 82
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration – Check User’s ID-Vault Document
Check user’s ID-Vault document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 83
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration – Check User’s ID-Vault Document
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 84
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration – Reset TOTP Config
Reset user’s TOTP configuration
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 85
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Administration – Reset TOTP Config
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 86
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
TOTP_STEPSIZE=seconds
TOTP_TIMESKEW_STEPS=TOTP_STEPSIZE factor
ENABLE_IDV_CROSSDOMAIN_AUTHENTICATION=1
Administration - Important notes.ini Settings
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 87
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 88
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Troubleshooting
Check configuration
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 89
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Troubleshooting
Run “TOTP Configuration Check”
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 90
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Troubleshooting
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 91
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Troubleshooting
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 92
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Troubleshooting
Collect Fiddler trace
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 93
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Troubleshooting
Set debug in notes.ini
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 94
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
DEBUG_IDV_CONNECT=1
DEBUG_IDV_API=1
DEBUG_IDVAULT_SERVER_SELECTION=1
iNotes_WA_DebugSecMailNotesID=1
DEBUG_INETPWD_CHECK=1
WEBAUTH_VERBOSE_TRACE=1
Troubleshooting - Debug Parameters
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 95
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
DEBUG_TOTP=2
DEBUG_IDV_TOTP_TRANS=1
Troubleshooting - Debug Parameters (cont.)
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 96
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Roadmap
Motivation User Workflow
Wording Administration
How Does it Work? Troubleshooting
Prerequisites Q & A
Setup References
Traveler
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 97
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Q & A
Does TOTP work offline!?
YES!
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 98
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Q & A
TOTP code same on every device!?
No!
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Evolve, disrupt. Together…
Further questions?
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 100
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
TOTP algorithm definition
https://datatracker.ietf.org/doc/html/rfc6238
OTP, TOTP and HOTP
https://www.onelogin.com/learn/otp-totp-hotp
Domino TOTP
https://help.hcltechsw.com/domino/12.0.0/admin/conf_totp_overview.html
References
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 101
Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com
Traveler TOTP
https://help.hcltechsw.com/traveler/12.0.0/mobile_support_totp.html
Statista
https://www.statista.com/statistics/1305250/reasons-for-not-using-mfa-us-uk/
References

More Related Content

What's hot

RNUG - Dirty Secrets of the Notes Client
RNUG - Dirty Secrets of the Notes ClientRNUG - Dirty Secrets of the Notes Client
RNUG - Dirty Secrets of the Notes ClientChristoph Adler
 
JMP105 - "How Stuff Works" - Domino Style!
JMP105 - "How Stuff Works" - Domino Style!JMP105 - "How Stuff Works" - Domino Style!
JMP105 - "How Stuff Works" - Domino Style!NerdGirlJess
 
Engage2022 - Domino Admin Tips
Engage2022 - Domino Admin TipsEngage2022 - Domino Admin Tips
Engage2022 - Domino Admin TipsGabriella Davis
 
Domino policies deep dive
Domino policies deep diveDomino policies deep dive
Domino policies deep diveMartijn de Jong
 
Domino Server Health - Monitoring and Managing
 Domino Server Health - Monitoring and Managing Domino Server Health - Monitoring and Managing
Domino Server Health - Monitoring and ManagingGabriella Davis
 
Best Practice TLS for IBM Domino
Best Practice TLS for IBM DominoBest Practice TLS for IBM Domino
Best Practice TLS for IBM DominoJared Roberts
 
IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2
IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2
IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2jayeshpar2006
 
INF107 - Integrating HCL Domino and Microsoft 365
INF107 - Integrating HCL Domino and Microsoft 365INF107 - Integrating HCL Domino and Microsoft 365
INF107 - Integrating HCL Domino and Microsoft 365Dylan Redfield
 
April, 2021 OpenNTF Webinar - Domino Administration Best Practices
April, 2021 OpenNTF Webinar - Domino Administration Best PracticesApril, 2021 OpenNTF Webinar - Domino Administration Best Practices
April, 2021 OpenNTF Webinar - Domino Administration Best PracticesHoward Greenberg
 
IBM Notes Traveler Best Practices
IBM Notes Traveler Best PracticesIBM Notes Traveler Best Practices
IBM Notes Traveler Best Practicesjayeshpar2006
 
IBM Domino / IBM Notes Performance Tuning
IBM Domino / IBM Notes Performance Tuning IBM Domino / IBM Notes Performance Tuning
IBM Domino / IBM Notes Performance Tuning Vladislav Tatarincev
 
What is new in Notes & Domino Deleopment V10.x
What is new in Notes & Domino Deleopment V10.xWhat is new in Notes & Domino Deleopment V10.x
What is new in Notes & Domino Deleopment V10.xUlrich Krause
 
Securing Lotus Domino for the Web - Email Relay
Securing Lotus Domino for the Web - Email RelaySecuring Lotus Domino for the Web - Email Relay
Securing Lotus Domino for the Web - Email RelayJohn Lawren James
 
Simplifying The S's: Single Sign-On, SPNEGO and SAML
Simplifying The S's: Single Sign-On, SPNEGO and SAMLSimplifying The S's: Single Sign-On, SPNEGO and SAML
Simplifying The S's: Single Sign-On, SPNEGO and SAMLGabriella Davis
 
HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...
HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...
HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...Ales Lichtenberg
 
MES102 - Verse on Premises 2.0 Best Practices
MES102 - Verse on Premises 2.0 Best PracticesMES102 - Verse on Premises 2.0 Best Practices
MES102 - Verse on Premises 2.0 Best PracticesDylan Redfield
 
HTTP - The Other Face Of Domino
HTTP - The Other Face Of DominoHTTP - The Other Face Of Domino
HTTP - The Other Face Of DominoGabriella Davis
 
DNUG HCL Domino 11 First Look
DNUG HCL Domino 11 First LookDNUG HCL Domino 11 First Look
DNUG HCL Domino 11 First Lookdaniel_nashed
 
RNUG - HCL Notes V11 Performance Boost
RNUG - HCL Notes V11 Performance BoostRNUG - HCL Notes V11 Performance Boost
RNUG - HCL Notes V11 Performance BoostChristoph Adler
 

What's hot (20)

RNUG - Dirty Secrets of the Notes Client
RNUG - Dirty Secrets of the Notes ClientRNUG - Dirty Secrets of the Notes Client
RNUG - Dirty Secrets of the Notes Client
 
JMP105 - "How Stuff Works" - Domino Style!
JMP105 - "How Stuff Works" - Domino Style!JMP105 - "How Stuff Works" - Domino Style!
JMP105 - "How Stuff Works" - Domino Style!
 
Engage2022 - Domino Admin Tips
Engage2022 - Domino Admin TipsEngage2022 - Domino Admin Tips
Engage2022 - Domino Admin Tips
 
Domino policies deep dive
Domino policies deep diveDomino policies deep dive
Domino policies deep dive
 
Domino Server Health - Monitoring and Managing
 Domino Server Health - Monitoring and Managing Domino Server Health - Monitoring and Managing
Domino Server Health - Monitoring and Managing
 
Best Practice TLS for IBM Domino
Best Practice TLS for IBM DominoBest Practice TLS for IBM Domino
Best Practice TLS for IBM Domino
 
IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2
IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2
IBM Notes Traveler Administration and Log Troubleshooting tips - Part 2
 
INF107 - Integrating HCL Domino and Microsoft 365
INF107 - Integrating HCL Domino and Microsoft 365INF107 - Integrating HCL Domino and Microsoft 365
INF107 - Integrating HCL Domino and Microsoft 365
 
April, 2021 OpenNTF Webinar - Domino Administration Best Practices
April, 2021 OpenNTF Webinar - Domino Administration Best PracticesApril, 2021 OpenNTF Webinar - Domino Administration Best Practices
April, 2021 OpenNTF Webinar - Domino Administration Best Practices
 
IBM Notes Traveler Best Practices
IBM Notes Traveler Best PracticesIBM Notes Traveler Best Practices
IBM Notes Traveler Best Practices
 
IBM Domino / IBM Notes Performance Tuning
IBM Domino / IBM Notes Performance Tuning IBM Domino / IBM Notes Performance Tuning
IBM Domino / IBM Notes Performance Tuning
 
What is new in Notes & Domino Deleopment V10.x
What is new in Notes & Domino Deleopment V10.xWhat is new in Notes & Domino Deleopment V10.x
What is new in Notes & Domino Deleopment V10.x
 
Securing Lotus Domino for the Web - Email Relay
Securing Lotus Domino for the Web - Email RelaySecuring Lotus Domino for the Web - Email Relay
Securing Lotus Domino for the Web - Email Relay
 
Simplifying The S's: Single Sign-On, SPNEGO and SAML
Simplifying The S's: Single Sign-On, SPNEGO and SAMLSimplifying The S's: Single Sign-On, SPNEGO and SAML
Simplifying The S's: Single Sign-On, SPNEGO and SAML
 
HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...
HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...
HCL Sametime 12.0 – Converting from native Domino Directory to LDAP and Migra...
 
MES102 - Verse on Premises 2.0 Best Practices
MES102 - Verse on Premises 2.0 Best PracticesMES102 - Verse on Premises 2.0 Best Practices
MES102 - Verse on Premises 2.0 Best Practices
 
HTTP - The Other Face Of Domino
HTTP - The Other Face Of DominoHTTP - The Other Face Of Domino
HTTP - The Other Face Of Domino
 
DNUG HCL Domino 11 First Look
DNUG HCL Domino 11 First LookDNUG HCL Domino 11 First Look
DNUG HCL Domino 11 First Look
 
RNUG - HCL Notes V11 Performance Boost
RNUG - HCL Notes V11 Performance BoostRNUG - HCL Notes V11 Performance Boost
RNUG - HCL Notes V11 Performance Boost
 
Spnego configuration
Spnego configurationSpnego configuration
Spnego configuration
 

Similar to Engage.UG 2022 - Domino TOTP/2FA - Best Practices and Pitfalls

Hcl nomad web vista tecnica e HCL SafeLinx
Hcl nomad web vista tecnica e HCL SafeLinx Hcl nomad web vista tecnica e HCL SafeLinx
Hcl nomad web vista tecnica e HCL SafeLinx Matteo Bisi
 
Value Stream Management and the Next Decade of DevOps
Value Stream Management and the Next Decade of DevOpsValue Stream Management and the Next Decade of DevOps
Value Stream Management and the Next Decade of DevOpsDevOps.com
 
Automate Behavior-driven Development (Stanford WebCamp 2022)
Automate Behavior-driven Development (Stanford WebCamp 2022)Automate Behavior-driven Development (Stanford WebCamp 2022)
Automate Behavior-driven Development (Stanford WebCamp 2022)DOCOMO Innovations, Inc.
 
Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...
Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...
Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...HCL Technologies
 
Automate Behavior-driven Development (DrupalCon Portland 2022)
Automate Behavior-driven Development (DrupalCon Portland 2022)Automate Behavior-driven Development (DrupalCon Portland 2022)
Automate Behavior-driven Development (DrupalCon Portland 2022)DOCOMO Innovations, Inc.
 
Tried and True Approach to Cloud Native Design - An Experienced Based Method
Tried and True Approach to Cloud Native Design - An Experienced Based MethodTried and True Approach to Cloud Native Design - An Experienced Based Method
Tried and True Approach to Cloud Native Design - An Experienced Based MethodVMware Tanzu
 
How Ideapreneurs take Relationships Beyond the Contract
How Ideapreneurs take Relationships Beyond the ContractHow Ideapreneurs take Relationships Beyond the Contract
How Ideapreneurs take Relationships Beyond the ContractHCL Technologies
 
apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...
apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...
apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...apidays
 
TDNF Seminar
TDNF SeminarTDNF Seminar
TDNF SeminarEmpowerID
 
DACHNUG50 CNX1 Roadmap.pdf
DACHNUG50 CNX1 Roadmap.pdfDACHNUG50 CNX1 Roadmap.pdf
DACHNUG50 CNX1 Roadmap.pdfDNUG e.V.
 
Blockchain workshop design thinking and technical workshop
Blockchain workshop   design thinking and technical workshopBlockchain workshop   design thinking and technical workshop
Blockchain workshop design thinking and technical workshopJuarez Junior
 
Integrations - Thinking outside the box - Presentation Engage 2023 in Amsterdam
Integrations - Thinking outside the box - Presentation Engage 2023 in AmsterdamIntegrations - Thinking outside the box - Presentation Engage 2023 in Amsterdam
Integrations - Thinking outside the box - Presentation Engage 2023 in AmsterdamRoland Driesen
 
HCL Sametime 11.5 Meetings - A look behind the curtain
HCL Sametime 11.5 Meetings - A look behind the curtainHCL Sametime 11.5 Meetings - A look behind the curtain
HCL Sametime 11.5 Meetings - A look behind the curtaineschwalb
 
Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...
Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...
Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...HCL Technologies
 
HCL Domino Volt Installation, Configuration & New Features
HCL Domino Volt Installation, Configuration & New FeaturesHCL Domino Volt Installation, Configuration & New Features
HCL Domino Volt Installation, Configuration & New Featureshemantnaik
 
HCL OneTest Performance
HCL OneTest PerformanceHCL OneTest Performance
HCL OneTest PerformanceHCLSoftware
 
Deploying WebRTC successfully – A web developer perspective
Deploying WebRTC successfully – A web developer perspectiveDeploying WebRTC successfully – A web developer perspective
Deploying WebRTC successfully – A web developer perspectiveDialogic Inc.
 
Cloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover TrackCloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover TrackLaurenWendler
 

Similar to Engage.UG 2022 - Domino TOTP/2FA - Best Practices and Pitfalls (20)

Hcl nomad web vista tecnica e HCL SafeLinx
Hcl nomad web vista tecnica e HCL SafeLinx Hcl nomad web vista tecnica e HCL SafeLinx
Hcl nomad web vista tecnica e HCL SafeLinx
 
Value Stream Management and the Next Decade of DevOps
Value Stream Management and the Next Decade of DevOpsValue Stream Management and the Next Decade of DevOps
Value Stream Management and the Next Decade of DevOps
 
Open ntf 2020-jun
Open ntf 2020-junOpen ntf 2020-jun
Open ntf 2020-jun
 
Automate Behavior-driven Development (Stanford WebCamp 2022)
Automate Behavior-driven Development (Stanford WebCamp 2022)Automate Behavior-driven Development (Stanford WebCamp 2022)
Automate Behavior-driven Development (Stanford WebCamp 2022)
 
Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...
Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...
Become an Enterprise of the Future through Cloud Assessment & Readiness Tool ...
 
Automate Behavior-driven Development (DrupalCon Portland 2022)
Automate Behavior-driven Development (DrupalCon Portland 2022)Automate Behavior-driven Development (DrupalCon Portland 2022)
Automate Behavior-driven Development (DrupalCon Portland 2022)
 
Tried and True Approach to Cloud Native Design - An Experienced Based Method
Tried and True Approach to Cloud Native Design - An Experienced Based MethodTried and True Approach to Cloud Native Design - An Experienced Based Method
Tried and True Approach to Cloud Native Design - An Experienced Based Method
 
How Ideapreneurs take Relationships Beyond the Contract
How Ideapreneurs take Relationships Beyond the ContractHow Ideapreneurs take Relationships Beyond the Contract
How Ideapreneurs take Relationships Beyond the Contract
 
apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...
apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...
apidays LIVE Paris 2021 - EDI & API on One Integration Platform by Mir Mustha...
 
TDNF Seminar
TDNF SeminarTDNF Seminar
TDNF Seminar
 
DACHNUG50 CNX1 Roadmap.pdf
DACHNUG50 CNX1 Roadmap.pdfDACHNUG50 CNX1 Roadmap.pdf
DACHNUG50 CNX1 Roadmap.pdf
 
Blockchain workshop design thinking and technical workshop
Blockchain workshop   design thinking and technical workshopBlockchain workshop   design thinking and technical workshop
Blockchain workshop design thinking and technical workshop
 
Integrations - Thinking outside the box - Presentation Engage 2023 in Amsterdam
Integrations - Thinking outside the box - Presentation Engage 2023 in AmsterdamIntegrations - Thinking outside the box - Presentation Engage 2023 in Amsterdam
Integrations - Thinking outside the box - Presentation Engage 2023 in Amsterdam
 
HCL Sametime 11.5 Meetings - A look behind the curtain
HCL Sametime 11.5 Meetings - A look behind the curtainHCL Sametime 11.5 Meetings - A look behind the curtain
HCL Sametime 11.5 Meetings - A look behind the curtain
 
Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...
Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...
Lower Operational Costs and increase ROI - HCL’s CMS solution for a Global Pl...
 
Enabling Agility Through DevOps
Enabling Agility Through DevOpsEnabling Agility Through DevOps
Enabling Agility Through DevOps
 
HCL Domino Volt Installation, Configuration & New Features
HCL Domino Volt Installation, Configuration & New FeaturesHCL Domino Volt Installation, Configuration & New Features
HCL Domino Volt Installation, Configuration & New Features
 
HCL OneTest Performance
HCL OneTest PerformanceHCL OneTest Performance
HCL OneTest Performance
 
Deploying WebRTC successfully – A web developer perspective
Deploying WebRTC successfully – A web developer perspectiveDeploying WebRTC successfully – A web developer perspective
Deploying WebRTC successfully – A web developer perspective
 
Cloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover TrackCloud Innovation Tour - Discover Track
Cloud Innovation Tour - Discover Track
 

Recently uploaded

Leveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + KobitonLeveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + KobitonApplitools
 
Advantages of Cargo Cloud Solutions.pptx
Advantages of Cargo Cloud Solutions.pptxAdvantages of Cargo Cloud Solutions.pptx
Advantages of Cargo Cloud Solutions.pptxRTS corp
 
Zer0con 2024 final share short version.pdf
Zer0con 2024 final share short version.pdfZer0con 2024 final share short version.pdf
Zer0con 2024 final share short version.pdfmaor17
 
Osi security architecture in network.pptx
Osi security architecture in network.pptxOsi security architecture in network.pptx
Osi security architecture in network.pptxVinzoCenzo
 
Understanding Plagiarism: Causes, Consequences and Prevention.pptx
Understanding Plagiarism: Causes, Consequences and Prevention.pptxUnderstanding Plagiarism: Causes, Consequences and Prevention.pptx
Understanding Plagiarism: Causes, Consequences and Prevention.pptxSasikiranMarri
 
Introduction to Firebase Workshop Slides
Introduction to Firebase Workshop SlidesIntroduction to Firebase Workshop Slides
Introduction to Firebase Workshop Slidesvaideheekore1
 
[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf
[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf
[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdfSteve Caron
 
Mastering Project Planning with Microsoft Project 2016.pptx
Mastering Project Planning with Microsoft Project 2016.pptxMastering Project Planning with Microsoft Project 2016.pptx
Mastering Project Planning with Microsoft Project 2016.pptxAS Design & AST.
 
2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf
2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf
2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdfAndrey Devyatkin
 
SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?Alexandre Beguel
 
Amazon Bedrock in Action - presentation of the Bedrock's capabilities
Amazon Bedrock in Action - presentation of the Bedrock's capabilitiesAmazon Bedrock in Action - presentation of the Bedrock's capabilities
Amazon Bedrock in Action - presentation of the Bedrock's capabilitiesKrzysztofKkol1
 
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full RecordingOpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full RecordingShane Coughlan
 
VictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News UpdateVictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News UpdateVictoriaMetrics
 
GraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4j
GraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4jGraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4j
GraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4jNeo4j
 
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...Bert Jan Schrijver
 
Best Angular 17 Classroom & Online training - Naresh IT
Best Angular 17 Classroom & Online training - Naresh ITBest Angular 17 Classroom & Online training - Naresh IT
Best Angular 17 Classroom & Online training - Naresh ITmanoharjgpsolutions
 
Pros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdf
Pros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdfPros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdf
Pros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdfkalichargn70th171
 
Understanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM ArchitectureUnderstanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM Architecturerahul_net
 
Ronisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited CatalogueRonisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited Catalogueitservices996
 
The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...
The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...
The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...kalichargn70th171
 

Recently uploaded (20)

Leveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + KobitonLeveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
Leveraging AI for Mobile App Testing on Real Devices | Applitools + Kobiton
 
Advantages of Cargo Cloud Solutions.pptx
Advantages of Cargo Cloud Solutions.pptxAdvantages of Cargo Cloud Solutions.pptx
Advantages of Cargo Cloud Solutions.pptx
 
Zer0con 2024 final share short version.pdf
Zer0con 2024 final share short version.pdfZer0con 2024 final share short version.pdf
Zer0con 2024 final share short version.pdf
 
Osi security architecture in network.pptx
Osi security architecture in network.pptxOsi security architecture in network.pptx
Osi security architecture in network.pptx
 
Understanding Plagiarism: Causes, Consequences and Prevention.pptx
Understanding Plagiarism: Causes, Consequences and Prevention.pptxUnderstanding Plagiarism: Causes, Consequences and Prevention.pptx
Understanding Plagiarism: Causes, Consequences and Prevention.pptx
 
Introduction to Firebase Workshop Slides
Introduction to Firebase Workshop SlidesIntroduction to Firebase Workshop Slides
Introduction to Firebase Workshop Slides
 
[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf
[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf
[ CNCF Q1 2024 ] Intro to Continuous Profiling and Grafana Pyroscope.pdf
 
Mastering Project Planning with Microsoft Project 2016.pptx
Mastering Project Planning with Microsoft Project 2016.pptxMastering Project Planning with Microsoft Project 2016.pptx
Mastering Project Planning with Microsoft Project 2016.pptx
 
2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf
2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf
2024-04-09 - From Complexity to Clarity - AWS Summit AMS.pdf
 
SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?SAM Training Session - How to use EXCEL ?
SAM Training Session - How to use EXCEL ?
 
Amazon Bedrock in Action - presentation of the Bedrock's capabilities
Amazon Bedrock in Action - presentation of the Bedrock's capabilitiesAmazon Bedrock in Action - presentation of the Bedrock's capabilities
Amazon Bedrock in Action - presentation of the Bedrock's capabilities
 
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full RecordingOpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
OpenChain AI Study Group - Europe and Asia Recap - 2024-04-11 - Full Recording
 
VictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News UpdateVictoriaMetrics Q1 Meet Up '24 - Community & News Update
VictoriaMetrics Q1 Meet Up '24 - Community & News Update
 
GraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4j
GraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4jGraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4j
GraphSummit Madrid - Product Vision and Roadmap - Luis Salvador Neo4j
 
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
JavaLand 2024 - Going serverless with Quarkus GraalVM native images and AWS L...
 
Best Angular 17 Classroom & Online training - Naresh IT
Best Angular 17 Classroom & Online training - Naresh ITBest Angular 17 Classroom & Online training - Naresh IT
Best Angular 17 Classroom & Online training - Naresh IT
 
Pros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdf
Pros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdfPros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdf
Pros and Cons of Selenium In Automation Testing_ A Comprehensive Assessment.pdf
 
Understanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM ArchitectureUnderstanding Flamingo - DeepMind's VLM Architecture
Understanding Flamingo - DeepMind's VLM Architecture
 
Ronisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited CatalogueRonisha Informatics Private Limited Catalogue
Ronisha Informatics Private Limited Catalogue
 
The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...
The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...
The Ultimate Guide to Performance Testing in Low-Code, No-Code Environments (...
 

Engage.UG 2022 - Domino TOTP/2FA - Best Practices and Pitfalls

  • 1. #engage #engageug Ad12 Domino TOTP/2FA - Best Practices and Pitfalls Martin Leyrer Milan Matejic Engage 2022
  • 2. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 2 Martin Leyrer Martin Leyrer is a Senior Lab Services Consultant in HCL's Digital Solutions Lab Services organizations since autumn 2019. Before joining HCL, worked for eight years in IBM's Software Group Services Organization, gaining in-depth knowledge on the whole HCL Collaboration software stack. Looking beyond the core HCL software stack, other areas of expertise for Martin are Linux command line tools, IT Security/Hacking, making stuff blink and combining all of these areas.
  • 3. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 3 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Milan Matejic About us
  • 4. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 4 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation
  • 5. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 5 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation Wording
  • 6. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 6 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation Wording How Does it Work?
  • 7. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 7 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation Wording How Does it Work? Prerequisites
  • 8. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 8 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation Wording How Does it Work? Prerequisites Setup
  • 9. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 9 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation Wording How Does it Work? Prerequisites Setup Traveler
  • 10. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 10 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation User Workflow Wording How Does it Work? Prerequisites Setup Traveler
  • 11. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 11 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation User Workflow Wording Administration How Does it Work? Prerequisites Setup Traveler
  • 12. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 12 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Setup Traveler
  • 13. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 13 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup Traveler
  • 14. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 14 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Table of Contents Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 15. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 15 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Motivation
  • 16. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 16 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Motivation
  • 17. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 17 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 18. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 18 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com MFA – Multi-factor authentication Wording
  • 19. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 19 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 2FA – Two-factor authentication Wording
  • 20. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 20 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com TOTP – Time-based one-time password Wording
  • 21. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 21 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com TOTP algorithm Wording
  • 22. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 22 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Authentication server / verifier Wording
  • 23. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Authy Google Authenticator Microsoft Authenticator 23 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com TOTP Authenticator / Prover Wording
  • 24. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 24 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Scratch codes Wording
  • 25. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 25 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 26. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 26 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com RFC 6238 Prover Verifier Shared Secret Moving Factor Timestep How Does it Work? 4. Web server forwards TOTP config to TOTP application 3. ID-Vault sends user s TOTP config to web server 1. User configures TOTP application 2. Web server sends the information to ID-Vault
  • 27. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 27 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com How Does it Work? – Prover Setup 4. Web server forwards TOTP config to TOTP application 3. ID-Vault sends user s TOTP config to web server 1. User configures TOTP application 2. Web server sends the information to ID-Vault
  • 28. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 28 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com How Does it Work? - Authentication 4. Web server grants access 3. ID-Vault authenticates the user 1. User enters credentials and TOTP 2. Web server sends the TOTP to ID-Vault
  • 29. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 29 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 30. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 30 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Time Sync Prerequisites
  • 31. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 31 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com DNS Prerequisites
  • 32. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 32 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Public TLS Certificate Domino Certificate Manager Prerequisites
  • 33. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 33 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com ID-Vault Prerequisites
  • 34. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 34 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Certifier ID File Inside of Domino Data Prerequisites
  • 35. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 35 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com HCL Domino 12.0 Incl. v12.0 Templates Prerequisites
  • 36. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 36 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 37. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 37 37 MFA Trust Certificate Enable TOTP Login Form TOTP Configuration Restart Setup
  • 38. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 38 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Create MFA Trust Certificate mfamgmt create trustcert <Notes_DN_to_allow> <certifier_ID_file> <certifier_password>
  • 39. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 39 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Create MFA Trust Certificate Command
  • 40. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 40 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Check if MFA Trust Certificate is Created
  • 41. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 41 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Check MFA Trust Certificate and ID-Vault Trust
  • 42. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 42 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Enable TOTP - Configuration Document
  • 43. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 43 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Enable TOTP - Web Site Document
  • 44. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 44 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Enable TOTP - Web Site Document
  • 45. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 45 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Enable TOTP - Web Site Document
  • 46. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 46 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Enable TOTP - Web Site Document
  • 47. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 47 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com LTPA Token Expiration
  • 48. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 48 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Configure TOTP Login Form
  • 49. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 49 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Configure TOTP Login Form (cont.) domcfg.nsf database
  • 50. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 50 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Configure TOTP Login Form (cont.)
  • 51. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 51 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Configure TOTP Login Form - $$LoginUserFormMFA
  • 52. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 52 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Secure Mail Operations for TOTP Allow access to ID-Files with TOTP Optional
  • 53. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 53 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Secure Mail Operations for TOTP (cont.)
  • 54. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 54 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Additional Security for ID-Vault Restrict server access to ID-Vault Optional
  • 55. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 55 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Additional Security for ID-Vault – Policy
  • 56. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 56 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Additional Security for ID-Vault – ID-Vault Conf.
  • 57. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 57 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Restart Domino Server HTTP Task
  • 58. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 58 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Demo – User Enables MFA
  • 59. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 59 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 60. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 60 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler & TOTP Fully Supported Additional settings needed
  • 61. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 61 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler & TOTP – Verse App Apple iOS Google Android
  • 62. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 62 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler & TOTP – Third Party Apps Not Supported
  • 63. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 63 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler & TOTP – Disabling TOTP Reinstall / Reconfigure
  • 64. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 64 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler & TOTP – Self-Signed Certificates Possible!
  • 65. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 65 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler & TOTP – MFA Setup Must be done elsewhere!
  • 66. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 66 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler TOTP Configuration Identical as for Domino
  • 67. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 67 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler TOTP Configuration – Security Policy
  • 68. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 68 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler TOTP Configuration – Token Expiration Token Expiration
  • 69. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 69 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Demo New Traveler User
  • 70. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 70 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Demo Existing Traveler User
  • 71. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 71 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 72. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 72 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com User Workflow Add additional TOTP devices
  • 73. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 73 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Add Additional TOTP Devices
  • 74. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 74 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com User Workflow Delete TOTP devices
  • 75. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 75 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Delete TOTP Devices
  • 76. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 76 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com User Workflow Request new scratch codes
  • 77. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 77 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Request New Scratch Codes
  • 78. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 78 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 79. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 79 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration Check user’s configuration TOTP Checker
  • 80. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 80 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration – TOTP Checker
  • 81. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 81 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration – TOTP Checker Linux - “Interim” Fix SPR # SPPPCDFF4W Contact Support
  • 82. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 82 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration – Check User’s ID-Vault Document Check user’s ID-Vault document
  • 83. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 83 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration – Check User’s ID-Vault Document
  • 84. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 84 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration – Reset TOTP Config Reset user’s TOTP configuration
  • 85. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 85 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Administration – Reset TOTP Config
  • 86. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 86 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com TOTP_STEPSIZE=seconds TOTP_TIMESKEW_STEPS=TOTP_STEPSIZE factor ENABLE_IDV_CROSSDOMAIN_AUTHENTICATION=1 Administration - Important notes.ini Settings
  • 87. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 87 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 88. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 88 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Troubleshooting Check configuration
  • 89. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 89 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Troubleshooting Run “TOTP Configuration Check”
  • 90. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 90 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Troubleshooting
  • 91. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 91 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Troubleshooting
  • 92. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 92 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Troubleshooting Collect Fiddler trace
  • 93. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 93 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Troubleshooting Set debug in notes.ini
  • 94. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 94 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com DEBUG_IDV_CONNECT=1 DEBUG_IDV_API=1 DEBUG_IDVAULT_SERVER_SELECTION=1 iNotes_WA_DebugSecMailNotesID=1 DEBUG_INETPWD_CHECK=1 WEBAUTH_VERBOSE_TRACE=1 Troubleshooting - Debug Parameters
  • 95. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 95 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com DEBUG_TOTP=2 DEBUG_IDV_TOTP_TRANS=1 Troubleshooting - Debug Parameters (cont.)
  • 96. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 96 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Roadmap Motivation User Workflow Wording Administration How Does it Work? Troubleshooting Prerequisites Q & A Setup References Traveler
  • 97. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 97 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Q & A Does TOTP work offline!? YES!
  • 98. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 98 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Q & A TOTP code same on every device!? No!
  • 99. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Evolve, disrupt. Together… Further questions?
  • 100. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 100 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com TOTP algorithm definition https://datatracker.ietf.org/doc/html/rfc6238 OTP, TOTP and HOTP https://www.onelogin.com/learn/otp-totp-hotp Domino TOTP https://help.hcltechsw.com/domino/12.0.0/admin/conf_totp_overview.html References
  • 101. Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com 101 Copyright © 2022 HCL Technologies Limited | www.hcltechsw.com Traveler TOTP https://help.hcltechsw.com/traveler/12.0.0/mobile_support_totp.html Statista https://www.statista.com/statistics/1305250/reasons-for-not-using-mfa-us-uk/ References