* (2ndF/OTP mail)* Combination/Choice for password (using session data)* Combination: reinitialize password without being authentified* (Twitter, Facebook,… => no UserDB)* Menu: how to calculate rights for SAML icons (with internal rules)3.0:* tab plugin for menu* Real federation* Unify SAML/OIDC presentation in Choice* Read-only manager* Brute-force detection ?