Skip to Main Content
IBM Power Ideas Portal


This portal is to open public enhancement requests against IBM Power Systems products, including IBM i. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

My votes: Security

Showing 40

MI GENUUID Version 4

The MI instruction GENUUID should be able to generate an UUID version 4 too. Use Case: An UUID version 1 seems not to be unique enough to use it in an ELK stack. Currently we solve this problem by using java.util.UUID with RPG.
almost 8 years ago in IBM i / Security 4 Delivered

Subject Alternative Name in CSR

Currently there is no way to create a CSR with a SAN. Google Chrome is now looking for a SAN instead of CN Error: "Subject Alternative Name Missing" or NET::ERR_CERT_COMMON_NAME_INVALID or "Your connection is not private"During Transport Layer Sec...
almost 8 years ago in IBM i / Security 2 Delivered

Customize encryption types for network authentication

When creating new keytab entries, the OS will automatically create entries for all known encryption types on the system: 56-bit DES 56-bit DES using key derivation 168-bit DES using key derivation 128-bit AES 256-bit AES ARCFOUR Since onl...
about 2 years ago in IBM i / Security 3 Delivered

Digital Certificate Manager - Need API to delete certificates in *SYSTEM store

We have over 200 IBM i partitions globally and need an API to delete certificates / certificate authorities within the Digital Certificate Manager. Use Case: DCM on each IBM i partition contains the certificate authorities from every other IBM i p...
almost 5 years ago in IBM i / Security 6 Delivered

DCM needs a Remove Certificate Assignment option.

The DCM GUI is not intuitive to users when attempting to remove certificate assignments. To remove one certificate assignment, you must go to Manage Application Definitions > select the + for an application > then click on "Assign" and unche...
about 2 years ago in IBM i / Security 3 Delivered

Remove invalid option from help for CHGUSRAUD.

Prompt CHGUSRAUD Press F1 for help on User action auditing . . . . . . AUDLVL You will see: *NETSCK Sockets tasks are audited. The following are some examples: o Accept o Connect o DHCP address assigned o DHCP address not assigned o Filtered mail ...
almost 6 years ago in IBM i / Security 2 Delivered

Better security for password validation program

Hello, I'am wondering if that would not be possible to secure a little bit better the validation program that can be setup in the QPWDVLDPGM and/or in the "QIBM_QSY_VLD_PASSWRD » format VLDP0100 and VLDP0200 exit points. I understand that just the...
over 5 years ago in IBM i / Security 5 Delivered

Suppress CPIB319 in QSECIDL processing

Can CPIB319 message "Profile already disabled" be made optional for QSECIDL processing? Use Case: We have some procedural hurdles to actually deleted profiles. We disable them regularly, though. When the QSECIDL jobs run checking for inactive prof...
over 6 years ago in IBM i / Security 4 Delivered

Prevent passwords that match user profile

We need a way to prevent that the password matches the user profile. The available exit programs are not bullet proof. A new system value or password rule should be created to prevent the setup of a password that matches the user profile. Use Case...
over 7 years ago in IBM i / Security 8 Delivered

Would like QNTC to support AES SMB2 mutual authentication using Kerberos

QNTC, AES, and SMB2 fail to authenticate using Kerberos to network shares. This issue is related to the encryption type of Kerberos ticket. When AES is used, it will need a mutual authentication on the message between the client and the server, ho...
almost 8 years ago in IBM i / Security 1 Delivered