Skip to Main Content
IBM Power Ideas Portal


This portal is to open public enhancement requests against IBM Power Systems products, including IBM i. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Security

Showing 139

Quick Enable/Disable user profiles

This would be a quick function for admins/support personnel to use to enable/disable an account without invoking CHGUSRPRF or Option 2 STATUS(*DISABLED). Create an Option 27 and 28 to Enable/Disable user profile from the WRKUSRPRF screen.
8 months ago in IBM i / Security 2 Not under consideration

Allow finer grained 'Adopt Authority'

This idea will allow ISVs and other to help close security exposures related to programs that adopt authority. Currently a program can be set to USRPRF(*OWNER) to have it adopt authority. Different programs within an application have needs for acc...
8 months ago in IBM i / Security 2 Not under consideration

Adopted authority to SFTP connections

Hello team, since a couple of days we are fighting with the SFTP connections, what is the problem? For BATCH process, there is no problem because you can use the "user profile" for the submission but... for interactive transactions, the sftp conne...
9 months ago in IBM i / Security 4 Not under consideration

Allow programs and service programs to FORCE library at top of system library list.

When creating or changing Commands and Menus (*CMD, *MNU) objects you can set the PRDLIB, which cause the specified library to be inserted between the system library list and the user library list in the library list order. This provides a nice wa...
9 months ago in IBM i / Security 2 Under review

Enhance Security of QUSEADPAUT system value and USEADPAUT in general

This is similar in intent to https://ideas.ibm.com/ideas/IBMI-I-4498 In support of 'deny by default' security principle, arrangements should be made to only generate programs and service programs with USEADPAUT(*YES), when A) explicitly requested ...
9 months ago in IBM i / Security 3 Future consideration

UID for IBM i Digital Certificate Manager

I would like to bring to your attention a potential enhancement opportunity concerning the IBM i Digital Certificate Manager (DCM). During the process of Certificate Signing Request (CSR) creation, we have observed that there is no available field...
9 months ago in IBM i / Security 3 Future consideration

RACF should support dynamic altering the RACF database configuration

Currently, the names of the RACF databases are defined in the SYS1.PARMLIB(IRRPRM00) parmlib member. Those dataset names become constant for the IPL. They can not be changed without SYSPLEX-wide IPLs which would cause the customer massive outages ...
9 months ago in IBM i / Security 1 Not under consideration

Authority Collection - Size of the collections

Please add options/columns into existing SQL views (object_statistics maybe?) or add new SQL views to see how much the IBM i Authority Collection repositories actually take space. Currently there is no such option and the security administrator/IB...
9 months ago in IBM i / Security 2 Future consideration

Integrate SAML and/or OIDC authentication options for IBMi (5250/Navigator/IFS/Printer Output/SSH)

Many businesses are increasingly demanding that standard authentication processes are adhered to for all applications/servers within their environment. Whether we agree with that approach or not, there is extraordinary pressure to fit IBMi into th...
10 months ago in IBM i / Security 9 Not under consideration

Expand on the Authority Collection process by logging commands that actually use the special authorities granted on user profile

I'm trying to clean up security and while the Authority Collection process is valuable, I need to go a step farther. There are too many IDs with any combination of special authorities, and I do not have a clean way to monitor if it's needed. I wou...
10 months ago in IBM i / Security 2 Not under consideration