Skip to Main Content
IBM Z Software


This portal is to open public enhancement requests against IBM Z Software products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Enterprise Key Management Foundation

Showing 11

Enterprise Key Inventory and Reporting

Add Enterprise Key Inventory and Reporting functionality to EKMF. This will help to remove the need for a manual key inventory that organisations often manage in spreadsheets and to automate the maintenance and reporting operations, thereby removi...
about 1 year ago in Enterprise Key Management Foundation / EKMF Web 2 Future consideration

UKO Certificate Management

As a Key Manager I can view and manage certificates within UKO Key Management Use Cases: Generating private/public key pairs Generating CSRs Importing certificates from a CA Distributing keys and certificates (including the chain to a root) to HPC...
4 months ago in Enterprise Key Management Foundation / EKMF Workstation / UKO for z/OS 0 Future consideration

QRadar/SIEM integration

EKMF Web must generate security related events that can be consumed by IBM QRadar similar third-party SIEM systems. At minimum, these events must include- Logons, both success and failure- logoffs, when performed by a user, logoffs due to timout m...
about 1 year ago in Enterprise Key Management Foundation / EKMF Web 1 Future consideration

EKMF Web should support the ability to import CIPHER keys from an existing CKDS.

Given that CIPHER keys are the recommended key type for DSE, EKMF Web should fully support the ability to import these keys when they have been previously defined in a keystore.
6 months ago in Enterprise Key Management Foundation / EKMF Web / UKO for z/OS 2 Future consideration

ICSF / TKE / EKMF should all use the same VP for the same key type

The Verification Patterns that are used in ICSF, TKE and EKMF should be consistent so that an auditor or key manager would know that they are working with the same Key. There are times when a Key created on the TKE will show one VP method but the ...
7 months ago in Enterprise Key Management Foundation 0 Future consideration

Support specifying key ring owner in configuration

The ablility to use a site certificate and Keyring that has an owner other then the owner running the started task on mainframe. EX: SITEID/Keyringname instead of EKMFweb/Keyringname Sites that run mulitple web servers can use a single Keyring and...
9 months ago in Enterprise Key Management Foundation / EKMF Web / UKO for z/OS 0 Future consideration

Sign the EKMF log with a key that offers up-to-date security, i.e. AES-HMAC or ECC 500+ Bits

Requirement 1: The currently used DES keys for securing the log of EKMF are not anymore allowed in our organization. More current crypto algorithms have to be used for new log entries. Currently accepted are AES-HMAC and ECC with more than 500 Bit...
11 months ago in Enterprise Key Management Foundation / EKMF Workstation 1 Future consideration

Secure the integrity of the installed EKMF software by encryption of the disk

Currently an attack vector might be that somebody manipulates the EKMF Java classes on disk and then waits for an operator/admin with sufficient access rights to use the workstation. The attacker might be able to extract key material by just trans...
about 1 year ago in Enterprise Key Management Foundation / EKMF Workstation 0 Future consideration

Permit group selection of ACPs for enablement/disablement in the CCA node management utility included with the EKMF install.

The ability to perform group selection of ACPs would expediate the task of activating ACPs for a role instead of one at a time. (This would have been particularly useful in activating all the TR31 functions.) Note: We are running EKMF v9.4.1 on a...
over 1 year ago in Enterprise Key Management Foundation / EKMF Workstation 0 Future consideration

Improve Dataset Scanner to use SMF42 records

Today the dataset scanner uses the catalog search interface to record the encryption status of datasets. By the time we actually run the scanner, there have been many thousands of datasets that no longer reside on disk. In our shop we have many th...
almost 2 years ago in Enterprise Key Management Foundation / EKMF Web 0 Future consideration