Skip to Main Content
IBM Z Software


This portal is to open public enhancement requests against IBM Z Software products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Enterprise Key Management Foundation

Showing 23

ICSF / TKE / EKMF should all use the same VP for the same key type

The Verification Patterns that are used in ICSF, TKE and EKMF should be consistent so that an auditor or key manager would know that they are working with the same Key. There are times when a Key created on the TKE will show one VP method but the ...
7 months ago in Enterprise Key Management Foundation 0 Future consideration

Support specifying key ring owner in configuration

The ablility to use a site certificate and Keyring that has an owner other then the owner running the started task on mainframe. EX: SITEID/Keyringname instead of EKMFweb/Keyringname Sites that run mulitple web servers can use a single Keyring and...
9 months ago in Enterprise Key Management Foundation / EKMF Web / UKO for z/OS 0 Future consideration

Sign the EKMF log with a key that offers up-to-date security, i.e. AES-HMAC or ECC 500+ Bits

Requirement 1: The currently used DES keys for securing the log of EKMF are not anymore allowed in our organization. More current crypto algorithms have to be used for new log entries. Currently accepted are AES-HMAC and ECC with more than 500 Bit...
11 months ago in Enterprise Key Management Foundation / EKMF Workstation 1 Future consideration

support DB2 LUW as key repository for EKMFWEB

We have z/OS customers interested in pervasive encryption that do not run DB2 on z/OS. Currently only official support exists for DB2 z/OS as key repository. As the EKMFWEB product supports jdbc2 type 2 and type 4 it could target a DB2 LUW running...
almost 2 years ago in Enterprise Key Management Foundation / EKMF Web 0 Planned for future release

Secure the integrity of the installed EKMF software by encryption of the disk

Currently an attack vector might be that somebody manipulates the EKMF Java classes on disk and then waits for an operator/admin with sufficient access rights to use the workstation. The attacker might be able to extract key material by just trans...
about 1 year ago in Enterprise Key Management Foundation / EKMF Workstation 0 Future consideration

EKMF Web Audit Log filter not working correctly - Deutsche Bundesbank

Deutsche Bundesbank customer noticed during workshop that the EKMF Web Audit Log filtering tool wasn't working as expected. When searching a specific key label, it outputted everything.
about 1 year ago in Enterprise Key Management Foundation / EKMF Web 3 Functionality already exists

Automation of Key Management Operations

#Automation and scheduling As a key manager I need the ability to schedule or delay operations for key activation/deletion/rotation to a specific date and/or time of day. #Theme - Expiry/de-activation/deletion/rotation based on key usage pattern S...
about 3 years ago in Enterprise Key Management Foundation 1 Planned for future release

Permit group selection of ACPs for enablement/disablement in the CCA node management utility included with the EKMF install.

The ability to perform group selection of ACPs would expediate the task of activating ACPs for a role instead of one at a time. (This would have been particularly useful in activating all the TR31 functions.) Note: We are running EKMF v9.4.1 on a...
over 1 year ago in Enterprise Key Management Foundation / EKMF Workstation 0 Future consideration

Add functionality to remove/delete keys in PRE_ACTIVATION STATE

Request to add the functionalty that will enable the removal/deletion of keys that are still in pre_actiovation mode. 1. Adding this functionality will allow completely removing the key in pre_actiovation state from the database and allow key leb...
almost 2 years ago in Enterprise Key Management Foundation / EKMF Web 0 Planned for future release

EKMF Web integration to Salesforce Cache-Only Key Service

Enable the feature to manage Salesforce Cache-Only Key Service
almost 2 years ago in Enterprise Key Management Foundation / EKMF Web 0 Planned for future release