Skip to Main Content
IBM Security Ideas Portal

Shape the future of IBM Security

We invite you to shape the future of IBM, including the product roadmap, by submitting enhancement ideas that matter to you the most.

Here's how it works:

Post your ideas

Start by posting ideas and requests to enhance a product or service. Take a look at ideas others have posted and vote for them if they matter to you,

  1. Post an idea

  2. Vote for ideas that matter most to you

  3. Get feedback from the IBM team to refine your idea

Help IBM prioritize your ideas and requests

The IBM team may need your help to refine the ideas so they may ask for more information or feedback. The offering manager team will then decide if they can begin working on your idea. If they can start during the next development cycle, they will put the idea on the priority list. Each team at IBM works on a different schedule, where some ideas can be implemented right away, others may be placed on a different schedule.

Receive notification on the decision

Some ideas can be implemented at IBM, while others may not fit within the development plans for the product. In either case, the team will let you know as soon as possible. In some cases, we may be able to find alternatives for ideas which cannot be implemented in a reasonable time.

Post an Idea

To post a new idea - click on the "Add a new idea" button and where asked select the appropriate category this idea relates to. Provide requested information to allow us to get a better understanding of your request.

"Missing" Security Products?

If you cannot find the IBM Security product you are looking for then it is probably located in the IBM Security Private Ideas Portal. Check that site to open an idea.

Idea visibility

All ideas submitted via this portal are visible to all other portal users, though personal information fields remain hidden. If you would rather have your idea visible to only you and IBM then use the IBM Security Private Ideas Portal instead.

Please note: The purpose of the Ideas Portal is to tap the creativity of the IBM Security community so that we can enhance our products for everyone! If you need to report a defect or get help, please use our normal support channel. Click here to open a support ticket.

Want to see all of your IBM ideas in one place? Find them at



Guardium Key Lifecycle Manager

Showing 17 of 3464

IBM for SKLM.GKLM to support KMIP 1.4 compliant “hashed authentication code” (HMAC)

Currently it only supports non-hashed “message authentication code” (MAC). We are are multi-vendors storage user, with a mix of IBM and PureSTorage arrays, we use GKLM for Encryption key managment for all IBM disk, tape and want to use with Pure ...
about 2 months ago in Guardium Key Lifecycle Manager 1 Under review


Protection against cyber attacks becomes more and more important. GKLM can be used to hold the key(s) for IBM Spectrum Virtualize storage systems, e.g. FlashSystems, SAN Volume Controller. When these systems are encryption enabled and a cyber crim...
12 months ago in Guardium Key Lifecycle Manager 1 Functionality already exists

admin / user role based on user membership of AD security groups / LDAP OU's

currently, we can add only AD users, not AD groups. Managing our authentication by group would be more effective. => at installation: 1 group set as admin privilege, the second group as user with read only privilege. => GKLM becomes no touch...
about 2 months ago in Guardium Key Lifecycle Manager 2 Future consideration

Support for SASL bind

GKLM uses LDAP simple bind when adding new LDAP user. This is not secure as the password is in clear in the network trace. Sending password in clear should not be the default and at a minimum GKLM should allow to switch to a more secure authentica...
about 2 months ago in Guardium Key Lifecycle Manager 1 Under review

Installation without using LOCAL administrator (Windows)

Installation of GKLM software requires a LOCAL administrator on the Windows platform. Security Policies in places do not allow for local administrator accounts to exist. Installation cannot be automated due to this.
10 months ago in Guardium Key Lifecycle Manager 2 Planned for future release

support Rollback of installed fix pack

after recent findings with breaking fixes in the arena of KMIP requests it turned out to be a good idea to have the capability to roll back the latest installed fix pack. Clients that are not working with virtual machine backups or not preserving ...
9 months ago in Guardium Key Lifecycle Manager 1 Future consideration

enhance Multi Master code upgrade (FP) process to not cause 100% downtime of all key providers

Enhance Multi Master code upgrade (FP) process to not cause 100% downtime of all key providers. Currently it is required per Fixpack installation instruction to stop perform the following actions which causes 100% of the key server infrastructure ...
9 months ago in Guardium Key Lifecycle Manager 0 Future consideration

Need Process to migrate KMIP clients between servers

We would like to be able to move one or more KMIP clients and their respective symmetric keys from an older (e.g., v4.0.0.3) SKLM server to a current SGKLM server. We don't want to backup/restore the whole database because the target server alread...
10 months ago in Guardium Key Lifecycle Manager 0 Future consideration

User credentials(Username/password) visible in plain-text

As per Bank's IS policy/regulatory guidelines , sensitive information like username/password should to encrypted end to end. However in IBM products, SKLM(IBM Security Guardium Key Lifecycle Manager) and IBM Spectrum Control., these sensitive in...
10 months ago in Guardium Key Lifecycle Manager 0 Planned for future release

High frequency replication (full/incremantal)

There are options for replication every so often. But every time a replication occur, the clone creates 2 x 40 Mb Archive log file. Since there is no automatic backup of DB2 within SKL M, this directory will fill up very quickly, and the system wi...
about 1 year ago in Guardium Key Lifecycle Manager 0 Future consideration