Skip to Main Content
IBM Security Ideas Portal

Shape the future of IBM Security

We invite you to shape the future of IBM, including the product roadmap, by submitting enhancement ideas that matter to you the most.

Here's how it works:

Post your ideas

Start by posting ideas and requests to enhance a product or service. Take a look at ideas others have posted and vote for them if they matter to you,

  1. Post an idea

  2. Vote for ideas that matter most to you

  3. Get feedback from the IBM team to refine your idea


Help IBM prioritize your ideas and requests

The IBM team may need your help to refine the ideas so they may ask for more information or feedback. The offering manager team will then decide if they can begin working on your idea. If they can start during the next development cycle, they will put the idea on the priority list. Each team at IBM works on a different schedule, where some ideas can be implemented right away, others may be placed on a different schedule.


Receive notification on the decision

Some ideas can be implemented at IBM, while others may not fit within the development plans for the product. In either case, the team will let you know as soon as possible. In some cases, we may be able to find alternatives for ideas which cannot be implemented in a reasonable time.


Post an Idea

To post a new idea - click on the "Add a new idea" button and where asked select the appropriate category this idea relates to. Provide requested information to allow us to get a better understanding of your request.


"Missing" Security Products?

If you cannot find the IBM Security product you are looking for then it is probably located in the IBM Security Private Ideas Portal. Check that site to open an idea.


Idea visibility

All ideas submitted via this portal are visible to all other portal users, though personal information fields remain hidden. If you would rather have your idea visible to only you and IBM then use the IBM Security Private Ideas Portal instead.


Please note: The purpose of the Ideas Portal is to tap the creativity of the IBM Security community so that we can enhance our products for everyone! If you need to report a defect or get help, please use our normal support channel. Click here to open a support ticket.


Want to see all of your IBM ideas in one place? Find them at ideas.ibm.com

ADD A NEW IDEA

FILTER BY CATEGORY

Guardium Key Lifecycle Manager

Showing 17 of 3480

IBM for SKLM.GKLM to support KMIP 1.4 compliant “hashed authentication code” (HMAC)

Currently it only supports non-hashed “message authentication code” (MAC). We are are multi-vendors storage user, with a mix of IBM and PureSTorage arrays, we use GKLM for Encryption key managment for all IBM disk, tape and want to use with Pure ...
about 2 months ago in Guardium Key Lifecycle Manager 2 Future consideration

admin / user role based on user membership of AD security groups / LDAP OU's

currently, we can add only AD users, not AD groups. Managing our authentication by group would be more effective. => at installation: 1 group set as admin privilege, the second group as user with read only privilege. => GKLM becomes no touch...
2 months ago in Guardium Key Lifecycle Manager 2 Future consideration

Support for SASL bind

GKLM uses LDAP simple bind when adding new LDAP user. This is not secure as the password is in clear in the network trace. Sending password in clear should not be the default and at a minimum GKLM should allow to switch to a more secure authentica...
2 months ago in Guardium Key Lifecycle Manager 2 Future consideration

List more than 2000 keys in a key group

There are some SGKLM implementations where more than 2000 keys have been created in a single key group. The current Group List REST service supports pagination, but only across groups. That is, it will list more than 2000 records, but will not lis...
6 months ago in Guardium Key Lifecycle Manager 0 Future consideration

Add more example to the manual for changing properties

The manual says you should use the REST API to change the "properties" in the system. Update the pages for each properties to include working example for each one using the REST API.
7 months ago in Guardium Key Lifecycle Manager 0 Future consideration

Configurable data source connection ids

Allow the data source (db2 connection) userid to be able to be changed after the install. At present the schema for the tables etc is generated using the userid that is nominated on install. A better approach would be to have the tables schema fix...
7 months ago in Guardium Key Lifecycle Manager 0 Future consideration

Be able to define a sklm data location

Be able to change the location for SKLM_data. The manual suggest browser.root.id in the properties does this, but this does not seem to work on Windows. It would be better on Windows to be able to configure (in the GUI) the location of the data di...
7 months ago in Guardium Key Lifecycle Manager 1 Future consideration

Support db2 userid greater than 8 char on windows

Db2 11+ allows db2 accounts names up to 30 characters. To fit modern service account naming standards in organisations needs more than 8 characters. The GKLM installer on windows will currently not progress with a db2 admin id name of more than 8 ...
7 months ago in Guardium Key Lifecycle Manager 0 Planned for future release

Improve documentation and options for installing GKLM with an existing db2

For the manuals team to update the documentation on the steps and restrictions to re-use a db2 install. At present the manual says it can be done but not how to do it. Correct the statement for 4.1.1.4 that Db2 standard edition is installed, GKLM...
8 months ago in Guardium Key Lifecycle Manager 0 Planned for future release

support Rollback of installed fix pack

after recent findings with breaking fixes in the arena of KMIP requests it turned out to be a good idea to have the capability to roll back the latest installed fix pack. Clients that are not working with virtual machine backups or not preserving ...
9 months ago in Guardium Key Lifecycle Manager 1 Future consideration