Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Clear

RACF

Showing 276 of 3917

Ability to create a User ID enabled for Enhanced PassTickets with no password and not subject to revoke logic

We request an enhancement to RACF to allow a user ID enabled for Enhanced PassTickets to operate without a password and without being subject to revoke logic. Our solution relies on a PassTicket‑only technical ID to authenticate storage management...
5 days ago in z/OS / RACF 0 Submitted

Log RACF keyring and certificate usage to enable proper validation and auditing

Determining whether a RACF keyring or any RACF certificate is still in use by an application (e.g., started task, batch job, etc.) is a very challenging task. Neither RACF nor other components like zERT generate SMF records that capture the usage ...
about 1 year ago in z/OS / RACF 1 Future consideration

Move settings of password phrase rules from ICHPWX11-exit to RACF SETROPTS

Today we use the Exit ICHPWX11 to manage our rules for RACF Password Phrases (e.g. length of Password Phrase, valid Characters). Unfortunately the exit is not supported by IBM. A sample is delivered with SYS1.SAMPLIB, but the most current version ...
4 months ago in z/OS / RACF 6 Future consideration

Enhance RACDCERT EXPORT .. DSN.. to support more flexible dataset. Support MEMBER(name) of a dataset in like //EXPORT

Today if I want to export multiple certificates. Using DSN, which deletes and creates the datasets, I will get a data set for each one. This makes it tedious to manage. I would like to be able to say MEMBER(ABC), and this adds/replaces the member ...
10 days ago in z/OS / RACF 0 Submitted

TOD clock correction for passtickets on systems with modified UTC time.

With the "Version 2.3 July 2025 refresh" of Z Multi-Factor Authentication, IBM supplied a new feature referred to as "TOD Clock Time Correction".The TOD Clock Time Correction allows an installation to account for the difference between the system ...
11 days ago in z/OS / RACF 0 Submitted

Convert RACF to UTF-8

It would be beneficial if RACF supported full UTF-8 natively, it would allow greater support for specialized characters in names and descriptions, it would also make communication with other systems much easier.
5 months ago in z/OS / RACF 2 Not under consideration

More Granular RACF Dataset member level access SAF checking

We have a PDS dataset where several application encrypted password files are housed. Splitting the contents of this PDS is not easily achievable. Can RACF architecture allow for an enhancement feature that performs dataset access SAF checks at the...
6 months ago in z/OS / RACF 0 Not under consideration

RACF - Support of RSA keysize of 8192bit for RACDCERT with zOS 3.2

With zOS 3.2 ICSF does support the key generation of 8192 bit: ICSF Panel 5.6.6 (CSFPKY22) [.....] Generate a new asymmetric key pair record. Select one key type/size: RSA key bit length: ____ (512 - 8192) [.....] But when using RACF RACDCERT comm...
3 months ago in z/OS / RACF 0 Future consideration

Extend the passphrase length to 128 bytes.

This will be useful for even better security.
6 months ago in z/OS / RACF 1 Not under consideration

Listuser command allows for 'enumeriation' of valid userids

As seen below. When one does a "LU <EXISTING USER>" you get the message : "NOT AUTHORIZED TO LIST IBMUSER"When the user it not present on the system, you get the message "UNABLE TO LOCATE USER ENTRY NOTHERE" It would be better if the reply i...
over 1 year ago in z/OS / RACF 0 Future consideration