Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

My ideas: RACF

Showing 229 of 3554

Have RACDCERT ADD support adding from USS files

RACDCERT ADD currently only supports adding a certificate from a dataset with pretty severe restrictions. I quote: You must specify a cataloged data set, and it may not be a PDS or a PDS member. The record format (RECFM) expected by RACDCERT is va...
over 6 years ago in z/OS / RACF 2 Not under consideration

Make ICHRIX02 Dynamic exit or create new dynamic exit with same function

Submitted By: 3100012R4K #59Submitted Date: 2016-06-15, Submitted By: Cheryl Watson
over 8 years ago in z/OS / RACF 4 Not under consideration

additional information for certificates in keystores

additional information for certificates in keystores (RACF, .kdb, .jks )Data-installation-fieldLast-use-date for certificatesLast-use-date for keyrings and certificates in keyrings plus SMF-records for certificates (also information in logs, cms,…...
over 8 years ago in z/OS / RACF 3 Not under consideration

Add LOC= parameter on RACROUTE EXTRACT macro

The z/OS Security Server RACROUTE EXTRACT macro only support returning a 24bit EXTRACT response area. The response info may exceed the amount of 24bit storage in an MVS address space. We would like support to be added for a LOC=ANY parameter so th...
almost 7 years ago in z/OS / RACF 2 Not under consideration

Need to register more than one user with the same email address in the WORKATTR segment

It is quite common for a single human to have more than one system id, but have only one corporate email address. I am unable to register more than one user with the same email address in the WORKATTR segment. I get this error and the email addres...
over 3 years ago in z/OS / RACF 1 Not under consideration

Enhance RACF type 80 Access Records to always record the module name if WHEN(PROGRAM) grants access

In the current type 80, I do not see a field to indicate the name of the module that grants the access if a conditional permit of WHEN(PROGRAM) grants access. Please enhance the type 80 access records to record the module name for success, failure...
over 8 years ago in z/OS / RACF 2 Not under consideration

RACF Password Settings need to include Complexity, Examples: 1. To prevent the use of 3 repeating or sequential characters. 2. Avoid specific words such as User Name / Name of Service. 3. Prevent the use of passwords obtained from previous breaches.

Audit requires ability for specific Complexity settings as listed in my Idea above and beyond RACF specific Password settings. Examples: 1. To prevent the use of 3 repeating or sequential characters. 2. Avoid specific words such as User Name / Nam...
almost 2 years ago in z/OS / RACF 1 Future consideration

Enhancement to RACF ListChain

Any chance to enhance LISTCHAIN to format out some messages tellingabout + alternate CA pathes + existence of 'cross certify' intermediate CA certificates + use a well prepared keyring to favour a well prepared CA path Jörg SeitzIBM TSS Networking...
about 7 years ago in z/OS / RACF 1 Not under consideration

list group similar to list user capability for non administrators

We would like to see a capability for listing a RACF Group delivered in a similar fashion to the IRR.LISTUSER capability for userids. I.E an IRR.LISTGRP or similar profile in class FACILITY that would allows us to delegate the ability to list RACF...
over 9 years ago in z/OS / RACF 2 Not under consideration

avoid WTOR ICH304D like WTOR ICH302D with XFACILIT IRR.DENY.SPECIAL.USER.ADDITIONAL.PASSWORD.ATTEMPTS.APPL.appl-name.

Following APAR OA63091 (with XFACILIT IRR.DENY.SPECIAL.USER.ADDITIONAL.PASSWORD.ATTEMPTS.APPL.appl-name.) issue of WTOR ICH302D "ICH302D REPLY Y TO ALLOW ANOTHER ATTEMPT OR N TO REVOKE USERID userid." can be avoided. I propose to extend this behav...
almost 2 years ago in z/OS / RACF 2 Not under consideration