Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

RACF

Showing 211

Enhance RRSF start up so we no longer see ICH408i on EZB.INITSTACK

Please enhance RACF so that this message no longer pops at IPL time when the RACF address space starts up using TCP/IP for RRSF. ICH408I USER( ) GROUP() NAME(STC RACF TRUSTED)EZB.INITSTACK.xxxx.TCPIP CL(SERVAUTH)INSUFFICIENT ACCESS AUTHORITYFROM E...
almost 8 years ago in z/OS / RACF 2 Not under consideration

Automattic inclusion of all CA certs to a keyring

In the case where you do not need a personal certificate on your keyring a Virtual keyrings works well. However if you have two way authentication the Virtual keyring is not useful in this case since it requires a personal certificate attached to ...
over 6 years ago in z/OS / RACF 5 Not under consideration

RACF Password Settings need to include Complexity, Examples: 1. To prevent the use of 3 repeating or sequential characters. 2. Avoid specific words such as User Name / Name of Service. 3. Prevent the use of passwords obtained from previous breaches.

Audit requires ability for specific Complexity settings as listed in my Idea above and beyond RACF specific Password settings. Examples: 1. To prevent the use of 3 repeating or sequential characters. 2. Avoid specific words such as User Name / Nam...
over 1 year ago in z/OS / RACF 1 Future consideration

Create R_ADMIN (IRRSEQ00) Exit Point

We'd like an exit point create for the R_ADMIN (IRRSEQ00) callable services interface.
about 4 years ago in z/OS / RACF 1 Not under consideration

Update RVARY response to distinguish RACF deactivate vs database deactivate

This request is to get the ICH702A message/WTOR updated to be able to distinguish between RACF being deactivated and a RACF database being deactivated. Whether it is a new message or updating the text in the message does not matter. The reason for...
almost 7 years ago in z/OS / RACF 3 Not under consideration

avoid WTOR ICH304D like WTOR ICH302D with XFACILIT IRR.DENY.SPECIAL.USER.ADDITIONAL.PASSWORD.ATTEMPTS.APPL.appl-name.

Following APAR OA63091 (with XFACILIT IRR.DENY.SPECIAL.USER.ADDITIONAL.PASSWORD.ATTEMPTS.APPL.appl-name.) issue of WTOR ICH302D "ICH302D REPLY Y TO ALLOW ANOTHER ATTEMPT OR N TO REVOKE USERID userid." can be avoided. I propose to extend this behav...
over 1 year ago in z/OS / RACF 2 Not under consideration

Automatic RACF SWITCH database command if a logical error occurs

The RACF should identify a severe logical error in your database and make the automatic switch database, as happens the switch automatically when the an I/O error occurs. The switch database can be to the backup database or another.
about 7 years ago in z/OS / RACF 1 Not under consideration

RACF database recovery utility

In the case of primary database in error with no backup database, after restoring a copy from dump, maybe we have lost some updates. In System Programmer's Guide we can find the following text: Your database is probably back-level. To bring...
over 1 year ago in z/OS / RACF 1 Future consideration

Allow user to set their first password phrase when the correct password is supplied

We would like all our mainframe users to have passwords longer than 8 characters, so we are now looking into getting users to use password phrase instead of password. However RACF currently only allows RACF administrators (or authorized personnel)...
about 7 years ago in z/OS / RACF 1 Not under consideration

Provide a way to programmatically determine if the RACF database is locked.

RACF database maintenance routinely updates the RACF database. When IRRUT400 is running and has the database locked during database backups, this can cause problems with these updates. If it can be determined if the database is locked, the updates...
over 1 year ago in z/OS / RACF 1 Not under consideration