Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

RACF

Showing 233

RACF ability for NO-Special-users to remove MFA from user.

We need to implement emergency procedure for MFA-users to allow access without MFA. If somebody get a call in the middle of the night, and drop the phone in the toilet before loging in … we have a serious problem. We have no Security Officers on c...
almost 3 years ago in z/OS / RACF 1 Not under consideration

Password Policy per user basis

Right now, we could set the following control globally. Inactive revoke, password minimum change interval Is it possible to set it down to the user level? There might be some use cases in a system that different user ID having different requiremen...
over 1 year ago in z/OS / RACF 1 Not under consideration

Enhance RRSF start up so we no longer see ICH408i on EZB.INITSTACK

Please enhance RACF so that this message no longer pops at IPL time when the RACF address space starts up using TCP/IP for RRSF. ICH408I USER( ) GROUP() NAME(STC RACF TRUSTED)EZB.INITSTACK.xxxx.TCPIP CL(SERVAUTH)INSUFFICIENT ACCESS AUTHORITYFROM E...
over 8 years ago in z/OS / RACF 2 Not under consideration

group-SPECIAL should be sufficient to reset a password for a user with the NOEXPIRED keyword even if they the ROAUDIT attribute

group-SPECIAL should be sufficient to reset a password for a user with the NOEXPIRED keyword even if they the ROAUDIT attribute.
almost 3 years ago in z/OS / RACF 1 Not under consideration

Automattic inclusion of all CA certs to a keyring

In the case where you do not need a personal certificate on your keyring a Virtual keyrings works well. However if you have two way authentication the Virtual keyring is not useful in this case since it requires a personal certificate attached to ...
about 7 years ago in z/OS / RACF 5 Not under consideration

SURROGAT with JESINPUT and NODES

We have a requirement to submit a job from zVM, comes across using the NODES class, and then use SURROGAT with WHEN(JESINPUT). This doesn't work
over 1 year ago in z/OS / RACF 0 Future consideration

Support system symbolics and wildcard for RACF RALTER ADDMEM command

Please provide RACF command RALTER's ADDMEM field to support WILDCARD or System SYMBOLIC variable for the dataset name. For example: we would like to be able to specify dataset using system symbolic; RALTER PROGRAM ** ADDMEM('AO.D9G.&SYSID..XX...
about 9 years ago in z/OS / RACF 2 Not under consideration

Update RVARY response to distinguish RACF deactivate vs database deactivate

This request is to get the ICH702A message/WTOR updated to be able to distinguish between RACF being deactivated and a RACF database being deactivated. Whether it is a new message or updating the text in the message does not matter. The reason for...
over 7 years ago in z/OS / RACF 3 Not under consideration

RACF R_ticketserv callable service should allow PTKTDATA profiles qualified with group and/or userid

Currently the PTKTDATA profile provided to R_ticketserv is limited to a 1-8 characters application name. Extending this to allow profile names of the form application.group.user would allow more granularity to control who can use passickets for a ...
over 1 year ago in z/OS / RACF 2 Not under consideration

Automatic RACF SWITCH database command if a logical error occurs

The RACF should identify a severe logical error in your database and make the automatic switch database, as happens the switch automatically when the an I/O error occurs. The switch database can be to the backup database or another.
almost 8 years ago in z/OS / RACF 1 Not under consideration