Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

RACF

Showing 230

Empowering conditional access to general resources through privileged programs

Some resources different from DATASET also should be accessed through allowed programs. This would allow a refined access to some sensitive resources such as those under SURROGAT (for example, USER1 can submit a job in the name of USER2 only if th...
over 2 years ago in z/OS / RACF 1 Future consideration

Allowing program name masking in conditional access to DATASETS

Multiple program names are allowed in the parameter WHEN(PROGRAM(...)) in the PERMIT command. However this is not practical if many programs starting with the same first characters are to be specified in the list or if a new program, also starting...
over 2 years ago in z/OS / RACF 0 Future consideration

Intelligent refresh after a new user/group is added to a resource access list.

After adding an user or group to a resource access list a SETROPTS REFRESH for the class to which the resource belongs is required. This has a huge impact on performance depending on the resource class.
over 2 years ago in z/OS / RACF 2 Not under consideration

Enhance RACF so that ALTUSER UserID OWNER is a noop if the OWNER is already set

Please enhance RACF so that if someone were to issue:ALTUSER BRUCE OWNER(MARKN) and also if UserID BRUCE already has an OWNER of MARKN then an ICH message is issued that nothing has been modified instead of just modifying the owner again.
almost 8 years ago in z/OS / RACF 1 Not under consideration

Add Ability to Honor Password History to ALU PASSWORD Command

Performing an ALTUSER command allows users to reset their password to one of their historic passwords. Please enhance the command with an option to honor the history or issue a warning when there is a collision with a password in the history.
over 2 years ago in z/OS / RACF 2 Not under consideration

Check ICHPWX01 Password Exist on ADDUSER Command

We'd like the same potential functionality as ALTUSER on ADDUSER where if a password is specified on the command it is checked by the password exit ICHPWX01, if present. This is currently documented as working as designed http://www.ibm.com/suppor...
almost 8 years ago in z/OS / RACF 1 Not under consideration

EXPIRATION DATE WITHIN PERMIT COMMAND

SUBMITTER SECTIONFIT Number: MR00031904User Marketing Field Requirement Number: GD124084013Title: EXPIRATION DATE WITHIN PERMIT COMMANDSubmitted By: IBM User Group Relations/Dallas/IBMOriginators Area: DFNA / 972-447-0298FPOC: Arthur Fitzpatrick/P...
over 10 years ago in z/OS / RACF 1 Future consideration

Enhance RACFVARS for the STARTED class so I can use variables anywhere

Please enhance RACFVARS so that I can code something like &ENV in the first qualifier of the started class profile and have the next char after the variable name be another char.
over 8 years ago in z/OS / RACF 2 Not under consideration

IRRSMO00 support to fully delete GROUPs

I need the R_SecMgtOper (IRRSMO00) support to a delete groups even when there are subgroups present and/or users connected to the group. This support must be ESM agnostic such that we can expect ACF2 and TSS to implement it as well. The preferred ...
about 6 years ago in z/OS / RACF 2 Not under consideration

RACF option on ID to count password violation with UNIQUE violations only

RACF ID to have option on only counting password violations with unique violations for purpose of suspending Userid.
over 9 years ago in z/OS / RACF 6 Not under consideration