Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal
Hide about this portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

RACF

Showing 239 of 3669

Restrict ability to manage UNIX file security

Provide a RACF resource to limit who is allowed to change certain security attributes (primarily, owner, permission bits, and acls) of a z/OS UNIX file or directory. As with the existing FSACCESS protection, this mechanism should work at the level...
over 4 years ago in z/OS / RACF 0 Future consideration

SETROPTS PRIORITY WHEN RACF DATASHARING

Currently when a SETROPTS REFRESH is sent from a LPAR and it is a member of a sysplex and RACF is configured in datasharing with Sysplex Communication, the REFRESH is executed in all the LPARs (except the one that sent the command) under the *MAST...
about 6 years ago in z/OS / RACF 2 Not under consideration

Add a set of return codes in RACF r_secmgtoper documentation for empty non-boolean character fields

r_secmgtoper does not validate a field that has no field data in it, and creates an ALTUSER racf command with an empty field. The field is not suffixed with parenthesis to indicate the absence of field data. If the call is made without an EXECUTE ...
about 2 years ago in z/OS / RACF 0 Future consideration

Interface for RACROUTE-Calls from REXX/Cobol/PLI

Need for a standard interface for RACROUTE-Calls, to check authorizations for datasets and resssources from 3GL-Languages like Cobol, PL/I or REXX or even Java. Implementation in different ways: - checking for own authorizations- checking the auth...
about 7 years ago in z/OS / RACF 6 Not under consideration

Additional protection needed for critical data, in order to further prevent accidental deletion

On August 20 our storage team caused an unfortunate issue, while cleaning a volume on the behest of the customer DB Systel. On the LPAR BLP7, an outage was caused, as the active primary and backup RACF db-s were deleted. While this was remedied an...
over 3 years ago in z/OS / RACF 2 Not under consideration

Cert (private key) cleanup prevention for PW envelop keys

During certificate cleanup based on expiration date, the certificate for password enveloping was deleted- No new password envelopes- No access to passwords in envelopes
over 6 years ago in z/OS / RACF 1 Future consideration

RACF batch utility to cleanup expired certificates

To Develop a RACF utility to cleanup/delete expired certificates in the RACF database with parameters specifying the expiration date & older.The date parameter specification/s can be a (-) minus 365 days from the current date. Just to elaborat...
over 1 year ago in z/OS / RACF 1 Not under consideration

Callable service to query userid active/revoked status

Provide a callable service, possibly as a new function to r_admin to query a userid's active/revoked status. The status should take into account the user's- - Explicit revoked status - System inactive interval and last access, if not a special use...
about 5 years ago in z/OS / RACF 1 Future consideration

passticket support for protected userids

provide support for protected userids on RACROUTE REQUEST=VERIFY with a passticket.We have spoken with Phil Wakelin(CICS Strategy & Design)because we want to run CICS Liberty with passticket and the user will be a technical and we want that us...
almost 8 years ago in z/OS / RACF 2 Not under consideration

RRSF: Password/passphrase re-synchronization

With the implementation of RRSF, it is possible to synchronize a user's password/passphrase between different RACF databases. Due to various technical reasons, sometimes a user's password/passphrase may get out of sync in such a RRSF environmen...
9 months ago in z/OS / RACF 1 Not under consideration