Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Crypto HW

Showing 43

Need CSFPPKS/CSFPPKV to also support ECC PKCS11 encrypt/decrypt

Currently we make use of CSFPPKS/CSFPPKV to perform PKCS11 encrypt/decrypt with RSA keys. There is a requirement by our clients to also support ECC PKCS11 encrypt/decrypt.
over 8 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 6 Not under consideration

Visa dCVV2 Support

System: Crypto ExpressActor: Issuers and Card vendors participating in the Visa dCVV2 project.The Crypto Express currently supports dynamic CVV processing with the existing card functions. Visa supports dCVV2 which is a time-based Dynamic Card Ver...
about 6 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 2 Future consideration

Scripting

- Logical Separation- Independence from HW, FW, OS, etc- Ability to combine multiple CCA commands
about 10 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 2 Not under consideration

ICSF support DES transport keys

In attempting to use the HMAC function of ICSF to implement support for some processing one of our Payment Schemes is implementing. We found that ICSF does not allow the IMPORT or EXPORT of HMAC keys under a DES transport. Since DES is heavily use...
almost 7 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 8 Planned for future release

Wrapping symmetric keys using ECC

Need the ability to export and import symmetric keys using stronger Elliptic Curve technology. The CSNDSYX and CSNDSYI/CSNDSYI2 APIs do not support using an ECC key pair for wrapping key material.
over 7 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 6 Not under consideration

Requesting enhancement to allow Hex assigned domain number for crypto card naming convention

Wells Fargo Bank has asked IBM to submit a request for enhancement to allow a crypto card to have a hex assigned Domain Number verses decimal only for naming convention and management simplicity. This would enable large complex customers the abili...
over 7 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 2 Not under consideration

Coordinated change master keys and key storage from TKE workstation

[Request] Create consistent Key Set function from TKE workstation to Domain Group on Linux only environment. [Issue]-Inconsistent master key “SET” operation from TKE workstation on z/Linux only environment-Cannot use “Set, immediate”, because this...
almost 8 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 3 Future consideration

Cipher Text Translate to suport ASYM<-->SYMMETRIC translations

3rd party clients are using ASYM PKCS11 encrypt/decrypt to send for example CC numbers to us. Vice Versa as well. Local DB2 database stores the CC numbers using a symmetric key.Would like a enhancement to CIPHER text translate or new function to p...
over 8 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 10 Not under consideration

CMT#AB6351

When Correctable Error(CE) occurs in the CPU L3 cache in LinuxONE, db2sysc/gskit issues KMC instruction,After recovering Correctable Error (CE), HW recovery failed because KMC instruction could not rerun that original data was already encripted.IP...
over 4 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 2 Future consideration

Add zkey / paes support for the ZFS filesystem encryption

Canonical/Ubuntu is exploring using ZFS native encryption (without LUKS) when deploying on the ZFS Linux filesystem. ZFS is already available on Ubuntu Server for s390x. Currently with LUKS on s390x installers default to using zkey/paes if availab...
over 4 years ago in IBM Z and LinuxONE Systems Hardware / Crypto HW 4 Not under consideration