Skip to Main Content
IBM Z Hardware and Operating Systems Ideas Portal


This is the public portal for all IBM Z Hardware and Operating System related offerings. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

Status Planned for future release
Categories Crypto HW
Created by Guest
Created on Sep 30, 2021

Enhancement on CCA/ICSF to support RSA Public Key size 8192 UKDS6 and UKDS7

Enhancement on ICSF/CCA to support RSA Public key size of 8192 on UKDS6 as well as UKDS7.

Idea priority Urgent
  • Guest
    Reply
    |
    Feb 16, 2022
    The IBM team is in the design phase of this work for a future release.  I am happy to share more via direct contact under the Client Feeback agreement.
  • Guest
    Reply
    |
    Jan 25, 2022

    Per RFE Owners team This request has been moved to the design phase to see how it fits with the current hardware/software. At this time it looks reasonable and possible. Please contact the team for more information or to share use cases.

  • Guest
    Reply
    |
    Jan 13, 2022

    This request has been moved to the design phase to see how it fits with the current hardware/software. At this time it looks reasonable and possible. Please contact the team for more information or to share use cases.

  • Guest
    Reply
    |
    Jan 3, 2022

    Team is still discussing the RFE, they will look to resolve in 1Q 2022

  • Guest
    Reply
    |
    Nov 18, 2021

    Plan discussions continue.

  • Guest
    Reply
    |
    Oct 5, 2021

    Attachment (Description): Our FNB Internal Certificate Management Team needs to decommission the OLD Internal CA (3-Tier) and get existing Business Units to use the NEW Internal CA (2-Tier). We currently running EKMF Version 9.3.2 on SUSE Linux Enterprise Server 12 Service Pack 5 using IBM 4767 Crypto Cards. On the z15 Mainframe Host, we are running z/OS Release Version: 2.3 and the ICSF FMID: HCR77D1 (CEX7 Firmware) running CRYPTO EXPRESS7 COPROCESSOR. We are experiencing an error message "Modules Length must be between 512 and 4096 bits" when importing our NEW FNB Internal Root CA Certificate (Public Key Size 8192) using the EKMF Application onto PKDS (UKDS6). We are also receiving an error message "Certificate Issuer could not be found" when importing our NEW FNB Internal Issuing CA Certificate (Public Key Size 4096) using IBM EKMF Application. Please see attachment

  • Guest
    Reply
    |
    Oct 1, 2021

    Due to processing by IBM, this request was reassigned to have the following updated attributes:
    Brand - Servers and Systems Software
    Product family - Z and LinuxONE Systems Hardware
    Product - Z and LinuxONE Systems Hardware
    Component - Crypto HW
    Operating system - IBM z/OS
    Source - IBM Crypto & Security Council

    For recording keeping, the previous attributes were:
    Brand - Servers and Systems Software
    Product family - z Systems Software
    Product - z/OS
    Component - ICSF
    Operating system - IBM z/OS
    Source - IBM Crypto & Security Council