Skip to Main Content
Integration


This is an IBM Automation portal for Integration products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.


ADD A NEW IDEA

My ideas: API Connect

Showing 7

No Logout on Password Reset

We have observed that the application is vulnerable to No logout on Password reset. In the current scenario, the team observed that a user is not forced to logout after resetting the password, leading to several security risks. The vulnerabilit...
2 days ago in API Connect 0 Submitted

Cookie Path set to Root

We have identified a vulnerability in the Developer Portal subsystem where the cookie “Path” attribute is set to the root directory (“/”). This configuration may allow an attacker to gain unauthorized access to cookies from other applications on t...
2 days ago in API Connect 0 Submitted

Turning OFF API via CLI or REST API

It is used by APIC Admins or Business Analysts to make API offline.
3 days ago in API Connect 0 Submitted

Email Subscribers: do not send duplicate emails

When contacting subscribers without product/subscription/application-related tokens, emails should not be duplicated, i.e. every recipient should receive just one email and not one per subscription. This might be useful i.e. for announcing mainten...
4 days ago in API Connect 0 Submitted

Add capability to set environment variables from K8s secrets from APIConnectCluster

It seems that the APIConnectCluster and AnalyticsCluster CRs do not support injecting environment variables from secrets. We can inject environment variables, just not from secrets. We are using logstash to offload analytics data. The endpoint tha...
14 days ago in API Connect 0 Submitted

Add ability to configure DataPower WebUI TLS Profile from APIConnectCluster / DataPowerService CRs

Please make it so it is as easy to configure the TLS certificates for the DataPower WebUI as it is for the other API Connect endpoints. For example, the APIConnectCluster can be configured with most endpoints and secret names, like this: apiVersio...
14 days ago in API Connect 0 Submitted

Predictive API usage using AI

Based on historical API usage would like to get a predicted future usage for more accurate sizing of environments/contracts.
16 days ago in API Connect 0 Submitted