Skip to Main Content
Integration


This is an IBM Automation portal for Integration products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.


ADD A NEW IDEA

My ideas: webMethods API Gateway

Showing 20

webMethods API Gateway SaaS - Add OAuth2 support with DPoP (RFC 9449) for API authentication and authorization

Currently, the API Gateway supports OAuth2 with traditional proof-of-possession mechanisms (Bearer tokens). To enhance the security of exposed APIs and comply with recent standards, we plan to add support for Demonstration of Proof of Possession (...
2 months ago in webMethods API Gateway 0 Future consideration

Revoke Access Token if new is created

We would like to request an enhancement to invalidate any previously issued access token whenever a new token is generated using the same client credentials (same application), regardless of the previous token’s expiry time. Currently, the impleme...
4 months ago in webMethods API Gateway 0 Future consideration

enhance dependency tracking and checking in APIGateway

Hi experts, we have following simple use case which currently cannot easily be solved with current product functionality: UC: delete alias Preconditions: - we have many (hundreds) of API virtualizations on APIGateway - some assets are still using ...
4 months ago in webMethods API Gateway 0 Future consideration

create OData API virtualization by providing its $metadata file

currently in wM10.15 APIGateway an API of type OData can only be created from a URL. An option to create OData APIs similar to REST APIs by providing its specification (OpenAPI, RAML, Swagger) as a file ($metadata file) is highly appreciated. Curr...
4 months ago in webMethods API Gateway 0 Future consideration

API Gateway returns HTTP 500 instead of 502 on upstream socket reset at TCP level

We have an API exposed through a 3DNS URL configured in webMethods API Gateway 10.15 (routing policy). The 3DNS resolves to two VIPs, each fronting two NGINX servers. When one of the VIPs or one of the NGINX instances behind a VIP is shutdown abru...
5 months ago in webMethods API Gateway 0 Future consideration

Restrict method to POST for Oauth Token generation

We have identified a potential security issue where the client secret gets exposed as part of the URL while accessing the get method of the inbuilt Oaut token generation API pub.apigateway.oauth2/getAccessToken. Could this be restricted to only us...
5 months ago in webMethods API Gateway 0 Future consideration

Enhance IAM Policies with Nested Logic and Dynamic AND/OR Grouping for Conditions

The current system allows for the creation of multiple conditions within a single policy. However, these conditions are evaluated as a simple, flat list. The logical operator connecting these conditions (either AND or OR) applies to the entire set...
5 months ago in webMethods API Gateway 0 Future consideration

Add API Gateway Messaging and JMS/AMQP Policies on Hosted Cloud

We request enabling messaging features such as JMS/AMQP policies within API Gateway on the hosted cloud environment. This would align the cloud offering with on-premises capabilities and enable more robust event-driven integrations. Benefits: Comp...
6 months ago in webMethods API Gateway 0 Future consideration

Extend Data Masking Policy for multipart/form-data Content Type

We propose extending the existing data masking policies to support multipart/form-data content types. This ensures sensitive information uploaded via forms or files is protected. Benefits: Security: Protects personally identifiable and sensitive d...
6 months ago in webMethods API Gateway 1 Future consideration

Ability for customers to independently update SSL certificates in webMethods API GW and DPO SaaS for custom domains

Description: We are currently using custom domains (to ensure that our URLs end with api.<company domain>.com and developer.<company domain>.com) on both API Gateway and Developer Portal.As a consequence, every year we need to open a s...
6 months ago in webMethods API Gateway 0 Future consideration