Skip to Main Content
Integration


This is an IBM Automation portal for Integration products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.


ADD A NEW IDEA

API Connect

Showing 467

Browser side Drupal Encryption for Password being submitted to block the MITM attack

In VAPT, Customer is able to decrypt the password using Burp Suite to trap the request and see the password. The TLS Encryption Alone cannot block the attacker to decrypt the password. In some places, the Password used is of Organization which can...
almost 2 years ago in API Connect 1 Not under consideration

Need MTOM decode functionality in API connect

we need MTOM decode functionality in API connect.
over 5 years ago in API Connect 0 Future consideration

Request that MaaS360 Support API Get/Fetch data for "Users" Employee ID, Department, and Division user information. This will facilitate a more robust API reporting for asset and comprehensive inventory management.

This is useful because we have a 3rd party application that would like like to fetch that data along with other important device related information.
11 months ago in API Connect 1 Not under consideration

Detailed documentation of pod roles and dependencies

API Connect 10 runs as a set of pods with cryptic names and undocumented roles. When diagnosing runtime issues it would be extremely helpful to have documentation what is a role of specific pods and which pod depend on which (i.e. some pods depend...
almost 3 years ago in API Connect 1 Future consideration

Peering configuration should use DNS instead of IP or static host

API gateway peering configuration should support DNS settings for other peers instead of IPs or alias . this will add more flexibility to peering in Openshift and Kubernetes without the need of IBM shipped scripts (gateway-peering.js) to wait the ...
almost 3 years ago in API Connect 0 Future consideration

Add support for websocket upgrade with OpenApi 3 specifications

Presently websocket upgrades are only supported with OpenApi 2. For existing OpenApi 3 Apis we are required to create a separate OpenApi 2 specification in order to proxy websocket connections via the API Gateway.
almost 3 years ago in API Connect 0 Future consideration

Cookie Path set to Root

We have identified a vulnerability in the Developer Portal subsystem where the cookie “Path” attribute is set to the root directory (“/”). This configuration may allow an attacker to gain unauthorized access to cookies from other applications on t...
11 months ago in API Connect 2 Not under consideration

Support Network HSM (Thales Vormetric, AWS KMS, Azure Vault etc.) in Manager

The import of credentials (keys, certificates) via network HSM is a missing security feature required by enterprise with very high credential protection needs. Currently this is missing in Cloud and API Manager for resource management.
over 5 years ago in API Connect 0 Future consideration

Turning OFF API via CLI or REST API

It is used by APIC Admins or Business Analysts to make API offline.
11 months ago in API Connect 1 Functionality already exists

Support for other forms of rich text formatting as well as CommonMar for OAI3

We recently found that API Connect for version OAI2 and OAI3 removed support for creating tables in markdown format, starting to use the CommonMark 0.27 format. The goal of being able to accept other formats is to give us the ability to create con...
almost 2 years ago in API Connect 0 Future consideration