Skip to Main Content
Integration


This is an IBM Automation portal for Integration products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.


ADD A NEW IDEA

Pinned ideas

View all
PINNED supports ECDH-ES algorithms for JWE
Debit or credit card tokenizers (THALES / VISA / Etc.) implement JWE with ECDH as an encryption mechanism for sensitive data in the different flows applicable to wallets such as Apple Pay, GPay, etc. given its wide diffusion and easy adoption.
PINNED OpenAPI schema validation including headers
Currently to schema validate a REST based API in DataPower you have to extract the JSON schema from the OpenAPI file and then code manually code the individual header checks defined in the OpenAPI file Would be a vast improvement to be able to j...

DataPower Gateway

Showing 323 of 2426

Certificate Rotation with Luna HSM

Timely Certificate rotation is important operational activity. We have been unsuccessful in integrating Luna HSM along with DataPower due to the various stability issues described in the PMR TS004206044. The object status isn't refreshed. Manual w...
about 3 years ago in DataPower Gateway 0 Future consideration

Establish full RFC compliance with Datapower Passive session affinity

When using Datapowers' session affinity type passiv being based on the DPJESSIONID injection cookie we discovered that this implementation is not fully compliant with the cookie RFC6225. The Datapower implementation requires always to set a cookie...
over 6 years ago in DataPower Gateway 0 Not under consideration

IMSConnectHandler support for different IRM Arch level messages

At the moment DataPower IMSConnect handler assumes a fixed message header length of 80 bytes. Accordingly rejects headers with length less than 80 directly, and parses messages with longer header lengths incorrectly (leaking header bytes to payloa...
over 6 years ago in DataPower Gateway 0 Not under consideration

Checking for certificates critical key usage extension (more than just CA)

Check certificate key usage extension if key usage is marked critical (PKIX for more than just CA) .
over 6 years ago in DataPower Gateway 2 Not under consideration

DataPower platform needs to return response headers to enhance security

Security guidelines dictate that all secured services return certain response headers such as below to enhance security. But DataPower appliance currently does not return them. Content-Security-PolicyX-Content-Type-OptionsStrict-Transport-Security...
over 1 year ago in DataPower Gateway 1 Not under consideration

support key based authentication for Datapower SSH

As per our security direction, we wanted to use key based authentication to our Datapower via CLI instead of username/password.
over 1 year ago in DataPower Gateway 1 Functionality already exists

Disable automatic retries for Data Source objects - NFCU

Data Source objects continually retry every second in order to get to the 'up' status. In the case of expiring database credentials or other issue where the database server will not come up until there is intervention, the retry causes unnecessary...
over 3 years ago in DataPower Gateway 0 Future consideration

Sign the payload with SHA256withRSA

We had found the following algorithm SHA256withRSA is not listed in the list instead of which RS256 is available
over 3 years ago in DataPower Gateway 1 Functionality already exists

DNS over TLS

A simple easily added feature to enhance the DataPower gateway would be to add TLS to the DNS configuration so that we can officially support DNS over TLS.
over 3 years ago in DataPower Gateway 0 Future consideration

Qualys web scan flagging a "Slow HTTP Request" vulnerability on MPGW. This is considered a High Risk vulnerability.

Qualys scan found a potential Slow HTTP headers vulnerability which can be exploded for a Denial of Service (DoS) attack. The offending behavior identified by Qualys is that the server resets timeout after accepting headers from peers when process...
over 3 years ago in DataPower Gateway 0 Future consideration