This portal is to open public enhancement requests for IBM Sterling products and services. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).
Shape the future of IBM!
We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:
Search existing ideas
Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updateson them if they matter to you. If you can't find what you are looking for,
Post your ideas
Post an idea.
Get feedback from the IBM team and other customers to refine your idea.
Follow the idea through the IBM Ideas process.
Specific links you will want to bookmark for future use
Ability to Scan Files for Viruses in the DMZ before arrival in Secure Zone
Need a facility to contact a server via ICAP to scan files (similar to how QuickFile) works. This can be achieved by installing SSP perimeter servers on the virus server in its zone and have SSP engines leverage a persistent connection between the...
Forward client IP for all protocols from sterling secure proxy to sterling file gateway
Currently SSP forward IP for HTTP Protocol to sterling b2b integrator but it doesn't have capability to forward client IP for other protocols to sterling b2b integrator. We have a regulatory requirement to capture IP for all inbound files/transact...
Block users from attempting authentication at the Secure Proxy level
We have a Secure Proxy engine that is exposed to the internet. As such we are subjected to a large number of "probing" login attempts from usernames such as "root", "admin", etc. All of our login attempts are passed to a Sterling External Authenti...
Ability to reject user access at proxy before authentication check
We would like the ability to create a proxy filter (blacklist) to block unknown user names that result in failed authentication attempts. Many of these attempts come from both domestic and foreign nations, so IP whitelisting is not useful to restr...
SSP to support 9000+ IPs/range nodes in Inbound Netmaps for all protocols
Currently, we have 9000+ IPs/CIDR ranges to allow the traffic from. We have added 9000+ entries in Netmap nodes but when we try to edit/save/add more nodes manually the SSP CM GUI is hanging/breaks/not responding properly/going to inoperable state...
reading Source IP address from HTTP headers through for example X-Forwarded-For
Currently there is a dynamic routing feature to read incoming source IP address and base the routing based on this value. However many organizations dont support having source IP address hitting the SSP engine servers. Usually the incoming IP addr...
SSPCM currently supports RHEL7 (which reaches "End of Support" in Aug 2021.
Rather than installing a new instance of SSPCM and its components onto RHEL7 and then repeating the process again on RHEL8 once its supported. It'd be extremely useful...
Do not place IBM confidential, company confidential, or personal information into any field.