This portal is to open public enhancement requests for IBM Sterling products and services. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).
Shape the future of IBM!
We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:
Search existing ideas
Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updateson them if they matter to you. If you can't find what you are looking for,
Post your ideas
Post an idea.
Get feedback from the IBM team and other customers to refine your idea.
Follow the idea through the IBM Ideas process.
Specific links you will want to bookmark for future use
As with standard Linux servers today Secure Proxy should be able to present Host Keys (more than one) in both RSA and ECDSA formats depending on what type the vendor incoming connection supports. Vendors are demanding Host Keys that are stronger t...
Configuration managment needs to have a schedule and approval process
Changes made in the configuration management interface should require an approval process that could make an external call for validation if needed. This would require a scheduling function as well as an approval process.
Dictate cipher order for incoming HTTP transactions
We would like the ability within SSP to be able to dictate cipher order. Right now we have our security team testing our SSP nodes and when they test with the script here: https://testssl.sh/ Using version 2.9.5 we get back that the client can neg...
Allow Sterling Secure Proxy to perform URL Redirection for Reverse Proxy
Sterling Secure Proxy on Red Hat Linux version 2.6.32-696.1.1.el6.x86_64 is unable to route to different Outbound Nodes based on the URL that is sent to the proxy. Example (test vs prod at end of url):Incoming URL https:proxy.com:443/rosettanet/te...
Modify configureCmSsl.sh and configureEngineSsl.sh to allow for command line paramter passing
the current scripts allow for some parameters to be passed, but when exporting a CM configuration, you must always supply a second passphrase for the encryption of the exported xml file. This parameter cannot be passed without feeding it from your...
Disable Terminal SSH to Secure Proxy from External (Adapter)
We are currently running the latest version of Secure Proxy and are able to ssh (terminal) through the adapter to the SSP host. Although we are not able to login, it is an audit finding to prompt for credentials. Should simply close the session. I...
We are looking for some kind of report from SSP / ICC that would provide all the activity happening in SSP related to partners login attempt. At any point of time, we should be able to generate a report by partner to find out. how many successful ...
As per Bank security team, Concurrent logins should not be allowed. If the user is login via different machines or different browsers, then the old session should be destroyed. As per them, we need to have this feature in the product or commitment...
Do not place IBM confidential, company confidential, or personal information into any field.