This portal is to open public enhancement requests for IBM Sterling products and services. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).
Shape the future of IBM!
We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:
Search existing ideas
Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updateson them if they matter to you. If you can't find what you are looking for,
Post your ideas
Post an idea.
Get feedback from the IBM team and other customers to refine your idea.
Follow the idea through the IBM Ideas process.
Specific links you will want to bookmark for future use
Mail Client adapter to allow Oauth 2.0 with grant_type as Client Credentials
The out of the box B2B mail client adapter allows to make connections to the mail exchange server for OAuth2.0 with grant_type as "Password" only. The grant_type as password is an obsolete and a vulnerable way of getting tokens and should allow gr...
HTTP access log with URL, status code, IP's, user agent string, etc.
Security frequently audits to review the HTTP access logs for web server of Sterling Application (external facing apps). Security expect the HTTP access log to reflect the URL, status code, IP's, user agent string, etc. Can you suggest where to tr...
Enable FIPS support for HSMs in Sterling B2B Integrator
Sterling B2B Integrator does not support FIPS enabled HSMs. As it is a security requirement that FIPS mode is enabled in HSMs, Sterling B2BI should provide this support so that certificates can be protected by HSMs
Address the log4J 1.x vulnerable Liberty WAR files in SB2Bi version 6.1.2
According to the release notes by IBM on the Sterling B2B Integrator version 6.1.2 it states "Apache log4j 1.x is removed and now we are using Apache log4j 2.17.2." However after updating to 6.1.2 The war files listed below still contained log4j 1...
Allow segregation of administrators to discrete lists of trading partners
Our organization has multiple business units. We need the ability to assign administrators so that they can make changes to only those accounts assigned to their business unit. Example - Trading partners A, B, and C are assigned to business unit A...
Do not place IBM confidential, company confidential, or personal information into any field.