Skip to Main Content
IBM Sterling


This portal is to open public enhancement requests for IBM Sterling products and services. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Clear

Sterling Secure Proxy

SSPcm API calling need password in API properties file

If we want to call the API in automated way then it wants us to provide the user name and password in API properties file in clear text format, mentioning passwords in clear text isn't allowed in our Organization. We need some utility via which we...
9 days ago in Sterling Secure Proxy / Security Submitted

SSP should have a setting to configure "allowlist" usernames which should accept regex express for allowed user names

The SSP must provide a setting to configure, such as a **"Users Allowlist"**, where we can set up a list of usernames and/or a regular expression. This configuration should ensure that the SSP allows connections only from those users that match th...
26 days ago in Sterling Secure Proxy / Administration & Configuration Future consideration

Block traffic from an IP address, if rate of connections exceeds a configured value.

There should be a mechanism/setting in SSP where we can configure the maximum number of concurrent connections allowed from any IP. And if the number of connections exceed the maximum limit, the SSP should block any more connections from that IP a...
26 days ago in Sterling Secure Proxy / Security Under review

Enable End to End Correlation ID Propagation for User Request Tracing for IBM B2Bi MyFileGateway users.

Our File Transfer Service provides capability to external bank users to upload download files through IBM MyFileGateway SSO through a multi‑hop authentication and file‑transfer flow involving identity, SSP proxy, perimeter, and B2Bi MyFileGateway ...

Test compatibility windows server 2025 and SSP

Our organization want to migrate from windows server 2019 to windows server 2025 by 4th quarter of 2026

Enabling Compatibility for HSM while FIPS mode turned on in application

Enabling FIPS mode is an industry-standard best practice and ensures the application’s compliance with established security guidelines. To further strengthen the security posture, integration with an HSM is recommended so that private keys are sec...
about 1 month ago in Sterling Secure Proxy / Security

Sterling Secure Proxy HSM Integration to store TLS certificate encryption key only

Many organizations use SSP for TLS sessions termination and authenticate clients in presentation zone. The volumes would be high in general, with HSM integration and security mandates each TLS connection has to communicate with HSM for TLS offload...
6 months ago in Sterling Secure Proxy / Security Future consideration

Sterling Secure Proxy to sign Login SAML request

Presently IBM Sterling Secure proxy sends a SAML request to external Idp using SSO Configuration in SSP. The Login SAML request is not adding the signature but the logout request is adding the signature in SAML request from SSP. From our security ...
about 1 year ago in Sterling Secure Proxy / Security Planned for future release

Simple Report on user or IP and the Cipher/Algorith/Mac/Key Exchange they used to connect for the SSP

This is useful information for larger organizations who need to deprecate older ciphers/algorithms/key exchanges. If you don't own/purchase CCM there isnt' a way to do easily do this. Which is odd since the information is contained in the SSP logs...
3 months ago in Sterling Secure Proxy / Reporting Planned for future release

Request for Enhancement (RFE): Alternative User Exit Options in IBM Sterling Secure Proxy (SSP)

Request for Enhancement (RFE): Alternative User Exit Options in IBM Sterling Secure Proxy (SSP) 1. Introduction This document proposes an enhancement to IBM Sterling Secure Proxy (SSP) to include support for alternative user exit options beyond th...
over 1 year ago in Sterling Secure Proxy / Security Future consideration