Skip to Main Content
IBM Data Platform Ideas Portal for Customers


This portal is to open public enhancement requests against products and services offered by the IBM Data Platform organization. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:


Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,


Post your ideas

Post ideas and requests to enhance a product or service. Take a look at ideas others have posted and upvote them if they matter to you,

  1. Post an idea

  2. Upvote ideas that matter most to you

  3. Get feedback from the IBM team to refine your idea


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

IBM Employees should enter Ideas at https://ideas.ibm.com



ADD A NEW IDEA

Clear

Security

Showing 51 of 18062

Make the -H switch mandatory when generating a CSR with Third-Party Certificate Tool, OR either print a warning, or default to the current host if not specified.

Currently the documentation for 12.1.0 does not specify, in the topic for generation of CSR files (https://www.ibm.com/docs/en/cognos-analytics/12.1.x?topic=certificate-create-signing-request-csr-files), that at least one Subject Alternative Name ...
11 days ago in Cognos Analytics / Security 0 Submitted

Remove dependency for unsafe CSP headers

Our company ships a product that leverages Cognos Analytics. Our Pentest results have, for years, flagged that Cognos uses the following CSP headers: 'unsafe-inline' - allow inline scripts in our index.html 'unsafe-eval' - allow any eval() in our ...
13 days ago in Cognos Analytics / Security 0 Submitted

In-build OIDC - CJAP feature in Cognos Analytics to Manage the Multiple AD namespaces

For Every major version release of Cognos Analytics, CJAP needs to updated with latest libraries and compiled. Customers feeling this approach being more expensive and time consuming process. Instead of that Customers looking for in-build OIDC - C...
3 months ago in Cognos Analytics / Security 0 Future consideration

Have an option to provide a minimal error (with reference code) without any detail, in the user-facing UI.

Currently the minimal errors (as opposed to Detailed Errors) still give a great deal of information in the Stack Trace. It would be good for security if we could opt to have the user given a very minimal message "Error occurred - Please contact yo...
3 months ago in Cognos Analytics / Security 1 Future consideration

Access Cognos REST API via Gateway URL

Currently, IBM Cognos Analytics only officially supports REST API access via the dispatcher URL. While technically possible, using the Gateway URL for REST API access is not supported. This limitation presents challenges for customers whose networ...
6 months ago in Cognos Analytics / Security 0 Future consideration

Additional granularity for administrative users

It would be helpful if we were able to have a user with administrative permissions, who was unable to run a report. We need our administrators to be able to administer the environment, and potentially edit a report, however they should not be able...
7 months ago in Cognos Analytics / Security 0 Future consideration

Improve the certificate chain validation step in Cognos Configuration so that it also checks 3rd-Party certs, and alerts if expiry is approaching.

We recently had production outage due to intermediate certificate expiry, while server certificate was valid. Please consider adding a feature to check expiry dates on ALL certificates in the "encryption" chain: root, intermeate(s) and server, and...
7 months ago in Cognos Analytics / Security 0 Not under consideration

Allow Cognos Analytics portal authentication via API Key as a URL Parameter instead of the CAMUsername/CAMPassword/CAMNamespace parameters

With OIDC namespaces, the standard URL parameters for authenticating via URL do not work effectively due to redirects and MFA. This makes it challenging to authenticate directly via URL. It would be idea if we could authenticate via an API Key in ...
7 months ago in Cognos Analytics / Security 0 Future consideration

the grant type "grant_type=urn:ietf:params:oauth:grant-type:jwt-bearer" which is part of the OBO flow

we have requirement from Users to setup Cognos to Starburst, Databricks and Snowflake SID based data source connections to achieve user impersonation. we are using ADFS supports OBO pattern to obtain the access token which is not in place with Cog...
11 months ago in Cognos Analytics / Security 0 Submitted

Custom Authentication should be able to be debuged.

Currently if you try to debug a Custom Authentication Provider it is slow and unable. This is related to the Websphere Liberty addion. Some one in dev needs to look to see how to set this up so when trying to debug is not completly unusable. Also ...
12 months ago in Cognos Analytics / Security 0 Not under consideration