Skip to Main Content
IBM Data and AI Ideas Portal for Customers


This portal is to open public enhancement requests against products and services offered by the IBM Data & AI organization. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:


Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,


Post your ideas

Post ideas and requests to enhance a product or service. Take a look at ideas others have posted and upvote them if they matter to you,

  1. Post an idea

  2. Upvote ideas that matter most to you

  3. Get feedback from the IBM team to refine your idea


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

IBM Employees should enter Ideas at https://ideas.ibm.com


Status Delivered
Created by Guest
Created on Jan 14, 2021

Log the Source Client IP Address in the system logs / audit logs

As per our security requirements, we need to see the IP Address of the machine from where the user has accessed the IBM Cloud Pak for Data web console. In the current system, we don't see any evidence for the same. I have worked with the support team and as per their recommendation, I am raising this. The reference to the support ticket is TS004726749

Needed by Date Feb 1, 2021
  • Guest
    Reply
    |
    May 5, 2021

    Any update on this.

    It has been quite some time since we had the last update on this.

    Any progress in enabling this?

  • Guest
    Reply
    |
    Apr 1, 2021

    Our clients had requesting for this as well

  • Guest
    Reply
    |
    Feb 26, 2021

    Dear Matthew,

    Thanks for the details of the conversations which you had.

    Looking forward for the procedure or SOP for getting this enabled as soon as possible.

    Appreciate your response.

    Thanks and Regards,

    Muni Kumar

  • Guest
    Reply
    |
    Feb 26, 2021

    Thank you for the input. I am continuing to discuss this requirement with our audit development team who is investigating. Status I can relay as of today is:

    • CP4D implementation today already extracts the client IP address (X-Forwarded-For header or Remote Address) and set the AUDIT-initiator-host-address request header for inclusion in all resulting Audit Records

    • However, the X-Forwarded headers are by default masked/substituted by OCP route behavior prior to actually reaching CP4D (nginx), therefore the external IP never reaches CP4D and cannot be logged

    • OpenShift 3.11 allowed OCP route configuration change to allow passthrough of this information, IBM documented how this configuration can be changed when OCP 3.11 is being used

    • Similar Openshift 4.x route configuration options have not worked successfully to allow similar passthrough.

    • Openshift 4.6 includes options for additional control over X-Forwarded headers. Our development team is actively investigating configuration options that would allow passthrough to function as requested.

  • Guest
    Reply
    |
    Jan 15, 2021

    This is most critical info where security team requested for