Skip to Main Content
IBM Data and AI Ideas Portal for Customers


This portal is to open public enhancement requests against products and services offered by the IBM Data & AI organization. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:


Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,


Post your ideas

Post ideas and requests to enhance a product or service. Take a look at ideas others have posted and upvote them if they matter to you,

  1. Post an idea

  2. Upvote ideas that matter most to you

  3. Get feedback from the IBM team to refine your idea


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

IBM Employees should enter Ideas at https://ideas.ibm.com


Status Delivered
Workspace Db2
Components Security
Created by Guest
Created on Oct 6, 2023
Merged idea

This idea has been merged into another idea. To comment or vote on this idea, please visit DB24LUW-I-952 enable catalog database with SECURITY SSL in LDAP (MS active directory).

SECURITY SSL for LDAP database directory entry Merged

Large institutions mostly are using Windows on their client PCs and servers. These large institutions which are using Db2 are also normally using LDAP in Microsofts active directory to avoid that the user must catalog the Db2 servers and databases by theirself. This minimizes administration overhead massivly for the users and the IT staff. These days there are more and more security and legal requirements like DORA(EU digital operational resilience act) which requires financial corporations to protect their data. One way to protect the data is to encrypt communication through SSL. Db2 offers this type of communication and the use of Microsoft Windows Certificate Store (option SSL_[CLNT|SVR]_KEYDB GSK_MS_CERTIFICATE_STORE). What Db2 does not offer is the combination of SSL and LDAP under Windows because it currently does not support the keyword AUTHENTICATION SSL in the command CATALOG LDAP DATABASE. This is a big problem because if you want to use the standard Windows mechanism holding certificates in the Windows Certificate Store you cannot use LDAP. That would mean that all users have to catalog servers and databases by hand on their Db2 clients when they want to use SSL for the communication between client and server. This would be a major step back and would be unnecessary administrative overhead! JWT authentication or GSSAPI plugin are not an option for us. So please provide the option AUTHENTICATION SSL for CATALOG LDAP DATABASE that your customers can use LDAP and SSL which is currently not possible. This would be a great help and your customers would be thankful!

Needed By Quarter