Skip to Main Content
Cloud Management and AIOps


This is an IBM Automation portal for Cloud Management, Technology Cost Management, Network Automation and AIOps products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).

Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.

Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

Status Not under consideration
Workspace Instana
Categories Access Control
Created by Guest
Created on Jul 11, 2025

Request for Instana’s authentication function

The customer would like to request to enable the use of multiple (at least two) Azure AD tenants for SAML authentication IdP.

Our customer is using two Azure AD tenants as the authentication provider. One is for headquarter, the other is for IT subsidiary.

Currently, they register Azure AD tenant for headquarter as Instana’s SAML authentication IdP, but this occurs complexity in their Instana operation.

If Instana supported registering multiple Azure AD tenants for a single Instana backend server, it would significantly simplify their operations and maintenance. 

If this feature is not acceptable, the customer would like to use both SAML authentication and Instana’s built-in authentication using individual IDs and passwords. 

Idea priority High
  • Admin
    Máté Návay
    Nov 14, 2025

    Configuring an IdP through federated authentication means we fully "outsource" the user identification to a trusted provider. That means we can only forward users to a single defined URL and we will only accept authenticated users coming back from that same provider.
    Enabling password login alongside this would mean it is no longer ensured that each user is authenticated against that federated authority and significantly lowers the security of the tenant.

    Multiple IdPs can be proxied through tools like KeyCloak, which handle the somewhat complicated logic and forward users to the appropriate IdP.


    We offer API endpoints to delete the SAML (or OIDC) config in case the customer IdP becomes unavailable, which allows users to reset their passwords if they don't have one and enable them to log back into Instana.
    We're not currently planning to change this configuration.