Skip to Main Content
Cloud Management and AIOps


This is an IBM Automation portal for Cloud Management, Technology Cost Management, Network Automation and AIOps products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).

Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.

Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

Status Future consideration
Workspace SevOne
Categories Data Insight (DI)
Created by Guest
Created on Oct 15, 2024

Object Multitenancy Level - Ability to Obfuscate IP Addresses & Enhance Permission Management in SevOne NPM

Description:

This idea aims to boost security and fine-tune access control in SevOne NPM and SevOne Data Insight with two key features:

IP Address Obfuscation:

  • Add the ability to mask device IP addresses in the SevOne interface, much like the current "Object Alternate Name" field used for hostnames, but for IPs.
  • This would allow real IPs to be replaced with user-defined labels, making it easier to protect sensitive information in scenarios where multiple clients access monitoring data. For example, if N clients are connected to different interfaces on an L3 device, this would prevent them from seeing the actual IP address of the backbone device.
  • Users could set alternate labels for each IP, which would then appear in dashboards and reports, keeping the real addresses hidden.

UI Element and Access Restriction in Data Insight:

  • Introduce more flexibility to control what users see in the Data Insight interface. Currently, the ACL settings are limited when it comes to customizing what elements (like the navigation bar, specific menus, or report sections) are visible. Ex. "We dont wanna show our Devices IP to our customers"
  • The idea is to give admins the ability to hide or show UI components based on user roles, allowing for more precise access control. This would make it easier to follow security guidelines by limiting access to certain features or reports.

Benefits:

  • Stronger Security: Masking IPs helps safeguard internal infrastructure and prevents the exposure of sensitive data.
  • More Granular Access Control: Allows better alignment with security policies through detailed role-based settings.
  • Improved User Management: Makes it easier to customize the user experience by adjusting which elements are accessible based on role, resulting in a cleaner and more focused interface.

 

Idea priority Urgent
  • Guest
    Reply
    |
    Oct 21, 2024

    + ... As a potential temporary solution, enabling a feature flag to hide the devices tab for all users could help. We are also open to any other suggestions you may have to prevent the display of device IPs for read-only users.