Skip to Main Content
Cloud Management and AIOps


This is an IBM Automation portal for Cloud Management, Technology Cost Management, Network Automation and AIOps products. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).

Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.

Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

ADD A NEW IDEA

Clear

Authentication & Security

Showing 32 of 6728

Make it possible to read the openIdClientSecret from a K8s secret instead of hardcoded in the xl-release.

Hi, When connecting Turbonomic to e.g. Okta with OIDC the settings look like this: apiVersion: charts.helm.k8s.io/v1alpha1kind: Xlmetadata: name: xl-releasespec: properties: api: openIdEnabled: true openIdClients: okta openIdClientId: xxxxxxxxxh1x...
about 8 hours ago in IBM Turbonomic ARM / Authentication & Security 0 Submitted

Support Turbonomic IAM Role Authentication Without Customer‑Side OIDC Requirement

Problem Statement In large, regulated enterprise environments: • Adding or approving external OIDC identity providers in AWS accounts is restricted • Identity provider URLs embedded in IAM trust policies require extensive security review • Ente...
4 days ago in IBM Turbonomic ARM / Authentication & Security 0 Submitted

Enable support for certificate-based authentication for Azure targets

Currently, Turbo only supports clientID/secrets as an authentication method when targeting Azure. This request is to enable support for ClientID/certificate as this is the ONLY authentication method allowed for Azure at the customer.
8 days ago in IBM Turbonomic ARM / Authentication & Security 0 Submitted

Implement Custom Roles & RBAC Control via Entity/Tag

This would benefit all users of Turbonomic by allowing administrators to define custom roles, as well as the permissions applied to these roles either globally or by entity/tag and their respective child objects. This would enable application owne...
over 3 years ago in IBM Turbonomic ARM / Authentication & Security 12 Planned for future release

Start supporting AWS target configuration via IAM Roles inside IBM Cloud (ROKS) using the CCO operator

Currently, Turbonomic has two ways of connecting cloud targets, via Access key for each AWS account or using IAM Roles. However, the integration functionality via IAM Roles does not work in environments outside AWS (EKS/ROSA), such as ROKS (IBM Cl...
about 2 years ago in IBM Turbonomic ARM / Authentication & Security 0 Planned for future release

Onboard ThoughtSpot Users via Distribution List in Okta IdP

Integrate Okta IdP with ThoughtSpot via SAML and utilize a pre-existing group within the IdP to streamline the onboarding process for new users. This would simplify user management and allow an admin to add all members of an email distribution lis...
3 months ago in IBM Turbonomic ARM / Authentication & Security 0 Future consideration

Assigning user with multiple roles or multiple external user groups

Enterprises are getting complex and role of a FinOps, DevOps or SRE is getting more fragmented. With this direction in the organization, a FinOps team member may want to have a readonly/observer privilege on all the resources, but more actionable ...
4 months ago in IBM Turbonomic ARM / Authentication & Security 0 Planned for future release

Turbonomic SAML - Single sign on - app only log out.

Currently, Turbonomic can be configured with OKTA as SAML. When user logout from Turbonomic, it log off OKTA session too. Can Turbonomic configure with app only logout so even SAML - OKTA is enabled, when user logout, so only Turbonomic app only l...
3 months ago in IBM Turbonomic ARM / Authentication & Security 0 Future consideration

Configure Turbonomic session timeout

Can Turbonomic configured with overall session timeout with duration of 30 minutes as overall session timeout and can customer set session timeout as 15 minutes? Like for any portals, we can set session timeout to enhance security. The same way, r...
3 months ago in IBM Turbonomic ARM / Authentication & Security 0 Future consideration

Integrate Azure Keyvault to fetch secrets for Turbonomic deployed in Azure Kubernetes Services.

Currently, Credentials are mentioned in the plain text in Azure kubernetes cluster to connect to Azure MySQL database, AKS level created user. As a security measure, can Turbonomic application integrate with Azure keyvault to fetch credentials fro...
3 months ago in IBM Turbonomic ARM / Authentication & Security 0 Planned for future release