Deactivate-functionality for secrets in Secrets Manager
For safe housekeeping of secrets in Secrets Manager the following approach is necessary. 1) Deactivate a deprecated secret 2) Hyper care phase, see if there are any issues with the application 3) Delete the secret after successful hyper care phase...
Allow Customers to Pin Minor Fixpack Version in Openshift in IBM Cloud Satellite
When you upgrade Openshift in IBM Cloud Satellite, the latest fixpack is always applied and the customer has no way to 'pin' or specify the minor fixpack version fixpack version. This could be a problem for us because we generally upgrade our nonp...
Implement the latest CIS Benchmark controls to SCC v2 Scanning Portal - Security & Compliance Center
Please implement the latest CIS Benchmark controls to SCC v2 Scanning Portal.IBM SCC v2 Scanning portal have missing the controls as listed below. It is important to have them added to be in alignment with the latest CIS Benchmark. Also, for the p...
Atomic "remove a specific Instance Group member and decrement membership_count" for VPC Instance Groups
Service / Component: VPC Infrastructure Services — Instance GroupsType: Feature request / API enhancementSummaryProvide a single, atomic operation that removes a caller-chosen instance-group membership and decrements the group's membership_count i...
Extend IAM Action Control to Protect Event Notification Distribution List in Child Accounts
SAP operates a centralized Hyperscaler Event Monitoring platform that collects IBM Cloud service health events from all member accounts into a single dashboard. Today, child account administrators can modify or delete Event Notification and Accoun...
Network Security Groups for PowerVS public interfaces
A customer configured a public interface/IP address on their PowerVS VSI to allow outbound EDI connections. They are experiencing a large number of inbound hacking attempts. They would like to enable PowerVS Network Security Groups on the public i...
Enable full traceroute visibility across IBM Cloud Direct Link and Transit Gateway
Currently, IBM Cloud does not provide full traceroute hop visibility when traffic traverses hybrid network paths involving Direct Link, Transit Gateway and VPC routing components. When executing traceroute from an on-premises environment or from I...
As HPCS has been deprecated and KPD identified as its replacement, PKCS#11/GREP11 capability and integration with GKLM is required (as was in HPCS)
Client WTW currently uses HPCS and has GKLM and PKCS#11/GREP11 integration as part of their solution for storing encryption keys from their on premises Oracle on IBM Power environment in the HPCS key store in IBM Cloud. HPCS has been annoucend as ...
Function for users to perform failover for testing
In system development, there is always a need to conduct database failure testing. Many customers consider this as one of their service-in criteria. In order not to put an extra burden on the IBM Cloud SRE team, it would be nice to have a UI that ...
Headlamp add-on compatibility with IBM Cloud Managed Istio as an ingress path
With Headlamp add-on replacing the legacy 'kubernetes-dashboard' it would be benefit for the 'Headlamp add-on' to support integration via IBM Cloud Managed Istio Ingress, in addition to IBM-managed nginx and Traefik. Within our account our IKS clu...