Skip to Main Content
IBM Sustainability Software - Ideas Portal
Hide about this portal


This portal is to open public enhancement requests against the products and services belonging to IBM Sustainability Software. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).


Shape the future of IBM!

We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:

Search existing ideas

Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updates on them if they matter to you. If you can't find what you are looking for,

Post your ideas
  1. Post an idea.

  2. Get feedback from the IBM team and other customers to refine your idea.

  3. Follow the idea through the IBM Ideas process.


Specific links you will want to bookmark for future use

Welcome to the IBM Ideas Portal (https://www.ibm.com/ideas) - Use this site to find out additional information and details about the IBM Ideas process and statuses.

IBM Unified Ideas Portal (https://ideas.ibm.com) - Use this site to view all of your ideas, create new ideas for any IBM product, or search for ideas across all of IBM.

ideasibm@us.ibm.com - Use this email to suggest enhancements to the Ideas process or request help from IBM for submitting your Ideas.

REST API - OATH2 both ways - Inbound and Outbound

See this idea on ideas.ibm.com

OATH2 is supported in outbound but not inbound.
As an enhanced security protocol, it would be nice to have OATH2 inbound also supported.
Currently inbound we have to use APIKeys only.

Security standard requirements demand OATH2 both ways for API connections

Example:

As part of the project to migrate from Maximo EAM SAAS to MAS we have and agreed architecture that all API calls between our ACE/APIC middleware and MAS will use Oauth connections (client_credentials flow). 

Our APIC/ACE environment has Oauth endpoints and we have been able in DEV to switch the endpoints on for all our Maximo Publish channels to use OAuth to obtain a token from IBM endpoint  and connect to IBM ACE.

However we also need ACE to be able to send data MAS using OAuth endpoints rather than Basic Auth which we us for current SAAS environment.

How can we configure MAS to allow access to Enterprise Services and Rest endpoints (/maxrest and /oslc) via OAuth? Does Maximo Application Suite on Cloud have an offered/recommended identity provider or can we use the same IBM identity provider that our APIC platform is using?

Idea priority Urgent
Needed By Yesterday (Let's go already!)