- Issued:
- 2025-06-16
- Updated:
- 2025-06-16
RHBA-2025:9090 - Bug Fix Advisory
Synopsis
Zero trust workload identity manager 0.1.0
Type/Severity
Bug Fix Advisory
Topic
Zero trust workload identity manager 0.1.0
Description
The Zero Trust Workload Identity Manager is a day-2 operator. The operator manages lifecycle of operand components from SPIRE project. The goal of ZTWIM is to provide secure, verifiable workload identities for workloads in multi-cloud environments. The operand components automate identity issuance, rotation, and verification, enhancing the zero-trust security model while eliminating static credentials. The current release of zero trust workload identity manager is for Technology Preview.
Solution
Before installing the operator, make sure all previously released errata relevant to your system have been applied.
The steps to apply the upgraded images will differ depending on the installation plan approval policy that will be used while installing the zero trust workload identity manager.
- If the approval policy is set to `Automatic`, then the Operator will be upgraded automatically when there is a new version of the Operator. No further action is required to upgrade. This is the default setting.
- If you changed the approval policy to `Manual`, then you must manually approve the upgrade to the Operator.
Fixes
(none)CVEs
(none)
amd64
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-spire-controller-manager-rhel9@sha256:6d4cad2aff85c25b53e452c5e64158c506d0b0ce7a80fd02e9368cef18021111 |
s390x
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-spire-controller-manager-rhel9@sha256:e5431271ef5ac2b1b2a223884ba5dc8e56260cb9e80194cad9a7128fe5d4c71f |
ppc64le
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-spire-controller-manager-rhel9@sha256:eb8936a740ff1916cbf90e169212f42070a4ae8c129a4c19b447f91c91684cbd |
arm64
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-spire-controller-manager-rhel9@sha256:0905758248baaadfeef25bc6bf03109d1d57a00cc35429594a6e7d99b30a6365 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.