- 发布:
- 2026-05-14
- 已更新:
- 2026-05-14
RHSA-2026:17456 - Security Advisory
概述
zero trust workload identity manager for Red Hat OpenShift 1.0.1
类型/严重性
Security Advisory: Important
标题
zero trust workload identity manager for Red Hat OpenShift 1.0.1
描述
The Zero Trust Workload Identity Manager (ZTWIM) is a day-2 operator. The operator manages lifecycle of operand components from SPIRE project. The goal of ZTWIM is to provide secure, verifiable workload identities for workloads in multi-cloud environments. The operand components automate identity issuance, rotation, and verification, enhancing the zero-trust security model while eliminating static credentials. The current release of zero trust workload identity manager for Red Hat OpenShift is for Technology Preview.
解决方案
Before installing the operator, make sure all previously released errata relevant to your system have been applied.
The steps to apply the upgraded images will differ depending on the installation plan approval policy that will be used
while installing thezero trust workload identity manager for Red Hat OpenShift.
- If the approval policy is set to `Automatic`, then the Operator will be upgraded automatically when there is a
new version of the Operator. No further action is required to upgrade. This is the default setting.
- If you changed the approval policy to `Manual`, then you must manually approve the upgrade to the Operator.
修复
(none)CVE
amd64
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-csi-driver-rhel9@sha256:e15e0b3442602833be8e3297cfac1333ce9e45ebc0d9a893f2a758702aff75e1 |
s390x
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-csi-driver-rhel9@sha256:50bfe2aaeb2197ced2e396a70fa3d993de00d84e0467cbb1a106da4d475e987e |
ppc64le
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-csi-driver-rhel9@sha256:72aa00cddf53af0329615a684176ea8304ff005def8be0ac79b98f7669d48bac |
arm64
| registry.redhat.io/zero-trust-workload-identity-manager/spiffe-csi-driver-rhel9@sha256:a1260b241f60c79ae5e211388fcf4718ed7358a99832fc284b377cea52a2b9a0 |
Red Hat 安全团队联络方式为 secalert@redhat.com。 更多联络细节请参考 https://access.redhat.com/security/team/contact/。