- Issued:
- 2026-08-06
- Updated:
- 2026-08-06
RHSA-2026:51079 - Security Advisory
Synopsis
RHTAS 1.0.2 - GA Release Of the Policy Controller Operator
Type/Severity
Security Advisory: Important
Topic
The GA release of the RHTAS Policy Controller Operator.
For more details please visit the product documentation at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.4
Description
The RHTAS Policy Controller Operator can be used with OpenShift Container Platform 4.16, 4.17, 4.18, 4.19, 4.20, 4.21, 4.22
Solution
The RHTAS Policy Controller Operator is Helm-based operator for deploying and managing instances of the Sigstore Policy Controller on OpenShift. It is a self-managed on-premise deployment of the Policy Controller Helm Charts available at https://github.com/sigstore/helm-charts/tree/main/charts/policy-controller
Platform Engineers, Software Developers and Security Professionals may use the RHTAS Policy Controller Operator to enforce policies on OCP clusters by using supply-chain metadata.
For details on using the RHTAS Policy Controller Operator, refer to the product documentation at https://access.redhat.com/documentation/en-us/red_hat_trusted_artifact_signer/1.4
Affected Products
- Red Hat Trusted Artifact Signer (RHTAS)
Fixes
(none)amd64
| registry.redhat.io/rhtas/policy-controller-rhel9@sha256:4e402c4bd5cf40b4e57bc1a3c0b6f0a796bfed3c65407e7f88a6831a95cf10de |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.