- Issued:
- 2025-06-16
- Updated:
- 2025-06-16
RHBA-2025:9101 - zero trust workload identity manager for Red Hat OpenShift 0.1.0
Synopsis
zero trust workload identity manager for Red Hat OpenShift 0.1.0
Type/Severity
Bug Fix Advisory None
Topic
zero trust workload identity manager for Red Hat OpenShift 0.1.0
Description
The Zero Trust Workload Identity Manager (ZTWIM) is a day-2 operator. The operator manages lifecycle of operand components from SPIRE project. The goal of ZTWIM is to provide secure, verifiable workload identities for workloads in multi-cloud environments. The operand components automate identity issuance, rotation, and verification, enhancing the zero-trust security model while eliminating static credentials. The current release of zero trust workload identity manager for Red Hat OpenShift is for Technology Preview.
Solution
Before installing the operator, make sure all previously released errata relevant to your system have been applied. The steps to apply the upgraded images will differ depending on the installation plan approval policy that will be used while installing thezero trust workload identity manager for Red Hat OpenShift.
- If the approval policy is set to
Automatic, then the Operator will be upgraded automatically when there is a new version of the Operator. No further action is required to upgrade. This is the default setting. - If you changed the approval policy to
Manual, then you must manually approve the upgrade to the Operator.
Affected Products
| Product | Version | Arch |
|---|---|---|
| Zero Trust Workload Identity Manager | 0.1 | aarch64 |
Fixes
(none)
CVEs
(none)
References
- https://docs.redhat.com/en/documentation/openshift_container_platform/4.18/html/security_and_compliance/zero-trust-workload-identity-manager
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.