Red Hat has introduced new security and compliance capabilities for Red Hat OpenShift. The new features, available with the general availability of Red Hat OpenShift 4.12, are designed to help organizations more efficiently scale workloads across the hybrid cloud without compromising security.
Red Hat OpenShift 4.12, based on Kubernetes 1.25, introduces three new Operators and an update to the Compliance Operator, designed to enhance workload consistency and management from the datacenter to the edge.
- The new Security Profiles Operator enables users to more easily distribute and use security profiles like Seccomp or SELinux in a Kubernetes cluster. Replacing what was previously a more manual process, the Security Profiles Operator is designed to simplify Seccomp or SELinux profile creation while managing profiles across nodes and namespaces. This helps IT teams to craft security profiles that give only the necessary privileges to container processes.
- New enhancements were introduced to the Compliance Operator which helps Red Hat OpenShift administrators run compliance scans and provide remediations for the issues found. With the introduction of PriorityClass, admins now have better control of their compute and memory resources and can prioritize which pods to scan first, enabling more accurate results and helps ensure each cluster stays compliant.
- The new Ingress Node Firewall Operator allows users to configure firewall rules at the node level. This helps administrators control from which interface and remote hosts the Kubernetes API server can be accessed, better controlling network traffic in and out of the node for enhanced security.
- The new Network Observability Operator, provides observable network traffic metrics, flows, topology and tracing for a more complete understanding of network traffic. The operator helps simplify identification of network bottlenecks and assists with troubleshooting connectivity issues, providing for enhanced network performance optimization in Red Hat OpenShift clusters.
Red Hat OpenShift 4.12 is now generally available.