Compatibility

Validated Kubernetes and OpenBao versions, CI coverage, and the production upgrade stance.

Updated 9 August 2026 · 2 min read

On this page

The operator requires Kubernetes 1.33 or newer. The rows below describe the current validation baseline, not a blanket guarantee for every cloud, distribution, or topology.

Kubernetes versions

VersionValidationSupport posture
1.35.xPull request, nightly, release, Helm, and upgrade coveragePrimary validated line
1.34.xNightly and release-gate lifecycle coverageValidated compatibility line
1.33.xNot validated for the current release lineMay work; validate in staging before adoption
OpenShiftManifest, Helm, admission, and focused platform coverageValidate on the target cluster

OpenBao versions

VersionValidationProduction note
2.6.1Primary CI, nightly, release, and rolling-upgrade coveragePrimary validated target for 0.5.x
Other 2.6.xBest-effort support on the latest stable line; not release-gated by 0.5.0Validate the exact patch in staging
2.5.xConfig compatibility and rolling-upgrade source coverageValidate the transition in staging
2.4.xConfig compatibilityUpgrade before a new production rollout
2.3.xNot validatedOut of support scope

Production upgrade rule

Validate the exact Kubernetes distribution, OpenBao version, unseal mechanism, storage, networking, and upgrade strategy in staging before changing production—even when both versions appear in the validated matrix.

Search the handbook

Try “install”, “threat model”, or “compatibility”.