Versions and lifecycle
Numspot operates its Secret Manager instances with stable OpenBao versions that benefit from active security patch tracking, in compliance with the security requirements applied to the service.
Supported versions
The following minor versions are supported:
- OpenBao 2.5
This scope covers the stable versions that are actively maintained by the OpenBao project, with continuous tracking of security advisories.
When you create a Secret Manager instance, the most recent version is selected by default. For more information, see Create a Secret Manager instance.
Security patch tracking
The images used for the Secret Manager instances include:
- patch updates applied regularly to fix bugs and security vulnerabilities;
- active tracking of critical and high-severity vulnerabilities.
Patch updates are applied automatically by Numspot and require no action from the customer. They only concern patch versions (for example, 2.5.3 to 2.5.4), without any change to data compatibility.
To obtain information about the applied versions or recent patches, contact Numspot support.
Version lifecycle
Support policy
| Version | Support status | Estimated Numspot end-of-support |
|---|---|---|
| 2.5 | Active | To be determined |
The OpenBao project only maintains the latest minor version at any time. The support status is aligned with the announcements from the OpenBao project. Numspot follows the OpenBao policy regarding the support of minor versions.
End-of-support notification
Numspot notifies its customers several months before the end of support of a minor version. This notification allows customers to plan the update to a more recent version.
Minor updates
Minor updates (for example, from OpenBao 2.5 to OpenBao 2.6) result in an update of the Secret Manager instance. Numspot recommends testing the compatibility of your workflows before performing a minor update.
A version update may cause a temporary unavailability of the Secret Manager instance. It is the customer's responsibility to verify that their workflows are compatible with the new version before any migration.