Overview
CyberArk Long Term Support (LTS) for cert-manager
Maximize Kubernetes platform reliability and enhance security for Kubernetes machine identities with CyberArk Long Term Support (LTS) for cert-manager. As the Certificate Management solution of choice for Amazon Elastic Kubernetes Service (EKS), and Red Hat OpenShift Service for AWS (ROSA) clusters, and with native integration to Amazon Private CA and other popular Certificate Authorities, it ensures compliance and security policy for TLS and mTLS to applications running on Kubernetes.
About cert-manager The hugely popular cert-manager open-source project is the de facto choice for Kubernetes platform engineering teams. This solution provides highly automated machine identity management for X.509 certificate issuance and is proactively developed and maintained for the open source community by CyberArk.
Why use CyberArk LTS for cert-manager?
- Commercial-grade support for critical operations using open-source tools.
- Improves uptime and reliability across multi-cluster Kubernetes environments.
- Delivers guaranteed SLAs and aligns with FedRAMP / FIPS 140-2 compliance.
- Helps reduce platform outages and boost engineering team efficiency.
Key Benefits
- Aligned with open source: Maintained by original cert-manager developers.
- Stronger security: For self-hosted, hybrid, or multi-cloud Kubernetes.
- Reliable operations: SLA-backed bug fixes and expert support.
- Proactive maintenance: Supported for 2 years.
- Software Supply Chain: Signed images ensure authenticity and integrity.
For more information, visit: https://www.cyberark.com/services-support/long-term-support-for-cert-manager/Â
Highlights
- SLA-backed support for operational peace of mind with fast-tracked bug fixes and technical advice.
- Provides FIPS 140-2 compliance and aligns with FedRAMP requirements to meet the highest level of government-grade standards.
- CyberArk LTS for cert-manager provides a hardened LTS build of cert-manager fully supported for 2 years.
Details
Unlock automation with AI agent solutions

Features and programs
Financing for AWS Marketplace purchases
Pricing
- $500.00/month
Vendor refund policy
For refund policy, visit <www.cyberark.com/terms-service-saas/Â >
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
EKS Add-On
- Amazon EKS
EKS add-on
An add-on is software that provides supporting operational capabilities to Kubernetes applications but isn't specific to the application. This includes software like observability agents or Kubernetes drivers that allow the cluster to interact with underlying AWS resources for networking, compute, and storage. Add-on software is typically built and maintained by the Kubernetes community, cloud providers like AWS, or third-party vendors. Amazon EKS add-ons provide installation and management of a curated set of add-ons for Amazon EKS clusters. All Amazon EKS add-ons include the latest security patches and bug fixes, and are validated by AWS to work with Amazon EKS. Amazon EKS add-ons allow you to consistently ensure that your Amazon EKS clusters are secure and stable and reduce the amount of work that you need to do to install, configure, and update add-ons.
Version release notes
cert-manager 1.18.2 was released on July 2, 2025.
Key Features
Name constraints fix
- This release fixes an issue where permitted URI domains were incorrectly used to set the excluded URI domains in the CSR's name constraints.
- This only applies if you have enabled the NameConstraints feature gate.
global.rbac.disableHTTPChallengesRole Helm option
- The global.rbac.disableHTTPChallengesRole Helm option has been removed to fix an ongoing issue.
- This feature will be reintroduced in v1.19.0.
Additional details
Usage instructions
For installation instructions, refer to https://docs.venafi.cloud/vaas/k8s-components/t-certmanager-install/Â
Resources
Vendor resources
Support
Vendor support
Contact CyberArk for support related questions: https://www.cyberark.com/customer-support/Â
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.