Written by:

Thzuska Pico

Reviewed by:

Dmitry Galkin

OpenStack 2026.2 Hibiscus: New Features, Security Hardening, and AI-Ready Infrastructure

OpenStack-2026-2-Hibiscus

The OpenStack 2026.2 Hibiscus release arrived on September 30, 2026, delivering the 34th iteration of the open source cloud platform powering over 45 million compute cores globally. This OpenStack release continues the platform’s evolution toward secure infrastructure for modern private clouds including AI, HPC and other demanding workloads. Hibiscus puts particular emphasis on confidential computing, accelerator management, high-performance storage, networking efficiency and security, while also continuing OpenStack’s long-term modernization of its operational and software foundations.

The release is the result of a six-month development cycle involving almost 600 contributors and approximately 11,500 code changes. During the cycle, the OpenDev Zuul continuous integration system ran around 1.6 million jobs, demonstrating the scale of automated testing and validation behind the release.

For OpenStack operators, however, a new release is about more than the headline features. Hibiscus also introduces configuration changes, deprecations, removals and upgrade considerations that should be reviewed before production deployments are upgraded.

Focus on Security

OpenStack has historically averaged around three security advisories per year. In the first eight months of 2026 alone, there have been around 40 advisories, a surge that community leaders attribute to automated AI vulnerability discovery tools now widely used by security researchers. Hibiscus absorbs the lessons from that influx with targeted hardening across multiple services.

Designate, the DNS-as-a-Service component, received the most consequential fix in OSSA-2026-034. The vulnerability allowed a tenant to create a duplicate, subzone, or superzone of another tenant’s zone by scheduling it to a different pool – enabling DNS hijacking or denial of service. The patch ensures ownership checks span all pools, not just the one where a zone is being created. Beyond that critical fix, Designate gains DANE support through TLSA records, letting domain owners publish which TLS certificates are valid for their services directly in DNS. A new BIND9 backend also enables split-horizon DNS, where internal and external clients receive different answers to the same query.

Nova expands confidential computing with AMD SEV-SNP and Intel TDX support. These hardware-level memory encryption technologies protect workloads even from privileged infrastructure software, with attestation capabilities that verify the compute environment before sensitive data is processed.

OpenStack 2026.2 Hibiscus Security Features

Security Capability Project Operator Benefit

SEV-SNP / TDX

Nova

Hardware-backed VM memory encryption

DANE / TLSA

Designate

Reduced reliance on certificate authorities

Split-Horizon DNS

Designate

Different answers for internal vs. external

Cross-Tenant Zone Fix

Designate

Closes DNS hijacking vector (OSSA-2026-034)

Accelerator Isolation

Cyborg

Tighter controls for multi-tenant GPUs

Making Room for AI and Accelerated Workloads

The infrastructure requirements of AI and HPC workloads run counter to traditional cloud design assumptions. Hibiscus adapts on several fronts.

Nova and Cyborg now manage mediated devices like virtual GPUs, giving operators finer-grained control over how accelerator resources are partitioned and assigned to tenants. This matters for inference workloads that need GPU access without monopolizing an entire physical card.

Manila adds support for Weka and Lustre parallel filesystems. These are purpose-built for the throughput and low-latency demands of data-intensive AI training and HPC simulations – workloads that shared file storage was never designed to handle.

Ironic and Nova improve bare-metal resource tracking, simplifying the management of heterogeneous hardware fleets that mix GPUs, high-core-count CPUs, and specialized accelerators.

Networking That Speaks the Data Centerโ€™s Language

Large OpenStack deployments have long relied on gateway layers to bridge virtual tenant networks to physical infrastructure. Hibiscus release changes that.

Neutron BGP EVPN integration via a new service plugin and OVN agent extension. Tenant network prefixes can now be advertised directly into the physical fabric using BGP EVPN Type-5 routes via FRR. As Thierry Carrez, general manager of the OpenInfra Foundation, put it: โ€œIt lets the tenant network prefixes be advertised directly into the physical fabric, so that really that’s basically how modern data center networks are builtโ€. The result is fewer gateway hops and closer alignment with contemporary leaf-spine architectures.

The release also cuts the memory footprint of HA router monitoring by more than 15 times, an important optimization for cloud operators running thousands of virtual routers.

Runtime Targets and Cleanup

Hibiscus standardizes on Python 3.11 as the minimum supported version, with 3.12 and 3.13 tested as defaults on Ubuntu 24.04 and Debian 13. Ubuntu 26.04 and CentOS Stream 10 / Rocky 10 / AlmaLinux 10 are in advance testing.

Deprecations and removals continue OpenStack’s methodical cleanup:

  • Identity v2 authentication fallback removed from clients
  • Neutron VPNaaS OSC commands removed
  • Magnum and Cyborg legacy CLIs removed
  • Mistral Vitrage actions removed
  • Barbican legacy client removed

The Manila project also progresses its Eventlet removal, with full migration targeted for the 2027.1 cycle.

What This Means for Private Cloud Teams

Hibiscus OpenStack delivers practical value for organizations running their own infrastructure. The confidential computing additions in Nova are directly relevant for regulated sectors – finance, healthcare, public sector – where workloads must remain protected from infrastructure operators. The Designate fix addresses a genuine cross-tenant isolation vulnerability that affected any multi-pool deployment.

The AI infrastructure features – vGPU support, Lustre and Weka integration – make OpenStack a more viable platform for teams that need GPU-accelerated workloads on hardware they control, without surrendering data governance to a public cloud provider.

At Cloudification, we donโ€™t just deploy OpenStack, we actively contribute to it. During the Hibiscus cycle, our team has contributed patches to Keystone, Designate, and Manila, helping to shape the new release. Cloudification is OpenInfra Silver Member since 2023, with over 200 merged OpenStack changes across projects including Nova, Cinder, Neutron, Ironic, Octavia, and Barbican and broader ecosystem. ย 

Our c12n private cloud is engineered around 100% open source projects with GitOps-automation and built for a variety of production workloads. We deploy OpenStack with Kubernetes, Ceph, and full observability – no licensing fees, no proprietary lock-in. If you’re evaluating a private cloud for AI, HPC, or VMware replacement, c12n is designed to run current OpenStack releases with the operational maturity your workloads demand.

Considering OpenStack for your infrastructure?

Explore c12n private cloud and see how we deliver production-ready OpenStack with GitOps automation, no license costs, and full infrastructure control. Let’s discuss your workloads.

๐Ÿ“จ Get in touch

๐Ÿ“š Browse more topics in our Cloud Blog

Cloudification_Contributor_OpenStack
Blog > Cloud > OpenStack 2026.2 Hibiscus: New Features, Security Hardening, and AI-Ready Infrastructure
Let's Get Social: