Kubermatic branding element

Meet KubeOne 1.14 - Supporting Kubernetes 1.36

Out now! KubeOne 1.14

We are proud to announce the release of KubeOne 1.14!

KubeOne is our open-source cluster lifecycle management tool that helps you automate the deployment, upgrading, and management of Kubernetes clusters. With this release, we’re continuing our commitment to stability, flexibility, and support for the latest innovations in the Kubernetes ecosystem.

Release Highlights of KubeOne 1.14

This release introduces support for the latest Kubernetes version, expands infrastructure management capabilities, and delivers several operational improvements to simplify day-to-day cluster management.

Support for Kubernetes 1.36

KubeOne now supports Kubernetes 1.36. As part of this update, all legacy Cloud Controller Manager (CCM) and CSI migration code has been removed, keeping KubeOne aligned with upstream Kubernetes and reducing maintenance complexity.

Managed Control Planes on OpenStack and KubeVirt

KubeOne can now provision and manage control-plane virtual machines on OpenStack and KubeVirt without requiring Terraform. This simplifies cluster creation and allows KubeOne to fully own the lifecycle of control-plane nodes on these providers.

Automated etcd Defragmentation

A new etcd-defrag addon automatically defragments all etcd members using a configurable Kubernetes CronJob. This helps maintain healthy etcd performance over time while reducing manual operational work.

Improved Certificate Renewal

The kubeone certificates renew command now detects missing Subject Alternative Names (SANs) by comparing the live certificate with apiEndpoint.alternativeNames. When differences are found, KubeOne automatically regenerates the certificate to ensure it matches the configured API endpoint.

Web UI Enhancements

The KubeOne Web UI continues to evolve with several new operational capabilities. Users can now scale MachineDeployments up and down, view pods running on individual nodes, delete Machines directly from the interface, and trigger forced rollouts, all without leaving the UI.

Custom Secrets for Addons

A new customSecrets section in the credentials file allows arbitrary secrets to be exposed to addon templates as .CustomCredentials.KEY. This makes it easier to build reusable, provider-specific addons without embedding sensitive information directly in templates.

Helm 4 Support

The embedded Helm library used by HelmRelease addons has been upgraded to Helm 4 (helm.sh/helm/v4), enabling compatibility with the latest Helm ecosystem and future improvements.

Separate SSH Keys for Jump Hosts

Jump (bastion) hosts can now be configured with their own sshPrivateKeyFile, independent of the SSH key used for control-plane nodes. This provides greater flexibility for environments with stricter access controls or dedicated bastion infrastructure.

Get Started with KubeOne 1.14 Today!

  • Check out the release on GitHub and give us a star! ;)
  • Read the docs: Go through the detailed changelog and documentation for specific configuration guides.

We can’t wait to see what you build with KubeOne 1.14!

Artiom Diomin

Artiom Diomin

Senior Software Engineer

Kubermatic named in the 2025 Gartner® Magic Quadrant™ for Container Management

Access the Report

Empower Your Business with Cloud Native Labs Consulting Services, Accelerators and Trainings

Discover More