live wire
▸JAVA · Quarkus 4.0.0.Beta1 moves to Java 21, adds HTTP/3 and starts extension migration (Oct. 1)Quarkus▸SECURITY · X41 shows shared /dev/shm can turn Envoy hot restart into cross-container lateral movementX41 D-Sec▸DATA · AWS and Red Hat map Confluent Platform on ROSA with HCP, CFK and OpenShift security controlsAWS IBM & Red Hat▸API · Red Hat resolves intermittent 3scale API Manager latencyRed Hat Status▸AI · IBM shows Maximo workflows exposed as approval-gated MCP tools on OpenShiftIBM Community▸AI · vLLM adds day-zero NVIDIA Vera Rubin support and reports 7.8× per-GPU throughputvLLM▸INTEGRATION · Apache Camel 4.23 makes Kamelets visible to AI tooling and validationApache Camel▸SECURITY · OpenShift 4.14.75 fixes five CVEs, including two SQLite code-execution flawsRed Hat Customer Portal▸SUPPLY CHAIN · Red Hat maps CRA-ready open source practices as EU reporting rules take effectRed Hat Blog▸AI · Red Hat AI Inference on IBM Cloud adds an OpenAI-compatible Embeddings APIIBM Cloud▸API · Red Hat investigates degraded 3scale API Management SaaS APIsRed Hat Status▸PLATFORM · Red Hat and Cloudera validate a 100-VM analytics stack on OpenShift VirtualizationRed Hat Blog▸DEVELOPER HUB · Red Hat maps a four-zone, quota-aware Dev Spaces architectureRed Hat Developer▸INTEGRATION · Camel 4.23 teaches agent tools to discover and validate KameletsApache Camel▸JAVA · Quarkus 4.0.0.Beta1 moves to Java 21, adds HTTP/3 and starts extension migration (Oct. 1)Quarkus▸SECURITY · X41 shows shared /dev/shm can turn Envoy hot restart into cross-container lateral movementX41 D-Sec▸DATA · AWS and Red Hat map Confluent Platform on ROSA with HCP, CFK and OpenShift security controlsAWS IBM & Red Hat▸API · Red Hat resolves intermittent 3scale API Manager latencyRed Hat Status▸AI · IBM shows Maximo workflows exposed as approval-gated MCP tools on OpenShiftIBM Community▸AI · vLLM adds day-zero NVIDIA Vera Rubin support and reports 7.8× per-GPU throughputvLLM▸INTEGRATION · Apache Camel 4.23 makes Kamelets visible to AI tooling and validationApache Camel▸SECURITY · OpenShift 4.14.75 fixes five CVEs, including two SQLite code-execution flawsRed Hat Customer Portal▸SUPPLY CHAIN · Red Hat maps CRA-ready open source practices as EU reporting rules take effectRed Hat Blog▸AI · Red Hat AI Inference on IBM Cloud adds an OpenAI-compatible Embeddings APIIBM Cloud▸API · Red Hat investigates degraded 3scale API Management SaaS APIsRed Hat Status▸PLATFORM · Red Hat and Cloudera validate a 100-VM analytics stack on OpenShift VirtualizationRed Hat Blog▸DEVELOPER HUB · Red Hat maps a four-zone, quota-aware Dev Spaces architectureRed Hat Developer▸INTEGRATION · Camel 4.23 teaches agent tools to discover and validate KameletsApache Camel
upstreambeat.ai
newsPLATFORM

Red Hat’s Pen Drive brings Lightspeed analysis to disconnected OpenShift clusters

A single Podman image packages offline recommendations, drift checks and must-gather analysis for restricted environments.

Offline OpenShift analysis kit compared with gathered diagnostics and a cluster blueprint.
AI-generated illustration
By The News Desk· Oct 8, 2026the quick take — two AI hosts go live when you do

Red Hat has made an offline OpenShift analysis tool called Pen Drive available to OpenShift subscribers, packaging Lightspeed Advisor rules, cluster drift checks and state validation into a single Podman image. The Oct. 8 announcement targets air-gapped and restricted environments where a cluster cannot rely on a persistent connection to hosted analysis services.

Three levels of inspection

Pen Drive offers three principal analysis paths. An in-cluster-check mode runs a targeted, low-footprint set of direct checks for areas including hardware and firmware inventory, host-group consistency and baseline cluster health. Red Hat says this mode was co-developed with Nokia for telecommunications environments, though it is intended for broader use.

A kube-compare mode compares live resources with a mounted reference blueprint to identify configuration drift. The most comprehensive full-run workflow gathers a lightweight must-gather archive, examines the previous 24 hours of metrics, configuration and logs, and scans the result against Lightspeed rules, in-cluster rules and an optional kube-compare reference.

The image also exposes separate gather and scan commands. That split lets an operator collect data at one time or location and analyze the resulting archive later, a useful property where data transfer and connectivity are tightly controlled.

Offline packaging and outputs

Red Hat says the image can be downloaded from its Ecosystem Catalog and carried on a USB drive or run from a laptop, jump host, Advanced Cluster Management hub or a cluster itself. It is described as a few hundred megabytes and runs through the Podman toolchain.

Each analysis produces machine-readable JSON for automation as well as a standalone HTML report for operators. Red Hat says the packaged Lightspeed Advisor component includes more than 1,000 proactive recommendations spanning cluster architecture, scalability, performance and maintenance; field teams and partners contribute to a separate collaborative recommendation set used by the direct checks.

What platform teams should evaluate

The availability claim is substantive: Pen Drive is offered now to all Red Hat OpenShift subscribers, rather than as a preview in the post. The tool does not eliminate the operational questions around handling must-gather archives, transporting images into restricted sites or approving rule and blueprint updates. Those processes remain specific to each disconnected environment.

For teams already standardizing disconnected OpenShift operations, however, the package creates one supported path for local health analysis, drift detection and portable reporting. The next step is to test the least invasive mode first, validate its collection footprint against local policy, and decide whether the fuller must-gather workflow is appropriate for production clusters.

Filed by The News Desk. Corrections: desk@upstreambeat.ai · Our standards →

comments · 0

    Comments are moderated before they appear. Your email is used once to confirm it is you — never shown, never sold. Corrections and questions get an answer from the desk when we have one.