Home / Companies / Cockroach Labs / Blog / Post Details
Content Deep Dive

CockroachDB v26.1: Security and Compliance for Regulated Workloads[

Blog post from Cockroach Labs

Post Details
Company
Date Published
Author
David Bressler
Word Count
677
Language
English
Hacker News Points
-
Summary

Enterprise security and compliance are pivotal in reducing costs and ensuring efficient production deployment of new solutions, as demonstrated by CockroachDB v26.1, which brings significant security enhancements to integrate seamlessly with existing infrastructures. This version introduces features such as zero-trust access for AI agents, row-level security, and strict authorization policies, ensuring compliance with regulations like GDPR. It also expands support for HIPAA and PCI/DSS compliance, particularly in Azure environments, and enhances identity and access management through JWT/OpenID Connect integration, simplifying role management and user provisioning. The updated Customer-Managed Encryption Keys (CMEK) UI streamlines key management across cloud providers, and the ability to disable the root SQL user aligns with Oracle Data Vault functionalities. Native support for FIPS 140-3 is achieved through Go 1.24, eliminating previous performance overheads related to OpenSSL. These advancements position CockroachDB as a strategic asset for security and compliance at scale, offering enterprises a robust control plane for secure and compliant data operations. Additionally, the release includes incentives like free credits and trials to encourage new users to explore its capabilities.