跳到主要内容

ROSA (Red Hat OpenShift on AWS)

📅 Created: 2025-02-05 | Updated: 2026-02-13 | ⏱️ Reading time: ~6 min

This section covers technical documentation for deploying and operating Red Hat OpenShift Service on AWS (ROSA). ROSA is a fully managed OpenShift service jointly managed by AWS and Red Hat, enabling easy deployment of enterprise-grade Kubernetes platforms.

Key Documents (Implementation Order)

Step 1: Cluster Installation & Configuration

  • 1. ROSA Demo Installation
    • STS (Security Token Service) based cluster creation
    • Step-by-step installation using ROSA CLI
    • Auto-scaling configuration
    • Network and IAM role setup
    • Initial cluster validation
    • Lab environment setup and testing

Step 2: Security & Access Control

  • 2. ROSA Security Compliance
    • Red Hat Hybrid Cloud Console access control configuration
    • Access control strategies for financial regulatory compliance
    • IdP (Identity Provider) integration and MFA configuration
    • Role-Based Access Control (RBAC) setup
    • Audit and logging configuration

Key Technologies

TechnologyDescriptionPurpose
ROSA CLIOpenShift cluster management CLI toolCluster creation, management, deletion
STSTemporary security credentialsEnhanced IAM role management
OIDCOpenID Connect protocolExternal identity provider integration
OVNKubernetesOpenShift network pluginHigh-performance networking
Cluster AutoscalerAuto-scalingAutomatic node adjustment based on workload
Hybrid Cloud ConsoleRed Hat central management portalMulti-cluster centralized management

ROSA vs EKS vs On-Premises OpenShift

ItemROSAEKSOn-Premises OpenShift
Control Plane MgmtRed Hat/AWSAWSCustomer responsibility
SecurityHighest levelHighConfiguration required
CostMedium-HighLow-MediumHigh initial investment
Operational ComplexityLowLowHigh
Developer ExperienceExcellentHighVery High
Hybrid SupportExcellentAverageExcellent
Multi-CloudExcellentAWS onlyExcellent
Licensing Notice

ROSA requires separate OpenShift licensing. When calculating costs, consider both ROSA service costs and OpenShift licensing costs.