Ansible Playbooks for Confluent Platform Release Notes

Ansible Playbooks for Confluent Platform (Confluent Ansible) is continuously updated with new features and enhancements. This topic highlights the significant new and updated features, enhancements, bug fixes, and known limitations in each release.

Note

For the list of security and vulnerability issues fixed in any release, see Security Advisories and Security Release Notes.

September 21, 2026 Confluent Ansible 8.2.4 Release Notes

Ansible Playbooks for Confluent Platform (Confluent Ansible) 8.2.4 allows you to deploy Confluent Platform version 8.2.4.

Breaking changes

confluent_package_version is now required. Confluent Ansible no longer ships a hard-coded default Confluent Platform version. Before you upgrade, add confluent_package_version to your inventory and set it to the Confluent Platform version you want to install. See the Confluent Ansible and Confluent Platform compatibility matrix in Prerequisites for Installing Confluent Platform with Ansible Playbooks. If confluent_package_version is not set, the playbook fails early.

New features

Adds end-to-end support for installing Confluent Platform as a non-root user. See Install Confluent Platform without root access.

Enhancements

Control Center Next Gen (2.7.0 and later) and USM Agent (1.3.0 and later) packages are now fetched from version-numbered repository paths, for example .../rpm/2.7/ instead of .../rpm/. Earlier versions and standard installations are unaffected. For air-gapped or mirrored environments, you can adjust the path using the new confluent_control_center_next_gen_versioned_from_minor_version and confluent_usm_agent_versioned_from_minor_version variables.

Bug fixes

  • Fixed distinguished name (DN) extraction from keystores truncating on certificate fields that contain a colon.

  • Fixed the security.properties copy task failing when using a static or bring-your-own master key with nothing to copy. The task now checks whether the file exists on the controller before attempting the copy.

  • Scoped the archive-ownership chown task to binary_base_path instead of the shared archive_destination_path.

  • Fixed Control Center Next Gen Basic Authentication by generating the Java Authentication and Authorization Service (JAAS) configuration with the correct Jetty login module.

  • Fixed kafka_controller_quorum_voters to honor hostname_aliasing_enabled and use resolved controller hostnames instead of raw inventory hostnames, ensuring consistent and routable controller endpoints.

Known limitations

There are no known limitations in this release.

Deprecations

There are no deprecations in this release.

August 13, 2026 Confluent Ansible 8.2.3 Release Notes

Ansible Playbooks for Confluent Platform (Confluent Ansible) 8.2.3 allows you to deploy Confluent Platform version 8.2.3.

Breaking changes

There are no breaking changes in this release.

New features

There are no new features in this release.

Enhancements

This release adds protection against Common Vulnerabilities and Exposures (CVEs) found in Confluent Platform. For more information, see the Confluent Platform 8.2.3 release notes.

Bug fixes

There are no bug fixes in this release.

Known limitations

There are no known limitations in this release.

Deprecations

There are no deprecations in this release.

June 23, 2026 Confluent Ansible 8.2.2 Release Notes

Ansible Playbooks for Confluent Platform (Confluent Ansible) 8.2.2 allows you to deploy Confluent Platform version 8.2.2.

Breaking changes

There are no breaking changes in this release.

New features

Adds the capability to generate a support bundle for Confluent Ansible playbook runs. See Support bundle.

Enhancements

  • Adds validation of Confluent Platform package availability before installation. The playbook now fails early if the requested package version is not available in the configured repositories, before removing the existing packages.

  • Introduces a Confluent CLI v3.0.0 preflight assertion.

Bug fixes

  • Fixed an issue that caused the Kafka broker and Kafka controller to restart twice.

  • Fixed the issue with the security.properties copy task that failed to copy the file to the Ansible host.

  • Fixed kafka-storage format failures on KRaft clusters with secrets protection enabled. The master key is now passed to the format step using the CONFLUENT_SECURITY_MASTER_KEY environment variable.

  • Fixed custom certificate chain building for multi-tier and partial-chain PKI setups. Chains now assemble correctly for root and intermediate bundles, and for DoD-style partial chains.

Known limitations

There are no known limitations in this release.

Deprecations

There are no deprecations in this release.

Ansible Playbooks for Confluent Platform 8.2.0 Release Notes

Ansible Playbooks for Confluent Platform (Confluent Ansible) 8.2.0 allows you to deploy Confluent Platform version 8.2.0.

This release supports Ansible versions 9.x to 11.x and Python versions 3.10+. The recommended Ansible versions are 11.x.

New features

RHEL 10 support for Confluent Platform

You can now use Confluent Ansible to deploy Confluent Platform components on Red Hat Enterprise Linux (RHEL) 10 hosts.

See Operating systems.

FIPS 140-3–compliant Confluent Platform deployments

You can use Confluent Ansible to deploy Confluent Platform in FIPS 140-3 environments.

See Enable FIPS in Confluent Platform.

AWS Systems Manager (SSM) connection support

Confluent Ansible now supports using AWS Systems Manager (SSM) to establish connections to managed nodes.

Notable enhancements

The Unified Stream Manager Schema Registry automation workflow has been optimized for improved performance.

Notable fixes

  • Fixed an issue where pipefail caused failures when extracting distinguished names from keystores in mTLS setups.

  • For the list of security and vulnerability issues fixed in this release, see Security Advisories and Security Release Notes.