Skip to main content
Redhat Developers  Logo
  • Products

    Platforms

    • Red Hat Enterprise Linux
      Red Hat Enterprise Linux Icon
    • Red Hat AI
      Red Hat AI
    • Red Hat OpenShift
      Openshift icon
    • Red Hat Ansible Automation Platform
      Ansible icon
    • See all Red Hat products

    Featured

    • Red Hat build of OpenJDK
    • Red Hat Developer Hub
    • Red Hat JBoss Enterprise Application Platform
    • Red Hat OpenShift Dev Spaces
    • Red Hat OpenShift Local
    • Red Hat Developer Sandbox

      Try Red Hat products and technologies without setup or configuration fees for 30 days with this shared Red Hat OpenShift and Kubernetes cluster.
    • Try at no cost
  • Technologies

    Featured

    • AI/ML
      AI/ML Icon
    • Linux
      Linux Icon
    • Kubernetes
      Cloud icon
    • Automation
      Automation Icon showing arrows moving in a circle around a gear
    • See all technologies
    • Programming languages & frameworks

      • Java
      • Python
      • JavaScript
    • System design & architecture

      • Red Hat architecture and design patterns
      • Microservices
      • Event-Driven Architecture
      • Databases
    • Developer experience

      • Productivity
      • Tools
      • GitOps
    • Automated data processing

      • AI/ML
      • Data science
      • Apache Kafka on Kubernetes
    • Platform engineering

      • DevOps
      • DevSecOps
      • Red Hat Ansible Automation Platform for applications and services
    • Secure development & architectures

      • Security
      • Secure coding
  • Learn

    Featured

    • Kubernetes & cloud native
      Openshift icon
    • Linux
      Rhel icon
    • Automation
      Ansible cloud icon
    • AI/ML
      AI/ML Icon
    • See all learning resources

    E-books

    • GitOps cookbook
    • Podman in action
    • Kubernetes operators
    • The path to GitOps
    • See all e-books

    Cheat sheets

    • Linux commands
    • Bash commands
    • Git
    • systemd commands
    • See all cheat sheets

    Documentation

    • Product documentation
    • API catalog
    • Legacy documentation
  • Developer Sandbox

    Developer Sandbox

    • Access Red Hat’s products and technologies without setup or configuration, and start developing quicker than ever before with our new, no-cost sandbox environments.
    • Explore the Developer Sandbox

    Featured Developer Sandbox activities

    • Get started with your Developer Sandbox
    • OpenShift virtualization and application modernization using the Developer Sandbox
    • Explore all Developer Sandbox activities

    Ready to start developing apps?

    • Try at no cost
  • Blog
  • Events
  • Videos

Disconnected experiences for Red Hat Lightspeed are now available in Red Hat Satellite 6.18

December 8, 2025
Shane McDowell
Related topics:
Automation and managementDisconnected EnvironmentsSecurity
Related products:
Red Hat Enterprise LinuxRed Hat Lightspeed

    Red Hat Satellite 6.18 continues to deliver the value of Red Hat Lightspeed (formerly Red Hat Insights) to disconnected ("air-gapped") environments. These services assess your Red Hat Enterprise Linux (RHEL) environments to help you proactively identify and remediate threats, stop outages before they happen, and lower compliance risks.

    The advisor service, powered by Red Hat Lightspeed and released in technology preview in May 2025, is now generally available. It offers a broad assessment of RHEL infrastructure health in four main areas: availability, stability, performance, and system security. This service gives you the details you need to plan updates and prioritize issues during your scheduled downtime.

    The vulnerability service is also powered by Red Hat Lightspeed and now available on-premises in technology preview. It uses Red Hat’s expert knowledge to identify systems at risk, helping you do more than just scan for problems. You can view and triage alerts in the Common Vulnerabilities and Exposures (CVE) database. You get detailed CVE information, like the ID, description, publish date, severity, and CVSS score—all included with your Satellite subscription.

    How do disconnected services work?

    These tools are delivered in containers that include services, rules, remediations, frontends, and connectivity that are deployed on your Satellite installation. If your Satellite environment connects to the internet, you simply authenticate to the Red Hat registry and run a single enablement command.

    In an air-gapped environment (one not connected to the internet), the container images are included in the installation ISO. You install the container images from that ISO and run the enablement command.

    If you currently use Red Hat Lightspeed in a connected environment, do not enable the disconnected service. Stick with the full suite of services on the Red Hat Hybrid Cloud Console. Enabling the disconnected tools removes access to hosted features, including subscription tracking. Disconnected users can still submit subscription usage information to the console by following the inventory upload generation instructions.

    Installation in a disconnected environment

    The following installation instructions assume that you have installed Satellite 6.18 and have a valid Red Hat subscription. For full details, read the official documentation.

    If you installed Satellite 6.18 in a disconnected environment, you already have the Satellite ISO image with the necessary container images. Download and mount the Satellite ISO image, then configure your local repositories.

    Next, set up the container images on your Satellite server:

    cd /media/sat6/
    ./setup_containers

    Then, enable the plug-in:

    satellite-installer --enable-iop

    The vulnerability service requires additional security data. From a separate internet-connected host, download and populate the CVE mapping file:

    curl -o cvemap.xml https://security.access.redhat.com/data/meta/v1/cvemap.xml

    Transfer the cvemap.xml file to your disconnected Satellite server and copy it to /var/lib/foreman/:

    cp cvemap.xml /var/lib/foreman/

    Now you’re ready to register systems and start using these services in Satellite.

    Registering systems

    If a host is already registered to your Satellite server, make sure the insights-client package is installed and run the insights-client command:

    sudo dnf install insights-client
    sudo insights-client

    You must register new hosts to your Satellite server. Generate a registration script and enable the Setup Red Hat Lightspeed option (Figure 1).

    The Register Host page in Red Hat Satellite.
    Figure 1: Select Yes (override) from the drop-down to enable the Setup Red Hat Lightspeed option.

    After registering your host, you can view the advisor and vulnerability analysis.

    The advisor service is generally available in Satellite

    To see all of the configuration issues impacting your environment, log in to the Satellite UI. Select Recommendations under Red Hat Lightspeed (Figure 2).

    Satellite left navigation menu highlighting the recommendations menu item.
    Figure 2: Navigating to the Recommendations page from the Satellite navigation menu.

    The Recommendations page lists configuration issues affecting your hosts, including risks to security, stability, availability, and performance. We organized this information to help you manage remediation more effectively. This updates the disconnected interface to look and feel like the hosted version.

    You can view an overview of each issue, including the risk level, the number of affected systems, and whether a resolution playbook exists, as shown in Figure 3. In fully disconnected environments, you will need to copy the Red Hat Knowledgebase article link and open it on a connected system. Alternatively, you can look up the article in the Red Hat Offline Knowledge Portal.

    The Recommendations page shows a summary of information and two configuration issues affecting this environment.
    Figure 3: Recommendations page overview.

    Select the recommendation title to see details, including the list of affected systems (Figure 4). If a playbook is available, you can select specific systems and remediate the issue directly through Satellite’s remote execution framework. You can also download the playbook to run in an automation tool like Red Hat Ansible Automation Platform.

    Screenshot showing the details page of a recommendation, including details about the configuration issue and two systems affected.
    Figure 4: Viewing details of a specific recommendation.

    The vulnerability service is now available in technical preview in Satellite

    Before Satellite 6.18, you had to check errata views to see which CVEs were addressed. Now, the vulnerability service technology preview offers a security-focused view. To see it, select Vulnerability under the Red Hat Lightspeed menu (Figure 5).

    Satellite left navigation menu highlighting the vulnerability menu item.
    Figure 5: Navigating to the Vulnerability page from the Satellite navigation menu.

    The Vulnerabilities page (Figure 6) shows the CVEs affecting your environment. It provides the severity, CVSS score, and number of affected systems so you can triage risks quickly.

    The vulnerabilities page includes a summary of vulnerability information and two CVEs affecting this environment.
    Figure 6: Vulnerabilities page overview.

    Select the CVE ID to see details, including the list of affected systems and a link to the CVE entry in the Red Hat CVE database. In fully disconnected environments, you will need to copy the CVE database link and open it on a connected system, or use the Red Hat Offline Knowledge Portal.

    The CVE details page showing a threat analysis and four affected systems.
    Figure 7: Viewing details of a specific CVE.

    Try it

    The advisor and vulnerability services are now available in Red Hat Satellite 6.18. For more details, visit the Red Hat Satellite home page and read the product documentation. To learn more about Red Hat Lightspeed, visit the home page or view the full documentation.

    To provide feedback, visit the Red Hat Hybrid Cloud Console and select the Feedback button in the lower-right corner of the screen (Figure 8).

    The Red Hat Hybrid Cloud Console home page with the Feedback button highlighted.
    Figure 8: Provide feedback through the Red Hat Hybrid Cloud Console.

    Recent Posts

    • Manage your Camel fleet on OpenShift

    • Disconnected experiences for Red Hat Lightspeed are now available in Red Hat Satellite 6.18

    • Right-sizing recommendations for OpenShift Virtualization

    • OpenJDK 25 now available in Red Hat Enterprise Linux 10.1

    • Migrating Red Hat Ansible Automation Platform: From RPM to container on Red Hat Enterprise Linux

    Red Hat Developers logo LinkedIn YouTube Twitter Facebook

    Platforms

    • Red Hat AI
    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    • See all products

    Build

    • Developer Sandbox
    • Developer tools
    • Interactive tutorials
    • API catalog

    Quicklinks

    • Learning resources
    • E-books
    • Cheat sheets
    • Blog
    • Events
    • Newsletter

    Communicate

    • About us
    • Contact sales
    • Find a partner
    • Report a website issue
    • Site status dashboard
    • Report a security problem

    RED HAT DEVELOPER

    Build here. Go anywhere.

    We serve the builders. The problem solvers who create careers with code.

    Join us if you’re a developer, software engineer, web designer, front-end designer, UX designer, computer scientist, architect, tester, product manager, project manager or team lead.

    Sign me up

    Red Hat legal and privacy links

    • About Red Hat
    • Jobs
    • Events
    • Locations
    • Contact Red Hat
    • Red Hat Blog
    • Inclusion at Red Hat
    • Cool Stuff Store
    • Red Hat Summit
    © 2025 Red Hat

    Red Hat legal and privacy links

    • Privacy statement
    • Terms of use
    • All policies and guidelines
    • Digital accessibility

    Report a website issue