// OSSeva Blog
OperationsWho Provides Support for Apache HBase 1.x and 2.x After End of Maintenance?
The short answer
For Apache HBase 1.x, 2.2, 2.3 and 2.4, which the project lists as end of maintenance, OSSeva publishes patched builds of 1.7, 2.2, 2.3 and 2.4, with the ZooKeeper each one bundles patched in the same build. Cloudera supports its own HBase builds: HBase 2.4.17 in Cloudera Base 7.1.9 to October 2028, and HBase 2.6.3 in Cloudera 7.3.2 to March 2032. Amazon EMR and Azure HDInsight run HBase as part of their managed Hadoop services, and Perforce OpenLogic sells HBase technical support.
HBase rarely moves alone. Each line has its own Hadoop compatibility matrix, so an HBase upgrade often means a Hadoop upgrade, and on CDH or HDP a platform migration. That is why support for the version you run matters more for HBase than for most databases.
Which HBase versions Apache still maintains
The HBase Reference Guide lists 2.5 and 2.6 as the active release lines, and 3.0.0 shipped on 5 August 2026. Its release manager table gives an end-of-life date for every older line:
| Line | Final release | End of life in the Reference Guide |
|---|---|---|
| 3.0 | 3.0.0 (5 August 2026) | Current |
| 2.6 and 2.5 | 2.6.7 and 2.5.16 (1 October 2026) | Active |
| 2.4 | 2.4.18 | June 2024 |
| 2.3 | 2.3.7 | October 2021 |
| 2.2 | 2.2.7 | April 2021 |
| 1.7 | 1.7.2 | August 2022 |
| 1.4 | 1.4.14 | October 2021 |
Apache HBase support options covers the release lines, the ZooKeeper version inside each one and the upgrade paths, so this page sticks to who supports what. The HBase end-of-life chart tracks every line, and HBase vulnerabilities by version lists the advisories.
Apache HBase support providers compared
Each row reflects what the provider publishes on its own site as of 7 October 2026.
| Provider | What it covers | HBase coverage | Delivery model | Self-managed? |
|---|---|---|---|---|
| Cloudera | HBase as part of Cloudera's distribution, supported to each release's end-of-support date | HBase 2.4.17 in Cloudera Base 7.1.9, to October 2028. HBase 2.6.3 in Cloudera 7.3.2, to March 2032. CDH and HDP HBase builds are past support | Cloudera subscription | Yes, on Cloudera's distribution |
| Amazon EMR | HBase on managed EMR clusters, supported for 24 months per EMR release | EMR 7.14 ships HBase 2.6.4, 6.15 ships 2.4.17 and 5.36 ships 1.4.13 | AWS managed service | No |
| Azure HDInsight | HBase clusters on HDInsight 5.1, the only version still in support | HBase 2.4.11, with no end date announced for HDInsight 5.1 | Azure managed service | No |
| Perforce OpenLogic | HBase, Hadoop and ZooKeeper technical support at Gold, Silver and Bronze levels | No version list published | Support subscription | Yes |
| OSSeva | Backported security fixes with the bundled ZooKeeper patched in the same build; HBase, Hadoop and ZooKeeper audit and upgrade plan on Assure; 24/7 operations on Operate | 1.7, 2.2, 2.3 and 2.4, and HBase inside CDH and HDP | Signed Maven, Docker and tarball artifacts | Yes |
Two rows stand out. Cloudera and Azure HDInsight both still support HBase 2.4 builds, which the Apache project stopped maintaining in 2024, but only as part of their own platforms. And EMR 6.15 also runs 2.4.17, on an EMR release whose standard support has passed.
How the providers differ
Cloudera
Cloudera publishes the longest HBase support date in this comparison, through Cloudera 7.3.2 to March 2032, and it still supports an HBase 2.4 build in Cloudera Base 7.1.9 until October 2028. For an estate already on Cloudera that is the natural answer. For a CDH 5 or 6 or HDP cluster, reaching it is a platform migration. See CDH and HDP end of life.
Amazon EMR and Azure HDInsight
Both run HBase as one application on a managed Hadoop cluster. EMR's newest release, 7.14, ships HBase 2.6.4 with standard support to September 2028. HDInsight 5.1 ships HBase 2.4.11, and Microsoft has not announced when 5.1 support ends. Neither upgrades a running cluster for you, so moving from an old HBase build means a new cluster and a data migration, typically through snapshots or replication.
Perforce OpenLogic
OpenLogic lists Apache HBase alongside Hadoop and ZooKeeper at all three support levels, so one contract can cover the whole stack, and its Hadoop Service Bundle includes HBase. It does not publish patched HBase builds. See OSSeva vs OpenLogic.
OSSeva
OSSeva for Apache HBase patches the line you run, so region layout, table schemas, coprocessors and client jars stay as they are. Patch delivers backports for 1.7, 2.2, 2.3 and 2.4, with the bundled ZooKeeper patched in the same build, as signed Maven, Docker and tarball artifacts with VEX statements. Assure adds a master, region server and ZooKeeper quorum review, a Kerberos, ACL and coprocessor audit, a Hadoop and ZooKeeper version map and an upgrade plan to 2.5, 2.6 or 3.0. Operate adds 24/7 monitoring, a 15-minute P1 response, a named HBase engineer and executed rolling upgrades, and patches Critical CVEs (CVSS 9.0 and above) within 48 hours and High within 7 days. Pricing is per cluster, not per region server or table.
How to choose
| Situation | Usual answer |
|---|---|
| On Cloudera Base 7.1.9 or Cloudera 7.3 | Cloudera, with the 7.3.2 move planned before October 2028 |
| On 2.4 and able to do a rolling upgrade on the same Hadoop | Upgrade to 2.5 or 2.6, which Apache maintains |
| Happy to run HBase on a cloud service | Amazon EMR or Azure HDInsight, with a snapshot or replication migration |
| On 1.x, 2.2 or 2.3, where the upgrade drags Hadoop with it | OSSeva patched builds while the Hadoop and HBase upgrade is planned together |
| HBase inside CDH or HDP past Cloudera support | OSSeva patched builds while choosing a platform |
The HBase 2.4 to 2.6 upgrade guide covers the most common move, and HBase and ZooKeeper covers the ensemble underneath.
Where OSSeva fits
OSSeva covers self-managed HBase on the 1.7 and 2.2 to 2.4 lines, inside or outside CDH and HDP, with ZooKeeper and Hadoop patched in the same engagement. HBase extended support covers that in more detail, and Hadoop support providers covers the layer underneath.
Frequently asked questions
Who provides extended support for Apache HBase 2.4?
OSSeva publishes patched builds of Apache HBase 2.4. Cloudera supports its own HBase 2.4.17 build in Cloudera Base 7.1.9 until October 2028, and Azure HDInsight 5.1 runs HBase 2.4.11. The Apache project ended the 2.4 line with 2.4.18 in 2024.
Who supports HBase 1.x after end of life?
OSSeva ships patched builds of HBase 1.7, the last 1.x line, which reached end of life in August 2022. OpenLogic sells technical support for HBase. EMR 5.36, which ships HBase 1.4.13, is past standard support and gets only best-effort critical security fixes, to 30 June 2027, for customers migrating off it.
Is there commercial support for HBase outside Cloudera?
Yes. Perforce OpenLogic sells HBase technical support, AWS and Microsoft run HBase as part of EMR and HDInsight, and OSSeva ships patched HBase builds with optional 24/7 operations.
Best HBase support providers
Cloudera for HBase on Cloudera's platform. Amazon EMR or Azure HDInsight for a managed service. OpenLogic for a broad support contract across the Hadoop stack. OSSeva for patched builds of HBase lines Apache no longer maintains, including those inside CDH and HDP.
Does HBase support include ZooKeeper?
It should. Every distributed HBase cluster runs on ZooKeeper, and older HBase releases bundle ZooKeeper lines that are past their own end of life. OSSeva patches the bundled ZooKeeper in each HBase build, and OpenLogic lists ZooKeeper among its supported technologies.
Tags
Related articles
How to Document End-of-Life Software Risk: Risk Register, Exceptions and Compensating Controls
October 7, 2026ComplianceEnd-of-Life Software Policy Template for Open Source Infrastructure
October 7, 2026OperationsWho Provides Support for Apache Hadoop 2.x and 3.x After End of Life?
October 7, 2026Ready to get your open source under control?
Talk to an OSSeva engineer about CVE coverage, compliance, and migration support for your stack.