---
title: "What’s New in Calico v3.6"
source: "https://www.tigera.io/blog/whats-new-in-calico-v3-6/"
---

[Technical Blog](https://www.tigera.io/category/technical-blog/)

# What’s New in Calico v3.6

By [Amit Gupta](https://www.tigera.io/blog/author/amitgupta/) on Mar 11, 2019 • 2 min read

We are very excited to announce Calico v3.6. Here are some highlights from the release.

## Calico IPAM for Kubernetes API datastore

With Calico v3.6, you now have full feature parity for Calico IP address management (IPAM) irrespective of the datastore you are using with your Calico deployment. This enables all of Calico’s IP address management features, including:

- Multiple IP address pools

- Per-pod, per-namespace, and per-node pool specification

Upgrading existing clusters using Calico with host-local IPAM is seamless – simply apply the new v3.6 manifest and you’ll be using Calico IPAM!

For an example of what is possible with Calico’s IPAM, see [this blog post](https://www.tigera.io/blog/calico-ipam-explained-and-enhanced/) or [check out the docs](http://docs.projectcalico.org/v3.6/reference/cni-plugin/configuration#ipam).

## OpenStack Enhancements

Calico 3.6 has several enhancements for your OpenStack deployments for better operational efficiency and resiliency.

- If you have a multi-region OpenStack deployment, you can [choose to map all of those regions into a shared Calico datastore](http://docs.projectcalico.org/master/networking/openstack/multiple-regions), which then allows you to define cross-region Calico policies.

- We’ve improved our documentation about the [labels you can use to define Calico policy in addition to OpenStack security groups](http://docs.projectcalico.org/master/networking/openstack/labels), and have added the project parent ID label to facilitate policy between hierarchically organized projects.

## Selectors with substring matching

With both Kubernetes and OpenStack, you can now write Calico policy with [selectors that match on a label value substring](http://docs.projectcalico.org/master/reference/calicoctl/resources/networkpolicy#selector) instead of the whole label value.  For example, you can write “role starts with ‘Security’” or “role contains ‘Engineer’”, whereas previously you could only specify a complete match “role == ‘Security Engineer’”.

## Learn more

To find out more details about all the features and changes in Calico v3.6, check out the [release notes](http://docs.projectcalico.org/v3.6/release-notes/). Or, try it out in few minutes by following the [Quickstart guide](http://docs.projectcalico.org/v3.6/getting-started/kubernetes/)!

————————————————-

[**Free Online Training**](https://www.tigera.io/events/)

Access Live and On-Demand Kubernetes Tutorials

[**Calico Enterprise – Free Trial**](https://www.calicocloud.io/home)

Solve Common Kubernetes Roadblocks and Advance Your Enterprise Adoption

[Open Source](https://www.tigera.io/tags/open-source/)[Release](https://www.tigera.io/tags/release/)[Project Calico](https://www.tigera.io/tags/project-calico/)

## Related posts

[![What’s new in Calico: Spring 2026 Release](https://www.tigera.io/app/uploads/2026/06/Whats-New-in-Calico-NEW-TEMPLATE-2026.png)](https://www.tigera.io/blog/whats-new-in-calico-spring-2026-release/)

[Company Blog](https://www.tigera.io/category/company-blog/)

#### [What’s new in Calico: Spring 2026 Release](https://www.tigera.io/blog/whats-new-in-calico-spring-2026-release/)

By [Veronika Smolik](https://www.tigera.io/blog/author/veronika-smolik/)
on Jun 2, 2026

Kubernetes has come a long way since its debut in 2014. It’s gone from running a couple of containerized microservices to orchestrating fleets of production workloads spanning everything from AI agents to full scale VMs...

[Read more](https://www.tigera.io/blog/whats-new-in-calico-spring-2026-release/)

[![Kubernetes Operational Maturity: Secure and Resilient Cluster Federation with Cluster Mesh](https://www.tigera.io/app/uploads/2026/05/Kubernetes-Operational-Maturity-Secure-and-Resilient-Cluster-Federation-with-Cluster-Mesh.png)](https://www.tigera.io/blog/kubernetes-operational-maturity-secure-and-resilient-cluster-federation-with-cluster-mesh/)

#### [Kubernetes Operational Maturity: Secure and Resilient Cluster Federation with Cluster Mesh](https://www.tigera.io/blog/kubernetes-operational-maturity-secure-and-resilient-cluster-federation-with-cluster-mesh/)

By [Veronika Smolik](https://www.tigera.io/blog/author/veronika-smolik/)
on May 25, 2026

Practically no one runs a single Kubernetes cluster in production these days. Maybe that’s how it started but data sovereignty requirements, acquisitions, AI initiatives and the need for edge servers, among other considerations, have pulled...

[Read more](https://www.tigera.io/blog/kubernetes-operational-maturity-secure-and-resilient-cluster-federation-with-cluster-mesh/)

[![What’s New in Calico v3.32](https://www.tigera.io/app/uploads/2026/05/Green-Please-use-a-different-background-color-alternately-1.png)](https://www.tigera.io/blog/whats-new-in-calico-v3-32/)

#### [What’s New in Calico v3.32](https://www.tigera.io/blog/whats-new-in-calico-v3-32/)

By [Reza Ramezanpour](https://www.tigera.io/blog/author/rezar/)
on May 13, 2026

We’re excited to announce the release of Calico Open Source v3.32! 🎉 This release corresponds with Kubernetes v1.36 (Codename Haru) and it goes beyond just sharing a cat as the mascot of the release, it...

[Read more](https://www.tigera.io/blog/whats-new-in-calico-v3-32/)

<!-- plugin=object-cache-pro client=phpredis metric#hits=6140 metric#misses=15 metric#hit-ratio=99.8 metric#bytes=2234168 metric#prefetches=0 metric#store-reads=416 metric#store-writes=9 metric#store-hits=431 metric#store-misses=4 metric#sql-queries=25 metric#ms-total=947.34 metric#ms-cache=54.30 metric#ms-cache-avg=0.1281 metric#ms-cache-ratio=5.7 sample#redis-hits=27561679 sample#redis-misses=7292333 sample#redis-hit-ratio=79.1 sample#redis-ops-per-sec=221 sample#redis-evicted-keys=0 sample#redis-used-memory=116094832 sample#redis-used-memory-rss=95076352 sample#redis-memory-fragmentation-ratio=0.8 sample#redis-connected-clients=2 sample#redis-tracking-clients=0 sample#redis-rejected-connections=0 sample#redis-keys=75331 -->
