# 4.12.0-0.okd-2023-03-05-022504 Created: 2023-03-05 09:21:06 +0000 UTC Image Digest: `sha256:fef2d0803e6ee6ec36d1979a0b847441580fbd9ee3ad583c97edb7ff811ee3b6` Promoted from registry.ci.openshift.org/origin/release:4.12.0-0.okd-2023-03-05-022504 ## Changes from 4.12.0-0.okd-2023-01-21-055900 ### Components * Kubernetes 1.25.4 * Fedora CoreOS upgraded from 37.20221225.3 to 37.20230205.3 ### Rebuilt images without code change * [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator) git [047391f0](https://github.com/openshift/cluster-baremetal-operator/commit/047391f09c68b3bb259262012693913af50c13a6) `sha256:82f0ea62b2864760774f47d261b3084451559a378fcc9003d58952257da26fa8` * [cluster-control-plane-machine-set-operator](https://github.com/openshift/cluster-control-plane-machine-set-operator) git [89727d88](https://github.com/openshift/cluster-control-plane-machine-set-operator/commit/89727d88312464361593a0ccc8ad07e79db9bd16) `sha256:e4f66b6a1ed283d7c15724005d8839aa43fabad4c652d45026e9507523dd573c` * [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator) git [1c136fe3](https://github.com/openshift/cluster-dns-operator/commit/1c136fe38b8cd5c0de99577d23157f884728d20b) `sha256:863cc4e4eefcb7821db6933cb4906b65f946a33ae02ea363f1289fb6df00d2c2` * [ibm-cloud-controller-manager](https://github.com/openshift/cloud-provider-ibm) git [e5f25fc6](https://github.com/openshift/cloud-provider-ibm/commit/e5f25fc64911215a3a78cab186cba49cbd51dec6) `sha256:f121d1a92998c17ea4b2fe4094257166646543db0af617498c86b4e3768f7e06` * [machine-os-images](https://github.com/openshift/machine-os-images) git [566bf595](https://github.com/openshift/machine-os-images/commit/566bf59501f178bd80e410fda66cc424de6a4891) `sha256:feebbf5fdeaebbe67347255ee1aeef93e2e1da0e6da966deaaa095589cf0373d` ### [agent-installer-api-server](https://github.com/openshift/assisted-service/tree/b03e2db9f58b8bc2fdcb339659b47973688436e3) * [MGMT-13192](https://issues.redhat.com/browse/MGMT-13192): dualstack SNO cluster fails to complete - getting error In dual stack installation we should set dhcp,dhcp6 kargs in order to wait for ipv6 address when node comes after reboot (#4914) [#4914](https://github.com/openshift/assisted-service/pull/4914) * [Full changelog](https://github.com/openshift/assisted-service/compare/40936e7a9159189889c637fa1631f8cbdd5c3c4f...b03e2db9f58b8bc2fdcb339659b47973688436e3) ### [agent-installer-node-agent](https://github.com/openshift/assisted-installer-agent/tree/d0c1b7dc02a288b7ed9a8a31ed4a04f6dbbda8ce) * Add sg3_utils package (#497) (#500) [#497](https://github.com/openshift/assisted-installer-agent/pull/497) * [Full changelog](https://github.com/openshift/assisted-installer-agent/compare/271a6f48486db5702d3ebc4b644b74722319d49d...d0c1b7dc02a288b7ed9a8a31ed4a04f6dbbda8ce) ### [alibaba-cloud-csi-driver](https://github.com/openshift/alibaba-cloud-csi-driver/tree/664d8cb0a1f1263bad3797ac3cd3f910664dce8b) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#17](https://github.com/openshift/alibaba-cloud-csi-driver/pull/17) * [OCPBUGS-6493](https://issues.redhat.com/browse/OCPBUGS-6493): UPSTREAM: 682: fix gofmt [#22](https://github.com/openshift/alibaba-cloud-csi-driver/pull/22) * [Full changelog](https://github.com/openshift/alibaba-cloud-csi-driver/compare/2317a6ca07c8b4d5391e2b00326ff3f802c331d5...664d8cb0a1f1263bad3797ac3cd3f910664dce8b) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/e375c84d00604ebb475acff2c4b9079f843ccbe2) * [OCPBUGS-7892](https://issues.redhat.com/browse/OCPBUGS-7892): do not inject-proxy when deploying in hypershift control plane [#187](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/187) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/6bd7afa3fae087853c0210050bdc981c899426c4...e375c84d00604ebb475acff2c4b9079f843ccbe2) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/6b1d69d29271e0183885b0d27a3293579fd37e02) * [OCPBUGS-7885](https://issues.redhat.com/browse/OCPBUGS-7885): Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars [#70](https://github.com/openshift/azure-disk-csi-driver-operator/pull/70) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/e4ed4ee1123d34a1183e4ccb8a31a57ea3237c4f...6b1d69d29271e0183885b0d27a3293579fd37e02) ### [baremetal-installer, installer, installer-artifacts, ovirt-installer](https://github.com/openshift/installer/tree/7c2530226516a12c37f10bc14e070f66c0f27930) * [OCPBUGS-7594](https://issues.redhat.com/browse/OCPBUGS-7594): fully qualified username must be provided [#6864](https://github.com/openshift/installer/pull/6864) * [OCPBUGS-7746](https://issues.redhat.com/browse/OCPBUGS-7746): Convert platform type for AgentClusterInstall [#6878](https://github.com/openshift/installer/pull/6878) * [OCPBUGS-8015](https://issues.redhat.com/browse/OCPBUGS-8015): make VIP 168.63.129.16 noProxy in all clouds except Public [#6909](https://github.com/openshift/installer/pull/6909) * [OCPBUGS-6087](https://issues.redhat.com/browse/OCPBUGS-6087): Warn if agent assets detected when using non-agent waitfor [#6788](https://github.com/openshift/installer/pull/6788) * [OCPBUGS-7607](https://issues.redhat.com/browse/OCPBUGS-7607): IBMCloud: Handle COS reclamations [#6867](https://github.com/openshift/installer/pull/6867) * [OCPBUGS-7529](https://issues.redhat.com/browse/OCPBUGS-7529): bump RHCOS 4.12 bootimage metadata [#6873](https://github.com/openshift/installer/pull/6873) * [OCPBUGS-7521](https://issues.redhat.com/browse/OCPBUGS-7521): Update AgentConfig template [#6857](https://github.com/openshift/installer/pull/6857) * [OCPBUGS-5992](https://issues.redhat.com/browse/OCPBUGS-5992): azure: validate Windows-only VM types [#6780](https://github.com/openshift/installer/pull/6780) * [OCPBUGS-6991](https://issues.redhat.com/browse/OCPBUGS-6991): Don't require vSphere details for agent installer [#6826](https://github.com/openshift/installer/pull/6826) * [OCPBUGS-6807](https://issues.redhat.com/browse/OCPBUGS-6807): Check platform baremetal settings against default values [#6815](https://github.com/openshift/installer/pull/6815) * [OCPBUGS-7103](https://issues.redhat.com/browse/OCPBUGS-7103): Set the configured proxy settings for agent installer [#6830](https://github.com/openshift/installer/pull/6830) * [OCPBUGS-7131](https://issues.redhat.com/browse/OCPBUGS-7131): bootstrap: set 0644 mode for registries.conf [#6804](https://github.com/openshift/installer/pull/6804) * [OCPBUGS-5960](https://issues.redhat.com/browse/OCPBUGS-5960): bump RHCOS 4.12 bootimage metadata [#6791](https://github.com/openshift/installer/pull/6791) * [OCPBUGS-5996](https://issues.redhat.com/browse/OCPBUGS-5996): vsphere: set default resource pool when missing failure domain topology [#6781](https://github.com/openshift/installer/pull/6781) * [OCPBUGS-5667](https://issues.redhat.com/browse/OCPBUGS-5667): CVE-2021-4238: goutils: update for randomness fix [#6764](https://github.com/openshift/installer/pull/6764) * [OCPBUGS-5782](https://issues.redhat.com/browse/OCPBUGS-5782): CVE-2021-4235: Denial of Service in go-yaml [#6769](https://github.com/openshift/installer/pull/6769) * [OCPBUGS-6052](https://issues.redhat.com/browse/OCPBUGS-6052): validate additional confidential VM types [#6785](https://github.com/openshift/installer/pull/6785) * [OCPBUGS-4895](https://issues.redhat.com/browse/OCPBUGS-4895): Set ip=dhcp,dhcp6 for master nodes on dualstack [#6706](https://github.com/openshift/installer/pull/6706) * [Full changelog](https://github.com/openshift/installer/compare/e33d9bda73e58d6584f922d68260931c02992a41...7c2530226516a12c37f10bc14e070f66c0f27930) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/b3c82d0013281ab716f358f46fec6481ace5b27d) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): If primary ip address was already created no need to choose new ip [#214](https://github.com/openshift/baremetal-runtimecfg/pull/214) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/4d2e37f2e59877c1bdf94279fe18622a439821c5...b3c82d0013281ab716f358f46fec6481ace5b27d) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/846602e50eb29ecdc7441ebed2fc846048959eaa) * [OCPBUGS-7960](https://issues.redhat.com/browse/OCPBUGS-7960): pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates [#1354](https://github.com/openshift/oc/pull/1354) * [OCPBUGS-6600](https://issues.redhat.com/browse/OCPBUGS-6600): Fix kube version from 1.24.1 to 1.25.2 [#1327](https://github.com/openshift/oc/pull/1327) * [Full changelog](https://github.com/openshift/oc/compare/854f807d8a84dde710c062a5281bca5bc07cb562...846602e50eb29ecdc7441ebed2fc846048959eaa) ### [cluster-capi-controllers](https://github.com/openshift/cluster-api/tree/) * [OCPBUGS-30480](https://issues.redhat.com/browse/OCPBUGS-30480): Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.4 (36c0e55) into master [#203](https://github.com/openshift/cluster-api/pull/203) * NO-JIRA: Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.2 (da795db) into master [#199](https://github.com/openshift/cluster-api/pull/199) * [OCPBUGS-30586](https://issues.redhat.com/browse/OCPBUGS-30586): fix e2e tests on release branches [#200](https://github.com/openshift/cluster-api/pull/200) * [OCPCLOUD-2517](https://issues.redhat.com/browse/OCPCLOUD-2517): openshift: promote core CAPI IPAM CRDs to GA [#197](https://github.com/openshift/cluster-api/pull/197) * [OCPBUGS-29519](https://issues.redhat.com/browse/OCPBUGS-29519): openshift: add CustomNoUpgrade annotation value to feature-set [#196](https://github.com/openshift/cluster-api/pull/196) * [OCPBUGS-29476](https://issues.redhat.com/browse/OCPBUGS-29476): openshift: generate separate manifest for core CAPI CRDs [#195](https://github.com/openshift/cluster-api/pull/195) * [OCPBUGS-26111](https://issues.redhat.com/browse/OCPBUGS-26111): add snyk file [#194](https://github.com/openshift/cluster-api/pull/194) * [OCPCLOUD-2449](https://issues.redhat.com/browse/OCPCLOUD-2449): Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.0 (14efefe) into master [#192](https://github.com/openshift/cluster-api/pull/192) * NO-JIRA: e2e: add openstack testing script [#193](https://github.com/openshift/cluster-api/pull/193) * [OCPBUGS-25586](https://issues.redhat.com/browse/OCPBUGS-25586): Updating ose-cluster-api-container image to be consistent with ART [#191](https://github.com/openshift/cluster-api/pull/191) * [OCPBUGS-25000](https://issues.redhat.com/browse/OCPBUGS-25000): Updating ose-cluster-api-container image to be consistent with ART [#190](https://github.com/openshift/cluster-api/pull/190) * [OCPCLOUD-2255](https://issues.redhat.com/browse/OCPCLOUD-2255): Update manifests-gen tool [#189](https://github.com/openshift/cluster-api/pull/189) * [OCPCLOUD-2257](https://issues.redhat.com/browse/OCPCLOUD-2257): Use manifests generation tool from provider repo [#179](https://github.com/openshift/cluster-api/pull/179) * Update OWNERS [#183](https://github.com/openshift/cluster-api/pull/183) * [OCPBUGS-21645](https://issues.redhat.com/browse/OCPBUGS-21645): Bump golang.org/x/net to v0.17.0 [#182](https://github.com/openshift/cluster-api/pull/182) * [OCPBUGS-17286](https://issues.redhat.com/browse/OCPBUGS-17286), [OCPCLOUD-2222](https://issues.redhat.com/browse/OCPCLOUD-2222): Merge https://github.com/kubernetes-sigs/cluster-api:v1.5.2 (3290c5a) into master [#181](https://github.com/openshift/cluster-api/pull/181) * [OCPBUGS-19109](https://issues.redhat.com/browse/OCPBUGS-19109): Updating ose-cluster-api images to be consistent with ART [#180](https://github.com/openshift/cluster-api/pull/180) * [OCPBUGS-6354](https://issues.redhat.com/browse/OCPBUGS-6354), [OCPBUGS-6372](https://issues.redhat.com/browse/OCPBUGS-6372): Merge https://github.com/kubernetes-sigs/cluster-api:v1.4.2 (7b92ce4) into master [#175](https://github.com/openshift/cluster-api/pull/175) * Make openshift/e2e-tests.sh executable [#178](https://github.com/openshift/cluster-api/pull/178) * [OCPCLOUD-2121](https://issues.redhat.com/browse/OCPCLOUD-2121): Add openshift/e2e-tests for CAPI E2E testing [#177](https://github.com/openshift/cluster-api/pull/177) * Updating ose-cluster-api images to be consistent with ART [#174](https://github.com/openshift/cluster-api/pull/174) * Updating ose-cluster-api images to be consistent with ART [#170](https://github.com/openshift/cluster-api/pull/170) * Add enxebre approvers [#171](https://github.com/openshift/cluster-api/pull/171) * Merge https://github.com/kubernetes-sigs/cluster-api:release-1.3 (eb18352) into master [#167](https://github.com/openshift/cluster-api/pull/167) * Sync OWNERS file [#168](https://github.com/openshift/cluster-api/pull/168) * Updating ose-cluster-api images to be consistent with ART [#165](https://github.com/openshift/cluster-api/pull/165) * Merge https://github.com/kubernetes-sigs/cluster-api:main into master [#163](https://github.com/openshift/cluster-api/pull/163) * UPSTREAM: <carry>: bump build root image to golang-1.19 [#164](https://github.com/openshift/cluster-api/pull/164) * [Full changelog](https://github.com/openshift/cluster-api/compare/f9c215c4f298710ccf76676395465685b5d15268...) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/ef0d9068492c11fc1f944112b542383e4aa5e5fc) * Update reviewers and approvers [#987](https://github.com/openshift/cluster-etcd-operator/pull/987) * [OCPBUGS-7409](https://issues.redhat.com/browse/OCPBUGS-7409): set default timeouts in etcdcli [#1005](https://github.com/openshift/cluster-etcd-operator/pull/1005) * [OCPBUGS-6935](https://issues.redhat.com/browse/OCPBUGS-6935): add dedicated success status for bootstrap removal [#999](https://github.com/openshift/cluster-etcd-operator/pull/999) * [OCPBUGS-7373](https://issues.redhat.com/browse/OCPBUGS-7373): [release-4.12] fail early on missing node status envs [#1004](https://github.com/openshift/cluster-etcd-operator/pull/1004) * [OCPBUGS-6898](https://issues.redhat.com/browse/OCPBUGS-6898): updating library-go for CVE-2022-41717 [#998](https://github.com/openshift/cluster-etcd-operator/pull/998) * [OCPBUGS-5762](https://issues.redhat.com/browse/OCPBUGS-5762): should not scale-down when all members are healthy [#984](https://github.com/openshift/cluster-etcd-operator/pull/984) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/f24e5abcc646116cadf72a08b3387bb1b9540a4b...ef0d9068492c11fc1f944112b542383e4aa5e5fc) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/) * [OCPBUGS-33172](https://issues.redhat.com/browse/OCPBUGS-33172): azurepathfix: check if platform status is nil before accessing it [#1030](https://github.com/openshift/cluster-image-registry-operator/pull/1030) * [OCPBUGS-32491](https://issues.redhat.com/browse/OCPBUGS-32491): Power VS: Add support for Power VS endpoint overrides [#1024](https://github.com/openshift/cluster-image-registry-operator/pull/1024) * [OCPBUGS-29559](https://issues.redhat.com/browse/OCPBUGS-29559): Apply hypershift cluster-profile for ibm-cloud-managed [#999](https://github.com/openshift/cluster-image-registry-operator/pull/999) * [OCPBUGS-32328](https://issues.redhat.com/browse/OCPBUGS-32328): azure-path-fix: support auth via account key (without clientID) [#1021](https://github.com/openshift/cluster-image-registry-operator/pull/1021) * [OCPBUGS-30484](https://issues.redhat.com/browse/OCPBUGS-30484): bump indirect google protobuf dependency [#1015](https://github.com/openshift/cluster-image-registry-operator/pull/1015) * NO-JIRA: remove bparees from owners [#1019](https://github.com/openshift/cluster-image-registry-operator/pull/1019) * [OCPBUGS-29233](https://issues.redhat.com/browse/OCPBUGS-29233): bump aws-sdk-go from v1.44 to v1.50 [#1012](https://github.com/openshift/cluster-image-registry-operator/pull/1012) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#1008](https://github.com/openshift/cluster-image-registry-operator/pull/1008) * NO-JIRA: bump golangci-lint to v1.56.2 [#1013](https://github.com/openshift/cluster-image-registry-operator/pull/1013) * [OCPBUGS-29932](https://issues.redhat.com/browse/OCPBUGS-29932): cmd/move-blobs: log and exit 1 on error instead of panic [#1006](https://github.com/openshift/cluster-image-registry-operator/pull/1006) * [OCPBUGS-29637](https://issues.redhat.com/browse/OCPBUGS-29637): azurepathfix: fix stack hub, government and workload identity setup [#1003](https://github.com/openshift/cluster-image-registry-operator/pull/1003) * [OCPBUGS-29003](https://issues.redhat.com/browse/OCPBUGS-29003): move azure storage blobs from `docker` back into `/docker` [#998](https://github.com/openshift/cluster-image-registry-operator/pull/998) * NO-JIRA: Add hack/local-dev.sh [#996](https://github.com/openshift/cluster-image-registry-operator/pull/996) * [OCPBUGS-28225](https://issues.redhat.com/browse/OCPBUGS-28225): pkg/storage/s3: enable bucket key on encryption settings [#993](https://github.com/openshift/cluster-image-registry-operator/pull/993) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#992](https://github.com/openshift/cluster-image-registry-operator/pull/992) * NO-JIRA: build(deps): bump golang.org/x/oauth2 from 0.8.0 to 0.16.0 [#989](https://github.com/openshift/cluster-image-registry-operator/pull/989) * [OCPBUGS-26767](https://issues.redhat.com/browse/OCPBUGS-26767): MULTIARCH-4074: PowerVS: update supported regions [#987](https://github.com/openshift/cluster-image-registry-operator/pull/987) * [IR-409](https://issues.redhat.com/browse/IR-409): build(deps): bump github.com/IBM/platform-services-go-sdk from 0.18.15 to 0.55.0 [#974](https://github.com/openshift/cluster-image-registry-operator/pull/974) * [OCPBUGS-24997](https://issues.redhat.com/browse/OCPBUGS-24997): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#979](https://github.com/openshift/cluster-image-registry-operator/pull/979) * [IR-410](https://issues.redhat.com/browse/IR-410): build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.61.1263 to 1.62.637 [#980](https://github.com/openshift/cluster-image-registry-operator/pull/980) * [OCPBUGS-11624](https://issues.redhat.com/browse/OCPBUGS-11624): manifests/02-rbac.yaml: stop using wild cards [#964](https://github.com/openshift/cluster-image-registry-operator/pull/964) * [OCPBUGS-24649](https://issues.redhat.com/browse/OCPBUGS-24649): add private endpoint permissions to Azure credentials request [#971](https://github.com/openshift/cluster-image-registry-operator/pull/971) * [OCPBUGS-24997](https://issues.redhat.com/browse/OCPBUGS-24997): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#975](https://github.com/openshift/cluster-image-registry-operator/pull/975) * [IR-412](https://issues.redhat.com/browse/IR-412): IBMCloud: Add support for endpoint overrides [#955](https://github.com/openshift/cluster-image-registry-operator/pull/955) * [CCO-248](https://issues.redhat.com/browse/CCO-248): Revert "Merge pull request #965 from jstuever/TRT-1368" [#967](https://github.com/openshift/cluster-image-registry-operator/pull/967) * [OCPVE-790](https://issues.redhat.com/browse/OCPVE-790): annotate credentials request manifests [#959](https://github.com/openshift/cluster-image-registry-operator/pull/959) * [OCPBUGS-24161](https://issues.redhat.com/browse/OCPBUGS-24161): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#966](https://github.com/openshift/cluster-image-registry-operator/pull/966) * [TRT-1368](https://issues.redhat.com/browse/TRT-1368): Revert "Merge pull request #935 from flavianmissi/CCO-248" [#965](https://github.com/openshift/cluster-image-registry-operator/pull/965) * [IR-366](https://issues.redhat.com/browse/IR-366), [IR-367](https://issues.redhat.com/browse/IR-367), [IR-411](https://issues.redhat.com/browse/IR-411): allow users to configure private storage accounts in Azure [#930](https://github.com/openshift/cluster-image-registry-operator/pull/930) * [IR-408](https://issues.redhat.com/browse/IR-408): request individual permissions for gcs [#935](https://github.com/openshift/cluster-image-registry-operator/pull/935) * [OCPBUGS-2889](https://issues.redhat.com/browse/OCPBUGS-2889): accept user/pass OR application credentials on Swift UPI secret [#924](https://github.com/openshift/cluster-image-registry-operator/pull/924) * [IR-406](https://issues.redhat.com/browse/IR-406), [OCPBUGS-21853](https://issues.redhat.com/browse/OCPBUGS-21853): bump k8s and openshift packages [#936](https://github.com/openshift/cluster-image-registry-operator/pull/936) * [OCPBUGS-21853](https://issues.redhat.com/browse/OCPBUGS-21853): disable http2 for metrics endpoint [#938](https://github.com/openshift/cluster-image-registry-operator/pull/938) * [OCPBUGS-18969](https://issues.redhat.com/browse/OCPBUGS-18969): move pruner role creation from openshift-apiserver [#925](https://github.com/openshift/cluster-image-registry-operator/pull/925) * [OCPBUGS-19262](https://issues.redhat.com/browse/OCPBUGS-19262): Updating ose-cluster-image-registry-operator images to be consistent with ART [#918](https://github.com/openshift/cluster-image-registry-operator/pull/918) * [OCPBUGS-18469](https://issues.redhat.com/browse/OCPBUGS-18469): increase storage account key cache expiration [#912](https://github.com/openshift/cluster-image-registry-operator/pull/912) * [OCPBUGS-17060](https://issues.redhat.com/browse/OCPBUGS-17060): use Recreate on operator deployment [#908](https://github.com/openshift/cluster-image-registry-operator/pull/908) * [OCPBUGS-18103](https://issues.redhat.com/browse/OCPBUGS-18103): check if response is nil before using it [#909](https://github.com/openshift/cluster-image-registry-operator/pull/909) * [OCPVE-632](https://issues.redhat.com/browse/OCPVE-632): add capability annotations to manifests [#856](https://github.com/openshift/cluster-image-registry-operator/pull/856) * [OCPBUGS-17882](https://issues.redhat.com/browse/OCPBUGS-17882): Add rbac permission IDMS, ITMS [#891](https://github.com/openshift/cluster-image-registry-operator/pull/891) * [TRT-1193](https://issues.redhat.com/browse/TRT-1193): Revert "IR-373: remove node-ca daemon" [#899](https://github.com/openshift/cluster-image-registry-operator/pull/899) * [CFE-846](https://issues.redhat.com/browse/CFE-846): Add user defined tags to the GCP buckets created [#873](https://github.com/openshift/cluster-image-registry-operator/pull/873) * [IR-373](https://issues.redhat.com/browse/IR-373): remove node-ca daemon [#867](https://github.com/openshift/cluster-image-registry-operator/pull/867) * build(deps): bump github.com/stretchr/testify from 1.8.1 to 1.8.4 [#877](https://github.com/openshift/cluster-image-registry-operator/pull/877) * build(deps): bump the k8s-dependencies group with 1 update [#895](https://github.com/openshift/cluster-image-registry-operator/pull/895) * [IR-363](https://issues.redhat.com/browse/IR-363): Update Azure Credentials Request manifest of the Cluster Image Registry Operator to use new API field for requesting permissions [#890](https://github.com/openshift/cluster-image-registry-operator/pull/890) * build(deps): bump github.com/prometheus/common from 0.37.0 to 0.44.0 [#878](https://github.com/openshift/cluster-image-registry-operator/pull/878) * [CFE-682](https://issues.redhat.com/browse/CFE-682): Add user defined labels to the GCP buckets created [#872](https://github.com/openshift/cluster-image-registry-operator/pull/872) * [CFE-682](https://issues.redhat.com/browse/CFE-682): Update openshift/api package to latest version [#887](https://github.com/openshift/cluster-image-registry-operator/pull/887) * [IR-390](https://issues.redhat.com/browse/IR-390): Make a configmap for MCO to consume CAs [#880](https://github.com/openshift/cluster-image-registry-operator/pull/880) * build(deps): bump github.com/aws/aws-sdk-go from 1.44.291 to 1.44.298 [#879](https://github.com/openshift/cluster-image-registry-operator/pull/879) * build(deps): bump golang.org/x/net from 0.8.0 to 0.11.0 [#871](https://github.com/openshift/cluster-image-registry-operator/pull/871) * build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.1.10+incompatible to 2.2.7+incompatible [#869](https://github.com/openshift/cluster-image-registry-operator/pull/869) * .github/dependabot.yml: group certain dependencies [#865](https://github.com/openshift/cluster-image-registry-operator/pull/865) * [IR-389](https://issues.redhat.com/browse/IR-389): bump aws-sdk-go [#860](https://github.com/openshift/cluster-image-registry-operator/pull/860) * .github: configure dependabot [#861](https://github.com/openshift/cluster-image-registry-operator/pull/861) * [IR-369](https://issues.redhat.com/browse/IR-369), [IR-370](https://issues.redhat.com/browse/IR-370): support Azure workload identity [#857](https://github.com/openshift/cluster-image-registry-operator/pull/857) * [OCPBUGS-12132](https://issues.redhat.com/browse/OCPBUGS-12132): Updating ose-cluster-image-registry-operator images to be consistent with ART [#854](https://github.com/openshift/cluster-image-registry-operator/pull/854) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#849](https://github.com/openshift/cluster-image-registry-operator/pull/849) * [OCPBUGS-8224](https://issues.redhat.com/browse/OCPBUGS-8224): fix storage selection on IBM cloud [#847](https://github.com/openshift/cluster-image-registry-operator/pull/847) * [OCPBUGS-6797](https://issues.redhat.com/browse/OCPBUGS-6797): Add nil validation for IBM Cloud and Power VS infrastructure status in ibmcos [#845](https://github.com/openshift/cluster-image-registry-operator/pull/845) * [MULTIARCH-3212](https://issues.redhat.com/browse/MULTIARCH-3212): Use IBM COS as storage backend for PowerVS [#843](https://github.com/openshift/cluster-image-registry-operator/pull/843) * [OCPBUGS-6621](https://issues.redhat.com/browse/OCPBUGS-6621): bump aws-sdk-go [#844](https://github.com/openshift/cluster-image-registry-operator/pull/844) * Add UserTags while creating Azure Storage Account [#829](https://github.com/openshift/cluster-image-registry-operator/pull/829) * [IR-341](https://issues.redhat.com/browse/IR-341): bump openshift/api [#828](https://github.com/openshift/cluster-image-registry-operator/pull/828) * [IR-270](https://issues.redhat.com/browse/IR-270): allow registry to create image objects [#823](https://github.com/openshift/cluster-image-registry-operator/pull/823) * [OCPBUGS-6175](https://issues.redhat.com/browse/OCPBUGS-6175): OpenStack: Add support for Proxy [#833](https://github.com/openshift/cluster-image-registry-operator/pull/833) * [IR-308](https://issues.redhat.com/browse/IR-308): Add support for External platform [#825](https://github.com/openshift/cluster-image-registry-operator/pull/825) * [OCPBUGS-4090](https://issues.redhat.com/browse/OCPBUGS-4090): swift: Retry connecting to OpenStack [#819](https://github.com/openshift/cluster-image-registry-operator/pull/819) * [IR-311](https://issues.redhat.com/browse/IR-311): storage: azure: use azidentity with an adapter [#807](https://github.com/openshift/cluster-image-registry-operator/pull/807) * [Bug 2065166](https://bugzilla.redhat.com/show_bug.cgi?id=2065166): Remove roles/iam.serviceAccountUser role [#824](https://github.com/openshift/cluster-image-registry-operator/pull/824) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#821](https://github.com/openshift/cluster-image-registry-operator/pull/821) * [IR-314](https://issues.redhat.com/browse/IR-314): Bump dependencies [#816](https://github.com/openshift/cluster-image-registry-operator/pull/816) * Add config for golangci-lint and fix errors [#820](https://github.com/openshift/cluster-image-registry-operator/pull/820) * hack/test-go.sh: generate coverage reports [#818](https://github.com/openshift/cluster-image-registry-operator/pull/818) * [OCPBUGS-3974](https://issues.redhat.com/browse/OCPBUGS-3974): check for nil pointer before dereferencing [#814](https://github.com/openshift/cluster-image-registry-operator/pull/814) * [Bug 2066388](https://bugzilla.redhat.com/show_bug.cgi?id=2066388): Add example for s3.regionEndpoint [#815](https://github.com/openshift/cluster-image-registry-operator/pull/815) * [OCPBUGS-2941](https://issues.redhat.com/browse/OCPBUGS-2941): Bump gophercloud [#808](https://github.com/openshift/cluster-image-registry-operator/pull/808) * add myself to OWNERS [#809](https://github.com/openshift/cluster-image-registry-operator/pull/809) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/3e14fd5db182510c6c43ae0003f3158f5a51c8e9...) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/) * [OCPBUGS-32942](https://issues.redhat.com/browse/OCPBUGS-32942): Bump controller-runtime to v0.17.3 [#1050](https://github.com/openshift/cluster-ingress-operator/pull/1050) * [OCPBUGS-28673](https://issues.redhat.com/browse/OCPBUGS-28673): implement connect timeout tuning option [#1035](https://github.com/openshift/cluster-ingress-operator/pull/1035) * [NE-1317](https://issues.redhat.com/browse/NE-1317): manifests - add ingress capability annotation [#950](https://github.com/openshift/cluster-ingress-operator/pull/950) * [OCPBUGS-32371](https://issues.redhat.com/browse/OCPBUGS-32371): Bump openshift/api, and update CRD generation [#1045](https://github.com/openshift/cluster-ingress-operator/pull/1045) * [OCPBUGS-25193](https://issues.redhat.com/browse/OCPBUGS-25193): Add vnet subnet read and join permission for azure [#1029](https://github.com/openshift/cluster-ingress-operator/pull/1029) * [OCPBUGS-30834](https://issues.redhat.com/browse/OCPBUGS-30834): Update to go 1.21 [#1040](https://github.com/openshift/cluster-ingress-operator/pull/1040) * [OCPBUGS-31722](https://issues.redhat.com/browse/OCPBUGS-31722): Use centos7 tag for quay.io/centos7/httpd-24-centos7 image [#1037](https://github.com/openshift/cluster-ingress-operator/pull/1037) * [OCPBUGS-3522](https://issues.redhat.com/browse/OCPBUGS-3522): Include recent errors in canary checks fail [#865](https://github.com/openshift/cluster-ingress-operator/pull/865) * [OCPBUGS-30091](https://issues.redhat.com/browse/OCPBUGS-30091): TestHostNetworkPortBinding: Delete t.Parallel() [#1032](https://github.com/openshift/cluster-ingress-operator/pull/1032) * [CFE-987](https://issues.redhat.com/browse/CFE-987): Use RouterExternalCertificate feature gate for adding ROUTER_ENABLE_EXTERNAL_CERTIFICATE env var to the router pods [#1017](https://github.com/openshift/cluster-ingress-operator/pull/1017) * [CORS-2317](https://issues.redhat.com/browse/CORS-2317): Add Ingress LB IPs to Infra CR and set DNS unmanaged when BYO DNS is enabled [#1016](https://github.com/openshift/cluster-ingress-operator/pull/1016) * [OCPBUGS-28596](https://issues.redhat.com/browse/OCPBUGS-28596): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.16 [#1020](https://github.com/openshift/cluster-ingress-operator/pull/1020) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#1019](https://github.com/openshift/cluster-ingress-operator/pull/1019) * [NE-1490](https://issues.redhat.com/browse/NE-1490): update to go v1.20 [#1012](https://github.com/openshift/cluster-ingress-operator/pull/1012) * [OCPBUGS-15253](https://issues.redhat.com/browse/OCPBUGS-15253): Include namespace in prometheus alerts IngressWithoutClassName and UnmanagedRoutes [#980](https://github.com/openshift/cluster-ingress-operator/pull/980) * [CCO-249](https://issues.redhat.com/browse/CCO-249): Replace GCP role with explicit permissions [#844](https://github.com/openshift/cluster-ingress-operator/pull/844) * [OCPBUGS-25006](https://issues.redhat.com/browse/OCPBUGS-25006): Updating ose-cluster-ingress-operator-container image to be consistent with ART [#1006](https://github.com/openshift/cluster-ingress-operator/pull/1006) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert " OCPBUGS-24531 Skip CI for scope change until OCPBUGS-24044 is resolved" [#1011](https://github.com/openshift/cluster-ingress-operator/pull/1011) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert "Merge pull request #1007 from candita/OCPBUGS-24531-SkipScopeChangeTest" and add changes to skip test only for Azure and GCP [#1008](https://github.com/openshift/cluster-ingress-operator/pull/1008) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Skip CI for scope change until OCPBUGS-24044 is resolved [#1007](https://github.com/openshift/cluster-ingress-operator/pull/1007) * [OCPVE-780](https://issues.redhat.com/browse/OCPVE-780): annotate credentials request manifests [#995](https://github.com/openshift/cluster-ingress-operator/pull/995) * [OCPBUGS-23742](https://issues.redhat.com/browse/OCPBUGS-23742): Bump controller-runtime to v0.16.3 [#1001](https://github.com/openshift/cluster-ingress-operator/pull/1001) * [NE-1402](https://issues.redhat.com/browse/NE-1402): Add service endpoint override capability to IBM DNS provider [#990](https://github.com/openshift/cluster-ingress-operator/pull/990) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Revert "OCPBUGS-16762: Bump openshift/api for container.maxLength fix" [#982](https://github.com/openshift/cluster-ingress-operator/pull/982) * [OCPBUGS-14994](https://issues.redhat.com/browse/OCPBUGS-14994): Don't add clientca-configmap finalizer if deleting [#948](https://github.com/openshift/cluster-ingress-operator/pull/948) * [OCPBUGS-22020](https://issues.redhat.com/browse/OCPBUGS-22020): Bump golang.org/x/net for CVE-2023-44487 [#985](https://github.com/openshift/cluster-ingress-operator/pull/985) * [OCPBUGS-21803](https://issues.redhat.com/browse/OCPBUGS-21803): test/e2e: Add test case for 2000000 maxConnections [#983](https://github.com/openshift/cluster-ingress-operator/pull/983) * [OCPBUGS-20192](https://issues.redhat.com/browse/OCPBUGS-20192): Require non-readonly filesystem in router container [#981](https://github.com/openshift/cluster-ingress-operator/pull/981) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Bump openshift/api for container.maxLength fix [#979](https://github.com/openshift/cluster-ingress-operator/pull/979) * [OCPBUGS-3541](https://issues.redhat.com/browse/OCPBUGS-3541): Don't create route metrics for ingress controllers that are not admitted [#869](https://github.com/openshift/cluster-ingress-operator/pull/869) * [OCPBUGS-18248](https://issues.redhat.com/browse/OCPBUGS-18248): Prevent GatewayClass from getting recreated [#975](https://github.com/openshift/cluster-ingress-operator/pull/975) * [OCPBUGS-19268](https://issues.redhat.com/browse/OCPBUGS-19268): Updating ose-cluster-ingress-operator images to be consistent with ART [#977](https://github.com/openshift/cluster-ingress-operator/pull/977) * [OCPBUGS-15900](https://issues.redhat.com/browse/OCPBUGS-15900): TestMTLSWithCRLs: only try to parse HTTP status code from curl output when stdout is long enough. [#973](https://github.com/openshift/cluster-ingress-operator/pull/973) * [OCPBUGS-3356](https://issues.redhat.com/browse/OCPBUGS-3356): E2E test for cookie length truncation [#871](https://github.com/openshift/cluster-ingress-operator/pull/871) * [OCPBUGS-15978](https://issues.redhat.com/browse/OCPBUGS-15978): Check public DNS zone when reporting status [#967](https://github.com/openshift/cluster-ingress-operator/pull/967) * [OCPBUGS-17359](https://issues.redhat.com/browse/OCPBUGS-17359): test/e2e: Don't use openshift/origin-node [#970](https://github.com/openshift/cluster-ingress-operator/pull/970) * [NE-1140](https://issues.redhat.com/browse/NE-1140), [NE-1145](https://issues.redhat.com/browse/NE-1145): Set/delete HTTP request/response headers via IngressController API [#872](https://github.com/openshift/cluster-ingress-operator/pull/872) * [OCPBUGS-16089](https://issues.redhat.com/browse/OCPBUGS-16089): Set spec.subdomain on the canary route [#965](https://github.com/openshift/cluster-ingress-operator/pull/965) * [OCPBUGS-14995](https://issues.redhat.com/browse/OCPBUGS-14995): desiredRouterDeployment: Set HostPort if needed [#947](https://github.com/openshift/cluster-ingress-operator/pull/947) * [OCPBUGS-10875](https://issues.redhat.com/browse/OCPBUGS-10875): gateway-service-dns: Set DNS policy appropriately [#934](https://github.com/openshift/cluster-ingress-operator/pull/934) * [NE-1244](https://issues.redhat.com/browse/NE-1244): Use permissions instead of the "Contributor" role in Azure CredentialsRequest [#929](https://github.com/openshift/cluster-ingress-operator/pull/929) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): README: Fix Bugzilla link [#968](https://github.com/openshift/cluster-ingress-operator/pull/968) * [RFE-3007](https://issues.redhat.com/browse/RFE-3007): Expose option-contstats as an unsupported option [#887](https://github.com/openshift/cluster-ingress-operator/pull/887) * [NE-1189](https://issues.redhat.com/browse/NE-1189): Refactor Test_desiredLoadBalancerService [#886](https://github.com/openshift/cluster-ingress-operator/pull/886) * [NE-1187](https://issues.redhat.com/browse/NE-1187): Use t.Run for table-driven tests [#884](https://github.com/openshift/cluster-ingress-operator/pull/884) * [NE-1183](https://issues.redhat.com/browse/NE-1183): Rename unit tests for specific functions [#880](https://github.com/openshift/cluster-ingress-operator/pull/880) * [NE-1269](https://issues.redhat.com/browse/NE-1269): Replace bindata using embed [#905](https://github.com/openshift/cluster-ingress-operator/pull/905) * [RFE-3765](https://issues.redhat.com/browse/RFE-3765): Allow Ingress to Modify the HAProxy Log Length when using a Sidecar [#900](https://github.com/openshift/cluster-ingress-operator/pull/900) * [OCPBUGS-9274](https://issues.redhat.com/browse/OCPBUGS-9274): canary: Tolerate infra node NoExecute taint [#932](https://github.com/openshift/cluster-ingress-operator/pull/932) * [OCPBUGS-7546](https://issues.redhat.com/browse/OCPBUGS-7546): Allow only 1 disruption with 3 replicas [#931](https://github.com/openshift/cluster-ingress-operator/pull/931) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Fix previous attempt of adding a missing trailing dot to hostname [#956](https://github.com/openshift/cluster-ingress-operator/pull/956) * [OCPBUGS-14396](https://issues.redhat.com/browse/OCPBUGS-14396): Set controller-runtime logger to a null logger for E2E [#946](https://github.com/openshift/cluster-ingress-operator/pull/946) * [OCPBUGS-14998](https://issues.redhat.com/browse/OCPBUGS-14998): Only use RoleARN for Route53 API [#951](https://github.com/openshift/cluster-ingress-operator/pull/951) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Create valid DNS names for Gateway API on GCP [#949](https://github.com/openshift/cluster-ingress-operator/pull/949) * [OCPBUGS-13106](https://issues.redhat.com/browse/OCPBUGS-13106): Add ingress controller status logging on waitForIngressControllerCondition [#924](https://github.com/openshift/cluster-ingress-operator/pull/924) * [OCPBUGS-13190](https://issues.redhat.com/browse/OCPBUGS-13190): Avoid spurious updates for internalTrafficPolicy [#927](https://github.com/openshift/cluster-ingress-operator/pull/927) * [OCPBUGS-13810](https://issues.redhat.com/browse/OCPBUGS-13810): Update TestAWSELBConnectionIdleTimeout to not use wildcard DNS record [#944](https://github.com/openshift/cluster-ingress-operator/pull/944) * [NE-1294](https://issues.redhat.com/browse/NE-1294): Add support for AWS shared VPC in another account [#928](https://github.com/openshift/cluster-ingress-operator/pull/928) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Enable Azure Workload Identity authentication. [#906](https://github.com/openshift/cluster-ingress-operator/pull/906) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#939](https://github.com/openshift/cluster-ingress-operator/pull/939) * [OCPBUGS-13963](https://issues.redhat.com/browse/OCPBUGS-13963): Bump vendors k8s libraries to 0.27.2 [#936](https://github.com/openshift/cluster-ingress-operator/pull/936) * Revert "OCPBUGS-6661, OCPBUGS-9464: Move mTLS CRL handling into the router, and fix accidental duplication of CRLs" [#938](https://github.com/openshift/cluster-ingress-operator/pull/938) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#930](https://github.com/openshift/cluster-ingress-operator/pull/930) * [OCPBUGS-5478](https://issues.redhat.com/browse/OCPBUGS-5478): add UBI based Dockerfile [#925](https://github.com/openshift/cluster-ingress-operator/pull/925) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Read feature gates for future usage [#908](https://github.com/openshift/cluster-ingress-operator/pull/908) * [OCPBUGS-12913](https://issues.redhat.com/browse/OCPBUGS-12913): Deflake TestRouterCompressionOperation [#920](https://github.com/openshift/cluster-ingress-operator/pull/920) * [OCPBUGS-6784](https://issues.redhat.com/browse/OCPBUGS-6784): bump controller-runtime to fix the multi namespace cache indexing [#913](https://github.com/openshift/cluster-ingress-operator/pull/913) * [OCPBUGS-12579](https://issues.redhat.com/browse/OCPBUGS-12579): Address CVE-2022-41723 [#915](https://github.com/openshift/cluster-ingress-operator/pull/915) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): Replace Bugzilla link with Red Hat Issue Tracker [#916](https://github.com/openshift/cluster-ingress-operator/pull/916) * [OCPBUGS-10714](https://issues.redhat.com/browse/OCPBUGS-10714): gatewayclass: Update for OSSM 2.4 API change [#901](https://github.com/openshift/cluster-ingress-operator/pull/901) * [OCPBUGS-10189](https://issues.redhat.com/browse/OCPBUGS-10189): Updating ose-cluster-ingress-operator images to be consistent with ART [#898](https://github.com/openshift/cluster-ingress-operator/pull/898) * [OCPBUGS-10846](https://issues.redhat.com/browse/OCPBUGS-10846): Fix TestClientTLS flakes [#904](https://github.com/openshift/cluster-ingress-operator/pull/904) * [NE-1184](https://issues.redhat.com/browse/NE-1184): Test_desiredHttpErrorCodeConfigMap: Kill dead code and fix format [#881](https://github.com/openshift/cluster-ingress-operator/pull/881) * [OCPBUGS-4054](https://issues.redhat.com/browse/OCPBUGS-4054): configurable-route: Don't use NewKindWithCache [#860](https://github.com/openshift/cluster-ingress-operator/pull/860) * [NE-1186](https://issues.redhat.com/browse/NE-1186): Test_getRR: Fix typo: "excepted" → "expected" [#883](https://github.com/openshift/cluster-ingress-operator/pull/883) * [CORS-2467](https://issues.redhat.com/browse/CORS-2467): dns: azure: use azidentity with an adapter [#846](https://github.com/openshift/cluster-ingress-operator/pull/846) * [NE-1105](https://issues.redhat.com/browse/NE-1105): Add support for Gateway API [#890](https://github.com/openshift/cluster-ingress-operator/pull/890) * [OCPBUGS-7424](https://issues.redhat.com/browse/OCPBUGS-7424): Bump vendored k8s libraries to 1.26.1 [#888](https://github.com/openshift/cluster-ingress-operator/pull/888) * [CFE-679](https://issues.redhat.com/browse/CFE-679): Add user defined tags to the created DNS resources [#874](https://github.com/openshift/cluster-ingress-operator/pull/874) * [OCPBUGS-6247](https://issues.redhat.com/browse/OCPBUGS-6247): Updating ose-cluster-ingress-operator images to be consistent with ART [#862](https://github.com/openshift/cluster-ingress-operator/pull/862) * [CORS-2072](https://issues.redhat.com/browse/CORS-2072): GCP - Parse Zone ID with a project ID embedded [#855](https://github.com/openshift/cluster-ingress-operator/pull/855) * [NE-1092](https://issues.redhat.com/browse/NE-1092): Add proxy protocol support for IBMCloud loadbalancers [#812](https://github.com/openshift/cluster-ingress-operator/pull/812) * [OCPBUGS-6384](https://issues.redhat.com/browse/OCPBUGS-6384): Address CVE-2022-41717 [#876](https://github.com/openshift/cluster-ingress-operator/pull/876) * [OCPBUGS-4827](https://issues.redhat.com/browse/OCPBUGS-4827): Add missing AWS permission for ListTagsForResources [#868](https://github.com/openshift/cluster-ingress-operator/pull/868) * [OCPBUGS-6701](https://issues.redhat.com/browse/OCPBUGS-6701): Avoid spurious updates for scope in IngressClass [#879](https://github.com/openshift/cluster-ingress-operator/pull/879) * [OCPBUGS-6698](https://issues.redhat.com/browse/OCPBUGS-6698): Fix conflict error message in ensureNodePortService [#877](https://github.com/openshift/cluster-ingress-operator/pull/877) * [OCPBUGS-6700](https://issues.redhat.com/browse/OCPBUGS-6700): updateIngressClass: Fix log message [#878](https://github.com/openshift/cluster-ingress-operator/pull/878) * [NE-1124](https://issues.redhat.com/browse/NE-1124): Add support for External platform to CIO [#873](https://github.com/openshift/cluster-ingress-operator/pull/873) * [OCPBUGS-4573](https://issues.redhat.com/browse/OCPBUGS-4573): Target metrics port by name in internal service [#864](https://github.com/openshift/cluster-ingress-operator/pull/864) * [OCPBUGS-434](https://issues.redhat.com/browse/OCPBUGS-434): Absorb PodsScheduled condition into MinAvailable [#854](https://github.com/openshift/cluster-ingress-operator/pull/854) * [OCPBUGS-4759](https://issues.redhat.com/browse/OCPBUGS-4759): Do not manage DNS for an ingresscontroller with domain mismatch in GCP [#866](https://github.com/openshift/cluster-ingress-operator/pull/866) * [OCPBUGS-4703](https://issues.redhat.com/browse/OCPBUGS-4703): Replace liveness-grace-period-seconds annotation [#863](https://github.com/openshift/cluster-ingress-operator/pull/863) * [OCPBUGS-3404](https://issues.redhat.com/browse/OCPBUGS-3404): Bump openshift/api for matchExpressions doc fix [#856](https://github.com/openshift/cluster-ingress-operator/pull/856) * [OPNET-133](https://issues.redhat.com/browse/OPNET-133): Support remote worker [#858](https://github.com/openshift/cluster-ingress-operator/pull/858) * [OCPBUGS-1725](https://issues.redhat.com/browse/OCPBUGS-1725): Ingress controller should not have affinity policy in single-replica clusters [#810](https://github.com/openshift/cluster-ingress-operator/pull/810) * [OCPBUGS-1807](https://issues.redhat.com/browse/OCPBUGS-1807): Fix bad `handleSingleNode4Dot11Upgrade` log message [#808](https://github.com/openshift/cluster-ingress-operator/pull/808) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/992b43b3cf3e1784bfe8d3083229c7ecb410e7e3...) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/e840002d36b0daeccfb040dabc1f37f309b7207b) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): make the bootstrap kube-apiserver honor cluster-wide featuregates [#1439](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1439) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#1445](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1445) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/336ffd5e7491f565faccf843571303377b1d4825...e840002d36b0daeccfb040dabc1f37f309b7207b) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/73f7ea7014f57cc37d6f2c720d3bcc00c7d4718b) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#699](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/699) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/9243e022c42c6d55e1d97a15ed51831f6080984a...73f7ea7014f57cc37d6f2c720d3bcc00c7d4718b) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/845ae423e831b1cacf0bcae5e6528f1d21b5ddf2) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard controller: set the readiness probe endpoint explicitly [#462](https://github.com/openshift/cluster-kube-scheduler-operator/pull/462) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/e0b6bf9c4ddb0da9268d504d23ca2ca11880d970...845ae423e831b1cacf0bcae5e6528f1d21b5ddf2) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#107](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/107) * [OCPBUGS-29567](https://issues.redhat.com/browse/OCPBUGS-29567): Apply hypershift cluster-profile for ibm-cloud-managed [#106](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/106) * [OCPBUGS-27930](https://issues.redhat.com/browse/OCPBUGS-27930): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.16 [#103](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/103) * [OCPBUGS-24989](https://issues.redhat.com/browse/OCPBUGS-24989): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART [#101](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/101) * [OCPBUGS-21738](https://issues.redhat.com/browse/OCPBUGS-21738): bump library-go to include switch to HTTP/1.1 [#95](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/95) * [OCPBUGS-19253](https://issues.redhat.com/browse/OCPBUGS-19253): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#94](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/94) * Revert "specify master node selector on migrator pod" [#93](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/93) * [OCPBUGS-17170](https://issues.redhat.com/browse/OCPBUGS-17170): specify master node selector on migrator pod [#92](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/92) * [OCPBUGS-16513](https://issues.redhat.com/browse/OCPBUGS-16513): bump(*): update to 1.27.1 [#91](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/91) * Fix operator doc in README [#90](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/90) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#89](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/89) * [OCPBUGS-6240](https://issues.redhat.com/browse/OCPBUGS-6240): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#87](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/87) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/12d050abd0cf37dae8973d453930bcf494a2499b...) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/) * [OCPBUGS-29568](https://issues.redhat.com/browse/OCPBUGS-29568): Apply hypershift cluster-profile for ibm-cloud-managed [#229](https://github.com/openshift/cluster-machine-approver/pull/229) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#227](https://github.com/openshift/cluster-machine-approver/pull/227) * [OCPBUGS-26116](https://issues.redhat.com/browse/OCPBUGS-26116): Add Snyk file to exclude vendor directory on scan [#225](https://github.com/openshift/cluster-machine-approver/pull/225) * [OCPCLOUD-2417](https://issues.redhat.com/browse/OCPCLOUD-2417): Update to kube 1.29 and controller-runtime 0.17.0 [#224](https://github.com/openshift/cluster-machine-approver/pull/224) * [OCPBUGS-23544](https://issues.redhat.com/browse/OCPBUGS-23544): Increase concurrent reconciles to 10 [#222](https://github.com/openshift/cluster-machine-approver/pull/222) * [OCPBUGS-25582](https://issues.redhat.com/browse/OCPBUGS-25582): Updating ose-cluster-machine-approver-container image to be consistent with ART [#223](https://github.com/openshift/cluster-machine-approver/pull/223) * [OCPBUGS-24985](https://issues.redhat.com/browse/OCPBUGS-24985): Updating ose-cluster-machine-approver-container image to be consistent with ART [#218](https://github.com/openshift/cluster-machine-approver/pull/218) * [OCPBUGS-24154](https://issues.redhat.com/browse/OCPBUGS-24154): Updating ose-cluster-machine-approver-container image to be consistent with ART [#217](https://github.com/openshift/cluster-machine-approver/pull/217) * [OCPCLOUD-2277](https://issues.redhat.com/browse/OCPCLOUD-2277): Ensure Cluster Machine Approver metrics are only available via HTTPS [#211](https://github.com/openshift/cluster-machine-approver/pull/211) * [OCPBUGS-21594](https://issues.redhat.com/browse/OCPBUGS-21594): Filter non node CSRs in metrics [#208](https://github.com/openshift/cluster-machine-approver/pull/208) * [OCPBUGS-21793](https://issues.redhat.com/browse/OCPBUGS-21793): Bump x/net package to v0.17.0 [#204](https://github.com/openshift/cluster-machine-approver/pull/204) * Update OWNERS [#205](https://github.com/openshift/cluster-machine-approver/pull/205) * [OCPBUGS-19250](https://issues.redhat.com/browse/OCPBUGS-19250): Updating ose-cluster-machine-approver images to be consistent with ART [#201](https://github.com/openshift/cluster-machine-approver/pull/201) * [OCPCLOUD-2181](https://issues.redhat.com/browse/OCPCLOUD-2181): Update K8s dependencies to 1.28 [#203](https://github.com/openshift/cluster-machine-approver/pull/203) * [OCPBUGS-17090](https://issues.redhat.com/browse/OCPBUGS-17090): Set logger for controller runtime [#200](https://github.com/openshift/cluster-machine-approver/pull/200) * [OCPBUGS-18338](https://issues.redhat.com/browse/OCPBUGS-18338): Fix CI by running tests natively by default [#199](https://github.com/openshift/cluster-machine-approver/pull/199) * [OCPBUGS-16156](https://issues.redhat.com/browse/OCPBUGS-16156): check if machine api present [#198](https://github.com/openshift/cluster-machine-approver/pull/198) * handle situation when machine CRD is not present [#191](https://github.com/openshift/cluster-machine-approver/pull/191) * [OCPCLOUD-2044](https://issues.redhat.com/browse/OCPCLOUD-2044): Update to Kubernetes 1.27 deps [#195](https://github.com/openshift/cluster-machine-approver/pull/195) * [OCPBUGS-10171](https://issues.redhat.com/browse/OCPBUGS-10171): Go 1.20 bump with fixed unit tests [#194](https://github.com/openshift/cluster-machine-approver/pull/194) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update node client allowed usages [#189](https://github.com/openshift/cluster-machine-approver/pull/189) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update isNodeClientCert to allow for new key usages [#186](https://github.com/openshift/cluster-machine-approver/pull/186) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): approver: fix ECDSA approvals in 1.27 [#184](https://github.com/openshift/cluster-machine-approver/pull/184) * Update TLS Bootstrapping doc links in README [#182](https://github.com/openshift/cluster-machine-approver/pull/182) * Updating ose-cluster-machine-approver images to be consistent with ART [#180](https://github.com/openshift/cluster-machine-approver/pull/180) * Update OWNERS [#179](https://github.com/openshift/cluster-machine-approver/pull/179) * : Update tooling for CMA [#178](https://github.com/openshift/cluster-machine-approver/pull/178) * [OCPCLOUD-1805](https://issues.redhat.com/browse/OCPCLOUD-1805): Port to ginkgo v2 [#176](https://github.com/openshift/cluster-machine-approver/pull/176) * Updating ose-cluster-machine-approver images to be consistent with ART [#174](https://github.com/openshift/cluster-machine-approver/pull/174) * Update OWNERS [#177](https://github.com/openshift/cluster-machine-approver/pull/177) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/60081982654993534de29d224d6a42c251762420...) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/) * [MON-3163](https://issues.redhat.com/browse/MON-3163): support VPAs [#2078](https://github.com/openshift/cluster-monitoring-operator/pull/2078) * [OCPBUGS-23801](https://issues.redhat.com/browse/OCPBUGS-23801): update OTEL `google.golang.org/grpc/otelgrpc` [#2321](https://github.com/openshift/cluster-monitoring-operator/pull/2321) * NO-JIRA: Increase `checkAlertmanagerAPIVerbs` timeout [#2330](https://github.com/openshift/cluster-monitoring-operator/pull/2330) * [MON-3487](https://issues.redhat.com/browse/MON-3487): base CP enablement on dedicated feature gate [#2153](https://github.com/openshift/cluster-monitoring-operator/pull/2153) * [OCPBUGS-32177](https://issues.redhat.com/browse/OCPBUGS-32177): fix wrong dir hack/tools of tools.go [#2327](https://github.com/openshift/cluster-monitoring-operator/pull/2327) * [MON-3707](https://issues.redhat.com/browse/MON-3707): Add ipsec state metric into telemetry [#2326](https://github.com/openshift/cluster-monitoring-operator/pull/2326) * [MON-3701](https://issues.redhat.com/browse/MON-3701): clean-up injection of trusted CA bundle for k8s Prometheus [#2323](https://github.com/openshift/cluster-monitoring-operator/pull/2323) * [MON-3839](https://issues.redhat.com/browse/MON-3839): test: add skip tests for prometheus adapter tests [#2328](https://github.com/openshift/cluster-monitoring-operator/pull/2328) * [MON-3820](https://issues.redhat.com/browse/MON-3820): allow read-only access for Alertmanager API [#2319](https://github.com/openshift/cluster-monitoring-operator/pull/2319) * [MON-3701](https://issues.redhat.com/browse/MON-3701): remove trusted CA bundle from Thanos Querier [#2325](https://github.com/openshift/cluster-monitoring-operator/pull/2325) * [MON-3701](https://issues.redhat.com/browse/MON-3701): follow-up of PR #2308 [#2324](https://github.com/openshift/cluster-monitoring-operator/pull/2324) * [MON-3825](https://issues.redhat.com/browse/MON-3825): Synchronize versions of the downstream components [#2322](https://github.com/openshift/cluster-monitoring-operator/pull/2322) * [OCPBUGS-30430](https://issues.redhat.com/browse/OCPBUGS-30430): update `google.golang.org/protobuf` [#2320](https://github.com/openshift/cluster-monitoring-operator/pull/2320) * [MON-3701](https://issues.redhat.com/browse/MON-3701): clean-up injection of trusted CA bundle for main Alertmanager [#2310](https://github.com/openshift/cluster-monitoring-operator/pull/2310) * [MON-3783](https://issues.redhat.com/browse/MON-3783): add controller-id annotation to pods deployments and operator [#2309](https://github.com/openshift/cluster-monitoring-operator/pull/2309) * [OCPBUGS-18643](https://issues.redhat.com/browse/OCPBUGS-18643): address lint warnings [#2284](https://github.com/openshift/cluster-monitoring-operator/pull/2284) * [WINC-1180](https://issues.redhat.com/browse/WINC-1180): assets, jsonnet: Add container_network openshift-kubernetes.rules [#2314](https://github.com/openshift/cluster-monitoring-operator/pull/2314) * [OCPBUGS-31847](https://issues.redhat.com/browse/OCPBUGS-31847): Synchronize versions of the downstream components [#2318](https://github.com/openshift/cluster-monitoring-operator/pull/2318) * [MON-3701](https://issues.redhat.com/browse/MON-3701): remove references to OAuth proxy [#2308](https://github.com/openshift/cluster-monitoring-operator/pull/2308) * [MON-3706](https://issues.redhat.com/browse/MON-3706): chore: simplify GetServiceAccountToken() [#2272](https://github.com/openshift/cluster-monitoring-operator/pull/2272) * [MON-3621](https://issues.redhat.com/browse/MON-3621): Enable `extra-scrape-metrics` feature in PrometheusUWM [#2302](https://github.com/openshift/cluster-monitoring-operator/pull/2302) * [OCPBUGS-31411](https://issues.redhat.com/browse/OCPBUGS-31411): add runbook link for KubeAggregatedAPIErrors alert [#2316](https://github.com/openshift/cluster-monitoring-operator/pull/2316) * [OCPBUGS-29531](https://issues.redhat.com/browse/OCPBUGS-29531): Add include.release.openshift.io/hypershift label [#2264](https://github.com/openshift/cluster-monitoring-operator/pull/2264) * [MON-3778](https://issues.redhat.com/browse/MON-3778), [OLS-117](https://issues.redhat.com/browse/OLS-117): Add OLS metrics to telemetry whitelist [#2300](https://github.com/openshift/cluster-monitoring-operator/pull/2300) * [OCPBUGS-31920](https://issues.redhat.com/browse/OCPBUGS-31920): go.mod: bump openshift/api [#2290](https://github.com/openshift/cluster-monitoring-operator/pull/2290) * [MON-3700](https://issues.redhat.com/browse/MON-3700): replace OAuth proxy for Thanos Ruler [#2294](https://github.com/openshift/cluster-monitoring-operator/pull/2294) * [MON-3799](https://issues.redhat.com/browse/MON-3799): Synchronize versions of the downstream components [#2301](https://github.com/openshift/cluster-monitoring-operator/pull/2301) * [MON-3749](https://issues.redhat.com/browse/MON-3749): enable request headers flags for metrics server [#2293](https://github.com/openshift/cluster-monitoring-operator/pull/2293) * [OCPBUGS-28650](https://issues.redhat.com/browse/OCPBUGS-28650): fix generation of telemeter token hash [#2298](https://github.com/openshift/cluster-monitoring-operator/pull/2298) * [MON-3801](https://issues.redhat.com/browse/MON-3801): remove oauth-redirectreference annotations [#2299](https://github.com/openshift/cluster-monitoring-operator/pull/2299) * [MON-3793](https://issues.redhat.com/browse/MON-3793): Synchronize versions of the downstream components [#2295](https://github.com/openshift/cluster-monitoring-operator/pull/2295) * [MON-3793](https://issues.redhat.com/browse/MON-3793): jsonnet: Bump jsonnet deps for prometheus-operator [#2296](https://github.com/openshift/cluster-monitoring-operator/pull/2296) * [MON-3792](https://issues.redhat.com/browse/MON-3792): fix metrics-server path for /test versions [#2286](https://github.com/openshift/cluster-monitoring-operator/pull/2286) * [MON-3789](https://issues.redhat.com/browse/MON-3789): add a golangci-lint-fix makefile target to fix golangci-lint errros when possible [#2275](https://github.com/openshift/cluster-monitoring-operator/pull/2275) * [MON-3771](https://issues.redhat.com/browse/MON-3771): update Prometheus operator to v0.72.0 [#2288](https://github.com/openshift/cluster-monitoring-operator/pull/2288) * [MON-3498](https://issues.redhat.com/browse/MON-3498): Modify prometheus-adapter e2e tests to compact with metrics server [#2196](https://github.com/openshift/cluster-monitoring-operator/pull/2196) * [OCPBUGS-30257](https://issues.redhat.com/browse/OCPBUGS-30257): Making sure proxy settings are correctly forwarded in the generated remote write configs [#2269](https://github.com/openshift/cluster-monitoring-operator/pull/2269) * [OCPNODE-2100](https://issues.redhat.com/browse/OCPNODE-2100): jsonnet: update crio port to TLS port 9637 [#2257](https://github.com/openshift/cluster-monitoring-operator/pull/2257) * [MON-3694](https://issues.redhat.com/browse/MON-3694): chore: encourage the use of the new 'slices' package instead of 'golang.org/x/exp/slices' [#2243](https://github.com/openshift/cluster-monitoring-operator/pull/2243) * [MON-3748](https://issues.redhat.com/browse/MON-3748): Enable audit logs by default for metrics-server [#2280](https://github.com/openshift/cluster-monitoring-operator/pull/2280) * [MON-3380](https://issues.redhat.com/browse/MON-3380): adjust prometheus-k8s service openshift.io/description [#2279](https://github.com/openshift/cluster-monitoring-operator/pull/2279) * [MON-3747](https://issues.redhat.com/browse/MON-3747): Increase e2e test timeout to 150 min [#2278](https://github.com/openshift/cluster-monitoring-operator/pull/2278) * [MON-3381](https://issues.redhat.com/browse/MON-3381): replace OAuth proxy for Alertmanager [#2260](https://github.com/openshift/cluster-monitoring-operator/pull/2260) * [OCPBUGS-28246](https://issues.redhat.com/browse/OCPBUGS-28246): fix Thanos ruler alert generator url [#2267](https://github.com/openshift/cluster-monitoring-operator/pull/2267) * [MON-3706](https://issues.redhat.com/browse/MON-3706): Revert "chore: poll immediately in the e2e tests" [#2271](https://github.com/openshift/cluster-monitoring-operator/pull/2271) * [MON-3717](https://issues.redhat.com/browse/MON-3717): pkg/client.go: make some CreateOrUpdateXXX functions use library-go’s resourceapply utils. [#2226](https://github.com/openshift/cluster-monitoring-operator/pull/2226) * [MON-3717](https://issues.redhat.com/browse/MON-3717): update library-go to get https://github.com/openshift/libra… [#2266](https://github.com/openshift/cluster-monitoring-operator/pull/2266) * [MON-3380](https://issues.redhat.com/browse/MON-3380): re-add kube-rbac-proxy for /metrics and /federate [#2261](https://github.com/openshift/cluster-monitoring-operator/pull/2261) * [MON-3172](https://issues.redhat.com/browse/MON-3172): describe monitoring services [#2188](https://github.com/openshift/cluster-monitoring-operator/pull/2188) * [MON-3706](https://issues.redhat.com/browse/MON-3706): chore: poll immediately in the e2e tests [#2258](https://github.com/openshift/cluster-monitoring-operator/pull/2258) * [MON-3380](https://issues.redhat.com/browse/MON-3380): replace OAuth proxy for prometheus-k8s [#2246](https://github.com/openshift/cluster-monitoring-operator/pull/2246) * [OCPBUGS-18326](https://issues.redhat.com/browse/OCPBUGS-18326): add Console cap annotation to dashboards [#2254](https://github.com/openshift/cluster-monitoring-operator/pull/2254) * [TRT-1489](https://issues.redhat.com/browse/TRT-1489): Revert "jsonnet: update crio port to TLS port 9637" [#2255](https://github.com/openshift/cluster-monitoring-operator/pull/2255) * [OCPNODE-2022](https://issues.redhat.com/browse/OCPNODE-2022): jsonnet: update crio port to TLS port 9637 [#2229](https://github.com/openshift/cluster-monitoring-operator/pull/2229) * [MON-3705](https://issues.redhat.com/browse/MON-3705): [bot] Update jsonnet dependencies [#2208](https://github.com/openshift/cluster-monitoring-operator/pull/2208) * [MON-3699](https://issues.redhat.com/browse/MON-3699): chore: merge OmitFromDoc with HideFromDoc introduced in https://github.com/https://github.com/openshift/cluster-monitoring-operator/pull/2210 to hide fields from the doc [#2247](https://github.com/openshift/cluster-monitoring-operator/pull/2247) * [MON-3697](https://issues.redhat.com/browse/MON-3697): use `maximumStartupDurationSeconds` instead of container patch [#2251](https://github.com/openshift/cluster-monitoring-operator/pull/2251) * [OCPBUGS-28246](https://issues.redhat.com/browse/OCPBUGS-28246): fix: set externalURL in UWM Prometheus [#2250](https://github.com/openshift/cluster-monitoring-operator/pull/2250) * [MON-3689](https://issues.redhat.com/browse/MON-3689): Synchronize versions of the downstream components [#2245](https://github.com/openshift/cluster-monitoring-operator/pull/2245) * [OCPBUGS-27289](https://issues.redhat.com/browse/OCPBUGS-27289): followup of https://github.com/openshift/cluster-monitoring-operator/pull/2242 [#2244](https://github.com/openshift/cluster-monitoring-operator/pull/2244) * [STOR-1289](https://issues.redhat.com/browse/STOR-1289): Move vSphere prometheus rules to cluster-storage-operator [#2235](https://github.com/openshift/cluster-monitoring-operator/pull/2235) * [OCPBUGS-27289](https://issues.redhat.com/browse/OCPBUGS-27289): rollout metrics-server on cert rotations [#2242](https://github.com/openshift/cluster-monitoring-operator/pull/2242) * [OCPBUGS-27213](https://issues.redhat.com/browse/OCPBUGS-27213): Adjust lastError injection to wait.PollUntilContextTimeout's final error [#2234](https://github.com/openshift/cluster-monitoring-operator/pull/2234) * [MON-3676](https://issues.redhat.com/browse/MON-3676): move raptorsun out of reviewer list [#2240](https://github.com/openshift/cluster-monitoring-operator/pull/2240) * [MON-3673](https://issues.redhat.com/browse/MON-3673): [bot] Synchronize versions of the downstream components [#2238](https://github.com/openshift/cluster-monitoring-operator/pull/2238) * [MON-2853](https://issues.redhat.com/browse/MON-2853): add runbook link to TargetDown alert [#2237](https://github.com/openshift/cluster-monitoring-operator/pull/2237) * [MON-3661](https://issues.redhat.com/browse/MON-3661): [bot] Synchronize versions of the downstream components [#2236](https://github.com/openshift/cluster-monitoring-operator/pull/2236) * [OCPBUGS-26983](https://issues.redhat.com/browse/OCPBUGS-26983): rollout monitoring plugin on TLS rotation [#2233](https://github.com/openshift/cluster-monitoring-operator/pull/2233) * [MON-3661](https://issues.redhat.com/browse/MON-3661): chore: update Prometheus operator to v0.71.0 [#2230](https://github.com/openshift/cluster-monitoring-operator/pull/2230) * [MON-3667](https://issues.redhat.com/browse/MON-3667): remove outdated documentation [#2232](https://github.com/openshift/cluster-monitoring-operator/pull/2232) * [OCPBUGS-25849](https://issues.redhat.com/browse/OCPBUGS-25849): make PrometheusAdapter and MetricsServer tasks less conflict prone [#2218](https://github.com/openshift/cluster-monitoring-operator/pull/2218) * [OCPBUGS-25378](https://issues.redhat.com/browse/OCPBUGS-25378): drop InfoInhibitor from default Alertmanager config [#2225](https://github.com/openshift/cluster-monitoring-operator/pull/2225) * [MON-3664](https://issues.redhat.com/browse/MON-3664): chore: avoid issues with std.set* functions [#2231](https://github.com/openshift/cluster-monitoring-operator/pull/2231) * [MON-3654](https://issues.redhat.com/browse/MON-3654): use Go standard errors package instead of github.com/pkg/errors [#2224](https://github.com/openshift/cluster-monitoring-operator/pull/2224) * [MON-1047](https://issues.redhat.com/browse/MON-1047): fix: add terminationMessagePolicy: FallbackToLogsOnError to all conta… [#2228](https://github.com/openshift/cluster-monitoring-operator/pull/2228) * [MON-3552](https://issues.redhat.com/browse/MON-3552): remove temporary cleanup code and no longer needed tests [#2210](https://github.com/openshift/cluster-monitoring-operator/pull/2210) * [MON-3650](https://issues.redhat.com/browse/MON-3650): Synchronize versions of the downstream components [#2222](https://github.com/openshift/cluster-monitoring-operator/pull/2222) * [MON-3649](https://issues.redhat.com/browse/MON-3649): Synchronize versions of the downstream components [#2221](https://github.com/openshift/cluster-monitoring-operator/pull/2221) * [MON-3644](https://issues.redhat.com/browse/MON-3644): Ease the tracking of monitoring components versions. [#2220](https://github.com/openshift/cluster-monitoring-operator/pull/2220) * [OCPBUGS-25803](https://issues.redhat.com/browse/OCPBUGS-25803): make CMO ConsolePluginComponents task resilient to dependencies [#2193](https://github.com/openshift/cluster-monitoring-operator/pull/2193) * [OCPBUGS-25676](https://issues.redhat.com/browse/OCPBUGS-25676): fix(tasks): adjust 'trusted CA bundle ConfigMap' related logs for alertmanagers. [#2219](https://github.com/openshift/cluster-monitoring-operator/pull/2219) * [MON-3633](https://issues.redhat.com/browse/MON-3633): Synchronize versions of the downstream components [#2214](https://github.com/openshift/cluster-monitoring-operator/pull/2214) * [OCPBUGS-24977](https://issues.redhat.com/browse/OCPBUGS-24977): Updating cluster-monitoring-operator-container image to be consistent with ART [#2211](https://github.com/openshift/cluster-monitoring-operator/pull/2211) * [OCPBUGS-25403](https://issues.redhat.com/browse/OCPBUGS-25403): go.mod update k8s.io/api* to v0.29.0 [#2205](https://github.com/openshift/cluster-monitoring-operator/pull/2205) * [MON-3589](https://issues.redhat.com/browse/MON-3589): Refactor assertExemplarsEnabled check for UWM Prometheus xand add a check for --scrape.timestamp-tolerance on Platform Prometheus [#2194](https://github.com/openshift/cluster-monitoring-operator/pull/2194) * [OCPBUGS-24977](https://issues.redhat.com/browse/OCPBUGS-24977): use 1.20 in go.mod [#2199](https://github.com/openshift/cluster-monitoring-operator/pull/2199) * [MON-3592](https://issues.redhat.com/browse/MON-3592): Use strict yaml unmarshaling [#2195](https://github.com/openshift/cluster-monitoring-operator/pull/2195) * [OCPBUGS-25025](https://issues.redhat.com/browse/OCPBUGS-25025): go.mod: bump prometheus-operator to v0.70.0 [#2191](https://github.com/openshift/cluster-monitoring-operator/pull/2191) * [OCPBUGS-24977](https://issues.redhat.com/browse/OCPBUGS-24977): Updating cluster-monitoring-operator-container image to be consistent with ART [#2190](https://github.com/openshift/cluster-monitoring-operator/pull/2190) * [OCPBUGS-24630](https://issues.redhat.com/browse/OCPBUGS-24630): additionalArgs: list items must have named fields [#2189](https://github.com/openshift/cluster-monitoring-operator/pull/2189) * [MON-3553](https://issues.redhat.com/browse/MON-3553): Set scrape.timestamp tolerance [#2187](https://github.com/openshift/cluster-monitoring-operator/pull/2187) * [OCPBUGS-23516](https://issues.redhat.com/browse/OCPBUGS-23516): prevent plugin entry assets from caching [#2186](https://github.com/openshift/cluster-monitoring-operator/pull/2186) * [OCPBUGS-21610](https://issues.redhat.com/browse/OCPBUGS-21610): Detect ipv4/ipv6 socket in pod ip for nginx conf [#2173](https://github.com/openshift/cluster-monitoring-operator/pull/2173) * [MON-3134](https://issues.redhat.com/browse/MON-3134): allow to query alerts from thanos-querier tenancy port [#2184](https://github.com/openshift/cluster-monitoring-operator/pull/2184) * [MON-3551](https://issues.redhat.com/browse/MON-3551): fix: simplify jq script avoids error with jq1.7 [#2180](https://github.com/openshift/cluster-monitoring-operator/pull/2180) * [MON-3454](https://issues.redhat.com/browse/MON-3454): Add track timestamps staleness [#2160](https://github.com/openshift/cluster-monitoring-operator/pull/2160) * [OCPBUGS-24212](https://issues.redhat.com/browse/OCPBUGS-24212): Add ownership annotation for certificates [#2158](https://github.com/openshift/cluster-monitoring-operator/pull/2158) * [MON-3379](https://issues.redhat.com/browse/MON-3379): Replace the oauth-proxy before thanos-querier with kube-rbac-proxy [#2136](https://github.com/openshift/cluster-monitoring-operator/pull/2136) * [MON-3544](https://issues.redhat.com/browse/MON-3544): Adjust NodeClock* alerting rules to work with PTP operator [#2182](https://github.com/openshift/cluster-monitoring-operator/pull/2182) * [OCPBUGS-23745](https://issues.redhat.com/browse/OCPBUGS-23745): Wait for 3 (instead of 2) consecutive failing reconcil… [#2179](https://github.com/openshift/cluster-monitoring-operator/pull/2179) * [MON-3548](https://issues.redhat.com/browse/MON-3548): [bot] Synchronize versions of the downstream components [#2183](https://github.com/openshift/cluster-monitoring-operator/pull/2183) * [MON-3543](https://issues.redhat.com/browse/MON-3543): Update API docs for Metrics Server [#2181](https://github.com/openshift/cluster-monitoring-operator/pull/2181) * [OCPBUGS-24323](https://issues.redhat.com/browse/OCPBUGS-24323): synchronize versions of the downstream components [#2174](https://github.com/openshift/cluster-monitoring-operator/pull/2174) * [OCPBUGS-24340](https://issues.redhat.com/browse/OCPBUGS-24340): patch securityContext for Thanos querier [#2178](https://github.com/openshift/cluster-monitoring-operator/pull/2178) * [OCPBUGS-24323](https://issues.redhat.com/browse/OCPBUGS-24323): update prometheus-operator jsonnet to v0.70.0 [#2177](https://github.com/openshift/cluster-monitoring-operator/pull/2177) * [MON-3287](https://issues.redhat.com/browse/MON-3287): Remove openshift-etcd related RBAC as they will be manager by [#2165](https://github.com/openshift/cluster-monitoring-operator/pull/2165) * [OCPBUGS-21610](https://issues.redhat.com/browse/OCPBUGS-21610): revert #2166 [#2172](https://github.com/openshift/cluster-monitoring-operator/pull/2172) * [MON-3524](https://issues.redhat.com/browse/MON-3524): Update metrics-server in CHANGELOG and README [#2169](https://github.com/openshift/cluster-monitoring-operator/pull/2169) * [MON-3533](https://issues.redhat.com/browse/MON-3533): Update cluster:kube_persistentvolume_plugin_type_counts:sum [#2171](https://github.com/openshift/cluster-monitoring-operator/pull/2171) * [STOR-1277](https://issues.redhat.com/browse/STOR-1277): Add SELinux metrics to telemetry [#2155](https://github.com/openshift/cluster-monitoring-operator/pull/2155) * [MON-3500](https://issues.redhat.com/browse/MON-3500): Enable sending exemplars over RW in UWM [#2161](https://github.com/openshift/cluster-monitoring-operator/pull/2161) * [OCPBUGS-21610](https://issues.redhat.com/browse/OCPBUGS-21610): Change config to allow ipv6/4 [#2166](https://github.com/openshift/cluster-monitoring-operator/pull/2166) * [MON-3511](https://issues.redhat.com/browse/MON-3511): hack/local-cmo.sh: pass desired version in cmo run command [#2168](https://github.com/openshift/cluster-monitoring-operator/pull/2168) * [MON-3211](https://issues.redhat.com/browse/MON-3211): Implement switching to metrics-server [#2022](https://github.com/openshift/cluster-monitoring-operator/pull/2022) * [MON-3505](https://issues.redhat.com/browse/MON-3505): move aggregated-metrics-reader role to cmo jsonnet [#2163](https://github.com/openshift/cluster-monitoring-operator/pull/2163) * [MON-3503](https://issues.redhat.com/browse/MON-3503): Synchronize versions of the downstream components [#2162](https://github.com/openshift/cluster-monitoring-operator/pull/2162) * [OCPBUGS-23495](https://issues.redhat.com/browse/OCPBUGS-23495): Change UWM Prometheus' kube-rbac-proxy-thanos port num… [#2164](https://github.com/openshift/cluster-monitoring-operator/pull/2164) * [MON-3479](https://issues.redhat.com/browse/MON-3479): update Prometheus operator assets to v0.69.1 [#2152](https://github.com/openshift/cluster-monitoring-operator/pull/2152) * [MON-3503](https://issues.redhat.com/browse/MON-3503): Synchronize versions of the downstream components [#2150](https://github.com/openshift/cluster-monitoring-operator/pull/2150) * [MON-3421](https://issues.redhat.com/browse/MON-3421): improve the detection of CMO unavailability/degradation due to U… [#2129](https://github.com/openshift/cluster-monitoring-operator/pull/2129) * [MON-3476](https://issues.redhat.com/browse/MON-3476): Add code block to check FeatureGate status [#2151](https://github.com/openshift/cluster-monitoring-operator/pull/2151) * [OCPBUGS-17035](https://issues.redhat.com/browse/OCPBUGS-17035): fix KRP permissions for Thanos Querier [#2057](https://github.com/openshift/cluster-monitoring-operator/pull/2057) * [OCPBUGS-22742](https://issues.redhat.com/browse/OCPBUGS-22742): go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to 0.44.0 [#2138](https://github.com/openshift/cluster-monitoring-operator/pull/2138) * [OCPBUGS-21621](https://issues.redhat.com/browse/OCPBUGS-21621): Set the new --disable-http2 flag for prometheus-adapter to disable HTTP2 [#2145](https://github.com/openshift/cluster-monitoring-operator/pull/2145) * [MON-3398](https://issues.redhat.com/browse/MON-3398): Add RHACM telemetry metric [#2100](https://github.com/openshift/cluster-monitoring-operator/pull/2100) * Synchronize versions of the downstream components [#2135](https://github.com/openshift/cluster-monitoring-operator/pull/2135) * Fix UWM alert access permissions [#2131](https://github.com/openshift/cluster-monitoring-operator/pull/2131) * Synchronize versions of the downstream components [#2133](https://github.com/openshift/cluster-monitoring-operator/pull/2133) * [OCPBUGS-4069](https://issues.redhat.com/browse/OCPBUGS-4069): Prometheus Adatper takes metrics from kubelet job only. [#2117](https://github.com/openshift/cluster-monitoring-operator/pull/2117) * [MON-3422](https://issues.redhat.com/browse/MON-3422): Remove temporary no more needed code [#2132](https://github.com/openshift/cluster-monitoring-operator/pull/2132) * fix: force HTTP/1.1 connections [#2128](https://github.com/openshift/cluster-monitoring-operator/pull/2128) * [OCPVE-711](https://issues.redhat.com/browse/OCPVE-711): feat: add olm capability annotation [#2105](https://github.com/openshift/cluster-monitoring-operator/pull/2105) * [OCPBUGS-21631](https://issues.redhat.com/browse/OCPBUGS-21631): upgrade golang.org/x/net to v0.17.0 [#2120](https://github.com/openshift/cluster-monitoring-operator/pull/2120) * [OCPBUGS-18326](https://issues.redhat.com/browse/OCPBUGS-18326): revert previous fix to avoid activating console capability during update [#2118](https://github.com/openshift/cluster-monitoring-operator/pull/2118) * [MON-3286](https://issues.redhat.com/browse/MON-3286): Remove no longer needed code. [#2116](https://github.com/openshift/cluster-monitoring-operator/pull/2116) * [OCPBUGS-17850](https://issues.redhat.com/browse/OCPBUGS-17850): replace nonResourceURLs permissions by subresource [#2099](https://github.com/openshift/cluster-monitoring-operator/pull/2099) * Synchronize versions of the downstream components [#2115](https://github.com/openshift/cluster-monitoring-operator/pull/2115) * Update jsonnet dependencies [#2076](https://github.com/openshift/cluster-monitoring-operator/pull/2076) * OWNERS: remove sthaha [#2114](https://github.com/openshift/cluster-monitoring-operator/pull/2114) * build: add `-e` to `go list` command to install tools [#2112](https://github.com/openshift/cluster-monitoring-operator/pull/2112) * Change kube-rbac-proxy-thanos port [#2113](https://github.com/openshift/cluster-monitoring-operator/pull/2113) * [OCPBUGS-11344](https://issues.redhat.com/browse/OCPBUGS-11344): alertmanager: use alertmanager CRD's automountServiceAccountToken option [#2111](https://github.com/openshift/cluster-monitoring-operator/pull/2111) * Remove deprecated ioutil [#2108](https://github.com/openshift/cluster-monitoring-operator/pull/2108) * [OCPBUGS-18326](https://issues.redhat.com/browse/OCPBUGS-18326): add console capability annotation to dashboards and monitoring-plugin. [#2101](https://github.com/openshift/cluster-monitoring-operator/pull/2101) * [MON-3302](https://issues.redhat.com/browse/MON-3302): add RHACS telemetry metrics [#2062](https://github.com/openshift/cluster-monitoring-operator/pull/2062) * add `machine424` and `rexagod` to OWNERS [#2083](https://github.com/openshift/cluster-monitoring-operator/pull/2083) * Remove bparees from approvers [#2104](https://github.com/openshift/cluster-monitoring-operator/pull/2104) * Revert "feat: add olm capability annotation" [#2103](https://github.com/openshift/cluster-monitoring-operator/pull/2103) * [MON-3270](https://issues.redhat.com/browse/MON-3270): Add kube-metrics-server to image-references [#2102](https://github.com/openshift/cluster-monitoring-operator/pull/2102) * [OCPVE-711](https://issues.redhat.com/browse/OCPVE-711): feat: add olm capability annotation [#2095](https://github.com/openshift/cluster-monitoring-operator/pull/2095) * chore: fix imports order [#2098](https://github.com/openshift/cluster-monitoring-operator/pull/2098) * Set Thanos version in the Thanos Ruler spec [#2094](https://github.com/openshift/cluster-monitoring-operator/pull/2094) * [OCPBUGS-19237](https://issues.redhat.com/browse/OCPBUGS-19237): Updating cluster-monitoring-operator images to be consistent with ART [#2084](https://github.com/openshift/cluster-monitoring-operator/pull/2084) * Synchronize versions of the downstream components [#2093](https://github.com/openshift/cluster-monitoring-operator/pull/2093) * Synchronize versions of the downstream components [#2089](https://github.com/openshift/cluster-monitoring-operator/pull/2089) * [MON-3383](https://issues.redhat.com/browse/MON-3383): Remove weak cryptograhic primitive usage [#2086](https://github.com/openshift/cluster-monitoring-operator/pull/2086) * [OCPBUGS-18390](https://issues.redhat.com/browse/OCPBUGS-18390): jsonnet/rules: exclude -1 from etcd objects count [#2081](https://github.com/openshift/cluster-monitoring-operator/pull/2081) * [OCPBUGS-19059](https://issues.redhat.com/browse/OCPBUGS-19059): Enable ipv6 on monitoring-plugin nginx [#2090](https://github.com/openshift/cluster-monitoring-operator/pull/2090) * [MON-3376](https://issues.redhat.com/browse/MON-3376): Remove deprecated --logtostderr argument [#2077](https://github.com/openshift/cluster-monitoring-operator/pull/2077) * [OCPBUGS-19356](https://issues.redhat.com/browse/OCPBUGS-19356): Topology spread constraints admission webhook [#2073](https://github.com/openshift/cluster-monitoring-operator/pull/2073) * [OCPBUGS-17682](https://issues.redhat.com/browse/OCPBUGS-17682): add topologySpreadConstraints to UWM prometheus operator [#2072](https://github.com/openshift/cluster-monitoring-operator/pull/2072) * Synchronize versions of the downstream components [#2082](https://github.com/openshift/cluster-monitoring-operator/pull/2082) * [MON-2642](https://issues.redhat.com/browse/MON-2642): Improve e2e tests for alertrelabelconfigs CRD [#2080](https://github.com/openshift/cluster-monitoring-operator/pull/2080) * [MON-3304](https://issues.redhat.com/browse/MON-3304): Add option to specify resource limits for all components [#2067](https://github.com/openshift/cluster-monitoring-operator/pull/2067) * [OCPBUGS-17690](https://issues.redhat.com/browse/OCPBUGS-17690): remove deprecated argument [#2075](https://github.com/openshift/cluster-monitoring-operator/pull/2075) * [OCPBUGS-17691](https://issues.redhat.com/browse/OCPBUGS-17691): replace outdated repository link [#2074](https://github.com/openshift/cluster-monitoring-operator/pull/2074) * [MON-2641](https://issues.redhat.com/browse/MON-2641): Add e2e tests for AlertingRule controller [#2054](https://github.com/openshift/cluster-monitoring-operator/pull/2054) * Add telemeter client SA to rbac proxy [#2043](https://github.com/openshift/cluster-monitoring-operator/pull/2043) * [OCPBUGS-1062](https://issues.redhat.com/browse/OCPBUGS-1062): update webhook configuration only if required [#2065](https://github.com/openshift/cluster-monitoring-operator/pull/2065) * [MON-988](https://issues.redhat.com/browse/MON-988): remove alert "MultipleContainersOOMKilled" [#2071](https://github.com/openshift/cluster-monitoring-operator/pull/2071) * Remove deprecated visual_web_terminal_sessions metric [#2059](https://github.com/openshift/cluster-monitoring-operator/pull/2059) * [OCPBUGS-17487](https://issues.redhat.com/browse/OCPBUGS-17487): fix typo for ThanosRulerConfig.Resources [#2070](https://github.com/openshift/cluster-monitoring-operator/pull/2070) * Update jsonnet dependencies [#2063](https://github.com/openshift/cluster-monitoring-operator/pull/2063) * [OCPBUGS-17346](https://issues.redhat.com/browse/OCPBUGS-17346): Avoid recreating some resources, created by prometheus-operator, during 4.13->4.14 upgrade [#2066](https://github.com/openshift/cluster-monitoring-operator/pull/2066) * [MON-3291](https://issues.redhat.com/browse/MON-3291): Adjust node-exporter's MaxProcs documentation now that we s… [#2055](https://github.com/openshift/cluster-monitoring-operator/pull/2055) * Synchronize versions of the downstream components [#2061](https://github.com/openshift/cluster-monitoring-operator/pull/2061) * [MON-3093](https://issues.redhat.com/browse/MON-3093): fix single node replica issue [#2060](https://github.com/openshift/cluster-monitoring-operator/pull/2060) * [OCPBUGS-17191](https://issues.redhat.com/browse/OCPBUGS-17191): add namespace label to alerting rules [#2058](https://github.com/openshift/cluster-monitoring-operator/pull/2058) * Synchronize versions of the downstream components [#2056](https://github.com/openshift/cluster-monitoring-operator/pull/2056) * [MON-2645](https://issues.redhat.com/browse/MON-2645): remove unnecessary RBAC permissions [#2051](https://github.com/openshift/cluster-monitoring-operator/pull/2051) * Synchronize versions of the downstream components [#2052](https://github.com/openshift/cluster-monitoring-operator/pull/2052) * [OCPBUGS-10699](https://issues.redhat.com/browse/OCPBUGS-10699): remove Kube*QuotaOvercommit alerts [#2049](https://github.com/openshift/cluster-monitoring-operator/pull/2049) * [MON-2645](https://issues.redhat.com/browse/MON-2645): remove unused rebalancer code [#2048](https://github.com/openshift/cluster-monitoring-operator/pull/2048) * Synchronize versions of the downstream components [#2050](https://github.com/openshift/cluster-monitoring-operator/pull/2050) * Remove OADP metrics from the Telemetry [#2040](https://github.com/openshift/cluster-monitoring-operator/pull/2040) * [MON-669](https://issues.redhat.com/browse/MON-669): Remove etcd ServiceMonitors management code as they'll be no… [#2039](https://github.com/openshift/cluster-monitoring-operator/pull/2039) * [MON-3216](https://issues.redhat.com/browse/MON-3216): Add ownership labels to kube resources [#1986](https://github.com/openshift/cluster-monitoring-operator/pull/1986) * [MON-3177](https://issues.redhat.com/browse/MON-3177): Expose and propagate TopologySpreadConstraints for kube state metrics [#2026](https://github.com/openshift/cluster-monitoring-operator/pull/2026) * [OCPBUGS-16203](https://issues.redhat.com/browse/OCPBUGS-16203): correct docs for metric node_systemd_timer_last_trigger_seconds. [#2045](https://github.com/openshift/cluster-monitoring-operator/pull/2045) * [MON-3178](https://issues.redhat.com/browse/MON-3178): Expose and propagate TopologySpreadConstraints for prometheus-operator [#2033](https://github.com/openshift/cluster-monitoring-operator/pull/2033) * [MON-3274](https://issues.redhat.com/browse/MON-3274): collect the number of LIST and WATCH requests to the apiserver from telemetry [#2044](https://github.com/openshift/cluster-monitoring-operator/pull/2044) * [MON-2903](https://issues.redhat.com/browse/MON-2903): add nodeExporter.collectors.systemd settings. [#1892](https://github.com/openshift/cluster-monitoring-operator/pull/1892) * [MON-3179](https://issues.redhat.com/browse/MON-3179): Expose and propagate TopologySpreadConstraints for openshift state metrics [#2034](https://github.com/openshift/cluster-monitoring-operator/pull/2034) * [MON-3176](https://issues.redhat.com/browse/MON-3176): Expose and propagate TopologySpreadConstraints for prometheus-adapter [#2025](https://github.com/openshift/cluster-monitoring-operator/pull/2025) * [OCPBUGS-9835](https://issues.redhat.com/browse/OCPBUGS-9835): Add Content-Security-Policy headers to prometheus and alertmanager [#2012](https://github.com/openshift/cluster-monitoring-operator/pull/2012) * [MON-3182](https://issues.redhat.com/browse/MON-3182): Expose and propagate TopologySpreadConstraints for UWM alertmanager [#2037](https://github.com/openshift/cluster-monitoring-operator/pull/2037) * [MON-3180](https://issues.redhat.com/browse/MON-3180): Expose and propagate TopologySpreadConstraints for telemeter-client [#2017](https://github.com/openshift/cluster-monitoring-operator/pull/2017) * [MON-3183](https://issues.redhat.com/browse/MON-3183): Expose and propagate TopologySpreadConstraints for UWM prometheus [#2038](https://github.com/openshift/cluster-monitoring-operator/pull/2038) * [MON-3181](https://issues.redhat.com/browse/MON-3181): Expose and propagate TopologySpreadConstraints for thanos-querier [#2035](https://github.com/openshift/cluster-monitoring-operator/pull/2035) * [MON-3231](https://issues.redhat.com/browse/MON-3231): add metric for the configured profile [#2030](https://github.com/openshift/cluster-monitoring-operator/pull/2030) * [MON-3269](https://issues.redhat.com/browse/MON-3269): add nodeExporter.collectors.processes settings. [#2032](https://github.com/openshift/cluster-monitoring-operator/pull/2032) * [MON-3222](https://issues.redhat.com/browse/MON-3222): Make netdev/netclass interfaces configurable [#1963](https://github.com/openshift/cluster-monitoring-operator/pull/1963) * e2e-tests: ensure pod assertions find at least one pod [#2028](https://github.com/openshift/cluster-monitoring-operator/pull/2028) * test/e2e/framework: remove unused function [#2020](https://github.com/openshift/cluster-monitoring-operator/pull/2020) * [OCPBUGS-15440](https://issues.redhat.com/browse/OCPBUGS-15440): fix CMO to apply console-plugin pod.spec config [#2018](https://github.com/openshift/cluster-monitoring-operator/pull/2018) * chore: update dependencies [#2013](https://github.com/openshift/cluster-monitoring-operator/pull/2013) * [OCPBUGS-14922](https://issues.redhat.com/browse/OCPBUGS-14922): skip console-plugin installation if console CO is absent [#2011](https://github.com/openshift/cluster-monitoring-operator/pull/2011) * [OCPBUGS-12714](https://issues.redhat.com/browse/OCPBUGS-12714): turn on netlink mode of netclass collector for node exporter [#2015](https://github.com/openshift/cluster-monitoring-operator/pull/2015) * [MON-3249](https://issues.redhat.com/browse/MON-3249): Update telemeter-client to allow TLS through rbac proxy [#2005](https://github.com/openshift/cluster-monitoring-operator/pull/2005) * Synchronize versions of the downstream components [#2024](https://github.com/openshift/cluster-monitoring-operator/pull/2024) * [OCPBUGS-13153](https://issues.redhat.com/browse/OCPBUGS-13153): Limit the value of GOMAXPROCS on node-exporter. [#1996](https://github.com/openshift/cluster-monitoring-operator/pull/1996) * hack/local-cmo: show the correct logged-in user [#2019](https://github.com/openshift/cluster-monitoring-operator/pull/2019) * [MON-3253](https://issues.redhat.com/browse/MON-3253): refactor local-cmo.sh to use CMO SA by default [#2010](https://github.com/openshift/cluster-monitoring-operator/pull/2010) * test/e2e: validate CMO and UWM configs [#2006](https://github.com/openshift/cluster-monitoring-operator/pull/2006) * pkg/operator: reduce duplication in CSR controllers [#2007](https://github.com/openshift/cluster-monitoring-operator/pull/2007) * Synchronize versions of the downstream components [#2009](https://github.com/openshift/cluster-monitoring-operator/pull/2009) * [OCPBUGS-15210](https://issues.redhat.com/browse/OCPBUGS-15210): manifest: rename TP roleBinding to cluster-monitoring-operator-alert-… [#2008](https://github.com/openshift/cluster-monitoring-operator/pull/2008) * [MON-3127](https://issues.redhat.com/browse/MON-3127): add nodeExporter.collectors.ksmd settings. [#1931](https://github.com/openshift/cluster-monitoring-operator/pull/1931) * Synchronize versions of the downstream components [#2004](https://github.com/openshift/cluster-monitoring-operator/pull/2004) * [MON-3229](https://issues.redhat.com/browse/MON-3229): Remove the dependency on the apiserver auth [#1904](https://github.com/openshift/cluster-monitoring-operator/pull/1904) * Synchronize versions of the downstream components [#2003](https://github.com/openshift/cluster-monitoring-operator/pull/2003) * Fix link metrics [#1999](https://github.com/openshift/cluster-monitoring-operator/pull/1999) * [OCPBUGS-11958](https://issues.redhat.com/browse/OCPBUGS-11958): Add the trusted CA bundle in UWM Prometheus pods [#1970](https://github.com/openshift/cluster-monitoring-operator/pull/1970) * [OCPBUGS-14123](https://issues.redhat.com/browse/OCPBUGS-14123): make TestBodySizeLimit less flaky [#1991](https://github.com/openshift/cluster-monitoring-operator/pull/1991) * Update OWNERS list [#1951](https://github.com/openshift/cluster-monitoring-operator/pull/1951) * [MON-3113](https://issues.redhat.com/browse/MON-3113): add nodeExporter.collectors.mountstats settings. [#1936](https://github.com/openshift/cluster-monitoring-operator/pull/1936) * [OCPBUGS-12903](https://issues.redhat.com/browse/OCPBUGS-12903): Fix console metrics doc typo [#1997](https://github.com/openshift/cluster-monitoring-operator/pull/1997) * [OCPBUGS-14816](https://issues.redhat.com/browse/OCPBUGS-14816): Add misspell target in Makefile [#1994](https://github.com/openshift/cluster-monitoring-operator/pull/1994) * [OCPBUGS-14887](https://issues.redhat.com/browse/OCPBUGS-14887): [bot] Synchronize versions of the downstream components [#1995](https://github.com/openshift/cluster-monitoring-operator/pull/1995) * [MON-2967](https://issues.redhat.com/browse/MON-2967): CMO deploys monitoring console-plugin [#1890](https://github.com/openshift/cluster-monitoring-operator/pull/1890) * [OCPBUGS-14772](https://issues.redhat.com/browse/OCPBUGS-14772): Add federate-client-certs [#1990](https://github.com/openshift/cluster-monitoring-operator/pull/1990) * [OCPBUGS-14072](https://issues.redhat.com/browse/OCPBUGS-14072): test: increase poll wait time for alertmanager [#1973](https://github.com/openshift/cluster-monitoring-operator/pull/1973) * [OCPBUGS-14618](https://issues.redhat.com/browse/OCPBUGS-14618): Synchronize versions of the downstream components [#1988](https://github.com/openshift/cluster-monitoring-operator/pull/1988) * [OCPBUGS-14378](https://issues.redhat.com/browse/OCPBUGS-14378): Skip some errcheck golangci-lint violations [#1983](https://github.com/openshift/cluster-monitoring-operator/pull/1983) * [MON-2981](https://issues.redhat.com/browse/MON-2981): alertingrule and relabel: promote to v1 [#1945](https://github.com/openshift/cluster-monitoring-operator/pull/1945) * [OCPBUGS-11889](https://issues.redhat.com/browse/OCPBUGS-11889): disable CORS headers on Thanos querier [#1950](https://github.com/openshift/cluster-monitoring-operator/pull/1950) * [OCPBUGS-14606](https://issues.redhat.com/browse/OCPBUGS-14606): Remove remaining staticcheck violations [#1989](https://github.com/openshift/cluster-monitoring-operator/pull/1989) * [OCPBUGS-14375](https://issues.redhat.com/browse/OCPBUGS-14375): Fix golangci-lint gosimple violations [#1979](https://github.com/openshift/cluster-monitoring-operator/pull/1979) * [OCPBUGS-14381](https://issues.redhat.com/browse/OCPBUGS-14381): Skip golang-ci lint unused false positives [#1985](https://github.com/openshift/cluster-monitoring-operator/pull/1985) * [OCPBUGS-14561](https://issues.redhat.com/browse/OCPBUGS-14561): Prevent ci/prow/versions from failing on PR against release-xxx [#1969](https://github.com/openshift/cluster-monitoring-operator/pull/1969) * [OCPBUGS-10387](https://issues.redhat.com/browse/OCPBUGS-10387): label for infra nodes for metric cluster:capacity_cpu_cores:sum [#1926](https://github.com/openshift/cluster-monitoring-operator/pull/1926) * [OCPBUGS-14379](https://issues.redhat.com/browse/OCPBUGS-14379): Skip specific govet violation on operator main.go [#1984](https://github.com/openshift/cluster-monitoring-operator/pull/1984) * [OCPBUGS-14371](https://issues.redhat.com/browse/OCPBUGS-14371): Fix golangci-lint misspell violations [#1978](https://github.com/openshift/cluster-monitoring-operator/pull/1978) * [OCPBUGS-14380](https://issues.redhat.com/browse/OCPBUGS-14380): Fix golangcilint whitespace violations [#1977](https://github.com/openshift/cluster-monitoring-operator/pull/1977) * [OCPBUGS-14377](https://issues.redhat.com/browse/OCPBUGS-14377): Fix golangci-int wastedassign violations [#1981](https://github.com/openshift/cluster-monitoring-operator/pull/1981) * [OCPBUGS-14376](https://issues.redhat.com/browse/OCPBUGS-14376): Fix golangci-lint ineffassign violations [#1980](https://github.com/openshift/cluster-monitoring-operator/pull/1980) * [OCPBUGS-14366](https://issues.redhat.com/browse/OCPBUGS-14366): Fix golangci-lint unconvert violations [#1982](https://github.com/openshift/cluster-monitoring-operator/pull/1982) * [OCPBUGS-13147](https://issues.redhat.com/browse/OCPBUGS-13147): Add golangci-lint linters [#1949](https://github.com/openshift/cluster-monitoring-operator/pull/1949) * [OCPBUGS-1626](https://issues.redhat.com/browse/OCPBUGS-1626): update jsonnet dependencies [#1961](https://github.com/openshift/cluster-monitoring-operator/pull/1961) * [OCPBUGS-12903](https://issues.redhat.com/browse/OCPBUGS-12903): Add new web console usage metrics [#1910](https://github.com/openshift/cluster-monitoring-operator/pull/1910) * [OCPBUGS-13939](https://issues.redhat.com/browse/OCPBUGS-13939): Extend remote write test timeout [#1971](https://github.com/openshift/cluster-monitoring-operator/pull/1971) * [OCPBUGS-14007](https://issues.redhat.com/browse/OCPBUGS-14007): test/e2e: don't fail on telemeter remote write failed samples [#1972](https://github.com/openshift/cluster-monitoring-operator/pull/1972) * [OCPBUGS-13095](https://issues.redhat.com/browse/OCPBUGS-13095): Uncomment cluster:vsphere_infrastructure_failure_domains:max [#1960](https://github.com/openshift/cluster-monitoring-operator/pull/1960) * [OCPBUGS-12995](https://issues.redhat.com/browse/OCPBUGS-12995): go.mod: update golang.org/x/net to v0.7.0 [#1958](https://github.com/openshift/cluster-monitoring-operator/pull/1958) * [OCPBUGS-13006](https://issues.redhat.com/browse/OCPBUGS-13006): Add build number to vsphere vcenter information [#1946](https://github.com/openshift/cluster-monitoring-operator/pull/1946) * [OCPBUGS-12343](https://issues.redhat.com/browse/OCPBUGS-12343): Update 4.14 cluster-monitoring-operator image to be consistent with ART [#1952](https://github.com/openshift/cluster-monitoring-operator/pull/1952) * jsonnet: add comment why empty prometheus container needed [#1943](https://github.com/openshift/cluster-monitoring-operator/pull/1943) * [OCPBUGS-11434](https://issues.redhat.com/browse/OCPBUGS-11434): node-exporter: disable btrfs collector [#1937](https://github.com/openshift/cluster-monitoring-operator/pull/1937) * 4.14: OCPBUGS-11269: Add CSI migration for vSphere to telemetry [#1933](https://github.com/openshift/cluster-monitoring-operator/pull/1933) * Speedup jsonnet generation by running in parallel [#1908](https://github.com/openshift/cluster-monitoring-operator/pull/1908) * [OCPBUGS-10690](https://issues.redhat.com/browse/OCPBUGS-10690): jsonnet: Add prometheus container in UWM [#1930](https://github.com/openshift/cluster-monitoring-operator/pull/1930) * [OCPBUGS-7694](https://issues.redhat.com/browse/OCPBUGS-7694): add startup probe for prometheus-adapter [#1917](https://github.com/openshift/cluster-monitoring-operator/pull/1917) * [OCPBUGS-10161](https://issues.redhat.com/browse/OCPBUGS-10161): Updating cluster-monitoring-operator images to be consistent with ART [#1914](https://github.com/openshift/cluster-monitoring-operator/pull/1914) * [OCPBUGS-8215](https://issues.redhat.com/browse/OCPBUGS-8215): bugfix in Node Exporter argument setting [#1909](https://github.com/openshift/cluster-monitoring-operator/pull/1909) * [OCPBUGS-7282](https://issues.redhat.com/browse/OCPBUGS-7282): Node Exporter ignores network interface under name "cali[a-f0-9]*" [#1905](https://github.com/openshift/cluster-monitoring-operator/pull/1905) * Update jsonnet dependencies [#1913](https://github.com/openshift/cluster-monitoring-operator/pull/1913) * [OCPBUGS-8282](https://issues.redhat.com/browse/OCPBUGS-8282): turn off netlink mode of netclass collector in Node Exporter. [#1912](https://github.com/openshift/cluster-monitoring-operator/pull/1912) * [MON-2894](https://issues.redhat.com/browse/MON-2894): add nodeExporter.maxProcs setting. [#1895](https://github.com/openshift/cluster-monitoring-operator/pull/1895) * [MON-2973](https://issues.redhat.com/browse/MON-2973): test/e2e: Add cleanup func for alertmanager uwm secret test [#1907](https://github.com/openshift/cluster-monitoring-operator/pull/1907) * [MON-2693](https://issues.redhat.com/browse/MON-2693): Scrape profiles [#1785](https://github.com/openshift/cluster-monitoring-operator/pull/1785) * [MON-2959](https://issues.redhat.com/browse/MON-2959): test/e2e: Add test for alertmanager secret platform [#1899](https://github.com/openshift/cluster-monitoring-operator/pull/1899) * [MON-2904](https://issues.redhat.com/browse/MON-2904): add nodeExporter.collectors.buddyinfo settings. [#1891](https://github.com/openshift/cluster-monitoring-operator/pull/1891) * [MON-2895](https://issues.redhat.com/browse/MON-2895): toggle netlink implementation of netclass collector [#1894](https://github.com/openshift/cluster-monitoring-operator/pull/1894) * [MON-2932](https://issues.redhat.com/browse/MON-2932): jsonnet/dashboards: add role template variable to node related dashbo… [#1879](https://github.com/openshift/cluster-monitoring-operator/pull/1879) * [MON-2900](https://issues.redhat.com/browse/MON-2900): add nodeExporter.collectors.netclass settings. [#1893](https://github.com/openshift/cluster-monitoring-operator/pull/1893) * Update jsonnet dependencies [#1903](https://github.com/openshift/cluster-monitoring-operator/pull/1903) * [MON-2951](https://issues.redhat.com/browse/MON-2951): create Routes only with ingress operator [#1885](https://github.com/openshift/cluster-monitoring-operator/pull/1885) * [OCPBUGS-7391](https://issues.redhat.com/browse/OCPBUGS-7391): wait for service CA secrets [#1900](https://github.com/openshift/cluster-monitoring-operator/pull/1900) * Synchronize versions of the downstream components [#1902](https://github.com/openshift/cluster-monitoring-operator/pull/1902) * [MON-2973](https://issues.redhat.com/browse/MON-2973): pkg/manifests: Allow configuring secrets in alertmanager (UWM) [#1884](https://github.com/openshift/cluster-monitoring-operator/pull/1884) * Synchronize versions of the downstream components [#1898](https://github.com/openshift/cluster-monitoring-operator/pull/1898) * pkg/operator: fix typo in info logs [#1896](https://github.com/openshift/cluster-monitoring-operator/pull/1896) * [MON-2901](https://issues.redhat.com/browse/MON-2901): add nodeExporter.collectors.netdev settings. [#1888](https://github.com/openshift/cluster-monitoring-operator/pull/1888) * [STOR-1154](https://issues.redhat.com/browse/STOR-1154): Add vSphere topology to telemetry [#1886](https://github.com/openshift/cluster-monitoring-operator/pull/1886) * Add nodeExporter.collectors.tcpstat settings. [#1876](https://github.com/openshift/cluster-monitoring-operator/pull/1876) * Synchronize versions of the downstream components [#1887](https://github.com/openshift/cluster-monitoring-operator/pull/1887) * [MON-2959](https://issues.redhat.com/browse/MON-2959): Allow configuring secrets in alertmanager (platform) [#1882](https://github.com/openshift/cluster-monitoring-operator/pull/1882) * Update jsonnet dependencies [#1880](https://github.com/openshift/cluster-monitoring-operator/pull/1880) * Synchronize versions of the downstream components [#1878](https://github.com/openshift/cluster-monitoring-operator/pull/1878) * pkg/manifests/manifests.go: move constants to jsonnet [#1873](https://github.com/openshift/cluster-monitoring-operator/pull/1873) * Synchronize versions of the downstream components [#1877](https://github.com/openshift/cluster-monitoring-operator/pull/1877) * add nodeExporter.collectors.cpufreq settings. [#1855](https://github.com/openshift/cluster-monitoring-operator/pull/1855) * Update jsonnet dependencies [#1869](https://github.com/openshift/cluster-monitoring-operator/pull/1869) * Fix 'make run-local' target [#1874](https://github.com/openshift/cluster-monitoring-operator/pull/1874) * *: remove kube-rbac-proxy sidecar container [#1870](https://github.com/openshift/cluster-monitoring-operator/pull/1870) * [OCPBUGS-2729](https://issues.redhat.com/browse/OCPBUGS-2729): unify ignored network device list of Node Exporter. [#1871](https://github.com/openshift/cluster-monitoring-operator/pull/1871) * [OCPBUGS-5353](https://issues.redhat.com/browse/OCPBUGS-5353): unstack dashboards with limit markers. [#1868](https://github.com/openshift/cluster-monitoring-operator/pull/1868) * Update jsonnet dependencies [#1865](https://github.com/openshift/cluster-monitoring-operator/pull/1865) * Synchronize versions of the downstream components [#1867](https://github.com/openshift/cluster-monitoring-operator/pull/1867) * Update jsonnet dependencies [#1864](https://github.com/openshift/cluster-monitoring-operator/pull/1864) * Synchronize versions of the downstream components [#1863](https://github.com/openshift/cluster-monitoring-operator/pull/1863) * [OCPBUGS-4521](https://issues.redhat.com/browse/OCPBUGS-4521): check that all targets are up after certificate recreation [#1848](https://github.com/openshift/cluster-monitoring-operator/pull/1848) * Synchronize versions of the downstream components [#1861](https://github.com/openshift/cluster-monitoring-operator/pull/1861) * [OCPBUGS-4219](https://issues.redhat.com/browse/OCPBUGS-4219): Adds runbook link to PrometheusRuleFailures [#1860](https://github.com/openshift/cluster-monitoring-operator/pull/1860) * [MON-2807](https://issues.redhat.com/browse/MON-2807): Use bearer token file for remote write authentication with telemeter [#1733](https://github.com/openshift/cluster-monitoring-operator/pull/1733) * [OCPBUGS-1998](https://issues.redhat.com/browse/OCPBUGS-1998): pkg/client: Update daemonset degrade condition [#1812](https://github.com/openshift/cluster-monitoring-operator/pull/1812) * Synchronize versions of the downstream components [#1859](https://github.com/openshift/cluster-monitoring-operator/pull/1859) * [Bug 2114515](https://bugzilla.redhat.com/show_bug.cgi?id=2114515): jsonnet: ignore `/var/lib/ibmc-s3fs/` mountpoints [#1854](https://github.com/openshift/cluster-monitoring-operator/pull/1854) * Synchronize versions of the downstream components [#1853](https://github.com/openshift/cluster-monitoring-operator/pull/1853) * Synchronize versions of the downstream components [#1852](https://github.com/openshift/cluster-monitoring-operator/pull/1852) * [OCPBUGS-4793](https://issues.redhat.com/browse/OCPBUGS-4793): fix object reference in Kubernetes events [#1842](https://github.com/openshift/cluster-monitoring-operator/pull/1842) * Synchronize versions of the downstream components [#1849](https://github.com/openshift/cluster-monitoring-operator/pull/1849) * Updating cluster-monitoring-operator images to be consistent with ART [#1846](https://github.com/openshift/cluster-monitoring-operator/pull/1846) * [OCPBUGS-2729](https://issues.redhat.com/browse/OCPBUGS-2729): Node Exporter ignore virtual network device 'enP.*'. [#1843](https://github.com/openshift/cluster-monitoring-operator/pull/1843) * Unpin and update jsonnet dependencies [#1818](https://github.com/openshift/cluster-monitoring-operator/pull/1818) * [OCPBUGS-2141](https://issues.redhat.com/browse/OCPBUGS-2141): compute doc link in PVC not configured message [#1836](https://github.com/openshift/cluster-monitoring-operator/pull/1836) * Synchronize versions of the downstream components [#1838](https://github.com/openshift/cluster-monitoring-operator/pull/1838) * go.mod: switch to go 1.19 [#1839](https://github.com/openshift/cluster-monitoring-operator/pull/1839) * Synchronize versions of the downstream components [#1835](https://github.com/openshift/cluster-monitoring-operator/pull/1835) * [OCPBUGS-2260](https://issues.redhat.com/browse/OCPBUGS-2260): add alert KubePodNotScheduled to group openshift-kubernetes.rules [#1830](https://github.com/openshift/cluster-monitoring-operator/pull/1830) * Synchronize versions of the downstream components [#1831](https://github.com/openshift/cluster-monitoring-operator/pull/1831) * Remove deprecated option from kube-state-metrics args [#1832](https://github.com/openshift/cluster-monitoring-operator/pull/1832) * [OCPBUGS-4184](https://issues.redhat.com/browse/OCPBUGS-4184): use mTLS authentication for metrics scraping [#1827](https://github.com/openshift/cluster-monitoring-operator/pull/1827) * [OCPBUGS-4168](https://issues.redhat.com/browse/OCPBUGS-4168): Increase startupProbe for prometheus [#1824](https://github.com/openshift/cluster-monitoring-operator/pull/1824) * [OCPBUGS-4181](https://issues.redhat.com/browse/OCPBUGS-4181): Fixes externalURL field for Prometheus and Alertmanager [#1826](https://github.com/openshift/cluster-monitoring-operator/pull/1826) * Synchronize versions of the downstream components [#1823](https://github.com/openshift/cluster-monitoring-operator/pull/1823) * [OCPBUGS-1453](https://issues.redhat.com/browse/OCPBUGS-1453): Fixed TargetDown expression to join on the proper label [#1767](https://github.com/openshift/cluster-monitoring-operator/pull/1767) * [Bug 2095719](https://bugzilla.redhat.com/show_bug.cgi?id=2095719): Updates CreateOrUpdateServiceAccounts [#1745](https://github.com/openshift/cluster-monitoring-operator/pull/1745) * [OCPBUGS-4024](https://issues.redhat.com/browse/OCPBUGS-4024): test: increase timeout when checking remote write metrics [#1817](https://github.com/openshift/cluster-monitoring-operator/pull/1817) * [OCPBUGS-3331](https://issues.redhat.com/browse/OCPBUGS-3331): Pin Jsonnet Deps + Update go.mod for 4.12 + Patch Alert KubePodNotRead [#1816](https://github.com/openshift/cluster-monitoring-operator/pull/1816) * Revert "OCPBUGS-3331: Pin Jsonnet Deps + Update go.mod for 4.12" [#1815](https://github.com/openshift/cluster-monitoring-operator/pull/1815) * [OCPBUGS-3331](https://issues.redhat.com/browse/OCPBUGS-3331): Pin Jsonnet Deps + Update go.mod for 4.12 [#1814](https://github.com/openshift/cluster-monitoring-operator/pull/1814) * Switch ksm registry to registry.k8s.io [#1809](https://github.com/openshift/cluster-monitoring-operator/pull/1809) * [MGDAPI-4488](https://issues.redhat.com/browse/MGDAPI-4488): RHOAM fleet wide observability metrics [#1771](https://github.com/openshift/cluster-monitoring-operator/pull/1771) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/ee31d1d27131aa218f0c1b22118a06468d20b0ea...) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/6f5e144f260333ad0f70a88a55eab4fc81ecd7a2) * [OCPBUGS-5953](https://issues.redhat.com/browse/OCPBUGS-5953): Backport Added missing API field podref to OverlappingRangeIPReservation CRD [Backport 4.12] [#1685](https://github.com/openshift/cluster-network-operator/pull/1685) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Add .hypershift.local to no proxy list [#1706](https://github.com/openshift/cluster-network-operator/pull/1706) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Do not use proxy for internal routes [#1704](https://github.com/openshift/cluster-network-operator/pull/1704) * [OCPBUGS-4778](https://issues.redhat.com/browse/OCPBUGS-4778): Fix handling of deployment and statefulset updates [#1663](https://github.com/openshift/cluster-network-operator/pull/1663) * [OCPBUGS-4238](https://issues.redhat.com/browse/OCPBUGS-4238): HyperShift: Co-locate OVN-Kubernetes master with other hcp pods [#1645](https://github.com/openshift/cluster-network-operator/pull/1645) * [OCPBUGS-6494](https://issues.redhat.com/browse/OCPBUGS-6494): OVN-Kubernetes: Stop sorting master node addresses, ignore readiness checks for redundant NB/SB [#1691](https://github.com/openshift/cluster-network-operator/pull/1691) * [OCPBUGS-3461](https://issues.redhat.com/browse/OCPBUGS-3461): CNI binary copy should account for the possibility of symlinks [backport 4.12] [#1615](https://github.com/openshift/cluster-network-operator/pull/1615) * [OCPBUGS-4856](https://issues.redhat.com/browse/OCPBUGS-4856): Disable the drop-icmp container 'oc' pprof webserver on Azure [#1666](https://github.com/openshift/cluster-network-operator/pull/1666) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/9eafe2304273ee8447ca155f12e676096c0e5507...6f5e144f260333ad0f70a88a55eab4fc81ecd7a2) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/e2f675373469b69324f306b8d1bba848731dde70) * E2E: Per Core Runtime Tuning Test automation (#509) (#568) [#509](https://github.com/openshift/cluster-node-tuning-operator/pull/509) * E2E: Network stack Pinning tests (#533) [#533](https://github.com/openshift/cluster-node-tuning-operator/pull/533) * Run node selector tests only if we 2 non Performanceworker nodes (#554) [#554](https://github.com/openshift/cluster-node-tuning-operator/pull/554) * skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#543) [#543](https://github.com/openshift/cluster-node-tuning-operator/pull/543) * pao: latency-tests: read test log directly from pod (#547) [#547](https://github.com/openshift/cluster-node-tuning-operator/pull/547) * Add authentication to the /metrics endpoint (#553) [#553](https://github.com/openshift/cluster-node-tuning-operator/pull/553) * Update NTO images to be consistent with ART (#557) [#557](https://github.com/openshift/cluster-node-tuning-operator/pull/557) * [OCPBUGS-5021](https://issues.redhat.com/browse/OCPBUGS-5021): [release-4.12] Fix two irqbalance tests - smp affinity vs online (#530) [#530](https://github.com/openshift/cluster-node-tuning-operator/pull/530) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/108d8f084dcca968982f4928f1bb12a7425da805...e2f675373469b69324f306b8d1bba848731dde70) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): Set required-scc for openshift workloads [#573](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/573) * [WRKLDS-1015](https://issues.redhat.com/browse/WRKLDS-1015): tolerate node-role.kubernetes.io/control-plane:NoExecute [#574](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/574) * [OCPBUGS-29580](https://issues.redhat.com/browse/OCPBUGS-29580): Apply hypershift cluster-profile for ibm-cloud-managed [#572](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/572) * [OCPBUGS-32346](https://issues.redhat.com/browse/OCPBUGS-32346): the apiservice controller waits until bootstrap complete [#575](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/575) * NO-ISSUE: Makefile: fixes test-e2e-encryption-rotation targets [#577](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/577) * NO-ISSUE: fix: TestRedeployOnConfigChange [#576](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/576) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#559](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/559) * [OCPBUGS-18115](https://issues.redhat.com/browse/OCPBUGS-18115): Remove "include.release.openshift.io/ibm-cloud-managed:" annotation [#566](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/566) * [OCPBUGS-18939](https://issues.redhat.com/browse/OCPBUGS-18939): manifest: drop slo latency metrics in favor of sli [#547](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/547) * [WRKLDS-1004](https://issues.redhat.com/browse/WRKLDS-1004): use AlwaysAllow UnhealthyPodEvictionPolicy in PDBs [#562](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/562) * [OCPBUGS-24972](https://issues.redhat.com/browse/OCPBUGS-24972): Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART [#561](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/561) * [OCPBUGS-18115](https://issues.redhat.com/browse/OCPBUGS-18115): Remove "include.release.openshift.io/ibm-cloud-managed:" annotation [#551](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/551) * [OCPBUGS-19231](https://issues.redhat.com/browse/OCPBUGS-19231): Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#548](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/548) * [OCPBUGS-21733](https://issues.redhat.com/browse/OCPBUGS-21733): bump library-go to include switch to HTTP/1.1 [#552](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/552) * [WRKLDS-728](https://issues.redhat.com/browse/WRKLDS-728): Capabilities: drop build/apps APIService when capabilities are not enabled [#532](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/532) * switch image-registry cert CM [#545](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/545) * [OCPBUGS-16554](https://issues.redhat.com/browse/OCPBUGS-16554): update dependencies to get rid of goproxy [#546](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/546) * [AUTH-408](https://issues.redhat.com/browse/AUTH-408): bindata: set required-scc [#544](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/544) * Plumb featuregates to the openshift-apiserver [#542](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/542) * allow etcd healthcheck timeout closer to probe timeouts to avoid failing on slower etcd [#540](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/540) * Add AES-GCM encryption tests [#539](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/539) * [OCPBUGS-14010](https://issues.redhat.com/browse/OCPBUGS-14010): increase timeout for probes [#536](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/536) * [OCPBUGS-2765](https://issues.redhat.com/browse/OCPBUGS-2765): Library go bump [#538](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/538) * [OCPBUGS-12813](https://issues.redhat.com/browse/OCPBUGS-12813): Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#534](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/534) * Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#525](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/525) * [OCPBUGS-10040](https://issues.redhat.com/browse/OCPBUGS-10040): update openshift/api to include aesgcm provider in the default apiserver schema [#526](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/526) * [API-1509](https://issues.redhat.com/browse/API-1509): Enable AESGCM encryption [#521](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/521) * [OCPBUGS-4343](https://issues.redhat.com/browse/OCPBUGS-4343): update apf configuration to use v1beta3 [#509](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/509) * [OCPBUGS-6233](https://issues.redhat.com/browse/OCPBUGS-6233): Bump dependencies and images [#517](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/517) * [OCPBUGS-5300](https://issues.redhat.com/browse/OCPBUGS-5300): routes/status resources can leak sensitive data, exclude it from audit [#511](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/511) * make api team approver [#506](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/506) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#508](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/508) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/4c5b4882e20944d9c44272551053fccbe16d6451...) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/) * [OCPBUGS-23848](https://issues.redhat.com/browse/OCPBUGS-23848): Bumps opentelemetry dependencies [#341](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/341) * [OCPBUGS-29973](https://issues.redhat.com/browse/OCPBUGS-29973): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART for 4.16 [#337](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/337) * [OCPBUGS-29581](https://issues.redhat.com/browse/OCPBUGS-29581): Apply hypershift cluster-profile for ibm-cloud-managed [#334](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/334) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#316](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/316) * [BUILD-854](https://issues.redhat.com/browse/BUILD-854): Add adambkaplan as approver [#338](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/338) * [OCPBUGS-24888](https://issues.redhat.com/browse/OCPBUGS-24888): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART [#321](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/321) * [OCPBUGS-28666](https://issues.redhat.com/browse/OCPBUGS-28666): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#326](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/326) * [OCPBUGS-23624](https://issues.redhat.com/browse/OCPBUGS-23624): Add .snyk file to exclude vendor and ignore unit tests [#325](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/325) * [WRKLDS-1016](https://issues.redhat.com/browse/WRKLDS-1016): Bump k8s dependencies to 1.29.0 [#324](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/324) * [OCPBUGS-24190](https://issues.redhat.com/browse/OCPBUGS-24190): Disable deployer-controller when deploymentconfig is disabled [#320](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/320) * [OCPBUGS-22956](https://issues.redhat.com/browse/OCPBUGS-22956): Remove blockage of ConfigObserver by build informer HasSynced flag [#315](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/315) * Revert "Revert #300 "API-1666: add image pull secret cleanup controller"" [#314](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/314) * Revert #300 "API-1666: add image pull secret cleanup controller" [#313](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/313) * [API-1642](https://issues.redhat.com/browse/API-1642): add image pull secret cleanup controller [#300](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/300) * [API-1642](https://issues.redhat.com/browse/API-1642): Do not generate image pull secrets for internal registry when internal registry is disabled. [#298](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/298) * [OCPBUGS-21830](https://issues.redhat.com/browse/OCPBUGS-21830): bump(k8s,openshift) to address CVE-2023-44487 [#308](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/308) * [OCPBUGS-20164](https://issues.redhat.com/browse/OCPBUGS-20164): Include Build CRD in manifests [#306](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/306) * [WRKLDS-806](https://issues.redhat.com/browse/WRKLDS-806): Bump kube dependencies to 1.28.2 [#305](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/305) * [OCPBUGS-19136](https://issues.redhat.com/browse/OCPBUGS-19136): Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#304](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/304) * [OCPBUGS-18932](https://issues.redhat.com/browse/OCPBUGS-18932): Always sort disabled controller list [#302](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/302) * [OCPBUGS-18498](https://issues.redhat.com/browse/OCPBUGS-18498): Disable BuildConfigChange controller when Build cap is disabled [#299](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/299) * route-controller-manager deployment updates [#295](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/295) * [OCPBUGS-16072](https://issues.redhat.com/browse/OCPBUGS-16072): Updating Kubernetes and other associated dependencies [#296](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/296) * [OCPBUGS-13926](https://issues.redhat.com/browse/OCPBUGS-13926): change the operator log level to default normal in the deployment [#289](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/289) * [BUILD-582](https://issues.redhat.com/browse/BUILD-582), [OCPBUGS-14638](https://issues.redhat.com/browse/OCPBUGS-14638): bump(k8s): 1.27.1 [#294](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/294) * [OCPBUGS-13926](https://issues.redhat.com/browse/OCPBUGS-13926): add loglevel controller for OCM-o [#292](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/292) * Revert "13895: [WRKLDS-730] route-controller-manager deployment updates" [#293](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/293) * [OCPBUGS-13895](https://issues.redhat.com/browse/OCPBUGS-13895): [WRKLDS-730] route-controller-manager deployment updates [#288](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/288) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#287](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/287) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#286](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/286) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#285](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/285) * Bump golang.org/x/net from 0.5.0 to 0.7.0 [#284](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/284) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#279](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/279) * [OCPBUGS-10568](https://issues.redhat.com/browse/OCPBUGS-10568): migrate to using lease objects for leader election [#282](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/282) * Add Divyanshu Agrawal as a reviewer [#283](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/283) * [OCPBUGS-4343](https://issues.redhat.com/browse/OCPBUGS-4343): update apf configuration to use v1beta3 [#273](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/273) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#274](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/274) * [WRKLDS-594](https://issues.redhat.com/browse/WRKLDS-594): bump(k8s): 1.26.1 [#277](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/277) * [OCPBUGS-5275](https://issues.redhat.com/browse/OCPBUGS-5275): remove unnecessary RBAC for leader-locking-ingress-to-route-controller [#276](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/276) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#272](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/272) * let deployer pods patch/apply replication controllers [#270](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/270) * [Bug 2111979](https://bugzilla.redhat.com/show_bug.cgi?id=2111979): Set openshift.io/run-level to nil in openshift-controller-manager nam… [#269](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/269) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/d1915d130481541b8bacb5b98eddbc1541809d0a...) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/139ac0499ac4d744023827ceb6d16aa6b467be27) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): backport feature gate honoring for PSa label syncer [#98](https://github.com/openshift/cluster-policy-controller/pull/98) * [OCPBUGS-7705](https://issues.redhat.com/browse/OCPBUGS-7705): [release-4.12] update dependencies to point to v0.25.0 [#102](https://github.com/openshift/cluster-policy-controller/pull/102) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/105cc773b37f00be2351c9a4e6df24af94d547c1...139ac0499ac4d744023827ceb6d16aa6b467be27) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/ab23d0e04237ffc8cf69cbf9b73f8bc2eee190bb) * [OCPBUGS-7208](https://issues.redhat.com/browse/OCPBUGS-7208): When setting allowedRegistries urls the openshift-samples operator is degraded [#489](https://github.com/openshift/cluster-samples-operator/pull/489) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/212a4553b3bf87d56f2f360b562187a685099c3e...ab23d0e04237ffc8cf69cbf9b73f8bc2eee190bb) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/b29bac7a510082ffd99534ba84bcd035079741ba) * [OCPBUGS-7331](https://issues.redhat.com/browse/OCPBUGS-7331): hypershift: remove inject-proxy annotation from aws-ebs-csi-driver-operator deployment [#337](https://github.com/openshift/cluster-storage-operator/pull/337) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/220a777e094ff6b198007518d0734f9b54a7f9af...b29bac7a510082ffd99534ba84bcd035079741ba) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/b24d60e55576e1997d6d450ba9106a80983f1512) * [OCPBUGS-5879](https://issues.redhat.com/browse/OCPBUGS-5879): Set upgradeability check throttling period to 2m [#884](https://github.com/openshift/cluster-version-operator/pull/884) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/7afc820d20c11bf46c2b8639eabbacbb4b603d35...b24d60e55576e1997d6d450ba9106a80983f1512) ### [console](https://github.com/openshift/console/tree/59931924fbaa391ee6d517b2f7574c69760d9f9d) * [OCPBUGS-3892](https://issues.redhat.com/browse/OCPBUGS-3892): Add cluster to query params of websocket requests [#12282](https://github.com/openshift/console/pull/12282) * [OCPBUGS-5092](https://issues.redhat.com/browse/OCPBUGS-5092): Fix to use and set correct secretReference for build-config triggers [#12388](https://github.com/openshift/console/pull/12388) * [OCPBUGS-7895](https://issues.redhat.com/browse/OCPBUGS-7895): Bump helm version to 3.10.1 [#12579](https://github.com/openshift/console/pull/12579) * [OCPBUGS-6873](https://issues.redhat.com/browse/OCPBUGS-6873): The dropdown list component will be covered by deployment details page on Topology page [#12507](https://github.com/openshift/console/pull/12507) * [OCPBUGS-6831](https://issues.redhat.com/browse/OCPBUGS-6831): Fix crash when pinnedResources is null [#12503](https://github.com/openshift/console/pull/12503) * [OCPBUGS-7471](https://issues.redhat.com/browse/OCPBUGS-7471): Right border radius is 0 for the pipeline visualization wrapper in dark mode [#12565](https://github.com/openshift/console/pull/12565) * [OCPBUGS-7506](https://issues.redhat.com/browse/OCPBUGS-7506): Fix different CI issues [#12555](https://github.com/openshift/console/pull/12555) * [OCPBUGS-6966](https://issues.redhat.com/browse/OCPBUGS-6966): Remove description field from the PLR parameters page [#12519](https://github.com/openshift/console/pull/12519) * [OCPBUGS-7437](https://issues.redhat.com/browse/OCPBUGS-7437): Webhook Secret (1 of 2) is not removed when Knative Service is deleted [#12560](https://github.com/openshift/console/pull/12560) * [OCPBUGS-6887](https://issues.redhat.com/browse/OCPBUGS-6887): Show Tag label and tag name if tag is detected in repository PipelineRun list and details page [#12510](https://github.com/openshift/console/pull/12510) * [OCPBUGS-6816](https://issues.redhat.com/browse/OCPBUGS-6816): Repositories list does not show the running pipelinerun as last pipelinerun [#12500](https://github.com/openshift/console/pull/12500) * [OCPBUGS-4072](https://issues.redhat.com/browse/OCPBUGS-4072): Fix rerender loop/crash when bindable-kinds is found but has no status [#12304](https://github.com/openshift/console/pull/12304) * [OCPBUGS-6671](https://issues.redhat.com/browse/OCPBUGS-6671): fix broken pipeline secret [#12474](https://github.com/openshift/console/pull/12474) * [OCPBUGS-6913](https://issues.redhat.com/browse/OCPBUGS-6913): PipelineRun task status overlaps status text [#12516](https://github.com/openshift/console/pull/12516) * [OCPBUGS-6766](https://issues.redhat.com/browse/OCPBUGS-6766): Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC [#12491](https://github.com/openshift/console/pull/12491) * [OCPBUGS-6969](https://issues.redhat.com/browse/OCPBUGS-6969): Added translation to Last used in resource type dropdown [#12521](https://github.com/openshift/console/pull/12521) * [OCPBUGS-6764](https://issues.redhat.com/browse/OCPBUGS-6764): Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered [#12490](https://github.com/openshift/console/pull/12490) * [OCPBUGS-4281](https://issues.redhat.com/browse/OCPBUGS-4281): Do not disable metrics when auth is disabled [#12323](https://github.com/openshift/console/pull/12323) * [OCPBUGS-6669](https://issues.redhat.com/browse/OCPBUGS-6669): Do not show UpdateInProgress when status is Failing [#12473](https://github.com/openshift/console/pull/12473) * [OCPBUGS-5093](https://issues.redhat.com/browse/OCPBUGS-5093): Fix to show correct help texts for each git repo status error code [#12389](https://github.com/openshift/console/pull/12389) * [OCPBUGS-6085](https://issues.redhat.com/browse/OCPBUGS-6085): Editing Pipeline in the ocp console should show correct information [#12452](https://github.com/openshift/console/pull/12452) * [OCPBUGS-6758](https://issues.redhat.com/browse/OCPBUGS-6758): Add RBAC check on Create a Project link in all-namespaces pages [#12489](https://github.com/openshift/console/pull/12489) * [OCPBUGS-6755](https://issues.redhat.com/browse/OCPBUGS-6755): Remove `refs-heads` from the branch name for Repository pipelineRun row [#12487](https://github.com/openshift/console/pull/12487) * [OCPBUGS-6743](https://issues.redhat.com/browse/OCPBUGS-6743): Fix react warning when open console, add missing keys in navigation [#12484](https://github.com/openshift/console/pull/12484) * [OCPBUGS-5875](https://issues.redhat.com/browse/OCPBUGS-5875): Don't proxy CORS response headers [#12276](https://github.com/openshift/console/pull/12276) * [OCPBUGS-6678](https://issues.redhat.com/browse/OCPBUGS-6678): fix run-time error on Cluster Settings when availableUp… [#12476](https://github.com/openshift/console/pull/12476) * [OCPBUGS-4633](https://issues.redhat.com/browse/OCPBUGS-4633): Monitoring: Fix alert descriptions with duplicate resources [#12352](https://github.com/openshift/console/pull/12352) * [Full changelog](https://github.com/openshift/console/compare/9c2d2e9f27d4415361b54822824a51489bb3408e...59931924fbaa391ee6d517b2f7574c69760d9f9d) ### [console-operator](https://github.com/openshift/console-operator/tree/bb87c5921246a64a59c1c09336c2ab0423330b4d) * [OCPBUGS-6921](https://issues.redhat.com/browse/OCPBUGS-6921): Recover ConsoleNotificationSync after being degraded [#728](https://github.com/openshift/console-operator/pull/728) * [Full changelog](https://github.com/openshift/console-operator/compare/8c938a46686746518cc37e71b444d40d1b4e6c2d...bb87c5921246a64a59c1c09336c2ab0423330b4d) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/2c0d3b1c56f485cf6f4ad2787753545975326e6d) * [OCPBUGS-6599](https://issues.redhat.com/browse/OCPBUGS-6599): Address CVE-2022-41717 [#166](https://github.com/openshift/csi-driver-manila-operator/pull/166) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/6cad8759f4456659c9397a61d20a7f084bd90304...2c0d3b1c56f485cf6f4ad2787753545975326e6d) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/d90992573acb3df6c7fbb6dbe1b215125d26fc34) * [OCPBUGS-6590](https://issues.redhat.com/browse/OCPBUGS-6590): Address CVE-2022-41717 [#105](https://github.com/openshift/csi-driver-nfs/pull/105) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/b7393faceb18e18eae133a6de89e4b4339295fa8...d90992573acb3df6c7fbb6dbe1b215125d26fc34) ### [docker-registry](https://github.com/openshift/image-registry/tree/3bf8e25d5694f7a4dbbe7620a1cc2e26d611cf60) * [OCPBUGS-4678](https://issues.redhat.com/browse/OCPBUGS-4678): Bump aws-sdk-go to v1.44.145 [#357](https://github.com/openshift/image-registry/pull/357) * [Full changelog](https://github.com/openshift/image-registry/compare/fab1920c871a2c38daafaddfa31aafa5d9d1d53d...3bf8e25d5694f7a4dbbe7620a1cc2e26d611cf60) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/6e5c04c066a428047d1755478cf88b290d32ad8f) * Adding rpm-build to the Dockerfile (#117) [#117](https://github.com/openshift/driver-toolkit/pull/117) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/e31abf2cf547f172da7d51b998ff5b58c05a7a6a...6e5c04c066a428047d1755478cf88b290d32ad8f) ### [fedora-coreos, machine-os-content, okd-rpms](https://github.com/openshift/okd-machine-os/tree/90105e92d0bb80d642334d9212e77608a03bc2d0) * Bump fedora-coreos to latest stable [#555](https://github.com/openshift/okd-machine-os/pull/555) * Revert "Dockerfile.ci: report real FCOS version" [#552](https://github.com/openshift/okd-machine-os/pull/552) * Revert "DEBUG: don't pull in fresh FCOS" [#532](https://github.com/openshift/okd-machine-os/pull/532) * Dockerfile.ci: report real FCOS version [#549](https://github.com/openshift/okd-machine-os/pull/549) * manifests: remove extensions manifests [#548](https://github.com/openshift/okd-machine-os/pull/548) * selinux fixes: allow iptables wrapper to write to tmpfs [#546](https://github.com/openshift/okd-machine-os/pull/546) * Dockerfile: replace existing kubelet [#543](https://github.com/openshift/okd-machine-os/pull/543) * Add a service which applies custom SELinux fixes [#541](https://github.com/openshift/okd-machine-os/pull/541) * Dockerfile: enable services via systemd presets [#540](https://github.com/openshift/okd-machine-os/pull/540) * Dockerfile: install netcat [#538](https://github.com/openshift/okd-machine-os/pull/538) * Bump fedora-coreos to latest stable [#531](https://github.com/openshift/okd-machine-os/pull/531) * overlay: prevent NM from modifying resolv.conf [#528](https://github.com/openshift/okd-machine-os/pull/528) * Bump fedora-coreos to latest stable [#526](https://github.com/openshift/okd-machine-os/pull/526) * Dockerfile.rpms: use stable CRIO releases [#521](https://github.com/openshift/okd-machine-os/pull/521) * Bump openshift-os to latest release-4.12 [#523](https://github.com/openshift/okd-machine-os/pull/523) * Bump openshift-os to latest release-4.12 [#518](https://github.com/openshift/okd-machine-os/pull/518) * Dockerfile: remove rpm-ostree override [#515](https://github.com/openshift/okd-machine-os/pull/515) * [Full changelog](https://github.com/openshift/okd-machine-os/compare/3828d8bf69b9476464b1a7e9e75f65f4873ffec7...90105e92d0bb80d642334d9212e77608a03bc2d0) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/18eadcaadf0be77350013c8911ca953bc2ca3778) * [OCPBUGS-5769](https://issues.redhat.com/browse/OCPBUGS-5769): scc admission - seccomp profiles fix [#1471](https://github.com/openshift/kubernetes/pull/1471) * [Full changelog](https://github.com/openshift/kubernetes/compare/a34b9e9499e6c3a94e2326652bd8236a5378c0b2...18eadcaadf0be77350013c8911ca953bc2ca3778) ### [hypershift](https://github.com/openshift/hypershift/tree/3f23856e14b444cc67d116a5a97eb6f0e0591469) * Add e2e test for cluster creation with AWS KMS [#2201](https://github.com/openshift/hypershift/pull/2201) * [HOSTEDCP-826](https://issues.redhat.com/browse/HOSTEDCP-826): Customize DNS base domain prefix [#2235](https://github.com/openshift/hypershift/pull/2235) * feat: Add pod gone check to prober + DNS operator leader elect [#2209](https://github.com/openshift/hypershift/pull/2209) * fix(ibmcloud): Explicitly set HCCO controllers [#2208](https://github.com/openshift/hypershift/pull/2208) * ensure reconcilation of apiserver port is in 4.12 [#2195](https://github.com/openshift/hypershift/pull/2195) * Cleanup default security group only if authorized [#2212](https://github.com/openshift/hypershift/pull/2212) * fix(cpo): Set restart annotation on multus-admission-controller [#2190](https://github.com/openshift/hypershift/pull/2190) * fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac [#2189](https://github.com/openshift/hypershift/pull/2189) * fix(cpo): Reduce CNO access if Calico used as network provider [#2184](https://github.com/openshift/hypershift/pull/2184) * Skip destroyAWSDefaultSecurityGroup if not AWS [#2168](https://github.com/openshift/hypershift/pull/2168) * Create default security group for AWS clusters [#2162](https://github.com/openshift/hypershift/pull/2162) * [AUTH-323](https://issues.redhat.com/browse/AUTH-323): pki: split out konnectivity certs from the rootCA [#2156](https://github.com/openshift/hypershift/pull/2156) * fix(ibmcloud): Initialize image registry config on creates and bad config [#2104](https://github.com/openshift/hypershift/pull/2104) * fix(cpo): Allow KAS profiling disablement [#2122](https://github.com/openshift/hypershift/pull/2122) * reduce ignition server scope [#2140](https://github.com/openshift/hypershift/pull/2140) * OpenID add support for groups claim in the config [#2129](https://github.com/openshift/hypershift/pull/2129) * fix(cpo): Restart registry operator on annotation [#2121](https://github.com/openshift/hypershift/pull/2121) * Fix CAPA crd generation [#2120](https://github.com/openshift/hypershift/pull/2120) * Set k8s.io/kubernetes dependency to v0.23.3 [#2118](https://github.com/openshift/hypershift/pull/2118) * fix(cpo): Separate RBAC for NTO + CNO [#2112](https://github.com/openshift/hypershift/pull/2112) * Merge main up to db7c22ae into 'release-4.12' [#2101](https://github.com/openshift/hypershift/pull/2101) * Merge main into release-4.12 branch [#2053](https://github.com/openshift/hypershift/pull/2053) * [Full changelog](https://github.com/openshift/hypershift/compare/8f9c6a2cbc1427f6556cddaf2b79e56325c13178...3f23856e14b444cc67d116a5a97eb6f0e0591469) ### [insights-operator](https://github.com/openshift/insights-operator/tree/c57da131e725a9b08ea4e8e90e7c3b1696524b2a) * [OCPBUGS-6732](https://issues.redhat.com/browse/OCPBUGS-6732): Anonymize env vars from containers: HTTP_PROXY, HTTPS_PROXY (#727) [#727](https://github.com/openshift/insights-operator/pull/727) * [OCPBUGS-6833](https://issues.redhat.com/browse/OCPBUGS-6833): feat(recent_metrics) adds openshift_apps_deploymentconfigs_strategy_total (#736) [#736](https://github.com/openshift/insights-operator/pull/736) * [OCPBUGS-6782](https://issues.redhat.com/browse/OCPBUGS-6782): Create gatherer for gathering machines. (#734) [#734](https://github.com/openshift/insights-operator/pull/734) * [OCPBUGS-5976](https://issues.redhat.com/browse/OCPBUGS-5976): operators gatherer - handle ingresscontroller relatedObject & simplify (#714) (#719) [#714](https://github.com/openshift/insights-operator/pull/714) * [Full changelog](https://github.com/openshift/insights-operator/compare/e172a918cc6535dfeb2d06b49133f323aed927ec...c57da131e725a9b08ea4e8e90e7c3b1696524b2a) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/e32a8fa9f58a7f38045af135b207fe6764616e24) * [OCPBUGS-6842](https://issues.redhat.com/browse/OCPBUGS-6842): Handle race condition to setup default vnid flows [#497](https://github.com/openshift/sdn/pull/497) * [OCPBUGS-7227](https://issues.redhat.com/browse/OCPBUGS-7227): Update for 4.12 / go 1.19, including gofmt updates [#482](https://github.com/openshift/sdn/pull/482) * [Full changelog](https://github.com/openshift/sdn/compare/d6903305ca12bf21f4ef6b96cb7aeed7defa2fc2...e32a8fa9f58a7f38045af135b207fe6764616e24) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/52d4e1b4e709ef1a10b665de4c6d4b5feaf9a021) * [OCPBUGS-8286](https://issues.redhat.com/browse/OCPBUGS-8286): Short circuit misfiring [#1109](https://github.com/openshift/machine-api-operator/pull/1109) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/a99a63b994407212a5dcc83cc5bc7c02222350b3...52d4e1b4e709ef1a10b665de4c6d4b5feaf9a021) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/4099f3c4f4ea9df85a7516a6300a4c6e5504a5cd) * [OCPBUGS-6943](https://issues.redhat.com/browse/OCPBUGS-6943): Improvements for `configure-ovs.sh` [#3528](https://github.com/openshift/machine-config-operator/pull/3528) * [OCPBUGS-6045](https://issues.redhat.com/browse/OCPBUGS-6045): There are not enough logs in case "oc extract" is stuck in mco first boot [#3503](https://github.com/openshift/machine-config-operator/pull/3503) * [OCPBUGS-6973](https://issues.redhat.com/browse/OCPBUGS-6973): configure-ovs: optionally generate configuration in /run [#3532](https://github.com/openshift/machine-config-operator/pull/3532) * [OCPBUGS-6779](https://issues.redhat.com/browse/OCPBUGS-6779): baremetal: clean state generated by NM when run by dracut [#3521](https://github.com/openshift/machine-config-operator/pull/3521) * [OCPBUGS-7241](https://issues.redhat.com/browse/OCPBUGS-7241): controller: default overwrite to true for files [#3546](https://github.com/openshift/machine-config-operator/pull/3546) * [OCPBUGS-6997](https://issues.redhat.com/browse/OCPBUGS-6997): Fix 4.12 art images [#3535](https://github.com/openshift/machine-config-operator/pull/3535) * [OCPBUGS-6805](https://issues.redhat.com/browse/OCPBUGS-6805): Only check image type if we are sure there is work that needs to be done [#3526](https://github.com/openshift/machine-config-operator/pull/3526) * [OCPBUGS-5999](https://issues.redhat.com/browse/OCPBUGS-5999): 4.12 - remove goutils from dependency tree [#3496](https://github.com/openshift/machine-config-operator/pull/3496) * [OCPBUGS-6179](https://issues.redhat.com/browse/OCPBUGS-6179): controller: don't render new MC until base MCs update [#3506](https://github.com/openshift/machine-config-operator/pull/3506) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/60fb64fa861f1231f779226aa5dcd5c4ef604dcb...4099f3c4f4ea9df85a7516a6300a4c6e5504a5cd) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/165ce7c1f66525bcba699282dba021da6d6a4ab5) * [OCPBUGS-3941](https://issues.redhat.com/browse/OCPBUGS-3941): Backport Excluded ranges bug (#282) [#103](https://github.com/openshift/whereabouts-cni/pull/103) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/057715ebdd38f6cfbeda9bf5fa6ac20e21947a60...165ce7c1f66525bcba699282dba021da6d6a4ab5) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/e8d4dc2e25fa71ca34c3066097aaf8511daf2b1e) * Updating ose-network-interface-bond-cni images to be consistent with ART [#37](https://github.com/openshift/bond-cni/pull/37) * [Full changelog](https://github.com/openshift/bond-cni/compare/a88d72fc5df78d3a43ec17cf313ac57678423b87...e8d4dc2e25fa71ca34c3066097aaf8511daf2b1e) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/ccff7e70c454a543ced557ae3209a631852550de) * Updating ose-network-metrics-daemon images to be consistent with ART (#60) [#60](https://github.com/openshift/network-metrics-daemon/pull/60) * Fix gofmt check issue (#68) [#68](https://github.com/openshift/network-metrics-daemon/pull/68) * Update golang.org/x/text to 0.7.0 (#66) [#66](https://github.com/openshift/network-metrics-daemon/pull/66) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/2dfa218ea9feb2b80f22f16c27bddd16fbcbfb87...ccff7e70c454a543ced557ae3209a631852550de) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/cfafdccf09150ab55b8b853df16e4395ff3bda4b) * Updating ose-oauth-apiserver images to be consistent with ART [#80](https://github.com/openshift/oauth-apiserver/pull/80) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/94026d8cfe0ae214aec62a5f14ae5934676b4355...cfafdccf09150ab55b8b853df16e4395ff3bda4b) ### [oc-mirror](https://github.com/openshift/oc-mirror/tree/3d517407dcbc46ededd7323c7e8f6d6a45efc649) * [OCPBUGS-6703](https://issues.redhat.com/browse/OCPBUGS-6703): fix: adds logic that searches for the correct name when using a heads… (#554) [#554](https://github.com/openshift/oc-mirror/pull/554) * Updating oc-mirror-plugin images to be consistent with ART (#515) [#515](https://github.com/openshift/oc-mirror/pull/515) * [Full changelog](https://github.com/openshift/oc-mirror/compare/db7bea29a4c5fe85fcd2400cfcb7c57a99bcb7fa...3d517407dcbc46ededd7323c7e8f6d6a45efc649) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/9176d8600a10d34527992d462f4006178d4bfcf7) * [OCPBUGS-7155](https://issues.redhat.com/browse/OCPBUGS-7155): Address CVE-2022-41717 [#55](https://github.com/openshift/machine-api-provider-openstack/pull/55) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/5f1ea9f0dbdadb30f67e7539ff357170f9401773...9176d8600a10d34527992d462f4006178d4bfcf7) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/581908833514ca61153dfbe7b5d29be4fb8d8f8c) * [OCPBUGS-7825](https://issues.redhat.com/browse/OCPBUGS-7825): Set openshift.io/scc label to empty [#456](https://github.com/openshift/operator-framework-olm/pull/456) * [OCPBUGS-7769](https://issues.redhat.com/browse/OCPBUGS-7769): [release-4.12] update cluster policy operator dependency [#454](https://github.com/openshift/operator-framework-olm/pull/454) * [OCPBUGS-7556](https://issues.redhat.com/browse/OCPBUGS-7556): Defuse E2e timebomb [#449](https://github.com/openshift/operator-framework-olm/pull/449) * [OCPBUGS-7086](https://issues.redhat.com/browse/OCPBUGS-7086): cherry-pick pull request refactor FBC caching (#1051) f… [#441](https://github.com/openshift/operator-framework-olm/pull/441) * [OCPBUGS-6260](https://issues.redhat.com/browse/OCPBUGS-6260): Catalog, fatal error: concurrent map read and map write [#440](https://github.com/openshift/operator-framework-olm/pull/440) * [OCPBUGS-7025](https://issues.redhat.com/browse/OCPBUGS-7025): Set ImagePullPolicy of bundle unpacker to "IfNotPresent" for image digests [#439](https://github.com/openshift/operator-framework-olm/pull/439) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/d6d213925d54c360f4d2f93ef729ff983322375a...581908833514ca61153dfbe7b5d29be4fb8d8f8c) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/787275319a2820e8fa5ba304b6425250cbd2d145) * [OCPBUGS-7108](https://issues.redhat.com/browse/OCPBUGS-7108): Default CatalogSource aren't always reverted to default settings [#506](https://github.com/operator-framework/operator-marketplace/pull/506) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/87790da6e17fccb6fd53b23f7eb060611fe73c2b...787275319a2820e8fa5ba304b6425250cbd2d145) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) * [OCPBUGS-6309](https://issues.redhat.com/browse/OCPBUGS-6309): Fix swapped CPU socket and thread mapping [#173](https://github.com/openshift/cluster-api-provider-ovirt/pull/173) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/645b6d4db6af1f8ba4be95dd9e8d6d0aa7c632f7...03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) ### [ovn-kubernetes, ovn-kubernetes-microshift](https://github.com/openshift/ovn-kubernetes/tree/5f8cd83cb3efb1d167f0da085f880377958ea502) * [OCPBUGS-7317](https://issues.redhat.com/browse/OCPBUGS-7317): [release-4.12] Delete stale egress ip snat entries by node [#1520](https://github.com/openshift/ovn-kubernetes/pull/1520) * [OCPBUGS-7026](https://issues.redhat.com/browse/OCPBUGS-7026): Bump OVN to 22.12 and turn off neighbour response in router options. [#1521](https://github.com/openshift/ovn-kubernetes/pull/1521) * [OCPBUGS-6040](https://issues.redhat.com/browse/OCPBUGS-6040): addMasqueradeRoute: fallback to gateway interface IPs [#1484](https://github.com/openshift/ovn-kubernetes/pull/1484) * [OCPBUGS-7230](https://issues.redhat.com/browse/OCPBUGS-7230): Delete IGMP Groups when deleting stale chassis [#1516](https://github.com/openshift/ovn-kubernetes/pull/1516) * [OCPBUGS-3399](https://issues.redhat.com/browse/OCPBUGS-3399): Drop in-cluster traffic towards svcCIDR at wrong port [#1490](https://github.com/openshift/ovn-kubernetes/pull/1490) * [OCPBUGS-6961](https://issues.redhat.com/browse/OCPBUGS-6961): update base image of Dockerfile [#1504](https://github.com/openshift/ovn-kubernetes/pull/1504) * [OCPBUGS-6823](https://issues.redhat.com/browse/OCPBUGS-6823): [release-4.12] Fix Egress FW ACL rules in dualstack mode [#1500](https://github.com/openshift/ovn-kubernetes/pull/1500) * [OCPBUGS-4862](https://issues.redhat.com/browse/OCPBUGS-4862): Correct the deletion of noHostSubnet nodes [#1470](https://github.com/openshift/ovn-kubernetes/pull/1470) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): ovnkube-trace: run ovn-sbctl and ovn-trace with --no-leader-only [#1489](https://github.com/openshift/ovn-kubernetes/pull/1489) * [OCPBUGS-5841](https://issues.redhat.com/browse/OCPBUGS-5841): ovnkube-node: Existing management port check [#1475](https://github.com/openshift/ovn-kubernetes/pull/1475) * [OCPBUGS-6812](https://issues.redhat.com/browse/OCPBUGS-6812): [release-4.12] Ensure loadbalancer cleanup doesn't fail [#1497](https://github.com/openshift/ovn-kubernetes/pull/1497) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): Bump OVN to 22.09.0-54 [#1488](https://github.com/openshift/ovn-kubernetes/pull/1488) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/f51b0c8d9a9d68be8edfb26be2851cd13f894be6...5f8cd83cb3efb1d167f0da085f880377958ea502) ### [powervs-block-csi-driver](https://github.com/openshift/ibm-powervs-block-csi-driver/tree/5eb2b132aef490ff8fec4784d8696c7758561e7e) * Update OWNERS component to Multi-Arch [#24](https://github.com/openshift/ibm-powervs-block-csi-driver/pull/24) * [Full changelog](https://github.com/openshift/ibm-powervs-block-csi-driver/compare/47cdccb57b862ace2d0036fbedbe3821d0e7af6f...5eb2b132aef490ff8fec4784d8696c7758561e7e) ### [powervs-block-csi-driver-operator](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/tree/b4da8bcc0ba35a656283c9781e0343a22fdcdfe7) * Update OWNERS component to Multi-Arch [#16](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/pull/16) * [Full changelog](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/compare/06ea8d061b0145555a41ae6e2501a3844e83aa86...b4da8bcc0ba35a656283c9781e0343a22fdcdfe7) ### [powervs-cloud-controller-manager](https://github.com/openshift/cloud-provider-powervs/tree/d8ddc10c99451542b42a725c5346ee7c174dae1f) * Updated OWNERS component to Multi-Arch [#29](https://github.com/openshift/cloud-provider-powervs/pull/29) * [Full changelog](https://github.com/openshift/cloud-provider-powervs/compare/6125f1d95855433e3ee55151557da9ca6f36a194...d8ddc10c99451542b42a725c5346ee7c174dae1f) ### [powervs-machine-controllers](https://github.com/openshift/machine-api-provider-powervs/tree/3f498f79cf7af3e4013cfcbfdcfb006ae64e19e9) * Update OWNERS [#39](https://github.com/openshift/machine-api-provider-powervs/pull/39) * [Full changelog](https://github.com/openshift/machine-api-provider-powervs/compare/727fe0f3bf1b4638d31b8e336b77edf421519804...3f498f79cf7af3e4013cfcbfdcfb006ae64e19e9) ### [prometheus-config-reloader, prometheus-operator, prometheus-operator-admission-webhook](https://github.com/openshift/prometheus-operator/tree/57e7c5741af878b97e473827c5bd82462e996856) * [OCPBUGS-7458](https://issues.redhat.com/browse/OCPBUGS-7458): Fixes ThanoRuler StatefulSet re-creation bug [#217](https://github.com/openshift/prometheus-operator/pull/217) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/9b41d30910b7f36da0dad500fdb0870e86759366...57e7c5741af878b97e473827c5bd82462e996856) ### [telemeter](https://github.com/openshift/telemeter/tree/fc631fcbec5c87612ab52476818b4f264b7ab849) * [OCPBUGS-7702](https://issues.redhat.com/browse/OCPBUGS-7702): Add 'agent-installer' value to 'install_type' label [#451](https://github.com/openshift/telemeter/pull/451) * [Full changelog](https://github.com/openshift/telemeter/compare/4d304019274307c21afefa108493c8af89a2429d...fc631fcbec5c87612ab52476818b4f264b7ab849) ### [tests](https://github.com/openshift/origin/tree/76791c0fc048c6d29282748b1bc792fb606f309f) * [OCPBUGS-8024](https://issues.redhat.com/browse/OCPBUGS-8024): Backport fixes to resume gathering CI disruption data for SLB and image registry [#27759](https://github.com/openshift/origin/pull/27759) * [OCPBUGS-7633](https://issues.redhat.com/browse/OCPBUGS-7633): remove reference to old guard pods [#27732](https://github.com/openshift/origin/pull/27732) * [OCPBUGS-7285](https://issues.redhat.com/browse/OCPBUGS-7285): extended: security: do not explicitly set api audience on token request [#27716](https://github.com/openshift/origin/pull/27716) * [OCPBUGS-6850](https://issues.redhat.com/browse/OCPBUGS-6850): [release-4.12] upgrade/adminack: guarantee one admin ack check post-upgrade [#27684](https://github.com/openshift/origin/pull/27684) * [OCPBUGS-5493](https://issues.redhat.com/browse/OCPBUGS-5493): Use cluster network MTU for bond interfaces [#27637](https://github.com/openshift/origin/pull/27637) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): Fix intervalcreation incorrect year unit test bug [#27668](https://github.com/openshift/origin/pull/27668) * [Full changelog](https://github.com/openshift/origin/compare/5e41b223cad6c22c117ebde996923f23f5ffab3e...76791c0fc048c6d29282748b1bc792fb606f309f) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/0eda8a0d61cdfc88e57d23b6c0b9f1b11ae7a731) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Add migrationDataStore field [#59](https://github.com/openshift/vmware-vsphere-csi-driver/pull/59) * [OCPBUGS-6936](https://issues.redhat.com/browse/OCPBUGS-6936): fix for nil user session (#1859) [#57](https://github.com/openshift/vmware-vsphere-csi-driver/pull/57) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/df89e303405042aa0c8f8704962910a4ef486ab8...0eda8a0d61cdfc88e57d23b6c0b9f1b11ae7a731) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/4861197f38425f4f92c7c28b7e65f1ec42f5dabf) * [OCPBUGS-7901](https://issues.redhat.com/browse/OCPBUGS-7901): Bump sidecar timeouts for vsphere [#142](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/142) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Fix datastore migration bug in 4.12 [#139](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/139) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/03999e46b954151b52c7dc799b7341ca7d3e1744...4861197f38425f4f92c7c28b7e65f1ec42f5dabf) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/c65eb79c378729ef266cdc219324ecc3e7c3ac87) * [OCPBUGS-6788](https://issues.redhat.com/browse/OCPBUGS-6788): Derive the fully qualified vSphere username when checking permissions [#98](https://github.com/openshift/vsphere-problem-detector/pull/98) * [OCPBUGS-5509](https://issues.redhat.com/browse/OCPBUGS-5509): Add a count of zonal volumes [#97](https://github.com/openshift/vsphere-problem-detector/pull/97) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/2b91d5538d004aa689d8351ca26c345865b77e63...c65eb79c378729ef266cdc219324ecc3e7c3ac87)