# 4.12.0-0.okd-2023-02-18-033438 Created: 2023-02-18 09:44:44 +0000 UTC Image Digest: `sha256:fd08a1dae13a434729451cdb6edd969714a4329904e8d27eb45d94e96021dff4` Promoted from registry.ci.openshift.org/origin/release:4.12.0-0.okd-2023-02-18-033438 ## Changes from 4.12.0-0.okd-2023-02-04-212953 ### Components * Kubernetes 1.25.4 * Fedora CoreOS upgraded from 37.20230110.3 to 37.20230122.3 ### [baremetal-installer, installer, installer-artifacts, ovirt-installer](https://github.com/openshift/installer/tree/b8d83ea70540362ec041b21bc150ed984c1d7467) * [OCPBUGS-6991](https://issues.redhat.com/browse/OCPBUGS-6991): Don't require vSphere details for agent installer [#6826](https://github.com/openshift/installer/pull/6826) * [OCPBUGS-6807](https://issues.redhat.com/browse/OCPBUGS-6807): Check platform baremetal settings against default values [#6815](https://github.com/openshift/installer/pull/6815) * [OCPBUGS-7103](https://issues.redhat.com/browse/OCPBUGS-7103): Set the configured proxy settings for agent installer [#6830](https://github.com/openshift/installer/pull/6830) * [OCPBUGS-7131](https://issues.redhat.com/browse/OCPBUGS-7131): bootstrap: set 0644 mode for registries.conf [#6804](https://github.com/openshift/installer/pull/6804) * [Full changelog](https://github.com/openshift/installer/compare/3ba140f2142ec633dcf7e3894fadc652e1fd4fa4...b8d83ea70540362ec041b21bc150ed984c1d7467) ### [cluster-capi-controllers](https://github.com/openshift/cluster-api/tree/) * NO-JIRA: Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.2 (da795db) into master [#199](https://github.com/openshift/cluster-api/pull/199) * [OCPBUGS-30586](https://issues.redhat.com/browse/OCPBUGS-30586): fix e2e tests on release branches [#200](https://github.com/openshift/cluster-api/pull/200) * [OCPCLOUD-2517](https://issues.redhat.com/browse/OCPCLOUD-2517): openshift: promote core CAPI IPAM CRDs to GA [#197](https://github.com/openshift/cluster-api/pull/197) * [OCPBUGS-29519](https://issues.redhat.com/browse/OCPBUGS-29519): openshift: add CustomNoUpgrade annotation value to feature-set [#196](https://github.com/openshift/cluster-api/pull/196) * [OCPBUGS-29476](https://issues.redhat.com/browse/OCPBUGS-29476): openshift: generate separate manifest for core CAPI CRDs [#195](https://github.com/openshift/cluster-api/pull/195) * [OCPBUGS-26111](https://issues.redhat.com/browse/OCPBUGS-26111): add snyk file [#194](https://github.com/openshift/cluster-api/pull/194) * [OCPCLOUD-2449](https://issues.redhat.com/browse/OCPCLOUD-2449): Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.0 (14efefe) into master [#192](https://github.com/openshift/cluster-api/pull/192) * NO-JIRA: e2e: add openstack testing script [#193](https://github.com/openshift/cluster-api/pull/193) * [OCPBUGS-25586](https://issues.redhat.com/browse/OCPBUGS-25586): Updating ose-cluster-api-container image to be consistent with ART [#191](https://github.com/openshift/cluster-api/pull/191) * [OCPBUGS-25000](https://issues.redhat.com/browse/OCPBUGS-25000): Updating ose-cluster-api-container image to be consistent with ART [#190](https://github.com/openshift/cluster-api/pull/190) * [OCPCLOUD-2255](https://issues.redhat.com/browse/OCPCLOUD-2255): Update manifests-gen tool [#189](https://github.com/openshift/cluster-api/pull/189) * [OCPCLOUD-2257](https://issues.redhat.com/browse/OCPCLOUD-2257): Use manifests generation tool from provider repo [#179](https://github.com/openshift/cluster-api/pull/179) * Update OWNERS [#183](https://github.com/openshift/cluster-api/pull/183) * [OCPBUGS-21645](https://issues.redhat.com/browse/OCPBUGS-21645): Bump golang.org/x/net to v0.17.0 [#182](https://github.com/openshift/cluster-api/pull/182) * [OCPBUGS-17286](https://issues.redhat.com/browse/OCPBUGS-17286), [OCPCLOUD-2222](https://issues.redhat.com/browse/OCPCLOUD-2222): Merge https://github.com/kubernetes-sigs/cluster-api:v1.5.2 (3290c5a) into master [#181](https://github.com/openshift/cluster-api/pull/181) * [OCPBUGS-19109](https://issues.redhat.com/browse/OCPBUGS-19109): Updating ose-cluster-api images to be consistent with ART [#180](https://github.com/openshift/cluster-api/pull/180) * [OCPBUGS-6354](https://issues.redhat.com/browse/OCPBUGS-6354), [OCPBUGS-6372](https://issues.redhat.com/browse/OCPBUGS-6372): Merge https://github.com/kubernetes-sigs/cluster-api:v1.4.2 (7b92ce4) into master [#175](https://github.com/openshift/cluster-api/pull/175) * Make openshift/e2e-tests.sh executable [#178](https://github.com/openshift/cluster-api/pull/178) * [OCPCLOUD-2121](https://issues.redhat.com/browse/OCPCLOUD-2121): Add openshift/e2e-tests for CAPI E2E testing [#177](https://github.com/openshift/cluster-api/pull/177) * Updating ose-cluster-api images to be consistent with ART [#174](https://github.com/openshift/cluster-api/pull/174) * Updating ose-cluster-api images to be consistent with ART [#170](https://github.com/openshift/cluster-api/pull/170) * Add enxebre approvers [#171](https://github.com/openshift/cluster-api/pull/171) * Merge https://github.com/kubernetes-sigs/cluster-api:release-1.3 (eb18352) into master [#167](https://github.com/openshift/cluster-api/pull/167) * Sync OWNERS file [#168](https://github.com/openshift/cluster-api/pull/168) * Updating ose-cluster-api images to be consistent with ART [#165](https://github.com/openshift/cluster-api/pull/165) * Merge https://github.com/kubernetes-sigs/cluster-api:main into master [#163](https://github.com/openshift/cluster-api/pull/163) * UPSTREAM: <carry>: bump build root image to golang-1.19 [#164](https://github.com/openshift/cluster-api/pull/164) * [Full changelog](https://github.com/openshift/cluster-api/compare/f9c215c4f298710ccf76676395465685b5d15268...) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#403](https://github.com/openshift/cluster-dns-operator/pull/403) * [OCPBUGS-24884](https://issues.redhat.com/browse/OCPBUGS-24884): Updating ose-cluster-dns-operator-container image to be consistent with ART [#397](https://github.com/openshift/cluster-dns-operator/pull/397) * [OCPBUGS-24602](https://issues.redhat.com/browse/OCPBUGS-24602): Enable topology-aware hints iff nodes in >=2 zones [#398](https://github.com/openshift/cluster-dns-operator/pull/398) * [OCPBUGS-23741](https://issues.redhat.com/browse/OCPBUGS-23741): Bump to k8s.io v0.28.3, controller-runtime v0.16.3 [#395](https://github.com/openshift/cluster-dns-operator/pull/395) * [OCPBUGS-20024](https://issues.redhat.com/browse/OCPBUGS-20024): Ignore max unavailable for status [#386](https://github.com/openshift/cluster-dns-operator/pull/386) * [OCPBUGS-22018](https://issues.redhat.com/browse/OCPBUGS-22018): Bump golang.org/x/net/http2 to v0.17.0 for CVE-2023-39325 in cluster-dns-operator [#387](https://github.com/openshift/cluster-dns-operator/pull/387) * [OCPBUGS-20024](https://issues.redhat.com/browse/OCPBUGS-20024): Revert "Revert "Set DNS DaemonSet's maxSurge value to 10%"" [#384](https://github.com/openshift/cluster-dns-operator/pull/384) * [OCPBUGS-19510](https://issues.redhat.com/browse/OCPBUGS-19510): test/e2e: Set controller-runtime logger [#381](https://github.com/openshift/cluster-dns-operator/pull/381) * [OCPBUGS-19126](https://issues.redhat.com/browse/OCPBUGS-19126): Updating ose-cluster-dns-operator images to be consistent with ART [#380](https://github.com/openshift/cluster-dns-operator/pull/380) * [OCPBUGS-18034](https://issues.redhat.com/browse/OCPBUGS-18034): Only bump lastTransitionTime on 'status' changes [#375](https://github.com/openshift/cluster-dns-operator/pull/375) * [OCPBUGS-15605](https://issues.redhat.com/browse/OCPBUGS-15605): Update bufsize to 1232 bytes [#370](https://github.com/openshift/cluster-dns-operator/pull/370) * [OCPBUGS-13209](https://issues.redhat.com/browse/OCPBUGS-13209): Revert "Set DNS DaemonSet's maxSurge value to 10%" [#379](https://github.com/openshift/cluster-dns-operator/pull/379) * [NE-1268](https://issues.redhat.com/browse/NE-1268): Replace bindata using embed [#361](https://github.com/openshift/cluster-dns-operator/pull/361) * [OCPBUGS-12863](https://issues.redhat.com/browse/OCPBUGS-12863): Replace Bugzilla link with Red Hat Issue Tracker [#374](https://github.com/openshift/cluster-dns-operator/pull/374) * [OCPBUGS-14395](https://issues.redhat.com/browse/OCPBUGS-14395): Set controller-runtime logger to a null logger [#369](https://github.com/openshift/cluster-dns-operator/pull/369) * [OCPBUGS-6829](https://issues.redhat.com/browse/OCPBUGS-6829): Add support for protocolStrategy API field to enable force_tcp configuration [#359](https://github.com/openshift/cluster-dns-operator/pull/359) * [OCPBUGS-13965](https://issues.redhat.com/browse/OCPBUGS-13965): Bump vendors k8s libraries to 0.27.2 [#368](https://github.com/openshift/cluster-dns-operator/pull/368) * [OCPBUGS-13099](https://issues.redhat.com/browse/OCPBUGS-13099): Updating ose-cluster-dns-operator images to be consistent with ART [#363](https://github.com/openshift/cluster-dns-operator/pull/363) * [OCPBUGS-12859](https://issues.redhat.com/browse/OCPBUGS-12859): deflake TestDNSLogging [#365](https://github.com/openshift/cluster-dns-operator/pull/365) * [OCPBUGS-5943](https://issues.redhat.com/browse/OCPBUGS-5943): Enable topology-aware hints if, and only if, nodes have zones [#364](https://github.com/openshift/cluster-dns-operator/pull/364) * [OCPBUGS-5943](https://issues.redhat.com/browse/OCPBUGS-5943): Set DNS DaemonSet's maxSurge value to 10% [#358](https://github.com/openshift/cluster-dns-operator/pull/358) * [OCPBUGS-10080](https://issues.redhat.com/browse/OCPBUGS-10080): Updating ose-cluster-dns-operator images to be consistent with ART [#357](https://github.com/openshift/cluster-dns-operator/pull/357) * [OCPBUGS-4359](https://issues.redhat.com/browse/OCPBUGS-4359): update-node-resolver.sh: Check for errors from >> [#355](https://github.com/openshift/cluster-dns-operator/pull/355) * [OCPBUGS-6382](https://issues.redhat.com/browse/OCPBUGS-6382): Address CVE-2022-41717 [#353](https://github.com/openshift/cluster-dns-operator/pull/353) * [OCPBUGS-7648](https://issues.redhat.com/browse/OCPBUGS-7648): Bump vendored k8s libraries to 0.26.1 and controller-runtime to 0.14.4 [#356](https://github.com/openshift/cluster-dns-operator/pull/356) * [OCPBUGS-4359](https://issues.redhat.com/browse/OCPBUGS-4359): ensure original hosts file contents are preserved [#352](https://github.com/openshift/cluster-dns-operator/pull/352) * Updating ose-cluster-dns-operator images to be consistent with ART [#351](https://github.com/openshift/cluster-dns-operator/pull/351) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/1c136fe38b8cd5c0de99577d23157f884728d20b...) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/1f6d40d4a8e7601ab12dcd075b87476e9a2244c4) * [OCPBUGS-7409](https://issues.redhat.com/browse/OCPBUGS-7409): set default timeouts in etcdcli [#1005](https://github.com/openshift/cluster-etcd-operator/pull/1005) * [OCPBUGS-6935](https://issues.redhat.com/browse/OCPBUGS-6935): add dedicated success status for bootstrap removal [#999](https://github.com/openshift/cluster-etcd-operator/pull/999) * [OCPBUGS-7373](https://issues.redhat.com/browse/OCPBUGS-7373): [release-4.12] fail early on missing node status envs [#1004](https://github.com/openshift/cluster-etcd-operator/pull/1004) * [OCPBUGS-6898](https://issues.redhat.com/browse/OCPBUGS-6898): updating library-go for CVE-2022-41717 [#998](https://github.com/openshift/cluster-etcd-operator/pull/998) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/a9aaf7d163b9f118347aca4080ce8cab746b241e...1f6d40d4a8e7601ab12dcd075b87476e9a2244c4) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/) * [OCPBUGS-29233](https://issues.redhat.com/browse/OCPBUGS-29233): bump aws-sdk-go from v1.44 to v1.50 [#1012](https://github.com/openshift/cluster-image-registry-operator/pull/1012) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#1008](https://github.com/openshift/cluster-image-registry-operator/pull/1008) * NO-JIRA: bump golangci-lint to v1.56.2 [#1013](https://github.com/openshift/cluster-image-registry-operator/pull/1013) * [OCPBUGS-29932](https://issues.redhat.com/browse/OCPBUGS-29932): cmd/move-blobs: log and exit 1 on error instead of panic [#1006](https://github.com/openshift/cluster-image-registry-operator/pull/1006) * [OCPBUGS-29637](https://issues.redhat.com/browse/OCPBUGS-29637): azurepathfix: fix stack hub, government and workload identity setup [#1003](https://github.com/openshift/cluster-image-registry-operator/pull/1003) * [OCPBUGS-29003](https://issues.redhat.com/browse/OCPBUGS-29003): move azure storage blobs from `docker` back into `/docker` [#998](https://github.com/openshift/cluster-image-registry-operator/pull/998) * NO-JIRA: Add hack/local-dev.sh [#996](https://github.com/openshift/cluster-image-registry-operator/pull/996) * [OCPBUGS-28225](https://issues.redhat.com/browse/OCPBUGS-28225): pkg/storage/s3: enable bucket key on encryption settings [#993](https://github.com/openshift/cluster-image-registry-operator/pull/993) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#992](https://github.com/openshift/cluster-image-registry-operator/pull/992) * NO-JIRA: build(deps): bump golang.org/x/oauth2 from 0.8.0 to 0.16.0 [#989](https://github.com/openshift/cluster-image-registry-operator/pull/989) * [OCPBUGS-26767](https://issues.redhat.com/browse/OCPBUGS-26767): MULTIARCH-4074: PowerVS: update supported regions [#987](https://github.com/openshift/cluster-image-registry-operator/pull/987) * [IR-409](https://issues.redhat.com/browse/IR-409): build(deps): bump github.com/IBM/platform-services-go-sdk from 0.18.15 to 0.55.0 [#974](https://github.com/openshift/cluster-image-registry-operator/pull/974) * [OCPBUGS-24997](https://issues.redhat.com/browse/OCPBUGS-24997): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#979](https://github.com/openshift/cluster-image-registry-operator/pull/979) * [IR-410](https://issues.redhat.com/browse/IR-410): build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.61.1263 to 1.62.637 [#980](https://github.com/openshift/cluster-image-registry-operator/pull/980) * [OCPBUGS-11624](https://issues.redhat.com/browse/OCPBUGS-11624): manifests/02-rbac.yaml: stop using wild cards [#964](https://github.com/openshift/cluster-image-registry-operator/pull/964) * [OCPBUGS-24649](https://issues.redhat.com/browse/OCPBUGS-24649): add private endpoint permissions to Azure credentials request [#971](https://github.com/openshift/cluster-image-registry-operator/pull/971) * [OCPBUGS-24997](https://issues.redhat.com/browse/OCPBUGS-24997): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#975](https://github.com/openshift/cluster-image-registry-operator/pull/975) * [IR-412](https://issues.redhat.com/browse/IR-412): IBMCloud: Add support for endpoint overrides [#955](https://github.com/openshift/cluster-image-registry-operator/pull/955) * [CCO-248](https://issues.redhat.com/browse/CCO-248): Revert "Merge pull request #965 from jstuever/TRT-1368" [#967](https://github.com/openshift/cluster-image-registry-operator/pull/967) * [OCPVE-790](https://issues.redhat.com/browse/OCPVE-790): annotate credentials request manifests [#959](https://github.com/openshift/cluster-image-registry-operator/pull/959) * [OCPBUGS-24161](https://issues.redhat.com/browse/OCPBUGS-24161): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#966](https://github.com/openshift/cluster-image-registry-operator/pull/966) * [TRT-1368](https://issues.redhat.com/browse/TRT-1368): Revert "Merge pull request #935 from flavianmissi/CCO-248" [#965](https://github.com/openshift/cluster-image-registry-operator/pull/965) * [IR-366](https://issues.redhat.com/browse/IR-366), [IR-367](https://issues.redhat.com/browse/IR-367), [IR-411](https://issues.redhat.com/browse/IR-411): allow users to configure private storage accounts in Azure [#930](https://github.com/openshift/cluster-image-registry-operator/pull/930) * [IR-408](https://issues.redhat.com/browse/IR-408): request individual permissions for gcs [#935](https://github.com/openshift/cluster-image-registry-operator/pull/935) * [OCPBUGS-2889](https://issues.redhat.com/browse/OCPBUGS-2889): accept user/pass OR application credentials on Swift UPI secret [#924](https://github.com/openshift/cluster-image-registry-operator/pull/924) * [IR-406](https://issues.redhat.com/browse/IR-406), [OCPBUGS-21853](https://issues.redhat.com/browse/OCPBUGS-21853): bump k8s and openshift packages [#936](https://github.com/openshift/cluster-image-registry-operator/pull/936) * [OCPBUGS-21853](https://issues.redhat.com/browse/OCPBUGS-21853): disable http2 for metrics endpoint [#938](https://github.com/openshift/cluster-image-registry-operator/pull/938) * [OCPBUGS-18969](https://issues.redhat.com/browse/OCPBUGS-18969): move pruner role creation from openshift-apiserver [#925](https://github.com/openshift/cluster-image-registry-operator/pull/925) * [OCPBUGS-19262](https://issues.redhat.com/browse/OCPBUGS-19262): Updating ose-cluster-image-registry-operator images to be consistent with ART [#918](https://github.com/openshift/cluster-image-registry-operator/pull/918) * [OCPBUGS-18469](https://issues.redhat.com/browse/OCPBUGS-18469): increase storage account key cache expiration [#912](https://github.com/openshift/cluster-image-registry-operator/pull/912) * [OCPBUGS-17060](https://issues.redhat.com/browse/OCPBUGS-17060): use Recreate on operator deployment [#908](https://github.com/openshift/cluster-image-registry-operator/pull/908) * [OCPBUGS-18103](https://issues.redhat.com/browse/OCPBUGS-18103): check if response is nil before using it [#909](https://github.com/openshift/cluster-image-registry-operator/pull/909) * [OCPVE-632](https://issues.redhat.com/browse/OCPVE-632): add capability annotations to manifests [#856](https://github.com/openshift/cluster-image-registry-operator/pull/856) * [OCPBUGS-17882](https://issues.redhat.com/browse/OCPBUGS-17882): Add rbac permission IDMS, ITMS [#891](https://github.com/openshift/cluster-image-registry-operator/pull/891) * [TRT-1193](https://issues.redhat.com/browse/TRT-1193): Revert "IR-373: remove node-ca daemon" [#899](https://github.com/openshift/cluster-image-registry-operator/pull/899) * [CFE-846](https://issues.redhat.com/browse/CFE-846): Add user defined tags to the GCP buckets created [#873](https://github.com/openshift/cluster-image-registry-operator/pull/873) * [IR-373](https://issues.redhat.com/browse/IR-373): remove node-ca daemon [#867](https://github.com/openshift/cluster-image-registry-operator/pull/867) * build(deps): bump github.com/stretchr/testify from 1.8.1 to 1.8.4 [#877](https://github.com/openshift/cluster-image-registry-operator/pull/877) * build(deps): bump the k8s-dependencies group with 1 update [#895](https://github.com/openshift/cluster-image-registry-operator/pull/895) * [IR-363](https://issues.redhat.com/browse/IR-363): Update Azure Credentials Request manifest of the Cluster Image Registry Operator to use new API field for requesting permissions [#890](https://github.com/openshift/cluster-image-registry-operator/pull/890) * build(deps): bump github.com/prometheus/common from 0.37.0 to 0.44.0 [#878](https://github.com/openshift/cluster-image-registry-operator/pull/878) * [CFE-682](https://issues.redhat.com/browse/CFE-682): Add user defined labels to the GCP buckets created [#872](https://github.com/openshift/cluster-image-registry-operator/pull/872) * [CFE-682](https://issues.redhat.com/browse/CFE-682): Update openshift/api package to latest version [#887](https://github.com/openshift/cluster-image-registry-operator/pull/887) * [IR-390](https://issues.redhat.com/browse/IR-390): Make a configmap for MCO to consume CAs [#880](https://github.com/openshift/cluster-image-registry-operator/pull/880) * build(deps): bump github.com/aws/aws-sdk-go from 1.44.291 to 1.44.298 [#879](https://github.com/openshift/cluster-image-registry-operator/pull/879) * build(deps): bump golang.org/x/net from 0.8.0 to 0.11.0 [#871](https://github.com/openshift/cluster-image-registry-operator/pull/871) * build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.1.10+incompatible to 2.2.7+incompatible [#869](https://github.com/openshift/cluster-image-registry-operator/pull/869) * .github/dependabot.yml: group certain dependencies [#865](https://github.com/openshift/cluster-image-registry-operator/pull/865) * [IR-389](https://issues.redhat.com/browse/IR-389): bump aws-sdk-go [#860](https://github.com/openshift/cluster-image-registry-operator/pull/860) * .github: configure dependabot [#861](https://github.com/openshift/cluster-image-registry-operator/pull/861) * [IR-369](https://issues.redhat.com/browse/IR-369), [IR-370](https://issues.redhat.com/browse/IR-370): support Azure workload identity [#857](https://github.com/openshift/cluster-image-registry-operator/pull/857) * [OCPBUGS-12132](https://issues.redhat.com/browse/OCPBUGS-12132): Updating ose-cluster-image-registry-operator images to be consistent with ART [#854](https://github.com/openshift/cluster-image-registry-operator/pull/854) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#849](https://github.com/openshift/cluster-image-registry-operator/pull/849) * [OCPBUGS-8224](https://issues.redhat.com/browse/OCPBUGS-8224): fix storage selection on IBM cloud [#847](https://github.com/openshift/cluster-image-registry-operator/pull/847) * [OCPBUGS-6797](https://issues.redhat.com/browse/OCPBUGS-6797): Add nil validation for IBM Cloud and Power VS infrastructure status in ibmcos [#845](https://github.com/openshift/cluster-image-registry-operator/pull/845) * [MULTIARCH-3212](https://issues.redhat.com/browse/MULTIARCH-3212): Use IBM COS as storage backend for PowerVS [#843](https://github.com/openshift/cluster-image-registry-operator/pull/843) * [OCPBUGS-6621](https://issues.redhat.com/browse/OCPBUGS-6621): bump aws-sdk-go [#844](https://github.com/openshift/cluster-image-registry-operator/pull/844) * Add UserTags while creating Azure Storage Account [#829](https://github.com/openshift/cluster-image-registry-operator/pull/829) * [IR-341](https://issues.redhat.com/browse/IR-341): bump openshift/api [#828](https://github.com/openshift/cluster-image-registry-operator/pull/828) * [IR-270](https://issues.redhat.com/browse/IR-270): allow registry to create image objects [#823](https://github.com/openshift/cluster-image-registry-operator/pull/823) * [OCPBUGS-6175](https://issues.redhat.com/browse/OCPBUGS-6175): OpenStack: Add support for Proxy [#833](https://github.com/openshift/cluster-image-registry-operator/pull/833) * [IR-308](https://issues.redhat.com/browse/IR-308): Add support for External platform [#825](https://github.com/openshift/cluster-image-registry-operator/pull/825) * [OCPBUGS-4090](https://issues.redhat.com/browse/OCPBUGS-4090): swift: Retry connecting to OpenStack [#819](https://github.com/openshift/cluster-image-registry-operator/pull/819) * [IR-311](https://issues.redhat.com/browse/IR-311): storage: azure: use azidentity with an adapter [#807](https://github.com/openshift/cluster-image-registry-operator/pull/807) * [Bug 2065166](https://bugzilla.redhat.com/show_bug.cgi?id=2065166): Remove roles/iam.serviceAccountUser role [#824](https://github.com/openshift/cluster-image-registry-operator/pull/824) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#821](https://github.com/openshift/cluster-image-registry-operator/pull/821) * [IR-314](https://issues.redhat.com/browse/IR-314): Bump dependencies [#816](https://github.com/openshift/cluster-image-registry-operator/pull/816) * Add config for golangci-lint and fix errors [#820](https://github.com/openshift/cluster-image-registry-operator/pull/820) * hack/test-go.sh: generate coverage reports [#818](https://github.com/openshift/cluster-image-registry-operator/pull/818) * [OCPBUGS-3974](https://issues.redhat.com/browse/OCPBUGS-3974): check for nil pointer before dereferencing [#814](https://github.com/openshift/cluster-image-registry-operator/pull/814) * [Bug 2066388](https://bugzilla.redhat.com/show_bug.cgi?id=2066388): Add example for s3.regionEndpoint [#815](https://github.com/openshift/cluster-image-registry-operator/pull/815) * [OCPBUGS-2941](https://issues.redhat.com/browse/OCPBUGS-2941): Bump gophercloud [#808](https://github.com/openshift/cluster-image-registry-operator/pull/808) * add myself to OWNERS [#809](https://github.com/openshift/cluster-image-registry-operator/pull/809) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/62a3aa8ff1ffcc5b52a762847ecf1391730fff92...) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/) * [OCPBUGS-3522](https://issues.redhat.com/browse/OCPBUGS-3522): Include recent errors in canary checks fail [#865](https://github.com/openshift/cluster-ingress-operator/pull/865) * [OCPBUGS-30091](https://issues.redhat.com/browse/OCPBUGS-30091): TestHostNetworkPortBinding: Delete t.Parallel() [#1032](https://github.com/openshift/cluster-ingress-operator/pull/1032) * [CFE-987](https://issues.redhat.com/browse/CFE-987): Use RouterExternalCertificate feature gate for adding ROUTER_ENABLE_EXTERNAL_CERTIFICATE env var to the router pods [#1017](https://github.com/openshift/cluster-ingress-operator/pull/1017) * [CORS-2317](https://issues.redhat.com/browse/CORS-2317): Add Ingress LB IPs to Infra CR and set DNS unmanaged when BYO DNS is enabled [#1016](https://github.com/openshift/cluster-ingress-operator/pull/1016) * [OCPBUGS-28596](https://issues.redhat.com/browse/OCPBUGS-28596): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.16 [#1020](https://github.com/openshift/cluster-ingress-operator/pull/1020) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#1019](https://github.com/openshift/cluster-ingress-operator/pull/1019) * [NE-1490](https://issues.redhat.com/browse/NE-1490): update to go v1.20 [#1012](https://github.com/openshift/cluster-ingress-operator/pull/1012) * [OCPBUGS-15253](https://issues.redhat.com/browse/OCPBUGS-15253): Include namespace in prometheus alerts IngressWithoutClassName and UnmanagedRoutes [#980](https://github.com/openshift/cluster-ingress-operator/pull/980) * [CCO-249](https://issues.redhat.com/browse/CCO-249): Replace GCP role with explicit permissions [#844](https://github.com/openshift/cluster-ingress-operator/pull/844) * [OCPBUGS-25006](https://issues.redhat.com/browse/OCPBUGS-25006): Updating ose-cluster-ingress-operator-container image to be consistent with ART [#1006](https://github.com/openshift/cluster-ingress-operator/pull/1006) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert " OCPBUGS-24531 Skip CI for scope change until OCPBUGS-24044 is resolved" [#1011](https://github.com/openshift/cluster-ingress-operator/pull/1011) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert "Merge pull request #1007 from candita/OCPBUGS-24531-SkipScopeChangeTest" and add changes to skip test only for Azure and GCP [#1008](https://github.com/openshift/cluster-ingress-operator/pull/1008) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Skip CI for scope change until OCPBUGS-24044 is resolved [#1007](https://github.com/openshift/cluster-ingress-operator/pull/1007) * [OCPVE-780](https://issues.redhat.com/browse/OCPVE-780): annotate credentials request manifests [#995](https://github.com/openshift/cluster-ingress-operator/pull/995) * [OCPBUGS-23742](https://issues.redhat.com/browse/OCPBUGS-23742): Bump controller-runtime to v0.16.3 [#1001](https://github.com/openshift/cluster-ingress-operator/pull/1001) * [NE-1402](https://issues.redhat.com/browse/NE-1402): Add service endpoint override capability to IBM DNS provider [#990](https://github.com/openshift/cluster-ingress-operator/pull/990) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Revert "OCPBUGS-16762: Bump openshift/api for container.maxLength fix" [#982](https://github.com/openshift/cluster-ingress-operator/pull/982) * [OCPBUGS-14994](https://issues.redhat.com/browse/OCPBUGS-14994): Don't add clientca-configmap finalizer if deleting [#948](https://github.com/openshift/cluster-ingress-operator/pull/948) * [OCPBUGS-22020](https://issues.redhat.com/browse/OCPBUGS-22020): Bump golang.org/x/net for CVE-2023-44487 [#985](https://github.com/openshift/cluster-ingress-operator/pull/985) * [OCPBUGS-21803](https://issues.redhat.com/browse/OCPBUGS-21803): test/e2e: Add test case for 2000000 maxConnections [#983](https://github.com/openshift/cluster-ingress-operator/pull/983) * [OCPBUGS-20192](https://issues.redhat.com/browse/OCPBUGS-20192): Require non-readonly filesystem in router container [#981](https://github.com/openshift/cluster-ingress-operator/pull/981) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Bump openshift/api for container.maxLength fix [#979](https://github.com/openshift/cluster-ingress-operator/pull/979) * [OCPBUGS-3541](https://issues.redhat.com/browse/OCPBUGS-3541): Don't create route metrics for ingress controllers that are not admitted [#869](https://github.com/openshift/cluster-ingress-operator/pull/869) * [OCPBUGS-18248](https://issues.redhat.com/browse/OCPBUGS-18248): Prevent GatewayClass from getting recreated [#975](https://github.com/openshift/cluster-ingress-operator/pull/975) * [OCPBUGS-19268](https://issues.redhat.com/browse/OCPBUGS-19268): Updating ose-cluster-ingress-operator images to be consistent with ART [#977](https://github.com/openshift/cluster-ingress-operator/pull/977) * [OCPBUGS-15900](https://issues.redhat.com/browse/OCPBUGS-15900): TestMTLSWithCRLs: only try to parse HTTP status code from curl output when stdout is long enough. [#973](https://github.com/openshift/cluster-ingress-operator/pull/973) * [OCPBUGS-3356](https://issues.redhat.com/browse/OCPBUGS-3356): E2E test for cookie length truncation [#871](https://github.com/openshift/cluster-ingress-operator/pull/871) * [OCPBUGS-15978](https://issues.redhat.com/browse/OCPBUGS-15978): Check public DNS zone when reporting status [#967](https://github.com/openshift/cluster-ingress-operator/pull/967) * [OCPBUGS-17359](https://issues.redhat.com/browse/OCPBUGS-17359): test/e2e: Don't use openshift/origin-node [#970](https://github.com/openshift/cluster-ingress-operator/pull/970) * [NE-1140](https://issues.redhat.com/browse/NE-1140), [NE-1145](https://issues.redhat.com/browse/NE-1145): Set/delete HTTP request/response headers via IngressController API [#872](https://github.com/openshift/cluster-ingress-operator/pull/872) * [OCPBUGS-16089](https://issues.redhat.com/browse/OCPBUGS-16089): Set spec.subdomain on the canary route [#965](https://github.com/openshift/cluster-ingress-operator/pull/965) * [OCPBUGS-14995](https://issues.redhat.com/browse/OCPBUGS-14995): desiredRouterDeployment: Set HostPort if needed [#947](https://github.com/openshift/cluster-ingress-operator/pull/947) * [OCPBUGS-10875](https://issues.redhat.com/browse/OCPBUGS-10875): gateway-service-dns: Set DNS policy appropriately [#934](https://github.com/openshift/cluster-ingress-operator/pull/934) * [NE-1244](https://issues.redhat.com/browse/NE-1244): Use permissions instead of the "Contributor" role in Azure CredentialsRequest [#929](https://github.com/openshift/cluster-ingress-operator/pull/929) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): README: Fix Bugzilla link [#968](https://github.com/openshift/cluster-ingress-operator/pull/968) * [RFE-3007](https://issues.redhat.com/browse/RFE-3007): Expose option-contstats as an unsupported option [#887](https://github.com/openshift/cluster-ingress-operator/pull/887) * [NE-1189](https://issues.redhat.com/browse/NE-1189): Refactor Test_desiredLoadBalancerService [#886](https://github.com/openshift/cluster-ingress-operator/pull/886) * [NE-1187](https://issues.redhat.com/browse/NE-1187): Use t.Run for table-driven tests [#884](https://github.com/openshift/cluster-ingress-operator/pull/884) * [NE-1183](https://issues.redhat.com/browse/NE-1183): Rename unit tests for specific functions [#880](https://github.com/openshift/cluster-ingress-operator/pull/880) * [NE-1269](https://issues.redhat.com/browse/NE-1269): Replace bindata using embed [#905](https://github.com/openshift/cluster-ingress-operator/pull/905) * [RFE-3765](https://issues.redhat.com/browse/RFE-3765): Allow Ingress to Modify the HAProxy Log Length when using a Sidecar [#900](https://github.com/openshift/cluster-ingress-operator/pull/900) * [OCPBUGS-9274](https://issues.redhat.com/browse/OCPBUGS-9274): canary: Tolerate infra node NoExecute taint [#932](https://github.com/openshift/cluster-ingress-operator/pull/932) * [OCPBUGS-7546](https://issues.redhat.com/browse/OCPBUGS-7546): Allow only 1 disruption with 3 replicas [#931](https://github.com/openshift/cluster-ingress-operator/pull/931) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Fix previous attempt of adding a missing trailing dot to hostname [#956](https://github.com/openshift/cluster-ingress-operator/pull/956) * [OCPBUGS-14396](https://issues.redhat.com/browse/OCPBUGS-14396): Set controller-runtime logger to a null logger for E2E [#946](https://github.com/openshift/cluster-ingress-operator/pull/946) * [OCPBUGS-14998](https://issues.redhat.com/browse/OCPBUGS-14998): Only use RoleARN for Route53 API [#951](https://github.com/openshift/cluster-ingress-operator/pull/951) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Create valid DNS names for Gateway API on GCP [#949](https://github.com/openshift/cluster-ingress-operator/pull/949) * [OCPBUGS-13106](https://issues.redhat.com/browse/OCPBUGS-13106): Add ingress controller status logging on waitForIngressControllerCondition [#924](https://github.com/openshift/cluster-ingress-operator/pull/924) * [OCPBUGS-13190](https://issues.redhat.com/browse/OCPBUGS-13190): Avoid spurious updates for internalTrafficPolicy [#927](https://github.com/openshift/cluster-ingress-operator/pull/927) * [OCPBUGS-13810](https://issues.redhat.com/browse/OCPBUGS-13810): Update TestAWSELBConnectionIdleTimeout to not use wildcard DNS record [#944](https://github.com/openshift/cluster-ingress-operator/pull/944) * [NE-1294](https://issues.redhat.com/browse/NE-1294): Add support for AWS shared VPC in another account [#928](https://github.com/openshift/cluster-ingress-operator/pull/928) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Enable Azure Workload Identity authentication. [#906](https://github.com/openshift/cluster-ingress-operator/pull/906) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#939](https://github.com/openshift/cluster-ingress-operator/pull/939) * [OCPBUGS-13963](https://issues.redhat.com/browse/OCPBUGS-13963): Bump vendors k8s libraries to 0.27.2 [#936](https://github.com/openshift/cluster-ingress-operator/pull/936) * Revert "OCPBUGS-6661, OCPBUGS-9464: Move mTLS CRL handling into the router, and fix accidental duplication of CRLs" [#938](https://github.com/openshift/cluster-ingress-operator/pull/938) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#930](https://github.com/openshift/cluster-ingress-operator/pull/930) * [OCPBUGS-5478](https://issues.redhat.com/browse/OCPBUGS-5478): add UBI based Dockerfile [#925](https://github.com/openshift/cluster-ingress-operator/pull/925) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Read feature gates for future usage [#908](https://github.com/openshift/cluster-ingress-operator/pull/908) * [OCPBUGS-12913](https://issues.redhat.com/browse/OCPBUGS-12913): Deflake TestRouterCompressionOperation [#920](https://github.com/openshift/cluster-ingress-operator/pull/920) * [OCPBUGS-6784](https://issues.redhat.com/browse/OCPBUGS-6784): bump controller-runtime to fix the multi namespace cache indexing [#913](https://github.com/openshift/cluster-ingress-operator/pull/913) * [OCPBUGS-12579](https://issues.redhat.com/browse/OCPBUGS-12579): Address CVE-2022-41723 [#915](https://github.com/openshift/cluster-ingress-operator/pull/915) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): Replace Bugzilla link with Red Hat Issue Tracker [#916](https://github.com/openshift/cluster-ingress-operator/pull/916) * [OCPBUGS-10714](https://issues.redhat.com/browse/OCPBUGS-10714): gatewayclass: Update for OSSM 2.4 API change [#901](https://github.com/openshift/cluster-ingress-operator/pull/901) * [OCPBUGS-10189](https://issues.redhat.com/browse/OCPBUGS-10189): Updating ose-cluster-ingress-operator images to be consistent with ART [#898](https://github.com/openshift/cluster-ingress-operator/pull/898) * [OCPBUGS-10846](https://issues.redhat.com/browse/OCPBUGS-10846): Fix TestClientTLS flakes [#904](https://github.com/openshift/cluster-ingress-operator/pull/904) * [NE-1184](https://issues.redhat.com/browse/NE-1184): Test_desiredHttpErrorCodeConfigMap: Kill dead code and fix format [#881](https://github.com/openshift/cluster-ingress-operator/pull/881) * [OCPBUGS-4054](https://issues.redhat.com/browse/OCPBUGS-4054): configurable-route: Don't use NewKindWithCache [#860](https://github.com/openshift/cluster-ingress-operator/pull/860) * [NE-1186](https://issues.redhat.com/browse/NE-1186): Test_getRR: Fix typo: "excepted" → "expected" [#883](https://github.com/openshift/cluster-ingress-operator/pull/883) * [CORS-2467](https://issues.redhat.com/browse/CORS-2467): dns: azure: use azidentity with an adapter [#846](https://github.com/openshift/cluster-ingress-operator/pull/846) * [NE-1105](https://issues.redhat.com/browse/NE-1105): Add support for Gateway API [#890](https://github.com/openshift/cluster-ingress-operator/pull/890) * [OCPBUGS-7424](https://issues.redhat.com/browse/OCPBUGS-7424): Bump vendored k8s libraries to 1.26.1 [#888](https://github.com/openshift/cluster-ingress-operator/pull/888) * [CFE-679](https://issues.redhat.com/browse/CFE-679): Add user defined tags to the created DNS resources [#874](https://github.com/openshift/cluster-ingress-operator/pull/874) * [OCPBUGS-6247](https://issues.redhat.com/browse/OCPBUGS-6247): Updating ose-cluster-ingress-operator images to be consistent with ART [#862](https://github.com/openshift/cluster-ingress-operator/pull/862) * [CORS-2072](https://issues.redhat.com/browse/CORS-2072): GCP - Parse Zone ID with a project ID embedded [#855](https://github.com/openshift/cluster-ingress-operator/pull/855) * [NE-1092](https://issues.redhat.com/browse/NE-1092): Add proxy protocol support for IBMCloud loadbalancers [#812](https://github.com/openshift/cluster-ingress-operator/pull/812) * [OCPBUGS-6384](https://issues.redhat.com/browse/OCPBUGS-6384): Address CVE-2022-41717 [#876](https://github.com/openshift/cluster-ingress-operator/pull/876) * [OCPBUGS-4827](https://issues.redhat.com/browse/OCPBUGS-4827): Add missing AWS permission for ListTagsForResources [#868](https://github.com/openshift/cluster-ingress-operator/pull/868) * [OCPBUGS-6701](https://issues.redhat.com/browse/OCPBUGS-6701): Avoid spurious updates for scope in IngressClass [#879](https://github.com/openshift/cluster-ingress-operator/pull/879) * [OCPBUGS-6698](https://issues.redhat.com/browse/OCPBUGS-6698): Fix conflict error message in ensureNodePortService [#877](https://github.com/openshift/cluster-ingress-operator/pull/877) * [OCPBUGS-6700](https://issues.redhat.com/browse/OCPBUGS-6700): updateIngressClass: Fix log message [#878](https://github.com/openshift/cluster-ingress-operator/pull/878) * [NE-1124](https://issues.redhat.com/browse/NE-1124): Add support for External platform to CIO [#873](https://github.com/openshift/cluster-ingress-operator/pull/873) * [OCPBUGS-4573](https://issues.redhat.com/browse/OCPBUGS-4573): Target metrics port by name in internal service [#864](https://github.com/openshift/cluster-ingress-operator/pull/864) * [OCPBUGS-434](https://issues.redhat.com/browse/OCPBUGS-434): Absorb PodsScheduled condition into MinAvailable [#854](https://github.com/openshift/cluster-ingress-operator/pull/854) * [OCPBUGS-4759](https://issues.redhat.com/browse/OCPBUGS-4759): Do not manage DNS for an ingresscontroller with domain mismatch in GCP [#866](https://github.com/openshift/cluster-ingress-operator/pull/866) * [OCPBUGS-4703](https://issues.redhat.com/browse/OCPBUGS-4703): Replace liveness-grace-period-seconds annotation [#863](https://github.com/openshift/cluster-ingress-operator/pull/863) * [OCPBUGS-3404](https://issues.redhat.com/browse/OCPBUGS-3404): Bump openshift/api for matchExpressions doc fix [#856](https://github.com/openshift/cluster-ingress-operator/pull/856) * [OPNET-133](https://issues.redhat.com/browse/OPNET-133): Support remote worker [#858](https://github.com/openshift/cluster-ingress-operator/pull/858) * [OCPBUGS-1725](https://issues.redhat.com/browse/OCPBUGS-1725): Ingress controller should not have affinity policy in single-replica clusters [#810](https://github.com/openshift/cluster-ingress-operator/pull/810) * [OCPBUGS-1807](https://issues.redhat.com/browse/OCPBUGS-1807): Fix bad `handleSingleNode4Dot11Upgrade` log message [#808](https://github.com/openshift/cluster-ingress-operator/pull/808) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/992b43b3cf3e1784bfe8d3083229c7ecb410e7e3...) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/) * NO-JIRA: certrotationcontroller: set AutoRegenerateAfterOfflineExpiry [#1652](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1652) * [OCPBUGS-30119](https://issues.redhat.com/browse/OCPBUGS-30119): certrotation: Bump library-go to latest master [#1651](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1651) * [OCPCLOUD-2514](https://issues.redhat.com/browse/OCPCLOUD-2514): External CCM should no longer rely on feature gate access [#1649](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1649) * [OCPBUGS-25894](https://issues.redhat.com/browse/OCPBUGS-25894): operator: stop removing kube-apiserver-slos asset [#1642](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1642) * NO-JIRA: extend node-system-admin-client validity to 2 years [#1618](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1618) * [OBSDA-553](https://issues.redhat.com/browse/OBSDA-553): add provider name to cluster_infrastructure_provider when external platform [#1638](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1638) * [AUTH-481](https://issues.redhat.com/browse/AUTH-481): Add PSa labels to openshift-kube-apiserver-operator namespace [#1637](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1637) * [OCPBUGS-27842](https://issues.redhat.com/browse/OCPBUGS-27842): Add sno section to alert description [#1633](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1633) * NO-JIRA: Add Vu and Vadim to OWNERS [#1634](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1634) * [OCPBUGS-24005](https://issues.redhat.com/browse/OCPBUGS-24005): when skipping a webhook check because of missing CA log the name of the webhook [#1632](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1632) * NO-JIRA: Add ownership for the admin kubeconfig [#1584](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1584) * [OCPBUGS-18939](https://issues.redhat.com/browse/OCPBUGS-18939): manifest: drop slo latency metrics in favor of sli [#1546](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1546) * NO-ISSUE: prevent update status conflicts [#1621](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1621) * [OCPBUGS-21846](https://issues.redhat.com/browse/OCPBUGS-21846): sync(library-go): revision_controller: update last revision only when a revision is completely rendered [#1619](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1619) * [OCPBUGS-14496](https://issues.redhat.com/browse/OCPBUGS-14496): manifests: fix the scope of the TechPreviewNoUpgrade alert [#1512](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1512) * [OCPBUGS-24907](https://issues.redhat.com/browse/OCPBUGS-24907): Updating ose-cluster-kube-apiserver-operator-container image to be consistent with ART [#1606](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1606) * [OCPNODE-1892](https://issues.redhat.com/browse/OCPNODE-1892): Rebase 1.29.0 [#1608](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1608) * [OCPBUGS-24005](https://issues.redhat.com/browse/OCPBUGS-24005): webhookcontroller: report when a webhook resource is missing a caBundle provided by the service-ca-operator [#1587](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1587) * [TRT-1420](https://issues.redhat.com/browse/TRT-1420): revert #1586 #1596 [#1607](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1607) * [OCPNODE-1890](https://issues.redhat.com/browse/OCPNODE-1890): Bump k8s api to v0.29.0 [#1586](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1586) * [OCPNODE-1892](https://issues.redhat.com/browse/OCPNODE-1892): Set flag to skip setting cloud-provider=external [#1596](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1596) * [OCPBUGS-24701](https://issues.redhat.com/browse/OCPBUGS-24701): ignore vendor folder in SAST scan [#1599](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1599) * [AUTH-442](https://issues.redhat.com/browse/AUTH-442): psa cluster fleet evaluation [#1588](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1588) * [OCPBUGS-24213](https://issues.redhat.com/browse/OCPBUGS-24213): Annotate managed certs [#1568](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1568) * [OCPBUGS-23796](https://issues.redhat.com/browse/OCPBUGS-23796): use AlwaysAllow UnhealthyPodEvictionPolicy option [#1579](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1579) * [OCPBUGS-21836](https://issues.redhat.com/browse/OCPBUGS-21836): use external load balancer url for jwks-uri [#1578](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1578) * manifests: set owning component for TLS artifacts [#1583](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1583) * [OCPBUGS-19160](https://issues.redhat.com/browse/OCPBUGS-19160): Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1550](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1550) * [OCPBUGS-20331](https://issues.redhat.com/browse/OCPBUGS-20331): manifests/0000_90_kube-apiserver-operator_04_servicemonitor-apiserver: Rename to kube-apiserver-performance-recording-rules [#1566](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1566) * [OCPBUGS-20331](https://issues.redhat.com/browse/OCPBUGS-20331): manifests: rename API performance dashboard [#1565](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1565) * [OCPBUGS-21729](https://issues.redhat.com/browse/OCPBUGS-21729): bump library-go to include switch to HTTP/1.1 [#1567](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1567) * Update required GV for ValidatingAdmissionPolicy gate. [#1561](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1561) * Update "deprecated API in use" alert expressions for 1.28. [#1562](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1562) * bump(openshift/client-go,library-go) [#1560](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1560) * [OCPBUGS-16794](https://issues.redhat.com/browse/OCPBUGS-16794): installerpod: change pod manifest mode to 0600 [#1557](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1557) * [OCPBUGS-19024](https://issues.redhat.com/browse/OCPBUGS-19024): remove featuregate upgradeable controller that moved to cluster-config-operator [#1547](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1547) * [OCPBUGS-18247](https://issues.redhat.com/browse/OCPBUGS-18247): manifests: don't include recording rules when Console capability is not enabled [#1542](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1542) * [OCPBUGS-15504](https://issues.redhat.com/browse/OCPBUGS-15504): manifest: remove kube-apiserver PrometheusRule [#1543](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1543) * Bump openshift/* libs [#1549](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1549) * Update to Kubernetes 1.28.2 [#1548](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1548) * [STOR-1425](https://issues.redhat.com/browse/STOR-1425): Update to Kubernetes 1.28.1 [#1534](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1534) * [OCPBUGS-17436](https://issues.redhat.com/browse/OCPBUGS-17436): Unrevert 1536 and 1538. [#1541](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1541) * Reverts DynamicResourceAllocation enablement on techpreview [#1540](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1540) * [OCPBUGS-17436](https://issues.redhat.com/browse/OCPBUGS-17436): Enable DynamicResourceAllocation API in kube-apiserver [#1538](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1538) * Set runtime-config in lockstep with feature-gates, if needed. [#1536](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1536) * bump(api) [#1535](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1535) * [OCPBUGS-16511](https://issues.redhat.com/browse/OCPBUGS-16511): bump(*): vendor update [#1529](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1529) * [OCPBUGS-16511](https://issues.redhat.com/browse/OCPBUGS-16511): remove dependency on typed prometheus client [#1527](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1527) * [OCPBUGS-13635](https://issues.redhat.com/browse/OCPBUGS-13635): make webhook connection failure a warning in log [#1526](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1526) * [OCPBUGS-15489](https://issues.redhat.com/browse/OCPBUGS-15489): manifests: add new PrometheusRule for recording rules [#1521](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1521) * certrotation: rotate kube-apiserver-to-kubelet-signer when 80% of validity is over [#1523](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1523) * [OCPBUGS-13946](https://issues.redhat.com/browse/OCPBUGS-13946): do not use one second timeout when asserting a webhook connection [#1510](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1510) * [OCPBUGS-14008](https://issues.redhat.com/browse/OCPBUGS-14008): Enable "send-retry-after-while-not-ready-once" on SNO [#1500](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1500) * update probes for best practices and consistency [#1516](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1516) * api_performance_dashboard: show apiserver_longrunning_requests metric [#1518](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1518) * allow greater timeout for etcd health check [#1517](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1517) * api_performance_dashboard: show apiserver_request_total instead of apiserver_dropped_requests [#1520](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1520) * [OCPBUGS-8404](https://issues.redhat.com/browse/OCPBUGS-8404): pkg/operator/configobserver: check that the serving certificate refer… [#1482](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1482) * [OCPBUGS-3986](https://issues.redhat.com/browse/OCPBUGS-3986): dashboard: use recording rules for most metrics [#1484](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1484) * [OCPBUGS-14940](https://issues.redhat.com/browse/OCPBUGS-14940): api_performance_dashboard: show apiserver_longrunning_requests metric [#1511](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1511) * [OCPBUGS-13946](https://issues.redhat.com/browse/OCPBUGS-13946): degraded_webhook.go x509: certificate signed by unknown authority [#1503](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1503) * [OCPBUGS-14323](https://issues.redhat.com/browse/OCPBUGS-14323): Change manifest directory permissions [#1505](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1505) * [OCPBUGS-13547](https://issues.redhat.com/browse/OCPBUGS-13547): Remove featureset flag and use only the manifest [#1491](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1491) * [OCPBUGS-13303](https://issues.redhat.com/browse/OCPBUGS-13303): pkg/operator/startupmonitor: skip openshift-apiserver readiness check… [#1492](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1492) * [OCPBUGS-14038](https://issues.redhat.com/browse/OCPBUGS-14038): Update APIRemovedInNextRelease alerts [#1497](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1497) * [STOR-1263](https://issues.redhat.com/browse/STOR-1263): Bump k8s 1.27 [#1469](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1469) * read featureset from the manifests [#1490](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1490) * Read feature manifest [#1488](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1488) * Cover featuregate access errors in PSA configobserver unit tests. [#1486](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1486) * switch to featuregates via the API [#1485](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1485) * [OCPBUGS-10831](https://issues.redhat.com/browse/OCPBUGS-10831): pod security: use v1 api [#1481](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1481) * [OCPBUGS-11361](https://issues.redhat.com/browse/OCPBUGS-11361): Revert "Merge pull request #1474 from benluddy/oapi-bump" [#1477](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1477) * Bump dependency on openshift/api. [#1474](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1474) * Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1460](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1460) * [OCPBUGS-10713](https://issues.redhat.com/browse/OCPBUGS-10713): PSA Violation alert: add ocp_namespace label [#1435](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1435) * [OCPBUGS-10039](https://issues.redhat.com/browse/OCPBUGS-10039): update openshift/api to include aesgcm provider in the default apiserver schema [#1462](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1462) * [OCPBUGS-10577](https://issues.redhat.com/browse/OCPBUGS-10577): update apf configuration to use v1beta3 [#1413](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1413) * [OCPBUGS-8711](https://issues.redhat.com/browse/OCPBUGS-8711): API-1509: Enable AES-GCM encryption [#1449](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1449) * [OCPBUGS-8478](https://issues.redhat.com/browse/OCPBUGS-8478): Disable TestBoundTokenSignerController [#1455](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1455) * [STOR-1051](https://issues.redhat.com/browse/STOR-1051): Allow CSI inline volumes in all SCCs [#1434](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1434) * [WRKLDS-705](https://issues.redhat.com/browse/WRKLDS-705): Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade [#1447](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1447) * bump(api) [#1444](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1444) * bump(*) [#1442](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1442) * Update OWNERS to remove/replace adambkaplan [#1438](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1438) * [OCPBUGS-5873](https://issues.redhat.com/browse/OCPBUGS-5873): dashboard: use apiserver_storage_objects metric [#1432](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1432) * [API-1520](https://issues.redhat.com/browse/API-1520): Update SLO alerts based on upstream improvements [#1431](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1431) * [WRKLDS-649](https://issues.redhat.com/browse/WRKLDS-649): Guard pod set readiness probe endpoint explicitly [#1437](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1437) * update APIRemovedInNextRelease alerts [#1436](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1436) * [OCPBUGS-6202](https://issues.redhat.com/browse/OCPBUGS-6202): Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1415](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1415) * [OCPBUGS-6258](https://issues.redhat.com/browse/OCPBUGS-6258): bump(k8s): 1.26.1 [#1433](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1433) * increase audit log size to contain an entire upgrade+e2e run [#1430](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1430) * [OCPBUGS-3985](https://issues.redhat.com/browse/OCPBUGS-3985): enable pod security admission for techpreview [#1403](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1403) * [OCPBUGS-272](https://issues.redhat.com/browse/OCPBUGS-272): Remove duplicate find word in error msg for degraded webhook [#1428](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1428) * Fix typo in PodSecurityViolation alert's description [#1391](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1391) * make the bootstrap kube-apiserver honor cluster-wide featuregates [#1419](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1419) * remove use of deprecated klog flags [#1427](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1427) * Revert "drop log-file flag removed in 1.26" [#1425](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1425) * make api team approver [#1377](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1377) * drop log-file flag removed in 1.26 [#1420](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1420) * bump(api) [#1418](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1418) * Drop flags removed in k8s 1.26 [#1417](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1417) * [OCPBUGS-3041](https://issues.redhat.com/browse/OCPBUGS-3041): guard controller: set an explicit hostname to avoid name collisions [#1410](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1410) * [STOR-829](https://issues.redhat.com/browse/STOR-829): Enable CSIInlineVolumeSecurity admission plugin [#1385](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1385) * [OCPBUGS-3985](https://issues.redhat.com/browse/OCPBUGS-3985): update for featureset rendering [#1409](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1409) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#1408](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1408) * bootstrap-kube-apiserver: specify resources.requests [#1398](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1398) * [OCPBUGS-1601](https://issues.redhat.com/browse/OCPBUGS-1601): CVE-2022-3259: enable HSTS for kube-apiserver [#1392](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1392) * [Bug 2100429](https://bugzilla.redhat.com/show_bug.cgi?id=2100429): Allow ephemeral volumes in all SCCs [#1380](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1380) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/336ffd5e7491f565faccf843571303377b1d4825...) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/73f7ea7014f57cc37d6f2c720d3bcc00c7d4718b) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#699](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/699) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/9243e022c42c6d55e1d97a15ed51831f6080984a...73f7ea7014f57cc37d6f2c720d3bcc00c7d4718b) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/845ae423e831b1cacf0bcae5e6528f1d21b5ddf2) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard controller: set the readiness probe endpoint explicitly [#462](https://github.com/openshift/cluster-kube-scheduler-operator/pull/462) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/e0b6bf9c4ddb0da9268d504d23ca2ca11880d970...845ae423e831b1cacf0bcae5e6528f1d21b5ddf2) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/) * [OCPBUGS-29567](https://issues.redhat.com/browse/OCPBUGS-29567): Apply hypershift cluster-profile for ibm-cloud-managed [#106](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/106) * [OCPBUGS-27930](https://issues.redhat.com/browse/OCPBUGS-27930): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.16 [#103](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/103) * [OCPBUGS-24989](https://issues.redhat.com/browse/OCPBUGS-24989): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART [#101](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/101) * [OCPBUGS-21738](https://issues.redhat.com/browse/OCPBUGS-21738): bump library-go to include switch to HTTP/1.1 [#95](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/95) * [OCPBUGS-19253](https://issues.redhat.com/browse/OCPBUGS-19253): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#94](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/94) * Revert "specify master node selector on migrator pod" [#93](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/93) * [OCPBUGS-17170](https://issues.redhat.com/browse/OCPBUGS-17170): specify master node selector on migrator pod [#92](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/92) * [OCPBUGS-16513](https://issues.redhat.com/browse/OCPBUGS-16513): bump(*): update to 1.27.1 [#91](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/91) * Fix operator doc in README [#90](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/90) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#89](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/89) * [OCPBUGS-6240](https://issues.redhat.com/browse/OCPBUGS-6240): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#87](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/87) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/12d050abd0cf37dae8973d453930bcf494a2499b...) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/) * [OCPBUGS-29568](https://issues.redhat.com/browse/OCPBUGS-29568): Apply hypershift cluster-profile for ibm-cloud-managed [#229](https://github.com/openshift/cluster-machine-approver/pull/229) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#227](https://github.com/openshift/cluster-machine-approver/pull/227) * [OCPBUGS-26116](https://issues.redhat.com/browse/OCPBUGS-26116): Add Snyk file to exclude vendor directory on scan [#225](https://github.com/openshift/cluster-machine-approver/pull/225) * [OCPCLOUD-2417](https://issues.redhat.com/browse/OCPCLOUD-2417): Update to kube 1.29 and controller-runtime 0.17.0 [#224](https://github.com/openshift/cluster-machine-approver/pull/224) * [OCPBUGS-23544](https://issues.redhat.com/browse/OCPBUGS-23544): Increase concurrent reconciles to 10 [#222](https://github.com/openshift/cluster-machine-approver/pull/222) * [OCPBUGS-25582](https://issues.redhat.com/browse/OCPBUGS-25582): Updating ose-cluster-machine-approver-container image to be consistent with ART [#223](https://github.com/openshift/cluster-machine-approver/pull/223) * [OCPBUGS-24985](https://issues.redhat.com/browse/OCPBUGS-24985): Updating ose-cluster-machine-approver-container image to be consistent with ART [#218](https://github.com/openshift/cluster-machine-approver/pull/218) * [OCPBUGS-24154](https://issues.redhat.com/browse/OCPBUGS-24154): Updating ose-cluster-machine-approver-container image to be consistent with ART [#217](https://github.com/openshift/cluster-machine-approver/pull/217) * [OCPCLOUD-2277](https://issues.redhat.com/browse/OCPCLOUD-2277): Ensure Cluster Machine Approver metrics are only available via HTTPS [#211](https://github.com/openshift/cluster-machine-approver/pull/211) * [OCPBUGS-21594](https://issues.redhat.com/browse/OCPBUGS-21594): Filter non node CSRs in metrics [#208](https://github.com/openshift/cluster-machine-approver/pull/208) * [OCPBUGS-21793](https://issues.redhat.com/browse/OCPBUGS-21793): Bump x/net package to v0.17.0 [#204](https://github.com/openshift/cluster-machine-approver/pull/204) * Update OWNERS [#205](https://github.com/openshift/cluster-machine-approver/pull/205) * [OCPBUGS-19250](https://issues.redhat.com/browse/OCPBUGS-19250): Updating ose-cluster-machine-approver images to be consistent with ART [#201](https://github.com/openshift/cluster-machine-approver/pull/201) * [OCPCLOUD-2181](https://issues.redhat.com/browse/OCPCLOUD-2181): Update K8s dependencies to 1.28 [#203](https://github.com/openshift/cluster-machine-approver/pull/203) * [OCPBUGS-17090](https://issues.redhat.com/browse/OCPBUGS-17090): Set logger for controller runtime [#200](https://github.com/openshift/cluster-machine-approver/pull/200) * [OCPBUGS-18338](https://issues.redhat.com/browse/OCPBUGS-18338): Fix CI by running tests natively by default [#199](https://github.com/openshift/cluster-machine-approver/pull/199) * [OCPBUGS-16156](https://issues.redhat.com/browse/OCPBUGS-16156): check if machine api present [#198](https://github.com/openshift/cluster-machine-approver/pull/198) * handle situation when machine CRD is not present [#191](https://github.com/openshift/cluster-machine-approver/pull/191) * [OCPCLOUD-2044](https://issues.redhat.com/browse/OCPCLOUD-2044): Update to Kubernetes 1.27 deps [#195](https://github.com/openshift/cluster-machine-approver/pull/195) * [OCPBUGS-10171](https://issues.redhat.com/browse/OCPBUGS-10171): Go 1.20 bump with fixed unit tests [#194](https://github.com/openshift/cluster-machine-approver/pull/194) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update node client allowed usages [#189](https://github.com/openshift/cluster-machine-approver/pull/189) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update isNodeClientCert to allow for new key usages [#186](https://github.com/openshift/cluster-machine-approver/pull/186) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): approver: fix ECDSA approvals in 1.27 [#184](https://github.com/openshift/cluster-machine-approver/pull/184) * Update TLS Bootstrapping doc links in README [#182](https://github.com/openshift/cluster-machine-approver/pull/182) * Updating ose-cluster-machine-approver images to be consistent with ART [#180](https://github.com/openshift/cluster-machine-approver/pull/180) * Update OWNERS [#179](https://github.com/openshift/cluster-machine-approver/pull/179) * : Update tooling for CMA [#178](https://github.com/openshift/cluster-machine-approver/pull/178) * [OCPCLOUD-1805](https://issues.redhat.com/browse/OCPCLOUD-1805): Port to ginkgo v2 [#176](https://github.com/openshift/cluster-machine-approver/pull/176) * Updating ose-cluster-machine-approver images to be consistent with ART [#174](https://github.com/openshift/cluster-machine-approver/pull/174) * Update OWNERS [#177](https://github.com/openshift/cluster-machine-approver/pull/177) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/60081982654993534de29d224d6a42c251762420...) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/) * [MON-3771](https://issues.redhat.com/browse/MON-3771): update Prometheus operator to v0.72.0 [#2288](https://github.com/openshift/cluster-monitoring-operator/pull/2288) * [MON-3498](https://issues.redhat.com/browse/MON-3498): Modify prometheus-adapter e2e tests to compact with metrics server [#2196](https://github.com/openshift/cluster-monitoring-operator/pull/2196) * [OCPBUGS-30257](https://issues.redhat.com/browse/OCPBUGS-30257): Making sure proxy settings are correctly forwarded in the generated remote write configs [#2269](https://github.com/openshift/cluster-monitoring-operator/pull/2269) * [OCPNODE-2100](https://issues.redhat.com/browse/OCPNODE-2100): jsonnet: update crio port to TLS port 9637 [#2257](https://github.com/openshift/cluster-monitoring-operator/pull/2257) * [MON-3694](https://issues.redhat.com/browse/MON-3694): chore: encourage the use of the new 'slices' package instead of 'golang.org/x/exp/slices' [#2243](https://github.com/openshift/cluster-monitoring-operator/pull/2243) * [MON-3748](https://issues.redhat.com/browse/MON-3748): Enable audit logs by default for metrics-server [#2280](https://github.com/openshift/cluster-monitoring-operator/pull/2280) * [MON-3380](https://issues.redhat.com/browse/MON-3380): adjust prometheus-k8s service openshift.io/description [#2279](https://github.com/openshift/cluster-monitoring-operator/pull/2279) * [MON-3747](https://issues.redhat.com/browse/MON-3747): Increase e2e test timeout to 150 min [#2278](https://github.com/openshift/cluster-monitoring-operator/pull/2278) * [MON-3381](https://issues.redhat.com/browse/MON-3381): replace OAuth proxy for Alertmanager [#2260](https://github.com/openshift/cluster-monitoring-operator/pull/2260) * [OCPBUGS-28246](https://issues.redhat.com/browse/OCPBUGS-28246): fix Thanos ruler alert generator url [#2267](https://github.com/openshift/cluster-monitoring-operator/pull/2267) * [MON-3706](https://issues.redhat.com/browse/MON-3706): Revert "chore: poll immediately in the e2e tests" [#2271](https://github.com/openshift/cluster-monitoring-operator/pull/2271) * [MON-3717](https://issues.redhat.com/browse/MON-3717): pkg/client.go: make some CreateOrUpdateXXX functions use library-go’s resourceapply utils. [#2226](https://github.com/openshift/cluster-monitoring-operator/pull/2226) * [MON-3717](https://issues.redhat.com/browse/MON-3717): update library-go to get https://github.com/openshift/libra… [#2266](https://github.com/openshift/cluster-monitoring-operator/pull/2266) * [MON-3380](https://issues.redhat.com/browse/MON-3380): re-add kube-rbac-proxy for /metrics and /federate [#2261](https://github.com/openshift/cluster-monitoring-operator/pull/2261) * [MON-3172](https://issues.redhat.com/browse/MON-3172): describe monitoring services [#2188](https://github.com/openshift/cluster-monitoring-operator/pull/2188) * [MON-3706](https://issues.redhat.com/browse/MON-3706): chore: poll immediately in the e2e tests [#2258](https://github.com/openshift/cluster-monitoring-operator/pull/2258) * [MON-3380](https://issues.redhat.com/browse/MON-3380): replace OAuth proxy for prometheus-k8s [#2246](https://github.com/openshift/cluster-monitoring-operator/pull/2246) * [OCPBUGS-18326](https://issues.redhat.com/browse/OCPBUGS-18326): add Console cap annotation to dashboards [#2254](https://github.com/openshift/cluster-monitoring-operator/pull/2254) * [TRT-1489](https://issues.redhat.com/browse/TRT-1489): Revert "jsonnet: update crio port to TLS port 9637" [#2255](https://github.com/openshift/cluster-monitoring-operator/pull/2255) * [OCPNODE-2022](https://issues.redhat.com/browse/OCPNODE-2022): jsonnet: update crio port to TLS port 9637 [#2229](https://github.com/openshift/cluster-monitoring-operator/pull/2229) * [MON-3705](https://issues.redhat.com/browse/MON-3705): [bot] Update jsonnet dependencies [#2208](https://github.com/openshift/cluster-monitoring-operator/pull/2208) * [MON-3699](https://issues.redhat.com/browse/MON-3699): chore: merge OmitFromDoc with HideFromDoc introduced in https://github.com/https://github.com/openshift/cluster-monitoring-operator/pull/2210 to hide fields from the doc [#2247](https://github.com/openshift/cluster-monitoring-operator/pull/2247) * [MON-3697](https://issues.redhat.com/browse/MON-3697): use `maximumStartupDurationSeconds` instead of container patch [#2251](https://github.com/openshift/cluster-monitoring-operator/pull/2251) * [OCPBUGS-28246](https://issues.redhat.com/browse/OCPBUGS-28246): fix: set externalURL in UWM Prometheus [#2250](https://github.com/openshift/cluster-monitoring-operator/pull/2250) * [MON-3689](https://issues.redhat.com/browse/MON-3689): Synchronize versions of the downstream components [#2245](https://github.com/openshift/cluster-monitoring-operator/pull/2245) * [OCPBUGS-27289](https://issues.redhat.com/browse/OCPBUGS-27289): followup of https://github.com/openshift/cluster-monitoring-operator/pull/2242 [#2244](https://github.com/openshift/cluster-monitoring-operator/pull/2244) * [STOR-1289](https://issues.redhat.com/browse/STOR-1289): Move vSphere prometheus rules to cluster-storage-operator [#2235](https://github.com/openshift/cluster-monitoring-operator/pull/2235) * [OCPBUGS-27289](https://issues.redhat.com/browse/OCPBUGS-27289): rollout metrics-server on cert rotations [#2242](https://github.com/openshift/cluster-monitoring-operator/pull/2242) * [OCPBUGS-27213](https://issues.redhat.com/browse/OCPBUGS-27213): Adjust lastError injection to wait.PollUntilContextTimeout's final error [#2234](https://github.com/openshift/cluster-monitoring-operator/pull/2234) * [MON-3676](https://issues.redhat.com/browse/MON-3676): move raptorsun out of reviewer list [#2240](https://github.com/openshift/cluster-monitoring-operator/pull/2240) * [MON-3673](https://issues.redhat.com/browse/MON-3673): [bot] Synchronize versions of the downstream components [#2238](https://github.com/openshift/cluster-monitoring-operator/pull/2238) * [MON-2853](https://issues.redhat.com/browse/MON-2853): add runbook link to TargetDown alert [#2237](https://github.com/openshift/cluster-monitoring-operator/pull/2237) * [MON-3661](https://issues.redhat.com/browse/MON-3661): [bot] Synchronize versions of the downstream components [#2236](https://github.com/openshift/cluster-monitoring-operator/pull/2236) * [OCPBUGS-26983](https://issues.redhat.com/browse/OCPBUGS-26983): rollout monitoring plugin on TLS rotation [#2233](https://github.com/openshift/cluster-monitoring-operator/pull/2233) * [MON-3661](https://issues.redhat.com/browse/MON-3661): chore: update Prometheus operator to v0.71.0 [#2230](https://github.com/openshift/cluster-monitoring-operator/pull/2230) * [MON-3667](https://issues.redhat.com/browse/MON-3667): remove outdated documentation [#2232](https://github.com/openshift/cluster-monitoring-operator/pull/2232) * [OCPBUGS-25849](https://issues.redhat.com/browse/OCPBUGS-25849): make PrometheusAdapter and MetricsServer tasks less conflict prone [#2218](https://github.com/openshift/cluster-monitoring-operator/pull/2218) * [OCPBUGS-25378](https://issues.redhat.com/browse/OCPBUGS-25378): drop InfoInhibitor from default Alertmanager config [#2225](https://github.com/openshift/cluster-monitoring-operator/pull/2225) * [MON-3664](https://issues.redhat.com/browse/MON-3664): chore: avoid issues with std.set* functions [#2231](https://github.com/openshift/cluster-monitoring-operator/pull/2231) * [MON-3654](https://issues.redhat.com/browse/MON-3654): use Go standard errors package instead of github.com/pkg/errors [#2224](https://github.com/openshift/cluster-monitoring-operator/pull/2224) * [MON-1047](https://issues.redhat.com/browse/MON-1047): fix: add terminationMessagePolicy: FallbackToLogsOnError to all conta… [#2228](https://github.com/openshift/cluster-monitoring-operator/pull/2228) * [MON-3552](https://issues.redhat.com/browse/MON-3552): remove temporary cleanup code and no longer needed tests [#2210](https://github.com/openshift/cluster-monitoring-operator/pull/2210) * [MON-3650](https://issues.redhat.com/browse/MON-3650): Synchronize versions of the downstream components [#2222](https://github.com/openshift/cluster-monitoring-operator/pull/2222) * [MON-3649](https://issues.redhat.com/browse/MON-3649): Synchronize versions of the downstream components [#2221](https://github.com/openshift/cluster-monitoring-operator/pull/2221) * [MON-3644](https://issues.redhat.com/browse/MON-3644): Ease the tracking of monitoring components versions. [#2220](https://github.com/openshift/cluster-monitoring-operator/pull/2220) * [OCPBUGS-25803](https://issues.redhat.com/browse/OCPBUGS-25803): make CMO ConsolePluginComponents task resilient to dependencies [#2193](https://github.com/openshift/cluster-monitoring-operator/pull/2193) * [OCPBUGS-25676](https://issues.redhat.com/browse/OCPBUGS-25676): fix(tasks): adjust 'trusted CA bundle ConfigMap' related logs for alertmanagers. [#2219](https://github.com/openshift/cluster-monitoring-operator/pull/2219) * [MON-3633](https://issues.redhat.com/browse/MON-3633): Synchronize versions of the downstream components [#2214](https://github.com/openshift/cluster-monitoring-operator/pull/2214) * [OCPBUGS-24977](https://issues.redhat.com/browse/OCPBUGS-24977): Updating cluster-monitoring-operator-container image to be consistent with ART [#2211](https://github.com/openshift/cluster-monitoring-operator/pull/2211) * [OCPBUGS-25403](https://issues.redhat.com/browse/OCPBUGS-25403): go.mod update k8s.io/api* to v0.29.0 [#2205](https://github.com/openshift/cluster-monitoring-operator/pull/2205) * [MON-3589](https://issues.redhat.com/browse/MON-3589): Refactor assertExemplarsEnabled check for UWM Prometheus xand add a check for --scrape.timestamp-tolerance on Platform Prometheus [#2194](https://github.com/openshift/cluster-monitoring-operator/pull/2194) * [OCPBUGS-24977](https://issues.redhat.com/browse/OCPBUGS-24977): use 1.20 in go.mod [#2199](https://github.com/openshift/cluster-monitoring-operator/pull/2199) * [MON-3592](https://issues.redhat.com/browse/MON-3592): Use strict yaml unmarshaling [#2195](https://github.com/openshift/cluster-monitoring-operator/pull/2195) * [OCPBUGS-25025](https://issues.redhat.com/browse/OCPBUGS-25025): go.mod: bump prometheus-operator to v0.70.0 [#2191](https://github.com/openshift/cluster-monitoring-operator/pull/2191) * [OCPBUGS-24977](https://issues.redhat.com/browse/OCPBUGS-24977): Updating cluster-monitoring-operator-container image to be consistent with ART [#2190](https://github.com/openshift/cluster-monitoring-operator/pull/2190) * [OCPBUGS-24630](https://issues.redhat.com/browse/OCPBUGS-24630): additionalArgs: list items must have named fields [#2189](https://github.com/openshift/cluster-monitoring-operator/pull/2189) * [MON-3553](https://issues.redhat.com/browse/MON-3553): Set scrape.timestamp tolerance [#2187](https://github.com/openshift/cluster-monitoring-operator/pull/2187) * [OCPBUGS-23516](https://issues.redhat.com/browse/OCPBUGS-23516): prevent plugin entry assets from caching [#2186](https://github.com/openshift/cluster-monitoring-operator/pull/2186) * [OCPBUGS-21610](https://issues.redhat.com/browse/OCPBUGS-21610): Detect ipv4/ipv6 socket in pod ip for nginx conf [#2173](https://github.com/openshift/cluster-monitoring-operator/pull/2173) * [MON-3134](https://issues.redhat.com/browse/MON-3134): allow to query alerts from thanos-querier tenancy port [#2184](https://github.com/openshift/cluster-monitoring-operator/pull/2184) * [MON-3551](https://issues.redhat.com/browse/MON-3551): fix: simplify jq script avoids error with jq1.7 [#2180](https://github.com/openshift/cluster-monitoring-operator/pull/2180) * [MON-3454](https://issues.redhat.com/browse/MON-3454): Add track timestamps staleness [#2160](https://github.com/openshift/cluster-monitoring-operator/pull/2160) * [OCPBUGS-24212](https://issues.redhat.com/browse/OCPBUGS-24212): Add ownership annotation for certificates [#2158](https://github.com/openshift/cluster-monitoring-operator/pull/2158) * [MON-3379](https://issues.redhat.com/browse/MON-3379): Replace the oauth-proxy before thanos-querier with kube-rbac-proxy [#2136](https://github.com/openshift/cluster-monitoring-operator/pull/2136) * [MON-3544](https://issues.redhat.com/browse/MON-3544): Adjust NodeClock* alerting rules to work with PTP operator [#2182](https://github.com/openshift/cluster-monitoring-operator/pull/2182) * [OCPBUGS-23745](https://issues.redhat.com/browse/OCPBUGS-23745): Wait for 3 (instead of 2) consecutive failing reconcil… [#2179](https://github.com/openshift/cluster-monitoring-operator/pull/2179) * [MON-3548](https://issues.redhat.com/browse/MON-3548): [bot] Synchronize versions of the downstream components [#2183](https://github.com/openshift/cluster-monitoring-operator/pull/2183) * [MON-3543](https://issues.redhat.com/browse/MON-3543): Update API docs for Metrics Server [#2181](https://github.com/openshift/cluster-monitoring-operator/pull/2181) * [OCPBUGS-24323](https://issues.redhat.com/browse/OCPBUGS-24323): synchronize versions of the downstream components [#2174](https://github.com/openshift/cluster-monitoring-operator/pull/2174) * [OCPBUGS-24340](https://issues.redhat.com/browse/OCPBUGS-24340): patch securityContext for Thanos querier [#2178](https://github.com/openshift/cluster-monitoring-operator/pull/2178) * [OCPBUGS-24323](https://issues.redhat.com/browse/OCPBUGS-24323): update prometheus-operator jsonnet to v0.70.0 [#2177](https://github.com/openshift/cluster-monitoring-operator/pull/2177) * [MON-3287](https://issues.redhat.com/browse/MON-3287): Remove openshift-etcd related RBAC as they will be manager by [#2165](https://github.com/openshift/cluster-monitoring-operator/pull/2165) * [OCPBUGS-21610](https://issues.redhat.com/browse/OCPBUGS-21610): revert #2166 [#2172](https://github.com/openshift/cluster-monitoring-operator/pull/2172) * [MON-3524](https://issues.redhat.com/browse/MON-3524): Update metrics-server in CHANGELOG and README [#2169](https://github.com/openshift/cluster-monitoring-operator/pull/2169) * [MON-3533](https://issues.redhat.com/browse/MON-3533): Update cluster:kube_persistentvolume_plugin_type_counts:sum [#2171](https://github.com/openshift/cluster-monitoring-operator/pull/2171) * [STOR-1277](https://issues.redhat.com/browse/STOR-1277): Add SELinux metrics to telemetry [#2155](https://github.com/openshift/cluster-monitoring-operator/pull/2155) * [MON-3500](https://issues.redhat.com/browse/MON-3500): Enable sending exemplars over RW in UWM [#2161](https://github.com/openshift/cluster-monitoring-operator/pull/2161) * [OCPBUGS-21610](https://issues.redhat.com/browse/OCPBUGS-21610): Change config to allow ipv6/4 [#2166](https://github.com/openshift/cluster-monitoring-operator/pull/2166) * [MON-3511](https://issues.redhat.com/browse/MON-3511): hack/local-cmo.sh: pass desired version in cmo run command [#2168](https://github.com/openshift/cluster-monitoring-operator/pull/2168) * [MON-3211](https://issues.redhat.com/browse/MON-3211): Implement switching to metrics-server [#2022](https://github.com/openshift/cluster-monitoring-operator/pull/2022) * [MON-3505](https://issues.redhat.com/browse/MON-3505): move aggregated-metrics-reader role to cmo jsonnet [#2163](https://github.com/openshift/cluster-monitoring-operator/pull/2163) * [MON-3503](https://issues.redhat.com/browse/MON-3503): Synchronize versions of the downstream components [#2162](https://github.com/openshift/cluster-monitoring-operator/pull/2162) * [OCPBUGS-23495](https://issues.redhat.com/browse/OCPBUGS-23495): Change UWM Prometheus' kube-rbac-proxy-thanos port num… [#2164](https://github.com/openshift/cluster-monitoring-operator/pull/2164) * [MON-3479](https://issues.redhat.com/browse/MON-3479): update Prometheus operator assets to v0.69.1 [#2152](https://github.com/openshift/cluster-monitoring-operator/pull/2152) * [MON-3503](https://issues.redhat.com/browse/MON-3503): Synchronize versions of the downstream components [#2150](https://github.com/openshift/cluster-monitoring-operator/pull/2150) * [MON-3421](https://issues.redhat.com/browse/MON-3421): improve the detection of CMO unavailability/degradation due to U… [#2129](https://github.com/openshift/cluster-monitoring-operator/pull/2129) * [MON-3476](https://issues.redhat.com/browse/MON-3476): Add code block to check FeatureGate status [#2151](https://github.com/openshift/cluster-monitoring-operator/pull/2151) * [OCPBUGS-17035](https://issues.redhat.com/browse/OCPBUGS-17035): fix KRP permissions for Thanos Querier [#2057](https://github.com/openshift/cluster-monitoring-operator/pull/2057) * [OCPBUGS-22742](https://issues.redhat.com/browse/OCPBUGS-22742): go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to 0.44.0 [#2138](https://github.com/openshift/cluster-monitoring-operator/pull/2138) * [OCPBUGS-21621](https://issues.redhat.com/browse/OCPBUGS-21621): Set the new --disable-http2 flag for prometheus-adapter to disable HTTP2 [#2145](https://github.com/openshift/cluster-monitoring-operator/pull/2145) * [MON-3398](https://issues.redhat.com/browse/MON-3398): Add RHACM telemetry metric [#2100](https://github.com/openshift/cluster-monitoring-operator/pull/2100) * Synchronize versions of the downstream components [#2135](https://github.com/openshift/cluster-monitoring-operator/pull/2135) * Fix UWM alert access permissions [#2131](https://github.com/openshift/cluster-monitoring-operator/pull/2131) * Synchronize versions of the downstream components [#2133](https://github.com/openshift/cluster-monitoring-operator/pull/2133) * [OCPBUGS-4069](https://issues.redhat.com/browse/OCPBUGS-4069): Prometheus Adatper takes metrics from kubelet job only. [#2117](https://github.com/openshift/cluster-monitoring-operator/pull/2117) * [MON-3422](https://issues.redhat.com/browse/MON-3422): Remove temporary no more needed code [#2132](https://github.com/openshift/cluster-monitoring-operator/pull/2132) * fix: force HTTP/1.1 connections [#2128](https://github.com/openshift/cluster-monitoring-operator/pull/2128) * [OCPVE-711](https://issues.redhat.com/browse/OCPVE-711): feat: add olm capability annotation [#2105](https://github.com/openshift/cluster-monitoring-operator/pull/2105) * [OCPBUGS-21631](https://issues.redhat.com/browse/OCPBUGS-21631): upgrade golang.org/x/net to v0.17.0 [#2120](https://github.com/openshift/cluster-monitoring-operator/pull/2120) * [OCPBUGS-18326](https://issues.redhat.com/browse/OCPBUGS-18326): revert previous fix to avoid activating console capability during update [#2118](https://github.com/openshift/cluster-monitoring-operator/pull/2118) * [MON-3286](https://issues.redhat.com/browse/MON-3286): Remove no longer needed code. [#2116](https://github.com/openshift/cluster-monitoring-operator/pull/2116) * [OCPBUGS-17850](https://issues.redhat.com/browse/OCPBUGS-17850): replace nonResourceURLs permissions by subresource [#2099](https://github.com/openshift/cluster-monitoring-operator/pull/2099) * Synchronize versions of the downstream components [#2115](https://github.com/openshift/cluster-monitoring-operator/pull/2115) * Update jsonnet dependencies [#2076](https://github.com/openshift/cluster-monitoring-operator/pull/2076) * OWNERS: remove sthaha [#2114](https://github.com/openshift/cluster-monitoring-operator/pull/2114) * build: add `-e` to `go list` command to install tools [#2112](https://github.com/openshift/cluster-monitoring-operator/pull/2112) * Change kube-rbac-proxy-thanos port [#2113](https://github.com/openshift/cluster-monitoring-operator/pull/2113) * [OCPBUGS-11344](https://issues.redhat.com/browse/OCPBUGS-11344): alertmanager: use alertmanager CRD's automountServiceAccountToken option [#2111](https://github.com/openshift/cluster-monitoring-operator/pull/2111) * Remove deprecated ioutil [#2108](https://github.com/openshift/cluster-monitoring-operator/pull/2108) * [OCPBUGS-18326](https://issues.redhat.com/browse/OCPBUGS-18326): add console capability annotation to dashboards and monitoring-plugin. [#2101](https://github.com/openshift/cluster-monitoring-operator/pull/2101) * [MON-3302](https://issues.redhat.com/browse/MON-3302): add RHACS telemetry metrics [#2062](https://github.com/openshift/cluster-monitoring-operator/pull/2062) * add `machine424` and `rexagod` to OWNERS [#2083](https://github.com/openshift/cluster-monitoring-operator/pull/2083) * Remove bparees from approvers [#2104](https://github.com/openshift/cluster-monitoring-operator/pull/2104) * Revert "feat: add olm capability annotation" [#2103](https://github.com/openshift/cluster-monitoring-operator/pull/2103) * [MON-3270](https://issues.redhat.com/browse/MON-3270): Add kube-metrics-server to image-references [#2102](https://github.com/openshift/cluster-monitoring-operator/pull/2102) * [OCPVE-711](https://issues.redhat.com/browse/OCPVE-711): feat: add olm capability annotation [#2095](https://github.com/openshift/cluster-monitoring-operator/pull/2095) * chore: fix imports order [#2098](https://github.com/openshift/cluster-monitoring-operator/pull/2098) * Set Thanos version in the Thanos Ruler spec [#2094](https://github.com/openshift/cluster-monitoring-operator/pull/2094) * [OCPBUGS-19237](https://issues.redhat.com/browse/OCPBUGS-19237): Updating cluster-monitoring-operator images to be consistent with ART [#2084](https://github.com/openshift/cluster-monitoring-operator/pull/2084) * Synchronize versions of the downstream components [#2093](https://github.com/openshift/cluster-monitoring-operator/pull/2093) * Synchronize versions of the downstream components [#2089](https://github.com/openshift/cluster-monitoring-operator/pull/2089) * [MON-3383](https://issues.redhat.com/browse/MON-3383): Remove weak cryptograhic primitive usage [#2086](https://github.com/openshift/cluster-monitoring-operator/pull/2086) * [OCPBUGS-18390](https://issues.redhat.com/browse/OCPBUGS-18390): jsonnet/rules: exclude -1 from etcd objects count [#2081](https://github.com/openshift/cluster-monitoring-operator/pull/2081) * [OCPBUGS-19059](https://issues.redhat.com/browse/OCPBUGS-19059): Enable ipv6 on monitoring-plugin nginx [#2090](https://github.com/openshift/cluster-monitoring-operator/pull/2090) * [MON-3376](https://issues.redhat.com/browse/MON-3376): Remove deprecated --logtostderr argument [#2077](https://github.com/openshift/cluster-monitoring-operator/pull/2077) * [OCPBUGS-19356](https://issues.redhat.com/browse/OCPBUGS-19356): Topology spread constraints admission webhook [#2073](https://github.com/openshift/cluster-monitoring-operator/pull/2073) * [OCPBUGS-17682](https://issues.redhat.com/browse/OCPBUGS-17682): add topologySpreadConstraints to UWM prometheus operator [#2072](https://github.com/openshift/cluster-monitoring-operator/pull/2072) * Synchronize versions of the downstream components [#2082](https://github.com/openshift/cluster-monitoring-operator/pull/2082) * [MON-2642](https://issues.redhat.com/browse/MON-2642): Improve e2e tests for alertrelabelconfigs CRD [#2080](https://github.com/openshift/cluster-monitoring-operator/pull/2080) * [MON-3304](https://issues.redhat.com/browse/MON-3304): Add option to specify resource limits for all components [#2067](https://github.com/openshift/cluster-monitoring-operator/pull/2067) * [OCPBUGS-17690](https://issues.redhat.com/browse/OCPBUGS-17690): remove deprecated argument [#2075](https://github.com/openshift/cluster-monitoring-operator/pull/2075) * [OCPBUGS-17691](https://issues.redhat.com/browse/OCPBUGS-17691): replace outdated repository link [#2074](https://github.com/openshift/cluster-monitoring-operator/pull/2074) * [MON-2641](https://issues.redhat.com/browse/MON-2641): Add e2e tests for AlertingRule controller [#2054](https://github.com/openshift/cluster-monitoring-operator/pull/2054) * Add telemeter client SA to rbac proxy [#2043](https://github.com/openshift/cluster-monitoring-operator/pull/2043) * [OCPBUGS-1062](https://issues.redhat.com/browse/OCPBUGS-1062): update webhook configuration only if required [#2065](https://github.com/openshift/cluster-monitoring-operator/pull/2065) * [MON-988](https://issues.redhat.com/browse/MON-988): remove alert "MultipleContainersOOMKilled" [#2071](https://github.com/openshift/cluster-monitoring-operator/pull/2071) * Remove deprecated visual_web_terminal_sessions metric [#2059](https://github.com/openshift/cluster-monitoring-operator/pull/2059) * [OCPBUGS-17487](https://issues.redhat.com/browse/OCPBUGS-17487): fix typo for ThanosRulerConfig.Resources [#2070](https://github.com/openshift/cluster-monitoring-operator/pull/2070) * Update jsonnet dependencies [#2063](https://github.com/openshift/cluster-monitoring-operator/pull/2063) * [OCPBUGS-17346](https://issues.redhat.com/browse/OCPBUGS-17346): Avoid recreating some resources, created by prometheus-operator, during 4.13->4.14 upgrade [#2066](https://github.com/openshift/cluster-monitoring-operator/pull/2066) * [MON-3291](https://issues.redhat.com/browse/MON-3291): Adjust node-exporter's MaxProcs documentation now that we s… [#2055](https://github.com/openshift/cluster-monitoring-operator/pull/2055) * Synchronize versions of the downstream components [#2061](https://github.com/openshift/cluster-monitoring-operator/pull/2061) * [MON-3093](https://issues.redhat.com/browse/MON-3093): fix single node replica issue [#2060](https://github.com/openshift/cluster-monitoring-operator/pull/2060) * [OCPBUGS-17191](https://issues.redhat.com/browse/OCPBUGS-17191): add namespace label to alerting rules [#2058](https://github.com/openshift/cluster-monitoring-operator/pull/2058) * Synchronize versions of the downstream components [#2056](https://github.com/openshift/cluster-monitoring-operator/pull/2056) * [MON-2645](https://issues.redhat.com/browse/MON-2645): remove unnecessary RBAC permissions [#2051](https://github.com/openshift/cluster-monitoring-operator/pull/2051) * Synchronize versions of the downstream components [#2052](https://github.com/openshift/cluster-monitoring-operator/pull/2052) * [OCPBUGS-10699](https://issues.redhat.com/browse/OCPBUGS-10699): remove Kube*QuotaOvercommit alerts [#2049](https://github.com/openshift/cluster-monitoring-operator/pull/2049) * [MON-2645](https://issues.redhat.com/browse/MON-2645): remove unused rebalancer code [#2048](https://github.com/openshift/cluster-monitoring-operator/pull/2048) * Synchronize versions of the downstream components [#2050](https://github.com/openshift/cluster-monitoring-operator/pull/2050) * Remove OADP metrics from the Telemetry [#2040](https://github.com/openshift/cluster-monitoring-operator/pull/2040) * [MON-669](https://issues.redhat.com/browse/MON-669): Remove etcd ServiceMonitors management code as they'll be no… [#2039](https://github.com/openshift/cluster-monitoring-operator/pull/2039) * [MON-3216](https://issues.redhat.com/browse/MON-3216): Add ownership labels to kube resources [#1986](https://github.com/openshift/cluster-monitoring-operator/pull/1986) * [MON-3177](https://issues.redhat.com/browse/MON-3177): Expose and propagate TopologySpreadConstraints for kube state metrics [#2026](https://github.com/openshift/cluster-monitoring-operator/pull/2026) * [OCPBUGS-16203](https://issues.redhat.com/browse/OCPBUGS-16203): correct docs for metric node_systemd_timer_last_trigger_seconds. [#2045](https://github.com/openshift/cluster-monitoring-operator/pull/2045) * [MON-3178](https://issues.redhat.com/browse/MON-3178): Expose and propagate TopologySpreadConstraints for prometheus-operator [#2033](https://github.com/openshift/cluster-monitoring-operator/pull/2033) * [MON-3274](https://issues.redhat.com/browse/MON-3274): collect the number of LIST and WATCH requests to the apiserver from telemetry [#2044](https://github.com/openshift/cluster-monitoring-operator/pull/2044) * [MON-2903](https://issues.redhat.com/browse/MON-2903): add nodeExporter.collectors.systemd settings. [#1892](https://github.com/openshift/cluster-monitoring-operator/pull/1892) * [MON-3179](https://issues.redhat.com/browse/MON-3179): Expose and propagate TopologySpreadConstraints for openshift state metrics [#2034](https://github.com/openshift/cluster-monitoring-operator/pull/2034) * [MON-3176](https://issues.redhat.com/browse/MON-3176): Expose and propagate TopologySpreadConstraints for prometheus-adapter [#2025](https://github.com/openshift/cluster-monitoring-operator/pull/2025) * [OCPBUGS-9835](https://issues.redhat.com/browse/OCPBUGS-9835): Add Content-Security-Policy headers to prometheus and alertmanager [#2012](https://github.com/openshift/cluster-monitoring-operator/pull/2012) * [MON-3182](https://issues.redhat.com/browse/MON-3182): Expose and propagate TopologySpreadConstraints for UWM alertmanager [#2037](https://github.com/openshift/cluster-monitoring-operator/pull/2037) * [MON-3180](https://issues.redhat.com/browse/MON-3180): Expose and propagate TopologySpreadConstraints for telemeter-client [#2017](https://github.com/openshift/cluster-monitoring-operator/pull/2017) * [MON-3183](https://issues.redhat.com/browse/MON-3183): Expose and propagate TopologySpreadConstraints for UWM prometheus [#2038](https://github.com/openshift/cluster-monitoring-operator/pull/2038) * [MON-3181](https://issues.redhat.com/browse/MON-3181): Expose and propagate TopologySpreadConstraints for thanos-querier [#2035](https://github.com/openshift/cluster-monitoring-operator/pull/2035) * [MON-3231](https://issues.redhat.com/browse/MON-3231): add metric for the configured profile [#2030](https://github.com/openshift/cluster-monitoring-operator/pull/2030) * [MON-3269](https://issues.redhat.com/browse/MON-3269): add nodeExporter.collectors.processes settings. [#2032](https://github.com/openshift/cluster-monitoring-operator/pull/2032) * [MON-3222](https://issues.redhat.com/browse/MON-3222): Make netdev/netclass interfaces configurable [#1963](https://github.com/openshift/cluster-monitoring-operator/pull/1963) * e2e-tests: ensure pod assertions find at least one pod [#2028](https://github.com/openshift/cluster-monitoring-operator/pull/2028) * test/e2e/framework: remove unused function [#2020](https://github.com/openshift/cluster-monitoring-operator/pull/2020) * [OCPBUGS-15440](https://issues.redhat.com/browse/OCPBUGS-15440): fix CMO to apply console-plugin pod.spec config [#2018](https://github.com/openshift/cluster-monitoring-operator/pull/2018) * chore: update dependencies [#2013](https://github.com/openshift/cluster-monitoring-operator/pull/2013) * [OCPBUGS-14922](https://issues.redhat.com/browse/OCPBUGS-14922): skip console-plugin installation if console CO is absent [#2011](https://github.com/openshift/cluster-monitoring-operator/pull/2011) * [OCPBUGS-12714](https://issues.redhat.com/browse/OCPBUGS-12714): turn on netlink mode of netclass collector for node exporter [#2015](https://github.com/openshift/cluster-monitoring-operator/pull/2015) * [MON-3249](https://issues.redhat.com/browse/MON-3249): Update telemeter-client to allow TLS through rbac proxy [#2005](https://github.com/openshift/cluster-monitoring-operator/pull/2005) * Synchronize versions of the downstream components [#2024](https://github.com/openshift/cluster-monitoring-operator/pull/2024) * [OCPBUGS-13153](https://issues.redhat.com/browse/OCPBUGS-13153): Limit the value of GOMAXPROCS on node-exporter. [#1996](https://github.com/openshift/cluster-monitoring-operator/pull/1996) * hack/local-cmo: show the correct logged-in user [#2019](https://github.com/openshift/cluster-monitoring-operator/pull/2019) * [MON-3253](https://issues.redhat.com/browse/MON-3253): refactor local-cmo.sh to use CMO SA by default [#2010](https://github.com/openshift/cluster-monitoring-operator/pull/2010) * test/e2e: validate CMO and UWM configs [#2006](https://github.com/openshift/cluster-monitoring-operator/pull/2006) * pkg/operator: reduce duplication in CSR controllers [#2007](https://github.com/openshift/cluster-monitoring-operator/pull/2007) * Synchronize versions of the downstream components [#2009](https://github.com/openshift/cluster-monitoring-operator/pull/2009) * [OCPBUGS-15210](https://issues.redhat.com/browse/OCPBUGS-15210): manifest: rename TP roleBinding to cluster-monitoring-operator-alert-… [#2008](https://github.com/openshift/cluster-monitoring-operator/pull/2008) * [MON-3127](https://issues.redhat.com/browse/MON-3127): add nodeExporter.collectors.ksmd settings. [#1931](https://github.com/openshift/cluster-monitoring-operator/pull/1931) * Synchronize versions of the downstream components [#2004](https://github.com/openshift/cluster-monitoring-operator/pull/2004) * [MON-3229](https://issues.redhat.com/browse/MON-3229): Remove the dependency on the apiserver auth [#1904](https://github.com/openshift/cluster-monitoring-operator/pull/1904) * Synchronize versions of the downstream components [#2003](https://github.com/openshift/cluster-monitoring-operator/pull/2003) * Fix link metrics [#1999](https://github.com/openshift/cluster-monitoring-operator/pull/1999) * [OCPBUGS-11958](https://issues.redhat.com/browse/OCPBUGS-11958): Add the trusted CA bundle in UWM Prometheus pods [#1970](https://github.com/openshift/cluster-monitoring-operator/pull/1970) * [OCPBUGS-14123](https://issues.redhat.com/browse/OCPBUGS-14123): make TestBodySizeLimit less flaky [#1991](https://github.com/openshift/cluster-monitoring-operator/pull/1991) * Update OWNERS list [#1951](https://github.com/openshift/cluster-monitoring-operator/pull/1951) * [MON-3113](https://issues.redhat.com/browse/MON-3113): add nodeExporter.collectors.mountstats settings. [#1936](https://github.com/openshift/cluster-monitoring-operator/pull/1936) * [OCPBUGS-12903](https://issues.redhat.com/browse/OCPBUGS-12903): Fix console metrics doc typo [#1997](https://github.com/openshift/cluster-monitoring-operator/pull/1997) * [OCPBUGS-14816](https://issues.redhat.com/browse/OCPBUGS-14816): Add misspell target in Makefile [#1994](https://github.com/openshift/cluster-monitoring-operator/pull/1994) * [OCPBUGS-14887](https://issues.redhat.com/browse/OCPBUGS-14887): [bot] Synchronize versions of the downstream components [#1995](https://github.com/openshift/cluster-monitoring-operator/pull/1995) * [MON-2967](https://issues.redhat.com/browse/MON-2967): CMO deploys monitoring console-plugin [#1890](https://github.com/openshift/cluster-monitoring-operator/pull/1890) * [OCPBUGS-14772](https://issues.redhat.com/browse/OCPBUGS-14772): Add federate-client-certs [#1990](https://github.com/openshift/cluster-monitoring-operator/pull/1990) * [OCPBUGS-14072](https://issues.redhat.com/browse/OCPBUGS-14072): test: increase poll wait time for alertmanager [#1973](https://github.com/openshift/cluster-monitoring-operator/pull/1973) * [OCPBUGS-14618](https://issues.redhat.com/browse/OCPBUGS-14618): Synchronize versions of the downstream components [#1988](https://github.com/openshift/cluster-monitoring-operator/pull/1988) * [OCPBUGS-14378](https://issues.redhat.com/browse/OCPBUGS-14378): Skip some errcheck golangci-lint violations [#1983](https://github.com/openshift/cluster-monitoring-operator/pull/1983) * [MON-2981](https://issues.redhat.com/browse/MON-2981): alertingrule and relabel: promote to v1 [#1945](https://github.com/openshift/cluster-monitoring-operator/pull/1945) * [OCPBUGS-11889](https://issues.redhat.com/browse/OCPBUGS-11889): disable CORS headers on Thanos querier [#1950](https://github.com/openshift/cluster-monitoring-operator/pull/1950) * [OCPBUGS-14606](https://issues.redhat.com/browse/OCPBUGS-14606): Remove remaining staticcheck violations [#1989](https://github.com/openshift/cluster-monitoring-operator/pull/1989) * [OCPBUGS-14375](https://issues.redhat.com/browse/OCPBUGS-14375): Fix golangci-lint gosimple violations [#1979](https://github.com/openshift/cluster-monitoring-operator/pull/1979) * [OCPBUGS-14381](https://issues.redhat.com/browse/OCPBUGS-14381): Skip golang-ci lint unused false positives [#1985](https://github.com/openshift/cluster-monitoring-operator/pull/1985) * [OCPBUGS-14561](https://issues.redhat.com/browse/OCPBUGS-14561): Prevent ci/prow/versions from failing on PR against release-xxx [#1969](https://github.com/openshift/cluster-monitoring-operator/pull/1969) * [OCPBUGS-10387](https://issues.redhat.com/browse/OCPBUGS-10387): label for infra nodes for metric cluster:capacity_cpu_cores:sum [#1926](https://github.com/openshift/cluster-monitoring-operator/pull/1926) * [OCPBUGS-14379](https://issues.redhat.com/browse/OCPBUGS-14379): Skip specific govet violation on operator main.go [#1984](https://github.com/openshift/cluster-monitoring-operator/pull/1984) * [OCPBUGS-14371](https://issues.redhat.com/browse/OCPBUGS-14371): Fix golangci-lint misspell violations [#1978](https://github.com/openshift/cluster-monitoring-operator/pull/1978) * [OCPBUGS-14380](https://issues.redhat.com/browse/OCPBUGS-14380): Fix golangcilint whitespace violations [#1977](https://github.com/openshift/cluster-monitoring-operator/pull/1977) * [OCPBUGS-14377](https://issues.redhat.com/browse/OCPBUGS-14377): Fix golangci-int wastedassign violations [#1981](https://github.com/openshift/cluster-monitoring-operator/pull/1981) * [OCPBUGS-14376](https://issues.redhat.com/browse/OCPBUGS-14376): Fix golangci-lint ineffassign violations [#1980](https://github.com/openshift/cluster-monitoring-operator/pull/1980) * [OCPBUGS-14366](https://issues.redhat.com/browse/OCPBUGS-14366): Fix golangci-lint unconvert violations [#1982](https://github.com/openshift/cluster-monitoring-operator/pull/1982) * [OCPBUGS-13147](https://issues.redhat.com/browse/OCPBUGS-13147): Add golangci-lint linters [#1949](https://github.com/openshift/cluster-monitoring-operator/pull/1949) * [OCPBUGS-1626](https://issues.redhat.com/browse/OCPBUGS-1626): update jsonnet dependencies [#1961](https://github.com/openshift/cluster-monitoring-operator/pull/1961) * [OCPBUGS-12903](https://issues.redhat.com/browse/OCPBUGS-12903): Add new web console usage metrics [#1910](https://github.com/openshift/cluster-monitoring-operator/pull/1910) * [OCPBUGS-13939](https://issues.redhat.com/browse/OCPBUGS-13939): Extend remote write test timeout [#1971](https://github.com/openshift/cluster-monitoring-operator/pull/1971) * [OCPBUGS-14007](https://issues.redhat.com/browse/OCPBUGS-14007): test/e2e: don't fail on telemeter remote write failed samples [#1972](https://github.com/openshift/cluster-monitoring-operator/pull/1972) * [OCPBUGS-13095](https://issues.redhat.com/browse/OCPBUGS-13095): Uncomment cluster:vsphere_infrastructure_failure_domains:max [#1960](https://github.com/openshift/cluster-monitoring-operator/pull/1960) * [OCPBUGS-12995](https://issues.redhat.com/browse/OCPBUGS-12995): go.mod: update golang.org/x/net to v0.7.0 [#1958](https://github.com/openshift/cluster-monitoring-operator/pull/1958) * [OCPBUGS-13006](https://issues.redhat.com/browse/OCPBUGS-13006): Add build number to vsphere vcenter information [#1946](https://github.com/openshift/cluster-monitoring-operator/pull/1946) * [OCPBUGS-12343](https://issues.redhat.com/browse/OCPBUGS-12343): Update 4.14 cluster-monitoring-operator image to be consistent with ART [#1952](https://github.com/openshift/cluster-monitoring-operator/pull/1952) * jsonnet: add comment why empty prometheus container needed [#1943](https://github.com/openshift/cluster-monitoring-operator/pull/1943) * [OCPBUGS-11434](https://issues.redhat.com/browse/OCPBUGS-11434): node-exporter: disable btrfs collector [#1937](https://github.com/openshift/cluster-monitoring-operator/pull/1937) * 4.14: OCPBUGS-11269: Add CSI migration for vSphere to telemetry [#1933](https://github.com/openshift/cluster-monitoring-operator/pull/1933) * Speedup jsonnet generation by running in parallel [#1908](https://github.com/openshift/cluster-monitoring-operator/pull/1908) * [OCPBUGS-10690](https://issues.redhat.com/browse/OCPBUGS-10690): jsonnet: Add prometheus container in UWM [#1930](https://github.com/openshift/cluster-monitoring-operator/pull/1930) * [OCPBUGS-7694](https://issues.redhat.com/browse/OCPBUGS-7694): add startup probe for prometheus-adapter [#1917](https://github.com/openshift/cluster-monitoring-operator/pull/1917) * [OCPBUGS-10161](https://issues.redhat.com/browse/OCPBUGS-10161): Updating cluster-monitoring-operator images to be consistent with ART [#1914](https://github.com/openshift/cluster-monitoring-operator/pull/1914) * [OCPBUGS-8215](https://issues.redhat.com/browse/OCPBUGS-8215): bugfix in Node Exporter argument setting [#1909](https://github.com/openshift/cluster-monitoring-operator/pull/1909) * [OCPBUGS-7282](https://issues.redhat.com/browse/OCPBUGS-7282): Node Exporter ignores network interface under name "cali[a-f0-9]*" [#1905](https://github.com/openshift/cluster-monitoring-operator/pull/1905) * Update jsonnet dependencies [#1913](https://github.com/openshift/cluster-monitoring-operator/pull/1913) * [OCPBUGS-8282](https://issues.redhat.com/browse/OCPBUGS-8282): turn off netlink mode of netclass collector in Node Exporter. [#1912](https://github.com/openshift/cluster-monitoring-operator/pull/1912) * [MON-2894](https://issues.redhat.com/browse/MON-2894): add nodeExporter.maxProcs setting. [#1895](https://github.com/openshift/cluster-monitoring-operator/pull/1895) * [MON-2973](https://issues.redhat.com/browse/MON-2973): test/e2e: Add cleanup func for alertmanager uwm secret test [#1907](https://github.com/openshift/cluster-monitoring-operator/pull/1907) * [MON-2693](https://issues.redhat.com/browse/MON-2693): Scrape profiles [#1785](https://github.com/openshift/cluster-monitoring-operator/pull/1785) * [MON-2959](https://issues.redhat.com/browse/MON-2959): test/e2e: Add test for alertmanager secret platform [#1899](https://github.com/openshift/cluster-monitoring-operator/pull/1899) * [MON-2904](https://issues.redhat.com/browse/MON-2904): add nodeExporter.collectors.buddyinfo settings. [#1891](https://github.com/openshift/cluster-monitoring-operator/pull/1891) * [MON-2895](https://issues.redhat.com/browse/MON-2895): toggle netlink implementation of netclass collector [#1894](https://github.com/openshift/cluster-monitoring-operator/pull/1894) * [MON-2932](https://issues.redhat.com/browse/MON-2932): jsonnet/dashboards: add role template variable to node related dashbo… [#1879](https://github.com/openshift/cluster-monitoring-operator/pull/1879) * [MON-2900](https://issues.redhat.com/browse/MON-2900): add nodeExporter.collectors.netclass settings. [#1893](https://github.com/openshift/cluster-monitoring-operator/pull/1893) * Update jsonnet dependencies [#1903](https://github.com/openshift/cluster-monitoring-operator/pull/1903) * [MON-2951](https://issues.redhat.com/browse/MON-2951): create Routes only with ingress operator [#1885](https://github.com/openshift/cluster-monitoring-operator/pull/1885) * [OCPBUGS-7391](https://issues.redhat.com/browse/OCPBUGS-7391): wait for service CA secrets [#1900](https://github.com/openshift/cluster-monitoring-operator/pull/1900) * Synchronize versions of the downstream components [#1902](https://github.com/openshift/cluster-monitoring-operator/pull/1902) * [MON-2973](https://issues.redhat.com/browse/MON-2973): pkg/manifests: Allow configuring secrets in alertmanager (UWM) [#1884](https://github.com/openshift/cluster-monitoring-operator/pull/1884) * Synchronize versions of the downstream components [#1898](https://github.com/openshift/cluster-monitoring-operator/pull/1898) * pkg/operator: fix typo in info logs [#1896](https://github.com/openshift/cluster-monitoring-operator/pull/1896) * [MON-2901](https://issues.redhat.com/browse/MON-2901): add nodeExporter.collectors.netdev settings. [#1888](https://github.com/openshift/cluster-monitoring-operator/pull/1888) * [STOR-1154](https://issues.redhat.com/browse/STOR-1154): Add vSphere topology to telemetry [#1886](https://github.com/openshift/cluster-monitoring-operator/pull/1886) * Add nodeExporter.collectors.tcpstat settings. [#1876](https://github.com/openshift/cluster-monitoring-operator/pull/1876) * Synchronize versions of the downstream components [#1887](https://github.com/openshift/cluster-monitoring-operator/pull/1887) * [MON-2959](https://issues.redhat.com/browse/MON-2959): Allow configuring secrets in alertmanager (platform) [#1882](https://github.com/openshift/cluster-monitoring-operator/pull/1882) * Update jsonnet dependencies [#1880](https://github.com/openshift/cluster-monitoring-operator/pull/1880) * Synchronize versions of the downstream components [#1878](https://github.com/openshift/cluster-monitoring-operator/pull/1878) * pkg/manifests/manifests.go: move constants to jsonnet [#1873](https://github.com/openshift/cluster-monitoring-operator/pull/1873) * Synchronize versions of the downstream components [#1877](https://github.com/openshift/cluster-monitoring-operator/pull/1877) * add nodeExporter.collectors.cpufreq settings. [#1855](https://github.com/openshift/cluster-monitoring-operator/pull/1855) * Update jsonnet dependencies [#1869](https://github.com/openshift/cluster-monitoring-operator/pull/1869) * Fix 'make run-local' target [#1874](https://github.com/openshift/cluster-monitoring-operator/pull/1874) * *: remove kube-rbac-proxy sidecar container [#1870](https://github.com/openshift/cluster-monitoring-operator/pull/1870) * [OCPBUGS-2729](https://issues.redhat.com/browse/OCPBUGS-2729): unify ignored network device list of Node Exporter. [#1871](https://github.com/openshift/cluster-monitoring-operator/pull/1871) * [OCPBUGS-5353](https://issues.redhat.com/browse/OCPBUGS-5353): unstack dashboards with limit markers. [#1868](https://github.com/openshift/cluster-monitoring-operator/pull/1868) * Update jsonnet dependencies [#1865](https://github.com/openshift/cluster-monitoring-operator/pull/1865) * Synchronize versions of the downstream components [#1867](https://github.com/openshift/cluster-monitoring-operator/pull/1867) * Update jsonnet dependencies [#1864](https://github.com/openshift/cluster-monitoring-operator/pull/1864) * Synchronize versions of the downstream components [#1863](https://github.com/openshift/cluster-monitoring-operator/pull/1863) * [OCPBUGS-4521](https://issues.redhat.com/browse/OCPBUGS-4521): check that all targets are up after certificate recreation [#1848](https://github.com/openshift/cluster-monitoring-operator/pull/1848) * Synchronize versions of the downstream components [#1861](https://github.com/openshift/cluster-monitoring-operator/pull/1861) * [OCPBUGS-4219](https://issues.redhat.com/browse/OCPBUGS-4219): Adds runbook link to PrometheusRuleFailures [#1860](https://github.com/openshift/cluster-monitoring-operator/pull/1860) * [MON-2807](https://issues.redhat.com/browse/MON-2807): Use bearer token file for remote write authentication with telemeter [#1733](https://github.com/openshift/cluster-monitoring-operator/pull/1733) * [OCPBUGS-1998](https://issues.redhat.com/browse/OCPBUGS-1998): pkg/client: Update daemonset degrade condition [#1812](https://github.com/openshift/cluster-monitoring-operator/pull/1812) * Synchronize versions of the downstream components [#1859](https://github.com/openshift/cluster-monitoring-operator/pull/1859) * [Bug 2114515](https://bugzilla.redhat.com/show_bug.cgi?id=2114515): jsonnet: ignore `/var/lib/ibmc-s3fs/` mountpoints [#1854](https://github.com/openshift/cluster-monitoring-operator/pull/1854) * Synchronize versions of the downstream components [#1853](https://github.com/openshift/cluster-monitoring-operator/pull/1853) * Synchronize versions of the downstream components [#1852](https://github.com/openshift/cluster-monitoring-operator/pull/1852) * [OCPBUGS-4793](https://issues.redhat.com/browse/OCPBUGS-4793): fix object reference in Kubernetes events [#1842](https://github.com/openshift/cluster-monitoring-operator/pull/1842) * Synchronize versions of the downstream components [#1849](https://github.com/openshift/cluster-monitoring-operator/pull/1849) * Updating cluster-monitoring-operator images to be consistent with ART [#1846](https://github.com/openshift/cluster-monitoring-operator/pull/1846) * [OCPBUGS-2729](https://issues.redhat.com/browse/OCPBUGS-2729): Node Exporter ignore virtual network device 'enP.*'. [#1843](https://github.com/openshift/cluster-monitoring-operator/pull/1843) * Unpin and update jsonnet dependencies [#1818](https://github.com/openshift/cluster-monitoring-operator/pull/1818) * [OCPBUGS-2141](https://issues.redhat.com/browse/OCPBUGS-2141): compute doc link in PVC not configured message [#1836](https://github.com/openshift/cluster-monitoring-operator/pull/1836) * Synchronize versions of the downstream components [#1838](https://github.com/openshift/cluster-monitoring-operator/pull/1838) * go.mod: switch to go 1.19 [#1839](https://github.com/openshift/cluster-monitoring-operator/pull/1839) * Synchronize versions of the downstream components [#1835](https://github.com/openshift/cluster-monitoring-operator/pull/1835) * [OCPBUGS-2260](https://issues.redhat.com/browse/OCPBUGS-2260): add alert KubePodNotScheduled to group openshift-kubernetes.rules [#1830](https://github.com/openshift/cluster-monitoring-operator/pull/1830) * Synchronize versions of the downstream components [#1831](https://github.com/openshift/cluster-monitoring-operator/pull/1831) * Remove deprecated option from kube-state-metrics args [#1832](https://github.com/openshift/cluster-monitoring-operator/pull/1832) * [OCPBUGS-4184](https://issues.redhat.com/browse/OCPBUGS-4184): use mTLS authentication for metrics scraping [#1827](https://github.com/openshift/cluster-monitoring-operator/pull/1827) * [OCPBUGS-4168](https://issues.redhat.com/browse/OCPBUGS-4168): Increase startupProbe for prometheus [#1824](https://github.com/openshift/cluster-monitoring-operator/pull/1824) * [OCPBUGS-4181](https://issues.redhat.com/browse/OCPBUGS-4181): Fixes externalURL field for Prometheus and Alertmanager [#1826](https://github.com/openshift/cluster-monitoring-operator/pull/1826) * Synchronize versions of the downstream components [#1823](https://github.com/openshift/cluster-monitoring-operator/pull/1823) * [OCPBUGS-1453](https://issues.redhat.com/browse/OCPBUGS-1453): Fixed TargetDown expression to join on the proper label [#1767](https://github.com/openshift/cluster-monitoring-operator/pull/1767) * [Bug 2095719](https://bugzilla.redhat.com/show_bug.cgi?id=2095719): Updates CreateOrUpdateServiceAccounts [#1745](https://github.com/openshift/cluster-monitoring-operator/pull/1745) * [OCPBUGS-4024](https://issues.redhat.com/browse/OCPBUGS-4024): test: increase timeout when checking remote write metrics [#1817](https://github.com/openshift/cluster-monitoring-operator/pull/1817) * [OCPBUGS-3331](https://issues.redhat.com/browse/OCPBUGS-3331): Pin Jsonnet Deps + Update go.mod for 4.12 + Patch Alert KubePodNotRead [#1816](https://github.com/openshift/cluster-monitoring-operator/pull/1816) * Revert "OCPBUGS-3331: Pin Jsonnet Deps + Update go.mod for 4.12" [#1815](https://github.com/openshift/cluster-monitoring-operator/pull/1815) * [OCPBUGS-3331](https://issues.redhat.com/browse/OCPBUGS-3331): Pin Jsonnet Deps + Update go.mod for 4.12 [#1814](https://github.com/openshift/cluster-monitoring-operator/pull/1814) * Switch ksm registry to registry.k8s.io [#1809](https://github.com/openshift/cluster-monitoring-operator/pull/1809) * [MGDAPI-4488](https://issues.redhat.com/browse/MGDAPI-4488): RHOAM fleet wide observability metrics [#1771](https://github.com/openshift/cluster-monitoring-operator/pull/1771) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/5a154c3dd01544adc280691be54fec94a5dc8d67...) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/43bc195cf9fef2db627369f86d10e0f501e9d3fa) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Add .hypershift.local to no proxy list [#1706](https://github.com/openshift/cluster-network-operator/pull/1706) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Do not use proxy for internal routes [#1704](https://github.com/openshift/cluster-network-operator/pull/1704) * [OCPBUGS-4778](https://issues.redhat.com/browse/OCPBUGS-4778): Fix handling of deployment and statefulset updates [#1663](https://github.com/openshift/cluster-network-operator/pull/1663) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/68d109ac3b8605525c2aabc29789415bc302c9c7...43bc195cf9fef2db627369f86d10e0f501e9d3fa) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/) * Change .snyk format (#1000) [#1000](https://github.com/openshift/cluster-node-tuning-operator/pull/1000) * Remove removePerformanceOLMOperator() (#997) [#997](https://github.com/openshift/cluster-node-tuning-operator/pull/997) * [CNF-11213](https://issues.redhat.com/browse/CNF-11213): added mixedCpus e2e test (#967) [#967](https://github.com/openshift/cluster-node-tuning-operator/pull/967) * NO-JIRA: Add positive tests with ginkgo timeout (#964) [#964](https://github.com/openshift/cluster-node-tuning-operator/pull/964) * [OCPBUGS-30647](https://issues.redhat.com/browse/OCPBUGS-30647): Remove TuneD timeout code and reload on ERRORs (#998) [#998](https://github.com/openshift/cluster-node-tuning-operator/pull/998) * Add sync for rendering extra ctrcfgs (#980) [#980](https://github.com/openshift/cluster-node-tuning-operator/pull/980) * [OCPBUGS-29594](https://issues.redhat.com/browse/OCPBUGS-29594): Reduce number of reboots in offline tests (#940) [#940](https://github.com/openshift/cluster-node-tuning-operator/pull/940) * makefile:hypershift: initial make target (#995) [#995](https://github.com/openshift/cluster-node-tuning-operator/pull/995) * e2e:mixedcpus: check env variables of init process (#961) [#961](https://github.com/openshift/cluster-node-tuning-operator/pull/961) * [CVE-2024](https://issues.redhat.com/browse/CVE-2024): 24786: update protobuf (#985) [#985](https://github.com/openshift/cluster-node-tuning-operator/pull/985) * Ignore scheduler plugin IRQs when globally enabled (#987) [#987](https://github.com/openshift/cluster-node-tuning-operator/pull/987) * E2E: skip ovs affinity test due to OCPBUGS-30806 (#988) [#988](https://github.com/openshift/cluster-node-tuning-operator/pull/988) * Remove RELEASE_VERSION from test-upstream-tuned.sh (#969) [#969](https://github.com/openshift/cluster-node-tuning-operator/pull/969) * Update OWNERS file (#872) [#872](https://github.com/openshift/cluster-node-tuning-operator/pull/872) * e2e: perf-prof: increase logging for debugging (#974) [#974](https://github.com/openshift/cluster-node-tuning-operator/pull/974) * [OCPBUGS-26400](https://issues.redhat.com/browse/OCPBUGS-26400): scheduler plugin: ignore IRQs (#976) [#976](https://github.com/openshift/cluster-node-tuning-operator/pull/976) * e2e: testdata: remove the annotated profile (#962) [#962](https://github.com/openshift/cluster-node-tuning-operator/pull/962) * [OCPBUGS-29641](https://issues.redhat.com/browse/OCPBUGS-29641): fix rendering extra ctrcfgs (#972) [#972](https://github.com/openshift/cluster-node-tuning-operator/pull/972) * NTO operand cleanup (#970) [#970](https://github.com/openshift/cluster-node-tuning-operator/pull/970) * Render: Don't fail if there is no recommended profile. (#935) [#935](https://github.com/openshift/cluster-node-tuning-operator/pull/935) * [OCPBUGS-23167](https://issues.redhat.com/browse/OCPBUGS-23167): Add performance real time tuned template (#954) [#954](https://github.com/openshift/cluster-node-tuning-operator/pull/954) * Add support to inject owner-ref argument to render command (#960) [#960](https://github.com/openshift/cluster-node-tuning-operator/pull/960) * [OCPBUGS-29546](https://issues.redhat.com/browse/OCPBUGS-29546): Apply hypershift cluster-profile for ibm-cloud-managed (#958) [#958](https://github.com/openshift/cluster-node-tuning-operator/pull/958) * [OCPBUGS-29594](https://issues.redhat.com/browse/OCPBUGS-29594): e2e: fix comparing incompatible types (#957) [#957](https://github.com/openshift/cluster-node-tuning-operator/pull/957) * Render: Add MCSelector to missing default MCPs (#956) [#956](https://github.com/openshift/cluster-node-tuning-operator/pull/956) * e2e: check if shared CPUs survive Kubelet restart (#912) [#912](https://github.com/openshift/cluster-node-tuning-operator/pull/912) * render: perfprofile: don't annotate perfprof (#951) [#951](https://github.com/openshift/cluster-node-tuning-operator/pull/951) * [CNF-9173](https://issues.redhat.com/browse/CNF-9173): e2e: mixedcpus test (#892) [#892](https://github.com/openshift/cluster-node-tuning-operator/pull/892) * e2e: fix typo in label name (#947) [#947](https://github.com/openshift/cluster-node-tuning-operator/pull/947) * skip realtime disabled tests due to OCPBUGS-28828 (#944) [#944](https://github.com/openshift/cluster-node-tuning-operator/pull/944) * [OCPBUGS-29183](https://issues.redhat.com/browse/OCPBUGS-29183): Enable crun as runtime only if missing (#937) [#937](https://github.com/openshift/cluster-node-tuning-operator/pull/937) * Fix e2e tests on SNO (#939) [#939](https://github.com/openshift/cluster-node-tuning-operator/pull/939) * e2e: classifying tests using labels (#936) [#936](https://github.com/openshift/cluster-node-tuning-operator/pull/936) * Bump TuneD to the latest OCP-shipped TuneD upstream version (#938) [#938](https://github.com/openshift/cluster-node-tuning-operator/pull/938) * [CNF-9173](https://issues.redhat.com/browse/CNF-9173): e2e: cgroups: introduce cgroup package (#906) [#906](https://github.com/openshift/cluster-node-tuning-operator/pull/906) * New flags in Performance profile creator (#908) [#908](https://github.com/openshift/cluster-node-tuning-operator/pull/908) * NO-JIRA: e2e: set performance profile cpus using env vars (#909) [#909](https://github.com/openshift/cluster-node-tuning-operator/pull/909) * [CNF-11091](https://issues.redhat.com/browse/CNF-11091): Change webhook failure policy to ignore (#933) [#933](https://github.com/openshift/cluster-node-tuning-operator/pull/933) * [CNF-11145](https://issues.redhat.com/browse/CNF-11145): Enhance render sync to include bootstrap rendering tests (#932) [#932](https://github.com/openshift/cluster-node-tuning-operator/pull/932) * NO-JIRA: perfprof: render: make ownerReference optional (#907) [#907](https://github.com/openshift/cluster-node-tuning-operator/pull/907) * Revert "NO-JIRA: skip crun configuration test" (#918) [#918](https://github.com/openshift/cluster-node-tuning-operator/pull/918) * Render MC without additional PP (#924) [#924](https://github.com/openshift/cluster-node-tuning-operator/pull/924) * Report duplicate priority only for multiple matching profiles (#890) [#890](https://github.com/openshift/cluster-node-tuning-operator/pull/890) * e2e: `UpdateWithRetry` only update spec (#914) [#914](https://github.com/openshift/cluster-node-tuning-operator/pull/914) * Skip PerformanceProfile update test (#929) [#929](https://github.com/openshift/cluster-node-tuning-operator/pull/929) * Export ValidateBasicFields for Hypershift (#916) [#916](https://github.com/openshift/cluster-node-tuning-operator/pull/916) * e2e: log: set ctrl-runtime logger (#911) [#911](https://github.com/openshift/cluster-node-tuning-operator/pull/911) * [OCPBUGS-22095](https://issues.redhat.com/browse/OCPBUGS-22095): Add default MCP objects for rendering (#833) [#833](https://github.com/openshift/cluster-node-tuning-operator/pull/833) * README Doc Typo Fix (#920) [#920](https://github.com/openshift/cluster-node-tuning-operator/pull/920) * HyperShift code linter PR837 followup (#910) [#910](https://github.com/openshift/cluster-node-tuning-operator/pull/910) * [CNF-10786](https://issues.redhat.com/browse/CNF-10786): e2e: general improvements and cleanup (#898) [#898](https://github.com/openshift/cluster-node-tuning-operator/pull/898) * dnm: skip crun configuration test (#917) [#917](https://github.com/openshift/cluster-node-tuning-operator/pull/917) * Add .snyk file for static code analysis (#902) [#902](https://github.com/openshift/cluster-node-tuning-operator/pull/902) * [OCPBUGS-25699](https://issues.redhat.com/browse/OCPBUGS-25699): irqbalance: set banned cpus list to '0' (#899) [#899](https://github.com/openshift/cluster-node-tuning-operator/pull/899) * rps: fail silently when rps application failed (#895) [#895](https://github.com/openshift/cluster-node-tuning-operator/pull/895) * [OCPBUGS-20368](https://issues.redhat.com/browse/OCPBUGS-20368): E2E: Add tests for Dynamic ovs pinning (#746) [#746](https://github.com/openshift/cluster-node-tuning-operator/pull/746) * NTO: Add MCP name to filter PP (#878) [#878](https://github.com/openshift/cluster-node-tuning-operator/pull/878) * [OCPBUGS-24581](https://issues.redhat.com/browse/OCPBUGS-24581): rps: fix mask update for SR-IOV devices (#877) [#877](https://github.com/openshift/cluster-node-tuning-operator/pull/877) * [OCPBUGS-24792](https://issues.redhat.com/browse/OCPBUGS-24792): Make MC names deterministic (#875) [#875](https://github.com/openshift/cluster-node-tuning-operator/pull/875) * makefile: add target to trigger mixedcpus e2e test (#883) [#883](https://github.com/openshift/cluster-node-tuning-operator/pull/883) * Fix error logging in metrics server.go (#882) [#882](https://github.com/openshift/cluster-node-tuning-operator/pull/882) * e2e-test: Call SetLogger (#881) [#881](https://github.com/openshift/cluster-node-tuning-operator/pull/881) * Use go 1.21 (#879) [#879](https://github.com/openshift/cluster-node-tuning-operator/pull/879) * [OCPBUGS-24638](https://issues.redhat.com/browse/OCPBUGS-24638): Do not set default RPS sysctl twice (#868) [#868](https://github.com/openshift/cluster-node-tuning-operator/pull/868) * Updating cluster-node-tuning-operator-container image to be consistent with ART (#867) [#867](https://github.com/openshift/cluster-node-tuning-operator/pull/867) * e2e: images: bump default test image to 4.14 (#856) [#856](https://github.com/openshift/cluster-node-tuning-operator/pull/856) * cpuset-configure: exit gracefully on cgroup v2 (#866) [#866](https://github.com/openshift/cluster-node-tuning-operator/pull/866) * [CNF-7610](https://issues.redhat.com/browse/CNF-7610): Mixed CPUs plugin deployment support (#853) [#853](https://github.com/openshift/cluster-node-tuning-operator/pull/853) * New MachineConfig render command (#844) [#844](https://github.com/openshift/cluster-node-tuning-operator/pull/844) * Report duplicate profiles as ERRORs (#864) [#864](https://github.com/openshift/cluster-node-tuning-operator/pull/864) * [CNF-10473](https://issues.redhat.com/browse/CNF-10473): featuregates: main: add feature gates support for PAO controller (#858) [#858](https://github.com/openshift/cluster-node-tuning-operator/pull/858) * e2e:latency: omit LatencyTestRun env variable (#857) [#857](https://github.com/openshift/cluster-node-tuning-operator/pull/857) * [OCPBUGS-18649](https://issues.redhat.com/browse/OCPBUGS-18649): E2E: PPC Test cases (#708) [#708](https://github.com/openshift/cluster-node-tuning-operator/pull/708) * [OCPBUGS-18640](https://issues.redhat.com/browse/OCPBUGS-18640): Fix Racing Machine Configs and add Day 0 Support (#854) [#854](https://github.com/openshift/cluster-node-tuning-operator/pull/854) * Avoid k8s.io/kubernetes as dep (#848) [#848](https://github.com/openshift/cluster-node-tuning-operator/pull/848) * Remove most //nolint:* overrides (#837) [#837](https://github.com/openshift/cluster-node-tuning-operator/pull/837) * [CNF-10294](https://issues.redhat.com/browse/CNF-10294): main: remove deprecated multi ns function (#770) [#770](https://github.com/openshift/cluster-node-tuning-operator/pull/770) * [OCPBUGS-22519](https://issues.redhat.com/browse/OCPBUGS-22519): bump opentelemetry package (#840) [#840](https://github.com/openshift/cluster-node-tuning-operator/pull/840) * Disable HTTP/2 for webhook and metrics servers (#834) [#834](https://github.com/openshift/cluster-node-tuning-operator/pull/834) * Remove obsolete protocols and weak ciphers (#827) [#827](https://github.com/openshift/cluster-node-tuning-operator/pull/827) * [OCPBUGS-18662](https://issues.redhat.com/browse/OCPBUGS-18662): rps: trigger udev even per queue (#816) [#816](https://github.com/openshift/cluster-node-tuning-operator/pull/816) * render: change dir path (#824) [#824](https://github.com/openshift/cluster-node-tuning-operator/pull/824) * Makefile: remote tmp folder on clean target (#823) [#823](https://github.com/openshift/cluster-node-tuning-operator/pull/823) * Add golangci-lint (#793) [#793](https://github.com/openshift/cluster-node-tuning-operator/pull/793) * Updating cluster-node-tuning-operator images to be consistent with ART (#795) [#795](https://github.com/openshift/cluster-node-tuning-operator/pull/795) * fix: add if check for no resource match error (#801) [#801](https://github.com/openshift/cluster-node-tuning-operator/pull/801) * nto: avoid timeout when there are too many CSV (#731) [#731](https://github.com/openshift/cluster-node-tuning-operator/pull/731) * Set non-default UserAgent for easier debugging (#807) [#807](https://github.com/openshift/cluster-node-tuning-operator/pull/807) * Improve co/node-tuning operand version reporting (#792) [#792](https://github.com/openshift/cluster-node-tuning-operator/pull/792) * Add the k8s reporter to the configuration suite (#815) [#815](https://github.com/openshift/cluster-node-tuning-operator/pull/815) * [OCPBUGS-18783](https://issues.redhat.com/browse/OCPBUGS-18783): e2e: perfprof: enhance the scheduling domain tests (#791) [#791](https://github.com/openshift/cluster-node-tuning-operator/pull/791) * Add kubeconfig path for IBM Managed OpenShift (#810) [#810](https://github.com/openshift/cluster-node-tuning-operator/pull/810) * Add k8s reporter to e2e tests (#666) [#666](https://github.com/openshift/cluster-node-tuning-operator/pull/666) * [OCPBUGS-19459](https://issues.redhat.com/browse/OCPBUGS-19459): check for object being nil (#804) [#804](https://github.com/openshift/cluster-node-tuning-operator/pull/804) * Memory manager E2E test fixes (#784) [#784](https://github.com/openshift/cluster-node-tuning-operator/pull/784) * Some unit tests fail with go1.19 as some modules require 1.20 (#794) [#794](https://github.com/openshift/cluster-node-tuning-operator/pull/794) * e2e: add expected max latancy to hwlatdetec test & rename constant (#719) [#719](https://github.com/openshift/cluster-node-tuning-operator/pull/719) * [OCPBUGS-18662](https://issues.redhat.com/browse/OCPBUGS-18662): e2e:rps: improve logging (#787) [#787](https://github.com/openshift/cluster-node-tuning-operator/pull/787) * Sync DaemonSet if operand image changes (#785) [#785](https://github.com/openshift/cluster-node-tuning-operator/pull/785) * [OCPBUGS-18392](https://issues.redhat.com/browse/OCPBUGS-18392): Change the OVN trigger file name to adapt to OVN IC (#777) [#777](https://github.com/openshift/cluster-node-tuning-operator/pull/777) * [OCPBUGS-15044](https://issues.redhat.com/browse/OCPBUGS-15044): e2e:irqloadbalance: wait for profile revert (#768) [#768](https://github.com/openshift/cluster-node-tuning-operator/pull/768) * Add SetLogger() prior to controller-runtime start (#779) [#779](https://github.com/openshift/cluster-node-tuning-operator/pull/779) * [OCPBUGS-18052](https://issues.redhat.com/browse/OCPBUGS-18052): feat: added logic to handle legacy sno install (#778) [#778](https://github.com/openshift/cluster-node-tuning-operator/pull/778) * [OCPBUGS-17943](https://issues.redhat.com/browse/OCPBUGS-17943): Add rtentsk plugin to pp tuned profile (#767) [#767](https://github.com/openshift/cluster-node-tuning-operator/pull/767) * Tighten the rules for modifying Tuned Profiles (#775) [#775](https://github.com/openshift/cluster-node-tuning-operator/pull/775) * Revert "Tighten the rules for modifying Tuned Profiles (#765)" (#771) [#765](https://github.com/openshift/cluster-node-tuning-operator/pull/765) * Tighten the rules for modifying Tuned Profiles (#765) [#765](https://github.com/openshift/cluster-node-tuning-operator/pull/765) * [OCPBUGS-14026](https://issues.redhat.com/browse/OCPBUGS-14026): cgroup: Match the name of the cgroup to what is expected by kubelet (#758) [#758](https://github.com/openshift/cluster-node-tuning-operator/pull/758) * e2e: irqbalance: improve test troubleshooting (#753) [#753](https://github.com/openshift/cluster-node-tuning-operator/pull/753) * [OCPBUGS-16348](https://issues.redhat.com/browse/OCPBUGS-16348): OSLAT latency spikes due to tsc karg setting (#756) [#756](https://github.com/openshift/cluster-node-tuning-operator/pull/756) * Makefile: hack: add helpers to compile testsuites (#751) [#751](https://github.com/openshift/cluster-node-tuning-operator/pull/751) * [OCPBUGS-17219](https://issues.redhat.com/browse/OCPBUGS-17219): Render mode should not segfault w/ no matching MCP (#754) [#754](https://github.com/openshift/cluster-node-tuning-operator/pull/754) * Release leader election on manager exit (#745) [#745](https://github.com/openshift/cluster-node-tuning-operator/pull/745) * generate missing files (#752) [#752](https://github.com/openshift/cluster-node-tuning-operator/pull/752) * vendor: bump OCP dependencies 08082023 (#750) [#750](https://github.com/openshift/cluster-node-tuning-operator/pull/750) * [OCPBUGS-7980](https://issues.redhat.com/browse/OCPBUGS-7980): e2e:ht-aware: exec on the correct worker node (#729) [#729](https://github.com/openshift/cluster-node-tuning-operator/pull/729) * bump k8s to 1.27.4 (#748) [#748](https://github.com/openshift/cluster-node-tuning-operator/pull/748) * e2e: wait for objects deletion (#749) [#749](https://github.com/openshift/cluster-node-tuning-operator/pull/749) * e2e:wait: return updated pod object explicitly (#744) [#744](https://github.com/openshift/cluster-node-tuning-operator/pull/744) * [OCPBUGS-17258](https://issues.redhat.com/browse/OCPBUGS-17258): CVE-2023-3978: golang.org/x/net/html (#747) [#747](https://github.com/openshift/cluster-node-tuning-operator/pull/747) * e2e: remove image parameter from must gather (#743) [#743](https://github.com/openshift/cluster-node-tuning-operator/pull/743) * Update the `config.openshift.io/node` object's `cgroupMode` to "v1" (#737) [#737](https://github.com/openshift/cluster-node-tuning-operator/pull/737) * Fix a race in e2e test rollback.go code (#739) [#739](https://github.com/openshift/cluster-node-tuning-operator/pull/739) * e2e:irqbalance: applied condition exists (#727) [#727](https://github.com/openshift/cluster-node-tuning-operator/pull/727) * Improve render error handling (#724) [#724](https://github.com/openshift/cluster-node-tuning-operator/pull/724) * e2e:irqbalance: wait for tuned profile to be ready (#721) [#721](https://github.com/openshift/cluster-node-tuning-operator/pull/721) * pao:status: do not take address of loop var (#720) [#720](https://github.com/openshift/cluster-node-tuning-operator/pull/720) * nto:tuned: remove sched_min_granularity_ns settings (#722) [#722](https://github.com/openshift/cluster-node-tuning-operator/pull/722) * Align TuneD with the latest shipped FDP version (#716) [#716](https://github.com/openshift/cluster-node-tuning-operator/pull/716) * E2E: update cpu load balancing test for latest cgroup related changes (#712) [#712](https://github.com/openshift/cluster-node-tuning-operator/pull/712) * Build gather-sysinfo (#714) [#714](https://github.com/openshift/cluster-node-tuning-operator/pull/714) * e2e: overhaul Performance-Addon-Operator tests (#590) [#590](https://github.com/openshift/cluster-node-tuning-operator/pull/590) * e2e: latency testing: increase the expected threshold (#706) [#706](https://github.com/openshift/cluster-node-tuning-operator/pull/706) * e2e: perf-prof: disable truncating gomega output (#702) [#702](https://github.com/openshift/cluster-node-tuning-operator/pull/702) * Configure OVS for dynamic cpu pinning (#559) [#559](https://github.com/openshift/cluster-node-tuning-operator/pull/559) * [OCPVE-382](https://issues.redhat.com/browse/OCPVE-382): fix: add default state for crio config (#700) [#700](https://github.com/openshift/cluster-node-tuning-operator/pull/700) * e2e: devmgr: fine tune kubelet restart test (#701) [#701](https://github.com/openshift/cluster-node-tuning-operator/pull/701) * e2e: RPS: fix expected cpu set (#703) [#703](https://github.com/openshift/cluster-node-tuning-operator/pull/703) * Switch to rslave/HostToContainer volume mount propagation (#692) [#692](https://github.com/openshift/cluster-node-tuning-operator/pull/692) * Do not rollback settings on TuneD exit (#699) [#699](https://github.com/openshift/cluster-node-tuning-operator/pull/699) * e2e: reboot: add kubelet restart test (#697) [#697](https://github.com/openshift/cluster-node-tuning-operator/pull/697) * remove conditional skip (#690) [#690](https://github.com/openshift/cluster-node-tuning-operator/pull/690) * e2e: memorymanager fix: check the hugepage size condition (#693) [#693](https://github.com/openshift/cluster-node-tuning-operator/pull/693) * Use RHEL9 as a base (#665) [#665](https://github.com/openshift/cluster-node-tuning-operator/pull/665) * Expose TuneD socket to host. (#651) [#651](https://github.com/openshift/cluster-node-tuning-operator/pull/651) * E2E: Use appropriate device path for rpsmask test (#691) [#691](https://github.com/openshift/cluster-node-tuning-operator/pull/691) * chore: replace `github.com/ghodss/yaml` with `sigs.k8s.io/yaml` (#628) [#628](https://github.com/openshift/cluster-node-tuning-operator/pull/628) * test: perfprof: devices: fix default test image (#672) [#672](https://github.com/openshift/cluster-node-tuning-operator/pull/672) * e2e: verify latency tests run with LATENCY_TEST_DELAY>120 (#662) [#662](https://github.com/openshift/cluster-node-tuning-operator/pull/662) * E2E: Add memory manager sanity test case (#573) [#573](https://github.com/openshift/cluster-node-tuning-operator/pull/573) * modify owners (#634) [#634](https://github.com/openshift/cluster-node-tuning-operator/pull/634) * Add minLength restriction to Tuned CR (#689) [#689](https://github.com/openshift/cluster-node-tuning-operator/pull/689) * [OCPBUGS-14934](https://issues.redhat.com/browse/OCPBUGS-14934): consistent use of ginkgo flags in Makefile (#682) [#682](https://github.com/openshift/cluster-node-tuning-operator/pull/682) * [OCPBUGS-14622](https://issues.redhat.com/browse/OCPBUGS-14622): Do not fail creating cgroups if they exist already (#683) [#683](https://github.com/openshift/cluster-node-tuning-operator/pull/683) * [OCPBUGS-14193](https://issues.redhat.com/browse/OCPBUGS-14193): pao e2e: Split e2e PAO update lane to more lanes (#631) [#631](https://github.com/openshift/cluster-node-tuning-operator/pull/631) * [OCPBUGS-4194](https://issues.redhat.com/browse/OCPBUGS-4194): rps: use default rps mask kernel API (#650) [#650](https://github.com/openshift/cluster-node-tuning-operator/pull/650) * [OCPBUGS-14756](https://issues.redhat.com/browse/OCPBUGS-14756): [test] [e2e] Check ci lanes are executing the right test suites (#679) [#679](https://github.com/openshift/cluster-node-tuning-operator/pull/679) * check ocp version and export CNF_TEST_IMAGE variable with appropriate cluster version (#584) [#584](https://github.com/openshift/cluster-node-tuning-operator/pull/584) * [OCPBUGS-5529](https://issues.redhat.com/browse/OCPBUGS-5529): Fix updating numa core siblings map in GetCpuSiblings function (#564) [#564](https://github.com/openshift/cluster-node-tuning-operator/pull/564) * Remove cpu-quota.crio.io: disable annotation (#663) [#663](https://github.com/openshift/cluster-node-tuning-operator/pull/663) * [OCPBUGS-14137](https://issues.redhat.com/browse/OCPBUGS-14137): e2e: perfprof: add SNO device recovery test (#653) [#653](https://github.com/openshift/cluster-node-tuning-operator/pull/653) * Add PerformanceProfiles to 'oc adm must-gather' (#655) [#655](https://github.com/openshift/cluster-node-tuning-operator/pull/655) * Revert "Add PerformanceProfiles to 'oc adm must-gather' (#582)" (#654) [#582](https://github.com/openshift/cluster-node-tuning-operator/pull/582) * Add PerformanceProfiles to 'oc adm must-gather' (#582) [#582](https://github.com/openshift/cluster-node-tuning-operator/pull/582) * [OCPBUGS-13148](https://issues.redhat.com/browse/OCPBUGS-13148): Configure cpu balancing cpu sets for all clusters (#646) [#646](https://github.com/openshift/cluster-node-tuning-operator/pull/646) * OCPBUGS-12978 use WatchNamespace() when deleting Profiles (#644) [#644](https://github.com/openshift/cluster-node-tuning-operator/pull/644) * Updating cluster-node-tuning-operator images to be consistent with ART (#579) [#579](https://github.com/openshift/cluster-node-tuning-operator/pull/579) * [OCPBUGS-11083](https://issues.redhat.com/browse/OCPBUGS-11083): pao e2e: fix update test suit timeouts (#626) [#626](https://github.com/openshift/cluster-node-tuning-operator/pull/626) * e2e: Fix RPS test for multi-worker cluster (#641) [#641](https://github.com/openshift/cluster-node-tuning-operator/pull/641) * Revert PR558 and PR585 partially (#639) [#639](https://github.com/openshift/cluster-node-tuning-operator/pull/639) * e2e: add missing test id (#622) [#622](https://github.com/openshift/cluster-node-tuning-operator/pull/622) * [OCPNODE-1539](https://issues.redhat.com/browse/OCPNODE-1539): perf profile: add script for preparing cgroups for CPU load balance disabling (#601) [#601](https://github.com/openshift/cluster-node-tuning-operator/pull/601) * Remove subPaths, they are broken (#623) [#623](https://github.com/openshift/cluster-node-tuning-operator/pull/623) * [OCPBUGS-10293](https://issues.redhat.com/browse/OCPBUGS-10293): performance-profile: enable crun for high-performance runtime (#588) [#588](https://github.com/openshift/cluster-node-tuning-operator/pull/588) * Revert #567 and cleanup PPC-generated TuneD config (#611) [#611](https://github.com/openshift/cluster-node-tuning-operator/pull/611) * Backup and revert profile when hugepages test completes (#597) [#597](https://github.com/openshift/cluster-node-tuning-operator/pull/597) * tuned: Handle UserLevelNetworking nil pointer gracefully (#608) [#608](https://github.com/openshift/cluster-node-tuning-operator/pull/608) * A new env var NO_BZ_CHECKS disables Bz and Jira status checks (#607) [#607](https://github.com/openshift/cluster-node-tuning-operator/pull/607) * [OCPBUGS-9959](https://issues.redhat.com/browse/OCPBUGS-9959): check scheduler settings under /sys/kernel/debug/sched/ (#581) [#581](https://github.com/openshift/cluster-node-tuning-operator/pull/581) * workload-hints: disable stalld when rt disabled (#592) [#592](https://github.com/openshift/cluster-node-tuning-operator/pull/592) * render: remove uid from render-sync target (#594) [#594](https://github.com/openshift/cluster-node-tuning-operator/pull/594) * [OCPBUGS-11083](https://issues.redhat.com/browse/OCPBUGS-11083): e2e: profile updates tests revised (#600) [#600](https://github.com/openshift/cluster-node-tuning-operator/pull/600) * Update to the latest k8s and OpenShift deps (#580) [#580](https://github.com/openshift/cluster-node-tuning-operator/pull/580) * Make the enable-leader-election option work (#586) [#586](https://github.com/openshift/cluster-node-tuning-operator/pull/586) * Update NTO-generated MC on MachineCount <= 1 (#585) [#585](https://github.com/openshift/cluster-node-tuning-operator/pull/585) * remove BZ 2181546 from skip list (#602) [#602](https://github.com/openshift/cluster-node-tuning-operator/pull/602) * Fix updating nodeSelector test (#595) [#595](https://github.com/openshift/cluster-node-tuning-operator/pull/595) * Remove the preStop hook for openshift-tuned (#587) [#587](https://github.com/openshift/cluster-node-tuning-operator/pull/587) * Skip tests depending on Jira or Bz issue status (#591) [#591](https://github.com/openshift/cluster-node-tuning-operator/pull/591) * kubectl explain to explicitly state workloadHint default values (#576) [#576](https://github.com/openshift/cluster-node-tuning-operator/pull/576) * Fix failing HyperShift presubmits (#578) [#578](https://github.com/openshift/cluster-node-tuning-operator/pull/578) * Add a script to validate upstream TuneD (#577) [#577](https://github.com/openshift/cluster-node-tuning-operator/pull/577) * [CNF-5900](https://issues.redhat.com/browse/CNF-5900): feat: added support for generating workload partitioning files (#431) [#431](https://github.com/openshift/cluster-node-tuning-operator/pull/431) * Re enable node selector tests in update tests (#574) [#574](https://github.com/openshift/cluster-node-tuning-operator/pull/574) * Handle different # of CPUs are in the same MCP (#558) [#558](https://github.com/openshift/cluster-node-tuning-operator/pull/558) * composable OCP: make NTO components optional (#524) [#524](https://github.com/openshift/cluster-node-tuning-operator/pull/524) * Update to TuneD v2.20.0 (#565) [#565](https://github.com/openshift/cluster-node-tuning-operator/pull/565) * Remove trailing spaces from test names (#570) [#570](https://github.com/openshift/cluster-node-tuning-operator/pull/570) * Remove optimization to allow full resync (#567) [#567](https://github.com/openshift/cluster-node-tuning-operator/pull/567) * Report host-level sysctls in conflict with TuneD ones (#566) [#566](https://github.com/openshift/cluster-node-tuning-operator/pull/566) * E2E: Per Core Runtime Tuning Test automation (#509) [#509](https://github.com/openshift/cluster-node-tuning-operator/pull/509) * Add test case to check single rx queue on veth interface (#562) [#562](https://github.com/openshift/cluster-node-tuning-operator/pull/562) * Add update-manifests Makefile target (#560) [#560](https://github.com/openshift/cluster-node-tuning-operator/pull/560) * render: initialize klog flag (#538) [#538](https://github.com/openshift/cluster-node-tuning-operator/pull/538) * Refactor IRQ load balancing enable/disable test (#561) [#561](https://github.com/openshift/cluster-node-tuning-operator/pull/561) * update to ginkgo 2 (#517) [#517](https://github.com/openshift/cluster-node-tuning-operator/pull/517) * Skip watch on CA ConfigMap in HyperShift (#550) [#550](https://github.com/openshift/cluster-node-tuning-operator/pull/550) * update owners 20230109 (#542) [#542](https://github.com/openshift/cluster-node-tuning-operator/pull/542) * Add authentication to the /metrics endpoint (#541) [#541](https://github.com/openshift/cluster-node-tuning-operator/pull/541) * Run node selector tests only if we 2 non Performanceworker nodes (#532) [#532](https://github.com/openshift/cluster-node-tuning-operator/pull/532) * Updating profile new lane (#536) [#536](https://github.com/openshift/cluster-node-tuning-operator/pull/536) * Remove trailing space from test name (#540) [#540](https://github.com/openshift/cluster-node-tuning-operator/pull/540) * skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#537) [#537](https://github.com/openshift/cluster-node-tuning-operator/pull/537) * Generate must-gather data (#442) [#442](https://github.com/openshift/cluster-node-tuning-operator/pull/442) * e2e:latency: count LATENCY_TEST_DELAY in timeout (#535) [#535](https://github.com/openshift/cluster-node-tuning-operator/pull/535) * E2E: Network stack Pinning tests (#501) [#501](https://github.com/openshift/cluster-node-tuning-operator/pull/501) * refactor: move command func to seperate file (#522) [#522](https://github.com/openshift/cluster-node-tuning-operator/pull/522) * performance-profile: render: make target for render sync (#528) [#528](https://github.com/openshift/cluster-node-tuning-operator/pull/528) * Switch to golang 1.19 (#521) [#521](https://github.com/openshift/cluster-node-tuning-operator/pull/521) * Add Containerfile for RHEL-9 (#519) [#519](https://github.com/openshift/cluster-node-tuning-operator/pull/519) * Fix two irqbalance tests - smp affinity vs online (#518) [#518](https://github.com/openshift/cluster-node-tuning-operator/pull/518) * Fix default hard eviction threshold when PCC is applied (#505) [#505](https://github.com/openshift/cluster-node-tuning-operator/pull/505) * e2e: performance profile: add logs and minor fixes (#485) [#485](https://github.com/openshift/cluster-node-tuning-operator/pull/485) * PPCreator: If rt-kernel enabled, power consumption mode default cannot be selected (#512) [#512](https://github.com/openshift/cluster-node-tuning-operator/pull/512) * Configuration hotfixes documentation fixes (#513) [#513](https://github.com/openshift/cluster-node-tuning-operator/pull/513) * E2E: Automation offline CPUs test (#380) [#380](https://github.com/openshift/cluster-node-tuning-operator/pull/380) * pao: latency-tests: read test log directly from pod (#499) [#499](https://github.com/openshift/cluster-node-tuning-operator/pull/499) * Configure ktimers scheduler prio same as ksoftirqs (#507) [#507](https://github.com/openshift/cluster-node-tuning-operator/pull/507) * Run rps mask tests when Reserved cpu are not nil (#483) [#483](https://github.com/openshift/cluster-node-tuning-operator/pull/483) * Set RPS for all rx queues (#495) [#495](https://github.com/openshift/cluster-node-tuning-operator/pull/495) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/e40a5156fd9282c6ea3d7f4ac9c9407ae4f326ba...) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#559](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/559) * [OCPBUGS-18115](https://issues.redhat.com/browse/OCPBUGS-18115): Remove "include.release.openshift.io/ibm-cloud-managed:" annotation [#566](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/566) * [OCPBUGS-18939](https://issues.redhat.com/browse/OCPBUGS-18939): manifest: drop slo latency metrics in favor of sli [#547](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/547) * [WRKLDS-1004](https://issues.redhat.com/browse/WRKLDS-1004): use AlwaysAllow UnhealthyPodEvictionPolicy in PDBs [#562](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/562) * [OCPBUGS-24972](https://issues.redhat.com/browse/OCPBUGS-24972): Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART [#561](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/561) * [OCPBUGS-18115](https://issues.redhat.com/browse/OCPBUGS-18115): Remove "include.release.openshift.io/ibm-cloud-managed:" annotation [#551](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/551) * [OCPBUGS-19231](https://issues.redhat.com/browse/OCPBUGS-19231): Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#548](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/548) * [OCPBUGS-21733](https://issues.redhat.com/browse/OCPBUGS-21733): bump library-go to include switch to HTTP/1.1 [#552](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/552) * [WRKLDS-728](https://issues.redhat.com/browse/WRKLDS-728): Capabilities: drop build/apps APIService when capabilities are not enabled [#532](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/532) * switch image-registry cert CM [#545](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/545) * [OCPBUGS-16554](https://issues.redhat.com/browse/OCPBUGS-16554): update dependencies to get rid of goproxy [#546](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/546) * [AUTH-408](https://issues.redhat.com/browse/AUTH-408): bindata: set required-scc [#544](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/544) * Plumb featuregates to the openshift-apiserver [#542](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/542) * allow etcd healthcheck timeout closer to probe timeouts to avoid failing on slower etcd [#540](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/540) * Add AES-GCM encryption tests [#539](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/539) * [OCPBUGS-14010](https://issues.redhat.com/browse/OCPBUGS-14010): increase timeout for probes [#536](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/536) * [OCPBUGS-2765](https://issues.redhat.com/browse/OCPBUGS-2765): Library go bump [#538](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/538) * [OCPBUGS-12813](https://issues.redhat.com/browse/OCPBUGS-12813): Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#534](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/534) * Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#525](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/525) * [OCPBUGS-10040](https://issues.redhat.com/browse/OCPBUGS-10040): update openshift/api to include aesgcm provider in the default apiserver schema [#526](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/526) * [API-1509](https://issues.redhat.com/browse/API-1509): Enable AESGCM encryption [#521](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/521) * [OCPBUGS-4343](https://issues.redhat.com/browse/OCPBUGS-4343): update apf configuration to use v1beta3 [#509](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/509) * [OCPBUGS-6233](https://issues.redhat.com/browse/OCPBUGS-6233): Bump dependencies and images [#517](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/517) * [OCPBUGS-5300](https://issues.redhat.com/browse/OCPBUGS-5300): routes/status resources can leak sensitive data, exclude it from audit [#511](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/511) * make api team approver [#506](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/506) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#508](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/508) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/4c5b4882e20944d9c44272551053fccbe16d6451...) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/) * [OCPBUGS-29973](https://issues.redhat.com/browse/OCPBUGS-29973): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART for 4.16 [#337](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/337) * [OCPBUGS-29581](https://issues.redhat.com/browse/OCPBUGS-29581): Apply hypershift cluster-profile for ibm-cloud-managed [#334](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/334) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#316](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/316) * [BUILD-854](https://issues.redhat.com/browse/BUILD-854): Add adambkaplan as approver [#338](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/338) * [OCPBUGS-24888](https://issues.redhat.com/browse/OCPBUGS-24888): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART [#321](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/321) * [OCPBUGS-28666](https://issues.redhat.com/browse/OCPBUGS-28666): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#326](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/326) * [OCPBUGS-23624](https://issues.redhat.com/browse/OCPBUGS-23624): Add .snyk file to exclude vendor and ignore unit tests [#325](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/325) * [WRKLDS-1016](https://issues.redhat.com/browse/WRKLDS-1016): Bump k8s dependencies to 1.29.0 [#324](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/324) * [OCPBUGS-24190](https://issues.redhat.com/browse/OCPBUGS-24190): Disable deployer-controller when deploymentconfig is disabled [#320](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/320) * [OCPBUGS-22956](https://issues.redhat.com/browse/OCPBUGS-22956): Remove blockage of ConfigObserver by build informer HasSynced flag [#315](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/315) * Revert "Revert #300 "API-1666: add image pull secret cleanup controller"" [#314](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/314) * Revert #300 "API-1666: add image pull secret cleanup controller" [#313](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/313) * [API-1642](https://issues.redhat.com/browse/API-1642): add image pull secret cleanup controller [#300](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/300) * [API-1642](https://issues.redhat.com/browse/API-1642): Do not generate image pull secrets for internal registry when internal registry is disabled. [#298](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/298) * [OCPBUGS-21830](https://issues.redhat.com/browse/OCPBUGS-21830): bump(k8s,openshift) to address CVE-2023-44487 [#308](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/308) * [OCPBUGS-20164](https://issues.redhat.com/browse/OCPBUGS-20164): Include Build CRD in manifests [#306](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/306) * [WRKLDS-806](https://issues.redhat.com/browse/WRKLDS-806): Bump kube dependencies to 1.28.2 [#305](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/305) * [OCPBUGS-19136](https://issues.redhat.com/browse/OCPBUGS-19136): Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#304](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/304) * [OCPBUGS-18932](https://issues.redhat.com/browse/OCPBUGS-18932): Always sort disabled controller list [#302](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/302) * [OCPBUGS-18498](https://issues.redhat.com/browse/OCPBUGS-18498): Disable BuildConfigChange controller when Build cap is disabled [#299](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/299) * route-controller-manager deployment updates [#295](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/295) * [OCPBUGS-16072](https://issues.redhat.com/browse/OCPBUGS-16072): Updating Kubernetes and other associated dependencies [#296](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/296) * [OCPBUGS-13926](https://issues.redhat.com/browse/OCPBUGS-13926): change the operator log level to default normal in the deployment [#289](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/289) * [BUILD-582](https://issues.redhat.com/browse/BUILD-582), [OCPBUGS-14638](https://issues.redhat.com/browse/OCPBUGS-14638): bump(k8s): 1.27.1 [#294](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/294) * [OCPBUGS-13926](https://issues.redhat.com/browse/OCPBUGS-13926): add loglevel controller for OCM-o [#292](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/292) * Revert "13895: [WRKLDS-730] route-controller-manager deployment updates" [#293](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/293) * [OCPBUGS-13895](https://issues.redhat.com/browse/OCPBUGS-13895): [WRKLDS-730] route-controller-manager deployment updates [#288](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/288) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#287](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/287) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#286](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/286) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#285](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/285) * Bump golang.org/x/net from 0.5.0 to 0.7.0 [#284](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/284) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#279](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/279) * [OCPBUGS-10568](https://issues.redhat.com/browse/OCPBUGS-10568): migrate to using lease objects for leader election [#282](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/282) * Add Divyanshu Agrawal as a reviewer [#283](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/283) * [OCPBUGS-4343](https://issues.redhat.com/browse/OCPBUGS-4343): update apf configuration to use v1beta3 [#273](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/273) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#274](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/274) * [WRKLDS-594](https://issues.redhat.com/browse/WRKLDS-594): bump(k8s): 1.26.1 [#277](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/277) * [OCPBUGS-5275](https://issues.redhat.com/browse/OCPBUGS-5275): remove unnecessary RBAC for leader-locking-ingress-to-route-controller [#276](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/276) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#272](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/272) * let deployer pods patch/apply replication controllers [#270](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/270) * [Bug 2111979](https://bugzilla.redhat.com/show_bug.cgi?id=2111979): Set openshift.io/run-level to nil in openshift-controller-manager nam… [#269](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/269) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/d1915d130481541b8bacb5b98eddbc1541809d0a...) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/) * [OCPBUGS-30496](https://issues.redhat.com/browse/OCPBUGS-30496): bump(google.golang.org/protobuf)=v1.33.0 [#147](https://github.com/openshift/cluster-policy-controller/pull/147) * [WRKLDS-1016](https://issues.redhat.com/browse/WRKLDS-1016): bump k8s to 1.29.1 [#146](https://github.com/openshift/cluster-policy-controller/pull/146) * [OCPBUGS-24877](https://issues.redhat.com/browse/OCPBUGS-24877): Updating ose-cluster-policy-controller-container image to be consistent with ART [#144](https://github.com/openshift/cluster-policy-controller/pull/144) * [OCPBUGS-26190](https://issues.redhat.com/browse/OCPBUGS-26190): Add .snyk file to exclude vendor and ignore unit tests [#145](https://github.com/openshift/cluster-policy-controller/pull/145) * [OCPBUGS-24078](https://issues.redhat.com/browse/OCPBUGS-24078): Updating ose-cluster-policy-controller-container image to be consistent with ART [#143](https://github.com/openshift/cluster-policy-controller/pull/143) * go.mod: remove replaces [#138](https://github.com/openshift/cluster-policy-controller/pull/138) * [OCPBUGS-21638](https://issues.redhat.com/browse/OCPBUGS-21638): bump(k8s,openshift) to address CVE-2023-44487 [#137](https://github.com/openshift/cluster-policy-controller/pull/137) * [OCPBUGS-21638](https://issues.redhat.com/browse/OCPBUGS-21638): Bump deps to address CVE-2023-44487 [#133](https://github.com/openshift/cluster-policy-controller/pull/133) * [WRKLDS-806](https://issues.redhat.com/browse/WRKLDS-806): bump k8s to 1.28 [#132](https://github.com/openshift/cluster-policy-controller/pull/132) * [OCPBUGS-19119](https://issues.redhat.com/browse/OCPBUGS-19119): Updating cluster-policy-controller images to be consistent with ART [#131](https://github.com/openshift/cluster-policy-controller/pull/131) * [OCPBUGS-17458](https://issues.redhat.com/browse/OCPBUGS-17458): ps syncer: don't hotloop on a missing namespace [#130](https://github.com/openshift/cluster-policy-controller/pull/130) * [OCPBUGS-17989](https://issues.redhat.com/browse/OCPBUGS-17989): pkg/psalabelsyncer: enforce syncing in case label is set [#129](https://github.com/openshift/cluster-policy-controller/pull/129) * [AUTH-413](https://issues.redhat.com/browse/AUTH-413): ps syncer: only sync labels if noone else is managing them [#127](https://github.com/openshift/cluster-policy-controller/pull/127) * ps syncer: add a controller for run-level 0 namespaces [#128](https://github.com/openshift/cluster-policy-controller/pull/128) * Adjust logs per generic troubleshooting [#126](https://github.com/openshift/cluster-policy-controller/pull/126) * [OCPBUGS-15568](https://issues.redhat.com/browse/OCPBUGS-15568): Add timeout into cache sync wait to prevent hanging forever [#124](https://github.com/openshift/cluster-policy-controller/pull/124) * [OCPBUGS-15568](https://issues.redhat.com/browse/OCPBUGS-15568): Remove debugs logs in workqueuebucket [#125](https://github.com/openshift/cluster-policy-controller/pull/125) * Add more logs for queue operations [#122](https://github.com/openshift/cluster-policy-controller/pull/122) * [OCPBUGS-15568](https://issues.redhat.com/browse/OCPBUGS-15568): Handle error if caches are not synced instead silently exit [#121](https://github.com/openshift/cluster-policy-controller/pull/121) * Add ingvagabund to owners [#120](https://github.com/openshift/cluster-policy-controller/pull/120) * Add logs for quota namespace syncing with verbosity level 2 [#119](https://github.com/openshift/cluster-policy-controller/pull/119) * [OCPBUGS-13649](https://issues.redhat.com/browse/OCPBUGS-13649): fix ClusterResourceQuotas to work for all api resources including custom resources [#115](https://github.com/openshift/cluster-policy-controller/pull/115) * [OCPBUGS-13579](https://issues.redhat.com/browse/OCPBUGS-13579): bump(k8s) to v0.27.1 [#113](https://github.com/openshift/cluster-policy-controller/pull/113) * [OCPBUGS-8271](https://issues.redhat.com/browse/OCPBUGS-8271): external template and route Informer [#100](https://github.com/openshift/cluster-policy-controller/pull/100) * Updating cluster-policy-controller images to be consistent with ART [#110](https://github.com/openshift/cluster-policy-controller/pull/110) * complete controller description [#104](https://github.com/openshift/cluster-policy-controller/pull/104) * [OCPBUGS-160](https://issues.redhat.com/browse/OCPBUGS-160): psalabelsyncer: handle empty namespace of a rolebinding subject [#107](https://github.com/openshift/cluster-policy-controller/pull/107) * Updating cluster-policy-controller images to be consistent with ART [#105](https://github.com/openshift/cluster-policy-controller/pull/105) * update psa dependency version [#103](https://github.com/openshift/cluster-policy-controller/pull/103) * update controller-manager dependency to point to v0.25.0 [#101](https://github.com/openshift/cluster-policy-controller/pull/101) * [OCPBUGS-723](https://issues.redhat.com/browse/OCPBUGS-723): clusterquotareconciliation: do not sync quota monitor cache with no monitors registered [#94](https://github.com/openshift/cluster-policy-controller/pull/94) * [OCPBUGS-3985](https://issues.redhat.com/browse/OCPBUGS-3985): enforce pod security admission when techpreview is enabled [#89](https://github.com/openshift/cluster-policy-controller/pull/89) * Updating cluster-policy-controller images to be consistent with ART [#91](https://github.com/openshift/cluster-policy-controller/pull/91) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/105cc773b37f00be2351c9a4e6df24af94d547c1...) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/ab23d0e04237ffc8cf69cbf9b73f8bc2eee190bb) * [OCPBUGS-7208](https://issues.redhat.com/browse/OCPBUGS-7208): When setting allowedRegistries urls the openshift-samples operator is degraded [#489](https://github.com/openshift/cluster-samples-operator/pull/489) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/212a4553b3bf87d56f2f360b562187a685099c3e...ab23d0e04237ffc8cf69cbf9b73f8bc2eee190bb) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/b29bac7a510082ffd99534ba84bcd035079741ba) * [OCPBUGS-7331](https://issues.redhat.com/browse/OCPBUGS-7331): hypershift: remove inject-proxy annotation from aws-ebs-csi-driver-operator deployment [#337](https://github.com/openshift/cluster-storage-operator/pull/337) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/220a777e094ff6b198007518d0734f9b54a7f9af...b29bac7a510082ffd99534ba84bcd035079741ba) ### [console](https://github.com/openshift/console/tree/a734e812a8ce3e1540bc1dc822baa5ab513173d7) * [OCPBUGS-7506](https://issues.redhat.com/browse/OCPBUGS-7506): Fix different CI issues [#12555](https://github.com/openshift/console/pull/12555) * [OCPBUGS-6966](https://issues.redhat.com/browse/OCPBUGS-6966): Remove description field from the PLR parameters page [#12519](https://github.com/openshift/console/pull/12519) * [OCPBUGS-7437](https://issues.redhat.com/browse/OCPBUGS-7437): Webhook Secret (1 of 2) is not removed when Knative Service is deleted [#12560](https://github.com/openshift/console/pull/12560) * [OCPBUGS-6887](https://issues.redhat.com/browse/OCPBUGS-6887): Show Tag label and tag name if tag is detected in repository PipelineRun list and details page [#12510](https://github.com/openshift/console/pull/12510) * [OCPBUGS-6816](https://issues.redhat.com/browse/OCPBUGS-6816): Repositories list does not show the running pipelinerun as last pipelinerun [#12500](https://github.com/openshift/console/pull/12500) * [OCPBUGS-4072](https://issues.redhat.com/browse/OCPBUGS-4072): Fix rerender loop/crash when bindable-kinds is found but has no status [#12304](https://github.com/openshift/console/pull/12304) * [OCPBUGS-6671](https://issues.redhat.com/browse/OCPBUGS-6671): fix broken pipeline secret [#12474](https://github.com/openshift/console/pull/12474) * [OCPBUGS-6913](https://issues.redhat.com/browse/OCPBUGS-6913): PipelineRun task status overlaps status text [#12516](https://github.com/openshift/console/pull/12516) * [Full changelog](https://github.com/openshift/console/compare/63cb4d6e28e931640f55e9f1dca83ed76db99a46...a734e812a8ce3e1540bc1dc822baa5ab513173d7) ### [console-operator](https://github.com/openshift/console-operator/tree/bb87c5921246a64a59c1c09336c2ab0423330b4d) * [OCPBUGS-6921](https://issues.redhat.com/browse/OCPBUGS-6921): Recover ConsoleNotificationSync after being degraded [#728](https://github.com/openshift/console-operator/pull/728) * [Full changelog](https://github.com/openshift/console-operator/compare/8c938a46686746518cc37e71b444d40d1b4e6c2d...bb87c5921246a64a59c1c09336c2ab0423330b4d) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/2c0d3b1c56f485cf6f4ad2787753545975326e6d) * [OCPBUGS-6599](https://issues.redhat.com/browse/OCPBUGS-6599): Address CVE-2022-41717 [#166](https://github.com/openshift/csi-driver-manila-operator/pull/166) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/6cad8759f4456659c9397a61d20a7f084bd90304...2c0d3b1c56f485cf6f4ad2787753545975326e6d) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/d90992573acb3df6c7fbb6dbe1b215125d26fc34) * [OCPBUGS-6590](https://issues.redhat.com/browse/OCPBUGS-6590): Address CVE-2022-41717 [#105](https://github.com/openshift/csi-driver-nfs/pull/105) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/b7393faceb18e18eae133a6de89e4b4339295fa8...d90992573acb3df6c7fbb6dbe1b215125d26fc34) ### [fedora-coreos, machine-os-content, okd-rpms](https://github.com/openshift/okd-machine-os/tree/fd9575e20e4bcf64e1f13b256f82cb5c4d30d36b) * Bump fedora-coreos to latest stable [#531](https://github.com/openshift/okd-machine-os/pull/531) * overlay: prevent NM from modifying resolv.conf [#528](https://github.com/openshift/okd-machine-os/pull/528) * Bump fedora-coreos to latest stable [#526](https://github.com/openshift/okd-machine-os/pull/526) * Dockerfile.rpms: use stable CRIO releases [#521](https://github.com/openshift/okd-machine-os/pull/521) * [Full changelog](https://github.com/openshift/okd-machine-os/compare/03a7b60ec1521a42695454f6ddd4d757ef56e485...fd9575e20e4bcf64e1f13b256f82cb5c4d30d36b) ### [hypershift](https://github.com/openshift/hypershift/tree/96cd4a6b0fb11bbc87982c2c55acfcd30705fcf0) * fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac [#2189](https://github.com/openshift/hypershift/pull/2189) * fix(cpo): Reduce CNO access if Calico used as network provider [#2184](https://github.com/openshift/hypershift/pull/2184) * Skip destroyAWSDefaultSecurityGroup if not AWS [#2168](https://github.com/openshift/hypershift/pull/2168) * Create default security group for AWS clusters [#2162](https://github.com/openshift/hypershift/pull/2162) * [AUTH-323](https://issues.redhat.com/browse/AUTH-323): pki: split out konnectivity certs from the rootCA [#2156](https://github.com/openshift/hypershift/pull/2156) * fix(ibmcloud): Initialize image registry config on creates and bad config [#2104](https://github.com/openshift/hypershift/pull/2104) * fix(cpo): Allow KAS profiling disablement [#2122](https://github.com/openshift/hypershift/pull/2122) * reduce ignition server scope [#2140](https://github.com/openshift/hypershift/pull/2140) * OpenID add support for groups claim in the config [#2129](https://github.com/openshift/hypershift/pull/2129) * fix(cpo): Restart registry operator on annotation [#2121](https://github.com/openshift/hypershift/pull/2121) * [Full changelog](https://github.com/openshift/hypershift/compare/d93280cff4348d3d2e0438ae91e0cba06c614458...96cd4a6b0fb11bbc87982c2c55acfcd30705fcf0) ### [insights-operator](https://github.com/openshift/insights-operator/tree/06da9df07e96c56c49d10222e6940d65a6d04534) * [OCPBUGS-6782](https://issues.redhat.com/browse/OCPBUGS-6782): Create gatherer for gathering machines. (#734) [#734](https://github.com/openshift/insights-operator/pull/734) * [Full changelog](https://github.com/openshift/insights-operator/compare/9b28d553555da54585cc05b018a1828fb8f81a5e...06da9df07e96c56c49d10222e6940d65a6d04534) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/e32a8fa9f58a7f38045af135b207fe6764616e24) * [OCPBUGS-6842](https://issues.redhat.com/browse/OCPBUGS-6842): Handle race condition to setup default vnid flows [#497](https://github.com/openshift/sdn/pull/497) * [OCPBUGS-7227](https://issues.redhat.com/browse/OCPBUGS-7227): Update for 4.12 / go 1.19, including gofmt updates [#482](https://github.com/openshift/sdn/pull/482) * [Full changelog](https://github.com/openshift/sdn/compare/d6903305ca12bf21f4ef6b96cb7aeed7defa2fc2...e32a8fa9f58a7f38045af135b207fe6764616e24) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/4099f3c4f4ea9df85a7516a6300a4c6e5504a5cd) * [OCPBUGS-6943](https://issues.redhat.com/browse/OCPBUGS-6943): Improvements for `configure-ovs.sh` [#3528](https://github.com/openshift/machine-config-operator/pull/3528) * [OCPBUGS-6045](https://issues.redhat.com/browse/OCPBUGS-6045): There are not enough logs in case "oc extract" is stuck in mco first boot [#3503](https://github.com/openshift/machine-config-operator/pull/3503) * [OCPBUGS-6973](https://issues.redhat.com/browse/OCPBUGS-6973): configure-ovs: optionally generate configuration in /run [#3532](https://github.com/openshift/machine-config-operator/pull/3532) * [OCPBUGS-6779](https://issues.redhat.com/browse/OCPBUGS-6779): baremetal: clean state generated by NM when run by dracut [#3521](https://github.com/openshift/machine-config-operator/pull/3521) * [OCPBUGS-7241](https://issues.redhat.com/browse/OCPBUGS-7241): controller: default overwrite to true for files [#3546](https://github.com/openshift/machine-config-operator/pull/3546) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/84e78c83d5f1d6cb97a43b264154f1f519b69fb2...4099f3c4f4ea9df85a7516a6300a4c6e5504a5cd) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/e8d4dc2e25fa71ca34c3066097aaf8511daf2b1e) * Updating ose-network-interface-bond-cni images to be consistent with ART [#37](https://github.com/openshift/bond-cni/pull/37) * [Full changelog](https://github.com/openshift/bond-cni/compare/a88d72fc5df78d3a43ec17cf313ac57678423b87...e8d4dc2e25fa71ca34c3066097aaf8511daf2b1e) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/b480d571c66d05fb844120995580cc05353f1101) * Update golang.org/x/text to 0.7.0 (#66) [#66](https://github.com/openshift/network-metrics-daemon/pull/66) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/2dfa218ea9feb2b80f22f16c27bddd16fbcbfb87...b480d571c66d05fb844120995580cc05353f1101) ### [oc-mirror](https://github.com/openshift/oc-mirror/tree/3d517407dcbc46ededd7323c7e8f6d6a45efc649) * [OCPBUGS-6703](https://issues.redhat.com/browse/OCPBUGS-6703): fix: adds logic that searches for the correct name when using a heads… (#554) [#554](https://github.com/openshift/oc-mirror/pull/554) * [Full changelog](https://github.com/openshift/oc-mirror/compare/4d9ea8d0d25673c0af0950adf8c6b8714ea6016c...3d517407dcbc46ededd7323c7e8f6d6a45efc649) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/9176d8600a10d34527992d462f4006178d4bfcf7) * [OCPBUGS-7155](https://issues.redhat.com/browse/OCPBUGS-7155): Address CVE-2022-41717 [#55](https://github.com/openshift/machine-api-provider-openstack/pull/55) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/5f1ea9f0dbdadb30f67e7539ff357170f9401773...9176d8600a10d34527992d462f4006178d4bfcf7) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/01e82553f65d660f4c61d8a8617dba60d6ecb412) * [OCPBUGS-7556](https://issues.redhat.com/browse/OCPBUGS-7556): Defuse E2e timebomb [#449](https://github.com/openshift/operator-framework-olm/pull/449) * [OCPBUGS-7086](https://issues.redhat.com/browse/OCPBUGS-7086): cherry-pick pull request refactor FBC caching (#1051) f… [#441](https://github.com/openshift/operator-framework-olm/pull/441) * [OCPBUGS-6260](https://issues.redhat.com/browse/OCPBUGS-6260): Catalog, fatal error: concurrent map read and map write [#440](https://github.com/openshift/operator-framework-olm/pull/440) * [OCPBUGS-7025](https://issues.redhat.com/browse/OCPBUGS-7025): Set ImagePullPolicy of bundle unpacker to "IfNotPresent" for image digests [#439](https://github.com/openshift/operator-framework-olm/pull/439) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/d6d213925d54c360f4d2f93ef729ff983322375a...01e82553f65d660f4c61d8a8617dba60d6ecb412) ### [ovn-kubernetes, ovn-kubernetes-microshift](https://github.com/openshift/ovn-kubernetes/tree/d827e379656033d95c695787f1abdc512497c7bb) * [OCPBUGS-6040](https://issues.redhat.com/browse/OCPBUGS-6040): addMasqueradeRoute: fallback to gateway interface IPs [#1484](https://github.com/openshift/ovn-kubernetes/pull/1484) * [OCPBUGS-7230](https://issues.redhat.com/browse/OCPBUGS-7230): Delete IGMP Groups when deleting stale chassis [#1516](https://github.com/openshift/ovn-kubernetes/pull/1516) * [OCPBUGS-3399](https://issues.redhat.com/browse/OCPBUGS-3399): Drop in-cluster traffic towards svcCIDR at wrong port [#1490](https://github.com/openshift/ovn-kubernetes/pull/1490) * [OCPBUGS-6961](https://issues.redhat.com/browse/OCPBUGS-6961): update base image of Dockerfile [#1504](https://github.com/openshift/ovn-kubernetes/pull/1504) * [OCPBUGS-6823](https://issues.redhat.com/browse/OCPBUGS-6823): [release-4.12] Fix Egress FW ACL rules in dualstack mode [#1500](https://github.com/openshift/ovn-kubernetes/pull/1500) * [OCPBUGS-4862](https://issues.redhat.com/browse/OCPBUGS-4862): Correct the deletion of noHostSubnet nodes [#1470](https://github.com/openshift/ovn-kubernetes/pull/1470) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): ovnkube-trace: run ovn-sbctl and ovn-trace with --no-leader-only [#1489](https://github.com/openshift/ovn-kubernetes/pull/1489) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/e5fff733e0936d3ce30633f41d402da82e173186...d827e379656033d95c695787f1abdc512497c7bb) ### [prometheus-config-reloader, prometheus-operator, prometheus-operator-admission-webhook](https://github.com/openshift/prometheus-operator/tree/57e7c5741af878b97e473827c5bd82462e996856) * [OCPBUGS-7458](https://issues.redhat.com/browse/OCPBUGS-7458): Fixes ThanoRuler StatefulSet re-creation bug [#217](https://github.com/openshift/prometheus-operator/pull/217) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/9b41d30910b7f36da0dad500fdb0870e86759366...57e7c5741af878b97e473827c5bd82462e996856) ### [tests](https://github.com/openshift/origin/tree/4262632da6af0f720159bda4c37276956e8829e5) * [OCPBUGS-7633](https://issues.redhat.com/browse/OCPBUGS-7633): remove reference to old guard pods [#27732](https://github.com/openshift/origin/pull/27732) * [OCPBUGS-7285](https://issues.redhat.com/browse/OCPBUGS-7285): extended: security: do not explicitly set api audience on token request [#27716](https://github.com/openshift/origin/pull/27716) * [OCPBUGS-6850](https://issues.redhat.com/browse/OCPBUGS-6850): [release-4.12] upgrade/adminack: guarantee one admin ack check post-upgrade [#27684](https://github.com/openshift/origin/pull/27684) * [Full changelog](https://github.com/openshift/origin/compare/bcbf338ea7ca23ed7b6014455d17b09b66417355...4262632da6af0f720159bda4c37276956e8829e5) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/4d9496e254d15bfc50b58d60a37d0e9968986832) * [OCPBUGS-6936](https://issues.redhat.com/browse/OCPBUGS-6936): fix for nil user session (#1859) [#57](https://github.com/openshift/vmware-vsphere-csi-driver/pull/57) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/df89e303405042aa0c8f8704962910a4ef486ab8...4d9496e254d15bfc50b58d60a37d0e9968986832) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/c65eb79c378729ef266cdc219324ecc3e7c3ac87) * [OCPBUGS-6788](https://issues.redhat.com/browse/OCPBUGS-6788): Derive the fully qualified vSphere username when checking permissions [#98](https://github.com/openshift/vsphere-problem-detector/pull/98) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/7328d215995baa4bdf623021741c669251ea4296...c65eb79c378729ef266cdc219324ecc3e7c3ac87)