# 4.7.0-0.okd-2021-04-24-103438 Created: 2021-04-24 18:32:54 +0000 UTC Image Digest: `sha256:1c71a740375b34df53c6e2bfe389018f3160cea46c4022ed6080f583c54ecbc0` Promoted from registry.ci.openshift.org/origin/release:4.7.0-0.okd-2021-04-24-103438 ## Changes from 4.7.0-0.okd-2021-03-28-152009 ### Components * Kubernetes 1.20.0-beta.2 * Fedora CoreOS upgraded from 33.20210323.10 to 33.20210328.3 ### Rebuilt images without code change * [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal) git [25cbb8d8](https://github.com/openshift/cluster-api-provider-baremetal/commit/25cbb8d8f9e52244ccd6bf459e6dd4b84749de56) `sha256:ea6953c17668c689fef4ef59caef2db541820f3594314098aef4f8256bafeaf7` * [baremetal-operator](https://github.com/openshift/baremetal-operator) git [74c60aa9](https://github.com/openshift/baremetal-operator/commit/74c60aa957f53432d0a98afc78099add55d27c44) `sha256:f8de068a6bb16340bfe340c5a96ea72c21c171bb6ade7b78a25ae8d448513d14` * [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator) git [cf1e1a6c](https://github.com/openshift/cluster-authentication-operator/commit/cf1e1a6c79db7cf29e7de2a90ecdc458bc13059c) `sha256:4ef16b50eaabb36a4000d2d9a23bbc5e0c7708c0c991e57f62b9f4973bb5a7c9` * [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator) git [ee35da5b](https://github.com/openshift/cluster-etcd-operator/commit/ee35da5b3ee486f786d7687849d57599d46dfc2e) `sha256:0b864a5e6e5373e93e9657b25e43c66ab0355c6dfc64b6ec10cbea117e569097` * [console-operator](https://github.com/openshift/console-operator) git [4f933d59](https://github.com/openshift/console-operator/commit/4f933d59784bd37216466ca329ea51fc797b99a1) `sha256:02d36cb864397fbfa7666c395a7f443dffea96395b21247c091de033e5c0bc9a` * [haproxy-router](https://github.com/openshift/router) git [130b5993](https://github.com/openshift/router/commit/130b5993726c46e83ca871a97a930d73f2c433a8) `sha256:fa77fcb0085bc294805b9bde7b38c7be9bd06e8fa8044a6c96ba838be4354475` * [insights-operator](https://github.com/openshift/insights-operator) git [23a29892](https://github.com/openshift/insights-operator/commit/23a298922d25de761c8f765625d6ebb63a25774e) `sha256:0d532ac30ad9cf5cc0717c9d0ee1dc546422a544aa5a87166c2260ccb5106677` * [oauth-server](https://github.com/openshift/oauth-server) git [3215761a](https://github.com/openshift/oauth-server/commit/3215761a70426326f0be2ca675b0e9b9fdae341e) `sha256:828319ba81b642915b547baae2d72da16893cae8661e8f71c53ff7e594e20300` ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/4e6ac5edae9417bd673e8f37ee12f92e9d333397) * [Bug 1942488](https://bugzilla.redhat.com/show_bug.cgi?id=1942488): sort AddressesDefault by route priority, ifindex, and IPv4/IPv6 preference [#132](https://github.com/openshift/baremetal-runtimecfg/pull/132) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/7cdf5fdf6947966780a1502ef37ad9e0ac647435...4e6ac5edae9417bd673e8f37ee12f92e9d333397) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/95881afb5df065c250d98cf7f30ee4bb6d281acf) * [Bug 1942938](https://bugzilla.redhat.com/show_bug.cgi?id=1942938): [release-4.7] inspect clusteroperators as a backup to must-gather if it fails [#766](https://github.com/openshift/oc/pull/766) * [Full changelog](https://github.com/openshift/oc/compare/2513fdbb36e2ddf13bc0b17460151c03eb3a3547...95881afb5df065c250d98cf7f30ee4bb6d281acf) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/175f8f5283faebd81fb9d1fb2915eb2682622e1e) * [Bug 1936544](https://bugzilla.redhat.com/show_bug.cgi?id=1936544): Inject proxy environment variables everywhere [#117](https://github.com/openshift/cluster-baremetal-operator/pull/117) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/ea1ff11f6cd33532bd3f3cdd7e010e97de0fcd04...175f8f5283faebd81fb9d1fb2915eb2682622e1e) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/0dd9bae28a315233ceddcb82cd2332ef7f7614cd) * [Bug 1942228](https://bugzilla.redhat.com/show_bug.cgi?id=1942228): Fix spurious reconciliation of DNS daemonset and service [#250](https://github.com/openshift/cluster-dns-operator/pull/250) * [Bug 1943826](https://bugzilla.redhat.com/show_bug.cgi?id=1943826): Corefile: Use 30 second max TTL for caching of negative responses [#254](https://github.com/openshift/cluster-dns-operator/pull/254) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/0eb71da96f0d4b70aea85c2241e226cda5865b1d...0dd9bae28a315233ceddcb82cd2332ef7f7614cd) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/099c6afa1f8b4fe7654207f7eabd7784b42ce2e3) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#1041](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1041) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/60dc437fe7f19ea91be6900e5e4974d7dadbeb11...099c6afa1f8b4fe7654207f7eabd7784b42ce2e3) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/6f49a9facf8b2764fa4c1482624fa1f7762e41ed) * Updating ose-cluster-machine-approver builder & base images to be consistent with ART [#103](https://github.com/openshift/cluster-machine-approver/pull/103) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/72a4740ff38e9c924d0f7cd760b6b5fd85283242...6f49a9facf8b2764fa4c1482624fa1f7762e41ed) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/da421b0e3c3362771e8d91befdd934ac09697db1) * [Bug 1945856](https://bugzilla.redhat.com/show_bug.cgi?id=1945856): Revert "Bug 1934516: [4.7]: jsonnet/prometheus.jsonnet: Apply system-cluster-critical class to cluster Prometheus " [#1103](https://github.com/openshift/cluster-monitoring-operator/pull/1103) * [Bug 1945851](https://bugzilla.redhat.com/show_bug.cgi?id=1945851): Backport Remove the "instance" and "pod" labels for kube-state-metrics metrics [#1101](https://github.com/openshift/cluster-monitoring-operator/pull/1101) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/3b4ba34a9afd6cedf534445d52d279fdd01e36a5...da421b0e3c3362771e8d91befdd934ac09697db1) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/01c8bd041411bcae01abcee6c9201337742ebd7f) * [Bug 1936719](https://bugzilla.redhat.com/show_bug.cgi?id=1936719): OSD-6600 network-metrics missing priorityClass [#1007](https://github.com/openshift/cluster-network-operator/pull/1007) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#1050](https://github.com/openshift/cluster-network-operator/pull/1050) * [Bug 1941212](https://bugzilla.redhat.com/show_bug.cgi?id=1941212): The Multus daemonset should handle 10% maxUnavailable [#1030](https://github.com/openshift/cluster-network-operator/pull/1030) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/fff8ccbf7647d260ca6ce3c075e20014ac255860...01c8bd041411bcae01abcee6c9201337742ebd7f) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/e9dac4b23fb59c58a34d8d6533dd6bc1b6939ea3) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#444](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/444) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/3e7d4b41ef5c311b1bdc58490bdf5b5655cfa22c...e9dac4b23fb59c58a34d8d6533dd6bc1b6939ea3) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/245005e3065238ecd4aef208c21456afa09ec38e) * [Bug 1944142](https://bugzilla.redhat.com/show_bug.cgi?id=1944142): Bump kubernetes to 0.20.5 [#204](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/204) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/3193372af4e97dbf504f21ab84fe0d41cd96ec73...245005e3065238ecd4aef208c21456afa09ec38e) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/257793946a0655f7af4597c3b7da2de2b4249702) * [Bug 1950808](https://bugzilla.redhat.com/show_bug.cgi?id=1950808): add DeepCopy to avoid SharedInformer cache mutation [#370](https://github.com/openshift/cluster-samples-operator/pull/370) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/c283ca0858ce3a6bc7e64f2b7d1c3e61cc351aab...257793946a0655f7af4597c3b7da2de2b4249702) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/41d14d4c27e274b236426ef80d2144cf46ded532) * [Bug 1919356](https://bugzilla.redhat.com/show_bug.cgi?id=1919356): Add IBM Cloud managed annotations to CVO manifests [#24](https://github.com/openshift/cluster-update-keys/pull/24) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/75a97e9bf5e9101f547be7bf3bb2310836e18837...41d14d4c27e274b236426ef80d2144cf46ded532) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/1db886781f4e1f18965e60d89da80ec1d677228b) * [Bug 1943754](https://bugzilla.redhat.com/show_bug.cgi?id=1943754): Ensure automountServiceAccountToken is synced on service account updates [#539](https://github.com/openshift/cluster-version-operator/pull/539) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/7df967b0c2ed0763d6d0fe7f9c8623e9f970a760...1db886781f4e1f18965e60d89da80ec1d677228b) ### [console](https://github.com/openshift/console/tree/39b08772b0fcce105c81319b796d897e358ece95) * [Bug 1942843](https://bugzilla.redhat.com/show_bug.cgi?id=1942843): Modified description for storage class encryption - 4.7 Backport [#8462](https://github.com/openshift/console/pull/8462) * [Bug 1948938](https://bugzilla.redhat.com/show_bug.cgi?id=1948938): [release-4.7] Prow script point to deleted resource [#8619](https://github.com/openshift/console/pull/8619) * [Bug 1944855](https://bugzilla.redhat.com/show_bug.cgi?id=1944855): Update Dockerfile.product for nodejs v14.16.0 [#8488](https://github.com/openshift/console/pull/8488) * [Bug 1945153](https://bugzilla.redhat.com/show_bug.cgi?id=1945153): Remove pipeline Tech preview badge for pipelines GA operator [#8528](https://github.com/openshift/console/pull/8528) * [Bug 1943643](https://bugzilla.redhat.com/show_bug.cgi?id=1943643): fix pipeline metrics endpoint for 1.4 osp [#8489](https://github.com/openshift/console/pull/8489) * [Bug 1944349](https://bugzilla.redhat.com/show_bug.cgi?id=1944349): fix backwards incompatible trigger api changes [#8503](https://github.com/openshift/console/pull/8503) * [Full changelog](https://github.com/openshift/console/compare/5c7d09c9a8d4e4d58e25508cd7103cffadfdba39...39b08772b0fcce105c81319b796d897e358ece95) ### [docker-builder](https://github.com/openshift/builder/tree/df50aa9a4dd8e378d77c398b4d5c55211b9d14ba) * [Bug 1943726](https://bugzilla.redhat.com/show_bug.cgi?id=1943726): add bracket logging on openshift/builder calls into buildah to assist test-platform team triage [#237](https://github.com/openshift/builder/pull/237) * [Bug 1945692](https://bugzilla.redhat.com/show_bug.cgi?id=1945692): move entitlement related secrets back to mounts.conf [#240](https://github.com/openshift/builder/pull/240) * [Full changelog](https://github.com/openshift/builder/compare/14156f392c82ac10a230c313cc93b3951af1f592...df50aa9a4dd8e378d77c398b4d5c55211b9d14ba) ### [etcd](https://github.com/openshift/etcd/tree/45b6800c4fab213e7afee1e406abe48cc14ee020) * [ETCD-178](https://issues.redhat.com/browse/ETCD-178): Bug 1944386: openshift-tools: fix on off flow and add unit tests [#74](https://github.com/openshift/etcd/pull/74) * [Full changelog](https://github.com/openshift/etcd/compare/cca97c76b915b1d14abd39814995fa1e2d087145...45b6800c4fab213e7afee1e406abe48cc14ee020) ### [hello-openshift, tests](https://github.com/openshift/origin/tree/17e0bb8eadaee7e8bd2a2cb87720f6b871feade2) * [Bug 1942055](https://bugzilla.redhat.com/show_bug.cgi?id=1942055): upgrade/upgrade.go: Enhance upgrade ack time out error [#26012](https://github.com/openshift/origin/pull/26012) * [Full changelog](https://github.com/openshift/origin/compare/8eaf43f001f50c584d62f267a0030c23daa25ac8...17e0bb8eadaee7e8bd2a2cb87720f6b871feade2) ### [hyperkube](https://github.com/openshift/kubernetes/tree/7d0a2b269a27413f5f125d30c9d726684886c69a) * [Bug 1945856](https://bugzilla.redhat.com/show_bug.cgi?id=1945856): 99729:Only system-node-critical pods should be OOM Killed last [#642](https://github.com/openshift/kubernetes/pull/642) * [Bug 1927717](https://bugzilla.redhat.com/show_bug.cgi?id=1927717): UPSTREAM: 98939: fixes race in TestSyncPodsDeletesWhenSourcesAreReady [#567](https://github.com/openshift/kubernetes/pull/567) * [Full changelog](https://github.com/openshift/kubernetes/compare/bafe72fb05eddc8246040b9945ec242b9f805935...7d0a2b269a27413f5f125d30c9d726684886c69a) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/2310aee1ebfca13a25162f754908e35aa1550d6d) * [Bug 1941993](https://bugzilla.redhat.com/show_bug.cgi?id=1941993): Fix incorrect unmonitoring of egress nodes [#279](https://github.com/openshift/sdn/pull/279) * [Full changelog](https://github.com/openshift/sdn/compare/9ddcd3669847fba83222504c91506f300bf081e3...2310aee1ebfca13a25162f754908e35aa1550d6d) ### [machine-os-content](https://github.com/openshift/okd-machine-os/tree/570737f3da52045a7082d24effea2f95272524ef) * Strip xattrs [#112](https://github.com/openshift/okd-machine-os/pull/112) * [Full changelog](https://github.com/openshift/okd-machine-os/compare/b632cfe7be5dc185b8259395daacc82922178fb8...570737f3da52045a7082d24effea2f95272524ef) ### [multus-cni](https://github.com/openshift/multus-cni/tree/5530094db7607fc9292e3b269fcf5a85b0dad3df) * [Bug 1927896](https://bugzilla.redhat.com/show_bug.cgi?id=1927896): make a copy of global RuntimeConfig on merge [#91](https://github.com/openshift/multus-cni/pull/91) * [Full changelog](https://github.com/openshift/multus-cni/compare/1728ddf0d06ef43386aa64aeab41a9e0380c6813...5530094db7607fc9292e3b269fcf5a85b0dad3df) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/cdf51cddb619e84e2ce5be78ab2d7e7f6d748ec6) * [Bug 1947909](https://bugzilla.redhat.com/show_bug.cgi?id=1947909): Do not adopt copied CSVs [#2089](https://github.com/operator-framework/operator-lifecycle-manager/pull/2089) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/44f92b8a8e6d8f716eef00b192f4d80441ea160d...cdf51cddb619e84e2ce5be78ab2d7e7f6d748ec6) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/01b9bf8368a3da974bf1c9114c618a548d346acd) * [Bug 1939358](https://bugzilla.redhat.com/show_bug.cgi?id=1939358): extract node machine ipaddress from the engine instead using DNS . [#98](https://github.com/openshift/cluster-api-provider-ovirt/pull/98) * [Bug 1939360](https://bugzilla.redhat.com/show_bug.cgi?id=1939360): providerIDController ignore nodes that have no machine [#99](https://github.com/openshift/cluster-api-provider-ovirt/pull/99) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/e6fa5e240bca27e126b9de179e8c56220f1a9c44...01b9bf8368a3da974bf1c9114c618a548d346acd) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/7d1d12fd4ca2206b19cecf61f4b1cb41d8251339) * [Bug 1951552](https://bugzilla.redhat.com/show_bug.cgi?id=1951552): master: Delay deleting Namespace's address set for 20 seconds [#507](https://github.com/openshift/ovn-kubernetes/pull/507) * [Bug 1950432](https://bugzilla.redhat.com/show_bug.cgi?id=1950432): [4.7] pods: bind pod logical switch ports to the node's chassis with requested-chassis [#503](https://github.com/openshift/ovn-kubernetes/pull/503) * [Bug 1924826](https://bugzilla.redhat.com/show_bug.cgi?id=1924826): Backport Update gogo/protobuf to v1.3.2. [#464](https://github.com/openshift/ovn-kubernetes/pull/464) * [Bug 1943316](https://bugzilla.redhat.com/show_bug.cgi?id=1943316): [4.7] master: enable logical datapath groups for OVN >= 20.12 [#478](https://github.com/openshift/ovn-kubernetes/pull/478) * [Bug 1946696](https://bugzilla.redhat.com/show_bug.cgi?id=1946696): iptables: add filter on node local traffic [#489](https://github.com/openshift/ovn-kubernetes/pull/489) * [Bug 1947835](https://bugzilla.redhat.com/show_bug.cgi?id=1947835): Fix service update for policy type assertion [#493](https://github.com/openshift/ovn-kubernetes/pull/493) * [Bug 1942702](https://bugzilla.redhat.com/show_bug.cgi?id=1942702): backport lr-nat-del/add fixes [#484](https://github.com/openshift/ovn-kubernetes/pull/484) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/1481e2d2b1716fc3abeac8c59bc8ff8ed3457d08...7d1d12fd4ca2206b19cecf61f4b1cb41d8251339)