Back to index
4.13.0-0.okd-2023-06-04-080300
Download installer and client with:
oc adm release extract --tools quay.io/openshift/okd:4.13.0-0.okd-2023-06-04-080300
Team Approvals:
No tests for this release
Upgrades from:
Upgrades to:
Loading changelog, this may take a while ...
Created: 2023-06-04 08:18:52 +0000 UTC
Image Digest: sha256:d696b82dbdac77fa98518ef1e8891104eb937d29c6461539407b301c79ea2177
Release 4.13.0-0.okd-2023-06-04-080300 was created from registry.ci.openshift.org/origin/release:4.13.0-0.okd-2023-06-04-080300
Components
- Kubernetes upgraded from 1.25.7 to 1.26.5
- Fedora CoreOS upgraded from 37.20230218.3 to 38.20230514.3
New images
Removed images
- openstack-machine-controllers
- ovn-kubernetes
- ovn-kubernetes-microshift
Rebuilt images without code change
- MGMT-14319 chronyc segfaulting Running chronyc on host and not in container (#535) #535
- OCPBUGS-8695: vendor agent-installer-utils to v0.0.0-20230310220517-8506fbb6a346 (#518) #518
- MGMT-13946: Ignore Proliant Gen 11 serial (#523) #523
- OCPBUGS-8677: vendor agent-installer-utils to v0.0.0-20230308101916-306b7995977e (#515) #515
- OCPBUGS-8390: vendor agent-installer-utils to v0.0.0-20230307094740-57807526b660 (#512) (#513) #512
- AGENT-565: revendor agent-utils (#508) #508
- vendor agent-installer-utils to v0.0.0-20230228190135-5b30a39dadf6 (#506) #506
- vendor agent-installer-utils (#505) #505
- NO-ISSUE: Bump github.com/stretchr/testify from 1.8.1 to 1.8.2 (#504) #504
- NO-ISSUE: Bump github.com/coreos/ignition/v2 from 2.14.0 to 2.15.0 (#502) #502
- MGMT-13758: In connectivity check, ARPING checks should not run on nics without valid IPv4 address (#501) #501
- Updating ose-agent-installer-node-agent images to be consistent with ART (#469) #469
- AGENT-502: Add agent based installer agent-tui (#482) #482
- Make the agent team be the OWNERS of the Dockerfile.ocp file (#498) #498
- Add sg3_utils package (#497) #497
- NO-ISSUE: Bump github.com/onsi/gomega from 1.26.0 to 1.27.1 (#495) #495
- MGMT-13665: Bring full journal by default in log gather (#492) #492
- NO-ISSUE: Bump golang.org/x/sys from 0.4.0 to 0.5.0 (#491) #491
- Remove S.M.A.R.T. collection (#489) #489
- Update Dockerfile.assisted_installer_agent (#487) #487
- NO-ISSUE: Bump github.com/onsi/gomega from 1.25.0 to 1.26.0 (#488) #488
- MULTIARCH-3239: - Add multipath FC disk check for Power (#483) #483
- NO-ISSUE: Bump github.com/onsi/gomega from 1.24.2 to 1.25.0 (#486) #486
- MGMT-13420: Adding cleanup of next-step-runner before starting it. (#484) #484
- MGMT-12535: Add step verify vips (#476) #476
- MGMT-12906: Refactor connectivity check (#471) #471
- NO-ISSUE: Bump github.com/thoas/go-funk from 0.9.2 to 0.9.3 (#474) #474
- NO-ISSUE: Bump github.com/itchyny/gojq from 0.12.9 to 0.12.11 (#473) #473
- NO-ISSUE: Bump github.com/onsi/gomega from 1.22.1 to 1.24.2 (#472) #472
- MGMT-11885: disk_speed_check: escape colons when calling fio (#427) (#464) #427
- MGMT-12827: Don’t try to rename when there is no usable NIC (#466) #466
- NO-ISSUE: Bump github.com/go-openapi/runtime from 0.24.2 to 0.25.0 (#465) #465
- MGMT-12537: detect virtualized environment (#451) #451
- NO-ISSUE: Stop retry when backoff expires or context is cancelled (#462) #462
- MGMT-12793: Tang unit tests should not query external URLs (#463) #463
- OCPBUGS-3157: The connectivity check fails if an interface has a link-local address (#461) #461
- Remove validation on commit messages (#460) #460
- MGMT-12760: Don’t panic when retrying after no response (#459) #459
- OCPBUGSM-46219: OCPBUGSM-46220: Update golang version to 1.18.1. (#452) #452
- MGMT-12711: Verify that L2 connectivity checks are received grouped by ip+mac instead of just mac (#456) #456
- MGMT-11551: Retry when service fails (#438) #438
- MGMT-11970: Detect and handle IP conflicts (#433) #433
- NO-ISSUE: Bump github.com/spf13/afero from 1.9.0 to 1.9.3 (#454) #454
- MGMT-11551: Retry when service fails (#442) #442
- MGMT-8460: Automatically rename discovered hosts (#449) #449
- Full changelog
- OCPBUGS-28849: Updating ose-alibaba-disk-csi-driver-operator-container image to be consistent with ART for 4.16 #85
- STOR-1714: Release leadership on SIGTERM #83
- OCPBUGS-25528: Updating ose-alibaba-disk-csi-driver-operator-container image to be consistent with ART #80
- OCPBUGS-24226: setting TLSSecurityProfile with no minTLSVersion crashes controller #78
- STOR-1688: Chore: add .snyk file to ignore false positives #79
- OCPBUGS-24801: Updating ose-alibaba-disk-csi-driver-operator-container image to be consistent with ART #74
- OCPBUGS-23825: CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #73
- OCPBUGS-23306: Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #75
- STOR-1402, STOR-1453: update libraries and specify TLS_MIN_VERSION #72
- OCPBUGS-22541: CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #70
- OCPBUGS-22357: CVE-2023-44487: bump github.com/openshift/library-go to master #69
- OCPBUGS-21593: CVE-2023-44487: bump golang.org/x/net to v0.17.0 #62
- STOR-1276: Enable support for mounting volumes with SELinux context #57
- OCPBUGS-19111: Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #61
- STOR-1439: Restart controller Pods if metrics-serving-cert changed #56
- OCPBUGS-16783: Chore: Update OWNERS #54
- OCPBUGS-14824: Bump alibaba-disk-csi-driver-operator library-go #53
- STOR-1168: Bump common libraries #51
- OCPBUGS-12545: Bump golang.org/x/net@v0.9.0 #50
- Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #49
- Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #48
- Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #47
- OCPBUGS-8683: Add management workloads annotations #46
- Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #45
- STOR-1019: Bump to k8s 1.26 libs for OCP 4.13 #44
- STOR-947: support disabling default StorageClass via ClusterCSIDriver #41
- Bug 2106736: Add multiplePVsSameID capability #43
- STOR-1078: Add hostPaths necessary for SELinux mounts #42
- Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #40
- OCPBUGS-4347: set TLS cipher suites in Kube RBAC sidecars #39
- Full changelog
- Update OWNERS #40
- Updating ose-alibaba-machine-controllers images to be consistent with ART #39
- Update OWNERS #38
- Full changelog
- OCPBUGS-13828: assets/hypershift/controller_sa: Set controller ServiceAccount imagePullSecrets #224
- OCPBUGS-10645: Hypershift: set control plane operand properties #206
- OCPBUGS-10405: feat: add workload annotation to deployment and daemonset #199
- STOR-875: Implement custom keys in AWS EBS CSI driver operator #185
- OCPBUGS-7837: do not inject-proxy when deploying in hypershift control plane #186
- Bump github.com/spf13/cobra from 1.6.0 to 1.6.1 #182
- Add ok-to-test label to dependabot PRs #184
- Bump k8s.io/klog/v2 from 2.80.1 to 2.90.0 #183
- add dependabot config for gomod updates #181
- STOR-1019: Bump to k8s 1.26 libs for OCP 4.13 #179
- STOR-947: support disabling default StorageClass via ClusterCSIDriver #173
- [#177] fix 404 in readme #178
- Bug 2106736: Add multiplePVsSameID capability #175
- STOR-1078: Add hostPaths necessary for SELinux mounts #174
- Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART #172
- OCPBUGS-4491: hypershift: use correct kubeconfig secret #169
- OCPBUGS-4347: set TLS cipher suites in Kube RBAC sidecars #168
- OCPBUGS-3990: Add HyperShift specific priorityClass #167
- OCPBUGS-3978: Don’t deploy VolumeSnapshotClass in static controller #165
- Full changelog
- Updating ose-aws-pod-identity-webhook images to be consistent with ART #158
- Full changelog
- OCPBUGS-13011: Allow deprecated beta topology labels to be applied for those not ready to migrate #66
- OCPBUGS-8326: update kubernetes dependencies to 1.26 #56
- Update OWNERS #54
- Updating ose-azure-cloud-node-manager images to be consistent with ART #51
- Updating ose-azure-cloud-controller-manager images to be consistent with ART #52
- Update OWNERS #53
- Full changelog
- Bug OCPBUGS-7408: UPSTREAM: 1725: Pin k8s.io/dynamic-resource-allocation version #38
- STOR-1016: Rebase to v1.26.1 for OCP 4.13 #37
- Updating ose-azure-disk-csi-driver images to be consistent with ART #35
- Full changelog
- OCPBUGS-13765: Support /dev/disk/by-path root device hints #7193
- OCPBUGS-14171: Ignore IAM Roles that the Installer is not authorized to access #7210
- OCPBUGS-11530: [release-4.13] add project filter to gcp usage api requests #7045
- OCPBUGS-10493: Nutanix Hostname of the VM is not set when using DHCP network config #7016
- OCPBUGS-14027: GCP XPN: Pass instance service acct in manual mode #7204
- OCPBUGS-11775: Log additional info when status is pending-user-action #7090
- OCPBUGS-13086: Bootstrap on aws should have same metadata service type as on other nodes #7162
- OCPBUGS-12886: use python3 for cloud sdk #7140
- OCPBUGS-11799: update RHCOS 4.13 bootimage metadata to 413.92.202305021736-0 #7156
- OCPBUGS-12910: openstack: Add netcat to the Installer image #7144
- OCPBUGS-11845, OCPBUGS-11846, OCPBUGS-11847: CVE: bump hashicorp/vault version #7097
- OCPBUGS-5140: [Alibaba] update the bandwidth value of EIP #7010
- OCPBUGS-11261: Fix and improve locking session and AWS Metadata access #7129
- OCPBUGS-12179: agent: copy also symbolic link when storing agent-tui related files into the agent ISO #7113
- OCPBUGS-11950: vsphere, nutanix survey: relax vip in machine cidr #7107
- OCPBUGS-11529: [release-4.13] gather: azure: fix collecting VM serial logs #7077
- OCPBUGS-10658: openstack: No master primarySubnet control-plane if portTarget is set #7008
- OCPBUGS-11789: update RHCOS 4.13 bootimage metadata to 413.92.202304131328-0 #7093
- OCPBUGS-11659: Upgrade libnmstate version used #7082
- OCPBUGS-11661: AWS - Remove ACLs from s3 ign #7083
- OCPBUGS-11010: vSphere - finding networks use full path cluster #7043
- OCPBUGS-10892: Don’t log password values #7024
- OCPBUGS-11093: pkg/asset/installconfig: set subscriptionID #7049
- OCPBUGS-11188: Use 100 GB as minimum disk size in validations #7053
- OCPBUGS-10989: Properly handle invalid agent command #7034
- OCPBUGS-10903: IBMCloud: Fix SSH Private bootstrap #7027
- OCPBUGS-11011: Do not remove host default configuration unless network configuration is provided for it #7044
- OCPBUGS-11040: remove container-runtime flag from kubelet config #7048
- OCPBUGS-11054: GCP: add europe-west12 region to the survey as supported region #7046
- OCPBUGS-11004: Kubelet Client Cert should include system:serviceaccounts group #7039
- OCPBUGS-10902: IBMCloud set dnsrecords offset #7026
- rhcos: Bump to 413.92.202303281804-0 #7041
- OCPBUGS-10657: Do not always output warning msg when releaseImage is digest #7007
- OCPBUGS-10656: Verify output file exists when
oc image extract
is run #7006
- OCPBUGS-10813: bootstrap-pivot: skip pivot in SCOS Live ISO #7020
- OCPBUGS-8511: baremetal: do not use port 80 for httpd #7022
- OCPBUGS-10214: CVE-2023-25173: bump containerd #7013
- OCPBUGS-10597: fix agent tui showing up multiple times #6989
- OCPBUGS-6265: Shorten SNO installation duration by releasing CVO lease #6979
- OCPBUGS-10585: rhcos: Update to 413.92.202303190222-0 #6997
- OCPBUGS-10499: [release-4.13] CVE: bump mongo-go-driver for fix #6986
- OCPBUGS-10436: Sort userTags in Machine and Machineset manifests #6983
- OCPBUGS-10213: aws: bump aws-sdk-go version #6969
- update RHCOS 4.13 bootimage metadata #6955
- OCPBUGS-8463: [release-4.13] OpenStack Failure domains #6948
- OCPBUGS-8312: Power VS: Add resourceGroup to infrastructure manifest #6930
- OCPBUGS-8353: Disable ‘create pxe-files’ command #6939
- OCPBUGS-8463: [release-4.13] openstack: consistent TechPreview-only feature validation #6934
- OCPBUGS-8341: Pass Capabilites from install-config to cluster #6936
- OCPBUGS-8343: Disable systemd status while TUI showing #6938
- OCPBUGS-8342: Specify filename for default registries.conf #6937
- SPLAT-636: Create edge compute pool to support AWS Local Zones #6931
- OPNET-199: Allow v6-primary dual stack on baremetal #6881
- Generate CSI driver manifests #6856
- Azure: use managed storage account for boot logs #6848
- OCPBUGS-7015: Relax MachineCIDR check for vSphere, Nutanix #6915
- ARMOCP-417: enable arm64 for agent installer #6401
- AGENT-502: Enable agent tui #6898
- GCP: conditionally create bootstrap service account #6853
- vsphere: Remove bostrt from approver/reviewer group #6918
- OCPBUGS-7860: azure: session: fix unclear auth error messages #6901
- OCPBUGS-7991: vSphere - only create RP when cluster is not empty #6905
- Support the new fields in NutanixMachineProviderConfig #6841
- openstack-manifests: Option to run selected test cases #6908
- AGENT-526: Refactor Agent InstallConfig embedding #6796
- OCPBUGS-7993: hack/build-coreos-manifest: support OKD #6906
- bump version of ovirt terraform provider #6883
- OCPBUGS-7622: Ignore CPMS file if not exist #6887
- linter: enable reporting about exported names lacking comments #6880
- CFE-757: Fix issues reported by QE #6870
- OCPBUGS-7579: azure: fix certificate-based auth with passpharse #6871
- Update alias for Metal Platform #6884
- CORS-2496: Default
2xlarge
instead of xlarge
in AWS when the control-plane is single-node #6814
- OSASINFRA-3090: External LB support for on-prem platforms #6812
- Bug 1904573: baremetal container modify /etc/passwd group writable #6872
- SPLAT-823: Zonal GA, single terraform, deprecate legacy platform spec #6770
- openstack: Fix missing docs link #6852
- OCPBUGS-7180: update RHCOS 4.13 bootimage metadata #6861
- Removes m1kola from azure-reviewers #6865
- OCPBUGS-7495: Convert platform type for AgentClusterInstall #6855
- CFE-582: Generate Infrastructure CR with the azure user defined tags #6310
- AGENT-456: Remove connectivity checks from bash script #6846
- integration: Don’t pass host data in the install-config #6795
- linter: bump version to sync with CI #6859
- OCPBUGS-4954: IBMCloud: Handle COS reclamations #6845
- CFE-757: Fix issues reported by QE #6820
- CORS-2386: IBMCloud: Add networkResourceGroupName #6613
- IBMCloud: Add tests for installconfig metadata #6348
- OCPBUGS-1048: if tag categories don’t exist, the installation will fail to bootstrap #6327
- CFE-586: Apply user defined tags on created azure resources #6354
- OCPBUGS-7356: data/manifests/bootkube/cvo-overrides: Default to stable-4.13 #6689
- OCPBUGS-6777: Fix file check for loading openshift manifests #6821
- AGENT-505: Embed agent files in initrd #6842
- installer dev build settings to enable delve #6835
- OCPBUGS-7261: Update AgentConfig template #6840
- OCPBUGS-4549: azure: fix MS Graph calls on Gov cloud #6844
- openstack-manifests: Add a debug option #6839
- OpenStack: Fix distribution of zones on 32-bit systems #6834
- OCPBUGS-6422: CVE-2022-41717: bump net/http for fix #6801
- CNF-6357: feat: add CPU Partitioning flag into the install config #6430
- SPLAT-820: multi-zone is no longer tech preview #6782
- destroy: vsphere: move API calls to client abstraction and add unit tests #6604
- Add support for confidential compute #6799
- Add Adam #6824
- OCPBUGS-5234: azurestack: upi: fix compute scale up #6735
- CNF-6362: feat: add support for nto rendering during bootstrap #6691
- OCPBUGS-4997: Set the configured proxy settings for agent installer #6827
- azure: Add error message when authorizer fails. #6551
- OCPBUGS-6486: fixing ovirt installation on iSCSI #6816
- OCPBUGS-6270: Don’t require vSphere details for agent installer #6793
- OCPBUGS-6722: bootimage: move secure execution artifact to separate artifact #6811
- PowerVS: Check for potential network conflict in existing CCs #6798
- OCPBUGS-6663: Check platform baremetal settings against default values #6809
- AGENT-455: Check registry and rendezvous host access at startup #6767
- OCPBUGS-4549: destroy: azure: handle
nil
responses from msgraph sdk #6717
- AGENT-505: Embed agent-tui binary in the agent ISO #6786
- PowerVS: Remove region requirement #6772
- Bug 2072202: Check for reachability of API and API-Int URLs later in bootkube #6611
- Bug 2067847: prometheus/client_golang: Denial of service using InstrumentHandlerCounter #6391
- CORS-2479: bootstrap: set 0644 mode for registries.conf #6789
- GCP: Remove the BYOH code #6771
- AGENT-453: Create interactive console service for agent installer #6756
- OCPBUGS-5959: bump RHCOS 4.13 bootimage metadata #6790
- CORS-2469: upi: Document removal of CPMS for UPI installation #6727
- Bug 2070744: Fix infinite loop error #6515
- CORS-1558: Add uninstall complete after destroy code #6572
- AGENT-504: Agent extract binary #6777
- OCPBUGS-5182: validate additional confidential VM types #6733
- OCPBUGS-5461: Allow NO_PROXY to contain IPs #6776
- OCPBUGS-3253: Warn if agent assets detected when using non-agent waitfor #6740
- OCPBUGS-4654: azure: upi: use Image Gallery in ARM templates #6684
- OCPBUGS-5184: azure: validate Windows-only VM types #6734
- CORS-2449: gcp: Set pre-created CPMS to Active state #6752
- OCPBUGS-1612: vsphere: set default resource pool when missing failure domain topology #6409
- Generate the cloudproviderconfig manifests for integration of nutanix-ccm to OCP #6269
- CORS-2405: Create ControlPlaneMachineSet CRDs #6632
- OCPBUGS-5734: make VIP 168.63.129.16 noProxy in all clouds except Public #6761
- OCPBUGS-1695: Update FCOS to latest 37.20221127.3.0 stable #6487
- OCPBUGS-5770: CVE-2021-4238: goutils: update for randomness fix #6763
- BUG 2110982: GCP skip public loadbalancer ip addresses #6755
- AGENT-501: Make it easier to change node zero IP and SERVICE_BASE_URL #6747
- MGMT-12839: Add Shielded VMs options to gcp mpool and TF #6698
- OCPBUGS-5324: CVE-2021-4235 go-yaml: Denial of Service in go-yaml #6741
- OCPBUGS-881: fail to create install-config.yaml as apiVIP and ingress VIP are not in machine networks #6469
- SPLAT-901: set default for variables that are deprecated by failure_domains #6750
- OCPBUGS-1769: Check for AWS STS installation before trying to get all IAM Roles #6666
- GCP XPN: remove tech preview feature gate #6754
- Expose Azure useImageGallery parameter in the MachineSets() call #6737
- OCPBUGS-2088: Validate that the rendevousIP is assigned to a master #6716
- ARO-1796: Update Azure SDK for go to v63.1.0+incompatible #6746
- openstack: Revert Gophercloud workaround #6663
- SPLAT-900: provision VMs in to failure domains #6738
- OCPBUGS-4874: Remove order dependency for agent CLI string #6739
- CORS-2449: Create CPMS manifest #6695
- OCPBUGS-2881: Destroy the service and host project dns records #6534
- Bug OCPBUGS-3921: OpenStack: fix bootstrap destroy cmd #6617
- OCPBUGS-3706: Improve error reporting from agent wait-for install-complete #6730
- Better logic to derive vpcRegion/Zone from vpcName/Subnets #6665
- update tested instance types on 4.12 #6731
- Updating ose-baremetal-installer images to be consistent with ART #6678
- OCPBUGS-5151: baremetal: Extra time for provisioning interface #6729
- OCPBUGS-3032: Report status on the console immediately #6697
- Updating ose-installer images to be consistent with ART #6675
- OSASINFRA-3057: openstack: Document Image Registry migration to Swift #6710
- openstack: Rely on Go’s stdlib for errors #6656
- Updating ose-installer-artifacts images to be consistent with ART #6693
- cmd: update import of deprecated terminal package #6594
- GCP: Tfvars will determine the user has create firewall permissions #6679
- OCPBUGS-4941: OpenStack: Force JSON content-type in Swift object listing #6707
- PowerVS: Defer cancel when calling contextWithTimeout #6700
- linter: fix issues since revision 75173a17cf #6712
- OCPBUGS-2996: bump RHCOS 4.13 bootimage metadata #6703
- CORS-2340: hack: replace deprecated go-lint #6601
- OCPBUGS-3706: Wait longer for baremetal #6688
- Fix import order using the gci tool #6643
- Switch back to gp2 ebs volume type for bootstrap instance #6692
- OCPBUGS-2891: aws: destroy: delete ELB listeners #6528
- Consolidate loadsdk debug statements #6686
- OWNERS_ALIASES: Remove lucab #6696
- OCPBUGS-4549: azure: replace deprecated AD Graph API #6614
- Save rendezvous IP in a file ‘rendezvousIP’ alongside the ISO #6683
- OCPBUGS-3987: Check nmstateconfig content in agent-config.yaml #6674
- CORS-2147: Add documentation for the client certs authentication #6505
- OCPBUGS-4367: Fix missing debug messages when getting baseISO #6662
- Use backoff functions in PowerVS destroy logic #6591
- OCPBUGS-3032: Report agent installation problems on the console #6544
- OCPBUGS-3668: fully qualified username must be provided #6596
- OCPBUGS-1560: vsphere zonal, terraform depends on ova import #6498
- Agent integration tests proposal #6598
- CORS-2291: terraform: save logs to a file #6532
- OCPBUGS-3196: Set ip=dhcp,dhcp6 for master nodes on dualstack #6626
- OCPBUGS-2130: import ova resource cluster path fix #6519
- OCPBUGS-2498: ose-installer-container: vault: insufficient certificate revocation list checking #6493
- Wait longer for VM to obtain IP from DHCP in PowerVS #6651
- platformprovisioncheck: fix shadowing of
err
variable #6595
- Alibaba: add the tags of the machine nodes #6535
- Azure: use azidentity with adapter #6003
- OCPBUGS-4125: Enable CVO unmanage overrides in bootstrap-in-place installations #6649
- openstack: Refactor TFVars generation #6465
- Update OpenStack spec dependencies #6382
- OCPBUGS-3164: hold bootkube service until bootstrap has pivoted #6488
- OCPBUGS-4355: Fix return value from execute() #6646
- OCPBUGS-4328: images: updating images to be consistent with ART #6641
- vSphere Zonal: validate dns and external load balancer #6612
- GCP: remove private zone manipulation #6610
- Replace deprecated io/ioutil package #6602
- ibmcloud plugin “permission denied” #6627
- Bug 2105570: out-of-bounds read in golang.org/x/text/language leads to DoS #6389
- OCPBUGS-3524: data: azurerm: restore RHCOS SA access configuration #6583
- OCPBUGS-3405: Redact pull secret from agent-gather #6574
- Adding aarch64 instance types for azure #6531
- OCPBUGS-2931: Azure Stack: use managed images for compute nodes #6540
- OCPBUGS-3985: Pass featureset to kas #6579
- mv ibmcloud to /bin folder #6624
- OCPBUGS-3278: (Agent) Do not require host data in platform baremetal section in installconfig #6573
- OCPBUGS-3277: Restart create-cluster-and-infraenv.service if it fails #6577
- OCPBUGS-3933: OpenStack: Force JSON content-type in Swift #6615
- add ibmcloud cli to image #6600
- Update vSphere Owner files #6607
- OCPBUGS-2384: [Alibaba] fix the creation of public record #5671
- docs: fix broken link to default kubelet.service taint #6593
- OCPBUGS-3186: IBMCloud: Confirm Zones and BYON Subnets #6553
- OCPBUGS-3123: Pass FeatureSet to cluster config render #6576
- OCPBUGS-2738: Uplift terraform-provider-ironic to 0.3.0 #6511
- OCPBUGS-3382: Fix cluster wide proxy #6571
- OCPBUGS-3280: Automatically retry install #6567
- OCPBUGS-3304: Always use first matching mirror in assisted-service #6563
- OCPBUGS-2841: (AGENT) only support amd64 archs #6546
- OCPBUGS-3214: Always add router CAs to kubeconfig, even if console is not available #6557
- Update apiVersion for lso operator group #6558
- OCPBUGS-2513: Set PublicContainerRegistries for entries in mirror #6545
- OCPBUGS-1627: [vsphere-zones] Fix user folders #6412
- OCPBUGS-1704: gcp: fail during validation if service usage is not enabled #6516
- OCPBUGS-3287: agent ased installation fix for dual stack vips #6530
- OCPBUGS-3096: Static linking the terraform and providers binaries #6548
- OCPBUGS-2911: Use project after creation #6552
- OCPBUGS-3110: azure: Fix client certs authentication #6527
- OCPBUGS-2847: GCP XPN Featuregates #6522
- OCPBUGS-2758: Provide datastore as full path #6547
- Bug 2074299: update golang.org/x/crypto to address security vulnerabilities #6388
- OCPBUGS-2966: Add GCP CreateFirewallRules to tech preview #6533
- OCPBUGS-1791: add bootstrap configmap during the SNO reboot #6521
- OCPBUGS-2290: Power VS Check for existing DNS permitted network and public gateway #6481
- Add linux/arm64 binary to installer-artifacts #6514
- OCPBUGS-1033: support multiple documents in the same extra manifest file #6492
- OCPBUGS-3018: Use result from List function after checking error #6541
- OCPBUGS-2144: Azure: Set appropriate architecture for gen v1 image #6517
- go-fmt: apply formatting with golang 1.19 #6497
- OCPBUGS-2895: Azure: Fix DiskEncryptionSet regex validation #6513
- Full changelog
- OCPBUGS-14249: preserve explicit release image in ClusterVersion #1435
- OCPBUGS-14180: Remove closed centos7 registry from newapp unit tests #1432
- OCPBUGS-10773: bump repo sclorg/s2i-ruby-container location for newapp test #1381
- OCPBUGS-10378: Add microshift into generate-docs #1372
- Microshift command docs #1357
- Do not set master node selector if there’s no masters #1347
- OCPBUGS-7190: Reuse LDAP connection when performing group sync #1336
- Adding
CommitDate
to the Changelog json output #1348
- OCPBUGS-7780: pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates #1346
- Use registry.k8s.io and update image version #1343
- Add icsp file convert command #1238
- OWNERS_ALIASES: Update approvers: add David, remove Jack #1340
- oc debug: Use own fields instead directly depending on Attach’s #1337
- Updating ose-tools images to be consistent with ART #1308
- WRKLDS-594: Bump to v1.26.1 #1329
- OCPBUGS-3473: oc adm release new: allow specifying crio and kernel versions #1287
- OCPBUGS-6011: Fix kube version from 1.24.1 to 1.25.2 #1325
- Removing unwanted character from changelog output #1326
- WRKLDS-629: release run-namspace functionality #1322
- OCPBUGS-5010: Remove must-gather pod after it completes when explicit namespace is used #1320
- Enable Changelog to output in JSON #1321
- IR-261: Add –import-mode to ‘tag’ #1312
- IR-260: Add CLI flag to set ImportMode when importing a tag #1289
- OCPBUGS-4906: oc process: Set original namespace if it differs #1318
- Updating ose-cli-artifacts images to be consistent with ART #1309
- Update errors when debug pod fails #1314
- Expose events command to land k8s 1.26 #1315
- handle admission webhook lists and CRD conversion webhooks #1301
- OTA-818: pkg/cli/admin/upgrade: Support –to-multi-arch per OTA-818 #1285
- WRKLDS-629: oc adm must-gather: unhidden –run-namespace flag #1313
- FDN-112: Parse any jira reference from commit text, not just OCPBUGS #1306
- IR-266: Add image manifests to ‘describe image’ #1310
- Updating openshift-enterprise-deployer images to be consistent with ART #1307
- Handle non-amd64 command pulls from amd64 payload #1259
- OCPBUGS-4517: oc adm release: Support extracting commands in specified architectures #1305
- Rename registry.svc.ci.openshift.org to registry.ci.openshift.org #1304
- OCPBUGS-3526: Proceed archive if Lsetxattr gets unsupported error #1296
- Updating openshift-enterprise-cli images to be consistent with ART #1302
- OCPBUGS-4280: oc import-image: reflect import image error #1300
- pkg/cli/admin/release/info: Render multi-arch release information #1292
- pkg/cli/admin/upgrade: Drop “force” from “No updates available” #1291
- OCPBUGS-3714: pkg/cli/admin/upgrade: Report on Failing!=False conditions #900
- switch the deployer pod to use apply client to avoid conflicts #1288
- release: extract linux/arm64 binaries from all payloads #1276
- go.mod: update github.com/containers/image #1278
- Promote ardaguclu to oc approver #1280
- Full changelog
- OCPBUGS-13692: Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. #538
- OCPBUGS-11706: ccoctl: Enable public anon read access to default OIDC S3 bucket #528
- OCPBUGS-10822: Adding missing workload annotations #524
- OCPBUGS-6370: Bump k8s dependencies from v0.25.3 to v0.26.1 #511
- Add lleshchi to OWNERS file #513
- OCPBUGS-6977: Set pod identity webhook replicas=1 when infrastructure topology is SingleReplica #512
- Make pod-identity-webhook deployment HA by default #492
- OWNERS: add jstuever #510
- azure: move away from ADAL and AD Graph #502
- Updating ose-cloud-credential-operator images to be consistent with ART #509
- Full changelog
- OCPBUGS-13127: sync CloudPrivateIpConfig when node is missing #106
- OCPBUGS-10990: pull project name from subnet uri #101
- Add MovePrivateIP and its OpenStack implementation #95
- Kube 1.26 rebase for cloud-network-config-controller #97
- OpenStack: Fix race condition in TestGetNodeEgressIPConfiguration #96
- azure: use azidentity with an adapter #70
- Add ApplicationSecurityGroups to InterfaceIPConfiguration #91
- Fix typos in README.md #90
- OCPBUGS-4724: OpenStack: Support multi AZ environments #87
- Updating ose-cloud-network-config-controller images to be consistent with ART #86
- OCPBUGS-3993: OpenStack: Only return egressIPConfiguration for first InternalIP #77
- Fix azure log message for assigning and releasing an IP #76
- OCPBUGS-1430: Add assigned egress ips into capacity #69
- Full changelog
- OCPCLOUD-1851: Upstream rebase to CA 1.26.1 and VPA 0.13 #250
- Update OWNERS #251
- Updating vertical-pod-autoscaler images to be consistent with ART #248
- Update OWNERS #249
- Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #246
- Full changelog
- Bug 1943194: update GPU resource limits type to have validation #268
- Update OWNERS #270
- revert GPU label changes from pr 223 #267
- : Update tooling in Cluster Autoscaler Operator #266
- Add infrastructures resource to config.openshift.io #265
- Allow infrastructures.config.openshift.io to be listed #264
- Register configv1 types to schemes #262
- Updating ose-cluster-autoscaler-operator images to be consistent with ART #259
- : Update CAO to ignore platform related zone labels #260
- Update OWNERS #261
- : Set default container for operator #258
- Add client certificate and key to service monitor #249
- Full changelog
- OCPBUGS-13011: Add beta topology labels flag to Azure cloud node manager #250
- OCPBUGS-10334: add rbac permission for Nutanix CCM manager #237
- OCPBUGS-5036: Restart pods if related configuration was changed #227
- : Update k8s packages to 1.26 #225
- Update OWNERS #226
- vSphere: If only one failuredomain do not config labels #224
- : Modernize tooling #221
- OCPBUGS-6658: Clear useManagedIdentityExtension if it’s set #223
- Replace YAML parse failure warning with info message #222
- Integrate ccm-nutanix to OCP via CCCMO #201
- OCPCLOUD-1817: vSphere cloud-config yaml converter #218
- Fixup go modules after library-go update #219
- Update library-go dependency to move vSphere to out of tree #214
- Change verbosity level for some logs #215
- OCPCLOUD-1807: Port to ginkgo v2 #210
- Update OWNERS #211
- OCPBUGS-4074: Try to limit groups for the REST mapper discovery #207
- Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #209
- : Set default container for operator #208
- Full changelog
- OCPBUGS-13888: fix double machine creation on stale cache #208
- OCPBUGS-11968: Prioritise machine mapping over alphabetical mapping #198
- OCPBUGS-11506: E2E periodics test timeout failures improvement #187
- OCPBUGS-11460: Use PlatformStatus instead of PlatformSpec to determine platform #186
- OCPBUGS-11354: controlplanemachineset: start watching control plane nodes #184
- OCPBUGS-10771: updates: manually requeue when waiting for replicas being ready #181
- OCPBUGS-8424: machine’s node must be ready for CPMS machine to be ready #173
- e2e: periodics: remove test with cluster-wide-proxy #170
- Update ginkgo to 2.8.1 #169
- Update OWNERS #168
- Migrate test utils to actuator-pkg repository #159
- OCPCLOUD-1869: Bump k8s 1.26, go 1.19 #164
- OCPBUGS-6760: webhooks: disable mandatory TargetPools validation on GCP #165
- golangci-lint: fix header year linting #162
- OCPCLOUD-1740: e2e periodic test: machine replacement with cluster wide proxy #156
- OCPBUGS-996: Reverts “Reverts “Add logic to handle extra updated machines in a single index + minor fixes”” #112
- Add testing strategy documentation #155
- Updating ose-cluster-control-plane-machine-set-operator images to be consistent with ART #150
- Update OWNERS #154
- OCPCLOUD-1753: integration: rollingUpdate: test rebalances machines across failure domains #153
- OCPCLOUD-1752: integration: rollingUpdate: test replaces a not needing update, deleted Machine #152
- OCPBUGS-4297: Fix stale cache issue on createMachine #149
- OCPCLOUD-1798: e2e test: remove common test, unnecessary presubmit aftereach #148
- OCPCLOUD-1744: e2e presubmit: update to newest machine triggers inactive ControlPlaneMachineSet regeneration #147
- Check OnDelete strategy rebalances machines #146
- OCPCLOUD-1750: e2e presubmit test: activating ControlPlaneMachineSet adds owner references #145
- Add integration test for fulling rolling update replacement #140
- OCPCLOUD-1746: e2e presubmit test: activating ControlPlaneMachineSet doesn’t cause rollout #143
- Increase unit test timeout to 10m #144
- Check on delete strategy correctly replaces machines #139
- Ensure stable output from RunCheckUntil #142
- OCPCLOUD-1742: e2e presubmit tests: generated ControlPlaneMachineSet replicas updated #141
- OCPCLOUD-1741: e2e presubmit tests: ControlPlaneMachineSet uninstall #138
- Check OnDelete strategy updates status #137
- : Ensure CPMS tests work on GCP #135
- : Generate CPMS for GCP #133
- : Enable CPMS for GCP #132
- Add support for Azure e2e tests #131
- Add RollingUpdate presubmit to test replacement of outdated machine #129
- OCPBUGS-3320: Deduplicate Failure Domains for the CPMS #130
- Add full veritcal scaling rolling update periodic test #127
- Azure: Generate ControlPlaneMachineSet for clusters t… #128
- Set up basic E2E test framework #126
- Full changelog
- OCPBUGS-11353: AWS should not use external-cloud-volume-plugin post CSI migration #734
- OCPBUGS-11146: KCMO and MCO must set env var for CSI migration #718
- OCPBUGS-11222: do not degrade KCM when when monitoring stack rollout is in progress #717
- OCPBUGS-7785: migrate to using lease objects for leader election #716
- OCPBUGS-8710: Move PSa back to logging #711
- OCPBUGS-7785: migrate to using lease objects for leader election #712
- WRKLDS-705: Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #701
- WRKLDS-649: Guard pod set readiness probe endpoint explicitly #693
- OCPBUGS-6259: bump(k8s): 1.26.1 #691
- OCPBUGS-3985: Enforce PSA when techpreview is enabled #663
- Fixup vendor after library-go update #689
- Update library-go dependency to move vSphere to out of tree #687
- honor feature gates during bootstrapping #686
- remove use of deprecated klog flags #685
- OCPBUGS-5269: remove unnecessary leader election RBAC #681
- OCPBUGS-5006: add leader-elect-renew-deadline into defaultconfit.yaml #678
- Revert “Drop log flags removed in k8s 1.26” #684
- bump (openshift/api) for CSIMigration* feature gates #682
- Drop log flags removed in k8s 1.26 #680
- Drop flags removed in k8s 1.26 #679
- Bump library-go #677
- Fix typo in podsecurity-admission-label-syncer-controller cluster role #671
- Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #673
- OCPBUGS-3283: remove unnecessary RBAC #661
- OCPBUGS-4401: limit cluster-policy-controller RBAC permissions #670
- OCPBUGS-3041: guard controller: set an explicit hostname to avoid name collisions #664
- remove not needed RemoveStaleConditionsController #662
- bootstrap-kube-controller-manager: specify resources.requests #660
- Full changelog
- OCPBUGS-7785: migrate to using lease objects for leader election #477
- OCPBUGS-7785: migrate to using lease objects for leader election #470
- WRKLDS-705: Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #463
- WRKLDS-649: Guard pod set readiness probe endpoint explicitly #459
- OCPBUGS-6261: bump(k8s): 1.26.1 #460
- Add client certificate and key to service monitor #434
- remove use of deprecated klog flags #457
- Revert “Drop log flags removed in k8s 1.26” #456
- bump (openshift/api) for CSIMigration* feature gates #455
- Drop log flags removed in k8s 1.26 #454
- Drop flags removed in k8s 1.26 #453
- OCPBUGS-3041: guard controller: set an explicit hostname to avoid name collisions #446
- bootstrap-kube-scheduler: specify resources.requests #445
- Full changelog
- OCPBUGS-13007: Add build number to rules #1964
- OCPBUGS-13397: Uncomment cluster:vsphere_infrastructure_failure_domains:max #1962
- 4.13: OCPBUGS-11294: Add vSphere CSI migration to telemetry #1929
- OCPBUGS-11536: node-exporter: disable btrfs collector #1941
- OCPBUGS-10895: add startup probe for prometheus-adapter #1923
- OCPBUGS-11333: jsonnet: Add prometheus container in UWM #1934
- OCPBUGS-10793: bugfix in Node Exporter argument setting #1922
- OCPBUGS-10476: turn off netlink mode of netclass collector in Node Exporter. #1919
- MON-2973: test/e2e: Add cleanup func for alertmanager uwm secret test #1907
- MON-2693: Scrape profiles #1785
- MON-2959: test/e2e: Add test for alertmanager secret platform #1899
- MON-2904: add nodeExporter.collectors.buddyinfo settings. #1891
- MON-2895: toggle netlink implementation of netclass collector #1894
- MON-2932: jsonnet/dashboards: add role template variable to node related dashbo… #1879
- MON-2900: add nodeExporter.collectors.netclass settings. #1893
- Update jsonnet dependencies #1903
- MON-2951: create Routes only with ingress operator #1885
- OCPBUGS-7391: wait for service CA secrets #1900
- Synchronize versions of the downstream components #1902
- MON-2973: pkg/manifests: Allow configuring secrets in alertmanager (UWM) #1884
- Synchronize versions of the downstream components #1898
- pkg/operator: fix typo in info logs #1896
- MON-2901: add nodeExporter.collectors.netdev settings. #1888
- STOR-1154: Add vSphere topology to telemetry #1886
- Add nodeExporter.collectors.tcpstat settings. #1876
- Synchronize versions of the downstream components #1887
- MON-2959: Allow configuring secrets in alertmanager (platform) #1882
- Update jsonnet dependencies #1880
- Synchronize versions of the downstream components #1878
- pkg/manifests/manifests.go: move constants to jsonnet #1873
- Synchronize versions of the downstream components #1877
- add nodeExporter.collectors.cpufreq settings. #1855
- Update jsonnet dependencies #1869
- Fix ‘make run-local’ target #1874
- *: remove kube-rbac-proxy sidecar container #1870
- OCPBUGS-2729: unify ignored network device list of Node Exporter. #1871
- OCPBUGS-5353: unstack dashboards with limit markers. #1868
- Update jsonnet dependencies #1865
- Synchronize versions of the downstream components #1867
- Update jsonnet dependencies #1864
- Synchronize versions of the downstream components #1863
- OCPBUGS-4521: check that all targets are up after certificate recreation #1848
- Synchronize versions of the downstream components #1861
- OCPBUGS-4219: Adds runbook link to PrometheusRuleFailures #1860
- MON-2807: Use bearer token file for remote write authentication with telemeter #1733
- OCPBUGS-1998: pkg/client: Update daemonset degrade condition #1812
- Synchronize versions of the downstream components #1859
- Bug 2114515: jsonnet: ignore
/var/lib/ibmc-s3fs/
mountpoints #1854
- Synchronize versions of the downstream components #1853
- Synchronize versions of the downstream components #1852
- OCPBUGS-4793: fix object reference in Kubernetes events #1842
- Synchronize versions of the downstream components #1849
- Updating cluster-monitoring-operator images to be consistent with ART #1846
- OCPBUGS-2729: Node Exporter ignore virtual network device ‘enP.*’. #1843
- Unpin and update jsonnet dependencies #1818
- OCPBUGS-2141: compute doc link in PVC not configured message #1836
- Synchronize versions of the downstream components #1838
- go.mod: switch to go 1.19 #1839
- Synchronize versions of the downstream components #1835
- OCPBUGS-2260: add alert KubePodNotScheduled to group openshift-kubernetes.rules #1830
- Synchronize versions of the downstream components #1831
- Remove deprecated option from kube-state-metrics args #1832
- OCPBUGS-4184: use mTLS authentication for metrics scraping #1827
- OCPBUGS-4168: Increase startupProbe for prometheus #1824
- OCPBUGS-4181: Fixes externalURL field for Prometheus and Alertmanager #1826
- Synchronize versions of the downstream components #1823
- OCPBUGS-1453: Fixed TargetDown expression to join on the proper label #1767
- Bug 2095719: Updates CreateOrUpdateServiceAccounts #1745
- OCPBUGS-4024: test: increase timeout when checking remote write metrics #1817
- OCPBUGS-3331: Pin Jsonnet Deps + Update go.mod for 4.12 + Patch Alert KubePodNotRead #1816
- Revert “OCPBUGS-3331: Pin Jsonnet Deps + Update go.mod for 4.12” #1815
- OCPBUGS-3331: Pin Jsonnet Deps + Update go.mod for 4.12 #1814
- Switch ksm registry to registry.k8s.io #1809
- MGDAPI-4488: RHOAM fleet wide observability metrics #1771
- Full changelog
- OCPBUGS-14331: Fix updating numa core siblings map in GetCpuSiblings function (#669) #669
- render: remove uid from render-sync target (#594) (#609) #594
- Remove cpu-quota.crio.io: disable annotation (#670) #670
- Add PerformanceProfiles to ‘oc adm must-gather’ (#657) #657
- OCPBUGS-11709: pao e2e: skip hugepages and numa tests properly (#643) #643
- e2e: Fix RPS test for multi-worker cluster (#648) #648
- OCPBUGS-12978 use WatchNamespace() when deleting Profiles (#645) #645
- OCPBUGS-11336: pao e2e: fix update test suit timeouts (#642) #642
- Address CVE-2022-41723 (#633) #633
- OCPBUGS-13148: Configure cpu balancing cpu sets for all clusters (#647) #647
- Revert PR558 and PR585 partially (#640) #640
- workload-hints: disable stalld when rt disabled (#604) #604
- e2e: add missing test id (#629) #629
- Remove subPaths, they are broken (#624) #624
- OCPNODE-1539: perf profile: add script for preparing cgroups for CPU load balance disabling (#617) #617
- Update NTO-generated MC on MachineCount <= 1 (#620) #620
- OCPBUGS-11336: e2e: profile updates tests revised (#618) #618
- OCPBUGS-11813: performance-profile: enable crun for high-performance runtime (#616) #616
- A new env var NO_BZ_CHECKS disables Bz and Jira status checks (#614) #614
- Revert #567 and cleanup PPC-generated TuneD config (#615) #615
- Skip tests depending on Jira or Bz issue status (#599) #599
- Recent 4.13 RHCOS incorporated RHEL9 kernel based on 5.14 which (#606) #606
- Remove the preStop hook for openshift-tuned (#596) #596
- Fix updating nodeSelector test (#598) #598
- Fix failing HyperShift presubmits (#578) #578
- Add a script to validate upstream TuneD (#577) #577
- CNF-5900: feat: added support for generating workload partitioning files (#431) #431
- Re enable node selector tests in update tests (#574) #574
- Handle different # of CPUs are in the same MCP (#558) #558
- composable OCP: make NTO components optional (#524) #524
- Update to TuneD v2.20.0 (#565) #565
- Remove trailing spaces from test names (#570) #570
- Remove optimization to allow full resync (#567) #567
- Report host-level sysctls in conflict with TuneD ones (#566) #566
- E2E: Per Core Runtime Tuning Test automation (#509) #509
- Add test case to check single rx queue on veth interface (#562) #562
- Add update-manifests Makefile target (#560) #560
- render: initialize klog flag (#538) #538
- Refactor IRQ load balancing enable/disable test (#561) #561
- update to ginkgo 2 (#517) #517
- Skip watch on CA ConfigMap in HyperShift (#550) #550
- update owners 20230109 (#542) #542
- Add authentication to the /metrics endpoint (#541) #541
- Run node selector tests only if we 2 non Performanceworker nodes (#532) #532
- Updating profile new lane (#536) #536
- Remove trailing space from test name (#540) #540
- skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#537) #537
- Generate must-gather data (#442) #442
- e2e:latency: count LATENCY_TEST_DELAY in timeout (#535) #535
- E2E: Network stack Pinning tests (#501) #501
- refactor: move command func to seperate file (#522) #522
- performance-profile: render: make target for render sync (#528) #528
- Switch to golang 1.19 (#521) #521
- Add Containerfile for RHEL-9 (#519) #519
- Fix two irqbalance tests - smp affinity vs online (#518) #518
- Fix default hard eviction threshold when PCC is applied (#505) #505
- e2e: performance profile: add logs and minor fixes (#485) #485
- PPCreator: If rt-kernel enabled, power consumption mode default cannot be selected (#512) #512
- Configuration hotfixes documentation fixes (#513) #513
- E2E: Automation offline CPUs test (#380) #380
- pao: latency-tests: read test log directly from pod (#499) #499
- Configure ktimers scheduler prio same as ksoftirqs (#507) #507
- Run rps mask tests when Reserved cpu are not nil (#483) #483
- Set RPS for all rx queues (#495) #495
- Full changelog
- OCPBUGS-14091: [4.13] fix ClusterResourceQuotas to work for all api resources including custom resources #116
- OCPBUGS-13731: external template and route Informer #112
- OCPBUGS-11473: psalabelsyncer: handle empty namespace of a rolebinding subject #108
- OCPBUGS-8710: psalabelsyncer: invert the enforce/log logic to default to logging #106
- update psa dependency version #103
- update controller-manager dependency to point to v0.25.0 #101
- OCPBUGS-723: clusterquotareconciliation: do not sync quota monitor cache with no monitors registered #94
- OCPBUGS-3985: enforce pod security admission when techpreview is enabled #89
- Updating cluster-policy-controller images to be consistent with ART #91
- Full changelog
- OCPBUGS-13029: Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #501
- OCPBUGS-10965: Add network tools imagestreams #496
- update Jenkins to use v4.12 imagestreams #491
- OCPBUGS-855: When setting allowedRegistries urls the openshift-samples operator is degraded #487
- OCPBUGS-6811: Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #485
- Change importMode to preserveOriginal for Openshift imagestreams #482
- OCPBUGS-6579: update sample imagestreams with latest 4.11 image using specific image tag reference #483
- OCPBUGS-4357: Bump k8s master #476
- OCPBUGS-4166: Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #474
- OCPBUGS-3426: Update Cluster Sample Operator dependencies and libraries for OCP 4.12 #471
- Updating ose-cluster-samples-operator images to be consistent with ART #470
- Full changelog
- OCPBUGS-11435: Update dnsPolicy to allow consistent resolution of the internal LB #923
- OCPBUGS-10221: pkg/cvo/availableupdates: Prioritize conditional risks for largest target version #912
- pkg/cvo: code cleanups #902
- OCPBUGS-7419: Trigger new sync round on ClusterOperator Available changes #904
- install/0000_90_cluster-version-operator_02_servicemonitor: Add ClusterReleaseNotAccepted #906
- OCPBUGS-6097: CVO hotloops on ImageStream and logs the information incorrectly #894
- OCPBUGS-6292: Update golang.org/x/net/http2 for CVE-2022-41717 #901
- Bug 2090680: RetrievePayload: Improve timeouts and cover behavior with tests #896
- pkg/cvo: Set ‘controller’ in our ownerReferences #900
- pkg/cvo/sync_worker: Fix “The sync worker already has a pending notification” formatting #898
- vendor: update openshift/api for NodeTuning capability #883
- Bug 2089138: CVO hotloops on ValidatingWebhookConfiguration #893
- logging: consistently use RFC3339 in log messages #889
- OCPBUGS-702: Fix removing
caBundle
field of CRDs when ...inject-cabundle=true
#870
- lib/validation: Drop “a previous version” from desiredUpdate validation #888
- Adding David to approvers list and removing Jack #891
- upgradeable: improve logging and refactor #886
- start.go: simplify code for computing sync period #887
- OCPBUGS-5505: Set upgradeability check throttling period to 2m #882
- Revert “pkg/cvo/updatepayload.go: timeout payload retrieval” #881
- pkg/cincinnati: Set User-Agent for Cincinnati requests #839
- Bug 2090680: pkg/cvo/updatepayload.go: timeout payload retrieval #846
- tests: fix rare nil dereference in
TestCache
#875
- pkg/payload: code cleanups #877
- OTA-817: Support ClusterVersion spec DesiredUpdate Architecture field #860
- OCPBUGS-4986: pkg/payload/precondition: Do not claim warnings would have blocked #876
- OTA-844: pkg/cvo/metrics: Add ‘reason’ to cluster_operator_up #868
- OTA-560: Improve developer-oriented docs #871
- Updating cluster-version-operator images to be consistent with ART #873
- OCPBUGS-1443: Avoid using a lister before client caches sync #874
- OTA-560: Modernize README.md to be user-centered #869
- Build CVO from UBI8 instead of obsolete
origin-v4.0:base
#872
- Bug 2089093: CVO hotloops on OperatorGroup due to the diff of “upgradeStrategy” #862
- update library-go to pick up feature-set annotation change #853
- Add myself as approver and David Hurta as a reviewer #864
- OCPBUGS-1458: Allow CVO to update
KUBERNETES_SERVICE_HOST
with LB address #851
- pkg/cvo/cvo_scenarios_test.go: Remove status check from TestCVO_UpgradeFailedPayloadLoadWithCapsChanges #857
- resourcemerge: cleanup deprecated function calls #858
- OCPBUGS-2727: Do not fail precondition check for UnknownUpdate #856
- Full changelog
- OCPBUGS-14195: Topology UI doesn’t recognize Serverless Rust function for proper UI icon #12860
- OCPBUGS-10527: When there are 2 pipelines displayed in the dropdown menu, selecting one, unchecks the Add Pipeline checkbox #12658
- OCPBUGS-14165: propagate labels to pipeline resources #12856
- OCPBUGS-13959: Wait with CRD/model translation until i18n bundles are loaded #12842
- OCPBUGS-13783: fix runtime error on OperatorHub details pages #12830
- OCPBUGS-12770: fix buildconfig form ns #12776
- OCPBUGS-12850: add support for minimal status of tekton #12784
- OCPBUGS-12740: update helm release empty state text #12773
- OCPBUGS-11866: delete associated pipeline, triggertemplate and eventlistener when deleting app #12730
- OCPBUGS-12186: Pipeline doesn’t render correctly when displayed but looks fine in edit mode #12748
- OCPBUGS-11218: use PipelineRun template from ‘pipelines-as-code-pipelinerun-go’ configMap for Go runtime #12696
- OCPBUGS-12273: When Creating Sample Devfile from the Samples Page, Topology Icon is not set #12757
- OCPBUGS-12272: Importing a kn Service shows a non-working Open URL decorator also when the Add Route checkbox was unselected #12756
- OCPBUGS-12173: taskrun ui fails when using object type results #12745
- OCPBUGS-10832: Edit Deployment (and DC) form doesn’t enable Save button when changing strategy type #12674
- OCPBUGS-11919: Reduce metrics cardinality by grouping well-known and other perspectives and plugins #12742
- OCPBUGS-10266: Fixes argocd link for non-KAM added application envs #12649
- OCPBUGS-10265: Fixes resource status alignment issue #12648
- OCPBUGS-10299: Fixes card sizes not even issue when commit info is not available on Environments page #12651
- OCPBUGS-12172: Users don’t know what type of resource is being created by Import from Git or Deploy Image flows #12744
- OCPBUGS-10678: Do not show builder ImageStreams without
sampleRepo
as samples #12668
- OCPBUGS-11232: fix All projects selection on Pipelines page in dev perspective #12698
- OCPBUGS-11390: Move operator install status to it’s own route/page #12706
- OCPBUGS-11107: Fix alerts source display values #12688
- OCPBUGS-11248: fix translation string for Image pull secret created alert #12699
- OCPBUGS-10833: update the default pipelineRun template name #12675
- OCPBUGS-10679: Show type of sample on the samples view #12639
- OCPBUGS-10474: OpenShift pipeline TaskRun(s) column Duration is not present as column in UI #12656
- OCPBUGS-7632: fix issue where project deletion fails #12618
- ODC-7232, ODC-7233: Add new auth, serverconfig and usage metrics #12527
- OCPBUGS-6994: when ACM is installed and no previous perspective is set, default perspective to All Clusters #12542
- OCPBUGS-6762: Increase filter input width to accomodate placeholder text #12610
- OCPBUGS-8066: add checks for Pipeline in AddServerlessFunction form #12617
- Correcting Knative Package Failures #12012
- IR-267: add details for submanifest to the ImageStreamTag #12549
- OCPBUGS-5773: Delete secret on async run error #12557
- OCPBUGS-7970: always close filter dropdown #12590
- OCPBUGS-7971: Monitoring: Fix “Label” filter on “Alerting rules” list page #12592
- OCPBUGS-7031: Pipelines repository list and creation form doesn’t show Tech Preview status #12541
- ODC-6669: rename edit-deployment routes and components #12400
- OCPBUGS-7308: remove ‘Download kubeconfig file’ from ServiceAccounts #12589
- Bug 2076619: Modified git import flow module to handle create button enable-disable issue #11493
- OCPBUGS-7879: fix devfile error #12594
- OCPBUGS-7806: Add NFS-export details for PersistentVolume details #12571
- chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 230 #12584
- OCPBUGS-3450: Missing containerd and wicd service logs in Windows nodes #12572
- OU-110: Observe > Dashboards page: Use datasource defined in dashboard definition #12422
- OCPBUGS-7668: Bump helm pkg #12582
- Add additional alerts datasource extension #12436
- OCPBUGS-4646: delete application should delete all part-of resources #12567
- OCPBUGS-7144: fix alignment issue of info alert on Pipeline metrics page #12563
- Serverless function creation with Pipelines #12552
- OCPBUGS-7421: fix missing i18n error and validateDOMNesting warning #12561
- OCPBUGS-1706: Switch to use labelPlural for heading #12585
- OCPBUGS-7195: E2E correct sample page clicking #12574
- OCPBUGS-3372: Fix create silence error message adding response from the backend #12577
- OCPBUGS-7117: Expose endpoint to obtain copy login command URL for each cluster #12553
- OCPBUGS-7399: fix pipeline selection in Edit flow in devconsole #12564
- OCPBUGS-266: add subject kind dropdown in the project access form #12418
- chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 229 #12568
- OCPBUGS-7427: Associate wait time with method to decrease run time #12559
- OCPBUGS-7089, OCPBUGS-7113: move cluster menu to masthead to fix usability issues #12480
- OCPBUGS-7418: set default value for Scaling fields in Create Serverless Function form #12562
- OCPBUGS-6610: Developer - Topology : ‘Filter by resource’ drop-down i18n misses #12522
- Bug 2115265: Search page: LazyActionMenus are shown below Add/Remove from navigation button #12187
- OCPBUGS-2479: Right border radius is 0 for the pipeline visualization wrapper in dark mode #12501
- OCPBUGS-1748: PipelineRun templates must be fetched from OpenShift namespace #12537
- OCPBUGS-7090: Fix that Add to navigation does nothing when pinnedResource is {} #12536
- OCPBUGS-5547: Webhook Secret (1 of 2) is not removed when Knative Service is deleted #12517
- OCPBUGS-5428: Add missing SDK extensions descriptions #12431
- OCPBUGS-6893, OCPBUGS-7199: Fix different CI issues #12554
- OCPBUGS-4008: Make sure console refresh toast notification pops up wh… #12470
- OCPBUGS-6757: Get the Event type value from the latest PLR of the Repository #12495
- CONSOLE-3334: Update copiedCSVsDisabled to contain managed clusters #12374
- OCPBUGS-6967: fix typeError while creating Serverless function #12520
- OCPBUGS-6647: Added translation to Last used in resource type dropdown #12504
- OCPBUGS-5733: Remove description field from the PLR parameters page #12434
- ODC-7226: update helm install and upgrade flow #12502
- OCPBUGS-5948: Better fix for runtime error in schema tab of api explorer when no schema exists #12499
- OCPBUGS-186: PipelineRun task status overlaps status text #12498
- ODC-7234: Provide option to configure PAC on importing app via import from git flow #12439
- HELM-479: Uninstall the Helm Charts Asynchronously #12465
- OCPBUGS-6799: Repositories list does not show the running pipelinerun as last pipelinerun #12497
- chore(i18n): update translations: : Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 225 & 228 #12285
- OCPBUGS-6098: Show Git icon and repo link as per the Git provider #12456
- OCPBUGS-4883: Default Git type to other info alert should get remove after changing the git type #12384
- OCPBUGS-5997: Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered #12445
- OCPBUGS-6660: make Uninstall Operator checkbox instructions optional #12471
- add preferred tab per user for dev perspective Pipelines page and make PipelineRuns tab default for Repository details page #12426
- Query browser: Remove unused
wrapperClassName
prop #12464
- OCPBUGS-2666: Add RBAC check on Create a Project link in all-namespaces pages #12279
- add create serverless function form and add action on add page #12396
- Update ODC owner files #12430
- ODC-7225: Update Helm Releases list page and the details page #12432
- Bug 2084452: PodDisruptionBudgets help message should be semantic #12084
- OCPBUGS-5948: Fix runtime error in schema editor when theres no match for g/v/k in swagger definitions #12469
- OCPBUGS-6049: Do not show UpdateInProgress when status is Failing #12449
- OCPBUGS-6634: Enable building tectonic-console-builder on arm64 and fix the Dockerfile.product to work with no cached artifacts #12444
- OCPBUGS-3228: fix broken pipeline secret #12460
- OCPBUGS-5851: refactor descriptors test to remove interdependencies #12453
- OCPBUGS-6053: fix run-time error on Cluster Settings when availableUp… #12450
- OCPBUGS-6272: Start the pipeline with workspace #12442
- OCPBUGS-4684: In DeploymentConfig both the Form view and Yaml view are not in sync #12416
- CONSOLE-3237: Add opt out when Console deletes operands #12234
- OCPBUGS-5851: delete existing operand via CLI to workaround failing t… #12451
- OCPBUGS-1598: updates toast wording to Workload #12155
- ODC-7210: Create Serverless function using the Import from the Git with Builder Images #12411
- OCPBUGS-5016: Editing Pipeline in the ocp console should show correct information #12446
- OCPBUGS-5851: Using OLM descriptor components deletes operand #12433
- CONSOLE-3389: Use Cypress mock responses for multicluster cluster switcher and pod test #12421
- Correcting Pipelines Package Failures #12073
- Bug 2110565: PDB Remove add/edit/remove actions in Pod resource action menu #12420
- OCPBUGS-5542: Project dropdown order is not as smart as project list page order #12428
- OCPBUGS-1852: Subscription tab for operator doesn’t land on correct URL #12336
- OCPBUGS-4377: Service name search ability while creating the Route from console #12383
- OCPBUGS-5540: fixes typo for milliseconds #12423
- OCPBUGS-4894: Disabled Serverless add actions should not be displayed for Knative Service #12379
- OCPBUGS-4571: Operator recommended namespace during installation incorrect. #12387
- OU-121: Monitoring: Convert Alerting list pages to use plugin SDK list filters #12399
- OCPBUGS-5346: Change vSphere connection health status icon #12410
- OCPBUGS-3334: Fix type inconsistencies and Readme for DynamicPlugins #12263
- OCPBUGS-4047: Fix secret CRUD test #12407
- Bug 2083087: Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC #12390
- OCPBUGS-2145: maxUnavailable and minAvailable on PDB creation page - i18n misses #12373
- OCPBUGS-5287: disable operator-install-single-namespace.spec.ts until… #12406
- HELM-471: Modify list releases response #12401
- OCPBUGS-4047: disable key/value secrets test as they fail at a high rate #12405
- OCPBUGS-1606: Do not filter spoke cluster operators by arch/os #12363
- OCPBUGS-4701: display ‘Control plane is hosted’ alert only when isCl… #12361
- ODC-7188: On importing application via import from git flow pac should be configured for the application #12335
- OCPBUGS-4279: Upgrade pf 2022 13 #12333
- OCPBUGS-3033: Make all feature flags available in perspective extensi… #12386
- OCPBUGS-4700: only show upgrade details if cluster not externally man… #12362
- Health checks topology sidebar feature automation #12394
- ODC-7184: Show pre-pinned resources based on customization #12354
- OCPBUGS-4781: use /api/helm/release endpoint on helm release details page #12397
- ODC-7185: Allow admins to define pre-pinned resources using a form driven experience #12353
- ODC-7183: Provide a code snippet for adding pinned resources #12349
- OCPBUGS-5164: add support for version v1beta1 for knativeServing and knativeEventing #12391
- OCPBUGS-5165: Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) #12392
- Monitoring: Convert Targets list page to use plugin SDK list filters #12342
- ODC-7182: add pinnedResources to server flags #12314
- OCPBUGS-3373: Observe > Metrics > Monitors, Error Message to indicate limited view due to user privileges #12319
- OCPBUGS-3314: Fix to use and set correct secretReference for build-config triggers #12375
- OCPBUGS-2824: The dropdown list component will be covered by deployment details page on Topology page #12369
- adds support for timeout and custom image in cloudshell #12329
- OU-122: Monitoring: Convert modals to use PatternFly directly #12371
- Bug 1948666: Fix to show correct help texts for each git repo status error code #12237
- Bug 2005232: Pods list page should only show Create Pod button to user has sufficient permission #11999
- OCPBUGS-4975: Add missing translation in ceph stoage plugin #12380
- OCPBUGS-3767: fixed node maintenance plugin route configuration for BareMetalNodesPage #12359
- OCPBUGS-2525: improve newly migrated ConsoleLink test #12348
- MGMT-12787: Move MarkdownView to plugins-shared #12328
- Bug 2100762: Adding data-checked-state to radio inputs #12256
- ODC-7177: Add SBO label selector support for Topology page #12283
- Sidebar-of-knative-revision-and-service| Knative Serverless #12351
- ODC-7179: Allow users to see which pods are receiving traffic #12272
- OCPBUGS-3761: close the guided tour modal before any action #12358
- Domain-Mapping feature | Knative Serverless #12343
- ODC-7172: Update helm terms from install/uninstall to create/delete #12337
- OCPBUGS-3033: Update admin landing page if monitoring is disabled #12292
- OCPBUGS-4691: Fix that topology sidebar actions shows outdated data (Edit labels, Edit annotations, etc.) #12365
- OCPBUGS-3951: Do not disable dynamic plugin if extension coderef fail… #12347
- CONSOLE-3371: Add missing children prop to ResourceLink #12312
- HELM-450: Return secret for async install/upgrade #12289
- Updating openshift-enterprise-console images to be consistent with ART #12350
- Bug 2110570: Topology sidebar: Edit pod count shows not the latest replicas value when edit the count again #12332
- OCPBUGS-3863: Set proper return code for plugin handlers #12346
- Update helm and dev-console tests file #12301
- Monitoring: Convert remaining kebab menus to use PatternFly directly #12326
- OCPBUGS-4540: Fix NavSection bug #12344
- OU-75 New Query Added to the Beginning of List #12275
- OCPBUGS-2525: migrate CRD extensions tests to Cypress to mitigate flakes #12331
- OCPBUGS-4518: Monitoring: Fix alert descriptions with duplicate resources #12341
- OCPBUGS-4047: delete each created secret in case first test attempt r… #12316
- Bug 2077138: update pf-quickstart version #12298
- OCPBUGS-4252: fix issue where node debug terminal doesn’t load #12322
- OCPBUGS-4110: fixes misaligned form footer btn controls for WTO #12306
- OCPBUGS-4415: Disable shipwright tests again #12334
- Monitoring: Extract Alertmanager config related code #12324
- OCPBUGS-3896: Make aria-expanded state label reflect correct expanded state in the masthead navigation button #12321
- OCPBUGS-3771: Add managed cluster proxy endpoint env var to multicluster-environment.sh script #12280
- OCPBUGS-4206: fix getContainerStateValue i18n #12318
- CONSOLE-3282: add Dynamic plugins to about modal #12294
- OCPBUGS-4203: remove padding from debug pod alert #12317
- Monitoring: Use PatternFly components instead of ActionButtons #12302
- OCPBUGS-3761: follow on fix to ensure Administrator perspective is se… #12313
- OCPBUGS-3027: Do not disable metrics when auth is disabled #12287
- Monitoring: Use PatternFly components instead of Breadcrumbs component #12303
- OCPBUGS-1305: Re-enable Shipwright e2e tests #12049
- Monitoring: Don’t import EmptyBox #12227
- OCPBUGS-2281: Re-enable serverless e2e tests #12243
- OCPBUGS-3476: Show Tag label and tag name if tag is detected in repository PipelineRun list and details page #12274
- OCPBUGS-3432: Re-enable pipelines e2e tests #12242
- OCPBUGS-2500: Pan nodes into view if all nodes are not visible on load #12260
- OCPBUGS-4026: Fix rerender loop/crash when bindable-kinds is found but has no status #12296
- OCPBUGS-4022: Fix react warning when open console, add missing keys in navigation #12295
- OCPBUGS-3024: Add support for other Service types in Service list #12232
- OCPBUGS-4012: disabled Serverless add actions is not displayed in topology menu #12297
- OCPBUGS-3776: Update the tooltip to trigger only on mouseenter to remove focus trigger #12290
- OCPBUGS-2480: Task delete icon is not align properly on the Pipeline builder page #12266
- CONSOLE-3350: Add a PR template for the console #12257
- OCPBUGS-3648: Fix more runtime error edge cases in ImageManifestVuln … #12293
- Monitoring: Refactor silence dropdowns to use PatternFly directly #12196
- OCPBUGS-3395: show event source, event sink card on add and associated action only if eventing is enabled #12268
- OCPBUGS-3235: Fix for initial showing of topology contents #12264
- OCPBUGS-3761: migrate Events integration test to Cypress to mitigate … #12286
- topology-headless-failures-correction #12057
- OCPBUGS-2904: If all the actions are disabled in add page, Details on/off toggle switch to be disabled #12236
- Monitoring: Import from the dynamic plugin SDK where possible and minor imports clean up #12231
- OCPBUGS-2579: Helm Charts and Samples are not disabled in topology actions if actions are disabled in customization #12197
- OCPBUGS-1604: Add cluster to query params of websocket requests #12250
- OCPBUGS-2551: show 403 error when normal user check operands on All … #12267
- Bug 2092289: Don’t proxy CORS response headers #12269
- OCPBUGS-3069: add Release not accepted to Update status on Cluster Se… #12251
- Monitoring: Add popover help text for silence form’s negative matchers #12218
- OCPBUGS-3709: URI encode subjectName in CreateRoleBinding #12223
- OCPBUGS-3458: improve display of RetrievedUpdate condition in Update status #12261
- OCPBUGS-2306: fix number spinner input #12219
- Bug 2080260: Fix runtime erros in ImageManifestVuln related pages #12229
- Create-knative-service-from-deployment-or-deployment-config feature #12125
- OCPBUGS-1671: frontend: use UBI httpd for StatefulSet template #12195
- OCPBUGS-2735: Switch spacing for inline radio & checkbox elements #12253
- Bump helm version to 3.10.1 #12246
- CONSOLE-3120: Allow operator to specify where to run with CSV suggested namespace template annotation #12217
- OCPBUGS-3316: Remove
refs-heads
from the branch name for Repository pipelineRun row #12247
- Monitoring: Move codicon font into monitoring/ dir #12230
- OCPBUGS-2922: Fix Console Plugin table sorting #12238
- Monitoring: Don’t import CloseButton #12226
- Bug 1993916: Show tooltips for contextual information #11860
- OCPBUGS-3172: check that user can patch console operator config in s… #12222
- add capacity action for SS CSV list page [OCP 4.12 & ODF 4.11] #12214
- Monitoring: Fix type of bodyContent prop passed to PopoverField #12211
- OCPBUGS-2961: Change installed operator text when custom resource required. #12228
- CONSOLE-3185: Improve information available for Pending or Failed plugins so user can better troubleshoot plugins #12208
- CONSOLE-3246: Update i18next to version 21.x.x #12124
- CONSOLE-3077: Promote ConsolePlugins API version to v1 in console repository #12103
- OCPBUGS-1061: Monitoring: Fix permission check for Prometheus & Alertmanager pollers #12206
- Full changelog
- Upstream sync Feb 2023 #73
- OCPBUGS-5292: Fixes tuning regression with vlan path fix #72
- OCPBUGS-5292: Revert “Fix path substitution to enable setting sysctls on vlan interfaces” (ocp 4.13) #70
- Updating ose-containernetworking-plugins images to be consistent with ART #69
- Upstream sync, Nov 2022 #67
- Full changelog
- Adding test scenariuos for Reserved Name Prefix for SharedSecret/SharedConfigMaps #127
- OCPBUGS-7272: add version file to must-gather output #125
- OCPBUGS-7417: Fix k8s.io/dynamic-resource-allocation error #126
- BUILD-550: bump(*) kubernetes 1.26 #123
- BUILD-407: reserve share names starting with openshift part one (code, unit test) #122
- Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #119
- Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART #121
- Updating ose-csi-driver-shared-resource images to be consistent with ART #120
- Update to go1.19 #118
- BUILD-531: Rebase to Kubernetes 1.25 #114
- Full changelog
- OCPBUGS-44616: Mark csi-driver-shared-resource-operator obsolete #116
- STOR-1596: Bump all deps for 4.17 #114
- OCPBUGS-28230: enforce termination message policy on all platform pods #107
- STOR-1574: Bump all deps #100
- OCPBUGS-28941: Updating ose-csi-driver-shared-resource-operator-container image to be consistent with ART for 4.16 #101
- OCPBUGS-28664: Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #99
- STOR-1574: Bump library-go #98
- OCPBUGS-26087: add snyk config file for SAST scan #95
- OCPBUGS-24855: Updating ose-csi-driver-shared-resource-operator-container image to be consistent with ART #94
- OCPBUGS-23855: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #93
- STOR-1402: Chore: update libraries in all operators [4.15] #92
- OCPBUGS-22357: CVE-2023-44487: bump github.com/openshift/library-go to master #90
- OCPBUGS-21724: bump golang.org/x/net to v0.17.0 #85
- OCPBUGS-19246: Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #84
- STOR-1442: Restart webhook Pods if webhook-serving-cert changed #83
- STOR-1441: Restart node Pods if metrics-serving-cert changed #82
- OCPBUGS-16073: Updating Kubernetes and other associated dependencies #81
- OCPBUGS-14824: Bump csi-driver-shared-resource-operator library-go #80
- OCPBUGS-14488: bumping kubernetes to 0.27.1 #79
- Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #77
- Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #76
- Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #75
- Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #73
- OCPBUGS-7906: add openshift workload annotation to driver daemonset #72
- BUILD-570: hooks to allow operator to deploy on hypershift #71
- BUILD-407: remove pod wrapper types from validating webhook config #69
- BUILD-407: switch reserver share config from configmap to envvar; update webhook config to monitor share creates #68
- STOR-1019: Bump to k8s 1.26 libs for OCP 4.13 #66
- Add a .ci-operator.yaml file #67
- bump library-go to get ApplyCSIDriver changes #65
- Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #64
- update to go1.19 #63
- STOR-829: set security.openshift.io/csi-ephemeral-volume-profile label #59
- OCPBUGS-3358: Revert “[build-407] Mount shared secret and configmap list config path into shared driver node” #61
- Full changelog
- STOR-2018: Rebase external-attacher to v4.7.0 for OCP 4.18 #80
- Updating csi-attacher-container image to be consistent with ART for 4.18 #79
- STOR-1593: Rebase external-attacher to v4.6.1 for OCP 4.17 #76
- OCPBUGS-36455: Rename Dockerfile to Dockerfile.ocp #77
- OCPBUGS-34440: Updating csi-attacher-container image to be consistent with ART for 4.17 #75
- OCPBUGS-34098: Updating csi-attacher-container image to be consistent with ART for 4.17 #74
- STOR-1573: Rebase
external-attacher
to v4.5.1 for OCP 4.16 #72
- OCPBUGS-30437: CVE-2024-24786: bump google.golang.org/protobuf to v1.33.0 #71
- OCPBUGS-27242: fix or ignore snyk errors for ocp storage repos #70
- OCPBUGS-25576: Updating csi-attacher-container image to be consistent with ART #69
- STOR-1688: Chore: add .snyk file to ignore false positives #68
- OCPBUGS-25053: Updating csi-attacher-container image to be consistent with ART #67
- OCPBUGS-24966: Updating csi-attacher-container image to be consistent with ART #66
- OCPBUGS-24139: Updating csi-attacher-container image to be consistent with ART #65
- OCPBUGS-21593: CVE-2023-44487: bump golang.org/x/net to v0.17.0 #59
- STOR-1404: Rebase
external-attacher
to v4.4.0 for OCP 4.15 #58
- OCPBUGS-19225: Updating csi-attacher images to be consistent with ART #57
- STOR-1169: Rebase
external-attacher
to v4.3.0 for OCP 4.14 #54
- OCPBUGS-14815: Chore: Update OWNERS and OWNERS_ALIASES #55
- Updating csi-attacher images to be consistent with ART #53
- Updating csi-attacher images to be consistent with ART #52
- Updating csi-attacher images to be consistent with ART #51
- Updating csi-attacher images to be consistent with ART #50
- STOR-1020: Rebase
external-attacher
to v4.1.0 for OCP 4.13 #49
- Updating csi-attacher images to be consistent with ART #48
- Update to go v1.19 #45
- Full changelog
- STOR-2018: Rebase external-resizer to upstream v1.12.0 for OCP 4.18 #166
- OCPBUGS-41244: Updating ose-csi-external-resizer-container image to be consistent with ART for 4.18 #165
- STOR-1593: Rebase to upstream v1.11.1 for 4.17 #164
- OCPBUGS-34356: Updating ose-csi-external-resizer-container image to be consistent with ART for 4.17 #163
- OCPBUGS-34356: Updating ose-csi-external-resizer-container image to be consistent with ART for 4.17 #162
- STOR-1573: Rebase
external-resizer
to v1.10.0 for OCP 4.16 #160
- OCPBUGS-30502: CVE-2024-24786: bump google.golang.org/protobuf to v1.33.0 #159
- OCPBUGS-29984: Updating ose-csi-external-resizer-container image to be consistent with ART for 4.16 #158
- OCPBUGS-25540: Updating ose-csi-external-resizer-container image to be consistent with ART #154
- STOR-1688: Chore: add .snyk file to ignore false positives #153
- OCPBUGS-24846: Updating ose-csi-external-resizer-container image to be consistent with ART #152
- OCPBUGS-21593: CVE-2023-44487: bump golang.org/x/net to v0.17.0 #146
- STOR-1404: Rebase
external-resizer
to v1.9.0 for OCP 4.15 #145
- OCPBUGS-19224: Updating ose-csi-external-resizer images to be consistent with ART #144
- STOR-1169: Rebase
external-resizer
to v1.8.0 for OCP 4.14 #141
- OCPBUGS-14812: Chore: Update OWNERS and OWNERS_ALIASES #142
- Updating ose-csi-external-resizer images to be consistent with ART #140
- Updating ose-csi-external-resizer images to be consistent with ART #139
- Updating ose-csi-external-resizer images to be consistent with ART #138
- Updating ose-csi-external-resizer images to be consistent with ART #137
- STOR-1020: Rebase
external-resizer
to v1.7.0 for OCP 4.13 #136
- Updating ose-csi-external-resizer images to be consistent with ART #135
- Full changelog
- STOR-2018: Rebase external-snapshotter to v8.1.0 for OCP 4.18 #164
- OCPBUGS-41140: Updating ose-csi-snapshot-controller-container image to be consistent with ART for 4.18 #163
- OCPBUGS-41107: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART for 4.18 #162
- OCPBUGS-39454: Updating ose-csi-external-snapshotter-container image to be consistent with ART for 4.18 #161
- STOR-1593: Rebase external-snapshotter to v8.0.1 for OCP 4.17 #156
- OCPBUGS-34257: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART for 4.17 #158
- OCPBUGS-34292: Updating ose-csi-snapshot-controller-container image to be consistent with ART for 4.17 #159
- OCPBUGS-34435: Updating ose-csi-external-snapshotter-container image to be consistent with ART for 4.17 #157
- OCPBUGS-34292: Updating ose-csi-snapshot-controller-container image to be consistent with ART for 4.17 #152
- OCPBUGS-34257: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART for 4.17 #151
- OCPBUGS-34061: Updating ose-csi-external-snapshotter-container image to be consistent with ART for 4.17 #150
- OCPBUGS-31746: Backport volumegroupsnapshot fixes to OCP 4.16 #148
- OCPBUGS-31439: Backport volumegroupsnapshot fixes to OCP 4.16 #146
- STOR-1573: Rebase external-snapshotter to v7.0.1 for OCP 4.16 #145
- OCPBUGS-30503: CVE-2024-24786: bump google.golang.org/protobuf to v1.33.0 #144
- STOR-1700: Rebase
external-snapshotter
to v7.0.0 to get VolumeGroupSnapshot #139
- OCPBUGS-24996: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #137
- STOR-1688: Chore: add .snyk file to ignore false positives #133
- OCPBUGS-25548: Updating ose-csi-snapshot-controller-container image to be consistent with ART #135
- OCPBUGS-25575: Updating ose-csi-external-snapshotter-container image to be consistent with ART #136
- OCPBUGS-24996: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #132
- OCPBUGS-25052: Updating ose-csi-external-snapshotter-container image to be consistent with ART #131
- OCPBUGS-25124: Updating ose-csi-snapshot-controller-container image to be consistent with ART #130
- OCPBUGS-24996: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #129
- OCPBUGS-24964: Updating ose-csi-external-snapshotter-container image to be consistent with ART #128
- OCPBUGS-24866: Updating ose-csi-snapshot-controller-container image to be consistent with ART #127
- OCPBUGS-24330: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #124
- OCPBUGS-24338: Updating ose-csi-external-snapshotter-container image to be consistent with ART #123
- OCPBUGS-24329: Updating ose-csi-snapshot-controller-container image to be consistent with ART #121
- OCPBUGS-24244: Updating ose-csi-external-snapshotter-container image to be consistent with ART #118
- OCPBUGS-24160: Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #116
- OCPBUGS-24244: Updating ose-csi-external-snapshotter-container image to be consistent with ART #117
- OCPBUGS-24071: Updating ose-csi-snapshot-controller-container image to be consistent with ART #115
- OCPBUGS-23010: UPSTREAM: 958: Re-queue SnapshotContents that are readyToUse: false #114
- OCPBUGS-21593: CVE-2023-44487: bump golang.org/x/net to v0.17.0 #108
- STOR-1404: Rebase
external-snapshotter
to v6.3.0 for OCP 4.15 #107
- OCPBUGS-19260: Updating csi-snapshot-validation-webhook images to be consistent with ART #106
- OCPBUGS-19223: Updating ose-csi-external-snapshotter images to be consistent with ART #105
- OCPBUGS-19100: Updating ose-csi-snapshot-controller images to be consistent with ART #104
- STOR-1169: Rebase
external-snapshotter
to v6.2.2 for OCP 4.14 #101
- OCPBUGS-14813: Chore: Update OWNERS and OWNERS_ALIASES #102
- Updating csi-snapshot-validation-webhook images to be consistent with ART #100
- Updating ose-csi-external-snapshotter images to be consistent with ART #99
- Updating ose-csi-snapshot-controller images to be consistent with ART #98
- Updating csi-snapshot-validation-webhook images to be consistent with ART #97
- Updating ose-csi-external-snapshotter images to be consistent with ART #96
- Updating ose-csi-snapshot-controller images to be consistent with ART #95
- Updating csi-snapshot-validation-webhook images to be consistent with ART #94
- Updating ose-csi-external-snapshotter images to be consistent with ART #93
- Updating ose-csi-snapshot-controller images to be consistent with ART #92
- Updating csi-snapshot-validation-webhook images to be consistent with ART #91
- Updating ose-csi-snapshot-controller images to be consistent with ART #89
- Updating ose-csi-external-snapshotter images to be consistent with ART #90
- STOR-1020: Rebase
external-snapshotter
to v6.2.1 for OCP 4.13 #88
- Updating csi-snapshot-validation-webhook images to be consistent with ART #87
- Updating ose-csi-external-snapshotter images to be consistent with ART #86
- Updating ose-csi-snapshot-controller images to be consistent with ART #85
- Full changelog
- STOR-2018: Rebase node-driver-registrat to v2.12.0 for OCP 4.18 #76
- Updating csi-node-driver-registrar-container image to be consistent with ART for 4.18 #75
- OCPBUGS-34361: Updating csi-node-driver-registrar-container image to be consistent with ART for 4.17 #74
- OCPBUGS-34361: Updating csi-node-driver-registrar-container image to be consistent with ART for 4.17 #73
- STOR-1573: Rebase
node-driver-registrar
to v2.10.0 for OCP 4.16 #70
- OCPBUGS-30441: CVE-2024-24786: bump google.golang.org/protobuf to v1.33.0 #69
- OCPBUGS-29987: Updating csi-node-driver-registrar-container image to be consistent with ART for 4.16 #68
- OCPBUGS-27242: fix or ignore snyk errors for ocp storage repos #64
- OCPBUGS-25544: Updating csi-node-driver-registrar-container image to be consistent with ART #62
- STOR-1688: Chore: add .snyk file to ignore false positives #61
- OCPBUGS-25117: Updating csi-node-driver-registrar-container image to be consistent with ART #59
- OCPBUGS-23811: UPSTREAM: 354: Bump Bump OpenTelemetry to fix CVEs #58
- OCPBUGS-24856: Updating csi-node-driver-registrar-container image to be consistent with ART #57
- OCPBUGS-21593: CVE-2023-44487: bump golang.org/x/net to v0.17.0 #51
- STOR-1404: Rebase
node-driver-registrar
to v2.9.0 for OCP 4.15 #50
- OCPBUGS-19247: Updating csi-node-driver-registrar images to be consistent with ART #49
- STOR-1169: Rebase
node-driver-registrar
to v2.8.0 for OCP 4.14 #46
- OCPBUGS-14814: Chore: Update OWNERS and OWNERS_ALIASES #47
- Updating csi-node-driver-registrar images to be consistent with ART #45
- Updating csi-node-driver-registrar images to be consistent with ART #44
- Updating csi-node-driver-registrar images to be consistent with ART #43
- Updating csi-node-driver-registrar images to be consistent with ART #42
- STOR-1020: Rebase
csi-node-driver-registrar
to v2.7.0 for OCP 4.13 #41
- Updating csi-node-driver-registrar images to be consistent with ART #40
- Full changelog
- Updating driver-toolkit-container image to be consistent with ART for 4.18 (#157) #157
- Adding the
+
char to the RT kernel version. (#154) #154
- Updating driver-toolkit-container image to be consistent with ART for 4.17 (#153) #153
- ART bash parser is failing on [[…]] syntax (#151) #151
- Patch manifests to require stream-coreos instead of rhel-coreos in the OKD/SCOS case (#149) #149
- Use a default RHEL_VERSION when the build argument is not specified (#148) #148
- Add importMode and set it to
PreserveOriginal
to import (#144) #144
- MCO-392: Start using rhel-coreos image rather than machine-os-content. (#142) #142
- apply hypershift cluster-profile (#143) #143
- Add support for 64k pages with ARM64 (#140) #140
- Updating driver-toolkit-container image to be consistent with ART (#139) #139
- MGMT-16313: Add support for C++ build (#137) #137
- Revert “Start using
rhel-coreos
image rather than machine-os-content
(#135)” (#136) #135
- Start using
rhel-coreos
image rather than machine-os-content
(#135) #135
- Updating driver-toolkit images to be consistent with ART (#134) #134
- Removing
kernel[-rt]-core
packages from the image. (#132) #132
- Upgrade glibc, use dnf (#131) #131
- Fixing the regexp used to get the correct GCC version. (#127) #127
- Updating the docs to use
ubi9
instead of ubi8
. (#126) #126
- Updating driver-toolkit images to be consistent with ART (#120) #120
- Remove abi since it was not in 9.2 rpms (#121) #121
- Fixing
check-commits-count
to work on other branches than master
. (#118) #118
- Adding rpm-build to the Dockerfile (#116) #116
- Adding a missing space to README.md. (#115) #115
- Updating
README.md
. (#114) #114
- Updating the README.md. (#112) #112
- Updating driver-toolkit images to be consistent with ART (#111) #111
- Adding documentation regarding the driver-toolkit imagestream. (#110) #110
- Adding kernel-rpm-macros to the Dockerfile. (#106) #106
- Full changelog
- Update owners #177
- Updating ose-etcd images to be consistent with ART #181
- OCPBUGS-5458: UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… #175
- OCPBUGS-3098: Rebase openshift/etcd 4.13 onto v3.5.6 #168
- Bug OCPBUGS-3098: UPSTREAM: <carry>: server/etcdmain: add configurable cipher list to gRPC proxy listener #162
- Full changelog
- Bump fedora-coreos to latest stable #611
- Bump fedora-coreos to latest stable #608
- add SELinux policy for
ip
AVCs #603
- Dockerfile: use FCOS stable #594
- Bump FCOS to F38 stable #596
- Bump fedora-coreos to latest stable #587
- overlay: update selinux update script from 05rhcos #584
- Bump openshift-os to latest release-4.13 #579
- Bump fedora-coreos to latest stable #576
- Dockerfile: use CRI-O 1.26 #556
- Bump fedora-coreos to latest stable #568
- Dockerfile: symlink netcat to nc #564
- Bump fedora-coreos-config to latest stable #559
- Sync with master #553
- Full changelog
- OCPBUGS-42972: Support appProtocol: kubernetes.io/h2c #627
- NE-1815: Activate dynamic cookies for dynamic server slots (DCM) #636
- NE-1790: Enable setting zero pool size for blueprint routes via environment variable #635
- NE-1815: Enable ALPN for reencrypt routes when DCM is enabled #631
- OCPBUGS-26603: Listen for stats connections on v6 addresses when relevant. #633
- NE-1811: Rename the allowlist route annotation #564
- NO-JIRA: Add grzpiotrowski to the OWNERS file #629
- OCPBUGS-41295: Updating openshift-enterprise-haproxy-router-container image to be consistent with ART for 4.18 #624
- OCPBUGS-41237: Updating ose-haproxy-router-base-container image to be consistent with ART for 4.18 #623
- OCPBUGS-38475: Rename router Dockerfiles #616
- OCPBUGS-38101: Bump k8s.io/* packages to v0.30.3 #615
- OCPBUGS-34351: Updating ose-haproxy-router-base-container image to be consistent with ART for 4.17 #602
- OCPBUGS-34471: Updating openshift-enterprise-haproxy-router-container image to be consistent with ART for 4.17 #604
- CFE-1020: feature:route external certificate reference #565
- OCPBUGS-29373: generateHAProxyCertConfigMap: No H2 with dup certs #589
- OCPBUGS-26498: Optimize Upgrade Validation plugin by skipping unnecessary changes #587
- OCPBUGS-26498: Make ingressConditionsEqual more efficient #588
- OCPBUGS-29690: Count active services before setting weight to 1 #576
- “OCPBUGS-26498: Add Upgrade Validation force arguments for running E2E tests” #575
- OCPBUGS-26498: Reject routes with SHA1 certs #552
- OCPBUGS-26498: Upgrade Validation plugin for SHA1 certs #555
- OCPBUGS-32044: Introduce ‘idle-close-on-response’ option for frontends #573
- OCPBUGS-22739: Properly handle rewrite-target annotation #534
- NO-JIRA: hack/Dockerfile.debug: use ubi9 for base image #567
- OCPBUGS-30314: Refactor logging in DoHTTPProbe to avoid serialisation errors #566
- NE-1444: Bump HaProxy to the latest version 2.8 #563
- TRT-1507: Revert #551 “NE-1444: Upgrade OpenShift Router to HAProxy 2.8” #561
- NE-1444: Upgrade OpenShift Router to HAProxy 2.8 #551
- OCPBUGS-26539: Reject routes with MD5 certs #553
- OCPBUGS-25546: Updating ose-haproxy-router-base-container image to be consistent with ART #550
- NO-JIRA: hack - fix broken RPM link and use UBI image in Dockerfile.debug, use podman in Makefile.debug #544
- OCPBUGS-25029: Updating openshift-enterprise-haproxy-router-container image to be consistent with ART #547
- NE-1446: Update to RHEL9 base image #548
- OCPBUGS-24859: Updating ose-haproxy-router-base-container image to be consistent with ART #546
- OCPBUGS-23743: Bump k8s.io/* packages to v0.28.3 #542
- OCPBUGS-21973: Bump golang.org/x/net to v0.17.0 to address CVE-2023-39325 #529
- OCPBUGS-21803: haproxy-template: Add ‘no strict-limits’ to address HAProxy 2.6 issue #527
- OCPBUGS-19287: Updating openshift-enterprise-haproxy-router images to be consistent with ART #513
- OCPBUGS-19249: Updating ose-haproxy-router-base images to be consistent with ART #512
- OCPBUGS-16707: UniqueHost: Fix incorrect identification of conflicting route #508
- OCPBUGS-17653: haproxy/template: mitigate CVE-2023-40225 #505
- NE-1141: Adds logic for setting and deleting headers via Ingress Operator CR and Route Object. #438
- OCPBUGS-16623: properly handle weight=0 #499
- RFE-3007: Add the ability to enabled option contstats #449
- OCPBUGS-3356: Add support for tuning tune.http.cookielen #436
- NE-1304: container builds: switch to haproxy26 package #487
- OCPBUGS-13969: Bump vendors k8s libraries to 0.27.2 #486
- OCPBUGS-6661, OCPBUGS-9464: Handle mTLS CRLs, and fix accidental CRL duplication #472
- OCPBUGS-12610: Address CVE-2022-41723 #475
- OCPBUGS-12346: Update 4.14 ose-haproxy-router-base image to be consistent with ART #473
- OCPBUGS-10200: Updating openshift-enterprise-haproxy-router images to be consistent with ART #455
- OCPBUGS-8646: bump openshift/library-go to drop mongo-driver references #462
- OCPBUGS-11595: Revert “[NE-1267] container builds: switch to haproxy26 package” #467
- OCPBUGS-10170: Updating ose-haproxy-router-base images to be consistent with ART #453
- container builds: switch to haproxy26 package #466
- OCPBUGS-10003: Revert “NE-1115: Update haproxy container builds to use haproxy 2.6” #458
- OCPBUGS-7542: Bump vendored k8s libraries to 1.26 #451
- OCPBUGS-6336: Address CVE-2022-41717 #445
- OCPBUGS-5073: Count endpoints per port for weights and enabling active health checks #439
- Updating ose-haproxy-router-base images to be consistent with ART #431
- Updating openshift-enterprise-haproxy-router images to be consistent with ART #432
- NE-1115: Update haproxy container builds to use haproxy 2.6 #430
- Full changelog
- OCPBUGS-13747: 4.13: kubelet/cm: disable cpu load balancing on slices when using static cpu manager policy #1580
- OCPBUGS-14048: Bump to k8s 1.26.5 #1586
- OCPBUGS-11146: Enable CSI migration configuration via env vars #1514
- OCPBUGS-11823: UPSTREAM: 117311: kube-aggregator: correctly use client-go TLS cache with custom dialer #1549
- OCPBUGS-7268: Extractor more fixes 4.13 #1544
- UPSTREAM: <carry>: OCPNODE-1548,OCPNODE-1584: disable load balancing on created cgroups when managed is enabled #1543
- OCPBUGS-11669: Bump to k8s 1.26.3 #1540
- OCPBUGS-10432: CSI Inline Volume admission plugin does not log object name correctly #1515
- OCPBUGS-6201: Updating openshift-enterprise-pod images to be consistent with ART #1435
- OCPBUGS-7359: Azure: move to kube-proxy LB probes, don’t detach masters when unready #1506
- OCPBUGS-10515: UPSTREAM: 115328: apiserver: annotate early (server not ready) and late (during shutdown) requests #1517
- OCPBUGS-8412: Fix mounted volume expansion tests #1502
- OCPBUGS-8308: Bump to k8s 1.26.2 #1495
- AUTH-336: UPSTREAM: <carry>: PSa metrics: unset ocp_namespace on non-platform n… #1489
- Bump to k8s 1.26.1 #1479
- OCPBUGS-7267: add SeccompProfile to Pod and Container accessors/mutators #1490
- UPSTREAM: <drop>: OCPBUGS-5991: Kube APIServer panics in admission controller #1488
- CNF-5901: admission hook change for workload partition on all clusters #1312
- UPSTREAM: 113799: tests: network: Prefer internal IPs first #1446
- UPSTREAM: 115863: Remove global framework variable #1480
- UPSTREAM: <carry>: add new approvers #1458
- OCPBUGS-7555: UPSTREAM: <carry>: add default kubelet sysctls within rpm #1475
- AUTH-336: UPSTREAM: <carry>: PSa metrics: log platform namespaces in audit denies #1454
- add icsp validation: reject one of icsp idms.itms resources #1310
- UPSTREAM: 114027: make GetSubnetPrefix IP family agnostic #1469
- disable tests dependent on StackDriver #1466
- UPSTREAM: 115484: Don’t explicitly set image version in tests #1465
- UPSTREAM: 114994: kubelet: fix readiness probes with pod termination #1450
- OCPBUGS-6030: Rebase onto kube v1.26 #1432
- Fix the mutated PodSpec extractor for warns if no SCC matches #1453
- OCPBUGS-4900: remove in-tree volume limits test now that CSIMigration is GA #1448
- OCPBUGS-4658: Apply shared defaulters to CRD-based routes. #1440
- OCPBUGS-4657: Bump library-go. #1431
- UPSTREAM: <carry>: make the PSA workload admission warnings honor the… #1393
- UPSTREAM: <carry>: Ensure balanced brackets in annotated test names #1410
- STOR-829: Add CSIInlineVolumeSecurity admission plugin #1384
- OCPBUGS-3501: UPSTREAM: <carry>: Add host assignment plugin for CRD-based routes. #1419
- UPSTREAM: <drop>: Bump openshift/api. #1424
- OCPBUGS-3499: UPSTREAM: <carry>: Add validation plugin for CRD-based route parity. #1416
- Bug 2117374: UPSTREAM: <drop>: update apiserver-library-go to add message about wo… #1395
- Bug OCPBUGS-2991: Disable expansion in SC, if driver does not support it #1402
- OCPBUGS-3093: Tag AWS security groups at creation #1411
- UPSTREAM: <drop>: Bump library-go. #1406
- OCPBUGS-2946: Revert: 1340: tag AWS security group at creation #1401
- OCPBUGS-3084: UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines #1404
- Full changelog
- OCPBUGS-13735: Cluster-api SA can’t create events and fix permissions wrongly included #2610
- OCPBUGS-14242: Remove external-dns –events flag #2621
- OCPBUGS-14155: Reconcile oauthDeployment annotations even if kubeadmin secret is not found #2613
- OCPBUGS-13399: Fix errors from HCP controller removeServiceCAAnnotationAndSecret() #2552
- HOSTEDCP-1010: Set ETCD Storage Size as immutable field and equalised the default size among both api versions #2611
- HOSTEDCP-947: Increases default etcd PV size to 8Gi #2569
- HOSTEDCP-926: Send metric when HO/CPO decide to skip cloud resource deletion #2594
- HOSTEDCP-975: Backport nodepools metrics #2601
- Red Hat Trusted App Pipeline update hypershift #2603
- OCPBUGS-13594: Sync proxy TrustedCA to guest cluster #2556
- fix nil deref in DefaultWorkerSecurityGroupID check #2574
- OCPBUGS-13215: Let the aws endpoint to use the hypershift owned SG #2529
- OCPBUGS-13497: Add internal/external elb tags to subnets #2553
- OCPBUGS-13531: Clean up existing VPC endpoint connections #2554
- Stop triggering rollout on labels/taint change #2548
- Fixes HCCO reconcile error for kubevirt csi driver #2538
- Fix kubevirt csi daemonset reconcile loop #2542
- HOSTEDCP-980: Include HostedClusterDegraded in hypershift_hostedclusters_failure_conditions metric #2525
- Bug HOSTEDCP-788: [release-4.13] Configurable SRE MetricsSet #2544
- ACM-5173 [backport 4.13] get pull secret instead of dockerconfigjson from mce credentials #2487
- OCPBUGS-13085: Account for expectedState == false when capturing hostedClustersWithFailureCondition #2516
- OCPBUGS-13076: Ensure ingress controllers are removed before load balancers #2514
- HOSTEDCP-937: Add new metric to expose hypershift operator info #2499
- Fixed assignment to entry in nil map #2510
- OCPBUGS-12786: fix(hcco): Get OLM CatalogSource images from defined map #2484
- add hyperv1.SilenceClusterAlertsLabel to HostedCluster on deletion #2480
- OCPBUGS-12844: Delete kubeadmin secret when an idp is defined #2491
- HOSTEDCP-917: Add publicAndPrivate <-> Private e2e test #2490
- OCPBUGS-12689: hosted clusters default KAS PDA config should be consistent with OCP #2496
- HOSTEDCP-969: Consolidate labels for metrics #2497
- HOSTEDCP-969: Move metrics #2495
- OCPBUGS-12737: Pass OPENSHIFT_RELEASE_IMAGE env variable to CNO #2472
- OCPBUGS-12225: Add new OCP 4.13 storage admission plugin #2462
- OCPBUGS-12198: remove ACL for aws bucket #2457
- kubevirt: Block metadata server egress #2439
- HOSTEDCP-638: Add latest ocp supported info to -v command for cli and operator #2447
- add pull-secret to imagePullSecrets for NTO, CNO, and olm-collect-profiles #2432
- e2e: Cleanup shared OIDC provider on SIGTERM #2448
- OCPBUGS-11842: allow z-stream upgrade even if CVO Upgradeable is false #2431
- Relax MCO API strict decoding #2442
- Enable monitoring for hypershift & HCP namespace #2429
- OCPBUGS-11545: Pass runAsUser to CNO so it can run its managed services with proper security context #2392
- OCPBUGS-10422: Create new EC2 client for AWS identity provider health check #2402
- OCPBUGS-10995: Honor scheduler profile in HostedCluster configuration #2337
- OCPBUGS-11725: Update HostedCluster oauthCallbackURLTemplate #2409
- HOSTEDCP-568: Update Konnectiviy socks5 proxy for IBM exception #2404
- bug OCPBUGS-10422: Preserve false status of ValidAWSIdentityProvider condition #2401
- HOSTEDCP-802: add cli flag to enable upgrade type #2388
- OCPBUGS-11606: properly reconcile with user specified changes for in proxy configuration #2394
- Let install apply to aggregate errors #2375
- Revert “Create a second scheme that always registers prometheusoperatorv1 GVKs #2376
- HOSTEDCP-939: [release-4.13] Setup shared OIDC provider for e2e clusters #2364
- OCPBUGS-10422: Ensure identity provider health check condition is persisted and remove awsendpoint control plane finalizer if invalid aws creds #2283
- HOSTEDCP-850: Fix nodepool autoscaler logic #2363
- HOSTEDCP-806: Fix ValidAWSKMSConfig condition #2361
- OCPBUGS-10867: Switch NTO metrics auth to certs generated by HCP controller #2331
- OCPBUGS-10823 ensure well known public domains do not get proxied on image imports #2353
- OCPBUGS-10645: Add storage operators perms. to watch HostedControlPlane #2305
- SDA-8706: No more specifying the scrape interval at servicemonitors & podmonitors level #2355
- OCPBUGS-11013: Do not proxy when guest cluster resolution fails #2339
- OCPBUGS-11055: fix external APIServer address selection based on endpointAccess #2349
- HOSTEDCP-934: [release-4.13] Validate PublishingStrategyMapping #2343
- HOSTEDCP-900: Modified AWSPrivateLinkController and AWSEndpointServiceController to respect PausedUntil spec field #2284
- HOSTEDCP-903: Propagate AWSEndpointService conditions #2307
- OCPBUGS-10792: [release-4.13] Create a second scheme that always registers
prometheusoperatorv1
GVKs #2312
- HOSTEDCP-801: [release-4.13] Expose external DNS for private cluster endpoints #2313
- Update HCP version in capi cluster ref #2266
- OCPBUGS-10504: Deletion of the VPCEnpoint on conflicting service names #2309
- HOSTEDCP-839: Audit log sidecars for openshift-apiserver and openshift-oauth-apiserver #2296
- OCPBUGS-10586: Use appropriate serving certificate for OAuth #2294
- Validate etcd KMS config #2260
- Force controleplane upgrade always #2291
- Disable inplace upgrade e2e tests #2303
- HOSTEDCP-809: Clone CA key/cert to TLS key/cert #2262
- OCPBUGS-8369: Fix cleanup of volumes on cluster deletion #2252
- HOSTEDCP-904: Add release automation and docs #2236
- kms addition for pod identity workflow #2214
- fix(ho): No network validation for IBM Cloud #2225
- feat(HCCO): Block DNS operator delete until Cluster Version updated #2223
- Add configuration for automatic labeling and label commands #2238
- Skip pod restart check for NTO #2239
- cpo: cno: follow image name change in release payload #2230
- Added documentation around supported-versions configmap #2220
- Add comment for BaseDomainPrefix #2219
- Add condition to NodePool indicating whether a security group for it is available #2216
- HOSTEDCP-827: Add root volume encryption e2e test #2192
- fix(hypershift): reduce CAPI rbac access #2173
- Validate Network Input for HostedCluster #2215
- Add labels info #2218
- HOSTEDCP-826: Customize DNS base domain prefix #2213
- ensure reconcilation of apiserver port #2197
- Cleanup default security group only if authorized #2211
- HOSTEDCP-593: Update the pull secret source for ignition payload #2187
- fix(ibmcloud): Explicitly set HCCO controllers #2185
- Adding NTO again to find the issue with data recollection #2152
- cli: Add –cli-root-volume-access-modes #2188
- feat: Add pod gone check to prober + DNS operator leader elect #2155
- HOSTEDCP-833: Add Golang check for ‘go list’ errors in Makefile #2193
- HOSTEDCP-833: Set kubevirt.io/client-go version to fix ART Issue #2194
- add KAS egress network policy #2181
- cpo: kcm: add nfs pv recycler pod template #2183
- Fix kubevirt how-to doc formatting issues #2178
- Update cluster api provider kubevirt dependencies #2157
- fix(cpo): Set restart annotation on multus-admission-controller #2150
- fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac #2141
- Add default NodePool name clarification to docs #2186
- fix(cpo): Reduce CNO access if Calico used as network provider #2159
- add PSA labels to openshift-infra in guest cluster #2180
- Add cli flag to enable root volume encryption #2177
- Update KubeVirt platform how-to documentation #2108
- Filtering data recolection only for aws instances running #2153
- Add PodMonitor for ingress-operator pods in HCP namespaces #2136
- fix regex in registry operator pod monitor #2171
- Add e2e test for hosted cluster behind a proxy #2077
- Skip destroyAWSDefaultSecurityGroup if not AWS #2167
- Give kubevirt csi controller get VMI RBAC #2154
- set default PSA enforce to restricted #2097
- Create default security group for AWS clusters #2146
- AUTH-323: konnectivity: split away the rootCA from konnectivity trust #2149
- Use KAS kubeconfig for PowerVS CCM instead of external kubeconfig #2065
- Add e2e test for secrets encryption using kms #2135
- OSD-15099: Delaying the creation of servicemonitor and podmonitor resources till the hostedcluster is Completed #2147
- Add support for root volume encryption using KMS #2143
- Check creation and deletion timestamps are not nil #2132
- test: skip TestCreateClusterKms on non-AWS platforms #2151
- expose silence alerts metric #2142
- AUTH-323: pki: split out konnectivity certs from the rootCA #1891
- Clarify docs for nodePool.spec.config #2137
- fix(ho): Delete user-data secret for non-AWS platforms #2134
- Revert “Refactored NTO MachineConfig InPlace and Replace E2E Tests” #2145
- Basic immutability for NodePool #2139
- Changes autoscalling replica number when the nodepool replica is not set #2106
- Add external DNS health condition #2130
- Adding supportability for Private HostedCluster to be migrated #2089
- fix openshift-route-controller-manager ServiceMonitor regex #2094
- fix(api): Fix deprecated API conversion #1987
- OpenID add support for groups claim in the config #2116
- fix(cpo): Restart registry operator on annotation #2111
- fix(cpo): Allow KAS profiling disablement #2110
- update to golang 1.19 and 4.13 base image #2095
- Add e2e test for cluster creation with AWS KMS #2093
- Refactoring NTO MachineConfig InPlace and Replace E2E Tests #2051
- Fix CAPA crd generation #2113
- AWS: remove finalizer from deleted awsmachines if lost STS #2109
- Minor fixes to notes on Getting Started and NodePool Upgrades pages #2117
- Add dns docs clarification for private topology #2115
- fix(cpo): Separate RBAC for NTO + CNO #2107
- Set k8s.io/kubernetes dependency to v0.23.3 #2068
- Moving from HC Migration to Disaster Recovery in documentation #1953
- test: skip ovnkube-master in crashing pods check #2103
- bump openshift/api and go1.19 for fmt #2096
- Fixing issue between UpdatingVersion and UpdatingConfig at InPlace Up… #1978
- Add tags and rename cloud instance name suffix #1779
- fix(ibmcloud): Initialize image registry config on creates and bad config #2091
- Full changelog
- STOR-1019: Bump to k8s 1.26 libs for OCP 4.13 #51
- STOR-947: support disabling default StorageClass via ClusterCSIDriver #48
- Bug 2106736: Add multiplePVsSameID capability #50
- STOR-1078: Add hostPaths necessary for SELinux mounts #49
- Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #47
- STOR-1060: Update deployment files for snapshot support #45
- Full changelog
- OCPBUGS-12618: update golang.org/x/net version (#775) #775
- OCPBUGS-8243: Collect info about monitoring pods pv (#753) #753
- OCPBUGS-11008: update the cluster transfer interval to 12h (#762) #762
- OCPBUGS-10239: service_accounts.go Marshal fix (#750) #750
- test(clusterconfig): add unit test for silenced_alerts.go and rename it to gather_silenced_alerts.go (#728) #728
- test(clusterconfig): add unit test for ingresses.go and rename it to gather_cluster_ingress.go (#729) #729
- test(oauth): add unit test for oauth.go and rename it to gather_cluster_oauth.go (#738) #738
- gather logs - update “FilterLogFromScanner” function and add some tests (#735) #735
- Add unit tests to openshift sdn controller logs gatherer (#733) #733
- OCPBUGS-6731: Anonymize env vars from containers: HTTP_PROXY, HTTPS_PROXY (#723) #723
- OCPBUGS-6832: feat(recent_metrics) adds openshift_apps_deploymentconfigs_strategy_total (#726) #726
- OCPBUGS-6781: Create gatherer for gathering machines. (#725) #725
- chore(docs): update gathered documentation (#704) #704
- arch docs update - explain disabled=true status more (#721) #721
- operators gatherer - handle ingresscontroller relatedObject & simplify (#714) #714
- Revert “OCPBUGS-5347: additional fix (#716)” (#717) #716
- OCPBUGS-5347: additional fix (#716) #716
- OCPBUGS-5347: do not periodically update Available clusteroperator co… (#709) #709
- Update operator name in the OWNERS file (#712) #712
- OCPBUGS-5257 do not get disabled rules (#706) #706
- refactor(webhookconfigurations): remove asset method and split tests (#702) #702
- refactor(scheduler): move GatherSchedulerLogs to its own file (#701) #701
- chore(golanglint-ci) disabling some linters for *_test.go files (#703) #703
- Update OpenShift versions & new Download time field (#705) #705
- Updating ose-insights-operator images to be consistent with ART (#700) #700
- Change of kube-system namespace configmap location according to docs. (#694) #694
- OCPBUGS-3377: fix: storage/ceph path structure (#691) #691
- PR template preview and changelog update (#692) #692
- Use cgroups memory usage data in the archive metadata (#693) #693
- Full changelog
- OCPBUGS-14135: ironic.conf.j2: Bump min_command_interval to 30 on SCOS #378
- Bug OCPBUGS-13334: Bump ironic version to include fix to OCPBUGS-13334. #366
- OCPBUGS-12703: Bump python-sushy #362
- OCPBUGS-11985: allow inspector to also be proxied #361
- Adding dep on python3-werkzeug >= 2.0.3-4 #349
- OCPBUGS-5461: Add ironic IP to no_proxy #346
- OCPBUGS-5136: Adding dosfstools and util-linux tools to ironic-image #340
- OCPBUGS-5068: Configure Ironic iLO driver to use web server #338
- OCPBUGS-4635: Update packages versions with latest available #332
- OCPBUGS-4492: Handle a different error code for missing TransferProtocolType #333
- Bug OCPBUGS-4305: Remove RDO distribution configuration (finally fixes #46) #326
- Bug OCPBUGS-4225: Fix setting boot related attributes #325
- Add support for OKD/SCOS #320
- OCPBUGS-3085: Workaround for long time gap between operations in recent idrac #319
- OCPBUGS-1844: Merge from upstream metal3-io/ironic-image #321
- Allow dnsmasq to work as a DNS forwarder #304
- Bug OCPBUGS-3480: Improve resiliency of eTag handling #313
- Updating ironic images to be consistent with ART #312
- Add DNS or GW for use by dnsmasq #308
- OCPBUGS-2992: Don’t save OS_ prefixed variables #309
- Full changelog
- OCPBUGS-14315: Flush addresses on provisioning interface with global scope only #36
- Updating ironic-static-ip-manager images to be consistent with ART #33
- Full changelog
- Updating ose-prometheus-adapter-container image to be consistent with ART for 4.18 #108
- MON-3906: Bump prometheus adapter to 0.12.0 #106
- OCPBUGS-34299: Updating ose-prometheus-adapter-container image to be consistent with ART for 4.17 #105
- OCPBUGS-34299: Updating ose-prometheus-adapter-container image to be consistent with ART for 4.17 #104
- OCPBUGS-30532: upgrade github.com/golang/protobuf to v1.5.4 for bette… #101
- OCPBUGS-25583: Updating ose-prometheus-adapter-container image to be consistent with ART #100
- OCPBUGS-24986: Updating ose-prometheus-adapter-container image to be consistent with ART #99
- OCPBUGS-24986: Updating ose-prometheus-adapter-container image to be consistent with ART #98
- MON-3584: Remove trailing spaces from Dockerfile.ocp #97
- OCPBUGS-24155: Updating ose-prometheus-adapter-container image to be consistent with ART #95
- MON-3489: Bump openshift/k8s-prometheus-adapter to v0.11.2 #94
- OCPBUGS-21621: Add a toggle to disable HTTP/2 on the server to mitigate CVE-2023-44487 #88
- add
machine424
and rexagod
to OWNERS #73
- OCPBUGS-21621: upgrade golang.org/x/net to 0.17.0 to address CVE-2023… #80
- OCPBUGS-18971: limit number of simultaneous client requests #76
- OCPBUGS-19251: Updating ose-prometheus-adapter images to be consistent with ART #74
- Bump openshift/k8s-prometheus-adapter to v0.11.0 #72
- OCPBUGS-12659: bump golang.org/x/net version #71
- Updating ose-prometheus-adapter images to be consistent with ART #69
- OCPBUGS-10172: Updating ose-prometheus-adapter images to be consistent with ART #68
- OCPBUGS-6458: Bump golang.org/x/net to v0.4.0 for GO-2022-1144 #67
- Updating ose-prometheus-adapter images to be consistent with ART #66
- Full changelog
- OCPBUGS-33629: Only set the instancetype to master if the preempt strategy is not nopreempt. #197
- OCPBUGS-39480: Updating openshift-enterprise-egress-dns-proxy-container image to be consistent with ART for 4.18 #193
- OCPBUGS-41231: Updating openshift-enterprise-keepalived-ipfailover-container image to be consistent with ART for 4.18 #196
- OCPBUGS-41213: Updating ose-egress-http-proxy-container image to be consistent with ART for 4.18 #195
- OCPBUGS-39544: Updating openshift-enterprise-egress-router-container image to be consistent with ART for 4.18 #194
- OCPBUGS-38285: Updating openshift-enterprise-base-rhel9-container image to be consistent with ART for 4.18 #191
- OCPBUGS-38286: Updating openshift-enterprise-base-container image to be consistent with ART for 4.18 #192
- OCPBUGS-34348: Updating openshift-enterprise-keepalived-ipfailover-container image to be consistent with ART for 4.17 #186
- OKD-219: add util-linux to base image #187
- OCPBUGS-34152: Updating openshift-enterprise-egress-router-container image to be consistent with ART for 4.17 #184
- OCPBUGS-34338: Updating ose-egress-http-proxy-container image to be consistent with ART for 4.17 #185
- OCPBUGS-34103: Updating openshift-enterprise-egress-dns-proxy-container image to be consistent with ART for 4.17 #183
- OCPBUGS-33909: Updating openshift-enterprise-base-container image to be consistent with ART for 4.17 #182
- OCPBUGS-33908: Updating openshift-enterprise-base-rhel9-container image to be consistent with ART for 4.17 #181
- OKD-40: Revert #179 #180
- OKD-40: Remove centos-openstack-zed and add in rdo repo to get python-cinderclient dependency #179
- Add dnf-plugins-core in scos to help with OCP image compat #178
- OKD-210: Add sig-cloud repository and enable rt repository #177
- OKD-210: Add the sig-nfv repo in the CS9 base #176
- OCPBUGS-24850: Bump OpenShift 4.16, RHEL9, and iptables package #175
- OCPBUGS-24990: Updating openshift-enterprise-keepalived-ipfailover-container image to be consistent with ART #159
- OCPBUGS-24800: Updating ose-egress-http-proxy-container image to be consistent with ART #156
- NO-ISSUE: Add Scott and Mrunal as image approvers #170
- NO-ISSUE: remove bparees from owners #169
- OCPBUGS-29484: update unit tests in egress/dns-proxy #165
- NE-1444: egress/dns-proxy: switch to haproxy28 RPM package #160
- OCPBUGS-24861: Updating openshift-enterprise-egress-dns-proxy-container image to be consistent with ART #158
- OCPBUGS-24751: Updating openshift-enterprise-base-rhel9-container image to be consistent with ART #155
- OCPBUGS-24723: Updating openshift-enterprise-base-container image to be consistent with ART #154
- OCPBUGS-19261: Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #153
- OCPBUGS-19107: Updating ose-egress-http-proxy images to be consistent with ART #150
- OCPBUGS-19239: Updating openshift-enterprise-egress-router images to be consistent with ART #151
- OCPBUGS-18860: Updating openshift-enterprise-base-rhel9 images to be consistent with ART #149
- OCPBUGS-18853: Updating openshift-enterprise-base images to be consistent with ART #148
- OCPBUGS-10176: 15143307: Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #132
- OCPBUGS-10163: Updating openshift-enterprise-egress-router images to be consistent with ART #131
- OCPBUGS-10181: 15143312: Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #133
- NE-1304: container builds: switch to haproxy26 package #141
- OCPBUGS-11385: Removed chroot setting #137
- egress: update owners #139
- OCPBUGS-11595: Revert “[NE-1267] container builds: switch to haproxy26 package” #138
- egress/dns-proxy/Dockerfile: switch to haproxy26 package #136
- OCPBUGS-10003: Revert “bump RHEL8 egress-dns-proxy image to haproxy26” #134
- Updating ose-egress-http-proxy images to be consistent with ART #130
- Updating openshift-enterprise-base-rhel9 images to be consistent with ART #129
- Updating openshift-enterprise-base images to be consistent with ART #128
- Add jupierce as approver / remove Clayton #127
- rhel9 base image: Fix build failure #126
- Dockerfile: add RHEL9 base image dockerfile #124
- bump RHEL8 egress-dns-proxy image to haproxy26 #125
- Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #122
- Updating ose-egress-http-proxy images to be consistent with ART #120
- Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #123
- Updating openshift-enterprise-base images to be consistent with ART #119
- Full changelog
- Updating kube-state-metrics-container image to be consistent with ART for 4.18 #116
- OCPBUGS-33620: [bot] Bump openshift/kube-state-metrics to v2.13.0 #115
- OCPBUGS-34202: Updating kube-state-metrics-container image to be consistent with ART for 4.17 #113
- OCPBUGS-34202: Updating kube-state-metrics-container image to be consistent with ART for 4.17 #112
- NO-JIRA: Merge
v2.11.0
and v2.12.0
tags #110
- OCPBUGS-25585: Updating kube-state-metrics-container image to be consistent with ART #109
- OCPBUGS-24993: Updating kube-state-metrics-container image to be consistent with ART #108
- MON-3548: Bump openshift/kube-state-metrics to v2.10.1 #107
- MON-3548: Merge tag v2.10.1 #106
- OCPBUGS-21760: bump x/net to v0.17.0 #100
- add
machine424
and rexagod
to OWNERS #96
- OCPBUGS-19256: Updating kube-state-metrics images to be consistent with ART #97
- Merge with
upstream/release-2.9
#95
- OCPBUGS-12347: Update 4.14 kube-state-metrics image to be consistent with ART #94
- Bump openshift/kube-state-metrics to v2.8.2 #92
- OCPBUGS-10177: Updating kube-state-metrics images to be consistent with ART #91
- Bump openshift/kube-state-metrics to v2.8.1 #90
- OCPBUGS-6320: Merge
upstream/release-2.8
#89
- Updating kube-state-metrics images to be consistent with ART #88
- OCPBUGS-4275: Update github.com/prometheus/exporter-toolkit #87
- Bump openshift/kube-state-metrics to v2.7.0 #82
- OCPBUGS-4089: cherry-pick, do not expose ingress path metric when service is nil #81
- OCPBUGS-3924: cherry-pick, autoscaling/v2beta2 HorizontalPodAutoscaler is deprecated in v1.23+ #80
- Full changelog
- Updates the component owner field to match the new categories #17
- Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #16
- Full changelog
- OCPBUGS-44350: During detach don’t return error if VM is not found #47
- OCPBUGS-39451: Updating ose-kubevirt-csi-driver-container image to be consistent with ART for 4.18 #46
- CNV-45886: Add csi-clone support to kubevirt-csi (#118) #45
- CNV-44899: Sync upstream 2024-07-22 #44
- OCPBUGS-35093: Updating ose-kubevirt-csi-driver-container image to be consistent with ART for 4.17 #43
- OCPBUGS-34058: Updating ose-kubevirt-csi-driver-container image to be consistent with ART for 4.17 #41
- CNV-36073: Enable snapshot tests #40
- CNV-36073: Sync upstream kubevirt-csi 2024-04-19 #39
- “NO-JIRA: Sync upstream kubevirt-csi 2024-04-08” #38
- OCPBUGS-31276: Updating ose-kubevirt-csi-driver-container image to be consistent with ART for 4.16 #37
- CNV-32073: Sync upstream 2024-03-15 #36
- NO-JIRA: Address CVE-2024-1725: Restrict access to infrastructure PVCs by requiring matching infraClusterLabels on tenant PVCs #32
- NO-JIRA: Snapshot backport #31
- NO-JIRA: Auto sync upstream 2024 01 05 18 36 #27
- OCPBUGS-24805: Updating ose-kubevirt-csi-driver-container image to be consistent with ART #26
- OCPBUGS-19115: Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #23
- Ensure volume is removed before returning success (#90) #22
- Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #20
- CNV-29315: kubevirt-csi unable to unpublish volumes in the event a VM is unexpectedly destroyed #21
- Auto sync upstream 2023 02 12 09 #19
- Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #18
- Upstream Sync Oct 31st #16
- Full changelog
- OCPBUGS-10661: Fix empty component version #1130
- OCPBUGS-6063: Add missed permission for a pod deletion on vsphere platform #1121
- Add Machine webhook to validate the new fields of NutanixMachineProviderConfig #1117
- OCPBUGS-6063: Forcefully delete unevicted pods within vSphere machine deletion procedure #1118
- : Update tooling for MAO #1100
- OCPCLOUD-1852: Bump k8s dependencies to 1.26; go 1.19 #1115
- OCPBUGS-3275: Update machinehealthcheck dropping log from Error to Warning #1116
- Metal3 remediation backport #1075
- OCPBUGS-6063: Block machine deletion if extra disks are attached #1114
- Add webhook validation for ConfidentialCompute on GCP #1112
- Remove the openstack-machine-controllers image #1111
- MGMT-12838: add webook validation for shieldedInstanceConfig on GCP #1102
- : Short circuit misfiring #1107
- OCPCLOUD-1801: Port to ginkgo v2 #1099
- Add warning for unknown fields when unmarshaling the provider spec #1106
- OCPBUGS-5018: machine-api-termination-handler: run DaemonSet only on Linux #1101
- OCPBUGS-4566: Append annotations from machine template spec to the node #1096
- Updating ose-machine-api-operator images to be consistent with ART #1095
- OCPCLOUD-1769: Make machine phases public consts #1088
- : Set default container for machine-api-operator #1092
- Revert custom role #1097
- Add permissions for regionBackendServices #1094
- : GCP Credentials req. using new API field permissions #1087
- Fix lint issues reported by golangci-lint #1069
- Increase timeout for machineset tests #1091
- Use StringDeref from k8s.io/utils instead of custrom implementation #1090
- docs: Add a reference to machine-config-server #1089
- Allow to use machine.openshift.io API in provider specs #1085
- Bug 2095274: vSphere, fix network existence check for network devices during machine creation #1082
- Full changelog
- Force updating rhcos image to version 413.92.202303190222-0 #27
- Updating ose-machine-os-images images to be consistent with ART #25
- Full changelog
- OCPBUGS-13709: Bump golang.org/x/net from 0.0.0-20211209124913-491a49abca63 to 0.7.0 #68
- Updating ose-multus-admission-controller images to be consistent with ART #54
- Bug #2067863: Dependency Updates #53
- Full changelog
- OCPBUGS-8398: Multus entrypoint should regenerate kubeconfig if secret changes [backport 4.13] #154
- OCPBUGS-13759: Bump golang.org/x/net from 0.1.0 to 0.7.0 (#1039) #161
- OCPBUGS-13814: Fix multus to support CNI plugin which does not create interface [backport 4.13] #163
- Multus 4.0 upstream sync, strike back #146
- Updating multus-cni images to be consistent with ART #142
- Full changelog
OCPBUGS-6917: Upstream sync 0c6df81
(#22) #22
- Updating multus-networkpolicy images to be consistent with ART (#21) #21
- Full changelog
- Dev/sync upstream #30
- Updating ose-multus-route-override-cni images to be consistent with ART #28
- Full changelog
- OCPBUGS-11427: Fix network status annotation to k8s.v1.cni.cncf.io/network-status #127
- OCPBUGS-11424: Use downward API to pass current spec.nodeName to pod #126
- OCPBUGS-11322: respect requested allocation range when exluding ranges [Backport 4.13] #122
- OCPBUGS-7301: Invalid ipv6 backport 4.13 #125
- Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #112
- Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #111
- Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #110
- Upstream sync: IP reconciler controller and dual stack #107
- OCPBUGS-2948: Excluded ranges bug (#282) #102
- Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #100
- Full changelog
- Revert “OCPNODE-1499: Add CMA gather script” #350
- OCPNODE-1499: Add CMA gather script #348
- WINC-977: Update kube-proxy log file name #347
- Updating ose-must-gather images to be consistent with ART #343
- WINC-958: Collect WICD logs from Windows nodes #346
- report correct version when multiple images invoked #327
- Added hostsubnets to group_resources in gather_network_logs script #342
- Remove no longer needed gather_admission_webhooks script #325
- Added PodNetworkConnectivityCheck gather script #333
- Full changelog
- Updating ose-network-metrics-daemon images to be consistent with ART #62
- Full changelog
- Updating ose-network-tools images to be consistent with ART #75
- OCPBUGS-7106: Get OVN-Kubernetes leader identity from the lease #74
- Rename subcomponent to ensure bugs are assigned correctly #73
- Updating ose-network-tools images to be consistent with ART #72
- Full changelog
- OCPBUGS-10493: Nutanix Hostname of the VM is not set when using DHCP network config #44
- Support categories and project fields of NutanixMachineProviderConfig #38
- : Port to ginkgo v2 #41
- Update OWNERS #39
- : Update k8s packages to 1.26 #40
- Update the component in OWNERS file #36
- Update OWNERS #34
- Updating ose-nutanix-machine-controllers images to be consistent with ART #33
- Full changelog
- Removes Ross and adds Jeremy in the OWNER file (#645) #645
- OCPBUGS-13591, OCPBUGS-13592: Limit the nested repository path while mirroring the images (#635) #635
- CFE-658: Implementation of filtering by channel for OCI catalog (#628) #628
- Deprecate –use-oci-feature in favor of –include-local-oci-catalogs (#621) #621
- Update OWNERS for CFE team (#625) #625
- Revert adding ‘–cache-dir /tmp/cache’ to catalog images (#616) #616
- OCPBUGS-12259: fix: skips bundles with ‘skips’ field on head bundle (#617) #617
- fix: work around OCPBUGS-6741 by explicitly setting –cache-dir (#606) #606
- OCPBUGS-11908: Fix (#607) #607
- OCPBUGS-10348 fix: changes to include the registry path (#602) #602
- Fix OCPBUGS-8156: Upgrade to containerd v1.6.18 (#596) #596
- fix extract dir for cincinnati-graph-data container (#584) #584
- Bugfix check imagesetconfig for valid oci protocol when oci feature is used (#595) #595
- Remove “unsupported” wording from info on console (#594) #594
- Bugfix for destination registry nested paths length (#583) #583
- Fix OCPBUGS-5168: Upgrade helm.sh/helm/v3 to v3.11.2 fixing CVE-2022-23526 and CVE-2022-23525 (#592) #592
- OCPBUGS-10051: fix: remove catalog reference from ImageContentSourcePolicy.yaml (#587) #587
- OCPBUGS-8216: fix: remove an unecessary error message (#581) #581
- docs: add information about unsupported scenario (#578) #578
- Updating oc-mirror-plugin images to be consistent with ART (#570) #570
- Fix usage of registries.conf for OCI feature (#569) #569
- CFE-739: Add skip pruning flag and logic (#567) #567
- CFE-749: add e2e test for oci catalog feature to include release and additiona… (#562) #562
- CFE-764: Introduce v1alpha2.Operator.TargetCatalog (#565) #565
- docs: adds clarification to imageset reference and examples (#555) #555
- CFE-768: Update to allow for incremental and pruning for oci feature (#564) #564
- use new cincinnati endpoint to download tarball (#552) #552
- feat: OCI catalog filtering implementation (#559) #559
- CFE-761: Improve user experience of oc-mirror with the OCI FBC feature (#557) #557
- Fix typo in diff.go (#556) #556
- Upgrade base image for oc-mirror to 4.13 (#560) #560
- CFE-743: Update of golang version from 1.18.6 to 1.19.5 (#551) #551
- Fix flaky test Valid/OperatorTypeWithRelatedImgs (#549) #549
- OCPBUGS-5891: fix: adds logic that searches for the correct name when using a heads… (#547) #547
- New reviewers: Luigi Mario Zuccarelli, Sherine Khoury (#548) #548
- CFE-657: Update to include release and additionalImages with the new FBC feature (#535) #535
- OCPBUGS-3414: Fix: fixes issues encountered by QE (#536) #536
- OCPBUGS-3414: fix: Missing ‘ImageContentSourcePolicy’ and ‘CatalogSou… (#533) #533
- OCPBUGS-4516: fix: oc-mirror does not work as expected relative path for OCI format copy (#531) #531
- OCPBUGS-4365: Fix cases where namespace or subnamespace may be empty (#529) #529
- OCPBUGS-2851: fix (#525) #525
- Full changelog
- OCPBUGS-6448: Bump k8s 1.26.2 proof #361
- OCPBUGS-8701: Clear metadata.namespace on projects before write. #357
- Bump 1.26 proof #354
- OCPBUGS-7689: Fix a project validation error due to empty string value #352
- OCPBUGS-6197: Updating ose-openshift-apiserver images to be consistent with ART #338
- IR-270: support creation of image objects representing manifest lists #349
- API-1492: Bump kube-openapi for openapi-gen determinism fix. #348
- IR-269: Support multi-arch images in ImageStreamLayers #309
- IR-269: Bump openshift/api #344
- pkg/image: add myself to OWNERS #342
- IR-270: handle image metadata for manifest lists #340
- IR-326: support get of image stream images of a manifest list #341
- Use remaining route/v1 defaulters from library-go. #334
- OCPBUGS-501: fix printer panic #333
- Drop dependency on internal types from route default test. #332
- move the deployer role and binding to the ocm-o #331
- Use shared route validation and defaulting from library-go. #328
- IR-259: changing image stream importMode increments its generation #325
- Full changelog
- Add explicit license #248
- BUILD-407: Revert “remove tech preview feature gate for build csi volumes” #251
- BUILD-407: remove tech preview feature gate for build csi volumes #250
- WRKLDS-594: bump(k8s): 1.26.1 #249
- Updating ose-openshift-controller-manager images to be consistent with ART #247
- update the deploy pod to provide failure in pod #246
- Full changelog
- OSASINFRA-3609: Mark the repository as obsolete #180
- OSASINFRA-3531: Bump Gophercloud to v2 #178
- NO-JIRA: Use config map hooks from library-go #179
- OCPBUGS-41117: Updating ose-openstack-cinder-csi-driver-operator-container image to be consistent with ART for 4.18 #177
- NO-JIRA: Add more docs for configuration options #167
- STOR-1596: Bump all deps for 4.17 #176
- OCPBUGS-30949: Add config map hooks #168
- OCPBUGS-34870: Correct out-of-bounds check #170
- OCPBUGS-34276: Updating ose-openstack-cinder-csi-driver-operator-container image to be consistent with ART for 4.17 #169
- OCPBUGS-28230: enforce termination message policy on all platform pods #166
- OCPBUGS-26924: Add healtcheck for node-registrar #161
- OCPBUGS-30951: Relax requirement to enable topology #164
- STOR-1574: Bump all deps #159
- OCPBUGS-28937: Updating ose-openstack-cinder-csi-driver-operator-container image to be consistent with ART for 4.16 #160
- STOR-1574: Bump library-go #158
- STOR-1714: Release leadership on SIGTERM #155
- OCPBUGS-25340: Updating ose-openstack-cinder-csi-driver-operator-container image to be consistent with ART #152
- STOR-1688: Chore: add .snyk file to ignore false positives #151
- OCPBUGS-24226: setting TLSSecurityProfile with no minTLSVersion crashes controller #150
- OCPBUGS-25340: Updating ose-openstack-cinder-csi-driver-operator-container image to be consistent with ART #149
- OCPBUGS-24844: Updating ose-openstack-cinder-csi-driver-operator-container image to be consistent with ART #145
- OCPBUGS-23306: Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #146
- STOR-1281: Make Cinder CSI Driver Topology feature configurable #127
- OCPBUGS-23878: OCPBUGS-22624: CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46.0 #141
- STOR-1402, STOR-1453: update libraries and specify TLS_MIN_VERSION #143
- OCPBUGS-22357: CVE-2023-44487: bump github.com/openshift/library-go to master #140
- OCPBUGS-21593: CVE-2023-44487: bump golang.org/x/net to v0.17.0 #134
- STOR-1276: Enable support for mounting volumes with SELinux context #129
- OCPBUGS-19213: Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #133
- OSASINFRA-2139: Document how we manage configuration #110
- STOR-1436: Restart
openstack-cinder-csi-driver-controller
Pods if metrics-serving-cert changed #128
- Remove Dockerfile.rhel7 #126
- Configure User Agent #123
- OCPBUGS-16654: Revert revert “STOR-1065: Rework sidecar bindings to b… #119
- OCPBUGS-16783: Chore: Update OWNERS and OWNERS_ALIASES #121
- OCPBUGS-16526: Bump library-go to remove dependency on goproxy #122
- OCPBUGS-16678: Fix SCC admission failure race during initial deployment #120
- Revert “STOR-1065: Rework sidecar bindings to bind common ClusterRoles” #118
- STOR-1065: Rework sidecar bindings to bind common ClusterRoles #117
- OCPBUGS-14824: Bump cinder-csi-driver-operator library-go #116
- STOR-1168: Bump common libraries #115
- Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #113
- OCPBUGS-12651: Bump golang.org/x/net@v0.9.0 #114
- Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #112
- Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #111
- OSASINFRA-3000 Prefer a Cinder CSI-specific config map #82
- OCPBUGS-8683: Add management workloads annotations #109
- Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #108
- STOR-1019: Bump to k8s 1.26 libs for OCP 4.13 #107
- STOR-947: support disabling default StorageClass via ClusterCSIDriver #103
- Bug 2106736: Add multiplePVsSameID capability #106
- STOR-1078: Add hostPaths necessary for SELinux mounts #105
- Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #101
- OCPBUGS-4347: set TLS cipher suites in Kube RBAC sidecars #100
- Bug OCPBUGS-2845: Add SecretHashAnnotation to node service #96
- Full changelog
- STOR-1019: Bump to k8s 1.26 libs for OCP 4.13 #113
- STOR-947: support disabling default StorageClass via ClusterCSIDriver #111
- Grant volumesnapshotcontents patch permissions to operator too #112
- Updating ose-cluster-ovirt-csi-operator images to be consistent with ART #110
- OCPBUGS-4347: set TLS cipher suites in Kube RBAC sidecars #109
- Full changelog
- Fix swapped CPU socket and thread mapping #172
- Updating ose-ovirt-machine-controllers images to be consistent with ART #171
- Full changelog
- OCPBUGS-12950: Updated net dependencies #31
- OCPBUGS-6454: update net deps #23
- Update OWNERS to Multi-Arch component #22
- Rebase to upstream v8 #21
- Updating ose-powervs-block-csi-driver images to be consistent with ART #19
- Rebase with upstream kubernetes-sigs/ibm-powervs-block-csi-driver. #20
- Rebase with upstream kubernetes-sigs/ibm-powervs-block-csi-driver. #16
- Full changelog
- OCPBUGS-12656: Updated net dependencies #27
- Adding storage team to OWNERS so they can perform lib-go updates. #22
- add proxy to node-update-controller #18
- OCPBUGS-6455: updating net deps #15
- Update OWNERS to Multi-Arch component #14
- Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #12
- Updated operator folder and deployment name in the readme file #11
- Full changelog
- OCPBUGS-6457: Update dependencies to Kube 1.26 #38
- Update OWNERS to Multi-Arch component #37
- Updating ose-powervs-machine-controllers images to be consistent with ART #36
- Full changelog
- Bump openshift/prom-label-proxy to v0.6.0 #352
- Updating prom-label-proxy images to be consistent with ART #351
- Full changelog
- OCPBUGS-12508: go.mod: update golang.org/x/net to v0.7.0 #161
- Bump openshift/prometheus to v2.42.0 #154
- Bump openshift/prometheus to v2.41.0 #153
- Bump openshift/prometheus to v2.40.7 #152
- Bump openshift/prometheus to v2.40.6 #151
- Bump openshift/prometheus to v2.40.5 #150
- OCPBUGS-4273: Bump openshift/prometheus to v2.40.4 #148
- OCPBUGS-2873: fix certificate reloads after rotation #145
- Updating golang-github-prometheus-prometheus images to be consistent with ART #147
- Full changelog
- Bump openshift/prometheus-alertmanager to v0.25.0 #67
- Updating golang-github-prometheus-alertmanager images to be consistent with ART #65
- Full changelog
- OCPBUGS-6055: [bot] Bump openshift/prometheus-operator to v0.63.0 #216
- Bump openshift/prometheus-operator to v0.62.0 #215
- Updating prometheus-operator-admission-webhook images to be consistent with ART #214
- Updating prometheus-config-reloader images to be consistent with ART #213
- Updating prometheus-operator images to be consistent with ART #212
- OCPBUGS-2778: [bot] Bump openshift/prometheus-operator to v0.61.1 #209
- Full changelog
- OCPBUGS-6311: addressing vulnerability GO-2022-1144 #119
- Bump openshift/node_exporter to v1.5.0 #118
- Updating golang-github-prometheus-node_exporter images to be consistent with ART #117
- build(deps): bump github.com/prometheus/client_model from 0.2.0 to 0.3.0 #114
- build(deps): bump github.com/jsimonetti/rtnetlink from 1.2.2 to 1.2.3 #115
- Full changelog
- NO-JIRA: use
steps:count1h
recording rule #549
- NO-JIRA: add
steps:count1h
recording rule #547
- OSD-25491 & OSD-25492: Comments fix #546
- OSD-25491, OSD-25492: New recording rules averaging CPU consumption for ROSA HCP & ROSA classic clusters #544
- OCPBUGS-39435: Updating telemeter-container image to be consistent with ART for 4.18 #543
- OCPBUGS-33285: Add
metricsclient_http_requests_total
metric #500
- MON-3890: add recording rule acm_capacity_effective_cpu_cores #534
- OCPBUGS-34833: fix issuer check during JWT authentication #536
- OCPBUGS-34431: Updating telemeter-container image to be consistent with ART for 4.17 #533
- OCPBUGS-34039: Updating telemeter-container image to be consistent with ART for 4.17 #532
- RHOBS-1036: Harden integration tests #529
- MON-3819: Update tools go 1.21 #526
- MON-3737: Update binaries to new version #525
- OCPBUGS-30724: CVE-2024-28180 bump go-jose to v3.0.3 #524
- OCPBUGS-30832: bump Go 1.21 #521
- OCPBUGS-30544: CVE-2024-24786 Bump google.golang.org/protobuf to v1.33.0 #516
- MON-3175: README.md: update deprecated link #512
- MON-3715: remove obsolete targets from Makefile #513
- OCPBUGS-24983: Updating telemeter-container image to be consistent with ART #497
- OCPBUGS-24983: Force kill jobs after integration v2 test finish #514
- MON-3715: chore: bump dependencies #511
- RHOBS-995: Simplify cluster:capacity_effective_cpu_cores, add tests #506
- MON-3708: fix test/integration.sh #509
- MON-3669: fix join issue in cluster:capacity_effective_cpu_cores #505
- OCPBUGS-16397: update nutanix filter #504
- MON-3669: Removing newlines from the jsonnet configuration for the recording rules.libsonnet #503
- MON-3669: Add rule for effective CPU cores for subscription usage purposes #501
- RHOBS-956: Rename subscription_labels to ocm_subscription #495
- OCPBUGS-22744: go.mod: bump go.opentelemetry.io/contrib/instrumentation/net/http/ote… #493
- rhelemeter: Parse org and cn with regex #492
- rhelemeter: Validation of incoming metrics #491
- add
machine424
and rexagod
to OWNERS #478
- Bump golang 1.20 #490
- OCPBUGS-21636: Bump golang.org/x/net to v0.17.0 #483
- Server: Add support for shipping traces to an otel collector #482
- rhelemeter: support client info file in jsonnet #481
- OCPBUGS-19248: Updating telemeter images to be consistent with ART #480
- Fix: handle authorization server 403 responses #479
- RHOBS-870: Improve logging #477
- RHOBS-855: rhelemeter: Read client info/data from request #476
- OCPBUGS-16397: Nutanix OCP cluster telemetry data “host_type” shows “virt-unknown” #474
- chore: bump github.com/prometheus/prometheus to v0.45.0 #475
- : fix mtls secret generation #473
- Revert wrong cert name change of #455 #472
- : add secret for external mtls connection #470
- MON-3230: Add TLS auth to telemeter-client #455
- jsonnet: Add config to support rhelemeter #468
- Improve debug roundtripper logs #467
- Fix integration test documentation #461
- Fix path benchmark #466
- Add RHEL POC server #465
- OCPBUGS-12345: tools: update to golangci-lint v1.51 #464
- OCPBUGS-12678: Update golang.org/x/net to lastest version #462
- add thibaultmg in OWNERS file #459
- Update OWNERS #456
- Use receive handler logger #450
- OCPBUGS-10169: Updating telemeter images to be consistent with ART #452
- Filter noisy logs from TCP probes #453
- Add
douglascamata
as reviewer and approver #454
- OCPBUGS-6962: Add ‘agent-installer’ value to ‘install_type’ label #447
- OCPBUGS-6477: Upgrade go version and dependencies #448
- server: Ensure logging level is flag is respected #449
- Add ‘hypershift’ value to ‘install_type’ label #437
- Replace ‘hypershift-unknown’ with ‘unknown’ #438
- Fix receive whitelist logic #445
- Bump snappy version and add debug logs #444
- Add metrics for telemeter receive path #443
- Log faulty tokens #441
- pkg/receive: Sanitize metric labels #440
- Updating telemeter images to be consistent with ART #439
- Add Daniel Mellado to OWNERS #436
- Add rules for cluster vCPU-hours #435
- Full changelog
- OCPBUGS-14342: Increase timeout in sysctl allowlist test #27956
- OCPBUGS-13840: Add missing error check in sysctl allowlist test #27929
- OCPBUGS-14127: Move from registry.centos.org to quay.io #27948
- OCPBUGS-12700: update-etcd-scaling-test #27892
- CCO-367: Allow CCO to be Upgradeable=False when credentialsMode=Manual #27895
- OCPBUGS-11449: [release-4.13] Allow cluster daemonsets to use maxSurge #27859
- OCPBUGS-12878: [release-4.13] Add (optional) dual-stack tests to the CNI certification test suite #27877
- OCPBUGS-12271: test/extended: cpu-partitioning: skip cluster infrastructure for Hypershift #27885
- Revert “TRT-889: Temp flake all azure disruption” #27870
- OCPBUGS-11307: Add test for Egress Firewall node selector #27845
- add specific test for failing cgroups path #27855
- OCPBUGS-11335: fix: add namespace annotation helper for egress cni test #27848
- OCPBUGS-11315: Increasing limits for Nodes OSUpdateStaged time test #27847
- OCPBUGS-11295: e2e: Config v1 client shim for static configuration manifests with read-only operations #27840
- OCPBUGS-11146: DisableSC test should ignore in-tree storage classes #27831
- OCPBUGS-10968: fix: add poll to get deployment status and avoid false positive #27825
- 4.13 disruption/alert data update #27813
- OCPBUGS-10662: Add cpu partitioning tests #27812
- OCPBUGS-8488: Realtime Kernel Tests #27778
- TRT-910: Temporarily flake ALL P99 disruption tests in 4.13 #27810
- OCPBUGS-9913: add test for UnhealthyPodEvictionPolicy for PDBs #27785
- OCPBUGS-8412: Bump(openshift/kubernetes): to get fix for resizing flake #27792
- OCPBUGS-9915: Temp flake all azure disruption #27786
- OCPBUGS-8742: Revert “Switch to readyz path for health probes on Azure” #27784
- OCPBUGS-8401: Bump to 1.26.2 #27769
- OSASINFRA-3109: networking: add a test for control plane LB #27748
- Add additional comments with findings from k8s 1.26 bump #27728
- OCPBUGS-8092: mark volume expansion test as Flaky #27767
- Revert “Add vlan/macvlan/ipvlan incontainer master tests” #27766
- OCPBUGS-7519: Revert Skip nfs tests temporarilly #27762
- TRT-800: Collect variant data for risk analysis #27731
- Add tap plugin test #27737
- Port alert backstop test to invariant, allow running alert/disruption invariants locally for developers #27724
- Add vlan/macvlan/ipvlan incontainer master tests #27700
- STOR-1077: promote CSIInlineVolumeAdmission feature gate to GA #27713
- move disruption locators to monitorapi #27760
- Switch to readyz path for health probes on Azure #27753
- Fix defunct owners file in test/extended/util/annotate #27750
- OCPBUGS-7833: Rework no optional capabilities rules #27745
- OCPVE-278: fix: multi build error, only add rt-tests for x86 #27749
- Restore alert refactor with fix for disruption tests all being skipped #27742
- OCPBUGS-7519: Skip nfs tests temporarilly #27747
- OCPVE-278: feat: add rt tests package to openshift-tests #27740
- OCPBUGS-7616: Revert Revert “bump(k8s): 1.26” #27738
- Revert “bump(k8s): 1.26” #27736
- test/extended/authorization/rbac: Condition console RBAC on ‘Console’ capability #27681
- Revert “Alert Testing on new Namespace and Level” #27734
- OCPBUGS-7488: test flake: should not reconcile SC when state is Unmanaged #27726
- Revert “perform build csi volume test on GA clusters” #27730
- OCPBUGS-1125: remove reference to old guard pods #27727
- bump(k8s): 1.26 #27694
- Do not bail on producing artifacts when nodes are dead #27729
- audit inspection #27687
- Allow baremetal tests to run on Azure platform #27573
- OCPBUGS-6902: Wait for DNS DS pods to be ready #27715
- Chart CI cluster DNS problems in different color from disruption #27719
- Add pathological events into spyglass charts #27649
- BUILD-407: perform build csi volume test on GA clusters #27720
- Kubevirt network connectivity tests #27456
- TRT-819: Add check for parse signature error #27705
- Allow baremetal tests to run on GCP platform #27618
- Add PDB to resource watch #27721
- replace centos with ubi8 in build test dockerfile #27718
- Add external disruption sampling in openshift test #27717
- STOR-950: Add CI job for skipping StorageClass creation #27704
- BUILD-407: stage one of two of migrating shared resource from tech preview to GA #27708
- Ensure NoColor for ginkgo in disruption/chamosmoney suite #27709
- Alert Testing on new Namespace and Level #27710
- STOR-1066: add e2e tests for CSIInlineVolumeAdmission plugin #27682
- OCPBUGS-3923: adjust watch budget for monitoring components #27623
- make supplemental groups test working again #27664
- AUTH-337: PSa: add test for SCC-mutated PodSpec extraction #27632
- TRT-813: Disabling disruption fallback for upgrades #27701
- bump timeout #27695
- OCPBUGS-6503: upgrade/adminack: simplify polling and unblock “guaranteed” post-upgrade check #27678
- Update S2i image tests for dotnet3.1 EOL #27698
- extended: security: do not explicitly set api audience on token request #27697
- Changes for NodeTuning cluster capability #27657
- Skip the oc whoami –show-console test when the console capability is disabled #27679
- Update etcd scaling test for CPMS supported platforms #27497
- TRT-803: FIxing test name #27688
- Automated - Update synthetic test data #27676
- Use ingress-canary route for testing instead of console since the console might be disabled #27680
- ignore more repeated TopologyAwareHintsDisabled events #27672
- Add result tag to the end of first line of an event message #27656
- Automated - Update synthetic test data #27658
- USHIFT-720: skip server-side apply for rangeallocations #27619
- ignore repeated TopologyAwareHintsDisabled events #27666
- Update annotated rules for router tests #27662
- Fix nil pointer dereference for createDNSPod. #27663
- Revert “Remove dependency on some router tests on config.openshift.io api group” #27661
- Don’t emit failure junit testcase when a retry is skipped #27652
- OCPBUGS-5506: DNS pod to be created on master node #27650
- upgrade/adminack: guarantee one admin ack check post-upgrade #27645
- Separate mcd error alert #27648
- do not check for DeploymentConfig routers in router tests #27642
- WRKLDS-605: Remove dependency on some router tests on config.openshift.io api group #27643
- Fix missing disruption data again. #27651
- Add result key value to each topological event test output line #27641
- fix tech preview test #27639
- Fix missing disruption uploads. #27636
- Update CVO test ownership: -Jack and Vadim, +Petr #27646
- Automated - Update synthetic test data #27626
- Add Event intervals for Startup Probe failures #27612
- Use cluster network MTU for bond interfaces #27631
- Use create token instead serviceaccounts token command #27629
- Fix intervalcreation incorrect year unit test bug #27630
- Update ETCD storage data for k8s 1.26 #27622
- Filter out dropped targets to minimize the size of target api result #27594
- NE-1068: Add test using chaos plugin to detect local DNS endpoint preference. #27511
- OpenStack: Skip in-tree cinder provisioner tests #27613
- Automated - Update synthetic test data #27614
- Test failures that flaked on retry remain counted as failures #27602
- Remove ambiguity when checking for api resources existence #27583
- OCPBUGS-4731: oc status: clean job resource to prevent leaks #27608
- Add tests for oc scc-subject-review and scc-review commands #27572
- TRT-703: Fix upgrade junit results not present in risk analysis #27600
- Updating openshift-enterprise-tests images to be consistent with ART #27607
- remove special cases for priority classes in the payload #27606
- Automated - Update synthetic test data #27601
- OCPBUGS-4550: Bump api-requests for console-operator on vsphere #27605
- run resourcewatch fixes #27596
- OCPBUGS-4502: Unskip service session affinity tests #27597
- Automated - Update synthetic test data #27587
- Add trozet to networking approvers #27395
- Separate out “startupProbe failed” messages from pathological events test #27590
- OCPBUGS-4190: 1sec #27574
- USHIFT-646: ushift: Graceful return to disable telemetry #27578
- Round the ratio for excessive watch requests test #27592
- OCPVE-112: feat: support higher threshold for connection refused on sno #27586
- Allow baremetal tests to run on AWS platform #27569
- USHIFT-644: Skip sig-cloud-provider tests #27577
- Remove redundant messages that might contain non-xml charactor #27582
- USHIFT-647: ushift: fix loop variable capture in sig-cli #27579
- USHIFT-658: ushift: skip networking bond interface tests #27584
- TRT-662: include test count totals for analysis #27585
- OCPBUGS-2991: Bump openshift/kubernetes to latest master v2 #27580
- TRT-691: use duplicateEventThreshold for ProbeTests #27562
- Automated - Update synthetic test data #27543
- Add separate tests for QPS exceeded and manifest unknown #27542
- Test tuning cni whitelist update #27447
- Introduce timeout for sippy risk analysis; add retries with backoff; add dated logging #27564
- Remove unused cmd tests #27495
- Fix risk analysis html to link to correct release and show bug keys #27568
- Skip image-registry redirect test when non-permanent credentials used on GCP. #27556
- Add Kuryr exception to “pods should successfully create sandboxes” test #27435
- Bug 2093339: Reenable data source test #27534
- Flake and improve alert tests #27559
- Trim stdout and stderr to the last 4K bytes to keep log size manageable #27560
- OCPBUGS-3633: Fix flake reporting for certain tests. #27553
- Nginx 1.18 images will reach EOL in November 2022 #27551
- make command errors easier to read #27544
- OCPBUGS-3633: Revert “Merge pull request #27533 from dgoodwin/merge-alert-backstops” #27547
- Replace CreateProject with SetupProject #27271
- cosmetic fix for bad disruption substitution #27510
- Separate out more tests from ‘events should not repeat pathologically’ test #27539
- OCPBUGSM-35025: reenable unidling ci tests #27538
- USHIFT-345, USHIFT-348, USHIFT-355: API Groups for cli, arch & network #27540
- Full changelog
Source code for this page located on github