Back to index
4.14.0-0.okd-scos-2023-08-17-022029 Download installer and client with:
oc adm release extract --tools quay.io/okd/scos-release:4.14.0-0.okd-scos-2023-08-17-022029 No tests for this release
Upgrades from:
Upgrades to:
Loading changelog, this may take a while ...
Created: 2023-08-17 14:28:27 +0000 UTC
Image Digest: sha256:5c3ae7d3b45045d76d3effa0756b86fb7a0a320dcba206d6b219a6e90008c1c2
Release 4.14.0-0.okd-scos-2023-08-17-022029 was created from registry.ci.openshift.org/origin/release-scos:4.14.0-0.okd-scos-2023-08-17-022029
Components
New images
Rebuilt images without code change
apiserver-network-proxy git 61e198ca sha256:1f127a57537b8a318615f7dcb51e65591204669fa526f83136c13168bbdfcab0
centos-stream-coreos-9 sha256:fabc690500e1bb25f74ea61b6d1714b33706cfc4928c308c7a17899c574e93b8
driver-toolkit git cafed17b sha256:2b40bd7b2226a15709fb3610784b2cf7b997a51868fac96a43bf9bf690a071fe
kubevirt-cloud-controller-manager git 9ab93bad sha256:5c5c2af9f95357b6ff3538f6ab82f721658e58ddffa103ef77156e85ef83b23f
machine-os-content sha256:fabc690500e1bb25f74ea61b6d1714b33706cfc4928c308c7a17899c574e93b8
NO-ISSUE: Bump k8s.io/klog/v2 from 2.70.1 to 2.100.1 (#5428) #5428
MGMT-15356 : Ensure filenames are distinct between openshift and manifest (#5382) #5382
MGMT-15491 : Validate vSphere disk.EnableUUID ignoring cluster platform (#5416) #5416
NO-ISSUE: Extend waiting time to test DB container to be ready (#5425) #5425
Bump OCP versions: 4.10 (#5423) #5423
Bump OCP versions: 4.13, 4.12 (#5421) #5421
OCPBUGS-17415 : Bump golang.org/x/net (#5417) #5417
MGMT-14933 : Validate hosts running in OCI (#5413) #5413
Ensure inspection is disabled on day-2 spoke node BMHs (#5406) #5406
MGMT-15423 : Change the user message from: ‘Host is not compatible with cluster platform %s; either disable this host or choose a compatible cluster platform (%v)’ to ‘Host is not compatible with cluster platform %s; either disable this host or discover a new, compatible host.’ (#5412) #5412
Don’t set detached for BMHs without infraenv label (#5414) #5414
RHTAPBUGS-318 : Fetch tag in RHTAP build (#5333) #5333
MGMT-15424 : parametrize envoy configmap name (#5411) #5411
Bump OCP versions: 4.12 (#5409) #5409
Bump OCP versions: 4.11 (#5407) #5407
MGMT-15335 : Fix missing state when trying to update to not supported platform (#5399) #5399
Bump OCP versions: 4.14 (#5403) #5403
Update RHTAP references (#5387) #5387
MGMT-15389 : add feature flag to enable/disable OKD support (#5400) #5400
MGMT-11949 : MGMT-12278: Update libksba and libxml2 (#5398) #5398
MGMT-15388 : Remove unsupported platforms from the supported-platforms endpoint (#5394) #5394
AGENT-557 : Split register into registerCluster and registerInfraEnv (#5376) #5376
MGMT-15339 : Run network config before NetworkManager (#5375) #5375
MGMT-15128 : Remove control plane machine set so that control-plane-machine-set operator would not go degraded due to placeholder credentials on installation. (#5378) #5378
MGMT-15047 : use installer to deploy on external platform (#5381) #5381
MGMT-15343 : dependabot remove docker (#5392) #5392
Bump OCP versions: 4.13, 4.10 (#5391) #5391
Don’t attempt to contact spoke while unbinding a day2 host (#5383) #5383
Update RHTAP references (#5374) #5374
MGMT-15128 : Remove control plane machine set so that control-plane-machine-set operator would not go degraded due to placeholder credentials on installation. (#5364) #5364
Bump OCP versions: 4.12 (#5384) #5384
MGMT-14793 : Assisted discovery core and root user shell should have (#5373) #5373
MGMT-15215 : Allow setting of UI specific data for a cluster (#5358) #5358
MGMT-15343 : dependabot group updates (#5379) #5379
MGMT-14923 : add OSImageVersion to InfraEnvSpec (#5365) #5365
Bump OCP versions: 4.13 (#5377) #5377
Update RHTAP references (#5370) #5370
OCPBUGS-16077 : Fix DNS validation (#5371) #5371
MGMT-11456 : kube-api should allow user to specify infraenv additional trust bundle (#5357) #5357
Bump OCP versions: 4.11, 4.12 (#5369) #5369
MGMT-15295 : Fixc bug in list manifests (#5366) #5366
MGMT-14015 : Custom manifest feature usage is never turning off (#5363) #5363
MGMT-14491 : Invalid node label returns error 500 instead of 400 (#5362) #5362
Update RHTAP references (#5328) #5328
Bump OCP versions: 4.14 (#5360) #5360
MGMT-15243 : Skip any zero size manifests when applying (#5355) #5355
Bump OCP versions: 4.12 (#5356) #5356
MGMT-14656 : Sort disks by HCTL after the other options (#5354) #5354
No-ISSUE: Revert “MGMT-14634: Ensure that empty manifest may not be added. (#5348)” (#5353) #5348
MGMT-15213 : temporary disable release-domain-name-resolved-correctly validation (#5351) #5351
MGMT-15073 : Cluster reset - only system generated manifests to be deleted (#5338) #5338
MGMT-15070 : Unable to change machine-network with dual stack (#5349) #5349
MGMT-14634 : Ensure that empty manifest may not be added. (#5348) #5348
MGMT-15150 : Use same installer binary for all platform types (#5334) #5334
MGMT-14851 : Update docs for allowing automatedCleaningMode (#5343) #5343
Bump OCP versions: 4.14, 4.12 (#5345) #5345
MGMT-14726 : Ensure that manifest filename does not contain spaces. (#5342) #5342
MGMT-15064 : Update is_external API description (#5336) #5336
Bump OCP versions: 4.10, 4.11 (#5339) #5339
MGMT-14852 : Allow AutomatedCleaningMode to be set by user (#5319) #5319
MGMT-14374 : update day2 master docs (#5335) #5335
MGMT-14620 Only emit succesful host creation message for pre install hosts (#5296) #5296
MGMT-14704 : Provide info on custom/vs non custom manifest in manifest endpoint. (#5278) #5278
MGMT-15114 : remove event for cluster registration failed (#5330) #5330
MGMT-15126 : Add missing incompatible features in some of the feature-support feature (#5327) #5327
MGMT-15107 : Bump version for hacking LSO catalog (#5323) #5323
Create an override annotation for the ironic agent image (#5310) #5310
OCPBUGS-13621 : Fix singular Ingress and API cluster VIPs removal (#5216) #5216
Don’t require key encipherment usage for approving CSRs (#5322) #5322
MGMT-13284 : Check for BMH CRD before creating controller (#5284) #5284
MGMT-14937 : Deprecate user_managed_networking attribute (#5317) #5317
Bump OCP versions: 4.14 (#5320) #5320
Bump OCP versions: 4.13, 4.10, 4.12 (#5316) #5316
NO-ISSUE: parametrize template to enable switching secrets (#5313) #5313
MGMT-14240 : Specify connect-timeout on curl (#5314) #5314
MGMT-15034 : Fix patch of infrastructure CR with external platform (#5312) #5312
MGMT-14979 : add sasl/scraml auth method for kafka notifications (#5299) #5299
MGMT-15025 : Forbid register Z architecture cluster with OCI platform (#5309) #5309
MGMT-15015 Provider IsHostSupported panic if platform is not found (#5306) #5306
OCPBUGS-13738 enforce additional ntp sources added into chrony (#5295) #5295
MGMT-14992 : Fix Minimal ISO set as default in s390x (#5302) #5302
MGMT-14631 : Removing leftover of support for openshift 4.8 (#5301) #5301
Bump OCP versions: 4.14, 4.11 (#5300) #5300
MGMT-14973 : Fix misleading logs showing wrong platform and user_managed_networking combination (#5298) #5298
MGMT-14975 : Update MCE operator installation to use stable-2.3 channel (#5297) #5297
MGMT-14769 : Enable upgrade agent by default (#5276) #5276
MGMT-14165 : AgentClusterInstall Webhooks improvements and fixes (#5275) #5275
Bump OCP versions: 4.13, 4.12 (#5293) #5293
MGMT-14730 : Validate that manifest file size does not exceed 1MB (#5281) #5281
MGMT-14883 : Fix feature-support validation fail to validate openshift version (#5290) #5290
MGMT-14904 : fix error code for ignition size validation (#5291) #5291
MGMT-14631 : Remove support for openshift 4.8 (#5221) #5221
Add tls config for the service monitor (#5282) #5282
Bump OCP versions: 4.12, 4.10 (#5288) #5288
Red Hat Trusted App Pipeline update assisted-service-q2vh (#5270) #5270
Bump OCP versions: 4.13 (#5280) #5280
OCPBUGS-7076 : Copy Day2 BMH if Agent is installing (#5250) #5250
OCPBUGS-14405 : Avoid panic if pull secret contains non-string (#5267) #5267
MGMT-13746 : validate discovery ignition size (#5273) #5273
MGMT-14830 : Enable TechPreviewNoUpgrade when platform is external (#5279) #5279
MGMT-13431 : patching bug - ODF storage class not recognizing all device sets (#5268) #5268
MGMT-14803 : Fix cluster update won’t fail on incompatible OLM operator dependency (#5264) #5264
MGMT-14600 : Prevent installing dual-stack vSphere on OCP version smaller than 4.13 (#5271) #5271
MGMT-14750 : Allow FC, ECKD, FBA drive types on s390x (#5269) #5269
MGMT-12186 : Add MCE operator plugin (#5203) #5203
Bump OCP versions: 4.11, 4.12 (#5265) #5265
MGMT-14781 : Make LSO operator to support all CPU architectures (#5262) #5262
Bump OCP versions: 4.13 (#5261) #5261
MGMT-14582 : Set OCI platform behind a capability (#5249) #5249
MGMT-13997 : Issues when using multiple bonds with CIM Assisted Installer (#5233) #5233
MGMT-13685 : Make sure ingress and api vip are not broadcast address. (#5256) #5256
MGMT-14723 : Fix randomly failing subsystem test (#5259) #5259
MGMT-14649 : Add feature support for OCI platform (#5244) #5244
NO-ISSUE: fixed misleading error message, the order of the host status was reverse (#5257) #5257
MGMT-14306 : Update host role validation to accept AutoAssign in Day2 (#5247) #5247
Delete the spoke BMH before removing the finalizer (#5239) #5239
MGMT-14723 : Remove duplicate operator cpu architecture validation (#5254) #5254
MGMT-14734 : Fix failed to update Nutanix provider cluster when on multi architecture (#5253) #5253
MGMT-14728 : Escape the escape char () (#5252) #5252
Bump OCP versions: 4.14 (#5251) #5251
MGMT-14721 : Get icsp-file from registries.conf for oc extract command (#5245) #5245
Bump OCP versions: 4.10 (#5248) #5248
Docs fix: ensure kubeconfig secret is created with a kubeconfig key. (#5246) #5246
MGMT-13938 : support external platform (#5143) #5143
Bump OCP versions: 4.11, 4.12 (#5243) #5243
Full changelog
MGMT-15235 : Compile with CGO_ENABLED=1 for amd64 (#699) #699
Revert “MGMT-15235: Compile with CGO_ENABLED=1 for FIPS (#683)” (#693) #683
OCPBUGS-17252 : Bump golang.org/x/net/html (#695) #695
Updating ose-agent-installer-orchestrator images to be consistent with ART (#652) #652
MGMT-15343 : dependabot group updates (#692) #692
MGMT-15344 : Assisted-controller should not timeout on waiting cvo by itself (#688) #688
MGMT-15235 : Compile with CGO_ENABLED=1 for FIPS (#683) #683
Full changelog
MGMT-15235 : Allow setting CGO_ENABLED flag (#589) #589
MGMT-15235 : Compile with CGO_ENABLED=1 for amd64 (#588) #588
Revert “MGMT-15235: Compile with CGO_ENABLED=1 for FIPS (#569)” (#582) #569
OCPBUGS-17251 : Bumping golang.org/x/net (#586) #586
MGMT-14933 : Detect if the host in running in OCI (#585) #585
MGMT-15359 : support appliance multipath virtual device (#584) #584
MGMT-13111 : Freeze on 404 Not Found
(#583) #583
MGMT-15343 : dependabot remove docker (#581) #581
MGMT-15343 : dependabot group updates (#579) #579
Updating ose-agent-installer-node-agent images to be consistent with ART (#575) #575
OCPBUGS-16373 : Ignore arping errors on RHEL 9 (#576) #576
NO-ISSUE: Bump github.com/coreos/ignition/v2 from 2.16.0 to 2.16.2 (#574) #574
NO-ISSUE: Bump github.com/PuerkitoBio/rehttp from 1.1.0 to 1.2.0 (#568) #568
MGMT-15235 : Compile with CGO_ENABLED=1 for FIPS (#569) #569
NO-ISSUE: Bump golang.org/x/sys from 0.9.0 to 0.10.0 (#566) #566
NO-ISSUE: Bump github.com/coreos/ignition/v2 from 2.15.0 to 2.16.0 (#564) #564
AGENT-594 : remove agent based installer code (#563) #563
NO-ISSUE: Bump golang.org/x/sync from 0.2.0 to 0.3.0 (#561) #561
MGMT-14540 : Mark Appliance disk(s) with a partition name prefix ‘agent’ as eligible (#554) #554
OCPBUGS-14848 : Filter out hidden devices (#558) #558
NO-ISSUE: Bump github.com/onsi/gomega from 1.27.7 to 1.27.8 (#555) #555
NO-ISSUE: Bump github.com/go-openapi/swag from 0.22.3 to 0.22.4 (#556) #556
MGMT-13009 : Auto rename host with VLAN (#553) #553
NO-ISSUE: Bump github.com/itchyny/gojq from 0.12.12 to 0.12.13 (#552) #552
NO-ISSUE: Bump github.com/stretchr/testify from 1.8.3 to 1.8.4 (#550) #550
MGMT-14751 : Detect DASD disks (s390x) (#549) #549
NO-ISSUE: Bump github.com/sirupsen/logrus from 1.9.0 to 1.9.2 (#545) #545
Full changelog
STOR-1434 : Restart controller Pods if metrics-serving-cert changed #68
OCPBUGS-16654 : Revert revert “STOR-1065: Rework sidecar bindings to b… #64
OCPBUGS-16783 : Chore: Update OWNERS #65
OCPBUGS-16498 : Bump library-go to remove dependency on goproxy #66
Revert “STOR-1065: Rework sidecar bindings to bind common ClusterRoles” #63
STOR-1065 : Rework sidecar bindings to bind common ClusterRoles #60
CCO-325 : Unrevert “CCO-325: add support for workload identity” #62
STOR-989 : Remove SC and manifest file for NFS backend #58
OCPBUGS-14824 : Bump azure-file-csi-driver-operator library-go #61
Revert “CCO-325: add support for workload identity” #59
CCO-325 : add support for workload identity #54
CCO-325 : Mount serviceaccount token into csi-driver container #53
STOR-1168 : Bump common libraries #57
Full changelog
MGMT-13713 : Add confidential VM support #54
Fix termination tests randomly timing out #68
Set upstream labels and fix capability for the arch-aware scale from 0 in Azure #66
CCO-346 : Add support for Azure workload identity tokens #55
MIXEDARCH-257 : Handle the kubernetes.io/architecture label based on the Azure VM Size #65
OCPBUGS-10762 : Machine should be Failed if Machine has a Failed state on Azure #56
OCPCLOUD-2057 : Bump to Kubernetes 1.27 deps #62
Full changelog
Update openshift/api #1525
OTA-559 : pkg/cli/admin/release/extract: Add –included and –install-config #1521
Stop using deprecated github.com/docker/docker go APIs #1514
OCPBUGS-16735 : Truncate existing files when writing from inspect #1520
introduce plugin and plugin shadowing tests for oc #1424
pkg/cli/admin/upgrade: Newlines after –allow-upgrade-with-warnings errors #1519
Add profiling functionality and flags in oc #1516
Fix typo in /var/log folder #1517
login: improve usage message for –web option #1513
Bump k8s packages to 1.27.4 #1515
OTA-994 : pkg/cli/admin/release/extract: Centralize manifest extraction #1404
OCPBUGS-16009 : reboot: set ignition version to 3.1 #1499
Add tls-server-name when property exists in kubeconfig #1456
OCPBUGS-15776 : mcs cert: account for environments that use IP directly #1497
OCPNODE-1656 : oc release info: Introduce –idms-file and deprecate –icsp-file #1465
AUTH-355 : Add OAuth2 Authorization Code Grant Flow for login #1402
upgrade distribution No 2 #1495
WRKLDS-700 : bump(k8s) to v1.27.2 #1420
OCPBUGS-15012 : oc image extract: idms-file flag map to IDMSFile field #1464
Correct incorrect command in observe command #1419
Clarify the use of the filter without keep-manifest-list #1414
OCPBUGS-10612 : make registry auth prefence default to podman config locations #1376
handle the error case of node retrieval while waiting for reboot #1482
Fix the output of error prompt #1433
pkg/cli/admin/upgrade: Surface Recommended=Unknown more prominently #1442
pkg/cli/admin/upgrade: Add post-period to space to some error messages #1330
Wait for reboot #1473
tweak output format #1471
OCPNODE-1580 : Add –print-mirror-instructions to oc adm release mirror to allow idms instructions #1341
add reboot-nodes #1468
Trust check #1469
fix directories for consistency #1467
ocpcertificates: add ability to rotate MCS CA/cert #1450
OCPNODE-1656 : oc image extract: Introduce IDMS as alternative source #1426
pernodepod: percent works like this #1463
ocpcertificates: don’t make assumptions on resources not to bring pip… #1462
allow running a command while the kubelet is off #1459
add command to create new bootstrap kubeconfig for kubelet #1458
ocpcertificates: fix handling resources by names explicitly + other cosmetic fixes #1460
tweaks needed for wait #1455
Add a command to remove older trust #1447
create command to create new adminkubeconfig #1452
add a command to copy content to every node #1454
Minor updates to CLI help text #1453
add command for regenerating OCP leaf certs #1443
add a new command to wait for all clusteroperators to go stable #1444
add command to produce an updated CA bundle for trusting the kube-apiserver #1446
add printing for new revisions #1445
add oc adm ocp-certificates regenerate-top-level #1439
OCPBUGS-11652 : Extend adm node-logs to new API #1403
OCPBUGS-12793 : adds a mapping for exposed ports to DockerConfig when manifest listed #1415
OCPBUGS-14340 : Name containers w/‘multi’ when mirroring a multi release image #1423
OCPBUGS-11123 : oc adm groups sync: all groups: print warning before caching #1436
OCPBUGS-11632 : Skip invalid events yamls and continue #1429
OCPBUGS-14082 : Remove closed centos7 registry from newapp unit tests #1430
Full changelog
pkg/aws/actuator: Drop comment which suggested passthrough permission verification #590
CCO-363 : Adding azure identity webhook #559
OCPBUGS-16684 : Set cr.status.provisioned=false on syncErr path #583
OCPBUGS-17049 : update lastSyncGeneration in STS flow sync success #585
Revert “CCO-401: Add azure-workload-identity-webhook to image references.” #588
CCO-401 : Add azure-workload-identity-webhook to image references. #586
CCO-413 : Add dataPermissions to Azure credentials request. #584
CCO-402 : Create Azure AD pod identity webhook config secret manifest in create-all,create-oidc-issuer #573
OCPCLOUD-2012 : ccoctl: Plumb credreq.spec.cloudTokenPath override into Azure secret creation #580
OCPBUGS-16807 : ccoctl azure exit with error when OIDC and installation resource group names are the same #582
OCPCLOUD-2012 : ccoctl: Add –enable-tech-preview arg to azure create-all subcommand. #581
OCPBUGS-16614 : *: stop checking for the STS feature gate #579
Add DOCKER_CMD Makefile var to use podman when found. #577
OCPBUGS-16614 : go.mod: re-vendor openshift/api #578
CCO-233 : Add Azure AD Workload Identity doc. #566
*: use a global codec #576
OCPBUGS-16313 : pkg/operator: correctly fetch CA for AWS minter #575
OCPBUGS-16334 : Clarify updateActuatorConditions & update lastSync #568
OCPBUGS-16313 : manifests: allow list/watch globally on our config configmap #572
CCO-388 : manifests: add cloudcredentials.operator.openshift.io to HCP #571
Revert “manifests: manually amend resources that get laid down by CVO in HCP” #570
OCPBUGS-15365 : manifests: fix rbac #567
OCPBUGS-15906 : ccoctl azure delete to also delete role assignments #564
OCPBUGS-16088 : Adds [default] section header to STS Secrets #565
OCPBUGS-16036 : Set status on CR properly when STS provisioned #562
Revert “Merge pull request #398 from csrwng/exclude_config_ibmcloud” #561
OCPBUGS-15365 : *: use correct clients in the secretannotator #563
OCPBUGS-15365 : *: use a filtered LIST + WATCH on Secrets for AWS STS #545
reconcile status when the clusteroperator changes #560
CCO-353 : ccoctl to create azure custom roles #556
CCO-394 : Do not Add PodIdentityWebhook controller when InfraStatus.ControlPlaneToplogy is External. #547
CCO-366 Add ability to detect AWS STS and behave accordingly #542
Implement ccoctl command to create infrastructure required for Azure workload identity #523
PORTENABLE-526 : operator: use a partial metadata watch for Namespaces #546
manager: filter the cache of configmaps #544
Bump to go 1.20 in go.mod #536
Full changelog
Bump openshift/api to add ValidatingAdmissionPolicy feature gate. #340
OCPVE-626 : bump(openshift/api@master) #341
CFE-689 : Update openshift/api package to latest version #335
OCPBUGS-16614 : go.mod: bump openshift/api #338
OCPBUGS-16614 : go.mod: update openshift/api #334
OCPBUGS-16507 : bump sigs.k8s.io/kube-storage-version-migrator #333
OCPCLOUD-2010 : Remove feature gate for external platform #331
SDN-4024 : Vendor openshift/api to get ANP feature-gate changes #330
Promote privateHostedZoneAWS from Tech Preview to Default #328
Update openshift/api #327
OCPBUGS-13547 : Promote Azure CCM from TPNU to default #307
OCPBUGS-15877 : go upgradeable=false when latencysensitive is used and not corrected #325
Enable feature gate for externalCertificate on Route API #326
stomp the latencysensitive featureset for equivalent default #324
WRKLDS-757 : Sync with openshift/api to drop MatchLabelKeysInPodTopologySpread from TechPreviewNoUpgrade #322
SPLAT-1099 : bump openshift/api for vSphere static IP feature gate and platform spec #323
remove dead flag for file #309
Changes to move to api@2d36f53 #321
OCPBUGS-12767 : Add CustomNoUpgrade CRD versions to payload #320
OCPCLOUD-2010 : Re-vendor api to support external platform #306
Update openshift/api to disable EventedPLEG featuregate in techpreview #317
update openshift/api for types and gates #316
Update github.com/openshift/api to pull in evented pleg and sigstore feature flags #312
Update github.com/openshift/api to pull in feature gates #311
Full changelog
build(deps): bump github.com/stretchr/testify from 1.8.1 to 1.8.4 #877
build(deps): bump the k8s-dependencies group with 1 update #895
IR-363 : Update Azure Credentials Request manifest of the Cluster Image Registry Operator to use new API field for requesting permissions #890
build(deps): bump github.com/prometheus/common from 0.37.0 to 0.44.0 #878
CFE-682 : Add user defined labels to the GCP buckets created #872
CFE-682 : Update openshift/api package to latest version #887
IR-390 : Make a configmap for MCO to consume CAs #880
build(deps): bump github.com/aws/aws-sdk-go from 1.44.291 to 1.44.298 #879
build(deps): bump golang.org/x/net from 0.8.0 to 0.11.0 #871
build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.1.10+incompatible to 2.2.7+incompatible #869
.github/dependabot.yml: group certain dependencies #865
IR-389 : bump aws-sdk-go #860
.github: configure dependabot #861
IR-369 , IR-370 : support Azure workload identity #857
OCPBUGS-12132 : Updating ose-cluster-image-registry-operator images to be consistent with ART #854
Full changelog
Set runtime-config in lockstep with feature-gates, if needed. #1536
bump(api) #1535
OCPBUGS-16511 : bump(*): vendor update #1529
OCPBUGS-16511 : remove dependency on typed prometheus client #1527
OCPBUGS-13635 : make webhook connection failure a warning in log #1526
OCPBUGS-15489 : manifests: add new PrometheusRule for recording rules #1521
certrotation: rotate kube-apiserver-to-kubelet-signer when 80% of validity is over #1523
OCPBUGS-13946 : do not use one second timeout when asserting a webhook connection #1510
OCPBUGS-14008 : Enable “send-retry-after-while-not-ready-once” on SNO #1500
update probes for best practices and consistency #1516
api_performance_dashboard: show apiserver_longrunning_requests metric #1518
allow greater timeout for etcd health check #1517
api_performance_dashboard: show apiserver_request_total instead of apiserver_dropped_requests #1520
OCPBUGS-8404 : pkg/operator/configobserver: check that the serving certificate refer… #1482
OCPBUGS-3986 : dashboard: use recording rules for most metrics #1484
OCPBUGS-14940 : api_performance_dashboard: show apiserver_longrunning_requests metric #1511
OCPBUGS-13946 : degraded_webhook.go x509: certificate signed by unknown authority #1503
OCPBUGS-14323 : Change manifest directory permissions #1505
OCPBUGS-13547 : Remove featureset flag and use only the manifest #1491
OCPBUGS-13303 : pkg/operator/startupmonitor: skip openshift-apiserver readiness check… #1492
OCPBUGS-14038 : Update APIRemovedInNextRelease alerts #1497
Full changelog
Remove certificatesigningrequests/update permission from ovnkubenode #1934
Add rolling update for managed ovnkube-control-plane #1944
IC & openshift + hypershift #1874
OCPBUGS-16019 : prevent creation of multiple cni-sysctl-allowlist-ds pods #1904
OCPBUGS-10765 : make MAXLOGFILES a real variable and work for self-hosted #1931
Multus thick plugin support #1915
OVN-Kubernetes ipsec: create the CSR with a random name #1928
CCO-294 : Switch azure credentials request to use explicit permissions #1922
OVN-Kubernetes: Add status subresource permissions for setting labels and annotations #1896
SDN-3223 : Use encapsulation=true for IBM Cloud #1800
Bug 16136 : change whereabouts ip reconciler exec #1890
Add OpenStack platform to list of allowed dual-stack clusters #1697
OCPBUGS-15945 : Stop using utilruntime.PanicHandlers to handle reconciliation panics #1893
HOSTEDCP-1063 : allow webhooks in hosted clusters to reach multus-admission-controller service #1879
OCPBUGS-15961 : FIPS related CNO changes #1901
OCPBUGS-10765 : Revert “Revert “OCPBUGS-10765: Remove oldest ovn acl log files when f… #1876
ovn-k: Configure dns service namespace and name #1912
OCPBUGS-15544 : Enable multi-external-gateway feature by default for managed and hosted clusters #1887
OCPBUGS-15918 : Skip rendering 0.0.0.0/0 for cluster proxy status #1903
Change rhel7/8 to rhel8/9 #1870
Enable EgressService controller #1848
Edited multus-admission-controller deployment config to not add autom… #1767
OCPBUGS-15794 : fix: add missing annotation for workload partitioning #1866
OCPBUGS-15544 : Add adminpolicybasedexternalroutes rights for ovnkube-node. #1867
Revert “Remove oldest ovn acl log files when file limit exceeded” #1873 #1873
OCPBUGS-10765 : Remove oldest ovn acl log files when file limit exceeded #1868
kube-proxy config overriding updates #1831
OCPBUGS-15282 : Add release version annotation to whereabouts-reconciler #1851
CCO-356 : Add Infrastructures permission to CNCC cluster role #1843
Add multi-networkpolicies support for OVN #1796
Add support for AdminPolicyBasedExternalRoute CRD and controller’s RBAC #1765
OCPBUGS-15138 : Add kubernetes.io/os nodeSelector to wherebouts reconciler DS #1841
OCPBUGS-14988 , SDN-3901 : Rebase to kube 1.27 #1826
CCO-358 : Manifest changes necessary to support Azure Workload Identity #1755
OCPBUGS-14714 : Do not rely on ControlPlaneTopology do determine if running in HyperShift #1835
OCPBUGS-11882 : Added another volume to safe-to-evict-local-volume annotation #1830
OCPBUGS-14833 : Fixes lint issues #1834
OCPBUGS-14384 : Remove nodeSelector for architecture in whereabouts daemonset #1828
OCPBUGS-11882 : Added safe-to-evict annotation to ovnkube-master and multus admission controller components #1822
OCPBUGS-13922 : Revert “Do not set the operator as available before updating the network config” #1818
Full changelog
e2e: irqbalance: improve test troubleshooting (#753) #753
OCPBUGS-16348 : OSLAT latency spikes due to tsc karg setting (#756) #756
Makefile: hack: add helpers to compile testsuites (#751) #751
OCPBUGS-17219 : Render mode should not segfault w/ no matching MCP (#754) #754
Release leader election on manager exit (#745) #745
generate missing files (#752) #752
vendor: bump OCP dependencies 08082023 (#750) #750
OCPBUGS-7980 : e2e:ht-aware: exec on the correct worker node (#729) #729
bump k8s to 1.27.4 (#748) #748
e2e: wait for objects deletion (#749) #749
e2e:wait: return updated pod object explicitly (#744) #744
OCPBUGS-17258 : CVE-2023-3978: golang.org/x/net/html (#747) #747
e2e: remove image parameter from must gather (#743) #743
Update the config.openshift.io/node
object’s cgroupMode
to “v1” (#737) #737
Fix a race in e2e test rollback.go code (#739) #739
e2e:irqbalance: applied condition exists (#727) #727
Improve render error handling (#724) #724
e2e:irqbalance: wait for tuned profile to be ready (#721) #721
pao:status: do not take address of loop var (#720) #720
nto:tuned: remove sched_min_granularity_ns settings (#722) #722
Align TuneD with the latest shipped FDP version (#716) #716
E2E: update cpu load balancing test for latest cgroup related changes (#712) #712
Build gather-sysinfo (#714) #714
e2e: overhaul Performance-Addon-Operator tests (#590) #590
e2e: latency testing: increase the expected threshold (#706) #706
e2e: perf-prof: disable truncating gomega output (#702) #702
Configure OVS for dynamic cpu pinning (#559) #559
OCPVE-382 : fix: add default state for crio config (#700) #700
e2e: devmgr: fine tune kubelet restart test (#701) #701
e2e: RPS: fix expected cpu set (#703) #703
Switch to rslave/HostToContainer volume mount propagation (#692) #692
Do not rollback settings on TuneD exit (#699) #699
e2e: reboot: add kubelet restart test (#697) #697
remove conditional skip (#690) #690
e2e: memorymanager fix: check the hugepage size condition (#693) #693
Use RHEL9 as a base (#665) #665
Expose TuneD socket to host. (#651) #651
E2E: Use appropriate device path for rpsmask test (#691) #691
chore: replace github.com/ghodss/yaml
with sigs.k8s.io/yaml
(#628) #628
test: perfprof: devices: fix default test image (#672) #672
e2e: verify latency tests run with LATENCY_TEST_DELAY>120 (#662) #662
E2E: Add memory manager sanity test case (#573) #573
modify owners (#634) #634
Add minLength restriction to Tuned CR (#689) #689
OCPBUGS-14934 : consistent use of ginkgo flags in Makefile (#682) #682
OCPBUGS-14622 : Do not fail creating cgroups if they exist already (#683) #683
OCPBUGS-14193 : pao e2e: Split e2e PAO update lane to more lanes (#631) #631
OCPBUGS-4194 : rps: use default rps mask kernel API (#650) #650
OCPBUGS-14756 : [test] [e2e] Check ci lanes are executing the right test suites (#679) #679
check ocp version and export CNF_TEST_IMAGE variable with appropriate cluster version (#584) #584
OCPBUGS-5529 : Fix updating numa core siblings map in GetCpuSiblings function (#564) #564
Remove cpu-quota.crio.io: disable annotation (#663) #663
OCPBUGS-14137 : e2e: perfprof: add SNO device recovery test (#653) #653
Full changelog
Merge rukpak updates into main + Required Fixes #88
Add ncdc to OWNERS #89
Temporarily remove from payload #90
Revert “Merge rukpak updates into main” #87
Merge rukpak updates into main #86
Full changelog
ps syncer: add a controller for run-level 0 namespaces #128
Adjust logs per generic troubleshooting #126
OCPBUGS-15568 : Add timeout into cache sync wait to prevent hanging forever #124
OCPBUGS-15568 : Remove debugs logs in workqueuebucket #125
Add more logs for queue operations #122
OCPBUGS-15568 : Handle error if caches are not synced instead silently exit #121
Add ingvagabund to owners #120
Add logs for quota namespace syncing with verbosity level 2 #119
OCPBUGS-13649 : fix ClusterResourceQuotas to work for all api resources including custom resources #115
Full changelog
CNF-9385 : add ImageRegistry capability #950
OCPBUGS-17418 : Handle cache.DeletedFinalStateUnknown #952
docs/user/tasks-*by-number-and-component.svg: Update to 4.13 #949
Dockerfile: bump to 1.19 and use public UBI pullspec #944
pkg/payload: De-noise ‘excluding …’ logs #945
bump api version to add new capability #941
pkg/cvo/metrics: Doc from_version semantics for cluster_version{type=“completed”} #929
Code cleanups for golangci-lint failures #942
OTA-559 : Migrate to (*Manifest).Include(…, overrides) #934
Full changelog
OCPBUGS-17496 : Bridge NAD should set “preserveDefaultVlan”: false #13076
CONSOLE-3126 : Remove paused state since its no longer relevant due to 4.14 changes … #13072
OCPBUGS-17515 : Console UI is broken due to patternfly/react-core version change #13086
OCPBUGS-17504 : Dev console: Remove checkboxes on Alert Details page Silenced By list #13085
OCPBUGS-16717 : Fix name validation regex #13075
OCPBUGS-17410 : Fix that “Delete application” doesn’t work in topology when Pipelines operator is not installed #13074
OCPBUGS-14138 : Console fix #13078
OCPBUGS-15458 : Links for console-dynamic-plugin-sdk markdown docs are not working #13062
OCPBUGS-129 : bump @patternfly/react-core to v4.276.11 to pick up Sel… #13052
OCPBUGS-17234 : change Command Line Tools text #13068
OCPBUGS-17347 : Fix “View alerting rule” action URL #13058
OCPBUGS-15419 : Title on Overview page has changed to “Cluster · Red Hat OpenShift” #12951
OCPBUGS-13387 , OCPBUGS-16693 : Import page create button is disabled due to PAC validation #13046
CONSOLE-3683 : Convert FireMan component in list-page.tsx from class c… #13024
OU-231 : Add jgbernalp and zhuje to OWNERS for monitoring #13069
OCPBUGS-17196 : Fix nad ovn type - annotation and netAttachName #13053
OCPBUGS-16844 : external link icon in resource added
toast notification not linked #13057
OCPBUGS-15310 : Helm Chart installation modal “Documentation” field is always N/A #13032
CONSOLE-3686 : Convert SecretFormWrapper component in create-secret.ts… #13017
OCPBUGS-15008 : update the KnativeServing API version to v1beta1 for global-config extension #13059
CONSOLE-3679 : Convert instantiate-template.tsx from class component t… #12947
CONSOLE-3568 : expose DeleteModal via useDeleteModal hook in @console/shared #12974
CONSOLE-3677 : Convert edit-yaml.jsx from class component to functiona… #12973
CONSOLE-3678 : Convert EventStream component in events.jsx from class … #12989
OCPBUGS-16093 , OCPBUGS-16270 , OCPBUGS-9409 : Creation of GH webhook and attaching it to repo while importing from git using PAC #13021
CONSOLE-3682 : Convert components in cluster-settings folder from clas… #13011
CONSOLE-3676 : Convert app.jsx from class component to functional comp… #12952
OU-175 : Monitoring: Add “Silences” tab to Developer console #12900
OCPBUGS-10884 : propagate mpath device type to request data #13022
OCPBUGS-16656 : Devfile import fails on master branch #13050
OCPBUGS-9355 : Fix translation bug #13049
OCPBUGS-3495 : Add cacheBuster query string when requesting plugin entry scripts #13035
OCPBUGS-16599 : allow creation of v1beta1 APIversion Pipeline in Pipeline builder YAML view #13034
OCPBUGS-9285 : Add note to the console.page/route extension regarding its usage #13044
OCPBUGS-14341 : Check operands deletionTimestamp to disable kebab action menu #13042
ODC-7336 : automation for customization-of-catalog-add-page-form feature file #12934
OCPBUGS-11285 : Dynamic plugin translation support for plurals broken #13028
chore(i18n): update translations: Completed Master Branch - Sprint 238 #12999
OCPBUGS-16433 : Fixes location update issues #13023
CONSOLE-3591 : Remove directory listing for /static/* #13001
CONSOLE-3694 : Convert tile-view-page.jsx from class component to func… #12942
ODC-7334 : Show ConsoleSamples resources in the samples catalog #12970
CONSOLE-3666 : Validate shared modules of dynamic plugins #12881
OCPBUGS-11971 : When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. #13016
OCPBUGS-13808 : Console SDK components should be using GroupVersionKin… #13029
OCPBUGS-14837 , OCPBUGS-16025 : Hide the Duplicate Pipelines Card in the DevConsole Add Page #13007
OCPBUGS-8274 : Fix copy login command regression #13003
CONSOLE-3687 : Convert components in utils folder from class component… #12925
OCPBUGS-11219 : Fix incorrectly nested css rule for print styles #12991
OCPBUGS-11620 : Fix stop PLR option #13020
CONSOLE-3706 : Remove custom history.pushPath alias function #12873
CONSOLE-3431 : Allow building dynamic plugins without any exposed modules #12530
HELM-502 : Bump Helm to 3.12.1 #13014
OCPBUGS-15359 : Enable namespace dropdown selection when all namespace installation mode selected by default and… #12975
OCPBUGS-16174 : Update the VSCode extension link and descriptions on Create Serverless function form #13015
OCPBUGS-13142 : InstallPlan info cannot shown on Subscription tab for … #13012
OCPBUGS-14907 : Fix operator backed catalog page when copied CSVs disabled #12932
CONSOLE-3684 : Convert components in modals folder from class componen… #12941
OCPBUGS-16148 : disable Save if Use existing claim is active and no … #13010
OCPBUGS-16150 : Fix Start last run action in Topology sidepanel #13009
OCPBUGS-15458 : Links for console-dynamic-plugin-sdk markdown docs are not working #12993
OU-218 : Monitoring: Use useResolvedExtensions
instead of useExtensions
#12987
CONSOLE-3680 : Convert row-filter.jsx from class component to function… #12957
OCPBUGS-13808 : Console SDK components should be using GroupVersionKin… #12946
CONSOLE-3685 : Convert components in RBAC folder from class component … #12933
CONSOLE-3611 : User can configure the install of Operators that authenticate using STS #12779
OCPBUGS-9991 : Most of contents are lack of i18n on “Command Line Tools” page #12995
OCPBUGS-15021 : Use FLAGS.CAN_GET_NS to decide whether to show Route details > Metrics tab #12944
ODC-7341 : Show Build output in Shipwright Build list and details page #12972
OCPBUGS-8005 : Fix broken upstream doc link for cluster channel upgrades #12998
OCPBUGS-10884 : add multipath device type to LocalVolumeSet #12723
OCPBUGS-14434 : Running yarn dev
results in the build running on a loop #12990
OCPBUGS-10844 : fix bug where binary secret values are corrupted on edit and add test coverage #12986
OCPBUGS-15011 : Upload JAR file does not work if the Cluster Samples Operator is disabled #12917
OCPBUGS-12891 : check for valid OLM selector in K8sResourceWidget to p… #12887
OCPBUGS-15896 : STS label not valid according to kube #12980
RHSTOR-4533 : added a mutator property for the storage class extension #12886
OCPBUGS-7416 : get Kamelets from the camel-k-operator namespace as well #12710
OCPBUGS-14548 : only show pipelines doc link for downstream #12979
CONSOLE-3565 : Expose annotations modal in dynamic plugins sdk #12843
CONSOLE-3610 : User can filter on STS enabled clusters for Operators that claim support for STS #12778
OCPBUGS-15773 : The upgrade Helm Release tab in OpenShift GUI Developer console is not refreshing with updated values. #12966
ODC-7319 : correcting - missing package tag across gherkin files #12847
ODC-7313 : Run CI tests with non-admin user #12814
OCPBUGS-15427 : Remove access review check for PipelineResource from Pipeline section #12964
ODC-7325 : Improve BuildConfig and Shipwright Build list pages #12910
ODC-7340 : Remove Shipwright Tech Preview badges #12960
OCPBUGS-14548 : update pipelines doc links #12890
OCPBUGS-15572 : Fix bug where the install operator update approval radio button does … #12959
OCPBUGS-14959 : Error for DuplicateClusterRoleBinding and Edit ClusterRoleBinding subject in RHOCP4 Web Console #12939
OCPBUGS-14665 , OCPBUGS-14874 , OCPBUGS-14875 : Helm Chart installation form hangs on create if JSON-schema is using 2019-09 or 2020-20 standard revisions #12929
OU-198 : Revert “Disable broken monitoring-tests” #12943
ODC-7337 : Skip wait for authentication operator to start progressing when the secret already exists #12884
OCPBUGS-497 : frontend: fix kube-apiserver availability query #12928
OCPBUGS-15060 : “Duplicate RoleBinding” leads to “Unsupported value” error #12921
OCPBUGS-7794 : Image pull secret creation form doesn’t re-enable Create button once it is disabled #12609
CONSOLE-3616 : Revert multicluster server flags #12782
OCPBUGS-15299 : Create Serverless Function Form is Broken #12926
OCPBUGS-13120 : Serverless functions UI warning is misleading #12923
ODC-7329 : Subsequent PipelineRuns take initial PipelineRun name into account #12913
CONSOLE-3612 : User is warned when cluster is in STS mode #12777
ODC-7322 : Implement a proxy to hit the Artifacthub.io API end point #12905
MGMT-15023 : Add help text to vCenter cluster field #12912
OCPBUGS-11464 : Availability requirement update is initially disabled … #12918
OCPBUGS-15135 : Make knative routes copyable similar to openshift routes #12908
OCPBUGS-14909 : Disabling web-terminal tests in CI #12892
OCPBUGS-14015 : Create helm release page doesn’t show a YAML editor when schema isn’t available (httpd-imagestreams chart) #12914
CONSOLE-3372 , OCPBUGS-13648 , OCPBUGS-13833 : Console supports installing non-latest Operator versions #12743
OCPBUGS-7036 : Add Git Repository (PAC) doesn’t setup GitLab and Bitbucket configuration correct #12593
chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 231 #12695
OCPBUGS-14354 : e2e: Enable Pipeline tests #12911
OCPBUGS-14915 : Remove entries from the menu that are now added by monitoring-plugin
#12893
ODC-7316 : Add discoverability of the IDE extensions from Create Serverless form #12846
OCPBUGS-14419 : Remove tech preview badge from Pipeline repository pages #12888
ODC-7326 : Align Build, BuildRun and PipelineRun details page #12898
OCPBUGS-14836 : Updated BuildConfig and Shipwright Build lists shows runs from another namespace #12896
OCPBUGS-14890 : Missing ‘View details’ link for several servicemonitors.spec.endpoints fields in YAML sidebar #12895
OCPBUGS-14002 : Correct the alignment of yaml toolbar links #12894
OCPBUGS-14660 : Helm Repository “Edit” button results in 404 #12891
OCPBUGS-14716 : add ROSA branding option #12889
OCPBUGS-13208 : Fix PVC metrics query #12867
OCPBUGS-12897 : Knative Route Details Page should show the URL of the route as it is shown in the Openshift Routes Details page #12853
OCPBUGS-8682 : Fix empty create dropdown on provided APIs page #12819
OCPBUGS-9214 : Create button is disabled in Git Import form when git repo url has hyphens in owner part of the url #12652
OCPBUGS-4496 : Fix Samples/Snippets tab #12642
OCPBUGS-7361 : support JSON schema 06 in the helm install/upgrade form #12644
OU-138 : Move QueryBrowser component to dynamic SDK #12841
OCPBUGS-9063 : Remove frontend validation from legacy operand form gen… #12788
ODC-7275 : Implement invoke serverless functions #12755
OCPBUGS-14964 : Disable broken monitoring-tests #12902
OCPBUGS-11219 : Include print styles to allow printout of full screen and … #12849
ODC-7306 : Show the latest Build status in the Build list view #12809
ODC-7277 : added v1 support for Pipeline #12729
CONSOLE-3660 : Introduce react-router v6 compatibility #12861
OCPBUGS-8274 : Do not request token URL if auth is disabled #12818
OCPBUGS-14668 : visiting Configurations page returns error Cannot read… #12882
OCPBUGS-14602 : selected project was not taking effect when searching … #12880
OCPBUGS-14550 : Use proxy with web socket connection and monitoring d… #12877
CONSOLE-3392 : Implement exact search for more precise result sets and add user prefs setting #12838
ODC-7288 : Add proxy to invoke knative services with a public route #12789
ODC-7320 : Gherkin for customisation of add page and developer catalog through customisation form view #12855
OCPBUGS-14424 : OVN Kubernetes multi-homing #12869
OCPBUGS-14262 : Fix Pipeline metrics page #12863
OCPBUGS-10411 : Edit deployment don’t enable save button if image stream is added #12673
OCPBUGS-14149 : account for single object in status.conditions instead… #12866
OCPBUGS-14352 : E2e tests fails because OpenShift Pipelines operator could not be found #12872
OCPBUGS-9909 : Could not import multiple resources via JSON (while YAML supports this) #12721
ODC-7317 : Update Terminal step of the Guided Tour to indicate that odo CLI is accessible #12848
ODC-7308 : Update test cases of web terminal configuration page #12825
ODC-7283 : Add Web Terminal tab in cluster configuration page #12718
OCPBUGS-6767 : Regression: OpenShift Console no-longer filters SecretList when displaying ServiceAccount #12679
OCPBUGS-13782 : Surface the message from Operator developer #12840
OCPBUGS-12896 : Corrected Labels for resolving the bug related to the Create Route Checkbox #12834
ODC-7315 : Change help texts in initialize Terminal page #12824
OCPBUGS-11668 : Fix kebab actions on Installed Operators page #12822
OCPBUGS-13693 : Fix RTE in bridge. #12817
OCPBUGS-11256 : Topology UI doesn’t recognize Serverless Rust function for proper UI icon #12816
OCPBUGS-11996 : Fixed Make Serverless Form Error #12815
OCPBUGS-13257 : propagate labels to pipeline resources #12808
MGMT-14527 : Add vSphere cluster field. #12806
OCPBUGS-12783 : Remove “Action” type from OLM descriptor readme #12800
CONSOLE-3623 : Add X-CSRF token to console request headers #12719
OCPBUGS-5453 : Add Pipeline metrics unsupported empty page #12435
OCPBUGS-1829 : use service port name instead targetPort in the Pipeline Event listener route #12148
CONSOLE-2501 : Upgrade TypeScript version to 4.5 #12821
Full changelog
OCPBUGS-17681 : Default CNI binaries to RHEL 8 #116
Updating ose-containernetworking-plugins images to be consistent with ART #108
Updating ose-containernetworking-plugins images to be consistent with ART #107
Add rhel9 binary #106
OCPBUGS-14095 : Sync with upstream version v1.3.0 #98
Full changelog
Revert “[OCPNODE-1258] Support both icsp and idms” #374
Support both icsp and idms #346
IR-371 : Bump docker distribution (again) #372
TRT-1092 : Revert “Merge pull request #370 from flavianmissi/bump-docker-distrib… #371
IR-371 : upgrade docker distribution #370
Full changelog
UPSTREAM: 118280: Set all PSa labels in tests #1663
OCPBUGS-17119 : UPSTREAM: <drop>: bump apiserver-library-go for updated required-scc errors #1661
OCPBUGS-15726 : UPSTREAM: <carry>: merge v3 openapi discovery and specs for special groups #1654
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #1660
Update to Kubernetes 1.27.4 #1653
OCPBUGS-15726 : UPSTREAM: 118879: make apiservices.apiregistration.k8s.io discoverabl… #1630
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #1645
OCPBUGS-15726 : UPSTREAM: 118881: fix openapi/v3 non local apiservices aggregation #1629
UPSTREAM: <drop>: hack/update-vendor.sh #1634
UPSTREAM: 119107: Stop using deprecated API #1624
OCPBUGS-13392 : UPSTREAM: 118915: remove legacy NetworkPolicy tests #1623
UPSTREAM: <drop>: update openshift/api,openshift/apiserver-library-go #1621
UPSTREAM: <carry>: when only this kube-apiserver can fulfill the kube… #1616
Update to Kubernetes 1.27.3 #1609
UPSTREAM: <carry>: STOR-1270: Admission plugin to deny deletion of storages.operator.openshift.io #1550
OCPBUGS-7181 : UPSTREAM: <drop>: bump apiserver-library-go #1605
STOR-1263 : Add csimock tests #1595
OCPBUGS-4053 : UPSTREAM: 118383: bump cadvisor for upstream patch 3301 #1594
Update test wrapper to match new k8s #1584
STOR-1263 : Bump to k8s 1.27.2 #1583
cherry-pick
: #117785 from k/k
- disable external IPs on e2e net tests #1581
UPSTREAM: 117893: When expecting pods count only active ones #1577
Full changelog
Revert “HOSTEDCP-1001: Image registryOverride included in the image metadata extraction flow” #2908
OCPBUGS-16076 : Validate HostedCluster name against RFC1123 in CLI #2906
OCPBUGS-15331 , OCPBUGS-16049 : Enable AdvertiseAddress dual stack and IPv6 support and added the changes to be included in the certificates #2779
HOSTEDCP-1081 : Perform etcd recovery when etcd member data is lost #2900
SDN-4057 : Pass ControlPlane image to OVN #2896
test: e2e: remove SingleReplica etcd chaos test #2901
Allow overriding pod security admission label #2886
HOSTEDCP-1146 : cpo: use CPO spec container image if it is a sha256 reference #2899
HOSTEDCP-1022 : Set Arch to amd64 #2897
Re-introducing defaulting webhook for self managed HCP #2892
fix-CNV-30260: KubeVirt: fix failed conformance test #2891
OCPBUGS-16298 : Prevent the kube-apiserver from connecting to the managment kas #2888
HOSTEDCP-1001 : Image registryOverride included in the image metadata extraction flow #2820
HOSTEDCP-1046 , HOSTEDCP-1102 : Follow-on Items #2847
Revert “[HOSTEDCP-1041] Defaulting webhook for self managed HCP” #2889
OCPBUGS-17446 : Set advertise-address in HCP etcd to resolvable name #2884
Defaulting webhook for self managed HCP #2864
STOR-1432 : cso: add envvars for CSI driver controller images #2882
HOSTEDCP-1025 : Add HCP CLI Command to Create a NodePool on AWS #2852
SDN-4042 : Increase upgrade rollout timers #2881
skip olm-collect-profiles in EnsureComponentsHaveNeedManagementKASAccessLabel #2874
HOSTEDCP-1064 : Add egress policy for private-router #2792
HOSTEDCP-1121 : Ensure SG reconciliation for aws endpoint #2872
chore(deps): update rhtap references #2865
HOSTEDCP-1065 : add ControlPlaneImage API for provider-side HCP updates #2848
HOSTEDCP-1063 : Disallow webhooks URLs targeting control plane services #2775
OCPBUGS-17374 : Fast specific dockerignore #2879
Kubevirt how-to docs updates #2875
Fix nodepool upgrade docs link #2880
OCPBUGS-17171 : Update OLM catalog image tags #2877
HOSTEDCP-1029 : Add HCP CLI Command to Destroy a Cluster on AWS #2853
Add workload management annotation to kubevirt-csi daemonset #2840
WRKLDS-730 : use default /healthz path for readiness probe in OCM and RCM #2873
Add api and cli validation for kubevirt volume mode #2862
HOSTEDCP-1079 : RHTAP HO Containerfile #2857
OCPBUGS-16770 : add need-management-kas-access label to olm-collect-profiles pods #2854
MULTIARCH-3684 : PowerVS - Upgrade capi to use v1beta2 APIs #2831
HOSTEDCP-1046 : Add ImageDigestMirrorSet to Config API comment #2868
MULTIARCH-3683 : Add dev flags in destroy cluster powervs command #2764
kubevirt: Reconcile EgressFirewall only for ovn-k #2849
HOSTEDCP-1046 : Add IDMS to the list of valid config manifests #2837
OCPBUGS-17059 : Add volume mode to kubevirt root volume api #2860
Update RHTAP references (main) #2832
OCPBUGS-16809 : Configured IgnitionProxy to support IPv4 and IPv6 #2850
OCPBUGS-14163 : Fixed ETCD to work in Ipv6 and Dual stack envs #2846
HOSTEDCP-1112 : Add config to set creation frequency of RHTAP PRs #2838
HOSTEDCP-1020 : Remove name as a persistent flag required field #2836
OCPBUGS-16232 : skip z-stream version check when upgrade is forced #2823
OCPBUGS-16033 : ClusterNetwork’s HostPrefix validation for dual stack #2795
OCPBUGS-14783 : Fix NetworkPolicy to work over IPv4 and IPv6 #2704
Revert “HOSTEDCP-710: Make ImageContentSource immutable” #2829
Update RHTAP references (main) #2814
HOSTEDCP-1062 : Make CAPI pod selector backward compatible #2825
HOSTEDCP-1093 : Add default flags to HCP create cluster CLI cmd #2802
Revert “HOSTEDCP-1094: e2e autoscaler balancing similar node groups” #2828
HOSTEDCP-1090 : Use statically configured haproxy for router #2778
HOSTEDCP-1046 : Allow HCP Specification to Support ICSP & IDMS #2720
HOSTEDCP-710 : Make ImageContentSource immutable #2815
OCPBUGS-11835 : Add missing probes to two services #2430
HOSTEDCP-1094 : e2e autoscaler balancing similar node groups #2808
OCPBUGS-16113 : unshare ignition-server reconciliation between HO and CPO #2817
OCPBUGS-11939 : Fix additional issues with OCPBUGS-11939 #2804
OCPBUGS-16135 : fix deletion bug when hostedzone is already deleted #2811
OCPBUGS-14862 Improve clarity around hypershift operator permissions #2782
HOSTEDCP-1062 : Management kas policy #2796
Revert “HOSTEDCP-1062: Add management cluster KAS network policy” #2793
HOSTEDCP-1020 : Add pullSecret & NodePool replica flags to HCP CLI #2774
HOSTEDCP-1101 : Add snyk-secret HO RHTAP scripts #2788
OCPBUGS-15991 : use ignition-proxy Service to populate ignitionEndpoint with strategy NodePort #2787
OCPBUGS-15769 : Include hypershift specific labels to be ignored by similar autoscaler groups #2784
Add management cluster KAS network policy #2717
HOSTEDCP-1019 : Add create cluster for Agent for HCP CLI #2754
CNV-30407 : KubeVirt Platform: Support NetworkInterfaceMultiQueue #2760
HOSTEDCP-1030 : Add destroy cluster for Agent for HCP CLI #2756
OCPBUGS-15594 : Get valid arch image for cluster-config-operator #2753
kubevirt: Annotate VMs to be live migratable #2772
Revert “Merge pull request #2770 from dharaneeshvrd/upgrade-capi-ibmcloud #2776
MULTIARCH-3684 : PowerVS - Upgrade capi to use v1beta2 APIs #2770
OCPBUGS-14862 : Reject VPCE Connections during VPCE Service cleanup #2700
Update RHTAP references #2768
HOSTEDCP-1023 : Add create NodePool for Agent for HCP CLI #2755
HOSTEDCP-1061 : Implement dedicated request serving nodes for HostedClusters #2722
OCPBUGS-15769 : Set –balance-similar-node-groups for autoscaler #2769
Leader election config update. #2282
OCPBUGS-15723 : Let getMachinesForNodePool return machines ordered by creation Timestamp #2766
Fix KAS HealthCheck for non DNS-Based ingress points in LB service #2765
Bump github.com/docker/distribution from 2.8.1+incompatible to 2.8.2+incompatible #2741
Bump github.com/docker/distribution from 2.8.1+incompatible to 2.8.2+incompatible in /hack/tools #2740
Bump google.golang.org/protobuf from 1.29.0 to 1.29.1 in /hack/tools #2737
OCPBUGS-12208 ensureExists pullSecret resource reconciliation strategy #2732
Bump github.com/coreos/ignition/v2 from 2.10.1 to 2.14.0 #2739
Bump github.com/docker/docker from 23.0.1+incompatible to 23.0.3+incompatible in /hack/tools #2738
Remove hardcoded AWS CI References #2742
TRT-1118 : Remove DisableStrictZoneCheck from AWS CCM config #2757
Update RHTAP references #2750
add OWNERS for new ci-tooling area label #2743
Add production cli (hcp) to dockerfile #2747
feat: Enable priority class override #2661
test/e2e: retry configmap create in etcd chaos tests #2746
OCPBUGS-14578 : Set allocate-node-cidrs to false in the cluster-kube-controller-manager #2731
Revert “HOSTEDCP-1016: Validate publishing strategies” #2733
HOSTEDCP-1027 : Add Create kubeconfig for HCP CLI #2719
HOSTEDCP-1016 : Validate publishing strategies #2651
KubeVirt Platform documentation for Advanced Storage Configurations and External Infrastructure #2712
Follow up to PR comments on #2642 #2690
HOSTEDCP-1067 : Add dependabot dependency management #2708
HOSTEDCP-1073 : enforce blocked rollout of HCP #2726
Revert “HOSTEDCP-967: [Re-revert] Disable v1alpha1 and conversion webhook by default” #2705
Remove –service-publishing-strategy from production cli #2721
HOSTEDCP-1024 : Add Create NodePool for KubeVirt for HCP CLI #2718
HOSTEDCP-1032 : e2e: ensure default PSA policy is not privileged #2714
HOSTEDCP-1031 : Add Destroy Cluster Cmd for KubeVirt for HCP CLI #2673
Expose annotation to allow release image overrides #2595
HOSTEDCP-1060 : add ignition-server proxy #2668
OCPBUGS-14637 : Check OwningIngressController also in Labels #2706
HOSTEDCP-1020 : Add Create Cluster for KubeVirt for HCP CLI #2672
properly handle user CA bundle not existing #2703
OCPBUGS-15168 : fix(oauth): Do not proxy IBM Cloud IAM endpoints #2699
OCPBUGS-14859 : Skip AWS resource deletion for ‘Unknown’ OIDC state #2691
Whitelist access from virt-launchers to NodeIP if NodePort ServicePublishingStrategy is used #2688
OCPBUGS-13829 : cpo: oauth: honor AccessTokenInactivityTimeout #2693
Update NodePool docs to include data propagation #2687
HOSTEDCP-1008 : Add NodePoolTransitionSeconds metric #2631
HOSTEDCP-967 : [Re-revert] Disable v1alpha1 and conversion webhook by default #2685
Make NodePool arch input immutable #2689
Update autocaler RBAC to accomodate machinepools support added upstream #2663
Enforce Immutability of some KubeVirt Platform Values #2654
CNV-24818 : Add fsGroup support to kubevirt-csi-driver #2563
Let payload provider render feature gate yaml #2664
OCPBUGS-14633 : Check for OPENSHIFT_IMG_OVERRIDES before using #2660
HOSTEDCP-965 : Add impersonate feature to the CLI and document HC dump procedure #2653
OCPBUGS-11882 : Annotate HCP pods with the safe-to-evict-local-volume CA annotation #2647
Update RHTAP references #2657
Disable nodepool replace upgrade test #2665
OCPBUGS-14784 : Honor global ingress configuration LoadBalancer type on AWS #2669
OCPBUGS-14620 : Set DisableStrictZoneCheck = true
in the AWS Cloud Provider config #2659
HOSTEDCP-992 : refactor ignition-server reconcilation #2662
Minor fix in KAS LB HealthCheck #2656
HOSTEDCP-1036 : Create Makefile path to create productized CLI #2633
Extend np test timeout for KubeVirt platform #2655
HOSTEDCP-1003 : Set AWS conditions only for AWS platform #2604
Remove alsologtostderr flag form CAP* #2648
OCPBUGS-14575 : Check for IDMS only if mgmt cluster has req API #2650
Network isolation of VirtualMachines for KubeVirt provider #2622
OCPBUGS-14428 : remove OLM alerts from the HCCO #2636
KubeVirt Openstack image annotation override #2629
Red Hat Trusted App Pipeline update hypershift-operator-main #2638
Red Hat Trusted App Pipeline purge hypershift-azjx #2635
cli: Add release-stream flag #2644
OCPBUGS-13547 : Pass payload-version to MCS and MCC #2643
KubeVirt: Handle deletion of the cache DV on an edge case #2620
OCPBUGS-14087 : Enable HCCO to reconcile over the OperatorHub’s disableAllDefaultSources object #2632
HOSTEDCP-1009 : Allow external-dns image to be set in install cli #2623
Ensure FeatureGate is copied from cluster to MCO render source #2581
OCPBUGS-12972 : Use different ports for MCS in the ignition provider #2628
hypershift dump: use random local port for kas port-forwarding #2625
OCPBUGS-11939 : Initialize RegistryOverrides w/ mgmt cluster ICSP #2437
Revert “Merge pull request #2596 from muraee/disable-valpha1” #2627
Add ‘Creating Arm NodePools Through the API’ Section #2587
HOSTEDCP-967 : Disable v1alpha1 and conversion webhook by default #2596
OCPBUGS-13113 : Add ClusterUpgradeDuration metric #2566
chore(deps): update rhtap references #2612
OCPBU-609 : agent infrastructure docs #2618
OCPBUGS-14169 : Remove external-dns –events flag #2616
OCPBUGS-13970 : Reconcile oauthDeployment annotations even if kubeadmin secret is not found #2593
cmd: infra: aws: retry on AuthorizeSecurityGroup failure #2605
Fix dump for Kubevirt #2589
Kubevirt CSI StorageClass mapping API #2528
Remove Arm e2e test #2591
HOSTEDCP-947 : Set ETCD Storage Size as immutable field and equalised the default size among both api versions #2588
OCPBUGS-13735 : Fixed revoking some permissions to CAPI Manager Clusterrole #2586
HOSTEDCP-445 : Add script to migrate hosted control plane #2598
Use newly introduced KubeVirt Platform rhcos Image #2576
OCPBUGS-13168 : Include default ingress CA in root CA bundle #2584
HOSTEDCP-975 : Add new grafana panels for nodepools SLOs #2592
HOSTEDCP-926 : Send metric when HO/CPO decide to skip cloud resource deletion #2531
Update RHTAP references #2420
OCPBUGS-13897 : Use cluster-config-operator to render featuregate status on KAS bootstrap #2585
Full changelog
OCPBUGS-16654 : Revert revert “STOR-1065: Rename node-driver-registrar… #69
OCPBUGS-16571 : Bump library-go to remove dependency on goproxy #71
OCPBUGS-16783 : Chore: Update OWNERS #70
Revert “STOR-1065: Rename node-driver-registrar RBAC and Rework sidecar bindings to bind common ClusterRoles” #68
STOR-1065 : Rename node-driver-registrar RBAC and Rework sidecar bindings to bind common ClusterRoles #64
OCPBUGS-14824 : Bump ibm-vpc-block-csi-driver-operator library-go #65
Full changelog
OCPBUGS-17372 : fallback to /etc/hostname of hostnamectl fails #86
OCPBUGS-9072 : Pass hostname within the ignition to coreos-installer #76
Switch to udevadm command install instead of package [OKD] #84
OCPBUGS-14906 : Update ipa for OCP 4.14 #77
“Bug OCPBUGS-15447: Switch to udevadm command install instead of package” #80
Full changelog
Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #20
CNV-29315 : kubevirt-csi unable to unpublish volumes in the event a VM is unexpectedly destroyed #21
Full changelog
OCPCLOUD-2014 : Switch Azure credentials request to use explicit permissions #1152
OCPBUGS-16925 : only attempt to remove finalizers if staticIPFeatureGateEnabled #1160
install/0000_99_machine-api-operator_00_tombstones: Drop obsolete file #1159
OCPBUGS-16307 : default instance type for Azure based on the architecture (+ gcp) #1155
MGMT-13630 : Add Azure Confidential VM and TrustedLaunch for VMs webhook validations #1157
SPLAT-845 : add support for the capv NetworkDeviceSpec #1079
Fix data race conditions in unit tests #1156
reconcile status when the clusteroperator changes #1154
MULTIARCH-3693 : Add policies to operate on VPC loadbalacers #1153
Add feature gate for disabling the MHC controller #1151
Bump openshift/api package #1150
add capability annotation #1119
MachineAPIOperatorMetricsCollectionFailing to warning #1149
CCO-321 : Add support for feature-gating specific providers #1140
MIXEDARCH-129 : Adds the MergeCommaSeparatedKeyValues method in the util package #1147
updated hacking-guide.md to direct customers to open up issues on Jir… #1139
OCPBUGS-13132 : Golang update to 1.20 #1146
OCPBUGS-13956 : Bump controller-runtime to v0.15.0 #1145
Full changelog
MCO-605 : MCO-550: Remove Certificates from MachineConfig #3787
MCO-573 : Wire up security/trust/pull secrets between rpm-ostree and internal registry #3806
OCPBUGS-17701 : daemon: igmore mounting MCD pod content when target is “/” #3860
mcs: Use certwatcher #3744
MCO-729 : BuildController should allow cluster admins to provide a custom Dockerfile #3847
MCO-564 : Make NodeController aware of BuildController #3817
OCPBUGS-17568 : Agent-based install process the container machine-config-controller will be oom #3862
OPNET-343 : Restore node-ip for kubelet in dual-stack vSphere #3859
OCPBUGS-17683 replace .. with : on registry CA file paths #3854
operator: remove metrics related log #3855
MCO-565 : MCO-568: MCO-659: MCO-660 On-cluster build opt-in function, building machine-os-builder stub, RBAC and service acct inclusions. Deletes deployment rather than scale down to 0 without label #3834
MCO-588 : Update ignition spec to 3.4, disallow ignition KernelArguments for now #3814
OCPBUGS-17433 : Sync featuregate controller during the node config controller sync #3846
OCPBUGS-8938 : OCPBUGS-15202: MCO-555: kube-rbac-proxy addition #3663
MCO-654 : forcefile should always trigger an OS update #3790
OCPBUGS-14945 : add HostToContainer propagation to all hostPath volume mounts #3792
MCO-532 : Finish lease type migration #3842
OCPBUGS-13825 : The machine-config-controller pod restart in SNO+1 causing daemonsets to restart #3838
OCPBUGS-14965 : Run hostnamectl with systemd-run #3746
install: Fix dash-to-hyhen for 04_kube_rbac_proxy_config.yaml prefix #3837
OCPNODE-1714 : files: add skip_mount_home to storage.conf #3777
OCPBUGS-16227 : make sure sshKey are not emptied out on firstboot #3829
daemon: Two minor fixes for reexec #3835
daemon: Remove even more dead legacy OS update code #3820
MCO-552 : implement the ability for the MCO to handle image registry certificates #3770
OCPBUGS-17156 : daemon: Always replace binary #3832
Revert “daemon: Make binary writing idempotent” #3831
OCPBUGS-16921 : daemon: Make binary writing idempotent #3825
Revert “MCO-565: MCO-568: MCO-659: MCO-660 On-cluster build opt-in function, building machine-os-builder stub, RBAC and service acct inclusions” #3830
Revert “ add Passwd to bootstrap served ignition” #3828
OCPBUGS-15367 : The kubeconfig copied on to each node has 644 permissions #3808
MCO-597 : Remove the MCO’s dependency on journal reads #3822
fix certExpiry description #3823
OCPBUGS-16227 : add Passwd to bootstrap served ignition #3811
MCO-565 : MCO-568: MCO-659: MCO-660 On-cluster build opt-in function, building machine-os-builder stub, RBAC and service acct inclusions #3763
OCPNODE-1717 : Make cgroupsv2 default in OCP-4.14 #3789
OCPNODE-1655 : Apply node-cluster dashboard as a config map #3708
MCO-607 : MCO-237: Keep track of certs in ControllerConfigStatus #3756
MCO-687 : Fix metrics e2e test #3813
MCO-585 : MCO-569: MCO-563: MCO-586: Introduces BuildController #3731
MCO MCO-424: daemon: Remove old legacy OS update path #3583
MGMT-14843 : ovs-configuration service should copy the statically configured address even if the method isn’t manual. #3774
OCPBUGS-16128 : daemon: Copy matching binary to host, re-exec with it #3799
MCO-596 : Deprecate the login monitor #3791
kubevirt: Configure IPv6 arp proxy default gw #3780
operator: Stop mounting /etc/kubernetes/ca.crt #3730
OCPBUGS-15613 : Soften grep pattern for ingress default router #3775
Bug OCPBUGS-15233: OpenStack: fix IPv6 configuration #3785
OCPBUGS-11997 : Prevent NM from unsetting the hostname #3794
add wasm extension #3776
set MCO namespace on all events #3767
OpenStack: restrict IPv6 configuration #3781
Update 0000_90_machine-config-operator_01_prometheus-rules.yaml #3779
OCPBUGS-14674 : set pool alert back to zero in more default scenarios. #3733
OCPBUGS-10115 : update image to use golang-1.20 #3766
OCPBUGS-15728 : Fix machine config drifts when deploying with platform external #3773
faq: Talk about “no enabled repositories” #3772
OCPBUGS-14185 : change the message annotation to description #3721
OKD-174 : Dockerfile: OKD: Reenable extensions image on SCOS #3741
OCPBUGS-15575 : Dockerfile: pin to nmstate-2.2.9 #3769
OCPBUGS-10924 : Switch default SA to machine-config-operator #3740
trivial: Fix namespace for kube api server operator #3762
OCPBUGS-8403 Deleting SSH keys / password hashes should not degrade MachineConfigPool / node #3606
OWNERS: Update onwer list #3761
OCPBUGS-4820 : Controller version mismatch causing degradation during upgrades #3738
MCO-640 : Move all log functions to klog #3734
OCPBUGS-14399 : Minor fix to support protectKernelDefaults
field in Kubelet Config #3736
MCO-595 : Remove MCO’s pending config workflow #3700
OCPCLOUD-2010 : Re-vendor api and library-go for external platform support #3745
bootstrap: Clarify that “root ca” is really “MCS CA” #3728
add ipsec extension #3726
OpenStack: configure ipv6 addresses #3705
OCPBUGS-13656 : MCO-632: Update kube deps to 1.27.2 #3735
OCPBUGS-14612 : Improve logging for IPI deployments #3725
OCPBUGS-4370 : Add label to VIP via keepalived #3683
OCPBUGS-14793 : Allow userfaultfd syscall to be used by unprivileged users #3724
OCPBUGS-14272 : Race condition in TestMCDRotatesCertsOnPausedPool #3718
OCPBUGS-13547 : [OCPCLOUD-2034] Update Library-go and API for new featuregate changes #3688
OCPBUGS-2177 : MCO-634: add support for a node pool hierarchy #3505
OCPBUGS-13860 : Fix missing apiVersion and kind fields for embedded resources #3713
Full changelog
Use container base image’s /etc/os-release to copy multus binary #179
Change /usr/src/multus-cni/bin to rhel8 based one #178
Cherry pick upstream fix #177
Upstream sync 202308 #176
This change introduces wait to generate config until API is ready #175
Upstream sync to 202307, 99c4481 #168
Add rhel9 binary for multus #173
Full changelog
15393552: Updating ose-multus-route-override-cni images to be consistent with ART #47
15393552: Updating ose-multus-route-override-cni images to be consistent with ART #45
Revert ART changes to fix rhel9 base binary #44
Updating ose-multus-route-override-cni images to be consistent with ART #43
Fix Dockerfile to use rhel9 #42
Updating ose-multus-route-override-cni images to be consistent with ART #41
Add rhel9 binary #40
Full changelog
Bug 16002 : Change default binary to RHEL8 image #172
OCPBUGS-15905 : Denormalize IP name before checking if pod is alive [Backport 4.14] #167
Bug 16136 : Introduce entrypoint.sh to call ip-control-loop based on RHEL ver #147
Downstream sync july23 #137
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #150
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #149
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #148
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #146
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #143
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #142
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #141
Restores RHEL specific binary copy and updates to rhel9/8 #140
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #136
Full changelog
Split gather_network_logs into basics and extras #375
Added gathering script for SNOs with workload partitioning #373
Add csi-proxy logs collection in must-gather for Windows nodes #374
SDN-3687 : Support gathering DBs for OVNK-Interconnect mode #370
Collect information relevant to PerformanceProfile and low latency tuning #345
gather_network_logs: multus: Fix typo in error redirection #371
Collect leases.coordination.k8s.io from each namesapce #366
Create a generic “get_operator_ns” util function #368
Assert that only one subscription exists #367
MCO-608 : Gather MCO’s on-disk configs from degraded nodes #361
Gather ostree related bits #353
OCPBUGS-14984 : Collect Mellanox firmware information #365
OCPBUGS-14025 : Add gather_vsphere #363
Full changelog
Add rhel9 binary #57
Updating ose-network-interface-bond-cni images to be consistent with ART #54
Full changelog
Revert “Remove e2e tests that consistently fail in 4.13 (#65)” (#76) #65
Full changelog
CFE-825 : As a oc-mirror user, I would like mirrored operator catalogs to have valid caches (#651) #651
CFE-902 feat: removes go workspace due to incompatibility on ART builds (#672) #672
CFE-902 feat: adds go workspace to support multi-module (#670) #670
add go.mod files to testdata directories (#669) #669
fixing oc-mirror version
when run from read-only fs (#660) #660
Make local storage port configurable via command line (#668) #668
Fix unit tests for local storage collector implementation (#667) #667
CFE-904 : Create AdditionalImage Collector implem. based on registry as localStore (#666) #666
v2 initial commit (#664) #664
OCPBUGS-13871 docs: changes the help message for oci-registries-config flag (#663) #663
OCPBUGS-11754 : add cleanup of /tmp directories (#655) #655
CFE-875 : Unlock MirrorToDisk and DiskToMirror workflows for local oci catalogs (#662) #662
Fix OCPBUGS-15329 - OCI index found, but accept header does not support OCI indexes (#658) #658
Enable mirroring of the multi release image (#657) #657
revendor to the latest oc (#656) #656
Replacing the hard coded path with graphDataMountPath (#585) #585
CFE-859 : Removing flag use-oci-feature starting release-4.14 (#622) #622
CFE-783 : A variety of changes needed for correct operation with multi architecture catalogs (#611) #611
MULTIARCH-3440 : refine multiarch support for test-unit and test-e2e using dockerfile and add ppc64le build to Makefile (#624) #624
Add ImageSetConfig examples (#610) #610
OCPBUGS-13871 : fix: changes on help info content (#653) #653
OCPBUGS-588 : minVersion in ImageSetConfiguration seems to be ignored (#603) #603
Fix OCPBUGS-14194 (#649) #649
Fix OCPBUGS-14402 (#652) #652
OCPBUGS-13332 : Create rfc 1035 compliant catalog source name (#636) #636
fix validateMapping OCPBUGS-13962 (#640) #640
adds Jeremy Peterson to OWNERS file (#644) #644
Chore: Remove Ross from OWNERS (#639) #639
OCPBUGS-13762 : make addRelatedImageToMapping multithreaded (#638) #638
Full changelog
OCPBUGS-16793 : openshift/Dockerfile: exclude unpack binary from FIPS build overrides #33
Rename downstream overlay from service-ca-operator to openshift #32
UPSTREAM: <carry>: add manifests to image #31
Makefile,manifests: Add skeleton of default rukpak resources #18
Introduce barebones build and unit testing GH actions #14
Skeleton - k8s provisioner #7
update README to include latest APIs #5
Introduce a sanity github action check #3
Init API defs #1
Add barebones OWNERS file #2
Full changelog
15143237: Updating ose-ovirt-machine-controllers images to be consistent with ART #174
Full changelog
Downstream Merge 2023-8-10 #1813
OCPBUGS-17147 : [DownstreamMerge] 8 Aug 2023 #1803
Downstream Merge 2023-08-03 #1798
8-1-23 #1795
OCPBUGS-16767 , SDN-3507 , SDN-3733 : [DownstreamMerge] 7-27-23 #1789
OCPBUGS-15811 : SDN-3733: Downstream Merge: 25th July 2023 #1784
OCPBUGS-10650 , OCPBUGS-12747 , OCPBUGS-16413 , SDN-3732 , SDN-3733 : [DownstreamMerge] 7-19-23 #1750
Dockerfile: build both RHEL8 and RHEL9 shims #1760
SDN-3733 : [DownstreamMerge] 7-13-23 #1757
11 jul 23 #1752
07 jul 23 #1747
SDN-3993 : [DownstreamMerge] 06 jul 23 #1742
OCPBUGS-14632 : [DownstreamMerge] 30 jun 23 #1729
OCPBUGS-15127 : Dockerfile: bump to ovn 23.03.0-69 (for LB templates) and ovs 3.1.0-32 (upgrade perf) #1710
OCPBUGS-15523 : [DownstreamMerge] 6-27-23 #1726
OCPBUGS-15227 : [DownstreamMerge] 6-21-23 #1718
OCPBUGS-15226 : EgressIP: do not patch the status if the object no longer exists #1717
6-18-2023 #1714
OCPBUGS-14769 , SDN-3885 : Downstream Merge 13th June 2023 #1707
OCPBUGS-10592 , OCPBUGS-10841 , OCPBUGS-11180 , OCPBUGS-12747 , OCPBUGS-1715 , OCPBUGS-4370 , OCPBUGS-4485 , SDN-3733 , SDN-3838 , SDN-3840 : Downstream Merge 6th June 2023 #1697
OCPBUGS-12352 : Updating ovn-kubernetes-base images to be consistent with ART #1700
OCPBUGS-14636 : Fix Downstream Unit Tests #1696
OCPBUGS-12800 , OCPBUGS-13863 , OCPBUGS-14286 , OCPBUGS-14449 , OCPBUGS-4485 , SDN-3555 , SDN-3790 : Downstream Merge 1st June #1692
OCPBUGS-9825 : LoadBalancer Templates Merge Downstream: 25th May 2023 #1683
Full changelog
Rebase: upgrading go modules #40
Rebase with upstream: reduce multipathd usage (OCPBUGS-16878) #39
Rebase with upstream: removed panic and some cleanup #38
Rebase with upstream #37
Package device-mapper-multipath added #36
Merging upstream code with downstream #33
Full changelog
UPSTREAM: <carry>: Add check for valid Power VS instance id #42
Manual rebase to k8s 1.27 and go 1.20 #40
Revert images golang 1.18 #38
Updating ose-powervs-cloud-controller-manager images to be consistent with ART #37
Revert build_image to the one currently specified in release repo #36
Full changelog
Bump openshift/prometheus to v2.46.0 #167
Bump openshift/prometheus to v2.45.0 #166
Bump openshift/prometheus to v2.44.0 #164
Dockerfile.ocp: update note about UI assets after switching to embed #165
Full changelog
refactor route controller manager to use library-go server and ControlerCommand for generic setup #28
add dummy flags needed for a switch to library-go server and ControlerCommand #29
Revert “[WRKLDS-730] refactor route controller manager to use library-go server and ControlerCommand for generic setup” #25
refactor route controller manager to use library-go server and ControlerCommand for generic setup #22
Full changelog
OCPBUGS-16397 : Nutanix OCP cluster telemetry data “host_type” shows “virt-unknown” #474
chore: bump github.com/prometheus/prometheus to v0.45.0 #475
: fix mtls secret generation #473
Revert wrong cert name change of #455 #472
: add secret for external mtls connection #470
MON-3230 : Add TLS auth to telemeter-client #455
jsonnet: Add config to support rhelemeter #468
Improve debug roundtripper logs #467
Fix integration test documentation #461
Fix path benchmark #466
Add RHEL POC server #465
OCPBUGS-12345 : tools: update to golangci-lint v1.51 #464
OCPBUGS-12678 : Update golang.org/x/net to lastest version #462
Full changelog
add comments requested in review #28186
rebrand invariant tests as monitor tests #28185
basic setup of podNetwork disruption tests #28179
start the watch-endpoint-slice command #28169
stop sampling when we stop #28178
run start and collect in parallel #28174
only close node ready if the node was not ready before #28170
make monitor command separately runnable #28168
OCPBUGS-15726 : add tests for openapi v3 #28129
fix microshift fix that broke all disruption #28175
Add stlaz and p0lyn0mial to OWNERS #28166
OCPBUGS-15726 : Revert “temporarily disable oc explain tests until openapi/v3 is working” #28155
Add some tests for event interval generation #28163
USHIFT-1464 : skip TestFrontProxy for MicroShift #28064
upgrade distribution to v3 #27958
Skip external service monitoring invariant for microshift #28160
Refactor e2e-test intervals to use the new locator builder #28099
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #28147
Remove obsolete buildanalyzer tool #28158
Bug OCPBUGS-17483: Skip invariant load balancer test for OpenStack #28154
be sure the exit code fails when the invariant tests fail #28152
OCPBUGS-17351 : Skip some invariants in microshift #28136
OCPBUGS-16166 : disable 2 tests in preparation to land k8s 1.27.4 #28148
Fix kubevirt test flake caused by pod name collision #28153
move the discovery filtering into suite filtering instead of post filtering #28145
move remaining disruption tests to invariants #28144
Disable EgressIP test termporarily due to OVN-K bug #28146
Bug OCPBUGS-6778: Correct condition for rejecting connection #27876
USHIFT-1484 : skip prometheus alerts for MicroShift #28070
remove unnecessary global modification from upgrade #28143
OCPBUGS-16615 : Moving Prometheus reporting telemetry to serial jobs #28138
OCPBUGS-15568 : Set quota wait timeout to 1 minute #28071
rough package alignment #28131
return calculated intervals #28141
move existing invariant tests #28130
remove extraneous layering for the monitor #28127
Fix ClusterOperator tests that can only report failures #28120
properly categorize the stop and start intervals #28139
MON-1960 : Remove exceptions for alert annotations #28118
Revert invariant and other refactors #28133
Remove exception on KubeSchedulerDown runbook #28126
expedient engineering: inject intervals into recorded events from out… #28128
Add Fabio and remove Stefan from image approvers #28125
separate the run, run-upgrade, and run-test #28121
Remove enabling multinetwork policy #28116
OCPVE-292 : OCPVE-293: OCPVE-294: feat: added a realtime latency test suite #28110
Update image mirroring instructions to handle uncompressed layers #28101
protect against nil panic on unassigned disruption adapter #28123
fix: workload partitioning - added more error handling for retry attempts #28111
Revert “adds legacy disruption to invariant tests” #28117
adds legacy disruption to invariant tests #28104
refactor command line start for openshift-tests #28107
oauth requestheaders: gather oauth-server logs as admin #28114
Automated - Update synthetic test data #28108
SDN-4042 : Increase total upgrade time on OVN platforms #28074
Update image stream test to create a manifest list image by default #28017
Adjust interval builder before we continue porting #28109
Put times in UTC to allow local testing; use asserts where we can #28091
feat: make data gathering more robust #28102
remove suite hook configuration and make information flow one-way #28090
USHIFT-1463 : add [apigroup] annotation to skip tests for MicroShift #28061
OCPVE-318 : feat: add node validation for workload partitioning #28056
Unrevert pull request #28069 from dgoodwin/interval-builder #28095
Disruption reverts #28093
AUTH-401 : test/e/authorization/pod_security_admission: add e2e test for pinning SCCs #28092
fix logic – If error, return current time; else return log line time #28084
add interface for future invariant tests #28077
Interval Building Phase 1 #28069
create a recorder interface that separates monitoring from recording #28080
remove unnecessary options and make monitor act like controller #28079
Fix retrieval of virt-launcher pod of the guest node #28082
Fix usage of priviliged pods in sig-kubevirt test cases #28078
trt-1150: move lock so prevent multiple file updates in single commit #28065
finish scrubbing out sampler #28076
Automated - Update synthetic test data #28072
MON-3280 : enable etcd metrics check again #28049
OCPBUGS-13158 : Run new tests which monitors in-cluster API server disruption as daemonsets on masters/workers #27909
fix: add missing namespaces to exclude list #28060
Update S2i Image tests for removing nodejs 14 ubi8 eol #28058
only close intervals if they are open #28059
USHIFT-704 : skip [sig-cli] whoami result with console for MicroShift #28005
ignore machine api capability #28052
ODC-7333 : Add consolesamples to the exception list of CRDs without a status #28057
Handle partial discovery results in DoesApiResourceExist. #28047
Remove audit id from sample err #28043
Remove sampler #27960
ODC-7333 : Add consolesamples to the list of console resources that all users should have read access #28045
OCPBUGS-15893 : Update permission to incl. watch for helmchartrepositories for console users #28044
Automated - Update synthetic test data #28014
increase cloud-credential-operator watch since we added a self-clusteroperator watch #28046
OCPBUGS-15291 : Update broken dc tests due to deprecation warning #28041
Enable Azure platform check in external cloud provider test #27776
update pathological event namespace label to be unambiguous #28038
multinetpolicy: use RetryOnConflict to reduce flakes #28035
USHIFT-1379 : skip must-gather tests for MicroShift #28015
Provide more detailed information when extracting binary fails #28034
test: extended: deployment: use correct apigroup for imagestreamtags #27689
Add logs in clusterquota test for more verbosity #28032
OCPBUGS-15500 : Avoid panic attempting to process interval logs #28012
Add test checking nodes are in proper read state before upgrade #28028
trt-1030: 80s for service lb under test #28004
OCPBUGS-15835 : remove references to registry.centos.org #28029
OCPVE-379 : fix: avoid checking resources for BestEffort pods #28006
OCPBUGS-15568 : Increase clusterquota wait timeout from 10 to 30 seconds #28026
OCPBUGS-15558 : retry promql a few times to mask i/o timeouts #28010
AUTH-377 : Add oauth-server redirect URI validation e2e tests #27922
temporarily disable oc explain tests until openapi/v3 is working properly #28022
USHIFT-647 : skip non-existing resources from security.openshift.io #27897
trt-1117: Test for update lease errors #28020
print out deployment for incorrectly scheduled pods #28011
OCPBUGS-14425 : Skip CCM upgradable condition on AlibabaCloud #27967
Update “verify that nodes have no unexpected reboots” test #28016
allow cluster-config-operator to manage featuregate upgrade block #28009
add a networking alert for OVNKubernetesResourceRetryFailure #28008
add debugging info for cluster not ready to upgrade #28007
OCPVE-378 : feat: remove skip, allow check on all platforms regardless #27911
Report external binary usage #28000
Changing the severity of “missing runbook_url annotation for critical alerts” test case from flaky to failure #27987
disruption refinement for availability, not latency. #28003
TRT-1097 : add KubeMemoryOvercommit to specific test so that the general test doesn’t fail #28002
OCPBUGS-11652 : Enable oc adm node-logs #27992
skip reboot test when machineconfigs not in target cluster #27999
OCPBUGS-15291 : [sig-cli] oc idle: get a dc name through labels instead of parsing oc create output #27998
Automated - Update synthetic test data #27995
Flake ci-cluster-network-liveness and new backend disruption failures to avoid payload rejections #27990
verifies number of node reboots even for HA #27994
OCPBUGS-13379 : machines: add a test which verifies number of node reboots #27993
strip operator framework from resource watch and fix bugs #27972
Fix panic in loki upload #27991
Replace dashes in locator keys for upload to loki, add namespace label when possible #27983
Automated - Update synthetic test data #27982
Update kubevirt LB connectivity tests to work with AWS ELB #27978
STOR-1263 : Bump (openshift/kubernetes): to get openshift/kubernetes#1595 #27970
add shutdown interval for apiserver from events #27919
Update expected name for OVN acl logging test #27974
Updated pathological events #27942
new disruption backend #27838
OCPBUGS-14667 : Revert “MON-3213: Changing the severity of “missing runbook_url annotation for critical alerts” test case from flaky to failure” #27969
MON-3213 : Changing the severity of “missing runbook_url annotation for critical alerts” test case from flaky to failure #27933
push intervals to loki #27930
USHIFT-1300 : Avoid getting cluster state for TEST_PROVIDER env var #27964
hard monitor.Event message creation #27946
ETCD-425 : restore test should validate state #27921
OCPBUGS-14338 : test/extended/prometheus: increase telemetry series threshold #27959
Running tests using external binary #27570
OCPBUGS-14321 : Increase timeout in sysctl allowlist test #27955
remove legacy recovery tests #27917
OCPBUGS-13649 : add tests for ClusterResourceQuota: count should work for all resources #27934
MON-3219 : Clear missing summary/description annotation test case exception #27944
OCPBUGS-13788 : 2x Revert “test/extended: Add MultiNetworkPolicy IPv4/IPv6 test cases” #27926 #27927
OCPBUGS-14125 : Move from registry.centos.org to quay.io #27945
LoadBalancer network connectivity test cases for HyperShift+KubeVirt #27931
Revert “Add coverage for GET verb and websocket handshake to SCC exec tests.” #27943
update the PDB resource to point to resource, not kind #27938
fix oc explain status and spec verification #27937
Add coverage for GET verb and websocket handshake to SCC exec tests. #27836
test/extended/prometheus: fix test with enabled telemetry #27915
bump(k8s.io/kubernetes) #27935
Automated - Update synthetic test data #27920
Full changelog
Source code for this page located on github