# 4.11.56 Created: 2024-01-04 20:13:34 +0000 UTC Image Digest: `sha256:6fcfee1b6d7e4d2f9c0e05ec2b0ad159809ea93736ac0acdc710df0584510892` Promoted from registry.ci.openshift.org/ocp/release:4.11.0-0.nightly-2024-01-03-144830 ## Changes from 4.10.65 ### Components * Kubernetes upgraded from 1.23.17 to 1.24.16 * Red Hat Enterprise Linux CoreOS upgraded from 410.84.202308011635-0 to 411.86.202312160018-0 ### New images * [agent-installer-api-server](https://github.com/openshift/assisted-service) git [bc51be82](https://github.com/openshift/assisted-service/commit/bc51be826e96cae9e00d0fff0970fd273c078d9a) `sha256:c95df595dbbac0756c0f022647c1a6677b436df95276344831d17c7c5f38221a` * [agent-installer-csr-approver](https://github.com/openshift/assisted-installer) git [aa467482](https://github.com/openshift/assisted-installer/commit/aa467482746b55af2a64137302a7b3ef556c83c4) `sha256:463ff890a96c855c52bd288b90dadcea0ee836fc4aa1e6fa37a4f57be8d32208` * [agent-installer-node-agent](https://github.com/openshift/assisted-installer-agent) git [e74ffbf5](https://github.com/openshift/assisted-installer-agent/commit/e74ffbf509d382c42891884b90a8a9fb82922f5e) `sha256:7ec81463b7f9b0cc8d20af4f1b8118b601cdf25ba28dabb2661d568efbfd793e` * [agent-installer-orchestrator](https://github.com/openshift/assisted-installer) git [aa467482](https://github.com/openshift/assisted-installer/commit/aa467482746b55af2a64137302a7b3ef556c83c4) `sha256:2fa09ce7f2601e3bf4f1e19529e58f0c8cf16425a9e5251019ea9ba4d8566d51` * [apiserver-network-proxy](https://github.com/openshift/apiserver-network-proxy) git [3362d673](https://github.com/openshift/apiserver-network-proxy/commit/3362d673b054807a4974b4d600486933f7e0bd42) `sha256:97dd49e0dfad7c2b179bbe341657f200a5a1c752b215e09ba51b3ae9c019ef4a` * [aws-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-aws) git [b7408966](https://github.com/openshift/cluster-api-provider-aws/commit/b7408966b5e5952e60588ca08794c876f2cb575f) `sha256:7b469ae184648cb2f37a5488f4665fb6b8882801bf35071dd57e3a24f9182178` * [azure-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-azure) git [2118fe60](https://github.com/openshift/cluster-api-provider-azure/commit/2118fe60689f382c8ce1c9150c6014cd9340b965) `sha256:3242f3e1f8c7f646a4f93d6f71be8d7ac786f8ec9cb0236c72e3a43b6b46b05b` * [cluster-capi-controllers](https://github.com/openshift/cluster-api) git [793bb482](https://github.com/openshift/cluster-api/commit/793bb48245f0e50e9dde2182286a4d219829ae6f) `sha256:4fcb07d085b6b12f88b2f744fb7bb791638483dacfe7a2e289d0c4dc78b38bac` * [cluster-capi-operator](https://github.com/openshift/cluster-capi-operator) git [8c08e223](https://github.com/openshift/cluster-capi-operator/commit/8c08e223b1ec06969955abd696bf3220a8126109) `sha256:d5173907fa70b2247cd953521d744c06ec4bc64a4e0fe21d5f8293bba70f1276` * [cluster-kube-cluster-api-operator](https://github.com/openshift/cluster-api-operator) git [5ad359ec](https://github.com/openshift/cluster-api-operator/commit/5ad359ecbb8edee5ebf0352e5d0969ee95dfe4d0) `sha256:82e507c11cf4b8a546626378235ee33eb0b40bd298d368e6ac14dd4ec70b0f30` * [csi-driver-shared-resource-webhook](https://github.com/openshift/csi-driver-shared-resource) git [0fbd7e5e](https://github.com/openshift/csi-driver-shared-resource/commit/0fbd7e5ef64b66e8ce8c2e66f3369b9b6b33c572) `sha256:269a9fb0c642d2c0115ae9b96103871911efcae2bbec9193d803fe41342723ba` * [gcp-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-gcp) git [09063c1e](https://github.com/openshift/cluster-api-provider-gcp/commit/09063c1edef1f7f50fa3a3d12639f2471372622e) `sha256:0a69a97d10c7db7910f6596f24b481c284740f4ce6dcf0eebff5d70894b0cdc0` * [machine-image-customization-controller](https://github.com/openshift/image-customization-controller) git [30f98fdb](https://github.com/openshift/image-customization-controller/commit/30f98fdb5341d13f33c264faae0910af74424265) `sha256:4f4e75e86236a4466772fc55a274d2596a1c78f49b92749eadee447b01f3a2f2` * [nutanix-machine-controllers](https://github.com/openshift/machine-api-provider-nutanix) git [a94eb77c](https://github.com/openshift/machine-api-provider-nutanix/commit/a94eb77c298d1420219d350df6a6c7bca575aac0) `sha256:7f22b15b4edd28eeff97ecd3240b7a9494c0a7a6e5f94f0c7b9ceda54b87b643` * [powervs-cloud-controller-manager](https://github.com/openshift/cloud-provider-powervs) git [c08a0572](https://github.com/openshift/cloud-provider-powervs/commit/c08a0572fb47bf78646b010c5e91c1c0d30ac6df) `sha256:cb2db479b6c91987cd75c38ea270b9047002a96b8f7a94279cf2353c73f78a3f` * [prometheus-operator-admission-webhook](https://github.com/openshift/prometheus-operator) git [ef9b02af](https://github.com/openshift/prometheus-operator/commit/ef9b02af91f3f5906f5a463b76e70f1318306cf9) `sha256:4e0aa1e62b735ee32ee9e29e9c0483ea2b5c09b2aae1f551cb63683ab3b8d331` * [vsphere-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-vsphere) git [dc8bb530](https://github.com/openshift/cluster-api-provider-vsphere/commit/dc8bb53005c6020143b4ff581925e1e9fdaa0078) `sha256:3151578fff5710e7c6ee862e81c16494a34465c57fd5c1c6a07f20d87e9701eb` ### Removed images * grafana * image-customization-controller * ironic-hardware-inventory-recorder * jenkins * jenkins-agent-base * jenkins-agent-maven * jenkins-agent-nodejs ### Rebuilt images without code change * machine-os-content `sha256:e73b196d313407ec49c8fe1aee79a60797a2f5f956954c95c953aa2f205e1436` ### [alibaba-cloud-controller-manager](https://github.com/openshift/cloud-provider-alibaba-cloud/tree/0daf34f1c7f85d5f02f77684105d06d13e3d2c3f) * Updating ose-alibaba-cloud-controller-manager images to be consistent with ART [#19](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/19) * Merge https://github.com/kubernetes/cloud-provider-alibaba-cloud:master into master [#20](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/20) * [Full changelog](https://github.com/openshift/cloud-provider-alibaba-cloud/compare/db2d118ad70ff62a2111e83a8d14c5b32e176b38...0daf34f1c7f85d5f02f77684105d06d13e3d2c3f) ### [alibaba-cloud-csi-driver](https://github.com/openshift/alibaba-cloud-csi-driver/tree/10cd3a7e86f948d28143e83ea22ac935cfcb0162) * [OCPBUGS-21292](https://issues.redhat.com/browse/OCPBUGS-21292): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#39](https://github.com/openshift/alibaba-cloud-csi-driver/pull/39) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#13](https://github.com/openshift/alibaba-cloud-csi-driver/pull/13) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#10](https://github.com/openshift/alibaba-cloud-csi-driver/pull/10) * [Bug 2057495](https://bugzilla.redhat.com/show_bug.cgi?id=2057495): Add a parameter to the schema to automatically increase volume sizes … [#12](https://github.com/openshift/alibaba-cloud-csi-driver/pull/12) * [Bug 2069075](https://bugzilla.redhat.com/show_bug.cgi?id=2069075): Add explicit pciutils package [#11](https://github.com/openshift/alibaba-cloud-csi-driver/pull/11) * [Full changelog](https://github.com/openshift/alibaba-cloud-csi-driver/compare/5c30ca11ee5a7a312f5eed9f372d43c1af3c2154...10cd3a7e86f948d28143e83ea22ac935cfcb0162) ### [alibaba-disk-csi-driver-operator](https://github.com/openshift/alibaba-disk-csi-driver-operator/tree/481b4d44ce58757d136ee571ba5dbbdf109400ec) * [OCPBUGS-21389](https://issues.redhat.com/browse/OCPBUGS-21389): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#67](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/67) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#59](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/59) * [Bug 2096691](https://bugzilla.redhat.com/show_bug.cgi?id=2096691): Fix typo in resourceGroupId param [#33](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/33) * [Bug 2096691](https://bugzilla.redhat.com/show_bug.cgi?id=2096691): Add resourceGroupID to StorageClass parameters [#32](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/32) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#29](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/29) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#30](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/30) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#27](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/27) * [Bug 2057495](https://bugzilla.redhat.com/show_bug.cgi?id=2057495): Auto increase volume size to 20 GiB in the default storage class [#25](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/25) * Set fsGroupPolicy in CSIDriver [#23](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/23) * Disable snapshot tests [#21](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/21) * Add e2e test manifest [#20](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/20) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#17](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/17) * Add Dockerfile.test [#18](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/18) * [Full changelog](https://github.com/openshift/alibaba-disk-csi-driver-operator/compare/f0d6966321e3d416efec2ac7405494b057cb35f8...481b4d44ce58757d136ee571ba5dbbdf109400ec) ### [alibaba-machine-controllers](https://github.com/openshift/cluster-api-provider-alibaba/tree/414510891904915fd490e5f2d3f5f53320998c98) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#34](https://github.com/openshift/cluster-api-provider-alibaba/pull/34) * [Bug 2067787](https://bugzilla.redhat.com/show_bug.cgi?id=2067787): Update dependencies to K8s 1.24, go 1.18, client_golang [#33](https://github.com/openshift/cluster-api-provider-alibaba/pull/33) * [Full changelog](https://github.com/openshift/cluster-api-provider-alibaba/compare/9617f1f0b1266797f9237b2c3dd184f5a05f8f5b...414510891904915fd490e5f2d3f5f53320998c98) ### [aws-cloud-controller-manager](https://github.com/openshift/cloud-provider-aws/tree/611fef9447b1bd6602561a07a69e4d11ff1ca161) * [OCPBUGS-20708](https://issues.redhat.com/browse/OCPBUGS-20708): Update golang.org/x/net to v0.17.0 [#56](https://github.com/openshift/cloud-provider-aws/pull/56) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#21](https://github.com/openshift/cloud-provider-aws/pull/21) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Merge https://github.com/kubernetes/cloud-provider-aws:master into master [#22](https://github.com/openshift/cloud-provider-aws/pull/22) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#20](https://github.com/openshift/cloud-provider-aws/pull/20) * [Full changelog](https://github.com/openshift/cloud-provider-aws/compare/d85867feab1e80f094624d57221a071d7b6a148c...611fef9447b1bd6602561a07a69e4d11ff1ca161) ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/46bd913789c6c1c246ecff2d982e4b3b4654254d) * [OCPBUGS-20892](https://issues.redhat.com/browse/OCPBUGS-20892): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#242](https://github.com/openshift/aws-ebs-csi-driver/pull/242) * [OCPBUGS-19069](https://issues.redhat.com/browse/OCPBUGS-19069): Volume unmount repeats after successful unmount, preventing pod delete [#234](https://github.com/openshift/aws-ebs-csi-driver/pull/234) * [OCPBUGS-12932](https://issues.redhat.com/browse/OCPBUGS-12932): 4.11: Bump golang.org/x/text [#227](https://github.com/openshift/aws-ebs-csi-driver/pull/227) * [OCPBUGS-4185](https://issues.redhat.com/browse/OCPBUGS-4185): Fix nodeService.getVolumesLimit() adding more instance [#213](https://github.com/openshift/aws-ebs-csi-driver/pull/213) * [OCPBUGS-1749](https://issues.redhat.com/browse/OCPBUGS-1749): UPSTREAM: 1398: Add resolver to handle custom endpoints [#209](https://github.com/openshift/aws-ebs-csi-driver/pull/209) * Updating ose-aws-ebs-csi-driver images to be consistent with ART [#201](https://github.com/openshift/aws-ebs-csi-driver/pull/201) * [Bug 2074279](https://bugzilla.redhat.com/show_bug.cgi?id=2074279): UPSTREAM: 1210: Update golang.org/x/crypto for CVE-2022-27191 [#200](https://github.com/openshift/aws-ebs-csi-driver/pull/200) * [Bug 2050173](https://bugzilla.redhat.com/show_bug.cgi?id=2050173): Fix build on ARM after rebase [#198](https://github.com/openshift/aws-ebs-csi-driver/pull/198) * Updating ose-aws-ebs-csi-driver images to be consistent with ART [#197](https://github.com/openshift/aws-ebs-csi-driver/pull/197) * Rebase v1.5.1 [#195](https://github.com/openshift/aws-ebs-csi-driver/pull/195) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/2bad4b40757a33bf92ab8937ececf279cc46376c...46bd913789c6c1c246ecff2d982e4b3b4654254d) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/2c9edc2a947c6677fa9def34172f8e8be532084b) * [OCPBUGS-20997](https://issues.redhat.com/browse/OCPBUGS-20997): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#283](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/283) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#266](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/266) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#156](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/156) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#157](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/157) * [Bug 2074706](https://bugzilla.redhat.com/show_bug.cgi?id=2074706): Set custom endpoint environment variable if available [#153](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/153) * [Bug 2049671](https://bugzilla.redhat.com/show_bug.cgi?id=2049671): avoid excessive GET and DELETE in ResourcesSync controller [#151](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/151) * Set CSIDriver fsGroupPolicy [#150](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/150) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#148](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/148) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/c2e6dc19fac0006651d0820272a9734e231b1ce5...2c9edc2a947c6677fa9def34172f8e8be532084b) ### [aws-machine-controllers](https://github.com/openshift/machine-api-provider-aws/tree/a796a77f62697f908fb8d6c354244f94b9c2ee03) * Updating ose-machine-api-provider-aws images to be consistent with ART [#57](https://github.com/openshift/machine-api-provider-aws/pull/57) * [Bug 2108021](https://bugzilla.redhat.com/show_bug.cgi?id=2108021): Fix panic when accessing nil machine annotations map [#47](https://github.com/openshift/machine-api-provider-aws/pull/47) * [Bug 2060068](https://bugzilla.redhat.com/show_bug.cgi?id=2060068): return error when no security group found [#41](https://github.com/openshift/machine-api-provider-aws/pull/41) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#42](https://github.com/openshift/machine-api-provider-aws/pull/42) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#40](https://github.com/openshift/machine-api-provider-aws/pull/40) * [Bug 2091433](https://bugzilla.redhat.com/show_bug.cgi?id=2091433): Update EC2 instance types [#39](https://github.com/openshift/machine-api-provider-aws/pull/39) * Bump machine-api-operator to 25e61c2 [#38](https://github.com/openshift/machine-api-provider-aws/pull/38) * Validate unknown regions using AWS API [#32](https://github.com/openshift/machine-api-provider-aws/pull/32) * AWS Placement Group controller logic [#33](https://github.com/openshift/machine-api-provider-aws/pull/33) * [Bug 2072195](https://bugzilla.redhat.com/show_bug.cgi?id=2072195): Custom DHCP Option Set: empty domain-name is a valid custom domain [#36](https://github.com/openshift/machine-api-provider-aws/pull/36) * Remove unreleased AWS Placement Groups support [#35](https://github.com/openshift/machine-api-provider-aws/pull/35) * AWS IMDSv2 support [#34](https://github.com/openshift/machine-api-provider-aws/pull/34) * Refactor provider status to use metav1.Condition [#31](https://github.com/openshift/machine-api-provider-aws/pull/31) * [Bug 2067791](https://bugzilla.redhat.com/show_bug.cgi?id=2067791): Bump prometheus/client_golang [#30](https://github.com/openshift/machine-api-provider-aws/pull/30) * Add AWSPlacementGroup controller [#25](https://github.com/openshift/machine-api-provider-aws/pull/25) * [Bug 2065510](https://bugzilla.redhat.com/show_bug.cgi?id=2065510): Update AWS SDK to 1.43.20 [#29](https://github.com/openshift/machine-api-provider-aws/pull/29) * [Bug 2065160](https://bugzilla.redhat.com/show_bug.cgi?id=2065160): Ensure IP based NLB targets are deregistered before Machines are removed [#28](https://github.com/openshift/machine-api-provider-aws/pull/28) * [Bug 2060697](https://bugzilla.redhat.com/show_bug.cgi?id=2060697): Update openshift/api dependency [#27](https://github.com/openshift/machine-api-provider-aws/pull/27) * Leverage basic AWSPlacementGroup for AWS PG membership [#23](https://github.com/openshift/machine-api-provider-aws/pull/23) * Ensure Machine level tags have precedence over infrastructure level tags [#24](https://github.com/openshift/machine-api-provider-aws/pull/24) * Allow Machines to select EFA network interfaces [#8](https://github.com/openshift/machine-api-provider-aws/pull/8) * [CFE-68](https://issues.redhat.com/browse/CFE-68): user defined resource tags on EC2 instances updatable [#15](https://github.com/openshift/machine-api-provider-aws/pull/15) * [Full changelog](https://github.com/openshift/machine-api-provider-aws/compare/8c8d1c15bfbbe52abaa2e2dd34d360854f40e1b1...a796a77f62697f908fb8d6c354244f94b9c2ee03) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/aab68c9f520d24d9f9e45152ce4c27e6cccabbb5) * NO-ISSUE: snyk: exclude vendor/ [#175](https://github.com/openshift/aws-pod-identity-webhook/pull/175) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#153](https://github.com/openshift/aws-pod-identity-webhook/pull/153) * [Bug 2093986](https://bugzilla.redhat.com/show_bug.cgi?id=2093986): Comply to restricted pod security level [#154](https://github.com/openshift/aws-pod-identity-webhook/pull/154) * [Bug 2067792](https://bugzilla.redhat.com/show_bug.cgi?id=2067792): upgrade prometheus/client_golang to v1.12.1 [#152](https://github.com/openshift/aws-pod-identity-webhook/pull/152) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#151](https://github.com/openshift/aws-pod-identity-webhook/pull/151) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/7f9eb87aea90ff2bac0c98df741b6d6dd0c61449...aab68c9f520d24d9f9e45152ce4c27e6cccabbb5) ### [azure-cloud-controller-manager, azure-cloud-node-manager](https://github.com/openshift/cloud-provider-azure/tree/673e7b9d40ecdd9b9aa938113aedefb8aa33412e) * [OCPBUGS-21387](https://issues.redhat.com/browse/OCPBUGS-21387): Bump golang.org/x/net to v0.18.0 [#96](https://github.com/openshift/cloud-provider-azure/pull/96) * bug OCPBUGS-2003: .dockerignore: enable OSBS2 builds [#38](https://github.com/openshift/cloud-provider-azure/pull/38) * Updating ose-azure-cloud-node-manager images to be consistent with ART [#28](https://github.com/openshift/cloud-provider-azure/pull/28) * Updating ose-azure-cloud-controller-manager images to be consistent with ART [#29](https://github.com/openshift/cloud-provider-azure/pull/29) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Rebase cloud-provider-azure 22.06.2022 [#32](https://github.com/openshift/cloud-provider-azure/pull/32) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Merge https://github.com/kubernetes-sigs/cloud-provider-azure:master into master [#31](https://github.com/openshift/cloud-provider-azure/pull/31) * UPSTREAM: <carry>: set GOARCH appropriately [#30](https://github.com/openshift/cloud-provider-azure/pull/30) * [Full changelog](https://github.com/openshift/cloud-provider-azure/compare/ae571af8f8f60ccc14b3772032bd5c1072f2a746...673e7b9d40ecdd9b9aa938113aedefb8aa33412e) ### [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver/tree/f4bb81ea10d3c72f245c11ae99e9c5cddd2761a7) * [OCPBUGS-20662](https://issues.redhat.com/browse/OCPBUGS-20662): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#57](https://github.com/openshift/azure-disk-csi-driver/pull/57) * [Bug 2112266](https://bugzilla.redhat.com/show_bug.cgi?id=2112266): UPSTREAM 1367, 1409: Update max data disk count table [#30](https://github.com/openshift/azure-disk-csi-driver/pull/30) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#27](https://github.com/openshift/azure-disk-csi-driver/pull/27) * [Bug 2073373](https://bugzilla.redhat.com/show_bug.cgi?id=2073373): Rebase to v1.16.0 [#24](https://github.com/openshift/azure-disk-csi-driver/pull/24) * Dockerfile should copy binary for the correct ARCH [#23](https://github.com/openshift/azure-disk-csi-driver/pull/23) * build: set GOARCH appropriately [#22](https://github.com/openshift/azure-disk-csi-driver/pull/22) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#21](https://github.com/openshift/azure-disk-csi-driver/pull/21) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver/compare/c7c7188d259bb45decb8dd685798316f24faed19...f4bb81ea10d3c72f245c11ae99e9c5cddd2761a7) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/c9fa000ca7bccec9261f50b30cd9a9c826f48dde) * [OCPBUGS-20733](https://issues.redhat.com/browse/OCPBUGS-20733): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#104](https://github.com/openshift/azure-disk-csi-driver-operator/pull/104) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#96](https://github.com/openshift/azure-disk-csi-driver-operator/pull/96) * [OCPBUGS-7987](https://issues.redhat.com/browse/OCPBUGS-7987): Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars [#71](https://github.com/openshift/azure-disk-csi-driver-operator/pull/71) * Updating ose-azure-disk-csi-driver-operator images to be consistent with ART [#42](https://github.com/openshift/azure-disk-csi-driver-operator/pull/42) * [Bug 2095049](https://bugzilla.redhat.com/show_bug.cgi?id=2095049): Only use credentials that are provided by the azure-inject-credential… [#49](https://github.com/openshift/azure-disk-csi-driver-operator/pull/49) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#48](https://github.com/openshift/azure-disk-csi-driver-operator/pull/48) * Mark CSI StorageClass as the default one [#47](https://github.com/openshift/azure-disk-csi-driver-operator/pull/47) * [Bug 2062152](https://bugzilla.redhat.com/show_bug.cgi?id=2062152): Increase pod startup timeout in e2e tests [#45](https://github.com/openshift/azure-disk-csi-driver-operator/pull/45) * [Bug 2073373](https://bugzilla.redhat.com/show_bug.cgi?id=2073373): Sync cmdline arguments with upstream [#46](https://github.com/openshift/azure-disk-csi-driver-operator/pull/46) * Fix CSIDriver fsGroupPolicy [#44](https://github.com/openshift/azure-disk-csi-driver-operator/pull/44) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/35aa99d74d4fd34f2c4d7b1a73d09d90b7df6413...c9fa000ca7bccec9261f50b30cd9a9c826f48dde) ### [azure-file-csi-driver](https://github.com/openshift/azure-file-csi-driver/tree/c322c8f3392dcd6c978241adf75cc7a0e580a8e7) * [OCPBUGS-20822](https://issues.redhat.com/browse/OCPBUGS-20822): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#40](https://github.com/openshift/azure-file-csi-driver/pull/40) * [Bug 2080449](https://bugzilla.redhat.com/show_bug.cgi?id=2080449): UPSTREAM: 1023: add new option to allow VHD feature opt-out [#15](https://github.com/openshift/azure-file-csi-driver/pull/15) * Updating azure-file-csi-driver images to be consistent with ART [#14](https://github.com/openshift/azure-file-csi-driver/pull/14) * [Bug 2074282](https://bugzilla.redhat.com/show_bug.cgi?id=2074282): UPSTREAM: 978: chore: Update golang.org/x/crypto for CVE-2022-27191 [#13](https://github.com/openshift/azure-file-csi-driver/pull/13) * [Bug 2073436](https://bugzilla.redhat.com/show_bug.cgi?id=2073436): Update to v1.14.0 [#12](https://github.com/openshift/azure-file-csi-driver/pull/12) * Dockerfile should copy binary for the correct ARCH [#10](https://github.com/openshift/azure-file-csi-driver/pull/10) * build: set GOARCH appropriately [#9](https://github.com/openshift/azure-file-csi-driver/pull/9) * Updating azure-file-csi-driver images to be consistent with ART [#8](https://github.com/openshift/azure-file-csi-driver/pull/8) * [Full changelog](https://github.com/openshift/azure-file-csi-driver/compare/87b4a7182b596354458d22c02bf7c51566f695ed...c322c8f3392dcd6c978241adf75cc7a0e580a8e7) ### [azure-file-csi-driver-operator](https://github.com/openshift/azure-file-csi-driver-operator/tree/a5c172bdbe328e75192f7333369e74f5df2d6abb) * [OCPBUGS-20924](https://issues.redhat.com/browse/OCPBUGS-20924): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#79](https://github.com/openshift/azure-file-csi-driver-operator/pull/79) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#72](https://github.com/openshift/azure-file-csi-driver-operator/pull/72) * [Bug 2105972](https://bugzilla.redhat.com/show_bug.cgi?id=2105972): disable VHD disk feature [#35](https://github.com/openshift/azure-file-csi-driver-operator/pull/35) * [Bug 2099968](https://bugzilla.redhat.com/show_bug.cgi?id=2099968): Only use credentials that are provided by the azure-inject-credentials container [#32](https://github.com/openshift/azure-file-csi-driver-operator/pull/32) * [Bug 2092502](https://bugzilla.redhat.com/show_bug.cgi?id=2092502): Don't ship a StorageClass backed by NFS by default [#30](https://github.com/openshift/azure-file-csi-driver-operator/pull/30) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#27](https://github.com/openshift/azure-file-csi-driver-operator/pull/27) * Fix driver definition manifest: fsGroup is supported, snapshots are not [#28](https://github.com/openshift/azure-file-csi-driver-operator/pull/28) * Updating azure-file-csi-driver-operator images to be consistent with ART [#29](https://github.com/openshift/azure-file-csi-driver-operator/pull/29) * disable snapshots [#26](https://github.com/openshift/azure-file-csi-driver-operator/pull/26) * Updating azure-file-csi-driver-operator images to be consistent with ART [#25](https://github.com/openshift/azure-file-csi-driver-operator/pull/25) * [Full changelog](https://github.com/openshift/azure-file-csi-driver-operator/compare/3807eb37247bb9008d7e64c10e3bf6a3872d199d...a5c172bdbe328e75192f7333369e74f5df2d6abb) ### [azure-machine-controllers](https://github.com/openshift/machine-api-provider-azure/tree/b3c71cfab08545a4f095549afeb712bb25c4b2c4) * [OCPBUGS-20725](https://issues.redhat.com/browse/OCPBUGS-20725): Bump x/net package to v0.17.0 [#85](https://github.com/openshift/machine-api-provider-azure/pull/85) * [OCPBUGS-14012](https://issues.redhat.com/browse/OCPBUGS-14012): Add user defined tags to Azure NIC resources [#70](https://github.com/openshift/machine-api-provider-azure/pull/70) * [OCPBUGS-2123](https://issues.redhat.com/browse/OCPBUGS-2123): Fix availability sets unwanted creation for unknown vmSizes [#41](https://github.com/openshift/machine-api-provider-azure/pull/41) * [OCPBUGS-2501](https://issues.redhat.com/browse/OCPBUGS-2501): Update azure instance types cache [#37](https://github.com/openshift/machine-api-provider-azure/pull/37) * [Bug 2109487](https://bugzilla.redhat.com/show_bug.cgi?id=2109487): make Azure instance types case-insensitive [#29](https://github.com/openshift/machine-api-provider-azure/pull/29) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#26](https://github.com/openshift/machine-api-provider-azure/pull/26) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#21](https://github.com/openshift/machine-api-provider-azure/pull/21) * [Bug 2093044](https://bugzilla.redhat.com/show_bug.cgi?id=2093044): update getAvailabilitySetName function [#22](https://github.com/openshift/machine-api-provider-azure/pull/22) * Updating ose-machine-api-provider-azure images to be consistent with ART [#19](https://github.com/openshift/machine-api-provider-azure/pull/19) * [Bug 2085336](https://bugzilla.redhat.com/show_bug.cgi?id=2085336): Ignore unknown Instance types in accelerated networking check [#20](https://github.com/openshift/machine-api-provider-azure/pull/20) * Bump machine-api-operator to 25e61c2 [#18](https://github.com/openshift/machine-api-provider-azure/pull/18) * update azure instance types [#17](https://github.com/openshift/machine-api-provider-azure/pull/17) * Refactor provider status to use metav1.Condition [#16](https://github.com/openshift/machine-api-provider-azure/pull/16) * [Bug 2067798](https://bugzilla.redhat.com/show_bug.cgi?id=2067798): Bump prometheus/client_golang [#15](https://github.com/openshift/machine-api-provider-azure/pull/15) * Data Disks: add deletionPolicy logic [#14](https://github.com/openshift/machine-api-provider-azure/pull/14) * Implement Azure Ultra Disk (UltraSSD) support [#13](https://github.com/openshift/machine-api-provider-azure/pull/13) * Updating ose-machine-api-provider-azure images to be consistent with ART [#12](https://github.com/openshift/machine-api-provider-azure/pull/12) * [Full changelog](https://github.com/openshift/machine-api-provider-azure/compare/04ed0af96d9a8667360a911b5c760767c8a97f0a...b3c71cfab08545a4f095549afeb712bb25c4b2c4) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/080693d2736ac301bfebf09f83da79cc4cf902d8) * [OCPBUGS-23478](https://issues.redhat.com/browse/OCPBUGS-23478): Specify google cloud CLI to version 256.0.0 [#7747](https://github.com/openshift/installer/pull/7747) * [OCPBUGS-494](https://issues.redhat.com/browse/OCPBUGS-494): [release-4.11] Switch libvirt VM's to vnc graphic mode [#6252](https://github.com/openshift/installer/pull/6252) * [OCPBUGS-18545](https://issues.redhat.com/browse/OCPBUGS-18545): CORS-2445: GCP: Add osImage to the install config [#7468](https://github.com/openshift/installer/pull/7468) * [OCPBUGS-16779](https://issues.redhat.com/browse/OCPBUGS-16779): bump RHCOS 4.11 bootimage metadata to 411.86.202308081056-0 [#7424](https://github.com/openshift/installer/pull/7424) * [OCPBUGS-17246](https://issues.redhat.com/browse/OCPBUGS-17246): azurestack: do not use gen2 images [#7393](https://github.com/openshift/installer/pull/7393) * [OCPBUGS-16915](https://issues.redhat.com/browse/OCPBUGS-16915): [release-4.11] azure: skip LB creation when not needed [#7372](https://github.com/openshift/installer/pull/7372) * [OCPBUGS-16353](https://issues.redhat.com/browse/OCPBUGS-16353): ic: azure: validate diskTypes in AzureStack [#7341](https://github.com/openshift/installer/pull/7341) * [OCPBUGS-17002](https://issues.redhat.com/browse/OCPBUGS-17002): GCP: add europe-west12 region to the survey as supported region [#7377](https://github.com/openshift/installer/pull/7377) * [OCPBUGS-5708](https://issues.redhat.com/browse/OCPBUGS-5708): hold bootkube service until bootstrap has pivoted [#6759](https://github.com/openshift/installer/pull/6759) * [OCPBUGS-13104](https://issues.redhat.com/browse/OCPBUGS-13104): openstack: Add netcat to the Installer image [#7163](https://github.com/openshift/installer/pull/7163) * [OCPBUGS-14288](https://issues.redhat.com/browse/OCPBUGS-14288): baremetal: Extra time for provisioning interface [#7214](https://github.com/openshift/installer/pull/7214) * [OCPBUGS-12750](https://issues.redhat.com/browse/OCPBUGS-12750): [Alibaba] update the bandwidth value of EIP [#7132](https://github.com/openshift/installer/pull/7132) * [OCPBUGS-11663](https://issues.redhat.com/browse/OCPBUGS-11663): AWS - Remove ACLs from s3 ign [#7085](https://github.com/openshift/installer/pull/7085) * [OCPBUGS-10594](https://issues.redhat.com/browse/OCPBUGS-10594): [release-4.11] aws: bump aws-sdk-go version [#7000](https://github.com/openshift/installer/pull/7000) * [OCPBUGS-7530](https://issues.redhat.com/browse/OCPBUGS-7530): bump RHCOS 4.11 bootimage metadata [#6875](https://github.com/openshift/installer/pull/6875) * [OCPBUGS-5665](https://issues.redhat.com/browse/OCPBUGS-5665): CVE-2021-4238: goutils: update for randomness fix [#6765](https://github.com/openshift/installer/pull/6765) * [OCPBUGS-5422](https://issues.redhat.com/browse/OCPBUGS-5422): Switch back to gp2 ebs volume type for bootstrap instance [#6743](https://github.com/openshift/installer/pull/6743) * [OCPBUGS-4685](https://issues.redhat.com/browse/OCPBUGS-4685): out-of-bounds read in golang.org/x/text/language leads to DoS [#6685](https://github.com/openshift/installer/pull/6685) * [OCPBUGS-3193](https://issues.redhat.com/browse/OCPBUGS-3193): [release-4.11] [AWS] Add AWS r6i into tested instance types table [#6350](https://github.com/openshift/installer/pull/6350) * [OCPBUGS-3362](https://issues.redhat.com/browse/OCPBUGS-3362): bump RHCOS 4.11 bootimage metadata [#6720](https://github.com/openshift/installer/pull/6720) * [OCPBUGS-4720](https://issues.redhat.com/browse/OCPBUGS-4720): GCP: Add me-west1 region [#6690](https://github.com/openshift/installer/pull/6690) * [OCPBUGS-5078](https://issues.redhat.com/browse/OCPBUGS-5078): OpenStack: Force JSON content-type in Swift object listing [#6725](https://github.com/openshift/installer/pull/6725) * [OCPBUGS-4405](https://issues.redhat.com/browse/OCPBUGS-4405): UPI: Azure: create HyperV2 rhcos image [#6681](https://github.com/openshift/installer/pull/6681) * [OCPBUGS-4530](https://issues.redhat.com/browse/OCPBUGS-4530): Enable CVO unmanage overrides in bootstrap-in-place installations [#6668](https://github.com/openshift/installer/pull/6668) * [OCPBUGS-4398](https://issues.redhat.com/browse/OCPBUGS-4398): update golang.org/x/crypto [#6652](https://github.com/openshift/installer/pull/6652) * [OCPBUGS-3023](https://issues.redhat.com/browse/OCPBUGS-3023): GCP: Add missing regions [#6542](https://github.com/openshift/installer/pull/6542) * [OCPBUGS-4325](https://issues.redhat.com/browse/OCPBUGS-4325): gcp: fail during validation if service usage is not enabled [#6647](https://github.com/openshift/installer/pull/6647) * [OCPBUGS-4325](https://issues.redhat.com/browse/OCPBUGS-4325): Service Usage API is required, not optional [#6642](https://github.com/openshift/installer/pull/6642) * [OCPBUGS-4081](https://issues.redhat.com/browse/OCPBUGS-4081): OpenStack: Force JSON content-type in Swift [#6625](https://github.com/openshift/installer/pull/6625) * [Bug 2105331](https://bugzilla.redhat.com/show_bug.cgi?id=2105331): Switch to perform normal marshalling with unknown fields [#6102](https://github.com/openshift/installer/pull/6102) * [OCPBUGS-378](https://issues.redhat.com/browse/OCPBUGS-378): UPI image download govc rate limit failure [#6246](https://github.com/openshift/installer/pull/6246) * [OCPBUGS-2983](https://issues.redhat.com/browse/OCPBUGS-2983): Azure: Fix DiskEncryptionSet regex validation [#6537](https://github.com/openshift/installer/pull/6537) * [OCPBUGS-1346](https://issues.redhat.com/browse/OCPBUGS-1346): OpenStack UPI: Create server group for Computes [#6351](https://github.com/openshift/installer/pull/6351) * [Bug 2101015](https://bugzilla.redhat.com/show_bug.cgi?id=2101015): go getter update for terraform & terraform providers [#6411](https://github.com/openshift/installer/pull/6411) * [OCPBUGS-1242](https://issues.redhat.com/browse/OCPBUGS-1242): Add PowerVS zone mon01 support [#6341](https://github.com/openshift/installer/pull/6341) * [OCPBUGS-536](https://issues.redhat.com/browse/OCPBUGS-536): vSphere - enable steal time accounting [#6260](https://github.com/openshift/installer/pull/6260) * BUG 2117368: Add AWS S3 Bucket Permissions [#6216](https://github.com/openshift/installer/pull/6216) * [OCPBUGS-1876](https://issues.redhat.com/browse/OCPBUGS-1876): download 'aliyun' [#6377](https://github.com/openshift/installer/pull/6377) * [OCPBUGS-562](https://issues.redhat.com/browse/OCPBUGS-562): bump RHCOS 4.11 bootimage metadata [#6459](https://github.com/openshift/installer/pull/6459) * [OCPBUGS-1349](https://issues.redhat.com/browse/OCPBUGS-1349): OpenStack: Lift validation for 14 chars cluster names [#6355](https://github.com/openshift/installer/pull/6355) * [Bug 2107153](https://bugzilla.redhat.com/show_bug.cgi?id=2107153): Make azure baseDomainResoureGroup optional for private c… [#6119](https://github.com/openshift/installer/pull/6119) * [OCPBUGS-759](https://issues.redhat.com/browse/OCPBUGS-759): Extend user tags limit to 25 based on AWS limits for 4.11 release [#6303](https://github.com/openshift/installer/pull/6303) * Revert "[release-4.11] OCPBUGS-1157: Add depends to enforce order for azure terraform dependencies" [#6344](https://github.com/openshift/installer/pull/6344) * [OCPBUGS-1157](https://issues.redhat.com/browse/OCPBUGS-1157): Add depends to enforce order for azure terraform dependencies [#6333](https://github.com/openshift/installer/pull/6333) * [OCPBUGS-455](https://issues.redhat.com/browse/OCPBUGS-455): vsphere: fix default disk type when not speficied [#6256](https://github.com/openshift/installer/pull/6256) * [Bug 2104825](https://bugzilla.redhat.com/show_bug.cgi?id=2104825): Remove unnecessary SG rule [#6092](https://github.com/openshift/installer/pull/6092) * [Bug 2112928](https://bugzilla.redhat.com/show_bug.cgi?id=2112928): Fix validation errors for instance type [#6190](https://github.com/openshift/installer/pull/6190) * [OCPBUGS-433](https://issues.redhat.com/browse/OCPBUGS-433): nutanix: allow creating manifests without Prism Central connection [#6251](https://github.com/openshift/installer/pull/6251) * [Bug 2115807](https://bugzilla.redhat.com/show_bug.cgi?id=2115807): data/data/coreos: update FCOS to 36.20220716.3.1 [#6204](https://github.com/openshift/installer/pull/6204) * [Bug 2117279](https://bugzilla.redhat.com/show_bug.cgi?id=2117279): bump RHCOS 4.11 bootimage metadata [#6226](https://github.com/openshift/installer/pull/6226) * [OCPBUGS-365](https://issues.redhat.com/browse/OCPBUGS-365): Updating ose-baremetal-installer images to be consistent with ART [#5897](https://github.com/openshift/installer/pull/5897) * [Bug 2118514](https://bugzilla.redhat.com/show_bug.cgi?id=2118514): [4.11] Download yq in upi installer containers [#6225](https://github.com/openshift/installer/pull/6225) * [Bug 2106014](https://bugzilla.redhat.com/show_bug.cgi?id=2106014): Allow setting bootstrap kubelet ip [#6110](https://github.com/openshift/installer/pull/6110) * Updating ose-installer-artifacts images to be consistent with ART [#5951](https://github.com/openshift/installer/pull/5951) * [Bug 2110482](https://bugzilla.redhat.com/show_bug.cgi?id=2110482): vsphere installconfig: use full dc path in network validation [#6160](https://github.com/openshift/installer/pull/6160) * [Bug 2106062](https://bugzilla.redhat.com/show_bug.cgi?id=2106062): bump RHCOS 4.11 bootimage metadata [#6130](https://github.com/openshift/installer/pull/6130) * BUG 2104906: destroy/gcp: Use min length for destroying disks [#6094](https://github.com/openshift/installer/pull/6094) * [Bug 2104727](https://bugzilla.redhat.com/show_bug.cgi?id=2104727): Fixes CFE-489 - AWS installer should go through proxy for s3 bootstrap ignition call [#6090](https://github.com/openshift/installer/pull/6090) * [Bug 2093126](https://bugzilla.redhat.com/show_bug.cgi?id=2093126): bump RHCOS 4.11 boot image metadata [#6060](https://github.com/openshift/installer/pull/6060) * [Bug 2100841](https://bugzilla.redhat.com/show_bug.cgi?id=2100841): Print the "export KUBECONFIG=..." command on its own line for easier cut-and-paste [#6018](https://github.com/openshift/installer/pull/6018) * [Bug 1997704](https://bugzilla.redhat.com/show_bug.cgi?id=1997704): [OpenStack] Document in-tree limitation for external LBs [#6033](https://github.com/openshift/installer/pull/6033) * [Bug 2100496](https://bugzilla.redhat.com/show_bug.cgi?id=2100496): oVirt VM creation fails on empty affinity group description [#6044](https://github.com/openshift/installer/pull/6044) * [Bug 2064693](https://bugzilla.redhat.com/show_bug.cgi?id=2064693): Restore ability to use local clouds.yaml [#5947](https://github.com/openshift/installer/pull/5947) * [Bug 2047732](https://bugzilla.redhat.com/show_bug.cgi?id=2047732): [IBM]Volume is not deleted after destroy cluster [#5962](https://github.com/openshift/installer/pull/5962) * [Bug 2076646](https://bugzilla.redhat.com/show_bug.cgi?id=2076646): destroy/gcp: Disk names are filtered using kubernetes name format [#5976](https://github.com/openshift/installer/pull/5976) * [Bug 2095226](https://bugzilla.redhat.com/show_bug.cgi?id=2095226): Added changes to verify cloud connection and dhcp serviceinstance details of a powervs instance [#5899](https://github.com/openshift/installer/pull/5899) * [Bug 2097940](https://bugzilla.redhat.com/show_bug.cgi?id=2097940): PowerVS: Handle optional VPCRegion [#6020](https://github.com/openshift/installer/pull/6020) * [Bug 2082283](https://bugzilla.redhat.com/show_bug.cgi?id=2082283): Transition to the oVirt Terraform provider v2 [#5867](https://github.com/openshift/installer/pull/5867) * [Bug 2096905](https://bugzilla.redhat.com/show_bug.cgi?id=2096905): Swap Nutanix Prism Client [#6002](https://github.com/openshift/installer/pull/6002) * [Bug 2094694](https://bugzilla.redhat.com/show_bug.cgi?id=2094694): Nutanix cluster name validation [#5991](https://github.com/openshift/installer/pull/5991) * [Bug 2098243](https://bugzilla.redhat.com/show_bug.cgi?id=2098243): Adding error handling to powervs platform [#5958](https://github.com/openshift/installer/pull/5958) * [Bug 2096605](https://bugzilla.redhat.com/show_bug.cgi?id=2096605): vsphere: validate diskType if supplied [#6019](https://github.com/openshift/installer/pull/6019) * [Bug 2049108](https://bugzilla.redhat.com/show_bug.cgi?id=2049108): Fix network interface not found error [#6016](https://github.com/openshift/installer/pull/6016) * [Bug 2097260](https://bugzilla.redhat.com/show_bug.cgi?id=2097260): Fixes openshift-install create manifest failure of Power VS Platform [#6007](https://github.com/openshift/installer/pull/6007) * [Bug 2092107](https://bugzilla.redhat.com/show_bug.cgi?id=2092107): Re-add Power VS install-config DNS validation tests [#5938](https://github.com/openshift/installer/pull/5938) * [Bug 2092296](https://bugzilla.redhat.com/show_bug.cgi?id=2092296): Changed DefaultMachineCIDR of PowerVS to 192.168.0.0/16 [#5940](https://github.com/openshift/installer/pull/5940) * [Bug 2097239](https://bugzilla.redhat.com/show_bug.cgi?id=2097239): Changed Lower limits of CPU for PowerVS Cloud [#5929](https://github.com/openshift/installer/pull/5929) * [Bug 2090816](https://bugzilla.redhat.com/show_bug.cgi?id=2090816): Increase bootstrap timeout, not k8s API timeout [#6010](https://github.com/openshift/installer/pull/6010) * [Bug 2095917](https://bugzilla.redhat.com/show_bug.cgi?id=2095917): Nutanix set osDisk with diskSizeGB rather than diskSizeMiB [#5998](https://github.com/openshift/installer/pull/5998) * [Bug 1859153](https://bugzilla.redhat.com/show_bug.cgi?id=1859153): IAM instance profile race condition [#5982](https://github.com/openshift/installer/pull/5982) * OWNERS_ALIASES: update coreos aliases [#5989](https://github.com/openshift/installer/pull/5989) * [Bug 2096352](https://bugzilla.redhat.com/show_bug.cgi?id=2096352): Collect whole journal and netstat data [#5988](https://github.com/openshift/installer/pull/5988) * [Bug 2090816](https://bugzilla.redhat.com/show_bug.cgi?id=2090816): baremetal: wait longer for bootstrap to complete [#5981](https://github.com/openshift/installer/pull/5981) * baremetal: static IP for bootstrap node [#5787](https://github.com/openshift/installer/pull/5787) * [Bug 2068180](https://bugzilla.redhat.com/show_bug.cgi?id=2068180): update doc for DNS and disconnected clusters [#5974](https://github.com/openshift/installer/pull/5974) * [Bug 2090049](https://bugzilla.redhat.com/show_bug.cgi?id=2090049): GCP Destroy resources that are owned by cluster [#5965](https://github.com/openshift/installer/pull/5965) * [Bug 2094902](https://bugzilla.redhat.com/show_bug.cgi?id=2094902): Simplify cross-compiling [#5905](https://github.com/openshift/installer/pull/5905) * [Bug 2085336](https://bugzilla.redhat.com/show_bug.cgi?id=2085336): based on 4.11 CORS-1916 add the vm family [#5913](https://github.com/openshift/installer/pull/5913) * [Bug 2089563](https://bugzilla.redhat.com/show_bug.cgi?id=2089563): Use Power VS machine provider spec from openshift/api [#5873](https://github.com/openshift/installer/pull/5873) * [Bug 2093368](https://bugzilla.redhat.com/show_bug.cgi?id=2093368): OpenStack: Fix LoadBalancer FIP deletion on destroy [#5964](https://github.com/openshift/installer/pull/5964) * [Bug 2057582](https://bugzilla.redhat.com/show_bug.cgi?id=2057582): Remove all occurances of packet_device from upi/metal [#5969](https://github.com/openshift/installer/pull/5969) * [Bug 2057582](https://bugzilla.redhat.com/show_bug.cgi?id=2057582): For metal upi update source and versions of terraform providers [#5941](https://github.com/openshift/installer/pull/5941) * BUG 2075459: IOPS was not being set even when manually configured [#5925](https://github.com/openshift/installer/pull/5925) * [Bug 2084280](https://bugzilla.redhat.com/show_bug.cgi?id=2084280): Remove optional services from permissions check [#5915](https://github.com/openshift/installer/pull/5915) * [Bug 2085380](https://bugzilla.redhat.com/show_bug.cgi?id=2085380): azure: validate VM image and instance HyperV gen match [#5918](https://github.com/openshift/installer/pull/5918) * [Bug 2084580](https://bugzilla.redhat.com/show_bug.cgi?id=2084580): Add check to validate cluster name for dots [#5931](https://github.com/openshift/installer/pull/5931) * [Bug 2086791](https://bugzilla.redhat.com/show_bug.cgi?id=2086791): Azure: validate ultrassd instance types in multi-zone regions [#5937](https://github.com/openshift/installer/pull/5937) * [Bug 2090487](https://bugzilla.redhat.com/show_bug.cgi?id=2090487): SNO network type update [#5927](https://github.com/openshift/installer/pull/5927) * Updating ose-installer images to be consistent with ART [#5950](https://github.com/openshift/installer/pull/5950) * Updating ose-installer-artifacts images to be consistent with ART [#5908](https://github.com/openshift/installer/pull/5908) * [Bug 2085187](https://bugzilla.redhat.com/show_bug.cgi?id=2085187): terraform: revendor golang.org/x/sys [#5896](https://github.com/openshift/installer/pull/5896) * [Bug 2088660](https://bugzilla.redhat.com/show_bug.cgi?id=2088660): Fix for absence folder for bootstrap ignition iso [#5935](https://github.com/openshift/installer/pull/5935) * [Bug 2089682](https://bugzilla.redhat.com/show_bug.cgi?id=2089682): Ensure Presence of Overlay networks in cluster is handled gracefully [#5939](https://github.com/openshift/installer/pull/5939) * [Bug 1965468](https://bugzilla.redhat.com/show_bug.cgi?id=1965468): Revert "Bug 1909136: OpenStack: delete volume snapshots" [#5923](https://github.com/openshift/installer/pull/5923) * [Bug 1969794](https://bugzilla.redhat.com/show_bug.cgi?id=1969794): Correct typo [#5922](https://github.com/openshift/installer/pull/5922) * [Bug 2084441](https://bugzilla.redhat.com/show_bug.cgi?id=2084441): azure: proper premiumIO validation message [#5924](https://github.com/openshift/installer/pull/5924) * [Bug 2078431](https://bugzilla.redhat.com/show_bug.cgi?id=2078431): Set TF_DATA_DIR to the Terraform Dir. [#5864](https://github.com/openshift/installer/pull/5864) * [Bug 2086718](https://bugzilla.redhat.com/show_bug.cgi?id=2086718): Add destroy cluster support for PowerVS [#5737](https://github.com/openshift/installer/pull/5737) * [Bug 2086936](https://bugzilla.redhat.com/show_bug.cgi?id=2086936): vSphere: change socket back to cores [#5914](https://github.com/openshift/installer/pull/5914) * [Bug 2086056](https://bugzilla.redhat.com/show_bug.cgi?id=2086056): openstack: add doc for OVS HW offload [#5886](https://github.com/openshift/installer/pull/5886) * [Bug 2065893](https://bugzilla.redhat.com/show_bug.cgi?id=2065893): bump RHCOS 4.11 bootimage metadata [#5887](https://github.com/openshift/installer/pull/5887) * [Bug 2085721](https://bugzilla.redhat.com/show_bug.cgi?id=2085721): Fix name for customization controller image [#5909](https://github.com/openshift/installer/pull/5909) * Power VS: Use bucket name from coreos stream rather than inferring it [#5782](https://github.com/openshift/installer/pull/5782) * Increase Unit Testing Coverage of AWS Install Config to Include ValidateForProvisioning [#5791](https://github.com/openshift/installer/pull/5791) * Added changes for validating the IBM Account Type for Provisioning Power VS resources [#5734](https://github.com/openshift/installer/pull/5734) * Updating ose-installer images to be consistent with ART [#5895](https://github.com/openshift/installer/pull/5895) * [AGENT-40](https://issues.redhat.com/browse/AGENT-40): allow reading cert keys [#5872](https://github.com/openshift/installer/pull/5872) * Power VS: Separating bootstrap resources to own stage for clean destroy [#5901](https://github.com/openshift/installer/pull/5901) * Aws console logs [#5807](https://github.com/openshift/installer/pull/5807) * GCP: Revert Instance Type from N2 to N1 [#5898](https://github.com/openshift/installer/pull/5898) * Dynamic retrieval of GCP Regions for a Project [#5815](https://github.com/openshift/installer/pull/5815) * Update to Golang v1.17 [#5870](https://github.com/openshift/installer/pull/5870) * azure: move zones functionality to the client API [#5844](https://github.com/openshift/installer/pull/5844) * azure: validation: dedup getting the capabilities [#5893](https://github.com/openshift/installer/pull/5893) * update azure arm templates to support customer provided vnet [#5880](https://github.com/openshift/installer/pull/5880) * machines: Set defaults for machine instance types [#5841](https://github.com/openshift/installer/pull/5841) * Azure Provider: fix vmNetworkType defaults by checking vm capabilities [#5846](https://github.com/openshift/installer/pull/5846) * OpenStack: fix SR-IOV documentation TOC [#5881](https://github.com/openshift/installer/pull/5881) * [Bug 2078875](https://bugzilla.redhat.com/show_bug.cgi?id=2078875): Delete all the ports from tagged Neutron networks. [#5838](https://github.com/openshift/installer/pull/5838) * [Bug 2082604](https://bugzilla.redhat.com/show_bug.cgi?id=2082604): Revert "image: set os name to red-coreos-stable-amd64" [#5869](https://github.com/openshift/installer/pull/5869) * openstack: Add the Kuryr squad as approvers [#5866](https://github.com/openshift/installer/pull/5866) * Update template for CloudProviderConfig [#5875](https://github.com/openshift/installer/pull/5875) * Bump Azure Stack Terraform Provider for Go 1.18 [#5865](https://github.com/openshift/installer/pull/5865) * Add -n argument to copy network config from install environment to install-to-disk.sh.template [#5795](https://github.com/openshift/installer/pull/5795) * Update SR-IOV & DPDK doc for OpenStack [#5712](https://github.com/openshift/installer/pull/5712) * [Bug 2080054](https://bugzilla.redhat.com/show_bug.cgi?id=2080054): Add 'ARG TAGS=""' line for each build step [#5794](https://github.com/openshift/installer/pull/5794) * Pull the OS Image for Nutanix via URL [#5868](https://github.com/openshift/installer/pull/5868) * Power VS: fix terraform vars [#5863](https://github.com/openshift/installer/pull/5863) * Update TF Provider Version to 1.40.1 [#5862](https://github.com/openshift/installer/pull/5862) * Use neutral pronoun in doc. [#5384](https://github.com/openshift/installer/pull/5384) * Change the default machine pool config for Nutanix [#5857](https://github.com/openshift/installer/pull/5857) * [Bug 2074210](https://bugzilla.redhat.com/show_bug.cgi?id=2074210): Add new Regions to the GCP Installer configuration list [#5811](https://github.com/openshift/installer/pull/5811) * Update os name to correct value [#5860](https://github.com/openshift/installer/pull/5860) * Update the comment explaining vCPUs on Nutanix [#5859](https://github.com/openshift/installer/pull/5859) * [Bug 2064170](https://bugzilla.redhat.com/show_bug.cgi?id=2064170): Fixed duplicate strings in explain [#5836](https://github.com/openshift/installer/pull/5836) * [Bug 2077662](https://bugzilla.redhat.com/show_bug.cgi?id=2077662): Fix AWS Platform Provisioning Check [#5831](https://github.com/openshift/installer/pull/5831) * Support RAID and BIOS configuration for master nodes of baremetal IPI deployments [#5196](https://github.com/openshift/installer/pull/5196) * Power VS: Create Remaining TF Resources [#5780](https://github.com/openshift/installer/pull/5780) * Handle the mapi-provider-nutanix types moving to openshift/api [#5812](https://github.com/openshift/installer/pull/5812) * vsphere: upi ignition leak [#5850](https://github.com/openshift/installer/pull/5850) * vSphere: ignore bootstrap eagerly scrub changes [#5848](https://github.com/openshift/installer/pull/5848) * [Bug 2078895](https://bugzilla.redhat.com/show_bug.cgi?id=2078895): ovirt: fixing incorrect 'format' value validation [#5847](https://github.com/openshift/installer/pull/5847) * vsphere upi: missing etc resolv [#5842](https://github.com/openshift/installer/pull/5842) * vsphere: remove unused namer interface [#5824](https://github.com/openshift/installer/pull/5824) * [Bug 2029438](https://bugzilla.redhat.com/show_bug.cgi?id=2029438): Set rc-manager=unmanaged on baremetal bootstrap [#5482](https://github.com/openshift/installer/pull/5482) * Unpack to install dir [#5825](https://github.com/openshift/installer/pull/5825) * baremetal: remove redundant proxy setting [#5598](https://github.com/openshift/installer/pull/5598) * Determine Nic name in Bootstrap VM for ARM and x86 [#5698](https://github.com/openshift/installer/pull/5698) * Add bootstrap directory for Nutanix platform [#5828](https://github.com/openshift/installer/pull/5828) * Provider Azure: Enable accelerated networking on control plane nodes [#5309](https://github.com/openshift/installer/pull/5309) * Ensure that the /bin/terraform-provider-matchbox binary is present [#5829](https://github.com/openshift/installer/pull/5829) * [Bug 2074659](https://bugzilla.redhat.com/show_bug.cgi?id=2074659): Fix empty string usage in ValidateForProvisioning [#5801](https://github.com/openshift/installer/pull/5801) * vsphere: upi, use community ignition provider [#5808](https://github.com/openshift/installer/pull/5808) * [Bug 2076393](https://bugzilla.redhat.com/show_bug.cgi?id=2076393): vsphere: no longer logout of platform client before finished [#5818](https://github.com/openshift/installer/pull/5818) * [Bug 2076880](https://bugzilla.redhat.com/show_bug.cgi?id=2076880): for vsphere ipi add cluster domain to the uploaded vm configs so that 30-local-dns-prepender can use it [#5788](https://github.com/openshift/installer/pull/5788) * Ensure Nutanix API VIP is populated in the SAN for the MCS Cert [#5821](https://github.com/openshift/installer/pull/5821) * [Bug 2048451](https://bugzilla.redhat.com/show_bug.cgi?id=2048451): Fix proxy dial to pick all proxies [#5743](https://github.com/openshift/installer/pull/5743) * update the vm types OCPQE-8674 [#5704](https://github.com/openshift/installer/pull/5704) * data/bootstrap/files/usr/local/bin/bootkube: --rm all Podman containers [#5803](https://github.com/openshift/installer/pull/5803) * libvirt: use el8 repo for Google Cloud SDK [#5467](https://github.com/openshift/installer/pull/5467) * AWS IMDSv2 support [#5793](https://github.com/openshift/installer/pull/5793) * [Bug 2075873](https://bugzilla.redhat.com/show_bug.cgi?id=2075873): data/data/coreos/fcos.json: update initial FCOS to 35.20220327.3.0 [#5817](https://github.com/openshift/installer/pull/5817) * Changing the machine-config service name [#5707](https://github.com/openshift/installer/pull/5707) * Ensure ignition host is set to API VIP for Nutanix platform [#5813](https://github.com/openshift/installer/pull/5813) * Add Power VS-specific fields to cloud-provider config [#5809](https://github.com/openshift/installer/pull/5809) * Check for CVO failing condition before exiting as success [#5745](https://github.com/openshift/installer/pull/5745) * Add in-repo documentation for user-selectable capabilities [#5732](https://github.com/openshift/installer/pull/5732) * vSphere session cleanup [#5796](https://github.com/openshift/installer/pull/5796) * Power VS: Add basic install-config validation [#5779](https://github.com/openshift/installer/pull/5779) * Adding public&private zones to DNS config on PowerVS [#5749](https://github.com/openshift/installer/pull/5749) * Revert "cluster: unpack terraform binaries into install directory" [#5810](https://github.com/openshift/installer/pull/5810) * [Bug 2064170](https://bugzilla.redhat.com/show_bug.cgi?id=2064170): Fixed Azure punctuation installconfig.controlPlane.platf… [#5802](https://github.com/openshift/installer/pull/5802) * Repin libvirt-version [#5797](https://github.com/openshift/installer/pull/5797) * Add IBM Power VS: tf data [#5614](https://github.com/openshift/installer/pull/5614) * cluster: unpack terraform binaries into install directory [#5715](https://github.com/openshift/installer/pull/5715) * azure: Enable HyperVGeneration setting for Azure disks [#5721](https://github.com/openshift/installer/pull/5721) * pkg/destroy/aws: Log unfiltered pagination [#5775](https://github.com/openshift/installer/pull/5775) * terraform: fix module name of terraform providers [#5727](https://github.com/openshift/installer/pull/5727) * remove platform.azure.osDisk [#5785](https://github.com/openshift/installer/pull/5785) * Lower severity of ListAWSDefaultServiceQuotas warning msg [#5747](https://github.com/openshift/installer/pull/5747) * images: Update terraform version in UPI image [#5762](https://github.com/openshift/installer/pull/5762) * [Bug 2033482](https://bugzilla.redhat.com/show_bug.cgi?id=2033482): vsphere: ensure terraform variables are defined [#5778](https://github.com/openshift/installer/pull/5778) * Add VolumeID testscases for Power VS machinepool [#5742](https://github.com/openshift/installer/pull/5742) * Power VS quota asset [#5748](https://github.com/openshift/installer/pull/5748) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Set single-node none-platform clusters Ingress `DefaultPlacement` to `ControlPlane` [#5746](https://github.com/openshift/installer/pull/5746) * Added platform validation testcases for IBM PowerVS platform [#5708](https://github.com/openshift/installer/pull/5708) * Add cluster destroy logic for Nutanix clusters [#5638](https://github.com/openshift/installer/pull/5638) * Add IBM Power VS: tfvars [#5615](https://github.com/openshift/installer/pull/5615) * pkg/asset/manifests/operators: Set kubernetes.io/description for cluster-config-v1 [#5783](https://github.com/openshift/installer/pull/5783) * Updating ose-baremetal-installer images to be consistent with ART [#5590](https://github.com/openshift/installer/pull/5590) * Add exit code for infra, bootstrip and install failures [#5702](https://github.com/openshift/installer/pull/5702) * Bootstrap-in-place ignition creation should also create a `worker.ign` file [#5786](https://github.com/openshift/installer/pull/5786) * Remove defaultStorageContainer from nutanix platform installconfig [#5784](https://github.com/openshift/installer/pull/5784) * Update installconfig validation for Nutanix [#5781](https://github.com/openshift/installer/pull/5781) * Re-update BMO vendor to use ipxe for iRMC [#5662](https://github.com/openshift/installer/pull/5662) * [Bug 2038774](https://bugzilla.redhat.com/show_bug.cgi?id=2038774): [IBM] add IPsec IKE UDP ports 500, 4500 to security group [#5539](https://github.com/openshift/installer/pull/5539) * Update declarative assets for Nutanix [#5636](https://github.com/openshift/installer/pull/5636) * [Bug 2056460](https://bugzilla.redhat.com/show_bug.cgi?id=2056460): Preallocated disks for OCP nodes on oVirt [#5594](https://github.com/openshift/installer/pull/5594) * gather: collect sssd journal logs [#5771](https://github.com/openshift/installer/pull/5771) * Add nutanix-specific terraform variables [#5637](https://github.com/openshift/installer/pull/5637) * Removing no-longer-needed DNS etcd stuff [#5764](https://github.com/openshift/installer/pull/5764) * Add nutanix-specific customizations to installconfig [#5633](https://github.com/openshift/installer/pull/5633) * Update default releaseimage to 4.11 [#5774](https://github.com/openshift/installer/pull/5774) * collect machine state in bootstrap gather [#5770](https://github.com/openshift/installer/pull/5770) * Refactor UltraSSD tfvars [#5757](https://github.com/openshift/installer/pull/5757) * [Bug 1918005](https://bugzilla.redhat.com/show_bug.cgi?id=1918005): vsphere: Use Managed Object ID for networks instead of potentially duplicate name. [#5673](https://github.com/openshift/installer/pull/5673) * Azure: validate UltraSSD instance types [#5759](https://github.com/openshift/installer/pull/5759) * OWNERS_ALIASES: Update current installer team [#5766](https://github.com/openshift/installer/pull/5766) * Validate disk encryption sets [#5692](https://github.com/openshift/installer/pull/5692) * vendor: update api to latest version to use AzureUltraSSDCapabilityEnabled [#5756](https://github.com/openshift/installer/pull/5756) * vsphere: make cluster destroy more resilient to api failures [#5556](https://github.com/openshift/installer/pull/5556) * [Bug 2061891](https://bugzilla.redhat.com/show_bug.cgi?id=2061891): IBMCloud: Add br-sao region to static list [#5760](https://github.com/openshift/installer/pull/5760) * Add Nutanix-specific customizations to manifests [#5631](https://github.com/openshift/installer/pull/5631) * terraform: add terraform verification to ./hack/verify-vendor.sh [#5675](https://github.com/openshift/installer/pull/5675) * Add nutanix-specific customizaitons to machines [#5632](https://github.com/openshift/installer/pull/5632) * [Bug 2047935](https://bugzilla.redhat.com/show_bug.cgi?id=2047935): bump RHCOS 4.11 bootimage metadata [#5729](https://github.com/openshift/installer/pull/5729) * [Bug 2066463](https://bugzilla.redhat.com/show_bug.cgi?id=2066463): IBMCloud: Patch IBM client auth [#5736](https://github.com/openshift/installer/pull/5736) * [Bug 2062998](https://bugzilla.redhat.com/show_bug.cgi?id=2062998): Update region check for coreos AMIs [#5731](https://github.com/openshift/installer/pull/5731) * terraform: compress provider binaries faster [#5739](https://github.com/openshift/installer/pull/5739) * Add nutanix-specific customizations for assorted assets [#5634](https://github.com/openshift/installer/pull/5634) * [Bug 2048067](https://bugzilla.redhat.com/show_bug.cgi?id=2048067): [Alibaba] fix location service endpoint [#5664](https://github.com/openshift/installer/pull/5664) * [Bug 2060687](https://bugzilla.redhat.com/show_bug.cgi?id=2060687): terraform: fix setting of zone in load balancers for non-zonal azure regions [#5684](https://github.com/openshift/installer/pull/5684) * Doc: Update VIP number to 2 [#5599](https://github.com/openshift/installer/pull/5599) * Updating ose-installer-artifacts images to be consistent with ART [#5591](https://github.com/openshift/installer/pull/5591) * Add the terraform plugin for Nutanix [#5635](https://github.com/openshift/installer/pull/5635) * Add IBM Power VS: cluster assets [#5651](https://github.com/openshift/installer/pull/5651) * AlibabaCloud: fix for bootstrap teardown removing slb backends [#5682](https://github.com/openshift/installer/pull/5682) * Use powervs NewClient in GetDNSZone [#5723](https://github.com/openshift/installer/pull/5723) * vsphereprivate: update to v2 terraform sdk [#5716](https://github.com/openshift/installer/pull/5716) * [Bug 2064969](https://bugzilla.redhat.com/show_bug.cgi?id=2064969): terraform: upgrade aws provider to v4.5.0 [#5719](https://github.com/openshift/installer/pull/5719) * Revert "Merge pull request #5665 from r4f4/azure-azid-adapter" [#5722](https://github.com/openshift/installer/pull/5722) * vendor: upgrade aws sdk to v1.43.19 [#5710](https://github.com/openshift/installer/pull/5710) * Azure: Add ultraSSDCapability to control plane instances. [#5701](https://github.com/openshift/installer/pull/5701) * [Bug 2061549](https://bugzilla.redhat.com/show_bug.cgi?id=2061549): azurestack: create the api DNS record when publishing internally [#5691](https://github.com/openshift/installer/pull/5691) * Set ignition string to sensitive [#5720](https://github.com/openshift/installer/pull/5720) * [Bug 2047670](https://bugzilla.redhat.com/show_bug.cgi?id=2047670): aws: remove validation check for internal publish strategy [#5695](https://github.com/openshift/installer/pull/5695) * baremetal: refresh owners list [#5713](https://github.com/openshift/installer/pull/5713) * include conn timed out err for bootstrap collection [#5677](https://github.com/openshift/installer/pull/5677) * Bump gophercloud [#5686](https://github.com/openshift/installer/pull/5686) * Add Nutanix-specific platform types [#5603](https://github.com/openshift/installer/pull/5603) * vSphere: Update terraform provider to current upstream [#5694](https://github.com/openshift/installer/pull/5694) * Add IBM Power VS: machine assets [#5611](https://github.com/openshift/installer/pull/5611) * [Bug 2060617](https://bugzilla.redhat.com/show_bug.cgi?id=2060617): fix(ibmcloud): Properly match regex for DNS destroy [#5679](https://github.com/openshift/installer/pull/5679) * Add IBM Power VS: manifest assets [#5610](https://github.com/openshift/installer/pull/5610) * Azure azidentity adapter [#5665](https://github.com/openshift/installer/pull/5665) * Validate BMC driver supported and requires provisioning network [#5458](https://github.com/openshift/installer/pull/5458) * terraform: build binaries on go.mod changes [#5672](https://github.com/openshift/installer/pull/5672) * Add IBM Power VS: installconfig assets [#5612](https://github.com/openshift/installer/pull/5612) * Add VPCRegionForPowerVSRegion function [#5700](https://github.com/openshift/installer/pull/5700) * Azure disk encryption support [#5641](https://github.com/openshift/installer/pull/5641) * [Bug 2060508](https://bugzilla.redhat.com/show_bug.cgi?id=2060508): azurestack: fix backend address pools for internal publishing [#5678](https://github.com/openshift/installer/pull/5678) * azure/validation: Skip "resource group empty" check for ARO [#5330](https://github.com/openshift/installer/pull/5330) * [Bug 2061527](https://bugzilla.redhat.com/show_bug.cgi?id=2061527): IBMCloud: Missing infra providertype [#5687](https://github.com/openshift/installer/pull/5687) * [Bug 2061544](https://bugzilla.redhat.com/show_bug.cgi?id=2061544): azurestack: stop pinning to Standard_LRS for disk type [#5688](https://github.com/openshift/installer/pull/5688) * [Bug 2060970](https://bugzilla.redhat.com/show_bug.cgi?id=2060970): data/data/coreos/fcos.json: update initial FCOS to 35.20220213.3.0 [#5680](https://github.com/openshift/installer/pull/5680) * doc: terraform maintenance document [#5670](https://github.com/openshift/installer/pull/5670) * Updating ose-installer images to be consistent with ART [#5589](https://github.com/openshift/installer/pull/5589) * remove stray tmp/simple_log.log file [#5606](https://github.com/openshift/installer/pull/5606) * GCP may also return Forbidden status when trying to check quotas [#5649](https://github.com/openshift/installer/pull/5649) * [Bug 2026356](https://bugzilla.redhat.com/show_bug.cgi?id=2026356): Fix bootstrap disk instance type [#5515](https://github.com/openshift/installer/pull/5515) * [Bug 2034147](https://bugzilla.redhat.com/show_bug.cgi?id=2034147): Validate num cores with vcpus [#5656](https://github.com/openshift/installer/pull/5656) * [Bug 2059213](https://bugzilla.redhat.com/show_bug.cgi?id=2059213): build all terraform providers and terraform binary locally [#5666](https://github.com/openshift/installer/pull/5666) * Add IBM Power VS: types [#5609](https://github.com/openshift/installer/pull/5609) * point 06_workers.json to azurestack version [#5661](https://github.com/openshift/installer/pull/5661) * [Bug 2021041](https://bugzilla.redhat.com/show_bug.cgi?id=2021041): vsphere: Not found TagCategory when destroying ipi cluster [#5558](https://github.com/openshift/installer/pull/5558) * Render the CVO manifest with user-specified capabilities from the install-config [#5645](https://github.com/openshift/installer/pull/5645) * isolate terraform [#5507](https://github.com/openshift/installer/pull/5507) * [Bug 2046181](https://bugzilla.redhat.com/show_bug.cgi?id=2046181): baremetal: reduce API timeout to 15 minutes [#5639](https://github.com/openshift/installer/pull/5639) * Check for DeletePlacementGroup permission before destroying cluster [#5655](https://github.com/openshift/installer/pull/5655) * OWNERS_ALIASES: Drop wking from approvers [#5644](https://github.com/openshift/installer/pull/5644) * data/manifests/bootkube/cvo-overrides: Default to stable-4.11 [#5621](https://github.com/openshift/installer/pull/5621) * Updated owners to current OCP on RHV members [#5654](https://github.com/openshift/installer/pull/5654) * baremetal: use combined Ironic, drop MariaDB [#5553](https://github.com/openshift/installer/pull/5553) * Update OWNERS_ALIASES [#5640](https://github.com/openshift/installer/pull/5640) * [Bug 2047257](https://bugzilla.redhat.com/show_bug.cgi?id=2047257): openstack: Migration script should --force drain [#5618](https://github.com/openshift/installer/pull/5618) * Tested instance type lists for AWS/Azure/GCP [#5517](https://github.com/openshift/installer/pull/5517) * [Bug 2047925](https://bugzilla.redhat.com/show_bug.cgi?id=2047925): Update BMO vendor [#5588](https://github.com/openshift/installer/pull/5588) * cmd/openshift-install/create: Do not attempt analysis when we fail to gather logs [#5582](https://github.com/openshift/installer/pull/5582) * [Bug 2046181](https://bugzilla.redhat.com/show_bug.cgi?id=2046181): baremetal: wait for image-customization to come up [#5579](https://github.com/openshift/installer/pull/5579) * aws: support the entirety of the secret partitions [#5597](https://github.com/openshift/installer/pull/5597) * [Bug 2050767](https://bugzilla.redhat.com/show_bug.cgi?id=2050767): vsphere: check that network exist in provisioning validation [#5607](https://github.com/openshift/installer/pull/5607) * [Bug 2048451](https://bugzilla.redhat.com/show_bug.cgi?id=2048451): Use proxy dial to validate endpoints [#5600](https://github.com/openshift/installer/pull/5600) * [Bug 2050146](https://bugzilla.redhat.com/show_bug.cgi?id=2050146): Don't shortcut OpenStack scraping if quota is unavailable [#5601](https://github.com/openshift/installer/pull/5601) * [Bug 2048222](https://bugzilla.redhat.com/show_bug.cgi?id=2048222): Remove non-public AWS regions from list of regions [#5595](https://github.com/openshift/installer/pull/5595) * Azure Stack: Add UPI Instructions for internal CA [#5573](https://github.com/openshift/installer/pull/5573) * Remove Caleb Boylan from core installer reviewers [#5593](https://github.com/openshift/installer/pull/5593) * Ensure removal of placement-groups during cluster destroy on AWS [#5528](https://github.com/openshift/installer/pull/5528) * [Full changelog](https://github.com/openshift/installer/compare/56485334b74321275b2f05cbc17c9f8d6fd39c13...080693d2736ac301bfebf09f83da79cc4cf902d8) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/1a6f3aa469970c91987f7025f5204a542839d875) * [OCPBUGS-21699](https://issues.redhat.com/browse/OCPBUGS-21699): Uplift x/net to v0.17.0 [#201](https://github.com/openshift/cluster-api-provider-baremetal/pull/201) * Updating baremetal-machine-controller images to be consistent with ART [#165](https://github.com/openshift/cluster-api-provider-baremetal/pull/165) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#172](https://github.com/openshift/cluster-api-provider-baremetal/pull/172) * [Bug 2067734](https://bugzilla.redhat.com/show_bug.cgi?id=2067734): [CVE] Upgrade controller-runtime to v0.12.1 [#171](https://github.com/openshift/cluster-api-provider-baremetal/pull/171) * [Bug 2080303](https://bugzilla.redhat.com/show_bug.cgi?id=2080303): Uplift BMO to remove go-getter dependency [#170](https://github.com/openshift/cluster-api-provider-baremetal/pull/170) * [Bug 2061833](https://bugzilla.redhat.com/show_bug.cgi?id=2061833): Delay after ensuring annotation [#167](https://github.com/openshift/cluster-api-provider-baremetal/pull/167) * Update OWNERS file [#169](https://github.com/openshift/cluster-api-provider-baremetal/pull/169) * Bump mao version, rewrite Machine types import to openshift/api [#168](https://github.com/openshift/cluster-api-provider-baremetal/pull/168) * Remove stbenjam from OWNERS [#163](https://github.com/openshift/cluster-api-provider-baremetal/pull/163) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/adff401d86d176d61cf2dc47c4142e30d7b04e4b...1a6f3aa469970c91987f7025f5204a542839d875) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/f7b90bfd5b29699406ce2a925ac124ec44ab373a) * [OCPBUGS-21136](https://issues.redhat.com/browse/OCPBUGS-21136): Uplift x/net to v0.17.0 [#311](https://github.com/openshift/baremetal-operator/pull/311) * [OCPBUGS-17955](https://issues.redhat.com/browse/OCPBUGS-17955): Trigger reconcile on Secret change [#299](https://github.com/openshift/baremetal-operator/pull/299) * [OCPBUGS-11612](https://issues.redhat.com/browse/OCPBUGS-11612): allow namespace to continue with terminating when deprovisioning at t… [#262](https://github.com/openshift/baremetal-operator/pull/262) * [OCPBUGS-8298](https://issues.redhat.com/browse/OCPBUGS-8298): cve: 2022-21698: upgrade prometheus/client_golang [#256](https://github.com/openshift/baremetal-operator/pull/256) * Updating ose-baremetal-operator images to be consistent with ART [#225](https://github.com/openshift/baremetal-operator/pull/225) * [Bug 2087213](https://bugzilla.redhat.com/show_bug.cgi?id=2087213): Don't require pre-provisioning image for live ISO provisioning [#231](https://github.com/openshift/baremetal-operator/pull/231) * [Bug 2087213](https://bugzilla.redhat.com/show_bug.cgi?id=2087213): Don't require PreprovisioningImages for older ZTP [#229](https://github.com/openshift/baremetal-operator/pull/229) * [Bug 2092650](https://bugzilla.redhat.com/show_bug.cgi?id=2092650): Stop treating missing network as fatal error [#227](https://github.com/openshift/baremetal-operator/pull/227) * Merge upstream [#224](https://github.com/openshift/baremetal-operator/pull/224) * [Bug 2080305](https://bugzilla.redhat.com/show_bug.cgi?id=2080305): Uplift kustomize to v4 to remove go-getter dependency [#223](https://github.com/openshift/baremetal-operator/pull/223) * Update vendoring [#222](https://github.com/openshift/baremetal-operator/pull/222) * Disable iDRAC RAID [#219](https://github.com/openshift/baremetal-operator/pull/219) * Merge upstream [#218](https://github.com/openshift/baremetal-operator/pull/218) * Move bmh crd to level 31 [#216](https://github.com/openshift/baremetal-operator/pull/216) * Enable multi-arch builds [#214](https://github.com/openshift/baremetal-operator/pull/214) * ocp: add baremetal capability annotation [#212](https://github.com/openshift/baremetal-operator/pull/212) * Merge upstream [#213](https://github.com/openshift/baremetal-operator/pull/213) * Merge upstream [#211](https://github.com/openshift/baremetal-operator/pull/211) * Merge upstream [#209](https://github.com/openshift/baremetal-operator/pull/209) * [Bug 2043118](https://bugzilla.redhat.com/show_bug.cgi?id=2043118): Move from Available to Preparing if HostFirmwareSettings… [#208](https://github.com/openshift/baremetal-operator/pull/208) * downstream: add vendor target [#207](https://github.com/openshift/baremetal-operator/pull/207) * Merge upstream [#205](https://github.com/openshift/baremetal-operator/pull/205) * Add bfournier & remove asalfeld from OWNERS [#206](https://github.com/openshift/baremetal-operator/pull/206) * Updating ose-baremetal-operator images to be consistent with ART [#204](https://github.com/openshift/baremetal-operator/pull/204) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/01960d8dbf91d3fae8804534089eb8e13e0b72c3...f7b90bfd5b29699406ce2a925ac124ec44ab373a) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/09f56048506bcf0a27a21cc835a799a91a50aab9) * [OCPBUGS-18815](https://issues.redhat.com/browse/OCPBUGS-18815): Move haproxy firewall rule check earlier in loop [#273](https://github.com/openshift/baremetal-runtimecfg/pull/273) * [OCPBUGS-18096](https://issues.redhat.com/browse/OCPBUGS-18096): Don't render config with incomplete unicast peer list [#269](https://github.com/openshift/baremetal-runtimecfg/pull/269) * [OCPBUGS-15539](https://issues.redhat.com/browse/OCPBUGS-15539): Use machine-config state instead of comparing roles [#263](https://github.com/openshift/baremetal-runtimecfg/pull/263) * [OCPBUGS-13544](https://issues.redhat.com/browse/OCPBUGS-13544): Verify kubelet version in upgrade check [#250](https://github.com/openshift/baremetal-runtimecfg/pull/250) * [OCPBUGS-11297](https://issues.redhat.com/browse/OCPBUGS-11297): fix isUpgradeStillRunning() [#233](https://github.com/openshift/baremetal-runtimecfg/pull/233) * [OCPBUGS-673](https://issues.redhat.com/browse/OCPBUGS-673): Apply ipv6 bind check to non-VIP case too [#192](https://github.com/openshift/baremetal-runtimecfg/pull/192) * [Bug 2096226](https://bugzilla.redhat.com/show_bug.cgi?id=2096226): Check chosen node-ip can be used [#181](https://github.com/openshift/baremetal-runtimecfg/pull/181) * [Bug 2086483](https://bugzilla.redhat.com/show_bug.cgi?id=2086483): Update k8s dependencies to 1.24 [#180](https://github.com/openshift/baremetal-runtimecfg/pull/180) * Updating baremetal-runtimecfg images to be consistent with ART [#179](https://github.com/openshift/baremetal-runtimecfg/pull/179) * [Bug 2069740](https://bugzilla.redhat.com/show_bug.cgi?id=2069740): Avoid kubernetes node port range [#175](https://github.com/openshift/baremetal-runtimecfg/pull/175) * node: update IsUpgradeStillRunning() logic [#173](https://github.com/openshift/baremetal-runtimecfg/pull/173) * Update OWNERS to reflect current team [#177](https://github.com/openshift/baremetal-runtimecfg/pull/177) * Dockerfile: migrate repo to CentOS 8 Stream [#174](https://github.com/openshift/baremetal-runtimecfg/pull/174) * Updating baremetal-runtimecfg images to be consistent with ART [#168](https://github.com/openshift/baremetal-runtimecfg/pull/168) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/40c11f7299386a9608e18feb8cc062c2ebc3364b...09f56048506bcf0a27a21cc835a799a91a50aab9) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/94eb5225445fe2fc861791fa4954b4a7eb25bb08) * [ART-8372](https://issues.redhat.com/browse/ART-8372): el7 version of oc in 4.11 [#1609](https://github.com/openshift/oc/pull/1609) * [OCPBUGS-20292](https://issues.redhat.com/browse/OCPBUGS-20292): Truncate existing files when writing from inspect [#1564](https://github.com/openshift/oc/pull/1564) * [OCPBUGS-20309](https://issues.redhat.com/browse/OCPBUGS-20309): Use quay redis image instead docker mysql [#1568](https://github.com/openshift/oc/pull/1568) * [OCPBUGS-16059](https://issues.redhat.com/browse/OCPBUGS-16059): mcs cert: account for environments that use IP directly [#1504](https://github.com/openshift/oc/pull/1504) * [OCPBUGS-16195](https://issues.redhat.com/browse/OCPBUGS-16195): reboot: set ignition version to 3.1 [#1510](https://github.com/openshift/oc/pull/1510) * [OCPBUGS-4812](https://issues.redhat.com/browse/OCPBUGS-4812): [release-4.11] New-App Using Git via SSH [#1283](https://github.com/openshift/oc/pull/1283) * handle the error case of node retrieval while waiting for reboot [#1486](https://github.com/openshift/oc/pull/1486) * bring some cert rotation helpers back into 4.11 [fix unit-tests] [#1479](https://github.com/openshift/oc/pull/1479) * [OCPBUGS-10772](https://issues.redhat.com/browse/OCPBUGS-10772): bump repo sclorg/s2i-ruby-container location for newapp test [#1380](https://github.com/openshift/oc/pull/1380) * [OCPBUGS-8205](https://issues.redhat.com/browse/OCPBUGS-8205): pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates [#1360](https://github.com/openshift/oc/pull/1360) * Bug OCPBUGS-915: [inspect] Add EgressQoS to inspect [#1230](https://github.com/openshift/oc/pull/1230) * [OCPBUGS-2766](https://issues.redhat.com/browse/OCPBUGS-2766): pkg/cli/login: Warn, but do not fail, on surprise project-list errors [#1274](https://github.com/openshift/oc/pull/1274) * [OCPBUGS-1497](https://issues.redhat.com/browse/OCPBUGS-1497): oc adm logs: generate proper path for static pods [#1239](https://github.com/openshift/oc/pull/1239) * [Bug 2117823](https://bugzilla.redhat.com/show_bug.cgi?id=2117823): release: extract ccoctl [#1220](https://github.com/openshift/oc/pull/1220) * [Bug 2110567](https://bugzilla.redhat.com/show_bug.cgi?id=2110567): oc adm inspect: check a resource exists before its inspection [#1222](https://github.com/openshift/oc/pull/1222) * [Bug 2107003](https://bugzilla.redhat.com/show_bug.cgi?id=2107003): Set completion function for get command [#1206](https://github.com/openshift/oc/pull/1206) * [Bug 2103638](https://bugzilla.redhat.com/show_bug.cgi?id=2103638): Use from-release as based image when base digest is invalid [#1196](https://github.com/openshift/oc/pull/1196) * [Bug 2108617](https://bugzilla.redhat.com/show_bug.cgi?id=2108617): Add ManifestListDigest field to release info struct [#1209](https://github.com/openshift/oc/pull/1209) * [Bug 2104589](https://bugzilla.redhat.com/show_bug.cgi?id=2104589): set proper pod security ns labels [#1198](https://github.com/openshift/oc/pull/1198) * [Bug 2104282](https://bugzilla.redhat.com/show_bug.cgi?id=2104282): Add new IsManifestList flag into ReleaseInfo struct [#1193](https://github.com/openshift/oc/pull/1193) * [Bug 1905850](https://bugzilla.redhat.com/show_bug.cgi?id=1905850): add a new option for checking a subresource to oc adm policy who-can [#1179](https://github.com/openshift/oc/pull/1179) * [Bug 2015321](https://bugzilla.redhat.com/show_bug.cgi?id=2015321): Add destdir special character validation in must-gather [#1178](https://github.com/openshift/oc/pull/1178) * [Bug 2100138](https://bugzilla.redhat.com/show_bug.cgi?id=2100138): Add json support for release info bug printing [#1177](https://github.com/openshift/oc/pull/1177) * [Bug 2099637](https://bugzilla.redhat.com/show_bug.cgi?id=2099637): Use filter options only when keep-manifest-list is true [#1176](https://github.com/openshift/oc/pull/1176) * [Bug 2096855](https://bugzilla.redhat.com/show_bug.cgi?id=2096855): extract linux/amd64 to read release metadata [#1174](https://github.com/openshift/oc/pull/1174) * [Bug 2057633](https://bugzilla.redhat.com/show_bug.cgi?id=2057633): add validations for a pod & container to rsync [#1087](https://github.com/openshift/oc/pull/1087) * [Bug 1957668](https://bugzilla.redhat.com/show_bug.cgi?id=1957668): show console URL when asking for Authentication [#883](https://github.com/openshift/oc/pull/883) * [Bug 2097334](https://bugzilla.redhat.com/show_bug.cgi?id=2097334): ensure kubectl name is replaced in plugin cmd [#1173](https://github.com/openshift/oc/pull/1173) * [Bug 1823143](https://bugzilla.redhat.com/show_bug.cgi?id=1823143): add --icsp-file option to adm release subcommands [#1169](https://github.com/openshift/oc/pull/1169) * [Bug 2090692](https://bugzilla.redhat.com/show_bug.cgi?id=2090692): fix version from 1.24.0 beta to 1.24.1 [#1168](https://github.com/openshift/oc/pull/1168) * [Bug 1999891](https://bugzilla.redhat.com/show_bug.cgi?id=1999891): bubble errors which happen prior to collection to BackupGathering [#1093](https://github.com/openshift/oc/pull/1093) * [Bug 2090266](https://bugzilla.redhat.com/show_bug.cgi?id=2090266): add --filter-by-os support in oc adm release extract and linux/amd64 for getting IS during mirror [#1167](https://github.com/openshift/oc/pull/1167) * [Bug 2093797](https://bugzilla.redhat.com/show_bug.cgi?id=2093797): deprecate --service-account flag for oc registry login [#1166](https://github.com/openshift/oc/pull/1166) * [Bug 2088483](https://bugzilla.redhat.com/show_bug.cgi?id=2088483): update 'oc adm catalog mirror' command to accept --continue-on-error flag [#1152](https://github.com/openshift/oc/pull/1152) * *: add relevant code owners for catalog alias [#1159](https://github.com/openshift/oc/pull/1159) * [Bug 2087103](https://bugzilla.redhat.com/show_bug.cgi?id=2087103): pkg/cli/admin/upgrade: "Updating to" -> "Requesting update to" [#1156](https://github.com/openshift/oc/pull/1156) * [Bug 2090692](https://bugzilla.redhat.com/show_bug.cgi?id=2090692): Beautify help and align with kubectl output [#1121](https://github.com/openshift/oc/pull/1121) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): pkg/cli/debug: suggest pod security labels on violations [#1155](https://github.com/openshift/oc/pull/1155) * Add user coreydaley as an approver [#1144](https://github.com/openshift/oc/pull/1144) * [Bug 2090751](https://bugzilla.redhat.com/show_bug.cgi?id=2090751): Correcting skipMissing flag usage when a manifest cannot be found [#1105](https://github.com/openshift/oc/pull/1105) * [Bug 2083770](https://bugzilla.redhat.com/show_bug.cgi?id=2083770): Change release signature file extension to json [#1151](https://github.com/openshift/oc/pull/1151) * [Bug 2040654](https://bugzilla.redhat.com/show_bug.cgi?id=2040654): Pass pod exit error codes to user [#1150](https://github.com/openshift/oc/pull/1150) * [Bug 2083999](https://bugzilla.redhat.com/show_bug.cgi?id=2083999): Delete recently created images when --prune-over-size-limit is used [#1143](https://github.com/openshift/oc/pull/1143) * [Bug 2086459](https://bugzilla.redhat.com/show_bug.cgi?id=2086459): Continue inspection when some resources are not found [#1137](https://github.com/openshift/oc/pull/1137) * [Bug 2065507](https://bugzilla.redhat.com/show_bug.cgi?id=2065507): Add the ReleaseAccepted condition to the oc adm upgrade command [#1113](https://github.com/openshift/oc/pull/1113) * Update images to be consistent with ART [#1132](https://github.com/openshift/oc/pull/1132) * release: update oc source URL in client READMEs [#1129](https://github.com/openshift/oc/pull/1129) * [WRKLDS-370](https://issues.redhat.com/browse/WRKLDS-370): copy manifests from linux/amd64 to all manifests in a list [#1120](https://github.com/openshift/oc/pull/1120) * Enable using existing namespace for must-gather operations [#1080](https://github.com/openshift/oc/pull/1080) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): [inspect] Add namespace-scoped networking resources to inspect [#1128](https://github.com/openshift/oc/pull/1128) * [Bug 2074237](https://bugzilla.redhat.com/show_bug.cgi?id=2074237): clarify use of --image-stream for oc new-app [#1119](https://github.com/openshift/oc/pull/1119) * Deprecate oc serviceaccounts command [#1126](https://github.com/openshift/oc/pull/1126) * Replace temporary show-managed fields hack with a proper solution [#1127](https://github.com/openshift/oc/pull/1127) * [Bug 2080416](https://bugzilla.redhat.com/show_bug.cgi?id=2080416): Fix project command auto completion [#1125](https://github.com/openshift/oc/pull/1125) * Remove long-deprecated commands oc adm migrate etcd-ttl|image-references|legacy-hpa|storage [#1124](https://github.com/openshift/oc/pull/1124) * Fix squash merge regex [#1118](https://github.com/openshift/oc/pull/1118) * [Bug 2007647](https://bugzilla.redhat.com/show_bug.cgi?id=2007647): Add squash-merge support into oc adm release info [#1116](https://github.com/openshift/oc/pull/1116) * [Bug 2071614](https://bugzilla.redhat.com/show_bug.cgi?id=2071614): Remove network CRDs scheme registration [#1110](https://github.com/openshift/oc/pull/1110) * [Bug 2074902](https://bugzilla.redhat.com/show_bug.cgi?id=2074902): Pass non-zero exit code to debug command [#1115](https://github.com/openshift/oc/pull/1115) * adm inspect: delete unused pod URL getting code [#1032](https://github.com/openshift/oc/pull/1032) * [Bug 2073113](https://bugzilla.redhat.com/show_bug.cgi?id=2073113): do not report docker conf deprecation warning when the docker is not available [#1106](https://github.com/openshift/oc/pull/1106) * Drop k8s carries and bump to kubectl v0.24.0-beta-0 [#1092](https://github.com/openshift/oc/pull/1092) * [Bug 2075647](https://bugzilla.redhat.com/show_bug.cgi?id=2075647): pkg/cli/admin/upgrade: Use PATCH instead of POST for spec updates [#1111](https://github.com/openshift/oc/pull/1111) * Add --keep-manifest-list support to `oc adm release *` commands [#1109](https://github.com/openshift/oc/pull/1109) * [Bug 2041454](https://bugzilla.redhat.com/show_bug.cgi?id=2041454): Validate reference-policy for import-image command [#1108](https://github.com/openshift/oc/pull/1108) * [Bug 1823143](https://bugzilla.redhat.com/show_bug.cgi?id=1823143): wire ICSP lookups to oc image info [#829](https://github.com/openshift/oc/pull/829) * Use ServerGroupResources instead deprecated ServerResources [#1101](https://github.com/openshift/oc/pull/1101) * Introduce Jira defects into release info [#1100](https://github.com/openshift/oc/pull/1100) * Fix component name for oc [#1102](https://github.com/openshift/oc/pull/1102) * pkg/cli/admin/mustgather: label must-gather ns as privileged [#1099](https://github.com/openshift/oc/pull/1099) * Obtain OpenShift version from ClusterVersion resource [#1091](https://github.com/openshift/oc/pull/1091) * Allow triggers on batch/v1 CronJobs [#1077](https://github.com/openshift/oc/pull/1077) * pkg/cli/admin/upgrade: Mention channel choices [#1088](https://github.com/openshift/oc/pull/1088) * Add Nutanix platform [#1046](https://github.com/openshift/oc/pull/1046) * [Bug 2057101](https://bugzilla.redhat.com/show_bug.cgi?id=2057101): remove klog format and update messages for docker config deprecation [#1082](https://github.com/openshift/oc/pull/1082) * [Bug 2056893](https://bugzilla.redhat.com/show_bug.cgi?id=2056893): pkg/cli/admin/upgrade: Drop --to-image help warning [#1078](https://github.com/openshift/oc/pull/1078) * [Bug 2049889](https://bugzilla.redhat.com/show_bug.cgi?id=2049889): logging / help improvements around 'oc new-app --search' [#1086](https://github.com/openshift/oc/pull/1086) * [Bug 2056122](https://bugzilla.redhat.com/show_bug.cgi?id=2056122): expose --keep-startup flag for oc debug [#1085](https://github.com/openshift/oc/pull/1085) * [Bug 2052578](https://bugzilla.redhat.com/show_bug.cgi?id=2052578): reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories [#1059](https://github.com/openshift/oc/pull/1059) * Add support for batch/v1 CronJob [#1081](https://github.com/openshift/oc/pull/1081) * [OSDOCS-3257](https://issues.redhat.com/browse/OSDOCS-3257): Adding in new metadata requirement for docs [#1072](https://github.com/openshift/oc/pull/1072) * Update all images to be consistent with ART [#1071](https://github.com/openshift/oc/pull/1071) * Updating openshift-enterprise-cli images to be consistent with ART [#1039](https://github.com/openshift/oc/pull/1039) * [Bug 2049234](https://bugzilla.redhat.com/show_bug.cgi?id=2049234): Fix mirroring images that have dots in their namespace [#1063](https://github.com/openshift/oc/pull/1063) * [Bug 2052034](https://bugzilla.redhat.com/show_bug.cgi?id=2052034): make sure that we check for resorces and files before picking the simplest path [#1062](https://github.com/openshift/oc/pull/1062) * [Bug 2049133](https://bugzilla.redhat.com/show_bug.cgi?id=2049133): Fix catalog mirror from files [#1058](https://github.com/openshift/oc/pull/1058) * Comment tolerations used in must-gather [#1004](https://github.com/openshift/oc/pull/1004) * Remove unused methods and re-use pre-existing ones where needed [#951](https://github.com/openshift/oc/pull/951) * Show managedFields in inspect [#1051](https://github.com/openshift/oc/pull/1051) * [Bug 2046319](https://bugzilla.redhat.com/show_bug.cgi?id=2046319): improve error message for debug [#1053](https://github.com/openshift/oc/pull/1053) * [Bug 2047895](https://bugzilla.redhat.com/show_bug.cgi?id=2047895): release: handle aarch64/arm64 naming disparity in mirror [#1038](https://github.com/openshift/oc/pull/1038) * [Bug 2044140](https://bugzilla.redhat.com/show_bug.cgi?id=2044140): pkg/cli/admin/upgrade: Fix nextStep option sense [#1050](https://github.com/openshift/oc/pull/1050) * Add TMOUT env to debug node pod [#1048](https://github.com/openshift/oc/pull/1048) * [Bug 2044140](https://bugzilla.redhat.com/show_bug.cgi?id=2044140): Updated the error message to include the suggestion [#1041](https://github.com/openshift/oc/pull/1041) * [Bug 2035717](https://bugzilla.redhat.com/show_bug.cgi?id=2035717): Enhancing the output provided when backup collections are attempted [#1013](https://github.com/openshift/oc/pull/1013) * [Full changelog](https://github.com/openshift/oc/compare/5f40be42e083d61858a07f4d8ae4fad1e60b0627...94eb5225445fe2fc861791fa4954b4a7eb25bb08) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/85f6afd591103fd54dae6bc07d85511d3d80fcb3) * [OCPBUGS-21328](https://issues.redhat.com/browse/OCPBUGS-21328): Upgrade golang/x/net for CVE-2023-39325 [#625](https://github.com/openshift/cloud-credential-operator/pull/625) * NO-ISSUE: snyk: exclude vendor/ [#621](https://github.com/openshift/cloud-credential-operator/pull/621) * NO-ISSUE: Removing andrew from OWNERS [#620](https://github.com/openshift/cloud-credential-operator/pull/620) * [OCPBUGS-13792](https://issues.redhat.com/browse/OCPBUGS-13792): Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. [#540](https://github.com/openshift/cloud-credential-operator/pull/540) * [OCPBUGS-11708](https://issues.redhat.com/browse/OCPBUGS-11708): ccoctl: Enable public anon read access to default OIDC S3 bucket [#530](https://github.com/openshift/cloud-credential-operator/pull/530) * [OCPBUGS-2801](https://issues.redhat.com/browse/OCPBUGS-2801): Backport --credentials-requests-dir for ccoctl gcp delete. [#506](https://github.com/openshift/cloud-credential-operator/pull/506) * [OCPBUGS-2883](https://issues.redhat.com/browse/OCPBUGS-2883): Make ccoctl use regional STS endpoint by default [#503](https://github.com/openshift/cloud-credential-operator/pull/503) * [OCPBUGS-2278](https://issues.redhat.com/browse/OCPBUGS-2278): Add ccoctl support to create OIDC endpoint with private S3 bucket [#500](https://github.com/openshift/cloud-credential-operator/pull/500) * Update OWNERS to reflect reality. [#496](https://github.com/openshift/cloud-credential-operator/pull/496) * [Bug 2118680](https://bugzilla.redhat.com/show_bug.cgi?id=2118680): Refactor Nutanix plugin to use external credentials structs [#487](https://github.com/openshift/cloud-credential-operator/pull/487) * [Bug 2105468](https://bugzilla.redhat.com/show_bug.cgi?id=2105468): Make ccoctl work with credentials fetched from gcloud cli defaults [#477](https://github.com/openshift/cloud-credential-operator/pull/477) * [Bug 2102834](https://bugzilla.redhat.com/show_bug.cgi?id=2102834): manifests/00-namespace: Set empty openshift.io/run-level [#473](https://github.com/openshift/cloud-credential-operator/pull/473) * [Bug 2093986](https://bugzilla.redhat.com/show_bug.cgi?id=2093986): Make pod identity webhook comply to restricted pod security level [#469](https://github.com/openshift/cloud-credential-operator/pull/469) * Updating ose-cloud-credential-operator images to be consistent with ART [#466](https://github.com/openshift/cloud-credential-operator/pull/466) * manifests/deployment: comply to restricted pod security level [#463](https://github.com/openshift/cloud-credential-operator/pull/463) * Add a check for no CredentialsRequest manifest in directory [#462](https://github.com/openshift/cloud-credential-operator/pull/462) * [Bug 2067800](https://bugzilla.redhat.com/show_bug.cgi?id=2067800): upgrade prometheus/client_golang to v1.12.1 [#464](https://github.com/openshift/cloud-credential-operator/pull/464) * Minor doc updates [#461](https://github.com/openshift/cloud-credential-operator/pull/461) * Update OWNERS file to reflect reality [#460](https://github.com/openshift/cloud-credential-operator/pull/460) * Change the ccoctl generated nutanix-credentials secret data format [#457](https://github.com/openshift/cloud-credential-operator/pull/457) * Skip directories when reading credentials requests [#459](https://github.com/openshift/cloud-credential-operator/pull/459) * Add nutanix credentials handling with manual mode [#450](https://github.com/openshift/cloud-credential-operator/pull/450) * Leader election migration 1: ConfigMap & Lease [#446](https://github.com/openshift/cloud-credential-operator/pull/446) * Updating ose-cloud-credential-operator images to be consistent with ART [#449](https://github.com/openshift/cloud-credential-operator/pull/449) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/cb5054fcca4d94491f07bb8138178752e454049a...85f6afd591103fd54dae6bc07d85511d3d80fcb3) ### [cloud-network-config-controller](https://github.com/openshift/cloud-network-config-controller/tree/fd849e37f0073049d64b85ccdd58794640aee011) * [OCPBUGS-13240](https://issues.redhat.com/browse/OCPBUGS-13240): pull project name from subnet uri [#109](https://github.com/openshift/cloud-network-config-controller/pull/109) * Bug OCPBUGS-5359: Add ApplicationSecurityGroups to InterfaceIPConfiguration [#93](https://github.com/openshift/cloud-network-config-controller/pull/93) * [OCPBUGS-3932](https://issues.redhat.com/browse/OCPBUGS-3932): Add assigned egress ips into capacity [#78](https://github.com/openshift/cloud-network-config-controller/pull/78) * [OCPBUGS-4529](https://issues.redhat.com/browse/OCPBUGS-4529): Node controller: Skip uninitialized nodes [#85](https://github.com/openshift/cloud-network-config-controller/pull/85) * [OCPBUGS-4528](https://issues.redhat.com/browse/OCPBUGS-4528): AWS: build temp credentials file from AWS key and secret [#84](https://github.com/openshift/cloud-network-config-controller/pull/84) * [OCPBUGS-4167](https://issues.redhat.com/browse/OCPBUGS-4167): Run azure operations in sequence [#79](https://github.com/openshift/cloud-network-config-controller/pull/79) * [OCPBUGS-4163](https://issues.redhat.com/browse/OCPBUGS-4163): AWS: Fix race in IP address assignment code [#83](https://github.com/openshift/cloud-network-config-controller/pull/83) * Jira OCPBUGS-4179: Fix assign error display for cloudprivateipconfig [#75](https://github.com/openshift/cloud-network-config-controller/pull/75) * [OCPBUGS-4233](https://issues.redhat.com/browse/OCPBUGS-4233): Updating ose-cloud-network-config-controller images to be consistent with ART [#81](https://github.com/openshift/cloud-network-config-controller/pull/81) * [OCPBUGS-3089](https://issues.redhat.com/browse/OCPBUGS-3089): Update OWNERS [#71](https://github.com/openshift/cloud-network-config-controller/pull/71) * [OCPBUGS-1846](https://issues.redhat.com/browse/OCPBUGS-1846): Add resolver to handle custom endpoints [#63](https://github.com/openshift/cloud-network-config-controller/pull/63) * [Bug 2094438](https://bugzilla.redhat.com/show_bug.cgi?id=2094438): Make AWS URL parsing more lenient for GetNodeEgressIPConfiguration [#45](https://github.com/openshift/cloud-network-config-controller/pull/45) * [Bug 2092047](https://bugzilla.redhat.com/show_bug.cgi?id=2092047): 1.24 rebase [#44](https://github.com/openshift/cloud-network-config-controller/pull/44) * [Bug 2071914](https://bugzilla.redhat.com/show_bug.cgi?id=2071914): azure: default empty environment to AzurePublicCloud [#36](https://github.com/openshift/cloud-network-config-controller/pull/36) * Add instructions for how to run image in cloud [#31](https://github.com/openshift/cloud-network-config-controller/pull/31) * [Bug 2072439](https://bugzilla.redhat.com/show_bug.cgi?id=2072439): Get subnet information from subnet instead of from network addresses [#32](https://github.com/openshift/cloud-network-config-controller/pull/32) * [Bug 2060334](https://bugzilla.redhat.com/show_bug.cgi?id=2060334): Fix Azure VNET lookup when the NIC's subnet is in a different resource group [#26](https://github.com/openshift/cloud-network-config-controller/pull/26) * [Bug 2060361](https://bugzilla.redhat.com/show_bug.cgi?id=2060361): Fix Unable to enumerate NICs due to a missing 'primary' field due to security restrictions [#27](https://github.com/openshift/cloud-network-config-controller/pull/27) * Fix run_locally.sh [#21](https://github.com/openshift/cloud-network-config-controller/pull/21) * Updating ose-cloud-network-config-controller images to be consistent with ART [#25](https://github.com/openshift/cloud-network-config-controller/pull/25) * README.md [#22](https://github.com/openshift/cloud-network-config-controller/pull/22) * [Full changelog](https://github.com/openshift/cloud-network-config-controller/compare/e2f6f5e0e407dddb481e0e53c71c913ef3cb4d04...fd849e37f0073049d64b85ccdd58794640aee011) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/e2bcbaafc381ad909b5f51c6a10e7286e8af97bc) * [Bug 2107028](https://bugzilla.redhat.com/show_bug.cgi?id=2107028): only ever include certificates in the oauth-serving-cert CM [#574](https://github.com/openshift/cluster-authentication-operator/pull/574) * [AUTH-133](https://issues.redhat.com/browse/AUTH-133): bindata/oauth-openshift: specify pod security level [#570](https://github.com/openshift/cluster-authentication-operator/pull/570) * Update Links [#568](https://github.com/openshift/cluster-authentication-operator/pull/568) * [Bug 1958198](https://bugzilla.redhat.com/show_bug.cgi?id=1958198): Avoid zero or low resync intervals [#491](https://github.com/openshift/cluster-authentication-operator/pull/491) * manifests: specify pod security level [#565](https://github.com/openshift/cluster-authentication-operator/pull/565) * e2e: Use Keycloak v18.0.0 [#567](https://github.com/openshift/cluster-authentication-operator/pull/567) * [AUTH-89](https://issues.redhat.com/browse/AUTH-89): add audit options to oauth-server on oauth-audit-profile Variant03 [#563](https://github.com/openshift/cluster-authentication-operator/pull/563) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Bump `openshift/api` dependency to `04e1813ebb11` [#564](https://github.com/openshift/cluster-authentication-operator/pull/564) * make apiserver readiness probe honor readyz [#561](https://github.com/openshift/cluster-authentication-operator/pull/561) * [Bug 2063342](https://bugzilla.redhat.com/show_bug.cgi?id=2063342): vendor: bump library-go [#558](https://github.com/openshift/cluster-authentication-operator/pull/558) * [Bug 2059515](https://bugzilla.redhat.com/show_bug.cgi?id=2059515): e2e: Use Keycloak v17.0.0 [#554](https://github.com/openshift/cluster-authentication-operator/pull/554) * Update OCP branding within oauth-templates [#540](https://github.com/openshift/cluster-authentication-operator/pull/540) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/6a015c7108252fa22c75ffa4b7757d28bfed902a...e2bcbaafc381ad909b5f51c6a10e7286e8af97bc) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/bf6c1c328ac39a367417e93c74fcbb3fe8628825) * Updating atomic-openshift-cluster-autoscaler images to be consistent with ART [#221](https://github.com/openshift/kubernetes-autoscaler/pull/221) * Updating vertical-pod-autoscaler images to be consistent with ART [#222](https://github.com/openshift/kubernetes-autoscaler/pull/222) * [OCPBUGS-2046](https://issues.redhat.com/browse/OCPBUGS-2046): switched policy for PodDisruptionBudget from v1beta1 to v1 in time for 1.25 [#244](https://github.com/openshift/kubernetes-autoscaler/pull/244) * [Bug 2102947](https://bugzilla.redhat.com/show_bug.cgi?id=2102947): Have VPA ignore phantom containers named "POD" [#234](https://github.com/openshift/kubernetes-autoscaler/pull/234) * [Bug 2087037](https://bugzilla.redhat.com/show_bug.cgi?id=2087037): Rebase onto latest master from upstream [#231](https://github.com/openshift/kubernetes-autoscaler/pull/231) * [Bug 2087037](https://bugzilla.redhat.com/show_bug.cgi?id=2087037): Rebase Autoscaler onto upstream release-1.24 branch [#227](https://github.com/openshift/kubernetes-autoscaler/pull/227) * added bindata.go in e2e/vendor to fix the e2e test failures [#225](https://github.com/openshift/kubernetes-autoscaler/pull/225) * add user configurable cluster api version [#223](https://github.com/openshift/kubernetes-autoscaler/pull/223) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/266ba2db3dbf1fb7ddd07aca7c6223d800ecf3d2...bf6c1c328ac39a367417e93c74fcbb3fe8628825) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/1731b6650d41a46207dc08f4d0993873b3b5d99f) * [OCPBUGS-20737](https://issues.redhat.com/browse/OCPBUGS-20737): Bump x/net package to v0.18.0 [#301](https://github.com/openshift/cluster-autoscaler-operator/pull/301) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#246](https://github.com/openshift/cluster-autoscaler-operator/pull/246) * [Bug 2067803](https://bugzilla.redhat.com/show_bug.cgi?id=2067803): Bump prometheus/client_golang [#242](https://github.com/openshift/cluster-autoscaler-operator/pull/242) * [Bug 2063194](https://bugzilla.redhat.com/show_bug.cgi?id=2063194): add leader election flags to autoscaler deployment [#241](https://github.com/openshift/cluster-autoscaler-operator/pull/241) * add capi version to autoscaler deployment [#240](https://github.com/openshift/cluster-autoscaler-operator/pull/240) * Updating ose-cluster-autoscaler-operator images to be consistent with ART [#238](https://github.com/openshift/cluster-autoscaler-operator/pull/238) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/8bcdcccbf043bc164eb5b728a8cfd962112b2aa5...1731b6650d41a46207dc08f4d0993873b3b5d99f) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/4d2ec1ddc45644a6ce86eda78c916a28382fe863) * [OCPBUGS-20828](https://issues.redhat.com/browse/OCPBUGS-20828): Uplift x/net to v0.17.0 [#372](https://github.com/openshift/cluster-baremetal-operator/pull/372) * [OCPBUGS-5628](https://issues.redhat.com/browse/OCPBUGS-5628): Update dependencies [#321](https://github.com/openshift/cluster-baremetal-operator/pull/321) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#264](https://github.com/openshift/cluster-baremetal-operator/pull/264) * [OCPBUGS-5075](https://issues.redhat.com/browse/OCPBUGS-5075): Do not fail the reconciler when no master Machines exist [#318](https://github.com/openshift/cluster-baremetal-operator/pull/318) * [OCPBUGS-1762](https://issues.redhat.com/browse/OCPBUGS-1762): add a workaround for a NetworkManager issue [#298](https://github.com/openshift/cluster-baremetal-operator/pull/298) * [OCPBUGS-747](https://issues.redhat.com/browse/OCPBUGS-747): Use machines instead of nodes to detect masters [#307](https://github.com/openshift/cluster-baremetal-operator/pull/307) * [OCPBUGS-1511](https://issues.redhat.com/browse/OCPBUGS-1511): [release-4.11] Fix a few papercuts [#290](https://github.com/openshift/cluster-baremetal-operator/pull/290) * [OCPBUGS-747](https://issues.redhat.com/browse/OCPBUGS-747): do not rely on string "master" to be in BMH names [#283](https://github.com/openshift/cluster-baremetal-operator/pull/283) * [Bug 2084215](https://bugzilla.redhat.com/show_bug.cgi?id=2084215): Add baremetal prefix to kube-rbac-proxy [#272](https://github.com/openshift/cluster-baremetal-operator/pull/272) * [Bug 2099928](https://bugzilla.redhat.com/show_bug.cgi?id=2099928): Add UT for image_customization_test [#243](https://github.com/openshift/cluster-baremetal-operator/pull/243) * [Bug 2088428](https://bugzilla.redhat.com/show_bug.cgi?id=2088428): Fix interpretation of Deployment Status Conditions [#266](https://github.com/openshift/cluster-baremetal-operator/pull/266) * [Bug 2080306](https://bugzilla.redhat.com/show_bug.cgi?id=2080306): Uplift kustomize and BMO to remove go-getter dependency [#262](https://github.com/openshift/cluster-baremetal-operator/pull/262) * Change registry reference for image customization controller image, p… [#260](https://github.com/openshift/cluster-baremetal-operator/pull/260) * Revert "Allow access to InfraEnv resources from assisted service" [#254](https://github.com/openshift/cluster-baremetal-operator/pull/254) * Extract functions for ZTP integration [#261](https://github.com/openshift/cluster-baremetal-operator/pull/261) * bump golangci [#257](https://github.com/openshift/cluster-baremetal-operator/pull/257) * Change registry reference for image customization controller image [#258](https://github.com/openshift/cluster-baremetal-operator/pull/258) * [Bug 1961844](https://bugzilla.redhat.com/show_bug.cgi?id=1961844): Adding baremetal ClusterOperator relatedObjects directly to its manifest [#255](https://github.com/openshift/cluster-baremetal-operator/pull/255) * Add baremetal capability annotations [#249](https://github.com/openshift/cluster-baremetal-operator/pull/249) * Allow access to InfraEnv resources from assisted service [#251](https://github.com/openshift/cluster-baremetal-operator/pull/251) * More updates to the OWNERS file [#253](https://github.com/openshift/cluster-baremetal-operator/pull/253) * Update the OWNERS file based on new contributors [#252](https://github.com/openshift/cluster-baremetal-operator/pull/252) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#242](https://github.com/openshift/cluster-baremetal-operator/pull/242) * Use combined Ironic process, drop RPC and MariaDB [#234](https://github.com/openshift/cluster-baremetal-operator/pull/234) * Remove asalkeld and kirankt from Owners [#228](https://github.com/openshift/cluster-baremetal-operator/pull/228) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/0e3d8397951f4b45000a92ad923b30cff5f9e767...4d2ec1ddc45644a6ce86eda78c916a28382fe863) ### [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap/tree/ffb5e2e417ab7e9da1caf7dd76007f5cfe8fc5a5) * [OCPBUGS-14387](https://issues.redhat.com/browse/OCPBUGS-14387): Update dependencies and image [#92](https://github.com/openshift/cluster-bootstrap/pull/92) * Add API team to the OWNERS [#95](https://github.com/openshift/cluster-bootstrap/pull/95) * [Full changelog](https://github.com/openshift/cluster-bootstrap/compare/195cde607d94b264a88b21f17baade02fd32ad3b...ffb5e2e417ab7e9da1caf7dd76007f5cfe8fc5a5) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/2dbffc67e4fb2ef972f4ba6e6c1a76447193c6ce) * [OCPBUGS-5781](https://issues.redhat.com/browse/OCPBUGS-5781): Try to limit groups for the REST mapper discovery [#216](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/216) * [Bug 2110524](https://bugzilla.redhat.com/show_bug.cgi?id=2110524): Improve decision logic around syncing cloud config [#198](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/198) * [Bug 2089334](https://bugzilla.redhat.com/show_bug.cgi?id=2089334): Use service account credentials for all providers [#193](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/193) * [Bug 2067806](https://bugzilla.redhat.com/show_bug.cgi?id=2067806): Bump dependencies to K8s 1.24 [#192](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/192) * Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART [#191](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/191) * [Bug 2082687](https://bugzilla.redhat.com/show_bug.cgi?id=2082687): IBMCloud: Remove CCM port argument [#189](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/189) * Remove port argument and update enivronment variable name from powervs cloud provider deployment [#188](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/188) * [Bug 2074471](https://bugzilla.redhat.com/show_bug.cgi?id=2074471): update enabled and use-octavia options in cloud-conf config-map [#183](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/183) * [Bug 2074606](https://bugzilla.redhat.com/show_bug.cgi?id=2074606): Allow OpenStack CCM to annotate Service objects [#184](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/184) * OpenStack: ensure config-map is updated only when needed [#185](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/185) * Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART [#166](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/166) * [Bug 2051457](https://bugzilla.redhat.com/show_bug.cgi?id=2051457): CCM PodDisruptionBudgets [#174](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/174) * Add a troubleshooting doc [#177](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/177) * Add generation of config for OpenStack CCM [#178](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/178) * Add PowerVS cloud controller manager [#179](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/179) * Use "go install" to fetch binaries [#161](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/161) * [Bug 2059716](https://bugzilla.redhat.com/show_bug.cgi?id=2059716): Ensure release version is set on config sync controller [#176](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/176) * [Bug 2059716](https://bugzilla.redhat.com/show_bug.cgi?id=2059716): Ensure release version is injected into all controller status clients [#175](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/175) * [Bug 2055723](https://bugzilla.redhat.com/show_bug.cgi?id=2055723): start watching KubeControllerManager resource [#173](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/173) * Changes to support config map sych for Power VS Platform [#172](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/172) * Added credential request file for Power VS [#171](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/171) * Update OWNERS [#170](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/170) * Fix a typo in watch predicates [#169](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/169) * [Bug 2047998](https://bugzilla.redhat.com/show_bug.cgi?id=2047998): Alibaba should deploy image from release payload [#167](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/167) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/237ae9966d99fec1b493e22a552b6da59bf6225d...2dbffc67e4fb2ef972f4ba6e6c1a76447193c6ce) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/4fbf99986d7d55885c0dc4a53610a53f97171242) * : OCPBUGS-21231: bump library-go to include switch to HTTP/1.1 [#374](https://github.com/openshift/cluster-config-operator/pull/374) * Update images to be consistent with ART [#253](https://github.com/openshift/cluster-config-operator/pull/253) * [Bug 2082763](https://bugzilla.redhat.com/show_bug.cgi?id=2082763): Drop the OperatorHub CR instance [#245](https://github.com/openshift/cluster-config-operator/pull/245) * bump openshift/api, client-go [#251](https://github.com/openshift/cluster-config-operator/pull/251) * manifests/deployment: comply to restricted pod security level [#248](https://github.com/openshift/cluster-config-operator/pull/248) * Reorder the empty Node CR resource to ensure it is applied after the Node CRD [#244](https://github.com/openshift/cluster-config-operator/pull/244) * Bump(o/client-go); Add empty config/v1/node/cluster object [#238](https://github.com/openshift/cluster-config-operator/pull/238) * [Bug 2074243](https://bugzilla.redhat.com/show_bug.cgi?id=2074243): Bump `openshift/api` to `c3bb724c28` [#243](https://github.com/openshift/cluster-config-operator/pull/243) * Revert config/v1/Node crd.yaml [#242](https://github.com/openshift/cluster-config-operator/pull/242) * Bump openshift/api, openshit/client-go to add ImageMirrorSet CRDs [#236](https://github.com/openshift/cluster-config-operator/pull/236) * bumped openshift API to have node object related changes [#233](https://github.com/openshift/cluster-config-operator/pull/233) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/0840c6f2f7f25ad9aba1a36597760f36ff0ab097...4fbf99986d7d55885c0dc4a53610a53f97171242) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/a95aec84224c06e448601b4de4906dfa49e1d429) * [OCPBUGS-21425](https://issues.redhat.com/browse/OCPBUGS-21425): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#170](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/170) * [OCPBUGS-19513](https://issues.redhat.com/browse/OCPBUGS-19513): Fix readOnlyRootFilesystem for 4.11 [#165](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/165) * [Bug 2097283](https://bugzilla.redhat.com/show_bug.cgi?id=2097283): Update manifests to v6.0.1 [#121](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/121) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#119](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/119) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#118](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/118) * [AUTH-133](https://issues.redhat.com/browse/AUTH-133): assets: comply to restricted pod security level [#120](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/120) * manifests/deployment: comply to restricted pod security level [#116](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/116) * [Bug 2057079](https://bugzilla.redhat.com/show_bug.cgi?id=2057079): Fix race when setting Progressing condition [#114](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/114) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#113](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/113) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/ace186237dad53c28b0d05761a2c85ce7b32b56b...a95aec84224c06e448601b4de4906dfa49e1d429) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/69b0ceb465c42e22ef51a01952f25ef7bb1f5d99) * [OCPBUGS-21511](https://issues.redhat.com/browse/OCPBUGS-21511): Bump golang.org/x/net/http2 to v0.17.0 for CVE-2023-39325 in cluster-dns-operator [#392](https://github.com/openshift/cluster-dns-operator/pull/392) * [OCPBUGS-2528](https://issues.redhat.com/browse/OCPBUGS-2528): keep dns-default annotations intact [#349](https://github.com/openshift/cluster-dns-operator/pull/349) * [OCPBUGS-2050](https://issues.redhat.com/browse/OCPBUGS-2050): Reconcile the DNS namespace [#346](https://github.com/openshift/cluster-dns-operator/pull/346) * [OCPBUGS-2112](https://issues.redhat.com/browse/OCPBUGS-2112): [release-4.11] Backport Address e2e failures due to pod security [#347](https://github.com/openshift/cluster-dns-operator/pull/347) * [Bug 2092041](https://bugzilla.redhat.com/show_bug.cgi?id=2092041): Bump k8s to 1.24 and Golang to 1.18 [#328](https://github.com/openshift/cluster-dns-operator/pull/328) * [Bug 2095941](https://bugzilla.redhat.com/show_bug.cgi?id=2095941): topology aware hints to prefer to keep dns traffic within a zone [#322](https://github.com/openshift/cluster-dns-operator/pull/322) * [Bug 2093236](https://bugzilla.redhat.com/show_bug.cgi?id=2093236): propagate retry request for progressing updates [#325](https://github.com/openshift/cluster-dns-operator/pull/325) * [Bug 2061244](https://bugzilla.redhat.com/show_bug.cgi?id=2061244): desiredDNSDaemonSet: Allow autoscaler to evict [#320](https://github.com/openshift/cluster-dns-operator/pull/320) * [Bug 2037190](https://bugzilla.redhat.com/show_bug.cgi?id=2037190): Skip frequent updates to progressing and degraded conditions to prevent status flaps [#318](https://github.com/openshift/cluster-dns-operator/pull/318) * [NE-755](https://issues.redhat.com/browse/NE-755): Support CoreDNS forwarding DNS requests over TLS [#314](https://github.com/openshift/cluster-dns-operator/pull/314) * [AUTH-182](https://issues.redhat.com/browse/AUTH-182): manifests/deployment: comply to restricted pod security level [#319](https://github.com/openshift/cluster-dns-operator/pull/319) * NE-815 Extract test Corefiles inside DNS ConfigMap test to individual files [#315](https://github.com/openshift/cluster-dns-operator/pull/315) * Added gcs278 to OWNERS [#312](https://github.com/openshift/cluster-dns-operator/pull/312) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/ab6f33b3d2b388c3bc804f5e7aa0dedb8207396f...69b0ceb465c42e22ef51a01952f25ef7bb1f5d99) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/5617740c013848971699d210a8b28e208938e0d8) * [OCPBUGS-21108](https://issues.redhat.com/browse/OCPBUGS-21108): fixing CVE-2023-39325 by updating dependencies [#1150](https://github.com/openshift/cluster-etcd-operator/pull/1150) * [OCPBUGS-22785](https://issues.redhat.com/browse/OCPBUGS-22785): [4.11] Backports of backup/restore fixes [#1145](https://github.com/openshift/cluster-etcd-operator/pull/1145) * [OCPBUGS-18283](https://issues.redhat.com/browse/OCPBUGS-18283): reset snapshot default counts to avoid file already lo… [#1103](https://github.com/openshift/cluster-etcd-operator/pull/1103) * [OCPBUGS-9908](https://issues.redhat.com/browse/OCPBUGS-9908): Garbage collect grafana-dashboard-etcd [#1022](https://github.com/openshift/cluster-etcd-operator/pull/1022) * [OCPBUGS-9967](https://issues.redhat.com/browse/OCPBUGS-9967): increase live/ready timeout and failure thresholds [#1025](https://github.com/openshift/cluster-etcd-operator/pull/1025) * [OCPBUGS-7720](https://issues.redhat.com/browse/OCPBUGS-7720): set default timeouts in etcdcli [#1007](https://github.com/openshift/cluster-etcd-operator/pull/1007) * [OCPBUGS-7510](https://issues.redhat.com/browse/OCPBUGS-7510): [release-4.11] fail early on missing node status envs [#1006](https://github.com/openshift/cluster-etcd-operator/pull/1006) * [OCPBUGS-4785](https://issues.redhat.com/browse/OCPBUGS-4785): only allow TLS1.2/1.3 ciphersuites in etcd and CEO [#973](https://github.com/openshift/cluster-etcd-operator/pull/973) * [OCPBUGS-2919](https://issues.redhat.com/browse/OCPBUGS-2919): update prometheus alerts [#957](https://github.com/openshift/cluster-etcd-operator/pull/957) * [OCPBUGS-2113](https://issues.redhat.com/browse/OCPBUGS-2113): Add niceness to important etcd processes [#943](https://github.com/openshift/cluster-etcd-operator/pull/943) * [OCPBUGS-1607](https://issues.redhat.com/browse/OCPBUGS-1607): increase etcdGRPCRequestsSlow thresholds [#934](https://github.com/openshift/cluster-etcd-operator/pull/934) * [OCPBUGS-1354](https://issues.redhat.com/browse/OCPBUGS-1354): fix cert rotation on IP changes [#931](https://github.com/openshift/cluster-etcd-operator/pull/931) * [OCPBUGS-685](https://issues.redhat.com/browse/OCPBUGS-685): preserve log message on failures [#924](https://github.com/openshift/cluster-etcd-operator/pull/924) * [Bug 2108595](https://bugzilla.redhat.com/show_bug.cgi?id=2108595): Cherrypick move etcd monitoring dashboard… [#893](https://github.com/openshift/cluster-etcd-operator/pull/893) * [Bug 2107070](https://bugzilla.redhat.com/show_bug.cgi?id=2107070): etcd-metrics container is flooding logs [#889](https://github.com/openshift/cluster-etcd-operator/pull/889) * [Bug 2108175](https://bugzilla.redhat.com/show_bug.cgi?id=2108175): Fix etcd minor upgrade backup [#891](https://github.com/openshift/cluster-etcd-operator/pull/891) * fixing unit test health flakes with tolerance [#881](https://github.com/openshift/cluster-etcd-operator/pull/881) * [Bug 2105146](https://bugzilla.redhat.com/show_bug.cgi?id=2105146): fix degraded missing cluster version [#877](https://github.com/openshift/cluster-etcd-operator/pull/877) * [Bug 2105247](https://bugzilla.redhat.com/show_bug.cgi?id=2105247): Add etcd pod liveness probe [#879](https://github.com/openshift/cluster-etcd-operator/pull/879) * [Bug 2101460](https://bugzilla.redhat.com/show_bug.cgi?id=2101460): add timeout to health checks [#863](https://github.com/openshift/cluster-etcd-operator/pull/863) * [Bug 2095703](https://bugzilla.redhat.com/show_bug.cgi?id=2095703): fix multi-address member removal [#858](https://github.com/openshift/cluster-etcd-operator/pull/858) * [Bug 2092880](https://bugzilla.redhat.com/show_bug.cgi?id=2092880): avoid extrapolation in leaderhip alert [#851](https://github.com/openshift/cluster-etcd-operator/pull/851) * [Bug 2092395](https://bugzilla.redhat.com/show_bug.cgi?id=2092395): etcdHighNumberOfFailedGRPCRequests alerts with wrong results [#843](https://github.com/openshift/cluster-etcd-operator/pull/843) * [Bug 2064024](https://bugzilla.redhat.com/show_bug.cgi?id=2064024): Update library-go to 80f9619c2 [#816](https://github.com/openshift/cluster-etcd-operator/pull/816) * [Bug 2090929](https://bugzilla.redhat.com/show_bug.cgi?id=2090929): cluster-backup.sh script has a conflict to use the '/etc/kubernetes/static-pod-certs' folder if a custom API certificate is defined [#845](https://github.com/openshift/cluster-etcd-operator/pull/845) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): defines a startupProbe for etcd container [#840](https://github.com/openshift/cluster-etcd-operator/pull/840) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): brings back initial delay seconds to the previous value [#839](https://github.com/openshift/cluster-etcd-operator/pull/839) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): increase initial delay seconds to match the discovery timeout [#838](https://github.com/openshift/cluster-etcd-operator/pull/838) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): removes TestScalingUpAndDownSingleNode [#813](https://github.com/openshift/cluster-etcd-operator/pull/813) * [Bug 2073901](https://bugzilla.redhat.com/show_bug.cgi?id=2073901): revisit defrag controller degradation [#812](https://github.com/openshift/cluster-etcd-operator/pull/812) * [Bug 2087983](https://bugzilla.redhat.com/show_bug.cgi?id=2087983): remove etcd_perf before restore [#823](https://github.com/openshift/cluster-etcd-operator/pull/823) * Updating cluster-etcd-operator images to be consistent with ART [#831](https://github.com/openshift/cluster-etcd-operator/pull/831) * [Bug 2012065](https://bugzilla.redhat.com/show_bug.cgi?id=2012065): Add summary to etcd alert rules [#822](https://github.com/openshift/cluster-etcd-operator/pull/822) * [Bug 2067738](https://bugzilla.redhat.com/show_bug.cgi?id=2067738): update prometheus client [#821](https://github.com/openshift/cluster-etcd-operator/pull/821) * [Bug 2061496](https://bugzilla.redhat.com/show_bug.cgi?id=2061496): Adding message to ControllerStarted:RecentBackup condition [#760](https://github.com/openshift/cluster-etcd-operator/pull/760) * [Bug 2063183](https://bugzilla.redhat.com/show_bug.cgi?id=2063183): Upping defrag timeout to 1 minute [#762](https://github.com/openshift/cluster-etcd-operator/pull/762) * manifests/deployment: comply to restricted pod security level [#802](https://github.com/openshift/cluster-etcd-operator/pull/802) * test utils changes the way endpoints data key is calculated [#814](https://github.com/openshift/cluster-etcd-operator/pull/814) * [Bug 2077160](https://bugzilla.redhat.com/show_bug.cgi?id=2077160): Adding Thomas to reviewers and me to approvers [#815](https://github.com/openshift/cluster-etcd-operator/pull/815) * [Bug 2079724](https://bugzilla.redhat.com/show_bug.cgi?id=2079724): manually disable defrag [#798](https://github.com/openshift/cluster-etcd-operator/pull/798) * fire an event on successfull member removal [#808](https://github.com/openshift/cluster-etcd-operator/pull/808) * Scale up new members as learners [#758](https://github.com/openshift/cluster-etcd-operator/pull/758) * clustermemberremovalcontroller must examine cluster health before removing a member [#805](https://github.com/openshift/cluster-etcd-operator/pull/805) * [Bug 2077833](https://bugzilla.redhat.com/show_bug.cgi?id=2077833): add more logging [#800](https://github.com/openshift/cluster-etcd-operator/pull/800) * [Bug 2076793](https://bugzilla.redhat.com/show_bug.cgi?id=2076793): pkg/operator/upgradebackupcontroller: Pivot from Failing to ReleaseAccepted [#799](https://github.com/openshift/cluster-etcd-operator/pull/799) * [Bug 2076831](https://bugzilla.redhat.com/show_bug.cgi?id=2076831): fixing client readyz leak [#796](https://github.com/openshift/cluster-etcd-operator/pull/796) * exports common functions used by the scaling controllers [#795](https://github.com/openshift/cluster-etcd-operator/pull/795) * introduces MachineDeletionHooksController [#781](https://github.com/openshift/cluster-etcd-operator/pull/781) * ClusterMemberController adds members whose machines are not pending deletion [#790](https://github.com/openshift/cluster-etcd-operator/pull/790) * Update owners with new team members [#792](https://github.com/openshift/cluster-etcd-operator/pull/792) * member removal part two [#779](https://github.com/openshift/cluster-etcd-operator/pull/779) * adds attemptToRemoveLearningMember to the cluster member removal controller [#791](https://github.com/openshift/cluster-etcd-operator/pull/791) * [Bug 2063831](https://bugzilla.redhat.com/show_bug.cgi?id=2063831): Replace quorumguard and add readyz server [#789](https://github.com/openshift/cluster-etcd-operator/pull/789) * [Bug 2074544](https://bugzilla.redhat.com/show_bug.cgi?id=2074544): revert #784 and #780 to fix ipv6 [#786](https://github.com/openshift/cluster-etcd-operator/pull/786) * [Bug 2075015](https://bugzilla.redhat.com/show_bug.cgi?id=2075015): Revert "replace quorumguard and add readyz server" [#787](https://github.com/openshift/cluster-etcd-operator/pull/787) * no pending on etcdHighNumberOfLeaderChanges 1st 1h [#783](https://github.com/openshift/cluster-etcd-operator/pull/783) * [Bug 2063831](https://bugzilla.redhat.com/show_bug.cgi?id=2063831): replace quorumguard and add readyz server [#763](https://github.com/openshift/cluster-etcd-operator/pull/763) * adds attemptToRemoveLearningMember to the cluster member removal controller [#784](https://github.com/openshift/cluster-etcd-operator/pull/784) * [Bug 2053596](https://bugzilla.redhat.com/show_bug.cgi?id=2053596): Increase IBMCloud VPC heartbeat timeout to 500ms and leader election timeout to 2500ms [#759](https://github.com/openshift/cluster-etcd-operator/pull/759) * ClusterMemberController adds members whose machines are not pending deletion [#780](https://github.com/openshift/cluster-etcd-operator/pull/780) * refactors the member removal controller [#782](https://github.com/openshift/cluster-etcd-operator/pull/782) * Revert "Merge pull request #768 from p0lyn0mial/member-removal-part-two" [#778](https://github.com/openshift/cluster-etcd-operator/pull/778) * member removal part two [#768](https://github.com/openshift/cluster-etcd-operator/pull/768) * turn on initial corruption check [#770](https://github.com/openshift/cluster-etcd-operator/pull/770) * adds helpers functions used by the vertical scaling controllers [#769](https://github.com/openshift/cluster-etcd-operator/pull/769) * introduces ReadDesiredControlPlaneReplicasCount [#767](https://github.com/openshift/cluster-etcd-operator/pull/767) * [Bug 2057642](https://bugzilla.redhat.com/show_bug.cgi?id=2057642): Change fsync degraded reason to CamelCase [#756](https://github.com/openshift/cluster-etcd-operator/pull/756) * [Bug 2057644](https://bugzilla.redhat.com/show_bug.cgi?id=2057644): Fix FSyncController degraded latch [#754](https://github.com/openshift/cluster-etcd-operator/pull/754) * an e2e test for checking scaling up and down by one master node [#740](https://github.com/openshift/cluster-etcd-operator/pull/740) * adds member removal controller [#737](https://github.com/openshift/cluster-etcd-operator/pull/737) * [Bug 2053596](https://bugzilla.redhat.com/show_bug.cgi?id=2053596): Increasing election timeout for IBMCloud VPC [#746](https://github.com/openshift/cluster-etcd-operator/pull/746) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#750](https://github.com/openshift/cluster-etcd-operator/pull/750) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#748](https://github.com/openshift/cluster-etcd-operator/pull/748) * changes the signature of the MemberRemove method to accept a memberID (uint64) not a Name (string) [#741](https://github.com/openshift/cluster-etcd-operator/pull/741) * [Bug 2052270](https://bugzilla.redhat.com/show_bug.cgi?id=2052270): pkg/operator/metriccontroller/fsync_controller: Fix "treshold" -> "thresholds" typos [#743](https://github.com/openshift/cluster-etcd-operator/pull/743) * an e2e test for checking scaling up by one master node [#732](https://github.com/openshift/cluster-etcd-operator/pull/732) * wait for other installers to finish [#736](https://github.com/openshift/cluster-etcd-operator/pull/736) * [Bug 2042501](https://bugzilla.redhat.com/show_bug.cgi?id=2042501): bump library-go [#729](https://github.com/openshift/cluster-etcd-operator/pull/729) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/e6fbce54d19b30d069ffa558d09529ca89aaa1fa...5617740c013848971699d210a8b28e208938e0d8) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/d34b3ef1941864e566ebdf9ee04c55d14b8b4cd9) * [OCPBUGS-20672](https://issues.redhat.com/browse/OCPBUGS-20672): mitigate effects of rapid reset [#954](https://github.com/openshift/cluster-image-registry-operator/pull/954) * [OCPBUGS-9921](https://issues.redhat.com/browse/OCPBUGS-9921): bump aws-sdk-go [#848](https://github.com/openshift/cluster-image-registry-operator/pull/848) * add myself to OWNERS [#831](https://github.com/openshift/cluster-image-registry-operator/pull/831) * [OCPBUGS-6907](https://issues.redhat.com/browse/OCPBUGS-6907): OpenStack: Add support for Proxy [#836](https://github.com/openshift/cluster-image-registry-operator/pull/836) * [OCPBUGS-5778](https://issues.redhat.com/browse/OCPBUGS-5778): swift: Retry connecting to OpenStack [#830](https://github.com/openshift/cluster-image-registry-operator/pull/830) * [OCPBUGS-1847](https://issues.redhat.com/browse/OCPBUGS-1847): bump aws-go-sdk, adding support for me-central-1 [#801](https://github.com/openshift/cluster-image-registry-operator/pull/801) * [Bug 2110958](https://bugzilla.redhat.com/show_bug.cgi?id=2110958): Use actualDaemonSet for SetDaemonSetGeneration [#795](https://github.com/openshift/cluster-image-registry-operator/pull/795) * [Bug 2110958](https://bugzilla.redhat.com/show_bug.cgi?id=2110958): Add progressing condition for node-ca daemon set [#792](https://github.com/openshift/cluster-image-registry-operator/pull/792) * [Bug 2083466](https://bugzilla.redhat.com/show_bug.cgi?id=2083466): Disable dualstack when it is not available [#784](https://github.com/openshift/cluster-image-registry-operator/pull/784) * [IR-234](https://issues.redhat.com/browse/IR-234): Custom certificate authorities for S3 [#759](https://github.com/openshift/cluster-image-registry-operator/pull/759) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#782](https://github.com/openshift/cluster-image-registry-operator/pull/782) * Bump golangci-lint [#783](https://github.com/openshift/cluster-image-registry-operator/pull/783) * Add reviewers [#781](https://github.com/openshift/cluster-image-registry-operator/pull/781) * [Bug 2009352](https://bugzilla.redhat.com/show_bug.cgi?id=2009352): IR-253: add prometheus rules for image registry operations metrics [#769](https://github.com/openshift/cluster-image-registry-operator/pull/769) * [Bug 2082492](https://bugzilla.redhat.com/show_bug.cgi?id=2082492): IBMCloud: Add admin permissions to CR [#776](https://github.com/openshift/cluster-image-registry-operator/pull/776) * [Bug 2009352](https://bugzilla.redhat.com/show_bug.cgi?id=2009352): IR-120: Add prometheus rules for image stream tags rules [#772](https://github.com/openshift/cluster-image-registry-operator/pull/772) * [Bug 2065224](https://bugzilla.redhat.com/show_bug.cgi?id=2065224): Fix cloudfront middleware configuration [#764](https://github.com/openshift/cluster-image-registry-operator/pull/764) * [Bug 2065552](https://bugzilla.redhat.com/show_bug.cgi?id=2065552): Bump aws-sdk-go to 1.44.4 [#771](https://github.com/openshift/cluster-image-registry-operator/pull/771) * Fix storageClass name when creating PVC [#773](https://github.com/openshift/cluster-image-registry-operator/pull/773) * [Bug 2007611](https://bugzilla.redhat.com/show_bug.cgi?id=2007611): Merge S3 CA bundle with system CA bundle [#770](https://github.com/openshift/cluster-image-registry-operator/pull/770) * [IR-195](https://issues.redhat.com/browse/IR-195): set pod topology spread constraint [#730](https://github.com/openshift/cluster-image-registry-operator/pull/730) * [IR-198](https://issues.redhat.com/browse/IR-198): Add default storage type for Nutanix platform [#760](https://github.com/openshift/cluster-image-registry-operator/pull/760) * [IR-120](https://issues.redhat.com/browse/IR-120): Implementing metrics for ImageStreams [#768](https://github.com/openshift/cluster-image-registry-operator/pull/768) * [Bug 2067995](https://bugzilla.redhat.com/show_bug.cgi?id=2067995): Deployment annotations, runtimeClassName override and fs policy change [#763](https://github.com/openshift/cluster-image-registry-operator/pull/763) * [Bug 2015459](https://bugzilla.redhat.com/show_bug.cgi?id=2015459): Enable health check for storage driver [#732](https://github.com/openshift/cluster-image-registry-operator/pull/732) * [Bug 2056519](https://bugzilla.redhat.com/show_bug.cgi?id=2056519): Enable enableHttpsTrafficOnly for Azure storage account [#756](https://github.com/openshift/cluster-image-registry-operator/pull/756) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#747](https://github.com/openshift/cluster-image-registry-operator/pull/747) * [Bug 1990125](https://bugzilla.redhat.com/show_bug.cgi?id=1990125): Retry on pruner failures [#754](https://github.com/openshift/cluster-image-registry-operator/pull/754) * [Bug 1992553](https://bugzilla.redhat.com/show_bug.cgi?id=1992553): Remove PrometheusRule [#750](https://github.com/openshift/cluster-image-registry-operator/pull/750) * [Bug 2048214](https://bugzilla.redhat.com/show_bug.cgi?id=2048214): Alibaba: adding permissions for using KMS encryption [#751](https://github.com/openshift/cluster-image-registry-operator/pull/751) * [Bug 2048186](https://bugzilla.redhat.com/show_bug.cgi?id=2048186): Fix panic in finalizer handler [#745](https://github.com/openshift/cluster-image-registry-operator/pull/745) * [Bug 2015800](https://bugzilla.redhat.com/show_bug.cgi?id=2015800): fix(ibmcos): Resource key validation + update status granularly [#742](https://github.com/openshift/cluster-image-registry-operator/pull/742) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/80540e65a4b8fbed7996fc6a0773141e23d97867...d34b3ef1941864e566ebdf9ee04c55d14b8b4cd9) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/9e60f1f1e166b8097e21a6187123fd49ea0e02c2) * [OCPBUGS-20748](https://issues.redhat.com/browse/OCPBUGS-20748): Bump golang.org/x/net for CVE-2023-44487 [#989](https://github.com/openshift/cluster-ingress-operator/pull/989) * [OCPBUGS-22433](https://issues.redhat.com/browse/OCPBUGS-22433): test/e2e: Don't use openshift/origin-node [#993](https://github.com/openshift/cluster-ingress-operator/pull/993) * [OCPBUGS-14456](https://issues.redhat.com/browse/OCPBUGS-14456), [OCPBUGS-14457](https://issues.redhat.com/browse/OCPBUGS-14457): Handle mTLS CRLs, and fix accidental CRL duplication [#942](https://github.com/openshift/cluster-ingress-operator/pull/942) * [OCPBUGS-3560](https://issues.redhat.com/browse/OCPBUGS-3560): Allow PROXY protocol for "Private" strategy [#914](https://github.com/openshift/cluster-ingress-operator/pull/914) * [OCPBUGS-8000](https://issues.redhat.com/browse/OCPBUGS-8000): certificate-publisher: Don't publish extraneous certificates [#894](https://github.com/openshift/cluster-ingress-operator/pull/894) * [OCPBUGS-3049](https://issues.redhat.com/browse/OCPBUGS-3049): Update CRLs when they expire [#853](https://github.com/openshift/cluster-ingress-operator/pull/853) * [Bug 2110528](https://bugzilla.redhat.com/show_bug.cgi?id=2110528): Fix another issue with route status clearing race condition caused by not validating generation id [#813](https://github.com/openshift/cluster-ingress-operator/pull/813) * [Bug 2108214](https://bugzilla.redhat.com/show_bug.cgi?id=2108214): Fix route status clearing race condition caused by using the cache [#807](https://github.com/openshift/cluster-ingress-operator/pull/807) * [Bug 2106116](https://bugzilla.redhat.com/show_bug.cgi?id=2106116): Bump openshift/api for healthCheckInterval fix [#806](https://github.com/openshift/cluster-ingress-operator/pull/806) * [Bug 2093462](https://bugzilla.redhat.com/show_bug.cgi?id=2093462): status: Watch clusteroperators [#714](https://github.com/openshift/cluster-ingress-operator/pull/714) * [Bug 2092042](https://bugzilla.redhat.com/show_bug.cgi?id=2092042): Bump vendored k8s libraries to 1.24 [#768](https://github.com/openshift/cluster-ingress-operator/pull/768) * [Bug 1944851](https://bugzilla.redhat.com/show_bug.cgi?id=1944851): Clear route status when an ingress controller is deleted or a route is un-admitted [#724](https://github.com/openshift/cluster-ingress-operator/pull/724) * [Bug 2094932](https://bugzilla.redhat.com/show_bug.cgi?id=2094932): Patching config.ingresses status requires patch permissions [#788](https://github.com/openshift/cluster-ingress-operator/pull/788) * [Bug 2097555](https://bugzilla.redhat.com/show_bug.cgi?id=2097555): Fix loadBalancerServiceAnnotationsChanged check and update [#783](https://github.com/openshift/cluster-ingress-operator/pull/783) * [Bug 2094932](https://bugzilla.redhat.com/show_bug.cgi?id=2094932): Ingress operator needs permission to list nodes [#785](https://github.com/openshift/cluster-ingress-operator/pull/785) * [Bug 2095229](https://bugzilla.redhat.com/show_bug.cgi?id=2095229): desiredRouterDeployment: Check for nil hostNetwork [#780](https://github.com/openshift/cluster-ingress-operator/pull/780) * [Bug 2094962](https://bugzilla.redhat.com/show_bug.cgi?id=2094962): Fix flakey logic in haproxy timeout tests [#775](https://github.com/openshift/cluster-ingress-operator/pull/775) * [Bug 2094932](https://bugzilla.redhat.com/show_bug.cgi?id=2094932): MGMT-10403: Set the `defaultPlacement` for none-platform SNO clusters installed before 4.11 [#767](https://github.com/openshift/cluster-ingress-operator/pull/767) * [Bug 2075671](https://bugzilla.redhat.com/show_bug.cgi?id=2075671): Add a e2e test that verifies the ingress operator's cache doesn't include everything [#764](https://github.com/openshift/cluster-ingress-operator/pull/764) * [Bug 2055601](https://bugzilla.redhat.com/show_bug.cgi?id=2055601): Add cluster tag to *.apps domain record [#737](https://github.com/openshift/cluster-ingress-operator/pull/737) * [Bug 2080379](https://bugzilla.redhat.com/show_bug.cgi?id=2080379): Group all e2e tests as parallel or serial [#756](https://github.com/openshift/cluster-ingress-operator/pull/756) * [Bug 2082428](https://bugzilla.redhat.com/show_bug.cgi?id=2082428): Add MicroSecond processing [#762](https://github.com/openshift/cluster-ingress-operator/pull/762) * [NE-408](https://issues.redhat.com/browse/NE-408): Allow configuring ELB connection idle timeout [#451](https://github.com/openshift/cluster-ingress-operator/pull/451) * [NE-825](https://issues.redhat.com/browse/NE-825): Update router to use random balancing algorithm once again [#727](https://github.com/openshift/cluster-ingress-operator/pull/727) * [Bug 2084433](https://bugzilla.redhat.com/show_bug.cgi?id=2084433): AUTH-133: assets: comply to pod security [#760](https://github.com/openshift/cluster-ingress-operator/pull/760) * [NE-577](https://issues.redhat.com/browse/NE-577): Support a Configurable ROUTER_MAX_CONNECTIONS in HAproxy [#735](https://github.com/openshift/cluster-ingress-operator/pull/735) * Add support for route53 in the us-isob-east-1 region + fix [#754](https://github.com/openshift/cluster-ingress-operator/pull/754) * [AUTH-184](https://issues.redhat.com/browse/AUTH-184): manifests/deployment: comply to restricted pod security level [#749](https://github.com/openshift/cluster-ingress-operator/pull/749) * [Bug 2081447](https://bugzilla.redhat.com/show_bug.cgi?id=2081447): `desiredRouterDeployment`: Fix for port defaulting [#753](https://github.com/openshift/cluster-ingress-operator/pull/753) * [Bug 2079468](https://bugzilla.redhat.com/show_bug.cgi?id=2079468): Enhance the waitForIngressControllerCondition for better CI results [#745](https://github.com/openshift/cluster-ingress-operator/pull/745) * [NE-882](https://issues.redhat.com/browse/NE-882): Set `ROUTER_DOMAIN` to enable route subdomain field [#674](https://github.com/openshift/cluster-ingress-operator/pull/674) * Specify host port for host networking strategy [#694](https://github.com/openshift/cluster-ingress-operator/pull/694) * [Bug 2007246](https://bugzilla.redhat.com/show_bug.cgi?id=2007246): Add allowPrivilegeEscalation to the router container [#743](https://github.com/openshift/cluster-ingress-operator/pull/743) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Determine number of replicas according to `DefaultPlacement` [#728](https://github.com/openshift/cluster-ingress-operator/pull/728) * [Bug 2076193](https://bugzilla.redhat.com/show_bug.cgi?id=2076193): Remove special-casing for default ingresscontroller probe parameters [#742](https://github.com/openshift/cluster-ingress-operator/pull/742) * [NE-585](https://issues.redhat.com/browse/NE-585): Make ROUTER_BACKEND_CHECK_INTERVAL configurable [#712](https://github.com/openshift/cluster-ingress-operator/pull/712) * BUG 2076984: test/e2e: add resilience to RBAC test teardown [#744](https://github.com/openshift/cluster-ingress-operator/pull/744) * BUG 2054200: Fix removing custom created service in openshift-ingress with same name [#707](https://github.com/openshift/cluster-ingress-operator/pull/707) * Add Nutanix platform [#730](https://github.com/openshift/cluster-ingress-operator/pull/730) * Revert "Bug 2007246: Ingress Controller does not set allowPrivilegeEscalation in the router deployment" [#741](https://github.com/openshift/cluster-ingress-operator/pull/741) * [Bug 2075671](https://bugzilla.redhat.com/show_bug.cgi?id=2075671): Fix k8s client cache object global inclusion and duplication. [#740](https://github.com/openshift/cluster-ingress-operator/pull/740) * [NE-781](https://issues.redhat.com/browse/NE-781): Allow users to tune kubelet probe timeouts [#736](https://github.com/openshift/cluster-ingress-operator/pull/736) * [Bug 2072106](https://bugzilla.redhat.com/show_bug.cgi?id=2072106): Fix test `Errorf` limitation in go 1.18 [#733](https://github.com/openshift/cluster-ingress-operator/pull/733) * [Bug 2071139](https://bugzilla.redhat.com/show_bug.cgi?id=2071139): add pod eviction permission [#734](https://github.com/openshift/cluster-ingress-operator/pull/734) * [Bug 2071139](https://bugzilla.redhat.com/show_bug.cgi?id=2071139): delete default ingress pod if it is scheduled where another router pod already is [#720](https://github.com/openshift/cluster-ingress-operator/pull/720) * [Bug 2069457](https://bugzilla.redhat.com/show_bug.cgi?id=2069457): Delete LoadBalancer-type service finalizer logic [#729](https://github.com/openshift/cluster-ingress-operator/pull/729) * [Bug 2021446](https://bugzilla.redhat.com/show_bug.cgi?id=2021446): Set canary status as unknown if not admitted to default ingress controller [#723](https://github.com/openshift/cluster-ingress-operator/pull/723) * [Bug 2066444](https://bugzilla.redhat.com/show_bug.cgi?id=2066444): update relatedObjects for clusteroperator status [#721](https://github.com/openshift/cluster-ingress-operator/pull/721) * [Bug 2007246](https://bugzilla.redhat.com/show_bug.cgi?id=2007246): Ingress Controller does not set allowPrivilegeEscalation in the router deployment [#718](https://github.com/openshift/cluster-ingress-operator/pull/718) * [Bug 1995953](https://bugzilla.redhat.com/show_bug.cgi?id=1995953): Add unit test for verifying router deployment env is always sorted [#715](https://github.com/openshift/cluster-ingress-operator/pull/715) * [Bug 2057762](https://bugzilla.redhat.com/show_bug.cgi?id=2057762): Set Upgradeable=False if default cert has no SAN [#708](https://github.com/openshift/cluster-ingress-operator/pull/708) * [Bug 2055470](https://bugzilla.redhat.com/show_bug.cgi?id=2055470): Normalize the AWS internal LB annotation value [#704](https://github.com/openshift/cluster-ingress-operator/pull/704) * BUG 2037447: Disable keepalive for canary probe [#701](https://github.com/openshift/cluster-ingress-operator/pull/701) * pkg/operator/controller/ingress/status_test: Fix `...-tag` -> `...-tags` test-case description [#700](https://github.com/openshift/cluster-ingress-operator/pull/700) * Added gcs278 to OWNERS [#698](https://github.com/openshift/cluster-ingress-operator/pull/698) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/805d0587ee481a7d7260d0b4ced0e6046cbfb7b6...9e60f1f1e166b8097e21a6187123fd49ea0e02c2) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/282c25892b515912c7160a7d695a466d69afa44f) * : OCPBUGS-20839: bump library-go to include switch to HTTP/1.1 [#1575](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1575) * [OCPBUGS-7756](https://issues.redhat.com/browse/OCPBUGS-7756): Guard pod set readiness probe endpoint explicitly [#1448](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1448) * [OCPBUGS-2938](https://issues.redhat.com/browse/OCPBUGS-2938): Duplicate prometheus rules for API SLOs after upgrade [#1397](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1397) * [OCPBUGS-4551](https://issues.redhat.com/browse/OCPBUGS-4551): guard controller: set an explicit hostname to avoid name collisions [#1429](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1429) * [OCPBUGS-4301](https://issues.redhat.com/browse/OCPBUGS-4301): bootstrap-kube-apiserver: specify resources.requests [#1412](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1412) * [OCPBUGS-3290](https://issues.redhat.com/browse/OCPBUGS-3290): routes/status resources can leak sensitive data, exclude it from audit [#1422](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1422) * [OCPBUGS-2160](https://issues.redhat.com/browse/OCPBUGS-2160): [release-4.11] serviceaccountissuer: fix case when default value is being used and not trusted after change [#1394](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1394) * [OCPBUGS-2199](https://issues.redhat.com/browse/OCPBUGS-2199): [release-4.11] Wire support for trusted service account issuers [#1386](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1386) * [Bug 2100155](https://bugzilla.redhat.com/show_bug.cgi?id=2100155): specify resource=pod for PSa violation alerts [#1362](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1362) * [Bug 2100155](https://bugzilla.redhat.com/show_bug.cgi?id=2100155): Add new alert on Pod Security violations [#1361](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1361) * [Bug 2050407](https://bugzilla.redhat.com/show_bug.cgi?id=2050407): revert dev cert rotation [#1307](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1307) * [Bug 2100347](https://bugzilla.redhat.com/show_bug.cgi?id=2100347): Bump(openshift/library-go) latency profile observer, controller [#1360](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1360) * [Bug 2074031](https://bugzilla.redhat.com/show_bug.cgi?id=2074031): Support tuning GOGC within a limited range. [#1359](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1359) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): exempt build controller SA from PodSecurity admission [#1358](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1358) * [Bug 2067456](https://bugzilla.redhat.com/show_bug.cgi?id=2067456): OCP 4.11 should be firing APIRemovedInNextEUSReleaseInUse and APIRemovedInNextReleaseInUse for APIs removed in 1.25 [#1332](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1332) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): bump to k8s v0.24.0 [#1341](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1341) * Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1356](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1356) * Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile [#1328](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1328) * Update library-go to 80f9619c2 [#1354](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1354) * Fix debugging information [#1353](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1353) * Revert "Revert "Merge pull request #1338 from stlaz/more_restrictive_sccs"" [#1351](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1351) * Revert "Merge pull request #1338 from stlaz/more_restrictive_sccs" [#1350](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1350) * manifests/deployment: comply to restricted pod security level [#1348](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1348) * add more restrictive SCCs to the platform [#1338](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1338) * [rebase v1.24]: remove insecure-port from kas args [#1347](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1347) * remove enable-swagger-ui from default config [#1343](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1343) * [AUTH-2](https://issues.redhat.com/browse/AUTH-2): reenable PodSecurity on privileged level [#1308](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1308) * render apirequest count to reduce startup errors [#1336](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1336) * Bump(openshift/api): to get CSI changes [#1310](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1310) * Revert pull request 1309 [#1316](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1316) * fix label for max-in-flight-recorder [#1333](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1333) * [Bug 2063342](https://bugzilla.redhat.com/show_bug.cgi?id=2063342): vendor: bump library-go [#1330](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1330) * [Bug 2067384](https://bugzilla.redhat.com/show_bug.cgi?id=2067384): OCP 4.10 should be firing APIRemovedInNextEUSReleaseInUse for APIs removed in 1.25 [#1331](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1331) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#1323](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1323) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#1321](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1321) * [Bug 2052513](https://bugzilla.redhat.com/show_bug.cgi?id=2052513): degraded webhook conditions to errors [#1313](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1313) * [Bug 2052513](https://bugzilla.redhat.com/show_bug.cgi?id=2052513): disable webhook supportability during upgrade [#1309](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1309) * update library-go to get rapid installer pod fixes [#1300](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1300) * Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1299](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1299) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/9d85e4af2055f6eaba062856e022138b4618a258...282c25892b515912c7160a7d695a466d69afa44f) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/97ab7ed27bee6bf9e58f71aae573f20a028c5601) * [OCPBUGS-21036](https://issues.redhat.com/browse/OCPBUGS-21036): Bump deps to address CVE-2023-44487 [4.11] [#765](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/765) * [OCPBUGS-7756](https://issues.redhat.com/browse/OCPBUGS-7756): Guard pod set readiness probe endpoint explicitly [#703](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/703) * [OCPBUGS-4551](https://issues.redhat.com/browse/OCPBUGS-4551): guard controller: set an explicit hostname to avoid name collisions [#690](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/690) * [OCPBUGS-4304](https://issues.redhat.com/browse/OCPBUGS-4304): resources.requests for operator pod [#667](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/667) * [OCPBUGS-826](https://issues.redhat.com/browse/OCPBUGS-826): gc watcher should close connections after throwing away a client [#654](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/654) * [Bug 2118282](https://bugzilla.redhat.com/show_bug.cgi?id=2118282): Make KCM-O conditionally dependent on monitoring stack availability + reconcile [#653](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/653) * [Bug 2114580](https://bugzilla.redhat.com/show_bug.cgi?id=2114580): add runbook urls to KCM-o alerts [#644](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/644) * [Bug 2104552](https://bugzilla.redhat.com/show_bug.cgi?id=2104552): Decouple KCM-O's status from monitoring stack [#637](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/637) * [Bug 2099668](https://bugzilla.redhat.com/show_bug.cgi?id=2099668): introduce GC Watcher controller and add alerts for GarbageCollector [#623](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/623) * [Bug 2087684](https://bugzilla.redhat.com/show_bug.cgi?id=2087684): Reject transition from/to extreme latency profiles (default<->low) [#629](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/629) * [Bug 1902307](https://bugzilla.redhat.com/show_bug.cgi?id=1902307): Let vsphere-legacy-cloud-provider update node objects [#631](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/631) * [Bug 2097186](https://bugzilla.redhat.com/show_bug.cgi?id=2097186): add rbac roles for the podsecuritylabelsyncer even outside bootkube [#632](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/632) * [Bug 2053622](https://bugzilla.redhat.com/show_bug.cgi?id=2053622): PodDisruptionBudgetAtLimit should not alert when no app/pods exist [#630](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/630) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): bump to k8s v0.24.0 [#614](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/614) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): bindata/../namespace-openshift-infra: label namespace as privileged [#628](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/628) * [Bug 2086958](https://bugzilla.redhat.com/show_bug.cgi?id=2086958): e2e: Fix test pod disruption budget at limit alert [#627](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/627) * [Bug 2086959](https://bugzilla.redhat.com/show_bug.cgi?id=2086959): e2e: fix flaky TestLogLevel [#626](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/626) * Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART [#624](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/624) * Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile [#611](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/611) * add RBAC for PSa label syncing controller [#616](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/616) * Fix debugging information [#621](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/621) * manifests/deployment: comply to restricted pod security level [#619](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/619) * policy-controller RBAC: use the new leases API [#618](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/618) * [Bug 1918690](https://bugzilla.redhat.com/show_bug.cgi?id=1918690): update resource-graph to include current resources [#613](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/613) * Update OWNERS [#612](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/612) * Bump(openshift/api): to get CSI changes [#601](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/601) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#608](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/608) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#606](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/606) * Update to use configmapleases [#602](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/602) * [Bug 2029470](https://bugzilla.redhat.com/show_bug.cgi?id=2029470): update library-go to get rapid installer pod fixes [#597](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/597) * [Bug 2045872](https://bugzilla.redhat.com/show_bug.cgi?id=2045872): allow cluster-policy-controller to fallback to default cert [#594](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/594) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/252604c216eee7c3f38a621b8a1f1f4b28a1665b...97ab7ed27bee6bf9e58f71aae573f20a028c5601) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/554fc89c4317e6108851fd3c729dcd11a78f7834) * [OCPBUGS-21220](https://issues.redhat.com/browse/OCPBUGS-21220): bump(golang.org/x/net,openshift) to address CVE-2023-44487 [#506](https://github.com/openshift/cluster-kube-scheduler-operator/pull/506) * [OCPBUGS-7756](https://issues.redhat.com/browse/OCPBUGS-7756): Guard controller: set the readiness probe endpoint explicitly [#464](https://github.com/openshift/cluster-kube-scheduler-operator/pull/464) * [OCPBUGS-4551](https://issues.redhat.com/browse/OCPBUGS-4551): guard controller: set an explicit hostname to avoid name collisions [#458](https://github.com/openshift/cluster-kube-scheduler-operator/pull/458) * [OCPBUGS-4294](https://issues.redhat.com/browse/OCPBUGS-4294): bootstrap-kube-scheduler: specify resources.requests [#449](https://github.com/openshift/cluster-kube-scheduler-operator/pull/449) * Updating ose-cluster-kube-scheduler-operator images to be consistent with ART [#426](https://github.com/openshift/cluster-kube-scheduler-operator/pull/426) * [Bug 2117746](https://bugzilla.redhat.com/show_bug.cgi?id=2117746): Updating ose-cluster-kube-scheduler-operator images to be consistent with ART [#435](https://github.com/openshift/cluster-kube-scheduler-operator/pull/435) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Introduce sync unit test [#430](https://github.com/openshift/cluster-kube-scheduler-operator/pull/430) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): bump to k8s v0.24.0 [#420](https://github.com/openshift/cluster-kube-scheduler-operator/pull/420) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Fix bootstrap leader election config [#428](https://github.com/openshift/cluster-kube-scheduler-operator/pull/428) * [Bug 2064024](https://bugzilla.redhat.com/show_bug.cgi?id=2064024): README: fix scheduler configuration formatting [#427](https://github.com/openshift/cluster-kube-scheduler-operator/pull/427) * [Bug 2064024](https://bugzilla.redhat.com/show_bug.cgi?id=2064024): Update library-go to 80f9619c2 [#425](https://github.com/openshift/cluster-kube-scheduler-operator/pull/425) * Fix debugging information [#424](https://github.com/openshift/cluster-kube-scheduler-operator/pull/424) * manifests/deployment: comply to restricted pod security level [#421](https://github.com/openshift/cluster-kube-scheduler-operator/pull/421) * [rebase v1.24] remove --port flag from bootstrap [#422](https://github.com/openshift/cluster-kube-scheduler-operator/pull/422) * Update OWNERS [#419](https://github.com/openshift/cluster-kube-scheduler-operator/pull/419) * Updating ose-cluster-kube-scheduler-operator images to be consistent with ART [#406](https://github.com/openshift/cluster-kube-scheduler-operator/pull/406) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#417](https://github.com/openshift/cluster-kube-scheduler-operator/pull/417) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#415](https://github.com/openshift/cluster-kube-scheduler-operator/pull/415) * Update resourcelock to configmapleases [#412](https://github.com/openshift/cluster-kube-scheduler-operator/pull/412) * Bump(openshift/api): to get CSI changes [#411](https://github.com/openshift/cluster-kube-scheduler-operator/pull/411) * Do not wait for a port which is no longer used by the scheduler [#410](https://github.com/openshift/cluster-kube-scheduler-operator/pull/410) * update cert injection annotations to beta [#409](https://github.com/openshift/cluster-kube-scheduler-operator/pull/409) * [Bug 2029470](https://bugzilla.redhat.com/show_bug.cgi?id=2029470): update library-go to get rapid installer pod fixes [#407](https://github.com/openshift/cluster-kube-scheduler-operator/pull/407) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/0ed42ed800c1306e2367de60482fb72e3dd22e4a...554fc89c4317e6108851fd3c729dcd11a78f7834) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/56b2189809bbc3b39c04db7e6b4d27235ad2ab9a) * : OCPBUGS-21314: bump library-go to include switch to HTTP/1.1 [#99](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/99) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#82](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/82) * bindata: comply to restricted pod security level [#85](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/85) * manifests/deployment: comply to restricted pod security level [#83](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/83) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/7e1f56849bb85b870585b2b67566d29fd7767a31...56b2189809bbc3b39c04db7e6b4d27235ad2ab9a) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/0533fa53b62f0261977101b8bd16076ac6480871) * [OCPBUGS-25377](https://issues.redhat.com/browse/OCPBUGS-25377): Filter non node CSRs in metrics [#221](https://github.com/openshift/cluster-machine-approver/pull/221) * [OCPBUGS-21413](https://issues.redhat.com/browse/OCPBUGS-21413): Bump x/net package to v0.18.0 [#215](https://github.com/openshift/cluster-machine-approver/pull/215) * [OCPBUGS-10382](https://issues.redhat.com/browse/OCPBUGS-10382): ignore case when checking csr hostnames [#181](https://github.com/openshift/cluster-machine-approver/pull/181) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#165](https://github.com/openshift/cluster-machine-approver/pull/165) * Set default container for log retrieval [#163](https://github.com/openshift/cluster-machine-approver/pull/163) * Define all flags before parsing flags [#161](https://github.com/openshift/cluster-machine-approver/pull/161) * [Bug 2047702](https://bugzilla.redhat.com/show_bug.cgi?id=2047702): Reconcile CSRs approved by other controllers [#160](https://github.com/openshift/cluster-machine-approver/pull/160) * Add techpreview manifests for CAPI machines [#159](https://github.com/openshift/cluster-machine-approver/pull/159) * [Bug 1978303](https://bugzilla.redhat.com/show_bug.cgi?id=1978303): update approve condition logic [#158](https://github.com/openshift/cluster-machine-approver/pull/158) * Allow to define several API groups [#157](https://github.com/openshift/cluster-machine-approver/pull/157) * Shrink csr_check_test.go size [#155](https://github.com/openshift/cluster-machine-approver/pull/155) * Make 'reject_expired' tests works in any time zone [#154](https://github.com/openshift/cluster-machine-approver/pull/154) * README.md: Elaborate a bit more on node join [#150](https://github.com/openshift/cluster-machine-approver/pull/150) * Updating ose-cluster-machine-approver images to be consistent with ART [#153](https://github.com/openshift/cluster-machine-approver/pull/153) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/95404c4edb82f0c9d5eb1d03786c81bd3a137384...0533fa53b62f0261977101b8bd16076ac6480871) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/07fe9fa0623bc34306e4ab965d4cbaf54d59a78d) * [OCPBUGS-22845](https://issues.redhat.com/browse/OCPBUGS-22845): [release-4.11] add RHACS telemetry metrics [#2141](https://github.com/openshift/cluster-monitoring-operator/pull/2141) * [OCPBUGS-21214](https://issues.redhat.com/browse/OCPBUGS-21214): upgrade golang.org/x/net to v0.17.0 [#2124](https://github.com/openshift/cluster-monitoring-operator/pull/2124) * [OCPBUGS-20073](https://issues.redhat.com/browse/OCPBUGS-20073): Limit the value of GOMAXPROCS on node-exporter to 4 [#2110](https://github.com/openshift/cluster-monitoring-operator/pull/2110) * [OCPBUGS-11759](https://issues.redhat.com/browse/OCPBUGS-11759): add startup probe for prometheus-adapter [#1947](https://github.com/openshift/cluster-monitoring-operator/pull/1947) * [OCPBUGS-11465](https://issues.redhat.com/browse/OCPBUGS-11465): jsonnet: Add prometheus container in UWM [#1938](https://github.com/openshift/cluster-monitoring-operator/pull/1938) * Bug OCPBUGS-879: [release-4.11] Add telemetry metrics for HyperShift [#1749](https://github.com/openshift/cluster-monitoring-operator/pull/1749) * [OCPBUGS-4640](https://issues.redhat.com/browse/OCPBUGS-4640): Increase startupProbe for prometheus [#1845](https://github.com/openshift/cluster-monitoring-operator/pull/1845) * [OCPBUGS-4030](https://issues.redhat.com/browse/OCPBUGS-4030): test: increase timeout when checking remote write metrics [#1821](https://github.com/openshift/cluster-monitoring-operator/pull/1821) * [OCPBUGS-1790](https://issues.redhat.com/browse/OCPBUGS-1790): Pass user-defined Alertmanager service in shared configmap [#1781](https://github.com/openshift/cluster-monitoring-operator/pull/1781) * [OCPBUGS-1551](https://issues.redhat.com/browse/OCPBUGS-1551): Dedicated kubelet ServiceMonitor for prometheus-adapter [#1774](https://github.com/openshift/cluster-monitoring-operator/pull/1774) * [Bug 2111345](https://bugzilla.redhat.com/show_bug.cgi?id=2111345): go.mod: update openshift-api to current release-4.11 tip [#1755](https://github.com/openshift/cluster-monitoring-operator/pull/1755) * [Bug 2103127](https://bugzilla.redhat.com/show_bug.cgi?id=2103127): fix alert controllers when not in techpreview [#1709](https://github.com/openshift/cluster-monitoring-operator/pull/1709) * [OCPBUGS-516](https://issues.redhat.com/browse/OCPBUGS-516): [release-4.11] Give precedence to CMO config map proxy config [#1743](https://github.com/openshift/cluster-monitoring-operator/pull/1743) * [Bug 2108595](https://bugzilla.redhat.com/show_bug.cgi?id=2108595): Removes etcd related dashboards from CMO [#1723](https://github.com/openshift/cluster-monitoring-operator/pull/1723) * [Bug 2109731](https://bugzilla.redhat.com/show_bug.cgi?id=2109731): increase alertmanager startupProbe failure threshold [#1726](https://github.com/openshift/cluster-monitoring-operator/pull/1726) * [Bug 2107493](https://bugzilla.redhat.com/show_bug.cgi?id=2107493): Set HA convention on admission-webhook [#1717](https://github.com/openshift/cluster-monitoring-operator/pull/1717) * Synchronize versions of the downstream components [#1698](https://github.com/openshift/cluster-monitoring-operator/pull/1698) * [MON-2091](https://issues.redhat.com/browse/MON-2091): Add support for user-defined alert relabel configs [#1676](https://github.com/openshift/cluster-monitoring-operator/pull/1676) * [Bug 2037513](https://bugzilla.redhat.com/show_bug.cgi?id=2037513): Fix dashboards having container_fs* metrices in queries [#1554](https://github.com/openshift/cluster-monitoring-operator/pull/1554) * [MON-2552](https://issues.redhat.com/browse/MON-2552): Add support for user-defined alerting rules [#1675](https://github.com/openshift/cluster-monitoring-operator/pull/1675) * Pin Jsonnet versions for release 4.11 [#1693](https://github.com/openshift/cluster-monitoring-operator/pull/1693) * [Bug 2091902](https://bugzilla.redhat.com/show_bug.cgi?id=2091902): Improve performance of Prometheus Adapter [#1692](https://github.com/openshift/cluster-monitoring-operator/pull/1692) * Adding a usage metric for Openshift Sandboxed Containers [#1662](https://github.com/openshift/cluster-monitoring-operator/pull/1662) * [MON-2567](https://issues.redhat.com/browse/MON-2567): enable AlertmanagerConfig v1beta1 [#1682](https://github.com/openshift/cluster-monitoring-operator/pull/1682) * Synchronize versions of the downstream components [#1689](https://github.com/openshift/cluster-monitoring-operator/pull/1689) * [Bug 2096315](https://bugzilla.redhat.com/show_bug.cgi?id=2096315): Create a patch im CMO for NodeClockNotSynchronising [#1604](https://github.com/openshift/cluster-monitoring-operator/pull/1604) * *: bump Go dependencies [#1688](https://github.com/openshift/cluster-monitoring-operator/pull/1688) * [Bug 2057832](https://bugzilla.redhat.com/show_bug.cgi?id=2057832): Updates recording rule cluster:telemetry_selected_series:count [#1646](https://github.com/openshift/cluster-monitoring-operator/pull/1646) * [Bug 2094704](https://bugzilla.redhat.com/show_bug.cgi?id=2094704): remove verbose output from kube-rbac-proxy in Prometheus-k8s pod [#1684](https://github.com/openshift/cluster-monitoring-operator/pull/1684) * Allow deployment of dedicated Alertmanager for user-defined alerts [#1661](https://github.com/openshift/cluster-monitoring-operator/pull/1661) * [MON-2480](https://issues.redhat.com/browse/MON-2480): Double the ServiceMonitor intervals for SNO [#1652](https://github.com/openshift/cluster-monitoring-operator/pull/1652) * Synchronize versions of the downstream components [#1666](https://github.com/openshift/cluster-monitoring-operator/pull/1666) * whitelist cluster-logging-operator metrics for telemetry [#1546](https://github.com/openshift/cluster-monitoring-operator/pull/1546) * [Bug 2090838](https://bugzilla.redhat.com/show_bug.cgi?id=2090838): ignore flapping host interface 'tunbr' [#1681](https://github.com/openshift/cluster-monitoring-operator/pull/1681) * [Bug 2089574](https://bugzilla.redhat.com/show_bug.cgi?id=2089574): Removes master node selector from PO when running with HostedControlPlane external [#1679](https://github.com/openshift/cluster-monitoring-operator/pull/1679) * [Bug 2009352](https://bugzilla.redhat.com/show_bug.cgi?id=2009352): IR-254: Collecting registry and image stream usage [#1668](https://github.com/openshift/cluster-monitoring-operator/pull/1668) * [Bug 2079292](https://bugzilla.redhat.com/show_bug.cgi?id=2079292): Adds necessary SecurityContext settings to UWM deployments [#1660](https://github.com/openshift/cluster-monitoring-operator/pull/1660) * eo metrics for Telemetry [#1559](https://github.com/openshift/cluster-monitoring-operator/pull/1559) * [Bug 2084079](https://bugzilla.redhat.com/show_bug.cgi?id=2084079): Refactors CreateRouteIfNotExists to CreateOrUpdateRoute [#1671](https://github.com/openshift/cluster-monitoring-operator/pull/1671) * Add bodysize limit for metric scraping. [#1467](https://github.com/openshift/cluster-monitoring-operator/pull/1467) * OWNERS: move @fpetkovski, @PhilipGough and @bison to emeritus section [#1670](https://github.com/openshift/cluster-monitoring-operator/pull/1670) * Updating cluster-monitoring-operator images to be consistent with ART [#1667](https://github.com/openshift/cluster-monitoring-operator/pull/1667) * [Bug 2069068](https://bugzilla.redhat.com/show_bug.cgi?id=2069068): Refactors DeleteDeployment to wait for deletion of the deployment [#1655](https://github.com/openshift/cluster-monitoring-operator/pull/1655) * Expose ovnkube_master_egress_routing_via_host via telemetry [#1635](https://github.com/openshift/cluster-monitoring-operator/pull/1635) * Add runbook for kube persistent volume inodes filling up [#1663](https://github.com/openshift/cluster-monitoring-operator/pull/1663) * Synchronize versions of the downstream components [#1658](https://github.com/openshift/cluster-monitoring-operator/pull/1658) * [MON-1913](https://issues.redhat.com/browse/MON-1913): pkg/manifest: Allow retention to be configurable for Thanos-Ruler in UWM [#1651](https://github.com/openshift/cluster-monitoring-operator/pull/1651) * *: add standalone admission webhook [#1640](https://github.com/openshift/cluster-monitoring-operator/pull/1640) * Synchronize versions of the downstream components [#1650](https://github.com/openshift/cluster-monitoring-operator/pull/1650) * [Bug 2064705](https://bugzilla.redhat.com/show_bug.cgi?id=2064705): [bot] Synchronize versions of the downstream components [#1648](https://github.com/openshift/cluster-monitoring-operator/pull/1648) * [MON-2213](https://issues.redhat.com/browse/MON-2213): Expose the /federate endpoint of UWM Prometheus as a route [#1633](https://github.com/openshift/cluster-monitoring-operator/pull/1633) * [Bug 2074807](https://bugzilla.redhat.com/show_bug.cgi?id=2074807): [bot] Update jsonnet dependencies [#1643](https://github.com/openshift/cluster-monitoring-operator/pull/1643) * [Bug 2073112](https://bugzilla.redhat.com/show_bug.cgi?id=2073112): Adds UWM extrenalLabels from Prometheus to ThanosRuler labels [#1645](https://github.com/openshift/cluster-monitoring-operator/pull/1645) * Extend e2e metric test [#1642](https://github.com/openshift/cluster-monitoring-operator/pull/1642) * [MON-2193](https://issues.redhat.com/browse/MON-2193): pkg/manifests: Expose retention size settings for UWM Prometheus [#1630](https://github.com/openshift/cluster-monitoring-operator/pull/1630) * [MON-2193](https://issues.redhat.com/browse/MON-2193): pkg/manifests: Expose retention size settings for Platform Prometheus [#1579](https://github.com/openshift/cluster-monitoring-operator/pull/1579) * [MON-2206](https://issues.redhat.com/browse/MON-2206): Adds sigv4 settings for remote write [#1638](https://github.com/openshift/cluster-monitoring-operator/pull/1638) * [Bug 2074084](https://bugzilla.redhat.com/show_bug.cgi?id=2074084): CMO metrics not visible in the OCP webconsole UI [#1634](https://github.com/openshift/cluster-monitoring-operator/pull/1634) * [Bug 2033575](https://bugzilla.redhat.com/show_bug.cgi?id=2033575): use bearer token as fall-back authn method [#1637](https://github.com/openshift/cluster-monitoring-operator/pull/1637) * [Bug 2067740](https://bugzilla.redhat.com/show_bug.cgi?id=2067740): update prometheus/client_golang version [#1636](https://github.com/openshift/cluster-monitoring-operator/pull/1636) * [MON-2207](https://issues.redhat.com/browse/MON-2207): Expose Authorization settings for remote write in the CMO configuration [#1598](https://github.com/openshift/cluster-monitoring-operator/pull/1598) * [Bug 2057967](https://bugzilla.redhat.com/show_bug.cgi?id=2057967): [bot] Update jsonnet dependencies [#1628](https://github.com/openshift/cluster-monitoring-operator/pull/1628) * Add Oauth2 settings to prometheusK8s.remoteWrite config [#1617](https://github.com/openshift/cluster-monitoring-operator/pull/1617) * [MON-2212](https://issues.redhat.com/browse/MON-2212): Expose the /federate endpoint of UWM Prometheus as a service [#1601](https://github.com/openshift/cluster-monitoring-operator/pull/1601) * [Bug 2067005](https://bugzilla.redhat.com/show_bug.cgi?id=2067005): Remove Grafana from Prometheus rules added by CMO [#1629](https://github.com/openshift/cluster-monitoring-operator/pull/1629) * [MON-1708](https://issues.redhat.com/browse/MON-1708): Enforce label scrape limits in UWM [#1350](https://github.com/openshift/cluster-monitoring-operator/pull/1350) * CHANGELOG: add entry for https://issues.redhat.com/browse/MON-2245 [#1623](https://github.com/openshift/cluster-monitoring-operator/pull/1623) * [Bug 2048333](https://bugzilla.redhat.com/show_bug.cgi?id=2048333): [bot] Update jsonnet dependencies [#1621](https://github.com/openshift/cluster-monitoring-operator/pull/1621) * doc: add Testing section to CONTRIBUTING.md [#1620](https://github.com/openshift/cluster-monitoring-operator/pull/1620) * pkg/manifest: remove unused function AlertmanagerExternalURL [#1622](https://github.com/openshift/cluster-monitoring-operator/pull/1622) * [Bug 2063047](https://bugzilla.redhat.com/show_bug.cgi?id=2063047): Add condition to check for relative paths in query log file path [#1608](https://github.com/openshift/cluster-monitoring-operator/pull/1608) * Synchronize versions of the downstream components [#1616](https://github.com/openshift/cluster-monitoring-operator/pull/1616) * Update jsonnet dependencies [#1615](https://github.com/openshift/cluster-monitoring-operator/pull/1615) * Documentation/data-collection: Collect cluster_version_capability [#1607](https://github.com/openshift/cluster-monitoring-operator/pull/1607) * [MON-2269](https://issues.redhat.com/browse/MON-2269): test: deploy prometheus as remote_write receiver [#1602](https://github.com/openshift/cluster-monitoring-operator/pull/1602) * Synchronize versions of the downstream components [#1614](https://github.com/openshift/cluster-monitoring-operator/pull/1614) * Documentation/data-collection: Assign cluster-version metrics to Cincinnati team [#1606](https://github.com/openshift/cluster-monitoring-operator/pull/1606) * [Bug 2067004](https://bugzilla.redhat.com/show_bug.cgi?id=2067004): manifests: Remove Grafana image references [#1612](https://github.com/openshift/cluster-monitoring-operator/pull/1612) * [Bug 2063905](https://bugzilla.redhat.com/show_bug.cgi?id=2063905): [bot] Update jsonnet dependencies [#1610](https://github.com/openshift/cluster-monitoring-operator/pull/1610) * [Bug 2067062](https://bugzilla.redhat.com/show_bug.cgi?id=2067062): [bot] Synchronize versions of the downstream components [#1609](https://github.com/openshift/cluster-monitoring-operator/pull/1609) * [Bug 2065577](https://bugzilla.redhat.com/show_bug.cgi?id=2065577): CMO now creates by default an empty CM for UWM [#1603](https://github.com/openshift/cluster-monitoring-operator/pull/1603) * Automated jsonnet dependencies update [#1600](https://github.com/openshift/cluster-monitoring-operator/pull/1600) * [Bug 2065682](https://bugzilla.redhat.com/show_bug.cgi?id=2065682): manifest: explicitly drop the temporary cluster id label [#1597](https://github.com/openshift/cluster-monitoring-operator/pull/1597) * [Bug 2065076](https://bugzilla.redhat.com/show_bug.cgi?id=2065076): manifests: advertise public urls without path component [#1595](https://github.com/openshift/cluster-monitoring-operator/pull/1595) * MON-1632 Removing grafana from monitoring stack [#1557](https://github.com/openshift/cluster-monitoring-operator/pull/1557) * Makefile: add tools to path for run-local target [#1592](https://github.com/openshift/cluster-monitoring-operator/pull/1592) * [MON-2245](https://issues.redhat.com/browse/MON-2245): manifest: Add cluster_id label to remote_write configurations [#1578](https://github.com/openshift/cluster-monitoring-operator/pull/1578) * [OADP-22](https://issues.redhat.com/browse/OADP-22): Send Telemetry metrics on OADP [#1536](https://github.com/openshift/cluster-monitoring-operator/pull/1536) * [Bug 2063047](https://bugzilla.redhat.com/show_bug.cgi?id=2063047): Added support for full-path query log file [#1587](https://github.com/openshift/cluster-monitoring-operator/pull/1587) * [MON-2222](https://issues.redhat.com/browse/MON-2222): Enable validating webhook for AlertmanagerConfig custom resources [#1567](https://github.com/openshift/cluster-monitoring-operator/pull/1567) * Automated dependencies version update [#1591](https://github.com/openshift/cluster-monitoring-operator/pull/1591) * Automated jsonnet dependencies update [#1583](https://github.com/openshift/cluster-monitoring-operator/pull/1583) * [Bug 2060083](https://bugzilla.redhat.com/show_bug.cgi?id=2060083): React to changes in clusteroperators [#1575](https://github.com/openshift/cluster-monitoring-operator/pull/1575) * Automated dependencies version update [#1540](https://github.com/openshift/cluster-monitoring-operator/pull/1540) * [Bug 2050120](https://bugzilla.redhat.com/show_bug.cgi?id=2050120): Sanitize all regex allow/denylist used in KSM component [#1574](https://github.com/openshift/cluster-monitoring-operator/pull/1574) * [Bug 2060091](https://bugzilla.redhat.com/show_bug.cgi?id=2060091): Properly deal with an empty console URL [#1576](https://github.com/openshift/cluster-monitoring-operator/pull/1576) * [Bug 2051470](https://bugzilla.redhat.com/show_bug.cgi?id=2051470): Update prometheus-operator and sync jsonnet [#1571](https://github.com/openshift/cluster-monitoring-operator/pull/1571) * manifest: use path module to construct externalURL [#1562](https://github.com/openshift/cluster-monitoring-operator/pull/1562) * [Bug 2057403](https://bugzilla.redhat.com/show_bug.cgi?id=2057403): jsonnet: Give CMO explicit get permissions for ReplicaSets [#1564](https://github.com/openshift/cluster-monitoring-operator/pull/1564) * [Bug 2037513](https://bugzilla.redhat.com/show_bug.cgi?id=2037513): Update jsonnet dependencies and prometheus-operator version [#1556](https://github.com/openshift/cluster-monitoring-operator/pull/1556) * [Bug 2057025](https://bugzilla.redhat.com/show_bug.cgi?id=2057025): fix init-config-reloader resource requests [#1563](https://github.com/openshift/cluster-monitoring-operator/pull/1563) * go.mod: switch to go 1.17 [#1561](https://github.com/openshift/cluster-monitoring-operator/pull/1561) * Use service ca beta annotation [#1560](https://github.com/openshift/cluster-monitoring-operator/pull/1560) * : Add runbooks for FailedToSendAlerts [#1530](https://github.com/openshift/cluster-monitoring-operator/pull/1530) * pkg: drop code removing the legacy Alertmanager service monitor [#1551](https://github.com/openshift/cluster-monitoring-operator/pull/1551) * [Bug 2050707](https://bugzilla.redhat.com/show_bug.cgi?id=2050707): test: account for pdb and Prometheus' staleness period [#1553](https://github.com/openshift/cluster-monitoring-operator/pull/1553) * [MON-1631](https://issues.redhat.com/browse/MON-1631): prometheus: remove ui access [#1532](https://github.com/openshift/cluster-monitoring-operator/pull/1532) * Updating cluster-monitoring-operator images to be consistent with ART [#1550](https://github.com/openshift/cluster-monitoring-operator/pull/1550) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/c413a79d9da0999c1ae98758b213968c7bdf5418...07fe9fa0623bc34306e4ab965d4cbaf54d59a78d) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/ba3cfe6865356788f73d6387074a94fcb051cd75) * [OCPBUGS-23321](https://issues.redhat.com/browse/OCPBUGS-23321): IBMCloud specific: patch out management workload for dataplane component thats needed for bootstrapping [#2109](https://github.com/openshift/cluster-network-operator/pull/2109) * [OCPBUGS-13661](https://issues.redhat.com/browse/OCPBUGS-13661): AUTH: update cluster-reader to include k8s.ovn.org [#1811](https://github.com/openshift/cluster-network-operator/pull/1811) * [OCPBUGS-11763](https://issues.redhat.com/browse/OCPBUGS-11763): HyperShift: Add POD_NAME env to ovnkube-node [#1780](https://github.com/openshift/cluster-network-operator/pull/1780) * [OCPBUGS-12277](https://issues.redhat.com/browse/OCPBUGS-12277): remove TLS_RSA_WITH_AES_128_CBC_SHA256 cipher [#1789](https://github.com/openshift/cluster-network-operator/pull/1789) * [OCPBUGS-10487](https://issues.redhat.com/browse/OCPBUGS-10487): Enable configuration of node healthz server on ovnkube [#1742](https://github.com/openshift/cluster-network-operator/pull/1742) * [OCPBUGS-5954](https://issues.redhat.com/browse/OCPBUGS-5954): Backport Added missing API field podref to OverlappingRangeIPReservation CRD [#1686](https://github.com/openshift/cluster-network-operator/pull/1686) * [OCPBUGS-6993](https://issues.redhat.com/browse/OCPBUGS-6993): HyperShift: Co-locate OVN-Kubernetes master with other hcp pods [#1702](https://github.com/openshift/cluster-network-operator/pull/1702) * [OCPBUGS-3462](https://issues.redhat.com/browse/OCPBUGS-3462): CNI binary copy should account for the possibility of symlinks [backport 4.11] [#1616](https://github.com/openshift/cluster-network-operator/pull/1616) * [OCPBUGS-6920](https://issues.redhat.com/browse/OCPBUGS-6920): Configure ignored namespaces into multus-admission-controller [#1698](https://github.com/openshift/cluster-network-operator/pull/1698) * [OCPBUGS-3971](https://issues.redhat.com/browse/OCPBUGS-3971): HyperShift: Do not accept empty infrastructure name [#1635](https://github.com/openshift/cluster-network-operator/pull/1635) * [OCPBUGS-3490](https://issues.redhat.com/browse/OCPBUGS-3490): OVN-Kubernetes: Prefer oldest nodes [#1641](https://github.com/openshift/cluster-network-operator/pull/1641) * [OCPBUGS-4137](https://issues.redhat.com/browse/OCPBUGS-4137): ipsec: Run ovs-monitor-ipsec in the foreground and change probes [#1640](https://github.com/openshift/cluster-network-operator/pull/1640) * Jira OCPBUGS-3852: IPsec: Fix broken counter++ expression [#1638](https://github.com/openshift/cluster-network-operator/pull/1638) * Bug OCPBUGS-945: Add EgressQoS DstCIDR format validation [#1551](https://github.com/openshift/cluster-network-operator/pull/1551) * [OCPBUGS-3911](https://issues.redhat.com/browse/OCPBUGS-3911): SDN: /var/run mount cleanup [#1631](https://github.com/openshift/cluster-network-operator/pull/1631) * Bug OCPBUGS-1075: HyperShift: Differentiate resources deployed by different CNO instances [#1555](https://github.com/openshift/cluster-network-operator/pull/1555) * Bug OCPBUGS-1367: Hypershift: Allow configuring hostname and labels on the route [#1559](https://github.com/openshift/cluster-network-operator/pull/1559) * [OCPBUGS-393](https://issues.redhat.com/browse/OCPBUGS-393): Setting disableNetworkDiagnostics: true does not persist when network-operator pod gets re-created [#1530](https://github.com/openshift/cluster-network-operator/pull/1530) * Bug OCPBUGS-500: Kuryr: Bump timeoutSeconds for livenessProbe [#1535](https://github.com/openshift/cluster-network-operator/pull/1535) * [Bug 2096456](https://bugzilla.redhat.com/show_bug.cgi?id=2096456): Add init container to ensure that Status.podIP is set before postStart hooks run [#1512](https://github.com/openshift/cluster-network-operator/pull/1512) * [Bug 2108236](https://bugzilla.redhat.com/show_bug.cgi?id=2108236): Revert "Bug 2085089: Pass enable-udp-aggregation=true to ovn-kubernetes" [#1513](https://github.com/openshift/cluster-network-operator/pull/1513) * [Bug 2085089](https://bugzilla.redhat.com/show_bug.cgi?id=2085089): Pass enable-udp-aggregation=true to ovn-kubernetes [#1489](https://github.com/openshift/cluster-network-operator/pull/1489) * [Bug 2089681](https://bugzilla.redhat.com/show_bug.cgi?id=2089681): Disable EgressIP reachability check in hypershift deployments [#1485](https://github.com/openshift/cluster-network-operator/pull/1485) * [Bug 2084062](https://bugzilla.redhat.com/show_bug.cgi?id=2084062): Make northd probe interval default to 10 seconds [#1494](https://github.com/openshift/cluster-network-operator/pull/1494) * [Bug 2100079](https://bugzilla.redhat.com/show_bug.cgi?id=2100079): Update sdn-controller perms for "configmapsleases" leaderelection [#1496](https://github.com/openshift/cluster-network-operator/pull/1496) * [Bug 2099357](https://bugzilla.redhat.com/show_bug.cgi?id=2099357): k8s 1.24 bump: add RBAC coordination leases for ovn-k master [#1490](https://github.com/openshift/cluster-network-operator/pull/1490) * [Bug 2094071](https://bugzilla.redhat.com/show_bug.cgi?id=2094071): Add southboundStale alert runbook [#1481](https://github.com/openshift/cluster-network-operator/pull/1481) * [Bug 2095772](https://bugzilla.redhat.com/show_bug.cgi?id=2095772): bindata: managed: reduce memory requests to align with observed usage [#1479](https://github.com/openshift/cluster-network-operator/pull/1479) * [Bug 2095756](https://bugzilla.redhat.com/show_bug.cgi?id=2095756): client: register types during init, not later [#1483](https://github.com/openshift/cluster-network-operator/pull/1483) * [Bug 2090336](https://bugzilla.redhat.com/show_bug.cgi?id=2090336): Multus should log at a verbose log level (without a logfile) [#1474](https://github.com/openshift/cluster-network-operator/pull/1474) * [Bug 2092047](https://bugzilla.redhat.com/show_bug.cgi?id=2092047): cncc: add RBAC coordination.k8s.io leases [#1461](https://github.com/openshift/cluster-network-operator/pull/1461) * [Bug 2089805](https://bugzilla.redhat.com/show_bug.cgi?id=2089805): Enable config duration for OVN-Kubernetes [#1455](https://github.com/openshift/cluster-network-operator/pull/1455) * [Bug 2090437](https://bugzilla.redhat.com/show_bug.cgi?id=2090437): Bump CNO to k8s 1.24 [#1459](https://github.com/openshift/cluster-network-operator/pull/1459) * [Bug 2073452](https://bugzilla.redhat.com/show_bug.cgi?id=2073452): Copying CNI binaries should be an atomic operation. [#1472](https://github.com/openshift/cluster-network-operator/pull/1472) * [Bug 2092495](https://bugzilla.redhat.com/show_bug.cgi?id=2092495): ovn: use up to 4 northd threads in non-SNO clusters [#1471](https://github.com/openshift/cluster-network-operator/pull/1471) * [Bug 2091167](https://bugzilla.redhat.com/show_bug.cgi?id=2091167): incorrectly setting rbac role for certificatesigningrequests [#1463](https://github.com/openshift/cluster-network-operator/pull/1463) * Revert "Copying CNI binaries should be an atomic operation." [#1466](https://github.com/openshift/cluster-network-operator/pull/1466) * [Bug 2073452](https://bugzilla.redhat.com/show_bug.cgi?id=2073452): Copying CNI binaries should be an atomic operation. [#1462](https://github.com/openshift/cluster-network-operator/pull/1462) * [Bug 2076776](https://bugzilla.redhat.com/show_bug.cgi?id=2076776): remove patch permissions from ovnkube-node service account [#1450](https://github.com/openshift/cluster-network-operator/pull/1450) * [Bug 2089968](https://bugzilla.redhat.com/show_bug.cgi?id=2089968): ensures type: Directory for multus host paths [#1453](https://github.com/openshift/cluster-network-operator/pull/1453) * [Bug 2090343](https://bugzilla.redhat.com/show_bug.cgi?id=2090343): [temporary] Adds multus debug logging [#1456](https://github.com/openshift/cluster-network-operator/pull/1456) * [Bug 2087942](https://bugzilla.redhat.com/show_bug.cgi?id=2087942): bump to go 1.18, lint improvements [#1451](https://github.com/openshift/cluster-network-operator/pull/1451) * [Bug 2086461](https://bugzilla.redhat.com/show_bug.cgi?id=2086461): Hypershift: Also add default for Azure mtu [#1454](https://github.com/openshift/cluster-network-operator/pull/1454) * [Bug 2086461](https://bugzilla.redhat.com/show_bug.cgi?id=2086461): AWS: Use hardcoded MTU to speed up cluster creation [#1441](https://github.com/openshift/cluster-network-operator/pull/1441) * [Bug 2087556](https://bugzilla.redhat.com/show_bug.cgi?id=2087556): Fix rendering DPU manifests [#1448](https://github.com/openshift/cluster-network-operator/pull/1448) * [Bug 2086506](https://bugzilla.redhat.com/show_bug.cgi?id=2086506): hypershift: respect statefulset when upgrading ovnk [#1447](https://github.com/openshift/cluster-network-operator/pull/1447) * [Bug 2087135](https://bugzilla.redhat.com/show_bug.cgi?id=2087135): Fixing Hypershift nodeport flow [#1440](https://github.com/openshift/cluster-network-operator/pull/1440) * [Bug 2086544](https://bugzilla.redhat.com/show_bug.cgi?id=2086544): Stop passing hosted cluster token as a parameter to ovnkube-master [#1446](https://github.com/openshift/cluster-network-operator/pull/1446) * [Bug 2086437](https://bugzilla.redhat.com/show_bug.cgi?id=2086437): Enable EgressQoS controller [#1430](https://github.com/openshift/cluster-network-operator/pull/1430) * [Bug 2086143](https://bugzilla.redhat.com/show_bug.cgi?id=2086143): Status controller: use a label, rather than watching all objects [#1431](https://github.com/openshift/cluster-network-operator/pull/1431) * [Bug 2082235](https://bugzilla.redhat.com/show_bug.cgi?id=2082235): manifests: Add in service, service-cert, and ServiceMonitor [#1433](https://github.com/openshift/cluster-network-operator/pull/1433) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): Cleanup CNO relatedObjects [#1432](https://github.com/openshift/cluster-network-operator/pull/1432) * [Bug 2079422](https://bugzilla.redhat.com/show_bug.cgi?id=2079422): Bump PodDisruptionBudget to v1 [#1427](https://github.com/openshift/cluster-network-operator/pull/1427) * Re-reconcile network on configmap, stop watching all configmaps in proxy controllers [#1416](https://github.com/openshift/cluster-network-operator/pull/1416) * hypershift: add ovnkube-node-proxy container in ovnkube-node ds [#1408](https://github.com/openshift/cluster-network-operator/pull/1408) * Hypershift: enable TLS for ovnkube-master metrics [#1423](https://github.com/openshift/cluster-network-operator/pull/1423) * Add gm metric record to use for telemetry exposure [#1425](https://github.com/openshift/cluster-network-operator/pull/1425) * Revert "ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds" [#1428](https://github.com/openshift/cluster-network-operator/pull/1428) * [Bug 2082611](https://bugzilla.redhat.com/show_bug.cgi?id=2082611): Limit Kuryr pods permissions [#1367](https://github.com/openshift/cluster-network-operator/pull/1367) * [Bug 2076877](https://bugzilla.redhat.com/show_bug.cgi?id=2076877): Bump FlowScema apiVersion to v1beta2 [#1419](https://github.com/openshift/cluster-network-operator/pull/1419) * bindata/network-diagnostics, cloud-network-config-controller: comply to restricted pod security level [#1406](https://github.com/openshift/cluster-network-operator/pull/1406) * Remove ObjectMeta.ClusterName usage [#1421](https://github.com/openshift/cluster-network-operator/pull/1421) * Hypershift: Fix ovnkube-master priority class and set resource requests on token-minter [#1420](https://github.com/openshift/cluster-network-operator/pull/1420) * add more sysctls to the multus allowlist [#1411](https://github.com/openshift/cluster-network-operator/pull/1411) * ovn: fix northd preStop command handling [#1414](https://github.com/openshift/cluster-network-operator/pull/1414) * Add control-plane-component label to ovnkube-master for hypershift [#1422](https://github.com/openshift/cluster-network-operator/pull/1422) * Add link to runbook urls [#1417](https://github.com/openshift/cluster-network-operator/pull/1417) * Hypershift: Copy all CNO conditions to HostedControlPlane status [#1415](https://github.com/openshift/cluster-network-operator/pull/1415) * ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds [#1412](https://github.com/openshift/cluster-network-operator/pull/1412) * [Bug 2075475](https://bugzilla.redhat.com/show_bug.cgi?id=2075475): Add default-route field to egress-router k8s.v1.cni.cncf.io/networks [#1390](https://github.com/openshift/cluster-network-operator/pull/1390) * OCPVE-106 Customize rollout strategy to fix SNO upgrade [#1392](https://github.com/openshift/cluster-network-operator/pull/1392) * [Bug 2080255](https://bugzilla.redhat.com/show_bug.cgi?id=2080255): SDN: Re-add list/watch/get permissions for nodes needed for EgressIP [#1409](https://github.com/openshift/cluster-network-operator/pull/1409) * [Bug 2071859](https://bugzilla.redhat.com/show_bug.cgi?id=2071859): Switch dnsPolicy to Default for OVN hostNetwork pods [#1395](https://github.com/openshift/cluster-network-operator/pull/1395) * Revert "Revert ipsec: Allow enablement/disablement at runtime" [#1384](https://github.com/openshift/cluster-network-operator/pull/1384) * ovnkube: export OVS metrics along with OVN metrics [#1393](https://github.com/openshift/cluster-network-operator/pull/1393) * [Bug 2078910](https://bugzilla.redhat.com/show_bug.cgi?id=2078910): Correct runbook_url field location within schema [#1396](https://github.com/openshift/cluster-network-operator/pull/1396) * Adds dougbtv to owners as approver and reviewer [#1397](https://github.com/openshift/cluster-network-operator/pull/1397) * [Bug 2072215](https://bugzilla.redhat.com/show_bug.cgi?id=2072215): Make the use of the ip-reconciler cronjob opt-in by detecting IPAM type usage [#1369](https://github.com/openshift/cluster-network-operator/pull/1369) * ovn-kube hypershift: fix pipefailure that prevents HA startup [#1394](https://github.com/openshift/cluster-network-operator/pull/1394) * [Bug 2063123](https://bugzilla.redhat.com/show_bug.cgi?id=2063123): Drop Node update permission for sdn-node [#1350](https://github.com/openshift/cluster-network-operator/pull/1350) * OVN-K alert: Increase severity and add runbook_url for NoRunningOvnMa… [#1327](https://github.com/openshift/cluster-network-operator/pull/1327) * Remove Kuryr mutating DNS webhook [#1363](https://github.com/openshift/cluster-network-operator/pull/1363) * raise the alert NoOvnMasterLeader to critical and add the runbook url [#1328](https://github.com/openshift/cluster-network-operator/pull/1328) * [Bug 2072710](https://bugzilla.redhat.com/show_bug.cgi?id=2072710): Make northd probe interval default to 10 seconds [#1386](https://github.com/openshift/cluster-network-operator/pull/1386) * hypershift: get control plane replicas from hcp [#1385](https://github.com/openshift/cluster-network-operator/pull/1385) * [Bug 2072766](https://bugzilla.redhat.com/show_bug.cgi?id=2072766): Reserve port TCP/9104 for cluster-network-operator [#1378](https://github.com/openshift/cluster-network-operator/pull/1378) * Multus: split pod/status rbac [#1340](https://github.com/openshift/cluster-network-operator/pull/1340) * add runbook link for NodeWithoutOVNKubeNodePodRunning and V4SubnetAll… [#1366](https://github.com/openshift/cluster-network-operator/pull/1366) * OVN: remove detecing db_ip via kapi [#1368](https://github.com/openshift/cluster-network-operator/pull/1368) * Hypershift: Respect publishing strategy of OVN southbound database service [#1349](https://github.com/openshift/cluster-network-operator/pull/1349) * Proxyconfig: Add a knob for Hypershift to enable proxying internal apiserver address [#1381](https://github.com/openshift/cluster-network-operator/pull/1381) * [Bug 1983056](https://bugzilla.redhat.com/show_bug.cgi?id=1983056): Kuryr: Update CRD from upstream [#1360](https://github.com/openshift/cluster-network-operator/pull/1360) * hypershift: disable TLS for ovnk master metrics [#1382](https://github.com/openshift/cluster-network-operator/pull/1382) * hypershift: enable publishNotReadyAddress explicitly for ovnk-master service [#1372](https://github.com/openshift/cluster-network-operator/pull/1372) * [Bug 2070047](https://bugzilla.redhat.com/show_bug.cgi?id=2070047): Bump max value of hist quantile for kuryr_cni_request_duration [#1359](https://github.com/openshift/cluster-network-operator/pull/1359) * Don't return err with empty relatedClusterObject annotation [#1379](https://github.com/openshift/cluster-network-operator/pull/1379) * hypershift: enable ovnk-master metrics in management cluster [#1374](https://github.com/openshift/cluster-network-operator/pull/1374) * Use (un)setProgressing for pod status update [#1376](https://github.com/openshift/cluster-network-operator/pull/1376) * Use the hosted cluster token explicitly [#1370](https://github.com/openshift/cluster-network-operator/pull/1370) * HyperShift: Watch StatefulSets in the management cluster [#1364](https://github.com/openshift/cluster-network-operator/pull/1364) * Exclude openshift-kube-apiserver and openshift-apiserver service/endpoints from connectivity checks in hypershift [#1375](https://github.com/openshift/cluster-network-operator/pull/1375) * Run ovnkube-master statefulset pods in parallel [#1361](https://github.com/openshift/cluster-network-operator/pull/1361) * Add ibm-cloud-managed annotations to 02-cncc-credentials.yaml, this is required in HyperShift [#1358](https://github.com/openshift/cluster-network-operator/pull/1358) * Add ipsec daemonset for hypershift managed cluster [#1356](https://github.com/openshift/cluster-network-operator/pull/1356) * Add statefulset in status manager [#1345](https://github.com/openshift/cluster-network-operator/pull/1345) * hypershift ovnk route status [#1341](https://github.com/openshift/cluster-network-operator/pull/1341) * Add tuning cni sysctl allowlist to nodes [#1347](https://github.com/openshift/cluster-network-operator/pull/1347) * [Bug 2058368](https://bugzilla.redhat.com/show_bug.cgi?id=2058368): move enable memory trimming to readiness prob [#1365](https://github.com/openshift/cluster-network-operator/pull/1365) * Add ovnkube-node initContainer to make sure sbdb is up before running other containers [#1354](https://github.com/openshift/cluster-network-operator/pull/1354) * Vendor: pull in hypershift [#1346](https://github.com/openshift/cluster-network-operator/pull/1346) * Hypershift: Use token minter instead of a kubeconfig in ovn-kubernetes master [#1344](https://github.com/openshift/cluster-network-operator/pull/1344) * Add an option to define the client name for in-cluster config [#1342](https://github.com/openshift/cluster-network-operator/pull/1342) * Add ovnkube manifests for hypershift [#1329](https://github.com/openshift/cluster-network-operator/pull/1329) * network, bootstrap: don't get apiserver from the environment [#1339](https://github.com/openshift/cluster-network-operator/pull/1339) * Fix MTU detection for multi path default routes [#1338](https://github.com/openshift/cluster-network-operator/pull/1338) * Multi cluster support in CNO [#1319](https://github.com/openshift/cluster-network-operator/pull/1319) * Fix golang image version in Dockerfile [#1330](https://github.com/openshift/cluster-network-operator/pull/1330) * Remove empty selector from the mtu prober job. [#1331](https://github.com/openshift/cluster-network-operator/pull/1331) * Switch to server-side apply [#1304](https://github.com/openshift/cluster-network-operator/pull/1304) * Probe MTU from a Job, rather than directly in the CNO [#1313](https://github.com/openshift/cluster-network-operator/pull/1313) * [Bug 2058368](https://bugzilla.redhat.com/show_bug.cgi?id=2058368): Move memory-trimming-on-compaction out of dbchecker to nbdb/sbdb [#1320](https://github.com/openshift/cluster-network-operator/pull/1320) * Fix group for CVO override used for running CNO locally [#1314](https://github.com/openshift/cluster-network-operator/pull/1314) * [Bug 2058671](https://bugzilla.redhat.com/show_bug.cgi?id=2058671): ip reconciler: auto clean failed jobs [#1318](https://github.com/openshift/cluster-network-operator/pull/1318) * [Bug 2037721](https://bugzilla.redhat.com/show_bug.cgi?id=2037721): Do not apply OVN-Kubernetes `PodDisruptionBudget` on single-node clusters [#1307](https://github.com/openshift/cluster-network-operator/pull/1307) * ovn: stop spawning the ovn-nbctl daemon [#1315](https://github.com/openshift/cluster-network-operator/pull/1315) * [Bug 1944264](https://bugzilla.redhat.com/show_bug.cgi?id=1944264): ovnkube: gracefully terminate databases from preStop [#1312](https://github.com/openshift/cluster-network-operator/pull/1312) * [Bug 2044227](https://bugzilla.redhat.com/show_bug.cgi?id=2044227): Add rolling update strategy for Kuryr-CNI. [#1311](https://github.com/openshift/cluster-network-operator/pull/1311) * [Bug 2032559](https://bugzilla.redhat.com/show_bug.cgi?id=2032559): Block DualStack migration for unsupported cluster types [#1257](https://github.com/openshift/cluster-network-operator/pull/1257) * [Bug 2010361](https://bugzilla.redhat.com/show_bug.cgi?id=2010361): SDN alerts: conform to monitoring team style guide [#1248](https://github.com/openshift/cluster-network-operator/pull/1248) * Update project owners [#1309](https://github.com/openshift/cluster-network-operator/pull/1309) * [Bug 2048575](https://bugzilla.redhat.com/show_bug.cgi?id=2048575): The Whereabouts ip-reconciler should use api-int load balancer [#1302](https://github.com/openshift/cluster-network-operator/pull/1302) * [Bug 2048793](https://bugzilla.redhat.com/show_bug.cgi?id=2048793): Kuryr: Decrease vif_annotation_timeout [#1293](https://github.com/openshift/cluster-network-operator/pull/1293) * [Bug 2049613](https://bugzilla.redhat.com/show_bug.cgi?id=2049613): Use a separate configmap for mtu migration config to avoid pod restart [#1299](https://github.com/openshift/cluster-network-operator/pull/1299) * Fix bond cni source directory path [#1295](https://github.com/openshift/cluster-network-operator/pull/1295) * Updating cluster-network-operator images to be consistent with ART [#1294](https://github.com/openshift/cluster-network-operator/pull/1294) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/c7855f10edeadf5771e5a6f145150ce3826ef95d...ba3cfe6865356788f73d6387074a94fcb051cd75) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/2b75952b53b4dab8f0575c59be1fb5806bb2f298) * Merge [#548](https://github.com/openshift/cluster-node-tuning-operator/pull/548) * Revert PAO and later changes [#330](https://github.com/openshift/cluster-node-tuning-operator/pull/330) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/b1c5690f87b4f3bba9b932474b55282c8dbf264e...2b75952b53b4dab8f0575c59be1fb5806bb2f298) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/5ced25e45c221b07a5edad3b8e5ddc767ac10c25) * : OCPBUGS-20679: bump library-go to include switch to HTTP/1.1 [#557](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/557) * [OCPBUGS-3290](https://issues.redhat.com/browse/OCPBUGS-3290): routes/status resources can leak sensitive data, exclude it from audit [#513](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/513) * [Bug 2102834](https://bugzilla.redhat.com/show_bug.cgi?id=2102834): operator NS manifest: Set empty openshift.io/run-level [#499](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/499) * manifests/deployment: comply to restricted pod security level [#495](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/495) * [Bug 2066886](https://bugzilla.redhat.com/show_bug.cgi?id=2066886): make apiserver readiness probe honor readyz [#494](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/494) * [Bug 2019215](https://bugzilla.redhat.com/show_bug.cgi?id=2019215): enable shutdown-send-retry-after for apiserver [#486](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/486) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/91038370b1b6c56f55b47c31fc596deb304ca69a...5ced25e45c221b07a5edad3b8e5ddc767ac10c25) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/a3473662f96140be5a462203885fc03d0e83f95c) * [OCPBUGS-20757](https://issues.redhat.com/browse/OCPBUGS-20757): bump(k8s,openshift) to address CVE-2023-44487 [#312](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/312) * [Bug 2111901](https://bugzilla.redhat.com/show_bug.cgi?id=2111901): Add namespace and RBAC needed for ingress-to-route [#251](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/251) * [Bug 2111992](https://bugzilla.redhat.com/show_bug.cgi?id=2111992): BUILD-417: Adding leader election leases [#252](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/252) * [Bug 2110715](https://bugzilla.redhat.com/show_bug.cgi?id=2110715): Set openshift.io/run-level to nil in openshift-controller-manager namespace [#249](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/249) * [BUILD-418](https://issues.redhat.com/browse/BUILD-418): Rebase to k8s 1.24 [#242](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/242) * Add user coreydaley as an approver [#241](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/241) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): AUTH-133: bindata: comply to restricted pod security level [#240](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/240) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#236](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/236) * manifests/deployment: comply to restricted pod security level [#239](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/239) * [Bug 2067820](https://bugzilla.redhat.com/show_bug.cgi?id=2067820): Update prometheus client_golang from 1.11.0 => 1.11.1 [#238](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/238) * [Bug 2042587](https://bugzilla.redhat.com/show_bug.cgi?id=2042587): Simplify Sync of Global CA ConfigMap [#233](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/233) * update cert injection annotations to beta [#237](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/237) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/b8b65d15d14c21e6a5dd316dd59a9cfb3a2f403a...a3473662f96140be5a462203885fc03d0e83f95c) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/83e97b522ef2e757440362f099593222121684d1) * [OCPBUGS-21062](https://issues.redhat.com/browse/OCPBUGS-21062): Bump deps to address CVE-2023-44487 [4.11] [#142](https://github.com/openshift/cluster-policy-controller/pull/142) * [OCPBUGS-5787](https://issues.redhat.com/browse/OCPBUGS-5787): clusterquotareconciliation: do not sync quota monitor cache with no monitors registered [#96](https://github.com/openshift/cluster-policy-controller/pull/96) * [Bug 2095716](https://bugzilla.redhat.com/show_bug.cgi?id=2095716): [psalabelsyncer] - remove openshift-operator from the refused list to sync since it is used by OPC/OLM users to install Operator solutions [#79](https://github.com/openshift/cluster-policy-controller/pull/79) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): Introduce Pod Security Admission Label Synchronization controller [#75](https://github.com/openshift/cluster-policy-controller/pull/75) * [Bug 2067822](https://bugzilla.redhat.com/show_bug.cgi?id=2067822): Update deps [#78](https://github.com/openshift/cluster-policy-controller/pull/78) * Updating cluster-policy-controller images to be consistent with ART [#74](https://github.com/openshift/cluster-policy-controller/pull/74) * Update OWNERS [#76](https://github.com/openshift/cluster-policy-controller/pull/76) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/85e14c7cf4ccf86a443e7d70f42465f83f0ba7f8...83e97b522ef2e757440362f099593222121684d1) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/051761b88ee7a2327130172afdb8a3107405df94) * [OCPBUGS-15758](https://issues.redhat.com/browse/OCPBUGS-15758): Update Jenkins and Jenkins Agent Base image versions [#507](https://github.com/openshift/cluster-samples-operator/pull/507) * [OCPBUGS-7330](https://issues.redhat.com/browse/OCPBUGS-7330): When setting allowedRegistries urls the openshift-samples operator is degraded [#490](https://github.com/openshift/cluster-samples-operator/pull/490) * [OCPBUGS-2092](https://issues.redhat.com/browse/OCPBUGS-2092): Use X.Y floating tags for golang [#467](https://github.com/openshift/cluster-samples-operator/pull/467) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): Update Cluster Sample Operator dependencies and libraries for OCP 4.11 [#433](https://github.com/openshift/cluster-samples-operator/pull/433) * update jenkins CPaaS image refs prior to 4.11 GA [#432](https://github.com/openshift/cluster-samples-operator/pull/432) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): Update Cluster Sample Operator dependencies and libraries for OCP 4.11 [#431](https://github.com/openshift/cluster-samples-operator/pull/431) * [Bug 2095256](https://bugzilla.redhat.com/show_bug.cgi?id=2095256): Samples Owner needs to be Updated [#429](https://github.com/openshift/cluster-samples-operator/pull/429) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): Update Cluster Sample Operator dependencies and libraries for OCP 4.11 [#428](https://github.com/openshift/cluster-samples-operator/pull/428) * [AUTH-133](https://issues.redhat.com/browse/AUTH-133): manifests/deployment: comply to restricted pod security level [#425](https://github.com/openshift/cluster-samples-operator/pull/425) * Updating ose-cluster-samples-operator images to be consistent with ART [#426](https://github.com/openshift/cluster-samples-operator/pull/426) * [JNKS-289](https://issues.redhat.com/browse/JNKS-289): pull in jenkins imagestream updates (add back maven/nodejs streams) [#422](https://github.com/openshift/cluster-samples-operator/pull/422) * Jira SO-19: Make sure template and imagestream api version is groupified [#420](https://github.com/openshift/cluster-samples-operator/pull/420) * [JNKS-287](https://issues.redhat.com/browse/JNKS-287): remove imagestream manifest refs; remove override of jenkins images with payload images [#416](https://github.com/openshift/cluster-samples-operator/pull/416) * [Bug 2010364](https://bugzilla.redhat.com/show_bug.cgi?id=2010364): OpenShift Alerting Rules Style-Guide Compliance [#419](https://github.com/openshift/cluster-samples-operator/pull/419) * [Bug 2067823](https://bugzilla.redhat.com/show_bug.cgi?id=2067823): Taking care of CVE-2022-21698 [#418](https://github.com/openshift/cluster-samples-operator/pull/418) * [Bug 2064610](https://bugzilla.redhat.com/show_bug.cgi?id=2064610): Remove duplicate v1 from cakephp-mysql templates [#417](https://github.com/openshift/cluster-samples-operator/pull/417) * manifests: Add capability.openshift.io/name [#414](https://github.com/openshift/cluster-samples-operator/pull/414) * Updating ose-cluster-samples-operator images to be consistent with ART [#412](https://github.com/openshift/cluster-samples-operator/pull/412) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/b27c4ce6602596083cb688b605f594c688fb4701...051761b88ee7a2327130172afdb8a3107405df94) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/bc69ea348a1d38a8f4d765e13de81afe9744e4c7) * [OCPBUGS-21253](https://issues.redhat.com/browse/OCPBUGS-21253): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#408](https://github.com/openshift/cluster-storage-operator/pull/408) * [OCPBUGS-689](https://issues.redhat.com/browse/OCPBUGS-689): correct sc error messages for ibm and alibaba platforms [#313](https://github.com/openshift/cluster-storage-operator/pull/313) * [Bug 2102576](https://bugzilla.redhat.com/show_bug.cgi?id=2102576): DefaultStorageClassController reports fake message on azure and openstack [#298](https://github.com/openshift/cluster-storage-operator/pull/298) * [Bug 2109205](https://bugzilla.redhat.com/show_bug.cgi?id=2109205): HTTPS_PROXY ENV missing in some CSI driver operators [#302](https://github.com/openshift/cluster-storage-operator/pull/302) * [Bug 2077599](https://bugzilla.redhat.com/show_bug.cgi?id=2077599): Fix vCenter / ESXi version alerts [#290](https://github.com/openshift/cluster-storage-operator/pull/290) * [Bug 2097400](https://bugzilla.redhat.com/show_bug.cgi?id=2097400): Allow Shared Resource Driver to operate validating webhook [#288](https://github.com/openshift/cluster-storage-operator/pull/288) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): Un-Revert "OCP should default to pd-ssd disk type on GCP" [#284](https://github.com/openshift/cluster-storage-operator/pull/284) * [Bug 2081557](https://bugzilla.redhat.com/show_bug.cgi?id=2081557): Fix DefaultStorageClassController getting Available=False on error [#277](https://github.com/openshift/cluster-storage-operator/pull/277) * [Bug 2088533](https://bugzilla.redhat.com/show_bug.cgi?id=2088533): remove unused '-v' for shared resource operator as part of klogv2/openshift api/ k8s bump [#287](https://github.com/openshift/cluster-storage-operator/pull/287) * [Bug 2086231](https://bugzilla.redhat.com/show_bug.cgi?id=2086231): BUILD-405: Install the Shared Resource CSI Driver WebHook [#278](https://github.com/openshift/cluster-storage-operator/pull/278) * Updating cluster-storage-operator images to be consistent with ART [#282](https://github.com/openshift/cluster-storage-operator/pull/282) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): Revert "OCP should default to pd-ssd disk type on GCP" [#283](https://github.com/openshift/cluster-storage-operator/pull/283) * [Bug 2077599](https://bugzilla.redhat.com/show_bug.cgi?id=2077599): Alert on vCenter < 7.0.2 [#279](https://github.com/openshift/cluster-storage-operator/pull/279) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): OCP should default to pd-ssd disk type on GCP [#273](https://github.com/openshift/cluster-storage-operator/pull/273) * [Bug 2079197](https://bugzilla.redhat.com/show_bug.cgi?id=2079197): alert when more than one default storage class is detected [#276](https://github.com/openshift/cluster-storage-operator/pull/276) * manifests/deployment: comply to restricted pod security level [#274](https://github.com/openshift/cluster-storage-operator/pull/274) * remove openstack in-tree storage class [#271](https://github.com/openshift/cluster-storage-operator/pull/271) * remove azure in-tree storage class [#272](https://github.com/openshift/cluster-storage-operator/pull/272) * Azure File CSI Driver Operator is GA in OCP 4.11 [#266](https://github.com/openshift/cluster-storage-operator/pull/266) * Add missing ibm cloud annotations to prometheus rbac [#267](https://github.com/openshift/cluster-storage-operator/pull/267) * no CredentialsRequests in ibm-cloud-managed [#253](https://github.com/openshift/cluster-storage-operator/pull/253) * [Bug 2060509](https://bugzilla.redhat.com/show_bug.cgi?id=2060509): Incorrect installation of ibmcloud vpc csi driver in IBM… [#264](https://github.com/openshift/cluster-storage-operator/pull/264) * [Bug 2049872](https://bugzilla.redhat.com/show_bug.cgi?id=2049872): cluster storage operator AWS credentialsrequest lacks KMS privileges [#263](https://github.com/openshift/cluster-storage-operator/pull/263) * [Bug 2043132](https://bugzilla.redhat.com/show_bug.cgi?id=2043132): Add metrics for vsphere operator [#262](https://github.com/openshift/cluster-storage-operator/pull/262) * [Bug 2050300](https://bugzilla.redhat.com/show_bug.cgi?id=2050300): Don't set generation in object comming from cache [#261](https://github.com/openshift/cluster-storage-operator/pull/261) * Updating cluster-storage-operator images to be consistent with ART [#260](https://github.com/openshift/cluster-storage-operator/pull/260) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/0ad6026dffef5fd7c4a12e11ea468cdd2b35ee73...bc69ea348a1d38a8f4d765e13de81afe9744e4c7) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/289032fb67e5e358f21808fab87350bcf5e5e85b) * Updating ose-cluster-update-keys images to be consistent with ART [#43](https://github.com/openshift/cluster-update-keys/pull/43) * Update OWNERS [#44](https://github.com/openshift/cluster-update-keys/pull/44) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/684f6f42381cf6401dfb7e4f6f5f9fd0e441639b...289032fb67e5e358f21808fab87350bcf5e5e85b) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/8966b291a649d3a262d1b714aef02c6d9d3ff402) * [OCPBUGS-5011](https://issues.redhat.com/browse/OCPBUGS-5011): Backport `SecurityContext` reconciliation behavior [#940](https://github.com/openshift/cluster-version-operator/pull/940) * [OCPBUGS-13043](https://issues.redhat.com/browse/OCPBUGS-13043): pkg/cvo: reset payload load status [#935](https://github.com/openshift/cluster-version-operator/pull/935) * [OCPBUGS-10671](https://issues.redhat.com/browse/OCPBUGS-10671): pkg/cvo/availableupdates: Prioritize conditional risks for largest target version [#915](https://github.com/openshift/cluster-version-operator/pull/915) * [OCPBUGS-5882](https://issues.redhat.com/browse/OCPBUGS-5882): Set upgradeability check throttling period to 2m [#885](https://github.com/openshift/cluster-version-operator/pull/885) * [OCPBUGS-2293](https://issues.redhat.com/browse/OCPBUGS-2293): Allow unknown capabilities during payload load and implicit enablement checking [#854](https://github.com/openshift/cluster-version-operator/pull/854) * [OCPBUGS-1251](https://issues.redhat.com/browse/OCPBUGS-1251): Add admin-gate ack-4.11-kube-1.25-api-removals-in-4.12 [#836](https://github.com/openshift/cluster-version-operator/pull/836) * [OCPBUGS-306](https://issues.redhat.com/browse/OCPBUGS-306): pkg/cvo/sync_worker: Trigger new sync round on ClusterOperator versions[name=operator] changes [#826](https://github.com/openshift/cluster-version-operator/pull/826) * [Bug 2114602](https://bugzilla.redhat.com/show_bug.cgi?id=2114602): pkg/cvo/updatepayload: Set 'readOnlyRootFilesystem: false' [#811](https://github.com/openshift/cluster-version-operator/pull/811) * [Bug 2115564](https://bugzilla.redhat.com/show_bug.cgi?id=2115564): pkg/clusterconditions/promql: Cap PromQL queries at 5 minutes [#815](https://github.com/openshift/cluster-version-operator/pull/815) * [Bug 2100533](https://bugzilla.redhat.com/show_bug.cgi?id=2100533): remove local golang lint [#792](https://github.com/openshift/cluster-version-operator/pull/792) * [Bug 2097067](https://bugzilla.redhat.com/show_bug.cgi?id=2097067): pkg/cvo: retain initial completed update history entry [#791](https://github.com/openshift/cluster-version-operator/pull/791) * Updating cluster-version-operator images to be consistent with ART [#779](https://github.com/openshift/cluster-version-operator/pull/779) * [Bug 2091770](https://bugzilla.redhat.com/show_bug.cgi?id=2091770): pkg/cvo/updatepayload: Guard against 'rm -fR -whatever' with ./* [#783](https://github.com/openshift/cluster-version-operator/pull/783) * [Bug 2071998](https://bugzilla.redhat.com/show_bug.cgi?id=2071998): pkg/cvo/updatepayload: Event when forcing through a sig-verification failure [#763](https://github.com/openshift/cluster-version-operator/pull/763) * [Bug 2081895](https://bugzilla.redhat.com/show_bug.cgi?id=2081895): lib/resourcebuilder: Drop Get from check*Health functions [#780](https://github.com/openshift/cluster-version-operator/pull/780) * [Bug 2079789](https://bugzilla.redhat.com/show_bug.cgi?id=2079789): capability: Init prior known from CV status [#773](https://github.com/openshift/cluster-version-operator/pull/773) * [Bug 2084331](https://bugzilla.redhat.com/show_bug.cgi?id=2084331): vendor: Bump library-go to pick up manifest checkResourceEnablement fix [#781](https://github.com/openshift/cluster-version-operator/pull/781) * [Bug 2081895](https://bugzilla.redhat.com/show_bug.cgi?id=2081895): lib/resourcebuilder/apiext: Restore check for Established=True CRDs [#771](https://github.com/openshift/cluster-version-operator/pull/771) * Revert "admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate" [#775](https://github.com/openshift/cluster-version-operator/pull/775) * [Bug 2080429](https://bugzilla.redhat.com/show_bug.cgi?id=2080429): pkg/cvo/sync_worker.go: Save overrides and capabilities [#770](https://github.com/openshift/cluster-version-operator/pull/770) * admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate [#772](https://github.com/openshift/cluster-version-operator/pull/772) * [Bug 2079789](https://bugzilla.redhat.com/show_bug.cgi?id=2079789): pkg/cvo/sync_worker.go: Initialize implicitlyEnabledCaps [#768](https://github.com/openshift/cluster-version-operator/pull/768) * [Bug 2072389](https://bugzilla.redhat.com/show_bug.cgi?id=2072389): Do not save desired update on load failures [#766](https://github.com/openshift/cluster-version-operator/pull/766) * [Bug 2070805](https://bugzilla.redhat.com/show_bug.cgi?id=2070805): pkg/cvo/updatepayload: Restore shell for rm globbing [#767](https://github.com/openshift/cluster-version-operator/pull/767) * [Bug 2070805](https://bugzilla.redhat.com/show_bug.cgi?id=2070805): pkg/cvo/updatepayload: Shift previous-download removal into the job [#765](https://github.com/openshift/cluster-version-operator/pull/765) * [Bug 2070854](https://bugzilla.redhat.com/show_bug.cgi?id=2070854): syncWorkerStatus: Avoid saving stale status values [#759](https://github.com/openshift/cluster-version-operator/pull/759) * Implicitly enable capabilities on updates [#758](https://github.com/openshift/cluster-version-operator/pull/758) * [Bug 2070887](https://bugzilla.redhat.com/show_bug.cgi?id=2070887): pkg/cvo/sync_worker.go: set implicitly enabled caps earlier [#761](https://github.com/openshift/cluster-version-operator/pull/761) * pkg/cvo/sync_worker: Log only changed enabled capabilities [#762](https://github.com/openshift/cluster-version-operator/pull/762) * [Bug 2070805](https://bugzilla.redhat.com/show_bug.cgi?id=2070805): pkg/cvo/updatepayload: Prune previous payload downloads [#760](https://github.com/openshift/cluster-version-operator/pull/760) * capability: disallow disabling, add enabling capabilities [#754](https://github.com/openshift/cluster-version-operator/pull/754) * Bump openshift/api to include new marketplace capability [#757](https://github.com/openshift/cluster-version-operator/pull/757) * pkg/cvo/metrics: Add a cluster_version_capability metric [#755](https://github.com/openshift/cluster-version-operator/pull/755) * vendor: update openshift/api [#751](https://github.com/openshift/cluster-version-operator/pull/751) * lib/capability: Sort status.capabilities arrays [#752](https://github.com/openshift/cluster-version-operator/pull/752) * pkg/cvo/sync_worker.go: ensure all of SyncWorkerStatus copied [#750](https://github.com/openshift/cluster-version-operator/pull/750) * pkg/payload: Log load-time manifest exclusion at V(2) [#749](https://github.com/openshift/cluster-version-operator/pull/749) * Consume post install static spec capabilities [#744](https://github.com/openshift/cluster-version-operator/pull/744) * [Bug 2062568](https://bugzilla.redhat.com/show_bug.cgi?id=2062568): lib/resourcebuilder/batch: Stop waiting on Job deadline exceeded [#748](https://github.com/openshift/cluster-version-operator/pull/748) * Get cluster version object earlier in startup [#741](https://github.com/openshift/cluster-version-operator/pull/741) * [Bug 1822752](https://bugzilla.redhat.com/show_bug.cgi?id=1822752): pkg/cvo: Fix ups from separating load from apply #683 [#745](https://github.com/openshift/cluster-version-operator/pull/745) * [Bug 1822752](https://bugzilla.redhat.com/show_bug.cgi?id=1822752): pkg/cvo: Separate payload load from payload apply [#683](https://github.com/openshift/cluster-version-operator/pull/683) * [Bug 2050946](https://bugzilla.redhat.com/show_bug.cgi?id=2050946): Fix wrong informer for feature-gate-stopper [#739](https://github.com/openshift/cluster-version-operator/pull/739) * pkg/payload: Log manifest exclusion [#712](https://github.com/openshift/cluster-version-operator/pull/712) * vendor: Bump openshift/api to pick up capabilities [#737](https://github.com/openshift/cluster-version-operator/pull/737) * Updating cluster-version-operator images to be consistent with ART [#732](https://github.com/openshift/cluster-version-operator/pull/732) * [Bug 2050946](https://bugzilla.redhat.com/show_bug.cgi?id=2050946): pkg/featurechangestopper: Seed queue to guard against incorrect startingTechPreviewState [#736](https://github.com/openshift/cluster-version-operator/pull/736) * [Bug 2009845](https://bugzilla.redhat.com/show_bug.cgi?id=2009845): pkg/cvo/sync_worker: Use current state, not suggested state, for guarding Initializing->Updating [#733](https://github.com/openshift/cluster-version-operator/pull/733) * pkg/cvo: Drop unused 'workers' argument from Operator.Run [#719](https://github.com/openshift/cluster-version-operator/pull/719) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/33e65325a5780906244c2b36031e6e14d812d8b2...8966b291a649d3a262d1b714aef02c6d9d3ff402) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/b7c03bb081cb4389b6492f3a38c1405c2518f9e3) * [Bug 2067745](https://bugzilla.redhat.com/show_bug.cgi?id=2067745): Merge Upstream Master Branch [#44](https://github.com/openshift/configmap-reload/pull/44) * Updating configmap-reload images to be consistent with ART [#42](https://github.com/openshift/configmap-reload/pull/42) * Updating configmap-reload images to be consistent with ART [#41](https://github.com/openshift/configmap-reload/pull/41) * [Full changelog](https://github.com/openshift/configmap-reload/compare/1e5a18ebda95b5703ea6e9fe511f459cb9615162...b7c03bb081cb4389b6492f3a38c1405c2518f9e3) ### [console](https://github.com/openshift/console/tree/71da8a5d97fff0e6c6bf78356ff21e12246b8266) * [OCPBUGS-23064](https://issues.redhat.com/browse/OCPBUGS-23064): add support for new features annotations while preservi… [#13315](https://github.com/openshift/console/pull/13315) * [OCPBUGS-19930](https://issues.redhat.com/browse/OCPBUGS-19930): Web console slowness on Project>Project access page [#13206](https://github.com/openshift/console/pull/13206) * [OCPBUGS-19297](https://issues.redhat.com/browse/OCPBUGS-19297): Fix topology crash when a console.topology/data/factory extension tries to resolve a resource with version from the CRDs which doesn't exists [#13158](https://github.com/openshift/console/pull/13158) * [OCPBUGS-20217](https://issues.redhat.com/browse/OCPBUGS-20217): Fixed Edit Application form for Knative Services [#13220](https://github.com/openshift/console/pull/13220) * [OCPBUGS-18486](https://issues.redhat.com/browse/OCPBUGS-18486): Fix stop PLR option [#13131](https://github.com/openshift/console/pull/13131) * [OCPBUGS-19409](https://issues.redhat.com/browse/OCPBUGS-19409): Backport tab extension to fix LOG-4504 (support LOG-3388 on OCP 4.11) [#13171](https://github.com/openshift/console/pull/13171) * [OCPBUGS-19359](https://issues.redhat.com/browse/OCPBUGS-19359): Remove PipelineResource CRD check because it's not installed with PO 1.11 anymore [#13079](https://github.com/openshift/console/pull/13079) * [OCPBUGS-17375](https://issues.redhat.com/browse/OCPBUGS-17375): When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. [#13071](https://github.com/openshift/console/pull/13071) * [OCPBUGS-15562](https://issues.redhat.com/browse/OCPBUGS-15562): only copy workload annotations to debug pod [#12956](https://github.com/openshift/console/pull/12956) * [OCPBUGS-15532](https://issues.redhat.com/browse/OCPBUGS-15532): visiting Configurations page returns error Cannot read… [#12953](https://github.com/openshift/console/pull/12953) * [OCPBUGS-14004](https://issues.redhat.com/browse/OCPBUGS-14004): use PipelineRun template from 'pipelines-as-code-pipelinerun-go' configMap for Go runtime [#12845](https://github.com/openshift/console/pull/12845) * [OCPBUGS-14413](https://issues.redhat.com/browse/OCPBUGS-14413): Modified git import flow module to handle create button enable-disable issue [#12874](https://github.com/openshift/console/pull/12874) * [OCPBUGS-13214](https://issues.redhat.com/browse/OCPBUGS-13214): the name of the object (imagestream-name) does not match the name on the URL (deployment_name) [#12835](https://github.com/openshift/console/pull/12835) * [OCPBUGS-12284](https://issues.redhat.com/browse/OCPBUGS-12284): Fix to use and set correct secretReference for build-config triggers [#12762](https://github.com/openshift/console/pull/12762) * [OCPBUGS-13864](https://issues.redhat.com/browse/OCPBUGS-13864): delete associated pipeline, triggertemplate and eventlistener when deleting app [#12837](https://github.com/openshift/console/pull/12837) * [OCPBUGS-13730](https://issues.redhat.com/browse/OCPBUGS-13730): Show type of sample on the samples view [#12826](https://github.com/openshift/console/pull/12826) * [OCPBUGS-13746](https://issues.redhat.com/browse/OCPBUGS-13746): PipelineRun templates must be fetched from OpenShift namespace [#12827](https://github.com/openshift/console/pull/12827) * [OCPBUGS-12279](https://issues.redhat.com/browse/OCPBUGS-12279): Do not show builder ImageStreams without `sampleRepo` as samples [#12759](https://github.com/openshift/console/pull/12759) * [OCPBUGS-12959](https://issues.redhat.com/browse/OCPBUGS-12959): update the default pipelineRun template name [#12790](https://github.com/openshift/console/pull/12790) * [OCPBUGS-12231](https://issues.redhat.com/browse/OCPBUGS-12231): Get the Event type value from the latest PLR of the Repository [#12749](https://github.com/openshift/console/pull/12749) * [OCPBUGS-10708](https://issues.redhat.com/browse/OCPBUGS-10708): delete application should delete all part-of resources [#12772](https://github.com/openshift/console/pull/12772) * [OCPBUGS-13012](https://issues.redhat.com/browse/OCPBUGS-13012): Show Tag label and tag name if tag is detected in repository PipelineRun list and details page [#12793](https://github.com/openshift/console/pull/12793) * [OCPBUGS-10613](https://issues.redhat.com/browse/OCPBUGS-10613): add subject kind dropdown in the project access form [#12663](https://github.com/openshift/console/pull/12663) * [OCPBUGS-11580](https://issues.redhat.com/browse/OCPBUGS-11580): In DeploymentConfig both the Form view and Yaml view are not in sync [#12714](https://github.com/openshift/console/pull/12714) * [OCPBUGS-6984](https://issues.redhat.com/browse/OCPBUGS-6984): Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered [#12523](https://github.com/openshift/console/pull/12523) * [OCPBUGS-7949](https://issues.redhat.com/browse/OCPBUGS-7949): Webhook Secret (1 of 2) is not removed when Knative Service is deleted [#12602](https://github.com/openshift/console/pull/12602) * [OCPBUGS-6954](https://issues.redhat.com/browse/OCPBUGS-6954): Fix to show correct help texts for each git repo status error code [#12518](https://github.com/openshift/console/pull/12518) * [OCPBUGS-7764](https://issues.redhat.com/browse/OCPBUGS-7764): Fix crash when pinnedResources is null [#12581](https://github.com/openshift/console/pull/12581) * [OCPBUGS-2916](https://issues.redhat.com/browse/OCPBUGS-2916): Storage -> PVC -> upload data, does not support source reference [#12221](https://github.com/openshift/console/pull/12221) * [OCPBUGS-6687](https://issues.redhat.com/browse/OCPBUGS-6687): Hide silent switch for alerting rule if no associated alerts are present in devconsole [#12479](https://github.com/openshift/console/pull/12479) * [OCPBUGS-2844](https://issues.redhat.com/browse/OCPBUGS-2844): [OKD/nanokube] Fix NPE when project or build status is not defined [#12207](https://github.com/openshift/console/pull/12207) * [OCPBUGS-12243](https://issues.redhat.com/browse/OCPBUGS-12243): disable operator-install-single-namespace.spec.ts to solve CI issues [#12751](https://github.com/openshift/console/pull/12751) * [OCPBUGS-7950](https://issues.redhat.com/browse/OCPBUGS-7950): Repositories list does not show the running pipelinerun as last pipelinerun [#12603](https://github.com/openshift/console/pull/12603) * [OCPBUGS-7494](https://issues.redhat.com/browse/OCPBUGS-7494): fix broken pipeline secret [#12569](https://github.com/openshift/console/pull/12569) * [OCPBUGS-7789](https://issues.redhat.com/browse/OCPBUGS-7789): [4.11.z] Fix kubevirt-console tests [#12325](https://github.com/openshift/console/pull/12325) * [OCPBUGS-7539](https://issues.redhat.com/browse/OCPBUGS-7539): Fix rerender loop/crash when bindable-kinds is found but has no status [#12570](https://github.com/openshift/console/pull/12570) * [OCPBUGS-7043](https://issues.redhat.com/browse/OCPBUGS-7043): Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC [#12532](https://github.com/openshift/console/pull/12532) * [OCPBUGS-7127](https://issues.redhat.com/browse/OCPBUGS-7127): Editing Pipeline in the ocp console should show correct information [#12540](https://github.com/openshift/console/pull/12540) * [OCPBUGS-6879](https://issues.redhat.com/browse/OCPBUGS-6879): Remove `refs-heads` from the branch name for Repository pipelineRun row [#12509](https://github.com/openshift/console/pull/12509) * [OCPBUGS-7069](https://issues.redhat.com/browse/OCPBUGS-7069): PipelineRun task status overlaps status text [#12534](https://github.com/openshift/console/pull/12534) * [OCPBUGS-6492](https://issues.redhat.com/browse/OCPBUGS-6492): Add RBAC check on Create a Project link in all-namespaces pages [#12514](https://github.com/openshift/console/pull/12514) * [OCPBUGS-6989](https://issues.redhat.com/browse/OCPBUGS-6989): Don't proxy CORS response headers [#12524](https://github.com/openshift/console/pull/12524) * [OCPBUGS-5459](https://issues.redhat.com/browse/OCPBUGS-5459): Fix that topology sidebar actions shows outdated data (Edit Pod Count, Edit labels, Edit annotations, etc.) [#12417](https://github.com/openshift/console/pull/12417) * [OCPBUGS-6689](https://issues.redhat.com/browse/OCPBUGS-6689): Fix NPE when displaying CSV with incomplete information [#12478](https://github.com/openshift/console/pull/12478) * [OCPBUGS-1727](https://issues.redhat.com/browse/OCPBUGS-1727): Allow regular users to access debug pods [#12100](https://github.com/openshift/console/pull/12100) * [OCPBUGS-5258](https://issues.redhat.com/browse/OCPBUGS-5258): add support for version v1beta1 for knativeServing and knativeEventing [#12403](https://github.com/openshift/console/pull/12403) * [OCPBUGS-5418](https://issues.redhat.com/browse/OCPBUGS-5418): Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) [#12413](https://github.com/openshift/console/pull/12413) * [OCPBUGS-4786](https://issues.redhat.com/browse/OCPBUGS-4786): Fix for initial showing of topology contents [#12311](https://github.com/openshift/console/pull/12311) * [OCPBUGS-5206](https://issues.redhat.com/browse/OCPBUGS-5206): Pan nodes into view if all nodes are not visible on load [#12398](https://github.com/openshift/console/pull/12398) * [OCPBUGS-2443](https://issues.redhat.com/browse/OCPBUGS-2443): Monitoring: Fix help popovers [#12173](https://github.com/openshift/console/pull/12173) * [OCPBUGS-2716](https://issues.redhat.com/browse/OCPBUGS-2716): Update dependencies to the registry library and devfile parser [#12186](https://github.com/openshift/console/pull/12186) * [OCPBUGS-3300](https://issues.redhat.com/browse/OCPBUGS-3300): check that user can patch console operator config in s… [#12240](https://github.com/openshift/console/pull/12240) * [OCPBUGS-2447](https://issues.redhat.com/browse/OCPBUGS-2447): Add checks for pods in hpaPodRingLabel [#12174](https://github.com/openshift/console/pull/12174) * [OCPBUGS-1790](https://issues.redhat.com/browse/OCPBUGS-1790): Use Alertmanager services for user-defined alerts from config [#12104](https://github.com/openshift/console/pull/12104) * [OCPBUGS-2077](https://issues.redhat.com/browse/OCPBUGS-2077): Find latest pipeline run without firehose selector [#12144](https://github.com/openshift/console/pull/12144) * [OCPBUGS-2515](https://issues.redhat.com/browse/OCPBUGS-2515): Change annotation to be used for fake helm repositories [#12182](https://github.com/openshift/console/pull/12182) * [OCPBUGS-2014](https://issues.redhat.com/browse/OCPBUGS-2014): Use local test data to mock a devfile registry [#12137](https://github.com/openshift/console/pull/12137) * [OCPBUGS-2451](https://issues.redhat.com/browse/OCPBUGS-2451): updates test id for 3scale [#12175](https://github.com/openshift/console/pull/12175) * [OCPBUGS-1984](https://issues.redhat.com/browse/OCPBUGS-1984): fix helm version dropdown entries [#12135](https://github.com/openshift/console/pull/12135) * [OCPBUGS-526](https://issues.redhat.com/browse/OCPBUGS-526): improve bug report links [#11965](https://github.com/openshift/console/pull/11965) * [OCPBUGS-1974](https://issues.redhat.com/browse/OCPBUGS-1974): Use displayname for PHCR in the catalog page [#12130](https://github.com/openshift/console/pull/12130) * [OCPBUGS-1782](https://issues.redhat.com/browse/OCPBUGS-1782): Handle fake helm chart repository [#12107](https://github.com/openshift/console/pull/12107) * [Bug 2109573](https://bugzilla.redhat.com/show_bug.cgi?id=2109573): Fix operand affinity form field [#11861](https://github.com/openshift/console/pull/11861) * [OCPBUGS-1419](https://issues.redhat.com/browse/OCPBUGS-1419): fetch shared resource imagestreams based on labels instance or name [#12056](https://github.com/openshift/console/pull/12056) * [OCPBUGS-1786](https://issues.redhat.com/browse/OCPBUGS-1786): Fix devfile registry assertion [#12108](https://github.com/openshift/console/pull/12108) * [OCPBUGS-1523](https://issues.redhat.com/browse/OCPBUGS-1523): Show already loaded catalog items after a timeout (3sec) [#12070](https://github.com/openshift/console/pull/12070) * [OCPBUGS-1410](https://issues.redhat.com/browse/OCPBUGS-1410): mock call to /api/devfile in e2e [#12020](https://github.com/openshift/console/pull/12020) * [OCPBUGS-721](https://issues.redhat.com/browse/OCPBUGS-721): show git icon in repository details page based on git provider [#12005](https://github.com/openshift/console/pull/12005) * [OCPBUGS-1030](https://issues.redhat.com/browse/OCPBUGS-1030): Update registry library dependency to pick up proxy support [#12028](https://github.com/openshift/console/pull/12028) * [OCPBUGS-1070](https://issues.redhat.com/browse/OCPBUGS-1070): Update ODC owner files [#11936](https://github.com/openshift/console/pull/11936) * [OCPBUGS-524](https://issues.redhat.com/browse/OCPBUGS-524): reset ErrorBoundary state on location change [#11968](https://github.com/openshift/console/pull/11968) * [Bug 2109887](https://bugzilla.redhat.com/show_bug.cgi?id=2109887): remove redundant model check to prevent tab reloading [#11899](https://github.com/openshift/console/pull/11899) * [OCPBUGS-185](https://issues.redhat.com/browse/OCPBUGS-185): Search doesn't show all entries when name filter is cleared [#11975](https://github.com/openshift/console/pull/11975) * [Bug 2102335](https://bugzilla.redhat.com/show_bug.cgi?id=2102335): Implement dynamic plugin dependency resolution [#11901](https://github.com/openshift/console/pull/11901) * [OCPBUGS-541](https://issues.redhat.com/browse/OCPBUGS-541): Input values in Instantiate Template are disappeared randomly in the developer console [#11982](https://github.com/openshift/console/pull/11982) * [Bug 2116265](https://bugzilla.redhat.com/show_bug.cgi?id=2116265): fix failed PipelineRun log texts color in light mode [#11941](https://github.com/openshift/console/pull/11941) * [Bug 2115561](https://bugzilla.redhat.com/show_bug.cgi?id=2115561): fix MultiColumnField header alignment used for Pipeline parameters [#11935](https://github.com/openshift/console/pull/11935) * [Bug 2116288](https://bugzilla.redhat.com/show_bug.cgi?id=2116288): Fix Monitoring Alert decorator icon color in Topology [#11942](https://github.com/openshift/console/pull/11942) * [Bug 2106755](https://bugzilla.redhat.com/show_bug.cgi?id=2106755): fix broken update server link [#11830](https://github.com/openshift/console/pull/11830) * [Bug 2113019](https://bugzilla.redhat.com/show_bug.cgi?id=2113019): Update pod YAML sample for restricted pod security admission policy [#11916](https://github.com/openshift/console/pull/11916) * [Bug 2113962](https://bugzilla.redhat.com/show_bug.cgi?id=2113962): - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view [#11918](https://github.com/openshift/console/pull/11918) * [Bug 2107777](https://bugzilla.redhat.com/show_bug.cgi?id=2107777): Added separate reducers for status and title for pipeline status [#11842](https://github.com/openshift/console/pull/11842) * [Bug 2109052](https://bugzilla.redhat.com/show_bug.cgi?id=2109052): Unset the overflow to display sub menu content [#11854](https://github.com/openshift/console/pull/11854) * [Bug 2107871](https://bugzilla.redhat.com/show_bug.cgi?id=2107871): Added the spacing between advanced options [#11843](https://github.com/openshift/console/pull/11843) * [Bug 2115315](https://bugzilla.redhat.com/show_bug.cgi?id=2115315): fix helm readme bug [#11933](https://github.com/openshift/console/pull/11933) * [Bug 2109709](https://bugzilla.redhat.com/show_bug.cgi?id=2109709): Error Loading/404 not found page shown after clicking "Current namespace only" [#11864](https://github.com/openshift/console/pull/11864) * [Bug 2104951](https://bugzilla.redhat.com/show_bug.cgi?id=2104951): fix bug where Cluster update modal errors weren't displa… [#11800](https://github.com/openshift/console/pull/11800) * Bug 2105910, Bug 2106594: Fix create-namespace e2e test, ESOCKET timeout issue, and a11y violations to unblock CI [#11826](https://github.com/openshift/console/pull/11826) * Automation of Eventing-broker-actions | knative - eventing [#11503](https://github.com/openshift/console/pull/11503) * [Bug 2100669](https://bugzilla.redhat.com/show_bug.cgi?id=2100669): Don't log usernames with the telemetry plugin [#11759](https://github.com/openshift/console/pull/11759) * [Bug 2100159](https://bugzilla.redhat.com/show_bug.cgi?id=2100159): [dark theme] Fix build pending icon color in topology sidebar [#11756](https://github.com/openshift/console/pull/11756) * [Bug 2099528](https://bugzilla.redhat.com/show_bug.cgi?id=2099528): Restore spacing between/below modal body content [#11755](https://github.com/openshift/console/pull/11755) * [Bug 2099358](https://bugzilla.redhat.com/show_bug.cgi?id=2099358): Fix application group background colors [#11752](https://github.com/openshift/console/pull/11752) * [Bug 2100356](https://bugzilla.redhat.com/show_bug.cgi?id=2100356): remove Condition tab and create option if the crd is not available [#11750](https://github.com/openshift/console/pull/11750) * eventing-channel feature | knative-plugin [#11634](https://github.com/openshift/console/pull/11634) * [Bug 1948556](https://bugzilla.redhat.com/show_bug.cgi?id=1948556): Add check if model is defined to prevent RTE [#11224](https://github.com/openshift/console/pull/11224) * [Bug 2099330](https://bugzilla.redhat.com/show_bug.cgi?id=2099330): Add accessReview to Edit application grouping option [#11745](https://github.com/openshift/console/pull/11745) * [Bug 2094023](https://bugzilla.redhat.com/show_bug.cgi?id=2094023): Add correct pod template labels via add flows [#11740](https://github.com/openshift/console/pull/11740) * [CONSOLE-3061](https://issues.redhat.com/browse/CONSOLE-3061): Add failed plugins into the notification drawer [#11732](https://github.com/openshift/console/pull/11732) * [CONSOLE-3062](https://issues.redhat.com/browse/CONSOLE-3062): add Dynamic Plugins to Cluster Overview Status card [#11664](https://github.com/openshift/console/pull/11664) * Actions on Horizontal-pod-autoscaler | Topology [#11642](https://github.com/openshift/console/pull/11642) * Quota charts now show all resource types [#11596](https://github.com/openshift/console/pull/11596) * [Bug 2099654](https://bugzilla.redhat.com/show_bug.cgi?id=2099654): Fix endless re-render loop when associatedDeployment is not defined [#11749](https://github.com/openshift/console/pull/11749) * [Bug 2029797](https://bugzilla.redhat.com/show_bug.cgi?id=2029797): if linkTo is false, do not attempt to get path [#11696](https://github.com/openshift/console/pull/11696) * [Bug 2062920](https://bugzilla.redhat.com/show_bug.cgi?id=2062920): Remove the namespace dropdown set menu height to prevent unneccessary… [#11748](https://github.com/openshift/console/pull/11748) * [Bug 2087772](https://bugzilla.redhat.com/show_bug.cgi?id=2087772): Fix layout issue caused by badges in header of catalog details panel [#11711](https://github.com/openshift/console/pull/11711) * [CONSOLE-3153](https://issues.redhat.com/browse/CONSOLE-3153): Expose timestamp component as part of the dynamic plugin sdk API [#11693](https://github.com/openshift/console/pull/11693) * [Bug 2093586](https://bugzilla.redhat.com/show_bug.cgi?id=2093586): Close quick-search modal on ctrl+space [#11741](https://github.com/openshift/console/pull/11741) * [Bug 2072883](https://bugzilla.redhat.com/show_bug.cgi?id=2072883): Fix dashboard graph width tracking [#11730](https://github.com/openshift/console/pull/11730) * [Bug 2094227](https://bugzilla.redhat.com/show_bug.cgi?id=2094227): Added Create Service Binding to the top of the action list [#11702](https://github.com/openshift/console/pull/11702) * [Bug 2071747](https://bugzilla.redhat.com/show_bug.cgi?id=2071747): Fix the machine configuration docs link [#11668](https://github.com/openshift/console/pull/11668) * [Bug 2096392](https://bugzilla.redhat.com/show_bug.cgi?id=2096392): [Dark Theme]: Add white background to node icons in Topology in dark mode [#11699](https://github.com/openshift/console/pull/11699) * [Bug 2022611](https://bugzilla.redhat.com/show_bug.cgi?id=2022611): Remove BlockPools tab in external mode [#11727](https://github.com/openshift/console/pull/11727) * [Bug 2015042](https://bugzilla.redhat.com/show_bug.cgi?id=2015042): Adding a template from the catalog creates a secret that is not owned by the TemplateInstance [#11649](https://github.com/openshift/console/pull/11649) * [Bug 2077373](https://bugzilla.redhat.com/show_bug.cgi?id=2077373): fix dev perspective accessibility issue [#11738](https://github.com/openshift/console/pull/11738) * [Bug 2099763](https://bugzilla.redhat.com/show_bug.cgi?id=2099763): update icons for eventSource and eventSink [#11731](https://github.com/openshift/console/pull/11731) * [ODC-6660](https://issues.redhat.com/browse/ODC-6660): Render topology differently based on zoom level [#11698](https://github.com/openshift/console/pull/11698) * chore(i18n): update translations: Completed-7034-OCP 4.11 UI Localization- print 219 [#11695](https://github.com/openshift/console/pull/11695) * [Bug 2099582](https://bugzilla.redhat.com/show_bug.cgi?id=2099582): Format and update the repository overview page [#11737](https://github.com/openshift/console/pull/11737) * Console 3155: Display Operator logos on a white background on dark them to prevent visual issues and consistency [#11491](https://github.com/openshift/console/pull/11491) * [Bug 2096908](https://bugzilla.redhat.com/show_bug.cgi?id=2096908): [Dark Theme]: fix several issues in the dark mode. [#11706](https://github.com/openshift/console/pull/11706) * [Bug 2093601](https://bugzilla.redhat.com/show_bug.cgi?id=2093601): allow project access page to update the settings twice [#11713](https://github.com/openshift/console/pull/11713) * eventing-create-sink-broker feature | knative-plugin [#11717](https://github.com/openshift/console/pull/11717) * [Bug 2089405](https://bugzilla.redhat.com/show_bug.cgi?id=2089405): fix topology build decorator color [#11722](https://github.com/openshift/console/pull/11722) * [Bug 1993916](https://bugzilla.redhat.com/show_bug.cgi?id=1993916): Visual feedback on OBC deletion [#11415](https://github.com/openshift/console/pull/11415) * [Bug 2072793](https://bugzilla.redhat.com/show_bug.cgi?id=2072793): Update top consumer metrics [#11721](https://github.com/openshift/console/pull/11721) * Gherkin and automation of topology usability improvements [#11566](https://github.com/openshift/console/pull/11566) * [Bug 2089675](https://bugzilla.redhat.com/show_bug.cgi?id=2089675): Fix for setting position of topology groups with no children [#11723](https://github.com/openshift/console/pull/11723) * [Bug 2096394](https://bugzilla.redhat.com/show_bug.cgi?id=2096394): Switch from overriding dark theme pf-c-card background to increasing its boxshadow. [#11707](https://github.com/openshift/console/pull/11707) * [Bug 2091029](https://bugzilla.redhat.com/show_bug.cgi?id=2091029): - Cancel rollout action only appears when rollout is completed [#11648](https://github.com/openshift/console/pull/11648) * [Bug 2097000](https://bugzilla.redhat.com/show_bug.cgi?id=2097000): fix visualisation of kafka connection along with kafka sink [#11718](https://github.com/openshift/console/pull/11718) * [Bug 2027603](https://bugzilla.redhat.com/show_bug.cgi?id=2027603): Fix arbiter zone selection issue [#11692](https://github.com/openshift/console/pull/11692) * [Bug 2090895](https://bugzilla.redhat.com/show_bug.cgi?id=2090895): Support startsWith Nav Extension property [#11660](https://github.com/openshift/console/pull/11660) * Gherkin and automation of support builds v2 in Dev Console [#11709](https://github.com/openshift/console/pull/11709) * [Bug 2043068](https://bugzilla.redhat.com/show_bug.cgi?id=2043068): <x> available of <y> text disappears in Utilization item if x is 0 [#11617](https://github.com/openshift/console/pull/11617) * Topology-workload-sidebar feature [#11605](https://github.com/openshift/console/pull/11605) * [CONSOLE-3162](https://issues.redhat.com/browse/CONSOLE-3162): Implement check for the new i18n annotation for dynamic plugins [#11586](https://github.com/openshift/console/pull/11586) * Topology-connecting-workloads and editing app | Topology Automation [#11452](https://github.com/openshift/console/pull/11452) * [Bug 2036629](https://bugzilla.redhat.com/show_bug.cgi?id=2036629): Remove NooBaa Management UI link [#11680](https://github.com/openshift/console/pull/11680) * [Bug 2093600](https://bugzilla.redhat.com/show_bug.cgi?id=2093600): Added create call before delete call [#11704](https://github.com/openshift/console/pull/11704) * Gherkin for add git repository in pipeline as code [#11681](https://github.com/openshift/console/pull/11681) * Gherkin and automation of dev usability improvements [#11601](https://github.com/openshift/console/pull/11601) * [Bug 2097163](https://bugzilla.redhat.com/show_bug.cgi?id=2097163): Expose useURLPoll hook in internal SDK [#11708](https://github.com/openshift/console/pull/11708) * Add extensions for project overview inventory and utilization cards [#11620](https://github.com/openshift/console/pull/11620) * [Bug 2093047](https://bugzilla.redhat.com/show_bug.cgi?id=2093047): Clean up duplicate entries in api.md [#11705](https://github.com/openshift/console/pull/11705) * [Bug 2090457](https://bugzilla.redhat.com/show_bug.cgi?id=2090457): openshift-debug-node- namespaces do not get deleted for… [#11674](https://github.com/openshift/console/pull/11674) * Automation of eventing-broker-trigger | knative-eventing [#11576](https://github.com/openshift/console/pull/11576) * [Bug 2057251](https://bugzilla.redhat.com/show_bug.cgi?id=2057251): promql: Improve a few cluster-dashboard queries [#11265](https://github.com/openshift/console/pull/11265) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Adjust darkest purple resource color to one PF shade lighter for better contrast on dark theme. [#11685](https://github.com/openshift/console/pull/11685) * Automation of event-sources-sink-to-uri | knative-plugin [#11450](https://github.com/openshift/console/pull/11450) * [Bug 2084453](https://bugzilla.redhat.com/show_bug.cgi?id=2084453): - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view [#11494](https://github.com/openshift/console/pull/11494) * [Bug 2094239](https://bugzilla.redhat.com/show_bug.cgi?id=2094239): do not show NodesUpdateGroup if there are 0 nodes [#11694](https://github.com/openshift/console/pull/11694) * [Bug 2095687](https://bugzilla.redhat.com/show_bug.cgi?id=2095687): fix issue with debugcontainer for build logs [#11687](https://github.com/openshift/console/pull/11687) * [Bug 2095083](https://bugzilla.redhat.com/show_bug.cgi?id=2095083): Monitoring dashboards: Increase default graph samples from 30 to 60 [#11667](https://github.com/openshift/console/pull/11667) * [Bug 2096053](https://bugzilla.redhat.com/show_bug.cgi?id=2096053): [Dark Theme]: Add white background to Builder Image icons in Git import flow [#11689](https://github.com/openshift/console/pull/11689) * [Bug 2086521](https://bugzilla.redhat.com/show_bug.cgi?id=2086521): [Dark Theme]: fix Topology context menu icon to support dark theme [#11688](https://github.com/openshift/console/pull/11688) * [Bug 2094152](https://bugzilla.redhat.com/show_bug.cgi?id=2094152): Filter alerts in virtualization overview status card [#11653](https://github.com/openshift/console/pull/11653) * Remove now unused function getPrometheusExpressionBrowserURL [#11609](https://github.com/openshift/console/pull/11609) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Adjust pf-c-card background color, when on dark theme, so that it is discernible. [#11684](https://github.com/openshift/console/pull/11684) * [Bug 2095247](https://bugzilla.redhat.com/show_bug.cgi?id=2095247): update fetch for dynamic channels in sink as done for source [#11682](https://github.com/openshift/console/pull/11682) * [Bug 2091603](https://bugzilla.redhat.com/show_bug.cgi?id=2091603): move terminal tick & add phase handlers [#11650](https://github.com/openshift/console/pull/11650) * [ODC-6694](https://issues.redhat.com/browse/ODC-6694): New service binding plugin with a list and detail page, updated topology package [#11671](https://github.com/openshift/console/pull/11671) * [Bug 2094833](https://bugzilla.redhat.com/show_bug.cgi?id=2094833): Fix empty pipeline run template section for non-admin users [#11670](https://github.com/openshift/console/pull/11670) * Render icon as a svg instead of img tag to support dark theme [#11663](https://github.com/openshift/console/pull/11663) * Gherkin for console dark theme [#11643](https://github.com/openshift/console/pull/11643) * [Bug 2095231](https://bugzilla.redhat.com/show_bug.cgi?id=2095231): Fix default sidebar for resources like Kafka sink, Kafka connection [#11683](https://github.com/openshift/console/pull/11683) * [Bug 2095071](https://bugzilla.redhat.com/show_bug.cgi?id=2095071): Fix failing backend test after devfile registry update [#11675](https://github.com/openshift/console/pull/11675) * [ODC-4981](https://issues.redhat.com/browse/ODC-4981): Add new plugin to support Shipwright Builds and BuildRuns [#11641](https://github.com/openshift/console/pull/11641) * [CONSOLE-2321](https://issues.redhat.com/browse/CONSOLE-2321): Allow operators installed globally to display operand instances for all managed namespaces in their details [#8930](https://github.com/openshift/console/pull/8930) * [Bug 2094104](https://bugzilla.redhat.com/show_bug.cgi?id=2094104): Demo dynamic plugin image tests should be skipped when testing console-operator [#11652](https://github.com/openshift/console/pull/11652) * [Bug 2085407](https://bugzilla.redhat.com/show_bug.cgi?id=2085407): Update Node details page to include inline edit labels button [#11563](https://github.com/openshift/console/pull/11563) * [Bug 2065840](https://bugzilla.redhat.com/show_bug.cgi?id=2065840): redirect v1beta1 CronJobs [#11662](https://github.com/openshift/console/pull/11662) * [Bug 2092414](https://bugzilla.redhat.com/show_bug.cgi?id=2092414): Display only running VMs in Virtualization Overview chart [#11651](https://github.com/openshift/console/pull/11651) * [Bug 2091901](https://bugzilla.redhat.com/show_bug.cgi?id=2091901): fix bug where log stream pauses in Chrome [#11646](https://github.com/openshift/console/pull/11646) * [ODC-6670](https://issues.redhat.com/browse/ODC-6670): Add --telemetry support to console backend (bridge) [#11531](https://github.com/openshift/console/pull/11531) * Topology-Toolbar Filter Group Gherkin Design and Automation [#11610](https://github.com/openshift/console/pull/11610) * Update pf packages to pf-2022-7 [#11632](https://github.com/openshift/console/pull/11632) * captures telemetry events for userPreferences, SBO, WTO and getting started [#11579](https://github.com/openshift/console/pull/11579) * Add pipelines as code Repository form [#11627](https://github.com/openshift/console/pull/11627) * [Bug 2077138](https://bugzilla.redhat.com/show_bug.cgi?id=2077138): fix {{execute}} regex for multiline executables in QuickStart [#11572](https://github.com/openshift/console/pull/11572) * [CONSOLE-3163](https://issues.redhat.com/browse/CONSOLE-3163): kubeadmin notifier changes [#11578](https://github.com/openshift/console/pull/11578) * [Bug 2063764](https://bugzilla.redhat.com/show_bug.cgi?id=2063764): Operators - OperatorHub : i18n misses [#11583](https://github.com/openshift/console/pull/11583) * [Bug 2092408](https://bugzilla.redhat.com/show_bug.cgi?id=2092408): Change icon in virtualization overview permissions card [#11623](https://github.com/openshift/console/pull/11623) * [CONSOLE-2977](https://issues.redhat.com/browse/CONSOLE-2977): update MCP list page for control plane only updates [#11502](https://github.com/openshift/console/pull/11502) * [Bug 2091746](https://bugzilla.redhat.com/show_bug.cgi?id=2091746): Check if spec is available in MCP details page [#11613](https://github.com/openshift/console/pull/11613) * [Bug 2086546](https://bugzilla.redhat.com/show_bug.cgi?id=2086546): [Dark Theme]: update Service binding connector color to support dark mode [#11600](https://github.com/openshift/console/pull/11600) * [Bug 2091218](https://bugzilla.redhat.com/show_bug.cgi?id=2091218): Update helm to 3.9.0 [#11590](https://github.com/openshift/console/pull/11590) * [Bug 2088489](https://bugzilla.redhat.com/show_bug.cgi?id=2088489): fix app selection in list view [#11608](https://github.com/openshift/console/pull/11608) * Add console-telemetry-plugin [#11549](https://github.com/openshift/console/pull/11549) * [Bug 2080387](https://bugzilla.redhat.com/show_bug.cgi?id=2080387): Pass contextSource to TopologyApplicationActionProvider [#11615](https://github.com/openshift/console/pull/11615) * [Bug 2070000](https://bugzilla.redhat.com/show_bug.cgi?id=2070000): Add high priority alerts to overview [#11614](https://github.com/openshift/console/pull/11614) * [Bug 2074635](https://bugzilla.redhat.com/show_bug.cgi?id=2074635): fix web terminal start [#11597](https://github.com/openshift/console/pull/11597) * [Bug 2084438](https://bugzilla.redhat.com/show_bug.cgi?id=2084438): Change Ping source spec.jsonData (deprecated) field to spec.data [#11548](https://github.com/openshift/console/pull/11548) * [Bug 2089996](https://bugzilla.redhat.com/show_bug.cgi?id=2089996): Don't rerun yarn install when running tests [#11517](https://github.com/openshift/console/pull/11517) * [Bug 2084615](https://bugzilla.redhat.com/show_bug.cgi?id=2084615): Fix Add to navigation alignment on search page [#11516](https://github.com/openshift/console/pull/11516) * [Bug 2079685](https://bugzilla.redhat.com/show_bug.cgi?id=2079685): Kms details enabled in the StorageClass creation page [#11498](https://github.com/openshift/console/pull/11498) * [Dark Theme]: fix dark theme issues in pipeline task visualization [#11575](https://github.com/openshift/console/pull/11575) * [Bug 2077386](https://bugzilla.redhat.com/show_bug.cgi?id=2077386): Replaced enum type with const to add translation [#11419](https://github.com/openshift/console/pull/11419) * [Bug 2091854](https://bugzilla.redhat.com/show_bug.cgi?id=2091854): Add 'Unavailable' status to clusteroperator status filter [#11612](https://github.com/openshift/console/pull/11612) * [Bug 2079818](https://bugzilla.redhat.com/show_bug.cgi?id=2079818): Remove duplicate padding from catalog side panel [#11602](https://github.com/openshift/console/pull/11602) * [Bug 2063732](https://bugzilla.redhat.com/show_bug.cgi?id=2063732): Workloads - StatefulSets : I18n misses [#11589](https://github.com/openshift/console/pull/11589) * Prometheus hook returns loaded instead of loading - same as k8s watch… [#11568](https://github.com/openshift/console/pull/11568) * [Bug 2084635](https://bugzilla.redhat.com/show_bug.cgi?id=2084635): Avoid using 'gp2' hardcoded storage class [#11603](https://github.com/openshift/console/pull/11603) * Fix Multiple instances of Object Bucket, Object Bucket Claims under storage section [#11540](https://github.com/openshift/console/pull/11540) * [Bug 2087546](https://bugzilla.redhat.com/show_bug.cgi?id=2087546): Expose getting started card resources [#11569](https://github.com/openshift/console/pull/11569) * Topology-toolbar-filter feature [#11529](https://github.com/openshift/console/pull/11529) * [ODC-6497](https://issues.redhat.com/browse/ODC-6497): Restore checks in environment e2e test [#11598](https://github.com/openshift/console/pull/11598) * Automation of eventing-camelk | knative-eventing [#11577](https://github.com/openshift/console/pull/11577) * e2e: Add package parameter to nightly cypress script [#11507](https://github.com/openshift/console/pull/11507) * [Bug 2071617](https://bugzilla.redhat.com/show_bug.cgi?id=2071617): remove Kubevirt extensions in favour of dynamic plugin [#11557](https://github.com/openshift/console/pull/11557) * [Bug 2090178](https://bugzilla.redhat.com/show_bug.cgi?id=2090178): Fix SSH command string [#11599](https://github.com/openshift/console/pull/11599) * [Bug 2081201](https://bugzilla.redhat.com/show_bug.cgi?id=2081201): cloud-init User check for Windows VM refuses to accept capitalized [#11591](https://github.com/openshift/console/pull/11591) * [Bug 2074767](https://bugzilla.redhat.com/show_bug.cgi?id=2074767): change metrics queries based on metrics level configurations [#11449](https://github.com/openshift/console/pull/11449) * [Bug 2091030](https://bugzilla.redhat.com/show_bug.cgi?id=2091030): Expose boot mode field in BMH wizard [#11585](https://github.com/openshift/console/pull/11585) * Ocp 4.11 UI localization sprint 218 [#11582](https://github.com/openshift/console/pull/11582) * update helm catalog description [#11562](https://github.com/openshift/console/pull/11562) * [Bug 2083154](https://bugzilla.redhat.com/show_bug.cgi?id=2083154): Fix missing params and formatting issues in dynamic plug in generated API docs [#11501](https://github.com/openshift/console/pull/11501) * [Bug 2091087](https://bugzilla.redhat.com/show_bug.cgi?id=2091087): Adding new team members and removing users not in team [#11587](https://github.com/openshift/console/pull/11587) * [Bug 2090993](https://bugzilla.redhat.com/show_bug.cgi?id=2090993): Handle missing BMH for Node gracefully [#11492](https://github.com/openshift/console/pull/11492) * Add React-Router Docs to our Extension docs [#11570](https://github.com/openshift/console/pull/11570) * Form based experience for creating Deployments [#11262](https://github.com/openshift/console/pull/11262) * [Bug 2090621](https://bugzilla.redhat.com/show_bug.cgi?id=2090621): Handle medik8s node maintenance [#11504](https://github.com/openshift/console/pull/11504) * [Bug 2090178](https://bugzilla.redhat.com/show_bug.cgi?id=2090178): Fix SSH command string [#11567](https://github.com/openshift/console/pull/11567) * [Bug 2084459](https://bugzilla.redhat.com/show_bug.cgi?id=2084459): fixes topology list URI flow [#11542](https://github.com/openshift/console/pull/11542) * Change metrics autocomplete filter [#11555](https://github.com/openshift/console/pull/11555) * Prometheus poll hook can return undefined [#11543](https://github.com/openshift/console/pull/11543) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): swapped labels out for details view and modal [#11376](https://github.com/openshift/console/pull/11376) * Reposition low resolution alert [#11468](https://github.com/openshift/console/pull/11468) * [Bug 2084287](https://bugzilla.redhat.com/show_bug.cgi?id=2084287): Fix NPE when consuming CSVs with missing informations [#11544](https://github.com/openshift/console/pull/11544) * chore(i18n): update translations : Completed-7034-OCP 4.11 UI Localization- print 217 [#11462](https://github.com/openshift/console/pull/11462) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Include pf charts dark theme css file in app.jsx to ensure they are loaded last [#11535](https://github.com/openshift/console/pull/11535) * [Bug 2088304](https://bugzilla.redhat.com/show_bug.cgi?id=2088304): Eliminate use of lookaside cache and move to Cachito [#11497](https://github.com/openshift/console/pull/11497) * [Bug 2089271](https://bugzilla.redhat.com/show_bug.cgi?id=2089271): Virtualization appears twice in sidebar [#11546](https://github.com/openshift/console/pull/11546) * [Bug 2064256](https://bugzilla.redhat.com/show_bug.cgi?id=2064256): Fix topology sidebar update issues [#11420](https://github.com/openshift/console/pull/11420) * [Bug 2088248](https://bugzilla.redhat.com/show_bug.cgi?id=2088248): Create HANA VM does not use values from customized HANA templates [#11534](https://github.com/openshift/console/pull/11534) * [Bug 2087944](https://bugzilla.redhat.com/show_bug.cgi?id=2087944): fixes kafka sink visualisation [#11536](https://github.com/openshift/console/pull/11536) * [Bug 2079845](https://bugzilla.redhat.com/show_bug.cgi?id=2079845): fix catalog filter group getting removed on keyword change [#11481](https://github.com/openshift/console/pull/11481) * In-context-add-options feature | Topology [#11496](https://github.com/openshift/console/pull/11496) * [Bug 2088161](https://bugzilla.redhat.com/show_bug.cgi?id=2088161): Match dockerfile image name with the name used in the release repo for demo plugin [#11524](https://github.com/openshift/console/pull/11524) * adds hint and updates helptext for PAC [#11520](https://github.com/openshift/console/pull/11520) * [Bug 2020483](https://bugzilla.redhat.com/show_bug.cgi?id=2020483): Monitoring dashboards: Improve display text for interval variables [#10472](https://github.com/openshift/console/pull/10472) * [Bug 2066782](https://bugzilla.redhat.com/show_bug.cgi?id=2066782): Attached disk keeps in loading status when add disk to a power off VM by non-privileged user [#11521](https://github.com/openshift/console/pull/11521) * [Bug 2064239](https://bugzilla.redhat.com/show_bug.cgi?id=2064239): Overview page crash if no labels available [#11514](https://github.com/openshift/console/pull/11514) * [Bug 2015356](https://bugzilla.redhat.com/show_bug.cgi?id=2015356): Different status shows on VM list page and details page [#11512](https://github.com/openshift/console/pull/11512) * [Bug 2086542](https://bugzilla.redhat.com/show_bug.cgi?id=2086542): Fix that Service Binding could not be created via drag and drop [#11511](https://github.com/openshift/console/pull/11511) * Send activity tick by polling [#11390](https://github.com/openshift/console/pull/11390) * [Bug 2069654](https://bugzilla.redhat.com/show_bug.cgi?id=2069654): Adding missing annotations to create VM from YAML [#11518](https://github.com/openshift/console/pull/11518) * Improve cross portfolio consistency [#11470](https://github.com/openshift/console/pull/11470) * [Bug 2081377](https://bugzilla.redhat.com/show_bug.cgi?id=2081377): Remove pf-c-code-block__pre since pf updated allows classnames [#11431](https://github.com/openshift/console/pull/11431) * [Bug 2086469](https://bugzilla.redhat.com/show_bug.cgi?id=2086469): Monitoring: Fix first panel sometimes not rendered [#11505](https://github.com/openshift/console/pull/11505) * Updating openshift-enterprise-console images to be consistent with ART [#10974](https://github.com/openshift/console/pull/10974) * [Bug 2067246](https://bugzilla.redhat.com/show_bug.cgi?id=2067246): Removing SSH service selectors to minimum required [#11508](https://github.com/openshift/console/pull/11508) * Gherkin for pipeline builder to support local tektonhub instances [#11448](https://github.com/openshift/console/pull/11448) * [Bug 2076553](https://bugzilla.redhat.com/show_bug.cgi?id=2076553): fix rolebinding in DevConsole dropping all subjects when updating [#11292](https://github.com/openshift/console/pull/11292) * [Bug 2054735](https://bugzilla.redhat.com/show_bug.cgi?id=2054735): Change learn more link in virtualization -> migration tool [#11499](https://github.com/openshift/console/pull/11499) * Monitoring: Add "fade out" horizontal gradient to Metrics page table [#11474](https://github.com/openshift/console/pull/11474) * [Bug 2077943](https://bugzilla.redhat.com/show_bug.cgi?id=2077943): If there is a service with multiple ports, and the route uses 8080, when editing the 8080 port isn't replaced, but a random port gets replaced and 8080 still stays [#11464](https://github.com/openshift/console/pull/11464) * [Bug 2086417](https://bugzilla.redhat.com/show_bug.cgi?id=2086417): Fix start pipeline default value for GIT REVISION field [#11495](https://github.com/openshift/console/pull/11495) * change Event Sink and Event Source icons [#11437](https://github.com/openshift/console/pull/11437) * Gherkin and automation for PAC bootstrap form [#11478](https://github.com/openshift/console/pull/11478) * [Bug 2055492](https://bugzilla.redhat.com/show_bug.cgi?id=2055492): The default YAML on vm wizard is not latest [#11500](https://github.com/openshift/console/pull/11500) * [Bug 2082566](https://bugzilla.redhat.com/show_bug.cgi?id=2082566): Set dashboards timeout based on selected timespan [#11477](https://github.com/openshift/console/pull/11477) * [ODC-6645](https://issues.redhat.com/browse/ODC-6645): Convert the ProjectHelmChartRepository create form into a form-yaml switcher [#11440](https://github.com/openshift/console/pull/11440) * [Bug 2070457](https://bugzilla.redhat.com/show_bug.cgi?id=2070457): and PF-2022-6 PF update to fix Image vulnerability Popover [#11489](https://github.com/openshift/console/pull/11489) * [CCXDEV-7974](https://issues.redhat.com/browse/CCXDEV-7974): show error message when Insights Operator cannot process results [#11399](https://github.com/openshift/console/pull/11399) * [Bug 2083756](https://bugzilla.redhat.com/show_bug.cgi?id=2083756): enable simplifiedAutoLink for ClusterNotUpgradeableAlert [#11490](https://github.com/openshift/console/pull/11490) * Chart-Area-Visual feature | Topology [#11453](https://github.com/openshift/console/pull/11453) * Gherkin Scripts and Automation for Web-Terminal | Dev Console [#11378](https://github.com/openshift/console/pull/11378) * [CONSOLE-3136](https://issues.redhat.com/browse/CONSOLE-3136): add conditional updates to Cluster Settings [#11445](https://github.com/openshift/console/pull/11445) * [CONSOLE-3138](https://issues.redhat.com/browse/CONSOLE-3138): add conditional updates to cluster update modal [#11424](https://github.com/openshift/console/pull/11424) * [Bug 2084124](https://bugzilla.redhat.com/show_bug.cgi?id=2084124): fix upstream "Learn more" link in Update cluster modal [#11480](https://github.com/openshift/console/pull/11480) * [Bug 2083641](https://bugzilla.redhat.com/show_bug.cgi?id=2083641): fixes apiversion for k8s svc and resource selection for sink for form yaml switcher [#11475](https://github.com/openshift/console/pull/11475) * [Bug 2084292](https://bugzilla.redhat.com/show_bug.cgi?id=2084292): Add useDashboardResources hook [#11467](https://github.com/openshift/console/pull/11467) * [Bug 2081067](https://bugzilla.redhat.com/show_bug.cgi?id=2081067): add help text indicating Cluster history may be excerpted [#11472](https://github.com/openshift/console/pull/11472) * feat: Add Deployment History Tab (#1950) [#11439](https://github.com/openshift/console/pull/11439) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): Update user from node to 1001 similar to console docker file user id [#11473](https://github.com/openshift/console/pull/11473) * E2E tests: wait for project list to load before creating [#11443](https://github.com/openshift/console/pull/11443) * [Bug 2068181](https://bugzilla.redhat.com/show_bug.cgi?id=2068181): Fix Event source powered with kamelet type source to show associated resources in the sidepanel [#11301](https://github.com/openshift/console/pull/11301) * [Bug 2075592](https://bugzilla.redhat.com/show_bug.cgi?id=2075592): add z-index to ocs-drawer to make box-shadow visible [#11369](https://github.com/openshift/console/pull/11369) * [Bug 2078375](https://bugzilla.redhat.com/show_bug.cgi?id=2078375): Create VM from template that has sourceRef - will now reflect sourceRed at yaml [#11457](https://github.com/openshift/console/pull/11457) * [Bug 2078769](https://bugzilla.redhat.com/show_bug.cgi?id=2078769): Added language translation on filter items [#11435](https://github.com/openshift/console/pull/11435) * Update QE OWNERS roles for integration tests [#11455](https://github.com/openshift/console/pull/11455) * [Dark Theme]: fix quick search bar and project selector in User Preferences page [#11447](https://github.com/openshift/console/pull/11447) * [Bug 2076527](https://bugzilla.redhat.com/show_bug.cgi?id=2076527): Fix multiple Tektonhub Versions API call [#11438](https://github.com/openshift/console/pull/11438) * [Bug 2070720](https://bugzilla.redhat.com/show_bug.cgi?id=2070720): Fix Filter Dropdown & Label Selection State Management [#11428](https://github.com/openshift/console/pull/11428) * [Bug 2076544](https://bugzilla.redhat.com/show_bug.cgi?id=2076544): Added margin-bottom for the paragraph component [#11404](https://github.com/openshift/console/pull/11404) * [Bug 2083149](https://bugzilla.redhat.com/show_bug.cgi?id=2083149): fix bug where "Update blocked" label incorrectly displa… [#11459](https://github.com/openshift/console/pull/11459) * GitOps-1941 fixed dark theme color issue [#11426](https://github.com/openshift/console/pull/11426) * [Bug 2082380](https://bugzilla.redhat.com/show_bug.cgi?id=2082380): customize wizard is crashed [#11458](https://github.com/openshift/console/pull/11458) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): updated skeleton color definitions, updated sidebar shadow [#11408](https://github.com/openshift/console/pull/11408) * [Bug 2060329](https://bugzilla.redhat.com/show_bug.cgi?id=2060329): show Limit exceeded state for large number of nodes in topology [#11334](https://github.com/openshift/console/pull/11334) * [CONSOLE-2936](https://issues.redhat.com/browse/CONSOLE-2936): Add support for PDB [#10445](https://github.com/openshift/console/pull/10445) * [Bug 2013461](https://bugzilla.redhat.com/show_bug.cgi?id=2013461): Import deployment from Git with s2i expose always port 8080 (Service and Pod template, not Route) if another Route port is selected by the user [#11355](https://github.com/openshift/console/pull/11355) * [MGMT-9862](https://issues.redhat.com/browse/MGMT-9862): Add extension for dashboard's Details card [#11272](https://github.com/openshift/console/pull/11272) * Automation of event-sources-installation | knative-plugin [#11444](https://github.com/openshift/console/pull/11444) * [Bug 2072999](https://bugzilla.redhat.com/show_bug.cgi?id=2072999): Add params prop to HorizontalNav component [#11343](https://github.com/openshift/console/pull/11343) * [Bug 2079961](https://bugzilla.redhat.com/show_bug.cgi?id=2079961): Fix bug where the search results accordion section has no spacing between sidebar. [#11446](https://github.com/openshift/console/pull/11446) * Document Console to SDK versions [#11429](https://github.com/openshift/console/pull/11429) * [Bug 2074585](https://bugzilla.redhat.com/show_bug.cgi?id=2074585): fix kms issue for mcg standalone [#11410](https://github.com/openshift/console/pull/11410) * [Bug 1990384](https://bugzilla.redhat.com/show_bug.cgi?id=1990384): Improve Alertmanager unavailable message [#11397](https://github.com/openshift/console/pull/11397) * [CONSOLE-3090](https://issues.redhat.com/browse/CONSOLE-3090): [Dark Theme] Convert custom row-filter to use PatternFly ToggleGroup component for styling that is dark theme enabled. [#11384](https://github.com/openshift/console/pull/11384) * Update topology to Patternfly topology package containing updates and styles. [#11166](https://github.com/openshift/console/pull/11166) * Expose UsePrometheusPoll in console-dynamic-plugin-sdk [#11295](https://github.com/openshift/console/pull/11295) * [Bug 2081743](https://bugzilla.redhat.com/show_bug.cgi?id=2081743): disable kubevirt flaky tests [#11436](https://github.com/openshift/console/pull/11436) * Automation for quick-search-topology | Topology [#11396](https://github.com/openshift/console/pull/11396) * [Bug 2080873](https://bugzilla.redhat.com/show_bug.cgi?id=2080873): Fix crash when stored topology layout isn't supported anymore [#11427](https://github.com/openshift/console/pull/11427) * Automation for application and resource grouping | Topology [#11395](https://github.com/openshift/console/pull/11395) * Automation of knative-plugin | admin-perspective [#11389](https://github.com/openshift/console/pull/11389) * Monitoring: Add duplicate query option to kebab menu [#11004](https://github.com/openshift/console/pull/11004) * [CONSOLE-3141](https://issues.redhat.com/browse/CONSOLE-3141): Hide 'Control Plane' section in the status card for External controlPlaneTopology [#11398](https://github.com/openshift/console/pull/11398) * [CCXDEV-5788](https://issues.redhat.com/browse/CCXDEV-5788): render the "last refresh" timestamp in the Insights Advisor widget [#11391](https://github.com/openshift/console/pull/11391) * CONSOLE 3132: Introduce new console-plugin-shared npm package [#11360](https://github.com/openshift/console/pull/11360) * [Bug 2071747](https://bugzilla.redhat.com/show_bug.cgi?id=2071747): Fix the machine configuration docs link [#11417](https://github.com/openshift/console/pull/11417) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): use xl timeout to verify the demo pull spec is accurate [#11416](https://github.com/openshift/console/pull/11416) * [CONSOLE-3072](https://issues.redhat.com/browse/CONSOLE-3072): Cluster overview page changes for HyperShift provisioned clusters [#11366](https://github.com/openshift/console/pull/11366) * [Bug 2079673](https://bugzilla.redhat.com/show_bug.cgi?id=2079673): disable migrated components [#11205](https://github.com/openshift/console/pull/11205) * KafkaSink Visualization [#11333](https://github.com/openshift/console/pull/11333) * Gherkin and Automation of e2e support for event sinks [#11276](https://github.com/openshift/console/pull/11276) * [Bug 2027613](https://bugzilla.redhat.com/show_bug.cgi?id=2027613): use the correct Alertmanager tenancy proxy [#10818](https://github.com/openshift/console/pull/10818) * [Bug 2039161](https://bugzilla.redhat.com/show_bug.cgi?id=2039161): text visibility fixed [#10978](https://github.com/openshift/console/pull/10978) * [Bug 2079663](https://bugzilla.redhat.com/show_bug.cgi?id=2079663): change default image features in RBD storageclass [#11070](https://github.com/openshift/console/pull/11070) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): Update the wait time for demo plugin to 60s [#11414](https://github.com/openshift/console/pull/11414) * [Bug 2079216](https://bugzilla.redhat.com/show_bug.cgi?id=2079216): Update cluster update reference doc link [#11407](https://github.com/openshift/console/pull/11407) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): moved imports [#11370](https://github.com/openshift/console/pull/11370) * [Bug 1994117](https://bugzilla.redhat.com/show_bug.cgi?id=1994117): remove orphaned Service Catalog and Chargeback code [#11400](https://github.com/openshift/console/pull/11400) * Monitoring: Integrate PromQL codemirror for better autocomplete UX [#11143](https://github.com/openshift/console/pull/11143) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): increase timeout to render toast notification for demo plugin test [#11402](https://github.com/openshift/console/pull/11402) * [Bug 2075189](https://bugzilla.redhat.com/show_bug.cgi?id=2075189): Fix failed module resoltion errors in console sdk [#11381](https://github.com/openshift/console/pull/11381) * Filter out global configs when cluster is externally managed [#11383](https://github.com/openshift/console/pull/11383) * [Bug 2077150](https://bugzilla.redhat.com/show_bug.cgi?id=2077150): Required parent class added so that margin spacing for breadcrumbs is applied. [#11394](https://github.com/openshift/console/pull/11394) * [Bug 2042852](https://bugzilla.redhat.com/show_bug.cgi?id=2042852): Topology toolbars are unaligned to other toolbars [#11160](https://github.com/openshift/console/pull/11160) * [Dark Theme]: fix Topology empty state to support dark theme [#11393](https://github.com/openshift/console/pull/11393) * Gherkin and automation for project vulnerability [#11325](https://github.com/openshift/console/pull/11325) * [Bug 2075117](https://bugzilla.redhat.com/show_bug.cgi?id=2075117): Added inline-flex styling for searchbar filter div [#11379](https://github.com/openshift/console/pull/11379) * [CONSOLE-3074](https://issues.redhat.com/browse/CONSOLE-3074): update notifications for HyperShift Provisioned Clusters [#11375](https://github.com/openshift/console/pull/11375) * [Bug 2024708](https://bugzilla.redhat.com/show_bug.cgi?id=2024708): Don't use lodash startCase on default operand field labels [#11346](https://github.com/openshift/console/pull/11346) * [CONSOLE-3090](https://issues.redhat.com/browse/CONSOLE-3090): [Dark Theme] This is to reassign the correct blue and orange heading colors that are used in the getting started sections on both Admin and Dev console [#11385](https://github.com/openshift/console/pull/11385) * [Bug 1965934](https://bugzilla.redhat.com/show_bug.cgi?id=1965934): Fix Run queries button UX [#11388](https://github.com/openshift/console/pull/11388) * Update pf packages to pf-2022-5 [#11372](https://github.com/openshift/console/pull/11372) * [Bug 2061918](https://bugzilla.redhat.com/show_bug.cgi?id=2061918): Fixed side-bar scrolling issue [#11386](https://github.com/openshift/console/pull/11386) * Automation of Service bindings | dev-console [#11352](https://github.com/openshift/console/pull/11352) * [Dark Theme]: fix mutilStream logs and pod logs viewer and console header to support dark theme [#11357](https://github.com/openshift/console/pull/11357) * [Bug 2070731](https://bugzilla.redhat.com/show_bug.cgi?id=2070731): details switch label is not clickable on add page [#11311](https://github.com/openshift/console/pull/11311) * Make project access form discoverable [#11349](https://github.com/openshift/console/pull/11349) * [CONSOLE-3071](https://issues.redhat.com/browse/CONSOLE-3071): update Cluster Settings and ClusterVersion Details page… [#11363](https://github.com/openshift/console/pull/11363) * adds support for Pipelines as code [#11336](https://github.com/openshift/console/pull/11336) * Add Helm Chart repositories add action on Add page [#11345](https://github.com/openshift/console/pull/11345) * [Bug 2075575](https://bugzilla.redhat.com/show_bug.cgi?id=2075575): Align url polling interval for Overview pages with other pages [#11380](https://github.com/openshift/console/pull/11380) * Automation of pipeline-runs | pipelines-plugin [#11324](https://github.com/openshift/console/pull/11324) * Epic Automation for ODC-4315 [#11203](https://github.com/openshift/console/pull/11203) * [Bug 2073437](https://bugzilla.redhat.com/show_bug.cgi?id=2073437): Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls [#11307](https://github.com/openshift/console/pull/11307) * [Bug 2039477](https://bugzilla.redhat.com/show_bug.cgi?id=2039477): Add a workaround to show the PF validation status also when the input field is autofilled. [#11201](https://github.com/openshift/console/pull/11201) * [CONSOLE-3090](https://issues.redhat.com/browse/CONSOLE-3090): [Dark Theme] Several dark theme fixes. Includes borders, hr, disabled form element, row hover, hint blocks [#11303](https://github.com/openshift/console/pull/11303) * [Bug 2007340](https://bugzilla.redhat.com/show_bug.cgi?id=2007340): fix accessibility issues in topology list view [#11251](https://github.com/openshift/console/pull/11251) * [Bug 2015555](https://bugzilla.redhat.com/show_bug.cgi?id=2015555): keep query table and chart in sync [#11359](https://github.com/openshift/console/pull/11359) * [Bug 2073176](https://bugzilla.redhat.com/show_bug.cgi?id=2073176): Fix key/value pair removal issue in configmap form yaml switcher [#11328](https://github.com/openshift/console/pull/11328) * [Bug 2065804](https://bugzilla.redhat.com/show_bug.cgi?id=2065804): Fix Web Terminal availability check to verify operator is installed [#11202](https://github.com/openshift/console/pull/11202) * [CONSOLE-2925](https://issues.redhat.com/browse/CONSOLE-2925): Add initial dynamic demo plugin tests [#10644](https://github.com/openshift/console/pull/10644) * [Bug 2076614](https://bugzilla.redhat.com/show_bug.cgi?id=2076614): Expose ResourceEventStream Component as part of the Core SDK [#11274](https://github.com/openshift/console/pull/11274) * Gherkin for service binding enhancement- discoverability [#11326](https://github.com/openshift/console/pull/11326) * Add infotip and remove not bindable filter [#11313](https://github.com/openshift/console/pull/11313) * [Bug 2071715](https://bugzilla.redhat.com/show_bug.cgi?id=2071715): fix 404 on Environments nav [#11337](https://github.com/openshift/console/pull/11337) * [Bug 2074756](https://bugzilla.redhat.com/show_bug.cgi?id=2074756): fix bug where ClusterRole > RoleBindings did not display… [#11353](https://github.com/openshift/console/pull/11353) * [Bug 2074100](https://bugzilla.redhat.com/show_bug.cgi?id=2074100): fix CRD name filter [#11347](https://github.com/openshift/console/pull/11347) * [Bug 2074465](https://bugzilla.redhat.com/show_bug.cgi?id=2074465): Fix default branch param in pipeline import from git flow [#11323](https://github.com/openshift/console/pull/11323) * [Bug 2061918](https://bugzilla.redhat.com/show_bug.cgi?id=2061918): Topology sidebar broken issue is fixed [#11299](https://github.com/openshift/console/pull/11299) * Update links to examples - descriptors reference.md [#11342](https://github.com/openshift/console/pull/11342) * use incluster tekton hub Api endpoint in pipeline builder [#11335](https://github.com/openshift/console/pull/11335) * [Bug 2071578](https://bugzilla.redhat.com/show_bug.cgi?id=2071578): Add new MONITORING flag to hide dev perspective nav item and topology sidebar observe section if not available [#11190](https://github.com/openshift/console/pull/11190) * [Bug 2071617](https://bugzilla.redhat.com/show_bug.cgi?id=2071617): remove Kubevirt extensions in favour of dynamic plugin [#11273](https://github.com/openshift/console/pull/11273) * [Bug 2071617](https://bugzilla.redhat.com/show_bug.cgi?id=2071617): Stop disabling extensions with non-existing `disallowed` flags [#11344](https://github.com/openshift/console/pull/11344) * Hide Upgrade Cluster Alert in About Modal When Externally Managed [#11339](https://github.com/openshift/console/pull/11339) * [Bug 2075778](https://bugzilla.redhat.com/show_bug.cgi?id=2075778): Fix failing TestGetRegistrySamples test [#11350](https://github.com/openshift/console/pull/11350) * [Bug 2073329](https://bugzilla.redhat.com/show_bug.cgi?id=2073329): fix pipelineruns name in repository details page [#11338](https://github.com/openshift/console/pull/11338) * [Dark theme]: fix Observe dashboard, Topology list page and web terminal tab view [#11231](https://github.com/openshift/console/pull/11231) * [CONSOLE-3124](https://issues.redhat.com/browse/CONSOLE-3124): migrate Cluster Dashboard test to Cypress [#11332](https://github.com/openshift/console/pull/11332) * [Dark Theme]: fixes quick starts, user preferences project selector, quick search, and help text color [#11331](https://github.com/openshift/console/pull/11331) * Automation of create-from-add-options feature file | pipelines-plugin [#11291](https://github.com/openshift/console/pull/11291) * add visual effects on dragging the pinned resource [#11266](https://github.com/openshift/console/pull/11266) * [Bug 2065513](https://bugzilla.redhat.com/show_bug.cgi?id=2065513): Fix ResourceQuota dashboard card and ACRQ donut label [#11340](https://github.com/openshift/console/pull/11340) * [Bug 2040180](https://bugzilla.redhat.com/show_bug.cgi?id=2040180): handle dashboards single column case [#11327](https://github.com/openshift/console/pull/11327) * [Bug 2071691](https://bugzilla.redhat.com/show_bug.cgi?id=2071691): Update and scope our breadcrumb padding rule so it doesn't effect a pure implementation [#11321](https://github.com/openshift/console/pull/11321) * [Bug 2075149](https://bugzilla.redhat.com/show_bug.cgi?id=2075149): Fix translation of flag-enabled extensions [#11305](https://github.com/openshift/console/pull/11305) * add data test ids for MultiTabTerminal [#11330](https://github.com/openshift/console/pull/11330) * Automation of Pipeline-Workspaces | Pipeline-Plugin [#11322](https://github.com/openshift/console/pull/11322) * [Bug 2074447](https://bugzilla.redhat.com/show_bug.cgi?id=2074447): cluster-dashboard: exclude iowait and steal from CPU Utilisation [#10450](https://github.com/openshift/console/pull/10450) * [Bug 2071761](https://bugzilla.redhat.com/show_bug.cgi?id=2071761): - Translation Keys Are Not Namespaced [#11284](https://github.com/openshift/console/pull/11284) * [Bug 2072805](https://bugzilla.redhat.com/show_bug.cgi?id=2072805): Monitoring dashboards: Add support for __range* variables [#11289](https://github.com/openshift/console/pull/11289) * [Bug 2070160](https://bugzilla.redhat.com/show_bug.cgi?id=2070160): Remove custom classes pre and code element and apply using a custom class. [#11263](https://github.com/openshift/console/pull/11263) * Add form for PAC repository [#11264](https://github.com/openshift/console/pull/11264) * Update OWNERS for promql/ directory [#11317](https://github.com/openshift/console/pull/11317) * [Bug 2074475](https://bugzilla.redhat.com/show_bug.cgi?id=2074475): fix kubevirt gating [#11314](https://github.com/openshift/console/pull/11314) * Automation of Pipelines-as-code(PAC) [#11298](https://github.com/openshift/console/pull/11298) * fix(modal): removed drop shadow, updated colors [#11148](https://github.com/openshift/console/pull/11148) * [CONSOLE-2976](https://issues.redhat.com/browse/CONSOLE-2976): add update mode to Update cluster [#11053](https://github.com/openshift/console/pull/11053) * chore(i18n): update translations - Completed-7034-OCP 4.11 UI Localization- Sprint 216 [#11280](https://github.com/openshift/console/pull/11280) * Update pf packages to pf-2022-4 [#11261](https://github.com/openshift/console/pull/11261) * [Bug 2071719](https://bugzilla.redhat.com/show_bug.cgi?id=2071719): remove `.pf-c-button.pf-m-link` override [#11306](https://github.com/openshift/console/pull/11306) * Automation of event-tab-in-pipeline-run | pipelines-plugin [#11230](https://github.com/openshift/console/pull/11230) * Automation of pipeline-task-runs-display | pipelines-plugin [#11294](https://github.com/openshift/console/pull/11294) * [Bug 2015375](https://bugzilla.redhat.com/show_bug.cgi?id=2015375): Add IBM Flashsystem volume types [#10285](https://github.com/openshift/console/pull/10285) * [Bug 2038244](https://bugzilla.redhat.com/show_bug.cgi?id=2038244): Use hostname from provided git url when making git api calls [#10827](https://github.com/openshift/console/pull/10827) * [Bug 2056841](https://bugzilla.redhat.com/show_bug.cgi?id=2056841): Improve handling of /api/check-updates request failure in PollConsoleUpdates [#11304](https://github.com/openshift/console/pull/11304) * [Bug 2068594](https://bugzilla.redhat.com/show_bug.cgi?id=2068594): disable Details Card test since it was flaking at a high… [#11296](https://github.com/openshift/console/pull/11296) * [Bug 2058051](https://bugzilla.redhat.com/show_bug.cgi?id=2058051): Expose YAMLEditor to Core SDK [#11244](https://github.com/openshift/console/pull/11244) * [Bug 2072570](https://bugzilla.redhat.com/show_bug.cgi?id=2072570): test: use stable test titles [#11257](https://github.com/openshift/console/pull/11257) * [Bug 2072807](https://bugzilla.redhat.com/show_bug.cgi?id=2072807): Monitoring dashboards: Handle tables without `panel.styles` attribute [#11293](https://github.com/openshift/console/pull/11293) * [Bug 2071599](https://bugzilla.redhat.com/show_bug.cgi?id=2071599): fix bug where RoleBindings are not displaying in ClusterRole > RoleBindings [#11285](https://github.com/openshift/console/pull/11285) * [Bug 2069760](https://bugzilla.redhat.com/show_bug.cgi?id=2069760): Added divider to developer console navigation [#11283](https://github.com/openshift/console/pull/11283) * [Bug 2069914](https://bugzilla.redhat.com/show_bug.cgi?id=2069914): fix casing of 'Red Hat Applications' so all links appear… [#11268](https://github.com/openshift/console/pull/11268) * chore(OWNERS): remove rebeccaalpert [#11188](https://github.com/openshift/console/pull/11188) * [Bug 2058282](https://bugzilla.redhat.com/show_bug.cgi?id=2058282): Fix WebSockets not reconnecting during upgrade [#11288](https://github.com/openshift/console/pull/11288) * [Bug 2057183](https://bugzilla.redhat.com/show_bug.cgi?id=2057183): Only show operator detail page "Valid Subscriptions" item when it's not empty [#11287](https://github.com/openshift/console/pull/11287) * create form for adding project helm chart repo [#11227](https://github.com/openshift/console/pull/11227) * [Bug 2065840](https://bugzilla.redhat.com/show_bug.cgi?id=2065840): Fix CronJob resource version to batch/v1 [#11216](https://github.com/openshift/console/pull/11216) * [Bug 2069577](https://bugzilla.redhat.com/show_bug.cgi?id=2069577): Update dynamic-demo-plugin readme [#11286](https://github.com/openshift/console/pull/11286) * [Bug 2070020](https://bugzilla.redhat.com/show_bug.cgi?id=2070020): create correct apiversion: group/version for creating custom resource key for Resource Dropdown [#11260](https://github.com/openshift/console/pull/11260) * [Bug 2046435](https://bugzilla.redhat.com/show_bug.cgi?id=2046435): improve import error message [#10983](https://github.com/openshift/console/pull/10983) * [Bug 2071700](https://bugzilla.redhat.com/show_bug.cgi?id=2071700): Use 'reportingComponent' field for v1 Events [#11277](https://github.com/openshift/console/pull/11277) * [Bug 2063753](https://bugzilla.redhat.com/show_bug.cgi?id=2063753): Translate Extensions On Each Language Change [#11278](https://github.com/openshift/console/pull/11278) * [Bug 2069632](https://bugzilla.redhat.com/show_bug.cgi?id=2069632): fix 'linkURL' for 'previous' logs [#11275](https://github.com/openshift/console/pull/11275) * [Bug 2069685](https://bugzilla.redhat.com/show_bug.cgi?id=2069685): Fix UI crash when pinned resource model does not exist [#11249](https://github.com/openshift/console/pull/11249) * [Bug 2068594](https://bugzilla.redhat.com/show_bug.cgi?id=2068594): follow on fix to remove timeout value [#11248](https://github.com/openshift/console/pull/11248) * Automation of Pipeline Metrics [#11220](https://github.com/openshift/console/pull/11220) * Add synced form-yaml editor for routes [#11156](https://github.com/openshift/console/pull/11156) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): updated --pf-global--BorderColor—100 to --pf-global--BorderColor--100 [#11234](https://github.com/openshift/console/pull/11234) * add Event Sink option to broker and channel connector and context menu [#11259](https://github.com/openshift/console/pull/11259) * Add and Edit configmap form [#11150](https://github.com/openshift/console/pull/11150) * Add multitabbed terminal for cloudshell [#11191](https://github.com/openshift/console/pull/11191) * fix the quick search style to support dark theme [#11254](https://github.com/openshift/console/pull/11254) * Automation of Builder Page Pipelines [#11258](https://github.com/openshift/console/pull/11258) * Automation of Pipeline Actions [#11238](https://github.com/openshift/console/pull/11238) * update and add image vulnerability toggle group in IMV details page [#11222](https://github.com/openshift/console/pull/11222) * [Bug 1997142](https://bugzilla.redhat.com/show_bug.cgi?id=1997142): improve performance of OperatorHub text input filter [#11252](https://github.com/openshift/console/pull/11252) * [Bug 2067298](https://bugzilla.redhat.com/show_bug.cgi?id=2067298): Remove `modelsLoaded` conditional rendering from ModelStatusBox [#11245](https://github.com/openshift/console/pull/11245) * updates text description for Event sinks [#11214](https://github.com/openshift/console/pull/11214) * [Bug 2069577](https://bugzilla.redhat.com/show_bug.cgi?id=2069577): Update ConsolePlugin manifest [#11247](https://github.com/openshift/console/pull/11247) * [Bug 2068538](https://bugzilla.redhat.com/show_bug.cgi?id=2068538): Visual formatting adjustments to popover. [#11236](https://github.com/openshift/console/pull/11236) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Update pages to use PageHeading where possible [#11183](https://github.com/openshift/console/pull/11183) * [Bug 2069181](https://bugzilla.redhat.com/show_bug.cgi?id=2069181): Fix disabling community tasks in pipeline builder issue [#11241](https://github.com/openshift/console/pull/11241) * [Bug 2068908](https://bugzilla.redhat.com/show_bug.cgi?id=2068908): Update getting started blog link [#11239](https://github.com/openshift/console/pull/11239) * support visualisation of internal deployment in topology view and sidepanel for event sink [#11223](https://github.com/openshift/console/pull/11223) * [Bug 2069198](https://bugzilla.redhat.com/show_bug.cgi?id=2069198): Use pre-installed pipeline task in e2e test [#11240](https://github.com/openshift/console/pull/11240) * [Bug 2068490](https://bugzilla.redhat.com/show_bug.cgi?id=2068490): change 'kubectl' to 'oc' to fix descriptors test [#11233](https://github.com/openshift/console/pull/11233) * [Bug 2068594](https://bugzilla.redhat.com/show_bug.cgi?id=2068594): fix Cluster Dashboard Details Card test [#11235](https://github.com/openshift/console/pull/11235) * Updates and fixes for pipelines-plugin cypress tests [#11172](https://github.com/openshift/console/pull/11172) * [Bug 2067180](https://bugzilla.redhat.com/show_bug.cgi?id=2067180): Completed-7034-OCP 4.11 UI Localization- Sprint 215 [#11169](https://github.com/openshift/console/pull/11169) * [Bug 2068115](https://bugzilla.redhat.com/show_bug.cgi?id=2068115): Fixed the rendering of a Tab Extension when there is a version present [#11228](https://github.com/openshift/console/pull/11228) * [Bug 2067776](https://bugzilla.redhat.com/show_bug.cgi?id=2067776): Update prometheus/client_golang to 1.11.1 [#11232](https://github.com/openshift/console/pull/11232) * [Bug 2064744](https://bugzilla.redhat.com/show_bug.cgi?id=2064744): Remove duplicate app label on debug terminal [#11229](https://github.com/openshift/console/pull/11229) * [Bug 2017001](https://bugzilla.redhat.com/show_bug.cgi?id=2017001): Bug fix context menu position on topology [#11152](https://github.com/openshift/console/pull/11152) * Console3080 - Add Control Plane Topology flag to console UI [#11170](https://github.com/openshift/console/pull/11170) * Update pf packages to pf 2022-3 [#11158](https://github.com/openshift/console/pull/11158) * Allow user to re-arrange the resources added to nav [#11142](https://github.com/openshift/console/pull/11142) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Additional skeleton updates for dark theme [#11177](https://github.com/openshift/console/pull/11177) * Add theme switcher in user preferences page [#11115](https://github.com/openshift/console/pull/11115) * [Bug 2064607](https://bugzilla.redhat.com/show_bug.cgi?id=2064607): avoid pre-fetching tekton hub task versions in pipeline builder [#11195](https://github.com/openshift/console/pull/11195) * [Bug 2063708](https://bugzilla.redhat.com/show_bug.cgi?id=2063708): correct JA translation for 'Expand' [#11221](https://github.com/openshift/console/pull/11221) * feat(theme): added theme file [#11151](https://github.com/openshift/console/pull/11151) * [Bug 2066418](https://bugzilla.redhat.com/show_bug.cgi?id=2066418): correct ChannelDocLink url [#11217](https://github.com/openshift/console/pull/11217) * [Bug 2041769](https://bugzilla.redhat.com/show_bug.cgi?id=2041769): Pipeline metrics: use prometheus-tenancy API to get data [#10870](https://github.com/openshift/console/pull/10870) * [Bug 2057183](https://bugzilla.redhat.com/show_bug.cgi?id=2057183): Add validSubscription filter to OperatorHub [#11219](https://github.com/openshift/console/pull/11219) * [Bug 2064553](https://bugzilla.redhat.com/show_bug.cgi?id=2064553): Remove reference to deprecated `v2v-vmware` ConfigMap [#11207](https://github.com/openshift/console/pull/11207) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Changes to support the events and project select bar when in dark theme mode [#11136](https://github.com/openshift/console/pull/11136) * [Bug 2058051](https://bugzilla.redhat.com/show_bug.cgi?id=2058051): Exposing service list table [#11178](https://github.com/openshift/console/pull/11178) * [Bug 2066754](https://bugzilla.redhat.com/show_bug.cgi?id=2066754): Don't delete core Cypress reports [#11215](https://github.com/openshift/console/pull/11215) * [Bug 2063756](https://bugzilla.redhat.com/show_bug.cgi?id=2063756): - User Preferences - Applications - Insecure traffic : i18n misses [#11213](https://github.com/openshift/console/pull/11213) * [Bug 2019564](https://bugzilla.redhat.com/show_bug.cgi?id=2019564): attach owner reference to resources created on creating a user to allow garbage collection [#11130](https://github.com/openshift/console/pull/11130) * [Bug 2063699](https://bugzilla.redhat.com/show_bug.cgi?id=2063699): - Builds - Builds - Logs: i18n misses. [#11211](https://github.com/openshift/console/pull/11211) * [Bug 2061755](https://bugzilla.redhat.com/show_bug.cgi?id=2061755): remove Breadcrumbs from Create Operand pages [#11174](https://github.com/openshift/console/pull/11174) * [Bug 2063957](https://bugzilla.redhat.com/show_bug.cgi?id=2063957): fix bug where impersonating message was not translated [#11212](https://github.com/openshift/console/pull/11212) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix(background-color): updated to --pf-global--BackgroundColor—100 [#11167](https://github.com/openshift/console/pull/11167) * [Bug 2060583](https://bugzilla.redhat.com/show_bug.cgi?id=2060583): Remove internal-kubevirt Console plugin SDK package [#11091](https://github.com/openshift/console/pull/11091) * [Bug 2060924](https://bugzilla.redhat.com/show_bug.cgi?id=2060924): Fix alert from showing an object [#11185](https://github.com/openshift/console/pull/11185) * [Bug 2065338](https://bugzilla.redhat.com/show_bug.cgi?id=2065338): Fix VolumeSnapshot creation sort [#11194](https://github.com/openshift/console/pull/11194) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Updates hint block element [#11155](https://github.com/openshift/console/pull/11155) * Fix namespace and backing store table to show pre selected values. [#11180](https://github.com/openshift/console/pull/11180) * [Bug 2064596](https://bugzilla.redhat.com/show_bug.cgi?id=2064596): [Tekton Hub] show read more link in the task quick search details pane [#11187](https://github.com/openshift/console/pull/11187) * [Bug 2063897](https://bugzilla.redhat.com/show_bug.cgi?id=2063897): Change the tekton hub api endpoint to use v1 api [#11179](https://github.com/openshift/console/pull/11179) * [Bug 2050637](https://bugzilla.redhat.com/show_bug.cgi?id=2050637): add a hardcoded blog link as fallback in guided tours [#11120](https://github.com/openshift/console/pull/11120) * Sort catalog filters and other enhancements [#11161](https://github.com/openshift/console/pull/11161) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Changes to horizontal-nav to enable dark theme support [#11139](https://github.com/openshift/console/pull/11139) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix(background-color): updates to --pf-global--BackgroundColor—200 [#11168](https://github.com/openshift/console/pull/11168) * Replace GitTypes with the GitProvider type [#11165](https://github.com/openshift/console/pull/11165) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix(borders): convert #ccc, #ddd, $pf-color-black-300, $color-row-filter-border to var(--pf-global--BorderColor--100) [#11154](https://github.com/openshift/console/pull/11154) * end to end flow for event sink [#11138](https://github.com/openshift/console/pull/11138) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix borders updates #eee, #ededed, $table-border-color to `var(--pf-global--BorderColor--300)` [#11157](https://github.com/openshift/console/pull/11157) * ODC-6495 Remove layout2 topology [#11145](https://github.com/openshift/console/pull/11145) * [Bug 2062524](https://bugzilla.redhat.com/show_bug.cgi?id=2062524): fixes uri case for event sink [#11171](https://github.com/openshift/console/pull/11171) * fix(skeleton): updated sass var [#11147](https://github.com/openshift/console/pull/11147) * chore(vscode config): disabling the organizeImports functionality of … [#11037](https://github.com/openshift/console/pull/11037) * [Dark theme]Fix namespaced pages, add page and catalogs page [#11144](https://github.com/openshift/console/pull/11144) * [Bug 2013144](https://bugzilla.redhat.com/show_bug.cgi?id=2013144): catalog category filters can be opened via ctrl+click now [#11029](https://github.com/openshift/console/pull/11029) * [Bug 2009345](https://bugzilla.redhat.com/show_bug.cgi?id=2009345): Fix potential issues with namespaces that contains just numbers (crashes on 4.7) [#11126](https://github.com/openshift/console/pull/11126) * [Bug 2061333](https://bugzilla.redhat.com/show_bug.cgi?id=2061333): Add optional chaining to avoid npe [#11146](https://github.com/openshift/console/pull/11146) * [Bug 2061301](https://bugzilla.redhat.com/show_bug.cgi?id=2061301): Add tooltips why add and delete buttons in knative traffic splitting modal are disabled [#11106](https://github.com/openshift/console/pull/11106) * [Bug 2060894](https://bugzilla.redhat.com/show_bug.cgi?id=2060894): Preceding/Trailing Whitespaces In Form Elements on the add page [#11075](https://github.com/openshift/console/pull/11075) * [Bug 2059674](https://bugzilla.redhat.com/show_bug.cgi?id=2059674): Adjusts the Dynamic Demo Plugin and the SDK to meet on the usecases [#11116](https://github.com/openshift/console/pull/11116) * Fix CSS for edit bucket class modal [#11046](https://github.com/openshift/console/pull/11046) * [Bug 2055702](https://bugzilla.redhat.com/show_bug.cgi?id=2055702): enable Serverless e2e tests [#11124](https://github.com/openshift/console/pull/11124) * [Bug 2046156](https://bugzilla.redhat.com/show_bug.cgi?id=2046156): fix showing error in netpol affected pods [#10934](https://github.com/openshift/console/pull/10934) * [Bug 2056496](https://bugzilla.redhat.com/show_bug.cgi?id=2056496): update upload jar flow for no builder image [#11099](https://github.com/openshift/console/pull/11099) * service binding discoverability labels in dev catalog [#11035](https://github.com/openshift/console/pull/11035) * [CONSOLE-3087](https://issues.redhat.com/browse/CONSOLE-3087): Fix ActionContext type warning in components/actions/types.ts [#11128](https://github.com/openshift/console/pull/11128) * Update PF Packages to 2022-2: Dark theme stylesheet [#11083](https://github.com/openshift/console/pull/11083) * [Bug 2058623](https://bugzilla.redhat.com/show_bug.cgi?id=2058623): updates versions for kafka and kafkaTopic [#11111](https://github.com/openshift/console/pull/11111) * [Bug 2002602](https://bugzilla.redhat.com/show_bug.cgi?id=2002602): remove returning of err if json fails to parse [#11017](https://github.com/openshift/console/pull/11017) * [Bug 2054630](https://bugzilla.redhat.com/show_bug.cgi?id=2054630): Fix history stack handling when opening the silence alerts form [#11107](https://github.com/openshift/console/pull/11107) * [Bug 2042838](https://bugzilla.redhat.com/show_bug.cgi?id=2042838): the status of container is not consistent on Container details and pod details page [#11031](https://github.com/openshift/console/pull/11031) * [Bug 2052986](https://bugzilla.redhat.com/show_bug.cgi?id=2052986): fix console crashing in the edit deployment form [#11052](https://github.com/openshift/console/pull/11052) * [Bug 2059654](https://bugzilla.redhat.com/show_bug.cgi?id=2059654): update ConsolePlugin proxy settings [#10893](https://github.com/openshift/console/pull/10893) * [Bug 2044207](https://bugzilla.redhat.com/show_bug.cgi?id=2044207): Clear text on switching auth method [#10995](https://github.com/openshift/console/pull/10995) * [Bug 2052956](https://bugzilla.redhat.com/show_bug.cgi?id=2052956): fix duplicate edit app action on installing virtualization operator [#11076](https://github.com/openshift/console/pull/11076) * Remove Mode from Topology view [#11088](https://github.com/openshift/console/pull/11088) * [Bug 2058424](https://bugzilla.redhat.com/show_bug.cgi?id=2058424): Don't pass Authorization header when not needed [#11102](https://github.com/openshift/console/pull/11102) * [Bug 2054950](https://bugzilla.redhat.com/show_bug.cgi?id=2054950): Display correct disk size in Edit disk modal [#11105](https://github.com/openshift/console/pull/11105) * [Bug 2046598](https://bugzilla.redhat.com/show_bug.cgi?id=2046598): Display disk size in correct units [#11104](https://github.com/openshift/console/pull/11104) * [Bug 2057054](https://bugzilla.redhat.com/show_bug.cgi?id=2057054): Improves K8s Utils Return Type [#11103](https://github.com/openshift/console/pull/11103) * Clean up of CronJobSource code references [#11086](https://github.com/openshift/console/pull/11086) * Trim trailing whitespace in test names. [#11100](https://github.com/openshift/console/pull/11100) * [Bug 2054285](https://bugzilla.redhat.com/show_bug.cgi?id=2054285): Show standalone resources as sink and not the one's owned by other resource [#11085](https://github.com/openshift/console/pull/11085) * [Bug 2042710](https://bugzilla.redhat.com/show_bug.cgi?id=2042710): Custom imagepullsecret reference information not found when creating pod using console in openshift [#11058](https://github.com/openshift/console/pull/11058) * [Bug 2050005](https://bugzilla.redhat.com/show_bug.cgi?id=2050005): Fix webpack module federation runtime chunk ID clashes [#11062](https://github.com/openshift/console/pull/11062) * [Bug 2046531](https://bugzilla.redhat.com/show_bug.cgi?id=2046531): Remove schema subdir from dynamic plugin sdk [#11089](https://github.com/openshift/console/pull/11089) * [Bug 2048059](https://bugzilla.redhat.com/show_bug.cgi?id=2048059): fix proxy so requests to account management service work [#11090](https://github.com/openshift/console/pull/11090) * [Bug 2014161](https://bugzilla.redhat.com/show_bug.cgi?id=2014161): Fix pipeline run logs autoscrolling issue [#11056](https://github.com/openshift/console/pull/11056) * Migrate ListPageBody to the SDK [#10938](https://github.com/openshift/console/pull/10938) * [Bug 2052953](https://bugzilla.redhat.com/show_bug.cgi?id=2052953): clear dashboard variables for dev perspective on unmount [#11066](https://github.com/openshift/console/pull/11066) * [Bug 2053501](https://bugzilla.redhat.com/show_bug.cgi?id=2053501): Decode secrets before authorizing repository [#11071](https://github.com/openshift/console/pull/11071) * Monitoring: Redirect Prometheus UI format URLs to query browser page [#10963](https://github.com/openshift/console/pull/10963) * [Bug 2055980](https://bugzilla.redhat.com/show_bug.cgi?id=2055980): Expose more components/hooks/etc. needed by KubeVirt dynamic plugin [#11074](https://github.com/openshift/console/pull/11074) * [Bug 2055814](https://bugzilla.redhat.com/show_bug.cgi?id=2055814): Support custom extensions in console-extensions.json files [#11051](https://github.com/openshift/console/pull/11051) * [Bug 2053304](https://bugzilla.redhat.com/show_bug.cgi?id=2053304): Fix debug route and add testcases [#11040](https://github.com/openshift/console/pull/11040) * [Bug 2046598](https://bugzilla.redhat.com/show_bug.cgi?id=2046598): Display disk size in GiB in VM customize wizard [#11024](https://github.com/openshift/console/pull/11024) * [Bug 2037625](https://bugzilla.redhat.com/show_bug.cgi?id=2037625): Always show ResourceQuota charts [#11022](https://github.com/openshift/console/pull/11022) * [Bug 2037542](https://bugzilla.redhat.com/show_bug.cgi?id=2037542): Fix sticky footer in pipeline builder's form yaml switcher [#10783](https://github.com/openshift/console/pull/10783) * [Bug 2046496](https://bugzilla.redhat.com/show_bug.cgi?id=2046496): Update the list Toolbar to use ToolbarToggleGroup when less than 769px width [#11063](https://github.com/openshift/console/pull/11063) * [Bug 1934304](https://bugzilla.redhat.com/show_bug.cgi?id=1934304): Sum total memory of unnamed container only [#11067](https://github.com/openshift/console/pull/11067) * [Bug 2051578](https://bugzilla.redhat.com/show_bug.cgi?id=2051578): fix ClusterOperator Status, Version col sorts [#11061](https://github.com/openshift/console/pull/11061) * Remove unnecessary polyfills [#10016](https://github.com/openshift/console/pull/10016) * [Bug 2053168](https://bugzilla.redhat.com/show_bug.cgi?id=2053168): Fix dynamic plugin SDK typescript IDE errors [#11034](https://github.com/openshift/console/pull/11034) * [Bug 2048442](https://bugzilla.redhat.com/show_bug.cgi?id=2048442): Disabling Vault SA based auth for storage class encryption [#10998](https://github.com/openshift/console/pull/10998) * [Bug 2050902](https://bugzilla.redhat.com/show_bug.cgi?id=2050902): Fix to add labels to webhook secrets created during import [#11032](https://github.com/openshift/console/pull/11032) * [Bug 2051775](https://bugzilla.redhat.com/show_bug.cgi?id=2051775): Allow custom template namespace [#11054](https://github.com/openshift/console/pull/11054) * [Bug 2028821](https://bugzilla.redhat.com/show_bug.cgi?id=2028821): Misspelled label in ODF management UI [#11047](https://github.com/openshift/console/pull/11047) * Remove Console plugin SDK host-app package [#11043](https://github.com/openshift/console/pull/11043) * [Bug 2050698](https://bugzilla.redhat.com/show_bug.cgi?id=2050698): fix bug where Cluster Settings shows 0 of N, 0% progres… [#11038](https://github.com/openshift/console/pull/11038) * Migrate checkAccess & useAccessReview to the SDK [#10847](https://github.com/openshift/console/pull/10847) * [Bug 2039647](https://bugzilla.redhat.com/show_bug.cgi?id=2039647): Use namespaced links for dev perspective nav items [#11007](https://github.com/openshift/console/pull/11007) * [Bug 2051657](https://bugzilla.redhat.com/show_bug.cgi?id=2051657): removed `Tech preview` badge [#11016](https://github.com/openshift/console/pull/11016) * [Bug 2051642](https://bugzilla.redhat.com/show_bug.cgi?id=2051642): Remove tech preview badge for web terminal [#11012](https://github.com/openshift/console/pull/11012) * [Bug 2053685](https://bugzilla.redhat.com/show_bug.cgi?id=2053685): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11001](https://github.com/openshift/console/pull/11001) * [Bug 2054238](https://bugzilla.redhat.com/show_bug.cgi?id=2054238): Update E2E to use 3scale operator [#11044](https://github.com/openshift/console/pull/11044) * [Bug 2052595](https://bugzilla.redhat.com/show_bug.cgi?id=2052595): Revert "Add Dev Preview tag for IBM FlashSystem" [#11033](https://github.com/openshift/console/pull/11033) * [Bug 2051558](https://bugzilla.redhat.com/show_bug.cgi?id=2051558): omit rolebindings with no subjects [#11013](https://github.com/openshift/console/pull/11013) * [Bug 2049483](https://bugzilla.redhat.com/show_bug.cgi?id=2049483): Revert "fix annotations on updating workload" [#11002](https://github.com/openshift/console/pull/11002) * [Bug 2052674](https://bugzilla.redhat.com/show_bug.cgi?id=2052674): Remove a couple of extra spaces [#11021](https://github.com/openshift/console/pull/11021) * Migrate impersonateStateToProps [#10953](https://github.com/openshift/console/pull/10953) * [Bug 2052671](https://bugzilla.redhat.com/show_bug.cgi?id=2052671): chore(i18n): update translations [#11020](https://github.com/openshift/console/pull/11020) * [Bug 2052095](https://bugzilla.redhat.com/show_bug.cgi?id=2052095): Fix auth redirect loop caused by duplicate state-token cookie [#11014](https://github.com/openshift/console/pull/11014) * [Bug 2046498](https://bugzilla.redhat.com/show_bug.cgi?id=2046498): fix casing of project and application [#10999](https://github.com/openshift/console/pull/10999) * `valut` typo fixed [#11009](https://github.com/openshift/console/pull/11009) * [Bug 2046618](https://bugzilla.redhat.com/show_bug.cgi?id=2046618): Add started-by annotation to pipelines created with "Start last run" [#11005](https://github.com/openshift/console/pull/11005) * [Bug 2037628](https://bugzilla.redhat.com/show_bug.cgi?id=2037628): added test-id to kms flows [#11003](https://github.com/openshift/console/pull/11003) * createProject for non-admin users [#11000](https://github.com/openshift/console/pull/11000) * Expose useFlag as part of the Dynamic SDK [#10872](https://github.com/openshift/console/pull/10872) * [Bug 2050011](https://bugzilla.redhat.com/show_bug.cgi?id=2050011): Query Browser: Fix widths of timespan text input [#10996](https://github.com/openshift/console/pull/10996) * Monitoring: Comment to explain how Alertmanager links are handled [#10997](https://github.com/openshift/console/pull/10997) * default apiDiscovery in SDK [#10903](https://github.com/openshift/console/pull/10903) * [Bug 2046596](https://bugzilla.redhat.com/show_bug.cgi?id=2046596): Customized wizard PVC name [#10977](https://github.com/openshift/console/pull/10977) * [Bug 2014640](https://bugzilla.redhat.com/show_bug.cgi?id=2014640): Cannot change storage class of boot disk when creating VM [#10992](https://github.com/openshift/console/pull/10992) * [Bug 2041774](https://bugzilla.redhat.com/show_bug.cgi?id=2041774): defaulting to s2i if git type can't be figured out [#10966](https://github.com/openshift/console/pull/10966) * [Bug 2044421](https://bugzilla.redhat.com/show_bug.cgi?id=2044421): Allow topology list to select application group [#10988](https://github.com/openshift/console/pull/10988) * Migrate Status component to the SDK [#10805](https://github.com/openshift/console/pull/10805) * docs/helm: update documentation according reviews [#10889](https://github.com/openshift/console/pull/10889) * [Bug 2030530](https://bugzilla.redhat.com/show_bug.cgi?id=2030530): Remove quotation marks surrounding VM pwd [#10930](https://github.com/openshift/console/pull/10930) * [Bug 2007141](https://bugzilla.redhat.com/show_bug.cgi?id=2007141): pipeline-plugin scripts are updated [#10329](https://github.com/openshift/console/pull/10329) * [Bug 2048221](https://bugzilla.redhat.com/show_bug.cgi?id=2048221): Capitalization of titles first-word-only rule [#10980](https://github.com/openshift/console/pull/10980) * [Bug 2046601](https://bugzilla.redhat.com/show_bug.cgi?id=2046601): Dont assume its a pvc [#10949](https://github.com/openshift/console/pull/10949) * [Bug 2014420](https://bugzilla.redhat.com/show_bug.cgi?id=2014420): Remove depracated v2v resources from plugin config [#10954](https://github.com/openshift/console/pull/10954) * [Bug 2047277](https://bugzilla.redhat.com/show_bug.cgi?id=2047277): Add storage status to status card [#10951](https://github.com/openshift/console/pull/10951) * [Bug 2046591](https://bugzilla.redhat.com/show_bug.cgi?id=2046591): Added support for customized wizard - new templates [#10945](https://github.com/openshift/console/pull/10945) * [Bug 2006067](https://bugzilla.redhat.com/show_bug.cgi?id=2006067): Handle blank usernames in error message [#10782](https://github.com/openshift/console/pull/10782) * [Bug 2047310](https://bugzilla.redhat.com/show_bug.cgi?id=2047310): Add empty state to running VMs card [#10957](https://github.com/openshift/console/pull/10957) * [Bug 2046594](https://bugzilla.redhat.com/show_bug.cgi?id=2046594): "Requested template could not be found" while creating VM from user-created template [#10952](https://github.com/openshift/console/pull/10952) * [Bug 2033492](https://bugzilla.redhat.com/show_bug.cgi?id=2033492): Highlight moves from Template to VirtualMachines while open template wizard [#10941](https://github.com/openshift/console/pull/10941) * [CONSOLE-2999](https://issues.redhat.com/browse/CONSOLE-2999): Switch the OCP branding logo and title to Red Hat OpenShift logo and title [#10940](https://github.com/openshift/console/pull/10940) * [Bug 2044803](https://bugzilla.redhat.com/show_bug.cgi?id=2044803): buttons styles aligned [#10935](https://github.com/openshift/console/pull/10935) * [Bug 2048276](https://bugzilla.redhat.com/show_bug.cgi?id=2048276): test-cypress.sh script: Add curly brackets around nightly var [#10976](https://github.com/openshift/console/pull/10976) * [Bug 2022253](https://bugzilla.redhat.com/show_bug.cgi?id=2022253): fix web terminal resize layout issue [#10948](https://github.com/openshift/console/pull/10948) * Uncomment and edit the automation code for ODC-6361 [#10967](https://github.com/openshift/console/pull/10967) * [Bug 2039462](https://bugzilla.redhat.com/show_bug.cgi?id=2039462): fix width of dropdowns in the userpreferences applications tab [#10960](https://github.com/openshift/console/pull/10960) * [Bug 2038115](https://bugzilla.redhat.com/show_bug.cgi?id=2038115): Make namespace bar full width and sticky in console [#10856](https://github.com/openshift/console/pull/10856) * [Bug 2047320](https://bugzilla.redhat.com/show_bug.cgi?id=2047320): Fix that new route annotations doesn't work on Knative Services [#10955](https://github.com/openshift/console/pull/10955) * [Bug 2039277](https://bugzilla.redhat.com/show_bug.cgi?id=2039277): fix topology list view [#10883](https://github.com/openshift/console/pull/10883) * [ODC-5671](https://issues.redhat.com/browse/ODC-5671): Setup for nightly CI cypress runs [#10927](https://github.com/openshift/console/pull/10927) * Automation for Observe page features [#10566](https://github.com/openshift/console/pull/10566) * Add support for doc generation for Core API [#10431](https://github.com/openshift/console/pull/10431) * [Full changelog](https://github.com/openshift/console/compare/8e0f6c1e7986c5ae2a4d49846dc9b84d5d985571...71da8a5d97fff0e6c6bf78356ff21e12246b8266) ### [console-operator](https://github.com/openshift/console-operator/tree/488fe1393f90ed89881fb4963e957e3603e6d778) * [OCPBUGS-18424](https://issues.redhat.com/browse/OCPBUGS-18424): Add missing watch permission for helm-chartrepos-viewers [#804](https://github.com/openshift/console-operator/pull/804) * [OCPBUGS-11343](https://issues.redhat.com/browse/OCPBUGS-11343): Distinguish between route conditions and remove the old ones [#745](https://github.com/openshift/console-operator/pull/745) * [OCPBUGS-11969](https://issues.redhat.com/browse/OCPBUGS-11969): Changing field on any of routes in the openshift-console namespace wont trigger sync loop [#753](https://github.com/openshift/console-operator/pull/753) * [OCPBUGS-5518](https://issues.redhat.com/browse/OCPBUGS-5518): Deleting downloads deployment should not fail if already deleted [#715](https://github.com/openshift/console-operator/pull/715) * [Bug 1770297](https://bugzilla.redhat.com/show_bug.cgi?id=1770297): State that odo is comunity supported [#700](https://github.com/openshift/console-operator/pull/700) * [OCPBUGS-1790](https://issues.redhat.com/browse/OCPBUGS-1790): Retrieve user-defined Alertmanager services from shared configmap [#685](https://github.com/openshift/console-operator/pull/685) * [Bug 2117640](https://bugzilla.redhat.com/show_bug.cgi?id=2117640): Update permission for projecthelmchartrepositories with an aggregator role [#671](https://github.com/openshift/console-operator/pull/671) * [Bug 2102335](https://bugzilla.redhat.com/show_bug.cgi?id=2102335): Pass RELEASE_VERSION envar into the console pod [#679](https://github.com/openshift/console-operator/pull/679) * [Bug 2111037](https://bugzilla.redhat.com/show_bug.cgi?id=2111037): InfrastructureTopology must be driving console affinity rule creation [#666](https://github.com/openshift/console-operator/pull/666) * [CONSOLE-3063](https://issues.redhat.com/browse/CONSOLE-3063): PDB for console pods avoid too many replicas down [#655](https://github.com/openshift/console-operator/pull/655) * [CONSOLE-3162](https://issues.redhat.com/browse/CONSOLE-3162): Implement check for the new i18n annotation for dynamic plugins [#654](https://github.com/openshift/console-operator/pull/654) * [ODC-6670](https://issues.redhat.com/browse/ODC-6670): Sync consoleConfig telemetry annotations to console-config.yaml [#653](https://github.com/openshift/console-operator/pull/653) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): AUTH-133: manifests: comply to restricted pod security [#652](https://github.com/openshift/console-operator/pull/652) * [Bug 2067155](https://bugzilla.redhat.com/show_bug.cgi?id=2067155): Modify the operator display name to match it with the name displayed in operatorhub [#650](https://github.com/openshift/console-operator/pull/650) * [Bug 2075478](https://bugzilla.redhat.com/show_bug.cgi?id=2075478): Bump docs version to 4.11 [#648](https://github.com/openshift/console-operator/pull/648) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Bump `openshift/api` dependency to `04e1813ebb11` [#644](https://github.com/openshift/console-operator/pull/644) * [Bug 2046497](https://bugzilla.redhat.com/show_bug.cgi?id=2046497): Metrics e2e should not fail on first failed polling attempt [#645](https://github.com/openshift/console-operator/pull/645) * [Bug 2057696](https://bugzilla.redhat.com/show_bug.cgi?id=2057696): Console operator should not block installation/upgrade process when set to Removed state [#642](https://github.com/openshift/console-operator/pull/642) * CONSOLE 3070: Console-operator should pass infrastructure config's ControlPlaneToplogy to the console-config.yaml [#639](https://github.com/openshift/console-operator/pull/639) * [Bug 2046497](https://bugzilla.redhat.com/show_bug.cgi?id=2046497): Re-enable TestMetricsEndpoint e2e test case [#640](https://github.com/openshift/console-operator/pull/640) * [Bug 2048541](https://bugzilla.redhat.com/show_bug.cgi?id=2048541): ODF quickstart permissions check [#634](https://github.com/openshift/console-operator/pull/634) * Dockerfile.rhel7: add new Helm CRD, ProjectHelmChartRepository [#635](https://github.com/openshift/console-operator/pull/635) * [Full changelog](https://github.com/openshift/console-operator/compare/6128426994881d7426d18e1a64cbd3641c393a61...488fe1393f90ed89881fb4963e957e3603e6d778) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/1addd7c74290115ec4071de171f5069a17633153) * [OCPBUGS-20592](https://issues.redhat.com/browse/OCPBUGS-20592): build(deps): bump golang.org/x/net from 0.10.0 to 0.17.0 [backport 4.11] [#132](https://github.com/openshift/containernetworking-plugins/pull/132) * Updating ose-containernetworking-plugins images to be consistent with ART [#62](https://github.com/openshift/containernetworking-plugins/pull/62) * Check for duplicated sysctl keys [#61](https://github.com/openshift/containernetworking-plugins/pull/61) * Sync with upstream for win-overlay V2 support [#59](https://github.com/openshift/containernetworking-plugins/pull/59) * Updating ose-containernetworking-plugins images to be consistent with ART [#55](https://github.com/openshift/containernetworking-plugins/pull/55) * WIP: Tuning cni: adding interface level sysctls and sysctl whitelist [#56](https://github.com/openshift/containernetworking-plugins/pull/56) * Sync downstream with upstream v1.1.1 [#57](https://github.com/openshift/containernetworking-plugins/pull/57) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/3123ef8b0c773a55d0d5071c050919449d29fa90...1addd7c74290115ec4071de171f5069a17633153) ### [coredns](https://github.com/openshift/coredns/tree/e195fdd7d4c05474aeb2786a3909e00ba7be60b8) * [OCPBUGS-20359](https://issues.redhat.com/browse/OCPBUGS-20359): UPSTREAM: <carry>: openshift: Fix OCPBUGS-20359 [#99](https://github.com/openshift/coredns/pull/99) * [OCPBUGS-21009](https://issues.redhat.com/browse/OCPBUGS-21009): UPSTREAM: <carry>: openshift: Address CVE-2023-39325 [#104](https://github.com/openshift/coredns/pull/104) * [OCPBUGS-2901](https://issues.redhat.com/browse/OCPBUGS-2901): Remove bufsize hardcoding to 2048 on cache upstream refreshes. [#79](https://github.com/openshift/coredns/pull/79) * [Bug 2090827](https://bugzilla.redhat.com/show_bug.cgi?id=2090827): Merge 1.9.2 [#73](https://github.com/openshift/coredns/pull/73) * Added gcs278 to OWNERS [#71](https://github.com/openshift/coredns/pull/71) * [Full changelog](https://github.com/openshift/coredns/compare/6c0325145a4d108f110f2bcb23aa69ba352e70d1...e195fdd7d4c05474aeb2786a3909e00ba7be60b8) ### [csi-driver-manila, openstack-cinder-csi-driver, openstack-cloud-controller-manager](https://github.com/openshift/cloud-provider-openstack/tree/f985eeeb426c803a2a1d8e14e6b703ccc7114309) * [OCPBUGS-21216](https://issues.redhat.com/browse/OCPBUGS-21216): Upgrade dependencies [#243](https://github.com/openshift/cloud-provider-openstack/pull/243) * [OCPBUGS-20576](https://issues.redhat.com/browse/OCPBUGS-20576): [release-4.11] CARRY: Add DOWNSTREAM_OWNERS [#230](https://github.com/openshift/cloud-provider-openstack/pull/230) * [OCPBUGS-6684](https://issues.redhat.com/browse/OCPBUGS-6684): Merge https://github.com/kubernetes/cloud-provider-openstack:release-1.24 into release-4.11 [#176](https://github.com/openshift/cloud-provider-openstack/pull/176) * [OCPBUGS-6046](https://issues.redhat.com/browse/OCPBUGS-6046): Merge https://github.com/kubernetes/cloud-provider-openstack:release-1.24 into release-4.11 [#166](https://github.com/openshift/cloud-provider-openstack/pull/166) * [Bug 2086734](https://bugzilla.redhat.com/show_bug.cgi?id=2086734): Updating ose-openstack-cinder-csi-driver images to be consistent with ART [#121](https://github.com/openshift/cloud-provider-openstack/pull/121) * [Bug 2086734](https://bugzilla.redhat.com/show_bug.cgi?id=2086734): Updating csi-driver-manila images to be consistent with ART [#122](https://github.com/openshift/cloud-provider-openstack/pull/122) * [Bug 2086737](https://bugzilla.redhat.com/show_bug.cgi?id=2086737): Merge upstream commit '4c35d572' into downstream [#123](https://github.com/openshift/cloud-provider-openstack/pull/123) * Updating ose-openstack-cloud-controller-manager images to be consistent with ART [#120](https://github.com/openshift/cloud-provider-openstack/pull/120) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#119](https://github.com/openshift/cloud-provider-openstack/pull/119) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#118](https://github.com/openshift/cloud-provider-openstack/pull/118) * go.mod: Revert to Go v1.17 [#117](https://github.com/openshift/cloud-provider-openstack/pull/117) * Merge upstream [#115](https://github.com/openshift/cloud-provider-openstack/pull/115) * [Bug 2030733](https://bugzilla.redhat.com/show_bug.cgi?id=2030733): CARRY [occm] Bump k8s deps to 0.24.0-beta.0 for --node-ip fix [#114](https://github.com/openshift/cloud-provider-openstack/pull/114) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#112](https://github.com/openshift/cloud-provider-openstack/pull/112) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#111](https://github.com/openshift/cloud-provider-openstack/pull/111) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#110](https://github.com/openshift/cloud-provider-openstack/pull/110) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#109](https://github.com/openshift/cloud-provider-openstack/pull/109) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#108](https://github.com/openshift/cloud-provider-openstack/pull/108) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#107](https://github.com/openshift/cloud-provider-openstack/pull/107) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#106](https://github.com/openshift/cloud-provider-openstack/pull/106) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#105](https://github.com/openshift/cloud-provider-openstack/pull/105) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#104](https://github.com/openshift/cloud-provider-openstack/pull/104) * Updating csi-driver-manila images to be consistent with ART [#103](https://github.com/openshift/cloud-provider-openstack/pull/103) * Merge https://github.com/kubernetes/cloud-provider-openstack:master into master [#100](https://github.com/openshift/cloud-provider-openstack/pull/100) * Updating ose-openstack-cinder-csi-driver images to be consistent with ART [#102](https://github.com/openshift/cloud-provider-openstack/pull/102) * Updating ose-openstack-cloud-controller-manager images to be consistent with ART [#101](https://github.com/openshift/cloud-provider-openstack/pull/101) * shiftstack: Update OWNERS [#99](https://github.com/openshift/cloud-provider-openstack/pull/99) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/cb2949cac4331ee7f902be5eee9caae0258e2bd9...f985eeeb426c803a2a1d8e14e6b703ccc7114309) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/d3cb2f5c7f5fdbad0657b05dd11f8558a4c4abe7) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#200](https://github.com/openshift/csi-driver-manila-operator/pull/200) * [OCPBUGS-18782](https://issues.redhat.com/browse/OCPBUGS-18782): Don't cache OpenStack client [#203](https://github.com/openshift/csi-driver-manila-operator/pull/203) * [OCPBUGS-8067](https://issues.redhat.com/browse/OCPBUGS-8067): Fix SCC admission failure race during initial deployment [#188](https://github.com/openshift/csi-driver-manila-operator/pull/188) * [OCPBUGS-10605](https://issues.redhat.com/browse/OCPBUGS-10605): Bump go.mongodb.org/mongo-driver to v1.5.1 [#177](https://github.com/openshift/csi-driver-manila-operator/pull/177) * [OCPBUGS-7278](https://issues.redhat.com/browse/OCPBUGS-7278): Address CVE-2022-41717 [#168](https://github.com/openshift/csi-driver-manila-operator/pull/168) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy (cont) [#149](https://github.com/openshift/csi-driver-manila-operator/pull/149) * [Bug 2083153](https://bugzilla.redhat.com/show_bug.cgi?id=2083153): Fetch application credentials [#148](https://github.com/openshift/csi-driver-manila-operator/pull/148) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#145](https://github.com/openshift/csi-driver-manila-operator/pull/145) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#144](https://github.com/openshift/csi-driver-manila-operator/pull/144) * Updating csi-driver-manila-operator images to be consistent with ART [#143](https://github.com/openshift/csi-driver-manila-operator/pull/143) * [Bug 2074274](https://bugzilla.redhat.com/show_bug.cgi?id=2074274): Address CVE-2022-27191 [#141](https://github.com/openshift/csi-driver-manila-operator/pull/141) * [Bug 2067749](https://bugzilla.redhat.com/show_bug.cgi?id=2067749): Address CVE-2022-21698 [#140](https://github.com/openshift/csi-driver-manila-operator/pull/140) * ci: enable more tests [#138](https://github.com/openshift/csi-driver-manila-operator/pull/138) * Updating csi-driver-manila-operator images to be consistent with ART [#137](https://github.com/openshift/csi-driver-manila-operator/pull/137) * shiftstack: Update OWNERS [#135](https://github.com/openshift/csi-driver-manila-operator/pull/135) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/3b06768c823d54df549f488355ed348dff82a171...d3cb2f5c7f5fdbad0657b05dd11f8558a4c4abe7) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/f144bb436b5b13c5647983dcc4cb0bfcb730e25a) * Updating csi-driver-nfs images to be consistent with ART [#83](https://github.com/openshift/csi-driver-nfs/pull/83) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#82](https://github.com/openshift/csi-driver-nfs/pull/82) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#81](https://github.com/openshift/csi-driver-nfs/pull/81) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#80](https://github.com/openshift/csi-driver-nfs/pull/80) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#79](https://github.com/openshift/csi-driver-nfs/pull/79) * [Bug 2067750](https://bugzilla.redhat.com/show_bug.cgi?id=2067750): Merge github.com/kubernetes-csi/csi-driver-nfs into master [#78](https://github.com/openshift/csi-driver-nfs/pull/78) * Merge upstream into openshift/csi-driver-nfs [#77](https://github.com/openshift/csi-driver-nfs/pull/77) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#76](https://github.com/openshift/csi-driver-nfs/pull/76) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#75](https://github.com/openshift/csi-driver-nfs/pull/75) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#74](https://github.com/openshift/csi-driver-nfs/pull/74) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#73](https://github.com/openshift/csi-driver-nfs/pull/73) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#70](https://github.com/openshift/csi-driver-nfs/pull/70) * Updating csi-driver-nfs images to be consistent with ART [#72](https://github.com/openshift/csi-driver-nfs/pull/72) * shiftstack: Update OWNERS [#71](https://github.com/openshift/csi-driver-nfs/pull/71) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/e6b56647e363c623e4a1538f59d2cc60475c44ad...f144bb436b5b13c5647983dcc4cb0bfcb730e25a) ### [csi-driver-shared-resource](https://github.com/openshift/csi-driver-shared-resource/tree/0fbd7e5ef64b66e8ce8c2e66f3369b9b6b33c572) * [OCPBUGS-23123](https://issues.redhat.com/browse/OCPBUGS-23123): Should reference configmaps instead of secrets [#155](https://github.com/openshift/csi-driver-shared-resource/pull/155) * [OCPBUGS-20690](https://issues.redhat.com/browse/OCPBUGS-20690): bump golang.org/x/net to v0.17.0 [#149](https://github.com/openshift/csi-driver-shared-resource/pull/149) * [BUILD-478](https://issues.redhat.com/browse/BUILD-478): Validate resource admission smoke test [#105](https://github.com/openshift/csi-driver-shared-resource/pull/105) * [BUILD-392](https://issues.redhat.com/browse/BUILD-392): Shared Resources: Validate Resource Admission [#103](https://github.com/openshift/csi-driver-shared-resource/pull/103) * [BUILD-504](https://issues.redhat.com/browse/BUILD-504): Rebase k8s 1.24 [#104](https://github.com/openshift/csi-driver-shared-resource/pull/104) * change entrypoint for the webhook [#102](https://github.com/openshift/csi-driver-shared-resource/pull/102) * Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART [#99](https://github.com/openshift/csi-driver-shared-resource/pull/99) * [BUILD-469](https://issues.redhat.com/browse/BUILD-469): change cmd webhook package to cmd main package [#101](https://github.com/openshift/csi-driver-shared-resource/pull/101) * Add user coreydaley to approvers list [#100](https://github.com/openshift/csi-driver-shared-resource/pull/100) * more atomic writer related doc updates [#98](https://github.com/openshift/csi-driver-shared-resource/pull/98) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#97](https://github.com/openshift/csi-driver-shared-resource/pull/97) * add Tekton example, update/correction to README and existing example docs [#96](https://github.com/openshift/csi-driver-shared-resource/pull/96) * Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART [#95](https://github.com/openshift/csi-driver-shared-resource/pull/95) * [BUILD-469](https://issues.redhat.com/browse/BUILD-469): add webhook main entrypoint and dockerfile [#92](https://github.com/openshift/csi-driver-shared-resource/pull/92) * update test pod to alleviate PodSecurity warnings [#94](https://github.com/openshift/csi-driver-shared-resource/pull/94) * use k8s atomic writer for storage of secrets / configmaps [#93](https://github.com/openshift/csi-driver-shared-resource/pull/93) * [Bug 2067829](https://bugzilla.redhat.com/show_bug.cgi?id=2067829): bump(*): prometheus/client_golang [#91](https://github.com/openshift/csi-driver-shared-resource/pull/91) * remove use of 'hostpath' in names [#90](https://github.com/openshift/csi-driver-shared-resource/pull/90) * Data removed when permission removed [#89](https://github.com/openshift/csi-driver-shared-resource/pull/89) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#88](https://github.com/openshift/csi-driver-shared-resource/pull/88) * Simplify the must-gather dockerfile [#87](https://github.com/openshift/csi-driver-shared-resource/pull/87) * [Full changelog](https://github.com/openshift/csi-driver-shared-resource/compare/d06ff18b2ff23e5165638d6c3df42a2e1715b28f...0fbd7e5ef64b66e8ce8c2e66f3369b9b6b33c572) ### [csi-driver-shared-resource-operator](https://github.com/openshift/csi-driver-shared-resource-operator/tree/20c958611b6d62ef328fffdf316b04d8f604fa6e) * [OCPBUGS-20768](https://issues.redhat.com/browse/OCPBUGS-20768): bump golang.org/x/net to v0.17.0 [#89](https://github.com/openshift/csi-driver-shared-resource-operator/pull/89) * [BUILD-392](https://issues.redhat.com/browse/BUILD-392): webhook validation resource admission [#49](https://github.com/openshift/csi-driver-shared-resource-operator/pull/49) * [BUILD-505](https://issues.redhat.com/browse/BUILD-505): Rebase k8s 1.24 [#50](https://github.com/openshift/csi-driver-shared-resource-operator/pull/50) * [BUILD-405](https://issues.redhat.com/browse/BUILD-405): Install shared resource csi driver webhook alongside the s… [#45](https://github.com/openshift/csi-driver-shared-resource-operator/pull/45) * [Bug 2088533](https://bugzilla.redhat.com/show_bug.cgi?id=2088533): update openshift/api to master to pick up status subresource [#48](https://github.com/openshift/csi-driver-shared-resource-operator/pull/48) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#46](https://github.com/openshift/csi-driver-shared-resource-operator/pull/46) * Add user coreydaley to approvers list [#47](https://github.com/openshift/csi-driver-shared-resource-operator/pull/47) * [Bug 2067830](https://bugzilla.redhat.com/show_bug.cgi?id=2067830): bump(*): prometheus/client_golang [#43](https://github.com/openshift/csi-driver-shared-resource-operator/pull/43) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#40](https://github.com/openshift/csi-driver-shared-resource-operator/pull/40) * update registrar kubelet socket location to mirror what other CSI drivers do [#42](https://github.com/openshift/csi-driver-shared-resource-operator/pull/42) * Start using embed module for static assets [#41](https://github.com/openshift/csi-driver-shared-resource-operator/pull/41) * [Full changelog](https://github.com/openshift/csi-driver-shared-resource-operator/compare/662615b3427b57d8aafff6b982a7e4b34692eadc...20c958611b6d62ef328fffdf316b04d8f604fa6e) ### [csi-external-attacher](https://github.com/openshift/csi-external-attacher/tree/1e15b60167c2fc326dc81f3d23a9f47852f0f858) * [OCPBUGS-21119](https://issues.redhat.com/browse/OCPBUGS-21119): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#63](https://github.com/openshift/csi-external-attacher/pull/63) * [Bug 2097284](https://bugzilla.redhat.com/show_bug.cgi?id=2097284): Rebase to v3.5.0 for OCP 4.11 [#39](https://github.com/openshift/csi-external-attacher/pull/39) * Updating csi-attacher images to be consistent with ART [#38](https://github.com/openshift/csi-external-attacher/pull/38) * [Full changelog](https://github.com/openshift/csi-external-attacher/compare/27e71f2bb577200dc3cd87851989f0c950521eb8...1e15b60167c2fc326dc81f3d23a9f47852f0f858) ### [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner/tree/7729f3835e2a1a68953bb9f9265e2e89e7d04184) * [OCPBUGS-20727](https://issues.redhat.com/browse/OCPBUGS-20727): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#75](https://github.com/openshift/csi-external-provisioner/pull/75) * [Bug 2102782](https://bugzilla.redhat.com/show_bug.cgi?id=2102782): UPSTREAM: 2101343: fix: changed the csistoragecapacity check namespace [#53](https://github.com/openshift/csi-external-provisioner/pull/53) * [Bug 2097282](https://bugzilla.redhat.com/show_bug.cgi?id=2097282): Rebase to v3.2.0 for OCP 4.11 [#51](https://github.com/openshift/csi-external-provisioner/pull/51) * Updating csi-provisioner images to be consistent with ART [#50](https://github.com/openshift/csi-external-provisioner/pull/50) * [Full changelog](https://github.com/openshift/csi-external-provisioner/compare/31de1e19119e6b63cd9d52622f5b9d9df7e4c384...7729f3835e2a1a68953bb9f9265e2e89e7d04184) ### [csi-external-resizer](https://github.com/openshift/csi-external-resizer/tree/15ef7669ad93f1c70c6916d5e07f86cdd9fa167e) * [OCPBUGS-20865](https://issues.redhat.com/browse/OCPBUGS-20865): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#150](https://github.com/openshift/csi-external-resizer/pull/150) * [Bug 2097503](https://bugzilla.redhat.com/show_bug.cgi?id=2097503): Rebase external-resizer against v1.5 [#130](https://github.com/openshift/csi-external-resizer/pull/130) * Updating ose-csi-external-resizer images to be consistent with ART [#129](https://github.com/openshift/csi-external-resizer/pull/129) * Updating ose-csi-external-resizer images to be consistent with ART [#128](https://github.com/openshift/csi-external-resizer/pull/128) * [Full changelog](https://github.com/openshift/csi-external-resizer/compare/e5934091f8cc4a6ca58f3719ba4487a46b4252df...15ef7669ad93f1c70c6916d5e07f86cdd9fa167e) ### [csi-external-snapshotter, csi-snapshot-controller, csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter/tree/54d2f3dc5227bbaaf0c76e256dc49f4d58cfb33c) * [OCPBUGS-20971](https://issues.redhat.com/browse/OCPBUGS-20971): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#112](https://github.com/openshift/csi-external-snapshotter/pull/112) * [Bug 2097283](https://bugzilla.redhat.com/show_bug.cgi?id=2097283): Rebase to v6.0.1 for OCP 4.11 [#73](https://github.com/openshift/csi-external-snapshotter/pull/73) * Updating ose-csi-snapshot-controller images to be consistent with ART [#70](https://github.com/openshift/csi-external-snapshotter/pull/70) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#72](https://github.com/openshift/csi-external-snapshotter/pull/72) * Updating ose-csi-external-snapshotter images to be consistent with ART [#71](https://github.com/openshift/csi-external-snapshotter/pull/71) * Updating ose-csi-external-snapshotter images to be consistent with ART [#68](https://github.com/openshift/csi-external-snapshotter/pull/68) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#69](https://github.com/openshift/csi-external-snapshotter/pull/69) * Updating ose-csi-snapshot-controller images to be consistent with ART [#67](https://github.com/openshift/csi-external-snapshotter/pull/67) * [Full changelog](https://github.com/openshift/csi-external-snapshotter/compare/fe4a0a2f48fcc9069910773b32188597d899bdde...54d2f3dc5227bbaaf0c76e256dc49f4d58cfb33c) ### [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe/tree/d8ed786f0e3ee68f51c82701e0f1918614fc6c41) * [OCPBUGS-20625](https://issues.redhat.com/browse/OCPBUGS-20625): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#53](https://github.com/openshift/csi-livenessprobe/pull/53) * [OCPBUGS-13820](https://issues.redhat.com/browse/OCPBUGS-13820): Bump gRPC from 1.38.0 to 1.49.0 [#42](https://github.com/openshift/csi-livenessprobe/pull/42) * Updating csi-livenessprobe images to be consistent with ART [#32](https://github.com/openshift/csi-livenessprobe/pull/32) * Updating csi-livenessprobe images to be consistent with ART [#31](https://github.com/openshift/csi-livenessprobe/pull/31) * [Full changelog](https://github.com/openshift/csi-livenessprobe/compare/270d66c38fec64cb131b0c0e860960fc67aa71f5...d8ed786f0e3ee68f51c82701e0f1918614fc6c41) ### [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar/tree/d5100c1d61be6cdc84a55730a0d86ed6f177c85e) * [OCPBUGS-20657](https://issues.redhat.com/browse/OCPBUGS-20657): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#55](https://github.com/openshift/csi-node-driver-registrar/pull/55) * [Bug 2097286](https://bugzilla.redhat.com/show_bug.cgi?id=2097286): Rebase to v2.5.1 for OCP 4.12 [#36](https://github.com/openshift/csi-node-driver-registrar/pull/36) * Updating csi-node-driver-registrar images to be consistent with ART [#35](https://github.com/openshift/csi-node-driver-registrar/pull/35) * Updating csi-node-driver-registrar images to be consistent with ART [#34](https://github.com/openshift/csi-node-driver-registrar/pull/34) * [Full changelog](https://github.com/openshift/csi-node-driver-registrar/compare/bb0bd823c2212c6657e5835eb0015aab4e93839d...d5100c1d61be6cdc84a55730a0d86ed6f177c85e) ### [docker-builder](https://github.com/openshift/builder/tree/f3147a0c11eb471ee57a0bd4f56ddf06521726e1) * [OCPBUGS-23041](https://issues.redhat.com/browse/OCPBUGS-23041): Add -p flag to cp command to preserve timestamps [#373](https://github.com/openshift/builder/pull/373) * [OCPBUGS-20685](https://issues.redhat.com/browse/OCPBUGS-20685): [release-4.11] Bump golang.org/x/net [#365](https://github.com/openshift/builder/pull/365) * [OCPBUGS-15645](https://issues.redhat.com/browse/OCPBUGS-15645): Add the git-lfs package [#354](https://github.com/openshift/builder/pull/354) * [OCPBUGS-11401](https://issues.redhat.com/browse/OCPBUGS-11401): manage-dockerfile: use the original form of HEALTHCHECK [#339](https://github.com/openshift/builder/pull/339) * [Bug 2118375](https://bugzilla.redhat.com/show_bug.cgi?id=2118375): Add support for BUILDAH_QUIET environment variable [#308](https://github.com/openshift/builder/pull/308) * [BUILD-416](https://issues.redhat.com/browse/BUILD-416): Rebase k8s 1.24 [#299](https://github.com/openshift/builder/pull/299) * Update OWNERS file [#298](https://github.com/openshift/builder/pull/298) * Updating openshift-enterprise-builder images to be consistent with ART [#297](https://github.com/openshift/builder/pull/297) * [Bug 2075145](https://bugzilla.redhat.com/show_bug.cgi?id=2075145): Revert using --quiet with log levels below 2 [#296](https://github.com/openshift/builder/pull/296) * [Bug 2067775](https://bugzilla.redhat.com/show_bug.cgi?id=2067775): Update prometheus client_golang from 1.11.0 => 1.11.1 [#294](https://github.com/openshift/builder/pull/294) * main(): accept --loglevel as an alias for -v [#283](https://github.com/openshift/builder/pull/283) * [Bug 2071364](https://bugzilla.redhat.com/show_bug.cgi?id=2071364): invalid syntax when parsing empty BUILD_LOGLEVEL [#293](https://github.com/openshift/builder/pull/293) * [Bug 1996883](https://bugzilla.redhat.com/show_bug.cgi?id=1996883): Add --quiet option to buildah if log level is less than 2 [#288](https://github.com/openshift/builder/pull/288) * [BUILD-433](https://issues.redhat.com/browse/BUILD-433): use the right mappings when we don't need to set any [#291](https://github.com/openshift/builder/pull/291) * Updating openshift-enterprise-builder images to be consistent with ART [#284](https://github.com/openshift/builder/pull/284) * [Bug 2026063](https://bugzilla.redhat.com/show_bug.cgi?id=2026063): Update buildah to v1.24.2 [#282](https://github.com/openshift/builder/pull/282) * Add openshift goimports [#287](https://github.com/openshift/builder/pull/287) * [Full changelog](https://github.com/openshift/builder/compare/beffada427156a46d0e38e62d17843f9ee2ee5fd...f3147a0c11eb471ee57a0bd4f56ddf06521726e1) ### [docker-registry](https://github.com/openshift/image-registry/tree/431737b34e0ee40bab77b6d6f0e67e2c57fa7e08) * [OCPBUGS-18302](https://issues.redhat.com/browse/OCPBUGS-18302): bump docker-distribution [#384](https://github.com/openshift/image-registry/pull/384) * [OCPBUGS-11366](https://issues.redhat.com/browse/OCPBUGS-11366): bump docker-distribution [#367](https://github.com/openshift/image-registry/pull/367) * [OCPBUGS-9921](https://issues.redhat.com/browse/OCPBUGS-9921): bump aws-sdk-go [#364](https://github.com/openshift/image-registry/pull/364) * [OCPBUGS-1847](https://issues.redhat.com/browse/OCPBUGS-1847): bump aws-go-sdk, adding support for me-central-1 [#349](https://github.com/openshift/image-registry/pull/349) * [OCPBUGS-749](https://issues.redhat.com/browse/OCPBUGS-749): Keep OCI image configs when hard prune [#343](https://github.com/openshift/image-registry/pull/343) * Updating openshift-enterprise-registry images to be consistent with ART [#330](https://github.com/openshift/image-registry/pull/330) * [Bug 2070791](https://bugzilla.redhat.com/show_bug.cgi?id=2070791): Support authentication using gcp workload identity federation [#335](https://github.com/openshift/image-registry/pull/335) * [IR-232](https://issues.redhat.com/browse/IR-232): Bump k8s deps to 1.24.0 [#328](https://github.com/openshift/image-registry/pull/328) * [Bug 1923536](https://bugzilla.redhat.com/show_bug.cgi?id=1923536): forward http.StatusTooManyRequests to client [#329](https://github.com/openshift/image-registry/pull/329) * [Bug 2065552](https://bugzilla.redhat.com/show_bug.cgi?id=2065552): Bump aws-sdk-go to 1.44.4 [#326](https://github.com/openshift/image-registry/pull/326) * [Bug 2065689](https://bugzilla.redhat.com/show_bug.cgi?id=2065689): Revert "Support authentication using gcp workload identity federation" [#320](https://github.com/openshift/image-registry/pull/320) * [Bug 2060605](https://bugzilla.redhat.com/show_bug.cgi?id=2060605): Revert "Fixed incorrect access denied error logs" [#315](https://github.com/openshift/image-registry/pull/315) * [Bug 1976782](https://bugzilla.redhat.com/show_bug.cgi?id=1976782): Fix s3 driver for supporting ceph radosgw [#313](https://github.com/openshift/image-registry/pull/313) * [Bug 2014240](https://bugzilla.redhat.com/show_bug.cgi?id=2014240): Fix ICSP for whole mirror registries [#312](https://github.com/openshift/image-registry/pull/312) * Updating openshift-enterprise-registry images to be consistent with ART [#304](https://github.com/openshift/image-registry/pull/304) * [Bug 2014240](https://bugzilla.redhat.com/show_bug.cgi?id=2014240): Fix ICSP for subrepositories [#311](https://github.com/openshift/image-registry/pull/311) * [Bug 2049234](https://bugzilla.redhat.com/show_bug.cgi?id=2049234): Fix pull-through for images that have dots in their namespace [#307](https://github.com/openshift/image-registry/pull/307) * [Full changelog](https://github.com/openshift/image-registry/compare/1892f21a94df9ea88a3fdbfe4648d672c319038f...431737b34e0ee40bab77b6d6f0e67e2c57fa7e08) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/28589b0a149df1fa10b2759fff13b1885d0dfa14) * Updating the documentation on how to use DTK as a multi-stage image. [#80](https://github.com/openshift/driver-toolkit/pull/80) * Remove all kmods-via-containers references and dependencies [#79](https://github.com/openshift/driver-toolkit/pull/79) * Removing the 'make buildprep' from README.md. [#78](https://github.com/openshift/driver-toolkit/pull/78) * [OCPBUGS-1](https://issues.redhat.com/browse/OCPBUGS-1): Jira integration test PR 2 [#77](https://github.com/openshift/driver-toolkit/pull/77) * Updating README.md. [#76](https://github.com/openshift/driver-toolkit/pull/76) * OCPBUGS-1 Jira integration test PR [#75](https://github.com/openshift/driver-toolkit/pull/75) * Updating driver-toolkit images to be consistent with ART [#73](https://github.com/openshift/driver-toolkit/pull/73) * Bumping KVC to the last available commit. [#74](https://github.com/openshift/driver-toolkit/pull/74) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/fd4ea71c5456122d046ca9c188f3ab04fb7fd4d7...28589b0a149df1fa10b2759fff13b1885d0dfa14) ### [egress-router-cni](https://github.com/openshift/egress-router-cni/tree/fccaf1d9818617b8e6349d49cf9d7bbd7443c1e1) * [Bug 2034411](https://bugzilla.redhat.com/show_bug.cgi?id=2034411): Call ip6tables for v6 mode [#60](https://github.com/openshift/egress-router-cni/pull/60) * Updating egress-router-cni images to be consistent with ART [#59](https://github.com/openshift/egress-router-cni/pull/59) * Updating egress-router-cni images to be consistent with ART [#56](https://github.com/openshift/egress-router-cni/pull/56) * [Full changelog](https://github.com/openshift/egress-router-cni/compare/5c56bc8a0b27f560435f1564de0f3f440e68d889...fccaf1d9818617b8e6349d49cf9d7bbd7443c1e1) ### [etcd](https://github.com/openshift/etcd/tree/05004fbb607782fab6e12ce8f8147358582ffaa4) * [OCPBUGS-21173](https://issues.redhat.com/browse/OCPBUGS-21173): [4.11] Carrying fixes for CVE-2023-44487 [#229](https://github.com/openshift/etcd/pull/229) * [OCPBUGS-16791](https://issues.redhat.com/browse/OCPBUGS-16791): [4.11] Rebase openshift/etcd to 3.5.9 [#210](https://github.com/openshift/etcd/pull/210) * Update owners [#186](https://github.com/openshift/etcd/pull/186) * Updating ose-etcd images to be consistent with ART [#158](https://github.com/openshift/etcd/pull/158) * [OCPBUGS-5876](https://issues.redhat.com/browse/OCPBUGS-5876): UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… [#178](https://github.com/openshift/etcd/pull/178) * [OCPBUGS-3101](https://issues.redhat.com/browse/OCPBUGS-3101): Rebase openshift/etcd 4.11 onto v3.5.6 [#170](https://github.com/openshift/etcd/pull/170) * [OCPBUGS-947](https://issues.redhat.com/browse/OCPBUGS-947): Rebase openshift/etcd 4.11 onto 3.5.5 [#155](https://github.com/openshift/etcd/pull/155) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): increases cluster discovery time from 10s to 135s [#131](https://github.com/openshift/etcd/pull/131) * Revert "UPSTREAM: <carry>: increases cluster discovery time from 10s to 180s" [#130](https://github.com/openshift/etcd/pull/130) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): increases cluster discovery time from 10s to 180s [#129](https://github.com/openshift/etcd/pull/129) * Add new members to reviewers/approvers [#121](https://github.com/openshift/etcd/pull/121) * Remove MemberList patch [#120](https://github.com/openshift/etcd/pull/120) * 3.5.3 with history [#116](https://github.com/openshift/etcd/pull/116) * Contiguous to 3.5.2 [#109](https://github.com/openshift/etcd/pull/109) * [Full changelog](https://github.com/openshift/etcd/compare/c3be56f7c25b24881b06c3cc421abdde9ea8db06...05004fbb607782fab6e12ce8f8147358582ffaa4) ### [gcp-cloud-controller-manager](https://github.com/openshift/cloud-provider-gcp/tree/51f5a82f90d254e769d3cb18e761aff903777e18) * [OCPBUGS-21261](https://issues.redhat.com/browse/OCPBUGS-21261): Bump golang.org/x/net to v0.18.0 [#45](https://github.com/openshift/cloud-provider-gcp/pull/45) * Updating ose-gcp-cloud-controller-manager images to be consistent with ART [#14](https://github.com/openshift/cloud-provider-gcp/pull/14) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): UPSTREAM: 333: Bump providers to k8s v1.24 [#17](https://github.com/openshift/cloud-provider-gcp/pull/17) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Merge https://github.com/kubernetes/cloud-provider-gcp:master into master [#13](https://github.com/openshift/cloud-provider-gcp/pull/13) * Revert "UPSTREAM: 313: Bug 2065011: Reuse instance-groups for internal load balancers" [#16](https://github.com/openshift/cloud-provider-gcp/pull/16) * UPSTREAM: 313: Bug 2065011: Reuse instance-groups for internal load balancers [#15](https://github.com/openshift/cloud-provider-gcp/pull/15) * [Full changelog](https://github.com/openshift/cloud-provider-gcp/compare/4dc728d0e1af40893815149de016e5d6e5a7bacb...51f5a82f90d254e769d3cb18e761aff903777e18) ### [gcp-machine-controllers](https://github.com/openshift/machine-api-provider-gcp/tree/e7ff9c41c80344d8c9dcf56b17afac5fa2506826) * [OCPBUGS-20813](https://issues.redhat.com/browse/OCPBUGS-20813): Bump x/net package to v0.18.0 [#70](https://github.com/openshift/machine-api-provider-gcp/pull/70) * [OCPBUGS-4579](https://issues.redhat.com/browse/OCPBUGS-4579): refactor restartPolicyToBool function [#30](https://github.com/openshift/machine-api-provider-gcp/pull/30) * [OCPBUGS-4532](https://issues.redhat.com/browse/OCPBUGS-4532): Set sync period for Machine controller [#27](https://github.com/openshift/machine-api-provider-gcp/pull/27) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#12](https://github.com/openshift/machine-api-provider-gcp/pull/12) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#11](https://github.com/openshift/machine-api-provider-gcp/pull/11) * Bump machine-api-operator to 25e61c2 [#10](https://github.com/openshift/machine-api-provider-gcp/pull/10) * Bump google.golang.org/api [#9](https://github.com/openshift/machine-api-provider-gcp/pull/9) * [Bug 2067836](https://bugzilla.redhat.com/show_bug.cgi?id=2067836): Bump prometheus/client_golang [#7](https://github.com/openshift/machine-api-provider-gcp/pull/7) * Refactor provider status to use metav1.Condition [#8](https://github.com/openshift/machine-api-provider-gcp/pull/8) * [Full changelog](https://github.com/openshift/machine-api-provider-gcp/compare/a8d5b9445f4096b6f2c0fc38789cc065e8f736b4...e7ff9c41c80344d8c9dcf56b17afac5fa2506826) ### [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver/tree/86fbfaebf646bf4ef2cab54e70c770d8b29db0dc) * [OCPBUGS-20704](https://issues.redhat.com/browse/OCPBUGS-20704): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#48](https://github.com/openshift/gcp-pd-csi-driver/pull/48) * [OCPBUGS-11000](https://issues.redhat.com/browse/OCPBUGS-11000): UPSTREAM: 988: Simplify node backoff logic [#34](https://github.com/openshift/gcp-pd-csi-driver/pull/34) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#25](https://github.com/openshift/gcp-pd-csi-driver/pull/25) * [Bug 2072891](https://bugzilla.redhat.com/show_bug.cgi?id=2072891): Update to v1.5.1 [#24](https://github.com/openshift/gcp-pd-csi-driver/pull/24) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#22](https://github.com/openshift/gcp-pd-csi-driver/pull/22) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver/compare/19e9a57f04436cfc7df7d38bf5ba047d46982268...86fbfaebf646bf4ef2cab54e70c770d8b29db0dc) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/89605b14ce5e8e6c55f7eeee339c6a45186e7079) * [OCPBUGS-20788](https://issues.redhat.com/browse/OCPBUGS-20788): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#90](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/90) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#83](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/83) * Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART [#45](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/45) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#48](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/48) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): OCP should default to pd-ssd disk type on GCP [#47](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/47) * Set fsGroupPolicy in CSIDriver [#46](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/46) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/0e369dee1b74696a17faf9b9c28e391d6726bf52...89605b14ce5e8e6c55f7eeee339c6a45186e7079) ### [haproxy-router](https://github.com/openshift/router/tree/60fb6ea5d782172ea2dc3eadf74b90b5e9022cc8) * [OCPBUGS-21071](https://issues.redhat.com/browse/OCPBUGS-21071): Bump golang.org/x/net to v0.17.0 to address CVE-2023-39325 [#533](https://github.com/openshift/router/pull/533) * [OCPBUGS-18474](https://issues.redhat.com/browse/OCPBUGS-18474): haproxy/template: mitigate CVE-2023-40225 [#509](https://github.com/openshift/router/pull/509) * [OCPBUGS-14456](https://issues.redhat.com/browse/OCPBUGS-14456), [OCPBUGS-14457](https://issues.redhat.com/browse/OCPBUGS-14457): Handle mTLS CRLs, and fix accidental CRL duplication [#492](https://github.com/openshift/router/pull/492) * [Bug 2090829](https://bugzilla.redhat.com/show_bug.cgi?id=2090829): Bump OpenShift router to k8s 1.24 and go 1.18 [#395](https://github.com/openshift/router/pull/395) * Updating openshift-enterprise-haproxy-router images to be consistent with ART [#374](https://github.com/openshift/router/pull/374) * [Bug 2093454](https://bugzilla.redhat.com/show_bug.cgi?id=2093454): HAProxy: enable PROXY protocol for all listeners [#369](https://github.com/openshift/router/pull/369) * Updating ose-haproxy-router-base images to be consistent with ART [#373](https://github.com/openshift/router/pull/373) * [NE-882](https://issues.redhat.com/browse/NE-882): Support subdomain field when host is unset [#357](https://github.com/openshift/router/pull/357) * NE-822 Don't scale route weight on single service routes [#377](https://github.com/openshift/router/pull/377) * [Bug 2076297](https://bugzilla.redhat.com/show_bug.cgi?id=2076297): Fix gap in router's handling of graceful shutdowns. [#383](https://github.com/openshift/router/pull/383) * [Bug 2074304](https://bugzilla.redhat.com/show_bug.cgi?id=2074304): generateRouteHostRegexp: Escape blanks [#381](https://github.com/openshift/router/pull/381) * [Bug 2025624](https://bugzilla.redhat.com/show_bug.cgi?id=2025624): Fix certificate reloader [#379](https://github.com/openshift/router/pull/379) * BUG 2067778: Bump prometheus/client_golang to v1.11.1 [#378](https://github.com/openshift/router/pull/378) * [Bug 1928932](https://bugzilla.redhat.com/show_bug.cgi?id=1928932): Update deploy manifests to use stable apis [#349](https://github.com/openshift/router/pull/349) * Added gcs278 to OWNERS [#372](https://github.com/openshift/router/pull/372) * [Full changelog](https://github.com/openshift/router/compare/c1e7f4053c219d193ca908711255fe37fd931bc7...60fb6ea5d782172ea2dc3eadf74b90b5e9022cc8) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/2e1e13716c780e450a311e9a73bb90cf183f1e40) * [OCPBUGS-20122](https://issues.redhat.com/browse/OCPBUGS-20122): Make kubelet set alpha.kubernetes.io/provided-node-ip unconditionally [#1796](https://github.com/openshift/kubernetes/pull/1796) * [OCPBUGS-23289](https://issues.redhat.com/browse/OCPBUGS-23289): UPSTREAM: 121881: Use golang library instead of mklink [#1804](https://github.com/openshift/kubernetes/pull/1804) * [OCPBUGS-20112](https://issues.redhat.com/browse/OCPBUGS-20112): UPSTREAM: <carry>: Do not allow nodes to set forbidden openshift labels [#1748](https://github.com/openshift/kubernetes/pull/1748) * openshift-hack: Fix sporadic 141 errors in build-rpms [#1775](https://github.com/openshift/kubernetes/pull/1775) * [OCPBUGS-21471](https://issues.redhat.com/browse/OCPBUGS-21471): [release-4.11] UPSTREAM: <carry>: [CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 [#1761](https://github.com/openshift/kubernetes/pull/1761) * [OCPBUGS-18843](https://issues.redhat.com/browse/OCPBUGS-18843): UPSTREAM: <carry>: Force using host go always and use host libriaries [#1697](https://github.com/openshift/kubernetes/pull/1697) * [OCPBUGS-17189](https://issues.redhat.com/browse/OCPBUGS-17189): Update to Kubernetes 1.24.16 [#1672](https://github.com/openshift/kubernetes/pull/1672) * [OCPBUGS-8736](https://issues.redhat.com/browse/OCPBUGS-8736): UPSTREAM: <drop>: bump apiserver-library-go [#1627](https://github.com/openshift/kubernetes/pull/1627) * [OCPBUGS-15361](https://issues.redhat.com/browse/OCPBUGS-15361): Bump to k8s 1.24.15 [#1607](https://github.com/openshift/kubernetes/pull/1607) * [OCPBUGS-14746](https://issues.redhat.com/browse/OCPBUGS-14746): [release-4.11] UPSTREAM: 118383: bump cadvisor for upstream patch 3301 [#1606](https://github.com/openshift/kubernetes/pull/1606) * [OCPBUGS-13166](https://issues.redhat.com/browse/OCPBUGS-13166): Bump to k8s 1.24.14 [#1588](https://github.com/openshift/kubernetes/pull/1588) * [OCPBUGS-11314](https://issues.redhat.com/browse/OCPBUGS-11314): UPSTREAM: <carry>: Force using the go tooling from the system [#1536](https://github.com/openshift/kubernetes/pull/1536) * [OCPBUGS-11314](https://issues.redhat.com/browse/OCPBUGS-11314): Bump to k8s 1.24.12 [#1529](https://github.com/openshift/kubernetes/pull/1529) * [OCPBUGS-10215](https://issues.redhat.com/browse/OCPBUGS-10215): Fix mounted volume expansion tests [#1509](https://github.com/openshift/kubernetes/pull/1509) * [OCPBUGS-7079](https://issues.redhat.com/browse/OCPBUGS-7079): Bump to k8s 1.24.11 [#1500](https://github.com/openshift/kubernetes/pull/1500) * [OCPBUGS-6683](https://issues.redhat.com/browse/OCPBUGS-6683): add message about possibly working with restricted SCC [#1459](https://github.com/openshift/kubernetes/pull/1459) * [Bug 2117679](https://bugzilla.redhat.com/show_bug.cgi?id=2117679): UPSTREAM: 110888: feat: fix a bug thaat not all event be ignored by gc controller [#1343](https://github.com/openshift/kubernetes/pull/1343) * [OCPBUGS-1991](https://issues.redhat.com/browse/OCPBUGS-1991): UPSTREAM: 110939: don't quota events.k8s.io events by default [#1379](https://github.com/openshift/kubernetes/pull/1379) * [OCPBUGS-3174](https://issues.redhat.com/browse/OCPBUGS-3174): UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines [#1408](https://github.com/openshift/kubernetes/pull/1408) * [Bug 2099800](https://bugzilla.redhat.com/show_bug.cgi?id=2099800): bump to k8s 1.24.6 [#1381](https://github.com/openshift/kubernetes/pull/1381) * [OCPBUGS-1540](https://issues.redhat.com/browse/OCPBUGS-1540): UPSTREAM: 112267: aws: skip health rules if they are a subnet of the client rule [#1375](https://github.com/openshift/kubernetes/pull/1375) * [release 4.11] Bug 2117424: UPSTREAM: <carry>: Remove reserved CPUs from default set [#1351](https://github.com/openshift/kubernetes/pull/1351) * [Bug 2104344](https://bugzilla.redhat.com/show_bug.cgi?id=2104344): Fix resizing of ephemeral volumes [#1314](https://github.com/openshift/kubernetes/pull/1314) * [Bug 2109270](https://bugzilla.redhat.com/show_bug.cgi?id=2109270): UPSTREAM: 89885: Fix panic in openstack.InstanceExistsByProviderID() [#1332](https://github.com/openshift/kubernetes/pull/1332) * [Bug 2105117](https://bugzilla.redhat.com/show_bug.cgi?id=2105117): UPSTREAM: <carry>: update list of deprecated apis [#1313](https://github.com/openshift/kubernetes/pull/1313) * [Bug 2103075](https://bugzilla.redhat.com/show_bug.cgi?id=2103075): UPSTREAM: 110652: fix: --chunk-size with selector returns missing result [#1304](https://github.com/openshift/kubernetes/pull/1304) * [Bug 2063414](https://bugzilla.redhat.com/show_bug.cgi?id=2063414): UPSTREAM: 109441: kubelet: parseResolvConf: Handle "search ." [#1283](https://github.com/openshift/kubernetes/pull/1283) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): get SCC admission default securityContext.runAsNonRoot to true on positive UIDs [#1290](https://github.com/openshift/kubernetes/pull/1290) * [Bug 2078778](https://bugzilla.redhat.com/show_bug.cgi?id=2078778): UPSTREAM: 110408: apiserver: printers should use int64 [#1288](https://github.com/openshift/kubernetes/pull/1288) * [Bug 2089933](https://bugzilla.redhat.com/show_bug.cgi?id=2089933): Backport 110191 Re-enable Kubelet Pod Readiness Probes on Termination and Pod probes should be handled by pod worker [#1285](https://github.com/openshift/kubernetes/pull/1285) * [Bug 2087685](https://bugzilla.redhat.com/show_bug.cgi?id=2087685): Worker Latency Profiles: Config node object validation for extreme profile transition [#1287](https://github.com/openshift/kubernetes/pull/1287) * [Bug 2065749](https://bugzilla.redhat.com/show_bug.cgi?id=2065749): UPSTREAM: 109103: cpu/memory manager containerMap memory leak [#1229](https://github.com/openshift/kubernetes/pull/1229) * [Bug 2094954](https://bugzilla.redhat.com/show_bug.cgi?id=2094954): UPSTREAM: 110258: Fix pod eviction ip [#1282](https://github.com/openshift/kubernetes/pull/1282) * UPSTREAM: <carry>: provide unique reason for pod probe event during t… [#1281](https://github.com/openshift/kubernetes/pull/1281) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): UPSTREAM: 108284: fix: exclude non-ready nodes and deleted nodes from azure load balancers [#1261](https://github.com/openshift/kubernetes/pull/1261) * Fixes probe readiness shutdowns [#1269](https://github.com/openshift/kubernetes/pull/1269) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): update kube to v1.24.0 [#1252](https://github.com/openshift/kubernetes/pull/1252) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): UPSTREAM: <carry>: e2e-framework: don't autosync PodSecurity labels [#1268](https://github.com/openshift/kubernetes/pull/1268) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Identify if there are multiple schedulers running [#1251](https://github.com/openshift/kubernetes/pull/1251) * [Bug 2075621](https://bugzilla.redhat.com/show_bug.cgi?id=2075621): UPSTREAM: 109487: Disable JobTrackingWithFinalizers due to unresolved bug [#1243](https://github.com/openshift/kubernetes/pull/1243) * [Bug 1999325](https://bugzilla.redhat.com/show_bug.cgi?id=1999325): Backport 107821 and 107831 [#1225](https://github.com/openshift/kubernetes/pull/1225) * UPSTREAM: 109283: test/e2e/*: use restricted policy by default, default existing tests to privileged [#1238](https://github.com/openshift/kubernetes/pull/1238) * [Bug 2051985](https://bugzilla.redhat.com/show_bug.cgi?id=2051985): UPSTREAM: <carry>: An APIRequestCount without dots in the name can cause a panic [#1172](https://github.com/openshift/kubernetes/pull/1172) * [Bug 2066865](https://bugzilla.redhat.com/show_bug.cgi?id=2066865): Skip azure topology tests [#1230](https://github.com/openshift/kubernetes/pull/1230) * UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy [#1227](https://github.com/openshift/kubernetes/pull/1227) * Revert "UPSTREAM: <carry>: Unskip OCP SDN related tests" [#1228](https://github.com/openshift/kubernetes/pull/1228) * bump apiserver-library-go [#1218](https://github.com/openshift/kubernetes/pull/1218) * UPSTREAM: <carry>: update list of deprecated apis [#1204](https://github.com/openshift/kubernetes/pull/1204) * UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy [#1226](https://github.com/openshift/kubernetes/pull/1226) * [Bug 1957668](https://bugzilla.redhat.com/show_bug.cgi?id=1957668): UPSTREAM: <carry>: use console-public config map for console redirect [#1110](https://github.com/openshift/kubernetes/pull/1110) * UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy [#1212](https://github.com/openshift/kubernetes/pull/1212) * [Bug 2022507](https://bugzilla.redhat.com/show_bug.cgi?id=2022507): Backport 108366: OutofCpu Fixes [#1199](https://github.com/openshift/kubernetes/pull/1199) * [Bug 1945329](https://bugzilla.redhat.com/show_bug.cgi?id=1945329): enable should drop INVALID conntrack entries test [#897](https://github.com/openshift/kubernetes/pull/897) * [Bug 2063938](https://bugzilla.redhat.com/show_bug.cgi?id=2063938): UPSTREAM: <carry>: use hardcoded rest mapper from library-go [#1215](https://github.com/openshift/kubernetes/pull/1215) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Generate event when cache update is failed [#1210](https://github.com/openshift/kubernetes/pull/1210) * UPSTREAM:<carry>:Unskip OCP SDN related tests [#1201](https://github.com/openshift/kubernetes/pull/1201) * [Bug 2034958](https://bugzilla.redhat.com/show_bug.cgi?id=2034958): enable "Conntrack should be able to preserve UDP traffic when initial… [#1197](https://github.com/openshift/kubernetes/pull/1197) * UPSTREAM: 106454: SQUASH: test/e2e: let e2e tests specify pod security admiss… [#1128](https://github.com/openshift/kubernetes/pull/1128) * [Bug 2040715](https://bugzilla.redhat.com/show_bug.cgi?id=2040715): UPSTREAM: 108284: fix: exclude non-ready nodes from azure load balancer [#1190](https://github.com/openshift/kubernetes/pull/1190) * UPSTREAM: <drop>: zero-diff to pick up tags for versions [#1193](https://github.com/openshift/kubernetes/pull/1193) * [Bug 2040715](https://bugzilla.redhat.com/show_bug.cgi?id=2040715): upstream 108149: do not return early in the node informer when there is no change [#1184](https://github.com/openshift/kubernetes/pull/1184) * [Bug 2040533](https://bugzilla.redhat.com/show_bug.cgi?id=2040533): UPSTREAM: <drop>: Ignore container notfound error while getPodstatuses [#1176](https://github.com/openshift/kubernetes/pull/1176) * [Bug 2040533](https://bugzilla.redhat.com/show_bug.cgi?id=2040533): UPSTREAM: 107900: Pods that have terminated before starting should not block startup [#1157](https://github.com/openshift/kubernetes/pull/1157) * UPSTREAM: 107847: service REST: Call Decorator(old) on update path [#1156](https://github.com/openshift/kubernetes/pull/1156) * [Bug 1979671](https://bugzilla.redhat.com/show_bug.cgi?id=1979671): UPSTREAM <carry>: Remove pod warning annotation when workload partitioning is disabled [#977](https://github.com/openshift/kubernetes/pull/977) * [Bug 2044824](https://bugzilla.redhat.com/show_bug.cgi?id=2044824): UPSTREAM: 107786: Ensure the execHostnameTest() compares hostnames [#1153](https://github.com/openshift/kubernetes/pull/1153) * [Full changelog](https://github.com/openshift/kubernetes/compare/16bcd69799fb6940554b1110a7d229f4a24d6632...2e1e13716c780e450a311e9a73bb90cf183f1e40) ### [hypershift](https://github.com/openshift/hypershift/tree/da0a576c1cdd3f3d4bbd7b3540bf6ac843fa4483) * [OCPBUGS-11608](https://issues.redhat.com/browse/OCPBUGS-11608): properly reconcile with user specified changes for in proxy configuration [#2396](https://github.com/openshift/hypershift/pull/2396) * install: add flag to wait for HyperShift operator rollout [#2370](https://github.com/openshift/hypershift/pull/2370) * OCPBUGS-10823 ensure well known public domains do not get proxied on image imports [#2352](https://github.com/openshift/hypershift/pull/2352) * cherry-pick #2006 [#2028](https://github.com/openshift/hypershift/pull/2028) * Bug HOSTEDCP-604: Don't store machine payload in token secret for replace node pools (#1873) [#1880](https://github.com/openshift/hypershift/pull/1880) * Add missing rbac for authentication reader [#1822](https://github.com/openshift/hypershift/pull/1822) * update OLM catalogs to 4.11 [#1786](https://github.com/openshift/hypershift/pull/1786) * Bug OCPBUGS-1367: CNO: Handle long OVN SBDB route hostnames [#1747](https://github.com/openshift/hypershift/pull/1747) * Add rbac so route-to-ingress controller can do its leader election [#1728](https://github.com/openshift/hypershift/pull/1728) * fix(oauth): Do not proxy IBM Cloud IAM endpoints [#1723](https://github.com/openshift/hypershift/pull/1723) * Ingress endpoint [#1667](https://github.com/openshift/hypershift/pull/1667) * Self image lookup: Retry on empty string [#1695](https://github.com/openshift/hypershift/pull/1695) * Forward from main [#1655](https://github.com/openshift/hypershift/pull/1655) * Updating hypershift images to be consistent with ART [#1576](https://github.com/openshift/hypershift/pull/1576) * Optional RestoreSnapshotURL should have omitempty [#1585](https://github.com/openshift/hypershift/pull/1585) * Fast-Forward from main [#1536](https://github.com/openshift/hypershift/pull/1536) * Fast-Forward from main [#1494](https://github.com/openshift/hypershift/pull/1494) * Add PowerVS Ingress Operator Changes [#1458](https://github.com/openshift/hypershift/pull/1458) * Improve user experience of HostedCluster configuration API [#1463](https://github.com/openshift/hypershift/pull/1463) * Updated secret permissions to conform to kubernetes CIS benchmark [#1477](https://github.com/openshift/hypershift/pull/1477) * The ValidateReleaseImage was returning an error stating it could not find the pull-secret and blocked HC [#1472](https://github.com/openshift/hypershift/pull/1472) * Reduce HyperShift operator metrics cardinality [#1467](https://github.com/openshift/hypershift/pull/1467) * docs: refactor agent documentation [#1466](https://github.com/openshift/hypershift/pull/1466) * inplaceupgrader: switch to using payload MCO image [#1459](https://github.com/openshift/hypershift/pull/1459) * Drop kas call in agent ReconcileCAPIInfraCR and fail if no ign [#1469](https://github.com/openshift/hypershift/pull/1469) * Add ValidReleaseImage condition to HostedCluster [#1296](https://github.com/openshift/hypershift/pull/1296) * Add missing control plane prometheus rules [#1406](https://github.com/openshift/hypershift/pull/1406) * Use right conditions reason for inplace upgrade [#1464](https://github.com/openshift/hypershift/pull/1464) * Ensure cache is set during token rotation before reconciling [#1460](https://github.com/openshift/hypershift/pull/1460) * [Bug 2089224](https://bugzilla.redhat.com/show_bug.cgi?id=2089224): Remove monitoring config reconciliation [#1420](https://github.com/openshift/hypershift/pull/1420) * add allowed CIDR blocks to HostedCluster API [#1429](https://github.com/openshift/hypershift/pull/1429) * nat gateway: check for invalid eip [#1457](https://github.com/openshift/hypershift/pull/1457) * Add PowerVS Cloud Controller Manager [#1422](https://github.com/openshift/hypershift/pull/1422) * Fix the private router to work on a 4.11 mgmt cluster [#1453](https://github.com/openshift/hypershift/pull/1453) * E2E: Add TestNodepoolMachineconfigGetsRolledout [#1339](https://github.com/openshift/hypershift/pull/1339) * e2e: notice FailedScheduling or Preempted events [#1332](https://github.com/openshift/hypershift/pull/1332) * Trim `docker-pullable://` prefix when reading imageID from container status [#1449](https://github.com/openshift/hypershift/pull/1449) * Set snapshot-count on etcd to limit memory usage variability [#1448](https://github.com/openshift/hypershift/pull/1448) * Add memory rss recording rule [#1447](https://github.com/openshift/hypershift/pull/1447) * Manage ignition server from CPO [#1446](https://github.com/openshift/hypershift/pull/1446) * Add recording rule for cpu requests [#1445](https://github.com/openshift/hypershift/pull/1445) * Adjust memory requests to align with PerfScale recommendations [#1444](https://github.com/openshift/hypershift/pull/1444) * Enable passing -run parameter in ci-test-e2e [#1441](https://github.com/openshift/hypershift/pull/1441) * Add recording rule for component memory requests [#1442](https://github.com/openshift/hypershift/pull/1442) * add api-server-address flags to kubevirt and agent cluster create [#1440](https://github.com/openshift/hypershift/pull/1440) * CNO operands use private APIServer address when HCP is private [#1433](https://github.com/openshift/hypershift/pull/1433) * Remove unused kubevirt specific e2e test [#1436](https://github.com/openshift/hypershift/pull/1436) * Fix the e2e-kubevirt-gcp-ovn CI lane [#1434](https://github.com/openshift/hypershift/pull/1434) * Increase MHC nodeStartupTimeout [#1435](https://github.com/openshift/hypershift/pull/1435) * aws private link controller: improve error messages [#1432](https://github.com/openshift/hypershift/pull/1432) * Use git commit as version in HyperShift binaries [#1431](https://github.com/openshift/hypershift/pull/1431) * Scrape all KAS metrics inside guest cluster [#1421](https://github.com/openshift/hypershift/pull/1421) * Nodepool: Insert the worker role label [#1428](https://github.com/openshift/hypershift/pull/1428) * KCM: Set leader election args [#1427](https://github.com/openshift/hypershift/pull/1427) * Tests: Enable junit [#1411](https://github.com/openshift/hypershift/pull/1411) * Set autoscaler CAPI group explicitely [#1425](https://github.com/openshift/hypershift/pull/1425) * Add local timeouts for e2e tests [#1424](https://github.com/openshift/hypershift/pull/1424) * hack/publish-ocp.sh fix cut syntax [#1417](https://github.com/openshift/hypershift/pull/1417) * KAS: Stop setting removed --enable-swagger-ui flag [#1418](https://github.com/openshift/hypershift/pull/1418) * Added PowerVS Cluster Create & Destroy [#1381](https://github.com/openshift/hypershift/pull/1381) * Ensure that the private router pod uses the HC's pull secret [#1413](https://github.com/openshift/hypershift/pull/1413) * Loopdetector: Give some more leeway [#1412](https://github.com/openshift/hypershift/pull/1412) * adopt existing immutable selectors to prevent errors reconciling components from roks toolkit clusters [#1403](https://github.com/openshift/hypershift/pull/1403) * Fix(cpo): Propagate TLS security profile config to kube-controller-manager and kube-scheduler [#1388](https://github.com/openshift/hypershift/pull/1388) * Allow nodepool deletion when hcluster is gone [#1408](https://github.com/openshift/hypershift/pull/1408) * Operator image lookup: Use sha256 rather than tag [#1303](https://github.com/openshift/hypershift/pull/1303) * e2e: increase budget to only catch extreme situations [#1407](https://github.com/openshift/hypershift/pull/1407) * Change infrastructureAvailabilityPolicy default to single replica [#1405](https://github.com/openshift/hypershift/pull/1405) * feat(cpo): adhere to upgrade order from kube version skew policy [#1322](https://github.com/openshift/hypershift/pull/1322) * Make kubevirt compatible with generic e2e tests [#1377](https://github.com/openshift/hypershift/pull/1377) * Add allowed principals to service endpoints [#1402](https://github.com/openshift/hypershift/pull/1402) * Ignition server: Use https health check if possible [#1392](https://github.com/openshift/hypershift/pull/1392) * Nodepool render: Avoid including a logline [#1401](https://github.com/openshift/hypershift/pull/1401) * Replace router shard with private router in control plane namespace [#1398](https://github.com/openshift/hypershift/pull/1398) * Add inplace upgrader controller to hcco [#1382](https://github.com/openshift/hypershift/pull/1382) * Expose HostedCluster and NodePool metrics in HyperShift operator [#1376](https://github.com/openshift/hypershift/pull/1376) * HAProxy ignition config: Use nodepool release image [#1394](https://github.com/openshift/hypershift/pull/1394) * Change ignition server http code if token not found. [#1399](https://github.com/openshift/hypershift/pull/1399) * AWS: Deploy Pod Identity Webhook [#1351](https://github.com/openshift/hypershift/pull/1351) * Add docs section for goals and design invariants [#1396](https://github.com/openshift/hypershift/pull/1396) * Add sane defaults for InfrastructureAvailabilityPolicy and ControllerAvailabilityPolicy [#1395](https://github.com/openshift/hypershift/pull/1395) * Bump kube depedencies and controller-runtime to 1.24 level [#1393](https://github.com/openshift/hypershift/pull/1393) * Delete endpoint connections before deleting endpoint services [#1390](https://github.com/openshift/hypershift/pull/1390) * Add more resources to hypershift dump cmd [#1389](https://github.com/openshift/hypershift/pull/1389) * test: adjust HO mutate budget [#1385](https://github.com/openshift/hypershift/pull/1385) * e2e: Increase parallel test limit [#1384](https://github.com/openshift/hypershift/pull/1384) * Update KubeVirt Doc to indicate RHCOS is no longer a required cli arg [#1374](https://github.com/openshift/hypershift/pull/1374) * Tag endpoint services with the mgmt cluster infra ID [#1380](https://github.com/openshift/hypershift/pull/1380) * fix Makefile [#1375](https://github.com/openshift/hypershift/pull/1375) * Add IBMCloud PowerVS infra create & destroy [#1280](https://github.com/openshift/hypershift/pull/1280) * Prevent update of a MachineDeployment after it is initially created [#1373](https://github.com/openshift/hypershift/pull/1373) * Make the binaries contain the commit version [#1324](https://github.com/openshift/hypershift/pull/1324) * Make CI master nodes schedulable for cnv VMs [#1369](https://github.com/openshift/hypershift/pull/1369) * test: update API budget [#1372](https://github.com/openshift/hypershift/pull/1372) * Update loopdetector to not get tripped by inplace upgrade [#1370](https://github.com/openshift/hypershift/pull/1370) * add ci-test-e2e target to Makefile [#1368](https://github.com/openshift/hypershift/pull/1368) * Add resource requests to cluster-api-provider-kubevirt container [#1366](https://github.com/openshift/hypershift/pull/1366) * fix(cpo): Scope down secrets access for olm collect profiles cj [#1349](https://github.com/openshift/hypershift/pull/1349) * Add image-content-sources option to create cluster CLI [#1355](https://github.com/openshift/hypershift/pull/1355) * Add a sidecar to the KAS that tails the audit log [#1308](https://github.com/openshift/hypershift/pull/1308) * Autodetect KubeVirt disk image using release payload [#1352](https://github.com/openshift/hypershift/pull/1352) * Refactor e2e test common cleanup [#1345](https://github.com/openshift/hypershift/pull/1345) * Upgrade test: Stop verifying the nodecount [#1367](https://github.com/openshift/hypershift/pull/1367) * Set shutdown params to improve graceful shutdown [#1365](https://github.com/openshift/hypershift/pull/1365) * Nodepool in-place upgrade: Reduce api requests [#1358](https://github.com/openshift/hypershift/pull/1358) * Etcd: Keep etcd_server_leader_changes_seen_total metric [#1363](https://github.com/openshift/hypershift/pull/1363) * Add hostedClusterAvailable check for in place upgrades [#1340](https://github.com/openshift/hypershift/pull/1340) * move to ga apis for all components now that management clusters at minimum release boundary [#1350](https://github.com/openshift/hypershift/pull/1350) * E2E: Stop hardcoding network type [#1331](https://github.com/openshift/hypershift/pull/1331) * configure cipher suites to prevent using medium strength ssl ciphers [#1357](https://github.com/openshift/hypershift/pull/1357) * fix the region parameter in app-sre templates [#1356](https://github.com/openshift/hypershift/pull/1356) * Revise and simplify NodePool's KubeVirt platform API [#1314](https://github.com/openshift/hypershift/pull/1314) * fix panic due to race on hosted API cache start [#1348](https://github.com/openshift/hypershift/pull/1348) * Change webhook to implement webhook.CustomValidator [#1346](https://github.com/openshift/hypershift/pull/1346) * Add Metrics Set for Telemetry metrics [#1294](https://github.com/openshift/hypershift/pull/1294) * Cancel context to kill watch guest cluster subroutines [#1341](https://github.com/openshift/hypershift/pull/1341) * Add docs for versioning support [#1343](https://github.com/openshift/hypershift/pull/1343) * Dump: Dump namespaces, rbac and SCCs of hosted cluster [#1336](https://github.com/openshift/hypershift/pull/1336) * create infra aws: set minimum on private zone SOA records [#1337](https://github.com/openshift/hypershift/pull/1337) * Enforce pull policy for all capi providers [#1334](https://github.com/openshift/hypershift/pull/1334) * Add test for NodePools in place upgrades [#1290](https://github.com/openshift/hypershift/pull/1290) * adjust CPO resource requests [#1330](https://github.com/openshift/hypershift/pull/1330) * Fix webhook to allow apiserver port defaulting and add tests [#1313](https://github.com/openshift/hypershift/pull/1313) * Add OAuthURL to HostedCluster status [#1320](https://github.com/openshift/hypershift/pull/1320) * e2e: log the error when failing to connect to the guest KAS [#1318](https://github.com/openshift/hypershift/pull/1318) * Export `ign_server_payload_generation_seconds` metric and add e2e budget [#1316](https://github.com/openshift/hypershift/pull/1316) * Rename nodepool.spec.nodeCount to replicas [#1205](https://github.com/openshift/hypershift/pull/1205) * E2E: Allow configuring a SSH key [#1329](https://github.com/openshift/hypershift/pull/1329) * Reduce KubeVirt e2e test flakiness [#1321](https://github.com/openshift/hypershift/pull/1321) * Omit MachineConfig and MachineConfigPool CRDs from release payload [#1295](https://github.com/openshift/hypershift/pull/1295) * Retry NAT Gateway creation [#1328](https://github.com/openshift/hypershift/pull/1328) * Add retries and debug output to journal dump [#1327](https://github.com/openshift/hypershift/pull/1327) * Use apiserver host/port from InfraStatus in reconciling Kube API Server [#1319](https://github.com/openshift/hypershift/pull/1319) * Ensure that everything uses imagePullPolicy IfNotPresent for resiliency [#1304](https://github.com/openshift/hypershift/pull/1304) * Ignition server: Actually use workdir [#1312](https://github.com/openshift/hypershift/pull/1312) * disable reconcile of registry config in IBMCloud deployments [#1305](https://github.com/openshift/hypershift/pull/1305) * e2e: report elapsed time for each test step [#1307](https://github.com/openshift/hypershift/pull/1307) * Use forked processes instead of pods to generate ignition payload [#1214](https://github.com/openshift/hypershift/pull/1214) * Updating hypershift images to be consistent with ART [#1288](https://github.com/openshift/hypershift/pull/1288) * Update KubeVirt platform to work with OVNKubernetes [#1277](https://github.com/openshift/hypershift/pull/1277) * Azure: Add missing csi driver secret [#1302](https://github.com/openshift/hypershift/pull/1302) * Add missing resource requests for Azure CAPI provider [#1300](https://github.com/openshift/hypershift/pull/1300) * Allow running e2e tests for azure [#1299](https://github.com/openshift/hypershift/pull/1299) * Sync KAS PSP configuration with what kas operator does [#1292](https://github.com/openshift/hypershift/pull/1292) * feat(cpo): Disable PodSecurity for 4.10 [#1287](https://github.com/openshift/hypershift/pull/1287) * Installer assets for CAPIBM used by PowerVS [#1279](https://github.com/openshift/hypershift/pull/1279) * Use go 1.18 for CI builds [#1244](https://github.com/openshift/hypershift/pull/1244) * Drop outdated TODO for machine configs [#1285](https://github.com/openshift/hypershift/pull/1285) * Configure the CNO to proxy the apiserver for public clusters [#1283](https://github.com/openshift/hypershift/pull/1283) * contrib: admission-tracer for API call tracing [#1281](https://github.com/openshift/hypershift/pull/1281) * avoid no-op status updates to AWSEndpointServices [#1276](https://github.com/openshift/hypershift/pull/1276) * inplace upgrade: add initial upgrade logic [#1258](https://github.com/openshift/hypershift/pull/1258) * Begin using KubeVirt as the infrastructure platform instead of None [#1282](https://github.com/openshift/hypershift/pull/1282) * Add cleanup manifest for existing CNO [#1278](https://github.com/openshift/hypershift/pull/1278) * Introduce IBMPowerVS platform [#1255](https://github.com/openshift/hypershift/pull/1255) * e2e: update HO budgets [#1274](https://github.com/openshift/hypershift/pull/1274) * konnectivity ds: Tolerate all taints [#1272](https://github.com/openshift/hypershift/pull/1272) * Add tests for network defaulting [#1273](https://github.com/openshift/hypershift/pull/1273) * Use '--' for flags in kms token minter container [#1270](https://github.com/openshift/hypershift/pull/1270) * Default network to SDN if minor < 11 [#1271](https://github.com/openshift/hypershift/pull/1271) * Konnektivity: Set proxy env vars [#1267](https://github.com/openshift/hypershift/pull/1267) * Use OVNKubernetes as default network type [#1268](https://github.com/openshift/hypershift/pull/1268) * e2e: fix early exit on destroy infra aws [#1269](https://github.com/openshift/hypershift/pull/1269) * Move CNO into management cluster / add OVN to types [#1253](https://github.com/openshift/hypershift/pull/1253) * e2e: add AWS cluster create test [#1260](https://github.com/openshift/hypershift/pull/1260) * Set network status if empty [#1266](https://github.com/openshift/hypershift/pull/1266) * exclude InfraID from immutability check [#1264](https://github.com/openshift/hypershift/pull/1264) * e2e: Add a nodepool upgrade test [#1257](https://github.com/openshift/hypershift/pull/1257) * Expose a service account signing key in the API [#1259](https://github.com/openshift/hypershift/pull/1259) * destroy infra aws: delete network LBs and reduce dependency error noise [#1263](https://github.com/openshift/hypershift/pull/1263) * add update validation logic to HostedCluster webhook [#1262](https://github.com/openshift/hypershift/pull/1262) * reconcile oauth serving cert rbac to allow oauth proxies in the openshift-monitoring namespace to work [#1256](https://github.com/openshift/hypershift/pull/1256) * Add validating webhook for HostedClusters [#1241](https://github.com/openshift/hypershift/pull/1241) * ensure release image annotation added to deployment template metadata to enable proper detection in IBM Cloud deployment process [#1251](https://github.com/openshift/hypershift/pull/1251) * Fix kubernetes.default for public clusters with proxy [#1249](https://github.com/openshift/hypershift/pull/1249) * continue to allow support for specification of clusterAutoscalerImage… [#1250](https://github.com/openshift/hypershift/pull/1250) * Make HyperShift operator compatible with previous CPOs without utilities [#1245](https://github.com/openshift/hypershift/pull/1245) * AWS infra destroy, handle empty instanceIDs [#1246](https://github.com/openshift/hypershift/pull/1246) * ensure imagePullPolicies are IfNotPresent for some deployments [#1242](https://github.com/openshift/hypershift/pull/1242) * Disable PodSecurity admission in 4.11 as it breaks conformance [#1243](https://github.com/openshift/hypershift/pull/1243) * Signal parsing config failure in a condition [#1240](https://github.com/openshift/hypershift/pull/1240) * Enforce hostedcluster service route immutability constraints [#1238](https://github.com/openshift/hypershift/pull/1238) * Create valid route names with long namespace names [#1220](https://github.com/openshift/hypershift/pull/1220) * Add support to set up a http proxy for guest clusters [#1236](https://github.com/openshift/hypershift/pull/1236) * Do not wait on capi clusterrolebinding delete [#1237](https://github.com/openshift/hypershift/pull/1237) * Introduce logic to accommodate in place upgrades. [#1227](https://github.com/openshift/hypershift/pull/1227) * Add node troubleshooting documentation [#1232](https://github.com/openshift/hypershift/pull/1232) * Remove `ValidAMI` AWS NodePool condition when AMI is user-defined [#1235](https://github.com/openshift/hypershift/pull/1235) * [Full changelog](https://github.com/openshift/hypershift/compare/13fd957d2af1a182f84e112e06c5b47d94ada2f1...da0a576c1cdd3f3d4bbd7b3540bf6ac843fa4483) ### [ibm-cloud-controller-manager](https://github.com/openshift/cloud-provider-ibm/tree/2ee983c42ac2ca664cd72febde5b176f4c928bbb) * [OCPBUGS-21096](https://issues.redhat.com/browse/OCPBUGS-21096): Bump golang.org/x/net to v0.18.0 [#58](https://github.com/openshift/cloud-provider-ibm/pull/58) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#39](https://github.com/openshift/cloud-provider-ibm/pull/39) * Merge https://github.com/IBM-Cloud/cloud-provider-ibm:release-1.24 into master [#36](https://github.com/openshift/cloud-provider-ibm/pull/36) * Remove cloud-provider-vpc-controller git submodule [#35](https://github.com/openshift/cloud-provider-ibm/pull/35) * Merge https://github.com/IBM-Cloud/cloud-provider-ibm:release-1.24 into master [#34](https://github.com/openshift/cloud-provider-ibm/pull/34) * Merge https://github.com/IBM-Cloud/cloud-provider-ibm:release-1.23 into master [#31](https://github.com/openshift/cloud-provider-ibm/pull/31) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#33](https://github.com/openshift/cloud-provider-ibm/pull/33) * [Full changelog](https://github.com/openshift/cloud-provider-ibm/compare/e30391202c3f02694b2f5b3c2d73cb560d9c133d...2ee983c42ac2ca664cd72febde5b176f4c928bbb) ### [ibm-vpc-block-csi-driver](https://github.com/openshift/ibm-vpc-block-csi-driver/tree/60cd8f0d98508e453aa590a3f926ccd38f244235) * [OCPBUGS-21194](https://issues.redhat.com/browse/OCPBUGS-21194): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#53](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/53) * Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART [#15](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/15) * UPSTREAM: 93: bump golint for go 1.18 [#28](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/28) * [OCPBUGS-1460](https://issues.redhat.com/browse/OCPBUGS-1460): Add udev [#19](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/19) * Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART [#13](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/13) * [Bug 2073522](https://bugzilla.redhat.com/show_bug.cgi?id=2073522): Update ibm-vpc-block-csi-driver to v4.2.0 [#12](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/12) * [Bug 2042348](https://bugzilla.redhat.com/show_bug.cgi?id=2042348): Rebase to v4.1.3 for OCP 4.11 [#11](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/11) * Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART [#10](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/10) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver/compare/fc60caeba29541f39992217049e74e2fc9fd03cf...60cd8f0d98508e453aa590a3f926ccd38f244235) ### [ibm-vpc-block-csi-driver-operator](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/tree/2f873ffe2b02a01b4df6c466695b572bb2af82e6) * [OCPBUGS-21283](https://issues.redhat.com/browse/OCPBUGS-21283): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#84](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/84) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#38](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/38) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#39](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/39) * Changes to fetch region from node [#37](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/37) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#36](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/36) * [Bug 2066665](https://bugzilla.redhat.com/show_bug.cgi?id=2066665): [ibm-vpc-block] Unable to change default storage class [#34](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/34) * [Bug 2067843](https://bugzilla.redhat.com/show_bug.cgi?id=2067843): Bump prometheus/client_golang to v1.11.1 [#31](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/31) * Disable topology tests until bz2035027 is fixed [#30](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/30) * Update CSIDriver instance [#29](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/29) * [Bug 2053006](https://bugzilla.redhat.com/show_bug.cgi?id=2053006): Resource id fetch optimised [#26](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/26) * [Bug 2052309](https://bugzilla.redhat.com/show_bug.cgi?id=2052309): IBMCloud: Add critical spec to ctlr [#24](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/24) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#21](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/21) * [Bug 2048824](https://bugzilla.redhat.com/show_bug.cgi?id=2048824): IBMCloud: Add critical spec to driver daemonset [#22](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/22) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/compare/28bad53d117d403b4147b68666ecfc52cee6ceca...2f873ffe2b02a01b4df6c466695b572bb2af82e6) ### [ibm-vpc-node-label-updater](https://github.com/openshift/ibm-vpc-node-label-updater/tree/1b1d427f533e3282f2834f016481000e9ab245b4) * [OCPBUGS-21396](https://issues.redhat.com/browse/OCPBUGS-21396): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#30](https://github.com/openshift/ibm-vpc-node-label-updater/pull/30) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#12](https://github.com/openshift/ibm-vpc-node-label-updater/pull/12) * [Bug 2073525](https://bugzilla.redhat.com/show_bug.cgi?id=2073525): Update vpc-node-label-updater to v4.1.2 [#9](https://github.com/openshift/ibm-vpc-node-label-updater/pull/9) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#10](https://github.com/openshift/ibm-vpc-node-label-updater/pull/10) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#8](https://github.com/openshift/ibm-vpc-node-label-updater/pull/8) * [Full changelog](https://github.com/openshift/ibm-vpc-node-label-updater/compare/7074dfc35cdd3c2e19790a934c1025c8f690c9a6...1b1d427f533e3282f2834f016481000e9ab245b4) ### [ibmcloud-machine-controllers](https://github.com/openshift/cluster-api-provider-ibmcloud/tree/fabf1f6680853595bda32b4b26d18d4edd5fa212) * [OCPBUGS-21376](https://issues.redhat.com/browse/OCPBUGS-21376): [release-4.11] Bump golang.org/x/net to v0.18.0 [#69](https://github.com/openshift/cluster-api-provider-ibmcloud/pull/69) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#21](https://github.com/openshift/cluster-api-provider-ibmcloud/pull/21) * [Bug 2067844](https://bugzilla.redhat.com/show_bug.cgi?id=2067844): Update dependencies to K8s 1.24, go 1.18 [#20](https://github.com/openshift/cluster-api-provider-ibmcloud/pull/20) * Updating ose-ibmcloud-machine-controllers images to be consistent with ART [#19](https://github.com/openshift/cluster-api-provider-ibmcloud/pull/19) * Updating ose-ibmcloud-machine-controllers images to be consistent with ART [#18](https://github.com/openshift/cluster-api-provider-ibmcloud/pull/18) * [Full changelog](https://github.com/openshift/cluster-api-provider-ibmcloud/compare/7449a94fcd0001cac6371600a75b20850b235cc9...fabf1f6680853595bda32b4b26d18d4edd5fa212) ### [insights-operator](https://github.com/openshift/insights-operator/tree/325ecc86f380b8d4f8908e3cf9103e01079b497d) * Revert "Set default messages & reconcile clusteroperator status conditions (#584) [#586](https://github.com/openshift/insights-operator/pull/586) * [Full changelog](https://github.com/openshift/insights-operator/compare/871cc6053ee5187f8889815c1f88094279444bcf...325ecc86f380b8d4f8908e3cf9103e01079b497d) ### [ironic](https://github.com/openshift/ironic-image/tree/240777d34c88ec9a6780510307ced3d4ac96b1ba) * [OCPBUGS-13585](https://issues.redhat.com/browse/OCPBUGS-13585): Add python-flask dependency [#381](https://github.com/openshift/ironic-image/pull/381) * [OCPBUGS-14654](https://issues.redhat.com/browse/OCPBUGS-14654): Include fix to OCPBUGS-13335 in OCP 4.11. [#380](https://github.com/openshift/ironic-image/pull/380) * [OCPBUGS-13645](https://issues.redhat.com/browse/OCPBUGS-13645): Bump python-sushy [#369](https://github.com/openshift/ironic-image/pull/369) * [OCPBUGS-7565](https://issues.redhat.com/browse/OCPBUGS-7565): Adding dep on python3-werkzeug >= 2.0.3-4 [#356](https://github.com/openshift/ironic-image/pull/356) * Bug OCPBUGS-5404: Adding dosfstools and util-linux tools to ironic-image [#344](https://github.com/openshift/ironic-image/pull/344) * [OCPBUGS-4908](https://issues.redhat.com/browse/OCPBUGS-4908): Update packages versions with latest available [#336](https://github.com/openshift/ironic-image/pull/336) * [OCPBUGS-5145](https://issues.redhat.com/browse/OCPBUGS-5145): Configure Ironic iLO driver to use web server [#342](https://github.com/openshift/ironic-image/pull/342) * [OCPBUGS-3674](https://issues.redhat.com/browse/OCPBUGS-3674): Don't save OS_ prefixed variables [#318](https://github.com/openshift/ironic-image/pull/318) * Bug OCPBUGS-3478: Improve resiliency of eTag handling [#314](https://github.com/openshift/ironic-image/pull/314) * [OCPBUGS-4410](https://issues.redhat.com/browse/OCPBUGS-4410): Remove RDO distribution configuration (finally fixes #46) [#328](https://github.com/openshift/ironic-image/pull/328) * [OCPBUGS-1972](https://issues.redhat.com/browse/OCPBUGS-1972): Removed ServerName from VirtualHost Directives [#306](https://github.com/openshift/ironic-image/pull/306) * [OCPBUGS-2011](https://issues.redhat.com/browse/OCPBUGS-2011): Backport improvements to iDRAC steps to OCP 4.11 [#302](https://github.com/openshift/ironic-image/pull/302) * [OCPBUGS-746](https://issues.redhat.com/browse/OCPBUGS-746): sync fixes for BIOS settings on SMC [#297](https://github.com/openshift/ironic-image/pull/297) * [OCPBUGS-528](https://issues.redhat.com/browse/OCPBUGS-528): Fix IRONIC_EXTERNAL_IP when TLS is used for virtual media [#295](https://github.com/openshift/ironic-image/pull/295) * [OCPBUGS-453](https://issues.redhat.com/browse/OCPBUGS-453): Update packages to latest bugfix [#294](https://github.com/openshift/ironic-image/pull/294) * [Bug 2110407](https://bugzilla.redhat.com/show_bug.cgi?id=2110407): ignore case of mac address [#285](https://github.com/openshift/ironic-image/pull/285) * [Bug 2087213](https://bugzilla.redhat.com/show_bug.cgi?id=2087213): Ironic Fix for ZTP with 4.11 [#281](https://github.com/openshift/ironic-image/pull/281) * [Bug 2088561](https://bugzilla.redhat.com/show_bug.cgi?id=2088561): Update ironic packages to latest bugfix versions [#280](https://github.com/openshift/ironic-image/pull/280) * [Bug 2080446](https://bugzilla.redhat.com/show_bug.cgi?id=2080446): Sync with latest packages available [#273](https://github.com/openshift/ironic-image/pull/273) * Add ipxe support for arm64 [#263](https://github.com/openshift/ironic-image/pull/263) * Fix patch command, take two [#271](https://github.com/openshift/ironic-image/pull/271) * Fix patch path [#270](https://github.com/openshift/ironic-image/pull/270) * [OCP 4.11 only] Backport the kernel params patch [#268](https://github.com/openshift/ironic-image/pull/268) * Sync with ironic-image metal3 2022-04-12 [#267](https://github.com/openshift/ironic-image/pull/267) * [Bug 2068246](https://bugzilla.redhat.com/show_bug.cgi?id=2068246): Include fix for race in ironic combined executable [#265](https://github.com/openshift/ironic-image/pull/265) * Correct version for sushy-oem-idrac for OCP 4.11 [#261](https://github.com/openshift/ironic-image/pull/261) * Drop unused ipxe.efi [#260](https://github.com/openshift/ironic-image/pull/260) * Sync with metal3-io/main [#259](https://github.com/openshift/ironic-image/pull/259) * [Bug 2059567](https://bugzilla.redhat.com/show_bug.cgi?id=2059567): Enable vMedia provisioning of Nokia servers [#257](https://github.com/openshift/ironic-image/pull/257) * Update packages with latest available [#256](https://github.com/openshift/ironic-image/pull/256) * Merge from metal3-io [#255](https://github.com/openshift/ironic-image/pull/255) * Updating ironic images to be consistent with ART [#254](https://github.com/openshift/ironic-image/pull/254) * Merge metal3-io up to mariadb removal [#250](https://github.com/openshift/ironic-image/pull/250) * [Full changelog](https://github.com/openshift/ironic-image/compare/caf63f4967c11aed4c5b340bdd3e057be492d1fa...240777d34c88ec9a6780510307ced3d4ac96b1ba) ### [ironic-agent](https://github.com/openshift/ironic-agent-image/tree/1dad35c5b3844f04b81468c4ad6b33953953cdc6) * [OCPBUGS-20486](https://issues.redhat.com/browse/OCPBUGS-20486): fix eventlet regression with Python 3.6 [#93](https://github.com/openshift/ironic-agent-image/pull/93) * [OCPBUGS-11438](https://issues.redhat.com/browse/OCPBUGS-11438): Adding dep on python3-werkzeug >= 2.0.3-4 [#74](https://github.com/openshift/ironic-agent-image/pull/74) * [OCPBUGS-5099](https://issues.redhat.com/browse/OCPBUGS-5099): make coreos-installer output available in the logs [#67](https://github.com/openshift/ironic-agent-image/pull/67) * [OCPBUGS-453](https://issues.redhat.com/browse/OCPBUGS-453): Update packages to latest bugfix [#62](https://github.com/openshift/ironic-agent-image/pull/62) * [Bug 2100749](https://bugzilla.redhat.com/show_bug.cgi?id=2100749): Add missing multipath modules [#54](https://github.com/openshift/ironic-agent-image/pull/54) * [Bug 2098392](https://bugzilla.redhat.com/show_bug.cgi?id=2098392): Include Fix discovering WWN/serial for devicemapper devices [#53](https://github.com/openshift/ironic-agent-image/pull/53) * [Bug 2089309](https://bugzilla.redhat.com/show_bug.cgi?id=2089309): multipath fix for passive paths [#51](https://github.com/openshift/ironic-agent-image/pull/51) * [Bug 2086759](https://bugzilla.redhat.com/show_bug.cgi?id=2086759): Bump retries for UEFI boot configuration [#47](https://github.com/openshift/ironic-agent-image/pull/47) * [Bug 2080446](https://bugzilla.redhat.com/show_bug.cgi?id=2080446): Sync with latest ironic python agent [#44](https://github.com/openshift/ironic-agent-image/pull/44) * Update the retry to Configuring UEFI [#45](https://github.com/openshift/ironic-agent-image/pull/45) * Add an start_assisted_install step [#40](https://github.com/openshift/ironic-agent-image/pull/40) * [Bug 2038303](https://bugzilla.redhat.com/show_bug.cgi?id=2038303): Allow customisation of default_connection file [#32](https://github.com/openshift/ironic-agent-image/pull/32) * Update packages with latest available [#41](https://github.com/openshift/ironic-agent-image/pull/41) * Retry UEFI boot Configuration [#42](https://github.com/openshift/ironic-agent-image/pull/42) * Updating ironic-agent images to be consistent with ART [#36](https://github.com/openshift/ironic-agent-image/pull/36) * [Bug 2043533](https://bugzilla.redhat.com/show_bug.cgi?id=2043533): Update ironic-python-agent to latest bugfix version [#33](https://github.com/openshift/ironic-agent-image/pull/33) * [Full changelog](https://github.com/openshift/ironic-agent-image/compare/28ee0ef73966f9989e5ad83ef55791390738a59a...1dad35c5b3844f04b81468c4ad6b33953953cdc6) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/876128b5ac733a244a3838b151b0a6df663937aa) * [Bug 2111636](https://bugzilla.redhat.com/show_bug.cgi?id=2111636): libguestfs: error: download: /boot/loader/entries/ostree-1-rhcos.conf: No such file or directory [#80](https://github.com/openshift/ironic-rhcos-downloader/pull/80) * Updating ironic-rhcos-downloader images to be consistent with ART [#73](https://github.com/openshift/ironic-rhcos-downloader/pull/73) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/81fe29749c844a4a19fea0f0e2ff0a53c3b0fa25...876128b5ac733a244a3838b151b0a6df663937aa) ### [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager/tree/8c8af7bec058936780626d6b5d1b44f15b88791c) * [OCPBUGS-14564](https://issues.redhat.com/browse/OCPBUGS-14564): Flush addresses on provisioning interface with global scope only [#38](https://github.com/openshift/ironic-static-ip-manager/pull/38) * [Bug 2054770](https://bugzilla.redhat.com/show_bug.cgi?id=2054770): Do case-insensitive comparison of MACs [#29](https://github.com/openshift/ironic-static-ip-manager/pull/29) * Updating ironic-static-ip-manager images to be consistent with ART [#28](https://github.com/openshift/ironic-static-ip-manager/pull/28) * [Full changelog](https://github.com/openshift/ironic-static-ip-manager/compare/45a1c542c44d9492a110ea5edb09ac026afd86de...8c8af7bec058936780626d6b5d1b44f15b88791c) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/4443fa4689362ee52bc59d68f34ded7062adaf14) * [OCPBUGS-21652](https://issues.redhat.com/browse/OCPBUGS-21652): limit number of simultaneous client requests [#87](https://github.com/openshift/k8s-prometheus-adapter/pull/87) * Updating ose-prometheus-adapter images to be consistent with ART [#61](https://github.com/openshift/k8s-prometheus-adapter/pull/61) * Updating ose-prometheus-adapter images to be consistent with ART [#60](https://github.com/openshift/k8s-prometheus-adapter/pull/60) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/4052b317ff62b93019a11e2981d1d81b8b6b2e4d...4443fa4689362ee52bc59d68f34ded7062adaf14) ### [keepalived-ipfailover](https://github.com/openshift/images/tree/f1330f6fb99d1056544bca67f30c098059ef3edf) * Updating ose-egress-http-proxy images to be consistent with ART [#105](https://github.com/openshift/images/pull/105) * Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART [#108](https://github.com/openshift/images/pull/108) * Updating openshift-enterprise-egress-router images to be consistent with ART [#106](https://github.com/openshift/images/pull/106) * [Bug 2062126](https://bugzilla.redhat.com/show_bug.cgi?id=2062126): ipfailover: Autodetect the "ens3" NIC [#111](https://github.com/openshift/images/pull/111) * Updating openshift-enterprise-base images to be consistent with ART [#109](https://github.com/openshift/images/pull/109) * [Bug 2018188](https://bugzilla.redhat.com/show_bug.cgi?id=2018188): VRRP ID conflict between keepalived-ipfailover and cluster VIPs [#104](https://github.com/openshift/images/pull/104) * Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART [#107](https://github.com/openshift/images/pull/107) * [Full changelog](https://github.com/openshift/images/compare/5d526c41d70e481820119cbdae922130f42b36d7...f1330f6fb99d1056544bca67f30c098059ef3edf) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/e5b34b769cb7dd359cd027b9bb19cf4988a2c5dd) * [OCPBUGS-15084](https://issues.redhat.com/browse/OCPBUGS-15084): EgressNetworkPolicy DNS resolution does not fall back to TCP [#556](https://github.com/openshift/sdn/pull/556) * [OCPBUGS-14305](https://issues.redhat.com/browse/OCPBUGS-14305): fix possible concurrent map read/write [#552](https://github.com/openshift/sdn/pull/552) * [OCPBUGS-13917](https://issues.redhat.com/browse/OCPBUGS-13917): save and delete the old egress network policy [#544](https://github.com/openshift/sdn/pull/544) * [OCPBUGS-13902](https://issues.redhat.com/browse/OCPBUGS-13902): CVE-2018-17419 ose-node-container: dns: Denial of Service (DoS) [openshift-4] [#543](https://github.com/openshift/sdn/pull/543) * [OCPBUGS-10853](https://issues.redhat.com/browse/OCPBUGS-10853): Fix race in Egress IP Tracker start [#522](https://github.com/openshift/sdn/pull/522) * [OCPBUGS-8399](https://issues.redhat.com/browse/OCPBUGS-8399): Initialize egress node monitoring struct with previous reachability status [#513](https://github.com/openshift/sdn/pull/513) * [OCPBUGS-7515](https://issues.redhat.com/browse/OCPBUGS-7515): Handle race condition to setup default vnid flows [#506](https://github.com/openshift/sdn/pull/506) * [OCPBUGS-5926](https://issues.redhat.com/browse/OCPBUGS-5926): Add node egress IP assignment resync [#492](https://github.com/openshift/sdn/pull/492) * [OCPBUGS-4607](https://issues.redhat.com/browse/OCPBUGS-4607): pass ResourceVersion:0 for kube List() calls [#479](https://github.com/openshift/sdn/pull/479) * [OCPBUGS-998](https://issues.redhat.com/browse/OCPBUGS-998): [release-4.11] NetworkPolicy: Remove stale flows that may exist due to an upgrade [#488](https://github.com/openshift/sdn/pull/488) * [OCPBUGS-2105](https://issues.redhat.com/browse/OCPBUGS-2105): fix network policy egress [#464](https://github.com/openshift/sdn/pull/464) * Bug OCPBUGS-4386: Rebase against cherry-pick of kubernetes#107413 [#477](https://github.com/openshift/sdn/pull/477) * [OCPBUGS-668](https://issues.redhat.com/browse/OCPBUGS-668): Fix DNS endpoint hack to prefer local instead of forcing it [#466](https://github.com/openshift/sdn/pull/466) * [OCPBUGS-668](https://issues.redhat.com/browse/OCPBUGS-668): Fix bad DNS endpoint selection [#456](https://github.com/openshift/sdn/pull/456) * [Bug 2112353](https://bugzilla.redhat.com/show_bug.cgi?id=2112353): setup network policy rules during pod creation to fix postStart hook [#453](https://github.com/openshift/sdn/pull/453) * [Bug 2102639](https://bugzilla.redhat.com/show_bug.cgi?id=2102639): Revert 'kube 1.24 rebase'; release-4.11 [#443](https://github.com/openshift/sdn/pull/443) * [Bug 2079958](https://bugzilla.redhat.com/show_bug.cgi?id=2079958): Add TopologyAwareHints support in kube-proxy. [#426](https://github.com/openshift/sdn/pull/426) * [Bug 2089350](https://bugzilla.redhat.com/show_bug.cgi?id=2089350): kube 1.24 rebase [#440](https://github.com/openshift/sdn/pull/440) * [Bug 2067865](https://bugzilla.redhat.com/show_bug.cgi?id=2067865): Bump prometheus/client_golang to 1.11.1 [#432](https://github.com/openshift/sdn/pull/432) * Updating kube-proxy images to be consistent with ART [#429](https://github.com/openshift/sdn/pull/429) * Updating ose-sdn images to be consistent with ART [#427](https://github.com/openshift/sdn/pull/427) * [Bug 2052332](https://bugzilla.redhat.com/show_bug.cgi?id=2052332): use pods cache during reattach processing [#411](https://github.com/openshift/sdn/pull/411) * [Bug 2016534](https://bugzilla.redhat.com/show_bug.cgi?id=2016534): Exclude the default drop bit from egress IP VNID [#428](https://github.com/openshift/sdn/pull/428) * [Bug 2016534](https://bugzilla.redhat.com/show_bug.cgi?id=2016534): Masquerade in cluster traffic that is marked for egress IP [#423](https://github.com/openshift/sdn/pull/423) * [Bug 2063123](https://bugzilla.redhat.com/show_bug.cgi?id=2063123): Remove node-tainting for too-small MTU [#417](https://github.com/openshift/sdn/pull/417) * [Bug 2050230](https://bugzilla.redhat.com/show_bug.cgi?id=2050230): Use pagination when listing Netnamespaces [#419](https://github.com/openshift/sdn/pull/419) * [Bug 2062558](https://bugzilla.redhat.com/show_bug.cgi?id=2062558): egressip: Continue to process other nodes if a node is not ready [#418](https://github.com/openshift/sdn/pull/418) * Add unit tests for vxlan no track ip table rule [#401](https://github.com/openshift/sdn/pull/401) * [Bug 2061919](https://bugzilla.redhat.com/show_bug.cgi?id=2061919): Fix releasing egress IP in cloud environments [#409](https://github.com/openshift/sdn/pull/409) * [Bug 2061916](https://bugzilla.redhat.com/show_bug.cgi?id=2061916): mixed ingress and egress policies can result in half-isolated pods [#408](https://github.com/openshift/sdn/pull/408) * [Bug 2060553](https://bugzilla.redhat.com/show_bug.cgi?id=2060553): another fix for mixed ingress and egress policies [#406](https://github.com/openshift/sdn/pull/406) * [Bug 2050230](https://bugzilla.redhat.com/show_bug.cgi?id=2050230): Use pagination when listing resources [#400](https://github.com/openshift/sdn/pull/400) * [Bug 2060553](https://bugzilla.redhat.com/show_bug.cgi?id=2060553): Separate the allPodsSelected into egress and ingress [#404](https://github.com/openshift/sdn/pull/404) * Rebase SDN k8 1.23.4 [#399](https://github.com/openshift/sdn/pull/399) * clean up OWNERS [#392](https://github.com/openshift/sdn/pull/392) * Updating ose-sdn images to be consistent with ART [#396](https://github.com/openshift/sdn/pull/396) * Updating kube-proxy images to be consistent with ART [#397](https://github.com/openshift/sdn/pull/397) * move to-be-deleted userspace proxy code into sdn tree [#393](https://github.com/openshift/sdn/pull/393) * [Full changelog](https://github.com/openshift/sdn/compare/cc28efbf6946233ecfcf2ee979f0ddff4fb1da65...e5b34b769cb7dd359cd027b9bb19cf4988a2c5dd) ### [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy/tree/c04896cdf9288341c9f88051a2744ca192300182) * [OCPBUGS-20676](https://issues.redhat.com/browse/OCPBUGS-20676): v4.11 CVE 44487 [#86](https://github.com/openshift/kube-rbac-proxy/pull/86) * Updating kube-rbac-proxy images to be consistent with ART [#54](https://github.com/openshift/kube-rbac-proxy/pull/54) * [Full changelog](https://github.com/openshift/kube-rbac-proxy/compare/4f198b2bd5d141a561fbe6642de20b520d72e513...c04896cdf9288341c9f88051a2744ca192300182) ### [kube-state-metrics](https://github.com/openshift/kube-state-metrics/tree/7d0ca88aaf60227733ea06152114b623c5574779) * [OCPBUGS-20746](https://issues.redhat.com/browse/OCPBUGS-20746): bump x/net to v0.17.0 [#99](https://github.com/openshift/kube-state-metrics/pull/99) * [OCPBUGS-4087](https://issues.redhat.com/browse/OCPBUGS-4087): cherry-pick, do not expose ingress path metric when service is nil [#85](https://github.com/openshift/kube-state-metrics/pull/85) * [Bug 2075091](https://bugzilla.redhat.com/show_bug.cgi?id=2075091): Bump to KSM 2.5.0 [#74](https://github.com/openshift/kube-state-metrics/pull/74) * Updating kube-state-metrics images to be consistent with ART [#73](https://github.com/openshift/kube-state-metrics/pull/73) * [Bug 2075091](https://bugzilla.redhat.com/show_bug.cgi?id=2075091): internal/store: fix metrics slice length [#71](https://github.com/openshift/kube-state-metrics/pull/71) * [Bug 2075091](https://bugzilla.redhat.com/show_bug.cgi?id=2075091): internal/store: fix potential panic in pod store [#69](https://github.com/openshift/kube-state-metrics/pull/69) * Bump openshift/kube-state-metrics to v2.4.2 [#68](https://github.com/openshift/kube-state-metrics/pull/68) * Bump openshift/kube-state-metrics to v2.4.1 [#67](https://github.com/openshift/kube-state-metrics/pull/67) * Updating kube-state-metrics images to be consistent with ART [#66](https://github.com/openshift/kube-state-metrics/pull/66) * [Full changelog](https://github.com/openshift/kube-state-metrics/compare/df55d3ea3dc12dbebf4daedcf4f886b3b73a8e35...7d0ca88aaf60227733ea06152114b623c5574779) ### [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator/tree/596745cec38b8401d1d906bfb9d3d78fdaeabcde) * [Bug 2090465](https://bugzilla.redhat.com/show_bug.cgi?id=2090465): golang version mismatch [#185](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/185) * [Bug 2090430](https://bugzilla.redhat.com/show_bug.cgi?id=2090430): UPSTREAM: <carry>: run go-fmt 1.17 [#183](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/183) * [Full changelog](https://github.com/openshift/kubernetes-kube-storage-version-migrator/compare/901a6d221d1cf79b4b6ba859bb43521e0ee635b3...596745cec38b8401d1d906bfb9d3d78fdaeabcde) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/c7326997276f4fb2bf78d0454d076795c2cfb645) * [OCPBUGS-14931](https://issues.redhat.com/browse/OCPBUGS-14931): KuryrPort cleanup: Fix issue of subport not found [#733](https://github.com/openshift/kuryr-kubernetes/pull/733) * Bug OCPBUGS-13428: Fix ValueError when Pod has no IP address [#727](https://github.com/openshift/kuryr-kubernetes/pull/727) * [OCPBUGS-12840](https://issues.redhat.com/browse/OCPBUGS-12840): Fix VIF revert on KuryrPort status update error [#725](https://github.com/openshift/kuryr-kubernetes/pull/725) * Bug OCPBUGS-1713: Cleanup KuryrPort when Pod is missing [#694](https://github.com/openshift/kuryr-kubernetes/pull/694) * Bug OCPBUGS-577: Fix unbound router_id variable while creating event [#687](https://github.com/openshift/kuryr-kubernetes/pull/687) * Updating kuryr-cni images to be consistent with ART [#667](https://github.com/openshift/kuryr-kubernetes/pull/667) * [Bug 2088444](https://bugzilla.redhat.com/show_bug.cgi?id=2088444): Add leftover resources protection [#674](https://github.com/openshift/kuryr-kubernetes/pull/674) * [Bug 2094816](https://bugzilla.redhat.com/show_bug.cgi?id=2094816): Do not crash on Neutron quota exceptions [#675](https://github.com/openshift/kuryr-kubernetes/pull/675) * [Bug 2094801](https://bugzilla.redhat.com/show_bug.cgi?id=2094801): Strip leading zeros from "funny" Service IPs [#671](https://github.com/openshift/kuryr-kubernetes/pull/671) * [Bug 2097246](https://bugzilla.redhat.com/show_bug.cgi?id=2097246): Use upper-constraints.txt from stable/xena in UT [#672](https://github.com/openshift/kuryr-kubernetes/pull/672) * Remove DNS webhook server [#666](https://github.com/openshift/kuryr-kubernetes/pull/666) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#665](https://github.com/openshift/kuryr-kubernetes/pull/665) * Merge from upstream [#658](https://github.com/openshift/kuryr-kubernetes/pull/658) * [Bug 1997120](https://bugzilla.redhat.com/show_bug.cgi?id=1997120): CNI: Watch for deleted pods [#657](https://github.com/openshift/kuryr-kubernetes/pull/657) * [Bug 1983056](https://bugzilla.redhat.com/show_bug.cgi?id=1983056): CNI: Use K8S_POD_UID passed from CRI [#645](https://github.com/openshift/kuryr-kubernetes/pull/645) * Parallelize ports removal. [#655](https://github.com/openshift/kuryr-kubernetes/pull/655) * Updating kuryr-cni images to be consistent with ART [#629](https://github.com/openshift/kuryr-kubernetes/pull/629) * [Bug 2070047](https://bugzilla.redhat.com/show_bug.cgi?id=2070047): Increase cni_request_duration buckets [#647](https://github.com/openshift/kuryr-kubernetes/pull/647) * Updating kuryr-controller images to be consistent with ART [#628](https://github.com/openshift/kuryr-kubernetes/pull/628) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#644](https://github.com/openshift/kuryr-kubernetes/pull/644) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#643](https://github.com/openshift/kuryr-kubernetes/pull/643) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#642](https://github.com/openshift/kuryr-kubernetes/pull/642) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#640](https://github.com/openshift/kuryr-kubernetes/pull/640) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#639](https://github.com/openshift/kuryr-kubernetes/pull/639) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#638](https://github.com/openshift/kuryr-kubernetes/pull/638) * [Bug 2051423](https://bugzilla.redhat.com/show_bug.cgi?id=2051423): Update KLB .spec.provider when required [#636](https://github.com/openshift/kuryr-kubernetes/pull/636) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#634](https://github.com/openshift/kuryr-kubernetes/pull/634) * [Bug 2045065](https://bugzilla.redhat.com/show_bug.cgi?id=2045065): Ignore Pod event if Pod is Pending with no Node set [#624](https://github.com/openshift/kuryr-kubernetes/pull/624) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/f77249c3e04cdd55a3b5b25eec32129665950f20...c7326997276f4fb2bf78d0454d076795c2cfb645) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/b6e14eabe93e25323cf32b7661edd0e7422b4e4b) * Updating ose-libvirt-machine-controllers images to be consistent with ART [#239](https://github.com/openshift/cluster-api-provider-libvirt/pull/239) * Updating ose-libvirt-machine-controllers images to be consistent with ART [#236](https://github.com/openshift/cluster-api-provider-libvirt/pull/236) * [Bug 2018517](https://bugzilla.redhat.com/show_bug.cgi?id=2018517): fix the check that machine has been modified [#235](https://github.com/openshift/cluster-api-provider-libvirt/pull/235) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/3b330b72f43b178f1c16c5d504cf9ce248e679ad...b6e14eabe93e25323cf32b7661edd0e7422b4e4b) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/983149b8ca584d234fd944c74934ad421dedfa90) * [OCPBUGS-21490](https://issues.redhat.com/browse/OCPBUGS-21490): Bump golang.org/x/net to v0.18.0 [#1177](https://github.com/openshift/machine-api-operator/pull/1177) * [OCPBUGS-10719](https://issues.redhat.com/browse/OCPBUGS-10719): [release-4.11] - manual cp #1057 - machines stuck in provisioned or provisioning [#1141](https://github.com/openshift/machine-api-operator/pull/1141) * [OCPBUGS-11326](https://issues.redhat.com/browse/OCPBUGS-11326): Fix empty component version [#1133](https://github.com/openshift/machine-api-operator/pull/1133) * [OCPBUGS-10901](https://issues.redhat.com/browse/OCPBUGS-10901): Block machine deletion if extra disks are attached [#1131](https://github.com/openshift/machine-api-operator/pull/1131) * [OCPBUGS-8311](https://issues.redhat.com/browse/OCPBUGS-8311): Short circuit misfiring [#1124](https://github.com/openshift/machine-api-operator/pull/1124) * [OCPBUGS-8257](https://issues.redhat.com/browse/OCPBUGS-8257): Append annotations from machine template spec to the node [#1123](https://github.com/openshift/machine-api-operator/pull/1123) * [OCPBUGS-536](https://issues.redhat.com/browse/OCPBUGS-536): vSphere - enable steal time accounting [#1081](https://github.com/openshift/machine-api-operator/pull/1081) * [OCPBUGS-955](https://issues.redhat.com/browse/OCPBUGS-955): Change "create" sequence with powering on the vm after clone [#1064](https://github.com/openshift/machine-api-operator/pull/1064) * [Bug 2109193](https://bugzilla.redhat.com/show_bug.cgi?id=2109193): Fix while setting default processor value for Power VS platform [#1041](https://github.com/openshift/machine-api-operator/pull/1041) * [Bug 2110505](https://bugzilla.redhat.com/show_bug.cgi?id=2110505): revert: Bug 2101880: operator NS manifest: Set empty openshift.io/run-level [#1044](https://github.com/openshift/machine-api-operator/pull/1044) * [Bug 2105382](https://bugzilla.redhat.com/show_bug.cgi?id=2105382): Add a validation webhook for Nutanix MachineProviderConfig [#1039](https://github.com/openshift/machine-api-operator/pull/1039) * [Bug 2102834](https://bugzilla.redhat.com/show_bug.cgi?id=2102834): operator NS manifest: Set empty openshift.io/run-level [#1033](https://github.com/openshift/machine-api-operator/pull/1033) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Separate controller for the node draining [#1023](https://github.com/openshift/machine-api-operator/pull/1023) * [Bug 2094196](https://bugzilla.redhat.com/show_bug.cgi?id=2094196): Added webhook support for PowerVS platform [#998](https://github.com/openshift/machine-api-operator/pull/998) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): Bump go to 1.18 [#1022](https://github.com/openshift/machine-api-operator/pull/1022) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): Update dependencies to K8s 1.24 [#1021](https://github.com/openshift/machine-api-operator/pull/1021) * Updating ose-machine-api-operator images to be consistent with ART [#1015](https://github.com/openshift/machine-api-operator/pull/1015) * [Bug 2059338](https://bugzilla.redhat.com/show_bug.cgi?id=2059338): Add template HW version detection during clone [#1016](https://github.com/openshift/machine-api-operator/pull/1016) * [Bug 2083237](https://bugzilla.redhat.com/show_bug.cgi?id=2083237): Set vCenter client request timeout [#1013](https://github.com/openshift/machine-api-operator/pull/1013) * Skip validation if we just remove the finalizer [#996](https://github.com/openshift/machine-api-operator/pull/996) * Don't force a requeue after updating Status.Phase [#1012](https://github.com/openshift/machine-api-operator/pull/1012) * Remove unreleased AWS Placement Groups support [#1009](https://github.com/openshift/machine-api-operator/pull/1009) * Fix broken link to CVO run levels [#991](https://github.com/openshift/machine-api-operator/pull/991) * AWS IMDSv2 machine spec validation [#1008](https://github.com/openshift/machine-api-operator/pull/1008) * Add DescribeRegions permission for aws controller [#1007](https://github.com/openshift/machine-api-operator/pull/1007) * Add Nutanix Platform to Machine API Operator [#988](https://github.com/openshift/machine-api-operator/pull/988) * Add pd-balanced disks support for GCP [#1006](https://github.com/openshift/machine-api-operator/pull/1006) * Adding cluster api provider url(ibm) [#1005](https://github.com/openshift/machine-api-operator/pull/1005) * Refactor provider status to use metav1.Condition [#1004](https://github.com/openshift/machine-api-operator/pull/1004) * webhook: machine: add Azure Data Disks deletionPolicy validation [#1003](https://github.com/openshift/machine-api-operator/pull/1003) * Remove 30s wait before creating a machine [#999](https://github.com/openshift/machine-api-operator/pull/999) * Make MAPO the default for OpenStack deployments [#1000](https://github.com/openshift/machine-api-operator/pull/1000) * [Bug 2067852](https://bugzilla.redhat.com/show_bug.cgi?id=2067852): Bump prometheus/client_golang [#1002](https://github.com/openshift/machine-api-operator/pull/1002) * Machine webhook validation for Azure Ultra Disks [#1001](https://github.com/openshift/machine-api-operator/pull/1001) * Update govmomi to 0.27.4 [#995](https://github.com/openshift/machine-api-operator/pull/995) * [Bug 2060697](https://bugzilla.redhat.com/show_bug.cgi?id=2060697): Update openshift/api dependency [#994](https://github.com/openshift/machine-api-operator/pull/994) * Fix MAPO image [#993](https://github.com/openshift/machine-api-operator/pull/993) * Update OpenShift API to include placement groups [#992](https://github.com/openshift/machine-api-operator/pull/992) * Replace broken image references [#881](https://github.com/openshift/machine-api-operator/pull/881) * modify prometheus alerts to ignore pod [#986](https://github.com/openshift/machine-api-operator/pull/986) * Updating ose-machine-api-operator images to be consistent with ART [#983](https://github.com/openshift/machine-api-operator/pull/983) * Allow to remove ec2 placement groups [#990](https://github.com/openshift/machine-api-operator/pull/990) * Validate AWS NetworkInterfaceType in webhook [#989](https://github.com/openshift/machine-api-operator/pull/989) * Add IAM permissions required for AWS Placement Group enhancement [#976](https://github.com/openshift/machine-api-operator/pull/976) * fix readme after migrating from cluster-api-provider-* [#982](https://github.com/openshift/machine-api-operator/pull/982) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/a7dfb7f5745370a2fb4e38fa75aaed562796e981...983149b8ca584d234fd944c74934ad421dedfa90) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/15d0b0288a4330b90ac89f14c781dfa7349af52c) * [OCPBUGS-21016](https://issues.redhat.com/browse/OCPBUGS-21016): vendor: unpin deps and update library-go, container and kube deps [#4019](https://github.com/openshift/machine-config-operator/pull/4019) * [OCPBUGS-21995](https://issues.redhat.com/browse/OCPBUGS-21995): Prevent NM from unsetting the hostname [#3989](https://github.com/openshift/machine-config-operator/pull/3989) * [OCPBUGS-18075](https://issues.redhat.com/browse/OCPBUGS-18075): Agent-based install process the container machine-config-controller will be oom [#3882](https://github.com/openshift/machine-config-operator/pull/3882) * [OCPBUGS-11556](https://issues.redhat.com/browse/OCPBUGS-11556): Prevent possible split-brain scenario with keepalived unicast [#3667](https://github.com/openshift/machine-config-operator/pull/3667) * [OCPBUGS-11283](https://issues.redhat.com/browse/OCPBUGS-11283): Wrap podman commands in a while loop [#3657](https://github.com/openshift/machine-config-operator/pull/3657) * [OCPBUGS-9986](https://issues.redhat.com/browse/OCPBUGS-9986): configure-ovs: fix mtu-migration cleanup [#3607](https://github.com/openshift/machine-config-operator/pull/3607) * [OCPBUGS-10425](https://issues.redhat.com/browse/OCPBUGS-10425): Remove hard requirement for the afterburn from early-running aws-related services [#3615](https://github.com/openshift/machine-config-operator/pull/3615) * [OCPBUGS-8260](https://issues.redhat.com/browse/OCPBUGS-8260): [release-4.11] backport cleanupDuplicateMC [#3577](https://github.com/openshift/machine-config-operator/pull/3577) * [OCPBUGS-6002](https://issues.redhat.com/browse/OCPBUGS-6002): There are not enough logs in case "oc extract" is stuck in mco first boot in mco first boot [#3497](https://github.com/openshift/machine-config-operator/pull/3497) * [OCPBUGS-5694](https://issues.redhat.com/browse/OCPBUGS-5694): 4.11 - remove goutils from dependency tree [#3499](https://github.com/openshift/machine-config-operator/pull/3499) * [OCPBUGS-3507](https://issues.redhat.com/browse/OCPBUGS-3507): On-prem: Ensure resolv-prepender respects NM dispatcher timeout [#3422](https://github.com/openshift/machine-config-operator/pull/3422) * [OCPBUGS-6622](https://issues.redhat.com/browse/OCPBUGS-6622): controller: don't render new MC until base MCs update [#3511](https://github.com/openshift/machine-config-operator/pull/3511) * [OCPBUGS-4945](https://issues.redhat.com/browse/OCPBUGS-4945): Do not allow empty system reserved values [#3459](https://github.com/openshift/machine-config-operator/pull/3459) * [OCPBUGS-4099](https://issues.redhat.com/browse/OCPBUGS-4099): daemon: gate done state on uncordon completion [#3434](https://github.com/openshift/machine-config-operator/pull/3434) * [OCPBUGS-3882](https://issues.redhat.com/browse/OCPBUGS-3882): Sync controllerconfig anyway if daemon sync fails [#3421](https://github.com/openshift/machine-config-operator/pull/3421) * [OCPBUGS-3807](https://issues.redhat.com/browse/OCPBUGS-3807): configure-ovs: auto-connect ovs-if-phys0 with br-ex [#3419](https://github.com/openshift/machine-config-operator/pull/3419) * [OCPBUGS-3756](https://issues.redhat.com/browse/OCPBUGS-3756): daemon: Stop setting I/O scheduler to bfq [#3418](https://github.com/openshift/machine-config-operator/pull/3418) * [OCPBUGS-2730](https://issues.redhat.com/browse/OCPBUGS-2730): Add ephemeral storage to kubelet system reserved args [#3381](https://github.com/openshift/machine-config-operator/pull/3381) * [OCPBUGS-2091](https://issues.redhat.com/browse/OCPBUGS-2091): [release-4.11] TRT-540: Add privileged label to infra namespaces [#3346](https://github.com/openshift/machine-config-operator/pull/3346) * [OCPBUGS-1939](https://issues.redhat.com/browse/OCPBUGS-1939): Create a drop-in file for cri-o's add inheritable capabilities [#3352](https://github.com/openshift/machine-config-operator/pull/3352) * [OCPBUGS-1099](https://issues.redhat.com/browse/OCPBUGS-1099): Make sure there is a search domain in resolv.conf [#3330](https://github.com/openshift/machine-config-operator/pull/3330) * [Bug 2110283](https://bugzilla.redhat.com/show_bug.cgi?id=2110283): [release-4.11] daemon: Drop tuneableFCOSArgsAllowlist [#3265](https://github.com/openshift/machine-config-operator/pull/3265) * [OCPBUGS-737](https://issues.redhat.com/browse/OCPBUGS-737): Pull container image as a separate step [#3319](https://github.com/openshift/machine-config-operator/pull/3319) * [OCPBUGS-688](https://issues.redhat.com/browse/OCPBUGS-688): Adding day2 remote worker node requires manually approving CSRs [#3305](https://github.com/openshift/machine-config-operator/pull/3305) * [OCPBUGS-509](https://issues.redhat.com/browse/OCPBUGS-509): Fix .ssh directory not owned by core when created by Machine Config D… [#3307](https://github.com/openshift/machine-config-operator/pull/3307) * [Bug 2118586](https://bugzilla.redhat.com/show_bug.cgi?id=2118586): on-prem: improvements on resolv-prepender [#3287](https://github.com/openshift/machine-config-operator/pull/3287) * [OCPBUGS-197](https://issues.redhat.com/browse/OCPBUGS-197): daemon: Add a workaround for bug 2111817 [#3292](https://github.com/openshift/machine-config-operator/pull/3292) * [Bug 2110737](https://bugzilla.redhat.com/show_bug.cgi?id=2110737): Master node in SchedulingDisabled after upgrade from 4.10.24 -> 4.11.0-rc.4 [#3267](https://github.com/openshift/machine-config-operator/pull/3267) * [Bug 2104510](https://bugzilla.redhat.com/show_bug.cgi?id=2104510): [release-4.11] Update ose-machine-config-operator images to be consistent with ART [#3229](https://github.com/openshift/machine-config-operator/pull/3229) * [Bug 2104687](https://bugzilla.redhat.com/show_bug.cgi?id=2104687): drain controller: don't skip the MCC pod drain [#3234](https://github.com/openshift/machine-config-operator/pull/3234) * [Bug 2104386](https://bugzilla.redhat.com/show_bug.cgi?id=2104386): Fix problem with retaining data in string array in piped while loop [#3245](https://github.com/openshift/machine-config-operator/pull/3245) * [Bug 2103899](https://bugzilla.redhat.com/show_bug.cgi?id=2103899): configure-ovs: clone inactive autoconnect slaves [#3220](https://github.com/openshift/machine-config-operator/pull/3220) * [Bug 2106723](https://bugzilla.redhat.com/show_bug.cgi?id=2106723): Remove rollback deployment [#3249](https://github.com/openshift/machine-config-operator/pull/3249) * [Bug 2104561](https://bugzilla.redhat.com/show_bug.cgi?id=2104561): pkg/controller/common/helpers: Explicitly set mode 0644 [#3232](https://github.com/openshift/machine-config-operator/pull/3232) * [Bug 2103749](https://bugzilla.redhat.com/show_bug.cgi?id=2103749): daemon: initialize nodewriter before login monitor [#3219](https://github.com/openshift/machine-config-operator/pull/3219) * [Bug 2103080](https://bugzilla.redhat.com/show_bug.cgi?id=2103080): configure-ovs: set mac only for non fail_over_mac bonds [#3216](https://github.com/openshift/machine-config-operator/pull/3216) * [Bug 2102834](https://bugzilla.redhat.com/show_bug.cgi?id=2102834): NS manifest: Set empty openshift.io/run-level [#3221](https://github.com/openshift/machine-config-operator/pull/3221) * [Bug 1817075](https://bugzilla.redhat.com/show_bug.cgi?id=1817075): MCC & MCO don't free leader leases during shut down -> 10 minutes of leader election timeouts [#3185](https://github.com/openshift/machine-config-operator/pull/3185) * [Bug 2092442](https://bugzilla.redhat.com/show_bug.cgi?id=2092442): drain_controller: slow down retries for failing nodes [#3178](https://github.com/openshift/machine-config-operator/pull/3178) * [Bug 2096496](https://bugzilla.redhat.com/show_bug.cgi?id=2096496): controller: de-couple FIPS and realtime detection [#3200](https://github.com/openshift/machine-config-operator/pull/3200) * [Bug 2096413](https://bugzilla.redhat.com/show_bug.cgi?id=2096413): configure-ovs: improve handling of static ip and mac address configuration [#3190](https://github.com/openshift/machine-config-operator/pull/3190) * [Bug 2005694](https://bugzilla.redhat.com/show_bug.cgi?id=2005694): Removing proxy object takes up to 10 minutes for the changes to propagate to the MCO [#3166](https://github.com/openshift/machine-config-operator/pull/3166) * [Bug 2090794](https://bugzilla.redhat.com/show_bug.cgi?id=2090794): drain controller: continue retry after 1h timeout [#3167](https://github.com/openshift/machine-config-operator/pull/3167) * [Bug 2092003](https://bugzilla.redhat.com/show_bug.cgi?id=2092003): Fixup of URL for AWS unit/file to compute instance provider-id [#3170](https://github.com/openshift/machine-config-operator/pull/3170) * [Bug 2089775](https://bugzilla.redhat.com/show_bug.cgi?id=2089775): Fix regexp in keepalived script chk_default_ingress.sh [#3156](https://github.com/openshift/machine-config-operator/pull/3156) * [Bug 2087687](https://bugzilla.redhat.com/show_bug.cgi?id=2087687): MCO does not generate event when user applies Default -> LowUpdateSlowReaction WorkerLatencyProfile [#3163](https://github.com/openshift/machine-config-operator/pull/3163) * Updating openshift-proxy-pull-test images to be consistent with ART [#2935](https://github.com/openshift/machine-config-operator/pull/2935) * [Bug 2090358](https://bugzilla.redhat.com/show_bug.cgi?id=2090358): Move drain log message to when drain starts [#3168](https://github.com/openshift/machine-config-operator/pull/3168) * [Bug 2089687](https://bugzilla.redhat.com/show_bug.cgi?id=2089687): Update alert message for drain failure [#3169](https://github.com/openshift/machine-config-operator/pull/3169) * [Bug 2045559](https://bugzilla.redhat.com/show_bug.cgi?id=2045559): Increase keepalived API check fall value to 3 [#3158](https://github.com/openshift/machine-config-operator/pull/3158) * [Bug 2090436](https://bugzilla.redhat.com/show_bug.cgi?id=2090436): It takes 30min-60min to update the machine count in custom MachineConfigPools (MCPs) when a node is removed from the pool [#3165](https://github.com/openshift/machine-config-operator/pull/3165) * [Bug 2091730](https://bugzilla.redhat.com/show_bug.cgi?id=2091730): create openshift-monitoring token in e2e [#3172](https://github.com/openshift/machine-config-operator/pull/3172) * Revert "Merge pull request #3162 from damdo/BZ2084450-2" [#3175](https://github.com/openshift/machine-config-operator/pull/3175) * [Bug 2084450](https://bugzilla.redhat.com/show_bug.cgi?id=2084450): Add unit/file for AWS to compute instance provider-id and pass it to the kubelet [#3162](https://github.com/openshift/machine-config-operator/pull/3162) * [Bug 1948551](https://bugzilla.redhat.com/show_bug.cgi?id=1948551): apiserver-watcher should run in a privileged namespace [#3107](https://github.com/openshift/machine-config-operator/pull/3107) * [Bug 2012969](https://bugzilla.redhat.com/show_bug.cgi?id=2012969): emit kube events for skipped and upgraded OSes [#3153](https://github.com/openshift/machine-config-operator/pull/3153) * [Bug 2086728](https://bugzilla.redhat.com/show_bug.cgi?id=2086728): Move node draining to controller. Remove MCD privs [#3135](https://github.com/openshift/machine-config-operator/pull/3135) * [Bug 2078866](https://bugzilla.redhat.com/show_bug.cgi?id=2078866): configure-ovs: avoid restarting NetworkManager [#3120](https://github.com/openshift/machine-config-operator/pull/3120) * [Bug 2086728](https://bugzilla.redhat.com/show_bug.cgi?id=2086728): Improves Config Drift Monitor e2e tests [#3146](https://github.com/openshift/machine-config-operator/pull/3146) * [Bug 2056442](https://bugzilla.redhat.com/show_bug.cgi?id=2056442): Bug fix for node drain caused by ICSP objects [#3144](https://github.com/openshift/machine-config-operator/pull/3144) * Allow blocking payload reg if it has mirrors configured [#2819](https://github.com/openshift/machine-config-operator/pull/2819) * daemon: Have nodeWriter maintain ref to lister and node name [#3143](https://github.com/openshift/machine-config-operator/pull/3143) * manifests: Lower daemon RBAC permissions on machineconfig objects [#3140](https://github.com/openshift/machine-config-operator/pull/3140) * [RFE-2703](https://issues.redhat.com/browse/RFE-2703): add prometheus rules for master memory usage [#3124](https://github.com/openshift/machine-config-operator/pull/3124) * [low priority] test/helpers: fix typo hardcoded pool [#3061](https://github.com/openshift/machine-config-operator/pull/3061) * Use library-go resourcemerge helper functions [#3078](https://github.com/openshift/machine-config-operator/pull/3078) * [Bug 2076355](https://bugzilla.redhat.com/show_bug.cgi?id=2076355): fix MCNameSuffix when kcfg ctrrcfg after bootstrap config [#3093](https://github.com/openshift/machine-config-operator/pull/3093) * OWNERS: remove mkenigs, add raisaat [#3139](https://github.com/openshift/machine-config-operator/pull/3139) * removed the workerlatencyprofile status related code [#3129](https://github.com/openshift/machine-config-operator/pull/3129) * [Bug 2080267](https://bugzilla.redhat.com/show_bug.cgi?id=2080267): [vsphere] remove warning encountered on vSphere UPI cluster without API VIP [#3132](https://github.com/openshift/machine-config-operator/pull/3132) * colin's small patches rollup [#3108](https://github.com/openshift/machine-config-operator/pull/3108) * Move Ignition file generation to controller/common, fix Compression [#3128](https://github.com/openshift/machine-config-operator/pull/3128) * [Bug 2081119](https://bugzilla.redhat.com/show_bug.cgi?id=2081119): drop doc overlaysize default [#3127](https://github.com/openshift/machine-config-operator/pull/3127) * [Bug 2076521](https://bugzilla.redhat.com/show_bug.cgi?id=2076521): mcc: update node sort to account for matching zones [#3125](https://github.com/openshift/machine-config-operator/pull/3125) * daemon: Validate kernel arguments [#3105](https://github.com/openshift/machine-config-operator/pull/3105) * [Bug 2078945](https://bugzilla.redhat.com/show_bug.cgi?id=2078945): Ensure only one apiserver-watcher process is active on a node. [#3106](https://github.com/openshift/machine-config-operator/pull/3106) * Do not check for status of other operators for node config [#3111](https://github.com/openshift/machine-config-operator/pull/3111) * [Bug 2072040](https://bugzilla.redhat.com/show_bug.cgi?id=2072040): Avoid NM managing patch port between br-int and br-ex [#3059](https://github.com/openshift/machine-config-operator/pull/3059) * nodecontroller: 3 logging patches [#3104](https://github.com/openshift/machine-config-operator/pull/3104) * kcfg controller remove cleanupmc [#3096](https://github.com/openshift/machine-config-operator/pull/3096) * [Bug 2076975](https://bugzilla.redhat.com/show_bug.cgi?id=2076975): OVN Kubernetes configure-ovs-network set static if conversion metric [#3100](https://github.com/openshift/machine-config-operator/pull/3100) * daemon: Add some logging for state [#3102](https://github.com/openshift/machine-config-operator/pull/3102) * workerlatency profiles - updating the kubelet configuration based on the nodes.config.openshift.io resource [#3015](https://github.com/openshift/machine-config-operator/pull/3015) * [Bug 2066605](https://bugzilla.redhat.com/show_bug.cgi?id=2066605): [on-prem] make Corefile api matching stricter [#3033](https://github.com/openshift/machine-config-operator/pull/3033) * Kubelet: apply default podPidsLimit [#3085](https://github.com/openshift/machine-config-operator/pull/3085) * [Bug 2073021](https://bugzilla.redhat.com/show_bug.cgi?id=2073021): firstboot: Retry on failure [#3070](https://github.com/openshift/machine-config-operator/pull/3070) * Revise KubeVirt platform for hypershift usage [#3084](https://github.com/openshift/machine-config-operator/pull/3084) * Deprecate the use of pkg/errors [#2868](https://github.com/openshift/machine-config-operator/pull/2868) * [Bug 2074613](https://bugzilla.redhat.com/show_bug.cgi?id=2074613): templates: Don't use `:z` with podman on system directories [#3079](https://github.com/openshift/machine-config-operator/pull/3079) * [Bug 2035005](https://bugzilla.redhat.com/show_bug.cgi?id=2035005): Move removeUpdateInProgressTaint functionality to mcc [#3064](https://github.com/openshift/machine-config-operator/pull/3064) * [low priority] kubelet controller: rm unused userDefinedSystemReserved [#3054](https://github.com/openshift/machine-config-operator/pull/3054) * mcc/node controller: order node updates by zone [#3009](https://github.com/openshift/machine-config-operator/pull/3009) * [low priority] update_test: remove redundant types [#3082](https://github.com/openshift/machine-config-operator/pull/3082) * updateKernelArgs: pass kargs instead of MCs [#3055](https://github.com/openshift/machine-config-operator/pull/3055) * daemon: add desiredConfigMap mode for Hypershift [#3068](https://github.com/openshift/machine-config-operator/pull/3068) * daemon: add a comment explaining CoreOSDaemon [#3080](https://github.com/openshift/machine-config-operator/pull/3080) * adds zacks hack scripts [#2953](https://github.com/openshift/machine-config-operator/pull/2953) * [Bug 2069740](https://bugzilla.redhat.com/show_bug.cgi?id=2069740): Avoid kubernetes node port range [#3044](https://github.com/openshift/machine-config-operator/pull/3044) * Update github.com/containers/image [#2695](https://github.com/openshift/machine-config-operator/pull/2695) * Render Nutanix cloud provider as blank. [#3051](https://github.com/openshift/machine-config-operator/pull/3051) * Create MCONamespace constant [#3025](https://github.com/openshift/machine-config-operator/pull/3025) * [Bug 2055433](https://bugzilla.redhat.com/show_bug.cgi?id=2055433): configure-ovs: set networking on before restarting NetworkManager [#3006](https://github.com/openshift/machine-config-operator/pull/3006) * [Bug 1949827](https://bugzilla.redhat.com/show_bug.cgi?id=1949827): Add KUBELET_NODEIP_HINT to nodeip-configuration [#2888](https://github.com/openshift/machine-config-operator/pull/2888) * [Bug 2058030](https://bugzilla.redhat.com/show_bug.cgi?id=2058030): configure-ovs: move dhcp config from br-ex to ovs-if-br-ex [#3024](https://github.com/openshift/machine-config-operator/pull/3024) * start.go: rm orphaned err check [#3042](https://github.com/openshift/machine-config-operator/pull/3042) * [Bug 2067857](https://bugzilla.redhat.com/show_bug.cgi?id=2067857): prometheus/client_golang v1.11.0 -> v1.12.1 [#3038](https://github.com/openshift/machine-config-operator/pull/3038) * mcd: Remove redundant MkdirAll call in update.go [#2895](https://github.com/openshift/machine-config-operator/pull/2895) * Remove runtime request timeout restriction [#3026](https://github.com/openshift/machine-config-operator/pull/3026) * [Bug 2068613](https://bugzilla.redhat.com/show_bug.cgi?id=2068613): ClusterRoleUpdated/ClusterRoleBindingUpdated Spamming Event Logs [#3040](https://github.com/openshift/machine-config-operator/pull/3040) * [Bug 2057160](https://bugzilla.redhat.com/show_bug.cgi?id=2057160): configure-ovs.sh: Provide store hint for default route interface [#2971](https://github.com/openshift/machine-config-operator/pull/2971) * Move log statement to UpdateTuningArgs [#3032](https://github.com/openshift/machine-config-operator/pull/3032) * build-sys: Default to `make binaries` [#3035](https://github.com/openshift/machine-config-operator/pull/3035) * e2e: Use `/proc/cmdline` instead of `rpm-ostree kargs` [#3034](https://github.com/openshift/machine-config-operator/pull/3034) * Fix description typo in osImageURL CRD parameter [#3029](https://github.com/openshift/machine-config-operator/pull/3029) * Add Nutanix Platform to Machine Config Operator [#2942](https://github.com/openshift/machine-config-operator/pull/2942) * bootstrap_test.go: remove unused constants [#3023](https://github.com/openshift/machine-config-operator/pull/3023) * Make our resourcemerge fork update a container's Resources.Requests, un-revert #2802 [#3028](https://github.com/openshift/machine-config-operator/pull/3028) * Revert "Send alert when MCO can't safely apply updated Kubelet CA on nodes in paused pool" [#3027](https://github.com/openshift/machine-config-operator/pull/3027) * Send alert when MCO can't safely apply updated Kubelet CA on nodes in paused pool [#2802](https://github.com/openshift/machine-config-operator/pull/2802) * server/api_test: Adjust expected error message for Go 1.18 [#3019](https://github.com/openshift/machine-config-operator/pull/3019) * Enable unicast keepalived for all on-prem platforms [#3016](https://github.com/openshift/machine-config-operator/pull/3016) * templates: Clean out filesystem properties [#2894](https://github.com/openshift/machine-config-operator/pull/2894) * [Bug 2063324](https://bugzilla.redhat.com/show_bug.cgi?id=2063324): Ensure directories are created with usable permission bits [#3011](https://github.com/openshift/machine-config-operator/pull/3011) * enhance MCO test library [#3000](https://github.com/openshift/machine-config-operator/pull/3000) * Bump(openshift/api): to get CSI changes [#3010](https://github.com/openshift/machine-config-operator/pull/3010) * daemon: get the apiserver url from the kubelet's kubeconfig [#2978](https://github.com/openshift/machine-config-operator/pull/2978) * Update vendored Ignition to v2.13 [#2996](https://github.com/openshift/machine-config-operator/pull/2996) * daemon.go/update.go: various cleanup surrounding OS updates [#2973](https://github.com/openshift/machine-config-operator/pull/2973) * Remove unused etcd images [#3001](https://github.com/openshift/machine-config-operator/pull/3001) * daemon: bootimage and ignition logging [#2994](https://github.com/openshift/machine-config-operator/pull/2994) * configure-ovs: reload NM only when necessary [#2992](https://github.com/openshift/machine-config-operator/pull/2992) * Add `--templates` flag to MCC `bootstrap` command [#2995](https://github.com/openshift/machine-config-operator/pull/2995) * Preparatory patches for bumping fcct -> butane [#2980](https://github.com/openshift/machine-config-operator/pull/2980) * [Bug 2060133](https://bugzilla.redhat.com/show_bug.cgi?id=2060133): Explicitly set keyfile as the default plugin [#2984](https://github.com/openshift/machine-config-operator/pull/2984) * Use afterburn to collect instance metadata in order to populate nodename [#2988](https://github.com/openshift/machine-config-operator/pull/2988) * Remove `bindata.go` [#2983](https://github.com/openshift/machine-config-operator/pull/2983) * Add new extension for kerberos [#2979](https://github.com/openshift/machine-config-operator/pull/2979) * [Bug 2048352](https://bugzilla.redhat.com/show_bug.cgi?id=2048352): ovn-kubernetes: Fixed ofport_request for physical ports [#2941](https://github.com/openshift/machine-config-operator/pull/2941) * [Bug 2050466](https://bugzilla.redhat.com/show_bug.cgi?id=2050466): Not allow empty string in icsp&image CR [#2969](https://github.com/openshift/machine-config-operator/pull/2969) * [Bug 2058626](https://bugzilla.redhat.com/show_bug.cgi?id=2058626): Revert "Bump(openshift/api): to get CSI changes" [#2968](https://github.com/openshift/machine-config-operator/pull/2968) * Bump(openshift/api): to get CSI changes [#2949](https://github.com/openshift/machine-config-operator/pull/2949) * [Bug 2041814](https://bugzilla.redhat.com/show_bug.cgi?id=2041814): do not generate new KubeletConfigKey for the first kubel… [#2936](https://github.com/openshift/machine-config-operator/pull/2936) * OpenStack: set transient hostname in afterburn-hostname [#2945](https://github.com/openshift/machine-config-operator/pull/2945) * [Bug 1929160](https://bugzilla.redhat.com/show_bug.cgi?id=1929160): Add NetworkManager reload to resolv-prepender [#2488](https://github.com/openshift/machine-config-operator/pull/2488) * test/helpers: use `RetryOnConflict` for node writes [#2921](https://github.com/openshift/machine-config-operator/pull/2921) * updates docs for config drift detection [#2872](https://github.com/openshift/machine-config-operator/pull/2872) * templates: Change default container-runtime config to enable all CRI-O metrics [#2911](https://github.com/openshift/machine-config-operator/pull/2911) * Revert "Remove sysctl-inotify.conf.yaml" [#2944](https://github.com/openshift/machine-config-operator/pull/2944) * Remove sysctl-inotify.conf.yaml [#2909](https://github.com/openshift/machine-config-operator/pull/2909) * [Bug 2047445](https://bugzilla.redhat.com/show_bug.cgi?id=2047445): Use ip command to check for ipv6 addresses [#2934](https://github.com/openshift/machine-config-operator/pull/2934) * Add Christoph as a baremetal owner [#2920](https://github.com/openshift/machine-config-operator/pull/2920) * docs: Update links from "Optimized Updates" to "Rebootless Updates" [#2913](https://github.com/openshift/machine-config-operator/pull/2913) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/59a8d308bfa4cd89abdec9d345e396fe9dafd7b0...15d0b0288a4330b90ac89f14c781dfa7349af52c) ### [machine-os-images](https://github.com/openshift/machine-os-images/tree/b1580a29e6bc76598c2d408c0e27460bc6b638be) * [OCPBUGS-892](https://issues.redhat.com/browse/OCPBUGS-892): Update rhcos release browser url [#22](https://github.com/openshift/machine-os-images/pull/22) * [Bug 2090017](https://bugzilla.redhat.com/show_bug.cgi?id=2090017): Get rid of lookaside cache in OCP build [#15](https://github.com/openshift/machine-os-images/pull/15) * Revert .ci-operator.yaml [#16](https://github.com/openshift/machine-os-images/pull/16) * Updating ose-machine-os-images images to be consistent with ART [#11](https://github.com/openshift/machine-os-images/pull/11) * [Bug 2075024](https://bugzilla.redhat.com/show_bug.cgi?id=2075024): Remove destination coreos if it exists [#13](https://github.com/openshift/machine-os-images/pull/13) * uncompress arm64 vmlinuz for pxe booting [#12](https://github.com/openshift/machine-os-images/pull/12) * [Full changelog](https://github.com/openshift/machine-os-images/compare/09a132b7c844082fe6945b327fd0243d5a729f7c...b1580a29e6bc76598c2d408c0e27460bc6b638be) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/dbbd93bebf0fe24394ea26588c5e02de7d575764) * [OCPBUGS-21309](https://issues.redhat.com/browse/OCPBUGS-21309): Update go.mod for CVE-2023-39325 [Release-4.11] [#74](https://github.com/openshift/multus-admission-controller/pull/74) * Updating ose-multus-admission-controller images to be consistent with ART [#63](https://github.com/openshift/multus-admission-controller/pull/63) * [OCPBUGS-9784](https://issues.redhat.com/browse/OCPBUGS-9784): Client golang [backport 4.11] [#60](https://github.com/openshift/multus-admission-controller/pull/60) * [OCPBUGS-6176](https://issues.redhat.com/browse/OCPBUGS-6176): Configure ignored namespaces into multus-admission-controller [#56](https://github.com/openshift/multus-admission-controller/pull/56) * Updating ose-multus-admission-controller images to be consistent with ART [#44](https://github.com/openshift/multus-admission-controller/pull/44) * Updating ose-multus-admission-controller images to be consistent with ART [#42](https://github.com/openshift/multus-admission-controller/pull/42) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/8557de96b849421acf495693b5e1375d6b4d88e9...dbbd93bebf0fe24394ea26588c5e02de7d575764) ### [multus-cni](https://github.com/openshift/multus-cni/tree/a3dbf84666cbdabbbfbcfb63cefc98877fe67361) * [OCPBUGS-21040](https://issues.redhat.com/browse/OCPBUGS-21040): Update go.mod for CVE-2023-39325 [Release-4.11] [#197](https://github.com/openshift/multus-cni/pull/197) * Updating multus-cni images to be consistent with ART [#155](https://github.com/openshift/multus-cni/pull/155) * [OCPBUGS-9863](https://issues.redhat.com/browse/OCPBUGS-9863): Multus sync to OCP 4.11 mar-21-2023 [#152](https://github.com/openshift/multus-cni/pull/152) * [Bug 2092839](https://bugzilla.redhat.com/show_bug.cgi?id=2092839): Fix missing device-info in networks-status annotation for chained plugins [#131](https://github.com/openshift/multus-cni/pull/131) * [Bug 2071799](https://bugzilla.redhat.com/show_bug.cgi?id=2071799): Skip status update in CmdDel if getPod is failed [#130](https://github.com/openshift/multus-cni/pull/130) * Updating multus-cni images to be consistent with ART [#119](https://github.com/openshift/multus-cni/pull/119) * [Bug 2082360](https://bugzilla.redhat.com/show_bug.cgi?id=2082360): Bumps net-attach-def client library (for CNI v1.0 IP compatibility) [#127](https://github.com/openshift/multus-cni/pull/127) * types: fix usage of strings.Split() for parsing CNI_ARGS (#836) [#126](https://github.com/openshift/multus-cni/pull/126) * [Bug 2071799](https://bugzilla.redhat.com/show_bug.cgi?id=2071799): Remove error handling for getPod to force to proceed cmdDel. [#124](https://github.com/openshift/multus-cni/pull/124) * [Bug 2038019](https://bugzilla.redhat.com/show_bug.cgi?id=2038019): Upstream sync for 4.11 [#121](https://github.com/openshift/multus-cni/pull/121) * crio: mount /run rslave [#120](https://github.com/openshift/multus-cni/pull/120) * [Full changelog](https://github.com/openshift/multus-cni/compare/09993f095b446e28932a3ba9c201ea38cab04d85...a3dbf84666cbdabbbfbcfb63cefc98877fe67361) ### [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy/tree/6bc780e4f79cc1d666249da342fff1805c1121bf) * [OCPBUGS-21412](https://issues.redhat.com/browse/OCPBUGS-21412): Update go.mod for CVE-2023-39325 [Release-4.11] (#37) [#37](https://github.com/openshift/multus-networkpolicy/pull/37) * Updating multus-networkpolicy images to be consistent with ART (#16) [#16](https://github.com/openshift/multus-networkpolicy/pull/16) * Updating multus-networkpolicy images to be consistent with ART (#15) [#15](https://github.com/openshift/multus-networkpolicy/pull/15) * [Full changelog](https://github.com/openshift/multus-networkpolicy/compare/f545a32b3a90abe5fb96d7058153e8b63e16d63f...6bc780e4f79cc1d666249da342fff1805c1121bf) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/523b79044306b7590ad449d7eab06a233d687d86) * Updating ose-multus-route-override-cni images to be consistent with ART [#25](https://github.com/openshift/route-override-cni/pull/25) * Updating ose-multus-route-override-cni images to be consistent with ART [#21](https://github.com/openshift/route-override-cni/pull/21) * [Full changelog](https://github.com/openshift/route-override-cni/compare/707dd38046554810f601f2fae4a69bc4b907d7d3...523b79044306b7590ad449d7eab06a233d687d86) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/7d544f9f2c44303f28dcc6dd4d5620da24907d9c) * [OCPBUGS-5954](https://issues.redhat.com/browse/OCPBUGS-5954): Denormalize IP name before checking if pod is alive [Backport 4.11] [#182](https://github.com/openshift/whereabouts-cni/pull/182) * [OCPBUGS-13241](https://issues.redhat.com/browse/OCPBUGS-13241): Added trailing 0 to ipv6 ranges that end in ":" [Backport 4.11] [#132](https://github.com/openshift/whereabouts-cni/pull/132) * [OCPBUGS-11067](https://issues.redhat.com/browse/OCPBUGS-11067): respect requested allocation range when exluding ranges [backport 4.11] [#124](https://github.com/openshift/whereabouts-cni/pull/124) * [OCPBUGS-3942](https://issues.redhat.com/browse/OCPBUGS-3942): Excluded ranges bug (#282) [#104](https://github.com/openshift/whereabouts-cni/pull/104) * [OCPBUGS-1658](https://issues.redhat.com/browse/OCPBUGS-1658): ip-reconciler Add all non default interfaces to Pod IP list [backport 4.11] [#97](https://github.com/openshift/whereabouts-cni/pull/97) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#81](https://github.com/openshift/whereabouts-cni/pull/81) * [Bug 2065785](https://bugzilla.redhat.com/show_bug.cgi?id=2065785): Sync upstream for context improvements [#87](https://github.com/openshift/whereabouts-cni/pull/87) * [Bug 2050409](https://bugzilla.redhat.com/show_bug.cgi?id=2050409): ip-reconciler should have known errors from api server on instantiation [#84](https://github.com/openshift/whereabouts-cni/pull/84) * [Bug 2052055](https://bugzilla.redhat.com/show_bug.cgi?id=2052055): client-go bump to v1.22 [#82](https://github.com/openshift/whereabouts-cni/pull/82) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/2381402a17778cc0853e30b554c9884a51a7ac06...7d544f9f2c44303f28dcc6dd4d5620da24907d9c) ### [must-gather](https://github.com/openshift/must-gather/tree/44f6adacb094952723f957d4d7d61043b6f2fe04) * [OCPBUGS-4324](https://issues.redhat.com/browse/OCPBUGS-4324): backport PodNetworkConnectivityCheck gather script #334 [#338](https://github.com/openshift/must-gather/pull/338) * [Bug 2104701](https://bugzilla.redhat.com/show_bug.cgi?id=2104701): Add timeout to oc cp command to fix must-gather delays when routers are terminating [#318](https://github.com/openshift/must-gather/pull/318) * Updating ose-must-gather images to be consistent with ART [#302](https://github.com/openshift/must-gather/pull/302) * [Bug 2097346](https://bugzilla.redhat.com/show_bug.cgi?id=2097346): Updates how gether_monitoring obtains SA token [#313](https://github.com/openshift/must-gather/pull/313) * [Bug 2091658](https://bugzilla.redhat.com/show_bug.cgi?id=2091658): Improve the sriov gather script [#305](https://github.com/openshift/must-gather/pull/305) * [Bug 2090730](https://bugzilla.redhat.com/show_bug.cgi?id=2090730): Adds collection of Multus log files [#306](https://github.com/openshift/must-gather/pull/306) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): fix getting deployment name [#303](https://github.com/openshift/must-gather/pull/303) * [Bug 1999529](https://bugzilla.redhat.com/show_bug.cgi?id=1999529): Filter disabled resources in inspection to proceed others [#296](https://github.com/openshift/must-gather/pull/296) * fix gather_insights collection [#301](https://github.com/openshift/must-gather/pull/301) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): Add networking resources [#300](https://github.com/openshift/must-gather/pull/300) * Add SR-IOV gather script [#297](https://github.com/openshift/must-gather/pull/297) * gather_profiling_node: correctly manage NotReady Nodes [#299](https://github.com/openshift/must-gather/pull/299) * Add new metallb crds to the gather script [#295](https://github.com/openshift/must-gather/pull/295) * add capability for oauth-server audit logging [#265](https://github.com/openshift/must-gather/pull/265) * Simplify CRD collection [#293](https://github.com/openshift/must-gather/pull/293) * [Bug 2062355](https://bugzilla.redhat.com/show_bug.cgi?id=2062355): Collect NMState resources when operator is installed [#292](https://github.com/openshift/must-gather/pull/292) * List the pods by label app=etcd to only list etcd pods [#289](https://github.com/openshift/must-gather/pull/289) * [WINC-708](https://issues.redhat.com/browse/WINC-708): Collect containerd logs on Windows instances [#290](https://github.com/openshift/must-gather/pull/290) * [Bug 2054319](https://bugzilla.redhat.com/show_bug.cgi?id=2054319): Fix the namespace extract filter [#286](https://github.com/openshift/must-gather/pull/286) * RUNNING_ETCD_POD must not be a quorum pod for must-gather [#276](https://github.com/openshift/must-gather/pull/276) * collection-scripts: allow collection of CRI-O profiling data [#285](https://github.com/openshift/must-gather/pull/285) * Collect prometheus target details [#277](https://github.com/openshift/must-gather/pull/277) * Updating ose-must-gather images to be consistent with ART [#281](https://github.com/openshift/must-gather/pull/281) * Add script to collect kubelet profiling data [#273](https://github.com/openshift/must-gather/pull/273) * [Full changelog](https://github.com/openshift/must-gather/compare/db7f815b979352e130967695b4a08f4f2c886bfb...44f6adacb094952723f957d4d7d61043b6f2fe04) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/b76a677034edb66ddaf123cb79a2bb20a301f694) * [Bug 2112297](https://bugzilla.redhat.com/show_bug.cgi?id=2112297): Backport "mac duplicates" [#41](https://github.com/openshift/bond-cni/pull/41) * Updating ose-network-interface-bond-cni images to be consistent with ART [#32](https://github.com/openshift/bond-cni/pull/32) * ds merges: IPAM fix, tests, bond interface name fix [#31](https://github.com/openshift/bond-cni/pull/31) * Updating ose-network-interface-bond-cni images to be consistent with ART [#30](https://github.com/openshift/bond-cni/pull/30) * [Full changelog](https://github.com/openshift/bond-cni/compare/6edc4a731f7db838f8693c918fe23fd971eb5689...b76a677034edb66ddaf123cb79a2bb20a301f694) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/ec215698a4984fab85b29966bbdd420f1bbc58f4) * Update golang.org/x/net to v0.17.0 (#85) [#85](https://github.com/openshift/network-metrics-daemon/pull/85) * Update golang.org/x/text to 0.7.0 (#67) [#67](https://github.com/openshift/network-metrics-daemon/pull/67) * Updating ose-network-metrics-daemon images to be consistent with ART (#46) [#46](https://github.com/openshift/network-metrics-daemon/pull/46) * Updated prometheus client_golang version to v1.11.1 (#48) [#48](https://github.com/openshift/network-metrics-daemon/pull/48) * Fix field selector (#49) [#49](https://github.com/openshift/network-metrics-daemon/pull/49) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/234c13885e0c00a3b3f4f1bf81a868c82508dd2d...ec215698a4984fab85b29966bbdd420f1bbc58f4) ### [network-tools](https://github.com/openshift/network-tools/tree/4e87286cff4d645777cf2632a0671eed0d82270c) * Updating ose-network-tools images to be consistent with ART [#61](https://github.com/openshift/network-tools/pull/61) * [Bug 2043094](https://bugzilla.redhat.com/show_bug.cgi?id=2043094): Add ovn clean conntrack functionality [#55](https://github.com/openshift/network-tools/pull/55) * Updating ose-network-tools images to be consistent with ART [#54](https://github.com/openshift/network-tools/pull/54) * Add docs for invoking ovnkube-trace [#56](https://github.com/openshift/network-tools/pull/56) * [Full changelog](https://github.com/openshift/network-tools/compare/bcfec9c5a054f4c60356175b42a2477ec181fbd9...4e87286cff4d645777cf2632a0671eed0d82270c) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/c9c2dd15751d391a6a81ceee744db7b2d07a208b) * [OCPBUGS-2140](https://issues.redhat.com/browse/OCPBUGS-2140): [release-4.11] bump kube to 1.24.4 to fix group sync [#84](https://github.com/openshift/oauth-apiserver/pull/84) * Updating ose-oauth-apiserver images to be consistent with ART [#69](https://github.com/openshift/oauth-apiserver/pull/69) * bump kube to 1.23.1 [#75](https://github.com/openshift/oauth-apiserver/pull/75) * [Bug 2049155](https://bugzilla.redhat.com/show_bug.cgi?id=2049155): fix printers to avoid panic from DeepCopy [#71](https://github.com/openshift/oauth-apiserver/pull/71) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/cd4f5bb0d9792c582dc70bd186a3a1580abc5fc0...c9c2dd15751d391a6a81ceee744db7b2d07a208b) ### [oauth-proxy](https://github.com/openshift/oauth-proxy/tree/aad1b28fcf4b32d9ad592eee33e439bd575565a2) * Use resourceName in Openshift SAR rule [#243](https://github.com/openshift/oauth-proxy/pull/243) * Updating golang-github-openshift-oauth-proxy images to be consistent with ART [#241](https://github.com/openshift/oauth-proxy/pull/241) * [Full changelog](https://github.com/openshift/oauth-proxy/compare/799d414ba87ca5b28d08cf4af07409032c04df2b...aad1b28fcf4b32d9ad592eee33e439bd575565a2) ### [oauth-server](https://github.com/openshift/oauth-server/tree/8d80088ebf859d717e470b47fed9f9014b9226a0) * [Bug 2086505](https://bugzilla.redhat.com/show_bug.cgi?id=2086505): Updating oauth-server images to be consistent with ART [#108](https://github.com/openshift/oauth-server/pull/108) * [Bug 2086465](https://bugzilla.redhat.com/show_bug.cgi?id=2086465): External OAuth: create audit logs for auth events [#103](https://github.com/openshift/oauth-server/pull/103) * [AUTH-100](https://issues.redhat.com/browse/AUTH-100): Add request header authn auditing [#106](https://github.com/openshift/oauth-server/pull/106) * Update external dependencies [#105](https://github.com/openshift/oauth-server/pull/105) * osin: Import from the new openshift module path [#104](https://github.com/openshift/oauth-server/pull/104) * [AUTH-66](https://issues.redhat.com/browse/AUTH-66): turn on audit on oauth-server with PW-based flow [#92](https://github.com/openshift/oauth-server/pull/92) * [Full changelog](https://github.com/openshift/oauth-server/compare/245b95f8a8e28e3960e4d369f3ca9a42be99bdf8...8d80088ebf859d717e470b47fed9f9014b9226a0) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/35df5a026c69f864c3ca499718256f6b2592d811) * [OCPBUGS-4340](https://issues.redhat.com/browse/OCPBUGS-4340): fix printer panic [#336](https://github.com/openshift/openshift-apiserver/pull/336) * [OCPBUGS-2809](https://issues.redhat.com/browse/OCPBUGS-2809): Revert "projects: add rw mutex to auth cache" [#327](https://github.com/openshift/openshift-apiserver/pull/327) * [Bug 2105167](https://bugzilla.redhat.com/show_bug.cgi?id=2105167): Validate Image labels correctly [#296](https://github.com/openshift/openshift-apiserver/pull/296) * Add coreydaley as reviewer/approver for pkg/build [#297](https://github.com/openshift/openshift-apiserver/pull/297) * Use github.com/openshift/runtime-utils/pkg/registries [#205](https://github.com/openshift/openshift-apiserver/pull/205) * [NE-882](https://issues.redhat.com/browse/NE-882): Allow route subdomains to be omitted [#254](https://github.com/openshift/openshift-apiserver/pull/254) * [Bug 2041133](https://bugzilla.redhat.com/show_bug.cgi?id=2041133): Bump openshift/api to 271bd7e1834c62853f1646b1bcb29aa4ec79d7c1 [#286](https://github.com/openshift/openshift-apiserver/pull/286) * [Bug 2049234](https://bugzilla.redhat.com/show_bug.cgi?id=2049234): Fix importing images that have dots in their namespace [#279](https://github.com/openshift/openshift-apiserver/pull/279) * [Bug 2047335](https://bugzilla.redhat.com/show_bug.cgi?id=2047335): fix panic from printer [#275](https://github.com/openshift/openshift-apiserver/pull/275) * [Bug 2047335](https://bugzilla.redhat.com/show_bug.cgi?id=2047335): fix panic from printer [#272](https://github.com/openshift/openshift-apiserver/pull/272) * projects: add rw mutex to auth cache [#267](https://github.com/openshift/openshift-apiserver/pull/267) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/7f883e65efdd40f63a543e5a687a820fa159180f...35df5a026c69f864c3ca499718256f6b2592d811) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/79bfbb51f113f5098a39821f1891a21ffd446434) * [OCPBUGS-23175](https://issues.redhat.com/browse/OCPBUGS-23175): [release-4.11] fix template namespace processing [#277](https://github.com/openshift/openshift-controller-manager/pull/277) * [Bug 2111901](https://bugzilla.redhat.com/show_bug.cgi?id=2111901): Split route controller [#232](https://github.com/openshift/openshift-controller-manager/pull/232) * [Bug 2117746](https://bugzilla.redhat.com/show_bug.cgi?id=2117746): [release-4.11] Rebase k8s 1.24 [#233](https://github.com/openshift/openshift-controller-manager/pull/233) * Updating ose-openshift-controller-manager images to be consistent with ART [#217](https://github.com/openshift/openshift-controller-manager/pull/217) * Add user coreydaley as an approver [#224](https://github.com/openshift/openshift-controller-manager/pull/224) * [NE-860](https://issues.redhat.com/browse/NE-860): ingress-to-route: add support for destinationCACertificate [#218](https://github.com/openshift/openshift-controller-manager/pull/218) * Image trigger handler: Include the object name on error [#221](https://github.com/openshift/openshift-controller-manager/pull/221) * [Bug 2075584](https://bugzilla.redhat.com/show_bug.cgi?id=2075584): Bubble actual error message up to the build [#220](https://github.com/openshift/openshift-controller-manager/pull/220) * [Bug 2067868](https://bugzilla.redhat.com/show_bug.cgi?id=2067868): Update prometheus client_golang from 1.11.0 => 1.11.1 [#219](https://github.com/openshift/openshift-controller-manager/pull/219) * Accept stop signal [#215](https://github.com/openshift/openshift-controller-manager/pull/215) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/2c2d50dbda3a06681a3b9c683c53ff3b3ba3b685...79bfbb51f113f5098a39821f1891a21ffd446434) ### [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics/tree/78bc019d4b7d7a1b215711dcbeec240756a3d562) * [OCPBUGS-20691](https://issues.redhat.com/browse/OCPBUGS-20691): bump `x/net` to v0.17.0 [#105](https://github.com/openshift/openshift-state-metrics/pull/105) * Updating openshift-state-metrics images to be consistent with ART [#87](https://github.com/openshift/openshift-state-metrics/pull/87) * Updates OWNERS file [#86](https://github.com/openshift/openshift-state-metrics/pull/86) * [Bug 2067783](https://bugzilla.redhat.com/show_bug.cgi?id=2067783): Bump client_golang to v1.12.1 [#85](https://github.com/openshift/openshift-state-metrics/pull/85) * Use service CA beta annotation [#84](https://github.com/openshift/openshift-state-metrics/pull/84) * Updating openshift-state-metrics images to be consistent with ART [#81](https://github.com/openshift/openshift-state-metrics/pull/81) * Adding the right build comment as per go 1.17 [#82](https://github.com/openshift/openshift-state-metrics/pull/82) * [Full changelog](https://github.com/openshift/openshift-state-metrics/compare/e5c50aae141e4f72c6843a3964f167bec6e79475...78bc019d4b7d7a1b215711dcbeec240756a3d562) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/a6d74d7263737fda5684f54bae26b388e7cdee63) * [OCPBUGS-21553](https://issues.redhat.com/browse/OCPBUGS-21553): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#138](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/138) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#131](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/131) * Bug OCPBUGS-4103: Add SecretHashAnnotation to node service [#99](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/99) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy (cont) [#88](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/88) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#85](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/85) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#84](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/84) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#83](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/83) * [Bug 2065597](https://bugzilla.redhat.com/show_bug.cgi?id=2065597): Add support for dynamic, user-managed config [#78](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/78) * Mark CSI StorageClass as the default one [#80](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/80) * Add OpenStack team to approvers [#81](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/81) * [Bug 2074292](https://bugzilla.redhat.com/show_bug.cgi?id=2074292): Address CVE-2022-27191 [#79](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/79) * [Bug 2067869](https://bugzilla.redhat.com/show_bug.cgi?id=2067869): Address CVE-2022-21698 [#77](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/77) * Remove Ephemeral mode from the CSI driver [#76](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/76) * [Bug 2061732](https://bugzilla.redhat.com/show_bug.cgi?id=2061732): Fail gracefully on failure to populate cloud info [#74](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/74) * Set fsGroupPolicy in CSIDriver [#75](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/75) * Bump gophercloud [#73](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/73) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#68](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/68) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/12a5dee1b6cbfe7b122c2336b78705e9b0705fc8...a6d74d7263737fda5684f54bae26b388e7cdee63) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/0446d771465fa6e03ea8ed24f1cea706d0d2b15e) * [OCPBUGS-10954](https://issues.redhat.com/browse/OCPBUGS-10954): machineset_controller: Stop caching clouds credentials [#67](https://github.com/openshift/machine-api-provider-openstack/pull/67) * [OCPBUGS-7322](https://issues.redhat.com/browse/OCPBUGS-7322): Address CVE-2022-41717 [#57](https://github.com/openshift/machine-api-provider-openstack/pull/57) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#42](https://github.com/openshift/machine-api-provider-openstack/pull/42) * [Bug 2067844](https://bugzilla.redhat.com/show_bug.cgi?id=2067844): Update dependencies to K8s 1.24, go 1.18 [#41](https://github.com/openshift/machine-api-provider-openstack/pull/41) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#40](https://github.com/openshift/machine-api-provider-openstack/pull/40) * Bump machine-api-operator to 25e61c2 [#39](https://github.com/openshift/machine-api-provider-openstack/pull/39) * Update cluster-api-provider-openstack to v0.6 [#38](https://github.com/openshift/machine-api-provider-openstack/pull/38) * Add Profile and Trunks to Ports and Networks [#35](https://github.com/openshift/machine-api-provider-openstack/pull/35) * [Bug 2054701](https://bugzilla.redhat.com/show_bug.cgi?id=2054701): Convert Machines directly to InstanceSpec [#33](https://github.com/openshift/machine-api-provider-openstack/pull/33) * [Bug 2070181](https://bugzilla.redhat.com/show_bug.cgi?id=2070181): Add support for ServerGroupName [#34](https://github.com/openshift/machine-api-provider-openstack/pull/34) * Add OpenShift CAPO default tags [#28](https://github.com/openshift/machine-api-provider-openstack/pull/28) * [Bug 2067870](https://bugzilla.redhat.com/show_bug.cgi?id=2067870): Address CVE-2022-21698 [#32](https://github.com/openshift/machine-api-provider-openstack/pull/32) * Upgrade external dependencies [#31](https://github.com/openshift/machine-api-provider-openstack/pull/31) * Depend on the downstream CAPO [#30](https://github.com/openshift/machine-api-provider-openstack/pull/30) * [Bug 2046133](https://bugzilla.redhat.com/show_bug.cgi?id=2046133): Set proxy settings on the provider client [#27](https://github.com/openshift/machine-api-provider-openstack/pull/27) * [Bug 2036594](https://bugzilla.redhat.com/show_bug.cgi?id=2036594): Refactor MAPO to use a reconcile function for update and create [#26](https://github.com/openshift/machine-api-provider-openstack/pull/26) * [Bug 2043672](https://bugzilla.redhat.com/show_bug.cgi?id=2043672): Support root volumes [#23](https://github.com/openshift/machine-api-provider-openstack/pull/23) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#22](https://github.com/openshift/machine-api-provider-openstack/pull/22) * shiftstack: Update OWNERS [#21](https://github.com/openshift/machine-api-provider-openstack/pull/21) * Update Dockerfile to 4.10 [#9](https://github.com/openshift/machine-api-provider-openstack/pull/9) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/2401f74dba8112e0dd4a4a1bb77c26887d5da3f4...0446d771465fa6e03ea8ed24f1cea706d0d2b15e) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/4f21449a757895eebf1b21611c49a772669b11dc) * [OCPBUGS-20761](https://issues.redhat.com/browse/OCPBUGS-20761): deps: Upgrade golang.org/x/net to v0.17.0 [#278](https://github.com/openshift/cluster-api-provider-openstack/pull/278) * [OCPBUGS-2626](https://issues.redhat.com/browse/OCPBUGS-2626): Ensure network defs without subnet follow noAllowedAddressPairs [#248](https://github.com/openshift/cluster-api-provider-openstack/pull/248) * [OCPBUGS-1890](https://issues.redhat.com/browse/OCPBUGS-1890): Apply noAllowedAddressPairs on intended subnets only [#243](https://github.com/openshift/cluster-api-provider-openstack/pull/243) * Updating ose-openstack-machine-controllers images to be consistent with ART [#237](https://github.com/openshift/cluster-api-provider-openstack/pull/237) * [Bug 2073398](https://bugzilla.redhat.com/show_bug.cgi?id=2073398): Fix InstanceCreate port & trunk cleanup [#232](https://github.com/openshift/cluster-api-provider-openstack/pull/232) * [Bug 2067870](https://bugzilla.redhat.com/show_bug.cgi?id=2067870): Address CVE-2022-21698 [#224](https://github.com/openshift/cluster-api-provider-openstack/pull/224) * hack/e2e: cleanup tmp dir [#221](https://github.com/openshift/cluster-api-provider-openstack/pull/221) * Add target to run e2e tests [#220](https://github.com/openshift/cluster-api-provider-openstack/pull/220) * [Bug 2033862](https://bugzilla.redhat.com/show_bug.cgi?id=2033862): Ensure subnets belong to the queried network [#218](https://github.com/openshift/cluster-api-provider-openstack/pull/218) * Updating ose-openstack-machine-controllers images to be consistent with ART [#217](https://github.com/openshift/cluster-api-provider-openstack/pull/217) * shiftstack: Update OWNERS [#215](https://github.com/openshift/cluster-api-provider-openstack/pull/215) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/963993b2017a498bf28fe72a89cf38878ab83a34...4f21449a757895eebf1b21611c49a772669b11dc) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/1d0b81715cb8bfe9f7e036755dfa9c5569765434) * [OCPBUGS-22131](https://issues.redhat.com/browse/OCPBUGS-22131): [release-4.11] Bump golang.org/x/net to v0.17.0 [#591](https://github.com/openshift/operator-framework-olm/pull/591) * [OCPBUGS-18513](https://issues.redhat.com/browse/OCPBUGS-18513), [RHIBMCS-169](https://issues.redhat.com/browse/RHIBMCS-169): Copied csv listing backport [#560](https://github.com/openshift/operator-framework-olm/pull/560) * [OCPBUGS-16075](https://issues.redhat.com/browse/OCPBUGS-16075): fix dynamic conversion webhook [#536](https://github.com/openshift/operator-framework-olm/pull/536) * Introduce DOWNSTREAM_OWNERS file [#542](https://github.com/openshift/operator-framework-olm/pull/542) * [OCPBUGS-16126](https://issues.redhat.com/browse/OCPBUGS-16126): Catalog Pod Startup Probe Timeout [#509](https://github.com/openshift/operator-framework-olm/pull/509) * Allow cpb to be statically compiled / exempt from FIPS compliance [#513](https://github.com/openshift/operator-framework-olm/pull/513) * [OCPBUGS-12263](https://issues.redhat.com/browse/OCPBUGS-12263): cherry-pick pull request refactor FBC caching (#1051) f… [#482](https://github.com/openshift/operator-framework-olm/pull/482) * [OCPBUGS-3876](https://issues.redhat.com/browse/OCPBUGS-3876): Order an operator CR's status.Component.Refs array (#2880) [#413](https://github.com/openshift/operator-framework-olm/pull/413) * [OCPBUGS-4446](https://issues.redhat.com/browse/OCPBUGS-4446): fix service account token secret reference (#2862) [#416](https://github.com/openshift/operator-framework-olm/pull/416) * [OCPBUGS-1556](https://issues.redhat.com/browse/OCPBUGS-1556): Cleanup conversion webhooks when an operator is uninstalled [#388](https://github.com/openshift/operator-framework-olm/pull/388) * [OCPBUGS-1326](https://issues.redhat.com/browse/OCPBUGS-1326): Opm serve cmds [#382](https://github.com/openshift/operator-framework-olm/pull/382) * [OCPBUGS-1104](https://issues.redhat.com/browse/OCPBUGS-1104): Package Server Manager should enforce expected csv values [#381](https://github.com/openshift/operator-framework-olm/pull/381) * Bug OCPBUGS-828: backport `opm serve` caching functionality (and bugfix) + `opm serve` leaving orphan tmpfiles [#375](https://github.com/openshift/operator-framework-olm/pull/375) * [Bug 2107045](https://bugzilla.redhat.com/show_bug.cgi?id=2107045): Only update namespaces when OperatorGroup labels need to change. (#2809) [#341](https://github.com/openshift/operator-framework-olm/pull/341) * [Bug 2114574](https://bugzilla.redhat.com/show_bug.cgi?id=2114574): use env var for OCP version instead of clusterversion status [#347](https://github.com/openshift/operator-framework-olm/pull/347) * [Bug 2117324](https://bugzilla.redhat.com/show_bug.cgi?id=2117324): concurrent write bug fix [#355](https://github.com/openshift/operator-framework-olm/pull/355) * [Bug 2106772](https://bugzilla.redhat.com/show_bug.cgi?id=2106772): Update containerd version [#339](https://github.com/openshift/operator-framework-olm/pull/339) * [Bug 2076323](https://bugzilla.redhat.com/show_bug.cgi?id=2076323): Exclude global catalogs from resolution [#320](https://github.com/openshift/operator-framework-olm/pull/320) * [Bug 2100323](https://bugzilla.redhat.com/show_bug.cgi?id=2100323): Fix legacy registries no longer working (#974) [#324](https://github.com/openshift/operator-framework-olm/pull/324) * [Bug 2088541](https://bugzilla.redhat.com/show_bug.cgi?id=2088541): Update unpack job pod security (#2793) [#323](https://github.com/openshift/operator-framework-olm/pull/323) * [Bug 2088541](https://bugzilla.redhat.com/show_bug.cgi?id=2088541): Update catalog source pod security context [#309](https://github.com/openshift/operator-framework-olm/pull/309) * [Bug 2093288](https://bugzilla.redhat.com/show_bug.cgi?id=2093288): fix(grpc): Add startupProbe to check for grpc health readiness (#2791) [#314](https://github.com/openshift/operator-framework-olm/pull/314) * [Bug 2094303](https://bugzilla.redhat.com/show_bug.cgi?id=2094303): fix(vendor/scoped): bump k8s version to 1.24, go version to 1.18 and fix scoped client (#2794) [#316](https://github.com/openshift/operator-framework-olm/pull/316) * [Bug 2020484](https://bugzilla.redhat.com/show_bug.cgi?id=2020484): Refactor installer to surface certificate rotation (#2775) [#306](https://github.com/openshift/operator-framework-olm/pull/306) * [Bug 2039135](https://bugzilla.redhat.com/show_bug.cgi?id=2039135): add more descriptive error message to pruning of FBC [#308](https://github.com/openshift/operator-framework-olm/pull/308) * [Bug 1982737](https://bugzilla.redhat.com/show_bug.cgi?id=1982737): Make malformed CSV fail nicely (#2673) [#307](https://github.com/openshift/operator-framework-olm/pull/307) * manifests/*: comply to restricted pod security level [#299](https://github.com/openshift/operator-framework-olm/pull/299) * Sync 05 03 [#300](https://github.com/openshift/operator-framework-olm/pull/300) * Fix currentServiceAccount debug message (#2765) [#297](https://github.com/openshift/operator-framework-olm/pull/297) * [Bug 2074612](https://bugzilla.redhat.com/show_bug.cgi?id=2074612): Fix GRPC CheckRegistryServer function (#2756) [#294](https://github.com/openshift/operator-framework-olm/pull/294) * Sync OLM commits 04/25 [#292](https://github.com/openshift/operator-framework-olm/pull/292) * Identify fail forward in csvSources (#2743) [#290](https://github.com/openshift/operator-framework-olm/pull/290) * Downstream Sync 04.13 [#289](https://github.com/openshift/operator-framework-olm/pull/289) * Sync 04 11 [#285](https://github.com/openshift/operator-framework-olm/pull/285) * sync update staging directory 04-07 [#279](https://github.com/openshift/operator-framework-olm/pull/279) * sync: Update staging directories 04-05 [#278](https://github.com/openshift/operator-framework-olm/pull/278) * [Bug 2055861](https://bugzilla.redhat.com/show_bug.cgi?id=2055861): Replace collect-profile jobs that haven't completed [#255](https://github.com/openshift/operator-framework-olm/pull/255) * Adds CRC deployment automation and CI documentation [#268](https://github.com/openshift/operator-framework-olm/pull/268) * Update staging OLM 03-30 [#274](https://github.com/openshift/operator-framework-olm/pull/274) * go.*,vendor: Bump root module to go 1.17 [#271](https://github.com/openshift/operator-framework-olm/pull/271) * Makefile: Remove the duplicate unit/psm target [#270](https://github.com/openshift/operator-framework-olm/pull/270) * Sync upstream commits to the 4.11 release branch [#269](https://github.com/openshift/operator-framework-olm/pull/269) * Update PATH setting in base Dockerfile [#261](https://github.com/openshift/operator-framework-olm/pull/261) * Remove unsupported project_image from .ci-operator.yaml [#262](https://github.com/openshift/operator-framework-olm/pull/262) * [Bug 1975543](https://bugzilla.redhat.com/show_bug.cgi?id=1975543): Use CVO to delete manifests removed from OLM [#245](https://github.com/openshift/operator-framework-olm/pull/245) * Fix install_kubebuilder.sh script [#258](https://github.com/openshift/operator-framework-olm/pull/258) * Update the build root Dockerfile base image [#257](https://github.com/openshift/operator-framework-olm/pull/257) * Updating operator-lifecycle-manager images to be consistent with ART [#250](https://github.com/openshift/operator-framework-olm/pull/250) * Updating operator-registry images to be consistent with ART [#249](https://github.com/openshift/operator-framework-olm/pull/249) * [Bug 2048563](https://bugzilla.redhat.com/show_bug.cgi?id=2048563): feat added leader election conventions [#228](https://github.com/openshift/operator-framework-olm/pull/228) * clean up unused scripts [#227](https://github.com/openshift/operator-framework-olm/pull/227) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/7e2e799ed2dbed1000e45d0f4da83233699b6a8a...1d0b81715cb8bfe9f7e036755dfa9c5569765434) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/c3bae405daf605563d85fed86de0748d3b424bff) * [OCPBUGS-20937](https://issues.redhat.com/browse/OCPBUGS-20937): [release-4.11] bump golang.org/x/net to 0.17.0 [#551](https://github.com/operator-framework/operator-marketplace/pull/551) * [OCPBUGS-697](https://issues.redhat.com/browse/OCPBUGS-697): [release-4.11] Dockerfile.okd: include custom OperatorHub manifest [#485](https://github.com/operator-framework/operator-marketplace/pull/485) * [Bug 2088541](https://bugzilla.redhat.com/show_bug.cgi?id=2088541): Add psa anotations to namespace to suppress warnings [#478](https://github.com/operator-framework/operator-marketplace/pull/478) * Updating marketplace-operator images to be consistent with ART [#473](https://github.com/operator-framework/operator-marketplace/pull/473) * [Bug 2092464](https://bugzilla.redhat.com/show_bug.cgi?id=2092464): Update default catalogsource to use 4.11 images [#477](https://github.com/operator-framework/operator-marketplace/pull/477) * [Bug 2079610](https://bugzilla.redhat.com/show_bug.cgi?id=2079610): Fix operatorHub status [#470](https://github.com/operator-framework/operator-marketplace/pull/470) * Revert "Bug 2092464: shift marketplace operator catalogs default to v4.11" [#476](https://github.com/operator-framework/operator-marketplace/pull/476) * [Bug 2092464](https://bugzilla.redhat.com/show_bug.cgi?id=2092464): shift marketplace operator catalogs default to v4.11 [#474](https://github.com/operator-framework/operator-marketplace/pull/474) * manifests/deployment: comply to restricted pod security level [#471](https://github.com/operator-framework/operator-marketplace/pull/471) * chore(modules): bump openshift/api for new operatorhub crd [#472](https://github.com/operator-framework/operator-marketplace/pull/472) * [Bug 2057558](https://bugzilla.redhat.com/show_bug.cgi?id=2057558): increase polling time of status report to reduce log spam [#461](https://github.com/operator-framework/operator-marketplace/pull/461) * fix(manifests): add singleton operatorhub cr [#468](https://github.com/operator-framework/operator-marketplace/pull/468) * fix(capabilities): add operatorhub crd manifest [#467](https://github.com/operator-framework/operator-marketplace/pull/467) * [Bug 2070792](https://bugzilla.redhat.com/show_bug.cgi?id=2070792): chore(manifests): add missing capabilities annotation [#465](https://github.com/operator-framework/operator-marketplace/pull/465) * manifests/10_clusteroperator: Drop the unused namespace property [#401](https://github.com/operator-framework/operator-marketplace/pull/401) * chore(manifests): add openshift capability annotation [#462](https://github.com/operator-framework/operator-marketplace/pull/462) * [Bug 2067909](https://bugzilla.redhat.com/show_bug.cgi?id=2067909): Bump github.com/prometheus/client_golang to v0.12.1 [#463](https://github.com/operator-framework/operator-marketplace/pull/463) * Update OWNERS [#464](https://github.com/operator-framework/operator-marketplace/pull/464) * Bump repository to Go 1.17 and k8s v0.23.x [#460](https://github.com/operator-framework/operator-marketplace/pull/460) * Updating marketplace-operator images to be consistent with ART [#459](https://github.com/operator-framework/operator-marketplace/pull/459) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/80b92ecff398578b389cd953605a7b0f7bbd4f24...c3bae405daf605563d85fed86de0748d3b424bff) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/cd3370fb298994289659a5a9c73262c007e8a836) * [OCPBUGS-515](https://issues.redhat.com/browse/OCPBUGS-515): CSI provisioned disks are preallocated [#115](https://github.com/openshift/ovirt-csi-driver/pull/115) * [Bug 2091567](https://bugzilla.redhat.com/show_bug.cgi?id=2091567): Upgrade go-ovirt-client to 1.0.0 [#111](https://github.com/openshift/ovirt-csi-driver/pull/111) * Added @engelmi as approver [#109](https://github.com/openshift/ovirt-csi-driver/pull/109) * Updating ose-ovirt-csi-driver images to be consistent with ART [#110](https://github.com/openshift/ovirt-csi-driver/pull/110) * [Bug 2067871](https://bugzilla.redhat.com/show_bug.cgi?id=2067871): Bump prometheus/client_golang to v1.11.1 [#108](https://github.com/openshift/ovirt-csi-driver/pull/108) * [Bug 2063795](https://bugzilla.redhat.com/show_bug.cgi?id=2063795): remove unused replace directive in go.mod [#107](https://github.com/openshift/ovirt-csi-driver/pull/107) * Updating OCP on RHV team members [#103](https://github.com/openshift/ovirt-csi-driver/pull/103) * Updating ose-ovirt-csi-driver images to be consistent with ART [#102](https://github.com/openshift/ovirt-csi-driver/pull/102) * [Bug 2043035](https://bugzilla.redhat.com/show_bug.cgi?id=2043035): use proper error code [#101](https://github.com/openshift/ovirt-csi-driver/pull/101) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/9773aef8782056fa23e6af597195daf4a256f585...cd3370fb298994289659a5a9c73262c007e8a836) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/1c75c1240c4c0feda419378d6f63767cddab50df) * [OCPBUGS-18418](https://issues.redhat.com/browse/OCPBUGS-18418): set TLS cipher suites in Kube RBAC sidecars [#122](https://github.com/openshift/ovirt-csi-driver-operator/pull/122) * [Bug 2091567](https://bugzilla.redhat.com/show_bug.cgi?id=2091567): oVirt CSI driver operator should use latest go-ovirt-client [#98](https://github.com/openshift/ovirt-csi-driver-operator/pull/98) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#96](https://github.com/openshift/ovirt-csi-driver-operator/pull/96) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#97](https://github.com/openshift/ovirt-csi-driver-operator/pull/97) * Added @engelmi as approver [#95](https://github.com/openshift/ovirt-csi-driver-operator/pull/95) * [Bug 2067821](https://bugzilla.redhat.com/show_bug.cgi?id=2067821): Bump prometheus/client_golang to v1.11.1 [#93](https://github.com/openshift/ovirt-csi-driver-operator/pull/93) * [Bug 2064613](https://bugzilla.redhat.com/show_bug.cgi?id=2064613): Recreate oVirt connection for every sync [#92](https://github.com/openshift/ovirt-csi-driver-operator/pull/92) * Set fsGroupPolicy in CSIDriver [#89](https://github.com/openshift/ovirt-csi-driver-operator/pull/89) * [Bug 2006201](https://bugzilla.redhat.com/show_bug.cgi?id=2006201): Increase timeouts for CSI driver [#86](https://github.com/openshift/ovirt-csi-driver-operator/pull/86) * Updated OCP on RHV team members [#82](https://github.com/openshift/ovirt-csi-driver-operator/pull/82) * [Bug 2049169](https://bugzilla.redhat.com/show_bug.cgi?id=2049169): Add custom CA bundle support [#83](https://github.com/openshift/ovirt-csi-driver-operator/pull/83) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#81](https://github.com/openshift/ovirt-csi-driver-operator/pull/81) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/573ac4789b95f3ff5f9806e7023faca7b610566b...1c75c1240c4c0feda419378d6f63767cddab50df) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/5a93d94c208baf4867bc41529cc379aeb25c9cc4) * [Bug 2100496](https://bugzilla.redhat.com/show_bug.cgi?id=2100496): VM creation fails w. AG without description [#145](https://github.com/openshift/cluster-api-provider-ovirt/pull/145) * [Bug 2099293](https://bugzilla.redhat.com/show_bug.cgi?id=2099293): cluster API provider should use latest go-ovirt-client [#142](https://github.com/openshift/cluster-api-provider-ovirt/pull/142) * [Bug 2094806](https://bugzilla.redhat.com/show_bug.cgi?id=2094806): Update dependencies to K8s 1.24, go 1.18 [#141](https://github.com/openshift/cluster-api-provider-ovirt/pull/141) * Added @engelmi as approver [#137](https://github.com/openshift/cluster-api-provider-ovirt/pull/137) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#139](https://github.com/openshift/cluster-api-provider-ovirt/pull/139) * [Bug 2082535](https://bugzilla.redhat.com/show_bug.cgi?id=2082535): clone flag doesn't work [#138](https://github.com/openshift/cluster-api-provider-ovirt/pull/138) * [Bug 2077597](https://bugzilla.redhat.com/show_bug.cgi?id=2077597): bump go-ovirt-client to v1.0.0-alpha4 [#136](https://github.com/openshift/cluster-api-provider-ovirt/pull/136) * Bug:2076270 better VM deletion handling [#134](https://github.com/openshift/cluster-api-provider-ovirt/pull/134) * [Bug 2076277](https://bugzilla.redhat.com/show_bug.cgi?id=2076277): add Storage Domain Configuration to the machineset [#133](https://github.com/openshift/cluster-api-provider-ovirt/pull/133) * [Bug 2074710](https://bugzilla.redhat.com/show_bug.cgi?id=2074710): Transition to go ovirt client [#131](https://github.com/openshift/cluster-api-provider-ovirt/pull/131) * [Bug 2056454](https://bugzilla.redhat.com/show_bug.cgi?id=2056454): Preallocated disks for OCP nodes [#129](https://github.com/openshift/cluster-api-provider-ovirt/pull/129) * Updated OCP on RHV team members [#130](https://github.com/openshift/cluster-api-provider-ovirt/pull/130) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#128](https://github.com/openshift/cluster-api-provider-ovirt/pull/128) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/35ce9aafee1ffad0734f02ff0d5f8632d3905f09...5a93d94c208baf4867bc41529cc379aeb25c9cc4) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/2e60df220e147198e60b63950f9bab91e68facd7) * [OCPBUGS-21762](https://issues.redhat.com/browse/OCPBUGS-21762): Update bridge flow cache when the host address changes [#1938](https://github.com/openshift/ovn-kubernetes/pull/1938) * [OCPBUGS-19911](https://issues.redhat.com/browse/OCPBUGS-19911): [release-4.11] Dockerfile: bump OVN to ovn22.12-22.12.1-18.el8fdp [#1918](https://github.com/openshift/ovn-kubernetes/pull/1918) * [OCPBUGS-19650](https://issues.redhat.com/browse/OCPBUGS-19650): Delete IGMP Groups when deleting stale chassis [#1901](https://github.com/openshift/ovn-kubernetes/pull/1901) * [OCPBUGS-12819](https://issues.redhat.com/browse/OCPBUGS-12819): Handle k8s watcher restart scenario [#1806](https://github.com/openshift/ovn-kubernetes/pull/1806) * [OCPBUGS-16691](https://issues.redhat.com/browse/OCPBUGS-16691): ovnkube-master pod failed to reconnect to ovn db due to ssl expire [#1779](https://github.com/openshift/ovn-kubernetes/pull/1779) * [OCPBUGS-15731](https://issues.redhat.com/browse/OCPBUGS-15731), [OCPBUGS-15745](https://issues.redhat.com/browse/OCPBUGS-15745): Improve syncNodes to remove stale data [#1734](https://github.com/openshift/ovn-kubernetes/pull/1734) * [OCPBUGS-15876](https://issues.redhat.com/browse/OCPBUGS-15876): Remove non-existing functions test. [#1740](https://github.com/openshift/ovn-kubernetes/pull/1740) * [OCPBUGS-16003](https://issues.redhat.com/browse/OCPBUGS-16003): Fix stale SNAT entries for completed pods [#1751](https://github.com/openshift/ovn-kubernetes/pull/1751) * [OCPBUGS-12791](https://issues.redhat.com/browse/OCPBUGS-12791): : Delete equivalent ACLs when searching by predicate. [#1666](https://github.com/openshift/ovn-kubernetes/pull/1666) * [OCPBUGS-11110](https://issues.redhat.com/browse/OCPBUGS-11110): [release-4.11] Batch potentially big transaction on egress firewall ACLs migration [#1629](https://github.com/openshift/ovn-kubernetes/pull/1629) * [OCPBUGS-10734](https://issues.redhat.com/browse/OCPBUGS-10734): Bump OVN to 22.12 and turn off neighbour response in router options. [#1599](https://github.com/openshift/ovn-kubernetes/pull/1599) * [OCPBUGS-10688](https://issues.redhat.com/browse/OCPBUGS-10688): Fix leak in service controller cache [#1598](https://github.com/openshift/ovn-kubernetes/pull/1598) * [OCPBUGS-11035](https://issues.redhat.com/browse/OCPBUGS-11035): [release-4.11] Handle Completed pods deletion [#1616](https://github.com/openshift/ovn-kubernetes/pull/1616) * [OCPBUGS-2303](https://issues.redhat.com/browse/OCPBUGS-2303): [4.11] Stale chassis are not removed [#1310](https://github.com/openshift/ovn-kubernetes/pull/1310) * [OCPBUGS-10486](https://issues.redhat.com/browse/OCPBUGS-10486): [release-4.11] node: add node healthz server for cloud load balancers [#1594](https://github.com/openshift/ovn-kubernetes/pull/1594) * [OCPBUGS-8510](https://issues.redhat.com/browse/OCPBUGS-8510): [release-4.11] Don't recreate clusterPGs and clusterRtrPGs unless needed [#1560](https://github.com/openshift/ovn-kubernetes/pull/1560) * [OCPBUGS-7858](https://issues.redhat.com/browse/OCPBUGS-7858): [release-4.11] Delete stale egress ip snat entries by node [#1543](https://github.com/openshift/ovn-kubernetes/pull/1543) * [OCPBUGS-6640](https://issues.redhat.com/browse/OCPBUGS-6640): Drop in-cluster traffic towards svcCIDR at wrong port [#1491](https://github.com/openshift/ovn-kubernetes/pull/1491) * [OCPBUGS-7319](https://issues.redhat.com/browse/OCPBUGS-7319): Bump OVN to 22.09, enable session affinity timeout [#1522](https://github.com/openshift/ovn-kubernetes/pull/1522) * [OCPBUGS-5245](https://issues.redhat.com/browse/OCPBUGS-5245): Move check_pkt_larger to gateway router ports [#1505](https://github.com/openshift/ovn-kubernetes/pull/1505) * [OCPBUGS-7010](https://issues.redhat.com/browse/OCPBUGS-7010): [release-4.11] Fix Egress FW ACL rules in dualstack mode [#1507](https://github.com/openshift/ovn-kubernetes/pull/1507) * [OCPBUGS-6813](https://issues.redhat.com/browse/OCPBUGS-6813): [release-4.11] Ensure loadbalancer cleanup doesn't fail [#1498](https://github.com/openshift/ovn-kubernetes/pull/1498) * [OCPBUGS-5928](https://issues.redhat.com/browse/OCPBUGS-5928): [release-4.11] Fix egress firewall to allow inbound connections in both gw modes [#1478](https://github.com/openshift/ovn-kubernetes/pull/1478) * [OCPBUGS-5766](https://issues.redhat.com/browse/OCPBUGS-5766): egressip: fix test data race accessing podAssignment cache [#1471](https://github.com/openshift/ovn-kubernetes/pull/1471) * [OCPBUGS-4761](https://issues.redhat.com/browse/OCPBUGS-4761): [4.11] Dockerfile: bump OVS to 2.17.0-62.el8fdp [#1438](https://github.com/openshift/ovn-kubernetes/pull/1438) * [OCPBUGS-1720](https://issues.redhat.com/browse/OCPBUGS-1720): Backport changes to ovnkube-trace [#1436](https://github.com/openshift/ovn-kubernetes/pull/1436) * [OCPBUGS-4829](https://issues.redhat.com/browse/OCPBUGS-4829): Set the node as reachable only when it is being added as an egressip node [#1445](https://github.com/openshift/ovn-kubernetes/pull/1445) * [OCPBUGS-4655](https://issues.redhat.com/browse/OCPBUGS-4655): [release-4.11] Don't delete equivalent ACLs by predicate, since it will fail if [#1444](https://github.com/openshift/ovn-kubernetes/pull/1444) * [OCPBUGS-4992](https://issues.redhat.com/browse/OCPBUGS-4992): [release-4.11] fixing hybrid subnet allocator [#1459](https://github.com/openshift/ovn-kubernetes/pull/1459) * [OCPBUGS-4863](https://issues.redhat.com/browse/OCPBUGS-4863): [release-4.11] Fix address set cleanup: only delete address sets owned by given object [#1448](https://github.com/openshift/ovn-kubernetes/pull/1448) * [OCPBUGS-4887](https://issues.redhat.com/browse/OCPBUGS-4887): [release-4.11] Fixes scenario where deleted + completed pods may leak [#1455](https://github.com/openshift/ovn-kubernetes/pull/1455) * [OCPBUGS-4838](https://issues.redhat.com/browse/OCPBUGS-4838), [OCPBUGS-4860](https://issues.redhat.com/browse/OCPBUGS-4860): [release-4.11] Avoid duplicate transactions and minimize handlers with empty namespace selectors [#1447](https://github.com/openshift/ovn-kubernetes/pull/1447) * [OCPBUGS-3614](https://issues.redhat.com/browse/OCPBUGS-3614): [4.11] CARRY: client: don't construct transaction log string when it's not needed [#1374](https://github.com/openshift/ovn-kubernetes/pull/1374) * [OCPBUGS-3116](https://issues.redhat.com/browse/OCPBUGS-3116): append instead of overwrite logicalSwitch other-config [#1350](https://github.com/openshift/ovn-kubernetes/pull/1350) * [OCPBUGS-4475](https://issues.redhat.com/browse/OCPBUGS-4475): Handle expired entry while handling dns update [#1417](https://github.com/openshift/ovn-kubernetes/pull/1417) * [OCPBUGS-4564](https://issues.redhat.com/browse/OCPBUGS-4564): pods: deleteLogicalPort should not fail when node is gone [#1422](https://github.com/openshift/ovn-kubernetes/pull/1422) * [OCPBUGS-4408](https://issues.redhat.com/browse/OCPBUGS-4408): Validate node subnet annotations against cluster networks [#1415](https://github.com/openshift/ovn-kubernetes/pull/1415) * [OCPBUGS-4167](https://issues.redhat.com/browse/OCPBUGS-4167): EgressIP: Merge ops into pendingCloudPrivateIPConfigsOps on add [#1404](https://github.com/openshift/ovn-kubernetes/pull/1404) * [OCPBUGS-3908](https://issues.redhat.com/browse/OCPBUGS-3908): [release-4.11] Support proper parsing of IPs with leading zeros [#1393](https://github.com/openshift/ovn-kubernetes/pull/1393) * [OCPBUGS-2554](https://issues.redhat.com/browse/OCPBUGS-2554): Fix UpdateService healthport checks [#1389](https://github.com/openshift/ovn-kubernetes/pull/1389) * Bug OCPBUGS-3077: [release-4.11] Fix netpol races [#1353](https://github.com/openshift/ovn-kubernetes/pull/1353) * [OCPBUGS-3830](https://issues.redhat.com/browse/OCPBUGS-3830): Adjust ovs bundle timeout [#1383](https://github.com/openshift/ovn-kubernetes/pull/1383) * [OCPBUGS-2222](https://issues.redhat.com/browse/OCPBUGS-2222): Don't add ITP specific gw setup for DPU mode [#1305](https://github.com/openshift/ovn-kubernetes/pull/1305) * Updating ose-ovn-kubernetes images to be consistent with ART [#937](https://github.com/openshift/ovn-kubernetes/pull/937) * [OCPBUGS-2745](https://issues.redhat.com/browse/OCPBUGS-2745): Fixes SNAT-ing Logic for EgressIPs [#1334](https://github.com/openshift/ovn-kubernetes/pull/1334) * [OCPBUGS-2659](https://issues.redhat.com/browse/OCPBUGS-2659): Add logging verbosity to configuring OVN logs [#1325](https://github.com/openshift/ovn-kubernetes/pull/1325) * [OCPBUGS-1739](https://issues.redhat.com/browse/OCPBUGS-1739): pods: deleteLogicalPort should not fail when ls is gone [#1290](https://github.com/openshift/ovn-kubernetes/pull/1290) * [OCPBUGS-1955](https://issues.redhat.com/browse/OCPBUGS-1955): 4.11 multihop [#1296](https://github.com/openshift/ovn-kubernetes/pull/1296) * [OCPBUGS-1750](https://issues.redhat.com/browse/OCPBUGS-1750): Trim ACL names according to RFC1123 [#1282](https://github.com/openshift/ovn-kubernetes/pull/1282) * [Bug 2112100](https://bugzilla.redhat.com/show_bug.cgi?id=2112100): Forward routes for link-local addresses to vNIC in Windows [#1216](https://github.com/openshift/ovn-kubernetes/pull/1216) * [OCPBUGS-1552](https://issues.redhat.com/browse/OCPBUGS-1552): Dockerfile: bump to openvswitch2.17.0-37.4.el8fdp [#1272](https://github.com/openshift/ovn-kubernetes/pull/1272) * [OCPBUGS-772](https://issues.redhat.com/browse/OCPBUGS-772): Fix NP upgrade bug: unexpectedly found multiple equivalent ACLs (arp v/s arp||nd) [#1259](https://github.com/openshift/ovn-kubernetes/pull/1259) * [OCPBUGS-1012](https://issues.redhat.com/browse/OCPBUGS-1012): Bump libovsdb to pick up fixes for optional values [#1266](https://github.com/openshift/ovn-kubernetes/pull/1266) * [Bug 2111548](https://bugzilla.redhat.com/show_bug.cgi?id=2111548): Remove conntrack entries after rules [#1218](https://github.com/openshift/ovn-kubernetes/pull/1218) * [OCPBUGS-658](https://issues.redhat.com/browse/OCPBUGS-658): [release-4.11] pods: deleteLogicalPort should not fail when port is already gone [#1256](https://github.com/openshift/ovn-kubernetes/pull/1256) * [Bug 2109642](https://bugzilla.redhat.com/show_bug.cgi?id=2109642): two hybrid overlay fixes [#1209](https://github.com/openshift/ovn-kubernetes/pull/1209) * [Bug 2115481](https://bugzilla.redhat.com/show_bug.cgi?id=2115481): master: don't list node pods on add/update unless necessary [#1232](https://github.com/openshift/ovn-kubernetes/pull/1232) * [Bug 2118717](https://bugzilla.redhat.com/show_bug.cgi?id=2118717): [release-4.11] Fix race when adding and removing pod with same name [#1247](https://github.com/openshift/ovn-kubernetes/pull/1247) * [Bug 2113860](https://bugzilla.redhat.com/show_bug.cgi?id=2113860): reconcile-node-lbs [#1226](https://github.com/openshift/ovn-kubernetes/pull/1226) * [Bug 2105444](https://bugzilla.redhat.com/show_bug.cgi?id=2105444): ITP=local, host->svc case failure [#1196](https://github.com/openshift/ovn-kubernetes/pull/1196) * [Bug 2111619](https://bugzilla.redhat.com/show_bug.cgi?id=2111619): Bump OVN to 22.06.0-27 [#1223](https://github.com/openshift/ovn-kubernetes/pull/1223) * [Bug 2106855](https://bugzilla.redhat.com/show_bug.cgi?id=2106855): Append the SNAT rule in management chain [#1200](https://github.com/openshift/ovn-kubernetes/pull/1200) * [Bug 2105264](https://bugzilla.redhat.com/show_bug.cgi?id=2105264): EGW: Clean Stale Conntrack Entries [#1190](https://github.com/openshift/ovn-kubernetes/pull/1190) * [Bug 2105101](https://bugzilla.redhat.com/show_bug.cgi?id=2105101): Fix egressips for pods recreated with same name [#1177](https://github.com/openshift/ovn-kubernetes/pull/1177) * [Bug 2104991](https://bugzilla.redhat.com/show_bug.cgi?id=2104991): Fix completed pods releasing IP address on update [#1176](https://github.com/openshift/ovn-kubernetes/pull/1176) * [Bug 2104717](https://bugzilla.redhat.com/show_bug.cgi?id=2104717): Fix Panic in Network Policy deletion [#1175](https://github.com/openshift/ovn-kubernetes/pull/1175) * [Bug 2101498](https://bugzilla.redhat.com/show_bug.cgi?id=2101498): Revert "Bug 2101498: add upper bound to number of failed attempts" [#1165](https://github.com/openshift/ovn-kubernetes/pull/1165) * [Bug 2085089](https://bugzilla.redhat.com/show_bug.cgi?id=2085089): Add support for enabling UDP packet aggregation on veth interfaces [#1129](https://github.com/openshift/ovn-kubernetes/pull/1129) * [Bug 2099755](https://bugzilla.redhat.com/show_bug.cgi?id=2099755): Add new EgressIP config option "egressip-reachability-total-timeout" [#1156](https://github.com/openshift/ovn-kubernetes/pull/1156) * [Bug 2073378](https://bugzilla.redhat.com/show_bug.cgi?id=2073378): Add node name into egress ip status for the removal [#1114](https://github.com/openshift/ovn-kubernetes/pull/1114) * [Bug 2079012](https://bugzilla.redhat.com/show_bug.cgi?id=2079012): Fix egressIP object deletion if the node is deleted first [#1143](https://github.com/openshift/ovn-kubernetes/pull/1143) * [Bug 2089392](https://bugzilla.redhat.com/show_bug.cgi?id=2089392): Update logging for specific policy when creating it [#1145](https://github.com/openshift/ovn-kubernetes/pull/1145) * [Bug 2082599](https://bugzilla.redhat.com/show_bug.cgi?id=2082599): add upper bound to number of failed attempts [#1147](https://github.com/openshift/ovn-kubernetes/pull/1147) * [Bug 2094088](https://bugzilla.redhat.com/show_bug.cgi?id=2094088): Fixes Updating non-default columns as well as libovsdb fixes for empty values [#1146](https://github.com/openshift/ovn-kubernetes/pull/1146) * [release 4.11] Bug 2092579: pods: deleteLogicalPort should not fail if port is already deleted [#1123](https://github.com/openshift/ovn-kubernetes/pull/1123) * [Bug 2092889](https://bugzilla.redhat.com/show_bug.cgi?id=2092889): update all egress ACLs' direction to "from-lport" [#1128](https://github.com/openshift/ovn-kubernetes/pull/1128) * [Bug 2089716](https://bugzilla.redhat.com/show_bug.cgi?id=2089716): Downstream fix for OVN-Kube node cardinality [#1135](https://github.com/openshift/ovn-kubernetes/pull/1135) * [Bug 2095113](https://bugzilla.redhat.com/show_bug.cgi?id=2095113): Dockerfile: bump to openvswitch2.17-2.17.0-22.el8fdp [#1117](https://github.com/openshift/ovn-kubernetes/pull/1117) * [Bug 2094039](https://bugzilla.redhat.com/show_bug.cgi?id=2094039): egressIP: node retrieval failure is not respected, causes panic [#1130](https://github.com/openshift/ovn-kubernetes/pull/1130) * [Bug 2093396](https://bugzilla.redhat.com/show_bug.cgi?id=2093396): Remove node-tainting for too-small MTU [#1127](https://github.com/openshift/ovn-kubernetes/pull/1127) * [Bug 2091634](https://bugzilla.redhat.com/show_bug.cgi?id=2091634): Use ovs-appctl dpctl/* instead of ovs-dpctl [#1118](https://github.com/openshift/ovn-kubernetes/pull/1118) * [Bug 2091990](https://bugzilla.redhat.com/show_bug.cgi?id=2091990): fix lflow-cache-limit-kb ovs external-id [#1116](https://github.com/openshift/ovn-kubernetes/pull/1116) * [Bug 2070674](https://bugzilla.redhat.com/show_bug.cgi?id=2070674): improve performance of service sync [#1110](https://github.com/openshift/ovn-kubernetes/pull/1110) * [Bug 2092473](https://bugzilla.redhat.com/show_bug.cgi?id=2092473): libovsdb perf backports [#1119](https://github.com/openshift/ovn-kubernetes/pull/1119) * [Bug 2089930](https://bugzilla.redhat.com/show_bug.cgi?id=2089930): Dockerfile: bump OVN to ovn22.06 [#1102](https://github.com/openshift/ovn-kubernetes/pull/1102) * [Bug 2090843](https://bugzilla.redhat.com/show_bug.cgi?id=2090843): addLogicalPort() optimization cherry-picks [#1109](https://github.com/openshift/ovn-kubernetes/pull/1109) * [Bug 2090537](https://bugzilla.redhat.com/show_bug.cgi?id=2090537): OVNDBManager: Retry migrations [#1108](https://github.com/openshift/ovn-kubernetes/pull/1108) * [Bug 2081069](https://bugzilla.redhat.com/show_bug.cgi?id=2081069): Bumps OVN to 22.03.0-37.el8fdp [#1100](https://github.com/openshift/ovn-kubernetes/pull/1100) * [Bug 2086851](https://bugzilla.redhat.com/show_bug.cgi?id=2086851): enable `exportloopref` linter and fix violations [#1092](https://github.com/openshift/ovn-kubernetes/pull/1092) * [Bug 2084249](https://bugzilla.redhat.com/show_bug.cgi?id=2084249): [DownstreamMerge] 5-12-22 [#1090](https://github.com/openshift/ovn-kubernetes/pull/1090) * [Bug 2077357](https://bugzilla.redhat.com/show_bug.cgi?id=2077357): Bump OVN to ovn22.03-22.03.0-24 [#1052](https://github.com/openshift/ovn-kubernetes/pull/1052) * 5-4-22 [#1081](https://github.com/openshift/ovn-kubernetes/pull/1081) * [Bug 2070929](https://bugzilla.redhat.com/show_bug.cgi?id=2070929): Downstream Merge: 04-05-2022 [#1078](https://github.com/openshift/ovn-kubernetes/pull/1078) * [Bug 2079439](https://bugzilla.redhat.com/show_bug.cgi?id=2079439): [DownstreamMerge] 4-29-22 [#1064](https://github.com/openshift/ovn-kubernetes/pull/1064) * Downstream Merge 25-04-2022 [#1050](https://github.com/openshift/ovn-kubernetes/pull/1050) * [Bug 2023691](https://bugzilla.redhat.com/show_bug.cgi?id=2023691): Downstream merge 2022-04-22 [#1049](https://github.com/openshift/ovn-kubernetes/pull/1049) * [Bug 2072134](https://bugzilla.redhat.com/show_bug.cgi?id=2072134): [DownstreamMerge] 4-18-22 [#1040](https://github.com/openshift/ovn-kubernetes/pull/1040) * Dockerfile: bump to OVS 2.17 [#1031](https://github.com/openshift/ovn-kubernetes/pull/1031) * Fix gofmt for downstream files [#1028](https://github.com/openshift/ovn-kubernetes/pull/1028) * [Bug 2026461](https://bugzilla.redhat.com/show_bug.cgi?id=2026461): 4-4-22 merge [#1010](https://github.com/openshift/ovn-kubernetes/pull/1010) * [Bug 2047710](https://bugzilla.redhat.com/show_bug.cgi?id=2047710): Bump OVS version to 2.16.0-57.el8fdp [#980](https://github.com/openshift/ovn-kubernetes/pull/980) * Downstream merge 2022-03-22 [#1006](https://github.com/openshift/ovn-kubernetes/pull/1006) * [Bug 2063321](https://bugzilla.redhat.com/show_bug.cgi?id=2063321): [DownstreamMerge] Downstream merge 17-03-2022 [#1000](https://github.com/openshift/ovn-kubernetes/pull/1000) * [Bug 2060549](https://bugzilla.redhat.com/show_bug.cgi?id=2060549): Downstream merge 3-8-22 [#989](https://github.com/openshift/ovn-kubernetes/pull/989) * [Bug 2052975](https://bugzilla.redhat.com/show_bug.cgi?id=2052975): Downstream merge 07-03-2022 [#988](https://github.com/openshift/ovn-kubernetes/pull/988) * Merge 3-4-22 [#987](https://github.com/openshift/ovn-kubernetes/pull/987) * [Bug 2052975](https://bugzilla.redhat.com/show_bug.cgi?id=2052975): Bump OVN to ovn-2021-21.12.0-30.el8fdp [#982](https://github.com/openshift/ovn-kubernetes/pull/982) * [Bug 2052398](https://bugzilla.redhat.com/show_bug.cgi?id=2052398): [DownstreamMerge] 2-25-22 [#975](https://github.com/openshift/ovn-kubernetes/pull/975) * Bump OVS to 2.16.0-53.el8fdp [#968](https://github.com/openshift/ovn-kubernetes/pull/968) * [Bug 2048538](https://bugzilla.redhat.com/show_bug.cgi?id=2048538): [DownstreamMerge] 2-22-22 [#966](https://github.com/openshift/ovn-kubernetes/pull/966) * [Bug 2045577](https://bugzilla.redhat.com/show_bug.cgi?id=2045577): Bump OVN to ovn-2021-21.12.0-15.el8fdp [#958](https://github.com/openshift/ovn-kubernetes/pull/958) * [Bug 2048538](https://bugzilla.redhat.com/show_bug.cgi?id=2048538): [DownstreamMerge] 2-14-22 [#956](https://github.com/openshift/ovn-kubernetes/pull/956) * [Bug 2011525](https://bugzilla.redhat.com/show_bug.cgi?id=2011525): [DownstreamMerge] Downstream merge 08-02-2022 [#947](https://github.com/openshift/ovn-kubernetes/pull/947) * Update project owners [#950](https://github.com/openshift/ovn-kubernetes/pull/950) * Downstream merge 2-1-22 [#940](https://github.com/openshift/ovn-kubernetes/pull/940) * [Bug 2040357](https://bugzilla.redhat.com/show_bug.cgi?id=2040357): Dockerfile: bump OVN to ovn-2021-21.12.0-11.el8fdp [#902](https://github.com/openshift/ovn-kubernetes/pull/902) * [Bug 2039253](https://bugzilla.redhat.com/show_bug.cgi?id=2039253): avoid passing duplicate Flow endpoints to ovs-vsctl [#930](https://github.com/openshift/ovn-kubernetes/pull/930) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/e36f68b0c8d93533c9a15b97b449b0c728bbeb96...2e60df220e147198e60b63950f9bab91e68facd7) ### [powervs-machine-controllers](https://github.com/openshift/machine-api-provider-powervs/tree/5dd624a2cd03fdb108338a5490c09a9b6474ef18) * [OCPBUGS-24724](https://issues.redhat.com/browse/OCPBUGS-24724): snyk code scan exclude vendor directory [#62](https://github.com/openshift/machine-api-provider-powervs/pull/62) * [OCPBUGS-21883](https://issues.redhat.com/browse/OCPBUGS-21883): CVE-2023-39325 - Bump golang.org/x/net to v0.17.0 - 4.11 [#56](https://github.com/openshift/machine-api-provider-powervs/pull/56) * [Bug 2111471](https://bugzilla.redhat.com/show_bug.cgi?id=2111471): Set the node internal dns address for machine [#28](https://github.com/openshift/machine-api-provider-powervs/pull/28) * [Bug 2100825](https://bugzilla.redhat.com/show_bug.cgi?id=2100825): Update go modules [#24](https://github.com/openshift/machine-api-provider-powervs/pull/24) * [Bug 2100033](https://bugzilla.redhat.com/show_bug.cgi?id=2100033): Fetch VM IP from DHCP server to set NodeInternalIP [#22](https://github.com/openshift/machine-api-provider-powervs/pull/22) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#20](https://github.com/openshift/machine-api-provider-powervs/pull/20) * [Bug 2089563](https://bugzilla.redhat.com/show_bug.cgi?id=2089563): Use PowerVS api types from openshift/api [#17](https://github.com/openshift/machine-api-provider-powervs/pull/17) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): Update dependencies to K8s 1.24, go 1.18 [#19](https://github.com/openshift/machine-api-provider-powervs/pull/19) * Updating ose-powervs-machine-controllers images to be consistent with ART [#18](https://github.com/openshift/machine-api-provider-powervs/pull/18) * Fixed Provider ID format [#16](https://github.com/openshift/machine-api-provider-powervs/pull/16) * Set zone, region labels to machines [#13](https://github.com/openshift/machine-api-provider-powervs/pull/13) * Removed node update controller [#8](https://github.com/openshift/machine-api-provider-powervs/pull/8) * allow user to pass in regex for resource lookup [#9](https://github.com/openshift/machine-api-provider-powervs/pull/9) * Bump machine-api-operator [#12](https://github.com/openshift/machine-api-provider-powervs/pull/12) * Updated Makefile [#11](https://github.com/openshift/machine-api-provider-powervs/pull/11) * Updated power go client [#7](https://github.com/openshift/machine-api-provider-powervs/pull/7) * Remove whitespace from the ip address [#6](https://github.com/openshift/machine-api-provider-powervs/pull/6) * Updating ose-powervs-machine-controllers images to be consistent with ART [#4](https://github.com/openshift/machine-api-provider-powervs/pull/4) * [Full changelog](https://github.com/openshift/machine-api-provider-powervs/compare/c1d68e7b97a8bcf9b350e4a686fd202ffc69978f...5dd624a2cd03fdb108338a5490c09a9b6474ef18) ### [prom-label-proxy](https://github.com/openshift/prom-label-proxy/tree/af12fbc4482a0d8fe9e4748c675d56bbc43975f2) * Updating prom-label-proxy images to be consistent with ART [#346](https://github.com/openshift/prom-label-proxy/pull/346) * Updates OWNERS file [#345](https://github.com/openshift/prom-label-proxy/pull/345) * Updating prom-label-proxy images to be consistent with ART [#343](https://github.com/openshift/prom-label-proxy/pull/343) * [Full changelog](https://github.com/openshift/prom-label-proxy/compare/5f4c89923dcfb1c620490e8ed8de8cd1bdaf5122...af12fbc4482a0d8fe9e4748c675d56bbc43975f2) ### [prometheus](https://github.com/openshift/prometheus/tree/4e4243d54331efdbe2a32f7441740faa4d335acb) * [OCPBUGS-21199](https://issues.redhat.com/browse/OCPBUGS-21199): update golang.org/x/net to v0.17.0 [4.11] [#177](https://github.com/openshift/prometheus/pull/177) * [OCPBUGS-2640](https://issues.redhat.com/browse/OCPBUGS-2640): Fix 'invalid magic number 0' bug (#11338) [#143](https://github.com/openshift/prometheus/pull/143) * [Bug 2099561](https://bugzilla.redhat.com/show_bug.cgi?id=2099561): Bump openshift/prometheus to v2.36.2 [#136](https://github.com/openshift/prometheus/pull/136) * [Bug 2064984](https://bugzilla.redhat.com/show_bug.cgi?id=2064984): Update Prometheus to v2.36.1 [#133](https://github.com/openshift/prometheus/pull/133) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#132](https://github.com/openshift/prometheus/pull/132) * web/ui/.gitignore: unignore generated assets for downstream build [#130](https://github.com/openshift/prometheus/pull/130) * Bump openshift/prometheus to v2.35.0 [#128](https://github.com/openshift/prometheus/pull/128) * Updates OWNERS file [#124](https://github.com/openshift/prometheus/pull/124) * Bump openshift/prometheus to v2.34.0 [#123](https://github.com/openshift/prometheus/pull/123) * Bump openshift/prometheus to v2.33.5 [#122](https://github.com/openshift/prometheus/pull/122) * [Bug 2056802](https://bugzilla.redhat.com/show_bug.cgi?id=2056802): scrape: Fix label_limits cache usage [#121](https://github.com/openshift/prometheus/pull/121) * Bump openshift/prometheus to v2.33.4 [#120](https://github.com/openshift/prometheus/pull/120) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#119](https://github.com/openshift/prometheus/pull/119) * [Full changelog](https://github.com/openshift/prometheus/compare/b91d7c75372b3ae707ce287e56df3fc7db935bac...4e4243d54331efdbe2a32f7441740faa4d335acb) ### [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager/tree/7e3c773132f52d79c263320ce7c559349bce935b) * [OCPBUGS-21013](https://issues.redhat.com/browse/OCPBUGS-21013): Bump golang.org/x/net to v0.17.0 [#83](https://github.com/openshift/prometheus-alertmanager/pull/83) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#60](https://github.com/openshift/prometheus-alertmanager/pull/60) * Updates OWNERS file [#59](https://github.com/openshift/prometheus-alertmanager/pull/59) * Bump openshift/prometheus-alertmanager to v0.24.0 [#58](https://github.com/openshift/prometheus-alertmanager/pull/58) * Bump openshift/prometheus-alertmanager to v0.23.0 [#55](https://github.com/openshift/prometheus-alertmanager/pull/55) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#57](https://github.com/openshift/prometheus-alertmanager/pull/57) * [Full changelog](https://github.com/openshift/prometheus-alertmanager/compare/013395968b37eb66909d7bbee7e34249b120835e...7e3c773132f52d79c263320ce7c559349bce935b) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/ef9b02af91f3f5906f5a463b76e70f1318306cf9) * [OCPBUGS-20823](https://issues.redhat.com/browse/OCPBUGS-20823): Bump golang.org/x/net to v0.17.0 [#250](https://github.com/openshift/prometheus-operator/pull/250) * [OCPBUGS-7590](https://issues.redhat.com/browse/OCPBUGS-7590): Fixes ThanoRuler StatefulSet re-creation bug [#218](https://github.com/openshift/prometheus-operator/pull/218) * [Bug 2097716](https://bugzilla.redhat.com/show_bug.cgi?id=2097716): pkg/apis/monitoring/v1beta1: fix httpConfig conversion [#191](https://github.com/openshift/prometheus-operator/pull/191) * [Bug 2091595](https://bugzilla.redhat.com/show_bug.cgi?id=2091595): bump to Prometheus operator v0.57.0 [#190](https://github.com/openshift/prometheus-operator/pull/190) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): pkg/prometheus: fix curl exec probe [#189](https://github.com/openshift/prometheus-operator/pull/189) * Revert "Bug 2091595: Bump openshift/prometheus-operator to v0.56.3" [#188](https://github.com/openshift/prometheus-operator/pull/188) * [Bug 2091595](https://bugzilla.redhat.com/show_bug.cgi?id=2091595): Bump openshift/prometheus-operator to v0.56.3 [#185](https://github.com/openshift/prometheus-operator/pull/185) * Updating prometheus-operator-admission-webhook images to be consistent with ART [#180](https://github.com/openshift/prometheus-operator/pull/180) * Updating prometheus-config-reloader images to be consistent with ART [#178](https://github.com/openshift/prometheus-operator/pull/178) * [Bug 2084288](https://bugzilla.redhat.com/show_bug.cgi?id=2084288): Revert "Bump openshift/prometheus-operator to v0.56.2" [#177](https://github.com/openshift/prometheus-operator/pull/177) * Updating prometheus-operator images to be consistent with ART [#176](https://github.com/openshift/prometheus-operator/pull/176) * Bump openshift/prometheus-operator to v0.56.2 [#174](https://github.com/openshift/prometheus-operator/pull/174) * Revert "Bump openshift/prometheus-operator to v0.56.1" [#171](https://github.com/openshift/prometheus-operator/pull/171) * Bump openshift/prometheus-operator to v0.56.1 [#170](https://github.com/openshift/prometheus-operator/pull/170) * Add myself to OWNER file [#166](https://github.com/openshift/prometheus-operator/pull/166) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): Revert "[bot] Bump openshift/prometheus-operator to v0.56.0" [#168](https://github.com/openshift/prometheus-operator/pull/168) * Bump openshift/prometheus-operator to v0.56.0 [#165](https://github.com/openshift/prometheus-operator/pull/165) * Bump openshift/prometheus-operator to v0.55.1 [#164](https://github.com/openshift/prometheus-operator/pull/164) * Bump openshift/prometheus-operator to v0.55.0 [#162](https://github.com/openshift/prometheus-operator/pull/162) * Fix typo in admission webhook bin output [#163](https://github.com/openshift/prometheus-operator/pull/163) * Add Dockerfile and targets for standalone admission webhook image [#160](https://github.com/openshift/prometheus-operator/pull/160) * Standalone webhook server [#159](https://github.com/openshift/prometheus-operator/pull/159) * Bump openshift/prometheus-operator to v0.54.1 [#158](https://github.com/openshift/prometheus-operator/pull/158) * Updating prometheus-config-reloader images to be consistent with ART [#155](https://github.com/openshift/prometheus-operator/pull/155) * Bump openshift/prometheus-operator to v0.54.0 [#151](https://github.com/openshift/prometheus-operator/pull/151) * Updating prometheus-operator images to be consistent with ART [#154](https://github.com/openshift/prometheus-operator/pull/154) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/e916c2d8a19309cc86558d70515639d450c66af0...ef9b02af91f3f5906f5a463b76e70f1318306cf9) ### [prometheus-node-exporter](https://github.com/openshift/node_exporter/tree/31707a12bf07365256743ff63aef8c2695ac0cb1) * [OCPBUGS-21104](https://issues.redhat.com/browse/OCPBUGS-21104): upgrade golang.org/x/net to v0.17.0 [#137](https://github.com/openshift/node_exporter/pull/137) * [OCPBUGS-1723](https://issues.redhat.com/browse/OCPBUGS-1723): Fix a bug of metric format on AMD EPYC platforms [#108](https://github.com/openshift/node_exporter/pull/108) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#103](https://github.com/openshift/node_exporter/pull/103) * Updates OWNERS file [#102](https://github.com/openshift/node_exporter/pull/102) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#101](https://github.com/openshift/node_exporter/pull/101) * [Full changelog](https://github.com/openshift/node_exporter/compare/0eed31026699ad13ca7fcebbc547a830371a920c...31707a12bf07365256743ff63aef8c2695ac0cb1) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/0899d1127049ab3906484bade3d47c306d5e3677) * [Bug 2102834](https://bugzilla.redhat.com/show_bug.cgi?id=2102834): operator NS manifest: Set empty openshift.io/run-level [#198](https://github.com/openshift/service-ca-operator/pull/198) * manifests/deployment: comply to restricted pod security level [#190](https://github.com/openshift/service-ca-operator/pull/190) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/1611373e4bf053ca78dc89b5fd4a4daf078312cf...0899d1127049ab3906484bade3d47c306d5e3677) ### [telemeter](https://github.com/openshift/telemeter/tree/f40faee6edd85acc9581382c99ae7b106bbaafc8) * [OCPBUGS-21298](https://issues.redhat.com/browse/OCPBUGS-21298): [release-4.11] fix: Bump golang.org/x/net to v0.17.0 [#488](https://github.com/openshift/telemeter/pull/488) * [OCPBUGS-1007](https://issues.redhat.com/browse/OCPBUGS-1007): go.mod: update github.com/gogo/protobuf to v1.3.2 [#421](https://github.com/openshift/telemeter/pull/421) * Updating telemeter images to be consistent with ART [#412](https://github.com/openshift/telemeter/pull/412) * [Bug 2105937](https://bugzilla.redhat.com/show_bug.cgi?id=2105937): [release-4.11] Updates version of golangci-lint to support GO1.18 [#414](https://github.com/openshift/telemeter/pull/414) * Adds PrometheusRule telemetry that was previously hosted in cluster-monitoring-operator [#411](https://github.com/openshift/telemeter/pull/411) * [Bug 2067888](https://bugzilla.redhat.com/show_bug.cgi?id=2067888): update prometheus/client_golang version [#409](https://github.com/openshift/telemeter/pull/409) * Use service CA beta annotation [#408](https://github.com/openshift/telemeter/pull/408) * Updating telemeter images to be consistent with ART [#407](https://github.com/openshift/telemeter/pull/407) * [Full changelog](https://github.com/openshift/telemeter/compare/3b5eb87fd042feafba13502ddf724951942dc8df...f40faee6edd85acc9581382c99ae7b106bbaafc8) ### [tests](https://github.com/openshift/origin/tree/b34b8a2503424d03cd50b8ecd0860b380a492f4f) * [OCPBUGS-18424](https://issues.redhat.com/browse/OCPBUGS-18424): Add missing watch permission for console users [#28235](https://github.com/openshift/origin/pull/28235) * [OCPBUGS-18129](https://issues.redhat.com/browse/OCPBUGS-18129): Ignore timeout and connection refused errors during upgrade tests for 4.11 [#28247](https://github.com/openshift/origin/pull/28247) * [OCPBUGS-15942](https://issues.redhat.com/browse/OCPBUGS-15942): remove references to registry.centos.org [#28036](https://github.com/openshift/origin/pull/28036) * [OCPBUGS-15151](https://issues.redhat.com/browse/OCPBUGS-15151): Move from registry.centos.org to quay.io [#27985](https://github.com/openshift/origin/pull/27985) * [CCO-367](https://issues.redhat.com/browse/CCO-367): Allow CCO to be Upgradeable=False when credentialsMode=Manual [#27961](https://github.com/openshift/origin/pull/27961) * [OCPBUGS-12962](https://issues.redhat.com/browse/OCPBUGS-12962): Add (optional) dual-stack tests to the CNI certification test suite [#27904](https://github.com/openshift/origin/pull/27904) * [OCPBUGS-10215](https://issues.redhat.com/browse/OCPBUGS-10215): Bump(openshift/kubernetes): to get fix for resizing flake [#27796](https://github.com/openshift/origin/pull/27796) * [OCPBUGS-7727](https://issues.redhat.com/browse/OCPBUGS-7727): remove reference to old guard pods [#27735](https://github.com/openshift/origin/pull/27735) * [OCPBUGS-7319](https://issues.redhat.com/browse/OCPBUGS-7319): Unskip service session affinity tests [#27722](https://github.com/openshift/origin/pull/27722) * [OCPBUGS-6851](https://issues.redhat.com/browse/OCPBUGS-6851): [release-4.11] upgrade/adminack: guarantee one admin ack check post-upgrade [#27685](https://github.com/openshift/origin/pull/27685) * [OCPBUGS-5091](https://issues.redhat.com/browse/OCPBUGS-5091): Add Kuryr exception to "pods should successfully create sandboxes" test [#27621](https://github.com/openshift/origin/pull/27621) * [SPLAT-856](https://issues.redhat.com/browse/SPLAT-856): [release-4.11] include storage and must-gather tests in expectedTestCount [#27494](https://github.com/openshift/origin/pull/27494) * [OCPBUGS-3819](https://issues.redhat.com/browse/OCPBUGS-3819): Add bond cni test [#27554](https://github.com/openshift/origin/pull/27554) * [OCPBUGS-2616](https://issues.redhat.com/browse/OCPBUGS-2616): Fix s2i ruby test that relys on rack [#27480](https://github.com/openshift/origin/pull/27480) * disruption checking is disabled for prior releases because we lack a good baseline [#27468](https://github.com/openshift/origin/pull/27468) * [Bug 2108978](https://bugzilla.redhat.com/show_bug.cgi?id=2108978): pkg/monitor: wait for Prometheus sidecars to be ready [#27313](https://github.com/openshift/origin/pull/27313) * [Bug 2104203](https://bugzilla.redhat.com/show_bug.cgi?id=2104203): revert: no longer needed logic for rt kernel [#27290](https://github.com/openshift/origin/pull/27290) * BUG 2103700: test/extended/router: Drop host lookup for gRPC HTTP/2 h2spec tests [#27287](https://github.com/openshift/origin/pull/27287) * [OCPBUGS-772](https://issues.redhat.com/browse/OCPBUGS-772): [release-4.11] Fixes OVN ACL audit log parsing [#27390](https://github.com/openshift/origin/pull/27390) * [Bug 2110723](https://bugzilla.redhat.com/show_bug.cgi?id=2110723): [4.11] test: allow -f to match tests for any test suite [#27300](https://github.com/openshift/origin/pull/27300) * [Bug 2106942](https://bugzilla.redhat.com/show_bug.cgi?id=2106942): use multi-arch ldap and multicast test images [#27305](https://github.com/openshift/origin/pull/27305) * [Bug 2104162](https://bugzilla.redhat.com/show_bug.cgi?id=2104162): [release-4.11] Remove etcd vertical scaling test. [#27284](https://github.com/openshift/origin/pull/27284) * [Bug 2098053](https://bugzilla.redhat.com/show_bug.cgi?id=2098053): Re-revert "Add networking test for invalid external gateway" [#27273](https://github.com/openshift/origin/pull/27273) * [Bug 2098053](https://bugzilla.redhat.com/show_bug.cgi?id=2098053): Re-revert "Add networking test for invalid external gateway" [#26985](https://github.com/openshift/origin/pull/26985) * [Bug 2100439](https://bugzilla.redhat.com/show_bug.cgi?id=2100439): Enable GCP PD in-tree tests [#27272](https://github.com/openshift/origin/pull/27272) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): AUTH-133: test/extended/security/scc: comply to pod security admission [#27269](https://github.com/openshift/origin/pull/27269) * [Bug 2093122](https://bugzilla.redhat.com/show_bug.cgi?id=2093122): synthetictests: Event struct's Related field is optional [#27208](https://github.com/openshift/origin/pull/27208) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): authorization: add a test checking that the restricted-v2 SCC mutates securityContext to match restricted PSa [#27257](https://github.com/openshift/origin/pull/27257) * [Bug 2098095](https://bugzilla.redhat.com/show_bug.cgi?id=2098095): EgressIP tests: Use OpenShift API to retrieve CloudPrivateIPConfigs and EgressIPs [#27243](https://github.com/openshift/origin/pull/27243) * [Bug 2099611](https://bugzilla.redhat.com/show_bug.cgi?id=2099611): Increase etcd-operator watch channels upperbound for BareMetal Platform [#27263](https://github.com/openshift/origin/pull/27263) * [Bug 2098094](https://bugzilla.redhat.com/show_bug.cgi?id=2098094): EgressIP test: Remove print statement on test failure [#27191](https://github.com/openshift/origin/pull/27191) * [Bug 2093339](https://bugzilla.redhat.com/show_bug.cgi?id=2093339): move provisioning test to permanent disablement, since this is not yet officially supported [#27267](https://github.com/openshift/origin/pull/27267) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): Re-enable tests [#27258](https://github.com/openshift/origin/pull/27258) * [Bug 2097713](https://bugzilla.redhat.com/show_bug.cgi?id=2097713): Extend the allowance for etcdHighNumberOfLeaderChanges. [#27238](https://github.com/openshift/origin/pull/27238) * [Bug 2097684](https://bugzilla.redhat.com/show_bug.cgi?id=2097684): Nutanix provider for e2e testing [#27102](https://github.com/openshift/origin/pull/27102) * Add David Peraza as approver on samples test content [#27241](https://github.com/openshift/origin/pull/27241) * [Bug 2093992](https://bugzilla.redhat.com/show_bug.cgi?id=2093992): Bump timeout for cvo ugprade check to 10 minutes for Baremetal jobs [#27254](https://github.com/openshift/origin/pull/27254) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): update kube to v1.24.0 [#27244](https://github.com/openshift/origin/pull/27244) * [Bug 2097297](https://bugzilla.redhat.com/show_bug.cgi?id=2097297): Don't consider DNS lookup failure disruption [#27250](https://github.com/openshift/origin/pull/27250) * [Bug 2093051](https://bugzilla.redhat.com/show_bug.cgi?id=2093051): use the node update finished as a backup completion time for OSStaged [#27206](https://github.com/openshift/origin/pull/27206) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): Extend time for kube rebase [#27252](https://github.com/openshift/origin/pull/27252) * [Bug 2097009](https://bugzilla.redhat.com/show_bug.cgi?id=2097009): Run must-gather tests in later to reduce resource contention [#27249](https://github.com/openshift/origin/pull/27249) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): update samples for 4.11 [#27234](https://github.com/openshift/origin/pull/27234) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): Report late requests verification: Fix for Hypershift [#27220](https://github.com/openshift/origin/pull/27220) * [Bug 2094919](https://bugzilla.redhat.com/show_bug.cgi?id=2094919): Skip etcd vertical scaling test on vsphere [#27236](https://github.com/openshift/origin/pull/27236) * [Bug 2092961](https://bugzilla.redhat.com/show_bug.cgi?id=2092961): Use http for network endpoint test. [#27217](https://github.com/openshift/origin/pull/27217) * [Bug 2084361](https://bugzilla.redhat.com/show_bug.cgi?id=2084361): Print error msg before os.Exit() [#27230](https://github.com/openshift/origin/pull/27230) * [Bug 2093049](https://bugzilla.redhat.com/show_bug.cgi?id=2093049): test/extended/networking: fix [pod sysctls should not affect node] to use known host interfaces [#27221](https://github.com/openshift/origin/pull/27221) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): explicit timeout for the etcd scaling test [#27216](https://github.com/openshift/origin/pull/27216) * revert 1.24 tests to get back to work [#27233](https://github.com/openshift/origin/pull/27233) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): update kube to v1.24.0 [#27181](https://github.com/openshift/origin/pull/27181) * Revert "Bug 2079679: pkg/monitor: wait for Prometheus sidecars to be ready" [#27223](https://github.com/openshift/origin/pull/27223) * [Bug 2091110](https://bugzilla.redhat.com/show_bug.cgi?id=2091110): Skip ErrImagePull for expected failures [#27202](https://github.com/openshift/origin/pull/27202) * allow terminating pods to be ready=false [#27212](https://github.com/openshift/origin/pull/27212) * Revert "Bug 2093049: test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces" [#27219](https://github.com/openshift/origin/pull/27219) * [Bug 2092961](https://bugzilla.redhat.com/show_bug.cgi?id=2092961): Flake almost all ci cluster to external svc disruption. [#27210](https://github.com/openshift/origin/pull/27210) * [Bug 2093049](https://bugzilla.redhat.com/show_bug.cgi?id=2093049): test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces [#27203](https://github.com/openshift/origin/pull/27203) * [Bug 2093234](https://bugzilla.redhat.com/show_bug.cgi?id=2093234): Add regex filter and intervals duration to e2e-charts [#27186](https://github.com/openshift/origin/pull/27186) * [Bug 2093046](https://bugzilla.redhat.com/show_bug.cgi?id=2093046): priority class: add exception for must-gather pending bug fix [#27204](https://github.com/openshift/origin/pull/27204) * [Bug 2081732](https://bugzilla.redhat.com/show_bug.cgi?id=2081732): remove incorrect namespace check in static pod test [#27195](https://github.com/openshift/origin/pull/27195) * [Bug 2092961](https://bugzilla.redhat.com/show_bug.cgi?id=2092961): Add disruption test to an external service, not cluster under test. [#27179](https://github.com/openshift/origin/pull/27179) * [Bug 2091547](https://bugzilla.redhat.com/show_bug.cgi?id=2091547): Skip internet connection test if we use a proxy [#27093](https://github.com/openshift/origin/pull/27093) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): pkg/monitor: wait for Prometheus sidecars to be ready [#27201](https://github.com/openshift/origin/pull/27201) * [Bug 2091067](https://bugzilla.redhat.com/show_bug.cgi?id=2091067): EgressIP: Make tests retry on API timeout errors [#27185](https://github.com/openshift/origin/pull/27185) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): report late request (broken LB) for the external client [#27129](https://github.com/openshift/origin/pull/27129) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): brings back the etcd scaling test [#27176](https://github.com/openshift/origin/pull/27176) * [Bug 2091086](https://bugzilla.redhat.com/show_bug.cgi?id=2091086): test/extended/cli/explain: Include OperatorHub CRD when 'marketplace' is enabled [#27188](https://github.com/openshift/origin/pull/27188) * rename intervals to timelines to be self-explanatory [#27182](https://github.com/openshift/origin/pull/27182) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): label project-created namespaces to not sync PodSecurity labels [#27177](https://github.com/openshift/origin/pull/27177) * wait for kube-apiserver to settle after modifying network configuration [#27193](https://github.com/openshift/origin/pull/27193) * [Bug 1992596](https://bugzilla.redhat.com/show_bug.cgi?id=1992596): move help.sh to golang-based e2e [#27190](https://github.com/openshift/origin/pull/27190) * [Bug 2091086](https://bugzilla.redhat.com/show_bug.cgi?id=2091086): cli: don't insist on metal3 CRDs being present when cluster capabilities are None [#26998](https://github.com/openshift/origin/pull/26998) * restrict the per-namespace invariant alert check [#27184](https://github.com/openshift/origin/pull/27184) * [Bug 2090692](https://bugzilla.redhat.com/show_bug.cgi?id=2090692): slightly loosen oc exec help test [#27183](https://github.com/openshift/origin/pull/27183) * Updating openshift-enterprise-tests images to be consistent with ART [#27139](https://github.com/openshift/origin/pull/27139) * allow up to two DNS check pods to be waiting [#27175](https://github.com/openshift/origin/pull/27175) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): skip tests to facilitate rebase [#27178](https://github.com/openshift/origin/pull/27178) * [Bug 2081732](https://bugzilla.redhat.com/show_bug.cgi?id=2081732): Static pod test error [#27160](https://github.com/openshift/origin/pull/27160) * Revert "Bug 2089831: Temporarily disable telemetry token test." [#27168](https://github.com/openshift/origin/pull/27168) * add per-namespace tests for kubepodnotready alert failures [#27151](https://github.com/openshift/origin/pull/27151) * remove the etcd vertical scaling test [#27174](https://github.com/openshift/origin/pull/27174) * [Bug 2089276](https://bugzilla.redhat.com/show_bug.cgi?id=2089276): Detect and use the packet capture interface for EgessIP tests. [#27164](https://github.com/openshift/origin/pull/27164) * remove test: 'etcd is able to vertically scale up and down with a single node' [#27170](https://github.com/openshift/origin/pull/27170) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): bump o/kube so that test namespaces aren't PSa label synced [#27173](https://github.com/openshift/origin/pull/27173) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): special configuration on barematal platform for the etcd vertical test is required [#27140](https://github.com/openshift/origin/pull/27140) * don't trigger single second disruption on contiguous disruption [#27161](https://github.com/openshift/origin/pull/27161) * [Bug 2089831](https://bugzilla.redhat.com/show_bug.cgi?id=2089831): Temporarily disable telemetry token test. [#27165](https://github.com/openshift/origin/pull/27165) * BZ2088533: Add subresource.status check exceptions for techpreview jobs [#27156](https://github.com/openshift/origin/pull/27156) * add pod graceful termination to pod lifecycle [#27153](https://github.com/openshift/origin/pull/27153) * [Bug 2081732](https://bugzilla.redhat.com/show_bug.cgi?id=2081732): Dump debug message whenever static pod test fails [#27143](https://github.com/openshift/origin/pull/27143) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): image_ecosystem: remove deprecated imagestreams [#27133](https://github.com/openshift/origin/pull/27133) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): Auth-133: test/extended/util: comply exec pod to restricted pod security profile [#27152](https://github.com/openshift/origin/pull/27152) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): makes the etcd invariant test work on dualstack platform [#27148](https://github.com/openshift/origin/pull/27148) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): ExternalControlPlaneTopology: Skip etcd master endpoint verification [#27149](https://github.com/openshift/origin/pull/27149) * BZ2087992: Add regex matching, regex inverse matching, and default end date option for intervals [#27117](https://github.com/openshift/origin/pull/27117) * BZ 2087504: Add Early test to check for CRD subresource.status [#26954](https://github.com/openshift/origin/pull/26954) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): the machine API can be unavailable resulting in a 404 or an empty list [#27147](https://github.com/openshift/origin/pull/27147) * EgressIP downstream tests for OVN Kubernetes [#26999](https://github.com/openshift/origin/pull/26999) * Add user coreydaley as an approver [#27144](https://github.com/openshift/origin/pull/27144) * handle cases where containers restart [#27137](https://github.com/openshift/origin/pull/27137) * commenting ipv6 for sysctls [#27142](https://github.com/openshift/origin/pull/27142) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): ensure number of voting members in the cm matches the number of master machines [#27141](https://github.com/openshift/origin/pull/27141) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): the etcd vertical scaling feature misses e2e tests [#27127](https://github.com/openshift/origin/pull/27127) * [Bug 2084361](https://bugzilla.redhat.com/show_bug.cgi?id=2084361): Add some debugging information for mysterious exit 2 errors [#27136](https://github.com/openshift/origin/pull/27136) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): adds new test to the API monitor [#27118](https://github.com/openshift/origin/pull/27118) * update alert and disruption limits [#27130](https://github.com/openshift/origin/pull/27130) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): gives the backend monitoring an identity [#27134](https://github.com/openshift/origin/pull/27134) * always allow at least one second for disruption [#27131](https://github.com/openshift/origin/pull/27131) * [Bug 2080007](https://bugzilla.redhat.com/show_bug.cgi?id=2080007): unrevert external ip configuration e2e networking tests [#27078](https://github.com/openshift/origin/pull/27078) * [Bug 2083941](https://bugzilla.redhat.com/show_bug.cgi?id=2083941): feat: add fuzzy match on micro release [#27123](https://github.com/openshift/origin/pull/27123) * add test to catch single second disruption patterns [#27132](https://github.com/openshift/origin/pull/27132) * [Bug 2082538](https://bugzilla.redhat.com/show_bug.cgi?id=2082538): bump cluster-capi-operator apirequests upper bound for GCP And Azure [#27108](https://github.com/openshift/origin/pull/27108) * Revert "moves TestScalingUpAndDownSingleNode from cluster-etcd-operator" [#27126](https://github.com/openshift/origin/pull/27126) * Add debugging message for static pod test [#27111](https://github.com/openshift/origin/pull/27111) * Bump net.ipv6.neigh.IFNAME.retrans_time_ms for Multiarch [#27119](https://github.com/openshift/origin/pull/27119) * Don't hardcode the SA token audience when requesting one [#27120](https://github.com/openshift/origin/pull/27120) * timeline command, container exit fix, key resources by uid, and use reflector [#27114](https://github.com/openshift/origin/pull/27114) * [NE-883](https://issues.redhat.com/browse/NE-883): test/extended/router: Add test for spec.subdomain [#27030](https://github.com/openshift/origin/pull/27030) * moves TestScalingUpAndDownSingleNode from cluster-etcd-operator [#26917](https://github.com/openshift/origin/pull/26917) * Add config for golangci-lint no-sprintf-host-port [#27116](https://github.com/openshift/origin/pull/27116) * Correct pod timing [#27112](https://github.com/openshift/origin/pull/27112) * [Bug 2080687](https://bugzilla.redhat.com/show_bug.cgi?id=2080687): request prometheus service account token [#27100](https://github.com/openshift/origin/pull/27100) * Fix request token ic cli/admin tests [#27113](https://github.com/openshift/origin/pull/27113) * [Bug 2081012](https://bugzilla.redhat.com/show_bug.cgi?id=2081012): Don't wait for sa token [#27104](https://github.com/openshift/origin/pull/27104) * prometheus helper: add helper to retrieve prometheus query token [#27107](https://github.com/openshift/origin/pull/27107) * [Bug 2080679](https://bugzilla.redhat.com/show_bug.cgi?id=2080679): fix oc related test to land k8s 1.24 [#27099](https://github.com/openshift/origin/pull/27099) * [rebase 1.24] disable tests with time limit to facilitate rebase [#27086](https://github.com/openshift/origin/pull/27086) * [Bug 2082239](https://bugzilla.redhat.com/show_bug.cgi?id=2082239): Bump net.ipv6.neigh.IFNAME from 30005 to 30010 for Multiarch [#27101](https://github.com/openshift/origin/pull/27101) * test/extended/util/openshift/clusterversionoperator/adminack: Accept MultipleReasons [#27110](https://github.com/openshift/origin/pull/27110) * make it easy to create pod interval tests [#27092](https://github.com/openshift/origin/pull/27092) * [Bug 2080681](https://bugzilla.redhat.com/show_bug.cgi?id=2080681): Request new token instead of using node-bootstrapper token [#27098](https://github.com/openshift/origin/pull/27098) * Revert "NE-626: Add DNS CI coverage for golang and glibc resolver libraries" [#27103](https://github.com/openshift/origin/pull/27103) * make the pod ip check a controller [#27097](https://github.com/openshift/origin/pull/27097) * [NE-626](https://issues.redhat.com/browse/NE-626): Add DNS CI coverage for golang and glibc resolver libraries [#26957](https://github.com/openshift/origin/pull/26957) * Revert "test: allow -f to match tests for any test suite" [#27095](https://github.com/openshift/origin/pull/27095) * [MON-2148](https://issues.redhat.com/browse/MON-2148): Handle 401 code for prometheus api route [#27031](https://github.com/openshift/origin/pull/27031) * test: allow -f to match tests for any test suite [#27091](https://github.com/openshift/origin/pull/27091) * router: wait for "use scc restricted" SAR before pod creation [#27084](https://github.com/openshift/origin/pull/27084) * Remove non-functional gu workload tests. [#27044](https://github.com/openshift/origin/pull/27044) * test/extended/prometheus/image_pulls: New "should be fast" test-case [#27067](https://github.com/openshift/origin/pull/27067) * give multi-arch more time to complete upgrades to clean up signal [#27085](https://github.com/openshift/origin/pull/27085) * skip 'should not see excessive Back-off restarting failed containers' for e2e tests [#27087](https://github.com/openshift/origin/pull/27087) * haproxy needs to request privilege escalation in order to work [#27080](https://github.com/openshift/origin/pull/27080) * updates "managed cluster should report ready nodes the entire duration of the test run" [#27077](https://github.com/openshift/origin/pull/27077) * skip etcd quorum probes failures when etcd revision changes [#27072](https://github.com/openshift/origin/pull/27072) * don't wait for SA token secrets [#27081](https://github.com/openshift/origin/pull/27081) * Revert "Add e2e tests for ExternalIP Policy and AutoAssignCIDRs" [#27075](https://github.com/openshift/origin/pull/27075) * Add restricted-v2 to the default RBAC rules for authenticated users [#27071](https://github.com/openshift/origin/pull/27071) * Increase determinism when searching for prom service secret token [#27073](https://github.com/openshift/origin/pull/27073) * improves etcdRevisionChangeAllowance calculates the number of etcd's operator rollouts [#27070](https://github.com/openshift/origin/pull/27070) * Include timestamp when reporting observed ReusedPodIP events. [#27074](https://github.com/openshift/origin/pull/27074) * track pod IP re-use [#27062](https://github.com/openshift/origin/pull/27062) * hack/verify-generated: Replace --quiet with --exit-code [#27060](https://github.com/openshift/origin/pull/27060) * [Bug 1992596](https://bugzilla.redhat.com/show_bug.cgi?id=1992596): e2e/cli: Migrate create.sh to Go tests [#27049](https://github.com/openshift/origin/pull/27049) * force completes upgrade failure if operator failure [#27058](https://github.com/openshift/origin/pull/27058) * [Bug 2078528](https://bugzilla.redhat.com/show_bug.cgi?id=2078528): bump cluster-node-tuning-operator apirequests upper bound for OpenStack [#27052](https://github.com/openshift/origin/pull/27052) * handle cases where the DNS querier pod isn't yet running [#27056](https://github.com/openshift/origin/pull/27056) * Add e2e tests for ExternalIP Policy and AutoAssignCIDRs [#26894](https://github.com/openshift/origin/pull/26894) * tuning-cni: basic tests [#26953](https://github.com/openshift/origin/pull/26953) * Sysctl: validate that setting a pod sysctl does not affect node and other pods [#26940](https://github.com/openshift/origin/pull/26940) * the 'should be scheduled on different nodes' were only fixed in 4.11 and later [#27053](https://github.com/openshift/origin/pull/27053) * Separate out 'Back-off restarting failed container' from pathological test [#27047](https://github.com/openshift/origin/pull/27047) * Revert "Skip newly enabled networkpolicy tests on IPv6" [#27045](https://github.com/openshift/origin/pull/27045) * Flake pod sandbox errors pinging container registry on azure. [#26964](https://github.com/openshift/origin/pull/26964) * Ignore loki NetworkNotReady repeating events. [#27051](https://github.com/openshift/origin/pull/27051) * [Bug 2030972](https://bugzilla.redhat.com/show_bug.cgi?id=2030972): test/extended/util/openshift/clusterversionoperator: Survive API hiccups [#27041](https://github.com/openshift/origin/pull/27041) * [Bug 2077457](https://bugzilla.redhat.com/show_bug.cgi?id=2077457): Skip BeforeEach as well for the skipped HAProxy config manager test [#27034](https://github.com/openshift/origin/pull/27034) * synthetic: cloud api quota synthetic test should always be present [#27042](https://github.com/openshift/origin/pull/27042) * Remove fixed clusterIP service for ipv6 contexts [#26895](https://github.com/openshift/origin/pull/26895) * loosen SCC capabilities check to allow stricter caps [#27024](https://github.com/openshift/origin/pull/27024) * test/dns: add the bits to make the Restricted PodSecurityPolicy happy [#27035](https://github.com/openshift/origin/pull/27035) * Disable FIPS disabled serving routes test on BM [#27033](https://github.com/openshift/origin/pull/27033) * test/e2e/upgrade: Use PATCH instead of POST for ClusterVersion spec updates [#27023](https://github.com/openshift/origin/pull/27023) * Sysctl tests: pod with sysctls not on whitelist should not start [#26937](https://github.com/openshift/origin/pull/26937) * [Bug 2075584](https://bugzilla.redhat.com/show_bug.cgi?id=2075584): Use substring match instead of exact match [#27028](https://github.com/openshift/origin/pull/27028) * Switch to groupified APIs [#27025](https://github.com/openshift/origin/pull/27025) * Dump imagestreams and buildconfigs on build imagechange trigger test failure [#27019](https://github.com/openshift/origin/pull/27019) * Best matcher single node OVN [#26929](https://github.com/openshift/origin/pull/26929) * : Separate pod network creation failure from others in sandbox creation… [#27020](https://github.com/openshift/origin/pull/27020) * test/.../disruption: set pod security level centrally [#27017](https://github.com/openshift/origin/pull/27017) * Switch to groupified APIs [#27008](https://github.com/openshift/origin/pull/27008) * router: construct url with net.JoinHostPort [#27015](https://github.com/openshift/origin/pull/27015) * Add exception for etcd guard pod readiness probe error events [#27016](https://github.com/openshift/origin/pull/27016) * test/extended/*: set necessary pod security settings [#27014](https://github.com/openshift/origin/pull/27014) * getArchitecture: Fix to work with Hypershift [#27004](https://github.com/openshift/origin/pull/27004) * [Bug 2072171](https://bugzilla.redhat.com/show_bug.cgi?id=2072171): Reenable the implementation for basic egressfw e2e CI test [#26973](https://github.com/openshift/origin/pull/26973) * [MGMT-9440](https://issues.redhat.com/browse/MGMT-9440): Fix single node serial tests API crash [#26904](https://github.com/openshift/origin/pull/26904) * skip tests for etcd leaders when etcd revisions change a lot [#27009](https://github.com/openshift/origin/pull/27009) * Fix another issue with CVO upgrade ack timeout on metal. [#27001](https://github.com/openshift/origin/pull/27001) * bump o/kube to get latest PSa test updates [#27012](https://github.com/openshift/origin/pull/27012) * [Bug 2031564](https://bugzilla.redhat.com/show_bug.cgi?id=2031564): Separate out test for 'RequiredInstallerResourcesMissing secrets' [#26936](https://github.com/openshift/origin/pull/26936) * [Bug 2060406](https://bugzilla.redhat.com/show_bug.cgi?id=2060406): bump apirequests upper bounds for GCP [#27002](https://github.com/openshift/origin/pull/27002) * [Bug 2072533](https://bugzilla.redhat.com/show_bug.cgi?id=2072533): synthetictests: skip "alert/Watchdog must have no gaps or changes" on SNO upgrades [#26976](https://github.com/openshift/origin/pull/26976) * [Bug 2074445](https://bugzilla.redhat.com/show_bug.cgi?id=2074445): exclude loki-promtail from duplicated events [#27006](https://github.com/openshift/origin/pull/27006) * Fix up one more optional capabilities new-app test [#27005](https://github.com/openshift/origin/pull/27005) * actually set default PSa labels if unset [#27000](https://github.com/openshift/origin/pull/27000) * util/client.go: add method to specify pod security admission level [#26938](https://github.com/openshift/origin/pull/26938) * Add test for validating related object references. [#26921](https://github.com/openshift/origin/pull/26921) * correct pathological event detection [#26994](https://github.com/openshift/origin/pull/26994) * prevent npe for old container status readiness [#26996](https://github.com/openshift/origin/pull/26996) * [Bug 2011895](https://bugzilla.redhat.com/show_bug.cgi?id=2011895): Add synthetic test for cloud API throttling [#26559](https://github.com/openshift/origin/pull/26559) * router: fix all uses of Sprintf to build host:port for a URL [#26983](https://github.com/openshift/origin/pull/26983) * prevent pending/firing alert overlap [#26968](https://github.com/openshift/origin/pull/26968) * Skip newly enabled networkpolicy tests on IPv6 [#26977](https://github.com/openshift/origin/pull/26977) * test: switch to testing CapBnd over CapInh [#26960](https://github.com/openshift/origin/pull/26960) * remove wait for samples imagestreams, no longer needed [#26992](https://github.com/openshift/origin/pull/26992) * [Bug 2066865](https://bugzilla.redhat.com/show_bug.cgi?id=2066865): bump openshift/kubernetes [#26969](https://github.com/openshift/origin/pull/26969) * test/extended: add/update OWNERS files for Prometheus [#26910](https://github.com/openshift/origin/pull/26910) * test/extended/prometheus: Remove SDN/OVN-K alert rules [#26687](https://github.com/openshift/origin/pull/26687) * Unrevert and fix for the HAProxy test [#26980](https://github.com/openshift/origin/pull/26980) * Bump timeout for CVO to ack the upgrade generation. [#26974](https://github.com/openshift/origin/pull/26974) * [Bug 2066457](https://bugzilla.redhat.com/show_bug.cgi?id=2066457): don't fail when a query returns warnings [#26984](https://github.com/openshift/origin/pull/26984) * [Bug 2072924](https://bugzilla.redhat.com/show_bug.cgi?id=2072924): increase the threshold on the number of telemetry series [#26988](https://github.com/openshift/origin/pull/26988) * Update limits [#26982](https://github.com/openshift/origin/pull/26982) * fix evaluation of deleted pods for pod sandbox test [#26978](https://github.com/openshift/origin/pull/26978) * Revert "Fix HAProxy tests on FIPS properly" [#26979](https://github.com/openshift/origin/pull/26979) * Revert "Add networking test for invalid external gateway" [#26975](https://github.com/openshift/origin/pull/26975) * Revert "Implementation for basic egressfw e2e CI test" [#26967](https://github.com/openshift/origin/pull/26967) * [Bug 2067323](https://bugzilla.redhat.com/show_bug.cgi?id=2067323): extended/test/router: omit DNS managed conditions for shards [#26949](https://github.com/openshift/origin/pull/26949) * Add networking test for invalid external gateway [#26883](https://github.com/openshift/origin/pull/26883) * [Bug 2060406](https://bugzilla.redhat.com/show_bug.cgi?id=2060406): test: bump apirequests upper bounds for VSphere and AWS single node [#26962](https://github.com/openshift/origin/pull/26962) * test: update synthetic test node restart count [#26948](https://github.com/openshift/origin/pull/26948) * bump: k8s.io/kubernetes [#26955](https://github.com/openshift/origin/pull/26955) * Ignore FailedCreatePodSandBox event that is expected to happen [#26966](https://github.com/openshift/origin/pull/26966) * add pod lifecycle intervals to separate pages [#26908](https://github.com/openshift/origin/pull/26908) * Add missing operators from the known operators list [#26963](https://github.com/openshift/origin/pull/26963) * [Bug 2047913](https://bugzilla.redhat.com/show_bug.cgi?id=2047913): Fix HAProxy tests on FIPS properly [#26803](https://github.com/openshift/origin/pull/26803) * Bump allowed watches for node-tuning-operator [#26944](https://github.com/openshift/origin/pull/26944) * Migrate tests away from using samples-operator provided imagestreams [#26913](https://github.com/openshift/origin/pull/26913) * Image registry redirect [#26920](https://github.com/openshift/origin/pull/26920) * [Bug 1996883](https://bugzilla.redhat.com/show_bug.cgi?id=1996883): increasing build config loglevel [#26958](https://github.com/openshift/origin/pull/26958) * Use ServerGroupResources instead deprecated ServerResources [#26956](https://github.com/openshift/origin/pull/26956) * Fix typo in OVN Kubernetes skipper [#26950](https://github.com/openshift/origin/pull/26950) * [Bug 1996883](https://bugzilla.redhat.com/show_bug.cgi?id=1996883): Increasing log level to support decrease in default buildah log level [#26941](https://github.com/openshift/origin/pull/26941) * Implementation for basic egressfw e2e CI test [#26934](https://github.com/openshift/origin/pull/26934) * Check token response error code [#26926](https://github.com/openshift/origin/pull/26926) * Clarify that the image mirroring requirement applies to conformance tests only [#26912](https://github.com/openshift/origin/pull/26912) * coarse serialization of storage tests [#26933](https://github.com/openshift/origin/pull/26933) * Revert "bump: k8s.io/kubernetes" [#26939](https://github.com/openshift/origin/pull/26939) * bump: k8s.io/kubernetes [#26935](https://github.com/openshift/origin/pull/26935) * Flake on FailedCreatePodSandbox if missing ovn readiness file. [#26932](https://github.com/openshift/origin/pull/26932) * Add pod securityContext sysctl whitelist tests [#26809](https://github.com/openshift/origin/pull/26809) * Revert "Implementation for basic egressfw e2e CI test" [#26931](https://github.com/openshift/origin/pull/26931) * Update where the canary test lists is retrieved from [#26930](https://github.com/openshift/origin/pull/26930) * Implementation for basic egressfw e2e CI test [#26865](https://github.com/openshift/origin/pull/26865) * Implementation for egress-router-cni e2e ci test [#26875](https://github.com/openshift/origin/pull/26875) * Attempted fix for missing monitor events. [#26862](https://github.com/openshift/origin/pull/26862) * [JKNS-267](https://issues.redhat.com/browse/JKNS-267): minimize jenkins e2es (pipeline strategy verification only) [#26914](https://github.com/openshift/origin/pull/26914) * Attempt multiple different token requests [#26916](https://github.com/openshift/origin/pull/26916) * Simplify 26907 [#26924](https://github.com/openshift/origin/pull/26924) * [Bug 2034688](https://bugzilla.redhat.com/show_bug.cgi?id=2034688): allow Prometheus/Thanos to return 401 or 403 when the request isn't authenticated [#26695](https://github.com/openshift/origin/pull/26695) * Migrate builds tests away from using sample imagestreams since samples will be optional [#26909](https://github.com/openshift/origin/pull/26909) * Update prometheus owners [#26911](https://github.com/openshift/origin/pull/26911) * Pod scheduling tests improve pod deployment identification [#26906](https://github.com/openshift/origin/pull/26906) * Add early test to check router pods are not on same node [#26899](https://github.com/openshift/origin/pull/26899) * Give each interval chart a title [#26896](https://github.com/openshift/origin/pull/26896) * Mark image pull from registry.redhat.io as flake to track but not fail [#26897](https://github.com/openshift/origin/pull/26897) * [Bug 1961233](https://bugzilla.redhat.com/show_bug.cgi?id=1961233): Add DNS availability upgrade test [#26795](https://github.com/openshift/origin/pull/26795) * Revert "Disable intree vsphere tests" [#26797](https://github.com/openshift/origin/pull/26797) * [Bug 2026063](https://bugzilla.redhat.com/show_bug.cgi?id=2026063): build-quota test: fix cgroupv2 parsing holes exposed by buildah upgrade [#26885](https://github.com/openshift/origin/pull/26885) * [Bug 2057990](https://bugzilla.redhat.com/show_bug.cgi?id=2057990): Add debug info for signature test [#26884](https://github.com/openshift/origin/pull/26884) * [MGMT-9440](https://issues.redhat.com/browse/MGMT-9440): Fix single node serial tests API crash. [#26868](https://github.com/openshift/origin/pull/26868) * [Bug 2060498](https://bugzilla.redhat.com/show_bug.cgi?id=2060498): only add failure when no event was found for the target revision [#26880](https://github.com/openshift/origin/pull/26880) * [Bug 2060406](https://bugzilla.redhat.com/show_bug.cgi?id=2060406): operators should not create watch channels very often: bump OpenStack monitoring operator [#26877](https://github.com/openshift/origin/pull/26877) * Use common threshold constant as other event tests [#26873](https://github.com/openshift/origin/pull/26873) * cleanup network policy ACL extended test [#26876](https://github.com/openshift/origin/pull/26876) * add text to the timelines when you hover [#26871](https://github.com/openshift/origin/pull/26871) * Make a test to specifically look for image pull backoff for registry.redhat.io [#26858](https://github.com/openshift/origin/pull/26858) * [Bug 2059299](https://bugzilla.redhat.com/show_bug.cgi?id=2059299): IBMCloud: Ignore CRB already exists [#26864](https://github.com/openshift/origin/pull/26864) * Switch to batch/v1 CronJob [#26867](https://github.com/openshift/origin/pull/26867) * [Bug 2059277](https://bugzilla.redhat.com/show_bug.cgi?id=2059277): images/tests: yum update python3-six to workaround ART issue [#26863](https://github.com/openshift/origin/pull/26863) * Increase scale test timeout to 30 minutes [#26861](https://github.com/openshift/origin/pull/26861) * Fix ovnkube-node readiness test to include successes. [#26860](https://github.com/openshift/origin/pull/26860) * Bz2054254 rearrange test cases [#26857](https://github.com/openshift/origin/pull/26857) * Set ovnkube-node readiness failure to flake for now. [#26855](https://github.com/openshift/origin/pull/26855) * Increase cluster-monitor-operator watch count threshold on single-node clusters [#26685](https://github.com/openshift/origin/pull/26685) * allow slow kubelet updates for static pods, but still fail if they never succeed [#26852](https://github.com/openshift/origin/pull/26852) * OWNERS: Declare Bugzilla component [#26368](https://github.com/openshift/origin/pull/26368) * vsphere is firing this alert/VSphereOpenshiftNodeHealthFail and it is hiding other alerts [#26850](https://github.com/openshift/origin/pull/26850) * Updating openshift-enterprise-tests images to be consistent with ART [#26804](https://github.com/openshift/origin/pull/26804) * update alert thresholds after extending static pod install duration [#26844](https://github.com/openshift/origin/pull/26844) * ip reconciler ignore [#26842](https://github.com/openshift/origin/pull/26842) * [Bug 2049117](https://bugzilla.redhat.com/show_bug.cgi?id=2049117): Reenable wait on worker deletion and increase serial test timeout [#26810](https://github.com/openshift/origin/pull/26810) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): fail on static pod lifecycle failures [#26837](https://github.com/openshift/origin/pull/26837) * Allow a single test to override suite timeout [#26833](https://github.com/openshift/origin/pull/26833) * [Bug 2053312](https://bugzilla.redhat.com/show_bug.cgi?id=2053312): requestheader test must wait for authentication operator to settle after config update [#26834](https://github.com/openshift/origin/pull/26834) * [Bug 2053143](https://bugzilla.redhat.com/show_bug.cgi?id=2053143): allow inexact matches for disruption data [#26831](https://github.com/openshift/origin/pull/26831) * Break out test for OSUpdateStaged event with no OSUpdateStarted. [#26824](https://github.com/openshift/origin/pull/26824) * add job type key to the error we track for statistical jobs [#26823](https://github.com/openshift/origin/pull/26823) * baremetal: add test for preprovisioning images [#26780](https://github.com/openshift/origin/pull/26780) * [Bug 2045590](https://bugzilla.redhat.com/show_bug.cgi?id=2045590): Alibaba: enable init for alibabacloud provider [#26818](https://github.com/openshift/origin/pull/26818) * Revert "Flake failed sandboxes from bug in new guard pods" [#26817](https://github.com/openshift/origin/pull/26817) * Debug missing OSUpdateStarted events [#26798](https://github.com/openshift/origin/pull/26798) * Delete extra workers before running metal high availability test [#26813](https://github.com/openshift/origin/pull/26813) * images: update registry to 2.8.0-beta.1 [#26811](https://github.com/openshift/origin/pull/26811) * [Bug 2044824](https://bugzilla.redhat.com/show_bug.cgi?id=2044824): Update k8s vendoring [#26805](https://github.com/openshift/origin/pull/26805) * [Bug 2050345](https://bugzilla.redhat.com/show_bug.cgi?id=2050345): update p99 values for disruption and alerts [#26815](https://github.com/openshift/origin/pull/26815) * [Bug 2047911](https://bugzilla.redhat.com/show_bug.cgi?id=2047911): IBMCloud: Concurrent CRB create [#26806](https://github.com/openshift/origin/pull/26806) * Only run parallel tests in the canary job since it runs in parallel [#26812](https://github.com/openshift/origin/pull/26812) * Fix broken console disruption test. [#26808](https://github.com/openshift/origin/pull/26808) * Add baremetal high availability tests [#26569](https://github.com/openshift/origin/pull/26569) * [Bug 2047362](https://bugzilla.redhat.com/show_bug.cgi?id=2047362): Prometheus check targets endpoint [#26793](https://github.com/openshift/origin/pull/26793) * Verify Builds with CSI Volume Sources [#26791](https://github.com/openshift/origin/pull/26791) * [Bug 2047790](https://bugzilla.redhat.com/show_bug.cgi?id=2047790): Skip some HAProxy tests on FIPS [#26800](https://github.com/openshift/origin/pull/26800) * don't double report early alert failures [#26796](https://github.com/openshift/origin/pull/26796) * [Full changelog](https://github.com/openshift/origin/compare/09fc485e8f45a31245b9b576f35d5e16a4895945...b34b8a2503424d03cd50b8ecd0860b380a492f4f) ### [thanos](https://github.com/openshift/thanos/tree/45baf4b41798633ce46a944786bbea39ba8c074e) * [OCPBUGS-21109](https://issues.redhat.com/browse/OCPBUGS-21109): Bump golang.org/x/net to v0.17.0 [#127](https://github.com/openshift/thanos/pull/127) * [OCPBUGS-18299](https://issues.redhat.com/browse/OCPBUGS-18299): Update exporter-toolkit to 0.7.3 [#116](https://github.com/openshift/thanos/pull/116) * [OCPBUGS-14559](https://issues.redhat.com/browse/OCPBUGS-14559): require at least TLS 1.2 instead of 1.3 [#113](https://github.com/openshift/thanos/pull/113) * Updating thanos images to be consistent with ART [#99](https://github.com/openshift/thanos/pull/99) * [OCPBUGS-3764](https://issues.redhat.com/browse/OCPBUGS-3764): Fix local-test for go 1.18 [#87](https://github.com/openshift/thanos/pull/87) * [Bug 2067877](https://bugzilla.redhat.com/show_bug.cgi?id=2067877): [bot] Bump openshift/thanos to v0.26.0 [#83](https://github.com/openshift/thanos/pull/83) * Bump openshift/thanos to v0.25.2 [#80](https://github.com/openshift/thanos/pull/80) * Bump openshift/thanos to v0.25.1 [#79](https://github.com/openshift/thanos/pull/79) * Bump openshift/thanos to v0.25.0 [#78](https://github.com/openshift/thanos/pull/78) * Bump openshift/thanos to v0.24.0 [#76](https://github.com/openshift/thanos/pull/76) * Updating thanos images to be consistent with ART [#77](https://github.com/openshift/thanos/pull/77) * [Full changelog](https://github.com/openshift/thanos/compare/ac17631943be205d4ea38ccfc8ef49db999b4e47...45baf4b41798633ce46a944786bbea39ba8c074e) ### [vsphere-cloud-controller-manager](https://github.com/openshift/cloud-provider-vsphere/tree/91f7b1fab3342f890274bec2b93b2bc0de8d99e1) * [OCPBUGS-2058](https://issues.redhat.com/browse/OCPBUGS-2058): fix .dockerignore to satisfy OCP specific requirements [#26](https://github.com/openshift/cloud-provider-vsphere/pull/26) * Updating ose-vsphere-cloud-controller-manager images to be consistent with ART [#18](https://github.com/openshift/cloud-provider-vsphere/pull/18) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Rebase cloud-provider-vsphere 15.06.2022 [#20](https://github.com/openshift/cloud-provider-vsphere/pull/20) * [Full changelog](https://github.com/openshift/cloud-provider-vsphere/compare/f2bc9eb32e2f367af2b498a79e32c1dbb006eefd...91f7b1fab3342f890274bec2b93b2bc0de8d99e1) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/f66027216f745565058ab288b0b9e78ea7b80485) * [OCPBUGS-21542](https://issues.redhat.com/browse/OCPBUGS-21542): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#93](https://github.com/openshift/vmware-vsphere-csi-driver/pull/93) * [OCPBUGS-7404](https://issues.redhat.com/browse/OCPBUGS-7404): fix for nil user session (#1859) [#58](https://github.com/openshift/vmware-vsphere-csi-driver/pull/58) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#41](https://github.com/openshift/vmware-vsphere-csi-driver/pull/41) * Updating vmware-vsphere-syncer images to be consistent with ART [#40](https://github.com/openshift/vmware-vsphere-csi-driver/pull/40) * [Bug 2074294](https://bugzilla.redhat.com/show_bug.cgi?id=2074294): UPSTREAM: 1706: Update golang.org/x/crypto for CVE-2022-27191 [#39](https://github.com/openshift/vmware-vsphere-csi-driver/pull/39) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#38](https://github.com/openshift/vmware-vsphere-csi-driver/pull/38) * Updating vmware-vsphere-syncer images to be consistent with ART [#37](https://github.com/openshift/vmware-vsphere-csi-driver/pull/37) * [Bug 2071019](https://bugzilla.redhat.com/show_bug.cgi?id=2071019): Rebase against v2.5.1 [#36](https://github.com/openshift/vmware-vsphere-csi-driver/pull/36) * [Bug 2029835](https://bugzilla.redhat.com/show_bug.cgi?id=2029835): Revert "Merge pull request #30 from bertinatto/rebase-v2.4.1" [#35](https://github.com/openshift/vmware-vsphere-csi-driver/pull/35) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#33](https://github.com/openshift/vmware-vsphere-csi-driver/pull/33) * Updating vmware-vsphere-syncer images to be consistent with ART [#32](https://github.com/openshift/vmware-vsphere-csi-driver/pull/32) * [Bug 2029835](https://bugzilla.redhat.com/show_bug.cgi?id=2029835): UPSTREAM: 1468: Fixed parsing of /proc/self/mountinfo with spaces [#34](https://github.com/openshift/vmware-vsphere-csi-driver/pull/34) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/e310f4d3828a71fb96344ccbe8b29d22754ebf77...f66027216f745565058ab288b0b9e78ea7b80485) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/565bbff8a2e2b44889be302cb76dbcbea4b6c849) * [OCPBUGS-21402](https://issues.redhat.com/browse/OCPBUGS-21402): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#176](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/176) * [OCPBUGS-5790](https://issues.redhat.com/browse/OCPBUGS-5790): Allow cluster to be upgraded even if using multiple datacenters [#130](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/130) * [OCPBUGS-5472](https://issues.redhat.com/browse/OCPBUGS-5472): Fix sc creation on resync [#127](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/127) * [OCPBUGS-3285](https://issues.redhat.com/browse/OCPBUGS-3285): set TLS cipher suites in Kube RBAC sidecars [#119](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/119) * [OCPBUGS-1710](https://issues.redhat.com/browse/OCPBUGS-1710): Add HTTP proxy to syncer container [#111](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/111) * [Bug 2109977](https://bugzilla.redhat.com/show_bug.cgi?id=2109977): storageclass should not be created for unsupported vsphere version [#101](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/101) * [Bug 2105334](https://bugzilla.redhat.com/show_bug.cgi?id=2105334): Reorder static resources to create RBAC first [#98](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/98) * [Bug 2095248](https://bugzilla.redhat.com/show_bug.cgi?id=2095248): Report max. nr. of attachable volumes per node [#90](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/90) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#85](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/85) * [Bug 2089419](https://bugzilla.redhat.com/show_bug.cgi?id=2089419): Don't block upgrades when another CSI driver is found [#87](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/87) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#86](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/86) * [Bug 2071021](https://bugzilla.redhat.com/show_bug.cgi?id=2071021): Enable snapshot support [#83](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/83) * [Bug 2072139](https://bugzilla.redhat.com/show_bug.cgi?id=2072139): Create separate controller and node roles [#82](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/82) * [Bug 2076637](https://bugzilla.redhat.com/show_bug.cgi?id=2076637): Scrape CSI driver + syncer metrics [#84](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/84) * add storageclass controller tests [#80](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/80) * [Bug 2059791](https://bugzilla.redhat.com/show_bug.cgi?id=2059791): [vSphere CSI driver Operator] didn't update 'vsphere_csi_driver_error' metric value when fixed the error manually [#81](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/81) * Set fsGroupPolicy in CSIDriver [#79](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/79) * [Bug 2053104](https://bugzilla.redhat.com/show_bug.cgi?id=2053104): Do not cache node check results between runs [#77](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/77) * [Bug 2043132](https://bugzilla.redhat.com/show_bug.cgi?id=2043132): Add metric when storageclass installation fails [#74](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/74) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#73](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/73) * readme: minor fixes [#63](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/63) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/f5d7362c88eb7d05bdfd0f70c2d53df7275d4ae2...565bbff8a2e2b44889be302cb76dbcbea4b6c849) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/b4164c48266e43bbcccfdb65c6999a741ff7b77d) * [OCPBUGS-21569](https://issues.redhat.com/browse/OCPBUGS-21569): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#132](https://github.com/openshift/vsphere-problem-detector/pull/132) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#84](https://github.com/openshift/vsphere-problem-detector/pull/84) * Updating vsphere-problem-detector images to be consistent with ART [#85](https://github.com/openshift/vsphere-problem-detector/pull/85) * [Bug 2058217](https://bugzilla.redhat.com/show_bug.cgi?id=2058217): fix docs for rwx volumes [#81](https://github.com/openshift/vsphere-problem-detector/pull/81) * [Bug 2042446](https://bugzilla.redhat.com/show_bug.cgi?id=2042446): Fix stale metrics by explicitly zeroed out old metrics [#79](https://github.com/openshift/vsphere-problem-detector/pull/79) * [Bug 2042446](https://bugzilla.redhat.com/show_bug.cgi?id=2042446): Fix stale metric collection [#77](https://github.com/openshift/vsphere-problem-detector/pull/77) * [Bug 2055729](https://bugzilla.redhat.com/show_bug.cgi?id=2055729): change NodePerfCheck criteria to be based on average latency [#75](https://github.com/openshift/vsphere-problem-detector/pull/75) * [Bug 2051881](https://bugzilla.redhat.com/show_bug.cgi?id=2051881): Dont forget to register metrics before emitting [#73](https://github.com/openshift/vsphere-problem-detector/pull/73) * Updating vsphere-problem-detector images to be consistent with ART [#72](https://github.com/openshift/vsphere-problem-detector/pull/72) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/a11df08a341b9084fd92c95e5b53368d1ea9aaa5...b4164c48266e43bbcccfdb65c6999a741ff7b77d)