# 4.12.0-0.nightly-2025-03-31-082843 Created: 2025-03-31 08:33:08 +0000 UTC Image Digest: `sha256:d51a58c4d898d7abc1156716270f97d90b6f3ac761497543c82d536bfc9c7604` ## Changes from 4.10.67 ### Components * Kubernetes upgraded from 1.23.17 to 1.25.16 * Red Hat Enterprise Linux CoreOS upgraded from 410.84.202308291254-0 to 412.86.202503310142-0 ### New images * [agent-installer-api-server](https://github.com/openshift/assisted-service) git [844e6efd](https://github.com/openshift/assisted-service/commit/844e6efd0d1c9d583afdefc6bc5ae744471ef9c1) `sha256:820c5688927a9c63dad5bd365260eea82d793da9db3392083bff6a05912ef455` * [agent-installer-csr-approver](https://github.com/openshift/assisted-installer) git [7336f38f](https://github.com/openshift/assisted-installer/commit/7336f38f75f91a876313daacbf497f25dfe21bbf) `sha256:aab7e61fb52dd2935e1074fbe020abad97534889519222ce4053cfac89c25dc4` * [agent-installer-node-agent](https://github.com/openshift/assisted-installer-agent) git [a905d6ec](https://github.com/openshift/assisted-installer-agent/commit/a905d6eceb7769a8e891354245efc738bcdb22cf) `sha256:70cd571dad26ff89b6249b724da9b52a1ea93356c4f1bda12c2a238f31bb1ee9` * [agent-installer-orchestrator](https://github.com/openshift/assisted-installer) git [7336f38f](https://github.com/openshift/assisted-installer/commit/7336f38f75f91a876313daacbf497f25dfe21bbf) `sha256:e9345edcd7b24825c729bd1f6ac14f9ab7acb09b9f66dd1e3f015901afed43b7` * [apiserver-network-proxy](https://github.com/openshift/apiserver-network-proxy) git [f56c606a](https://github.com/openshift/apiserver-network-proxy/commit/f56c606ae15041b0c981e654ab577d2b0a3a0a8f) `sha256:acb9ae02686748521d502e1117ef410970df9c8c8a7e46b5440fdb8fcc87f7bb` * [aws-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-aws) git [16156acc](https://github.com/openshift/cluster-api-provider-aws/commit/16156accbe3b9bcedbe39ef988170e1f644fcd75) `sha256:ec0f18a4f33a49caa05b6e6a60ad955df259035a2e7ea67e87654577177f59b7` * [azure-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-azure) git [a1b2a37b](https://github.com/openshift/cluster-api-provider-azure/commit/a1b2a37b7d31951708a8f6e1db201fe0c1ff687a) `sha256:77158265dba271c0d2cc11b14241bb4516b9440a9d02454de2e94f5c78d85170` * [cluster-capi-controllers](https://github.com/openshift/cluster-api) git [03d89f21](https://github.com/openshift/cluster-api/commit/03d89f216e0f2c3e1b2a647b0e37d52bbfdaefee) `sha256:1f21447597f90fe5bee5f1a7a101d0febc93333fafc3f48680cab488b706681e` * [cluster-capi-operator](https://github.com/openshift/cluster-capi-operator) git [60a36d83](https://github.com/openshift/cluster-capi-operator/commit/60a36d8320ddfd196840a1597e61c065603778ee) `sha256:d8ae9cb36dfec432a7a336429311a04135e2b0bca6060a935d2c7000c5a2335e` * [cluster-control-plane-machine-set-operator](https://github.com/openshift/cluster-control-plane-machine-set-operator) git [fb7f08a2](https://github.com/openshift/cluster-control-plane-machine-set-operator/commit/fb7f08a2a6e85f3ca76c40dcf980ba0ec904a617) `sha256:75d9aa9c0256ad65a18dfcd05eaad5489e897b6f11cb844ea04917f27e8ec6f3` * [cluster-kube-cluster-api-operator](https://github.com/openshift/cluster-api-operator) git [d50f7322](https://github.com/openshift/cluster-api-operator/commit/d50f7322addd997cc73a0ba8294eadb977974c3f) `sha256:21d7f5fa6b5dbc3b5b541891f6c30f57d03936d805c0f626b2c231e38f878072` * [cluster-platform-operators-manager](https://github.com/openshift/platform-operators) git [c930dc74](https://github.com/openshift/platform-operators/commit/c930dc745f23ee5bde8b48d13557976186c21c7c) `sha256:4641cba4b81280e62de9d2d2a6dce8e67879357cb69852166b47ea1001605c33` * [csi-driver-shared-resource-webhook](https://github.com/openshift/csi-driver-shared-resource) git [d054948f](https://github.com/openshift/csi-driver-shared-resource/commit/d054948fbc78ef04c7a55ac2a4b3ac0ed5648585) `sha256:285538ddc4fc3072851a0a7e39a41c5e605ac055d1fd1a409972a3e6dc45b495` * [gcp-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-gcp) git [e00019fa](https://github.com/openshift/cluster-api-provider-gcp/commit/e00019faa4bd74f70826344a8cc085ba13768422) `sha256:c5847131cca3767a374f65ca05f4320a39e714bd6f48774240000eee22ef9d69` * [ibmcloud-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-ibmcloud) git [0fe74f67](https://github.com/openshift/cluster-api-provider-ibmcloud/commit/0fe74f674bf5a1e464a5e2f872def13e1a9bb2a9) `sha256:67d67d67cae2a5dc5a1b1f7606e72a042d19f201616182d9581d560c59ba7f47` * [kubevirt-cloud-controller-manager](https://github.com/openshift/cloud-provider-kubevirt) git [a19615cd](https://github.com/openshift/cloud-provider-kubevirt/commit/a19615cda3daf69008253d75cc848ac0ad397179) `sha256:2127c0b85aabb21a44539280a1572f6e46092b0a1944d0ff0e89fd1ba5fbb7db` * [kubevirt-csi-driver](https://github.com/openshift/kubevirt-csi-driver) git [f407c8a7](https://github.com/openshift/kubevirt-csi-driver/commit/f407c8a71c831a8f7911bf0b4a99bb6b16e0e0b6) `sha256:7b9e7d374b997d190451c70aa8ae76e65bbfcc6147852be036ecee0bf7ff2bf9` * [machine-image-customization-controller](https://github.com/openshift/image-customization-controller) git [e456249d](https://github.com/openshift/image-customization-controller/commit/e456249dbf0c5456bd0671d41a4445bd266b3660) `sha256:37b09053bec972ff27f90b26853332b7c7bb23da5b73cd5a9da05819adc214d6` * [nutanix-machine-controllers](https://github.com/openshift/machine-api-provider-nutanix) git [336a4889](https://github.com/openshift/machine-api-provider-nutanix/commit/336a4889d4464be26bc3f0f7d85ba704fe3ccb02) `sha256:46da1ce44e24a4263ee7866afb8397a19945575be01f5482fe134468a0292a37` * [olm-rukpak](https://github.com/openshift/operator-framework-rukpak) git [bb06dd01](https://github.com/openshift/operator-framework-rukpak/commit/bb06dd0133acc2d10fa5425d90557edc068f48a7) `sha256:92a10cdea076010bccb33909894346dc68da0c8c8d91fe5e94ed2c104690e888` * [ovn-kubernetes-microshift](https://github.com/openshift/ovn-kubernetes) git [6dd54dc3](https://github.com/openshift/ovn-kubernetes/commit/6dd54dc32cd28553ce81e3fca5da3f3e2284e6b4) `sha256:372b2f0aedc20971eca58d71b624358a5af45f835b7b1b0cf0aa7cfc511b113f` * [powervs-block-csi-driver](https://github.com/openshift/ibm-powervs-block-csi-driver) git [b78e8e78](https://github.com/openshift/ibm-powervs-block-csi-driver/commit/b78e8e7871bd50ff77a68fdae320775a17856373) `sha256:8ae26b1bfd6f181892fa3731b2d6f2a25477c2b3f0e2836e3c182aea5b4af8ae` * [powervs-block-csi-driver-operator](https://github.com/openshift/ibm-powervs-block-csi-driver-operator) git [7dadc08a](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/commit/7dadc08acb9f515735c6c3fdb417424d0c668d44) `sha256:a7fd1e74170b32e73e06f91dc439f22f8feed59d33c38708e93b1b1d06c2c96d` * [powervs-cloud-controller-manager](https://github.com/openshift/cloud-provider-powervs) git [4fb4334c](https://github.com/openshift/cloud-provider-powervs/commit/4fb4334ca8aa9eb8290488359dd8d1cc5261da49) `sha256:dc454b156e20f09c8d522d20b4dee2d55b1c29a516486826c640833cd6ea5230` * [prometheus-operator-admission-webhook](https://github.com/openshift/prometheus-operator) git [d1e399d5](https://github.com/openshift/prometheus-operator/commit/d1e399d5cead91c677cee4a80a032f5057cb43e3) `sha256:3e45f91f203a08266fb7b2c8730a6e48a3da6365937d5715492a62456152c8ae` * rhel-coreos-8 `sha256:cd37730b06bb5c62c4ab9076a1a04734d66f5e393ac903841d72ceb07bbe0c8a` * rhel-coreos-8-extensions `sha256:9719015b54b04521e11411e632b5cc48d266713355b091644164171036c4049f` * [route-controller-manager](https://github.com/openshift/route-controller-manager) git [0f141ce9](https://github.com/openshift/route-controller-manager/commit/0f141ce9d349fb30755e3d0d7f9f196a91782957) `sha256:25694e276b7899585163fda2724e685c0081a3b66dd4c2e1cdb9deb312fc45a3` * [vsphere-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-vsphere) git [a61d43b7](https://github.com/openshift/cluster-api-provider-vsphere/commit/a61d43b751249c1a74376a48498571da1d665685) `sha256:268b90252c7a692d92b095323102bab08f51c83ea979750abd345b38d00a5fe8` ### Removed images * grafana * image-customization-controller * ironic-hardware-inventory-recorder * jenkins * jenkins-agent-base * jenkins-agent-maven * jenkins-agent-nodejs ### Rebuilt images without code change * machine-os-content `sha256:7ea97d2c6c007ee84bfb1d0778ad672413fe8e4da0f38548bf4ead0ae11e2f42` ### [alibaba-cloud-controller-manager](https://github.com/openshift/cloud-provider-alibaba-cloud/tree/191c9e34c1e70cf585d78f6293f95a2b89061a48) * [OCPBUGS-21218](https://issues.redhat.com/browse/OCPBUGS-21218): Bump golang.org/x/net to v0.19.0 [#45](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/45) * Merge https://github.com/kubernetes/cloud-provider-alibaba-cloud:master into master [#21](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/21) * Updating ose-alibaba-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/22) * Merge https://github.com/kubernetes/cloud-provider-alibaba-cloud:master into master [#20](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/20) * [Full changelog](https://github.com/openshift/cloud-provider-alibaba-cloud/compare/db2d118ad70ff62a2111e83a8d14c5b32e176b38...191c9e34c1e70cf585d78f6293f95a2b89061a48) ### [alibaba-cloud-csi-driver](https://github.com/openshift/alibaba-cloud-csi-driver/tree/4d3b1125cfd3acfe3fbafa4c83543bbb89de97a2) * [OCPBUGS-21313](https://issues.redhat.com/browse/OCPBUGS-21313): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#38](https://github.com/openshift/alibaba-cloud-csi-driver/pull/38) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#17](https://github.com/openshift/alibaba-cloud-csi-driver/pull/17) * [OCPBUGS-6493](https://issues.redhat.com/browse/OCPBUGS-6493): UPSTREAM: 682: fix gofmt [#22](https://github.com/openshift/alibaba-cloud-csi-driver/pull/22) * UPSTREAM: <carry>: Remove .github files [#16](https://github.com/openshift/alibaba-cloud-csi-driver/pull/16) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#15](https://github.com/openshift/alibaba-cloud-csi-driver/pull/15) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#13](https://github.com/openshift/alibaba-cloud-csi-driver/pull/13) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#10](https://github.com/openshift/alibaba-cloud-csi-driver/pull/10) * [Bug 2057495](https://bugzilla.redhat.com/show_bug.cgi?id=2057495): Add a parameter to the schema to automatically increase volume sizes … [#12](https://github.com/openshift/alibaba-cloud-csi-driver/pull/12) * [Bug 2069075](https://bugzilla.redhat.com/show_bug.cgi?id=2069075): Add explicit pciutils package [#11](https://github.com/openshift/alibaba-cloud-csi-driver/pull/11) * [Full changelog](https://github.com/openshift/alibaba-cloud-csi-driver/compare/5c30ca11ee5a7a312f5eed9f372d43c1af3c2154...4d3b1125cfd3acfe3fbafa4c83543bbb89de97a2) ### [alibaba-disk-csi-driver-operator](https://github.com/openshift/alibaba-disk-csi-driver-operator/tree/99bcda8da7c9c2e4415f30b82371f0b79d527d3d) * [OCPBUGS-21404](https://issues.redhat.com/browse/OCPBUGS-21404): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#66](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/66) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#58](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/58) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#38](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/38) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#36](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/36) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#37](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/37) * [Bug 2114009](https://bugzilla.redhat.com/show_bug.cgi?id=2114009): Add VolumeSnapshotClassController [#35](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/35) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#34](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/34) * [Bug 2096691](https://bugzilla.redhat.com/show_bug.cgi?id=2096691): Fix typo in resourceGroupId param [#33](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/33) * [Bug 2096691](https://bugzilla.redhat.com/show_bug.cgi?id=2096691): Add resourceGroupID to StorageClass parameters [#32](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/32) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#29](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/29) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#30](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/30) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#27](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/27) * [Bug 2057495](https://bugzilla.redhat.com/show_bug.cgi?id=2057495): Auto increase volume size to 20 GiB in the default storage class [#25](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/25) * Set fsGroupPolicy in CSIDriver [#23](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/23) * Disable snapshot tests [#21](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/21) * Add e2e test manifest [#20](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/20) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#17](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/17) * Add Dockerfile.test [#18](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/18) * [Full changelog](https://github.com/openshift/alibaba-disk-csi-driver-operator/compare/f0d6966321e3d416efec2ac7405494b057cb35f8...99bcda8da7c9c2e4415f30b82371f0b79d527d3d) ### [alibaba-machine-controllers](https://github.com/openshift/cluster-api-provider-alibaba/tree/b9287c05091424c4d21fd95454020ccc225f5bcb) * Feature/actuators unit tests [#32](https://github.com/openshift/cluster-api-provider-alibaba/pull/32) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#34](https://github.com/openshift/cluster-api-provider-alibaba/pull/34) * [Bug 2067787](https://bugzilla.redhat.com/show_bug.cgi?id=2067787): Update dependencies to K8s 1.24, go 1.18, client_golang [#33](https://github.com/openshift/cluster-api-provider-alibaba/pull/33) * [Full changelog](https://github.com/openshift/cluster-api-provider-alibaba/compare/9617f1f0b1266797f9237b2c3dd184f5a05f8f5b...b9287c05091424c4d21fd95454020ccc225f5bcb) ### [aws-cloud-controller-manager](https://github.com/openshift/cloud-provider-aws/tree/f90fb443bc71b2319d8cce276b280c26d0f18fb7) * [OCPBUGS-32079](https://issues.redhat.com/browse/OCPBUGS-32079): update for CVE-2023-45288 [release-4.12] [#85](https://github.com/openshift/cloud-provider-aws/pull/85) * [OCPBUGS-20722](https://issues.redhat.com/browse/OCPBUGS-20722): Update golang.org/x/net to v0.17.0 [#55](https://github.com/openshift/cloud-provider-aws/pull/55) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#25](https://github.com/openshift/cloud-provider-aws/pull/25) * [OCPBUGS-2076](https://issues.redhat.com/browse/OCPBUGS-2076): Replace k8s.io/cloud-provider with openshift's version [#28](https://github.com/openshift/cloud-provider-aws/pull/28) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 03.10.2022 k8s 1.25 [#26](https://github.com/openshift/cloud-provider-aws/pull/26) * Merge https://github.com/kubernetes/cloud-provider-aws:master into master [#24](https://github.com/openshift/cloud-provider-aws/pull/24) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#23](https://github.com/openshift/cloud-provider-aws/pull/23) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#21](https://github.com/openshift/cloud-provider-aws/pull/21) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Merge https://github.com/kubernetes/cloud-provider-aws:master into master [#22](https://github.com/openshift/cloud-provider-aws/pull/22) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#20](https://github.com/openshift/cloud-provider-aws/pull/20) * [Full changelog](https://github.com/openshift/cloud-provider-aws/compare/d85867feab1e80f094624d57221a071d7b6a148c...f90fb443bc71b2319d8cce276b280c26d0f18fb7) ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/bbab20f9559a1be6f39fed8e604712d41f507b49) * [OCPBUGS-33457](https://issues.redhat.com/browse/OCPBUGS-33457): UPSTREAM: 1919: Add reserved-volume-attachments [#267](https://github.com/openshift/aws-ebs-csi-driver/pull/267) * [OCPBUGS-20919](https://issues.redhat.com/browse/OCPBUGS-20919): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#241](https://github.com/openshift/aws-ebs-csi-driver/pull/241) * [OCPBUGS-14281](https://issues.redhat.com/browse/OCPBUGS-14281): Volume unmount repeats after successful unmount, preventing pod delete [#226](https://github.com/openshift/aws-ebs-csi-driver/pull/226) * UPSTREAM: <carry>: Remove .github files [#212](https://github.com/openshift/aws-ebs-csi-driver/pull/212) * [STOR-860](https://issues.redhat.com/browse/STOR-860): Rebase to v1.11.4 for OCP 4.12 [#206](https://github.com/openshift/aws-ebs-csi-driver/pull/206) * [OCPBUGS-1574](https://issues.redhat.com/browse/OCPBUGS-1574): UPSTREAM: 1398: Add resolver to handle custom endpoints [#208](https://github.com/openshift/aws-ebs-csi-driver/pull/208) * Fix older dockerfile [#207](https://github.com/openshift/aws-ebs-csi-driver/pull/207) * Updating ose-aws-ebs-csi-driver images to be consistent with ART [#202](https://github.com/openshift/aws-ebs-csi-driver/pull/202) * Updating ose-aws-ebs-csi-driver images to be consistent with ART [#201](https://github.com/openshift/aws-ebs-csi-driver/pull/201) * [Bug 2074279](https://bugzilla.redhat.com/show_bug.cgi?id=2074279): UPSTREAM: 1210: Update golang.org/x/crypto for CVE-2022-27191 [#200](https://github.com/openshift/aws-ebs-csi-driver/pull/200) * [Bug 2050173](https://bugzilla.redhat.com/show_bug.cgi?id=2050173): Fix build on ARM after rebase [#198](https://github.com/openshift/aws-ebs-csi-driver/pull/198) * Updating ose-aws-ebs-csi-driver images to be consistent with ART [#197](https://github.com/openshift/aws-ebs-csi-driver/pull/197) * Rebase v1.5.1 [#195](https://github.com/openshift/aws-ebs-csi-driver/pull/195) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/2bad4b40757a33bf92ab8937ececf279cc46376c...bbab20f9559a1be6f39fed8e604712d41f507b49) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/71bb7838f93bc88e679b0a967fbf1660cdf8aff1) * [OCPBUGS-33457](https://issues.redhat.com/browse/OCPBUGS-33457): Explicitly reserve 1 attachment for the root disk [#308](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/308) * [OCPBUGS-21018](https://issues.redhat.com/browse/OCPBUGS-21018): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#282](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/282) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#265](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/265) * [OCPBUGS-13721](https://issues.redhat.com/browse/OCPBUGS-13721): assets/hypershift/controller_sa: Set controller ServiceAccount imagePullSecrets [#230](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/230) * 4.12: OCPBUGS-10646: 4.12 hypershift set control plane [#208](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/208) * [OCPBUGS-7892](https://issues.redhat.com/browse/OCPBUGS-7892): do not inject-proxy when deploying in hypershift control plane [#187](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/187) * [OCPBUGS-4251](https://issues.redhat.com/browse/OCPBUGS-4251): Add HyperShift specific priorityClass [#170](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/170) * [OCPBUGS-4527](https://issues.redhat.com/browse/OCPBUGS-4527): hypershift: use correct kubeconfig secret [#171](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/171) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Don't deploy VolumeSnapshotClass in static controller [#166](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/166) * [STOR-1040](https://issues.redhat.com/browse/STOR-1040): port to hypershift [#159](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/159) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#164](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/164) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#162](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/162) * Reformat for go 1.19 [#163](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/163) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#161](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/161) * [STOR-764](https://issues.redhat.com/browse/STOR-764): Change the default StorageClass to the CSI one (AWS) [#160](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/160) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#158](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/158) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#156](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/156) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#157](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/157) * [Bug 2074706](https://bugzilla.redhat.com/show_bug.cgi?id=2074706): Set custom endpoint environment variable if available [#153](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/153) * [Bug 2049671](https://bugzilla.redhat.com/show_bug.cgi?id=2049671): avoid excessive GET and DELETE in ResourcesSync controller [#151](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/151) * Set CSIDriver fsGroupPolicy [#150](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/150) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#148](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/148) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/c2e6dc19fac0006651d0820272a9734e231b1ce5...71bb7838f93bc88e679b0a967fbf1660cdf8aff1) ### [aws-machine-controllers](https://github.com/openshift/machine-api-provider-aws/tree/440886d004a6ecbc45d5bc04c2f703fb0efaa632) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce metrics cardinality [#97](https://github.com/openshift/machine-api-provider-aws/pull/97) * [OCPBUGS-21562](https://issues.redhat.com/browse/OCPBUGS-21562): Update golang.org/x/net to v0.17.0 [#90](https://github.com/openshift/machine-api-provider-aws/pull/90) * [OCPCLOUD-1131](https://issues.redhat.com/browse/OCPCLOUD-1131): Implement fetching instance types from API [#53](https://github.com/openshift/machine-api-provider-aws/pull/53) * Updating ose-machine-api-provider-aws images to be consistent with ART [#45](https://github.com/openshift/machine-api-provider-aws/pull/45) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#52](https://github.com/openshift/machine-api-provider-aws/pull/52) * Update Machine API Operator dependency [#51](https://github.com/openshift/machine-api-provider-aws/pull/51) * Update Machine API operator dependency [#49](https://github.com/openshift/machine-api-provider-aws/pull/49) * pkg/actuators/machineset/controller: Fix %s in scale-from-zero logging [#43](https://github.com/openshift/machine-api-provider-aws/pull/43) * [Bug 2106733](https://bugzilla.redhat.com/show_bug.cgi?id=2106733): Fix panic when accessing nil machine annotations map [#46](https://github.com/openshift/machine-api-provider-aws/pull/46) * [Bug 2060068](https://bugzilla.redhat.com/show_bug.cgi?id=2060068): check securityGroupIDs for emptiness [#44](https://github.com/openshift/machine-api-provider-aws/pull/44) * [Bug 2060068](https://bugzilla.redhat.com/show_bug.cgi?id=2060068): return error when no security group found [#41](https://github.com/openshift/machine-api-provider-aws/pull/41) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#42](https://github.com/openshift/machine-api-provider-aws/pull/42) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#40](https://github.com/openshift/machine-api-provider-aws/pull/40) * [Bug 2091433](https://bugzilla.redhat.com/show_bug.cgi?id=2091433): Update EC2 instance types [#39](https://github.com/openshift/machine-api-provider-aws/pull/39) * Bump machine-api-operator to 25e61c2 [#38](https://github.com/openshift/machine-api-provider-aws/pull/38) * Validate unknown regions using AWS API [#32](https://github.com/openshift/machine-api-provider-aws/pull/32) * AWS Placement Group controller logic [#33](https://github.com/openshift/machine-api-provider-aws/pull/33) * [Bug 2072195](https://bugzilla.redhat.com/show_bug.cgi?id=2072195): Custom DHCP Option Set: empty domain-name is a valid custom domain [#36](https://github.com/openshift/machine-api-provider-aws/pull/36) * Remove unreleased AWS Placement Groups support [#35](https://github.com/openshift/machine-api-provider-aws/pull/35) * AWS IMDSv2 support [#34](https://github.com/openshift/machine-api-provider-aws/pull/34) * Refactor provider status to use metav1.Condition [#31](https://github.com/openshift/machine-api-provider-aws/pull/31) * [Bug 2067791](https://bugzilla.redhat.com/show_bug.cgi?id=2067791): Bump prometheus/client_golang [#30](https://github.com/openshift/machine-api-provider-aws/pull/30) * Add AWSPlacementGroup controller [#25](https://github.com/openshift/machine-api-provider-aws/pull/25) * [Bug 2065510](https://bugzilla.redhat.com/show_bug.cgi?id=2065510): Update AWS SDK to 1.43.20 [#29](https://github.com/openshift/machine-api-provider-aws/pull/29) * [Bug 2065160](https://bugzilla.redhat.com/show_bug.cgi?id=2065160): Ensure IP based NLB targets are deregistered before Machines are removed [#28](https://github.com/openshift/machine-api-provider-aws/pull/28) * [Bug 2060697](https://bugzilla.redhat.com/show_bug.cgi?id=2060697): Update openshift/api dependency [#27](https://github.com/openshift/machine-api-provider-aws/pull/27) * Leverage basic AWSPlacementGroup for AWS PG membership [#23](https://github.com/openshift/machine-api-provider-aws/pull/23) * Ensure Machine level tags have precedence over infrastructure level tags [#24](https://github.com/openshift/machine-api-provider-aws/pull/24) * Allow Machines to select EFA network interfaces [#8](https://github.com/openshift/machine-api-provider-aws/pull/8) * [CFE-68](https://issues.redhat.com/browse/CFE-68): user defined resource tags on EC2 instances updatable [#15](https://github.com/openshift/machine-api-provider-aws/pull/15) * [Full changelog](https://github.com/openshift/machine-api-provider-aws/compare/8c8d1c15bfbbe52abaa2e2dd34d360854f40e1b1...440886d004a6ecbc45d5bc04c2f703fb0efaa632) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/31917a5f3e7557916b8e92a0a9ae529ab176f738) * [OCPBUGS-32880](https://issues.redhat.com/browse/OCPBUGS-32880): Upgrade go-jose module to 2.6.3 [#191](https://github.com/openshift/aws-pod-identity-webhook/pull/191) * [OCPBUGS-21312](https://issues.redhat.com/browse/OCPBUGS-21312): Upgrade golang/x/net for CVE-2023-39325 (4.12) [#185](https://github.com/openshift/aws-pod-identity-webhook/pull/185) * NO-ISSUE: Sync OWNERS with team members [#178](https://github.com/openshift/aws-pod-identity-webhook/pull/178) * NO-ISSUE: snyk: exclude vendor/ [#174](https://github.com/openshift/aws-pod-identity-webhook/pull/174) * Update OWNERS [#157](https://github.com/openshift/aws-pod-identity-webhook/pull/157) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#156](https://github.com/openshift/aws-pod-identity-webhook/pull/156) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#155](https://github.com/openshift/aws-pod-identity-webhook/pull/155) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#153](https://github.com/openshift/aws-pod-identity-webhook/pull/153) * [Bug 2093986](https://bugzilla.redhat.com/show_bug.cgi?id=2093986): Comply to restricted pod security level [#154](https://github.com/openshift/aws-pod-identity-webhook/pull/154) * [Bug 2067792](https://bugzilla.redhat.com/show_bug.cgi?id=2067792): upgrade prometheus/client_golang to v1.12.1 [#152](https://github.com/openshift/aws-pod-identity-webhook/pull/152) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#151](https://github.com/openshift/aws-pod-identity-webhook/pull/151) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/7f9eb87aea90ff2bac0c98df741b6d6dd0c61449...31917a5f3e7557916b8e92a0a9ae529ab176f738) ### [azure-cloud-controller-manager, azure-cloud-node-manager](https://github.com/openshift/cloud-provider-azure/tree/2193ccfa8575aeb0520a25b77ec963097a66cd6e) * [OCPBUGS-21401](https://issues.redhat.com/browse/OCPBUGS-21401): Bump golang.org/x/net to v0.18.0 [#95](https://github.com/openshift/cloud-provider-azure/pull/95) * [OCPBUGS-22832](https://issues.redhat.com/browse/OCPBUGS-22832): UPSTREAM: 2805: add disk lun check in AttachDisk to avoid race condition [#91](https://github.com/openshift/cloud-provider-azure/pull/91) * [OCPBUGS-17159](https://issues.redhat.com/browse/OCPBUGS-17159): Increase service idle max timeout to 100 minutes [#82](https://github.com/openshift/cloud-provider-azure/pull/82) * [OCPBUGS-2076](https://issues.redhat.com/browse/OCPBUGS-2076): Replace k8s.io/cloud-provider with openshift's version [#44](https://github.com/openshift/cloud-provider-azure/pull/44) * Updating ose-azure-cloud-controller-manager images to be consistent with ART [#41](https://github.com/openshift/cloud-provider-azure/pull/41) * Updating ose-azure-cloud-node-manager images to be consistent with ART [#40](https://github.com/openshift/cloud-provider-azure/pull/40) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase cloud-provider-azure 29.09.2022 [#39](https://github.com/openshift/cloud-provider-azure/pull/39) * fix .dockerignore to satisfy OCP specific requirements [#37](https://github.com/openshift/cloud-provider-azure/pull/37) * Replace .dockerignore file with the OCP specific one [#36](https://github.com/openshift/cloud-provider-azure/pull/36) * Updating ose-azure-cloud-node-manager images to be consistent with ART [#34](https://github.com/openshift/cloud-provider-azure/pull/34) * Updating ose-azure-cloud-controller-manager images to be consistent with ART [#35](https://github.com/openshift/cloud-provider-azure/pull/35) * Updating ose-azure-cloud-controller-manager images to be consistent with ART [#29](https://github.com/openshift/cloud-provider-azure/pull/29) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Rebase cloud-provider-azure 22.06.2022 [#32](https://github.com/openshift/cloud-provider-azure/pull/32) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Merge https://github.com/kubernetes-sigs/cloud-provider-azure:master into master [#31](https://github.com/openshift/cloud-provider-azure/pull/31) * UPSTREAM: <carry>: set GOARCH appropriately [#30](https://github.com/openshift/cloud-provider-azure/pull/30) * [Full changelog](https://github.com/openshift/cloud-provider-azure/compare/ae571af8f8f60ccc14b3772032bd5c1072f2a746...2193ccfa8575aeb0520a25b77ec963097a66cd6e) ### [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver/tree/a930c89beac514d4d98f6055bf6cfe78eeec25a5) * [OCPBUGS-22941](https://issues.redhat.com/browse/OCPBUGS-22941): UPSTREAM: 1755: fix: detach disk failure when there is throttling [#62](https://github.com/openshift/azure-disk-csi-driver/pull/62) * [OCPBUGS-22832](https://issues.redhat.com/browse/OCPBUGS-22832): UPSTREAM: 2805: add disk lun check in AttachDisk to avoid race condition [#60](https://github.com/openshift/azure-disk-csi-driver/pull/60) * [OCPBUGS-20675](https://issues.redhat.com/browse/OCPBUGS-20675): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#56](https://github.com/openshift/azure-disk-csi-driver/pull/56) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#34](https://github.com/openshift/azure-disk-csi-driver/pull/34) * UPSTREAM: <carry>: Remove .github files [#33](https://github.com/openshift/azure-disk-csi-driver/pull/33) * [STOR-864](https://issues.redhat.com/browse/STOR-864): Rebase to v1.22.0 [#32](https://github.com/openshift/azure-disk-csi-driver/pull/32) * [Bug 2111811](https://bugzilla.redhat.com/show_bug.cgi?id=2111811): UPSTREAM 1367, 1409: Update max data disk count table [#29](https://github.com/openshift/azure-disk-csi-driver/pull/29) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#28](https://github.com/openshift/azure-disk-csi-driver/pull/28) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#27](https://github.com/openshift/azure-disk-csi-driver/pull/27) * [Bug 2073373](https://bugzilla.redhat.com/show_bug.cgi?id=2073373): Rebase to v1.16.0 [#24](https://github.com/openshift/azure-disk-csi-driver/pull/24) * Dockerfile should copy binary for the correct ARCH [#23](https://github.com/openshift/azure-disk-csi-driver/pull/23) * build: set GOARCH appropriately [#22](https://github.com/openshift/azure-disk-csi-driver/pull/22) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#21](https://github.com/openshift/azure-disk-csi-driver/pull/21) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver/compare/c7c7188d259bb45decb8dd685798316f24faed19...a930c89beac514d4d98f6055bf6cfe78eeec25a5) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/988b8cc8ead51c2904c6cb75446529bfe3674ee3) * [OCPBUGS-20749](https://issues.redhat.com/browse/OCPBUGS-20749): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#103](https://github.com/openshift/azure-disk-csi-driver-operator/pull/103) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#95](https://github.com/openshift/azure-disk-csi-driver-operator/pull/95) * [OCPBUGS-7885](https://issues.redhat.com/browse/OCPBUGS-7885): Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars [#70](https://github.com/openshift/azure-disk-csi-driver-operator/pull/70) * [OCPBUGS-3425](https://issues.redhat.com/browse/OCPBUGS-3425): Only deploy VolumeSnapshotClass if CRD exists [#59](https://github.com/openshift/azure-disk-csi-driver-operator/pull/59) * Updating ose-azure-disk-csi-driver-operator images to be consistent with ART [#55](https://github.com/openshift/azure-disk-csi-driver-operator/pull/55) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#53](https://github.com/openshift/azure-disk-csi-driver-operator/pull/53) * Updating ose-azure-disk-csi-driver-operator images to be consistent with ART [#51](https://github.com/openshift/azure-disk-csi-driver-operator/pull/51) * [Bug 2095049](https://bugzilla.redhat.com/show_bug.cgi?id=2095049): Only use credentials that are provided by the azure-inject-credential… [#49](https://github.com/openshift/azure-disk-csi-driver-operator/pull/49) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#48](https://github.com/openshift/azure-disk-csi-driver-operator/pull/48) * Mark CSI StorageClass as the default one [#47](https://github.com/openshift/azure-disk-csi-driver-operator/pull/47) * [Bug 2062152](https://bugzilla.redhat.com/show_bug.cgi?id=2062152): Increase pod startup timeout in e2e tests [#45](https://github.com/openshift/azure-disk-csi-driver-operator/pull/45) * [Bug 2073373](https://bugzilla.redhat.com/show_bug.cgi?id=2073373): Sync cmdline arguments with upstream [#46](https://github.com/openshift/azure-disk-csi-driver-operator/pull/46) * Fix CSIDriver fsGroupPolicy [#44](https://github.com/openshift/azure-disk-csi-driver-operator/pull/44) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/35aa99d74d4fd34f2c4d7b1a73d09d90b7df6413...988b8cc8ead51c2904c6cb75446529bfe3674ee3) ### [azure-file-csi-driver](https://github.com/openshift/azure-file-csi-driver/tree/15aade4d58785b54ac732a660f1359132d27f9b9) * [OCPBUGS-20842](https://issues.redhat.com/browse/OCPBUGS-20842): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#39](https://github.com/openshift/azure-file-csi-driver/pull/39) * [STOR-865](https://issues.redhat.com/browse/STOR-865): Rebase to v1.21.0 for OCP 4.12 [#17](https://github.com/openshift/azure-file-csi-driver/pull/17) * Updating azure-file-csi-driver images to be consistent with ART [#19](https://github.com/openshift/azure-file-csi-driver/pull/19) * UPSTREAM: <carry>: Remove .github files [#18](https://github.com/openshift/azure-file-csi-driver/pull/18) * Updating azure-file-csi-driver images to be consistent with ART [#16](https://github.com/openshift/azure-file-csi-driver/pull/16) * [Bug 2080449](https://bugzilla.redhat.com/show_bug.cgi?id=2080449): UPSTREAM: 1023: add new option to allow VHD feature opt-out [#15](https://github.com/openshift/azure-file-csi-driver/pull/15) * Updating azure-file-csi-driver images to be consistent with ART [#14](https://github.com/openshift/azure-file-csi-driver/pull/14) * [Bug 2074282](https://bugzilla.redhat.com/show_bug.cgi?id=2074282): UPSTREAM: 978: chore: Update golang.org/x/crypto for CVE-2022-27191 [#13](https://github.com/openshift/azure-file-csi-driver/pull/13) * [Bug 2073436](https://bugzilla.redhat.com/show_bug.cgi?id=2073436): Update to v1.14.0 [#12](https://github.com/openshift/azure-file-csi-driver/pull/12) * Dockerfile should copy binary for the correct ARCH [#10](https://github.com/openshift/azure-file-csi-driver/pull/10) * build: set GOARCH appropriately [#9](https://github.com/openshift/azure-file-csi-driver/pull/9) * Updating azure-file-csi-driver images to be consistent with ART [#8](https://github.com/openshift/azure-file-csi-driver/pull/8) * [Full changelog](https://github.com/openshift/azure-file-csi-driver/compare/87b4a7182b596354458d22c02bf7c51566f695ed...15aade4d58785b54ac732a660f1359132d27f9b9) ### [azure-file-csi-driver-operator](https://github.com/openshift/azure-file-csi-driver-operator/tree/060ba825fead5953bef544017ef4b3d0cbabe3e5) * [OCPBUGS-20946](https://issues.redhat.com/browse/OCPBUGS-20946): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#78](https://github.com/openshift/azure-file-csi-driver-operator/pull/78) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#71](https://github.com/openshift/azure-file-csi-driver-operator/pull/71) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#37](https://github.com/openshift/azure-file-csi-driver-operator/pull/37) * Updating azure-file-csi-driver-operator images to be consistent with ART [#38](https://github.com/openshift/azure-file-csi-driver-operator/pull/38) * [Bug 2080449](https://bugzilla.redhat.com/show_bug.cgi?id=2080449): disable VHD disk feature [#33](https://github.com/openshift/azure-file-csi-driver-operator/pull/33) * Updating azure-file-csi-driver-operator images to be consistent with ART [#34](https://github.com/openshift/azure-file-csi-driver-operator/pull/34) * [Bug 2099968](https://bugzilla.redhat.com/show_bug.cgi?id=2099968): Only use credentials that are provided by the azure-inject-credentials container [#32](https://github.com/openshift/azure-file-csi-driver-operator/pull/32) * [Bug 2092502](https://bugzilla.redhat.com/show_bug.cgi?id=2092502): Don't ship a StorageClass backed by NFS by default [#30](https://github.com/openshift/azure-file-csi-driver-operator/pull/30) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#27](https://github.com/openshift/azure-file-csi-driver-operator/pull/27) * Fix driver definition manifest: fsGroup is supported, snapshots are not [#28](https://github.com/openshift/azure-file-csi-driver-operator/pull/28) * Updating azure-file-csi-driver-operator images to be consistent with ART [#29](https://github.com/openshift/azure-file-csi-driver-operator/pull/29) * disable snapshots [#26](https://github.com/openshift/azure-file-csi-driver-operator/pull/26) * Updating azure-file-csi-driver-operator images to be consistent with ART [#25](https://github.com/openshift/azure-file-csi-driver-operator/pull/25) * [Full changelog](https://github.com/openshift/azure-file-csi-driver-operator/compare/3807eb37247bb9008d7e64c10e3bf6a3872d199d...060ba825fead5953bef544017ef4b3d0cbabe3e5) ### [azure-machine-controllers](https://github.com/openshift/machine-api-provider-azure/tree/6b5bfffdcf6315871d6c296025db7d0812132868) * [OCPBUGS-36148](https://issues.redhat.com/browse/OCPBUGS-36148): Fix mapi_instance_create_failed metric with accelerated networking [#115](https://github.com/openshift/machine-api-provider-azure/pull/115) * [OCPBUGS-30809](https://issues.redhat.com/browse/OCPBUGS-30809): Don't create availability set when using spot instances [#105](https://github.com/openshift/machine-api-provider-azure/pull/105) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce cardinality [#97](https://github.com/openshift/machine-api-provider-azure/pull/97) * [OCPBUGS-20741](https://issues.redhat.com/browse/OCPBUGS-20741): Bump x/net package to v0.18.0 [#84](https://github.com/openshift/machine-api-provider-azure/pull/84) * [OCPBUGS-19549](https://issues.redhat.com/browse/OCPBUGS-19549), [OCPBUGS-22247](https://issues.redhat.com/browse/OCPBUGS-22247): Fix empty clusterName references for GenerateMachinePublicIPName [#82](https://github.com/openshift/machine-api-provider-azure/pull/82) * [OCPBUGS-17960](https://issues.redhat.com/browse/OCPBUGS-17960): Machine Actuator should not set metadata.name [#71](https://github.com/openshift/machine-api-provider-azure/pull/71) * [OCPBUGS-17221](https://issues.redhat.com/browse/OCPBUGS-17221): Add user defined Tags to NIC Azure resources [#69](https://github.com/openshift/machine-api-provider-azure/pull/69) * [OCPBUGS-1871](https://issues.redhat.com/browse/OCPBUGS-1871): Fix machine not going failed with invalid vmsize [#36](https://github.com/openshift/machine-api-provider-azure/pull/36) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#35](https://github.com/openshift/machine-api-provider-azure/pull/35) * Update Machine API Operator dependency to fix phase transition metric [#33](https://github.com/openshift/machine-api-provider-azure/pull/33) * [Bug 2108647](https://bugzilla.redhat.com/show_bug.cgi?id=2108647): Implement fetching SKUs information from Azure [#32](https://github.com/openshift/machine-api-provider-azure/pull/32) * [Bug 2117439](https://bugzilla.redhat.com/show_bug.cgi?id=2117439): Populate internalLoadBalancer for Control Plane Machines when not set [#31](https://github.com/openshift/machine-api-provider-azure/pull/31) * Update Machine API Operator to bring in drain controller update [#30](https://github.com/openshift/machine-api-provider-azure/pull/30) * [Bug 2085390](https://bugzilla.redhat.com/show_bug.cgi?id=2085390): make Azure instance types case-insensitive [#27](https://github.com/openshift/machine-api-provider-azure/pull/27) * Enable configuration of boot diagnostics when creating VMs [#24](https://github.com/openshift/machine-api-provider-azure/pull/24) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#26](https://github.com/openshift/machine-api-provider-azure/pull/26) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#21](https://github.com/openshift/machine-api-provider-azure/pull/21) * [Bug 2093044](https://bugzilla.redhat.com/show_bug.cgi?id=2093044): update getAvailabilitySetName function [#22](https://github.com/openshift/machine-api-provider-azure/pull/22) * Updating ose-machine-api-provider-azure images to be consistent with ART [#19](https://github.com/openshift/machine-api-provider-azure/pull/19) * [Bug 2085336](https://bugzilla.redhat.com/show_bug.cgi?id=2085336): Ignore unknown Instance types in accelerated networking check [#20](https://github.com/openshift/machine-api-provider-azure/pull/20) * Bump machine-api-operator to 25e61c2 [#18](https://github.com/openshift/machine-api-provider-azure/pull/18) * update azure instance types [#17](https://github.com/openshift/machine-api-provider-azure/pull/17) * Refactor provider status to use metav1.Condition [#16](https://github.com/openshift/machine-api-provider-azure/pull/16) * [Bug 2067798](https://bugzilla.redhat.com/show_bug.cgi?id=2067798): Bump prometheus/client_golang [#15](https://github.com/openshift/machine-api-provider-azure/pull/15) * Data Disks: add deletionPolicy logic [#14](https://github.com/openshift/machine-api-provider-azure/pull/14) * Implement Azure Ultra Disk (UltraSSD) support [#13](https://github.com/openshift/machine-api-provider-azure/pull/13) * Updating ose-machine-api-provider-azure images to be consistent with ART [#12](https://github.com/openshift/machine-api-provider-azure/pull/12) * [Full changelog](https://github.com/openshift/machine-api-provider-azure/compare/04ed0af96d9a8667360a911b5c760767c8a97f0a...6b5bfffdcf6315871d6c296025db7d0812132868) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/7cb42be2b42e1246cff0e47f19b28eea7a9461e4) * [OTA-1310](https://issues.redhat.com/browse/OTA-1310): data/manifests/bootkube/cvo-overrides: Default to eus-4.12 [#9373](https://github.com/openshift/installer/pull/9373) * [OCPBUGS-36087](https://issues.redhat.com/browse/OCPBUGS-36087): [release-4.12]: bump go-retryablehttp for CVE fix [#8660](https://github.com/openshift/installer/pull/8660) * [OCPBUGS-39290](https://issues.redhat.com/browse/OCPBUGS-39290): Add yq v4 to ci image [#8929](https://github.com/openshift/installer/pull/8929) * [OCPBUGS-36179](https://issues.redhat.com/browse/OCPBUGS-36179): [release-4.12]: bump github.com/container/images for CVE fix [#8663](https://github.com/openshift/installer/pull/8663) * [OCPBUGS-22981](https://issues.redhat.com/browse/OCPBUGS-22981): IBMCloud: Add eu-es region [#7686](https://github.com/openshift/installer/pull/7686) * [OCPBUGS-30630](https://issues.redhat.com/browse/OCPBUGS-30630): baremetal: populate customDeploy in advance [#8144](https://github.com/openshift/installer/pull/8144) * [OCPBUGS-32449](https://issues.redhat.com/browse/OCPBUGS-32449): Updated libvirt installer to include multi-arch yq and symlink for backwards compatibility [#8290](https://github.com/openshift/installer/pull/8290) * [OCPBUGS-30768](https://issues.redhat.com/browse/OCPBUGS-30768): update RHCOS 4.12 bootimage metadata to 412.86.202402272018-0 [#8140](https://github.com/openshift/installer/pull/8140) * [OCPBUGS-30134](https://issues.redhat.com/browse/OCPBUGS-30134): [release-4.12] bump containerd for vulnerability fix [#8091](https://github.com/openshift/installer/pull/8091) * [OCPBUGS-27454](https://issues.redhat.com/browse/OCPBUGS-27454): baremetal: correct external_http_url for v6-only BMCs [#7900](https://github.com/openshift/installer/pull/7900) * [OCPBUGS-25593](https://issues.redhat.com/browse/OCPBUGS-25593): [release-4.12] OCPBUGS-16640: Update azure cli version to 2.49.0 [#7849](https://github.com/openshift/installer/pull/7849) * [OCPBUGS-23184](https://issues.redhat.com/browse/OCPBUGS-23184): azure: validation: validate defaultMachinePlatform [#7709](https://github.com/openshift/installer/pull/7709) * [OCPBUGS-25476](https://issues.redhat.com/browse/OCPBUGS-25476): destroy: gcp: fix destroying regional disks [#7845](https://github.com/openshift/installer/pull/7845) * [OCPBUGS-23302](https://issues.redhat.com/browse/OCPBUGS-23302): images: installer: add xz to the container [#7726](https://github.com/openshift/installer/pull/7726) * [OCPBUGS-23379](https://issues.redhat.com/browse/OCPBUGS-23379): images: update govc image in upi-installer [#7739](https://github.com/openshift/installer/pull/7739) * [OCPBUGS-22116](https://issues.redhat.com/browse/OCPBUGS-22116): Add KMS encryption keys if provided [#7769](https://github.com/openshift/installer/pull/7769) * [OCPBUGS-23329](https://issues.redhat.com/browse/OCPBUGS-23329): Specify google cloud CLI to version 447.0.0 [#7731](https://github.com/openshift/installer/pull/7731) * [OCPBUGS-22933](https://issues.redhat.com/browse/OCPBUGS-22933): [release-4.12]: vsphere: fix validation of CPUS and CoresPerSocket [#7677](https://github.com/openshift/installer/pull/7677) * [OCPBUGS-13288](https://issues.redhat.com/browse/OCPBUGS-13288): use python3 for cloud sdk [#7170](https://github.com/openshift/installer/pull/7170) * [OCPBUGS-18645](https://issues.redhat.com/browse/OCPBUGS-18645): new Aws secret regions support [#7473](https://github.com/openshift/installer/pull/7473) * [OCPBUGS-22288](https://issues.redhat.com/browse/OCPBUGS-22288): Don't log password values [#7627](https://github.com/openshift/installer/pull/7627) * [OCPBUGS-18644](https://issues.redhat.com/browse/OCPBUGS-18644): terraform: aws: secret regions now support ALIAS record [#7472](https://github.com/openshift/installer/pull/7472) * [OCPBUGS-17651](https://issues.redhat.com/browse/OCPBUGS-17651): Validate that the rendevousIP is assigned to a master [#7416](https://github.com/openshift/installer/pull/7416) * [OCPBUGS-20145](https://issues.redhat.com/browse/OCPBUGS-20145): [release-4.12] Use updated ansible-core for Openstack image [#7560](https://github.com/openshift/installer/pull/7560) * [OCPBUGS-18646](https://issues.redhat.com/browse/OCPBUGS-18646): Allow destroy for C2S isolated (us-iso and us-isob) partitions [#7474](https://github.com/openshift/installer/pull/7474) * [OCPBUGS-10992](https://issues.redhat.com/browse/OCPBUGS-10992): bootstrap-pivot: skip pivot in SCOS Live ISO [#7035](https://github.com/openshift/installer/pull/7035) * [CORS-2792](https://issues.redhat.com/browse/CORS-2792): AWS Shared VPC Backport [release-4.12] [#7435](https://github.com/openshift/installer/pull/7435) * [OCPBUGS-18320](https://issues.redhat.com/browse/OCPBUGS-18320): CORS-2445: GCP: Add osImage to the install config [#7454](https://github.com/openshift/installer/pull/7454) * [OCPBUGS-17404](https://issues.redhat.com/browse/OCPBUGS-17404): backport openstack UPI for ansible 2.10 [#7399](https://github.com/openshift/installer/pull/7399) * [OCPBUGS-16778](https://issues.redhat.com/browse/OCPBUGS-16778): bump RHCOS 4.12 bootimage metadata to 412.86.202308081039-0 [#7420](https://github.com/openshift/installer/pull/7420) * [OCPBUGS-17467](https://issues.redhat.com/browse/OCPBUGS-17467): Allow override of networkType [#7406](https://github.com/openshift/installer/pull/7406) * [OCPBUGS-17174](https://issues.redhat.com/browse/OCPBUGS-17174): Set AdditionalTrustBundle in override when mirroring not enabled [#7386](https://github.com/openshift/installer/pull/7386) * [OCPBUGS-16382](https://issues.redhat.com/browse/OCPBUGS-16382): azure: skip LB creation when not needed [#7342](https://github.com/openshift/installer/pull/7342) * [OCPBUGS-14868](https://issues.redhat.com/browse/OCPBUGS-14868): Shorten SNO installation duration by releasing CPC lease [#7242](https://github.com/openshift/installer/pull/7242) * [OCPBUGS-14495](https://issues.redhat.com/browse/OCPBUGS-14495): Support /dev/disk/by-path root device hints [#7227](https://github.com/openshift/installer/pull/7227) * [OCPBUGS-16151](https://issues.redhat.com/browse/OCPBUGS-16151): ic: azure: validate diskTypes in AzureStack [#7331](https://github.com/openshift/installer/pull/7331) * [OCPBUGS-11199](https://issues.redhat.com/browse/OCPBUGS-11199): azure: upi: use Image Gallery in ARM templates [#7054](https://github.com/openshift/installer/pull/7054) * [OCPBUGS-13940](https://issues.redhat.com/browse/OCPBUGS-13940): bump RHCOS 4.12 bootimage metadata to 412.86.202306132230-0 [#7249](https://github.com/openshift/installer/pull/7249) * [OCPBUGS-14664](https://issues.redhat.com/browse/OCPBUGS-14664): Shorten SNO installation duration by releasing CVO lease [#7235](https://github.com/openshift/installer/pull/7235) * [OCPBUGS-7400](https://issues.redhat.com/browse/OCPBUGS-7400): Check for AWS STS installation before trying to get all IAM Roles [#7175](https://github.com/openshift/installer/pull/7175) * [OCPBUGS-13819](https://issues.redhat.com/browse/OCPBUGS-13819): Bootstrap on aws should have same metadata service type as on other nodes [#7196](https://github.com/openshift/installer/pull/7196) * [OCPBUGS-12202](https://issues.redhat.com/browse/OCPBUGS-12202): Relax vsphere, nutanix VIP validation [#7116](https://github.com/openshift/installer/pull/7116) * [OCPBUGS-7551](https://issues.redhat.com/browse/OCPBUGS-7551): vSphere - ignore all bootstrap disk changes [#6860](https://github.com/openshift/installer/pull/6860) * [OCPBUGS-14014](https://issues.redhat.com/browse/OCPBUGS-14014): Do not always output warning msg when releaseImage is digest [#7202](https://github.com/openshift/installer/pull/7202) * [OCPBUGS-13052](https://issues.redhat.com/browse/OCPBUGS-13052): bump RHCOS 4.12 bootimage metadata [#7164](https://github.com/openshift/installer/pull/7164) * [OCPBUGS-12956](https://issues.redhat.com/browse/OCPBUGS-12956): openstack: Add netcat to the Installer image [#7148](https://github.com/openshift/installer/pull/7148) * [OCPBUGS-12749](https://issues.redhat.com/browse/OCPBUGS-12749): [Alibaba] update the bandwidth value of EIP [#7131](https://github.com/openshift/installer/pull/7131) * [OCPBUGS-7400](https://issues.redhat.com/browse/OCPBUGS-7400): Check for AWS STS installation before trying to get all IAM Roles [#7141](https://github.com/openshift/installer/pull/7141) * [OCPBUGS-11360](https://issues.redhat.com/browse/OCPBUGS-11360): Use 100 GB as minimum disk size in validations [#7065](https://github.com/openshift/installer/pull/7065) * [OCPBUGS-11662](https://issues.redhat.com/browse/OCPBUGS-11662): AWS - Remove ACLs from s3 ign [#7084](https://github.com/openshift/installer/pull/7084) * [OCPBUGS-11208](https://issues.redhat.com/browse/OCPBUGS-11208): GCP: add europe-west12 region to the survey as supported region [#7055](https://github.com/openshift/installer/pull/7055) * [OCPBUGS-11108](https://issues.redhat.com/browse/OCPBUGS-11108): Kubelet Client Cert should include system:serviceaccounts group [#7050](https://github.com/openshift/installer/pull/7050) * [OCPBUGS-8384](https://issues.redhat.com/browse/OCPBUGS-8384): Specify filename for default registries.conf [#6941](https://github.com/openshift/installer/pull/6941) * [OCPBUGS-10904](https://issues.redhat.com/browse/OCPBUGS-10904): IBMCloud: Fix SSH Private bootstrap [#7028](https://github.com/openshift/installer/pull/7028) * [OCPBUGS-10905](https://issues.redhat.com/browse/OCPBUGS-10905): IBMCloud set dnsrecords offset [#7029](https://github.com/openshift/installer/pull/7029) * [OCPBUGS-10740](https://issues.redhat.com/browse/OCPBUGS-10740): bump RHCOS 4.12 bootimage metadata [#7019](https://github.com/openshift/installer/pull/7019) * [OCPBUGS-7481](https://issues.redhat.com/browse/OCPBUGS-7481): Fix file check for loading openshift manifests [#6907](https://github.com/openshift/installer/pull/6907) * [OCPBUGS-10497](https://issues.redhat.com/browse/OCPBUGS-10497): [release-4.12] aws: bump aws-sdk-go version [#6985](https://github.com/openshift/installer/pull/6985) * [OCPBUGS-10439](https://issues.redhat.com/browse/OCPBUGS-10439): Sort userTags in Machine and Machineset manifests [#6984](https://github.com/openshift/installer/pull/6984) * [OCPBUGS-7469](https://issues.redhat.com/browse/OCPBUGS-7469): [release-4.12] GCP XPN Featuregates [#6851](https://github.com/openshift/installer/pull/6851) * [OCPBUGS-7063](https://issues.redhat.com/browse/OCPBUGS-7063): vSphere - Remove regexs in terraform ova import [#6868](https://github.com/openshift/installer/pull/6868) * [OCPBUGS-8658](https://issues.redhat.com/browse/OCPBUGS-8658): Pass Capabilites from install-config to cluster [#6947](https://github.com/openshift/installer/pull/6947) * [OCPBUGS-7594](https://issues.redhat.com/browse/OCPBUGS-7594): fully qualified username must be provided [#6864](https://github.com/openshift/installer/pull/6864) * [OCPBUGS-7746](https://issues.redhat.com/browse/OCPBUGS-7746): Convert platform type for AgentClusterInstall [#6878](https://github.com/openshift/installer/pull/6878) * [OCPBUGS-8015](https://issues.redhat.com/browse/OCPBUGS-8015): make VIP 168.63.129.16 noProxy in all clouds except Public [#6909](https://github.com/openshift/installer/pull/6909) * [OCPBUGS-6087](https://issues.redhat.com/browse/OCPBUGS-6087): Warn if agent assets detected when using non-agent waitfor [#6788](https://github.com/openshift/installer/pull/6788) * [OCPBUGS-7607](https://issues.redhat.com/browse/OCPBUGS-7607): IBMCloud: Handle COS reclamations [#6867](https://github.com/openshift/installer/pull/6867) * [OCPBUGS-7529](https://issues.redhat.com/browse/OCPBUGS-7529): bump RHCOS 4.12 bootimage metadata [#6873](https://github.com/openshift/installer/pull/6873) * [OCPBUGS-7521](https://issues.redhat.com/browse/OCPBUGS-7521): Update AgentConfig template [#6857](https://github.com/openshift/installer/pull/6857) * [OCPBUGS-5992](https://issues.redhat.com/browse/OCPBUGS-5992): azure: validate Windows-only VM types [#6780](https://github.com/openshift/installer/pull/6780) * [OCPBUGS-6991](https://issues.redhat.com/browse/OCPBUGS-6991): Don't require vSphere details for agent installer [#6826](https://github.com/openshift/installer/pull/6826) * [OCPBUGS-6807](https://issues.redhat.com/browse/OCPBUGS-6807): Check platform baremetal settings against default values [#6815](https://github.com/openshift/installer/pull/6815) * [OCPBUGS-7103](https://issues.redhat.com/browse/OCPBUGS-7103): Set the configured proxy settings for agent installer [#6830](https://github.com/openshift/installer/pull/6830) * [OCPBUGS-7131](https://issues.redhat.com/browse/OCPBUGS-7131): bootstrap: set 0644 mode for registries.conf [#6804](https://github.com/openshift/installer/pull/6804) * [OCPBUGS-5960](https://issues.redhat.com/browse/OCPBUGS-5960): bump RHCOS 4.12 bootimage metadata [#6791](https://github.com/openshift/installer/pull/6791) * [OCPBUGS-5996](https://issues.redhat.com/browse/OCPBUGS-5996): vsphere: set default resource pool when missing failure domain topology [#6781](https://github.com/openshift/installer/pull/6781) * [OCPBUGS-5667](https://issues.redhat.com/browse/OCPBUGS-5667): CVE-2021-4238: goutils: update for randomness fix [#6764](https://github.com/openshift/installer/pull/6764) * [OCPBUGS-5782](https://issues.redhat.com/browse/OCPBUGS-5782): CVE-2021-4235: Denial of Service in go-yaml [#6769](https://github.com/openshift/installer/pull/6769) * [OCPBUGS-6052](https://issues.redhat.com/browse/OCPBUGS-6052): validate additional confidential VM types [#6785](https://github.com/openshift/installer/pull/6785) * [OCPBUGS-4895](https://issues.redhat.com/browse/OCPBUGS-4895): Set ip=dhcp,dhcp6 for master nodes on dualstack [#6706](https://github.com/openshift/installer/pull/6706) * [OCPBUGS-6015](https://issues.redhat.com/browse/OCPBUGS-6015): fail to create install-config.yaml as apiVIP and ingress VIP are not in machine networks [#6783](https://github.com/openshift/installer/pull/6783) * [OCPBUGS-5844](https://issues.redhat.com/browse/OCPBUGS-5844): Update FCOS to latest 37.20221127.3.0 stable [#6773](https://github.com/openshift/installer/pull/6773) * [OCPBUGS-5764](https://issues.redhat.com/browse/OCPBUGS-5764): Expose Azure useImageGallery parameter in the MachineSets() call [#6753](https://github.com/openshift/installer/pull/6753) * [OCPBUGS-4460](https://issues.redhat.com/browse/OCPBUGS-4460): hold bootkube service until bootstrap has pivoted [#6661](https://github.com/openshift/installer/pull/6661) * [OCPBUGS-5513](https://issues.redhat.com/browse/OCPBUGS-5513): Update Azure SDK to v63.1.0+incompatible [release-4.12] [#6751](https://github.com/openshift/installer/pull/6751) * [OCPBUGS-4649](https://issues.redhat.com/browse/OCPBUGS-4649): Report agent installation problems on the console [#6680](https://github.com/openshift/installer/pull/6680) * [OCPBUGS-5455](https://issues.redhat.com/browse/OCPBUGS-5455): Remove order dependency for agent CLI string [#6748](https://github.com/openshift/installer/pull/6748) * [OCPBUGS-4962](https://issues.redhat.com/browse/OCPBUGS-4962): Improve error reporting from agent wait-for install-complete [#6742](https://github.com/openshift/installer/pull/6742) * [OCPBUGS-4886](https://issues.redhat.com/browse/OCPBUGS-4886): Switch back to gp2 ebs volume type for bootstrap instance [#6705](https://github.com/openshift/installer/pull/6705) * [OCPBUGS-5190](https://issues.redhat.com/browse/OCPBUGS-5190): baremetal: Extra time for provisioning interface [#6732](https://github.com/openshift/installer/pull/6732) * [OCPBUGS-4943](https://issues.redhat.com/browse/OCPBUGS-4943): Wait longer for VM to obtain IP from DHCP in PowerVS [#6709](https://github.com/openshift/installer/pull/6709) * [OCPBUGS-3899](https://issues.redhat.com/browse/OCPBUGS-3899): [Alibaba] fix the creation of public record [#6605](https://github.com/openshift/installer/pull/6605) * [OCPBUGS-4962](https://issues.redhat.com/browse/OCPBUGS-4962): Wait longer for baremetal [#6713](https://github.com/openshift/installer/pull/6713) * [OCPBUGS-5035](https://issues.redhat.com/browse/OCPBUGS-5035): ose-installer-container: vault: insufficient certificate revocation list checking [#6722](https://github.com/openshift/installer/pull/6722) * [OCPBUGS-4869](https://issues.redhat.com/browse/OCPBUGS-4869): aws: destroy: delete ELB listeners [#6702](https://github.com/openshift/installer/pull/6702) * [OCPBUGS-5019](https://issues.redhat.com/browse/OCPBUGS-5019): OpenStack: Force JSON content-type in Swift object listing [#6718](https://github.com/openshift/installer/pull/6718) * [OCPBUGS-2997](https://issues.redhat.com/browse/OCPBUGS-2997): bump RHCOS 4.12 bootimage metadata [#6704](https://github.com/openshift/installer/pull/6704) * [OCPBUGS-3890](https://issues.redhat.com/browse/OCPBUGS-3890): IBMCloud: Confirm Zones and BYON Subnets [#6603](https://github.com/openshift/installer/pull/6603) * [OCPBUGS-3639](https://issues.redhat.com/browse/OCPBUGS-3639): Azure: Set appropriate architecture for gen v1 image [#6588](https://github.com/openshift/installer/pull/6588) * [OCPBUGS-4698](https://issues.redhat.com/browse/OCPBUGS-4698): Check nmstateconfig content in agent-config.yaml [#6687](https://github.com/openshift/installer/pull/6687) * [OCPBUGS-4547](https://issues.redhat.com/browse/OCPBUGS-4547): out-of-bounds read in golang.org/x/text/language leads to DoS [#6650](https://github.com/openshift/installer/pull/6650) * [OCPBUGS-4660](https://issues.redhat.com/browse/OCPBUGS-4660): Fix missing debug messages when getting baseISO [#6682](https://github.com/openshift/installer/pull/6682) * Alibaba: add the tags of the machine nodes [#6667](https://github.com/openshift/installer/pull/6667) * image: Updating installer images to be consistent with ART [#6658](https://github.com/openshift/installer/pull/6658) * [OCPBUGS-4506](https://issues.redhat.com/browse/OCPBUGS-4506): Enable CVO unmanage overrides in bootstrap-in-place installations [#6664](https://github.com/openshift/installer/pull/6664) * [OCPBUGS-4457](https://issues.redhat.com/browse/OCPBUGS-4457): Fix return value from execute() [#6659](https://github.com/openshift/installer/pull/6659) * [OCPBUGS-4342](https://issues.redhat.com/browse/OCPBUGS-4342): data: azurerm: restore RHCOS SA access configuration [#6645](https://github.com/openshift/installer/pull/6645) * [OCPBUGS-3249](https://issues.redhat.com/browse/OCPBUGS-3249): update golang.org/x/crypto to address security vulnerabilities [#6631](https://github.com/openshift/installer/pull/6631) * [OCPBUGS-4267](https://issues.redhat.com/browse/OCPBUGS-4267): Azure Stack: use managed images for compute nodes [#6639](https://github.com/openshift/installer/pull/6639) * [OCPBUGS-4308](https://issues.redhat.com/browse/OCPBUGS-4308): Redact pull secret from agent-gather [#6640](https://github.com/openshift/installer/pull/6640) * [OCPBUGS-4068](https://issues.redhat.com/browse/OCPBUGS-4068): (Agent) Do not require host data in platform baremetal section in installconfig [#6623](https://github.com/openshift/installer/pull/6623) * [OCPBUGS-4064](https://issues.redhat.com/browse/OCPBUGS-4064): Restart create-cluster-and-infraenv.service if it fails [#6622](https://github.com/openshift/installer/pull/6622) * [OCPBUGS-3657](https://issues.redhat.com/browse/OCPBUGS-3657): Uplift terraform-provider-ironic to 0.3.0 [#6592](https://github.com/openshift/installer/pull/6592) * [OCPBUGS-4063](https://issues.redhat.com/browse/OCPBUGS-4063): OpenStack: Force JSON content-type in Swift [#6621](https://github.com/openshift/installer/pull/6621) * [OCPBUGS-3055](https://issues.redhat.com/browse/OCPBUGS-3055): add bootstrap configmap during the SNO reboot [#6555](https://github.com/openshift/installer/pull/6555) * [OCPBUGS-3523](https://issues.redhat.com/browse/OCPBUGS-3523): Pass FeatureSet to cluster config render [#6590](https://github.com/openshift/installer/pull/6590) * [OCPBUGS-3406](https://issues.redhat.com/browse/OCPBUGS-3406): Use project after creation [#6575](https://github.com/openshift/installer/pull/6575) * [OCPBUGS-3307](https://issues.redhat.com/browse/OCPBUGS-3307): gcp: fail during validation if service usage is not enabled [#6565](https://github.com/openshift/installer/pull/6565) * [OCPBUGS-3515](https://issues.redhat.com/browse/OCPBUGS-3515): (AGENT) only support amd64 archs [#6580](https://github.com/openshift/installer/pull/6580) * [OCPBUGS-3520](https://issues.redhat.com/browse/OCPBUGS-3520): Automatically retry install [#6582](https://github.com/openshift/installer/pull/6582) * [OCPBUGS-3519](https://issues.redhat.com/browse/OCPBUGS-3519): Always use first matching mirror in assisted-service [#6581](https://github.com/openshift/installer/pull/6581) * [OCPBUGS-3459](https://issues.redhat.com/browse/OCPBUGS-3459): Always add router CAs to kubeconfig, even if console is not available [#6578](https://github.com/openshift/installer/pull/6578) * [OCPBUGS-3250](https://issues.redhat.com/browse/OCPBUGS-3250): azure: Fix client certs authentication [#6561](https://github.com/openshift/installer/pull/6561) * [OCPBUGS-3398](https://issues.redhat.com/browse/OCPBUGS-3398): Fix cluster wide proxy [#6587](https://github.com/openshift/installer/pull/6587) * [OCPBUGS-3366](https://issues.redhat.com/browse/OCPBUGS-3366): Set PublicContainerRegistries for entries in mirror [#6568](https://github.com/openshift/installer/pull/6568) * [OCPBUGS-3306](https://issues.redhat.com/browse/OCPBUGS-3306): agent ased installation fix for dual stack vips [#6564](https://github.com/openshift/installer/pull/6564) * [OCPBUGS-3095](https://issues.redhat.com/browse/OCPBUGS-3095): Power VS Check for existing DNS permitted network and public gateway [#6550](https://github.com/openshift/installer/pull/6550) * [OCPBUGS-3035](https://issues.redhat.com/browse/OCPBUGS-3035): support multiple documents in the same extra manifest file [#6549](https://github.com/openshift/installer/pull/6549) * [OCPBUGS-3343](https://issues.redhat.com/browse/OCPBUGS-3343): [vsphere-zones] Fix user folders [#6566](https://github.com/openshift/installer/pull/6566) * [OCPBUGS-3263](https://issues.redhat.com/browse/OCPBUGS-3263): Static linking the terraform and providers binaries [#6562](https://github.com/openshift/installer/pull/6562) * [OCPBUGS-2984](https://issues.redhat.com/browse/OCPBUGS-2984): Azure: Fix DiskEncryptionSet regex validation [#6538](https://github.com/openshift/installer/pull/6538) * [OCPBUGS-3028](https://issues.redhat.com/browse/OCPBUGS-3028): Use result from List function after checking error [#6543](https://github.com/openshift/installer/pull/6543) * [AGENT-348](https://issues.redhat.com/browse/AGENT-348): Warn when information in install-config is ignored [#6523](https://github.com/openshift/installer/pull/6523) * [OCPBUGS-2837](https://issues.redhat.com/browse/OCPBUGS-2837): Reduce debug logs in agent wait-for commands [#6520](https://github.com/openshift/installer/pull/6520) * Fix unexpected behavior from merging #6470 and #6500 [#6526](https://github.com/openshift/installer/pull/6526) * [AGENT-390](https://issues.redhat.com/browse/AGENT-390): Include CPU Architecture in ISO filename [#6485](https://github.com/openshift/installer/pull/6485) * docs: feature sets [#6506](https://github.com/openshift/installer/pull/6506) * Agent-321: Cluster and Host validations rework [#6500](https://github.com/openshift/installer/pull/6500) * [OCPBUGS-2327](https://issues.redhat.com/browse/OCPBUGS-2327): Add validation for releaseImage and registry.conf [#6423](https://github.com/openshift/installer/pull/6423) * [OCPBUGS-2086](https://issues.redhat.com/browse/OCPBUGS-2086): Detect failure in wait-for on transition back to ready [#6470](https://github.com/openshift/installer/pull/6470) * [OCPBUGS-2627](https://issues.redhat.com/browse/OCPBUGS-2627): agent-config: Generate missing AdditionalNTPSources in InfraEnv [#6495](https://github.com/openshift/installer/pull/6495) * [OCPBUGS-2338](https://issues.redhat.com/browse/OCPBUGS-2338): Don't use error messages as default values [#6486](https://github.com/openshift/installer/pull/6486) * [OCPBUGS-1824](https://issues.redhat.com/browse/OCPBUGS-1824): enhance agent systemd service dependency [#6408](https://github.com/openshift/installer/pull/6408) * [OCPBUGS-1704](https://issues.redhat.com/browse/OCPBUGS-1704): Service Usage API is required, not optional [#6504](https://github.com/openshift/installer/pull/6504) * Revert "create: add check for cluster operator stability" [#6503](https://github.com/openshift/installer/pull/6503) * [OCPBUGS-2301](https://issues.redhat.com/browse/OCPBUGS-2301): Search Network Project For resources [#6499](https://github.com/openshift/installer/pull/6499) * [OCPBUGS-2436](https://issues.redhat.com/browse/OCPBUGS-2436): Revert "Revert "[AWS] Add LB Type in the infrastructure cluster object via install-config yaml"" and fix OCPBUGS-2436 [#6491](https://github.com/openshift/installer/pull/6491) * [OCPBUGS-2174](https://issues.redhat.com/browse/OCPBUGS-2174): fix metadata tags not supported in certain regions [#6475](https://github.com/openshift/installer/pull/6475) * Add initial support for OKD/SCOS [#6443](https://github.com/openshift/installer/pull/6443) * Updating golang version to fix gofmt issues [#6484](https://github.com/openshift/installer/pull/6484) * [Bug 2117537](https://bugzilla.redhat.com/show_bug.cgi?id=2117537): validation rule for invalid rendezvousIP in AgentConfig [#6474](https://github.com/openshift/installer/pull/6474) * create: add check for cluster operator stability [#6124](https://github.com/openshift/installer/pull/6124) * Revert "[AWS] Add LB Type in the infrastructure cluster object via install-config yaml" [#6490](https://github.com/openshift/installer/pull/6490) * Add LB Type in the infrastructure cluster object via install-config yaml [#6478](https://github.com/openshift/installer/pull/6478) * [Bug 2059491](https://bugzilla.redhat.com/show_bug.cgi?id=2059491): [Alibaba] fix the format of Name [#5668](https://github.com/openshift/installer/pull/5668) * [AGENT-284](https://issues.redhat.com/browse/AGENT-284): Allow user to choose platform type [#6438](https://github.com/openshift/installer/pull/6438) * [OCPBUGS-2262](https://issues.redhat.com/browse/OCPBUGS-2262): Update gcp explain for DNS zones [#6483](https://github.com/openshift/installer/pull/6483) * [OCPBUGS-1941](https://issues.redhat.com/browse/OCPBUGS-1941): bump RHCOS 4.12 bootimage metadata [#6452](https://github.com/openshift/installer/pull/6452) * [Bug 2072202](https://bugzilla.redhat.com/show_bug.cgi?id=2072202): Check for api and api-int resolution during cluster install [#5816](https://github.com/openshift/installer/pull/5816) * [OCPBUGS-2259](https://issues.redhat.com/browse/OCPBUGS-2259): Fix soft-anti-affinity known issue [#6479](https://github.com/openshift/installer/pull/6479) * Removing jstuever from OWNERS [#6480](https://github.com/openshift/installer/pull/6480) * [OCPBUGS-1881](https://issues.redhat.com/browse/OCPBUGS-1881): vsphere/destroy: improve logs when folder is not empty [#6456](https://github.com/openshift/installer/pull/6456) * Adding "syd05" as a choice for zones in PowerVS [#6468](https://github.com/openshift/installer/pull/6468) * [OCPBUGS-1856](https://issues.redhat.com/browse/OCPBUGS-1856): IBMCloud: Allow traffic to kube-api-lb [#6458](https://github.com/openshift/installer/pull/6458) * update to release.openshift.io/feature-set to match OCP 4.12 [#6476](https://github.com/openshift/installer/pull/6476) * [AGENT-347](https://issues.redhat.com/browse/AGENT-347): generate OS_IMAGES dynamically [#6441](https://github.com/openshift/installer/pull/6441) * [OCPBUGS-1900](https://issues.redhat.com/browse/OCPBUGS-1900): Avoid SNO bootstrap jsonpath error [#6463](https://github.com/openshift/installer/pull/6463) * [OCPBUGS-1698](https://issues.redhat.com/browse/OCPBUGS-1698): multi-zone network slice validation [#6422](https://github.com/openshift/installer/pull/6422) * [OCPBUGSM-47893](https://issues.redhat.com/browse/OCPBUGSM-47893): added validation rule for invalid mac address in AgentConfig [#6473](https://github.com/openshift/installer/pull/6473) * populate vSphere infrastructure spec [#6457](https://github.com/openshift/installer/pull/6457) * [OCPBUGS-1896](https://issues.redhat.com/browse/OCPBUGS-1896): Validate Credentials Mode After Install Config step [#6453](https://github.com/openshift/installer/pull/6453) * [OCPBUGS-2029](https://issues.redhat.com/browse/OCPBUGS-2029): Fix agent installation InstallConfig proxy processing [#6461](https://github.com/openshift/installer/pull/6461) * Add docs about IPv6 on the additional Networks [#6435](https://github.com/openshift/installer/pull/6435) * [AGENT-375](https://issues.redhat.com/browse/AGENT-375): generate FIPS annotation for ACI [#6467](https://github.com/openshift/installer/pull/6467) * [AGENT-349](https://issues.redhat.com/browse/AGENT-349): Allow console login to Agent ISO [#6464](https://github.com/openshift/installer/pull/6464) * [OCPBUGS-1913](https://issues.redhat.com/browse/OCPBUGS-1913): Agent Installer: Do not fail on deprecated apiVip and ingressVip values [#6462](https://github.com/openshift/installer/pull/6462) * Power VS: Disconnected cluster support [#6347](https://github.com/openshift/installer/pull/6347) * azure: create bootimages using image gallery [#6304](https://github.com/openshift/installer/pull/6304) * CORS 2046: GCP Add base domain validation when DNS zone is specified [#6300](https://github.com/openshift/installer/pull/6300) * Fixes tested_instance_types_aarch64.md [#6451](https://github.com/openshift/installer/pull/6451) * pkg/types: add feature set support [#6336](https://github.com/openshift/installer/pull/6336) * pkg/asset/releaseimage/pullspec: Include override pullspec in log message [#6460](https://github.com/openshift/installer/pull/6460) * [Bug 2104997](https://bugzilla.redhat.com/show_bug.cgi?id=2104997): Add additional fields to proxy manifest [#6374](https://github.com/openshift/installer/pull/6374) * [OCPBUGS-527](https://issues.redhat.com/browse/OCPBUGS-527): Improve error message in case of failure during the agent image generation [#6436](https://github.com/openshift/installer/pull/6436) * [AGENT-271](https://issues.redhat.com/browse/AGENT-271): Generate kubeadmin-password with ISO [#6313](https://github.com/openshift/installer/pull/6313) * AWS: destroy: move helper functions to their own file [#6131](https://github.com/openshift/installer/pull/6131) * [AGENT-369](https://issues.redhat.com/browse/AGENT-369): SNO validation [#6444](https://github.com/openshift/installer/pull/6444) * Add host-config status to agent-gather [#6442](https://github.com/openshift/installer/pull/6442) * [AGENT-321](https://issues.redhat.com/browse/AGENT-321): Move validation failures to debug log level [#6446](https://github.com/openshift/installer/pull/6446) * [CORS-2073](https://issues.redhat.com/browse/CORS-2073): Remove terraform provider "random" [#6387](https://github.com/openshift/installer/pull/6387) * Increase start timeouts for assisted services [#6445](https://github.com/openshift/installer/pull/6445) * [OCPBUGS-891](https://issues.redhat.com/browse/OCPBUGS-891): aws: add explicit EIP dependency for nat gw [#6379](https://github.com/openshift/installer/pull/6379) * images: UPI: update gcloud install on rhel8 container [#6158](https://github.com/openshift/installer/pull/6158) * [OCPBUGS-1490](https://issues.redhat.com/browse/OCPBUGS-1490): [vsphere-zones] Handle no set zones [#6390](https://github.com/openshift/installer/pull/6390) * powervs: introduce manifest for OVNKubernetes configuration [#6405](https://github.com/openshift/installer/pull/6405) * Power VS: Enable IBM DNS service for private cluster support [#6228](https://github.com/openshift/installer/pull/6228) * [AGENT-264](https://issues.redhat.com/browse/AGENT-264): validate agent-config macs [#6434](https://github.com/openshift/installer/pull/6434) * Ensure installer created ControlPlaneMachineSets are active on install [#6425](https://github.com/openshift/installer/pull/6425) * [AGENT-330](https://issues.redhat.com/browse/AGENT-330): Add disconnected instructions to MCE integration doc [#6424](https://github.com/openshift/installer/pull/6424) * [OCPBUGS-561](https://issues.redhat.com/browse/OCPBUGS-561): bump RHCOS 4.12 bootimage metadata [#6403](https://github.com/openshift/installer/pull/6403) * Remove extra blank line in DHCP debugging [#6439](https://github.com/openshift/installer/pull/6439) * Change PowerVS default machine CIDR [#6428](https://github.com/openshift/installer/pull/6428) * Change error on execute() to a debug message [#6427](https://github.com/openshift/installer/pull/6427) * fix agent-config-template emitted by `agent create` [#6306](https://github.com/openshift/installer/pull/6306) * CORS 2040: [gcp] Adding Public and Private Managed zones [#6288](https://github.com/openshift/installer/pull/6288) * [Bug 2116904](https://bugzilla.redhat.com/show_bug.cgi?id=2116904): Base generated NMStateConfig on InstallConfig name [#6244](https://github.com/openshift/installer/pull/6244) * [AGENT-354](https://issues.redhat.com/browse/AGENT-354): script for gathering install data [#6402](https://github.com/openshift/installer/pull/6402) * [AGENT-364](https://issues.redhat.com/browse/AGENT-364): Validate network type for SNO clusters [#6419](https://github.com/openshift/installer/pull/6419) * cleanup unused types and constants after platform spec refactor [#6370](https://github.com/openshift/installer/pull/6370) * [AGENT-351](https://issues.redhat.com/browse/AGENT-351): Add MachineNetwork to agent-cluster-install for dual stack [#6364](https://github.com/openshift/installer/pull/6364) * [AGENT-319](https://issues.redhat.com/browse/AGENT-319): Set agent-config version to v1beta1 [#6416](https://github.com/openshift/installer/pull/6416) * [OCPBUGS-816](https://issues.redhat.com/browse/OCPBUGS-816): Check that cached base ISP matches hash in release payload [#6318](https://github.com/openshift/installer/pull/6318) * [AGENT-365](https://issues.redhat.com/browse/AGENT-365): Set install invoker to "agent-installer" [#6418](https://github.com/openshift/installer/pull/6418) * [Bug 2055247](https://bugzilla.redhat.com/show_bug.cgi?id=2055247): pkg/asset/installconfig/azure: standardDDv5Family is not currently supported [#6203](https://github.com/openshift/installer/pull/6203) * Verifying yq is installed properly in libvirt installer containers [#6319](https://github.com/openshift/installer/pull/6319) * Agent installer: try to make systemd services more robust [#6312](https://github.com/openshift/installer/pull/6312) * [OCPBUGSM-47737](https://issues.redhat.com/browse/OCPBUGSM-47737): Do not enable pre-network-manager-config.service [#6323](https://github.com/openshift/installer/pull/6323) * Add documentation for agent networking [#6400](https://github.com/openshift/installer/pull/6400) * vsphere: prevent duplicate validation check in multi-zone [#6398](https://github.com/openshift/installer/pull/6398) * AGENT-288 Log rendezvous host IP when creating agent ISO [#6393](https://github.com/openshift/installer/pull/6393) * AGENT-309 Display the rendezvous IP in motd and issue [#6386](https://github.com/openshift/installer/pull/6386) * Agent: Don't pass AdminKubeConfigClientCertKey [#6373](https://github.com/openshift/installer/pull/6373) * hack: Use golang-1.16 image of origin-release [#6367](https://github.com/openshift/installer/pull/6367) * [OCPBUGS-1231](https://issues.redhat.com/browse/OCPBUGS-1231): disconnected machine-os-images info [#6339](https://github.com/openshift/installer/pull/6339) * AGENT-325 Set NetworkType in AgentClusterInstall [#6287](https://github.com/openshift/installer/pull/6287) * [Bug 2094716](https://bugzilla.redhat.com/show_bug.cgi?id=2094716): docs: fully air-gapped AWS IPI install [#6076](https://github.com/openshift/installer/pull/6076) * [OCPBUGS-1489](https://issues.redhat.com/browse/OCPBUGS-1489): [vsphere] Loop over all folders for destroy [#6378](https://github.com/openshift/installer/pull/6378) * AWS: resolve subnet-related FIXMEs [#6140](https://github.com/openshift/installer/pull/6140) * go getter update for terraform & terraform providers [#6352](https://github.com/openshift/installer/pull/6352) * GCP: Add me-west1 region [#6359](https://github.com/openshift/installer/pull/6359) * aws: replace deprecated object in terraform config [#6383](https://github.com/openshift/installer/pull/6383) * powervs-delete-named-dhcp [#6365](https://github.com/openshift/installer/pull/6365) * azure: validation: avoid specifying capabilities twice [#5952](https://github.com/openshift/installer/pull/5952) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add DNS Record for internal public traffic [#6375](https://github.com/openshift/installer/pull/6375) * [OCPBUGS-729](https://issues.redhat.com/browse/OCPBUGS-729): vSphere 6.7u3 failing privilege validation [#6293](https://github.com/openshift/installer/pull/6293) * Agent: Increase bootstrap-complete timeout [#6384](https://github.com/openshift/installer/pull/6384) * aws user tags: set limit == openshift/api [#6368](https://github.com/openshift/installer/pull/6368) * [OCPBUGS-927](https://issues.redhat.com/browse/OCPBUGS-927): azure: add sleep between zone and link creation [#6349](https://github.com/openshift/installer/pull/6349) * Update power-go-client [#6229](https://github.com/openshift/installer/pull/6229) * Fix generating Machine objects for PowerVS [#6366](https://github.com/openshift/installer/pull/6366) * [AGENT-328](https://issues.redhat.com/browse/AGENT-328): Add documentation for agent mce integration [#6358](https://github.com/openshift/installer/pull/6358) * aws: allow clusters with public only subnets [#6342](https://github.com/openshift/installer/pull/6342) * AWS UPI docs: remove control plane machineset [#6346](https://github.com/openshift/installer/pull/6346) * [OCPBUGS-705](https://issues.redhat.com/browse/OCPBUGS-705): vSphere privilege checking failing when providing user-defined folder and/or resource pool [#6281](https://github.com/openshift/installer/pull/6281) * GCP: allow environmental authentication [#6330](https://github.com/openshift/installer/pull/6330) * AGENT: add ipv6 support [#6328](https://github.com/openshift/installer/pull/6328) * [OCPBUGS-1234](https://issues.redhat.com/browse/OCPBUGS-1234): [CFE-580] Fixed error condition for user tag validation [#6356](https://github.com/openshift/installer/pull/6356) * [OCPBUGS-717](https://issues.redhat.com/browse/OCPBUGS-717): Upgrade python3.7 to 3.8 for AWS UPI [#6270](https://github.com/openshift/installer/pull/6270) * [OCPBUGS-963](https://issues.redhat.com/browse/OCPBUGS-963): OpenStack: Lift validation for 14 chars cluster names [#6309](https://github.com/openshift/installer/pull/6309) * [OCPBUGS-1234](https://issues.redhat.com/browse/OCPBUGS-1234): [CFE-580] Extend user tags limit to 40 based on AWS limits [#6345](https://github.com/openshift/installer/pull/6345) * [OCPBUGS-1226](https://issues.redhat.com/browse/OCPBUGS-1226): OpenStack UPI: Create server group for Computes [#6340](https://github.com/openshift/installer/pull/6340) * Power VS: use the new name field for the dhcp nw [#6294](https://github.com/openshift/installer/pull/6294) * Add AWS r6i into tested instance types table [#6337](https://github.com/openshift/installer/pull/6337) * vsphere zonal: platform spec and terraform updates [#6329](https://github.com/openshift/installer/pull/6329) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add DNS Service permitted VPC [#6325](https://github.com/openshift/installer/pull/6325) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add DNS Service destroy [#6321](https://github.com/openshift/installer/pull/6321) * [OCPBUGSM-47740](https://issues.redhat.com/browse/OCPBUGSM-47740): No networkconfig needed with DHCP agent config [#6317](https://github.com/openshift/installer/pull/6317) * azure: add support for arm64 instances (Dps_v5 instances) [#6298](https://github.com/openshift/installer/pull/6298) * azure: Add client certification to terraform [#6250](https://github.com/openshift/installer/pull/6250) * pkg/asset/ignition/bootstrap/cvoignore: Add group/kind/name(space) collision detection [#6247](https://github.com/openshift/installer/pull/6247) * Add additionalTrustBundlePolicy field to allow CA bundle propagation [#6232](https://github.com/openshift/installer/pull/6232) * [OCPBUGS-1247](https://issues.redhat.com/browse/OCPBUGS-1247): Restrict CPMS from being created with single node clusters [#6331](https://github.com/openshift/installer/pull/6331) * GCP: Add createFirewallRules parameter to installconfig. [#6338](https://github.com/openshift/installer/pull/6338) * [CORS-2043](https://issues.redhat.com/browse/CORS-2043): GCP: Passsthrough installer service account to Terraform r… [#6326](https://github.com/openshift/installer/pull/6326) * Bump Nutanix Prism Go Client dep to c8a2536 to include refactors. [#6308](https://github.com/openshift/installer/pull/6308) * [OCPBUGS-927](https://issues.redhat.com/browse/OCPBUGS-927): Add depends to enforce order for azure terraform dependencies [#6311](https://github.com/openshift/installer/pull/6311) * vSphere: Zonal Terraform [#6064](https://github.com/openshift/installer/pull/6064) * Terraform go 1.18 [#6257](https://github.com/openshift/installer/pull/6257) * Revert "AWS: Create ControlPlaneMachineSet CRDs" [#6324](https://github.com/openshift/installer/pull/6324) * [OCPBUGS-302](https://issues.redhat.com/browse/OCPBUGS-302): bootstrap gather: fix panic when platform is "none" [#6243](https://github.com/openshift/installer/pull/6243) * Add bind-utils in upi installer image [#6277](https://github.com/openshift/installer/pull/6277) * download 'aliyun' [#6265](https://github.com/openshift/installer/pull/6265) * [AGENT-308](https://issues.redhat.com/browse/AGENT-308): Add 4.12 to OS_IMAGES [#6315](https://github.com/openshift/installer/pull/6315) * [OCPBUGS-889](https://issues.redhat.com/browse/OCPBUGS-889): bump default channel to stable-4.12 [#6302](https://github.com/openshift/installer/pull/6302) * vSphere: Add the ability to attach a tag to a mob [#5357](https://github.com/openshift/installer/pull/5357) * Power VS: Machine CIDR [#6264](https://github.com/openshift/installer/pull/6264) * [AGENT-318](https://issues.redhat.com/browse/AGENT-318): Merge agent-based installer [#6263](https://github.com/openshift/installer/pull/6263) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add TF support for private DNS [#6282](https://github.com/openshift/installer/pull/6282) * vsphere: error checking while creating vsphere clients [#6305](https://github.com/openshift/installer/pull/6305) * Correct the GCP machine series name [#6296](https://github.com/openshift/installer/pull/6296) * add bind config for PowerVS publish==internal IPI [#6227](https://github.com/openshift/installer/pull/6227) * [Bug 2084471](https://bugzilla.redhat.com/show_bug.cgi?id=2084471): validate baremetal hosts names are lowercase RFC 1123 [#6112](https://github.com/openshift/installer/pull/6112) * terraform: azurerm bump provider to v3.19.1 [#6262](https://github.com/openshift/installer/pull/6262) * Power VS: Enable global routing for cloud connection and specify dns [#6289](https://github.com/openshift/installer/pull/6289) * fix check for control plane suitability for default zones [#6295](https://github.com/openshift/installer/pull/6295) * [Bug 2070744](https://bugzilla.redhat.com/show_bug.cgi?id=2070744): Fix infinite loop when failing to untag resources [#5995](https://github.com/openshift/installer/pull/5995) * AWS: Create ControlPlaneMachineSet CRDs [#6172](https://github.com/openshift/installer/pull/6172) * Add dual stack API & Ingress VIP support for on-prem platforms [#5798](https://github.com/openshift/installer/pull/5798) * OWNER_ALIASES: remove Saqib Ali from the coreos approvers and reviewers [#6291](https://github.com/openshift/installer/pull/6291) * gcp: machines to use networkProjectID when defined [#6284](https://github.com/openshift/installer/pull/6284) * Bump FCOS to latest stable [#6290](https://github.com/openshift/installer/pull/6290) * Switch delete ordering of CloudConnect and VPCs [#6280](https://github.com/openshift/installer/pull/6280) * gcp: specify network_project_id for network and subnets [#6283](https://github.com/openshift/installer/pull/6283) * [Bug 2117439](https://bugzilla.redhat.com/show_bug.cgi?id=2117439): Azure masters should publish on an internal load balancer [#6230](https://github.com/openshift/installer/pull/6230) * Bug OCPBUGS-164: OpenStack: Update Kuryr storage requirements [#6286](https://github.com/openshift/installer/pull/6286) * [CORS-2271](https://issues.redhat.com/browse/CORS-2271): IBMCloud: Add DNS Service support - installconfig [#6255](https://github.com/openshift/installer/pull/6255) * Bug OCPBUGS-164: OpenStack: Set minimum disk of a flavor to 100 GB [#6268](https://github.com/openshift/installer/pull/6268) * validate vSphere privileges [#5741](https://github.com/openshift/installer/pull/5741) * Add support for private DNS server to PowerVS [#6157](https://github.com/openshift/installer/pull/6157) * GCP: Remove firewall rules when providing network project id [#6219](https://github.com/openshift/installer/pull/6219) * GCP: Add missing regions [#6259](https://github.com/openshift/installer/pull/6259) * manifests: Pass the NetworkProjectID to manifests [#6242](https://github.com/openshift/installer/pull/6242) * support for multi-zone/region installation [#5911](https://github.com/openshift/installer/pull/5911) * cmd/openshift-install/create: One shot console access [#5336](https://github.com/openshift/installer/pull/5336) * IBMCloud: Pull in latest openshift/api changes [#6056](https://github.com/openshift/installer/pull/6056) * [OCPBUGS-268](https://issues.redhat.com/browse/OCPBUGS-268): vSphere - enable steal time accounting [#6215](https://github.com/openshift/installer/pull/6215) * [Bug 2028474](https://bugzilla.redhat.com/show_bug.cgi?id=2028474): oVirt: Removed cluster name length limitation [#6206](https://github.com/openshift/installer/pull/6206) * gcp: Add validation for Network Project Data [#6207](https://github.com/openshift/installer/pull/6207) * [Bug 2098072](https://bugzilla.redhat.com/show_bug.cgi?id=2098072): vsphere: fix default disk type when not speficied [#6233](https://github.com/openshift/installer/pull/6233) * [Bug 2061947](https://bugzilla.redhat.com/show_bug.cgi?id=2061947): IBMCloud: Handle missing RG [#6152](https://github.com/openshift/installer/pull/6152) * [CORS-1994](https://issues.redhat.com/browse/CORS-1994): Update Installer Dependencies [#6175](https://github.com/openshift/installer/pull/6175) * [Bug 2109538](https://bugzilla.redhat.com/show_bug.cgi?id=2109538): nutanix: allow creating manifests without Prism Central connection [#6149](https://github.com/openshift/installer/pull/6149) * IBMCloud: Use unique mutex for Client retrieval [#6241](https://github.com/openshift/installer/pull/6241) * [OCPBUGS-262](https://issues.redhat.com/browse/OCPBUGS-262): UPI image download govc rate limit failure [#6047](https://github.com/openshift/installer/pull/6047) * Extract the image-references file from the release, pass it to `machine-config-operator` [#6234](https://github.com/openshift/installer/pull/6234) * powervs: allow VPC, Cloud connection, and NW re-use [#6217](https://github.com/openshift/installer/pull/6217) * [Bug 2109800](https://bugzilla.redhat.com/show_bug.cgi?id=2109800): IBMCloud: Allow metrics traffic [#6208](https://github.com/openshift/installer/pull/6208) * IBMCloud: BYON Enablement [#6183](https://github.com/openshift/installer/pull/6183) * IBMCLOUD Power VS: Updated Max and Min machinepool resource limits [#6147](https://github.com/openshift/installer/pull/6147) * GCP: Added user specified tags on control plane instances [#6199](https://github.com/openshift/installer/pull/6199) * Azure Stack UPI Docs: Remove Feature Gate CRs [#5657](https://github.com/openshift/installer/pull/5657) * [Bug 2115790](https://bugzilla.redhat.com/show_bug.cgi?id=2115790): bump RHCOS 4.12 bootimage metadata [#6212](https://github.com/openshift/installer/pull/6212) * terraform: ibmcloud: bump provider version [#6210](https://github.com/openshift/installer/pull/6210) * Revendor with golang 1.18 [#6077](https://github.com/openshift/installer/pull/6077) * Update installer images to use golang 1.18 [#6163](https://github.com/openshift/installer/pull/6163) * GCP: Add networkProjectID parameter to install-config. [#6166](https://github.com/openshift/installer/pull/6166) * powervs: default to tier1 storage [#6211](https://github.com/openshift/installer/pull/6211) * Download `yq` in upi installer containers [#6008](https://github.com/openshift/installer/pull/6008) * Remove LoadBalancer settings from cloud provider config [#5834](https://github.com/openshift/installer/pull/5834) * Add SPLAT members to platform reviewer/approver aliases [#6202](https://github.com/openshift/installer/pull/6202) * Alibaba: Use a static region list [#6178](https://github.com/openshift/installer/pull/6178) * Power VS: Add Montreal as a supported region [#6209](https://github.com/openshift/installer/pull/6209) * OWNERS_ALIASES: Add Adam Piasecki (c4rt0) [#6181](https://github.com/openshift/installer/pull/6181) * Switch libvirt VM's to vnc graphic mode [#6062](https://github.com/openshift/installer/pull/6062) * GCP: Added user specified tags on compute instances in installconfig [#6185](https://github.com/openshift/installer/pull/6185) * [CORS-2009](https://issues.redhat.com/browse/CORS-2009): Update default release image [#6180](https://github.com/openshift/installer/pull/6180) * Fix ineffassign [#4866](https://github.com/openshift/installer/pull/4866) * [Bug 2105933](https://bugzilla.redhat.com/show_bug.cgi?id=2105933): data/data/coreos: update FCOS to 36.20220716.3.1 [#6108](https://github.com/openshift/installer/pull/6108) * [Bug 2114754](https://bugzilla.redhat.com/show_bug.cgi?id=2114754): gather: properly delete serial log dir [#6197](https://github.com/openshift/installer/pull/6197) * tls: only report error if one happened [#6195](https://github.com/openshift/installer/pull/6195) * Updating ose-installer-artifacts images to be consistent with ART [#6096](https://github.com/openshift/installer/pull/6096) * Revert "GCP: Revert Instance Type from N2 to N1" [#6058](https://github.com/openshift/installer/pull/6058) * [CORS-2167](https://issues.redhat.com/browse/CORS-2167): Remove UPI Metal TF references [#6174](https://github.com/openshift/installer/pull/6174) * Change defaultNetworkType to ovn-kubernetes [#6014](https://github.com/openshift/installer/pull/6014) * PowerVS: Add 60 sec wait time after VPC creation. [#6162](https://github.com/openshift/installer/pull/6162) * updated terraform-provider-ovirt [#6169](https://github.com/openshift/installer/pull/6169) * Update vsphere permissions file [#5387](https://github.com/openshift/installer/pull/5387) * Update kube components to v0.24.0 [#6165](https://github.com/openshift/installer/pull/6165) * IBMCloud: BYON Enablement - SG Rule Cleanup [#6143](https://github.com/openshift/installer/pull/6143) * BUG 2105341: Remove required check for control planes in boostrap gather [#6168](https://github.com/openshift/installer/pull/6168) * BUG 2109388: Add AWS S3 Bucket Permissions [#6150](https://github.com/openshift/installer/pull/6150) * added soundcard_enabled field to tf resources for master vms [#6148](https://github.com/openshift/installer/pull/6148) * Update Installer approvers list [#6151](https://github.com/openshift/installer/pull/6151) * IBMCloud: Update RHCOS image for VSI [#6142](https://github.com/openshift/installer/pull/6142) * [Bug 2102324](https://bugzilla.redhat.com/show_bug.cgi?id=2102324): Fix validation errors for instance type [#6127](https://github.com/openshift/installer/pull/6127) * Updating ose-baremetal-installer images to be consistent with ART [#6085](https://github.com/openshift/installer/pull/6085) * As a developer I want to update installer to use propagateUserFlags for GA [#5994](https://github.com/openshift/installer/pull/5994) * terraform: update azure provider to v3 [#6000](https://github.com/openshift/installer/pull/6000) * Azure console logs gathering [#5904](https://github.com/openshift/installer/pull/5904) * OWNERS_ALIASES: drop miabbott from coreos aliases [#6123](https://github.com/openshift/installer/pull/6123) * Gcp console logs gathering [#5902](https://github.com/openshift/installer/pull/5902) * IBMCloud: BYON Enablement - Terraform [#6051](https://github.com/openshift/installer/pull/6051) * [Bug 2095323](https://bugzilla.redhat.com/show_bug.cgi?id=2095323): Create security group rules for each MachineNetwork CIDR [#6125](https://github.com/openshift/installer/pull/6125) * [Bug 2106061](https://bugzilla.redhat.com/show_bug.cgi?id=2106061): bump RHCOS 4.12 bootimage metadata [#6129](https://github.com/openshift/installer/pull/6129) * test: use `T.TempDir` to create temporary test directory [#5730](https://github.com/openshift/installer/pull/5730) * IBMCloud: BYON Enablement - InstallConfig [#6050](https://github.com/openshift/installer/pull/6050) * [Bug 2097691](https://bugzilla.redhat.com/show_bug.cgi?id=2097691): vsphere installconfig: use full dc path in network validation [#6105](https://github.com/openshift/installer/pull/6105) * Terraform: Remove azureprivatedns provider [#5983](https://github.com/openshift/installer/pull/5983) * Update OWENRS-ALIASES after changes in the team [#6113](https://github.com/openshift/installer/pull/6113) * [Bug 2106667](https://bugzilla.redhat.com/show_bug.cgi?id=2106667): OpenStack UPI: Allow setting external DNS [#6116](https://github.com/openshift/installer/pull/6116) * [Bug 2061947](https://bugzilla.redhat.com/show_bug.cgi?id=2061947): IBMCloud: Skip DNS Record delete [#6013](https://github.com/openshift/installer/pull/6013) * [Bug 2102228](https://bugzilla.redhat.com/show_bug.cgi?id=2102228): rhcos: Move to rhcos.mirror.openshift.com [#6109](https://github.com/openshift/installer/pull/6109) * [Bug 2082395](https://bugzilla.redhat.com/show_bug.cgi?id=2082395): Make azure baseDomainResoureGroup optional for private c… [#6049](https://github.com/openshift/installer/pull/6049) * cmd/openshift-install/gather: Errorf for Available=False [#5985](https://github.com/openshift/installer/pull/5985) * [Bug 2070318](https://bugzilla.redhat.com/show_bug.cgi?id=2070318): Allow setting bootstrap kubelet ip [#6042](https://github.com/openshift/installer/pull/6042) * Updating ose-installer images to be consistent with ART [#6083](https://github.com/openshift/installer/pull/6083) * [Bug 2098299](https://bugzilla.redhat.com/show_bug.cgi?id=2098299): Switch to perform normal marshalling with unknown fields [#6039](https://github.com/openshift/installer/pull/6039) * openstack: Update base images [#6082](https://github.com/openshift/installer/pull/6082) * AWS Destroy: Clean up endpoint services [#6089](https://github.com/openshift/installer/pull/6089) * openstack UPI: Remove Swift example, use Glance [#6091](https://github.com/openshift/installer/pull/6091) * [Bug 2104578](https://bugzilla.redhat.com/show_bug.cgi?id=2104578): Remove unnecessary SG rule [#6086](https://github.com/openshift/installer/pull/6086) * [Bug 2090836](https://bugzilla.redhat.com/show_bug.cgi?id=2090836): Fixes CFE-489 - AWS installer should go through proxy for s3 bootstrap ignition call [#5973](https://github.com/openshift/installer/pull/5973) * OpenStack: prompt FIP description [#6075](https://github.com/openshift/installer/pull/6075) * [Bug 1944365](https://bugzilla.redhat.com/show_bug.cgi?id=1944365): openstack: validate that VIPs are outside DHCP pools [#6069](https://github.com/openshift/installer/pull/6069) * openstack UPI: clarify naming of RHCOS image [#6081](https://github.com/openshift/installer/pull/6081) * [Bug 2102324](https://bugzilla.redhat.com/show_bug.cgi?id=2102324): Fix panic when unknown region is provided. [#6065](https://github.com/openshift/installer/pull/6065) * [Bug 2103144](https://bugzilla.redhat.com/show_bug.cgi?id=2103144): openstack: validate apiVIP and ingressVIP to be semantically different [#6067](https://github.com/openshift/installer/pull/6067) * [Bug 2103236](https://bugzilla.redhat.com/show_bug.cgi?id=2103236): Provide proper error message for empty projects list [#6071](https://github.com/openshift/installer/pull/6071) * BUG 2102632: destroy/gcp: Use min length for destroying disks [#6068](https://github.com/openshift/installer/pull/6068) * [Bug 2099401](https://bugzilla.redhat.com/show_bug.cgi?id=2099401): IBMCloud: Set regional URL for ibmcloud client [#6046](https://github.com/openshift/installer/pull/6046) * openstack: Prepare for a UPI CI job [#6055](https://github.com/openshift/installer/pull/6055) * [Bug 2100841](https://bugzilla.redhat.com/show_bug.cgi?id=2100841): Print the "export KUBECONFIG=..." command on its own line for easier cut-and-paste [#6018](https://github.com/openshift/installer/pull/6018) * [Bug 1997704](https://bugzilla.redhat.com/show_bug.cgi?id=1997704): [OpenStack] Document in-tree limitation for external LBs [#6033](https://github.com/openshift/installer/pull/6033) * [Bug 2100496](https://bugzilla.redhat.com/show_bug.cgi?id=2100496): oVirt VM creation fails on empty affinity group description [#6044](https://github.com/openshift/installer/pull/6044) * [Bug 2064693](https://bugzilla.redhat.com/show_bug.cgi?id=2064693): Restore ability to use local clouds.yaml [#5947](https://github.com/openshift/installer/pull/5947) * [Bug 2047732](https://bugzilla.redhat.com/show_bug.cgi?id=2047732): [IBM]Volume is not deleted after destroy cluster [#5962](https://github.com/openshift/installer/pull/5962) * [Bug 2076646](https://bugzilla.redhat.com/show_bug.cgi?id=2076646): destroy/gcp: Disk names are filtered using kubernetes name format [#5976](https://github.com/openshift/installer/pull/5976) * [Bug 2095226](https://bugzilla.redhat.com/show_bug.cgi?id=2095226): Added changes to verify cloud connection and dhcp serviceinstance details of a powervs instance [#5899](https://github.com/openshift/installer/pull/5899) * [Bug 2097940](https://bugzilla.redhat.com/show_bug.cgi?id=2097940): PowerVS: Handle optional VPCRegion [#6020](https://github.com/openshift/installer/pull/6020) * [Bug 2082283](https://bugzilla.redhat.com/show_bug.cgi?id=2082283): Transition to the oVirt Terraform provider v2 [#5867](https://github.com/openshift/installer/pull/5867) * [Bug 2096905](https://bugzilla.redhat.com/show_bug.cgi?id=2096905): Swap Nutanix Prism Client [#6002](https://github.com/openshift/installer/pull/6002) * [Bug 2094694](https://bugzilla.redhat.com/show_bug.cgi?id=2094694): Nutanix cluster name validation [#5991](https://github.com/openshift/installer/pull/5991) * [Bug 2098243](https://bugzilla.redhat.com/show_bug.cgi?id=2098243): Adding error handling to powervs platform [#5958](https://github.com/openshift/installer/pull/5958) * [Bug 2096605](https://bugzilla.redhat.com/show_bug.cgi?id=2096605): vsphere: validate diskType if supplied [#6019](https://github.com/openshift/installer/pull/6019) * [Bug 2049108](https://bugzilla.redhat.com/show_bug.cgi?id=2049108): Fix network interface not found error [#6016](https://github.com/openshift/installer/pull/6016) * [Bug 2097260](https://bugzilla.redhat.com/show_bug.cgi?id=2097260): Fixes openshift-install create manifest failure of Power VS Platform [#6007](https://github.com/openshift/installer/pull/6007) * [Bug 2092107](https://bugzilla.redhat.com/show_bug.cgi?id=2092107): Re-add Power VS install-config DNS validation tests [#5938](https://github.com/openshift/installer/pull/5938) * [Bug 2092296](https://bugzilla.redhat.com/show_bug.cgi?id=2092296): Changed DefaultMachineCIDR of PowerVS to 192.168.0.0/16 [#5940](https://github.com/openshift/installer/pull/5940) * [Bug 2097239](https://bugzilla.redhat.com/show_bug.cgi?id=2097239): Changed Lower limits of CPU for PowerVS Cloud [#5929](https://github.com/openshift/installer/pull/5929) * [Bug 2090816](https://bugzilla.redhat.com/show_bug.cgi?id=2090816): Increase bootstrap timeout, not k8s API timeout [#6010](https://github.com/openshift/installer/pull/6010) * [Bug 2095917](https://bugzilla.redhat.com/show_bug.cgi?id=2095917): Nutanix set osDisk with diskSizeGB rather than diskSizeMiB [#5998](https://github.com/openshift/installer/pull/5998) * [Bug 1859153](https://bugzilla.redhat.com/show_bug.cgi?id=1859153): IAM instance profile race condition [#5982](https://github.com/openshift/installer/pull/5982) * OWNERS_ALIASES: update coreos aliases [#5989](https://github.com/openshift/installer/pull/5989) * [Bug 2096352](https://bugzilla.redhat.com/show_bug.cgi?id=2096352): Collect whole journal and netstat data [#5988](https://github.com/openshift/installer/pull/5988) * [Bug 2090816](https://bugzilla.redhat.com/show_bug.cgi?id=2090816): baremetal: wait longer for bootstrap to complete [#5981](https://github.com/openshift/installer/pull/5981) * baremetal: static IP for bootstrap node [#5787](https://github.com/openshift/installer/pull/5787) * [Bug 2068180](https://bugzilla.redhat.com/show_bug.cgi?id=2068180): update doc for DNS and disconnected clusters [#5974](https://github.com/openshift/installer/pull/5974) * [Bug 2090049](https://bugzilla.redhat.com/show_bug.cgi?id=2090049): GCP Destroy resources that are owned by cluster [#5965](https://github.com/openshift/installer/pull/5965) * [Bug 2094902](https://bugzilla.redhat.com/show_bug.cgi?id=2094902): Simplify cross-compiling [#5905](https://github.com/openshift/installer/pull/5905) * [Bug 2085336](https://bugzilla.redhat.com/show_bug.cgi?id=2085336): based on 4.11 CORS-1916 add the vm family [#5913](https://github.com/openshift/installer/pull/5913) * [Bug 2089563](https://bugzilla.redhat.com/show_bug.cgi?id=2089563): Use Power VS machine provider spec from openshift/api [#5873](https://github.com/openshift/installer/pull/5873) * [Bug 2093368](https://bugzilla.redhat.com/show_bug.cgi?id=2093368): OpenStack: Fix LoadBalancer FIP deletion on destroy [#5964](https://github.com/openshift/installer/pull/5964) * [Bug 2057582](https://bugzilla.redhat.com/show_bug.cgi?id=2057582): Remove all occurances of packet_device from upi/metal [#5969](https://github.com/openshift/installer/pull/5969) * [Bug 2057582](https://bugzilla.redhat.com/show_bug.cgi?id=2057582): For metal upi update source and versions of terraform providers [#5941](https://github.com/openshift/installer/pull/5941) * BUG 2075459: IOPS was not being set even when manually configured [#5925](https://github.com/openshift/installer/pull/5925) * [Bug 2084280](https://bugzilla.redhat.com/show_bug.cgi?id=2084280): Remove optional services from permissions check [#5915](https://github.com/openshift/installer/pull/5915) * [Bug 2085380](https://bugzilla.redhat.com/show_bug.cgi?id=2085380): azure: validate VM image and instance HyperV gen match [#5918](https://github.com/openshift/installer/pull/5918) * [Bug 2084580](https://bugzilla.redhat.com/show_bug.cgi?id=2084580): Add check to validate cluster name for dots [#5931](https://github.com/openshift/installer/pull/5931) * [Bug 2086791](https://bugzilla.redhat.com/show_bug.cgi?id=2086791): Azure: validate ultrassd instance types in multi-zone regions [#5937](https://github.com/openshift/installer/pull/5937) * [Bug 2090487](https://bugzilla.redhat.com/show_bug.cgi?id=2090487): SNO network type update [#5927](https://github.com/openshift/installer/pull/5927) * Updating ose-installer images to be consistent with ART [#5950](https://github.com/openshift/installer/pull/5950) * Updating ose-installer-artifacts images to be consistent with ART [#5908](https://github.com/openshift/installer/pull/5908) * [Bug 2085187](https://bugzilla.redhat.com/show_bug.cgi?id=2085187): terraform: revendor golang.org/x/sys [#5896](https://github.com/openshift/installer/pull/5896) * [Bug 2088660](https://bugzilla.redhat.com/show_bug.cgi?id=2088660): Fix for absence folder for bootstrap ignition iso [#5935](https://github.com/openshift/installer/pull/5935) * [Bug 2089682](https://bugzilla.redhat.com/show_bug.cgi?id=2089682): Ensure Presence of Overlay networks in cluster is handled gracefully [#5939](https://github.com/openshift/installer/pull/5939) * [Bug 1965468](https://bugzilla.redhat.com/show_bug.cgi?id=1965468): Revert "Bug 1909136: OpenStack: delete volume snapshots" [#5923](https://github.com/openshift/installer/pull/5923) * [Bug 1969794](https://bugzilla.redhat.com/show_bug.cgi?id=1969794): Correct typo [#5922](https://github.com/openshift/installer/pull/5922) * [Bug 2084441](https://bugzilla.redhat.com/show_bug.cgi?id=2084441): azure: proper premiumIO validation message [#5924](https://github.com/openshift/installer/pull/5924) * [Bug 2078431](https://bugzilla.redhat.com/show_bug.cgi?id=2078431): Set TF_DATA_DIR to the Terraform Dir. [#5864](https://github.com/openshift/installer/pull/5864) * [Bug 2086718](https://bugzilla.redhat.com/show_bug.cgi?id=2086718): Add destroy cluster support for PowerVS [#5737](https://github.com/openshift/installer/pull/5737) * [Bug 2086936](https://bugzilla.redhat.com/show_bug.cgi?id=2086936): vSphere: change socket back to cores [#5914](https://github.com/openshift/installer/pull/5914) * [Bug 2086056](https://bugzilla.redhat.com/show_bug.cgi?id=2086056): openstack: add doc for OVS HW offload [#5886](https://github.com/openshift/installer/pull/5886) * [Bug 2065893](https://bugzilla.redhat.com/show_bug.cgi?id=2065893): bump RHCOS 4.11 bootimage metadata [#5887](https://github.com/openshift/installer/pull/5887) * [Bug 2085721](https://bugzilla.redhat.com/show_bug.cgi?id=2085721): Fix name for customization controller image [#5909](https://github.com/openshift/installer/pull/5909) * Power VS: Use bucket name from coreos stream rather than inferring it [#5782](https://github.com/openshift/installer/pull/5782) * Increase Unit Testing Coverage of AWS Install Config to Include ValidateForProvisioning [#5791](https://github.com/openshift/installer/pull/5791) * Added changes for validating the IBM Account Type for Provisioning Power VS resources [#5734](https://github.com/openshift/installer/pull/5734) * Updating ose-installer images to be consistent with ART [#5895](https://github.com/openshift/installer/pull/5895) * [AGENT-40](https://issues.redhat.com/browse/AGENT-40): allow reading cert keys [#5872](https://github.com/openshift/installer/pull/5872) * Power VS: Separating bootstrap resources to own stage for clean destroy [#5901](https://github.com/openshift/installer/pull/5901) * Aws console logs [#5807](https://github.com/openshift/installer/pull/5807) * GCP: Revert Instance Type from N2 to N1 [#5898](https://github.com/openshift/installer/pull/5898) * Dynamic retrieval of GCP Regions for a Project [#5815](https://github.com/openshift/installer/pull/5815) * Update to Golang v1.17 [#5870](https://github.com/openshift/installer/pull/5870) * azure: move zones functionality to the client API [#5844](https://github.com/openshift/installer/pull/5844) * azure: validation: dedup getting the capabilities [#5893](https://github.com/openshift/installer/pull/5893) * update azure arm templates to support customer provided vnet [#5880](https://github.com/openshift/installer/pull/5880) * machines: Set defaults for machine instance types [#5841](https://github.com/openshift/installer/pull/5841) * Azure Provider: fix vmNetworkType defaults by checking vm capabilities [#5846](https://github.com/openshift/installer/pull/5846) * OpenStack: fix SR-IOV documentation TOC [#5881](https://github.com/openshift/installer/pull/5881) * [Bug 2078875](https://bugzilla.redhat.com/show_bug.cgi?id=2078875): Delete all the ports from tagged Neutron networks. [#5838](https://github.com/openshift/installer/pull/5838) * [Bug 2082604](https://bugzilla.redhat.com/show_bug.cgi?id=2082604): Revert "image: set os name to red-coreos-stable-amd64" [#5869](https://github.com/openshift/installer/pull/5869) * openstack: Add the Kuryr squad as approvers [#5866](https://github.com/openshift/installer/pull/5866) * Update template for CloudProviderConfig [#5875](https://github.com/openshift/installer/pull/5875) * Bump Azure Stack Terraform Provider for Go 1.18 [#5865](https://github.com/openshift/installer/pull/5865) * Add -n argument to copy network config from install environment to install-to-disk.sh.template [#5795](https://github.com/openshift/installer/pull/5795) * Update SR-IOV & DPDK doc for OpenStack [#5712](https://github.com/openshift/installer/pull/5712) * [Bug 2080054](https://bugzilla.redhat.com/show_bug.cgi?id=2080054): Add 'ARG TAGS=""' line for each build step [#5794](https://github.com/openshift/installer/pull/5794) * Pull the OS Image for Nutanix via URL [#5868](https://github.com/openshift/installer/pull/5868) * Power VS: fix terraform vars [#5863](https://github.com/openshift/installer/pull/5863) * Update TF Provider Version to 1.40.1 [#5862](https://github.com/openshift/installer/pull/5862) * Use neutral pronoun in doc. [#5384](https://github.com/openshift/installer/pull/5384) * Change the default machine pool config for Nutanix [#5857](https://github.com/openshift/installer/pull/5857) * [Bug 2074210](https://bugzilla.redhat.com/show_bug.cgi?id=2074210): Add new Regions to the GCP Installer configuration list [#5811](https://github.com/openshift/installer/pull/5811) * Update os name to correct value [#5860](https://github.com/openshift/installer/pull/5860) * Update the comment explaining vCPUs on Nutanix [#5859](https://github.com/openshift/installer/pull/5859) * [Bug 2064170](https://bugzilla.redhat.com/show_bug.cgi?id=2064170): Fixed duplicate strings in explain [#5836](https://github.com/openshift/installer/pull/5836) * [Bug 2077662](https://bugzilla.redhat.com/show_bug.cgi?id=2077662): Fix AWS Platform Provisioning Check [#5831](https://github.com/openshift/installer/pull/5831) * Support RAID and BIOS configuration for master nodes of baremetal IPI deployments [#5196](https://github.com/openshift/installer/pull/5196) * Power VS: Create Remaining TF Resources [#5780](https://github.com/openshift/installer/pull/5780) * Handle the mapi-provider-nutanix types moving to openshift/api [#5812](https://github.com/openshift/installer/pull/5812) * vsphere: upi ignition leak [#5850](https://github.com/openshift/installer/pull/5850) * vSphere: ignore bootstrap eagerly scrub changes [#5848](https://github.com/openshift/installer/pull/5848) * [Bug 2078895](https://bugzilla.redhat.com/show_bug.cgi?id=2078895): ovirt: fixing incorrect 'format' value validation [#5847](https://github.com/openshift/installer/pull/5847) * vsphere upi: missing etc resolv [#5842](https://github.com/openshift/installer/pull/5842) * vsphere: remove unused namer interface [#5824](https://github.com/openshift/installer/pull/5824) * [Bug 2029438](https://bugzilla.redhat.com/show_bug.cgi?id=2029438): Set rc-manager=unmanaged on baremetal bootstrap [#5482](https://github.com/openshift/installer/pull/5482) * Unpack to install dir [#5825](https://github.com/openshift/installer/pull/5825) * baremetal: remove redundant proxy setting [#5598](https://github.com/openshift/installer/pull/5598) * Determine Nic name in Bootstrap VM for ARM and x86 [#5698](https://github.com/openshift/installer/pull/5698) * Add bootstrap directory for Nutanix platform [#5828](https://github.com/openshift/installer/pull/5828) * Provider Azure: Enable accelerated networking on control plane nodes [#5309](https://github.com/openshift/installer/pull/5309) * Ensure that the /bin/terraform-provider-matchbox binary is present [#5829](https://github.com/openshift/installer/pull/5829) * [Bug 2074659](https://bugzilla.redhat.com/show_bug.cgi?id=2074659): Fix empty string usage in ValidateForProvisioning [#5801](https://github.com/openshift/installer/pull/5801) * vsphere: upi, use community ignition provider [#5808](https://github.com/openshift/installer/pull/5808) * [Bug 2076393](https://bugzilla.redhat.com/show_bug.cgi?id=2076393): vsphere: no longer logout of platform client before finished [#5818](https://github.com/openshift/installer/pull/5818) * [Bug 2076880](https://bugzilla.redhat.com/show_bug.cgi?id=2076880): for vsphere ipi add cluster domain to the uploaded vm configs so that 30-local-dns-prepender can use it [#5788](https://github.com/openshift/installer/pull/5788) * Ensure Nutanix API VIP is populated in the SAN for the MCS Cert [#5821](https://github.com/openshift/installer/pull/5821) * [Bug 2048451](https://bugzilla.redhat.com/show_bug.cgi?id=2048451): Fix proxy dial to pick all proxies [#5743](https://github.com/openshift/installer/pull/5743) * update the vm types OCPQE-8674 [#5704](https://github.com/openshift/installer/pull/5704) * data/bootstrap/files/usr/local/bin/bootkube: --rm all Podman containers [#5803](https://github.com/openshift/installer/pull/5803) * libvirt: use el8 repo for Google Cloud SDK [#5467](https://github.com/openshift/installer/pull/5467) * AWS IMDSv2 support [#5793](https://github.com/openshift/installer/pull/5793) * [Bug 2075873](https://bugzilla.redhat.com/show_bug.cgi?id=2075873): data/data/coreos/fcos.json: update initial FCOS to 35.20220327.3.0 [#5817](https://github.com/openshift/installer/pull/5817) * Changing the machine-config service name [#5707](https://github.com/openshift/installer/pull/5707) * Ensure ignition host is set to API VIP for Nutanix platform [#5813](https://github.com/openshift/installer/pull/5813) * Add Power VS-specific fields to cloud-provider config [#5809](https://github.com/openshift/installer/pull/5809) * Check for CVO failing condition before exiting as success [#5745](https://github.com/openshift/installer/pull/5745) * Add in-repo documentation for user-selectable capabilities [#5732](https://github.com/openshift/installer/pull/5732) * vSphere session cleanup [#5796](https://github.com/openshift/installer/pull/5796) * Power VS: Add basic install-config validation [#5779](https://github.com/openshift/installer/pull/5779) * Adding public&private zones to DNS config on PowerVS [#5749](https://github.com/openshift/installer/pull/5749) * Revert "cluster: unpack terraform binaries into install directory" [#5810](https://github.com/openshift/installer/pull/5810) * [Bug 2064170](https://bugzilla.redhat.com/show_bug.cgi?id=2064170): Fixed Azure punctuation installconfig.controlPlane.platf… [#5802](https://github.com/openshift/installer/pull/5802) * Repin libvirt-version [#5797](https://github.com/openshift/installer/pull/5797) * Add IBM Power VS: tf data [#5614](https://github.com/openshift/installer/pull/5614) * cluster: unpack terraform binaries into install directory [#5715](https://github.com/openshift/installer/pull/5715) * azure: Enable HyperVGeneration setting for Azure disks [#5721](https://github.com/openshift/installer/pull/5721) * pkg/destroy/aws: Log unfiltered pagination [#5775](https://github.com/openshift/installer/pull/5775) * terraform: fix module name of terraform providers [#5727](https://github.com/openshift/installer/pull/5727) * remove platform.azure.osDisk [#5785](https://github.com/openshift/installer/pull/5785) * Lower severity of ListAWSDefaultServiceQuotas warning msg [#5747](https://github.com/openshift/installer/pull/5747) * images: Update terraform version in UPI image [#5762](https://github.com/openshift/installer/pull/5762) * [Bug 2033482](https://bugzilla.redhat.com/show_bug.cgi?id=2033482): vsphere: ensure terraform variables are defined [#5778](https://github.com/openshift/installer/pull/5778) * Add VolumeID testscases for Power VS machinepool [#5742](https://github.com/openshift/installer/pull/5742) * Power VS quota asset [#5748](https://github.com/openshift/installer/pull/5748) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Set single-node none-platform clusters Ingress `DefaultPlacement` to `ControlPlane` [#5746](https://github.com/openshift/installer/pull/5746) * Added platform validation testcases for IBM PowerVS platform [#5708](https://github.com/openshift/installer/pull/5708) * Add cluster destroy logic for Nutanix clusters [#5638](https://github.com/openshift/installer/pull/5638) * Add IBM Power VS: tfvars [#5615](https://github.com/openshift/installer/pull/5615) * pkg/asset/manifests/operators: Set kubernetes.io/description for cluster-config-v1 [#5783](https://github.com/openshift/installer/pull/5783) * Updating ose-baremetal-installer images to be consistent with ART [#5590](https://github.com/openshift/installer/pull/5590) * Add exit code for infra, bootstrip and install failures [#5702](https://github.com/openshift/installer/pull/5702) * Bootstrap-in-place ignition creation should also create a `worker.ign` file [#5786](https://github.com/openshift/installer/pull/5786) * Remove defaultStorageContainer from nutanix platform installconfig [#5784](https://github.com/openshift/installer/pull/5784) * Update installconfig validation for Nutanix [#5781](https://github.com/openshift/installer/pull/5781) * Re-update BMO vendor to use ipxe for iRMC [#5662](https://github.com/openshift/installer/pull/5662) * [Bug 2038774](https://bugzilla.redhat.com/show_bug.cgi?id=2038774): [IBM] add IPsec IKE UDP ports 500, 4500 to security group [#5539](https://github.com/openshift/installer/pull/5539) * Update declarative assets for Nutanix [#5636](https://github.com/openshift/installer/pull/5636) * [Bug 2056460](https://bugzilla.redhat.com/show_bug.cgi?id=2056460): Preallocated disks for OCP nodes on oVirt [#5594](https://github.com/openshift/installer/pull/5594) * gather: collect sssd journal logs [#5771](https://github.com/openshift/installer/pull/5771) * Add nutanix-specific terraform variables [#5637](https://github.com/openshift/installer/pull/5637) * Removing no-longer-needed DNS etcd stuff [#5764](https://github.com/openshift/installer/pull/5764) * Add nutanix-specific customizations to installconfig [#5633](https://github.com/openshift/installer/pull/5633) * Update default releaseimage to 4.11 [#5774](https://github.com/openshift/installer/pull/5774) * collect machine state in bootstrap gather [#5770](https://github.com/openshift/installer/pull/5770) * Refactor UltraSSD tfvars [#5757](https://github.com/openshift/installer/pull/5757) * [Bug 1918005](https://bugzilla.redhat.com/show_bug.cgi?id=1918005): vsphere: Use Managed Object ID for networks instead of potentially duplicate name. [#5673](https://github.com/openshift/installer/pull/5673) * Azure: validate UltraSSD instance types [#5759](https://github.com/openshift/installer/pull/5759) * OWNERS_ALIASES: Update current installer team [#5766](https://github.com/openshift/installer/pull/5766) * Validate disk encryption sets [#5692](https://github.com/openshift/installer/pull/5692) * vendor: update api to latest version to use AzureUltraSSDCapabilityEnabled [#5756](https://github.com/openshift/installer/pull/5756) * vsphere: make cluster destroy more resilient to api failures [#5556](https://github.com/openshift/installer/pull/5556) * [Bug 2061891](https://bugzilla.redhat.com/show_bug.cgi?id=2061891): IBMCloud: Add br-sao region to static list [#5760](https://github.com/openshift/installer/pull/5760) * Add Nutanix-specific customizations to manifests [#5631](https://github.com/openshift/installer/pull/5631) * terraform: add terraform verification to ./hack/verify-vendor.sh [#5675](https://github.com/openshift/installer/pull/5675) * Add nutanix-specific customizaitons to machines [#5632](https://github.com/openshift/installer/pull/5632) * [Bug 2047935](https://bugzilla.redhat.com/show_bug.cgi?id=2047935): bump RHCOS 4.11 bootimage metadata [#5729](https://github.com/openshift/installer/pull/5729) * [Bug 2066463](https://bugzilla.redhat.com/show_bug.cgi?id=2066463): IBMCloud: Patch IBM client auth [#5736](https://github.com/openshift/installer/pull/5736) * [Bug 2062998](https://bugzilla.redhat.com/show_bug.cgi?id=2062998): Update region check for coreos AMIs [#5731](https://github.com/openshift/installer/pull/5731) * terraform: compress provider binaries faster [#5739](https://github.com/openshift/installer/pull/5739) * Add nutanix-specific customizations for assorted assets [#5634](https://github.com/openshift/installer/pull/5634) * [Bug 2048067](https://bugzilla.redhat.com/show_bug.cgi?id=2048067): [Alibaba] fix location service endpoint [#5664](https://github.com/openshift/installer/pull/5664) * [Bug 2060687](https://bugzilla.redhat.com/show_bug.cgi?id=2060687): terraform: fix setting of zone in load balancers for non-zonal azure regions [#5684](https://github.com/openshift/installer/pull/5684) * Doc: Update VIP number to 2 [#5599](https://github.com/openshift/installer/pull/5599) * Updating ose-installer-artifacts images to be consistent with ART [#5591](https://github.com/openshift/installer/pull/5591) * Add the terraform plugin for Nutanix [#5635](https://github.com/openshift/installer/pull/5635) * Add IBM Power VS: cluster assets [#5651](https://github.com/openshift/installer/pull/5651) * AlibabaCloud: fix for bootstrap teardown removing slb backends [#5682](https://github.com/openshift/installer/pull/5682) * Use powervs NewClient in GetDNSZone [#5723](https://github.com/openshift/installer/pull/5723) * vsphereprivate: update to v2 terraform sdk [#5716](https://github.com/openshift/installer/pull/5716) * [Bug 2064969](https://bugzilla.redhat.com/show_bug.cgi?id=2064969): terraform: upgrade aws provider to v4.5.0 [#5719](https://github.com/openshift/installer/pull/5719) * Revert "Merge pull request #5665 from r4f4/azure-azid-adapter" [#5722](https://github.com/openshift/installer/pull/5722) * vendor: upgrade aws sdk to v1.43.19 [#5710](https://github.com/openshift/installer/pull/5710) * Azure: Add ultraSSDCapability to control plane instances. [#5701](https://github.com/openshift/installer/pull/5701) * [Bug 2061549](https://bugzilla.redhat.com/show_bug.cgi?id=2061549): azurestack: create the api DNS record when publishing internally [#5691](https://github.com/openshift/installer/pull/5691) * Set ignition string to sensitive [#5720](https://github.com/openshift/installer/pull/5720) * [Bug 2047670](https://bugzilla.redhat.com/show_bug.cgi?id=2047670): aws: remove validation check for internal publish strategy [#5695](https://github.com/openshift/installer/pull/5695) * baremetal: refresh owners list [#5713](https://github.com/openshift/installer/pull/5713) * include conn timed out err for bootstrap collection [#5677](https://github.com/openshift/installer/pull/5677) * Bump gophercloud [#5686](https://github.com/openshift/installer/pull/5686) * Add Nutanix-specific platform types [#5603](https://github.com/openshift/installer/pull/5603) * vSphere: Update terraform provider to current upstream [#5694](https://github.com/openshift/installer/pull/5694) * Add IBM Power VS: machine assets [#5611](https://github.com/openshift/installer/pull/5611) * [Bug 2060617](https://bugzilla.redhat.com/show_bug.cgi?id=2060617): fix(ibmcloud): Properly match regex for DNS destroy [#5679](https://github.com/openshift/installer/pull/5679) * Add IBM Power VS: manifest assets [#5610](https://github.com/openshift/installer/pull/5610) * Azure azidentity adapter [#5665](https://github.com/openshift/installer/pull/5665) * Validate BMC driver supported and requires provisioning network [#5458](https://github.com/openshift/installer/pull/5458) * terraform: build binaries on go.mod changes [#5672](https://github.com/openshift/installer/pull/5672) * Add IBM Power VS: installconfig assets [#5612](https://github.com/openshift/installer/pull/5612) * Add VPCRegionForPowerVSRegion function [#5700](https://github.com/openshift/installer/pull/5700) * Azure disk encryption support [#5641](https://github.com/openshift/installer/pull/5641) * [Bug 2060508](https://bugzilla.redhat.com/show_bug.cgi?id=2060508): azurestack: fix backend address pools for internal publishing [#5678](https://github.com/openshift/installer/pull/5678) * azure/validation: Skip "resource group empty" check for ARO [#5330](https://github.com/openshift/installer/pull/5330) * [Bug 2061527](https://bugzilla.redhat.com/show_bug.cgi?id=2061527): IBMCloud: Missing infra providertype [#5687](https://github.com/openshift/installer/pull/5687) * [Bug 2061544](https://bugzilla.redhat.com/show_bug.cgi?id=2061544): azurestack: stop pinning to Standard_LRS for disk type [#5688](https://github.com/openshift/installer/pull/5688) * [Bug 2060970](https://bugzilla.redhat.com/show_bug.cgi?id=2060970): data/data/coreos/fcos.json: update initial FCOS to 35.20220213.3.0 [#5680](https://github.com/openshift/installer/pull/5680) * doc: terraform maintenance document [#5670](https://github.com/openshift/installer/pull/5670) * Updating ose-installer images to be consistent with ART [#5589](https://github.com/openshift/installer/pull/5589) * remove stray tmp/simple_log.log file [#5606](https://github.com/openshift/installer/pull/5606) * GCP may also return Forbidden status when trying to check quotas [#5649](https://github.com/openshift/installer/pull/5649) * [Bug 2026356](https://bugzilla.redhat.com/show_bug.cgi?id=2026356): Fix bootstrap disk instance type [#5515](https://github.com/openshift/installer/pull/5515) * [Bug 2034147](https://bugzilla.redhat.com/show_bug.cgi?id=2034147): Validate num cores with vcpus [#5656](https://github.com/openshift/installer/pull/5656) * [Bug 2059213](https://bugzilla.redhat.com/show_bug.cgi?id=2059213): build all terraform providers and terraform binary locally [#5666](https://github.com/openshift/installer/pull/5666) * Add IBM Power VS: types [#5609](https://github.com/openshift/installer/pull/5609) * point 06_workers.json to azurestack version [#5661](https://github.com/openshift/installer/pull/5661) * [Bug 2021041](https://bugzilla.redhat.com/show_bug.cgi?id=2021041): vsphere: Not found TagCategory when destroying ipi cluster [#5558](https://github.com/openshift/installer/pull/5558) * Render the CVO manifest with user-specified capabilities from the install-config [#5645](https://github.com/openshift/installer/pull/5645) * isolate terraform [#5507](https://github.com/openshift/installer/pull/5507) * [Bug 2046181](https://bugzilla.redhat.com/show_bug.cgi?id=2046181): baremetal: reduce API timeout to 15 minutes [#5639](https://github.com/openshift/installer/pull/5639) * Check for DeletePlacementGroup permission before destroying cluster [#5655](https://github.com/openshift/installer/pull/5655) * OWNERS_ALIASES: Drop wking from approvers [#5644](https://github.com/openshift/installer/pull/5644) * data/manifests/bootkube/cvo-overrides: Default to stable-4.11 [#5621](https://github.com/openshift/installer/pull/5621) * Updated owners to current OCP on RHV members [#5654](https://github.com/openshift/installer/pull/5654) * baremetal: use combined Ironic, drop MariaDB [#5553](https://github.com/openshift/installer/pull/5553) * Update OWNERS_ALIASES [#5640](https://github.com/openshift/installer/pull/5640) * [Bug 2047257](https://bugzilla.redhat.com/show_bug.cgi?id=2047257): openstack: Migration script should --force drain [#5618](https://github.com/openshift/installer/pull/5618) * Tested instance type lists for AWS/Azure/GCP [#5517](https://github.com/openshift/installer/pull/5517) * [Bug 2047925](https://bugzilla.redhat.com/show_bug.cgi?id=2047925): Update BMO vendor [#5588](https://github.com/openshift/installer/pull/5588) * cmd/openshift-install/create: Do not attempt analysis when we fail to gather logs [#5582](https://github.com/openshift/installer/pull/5582) * [Bug 2046181](https://bugzilla.redhat.com/show_bug.cgi?id=2046181): baremetal: wait for image-customization to come up [#5579](https://github.com/openshift/installer/pull/5579) * aws: support the entirety of the secret partitions [#5597](https://github.com/openshift/installer/pull/5597) * [Bug 2050767](https://bugzilla.redhat.com/show_bug.cgi?id=2050767): vsphere: check that network exist in provisioning validation [#5607](https://github.com/openshift/installer/pull/5607) * [Bug 2048451](https://bugzilla.redhat.com/show_bug.cgi?id=2048451): Use proxy dial to validate endpoints [#5600](https://github.com/openshift/installer/pull/5600) * [Bug 2050146](https://bugzilla.redhat.com/show_bug.cgi?id=2050146): Don't shortcut OpenStack scraping if quota is unavailable [#5601](https://github.com/openshift/installer/pull/5601) * [Bug 2048222](https://bugzilla.redhat.com/show_bug.cgi?id=2048222): Remove non-public AWS regions from list of regions [#5595](https://github.com/openshift/installer/pull/5595) * Azure Stack: Add UPI Instructions for internal CA [#5573](https://github.com/openshift/installer/pull/5573) * Remove Caleb Boylan from core installer reviewers [#5593](https://github.com/openshift/installer/pull/5593) * Ensure removal of placement-groups during cluster destroy on AWS [#5528](https://github.com/openshift/installer/pull/5528) * [Full changelog](https://github.com/openshift/installer/compare/56485334b74321275b2f05cbc17c9f8d6fd39c13...7cb42be2b42e1246cff0e47f19b28eea7a9461e4) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/dc5e4cefeac81e39429ab6fca6bc133318bed6f6) * [OCPBUGS-46642](https://issues.redhat.com/browse/OCPBUGS-46642): Bump x/net to 0.33.0 [#230](https://github.com/openshift/cluster-api-provider-baremetal/pull/230) * [OCPBUGS-21700](https://issues.redhat.com/browse/OCPBUGS-21700): Uplift x/net to v0.17.0 [#200](https://github.com/openshift/cluster-api-provider-baremetal/pull/200) * Updating baremetal-machine-controller images to be consistent with ART [#182](https://github.com/openshift/cluster-api-provider-baremetal/pull/182) * Updating baremetal-machine-controller images to be consistent with ART [#173](https://github.com/openshift/cluster-api-provider-baremetal/pull/173) * Update OWNERS file [#175](https://github.com/openshift/cluster-api-provider-baremetal/pull/175) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#172](https://github.com/openshift/cluster-api-provider-baremetal/pull/172) * [Bug 2067734](https://bugzilla.redhat.com/show_bug.cgi?id=2067734): [CVE] Upgrade controller-runtime to v0.12.1 [#171](https://github.com/openshift/cluster-api-provider-baremetal/pull/171) * [Bug 2080303](https://bugzilla.redhat.com/show_bug.cgi?id=2080303): Uplift BMO to remove go-getter dependency [#170](https://github.com/openshift/cluster-api-provider-baremetal/pull/170) * [Bug 2061833](https://bugzilla.redhat.com/show_bug.cgi?id=2061833): Delay after ensuring annotation [#167](https://github.com/openshift/cluster-api-provider-baremetal/pull/167) * Update OWNERS file [#169](https://github.com/openshift/cluster-api-provider-baremetal/pull/169) * Bump mao version, rewrite Machine types import to openshift/api [#168](https://github.com/openshift/cluster-api-provider-baremetal/pull/168) * Remove stbenjam from OWNERS [#163](https://github.com/openshift/cluster-api-provider-baremetal/pull/163) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/adff401d86d176d61cf2dc47c4142e30d7b04e4b...dc5e4cefeac81e39429ab6fca6bc133318bed6f6) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/9152e200990c26194a70c25033a71583e2775066) * [OCPBUGS-30630](https://issues.redhat.com/browse/OCPBUGS-30630): Do not update instance_info and deploy_interface for active nodes [#338](https://github.com/openshift/baremetal-operator/pull/338) * [OCPBUGS-24490](https://issues.redhat.com/browse/OCPBUGS-24490): backport: Delay delete of detached hosts [#326](https://github.com/openshift/baremetal-operator/pull/326) * [OCPBUGS-23291](https://issues.redhat.com/browse/OCPBUGS-23291): hack for deploying V6-only clusters from dualstack hubs [#320](https://github.com/openshift/baremetal-operator/pull/320) * [OCPBUGS-21154](https://issues.redhat.com/browse/OCPBUGS-21154): Uplift x/net to v0.17.0 [#310](https://github.com/openshift/baremetal-operator/pull/310) * [OCPBUGS-17703](https://issues.redhat.com/browse/OCPBUGS-17703): Trigger reconcile on Secret change [#298](https://github.com/openshift/baremetal-operator/pull/298) * [OCPBUGS-17459](https://issues.redhat.com/browse/OCPBUGS-17459): Set minimum TLS version for webhook to 1.2 [#297](https://github.com/openshift/baremetal-operator/pull/297) * [OCPBUGS-14188](https://issues.redhat.com/browse/OCPBUGS-14188): Deleting unmanaged BMH get stuck fix [#283](https://github.com/openshift/baremetal-operator/pull/283) * [OCPBUGS-13530](https://issues.redhat.com/browse/OCPBUGS-13530): Support /dev/disk/by-path root device hints [#278](https://github.com/openshift/baremetal-operator/pull/278) * [OCPBUGS-12175](https://issues.redhat.com/browse/OCPBUGS-12175): Revert live-iso validation [#269](https://github.com/openshift/baremetal-operator/pull/269) * [OCPBUGS-9955](https://issues.redhat.com/browse/OCPBUGS-9955): allow namespace to continue with terminating when deprovisioning a bmh [#258](https://github.com/openshift/baremetal-operator/pull/258) * Updating ose-baremetal-operator images to be consistent with ART [#243](https://github.com/openshift/baremetal-operator/pull/243) * [OCPBUGS-2210](https://issues.redhat.com/browse/OCPBUGS-2210): Exclude hosts with virtual media from PROVISIONING_LIMIT [#244](https://github.com/openshift/baremetal-operator/pull/244) * [OCPBUGS-1080](https://issues.redhat.com/browse/OCPBUGS-1080): Merge upstream [#242](https://github.com/openshift/baremetal-operator/pull/242) * Merge upstream [#241](https://github.com/openshift/baremetal-operator/pull/241) * Remove upstream release GitHub workflow [#240](https://github.com/openshift/baremetal-operator/pull/240) * Merge upstream [#239](https://github.com/openshift/baremetal-operator/pull/239) * Merge upstream [#238](https://github.com/openshift/baremetal-operator/pull/238) * Updating ose-baremetal-operator images to be consistent with ART [#232](https://github.com/openshift/baremetal-operator/pull/232) * [Bug 2087213](https://bugzilla.redhat.com/show_bug.cgi?id=2087213): Don't require pre-provisioning image for live ISO provisioning [#231](https://github.com/openshift/baremetal-operator/pull/231) * [Bug 2087213](https://bugzilla.redhat.com/show_bug.cgi?id=2087213): Don't require PreprovisioningImages for older ZTP [#229](https://github.com/openshift/baremetal-operator/pull/229) * [Bug 2092650](https://bugzilla.redhat.com/show_bug.cgi?id=2092650): Stop treating missing network as fatal error [#227](https://github.com/openshift/baremetal-operator/pull/227) * Merge upstream [#224](https://github.com/openshift/baremetal-operator/pull/224) * [Bug 2080305](https://bugzilla.redhat.com/show_bug.cgi?id=2080305): Uplift kustomize to v4 to remove go-getter dependency [#223](https://github.com/openshift/baremetal-operator/pull/223) * Update vendoring [#222](https://github.com/openshift/baremetal-operator/pull/222) * Disable iDRAC RAID [#219](https://github.com/openshift/baremetal-operator/pull/219) * Merge upstream [#218](https://github.com/openshift/baremetal-operator/pull/218) * Move bmh crd to level 31 [#216](https://github.com/openshift/baremetal-operator/pull/216) * Enable multi-arch builds [#214](https://github.com/openshift/baremetal-operator/pull/214) * ocp: add baremetal capability annotation [#212](https://github.com/openshift/baremetal-operator/pull/212) * Merge upstream [#213](https://github.com/openshift/baremetal-operator/pull/213) * Merge upstream [#211](https://github.com/openshift/baremetal-operator/pull/211) * Merge upstream [#209](https://github.com/openshift/baremetal-operator/pull/209) * [Bug 2043118](https://bugzilla.redhat.com/show_bug.cgi?id=2043118): Move from Available to Preparing if HostFirmwareSettings… [#208](https://github.com/openshift/baremetal-operator/pull/208) * downstream: add vendor target [#207](https://github.com/openshift/baremetal-operator/pull/207) * Merge upstream [#205](https://github.com/openshift/baremetal-operator/pull/205) * Add bfournier & remove asalfeld from OWNERS [#206](https://github.com/openshift/baremetal-operator/pull/206) * Updating ose-baremetal-operator images to be consistent with ART [#204](https://github.com/openshift/baremetal-operator/pull/204) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/01960d8dbf91d3fae8804534089eb8e13e0b72c3...9152e200990c26194a70c25033a71583e2775066) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/474ed48e840fdb7bf859d769cd673b29705a7b91) * [OCPBUGS-26930](https://issues.redhat.com/browse/OCPBUGS-26930): Add .snyk file to ignore vendor and test files [#296](https://github.com/openshift/baremetal-runtimecfg/pull/296) * [OCPBUGS-20127](https://issues.redhat.com/browse/OCPBUGS-20127): Increase timeout for bootstrap kubeapi [#279](https://github.com/openshift/baremetal-runtimecfg/pull/279) * [OCPBUGS-18606](https://issues.redhat.com/browse/OCPBUGS-18606): Move haproxy firewall rule check earlier in loop [#272](https://github.com/openshift/baremetal-runtimecfg/pull/272) * [OCPBUGS-17715](https://issues.redhat.com/browse/OCPBUGS-17715): Don't render config with incomplete unicast peer list [#268](https://github.com/openshift/baremetal-runtimecfg/pull/268) * [OCPBUGS-15315](https://issues.redhat.com/browse/OCPBUGS-15315): Use machine-config state instead of comparing roles [#262](https://github.com/openshift/baremetal-runtimecfg/pull/262) * [OCPBUGS-12805](https://issues.redhat.com/browse/OCPBUGS-12805): Make nested dual stack VIP configs respect EnableUnicast [#240](https://github.com/openshift/baremetal-runtimecfg/pull/240) * [OCPBUGS-13405](https://issues.redhat.com/browse/OCPBUGS-13405): Verify kubelet version in upgrade check [#249](https://github.com/openshift/baremetal-runtimecfg/pull/249) * [OCPBUGS-11145](https://issues.redhat.com/browse/OCPBUGS-11145): fix isUpgradeStillRunning() [#232](https://github.com/openshift/baremetal-runtimecfg/pull/232) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): If primary ip address was already created no need to choose new ip [#214](https://github.com/openshift/baremetal-runtimecfg/pull/214) * [OCPBUGS-2512](https://issues.redhat.com/browse/OCPBUGS-2512): Improve IP address sort order for interface selection [#199](https://github.com/openshift/baremetal-runtimecfg/pull/199) * Updating baremetal-runtimecfg images to be consistent with ART [#196](https://github.com/openshift/baremetal-runtimecfg/pull/196) * Run go fmt [#197](https://github.com/openshift/baremetal-runtimecfg/pull/197) * Adding node ip hint for all who want to use it [#185](https://github.com/openshift/baremetal-runtimecfg/pull/185) * [OCPBUGS-669](https://issues.redhat.com/browse/OCPBUGS-669): Empty chosen list when retrying ip selection [#191](https://github.com/openshift/baremetal-runtimecfg/pull/191) * Add list of Node configs to handle multiple VIPs [#176](https://github.com/openshift/baremetal-runtimecfg/pull/176) * [OCPBUGS-669](https://issues.redhat.com/browse/OCPBUGS-669): Apply ipv6 bind check to non-VIP case too [#188](https://github.com/openshift/baremetal-runtimecfg/pull/188) * Updating baremetal-runtimecfg images to be consistent with ART [#184](https://github.com/openshift/baremetal-runtimecfg/pull/184) * [Bug 2096226](https://bugzilla.redhat.com/show_bug.cgi?id=2096226): Check chosen node-ip can be used [#181](https://github.com/openshift/baremetal-runtimecfg/pull/181) * [Bug 2086483](https://bugzilla.redhat.com/show_bug.cgi?id=2086483): Update k8s dependencies to 1.24 [#180](https://github.com/openshift/baremetal-runtimecfg/pull/180) * Updating baremetal-runtimecfg images to be consistent with ART [#179](https://github.com/openshift/baremetal-runtimecfg/pull/179) * [Bug 2069740](https://bugzilla.redhat.com/show_bug.cgi?id=2069740): Avoid kubernetes node port range [#175](https://github.com/openshift/baremetal-runtimecfg/pull/175) * node: update IsUpgradeStillRunning() logic [#173](https://github.com/openshift/baremetal-runtimecfg/pull/173) * Update OWNERS to reflect current team [#177](https://github.com/openshift/baremetal-runtimecfg/pull/177) * Dockerfile: migrate repo to CentOS 8 Stream [#174](https://github.com/openshift/baremetal-runtimecfg/pull/174) * Updating baremetal-runtimecfg images to be consistent with ART [#168](https://github.com/openshift/baremetal-runtimecfg/pull/168) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/40c11f7299386a9608e18feb8cc062c2ebc3364b...474ed48e840fdb7bf859d769cd673b29705a7b91) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/d691257345aeeec951c763e11658a944037f9b39) * [OCPBUGS-30289](https://issues.redhat.com/browse/OCPBUGS-30289): oc adm catalog mirror: use ToSlash and FromSlash to unify the path separators [#1701](https://github.com/openshift/oc/pull/1701) * [OCPBUGS-25642](https://issues.redhat.com/browse/OCPBUGS-25642): Add client version in must-gather summary [#1639](https://github.com/openshift/oc/pull/1639) * [OCPBUGS-24462](https://issues.redhat.com/browse/OCPBUGS-24462): Overwrite template's namespace with the explicit one [#1618](https://github.com/openshift/oc/pull/1618) * [OCPBUGS-23222](https://issues.redhat.com/browse/OCPBUGS-23222): regeneratemco: explicitly check for PlatformStatus field [#1598](https://github.com/openshift/oc/pull/1598) * [OCPBUGS-20248](https://issues.redhat.com/browse/OCPBUGS-20248): oc process: Set original namespace if it differs [#1560](https://github.com/openshift/oc/pull/1560) * [OCPBUGS-20291](https://issues.redhat.com/browse/OCPBUGS-20291): Truncate existing files when writing from inspect [#1563](https://github.com/openshift/oc/pull/1563) * [OCPBUGS-20299](https://issues.redhat.com/browse/OCPBUGS-20299): Use quay redis image instead docker mysql [#1567](https://github.com/openshift/oc/pull/1567) * [OCPBUGS-16173](https://issues.redhat.com/browse/OCPBUGS-16173): Add tls-server-name when property exists in kubeconfig [#1507](https://github.com/openshift/oc/pull/1507) * [OCPBUGS-1283](https://issues.redhat.com/browse/OCPBUGS-1283): Bump golang.org/x dependencies [#1421](https://github.com/openshift/oc/pull/1421) * [OCPBUGS-16056](https://issues.redhat.com/browse/OCPBUGS-16056): mcs cert: account for environments that use IP directly [#1501](https://github.com/openshift/oc/pull/1501) * [OCPBUGS-16194](https://issues.redhat.com/browse/OCPBUGS-16194): reboot: set ignition version to 3.1 [#1509](https://github.com/openshift/oc/pull/1509) * handle the error case of node retrieval while waiting for reboot [#1485](https://github.com/openshift/oc/pull/1485) * bring some cert rotation helpers back into 4.12 [fix unit-tests] [#1478](https://github.com/openshift/oc/pull/1478) * [OCPBUGS-14647](https://issues.redhat.com/browse/OCPBUGS-14647): [release-4.12] Do not set master node selector if there's no masters [#1366](https://github.com/openshift/oc/pull/1366) * [OCPBUGS-14236](https://issues.redhat.com/browse/OCPBUGS-14236): Remove closed centos7 registry from newapp unit tests [#1434](https://github.com/openshift/oc/pull/1434) * [OCPBUGS-10774](https://issues.redhat.com/browse/OCPBUGS-10774): bump repo sclorg/s2i-ruby-container location for newapp test [#1382](https://github.com/openshift/oc/pull/1382) * [OCPBUGS-7960](https://issues.redhat.com/browse/OCPBUGS-7960): pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates [#1354](https://github.com/openshift/oc/pull/1354) * [OCPBUGS-6600](https://issues.redhat.com/browse/OCPBUGS-6600): Fix kube version from 1.24.1 to 1.25.2 [#1327](https://github.com/openshift/oc/pull/1327) * remove support for empty files and stdout in oc registry login [#1277](https://github.com/openshift/oc/pull/1277) * Bump go to 1.19 in go.mod [#1262](https://github.com/openshift/oc/pull/1262) * [Bug 2093046](https://bugzilla.redhat.com/show_bug.cgi?id=2093046): oc debug: Add priorityClassName into node debugging pod template [#1263](https://github.com/openshift/oc/pull/1263) * use correct namespace with sample templates [#1272](https://github.com/openshift/oc/pull/1272) * Do not try to load plugins for cobra commands [#1267](https://github.com/openshift/oc/pull/1267) * [Bug 2078694](https://bugzilla.redhat.com/show_bug.cgi?id=2078694): New-App Using Git via SSH [#1269](https://github.com/openshift/oc/pull/1269) * [OCPBUGS-2495](https://issues.redhat.com/browse/OCPBUGS-2495): pkg/cli/login: Warn, but do not fail, on surprise project-list errors [#1268](https://github.com/openshift/oc/pull/1268) * [IR-262](https://issues.redhat.com/browse/IR-262): Keep manifest list children [#1229](https://github.com/openshift/oc/pull/1229) * oc debug,version: minor todo improvements [#1265](https://github.com/openshift/oc/pull/1265) * pkg/cli/admin/release/extract: Don't print image metadata verification messages when extracting to stdout [#1264](https://github.com/openshift/oc/pull/1264) * pkg/cli/admin/release/extract: Unify extraction cases [#1237](https://github.com/openshift/oc/pull/1237) * OWNERS_ALIASES: Freshen update-approvers [#1260](https://github.com/openshift/oc/pull/1260) * [Bug 2059125](https://bugzilla.redhat.com/show_bug.cgi?id=2059125): release extract: Add binary re-signing for macos arm64 [#1242](https://github.com/openshift/oc/pull/1242) * [Bug 2000554](https://bugzilla.redhat.com/show_bug.cgi?id=2000554): oc inspect: Also gather namespaces in which webhook services are running [#1258](https://github.com/openshift/oc/pull/1258) * add support for --next flag in oc adm release new [#1243](https://github.com/openshift/oc/pull/1243) * oc 4.12 kubernetes 1.25.2 bump [#1250](https://github.com/openshift/oc/pull/1250) * [Bug 2033167](https://bugzilla.redhat.com/show_bug.cgi?id=2033167): oc extract: Create target directory if not exist [#1248](https://github.com/openshift/oc/pull/1248) * Update login.go [#1188](https://github.com/openshift/oc/pull/1188) * Add --overwrite flag into pod security violation error message [#1234](https://github.com/openshift/oc/pull/1234) * [OCPBUGS-613](https://issues.redhat.com/browse/OCPBUGS-613): oc adm logs: generate proper path for static pods [#1231](https://github.com/openshift/oc/pull/1231) * [OCPBUGS-852](https://issues.redhat.com/browse/OCPBUGS-852): cli/debug: Create temporary namespace for node debugging [#1236](https://github.com/openshift/oc/pull/1236) * [Bug 1879980](https://bugzilla.redhat.com/show_bug.cgi?id=1879980): Bump go-ldap module to v3 [#1226](https://github.com/openshift/oc/pull/1226) * Updating openshift-enterprise-deployer images to be consistent with ART [#1200](https://github.com/openshift/oc/pull/1200) * Updating ose-cli-artifacts images to be consistent with ART [#1202](https://github.com/openshift/oc/pull/1202) * Updating openshift-enterprise-cli images to be consistent with ART [#1195](https://github.com/openshift/oc/pull/1195) * [Bug 2087679](https://bugzilla.redhat.com/show_bug.cgi?id=2087679): [inspect] Add EgressQoS to inspect [#1148](https://github.com/openshift/oc/pull/1148) * Updating ose-tools images to be consistent with ART [#1201](https://github.com/openshift/oc/pull/1201) * Give a complete oc label command in pod security error message [#1228](https://github.com/openshift/oc/pull/1228) * [Bug 2112934](https://bugzilla.redhat.com/show_bug.cgi?id=2112934): Add servicemonitors into common namespaces for inspection [#1224](https://github.com/openshift/oc/pull/1224) * [Bug 2108307](https://bugzilla.redhat.com/show_bug.cgi?id=2108307): Set HostIPC to true when debugging node [#1218](https://github.com/openshift/oc/pull/1218) * [Bug 2111537](https://bugzilla.redhat.com/show_bug.cgi?id=2111537): (image info): Introduce show-multiarch flag [#1217](https://github.com/openshift/oc/pull/1217) * [Bug 2095708](https://bugzilla.redhat.com/show_bug.cgi?id=2095708): oc adm inspect: check a resource exists before its inspection [#1215](https://github.com/openshift/oc/pull/1215) * [Bug 2092731](https://bugzilla.redhat.com/show_bug.cgi?id=2092731): Change error message to signal passing keep-manifest-list flag [#1213](https://github.com/openshift/oc/pull/1213) * [Bug 1880865](https://bugzilla.redhat.com/show_bug.cgi?id=1880865): Avoid TLS cert checking when login with --insecure-skip-tls-verify=true [#1161](https://github.com/openshift/oc/pull/1161) * [Bug 2105325](https://bugzilla.redhat.com/show_bug.cgi?id=2105325): Add ManifestListDigest field to release info struct [#1203](https://github.com/openshift/oc/pull/1203) * Add unit tests for release new package [#1197](https://github.com/openshift/oc/pull/1197) * Support for identity token [#1199](https://github.com/openshift/oc/pull/1199) * release info bug printing: enable `--skip-bug-check` for `--output=json` [#1204](https://github.com/openshift/oc/pull/1204) * release: extract ccoctl [#1194](https://github.com/openshift/oc/pull/1194) * [Bug 2103126](https://bugzilla.redhat.com/show_bug.cgi?id=2103126): set proper pod security ns labels [#1187](https://github.com/openshift/oc/pull/1187) * [Bug 2100702](https://bugzilla.redhat.com/show_bug.cgi?id=2100702): Set hasMedataOverrides to true when ToImageBase is set [#1192](https://github.com/openshift/oc/pull/1192) * [Bug 2100166](https://bugzilla.redhat.com/show_bug.cgi?id=2100166): Add new IsManifestList flag into ReleaseInfo struct [#1185](https://github.com/openshift/oc/pull/1185) * [Bug 2101885](https://bugzilla.redhat.com/show_bug.cgi?id=2101885): Set completion function for get command [#1186](https://github.com/openshift/oc/pull/1186) * [Bug 2100702](https://bugzilla.redhat.com/show_bug.cgi?id=2100702): Use from-release as based image when base digest is invalid [#1183](https://github.com/openshift/oc/pull/1183) * [Bug 2100708](https://bugzilla.redhat.com/show_bug.cgi?id=2100708): Lower chosen platform architecture/OS log level [#1184](https://github.com/openshift/oc/pull/1184) * [Bug 1905850](https://bugzilla.redhat.com/show_bug.cgi?id=1905850): add a new option for checking a subresource to oc adm policy who-can [#1179](https://github.com/openshift/oc/pull/1179) * [Bug 2015321](https://bugzilla.redhat.com/show_bug.cgi?id=2015321): Add destdir special character validation in must-gather [#1178](https://github.com/openshift/oc/pull/1178) * [Bug 2100138](https://bugzilla.redhat.com/show_bug.cgi?id=2100138): Add json support for release info bug printing [#1177](https://github.com/openshift/oc/pull/1177) * [Bug 2099637](https://bugzilla.redhat.com/show_bug.cgi?id=2099637): Use filter options only when keep-manifest-list is true [#1176](https://github.com/openshift/oc/pull/1176) * [Bug 2096855](https://bugzilla.redhat.com/show_bug.cgi?id=2096855): extract linux/amd64 to read release metadata [#1174](https://github.com/openshift/oc/pull/1174) * [Bug 2057633](https://bugzilla.redhat.com/show_bug.cgi?id=2057633): add validations for a pod & container to rsync [#1087](https://github.com/openshift/oc/pull/1087) * [Bug 1957668](https://bugzilla.redhat.com/show_bug.cgi?id=1957668): show console URL when asking for Authentication [#883](https://github.com/openshift/oc/pull/883) * [Bug 2097334](https://bugzilla.redhat.com/show_bug.cgi?id=2097334): ensure kubectl name is replaced in plugin cmd [#1173](https://github.com/openshift/oc/pull/1173) * [Bug 1823143](https://bugzilla.redhat.com/show_bug.cgi?id=1823143): add --icsp-file option to adm release subcommands [#1169](https://github.com/openshift/oc/pull/1169) * [Bug 2090692](https://bugzilla.redhat.com/show_bug.cgi?id=2090692): fix version from 1.24.0 beta to 1.24.1 [#1168](https://github.com/openshift/oc/pull/1168) * [Bug 1999891](https://bugzilla.redhat.com/show_bug.cgi?id=1999891): bubble errors which happen prior to collection to BackupGathering [#1093](https://github.com/openshift/oc/pull/1093) * [Bug 2090266](https://bugzilla.redhat.com/show_bug.cgi?id=2090266): add --filter-by-os support in oc adm release extract and linux/amd64 for getting IS during mirror [#1167](https://github.com/openshift/oc/pull/1167) * [Bug 2093797](https://bugzilla.redhat.com/show_bug.cgi?id=2093797): deprecate --service-account flag for oc registry login [#1166](https://github.com/openshift/oc/pull/1166) * [Bug 2088483](https://bugzilla.redhat.com/show_bug.cgi?id=2088483): update 'oc adm catalog mirror' command to accept --continue-on-error flag [#1152](https://github.com/openshift/oc/pull/1152) * *: add relevant code owners for catalog alias [#1159](https://github.com/openshift/oc/pull/1159) * [Bug 2087103](https://bugzilla.redhat.com/show_bug.cgi?id=2087103): pkg/cli/admin/upgrade: "Updating to" -> "Requesting update to" [#1156](https://github.com/openshift/oc/pull/1156) * [Bug 2090692](https://bugzilla.redhat.com/show_bug.cgi?id=2090692): Beautify help and align with kubectl output [#1121](https://github.com/openshift/oc/pull/1121) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): pkg/cli/debug: suggest pod security labels on violations [#1155](https://github.com/openshift/oc/pull/1155) * Add user coreydaley as an approver [#1144](https://github.com/openshift/oc/pull/1144) * [Bug 2090751](https://bugzilla.redhat.com/show_bug.cgi?id=2090751): Correcting skipMissing flag usage when a manifest cannot be found [#1105](https://github.com/openshift/oc/pull/1105) * [Bug 2083770](https://bugzilla.redhat.com/show_bug.cgi?id=2083770): Change release signature file extension to json [#1151](https://github.com/openshift/oc/pull/1151) * [Bug 2040654](https://bugzilla.redhat.com/show_bug.cgi?id=2040654): Pass pod exit error codes to user [#1150](https://github.com/openshift/oc/pull/1150) * [Bug 2083999](https://bugzilla.redhat.com/show_bug.cgi?id=2083999): Delete recently created images when --prune-over-size-limit is used [#1143](https://github.com/openshift/oc/pull/1143) * [Bug 2086459](https://bugzilla.redhat.com/show_bug.cgi?id=2086459): Continue inspection when some resources are not found [#1137](https://github.com/openshift/oc/pull/1137) * [Bug 2065507](https://bugzilla.redhat.com/show_bug.cgi?id=2065507): Add the ReleaseAccepted condition to the oc adm upgrade command [#1113](https://github.com/openshift/oc/pull/1113) * Update images to be consistent with ART [#1132](https://github.com/openshift/oc/pull/1132) * release: update oc source URL in client READMEs [#1129](https://github.com/openshift/oc/pull/1129) * [WRKLDS-370](https://issues.redhat.com/browse/WRKLDS-370): copy manifests from linux/amd64 to all manifests in a list [#1120](https://github.com/openshift/oc/pull/1120) * Enable using existing namespace for must-gather operations [#1080](https://github.com/openshift/oc/pull/1080) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): [inspect] Add namespace-scoped networking resources to inspect [#1128](https://github.com/openshift/oc/pull/1128) * [Bug 2074237](https://bugzilla.redhat.com/show_bug.cgi?id=2074237): clarify use of --image-stream for oc new-app [#1119](https://github.com/openshift/oc/pull/1119) * Deprecate oc serviceaccounts command [#1126](https://github.com/openshift/oc/pull/1126) * Replace temporary show-managed fields hack with a proper solution [#1127](https://github.com/openshift/oc/pull/1127) * [Bug 2080416](https://bugzilla.redhat.com/show_bug.cgi?id=2080416): Fix project command auto completion [#1125](https://github.com/openshift/oc/pull/1125) * Remove long-deprecated commands oc adm migrate etcd-ttl|image-references|legacy-hpa|storage [#1124](https://github.com/openshift/oc/pull/1124) * Fix squash merge regex [#1118](https://github.com/openshift/oc/pull/1118) * [Bug 2007647](https://bugzilla.redhat.com/show_bug.cgi?id=2007647): Add squash-merge support into oc adm release info [#1116](https://github.com/openshift/oc/pull/1116) * [Bug 2071614](https://bugzilla.redhat.com/show_bug.cgi?id=2071614): Remove network CRDs scheme registration [#1110](https://github.com/openshift/oc/pull/1110) * [Bug 2074902](https://bugzilla.redhat.com/show_bug.cgi?id=2074902): Pass non-zero exit code to debug command [#1115](https://github.com/openshift/oc/pull/1115) * adm inspect: delete unused pod URL getting code [#1032](https://github.com/openshift/oc/pull/1032) * [Bug 2073113](https://bugzilla.redhat.com/show_bug.cgi?id=2073113): do not report docker conf deprecation warning when the docker is not available [#1106](https://github.com/openshift/oc/pull/1106) * Drop k8s carries and bump to kubectl v0.24.0-beta-0 [#1092](https://github.com/openshift/oc/pull/1092) * [Bug 2075647](https://bugzilla.redhat.com/show_bug.cgi?id=2075647): pkg/cli/admin/upgrade: Use PATCH instead of POST for spec updates [#1111](https://github.com/openshift/oc/pull/1111) * Add --keep-manifest-list support to `oc adm release *` commands [#1109](https://github.com/openshift/oc/pull/1109) * [Bug 2041454](https://bugzilla.redhat.com/show_bug.cgi?id=2041454): Validate reference-policy for import-image command [#1108](https://github.com/openshift/oc/pull/1108) * [Bug 1823143](https://bugzilla.redhat.com/show_bug.cgi?id=1823143): wire ICSP lookups to oc image info [#829](https://github.com/openshift/oc/pull/829) * Use ServerGroupResources instead deprecated ServerResources [#1101](https://github.com/openshift/oc/pull/1101) * Introduce Jira defects into release info [#1100](https://github.com/openshift/oc/pull/1100) * Fix component name for oc [#1102](https://github.com/openshift/oc/pull/1102) * pkg/cli/admin/mustgather: label must-gather ns as privileged [#1099](https://github.com/openshift/oc/pull/1099) * Obtain OpenShift version from ClusterVersion resource [#1091](https://github.com/openshift/oc/pull/1091) * Allow triggers on batch/v1 CronJobs [#1077](https://github.com/openshift/oc/pull/1077) * pkg/cli/admin/upgrade: Mention channel choices [#1088](https://github.com/openshift/oc/pull/1088) * Add Nutanix platform [#1046](https://github.com/openshift/oc/pull/1046) * [Bug 2057101](https://bugzilla.redhat.com/show_bug.cgi?id=2057101): remove klog format and update messages for docker config deprecation [#1082](https://github.com/openshift/oc/pull/1082) * [Bug 2056893](https://bugzilla.redhat.com/show_bug.cgi?id=2056893): pkg/cli/admin/upgrade: Drop --to-image help warning [#1078](https://github.com/openshift/oc/pull/1078) * [Bug 2049889](https://bugzilla.redhat.com/show_bug.cgi?id=2049889): logging / help improvements around 'oc new-app --search' [#1086](https://github.com/openshift/oc/pull/1086) * [Bug 2056122](https://bugzilla.redhat.com/show_bug.cgi?id=2056122): expose --keep-startup flag for oc debug [#1085](https://github.com/openshift/oc/pull/1085) * [Bug 2052578](https://bugzilla.redhat.com/show_bug.cgi?id=2052578): reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories [#1059](https://github.com/openshift/oc/pull/1059) * Add support for batch/v1 CronJob [#1081](https://github.com/openshift/oc/pull/1081) * [OSDOCS-3257](https://issues.redhat.com/browse/OSDOCS-3257): Adding in new metadata requirement for docs [#1072](https://github.com/openshift/oc/pull/1072) * Update all images to be consistent with ART [#1071](https://github.com/openshift/oc/pull/1071) * Updating openshift-enterprise-cli images to be consistent with ART [#1039](https://github.com/openshift/oc/pull/1039) * [Bug 2049234](https://bugzilla.redhat.com/show_bug.cgi?id=2049234): Fix mirroring images that have dots in their namespace [#1063](https://github.com/openshift/oc/pull/1063) * [Bug 2052034](https://bugzilla.redhat.com/show_bug.cgi?id=2052034): make sure that we check for resorces and files before picking the simplest path [#1062](https://github.com/openshift/oc/pull/1062) * [Bug 2049133](https://bugzilla.redhat.com/show_bug.cgi?id=2049133): Fix catalog mirror from files [#1058](https://github.com/openshift/oc/pull/1058) * Comment tolerations used in must-gather [#1004](https://github.com/openshift/oc/pull/1004) * Remove unused methods and re-use pre-existing ones where needed [#951](https://github.com/openshift/oc/pull/951) * Show managedFields in inspect [#1051](https://github.com/openshift/oc/pull/1051) * [Bug 2046319](https://bugzilla.redhat.com/show_bug.cgi?id=2046319): improve error message for debug [#1053](https://github.com/openshift/oc/pull/1053) * [Bug 2047895](https://bugzilla.redhat.com/show_bug.cgi?id=2047895): release: handle aarch64/arm64 naming disparity in mirror [#1038](https://github.com/openshift/oc/pull/1038) * [Bug 2044140](https://bugzilla.redhat.com/show_bug.cgi?id=2044140): pkg/cli/admin/upgrade: Fix nextStep option sense [#1050](https://github.com/openshift/oc/pull/1050) * Add TMOUT env to debug node pod [#1048](https://github.com/openshift/oc/pull/1048) * [Bug 2044140](https://bugzilla.redhat.com/show_bug.cgi?id=2044140): Updated the error message to include the suggestion [#1041](https://github.com/openshift/oc/pull/1041) * [Bug 2035717](https://bugzilla.redhat.com/show_bug.cgi?id=2035717): Enhancing the output provided when backup collections are attempted [#1013](https://github.com/openshift/oc/pull/1013) * [Full changelog](https://github.com/openshift/oc/compare/5f40be42e083d61858a07f4d8ae4fad1e60b0627...d691257345aeeec951c763e11658a944037f9b39) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/bb692b1ad83a5114b9003d325904848e7113e0df) * [OCPBUGS-51538](https://issues.redhat.com/browse/OCPBUGS-51538): Ignore SNYK-GOLANG-GOLANGORGXOAUTH2JWS-8749594 due to not being affected [#832](https://github.com/openshift/cloud-credential-operator/pull/832) * [OCPBUGS-37322](https://issues.redhat.com/browse/OCPBUGS-37322): update modules: grpc, protobuf, logrus [#764](https://github.com/openshift/cloud-credential-operator/pull/764) * [OCPBUGS-42166](https://issues.redhat.com/browse/OCPBUGS-42166): Resolve SNYK errors in security job. [#760](https://github.com/openshift/cloud-credential-operator/pull/760) * [OCPBUGS-37422](https://issues.redhat.com/browse/OCPBUGS-37422): SNYK ignore go-client misreporting [#744](https://github.com/openshift/cloud-credential-operator/pull/744) * NO-JIRA: Add jstuever to OWNERS [#733](https://github.com/openshift/cloud-credential-operator/pull/733) * [OCPBUGS-36027](https://issues.redhat.com/browse/OCPBUGS-36027): IBM/go-sdk-core update to v5.17.4 [#723](https://github.com/openshift/cloud-credential-operator/pull/723) * [OCPBUGS-32897](https://issues.redhat.com/browse/OCPBUGS-32897): Upgrade go-jose module to 2.6.3 [#699](https://github.com/openshift/cloud-credential-operator/pull/699) * [OCPBUGS-21348](https://issues.redhat.com/browse/OCPBUGS-21348): Upgrade golang/x/net for CVE-2023-39325 [#624](https://github.com/openshift/cloud-credential-operator/pull/624) * NO-ISSUE: snyk: exclude vendor/ [#619](https://github.com/openshift/cloud-credential-operator/pull/619) * NO-ISSUE: Removing andrew from OWNERS [#618](https://github.com/openshift/cloud-credential-operator/pull/618) * [OCPBUGS-13739](https://issues.redhat.com/browse/OCPBUGS-13739): Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. [#539](https://github.com/openshift/cloud-credential-operator/pull/539) * [OCPBUGS-11707](https://issues.redhat.com/browse/OCPBUGS-11707): ccoctl: Enable public anon read access to default OIDC S3 bucket [#529](https://github.com/openshift/cloud-credential-operator/pull/529) * Bump to k8s 1.25 [#505](https://github.com/openshift/cloud-credential-operator/pull/505) * Make ccoctl use regional STS endpoint by default [#491](https://github.com/openshift/cloud-credential-operator/pull/491) * Changes generated from make update-gofmt with go-1.19. [#495](https://github.com/openshift/cloud-credential-operator/pull/495) * Update OWNERS to reflect reality. [#494](https://github.com/openshift/cloud-credential-operator/pull/494) * Add support for granular GCP permissions using custom roles [#489](https://github.com/openshift/cloud-credential-operator/pull/489) * update to release.openshift.io/feature-set to match OCP 4.12 [#490](https://github.com/openshift/cloud-credential-operator/pull/490) * Add ccoctl support to create OIDC endpoint with private S3 bucket [#486](https://github.com/openshift/cloud-credential-operator/pull/486) * [TRT-481](https://issues.redhat.com/browse/TRT-481): fix: order conditions by type to limit un-needed updates [#488](https://github.com/openshift/cloud-credential-operator/pull/488) * [Bug 2118625](https://bugzilla.redhat.com/show_bug.cgi?id=2118625): Refactor Nutanix plugin to use external credentials structs [#485](https://github.com/openshift/cloud-credential-operator/pull/485) * [Bug 2117474](https://bugzilla.redhat.com/show_bug.cgi?id=2117474): Fix panic when the Provider spec is empty in credential request [#484](https://github.com/openshift/cloud-credential-operator/pull/484) * Rename azure-mind-mod-removal to fix typo [#481](https://github.com/openshift/cloud-credential-operator/pull/481) * [Bug 2100964](https://bugzilla.redhat.com/show_bug.cgi?id=2100964): Make ccoctl work with credentials fetched from gcloud cli defaults [#475](https://github.com/openshift/cloud-credential-operator/pull/475) * Updating ose-cloud-credential-operator images to be consistent with ART [#474](https://github.com/openshift/cloud-credential-operator/pull/474) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): manifests/00-namespace: Set empty openshift.io/run-level [#472](https://github.com/openshift/cloud-credential-operator/pull/472) * [Issue #452] Improving documentation [#465](https://github.com/openshift/cloud-credential-operator/pull/465) * doc(aws-sts): add alternative to host OIDC configuration in a private bucket using CloudFront [#468](https://github.com/openshift/cloud-credential-operator/pull/468) * [Bug 2093986](https://bugzilla.redhat.com/show_bug.cgi?id=2093986): Make pod identity webhook comply to restricted pod security level [#469](https://github.com/openshift/cloud-credential-operator/pull/469) * Updating ose-cloud-credential-operator images to be consistent with ART [#466](https://github.com/openshift/cloud-credential-operator/pull/466) * manifests/deployment: comply to restricted pod security level [#463](https://github.com/openshift/cloud-credential-operator/pull/463) * Add a check for no CredentialsRequest manifest in directory [#462](https://github.com/openshift/cloud-credential-operator/pull/462) * [Bug 2067800](https://bugzilla.redhat.com/show_bug.cgi?id=2067800): upgrade prometheus/client_golang to v1.12.1 [#464](https://github.com/openshift/cloud-credential-operator/pull/464) * Minor doc updates [#461](https://github.com/openshift/cloud-credential-operator/pull/461) * Update OWNERS file to reflect reality [#460](https://github.com/openshift/cloud-credential-operator/pull/460) * Change the ccoctl generated nutanix-credentials secret data format [#457](https://github.com/openshift/cloud-credential-operator/pull/457) * Skip directories when reading credentials requests [#459](https://github.com/openshift/cloud-credential-operator/pull/459) * Add nutanix credentials handling with manual mode [#450](https://github.com/openshift/cloud-credential-operator/pull/450) * Leader election migration 1: ConfigMap & Lease [#446](https://github.com/openshift/cloud-credential-operator/pull/446) * Updating ose-cloud-credential-operator images to be consistent with ART [#449](https://github.com/openshift/cloud-credential-operator/pull/449) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/cb5054fcca4d94491f07bb8138178752e454049a...bb692b1ad83a5114b9003d325904848e7113e0df) ### [cloud-network-config-controller](https://github.com/openshift/cloud-network-config-controller/tree/c086bed76ee3d3b3fe9f516f873414e7b4348acd) * [OCPBUGS-33198](https://issues.redhat.com/browse/OCPBUGS-33198): Avoid nil pointer panic while assigning private IP on Azure [#141](https://github.com/openshift/cloud-network-config-controller/pull/141) * [OCPBUGS-22949](https://issues.redhat.com/browse/OCPBUGS-22949): Azure: skip backend pool if attached to an outbound rule [#128](https://github.com/openshift/cloud-network-config-controller/pull/128) * [OCPBUGS-16325](https://issues.redhat.com/browse/OCPBUGS-16325): Azure: Handle already existing IP configurations [#117](https://github.com/openshift/cloud-network-config-controller/pull/117) * [OCPBUGS-14717](https://issues.redhat.com/browse/OCPBUGS-14717): increase GCP egress ip capacity to 100 from 10 [#114](https://github.com/openshift/cloud-network-config-controller/pull/114) * [OCPBUGS-13802](https://issues.redhat.com/browse/OCPBUGS-13802): sync CloudPrivateIpConfig when node is missing [#112](https://github.com/openshift/cloud-network-config-controller/pull/112) * [OCPBUGS-13183](https://issues.redhat.com/browse/OCPBUGS-13183): pull project name from subnet uri [#108](https://github.com/openshift/cloud-network-config-controller/pull/108) * Bug OCPBUGS-5156: Add ApplicationSecurityGroups to InterfaceIPConfiguration [#92](https://github.com/openshift/cloud-network-config-controller/pull/92) * [OCPBUGS-4783](https://issues.redhat.com/browse/OCPBUGS-4783): OpenStack: Support multi AZ environments [#88](https://github.com/openshift/cloud-network-config-controller/pull/88) * [OCPBUGS-4784](https://issues.redhat.com/browse/OCPBUGS-4784): OpenStack: Only return egressIPConfiguration for first InternalIP [#89](https://github.com/openshift/cloud-network-config-controller/pull/89) * [OCPBUGS-4230](https://issues.redhat.com/browse/OCPBUGS-4230): Fix azure log message for assigning and releasing an IP [#80](https://github.com/openshift/cloud-network-config-controller/pull/80) * [OCPBUGS-3552](https://issues.redhat.com/browse/OCPBUGS-3552): Add assigned egress ips into capacity [#73](https://github.com/openshift/cloud-network-config-controller/pull/73) * [OCPBUGS-1736](https://issues.redhat.com/browse/OCPBUGS-1736): use proxy vars when available [#62](https://github.com/openshift/cloud-network-config-controller/pull/62) * [OCPBUGS-1417](https://issues.redhat.com/browse/OCPBUGS-1417): AWS: build temp credentials file from AWS key and secret [#68](https://github.com/openshift/cloud-network-config-controller/pull/68) * Update .ci-operator.yaml to use go 1.19 [#65](https://github.com/openshift/cloud-network-config-controller/pull/65) * Updating ose-cloud-network-config-controller images to be consistent with ART [#64](https://github.com/openshift/cloud-network-config-controller/pull/64) * [OCPBUGS-1629](https://issues.redhat.com/browse/OCPBUGS-1629): Add resolver to handle custom endpoints [#61](https://github.com/openshift/cloud-network-config-controller/pull/61) * [SDN-3203](https://issues.redhat.com/browse/SDN-3203): 1.25 rebase [#58](https://github.com/openshift/cloud-network-config-controller/pull/58) * [OCPBUGS-683](https://issues.redhat.com/browse/OCPBUGS-683): Node controller: Skip uninitialized nodes [#57](https://github.com/openshift/cloud-network-config-controller/pull/57) * Jira OCPBUGS-208: OpenStack: Avoid concurrent port updates for attach/detach operations [#54](https://github.com/openshift/cloud-network-config-controller/pull/54) * Jira OCPBUGS-247: OpenStack Return UnexpectedURIError when URI cannot be parsed [#55](https://github.com/openshift/cloud-network-config-controller/pull/55) * [Bug 2118563](https://bugzilla.redhat.com/show_bug.cgi?id=2118563): Adjust OpenStack port capacity to default max_allowed_address_pair [#53](https://github.com/openshift/cloud-network-config-controller/pull/53) * [Bug 2111878](https://bugzilla.redhat.com/show_bug.cgi?id=2111878): Make azure operations to be in sequence [#52](https://github.com/openshift/cloud-network-config-controller/pull/52) * [Bug 2104784](https://bugzilla.redhat.com/show_bug.cgi?id=2104784): AWS: Fix race in IP address assignment code [#50](https://github.com/openshift/cloud-network-config-controller/pull/50) * Update OWNERS [#51](https://github.com/openshift/cloud-network-config-controller/pull/51) * Add OpenStack cloud provider [#47](https://github.com/openshift/cloud-network-config-controller/pull/47) * Updating ose-cloud-network-config-controller images to be consistent with ART [#49](https://github.com/openshift/cloud-network-config-controller/pull/49) * [Bug 2105996](https://bugzilla.redhat.com/show_bug.cgi?id=2105996): Fix assign error display for cloudprivateipconfig [#48](https://github.com/openshift/cloud-network-config-controller/pull/48) * [Bug 2094438](https://bugzilla.redhat.com/show_bug.cgi?id=2094438): Make AWS URL parsing more lenient for GetNodeEgressIPConfiguration [#45](https://github.com/openshift/cloud-network-config-controller/pull/45) * [Bug 2092047](https://bugzilla.redhat.com/show_bug.cgi?id=2092047): 1.24 rebase [#44](https://github.com/openshift/cloud-network-config-controller/pull/44) * [Bug 2071914](https://bugzilla.redhat.com/show_bug.cgi?id=2071914): azure: default empty environment to AzurePublicCloud [#36](https://github.com/openshift/cloud-network-config-controller/pull/36) * Add instructions for how to run image in cloud [#31](https://github.com/openshift/cloud-network-config-controller/pull/31) * [Bug 2072439](https://bugzilla.redhat.com/show_bug.cgi?id=2072439): Get subnet information from subnet instead of from network addresses [#32](https://github.com/openshift/cloud-network-config-controller/pull/32) * [Bug 2060334](https://bugzilla.redhat.com/show_bug.cgi?id=2060334): Fix Azure VNET lookup when the NIC's subnet is in a different resource group [#26](https://github.com/openshift/cloud-network-config-controller/pull/26) * [Bug 2060361](https://bugzilla.redhat.com/show_bug.cgi?id=2060361): Fix Unable to enumerate NICs due to a missing 'primary' field due to security restrictions [#27](https://github.com/openshift/cloud-network-config-controller/pull/27) * Fix run_locally.sh [#21](https://github.com/openshift/cloud-network-config-controller/pull/21) * Updating ose-cloud-network-config-controller images to be consistent with ART [#25](https://github.com/openshift/cloud-network-config-controller/pull/25) * README.md [#22](https://github.com/openshift/cloud-network-config-controller/pull/22) * [Full changelog](https://github.com/openshift/cloud-network-config-controller/compare/e2f6f5e0e407dddb481e0e53c71c913ef3cb4d04...c086bed76ee3d3b3fe9f516f873414e7b4348acd) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/4f7f6b1af4b674b24270e65c40728b19071ab3e3) * [OCPBUGS-20683](https://issues.redhat.com/browse/OCPBUGS-20683): CVE 2023 39325 [4.12] [#653](https://github.com/openshift/cluster-authentication-operator/pull/653) * [OCPBUGS-22689](https://issues.redhat.com/browse/OCPBUGS-22689): increase timeout for probes [#639](https://github.com/openshift/cluster-authentication-operator/pull/639) * [OCPBUGS-13346](https://issues.redhat.com/browse/OCPBUGS-13346): dont log jwt tokens [#622](https://github.com/openshift/cluster-authentication-operator/pull/622) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#591](https://github.com/openshift/cluster-authentication-operator/pull/591) * [OCPBUGS-4040](https://issues.redhat.com/browse/OCPBUGS-4040): Restart authentication operator if console capability is enabled [#593](https://github.com/openshift/cluster-authentication-operator/pull/593) * [OCPBUGS-3510](https://issues.redhat.com/browse/OCPBUGS-3510): Update cluster-authentication-operator not to go degraded without console [#590](https://github.com/openshift/cluster-authentication-operator/pull/590) * make the custom route controller use server-side-apply to avoid stomping unknown fields [#582](https://github.com/openshift/cluster-authentication-operator/pull/582) * e2e: address PSa failures [#581](https://github.com/openshift/cluster-authentication-operator/pull/581) * [Bug 2111842](https://bugzilla.redhat.com/show_bug.cgi?id=2111842): v/o/library-go - version-bump [#576](https://github.com/openshift/cluster-authentication-operator/pull/576) * Updating ose-cluster-authentication-operator images to be consistent with ART [#575](https://github.com/openshift/cluster-authentication-operator/pull/575) * Updating ose-cluster-authentication-operator images to be consistent with ART [#571](https://github.com/openshift/cluster-authentication-operator/pull/571) * [Bug 2078287](https://bugzilla.redhat.com/show_bug.cgi?id=2078287): only ever include certificates in the oauth-serving-cert CM [#573](https://github.com/openshift/cluster-authentication-operator/pull/573) * [AUTH-133](https://issues.redhat.com/browse/AUTH-133): bindata/oauth-openshift: specify pod security level [#570](https://github.com/openshift/cluster-authentication-operator/pull/570) * Update Links [#568](https://github.com/openshift/cluster-authentication-operator/pull/568) * [Bug 1958198](https://bugzilla.redhat.com/show_bug.cgi?id=1958198): Avoid zero or low resync intervals [#491](https://github.com/openshift/cluster-authentication-operator/pull/491) * manifests: specify pod security level [#565](https://github.com/openshift/cluster-authentication-operator/pull/565) * e2e: Use Keycloak v18.0.0 [#567](https://github.com/openshift/cluster-authentication-operator/pull/567) * [AUTH-89](https://issues.redhat.com/browse/AUTH-89): add audit options to oauth-server on oauth-audit-profile Variant03 [#563](https://github.com/openshift/cluster-authentication-operator/pull/563) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Bump `openshift/api` dependency to `04e1813ebb11` [#564](https://github.com/openshift/cluster-authentication-operator/pull/564) * make apiserver readiness probe honor readyz [#561](https://github.com/openshift/cluster-authentication-operator/pull/561) * [Bug 2063342](https://bugzilla.redhat.com/show_bug.cgi?id=2063342): vendor: bump library-go [#558](https://github.com/openshift/cluster-authentication-operator/pull/558) * [Bug 2059515](https://bugzilla.redhat.com/show_bug.cgi?id=2059515): e2e: Use Keycloak v17.0.0 [#554](https://github.com/openshift/cluster-authentication-operator/pull/554) * Update OCP branding within oauth-templates [#540](https://github.com/openshift/cluster-authentication-operator/pull/540) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/6a015c7108252fa22c75ffa4b7757d28bfed902a...4f7f6b1af4b674b24270e65c40728b19071ab3e3) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/d16352d90b619d85e9934346116a5812611ebdff) * [OCPBUGS-45152](https://issues.redhat.com/browse/OCPBUGS-45152): [release-4.12] VPA: Update OWNERS file [#329](https://github.com/openshift/kubernetes-autoscaler/pull/329) * [OCPBUGS-40928](https://issues.redhat.com/browse/OCPBUGS-40928): update VPA golang.org/x/net for http rapid reset for CVE-2024-8421 [#318](https://github.com/openshift/kubernetes-autoscaler/pull/318) * [OCPBUGS-30911](https://issues.redhat.com/browse/OCPBUGS-30911): Fix unstructured taint parsing in Cluster API provider [#291](https://github.com/openshift/kubernetes-autoscaler/pull/291) * [OCPBUGS-23274](https://issues.redhat.com/browse/OCPBUGS-23274): Rebase 4.12 branch onto cluster autoscaler 1.25.3 [#267](https://github.com/openshift/kubernetes-autoscaler/pull/267) * Updating atomic-openshift-cluster-autoscaler images to be consistent with ART [#242](https://github.com/openshift/kubernetes-autoscaler/pull/242) * Updating vertical-pod-autoscaler images to be consistent with ART [#243](https://github.com/openshift/kubernetes-autoscaler/pull/243) * rebase on upstream 1.25.0 [#241](https://github.com/openshift/kubernetes-autoscaler/pull/241) * [Bug 2001027](https://bugzilla.redhat.com/show_bug.cgi?id=2001027): update clusterapi nodegroups processor [#240](https://github.com/openshift/kubernetes-autoscaler/pull/240) * Updating vertical-pod-autoscaler images to be consistent with ART [#235](https://github.com/openshift/kubernetes-autoscaler/pull/235) * [Bug 1944065](https://bugzilla.redhat.com/show_bug.cgi?id=1944065): Have VPA ignore phantom containers named "POD" [#233](https://github.com/openshift/kubernetes-autoscaler/pull/233) * [Bug 2087037](https://bugzilla.redhat.com/show_bug.cgi?id=2087037): Rebase onto latest master from upstream [#231](https://github.com/openshift/kubernetes-autoscaler/pull/231) * [Bug 2087037](https://bugzilla.redhat.com/show_bug.cgi?id=2087037): Rebase Autoscaler onto upstream release-1.24 branch [#227](https://github.com/openshift/kubernetes-autoscaler/pull/227) * added bindata.go in e2e/vendor to fix the e2e test failures [#225](https://github.com/openshift/kubernetes-autoscaler/pull/225) * add user configurable cluster api version [#223](https://github.com/openshift/kubernetes-autoscaler/pull/223) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/266ba2db3dbf1fb7ddd07aca7c6223d800ecf3d2...d16352d90b619d85e9934346116a5812611ebdff) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/29a6e57c10cf027f5f04e9bcb2e8842497f63bf6) * [OCPBUGS-32005](https://issues.redhat.com/browse/OCPBUGS-32005): Update x/net to v0.25.0 [#325](https://github.com/openshift/cluster-autoscaler-operator/pull/325) * [OCPBUGS-20754](https://issues.redhat.com/browse/OCPBUGS-20754): Bump x/net package to v0.18.0 [#300](https://github.com/openshift/cluster-autoscaler-operator/pull/300) * Updating ose-cluster-autoscaler-operator images to be consistent with ART [#248](https://github.com/openshift/cluster-autoscaler-operator/pull/248) * [OCPCLOUD-1677](https://issues.redhat.com/browse/OCPCLOUD-1677): add flag for duplicated events [#253](https://github.com/openshift/cluster-autoscaler-operator/pull/253) * [Bug 1997396](https://bugzilla.redhat.com/show_bug.cgi?id=1997396): fix an error with autoscaler alert rules [#254](https://github.com/openshift/cluster-autoscaler-operator/pull/254) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s deps to 1.25 [#252](https://github.com/openshift/cluster-autoscaler-operator/pull/252) * [Bug 1997396](https://bugzilla.redhat.com/show_bug.cgi?id=1997396): update alerts for resource limits [#250](https://github.com/openshift/cluster-autoscaler-operator/pull/250) * [OCPCLOUD-1427](https://issues.redhat.com/browse/OCPCLOUD-1427): Expose autoscaler "--balancing-ignore-label" flag through CRD [#251](https://github.com/openshift/cluster-autoscaler-operator/pull/251) * Add verbosity option to ClusterAutoscaler object [#247](https://github.com/openshift/cluster-autoscaler-operator/pull/247) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#246](https://github.com/openshift/cluster-autoscaler-operator/pull/246) * [Bug 2067803](https://bugzilla.redhat.com/show_bug.cgi?id=2067803): Bump prometheus/client_golang [#242](https://github.com/openshift/cluster-autoscaler-operator/pull/242) * [Bug 2063194](https://bugzilla.redhat.com/show_bug.cgi?id=2063194): add leader election flags to autoscaler deployment [#241](https://github.com/openshift/cluster-autoscaler-operator/pull/241) * add capi version to autoscaler deployment [#240](https://github.com/openshift/cluster-autoscaler-operator/pull/240) * Updating ose-cluster-autoscaler-operator images to be consistent with ART [#238](https://github.com/openshift/cluster-autoscaler-operator/pull/238) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/8bcdcccbf043bc164eb5b728a8cfd962112b2aa5...29a6e57c10cf027f5f04e9bcb2e8842497f63bf6) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/537a74cd0b0cc48189684a273013c32d1269ddd9) * [OCPBUGS-32006](https://issues.redhat.com/browse/OCPBUGS-32006): bump x/net to 0.23.0 [#440](https://github.com/openshift/cluster-baremetal-operator/pull/440) * [OCPBUGS-23291](https://issues.redhat.com/browse/OCPBUGS-23291): hack for deploying V6-only clusters from dualstack hubs [#389](https://github.com/openshift/cluster-baremetal-operator/pull/389) * [OCPBUGS-20845](https://issues.redhat.com/browse/OCPBUGS-20845): Uplift x/net to v0.17.0 [#371](https://github.com/openshift/cluster-baremetal-operator/pull/371) * [OCPBUGS-19557](https://issues.redhat.com/browse/OCPBUGS-19557): Guard against nil PlatformStatus [#367](https://github.com/openshift/cluster-baremetal-operator/pull/367) * [OCPBUGS-16169](https://issues.redhat.com/browse/OCPBUGS-16169): use proxying for inspector in addition to ironic [#349](https://github.com/openshift/cluster-baremetal-operator/pull/349) * [OCPBUGS-15715](https://issues.redhat.com/browse/OCPBUGS-15715): Limit role binding to openshift-machine-api namespace [#347](https://github.com/openshift/cluster-baremetal-operator/pull/347) * [OCPBUGS-7585](https://issues.redhat.com/browse/OCPBUGS-7585): also use BMH.ConsumerRef for linking to master Machines [#326](https://github.com/openshift/cluster-baremetal-operator/pull/326) * [OCPBUGS-5072](https://issues.redhat.com/browse/OCPBUGS-5072): delete ironic-proxy/image-cache when not needed [#317](https://github.com/openshift/cluster-baremetal-operator/pull/317) * [OCPBUGS-4696](https://issues.redhat.com/browse/OCPBUGS-4696): Do not fail the reconciler when no master Machines exist [#314](https://github.com/openshift/cluster-baremetal-operator/pull/314) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#300](https://github.com/openshift/cluster-baremetal-operator/pull/300) * Golang 1.19 [#306](https://github.com/openshift/cluster-baremetal-operator/pull/306) * Handle AWS platform [#304](https://github.com/openshift/cluster-baremetal-operator/pull/304) * [OCPBUGS-1806](https://issues.redhat.com/browse/OCPBUGS-1806): Use machines instead of nodes to detect masters [#299](https://github.com/openshift/cluster-baremetal-operator/pull/299) * Add port to IRONIC_EXTERNAL_URL_V6 [#302](https://github.com/openshift/cluster-baremetal-operator/pull/302) * Enable running CBO from AWS [#301](https://github.com/openshift/cluster-baremetal-operator/pull/301) * [OCPBUGS-872](https://issues.redhat.com/browse/OCPBUGS-872): add a workaround for a NetworkManager issue [#286](https://github.com/openshift/cluster-baremetal-operator/pull/286) * Pass IRONIC_EXTERNAL_URL_V6 to baremetal-operator [#288](https://github.com/openshift/cluster-baremetal-operator/pull/288) * [OCPBUGS-651](https://issues.redhat.com/browse/OCPBUGS-651): ignore metal3 pods that are terminating [#284](https://github.com/openshift/cluster-baremetal-operator/pull/284) * Added handling PlatformStatus.Type other than Baremetal [#285](https://github.com/openshift/cluster-baremetal-operator/pull/285) * [OCPBUGS-421](https://issues.redhat.com/browse/OCPBUGS-421): do not rely on string "master" to be in BMH names [#282](https://github.com/openshift/cluster-baremetal-operator/pull/282) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#273](https://github.com/openshift/cluster-baremetal-operator/pull/273) * Run a proxy for ironic when provisioning network is disabled [#279](https://github.com/openshift/cluster-baremetal-operator/pull/279) * Use platformStatus.type to determine type of platform [#280](https://github.com/openshift/cluster-baremetal-operator/pull/280) * [METAL-157](https://issues.redhat.com/browse/METAL-157): Don't run image cache unless required [#275](https://github.com/openshift/cluster-baremetal-operator/pull/275) * Stop passing HTPASSWD variables to services [#278](https://github.com/openshift/cluster-baremetal-operator/pull/278) * Add RBAC for metal3.io/hardwaredata [#277](https://github.com/openshift/cluster-baremetal-operator/pull/277) * Fix a few papercuts [#263](https://github.com/openshift/cluster-baremetal-operator/pull/263) * Update to golang 1.18 and regenerate CRDs [#265](https://github.com/openshift/cluster-baremetal-operator/pull/265) * Drop the IRONIC_HTTPD compatibility option [#245](https://github.com/openshift/cluster-baremetal-operator/pull/245) * [Bug 2084215](https://bugzilla.redhat.com/show_bug.cgi?id=2084215): Add baremetal prefix to kube-rbac-proxy [#272](https://github.com/openshift/cluster-baremetal-operator/pull/272) * [Bug 2099928](https://bugzilla.redhat.com/show_bug.cgi?id=2099928): Add UT for image_customization_test [#243](https://github.com/openshift/cluster-baremetal-operator/pull/243) * [Bug 2088428](https://bugzilla.redhat.com/show_bug.cgi?id=2088428): Fix interpretation of Deployment Status Conditions [#266](https://github.com/openshift/cluster-baremetal-operator/pull/266) * [Bug 2080306](https://bugzilla.redhat.com/show_bug.cgi?id=2080306): Uplift kustomize and BMO to remove go-getter dependency [#262](https://github.com/openshift/cluster-baremetal-operator/pull/262) * Change registry reference for image customization controller image, p… [#260](https://github.com/openshift/cluster-baremetal-operator/pull/260) * Revert "Allow access to InfraEnv resources from assisted service" [#254](https://github.com/openshift/cluster-baremetal-operator/pull/254) * Extract functions for ZTP integration [#261](https://github.com/openshift/cluster-baremetal-operator/pull/261) * bump golangci [#257](https://github.com/openshift/cluster-baremetal-operator/pull/257) * Change registry reference for image customization controller image [#258](https://github.com/openshift/cluster-baremetal-operator/pull/258) * [Bug 1961844](https://bugzilla.redhat.com/show_bug.cgi?id=1961844): Adding baremetal ClusterOperator relatedObjects directly to its manifest [#255](https://github.com/openshift/cluster-baremetal-operator/pull/255) * Add baremetal capability annotations [#249](https://github.com/openshift/cluster-baremetal-operator/pull/249) * Allow access to InfraEnv resources from assisted service [#251](https://github.com/openshift/cluster-baremetal-operator/pull/251) * More updates to the OWNERS file [#253](https://github.com/openshift/cluster-baremetal-operator/pull/253) * Update the OWNERS file based on new contributors [#252](https://github.com/openshift/cluster-baremetal-operator/pull/252) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#242](https://github.com/openshift/cluster-baremetal-operator/pull/242) * Use combined Ironic process, drop RPC and MariaDB [#234](https://github.com/openshift/cluster-baremetal-operator/pull/234) * Remove asalkeld and kirankt from Owners [#228](https://github.com/openshift/cluster-baremetal-operator/pull/228) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/0e3d8397951f4b45000a92ad923b30cff5f9e767...537a74cd0b0cc48189684a273013c32d1269ddd9) ### [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap/tree/138a1cf2b98578acb4ccf098736bdf08614d2d6a) * [OCPBUGS-14386](https://issues.redhat.com/browse/OCPBUGS-14386): Update dependencies and image [#91](https://github.com/openshift/cluster-bootstrap/pull/91) * Add API team to the OWNERS [#97](https://github.com/openshift/cluster-bootstrap/pull/97) * [Full changelog](https://github.com/openshift/cluster-bootstrap/compare/195cde607d94b264a88b21f17baade02fd32ad3b...138a1cf2b98578acb4ccf098736bdf08614d2d6a) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/3b1f0843e2bd25fb4e39659ef47424f67ccaa727) * [OCPBUGS-21148](https://issues.redhat.com/browse/OCPBUGS-21148): Bump golang.org/x/net to v0.18.0 [#297](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/297) * [OCPBUGS-13862](https://issues.redhat.com/browse/OCPBUGS-13862): add separate upgradeable condition for the sync controller [#254](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/254) * [OCPBUGS-13188](https://issues.redhat.com/browse/OCPBUGS-13188): update config sync controller to add upgrade status [#251](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/251) * [OCPBUGS-7898](https://issues.redhat.com/browse/OCPBUGS-7898): add a check for nutanix cloud conf map [#239](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/239) * [OCPBUGS-7884](https://issues.redhat.com/browse/OCPBUGS-7884): Restart pods if related configuration was changed [#228](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/228) * [OCPBUGS-5142](https://issues.redhat.com/browse/OCPBUGS-5142): Try to limit groups for the REST mapper discovery [#212](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/212) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump dependencies to k8s 1.25 [#203](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/203) * CCM namespace should be labelled as privileged [#202](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/202) * Reset Go mod after openstack library-go bump [#200](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/200) * Update library-go to set OpenStack provider to external [#199](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/199) * Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART [#196](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/196) * [Bug 2104373](https://bugzilla.redhat.com/show_bug.cgi?id=2104373): Improve decision logic around syncing cloud config [#197](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/197) * [Bug 2089334](https://bugzilla.redhat.com/show_bug.cgi?id=2089334): Use service account credentials for all providers [#193](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/193) * [Bug 2067806](https://bugzilla.redhat.com/show_bug.cgi?id=2067806): Bump dependencies to K8s 1.24 [#192](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/192) * Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART [#191](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/191) * [Bug 2082687](https://bugzilla.redhat.com/show_bug.cgi?id=2082687): IBMCloud: Remove CCM port argument [#189](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/189) * Remove port argument and update enivronment variable name from powervs cloud provider deployment [#188](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/188) * [Bug 2074471](https://bugzilla.redhat.com/show_bug.cgi?id=2074471): update enabled and use-octavia options in cloud-conf config-map [#183](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/183) * [Bug 2074606](https://bugzilla.redhat.com/show_bug.cgi?id=2074606): Allow OpenStack CCM to annotate Service objects [#184](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/184) * OpenStack: ensure config-map is updated only when needed [#185](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/185) * Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART [#166](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/166) * [Bug 2051457](https://bugzilla.redhat.com/show_bug.cgi?id=2051457): CCM PodDisruptionBudgets [#174](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/174) * Add a troubleshooting doc [#177](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/177) * Add generation of config for OpenStack CCM [#178](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/178) * Add PowerVS cloud controller manager [#179](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/179) * Use "go install" to fetch binaries [#161](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/161) * [Bug 2059716](https://bugzilla.redhat.com/show_bug.cgi?id=2059716): Ensure release version is set on config sync controller [#176](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/176) * [Bug 2059716](https://bugzilla.redhat.com/show_bug.cgi?id=2059716): Ensure release version is injected into all controller status clients [#175](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/175) * [Bug 2055723](https://bugzilla.redhat.com/show_bug.cgi?id=2055723): start watching KubeControllerManager resource [#173](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/173) * Changes to support config map sych for Power VS Platform [#172](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/172) * Added credential request file for Power VS [#171](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/171) * Update OWNERS [#170](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/170) * Fix a typo in watch predicates [#169](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/169) * [Bug 2047998](https://bugzilla.redhat.com/show_bug.cgi?id=2047998): Alibaba should deploy image from release payload [#167](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/167) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/237ae9966d99fec1b493e22a552b6da59bf6225d...3b1f0843e2bd25fb4e39659ef47424f67ccaa727) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/92c3b10237c1ebf7ab7a0c744db3949377614e52) * [OCPBUGS-16243](https://issues.redhat.com/browse/OCPBUGS-16243): retire LatencySensitive featureset [#336](https://github.com/openshift/cluster-config-operator/pull/336) * : OCPBUGS-21245: bump library-go to include switch to HTTP/1.1 [#373](https://github.com/openshift/cluster-config-operator/pull/373) * [CORS-2794](https://issues.redhat.com/browse/CORS-2794): AWS Shared VPC API Bump [release-4.12] [#344](https://github.com/openshift/cluster-config-operator/pull/344) * [OCPBUGS-4544](https://issues.redhat.com/browse/OCPBUGS-4544): Revert "Increase verbosity level to track probe timeouts" [#275](https://github.com/openshift/cluster-config-operator/pull/275) * [OCPBUGS-3523](https://issues.redhat.com/browse/OCPBUGS-3523): add --feature-set option to render options [#272](https://github.com/openshift/cluster-config-operator/pull/272) * [NE-975](https://issues.redhat.com/browse/NE-975): Update openshift/api for updated ingress config loadBalancer fields [#268](https://github.com/openshift/cluster-config-operator/pull/268) * Increase verbosity level to track probe timeouts [#267](https://github.com/openshift/cluster-config-operator/pull/267) * [Bug 1843043](https://bugzilla.redhat.com/show_bug.cgi?id=1843043): Update openshift/api for modified config resource description [#264](https://github.com/openshift/cluster-config-operator/pull/264) * update openshift/api for new ingress manifest [#263](https://github.com/openshift/cluster-config-operator/pull/263) * Update go.mod api,client-go to register crd [#262](https://github.com/openshift/cluster-config-operator/pull/262) * This is not the repo you're looking for. [#261](https://github.com/openshift/cluster-config-operator/pull/261) * Bump k8s dependencies [#260](https://github.com/openshift/cluster-config-operator/pull/260) * Update images to be consistent with ART [#253](https://github.com/openshift/cluster-config-operator/pull/253) * [Bug 2082763](https://bugzilla.redhat.com/show_bug.cgi?id=2082763): Drop the OperatorHub CR instance [#245](https://github.com/openshift/cluster-config-operator/pull/245) * bump openshift/api, client-go [#251](https://github.com/openshift/cluster-config-operator/pull/251) * manifests/deployment: comply to restricted pod security level [#248](https://github.com/openshift/cluster-config-operator/pull/248) * Reorder the empty Node CR resource to ensure it is applied after the Node CRD [#244](https://github.com/openshift/cluster-config-operator/pull/244) * Bump(o/client-go); Add empty config/v1/node/cluster object [#238](https://github.com/openshift/cluster-config-operator/pull/238) * [Bug 2074243](https://bugzilla.redhat.com/show_bug.cgi?id=2074243): Bump `openshift/api` to `c3bb724c28` [#243](https://github.com/openshift/cluster-config-operator/pull/243) * Revert config/v1/Node crd.yaml [#242](https://github.com/openshift/cluster-config-operator/pull/242) * Bump openshift/api, openshit/client-go to add ImageMirrorSet CRDs [#236](https://github.com/openshift/cluster-config-operator/pull/236) * bumped openshift API to have node object related changes [#233](https://github.com/openshift/cluster-config-operator/pull/233) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/0840c6f2f7f25ad9aba1a36597760f36ff0ab097...92c3b10237c1ebf7ab7a0c744db3949377614e52) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/f573eded61847fc153874615b29704d93ddcad8d) * [OCPBUGS-32429](https://issues.redhat.com/browse/OCPBUGS-32429): create suitable role and roleBinding for csi-snapshot-webhook [#207](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/207) * [OCPBUGS-21442](https://issues.redhat.com/browse/OCPBUGS-21442): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#169](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/169) * [OCPBUGS-10646](https://issues.redhat.com/browse/OCPBUGS-10646): Hypershift: set Deployment properties [#148](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/148) * [OCPBUGS-8374](https://issues.redhat.com/browse/OCPBUGS-8374): [4.12] remove cluster-admin role. [#143](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/143) * [OCPBUGS-4526](https://issues.redhat.com/browse/OCPBUGS-4526): hypershift: use correct kubeconfig secret for csi-snapshot-controller [#138](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/138) * [OCPBUGS-4251](https://issues.redhat.com/browse/OCPBUGS-4251): Add HyperShift specific priorityClass [#135](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/135) * [OCPBUGS-4121](https://issues.redhat.com/browse/OCPBUGS-4121): Don't remove PDB on SNO clusters [#134](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/134) * [STOR-971](https://issues.redhat.com/browse/STOR-971): Update for HyperShift [#125](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/125) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#130](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/130) * add capability annotation [#126](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/126) * [Bug 2101520](https://bugzilla.redhat.com/show_bug.cgi?id=2101520): bump library-go to get a that prevents watchers leaks [#129](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/129) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#128](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/128) * [OCPBUGS-990](https://issues.redhat.com/browse/OCPBUGS-990): Add RBAC to read extension-apiserver-authentication in kube-system [#127](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/127) * [STOR-970](https://issues.redhat.com/browse/STOR-970): Refactoring the oprator for newer library-go [#124](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/124) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#122](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/122) * [Bug 2097283](https://bugzilla.redhat.com/show_bug.cgi?id=2097283): Update manifests to v6.0.1 [#121](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/121) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#119](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/119) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#118](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/118) * [AUTH-133](https://issues.redhat.com/browse/AUTH-133): assets: comply to restricted pod security level [#120](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/120) * manifests/deployment: comply to restricted pod security level [#116](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/116) * [Bug 2057079](https://bugzilla.redhat.com/show_bug.cgi?id=2057079): Fix race when setting Progressing condition [#114](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/114) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#113](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/113) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/ace186237dad53c28b0d05761a2c85ce7b32b56b...f573eded61847fc153874615b29704d93ddcad8d) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/09a1de9faff75611ce9bdbfc472f052159780922) * [OCPBUGS-52502](https://issues.redhat.com/browse/OCPBUGS-52502): [release-4.12] Add runbook_url for CoreDNSErrorsHigh [#435](https://github.com/openshift/cluster-dns-operator/pull/435) * [OCPBUGS-21525](https://issues.redhat.com/browse/OCPBUGS-21525): Bump golang.org/x/net/http2 to v0.17.0 for CVE-2023-39325 in cluster-dns-operator [#391](https://github.com/openshift/cluster-dns-operator/pull/391) * [OCPBUGS-19933](https://issues.redhat.com/browse/OCPBUGS-19933): update-node-resolver.sh: Check for errors from >> [#385](https://github.com/openshift/cluster-dns-operator/pull/385) * [OCPBUGS-19933](https://issues.redhat.com/browse/OCPBUGS-19933): ensure original hosts file contents are preserved [#383](https://github.com/openshift/cluster-dns-operator/pull/383) * [OCPBUGS-15251](https://issues.redhat.com/browse/OCPBUGS-15251): Add support for protocolStrategy API field to enable force_tcp configuration [#378](https://github.com/openshift/cluster-dns-operator/pull/378) * Updating ose-cluster-dns-operator images to be consistent with ART, and generate bindata [#344](https://github.com/openshift/cluster-dns-operator/pull/344) * [OCPBUGS-753](https://issues.redhat.com/browse/OCPBUGS-753): keep dns-default annotations intact [#340](https://github.com/openshift/cluster-dns-operator/pull/340) * [NE-929](https://issues.redhat.com/browse/NE-929): CoreDNS Cache Tuning - Functional Implementation [#335](https://github.com/openshift/cluster-dns-operator/pull/335) * [OCPBUGS-1439](https://issues.redhat.com/browse/OCPBUGS-1439): Fix TestDNSLogging race condition [#341](https://github.com/openshift/cluster-dns-operator/pull/341) * [OCPBUGS-1549](https://issues.redhat.com/browse/OCPBUGS-1549): Reconcile the DNS namespace [#343](https://github.com/openshift/cluster-dns-operator/pull/343) * [OCPBUGS-1558](https://issues.redhat.com/browse/OCPBUGS-1558): Bump vendored k8s libraries to 1.25 [#342](https://github.com/openshift/cluster-dns-operator/pull/342) * [NE-1066](https://issues.redhat.com/browse/NE-1066): Enable the chaos plugin for CoreDNS in order to expose CoreDNS metadata [#337](https://github.com/openshift/cluster-dns-operator/pull/337) * [DPP-10859](https://issues.redhat.com/browse/DPP-10859): Update Bugzilla links to "Networking" component [#333](https://github.com/openshift/cluster-dns-operator/pull/333) * [Bug 2092041](https://bugzilla.redhat.com/show_bug.cgi?id=2092041): Bump k8s to 1.24 and Golang to 1.18 [#328](https://github.com/openshift/cluster-dns-operator/pull/328) * [Bug 2095941](https://bugzilla.redhat.com/show_bug.cgi?id=2095941): topology aware hints to prefer to keep dns traffic within a zone [#322](https://github.com/openshift/cluster-dns-operator/pull/322) * [Bug 2093236](https://bugzilla.redhat.com/show_bug.cgi?id=2093236): propagate retry request for progressing updates [#325](https://github.com/openshift/cluster-dns-operator/pull/325) * [Bug 2061244](https://bugzilla.redhat.com/show_bug.cgi?id=2061244): desiredDNSDaemonSet: Allow autoscaler to evict [#320](https://github.com/openshift/cluster-dns-operator/pull/320) * [Bug 2037190](https://bugzilla.redhat.com/show_bug.cgi?id=2037190): Skip frequent updates to progressing and degraded conditions to prevent status flaps [#318](https://github.com/openshift/cluster-dns-operator/pull/318) * [NE-755](https://issues.redhat.com/browse/NE-755): Support CoreDNS forwarding DNS requests over TLS [#314](https://github.com/openshift/cluster-dns-operator/pull/314) * [AUTH-182](https://issues.redhat.com/browse/AUTH-182): manifests/deployment: comply to restricted pod security level [#319](https://github.com/openshift/cluster-dns-operator/pull/319) * NE-815 Extract test Corefiles inside DNS ConfigMap test to individual files [#315](https://github.com/openshift/cluster-dns-operator/pull/315) * Added gcs278 to OWNERS [#312](https://github.com/openshift/cluster-dns-operator/pull/312) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/ab6f33b3d2b388c3bc804f5e7aa0dedb8207396f...09a1de9faff75611ce9bdbfc472f052159780922) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/4bf4f66a77b9149d92496b439f14bb9306d1f19c) * [OCPBUGS-35501](https://issues.redhat.com/browse/OCPBUGS-35501): return errors in wait-for-ceo [#1277](https://github.com/openshift/cluster-etcd-operator/pull/1277) * [OCPBUGS-32001](https://issues.redhat.com/browse/OCPBUGS-32001): update golang x net [#1256](https://github.com/openshift/cluster-etcd-operator/pull/1256) * [OCPBUGS-30914](https://issues.redhat.com/browse/OCPBUGS-30914): Replace nodelister with master nodelister everywhere [#1224](https://github.com/openshift/cluster-etcd-operator/pull/1224) * [OCPBUGS-30938](https://issues.redhat.com/browse/OCPBUGS-30938): fix panic in health check timeouts [#1228](https://github.com/openshift/cluster-etcd-operator/pull/1228) * [OCPBUGS-27776](https://issues.redhat.com/browse/OCPBUGS-27776): [4.13] Remove z-upgrades from UpgradeBackupController [#1185](https://github.com/openshift/cluster-etcd-operator/pull/1185) * [OCPBUGS-23151](https://issues.redhat.com/browse/OCPBUGS-23151): relax readiness to local serializable requests [#1156](https://github.com/openshift/cluster-etcd-operator/pull/1156) * [OCPBUGS-21127](https://issues.redhat.com/browse/OCPBUGS-21127): fixing CVE-2023-39325 by updating dependencies [#1148](https://github.com/openshift/cluster-etcd-operator/pull/1148) * [OCPBUGS-20100](https://issues.redhat.com/browse/OCPBUGS-20100): [4.12] Backports of backup/restore fixes [#1137](https://github.com/openshift/cluster-etcd-operator/pull/1137) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#1128](https://github.com/openshift/cluster-etcd-operator/pull/1128) * [OCPBUGS-17808](https://issues.redhat.com/browse/OCPBUGS-17808): reset snapshot default counts to avoid file already lo… [#1100](https://github.com/openshift/cluster-etcd-operator/pull/1100) * [OCPBUGS-12473](https://issues.redhat.com/browse/OCPBUGS-12473): Fix Flake TestAttemptToScaleDown/scale_down_only_by_one_machine_at_a_time [#1046](https://github.com/openshift/cluster-etcd-operator/pull/1046) * [OCPBUGS-7830](https://issues.redhat.com/browse/OCPBUGS-7830): increase live/ready timeout and failure thresholds [#1011](https://github.com/openshift/cluster-etcd-operator/pull/1011) * Update reviewers and approvers [#987](https://github.com/openshift/cluster-etcd-operator/pull/987) * [OCPBUGS-7409](https://issues.redhat.com/browse/OCPBUGS-7409): set default timeouts in etcdcli [#1005](https://github.com/openshift/cluster-etcd-operator/pull/1005) * [OCPBUGS-6935](https://issues.redhat.com/browse/OCPBUGS-6935): add dedicated success status for bootstrap removal [#999](https://github.com/openshift/cluster-etcd-operator/pull/999) * [OCPBUGS-7373](https://issues.redhat.com/browse/OCPBUGS-7373): [release-4.12] fail early on missing node status envs [#1004](https://github.com/openshift/cluster-etcd-operator/pull/1004) * [OCPBUGS-6898](https://issues.redhat.com/browse/OCPBUGS-6898): updating library-go for CVE-2022-41717 [#998](https://github.com/openshift/cluster-etcd-operator/pull/998) * [OCPBUGS-5762](https://issues.redhat.com/browse/OCPBUGS-5762): should not scale-down when all members are healthy [#984](https://github.com/openshift/cluster-etcd-operator/pull/984) * [OCPBUGS-4743](https://issues.redhat.com/browse/OCPBUGS-4743): only allow TLS1.2/1.3 ciphersuites in etcd and CEO [#971](https://github.com/openshift/cluster-etcd-operator/pull/971) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#965](https://github.com/openshift/cluster-etcd-operator/pull/965) * [OCPBUGS-4193](https://issues.redhat.com/browse/OCPBUGS-4193): later bootstrap removal in delayed scaling [#967](https://github.com/openshift/cluster-etcd-operator/pull/967) * [OCPBUGS-2918](https://issues.redhat.com/browse/OCPBUGS-2918): update prometheus alerts [#958](https://github.com/openshift/cluster-etcd-operator/pull/958) * library-go vendoring for installer cmd timeout [#950](https://github.com/openshift/cluster-etcd-operator/pull/950) * doc access clusterbot resources [#948](https://github.com/openshift/cluster-etcd-operator/pull/948) * doc fixes for prometheus metrics [#933](https://github.com/openshift/cluster-etcd-operator/pull/933) * Hypershift: Stop trying to apply etcd prometheusrule [#917](https://github.com/openshift/cluster-etcd-operator/pull/917) * trt-589 library-go bump [#941](https://github.com/openshift/cluster-etcd-operator/pull/941) * [OCPBUGS-1329](https://issues.redhat.com/browse/OCPBUGS-1329): Add niceness to important etcd processes [#938](https://github.com/openshift/cluster-etcd-operator/pull/938) * [OCPBUGS-1130](https://issues.redhat.com/browse/OCPBUGS-1130): increase etcdGRPCRequestsSlow thresholds [#932](https://github.com/openshift/cluster-etcd-operator/pull/932) * Remove quorum guard pod after the pod is removed from the cluster [#923](https://github.com/openshift/cluster-etcd-operator/pull/923) * [Bug 2046335](https://bugzilla.redhat.com/show_bug.cgi?id=2046335): fix cert rotation on IP changes [#921](https://github.com/openshift/cluster-etcd-operator/pull/921) * [OCPBUGS-675](https://issues.redhat.com/browse/OCPBUGS-675): preserve log message on failures [#922](https://github.com/openshift/cluster-etcd-operator/pull/922) * [OCPBUGS-675](https://issues.redhat.com/browse/OCPBUGS-675): add nil check in checkSingleMemberHealth() [#918](https://github.com/openshift/cluster-etcd-operator/pull/918) * Revert "Adding cluster-etcd-operator sub command: ensure-env" [#914](https://github.com/openshift/cluster-etcd-operator/pull/914) * Set default container in etcd [#910](https://github.com/openshift/cluster-etcd-operator/pull/910) * Adding cluster-etcd-operator sub command: ensure-env [#726](https://github.com/openshift/cluster-etcd-operator/pull/726) * [Bug 2089199](https://bugzilla.redhat.com/show_bug.cgi?id=2089199): Remove etcd dashboards from Hypershift [#897](https://github.com/openshift/cluster-etcd-operator/pull/897) * vendor upstream alerts [#894](https://github.com/openshift/cluster-etcd-operator/pull/894) * Exits with a non-zero code in case Etcd backup fails [#871](https://github.com/openshift/cluster-etcd-operator/pull/871) * [Bug 2106044](https://bugzilla.redhat.com/show_bug.cgi?id=2106044): Fix etcd minor upgrade backup [#884](https://github.com/openshift/cluster-etcd-operator/pull/884) * [Bug 2097073](https://bugzilla.redhat.com/show_bug.cgi?id=2097073): vendor upstream alerts [#890](https://github.com/openshift/cluster-etcd-operator/pull/890) * fixing metrics proxy log spam [#883](https://github.com/openshift/cluster-etcd-operator/pull/883) * Updating cluster-etcd-operator images to be consistent with ART [#875](https://github.com/openshift/cluster-etcd-operator/pull/875) * remove etcd-health-monitor sidecar from pod manifest [#873](https://github.com/openshift/cluster-etcd-operator/pull/873) * fixing unit test health flakes with tolerance [#874](https://github.com/openshift/cluster-etcd-operator/pull/874) * [Bug 1884568](https://bugzilla.redhat.com/show_bug.cgi?id=1884568): Add etcd pod liveness probe [#869](https://github.com/openshift/cluster-etcd-operator/pull/869) * Add documentation for profiling CEO [#868](https://github.com/openshift/cluster-etcd-operator/pull/868) * [Bug 2097431](https://bugzilla.redhat.com/show_bug.cgi?id=2097431): fix degraded missing cluster version [#857](https://github.com/openshift/cluster-etcd-operator/pull/857) * [Bug 2093819](https://bugzilla.redhat.com/show_bug.cgi?id=2093819): add timeout to health checks [#862](https://github.com/openshift/cluster-etcd-operator/pull/862) * [Bug 2095703](https://bugzilla.redhat.com/show_bug.cgi?id=2095703): fix multi-address member removal [#858](https://github.com/openshift/cluster-etcd-operator/pull/858) * [Bug 2092880](https://bugzilla.redhat.com/show_bug.cgi?id=2092880): avoid extrapolation in leaderhip alert [#851](https://github.com/openshift/cluster-etcd-operator/pull/851) * [Bug 2092395](https://bugzilla.redhat.com/show_bug.cgi?id=2092395): etcdHighNumberOfFailedGRPCRequests alerts with wrong results [#843](https://github.com/openshift/cluster-etcd-operator/pull/843) * [Bug 2064024](https://bugzilla.redhat.com/show_bug.cgi?id=2064024): Update library-go to 80f9619c2 [#816](https://github.com/openshift/cluster-etcd-operator/pull/816) * [Bug 2090929](https://bugzilla.redhat.com/show_bug.cgi?id=2090929): cluster-backup.sh script has a conflict to use the '/etc/kubernetes/static-pod-certs' folder if a custom API certificate is defined [#845](https://github.com/openshift/cluster-etcd-operator/pull/845) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): defines a startupProbe for etcd container [#840](https://github.com/openshift/cluster-etcd-operator/pull/840) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): brings back initial delay seconds to the previous value [#839](https://github.com/openshift/cluster-etcd-operator/pull/839) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): increase initial delay seconds to match the discovery timeout [#838](https://github.com/openshift/cluster-etcd-operator/pull/838) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): removes TestScalingUpAndDownSingleNode [#813](https://github.com/openshift/cluster-etcd-operator/pull/813) * [Bug 2073901](https://bugzilla.redhat.com/show_bug.cgi?id=2073901): revisit defrag controller degradation [#812](https://github.com/openshift/cluster-etcd-operator/pull/812) * [Bug 2087983](https://bugzilla.redhat.com/show_bug.cgi?id=2087983): remove etcd_perf before restore [#823](https://github.com/openshift/cluster-etcd-operator/pull/823) * Updating cluster-etcd-operator images to be consistent with ART [#831](https://github.com/openshift/cluster-etcd-operator/pull/831) * [Bug 2012065](https://bugzilla.redhat.com/show_bug.cgi?id=2012065): Add summary to etcd alert rules [#822](https://github.com/openshift/cluster-etcd-operator/pull/822) * [Bug 2067738](https://bugzilla.redhat.com/show_bug.cgi?id=2067738): update prometheus client [#821](https://github.com/openshift/cluster-etcd-operator/pull/821) * [Bug 2061496](https://bugzilla.redhat.com/show_bug.cgi?id=2061496): Adding message to ControllerStarted:RecentBackup condition [#760](https://github.com/openshift/cluster-etcd-operator/pull/760) * [Bug 2063183](https://bugzilla.redhat.com/show_bug.cgi?id=2063183): Upping defrag timeout to 1 minute [#762](https://github.com/openshift/cluster-etcd-operator/pull/762) * manifests/deployment: comply to restricted pod security level [#802](https://github.com/openshift/cluster-etcd-operator/pull/802) * test utils changes the way endpoints data key is calculated [#814](https://github.com/openshift/cluster-etcd-operator/pull/814) * [Bug 2077160](https://bugzilla.redhat.com/show_bug.cgi?id=2077160): Adding Thomas to reviewers and me to approvers [#815](https://github.com/openshift/cluster-etcd-operator/pull/815) * [Bug 2079724](https://bugzilla.redhat.com/show_bug.cgi?id=2079724): manually disable defrag [#798](https://github.com/openshift/cluster-etcd-operator/pull/798) * fire an event on successfull member removal [#808](https://github.com/openshift/cluster-etcd-operator/pull/808) * Scale up new members as learners [#758](https://github.com/openshift/cluster-etcd-operator/pull/758) * clustermemberremovalcontroller must examine cluster health before removing a member [#805](https://github.com/openshift/cluster-etcd-operator/pull/805) * [Bug 2077833](https://bugzilla.redhat.com/show_bug.cgi?id=2077833): add more logging [#800](https://github.com/openshift/cluster-etcd-operator/pull/800) * [Bug 2076793](https://bugzilla.redhat.com/show_bug.cgi?id=2076793): pkg/operator/upgradebackupcontroller: Pivot from Failing to ReleaseAccepted [#799](https://github.com/openshift/cluster-etcd-operator/pull/799) * [Bug 2076831](https://bugzilla.redhat.com/show_bug.cgi?id=2076831): fixing client readyz leak [#796](https://github.com/openshift/cluster-etcd-operator/pull/796) * exports common functions used by the scaling controllers [#795](https://github.com/openshift/cluster-etcd-operator/pull/795) * introduces MachineDeletionHooksController [#781](https://github.com/openshift/cluster-etcd-operator/pull/781) * ClusterMemberController adds members whose machines are not pending deletion [#790](https://github.com/openshift/cluster-etcd-operator/pull/790) * Update owners with new team members [#792](https://github.com/openshift/cluster-etcd-operator/pull/792) * member removal part two [#779](https://github.com/openshift/cluster-etcd-operator/pull/779) * adds attemptToRemoveLearningMember to the cluster member removal controller [#791](https://github.com/openshift/cluster-etcd-operator/pull/791) * [Bug 2063831](https://bugzilla.redhat.com/show_bug.cgi?id=2063831): Replace quorumguard and add readyz server [#789](https://github.com/openshift/cluster-etcd-operator/pull/789) * [Bug 2074544](https://bugzilla.redhat.com/show_bug.cgi?id=2074544): revert #784 and #780 to fix ipv6 [#786](https://github.com/openshift/cluster-etcd-operator/pull/786) * [Bug 2075015](https://bugzilla.redhat.com/show_bug.cgi?id=2075015): Revert "replace quorumguard and add readyz server" [#787](https://github.com/openshift/cluster-etcd-operator/pull/787) * no pending on etcdHighNumberOfLeaderChanges 1st 1h [#783](https://github.com/openshift/cluster-etcd-operator/pull/783) * [Bug 2063831](https://bugzilla.redhat.com/show_bug.cgi?id=2063831): replace quorumguard and add readyz server [#763](https://github.com/openshift/cluster-etcd-operator/pull/763) * adds attemptToRemoveLearningMember to the cluster member removal controller [#784](https://github.com/openshift/cluster-etcd-operator/pull/784) * [Bug 2053596](https://bugzilla.redhat.com/show_bug.cgi?id=2053596): Increase IBMCloud VPC heartbeat timeout to 500ms and leader election timeout to 2500ms [#759](https://github.com/openshift/cluster-etcd-operator/pull/759) * ClusterMemberController adds members whose machines are not pending deletion [#780](https://github.com/openshift/cluster-etcd-operator/pull/780) * refactors the member removal controller [#782](https://github.com/openshift/cluster-etcd-operator/pull/782) * Revert "Merge pull request #768 from p0lyn0mial/member-removal-part-two" [#778](https://github.com/openshift/cluster-etcd-operator/pull/778) * member removal part two [#768](https://github.com/openshift/cluster-etcd-operator/pull/768) * turn on initial corruption check [#770](https://github.com/openshift/cluster-etcd-operator/pull/770) * adds helpers functions used by the vertical scaling controllers [#769](https://github.com/openshift/cluster-etcd-operator/pull/769) * introduces ReadDesiredControlPlaneReplicasCount [#767](https://github.com/openshift/cluster-etcd-operator/pull/767) * [Bug 2057642](https://bugzilla.redhat.com/show_bug.cgi?id=2057642): Change fsync degraded reason to CamelCase [#756](https://github.com/openshift/cluster-etcd-operator/pull/756) * [Bug 2057644](https://bugzilla.redhat.com/show_bug.cgi?id=2057644): Fix FSyncController degraded latch [#754](https://github.com/openshift/cluster-etcd-operator/pull/754) * an e2e test for checking scaling up and down by one master node [#740](https://github.com/openshift/cluster-etcd-operator/pull/740) * adds member removal controller [#737](https://github.com/openshift/cluster-etcd-operator/pull/737) * [Bug 2053596](https://bugzilla.redhat.com/show_bug.cgi?id=2053596): Increasing election timeout for IBMCloud VPC [#746](https://github.com/openshift/cluster-etcd-operator/pull/746) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#750](https://github.com/openshift/cluster-etcd-operator/pull/750) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#748](https://github.com/openshift/cluster-etcd-operator/pull/748) * changes the signature of the MemberRemove method to accept a memberID (uint64) not a Name (string) [#741](https://github.com/openshift/cluster-etcd-operator/pull/741) * [Bug 2052270](https://bugzilla.redhat.com/show_bug.cgi?id=2052270): pkg/operator/metriccontroller/fsync_controller: Fix "treshold" -> "thresholds" typos [#743](https://github.com/openshift/cluster-etcd-operator/pull/743) * an e2e test for checking scaling up by one master node [#732](https://github.com/openshift/cluster-etcd-operator/pull/732) * wait for other installers to finish [#736](https://github.com/openshift/cluster-etcd-operator/pull/736) * [Bug 2042501](https://bugzilla.redhat.com/show_bug.cgi?id=2042501): bump library-go [#729](https://github.com/openshift/cluster-etcd-operator/pull/729) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/e6fbce54d19b30d069ffa558d09529ca89aaa1fa...4bf4f66a77b9149d92496b439f14bb9306d1f19c) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/77fd1a927087cd73330897a63016c23614ac3201) * [OCPBUGS-36033](https://issues.redhat.com/browse/OCPBUGS-36033): go.*,vendor: bump go-retryablehttp [#1071](https://github.com/openshift/cluster-image-registry-operator/pull/1071) * [OCPBUGS-22125](https://issues.redhat.com/browse/OCPBUGS-22125): increase storage account key cache expiration [#939](https://github.com/openshift/cluster-image-registry-operator/pull/939) * [OCPBUGS-20684](https://issues.redhat.com/browse/OCPBUGS-20684): mitigate effects of rapid reset [#947](https://github.com/openshift/cluster-image-registry-operator/pull/947) * [OCPBUGS-8491](https://issues.redhat.com/browse/OCPBUGS-8491): bump aws-sdk-go [#846](https://github.com/openshift/cluster-image-registry-operator/pull/846) * [OCPBUGS-6517](https://issues.redhat.com/browse/OCPBUGS-6517): OpenStack: Add support for Proxy [#834](https://github.com/openshift/cluster-image-registry-operator/pull/834) * [OCPBUGS-4678](https://issues.redhat.com/browse/OCPBUGS-4678): Bump aws-sdk-go to v1.44.145 [#822](https://github.com/openshift/cluster-image-registry-operator/pull/822) * [OCPBUGS-5154](https://issues.redhat.com/browse/OCPBUGS-5154): swift: Retry connecting to OpenStack [#826](https://github.com/openshift/cluster-image-registry-operator/pull/826) * [OCPBUGS-3175](https://issues.redhat.com/browse/OCPBUGS-3175): Bump gophercloud [#812](https://github.com/openshift/cluster-image-registry-operator/pull/812) * add myself to OWNERS [#813](https://github.com/openshift/cluster-image-registry-operator/pull/813) * [IR-295](https://issues.redhat.com/browse/IR-295): upgrade to Go 1.19 [#805](https://github.com/openshift/cluster-image-registry-operator/pull/805) * [IR-298](https://issues.redhat.com/browse/IR-298): Bump k8s to 1.25.2 [#803](https://github.com/openshift/cluster-image-registry-operator/pull/803) * [OCPBUGS-1717](https://issues.redhat.com/browse/OCPBUGS-1717): bump aws-go-sdk, adding support for me-central-1 [#800](https://github.com/openshift/cluster-image-registry-operator/pull/800) * Bug OCPBUGS-716: Add support for kube event recorder [#798](https://github.com/openshift/cluster-image-registry-operator/pull/798) * [Bug 2093440](https://bugzilla.redhat.com/show_bug.cgi?id=2093440): Use actualDaemonSet for SetDaemonSetGeneration [#790](https://github.com/openshift/cluster-image-registry-operator/pull/790) * [Bug 2093440](https://bugzilla.redhat.com/show_bug.cgi?id=2093440): Add progressing condition for node-ca daemon set [#789](https://github.com/openshift/cluster-image-registry-operator/pull/789) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#788](https://github.com/openshift/cluster-image-registry-operator/pull/788) * [Bug 2083466](https://bugzilla.redhat.com/show_bug.cgi?id=2083466): Disable dualstack when it is not available [#784](https://github.com/openshift/cluster-image-registry-operator/pull/784) * [IR-234](https://issues.redhat.com/browse/IR-234): Custom certificate authorities for S3 [#759](https://github.com/openshift/cluster-image-registry-operator/pull/759) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#782](https://github.com/openshift/cluster-image-registry-operator/pull/782) * Bump golangci-lint [#783](https://github.com/openshift/cluster-image-registry-operator/pull/783) * Add reviewers [#781](https://github.com/openshift/cluster-image-registry-operator/pull/781) * [Bug 2009352](https://bugzilla.redhat.com/show_bug.cgi?id=2009352): IR-253: add prometheus rules for image registry operations metrics [#769](https://github.com/openshift/cluster-image-registry-operator/pull/769) * [Bug 2082492](https://bugzilla.redhat.com/show_bug.cgi?id=2082492): IBMCloud: Add admin permissions to CR [#776](https://github.com/openshift/cluster-image-registry-operator/pull/776) * [Bug 2009352](https://bugzilla.redhat.com/show_bug.cgi?id=2009352): IR-120: Add prometheus rules for image stream tags rules [#772](https://github.com/openshift/cluster-image-registry-operator/pull/772) * [Bug 2065224](https://bugzilla.redhat.com/show_bug.cgi?id=2065224): Fix cloudfront middleware configuration [#764](https://github.com/openshift/cluster-image-registry-operator/pull/764) * [Bug 2065552](https://bugzilla.redhat.com/show_bug.cgi?id=2065552): Bump aws-sdk-go to 1.44.4 [#771](https://github.com/openshift/cluster-image-registry-operator/pull/771) * Fix storageClass name when creating PVC [#773](https://github.com/openshift/cluster-image-registry-operator/pull/773) * [Bug 2007611](https://bugzilla.redhat.com/show_bug.cgi?id=2007611): Merge S3 CA bundle with system CA bundle [#770](https://github.com/openshift/cluster-image-registry-operator/pull/770) * [IR-195](https://issues.redhat.com/browse/IR-195): set pod topology spread constraint [#730](https://github.com/openshift/cluster-image-registry-operator/pull/730) * [IR-198](https://issues.redhat.com/browse/IR-198): Add default storage type for Nutanix platform [#760](https://github.com/openshift/cluster-image-registry-operator/pull/760) * [IR-120](https://issues.redhat.com/browse/IR-120): Implementing metrics for ImageStreams [#768](https://github.com/openshift/cluster-image-registry-operator/pull/768) * [Bug 2067995](https://bugzilla.redhat.com/show_bug.cgi?id=2067995): Deployment annotations, runtimeClassName override and fs policy change [#763](https://github.com/openshift/cluster-image-registry-operator/pull/763) * [Bug 2015459](https://bugzilla.redhat.com/show_bug.cgi?id=2015459): Enable health check for storage driver [#732](https://github.com/openshift/cluster-image-registry-operator/pull/732) * [Bug 2056519](https://bugzilla.redhat.com/show_bug.cgi?id=2056519): Enable enableHttpsTrafficOnly for Azure storage account [#756](https://github.com/openshift/cluster-image-registry-operator/pull/756) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#747](https://github.com/openshift/cluster-image-registry-operator/pull/747) * [Bug 1990125](https://bugzilla.redhat.com/show_bug.cgi?id=1990125): Retry on pruner failures [#754](https://github.com/openshift/cluster-image-registry-operator/pull/754) * [Bug 1992553](https://bugzilla.redhat.com/show_bug.cgi?id=1992553): Remove PrometheusRule [#750](https://github.com/openshift/cluster-image-registry-operator/pull/750) * [Bug 2048214](https://bugzilla.redhat.com/show_bug.cgi?id=2048214): Alibaba: adding permissions for using KMS encryption [#751](https://github.com/openshift/cluster-image-registry-operator/pull/751) * [Bug 2048186](https://bugzilla.redhat.com/show_bug.cgi?id=2048186): Fix panic in finalizer handler [#745](https://github.com/openshift/cluster-image-registry-operator/pull/745) * [Bug 2015800](https://bugzilla.redhat.com/show_bug.cgi?id=2015800): fix(ibmcos): Resource key validation + update status granularly [#742](https://github.com/openshift/cluster-image-registry-operator/pull/742) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/80540e65a4b8fbed7996fc6a0773141e23d97867...77fd1a927087cd73330897a63016c23614ac3201) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/85e2d05159b7b4b2f16c8a95815c7d9927b68597) * [OCPBUGS-43703](https://issues.redhat.com/browse/OCPBUGS-43703): Add e2e test for duplicate Transfer-Encoding headers [#1158](https://github.com/openshift/cluster-ingress-operator/pull/1158) * [OCPBUGS-43703](https://issues.redhat.com/browse/OCPBUGS-43703): Add alert for RFC 7230 violation in Transfer-Encoding headers [#1162](https://github.com/openshift/cluster-ingress-operator/pull/1162) * [OCPBUGS-35454](https://issues.redhat.com/browse/OCPBUGS-35454): internal service changed fix target port logic [#1092](https://github.com/openshift/cluster-ingress-operator/pull/1092) * [OCPBUGS-35304](https://issues.redhat.com/browse/OCPBUGS-35304): TestHostNetworkPortBinding: Delete t.Parallel() [#1083](https://github.com/openshift/cluster-ingress-operator/pull/1083) * [OCPBUGS-35027](https://issues.redhat.com/browse/OCPBUGS-35027): Don't add clientca-configmap finalizer if deleting [#1080](https://github.com/openshift/cluster-ingress-operator/pull/1080) * [OCPBUGS-34888](https://issues.redhat.com/browse/OCPBUGS-34888): desiredRouterDeployment: Set HostPort if needed [#1076](https://github.com/openshift/cluster-ingress-operator/pull/1076) * [OCPBUGS-34757](https://issues.redhat.com/browse/OCPBUGS-34757): Avoid spurious updates for internalTrafficPolicy [#1070](https://github.com/openshift/cluster-ingress-operator/pull/1070) * [OCPBUGS-34110](https://issues.redhat.com/browse/OCPBUGS-34110): Avoid spurious updates for scope in IngressClass [#1056](https://github.com/openshift/cluster-ingress-operator/pull/1056) * [OCPBUGS-34548](https://issues.redhat.com/browse/OCPBUGS-34548): Use centos7 tag for quay.io/centos7/httpd-24-centos7 image [#1068](https://github.com/openshift/cluster-ingress-operator/pull/1068) * [OCPBUGS-20765](https://issues.redhat.com/browse/OCPBUGS-20765): Bump golang.org/x/net for CVE-2023-44487 [#988](https://github.com/openshift/cluster-ingress-operator/pull/988) * [OCPBUGS-22432](https://issues.redhat.com/browse/OCPBUGS-22432): test/e2e: Don't use openshift/origin-node [#992](https://github.com/openshift/cluster-ingress-operator/pull/992) * [NE-1372](https://issues.redhat.com/browse/NE-1372): Add support for AWS shared VPC in another account #966 [#971](https://github.com/openshift/cluster-ingress-operator/pull/971) * [OCPBUGS-13049](https://issues.redhat.com/browse/OCPBUGS-13049): bump controller-runtime to fix the multi namespace cache indexing [#922](https://github.com/openshift/cluster-ingress-operator/pull/922) * [OCPBUGS-15467](https://issues.redhat.com/browse/OCPBUGS-15467): Add missing AWS permission for ListTagsForResources [#954](https://github.com/openshift/cluster-ingress-operator/pull/954) * [OCPBUGS-16620](https://issues.redhat.com/browse/OCPBUGS-16620): Deflake TestRouterCompressionOperation [#963](https://github.com/openshift/cluster-ingress-operator/pull/963) * [OCPBUGS-16621](https://issues.redhat.com/browse/OCPBUGS-16621): Fix TestClientTLS flakes [#964](https://github.com/openshift/cluster-ingress-operator/pull/964) * [OCPBUGS-15644](https://issues.redhat.com/browse/OCPBUGS-15644): Update TestAWSELBConnectionIdleTimeout to not use wildcard DNS record [#959](https://github.com/openshift/cluster-ingress-operator/pull/959) * [OCPBUGS-14454](https://issues.redhat.com/browse/OCPBUGS-14454), [OCPBUGS-14455](https://issues.redhat.com/browse/OCPBUGS-14455): Handle mTLS CRLs, and fix accidental CRL duplication [#941](https://github.com/openshift/cluster-ingress-operator/pull/941) * [OCPBUGS-12464](https://issues.redhat.com/browse/OCPBUGS-12464): Target metrics port by name in internal service [#910](https://github.com/openshift/cluster-ingress-operator/pull/910) * [OCPBUGS-3517](https://issues.redhat.com/browse/OCPBUGS-3517): Ingress controller should not have affinity policy in single-replica clusters [#857](https://github.com/openshift/cluster-ingress-operator/pull/857) * [OCPBUGS-2775](https://issues.redhat.com/browse/OCPBUGS-2775): Changed "name" label to "shard_name" of route_metrics_controller_routes_per_shard metric [#851](https://github.com/openshift/cluster-ingress-operator/pull/851) * [OCPBUGS-2848](https://issues.redhat.com/browse/OCPBUGS-2848): Support matchExpressions selectors with route metrics [#850](https://github.com/openshift/cluster-ingress-operator/pull/850) * [Bug 2117524](https://bugzilla.redhat.com/show_bug.cgi?id=2117524): Update CRLs when they expire [#828](https://github.com/openshift/cluster-ingress-operator/pull/828) * [OCPBUGS-853](https://issues.redhat.com/browse/OCPBUGS-853): certificate-publisher: Don't publish extraneous certificates [#824](https://github.com/openshift/cluster-ingress-operator/pull/824) * [Bug 1962502](https://bugzilla.redhat.com/show_bug.cgi?id=1962502): Add alerts for unmanaged Routes and Ingresses without IngressClassName [#823](https://github.com/openshift/cluster-ingress-operator/pull/823) * [NE-1071](https://issues.redhat.com/browse/NE-1071): Default HAProxy maxconn value to 50000 for OCP 4.12) [#836](https://github.com/openshift/cluster-ingress-operator/pull/836) * Updating ose-cluster-ingress-operator images to be consistent with ART [#834](https://github.com/openshift/cluster-ingress-operator/pull/834) * [OCPBUGS-2435](https://issues.redhat.com/browse/OCPBUGS-2435): TestRouterCompressionOperation: Nil-pointer fix [#843](https://github.com/openshift/cluster-ingress-operator/pull/843) * [OCPBUGS-2493](https://issues.redhat.com/browse/OCPBUGS-2493): Fix TestUnmanagedDNSToManagedDNSInternal E2E test race conditions [#845](https://github.com/openshift/cluster-ingress-operator/pull/845) * [CFE-478](https://issues.redhat.com/browse/CFE-478): Added support for exporting Route type and Routes per Shard metrics [#779](https://github.com/openshift/cluster-ingress-operator/pull/779) * [NE-975](https://issues.redhat.com/browse/NE-975): Use ingress config to set default LB type on AWS [#837](https://github.com/openshift/cluster-ingress-operator/pull/837) * [OCPBUGS-2429](https://issues.redhat.com/browse/OCPBUGS-2429): Fix TestReloadInterval min value test cases and race conditions [#842](https://github.com/openshift/cluster-ingress-operator/pull/842) * [OCPBUGS-2334](https://issues.redhat.com/browse/OCPBUGS-2334): Added nil check for service object on load balancer scope change [#839](https://github.com/openshift/cluster-ingress-operator/pull/839) * [NE-956](https://issues.redhat.com/browse/NE-956): Configurable LB Source Ranges - Functional Implementation [#817](https://github.com/openshift/cluster-ingress-operator/pull/817) * [Bug 2107462](https://bugzilla.redhat.com/show_bug.cgi?id=2107462): Update CGO_ENABLED=1 [#833](https://github.com/openshift/cluster-ingress-operator/pull/833) * [OCPBUGS-236](https://issues.redhat.com/browse/OCPBUGS-236): Bump openshift/api for reloadInterval fix [#830](https://github.com/openshift/cluster-ingress-operator/pull/830) * [OCPBUGS-1554](https://issues.redhat.com/browse/OCPBUGS-1554): Bump vendored k8s libraries to 1.25 [#829](https://github.com/openshift/cluster-ingress-operator/pull/829) * Enable switching of AWS CLB to NLB without deletion of IngressController object. [#790](https://github.com/openshift/cluster-ingress-operator/pull/790) * [Bug 2066560](https://bugzilla.redhat.com/show_bug.cgi?id=2066560): Make ingress clusteroperator progressing=true when router deployment is rolling out [#769](https://github.com/openshift/cluster-ingress-operator/pull/769) * Add IBM Cloud DNS support for Power VS [#819](https://github.com/openshift/cluster-ingress-operator/pull/819) * [OCPBUGS-1049](https://issues.redhat.com/browse/OCPBUGS-1049): test/e2e: Fix TestCanaryRoute security context [#826](https://github.com/openshift/cluster-ingress-operator/pull/826) * [Bug 2089482](https://bugzilla.redhat.com/show_bug.cgi?id=2089482): Do not use deprecated API field InfrastructureStatus.Platform [#814](https://github.com/openshift/cluster-ingress-operator/pull/814) * [NE-969](https://issues.redhat.com/browse/NE-969): Add IBM DNS Services provider support for private clusters [#796](https://github.com/openshift/cluster-ingress-operator/pull/796) * [DPP-10860](https://issues.redhat.com/browse/DPP-10860): Update Bugzilla links to "Networking" component [#815](https://github.com/openshift/cluster-ingress-operator/pull/815) * [OCPBUGS-368](https://issues.redhat.com/browse/OCPBUGS-368): Fix e2e tests for pod security violations [#818](https://github.com/openshift/cluster-ingress-operator/pull/818) * [NE-979](https://issues.redhat.com/browse/NE-979): add ReloadInterval TuningOption [#805](https://github.com/openshift/cluster-ingress-operator/pull/805) * [Bug 2101878](https://bugzilla.redhat.com/show_bug.cgi?id=2101878): Fix another issue with route status clearing race condition caused by not validating generation id [#811](https://github.com/openshift/cluster-ingress-operator/pull/811) * [Bug 2108708](https://bugzilla.redhat.com/show_bug.cgi?id=2108708): Disable auto creation of default ingress contoller for hypershift [#797](https://github.com/openshift/cluster-ingress-operator/pull/797) * [Bug 2101878](https://bugzilla.redhat.com/show_bug.cgi?id=2101878): Fix route status clearing race condition caused by using the cache [#794](https://github.com/openshift/cluster-ingress-operator/pull/794) * [Bug 2106086](https://bugzilla.redhat.com/show_bug.cgi?id=2106086): Bump openshift/api for healthCheckInterval fix [#804](https://github.com/openshift/cluster-ingress-operator/pull/804) * [Bug 2104481](https://bugzilla.redhat.com/show_bug.cgi?id=2104481): Allow PROXY protocol for the "Private" endpoint publishing strategy [#803](https://github.com/openshift/cluster-ingress-operator/pull/803) * add Ethany-RH to OWNERS [#800](https://github.com/openshift/cluster-ingress-operator/pull/800) * [Bug 2086887](https://bugzilla.redhat.com/show_bug.cgi?id=2086887): Add better debug logging to TestIngressOperatorCacheIsNotGlobal to help debug flakes [#793](https://github.com/openshift/cluster-ingress-operator/pull/793) * [Bug 2093462](https://bugzilla.redhat.com/show_bug.cgi?id=2093462): status: Watch clusteroperators [#714](https://github.com/openshift/cluster-ingress-operator/pull/714) * [Bug 2092042](https://bugzilla.redhat.com/show_bug.cgi?id=2092042): Bump vendored k8s libraries to 1.24 [#768](https://github.com/openshift/cluster-ingress-operator/pull/768) * [Bug 1944851](https://bugzilla.redhat.com/show_bug.cgi?id=1944851): Clear route status when an ingress controller is deleted or a route is un-admitted [#724](https://github.com/openshift/cluster-ingress-operator/pull/724) * [Bug 2094932](https://bugzilla.redhat.com/show_bug.cgi?id=2094932): Patching config.ingresses status requires patch permissions [#788](https://github.com/openshift/cluster-ingress-operator/pull/788) * [Bug 2097555](https://bugzilla.redhat.com/show_bug.cgi?id=2097555): Fix loadBalancerServiceAnnotationsChanged check and update [#783](https://github.com/openshift/cluster-ingress-operator/pull/783) * [Bug 2094932](https://bugzilla.redhat.com/show_bug.cgi?id=2094932): Ingress operator needs permission to list nodes [#785](https://github.com/openshift/cluster-ingress-operator/pull/785) * [Bug 2095229](https://bugzilla.redhat.com/show_bug.cgi?id=2095229): desiredRouterDeployment: Check for nil hostNetwork [#780](https://github.com/openshift/cluster-ingress-operator/pull/780) * [Bug 2094962](https://bugzilla.redhat.com/show_bug.cgi?id=2094962): Fix flakey logic in haproxy timeout tests [#775](https://github.com/openshift/cluster-ingress-operator/pull/775) * [Bug 2094932](https://bugzilla.redhat.com/show_bug.cgi?id=2094932): MGMT-10403: Set the `defaultPlacement` for none-platform SNO clusters installed before 4.11 [#767](https://github.com/openshift/cluster-ingress-operator/pull/767) * [Bug 2075671](https://bugzilla.redhat.com/show_bug.cgi?id=2075671): Add a e2e test that verifies the ingress operator's cache doesn't include everything [#764](https://github.com/openshift/cluster-ingress-operator/pull/764) * [Bug 2055601](https://bugzilla.redhat.com/show_bug.cgi?id=2055601): Add cluster tag to *.apps domain record [#737](https://github.com/openshift/cluster-ingress-operator/pull/737) * [Bug 2080379](https://bugzilla.redhat.com/show_bug.cgi?id=2080379): Group all e2e tests as parallel or serial [#756](https://github.com/openshift/cluster-ingress-operator/pull/756) * [Bug 2082428](https://bugzilla.redhat.com/show_bug.cgi?id=2082428): Add MicroSecond processing [#762](https://github.com/openshift/cluster-ingress-operator/pull/762) * [NE-408](https://issues.redhat.com/browse/NE-408): Allow configuring ELB connection idle timeout [#451](https://github.com/openshift/cluster-ingress-operator/pull/451) * [NE-825](https://issues.redhat.com/browse/NE-825): Update router to use random balancing algorithm once again [#727](https://github.com/openshift/cluster-ingress-operator/pull/727) * [Bug 2084433](https://bugzilla.redhat.com/show_bug.cgi?id=2084433): AUTH-133: assets: comply to pod security [#760](https://github.com/openshift/cluster-ingress-operator/pull/760) * [NE-577](https://issues.redhat.com/browse/NE-577): Support a Configurable ROUTER_MAX_CONNECTIONS in HAproxy [#735](https://github.com/openshift/cluster-ingress-operator/pull/735) * Add support for route53 in the us-isob-east-1 region + fix [#754](https://github.com/openshift/cluster-ingress-operator/pull/754) * [AUTH-184](https://issues.redhat.com/browse/AUTH-184): manifests/deployment: comply to restricted pod security level [#749](https://github.com/openshift/cluster-ingress-operator/pull/749) * [Bug 2081447](https://bugzilla.redhat.com/show_bug.cgi?id=2081447): `desiredRouterDeployment`: Fix for port defaulting [#753](https://github.com/openshift/cluster-ingress-operator/pull/753) * [Bug 2079468](https://bugzilla.redhat.com/show_bug.cgi?id=2079468): Enhance the waitForIngressControllerCondition for better CI results [#745](https://github.com/openshift/cluster-ingress-operator/pull/745) * [NE-882](https://issues.redhat.com/browse/NE-882): Set `ROUTER_DOMAIN` to enable route subdomain field [#674](https://github.com/openshift/cluster-ingress-operator/pull/674) * Specify host port for host networking strategy [#694](https://github.com/openshift/cluster-ingress-operator/pull/694) * [Bug 2007246](https://bugzilla.redhat.com/show_bug.cgi?id=2007246): Add allowPrivilegeEscalation to the router container [#743](https://github.com/openshift/cluster-ingress-operator/pull/743) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Determine number of replicas according to `DefaultPlacement` [#728](https://github.com/openshift/cluster-ingress-operator/pull/728) * [Bug 2076193](https://bugzilla.redhat.com/show_bug.cgi?id=2076193): Remove special-casing for default ingresscontroller probe parameters [#742](https://github.com/openshift/cluster-ingress-operator/pull/742) * [NE-585](https://issues.redhat.com/browse/NE-585): Make ROUTER_BACKEND_CHECK_INTERVAL configurable [#712](https://github.com/openshift/cluster-ingress-operator/pull/712) * BUG 2076984: test/e2e: add resilience to RBAC test teardown [#744](https://github.com/openshift/cluster-ingress-operator/pull/744) * BUG 2054200: Fix removing custom created service in openshift-ingress with same name [#707](https://github.com/openshift/cluster-ingress-operator/pull/707) * Add Nutanix platform [#730](https://github.com/openshift/cluster-ingress-operator/pull/730) * Revert "Bug 2007246: Ingress Controller does not set allowPrivilegeEscalation in the router deployment" [#741](https://github.com/openshift/cluster-ingress-operator/pull/741) * [Bug 2075671](https://bugzilla.redhat.com/show_bug.cgi?id=2075671): Fix k8s client cache object global inclusion and duplication. [#740](https://github.com/openshift/cluster-ingress-operator/pull/740) * [NE-781](https://issues.redhat.com/browse/NE-781): Allow users to tune kubelet probe timeouts [#736](https://github.com/openshift/cluster-ingress-operator/pull/736) * [Bug 2072106](https://bugzilla.redhat.com/show_bug.cgi?id=2072106): Fix test `Errorf` limitation in go 1.18 [#733](https://github.com/openshift/cluster-ingress-operator/pull/733) * [Bug 2071139](https://bugzilla.redhat.com/show_bug.cgi?id=2071139): add pod eviction permission [#734](https://github.com/openshift/cluster-ingress-operator/pull/734) * [Bug 2071139](https://bugzilla.redhat.com/show_bug.cgi?id=2071139): delete default ingress pod if it is scheduled where another router pod already is [#720](https://github.com/openshift/cluster-ingress-operator/pull/720) * [Bug 2069457](https://bugzilla.redhat.com/show_bug.cgi?id=2069457): Delete LoadBalancer-type service finalizer logic [#729](https://github.com/openshift/cluster-ingress-operator/pull/729) * [Bug 2021446](https://bugzilla.redhat.com/show_bug.cgi?id=2021446): Set canary status as unknown if not admitted to default ingress controller [#723](https://github.com/openshift/cluster-ingress-operator/pull/723) * [Bug 2066444](https://bugzilla.redhat.com/show_bug.cgi?id=2066444): update relatedObjects for clusteroperator status [#721](https://github.com/openshift/cluster-ingress-operator/pull/721) * [Bug 2007246](https://bugzilla.redhat.com/show_bug.cgi?id=2007246): Ingress Controller does not set allowPrivilegeEscalation in the router deployment [#718](https://github.com/openshift/cluster-ingress-operator/pull/718) * [Bug 1995953](https://bugzilla.redhat.com/show_bug.cgi?id=1995953): Add unit test for verifying router deployment env is always sorted [#715](https://github.com/openshift/cluster-ingress-operator/pull/715) * [Bug 2057762](https://bugzilla.redhat.com/show_bug.cgi?id=2057762): Set Upgradeable=False if default cert has no SAN [#708](https://github.com/openshift/cluster-ingress-operator/pull/708) * [Bug 2055470](https://bugzilla.redhat.com/show_bug.cgi?id=2055470): Normalize the AWS internal LB annotation value [#704](https://github.com/openshift/cluster-ingress-operator/pull/704) * BUG 2037447: Disable keepalive for canary probe [#701](https://github.com/openshift/cluster-ingress-operator/pull/701) * pkg/operator/controller/ingress/status_test: Fix `...-tag` -> `...-tags` test-case description [#700](https://github.com/openshift/cluster-ingress-operator/pull/700) * Added gcs278 to OWNERS [#698](https://github.com/openshift/cluster-ingress-operator/pull/698) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/805d0587ee481a7d7260d0b4ced0e6046cbfb7b6...85e2d05159b7b4b2f16c8a95815c7d9927b68597) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/9c3fdbdbbeccae35f8cab8e86012105fb7020a69) * [OCPBUGS-50880](https://issues.redhat.com/browse/OCPBUGS-50880): Increase waitForFallbackDegradedConditionTimeout [#1811](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1811) * [OCPBUGS-22736](https://issues.redhat.com/browse/OCPBUGS-22736): pkg/operator/configobserver: check that the serving certificate refer… [#1571](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1571) * : OCPBUGS-20855: bump library-go to include switch to HTTP/1.1 [#1574](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1574) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#1559](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1559) * [OCPBUGS-17139](https://issues.redhat.com/browse/OCPBUGS-17139): make webhook connection failure a warning in log [#1533](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1533) * [OCPBUGS-13346](https://issues.redhat.com/browse/OCPBUGS-13346): dont log jwt tokens [#1524](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1524) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): enable pod security admission for techpreview [#1440](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1440) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): make the bootstrap kube-apiserver honor cluster-wide featuregates [#1439](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1439) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#1445](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1445) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): guard controller: set an explicit hostname to avoid name collisions [#1416](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1416) * [OCPBUGS-3056](https://issues.redhat.com/browse/OCPBUGS-3056): CVE-2022-3259: enable HSTS for kube-apiserver [#1400](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1400) * [OCPBUGS-3037](https://issues.redhat.com/browse/OCPBUGS-3037): Allow ephemeral volumes in all SCCs [#1399](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1399) * [OCPBUGS-4299](https://issues.redhat.com/browse/OCPBUGS-4299): bootstrap-kube-apiserver: specify resources.requests [#1411](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1411) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#1407](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1407) * [OCPBUGS-3663](https://issues.redhat.com/browse/OCPBUGS-3663): Revert "turn PodSecurity admission to enforce restricted globally" [#1405](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1405) * [OCPBUGS-2071](https://issues.redhat.com/browse/OCPBUGS-2071): revert dev cert rotation [#1401](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1401) * [Bug 2094362](https://bugzilla.redhat.com/show_bug.cgi?id=2094362): Duplicate prometheus rules for API SLOs after upgrade [#1376](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1376) * library-go vendoring for installer cmd timeout [#1395](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1395) * serviceaccountissuer: fix case when default value is being used and not trusted after change [#1393](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1393) * bindata/assets/alerts/api-usage: Include removed_release in APIRemovedInNext*ReleaseInUse labels [#1367](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1367) * Fix typo in operator status serviceAccountIssuer name field [#1390](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1390) * [OCPBUGS-2198](https://issues.redhat.com/browse/OCPBUGS-2198): AUTH-309: Wire support for trusted service account issuers [#1381](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1381) * Update API alerts after recent bump to k8s 1.25 [#1382](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1382) * trt-589 bump library-go [#1383](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1383) * [Bug 2073220](https://bugzilla.redhat.com/show_bug.cgi?id=2073220): routes/status resources can leak sensitive data [#1375](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1375) * k8s 1.25.0 [#1374](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1374) * make PodSecurity admission enforce restricted globally [#1369](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1369) * Update library-go to enable external provider for OpenStack by default [#1370](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1370) * enable dev cert rotation [#1364](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1364) * [Bug 2101444](https://bugzilla.redhat.com/show_bug.cgi?id=2101444): specify resource=pod for PSa violation alerts [#1363](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1363) * [Bug 2100155](https://bugzilla.redhat.com/show_bug.cgi?id=2100155): Add new alert on Pod Security violations [#1361](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1361) * [Bug 2050407](https://bugzilla.redhat.com/show_bug.cgi?id=2050407): revert dev cert rotation [#1307](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1307) * [Bug 2100347](https://bugzilla.redhat.com/show_bug.cgi?id=2100347): Bump(openshift/library-go) latency profile observer, controller [#1360](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1360) * [Bug 2074031](https://bugzilla.redhat.com/show_bug.cgi?id=2074031): Support tuning GOGC within a limited range. [#1359](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1359) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): exempt build controller SA from PodSecurity admission [#1358](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1358) * [Bug 2067456](https://bugzilla.redhat.com/show_bug.cgi?id=2067456): OCP 4.11 should be firing APIRemovedInNextEUSReleaseInUse and APIRemovedInNextReleaseInUse for APIs removed in 1.25 [#1332](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1332) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): bump to k8s v0.24.0 [#1341](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1341) * Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1356](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1356) * Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile [#1328](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1328) * Update library-go to 80f9619c2 [#1354](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1354) * Fix debugging information [#1353](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1353) * Revert "Revert "Merge pull request #1338 from stlaz/more_restrictive_sccs"" [#1351](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1351) * Revert "Merge pull request #1338 from stlaz/more_restrictive_sccs" [#1350](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1350) * manifests/deployment: comply to restricted pod security level [#1348](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1348) * add more restrictive SCCs to the platform [#1338](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1338) * [rebase v1.24]: remove insecure-port from kas args [#1347](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1347) * remove enable-swagger-ui from default config [#1343](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1343) * [AUTH-2](https://issues.redhat.com/browse/AUTH-2): reenable PodSecurity on privileged level [#1308](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1308) * render apirequest count to reduce startup errors [#1336](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1336) * Bump(openshift/api): to get CSI changes [#1310](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1310) * Revert pull request 1309 [#1316](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1316) * fix label for max-in-flight-recorder [#1333](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1333) * [Bug 2063342](https://bugzilla.redhat.com/show_bug.cgi?id=2063342): vendor: bump library-go [#1330](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1330) * [Bug 2067384](https://bugzilla.redhat.com/show_bug.cgi?id=2067384): OCP 4.10 should be firing APIRemovedInNextEUSReleaseInUse for APIs removed in 1.25 [#1331](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1331) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#1323](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1323) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#1321](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1321) * [Bug 2052513](https://bugzilla.redhat.com/show_bug.cgi?id=2052513): degraded webhook conditions to errors [#1313](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1313) * [Bug 2052513](https://bugzilla.redhat.com/show_bug.cgi?id=2052513): disable webhook supportability during upgrade [#1309](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1309) * update library-go to get rapid installer pod fixes [#1300](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1300) * Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1299](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1299) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/9d85e4af2055f6eaba062856e022138b4618a258...9c3fdbdbbeccae35f8cab8e86012105fb7020a69) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/c3c07bebb7a644fe75bccd590fa088bcccd3749a) * [OCPBUGS-27068](https://issues.redhat.com/browse/OCPBUGS-27068): bump(library-go)=release-4.12 [#789](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/789) * [OCPBUGS-21048](https://issues.redhat.com/browse/OCPBUGS-21048): Bump deps to address CVE-2023-44487 [4.12] [#759](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/759) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#754](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/754) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): Enforce PSA when techpreview is enabled [#694](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/694) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): honor feature gates during bootstrapping [#695](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/695) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#699](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/699) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): Sync library go 4.12 [#676](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/676) * [OCPBUGS-4766](https://issues.redhat.com/browse/OCPBUGS-4766): limit cluster-policy-controller RBAC permissions [#675](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/675) * [OCPBUGS-4681](https://issues.redhat.com/browse/OCPBUGS-4681): remove unnecessary RBAC [#674](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/674) * [OCPBUGS-4303](https://issues.redhat.com/browse/OCPBUGS-4303): bootstrap-kube-controller-manager: specify resources.requests [#666](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/666) * library-go vendoring for installer cmd timeout [#659](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/659) * trt-589 bump library-go [#658](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/658) * Update go mod go version [#657](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/657) * add nodes.config.openshift.io to resource-graph [#655](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/655) * [Bug 2101843](https://bugzilla.redhat.com/show_bug.cgi?id=2101843): Label openshift-infra namespace as privileged [#647](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/647) * k8s 1.25.0 [#652](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/652) * [Bug 2118286](https://bugzilla.redhat.com/show_bug.cgi?id=2118286): always report and reconcile GarbageCollectorDegraded condition [#650](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/650) * [OCPBUGS-212](https://issues.redhat.com/browse/OCPBUGS-212): gc watcher should close connections after throwing away a client [#649](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/649) * Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART [#638](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/638) * [Bug 2001409](https://bugzilla.redhat.com/show_bug.cgi?id=2001409): add runbook urls to KCM-o alerts [#635](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/635) * Reset Go mod after openstack library-go bump [#642](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/642) * fix TestPodDisruptionBudgetAtLimitAlert by adding SecurityContext to a pod [#643](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/643) * Update library-go to set OpenStack provider to external [#641](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/641) * Make KCM-O conditionally dependent on monitoring stack availability [#639](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/639) * [Bug 2103940](https://bugzilla.redhat.com/show_bug.cgi?id=2103940): Decouple KCM-O's status from monitoring stack [#636](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/636) * [Bug 2099668](https://bugzilla.redhat.com/show_bug.cgi?id=2099668): introduce GC Watcher controller and add alerts for GarbageCollector [#623](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/623) * [Bug 2087684](https://bugzilla.redhat.com/show_bug.cgi?id=2087684): Reject transition from/to extreme latency profiles (default<->low) [#629](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/629) * [Bug 1902307](https://bugzilla.redhat.com/show_bug.cgi?id=1902307): Let vsphere-legacy-cloud-provider update node objects [#631](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/631) * [Bug 2097186](https://bugzilla.redhat.com/show_bug.cgi?id=2097186): add rbac roles for the podsecuritylabelsyncer even outside bootkube [#632](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/632) * [Bug 2053622](https://bugzilla.redhat.com/show_bug.cgi?id=2053622): PodDisruptionBudgetAtLimit should not alert when no app/pods exist [#630](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/630) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): bump to k8s v0.24.0 [#614](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/614) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): bindata/../namespace-openshift-infra: label namespace as privileged [#628](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/628) * [Bug 2086958](https://bugzilla.redhat.com/show_bug.cgi?id=2086958): e2e: Fix test pod disruption budget at limit alert [#627](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/627) * [Bug 2086959](https://bugzilla.redhat.com/show_bug.cgi?id=2086959): e2e: fix flaky TestLogLevel [#626](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/626) * Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART [#624](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/624) * Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile [#611](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/611) * add RBAC for PSa label syncing controller [#616](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/616) * Fix debugging information [#621](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/621) * manifests/deployment: comply to restricted pod security level [#619](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/619) * policy-controller RBAC: use the new leases API [#618](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/618) * [Bug 1918690](https://bugzilla.redhat.com/show_bug.cgi?id=1918690): update resource-graph to include current resources [#613](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/613) * Update OWNERS [#612](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/612) * Bump(openshift/api): to get CSI changes [#601](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/601) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#608](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/608) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#606](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/606) * Update to use configmapleases [#602](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/602) * [Bug 2029470](https://bugzilla.redhat.com/show_bug.cgi?id=2029470): update library-go to get rapid installer pod fixes [#597](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/597) * [Bug 2045872](https://bugzilla.redhat.com/show_bug.cgi?id=2045872): allow cluster-policy-controller to fallback to default cert [#594](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/594) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/252604c216eee7c3f38a621b8a1f1f4b28a1665b...c3c07bebb7a644fe75bccd590fa088bcccd3749a) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/48cd96c9dc27c801beff17fa5ea8c3dac374f10d) * [OCPBUGS-27067](https://issues.redhat.com/browse/OCPBUGS-27067): bump(library-go)=release-4.12 [#529](https://github.com/openshift/cluster-kube-scheduler-operator/pull/529) * [OCPBUGS-21239](https://issues.redhat.com/browse/OCPBUGS-21239): Sync deps CVE 2023 39325 4.12 [#505](https://github.com/openshift/cluster-kube-scheduler-operator/pull/505) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#499](https://github.com/openshift/cluster-kube-scheduler-operator/pull/499) * [OCPBUGS-14652](https://issues.redhat.com/browse/OCPBUGS-14652): disable debug pporf with unauthenticated port for 4.12 [#481](https://github.com/openshift/cluster-kube-scheduler-operator/pull/481) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard controller: set the readiness probe endpoint explicitly [#462](https://github.com/openshift/cluster-kube-scheduler-operator/pull/462) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): Sync library go 4.12 [#452](https://github.com/openshift/cluster-kube-scheduler-operator/pull/452) * [OCPBUGS-4292](https://issues.redhat.com/browse/OCPBUGS-4292): bootstrap-kube-scheduler: specify resources.requests [#448](https://github.com/openshift/cluster-kube-scheduler-operator/pull/448) * library-go vendoring for installer cmd timeout [#444](https://github.com/openshift/cluster-kube-scheduler-operator/pull/444) * Bump openshift/api to bring the MatchLabelKeysInPodTopologySpread enabled in TPNoUpgrade [#442](https://github.com/openshift/cluster-kube-scheduler-operator/pull/442) * trt-589 bump library-go [#441](https://github.com/openshift/cluster-kube-scheduler-operator/pull/441) * Bump go.mod golang version to 1.19 [#440](https://github.com/openshift/cluster-kube-scheduler-operator/pull/440) * k8s 1.25.0 [#438](https://github.com/openshift/cluster-kube-scheduler-operator/pull/438) * Describe how to increase log level of kube-scheduler instances [#436](https://github.com/openshift/cluster-kube-scheduler-operator/pull/436) * Updating ose-cluster-kube-scheduler-operator images to be consistent with ART [#433](https://github.com/openshift/cluster-kube-scheduler-operator/pull/433) * Update owners [#432](https://github.com/openshift/cluster-kube-scheduler-operator/pull/432) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Introduce sync unit test [#430](https://github.com/openshift/cluster-kube-scheduler-operator/pull/430) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): bump to k8s v0.24.0 [#420](https://github.com/openshift/cluster-kube-scheduler-operator/pull/420) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Fix bootstrap leader election config [#428](https://github.com/openshift/cluster-kube-scheduler-operator/pull/428) * [Bug 2064024](https://bugzilla.redhat.com/show_bug.cgi?id=2064024): README: fix scheduler configuration formatting [#427](https://github.com/openshift/cluster-kube-scheduler-operator/pull/427) * [Bug 2064024](https://bugzilla.redhat.com/show_bug.cgi?id=2064024): Update library-go to 80f9619c2 [#425](https://github.com/openshift/cluster-kube-scheduler-operator/pull/425) * Fix debugging information [#424](https://github.com/openshift/cluster-kube-scheduler-operator/pull/424) * manifests/deployment: comply to restricted pod security level [#421](https://github.com/openshift/cluster-kube-scheduler-operator/pull/421) * [rebase v1.24] remove --port flag from bootstrap [#422](https://github.com/openshift/cluster-kube-scheduler-operator/pull/422) * Update OWNERS [#419](https://github.com/openshift/cluster-kube-scheduler-operator/pull/419) * Updating ose-cluster-kube-scheduler-operator images to be consistent with ART [#406](https://github.com/openshift/cluster-kube-scheduler-operator/pull/406) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#417](https://github.com/openshift/cluster-kube-scheduler-operator/pull/417) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): Track static pod lifecycle [#415](https://github.com/openshift/cluster-kube-scheduler-operator/pull/415) * Update resourcelock to configmapleases [#412](https://github.com/openshift/cluster-kube-scheduler-operator/pull/412) * Bump(openshift/api): to get CSI changes [#411](https://github.com/openshift/cluster-kube-scheduler-operator/pull/411) * Do not wait for a port which is no longer used by the scheduler [#410](https://github.com/openshift/cluster-kube-scheduler-operator/pull/410) * update cert injection annotations to beta [#409](https://github.com/openshift/cluster-kube-scheduler-operator/pull/409) * [Bug 2029470](https://bugzilla.redhat.com/show_bug.cgi?id=2029470): update library-go to get rapid installer pod fixes [#407](https://github.com/openshift/cluster-kube-scheduler-operator/pull/407) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/0ed42ed800c1306e2367de60482fb72e3dd22e4a...48cd96c9dc27c801beff17fa5ea8c3dac374f10d) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/1a251f4d00c050404dc313c698279da435d08c07) * : OCPBUGS-21336: bump library-go to include switch to HTTP/1.1 [#98](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/98) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#82](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/82) * bindata: comply to restricted pod security level [#85](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/85) * manifests/deployment: comply to restricted pod security level [#83](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/83) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/7e1f56849bb85b870585b2b67566d29fd7767a31...1a251f4d00c050404dc313c698279da435d08c07) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/7b08a4de4a08da8cdb341948e0902395eb0da961) * [OCPBUGS-23486](https://issues.redhat.com/browse/OCPBUGS-23486): Filter non node CSRs in metrics [#220](https://github.com/openshift/cluster-machine-approver/pull/220) * [OCPBUGS-21430](https://issues.redhat.com/browse/OCPBUGS-21430): Bump x/net package to v0.18.0 [#214](https://github.com/openshift/cluster-machine-approver/pull/214) * [OCPBUGS-2621](https://issues.redhat.com/browse/OCPBUGS-2621): Update capi related CMA deployment ports [#173](https://github.com/openshift/cluster-machine-approver/pull/173) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#171](https://github.com/openshift/cluster-machine-approver/pull/171) * update to release.openshift.io/feature-set to match OCP 4.12 [#172](https://github.com/openshift/cluster-machine-approver/pull/172) * ignore case when checking csr hostnames [#170](https://github.com/openshift/cluster-machine-approver/pull/170) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#165](https://github.com/openshift/cluster-machine-approver/pull/165) * Set default container for log retrieval [#163](https://github.com/openshift/cluster-machine-approver/pull/163) * Define all flags before parsing flags [#161](https://github.com/openshift/cluster-machine-approver/pull/161) * [Bug 2047702](https://bugzilla.redhat.com/show_bug.cgi?id=2047702): Reconcile CSRs approved by other controllers [#160](https://github.com/openshift/cluster-machine-approver/pull/160) * Add techpreview manifests for CAPI machines [#159](https://github.com/openshift/cluster-machine-approver/pull/159) * [Bug 1978303](https://bugzilla.redhat.com/show_bug.cgi?id=1978303): update approve condition logic [#158](https://github.com/openshift/cluster-machine-approver/pull/158) * Allow to define several API groups [#157](https://github.com/openshift/cluster-machine-approver/pull/157) * Shrink csr_check_test.go size [#155](https://github.com/openshift/cluster-machine-approver/pull/155) * Make 'reject_expired' tests works in any time zone [#154](https://github.com/openshift/cluster-machine-approver/pull/154) * README.md: Elaborate a bit more on node join [#150](https://github.com/openshift/cluster-machine-approver/pull/150) * Updating ose-cluster-machine-approver images to be consistent with ART [#153](https://github.com/openshift/cluster-machine-approver/pull/153) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/95404c4edb82f0c9d5eb1d03786c81bd3a137384...7b08a4de4a08da8cdb341948e0902395eb0da961) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/ee4a20d4d0214c9c8fdacaede3482683436d36e0) * [OCPBUGS-35558](https://issues.redhat.com/browse/OCPBUGS-35558): label for infra nodes for metric cluster:capacity_cpu_cores:sum [#2383](https://github.com/openshift/cluster-monitoring-operator/pull/2383) * [OCPBUGS-28766](https://issues.redhat.com/browse/OCPBUGS-28766): fix generation of telemeter token hash [#2306](https://github.com/openshift/cluster-monitoring-operator/pull/2306) * [OCPBUGS-25389](https://issues.redhat.com/browse/OCPBUGS-25389): Add RHACM telemetry metric for 4.12 [#2204](https://github.com/openshift/cluster-monitoring-operator/pull/2204) * [OCPBUGS-21441](https://issues.redhat.com/browse/OCPBUGS-21441): Set the new --disable-http2 flag for prometheus-adapter to disable HTTP2 [#2148](https://github.com/openshift/cluster-monitoring-operator/pull/2148) * [OCPBUGS-22843](https://issues.redhat.com/browse/OCPBUGS-22843): [release-4.12] add RHACS telemetry metrics [#2140](https://github.com/openshift/cluster-monitoring-operator/pull/2140) * [OCPBUGS-21234](https://issues.redhat.com/browse/OCPBUGS-21234): upgrade golang.org/x/net to v0.17.0 [#2123](https://github.com/openshift/cluster-monitoring-operator/pull/2123) * [OCPBUGS-17125](https://issues.redhat.com/browse/OCPBUGS-17125): backport metrics collection profiles selector logic to prevent users from double scraping when they upgrade from 4.12 to 4.13 [#2047](https://github.com/openshift/cluster-monitoring-operator/pull/2047) * [OCPBUGS-16028](https://issues.redhat.com/browse/OCPBUGS-16028): Add the trusted CA bundle in UWM Prometheus pods [#2042](https://github.com/openshift/cluster-monitoring-operator/pull/2042) * [OCPBUGS-15473](https://issues.redhat.com/browse/OCPBUGS-15473): Limit the value of GOMAXPROCS on node-exporter to 4 [#2023](https://github.com/openshift/cluster-monitoring-operator/pull/2023) * [OCPBUGS-13008](https://issues.redhat.com/browse/OCPBUGS-13008): Add build number to vcenter version information [#1965](https://github.com/openshift/cluster-monitoring-operator/pull/1965) * [OCPBUGS-12727](https://issues.redhat.com/browse/OCPBUGS-12727): backport OCPBUGS-5353 to 4.12 [#1955](https://github.com/openshift/cluster-monitoring-operator/pull/1955) * [OCPBUGS-11508](https://issues.redhat.com/browse/OCPBUGS-11508): add startup probe for prometheus-adapter [#1940](https://github.com/openshift/cluster-monitoring-operator/pull/1940) * [OCPBUGS-11623](https://issues.redhat.com/browse/OCPBUGS-11623): node-exporter: disable btrfs collector [#1944](https://github.com/openshift/cluster-monitoring-operator/pull/1944) * [OCPBUGS-11404](https://issues.redhat.com/browse/OCPBUGS-11404): jsonnet: Add prometheus container in UWM [#1935](https://github.com/openshift/cluster-monitoring-operator/pull/1935) * [OCPBUGS-2439](https://issues.redhat.com/browse/OCPBUGS-2439): set the argument path.udev.data in node exporter [#1800](https://github.com/openshift/cluster-monitoring-operator/pull/1800) * [OCPBUGS-4363](https://issues.redhat.com/browse/OCPBUGS-4363): Fixed TargetDown expression to join on the proper label [#1833](https://github.com/openshift/cluster-monitoring-operator/pull/1833) * [OCPBUGS-4488](https://issues.redhat.com/browse/OCPBUGS-4488): Fixes externalURL field for Prometheus and Alertmanager [#1840](https://github.com/openshift/cluster-monitoring-operator/pull/1840) * [OCPBUGS-4627](https://issues.redhat.com/browse/OCPBUGS-4627): compute doc link in PVC not configured message [#1844](https://github.com/openshift/cluster-monitoring-operator/pull/1844) * [OCPBUGS-4489](https://issues.redhat.com/browse/OCPBUGS-4489): Increase startupProbe for prometheus [#1841](https://github.com/openshift/cluster-monitoring-operator/pull/1841) * [OCPBUGS-4431](https://issues.redhat.com/browse/OCPBUGS-4431): add alert KubePodNotScheduled to group openshift-kubernetes.rules [#1837](https://github.com/openshift/cluster-monitoring-operator/pull/1837) * [OCPBUGS-3276](https://issues.redhat.com/browse/OCPBUGS-3276): Pin Down Dependencies on Release 4.12 [#1819](https://github.com/openshift/cluster-monitoring-operator/pull/1819) * [OCPBUGS-4029](https://issues.redhat.com/browse/OCPBUGS-4029): test: increase timeout when checking remote write metrics [#1820](https://github.com/openshift/cluster-monitoring-operator/pull/1820) * [MON-2727](https://issues.redhat.com/browse/MON-2727): Adds telemeter alert TelemeterClientFailures [#1803](https://github.com/openshift/cluster-monitoring-operator/pull/1803) * *: don't expose Prometheus operator's port [#1806](https://github.com/openshift/cluster-monitoring-operator/pull/1806) * Documentation: fix TelemeterClientConfig [#1801](https://github.com/openshift/cluster-monitoring-operator/pull/1801) * Synchronize versions of the downstream components [#1797](https://github.com/openshift/cluster-monitoring-operator/pull/1797) * jsonnet/components: remove PDB patches [#1799](https://github.com/openshift/cluster-monitoring-operator/pull/1799) * [OCPBUGS-1321](https://issues.redhat.com/browse/OCPBUGS-1321): Node Exporter - ignore virtual NICs from OVNK cluster [#1780](https://github.com/openshift/cluster-monitoring-operator/pull/1780) * [RHDEVDOCS-3165](https://issues.redhat.com/browse/RHDEVDOCS-3165): updates to config map code comments and docgen utility [#1773](https://github.com/openshift/cluster-monitoring-operator/pull/1773) * [CFE-551](https://issues.redhat.com/browse/CFE-551): Allowlist metrics related to Routes to be sent via telemetry [#1776](https://github.com/openshift/cluster-monitoring-operator/pull/1776) * test/e2e: improve getActiveTarget() [#1796](https://github.com/openshift/cluster-monitoring-operator/pull/1796) * Synchronize versions of the downstream components [#1793](https://github.com/openshift/cluster-monitoring-operator/pull/1793) * update to release.openshift.io/feature-set to match OCP 4.12 [#1794](https://github.com/openshift/cluster-monitoring-operator/pull/1794) * update to release.openshift.io/feature-set to match OCP 4.12 [#1764](https://github.com/openshift/cluster-monitoring-operator/pull/1764) * [OCPBUGS-2138](https://issues.redhat.com/browse/OCPBUGS-2138): Add os_image_url_override metric from MCO to telemetry [#1784](https://github.com/openshift/cluster-monitoring-operator/pull/1784) * [Bug 2043518](https://bugzilla.redhat.com/show_bug.cgi?id=2043518): set degraded and available status based on Prometheus resource status [#1558](https://github.com/openshift/cluster-monitoring-operator/pull/1558) * Updating cluster-monitoring-operator images to be consistent with ART [#1787](https://github.com/openshift/cluster-monitoring-operator/pull/1787) * Revert "[bot] Update jsonnet dependencies" [#1788](https://github.com/openshift/cluster-monitoring-operator/pull/1788) * Update jsonnet dependencies [#1770](https://github.com/openshift/cluster-monitoring-operator/pull/1770) * Synchronize versions of the downstream components [#1782](https://github.com/openshift/cluster-monitoring-operator/pull/1782) * Makefile: add docgen tool dependency to the docs target [#1772](https://github.com/openshift/cluster-monitoring-operator/pull/1772) * Synchronize versions of the downstream components [#1779](https://github.com/openshift/cluster-monitoring-operator/pull/1779) * [Bug 2114721](https://bugzilla.redhat.com/show_bug.cgi?id=2114721): Adds telemeter token hash to Deployment annotation [#1747](https://github.com/openshift/cluster-monitoring-operator/pull/1747) * [Bug 2100860](https://bugzilla.redhat.com/show_bug.cgi?id=2100860): Pass user-defined Alertmanager service in shared configmap [#1690](https://github.com/openshift/cluster-monitoring-operator/pull/1690) * [OCPBUGS-1364](https://issues.redhat.com/browse/OCPBUGS-1364): Dedicated kubelet ServiceMonitor for prometheus-adapter [#1752](https://github.com/openshift/cluster-monitoring-operator/pull/1752) * [Bug 1933144](https://bugzilla.redhat.com/show_bug.cgi?id=1933144): Extend KubeAggregatedAPIDown alert "for" to 15m [#1639](https://github.com/openshift/cluster-monitoring-operator/pull/1639) * Adds documentation about how to configure CMO [#1696](https://github.com/openshift/cluster-monitoring-operator/pull/1696) * Rename kube_pv to odf_system_pvs [#1756](https://github.com/openshift/cluster-monitoring-operator/pull/1756) * Synchronize versions of the downstream components [#1768](https://github.com/openshift/cluster-monitoring-operator/pull/1768) * go.{mod,sum}: require Go 1.18 [#1769](https://github.com/openshift/cluster-monitoring-operator/pull/1769) * Use odf metrics instead of ceph [#1718](https://github.com/openshift/cluster-monitoring-operator/pull/1718) * Add client certificate and key to service monitor [#1738](https://github.com/openshift/cluster-monitoring-operator/pull/1738) * Update jsonnet dependencies [#1766](https://github.com/openshift/cluster-monitoring-operator/pull/1766) * Add odf_system_objects_total and odf_system_bucket_count [#1763](https://github.com/openshift/cluster-monitoring-operator/pull/1763) * [MON-2654](https://issues.redhat.com/browse/MON-2654): Add a cluster advance feature usage metric [#1750](https://github.com/openshift/cluster-monitoring-operator/pull/1750) * Synchronize versions of the downstream components [#1761](https://github.com/openshift/cluster-monitoring-operator/pull/1761) * Update jsonnet dependencies [#1758](https://github.com/openshift/cluster-monitoring-operator/pull/1758) * Synchronize versions of the downstream components [#1759](https://github.com/openshift/cluster-monitoring-operator/pull/1759) * [OCPBUGS-864](https://issues.redhat.com/browse/OCPBUGS-864): sorted condition and update on change [#1746](https://github.com/openshift/cluster-monitoring-operator/pull/1746) * [MON-2646](https://issues.redhat.com/browse/MON-2646): Remove grafana related code [#1731](https://github.com/openshift/cluster-monitoring-operator/pull/1731) * [Bug 2099939](https://bugzilla.redhat.com/show_bug.cgi?id=2099939): Sets status when UserAlertmanagerConfig is missconfigured [#1724](https://github.com/openshift/cluster-monitoring-operator/pull/1724) * Update jsonnet dependencies [#1741](https://github.com/openshift/cluster-monitoring-operator/pull/1741) * Whitelist metrics for MCG addon [#1721](https://github.com/openshift/cluster-monitoring-operator/pull/1721) * [Bug 2116382](https://bugzilla.redhat.com/show_bug.cgi?id=2116382): Give precedence to CMO config map proxy config [#1737](https://github.com/openshift/cluster-monitoring-operator/pull/1737) * OWNERS: Add myself, and move former team members to emeritus [#1739](https://github.com/openshift/cluster-monitoring-operator/pull/1739) * [Bug 2100312](https://bugzilla.redhat.com/show_bug.cgi?id=2100312): go.mod: update openshift-api to current release-4.12 tip [#1740](https://github.com/openshift/cluster-monitoring-operator/pull/1740) * Update jsonnet dependencies [#1735](https://github.com/openshift/cluster-monitoring-operator/pull/1735) * [Bug 2115527](https://bugzilla.redhat.com/show_bug.cgi?id=2115527): reverts #1704 [#1734](https://github.com/openshift/cluster-monitoring-operator/pull/1734) * [MON-1261](https://issues.redhat.com/browse/MON-1261): exposing topology spread constraints through config [#1624](https://github.com/openshift/cluster-monitoring-operator/pull/1624) * Update jsonnet dependencies [#1730](https://github.com/openshift/cluster-monitoring-operator/pull/1730) * pkg/manifests/amcfg.go: reorder declarations [#1728](https://github.com/openshift/cluster-monitoring-operator/pull/1728) * Unpin Jsonnet dependencies. [#1725](https://github.com/openshift/cluster-monitoring-operator/pull/1725) * Synchronize versions of the downstream components [#1727](https://github.com/openshift/cluster-monitoring-operator/pull/1727) * [Bug 2083226](https://bugzilla.redhat.com/show_bug.cgi?id=2083226): increase alertmanager startupProbe failure threshold [#1720](https://github.com/openshift/cluster-monitoring-operator/pull/1720) * Synchronize versions of the downstream components [#1722](https://github.com/openshift/cluster-monitoring-operator/pull/1722) * [MON-2658](https://issues.redhat.com/browse/MON-2658): Add security context to additional containers in e2e tests [#1714](https://github.com/openshift/cluster-monitoring-operator/pull/1714) * [Bug 2089199](https://bugzilla.redhat.com/show_bug.cgi?id=2089199): Removes etcd related dashboards from CMO [#1674](https://github.com/openshift/cluster-monitoring-operator/pull/1674) * [Bug 2090988](https://bugzilla.redhat.com/show_bug.cgi?id=2090988): Set HA convention on admission-webhook [#1716](https://github.com/openshift/cluster-monitoring-operator/pull/1716) * Synchronize versions of the downstream components [#1713](https://github.com/openshift/cluster-monitoring-operator/pull/1713) * Add telemetry metrics for HyperShift [#1710](https://github.com/openshift/cluster-monitoring-operator/pull/1710) * Updating cluster-monitoring-operator images to be consistent with ART [#1711](https://github.com/openshift/cluster-monitoring-operator/pull/1711) * [Bug 2095719](https://bugzilla.redhat.com/show_bug.cgi?id=2095719): Updates CreateOrUpdateServiceAccounts [#1704](https://github.com/openshift/cluster-monitoring-operator/pull/1704) * [Bug 2100472](https://bugzilla.redhat.com/show_bug.cgi?id=2100472): fix alert controllers when not in techpreview [#1707](https://github.com/openshift/cluster-monitoring-operator/pull/1707) * Synchronize versions of the downstream components [#1705](https://github.com/openshift/cluster-monitoring-operator/pull/1705) * Revert "Bug 2100472: start alert controllers only when techpreview" [#1706](https://github.com/openshift/cluster-monitoring-operator/pull/1706) * [Bug 2100472](https://bugzilla.redhat.com/show_bug.cgi?id=2100472): start alert controllers only when techpreview [#1701](https://github.com/openshift/cluster-monitoring-operator/pull/1701) * Synchronize versions of the downstream components [#1698](https://github.com/openshift/cluster-monitoring-operator/pull/1698) * [MON-2091](https://issues.redhat.com/browse/MON-2091): Add support for user-defined alert relabel configs [#1676](https://github.com/openshift/cluster-monitoring-operator/pull/1676) * [Bug 2037513](https://bugzilla.redhat.com/show_bug.cgi?id=2037513): Fix dashboards having container_fs* metrices in queries [#1554](https://github.com/openshift/cluster-monitoring-operator/pull/1554) * [MON-2552](https://issues.redhat.com/browse/MON-2552): Add support for user-defined alerting rules [#1675](https://github.com/openshift/cluster-monitoring-operator/pull/1675) * Pin Jsonnet versions for release 4.11 [#1693](https://github.com/openshift/cluster-monitoring-operator/pull/1693) * [Bug 2091902](https://bugzilla.redhat.com/show_bug.cgi?id=2091902): Improve performance of Prometheus Adapter [#1692](https://github.com/openshift/cluster-monitoring-operator/pull/1692) * Adding a usage metric for Openshift Sandboxed Containers [#1662](https://github.com/openshift/cluster-monitoring-operator/pull/1662) * [MON-2567](https://issues.redhat.com/browse/MON-2567): enable AlertmanagerConfig v1beta1 [#1682](https://github.com/openshift/cluster-monitoring-operator/pull/1682) * Synchronize versions of the downstream components [#1689](https://github.com/openshift/cluster-monitoring-operator/pull/1689) * [Bug 2096315](https://bugzilla.redhat.com/show_bug.cgi?id=2096315): Create a patch im CMO for NodeClockNotSynchronising [#1604](https://github.com/openshift/cluster-monitoring-operator/pull/1604) * *: bump Go dependencies [#1688](https://github.com/openshift/cluster-monitoring-operator/pull/1688) * [Bug 2057832](https://bugzilla.redhat.com/show_bug.cgi?id=2057832): Updates recording rule cluster:telemetry_selected_series:count [#1646](https://github.com/openshift/cluster-monitoring-operator/pull/1646) * [Bug 2094704](https://bugzilla.redhat.com/show_bug.cgi?id=2094704): remove verbose output from kube-rbac-proxy in Prometheus-k8s pod [#1684](https://github.com/openshift/cluster-monitoring-operator/pull/1684) * Allow deployment of dedicated Alertmanager for user-defined alerts [#1661](https://github.com/openshift/cluster-monitoring-operator/pull/1661) * [MON-2480](https://issues.redhat.com/browse/MON-2480): Double the ServiceMonitor intervals for SNO [#1652](https://github.com/openshift/cluster-monitoring-operator/pull/1652) * Synchronize versions of the downstream components [#1666](https://github.com/openshift/cluster-monitoring-operator/pull/1666) * whitelist cluster-logging-operator metrics for telemetry [#1546](https://github.com/openshift/cluster-monitoring-operator/pull/1546) * [Bug 2090838](https://bugzilla.redhat.com/show_bug.cgi?id=2090838): ignore flapping host interface 'tunbr' [#1681](https://github.com/openshift/cluster-monitoring-operator/pull/1681) * [Bug 2089574](https://bugzilla.redhat.com/show_bug.cgi?id=2089574): Removes master node selector from PO when running with HostedControlPlane external [#1679](https://github.com/openshift/cluster-monitoring-operator/pull/1679) * [Bug 2009352](https://bugzilla.redhat.com/show_bug.cgi?id=2009352): IR-254: Collecting registry and image stream usage [#1668](https://github.com/openshift/cluster-monitoring-operator/pull/1668) * [Bug 2079292](https://bugzilla.redhat.com/show_bug.cgi?id=2079292): Adds necessary SecurityContext settings to UWM deployments [#1660](https://github.com/openshift/cluster-monitoring-operator/pull/1660) * eo metrics for Telemetry [#1559](https://github.com/openshift/cluster-monitoring-operator/pull/1559) * [Bug 2084079](https://bugzilla.redhat.com/show_bug.cgi?id=2084079): Refactors CreateRouteIfNotExists to CreateOrUpdateRoute [#1671](https://github.com/openshift/cluster-monitoring-operator/pull/1671) * Add bodysize limit for metric scraping. [#1467](https://github.com/openshift/cluster-monitoring-operator/pull/1467) * OWNERS: move @fpetkovski, @PhilipGough and @bison to emeritus section [#1670](https://github.com/openshift/cluster-monitoring-operator/pull/1670) * Updating cluster-monitoring-operator images to be consistent with ART [#1667](https://github.com/openshift/cluster-monitoring-operator/pull/1667) * [Bug 2069068](https://bugzilla.redhat.com/show_bug.cgi?id=2069068): Refactors DeleteDeployment to wait for deletion of the deployment [#1655](https://github.com/openshift/cluster-monitoring-operator/pull/1655) * Expose ovnkube_master_egress_routing_via_host via telemetry [#1635](https://github.com/openshift/cluster-monitoring-operator/pull/1635) * Add runbook for kube persistent volume inodes filling up [#1663](https://github.com/openshift/cluster-monitoring-operator/pull/1663) * Synchronize versions of the downstream components [#1658](https://github.com/openshift/cluster-monitoring-operator/pull/1658) * [MON-1913](https://issues.redhat.com/browse/MON-1913): pkg/manifest: Allow retention to be configurable for Thanos-Ruler in UWM [#1651](https://github.com/openshift/cluster-monitoring-operator/pull/1651) * *: add standalone admission webhook [#1640](https://github.com/openshift/cluster-monitoring-operator/pull/1640) * Synchronize versions of the downstream components [#1650](https://github.com/openshift/cluster-monitoring-operator/pull/1650) * [Bug 2064705](https://bugzilla.redhat.com/show_bug.cgi?id=2064705): [bot] Synchronize versions of the downstream components [#1648](https://github.com/openshift/cluster-monitoring-operator/pull/1648) * [MON-2213](https://issues.redhat.com/browse/MON-2213): Expose the /federate endpoint of UWM Prometheus as a route [#1633](https://github.com/openshift/cluster-monitoring-operator/pull/1633) * [Bug 2074807](https://bugzilla.redhat.com/show_bug.cgi?id=2074807): [bot] Update jsonnet dependencies [#1643](https://github.com/openshift/cluster-monitoring-operator/pull/1643) * [Bug 2073112](https://bugzilla.redhat.com/show_bug.cgi?id=2073112): Adds UWM extrenalLabels from Prometheus to ThanosRuler labels [#1645](https://github.com/openshift/cluster-monitoring-operator/pull/1645) * Extend e2e metric test [#1642](https://github.com/openshift/cluster-monitoring-operator/pull/1642) * [MON-2193](https://issues.redhat.com/browse/MON-2193): pkg/manifests: Expose retention size settings for UWM Prometheus [#1630](https://github.com/openshift/cluster-monitoring-operator/pull/1630) * [MON-2193](https://issues.redhat.com/browse/MON-2193): pkg/manifests: Expose retention size settings for Platform Prometheus [#1579](https://github.com/openshift/cluster-monitoring-operator/pull/1579) * [MON-2206](https://issues.redhat.com/browse/MON-2206): Adds sigv4 settings for remote write [#1638](https://github.com/openshift/cluster-monitoring-operator/pull/1638) * [Bug 2074084](https://bugzilla.redhat.com/show_bug.cgi?id=2074084): CMO metrics not visible in the OCP webconsole UI [#1634](https://github.com/openshift/cluster-monitoring-operator/pull/1634) * [Bug 2033575](https://bugzilla.redhat.com/show_bug.cgi?id=2033575): use bearer token as fall-back authn method [#1637](https://github.com/openshift/cluster-monitoring-operator/pull/1637) * [Bug 2067740](https://bugzilla.redhat.com/show_bug.cgi?id=2067740): update prometheus/client_golang version [#1636](https://github.com/openshift/cluster-monitoring-operator/pull/1636) * [MON-2207](https://issues.redhat.com/browse/MON-2207): Expose Authorization settings for remote write in the CMO configuration [#1598](https://github.com/openshift/cluster-monitoring-operator/pull/1598) * [Bug 2057967](https://bugzilla.redhat.com/show_bug.cgi?id=2057967): [bot] Update jsonnet dependencies [#1628](https://github.com/openshift/cluster-monitoring-operator/pull/1628) * Add Oauth2 settings to prometheusK8s.remoteWrite config [#1617](https://github.com/openshift/cluster-monitoring-operator/pull/1617) * [MON-2212](https://issues.redhat.com/browse/MON-2212): Expose the /federate endpoint of UWM Prometheus as a service [#1601](https://github.com/openshift/cluster-monitoring-operator/pull/1601) * [Bug 2067005](https://bugzilla.redhat.com/show_bug.cgi?id=2067005): Remove Grafana from Prometheus rules added by CMO [#1629](https://github.com/openshift/cluster-monitoring-operator/pull/1629) * [MON-1708](https://issues.redhat.com/browse/MON-1708): Enforce label scrape limits in UWM [#1350](https://github.com/openshift/cluster-monitoring-operator/pull/1350) * CHANGELOG: add entry for https://issues.redhat.com/browse/MON-2245 [#1623](https://github.com/openshift/cluster-monitoring-operator/pull/1623) * [Bug 2048333](https://bugzilla.redhat.com/show_bug.cgi?id=2048333): [bot] Update jsonnet dependencies [#1621](https://github.com/openshift/cluster-monitoring-operator/pull/1621) * doc: add Testing section to CONTRIBUTING.md [#1620](https://github.com/openshift/cluster-monitoring-operator/pull/1620) * pkg/manifest: remove unused function AlertmanagerExternalURL [#1622](https://github.com/openshift/cluster-monitoring-operator/pull/1622) * [Bug 2063047](https://bugzilla.redhat.com/show_bug.cgi?id=2063047): Add condition to check for relative paths in query log file path [#1608](https://github.com/openshift/cluster-monitoring-operator/pull/1608) * Synchronize versions of the downstream components [#1616](https://github.com/openshift/cluster-monitoring-operator/pull/1616) * Update jsonnet dependencies [#1615](https://github.com/openshift/cluster-monitoring-operator/pull/1615) * Documentation/data-collection: Collect cluster_version_capability [#1607](https://github.com/openshift/cluster-monitoring-operator/pull/1607) * [MON-2269](https://issues.redhat.com/browse/MON-2269): test: deploy prometheus as remote_write receiver [#1602](https://github.com/openshift/cluster-monitoring-operator/pull/1602) * Synchronize versions of the downstream components [#1614](https://github.com/openshift/cluster-monitoring-operator/pull/1614) * Documentation/data-collection: Assign cluster-version metrics to Cincinnati team [#1606](https://github.com/openshift/cluster-monitoring-operator/pull/1606) * [Bug 2067004](https://bugzilla.redhat.com/show_bug.cgi?id=2067004): manifests: Remove Grafana image references [#1612](https://github.com/openshift/cluster-monitoring-operator/pull/1612) * [Bug 2063905](https://bugzilla.redhat.com/show_bug.cgi?id=2063905): [bot] Update jsonnet dependencies [#1610](https://github.com/openshift/cluster-monitoring-operator/pull/1610) * [Bug 2067062](https://bugzilla.redhat.com/show_bug.cgi?id=2067062): [bot] Synchronize versions of the downstream components [#1609](https://github.com/openshift/cluster-monitoring-operator/pull/1609) * [Bug 2065577](https://bugzilla.redhat.com/show_bug.cgi?id=2065577): CMO now creates by default an empty CM for UWM [#1603](https://github.com/openshift/cluster-monitoring-operator/pull/1603) * Automated jsonnet dependencies update [#1600](https://github.com/openshift/cluster-monitoring-operator/pull/1600) * [Bug 2065682](https://bugzilla.redhat.com/show_bug.cgi?id=2065682): manifest: explicitly drop the temporary cluster id label [#1597](https://github.com/openshift/cluster-monitoring-operator/pull/1597) * [Bug 2065076](https://bugzilla.redhat.com/show_bug.cgi?id=2065076): manifests: advertise public urls without path component [#1595](https://github.com/openshift/cluster-monitoring-operator/pull/1595) * MON-1632 Removing grafana from monitoring stack [#1557](https://github.com/openshift/cluster-monitoring-operator/pull/1557) * Makefile: add tools to path for run-local target [#1592](https://github.com/openshift/cluster-monitoring-operator/pull/1592) * [MON-2245](https://issues.redhat.com/browse/MON-2245): manifest: Add cluster_id label to remote_write configurations [#1578](https://github.com/openshift/cluster-monitoring-operator/pull/1578) * [OADP-22](https://issues.redhat.com/browse/OADP-22): Send Telemetry metrics on OADP [#1536](https://github.com/openshift/cluster-monitoring-operator/pull/1536) * [Bug 2063047](https://bugzilla.redhat.com/show_bug.cgi?id=2063047): Added support for full-path query log file [#1587](https://github.com/openshift/cluster-monitoring-operator/pull/1587) * [MON-2222](https://issues.redhat.com/browse/MON-2222): Enable validating webhook for AlertmanagerConfig custom resources [#1567](https://github.com/openshift/cluster-monitoring-operator/pull/1567) * Automated dependencies version update [#1591](https://github.com/openshift/cluster-monitoring-operator/pull/1591) * Automated jsonnet dependencies update [#1583](https://github.com/openshift/cluster-monitoring-operator/pull/1583) * [Bug 2060083](https://bugzilla.redhat.com/show_bug.cgi?id=2060083): React to changes in clusteroperators [#1575](https://github.com/openshift/cluster-monitoring-operator/pull/1575) * Automated dependencies version update [#1540](https://github.com/openshift/cluster-monitoring-operator/pull/1540) * [Bug 2050120](https://bugzilla.redhat.com/show_bug.cgi?id=2050120): Sanitize all regex allow/denylist used in KSM component [#1574](https://github.com/openshift/cluster-monitoring-operator/pull/1574) * [Bug 2060091](https://bugzilla.redhat.com/show_bug.cgi?id=2060091): Properly deal with an empty console URL [#1576](https://github.com/openshift/cluster-monitoring-operator/pull/1576) * [Bug 2051470](https://bugzilla.redhat.com/show_bug.cgi?id=2051470): Update prometheus-operator and sync jsonnet [#1571](https://github.com/openshift/cluster-monitoring-operator/pull/1571) * manifest: use path module to construct externalURL [#1562](https://github.com/openshift/cluster-monitoring-operator/pull/1562) * [Bug 2057403](https://bugzilla.redhat.com/show_bug.cgi?id=2057403): jsonnet: Give CMO explicit get permissions for ReplicaSets [#1564](https://github.com/openshift/cluster-monitoring-operator/pull/1564) * [Bug 2037513](https://bugzilla.redhat.com/show_bug.cgi?id=2037513): Update jsonnet dependencies and prometheus-operator version [#1556](https://github.com/openshift/cluster-monitoring-operator/pull/1556) * [Bug 2057025](https://bugzilla.redhat.com/show_bug.cgi?id=2057025): fix init-config-reloader resource requests [#1563](https://github.com/openshift/cluster-monitoring-operator/pull/1563) * go.mod: switch to go 1.17 [#1561](https://github.com/openshift/cluster-monitoring-operator/pull/1561) * Use service ca beta annotation [#1560](https://github.com/openshift/cluster-monitoring-operator/pull/1560) * : Add runbooks for FailedToSendAlerts [#1530](https://github.com/openshift/cluster-monitoring-operator/pull/1530) * pkg: drop code removing the legacy Alertmanager service monitor [#1551](https://github.com/openshift/cluster-monitoring-operator/pull/1551) * [Bug 2050707](https://bugzilla.redhat.com/show_bug.cgi?id=2050707): test: account for pdb and Prometheus' staleness period [#1553](https://github.com/openshift/cluster-monitoring-operator/pull/1553) * [MON-1631](https://issues.redhat.com/browse/MON-1631): prometheus: remove ui access [#1532](https://github.com/openshift/cluster-monitoring-operator/pull/1532) * Updating cluster-monitoring-operator images to be consistent with ART [#1550](https://github.com/openshift/cluster-monitoring-operator/pull/1550) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/c413a79d9da0999c1ae98758b213968c7bdf5418...ee4a20d4d0214c9c8fdacaede3482683436d36e0) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/28db40f169f64f881b0628c19bf7c64a7a9a2467) * [OCPBUGS-43872](https://issues.redhat.com/browse/OCPBUGS-43872): manifests/02-cncc-credentials: Set skipServiceCheck for GCP [#2548](https://github.com/openshift/cluster-network-operator/pull/2548) * [OCPBUGS-38905](https://issues.redhat.com/browse/OCPBUGS-38905): Add missing runbook for OVNKubernetesNorthdInactive [#2479](https://github.com/openshift/cluster-network-operator/pull/2479) * [OCPBUGS-37942](https://issues.redhat.com/browse/OCPBUGS-37942): [release-4.12] update whereabouts crd [#2461](https://github.com/openshift/cluster-network-operator/pull/2461) * [OCPBUGS-29167](https://issues.redhat.com/browse/OCPBUGS-29167): fix whereabouts conformance test failures [#2256](https://github.com/openshift/cluster-network-operator/pull/2256) * [OCPBUGS-29884](https://issues.redhat.com/browse/OCPBUGS-29884): add env var in whereabouts-reconciler daemonset [#2284](https://github.com/openshift/cluster-network-operator/pull/2284) * [OCPBUGS-29302](https://issues.redhat.com/browse/OCPBUGS-29302): Update ingressconfig_controller to use field Manager [#2268](https://github.com/openshift/cluster-network-operator/pull/2268) * [OCPBUGS-28801](https://issues.redhat.com/browse/OCPBUGS-28801): [release-4.12] Add ConfigMap mount to the whereabouts-reconciler DaemonSet [#2244](https://github.com/openshift/cluster-network-operator/pull/2244) * NO-JIRA: add kyrtapz as reviewer and approver for release 4.12 [#2230](https://github.com/openshift/cluster-network-operator/pull/2230) * [release 4.12] OCPBUGS-23025: Add maxLogFiles config for OVN-K Audit Logging [#2188](https://github.com/openshift/cluster-network-operator/pull/2188) * [OCPBUGS-24039](https://issues.redhat.com/browse/OCPBUGS-24039): remove all managed fields used by old manager [#2099](https://github.com/openshift/cluster-network-operator/pull/2099) * [OCPBUGS-21715](https://issues.redhat.com/browse/OCPBUGS-21715): Bump golang.org/x/net and github.com/openshift/library-go [#2124](https://github.com/openshift/cluster-network-operator/pull/2124) * [OCPBUGS-24571](https://issues.redhat.com/browse/OCPBUGS-24571): Disable weak SSH cipher suites [#2164](https://github.com/openshift/cluster-network-operator/pull/2164) * [OCPBUGS-25128](https://issues.redhat.com/browse/OCPBUGS-25128): Update to go 1.19 and x/net 0.8.0 [#2157](https://github.com/openshift/cluster-network-operator/pull/2157) * [OCPBUGS-23293](https://issues.redhat.com/browse/OCPBUGS-23293): IBMCloud specific: patch out management workload for dataplane component thats needed for bootstrapping [#2108](https://github.com/openshift/cluster-network-operator/pull/2108) * [OCPBUGS-20277](https://issues.redhat.com/browse/OCPBUGS-20277): Edited multus-admission-controller deployment config to not add autoount a service account token [#1884](https://github.com/openshift/cluster-network-operator/pull/1884) * [OCPBUGS-20197](https://issues.redhat.com/browse/OCPBUGS-20197): remove prestop hooks for northd, sbdbd and nbdb [#2055](https://github.com/openshift/cluster-network-operator/pull/2055) * [OCPBUGS-17656](https://issues.redhat.com/browse/OCPBUGS-17656): prevent creation of multiple cni-sysctl-allowlist-ds pods [#1948](https://github.com/openshift/cluster-network-operator/pull/1948) * [OCPBUGS-11547](https://issues.redhat.com/browse/OCPBUGS-11547): Hypershift: Add RollingUpdate parameters to multus-admission-controller [#1775](https://github.com/openshift/cluster-network-operator/pull/1775) * [OCPBUGS-16142](https://issues.redhat.com/browse/OCPBUGS-16142): fix reconciliation process of the allowlist controller [#1891](https://github.com/openshift/cluster-network-operator/pull/1891) * [release-4.12 ] OCPBUGS-11217:use annotation daemonset to update hybrid overlay [#1764](https://github.com/openshift/cluster-network-operator/pull/1764) * [OCPBUGS-15588](https://issues.redhat.com/browse/OCPBUGS-15588): Add release version annotation to whereabouts-reconciler [#1856](https://github.com/openshift/cluster-network-operator/pull/1856) * [OCPBUGS-13891](https://issues.redhat.com/browse/OCPBUGS-13891): [release-4.12] HyperShift: Support HostedControlPlane node selector [#1816](https://github.com/openshift/cluster-network-operator/pull/1816) * [OCPBUGS-13067](https://issues.redhat.com/browse/OCPBUGS-13067): Fix tier label, privileged, HOSTNAME/NODENAME in whereabouts reconciler [backport 4.12] [#1829](https://github.com/openshift/cluster-network-operator/pull/1829) * [OCPBUGS-6061](https://issues.redhat.com/browse/OCPBUGS-6061): Update github.com/Masterminds/sprig to v3 [#1689](https://github.com/openshift/cluster-network-operator/pull/1689) * [OCPBUGS-13013](https://issues.redhat.com/browse/OCPBUGS-13013): AUTH: update cluster-reader to include k8s.ovn.org [#1799](https://github.com/openshift/cluster-network-operator/pull/1799) * [OCPBUGS-13067](https://issues.redhat.com/browse/OCPBUGS-13067): Whereabouts should implement the reconciliation controller [backport 4.12] [#1801](https://github.com/openshift/cluster-network-operator/pull/1801) * [OCPBUGS-11559](https://issues.redhat.com/browse/OCPBUGS-11559): multus-admission-controller should not run as root under Hypershift [#1777](https://github.com/openshift/cluster-network-operator/pull/1777) * Bug OCPBUGS-4896: Kuryr: If set use MTU from Config for svc net [#1671](https://github.com/openshift/cluster-network-operator/pull/1671) * [OCPBUGS-10977](https://issues.redhat.com/browse/OCPBUGS-10977): HyperShift: Add POD_NAME env to ovnkube-node [#1753](https://github.com/openshift/cluster-network-operator/pull/1753) * [OCPBUGS-11461](https://issues.redhat.com/browse/OCPBUGS-11461): Split out konnectivity certs [#1771](https://github.com/openshift/cluster-network-operator/pull/1771) * [OCPBUGS-11178](https://issues.redhat.com/browse/OCPBUGS-11178): remove TLS_RSA_WITH_AES_128_CBC_SHA256 cipher [#1759](https://github.com/openshift/cluster-network-operator/pull/1759) * [OCPBUGS-11059](https://issues.redhat.com/browse/OCPBUGS-11059): Fix info log formatting [#1659](https://github.com/openshift/cluster-network-operator/pull/1659) * [OCPBUGS-10319](https://issues.redhat.com/browse/OCPBUGS-10319): HyperShift: Set affinity, tolerations and co-location for all hcp resources created by CNO [#1738](https://github.com/openshift/cluster-network-operator/pull/1738) * [OCPBUGS-8014](https://issues.redhat.com/browse/OCPBUGS-8014): add default noProxy config for Azure [#1722](https://github.com/openshift/cluster-network-operator/pull/1722) * [OCPBUGS-9927](https://issues.redhat.com/browse/OCPBUGS-9927): Enable configuration of node healthz server on ovnkube [#1731](https://github.com/openshift/cluster-network-operator/pull/1731) * [OCPBUGS-5953](https://issues.redhat.com/browse/OCPBUGS-5953): Backport Added missing API field podref to OverlappingRangeIPReservation CRD [Backport 4.12] [#1685](https://github.com/openshift/cluster-network-operator/pull/1685) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Add .hypershift.local to no proxy list [#1706](https://github.com/openshift/cluster-network-operator/pull/1706) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Do not use proxy for internal routes [#1704](https://github.com/openshift/cluster-network-operator/pull/1704) * [OCPBUGS-4778](https://issues.redhat.com/browse/OCPBUGS-4778): Fix handling of deployment and statefulset updates [#1663](https://github.com/openshift/cluster-network-operator/pull/1663) * [OCPBUGS-4238](https://issues.redhat.com/browse/OCPBUGS-4238): HyperShift: Co-locate OVN-Kubernetes master with other hcp pods [#1645](https://github.com/openshift/cluster-network-operator/pull/1645) * [OCPBUGS-6494](https://issues.redhat.com/browse/OCPBUGS-6494): OVN-Kubernetes: Stop sorting master node addresses, ignore readiness checks for redundant NB/SB [#1691](https://github.com/openshift/cluster-network-operator/pull/1691) * [OCPBUGS-3461](https://issues.redhat.com/browse/OCPBUGS-3461): CNI binary copy should account for the possibility of symlinks [backport 4.12] [#1615](https://github.com/openshift/cluster-network-operator/pull/1615) * [OCPBUGS-4856](https://issues.redhat.com/browse/OCPBUGS-4856): Disable the drop-icmp container 'oc' pprof webserver on Azure [#1666](https://github.com/openshift/cluster-network-operator/pull/1666) * [OCPBUGS-4686](https://issues.redhat.com/browse/OCPBUGS-4686): Revert "Remove references to the hosts kubeconfig" [#1660](https://github.com/openshift/cluster-network-operator/pull/1660) * [OCPBUGS-4183](https://issues.redhat.com/browse/OCPBUGS-4183): Fix default disable-udp-aggregation value on s390x [#1661](https://github.com/openshift/cluster-network-operator/pull/1661) * [OCPBUGS-4637](https://issues.redhat.com/browse/OCPBUGS-4637): Support RHOBS monitoring for HyperShift [#1652](https://github.com/openshift/cluster-network-operator/pull/1652) * [OCPBUGS-3956](https://issues.redhat.com/browse/OCPBUGS-3956): HyperShift: Do not accept empty infrastructure name [#1634](https://github.com/openshift/cluster-network-operator/pull/1634) * [OCPBUGS-4183](https://issues.redhat.com/browse/OCPBUGS-4183): Disable UDP aggregation on s390x [#1643](https://github.com/openshift/cluster-network-operator/pull/1643) * [OCPBUGS-3824](https://issues.redhat.com/browse/OCPBUGS-3824): ipsec: Run ovs-monitor-ipsec in the foreground and change probes [#1621](https://github.com/openshift/cluster-network-operator/pull/1621) * Jira OCPBUGS-3851: IPsec: Fix broken counter++ expression [#1636](https://github.com/openshift/cluster-network-operator/pull/1636) * [OCPBUGS-3944](https://issues.redhat.com/browse/OCPBUGS-3944): Remove references to the hosts kubeconfig [#1632](https://github.com/openshift/cluster-network-operator/pull/1632) * [OCPBUGS-3437](https://issues.redhat.com/browse/OCPBUGS-3437): HyperShift: Render cncc with proxy settings of the management cluster [#1613](https://github.com/openshift/cluster-network-operator/pull/1613) * [OCPBUGS-3889](https://issues.redhat.com/browse/OCPBUGS-3889): SDN: /var/run mount cleanup [#1628](https://github.com/openshift/cluster-network-operator/pull/1628) * [OCPBUGS-3184](https://issues.redhat.com/browse/OCPBUGS-3184): update microshift ovnk manifests [#1610](https://github.com/openshift/cluster-network-operator/pull/1610) * [OCPBUGS-2362](https://issues.redhat.com/browse/OCPBUGS-2362): Prefer oldest nodes, harden new alerts and revert setting new OVN-K alerts to info [#1579](https://github.com/openshift/cluster-network-operator/pull/1579) * fixed typo in comment [#1597](https://github.com/openshift/cluster-network-operator/pull/1597) * Jira OCPBUGS-1736: Always set PROXY variables for CNCC [#1576](https://github.com/openshift/cluster-network-operator/pull/1576) * Remove the allow_ra sysctl for ipv4 from default systl whitelist [#1590](https://github.com/openshift/cluster-network-operator/pull/1590) * [SDN-2591](https://issues.redhat.com/browse/SDN-2591): allow hybrid overlay to be enabled post install [#1584](https://github.com/openshift/cluster-network-operator/pull/1584) * [SDN-3515](https://issues.redhat.com/browse/SDN-3515): HyperShift: multus admission controller: expose metrics over HTTPs [#1583](https://github.com/openshift/cluster-network-operator/pull/1583) * rebase to k8s v1.25.0 [#1571](https://github.com/openshift/cluster-network-operator/pull/1571) * Bug OCPBUGS-2328: Fix for index out of range error [#1588](https://github.com/openshift/cluster-network-operator/pull/1588) * Add sysctl whitelist controller [#1573](https://github.com/openshift/cluster-network-operator/pull/1573) * Kuryr: Add missing keystoneauth options [#1581](https://github.com/openshift/cluster-network-operator/pull/1581) * [OCPBUGS-1341](https://issues.redhat.com/browse/OCPBUGS-1341): Set owner reference for pod network connectivity check [#1566](https://github.com/openshift/cluster-network-operator/pull/1566) * ovn-k, managed: pass join-subnet to control-plane [#1582](https://github.com/openshift/cluster-network-operator/pull/1582) * [OCPBUGS-1083](https://issues.redhat.com/browse/OCPBUGS-1083): Move OVNK alert level to info [#1564](https://github.com/openshift/cluster-network-operator/pull/1564) * Pass enable-udp-aggregation=true to ovn-kubernetes [#1533](https://github.com/openshift/cluster-network-operator/pull/1533) * [OCPBUGS-1038](https://issues.redhat.com/browse/OCPBUGS-1038): Multus IPAM detection should honor conflists [#1570](https://github.com/openshift/cluster-network-operator/pull/1570) * egress_ip: remove redundant config [#1568](https://github.com/openshift/cluster-network-operator/pull/1568) * [OCPBUGS-1515](https://issues.redhat.com/browse/OCPBUGS-1515): Use custom uint128 type when validating v6InternalSubnet [#1561](https://github.com/openshift/cluster-network-operator/pull/1561) * [SDN-3283](https://issues.redhat.com/browse/SDN-3283): HyperShift: Use a socks-proxy in ovnkube-master to allow for node heath checks [#1539](https://github.com/openshift/cluster-network-operator/pull/1539) * Bug: OCPBUGS-736: Kuryr: Use machine net MTU to create service net [#1545](https://github.com/openshift/cluster-network-operator/pull/1545) * Migrate Egress IP configuration during SDN migration and rollback [#1536](https://github.com/openshift/cluster-network-operator/pull/1536) * Allow empty vSphere status field in VIP sync [#1558](https://github.com/openshift/cluster-network-operator/pull/1558) * microshift: update ovnk manifests [#1552](https://github.com/openshift/cluster-network-operator/pull/1552) * Add ovn-kubernetes-microshift to image-stream [#1556](https://github.com/openshift/cluster-network-operator/pull/1556) * Migrate Multicast configuration during SDN migration and rollback [#1543](https://github.com/openshift/cluster-network-operator/pull/1543) * OVN-K: add patch/update service permissions to controller [#1554](https://github.com/openshift/cluster-network-operator/pull/1554) * Add controller to synchronize the API and Ingress VIP fields [#1519](https://github.com/openshift/cluster-network-operator/pull/1519) * Bug SDN-3458: HyperShift: Differentiate resources deployed by different CNO instances in status manager [#1541](https://github.com/openshift/cluster-network-operator/pull/1541) * OVN-K alerts: first tranche [#1526](https://github.com/openshift/cluster-network-operator/pull/1526) * [SDN-3432](https://issues.redhat.com/browse/SDN-3432): Add alert for OVNKubernetesControllerDisconnectedSouthboundDatabase [#1548](https://github.com/openshift/cluster-network-operator/pull/1548) * Add vSphere platform to allow dual-stack cluster [#1518](https://github.com/openshift/cluster-network-operator/pull/1518) * [OKD-49](https://issues.redhat.com/browse/OKD-49): Adds support for scos to multus [#1544](https://github.com/openshift/cluster-network-operator/pull/1544) * [Bug 1894268](https://bugzilla.redhat.com/show_bug.cgi?id=1894268): Allow users to specify ovnkube join subnet [#1508](https://github.com/openshift/cluster-network-operator/pull/1508) * Bug OCPBUGS-917: Add EgressQoS DstCIDR format validation [#1492](https://github.com/openshift/cluster-network-operator/pull/1492) * Multus admission controller: Wait for token in Hypershift [#1546](https://github.com/openshift/cluster-network-operator/pull/1546) * Use fixed name for creating EgressFirewall CRs [#1540](https://github.com/openshift/cluster-network-operator/pull/1540) * Migrate Egress Firewall Configuration during SDN migration and Rollback [#1534](https://github.com/openshift/cluster-network-operator/pull/1534) * hypershift: set multus controller priority appropriate for hosted clusters [#1538](https://github.com/openshift/cluster-network-operator/pull/1538) * [Bug 2094068](https://bugzilla.redhat.com/show_bug.cgi?id=2094068): Add northboundstale alert runbook [#1482](https://github.com/openshift/cluster-network-operator/pull/1482) * microshift: compact ovn databases periodically [#1537](https://github.com/openshift/cluster-network-operator/pull/1537) * Hypershift: Allow configuring hostname and labels on the route [#1531](https://github.com/openshift/cluster-network-operator/pull/1531) * Multus admission controller changes for hypershift [#1516](https://github.com/openshift/cluster-network-operator/pull/1516) * HyperShift: Move CNCC to the controll-plane namespace [#1525](https://github.com/openshift/cluster-network-operator/pull/1525) * Bug OCPBUGS-216: Kuryr: Bump timeoutSeconds for livenessProbe [#1528](https://github.com/openshift/cluster-network-operator/pull/1528) * Add missing runbook links for OVN-kubernetes alerts [#1523](https://github.com/openshift/cluster-network-operator/pull/1523) * [Bug 2103680](https://bugzilla.redhat.com/show_bug.cgi?id=2103680): avoid overrriding disableNetworkDiagnostics on reconciliation [#1527](https://github.com/openshift/cluster-network-operator/pull/1527) * Render CRDs for both OSDN and OVNK during migration [#1521](https://github.com/openshift/cluster-network-operator/pull/1521) * Configure ignored namespaces into multus-admission-controller [#1515](https://github.com/openshift/cluster-network-operator/pull/1515) * Add microshift ovnk manifests [#1517](https://github.com/openshift/cluster-network-operator/pull/1517) * [Bug 2116982](https://bugzilla.redhat.com/show_bug.cgi?id=2116982): multus-admission-controller SNO number of replicas [#1524](https://github.com/openshift/cluster-network-operator/pull/1524) * Enable the cloud-network-config-controller for OpenStack [#1505](https://github.com/openshift/cluster-network-operator/pull/1505) * multi-networkpolicy: Enable on SR-IOV networks [#1443](https://github.com/openshift/cluster-network-operator/pull/1443) * Updating cluster-network-operator images to be consistent with ART [#1507](https://github.com/openshift/cluster-network-operator/pull/1507) * Add configmap list/watch rights to cloud-network-config-controller [#1511](https://github.com/openshift/cluster-network-operator/pull/1511) * The Multus admission controller should run as a deployment [#1514](https://github.com/openshift/cluster-network-operator/pull/1514) * [Bug 2108232](https://bugzilla.redhat.com/show_bug.cgi?id=2108232): Revert "Bug 2085089: Pass enable-udp-aggregation=true to ovn-kubernetes" [#1510](https://github.com/openshift/cluster-network-operator/pull/1510) * [Bug 2100601](https://bugzilla.redhat.com/show_bug.cgi?id=2100601): Update CNO to config EgressIP timeout for ovnk [#1498](https://github.com/openshift/cluster-network-operator/pull/1498) * [Bug 2060079](https://bugzilla.redhat.com/show_bug.cgi?id=2060079): Enhance sensitivity of SDN alert NodeProxyApplySlow [#1491](https://github.com/openshift/cluster-network-operator/pull/1491) * [Bug 2103590](https://bugzilla.redhat.com/show_bug.cgi?id=2103590): Add init container to ensure that Status.podIP is set before postStart hooks run [#1503](https://github.com/openshift/cluster-network-operator/pull/1503) * remove @squeed from owners [#1497](https://github.com/openshift/cluster-network-operator/pull/1497) * [Bug 2085089](https://bugzilla.redhat.com/show_bug.cgi?id=2085089): Pass enable-udp-aggregation=true to ovn-kubernetes [#1489](https://github.com/openshift/cluster-network-operator/pull/1489) * [Bug 2089681](https://bugzilla.redhat.com/show_bug.cgi?id=2089681): Disable EgressIP reachability check in hypershift deployments [#1485](https://github.com/openshift/cluster-network-operator/pull/1485) * [Bug 2084062](https://bugzilla.redhat.com/show_bug.cgi?id=2084062): Make northd probe interval default to 10 seconds [#1494](https://github.com/openshift/cluster-network-operator/pull/1494) * [Bug 2100079](https://bugzilla.redhat.com/show_bug.cgi?id=2100079): Update sdn-controller perms for "configmapsleases" leaderelection [#1496](https://github.com/openshift/cluster-network-operator/pull/1496) * [Bug 2099357](https://bugzilla.redhat.com/show_bug.cgi?id=2099357): k8s 1.24 bump: add RBAC coordination leases for ovn-k master [#1490](https://github.com/openshift/cluster-network-operator/pull/1490) * [Bug 2094071](https://bugzilla.redhat.com/show_bug.cgi?id=2094071): Add southboundStale alert runbook [#1481](https://github.com/openshift/cluster-network-operator/pull/1481) * [Bug 2095772](https://bugzilla.redhat.com/show_bug.cgi?id=2095772): bindata: managed: reduce memory requests to align with observed usage [#1479](https://github.com/openshift/cluster-network-operator/pull/1479) * [Bug 2095756](https://bugzilla.redhat.com/show_bug.cgi?id=2095756): client: register types during init, not later [#1483](https://github.com/openshift/cluster-network-operator/pull/1483) * [Bug 2090336](https://bugzilla.redhat.com/show_bug.cgi?id=2090336): Multus should log at a verbose log level (without a logfile) [#1474](https://github.com/openshift/cluster-network-operator/pull/1474) * [Bug 2092047](https://bugzilla.redhat.com/show_bug.cgi?id=2092047): cncc: add RBAC coordination.k8s.io leases [#1461](https://github.com/openshift/cluster-network-operator/pull/1461) * [Bug 2089805](https://bugzilla.redhat.com/show_bug.cgi?id=2089805): Enable config duration for OVN-Kubernetes [#1455](https://github.com/openshift/cluster-network-operator/pull/1455) * [Bug 2090437](https://bugzilla.redhat.com/show_bug.cgi?id=2090437): Bump CNO to k8s 1.24 [#1459](https://github.com/openshift/cluster-network-operator/pull/1459) * [Bug 2073452](https://bugzilla.redhat.com/show_bug.cgi?id=2073452): Copying CNI binaries should be an atomic operation. [#1472](https://github.com/openshift/cluster-network-operator/pull/1472) * [Bug 2092495](https://bugzilla.redhat.com/show_bug.cgi?id=2092495): ovn: use up to 4 northd threads in non-SNO clusters [#1471](https://github.com/openshift/cluster-network-operator/pull/1471) * [Bug 2091167](https://bugzilla.redhat.com/show_bug.cgi?id=2091167): incorrectly setting rbac role for certificatesigningrequests [#1463](https://github.com/openshift/cluster-network-operator/pull/1463) * Revert "Copying CNI binaries should be an atomic operation." [#1466](https://github.com/openshift/cluster-network-operator/pull/1466) * [Bug 2073452](https://bugzilla.redhat.com/show_bug.cgi?id=2073452): Copying CNI binaries should be an atomic operation. [#1462](https://github.com/openshift/cluster-network-operator/pull/1462) * [Bug 2076776](https://bugzilla.redhat.com/show_bug.cgi?id=2076776): remove patch permissions from ovnkube-node service account [#1450](https://github.com/openshift/cluster-network-operator/pull/1450) * [Bug 2089968](https://bugzilla.redhat.com/show_bug.cgi?id=2089968): ensures type: Directory for multus host paths [#1453](https://github.com/openshift/cluster-network-operator/pull/1453) * [Bug 2090343](https://bugzilla.redhat.com/show_bug.cgi?id=2090343): [temporary] Adds multus debug logging [#1456](https://github.com/openshift/cluster-network-operator/pull/1456) * [Bug 2087942](https://bugzilla.redhat.com/show_bug.cgi?id=2087942): bump to go 1.18, lint improvements [#1451](https://github.com/openshift/cluster-network-operator/pull/1451) * [Bug 2086461](https://bugzilla.redhat.com/show_bug.cgi?id=2086461): Hypershift: Also add default for Azure mtu [#1454](https://github.com/openshift/cluster-network-operator/pull/1454) * [Bug 2086461](https://bugzilla.redhat.com/show_bug.cgi?id=2086461): AWS: Use hardcoded MTU to speed up cluster creation [#1441](https://github.com/openshift/cluster-network-operator/pull/1441) * [Bug 2087556](https://bugzilla.redhat.com/show_bug.cgi?id=2087556): Fix rendering DPU manifests [#1448](https://github.com/openshift/cluster-network-operator/pull/1448) * [Bug 2086506](https://bugzilla.redhat.com/show_bug.cgi?id=2086506): hypershift: respect statefulset when upgrading ovnk [#1447](https://github.com/openshift/cluster-network-operator/pull/1447) * [Bug 2087135](https://bugzilla.redhat.com/show_bug.cgi?id=2087135): Fixing Hypershift nodeport flow [#1440](https://github.com/openshift/cluster-network-operator/pull/1440) * [Bug 2086544](https://bugzilla.redhat.com/show_bug.cgi?id=2086544): Stop passing hosted cluster token as a parameter to ovnkube-master [#1446](https://github.com/openshift/cluster-network-operator/pull/1446) * [Bug 2086437](https://bugzilla.redhat.com/show_bug.cgi?id=2086437): Enable EgressQoS controller [#1430](https://github.com/openshift/cluster-network-operator/pull/1430) * [Bug 2086143](https://bugzilla.redhat.com/show_bug.cgi?id=2086143): Status controller: use a label, rather than watching all objects [#1431](https://github.com/openshift/cluster-network-operator/pull/1431) * [Bug 2082235](https://bugzilla.redhat.com/show_bug.cgi?id=2082235): manifests: Add in service, service-cert, and ServiceMonitor [#1433](https://github.com/openshift/cluster-network-operator/pull/1433) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): Cleanup CNO relatedObjects [#1432](https://github.com/openshift/cluster-network-operator/pull/1432) * [Bug 2079422](https://bugzilla.redhat.com/show_bug.cgi?id=2079422): Bump PodDisruptionBudget to v1 [#1427](https://github.com/openshift/cluster-network-operator/pull/1427) * Re-reconcile network on configmap, stop watching all configmaps in proxy controllers [#1416](https://github.com/openshift/cluster-network-operator/pull/1416) * hypershift: add ovnkube-node-proxy container in ovnkube-node ds [#1408](https://github.com/openshift/cluster-network-operator/pull/1408) * Hypershift: enable TLS for ovnkube-master metrics [#1423](https://github.com/openshift/cluster-network-operator/pull/1423) * Add gm metric record to use for telemetry exposure [#1425](https://github.com/openshift/cluster-network-operator/pull/1425) * Revert "ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds" [#1428](https://github.com/openshift/cluster-network-operator/pull/1428) * [Bug 2082611](https://bugzilla.redhat.com/show_bug.cgi?id=2082611): Limit Kuryr pods permissions [#1367](https://github.com/openshift/cluster-network-operator/pull/1367) * [Bug 2076877](https://bugzilla.redhat.com/show_bug.cgi?id=2076877): Bump FlowScema apiVersion to v1beta2 [#1419](https://github.com/openshift/cluster-network-operator/pull/1419) * bindata/network-diagnostics, cloud-network-config-controller: comply to restricted pod security level [#1406](https://github.com/openshift/cluster-network-operator/pull/1406) * Remove ObjectMeta.ClusterName usage [#1421](https://github.com/openshift/cluster-network-operator/pull/1421) * Hypershift: Fix ovnkube-master priority class and set resource requests on token-minter [#1420](https://github.com/openshift/cluster-network-operator/pull/1420) * add more sysctls to the multus allowlist [#1411](https://github.com/openshift/cluster-network-operator/pull/1411) * ovn: fix northd preStop command handling [#1414](https://github.com/openshift/cluster-network-operator/pull/1414) * Add control-plane-component label to ovnkube-master for hypershift [#1422](https://github.com/openshift/cluster-network-operator/pull/1422) * Add link to runbook urls [#1417](https://github.com/openshift/cluster-network-operator/pull/1417) * Hypershift: Copy all CNO conditions to HostedControlPlane status [#1415](https://github.com/openshift/cluster-network-operator/pull/1415) * ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds [#1412](https://github.com/openshift/cluster-network-operator/pull/1412) * [Bug 2075475](https://bugzilla.redhat.com/show_bug.cgi?id=2075475): Add default-route field to egress-router k8s.v1.cni.cncf.io/networks [#1390](https://github.com/openshift/cluster-network-operator/pull/1390) * OCPVE-106 Customize rollout strategy to fix SNO upgrade [#1392](https://github.com/openshift/cluster-network-operator/pull/1392) * [Bug 2080255](https://bugzilla.redhat.com/show_bug.cgi?id=2080255): SDN: Re-add list/watch/get permissions for nodes needed for EgressIP [#1409](https://github.com/openshift/cluster-network-operator/pull/1409) * [Bug 2071859](https://bugzilla.redhat.com/show_bug.cgi?id=2071859): Switch dnsPolicy to Default for OVN hostNetwork pods [#1395](https://github.com/openshift/cluster-network-operator/pull/1395) * Revert "Revert ipsec: Allow enablement/disablement at runtime" [#1384](https://github.com/openshift/cluster-network-operator/pull/1384) * ovnkube: export OVS metrics along with OVN metrics [#1393](https://github.com/openshift/cluster-network-operator/pull/1393) * [Bug 2078910](https://bugzilla.redhat.com/show_bug.cgi?id=2078910): Correct runbook_url field location within schema [#1396](https://github.com/openshift/cluster-network-operator/pull/1396) * Adds dougbtv to owners as approver and reviewer [#1397](https://github.com/openshift/cluster-network-operator/pull/1397) * [Bug 2072215](https://bugzilla.redhat.com/show_bug.cgi?id=2072215): Make the use of the ip-reconciler cronjob opt-in by detecting IPAM type usage [#1369](https://github.com/openshift/cluster-network-operator/pull/1369) * ovn-kube hypershift: fix pipefailure that prevents HA startup [#1394](https://github.com/openshift/cluster-network-operator/pull/1394) * [Bug 2063123](https://bugzilla.redhat.com/show_bug.cgi?id=2063123): Drop Node update permission for sdn-node [#1350](https://github.com/openshift/cluster-network-operator/pull/1350) * OVN-K alert: Increase severity and add runbook_url for NoRunningOvnMa… [#1327](https://github.com/openshift/cluster-network-operator/pull/1327) * Remove Kuryr mutating DNS webhook [#1363](https://github.com/openshift/cluster-network-operator/pull/1363) * raise the alert NoOvnMasterLeader to critical and add the runbook url [#1328](https://github.com/openshift/cluster-network-operator/pull/1328) * [Bug 2072710](https://bugzilla.redhat.com/show_bug.cgi?id=2072710): Make northd probe interval default to 10 seconds [#1386](https://github.com/openshift/cluster-network-operator/pull/1386) * hypershift: get control plane replicas from hcp [#1385](https://github.com/openshift/cluster-network-operator/pull/1385) * [Bug 2072766](https://bugzilla.redhat.com/show_bug.cgi?id=2072766): Reserve port TCP/9104 for cluster-network-operator [#1378](https://github.com/openshift/cluster-network-operator/pull/1378) * Multus: split pod/status rbac [#1340](https://github.com/openshift/cluster-network-operator/pull/1340) * add runbook link for NodeWithoutOVNKubeNodePodRunning and V4SubnetAll… [#1366](https://github.com/openshift/cluster-network-operator/pull/1366) * OVN: remove detecing db_ip via kapi [#1368](https://github.com/openshift/cluster-network-operator/pull/1368) * Hypershift: Respect publishing strategy of OVN southbound database service [#1349](https://github.com/openshift/cluster-network-operator/pull/1349) * Proxyconfig: Add a knob for Hypershift to enable proxying internal apiserver address [#1381](https://github.com/openshift/cluster-network-operator/pull/1381) * [Bug 1983056](https://bugzilla.redhat.com/show_bug.cgi?id=1983056): Kuryr: Update CRD from upstream [#1360](https://github.com/openshift/cluster-network-operator/pull/1360) * hypershift: disable TLS for ovnk master metrics [#1382](https://github.com/openshift/cluster-network-operator/pull/1382) * hypershift: enable publishNotReadyAddress explicitly for ovnk-master service [#1372](https://github.com/openshift/cluster-network-operator/pull/1372) * [Bug 2070047](https://bugzilla.redhat.com/show_bug.cgi?id=2070047): Bump max value of hist quantile for kuryr_cni_request_duration [#1359](https://github.com/openshift/cluster-network-operator/pull/1359) * Don't return err with empty relatedClusterObject annotation [#1379](https://github.com/openshift/cluster-network-operator/pull/1379) * hypershift: enable ovnk-master metrics in management cluster [#1374](https://github.com/openshift/cluster-network-operator/pull/1374) * Use (un)setProgressing for pod status update [#1376](https://github.com/openshift/cluster-network-operator/pull/1376) * Use the hosted cluster token explicitly [#1370](https://github.com/openshift/cluster-network-operator/pull/1370) * HyperShift: Watch StatefulSets in the management cluster [#1364](https://github.com/openshift/cluster-network-operator/pull/1364) * Exclude openshift-kube-apiserver and openshift-apiserver service/endpoints from connectivity checks in hypershift [#1375](https://github.com/openshift/cluster-network-operator/pull/1375) * Run ovnkube-master statefulset pods in parallel [#1361](https://github.com/openshift/cluster-network-operator/pull/1361) * Add ibm-cloud-managed annotations to 02-cncc-credentials.yaml, this is required in HyperShift [#1358](https://github.com/openshift/cluster-network-operator/pull/1358) * Add ipsec daemonset for hypershift managed cluster [#1356](https://github.com/openshift/cluster-network-operator/pull/1356) * Add statefulset in status manager [#1345](https://github.com/openshift/cluster-network-operator/pull/1345) * hypershift ovnk route status [#1341](https://github.com/openshift/cluster-network-operator/pull/1341) * Add tuning cni sysctl allowlist to nodes [#1347](https://github.com/openshift/cluster-network-operator/pull/1347) * [Bug 2058368](https://bugzilla.redhat.com/show_bug.cgi?id=2058368): move enable memory trimming to readiness prob [#1365](https://github.com/openshift/cluster-network-operator/pull/1365) * Add ovnkube-node initContainer to make sure sbdb is up before running other containers [#1354](https://github.com/openshift/cluster-network-operator/pull/1354) * Vendor: pull in hypershift [#1346](https://github.com/openshift/cluster-network-operator/pull/1346) * Hypershift: Use token minter instead of a kubeconfig in ovn-kubernetes master [#1344](https://github.com/openshift/cluster-network-operator/pull/1344) * Add an option to define the client name for in-cluster config [#1342](https://github.com/openshift/cluster-network-operator/pull/1342) * Add ovnkube manifests for hypershift [#1329](https://github.com/openshift/cluster-network-operator/pull/1329) * network, bootstrap: don't get apiserver from the environment [#1339](https://github.com/openshift/cluster-network-operator/pull/1339) * Fix MTU detection for multi path default routes [#1338](https://github.com/openshift/cluster-network-operator/pull/1338) * Multi cluster support in CNO [#1319](https://github.com/openshift/cluster-network-operator/pull/1319) * Fix golang image version in Dockerfile [#1330](https://github.com/openshift/cluster-network-operator/pull/1330) * Remove empty selector from the mtu prober job. [#1331](https://github.com/openshift/cluster-network-operator/pull/1331) * Switch to server-side apply [#1304](https://github.com/openshift/cluster-network-operator/pull/1304) * Probe MTU from a Job, rather than directly in the CNO [#1313](https://github.com/openshift/cluster-network-operator/pull/1313) * [Bug 2058368](https://bugzilla.redhat.com/show_bug.cgi?id=2058368): Move memory-trimming-on-compaction out of dbchecker to nbdb/sbdb [#1320](https://github.com/openshift/cluster-network-operator/pull/1320) * Fix group for CVO override used for running CNO locally [#1314](https://github.com/openshift/cluster-network-operator/pull/1314) * [Bug 2058671](https://bugzilla.redhat.com/show_bug.cgi?id=2058671): ip reconciler: auto clean failed jobs [#1318](https://github.com/openshift/cluster-network-operator/pull/1318) * [Bug 2037721](https://bugzilla.redhat.com/show_bug.cgi?id=2037721): Do not apply OVN-Kubernetes `PodDisruptionBudget` on single-node clusters [#1307](https://github.com/openshift/cluster-network-operator/pull/1307) * ovn: stop spawning the ovn-nbctl daemon [#1315](https://github.com/openshift/cluster-network-operator/pull/1315) * [Bug 1944264](https://bugzilla.redhat.com/show_bug.cgi?id=1944264): ovnkube: gracefully terminate databases from preStop [#1312](https://github.com/openshift/cluster-network-operator/pull/1312) * [Bug 2044227](https://bugzilla.redhat.com/show_bug.cgi?id=2044227): Add rolling update strategy for Kuryr-CNI. [#1311](https://github.com/openshift/cluster-network-operator/pull/1311) * [Bug 2032559](https://bugzilla.redhat.com/show_bug.cgi?id=2032559): Block DualStack migration for unsupported cluster types [#1257](https://github.com/openshift/cluster-network-operator/pull/1257) * [Bug 2010361](https://bugzilla.redhat.com/show_bug.cgi?id=2010361): SDN alerts: conform to monitoring team style guide [#1248](https://github.com/openshift/cluster-network-operator/pull/1248) * Update project owners [#1309](https://github.com/openshift/cluster-network-operator/pull/1309) * [Bug 2048575](https://bugzilla.redhat.com/show_bug.cgi?id=2048575): The Whereabouts ip-reconciler should use api-int load balancer [#1302](https://github.com/openshift/cluster-network-operator/pull/1302) * [Bug 2048793](https://bugzilla.redhat.com/show_bug.cgi?id=2048793): Kuryr: Decrease vif_annotation_timeout [#1293](https://github.com/openshift/cluster-network-operator/pull/1293) * [Bug 2049613](https://bugzilla.redhat.com/show_bug.cgi?id=2049613): Use a separate configmap for mtu migration config to avoid pod restart [#1299](https://github.com/openshift/cluster-network-operator/pull/1299) * Fix bond cni source directory path [#1295](https://github.com/openshift/cluster-network-operator/pull/1295) * Updating cluster-network-operator images to be consistent with ART [#1294](https://github.com/openshift/cluster-network-operator/pull/1294) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/c7855f10edeadf5771e5a6f145150ce3826ef95d...28db40f169f64f881b0628c19bf7c64a7a9a2467) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/20966da941ab8773261b5b4c133f3a1716699243) * Revert PAO and later changes [#330](https://github.com/openshift/cluster-node-tuning-operator/pull/330) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/b1c5690f87b4f3bba9b932474b55282c8dbf264e...20966da941ab8773261b5b4c133f3a1716699243) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/b870fc67ef5a0e92df5e5bed1ba0cb1cf197d8c6) * [OCPBUGS-22689](https://issues.redhat.com/browse/OCPBUGS-22689): increase timeout for probes [#558](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/558) * : OCPBUGS-20694: bump library-go to include switch to HTTP/1.1 [#556](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/556) * [OCPBUGS-13346](https://issues.redhat.com/browse/OCPBUGS-13346): dont log jwt tokens [#543](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/543) * [OCPBUGS-3293](https://issues.redhat.com/browse/OCPBUGS-3293): routes/status resources can leak sensitive data, exclude it from audit [#512](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/512) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#507](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/507) * remove old ensureDaemonSetCleanup [#505](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/505) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): operator NS manifest: Set empty openshift.io/run-level [#497](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/497) * manifests/deployment: comply to restricted pod security level [#495](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/495) * [Bug 2066886](https://bugzilla.redhat.com/show_bug.cgi?id=2066886): make apiserver readiness probe honor readyz [#494](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/494) * [Bug 2019215](https://bugzilla.redhat.com/show_bug.cgi?id=2019215): enable shutdown-send-retry-after for apiserver [#486](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/486) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/91038370b1b6c56f55b47c31fc596deb304ca69a...b870fc67ef5a0e92df5e5bed1ba0cb1cf197d8c6) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/ab963d8ad0387788c947b884a96eb9b2fed470b6) * [OCPBUGS-20777](https://issues.redhat.com/browse/OCPBUGS-20777): bump(k8s,openshift) to address CVE-2023-44487 [#311](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/311) * [OCPBUGS-4803](https://issues.redhat.com/browse/OCPBUGS-4803): [release-4.12] Correct go file formatting for go1.19 with gofmt [#275](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/275) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#271](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/271) * [BUILD-534](https://issues.redhat.com/browse/BUILD-534): Rebase to k8s 1.25 [#268](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/268) * manage openshift-controller-manager as a Deployment [#264](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/264) * [Bug 2055620](https://bugzilla.redhat.com/show_bug.cgi?id=2055620): Add permissions for image trigger controller [#244](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/244) * switch to route-controller-manager image and use ApplyDeployment no. 2 [#267](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/267) * Revert "switch to route-controller-manager image and use ApplyDeployment" [#265](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/265) * switch to route-controller-manager image and use ApplyDeployment [#258](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/258) * rename operator queue to OpenshiftControllerManagerOperator [#257](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/257) * fix README links [#263](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/263) * [OCPBUGS-722](https://issues.redhat.com/browse/OCPBUGS-722): handle errors during operand creation and update [#262](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/262) * [OCPBUGS-722](https://issues.redhat.com/browse/OCPBUGS-722): Fix NPD when accessing rote controller spec.deployment.replicas [#259](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/259) * Manage route controllers in separate ns [#255](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/255) * Adding leader election leases permissions for openshift-controller-manager-sa [#253](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/253) * [BUILD-417](https://issues.redhat.com/browse/BUILD-417): Adding leader election leases [#250](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/250) * [Bug 2110629](https://bugzilla.redhat.com/show_bug.cgi?id=2110629): Set openshift.io/run-level to nil in openshift-controller-manager namespace [#248](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/248) * [Bug 2110617](https://bugzilla.redhat.com/show_bug.cgi?id=2110617): Add namespace and RBAC needed for ingress-to-route [#247](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/247) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#245](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/245) * [BUILD-418](https://issues.redhat.com/browse/BUILD-418): Rebase to k8s 1.24 [#242](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/242) * Add user coreydaley as an approver [#241](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/241) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): AUTH-133: bindata: comply to restricted pod security level [#240](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/240) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#236](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/236) * manifests/deployment: comply to restricted pod security level [#239](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/239) * [Bug 2067820](https://bugzilla.redhat.com/show_bug.cgi?id=2067820): Update prometheus client_golang from 1.11.0 => 1.11.1 [#238](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/238) * [Bug 2042587](https://bugzilla.redhat.com/show_bug.cgi?id=2042587): Simplify Sync of Global CA ConfigMap [#233](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/233) * update cert injection annotations to beta [#237](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/237) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/b8b65d15d14c21e6a5dd316dd59a9cfb3a2f403a...ab963d8ad0387788c947b884a96eb9b2fed470b6) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/cb8862b0042ac2e7130a7c018e3e083ebc46705e) * [OCPBUGS-21080](https://issues.redhat.com/browse/OCPBUGS-21080): Bump deps to address CVE-2023-44487 [4.12] [#136](https://github.com/openshift/cluster-policy-controller/pull/136) * [OCPBUGS-12442](https://issues.redhat.com/browse/OCPBUGS-12442): psalabelsyncer: handle empty namespace of a rolebinding subject [#111](https://github.com/openshift/cluster-policy-controller/pull/111) * [OCPBUGS-14092](https://issues.redhat.com/browse/OCPBUGS-14092): [4.12] fix ClusterResourceQuotas to work for all api resources including custom resources [#117](https://github.com/openshift/cluster-policy-controller/pull/117) * [OCPBUGS-13889](https://issues.redhat.com/browse/OCPBUGS-13889): external template and route Informer [#114](https://github.com/openshift/cluster-policy-controller/pull/114) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): backport feature gate honoring for PSa label syncer [#98](https://github.com/openshift/cluster-policy-controller/pull/98) * [OCPBUGS-7705](https://issues.redhat.com/browse/OCPBUGS-7705): [release-4.12] update dependencies to point to v0.25.0 [#102](https://github.com/openshift/cluster-policy-controller/pull/102) * [OCPBUGS-5786](https://issues.redhat.com/browse/OCPBUGS-5786): clusterquotareconciliation: do not sync quota monitor cache with no monitors registered [#95](https://github.com/openshift/cluster-policy-controller/pull/95) * [OCPBUGS-3663](https://issues.redhat.com/browse/OCPBUGS-3663): Revert "Revert "Revert "psalabelsyncer: synchronize the enforcement l… [#90](https://github.com/openshift/cluster-policy-controller/pull/90) * Bump go to 1.19 in go.mod [#88](https://github.com/openshift/cluster-policy-controller/pull/88) * Bump Kubernetes module dependencies to 1.25. [#87](https://github.com/openshift/cluster-policy-controller/pull/87) * Factor our ns exemptions to make them consumable by other components [#85](https://github.com/openshift/cluster-policy-controller/pull/85) * pkg/psalabelsyncer: rm unused, simple bool return [#86](https://github.com/openshift/cluster-policy-controller/pull/86) * Revert "Revert "psalabelsyncer: synchronize the enforcement label"" [#84](https://github.com/openshift/cluster-policy-controller/pull/84) * Revert "psalabelsyncer: synchronize the enforcement label" [#82](https://github.com/openshift/cluster-policy-controller/pull/82) * psalabelsyncer: synchronize the enforcement label [#81](https://github.com/openshift/cluster-policy-controller/pull/81) * [Bug 2095716](https://bugzilla.redhat.com/show_bug.cgi?id=2095716): [psalabelsyncer] - remove openshift-operator from the refused list to sync since it is used by OPC/OLM users to install Operator solutions [#79](https://github.com/openshift/cluster-policy-controller/pull/79) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): Introduce Pod Security Admission Label Synchronization controller [#75](https://github.com/openshift/cluster-policy-controller/pull/75) * [Bug 2067822](https://bugzilla.redhat.com/show_bug.cgi?id=2067822): Update deps [#78](https://github.com/openshift/cluster-policy-controller/pull/78) * Updating cluster-policy-controller images to be consistent with ART [#74](https://github.com/openshift/cluster-policy-controller/pull/74) * Update OWNERS [#76](https://github.com/openshift/cluster-policy-controller/pull/76) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/85e14c7cf4ccf86a443e7d70f42465f83f0ba7f8...cb8862b0042ac2e7130a7c018e3e083ebc46705e) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/bc989eeb4c1c1d21cf67968ab84de9a97544add0) * [OCPBUGS-49664](https://issues.redhat.com/browse/OCPBUGS-49664): add shannon and aroyoredhat as owners [#600](https://github.com/openshift/cluster-samples-operator/pull/600) * [OCPBUGS-21179](https://issues.redhat.com/browse/OCPBUGS-21179): update k8s.io/apiserver version [#590](https://github.com/openshift/cluster-samples-operator/pull/590) * [OCPBUGS-15757](https://issues.redhat.com/browse/OCPBUGS-15757): Update Jenkins and Jenkins Agent Base image versions [#506](https://github.com/openshift/cluster-samples-operator/pull/506) * [OCPBUGS-10918](https://issues.redhat.com/browse/OCPBUGS-10918): update Jenkins to v4.12 [#492](https://github.com/openshift/cluster-samples-operator/pull/492) * [OCPBUGS-7208](https://issues.redhat.com/browse/OCPBUGS-7208): When setting allowedRegistries urls the openshift-samples operator is degraded [#489](https://github.com/openshift/cluster-samples-operator/pull/489) * [OCPBUGS-4599](https://issues.redhat.com/browse/OCPBUGS-4599): Bump k8s master [#479](https://github.com/openshift/cluster-samples-operator/pull/479) * [OCPBUGS-4407](https://issues.redhat.com/browse/OCPBUGS-4407): Update Cluster Sample Operator dependencies and libraries for OCP 4.13 [#478](https://github.com/openshift/cluster-samples-operator/pull/478) * [OCPBUGS-4369](https://issues.redhat.com/browse/OCPBUGS-4369): Update Cluster Sample Operator dependencies and libraries for OCP 4.12 [#477](https://github.com/openshift/cluster-samples-operator/pull/477) * Updating ose-cluster-samples-operator images to be consistent with ART [#465](https://github.com/openshift/cluster-samples-operator/pull/465) * Add client certificate and key to service monitor [#464](https://github.com/openshift/cluster-samples-operator/pull/464) * Updating ose-cluster-samples-operator images to be consistent with ART [#435](https://github.com/openshift/cluster-samples-operator/pull/435) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): Update Cluster Sample Operator dependencies and libraries for OCP 4.11 [#433](https://github.com/openshift/cluster-samples-operator/pull/433) * update jenkins CPaaS image refs prior to 4.11 GA [#432](https://github.com/openshift/cluster-samples-operator/pull/432) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): Update Cluster Sample Operator dependencies and libraries for OCP 4.11 [#431](https://github.com/openshift/cluster-samples-operator/pull/431) * [Bug 2095256](https://bugzilla.redhat.com/show_bug.cgi?id=2095256): Samples Owner needs to be Updated [#429](https://github.com/openshift/cluster-samples-operator/pull/429) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): Update Cluster Sample Operator dependencies and libraries for OCP 4.11 [#428](https://github.com/openshift/cluster-samples-operator/pull/428) * [AUTH-133](https://issues.redhat.com/browse/AUTH-133): manifests/deployment: comply to restricted pod security level [#425](https://github.com/openshift/cluster-samples-operator/pull/425) * Updating ose-cluster-samples-operator images to be consistent with ART [#426](https://github.com/openshift/cluster-samples-operator/pull/426) * [JNKS-289](https://issues.redhat.com/browse/JNKS-289): pull in jenkins imagestream updates (add back maven/nodejs streams) [#422](https://github.com/openshift/cluster-samples-operator/pull/422) * Jira SO-19: Make sure template and imagestream api version is groupified [#420](https://github.com/openshift/cluster-samples-operator/pull/420) * [JNKS-287](https://issues.redhat.com/browse/JNKS-287): remove imagestream manifest refs; remove override of jenkins images with payload images [#416](https://github.com/openshift/cluster-samples-operator/pull/416) * [Bug 2010364](https://bugzilla.redhat.com/show_bug.cgi?id=2010364): OpenShift Alerting Rules Style-Guide Compliance [#419](https://github.com/openshift/cluster-samples-operator/pull/419) * [Bug 2067823](https://bugzilla.redhat.com/show_bug.cgi?id=2067823): Taking care of CVE-2022-21698 [#418](https://github.com/openshift/cluster-samples-operator/pull/418) * [Bug 2064610](https://bugzilla.redhat.com/show_bug.cgi?id=2064610): Remove duplicate v1 from cakephp-mysql templates [#417](https://github.com/openshift/cluster-samples-operator/pull/417) * manifests: Add capability.openshift.io/name [#414](https://github.com/openshift/cluster-samples-operator/pull/414) * Updating ose-cluster-samples-operator images to be consistent with ART [#412](https://github.com/openshift/cluster-samples-operator/pull/412) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/b27c4ce6602596083cb688b605f594c688fb4701...bc989eeb4c1c1d21cf67968ab84de9a97544add0) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/21ebf328f53182111eb7dce344487ba633d09b1a) * [OCPBUGS-21266](https://issues.redhat.com/browse/OCPBUGS-21266): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#407](https://github.com/openshift/cluster-storage-operator/pull/407) * [OCPBUGS-18131](https://issues.redhat.com/browse/OCPBUGS-18131): Add patch for allowing configmap updates via clusterrole [#402](https://github.com/openshift/cluster-storage-operator/pull/402) * [OCPBUGS-14307](https://issues.redhat.com/browse/OCPBUGS-14307): User real node name in failing mount alerts [#377](https://github.com/openshift/cluster-storage-operator/pull/377) * [OCPBUGS-13719](https://issues.redhat.com/browse/OCPBUGS-13719): assets: csi: hypershift: add pull-secret to aws-ebs-csi-driver-operator ServiceAccount [#370](https://github.com/openshift/cluster-storage-operator/pull/370) * [OCPBUGS-10646](https://issues.redhat.com/browse/OCPBUGS-10646): Hypershift: set control plane operand properties [#355](https://github.com/openshift/cluster-storage-operator/pull/355) * [OCPBUGS-8374](https://issues.redhat.com/browse/OCPBUGS-8374): Add UID to CSO Pod to be able to run with custom SCCs [#347](https://github.com/openshift/cluster-storage-operator/pull/347) * [OCPBUGS-7331](https://issues.redhat.com/browse/OCPBUGS-7331): hypershift: remove inject-proxy annotation from aws-ebs-csi-driver-operator deployment [#337](https://github.com/openshift/cluster-storage-operator/pull/337) * [STOR-1039](https://issues.redhat.com/browse/STOR-1039): Make changes into CSO for hypershift [#318](https://github.com/openshift/cluster-storage-operator/pull/318) * [OCPBUGS-2880](https://issues.redhat.com/browse/OCPBUGS-2880): Fix panic on empty featureGate.spec.customNoUpgrade [#325](https://github.com/openshift/cluster-storage-operator/pull/325) * [Bug 2093016](https://bugzilla.redhat.com/show_bug.cgi?id=2093016): Add alert about attach / mount failing [#324](https://github.com/openshift/cluster-storage-operator/pull/324) * [OCPBUGS-1361](https://issues.redhat.com/browse/OCPBUGS-1361): Reword vSphere problem detector check alerts [#322](https://github.com/openshift/cluster-storage-operator/pull/322) * Remove specific UID from cluster-storage-operator [#316](https://github.com/openshift/cluster-storage-operator/pull/316) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Allow CSI operator to get CRDs [#323](https://github.com/openshift/cluster-storage-operator/pull/323) * add storage capability annotation [#303](https://github.com/openshift/cluster-storage-operator/pull/303) * Bump go to 1.19 [#321](https://github.com/openshift/cluster-storage-operator/pull/321) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#317](https://github.com/openshift/cluster-storage-operator/pull/317) * [STOR-1050](https://issues.redhat.com/browse/STOR-1050): bump openshift/api to latest master [#319](https://github.com/openshift/cluster-storage-operator/pull/319) * Remove in-tree AWS EBS and GCP PD storage classes [#312](https://github.com/openshift/cluster-storage-operator/pull/312) * [TRT-534](https://issues.redhat.com/browse/TRT-534): Add client certificate and key to service monitor [#306](https://github.com/openshift/cluster-storage-operator/pull/306) * [OCPBUGS-946](https://issues.redhat.com/browse/OCPBUGS-946): Resource csi.storage.k8s.io/csinodeinfos added to powervs-block-csi-d river-operator-clusterrole [#315](https://github.com/openshift/cluster-storage-operator/pull/315) * Updating cluster-storage-operator images to be consistent with ART [#296](https://github.com/openshift/cluster-storage-operator/pull/296) * [Bug 2112237](https://bugzilla.redhat.com/show_bug.cgi?id=2112237): correct sc error messages for ibm and alibaba platforms [#310](https://github.com/openshift/cluster-storage-operator/pull/310) * Add PowerVS Block CSI Driver Operator [#304](https://github.com/openshift/cluster-storage-operator/pull/304) * [Bug 2108054](https://bugzilla.redhat.com/show_bug.cgi?id=2108054): Allow Prometheus to scan openshift-cluster-csi-drivers namespace [#308](https://github.com/openshift/cluster-storage-operator/pull/308) * [STOR-956](https://issues.redhat.com/browse/STOR-956): Bump(openshift/api): to get CSI changes [#307](https://github.com/openshift/cluster-storage-operator/pull/307) * [Bug 2108054](https://bugzilla.redhat.com/show_bug.cgi?id=2108054): Add alert about unsupported CSI driver [#305](https://github.com/openshift/cluster-storage-operator/pull/305) * [Bug 2107043](https://bugzilla.redhat.com/show_bug.cgi?id=2107043): HTTPS_PROXY ENV missing in some CSI driver operators [#301](https://github.com/openshift/cluster-storage-operator/pull/301) * [Bug 2101645](https://bugzilla.redhat.com/show_bug.cgi?id=2101645): DefaultStorageClassController reports fake message on azure and openstack [#292](https://github.com/openshift/cluster-storage-operator/pull/292) * [Bug 2077599](https://bugzilla.redhat.com/show_bug.cgi?id=2077599): Fix vCenter / ESXi version alerts [#290](https://github.com/openshift/cluster-storage-operator/pull/290) * [Bug 2097400](https://bugzilla.redhat.com/show_bug.cgi?id=2097400): Allow Shared Resource Driver to operate validating webhook [#288](https://github.com/openshift/cluster-storage-operator/pull/288) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): Un-Revert "OCP should default to pd-ssd disk type on GCP" [#284](https://github.com/openshift/cluster-storage-operator/pull/284) * [Bug 2081557](https://bugzilla.redhat.com/show_bug.cgi?id=2081557): Fix DefaultStorageClassController getting Available=False on error [#277](https://github.com/openshift/cluster-storage-operator/pull/277) * [Bug 2088533](https://bugzilla.redhat.com/show_bug.cgi?id=2088533): remove unused '-v' for shared resource operator as part of klogv2/openshift api/ k8s bump [#287](https://github.com/openshift/cluster-storage-operator/pull/287) * [Bug 2086231](https://bugzilla.redhat.com/show_bug.cgi?id=2086231): BUILD-405: Install the Shared Resource CSI Driver WebHook [#278](https://github.com/openshift/cluster-storage-operator/pull/278) * Updating cluster-storage-operator images to be consistent with ART [#282](https://github.com/openshift/cluster-storage-operator/pull/282) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): Revert "OCP should default to pd-ssd disk type on GCP" [#283](https://github.com/openshift/cluster-storage-operator/pull/283) * [Bug 2077599](https://bugzilla.redhat.com/show_bug.cgi?id=2077599): Alert on vCenter < 7.0.2 [#279](https://github.com/openshift/cluster-storage-operator/pull/279) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): OCP should default to pd-ssd disk type on GCP [#273](https://github.com/openshift/cluster-storage-operator/pull/273) * [Bug 2079197](https://bugzilla.redhat.com/show_bug.cgi?id=2079197): alert when more than one default storage class is detected [#276](https://github.com/openshift/cluster-storage-operator/pull/276) * manifests/deployment: comply to restricted pod security level [#274](https://github.com/openshift/cluster-storage-operator/pull/274) * remove openstack in-tree storage class [#271](https://github.com/openshift/cluster-storage-operator/pull/271) * remove azure in-tree storage class [#272](https://github.com/openshift/cluster-storage-operator/pull/272) * Azure File CSI Driver Operator is GA in OCP 4.11 [#266](https://github.com/openshift/cluster-storage-operator/pull/266) * Add missing ibm cloud annotations to prometheus rbac [#267](https://github.com/openshift/cluster-storage-operator/pull/267) * no CredentialsRequests in ibm-cloud-managed [#253](https://github.com/openshift/cluster-storage-operator/pull/253) * [Bug 2060509](https://bugzilla.redhat.com/show_bug.cgi?id=2060509): Incorrect installation of ibmcloud vpc csi driver in IBM… [#264](https://github.com/openshift/cluster-storage-operator/pull/264) * [Bug 2049872](https://bugzilla.redhat.com/show_bug.cgi?id=2049872): cluster storage operator AWS credentialsrequest lacks KMS privileges [#263](https://github.com/openshift/cluster-storage-operator/pull/263) * [Bug 2043132](https://bugzilla.redhat.com/show_bug.cgi?id=2043132): Add metrics for vsphere operator [#262](https://github.com/openshift/cluster-storage-operator/pull/262) * [Bug 2050300](https://bugzilla.redhat.com/show_bug.cgi?id=2050300): Don't set generation in object comming from cache [#261](https://github.com/openshift/cluster-storage-operator/pull/261) * Updating cluster-storage-operator images to be consistent with ART [#260](https://github.com/openshift/cluster-storage-operator/pull/260) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/0ad6026dffef5fd7c4a12e11ea468cdd2b35ee73...21ebf328f53182111eb7dce344487ba633d09b1a) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/2796e1732615521e818be82663058e0a3f1b3941) * Clean up owners file as part of DPP-10343 [#46](https://github.com/openshift/cluster-update-keys/pull/46) * Updating ose-cluster-update-keys images to be consistent with ART [#45](https://github.com/openshift/cluster-update-keys/pull/45) * Updating ose-cluster-update-keys images to be consistent with ART [#43](https://github.com/openshift/cluster-update-keys/pull/43) * Update OWNERS [#44](https://github.com/openshift/cluster-update-keys/pull/44) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/684f6f42381cf6401dfb7e4f6f5f9fd0e441639b...2796e1732615521e818be82663058e0a3f1b3941) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/da2578c6dd81e83d331daacb357c4f1cc60bf234) * [OCPBUGS-45333](https://issues.redhat.com/browse/OCPBUGS-45333): deps: bump golang.org/x/net to 0.31.0 [#1122](https://github.com/openshift/cluster-version-operator/pull/1122) * [OCPBUGS-27443](https://issues.redhat.com/browse/OCPBUGS-27443): pkg/cvo/availableupdates: Only bump LastAttempt on Cincinnati pulls [#1024](https://github.com/openshift/cluster-version-operator/pull/1024) * [OCPBUGS-20729](https://issues.redhat.com/browse/OCPBUGS-20729): [4.12] Bump http-related deps [#990](https://github.com/openshift/cluster-version-operator/pull/990) * [OCPBUGS-22408](https://issues.redhat.com/browse/OCPBUGS-22408): pkg/clusterconditions/promql: Warm cache with 1s delay [#988](https://github.com/openshift/cluster-version-operator/pull/988) * [OCPBUGS-22198](https://issues.redhat.com/browse/OCPBUGS-22198): Reconcile Volumes in SCCs [#985](https://github.com/openshift/cluster-version-operator/pull/985) * [OCPBUGS-14096](https://issues.redhat.com/browse/OCPBUGS-14096): Trigger new sync round on ClusterOperator Available changes [#938](https://github.com/openshift/cluster-version-operator/pull/938) * [OCPBUGS-12182](https://issues.redhat.com/browse/OCPBUGS-12182): Update dnsPolicy to allow consistent resolution of the internal LB [#931](https://github.com/openshift/cluster-version-operator/pull/931) * [OCPBUGS-10565](https://issues.redhat.com/browse/OCPBUGS-10565): RetrievePayload: Improve timeouts and cover behavior with tests [#914](https://github.com/openshift/cluster-version-operator/pull/914) * [OCPBUGS-10514](https://issues.redhat.com/browse/OCPBUGS-10514): pkg/cvo/availableupdates: Prioritize conditional risks for largest target version [#913](https://github.com/openshift/cluster-version-operator/pull/913) * [OCPBUGS-8304](https://issues.redhat.com/browse/OCPBUGS-8304): Adding admin-gate ack-4.12-kube-1.26-api-removals-in-4.13 [#908](https://github.com/openshift/cluster-version-operator/pull/908) * [OCPBUGS-5879](https://issues.redhat.com/browse/OCPBUGS-5879): Set upgradeability check throttling period to 2m [#884](https://github.com/openshift/cluster-version-operator/pull/884) * [OCPBUGS-5083](https://issues.redhat.com/browse/OCPBUGS-5083): pkg/payload/precondition: Do not claim warnings would have blocked [#878](https://github.com/openshift/cluster-version-operator/pull/878) * [OCPBUGS-3770](https://issues.redhat.com/browse/OCPBUGS-3770): Allow CVO to update `KUBERNETES_SERVICE_HOST` with LB address [#866](https://github.com/openshift/cluster-version-operator/pull/866) * [OCPBUGS-3352](https://issues.redhat.com/browse/OCPBUGS-3352): Do not fail precondition check for UnknownUpdate [#861](https://github.com/openshift/cluster-version-operator/pull/861) * [Bug 2033499](https://bugzilla.redhat.com/show_bug.cgi?id=2033499): Don't overwrite accepted risks if local payload [#852](https://github.com/openshift/cluster-version-operator/pull/852) * [OCPBUGS-2125](https://issues.redhat.com/browse/OCPBUGS-2125): Allow unknown capabilities during payload load and implicitl enablement checking [#850](https://github.com/openshift/cluster-version-operator/pull/850) * bump api version to add new capability [#835](https://github.com/openshift/cluster-version-operator/pull/835) * [Bug 2033499](https://bugzilla.redhat.com/show_bug.cgi?id=2033499): Populate acceptedRisks in ClusterVersion History [#841](https://github.com/openshift/cluster-version-operator/pull/841) * Dockerfile: Bump to Go 1.18 [#845](https://github.com/openshift/cluster-version-operator/pull/845) * Fix ups from gofmt 1.19 [#849](https://github.com/openshift/cluster-version-operator/pull/849) * Revert "Fix ups from gofmt 1.19 and yamllint" [#848](https://github.com/openshift/cluster-version-operator/pull/848) * Fix ups from gofmt 1.19 and yamllint [#844](https://github.com/openshift/cluster-version-operator/pull/844) * Updating cluster-version-operator images to be consistent with ART [#842](https://github.com/openshift/cluster-version-operator/pull/842) * [OCPBUGS-1636](https://issues.redhat.com/browse/OCPBUGS-1636): pkg/cvo/sync_worker: Pre-create ClusterOperator in reconciling-mode too [#840](https://github.com/openshift/cluster-version-operator/pull/840) * [Bug 1951835](https://bugzilla.redhat.com/show_bug.cgi?id=1951835): Handle report only sync errors [#837](https://github.com/openshift/cluster-version-operator/pull/837) * [OCPBUGS-1402](https://issues.redhat.com/browse/OCPBUGS-1402): pkg/cvo/sync_worker.go: remove Lock/Unlock [#832](https://github.com/openshift/cluster-version-operator/pull/832) * OWNERS: Prune vrutkovs [#838](https://github.com/openshift/cluster-version-operator/pull/838) * pkg/cvo: add test utility functions [#833](https://github.com/openshift/cluster-version-operator/pull/833) * allow more than one featureset [#821](https://github.com/openshift/cluster-version-operator/pull/821) * [OCPBUGS-575](https://issues.redhat.com/browse/OCPBUGS-575): lib/resourcemerge/core: Reconcile seccompProfile in ensurePodSecurityContext [#830](https://github.com/openshift/cluster-version-operator/pull/830) * [Bug 2006611](https://bugzilla.redhat.com/show_bug.cgi?id=2006611): Upgrade takes too much time when upgrading via --to-image [#808](https://github.com/openshift/cluster-version-operator/pull/808) * [OCPBUGS-569](https://issues.redhat.com/browse/OCPBUGS-569): CVO History Pruner return not assigned to config.Status.History [#828](https://github.com/openshift/cluster-version-operator/pull/828) * bump api version to add new capability [#801](https://github.com/openshift/cluster-version-operator/pull/801) * lib/capability: Sort all slices after building them [#827](https://github.com/openshift/cluster-version-operator/pull/827) * [Bug 1951835](https://bugzilla.redhat.com/show_bug.cgi?id=1951835): Propagate Degraded to update status [#662](https://github.com/openshift/cluster-version-operator/pull/662) * [Bug 2010365](https://bugzilla.redhat.com/show_bug.cgi?id=2010365): OpenShift Alerting Rules Style-Guide Compliance [#800](https://github.com/openshift/cluster-version-operator/pull/800) * Restore 'Pull arch from payload' and fix [#813](https://github.com/openshift/cluster-version-operator/pull/813) * /pkg/cvo: improve CV history pruning [#805](https://github.com/openshift/cluster-version-operator/pull/805) * [Bug 2117033](https://bugzilla.redhat.com/show_bug.cgi?id=2117033): pkg/cvo/sync_worker: Trigger new sync round on ClusterOperator versions[name=operator] changes [#818](https://github.com/openshift/cluster-version-operator/pull/818) * pkg/cvo/status.go: sort implicitly enabled caps [#814](https://github.com/openshift/cluster-version-operator/pull/814) * pkg/cvo/sync_worker: Consolidate all ClusterOperator errors by reason [#577](https://github.com/openshift/cluster-version-operator/pull/577) * Revert "Pull arch from payload" [#810](https://github.com/openshift/cluster-version-operator/pull/810) * Pull arch from payload [#796](https://github.com/openshift/cluster-version-operator/pull/796) * [Bug 2110590](https://bugzilla.redhat.com/show_bug.cgi?id=2110590): pkg/cvo/updatepayload: Set 'readOnlyRootFilesystem: false' [#807](https://github.com/openshift/cluster-version-operator/pull/807) * [Bug 2109374](https://bugzilla.redhat.com/show_bug.cgi?id=2109374): pkg/clusterconditions/promql: Cap PromQL queries at 5 minutes [#806](https://github.com/openshift/cluster-version-operator/pull/806) * [Bug 2094174](https://bugzilla.redhat.com/show_bug.cgi?id=2094174): pkg/cvo: reset payload load status [#788](https://github.com/openshift/cluster-version-operator/pull/788) * [Bug 2108858](https://bugzilla.redhat.com/show_bug.cgi?id=2108858): lib/resourcemerge: change SecurityContext reconcile [#804](https://github.com/openshift/cluster-version-operator/pull/804) * Updating cluster-version-operator images to be consistent with ART [#797](https://github.com/openshift/cluster-version-operator/pull/797) * [Bug 2100533](https://bugzilla.redhat.com/show_bug.cgi?id=2100533): remove local golang lint [#792](https://github.com/openshift/cluster-version-operator/pull/792) * [Bug 2097067](https://bugzilla.redhat.com/show_bug.cgi?id=2097067): pkg/cvo: retain initial completed update history entry [#791](https://github.com/openshift/cluster-version-operator/pull/791) * Updating cluster-version-operator images to be consistent with ART [#779](https://github.com/openshift/cluster-version-operator/pull/779) * [Bug 2091770](https://bugzilla.redhat.com/show_bug.cgi?id=2091770): pkg/cvo/updatepayload: Guard against 'rm -fR -whatever' with ./* [#783](https://github.com/openshift/cluster-version-operator/pull/783) * [Bug 2071998](https://bugzilla.redhat.com/show_bug.cgi?id=2071998): pkg/cvo/updatepayload: Event when forcing through a sig-verification failure [#763](https://github.com/openshift/cluster-version-operator/pull/763) * [Bug 2081895](https://bugzilla.redhat.com/show_bug.cgi?id=2081895): lib/resourcebuilder: Drop Get from check*Health functions [#780](https://github.com/openshift/cluster-version-operator/pull/780) * [Bug 2079789](https://bugzilla.redhat.com/show_bug.cgi?id=2079789): capability: Init prior known from CV status [#773](https://github.com/openshift/cluster-version-operator/pull/773) * [Bug 2084331](https://bugzilla.redhat.com/show_bug.cgi?id=2084331): vendor: Bump library-go to pick up manifest checkResourceEnablement fix [#781](https://github.com/openshift/cluster-version-operator/pull/781) * [Bug 2081895](https://bugzilla.redhat.com/show_bug.cgi?id=2081895): lib/resourcebuilder/apiext: Restore check for Established=True CRDs [#771](https://github.com/openshift/cluster-version-operator/pull/771) * Revert "admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate" [#775](https://github.com/openshift/cluster-version-operator/pull/775) * [Bug 2080429](https://bugzilla.redhat.com/show_bug.cgi?id=2080429): pkg/cvo/sync_worker.go: Save overrides and capabilities [#770](https://github.com/openshift/cluster-version-operator/pull/770) * admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate [#772](https://github.com/openshift/cluster-version-operator/pull/772) * [Bug 2079789](https://bugzilla.redhat.com/show_bug.cgi?id=2079789): pkg/cvo/sync_worker.go: Initialize implicitlyEnabledCaps [#768](https://github.com/openshift/cluster-version-operator/pull/768) * [Bug 2072389](https://bugzilla.redhat.com/show_bug.cgi?id=2072389): Do not save desired update on load failures [#766](https://github.com/openshift/cluster-version-operator/pull/766) * [Bug 2070805](https://bugzilla.redhat.com/show_bug.cgi?id=2070805): pkg/cvo/updatepayload: Restore shell for rm globbing [#767](https://github.com/openshift/cluster-version-operator/pull/767) * [Bug 2070805](https://bugzilla.redhat.com/show_bug.cgi?id=2070805): pkg/cvo/updatepayload: Shift previous-download removal into the job [#765](https://github.com/openshift/cluster-version-operator/pull/765) * [Bug 2070854](https://bugzilla.redhat.com/show_bug.cgi?id=2070854): syncWorkerStatus: Avoid saving stale status values [#759](https://github.com/openshift/cluster-version-operator/pull/759) * Implicitly enable capabilities on updates [#758](https://github.com/openshift/cluster-version-operator/pull/758) * [Bug 2070887](https://bugzilla.redhat.com/show_bug.cgi?id=2070887): pkg/cvo/sync_worker.go: set implicitly enabled caps earlier [#761](https://github.com/openshift/cluster-version-operator/pull/761) * pkg/cvo/sync_worker: Log only changed enabled capabilities [#762](https://github.com/openshift/cluster-version-operator/pull/762) * [Bug 2070805](https://bugzilla.redhat.com/show_bug.cgi?id=2070805): pkg/cvo/updatepayload: Prune previous payload downloads [#760](https://github.com/openshift/cluster-version-operator/pull/760) * capability: disallow disabling, add enabling capabilities [#754](https://github.com/openshift/cluster-version-operator/pull/754) * Bump openshift/api to include new marketplace capability [#757](https://github.com/openshift/cluster-version-operator/pull/757) * pkg/cvo/metrics: Add a cluster_version_capability metric [#755](https://github.com/openshift/cluster-version-operator/pull/755) * vendor: update openshift/api [#751](https://github.com/openshift/cluster-version-operator/pull/751) * lib/capability: Sort status.capabilities arrays [#752](https://github.com/openshift/cluster-version-operator/pull/752) * pkg/cvo/sync_worker.go: ensure all of SyncWorkerStatus copied [#750](https://github.com/openshift/cluster-version-operator/pull/750) * pkg/payload: Log load-time manifest exclusion at V(2) [#749](https://github.com/openshift/cluster-version-operator/pull/749) * Consume post install static spec capabilities [#744](https://github.com/openshift/cluster-version-operator/pull/744) * [Bug 2062568](https://bugzilla.redhat.com/show_bug.cgi?id=2062568): lib/resourcebuilder/batch: Stop waiting on Job deadline exceeded [#748](https://github.com/openshift/cluster-version-operator/pull/748) * Get cluster version object earlier in startup [#741](https://github.com/openshift/cluster-version-operator/pull/741) * [Bug 1822752](https://bugzilla.redhat.com/show_bug.cgi?id=1822752): pkg/cvo: Fix ups from separating load from apply #683 [#745](https://github.com/openshift/cluster-version-operator/pull/745) * [Bug 1822752](https://bugzilla.redhat.com/show_bug.cgi?id=1822752): pkg/cvo: Separate payload load from payload apply [#683](https://github.com/openshift/cluster-version-operator/pull/683) * [Bug 2050946](https://bugzilla.redhat.com/show_bug.cgi?id=2050946): Fix wrong informer for feature-gate-stopper [#739](https://github.com/openshift/cluster-version-operator/pull/739) * pkg/payload: Log manifest exclusion [#712](https://github.com/openshift/cluster-version-operator/pull/712) * vendor: Bump openshift/api to pick up capabilities [#737](https://github.com/openshift/cluster-version-operator/pull/737) * Updating cluster-version-operator images to be consistent with ART [#732](https://github.com/openshift/cluster-version-operator/pull/732) * [Bug 2050946](https://bugzilla.redhat.com/show_bug.cgi?id=2050946): pkg/featurechangestopper: Seed queue to guard against incorrect startingTechPreviewState [#736](https://github.com/openshift/cluster-version-operator/pull/736) * [Bug 2009845](https://bugzilla.redhat.com/show_bug.cgi?id=2009845): pkg/cvo/sync_worker: Use current state, not suggested state, for guarding Initializing->Updating [#733](https://github.com/openshift/cluster-version-operator/pull/733) * pkg/cvo: Drop unused 'workers' argument from Operator.Run [#719](https://github.com/openshift/cluster-version-operator/pull/719) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/33e65325a5780906244c2b36031e6e14d812d8b2...da2578c6dd81e83d331daacb357c4f1cc60bf234) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/e4d9170e71bdf8a79e9cde94dac53575a30f46f3) * Updating configmap-reload images to be consistent with ART [#47](https://github.com/openshift/configmap-reload/pull/47) * OWNERS: Add Joao and myself, and move former team members to emeritus [#46](https://github.com/openshift/configmap-reload/pull/46) * Updating configmap-reload images to be consistent with ART [#45](https://github.com/openshift/configmap-reload/pull/45) * [Bug 2067745](https://bugzilla.redhat.com/show_bug.cgi?id=2067745): Merge Upstream Master Branch [#44](https://github.com/openshift/configmap-reload/pull/44) * Updating configmap-reload images to be consistent with ART [#42](https://github.com/openshift/configmap-reload/pull/42) * Updating configmap-reload images to be consistent with ART [#41](https://github.com/openshift/configmap-reload/pull/41) * [Full changelog](https://github.com/openshift/configmap-reload/compare/1e5a18ebda95b5703ea6e9fe511f459cb9615162...e4d9170e71bdf8a79e9cde94dac53575a30f46f3) ### [console](https://github.com/openshift/console/tree/3b4ac6ad45e18145670b16658e4c89a3555ec277) * Dockerfile yarn line update [#14838](https://github.com/openshift/console/pull/14838) * [OCPBUGS-45291](https://issues.redhat.com/browse/OCPBUGS-45291): Application creation fail when manually entering input scaling value in local setup [#14572](https://github.com/openshift/console/pull/14572) * [OCPBUGS-45235](https://issues.redhat.com/browse/OCPBUGS-45235): Edit the secret and add the Chinese in the web-console, garbled characters will be displayed [#14561](https://github.com/openshift/console/pull/14561) * [OCPBUGS-36561](https://issues.redhat.com/browse/OCPBUGS-36561): Increase login flow state paramater length/entropy [#14539](https://github.com/openshift/console/pull/14539) * [OCPBUGS-43639](https://issues.redhat.com/browse/OCPBUGS-43639): Copy response code from proxied plugin requests [#14423](https://github.com/openshift/console/pull/14423) * [OCPBUGS-33519](https://issues.redhat.com/browse/OCPBUGS-33519): Observe > Metrics targets, Alert user if they do not have access to information on this page (e.g. 403). [#14334](https://github.com/openshift/console/pull/14334) * [OCPBUGS-41600](https://issues.redhat.com/browse/OCPBUGS-41600): Fix plugin proxy handler [#14266](https://github.com/openshift/console/pull/14266) * [OCPBUGS-41854](https://issues.redhat.com/browse/OCPBUGS-41854): Redirects to new PipelineRun logs URL from old PipelineRun logs URL [#14283](https://github.com/openshift/console/pull/14283) * [OCPBUGS-34564](https://issues.redhat.com/browse/OCPBUGS-34564): Routes created by devfiles do not always use HTTPS [#13907](https://github.com/openshift/console/pull/13907) * [OCPBUGS-34933](https://issues.redhat.com/browse/OCPBUGS-34933): Helm Plugin's Catalog incorrectly renders a single index entry into multiple tiles [#13930](https://github.com/openshift/console/pull/13930) * [OCPBUGS-32146](https://issues.redhat.com/browse/OCPBUGS-32146): Bump graphql-go to v1.3.0 [#13923](https://github.com/openshift/console/pull/13923) * [OCPBUGS-34845](https://issues.redhat.com/browse/OCPBUGS-34845): Fix PipelineRun Logs tab navigation [#13920](https://github.com/openshift/console/pull/13920) * [OCPBUGS-33778](https://issues.redhat.com/browse/OCPBUGS-33778): fix issues with Edit Route form [#13859](https://github.com/openshift/console/pull/13859) * [OCPBUGS-27479](https://issues.redhat.com/browse/OCPBUGS-27479): Bump helm pkg [#13528](https://github.com/openshift/console/pull/13528) * [OCPBUGS-29746](https://issues.redhat.com/browse/OCPBUGS-29746): Add Pipeline metrics tab using plugin [#13621](https://github.com/openshift/console/pull/13621) * [OCPBUGS-29348](https://issues.redhat.com/browse/OCPBUGS-29348): Added Proxy to non k8s endpoints [#13600](https://github.com/openshift/console/pull/13600) * [OCPBUGS-22431](https://issues.redhat.com/browse/OCPBUGS-22431): Check if filtered object contains name property [#13285](https://github.com/openshift/console/pull/13285) * [OCPBUGS-25213](https://issues.redhat.com/browse/OCPBUGS-25213): add access review for impersonate [#13440](https://github.com/openshift/console/pull/13440) * [OCPBUGS-18116](https://issues.redhat.com/browse/OCPBUGS-18116): Bump helm version [#13104](https://github.com/openshift/console/pull/13104) * [OCPBUGS-24236](https://issues.redhat.com/browse/OCPBUGS-24236): Remove tech preview badge from Pipeline repository pages [#13384](https://github.com/openshift/console/pull/13384) * [OCPBUGS-23413](https://issues.redhat.com/browse/OCPBUGS-23413): Correct logout process [#13342](https://github.com/openshift/console/pull/13342) * [OCPBUGS-24364](https://issues.redhat.com/browse/OCPBUGS-24364): Subsequent PipelineRuns take initial PipelineRun name into account [#13401](https://github.com/openshift/console/pull/13401) * [OCPBUGS-13357](https://issues.redhat.com/browse/OCPBUGS-13357): add multipath device type to LocalVolumeSet [#12805](https://github.com/openshift/console/pull/12805) * [OCPBUGS-23346](https://issues.redhat.com/browse/OCPBUGS-23346): update the KnativeServing API version to v1beta1 for global-config extension [#13334](https://github.com/openshift/console/pull/13334) * [OCPBUGS-23154](https://issues.redhat.com/browse/OCPBUGS-23154): remove expandable toggle for conditional update risk d… [#13322](https://github.com/openshift/console/pull/13322) * [OCPBUGS-22964](https://issues.redhat.com/browse/OCPBUGS-22964): add support for new features annotations while preservi… [#13305](https://github.com/openshift/console/pull/13305) * [OCPBUGS-19382](https://issues.redhat.com/browse/OCPBUGS-19382): Could not import multiple resources via JSON (while YAML supports this) [#13168](https://github.com/openshift/console/pull/13168) * [OCPBUGS-20071](https://issues.redhat.com/browse/OCPBUGS-20071): Fix that "Delete application" doesn't work in topology when Pipelines operator is not installed [#13212](https://github.com/openshift/console/pull/13212) * [OCPBUGS-21727](https://issues.redhat.com/browse/OCPBUGS-21727): fetch TaskRuns without selector and reduces the get TaskRuns requests [#13251](https://github.com/openshift/console/pull/13251) * [OCPBUGS-21731](https://issues.redhat.com/browse/OCPBUGS-21731): show all the legends for Pipeline metrics in PipelineRun TaskRun Duration chart [#13252](https://github.com/openshift/console/pull/13252) * [OCPBUGS-13580](https://issues.redhat.com/browse/OCPBUGS-13580): Regression: OpenShift Console no-longer filters SecretList when displaying ServiceAccount [#12747](https://github.com/openshift/console/pull/12747) * [OCPBUGS-19907](https://issues.redhat.com/browse/OCPBUGS-19907): Fixed Edit Application form for Knative Services [#13205](https://github.com/openshift/console/pull/13205) * [OCPBUGS-19045](https://issues.redhat.com/browse/OCPBUGS-19045): Web console slowness on Project>Project access page [#13155](https://github.com/openshift/console/pull/13155) * [OCPBUGS-18273](https://issues.redhat.com/browse/OCPBUGS-18273): Fix topology crash when a console.topology/data/factory extension tries to resolve a resource with version from the CRDs which doesn't exists [#13113](https://github.com/openshift/console/pull/13113) * [OCPBUGS-18563](https://issues.redhat.com/browse/OCPBUGS-18563): OLM Pages work when copied CSVs are disabled [#13055](https://github.com/openshift/console/pull/13055) * [OCPBUGS-17530](https://issues.redhat.com/browse/OCPBUGS-17530): fix bug where binary secret values are corrupted on edit and add test coverage [#13087](https://github.com/openshift/console/pull/13087) * [OCPBUGS-18366](https://issues.redhat.com/browse/OCPBUGS-18366): Fix DeploymentConfig list performance issues by lazy loading their ReplicationControllers [#13122](https://github.com/openshift/console/pull/13122) * [OCPBUGS-16660](https://issues.redhat.com/browse/OCPBUGS-16660): Manual cherry-pick of #12978 [#13039](https://github.com/openshift/console/pull/13039) * [OCPBUGS-17192](https://issues.redhat.com/browse/OCPBUGS-17192): "Duplicate RoleBinding" leads to "Unsupported value" error [#13063](https://github.com/openshift/console/pull/13063) * [OCPBUGS-16846](https://issues.redhat.com/browse/OCPBUGS-16846): Fix stop PLR option [#13051](https://github.com/openshift/console/pull/13051) * [OCPBUGS-2182](https://issues.redhat.com/browse/OCPBUGS-2182): re-enable operator-install-single-namespace.spec.ts test [#13013](https://github.com/openshift/console/pull/13013) * [OCPBUGS-16732](https://issues.redhat.com/browse/OCPBUGS-16732): When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. [#13047](https://github.com/openshift/console/pull/13047) * [OCPBUGS-16046](https://issues.redhat.com/browse/OCPBUGS-16046), [OCPBUGS-16047](https://issues.redhat.com/browse/OCPBUGS-16047), [OCPBUGS-16048](https://issues.redhat.com/browse/OCPBUGS-16048): Helm Chart installation form hangs on create if JSON-schema is using 2019-09 or 2020-20 standard revisions [#12997](https://github.com/openshift/console/pull/12997) * [OCPBUGS-15898](https://issues.redhat.com/browse/OCPBUGS-15898): account for single object in status.conditions instead… [#12982](https://github.com/openshift/console/pull/12982) * [OCPBUGS-16139](https://issues.redhat.com/browse/OCPBUGS-16139): The upgrade Helm Release tab in OpenShift GUI Developer console is not refreshing with updated values. [#13004](https://github.com/openshift/console/pull/13004) * [OCPBUGS-15710](https://issues.redhat.com/browse/OCPBUGS-15710): Create helm release page doesn't show a YAML editor when schema isn't available (httpd-imagestreams chart) [#12962](https://github.com/openshift/console/pull/12962) * [OCPBUGS-15849](https://issues.redhat.com/browse/OCPBUGS-15849): Add Pipeline metrics unsupported empty page [#12977](https://github.com/openshift/console/pull/12977) * [OCPBUGS-9405](https://issues.redhat.com/browse/OCPBUGS-9405): [OSD] There is no error message shown on node label edi… [#12965](https://github.com/openshift/console/pull/12965) * [OCPBUGS-15798](https://issues.redhat.com/browse/OCPBUGS-15798): Remove access review check for PipelineResource from Pipeline section [#12969](https://github.com/openshift/console/pull/12969) * [OCPBUGS-13643](https://issues.redhat.com/browse/OCPBUGS-13643): Fix OLM k8sResourcePrefix descriptor dropdown behavior [#12813](https://github.com/openshift/console/pull/12813) * [OCPBUGS-15569](https://issues.redhat.com/browse/OCPBUGS-15569): use service port name instead targetPort in the Pipeline Event listener route [#12958](https://github.com/openshift/console/pull/12958) * [OCPBUGS-15535](https://issues.redhat.com/browse/OCPBUGS-15535): Delete annotation 'tekton.dev/v1beta1TaskRuns' when rerun the PLR [#12955](https://github.com/openshift/console/pull/12955) * [OCPBUGS-15404](https://issues.redhat.com/browse/OCPBUGS-15404): Importing a kn Service shows a non-working Open URL decorator also when the Add Route checkbox was unselected [#12935](https://github.com/openshift/console/pull/12935) * [OCPBUGS-15057](https://issues.redhat.com/browse/OCPBUGS-15057): only copy workload annotations to debug pod [#12903](https://github.com/openshift/console/pull/12903) * [OCPBUGS-15099](https://issues.redhat.com/browse/OCPBUGS-15099): visiting Configurations page returns error Cannot read… [#12906](https://github.com/openshift/console/pull/12906) * [OCPBUGS-15482](https://issues.redhat.com/browse/OCPBUGS-15482): Remove PipelineResource CRD check because it's not installed with PO 1.11 anymore [#12948](https://github.com/openshift/console/pull/12948) * [OCPBUGS-14190](https://issues.redhat.com/browse/OCPBUGS-14190): When Creating Sample Devfile from the Samples Page, Topology Icon is not set [#12859](https://github.com/openshift/console/pull/12859) * [OCPBUGS-11989](https://issues.redhat.com/browse/OCPBUGS-11989): Modified git import flow module to handle create button enable-disable issue [#12775](https://github.com/openshift/console/pull/12775) * [OCPBUGS-6848](https://issues.redhat.com/browse/OCPBUGS-6848): Service name search ability while creating the Route from console [#12505](https://github.com/openshift/console/pull/12505) * [OCPBUGS-7619](https://issues.redhat.com/browse/OCPBUGS-7619): Search page: LazyActionMenus are shown below Add/Remove from navigation button [#12575](https://github.com/openshift/console/pull/12575) * [OCPBUGS-7924](https://issues.redhat.com/browse/OCPBUGS-7924): Developer - Topology : 'Filter by resource' drop-down i18n misses [#12598](https://github.com/openshift/console/pull/12598) * [OCPBUGS-13803](https://issues.redhat.com/browse/OCPBUGS-13803): add support for minimal status of tekton [#12831](https://github.com/openshift/console/pull/12831) * [OCPBUGS-13750](https://issues.redhat.com/browse/OCPBUGS-13750): use PipelineRun template from 'pipelines-as-code-pipelinerun-go' configMap for Go runtime [#12829](https://github.com/openshift/console/pull/12829) * [OCPBUGS-12839](https://issues.redhat.com/browse/OCPBUGS-12839): Show type of sample on the samples view [#12783](https://github.com/openshift/console/pull/12783) * [OCPBUGS-12992](https://issues.redhat.com/browse/OCPBUGS-12992): Pipeline doesn't render correctly when displayed but looks fine in edit mode [#12791](https://github.com/openshift/console/pull/12791) * [OCPBUGS-9336](https://issues.redhat.com/browse/OCPBUGS-9336): use buildconfig form also for create [#12770](https://github.com/openshift/console/pull/12770) * [OCPBUGS-11601](https://issues.redhat.com/browse/OCPBUGS-11601): Move operator install status to it's own … [#12715](https://github.com/openshift/console/pull/12715) * [OCPBUGS-12232](https://issues.redhat.com/browse/OCPBUGS-12232): Fix for broken Create key/value secrets e2e tests [#12750](https://github.com/openshift/console/pull/12750) * [OCPBUGS-11844](https://issues.redhat.com/browse/OCPBUGS-11844): delete associated pipeline, triggertemplate and eventlistener when deleting app [#12727](https://github.com/openshift/console/pull/12727) * [OCPBUGS-11972](https://issues.redhat.com/browse/OCPBUGS-11972): update the default pipelineRun template name [#12687](https://github.com/openshift/console/pull/12687) * [OCPBUGS-6888](https://issues.redhat.com/browse/OCPBUGS-6888): Show Git icon and repo link as per the Git provider [#12511](https://github.com/openshift/console/pull/12511) * [OCPBUGS-12476](https://issues.redhat.com/browse/OCPBUGS-12476): Pipelines repository list and creation form doesn't show Tech Preview status [#12763](https://github.com/openshift/console/pull/12763) * [OCPBUGS-1753](https://issues.redhat.com/browse/OCPBUGS-1753): Fix OLM descriptor components deletes operand e2e test failing [#12573](https://github.com/openshift/console/pull/12573) * [OCPBUGS-12477](https://issues.redhat.com/browse/OCPBUGS-12477): Users don't know what type of resource is being created by Import from Git or Deploy Image flows [#12765](https://github.com/openshift/console/pull/12765) * [OCPBUGS-11998](https://issues.redhat.com/browse/OCPBUGS-11998): Do not show builder ImageStreams without `sampleRepo` as samples [#12740](https://github.com/openshift/console/pull/12740) * [OCPBUGS-5009](https://issues.redhat.com/browse/OCPBUGS-5009): Helm Charts and Samples are not disabled in topology actions if actions are disabled in customization [#12382](https://github.com/openshift/console/pull/12382) * [OCPBUGS-7953](https://issues.redhat.com/browse/OCPBUGS-7953): fix devfile error [#12605](https://github.com/openshift/console/pull/12605) * [OCPBUGS-6672](https://issues.redhat.com/browse/OCPBUGS-6672): In DeploymentConfig both the Form view and Yaml view are not in sync [#12475](https://github.com/openshift/console/pull/12475) * [OCPBUGS-8016](https://issues.redhat.com/browse/OCPBUGS-8016): PipelineRun templates must be fetched from OpenShift namespace [#12614](https://github.com/openshift/console/pull/12614) * [OCPBUGS-10225](https://issues.redhat.com/browse/OCPBUGS-10225): Get the Event type value from the latest PLR of the Repository [#12643](https://github.com/openshift/console/pull/12643) * [OCPBUGS-7333](https://issues.redhat.com/browse/OCPBUGS-7333): Add missing SDK extensions descriptions [#12556](https://github.com/openshift/console/pull/12556) * [OCPBUGS-7951](https://issues.redhat.com/browse/OCPBUGS-7951): delete application should delete all part-of resources [#12604](https://github.com/openshift/console/pull/12604) * [OCPBUGS-6036](https://issues.redhat.com/browse/OCPBUGS-6036): Project dropdown order is not as smart as project list page order [#12447](https://github.com/openshift/console/pull/12447) * [OCPBUGS-7800](https://issues.redhat.com/browse/OCPBUGS-7800): add subject kind dropdown in the project access form [#12586](https://github.com/openshift/console/pull/12586) * [OCPBUGS-8339](https://issues.redhat.com/browse/OCPBUGS-8339): disable operator-install-single-namespace.spec.ts until… [#12624](https://github.com/openshift/console/pull/12624) * [OCPBUGS-3892](https://issues.redhat.com/browse/OCPBUGS-3892): Add cluster to query params of websocket requests [#12282](https://github.com/openshift/console/pull/12282) * [OCPBUGS-5092](https://issues.redhat.com/browse/OCPBUGS-5092): Fix to use and set correct secretReference for build-config triggers [#12388](https://github.com/openshift/console/pull/12388) * [OCPBUGS-7895](https://issues.redhat.com/browse/OCPBUGS-7895): Bump helm version to 3.10.1 [#12579](https://github.com/openshift/console/pull/12579) * [OCPBUGS-6873](https://issues.redhat.com/browse/OCPBUGS-6873): The dropdown list component will be covered by deployment details page on Topology page [#12507](https://github.com/openshift/console/pull/12507) * [OCPBUGS-6831](https://issues.redhat.com/browse/OCPBUGS-6831): Fix crash when pinnedResources is null [#12503](https://github.com/openshift/console/pull/12503) * [OCPBUGS-7471](https://issues.redhat.com/browse/OCPBUGS-7471): Right border radius is 0 for the pipeline visualization wrapper in dark mode [#12565](https://github.com/openshift/console/pull/12565) * [OCPBUGS-7506](https://issues.redhat.com/browse/OCPBUGS-7506): Fix different CI issues [#12555](https://github.com/openshift/console/pull/12555) * [OCPBUGS-6966](https://issues.redhat.com/browse/OCPBUGS-6966): Remove description field from the PLR parameters page [#12519](https://github.com/openshift/console/pull/12519) * [OCPBUGS-7437](https://issues.redhat.com/browse/OCPBUGS-7437): Webhook Secret (1 of 2) is not removed when Knative Service is deleted [#12560](https://github.com/openshift/console/pull/12560) * [OCPBUGS-6887](https://issues.redhat.com/browse/OCPBUGS-6887): Show Tag label and tag name if tag is detected in repository PipelineRun list and details page [#12510](https://github.com/openshift/console/pull/12510) * [OCPBUGS-6816](https://issues.redhat.com/browse/OCPBUGS-6816): Repositories list does not show the running pipelinerun as last pipelinerun [#12500](https://github.com/openshift/console/pull/12500) * [OCPBUGS-4072](https://issues.redhat.com/browse/OCPBUGS-4072): Fix rerender loop/crash when bindable-kinds is found but has no status [#12304](https://github.com/openshift/console/pull/12304) * [OCPBUGS-6671](https://issues.redhat.com/browse/OCPBUGS-6671): fix broken pipeline secret [#12474](https://github.com/openshift/console/pull/12474) * [OCPBUGS-6913](https://issues.redhat.com/browse/OCPBUGS-6913): PipelineRun task status overlaps status text [#12516](https://github.com/openshift/console/pull/12516) * [OCPBUGS-6766](https://issues.redhat.com/browse/OCPBUGS-6766): Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC [#12491](https://github.com/openshift/console/pull/12491) * [OCPBUGS-6969](https://issues.redhat.com/browse/OCPBUGS-6969): Added translation to Last used in resource type dropdown [#12521](https://github.com/openshift/console/pull/12521) * [OCPBUGS-6764](https://issues.redhat.com/browse/OCPBUGS-6764): Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered [#12490](https://github.com/openshift/console/pull/12490) * [OCPBUGS-4281](https://issues.redhat.com/browse/OCPBUGS-4281): Do not disable metrics when auth is disabled [#12323](https://github.com/openshift/console/pull/12323) * [OCPBUGS-6669](https://issues.redhat.com/browse/OCPBUGS-6669): Do not show UpdateInProgress when status is Failing [#12473](https://github.com/openshift/console/pull/12473) * [OCPBUGS-5093](https://issues.redhat.com/browse/OCPBUGS-5093): Fix to show correct help texts for each git repo status error code [#12389](https://github.com/openshift/console/pull/12389) * [OCPBUGS-6085](https://issues.redhat.com/browse/OCPBUGS-6085): Editing Pipeline in the ocp console should show correct information [#12452](https://github.com/openshift/console/pull/12452) * [OCPBUGS-6758](https://issues.redhat.com/browse/OCPBUGS-6758): Add RBAC check on Create a Project link in all-namespaces pages [#12489](https://github.com/openshift/console/pull/12489) * [OCPBUGS-6755](https://issues.redhat.com/browse/OCPBUGS-6755): Remove `refs-heads` from the branch name for Repository pipelineRun row [#12487](https://github.com/openshift/console/pull/12487) * [OCPBUGS-6743](https://issues.redhat.com/browse/OCPBUGS-6743): Fix react warning when open console, add missing keys in navigation [#12484](https://github.com/openshift/console/pull/12484) * [OCPBUGS-5875](https://issues.redhat.com/browse/OCPBUGS-5875): Don't proxy CORS response headers [#12276](https://github.com/openshift/console/pull/12276) * [OCPBUGS-6678](https://issues.redhat.com/browse/OCPBUGS-6678): fix run-time error on Cluster Settings when availableUp… [#12476](https://github.com/openshift/console/pull/12476) * [OCPBUGS-4633](https://issues.redhat.com/browse/OCPBUGS-4633): Monitoring: Fix alert descriptions with duplicate resources [#12352](https://github.com/openshift/console/pull/12352) * [OCPBUGS-5303](https://issues.redhat.com/browse/OCPBUGS-5303): display 'Control plane is hosted' alert only when isCl… [#12409](https://github.com/openshift/console/pull/12409) * [OCPBUGS-5263](https://issues.redhat.com/browse/OCPBUGS-5263): only show upgrade details if cluster not externally man… [#12404](https://github.com/openshift/console/pull/12404) * [OCPBUGS-5444](https://issues.redhat.com/browse/OCPBUGS-5444): Change vSphere connection health status icon [#12415](https://github.com/openshift/console/pull/12415) * [OCPBUGS-4960](https://issues.redhat.com/browse/OCPBUGS-4960): Fix that topology sidebar actions shows outdated data (Edit Pod Count, Edit labels, Edit annotations, etc.) [#12378](https://github.com/openshift/console/pull/12378) * [OCPBUGS-5003](https://issues.redhat.com/browse/OCPBUGS-5003): fixed node maintenance plugin route configuration for BareMetalNodesPage [#12381](https://github.com/openshift/console/pull/12381) * [OCPBUGS-5185](https://issues.redhat.com/browse/OCPBUGS-5185): Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) [#12393](https://github.com/openshift/console/pull/12393) * [OCPBUGS-5191](https://issues.redhat.com/browse/OCPBUGS-5191): add support for version v1beta1 for knativeServing and knativeEventing [#12395](https://github.com/openshift/console/pull/12395) * [OCPBUGS-4897](https://issues.redhat.com/browse/OCPBUGS-4897): Pan nodes into view if all nodes are not visible on load [#12370](https://github.com/openshift/console/pull/12370) * [OCPBUGS-4013](https://issues.redhat.com/browse/OCPBUGS-4013): fix number spinner input [#12288](https://github.com/openshift/console/pull/12288) * "OCPBUGS-4512: Fix navsection bug" [#12340](https://github.com/openshift/console/pull/12340) * [OCPBUGS-4458](https://issues.redhat.com/browse/OCPBUGS-4458): fix issue where node debug terminal doesn't load [#12338](https://github.com/openshift/console/pull/12338) * [OCPBUGS-3333](https://issues.redhat.com/browse/OCPBUGS-3333): Promote ConsolePlugins API version to v1 in console repository [#12248](https://github.com/openshift/console/pull/12248) * [OCPBUGS-4035](https://issues.redhat.com/browse/OCPBUGS-4035): Fix for initial showing of topology contents [#12299](https://github.com/openshift/console/pull/12299) * [OCPBUGS-4117](https://issues.redhat.com/browse/OCPBUGS-4117): Re-enable serverless e2e tests [#12308](https://github.com/openshift/console/pull/12308) * [OCPBUGS-4116](https://issues.redhat.com/browse/OCPBUGS-4116): Re-enable pipelines e2e tests [#12307](https://github.com/openshift/console/pull/12307) * [OCPBUGS-4004](https://issues.redhat.com/browse/OCPBUGS-4004): migrate Events integration test to Cypress to mitigate … [#12291](https://github.com/openshift/console/pull/12291) * [OCPBUGS-3927](https://issues.redhat.com/browse/OCPBUGS-3927): show 403 error when normal user check operands on All … [#12284](https://github.com/openshift/console/pull/12284) * [OCPBUGS-3786](https://issues.redhat.com/browse/OCPBUGS-3786): add Release not accepted to Update status on Cluster Se… [#12273](https://github.com/openshift/console/pull/12273) * [OCPBUGS-3754](https://issues.redhat.com/browse/OCPBUGS-3754): Monitoring: Add popover help text for silence form's negative matchers [#12271](https://github.com/openshift/console/pull/12271) * [OCPBUGS-3696](https://issues.redhat.com/browse/OCPBUGS-3696): improve display of RetrievedUpdate condition in Update status [#12270](https://github.com/openshift/console/pull/12270) * [OCPBUGS-2874](https://issues.redhat.com/browse/OCPBUGS-2874): add capacity action for SS CSV list page [OCP 4.12 & ODF 4.11] [#12233](https://github.com/openshift/console/pull/12233) * [OCPBUGS-2974](https://issues.redhat.com/browse/OCPBUGS-2974): Monitoring: Fix permission check for Prometheus & Alertmanager pollers [#12225](https://github.com/openshift/console/pull/12225) * [OCPBUGS-3265](https://issues.redhat.com/browse/OCPBUGS-3265): check that user can patch console operator config in s… [#12239](https://github.com/openshift/console/pull/12239) * Create-Knative-Workload | Knative Serverless [#12165](https://github.com/openshift/console/pull/12165) * add tab extension to dev console [#12109](https://github.com/openshift/console/pull/12109) * [OCPBUGS-2651](https://issues.redhat.com/browse/OCPBUGS-2651): Show focus border on pipeline run nodes [#12157](https://github.com/openshift/console/pull/12157) * [OCPBUGS-2909](https://issues.redhat.com/browse/OCPBUGS-2909): Fix documentation link which leads to 404 [#12181](https://github.com/openshift/console/pull/12181) * [OCPBUGS-2478](https://issues.redhat.com/browse/OCPBUGS-2478): Fix i18n issue in Remove component node from application modal [#12180](https://github.com/openshift/console/pull/12180) * [Bug 2110256](https://bugzilla.redhat.com/show_bug.cgi?id=2110256): Storage -> PVC -> upload data, does not support source reference [#12213](https://github.com/openshift/console/pull/12213) * [OCPBUGS-1950](https://issues.redhat.com/browse/OCPBUGS-1950): Devfile samples (in Developer Catalog) link doesn't include the current selected namespace [#12193](https://github.com/openshift/console/pull/12193) * [CONSOLE-3164](https://issues.redhat.com/browse/CONSOLE-3164): Move main nav components [#12123](https://github.com/openshift/console/pull/12123) * [CONSOLE-3224](https://issues.redhat.com/browse/CONSOLE-3224): Expose errorMessage and errorCause for failed plugins [#12151](https://github.com/openshift/console/pull/12151) * [CONSOLE-3336](https://issues.redhat.com/browse/CONSOLE-3336): Make dynamic plugin dependencies optional [#12078](https://github.com/openshift/console/pull/12078) * [Bug 2115347](https://bugzilla.redhat.com/show_bug.cgi?id=2115347): Monitoring: Add support for Alertmanager negative matchers [#12139](https://github.com/openshift/console/pull/12139) * CONSOLE 3250: Configure default behavior for "Wrap lines" in log viewers [#12015](https://github.com/openshift/console/pull/12015) * chore(i18n): update translations: Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 224 [#12185](https://github.com/openshift/console/pull/12185) * [CONSOLE-3276](https://issues.redhat.com/browse/CONSOLE-3276): Expose ErrorBoundary capabilities in the SDK [#12170](https://github.com/openshift/console/pull/12170) * Replace resource URI with inline yaml in devfile [#12168](https://github.com/openshift/console/pull/12168) * [Bug 2110321](https://bugzilla.redhat.com/show_bug.cgi?id=2110321): Workloads list page has different PDB action items from details page when All Projects selected [#12117](https://github.com/openshift/console/pull/12117) * Update Devfile Import to use Kubernetes YAML definitions [#12000](https://github.com/openshift/console/pull/12000) * [OCPBUGS-2654](https://issues.redhat.com/browse/OCPBUGS-2654): Update OperatorHub tests [#12198](https://github.com/openshift/console/pull/12198) * [ODC-6786](https://issues.redhat.com/browse/ODC-6786): Add cluster configuration extension, page, and options for console customization [#12159](https://github.com/openshift/console/pull/12159) * MGMT-9085 Add vSphere Connection plugin [#12068](https://github.com/openshift/console/pull/12068) * [OCPBUGS-505](https://issues.redhat.com/browse/OCPBUGS-505): Input box aria-label and name wrong for editing PDB inside Deployments [#12064](https://github.com/openshift/console/pull/12064) * [OCPBUGS-2455](https://issues.redhat.com/browse/OCPBUGS-2455): Pods and PDBs list page just reports 'Not found' when no Pod/PDB [#12178](https://github.com/openshift/console/pull/12178) * [OCPBUGS-2100](https://issues.redhat.com/browse/OCPBUGS-2100): Fix warning icon color [#12177](https://github.com/openshift/console/pull/12177) * [OCPBUGS-1916](https://issues.redhat.com/browse/OCPBUGS-1916): Workloads list page has different HPA action items from details page when All Projects selected [#12120](https://github.com/openshift/console/pull/12120) * [OCPBUGS-548](https://issues.redhat.com/browse/OCPBUGS-548): Tweaks to make the "Favorites" section heading consistent with project menu section heading [#12119](https://github.com/openshift/console/pull/12119) * [OCPBUGS-1470](https://issues.redhat.com/browse/OCPBUGS-1470): i18n Incorrect plural for maxUnavailable pod count [#12065](https://github.com/openshift/console/pull/12065) * [OCPBUGS-1776](https://issues.redhat.com/browse/OCPBUGS-1776): Remove duplicate start guide alert from devconsole Search page [#12158](https://github.com/openshift/console/pull/12158) * [OCPBUGS-2430](https://issues.redhat.com/browse/OCPBUGS-2430): Add missing Quick Start translation [#12171](https://github.com/openshift/console/pull/12171) * [ODC-6779](https://issues.redhat.com/browse/ODC-6779): Hide sub-catalog(s) in the developer catalog or the entire dev catalog based on customization [#12067](https://github.com/openshift/console/pull/12067) * [OCPBUGS-800](https://issues.redhat.com/browse/OCPBUGS-800): Name of workload get changed, when project and image stream gets changed on reloading the form on the edit deployment page of the workload [#12024](https://github.com/openshift/console/pull/12024) * [OCPBUGS-1017](https://issues.redhat.com/browse/OCPBUGS-1017): Persist last cluster dropdown selection in session storage only [#12179](https://github.com/openshift/console/pull/12179) * [OCPBUGS-2344](https://issues.redhat.com/browse/OCPBUGS-2344): Change annotation to be used for fake helm repositories [#12141](https://github.com/openshift/console/pull/12141) * [OCPBUGS-1416](https://issues.redhat.com/browse/OCPBUGS-1416): Fix outdated, broken ODC add-page e2e test [#12055](https://github.com/openshift/console/pull/12055) * [OCPBUGS-2438](https://issues.redhat.com/browse/OCPBUGS-2438): Monitoring: Fix help popovers [#12166](https://github.com/openshift/console/pull/12166) * [OCPBUGS-1746](https://issues.redhat.com/browse/OCPBUGS-1746): Update the Github App events and permissions [#12162](https://github.com/openshift/console/pull/12162) * [OCPBUGS-193](https://issues.redhat.com/browse/OCPBUGS-193): Corrected kebab action overlapping issue in Helm page [#11980](https://github.com/openshift/console/pull/11980) * [OCPBUGS-2369](https://issues.redhat.com/browse/OCPBUGS-2369): adds check for metadata as metadata is not required in template spec [#12169](https://github.com/openshift/console/pull/12169) * [OCPBUGS-2075](https://issues.redhat.com/browse/OCPBUGS-2075): Hide silent switch for alerting rule if no associated alerts are present in devconsole [#12152](https://github.com/openshift/console/pull/12152) * [Bug 2100334](https://bugzilla.redhat.com/show_bug.cgi?id=2100334): separate fetching of serving and eventing as they can be enabled independently [#12080](https://github.com/openshift/console/pull/12080) * [OCPBUGS-2195](https://issues.redhat.com/browse/OCPBUGS-2195): fixes npe on topology [#12156](https://github.com/openshift/console/pull/12156) * Cards-display-on-serverless-operator-installation | Knative-serverless [#12089](https://github.com/openshift/console/pull/12089) * Updates flags and blocks migrated extensions [#11992](https://github.com/openshift/console/pull/11992) * Add resource quota alert to topology list view node [#12143](https://github.com/openshift/console/pull/12143) * [OCPBUGS-1040](https://issues.redhat.com/browse/OCPBUGS-1040): Add checks for pods in hpaPodRingLabel [#12118](https://github.com/openshift/console/pull/12118) * [OCPBUGS-2181](https://issues.redhat.com/browse/OCPBUGS-2181): updates test id for 3scale [#12167](https://github.com/openshift/console/pull/12167) * [OCPBUGS-1105](https://issues.redhat.com/browse/OCPBUGS-1105): OCPBUGS-1106: Update dependencies to the registry library and devfile parser [#12043](https://github.com/openshift/console/pull/12043) * [OCPBUGS-2265](https://issues.redhat.com/browse/OCPBUGS-2265): Allow passing documentation links for alerts [#12059](https://github.com/openshift/console/pull/12059) * [CONSOLE-3190](https://issues.redhat.com/browse/CONSOLE-3190): update OperatorHub filter to use nodeArchitectures instead of GOARCH [#12072](https://github.com/openshift/console/pull/12072) * ODC7127: Change node background color to yellow on zoom out [#12142](https://github.com/openshift/console/pull/12142) * [Bug 2100843](https://bugzilla.redhat.com/show_bug.cgi?id=2100843): Fix selection on add connector context menu option opens the side panel of the node [#12069](https://github.com/openshift/console/pull/12069) * [OCPBUGS-2102](https://issues.redhat.com/browse/OCPBUGS-2102): updates e2e to call resource type selection in advance option [#12147](https://github.com/openshift/console/pull/12147) * [ODC-6771](https://issues.redhat.com/browse/ODC-6771): Add telemetry support [#12140](https://github.com/openshift/console/pull/12140) * [ODC-6785](https://issues.redhat.com/browse/ODC-6785): Enable/Disable perspective(s) based on customization [#12025](https://github.com/openshift/console/pull/12025) * Refactor ResourceSection and move it under Advanced options [#12052](https://github.com/openshift/console/pull/12052) * [ODC-6772](https://issues.redhat.com/browse/ODC-6772): Show resource quota alert in deployment side-panel [#12029](https://github.com/openshift/console/pull/12029) * [OCPBUGS-194](https://issues.redhat.com/browse/OCPBUGS-194): Switch api explorer filters to use PF toolbar component for structure and adjustments. [#12111](https://github.com/openshift/console/pull/12111) * [Bug 2115522](https://bugzilla.redhat.com/show_bug.cgi?id=2115522): Strange padding in new Helm Chart Repository table row [#12102](https://github.com/openshift/console/pull/12102) * [OCPBUGS-1678](https://issues.redhat.com/browse/OCPBUGS-1678): Use local test data to mock a devfile registry [#12088](https://github.com/openshift/console/pull/12088) * Updating openshift-enterprise-console images to be consistent with ART [#12121](https://github.com/openshift/console/pull/12121) * [OU-38](https://issues.redhat.com/browse/OU-38): Monitoring: Refactor silence duration dropdown to use PatternFly [#12101](https://github.com/openshift/console/pull/12101) * Action on Knative-Service | Knative Serverless [#12081](https://github.com/openshift/console/pull/12081) * [OU-56](https://issues.redhat.com/browse/OU-56): Query browser: Refactor timespan dropdown to use PatternFly components [#12076](https://github.com/openshift/console/pull/12076) * [Bug 2079249](https://bugzilla.redhat.com/show_bug.cgi?id=2079249): Find latest pipeline run without firehose selector [#12071](https://github.com/openshift/console/pull/12071) * [OCPBUGS-1479](https://issues.redhat.com/browse/OCPBUGS-1479): PDB list page should only show Create Pod button to user has sufficient permission [#12066](https://github.com/openshift/console/pull/12066) * Update PL/PLR visualization to use new PF pipeline package [#12046](https://github.com/openshift/console/pull/12046) * [Bug 2057972](https://bugzilla.redhat.com/show_bug.cgi?id=2057972): Remove space in Chinese translation for Duplicate {{kindLabel}} [#12099](https://github.com/openshift/console/pull/12099) * HELM 386:Chart Verifier api integration [#11964](https://github.com/openshift/console/pull/11964) * [OCPBUGS-1827](https://issues.redhat.com/browse/OCPBUGS-1827): disable e2e for knative [#12114](https://github.com/openshift/console/pull/12114) * [OCPBUGS-184](https://issues.redhat.com/browse/OCPBUGS-184): Fix OperatorHub "View it here" link for installed operators [#12105](https://github.com/openshift/console/pull/12105) * Move some datetime functions to @openshift-console/plugin-shared [#12037](https://github.com/openshift/console/pull/12037) * [OCPBUGS-183](https://issues.redhat.com/browse/OCPBUGS-183): fix bug where line numbers greater than 5 digits overlay… [#12093](https://github.com/openshift/console/pull/12093) * [OCPBUGS-803](https://issues.redhat.com/browse/OCPBUGS-803): Handle fake helm chart repository [#12096](https://github.com/openshift/console/pull/12096) * [Bug 1904106](https://bugzilla.redhat.com/show_bug.cgi?id=1904106): Fix Y-axis labels for minimal / no data [#12087](https://github.com/openshift/console/pull/12087) * Monitoring: Clean up use of ISO datetime helpers [#12053](https://github.com/openshift/console/pull/12053) * OU-66 Add a 'Select/Unselect All' button to Observe > Metrics Page > … [#12033](https://github.com/openshift/console/pull/12033) * [ODC-6778](https://issues.redhat.com/browse/ODC-6778): add list of disabled dev catalog types to server flags [#11984](https://github.com/openshift/console/pull/11984) * [OCPBUGS-1522](https://issues.redhat.com/browse/OCPBUGS-1522): Allow regular users to access debug pods [#12098](https://github.com/openshift/console/pull/12098) * add list of enabled/disabled perspectives to server flags [#11993](https://github.com/openshift/console/pull/11993) * chore(i18n): update translations: Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 223 [#12083](https://github.com/openshift/console/pull/12083) * [Bug 2100860](https://bugzilla.redhat.com/show_bug.cgi?id=2100860): Use Alertmanager services for user-defined alerts from config [#11712](https://github.com/openshift/console/pull/11712) * YAML Editor with forwardRef [#11997](https://github.com/openshift/console/pull/11997) * [OCPBUGS-1677](https://issues.redhat.com/browse/OCPBUGS-1677): Fix devfile registry assertion [#12085](https://github.com/openshift/console/pull/12085) * [PF-2022](https://issues.redhat.com/browse/PF-2022): 12 package updates [#12063](https://github.com/openshift/console/pull/12063) * [OCPBUGS-1569](https://issues.redhat.com/browse/OCPBUGS-1569): add admin flag to disabled extensions [#12027](https://github.com/openshift/console/pull/12027) * [ODC-6784](https://issues.redhat.com/browse/ODC-6784): Added Code Snippets for Hiding Perspectives in Dev Console [#12075](https://github.com/openshift/console/pull/12075) * [Bug 2030406](https://bugzilla.redhat.com/show_bug.cgi?id=2030406): Remove nav override for fixed demo plugin nav component dom structure [#12079](https://github.com/openshift/console/pull/12079) * [OCPBUGS-1570](https://issues.redhat.com/browse/OCPBUGS-1570): fixes issue with eventsources vis on topology [#12074](https://github.com/openshift/console/pull/12074) * [CONSOLE-3183](https://issues.redhat.com/browse/CONSOLE-3183): Improve console.dashboards/overview/detail/item extension [#12058](https://github.com/openshift/console/pull/12058) * Action on Knative-Revision | Knative Serverless [#12034](https://github.com/openshift/console/pull/12034) * [Bug 2057972](https://bugzilla.redhat.com/show_bug.cgi?id=2057972): Switch to "verb kind" phrase so that Chinese translations do not have spaces between. [#12039](https://github.com/openshift/console/pull/12039) * [Bug 2077138](https://bugzilla.redhat.com/show_bug.cgi?id=2077138): update version of quick-start library to latest [#12038](https://github.com/openshift/console/pull/12038) * [ODC-6780](https://issues.redhat.com/browse/ODC-6780): Provide a code snippet for the console CRD for adding Subcatalogs in Dev Catalog [#12047](https://github.com/openshift/console/pull/12047) * [OCPBUGS-1268](https://issues.redhat.com/browse/OCPBUGS-1268): Remove required flags from helm actions to show the HCR actions also if no helm repo is enabled [#12042](https://github.com/openshift/console/pull/12042) * Expose the NamespaceBar component in the dynamic plugin SDK API [#12001](https://github.com/openshift/console/pull/12001) * [OCPBUGS-1141](https://issues.redhat.com/browse/OCPBUGS-1141): fetch shared resource imagestreams based on labels instance and name [#12035](https://github.com/openshift/console/pull/12035) * [OCPBUGS-943](https://issues.redhat.com/browse/OCPBUGS-943): Use the Deployment as resource kind and label also when importing a Devfile [#12022](https://github.com/openshift/console/pull/12022) * [OCPBUGS-1256](https://issues.redhat.com/browse/OCPBUGS-1256): Improve OLM descriptors e2e tests [#12044](https://github.com/openshift/console/pull/12044) * [OCPBUGS-1290](https://issues.redhat.com/browse/OCPBUGS-1290): updates description for kafkaSink [#12048](https://github.com/openshift/console/pull/12048) * OU-68 Add PodMonitors to Metrics targets Page [#12008](https://github.com/openshift/console/pull/12008) * Added resource quota warning message in topology and add page [#11962](https://github.com/openshift/console/pull/11962) * [OCPBUGS-270](https://issues.redhat.com/browse/OCPBUGS-270): Show already loaded catalog items after a timeout (3sec) [#12019](https://github.com/openshift/console/pull/12019) * [OU-85](https://issues.redhat.com/browse/OU-85): Monitoring: Add runbook URLs to alert and rule details pages [#12026](https://github.com/openshift/console/pull/12026) * Automate DevConsole Interop WTO Scenarios [#8814](https://github.com/openshift/console/pull/8814) * [Bug 2115899](https://bugzilla.redhat.com/show_bug.cgi?id=2115899): BuildConfig form: Change image repository to image registry [#11938](https://github.com/openshift/console/pull/11938) * [OCPBUGS-548](https://issues.redhat.com/browse/OCPBUGS-548): Changes to the application menu with search and favorite options so it is consistent with PatternFly menu and aligns with Project selection menu [#11985](https://github.com/openshift/console/pull/11985) * [OCPBUGS-939](https://issues.redhat.com/browse/OCPBUGS-939): Fix flaky CI and usability issue: Disable create button until Devfile is parsed [#12023](https://github.com/openshift/console/pull/12023) * Monitoring: Clean up and make more use of the dynamic plugin SDK [#12009](https://github.com/openshift/console/pull/12009) * [OCPBUGS-238](https://issues.redhat.com/browse/OCPBUGS-238): enable knative e2e in ci [#12021](https://github.com/openshift/console/pull/12021) * [OCPBUGS-896](https://issues.redhat.com/browse/OCPBUGS-896): Allows launching of modals from alert actions [#12018](https://github.com/openshift/console/pull/12018) * Pass className to HealthItem popup top-level component [#11952](https://github.com/openshift/console/pull/11952) * chore(i18n): update translations: Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 222 [#11989](https://github.com/openshift/console/pull/11989) * Update pf packages to pf-2022-10 [#11981](https://github.com/openshift/console/pull/11981) * [OCPBUGS-869](https://issues.redhat.com/browse/OCPBUGS-869): correct Azure product name for support link [#12016](https://github.com/openshift/console/pull/12016) * Migrates StorageClass Provisioner to dynamic-plugin-sdk [#11931](https://github.com/openshift/console/pull/11931) * Disable all OCS tests [#12013](https://github.com/openshift/console/pull/12013) * kafka-event-source & kafka-source-connection feature | Knative [#11957](https://github.com/openshift/console/pull/11957) * [Bug 2112812](https://bugzilla.redhat.com/show_bug.cgi?id=2112812): Update registry library dependency to pick up proxy support [#12011](https://github.com/openshift/console/pull/12011) * Gherkin for "Cancelled" and "Stopped" status of pipeline run [#11868](https://github.com/openshift/console/pull/11868) * [CONSOLE-3179](https://issues.redhat.com/browse/CONSOLE-3179): Improve control over shared modules provided by Console to dynamic plugins [#11700](https://github.com/openshift/console/pull/11700) * [OCPBUGS-704](https://issues.redhat.com/browse/OCPBUGS-704): Disable knative test suite [#12006](https://github.com/openshift/console/pull/12006) * [Bug 2109854](https://bugzilla.redhat.com/show_bug.cgi?id=2109854): Fix description for Max unavailable and Max surge [#11867](https://github.com/openshift/console/pull/11867) * Add support for param of array type when starting a Pipeline [#11953](https://github.com/openshift/console/pull/11953) * [OCPBUGS-451](https://issues.redhat.com/browse/OCPBUGS-451): show git icon in repository details page based on git provider [#12003](https://github.com/openshift/console/pull/12003) * OWNERS: add jerolimov to approvers [#11998](https://github.com/openshift/console/pull/11998) * [OU-59](https://issues.redhat.com/browse/OU-59): Query browser: Remove the metrics list dropdown [#11991](https://github.com/openshift/console/pull/11991) * [HELM-342](https://issues.redhat.com/browse/HELM-342): Add basic authentication support for Helm repositories [#11782](https://github.com/openshift/console/pull/11782) * Add functionality to add kafka-sinks as subscriber, trigger and event-source sink target [#11925](https://github.com/openshift/console/pull/11925) * [OCPBUGS-435](https://issues.redhat.com/browse/OCPBUGS-435): Dropdown items on storageclass creation page need i18n support [#11988](https://github.com/openshift/console/pull/11988) * chore(i18n): update translations: Completed-7034-OCP 4.12 UI Localization- sprint 221 [#11940](https://github.com/openshift/console/pull/11940) * [Bug 2102681](https://bugzilla.redhat.com/show_bug.cgi?id=2102681): Fix zh locale (greater than pod) [#11802](https://github.com/openshift/console/pull/11802) * Include ActionServiceProvider in dynamic-plugin-sdk [#11923](https://github.com/openshift/console/pull/11923) * create kafkaSink support in catalog [#11948](https://github.com/openshift/console/pull/11948) * ODC-6712 & ODC-6714: Add a build decorator for Shipwright Builds and builds section into topology sidebar for Shipwright Builds and BuildRuns [#11853](https://github.com/openshift/console/pull/11853) * correcting nightly failures: pipelines [#11891](https://github.com/openshift/console/pull/11891) * [RHSTOR-3593](https://issues.redhat.com/browse/RHSTOR-3593): Add basic support for Modals [#11163](https://github.com/openshift/console/pull/11163) * [Bug 2091573](https://bugzilla.redhat.com/show_bug.cgi?id=2091573): Input values in Instantiate Template are disappeared randomly in the developer console [#11967](https://github.com/openshift/console/pull/11967) * Query browser: Use PatternFly components directly for Actions and kebab dropdown menus [#11959](https://github.com/openshift/console/pull/11959) * [Bug 2091102](https://bugzilla.redhat.com/show_bug.cgi?id=2091102): Name of workload get changed, when project and image stream gets changed on edit deployment page of the workload [#11758](https://github.com/openshift/console/pull/11758) * correcting nightly failures: topology [#11878](https://github.com/openshift/console/pull/11878) * [Bug 2080260](https://bugzilla.redhat.com/show_bug.cgi?id=2080260): Update OLM pages to use details and list page extensions for operands when they exist [#11883](https://github.com/openshift/console/pull/11883) * [OCPBUGS-238](https://issues.redhat.com/browse/OCPBUGS-238): enable knative e2e in ci [#11963](https://github.com/openshift/console/pull/11963) * [OCPBUGS-180](https://issues.redhat.com/browse/OCPBUGS-180): Change 'Role' title to 'Roles' [#11960](https://github.com/openshift/console/pull/11960) * [Bug 2071792](https://bugzilla.redhat.com/show_bug.cgi?id=2071792): Support namespace of choice for the user that wants to use TLS verification [#11571](https://github.com/openshift/console/pull/11571) * Monitoring: Import enums from dynamic plugin SDK [#11961](https://github.com/openshift/console/pull/11961) * [Bug 2117738](https://bugzilla.redhat.com/show_bug.cgi?id=2117738): reset ErrorBoundary state on location change [#11955](https://github.com/openshift/console/pull/11955) * [CONSOLE-3179](https://issues.redhat.com/browse/CONSOLE-3179): Add deprecation note for react-helmet [#11876](https://github.com/openshift/console/pull/11876) * [Bug 2094502](https://bugzilla.redhat.com/show_bug.cgi?id=2094502): Fix bug where the create required custom resource button points to the wrong namespace. [#11949](https://github.com/openshift/console/pull/11949) * [Bug 2091555](https://bugzilla.redhat.com/show_bug.cgi?id=2091555): - Sort function doesn't work on "Namespaces" column on operator details page [#11958](https://github.com/openshift/console/pull/11958) * [Bug 2109502](https://bugzilla.redhat.com/show_bug.cgi?id=2109502): improve bug report links [#11874](https://github.com/openshift/console/pull/11874) * [Bug 2103090](https://bugzilla.redhat.com/show_bug.cgi?id=2103090): - Storage - StorageClasses - Create StorageClass - Provisioner: Upon selection of Provisoner i18n misses [#11945](https://github.com/openshift/console/pull/11945) * [OCPBUGS-169](https://issues.redhat.com/browse/OCPBUGS-169): Fixes E2E test [#11956](https://github.com/openshift/console/pull/11956) * [Bug 2117367](https://bugzilla.redhat.com/show_bug.cgi?id=2117367): Include referenced .scss files when building core plugin SDK package [#11951](https://github.com/openshift/console/pull/11951) * [Bug 2115280](https://bugzilla.redhat.com/show_bug.cgi?id=2115280): kubevirt-e2e-aws see two duplicated navigation items [#11943](https://github.com/openshift/console/pull/11943) * Monitoring: Clean up imports and types [#11784](https://github.com/openshift/console/pull/11784) * Capture telemetry event for Export application action [#11921](https://github.com/openshift/console/pull/11921) * [Bug 2116415](https://bugzilla.redhat.com/show_bug.cgi?id=2116415): e2e: Disable Shipwright e2e tests [#11947](https://github.com/openshift/console/pull/11947) * Updated dynamic demo plugin instructions [#11904](https://github.com/openshift/console/pull/11904) * Allow editing of Repositories using the form-yaml experience [#11866](https://github.com/openshift/console/pull/11866) * [CONSOLE-3244](https://issues.redhat.com/browse/CONSOLE-3244): Make status.HostIP for Pods visible in the OCP Web Console [#11919](https://github.com/openshift/console/pull/11919) * [Bug 2111686](https://bugzilla.redhat.com/show_bug.cgi?id=2111686): [OKD/nanokube] Fix NPE when project or build status is not defined [#11791](https://github.com/openshift/console/pull/11791) * [Bug 2109511](https://bugzilla.redhat.com/show_bug.cgi?id=2109511): fix failed PipelineRun log texts color in light mode [#11859](https://github.com/openshift/console/pull/11859) * [Bug 2102341](https://bugzilla.redhat.com/show_bug.cgi?id=2102341): Include min-width on operator icon img so that Firefox displays them correctly [#11934](https://github.com/openshift/console/pull/11934) * [Bug 2114488](https://bugzilla.redhat.com/show_bug.cgi?id=2114488): Fix Monitoring Alert decorator icon color in Topology [#11928](https://github.com/openshift/console/pull/11928) * [Bug 2110525](https://bugzilla.redhat.com/show_bug.cgi?id=2110525): Clear the error when switching between the Form and YAML editor [#11871](https://github.com/openshift/console/pull/11871) * improve export application flow [#11915](https://github.com/openshift/console/pull/11915) * [Bug 2115799](https://bugzilla.redhat.com/show_bug.cgi?id=2115799): Fix Resource selection for import flow [#11937](https://github.com/openshift/console/pull/11937) * [Bug 2107469](https://bugzilla.redhat.com/show_bug.cgi?id=2107469): Fix service-binding modal sub-title text when the target is available [#11898](https://github.com/openshift/console/pull/11898) * [CONSOLE-3188](https://issues.redhat.com/browse/CONSOLE-3188): Add alert with message for Console plugins page when console operator spec.managementState is Unmanaged [#11897](https://github.com/openshift/console/pull/11897) * Add Resource type dropdown on the User preferences page [#11833](https://github.com/openshift/console/pull/11833) * Gherkin for Builds v2 in Dev Console - Topology [#11893](https://github.com/openshift/console/pull/11893) * Added Repositories tab in Helm Page [#11844](https://github.com/openshift/console/pull/11844) * Add Cancel option and update the stop status for the PipelineRun [#11920](https://github.com/openshift/console/pull/11920) * [ODC-6740](https://issues.redhat.com/browse/ODC-6740): Move Build v2 e2e tests from dev-console to shipwright-plugin package [#11889](https://github.com/openshift/console/pull/11889) * [CONSOLE-3140](https://issues.redhat.com/browse/CONSOLE-3140): Expose ResourceIcon to dynamic-plugin-sdk [#11870](https://github.com/openshift/console/pull/11870) * [Bug 2084504](https://bugzilla.redhat.com/show_bug.cgi?id=2084504): can not silence platform alert from developer console [#11895](https://github.com/openshift/console/pull/11895) * Bug 2105918, Bug 2105303: specify namespace and index entry along with chart url to get the chart details [#11838](https://github.com/openshift/console/pull/11838) * [Bug 2112481](https://bugzilla.redhat.com/show_bug.cgi?id=2112481): Fix visual inconsistencies across synched editor forms [#11903](https://github.com/openshift/console/pull/11903) * [Bug 1951901](https://bugzilla.redhat.com/show_bug.cgi?id=1951901): incorrect Worker nodes number calculated when nodes have… [#11896](https://github.com/openshift/console/pull/11896) * [Bug 2001211](https://bugzilla.redhat.com/show_bug.cgi?id=2001211): Resource usage measurement data display the concatenati… [#11805](https://github.com/openshift/console/pull/11805) * [Bug 2099795](https://bugzilla.redhat.com/show_bug.cgi?id=2099795): README file for helm charts encoded in Chinese shows messy characters in the UI [#11881](https://github.com/openshift/console/pull/11881) * [Bug 2112862](https://bugzilla.redhat.com/show_bug.cgi?id=2112862): Fix broken Namespace CRUD e2e test [#11908](https://github.com/openshift/console/pull/11908) * [CONSOLE-3186](https://issues.redhat.com/browse/CONSOLE-3186): Add shared-plugin to the SDK Packages tables docs [#11882](https://github.com/openshift/console/pull/11882) * capture telemetry for helmChartRepo creation to detect scope [#11872](https://github.com/openshift/console/pull/11872) * SDK - add plain yaml editor [#11840](https://github.com/openshift/console/pull/11840) * [Bug 2070562](https://bugzilla.redhat.com/show_bug.cgi?id=2070562): Base64 data value for java keystore secret changing auto… [#11890](https://github.com/openshift/console/pull/11890) * [Bug 2111205](https://bugzilla.redhat.com/show_bug.cgi?id=2111205): [CI Watcher] Add yarn config to dynamic-demo-plugin [#11880](https://github.com/openshift/console/pull/11880) * [Bug 2112146](https://bugzilla.redhat.com/show_bug.cgi?id=2112146): Update pod YAML sample for restricted pod security admission policy [#11894](https://github.com/openshift/console/pull/11894) * [Bug 2110927](https://bugzilla.redhat.com/show_bug.cgi?id=2110927): Remove zero from edit yaml page and clear errors when the user press the save button [#11877](https://github.com/openshift/console/pull/11877) * [Bug 2075107](https://bugzilla.redhat.com/show_bug.cgi?id=2075107): consistency in web terminal headers [#11858](https://github.com/openshift/console/pull/11858) * bump codemirror and promql editor to the last version [#11822](https://github.com/openshift/console/pull/11822) * [Bug 2092319](https://bugzilla.redhat.com/show_bug.cgi?id=2092319): [Firefox] multi-line node status formatting issue [#11638](https://github.com/openshift/console/pull/11638) * [Bug 2089221](https://bugzilla.redhat.com/show_bug.cgi?id=2089221): Could not de-select a Git Secret in add and edit forms [#11606](https://github.com/openshift/console/pull/11606) * [Bug 2084453](https://bugzilla.redhat.com/show_bug.cgi?id=2084453): - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view [#11845](https://github.com/openshift/console/pull/11845) * [Bug 2097026](https://bugzilla.redhat.com/show_bug.cgi?id=2097026): Administration - Cluster Settings - Cluster Operators : … [#11742](https://github.com/openshift/console/pull/11742) * [Bug 2094240](https://bugzilla.redhat.com/show_bug.cgi?id=2094240): Update workload-pause.tsx to fix inconsistency between buttons in the notification and kebab action dropdown. [#11677](https://github.com/openshift/console/pull/11677) * Updates Ceph plugin OWNERS [#11657](https://github.com/openshift/console/pull/11657) * [Bug 2109673](https://bugzilla.redhat.com/show_bug.cgi?id=2109673): Align Console plugin SDK package dependencies with generated code [#11625](https://github.com/openshift/console/pull/11625) * Bug 2106366, Bug 2106377: Use displayname for PHCR in the catalog page [#11852](https://github.com/openshift/console/pull/11852) * [Bug 2108551](https://bugzilla.redhat.com/show_bug.cgi?id=2108551): [CI Watcher] Bulk Import e2e test flaking at a high rate [#11863](https://github.com/openshift/console/pull/11863) * [CONSOLE-3181](https://issues.redhat.com/browse/CONSOLE-3181): Deprecate useAccessReviewAllowed and useSafetyFirst [#11851](https://github.com/openshift/console/pull/11851) * support creation of helm chart repo using the existing PHCR form [#11821](https://github.com/openshift/console/pull/11821) * [Bug 2037329](https://bugzilla.redhat.com/show_bug.cgi?id=2037329): remove redundant model check to prevent tab reloading [#11862](https://github.com/openshift/console/pull/11862) * chore(i18n): update translations: Completed-7034-OCP 4.11 UI Localization- sprint 220 [#11846](https://github.com/openshift/console/pull/11846) * Bump webpack dependency in plugin SDK and demo plugin [#11771](https://github.com/openshift/console/pull/11771) * [Bug 2109469](https://bugzilla.redhat.com/show_bug.cgi?id=2109469): Fix create-namespace e2e test: cleanup useServiceLevelTitle hook usage [#11855](https://github.com/openshift/console/pull/11855) * [Bug 2108638](https://bugzilla.redhat.com/show_bug.cgi?id=2108638): SDK - expose useLastNamespace [#11828](https://github.com/openshift/console/pull/11828) * [Bug 2106805](https://bugzilla.redhat.com/show_bug.cgi?id=2106805): Enable running specific spec files with headless test-cypress [#11818](https://github.com/openshift/console/pull/11818) * add parameters tab on PipelineRun details page [#11767](https://github.com/openshift/console/pull/11767) * [Bug 2079690](https://bugzilla.redhat.com/show_bug.cgi?id=2079690): Fix operand affinity form field [#11834](https://github.com/openshift/console/pull/11834) * [Bug 2094558](https://bugzilla.redhat.com/show_bug.cgi?id=2094558): MetalLB: Creating ip address pool and community CR throu… [#11728](https://github.com/openshift/console/pull/11728) * [Bug 2105344](https://bugzilla.redhat.com/show_bug.cgi?id=2105344): correct usePodActionsProvider and apply it [#11816](https://github.com/openshift/console/pull/11816) * [Bug 2100640](https://bugzilla.redhat.com/show_bug.cgi?id=2100640): Adjust font size and alignment for show operands radio toggle [#11850](https://github.com/openshift/console/pull/11850) * [Bug 2106866](https://bugzilla.redhat.com/show_bug.cgi?id=2106866): Fix flaky OLM descriptor test [#11856](https://github.com/openshift/console/pull/11856) * [Bug 2092137](https://bugzilla.redhat.com/show_bug.cgi?id=2092137): Search doesn't show all entries when name filter is cleared [#11665](https://github.com/openshift/console/pull/11665) * [CONSOLE-3091](https://issues.redhat.com/browse/CONSOLE-3091): Remove orphaned code along with consolidating some code to use PF instead of Bootstrap [#11744](https://github.com/openshift/console/pull/11744) * [Bug 2090457](https://bugzilla.redhat.com/show_bug.cgi?id=2090457): openshift-debug-node- namespaces do not get deleted for … [#11824](https://github.com/openshift/console/pull/11824) * [Bug 2102098](https://bugzilla.redhat.com/show_bug.cgi?id=2102098): There is no error message shown on node label edi... [#11817](https://github.com/openshift/console/pull/11817) * [Bug 2106803](https://bugzilla.redhat.com/show_bug.cgi?id=2106803): mock call to /api/devfile in e2e [#11831](https://github.com/openshift/console/pull/11831) * [Bug 2093597](https://bugzilla.redhat.com/show_bug.cgi?id=2093597): Added the spacing between advanced options [#11739](https://github.com/openshift/console/pull/11739) * [Bug 2079214](https://bugzilla.redhat.com/show_bug.cgi?id=2079214): Switch default modal scroll behavior from inner modal body scroll to entire modal scroll to prevent bug and have consistent display of dropdown menus. [#11835](https://github.com/openshift/console/pull/11835) * [Bug 2081674](https://bugzilla.redhat.com/show_bug.cgi?id=2081674): Added onSubmit for create a project function for Dev perspective [#11781](https://github.com/openshift/console/pull/11781) * [Bug 2089773](https://bugzilla.redhat.com/show_bug.cgi?id=2089773): Added separate reducers for status and title for pipeline status [#11678](https://github.com/openshift/console/pull/11678) * [Bug 2106866](https://bugzilla.redhat.com/show_bug.cgi?id=2106866): Fix flaky OLM test [#11832](https://github.com/openshift/console/pull/11832) * [CONSOLE-3167](https://issues.redhat.com/browse/CONSOLE-3167): Remove static plugin nav extensions [#11825](https://github.com/openshift/console/pull/11825) * [Bug 2103981](https://bugzilla.redhat.com/show_bug.cgi?id=2103981): show last 3 build with option to view all in case of more then 3 builds [#11837](https://github.com/openshift/console/pull/11837) * [Bug 2103224](https://bugzilla.redhat.com/show_bug.cgi?id=2103224): Update the side nav perspective selection so it has the correct background and border color when in dark mode [#11790](https://github.com/openshift/console/pull/11790) * [Bug 2103972](https://bugzilla.redhat.com/show_bug.cgi?id=2103972): fix MultiColumnField header alignment used for Pipeline parameters [#11799](https://github.com/openshift/console/pull/11799) * [Bug 2078769](https://bugzilla.redhat.com/show_bug.cgi?id=2078769): Added translations for filter group names [#11594](https://github.com/openshift/console/pull/11594) * [CONSOLE-3067](https://issues.redhat.com/browse/CONSOLE-3067): Adding Rollout Restart function to the OpenShift Console [#11725](https://github.com/openshift/console/pull/11725) * [Bug 2091542](https://bugzilla.redhat.com/show_bug.cgi?id=2091542): - Error Loading/404 not found page shown after clicking "Current namespace only" [#11743](https://github.com/openshift/console/pull/11743) * [Bug 2021297](https://bugzilla.redhat.com/show_bug.cgi?id=2021297): Implement dynamic plugin dependency resolution [#11626](https://github.com/openshift/console/pull/11626) * [CONSOLE-3204](https://issues.redhat.com/browse/CONSOLE-3204): Add missing api docs for *Icon and *Status components [#11808](https://github.com/openshift/console/pull/11808) * [Bug 2098234](https://bugzilla.redhat.com/show_bug.cgi?id=2098234): fix broken update server link [#11768](https://github.com/openshift/console/pull/11768) * Bug 2105909, Bug 2105328: Fix create-namespace e2e test, ESOCKET timeout issue, and a11y violations to unblock CI [#11809](https://github.com/openshift/console/pull/11809) * [Bug 2052662](https://bugzilla.redhat.com/show_bug.cgi?id=2052662): Fix null reference [#11780](https://github.com/openshift/console/pull/11780) * Updating openshift-enterprise-console images to be consistent with ART [#11789](https://github.com/openshift/console/pull/11789) * [Bug 2093593](https://bugzilla.redhat.com/show_bug.cgi?id=2093593): Updated selected strategy file as devfile when devfile is selected [#11719](https://github.com/openshift/console/pull/11719) * [Bug 2100774](https://bugzilla.redhat.com/show_bug.cgi?id=2100774): add error color to required help text for image search field [#11776](https://github.com/openshift/console/pull/11776) * Update PF packages to pf-2022-8 [#11766](https://github.com/openshift/console/pull/11766) * [CONSOLE-3083](https://issues.redhat.com/browse/CONSOLE-3083): Update API docs for dynamic plugin sdk [#11639](https://github.com/openshift/console/pull/11639) * Update ODC owner files [#11760](https://github.com/openshift/console/pull/11760) * [Bug 2096350](https://bugzilla.redhat.com/show_bug.cgi?id=2096350): fix bug where Cluster update modal errors weren't displa… [#11762](https://github.com/openshift/console/pull/11762) * Automation of Eventing-broker-actions | knative - eventing [#11503](https://github.com/openshift/console/pull/11503) * [Bug 2100669](https://bugzilla.redhat.com/show_bug.cgi?id=2100669): Don't log usernames with the telemetry plugin [#11759](https://github.com/openshift/console/pull/11759) * [Bug 2100159](https://bugzilla.redhat.com/show_bug.cgi?id=2100159): [dark theme] Fix build pending icon color in topology sidebar [#11756](https://github.com/openshift/console/pull/11756) * [Bug 2099528](https://bugzilla.redhat.com/show_bug.cgi?id=2099528): Restore spacing between/below modal body content [#11755](https://github.com/openshift/console/pull/11755) * [Bug 2099358](https://bugzilla.redhat.com/show_bug.cgi?id=2099358): Fix application group background colors [#11752](https://github.com/openshift/console/pull/11752) * [Bug 2100356](https://bugzilla.redhat.com/show_bug.cgi?id=2100356): remove Condition tab and create option if the crd is not available [#11750](https://github.com/openshift/console/pull/11750) * eventing-channel feature | knative-plugin [#11634](https://github.com/openshift/console/pull/11634) * [Bug 1948556](https://bugzilla.redhat.com/show_bug.cgi?id=1948556): Add check if model is defined to prevent RTE [#11224](https://github.com/openshift/console/pull/11224) * [Bug 2099330](https://bugzilla.redhat.com/show_bug.cgi?id=2099330): Add accessReview to Edit application grouping option [#11745](https://github.com/openshift/console/pull/11745) * [Bug 2094023](https://bugzilla.redhat.com/show_bug.cgi?id=2094023): Add correct pod template labels via add flows [#11740](https://github.com/openshift/console/pull/11740) * [CONSOLE-3061](https://issues.redhat.com/browse/CONSOLE-3061): Add failed plugins into the notification drawer [#11732](https://github.com/openshift/console/pull/11732) * [CONSOLE-3062](https://issues.redhat.com/browse/CONSOLE-3062): add Dynamic Plugins to Cluster Overview Status card [#11664](https://github.com/openshift/console/pull/11664) * Actions on Horizontal-pod-autoscaler | Topology [#11642](https://github.com/openshift/console/pull/11642) * Quota charts now show all resource types [#11596](https://github.com/openshift/console/pull/11596) * [Bug 2099654](https://bugzilla.redhat.com/show_bug.cgi?id=2099654): Fix endless re-render loop when associatedDeployment is not defined [#11749](https://github.com/openshift/console/pull/11749) * [Bug 2029797](https://bugzilla.redhat.com/show_bug.cgi?id=2029797): if linkTo is false, do not attempt to get path [#11696](https://github.com/openshift/console/pull/11696) * [Bug 2062920](https://bugzilla.redhat.com/show_bug.cgi?id=2062920): Remove the namespace dropdown set menu height to prevent unneccessary… [#11748](https://github.com/openshift/console/pull/11748) * [Bug 2087772](https://bugzilla.redhat.com/show_bug.cgi?id=2087772): Fix layout issue caused by badges in header of catalog details panel [#11711](https://github.com/openshift/console/pull/11711) * [CONSOLE-3153](https://issues.redhat.com/browse/CONSOLE-3153): Expose timestamp component as part of the dynamic plugin sdk API [#11693](https://github.com/openshift/console/pull/11693) * [Bug 2093586](https://bugzilla.redhat.com/show_bug.cgi?id=2093586): Close quick-search modal on ctrl+space [#11741](https://github.com/openshift/console/pull/11741) * [Bug 2072883](https://bugzilla.redhat.com/show_bug.cgi?id=2072883): Fix dashboard graph width tracking [#11730](https://github.com/openshift/console/pull/11730) * [Bug 2094227](https://bugzilla.redhat.com/show_bug.cgi?id=2094227): Added Create Service Binding to the top of the action list [#11702](https://github.com/openshift/console/pull/11702) * [Bug 2071747](https://bugzilla.redhat.com/show_bug.cgi?id=2071747): Fix the machine configuration docs link [#11668](https://github.com/openshift/console/pull/11668) * [Bug 2096392](https://bugzilla.redhat.com/show_bug.cgi?id=2096392): [Dark Theme]: Add white background to node icons in Topology in dark mode [#11699](https://github.com/openshift/console/pull/11699) * [Bug 2022611](https://bugzilla.redhat.com/show_bug.cgi?id=2022611): Remove BlockPools tab in external mode [#11727](https://github.com/openshift/console/pull/11727) * [Bug 2015042](https://bugzilla.redhat.com/show_bug.cgi?id=2015042): Adding a template from the catalog creates a secret that is not owned by the TemplateInstance [#11649](https://github.com/openshift/console/pull/11649) * [Bug 2077373](https://bugzilla.redhat.com/show_bug.cgi?id=2077373): fix dev perspective accessibility issue [#11738](https://github.com/openshift/console/pull/11738) * [Bug 2099763](https://bugzilla.redhat.com/show_bug.cgi?id=2099763): update icons for eventSource and eventSink [#11731](https://github.com/openshift/console/pull/11731) * [ODC-6660](https://issues.redhat.com/browse/ODC-6660): Render topology differently based on zoom level [#11698](https://github.com/openshift/console/pull/11698) * chore(i18n): update translations: Completed-7034-OCP 4.11 UI Localization- print 219 [#11695](https://github.com/openshift/console/pull/11695) * [Bug 2099582](https://bugzilla.redhat.com/show_bug.cgi?id=2099582): Format and update the repository overview page [#11737](https://github.com/openshift/console/pull/11737) * Console 3155: Display Operator logos on a white background on dark them to prevent visual issues and consistency [#11491](https://github.com/openshift/console/pull/11491) * [Bug 2096908](https://bugzilla.redhat.com/show_bug.cgi?id=2096908): [Dark Theme]: fix several issues in the dark mode. [#11706](https://github.com/openshift/console/pull/11706) * [Bug 2093601](https://bugzilla.redhat.com/show_bug.cgi?id=2093601): allow project access page to update the settings twice [#11713](https://github.com/openshift/console/pull/11713) * eventing-create-sink-broker feature | knative-plugin [#11717](https://github.com/openshift/console/pull/11717) * [Bug 2089405](https://bugzilla.redhat.com/show_bug.cgi?id=2089405): fix topology build decorator color [#11722](https://github.com/openshift/console/pull/11722) * [Bug 1993916](https://bugzilla.redhat.com/show_bug.cgi?id=1993916): Visual feedback on OBC deletion [#11415](https://github.com/openshift/console/pull/11415) * [Bug 2072793](https://bugzilla.redhat.com/show_bug.cgi?id=2072793): Update top consumer metrics [#11721](https://github.com/openshift/console/pull/11721) * Gherkin and automation of topology usability improvements [#11566](https://github.com/openshift/console/pull/11566) * [Bug 2089675](https://bugzilla.redhat.com/show_bug.cgi?id=2089675): Fix for setting position of topology groups with no children [#11723](https://github.com/openshift/console/pull/11723) * [Bug 2096394](https://bugzilla.redhat.com/show_bug.cgi?id=2096394): Switch from overriding dark theme pf-c-card background to increasing its boxshadow. [#11707](https://github.com/openshift/console/pull/11707) * [Bug 2091029](https://bugzilla.redhat.com/show_bug.cgi?id=2091029): - Cancel rollout action only appears when rollout is completed [#11648](https://github.com/openshift/console/pull/11648) * [Bug 2097000](https://bugzilla.redhat.com/show_bug.cgi?id=2097000): fix visualisation of kafka connection along with kafka sink [#11718](https://github.com/openshift/console/pull/11718) * [Bug 2027603](https://bugzilla.redhat.com/show_bug.cgi?id=2027603): Fix arbiter zone selection issue [#11692](https://github.com/openshift/console/pull/11692) * [Bug 2090895](https://bugzilla.redhat.com/show_bug.cgi?id=2090895): Support startsWith Nav Extension property [#11660](https://github.com/openshift/console/pull/11660) * Gherkin and automation of support builds v2 in Dev Console [#11709](https://github.com/openshift/console/pull/11709) * [Bug 2043068](https://bugzilla.redhat.com/show_bug.cgi?id=2043068): <x> available of <y> text disappears in Utilization item if x is 0 [#11617](https://github.com/openshift/console/pull/11617) * Topology-workload-sidebar feature [#11605](https://github.com/openshift/console/pull/11605) * [CONSOLE-3162](https://issues.redhat.com/browse/CONSOLE-3162): Implement check for the new i18n annotation for dynamic plugins [#11586](https://github.com/openshift/console/pull/11586) * Topology-connecting-workloads and editing app | Topology Automation [#11452](https://github.com/openshift/console/pull/11452) * [Bug 2036629](https://bugzilla.redhat.com/show_bug.cgi?id=2036629): Remove NooBaa Management UI link [#11680](https://github.com/openshift/console/pull/11680) * [Bug 2093600](https://bugzilla.redhat.com/show_bug.cgi?id=2093600): Added create call before delete call [#11704](https://github.com/openshift/console/pull/11704) * Gherkin for add git repository in pipeline as code [#11681](https://github.com/openshift/console/pull/11681) * Gherkin and automation of dev usability improvements [#11601](https://github.com/openshift/console/pull/11601) * [Bug 2097163](https://bugzilla.redhat.com/show_bug.cgi?id=2097163): Expose useURLPoll hook in internal SDK [#11708](https://github.com/openshift/console/pull/11708) * Add extensions for project overview inventory and utilization cards [#11620](https://github.com/openshift/console/pull/11620) * [Bug 2093047](https://bugzilla.redhat.com/show_bug.cgi?id=2093047): Clean up duplicate entries in api.md [#11705](https://github.com/openshift/console/pull/11705) * [Bug 2090457](https://bugzilla.redhat.com/show_bug.cgi?id=2090457): openshift-debug-node- namespaces do not get deleted for… [#11674](https://github.com/openshift/console/pull/11674) * Automation of eventing-broker-trigger | knative-eventing [#11576](https://github.com/openshift/console/pull/11576) * [Bug 2057251](https://bugzilla.redhat.com/show_bug.cgi?id=2057251): promql: Improve a few cluster-dashboard queries [#11265](https://github.com/openshift/console/pull/11265) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Adjust darkest purple resource color to one PF shade lighter for better contrast on dark theme. [#11685](https://github.com/openshift/console/pull/11685) * Automation of event-sources-sink-to-uri | knative-plugin [#11450](https://github.com/openshift/console/pull/11450) * [Bug 2084453](https://bugzilla.redhat.com/show_bug.cgi?id=2084453): - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view [#11494](https://github.com/openshift/console/pull/11494) * [Bug 2094239](https://bugzilla.redhat.com/show_bug.cgi?id=2094239): do not show NodesUpdateGroup if there are 0 nodes [#11694](https://github.com/openshift/console/pull/11694) * [Bug 2095687](https://bugzilla.redhat.com/show_bug.cgi?id=2095687): fix issue with debugcontainer for build logs [#11687](https://github.com/openshift/console/pull/11687) * [Bug 2095083](https://bugzilla.redhat.com/show_bug.cgi?id=2095083): Monitoring dashboards: Increase default graph samples from 30 to 60 [#11667](https://github.com/openshift/console/pull/11667) * [Bug 2096053](https://bugzilla.redhat.com/show_bug.cgi?id=2096053): [Dark Theme]: Add white background to Builder Image icons in Git import flow [#11689](https://github.com/openshift/console/pull/11689) * [Bug 2086521](https://bugzilla.redhat.com/show_bug.cgi?id=2086521): [Dark Theme]: fix Topology context menu icon to support dark theme [#11688](https://github.com/openshift/console/pull/11688) * [Bug 2094152](https://bugzilla.redhat.com/show_bug.cgi?id=2094152): Filter alerts in virtualization overview status card [#11653](https://github.com/openshift/console/pull/11653) * Remove now unused function getPrometheusExpressionBrowserURL [#11609](https://github.com/openshift/console/pull/11609) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Adjust pf-c-card background color, when on dark theme, so that it is discernible. [#11684](https://github.com/openshift/console/pull/11684) * [Bug 2095247](https://bugzilla.redhat.com/show_bug.cgi?id=2095247): update fetch for dynamic channels in sink as done for source [#11682](https://github.com/openshift/console/pull/11682) * [Bug 2091603](https://bugzilla.redhat.com/show_bug.cgi?id=2091603): move terminal tick & add phase handlers [#11650](https://github.com/openshift/console/pull/11650) * [ODC-6694](https://issues.redhat.com/browse/ODC-6694): New service binding plugin with a list and detail page, updated topology package [#11671](https://github.com/openshift/console/pull/11671) * [Bug 2094833](https://bugzilla.redhat.com/show_bug.cgi?id=2094833): Fix empty pipeline run template section for non-admin users [#11670](https://github.com/openshift/console/pull/11670) * Render icon as a svg instead of img tag to support dark theme [#11663](https://github.com/openshift/console/pull/11663) * Gherkin for console dark theme [#11643](https://github.com/openshift/console/pull/11643) * [Bug 2095231](https://bugzilla.redhat.com/show_bug.cgi?id=2095231): Fix default sidebar for resources like Kafka sink, Kafka connection [#11683](https://github.com/openshift/console/pull/11683) * [Bug 2095071](https://bugzilla.redhat.com/show_bug.cgi?id=2095071): Fix failing backend test after devfile registry update [#11675](https://github.com/openshift/console/pull/11675) * [ODC-4981](https://issues.redhat.com/browse/ODC-4981): Add new plugin to support Shipwright Builds and BuildRuns [#11641](https://github.com/openshift/console/pull/11641) * [CONSOLE-2321](https://issues.redhat.com/browse/CONSOLE-2321): Allow operators installed globally to display operand instances for all managed namespaces in their details [#8930](https://github.com/openshift/console/pull/8930) * [Bug 2094104](https://bugzilla.redhat.com/show_bug.cgi?id=2094104): Demo dynamic plugin image tests should be skipped when testing console-operator [#11652](https://github.com/openshift/console/pull/11652) * [Bug 2085407](https://bugzilla.redhat.com/show_bug.cgi?id=2085407): Update Node details page to include inline edit labels button [#11563](https://github.com/openshift/console/pull/11563) * [Bug 2065840](https://bugzilla.redhat.com/show_bug.cgi?id=2065840): redirect v1beta1 CronJobs [#11662](https://github.com/openshift/console/pull/11662) * [Bug 2092414](https://bugzilla.redhat.com/show_bug.cgi?id=2092414): Display only running VMs in Virtualization Overview chart [#11651](https://github.com/openshift/console/pull/11651) * [Bug 2091901](https://bugzilla.redhat.com/show_bug.cgi?id=2091901): fix bug where log stream pauses in Chrome [#11646](https://github.com/openshift/console/pull/11646) * [ODC-6670](https://issues.redhat.com/browse/ODC-6670): Add --telemetry support to console backend (bridge) [#11531](https://github.com/openshift/console/pull/11531) * Topology-Toolbar Filter Group Gherkin Design and Automation [#11610](https://github.com/openshift/console/pull/11610) * Update pf packages to pf-2022-7 [#11632](https://github.com/openshift/console/pull/11632) * captures telemetry events for userPreferences, SBO, WTO and getting started [#11579](https://github.com/openshift/console/pull/11579) * Add pipelines as code Repository form [#11627](https://github.com/openshift/console/pull/11627) * [Bug 2077138](https://bugzilla.redhat.com/show_bug.cgi?id=2077138): fix {{execute}} regex for multiline executables in QuickStart [#11572](https://github.com/openshift/console/pull/11572) * [CONSOLE-3163](https://issues.redhat.com/browse/CONSOLE-3163): kubeadmin notifier changes [#11578](https://github.com/openshift/console/pull/11578) * [Bug 2063764](https://bugzilla.redhat.com/show_bug.cgi?id=2063764): Operators - OperatorHub : i18n misses [#11583](https://github.com/openshift/console/pull/11583) * [Bug 2092408](https://bugzilla.redhat.com/show_bug.cgi?id=2092408): Change icon in virtualization overview permissions card [#11623](https://github.com/openshift/console/pull/11623) * [CONSOLE-2977](https://issues.redhat.com/browse/CONSOLE-2977): update MCP list page for control plane only updates [#11502](https://github.com/openshift/console/pull/11502) * [Bug 2091746](https://bugzilla.redhat.com/show_bug.cgi?id=2091746): Check if spec is available in MCP details page [#11613](https://github.com/openshift/console/pull/11613) * [Bug 2086546](https://bugzilla.redhat.com/show_bug.cgi?id=2086546): [Dark Theme]: update Service binding connector color to support dark mode [#11600](https://github.com/openshift/console/pull/11600) * [Bug 2091218](https://bugzilla.redhat.com/show_bug.cgi?id=2091218): Update helm to 3.9.0 [#11590](https://github.com/openshift/console/pull/11590) * [Bug 2088489](https://bugzilla.redhat.com/show_bug.cgi?id=2088489): fix app selection in list view [#11608](https://github.com/openshift/console/pull/11608) * Add console-telemetry-plugin [#11549](https://github.com/openshift/console/pull/11549) * [Bug 2080387](https://bugzilla.redhat.com/show_bug.cgi?id=2080387): Pass contextSource to TopologyApplicationActionProvider [#11615](https://github.com/openshift/console/pull/11615) * [Bug 2070000](https://bugzilla.redhat.com/show_bug.cgi?id=2070000): Add high priority alerts to overview [#11614](https://github.com/openshift/console/pull/11614) * [Bug 2074635](https://bugzilla.redhat.com/show_bug.cgi?id=2074635): fix web terminal start [#11597](https://github.com/openshift/console/pull/11597) * [Bug 2084438](https://bugzilla.redhat.com/show_bug.cgi?id=2084438): Change Ping source spec.jsonData (deprecated) field to spec.data [#11548](https://github.com/openshift/console/pull/11548) * [Bug 2089996](https://bugzilla.redhat.com/show_bug.cgi?id=2089996): Don't rerun yarn install when running tests [#11517](https://github.com/openshift/console/pull/11517) * [Bug 2084615](https://bugzilla.redhat.com/show_bug.cgi?id=2084615): Fix Add to navigation alignment on search page [#11516](https://github.com/openshift/console/pull/11516) * [Bug 2079685](https://bugzilla.redhat.com/show_bug.cgi?id=2079685): Kms details enabled in the StorageClass creation page [#11498](https://github.com/openshift/console/pull/11498) * [Dark Theme]: fix dark theme issues in pipeline task visualization [#11575](https://github.com/openshift/console/pull/11575) * [Bug 2077386](https://bugzilla.redhat.com/show_bug.cgi?id=2077386): Replaced enum type with const to add translation [#11419](https://github.com/openshift/console/pull/11419) * [Bug 2091854](https://bugzilla.redhat.com/show_bug.cgi?id=2091854): Add 'Unavailable' status to clusteroperator status filter [#11612](https://github.com/openshift/console/pull/11612) * [Bug 2079818](https://bugzilla.redhat.com/show_bug.cgi?id=2079818): Remove duplicate padding from catalog side panel [#11602](https://github.com/openshift/console/pull/11602) * [Bug 2063732](https://bugzilla.redhat.com/show_bug.cgi?id=2063732): Workloads - StatefulSets : I18n misses [#11589](https://github.com/openshift/console/pull/11589) * Prometheus hook returns loaded instead of loading - same as k8s watch… [#11568](https://github.com/openshift/console/pull/11568) * [Bug 2084635](https://bugzilla.redhat.com/show_bug.cgi?id=2084635): Avoid using 'gp2' hardcoded storage class [#11603](https://github.com/openshift/console/pull/11603) * Fix Multiple instances of Object Bucket, Object Bucket Claims under storage section [#11540](https://github.com/openshift/console/pull/11540) * [Bug 2087546](https://bugzilla.redhat.com/show_bug.cgi?id=2087546): Expose getting started card resources [#11569](https://github.com/openshift/console/pull/11569) * Topology-toolbar-filter feature [#11529](https://github.com/openshift/console/pull/11529) * [ODC-6497](https://issues.redhat.com/browse/ODC-6497): Restore checks in environment e2e test [#11598](https://github.com/openshift/console/pull/11598) * Automation of eventing-camelk | knative-eventing [#11577](https://github.com/openshift/console/pull/11577) * e2e: Add package parameter to nightly cypress script [#11507](https://github.com/openshift/console/pull/11507) * [Bug 2071617](https://bugzilla.redhat.com/show_bug.cgi?id=2071617): remove Kubevirt extensions in favour of dynamic plugin [#11557](https://github.com/openshift/console/pull/11557) * [Bug 2090178](https://bugzilla.redhat.com/show_bug.cgi?id=2090178): Fix SSH command string [#11599](https://github.com/openshift/console/pull/11599) * [Bug 2081201](https://bugzilla.redhat.com/show_bug.cgi?id=2081201): cloud-init User check for Windows VM refuses to accept capitalized [#11591](https://github.com/openshift/console/pull/11591) * [Bug 2074767](https://bugzilla.redhat.com/show_bug.cgi?id=2074767): change metrics queries based on metrics level configurations [#11449](https://github.com/openshift/console/pull/11449) * [Bug 2091030](https://bugzilla.redhat.com/show_bug.cgi?id=2091030): Expose boot mode field in BMH wizard [#11585](https://github.com/openshift/console/pull/11585) * Ocp 4.11 UI localization sprint 218 [#11582](https://github.com/openshift/console/pull/11582) * update helm catalog description [#11562](https://github.com/openshift/console/pull/11562) * [Bug 2083154](https://bugzilla.redhat.com/show_bug.cgi?id=2083154): Fix missing params and formatting issues in dynamic plug in generated API docs [#11501](https://github.com/openshift/console/pull/11501) * [Bug 2091087](https://bugzilla.redhat.com/show_bug.cgi?id=2091087): Adding new team members and removing users not in team [#11587](https://github.com/openshift/console/pull/11587) * [Bug 2090993](https://bugzilla.redhat.com/show_bug.cgi?id=2090993): Handle missing BMH for Node gracefully [#11492](https://github.com/openshift/console/pull/11492) * Add React-Router Docs to our Extension docs [#11570](https://github.com/openshift/console/pull/11570) * Form based experience for creating Deployments [#11262](https://github.com/openshift/console/pull/11262) * [Bug 2090621](https://bugzilla.redhat.com/show_bug.cgi?id=2090621): Handle medik8s node maintenance [#11504](https://github.com/openshift/console/pull/11504) * [Bug 2090178](https://bugzilla.redhat.com/show_bug.cgi?id=2090178): Fix SSH command string [#11567](https://github.com/openshift/console/pull/11567) * [Bug 2084459](https://bugzilla.redhat.com/show_bug.cgi?id=2084459): fixes topology list URI flow [#11542](https://github.com/openshift/console/pull/11542) * Change metrics autocomplete filter [#11555](https://github.com/openshift/console/pull/11555) * Prometheus poll hook can return undefined [#11543](https://github.com/openshift/console/pull/11543) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): swapped labels out for details view and modal [#11376](https://github.com/openshift/console/pull/11376) * Reposition low resolution alert [#11468](https://github.com/openshift/console/pull/11468) * [Bug 2084287](https://bugzilla.redhat.com/show_bug.cgi?id=2084287): Fix NPE when consuming CSVs with missing informations [#11544](https://github.com/openshift/console/pull/11544) * chore(i18n): update translations : Completed-7034-OCP 4.11 UI Localization- print 217 [#11462](https://github.com/openshift/console/pull/11462) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Include pf charts dark theme css file in app.jsx to ensure they are loaded last [#11535](https://github.com/openshift/console/pull/11535) * [Bug 2088304](https://bugzilla.redhat.com/show_bug.cgi?id=2088304): Eliminate use of lookaside cache and move to Cachito [#11497](https://github.com/openshift/console/pull/11497) * [Bug 2089271](https://bugzilla.redhat.com/show_bug.cgi?id=2089271): Virtualization appears twice in sidebar [#11546](https://github.com/openshift/console/pull/11546) * [Bug 2064256](https://bugzilla.redhat.com/show_bug.cgi?id=2064256): Fix topology sidebar update issues [#11420](https://github.com/openshift/console/pull/11420) * [Bug 2088248](https://bugzilla.redhat.com/show_bug.cgi?id=2088248): Create HANA VM does not use values from customized HANA templates [#11534](https://github.com/openshift/console/pull/11534) * [Bug 2087944](https://bugzilla.redhat.com/show_bug.cgi?id=2087944): fixes kafka sink visualisation [#11536](https://github.com/openshift/console/pull/11536) * [Bug 2079845](https://bugzilla.redhat.com/show_bug.cgi?id=2079845): fix catalog filter group getting removed on keyword change [#11481](https://github.com/openshift/console/pull/11481) * In-context-add-options feature | Topology [#11496](https://github.com/openshift/console/pull/11496) * [Bug 2088161](https://bugzilla.redhat.com/show_bug.cgi?id=2088161): Match dockerfile image name with the name used in the release repo for demo plugin [#11524](https://github.com/openshift/console/pull/11524) * adds hint and updates helptext for PAC [#11520](https://github.com/openshift/console/pull/11520) * [Bug 2020483](https://bugzilla.redhat.com/show_bug.cgi?id=2020483): Monitoring dashboards: Improve display text for interval variables [#10472](https://github.com/openshift/console/pull/10472) * [Bug 2066782](https://bugzilla.redhat.com/show_bug.cgi?id=2066782): Attached disk keeps in loading status when add disk to a power off VM by non-privileged user [#11521](https://github.com/openshift/console/pull/11521) * [Bug 2064239](https://bugzilla.redhat.com/show_bug.cgi?id=2064239): Overview page crash if no labels available [#11514](https://github.com/openshift/console/pull/11514) * [Bug 2015356](https://bugzilla.redhat.com/show_bug.cgi?id=2015356): Different status shows on VM list page and details page [#11512](https://github.com/openshift/console/pull/11512) * [Bug 2086542](https://bugzilla.redhat.com/show_bug.cgi?id=2086542): Fix that Service Binding could not be created via drag and drop [#11511](https://github.com/openshift/console/pull/11511) * Send activity tick by polling [#11390](https://github.com/openshift/console/pull/11390) * [Bug 2069654](https://bugzilla.redhat.com/show_bug.cgi?id=2069654): Adding missing annotations to create VM from YAML [#11518](https://github.com/openshift/console/pull/11518) * Improve cross portfolio consistency [#11470](https://github.com/openshift/console/pull/11470) * [Bug 2081377](https://bugzilla.redhat.com/show_bug.cgi?id=2081377): Remove pf-c-code-block__pre since pf updated allows classnames [#11431](https://github.com/openshift/console/pull/11431) * [Bug 2086469](https://bugzilla.redhat.com/show_bug.cgi?id=2086469): Monitoring: Fix first panel sometimes not rendered [#11505](https://github.com/openshift/console/pull/11505) * Updating openshift-enterprise-console images to be consistent with ART [#10974](https://github.com/openshift/console/pull/10974) * [Bug 2067246](https://bugzilla.redhat.com/show_bug.cgi?id=2067246): Removing SSH service selectors to minimum required [#11508](https://github.com/openshift/console/pull/11508) * Gherkin for pipeline builder to support local tektonhub instances [#11448](https://github.com/openshift/console/pull/11448) * [Bug 2076553](https://bugzilla.redhat.com/show_bug.cgi?id=2076553): fix rolebinding in DevConsole dropping all subjects when updating [#11292](https://github.com/openshift/console/pull/11292) * [Bug 2054735](https://bugzilla.redhat.com/show_bug.cgi?id=2054735): Change learn more link in virtualization -> migration tool [#11499](https://github.com/openshift/console/pull/11499) * Monitoring: Add "fade out" horizontal gradient to Metrics page table [#11474](https://github.com/openshift/console/pull/11474) * [Bug 2077943](https://bugzilla.redhat.com/show_bug.cgi?id=2077943): If there is a service with multiple ports, and the route uses 8080, when editing the 8080 port isn't replaced, but a random port gets replaced and 8080 still stays [#11464](https://github.com/openshift/console/pull/11464) * [Bug 2086417](https://bugzilla.redhat.com/show_bug.cgi?id=2086417): Fix start pipeline default value for GIT REVISION field [#11495](https://github.com/openshift/console/pull/11495) * change Event Sink and Event Source icons [#11437](https://github.com/openshift/console/pull/11437) * Gherkin and automation for PAC bootstrap form [#11478](https://github.com/openshift/console/pull/11478) * [Bug 2055492](https://bugzilla.redhat.com/show_bug.cgi?id=2055492): The default YAML on vm wizard is not latest [#11500](https://github.com/openshift/console/pull/11500) * [Bug 2082566](https://bugzilla.redhat.com/show_bug.cgi?id=2082566): Set dashboards timeout based on selected timespan [#11477](https://github.com/openshift/console/pull/11477) * [ODC-6645](https://issues.redhat.com/browse/ODC-6645): Convert the ProjectHelmChartRepository create form into a form-yaml switcher [#11440](https://github.com/openshift/console/pull/11440) * [Bug 2070457](https://bugzilla.redhat.com/show_bug.cgi?id=2070457): and PF-2022-6 PF update to fix Image vulnerability Popover [#11489](https://github.com/openshift/console/pull/11489) * [CCXDEV-7974](https://issues.redhat.com/browse/CCXDEV-7974): show error message when Insights Operator cannot process results [#11399](https://github.com/openshift/console/pull/11399) * [Bug 2083756](https://bugzilla.redhat.com/show_bug.cgi?id=2083756): enable simplifiedAutoLink for ClusterNotUpgradeableAlert [#11490](https://github.com/openshift/console/pull/11490) * Chart-Area-Visual feature | Topology [#11453](https://github.com/openshift/console/pull/11453) * Gherkin Scripts and Automation for Web-Terminal | Dev Console [#11378](https://github.com/openshift/console/pull/11378) * [CONSOLE-3136](https://issues.redhat.com/browse/CONSOLE-3136): add conditional updates to Cluster Settings [#11445](https://github.com/openshift/console/pull/11445) * [CONSOLE-3138](https://issues.redhat.com/browse/CONSOLE-3138): add conditional updates to cluster update modal [#11424](https://github.com/openshift/console/pull/11424) * [Bug 2084124](https://bugzilla.redhat.com/show_bug.cgi?id=2084124): fix upstream "Learn more" link in Update cluster modal [#11480](https://github.com/openshift/console/pull/11480) * [Bug 2083641](https://bugzilla.redhat.com/show_bug.cgi?id=2083641): fixes apiversion for k8s svc and resource selection for sink for form yaml switcher [#11475](https://github.com/openshift/console/pull/11475) * [Bug 2084292](https://bugzilla.redhat.com/show_bug.cgi?id=2084292): Add useDashboardResources hook [#11467](https://github.com/openshift/console/pull/11467) * [Bug 2081067](https://bugzilla.redhat.com/show_bug.cgi?id=2081067): add help text indicating Cluster history may be excerpted [#11472](https://github.com/openshift/console/pull/11472) * feat: Add Deployment History Tab (#1950) [#11439](https://github.com/openshift/console/pull/11439) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): Update user from node to 1001 similar to console docker file user id [#11473](https://github.com/openshift/console/pull/11473) * E2E tests: wait for project list to load before creating [#11443](https://github.com/openshift/console/pull/11443) * [Bug 2068181](https://bugzilla.redhat.com/show_bug.cgi?id=2068181): Fix Event source powered with kamelet type source to show associated resources in the sidepanel [#11301](https://github.com/openshift/console/pull/11301) * [Bug 2075592](https://bugzilla.redhat.com/show_bug.cgi?id=2075592): add z-index to ocs-drawer to make box-shadow visible [#11369](https://github.com/openshift/console/pull/11369) * [Bug 2078375](https://bugzilla.redhat.com/show_bug.cgi?id=2078375): Create VM from template that has sourceRef - will now reflect sourceRed at yaml [#11457](https://github.com/openshift/console/pull/11457) * [Bug 2078769](https://bugzilla.redhat.com/show_bug.cgi?id=2078769): Added language translation on filter items [#11435](https://github.com/openshift/console/pull/11435) * Update QE OWNERS roles for integration tests [#11455](https://github.com/openshift/console/pull/11455) * [Dark Theme]: fix quick search bar and project selector in User Preferences page [#11447](https://github.com/openshift/console/pull/11447) * [Bug 2076527](https://bugzilla.redhat.com/show_bug.cgi?id=2076527): Fix multiple Tektonhub Versions API call [#11438](https://github.com/openshift/console/pull/11438) * [Bug 2070720](https://bugzilla.redhat.com/show_bug.cgi?id=2070720): Fix Filter Dropdown & Label Selection State Management [#11428](https://github.com/openshift/console/pull/11428) * [Bug 2076544](https://bugzilla.redhat.com/show_bug.cgi?id=2076544): Added margin-bottom for the paragraph component [#11404](https://github.com/openshift/console/pull/11404) * [Bug 2083149](https://bugzilla.redhat.com/show_bug.cgi?id=2083149): fix bug where "Update blocked" label incorrectly displa… [#11459](https://github.com/openshift/console/pull/11459) * GitOps-1941 fixed dark theme color issue [#11426](https://github.com/openshift/console/pull/11426) * [Bug 2082380](https://bugzilla.redhat.com/show_bug.cgi?id=2082380): customize wizard is crashed [#11458](https://github.com/openshift/console/pull/11458) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): updated skeleton color definitions, updated sidebar shadow [#11408](https://github.com/openshift/console/pull/11408) * [Bug 2060329](https://bugzilla.redhat.com/show_bug.cgi?id=2060329): show Limit exceeded state for large number of nodes in topology [#11334](https://github.com/openshift/console/pull/11334) * [CONSOLE-2936](https://issues.redhat.com/browse/CONSOLE-2936): Add support for PDB [#10445](https://github.com/openshift/console/pull/10445) * [Bug 2013461](https://bugzilla.redhat.com/show_bug.cgi?id=2013461): Import deployment from Git with s2i expose always port 8080 (Service and Pod template, not Route) if another Route port is selected by the user [#11355](https://github.com/openshift/console/pull/11355) * [MGMT-9862](https://issues.redhat.com/browse/MGMT-9862): Add extension for dashboard's Details card [#11272](https://github.com/openshift/console/pull/11272) * Automation of event-sources-installation | knative-plugin [#11444](https://github.com/openshift/console/pull/11444) * [Bug 2072999](https://bugzilla.redhat.com/show_bug.cgi?id=2072999): Add params prop to HorizontalNav component [#11343](https://github.com/openshift/console/pull/11343) * [Bug 2079961](https://bugzilla.redhat.com/show_bug.cgi?id=2079961): Fix bug where the search results accordion section has no spacing between sidebar. [#11446](https://github.com/openshift/console/pull/11446) * Document Console to SDK versions [#11429](https://github.com/openshift/console/pull/11429) * [Bug 2074585](https://bugzilla.redhat.com/show_bug.cgi?id=2074585): fix kms issue for mcg standalone [#11410](https://github.com/openshift/console/pull/11410) * [Bug 1990384](https://bugzilla.redhat.com/show_bug.cgi?id=1990384): Improve Alertmanager unavailable message [#11397](https://github.com/openshift/console/pull/11397) * [CONSOLE-3090](https://issues.redhat.com/browse/CONSOLE-3090): [Dark Theme] Convert custom row-filter to use PatternFly ToggleGroup component for styling that is dark theme enabled. [#11384](https://github.com/openshift/console/pull/11384) * Update topology to Patternfly topology package containing updates and styles. [#11166](https://github.com/openshift/console/pull/11166) * Expose UsePrometheusPoll in console-dynamic-plugin-sdk [#11295](https://github.com/openshift/console/pull/11295) * [Bug 2081743](https://bugzilla.redhat.com/show_bug.cgi?id=2081743): disable kubevirt flaky tests [#11436](https://github.com/openshift/console/pull/11436) * Automation for quick-search-topology | Topology [#11396](https://github.com/openshift/console/pull/11396) * [Bug 2080873](https://bugzilla.redhat.com/show_bug.cgi?id=2080873): Fix crash when stored topology layout isn't supported anymore [#11427](https://github.com/openshift/console/pull/11427) * Automation for application and resource grouping | Topology [#11395](https://github.com/openshift/console/pull/11395) * Automation of knative-plugin | admin-perspective [#11389](https://github.com/openshift/console/pull/11389) * Monitoring: Add duplicate query option to kebab menu [#11004](https://github.com/openshift/console/pull/11004) * [CONSOLE-3141](https://issues.redhat.com/browse/CONSOLE-3141): Hide 'Control Plane' section in the status card for External controlPlaneTopology [#11398](https://github.com/openshift/console/pull/11398) * [CCXDEV-5788](https://issues.redhat.com/browse/CCXDEV-5788): render the "last refresh" timestamp in the Insights Advisor widget [#11391](https://github.com/openshift/console/pull/11391) * CONSOLE 3132: Introduce new console-plugin-shared npm package [#11360](https://github.com/openshift/console/pull/11360) * [Bug 2071747](https://bugzilla.redhat.com/show_bug.cgi?id=2071747): Fix the machine configuration docs link [#11417](https://github.com/openshift/console/pull/11417) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): use xl timeout to verify the demo pull spec is accurate [#11416](https://github.com/openshift/console/pull/11416) * [CONSOLE-3072](https://issues.redhat.com/browse/CONSOLE-3072): Cluster overview page changes for HyperShift provisioned clusters [#11366](https://github.com/openshift/console/pull/11366) * [Bug 2079673](https://bugzilla.redhat.com/show_bug.cgi?id=2079673): disable migrated components [#11205](https://github.com/openshift/console/pull/11205) * KafkaSink Visualization [#11333](https://github.com/openshift/console/pull/11333) * Gherkin and Automation of e2e support for event sinks [#11276](https://github.com/openshift/console/pull/11276) * [Bug 2027613](https://bugzilla.redhat.com/show_bug.cgi?id=2027613): use the correct Alertmanager tenancy proxy [#10818](https://github.com/openshift/console/pull/10818) * [Bug 2039161](https://bugzilla.redhat.com/show_bug.cgi?id=2039161): text visibility fixed [#10978](https://github.com/openshift/console/pull/10978) * [Bug 2079663](https://bugzilla.redhat.com/show_bug.cgi?id=2079663): change default image features in RBD storageclass [#11070](https://github.com/openshift/console/pull/11070) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): Update the wait time for demo plugin to 60s [#11414](https://github.com/openshift/console/pull/11414) * [Bug 2079216](https://bugzilla.redhat.com/show_bug.cgi?id=2079216): Update cluster update reference doc link [#11407](https://github.com/openshift/console/pull/11407) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): moved imports [#11370](https://github.com/openshift/console/pull/11370) * [Bug 1994117](https://bugzilla.redhat.com/show_bug.cgi?id=1994117): remove orphaned Service Catalog and Chargeback code [#11400](https://github.com/openshift/console/pull/11400) * Monitoring: Integrate PromQL codemirror for better autocomplete UX [#11143](https://github.com/openshift/console/pull/11143) * [Bug 2079062](https://bugzilla.redhat.com/show_bug.cgi?id=2079062): increase timeout to render toast notification for demo plugin test [#11402](https://github.com/openshift/console/pull/11402) * [Bug 2075189](https://bugzilla.redhat.com/show_bug.cgi?id=2075189): Fix failed module resoltion errors in console sdk [#11381](https://github.com/openshift/console/pull/11381) * Filter out global configs when cluster is externally managed [#11383](https://github.com/openshift/console/pull/11383) * [Bug 2077150](https://bugzilla.redhat.com/show_bug.cgi?id=2077150): Required parent class added so that margin spacing for breadcrumbs is applied. [#11394](https://github.com/openshift/console/pull/11394) * [Bug 2042852](https://bugzilla.redhat.com/show_bug.cgi?id=2042852): Topology toolbars are unaligned to other toolbars [#11160](https://github.com/openshift/console/pull/11160) * [Dark Theme]: fix Topology empty state to support dark theme [#11393](https://github.com/openshift/console/pull/11393) * Gherkin and automation for project vulnerability [#11325](https://github.com/openshift/console/pull/11325) * [Bug 2075117](https://bugzilla.redhat.com/show_bug.cgi?id=2075117): Added inline-flex styling for searchbar filter div [#11379](https://github.com/openshift/console/pull/11379) * [CONSOLE-3074](https://issues.redhat.com/browse/CONSOLE-3074): update notifications for HyperShift Provisioned Clusters [#11375](https://github.com/openshift/console/pull/11375) * [Bug 2024708](https://bugzilla.redhat.com/show_bug.cgi?id=2024708): Don't use lodash startCase on default operand field labels [#11346](https://github.com/openshift/console/pull/11346) * [CONSOLE-3090](https://issues.redhat.com/browse/CONSOLE-3090): [Dark Theme] This is to reassign the correct blue and orange heading colors that are used in the getting started sections on both Admin and Dev console [#11385](https://github.com/openshift/console/pull/11385) * [Bug 1965934](https://bugzilla.redhat.com/show_bug.cgi?id=1965934): Fix Run queries button UX [#11388](https://github.com/openshift/console/pull/11388) * Update pf packages to pf-2022-5 [#11372](https://github.com/openshift/console/pull/11372) * [Bug 2061918](https://bugzilla.redhat.com/show_bug.cgi?id=2061918): Fixed side-bar scrolling issue [#11386](https://github.com/openshift/console/pull/11386) * Automation of Service bindings | dev-console [#11352](https://github.com/openshift/console/pull/11352) * [Dark Theme]: fix mutilStream logs and pod logs viewer and console header to support dark theme [#11357](https://github.com/openshift/console/pull/11357) * [Bug 2070731](https://bugzilla.redhat.com/show_bug.cgi?id=2070731): details switch label is not clickable on add page [#11311](https://github.com/openshift/console/pull/11311) * Make project access form discoverable [#11349](https://github.com/openshift/console/pull/11349) * [CONSOLE-3071](https://issues.redhat.com/browse/CONSOLE-3071): update Cluster Settings and ClusterVersion Details page… [#11363](https://github.com/openshift/console/pull/11363) * adds support for Pipelines as code [#11336](https://github.com/openshift/console/pull/11336) * Add Helm Chart repositories add action on Add page [#11345](https://github.com/openshift/console/pull/11345) * [Bug 2075575](https://bugzilla.redhat.com/show_bug.cgi?id=2075575): Align url polling interval for Overview pages with other pages [#11380](https://github.com/openshift/console/pull/11380) * Automation of pipeline-runs | pipelines-plugin [#11324](https://github.com/openshift/console/pull/11324) * Epic Automation for ODC-4315 [#11203](https://github.com/openshift/console/pull/11203) * [Bug 2073437](https://bugzilla.redhat.com/show_bug.cgi?id=2073437): Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls [#11307](https://github.com/openshift/console/pull/11307) * [Bug 2039477](https://bugzilla.redhat.com/show_bug.cgi?id=2039477): Add a workaround to show the PF validation status also when the input field is autofilled. [#11201](https://github.com/openshift/console/pull/11201) * [CONSOLE-3090](https://issues.redhat.com/browse/CONSOLE-3090): [Dark Theme] Several dark theme fixes. Includes borders, hr, disabled form element, row hover, hint blocks [#11303](https://github.com/openshift/console/pull/11303) * [Bug 2007340](https://bugzilla.redhat.com/show_bug.cgi?id=2007340): fix accessibility issues in topology list view [#11251](https://github.com/openshift/console/pull/11251) * [Bug 2015555](https://bugzilla.redhat.com/show_bug.cgi?id=2015555): keep query table and chart in sync [#11359](https://github.com/openshift/console/pull/11359) * [Bug 2073176](https://bugzilla.redhat.com/show_bug.cgi?id=2073176): Fix key/value pair removal issue in configmap form yaml switcher [#11328](https://github.com/openshift/console/pull/11328) * [Bug 2065804](https://bugzilla.redhat.com/show_bug.cgi?id=2065804): Fix Web Terminal availability check to verify operator is installed [#11202](https://github.com/openshift/console/pull/11202) * [CONSOLE-2925](https://issues.redhat.com/browse/CONSOLE-2925): Add initial dynamic demo plugin tests [#10644](https://github.com/openshift/console/pull/10644) * [Bug 2076614](https://bugzilla.redhat.com/show_bug.cgi?id=2076614): Expose ResourceEventStream Component as part of the Core SDK [#11274](https://github.com/openshift/console/pull/11274) * Gherkin for service binding enhancement- discoverability [#11326](https://github.com/openshift/console/pull/11326) * Add infotip and remove not bindable filter [#11313](https://github.com/openshift/console/pull/11313) * [Bug 2071715](https://bugzilla.redhat.com/show_bug.cgi?id=2071715): fix 404 on Environments nav [#11337](https://github.com/openshift/console/pull/11337) * [Bug 2074756](https://bugzilla.redhat.com/show_bug.cgi?id=2074756): fix bug where ClusterRole > RoleBindings did not display… [#11353](https://github.com/openshift/console/pull/11353) * [Bug 2074100](https://bugzilla.redhat.com/show_bug.cgi?id=2074100): fix CRD name filter [#11347](https://github.com/openshift/console/pull/11347) * [Bug 2074465](https://bugzilla.redhat.com/show_bug.cgi?id=2074465): Fix default branch param in pipeline import from git flow [#11323](https://github.com/openshift/console/pull/11323) * [Bug 2061918](https://bugzilla.redhat.com/show_bug.cgi?id=2061918): Topology sidebar broken issue is fixed [#11299](https://github.com/openshift/console/pull/11299) * Update links to examples - descriptors reference.md [#11342](https://github.com/openshift/console/pull/11342) * use incluster tekton hub Api endpoint in pipeline builder [#11335](https://github.com/openshift/console/pull/11335) * [Bug 2071578](https://bugzilla.redhat.com/show_bug.cgi?id=2071578): Add new MONITORING flag to hide dev perspective nav item and topology sidebar observe section if not available [#11190](https://github.com/openshift/console/pull/11190) * [Bug 2071617](https://bugzilla.redhat.com/show_bug.cgi?id=2071617): remove Kubevirt extensions in favour of dynamic plugin [#11273](https://github.com/openshift/console/pull/11273) * [Bug 2071617](https://bugzilla.redhat.com/show_bug.cgi?id=2071617): Stop disabling extensions with non-existing `disallowed` flags [#11344](https://github.com/openshift/console/pull/11344) * Hide Upgrade Cluster Alert in About Modal When Externally Managed [#11339](https://github.com/openshift/console/pull/11339) * [Bug 2075778](https://bugzilla.redhat.com/show_bug.cgi?id=2075778): Fix failing TestGetRegistrySamples test [#11350](https://github.com/openshift/console/pull/11350) * [Bug 2073329](https://bugzilla.redhat.com/show_bug.cgi?id=2073329): fix pipelineruns name in repository details page [#11338](https://github.com/openshift/console/pull/11338) * [Dark theme]: fix Observe dashboard, Topology list page and web terminal tab view [#11231](https://github.com/openshift/console/pull/11231) * [CONSOLE-3124](https://issues.redhat.com/browse/CONSOLE-3124): migrate Cluster Dashboard test to Cypress [#11332](https://github.com/openshift/console/pull/11332) * [Dark Theme]: fixes quick starts, user preferences project selector, quick search, and help text color [#11331](https://github.com/openshift/console/pull/11331) * Automation of create-from-add-options feature file | pipelines-plugin [#11291](https://github.com/openshift/console/pull/11291) * add visual effects on dragging the pinned resource [#11266](https://github.com/openshift/console/pull/11266) * [Bug 2065513](https://bugzilla.redhat.com/show_bug.cgi?id=2065513): Fix ResourceQuota dashboard card and ACRQ donut label [#11340](https://github.com/openshift/console/pull/11340) * [Bug 2040180](https://bugzilla.redhat.com/show_bug.cgi?id=2040180): handle dashboards single column case [#11327](https://github.com/openshift/console/pull/11327) * [Bug 2071691](https://bugzilla.redhat.com/show_bug.cgi?id=2071691): Update and scope our breadcrumb padding rule so it doesn't effect a pure implementation [#11321](https://github.com/openshift/console/pull/11321) * [Bug 2075149](https://bugzilla.redhat.com/show_bug.cgi?id=2075149): Fix translation of flag-enabled extensions [#11305](https://github.com/openshift/console/pull/11305) * add data test ids for MultiTabTerminal [#11330](https://github.com/openshift/console/pull/11330) * Automation of Pipeline-Workspaces | Pipeline-Plugin [#11322](https://github.com/openshift/console/pull/11322) * [Bug 2074447](https://bugzilla.redhat.com/show_bug.cgi?id=2074447): cluster-dashboard: exclude iowait and steal from CPU Utilisation [#10450](https://github.com/openshift/console/pull/10450) * [Bug 2071761](https://bugzilla.redhat.com/show_bug.cgi?id=2071761): - Translation Keys Are Not Namespaced [#11284](https://github.com/openshift/console/pull/11284) * [Bug 2072805](https://bugzilla.redhat.com/show_bug.cgi?id=2072805): Monitoring dashboards: Add support for __range* variables [#11289](https://github.com/openshift/console/pull/11289) * [Bug 2070160](https://bugzilla.redhat.com/show_bug.cgi?id=2070160): Remove custom classes pre and code element and apply using a custom class. [#11263](https://github.com/openshift/console/pull/11263) * Add form for PAC repository [#11264](https://github.com/openshift/console/pull/11264) * Update OWNERS for promql/ directory [#11317](https://github.com/openshift/console/pull/11317) * [Bug 2074475](https://bugzilla.redhat.com/show_bug.cgi?id=2074475): fix kubevirt gating [#11314](https://github.com/openshift/console/pull/11314) * Automation of Pipelines-as-code(PAC) [#11298](https://github.com/openshift/console/pull/11298) * fix(modal): removed drop shadow, updated colors [#11148](https://github.com/openshift/console/pull/11148) * [CONSOLE-2976](https://issues.redhat.com/browse/CONSOLE-2976): add update mode to Update cluster [#11053](https://github.com/openshift/console/pull/11053) * chore(i18n): update translations - Completed-7034-OCP 4.11 UI Localization- Sprint 216 [#11280](https://github.com/openshift/console/pull/11280) * Update pf packages to pf-2022-4 [#11261](https://github.com/openshift/console/pull/11261) * [Bug 2071719](https://bugzilla.redhat.com/show_bug.cgi?id=2071719): remove `.pf-c-button.pf-m-link` override [#11306](https://github.com/openshift/console/pull/11306) * Automation of event-tab-in-pipeline-run | pipelines-plugin [#11230](https://github.com/openshift/console/pull/11230) * Automation of pipeline-task-runs-display | pipelines-plugin [#11294](https://github.com/openshift/console/pull/11294) * [Bug 2015375](https://bugzilla.redhat.com/show_bug.cgi?id=2015375): Add IBM Flashsystem volume types [#10285](https://github.com/openshift/console/pull/10285) * [Bug 2038244](https://bugzilla.redhat.com/show_bug.cgi?id=2038244): Use hostname from provided git url when making git api calls [#10827](https://github.com/openshift/console/pull/10827) * [Bug 2056841](https://bugzilla.redhat.com/show_bug.cgi?id=2056841): Improve handling of /api/check-updates request failure in PollConsoleUpdates [#11304](https://github.com/openshift/console/pull/11304) * [Bug 2068594](https://bugzilla.redhat.com/show_bug.cgi?id=2068594): disable Details Card test since it was flaking at a high… [#11296](https://github.com/openshift/console/pull/11296) * [Bug 2058051](https://bugzilla.redhat.com/show_bug.cgi?id=2058051): Expose YAMLEditor to Core SDK [#11244](https://github.com/openshift/console/pull/11244) * [Bug 2072570](https://bugzilla.redhat.com/show_bug.cgi?id=2072570): test: use stable test titles [#11257](https://github.com/openshift/console/pull/11257) * [Bug 2072807](https://bugzilla.redhat.com/show_bug.cgi?id=2072807): Monitoring dashboards: Handle tables without `panel.styles` attribute [#11293](https://github.com/openshift/console/pull/11293) * [Bug 2071599](https://bugzilla.redhat.com/show_bug.cgi?id=2071599): fix bug where RoleBindings are not displaying in ClusterRole > RoleBindings [#11285](https://github.com/openshift/console/pull/11285) * [Bug 2069760](https://bugzilla.redhat.com/show_bug.cgi?id=2069760): Added divider to developer console navigation [#11283](https://github.com/openshift/console/pull/11283) * [Bug 2069914](https://bugzilla.redhat.com/show_bug.cgi?id=2069914): fix casing of 'Red Hat Applications' so all links appear… [#11268](https://github.com/openshift/console/pull/11268) * chore(OWNERS): remove rebeccaalpert [#11188](https://github.com/openshift/console/pull/11188) * [Bug 2058282](https://bugzilla.redhat.com/show_bug.cgi?id=2058282): Fix WebSockets not reconnecting during upgrade [#11288](https://github.com/openshift/console/pull/11288) * [Bug 2057183](https://bugzilla.redhat.com/show_bug.cgi?id=2057183): Only show operator detail page "Valid Subscriptions" item when it's not empty [#11287](https://github.com/openshift/console/pull/11287) * create form for adding project helm chart repo [#11227](https://github.com/openshift/console/pull/11227) * [Bug 2065840](https://bugzilla.redhat.com/show_bug.cgi?id=2065840): Fix CronJob resource version to batch/v1 [#11216](https://github.com/openshift/console/pull/11216) * [Bug 2069577](https://bugzilla.redhat.com/show_bug.cgi?id=2069577): Update dynamic-demo-plugin readme [#11286](https://github.com/openshift/console/pull/11286) * [Bug 2070020](https://bugzilla.redhat.com/show_bug.cgi?id=2070020): create correct apiversion: group/version for creating custom resource key for Resource Dropdown [#11260](https://github.com/openshift/console/pull/11260) * [Bug 2046435](https://bugzilla.redhat.com/show_bug.cgi?id=2046435): improve import error message [#10983](https://github.com/openshift/console/pull/10983) * [Bug 2071700](https://bugzilla.redhat.com/show_bug.cgi?id=2071700): Use 'reportingComponent' field for v1 Events [#11277](https://github.com/openshift/console/pull/11277) * [Bug 2063753](https://bugzilla.redhat.com/show_bug.cgi?id=2063753): Translate Extensions On Each Language Change [#11278](https://github.com/openshift/console/pull/11278) * [Bug 2069632](https://bugzilla.redhat.com/show_bug.cgi?id=2069632): fix 'linkURL' for 'previous' logs [#11275](https://github.com/openshift/console/pull/11275) * [Bug 2069685](https://bugzilla.redhat.com/show_bug.cgi?id=2069685): Fix UI crash when pinned resource model does not exist [#11249](https://github.com/openshift/console/pull/11249) * [Bug 2068594](https://bugzilla.redhat.com/show_bug.cgi?id=2068594): follow on fix to remove timeout value [#11248](https://github.com/openshift/console/pull/11248) * Automation of Pipeline Metrics [#11220](https://github.com/openshift/console/pull/11220) * Add synced form-yaml editor for routes [#11156](https://github.com/openshift/console/pull/11156) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): updated --pf-global--BorderColor—100 to --pf-global--BorderColor--100 [#11234](https://github.com/openshift/console/pull/11234) * add Event Sink option to broker and channel connector and context menu [#11259](https://github.com/openshift/console/pull/11259) * Add and Edit configmap form [#11150](https://github.com/openshift/console/pull/11150) * Add multitabbed terminal for cloudshell [#11191](https://github.com/openshift/console/pull/11191) * fix the quick search style to support dark theme [#11254](https://github.com/openshift/console/pull/11254) * Automation of Builder Page Pipelines [#11258](https://github.com/openshift/console/pull/11258) * Automation of Pipeline Actions [#11238](https://github.com/openshift/console/pull/11238) * update and add image vulnerability toggle group in IMV details page [#11222](https://github.com/openshift/console/pull/11222) * [Bug 1997142](https://bugzilla.redhat.com/show_bug.cgi?id=1997142): improve performance of OperatorHub text input filter [#11252](https://github.com/openshift/console/pull/11252) * [Bug 2067298](https://bugzilla.redhat.com/show_bug.cgi?id=2067298): Remove `modelsLoaded` conditional rendering from ModelStatusBox [#11245](https://github.com/openshift/console/pull/11245) * updates text description for Event sinks [#11214](https://github.com/openshift/console/pull/11214) * [Bug 2069577](https://bugzilla.redhat.com/show_bug.cgi?id=2069577): Update ConsolePlugin manifest [#11247](https://github.com/openshift/console/pull/11247) * [Bug 2068538](https://bugzilla.redhat.com/show_bug.cgi?id=2068538): Visual formatting adjustments to popover. [#11236](https://github.com/openshift/console/pull/11236) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Update pages to use PageHeading where possible [#11183](https://github.com/openshift/console/pull/11183) * [Bug 2069181](https://bugzilla.redhat.com/show_bug.cgi?id=2069181): Fix disabling community tasks in pipeline builder issue [#11241](https://github.com/openshift/console/pull/11241) * [Bug 2068908](https://bugzilla.redhat.com/show_bug.cgi?id=2068908): Update getting started blog link [#11239](https://github.com/openshift/console/pull/11239) * support visualisation of internal deployment in topology view and sidepanel for event sink [#11223](https://github.com/openshift/console/pull/11223) * [Bug 2069198](https://bugzilla.redhat.com/show_bug.cgi?id=2069198): Use pre-installed pipeline task in e2e test [#11240](https://github.com/openshift/console/pull/11240) * [Bug 2068490](https://bugzilla.redhat.com/show_bug.cgi?id=2068490): change 'kubectl' to 'oc' to fix descriptors test [#11233](https://github.com/openshift/console/pull/11233) * [Bug 2068594](https://bugzilla.redhat.com/show_bug.cgi?id=2068594): fix Cluster Dashboard Details Card test [#11235](https://github.com/openshift/console/pull/11235) * Updates and fixes for pipelines-plugin cypress tests [#11172](https://github.com/openshift/console/pull/11172) * [Bug 2067180](https://bugzilla.redhat.com/show_bug.cgi?id=2067180): Completed-7034-OCP 4.11 UI Localization- Sprint 215 [#11169](https://github.com/openshift/console/pull/11169) * [Bug 2068115](https://bugzilla.redhat.com/show_bug.cgi?id=2068115): Fixed the rendering of a Tab Extension when there is a version present [#11228](https://github.com/openshift/console/pull/11228) * [Bug 2067776](https://bugzilla.redhat.com/show_bug.cgi?id=2067776): Update prometheus/client_golang to 1.11.1 [#11232](https://github.com/openshift/console/pull/11232) * [Bug 2064744](https://bugzilla.redhat.com/show_bug.cgi?id=2064744): Remove duplicate app label on debug terminal [#11229](https://github.com/openshift/console/pull/11229) * [Bug 2017001](https://bugzilla.redhat.com/show_bug.cgi?id=2017001): Bug fix context menu position on topology [#11152](https://github.com/openshift/console/pull/11152) * Console3080 - Add Control Plane Topology flag to console UI [#11170](https://github.com/openshift/console/pull/11170) * Update pf packages to pf 2022-3 [#11158](https://github.com/openshift/console/pull/11158) * Allow user to re-arrange the resources added to nav [#11142](https://github.com/openshift/console/pull/11142) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Additional skeleton updates for dark theme [#11177](https://github.com/openshift/console/pull/11177) * Add theme switcher in user preferences page [#11115](https://github.com/openshift/console/pull/11115) * [Bug 2064607](https://bugzilla.redhat.com/show_bug.cgi?id=2064607): avoid pre-fetching tekton hub task versions in pipeline builder [#11195](https://github.com/openshift/console/pull/11195) * [Bug 2063708](https://bugzilla.redhat.com/show_bug.cgi?id=2063708): correct JA translation for 'Expand' [#11221](https://github.com/openshift/console/pull/11221) * feat(theme): added theme file [#11151](https://github.com/openshift/console/pull/11151) * [Bug 2066418](https://bugzilla.redhat.com/show_bug.cgi?id=2066418): correct ChannelDocLink url [#11217](https://github.com/openshift/console/pull/11217) * [Bug 2041769](https://bugzilla.redhat.com/show_bug.cgi?id=2041769): Pipeline metrics: use prometheus-tenancy API to get data [#10870](https://github.com/openshift/console/pull/10870) * [Bug 2057183](https://bugzilla.redhat.com/show_bug.cgi?id=2057183): Add validSubscription filter to OperatorHub [#11219](https://github.com/openshift/console/pull/11219) * [Bug 2064553](https://bugzilla.redhat.com/show_bug.cgi?id=2064553): Remove reference to deprecated `v2v-vmware` ConfigMap [#11207](https://github.com/openshift/console/pull/11207) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Changes to support the events and project select bar when in dark theme mode [#11136](https://github.com/openshift/console/pull/11136) * [Bug 2058051](https://bugzilla.redhat.com/show_bug.cgi?id=2058051): Exposing service list table [#11178](https://github.com/openshift/console/pull/11178) * [Bug 2066754](https://bugzilla.redhat.com/show_bug.cgi?id=2066754): Don't delete core Cypress reports [#11215](https://github.com/openshift/console/pull/11215) * [Bug 2063756](https://bugzilla.redhat.com/show_bug.cgi?id=2063756): - User Preferences - Applications - Insecure traffic : i18n misses [#11213](https://github.com/openshift/console/pull/11213) * [Bug 2019564](https://bugzilla.redhat.com/show_bug.cgi?id=2019564): attach owner reference to resources created on creating a user to allow garbage collection [#11130](https://github.com/openshift/console/pull/11130) * [Bug 2063699](https://bugzilla.redhat.com/show_bug.cgi?id=2063699): - Builds - Builds - Logs: i18n misses. [#11211](https://github.com/openshift/console/pull/11211) * [Bug 2061755](https://bugzilla.redhat.com/show_bug.cgi?id=2061755): remove Breadcrumbs from Create Operand pages [#11174](https://github.com/openshift/console/pull/11174) * [Bug 2063957](https://bugzilla.redhat.com/show_bug.cgi?id=2063957): fix bug where impersonating message was not translated [#11212](https://github.com/openshift/console/pull/11212) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix(background-color): updated to --pf-global--BackgroundColor—100 [#11167](https://github.com/openshift/console/pull/11167) * [Bug 2060583](https://bugzilla.redhat.com/show_bug.cgi?id=2060583): Remove internal-kubevirt Console plugin SDK package [#11091](https://github.com/openshift/console/pull/11091) * [Bug 2060924](https://bugzilla.redhat.com/show_bug.cgi?id=2060924): Fix alert from showing an object [#11185](https://github.com/openshift/console/pull/11185) * [Bug 2065338](https://bugzilla.redhat.com/show_bug.cgi?id=2065338): Fix VolumeSnapshot creation sort [#11194](https://github.com/openshift/console/pull/11194) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Updates hint block element [#11155](https://github.com/openshift/console/pull/11155) * Fix namespace and backing store table to show pre selected values. [#11180](https://github.com/openshift/console/pull/11180) * [Bug 2064596](https://bugzilla.redhat.com/show_bug.cgi?id=2064596): [Tekton Hub] show read more link in the task quick search details pane [#11187](https://github.com/openshift/console/pull/11187) * [Bug 2063897](https://bugzilla.redhat.com/show_bug.cgi?id=2063897): Change the tekton hub api endpoint to use v1 api [#11179](https://github.com/openshift/console/pull/11179) * [Bug 2050637](https://bugzilla.redhat.com/show_bug.cgi?id=2050637): add a hardcoded blog link as fallback in guided tours [#11120](https://github.com/openshift/console/pull/11120) * Sort catalog filters and other enhancements [#11161](https://github.com/openshift/console/pull/11161) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): [Dark theme] Changes to horizontal-nav to enable dark theme support [#11139](https://github.com/openshift/console/pull/11139) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix(background-color): updates to --pf-global--BackgroundColor—200 [#11168](https://github.com/openshift/console/pull/11168) * Replace GitTypes with the GitProvider type [#11165](https://github.com/openshift/console/pull/11165) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix(borders): convert #ccc, #ddd, $pf-color-black-300, $color-row-filter-border to var(--pf-global--BorderColor--100) [#11154](https://github.com/openshift/console/pull/11154) * end to end flow for event sink [#11138](https://github.com/openshift/console/pull/11138) * [CONSOLE-3081](https://issues.redhat.com/browse/CONSOLE-3081): Integrate dark theme - fix borders updates #eee, #ededed, $table-border-color to `var(--pf-global--BorderColor--300)` [#11157](https://github.com/openshift/console/pull/11157) * ODC-6495 Remove layout2 topology [#11145](https://github.com/openshift/console/pull/11145) * [Bug 2062524](https://bugzilla.redhat.com/show_bug.cgi?id=2062524): fixes uri case for event sink [#11171](https://github.com/openshift/console/pull/11171) * fix(skeleton): updated sass var [#11147](https://github.com/openshift/console/pull/11147) * chore(vscode config): disabling the organizeImports functionality of … [#11037](https://github.com/openshift/console/pull/11037) * [Dark theme]Fix namespaced pages, add page and catalogs page [#11144](https://github.com/openshift/console/pull/11144) * [Bug 2013144](https://bugzilla.redhat.com/show_bug.cgi?id=2013144): catalog category filters can be opened via ctrl+click now [#11029](https://github.com/openshift/console/pull/11029) * [Bug 2009345](https://bugzilla.redhat.com/show_bug.cgi?id=2009345): Fix potential issues with namespaces that contains just numbers (crashes on 4.7) [#11126](https://github.com/openshift/console/pull/11126) * [Bug 2061333](https://bugzilla.redhat.com/show_bug.cgi?id=2061333): Add optional chaining to avoid npe [#11146](https://github.com/openshift/console/pull/11146) * [Bug 2061301](https://bugzilla.redhat.com/show_bug.cgi?id=2061301): Add tooltips why add and delete buttons in knative traffic splitting modal are disabled [#11106](https://github.com/openshift/console/pull/11106) * [Bug 2060894](https://bugzilla.redhat.com/show_bug.cgi?id=2060894): Preceding/Trailing Whitespaces In Form Elements on the add page [#11075](https://github.com/openshift/console/pull/11075) * [Bug 2059674](https://bugzilla.redhat.com/show_bug.cgi?id=2059674): Adjusts the Dynamic Demo Plugin and the SDK to meet on the usecases [#11116](https://github.com/openshift/console/pull/11116) * Fix CSS for edit bucket class modal [#11046](https://github.com/openshift/console/pull/11046) * [Bug 2055702](https://bugzilla.redhat.com/show_bug.cgi?id=2055702): enable Serverless e2e tests [#11124](https://github.com/openshift/console/pull/11124) * [Bug 2046156](https://bugzilla.redhat.com/show_bug.cgi?id=2046156): fix showing error in netpol affected pods [#10934](https://github.com/openshift/console/pull/10934) * [Bug 2056496](https://bugzilla.redhat.com/show_bug.cgi?id=2056496): update upload jar flow for no builder image [#11099](https://github.com/openshift/console/pull/11099) * service binding discoverability labels in dev catalog [#11035](https://github.com/openshift/console/pull/11035) * [CONSOLE-3087](https://issues.redhat.com/browse/CONSOLE-3087): Fix ActionContext type warning in components/actions/types.ts [#11128](https://github.com/openshift/console/pull/11128) * Update PF Packages to 2022-2: Dark theme stylesheet [#11083](https://github.com/openshift/console/pull/11083) * [Bug 2058623](https://bugzilla.redhat.com/show_bug.cgi?id=2058623): updates versions for kafka and kafkaTopic [#11111](https://github.com/openshift/console/pull/11111) * [Bug 2002602](https://bugzilla.redhat.com/show_bug.cgi?id=2002602): remove returning of err if json fails to parse [#11017](https://github.com/openshift/console/pull/11017) * [Bug 2054630](https://bugzilla.redhat.com/show_bug.cgi?id=2054630): Fix history stack handling when opening the silence alerts form [#11107](https://github.com/openshift/console/pull/11107) * [Bug 2042838](https://bugzilla.redhat.com/show_bug.cgi?id=2042838): the status of container is not consistent on Container details and pod details page [#11031](https://github.com/openshift/console/pull/11031) * [Bug 2052986](https://bugzilla.redhat.com/show_bug.cgi?id=2052986): fix console crashing in the edit deployment form [#11052](https://github.com/openshift/console/pull/11052) * [Bug 2059654](https://bugzilla.redhat.com/show_bug.cgi?id=2059654): update ConsolePlugin proxy settings [#10893](https://github.com/openshift/console/pull/10893) * [Bug 2044207](https://bugzilla.redhat.com/show_bug.cgi?id=2044207): Clear text on switching auth method [#10995](https://github.com/openshift/console/pull/10995) * [Bug 2052956](https://bugzilla.redhat.com/show_bug.cgi?id=2052956): fix duplicate edit app action on installing virtualization operator [#11076](https://github.com/openshift/console/pull/11076) * Remove Mode from Topology view [#11088](https://github.com/openshift/console/pull/11088) * [Bug 2058424](https://bugzilla.redhat.com/show_bug.cgi?id=2058424): Don't pass Authorization header when not needed [#11102](https://github.com/openshift/console/pull/11102) * [Bug 2054950](https://bugzilla.redhat.com/show_bug.cgi?id=2054950): Display correct disk size in Edit disk modal [#11105](https://github.com/openshift/console/pull/11105) * [Bug 2046598](https://bugzilla.redhat.com/show_bug.cgi?id=2046598): Display disk size in correct units [#11104](https://github.com/openshift/console/pull/11104) * [Bug 2057054](https://bugzilla.redhat.com/show_bug.cgi?id=2057054): Improves K8s Utils Return Type [#11103](https://github.com/openshift/console/pull/11103) * Clean up of CronJobSource code references [#11086](https://github.com/openshift/console/pull/11086) * Trim trailing whitespace in test names. [#11100](https://github.com/openshift/console/pull/11100) * [Bug 2054285](https://bugzilla.redhat.com/show_bug.cgi?id=2054285): Show standalone resources as sink and not the one's owned by other resource [#11085](https://github.com/openshift/console/pull/11085) * [Bug 2042710](https://bugzilla.redhat.com/show_bug.cgi?id=2042710): Custom imagepullsecret reference information not found when creating pod using console in openshift [#11058](https://github.com/openshift/console/pull/11058) * [Bug 2050005](https://bugzilla.redhat.com/show_bug.cgi?id=2050005): Fix webpack module federation runtime chunk ID clashes [#11062](https://github.com/openshift/console/pull/11062) * [Bug 2046531](https://bugzilla.redhat.com/show_bug.cgi?id=2046531): Remove schema subdir from dynamic plugin sdk [#11089](https://github.com/openshift/console/pull/11089) * [Bug 2048059](https://bugzilla.redhat.com/show_bug.cgi?id=2048059): fix proxy so requests to account management service work [#11090](https://github.com/openshift/console/pull/11090) * [Bug 2014161](https://bugzilla.redhat.com/show_bug.cgi?id=2014161): Fix pipeline run logs autoscrolling issue [#11056](https://github.com/openshift/console/pull/11056) * Migrate ListPageBody to the SDK [#10938](https://github.com/openshift/console/pull/10938) * [Bug 2052953](https://bugzilla.redhat.com/show_bug.cgi?id=2052953): clear dashboard variables for dev perspective on unmount [#11066](https://github.com/openshift/console/pull/11066) * [Bug 2053501](https://bugzilla.redhat.com/show_bug.cgi?id=2053501): Decode secrets before authorizing repository [#11071](https://github.com/openshift/console/pull/11071) * Monitoring: Redirect Prometheus UI format URLs to query browser page [#10963](https://github.com/openshift/console/pull/10963) * [Bug 2055980](https://bugzilla.redhat.com/show_bug.cgi?id=2055980): Expose more components/hooks/etc. needed by KubeVirt dynamic plugin [#11074](https://github.com/openshift/console/pull/11074) * [Bug 2055814](https://bugzilla.redhat.com/show_bug.cgi?id=2055814): Support custom extensions in console-extensions.json files [#11051](https://github.com/openshift/console/pull/11051) * [Bug 2053304](https://bugzilla.redhat.com/show_bug.cgi?id=2053304): Fix debug route and add testcases [#11040](https://github.com/openshift/console/pull/11040) * [Bug 2046598](https://bugzilla.redhat.com/show_bug.cgi?id=2046598): Display disk size in GiB in VM customize wizard [#11024](https://github.com/openshift/console/pull/11024) * [Bug 2037625](https://bugzilla.redhat.com/show_bug.cgi?id=2037625): Always show ResourceQuota charts [#11022](https://github.com/openshift/console/pull/11022) * [Bug 2037542](https://bugzilla.redhat.com/show_bug.cgi?id=2037542): Fix sticky footer in pipeline builder's form yaml switcher [#10783](https://github.com/openshift/console/pull/10783) * [Bug 2046496](https://bugzilla.redhat.com/show_bug.cgi?id=2046496): Update the list Toolbar to use ToolbarToggleGroup when less than 769px width [#11063](https://github.com/openshift/console/pull/11063) * [Bug 1934304](https://bugzilla.redhat.com/show_bug.cgi?id=1934304): Sum total memory of unnamed container only [#11067](https://github.com/openshift/console/pull/11067) * [Bug 2051578](https://bugzilla.redhat.com/show_bug.cgi?id=2051578): fix ClusterOperator Status, Version col sorts [#11061](https://github.com/openshift/console/pull/11061) * Remove unnecessary polyfills [#10016](https://github.com/openshift/console/pull/10016) * [Bug 2053168](https://bugzilla.redhat.com/show_bug.cgi?id=2053168): Fix dynamic plugin SDK typescript IDE errors [#11034](https://github.com/openshift/console/pull/11034) * [Bug 2048442](https://bugzilla.redhat.com/show_bug.cgi?id=2048442): Disabling Vault SA based auth for storage class encryption [#10998](https://github.com/openshift/console/pull/10998) * [Bug 2050902](https://bugzilla.redhat.com/show_bug.cgi?id=2050902): Fix to add labels to webhook secrets created during import [#11032](https://github.com/openshift/console/pull/11032) * [Bug 2051775](https://bugzilla.redhat.com/show_bug.cgi?id=2051775): Allow custom template namespace [#11054](https://github.com/openshift/console/pull/11054) * [Bug 2028821](https://bugzilla.redhat.com/show_bug.cgi?id=2028821): Misspelled label in ODF management UI [#11047](https://github.com/openshift/console/pull/11047) * Remove Console plugin SDK host-app package [#11043](https://github.com/openshift/console/pull/11043) * [Bug 2050698](https://bugzilla.redhat.com/show_bug.cgi?id=2050698): fix bug where Cluster Settings shows 0 of N, 0% progres… [#11038](https://github.com/openshift/console/pull/11038) * Migrate checkAccess & useAccessReview to the SDK [#10847](https://github.com/openshift/console/pull/10847) * [Bug 2039647](https://bugzilla.redhat.com/show_bug.cgi?id=2039647): Use namespaced links for dev perspective nav items [#11007](https://github.com/openshift/console/pull/11007) * [Bug 2051657](https://bugzilla.redhat.com/show_bug.cgi?id=2051657): removed `Tech preview` badge [#11016](https://github.com/openshift/console/pull/11016) * [Bug 2051642](https://bugzilla.redhat.com/show_bug.cgi?id=2051642): Remove tech preview badge for web terminal [#11012](https://github.com/openshift/console/pull/11012) * [Bug 2053685](https://bugzilla.redhat.com/show_bug.cgi?id=2053685): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11001](https://github.com/openshift/console/pull/11001) * [Bug 2054238](https://bugzilla.redhat.com/show_bug.cgi?id=2054238): Update E2E to use 3scale operator [#11044](https://github.com/openshift/console/pull/11044) * [Bug 2052595](https://bugzilla.redhat.com/show_bug.cgi?id=2052595): Revert "Add Dev Preview tag for IBM FlashSystem" [#11033](https://github.com/openshift/console/pull/11033) * [Bug 2051558](https://bugzilla.redhat.com/show_bug.cgi?id=2051558): omit rolebindings with no subjects [#11013](https://github.com/openshift/console/pull/11013) * [Bug 2049483](https://bugzilla.redhat.com/show_bug.cgi?id=2049483): Revert "fix annotations on updating workload" [#11002](https://github.com/openshift/console/pull/11002) * [Bug 2052674](https://bugzilla.redhat.com/show_bug.cgi?id=2052674): Remove a couple of extra spaces [#11021](https://github.com/openshift/console/pull/11021) * Migrate impersonateStateToProps [#10953](https://github.com/openshift/console/pull/10953) * [Bug 2052671](https://bugzilla.redhat.com/show_bug.cgi?id=2052671): chore(i18n): update translations [#11020](https://github.com/openshift/console/pull/11020) * [Bug 2052095](https://bugzilla.redhat.com/show_bug.cgi?id=2052095): Fix auth redirect loop caused by duplicate state-token cookie [#11014](https://github.com/openshift/console/pull/11014) * [Bug 2046498](https://bugzilla.redhat.com/show_bug.cgi?id=2046498): fix casing of project and application [#10999](https://github.com/openshift/console/pull/10999) * `valut` typo fixed [#11009](https://github.com/openshift/console/pull/11009) * [Bug 2046618](https://bugzilla.redhat.com/show_bug.cgi?id=2046618): Add started-by annotation to pipelines created with "Start last run" [#11005](https://github.com/openshift/console/pull/11005) * [Bug 2037628](https://bugzilla.redhat.com/show_bug.cgi?id=2037628): added test-id to kms flows [#11003](https://github.com/openshift/console/pull/11003) * createProject for non-admin users [#11000](https://github.com/openshift/console/pull/11000) * Expose useFlag as part of the Dynamic SDK [#10872](https://github.com/openshift/console/pull/10872) * [Bug 2050011](https://bugzilla.redhat.com/show_bug.cgi?id=2050011): Query Browser: Fix widths of timespan text input [#10996](https://github.com/openshift/console/pull/10996) * Monitoring: Comment to explain how Alertmanager links are handled [#10997](https://github.com/openshift/console/pull/10997) * default apiDiscovery in SDK [#10903](https://github.com/openshift/console/pull/10903) * [Bug 2046596](https://bugzilla.redhat.com/show_bug.cgi?id=2046596): Customized wizard PVC name [#10977](https://github.com/openshift/console/pull/10977) * [Bug 2014640](https://bugzilla.redhat.com/show_bug.cgi?id=2014640): Cannot change storage class of boot disk when creating VM [#10992](https://github.com/openshift/console/pull/10992) * [Bug 2041774](https://bugzilla.redhat.com/show_bug.cgi?id=2041774): defaulting to s2i if git type can't be figured out [#10966](https://github.com/openshift/console/pull/10966) * [Bug 2044421](https://bugzilla.redhat.com/show_bug.cgi?id=2044421): Allow topology list to select application group [#10988](https://github.com/openshift/console/pull/10988) * Migrate Status component to the SDK [#10805](https://github.com/openshift/console/pull/10805) * docs/helm: update documentation according reviews [#10889](https://github.com/openshift/console/pull/10889) * [Bug 2030530](https://bugzilla.redhat.com/show_bug.cgi?id=2030530): Remove quotation marks surrounding VM pwd [#10930](https://github.com/openshift/console/pull/10930) * [Bug 2007141](https://bugzilla.redhat.com/show_bug.cgi?id=2007141): pipeline-plugin scripts are updated [#10329](https://github.com/openshift/console/pull/10329) * [Bug 2048221](https://bugzilla.redhat.com/show_bug.cgi?id=2048221): Capitalization of titles first-word-only rule [#10980](https://github.com/openshift/console/pull/10980) * [Bug 2046601](https://bugzilla.redhat.com/show_bug.cgi?id=2046601): Dont assume its a pvc [#10949](https://github.com/openshift/console/pull/10949) * [Bug 2014420](https://bugzilla.redhat.com/show_bug.cgi?id=2014420): Remove depracated v2v resources from plugin config [#10954](https://github.com/openshift/console/pull/10954) * [Bug 2047277](https://bugzilla.redhat.com/show_bug.cgi?id=2047277): Add storage status to status card [#10951](https://github.com/openshift/console/pull/10951) * [Bug 2046591](https://bugzilla.redhat.com/show_bug.cgi?id=2046591): Added support for customized wizard - new templates [#10945](https://github.com/openshift/console/pull/10945) * [Bug 2006067](https://bugzilla.redhat.com/show_bug.cgi?id=2006067): Handle blank usernames in error message [#10782](https://github.com/openshift/console/pull/10782) * [Bug 2047310](https://bugzilla.redhat.com/show_bug.cgi?id=2047310): Add empty state to running VMs card [#10957](https://github.com/openshift/console/pull/10957) * [Bug 2046594](https://bugzilla.redhat.com/show_bug.cgi?id=2046594): "Requested template could not be found" while creating VM from user-created template [#10952](https://github.com/openshift/console/pull/10952) * [Bug 2033492](https://bugzilla.redhat.com/show_bug.cgi?id=2033492): Highlight moves from Template to VirtualMachines while open template wizard [#10941](https://github.com/openshift/console/pull/10941) * [CONSOLE-2999](https://issues.redhat.com/browse/CONSOLE-2999): Switch the OCP branding logo and title to Red Hat OpenShift logo and title [#10940](https://github.com/openshift/console/pull/10940) * [Bug 2044803](https://bugzilla.redhat.com/show_bug.cgi?id=2044803): buttons styles aligned [#10935](https://github.com/openshift/console/pull/10935) * [Bug 2048276](https://bugzilla.redhat.com/show_bug.cgi?id=2048276): test-cypress.sh script: Add curly brackets around nightly var [#10976](https://github.com/openshift/console/pull/10976) * [Bug 2022253](https://bugzilla.redhat.com/show_bug.cgi?id=2022253): fix web terminal resize layout issue [#10948](https://github.com/openshift/console/pull/10948) * Uncomment and edit the automation code for ODC-6361 [#10967](https://github.com/openshift/console/pull/10967) * [Bug 2039462](https://bugzilla.redhat.com/show_bug.cgi?id=2039462): fix width of dropdowns in the userpreferences applications tab [#10960](https://github.com/openshift/console/pull/10960) * [Bug 2038115](https://bugzilla.redhat.com/show_bug.cgi?id=2038115): Make namespace bar full width and sticky in console [#10856](https://github.com/openshift/console/pull/10856) * [Bug 2047320](https://bugzilla.redhat.com/show_bug.cgi?id=2047320): Fix that new route annotations doesn't work on Knative Services [#10955](https://github.com/openshift/console/pull/10955) * [Bug 2039277](https://bugzilla.redhat.com/show_bug.cgi?id=2039277): fix topology list view [#10883](https://github.com/openshift/console/pull/10883) * [ODC-5671](https://issues.redhat.com/browse/ODC-5671): Setup for nightly CI cypress runs [#10927](https://github.com/openshift/console/pull/10927) * Automation for Observe page features [#10566](https://github.com/openshift/console/pull/10566) * Add support for doc generation for Core API [#10431](https://github.com/openshift/console/pull/10431) * [Full changelog](https://github.com/openshift/console/compare/3b007da0238043f18542363ef7d5947ea2990075...3b4ac6ad45e18145670b16658e4c89a3555ec277) ### [console-operator](https://github.com/openshift/console-operator/tree/32e6d25c4ac9fe71bb64fa7b30073a72547f4974) * [OCPBUGS-33386](https://issues.redhat.com/browse/OCPBUGS-33386): Reset console operator's conditions [#898](https://github.com/openshift/console-operator/pull/898) * [OCPBUGS-20988](https://issues.redhat.com/browse/OCPBUGS-20988): Disable HTTP/2 for webhook [#876](https://github.com/openshift/console-operator/pull/876) * [OCPBUGS-30990](https://issues.redhat.com/browse/OCPBUGS-30990): [release-4.12] Bump library-go and golang.org/x/net [#867](https://github.com/openshift/console-operator/pull/867) * [OCPBUGS-18951](https://issues.redhat.com/browse/OCPBUGS-18951): Add haproxy timeout annotation to console routes [#792](https://github.com/openshift/console-operator/pull/792) * [OCPBUGS-18309](https://issues.redhat.com/browse/OCPBUGS-18309): Add missing watch permission for helm-chartrepos-viewers [#789](https://github.com/openshift/console-operator/pull/789) * [OCPBUGS-15834](https://issues.redhat.com/browse/OCPBUGS-15834): Dockerfile: Shift ConsolePlugin CRD after the operator Deployment [#791](https://github.com/openshift/console-operator/pull/791) * [OCPBUGS-18563](https://issues.redhat.com/browse/OCPBUGS-18563): OLM Pages work when copied CSVs are disabled [#780](https://github.com/openshift/console-operator/pull/780) * [OCPBUGS-13647](https://issues.redhat.com/browse/OCPBUGS-13647): Proper cleanup of route sync conditions [#762](https://github.com/openshift/console-operator/pull/762) * [OCPBUGS-7999](https://issues.redhat.com/browse/OCPBUGS-7999): Distinguish between route conditions and remove the old ones [#735](https://github.com/openshift/console-operator/pull/735) * [OCPBUGS-6921](https://issues.redhat.com/browse/OCPBUGS-6921): Recover ConsoleNotificationSync after being degraded [#728](https://github.com/openshift/console-operator/pull/728) * [CONSOLE-3252](https://issues.redhat.com/browse/CONSOLE-3252): Create a ConsoleNotification when cluster is performing an upgrade [#687](https://github.com/openshift/console-operator/pull/687) * [OCPBUGS-2219](https://issues.redhat.com/browse/OCPBUGS-2219): Empty string should be valid for i18n loadType [#689](https://github.com/openshift/console-operator/pull/689) * [CONSOLE-3337](https://issues.redhat.com/browse/CONSOLE-3337): Dynamic plugin proxy reference issue [#691](https://github.com/openshift/console-operator/pull/691) * [OCPBUGS-1708](https://issues.redhat.com/browse/OCPBUGS-1708): Set i18n LoadType to Lazy when v1alpha1 i18n annotation is set to false [#684](https://github.com/openshift/console-operator/pull/684) * update to release.openshift.io/feature-set to match OCP 4.12 [#688](https://github.com/openshift/console-operator/pull/688) * [CONSOLE-3125](https://issues.redhat.com/browse/CONSOLE-3125): Add cluster filtering by product and ocp version [#677](https://github.com/openshift/console-operator/pull/677) * [ODC-6778](https://issues.redhat.com/browse/ODC-6778): Bump openshift/api to get devcatalog disable types cuztomization changes [#676](https://github.com/openshift/console-operator/pull/676) * [CONSOLE-3069](https://issues.redhat.com/browse/CONSOLE-3069): Handle new v1 ConsolePlugin api in the operator [#683](https://github.com/openshift/console-operator/pull/683) * [OCPBUGS-785](https://issues.redhat.com/browse/OCPBUGS-785): Bump documentationBaseURL to 4.12 [#682](https://github.com/openshift/console-operator/pull/682) * [ODC-6783](https://issues.redhat.com/browse/ODC-6783): Export perspectives to console-config ConfigMap [#678](https://github.com/openshift/console-operator/pull/678) * CONSOLE 3096: Promote ConsolePlugin CRD to v1 [#670](https://github.com/openshift/console-operator/pull/670) * [Bug 2100860](https://bugzilla.redhat.com/show_bug.cgi?id=2100860): Retrieve user-defined Alertmanager services from shared configmap [#658](https://github.com/openshift/console-operator/pull/658) * [CONSOLE-3242](https://issues.redhat.com/browse/CONSOLE-3242): Heterogeneous architecture clusters [#669](https://github.com/openshift/console-operator/pull/669) * [CONSOLE-3220](https://issues.redhat.com/browse/CONSOLE-3220): Add console capability to all manifests [#665](https://github.com/openshift/console-operator/pull/665) * [OCPBUGS-457](https://issues.redhat.com/browse/OCPBUGS-457): TestEditUnmanagedPodDisruptionBudget flakes [#675](https://github.com/openshift/console-operator/pull/675) * [OCPBUGS-498](https://issues.redhat.com/browse/OCPBUGS-498): Update with latest openshift/api changes [#674](https://github.com/openshift/console-operator/pull/674) * [Bug 2117646](https://bugzilla.redhat.com/show_bug.cgi?id=2117646): Changing field on any of routes in the openshift-console namespace wont trigger sync loop [#672](https://github.com/openshift/console-operator/pull/672) * [Bug 2117142](https://bugzilla.redhat.com/show_bug.cgi?id=2117142): update annotations for project-helm-chartrepository-editor [#673](https://github.com/openshift/console-operator/pull/673) * [Bug 2117142](https://bugzilla.redhat.com/show_bug.cgi?id=2117142): Update permission for projecthelmchartrepositories with an aggregator role [#667](https://github.com/openshift/console-operator/pull/667) * [Bug 2089950](https://bugzilla.redhat.com/show_bug.cgi?id=2089950): Deleting downloads deployment should not fail if already deleted [#663](https://github.com/openshift/console-operator/pull/663) * [Bug 2093852](https://bugzilla.redhat.com/show_bug.cgi?id=2093852): InfrastructureTopology must be driving console affinity rule creation [#657](https://github.com/openshift/console-operator/pull/657) * [Bug 2021297](https://bugzilla.redhat.com/show_bug.cgi?id=2021297): Pass RELEASE_VERSION envar into the console pod [#659](https://github.com/openshift/console-operator/pull/659) * [CONSOLE-3063](https://issues.redhat.com/browse/CONSOLE-3063): PDB for console pods avoid too many replicas down [#655](https://github.com/openshift/console-operator/pull/655) * [CONSOLE-3162](https://issues.redhat.com/browse/CONSOLE-3162): Implement check for the new i18n annotation for dynamic plugins [#654](https://github.com/openshift/console-operator/pull/654) * [ODC-6670](https://issues.redhat.com/browse/ODC-6670): Sync consoleConfig telemetry annotations to console-config.yaml [#653](https://github.com/openshift/console-operator/pull/653) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): AUTH-133: manifests: comply to restricted pod security [#652](https://github.com/openshift/console-operator/pull/652) * [Bug 2067155](https://bugzilla.redhat.com/show_bug.cgi?id=2067155): Modify the operator display name to match it with the name displayed in operatorhub [#650](https://github.com/openshift/console-operator/pull/650) * [Bug 2075478](https://bugzilla.redhat.com/show_bug.cgi?id=2075478): Bump docs version to 4.11 [#648](https://github.com/openshift/console-operator/pull/648) * [MGMT-9797](https://issues.redhat.com/browse/MGMT-9797): Bump `openshift/api` dependency to `04e1813ebb11` [#644](https://github.com/openshift/console-operator/pull/644) * [Bug 2046497](https://bugzilla.redhat.com/show_bug.cgi?id=2046497): Metrics e2e should not fail on first failed polling attempt [#645](https://github.com/openshift/console-operator/pull/645) * [Bug 2057696](https://bugzilla.redhat.com/show_bug.cgi?id=2057696): Console operator should not block installation/upgrade process when set to Removed state [#642](https://github.com/openshift/console-operator/pull/642) * CONSOLE 3070: Console-operator should pass infrastructure config's ControlPlaneToplogy to the console-config.yaml [#639](https://github.com/openshift/console-operator/pull/639) * [Bug 2046497](https://bugzilla.redhat.com/show_bug.cgi?id=2046497): Re-enable TestMetricsEndpoint e2e test case [#640](https://github.com/openshift/console-operator/pull/640) * [Bug 2048541](https://bugzilla.redhat.com/show_bug.cgi?id=2048541): ODF quickstart permissions check [#634](https://github.com/openshift/console-operator/pull/634) * Dockerfile.rhel7: add new Helm CRD, ProjectHelmChartRepository [#635](https://github.com/openshift/console-operator/pull/635) * [Full changelog](https://github.com/openshift/console-operator/compare/7ec7b2f3f790ad49bf694e0dbf2bb0bcb16a80be...32e6d25c4ac9fe71bb64fa7b30073a72547f4974) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/1b33971993ca1013be9f24690c44560d2c58c70a) * [OCPBUGS-20593](https://issues.redhat.com/browse/OCPBUGS-20593): build(deps): bump golang.org/x/net from 0.10.0 to 0.17.0 [backport 4.12] [#131](https://github.com/openshift/containernetworking-plugins/pull/131) * [OCPBUGS-5289](https://issues.redhat.com/browse/OCPBUGS-5289): Adds vlan path substitution fix to address tuning regression for runtime config [#71](https://github.com/openshift/containernetworking-plugins/pull/71) * [OCPBUGS-4223](https://issues.redhat.com/browse/OCPBUGS-4223): Fix path substitution to enable setting sysctls on vlan interfaces [#68](https://github.com/openshift/containernetworking-plugins/pull/68) * Updating ose-containernetworking-plugins images to be consistent with ART [#66](https://github.com/openshift/containernetworking-plugins/pull/66) * Updating ose-containernetworking-plugins images to be consistent with ART [#65](https://github.com/openshift/containernetworking-plugins/pull/65) * Updating ose-containernetworking-plugins images to be consistent with ART [#62](https://github.com/openshift/containernetworking-plugins/pull/62) * Check for duplicated sysctl keys [#61](https://github.com/openshift/containernetworking-plugins/pull/61) * Sync with upstream for win-overlay V2 support [#59](https://github.com/openshift/containernetworking-plugins/pull/59) * Updating ose-containernetworking-plugins images to be consistent with ART [#55](https://github.com/openshift/containernetworking-plugins/pull/55) * WIP: Tuning cni: adding interface level sysctls and sysctl whitelist [#56](https://github.com/openshift/containernetworking-plugins/pull/56) * Sync downstream with upstream v1.1.1 [#57](https://github.com/openshift/containernetworking-plugins/pull/57) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/3123ef8b0c773a55d0d5071c050919449d29fa90...1b33971993ca1013be9f24690c44560d2c58c70a) ### [coredns](https://github.com/openshift/coredns/tree/cc1194ea004f6b4bcb132fd1c6cebee68666d38f) * [OCPBUGS-21023](https://issues.redhat.com/browse/OCPBUGS-21023): UPSTREAM: <carry>: openshift: Address CVE-2023-39325 [#103](https://github.com/openshift/coredns/pull/103) * [OCPBUGS-20144](https://issues.redhat.com/browse/OCPBUGS-20144): UPSTREAM: <carry>: openshift: Fix OCPBUGS-20144 [#98](https://github.com/openshift/coredns/pull/98) * [OCPBUGS-240](https://issues.redhat.com/browse/OCPBUGS-240): Remove bufsize hardcoding to 2048 on cache upstream refreshes. [#78](https://github.com/openshift/coredns/pull/78) * Updating coredns images to be consistent with ART [#77](https://github.com/openshift/coredns/pull/77) * [OCPBUGS-1731](https://issues.redhat.com/browse/OCPBUGS-1731): Merge 1.10.0 [#76](https://github.com/openshift/coredns/pull/76) * Updating coredns images to be consistent with ART [#75](https://github.com/openshift/coredns/pull/75) * [Bug 2090827](https://bugzilla.redhat.com/show_bug.cgi?id=2090827): Merge 1.9.2 [#73](https://github.com/openshift/coredns/pull/73) * Added gcs278 to OWNERS [#71](https://github.com/openshift/coredns/pull/71) * [Full changelog](https://github.com/openshift/coredns/compare/6c0325145a4d108f110f2bcb23aa69ba352e70d1...cc1194ea004f6b4bcb132fd1c6cebee68666d38f) ### [csi-driver-manila, openstack-cinder-csi-driver, openstack-cloud-controller-manager](https://github.com/openshift/cloud-provider-openstack/tree/2f1d9f8ac6af4364d8118c874b0071d9e9f3ee65) * update tags to v1.25.4 [#2118](https://github.com/openshift/cloud-provider-openstack/pull/2118) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/cb2949cac4331ee7f902be5eee9caae0258e2bd9...2f1d9f8ac6af4364d8118c874b0071d9e9f3ee65) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/8dab53208f3a161af85eedd6835c2701d337d5f9) * [OCPBUGS-30295](https://issues.redhat.com/browse/OCPBUGS-30295): Fix selector for manila-csi-driver-controller-metrics service [#228](https://github.com/openshift/csi-driver-manila-operator/pull/228) * [OCPBUGS-18475](https://issues.redhat.com/browse/OCPBUGS-18475): Don't cache OpenStack client [#202](https://github.com/openshift/csi-driver-manila-operator/pull/202) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#199](https://github.com/openshift/csi-driver-manila-operator/pull/199) * [OCPBUGS-10556](https://issues.redhat.com/browse/OCPBUGS-10556): Bump go.mongodb.org/mongo-driver to v1.5.1 [#176](https://github.com/openshift/csi-driver-manila-operator/pull/176) * [OCPBUGS-6599](https://issues.redhat.com/browse/OCPBUGS-6599): Address CVE-2022-41717 [#166](https://github.com/openshift/csi-driver-manila-operator/pull/166) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#159](https://github.com/openshift/csi-driver-manila-operator/pull/159) * Updating csi-driver-manila-operator images to be consistent with ART [#157](https://github.com/openshift/csi-driver-manila-operator/pull/157) * Ensure files follow go 1.19 formatting [#158](https://github.com/openshift/csi-driver-manila-operator/pull/158) * [Bug 2057637](https://bugzilla.redhat.com/show_bug.cgi?id=2057637): Include secrets to VolumeSnapshotClass [#156](https://github.com/openshift/csi-driver-manila-operator/pull/156) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#155](https://github.com/openshift/csi-driver-manila-operator/pull/155) * Bug OCPBUGS-944: Fix RBAC race during initial deployment [#154](https://github.com/openshift/csi-driver-manila-operator/pull/154) * Expose CSI_FSGROUP_POLICY as an operator option [#142](https://github.com/openshift/csi-driver-manila-operator/pull/142) * Updating csi-driver-manila-operator images to be consistent with ART [#151](https://github.com/openshift/csi-driver-manila-operator/pull/151) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy (cont) [#149](https://github.com/openshift/csi-driver-manila-operator/pull/149) * [Bug 2083153](https://bugzilla.redhat.com/show_bug.cgi?id=2083153): Fetch application credentials [#148](https://github.com/openshift/csi-driver-manila-operator/pull/148) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#145](https://github.com/openshift/csi-driver-manila-operator/pull/145) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#144](https://github.com/openshift/csi-driver-manila-operator/pull/144) * Updating csi-driver-manila-operator images to be consistent with ART [#143](https://github.com/openshift/csi-driver-manila-operator/pull/143) * [Bug 2074274](https://bugzilla.redhat.com/show_bug.cgi?id=2074274): Address CVE-2022-27191 [#141](https://github.com/openshift/csi-driver-manila-operator/pull/141) * [Bug 2067749](https://bugzilla.redhat.com/show_bug.cgi?id=2067749): Address CVE-2022-21698 [#140](https://github.com/openshift/csi-driver-manila-operator/pull/140) * ci: enable more tests [#138](https://github.com/openshift/csi-driver-manila-operator/pull/138) * Updating csi-driver-manila-operator images to be consistent with ART [#137](https://github.com/openshift/csi-driver-manila-operator/pull/137) * shiftstack: Update OWNERS [#135](https://github.com/openshift/csi-driver-manila-operator/pull/135) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/3b06768c823d54df549f488355ed348dff82a171...8dab53208f3a161af85eedd6835c2701d337d5f9) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/d90992573acb3df6c7fbb6dbe1b215125d26fc34) * [OCPBUGS-6590](https://issues.redhat.com/browse/OCPBUGS-6590): Address CVE-2022-41717 [#105](https://github.com/openshift/csi-driver-nfs/pull/105) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#96](https://github.com/openshift/csi-driver-nfs/pull/96) * Updating csi-driver-nfs images to be consistent with ART [#95](https://github.com/openshift/csi-driver-nfs/pull/95) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#94](https://github.com/openshift/csi-driver-nfs/pull/94) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#93](https://github.com/openshift/csi-driver-nfs/pull/93) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#92](https://github.com/openshift/csi-driver-nfs/pull/92) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#91](https://github.com/openshift/csi-driver-nfs/pull/91) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#90](https://github.com/openshift/csi-driver-nfs/pull/90) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#89](https://github.com/openshift/csi-driver-nfs/pull/89) * Updating csi-driver-nfs images to be consistent with ART [#88](https://github.com/openshift/csi-driver-nfs/pull/88) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#87](https://github.com/openshift/csi-driver-nfs/pull/87) * Revert "<carry>: Umount volumes with force" [#86](https://github.com/openshift/csi-driver-nfs/pull/86) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#85](https://github.com/openshift/csi-driver-nfs/pull/85) * Merge remote-tracking branch 'upstream/master' into upstream-merge [#84](https://github.com/openshift/csi-driver-nfs/pull/84) * Updating csi-driver-nfs images to be consistent with ART [#83](https://github.com/openshift/csi-driver-nfs/pull/83) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#82](https://github.com/openshift/csi-driver-nfs/pull/82) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#81](https://github.com/openshift/csi-driver-nfs/pull/81) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#80](https://github.com/openshift/csi-driver-nfs/pull/80) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#79](https://github.com/openshift/csi-driver-nfs/pull/79) * [Bug 2067750](https://bugzilla.redhat.com/show_bug.cgi?id=2067750): Merge github.com/kubernetes-csi/csi-driver-nfs into master [#78](https://github.com/openshift/csi-driver-nfs/pull/78) * Merge upstream into openshift/csi-driver-nfs [#77](https://github.com/openshift/csi-driver-nfs/pull/77) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#76](https://github.com/openshift/csi-driver-nfs/pull/76) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#75](https://github.com/openshift/csi-driver-nfs/pull/75) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#74](https://github.com/openshift/csi-driver-nfs/pull/74) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#73](https://github.com/openshift/csi-driver-nfs/pull/73) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#70](https://github.com/openshift/csi-driver-nfs/pull/70) * Updating csi-driver-nfs images to be consistent with ART [#72](https://github.com/openshift/csi-driver-nfs/pull/72) * shiftstack: Update OWNERS [#71](https://github.com/openshift/csi-driver-nfs/pull/71) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/e6b56647e363c623e4a1538f59d2cc60475c44ad...d90992573acb3df6c7fbb6dbe1b215125d26fc34) ### [csi-driver-shared-resource](https://github.com/openshift/csi-driver-shared-resource/tree/d054948fbc78ef04c7a55ac2a4b3ac0ed5648585) * [OCPBUGS-28953](https://issues.redhat.com/browse/OCPBUGS-28953): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#169](https://github.com/openshift/csi-driver-shared-resource/pull/169) * [OCPBUGS-23118](https://issues.redhat.com/browse/OCPBUGS-23118): Should reference configmaps instead of secrets [#154](https://github.com/openshift/csi-driver-shared-resource/pull/154) * [OCPBUGS-20703](https://issues.redhat.com/browse/OCPBUGS-20703): bump golang.org/x/net to v0.17.0 [#148](https://github.com/openshift/csi-driver-shared-resource/pull/148) * Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART [#112](https://github.com/openshift/csi-driver-shared-resource/pull/112) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#113](https://github.com/openshift/csi-driver-shared-resource/pull/113) * csi topology is only PV relatead, do not need [#111](https://github.com/openshift/csi-driver-shared-resource/pull/111) * Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART [#108](https://github.com/openshift/csi-driver-shared-resource/pull/108) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#107](https://github.com/openshift/csi-driver-shared-resource/pull/107) * Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART [#106](https://github.com/openshift/csi-driver-shared-resource/pull/106) * [BUILD-478](https://issues.redhat.com/browse/BUILD-478): Validate resource admission smoke test [#105](https://github.com/openshift/csi-driver-shared-resource/pull/105) * [BUILD-392](https://issues.redhat.com/browse/BUILD-392): Shared Resources: Validate Resource Admission [#103](https://github.com/openshift/csi-driver-shared-resource/pull/103) * [BUILD-504](https://issues.redhat.com/browse/BUILD-504): Rebase k8s 1.24 [#104](https://github.com/openshift/csi-driver-shared-resource/pull/104) * change entrypoint for the webhook [#102](https://github.com/openshift/csi-driver-shared-resource/pull/102) * Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART [#99](https://github.com/openshift/csi-driver-shared-resource/pull/99) * [BUILD-469](https://issues.redhat.com/browse/BUILD-469): change cmd webhook package to cmd main package [#101](https://github.com/openshift/csi-driver-shared-resource/pull/101) * Add user coreydaley to approvers list [#100](https://github.com/openshift/csi-driver-shared-resource/pull/100) * more atomic writer related doc updates [#98](https://github.com/openshift/csi-driver-shared-resource/pull/98) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#97](https://github.com/openshift/csi-driver-shared-resource/pull/97) * add Tekton example, update/correction to README and existing example docs [#96](https://github.com/openshift/csi-driver-shared-resource/pull/96) * Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART [#95](https://github.com/openshift/csi-driver-shared-resource/pull/95) * [BUILD-469](https://issues.redhat.com/browse/BUILD-469): add webhook main entrypoint and dockerfile [#92](https://github.com/openshift/csi-driver-shared-resource/pull/92) * update test pod to alleviate PodSecurity warnings [#94](https://github.com/openshift/csi-driver-shared-resource/pull/94) * use k8s atomic writer for storage of secrets / configmaps [#93](https://github.com/openshift/csi-driver-shared-resource/pull/93) * [Bug 2067829](https://bugzilla.redhat.com/show_bug.cgi?id=2067829): bump(*): prometheus/client_golang [#91](https://github.com/openshift/csi-driver-shared-resource/pull/91) * remove use of 'hostpath' in names [#90](https://github.com/openshift/csi-driver-shared-resource/pull/90) * Data removed when permission removed [#89](https://github.com/openshift/csi-driver-shared-resource/pull/89) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#88](https://github.com/openshift/csi-driver-shared-resource/pull/88) * Simplify the must-gather dockerfile [#87](https://github.com/openshift/csi-driver-shared-resource/pull/87) * [Full changelog](https://github.com/openshift/csi-driver-shared-resource/compare/d06ff18b2ff23e5165638d6c3df42a2e1715b28f...d054948fbc78ef04c7a55ac2a4b3ac0ed5648585) ### [csi-driver-shared-resource-operator](https://github.com/openshift/csi-driver-shared-resource-operator/tree/cc297702e6d2d4fb5a2b57a734c26d0d0a7bec1c) * [OCPBUGS-28959](https://issues.redhat.com/browse/OCPBUGS-28959): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#105](https://github.com/openshift/csi-driver-shared-resource-operator/pull/105) * [OCPBUGS-20787](https://issues.redhat.com/browse/OCPBUGS-20787): bump golang.org/x/net to v0.17.0 [#88](https://github.com/openshift/csi-driver-shared-resource-operator/pull/88) * [OCPBUGS-3359](https://issues.redhat.com/browse/OCPBUGS-3359): Revert "[build-407] Mount shared secret and configmap list config path into shared driver node" [#62](https://github.com/openshift/csi-driver-shared-resource-operator/pull/62) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#58](https://github.com/openshift/csi-driver-shared-resource-operator/pull/58) * Mount shared secret and configmap list config path into shared driver node [#56](https://github.com/openshift/csi-driver-shared-resource-operator/pull/56) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#57](https://github.com/openshift/csi-driver-shared-resource-operator/pull/57) * : Authorize shared secrets and configmaps with openshift- prefix [#53](https://github.com/openshift/csi-driver-shared-resource-operator/pull/53) * [Bug 2081557](https://bugzilla.redhat.com/show_bug.cgi?id=2081557): Run at least one replica of Webhook [#51](https://github.com/openshift/csi-driver-shared-resource-operator/pull/51) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#52](https://github.com/openshift/csi-driver-shared-resource-operator/pull/52) * [BUILD-392](https://issues.redhat.com/browse/BUILD-392): webhook validation resource admission [#49](https://github.com/openshift/csi-driver-shared-resource-operator/pull/49) * [BUILD-505](https://issues.redhat.com/browse/BUILD-505): Rebase k8s 1.24 [#50](https://github.com/openshift/csi-driver-shared-resource-operator/pull/50) * [BUILD-405](https://issues.redhat.com/browse/BUILD-405): Install shared resource csi driver webhook alongside the s… [#45](https://github.com/openshift/csi-driver-shared-resource-operator/pull/45) * [Bug 2088533](https://bugzilla.redhat.com/show_bug.cgi?id=2088533): update openshift/api to master to pick up status subresource [#48](https://github.com/openshift/csi-driver-shared-resource-operator/pull/48) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#46](https://github.com/openshift/csi-driver-shared-resource-operator/pull/46) * Add user coreydaley to approvers list [#47](https://github.com/openshift/csi-driver-shared-resource-operator/pull/47) * [Bug 2067830](https://bugzilla.redhat.com/show_bug.cgi?id=2067830): bump(*): prometheus/client_golang [#43](https://github.com/openshift/csi-driver-shared-resource-operator/pull/43) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#40](https://github.com/openshift/csi-driver-shared-resource-operator/pull/40) * update registrar kubelet socket location to mirror what other CSI drivers do [#42](https://github.com/openshift/csi-driver-shared-resource-operator/pull/42) * Start using embed module for static assets [#41](https://github.com/openshift/csi-driver-shared-resource-operator/pull/41) * [Full changelog](https://github.com/openshift/csi-driver-shared-resource-operator/compare/662615b3427b57d8aafff6b982a7e4b34692eadc...cc297702e6d2d4fb5a2b57a734c26d0d0a7bec1c) ### [csi-external-attacher](https://github.com/openshift/csi-external-attacher/tree/fac7b8fd905b4c68beadc2c968e6f981385463e8) * [OCPBUGS-21139](https://issues.redhat.com/browse/OCPBUGS-21139): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#62](https://github.com/openshift/csi-external-attacher/pull/62) * UPSTREAM: 379: Fix gofmt for go 1.19 [#47](https://github.com/openshift/csi-external-attacher/pull/47) * UPSTREAM: <carry>: Remove .github files [#43](https://github.com/openshift/csi-external-attacher/pull/43) * Updating csi-attacher images to be consistent with ART [#42](https://github.com/openshift/csi-external-attacher/pull/42) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v4.0.0 for OCP 4.12 [#41](https://github.com/openshift/csi-external-attacher/pull/41) * Updating csi-attacher images to be consistent with ART [#40](https://github.com/openshift/csi-external-attacher/pull/40) * [Bug 2097284](https://bugzilla.redhat.com/show_bug.cgi?id=2097284): Rebase to v3.5.0 for OCP 4.11 [#39](https://github.com/openshift/csi-external-attacher/pull/39) * Updating csi-attacher images to be consistent with ART [#38](https://github.com/openshift/csi-external-attacher/pull/38) * [Full changelog](https://github.com/openshift/csi-external-attacher/compare/27e71f2bb577200dc3cd87851989f0c950521eb8...fac7b8fd905b4c68beadc2c968e6f981385463e8) ### [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner/tree/3aa7c527732e288c71119ea3e78fac739dfbd438) * [OCPBUGS-20743](https://issues.redhat.com/browse/OCPBUGS-20743): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#74](https://github.com/openshift/csi-external-provisioner/pull/74) * Updating csi-provisioner images to be consistent with ART [#58](https://github.com/openshift/csi-external-provisioner/pull/58) * UPSTREAM: <carry>: Remove .github files [#57](https://github.com/openshift/csi-external-provisioner/pull/57) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v3.3.0 for OCP 4.12 [#55](https://github.com/openshift/csi-external-provisioner/pull/55) * Updating csi-provisioner images to be consistent with ART [#54](https://github.com/openshift/csi-external-provisioner/pull/54) * [Bug 2101343](https://bugzilla.redhat.com/show_bug.cgi?id=2101343): UPSTREAM: 2101343: fix: changed the csistoragecapacity check namespace [#52](https://github.com/openshift/csi-external-provisioner/pull/52) * [Bug 2097282](https://bugzilla.redhat.com/show_bug.cgi?id=2097282): Rebase to v3.2.0 for OCP 4.11 [#51](https://github.com/openshift/csi-external-provisioner/pull/51) * Updating csi-provisioner images to be consistent with ART [#50](https://github.com/openshift/csi-external-provisioner/pull/50) * [Full changelog](https://github.com/openshift/csi-external-provisioner/compare/31de1e19119e6b63cd9d52622f5b9d9df7e4c384...3aa7c527732e288c71119ea3e78fac739dfbd438) ### [csi-external-resizer](https://github.com/openshift/csi-external-resizer/tree/5b066ba420bd74ec5327978d2731da989d57d4f2) * [OCPBUGS-20885](https://issues.redhat.com/browse/OCPBUGS-20885): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#149](https://github.com/openshift/csi-external-resizer/pull/149) * Updating ose-csi-external-resizer images to be consistent with ART [#134](https://github.com/openshift/csi-external-resizer/pull/134) * UPSTREAM: <carry>: Remove .github files [#133](https://github.com/openshift/csi-external-resizer/pull/133) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v1.6.0 for OCP 4.12 [#132](https://github.com/openshift/csi-external-resizer/pull/132) * Updating ose-csi-external-resizer images to be consistent with ART [#131](https://github.com/openshift/csi-external-resizer/pull/131) * [Bug 2097503](https://bugzilla.redhat.com/show_bug.cgi?id=2097503): Rebase external-resizer against v1.5 [#130](https://github.com/openshift/csi-external-resizer/pull/130) * Updating ose-csi-external-resizer images to be consistent with ART [#129](https://github.com/openshift/csi-external-resizer/pull/129) * Updating ose-csi-external-resizer images to be consistent with ART [#128](https://github.com/openshift/csi-external-resizer/pull/128) * [Full changelog](https://github.com/openshift/csi-external-resizer/compare/e5934091f8cc4a6ca58f3719ba4487a46b4252df...5b066ba420bd74ec5327978d2731da989d57d4f2) ### [csi-external-snapshotter, csi-snapshot-controller, csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter/tree/6fdb648f67640dbb8b5eed10a1eab9830e6f8cdf) * [OCPBUGS-29244](https://issues.redhat.com/browse/OCPBUGS-29244): cherry-pick:release-4.12: OCPBUGS-29244 Update VolumeSnapshot and VolumeSnapshotContent using JSON patch [#140](https://github.com/openshift/csi-external-snapshotter/pull/140) * [OCPBUGS-20991](https://issues.redhat.com/browse/OCPBUGS-20991): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#111](https://github.com/openshift/csi-external-snapshotter/pull/111) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#84](https://github.com/openshift/csi-external-snapshotter/pull/84) * Updating ose-csi-external-snapshotter images to be consistent with ART [#83](https://github.com/openshift/csi-external-snapshotter/pull/83) * Updating ose-csi-snapshot-controller images to be consistent with ART [#82](https://github.com/openshift/csi-external-snapshotter/pull/82) * UPSTREAM: <carry>: Remove .github files [#81](https://github.com/openshift/csi-external-snapshotter/pull/81) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#80](https://github.com/openshift/csi-external-snapshotter/pull/80) * Updating ose-csi-external-snapshotter images to be consistent with ART [#79](https://github.com/openshift/csi-external-snapshotter/pull/79) * Updating ose-csi-snapshot-controller images to be consistent with ART [#78](https://github.com/openshift/csi-external-snapshotter/pull/78) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v6.1.0 for OCP 4.12 [#77](https://github.com/openshift/csi-external-snapshotter/pull/77) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#76](https://github.com/openshift/csi-external-snapshotter/pull/76) * Updating ose-csi-external-snapshotter images to be consistent with ART [#75](https://github.com/openshift/csi-external-snapshotter/pull/75) * Updating ose-csi-snapshot-controller images to be consistent with ART [#74](https://github.com/openshift/csi-external-snapshotter/pull/74) * [Bug 2097283](https://bugzilla.redhat.com/show_bug.cgi?id=2097283): Rebase to v6.0.1 for OCP 4.11 [#73](https://github.com/openshift/csi-external-snapshotter/pull/73) * Updating ose-csi-snapshot-controller images to be consistent with ART [#70](https://github.com/openshift/csi-external-snapshotter/pull/70) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#72](https://github.com/openshift/csi-external-snapshotter/pull/72) * Updating ose-csi-external-snapshotter images to be consistent with ART [#71](https://github.com/openshift/csi-external-snapshotter/pull/71) * Updating ose-csi-external-snapshotter images to be consistent with ART [#68](https://github.com/openshift/csi-external-snapshotter/pull/68) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#69](https://github.com/openshift/csi-external-snapshotter/pull/69) * Updating ose-csi-snapshot-controller images to be consistent with ART [#67](https://github.com/openshift/csi-external-snapshotter/pull/67) * [Full changelog](https://github.com/openshift/csi-external-snapshotter/compare/fe4a0a2f48fcc9069910773b32188597d899bdde...6fdb648f67640dbb8b5eed10a1eab9830e6f8cdf) ### [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe/tree/e6545e71597df1da4635c266eb8f499fc376d970) * [OCPBUGS-20629](https://issues.redhat.com/browse/OCPBUGS-20629): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#52](https://github.com/openshift/csi-livenessprobe/pull/52) * [OCPBUGS-13821](https://issues.redhat.com/browse/OCPBUGS-13821): Bump gRPC from 1.38.0 to 1.49.0 [#43](https://github.com/openshift/csi-livenessprobe/pull/43) * Updating csi-livenessprobe images to be consistent with ART [#35](https://github.com/openshift/csi-livenessprobe/pull/35) * UPSTREAM: <carry>: Remove .github files [#34](https://github.com/openshift/csi-livenessprobe/pull/34) * Updating csi-livenessprobe images to be consistent with ART [#33](https://github.com/openshift/csi-livenessprobe/pull/33) * Updating csi-livenessprobe images to be consistent with ART [#32](https://github.com/openshift/csi-livenessprobe/pull/32) * Updating csi-livenessprobe images to be consistent with ART [#31](https://github.com/openshift/csi-livenessprobe/pull/31) * [Full changelog](https://github.com/openshift/csi-livenessprobe/compare/270d66c38fec64cb131b0c0e860960fc67aa71f5...e6545e71597df1da4635c266eb8f499fc376d970) ### [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar/tree/c316b8963a0b0ff8d45f2b32c56de972d55bfd37) * [OCPBUGS-20674](https://issues.redhat.com/browse/OCPBUGS-20674): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#54](https://github.com/openshift/csi-node-driver-registrar/pull/54) * Updating csi-node-driver-registrar images to be consistent with ART [#39](https://github.com/openshift/csi-node-driver-registrar/pull/39) * UPSTREAM: <carry>: Remove .github files [#38](https://github.com/openshift/csi-node-driver-registrar/pull/38) * Updating csi-node-driver-registrar images to be consistent with ART [#37](https://github.com/openshift/csi-node-driver-registrar/pull/37) * [Bug 2097286](https://bugzilla.redhat.com/show_bug.cgi?id=2097286): Rebase to v2.5.1 for OCP 4.12 [#36](https://github.com/openshift/csi-node-driver-registrar/pull/36) * Updating csi-node-driver-registrar images to be consistent with ART [#35](https://github.com/openshift/csi-node-driver-registrar/pull/35) * Updating csi-node-driver-registrar images to be consistent with ART [#34](https://github.com/openshift/csi-node-driver-registrar/pull/34) * [Full changelog](https://github.com/openshift/csi-node-driver-registrar/compare/bb0bd823c2212c6657e5835eb0015aab4e93839d...c316b8963a0b0ff8d45f2b32c56de972d55bfd37) ### [docker-builder](https://github.com/openshift/builder/tree/e3554521a3e6270238c4ad4e765187bc77d99e2d) * [OCPBUGS-43296](https://issues.redhat.com/browse/OCPBUGS-43296): Bump buildah to 1.26.9 [#449](https://github.com/openshift/builder/pull/449) * [OCPBUGS-43187](https://issues.redhat.com/browse/OCPBUGS-43187): runc library bump to 1.1.12 [#440](https://github.com/openshift/builder/pull/440) * [OCPBUGS-49345](https://issues.redhat.com/browse/OCPBUGS-49345): skipping some unit tests to avoid failures as they are duplicate [#437](https://github.com/openshift/builder/pull/437) * [OCPBUGS-48738](https://issues.redhat.com/browse/OCPBUGS-48738): Add new team members to the OWNERS file [#433](https://github.com/openshift/builder/pull/433) * Replace 'coreydaley' with 'sayan-biswas' [#408](https://github.com/openshift/builder/pull/408) * [BUILD-854](https://issues.redhat.com/browse/BUILD-854): Add adambkaplan as approver [#406](https://github.com/openshift/builder/pull/406) * [OCPBUGS-23037](https://issues.redhat.com/browse/OCPBUGS-23037): Add -p flag to cp command to preserve timestamps [#372](https://github.com/openshift/builder/pull/372) * [OCPBUGS-20695](https://issues.redhat.com/browse/OCPBUGS-20695): [release-4.12]Bump golang.org/x/net [#364](https://github.com/openshift/builder/pull/364) * [OCPBUGS-17228](https://issues.redhat.com/browse/OCPBUGS-17228): bump github.com/containers/buildah to v1.26.6 [#325](https://github.com/openshift/builder/pull/325) * [OCPBUGS-15643](https://issues.redhat.com/browse/OCPBUGS-15643): Add the git-lfs package [#353](https://github.com/openshift/builder/pull/353) * [OCPBUGS-6753](https://issues.redhat.com/browse/OCPBUGS-6753): manage-dockerfile: use the original form of HEALTHCHECK [#324](https://github.com/openshift/builder/pull/324) * Updating openshift-enterprise-builder images to be consistent with ART [#315](https://github.com/openshift/builder/pull/315) * [OCPBUGS-4779](https://issues.redhat.com/browse/OCPBUGS-4779): [release-4.12] Update to go1.19 [#321](https://github.com/openshift/builder/pull/321) * [BUILD-530](https://issues.redhat.com/browse/BUILD-530): Rebase to k8s.io 1.25 [#316](https://github.com/openshift/builder/pull/316) * bump(github.com/containers/buildah) to v1.26.4 [#306](https://github.com/openshift/builder/pull/306) * bump github.com/containers/buildah to v1.26.2 [#304](https://github.com/openshift/builder/pull/304) * Attempt to create /dev/fuse at startup [#305](https://github.com/openshift/builder/pull/305) * [Bug 2099991](https://bugzilla.redhat.com/show_bug.cgi?id=2099991): Add support for BUILDAH_QUIET environment variable [#303](https://github.com/openshift/builder/pull/303) * Set _CONTAINERS_USERNS_CONFIGURED if we create a user namespace [#301](https://github.com/openshift/builder/pull/301) * Updating openshift-enterprise-builder images to be consistent with ART [#302](https://github.com/openshift/builder/pull/302) * [BUILD-416](https://issues.redhat.com/browse/BUILD-416): Rebase k8s 1.24 [#299](https://github.com/openshift/builder/pull/299) * Update OWNERS file [#298](https://github.com/openshift/builder/pull/298) * Updating openshift-enterprise-builder images to be consistent with ART [#297](https://github.com/openshift/builder/pull/297) * [Bug 2075145](https://bugzilla.redhat.com/show_bug.cgi?id=2075145): Revert using --quiet with log levels below 2 [#296](https://github.com/openshift/builder/pull/296) * [Bug 2067775](https://bugzilla.redhat.com/show_bug.cgi?id=2067775): Update prometheus client_golang from 1.11.0 => 1.11.1 [#294](https://github.com/openshift/builder/pull/294) * main(): accept --loglevel as an alias for -v [#283](https://github.com/openshift/builder/pull/283) * [Bug 2071364](https://bugzilla.redhat.com/show_bug.cgi?id=2071364): invalid syntax when parsing empty BUILD_LOGLEVEL [#293](https://github.com/openshift/builder/pull/293) * [Bug 1996883](https://bugzilla.redhat.com/show_bug.cgi?id=1996883): Add --quiet option to buildah if log level is less than 2 [#288](https://github.com/openshift/builder/pull/288) * [BUILD-433](https://issues.redhat.com/browse/BUILD-433): use the right mappings when we don't need to set any [#291](https://github.com/openshift/builder/pull/291) * Updating openshift-enterprise-builder images to be consistent with ART [#284](https://github.com/openshift/builder/pull/284) * [Bug 2026063](https://bugzilla.redhat.com/show_bug.cgi?id=2026063): Update buildah to v1.24.2 [#282](https://github.com/openshift/builder/pull/282) * Add openshift goimports [#287](https://github.com/openshift/builder/pull/287) * [Full changelog](https://github.com/openshift/builder/compare/beffada427156a46d0e38e62d17843f9ee2ee5fd...e3554521a3e6270238c4ad4e765187bc77d99e2d) ### [docker-registry](https://github.com/openshift/image-registry/tree/9e75355ca282cf5abac5595585a4b089e6a95e6f) * [OCPBUGS-19306](https://issues.redhat.com/browse/OCPBUGS-19306): bump docker-distribution [#382](https://github.com/openshift/image-registry/pull/382) * [OCPBUGS-10496](https://issues.redhat.com/browse/OCPBUGS-10496): bump docker-distribution [#365](https://github.com/openshift/image-registry/pull/365) * [OCPBUGS-8491](https://issues.redhat.com/browse/OCPBUGS-8491): bump aws-sdk-go [#362](https://github.com/openshift/image-registry/pull/362) * [OCPBUGS-4678](https://issues.redhat.com/browse/OCPBUGS-4678): Bump aws-sdk-go to v1.44.145 [#357](https://github.com/openshift/image-registry/pull/357) * [IR-299](https://issues.redhat.com/browse/IR-299): bump go to 1.19 and k8s to 1.25.2 [#351](https://github.com/openshift/image-registry/pull/351) * [OCPBUGS-1717](https://issues.redhat.com/browse/OCPBUGS-1717): bump aws-go-sdk, adding support for me-central-1 [#348](https://github.com/openshift/image-registry/pull/348) * [OCPBUGS-102](https://issues.redhat.com/browse/OCPBUGS-102): Keep OCI image configs when hard prune [#341](https://github.com/openshift/image-registry/pull/341) * Fix security context for test pods [#342](https://github.com/openshift/image-registry/pull/342) * Updating openshift-enterprise-registry images to be consistent with ART [#339](https://github.com/openshift/image-registry/pull/339) * Updating openshift-enterprise-registry images to be consistent with ART [#330](https://github.com/openshift/image-registry/pull/330) * [Bug 2070791](https://bugzilla.redhat.com/show_bug.cgi?id=2070791): Support authentication using gcp workload identity federation [#335](https://github.com/openshift/image-registry/pull/335) * [IR-232](https://issues.redhat.com/browse/IR-232): Bump k8s deps to 1.24.0 [#328](https://github.com/openshift/image-registry/pull/328) * [Bug 1923536](https://bugzilla.redhat.com/show_bug.cgi?id=1923536): forward http.StatusTooManyRequests to client [#329](https://github.com/openshift/image-registry/pull/329) * [Bug 2065552](https://bugzilla.redhat.com/show_bug.cgi?id=2065552): Bump aws-sdk-go to 1.44.4 [#326](https://github.com/openshift/image-registry/pull/326) * [Bug 2065689](https://bugzilla.redhat.com/show_bug.cgi?id=2065689): Revert "Support authentication using gcp workload identity federation" [#320](https://github.com/openshift/image-registry/pull/320) * [Bug 2060605](https://bugzilla.redhat.com/show_bug.cgi?id=2060605): Revert "Fixed incorrect access denied error logs" [#315](https://github.com/openshift/image-registry/pull/315) * [Bug 1976782](https://bugzilla.redhat.com/show_bug.cgi?id=1976782): Fix s3 driver for supporting ceph radosgw [#313](https://github.com/openshift/image-registry/pull/313) * [Bug 2014240](https://bugzilla.redhat.com/show_bug.cgi?id=2014240): Fix ICSP for whole mirror registries [#312](https://github.com/openshift/image-registry/pull/312) * Updating openshift-enterprise-registry images to be consistent with ART [#304](https://github.com/openshift/image-registry/pull/304) * [Bug 2014240](https://bugzilla.redhat.com/show_bug.cgi?id=2014240): Fix ICSP for subrepositories [#311](https://github.com/openshift/image-registry/pull/311) * [Bug 2049234](https://bugzilla.redhat.com/show_bug.cgi?id=2049234): Fix pull-through for images that have dots in their namespace [#307](https://github.com/openshift/image-registry/pull/307) * [Full changelog](https://github.com/openshift/image-registry/compare/1892f21a94df9ea88a3fdbfe4648d672c319038f...9e75355ca282cf5abac5595585a4b089e6a95e6f) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/6e5c04c066a428047d1755478cf88b290d32ad8f) * [OCPBUGS-1](https://issues.redhat.com/browse/OCPBUGS-1): Jira integration test PR 3 [#92](https://github.com/openshift/driver-toolkit/pull/92) * Updating the documentation on how to use DTK as a multi-stage image. [#80](https://github.com/openshift/driver-toolkit/pull/80) * Remove all kmods-via-containers references and dependencies [#79](https://github.com/openshift/driver-toolkit/pull/79) * Removing the 'make buildprep' from README.md. [#78](https://github.com/openshift/driver-toolkit/pull/78) * [OCPBUGS-1](https://issues.redhat.com/browse/OCPBUGS-1): Jira integration test PR 2 [#77](https://github.com/openshift/driver-toolkit/pull/77) * Updating README.md. [#76](https://github.com/openshift/driver-toolkit/pull/76) * OCPBUGS-1 Jira integration test PR [#75](https://github.com/openshift/driver-toolkit/pull/75) * Updating driver-toolkit images to be consistent with ART [#73](https://github.com/openshift/driver-toolkit/pull/73) * Bumping KVC to the last available commit. [#74](https://github.com/openshift/driver-toolkit/pull/74) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/fd4ea71c5456122d046ca9c188f3ab04fb7fd4d7...6e5c04c066a428047d1755478cf88b290d32ad8f) ### [egress-router-cni](https://github.com/openshift/egress-router-cni/tree/a92e415791b531ca15ec84953550b71bd3534566) * Updating egress-router-cni images to be consistent with ART [#64](https://github.com/openshift/egress-router-cni/pull/64) * Updating egress-router-cni images to be consistent with ART [#63](https://github.com/openshift/egress-router-cni/pull/63) * [Bug 2034411](https://bugzilla.redhat.com/show_bug.cgi?id=2034411): Call ip6tables for v6 mode [#60](https://github.com/openshift/egress-router-cni/pull/60) * Updating egress-router-cni images to be consistent with ART [#59](https://github.com/openshift/egress-router-cni/pull/59) * Updating egress-router-cni images to be consistent with ART [#56](https://github.com/openshift/egress-router-cni/pull/56) * [Full changelog](https://github.com/openshift/egress-router-cni/compare/5c56bc8a0b27f560435f1564de0f3f440e68d889...a92e415791b531ca15ec84953550b71bd3534566) ### [etcd](https://github.com/openshift/etcd/tree/bb82e891abeaddd57e1a07775874d71f2ddd9e85) * [OCPBUGS-28736](https://issues.redhat.com/browse/OCPBUGS-28736): Rebase etcd 3.5.12 openshift 4.12 [#246](https://github.com/openshift/etcd/pull/246) * [OCPBUGS-27102](https://issues.redhat.com/browse/OCPBUGS-27102): Rebase etcd 3.5.11 openshift 4.12 [#240](https://github.com/openshift/etcd/pull/240) * [OCPBUGS-21187](https://issues.redhat.com/browse/OCPBUGS-21187): [4.12] Carrying fixes for CVE-2023-44487 [#228](https://github.com/openshift/etcd/pull/228) * [OCPBUGS-15860](https://issues.redhat.com/browse/OCPBUGS-15860): [4.12] Rebase openshift/etcd to 3.5.9 [#207](https://github.com/openshift/etcd/pull/207) * Update owners [#185](https://github.com/openshift/etcd/pull/185) * Updating ose-etcd images to be consistent with ART [#153](https://github.com/openshift/etcd/pull/153) * [OCPBUGS-5761](https://issues.redhat.com/browse/OCPBUGS-5761): UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… [#176](https://github.com/openshift/etcd/pull/176) * [OCPBUGS-3100](https://issues.redhat.com/browse/OCPBUGS-3100): Rebase openshift/etcd 4.12 onto v3.5.6 [#169](https://github.com/openshift/etcd/pull/169) * UPSTREAM: <carry>: rebase script [#159](https://github.com/openshift/etcd/pull/159) * [OCPBUGS-861](https://issues.redhat.com/browse/OCPBUGS-861): Rebase openshift/etcd 4.12 onto v3.5.5 [#144](https://github.com/openshift/etcd/pull/144) * Updating ose-etcd images to be consistent with ART [#134](https://github.com/openshift/etcd/pull/134) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): increases cluster discovery time from 10s to 135s [#131](https://github.com/openshift/etcd/pull/131) * Revert "UPSTREAM: <carry>: increases cluster discovery time from 10s to 180s" [#130](https://github.com/openshift/etcd/pull/130) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): increases cluster discovery time from 10s to 180s [#129](https://github.com/openshift/etcd/pull/129) * Add new members to reviewers/approvers [#121](https://github.com/openshift/etcd/pull/121) * Remove MemberList patch [#120](https://github.com/openshift/etcd/pull/120) * 3.5.3 with history [#116](https://github.com/openshift/etcd/pull/116) * Contiguous to 3.5.2 [#109](https://github.com/openshift/etcd/pull/109) * [Full changelog](https://github.com/openshift/etcd/compare/c3be56f7c25b24881b06c3cc421abdde9ea8db06...bb82e891abeaddd57e1a07775874d71f2ddd9e85) ### [gcp-cloud-controller-manager](https://github.com/openshift/cloud-provider-gcp/tree/8a84952ec7ff1aa001f885b10ec583540f298c73) * [OCPBUGS-21282](https://issues.redhat.com/browse/OCPBUGS-21282): Bump golang.org/x/net to v0.18.0 [#44](https://github.com/openshift/cloud-provider-gcp/pull/44) * Updating ose-gcp-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-gcp/pull/22) * [OCPBUGS-2076](https://issues.redhat.com/browse/OCPBUGS-2076): Replace k8s.io/cloud-provider with openshift's version [#23](https://github.com/openshift/cloud-provider-gcp/pull/23) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 29.09.2022 k8s 1.25 [#21](https://github.com/openshift/cloud-provider-gcp/pull/21) * Updating ose-gcp-cloud-controller-manager images to be consistent with ART [#19](https://github.com/openshift/cloud-provider-gcp/pull/19) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): UPSTREAM: 333: Bump providers to k8s v1.24 [#17](https://github.com/openshift/cloud-provider-gcp/pull/17) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Merge https://github.com/kubernetes/cloud-provider-gcp:master into master [#13](https://github.com/openshift/cloud-provider-gcp/pull/13) * Revert "UPSTREAM: 313: Bug 2065011: Reuse instance-groups for internal load balancers" [#16](https://github.com/openshift/cloud-provider-gcp/pull/16) * UPSTREAM: 313: Bug 2065011: Reuse instance-groups for internal load balancers [#15](https://github.com/openshift/cloud-provider-gcp/pull/15) * [Full changelog](https://github.com/openshift/cloud-provider-gcp/compare/4dc728d0e1af40893815149de016e5d6e5a7bacb...8a84952ec7ff1aa001f885b10ec583540f298c73) ### [gcp-machine-controllers](https://github.com/openshift/machine-api-provider-gcp/tree/d6d8c1cc5b58ff7cf311bcb72dbeb00eb704511a) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce metrics cardinality. [#76](https://github.com/openshift/machine-api-provider-gcp/pull/76) * [OCPBUGS-20833](https://issues.redhat.com/browse/OCPBUGS-20833): Bump x/net package to v0.18.0 [#69](https://github.com/openshift/machine-api-provider-gcp/pull/69) * [OCPBUGS-14120](https://issues.redhat.com/browse/OCPBUGS-14120): Register control plane machines to instance group [#52](https://github.com/openshift/machine-api-provider-gcp/pull/52) * [OCPBUGS-4504](https://issues.redhat.com/browse/OCPBUGS-4504): refactor restartPolicyToBool function [#28](https://github.com/openshift/machine-api-provider-gcp/pull/28) * [OCPBUGS-4499](https://issues.redhat.com/browse/OCPBUGS-4499): Set sync period for Machine controller [#25](https://github.com/openshift/machine-api-provider-gcp/pull/25) * Updating ose-machine-api-provider-gcp images to be consistent with ART [#19](https://github.com/openshift/machine-api-provider-gcp/pull/19) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#17](https://github.com/openshift/machine-api-provider-gcp/pull/17) * update windows script handling [#16](https://github.com/openshift/machine-api-provider-gcp/pull/16) * Update windows detection [#15](https://github.com/openshift/machine-api-provider-gcp/pull/15) * Add windows machine support [#14](https://github.com/openshift/machine-api-provider-gcp/pull/14) * Updating ose-machine-api-provider-gcp images to be consistent with ART [#13](https://github.com/openshift/machine-api-provider-gcp/pull/13) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#12](https://github.com/openshift/machine-api-provider-gcp/pull/12) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): update dependencies to K8s 1.24, go 1.18 [#11](https://github.com/openshift/machine-api-provider-gcp/pull/11) * Bump machine-api-operator to 25e61c2 [#10](https://github.com/openshift/machine-api-provider-gcp/pull/10) * Bump google.golang.org/api [#9](https://github.com/openshift/machine-api-provider-gcp/pull/9) * [Bug 2067836](https://bugzilla.redhat.com/show_bug.cgi?id=2067836): Bump prometheus/client_golang [#7](https://github.com/openshift/machine-api-provider-gcp/pull/7) * Refactor provider status to use metav1.Condition [#8](https://github.com/openshift/machine-api-provider-gcp/pull/8) * [Full changelog](https://github.com/openshift/machine-api-provider-gcp/compare/a8d5b9445f4096b6f2c0fc38789cc065e8f736b4...d6d8c1cc5b58ff7cf311bcb72dbeb00eb704511a) ### [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver/tree/5dcfd6755ea1eff7dcf1c0c831b048eda1b41736) * [OCPBUGS-20718](https://issues.redhat.com/browse/OCPBUGS-20718): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#47](https://github.com/openshift/gcp-pd-csi-driver/pull/47) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#29](https://github.com/openshift/gcp-pd-csi-driver/pull/29) * UPSTREAM: <carry>: Remove .github files [#28](https://github.com/openshift/gcp-pd-csi-driver/pull/28) * [STOR-862](https://issues.redhat.com/browse/STOR-862): Rebase to v1.7.3 for OCP 4.12 [#27](https://github.com/openshift/gcp-pd-csi-driver/pull/27) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#26](https://github.com/openshift/gcp-pd-csi-driver/pull/26) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#25](https://github.com/openshift/gcp-pd-csi-driver/pull/25) * [Bug 2072891](https://bugzilla.redhat.com/show_bug.cgi?id=2072891): Update to v1.5.1 [#24](https://github.com/openshift/gcp-pd-csi-driver/pull/24) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#22](https://github.com/openshift/gcp-pd-csi-driver/pull/22) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver/compare/19e9a57f04436cfc7df7d38bf5ba047d46982268...5dcfd6755ea1eff7dcf1c0c831b048eda1b41736) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/30e97ba511547edb057071b63498e1ca4c68ec16) * [OCPBUGS-20807](https://issues.redhat.com/browse/OCPBUGS-20807): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#89](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/89) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#82](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/82) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#55](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/55) * Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART [#53](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/53) * Remove unused bindata from the operator [#54](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/54) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#52](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/52) * [STOR-752](https://issues.redhat.com/browse/STOR-752): Change the default StorageClass to the CSI one (GCE) [#51](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/51) * Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART [#50](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/50) * Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART [#45](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/45) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#48](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/48) * [Bug 2077050](https://bugzilla.redhat.com/show_bug.cgi?id=2077050): OCP should default to pd-ssd disk type on GCP [#47](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/47) * Set fsGroupPolicy in CSIDriver [#46](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/46) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/0e369dee1b74696a17faf9b9c28e391d6726bf52...30e97ba511547edb057071b63498e1ca4c68ec16) ### [haproxy-router](https://github.com/openshift/router/tree/6a092687d2ed1b709403e3bdebc2f069c0ce4a01) * [OCPBUGS-43703](https://issues.redhat.com/browse/OCPBUGS-43703): add duplicate_te_header_total metric [#632](https://github.com/openshift/router/pull/632) * [OCPBUGS-35875](https://issues.redhat.com/browse/OCPBUGS-35875): Properly handle rewrite-target annotation [#610](https://github.com/openshift/router/pull/610) * [OCPBUGS-33432](https://issues.redhat.com/browse/OCPBUGS-33432): Route 'haproxy.router.openshift.io/timeout' value is not validated [#593](https://github.com/openshift/router/pull/593) * [OCPBUGS-34212](https://issues.redhat.com/browse/OCPBUGS-34212): Reject routes with MD5 certs [#601](https://github.com/openshift/router/pull/601) * [OCPBUGS-33517](https://issues.redhat.com/browse/OCPBUGS-33517): Count active services before setting weight to 1 [#581](https://github.com/openshift/router/pull/581) * [OCPBUGS-21098](https://issues.redhat.com/browse/OCPBUGS-21098): Bump golang.org/x/net to v0.17.0 to address CVE-2023-39325 [#532](https://github.com/openshift/router/pull/532) * [OCPBUGS-17766](https://issues.redhat.com/browse/OCPBUGS-17766): haproxy/template: mitigate CVE-2023-40225 [#507](https://github.com/openshift/router/pull/507) * [OCPBUGS-18639](https://issues.redhat.com/browse/OCPBUGS-18639): properly handle weight=0 [#511](https://github.com/openshift/router/pull/511) * [OCPBUGS-14454](https://issues.redhat.com/browse/OCPBUGS-14454), [OCPBUGS-14455](https://issues.redhat.com/browse/OCPBUGS-14455): Handle mTLS CRLs, and fix accidental CRL duplication [#491](https://github.com/openshift/router/pull/491) * Updating ose-haproxy-router-base images to be consistent with ART [#424](https://github.com/openshift/router/pull/424) * [Bug 2107462](https://bugzilla.redhat.com/show_bug.cgi?id=2107462): Update CGO_ENABLED=1 [#423](https://github.com/openshift/router/pull/423) * [NE-1071](https://issues.redhat.com/browse/NE-1071): Default HAProxy maxconn value to 50000 for OCP 4.12 [#417](https://github.com/openshift/router/pull/417) * [OCPBUGS-1730](https://issues.redhat.com/browse/OCPBUGS-1730): Bump vendored K8S libraries to 1.25.2 [#421](https://github.com/openshift/router/pull/421) * Updating openshift-enterprise-haproxy-router images to be consistent with ART [#411](https://github.com/openshift/router/pull/411) * Updating ose-haproxy-router-base images to be consistent with ART [#410](https://github.com/openshift/router/pull/410) * [Bug 2090829](https://bugzilla.redhat.com/show_bug.cgi?id=2090829): Bump OpenShift router to k8s 1.24 and go 1.18 [#395](https://github.com/openshift/router/pull/395) * Updating openshift-enterprise-haproxy-router images to be consistent with ART [#374](https://github.com/openshift/router/pull/374) * [Bug 2093454](https://bugzilla.redhat.com/show_bug.cgi?id=2093454): HAProxy: enable PROXY protocol for all listeners [#369](https://github.com/openshift/router/pull/369) * Updating ose-haproxy-router-base images to be consistent with ART [#373](https://github.com/openshift/router/pull/373) * [NE-882](https://issues.redhat.com/browse/NE-882): Support subdomain field when host is unset [#357](https://github.com/openshift/router/pull/357) * NE-822 Don't scale route weight on single service routes [#377](https://github.com/openshift/router/pull/377) * [Bug 2076297](https://bugzilla.redhat.com/show_bug.cgi?id=2076297): Fix gap in router's handling of graceful shutdowns. [#383](https://github.com/openshift/router/pull/383) * [Bug 2074304](https://bugzilla.redhat.com/show_bug.cgi?id=2074304): generateRouteHostRegexp: Escape blanks [#381](https://github.com/openshift/router/pull/381) * [Bug 2025624](https://bugzilla.redhat.com/show_bug.cgi?id=2025624): Fix certificate reloader [#379](https://github.com/openshift/router/pull/379) * BUG 2067778: Bump prometheus/client_golang to v1.11.1 [#378](https://github.com/openshift/router/pull/378) * [Bug 1928932](https://bugzilla.redhat.com/show_bug.cgi?id=1928932): Update deploy manifests to use stable apis [#349](https://github.com/openshift/router/pull/349) * Added gcs278 to OWNERS [#372](https://github.com/openshift/router/pull/372) * [Full changelog](https://github.com/openshift/router/compare/c1e7f4053c219d193ca908711255fe37fd931bc7...6a092687d2ed1b709403e3bdebc2f069c0ce4a01) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/1eb868227a9b8ed70f88be1681321405094d7adf) * [OCPBUGS-37282](https://issues.redhat.com/browse/OCPBUGS-37282): UPSTREAM: 126104: Add funcs in pkg/filesystem/util that can actually … [#2046](https://github.com/openshift/kubernetes/pull/2046) * [OCPBUGS-30454](https://issues.redhat.com/browse/OCPBUGS-30454): CVE 2024-24786 [#1974](https://github.com/openshift/kubernetes/pull/1974) * UPSTREAM: <drop>: Bump golang.org/x/net to v0.23.0 [#1940](https://github.com/openshift/kubernetes/pull/1940) * Address CVE [#13](https://github.com/openshift/kubernetes/pull/13) * [OCPBUGS-15527](https://issues.redhat.com/browse/OCPBUGS-15527): Prevent partially filled HPA behaviors from crashing kube-controller-manager [#1887](https://github.com/openshift/kubernetes/pull/1887) * [OCPBUGS-25815](https://issues.redhat.com/browse/OCPBUGS-25815): Fix device uncertain errors on reboot 4.12 [#1833](https://github.com/openshift/kubernetes/pull/1833) * [OCPBUGS-25214](https://issues.redhat.com/browse/OCPBUGS-25214): legacy-cloud-providers: prevent index out-of-range in getNextUnitNumber [#1835](https://github.com/openshift/kubernetes/pull/1835) * [OCPBUGS-23568](https://issues.redhat.com/browse/OCPBUGS-23568): Update to kubernetes 1.25.16 [#1807](https://github.com/openshift/kubernetes/pull/1807) * [OCPBUGS-23288](https://issues.redhat.com/browse/OCPBUGS-23288): UPSTREAM: 121881: Use golang library instead of mklink [#1803](https://github.com/openshift/kubernetes/pull/1803) * [OCPBUGS-20113](https://issues.redhat.com/browse/OCPBUGS-20113): UPSTREAM: <carry>: Do not allow nodes to set forbidden openshift labels [#1747](https://github.com/openshift/kubernetes/pull/1747) * openshift-hack: Fix sporadic 141 errors in build-rpms [#1774](https://github.com/openshift/kubernetes/pull/1774) * [OCPBUGS-21435](https://issues.redhat.com/browse/OCPBUGS-21435): [release-4.12] UPSTREAM: 121125: [1.25][CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 [#1760](https://github.com/openshift/kubernetes/pull/1760) * [OCPBUGS-18288](https://issues.redhat.com/browse/OCPBUGS-18288), [OCPBUGS-19483](https://issues.redhat.com/browse/OCPBUGS-19483): Update to kubernetes 1.25.14 [#1719](https://github.com/openshift/kubernetes/pull/1719) * [OCPBUGS-18768](https://issues.redhat.com/browse/OCPBUGS-18768): UPSTREAM: <carry>: Force using host go always and use host libriaries [#1694](https://github.com/openshift/kubernetes/pull/1694) * [OCPBUGS-17188](https://issues.redhat.com/browse/OCPBUGS-17188): Update to Kubernetes 1.25.12 [#1669](https://github.com/openshift/kubernetes/pull/1669) * [OCPBUGS-17159](https://issues.redhat.com/browse/OCPBUGS-17159): Increase service idle max timeout to 100 minutes [#1662](https://github.com/openshift/kubernetes/pull/1662) * [OCPBUGS-8737](https://issues.redhat.com/browse/OCPBUGS-8737): UPSTREAM: <drop>: bump apiserver-library-go for scc fix [#1619](https://github.com/openshift/kubernetes/pull/1619) * [OCPBUGS-15309](https://issues.redhat.com/browse/OCPBUGS-15309): Bump to k8s 1.25.11 [#1615](https://github.com/openshift/kubernetes/pull/1615) * [OCPBUGS-14745](https://issues.redhat.com/browse/OCPBUGS-14745): [release-4.12] UPSTREAM: 118383: bump cadvisor for upstream patch 3301 [#1600](https://github.com/openshift/kubernetes/pull/1600) * [OCPBUGS-13173](https://issues.redhat.com/browse/OCPBUGS-13173): Bump to k8s 1.25.10 [#1582](https://github.com/openshift/kubernetes/pull/1582) * [OCPBUGS-7589](https://issues.redhat.com/browse/OCPBUGS-7589): UPSTREAM: <carry>: add default kubelet sysctls within rpm [#1478](https://github.com/openshift/kubernetes/pull/1478) * [OCPBUGS-11166](https://issues.redhat.com/browse/OCPBUGS-11166): UPSTREAM: <carry>: Force using the go tooling from the system [#1531](https://github.com/openshift/kubernetes/pull/1531) * [OCPBUGS-11166](https://issues.redhat.com/browse/OCPBUGS-11166): Bump to k8s 1.25.8 [#1527](https://github.com/openshift/kubernetes/pull/1527) * [OCPBUGS-8705](https://issues.redhat.com/browse/OCPBUGS-8705): Fix mounted volume expansion tests [#1503](https://github.com/openshift/kubernetes/pull/1503) * [OCPBUGS-7078](https://issues.redhat.com/browse/OCPBUGS-7078): Bump to k8s 1.25.7 [#1496](https://github.com/openshift/kubernetes/pull/1496) * [OCPBUGS-5769](https://issues.redhat.com/browse/OCPBUGS-5769): scc admission - seccomp profiles fix [#1471](https://github.com/openshift/kubernetes/pull/1471) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): remove in-tree volume limits test now that CSIMigration is GA [#1449](https://github.com/openshift/kubernetes/pull/1449) * [OCPBUGS-4808](https://issues.redhat.com/browse/OCPBUGS-4808): Apply shared defaulters to CRD-based routes. [#1441](https://github.com/openshift/kubernetes/pull/1441) * [OCPBUGS-4366](https://issues.redhat.com/browse/OCPBUGS-4366): Update to 1.25.4 [#1434](https://github.com/openshift/kubernetes/pull/1434) * [OCPBUGS-3878](https://issues.redhat.com/browse/OCPBUGS-3878): UPSTREAM: <drop>: Bump openshift/api. [#1425](https://github.com/openshift/kubernetes/pull/1425) * [OCPBUGS-3875](https://issues.redhat.com/browse/OCPBUGS-3875): UPSTREAM: <carry>: Add host assignment plugin for CRD-based routes. [#1427](https://github.com/openshift/kubernetes/pull/1427) * [OCPBUGS-3780](https://issues.redhat.com/browse/OCPBUGS-3780): UPSTREAM: <carry>: Add validation plugin for CRD-based route parity. [#1422](https://github.com/openshift/kubernetes/pull/1422) * [OCPBUGS-3503](https://issues.redhat.com/browse/OCPBUGS-3503): UPSTREAM: <drop>: Bump library-go. [#1423](https://github.com/openshift/kubernetes/pull/1423) * Bug OCPBUGS-2927: Disable expansion in SC, if driver does not support it [#1403](https://github.com/openshift/kubernetes/pull/1403) * [OCPBUGS-3503](https://issues.redhat.com/browse/OCPBUGS-3503): UPSTREAM: : Bump library-go. [#1414](https://github.com/openshift/kubernetes/pull/1414) * [OCPBUGS-3094](https://issues.redhat.com/browse/OCPBUGS-3094): Tag AWS security groups at creation [#1412](https://github.com/openshift/kubernetes/pull/1412) * [OCPBUGS-3071](https://issues.redhat.com/browse/OCPBUGS-3071): 4.12: revert: 1340: tag AWS security group at creation [#1405](https://github.com/openshift/kubernetes/pull/1405) * [OCPBUGS-3117](https://issues.redhat.com/browse/OCPBUGS-3117): UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines [#1407](https://github.com/openshift/kubernetes/pull/1407) * [OCPBUGS-2774](https://issues.redhat.com/browse/OCPBUGS-2774): UPSTREAM: 112807 Fix Load balancer services with xTP local [#1400](https://github.com/openshift/kubernetes/pull/1400) * UPSTREAM: 113208: Set default test timeouts first, only then modify the required ones [#1396](https://github.com/openshift/kubernetes/pull/1396) * UPSTREAM: <carry>: Bug 2098054: tag AWS security group at creation [#1340](https://github.com/openshift/kubernetes/pull/1340) * UPSTREAM: 113135: Wait for pod not running or gone in storage tests [#1394](https://github.com/openshift/kubernetes/pull/1394) * Bump to k8s 1.25.2 [#1380](https://github.com/openshift/kubernetes/pull/1380) * [Bug 2041317](https://bugzilla.redhat.com/show_bug.cgi?id=2041317): Fix replica calculation at start of HPA scaling policy period [#1391](https://github.com/openshift/kubernetes/pull/1391) * UPSTREAM: <carry>: allow annotating with a specific suite [#1388](https://github.com/openshift/kubernetes/pull/1388) * k8s 1.25.0 [#1360](https://github.com/openshift/kubernetes/pull/1360) * UPSTREAM: <carry>: Dockerfile: use centos:stream9 [#1366](https://github.com/openshift/kubernetes/pull/1366) * [OCPBUGS-718](https://issues.redhat.com/browse/OCPBUGS-718): UPSTREAM: 112267: aws: skip health rules if they are a subnet of the client rule [#1358](https://github.com/openshift/kubernetes/pull/1358) * UPSTREAM: <carry>: optionally enable retry after until apiserver is ready [#1346](https://github.com/openshift/kubernetes/pull/1346) * UPSTREAM: 110639: endpointslices: node missing on Pod scenario [#1359](https://github.com/openshift/kubernetes/pull/1359) * UPSTREAM: <carry>: Update kubensenter to use exec instead of subprocess [#1350](https://github.com/openshift/kubernetes/pull/1350) * UPSTREAM: 110039: Add readinessProbe to aggregated api service test [#1307](https://github.com/openshift/kubernetes/pull/1307) * [Bug 2118318](https://bugzilla.redhat.com/show_bug.cgi?id=2118318): UPSTREAM: 110939: don't quota events.k8s.io events by default [#1344](https://github.com/openshift/kubernetes/pull/1344) * UPSTREAM: 111789: Update Netpol e2e tests to use framework CreateName… [#1349](https://github.com/openshift/kubernetes/pull/1349) * UPSTREAM: <carry>: Skip session affinity timeout tests [#1339](https://github.com/openshift/kubernetes/pull/1339) * [Bug 2117569](https://bugzilla.redhat.com/show_bug.cgi?id=2117569): UPSTREAM: 110888: feat: fix a bug thaat not all event be ignored by gc controller [#1338](https://github.com/openshift/kubernetes/pull/1338) * Add kubensenter to the openshift RPM [#1327](https://github.com/openshift/kubernetes/pull/1327) * UPSTREAM: 111306: Make scheduling e2e tests run PSa-restricted pods [#1333](https://github.com/openshift/kubernetes/pull/1333) * trt-393: add plugin name to caches not synchronized error [#1330](https://github.com/openshift/kubernetes/pull/1330) * [Bug 2102383](https://bugzilla.redhat.com/show_bug.cgi?id=2102383): UPSTREAM: 89885: Fix panic in openstack.InstanceExistsByProviderID() [#1315](https://github.com/openshift/kubernetes/pull/1315) * [Bug 2088606](https://bugzilla.redhat.com/show_bug.cgi?id=2088606): Overly loose admission check when configuring UpstreamResolvers or ForwardPlugin [#1247](https://github.com/openshift/kubernetes/pull/1247) * [Bug 2081194](https://bugzilla.redhat.com/show_bug.cgi?id=2081194): UPSTREAM: <carry>: update list of deprecated apis [#1091](https://github.com/openshift/kubernetes/pull/1091) * [Bug 2082773](https://bugzilla.redhat.com/show_bug.cgi?id=2082773): Fix resizing of ephemeral volumes [#1296](https://github.com/openshift/kubernetes/pull/1296) * UPSTREAM: <carry>: Remove reserved CPUs from default set [#1295](https://github.com/openshift/kubernetes/pull/1295) * [Bug 2094012](https://bugzilla.redhat.com/show_bug.cgi?id=2094012): UPSTREAM: 110652: fix: --chunk-size with selector returns missing result [#1303](https://github.com/openshift/kubernetes/pull/1303) * [Bug 2063414](https://bugzilla.redhat.com/show_bug.cgi?id=2063414): UPSTREAM: 109441: kubelet: parseResolvConf: Handle "search ." [#1283](https://github.com/openshift/kubernetes/pull/1283) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): get SCC admission default securityContext.runAsNonRoot to true on positive UIDs [#1290](https://github.com/openshift/kubernetes/pull/1290) * [Bug 2078778](https://bugzilla.redhat.com/show_bug.cgi?id=2078778): UPSTREAM: 110408: apiserver: printers should use int64 [#1288](https://github.com/openshift/kubernetes/pull/1288) * [Bug 2089933](https://bugzilla.redhat.com/show_bug.cgi?id=2089933): Backport 110191 Re-enable Kubelet Pod Readiness Probes on Termination and Pod probes should be handled by pod worker [#1285](https://github.com/openshift/kubernetes/pull/1285) * [Bug 2087685](https://bugzilla.redhat.com/show_bug.cgi?id=2087685): Worker Latency Profiles: Config node object validation for extreme profile transition [#1287](https://github.com/openshift/kubernetes/pull/1287) * [Bug 2065749](https://bugzilla.redhat.com/show_bug.cgi?id=2065749): UPSTREAM: 109103: cpu/memory manager containerMap memory leak [#1229](https://github.com/openshift/kubernetes/pull/1229) * [Bug 2094954](https://bugzilla.redhat.com/show_bug.cgi?id=2094954): UPSTREAM: 110258: Fix pod eviction ip [#1282](https://github.com/openshift/kubernetes/pull/1282) * UPSTREAM: <carry>: provide unique reason for pod probe event during t… [#1281](https://github.com/openshift/kubernetes/pull/1281) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): UPSTREAM: 108284: fix: exclude non-ready nodes and deleted nodes from azure load balancers [#1261](https://github.com/openshift/kubernetes/pull/1261) * Fixes probe readiness shutdowns [#1269](https://github.com/openshift/kubernetes/pull/1269) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): update kube to v1.24.0 [#1252](https://github.com/openshift/kubernetes/pull/1252) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): UPSTREAM: <carry>: e2e-framework: don't autosync PodSecurity labels [#1268](https://github.com/openshift/kubernetes/pull/1268) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Identify if there are multiple schedulers running [#1251](https://github.com/openshift/kubernetes/pull/1251) * [Bug 2075621](https://bugzilla.redhat.com/show_bug.cgi?id=2075621): UPSTREAM: 109487: Disable JobTrackingWithFinalizers due to unresolved bug [#1243](https://github.com/openshift/kubernetes/pull/1243) * [Bug 1999325](https://bugzilla.redhat.com/show_bug.cgi?id=1999325): Backport 107821 and 107831 [#1225](https://github.com/openshift/kubernetes/pull/1225) * UPSTREAM: 109283: test/e2e/*: use restricted policy by default, default existing tests to privileged [#1238](https://github.com/openshift/kubernetes/pull/1238) * [Bug 2051985](https://bugzilla.redhat.com/show_bug.cgi?id=2051985): UPSTREAM: <carry>: An APIRequestCount without dots in the name can cause a panic [#1172](https://github.com/openshift/kubernetes/pull/1172) * [Bug 2066865](https://bugzilla.redhat.com/show_bug.cgi?id=2066865): Skip azure topology tests [#1230](https://github.com/openshift/kubernetes/pull/1230) * UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy [#1227](https://github.com/openshift/kubernetes/pull/1227) * Revert "UPSTREAM: <carry>: Unskip OCP SDN related tests" [#1228](https://github.com/openshift/kubernetes/pull/1228) * bump apiserver-library-go [#1218](https://github.com/openshift/kubernetes/pull/1218) * UPSTREAM: <carry>: update list of deprecated apis [#1204](https://github.com/openshift/kubernetes/pull/1204) * UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy [#1226](https://github.com/openshift/kubernetes/pull/1226) * [Bug 1957668](https://bugzilla.redhat.com/show_bug.cgi?id=1957668): UPSTREAM: <carry>: use console-public config map for console redirect [#1110](https://github.com/openshift/kubernetes/pull/1110) * UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy [#1212](https://github.com/openshift/kubernetes/pull/1212) * [Bug 2022507](https://bugzilla.redhat.com/show_bug.cgi?id=2022507): Backport 108366: OutofCpu Fixes [#1199](https://github.com/openshift/kubernetes/pull/1199) * [Bug 1945329](https://bugzilla.redhat.com/show_bug.cgi?id=1945329): enable should drop INVALID conntrack entries test [#897](https://github.com/openshift/kubernetes/pull/897) * [Bug 2063938](https://bugzilla.redhat.com/show_bug.cgi?id=2063938): UPSTREAM: <carry>: use hardcoded rest mapper from library-go [#1215](https://github.com/openshift/kubernetes/pull/1215) * [Bug 2062459](https://bugzilla.redhat.com/show_bug.cgi?id=2062459): Generate event when cache update is failed [#1210](https://github.com/openshift/kubernetes/pull/1210) * UPSTREAM:<carry>:Unskip OCP SDN related tests [#1201](https://github.com/openshift/kubernetes/pull/1201) * [Bug 2034958](https://bugzilla.redhat.com/show_bug.cgi?id=2034958): enable "Conntrack should be able to preserve UDP traffic when initial… [#1197](https://github.com/openshift/kubernetes/pull/1197) * UPSTREAM: 106454: SQUASH: test/e2e: let e2e tests specify pod security admiss… [#1128](https://github.com/openshift/kubernetes/pull/1128) * [Bug 2040715](https://bugzilla.redhat.com/show_bug.cgi?id=2040715): UPSTREAM: 108284: fix: exclude non-ready nodes from azure load balancer [#1190](https://github.com/openshift/kubernetes/pull/1190) * UPSTREAM: <drop>: zero-diff to pick up tags for versions [#1193](https://github.com/openshift/kubernetes/pull/1193) * [Bug 2040715](https://bugzilla.redhat.com/show_bug.cgi?id=2040715): upstream 108149: do not return early in the node informer when there is no change [#1184](https://github.com/openshift/kubernetes/pull/1184) * [Bug 2040533](https://bugzilla.redhat.com/show_bug.cgi?id=2040533): UPSTREAM: <drop>: Ignore container notfound error while getPodstatuses [#1176](https://github.com/openshift/kubernetes/pull/1176) * [Bug 2040533](https://bugzilla.redhat.com/show_bug.cgi?id=2040533): UPSTREAM: 107900: Pods that have terminated before starting should not block startup [#1157](https://github.com/openshift/kubernetes/pull/1157) * UPSTREAM: 107847: service REST: Call Decorator(old) on update path [#1156](https://github.com/openshift/kubernetes/pull/1156) * [Bug 1979671](https://bugzilla.redhat.com/show_bug.cgi?id=1979671): UPSTREAM <carry>: Remove pod warning annotation when workload partitioning is disabled [#977](https://github.com/openshift/kubernetes/pull/977) * [Bug 2044824](https://bugzilla.redhat.com/show_bug.cgi?id=2044824): UPSTREAM: 107786: Ensure the execHostnameTest() compares hostnames [#1153](https://github.com/openshift/kubernetes/pull/1153) * [Full changelog](https://github.com/openshift/kubernetes/compare/26fdcdf8fc0ac7f437d6301eedd96704d95cfd10...1eb868227a9b8ed70f88be1681321405094d7adf) ### [hypershift](https://github.com/openshift/hypershift/tree/da93f69c5c56fe938e65115dd08428604ed42bed) * [OCPBUGS-41516](https://issues.redhat.com/browse/OCPBUGS-41516): set Konnectivity cipher suites [#4283](https://github.com/openshift/hypershift/pull/4283) * [MULTIARCH-3709](https://issues.redhat.com/browse/MULTIARCH-3709): PowerVS - Add reuse resource flags to e2e test [#2994](https://github.com/openshift/hypershift/pull/2994) * [MULTIARCH-3732](https://issues.redhat.com/browse/MULTIARCH-3732): PowerVS - Fix cluster deletion when existing resources passed [#2993](https://github.com/openshift/hypershift/pull/2993) * [MULTIARCH-3733](https://issues.redhat.com/browse/MULTIARCH-3733): Add dev flags in destroy cluster powervs command [#2998](https://github.com/openshift/hypershift/pull/2998) * Updated secret permissions for openshift-route-controller-manager [#2924](https://github.com/openshift/hypershift/pull/2924) * fix(hcco): Add HCP label to HCCO by default [#2972](https://github.com/openshift/hypershift/pull/2972) * fix(ignition): Add HCP label to ignition-server by default [#2949](https://github.com/openshift/hypershift/pull/2949) * [OCPBUGS-16847](https://issues.redhat.com/browse/OCPBUGS-16847): use ignition-proxy Service to populate ignitionEndpoint with strategy NodePort [#2855](https://github.com/openshift/hypershift/pull/2855) * [release 4.12] OCPBUGS-11555: OAuth OpenShift deployment requires ConfigMap mount patch2 [#2803](https://github.com/openshift/hypershift/pull/2803) * [OCPBUGS-16411](https://issues.redhat.com/browse/OCPBUGS-16411): fix deletion bug when hostedzone is already deleted [#2835](https://github.com/openshift/hypershift/pull/2835) * Kas policy 4.12 [#2826](https://github.com/openshift/hypershift/pull/2826) * Leader election config update. [#2800](https://github.com/openshift/hypershift/pull/2800) * [OCPBUGS-15614](https://issues.redhat.com/browse/OCPBUGS-15614): Check OwningIngressController also in Labels [#2759](https://github.com/openshift/hypershift/pull/2759) * [OCPBUGS-16086](https://issues.redhat.com/browse/OCPBUGS-16086): autoscaling balance similar groups [#2806](https://github.com/openshift/hypershift/pull/2806) * [HOSTEDCP-1060](https://issues.redhat.com/browse/HOSTEDCP-1060): refactor ignition-server reconcilation and add ignition-server proxy [#2749](https://github.com/openshift/hypershift/pull/2749) * [OCPBUGS-14873](https://issues.redhat.com/browse/OCPBUGS-14873): Update vendored openshift API for 4.12 [#2734](https://github.com/openshift/hypershift/pull/2734) * [HOSTEDCP-1073](https://issues.redhat.com/browse/HOSTEDCP-1073): enforce blocked rollout of HCP [#2745](https://github.com/openshift/hypershift/pull/2745) * properly handle user CA bundle not existing [#2711](https://github.com/openshift/hypershift/pull/2711) * [OCPBUGS-15304](https://issues.redhat.com/browse/OCPBUGS-15304): [release-4.12] fix(oauth): Do not proxy IBM Cloud IAM endpoints [#2695](https://github.com/openshift/hypershift/pull/2695) * [OCPBUGS-14873](https://issues.redhat.com/browse/OCPBUGS-14873): Honor global ingress configuration LoadBalancer type on AWS [#2678](https://github.com/openshift/hypershift/pull/2678) * [OCPBUGS-14803](https://issues.redhat.com/browse/OCPBUGS-14803): Set `DisableStrictZoneCheck = true` in the AWS Cloud Provider config [#2667](https://github.com/openshift/hypershift/pull/2667) * [release 4.12] OCPBUGS-11555: OAuth OpenShift deployment requires ConfigMap mount [#2512](https://github.com/openshift/hypershift/pull/2512) * [OCPBUGS-14156](https://issues.redhat.com/browse/OCPBUGS-14156): Reconcile oauthDeployment annotations even if kubeadmin secret is not found [#2614](https://github.com/openshift/hypershift/pull/2614) * [OCPBUGS-14031](https://issues.redhat.com/browse/OCPBUGS-14031): Include default ingress CA in root CA bundle [#2600](https://github.com/openshift/hypershift/pull/2600) * [OCPBUGS-13626](https://issues.redhat.com/browse/OCPBUGS-13626): Sync proxy TrustedCA to guest cluster [#2557](https://github.com/openshift/hypershift/pull/2557) * [OCPBUGS-13639](https://issues.redhat.com/browse/OCPBUGS-13639): Cherry pick aws endpoint sg [#2579](https://github.com/openshift/hypershift/pull/2579) * [OCPBUGS-12787](https://issues.redhat.com/browse/OCPBUGS-12787): fix(hcco): Get OLM CatalogSource images from defined map [#2485](https://github.com/openshift/hypershift/pull/2485) * ACM-5173 [backport 4.12] get pull secret instead of dockerconfigjson from mce credentials [#2486](https://github.com/openshift/hypershift/pull/2486) * Configurable SRE MetricsSet [#2545](https://github.com/openshift/hypershift/pull/2545) * [OCPBUGS-13077](https://issues.redhat.com/browse/OCPBUGS-13077): Ensure ingress controllers are removed before load balancers [#2515](https://github.com/openshift/hypershift/pull/2515) * [OCPBUGS-11544](https://issues.redhat.com/browse/OCPBUGS-11544): Pass runAsUser to CNO so it can run its managed services with proper security context [#2391](https://github.com/openshift/hypershift/pull/2391) * [OCPBUGS-12845](https://issues.redhat.com/browse/OCPBUGS-12845): Delete kubeadmin secret when an idp is defined [#2492](https://github.com/openshift/hypershift/pull/2492) * [OCPBUGS-12738](https://issues.redhat.com/browse/OCPBUGS-12738): Pass OPENSHIFT_RELEASE_IMAGE env variable to CNO [#2473](https://github.com/openshift/hypershift/pull/2473) * [OCPBUGS-12199](https://issues.redhat.com/browse/OCPBUGS-12199): remove ACL for aws bucket [#2458](https://github.com/openshift/hypershift/pull/2458) * [OCPBUGS-11607](https://issues.redhat.com/browse/OCPBUGS-11607): properly reconcile with user specified changes for in proxy configuration [#2395](https://github.com/openshift/hypershift/pull/2395) * [OCPBUGS-11726](https://issues.redhat.com/browse/OCPBUGS-11726): Update HostedCluster oauthCallbackURLTemplate [#2410](https://github.com/openshift/hypershift/pull/2410) * e2e: Cleanup shared OIDC provider on SIGTERM [#2449](https://github.com/openshift/hypershift/pull/2449) * [HOSTEDCP-568](https://issues.redhat.com/browse/HOSTEDCP-568): Update Konnectiviy socks5 proxy for IBM exception [#2406](https://github.com/openshift/hypershift/pull/2406) * [OCPBUGS-10584](https://issues.redhat.com/browse/OCPBUGS-10584): Switch NTO metrics auth to certs generated by HCP controller [#2293](https://github.com/openshift/hypershift/pull/2293) * [OCPBUGS-11014](https://issues.redhat.com/browse/OCPBUGS-11014): Do not proxy when guest cluster resolution fails [#2340](https://github.com/openshift/hypershift/pull/2340) * [OCPBUGS-11654](https://issues.redhat.com/browse/OCPBUGS-11654): [release-4.12] Create new EC2 client for AWS identity provider health check [#2403](https://github.com/openshift/hypershift/pull/2403) * [OCPBUGS-10646](https://issues.redhat.com/browse/OCPBUGS-10646): Add storage operators perms. to watch HostedControlPlane [#2306](https://github.com/openshift/hypershift/pull/2306) * [HOSTEDCP-939](https://issues.redhat.com/browse/HOSTEDCP-939): [release-4.12] Setup shared OIDC provider for e2e clusters [#2365](https://github.com/openshift/hypershift/pull/2365) * [HOSTEDCP-806](https://issues.redhat.com/browse/HOSTEDCP-806): Fix ValidAWSKMSConfig condition [#2362](https://github.com/openshift/hypershift/pull/2362) * [OCPBUGS-11056](https://issues.redhat.com/browse/OCPBUGS-11056): fix external APIServer address selection based on endpointAccess [#2350](https://github.com/openshift/hypershift/pull/2350) * OCPBUGS-10823 ensure well known public domains do not get proxied on image imports [#2351](https://github.com/openshift/hypershift/pull/2351) * [SDA-8707](https://issues.redhat.com/browse/SDA-8707): No more specifying the scrape interval at servicemonitors & podmonitors level [#2356](https://github.com/openshift/hypershift/pull/2356) * [HOSTEDCP-900](https://issues.redhat.com/browse/HOSTEDCP-900): Modified AWSPrivateLinkController and AWSEndpointServiceController to respect PausedUntil spec field [#2285](https://github.com/openshift/hypershift/pull/2285) * [OCPBUGS-10504](https://issues.redhat.com/browse/OCPBUGS-10504): Deletion of the VPCEnpoint on conflicting service names [#2310](https://github.com/openshift/hypershift/pull/2310) * [HOSTEDCP-806](https://issues.redhat.com/browse/HOSTEDCP-806): [release-4.12] Validate etcd KMS config [#2273](https://github.com/openshift/hypershift/pull/2273) * [HOSTEDCP-801](https://issues.redhat.com/browse/HOSTEDCP-801): [release-4.12] Expose external DNS for private cluster endpoints [#2314](https://github.com/openshift/hypershift/pull/2314) * [HOSTEDCP-839](https://issues.redhat.com/browse/HOSTEDCP-839): Audit log sidecars for openshift-apiserver and openshift-oauth-apiserver [#2297](https://github.com/openshift/hypershift/pull/2297) * [OCPBUGS-10587](https://issues.redhat.com/browse/OCPBUGS-10587): Use appropriate serving certificate for OAuth [#2295](https://github.com/openshift/hypershift/pull/2295) * [OSD-15099](https://issues.redhat.com/browse/OSD-15099): Delaying the creation of servicemonitor and podmonitor resources till the hostedcluster is Completed [#2274](https://github.com/openshift/hypershift/pull/2274) * Add PodMonitor for ingress-operator pods in HCP namespaces [#2275](https://github.com/openshift/hypershift/pull/2275) * [OCPBUGS-8334](https://issues.redhat.com/browse/OCPBUGS-8334): [release-4.12] Update the pull secret source for ignition payload [#2268](https://github.com/openshift/hypershift/pull/2268) * Force controleplane upgrade always [#2289](https://github.com/openshift/hypershift/pull/2289) * [OCPBUGS-8370](https://issues.redhat.com/browse/OCPBUGS-8370): Fix cleanup of volumes on cluster deletion [#2253](https://github.com/openshift/hypershift/pull/2253) * [OCPBUGS-8241](https://issues.redhat.com/browse/OCPBUGS-8241): Add external DNS health condition / release-4.12 [#2206](https://github.com/openshift/hypershift/pull/2206) * [HOSTEDCP-809](https://issues.redhat.com/browse/HOSTEDCP-809): Clone CA key/cert to TLS key/cert [#2263](https://github.com/openshift/hypershift/pull/2263) * Add configuration for automatic labeling and label commands [#2255](https://github.com/openshift/hypershift/pull/2255) * fix(cpo): Delete multus validatingwebhookconfiguration on CNO init [#2251](https://github.com/openshift/hypershift/pull/2251) * feat(HCCO): Block DNS operator delete until Cluster Version updated [#2242](https://github.com/openshift/hypershift/pull/2242) * kms addition for pod identity workflow [#2247](https://github.com/openshift/hypershift/pull/2247) * Add e2e test for hosted cluster behind a proxy [#2199](https://github.com/openshift/hypershift/pull/2199) * Add e2e test for cluster creation with AWS KMS [#2201](https://github.com/openshift/hypershift/pull/2201) * [HOSTEDCP-826](https://issues.redhat.com/browse/HOSTEDCP-826): Customize DNS base domain prefix [#2235](https://github.com/openshift/hypershift/pull/2235) * feat: Add pod gone check to prober + DNS operator leader elect [#2209](https://github.com/openshift/hypershift/pull/2209) * fix(ibmcloud): Explicitly set HCCO controllers [#2208](https://github.com/openshift/hypershift/pull/2208) * ensure reconcilation of apiserver port is in 4.12 [#2195](https://github.com/openshift/hypershift/pull/2195) * Cleanup default security group only if authorized [#2212](https://github.com/openshift/hypershift/pull/2212) * fix(cpo): Set restart annotation on multus-admission-controller [#2190](https://github.com/openshift/hypershift/pull/2190) * fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac [#2189](https://github.com/openshift/hypershift/pull/2189) * fix(cpo): Reduce CNO access if Calico used as network provider [#2184](https://github.com/openshift/hypershift/pull/2184) * Skip destroyAWSDefaultSecurityGroup if not AWS [#2168](https://github.com/openshift/hypershift/pull/2168) * Create default security group for AWS clusters [#2162](https://github.com/openshift/hypershift/pull/2162) * [AUTH-323](https://issues.redhat.com/browse/AUTH-323): pki: split out konnectivity certs from the rootCA [#2156](https://github.com/openshift/hypershift/pull/2156) * fix(ibmcloud): Initialize image registry config on creates and bad config [#2104](https://github.com/openshift/hypershift/pull/2104) * fix(cpo): Allow KAS profiling disablement [#2122](https://github.com/openshift/hypershift/pull/2122) * reduce ignition server scope [#2140](https://github.com/openshift/hypershift/pull/2140) * OpenID add support for groups claim in the config [#2129](https://github.com/openshift/hypershift/pull/2129) * fix(cpo): Restart registry operator on annotation [#2121](https://github.com/openshift/hypershift/pull/2121) * Fix CAPA crd generation [#2120](https://github.com/openshift/hypershift/pull/2120) * Set k8s.io/kubernetes dependency to v0.23.3 [#2118](https://github.com/openshift/hypershift/pull/2118) * fix(cpo): Separate RBAC for NTO + CNO [#2112](https://github.com/openshift/hypershift/pull/2112) * Merge main up to db7c22ae into 'release-4.12' [#2101](https://github.com/openshift/hypershift/pull/2101) * Merge main into release-4.12 branch [#2053](https://github.com/openshift/hypershift/pull/2053) * Release 4.12 rebase latest [#2047](https://github.com/openshift/hypershift/pull/2047) * Fix OpenID OAuth config parsing [#2029](https://github.com/openshift/hypershift/pull/2029) * Fast foward release-4.12 to main [#2003](https://github.com/openshift/hypershift/pull/2003) * [OCPBUGS-5133](https://issues.redhat.com/browse/OCPBUGS-5133): Reinstate hosted cluster configuration propagation [#1981](https://github.com/openshift/hypershift/pull/1981) * Remove CAPA command from deployment [#1970](https://github.com/openshift/hypershift/pull/1970) * Fast forward release-4.12 to main [#1964](https://github.com/openshift/hypershift/pull/1964) * Remove CAPI manager container command path [#1969](https://github.com/openshift/hypershift/pull/1969) * v1beta1: add missing S3 publishing strategy type [#1968](https://github.com/openshift/hypershift/pull/1968) * Fast forward 'release-4.12' branch to 'main' [#1932](https://github.com/openshift/hypershift/pull/1932) * [SDN-3508](https://issues.redhat.com/browse/SDN-3508): Add proxy env variables to CNO deployment [#1845](https://github.com/openshift/hypershift/pull/1845) * [MCO-258](https://issues.redhat.com/browse/MCO-258): inplaceupgrader: handle multiple upgrade versions [#1810](https://github.com/openshift/hypershift/pull/1810) * PowerVS Refactor docs - bug fixes [#1825](https://github.com/openshift/hypershift/pull/1825) * Docs: add nodes for InPlace Upgrade NodePools [#1805](https://github.com/openshift/hypershift/pull/1805) * network: Use non default ovn-k V4InternalSubnet at tenant [#1783](https://github.com/openshift/hypershift/pull/1783) * Adds davidvossel as approver [#1833](https://github.com/openshift/hypershift/pull/1833) * NodePool API: rename spec.tunedConfig to spec.tuningConfig [#1802](https://github.com/openshift/hypershift/pull/1802) * reduce konnectivity-agent log verbosity [#1828](https://github.com/openshift/hypershift/pull/1828) * add HC available duration metric [#1829](https://github.com/openshift/hypershift/pull/1829) * aws: use gp3-csi storage class by default [#1830](https://github.com/openshift/hypershift/pull/1830) * add note for public zone creation doc [#1827](https://github.com/openshift/hypershift/pull/1827) * PowerVS: Bug fix on flags usage [#1812](https://github.com/openshift/hypershift/pull/1812) * Clean up AWS endpointAccess + servicePublishingStrategy logic [#1803](https://github.com/openshift/hypershift/pull/1803) * Ensure kubevirt-csi containers all have resource.Requests and PullPolicy set [#1816](https://github.com/openshift/hypershift/pull/1816) * Add custom types for enum fields in PowerVSNodePoolPlatform [#1809](https://github.com/openshift/hypershift/pull/1809) * Updated Agent provider docs [#1814](https://github.com/openshift/hypershift/pull/1814) * Add KubeVirt Platform Owners [#1817](https://github.com/openshift/hypershift/pull/1817) * Add comments to clarify aws endpoints controllers [#1808](https://github.com/openshift/hypershift/pull/1808) * Fixing some doc typos and issues [#1742](https://github.com/openshift/hypershift/pull/1742) * KubeVirt CSI Driver Integration [#1733](https://github.com/openshift/hypershift/pull/1733) * feat: Added "Scale dataplane to zero" workflow to the documentation [#1804](https://github.com/openshift/hypershift/pull/1804) * [STOR-1040](https://issues.redhat.com/browse/STOR-1040): Render AWS CSI Driver credentials in the mgmt cluster [#1751](https://github.com/openshift/hypershift/pull/1751) * bug: Fixes HOSTEDCP-528, OIDCConfigurationInvalidReason should be always present [#1743](https://github.com/openshift/hypershift/pull/1743) * Extracts correct mco image based on managed cluster's arch [#1716](https://github.com/openshift/hypershift/pull/1716) * Fix image registry reconcile loop [#1794](https://github.com/openshift/hypershift/pull/1794) * Add CAPI provider image override for PowerVS [#1800](https://github.com/openshift/hypershift/pull/1800) * bug: HOSTEDCP-587 explain more in detail Public and PublicAndPrivate endpoint-access [#1788](https://github.com/openshift/hypershift/pull/1788) * Enable NodePool controller to apply generated MachineConfigs [#1729](https://github.com/openshift/hypershift/pull/1729) * Allow certain EndpointAccess transitions [#1761](https://github.com/openshift/hypershift/pull/1761) * increase loop detector threshold to 10 [#1801](https://github.com/openshift/hypershift/pull/1801) * Remove KubeletConfig & ContainerRuntimeConfig CRDs [#1775](https://github.com/openshift/hypershift/pull/1775) * HCCO: inplace upgrade: do not reconcile bare upgrade pod [#1799](https://github.com/openshift/hypershift/pull/1799) * Fix recreate issue on serviceID - MULTIARCH-2895 [#1753](https://github.com/openshift/hypershift/pull/1753) * Add compute and memory args for powervs e2e [#1797](https://github.com/openshift/hypershift/pull/1797) * test: e2e: exclude catalog pods from restart check [#1798](https://github.com/openshift/hypershift/pull/1798) * Update Dockerfiles for consistency [#1795](https://github.com/openshift/hypershift/pull/1795) * Make NodePool platform condition types generic [#1792](https://github.com/openshift/hypershift/pull/1792) * Ensure existing DHCP server is in ACTIVE state [#1784](https://github.com/openshift/hypershift/pull/1784) * Update Dockerfile with same labels as Dockerfile.control-plane [#1791](https://github.com/openshift/hypershift/pull/1791) * Expose HC NodeSelector in the cli [#1759](https://github.com/openshift/hypershift/pull/1759) * Add recording rule for NTO metric needed in telemetry [#1763](https://github.com/openshift/hypershift/pull/1763) * Use separate image for route controller manager [#1790](https://github.com/openshift/hypershift/pull/1790) * How to Migrate a HostedClusters among the same AWS Region [#1780](https://github.com/openshift/hypershift/pull/1780) * Update index.md. [#1535](https://github.com/openshift/hypershift/pull/1535) * Decompress and decode config if supported by current CPO [#1758](https://github.com/openshift/hypershift/pull/1758) * update OLM catalogs to 4.11 [#1746](https://github.com/openshift/hypershift/pull/1746) * Add image overrides [#1785](https://github.com/openshift/hypershift/pull/1785) * Specify ca for gitlab oauth only when passed as input [#1772](https://github.com/openshift/hypershift/pull/1772) * [STOR-1053](https://issues.redhat.com/browse/STOR-1053): Add storage objects to guest cluster dump [#1770](https://github.com/openshift/hypershift/pull/1770) * Add cloud.ibm.com into konnectivity cloudAPI [#1741](https://github.com/openshift/hypershift/pull/1741) * Add fallback for mco flags [#1781](https://github.com/openshift/hypershift/pull/1781) * Pass imagerefs to mco [#1773](https://github.com/openshift/hypershift/pull/1773) * install: add flag to wait for HyperShift operator rollout [#1760](https://github.com/openshift/hypershift/pull/1760) * gzip and base64-encode ignition configs [#1671](https://github.com/openshift/hypershift/pull/1671) * Add separate deployment for openshift route controller manager [#1756](https://github.com/openshift/hypershift/pull/1756) * Add release image validation for NodePools [#1709](https://github.com/openshift/hypershift/pull/1709) * Fix cmd.Context() usage in PowerVS [#1754](https://github.com/openshift/hypershift/pull/1754) * Refactor how-to docs [#1740](https://github.com/openshift/hypershift/pull/1740) * Increase DHCP service polling interval [#1739](https://github.com/openshift/hypershift/pull/1739) * Add Kubevirt Cloud Controller Manager [#1725](https://github.com/openshift/hypershift/pull/1725) * Ensure generated junit.xml has a defined suite name [#1712](https://github.com/openshift/hypershift/pull/1712) * Add cluster name prefix before secrets [#1730](https://github.com/openshift/hypershift/pull/1730) * [SDN-3283](https://issues.redhat.com/browse/SDN-3283): CNO: Add an environment variable with socks5-proxy image [#1731](https://github.com/openshift/hypershift/pull/1731) * Revert "Make zone spread only apply within a given revision" [#1744](https://github.com/openshift/hypershift/pull/1744) * remove alvaroaleman and ironcladlou from OWNERS [#1745](https://github.com/openshift/hypershift/pull/1745) * Make zone spread only apply within a given revision [#1724](https://github.com/openshift/hypershift/pull/1724) * Route LDAP IDPs in the oauth server through guest VPC [#1680](https://github.com/openshift/hypershift/pull/1680) * Add missing rbac for authentication reader [#1734](https://github.com/openshift/hypershift/pull/1734) * Add nodepool create cmd for PowerVS [#1726](https://github.com/openshift/hypershift/pull/1726) * Add PowerVS OVN Kube routing config [#1718](https://github.com/openshift/hypershift/pull/1718) * Add granular access for PowerVS using cloud credential operator and add storage operator creds [#1612](https://github.com/openshift/hypershift/pull/1612) * Enable Node Tuning Operator in HyperShift [#1651](https://github.com/openshift/hypershift/pull/1651) * Refactor PowerVS changes [#1682](https://github.com/openshift/hypershift/pull/1682) * fix(oauth): Do not proxy IBM Cloud IAM endpoints [#1722](https://github.com/openshift/hypershift/pull/1722) * Bug SDN-3459: Handle long OVN SBDB route hostname [#1711](https://github.com/openshift/hypershift/pull/1711) * fix(pki): Allow BYO PKI for ignition server [#1721](https://github.com/openshift/hypershift/pull/1721) * Set DNS server explicitly while creating DHCP [#1720](https://github.com/openshift/hypershift/pull/1720) * Fix CLI panic when status.version is nil [#1715](https://github.com/openshift/hypershift/pull/1715) * OVN SBDB: Use private router when possible [#1689](https://github.com/openshift/hypershift/pull/1689) * Registry operator: Avoid restarts when token file changes [#1713](https://github.com/openshift/hypershift/pull/1713) * HO: Ignore NoSuchBucket error when deleting OIDC docs [#1714](https://github.com/openshift/hypershift/pull/1714) * Add a drain controller for inplace upgrades [#1691](https://github.com/openshift/hypershift/pull/1691) * Reconcile default ingress controller on creation only [#1710](https://github.com/openshift/hypershift/pull/1710) * [NE-1043](https://issues.redhat.com/browse/NE-1043): Move the DNS operator into the management cluster [#1537](https://github.com/openshift/hypershift/pull/1537) * Add node controller to HCCO Manager [#1702](https://github.com/openshift/hypershift/pull/1702) * Add recording rules for telemetry [#1690](https://github.com/openshift/hypershift/pull/1690) * Destroy: Don't fail if finalizer can not be added [#1707](https://github.com/openshift/hypershift/pull/1707) * Upgrade AWS SDK [#1701](https://github.com/openshift/hypershift/pull/1701) * Use kubeconfig port for worker haproxy [#1708](https://github.com/openshift/hypershift/pull/1708) * Set right API group [#1706](https://github.com/openshift/hypershift/pull/1706) * AWS infra destroy: Handle bucket not found during batch delete [#1700](https://github.com/openshift/hypershift/pull/1700) * Cleanup etcd rule manifest in CVO [#1699](https://github.com/openshift/hypershift/pull/1699) * Oauth: Fix hostname when using DNS indirection and no public router LB [#1705](https://github.com/openshift/hypershift/pull/1705) * Fix clusters where apiserver is exposed through LB and DNS indirection is used [#1696](https://github.com/openshift/hypershift/pull/1696) * Update external-dns image [#1694](https://github.com/openshift/hypershift/pull/1694) * Move Cloud network config controller to the management cluster [#1679](https://github.com/openshift/hypershift/pull/1679) * Allow OpenShiftSDN CNI for PowerVS platform [#1693](https://github.com/openshift/hypershift/pull/1693) * Add CIDR checks to webhook on create [#1688](https://github.com/openshift/hypershift/pull/1688) * Fix clusters that use LB expose strategy with a custom port [#1683](https://github.com/openshift/hypershift/pull/1683) * Validate OCP release version and SDN on initial install [#1686](https://github.com/openshift/hypershift/pull/1686) * Reconcile spec of clusterversion resource [#1687](https://github.com/openshift/hypershift/pull/1687) * APIServer route expose strategy: Fix with private clusters [#1685](https://github.com/openshift/hypershift/pull/1685) * remove external-dns provider variable from openshift template parameters [#1684](https://github.com/openshift/hypershift/pull/1684) * E2E: Fix flakes due to inability of finding matching nodepools [#1681](https://github.com/openshift/hypershift/pull/1681) * Enable cleaning up of hosted cluster cloud resources on destroy [#1672](https://github.com/openshift/hypershift/pull/1672) * ClusterID and infraID should be immutable. [#1660](https://github.com/openshift/hypershift/pull/1660) * Correctly manage infra status condition when there is no LB controller [#1678](https://github.com/openshift/hypershift/pull/1678) * Fix Switch to library-go to compute audit profile audit policy [#1677](https://github.com/openshift/hypershift/pull/1677) * Add IBMPowerVSCluster to status subresource set [#1676](https://github.com/openshift/hypershift/pull/1676) * OAuth: do not reference paths for empty optional secrets or configmaps [#1674](https://github.com/openshift/hypershift/pull/1674) * Honor the debug-deployments annotation [#1673](https://github.com/openshift/hypershift/pull/1673) * Ignition server: Use common pki code [#1657](https://github.com/openshift/hypershift/pull/1657) * Fix router reconciliation when apiserver is exposed through LB [#1669](https://github.com/openshift/hypershift/pull/1669) * E2E: Consistently use Patch to avoid conflict failures [#1664](https://github.com/openshift/hypershift/pull/1664) * Fix e2e powervs destroy opts [#1650](https://github.com/openshift/hypershift/pull/1650) * Drop insecure port on router to save rules [#1668](https://github.com/openshift/hypershift/pull/1668) * external-dns settings for operator install template rendering [#1666](https://github.com/openshift/hypershift/pull/1666) * PowerVS: Add provider id fmt for capi deployment [#1665](https://github.com/openshift/hypershift/pull/1665) * Registry operator: Set proxy vars [#1663](https://github.com/openshift/hypershift/pull/1663) * A few simple kubebuilder validations. [#1658](https://github.com/openshift/hypershift/pull/1658) * Ingress endpoint [#1597](https://github.com/openshift/hypershift/pull/1597) * Add rbac so route-to-ingress controller can do its leader election [#1662](https://github.com/openshift/hypershift/pull/1662) * Move image registry operator to control plane [#1643](https://github.com/openshift/hypershift/pull/1643) * CI script to install hypershift from pre-release MCE catalog source [#1648](https://github.com/openshift/hypershift/pull/1648) * Add a helper to create SA kubeconfigs [#1654](https://github.com/openshift/hypershift/pull/1654) * HCCO: Use cpo manifests for references [#1645](https://github.com/openshift/hypershift/pull/1645) * Increase the unittest timeout to 20m from the default 10m [#1653](https://github.com/openshift/hypershift/pull/1653) * Add unittests for haproxy config generation [#1652](https://github.com/openshift/hypershift/pull/1652) * Drop hypershift-operator util and consolidate with support [#1647](https://github.com/openshift/hypershift/pull/1647) * HO: Fix haproxy to have apiserver external address for public clusters [#1649](https://github.com/openshift/hypershift/pull/1649) * Self image lookup: Retry on empty string [#1628](https://github.com/openshift/hypershift/pull/1628) * private aws cluster guide - update IAM policy example [#1641](https://github.com/openshift/hypershift/pull/1641) * Introduce node selector support for HostedClusters [#1592](https://github.com/openshift/hypershift/pull/1592) * Fix nil pointer dereference for hostedControlPlane.Spec.Etcd.Managed [#1638](https://github.com/openshift/hypershift/pull/1638) * doc(aws): markdown formatting updates [#1637](https://github.com/openshift/hypershift/pull/1637) * additional trust bundle into vm [#1633](https://github.com/openshift/hypershift/pull/1633) * doc(how-to/aws/create-aws-multi-az): fix getting started path [#1636](https://github.com/openshift/hypershift/pull/1636) * fix(ho): honor deprecated global config fields [#1631](https://github.com/openshift/hypershift/pull/1631) * Add Handling Ingress to Agent docs [#1635](https://github.com/openshift/hypershift/pull/1635) * E2E etcd tests: Always run on none platform [#1629](https://github.com/openshift/hypershift/pull/1629) * Wait for LB even when hostname is specified [#1632](https://github.com/openshift/hypershift/pull/1632) * Add tuning option of AccessModes for Kubevirt NodePool root volume [#1583](https://github.com/openshift/hypershift/pull/1583) * Enforce aws cluster cloud provider tag in NodePool controller [#1625](https://github.com/openshift/hypershift/pull/1625) * Add ovn-k specific collection commands [#1604](https://github.com/openshift/hypershift/pull/1604) * set condition messsage when waiting for kas readiness [#1627](https://github.com/openshift/hypershift/pull/1627) * CPO: Unittest and fix eventhandling of HCP controller [#1605](https://github.com/openshift/hypershift/pull/1605) * Fix additionalTrustBundle with local ignition provider [#1626](https://github.com/openshift/hypershift/pull/1626) * ensure optional mount always added to ibmcloud kms pod for appropriate container build [#1621](https://github.com/openshift/hypershift/pull/1621) * fix(api): make HCP networking optional for backward compatibility [#1624](https://github.com/openshift/hypershift/pull/1624) * Add flags for destroy cluster powervs command [#1613](https://github.com/openshift/hypershift/pull/1613) * PowerVS: upgrade capi image [#1618](https://github.com/openshift/hypershift/pull/1618) * Remove .status from serialized configuration on HCP [#1617](https://github.com/openshift/hypershift/pull/1617) * stop clearing configMapRef and secretRef since it breaks reconciliation of existing production workload using these fields [#1610](https://github.com/openshift/hypershift/pull/1610) * ensure 4.9 openshift clusters can be managed by hypershift [#1608](https://github.com/openshift/hypershift/pull/1608) * ensure release image annotation set on control-plane-operator [#1607](https://github.com/openshift/hypershift/pull/1607) * Use non-strict mode when parsing global config [#1616](https://github.com/openshift/hypershift/pull/1616) * Rename PowerVS CCM public endpoint env variable [#1611](https://github.com/openshift/hypershift/pull/1611) * Create kubeconfig: Respect namespace [#1562](https://github.com/openshift/hypershift/pull/1562) * Add dual-stack support to HostedCluster [#1533](https://github.com/openshift/hypershift/pull/1533) * fix(ho): detect capabilities on API resource availability [#1600](https://github.com/openshift/hypershift/pull/1600) * Update Agent docs on setting hostname and disk [#1606](https://github.com/openshift/hypershift/pull/1606) * Add HC condition message in non-error states [#1602](https://github.com/openshift/hypershift/pull/1602) * Add min supported version check for isValidReleaseVersion [#1591](https://github.com/openshift/hypershift/pull/1591) * Socks 5 proxy: Only use mgmt cluster for cloud apis for ingress operator [#1601](https://github.com/openshift/hypershift/pull/1601) * Docs: develop-in-cluster.md minor fix [#1603](https://github.com/openshift/hypershift/pull/1603) * Use non-default path for user CA certs [#1593](https://github.com/openshift/hypershift/pull/1593) * Fix comments/docs in AWSRoleRefs [#1588](https://github.com/openshift/hypershift/pull/1588) * Add e2e changes for PowerVS [#1590](https://github.com/openshift/hypershift/pull/1590) * PowerVS: Add DNS record check in base-domain [#1587](https://github.com/openshift/hypershift/pull/1587) * Sort deployments for Degraded condition check [#1595](https://github.com/openshift/hypershift/pull/1595) * Add controller that installs UWM and configures it for telemetry [#1584](https://github.com/openshift/hypershift/pull/1584) * Add latest version check and unit test isValidReleaseVersion [#1582](https://github.com/openshift/hypershift/pull/1582) * Add control plane operator component template label to components missing it [#1579](https://github.com/openshift/hypershift/pull/1579) * PowerVS: Add DNS Record and VPC LB deletion [#1521](https://github.com/openshift/hypershift/pull/1521) * Add check for AWS ARNs [#1581](https://github.com/openshift/hypershift/pull/1581) * TestOLM: Don't hardcode to AWS [#1574](https://github.com/openshift/hypershift/pull/1574) * E2E: Don't retry destroy if it failed due to NoCredentialProviders [#1572](https://github.com/openshift/hypershift/pull/1572) * Add label to supported versions configmap [#1580](https://github.com/openshift/hypershift/pull/1580) * Add priority classes for autoscaler and mapprover [#1578](https://github.com/openshift/hypershift/pull/1578) * add Degraded condition to HostedCluster [#1569](https://github.com/openshift/hypershift/pull/1569) * Add configmap containing supported versions to hypershift namespace [#1575](https://github.com/openshift/hypershift/pull/1575) * Destroy: Use patch for modifying finalizer to not get conflicts [#1573](https://github.com/openshift/hypershift/pull/1573) * TestAutoscaling: Fix to work on Azure [#1551](https://github.com/openshift/hypershift/pull/1551) * PowerVS Infra bug fix on DHCP error return and removed a debug log [#1548](https://github.com/openshift/hypershift/pull/1548) * Drop unsued domain in ReconcilePrivateRouterDeployment signature [#1556](https://github.com/openshift/hypershift/pull/1556) * Add link to CloudProviderConfig code [#1555](https://github.com/openshift/hypershift/pull/1555) * install: add operator-only option for OCP metrics [#1476](https://github.com/openshift/hypershift/pull/1476) * E2E: Stop retrying destroy if inputs are missing [#1564](https://github.com/openshift/hypershift/pull/1564) * add Degraded condition to HCP [#1560](https://github.com/openshift/hypershift/pull/1560) * E2E: Use zaptest logger for dumping and AWS/Azure destroy [#1559](https://github.com/openshift/hypershift/pull/1559) * Azure: Make disk type configurable and default to SSD instead of HDD [#1565](https://github.com/openshift/hypershift/pull/1565) * Align api/fixtures code platform wise [#1558](https://github.com/openshift/hypershift/pull/1558) * Add field reporting of immutable errors. [#1508](https://github.com/openshift/hypershift/pull/1508) * add label to all CPO managed deployments in the HCP [#1554](https://github.com/openshift/hypershift/pull/1554) * Remove unused return value [#1557](https://github.com/openshift/hypershift/pull/1557) * E2E: Use zaptest logger for cluster creation [#1553](https://github.com/openshift/hypershift/pull/1553) * Add Progressing condition to HostedCluster [#1546](https://github.com/openshift/hypershift/pull/1546) * Fix ManagedCAObserver racing with CPO [#1547](https://github.com/openshift/hypershift/pull/1547) * Fail gracefully if s3 bucket is already deleted. [#1552](https://github.com/openshift/hypershift/pull/1552) * Azure: Tolerate 404 when destroying infra [#1545](https://github.com/openshift/hypershift/pull/1545) * Rename OpenshiftSDN to OpenShiftSDN [#1549](https://github.com/openshift/hypershift/pull/1549) * Add rules for telemetry metrics [#1544](https://github.com/openshift/hypershift/pull/1544) * Added changes for serviceID API Key to access resources [#1529](https://github.com/openshift/hypershift/pull/1529) * HO: Add a reconciliation success condition [#1527](https://github.com/openshift/hypershift/pull/1527) * Fix logging arguments to not be odd [#1530](https://github.com/openshift/hypershift/pull/1530) * Add fallback set cache value from old token [#1523](https://github.com/openshift/hypershift/pull/1523) * Ensure that we always create a tar archive of the dump. [#1528](https://github.com/openshift/hypershift/pull/1528) * Oauth server: Route external traffic through guest cluster [#1522](https://github.com/openshift/hypershift/pull/1522) * Fix typo in namespace [#1526](https://github.com/openshift/hypershift/pull/1526) * Etcd backup/restore (manual process) [#1239](https://github.com/openshift/hypershift/pull/1239) * Updating hypershift images to be consistent with ART [#1525](https://github.com/openshift/hypershift/pull/1525) * invert conditions that are false in expected state [#1520](https://github.com/openshift/hypershift/pull/1520) * feat(oauth): allow challenge override for OpenID [#1513](https://github.com/openshift/hypershift/pull/1513) * Move TestReconcileDeprecatedGlobalConfig to proper file [#1519](https://github.com/openshift/hypershift/pull/1519) * Run reconcileDeprecated* earlier [#1518](https://github.com/openshift/hypershift/pull/1518) * Update IBM Cloud SDK packages & capiIBM image [#1504](https://github.com/openshift/hypershift/pull/1504) * Align aws creds backward compatible [#1516](https://github.com/openshift/hypershift/pull/1516) * E2E dump: Do not require platform opt-in for dump to work [#1515](https://github.com/openshift/hypershift/pull/1515) * Add PlatformCredentialsFound condition to report missing platform creds [#1512](https://github.com/openshift/hypershift/pull/1512) * kube-apiserver-proxy use privatelink for private clusters [#1509](https://github.com/openshift/hypershift/pull/1509) * Move reconciliation [#1234](https://github.com/openshift/hypershift/pull/1234) * PowerVS : CIS Domain nextUrl usage fixed [#1505](https://github.com/openshift/hypershift/pull/1505) * Add ClusterVersionUpgradeable condition, upgrade block, and override annotation [#1498](https://github.com/openshift/hypershift/pull/1498) * Set Recommended Leader Election Values [#1465](https://github.com/openshift/hypershift/pull/1465) * Use Patch instead of Update to prevent error. [#1499](https://github.com/openshift/hypershift/pull/1499) * Get rid of hostedapicache by using HCCO [#1496](https://github.com/openshift/hypershift/pull/1496) * feat(cpo): Support disable profiling annotation [#1481](https://github.com/openshift/hypershift/pull/1481) * powervs: Added inbound access rules for VPC security group to allow http & https [#1491](https://github.com/openshift/hypershift/pull/1491) * Rename hypershift operator metrics [#1492](https://github.com/openshift/hypershift/pull/1492) * nodepool controller: remove right condition type [#1493](https://github.com/openshift/hypershift/pull/1493) * HO: Fix raw extension generation for hcp configuration [#1487](https://github.com/openshift/hypershift/pull/1487) * Excempt build controller SA from PodSecurity admission [#1488](https://github.com/openshift/hypershift/pull/1488) * Update controller-runtime to get fix for global log override bug [#1485](https://github.com/openshift/hypershift/pull/1485) * docs: agent: AgentServiceConfig script used fixed version instead of latest [#1484](https://github.com/openshift/hypershift/pull/1484) * Add PowerVS Ingress Operator Changes [#1458](https://github.com/openshift/hypershift/pull/1458) * Improve user experience of HostedCluster configuration API [#1463](https://github.com/openshift/hypershift/pull/1463) * Updated secret permissions to conform to kubernetes CIS benchmark [#1477](https://github.com/openshift/hypershift/pull/1477) * The ValidateReleaseImage was returning an error stating it could not find the pull-secret and blocked HC [#1472](https://github.com/openshift/hypershift/pull/1472) * Reduce HyperShift operator metrics cardinality [#1467](https://github.com/openshift/hypershift/pull/1467) * docs: refactor agent documentation [#1466](https://github.com/openshift/hypershift/pull/1466) * inplaceupgrader: switch to using payload MCO image [#1459](https://github.com/openshift/hypershift/pull/1459) * Drop kas call in agent ReconcileCAPIInfraCR and fail if no ign [#1469](https://github.com/openshift/hypershift/pull/1469) * Add ValidReleaseImage condition to HostedCluster [#1296](https://github.com/openshift/hypershift/pull/1296) * Add missing control plane prometheus rules [#1406](https://github.com/openshift/hypershift/pull/1406) * Use right conditions reason for inplace upgrade [#1464](https://github.com/openshift/hypershift/pull/1464) * Ensure cache is set during token rotation before reconciling [#1460](https://github.com/openshift/hypershift/pull/1460) * [Bug 2089224](https://bugzilla.redhat.com/show_bug.cgi?id=2089224): Remove monitoring config reconciliation [#1420](https://github.com/openshift/hypershift/pull/1420) * add allowed CIDR blocks to HostedCluster API [#1429](https://github.com/openshift/hypershift/pull/1429) * nat gateway: check for invalid eip [#1457](https://github.com/openshift/hypershift/pull/1457) * Add PowerVS Cloud Controller Manager [#1422](https://github.com/openshift/hypershift/pull/1422) * Fix the private router to work on a 4.11 mgmt cluster [#1453](https://github.com/openshift/hypershift/pull/1453) * E2E: Add TestNodepoolMachineconfigGetsRolledout [#1339](https://github.com/openshift/hypershift/pull/1339) * e2e: notice FailedScheduling or Preempted events [#1332](https://github.com/openshift/hypershift/pull/1332) * Trim `docker-pullable://` prefix when reading imageID from container status [#1449](https://github.com/openshift/hypershift/pull/1449) * Set snapshot-count on etcd to limit memory usage variability [#1448](https://github.com/openshift/hypershift/pull/1448) * Add memory rss recording rule [#1447](https://github.com/openshift/hypershift/pull/1447) * Manage ignition server from CPO [#1446](https://github.com/openshift/hypershift/pull/1446) * Add recording rule for cpu requests [#1445](https://github.com/openshift/hypershift/pull/1445) * Adjust memory requests to align with PerfScale recommendations [#1444](https://github.com/openshift/hypershift/pull/1444) * Enable passing -run parameter in ci-test-e2e [#1441](https://github.com/openshift/hypershift/pull/1441) * Add recording rule for component memory requests [#1442](https://github.com/openshift/hypershift/pull/1442) * add api-server-address flags to kubevirt and agent cluster create [#1440](https://github.com/openshift/hypershift/pull/1440) * CNO operands use private APIServer address when HCP is private [#1433](https://github.com/openshift/hypershift/pull/1433) * Remove unused kubevirt specific e2e test [#1436](https://github.com/openshift/hypershift/pull/1436) * Fix the e2e-kubevirt-gcp-ovn CI lane [#1434](https://github.com/openshift/hypershift/pull/1434) * Increase MHC nodeStartupTimeout [#1435](https://github.com/openshift/hypershift/pull/1435) * aws private link controller: improve error messages [#1432](https://github.com/openshift/hypershift/pull/1432) * Use git commit as version in HyperShift binaries [#1431](https://github.com/openshift/hypershift/pull/1431) * Scrape all KAS metrics inside guest cluster [#1421](https://github.com/openshift/hypershift/pull/1421) * Nodepool: Insert the worker role label [#1428](https://github.com/openshift/hypershift/pull/1428) * KCM: Set leader election args [#1427](https://github.com/openshift/hypershift/pull/1427) * Tests: Enable junit [#1411](https://github.com/openshift/hypershift/pull/1411) * Set autoscaler CAPI group explicitely [#1425](https://github.com/openshift/hypershift/pull/1425) * Add local timeouts for e2e tests [#1424](https://github.com/openshift/hypershift/pull/1424) * hack/publish-ocp.sh fix cut syntax [#1417](https://github.com/openshift/hypershift/pull/1417) * KAS: Stop setting removed --enable-swagger-ui flag [#1418](https://github.com/openshift/hypershift/pull/1418) * Added PowerVS Cluster Create & Destroy [#1381](https://github.com/openshift/hypershift/pull/1381) * Ensure that the private router pod uses the HC's pull secret [#1413](https://github.com/openshift/hypershift/pull/1413) * Loopdetector: Give some more leeway [#1412](https://github.com/openshift/hypershift/pull/1412) * adopt existing immutable selectors to prevent errors reconciling components from roks toolkit clusters [#1403](https://github.com/openshift/hypershift/pull/1403) * Fix(cpo): Propagate TLS security profile config to kube-controller-manager and kube-scheduler [#1388](https://github.com/openshift/hypershift/pull/1388) * Allow nodepool deletion when hcluster is gone [#1408](https://github.com/openshift/hypershift/pull/1408) * Operator image lookup: Use sha256 rather than tag [#1303](https://github.com/openshift/hypershift/pull/1303) * e2e: increase budget to only catch extreme situations [#1407](https://github.com/openshift/hypershift/pull/1407) * Change infrastructureAvailabilityPolicy default to single replica [#1405](https://github.com/openshift/hypershift/pull/1405) * feat(cpo): adhere to upgrade order from kube version skew policy [#1322](https://github.com/openshift/hypershift/pull/1322) * Make kubevirt compatible with generic e2e tests [#1377](https://github.com/openshift/hypershift/pull/1377) * Add allowed principals to service endpoints [#1402](https://github.com/openshift/hypershift/pull/1402) * Ignition server: Use https health check if possible [#1392](https://github.com/openshift/hypershift/pull/1392) * Nodepool render: Avoid including a logline [#1401](https://github.com/openshift/hypershift/pull/1401) * Replace router shard with private router in control plane namespace [#1398](https://github.com/openshift/hypershift/pull/1398) * Add inplace upgrader controller to hcco [#1382](https://github.com/openshift/hypershift/pull/1382) * Expose HostedCluster and NodePool metrics in HyperShift operator [#1376](https://github.com/openshift/hypershift/pull/1376) * HAProxy ignition config: Use nodepool release image [#1394](https://github.com/openshift/hypershift/pull/1394) * Change ignition server http code if token not found. [#1399](https://github.com/openshift/hypershift/pull/1399) * AWS: Deploy Pod Identity Webhook [#1351](https://github.com/openshift/hypershift/pull/1351) * Add docs section for goals and design invariants [#1396](https://github.com/openshift/hypershift/pull/1396) * Add sane defaults for InfrastructureAvailabilityPolicy and ControllerAvailabilityPolicy [#1395](https://github.com/openshift/hypershift/pull/1395) * Bump kube depedencies and controller-runtime to 1.24 level [#1393](https://github.com/openshift/hypershift/pull/1393) * Delete endpoint connections before deleting endpoint services [#1390](https://github.com/openshift/hypershift/pull/1390) * Add more resources to hypershift dump cmd [#1389](https://github.com/openshift/hypershift/pull/1389) * test: adjust HO mutate budget [#1385](https://github.com/openshift/hypershift/pull/1385) * e2e: Increase parallel test limit [#1384](https://github.com/openshift/hypershift/pull/1384) * Update KubeVirt Doc to indicate RHCOS is no longer a required cli arg [#1374](https://github.com/openshift/hypershift/pull/1374) * Tag endpoint services with the mgmt cluster infra ID [#1380](https://github.com/openshift/hypershift/pull/1380) * fix Makefile [#1375](https://github.com/openshift/hypershift/pull/1375) * Add IBMCloud PowerVS infra create & destroy [#1280](https://github.com/openshift/hypershift/pull/1280) * Prevent update of a MachineDeployment after it is initially created [#1373](https://github.com/openshift/hypershift/pull/1373) * Make the binaries contain the commit version [#1324](https://github.com/openshift/hypershift/pull/1324) * Make CI master nodes schedulable for cnv VMs [#1369](https://github.com/openshift/hypershift/pull/1369) * test: update API budget [#1372](https://github.com/openshift/hypershift/pull/1372) * Update loopdetector to not get tripped by inplace upgrade [#1370](https://github.com/openshift/hypershift/pull/1370) * add ci-test-e2e target to Makefile [#1368](https://github.com/openshift/hypershift/pull/1368) * Add resource requests to cluster-api-provider-kubevirt container [#1366](https://github.com/openshift/hypershift/pull/1366) * fix(cpo): Scope down secrets access for olm collect profiles cj [#1349](https://github.com/openshift/hypershift/pull/1349) * Add image-content-sources option to create cluster CLI [#1355](https://github.com/openshift/hypershift/pull/1355) * Add a sidecar to the KAS that tails the audit log [#1308](https://github.com/openshift/hypershift/pull/1308) * Autodetect KubeVirt disk image using release payload [#1352](https://github.com/openshift/hypershift/pull/1352) * Refactor e2e test common cleanup [#1345](https://github.com/openshift/hypershift/pull/1345) * Upgrade test: Stop verifying the nodecount [#1367](https://github.com/openshift/hypershift/pull/1367) * Set shutdown params to improve graceful shutdown [#1365](https://github.com/openshift/hypershift/pull/1365) * Nodepool in-place upgrade: Reduce api requests [#1358](https://github.com/openshift/hypershift/pull/1358) * Etcd: Keep etcd_server_leader_changes_seen_total metric [#1363](https://github.com/openshift/hypershift/pull/1363) * Add hostedClusterAvailable check for in place upgrades [#1340](https://github.com/openshift/hypershift/pull/1340) * move to ga apis for all components now that management clusters at minimum release boundary [#1350](https://github.com/openshift/hypershift/pull/1350) * E2E: Stop hardcoding network type [#1331](https://github.com/openshift/hypershift/pull/1331) * configure cipher suites to prevent using medium strength ssl ciphers [#1357](https://github.com/openshift/hypershift/pull/1357) * fix the region parameter in app-sre templates [#1356](https://github.com/openshift/hypershift/pull/1356) * Revise and simplify NodePool's KubeVirt platform API [#1314](https://github.com/openshift/hypershift/pull/1314) * fix panic due to race on hosted API cache start [#1348](https://github.com/openshift/hypershift/pull/1348) * Change webhook to implement webhook.CustomValidator [#1346](https://github.com/openshift/hypershift/pull/1346) * Add Metrics Set for Telemetry metrics [#1294](https://github.com/openshift/hypershift/pull/1294) * Cancel context to kill watch guest cluster subroutines [#1341](https://github.com/openshift/hypershift/pull/1341) * Add docs for versioning support [#1343](https://github.com/openshift/hypershift/pull/1343) * Dump: Dump namespaces, rbac and SCCs of hosted cluster [#1336](https://github.com/openshift/hypershift/pull/1336) * create infra aws: set minimum on private zone SOA records [#1337](https://github.com/openshift/hypershift/pull/1337) * Enforce pull policy for all capi providers [#1334](https://github.com/openshift/hypershift/pull/1334) * Add test for NodePools in place upgrades [#1290](https://github.com/openshift/hypershift/pull/1290) * adjust CPO resource requests [#1330](https://github.com/openshift/hypershift/pull/1330) * Fix webhook to allow apiserver port defaulting and add tests [#1313](https://github.com/openshift/hypershift/pull/1313) * Add OAuthURL to HostedCluster status [#1320](https://github.com/openshift/hypershift/pull/1320) * e2e: log the error when failing to connect to the guest KAS [#1318](https://github.com/openshift/hypershift/pull/1318) * Export `ign_server_payload_generation_seconds` metric and add e2e budget [#1316](https://github.com/openshift/hypershift/pull/1316) * Rename nodepool.spec.nodeCount to replicas [#1205](https://github.com/openshift/hypershift/pull/1205) * E2E: Allow configuring a SSH key [#1329](https://github.com/openshift/hypershift/pull/1329) * Reduce KubeVirt e2e test flakiness [#1321](https://github.com/openshift/hypershift/pull/1321) * Omit MachineConfig and MachineConfigPool CRDs from release payload [#1295](https://github.com/openshift/hypershift/pull/1295) * Retry NAT Gateway creation [#1328](https://github.com/openshift/hypershift/pull/1328) * Add retries and debug output to journal dump [#1327](https://github.com/openshift/hypershift/pull/1327) * Use apiserver host/port from InfraStatus in reconciling Kube API Server [#1319](https://github.com/openshift/hypershift/pull/1319) * Ensure that everything uses imagePullPolicy IfNotPresent for resiliency [#1304](https://github.com/openshift/hypershift/pull/1304) * Ignition server: Actually use workdir [#1312](https://github.com/openshift/hypershift/pull/1312) * disable reconcile of registry config in IBMCloud deployments [#1305](https://github.com/openshift/hypershift/pull/1305) * e2e: report elapsed time for each test step [#1307](https://github.com/openshift/hypershift/pull/1307) * Use forked processes instead of pods to generate ignition payload [#1214](https://github.com/openshift/hypershift/pull/1214) * Updating hypershift images to be consistent with ART [#1288](https://github.com/openshift/hypershift/pull/1288) * Update KubeVirt platform to work with OVNKubernetes [#1277](https://github.com/openshift/hypershift/pull/1277) * Azure: Add missing csi driver secret [#1302](https://github.com/openshift/hypershift/pull/1302) * Add missing resource requests for Azure CAPI provider [#1300](https://github.com/openshift/hypershift/pull/1300) * Allow running e2e tests for azure [#1299](https://github.com/openshift/hypershift/pull/1299) * Sync KAS PSP configuration with what kas operator does [#1292](https://github.com/openshift/hypershift/pull/1292) * feat(cpo): Disable PodSecurity for 4.10 [#1287](https://github.com/openshift/hypershift/pull/1287) * Installer assets for CAPIBM used by PowerVS [#1279](https://github.com/openshift/hypershift/pull/1279) * Use go 1.18 for CI builds [#1244](https://github.com/openshift/hypershift/pull/1244) * Drop outdated TODO for machine configs [#1285](https://github.com/openshift/hypershift/pull/1285) * Configure the CNO to proxy the apiserver for public clusters [#1283](https://github.com/openshift/hypershift/pull/1283) * contrib: admission-tracer for API call tracing [#1281](https://github.com/openshift/hypershift/pull/1281) * avoid no-op status updates to AWSEndpointServices [#1276](https://github.com/openshift/hypershift/pull/1276) * inplace upgrade: add initial upgrade logic [#1258](https://github.com/openshift/hypershift/pull/1258) * Begin using KubeVirt as the infrastructure platform instead of None [#1282](https://github.com/openshift/hypershift/pull/1282) * Add cleanup manifest for existing CNO [#1278](https://github.com/openshift/hypershift/pull/1278) * Introduce IBMPowerVS platform [#1255](https://github.com/openshift/hypershift/pull/1255) * e2e: update HO budgets [#1274](https://github.com/openshift/hypershift/pull/1274) * konnectivity ds: Tolerate all taints [#1272](https://github.com/openshift/hypershift/pull/1272) * Add tests for network defaulting [#1273](https://github.com/openshift/hypershift/pull/1273) * Use '--' for flags in kms token minter container [#1270](https://github.com/openshift/hypershift/pull/1270) * Default network to SDN if minor < 11 [#1271](https://github.com/openshift/hypershift/pull/1271) * Konnektivity: Set proxy env vars [#1267](https://github.com/openshift/hypershift/pull/1267) * Use OVNKubernetes as default network type [#1268](https://github.com/openshift/hypershift/pull/1268) * e2e: fix early exit on destroy infra aws [#1269](https://github.com/openshift/hypershift/pull/1269) * Move CNO into management cluster / add OVN to types [#1253](https://github.com/openshift/hypershift/pull/1253) * e2e: add AWS cluster create test [#1260](https://github.com/openshift/hypershift/pull/1260) * Set network status if empty [#1266](https://github.com/openshift/hypershift/pull/1266) * exclude InfraID from immutability check [#1264](https://github.com/openshift/hypershift/pull/1264) * e2e: Add a nodepool upgrade test [#1257](https://github.com/openshift/hypershift/pull/1257) * Expose a service account signing key in the API [#1259](https://github.com/openshift/hypershift/pull/1259) * destroy infra aws: delete network LBs and reduce dependency error noise [#1263](https://github.com/openshift/hypershift/pull/1263) * add update validation logic to HostedCluster webhook [#1262](https://github.com/openshift/hypershift/pull/1262) * reconcile oauth serving cert rbac to allow oauth proxies in the openshift-monitoring namespace to work [#1256](https://github.com/openshift/hypershift/pull/1256) * Add validating webhook for HostedClusters [#1241](https://github.com/openshift/hypershift/pull/1241) * ensure release image annotation added to deployment template metadata to enable proper detection in IBM Cloud deployment process [#1251](https://github.com/openshift/hypershift/pull/1251) * Fix kubernetes.default for public clusters with proxy [#1249](https://github.com/openshift/hypershift/pull/1249) * continue to allow support for specification of clusterAutoscalerImage… [#1250](https://github.com/openshift/hypershift/pull/1250) * Make HyperShift operator compatible with previous CPOs without utilities [#1245](https://github.com/openshift/hypershift/pull/1245) * AWS infra destroy, handle empty instanceIDs [#1246](https://github.com/openshift/hypershift/pull/1246) * ensure imagePullPolicies are IfNotPresent for some deployments [#1242](https://github.com/openshift/hypershift/pull/1242) * Disable PodSecurity admission in 4.11 as it breaks conformance [#1243](https://github.com/openshift/hypershift/pull/1243) * Signal parsing config failure in a condition [#1240](https://github.com/openshift/hypershift/pull/1240) * Enforce hostedcluster service route immutability constraints [#1238](https://github.com/openshift/hypershift/pull/1238) * Create valid route names with long namespace names [#1220](https://github.com/openshift/hypershift/pull/1220) * Add support to set up a http proxy for guest clusters [#1236](https://github.com/openshift/hypershift/pull/1236) * Do not wait on capi clusterrolebinding delete [#1237](https://github.com/openshift/hypershift/pull/1237) * Introduce logic to accommodate in place upgrades. [#1227](https://github.com/openshift/hypershift/pull/1227) * Add node troubleshooting documentation [#1232](https://github.com/openshift/hypershift/pull/1232) * Remove `ValidAMI` AWS NodePool condition when AMI is user-defined [#1235](https://github.com/openshift/hypershift/pull/1235) * [Full changelog](https://github.com/openshift/hypershift/compare/13fd957d2af1a182f84e112e06c5b47d94ada2f1...da93f69c5c56fe938e65115dd08428604ed42bed) ### [ibm-cloud-controller-manager](https://github.com/openshift/cloud-provider-ibm/tree/8bd0ea8fadbbb09ed912984d3dc6903a0aad0562) * [OCPBUGS-24644](https://issues.redhat.com/browse/OCPBUGS-24644): Add Snyk file to exclude vendor directory on scan [#67](https://github.com/openshift/cloud-provider-ibm/pull/67) * [OCPBUGS-21113](https://issues.redhat.com/browse/OCPBUGS-21113): Bump golang.org/x/net to v0.18.0 [#57](https://github.com/openshift/cloud-provider-ibm/pull/57) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#42](https://github.com/openshift/cloud-provider-ibm/pull/42) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 30.09.2022 k8s 1.25 [#41](https://github.com/openshift/cloud-provider-ibm/pull/41) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#40](https://github.com/openshift/cloud-provider-ibm/pull/40) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#39](https://github.com/openshift/cloud-provider-ibm/pull/39) * Merge https://github.com/IBM-Cloud/cloud-provider-ibm:release-1.24 into master [#36](https://github.com/openshift/cloud-provider-ibm/pull/36) * Remove cloud-provider-vpc-controller git submodule [#35](https://github.com/openshift/cloud-provider-ibm/pull/35) * Merge https://github.com/IBM-Cloud/cloud-provider-ibm:release-1.24 into master [#34](https://github.com/openshift/cloud-provider-ibm/pull/34) * Merge https://github.com/IBM-Cloud/cloud-provider-ibm:release-1.23 into master [#31](https://github.com/openshift/cloud-provider-ibm/pull/31) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#33](https://github.com/openshift/cloud-provider-ibm/pull/33) * [Full changelog](https://github.com/openshift/cloud-provider-ibm/compare/e30391202c3f02694b2f5b3c2d73cb560d9c133d...8bd0ea8fadbbb09ed912984d3dc6903a0aad0562) ### [ibm-vpc-block-csi-driver](https://github.com/openshift/ibm-vpc-block-csi-driver/tree/921509f3833b7b69a08d63fddd13890125e974fa) * [OCPBUGS-36063](https://issues.redhat.com/browse/OCPBUGS-36063): CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 [#75](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/75) * [OCPBUGS-20583](https://issues.redhat.com/browse/OCPBUGS-20583): [IBM VPC] failed provisioning volume in proxy cluster [#56](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/56) * [OCPBUGS-21206](https://issues.redhat.com/browse/OCPBUGS-21206): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#52](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/52) * [OCPBUGS-8451](https://issues.redhat.com/browse/OCPBUGS-8451): Rebase to v5.1.2 for OCP 4.12 [#32](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/32) * [STOR-1060](https://issues.redhat.com/browse/STOR-1060): Update ibm-vpc-block-csi-driver to v5.0.0 [#26](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/26) * UPSTREAM: 99: Update golint to 1.50 [#25](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/25) * UPSTREAM: 98: Reformat code with go 1.19 again [#24](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/24) * UPSTREAM: 98: Reformat code with go 1.19 (#98) [#23](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/23) * UPSTREAM: <carry>: Remove .github files [#21](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/21) * [STOR-867](https://issues.redhat.com/browse/STOR-867): Update ibm-vpc-block-csi-driver to the latest release [#18](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/18) * [OCPBUGS-416](https://issues.redhat.com/browse/OCPBUGS-416): Add udev [#17](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/17) * Rebase: ibm-vpc-block-csi-driver v4.4.4 [#14](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/14) * Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART [#13](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/13) * [Bug 2073522](https://bugzilla.redhat.com/show_bug.cgi?id=2073522): Update ibm-vpc-block-csi-driver to v4.2.0 [#12](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/12) * [Bug 2042348](https://bugzilla.redhat.com/show_bug.cgi?id=2042348): Rebase to v4.1.3 for OCP 4.11 [#11](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/11) * Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART [#10](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/10) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver/compare/fc60caeba29541f39992217049e74e2fc9fd03cf...921509f3833b7b69a08d63fddd13890125e974fa) ### [ibm-vpc-block-csi-driver-operator](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/tree/f2b726d578e020d369902c14173307a6e13853b4) * [OCPBUGS-36069](https://issues.redhat.com/browse/OCPBUGS-36069): CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 [#124](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/124) * [OCPBUGS-20583](https://issues.redhat.com/browse/OCPBUGS-20583): [IBM VPC] failed provisioning volume in proxy cluster [#79](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/79) * [OCPBUGS-21302](https://issues.redhat.com/browse/OCPBUGS-21302): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#83](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/83) * [OCPBUGS-3464](https://issues.redhat.com/browse/OCPBUGS-3464): Update deployment files for snapshot support [#46](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/46) * [OCPBUGS-2354](https://issues.redhat.com/browse/OCPBUGS-2354): Inject proxy settings and custom CA bundle into vpc-node-label-updater container [#44](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/44) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#43](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/43) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#42](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/42) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#41](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/41) * [Bug 2047732](https://bugzilla.redhat.com/show_bug.cgi?id=2047732): [IBM]Volume is not deleted after destroy cluster [#40](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/40) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#38](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/38) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#39](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/39) * Changes to fetch region from node [#37](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/37) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#36](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/36) * [Bug 2066665](https://bugzilla.redhat.com/show_bug.cgi?id=2066665): [ibm-vpc-block] Unable to change default storage class [#34](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/34) * [Bug 2067843](https://bugzilla.redhat.com/show_bug.cgi?id=2067843): Bump prometheus/client_golang to v1.11.1 [#31](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/31) * Disable topology tests until bz2035027 is fixed [#30](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/30) * Update CSIDriver instance [#29](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/29) * [Bug 2053006](https://bugzilla.redhat.com/show_bug.cgi?id=2053006): Resource id fetch optimised [#26](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/26) * [Bug 2052309](https://bugzilla.redhat.com/show_bug.cgi?id=2052309): IBMCloud: Add critical spec to ctlr [#24](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/24) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#21](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/21) * [Bug 2048824](https://bugzilla.redhat.com/show_bug.cgi?id=2048824): IBMCloud: Add critical spec to driver daemonset [#22](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/22) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/compare/28bad53d117d403b4147b68666ecfc52cee6ceca...f2b726d578e020d369902c14173307a6e13853b4) ### [ibm-vpc-node-label-updater](https://github.com/openshift/ibm-vpc-node-label-updater/tree/f9da23ac8abe04dc1615763e120cd174bde6e617) * [OCPBUGS-21415](https://issues.redhat.com/browse/OCPBUGS-21415): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#29](https://github.com/openshift/ibm-vpc-node-label-updater/pull/29) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#15](https://github.com/openshift/ibm-vpc-node-label-updater/pull/15) * [STOR-867](https://issues.redhat.com/browse/STOR-867): Update ibm-vpc-block-csi-driver to the latest release [#14](https://github.com/openshift/ibm-vpc-node-label-updater/pull/14) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#13](https://github.com/openshift/ibm-vpc-node-label-updater/pull/13) * Rebase: ibm-vpc-node-label-updater v4.1.6 [#11](https://github.com/openshift/ibm-vpc-node-label-updater/pull/11) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#12](https://github.com/openshift/ibm-vpc-node-label-updater/pull/12) * [Bug 2073525](https://bugzilla.redhat.com/show_bug.cgi?id=2073525): Update vpc-node-label-updater to v4.1.2 [#9](https://github.com/openshift/ibm-vpc-node-label-updater/pull/9) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#10](https://github.com/openshift/ibm-vpc-node-label-updater/pull/10) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#8](https://github.com/openshift/ibm-vpc-node-label-updater/pull/8) * [Full changelog](https://github.com/openshift/ibm-vpc-node-label-updater/compare/7074dfc35cdd3c2e19790a934c1025c8f690c9a6...f9da23ac8abe04dc1615763e120cd174bde6e617) ### [ibmcloud-machine-controllers](https://github.com/openshift/machine-api-provider-ibmcloud/tree/31a67daca92c374cb4d9a87928ec8c28528a0c0e) * [OCPBUGS-3289](https://issues.redhat.com/browse/OCPBUGS-3289): IBMCloud: Replace stuck machine [#11](https://github.com/openshift/machine-api-provider-ibmcloud/pull/11) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#7](https://github.com/openshift/machine-api-provider-ibmcloud/pull/7) * Fix version [#5](https://github.com/openshift/machine-api-provider-ibmcloud/pull/5) * [Bug 2062579](https://bugzilla.redhat.com/show_bug.cgi?id=2062579): IBMCloud: Verify machine profile [#4](https://github.com/openshift/machine-api-provider-ibmcloud/pull/4) * Default version when one isn't available [#3](https://github.com/openshift/machine-api-provider-ibmcloud/pull/3) * Synch repo cluster-api-provider-ibmcloud with machine-api-provider-ibmcloud [#1](https://github.com/openshift/machine-api-provider-ibmcloud/pull/1) * [Full changelog](https://github.com/openshift/machine-api-provider-ibmcloud/compare/7449a94fcd0001cac6371600a75b20850b235cc9...31a67daca92c374cb4d9a87928ec8c28528a0c0e) ### [insights-operator](https://github.com/openshift/insights-operator/tree/6b543885144d6eb40c7c8342dac15f80e77bb4fa) * Revert "Set default messages & reconcile clusteroperator status conditions (#584) [#586](https://github.com/openshift/insights-operator/pull/586) * [Full changelog](https://github.com/openshift/insights-operator/compare/871cc6053ee5187f8889815c1f88094279444bcf...6b543885144d6eb40c7c8342dac15f80e77bb4fa) ### [ironic](https://github.com/openshift/ironic-image/tree/2869b1ec37e19ccf364d95c7fb7dac458032c5bd) * [OCPBUGS-48145](https://issues.redhat.com/browse/OCPBUGS-48145), [OCPBUGS-48596](https://issues.redhat.com/browse/OCPBUGS-48596): Bump jinja to 3.0.1-6.el9.2 [#627](https://github.com/openshift/ironic-image/pull/627) * [OCPBUGS-43949](https://issues.redhat.com/browse/OCPBUGS-43949), [OCPBUGS-43957](https://issues.redhat.com/browse/OCPBUGS-43957): Bump python-waitress [4.12] [#609](https://github.com/openshift/ironic-image/pull/609) * [OCPBUGS-37766](https://issues.redhat.com/browse/OCPBUGS-37766), [OCPBUGS-39385](https://issues.redhat.com/browse/OCPBUGS-39385): Include fixes for CVE-2024-44082 [#586](https://github.com/openshift/ironic-image/pull/586) * [OCPBUGS-38513](https://issues.redhat.com/browse/OCPBUGS-38513): set min version for python3-webob [#558](https://github.com/openshift/ironic-image/pull/558) * [OCPBUGS-33373](https://issues.redhat.com/browse/OCPBUGS-33373): bump werkzeug [#547](https://github.com/openshift/ironic-image/pull/547) * [OCPBUGS-34897](https://issues.redhat.com/browse/OCPBUGS-34897): bump jinja2 [#541](https://github.com/openshift/ironic-image/pull/541) * [OCPBUGS-32362](https://issues.redhat.com/browse/OCPBUGS-32362): [4.12] remove unused prometheus-exporter [#489](https://github.com/openshift/ironic-image/pull/489) * [OCPBUGS-32386](https://issues.redhat.com/browse/OCPBUGS-32386): Use unix sockets by default for reverse proxy communication [#477](https://github.com/openshift/ironic-image/pull/477) * [OCPBUGS-29229](https://issues.redhat.com/browse/OCPBUGS-29229): Fix Inspector iPXE config for IPv6 addresses [#454](https://github.com/openshift/ironic-image/pull/454) * [OCPBUGS-23979](https://issues.redhat.com/browse/OCPBUGS-23979): Ironic side of external_http_url (METAL-163) is not wired in correctly [#431](https://github.com/openshift/ironic-image/pull/431) * [OCPBUGS-23357](https://issues.redhat.com/browse/OCPBUGS-23357): Upgrade werkzeug dependency [#423](https://github.com/openshift/ironic-image/pull/423) * [OCPBUGS-23182](https://issues.redhat.com/browse/OCPBUGS-23182): Use bash process substitution instead of pipe [#419](https://github.com/openshift/ironic-image/pull/419) * [OCPBUGS-19064](https://issues.redhat.com/browse/OCPBUGS-19064): Handle Eject DVD in 4.12 [#417](https://github.com/openshift/ironic-image/pull/417) * [OCPBUGS-21849](https://issues.redhat.com/browse/OCPBUGS-21849): bump eventlet version [#409](https://github.com/openshift/ironic-image/pull/409) * [OCPBUGS-17642](https://issues.redhat.com/browse/OCPBUGS-17642): Expand regex for fcos/okd packages list [#392](https://github.com/openshift/ironic-image/pull/392) * [OCPBUGS-16169](https://issues.redhat.com/browse/OCPBUGS-16169): allow inspector to also be proxied [#385](https://github.com/openshift/ironic-image/pull/385) * [OCPBUGS-13586](https://issues.redhat.com/browse/OCPBUGS-13586): Add python-flask dependency [#373](https://github.com/openshift/ironic-image/pull/373) * Bug OCPBUGS-13335: Bump ironic version to include fix to OCPBUGS-13335. [#367](https://github.com/openshift/ironic-image/pull/367) * [OCPBUGS-13041](https://issues.redhat.com/browse/OCPBUGS-13041): Bump python-sushy [#363](https://github.com/openshift/ironic-image/pull/363) * [OCPBUGS-7566](https://issues.redhat.com/browse/OCPBUGS-7566): Bump werkzeug 4.12 [#352](https://github.com/openshift/ironic-image/pull/352) * [OCPBUGS-5143](https://issues.redhat.com/browse/OCPBUGS-5143): Adding dosfstools and util-linux tools to ironic-image [#341](https://github.com/openshift/ironic-image/pull/341) * [OCPBUGS-5100](https://issues.redhat.com/browse/OCPBUGS-5100): Configure Ironic iLO driver to use web server [#339](https://github.com/openshift/ironic-image/pull/339) * [OCPBUGS-4789](https://issues.redhat.com/browse/OCPBUGS-4789): Update packages versions with latest available [#335](https://github.com/openshift/ironic-image/pull/335) * [OCPBUGS-4840](https://issues.redhat.com/browse/OCPBUGS-4840): Handle a different error code for missing TransferProtocolType [#334](https://github.com/openshift/ironic-image/pull/334) * Bug OCPBUGS-2052: Fix setting boot related attributes [#324](https://github.com/openshift/ironic-image/pull/324) * [OCPBUGS-4479](https://issues.redhat.com/browse/OCPBUGS-4479): fix: Add support for OKD/SCOS [#329](https://github.com/openshift/ironic-image/pull/329) * [OCPBUGS-4311](https://issues.redhat.com/browse/OCPBUGS-4311): Remove RDO distribution configuration (finally fixes #46) [#327](https://github.com/openshift/ironic-image/pull/327) * [OCPBUGS-4097](https://issues.redhat.com/browse/OCPBUGS-4097): Workaround for long time gap between operations in recent idrac [#322](https://github.com/openshift/ironic-image/pull/322) * [OCPBUGS-3111](https://issues.redhat.com/browse/OCPBUGS-3111): Don't save OS_ prefixed variables [#310](https://github.com/openshift/ironic-image/pull/310) * Bug OCPBUGS-3479: Improve resiliency of eTag handling [#315](https://github.com/openshift/ironic-image/pull/315) * Removed ServerName from VirtualHost Directives [#305](https://github.com/openshift/ironic-image/pull/305) * Sync with upstream metal3-io ironic-image 2022-09-29 [#301](https://github.com/openshift/ironic-image/pull/301) * [OCPBUGS-1799](https://issues.redhat.com/browse/OCPBUGS-1799): use brackets for IPv6 addresses in ironic-proxy [#300](https://github.com/openshift/ironic-image/pull/300) * Update sushy to 4.3.0 (Zed final) [#299](https://github.com/openshift/ironic-image/pull/299) * [Bug 2104275](https://bugzilla.redhat.com/show_bug.cgi?id=2104275): sync the ValueDisplayName fix [#296](https://github.com/openshift/ironic-image/pull/296) * Update ironic and ironic-inspector for OCP 4.12 [#293](https://github.com/openshift/ironic-image/pull/293) * Update dependencies for OCP 4.12 [#290](https://github.com/openshift/ironic-image/pull/290) * ironic-proxy: never validate TLS peer name [#292](https://github.com/openshift/ironic-image/pull/292) * [OCPBUGS-171](https://issues.redhat.com/browse/OCPBUGS-171): Fix IRONIC_EXTERNAL_IP when TLS is used for virtual media [#291](https://github.com/openshift/ironic-image/pull/291) * Merge from upstream metal3-io/ironic-image [#289](https://github.com/openshift/ironic-image/pull/289) * [METAL-256](https://issues.redhat.com/browse/METAL-256): Add a new entry point for the Ironic proxy [#286](https://github.com/openshift/ironic-image/pull/286) * Sync with upstream metal3-io ironic-image [#283](https://github.com/openshift/ironic-image/pull/283) * Updating ironic images to be consistent with ART [#282](https://github.com/openshift/ironic-image/pull/282) * [Bug 2088561](https://bugzilla.redhat.com/show_bug.cgi?id=2088561): Update ironic packages to latest bugfix versions [#280](https://github.com/openshift/ironic-image/pull/280) * [Bug 2080446](https://bugzilla.redhat.com/show_bug.cgi?id=2080446): Sync with latest packages available [#273](https://github.com/openshift/ironic-image/pull/273) * Add ipxe support for arm64 [#263](https://github.com/openshift/ironic-image/pull/263) * Fix patch command, take two [#271](https://github.com/openshift/ironic-image/pull/271) * Fix patch path [#270](https://github.com/openshift/ironic-image/pull/270) * [OCP 4.11 only] Backport the kernel params patch [#268](https://github.com/openshift/ironic-image/pull/268) * Sync with ironic-image metal3 2022-04-12 [#267](https://github.com/openshift/ironic-image/pull/267) * [Bug 2068246](https://bugzilla.redhat.com/show_bug.cgi?id=2068246): Include fix for race in ironic combined executable [#265](https://github.com/openshift/ironic-image/pull/265) * Correct version for sushy-oem-idrac for OCP 4.11 [#261](https://github.com/openshift/ironic-image/pull/261) * Drop unused ipxe.efi [#260](https://github.com/openshift/ironic-image/pull/260) * Sync with metal3-io/main [#259](https://github.com/openshift/ironic-image/pull/259) * [Bug 2059567](https://bugzilla.redhat.com/show_bug.cgi?id=2059567): Enable vMedia provisioning of Nokia servers [#257](https://github.com/openshift/ironic-image/pull/257) * Update packages with latest available [#256](https://github.com/openshift/ironic-image/pull/256) * Merge from metal3-io [#255](https://github.com/openshift/ironic-image/pull/255) * Updating ironic images to be consistent with ART [#254](https://github.com/openshift/ironic-image/pull/254) * Merge metal3-io up to mariadb removal [#250](https://github.com/openshift/ironic-image/pull/250) * [Full changelog](https://github.com/openshift/ironic-image/compare/caf63f4967c11aed4c5b340bdd3e057be492d1fa...2869b1ec37e19ccf364d95c7fb7dac458032c5bd) ### [ironic-agent](https://github.com/openshift/ironic-agent-image/tree/fc37dec83ae7cbd6878a5ddcc25126f424586095) * [OCPBUGS-39385](https://issues.redhat.com/browse/OCPBUGS-39385): Include fixes for CVE-2024-44082 [#165](https://github.com/openshift/ironic-agent-image/pull/165) * [OCPBUGS-38513](https://issues.redhat.com/browse/OCPBUGS-38513): set webob and bump werkzeug [#153](https://github.com/openshift/ironic-agent-image/pull/153) * [OCPBUGS-29769](https://issues.redhat.com/browse/OCPBUGS-29769): Always add ignition to set hostname on /etc/hostname [#112](https://github.com/openshift/ironic-agent-image/pull/112) * [OCPBUGS-19008](https://issues.redhat.com/browse/OCPBUGS-19008): better compatibility with old hostnamectl [#92](https://github.com/openshift/ironic-agent-image/pull/92) * [OCPBUGS-19008](https://issues.redhat.com/browse/OCPBUGS-19008): backport hostname fixes [#90](https://github.com/openshift/ironic-agent-image/pull/90) * "Bug OCPBUGS-15831: Switch to udevadm command install instead of package" [#82](https://github.com/openshift/ironic-agent-image/pull/82) * [OCPBUGS-9934](https://issues.redhat.com/browse/OCPBUGS-9934): Adding dep on python3-werkzeug >= 2.0.3-4 [#72](https://github.com/openshift/ironic-agent-image/pull/72) * [OCPBUGS-5067](https://issues.redhat.com/browse/OCPBUGS-5067): make coreos-installer output available in the logs [#66](https://github.com/openshift/ironic-agent-image/pull/66) * [OCPBUGS-456](https://issues.redhat.com/browse/OCPBUGS-456): Update ironic-python-agent for OCP 4.12 [#61](https://github.com/openshift/ironic-agent-image/pull/61) * Update dependencies for OCP 4.12 [#60](https://github.com/openshift/ironic-agent-image/pull/60) * Updating ironic-agent images to be consistent with ART [#57](https://github.com/openshift/ironic-agent-image/pull/57) * Install iproute explicitely [#59](https://github.com/openshift/ironic-agent-image/pull/59) * [Bug 2100749](https://bugzilla.redhat.com/show_bug.cgi?id=2100749): Add missing multipath modules [#54](https://github.com/openshift/ironic-agent-image/pull/54) * [Bug 2098392](https://bugzilla.redhat.com/show_bug.cgi?id=2098392): Include Fix discovering WWN/serial for devicemapper devices [#53](https://github.com/openshift/ironic-agent-image/pull/53) * [Bug 2089309](https://bugzilla.redhat.com/show_bug.cgi?id=2089309): multipath fix for passive paths [#51](https://github.com/openshift/ironic-agent-image/pull/51) * [Bug 2086759](https://bugzilla.redhat.com/show_bug.cgi?id=2086759): Bump retries for UEFI boot configuration [#47](https://github.com/openshift/ironic-agent-image/pull/47) * [Bug 2080446](https://bugzilla.redhat.com/show_bug.cgi?id=2080446): Sync with latest ironic python agent [#44](https://github.com/openshift/ironic-agent-image/pull/44) * Update the retry to Configuring UEFI [#45](https://github.com/openshift/ironic-agent-image/pull/45) * Add an start_assisted_install step [#40](https://github.com/openshift/ironic-agent-image/pull/40) * [Bug 2038303](https://bugzilla.redhat.com/show_bug.cgi?id=2038303): Allow customisation of default_connection file [#32](https://github.com/openshift/ironic-agent-image/pull/32) * Update packages with latest available [#41](https://github.com/openshift/ironic-agent-image/pull/41) * Retry UEFI boot Configuration [#42](https://github.com/openshift/ironic-agent-image/pull/42) * Updating ironic-agent images to be consistent with ART [#36](https://github.com/openshift/ironic-agent-image/pull/36) * [Bug 2043533](https://bugzilla.redhat.com/show_bug.cgi?id=2043533): Update ironic-python-agent to latest bugfix version [#33](https://github.com/openshift/ironic-agent-image/pull/33) * [Full changelog](https://github.com/openshift/ironic-agent-image/compare/28ee0ef73966f9989e5ad83ef55791390738a59a...fc37dec83ae7cbd6878a5ddcc25126f424586095) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/c65c1f1c19a9b62ef5f4a857e5ce86ad6fca3d29) * [OCPBUGS-15735](https://issues.redhat.com/browse/OCPBUGS-15735): Binary should be compiled on rhel9 [#92](https://github.com/openshift/ironic-rhcos-downloader/pull/92) * Updating ironic-rhcos-downloader images to be consistent with ART [#83](https://github.com/openshift/ironic-rhcos-downloader/pull/83) * [OCPBUGS-478](https://issues.redhat.com/browse/OCPBUGS-478): Install libguestfs-tools-c instead of libguestfs-tools [#82](https://github.com/openshift/ironic-rhcos-downloader/pull/82) * Updating ironic-rhcos-downloader images to be consistent with ART [#79](https://github.com/openshift/ironic-rhcos-downloader/pull/79) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/81fe29749c844a4a19fea0f0e2ff0a53c3b0fa25...c65c1f1c19a9b62ef5f4a857e5ce86ad6fca3d29) ### [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager/tree/a8ade8fe60ad5fb1ab225a514ec331123b256cff) * [OCPBUGS-14415](https://issues.redhat.com/browse/OCPBUGS-14415): Flush addresses on provisioning interface with global scope only [#37](https://github.com/openshift/ironic-static-ip-manager/pull/37) * Updating ironic-static-ip-manager images to be consistent with ART [#31](https://github.com/openshift/ironic-static-ip-manager/pull/31) * [Bug 2054770](https://bugzilla.redhat.com/show_bug.cgi?id=2054770): Do case-insensitive comparison of MACs [#29](https://github.com/openshift/ironic-static-ip-manager/pull/29) * Updating ironic-static-ip-manager images to be consistent with ART [#28](https://github.com/openshift/ironic-static-ip-manager/pull/28) * [Full changelog](https://github.com/openshift/ironic-static-ip-manager/compare/45a1c542c44d9492a110ea5edb09ac026afd86de...a8ade8fe60ad5fb1ab225a514ec331123b256cff) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/36c06694097a1a09a8c4e1f70a9025187814cb1a) * [OCPBUGS-21441](https://issues.redhat.com/browse/OCPBUGS-21441): upgrade golang.org/x/net to 0.17.0 to address CVE [#91](https://github.com/openshift/k8s-prometheus-adapter/pull/91) * [OCPBUGS-20580](https://issues.redhat.com/browse/OCPBUGS-20580): limit number of simultaneous client requests [#79](https://github.com/openshift/k8s-prometheus-adapter/pull/79) * Updating ose-prometheus-adapter images to be consistent with ART [#65](https://github.com/openshift/k8s-prometheus-adapter/pull/65) * Bump openshift/k8s-prometheus-adapter to v0.10.0 [#64](https://github.com/openshift/k8s-prometheus-adapter/pull/64) * OWNERS: Add Joao and myself, and move former team members to emeritus [#63](https://github.com/openshift/k8s-prometheus-adapter/pull/63) * Updating ose-prometheus-adapter images to be consistent with ART [#62](https://github.com/openshift/k8s-prometheus-adapter/pull/62) * Updating ose-prometheus-adapter images to be consistent with ART [#61](https://github.com/openshift/k8s-prometheus-adapter/pull/61) * Updating ose-prometheus-adapter images to be consistent with ART [#60](https://github.com/openshift/k8s-prometheus-adapter/pull/60) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/4052b317ff62b93019a11e2981d1d81b8b6b2e4d...36c06694097a1a09a8c4e1f70a9025187814cb1a) ### [keepalived-ipfailover](https://github.com/openshift/images/tree/7e8a0105eb7369f3f92ad7b2581a2efffab5b28e) * Updating openshift-enterprise-egress-router images to be consistent with ART [#115](https://github.com/openshift/images/pull/115) * Updating ose-egress-http-proxy images to be consistent with ART [#114](https://github.com/openshift/images/pull/114) * Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART [#117](https://github.com/openshift/images/pull/117) * Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART [#116](https://github.com/openshift/images/pull/116) * Add bparees as approver [#118](https://github.com/openshift/images/pull/118) * Updating openshift-enterprise-base images to be consistent with ART [#113](https://github.com/openshift/images/pull/113) * Updating ose-egress-http-proxy images to be consistent with ART [#105](https://github.com/openshift/images/pull/105) * Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART [#108](https://github.com/openshift/images/pull/108) * Updating openshift-enterprise-egress-router images to be consistent with ART [#106](https://github.com/openshift/images/pull/106) * [Bug 2062126](https://bugzilla.redhat.com/show_bug.cgi?id=2062126): ipfailover: Autodetect the "ens3" NIC [#111](https://github.com/openshift/images/pull/111) * Updating openshift-enterprise-base images to be consistent with ART [#109](https://github.com/openshift/images/pull/109) * [Bug 2018188](https://bugzilla.redhat.com/show_bug.cgi?id=2018188): VRRP ID conflict between keepalived-ipfailover and cluster VIPs [#104](https://github.com/openshift/images/pull/104) * Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART [#107](https://github.com/openshift/images/pull/107) * [Full changelog](https://github.com/openshift/images/compare/5d526c41d70e481820119cbdae922130f42b36d7...7e8a0105eb7369f3f92ad7b2581a2efffab5b28e) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/9706f967ca7bb1ade1a789123c71fe6cb55a025e) * [OCPBUGS-20753](https://issues.redhat.com/browse/OCPBUGS-20753): update x/net to v0.17.0 [#615](https://github.com/openshift/sdn/pull/615) * [OCPBUGS-22972](https://issues.redhat.com/browse/OCPBUGS-22972): Change the permission of 80-openshift-network.conf to 600 [#583](https://github.com/openshift/sdn/pull/583) * [OCPBUGS-18325](https://issues.redhat.com/browse/OCPBUGS-18325): Vendor o/k to consume update to prefer local TCP eps for DNS [#573](https://github.com/openshift/sdn/pull/573) * [OCPBUGS-13785](https://issues.redhat.com/browse/OCPBUGS-13785): EgressNetworkPolicy DNS resolution does not fall back to TCP [#542](https://github.com/openshift/sdn/pull/542) * [OCPBUGS-14304](https://issues.redhat.com/browse/OCPBUGS-14304): fix possible concurrent map read/write [#551](https://github.com/openshift/sdn/pull/551) * [OCPBUGS-13058](https://issues.redhat.com/browse/OCPBUGS-13058): save and delete the old egress network policy [#539](https://github.com/openshift/sdn/pull/539) * [OCPBUGS-13761](https://issues.redhat.com/browse/OCPBUGS-13761): CVE-2018-17419 ose-node-container: dns: Denial of Service (DoS) [#541](https://github.com/openshift/sdn/pull/541) * [OCPBUGS-10805](https://issues.redhat.com/browse/OCPBUGS-10805): Fix race in Egress IP Tracker start [#521](https://github.com/openshift/sdn/pull/521) * [OCPBUGS-7474](https://issues.redhat.com/browse/OCPBUGS-7474): Initialize egress node monitoring struct with previous reachability status [#505](https://github.com/openshift/sdn/pull/505) * [OCPBUGS-6842](https://issues.redhat.com/browse/OCPBUGS-6842): Handle race condition to setup default vnid flows [#497](https://github.com/openshift/sdn/pull/497) * [OCPBUGS-7227](https://issues.redhat.com/browse/OCPBUGS-7227): Update for 4.12 / go 1.19, including gofmt updates [#482](https://github.com/openshift/sdn/pull/482) * [OCPBUGS-4486](https://issues.redhat.com/browse/OCPBUGS-4486): Add node egress IP assignment resync [#487](https://github.com/openshift/sdn/pull/487) * [OCPBUGS-4422](https://issues.redhat.com/browse/OCPBUGS-4422): pass ResourceVersion:0 for kube List() calls [#473](https://github.com/openshift/sdn/pull/473) * [OCPBUGS-69](https://issues.redhat.com/browse/OCPBUGS-69): Generate egress ip metrics for sdn node [#470](https://github.com/openshift/sdn/pull/470) * [OCPBUGS-1533](https://issues.redhat.com/browse/OCPBUGS-1533): rebase to kube 1.25.1 [#458](https://github.com/openshift/sdn/pull/458) * [OCPBUGS-256](https://issues.redhat.com/browse/OCPBUGS-256): fix network policy egress [#459](https://github.com/openshift/sdn/pull/459) * [Bug 2104953](https://bugzilla.redhat.com/show_bug.cgi?id=2104953): rebase to 1.24, take 2 [#450](https://github.com/openshift/sdn/pull/450) * Enable EgressIP on OpenStack [#447](https://github.com/openshift/sdn/pull/447) * [Bug 2081562](https://bugzilla.redhat.com/show_bug.cgi?id=2081562): setup network policy rules during pod creation to fix postStart hook [#439](https://github.com/openshift/sdn/pull/439) * Updating kube-proxy images to be consistent with ART [#448](https://github.com/openshift/sdn/pull/448) * [Bug 2101622](https://bugzilla.redhat.com/show_bug.cgi?id=2101622): Revert 'kube 1.24 rebase'; master [#442](https://github.com/openshift/sdn/pull/442) * [Bug 2079958](https://bugzilla.redhat.com/show_bug.cgi?id=2079958): Add TopologyAwareHints support in kube-proxy. [#426](https://github.com/openshift/sdn/pull/426) * [Bug 2089350](https://bugzilla.redhat.com/show_bug.cgi?id=2089350): kube 1.24 rebase [#440](https://github.com/openshift/sdn/pull/440) * [Bug 2067865](https://bugzilla.redhat.com/show_bug.cgi?id=2067865): Bump prometheus/client_golang to 1.11.1 [#432](https://github.com/openshift/sdn/pull/432) * Updating kube-proxy images to be consistent with ART [#429](https://github.com/openshift/sdn/pull/429) * Updating ose-sdn images to be consistent with ART [#427](https://github.com/openshift/sdn/pull/427) * [Bug 2052332](https://bugzilla.redhat.com/show_bug.cgi?id=2052332): use pods cache during reattach processing [#411](https://github.com/openshift/sdn/pull/411) * [Bug 2016534](https://bugzilla.redhat.com/show_bug.cgi?id=2016534): Exclude the default drop bit from egress IP VNID [#428](https://github.com/openshift/sdn/pull/428) * [Bug 2016534](https://bugzilla.redhat.com/show_bug.cgi?id=2016534): Masquerade in cluster traffic that is marked for egress IP [#423](https://github.com/openshift/sdn/pull/423) * [Bug 2063123](https://bugzilla.redhat.com/show_bug.cgi?id=2063123): Remove node-tainting for too-small MTU [#417](https://github.com/openshift/sdn/pull/417) * [Bug 2050230](https://bugzilla.redhat.com/show_bug.cgi?id=2050230): Use pagination when listing Netnamespaces [#419](https://github.com/openshift/sdn/pull/419) * [Bug 2062558](https://bugzilla.redhat.com/show_bug.cgi?id=2062558): egressip: Continue to process other nodes if a node is not ready [#418](https://github.com/openshift/sdn/pull/418) * Add unit tests for vxlan no track ip table rule [#401](https://github.com/openshift/sdn/pull/401) * [Bug 2061919](https://bugzilla.redhat.com/show_bug.cgi?id=2061919): Fix releasing egress IP in cloud environments [#409](https://github.com/openshift/sdn/pull/409) * [Bug 2061916](https://bugzilla.redhat.com/show_bug.cgi?id=2061916): mixed ingress and egress policies can result in half-isolated pods [#408](https://github.com/openshift/sdn/pull/408) * [Bug 2060553](https://bugzilla.redhat.com/show_bug.cgi?id=2060553): another fix for mixed ingress and egress policies [#406](https://github.com/openshift/sdn/pull/406) * [Bug 2050230](https://bugzilla.redhat.com/show_bug.cgi?id=2050230): Use pagination when listing resources [#400](https://github.com/openshift/sdn/pull/400) * [Bug 2060553](https://bugzilla.redhat.com/show_bug.cgi?id=2060553): Separate the allPodsSelected into egress and ingress [#404](https://github.com/openshift/sdn/pull/404) * Rebase SDN k8 1.23.4 [#399](https://github.com/openshift/sdn/pull/399) * clean up OWNERS [#392](https://github.com/openshift/sdn/pull/392) * Updating ose-sdn images to be consistent with ART [#396](https://github.com/openshift/sdn/pull/396) * Updating kube-proxy images to be consistent with ART [#397](https://github.com/openshift/sdn/pull/397) * move to-be-deleted userspace proxy code into sdn tree [#393](https://github.com/openshift/sdn/pull/393) * [Full changelog](https://github.com/openshift/sdn/compare/cc28efbf6946233ecfcf2ee979f0ddff4fb1da65...9706f967ca7bb1ade1a789123c71fe6cb55a025e) ### [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy/tree/c69fae7877557d64dce64f36e0a78751952571c4) * [OCPBUGS-32000](https://issues.redhat.com/browse/OCPBUGS-32000): CVE-2023-45288 [4.12] [#106](https://github.com/openshift/kube-rbac-proxy/pull/106) * [OCPBUGS-20687](https://issues.redhat.com/browse/OCPBUGS-20687): trim down http2, make it configurable 4.12 [#85](https://github.com/openshift/kube-rbac-proxy/pull/85) * [OCPBUGS-11645](https://issues.redhat.com/browse/OCPBUGS-11645): Updating kube-rbac-proxy images to be consistent with ART [#56](https://github.com/openshift/kube-rbac-proxy/pull/56) * Merg upstream into downstream [#60](https://github.com/openshift/kube-rbac-proxy/pull/60) * OWNERS: add myself (ibihim) [#57](https://github.com/openshift/kube-rbac-proxy/pull/57) * Updating kube-rbac-proxy images to be consistent with ART [#54](https://github.com/openshift/kube-rbac-proxy/pull/54) * [Full changelog](https://github.com/openshift/kube-rbac-proxy/compare/4f198b2bd5d141a561fbe6642de20b520d72e513...c69fae7877557d64dce64f36e0a78751952571c4) ### [kube-state-metrics](https://github.com/openshift/kube-state-metrics/tree/748f71317b9d3e3e5a96b14131294e2695f26434) * [OCPBUGS-20764](https://issues.redhat.com/browse/OCPBUGS-20764): bump x/net to v0.17.0 [#103](https://github.com/openshift/kube-state-metrics/pull/103) * [OCPBUGS-4118](https://issues.redhat.com/browse/OCPBUGS-4118): cherry-pick, do not expose ingress path metric when service is nil [#84](https://github.com/openshift/kube-state-metrics/pull/84) * [OCPBUGS-4112](https://issues.redhat.com/browse/OCPBUGS-4112): cherry-pick, autoscaling/v2beta2 HorizontalPodAutoscaler is deprecated in v1.23+ [#83](https://github.com/openshift/kube-state-metrics/pull/83) * Updating kube-state-metrics images to be consistent with ART [#78](https://github.com/openshift/kube-state-metrics/pull/78) * Bump openshift/kube-state-metrics to v2.6.0 [#77](https://github.com/openshift/kube-state-metrics/pull/77) * OWNERS: Add Joao and myself, and move former team members to emeritus [#76](https://github.com/openshift/kube-state-metrics/pull/76) * Updating kube-state-metrics images to be consistent with ART [#75](https://github.com/openshift/kube-state-metrics/pull/75) * [Bug 2075091](https://bugzilla.redhat.com/show_bug.cgi?id=2075091): Bump to KSM 2.5.0 [#74](https://github.com/openshift/kube-state-metrics/pull/74) * Updating kube-state-metrics images to be consistent with ART [#73](https://github.com/openshift/kube-state-metrics/pull/73) * [Bug 2075091](https://bugzilla.redhat.com/show_bug.cgi?id=2075091): internal/store: fix metrics slice length [#71](https://github.com/openshift/kube-state-metrics/pull/71) * [Bug 2075091](https://bugzilla.redhat.com/show_bug.cgi?id=2075091): internal/store: fix potential panic in pod store [#69](https://github.com/openshift/kube-state-metrics/pull/69) * Bump openshift/kube-state-metrics to v2.4.2 [#68](https://github.com/openshift/kube-state-metrics/pull/68) * Bump openshift/kube-state-metrics to v2.4.1 [#67](https://github.com/openshift/kube-state-metrics/pull/67) * Updating kube-state-metrics images to be consistent with ART [#66](https://github.com/openshift/kube-state-metrics/pull/66) * [Full changelog](https://github.com/openshift/kube-state-metrics/compare/df55d3ea3dc12dbebf4daedcf4f886b3b73a8e35...748f71317b9d3e3e5a96b14131294e2695f26434) ### [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator/tree/596745cec38b8401d1d906bfb9d3d78fdaeabcde) * [Bug 2090465](https://bugzilla.redhat.com/show_bug.cgi?id=2090465): golang version mismatch [#185](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/185) * [Bug 2090430](https://bugzilla.redhat.com/show_bug.cgi?id=2090430): UPSTREAM: <carry>: run go-fmt 1.17 [#183](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/183) * [Full changelog](https://github.com/openshift/kubernetes-kube-storage-version-migrator/compare/901a6d221d1cf79b4b6ba859bb43521e0ee635b3...596745cec38b8401d1d906bfb9d3d78fdaeabcde) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/8fd2f8b0f7e2849b1a7db252beba0c8250552e36) * Bug OCPBUGS-16376: Fix np retry [#740](https://github.com/openshift/kuryr-kubernetes/pull/740) * [OCPBUGS-15493](https://issues.redhat.com/browse/OCPBUGS-15493): Remove unneeded grpcio dependencies from RPM [#737](https://github.com/openshift/kuryr-kubernetes/pull/737) * [OCPBUGS-13778](https://issues.redhat.com/browse/OCPBUGS-13778): KuryrPort cleanup: Fix issue of subport not found [#731](https://github.com/openshift/kuryr-kubernetes/pull/731) * Bug OCPBUGS-12164: Fix ValueError when Pod has no IP address [#722](https://github.com/openshift/kuryr-kubernetes/pull/722) * [OCPBUGS-11993](https://issues.redhat.com/browse/OCPBUGS-11993): Fix VIF revert on KuryrPort status update error [#721](https://github.com/openshift/kuryr-kubernetes/pull/721) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#707](https://github.com/openshift/kuryr-kubernetes/pull/707) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#706](https://github.com/openshift/kuryr-kubernetes/pull/706) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#705](https://github.com/openshift/kuryr-kubernetes/pull/705) * Updating kuryr-cni images to be consistent with ART [#697](https://github.com/openshift/kuryr-kubernetes/pull/697) * Bug OCPBUGS-198: Cleanup KuryrPort when Pod is missing [#691](https://github.com/openshift/kuryr-kubernetes/pull/691) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#690](https://github.com/openshift/kuryr-kubernetes/pull/690) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#689](https://github.com/openshift/kuryr-kubernetes/pull/689) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#686](https://github.com/openshift/kuryr-kubernetes/pull/686) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#685](https://github.com/openshift/kuryr-kubernetes/pull/685) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#684](https://github.com/openshift/kuryr-kubernetes/pull/684) * Rebase from upstream [#683](https://github.com/openshift/kuryr-kubernetes/pull/683) * Updating kuryr-cni images to be consistent with ART [#677](https://github.com/openshift/kuryr-kubernetes/pull/677) * Updating kuryr-controller images to be consistent with ART [#676](https://github.com/openshift/kuryr-kubernetes/pull/676) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#681](https://github.com/openshift/kuryr-kubernetes/pull/681) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#679](https://github.com/openshift/kuryr-kubernetes/pull/679) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#678](https://github.com/openshift/kuryr-kubernetes/pull/678) * [Bug 2088444](https://bugzilla.redhat.com/show_bug.cgi?id=2088444): Add leftover resources protection [#674](https://github.com/openshift/kuryr-kubernetes/pull/674) * [Bug 2094816](https://bugzilla.redhat.com/show_bug.cgi?id=2094816): Do not crash on Neutron quota exceptions [#675](https://github.com/openshift/kuryr-kubernetes/pull/675) * [Bug 2094801](https://bugzilla.redhat.com/show_bug.cgi?id=2094801): Strip leading zeros from "funny" Service IPs [#671](https://github.com/openshift/kuryr-kubernetes/pull/671) * [Bug 2097246](https://bugzilla.redhat.com/show_bug.cgi?id=2097246): Use upper-constraints.txt from stable/xena in UT [#672](https://github.com/openshift/kuryr-kubernetes/pull/672) * Remove DNS webhook server [#666](https://github.com/openshift/kuryr-kubernetes/pull/666) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#665](https://github.com/openshift/kuryr-kubernetes/pull/665) * Merge from upstream [#658](https://github.com/openshift/kuryr-kubernetes/pull/658) * [Bug 1997120](https://bugzilla.redhat.com/show_bug.cgi?id=1997120): CNI: Watch for deleted pods [#657](https://github.com/openshift/kuryr-kubernetes/pull/657) * [Bug 1983056](https://bugzilla.redhat.com/show_bug.cgi?id=1983056): CNI: Use K8S_POD_UID passed from CRI [#645](https://github.com/openshift/kuryr-kubernetes/pull/645) * Parallelize ports removal. [#655](https://github.com/openshift/kuryr-kubernetes/pull/655) * Updating kuryr-cni images to be consistent with ART [#629](https://github.com/openshift/kuryr-kubernetes/pull/629) * [Bug 2070047](https://bugzilla.redhat.com/show_bug.cgi?id=2070047): Increase cni_request_duration buckets [#647](https://github.com/openshift/kuryr-kubernetes/pull/647) * Updating kuryr-controller images to be consistent with ART [#628](https://github.com/openshift/kuryr-kubernetes/pull/628) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#644](https://github.com/openshift/kuryr-kubernetes/pull/644) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#643](https://github.com/openshift/kuryr-kubernetes/pull/643) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#642](https://github.com/openshift/kuryr-kubernetes/pull/642) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#640](https://github.com/openshift/kuryr-kubernetes/pull/640) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#639](https://github.com/openshift/kuryr-kubernetes/pull/639) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#638](https://github.com/openshift/kuryr-kubernetes/pull/638) * [Bug 2051423](https://bugzilla.redhat.com/show_bug.cgi?id=2051423): Update KLB .spec.provider when required [#636](https://github.com/openshift/kuryr-kubernetes/pull/636) * Rebase openshift/kuryr-kubernetes from https://opendev.org/openstack/kuryr-kubernetes [#634](https://github.com/openshift/kuryr-kubernetes/pull/634) * [Bug 2045065](https://bugzilla.redhat.com/show_bug.cgi?id=2045065): Ignore Pod event if Pod is Pending with no Node set [#624](https://github.com/openshift/kuryr-kubernetes/pull/624) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/f77249c3e04cdd55a3b5b25eec32129665950f20...8fd2f8b0f7e2849b1a7db252beba0c8250552e36) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/a2882f7aa56d4059a20bdc02486da905b5764062) * Updating ose-libvirt-machine-controllers images to be consistent with ART [#240](https://github.com/openshift/cluster-api-provider-libvirt/pull/240) * Updating ose-libvirt-machine-controllers images to be consistent with ART [#239](https://github.com/openshift/cluster-api-provider-libvirt/pull/239) * Updating ose-libvirt-machine-controllers images to be consistent with ART [#236](https://github.com/openshift/cluster-api-provider-libvirt/pull/236) * [Bug 2018517](https://bugzilla.redhat.com/show_bug.cgi?id=2018517): fix the check that machine has been modified [#235](https://github.com/openshift/cluster-api-provider-libvirt/pull/235) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/3b330b72f43b178f1c16c5d504cf9ce248e679ad...a2882f7aa56d4059a20bdc02486da905b5764062) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/b6c243d139f4345a88d5678eb6ba6041a2abb405) * [OCPBUGS-43872](https://issues.redhat.com/browse/OCPBUGS-43872): install/0000_30_machine-api-operator_00_credentials-request: Set skipServiceCheck again for GCP [#1305](https://github.com/openshift/machine-api-operator/pull/1305) * [OCPBUGS-32007](https://issues.redhat.com/browse/OCPBUGS-32007): Update x/net to v0.25.0 [#1257](https://github.com/openshift/machine-api-operator/pull/1257) * [OCPBUGS-25303](https://issues.redhat.com/browse/OCPBUGS-25303): Update reference URL [#1189](https://github.com/openshift/machine-api-operator/pull/1189) * [OCPBUGS-21501](https://issues.redhat.com/browse/OCPBUGS-21501): Bump golang.org/x/net to v0.18.0 [#1176](https://github.com/openshift/machine-api-operator/pull/1176) * [OCPBUGS-10943](https://issues.redhat.com/browse/OCPBUGS-10943): Fix empty component version [#1132](https://github.com/openshift/machine-api-operator/pull/1132) * [OCPBUGS-7882](https://issues.redhat.com/browse/OCPBUGS-7882): Block machine deletion if extra disks are attached [#1120](https://github.com/openshift/machine-api-operator/pull/1120) * [OCPBUGS-8286](https://issues.redhat.com/browse/OCPBUGS-8286): Short circuit misfiring [#1109](https://github.com/openshift/machine-api-operator/pull/1109) * [OCPBUGS-5413](https://issues.redhat.com/browse/OCPBUGS-5413): Append annotations from machine template spec to the node [#1104](https://github.com/openshift/machine-api-operator/pull/1104) * [OCPBUGS-5117](https://issues.redhat.com/browse/OCPBUGS-5117): [release-4.12] Allow to use machine.openshift.io API in provider specs [#1086](https://github.com/openshift/machine-api-operator/pull/1086) * [OCPBUGS-5417](https://issues.redhat.com/browse/OCPBUGS-5417): machine-api-termination-handler: run DaemonSet only on Linux [#1105](https://github.com/openshift/machine-api-operator/pull/1105) * Show warnings if provider specs have invalid GroupVersionKind [#1018](https://github.com/openshift/machine-api-operator/pull/1018) * Update envtest [#1071](https://github.com/openshift/machine-api-operator/pull/1071) * [OCPCLOUD-1131](https://issues.redhat.com/browse/OCPCLOUD-1131): Add DescribeInstanceTypes permission for AWS provider [#1062](https://github.com/openshift/machine-api-operator/pull/1062) * [OCPBUGS-2151](https://issues.redhat.com/browse/OCPBUGS-2151): Don't degrade when workers not expected [#1074](https://github.com/openshift/machine-api-operator/pull/1074) * Updating ose-machine-api-operator images to be consistent with ART [#1073](https://github.com/openshift/machine-api-operator/pull/1073) * Update default Azure image to use image galleries [#1076](https://github.com/openshift/machine-api-operator/pull/1076) * [OCPBUGS-1274](https://issues.redhat.com/browse/OCPBUGS-1274): add tolerations to termination handler [#1072](https://github.com/openshift/machine-api-operator/pull/1072) * Restrict creating Power VS machine with negative processor and memory [#1067](https://github.com/openshift/machine-api-operator/pull/1067) * [OCPBUGS-519](https://issues.redhat.com/browse/OCPBUGS-519): update error message for disconnected installation validation [#1068](https://github.com/openshift/machine-api-operator/pull/1068) * Update dependencies to K8s 1.25 [#1070](https://github.com/openshift/machine-api-operator/pull/1070) * Only drain a single control plane machine at once [#1066](https://github.com/openshift/machine-api-operator/pull/1066) * Add tag and category id to the caching client log messages [#1063](https://github.com/openshift/machine-api-operator/pull/1063) * [Bug 2101736](https://bugzilla.redhat.com/show_bug.cgi?id=2101736): Ignore managed fields during finalizer removal [#1061](https://github.com/openshift/machine-api-operator/pull/1061) * Ensure the phase transition metric only updates when the phase changes [#1059](https://github.com/openshift/machine-api-operator/pull/1059) * Release leader election lease when shutting down [#1060](https://github.com/openshift/machine-api-operator/pull/1060) * Tags/categories ids cache implementation [#1057](https://github.com/openshift/machine-api-operator/pull/1057) * [OCPBUGS-268](https://issues.redhat.com/browse/OCPBUGS-268): vSphere - enable steal time accounting [#1056](https://github.com/openshift/machine-api-operator/pull/1056) * [Bug 2111972](https://bugzilla.redhat.com/show_bug.cgi?id=2111972): operator NS manifest: Set empty openshift.io/run-level [#1053](https://github.com/openshift/machine-api-operator/pull/1053) * Change the git command [#1050](https://github.com/openshift/machine-api-operator/pull/1050) * add a helper function to detect windows os [#1055](https://github.com/openshift/machine-api-operator/pull/1055) * [Bug 2115308](https://bugzilla.redhat.com/show_bug.cgi?id=2115308): Ensure failed drains are subject to exponential backoff [#1051](https://github.com/openshift/machine-api-operator/pull/1051) * [Bug 2087981](https://bugzilla.redhat.com/show_bug.cgi?id=2087981): Change "create" sequence with powering on the vm after clone [#1047](https://github.com/openshift/machine-api-operator/pull/1047) * update windows helper functions [#1049](https://github.com/openshift/machine-api-operator/pull/1049) * [Bug 2110501](https://bugzilla.redhat.com/show_bug.cgi?id=2110501): Revert "Bug 2101880: operator NS manifest: Set empty openshift.io/run-level" [#1045](https://github.com/openshift/machine-api-operator/pull/1045) * [Bug 2109258](https://bugzilla.redhat.com/show_bug.cgi?id=2109258): add more support for old delete annotation [#1042](https://github.com/openshift/machine-api-operator/pull/1042) * [Bug 2101736](https://bugzilla.redhat.com/show_bug.cgi?id=2101736): allow to remove finalizers [#1037](https://github.com/openshift/machine-api-operator/pull/1037) * [Bug 2107578](https://bugzilla.redhat.com/show_bug.cgi?id=2107578): Fix while setting default processor value for Power VS platform [#1040](https://github.com/openshift/machine-api-operator/pull/1040) * [Bug 2104642](https://bugzilla.redhat.com/show_bug.cgi?id=2104642): fix the Machine validation webhook for nutanix providerSpec [#1038](https://github.com/openshift/machine-api-operator/pull/1038) * [Bug 2104642](https://bugzilla.redhat.com/show_bug.cgi?id=2104642): Add a validation webhook for Nutanix MachineProviderConfig [#1034](https://github.com/openshift/machine-api-operator/pull/1034) * [Bug 2097153](https://bugzilla.redhat.com/show_bug.cgi?id=2097153): change ListTags call to ListTagsForCategory [#1027](https://github.com/openshift/machine-api-operator/pull/1027) * [Bug 1994820](https://bugzilla.redhat.com/show_bug.cgi?id=1994820): Degrade operator on cluster bootstrap if not all Machines are Running [#1019](https://github.com/openshift/machine-api-operator/pull/1019) * Migrate delete annotation to match upstream CAPI annotation [#1024](https://github.com/openshift/machine-api-operator/pull/1024) * add utility functions for windows powershell tags [#1030](https://github.com/openshift/machine-api-operator/pull/1030) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): operator NS manifest: Set empty openshift.io/run-level [#1031](https://github.com/openshift/machine-api-operator/pull/1031) * Add webhook validations for Azure boot diagnostics [#1029](https://github.com/openshift/machine-api-operator/pull/1029) * Update revendoring tool [#1028](https://github.com/openshift/machine-api-operator/pull/1028) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Separate controller for the node draining [#1023](https://github.com/openshift/machine-api-operator/pull/1023) * [Bug 2094196](https://bugzilla.redhat.com/show_bug.cgi?id=2094196): Added webhook support for PowerVS platform [#998](https://github.com/openshift/machine-api-operator/pull/998) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): Bump go to 1.18 [#1022](https://github.com/openshift/machine-api-operator/pull/1022) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): Update dependencies to K8s 1.24 [#1021](https://github.com/openshift/machine-api-operator/pull/1021) * Updating ose-machine-api-operator images to be consistent with ART [#1015](https://github.com/openshift/machine-api-operator/pull/1015) * [Bug 2059338](https://bugzilla.redhat.com/show_bug.cgi?id=2059338): Add template HW version detection during clone [#1016](https://github.com/openshift/machine-api-operator/pull/1016) * [Bug 2083237](https://bugzilla.redhat.com/show_bug.cgi?id=2083237): Set vCenter client request timeout [#1013](https://github.com/openshift/machine-api-operator/pull/1013) * Skip validation if we just remove the finalizer [#996](https://github.com/openshift/machine-api-operator/pull/996) * Don't force a requeue after updating Status.Phase [#1012](https://github.com/openshift/machine-api-operator/pull/1012) * Remove unreleased AWS Placement Groups support [#1009](https://github.com/openshift/machine-api-operator/pull/1009) * Fix broken link to CVO run levels [#991](https://github.com/openshift/machine-api-operator/pull/991) * AWS IMDSv2 machine spec validation [#1008](https://github.com/openshift/machine-api-operator/pull/1008) * Add DescribeRegions permission for aws controller [#1007](https://github.com/openshift/machine-api-operator/pull/1007) * Add Nutanix Platform to Machine API Operator [#988](https://github.com/openshift/machine-api-operator/pull/988) * Add pd-balanced disks support for GCP [#1006](https://github.com/openshift/machine-api-operator/pull/1006) * Adding cluster api provider url(ibm) [#1005](https://github.com/openshift/machine-api-operator/pull/1005) * Refactor provider status to use metav1.Condition [#1004](https://github.com/openshift/machine-api-operator/pull/1004) * webhook: machine: add Azure Data Disks deletionPolicy validation [#1003](https://github.com/openshift/machine-api-operator/pull/1003) * Remove 30s wait before creating a machine [#999](https://github.com/openshift/machine-api-operator/pull/999) * Make MAPO the default for OpenStack deployments [#1000](https://github.com/openshift/machine-api-operator/pull/1000) * [Bug 2067852](https://bugzilla.redhat.com/show_bug.cgi?id=2067852): Bump prometheus/client_golang [#1002](https://github.com/openshift/machine-api-operator/pull/1002) * Machine webhook validation for Azure Ultra Disks [#1001](https://github.com/openshift/machine-api-operator/pull/1001) * Update govmomi to 0.27.4 [#995](https://github.com/openshift/machine-api-operator/pull/995) * [Bug 2060697](https://bugzilla.redhat.com/show_bug.cgi?id=2060697): Update openshift/api dependency [#994](https://github.com/openshift/machine-api-operator/pull/994) * Fix MAPO image [#993](https://github.com/openshift/machine-api-operator/pull/993) * Update OpenShift API to include placement groups [#992](https://github.com/openshift/machine-api-operator/pull/992) * Replace broken image references [#881](https://github.com/openshift/machine-api-operator/pull/881) * modify prometheus alerts to ignore pod [#986](https://github.com/openshift/machine-api-operator/pull/986) * Updating ose-machine-api-operator images to be consistent with ART [#983](https://github.com/openshift/machine-api-operator/pull/983) * Allow to remove ec2 placement groups [#990](https://github.com/openshift/machine-api-operator/pull/990) * Validate AWS NetworkInterfaceType in webhook [#989](https://github.com/openshift/machine-api-operator/pull/989) * Add IAM permissions required for AWS Placement Group enhancement [#976](https://github.com/openshift/machine-api-operator/pull/976) * fix readme after migrating from cluster-api-provider-* [#982](https://github.com/openshift/machine-api-operator/pull/982) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/a7dfb7f5745370a2fb4e38fa75aaed562796e981...b6c243d139f4345a88d5678eb6ba6041a2abb405) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/f319faad0f2a538159dac610068952488d800ebf) * [OCPBUGS-44325](https://issues.redhat.com/browse/OCPBUGS-44325): Panic seen in CI job for MCC pod [#4689](https://github.com/openshift/machine-config-operator/pull/4689) * [OCPBUGS-38382](https://issues.redhat.com/browse/OCPBUGS-38382): [release-4.12] daemon/update: disable systemd unit before overwriting [#4530](https://github.com/openshift/machine-config-operator/pull/4530) * [OCPBUGS-33665](https://issues.redhat.com/browse/OCPBUGS-33665): Run resolv-prepender entirely async [#4364](https://github.com/openshift/machine-config-operator/pull/4364) * [OCPBUGS-30829](https://issues.redhat.com/browse/OCPBUGS-30829): Add existing kubeletconfig/ctrcfg mc-name-suffix annotation [#4257](https://github.com/openshift/machine-config-operator/pull/4257) * [OCPBUGS-30823](https://issues.redhat.com/browse/OCPBUGS-30823): Introduce kubelet-dependencies.target and firstboot-osupdate.target [#4268](https://github.com/openshift/machine-config-operator/pull/4268) * [OCPBUGS-30329](https://issues.redhat.com/browse/OCPBUGS-30329): set nodeStatusReportFrequency [#4246](https://github.com/openshift/machine-config-operator/pull/4246) * [OCPBUGS-19659](https://issues.redhat.com/browse/OCPBUGS-19659): After dual-stack conversion reconcile IPFamilies [#3936](https://github.com/openshift/machine-config-operator/pull/3936) * [OCPBUGS-29366](https://issues.redhat.com/browse/OCPBUGS-29366): release-4.12: fix nodeStatusUpdateFrequency [#4180](https://github.com/openshift/machine-config-operator/pull/4180) * [OCPBUGS-29278](https://issues.redhat.com/browse/OCPBUGS-29278): crio: drop automatic image cleanup on upgrades [#4178](https://github.com/openshift/machine-config-operator/pull/4178) * [OCPBUGS-14071](https://issues.redhat.com/browse/OCPBUGS-14071): Imageinspect takes type of error into account, drop podman inspect fallback [#3717](https://github.com/openshift/machine-config-operator/pull/3717) * [OCPBUGS-21038](https://issues.redhat.com/browse/OCPBUGS-21038): update library-go and kube deps to latest version [#4013](https://github.com/openshift/machine-config-operator/pull/4013) * [OCPBUGS-22719](https://issues.redhat.com/browse/OCPBUGS-22719): Backport logspam PRs [#4008](https://github.com/openshift/machine-config-operator/pull/4008) * [OCPBUGS-21723](https://issues.redhat.com/browse/OCPBUGS-21723): keepalived/ingress: change healthcheck script [#3985](https://github.com/openshift/machine-config-operator/pull/3985) * [OCPBUGS-18433](https://issues.redhat.com/browse/OCPBUGS-18433): Prevent NM from unsetting the hostname [#3900](https://github.com/openshift/machine-config-operator/pull/3900) * [OCPBUGS-20509](https://issues.redhat.com/browse/OCPBUGS-20509): resolv-prepender: avoid pulling baremetalRuntimeCfgImage again if it … [#3969](https://github.com/openshift/machine-config-operator/pull/3969) * [OCPBUGS-19779](https://issues.redhat.com/browse/OCPBUGS-19779): daemon: always use `podman cp` to copy extensions container content [#3944](https://github.com/openshift/machine-config-operator/pull/3944) * [OCPBUGS-19515](https://issues.redhat.com/browse/OCPBUGS-19515): The kubeconfig copied on to each node has 644 permissions [#3931](https://github.com/openshift/machine-config-operator/pull/3931) * [OCPBUGS-17862](https://issues.redhat.com/browse/OCPBUGS-17862): Agent-based install process the container machine-config-controller will be oom [#3875](https://github.com/openshift/machine-config-operator/pull/3875) * [OCPBUGS-17461](https://issues.redhat.com/browse/OCPBUGS-17461): The machine-config-controller pod restart in SNO+1 causing daemonsets to restart [#3844](https://github.com/openshift/machine-config-operator/pull/3844) * [OCPBUGS-15570](https://issues.redhat.com/browse/OCPBUGS-15570): configure-ovs: support UUID in vlan.parent [#3768](https://github.com/openshift/machine-config-operator/pull/3768) * [OCPBUGS-16754](https://issues.redhat.com/browse/OCPBUGS-16754): daemon: Don't traverse `/run/ostree/auth.json` symlink [#3818](https://github.com/openshift/machine-config-operator/pull/3818) * [OCPBUGS-11303](https://issues.redhat.com/browse/OCPBUGS-11303): Fix regex dot in coredns config file [#3660](https://github.com/openshift/machine-config-operator/pull/3660) * [OCPBUGS-13757](https://issues.redhat.com/browse/OCPBUGS-13757): The MCD has a non-functional pivot command that should be removed [#3710](https://github.com/openshift/machine-config-operator/pull/3710) * [OCPBUGS-7718](https://issues.redhat.com/browse/OCPBUGS-7718): Prevent possible split-brain scenario with keepalived unicast [#3562](https://github.com/openshift/machine-config-operator/pull/3562) * [OCPBUGS-7945](https://issues.redhat.com/browse/OCPBUGS-7945): [release-4.12] Forklift most of resolv-prepender dispatcher script to systemd [#3573](https://github.com/openshift/machine-config-operator/pull/3573) * [OCPBUGS-5935](https://issues.redhat.com/browse/OCPBUGS-5935): Wrap podman commands in a while loop [#3495](https://github.com/openshift/machine-config-operator/pull/3495) * [OCPBUGS-7167](https://issues.redhat.com/browse/OCPBUGS-7167): Avoid 'too restrictive' SCC problems by being more explicit [#3542](https://github.com/openshift/machine-config-operator/pull/3542) * [OCPBUGS-10505](https://issues.redhat.com/browse/OCPBUGS-10505): daemon: Drop duplicate `--authfile` used in `run` [#3617](https://github.com/openshift/machine-config-operator/pull/3617) * [OCPBUGS-10372](https://issues.redhat.com/browse/OCPBUGS-10372): Remove hard requirement for the afterburn from early-running aws-related services [#3613](https://github.com/openshift/machine-config-operator/pull/3613) * [OCPBUGS-9993](https://issues.redhat.com/browse/OCPBUGS-9993): Revert "daemon: Temporarily copy auth file with more open perms on FCOS" [#3608](https://github.com/openshift/machine-config-operator/pull/3608) * [OCPBUGS-7445](https://issues.redhat.com/browse/OCPBUGS-7445): configure-ovs: fix mtu-migration cleanup [#3555](https://github.com/openshift/machine-config-operator/pull/3555) * [OCPBUGS-8261](https://issues.redhat.com/browse/OCPBUGS-8261): [release-4.12] backport cleanupDuplicateMC [#3578](https://github.com/openshift/machine-config-operator/pull/3578) * [OCPBUGS-6943](https://issues.redhat.com/browse/OCPBUGS-6943): Improvements for `configure-ovs.sh` [#3528](https://github.com/openshift/machine-config-operator/pull/3528) * [OCPBUGS-6045](https://issues.redhat.com/browse/OCPBUGS-6045): There are not enough logs in case "oc extract" is stuck in mco first boot [#3503](https://github.com/openshift/machine-config-operator/pull/3503) * [OCPBUGS-6973](https://issues.redhat.com/browse/OCPBUGS-6973): configure-ovs: optionally generate configuration in /run [#3532](https://github.com/openshift/machine-config-operator/pull/3532) * [OCPBUGS-6779](https://issues.redhat.com/browse/OCPBUGS-6779): baremetal: clean state generated by NM when run by dracut [#3521](https://github.com/openshift/machine-config-operator/pull/3521) * [OCPBUGS-7241](https://issues.redhat.com/browse/OCPBUGS-7241): controller: default overwrite to true for files [#3546](https://github.com/openshift/machine-config-operator/pull/3546) * [OCPBUGS-6997](https://issues.redhat.com/browse/OCPBUGS-6997): Fix 4.12 art images [#3535](https://github.com/openshift/machine-config-operator/pull/3535) * [OCPBUGS-6805](https://issues.redhat.com/browse/OCPBUGS-6805): Only check image type if we are sure there is work that needs to be done [#3526](https://github.com/openshift/machine-config-operator/pull/3526) * [OCPBUGS-5999](https://issues.redhat.com/browse/OCPBUGS-5999): 4.12 - remove goutils from dependency tree [#3496](https://github.com/openshift/machine-config-operator/pull/3496) * [OCPBUGS-6179](https://issues.redhat.com/browse/OCPBUGS-6179): controller: don't render new MC until base MCs update [#3506](https://github.com/openshift/machine-config-operator/pull/3506) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): Mount /run/nodeip-configuration into keepalived containers [#3479](https://github.com/openshift/machine-config-operator/pull/3479) * [OCPBUGS-5384](https://issues.redhat.com/browse/OCPBUGS-5384): daemon: Explicitly pull image before running [#3475](https://github.com/openshift/machine-config-operator/pull/3475) * [OCPBUGS-3311](https://issues.redhat.com/browse/OCPBUGS-3311): [alicloud] provider ID not being set for kubelet [#3457](https://github.com/openshift/machine-config-operator/pull/3457) * [OCPBUGS-4805](https://issues.redhat.com/browse/OCPBUGS-4805): Do not allow empty system reserved values [#3453](https://github.com/openshift/machine-config-operator/pull/3453) * [OCPBUGS-4667](https://issues.redhat.com/browse/OCPBUGS-4667): vsphere: check that /etc/hostname is not empty [#3452](https://github.com/openshift/machine-config-operator/pull/3452) * [OCPBUGS-4091](https://issues.redhat.com/browse/OCPBUGS-4091): NM resolv prepender: correct permissions for systemd resolved config [#3442](https://github.com/openshift/machine-config-operator/pull/3442) * [OCPBUGS-4091](https://issues.redhat.com/browse/OCPBUGS-4091): NM resolve prepender: remove extra quotes in OKD flow [#3433](https://github.com/openshift/machine-config-operator/pull/3433) * [OCPBUGS-3955](https://issues.redhat.com/browse/OCPBUGS-3955): daemon: gate done state on uncordon completion [#3425](https://github.com/openshift/machine-config-operator/pull/3425) * [OCPBUGS-3750](https://issues.redhat.com/browse/OCPBUGS-3750): daemon: Stop setting I/O scheduler to bfq [#3417](https://github.com/openshift/machine-config-operator/pull/3417) * [OCPBUGS-3874](https://issues.redhat.com/browse/OCPBUGS-3874): Don't make https call to http endpoint [#3420](https://github.com/openshift/machine-config-operator/pull/3420) * [OCPBUGS-3504](https://issues.redhat.com/browse/OCPBUGS-3504): On-prem: Ensure resolv-prepender respects NM dispatcher timeout [#3410](https://github.com/openshift/machine-config-operator/pull/3410) * [OCPBUGS-3650](https://issues.redhat.com/browse/OCPBUGS-3650): Revert "Substitute skopeo inspect for imageInspect/podman" [#3414](https://github.com/openshift/machine-config-operator/pull/3414) * [OCPBUGS-3001](https://issues.redhat.com/browse/OCPBUGS-3001): Substitute skopeo inspect for imageInspect/podman, drop podman inspect fallback [#3396](https://github.com/openshift/machine-config-operator/pull/3396) * Force string format when logging rpm-ostree status [#3393](https://github.com/openshift/machine-config-operator/pull/3393) * controller: Don't allow creating the force file via MachineConfig [#3391](https://github.com/openshift/machine-config-operator/pull/3391) * [Bug 2034883](https://bugzilla.redhat.com/show_bug.cgi?id=2034883): Sync controllerconfig anyway if daemon sync fails [#3388](https://github.com/openshift/machine-config-operator/pull/3388) * Fix machine-config-operator logspam when extensions container is not present [#3387](https://github.com/openshift/machine-config-operator/pull/3387) * [OCPBUGS-2757](https://issues.redhat.com/browse/OCPBUGS-2757): Reconcile successfully if already booted into target [#3383](https://github.com/openshift/machine-config-operator/pull/3383) * [OCPBUGS-1257](https://issues.redhat.com/browse/OCPBUGS-1257): Have keepalived check for haproxy status for API VIP [#3339](https://github.com/openshift/machine-config-operator/pull/3339) * daemon: Only try to apply layered changes if BaseOSExtensionsContainerImage is not empty [#3382](https://github.com/openshift/machine-config-operator/pull/3382) * [OCPBUGS-89](https://issues.redhat.com/browse/OCPBUGS-89): configure-ovs: auto-connect ovs-if-phys0 with br-ex [#3312](https://github.com/openshift/machine-config-operator/pull/3312) * [Bug 2107090](https://bugzilla.redhat.com/show_bug.cgi?id=2107090): Machine config server hangs on handling large number of requests in parallel [#3262](https://github.com/openshift/machine-config-operator/pull/3262) * [OCPBUGS-2079](https://issues.redhat.com/browse/OCPBUGS-2079): Add ephemeral storage to kubelet system reserved args [#3375](https://github.com/openshift/machine-config-operator/pull/3375) * [MCO-400](https://issues.redhat.com/browse/MCO-400): helpers: Do synchronize condition if message changes [#3369](https://github.com/openshift/machine-config-operator/pull/3369) * [OCPBUGS-2197](https://issues.redhat.com/browse/OCPBUGS-2197): update: Set proxy for inplace container update too [#3377](https://github.com/openshift/machine-config-operator/pull/3377) * [OCPBUGS-2197](https://issues.redhat.com/browse/OCPBUGS-2197): OCPBUGS-2122: update: Inject proxy data for firstboot [#3370](https://github.com/openshift/machine-config-operator/pull/3370) * [OCPBUGS-2269](https://issues.redhat.com/browse/OCPBUGS-2269): Upgrade failures and MCDPivotError Alert Firing on GCP realtime kernel [#3373](https://github.com/openshift/machine-config-operator/pull/3373) * daemon: Temporarily copy auth file with more open perms on SCOS too [#3372](https://github.com/openshift/machine-config-operator/pull/3372) * : Add missing bits for dual-stack ingress VIPs [#3341](https://github.com/openshift/machine-config-operator/pull/3341) * Jira OCPBUGS-1503: configure-ovs.sh: Do not fail bond with invalid slave device names [#3345](https://github.com/openshift/machine-config-operator/pull/3345) * [MCO-396](https://issues.redhat.com/browse/MCO-396): daemon: FCOS workaround, plus SELinux workaround [#3358](https://github.com/openshift/machine-config-operator/pull/3358) * Switch to https://github.com/coreos/rpmostree-client-go [#3302](https://github.com/openshift/machine-config-operator/pull/3302) * [RFE-2962](https://issues.redhat.com/browse/RFE-2962): configure ovs should use node-ip-hint set by nodeip-configuration [#3362](https://github.com/openshift/machine-config-operator/pull/3362) * [MCO-371](https://issues.redhat.com/browse/MCO-371): metrics: aggregate os_image_url_override metric to avoid unbounded cardinality [#3363](https://github.com/openshift/machine-config-operator/pull/3363) * Rename KUBELET_NODEIP_HINT to just NODEIP_HINT [#3353](https://github.com/openshift/machine-config-operator/pull/3353) * Revert "RFE-2962: configure ovs should use node-ip-hint set by nodeip-configuration service" [#3360](https://github.com/openshift/machine-config-operator/pull/3360) * [Bug 2056387](https://bugzilla.redhat.com/show_bug.cgi?id=2056387): fix alibaba kubelet node name unit [#3338](https://github.com/openshift/machine-config-operator/pull/3338) * Dockerfile: Remove SCOS extensions image references [#3356](https://github.com/openshift/machine-config-operator/pull/3356) * bootstrap: Add CLI arguments for new format oscontainer [#3354](https://github.com/openshift/machine-config-operator/pull/3354) * [RFE-2962](https://issues.redhat.com/browse/RFE-2962): configure ovs should use node-ip-hint set by nodeip-configuration service [#3233](https://github.com/openshift/machine-config-operator/pull/3233) * Add cgroupv2 configuration support in MCO [#3349](https://github.com/openshift/machine-config-operator/pull/3349) * [MCO-289](https://issues.redhat.com/browse/MCO-289): Teach the MCO to use new format image [#3317](https://github.com/openshift/machine-config-operator/pull/3317) * [MCO-371](https://issues.redhat.com/browse/MCO-371): metrics: Add metric for OS image override [#3343](https://github.com/openshift/machine-config-operator/pull/3343) * [OCPBUGS-1616](https://issues.redhat.com/browse/OCPBUGS-1616): Revert "Merge pull request #3311 from sairameshv/cgroupv2" [#3348](https://github.com/openshift/machine-config-operator/pull/3348) * OCPNODE-1146 Add cgroup confiuration support in MCO [#3311](https://github.com/openshift/machine-config-operator/pull/3311) * Bump openshift/api [#3336](https://github.com/openshift/machine-config-operator/pull/3336) * Dual stack vips [#3269](https://github.com/openshift/machine-config-operator/pull/3269) * [TRT-540](https://issues.redhat.com/browse/TRT-540): Add privileged label to infra namespaces [#3328](https://github.com/openshift/machine-config-operator/pull/3328) * update to release.openshift.io/feature-set to match OCP 4.12 [#3329](https://github.com/openshift/machine-config-operator/pull/3329) * added @engelmi, @eslutsky, @Darth-Mera to ovirt-approvers [#3332](https://github.com/openshift/machine-config-operator/pull/3332) * [OCPBUGS-825](https://issues.redhat.com/browse/OCPBUGS-825): Provide a reason if operator is unavailable [#3324](https://github.com/openshift/machine-config-operator/pull/3324) * [MCO-256](https://issues.redhat.com/browse/MCO-256): hypershift: add disruptionless updates to MCD [#3320](https://github.com/openshift/machine-config-operator/pull/3320) * [OCPBUGS-224](https://issues.redhat.com/browse/OCPBUGS-224): Make sure there is a search domain in resolv.conf [#3306](https://github.com/openshift/machine-config-operator/pull/3306) * Hypershift: remove error message on return [#3326](https://github.com/openshift/machine-config-operator/pull/3326) * daemon: Drop mock node updater client [#3325](https://github.com/openshift/machine-config-operator/pull/3325) * [OCPBUGS-631](https://issues.redhat.com/browse/OCPBUGS-631): Pull container image as a separate step [#3318](https://github.com/openshift/machine-config-operator/pull/3318) * Add kubens.service, drop-ins, and kubensenter prefix to kubelet.service [#3274](https://github.com/openshift/machine-config-operator/pull/3274) * Add RuntimeDefault to ctrcfg [#3295](https://github.com/openshift/machine-config-operator/pull/3295) * daemon: Use just one NodeUpdaterClient instance [#3304](https://github.com/openshift/machine-config-operator/pull/3304) * vendor: Bump containers/image [#3303](https://github.com/openshift/machine-config-operator/pull/3303) * OKD: Add build args for FCOS and SCOS [#3294](https://github.com/openshift/machine-config-operator/pull/3294) * [Bug 2107113](https://bugzilla.redhat.com/show_bug.cgi?id=2107113): Fix .ssh directory not owned by core when created by Machine Config D… [#3250](https://github.com/openshift/machine-config-operator/pull/3250) * fixes config decompression lint issue [#3301](https://github.com/openshift/machine-config-operator/pull/3301) * Round off SYSTEM_RESERVED_MEMORY if value is in decimal [#3299](https://github.com/openshift/machine-config-operator/pull/3299) * Remove `onPremPlatformKeepalivedEnableUnicast` function [#3174](https://github.com/openshift/machine-config-operator/pull/3174) * MCD: Add support for RHCOS9 and SCOS9 [#3179](https://github.com/openshift/machine-config-operator/pull/3179) * Bug-2051533: Adding day2 remote worker node requires manually approving CSRs [#3276](https://github.com/openshift/machine-config-operator/pull/3276) * Decompress and decode Ignition configs from ConfigMap [#3280](https://github.com/openshift/machine-config-operator/pull/3280) * [Bug 2111817](https://bugzilla.redhat.com/show_bug.cgi?id=2111817): daemon: Add a workaround for bug 2111817 [#3291](https://github.com/openshift/machine-config-operator/pull/3291) * Don't reference `rhel-coreos-8-extensions` yet [#3290](https://github.com/openshift/machine-config-operator/pull/3290) * Accept new image format, consume in controllerconfig, but stop there [#3286](https://github.com/openshift/machine-config-operator/pull/3286) * Allow overriding OSImageURL with a layered image [#3272](https://github.com/openshift/machine-config-operator/pull/3272) * daemon: drop `systemctl stop kubelet` during node reboot [#2509](https://github.com/openshift/machine-config-operator/pull/2509) * [Bug 2105003](https://bugzilla.redhat.com/show_bug.cgi?id=2105003): on-prem: improvements on resolv-prepender [#3271](https://github.com/openshift/machine-config-operator/pull/3271) * Fix typo [#3279](https://github.com/openshift/machine-config-operator/pull/3279) * Update library-go to set OpenStack provider to external [#3270](https://github.com/openshift/machine-config-operator/pull/3270) * add control-plane label [#3273](https://github.com/openshift/machine-config-operator/pull/3273) * Prep patches for bumping openshift/client-go [#3251](https://github.com/openshift/machine-config-operator/pull/3251) * Update approvers and reviewers list with current active members [#3266](https://github.com/openshift/machine-config-operator/pull/3266) * ctrcfg controller remove cleanupmc() [#3149](https://github.com/openshift/machine-config-operator/pull/3149) * [Bug 2109963](https://bugzilla.redhat.com/show_bug.cgi?id=2109963): Master node in SchedulingDisabled after upgrade from 4.10.24 -> 4.11.0-rc.4 [#3264](https://github.com/openshift/machine-config-operator/pull/3264) * daemon: Drop tuneableFCOSArgsAllowlist [#3248](https://github.com/openshift/machine-config-operator/pull/3248) * daemon: Drop workarounds for rpm-ostree bugs [#3239](https://github.com/openshift/machine-config-operator/pull/3239) * [Bug 2104619](https://bugzilla.redhat.com/show_bug.cgi?id=2104619): Remove rollback deployment [#3243](https://github.com/openshift/machine-config-operator/pull/3243) * on-prem: render-config-coredns from /var/run/NetworkManager/resolv.conf [#3237](https://github.com/openshift/machine-config-operator/pull/3237) * [Bug 2101157](https://bugzilla.redhat.com/show_bug.cgi?id=2101157): configure-ovs: fix handling of connection names with spaces and checking the connection name suffix [#3242](https://github.com/openshift/machine-config-operator/pull/3242) * [Bug 2104503](https://bugzilla.redhat.com/show_bug.cgi?id=2104503): Updating ose-machine-config-operator images to be consistent with ART [#3228](https://github.com/openshift/machine-config-operator/pull/3228) * [Bug 2103786](https://bugzilla.redhat.com/show_bug.cgi?id=2103786): drain controller: don't skip the MCC pod drain [#3212](https://github.com/openshift/machine-config-operator/pull/3212) * [Bug 2102004](https://bugzilla.redhat.com/show_bug.cgi?id=2102004): pkg/controller/common/helpers: Explicitly set mode 0644 [#3226](https://github.com/openshift/machine-config-operator/pull/3226) * [Bug 2099945](https://bugzilla.redhat.com/show_bug.cgi?id=2099945): configure-ovs: clone inactive autoconnect slaves [#3203](https://github.com/openshift/machine-config-operator/pull/3203) * [Bug 2101157](https://bugzilla.redhat.com/show_bug.cgi?id=2101157): configure-ovs: fix handling of connection names with spaces and checking the connection name suffix [#3214](https://github.com/openshift/machine-config-operator/pull/3214) * [Bug 2097785](https://bugzilla.redhat.com/show_bug.cgi?id=2097785): Send out OSUpdateStaged event directly [#3189](https://github.com/openshift/machine-config-operator/pull/3189) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): NS manifest: Set empty openshift.io/run-level [#3217](https://github.com/openshift/machine-config-operator/pull/3217) * Update block payload test with vendored runtime-utils [#3148](https://github.com/openshift/machine-config-operator/pull/3148) * [Bug 2099664](https://bugzilla.redhat.com/show_bug.cgi?id=2099664): daemon: initialize nodewriter before login monitor [#3211](https://github.com/openshift/machine-config-operator/pull/3211) * [Bug 2096413](https://bugzilla.redhat.com/show_bug.cgi?id=2096413): configure-ovs: set mac only for non fail_over_mac bonds [#3202](https://github.com/openshift/machine-config-operator/pull/3202) * README: Link to the product documentation for example MachineConfigs [#3150](https://github.com/openshift/machine-config-operator/pull/3150) * [Bug 1817075](https://bugzilla.redhat.com/show_bug.cgi?id=1817075): MCC & MCO don't free leader leases during shut down -> 10 minutes of leader election timeouts [#3185](https://github.com/openshift/machine-config-operator/pull/3185) * [Bug 2092442](https://bugzilla.redhat.com/show_bug.cgi?id=2092442): drain_controller: slow down retries for failing nodes [#3178](https://github.com/openshift/machine-config-operator/pull/3178) * [Bug 2096496](https://bugzilla.redhat.com/show_bug.cgi?id=2096496): controller: de-couple FIPS and realtime detection [#3200](https://github.com/openshift/machine-config-operator/pull/3200) * [Bug 2096413](https://bugzilla.redhat.com/show_bug.cgi?id=2096413): configure-ovs: improve handling of static ip and mac address configuration [#3190](https://github.com/openshift/machine-config-operator/pull/3190) * [Bug 2005694](https://bugzilla.redhat.com/show_bug.cgi?id=2005694): Removing proxy object takes up to 10 minutes for the changes to propagate to the MCO [#3166](https://github.com/openshift/machine-config-operator/pull/3166) * [Bug 2090794](https://bugzilla.redhat.com/show_bug.cgi?id=2090794): drain controller: continue retry after 1h timeout [#3167](https://github.com/openshift/machine-config-operator/pull/3167) * [Bug 2092003](https://bugzilla.redhat.com/show_bug.cgi?id=2092003): Fixup of URL for AWS unit/file to compute instance provider-id [#3170](https://github.com/openshift/machine-config-operator/pull/3170) * [Bug 2089775](https://bugzilla.redhat.com/show_bug.cgi?id=2089775): Fix regexp in keepalived script chk_default_ingress.sh [#3156](https://github.com/openshift/machine-config-operator/pull/3156) * [Bug 2087687](https://bugzilla.redhat.com/show_bug.cgi?id=2087687): MCO does not generate event when user applies Default -> LowUpdateSlowReaction WorkerLatencyProfile [#3163](https://github.com/openshift/machine-config-operator/pull/3163) * Updating openshift-proxy-pull-test images to be consistent with ART [#2935](https://github.com/openshift/machine-config-operator/pull/2935) * [Bug 2090358](https://bugzilla.redhat.com/show_bug.cgi?id=2090358): Move drain log message to when drain starts [#3168](https://github.com/openshift/machine-config-operator/pull/3168) * [Bug 2089687](https://bugzilla.redhat.com/show_bug.cgi?id=2089687): Update alert message for drain failure [#3169](https://github.com/openshift/machine-config-operator/pull/3169) * [Bug 2045559](https://bugzilla.redhat.com/show_bug.cgi?id=2045559): Increase keepalived API check fall value to 3 [#3158](https://github.com/openshift/machine-config-operator/pull/3158) * [Bug 2090436](https://bugzilla.redhat.com/show_bug.cgi?id=2090436): It takes 30min-60min to update the machine count in custom MachineConfigPools (MCPs) when a node is removed from the pool [#3165](https://github.com/openshift/machine-config-operator/pull/3165) * [Bug 2091730](https://bugzilla.redhat.com/show_bug.cgi?id=2091730): create openshift-monitoring token in e2e [#3172](https://github.com/openshift/machine-config-operator/pull/3172) * Revert "Merge pull request #3162 from damdo/BZ2084450-2" [#3175](https://github.com/openshift/machine-config-operator/pull/3175) * [Bug 2084450](https://bugzilla.redhat.com/show_bug.cgi?id=2084450): Add unit/file for AWS to compute instance provider-id and pass it to the kubelet [#3162](https://github.com/openshift/machine-config-operator/pull/3162) * [Bug 1948551](https://bugzilla.redhat.com/show_bug.cgi?id=1948551): apiserver-watcher should run in a privileged namespace [#3107](https://github.com/openshift/machine-config-operator/pull/3107) * [Bug 2012969](https://bugzilla.redhat.com/show_bug.cgi?id=2012969): emit kube events for skipped and upgraded OSes [#3153](https://github.com/openshift/machine-config-operator/pull/3153) * [Bug 2086728](https://bugzilla.redhat.com/show_bug.cgi?id=2086728): Move node draining to controller. Remove MCD privs [#3135](https://github.com/openshift/machine-config-operator/pull/3135) * [Bug 2078866](https://bugzilla.redhat.com/show_bug.cgi?id=2078866): configure-ovs: avoid restarting NetworkManager [#3120](https://github.com/openshift/machine-config-operator/pull/3120) * [Bug 2086728](https://bugzilla.redhat.com/show_bug.cgi?id=2086728): Improves Config Drift Monitor e2e tests [#3146](https://github.com/openshift/machine-config-operator/pull/3146) * [Bug 2056442](https://bugzilla.redhat.com/show_bug.cgi?id=2056442): Bug fix for node drain caused by ICSP objects [#3144](https://github.com/openshift/machine-config-operator/pull/3144) * Allow blocking payload reg if it has mirrors configured [#2819](https://github.com/openshift/machine-config-operator/pull/2819) * daemon: Have nodeWriter maintain ref to lister and node name [#3143](https://github.com/openshift/machine-config-operator/pull/3143) * manifests: Lower daemon RBAC permissions on machineconfig objects [#3140](https://github.com/openshift/machine-config-operator/pull/3140) * [RFE-2703](https://issues.redhat.com/browse/RFE-2703): add prometheus rules for master memory usage [#3124](https://github.com/openshift/machine-config-operator/pull/3124) * [low priority] test/helpers: fix typo hardcoded pool [#3061](https://github.com/openshift/machine-config-operator/pull/3061) * Use library-go resourcemerge helper functions [#3078](https://github.com/openshift/machine-config-operator/pull/3078) * [Bug 2076355](https://bugzilla.redhat.com/show_bug.cgi?id=2076355): fix MCNameSuffix when kcfg ctrrcfg after bootstrap config [#3093](https://github.com/openshift/machine-config-operator/pull/3093) * OWNERS: remove mkenigs, add raisaat [#3139](https://github.com/openshift/machine-config-operator/pull/3139) * removed the workerlatencyprofile status related code [#3129](https://github.com/openshift/machine-config-operator/pull/3129) * [Bug 2080267](https://bugzilla.redhat.com/show_bug.cgi?id=2080267): [vsphere] remove warning encountered on vSphere UPI cluster without API VIP [#3132](https://github.com/openshift/machine-config-operator/pull/3132) * colin's small patches rollup [#3108](https://github.com/openshift/machine-config-operator/pull/3108) * Move Ignition file generation to controller/common, fix Compression [#3128](https://github.com/openshift/machine-config-operator/pull/3128) * [Bug 2081119](https://bugzilla.redhat.com/show_bug.cgi?id=2081119): drop doc overlaysize default [#3127](https://github.com/openshift/machine-config-operator/pull/3127) * [Bug 2076521](https://bugzilla.redhat.com/show_bug.cgi?id=2076521): mcc: update node sort to account for matching zones [#3125](https://github.com/openshift/machine-config-operator/pull/3125) * daemon: Validate kernel arguments [#3105](https://github.com/openshift/machine-config-operator/pull/3105) * [Bug 2078945](https://bugzilla.redhat.com/show_bug.cgi?id=2078945): Ensure only one apiserver-watcher process is active on a node. [#3106](https://github.com/openshift/machine-config-operator/pull/3106) * Do not check for status of other operators for node config [#3111](https://github.com/openshift/machine-config-operator/pull/3111) * [Bug 2072040](https://bugzilla.redhat.com/show_bug.cgi?id=2072040): Avoid NM managing patch port between br-int and br-ex [#3059](https://github.com/openshift/machine-config-operator/pull/3059) * nodecontroller: 3 logging patches [#3104](https://github.com/openshift/machine-config-operator/pull/3104) * kcfg controller remove cleanupmc [#3096](https://github.com/openshift/machine-config-operator/pull/3096) * [Bug 2076975](https://bugzilla.redhat.com/show_bug.cgi?id=2076975): OVN Kubernetes configure-ovs-network set static if conversion metric [#3100](https://github.com/openshift/machine-config-operator/pull/3100) * daemon: Add some logging for state [#3102](https://github.com/openshift/machine-config-operator/pull/3102) * workerlatency profiles - updating the kubelet configuration based on the nodes.config.openshift.io resource [#3015](https://github.com/openshift/machine-config-operator/pull/3015) * [Bug 2066605](https://bugzilla.redhat.com/show_bug.cgi?id=2066605): [on-prem] make Corefile api matching stricter [#3033](https://github.com/openshift/machine-config-operator/pull/3033) * Kubelet: apply default podPidsLimit [#3085](https://github.com/openshift/machine-config-operator/pull/3085) * [Bug 2073021](https://bugzilla.redhat.com/show_bug.cgi?id=2073021): firstboot: Retry on failure [#3070](https://github.com/openshift/machine-config-operator/pull/3070) * Revise KubeVirt platform for hypershift usage [#3084](https://github.com/openshift/machine-config-operator/pull/3084) * Deprecate the use of pkg/errors [#2868](https://github.com/openshift/machine-config-operator/pull/2868) * [Bug 2074613](https://bugzilla.redhat.com/show_bug.cgi?id=2074613): templates: Don't use `:z` with podman on system directories [#3079](https://github.com/openshift/machine-config-operator/pull/3079) * [Bug 2035005](https://bugzilla.redhat.com/show_bug.cgi?id=2035005): Move removeUpdateInProgressTaint functionality to mcc [#3064](https://github.com/openshift/machine-config-operator/pull/3064) * [low priority] kubelet controller: rm unused userDefinedSystemReserved [#3054](https://github.com/openshift/machine-config-operator/pull/3054) * mcc/node controller: order node updates by zone [#3009](https://github.com/openshift/machine-config-operator/pull/3009) * [low priority] update_test: remove redundant types [#3082](https://github.com/openshift/machine-config-operator/pull/3082) * updateKernelArgs: pass kargs instead of MCs [#3055](https://github.com/openshift/machine-config-operator/pull/3055) * daemon: add desiredConfigMap mode for Hypershift [#3068](https://github.com/openshift/machine-config-operator/pull/3068) * daemon: add a comment explaining CoreOSDaemon [#3080](https://github.com/openshift/machine-config-operator/pull/3080) * adds zacks hack scripts [#2953](https://github.com/openshift/machine-config-operator/pull/2953) * [Bug 2069740](https://bugzilla.redhat.com/show_bug.cgi?id=2069740): Avoid kubernetes node port range [#3044](https://github.com/openshift/machine-config-operator/pull/3044) * Update github.com/containers/image [#2695](https://github.com/openshift/machine-config-operator/pull/2695) * Render Nutanix cloud provider as blank. [#3051](https://github.com/openshift/machine-config-operator/pull/3051) * Create MCONamespace constant [#3025](https://github.com/openshift/machine-config-operator/pull/3025) * [Bug 2055433](https://bugzilla.redhat.com/show_bug.cgi?id=2055433): configure-ovs: set networking on before restarting NetworkManager [#3006](https://github.com/openshift/machine-config-operator/pull/3006) * [Bug 1949827](https://bugzilla.redhat.com/show_bug.cgi?id=1949827): Add KUBELET_NODEIP_HINT to nodeip-configuration [#2888](https://github.com/openshift/machine-config-operator/pull/2888) * [Bug 2058030](https://bugzilla.redhat.com/show_bug.cgi?id=2058030): configure-ovs: move dhcp config from br-ex to ovs-if-br-ex [#3024](https://github.com/openshift/machine-config-operator/pull/3024) * start.go: rm orphaned err check [#3042](https://github.com/openshift/machine-config-operator/pull/3042) * [Bug 2067857](https://bugzilla.redhat.com/show_bug.cgi?id=2067857): prometheus/client_golang v1.11.0 -> v1.12.1 [#3038](https://github.com/openshift/machine-config-operator/pull/3038) * mcd: Remove redundant MkdirAll call in update.go [#2895](https://github.com/openshift/machine-config-operator/pull/2895) * Remove runtime request timeout restriction [#3026](https://github.com/openshift/machine-config-operator/pull/3026) * [Bug 2068613](https://bugzilla.redhat.com/show_bug.cgi?id=2068613): ClusterRoleUpdated/ClusterRoleBindingUpdated Spamming Event Logs [#3040](https://github.com/openshift/machine-config-operator/pull/3040) * [Bug 2057160](https://bugzilla.redhat.com/show_bug.cgi?id=2057160): configure-ovs.sh: Provide store hint for default route interface [#2971](https://github.com/openshift/machine-config-operator/pull/2971) * Move log statement to UpdateTuningArgs [#3032](https://github.com/openshift/machine-config-operator/pull/3032) * build-sys: Default to `make binaries` [#3035](https://github.com/openshift/machine-config-operator/pull/3035) * e2e: Use `/proc/cmdline` instead of `rpm-ostree kargs` [#3034](https://github.com/openshift/machine-config-operator/pull/3034) * Fix description typo in osImageURL CRD parameter [#3029](https://github.com/openshift/machine-config-operator/pull/3029) * Add Nutanix Platform to Machine Config Operator [#2942](https://github.com/openshift/machine-config-operator/pull/2942) * bootstrap_test.go: remove unused constants [#3023](https://github.com/openshift/machine-config-operator/pull/3023) * Make our resourcemerge fork update a container's Resources.Requests, un-revert #2802 [#3028](https://github.com/openshift/machine-config-operator/pull/3028) * Revert "Send alert when MCO can't safely apply updated Kubelet CA on nodes in paused pool" [#3027](https://github.com/openshift/machine-config-operator/pull/3027) * Send alert when MCO can't safely apply updated Kubelet CA on nodes in paused pool [#2802](https://github.com/openshift/machine-config-operator/pull/2802) * server/api_test: Adjust expected error message for Go 1.18 [#3019](https://github.com/openshift/machine-config-operator/pull/3019) * Enable unicast keepalived for all on-prem platforms [#3016](https://github.com/openshift/machine-config-operator/pull/3016) * templates: Clean out filesystem properties [#2894](https://github.com/openshift/machine-config-operator/pull/2894) * [Bug 2063324](https://bugzilla.redhat.com/show_bug.cgi?id=2063324): Ensure directories are created with usable permission bits [#3011](https://github.com/openshift/machine-config-operator/pull/3011) * enhance MCO test library [#3000](https://github.com/openshift/machine-config-operator/pull/3000) * Bump(openshift/api): to get CSI changes [#3010](https://github.com/openshift/machine-config-operator/pull/3010) * daemon: get the apiserver url from the kubelet's kubeconfig [#2978](https://github.com/openshift/machine-config-operator/pull/2978) * Update vendored Ignition to v2.13 [#2996](https://github.com/openshift/machine-config-operator/pull/2996) * daemon.go/update.go: various cleanup surrounding OS updates [#2973](https://github.com/openshift/machine-config-operator/pull/2973) * Remove unused etcd images [#3001](https://github.com/openshift/machine-config-operator/pull/3001) * daemon: bootimage and ignition logging [#2994](https://github.com/openshift/machine-config-operator/pull/2994) * configure-ovs: reload NM only when necessary [#2992](https://github.com/openshift/machine-config-operator/pull/2992) * Add `--templates` flag to MCC `bootstrap` command [#2995](https://github.com/openshift/machine-config-operator/pull/2995) * Preparatory patches for bumping fcct -> butane [#2980](https://github.com/openshift/machine-config-operator/pull/2980) * [Bug 2060133](https://bugzilla.redhat.com/show_bug.cgi?id=2060133): Explicitly set keyfile as the default plugin [#2984](https://github.com/openshift/machine-config-operator/pull/2984) * Use afterburn to collect instance metadata in order to populate nodename [#2988](https://github.com/openshift/machine-config-operator/pull/2988) * Remove `bindata.go` [#2983](https://github.com/openshift/machine-config-operator/pull/2983) * Add new extension for kerberos [#2979](https://github.com/openshift/machine-config-operator/pull/2979) * [Bug 2048352](https://bugzilla.redhat.com/show_bug.cgi?id=2048352): ovn-kubernetes: Fixed ofport_request for physical ports [#2941](https://github.com/openshift/machine-config-operator/pull/2941) * [Bug 2050466](https://bugzilla.redhat.com/show_bug.cgi?id=2050466): Not allow empty string in icsp&image CR [#2969](https://github.com/openshift/machine-config-operator/pull/2969) * [Bug 2058626](https://bugzilla.redhat.com/show_bug.cgi?id=2058626): Revert "Bump(openshift/api): to get CSI changes" [#2968](https://github.com/openshift/machine-config-operator/pull/2968) * Bump(openshift/api): to get CSI changes [#2949](https://github.com/openshift/machine-config-operator/pull/2949) * [Bug 2041814](https://bugzilla.redhat.com/show_bug.cgi?id=2041814): do not generate new KubeletConfigKey for the first kubel… [#2936](https://github.com/openshift/machine-config-operator/pull/2936) * OpenStack: set transient hostname in afterburn-hostname [#2945](https://github.com/openshift/machine-config-operator/pull/2945) * [Bug 1929160](https://bugzilla.redhat.com/show_bug.cgi?id=1929160): Add NetworkManager reload to resolv-prepender [#2488](https://github.com/openshift/machine-config-operator/pull/2488) * test/helpers: use `RetryOnConflict` for node writes [#2921](https://github.com/openshift/machine-config-operator/pull/2921) * updates docs for config drift detection [#2872](https://github.com/openshift/machine-config-operator/pull/2872) * templates: Change default container-runtime config to enable all CRI-O metrics [#2911](https://github.com/openshift/machine-config-operator/pull/2911) * Revert "Remove sysctl-inotify.conf.yaml" [#2944](https://github.com/openshift/machine-config-operator/pull/2944) * Remove sysctl-inotify.conf.yaml [#2909](https://github.com/openshift/machine-config-operator/pull/2909) * [Bug 2047445](https://bugzilla.redhat.com/show_bug.cgi?id=2047445): Use ip command to check for ipv6 addresses [#2934](https://github.com/openshift/machine-config-operator/pull/2934) * Add Christoph as a baremetal owner [#2920](https://github.com/openshift/machine-config-operator/pull/2920) * docs: Update links from "Optimized Updates" to "Rebootless Updates" [#2913](https://github.com/openshift/machine-config-operator/pull/2913) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/59a8d308bfa4cd89abdec9d345e396fe9dafd7b0...f319faad0f2a538159dac610068952488d800ebf) ### [machine-os-images](https://github.com/openshift/machine-os-images/tree/1964124713ead86fb22c93fd21b2a1a170551ff5) * [OCPBUGS-54173](https://issues.redhat.com/browse/OCPBUGS-54173): Change rhcos release browser url [#61](https://github.com/openshift/machine-os-images/pull/61) * Updating ose-machine-os-images images to be consistent with ART [#20](https://github.com/openshift/machine-os-images/pull/20) * [OCPBUGS-884](https://issues.redhat.com/browse/OCPBUGS-884): Update rhcos release browser url [#21](https://github.com/openshift/machine-os-images/pull/21) * [Bug 2090017](https://bugzilla.redhat.com/show_bug.cgi?id=2090017): Get rid of lookaside cache in OCP build [#15](https://github.com/openshift/machine-os-images/pull/15) * Revert .ci-operator.yaml [#16](https://github.com/openshift/machine-os-images/pull/16) * Updating ose-machine-os-images images to be consistent with ART [#11](https://github.com/openshift/machine-os-images/pull/11) * [Bug 2075024](https://bugzilla.redhat.com/show_bug.cgi?id=2075024): Remove destination coreos if it exists [#13](https://github.com/openshift/machine-os-images/pull/13) * uncompress arm64 vmlinuz for pxe booting [#12](https://github.com/openshift/machine-os-images/pull/12) * [Full changelog](https://github.com/openshift/machine-os-images/compare/09a132b7c844082fe6945b327fd0243d5a729f7c...1964124713ead86fb22c93fd21b2a1a170551ff5) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/e27952fc813ac994e64f715a8690f3d36a9ec778) * [OCPBUGS-21330](https://issues.redhat.com/browse/OCPBUGS-21330): Update go.mod for CVE-2023-39325 [Release-4.12] [#73](https://github.com/openshift/multus-admission-controller/pull/73) * Updating ose-multus-admission-controller images to be consistent with ART [#61](https://github.com/openshift/multus-admission-controller/pull/61) * [OCPBUGS-10506](https://issues.redhat.com/browse/OCPBUGS-10506): Client golang [backport 4.12] [#59](https://github.com/openshift/multus-admission-controller/pull/59) * [SDN-3515](https://issues.redhat.com/browse/SDN-3515): Add the missing handler for tls metrics [#52](https://github.com/openshift/multus-admission-controller/pull/52) * [SDN-3515](https://issues.redhat.com/browse/SDN-3515): Add an option to serve the metrics over HTTPS [#51](https://github.com/openshift/multus-admission-controller/pull/51) * Updating ose-multus-admission-controller images to be consistent with ART [#50](https://github.com/openshift/multus-admission-controller/pull/50) * Allows the optional use of a kubeconfig if the OS env var is set [#49](https://github.com/openshift/multus-admission-controller/pull/49) * Skip to add fieldSelector in case of empty namespace [#48](https://github.com/openshift/multus-admission-controller/pull/48) * Add flag for Ignore namespaces [#46](https://github.com/openshift/multus-admission-controller/pull/46) * Updating ose-multus-admission-controller images to be consistent with ART [#45](https://github.com/openshift/multus-admission-controller/pull/45) * Updating ose-multus-admission-controller images to be consistent with ART [#44](https://github.com/openshift/multus-admission-controller/pull/44) * Updating ose-multus-admission-controller images to be consistent with ART [#42](https://github.com/openshift/multus-admission-controller/pull/42) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/8557de96b849421acf495693b5e1375d6b4d88e9...e27952fc813ac994e64f715a8690f3d36a9ec778) ### [multus-cni](https://github.com/openshift/multus-cni/tree/07d8af54f06652b283dc0aa8db68d438c4bfe741) * [OCPBUGS-28520](https://issues.redhat.com/browse/OCPBUGS-28520): Fix SAST scan issues for multus-cni-container [4.12] [#225](https://github.com/openshift/multus-cni/pull/225) * [OCPBUGS-21061](https://issues.redhat.com/browse/OCPBUGS-21061): Update go.mod for CVE-2023-39325 [Release-4.12] [#196](https://github.com/openshift/multus-cni/pull/196) * [OCPBUGS-22461](https://issues.redhat.com/browse/OCPBUGS-22461): fix multiple default gw [#200](https://github.com/openshift/multus-cni/pull/200) * [OCPBUGS-7844](https://issues.redhat.com/browse/OCPBUGS-7844): Fix multus to support CNI plugin which does not create interface [backport 4.12] [#164](https://github.com/openshift/multus-cni/pull/164) * [OCPBUGS-10535](https://issues.redhat.com/browse/OCPBUGS-10535): Multus sync Mar-20-2023 to OCP 4.12 [#149](https://github.com/openshift/multus-cni/pull/149) * [OCPBUGS-7792](https://issues.redhat.com/browse/OCPBUGS-7792): Multus sync v3.9.3 to OCP 4.12 [#145](https://github.com/openshift/multus-cni/pull/145) * Updating multus-cni images to be consistent with ART [#136](https://github.com/openshift/multus-cni/pull/136) * Updating multus-cni images to be consistent with ART [#133](https://github.com/openshift/multus-cni/pull/133) * [Bug 2092839](https://bugzilla.redhat.com/show_bug.cgi?id=2092839): Fix missing device-info in networks-status annotation for chained plugins [#131](https://github.com/openshift/multus-cni/pull/131) * [Bug 2071799](https://bugzilla.redhat.com/show_bug.cgi?id=2071799): Skip status update in CmdDel if getPod is failed [#130](https://github.com/openshift/multus-cni/pull/130) * Updating multus-cni images to be consistent with ART [#119](https://github.com/openshift/multus-cni/pull/119) * [Bug 2082360](https://bugzilla.redhat.com/show_bug.cgi?id=2082360): Bumps net-attach-def client library (for CNI v1.0 IP compatibility) [#127](https://github.com/openshift/multus-cni/pull/127) * types: fix usage of strings.Split() for parsing CNI_ARGS (#836) [#126](https://github.com/openshift/multus-cni/pull/126) * [Bug 2071799](https://bugzilla.redhat.com/show_bug.cgi?id=2071799): Remove error handling for getPod to force to proceed cmdDel. [#124](https://github.com/openshift/multus-cni/pull/124) * [Bug 2038019](https://bugzilla.redhat.com/show_bug.cgi?id=2038019): Upstream sync for 4.11 [#121](https://github.com/openshift/multus-cni/pull/121) * crio: mount /run rslave [#120](https://github.com/openshift/multus-cni/pull/120) * [Full changelog](https://github.com/openshift/multus-cni/compare/09993f095b446e28932a3ba9c201ea38cab04d85...07d8af54f06652b283dc0aa8db68d438c4bfe741) ### [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy/tree/644461f25fb6b45054d1a8be7a996670959a5a9d) * [OCPBUGS-21420](https://issues.redhat.com/browse/OCPBUGS-21420): Update go.mod for CVE-2023-39325 (#36) [#36](https://github.com/openshift/multus-networkpolicy/pull/36) * [OCPBUGS-977](https://issues.redhat.com/browse/OCPBUGS-977): Sync k8snetworkplumbingwg/multi-networkpolicy-iptables 2022_10 (#20) [#20](https://github.com/openshift/multus-networkpolicy/pull/20) * Updating multus-networkpolicy images to be consistent with ART (#19) [#19](https://github.com/openshift/multus-networkpolicy/pull/19) * Upstream rebase (#18) [#18](https://github.com/openshift/multus-networkpolicy/pull/18) * Updating multus-networkpolicy images to be consistent with ART (#17) [#17](https://github.com/openshift/multus-networkpolicy/pull/17) * Updating multus-networkpolicy images to be consistent with ART (#16) [#16](https://github.com/openshift/multus-networkpolicy/pull/16) * Updating multus-networkpolicy images to be consistent with ART (#15) [#15](https://github.com/openshift/multus-networkpolicy/pull/15) * [Full changelog](https://github.com/openshift/multus-networkpolicy/compare/f545a32b3a90abe5fb96d7058153e8b63e16d63f...644461f25fb6b45054d1a8be7a996670959a5a9d) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/efd6ffbb275a133196e30edfe9f241e2a3b4f0c0) * Updating ose-multus-route-override-cni images to be consistent with ART [#27](https://github.com/openshift/route-override-cni/pull/27) * Updating ose-multus-route-override-cni images to be consistent with ART [#25](https://github.com/openshift/route-override-cni/pull/25) * Updating ose-multus-route-override-cni images to be consistent with ART [#21](https://github.com/openshift/route-override-cni/pull/21) * [Full changelog](https://github.com/openshift/route-override-cni/compare/707dd38046554810f601f2fae4a69bc4b907d7d3...efd6ffbb275a133196e30edfe9f241e2a3b4f0c0) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/5993d022e7fad3a1bede89235502f1a90f618bf2) * [OCPBUGS-37942](https://issues.redhat.com/browse/OCPBUGS-37942), [OCPBUGS-38019](https://issues.redhat.com/browse/OCPBUGS-38019): [release-4.12] Stateful fixes [#310](https://github.com/openshift/whereabouts-cni/pull/310) * [OCPBUGS-28801](https://issues.redhat.com/browse/OCPBUGS-28801): [release-4.12] Enable whereabouts config [#244](https://github.com/openshift/whereabouts-cni/pull/244) * [OCPBUGS-16008](https://issues.redhat.com/browse/OCPBUGS-16008): Cherry pick fix assignment 4.12 [#238](https://github.com/openshift/whereabouts-cni/pull/238) * [OCPBUGS-21499](https://issues.redhat.com/browse/OCPBUGS-21499): update golang.org/x/net to v0.17.0 [#209](https://github.com/openshift/whereabouts-cni/pull/209) * [OCPBUGS-5953](https://issues.redhat.com/browse/OCPBUGS-5953): Denormalize IP name before checking if pod is alive [Backport 4.12] [#178](https://github.com/openshift/whereabouts-cni/pull/178) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#134](https://github.com/openshift/whereabouts-cni/pull/134) * [OCPBUGS-8673](https://issues.redhat.com/browse/OCPBUGS-8673): Dual stack support [#131](https://github.com/openshift/whereabouts-cni/pull/131) * [OCPBUGS-7429](https://issues.redhat.com/browse/OCPBUGS-7429): Invalid ipv6 backport 4.12 [#109](https://github.com/openshift/whereabouts-cni/pull/109) * [OCPBUGS-11321](https://issues.redhat.com/browse/OCPBUGS-11321): respect requested allocation range when exluding ranges [Backport 4.12] [#123](https://github.com/openshift/whereabouts-cni/pull/123) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#93](https://github.com/openshift/whereabouts-cni/pull/93) * [OCPBUGS-3941](https://issues.redhat.com/browse/OCPBUGS-3941): Backport Excluded ranges bug (#282) [#103](https://github.com/openshift/whereabouts-cni/pull/103) * Fix commitish for non-default interfaces fix [#96](https://github.com/openshift/whereabouts-cni/pull/96) * ip-reconciler: Add all non default interfaces to Pod IP list [#95](https://github.com/openshift/whereabouts-cni/pull/95) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#81](https://github.com/openshift/whereabouts-cni/pull/81) * [Bug 2065785](https://bugzilla.redhat.com/show_bug.cgi?id=2065785): Sync upstream for context improvements [#87](https://github.com/openshift/whereabouts-cni/pull/87) * [Bug 2050409](https://bugzilla.redhat.com/show_bug.cgi?id=2050409): ip-reconciler should have known errors from api server on instantiation [#84](https://github.com/openshift/whereabouts-cni/pull/84) * [Bug 2052055](https://bugzilla.redhat.com/show_bug.cgi?id=2052055): client-go bump to v1.22 [#82](https://github.com/openshift/whereabouts-cni/pull/82) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/2381402a17778cc0853e30b554c9884a51a7ac06...5993d022e7fad3a1bede89235502f1a90f618bf2) ### [must-gather](https://github.com/openshift/must-gather/tree/a4db96b0b046ee976cd63b1de4570d698eb6341a) * [OCPBUGS-48086](https://issues.redhat.com/browse/OCPBUGS-48086): Update owners [#477](https://github.com/openshift/must-gather/pull/477) * [OCPBUGS-24523](https://issues.redhat.com/browse/OCPBUGS-24523): [release-4.12] Add csi-proxy logs collection in must-gather for Windows nodes [#394](https://github.com/openshift/must-gather/pull/394) * [OCPBUGS-4250](https://issues.redhat.com/browse/OCPBUGS-4250): [release-4.12] backport PodNetworkConnectivityCheck gather script #334 [#334](https://github.com/openshift/must-gather/pull/334) * Updating ose-must-gather images to be consistent with ART [#330](https://github.com/openshift/must-gather/pull/330) * [Bug 2000552](https://bugzilla.redhat.com/show_bug.cgi?id=2000552): Add apiservices logs gathering by default [#332](https://github.com/openshift/must-gather/pull/332) * [OCPBUGS-1810](https://issues.redhat.com/browse/OCPBUGS-1810): fix ingress node firewall script permission [#329](https://github.com/openshift/must-gather/pull/329) * Add ingress node firewall must-gather collection script [#328](https://github.com/openshift/must-gather/pull/328) * Updating ose-must-gather images to be consistent with ART [#320](https://github.com/openshift/must-gather/pull/320) * [Bug 2103283](https://bugzilla.redhat.com/show_bug.cgi?id=2103283): Add timeout to oc cp command to fix must-gather delays when routers are terminating [#317](https://github.com/openshift/must-gather/pull/317) * Stop collecting Docker logs on Windows instances [#315](https://github.com/openshift/must-gather/pull/315) * [Bug 2097346](https://bugzilla.redhat.com/show_bug.cgi?id=2097346): Updates how gether_monitoring obtains SA token [#313](https://github.com/openshift/must-gather/pull/313) * [Bug 2091658](https://bugzilla.redhat.com/show_bug.cgi?id=2091658): Improve the sriov gather script [#305](https://github.com/openshift/must-gather/pull/305) * [Bug 2090730](https://bugzilla.redhat.com/show_bug.cgi?id=2090730): Adds collection of Multus log files [#306](https://github.com/openshift/must-gather/pull/306) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): fix getting deployment name [#303](https://github.com/openshift/must-gather/pull/303) * [Bug 1999529](https://bugzilla.redhat.com/show_bug.cgi?id=1999529): Filter disabled resources in inspection to proceed others [#296](https://github.com/openshift/must-gather/pull/296) * fix gather_insights collection [#301](https://github.com/openshift/must-gather/pull/301) * [Bug 2023295](https://bugzilla.redhat.com/show_bug.cgi?id=2023295): Add networking resources [#300](https://github.com/openshift/must-gather/pull/300) * Add SR-IOV gather script [#297](https://github.com/openshift/must-gather/pull/297) * gather_profiling_node: correctly manage NotReady Nodes [#299](https://github.com/openshift/must-gather/pull/299) * Add new metallb crds to the gather script [#295](https://github.com/openshift/must-gather/pull/295) * add capability for oauth-server audit logging [#265](https://github.com/openshift/must-gather/pull/265) * Simplify CRD collection [#293](https://github.com/openshift/must-gather/pull/293) * [Bug 2062355](https://bugzilla.redhat.com/show_bug.cgi?id=2062355): Collect NMState resources when operator is installed [#292](https://github.com/openshift/must-gather/pull/292) * List the pods by label app=etcd to only list etcd pods [#289](https://github.com/openshift/must-gather/pull/289) * [WINC-708](https://issues.redhat.com/browse/WINC-708): Collect containerd logs on Windows instances [#290](https://github.com/openshift/must-gather/pull/290) * [Bug 2054319](https://bugzilla.redhat.com/show_bug.cgi?id=2054319): Fix the namespace extract filter [#286](https://github.com/openshift/must-gather/pull/286) * RUNNING_ETCD_POD must not be a quorum pod for must-gather [#276](https://github.com/openshift/must-gather/pull/276) * collection-scripts: allow collection of CRI-O profiling data [#285](https://github.com/openshift/must-gather/pull/285) * Collect prometheus target details [#277](https://github.com/openshift/must-gather/pull/277) * Updating ose-must-gather images to be consistent with ART [#281](https://github.com/openshift/must-gather/pull/281) * Add script to collect kubelet profiling data [#273](https://github.com/openshift/must-gather/pull/273) * [Full changelog](https://github.com/openshift/must-gather/compare/db7f815b979352e130967695b4a08f4f2c886bfb...a4db96b0b046ee976cd63b1de4570d698eb6341a) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/30386d6b8d4f3b05931842b6a9b85f15c241b09a) * [OCPBUGS-13836](https://issues.redhat.com/browse/OCPBUGS-13836): Ignore missing links during delete command [#53](https://github.com/openshift/bond-cni/pull/53) * Updating ose-network-interface-bond-cni images to be consistent with ART [#37](https://github.com/openshift/bond-cni/pull/37) * ds merges: mac duplicates [#40](https://github.com/openshift/bond-cni/pull/40) * Add mtu verification for nics that are not sriov (#40) [#38](https://github.com/openshift/bond-cni/pull/38) * ds merges: github ci [#33](https://github.com/openshift/bond-cni/pull/33) * Updating ose-network-interface-bond-cni images to be consistent with ART [#32](https://github.com/openshift/bond-cni/pull/32) * ds merges: IPAM fix, tests, bond interface name fix [#31](https://github.com/openshift/bond-cni/pull/31) * Updating ose-network-interface-bond-cni images to be consistent with ART [#30](https://github.com/openshift/bond-cni/pull/30) * [Full changelog](https://github.com/openshift/bond-cni/compare/6edc4a731f7db838f8693c918fe23fd971eb5689...30386d6b8d4f3b05931842b6a9b85f15c241b09a) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/fad45782360032bdde3a10b9a28ba30ecc14684f) * Added METRIC_TEST_IMAGE var (#92) [#92](https://github.com/openshift/network-metrics-daemon/pull/92) * Update the k8s dependencies to 1.25.15 (#84) [#84](https://github.com/openshift/network-metrics-daemon/pull/84) * Revert "Remove e2e tests that consistently fail in 4.12 (#74)" (#77) [#74](https://github.com/openshift/network-metrics-daemon/pull/74) * Remove e2e tests that consistently fail in 4.12 (#74) [#74](https://github.com/openshift/network-metrics-daemon/pull/74) * Updating ose-network-metrics-daemon images to be consistent with ART (#60) [#60](https://github.com/openshift/network-metrics-daemon/pull/60) * Fix gofmt check issue (#68) [#68](https://github.com/openshift/network-metrics-daemon/pull/68) * Update golang.org/x/text to 0.7.0 (#66) [#66](https://github.com/openshift/network-metrics-daemon/pull/66) * Adjusted test ns for the new ocp security model (#61) [#61](https://github.com/openshift/network-metrics-daemon/pull/61) * Updating ose-network-metrics-daemon images to be consistent with ART (#59) [#59](https://github.com/openshift/network-metrics-daemon/pull/59) * Updating ose-network-metrics-daemon images to be consistent with ART (#46) [#46](https://github.com/openshift/network-metrics-daemon/pull/46) * Updated prometheus client_golang version to v1.11.1 (#48) [#48](https://github.com/openshift/network-metrics-daemon/pull/48) * Fix field selector (#49) [#49](https://github.com/openshift/network-metrics-daemon/pull/49) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/234c13885e0c00a3b3f4f1bf81a868c82508dd2d...fad45782360032bdde3a10b9a28ba30ecc14684f) ### [network-tools](https://github.com/openshift/network-tools/tree/c76613c77c8785b91611bb3c4245bc34f3b14f76) * [OCPBUGS-1831](https://issues.redhat.com/browse/OCPBUGS-1831): Improve error propagation [#70](https://github.com/openshift/network-tools/pull/70) * Updating ose-network-tools images to be consistent with ART [#71](https://github.com/openshift/network-tools/pull/71) * Minor fixed found during demo preparation [#68](https://github.com/openshift/network-tools/pull/68) * Add pod-run-netns-command script to run command from network-tools [#67](https://github.com/openshift/network-tools/pull/67) * Implement new scripts to interact with ovn cluster [#66](https://github.com/openshift/network-tools/pull/66) * Migrate existing scripts to network-tools [#65](https://github.com/openshift/network-tools/pull/65) * Rework network-tools to [#64](https://github.com/openshift/network-tools/pull/64) * update owners [#62](https://github.com/openshift/network-tools/pull/62) * Updating ose-network-tools images to be consistent with ART [#63](https://github.com/openshift/network-tools/pull/63) * [Bug 2043094](https://bugzilla.redhat.com/show_bug.cgi?id=2043094): Add ovn clean conntrack functionality [#55](https://github.com/openshift/network-tools/pull/55) * Updating ose-network-tools images to be consistent with ART [#54](https://github.com/openshift/network-tools/pull/54) * Add docs for invoking ovnkube-trace [#56](https://github.com/openshift/network-tools/pull/56) * [Full changelog](https://github.com/openshift/network-tools/compare/bcfec9c5a054f4c60356175b42a2477ec181fbd9...c76613c77c8785b91611bb3c4245bc34f3b14f76) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/1053f14213faf18c67162760598a8fc47a5ad4b5) * [OCPBUGS-32010](https://issues.redhat.com/browse/OCPBUGS-32010): bump x/net to 0.24.0 [#113](https://github.com/openshift/oauth-apiserver/pull/113) * [OCPBUGS-21049](https://issues.redhat.com/browse/OCPBUGS-21049): Bump K8s to v1.25 [#104](https://github.com/openshift/oauth-apiserver/pull/104) * Updating ose-oauth-apiserver images to be consistent with ART [#80](https://github.com/openshift/oauth-apiserver/pull/80) * bump kube to 1.24.4 [#81](https://github.com/openshift/oauth-apiserver/pull/81) * bump kube to 1.23.1 [#75](https://github.com/openshift/oauth-apiserver/pull/75) * [Bug 2049155](https://bugzilla.redhat.com/show_bug.cgi?id=2049155): fix printers to avoid panic from DeepCopy [#71](https://github.com/openshift/oauth-apiserver/pull/71) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/cd4f5bb0d9792c582dc70bd186a3a1580abc5fc0...1053f14213faf18c67162760598a8fc47a5ad4b5) ### [oauth-proxy](https://github.com/openshift/oauth-proxy/tree/03e5b13b8b7087dd70abfd70efb4c5b92f800a4f) * Update logo [#245](https://github.com/openshift/oauth-proxy/pull/245) * fix json examples for --openshift-delegate-urls [#203](https://github.com/openshift/oauth-proxy/pull/203) * Use resourceName in Openshift SAR rule [#243](https://github.com/openshift/oauth-proxy/pull/243) * Updating golang-github-openshift-oauth-proxy images to be consistent with ART [#241](https://github.com/openshift/oauth-proxy/pull/241) * [Full changelog](https://github.com/openshift/oauth-proxy/compare/799d414ba87ca5b28d08cf4af07409032c04df2b...03e5b13b8b7087dd70abfd70efb4c5b92f800a4f) ### [oauth-server](https://github.com/openshift/oauth-server/tree/0c434f420b178093a2e940dfb2c445ff638d1914) * [OCPBUGS-27478](https://issues.redhat.com/browse/OCPBUGS-27478): bump osin deps [#144](https://github.com/openshift/oauth-server/pull/144) * [OCPBUGS-13906](https://issues.redhat.com/browse/OCPBUGS-13906): don't log request query and fragment on failed authn request [#129](https://github.com/openshift/oauth-server/pull/129) * [OCPBUGS-12757](https://issues.redhat.com/browse/OCPBUGS-12757): bump lib-go for group cache fix, kube 1.24->1.25 [#127](https://github.com/openshift/oauth-server/pull/127) * Updating oauth-server images to be consistent with ART [#109](https://github.com/openshift/oauth-server/pull/109) * Bump library-go to b2073c41366aae78868b24e86d99021b79d754cb [#112](https://github.com/openshift/oauth-server/pull/112) * fix linter findings [#98](https://github.com/openshift/oauth-server/pull/98) * [Bug 2086505](https://bugzilla.redhat.com/show_bug.cgi?id=2086505): Updating oauth-server images to be consistent with ART [#108](https://github.com/openshift/oauth-server/pull/108) * [Bug 2086465](https://bugzilla.redhat.com/show_bug.cgi?id=2086465): External OAuth: create audit logs for auth events [#103](https://github.com/openshift/oauth-server/pull/103) * [AUTH-100](https://issues.redhat.com/browse/AUTH-100): Add request header authn auditing [#106](https://github.com/openshift/oauth-server/pull/106) * Update external dependencies [#105](https://github.com/openshift/oauth-server/pull/105) * osin: Import from the new openshift module path [#104](https://github.com/openshift/oauth-server/pull/104) * [AUTH-66](https://issues.redhat.com/browse/AUTH-66): turn on audit on oauth-server with PW-based flow [#92](https://github.com/openshift/oauth-server/pull/92) * [Full changelog](https://github.com/openshift/oauth-server/compare/245b95f8a8e28e3960e4d369f3ca9a42be99bdf8...0c434f420b178093a2e940dfb2c445ff638d1914) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/b0407e37de04934135f86b69d4629e8c6a190fdf) * [OCPBUGS-32447](https://issues.redhat.com/browse/OCPBUGS-32447): ose-openshift-apiserver-container: golang: net/http, x… [#481](https://github.com/openshift/openshift-apiserver/pull/481) * : OCPBUGS-21429: Enable HTTP/2 CVE mitigation [#399](https://github.com/openshift/openshift-apiserver/pull/399) * [OCPBUGS-8717](https://issues.redhat.com/browse/OCPBUGS-8717): Clear metadata.namespace on projects before write. [#358](https://github.com/openshift/openshift-apiserver/pull/358) * [OCPBUGS-4339](https://issues.redhat.com/browse/OCPBUGS-4339): fix printer panic [#335](https://github.com/openshift/openshift-apiserver/pull/335) * [IR-259](https://issues.redhat.com/browse/IR-259): changing image stream importMode increments its generation [#329](https://github.com/openshift/openshift-apiserver/pull/329) * [IR-258](https://issues.redhat.com/browse/IR-258): ImageStreamImport manifest list support [#290](https://github.com/openshift/openshift-apiserver/pull/290) * bump to kube 1.25.2 [#320](https://github.com/openshift/openshift-apiserver/pull/320) * [OCPBUGS-2803](https://issues.redhat.com/browse/OCPBUGS-2803): Revert "projects: add rw mutex to auth cache" [#326](https://github.com/openshift/openshift-apiserver/pull/326) * Perform route host defaulting and update authz using v1 types. [#321](https://github.com/openshift/openshift-apiserver/pull/321) * Drop AllocateRouterShard from hostname allocation interface. [#322](https://github.com/openshift/openshift-apiserver/pull/322) * Use route/v1 types for route warnings. [#317](https://github.com/openshift/openshift-apiserver/pull/317) * Remove k8s.io/kubernetes deps from route validation/defaulting. [#319](https://github.com/openshift/openshift-apiserver/pull/319) * Condense the route host allocator abstraction. [#313](https://github.com/openshift/openshift-apiserver/pull/313) * Move route host assignment code out of the route REST strategy. [#315](https://github.com/openshift/openshift-apiserver/pull/315) * Make route validation operate on v1 types. [#312](https://github.com/openshift/openshift-apiserver/pull/312) * make api team approver [#316](https://github.com/openshift/openshift-apiserver/pull/316) * Remove use of %w formatting directive from t.Errorf call. [#293](https://github.com/openshift/openshift-apiserver/pull/293) * add retry on imagestreamtag update [#304](https://github.com/openshift/openshift-apiserver/pull/304) * Add coreydaley as reviewer/approver for pkg/build [#294](https://github.com/openshift/openshift-apiserver/pull/294) * Stop unnecessary project auth cache invalidations. [#295](https://github.com/openshift/openshift-apiserver/pull/295) * [Bug 2089402](https://bugzilla.redhat.com/show_bug.cgi?id=2089402): Validate Image labels correctly [#292](https://github.com/openshift/openshift-apiserver/pull/292) * Use github.com/openshift/runtime-utils/pkg/registries [#205](https://github.com/openshift/openshift-apiserver/pull/205) * [NE-882](https://issues.redhat.com/browse/NE-882): Allow route subdomains to be omitted [#254](https://github.com/openshift/openshift-apiserver/pull/254) * [Bug 2041133](https://bugzilla.redhat.com/show_bug.cgi?id=2041133): Bump openshift/api to 271bd7e1834c62853f1646b1bcb29aa4ec79d7c1 [#286](https://github.com/openshift/openshift-apiserver/pull/286) * [Bug 2049234](https://bugzilla.redhat.com/show_bug.cgi?id=2049234): Fix importing images that have dots in their namespace [#279](https://github.com/openshift/openshift-apiserver/pull/279) * [Bug 2047335](https://bugzilla.redhat.com/show_bug.cgi?id=2047335): fix panic from printer [#275](https://github.com/openshift/openshift-apiserver/pull/275) * [Bug 2047335](https://bugzilla.redhat.com/show_bug.cgi?id=2047335): fix panic from printer [#272](https://github.com/openshift/openshift-apiserver/pull/272) * projects: add rw mutex to auth cache [#267](https://github.com/openshift/openshift-apiserver/pull/267) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/7f883e65efdd40f63a543e5a687a820fa159180f...b0407e37de04934135f86b69d4629e8c6a190fdf) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/5386aab0529342d93334da40b32ae507bdeb988e) * [OCPBUGS-49644](https://issues.redhat.com/browse/OCPBUGS-49644): Add new team members to the OWNERS file [#364](https://github.com/openshift/openshift-controller-manager/pull/364) * [OCPBUGS-41953](https://issues.redhat.com/browse/OCPBUGS-41953): Add adambkaplan as approver [#336](https://github.com/openshift/openshift-controller-manager/pull/336) * Updating ose-openshift-controller-manager images to be consistent with ART [#241](https://github.com/openshift/openshift-controller-manager/pull/241) * [OCPBUGS-978](https://issues.redhat.com/browse/OCPBUGS-978): gracefully release leases in OCM [#239](https://github.com/openshift/openshift-controller-manager/pull/239) * template namespace processing [#242](https://github.com/openshift/openshift-controller-manager/pull/242) * bump to kube 1.25.2 [#244](https://github.com/openshift/openshift-controller-manager/pull/244) * Remove route controllers [#240](https://github.com/openshift/openshift-controller-manager/pull/240) * remove route controllers from OCM process (openshift-controller-manager start) [#238](https://github.com/openshift/openshift-controller-manager/pull/238) * Updating ose-openshift-controller-manager images to be consistent with ART [#236](https://github.com/openshift/openshift-controller-manager/pull/236) * [Bug 2117235](https://bugzilla.redhat.com/show_bug.cgi?id=2117235): separate route controllers to a new command [#234](https://github.com/openshift/openshift-controller-manager/pull/234) * [Bug 2116715](https://bugzilla.redhat.com/show_bug.cgi?id=2116715): remove GenericResourceInformer code because it is not used anymore [#235](https://github.com/openshift/openshift-controller-manager/pull/235) * [BUILD-417](https://issues.redhat.com/browse/BUILD-417): Rebase k8s 1.24 [#226](https://github.com/openshift/openshift-controller-manager/pull/226) * [Bug 2110617](https://bugzilla.redhat.com/show_bug.cgi?id=2110617): Split route controller [#230](https://github.com/openshift/openshift-controller-manager/pull/230) * [BUILD-433](https://issues.redhat.com/browse/BUILD-433): Run builds in user namespaces without seccomp if BUILD_PRIVILEGED=false [#173](https://github.com/openshift/openshift-controller-manager/pull/173) * Add user coreydaley as an approver [#224](https://github.com/openshift/openshift-controller-manager/pull/224) * [NE-860](https://issues.redhat.com/browse/NE-860): ingress-to-route: add support for destinationCACertificate [#218](https://github.com/openshift/openshift-controller-manager/pull/218) * Image trigger handler: Include the object name on error [#221](https://github.com/openshift/openshift-controller-manager/pull/221) * [Bug 2075584](https://bugzilla.redhat.com/show_bug.cgi?id=2075584): Bubble actual error message up to the build [#220](https://github.com/openshift/openshift-controller-manager/pull/220) * [Bug 2067868](https://bugzilla.redhat.com/show_bug.cgi?id=2067868): Update prometheus client_golang from 1.11.0 => 1.11.1 [#219](https://github.com/openshift/openshift-controller-manager/pull/219) * Accept stop signal [#215](https://github.com/openshift/openshift-controller-manager/pull/215) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/2c2d50dbda3a06681a3b9c683c53ff3b3ba3b685...5386aab0529342d93334da40b32ae507bdeb988e) ### [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics/tree/3d5dc18d2bee5ba7132560bf40790af997952d33) * [OCPBUGS-20706](https://issues.redhat.com/browse/OCPBUGS-20706): bump `x/net` to v0.17.0 [#106](https://github.com/openshift/openshift-state-metrics/pull/106) * Updating openshift-state-metrics images to be consistent with ART [#91](https://github.com/openshift/openshift-state-metrics/pull/91) * OWNERS: Add myself, and move former team members to emeritus [#90](https://github.com/openshift/openshift-state-metrics/pull/90) * Updating openshift-state-metrics images to be consistent with ART [#89](https://github.com/openshift/openshift-state-metrics/pull/89) * Updating openshift-state-metrics images to be consistent with ART [#88](https://github.com/openshift/openshift-state-metrics/pull/88) * Updates OWNERS file [#86](https://github.com/openshift/openshift-state-metrics/pull/86) * [Bug 2067783](https://bugzilla.redhat.com/show_bug.cgi?id=2067783): Bump client_golang to v1.12.1 [#85](https://github.com/openshift/openshift-state-metrics/pull/85) * Use service CA beta annotation [#84](https://github.com/openshift/openshift-state-metrics/pull/84) * Updating openshift-state-metrics images to be consistent with ART [#81](https://github.com/openshift/openshift-state-metrics/pull/81) * Adding the right build comment as per go 1.17 [#82](https://github.com/openshift/openshift-state-metrics/pull/82) * [Full changelog](https://github.com/openshift/openshift-state-metrics/compare/e5c50aae141e4f72c6843a3964f167bec6e79475...3d5dc18d2bee5ba7132560bf40790af997952d33) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/d09e51ae44b3ac6d27236b515c1f7c6da847689d) * [OCPBUGS-21557](https://issues.redhat.com/browse/OCPBUGS-21557): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#137](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/137) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#130](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/130) * Bug OCPBUGS-3774: Add SecretHashAnnotation to node service [#98](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/98) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#94](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/94) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#93](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/93) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#92](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/92) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#90](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/90) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy (cont) [#88](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/88) * [Bug 2090662](https://bugzilla.redhat.com/show_bug.cgi?id=2090662): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#85](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/85) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#84](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/84) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#83](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/83) * [Bug 2065597](https://bugzilla.redhat.com/show_bug.cgi?id=2065597): Add support for dynamic, user-managed config [#78](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/78) * Mark CSI StorageClass as the default one [#80](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/80) * Add OpenStack team to approvers [#81](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/81) * [Bug 2074292](https://bugzilla.redhat.com/show_bug.cgi?id=2074292): Address CVE-2022-27191 [#79](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/79) * [Bug 2067869](https://bugzilla.redhat.com/show_bug.cgi?id=2067869): Address CVE-2022-21698 [#77](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/77) * Remove Ephemeral mode from the CSI driver [#76](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/76) * [Bug 2061732](https://bugzilla.redhat.com/show_bug.cgi?id=2061732): Fail gracefully on failure to populate cloud info [#74](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/74) * Set fsGroupPolicy in CSIDriver [#75](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/75) * Bump gophercloud [#73](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/73) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#68](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/68) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/12a5dee1b6cbfe7b122c2336b78705e9b0705fc8...d09e51ae44b3ac6d27236b515c1f7c6da847689d) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/05657663c02be6d03d074d0f39a2b247cef9286a) * Bug OCPBUGS-19770: Set controller's SyncPeriod to 1 hour [#86](https://github.com/openshift/machine-api-provider-openstack/pull/86) * [OCPBUGS-10607](https://issues.redhat.com/browse/OCPBUGS-10607): Use TenantID if ProjectID is empty [#66](https://github.com/openshift/machine-api-provider-openstack/pull/66) * [OCPBUGS-10603](https://issues.redhat.com/browse/OCPBUGS-10603): machineset_controller: Stop caching clouds credentials [#65](https://github.com/openshift/machine-api-provider-openstack/pull/65) * [OCPBUGS-7155](https://issues.redhat.com/browse/OCPBUGS-7155): Address CVE-2022-41717 [#55](https://github.com/openshift/machine-api-provider-openstack/pull/55) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#47](https://github.com/openshift/machine-api-provider-openstack/pull/47) * Depend on CAPO v0.6.3 [#45](https://github.com/openshift/machine-api-provider-openstack/pull/45) * gofmt with Go v1.19 [#48](https://github.com/openshift/machine-api-provider-openstack/pull/48) * Update dependencies [#44](https://github.com/openshift/machine-api-provider-openstack/pull/44) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#43](https://github.com/openshift/machine-api-provider-openstack/pull/43) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#42](https://github.com/openshift/machine-api-provider-openstack/pull/42) * [Bug 2067844](https://bugzilla.redhat.com/show_bug.cgi?id=2067844): Update dependencies to K8s 1.24, go 1.18 [#41](https://github.com/openshift/machine-api-provider-openstack/pull/41) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#40](https://github.com/openshift/machine-api-provider-openstack/pull/40) * Bump machine-api-operator to 25e61c2 [#39](https://github.com/openshift/machine-api-provider-openstack/pull/39) * Update cluster-api-provider-openstack to v0.6 [#38](https://github.com/openshift/machine-api-provider-openstack/pull/38) * Add Profile and Trunks to Ports and Networks [#35](https://github.com/openshift/machine-api-provider-openstack/pull/35) * [Bug 2054701](https://bugzilla.redhat.com/show_bug.cgi?id=2054701): Convert Machines directly to InstanceSpec [#33](https://github.com/openshift/machine-api-provider-openstack/pull/33) * [Bug 2070181](https://bugzilla.redhat.com/show_bug.cgi?id=2070181): Add support for ServerGroupName [#34](https://github.com/openshift/machine-api-provider-openstack/pull/34) * Add OpenShift CAPO default tags [#28](https://github.com/openshift/machine-api-provider-openstack/pull/28) * [Bug 2067870](https://bugzilla.redhat.com/show_bug.cgi?id=2067870): Address CVE-2022-21698 [#32](https://github.com/openshift/machine-api-provider-openstack/pull/32) * Upgrade external dependencies [#31](https://github.com/openshift/machine-api-provider-openstack/pull/31) * Depend on the downstream CAPO [#30](https://github.com/openshift/machine-api-provider-openstack/pull/30) * [Bug 2046133](https://bugzilla.redhat.com/show_bug.cgi?id=2046133): Set proxy settings on the provider client [#27](https://github.com/openshift/machine-api-provider-openstack/pull/27) * [Bug 2036594](https://bugzilla.redhat.com/show_bug.cgi?id=2036594): Refactor MAPO to use a reconcile function for update and create [#26](https://github.com/openshift/machine-api-provider-openstack/pull/26) * [Bug 2043672](https://bugzilla.redhat.com/show_bug.cgi?id=2043672): Support root volumes [#23](https://github.com/openshift/machine-api-provider-openstack/pull/23) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#22](https://github.com/openshift/machine-api-provider-openstack/pull/22) * shiftstack: Update OWNERS [#21](https://github.com/openshift/machine-api-provider-openstack/pull/21) * Update Dockerfile to 4.10 [#9](https://github.com/openshift/machine-api-provider-openstack/pull/9) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/2401f74dba8112e0dd4a4a1bb77c26887d5da3f4...05657663c02be6d03d074d0f39a2b247cef9286a) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/f13e381e962777d48fadcaa3570a583e72aa80c7) * [OCPBUGS-20780](https://issues.redhat.com/browse/OCPBUGS-20780): deps: Upgrade golang.org/x/net to v0.17.0 [#277](https://github.com/openshift/cluster-api-provider-openstack/pull/277) * [OCPBUGS-2508](https://issues.redhat.com/browse/OCPBUGS-2508): Ensure network defs without subnet follow noAllowedAddressPairs [#247](https://github.com/openshift/cluster-api-provider-openstack/pull/247) * Updating ose-openstack-machine-controllers images to be consistent with ART [#244](https://github.com/openshift/cluster-api-provider-openstack/pull/244) * gofmt with Go v1.19 [#246](https://github.com/openshift/cluster-api-provider-openstack/pull/246) * [OCPBUGS-1765](https://issues.redhat.com/browse/OCPBUGS-1765): Apply noAllowedAddressPairs on intended subnets only [#242](https://github.com/openshift/cluster-api-provider-openstack/pull/242) * Updating ose-openstack-machine-controllers images to be consistent with ART [#239](https://github.com/openshift/cluster-api-provider-openstack/pull/239) * Updating ose-openstack-machine-controllers images to be consistent with ART [#237](https://github.com/openshift/cluster-api-provider-openstack/pull/237) * [Bug 2073398](https://bugzilla.redhat.com/show_bug.cgi?id=2073398): Fix InstanceCreate port & trunk cleanup [#232](https://github.com/openshift/cluster-api-provider-openstack/pull/232) * [Bug 2067870](https://bugzilla.redhat.com/show_bug.cgi?id=2067870): Address CVE-2022-21698 [#224](https://github.com/openshift/cluster-api-provider-openstack/pull/224) * hack/e2e: cleanup tmp dir [#221](https://github.com/openshift/cluster-api-provider-openstack/pull/221) * Add target to run e2e tests [#220](https://github.com/openshift/cluster-api-provider-openstack/pull/220) * [Bug 2033862](https://bugzilla.redhat.com/show_bug.cgi?id=2033862): Ensure subnets belong to the queried network [#218](https://github.com/openshift/cluster-api-provider-openstack/pull/218) * Updating ose-openstack-machine-controllers images to be consistent with ART [#217](https://github.com/openshift/cluster-api-provider-openstack/pull/217) * shiftstack: Update OWNERS [#215](https://github.com/openshift/cluster-api-provider-openstack/pull/215) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/963993b2017a498bf28fe72a89cf38878ab83a34...f13e381e962777d48fadcaa3570a583e72aa80c7) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/701a1221f2877c41a5ab7fa6422617fc130de63c) * [OCPBUGS-46925](https://issues.redhat.com/browse/OCPBUGS-46925), [OCPBUGS-46932](https://issues.redhat.com/browse/OCPBUGS-46932), [OCPBUGS-47312](https://issues.redhat.com/browse/OCPBUGS-47312): x/net bump to v0.34.0 [release-4.12] [#943](https://github.com/openshift/operator-framework-olm/pull/943) * NO-ISSUE: [release-4.12] Backport e2e fixes [#880](https://github.com/openshift/operator-framework-olm/pull/880) * [OCPBUGS-38610](https://issues.redhat.com/browse/OCPBUGS-38610): (fix) Resolver: list CatSrc using client, instead of referring to registry-server cache (#3349) [#875](https://github.com/openshift/operator-framework-olm/pull/875) * [OCPBUGS-42161](https://issues.redhat.com/browse/OCPBUGS-42161): adds paginating lister for evaluating CRs' upgrade fitness versus new CRDs [#873](https://github.com/openshift/operator-framework-olm/pull/873) * [OCPBUGS-41881](https://issues.redhat.com/browse/OCPBUGS-41881): [CARRY] perform operator apiService certificate validity checks directly [#866](https://github.com/openshift/operator-framework-olm/pull/866) * [OCPBUGS-32854](https://issues.redhat.com/browse/OCPBUGS-32854): bump go-jose to v2.6.3 [#782](https://github.com/openshift/operator-framework-olm/pull/782) * [OCPBUGS-35242](https://issues.redhat.com/browse/OCPBUGS-35242): Unblock CI [#773](https://github.com/openshift/operator-framework-olm/pull/773) * [OCPBUGS-27563](https://issues.redhat.com/browse/OCPBUGS-27563), [OCPBUGS-27568](https://issues.redhat.com/browse/OCPBUGS-27568), [OCPBUGS-27648](https://issues.redhat.com/browse/OCPBUGS-27648), [OCPBUGS-27653](https://issues.redhat.com/browse/OCPBUGS-27653): bump go-git/v5 to 5.11.0 [#688](https://github.com/openshift/operator-framework-olm/pull/688) * [OCPBUGS-27962](https://issues.redhat.com/browse/OCPBUGS-27962): [CARRY] SSC RBAC [#671](https://github.com/openshift/operator-framework-olm/pull/671) * [OCPBUGS-28229](https://issues.redhat.com/browse/OCPBUGS-28229): Registry Pod Controller Flag [#673](https://github.com/openshift/operator-framework-olm/pull/673) * [OCPBUGS-24619](https://issues.redhat.com/browse/OCPBUGS-24619): Update to latest k8s v0.25.15 API server and enable HTTP/2 DoS mitigations [#660](https://github.com/openshift/operator-framework-olm/pull/660) * [OCPBUGS-22132](https://issues.redhat.com/browse/OCPBUGS-22132): [release-4.12] Bump golang.org/x/net to v0.17.0 [#590](https://github.com/openshift/operator-framework-olm/pull/590) * [OCPBUGS-18512](https://issues.redhat.com/browse/OCPBUGS-18512), [RHIBMCS-168](https://issues.redhat.com/browse/RHIBMCS-168): Copied csv listing backport [#559](https://github.com/openshift/operator-framework-olm/pull/559) * Introduce DOWNSTREAM_OWNERS file [#541](https://github.com/openshift/operator-framework-olm/pull/541) * Allow cpb to be statically compiled / exempt from FIPS compliance [#512](https://github.com/openshift/operator-framework-olm/pull/512) * [OCPBUGS-15858](https://issues.redhat.com/browse/OCPBUGS-15858): fix dynamic conversion webhook [#503](https://github.com/openshift/operator-framework-olm/pull/503) * [OCPBUGS-15737](https://issues.redhat.com/browse/OCPBUGS-15737): Re-enable psa plugin [#500](https://github.com/openshift/operator-framework-olm/pull/500) * [OCPBUGS-7650](https://issues.redhat.com/browse/OCPBUGS-7650): Catalog Pod Startup Probe Timeout [#450](https://github.com/openshift/operator-framework-olm/pull/450) * Updating operator-registry images to be consistent with ART [#397](https://github.com/openshift/operator-framework-olm/pull/397) * [OCPBUGS-7825](https://issues.redhat.com/browse/OCPBUGS-7825): Set openshift.io/scc label to empty [#456](https://github.com/openshift/operator-framework-olm/pull/456) * [OCPBUGS-7769](https://issues.redhat.com/browse/OCPBUGS-7769): [release-4.12] update cluster policy operator dependency [#454](https://github.com/openshift/operator-framework-olm/pull/454) * [OCPBUGS-7556](https://issues.redhat.com/browse/OCPBUGS-7556): Defuse E2e timebomb [#449](https://github.com/openshift/operator-framework-olm/pull/449) * [OCPBUGS-7086](https://issues.redhat.com/browse/OCPBUGS-7086): cherry-pick pull request refactor FBC caching (#1051) f… [#441](https://github.com/openshift/operator-framework-olm/pull/441) * [OCPBUGS-6260](https://issues.redhat.com/browse/OCPBUGS-6260): Catalog, fatal error: concurrent map read and map write [#440](https://github.com/openshift/operator-framework-olm/pull/440) * [OCPBUGS-7025](https://issues.redhat.com/browse/OCPBUGS-7025): Set ImagePullPolicy of bundle unpacker to "IfNotPresent" for image digests [#439](https://github.com/openshift/operator-framework-olm/pull/439) * [OCPBUGS-3881](https://issues.redhat.com/browse/OCPBUGS-3881): Default to legacy psa settings [#426](https://github.com/openshift/operator-framework-olm/pull/426) * [OCPBUGS-4951](https://issues.redhat.com/browse/OCPBUGS-4951): Bump go and k8s [#424](https://github.com/openshift/operator-framework-olm/pull/424) * Updating operator-lifecycle-manager images to be consistent with ART [#398](https://github.com/openshift/operator-framework-olm/pull/398) * [OCPBUGS-3837](https://issues.redhat.com/browse/OCPBUGS-3837): fix service account token secret reference (#2862) [#412](https://github.com/openshift/operator-framework-olm/pull/412) * [OCPBUGS-3795](https://issues.redhat.com/browse/OCPBUGS-3795): Order an operator CR's status.Component.Refs array (#2880) [#411](https://github.com/openshift/operator-framework-olm/pull/411) * Update OWNERS file [#402](https://github.com/openshift/operator-framework-olm/pull/402) * test/e2e: Preserve the existing environment when using exec.Command [#403](https://github.com/openshift/operator-framework-olm/pull/403) * Attempt workaround for https://issues.redhat.com/browse/CLOUDBLD-11068 [#399](https://github.com/openshift/operator-framework-olm/pull/399) * [OCPBUGS-1912](https://issues.redhat.com/browse/OCPBUGS-1912): Move opm diff to oc mirror [#391](https://github.com/openshift/operator-framework-olm/pull/391) * [OCPBUGS-122](https://issues.redhat.com/browse/OCPBUGS-122): Psa legacy catalog enablement [#383](https://github.com/openshift/operator-framework-olm/pull/383) * [OLM-2695](https://issues.redhat.com/browse/OLM-2695): Adds downstream only CSV Namespace Labeler Plug-In [#370](https://github.com/openshift/operator-framework-olm/pull/370) * [OCPBUGS-1004](https://issues.redhat.com/browse/OCPBUGS-1004): dump descriptive source info on error instead of the source data (#1021) [#380](https://github.com/openshift/operator-framework-olm/pull/380) * [OCPBUGS-858](https://issues.redhat.com/browse/OCPBUGS-858): Package Server Manager should enforce expected csv values [#378](https://github.com/openshift/operator-framework-olm/pull/378) * [OCPBUGS-650](https://issues.redhat.com/browse/OCPBUGS-650): fixing reliance on candidate channel containing all referenced bundle… [#379](https://github.com/openshift/operator-framework-olm/pull/379) * [OLM-2690](https://issues.redhat.com/browse/OLM-2690): Subscription affinity [#359](https://github.com/openshift/operator-framework-olm/pull/359) * OLM-1803 channel upgrade graph visualization [#377](https://github.com/openshift/operator-framework-olm/pull/377) * [OLM-2753](https://issues.redhat.com/browse/OLM-2753): Semver veneer pipe support [#376](https://github.com/openshift/operator-framework-olm/pull/376) * [OCPBUGS-643](https://issues.redhat.com/browse/OCPBUGS-643), [OLM-2726](https://issues.redhat.com/browse/OLM-2726): downstreaming `opm serve` changes from operator-registry [#374](https://github.com/openshift/operator-framework-olm/pull/374) * [OCPBUGS-78](https://issues.redhat.com/browse/OCPBUGS-78): Cleanup conversion webhooks when an operator is uninstalled [#360](https://github.com/openshift/operator-framework-olm/pull/360) * [OCPBUGS-440](https://issues.redhat.com/browse/OCPBUGS-440): improve CA and certificate generation [#361](https://github.com/openshift/operator-framework-olm/pull/361) * noqe: script fixes [#369](https://github.com/openshift/operator-framework-olm/pull/369) * (psa) restrict olm namespace + remove labels from openshift-operators ns [#367](https://github.com/openshift/operator-framework-olm/pull/367) * noqe: operator-registry QoL improvements [#362](https://github.com/openshift/operator-framework-olm/pull/362) * noqe: Update magic catalog for psa changes (#2842) [#365](https://github.com/openshift/operator-framework-olm/pull/365) * Psa downstream [#349](https://github.com/openshift/operator-framework-olm/pull/349) * Add a more robust script for automating the upstream/downstream sync process [#351](https://github.com/openshift/operator-framework-olm/pull/351) * Support Global Operators in Console [#326](https://github.com/openshift/operator-framework-olm/pull/326) * [Bug 2097557](https://bugzilla.redhat.com/show_bug.cgi?id=2097557): use env var for OCP version instead of clusterversion status [#346](https://github.com/openshift/operator-framework-olm/pull/346) * Explicitly override the global catalog namespace [#345](https://github.com/openshift/operator-framework-olm/pull/345) * Sync 07/26 [#343](https://github.com/openshift/operator-framework-olm/pull/343) * [Bug 2105045](https://bugzilla.redhat.com/show_bug.cgi?id=2105045): Only update namespaces when OperatorGroup labels need to change. (#2809) [#336](https://github.com/openshift/operator-framework-olm/pull/336) * Sync 0707 [#335](https://github.com/openshift/operator-framework-olm/pull/335) * [Bug 2101357](https://bugzilla.redhat.com/show_bug.cgi?id=2101357): concurrent write bug fix [#337](https://github.com/openshift/operator-framework-olm/pull/337) * [Bug 2106449](https://bugzilla.redhat.com/show_bug.cgi?id=2106449): Update containerd version [#338](https://github.com/openshift/operator-framework-olm/pull/338) * Updating operator-lifecycle-manager images to be consistent with ART [#334](https://github.com/openshift/operator-framework-olm/pull/334) * Update makefile to default to gsed if present [#313](https://github.com/openshift/operator-framework-olm/pull/313) * Updating operator-registry images to be consistent with ART [#333](https://github.com/openshift/operator-framework-olm/pull/333) * [Bug 2076323](https://bugzilla.redhat.com/show_bug.cgi?id=2076323): Exclude global catalogs from resolution [#320](https://github.com/openshift/operator-framework-olm/pull/320) * [Bug 2100323](https://bugzilla.redhat.com/show_bug.cgi?id=2100323): Fix legacy registries no longer working (#974) [#324](https://github.com/openshift/operator-framework-olm/pull/324) * [Bug 2088541](https://bugzilla.redhat.com/show_bug.cgi?id=2088541): Update unpack job pod security (#2793) [#323](https://github.com/openshift/operator-framework-olm/pull/323) * [Bug 2088541](https://bugzilla.redhat.com/show_bug.cgi?id=2088541): Update catalog source pod security context [#309](https://github.com/openshift/operator-framework-olm/pull/309) * [Bug 2093288](https://bugzilla.redhat.com/show_bug.cgi?id=2093288): fix(grpc): Add startupProbe to check for grpc health readiness (#2791) [#314](https://github.com/openshift/operator-framework-olm/pull/314) * [Bug 2094303](https://bugzilla.redhat.com/show_bug.cgi?id=2094303): fix(vendor/scoped): bump k8s version to 1.24, go version to 1.18 and fix scoped client (#2794) [#316](https://github.com/openshift/operator-framework-olm/pull/316) * [Bug 2020484](https://bugzilla.redhat.com/show_bug.cgi?id=2020484): Refactor installer to surface certificate rotation (#2775) [#306](https://github.com/openshift/operator-framework-olm/pull/306) * [Bug 2039135](https://bugzilla.redhat.com/show_bug.cgi?id=2039135): add more descriptive error message to pruning of FBC [#308](https://github.com/openshift/operator-framework-olm/pull/308) * [Bug 1982737](https://bugzilla.redhat.com/show_bug.cgi?id=1982737): Make malformed CSV fail nicely (#2673) [#307](https://github.com/openshift/operator-framework-olm/pull/307) * manifests/*: comply to restricted pod security level [#299](https://github.com/openshift/operator-framework-olm/pull/299) * Sync 05 03 [#300](https://github.com/openshift/operator-framework-olm/pull/300) * Fix currentServiceAccount debug message (#2765) [#297](https://github.com/openshift/operator-framework-olm/pull/297) * [Bug 2074612](https://bugzilla.redhat.com/show_bug.cgi?id=2074612): Fix GRPC CheckRegistryServer function (#2756) [#294](https://github.com/openshift/operator-framework-olm/pull/294) * Sync OLM commits 04/25 [#292](https://github.com/openshift/operator-framework-olm/pull/292) * Identify fail forward in csvSources (#2743) [#290](https://github.com/openshift/operator-framework-olm/pull/290) * Downstream Sync 04.13 [#289](https://github.com/openshift/operator-framework-olm/pull/289) * Sync 04 11 [#285](https://github.com/openshift/operator-framework-olm/pull/285) * sync update staging directory 04-07 [#279](https://github.com/openshift/operator-framework-olm/pull/279) * sync: Update staging directories 04-05 [#278](https://github.com/openshift/operator-framework-olm/pull/278) * [Bug 2055861](https://bugzilla.redhat.com/show_bug.cgi?id=2055861): Replace collect-profile jobs that haven't completed [#255](https://github.com/openshift/operator-framework-olm/pull/255) * Adds CRC deployment automation and CI documentation [#268](https://github.com/openshift/operator-framework-olm/pull/268) * Update staging OLM 03-30 [#274](https://github.com/openshift/operator-framework-olm/pull/274) * go.*,vendor: Bump root module to go 1.17 [#271](https://github.com/openshift/operator-framework-olm/pull/271) * Makefile: Remove the duplicate unit/psm target [#270](https://github.com/openshift/operator-framework-olm/pull/270) * Sync upstream commits to the 4.11 release branch [#269](https://github.com/openshift/operator-framework-olm/pull/269) * Update PATH setting in base Dockerfile [#261](https://github.com/openshift/operator-framework-olm/pull/261) * Remove unsupported project_image from .ci-operator.yaml [#262](https://github.com/openshift/operator-framework-olm/pull/262) * [Bug 1975543](https://bugzilla.redhat.com/show_bug.cgi?id=1975543): Use CVO to delete manifests removed from OLM [#245](https://github.com/openshift/operator-framework-olm/pull/245) * Fix install_kubebuilder.sh script [#258](https://github.com/openshift/operator-framework-olm/pull/258) * Update the build root Dockerfile base image [#257](https://github.com/openshift/operator-framework-olm/pull/257) * Updating operator-lifecycle-manager images to be consistent with ART [#250](https://github.com/openshift/operator-framework-olm/pull/250) * Updating operator-registry images to be consistent with ART [#249](https://github.com/openshift/operator-framework-olm/pull/249) * [Bug 2048563](https://bugzilla.redhat.com/show_bug.cgi?id=2048563): feat added leader election conventions [#228](https://github.com/openshift/operator-framework-olm/pull/228) * clean up unused scripts [#227](https://github.com/openshift/operator-framework-olm/pull/227) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/4ff2396bacb601f73beae867d42700a407cff2bf...701a1221f2877c41a5ab7fa6422617fc130de63c) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/a3aeac97943021b26c29c5eadcb5db364f6dfcd5) * [OCPBUGS-49426](https://issues.redhat.com/browse/OCPBUGS-49426): Upgrade golang.org/x/net [release-4.12] [#591](https://github.com/operator-framework/operator-marketplace/pull/591) * NO-ISSUE: Updating marketplace-operator images to be consistent with ART [4.12] [#510](https://github.com/operator-framework/operator-marketplace/pull/510) * [OCPBUGS-32081](https://issues.redhat.com/browse/OCPBUGS-32081): update golang.org/x/net for CVE-2023-45288 [#567](https://github.com/operator-framework/operator-marketplace/pull/567) * [OCPBUGS-20955](https://issues.redhat.com/browse/OCPBUGS-20955): [release-4.12] bump golang.org/x/net to 0.17.0 [#550](https://github.com/operator-framework/operator-marketplace/pull/550) * [OCPBUGS-18503](https://issues.redhat.com/browse/OCPBUGS-18503): remove a race condition [#533](https://github.com/operator-framework/operator-marketplace/pull/533) * [OCPBUGS-14109](https://issues.redhat.com/browse/OCPBUGS-14109): Revert default catsrc diff changes [#519](https://github.com/operator-framework/operator-marketplace/pull/519) * [OCPBUGS-7108](https://issues.redhat.com/browse/OCPBUGS-7108): Default CatalogSource aren't always reverted to default settings [#506](https://github.com/operator-framework/operator-marketplace/pull/506) * [OCPBUGS-5468](https://issues.redhat.com/browse/OCPBUGS-5468): Remove PSA audit and warnings [#503](https://github.com/operator-framework/operator-marketplace/pull/503) * [OCPBUGS-5474](https://issues.redhat.com/browse/OCPBUGS-5474): Run Default CatalogSource in Restricted mode [#500](https://github.com/operator-framework/operator-marketplace/pull/500) * [OCPBUGS-4763](https://issues.redhat.com/browse/OCPBUGS-4763): Unenforce PSA Restrictions [#494](https://github.com/operator-framework/operator-marketplace/pull/494) * [OCPBUGS-2223](https://issues.redhat.com/browse/OCPBUGS-2223): Update Default CatalogSource Images to 4.12 tag [#487](https://github.com/operator-framework/operator-marketplace/pull/487) * Updating marketplace-operator images to be consistent with ART [#479](https://github.com/operator-framework/operator-marketplace/pull/479) * [OCPBUGS-441](https://issues.redhat.com/browse/OCPBUGS-441): Dockerfile.okd: include custom OperatorHub manifest [#481](https://github.com/operator-framework/operator-marketplace/pull/481) * (psa) make marketplace namespace restricted [#484](https://github.com/operator-framework/operator-marketplace/pull/484) * (namespace) remove PSA baseline enforcement [#483](https://github.com/operator-framework/operator-marketplace/pull/483) * Add PSA enforcement label [#480](https://github.com/operator-framework/operator-marketplace/pull/480) * [Bug 2010375](https://bugzilla.redhat.com/show_bug.cgi?id=2010375): Clarify reason/steps to diagnose in *CatalogError prom alert [#469](https://github.com/operator-framework/operator-marketplace/pull/469) * [Bug 2088541](https://bugzilla.redhat.com/show_bug.cgi?id=2088541): Add psa anotations to namespace to suppress warnings [#478](https://github.com/operator-framework/operator-marketplace/pull/478) * Updating marketplace-operator images to be consistent with ART [#473](https://github.com/operator-framework/operator-marketplace/pull/473) * [Bug 2092464](https://bugzilla.redhat.com/show_bug.cgi?id=2092464): Update default catalogsource to use 4.11 images [#477](https://github.com/operator-framework/operator-marketplace/pull/477) * [Bug 2079610](https://bugzilla.redhat.com/show_bug.cgi?id=2079610): Fix operatorHub status [#470](https://github.com/operator-framework/operator-marketplace/pull/470) * Revert "Bug 2092464: shift marketplace operator catalogs default to v4.11" [#476](https://github.com/operator-framework/operator-marketplace/pull/476) * [Bug 2092464](https://bugzilla.redhat.com/show_bug.cgi?id=2092464): shift marketplace operator catalogs default to v4.11 [#474](https://github.com/operator-framework/operator-marketplace/pull/474) * manifests/deployment: comply to restricted pod security level [#471](https://github.com/operator-framework/operator-marketplace/pull/471) * chore(modules): bump openshift/api for new operatorhub crd [#472](https://github.com/operator-framework/operator-marketplace/pull/472) * [Bug 2057558](https://bugzilla.redhat.com/show_bug.cgi?id=2057558): increase polling time of status report to reduce log spam [#461](https://github.com/operator-framework/operator-marketplace/pull/461) * fix(manifests): add singleton operatorhub cr [#468](https://github.com/operator-framework/operator-marketplace/pull/468) * fix(capabilities): add operatorhub crd manifest [#467](https://github.com/operator-framework/operator-marketplace/pull/467) * [Bug 2070792](https://bugzilla.redhat.com/show_bug.cgi?id=2070792): chore(manifests): add missing capabilities annotation [#465](https://github.com/operator-framework/operator-marketplace/pull/465) * manifests/10_clusteroperator: Drop the unused namespace property [#401](https://github.com/operator-framework/operator-marketplace/pull/401) * chore(manifests): add openshift capability annotation [#462](https://github.com/operator-framework/operator-marketplace/pull/462) * [Bug 2067909](https://bugzilla.redhat.com/show_bug.cgi?id=2067909): Bump github.com/prometheus/client_golang to v0.12.1 [#463](https://github.com/operator-framework/operator-marketplace/pull/463) * Update OWNERS [#464](https://github.com/operator-framework/operator-marketplace/pull/464) * Bump repository to Go 1.17 and k8s v0.23.x [#460](https://github.com/operator-framework/operator-marketplace/pull/460) * Updating marketplace-operator images to be consistent with ART [#459](https://github.com/operator-framework/operator-marketplace/pull/459) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/80b92ecff398578b389cd953605a7b0f7bbd4f24...a3aeac97943021b26c29c5eadcb5db364f6dfcd5) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/87ab37895e56ea3c80be0163571fa593ce96d86b) * [OCPBUGS-23162](https://issues.redhat.com/browse/OCPBUGS-23162): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#131](https://github.com/openshift/ovirt-csi-driver/pull/131) * Updating ose-ovirt-csi-driver images to be consistent with ART [#122](https://github.com/openshift/ovirt-csi-driver/pull/122) * Bump go version [#123](https://github.com/openshift/ovirt-csi-driver/pull/123) * improved logging if no storage domain is found by name [#121](https://github.com/openshift/ovirt-csi-driver/pull/121) * updated go-ovirt-client [#120](https://github.com/openshift/ovirt-csi-driver/pull/120) * Added @Darth-Mera as approver [#119](https://github.com/openshift/ovirt-csi-driver/pull/119) * added k8s deployment files [#114](https://github.com/openshift/ovirt-csi-driver/pull/114) * update go-ovirt-client [#113](https://github.com/openshift/ovirt-csi-driver/pull/113) * Updating ose-ovirt-csi-driver images to be consistent with ART [#112](https://github.com/openshift/ovirt-csi-driver/pull/112) * [Bug 2091567](https://bugzilla.redhat.com/show_bug.cgi?id=2091567): Upgrade go-ovirt-client to 1.0.0 [#111](https://github.com/openshift/ovirt-csi-driver/pull/111) * Added @engelmi as approver [#109](https://github.com/openshift/ovirt-csi-driver/pull/109) * Updating ose-ovirt-csi-driver images to be consistent with ART [#110](https://github.com/openshift/ovirt-csi-driver/pull/110) * [Bug 2067871](https://bugzilla.redhat.com/show_bug.cgi?id=2067871): Bump prometheus/client_golang to v1.11.1 [#108](https://github.com/openshift/ovirt-csi-driver/pull/108) * [Bug 2063795](https://bugzilla.redhat.com/show_bug.cgi?id=2063795): remove unused replace directive in go.mod [#107](https://github.com/openshift/ovirt-csi-driver/pull/107) * Updating OCP on RHV team members [#103](https://github.com/openshift/ovirt-csi-driver/pull/103) * Updating ose-ovirt-csi-driver images to be consistent with ART [#102](https://github.com/openshift/ovirt-csi-driver/pull/102) * [Bug 2043035](https://bugzilla.redhat.com/show_bug.cgi?id=2043035): use proper error code [#101](https://github.com/openshift/ovirt-csi-driver/pull/101) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/9773aef8782056fa23e6af597195daf4a256f585...87ab37895e56ea3c80be0163571fa593ce96d86b) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/e5e02335951010745a42f472a0656b5948ffdade) * [OCPBUGS-23266](https://issues.redhat.com/browse/OCPBUGS-23266): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#128](https://github.com/openshift/ovirt-csi-driver-operator/pull/128) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#121](https://github.com/openshift/ovirt-csi-driver-operator/pull/121) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#108](https://github.com/openshift/ovirt-csi-driver-operator/pull/108) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#107](https://github.com/openshift/ovirt-csi-driver-operator/pull/107) * updated go-ovirt-client [#106](https://github.com/openshift/ovirt-csi-driver-operator/pull/106) * [OCPRHV-685](https://issues.redhat.com/browse/OCPRHV-685): added secret informer for daemonset [#104](https://github.com/openshift/ovirt-csi-driver-operator/pull/104) * Added @Darth-Mera as approver [#105](https://github.com/openshift/ovirt-csi-driver-operator/pull/105) * update go-ovirt-client [#103](https://github.com/openshift/ovirt-csi-driver-operator/pull/103) * Add client certificate and key to service monitor [#102](https://github.com/openshift/ovirt-csi-driver-operator/pull/102) * [Bug 2088033](https://bugzilla.redhat.com/show_bug.cgi?id=2088033): Clear text password stored on disk [#99](https://github.com/openshift/ovirt-csi-driver-operator/pull/99) * Update credentials automatically [#101](https://github.com/openshift/ovirt-csi-driver-operator/pull/101) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#100](https://github.com/openshift/ovirt-csi-driver-operator/pull/100) * [Bug 2091567](https://bugzilla.redhat.com/show_bug.cgi?id=2091567): oVirt CSI driver operator should use latest go-ovirt-client [#98](https://github.com/openshift/ovirt-csi-driver-operator/pull/98) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#96](https://github.com/openshift/ovirt-csi-driver-operator/pull/96) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#97](https://github.com/openshift/ovirt-csi-driver-operator/pull/97) * Added @engelmi as approver [#95](https://github.com/openshift/ovirt-csi-driver-operator/pull/95) * [Bug 2067821](https://bugzilla.redhat.com/show_bug.cgi?id=2067821): Bump prometheus/client_golang to v1.11.1 [#93](https://github.com/openshift/ovirt-csi-driver-operator/pull/93) * [Bug 2064613](https://bugzilla.redhat.com/show_bug.cgi?id=2064613): Recreate oVirt connection for every sync [#92](https://github.com/openshift/ovirt-csi-driver-operator/pull/92) * Set fsGroupPolicy in CSIDriver [#89](https://github.com/openshift/ovirt-csi-driver-operator/pull/89) * [Bug 2006201](https://bugzilla.redhat.com/show_bug.cgi?id=2006201): Increase timeouts for CSI driver [#86](https://github.com/openshift/ovirt-csi-driver-operator/pull/86) * Updated OCP on RHV team members [#82](https://github.com/openshift/ovirt-csi-driver-operator/pull/82) * [Bug 2049169](https://bugzilla.redhat.com/show_bug.cgi?id=2049169): Add custom CA bundle support [#83](https://github.com/openshift/ovirt-csi-driver-operator/pull/83) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#81](https://github.com/openshift/ovirt-csi-driver-operator/pull/81) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/573ac4789b95f3ff5f9806e7023faca7b610566b...e5e02335951010745a42f472a0656b5948ffdade) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) * [OCPBUGS-6309](https://issues.redhat.com/browse/OCPBUGS-6309): Fix swapped CPU socket and thread mapping [#173](https://github.com/openshift/cluster-api-provider-ovirt/pull/173) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#170](https://github.com/openshift/cluster-api-provider-ovirt/pull/170) * Improve logging [#168](https://github.com/openshift/cluster-api-provider-ovirt/pull/168) * update go-ovirt-client [#167](https://github.com/openshift/cluster-api-provider-ovirt/pull/167) * added wrapped klogr for unified logging [#166](https://github.com/openshift/cluster-api-provider-ovirt/pull/166) * Remove duplicate MemoryMB validation [#165](https://github.com/openshift/cluster-api-provider-ovirt/pull/165) * Ocprhv 681 automatic credentials update [#161](https://github.com/openshift/cluster-api-provider-ovirt/pull/161) * Added @Darth-Mera as approver [#164](https://github.com/openshift/cluster-api-provider-ovirt/pull/164) * Add validations tests [#163](https://github.com/openshift/cluster-api-provider-ovirt/pull/163) * updated readme and custom capo docs [#162](https://github.com/openshift/cluster-api-provider-ovirt/pull/162) * Refactor controller structure [#160](https://github.com/openshift/cluster-api-provider-ovirt/pull/160) * Disable memory ballooning in high perf workers [#143](https://github.com/openshift/cluster-api-provider-ovirt/pull/143) * Fix OCPRHV-789 [#159](https://github.com/openshift/cluster-api-provider-ovirt/pull/159) * [OCPRHV-788](https://issues.redhat.com/browse/OCPRHV-788): added check for high_performance to set placement_policy_affinity [#144](https://github.com/openshift/cluster-api-provider-ovirt/pull/144) * added functional test for automatically updating credentials [#158](https://github.com/openshift/cluster-api-provider-ovirt/pull/158) * set serial console enabled for high performance VMs [#157](https://github.com/openshift/cluster-api-provider-ovirt/pull/157) * enable headless for high performance VMs [#156](https://github.com/openshift/cluster-api-provider-ovirt/pull/156) * disable soundcard for high performance VMs [#155](https://github.com/openshift/cluster-api-provider-ovirt/pull/155) * dedicated functional test run script [#154](https://github.com/openshift/cluster-api-provider-ovirt/pull/154) * update envtest setup for CI [#153](https://github.com/openshift/cluster-api-provider-ovirt/pull/153) * added generation of crds [#150](https://github.com/openshift/cluster-api-provider-ovirt/pull/150) * removed test stage in dockerfile [#151](https://github.com/openshift/cluster-api-provider-ovirt/pull/151) * [OCPRHV-806](https://issues.redhat.com/browse/OCPRHV-806): added functional test for actuator [#148](https://github.com/openshift/cluster-api-provider-ovirt/pull/148) * added first set unit tests for machine validation [#147](https://github.com/openshift/cluster-api-provider-ovirt/pull/147) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#146](https://github.com/openshift/cluster-api-provider-ovirt/pull/146) * [Bug 2100496](https://bugzilla.redhat.com/show_bug.cgi?id=2100496): VM creation fails w. AG without description [#145](https://github.com/openshift/cluster-api-provider-ovirt/pull/145) * [Bug 2099293](https://bugzilla.redhat.com/show_bug.cgi?id=2099293): cluster API provider should use latest go-ovirt-client [#142](https://github.com/openshift/cluster-api-provider-ovirt/pull/142) * [Bug 2094806](https://bugzilla.redhat.com/show_bug.cgi?id=2094806): Update dependencies to K8s 1.24, go 1.18 [#141](https://github.com/openshift/cluster-api-provider-ovirt/pull/141) * Added @engelmi as approver [#137](https://github.com/openshift/cluster-api-provider-ovirt/pull/137) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#139](https://github.com/openshift/cluster-api-provider-ovirt/pull/139) * [Bug 2082535](https://bugzilla.redhat.com/show_bug.cgi?id=2082535): clone flag doesn't work [#138](https://github.com/openshift/cluster-api-provider-ovirt/pull/138) * [Bug 2077597](https://bugzilla.redhat.com/show_bug.cgi?id=2077597): bump go-ovirt-client to v1.0.0-alpha4 [#136](https://github.com/openshift/cluster-api-provider-ovirt/pull/136) * Bug:2076270 better VM deletion handling [#134](https://github.com/openshift/cluster-api-provider-ovirt/pull/134) * [Bug 2076277](https://bugzilla.redhat.com/show_bug.cgi?id=2076277): add Storage Domain Configuration to the machineset [#133](https://github.com/openshift/cluster-api-provider-ovirt/pull/133) * [Bug 2074710](https://bugzilla.redhat.com/show_bug.cgi?id=2074710): Transition to go ovirt client [#131](https://github.com/openshift/cluster-api-provider-ovirt/pull/131) * [Bug 2056454](https://bugzilla.redhat.com/show_bug.cgi?id=2056454): Preallocated disks for OCP nodes [#129](https://github.com/openshift/cluster-api-provider-ovirt/pull/129) * Updated OCP on RHV team members [#130](https://github.com/openshift/cluster-api-provider-ovirt/pull/130) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#128](https://github.com/openshift/cluster-api-provider-ovirt/pull/128) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/35ce9aafee1ffad0734f02ff0d5f8632d3905f09...03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/6dd54dc32cd28553ce81e3fca5da3f3e2284e6b4) * [OCPBUGS-50502](https://issues.redhat.com/browse/OCPBUGS-50502): EgressIP: Reload certificates for the grpc heatlhcheck server [#2457](https://github.com/openshift/ovn-kubernetes/pull/2457) * [OCPBUGS-35876](https://issues.redhat.com/browse/OCPBUGS-35876): [release-4.12] ipv6+all protocols conntrack flush [#2214](https://github.com/openshift/ovn-kubernetes/pull/2214) * [OCPBUGS-29864](https://issues.redhat.com/browse/OCPBUGS-29864): CVE-2022-41723: avoid quadratic complexity in HPACK decoding [#2204](https://github.com/openshift/ovn-kubernetes/pull/2204) * [OCPBUGS-34273](https://issues.redhat.com/browse/OCPBUGS-34273), [OCPBUGS-34414](https://issues.redhat.com/browse/OCPBUGS-34414): Improves service iptables efficiency on start up + ICMP error messages to pass through [#2184](https://github.com/openshift/ovn-kubernetes/pull/2184) * [OCPBUGS-32990](https://issues.redhat.com/browse/OCPBUGS-32990): Bump OVS [#2144](https://github.com/openshift/ovn-kubernetes/pull/2144) * [OCPBUGS-33422](https://issues.redhat.com/browse/OCPBUGS-33422): [release-4.12] Full implementation of KEP-1669 ProxyTerminatingEndpoints + ETP=local fix [#2135](https://github.com/openshift/ovn-kubernetes/pull/2135) * [OCPBUGS-25889](https://issues.redhat.com/browse/OCPBUGS-25889): [release-4.12] OVN bump to 23.06.1-112 [#2154](https://github.com/openshift/ovn-kubernetes/pull/2154) * [OCPBUGS-23259](https://issues.redhat.com/browse/OCPBUGS-23259): [release-4.12] Update leaderelection config to allow retries [#2017](https://github.com/openshift/ovn-kubernetes/pull/2017) * [OCPBUGS-28598](https://issues.redhat.com/browse/OCPBUGS-28598): CARRY: Updates owners and adds Surya [#2034](https://github.com/openshift/ovn-kubernetes/pull/2034) * [OCPBUGS-26700](https://issues.redhat.com/browse/OCPBUGS-26700): [release-4.12] fixes MTU configuration on gateway router [#2015](https://github.com/openshift/ovn-kubernetes/pull/2015) * [OCPBUGS-24420](https://issues.redhat.com/browse/OCPBUGS-24420): OVNK/GW: Ignore headless services in syncServices [#1972](https://github.com/openshift/ovn-kubernetes/pull/1972) * [OCPBUGS-23981](https://issues.redhat.com/browse/OCPBUGS-23981): Netpol retryFramework cleanup [#1977](https://github.com/openshift/ovn-kubernetes/pull/1977) * [OCPBUGS-26243](https://issues.redhat.com/browse/OCPBUGS-26243): Fix Egress IP Deletion Handler to Prevent OVN Policy Leaks [#2006](https://github.com/openshift/ovn-kubernetes/pull/2006) * [OCPBUGS-25096](https://issues.redhat.com/browse/OCPBUGS-25096): Fragment oversized reply packets in LGW mode [#1984](https://github.com/openshift/ovn-kubernetes/pull/1984) * [OCPBUGS-22091](https://issues.redhat.com/browse/OCPBUGS-22091): Bump OVN to 23.06.1-39.el8fdp [#1943](https://github.com/openshift/ovn-kubernetes/pull/1943) * [OCPBUGS-18681](https://issues.redhat.com/browse/OCPBUGS-18681): Check libovsdbclient.ErrNotFound on wrapped errors [#1862](https://github.com/openshift/ovn-kubernetes/pull/1862) * [OCPBUGS-20241](https://issues.redhat.com/browse/OCPBUGS-20241): fix race condition in hybrid overlay DRIP alloc [#1932](https://github.com/openshift/ovn-kubernetes/pull/1932) * [OCPBUGS-18353](https://issues.redhat.com/browse/OCPBUGS-18353): Update bridge flow cache when the host address changes [#1872](https://github.com/openshift/ovn-kubernetes/pull/1872) * [OCPBUGS-14708](https://issues.redhat.com/browse/OCPBUGS-14708), [OCPBUGS-19089](https://issues.redhat.com/browse/OCPBUGS-19089), [OCPBUGS-19904](https://issues.redhat.com/browse/OCPBUGS-19904), [OCPBUGS-19906](https://issues.redhat.com/browse/OCPBUGS-19906): Dockerfile: bump OVN to ovn22.12-22.12.1-18.el8fdp [#1881](https://github.com/openshift/ovn-kubernetes/pull/1881) * [OCPBUGS-18054](https://issues.redhat.com/browse/OCPBUGS-18054): Emit node events only when retry failure [#1837](https://github.com/openshift/ovn-kubernetes/pull/1837) * [OCPBUGS-18652](https://issues.redhat.com/browse/OCPBUGS-18652): Do not return error if pod IP cannot be retrieved for `deletePeerPod` and perf improvements [#1903](https://github.com/openshift/ovn-kubernetes/pull/1903) * [OCPBUGS-19432](https://issues.redhat.com/browse/OCPBUGS-19432): Remove stale egressip status entry [#1892](https://github.com/openshift/ovn-kubernetes/pull/1892) * [OCPBUGS-18586](https://issues.redhat.com/browse/OCPBUGS-18586): Fix OVN SNATing on GR by enabling gateway_mtu on rtoe port of GR [#1856](https://github.com/openshift/ovn-kubernetes/pull/1856) * [OCPBUGS-18058](https://issues.redhat.com/browse/OCPBUGS-18058): [release-4.12] Create egress firewall with one db transaction [#1835](https://github.com/openshift/ovn-kubernetes/pull/1835) * [OCPBUGS-17675](https://issues.redhat.com/browse/OCPBUGS-17675): Don't return error on delete event that doesn't ave a chance to succeed. [#1814](https://github.com/openshift/ovn-kubernetes/pull/1814) * [OCPBUGS-17522](https://issues.redhat.com/browse/OCPBUGS-17522): [release-4.12] libovsdb: give monitor setup time to process than normal transactions [#1808](https://github.com/openshift/ovn-kubernetes/pull/1808) * [OCPBUGS-16336](https://issues.redhat.com/browse/OCPBUGS-16336): Backport support AllocateLoadBalancerNodePortsFalse [#1766](https://github.com/openshift/ovn-kubernetes/pull/1766) * [OCPBUGS-15593](https://issues.redhat.com/browse/OCPBUGS-15593): ovnkube-master pod failed to reconnect to ovn db due to ssl expire [#1730](https://github.com/openshift/ovn-kubernetes/pull/1730) * [OCPBUGS-15719](https://issues.redhat.com/browse/OCPBUGS-15719): [relase-4.12] Fix egressFirewall create error handling [#1746](https://github.com/openshift/ovn-kubernetes/pull/1746) * [OCPBUGS-13744](https://issues.redhat.com/browse/OCPBUGS-13744): Improve syncNodes to remove stale data [#1732](https://github.com/openshift/ovn-kubernetes/pull/1732) * [OCPBUGS-13885](https://issues.redhat.com/browse/OCPBUGS-13885): [release-4.12] Drop packets that were not properly SNATed [#1679](https://github.com/openshift/ovn-kubernetes/pull/1679) * [OCPBUGS-15388](https://issues.redhat.com/browse/OCPBUGS-15388): Fix stale SNAT entries for completed pods [#1723](https://github.com/openshift/ovn-kubernetes/pull/1723) * [OCPBUGS-15709](https://issues.redhat.com/browse/OCPBUGS-15709): [release-4.12] Remove non-existing functions test. [#1739](https://github.com/openshift/ovn-kubernetes/pull/1739) * [OCPBUGS-15424](https://issues.redhat.com/browse/OCPBUGS-15424): [release-4.12] Fix network policy to work with long namespace names [#1725](https://github.com/openshift/ovn-kubernetes/pull/1725) * [OCPBUGS-14982](https://issues.redhat.com/browse/OCPBUGS-14982): Validate port before deleting conntrack flow [#1713](https://github.com/openshift/ovn-kubernetes/pull/1713) * [OCPBUGS-14041](https://issues.redhat.com/browse/OCPBUGS-14041): Fix bug that resulted in routes not be restored to a new vnic [#1681](https://github.com/openshift/ovn-kubernetes/pull/1681) * [OCPBUGS-13953](https://issues.redhat.com/browse/OCPBUGS-13953): [release-4.12] Use loadbalancer.Name as client index [#1680](https://github.com/openshift/ovn-kubernetes/pull/1680) * [OCPBUGS-13599](https://issues.redhat.com/browse/OCPBUGS-13599): Call SyncEndpoints from AddService [#1673](https://github.com/openshift/ovn-kubernetes/pull/1673) * [OCPBUGS-7439](https://issues.redhat.com/browse/OCPBUGS-7439): [release-4.12]: Egress Service: Fix nodeSelector parsing [#1529](https://github.com/openshift/ovn-kubernetes/pull/1529) * [OCPBUGS-12768](https://issues.redhat.com/browse/OCPBUGS-12768): : [release-4.12] Delete equivalent ACLs when searching by predicate. [#1661](https://github.com/openshift/ovn-kubernetes/pull/1661) * [OCPBUGS-12265](https://issues.redhat.com/browse/OCPBUGS-12265): [release-4.12] Network scale metrics [#1653](https://github.com/openshift/ovn-kubernetes/pull/1653) * [OCPBUGS-8226](https://issues.redhat.com/browse/OCPBUGS-8226): fix hybridOverlay DRIP in ICNIv1 pods [#1633](https://github.com/openshift/ovn-kubernetes/pull/1633) * [OCPBUGS-11701](https://issues.redhat.com/browse/OCPBUGS-11701): [release-4.12] CARRY: use "prefer local" for annotated services [#1638](https://github.com/openshift/ovn-kubernetes/pull/1638) * [OCPBUGS-11109](https://issues.redhat.com/browse/OCPBUGS-11109): [release-4.12] Batch potentially big transaction on egress firewall ACLs migration [#1617](https://github.com/openshift/ovn-kubernetes/pull/1617) * [OCPBUGS-10947](https://issues.redhat.com/browse/OCPBUGS-10947): [release-4.12] Egress firewall fix retry [#1610](https://github.com/openshift/ovn-kubernetes/pull/1610) * [OCPBUGS-10314](https://issues.redhat.com/browse/OCPBUGS-10314): [release-4.12] Handle Completed pods deletion [#1581](https://github.com/openshift/ovn-kubernetes/pull/1581) * Updating ovn-kubernetes-microshift images to be consistent with ART [#1288](https://github.com/openshift/ovn-kubernetes/pull/1288) * [OCPBUGS-10632](https://issues.redhat.com/browse/OCPBUGS-10632): Check the "Serving" field for endpoints [#1569](https://github.com/openshift/ovn-kubernetes/pull/1569) * [OCPBUGS-6034](https://issues.redhat.com/browse/OCPBUGS-6034): Update egress node assignability on every egress node update [#1483](https://github.com/openshift/ovn-kubernetes/pull/1483) * [OCPBUGS-7732](https://issues.redhat.com/browse/OCPBUGS-7732): Fix leak in service controller cache [#1545](https://github.com/openshift/ovn-kubernetes/pull/1545) * [OCPBUGS-10490](https://issues.redhat.com/browse/OCPBUGS-10490): [release-4.12] Move checkForStaleOVSInterfaces and related code to node.go [#1595](https://github.com/openshift/ovn-kubernetes/pull/1595) * [OCPBUGS-10318](https://issues.redhat.com/browse/OCPBUGS-10318): [release-4.12] node: add node healthz server for cloud load balancers [#1570](https://github.com/openshift/ovn-kubernetes/pull/1570) * [OCPBUGS-7346](https://issues.redhat.com/browse/OCPBUGS-7346): [release-4.12] Fully remove dependency on default gateway for services [#1577](https://github.com/openshift/ovn-kubernetes/pull/1577) * [OCPBUGS-6957](https://issues.redhat.com/browse/OCPBUGS-6957): [release-4.12] Ensure routes are not duplicated [#1503](https://github.com/openshift/ovn-kubernetes/pull/1503) * [OCPBUGS-8501](https://issues.redhat.com/browse/OCPBUGS-8501), [OCPBUGS-8506](https://issues.redhat.com/browse/OCPBUGS-8506), [OCPBUGS-8508](https://issues.redhat.com/browse/OCPBUGS-8508): [release-4.12] Fix EFW's name truncation logic & make EFW ACLs unique using extIDs [#1559](https://github.com/openshift/ovn-kubernetes/pull/1559) * [OCPBUGS-7223](https://issues.redhat.com/browse/OCPBUGS-7223): node: don't consider internal masquerade addresses as node IP addresses [#1528](https://github.com/openshift/ovn-kubernetes/pull/1528) * [OCPBUGS-7317](https://issues.redhat.com/browse/OCPBUGS-7317): [release-4.12] Delete stale egress ip snat entries by node [#1520](https://github.com/openshift/ovn-kubernetes/pull/1520) * [OCPBUGS-7026](https://issues.redhat.com/browse/OCPBUGS-7026): Bump OVN to 22.12 and turn off neighbour response in router options. [#1521](https://github.com/openshift/ovn-kubernetes/pull/1521) * [OCPBUGS-6040](https://issues.redhat.com/browse/OCPBUGS-6040): addMasqueradeRoute: fallback to gateway interface IPs [#1484](https://github.com/openshift/ovn-kubernetes/pull/1484) * [OCPBUGS-7230](https://issues.redhat.com/browse/OCPBUGS-7230): Delete IGMP Groups when deleting stale chassis [#1516](https://github.com/openshift/ovn-kubernetes/pull/1516) * [OCPBUGS-3399](https://issues.redhat.com/browse/OCPBUGS-3399): Drop in-cluster traffic towards svcCIDR at wrong port [#1490](https://github.com/openshift/ovn-kubernetes/pull/1490) * [OCPBUGS-6961](https://issues.redhat.com/browse/OCPBUGS-6961): update base image of Dockerfile [#1504](https://github.com/openshift/ovn-kubernetes/pull/1504) * [OCPBUGS-6823](https://issues.redhat.com/browse/OCPBUGS-6823): [release-4.12] Fix Egress FW ACL rules in dualstack mode [#1500](https://github.com/openshift/ovn-kubernetes/pull/1500) * [OCPBUGS-4862](https://issues.redhat.com/browse/OCPBUGS-4862): Correct the deletion of noHostSubnet nodes [#1470](https://github.com/openshift/ovn-kubernetes/pull/1470) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): ovnkube-trace: run ovn-sbctl and ovn-trace with --no-leader-only [#1489](https://github.com/openshift/ovn-kubernetes/pull/1489) * [OCPBUGS-5841](https://issues.redhat.com/browse/OCPBUGS-5841): ovnkube-node: Existing management port check [#1475](https://github.com/openshift/ovn-kubernetes/pull/1475) * [OCPBUGS-6812](https://issues.redhat.com/browse/OCPBUGS-6812): [release-4.12] Ensure loadbalancer cleanup doesn't fail [#1497](https://github.com/openshift/ovn-kubernetes/pull/1497) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): Bump OVN to 22.09.0-54 [#1488](https://github.com/openshift/ovn-kubernetes/pull/1488) * [OCPBUGS-5923](https://issues.redhat.com/browse/OCPBUGS-5923): [release-4.12] Fix egress firewall to allow inbound connections in both gw modes [#1477](https://github.com/openshift/ovn-kubernetes/pull/1477) * [OCPBUGS-5046](https://issues.redhat.com/browse/OCPBUGS-5046): [release-4.12] egressip: fix test data race accessing podAssignment cache [#1467](https://github.com/openshift/ovn-kubernetes/pull/1467) * [OCPBUGS-3651](https://issues.redhat.com/browse/OCPBUGS-3651): downstream windows fixes [#1384](https://github.com/openshift/ovn-kubernetes/pull/1384) * [OCPBUGS-4533](https://issues.redhat.com/browse/OCPBUGS-4533): Move check_pkt_larger to gateway router ports [#1420](https://github.com/openshift/ovn-kubernetes/pull/1420) * [OCPBUGS-3651](https://issues.redhat.com/browse/OCPBUGS-3651): [release-4.12] cherry-pick hybrid overlay fixes from master branch [#1460](https://github.com/openshift/ovn-kubernetes/pull/1460) * Bug OCPBUGS-4383: Don't log in iterateRetryResources when there are no retry entries [#1413](https://github.com/openshift/ovn-kubernetes/pull/1413) * [OCPBUGS-4098](https://issues.redhat.com/browse/OCPBUGS-4098): [release-4.12] egress ip: Skip mgmt ports that cannot have assignable IP addresses [#1429](https://github.com/openshift/ovn-kubernetes/pull/1429) * [OCPBUGS-4884](https://issues.redhat.com/browse/OCPBUGS-4884): [release-4.12] Fixes scenario where deleted + completed pods may leak [#1451](https://github.com/openshift/ovn-kubernetes/pull/1451) * [OCPBUGS-4835](https://issues.redhat.com/browse/OCPBUGS-4835): [4.12] Fix address set cleanup: only delete address sets owned by given object. [#1446](https://github.com/openshift/ovn-kubernetes/pull/1446) * [OCPBUGS-4760](https://issues.redhat.com/browse/OCPBUGS-4760): [4.12] Avoid duplicate transactions and minimize handlers with empty namespace selectors [#1439](https://github.com/openshift/ovn-kubernetes/pull/1439) * [OCPBUGS-4286](https://issues.redhat.com/browse/OCPBUGS-4286): Fix delete equivalent acls [#1406](https://github.com/openshift/ovn-kubernetes/pull/1406) * [OCPBUGS-3378](https://issues.redhat.com/browse/OCPBUGS-3378): Set the node as reachable only when it is being added as an egressip node [#1402](https://github.com/openshift/ovn-kubernetes/pull/1402) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): Support LB Session Affinity TimeOut [#1427](https://github.com/openshift/ovn-kubernetes/pull/1427) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): [release-4.12] Dockerfile: bump OVN to 22.09.0-25 [#1425](https://github.com/openshift/ovn-kubernetes/pull/1425) * Bug OCPBUGS-4379: apply retry logic to ovnk-node controllers [#1411](https://github.com/openshift/ovn-kubernetes/pull/1411) * [OCPBUGS-4361](https://issues.redhat.com/browse/OCPBUGS-4361): Bp ovnkube trace changes [#1408](https://github.com/openshift/ovn-kubernetes/pull/1408) * [OCPBUGS-4505](https://issues.redhat.com/browse/OCPBUGS-4505): pods: deleteLogicalPort should not fail when node is gone [#1419](https://github.com/openshift/ovn-kubernetes/pull/1419) * [OCPBUGS-4453](https://issues.redhat.com/browse/OCPBUGS-4453): Set NODAD flag on masquerade address [#1416](https://github.com/openshift/ovn-kubernetes/pull/1416) * [Release 4.12] OCPBUGS-3397: Avoid Remetric pods [#1399](https://github.com/openshift/ovn-kubernetes/pull/1399) * [OCPBUGS-3390](https://issues.redhat.com/browse/OCPBUGS-3390): Handle k8s watcher restart scenario [#1359](https://github.com/openshift/ovn-kubernetes/pull/1359) * [OCPBUGS-3798](https://issues.redhat.com/browse/OCPBUGS-3798): [4.12] Dockerfile: bump regular image to OVS 2.17.0-62 [#1409](https://github.com/openshift/ovn-kubernetes/pull/1409) * [OCPBUGS-4356](https://issues.redhat.com/browse/OCPBUGS-4356): Bump OVN to 22.09.0-22 [#1407](https://github.com/openshift/ovn-kubernetes/pull/1407) * [OCPBUGS-2896](https://issues.redhat.com/browse/OCPBUGS-2896): Refactor retry into its own pkg [#1376](https://github.com/openshift/ovn-kubernetes/pull/1376) * Updating ovn-kubernetes-base images to be consistent with ART [#1287](https://github.com/openshift/ovn-kubernetes/pull/1287) * [OCPBUGS-3798](https://issues.redhat.com/browse/OCPBUGS-3798): [4.12] Dockerfile: bump OVS to 2.17.0-62.el8fdp [#1387](https://github.com/openshift/ovn-kubernetes/pull/1387) * [OCPBUGS-3977](https://issues.redhat.com/browse/OCPBUGS-3977): Handle expired entry while handling dns update [#1392](https://github.com/openshift/ovn-kubernetes/pull/1392) * [OCPBUGS-3871](https://issues.redhat.com/browse/OCPBUGS-3871): Ignore addresses in masquerade subnet when retrieving gateway IPs [#1386](https://github.com/openshift/ovn-kubernetes/pull/1386) * [OCPBUGS-3348](https://issues.redhat.com/browse/OCPBUGS-3348): Validate node subnet annotations against cluster networks [#1351](https://github.com/openshift/ovn-kubernetes/pull/1351) * [OCPBUGS-3658](https://issues.redhat.com/browse/OCPBUGS-3658): [release-4.12] Support proper parsing of IPs with leading zeros [#1379](https://github.com/openshift/ovn-kubernetes/pull/1379) * [OCPBUGS-3773](https://issues.redhat.com/browse/OCPBUGS-3773): Adjust ovs bundle timeout [#1382](https://github.com/openshift/ovn-kubernetes/pull/1382) * [OCPBUGS-3468](https://issues.redhat.com/browse/OCPBUGS-3468): Disable packet MTU check when OVS HW Offload is enabled [#1368](https://github.com/openshift/ovn-kubernetes/pull/1368) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): Adapt ovnkube-trace to work with external controlplane [#1363](https://github.com/openshift/ovn-kubernetes/pull/1363) * [OCPBUGS-3075](https://issues.redhat.com/browse/OCPBUGS-3075): [release-4.12] Fix netpol races [#1347](https://github.com/openshift/ovn-kubernetes/pull/1347) * [OCPBUGS-3346](https://issues.redhat.com/browse/OCPBUGS-3346): vendor: bump libovsdb to 8f21d188c3a50d0ce378bd66ec68215967aaad77 [#1348](https://github.com/openshift/ovn-kubernetes/pull/1348) * [OCPBUGS-3369](https://issues.redhat.com/browse/OCPBUGS-3369): Fix mac address not set in SRIOV container interface [#1361](https://github.com/openshift/ovn-kubernetes/pull/1361) * [OCPBUGS-3221](https://issues.redhat.com/browse/OCPBUGS-3221): Allow empty nexthop in L3GatewayConfig node annotation [#1356](https://github.com/openshift/ovn-kubernetes/pull/1356) * [OCPBUGS-3003](https://issues.redhat.com/browse/OCPBUGS-3003): Ignore non-ready endpoints when processing endpointslices [#1344](https://github.com/openshift/ovn-kubernetes/pull/1344) * [OCPBUGS-2826](https://issues.redhat.com/browse/OCPBUGS-2826): ovnkube-trace: Fix ofproto/trace for IPv6 [#1338](https://github.com/openshift/ovn-kubernetes/pull/1338) * [OCPBUGS-1520](https://issues.redhat.com/browse/OCPBUGS-1520): Fixes SNAT-ing Logic for EgressIPs [#1331](https://github.com/openshift/ovn-kubernetes/pull/1331) * [OCPBUGS-1520](https://issues.redhat.com/browse/OCPBUGS-1520): Prioritize adding events to handlers for shared resources [#1333](https://github.com/openshift/ovn-kubernetes/pull/1333) * [OCPBUGS-1643](https://issues.redhat.com/browse/OCPBUGS-1643): Add logging verbosity to configuring OVN logs [#1324](https://github.com/openshift/ovn-kubernetes/pull/1324) * [OCPBUGS-2175](https://issues.redhat.com/browse/OCPBUGS-2175): Allocate Hybrid Overlay IP on node updates too [#1319](https://github.com/openshift/ovn-kubernetes/pull/1319) * [OCPBUGS-2004](https://issues.redhat.com/browse/OCPBUGS-2004): egress IP: fix log when gRPC connection fails [#1304](https://github.com/openshift/ovn-kubernetes/pull/1304) * [OCPBUGS-2176](https://issues.redhat.com/browse/OCPBUGS-2176): add endpointSlice informer in master process [#1302](https://github.com/openshift/ovn-kubernetes/pull/1302) * [OCPBUGS-2085](https://issues.redhat.com/browse/OCPBUGS-2085): CARRY: Dockerfile.base: bump to openvswitch2.17.0-37.4.el8fdp [#1298](https://github.com/openshift/ovn-kubernetes/pull/1298) * [OCPBUGS-1705](https://issues.redhat.com/browse/OCPBUGS-1705): Don't use ACL names ever! [#1300](https://github.com/openshift/ovn-kubernetes/pull/1300) * Dockerfile: bump to ovn22.09-22.09.0-5.el8fdp [#1284](https://github.com/openshift/ovn-kubernetes/pull/1284) * 9-23-22 b - dualstack fixed [#1289](https://github.com/openshift/ovn-kubernetes/pull/1289) * [OCPBUGS-1705](https://issues.redhat.com/browse/OCPBUGS-1705): Trim ACL names according to RFC1123 [#1281](https://github.com/openshift/ovn-kubernetes/pull/1281) * [OCPBUGS-1553](https://issues.redhat.com/browse/OCPBUGS-1553): Dockerfile: bump to openvswitch2.17.0-37.4.el8fdp [#1273](https://github.com/openshift/ovn-kubernetes/pull/1273) * Use iptables-restore to add MCS/metadata blocking in the pod [#1262](https://github.com/openshift/ovn-kubernetes/pull/1262) * 9-12-22 merge [#1267](https://github.com/openshift/ovn-kubernetes/pull/1267) * 9-7-22 merge [#1264](https://github.com/openshift/ovn-kubernetes/pull/1264) * 9-2-22 merge [#1263](https://github.com/openshift/ovn-kubernetes/pull/1263) * [OCPBUGS-165](https://issues.redhat.com/browse/OCPBUGS-165): [DownstreamMerge] 8-29-2022 merge [#1255](https://github.com/openshift/ovn-kubernetes/pull/1255) * 8-25-2022 [#1253](https://github.com/openshift/ovn-kubernetes/pull/1253) * revert endpoints [#1248](https://github.com/openshift/ovn-kubernetes/pull/1248) * 8-8-2022 [#1237](https://github.com/openshift/ovn-kubernetes/pull/1237) * Fix ovn version in Dockerfile.base [#1236](https://github.com/openshift/ovn-kubernetes/pull/1236) * Introduce ovn-kubernetes-{base|singlenode} images [#1213](https://github.com/openshift/ovn-kubernetes/pull/1213) * [Bug 2109945](https://bugzilla.redhat.com/show_bug.cgi?id=2109945): [Downstream Merge: 04-08-2022] [#1231](https://github.com/openshift/ovn-kubernetes/pull/1231) * [Bug 2111534](https://bugzilla.redhat.com/show_bug.cgi?id=2111534): Downstream Merge: 27-07-2022 [#1214](https://github.com/openshift/ovn-kubernetes/pull/1214) * Updating ose-ovn-kubernetes images to be consistent with ART [#1174](https://github.com/openshift/ovn-kubernetes/pull/1174) * [Bug 2111733](https://bugzilla.redhat.com/show_bug.cgi?id=2111733): Bump OVN to 22.06.0-27 [#1222](https://github.com/openshift/ovn-kubernetes/pull/1222) * [OCPBUGSM-45393](https://issues.redhat.com/browse/OCPBUGSM-45393): Bug 2078691: [Downstream Merge] 22-07-2022 [#1210](https://github.com/openshift/ovn-kubernetes/pull/1210) * 4.12 initial merge from upstream: 7-18-22 [#1205](https://github.com/openshift/ovn-kubernetes/pull/1205) * [Bug 2106862](https://bugzilla.redhat.com/show_bug.cgi?id=2106862): Append the SNAT rule in management chain [#1199](https://github.com/openshift/ovn-kubernetes/pull/1199) * [Bug 2095444](https://bugzilla.redhat.com/show_bug.cgi?id=2095444): EGW: Clean Stale Conntrack Entries [#1189](https://github.com/openshift/ovn-kubernetes/pull/1189) * [Bug 2106298](https://bugzilla.redhat.com/show_bug.cgi?id=2106298): populate sock address for ovndb connection in unix mode [#1188](https://github.com/openshift/ovn-kubernetes/pull/1188) * [Bug 2100507](https://bugzilla.redhat.com/show_bug.cgi?id=2100507): Remove redundant log lines in obj_retry.go [#1162](https://github.com/openshift/ovn-kubernetes/pull/1162) * [Bug 2097243](https://bugzilla.redhat.com/show_bug.cgi?id=2097243): Fix egressips for pods recreated with same name [#1169](https://github.com/openshift/ovn-kubernetes/pull/1169) * [Bug 2097221](https://bugzilla.redhat.com/show_bug.cgi?id=2097221): Dockerfile: bump to ovn22.06-22.06.0-7.el8fdp [#1170](https://github.com/openshift/ovn-kubernetes/pull/1170) * [Bug 2091238](https://bugzilla.redhat.com/show_bug.cgi?id=2091238): Fix Panic in Network Policy deletion [#1166](https://github.com/openshift/ovn-kubernetes/pull/1166) * [Bug 2100220](https://bugzilla.redhat.com/show_bug.cgi?id=2100220): Fix completed pods releasing IP address on update [#1158](https://github.com/openshift/ovn-kubernetes/pull/1158) * [Bug 2089807](https://bugzilla.redhat.com/show_bug.cgi?id=2089807): Release Leader election lock on errors [#1167](https://github.com/openshift/ovn-kubernetes/pull/1167) * [Bug 2100249](https://bugzilla.redhat.com/show_bug.cgi?id=2100249): Revert "Bug 2082599: add upper bound to number of failed attempts" [#1161](https://github.com/openshift/ovn-kubernetes/pull/1161) * [Bug 2085089](https://bugzilla.redhat.com/show_bug.cgi?id=2085089): Add support for enabling UDP packet aggregation on veth interfaces [#1129](https://github.com/openshift/ovn-kubernetes/pull/1129) * [Bug 2099755](https://bugzilla.redhat.com/show_bug.cgi?id=2099755): Add new EgressIP config option "egressip-reachability-total-timeout" [#1156](https://github.com/openshift/ovn-kubernetes/pull/1156) * [Bug 2073378](https://bugzilla.redhat.com/show_bug.cgi?id=2073378): Add node name into egress ip status for the removal [#1114](https://github.com/openshift/ovn-kubernetes/pull/1114) * [Bug 2079012](https://bugzilla.redhat.com/show_bug.cgi?id=2079012): Fix egressIP object deletion if the node is deleted first [#1143](https://github.com/openshift/ovn-kubernetes/pull/1143) * [Bug 2089392](https://bugzilla.redhat.com/show_bug.cgi?id=2089392): Update logging for specific policy when creating it [#1145](https://github.com/openshift/ovn-kubernetes/pull/1145) * [Bug 2082599](https://bugzilla.redhat.com/show_bug.cgi?id=2082599): add upper bound to number of failed attempts [#1147](https://github.com/openshift/ovn-kubernetes/pull/1147) * [Bug 2094088](https://bugzilla.redhat.com/show_bug.cgi?id=2094088): Fixes Updating non-default columns as well as libovsdb fixes for empty values [#1146](https://github.com/openshift/ovn-kubernetes/pull/1146) * [release 4.11] Bug 2092579: pods: deleteLogicalPort should not fail if port is already deleted [#1123](https://github.com/openshift/ovn-kubernetes/pull/1123) * [Bug 2092889](https://bugzilla.redhat.com/show_bug.cgi?id=2092889): update all egress ACLs' direction to "from-lport" [#1128](https://github.com/openshift/ovn-kubernetes/pull/1128) * [Bug 2089716](https://bugzilla.redhat.com/show_bug.cgi?id=2089716): Downstream fix for OVN-Kube node cardinality [#1135](https://github.com/openshift/ovn-kubernetes/pull/1135) * [Bug 2095113](https://bugzilla.redhat.com/show_bug.cgi?id=2095113): Dockerfile: bump to openvswitch2.17-2.17.0-22.el8fdp [#1117](https://github.com/openshift/ovn-kubernetes/pull/1117) * [Bug 2094039](https://bugzilla.redhat.com/show_bug.cgi?id=2094039): egressIP: node retrieval failure is not respected, causes panic [#1130](https://github.com/openshift/ovn-kubernetes/pull/1130) * [Bug 2093396](https://bugzilla.redhat.com/show_bug.cgi?id=2093396): Remove node-tainting for too-small MTU [#1127](https://github.com/openshift/ovn-kubernetes/pull/1127) * [Bug 2091634](https://bugzilla.redhat.com/show_bug.cgi?id=2091634): Use ovs-appctl dpctl/* instead of ovs-dpctl [#1118](https://github.com/openshift/ovn-kubernetes/pull/1118) * [Bug 2091990](https://bugzilla.redhat.com/show_bug.cgi?id=2091990): fix lflow-cache-limit-kb ovs external-id [#1116](https://github.com/openshift/ovn-kubernetes/pull/1116) * [Bug 2070674](https://bugzilla.redhat.com/show_bug.cgi?id=2070674): improve performance of service sync [#1110](https://github.com/openshift/ovn-kubernetes/pull/1110) * [Bug 2092473](https://bugzilla.redhat.com/show_bug.cgi?id=2092473): libovsdb perf backports [#1119](https://github.com/openshift/ovn-kubernetes/pull/1119) * [Bug 2089930](https://bugzilla.redhat.com/show_bug.cgi?id=2089930): Dockerfile: bump OVN to ovn22.06 [#1102](https://github.com/openshift/ovn-kubernetes/pull/1102) * [Bug 2090843](https://bugzilla.redhat.com/show_bug.cgi?id=2090843): addLogicalPort() optimization cherry-picks [#1109](https://github.com/openshift/ovn-kubernetes/pull/1109) * [Bug 2090537](https://bugzilla.redhat.com/show_bug.cgi?id=2090537): OVNDBManager: Retry migrations [#1108](https://github.com/openshift/ovn-kubernetes/pull/1108) * [Bug 2081069](https://bugzilla.redhat.com/show_bug.cgi?id=2081069): Bumps OVN to 22.03.0-37.el8fdp [#1100](https://github.com/openshift/ovn-kubernetes/pull/1100) * [Bug 2086851](https://bugzilla.redhat.com/show_bug.cgi?id=2086851): enable `exportloopref` linter and fix violations [#1092](https://github.com/openshift/ovn-kubernetes/pull/1092) * [Bug 2084249](https://bugzilla.redhat.com/show_bug.cgi?id=2084249): [DownstreamMerge] 5-12-22 [#1090](https://github.com/openshift/ovn-kubernetes/pull/1090) * [Bug 2077357](https://bugzilla.redhat.com/show_bug.cgi?id=2077357): Bump OVN to ovn22.03-22.03.0-24 [#1052](https://github.com/openshift/ovn-kubernetes/pull/1052) * 5-4-22 [#1081](https://github.com/openshift/ovn-kubernetes/pull/1081) * [Bug 2070929](https://bugzilla.redhat.com/show_bug.cgi?id=2070929): Downstream Merge: 04-05-2022 [#1078](https://github.com/openshift/ovn-kubernetes/pull/1078) * [Bug 2079439](https://bugzilla.redhat.com/show_bug.cgi?id=2079439): [DownstreamMerge] 4-29-22 [#1064](https://github.com/openshift/ovn-kubernetes/pull/1064) * Downstream Merge 25-04-2022 [#1050](https://github.com/openshift/ovn-kubernetes/pull/1050) * [Bug 2023691](https://bugzilla.redhat.com/show_bug.cgi?id=2023691): Downstream merge 2022-04-22 [#1049](https://github.com/openshift/ovn-kubernetes/pull/1049) * [Bug 2072134](https://bugzilla.redhat.com/show_bug.cgi?id=2072134): [DownstreamMerge] 4-18-22 [#1040](https://github.com/openshift/ovn-kubernetes/pull/1040) * Dockerfile: bump to OVS 2.17 [#1031](https://github.com/openshift/ovn-kubernetes/pull/1031) * Fix gofmt for downstream files [#1028](https://github.com/openshift/ovn-kubernetes/pull/1028) * [Bug 2026461](https://bugzilla.redhat.com/show_bug.cgi?id=2026461): 4-4-22 merge [#1010](https://github.com/openshift/ovn-kubernetes/pull/1010) * [Bug 2047710](https://bugzilla.redhat.com/show_bug.cgi?id=2047710): Bump OVS version to 2.16.0-57.el8fdp [#980](https://github.com/openshift/ovn-kubernetes/pull/980) * Downstream merge 2022-03-22 [#1006](https://github.com/openshift/ovn-kubernetes/pull/1006) * [Bug 2063321](https://bugzilla.redhat.com/show_bug.cgi?id=2063321): [DownstreamMerge] Downstream merge 17-03-2022 [#1000](https://github.com/openshift/ovn-kubernetes/pull/1000) * [Bug 2060549](https://bugzilla.redhat.com/show_bug.cgi?id=2060549): Downstream merge 3-8-22 [#989](https://github.com/openshift/ovn-kubernetes/pull/989) * [Bug 2052975](https://bugzilla.redhat.com/show_bug.cgi?id=2052975): Downstream merge 07-03-2022 [#988](https://github.com/openshift/ovn-kubernetes/pull/988) * Merge 3-4-22 [#987](https://github.com/openshift/ovn-kubernetes/pull/987) * [Bug 2052975](https://bugzilla.redhat.com/show_bug.cgi?id=2052975): Bump OVN to ovn-2021-21.12.0-30.el8fdp [#982](https://github.com/openshift/ovn-kubernetes/pull/982) * [Bug 2052398](https://bugzilla.redhat.com/show_bug.cgi?id=2052398): [DownstreamMerge] 2-25-22 [#975](https://github.com/openshift/ovn-kubernetes/pull/975) * Bump OVS to 2.16.0-53.el8fdp [#968](https://github.com/openshift/ovn-kubernetes/pull/968) * [Bug 2048538](https://bugzilla.redhat.com/show_bug.cgi?id=2048538): [DownstreamMerge] 2-22-22 [#966](https://github.com/openshift/ovn-kubernetes/pull/966) * [Bug 2045577](https://bugzilla.redhat.com/show_bug.cgi?id=2045577): Bump OVN to ovn-2021-21.12.0-15.el8fdp [#958](https://github.com/openshift/ovn-kubernetes/pull/958) * [Bug 2048538](https://bugzilla.redhat.com/show_bug.cgi?id=2048538): [DownstreamMerge] 2-14-22 [#956](https://github.com/openshift/ovn-kubernetes/pull/956) * [Bug 2011525](https://bugzilla.redhat.com/show_bug.cgi?id=2011525): [DownstreamMerge] Downstream merge 08-02-2022 [#947](https://github.com/openshift/ovn-kubernetes/pull/947) * Update project owners [#950](https://github.com/openshift/ovn-kubernetes/pull/950) * Downstream merge 2-1-22 [#940](https://github.com/openshift/ovn-kubernetes/pull/940) * [Bug 2040357](https://bugzilla.redhat.com/show_bug.cgi?id=2040357): Dockerfile: bump OVN to ovn-2021-21.12.0-11.el8fdp [#902](https://github.com/openshift/ovn-kubernetes/pull/902) * [Bug 2039253](https://bugzilla.redhat.com/show_bug.cgi?id=2039253): avoid passing duplicate Flow endpoints to ovs-vsctl [#930](https://github.com/openshift/ovn-kubernetes/pull/930) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/51baafc3fb8e3803b63077994c89b616383367f6...6dd54dc32cd28553ce81e3fca5da3f3e2284e6b4) ### [powervs-machine-controllers](https://github.com/openshift/machine-api-provider-powervs/tree/8a37e70af86197341dfe33077565cc1f7c919333) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce metrics cardinality [#75](https://github.com/openshift/machine-api-provider-powervs/pull/75) * [OCPBUGS-24738](https://issues.redhat.com/browse/OCPBUGS-24738): snyk code scan exclude vendor directory [#63](https://github.com/openshift/machine-api-provider-powervs/pull/63) * [OCPBUGS-21882](https://issues.redhat.com/browse/OCPBUGS-21882): CVE-2023-39325 - Bump golang.org/x/net to v0.17.0 - 4.12 [#57](https://github.com/openshift/machine-api-provider-powervs/pull/57) * Update OWNERS [#39](https://github.com/openshift/machine-api-provider-powervs/pull/39) * Updating ose-powervs-machine-controllers images to be consistent with ART [#34](https://github.com/openshift/machine-api-provider-powervs/pull/34) * Update go versoin to 1.19 and gofmted file as per go 1.19 [#35](https://github.com/openshift/machine-api-provider-powervs/pull/35) * Updating ose-powervs-machine-controllers images to be consistent with ART [#32](https://github.com/openshift/machine-api-provider-powervs/pull/32) * Update k8s to 1.25 [#33](https://github.com/openshift/machine-api-provider-powervs/pull/33) * Add infrastructure sync controller for custom service endpoints [#31](https://github.com/openshift/machine-api-provider-powervs/pull/31) * Add JoelSpeed approver [#30](https://github.com/openshift/machine-api-provider-powervs/pull/30) * Add Karthik-K-N as approver [#29](https://github.com/openshift/machine-api-provider-powervs/pull/29) * Autoscaler support [#25](https://github.com/openshift/machine-api-provider-powervs/pull/25) * Set the node internal dns address for machine [#27](https://github.com/openshift/machine-api-provider-powervs/pull/27) * Updating ose-powervs-machine-controllers images to be consistent with ART [#26](https://github.com/openshift/machine-api-provider-powervs/pull/26) * [Bug 2100825](https://bugzilla.redhat.com/show_bug.cgi?id=2100825): Update go modules [#24](https://github.com/openshift/machine-api-provider-powervs/pull/24) * [Bug 2100033](https://bugzilla.redhat.com/show_bug.cgi?id=2100033): Fetch VM IP from DHCP server to set NodeInternalIP [#22](https://github.com/openshift/machine-api-provider-powervs/pull/22) * [Bug 2082667](https://bugzilla.redhat.com/show_bug.cgi?id=2082667): Bump MAPI dependency. Separate node drain controller. [#20](https://github.com/openshift/machine-api-provider-powervs/pull/20) * [Bug 2089563](https://bugzilla.redhat.com/show_bug.cgi?id=2089563): Use PowerVS api types from openshift/api [#17](https://github.com/openshift/machine-api-provider-powervs/pull/17) * [Bug 2087039](https://bugzilla.redhat.com/show_bug.cgi?id=2087039): Update dependencies to K8s 1.24, go 1.18 [#19](https://github.com/openshift/machine-api-provider-powervs/pull/19) * Updating ose-powervs-machine-controllers images to be consistent with ART [#18](https://github.com/openshift/machine-api-provider-powervs/pull/18) * Fixed Provider ID format [#16](https://github.com/openshift/machine-api-provider-powervs/pull/16) * Set zone, region labels to machines [#13](https://github.com/openshift/machine-api-provider-powervs/pull/13) * Removed node update controller [#8](https://github.com/openshift/machine-api-provider-powervs/pull/8) * allow user to pass in regex for resource lookup [#9](https://github.com/openshift/machine-api-provider-powervs/pull/9) * Bump machine-api-operator [#12](https://github.com/openshift/machine-api-provider-powervs/pull/12) * Updated Makefile [#11](https://github.com/openshift/machine-api-provider-powervs/pull/11) * Updated power go client [#7](https://github.com/openshift/machine-api-provider-powervs/pull/7) * Remove whitespace from the ip address [#6](https://github.com/openshift/machine-api-provider-powervs/pull/6) * Updating ose-powervs-machine-controllers images to be consistent with ART [#4](https://github.com/openshift/machine-api-provider-powervs/pull/4) * [Full changelog](https://github.com/openshift/machine-api-provider-powervs/compare/c1d68e7b97a8bcf9b350e4a686fd202ffc69978f...8a37e70af86197341dfe33077565cc1f7c919333) ### [prom-label-proxy](https://github.com/openshift/prom-label-proxy/tree/b1907888004888b977918cf911b189de736642b2) * Updating prom-label-proxy images to be consistent with ART [#350](https://github.com/openshift/prom-label-proxy/pull/350) * OWNERS: Add myself, and move former team members to emeritus [#349](https://github.com/openshift/prom-label-proxy/pull/349) * Updating prom-label-proxy images to be consistent with ART [#347](https://github.com/openshift/prom-label-proxy/pull/347) * Bump v0.5.0 [#348](https://github.com/openshift/prom-label-proxy/pull/348) * Updating prom-label-proxy images to be consistent with ART [#346](https://github.com/openshift/prom-label-proxy/pull/346) * Updates OWNERS file [#345](https://github.com/openshift/prom-label-proxy/pull/345) * Updating prom-label-proxy images to be consistent with ART [#343](https://github.com/openshift/prom-label-proxy/pull/343) * [Full changelog](https://github.com/openshift/prom-label-proxy/compare/5f4c89923dcfb1c620490e8ed8de8cd1bdaf5122...b1907888004888b977918cf911b189de736642b2) ### [prometheus](https://github.com/openshift/prometheus/tree/72ceaef4a59ec0cfb0639563ba9bd28928f4bcc0) * [OCPBUGS-21219](https://issues.redhat.com/browse/OCPBUGS-21219): update golang.org/x/net to v0.17.0 [4.12] [#175](https://github.com/openshift/prometheus/pull/175) * [OCPBUGS-4048](https://issues.redhat.com/browse/OCPBUGS-4048): fix certificate reloads after rotation [#149](https://github.com/openshift/prometheus/pull/149) * Revert unwanted downstream patch [#144](https://github.com/openshift/prometheus/pull/144) * [OCPBUGS-1718](https://issues.redhat.com/browse/OCPBUGS-1718): [bot] Bump openshift/prometheus to v2.39.1 [#142](https://github.com/openshift/prometheus/pull/142) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#141](https://github.com/openshift/prometheus/pull/141) * Bump openshift/prometheus to v2.38.0 [#140](https://github.com/openshift/prometheus/pull/140) * OWNERS: Add myself, and move former team members to emeritus [#139](https://github.com/openshift/prometheus/pull/139) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#137](https://github.com/openshift/prometheus/pull/137) * Bump openshift/prometheus to v2.37.0 [#138](https://github.com/openshift/prometheus/pull/138) * [Bug 2099561](https://bugzilla.redhat.com/show_bug.cgi?id=2099561): Bump openshift/prometheus to v2.36.2 [#136](https://github.com/openshift/prometheus/pull/136) * [Bug 2064984](https://bugzilla.redhat.com/show_bug.cgi?id=2064984): Update Prometheus to v2.36.1 [#133](https://github.com/openshift/prometheus/pull/133) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#132](https://github.com/openshift/prometheus/pull/132) * web/ui/.gitignore: unignore generated assets for downstream build [#130](https://github.com/openshift/prometheus/pull/130) * Bump openshift/prometheus to v2.35.0 [#128](https://github.com/openshift/prometheus/pull/128) * Updates OWNERS file [#124](https://github.com/openshift/prometheus/pull/124) * Bump openshift/prometheus to v2.34.0 [#123](https://github.com/openshift/prometheus/pull/123) * Bump openshift/prometheus to v2.33.5 [#122](https://github.com/openshift/prometheus/pull/122) * [Bug 2056802](https://bugzilla.redhat.com/show_bug.cgi?id=2056802): scrape: Fix label_limits cache usage [#121](https://github.com/openshift/prometheus/pull/121) * Bump openshift/prometheus to v2.33.4 [#120](https://github.com/openshift/prometheus/pull/120) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#119](https://github.com/openshift/prometheus/pull/119) * [Full changelog](https://github.com/openshift/prometheus/compare/b91d7c75372b3ae707ce287e56df3fc7db935bac...72ceaef4a59ec0cfb0639563ba9bd28928f4bcc0) ### [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager/tree/914cad827e9a177b29b23e02eb48b4065da8dca2) * [OCPBUGS-21031](https://issues.redhat.com/browse/OCPBUGS-21031): Bump golang.org/x/net to v0.17.0 [#82](https://github.com/openshift/prometheus-alertmanager/pull/82) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#64](https://github.com/openshift/prometheus-alertmanager/pull/64) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#61](https://github.com/openshift/prometheus-alertmanager/pull/61) * OWNERS: Add myself, and move former team members to emeritus [#62](https://github.com/openshift/prometheus-alertmanager/pull/62) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#60](https://github.com/openshift/prometheus-alertmanager/pull/60) * Updates OWNERS file [#59](https://github.com/openshift/prometheus-alertmanager/pull/59) * Bump openshift/prometheus-alertmanager to v0.24.0 [#58](https://github.com/openshift/prometheus-alertmanager/pull/58) * Bump openshift/prometheus-alertmanager to v0.23.0 [#55](https://github.com/openshift/prometheus-alertmanager/pull/55) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#57](https://github.com/openshift/prometheus-alertmanager/pull/57) * [Full changelog](https://github.com/openshift/prometheus-alertmanager/compare/013395968b37eb66909d7bbee7e34249b120835e...914cad827e9a177b29b23e02eb48b4065da8dca2) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/d1e399d5cead91c677cee4a80a032f5057cb43e3) * [OCPBUGS-20843](https://issues.redhat.com/browse/OCPBUGS-20843): Bump golang.org/x/net to v0.17.0 [#249](https://github.com/openshift/prometheus-operator/pull/249) * [OCPBUGS-7458](https://issues.redhat.com/browse/OCPBUGS-7458): Fixes ThanoRuler StatefulSet re-creation bug [#217](https://github.com/openshift/prometheus-operator/pull/217) * Updating prometheus-operator images to be consistent with ART [#204](https://github.com/openshift/prometheus-operator/pull/204) * Bump openshift/prometheus-operator to v0.60.1 [#208](https://github.com/openshift/prometheus-operator/pull/208) * Bump openshift/prometheus-operator to v0.60.0 [#207](https://github.com/openshift/prometheus-operator/pull/207) * Updating prometheus-operator-admission-webhook images to be consistent with ART [#206](https://github.com/openshift/prometheus-operator/pull/206) * Updating prometheus-config-reloader images to be consistent with ART [#205](https://github.com/openshift/prometheus-operator/pull/205) * Bump openshift/prometheus-operator to v0.59.2 [#203](https://github.com/openshift/prometheus-operator/pull/203) * Bump openshift/prometheus-operator to v0.59.1 [#200](https://github.com/openshift/prometheus-operator/pull/200) * OWNERS: Add myself, and move former team members to emeritus [#198](https://github.com/openshift/prometheus-operator/pull/198) * Bump openshift/prometheus-operator to v0.58.0 [#197](https://github.com/openshift/prometheus-operator/pull/197) * Updating prometheus-operator-admission-webhook images to be consistent with ART [#195](https://github.com/openshift/prometheus-operator/pull/195) * Updating prometheus-config-reloader images to be consistent with ART [#194](https://github.com/openshift/prometheus-operator/pull/194) * Updating prometheus-operator images to be consistent with ART [#193](https://github.com/openshift/prometheus-operator/pull/193) * [Bug 2097716](https://bugzilla.redhat.com/show_bug.cgi?id=2097716): pkg/apis/monitoring/v1beta1: fix httpConfig conversion [#191](https://github.com/openshift/prometheus-operator/pull/191) * [Bug 2091595](https://bugzilla.redhat.com/show_bug.cgi?id=2091595): bump to Prometheus operator v0.57.0 [#190](https://github.com/openshift/prometheus-operator/pull/190) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): pkg/prometheus: fix curl exec probe [#189](https://github.com/openshift/prometheus-operator/pull/189) * Revert "Bug 2091595: Bump openshift/prometheus-operator to v0.56.3" [#188](https://github.com/openshift/prometheus-operator/pull/188) * [Bug 2091595](https://bugzilla.redhat.com/show_bug.cgi?id=2091595): Bump openshift/prometheus-operator to v0.56.3 [#185](https://github.com/openshift/prometheus-operator/pull/185) * Updating prometheus-operator-admission-webhook images to be consistent with ART [#180](https://github.com/openshift/prometheus-operator/pull/180) * Updating prometheus-config-reloader images to be consistent with ART [#178](https://github.com/openshift/prometheus-operator/pull/178) * [Bug 2084288](https://bugzilla.redhat.com/show_bug.cgi?id=2084288): Revert "Bump openshift/prometheus-operator to v0.56.2" [#177](https://github.com/openshift/prometheus-operator/pull/177) * Updating prometheus-operator images to be consistent with ART [#176](https://github.com/openshift/prometheus-operator/pull/176) * Bump openshift/prometheus-operator to v0.56.2 [#174](https://github.com/openshift/prometheus-operator/pull/174) * Revert "Bump openshift/prometheus-operator to v0.56.1" [#171](https://github.com/openshift/prometheus-operator/pull/171) * Bump openshift/prometheus-operator to v0.56.1 [#170](https://github.com/openshift/prometheus-operator/pull/170) * Add myself to OWNER file [#166](https://github.com/openshift/prometheus-operator/pull/166) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): Revert "[bot] Bump openshift/prometheus-operator to v0.56.0" [#168](https://github.com/openshift/prometheus-operator/pull/168) * Bump openshift/prometheus-operator to v0.56.0 [#165](https://github.com/openshift/prometheus-operator/pull/165) * Bump openshift/prometheus-operator to v0.55.1 [#164](https://github.com/openshift/prometheus-operator/pull/164) * Bump openshift/prometheus-operator to v0.55.0 [#162](https://github.com/openshift/prometheus-operator/pull/162) * Fix typo in admission webhook bin output [#163](https://github.com/openshift/prometheus-operator/pull/163) * Add Dockerfile and targets for standalone admission webhook image [#160](https://github.com/openshift/prometheus-operator/pull/160) * Standalone webhook server [#159](https://github.com/openshift/prometheus-operator/pull/159) * Bump openshift/prometheus-operator to v0.54.1 [#158](https://github.com/openshift/prometheus-operator/pull/158) * Updating prometheus-config-reloader images to be consistent with ART [#155](https://github.com/openshift/prometheus-operator/pull/155) * Bump openshift/prometheus-operator to v0.54.0 [#151](https://github.com/openshift/prometheus-operator/pull/151) * Updating prometheus-operator images to be consistent with ART [#154](https://github.com/openshift/prometheus-operator/pull/154) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/e916c2d8a19309cc86558d70515639d450c66af0...d1e399d5cead91c677cee4a80a032f5057cb43e3) ### [prometheus-node-exporter](https://github.com/openshift/node_exporter/tree/99077a3c8c3b0fce152fe0affce1e31fc2c6efaa) * [OCPBUGS-21123](https://issues.redhat.com/browse/OCPBUGS-21123): upgrade golang.org/x/net to v0.17.0 [#136](https://github.com/openshift/node_exporter/pull/136) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#112](https://github.com/openshift/node_exporter/pull/112) * Align to upstream v1.4.0 [#109](https://github.com/openshift/node_exporter/pull/109) * Fix a bug of metric format on AMD EPYC platforms [#107](https://github.com/openshift/node_exporter/pull/107) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#104](https://github.com/openshift/node_exporter/pull/104) * OWNERS: Add myself, and move former team members to emeritus [#106](https://github.com/openshift/node_exporter/pull/106) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#103](https://github.com/openshift/node_exporter/pull/103) * Updates OWNERS file [#102](https://github.com/openshift/node_exporter/pull/102) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#101](https://github.com/openshift/node_exporter/pull/101) * [Full changelog](https://github.com/openshift/node_exporter/compare/0eed31026699ad13ca7fcebbc547a830371a920c...99077a3c8c3b0fce152fe0affce1e31fc2c6efaa) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/ef1d057db0bf8d0846d96e09cdd1f55998a1f80b) * [OCPBUGS-21026](https://issues.redhat.com/browse/OCPBUGS-21026): CVE 2023 39325 (4.12) [#231](https://github.com/openshift/service-ca-operator/pull/231) * [OCPBUGS-3279](https://issues.redhat.com/browse/OCPBUGS-3279): Return nil from start funcs after context is cancelled. [#203](https://github.com/openshift/service-ca-operator/pull/203) * [Bug 2048349](https://bugzilla.redhat.com/show_bug.cgi?id=2048349): make the operator react to workload logLevel configuration [#196](https://github.com/openshift/service-ca-operator/pull/196) * Quality of life changes, fix e2e tests failing too often [#197](https://github.com/openshift/service-ca-operator/pull/197) * Updating ose-cluster-authentication-operator images to be consistent with ART [#192](https://github.com/openshift/service-ca-operator/pull/192) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): operator NS manifest: Set empty openshift.io/run-level [#194](https://github.com/openshift/service-ca-operator/pull/194) * manifests/deployment: comply to restricted pod security level [#190](https://github.com/openshift/service-ca-operator/pull/190) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/1611373e4bf053ca78dc89b5fd4a4daf078312cf...ef1d057db0bf8d0846d96e09cdd1f55998a1f80b) ### [telemeter](https://github.com/openshift/telemeter/tree/c9592ded3e9a8daa8dfddfb7b8d874a2aaf1972c) * [OCPBUGS-34827](https://issues.redhat.com/browse/OCPBUGS-34827): fix issuer check during JWT authentication 4.12 [#541](https://github.com/openshift/telemeter/pull/541) * [OCPBUGS-21310](https://issues.redhat.com/browse/OCPBUGS-21310): [release-4.12] fix: Bump golang.org/x/net to v0.17.0 [#486](https://github.com/openshift/telemeter/pull/486) * [OCPBUGS-7702](https://issues.redhat.com/browse/OCPBUGS-7702): Add 'agent-installer' value to 'install_type' label [#451](https://github.com/openshift/telemeter/pull/451) * Fixes typo in telemeter/client/kubernetes.libsonnet [#434](https://github.com/openshift/telemeter/pull/434) * Updating telemeter images to be consistent with ART [#433](https://github.com/openshift/telemeter/pull/433) * Adds TemeterClientJobFailing alert [#431](https://github.com/openshift/telemeter/pull/431) * Add rules for cluster CPU-hours and Instance-hours [#418](https://github.com/openshift/telemeter/pull/418) * *: Update docs with latest Telemeter architecture [#430](https://github.com/openshift/telemeter/pull/430) * Forward: Add logic to sanitize labels [#429](https://github.com/openshift/telemeter/pull/429) * pkg/receive/handler: Add middleware to respect whitelist + elide [#427](https://github.com/openshift/telemeter/pull/427) * OWNERS: Add myself to owners file [#425](https://github.com/openshift/telemeter/pull/425) * pkg/receive/handler: Use OIDC client [#426](https://github.com/openshift/telemeter/pull/426) * pkg/receive/handler: Propagate upstream error message [#423](https://github.com/openshift/telemeter/pull/423) * OWNERS: Add myself, and move former team members to emeritus [#424](https://github.com/openshift/telemeter/pull/424) * pkg/server: use v1 forward requests counter [#422](https://github.com/openshift/telemeter/pull/422) * Bump Telemeter rules evaluation interval to 4m [#420](https://github.com/openshift/telemeter/pull/420) * [Bug 1924548](https://bugzilla.redhat.com/show_bug.cgi?id=1924548): go.mod: update github.com/gogo/protobuf to v1.3.2 [#419](https://github.com/openshift/telemeter/pull/419) * Bump Telemeter rules evaluation interval to 3m [#417](https://github.com/openshift/telemeter/pull/417) * Updating telemeter images to be consistent with ART [#415](https://github.com/openshift/telemeter/pull/415) * pkg/forwarder: add counter for the total number of requests [#416](https://github.com/openshift/telemeter/pull/416) * Updates version of golangci-lint to support GO1.18 [#413](https://github.com/openshift/telemeter/pull/413) * Adds PrometheusRule telemetry that was previously hosted in cluster-monitoring-operator [#411](https://github.com/openshift/telemeter/pull/411) * [Bug 2067888](https://bugzilla.redhat.com/show_bug.cgi?id=2067888): update prometheus/client_golang version [#409](https://github.com/openshift/telemeter/pull/409) * Use service CA beta annotation [#408](https://github.com/openshift/telemeter/pull/408) * Updating telemeter images to be consistent with ART [#407](https://github.com/openshift/telemeter/pull/407) * [Full changelog](https://github.com/openshift/telemeter/compare/3b5eb87fd042feafba13502ddf724951942dc8df...c9592ded3e9a8daa8dfddfb7b8d874a2aaf1972c) ### [tests](https://github.com/openshift/origin/tree/893161e0291fbda0118cfb01ef2acc9fef8c60f2) * [OCPBUGS-52585](https://issues.redhat.com/browse/OCPBUGS-52585): Use payload pullspec for image info test [#29593](https://github.com/openshift/origin/pull/29593) * [OCPBUGS-41585](https://issues.redhat.com/browse/OCPBUGS-41585): Removes dependency on samples operator images [#29080](https://github.com/openshift/origin/pull/29080) * Bug OCPBUGS-20557: Correct condition for rejecting connection [#28327](https://github.com/openshift/origin/pull/28327) * [OCPBUGS-18490](https://issues.redhat.com/browse/OCPBUGS-18490): bump monitoring SNO bounds [#28239](https://github.com/openshift/origin/pull/28239) * [OCPBUGS-18527](https://issues.redhat.com/browse/OCPBUGS-18527): Ignore timeout and connection refused errors during upgrade tests for 4.12 [#28270](https://github.com/openshift/origin/pull/28270) * [OCPBUGS-18309](https://issues.redhat.com/browse/OCPBUGS-18309): Add missing watch permission for console users [#28234](https://github.com/openshift/origin/pull/28234) * [OCPBUGS-16696](https://issues.redhat.com/browse/OCPBUGS-16696): Wait for DNS DS pods to be ready [#28083](https://github.com/openshift/origin/pull/28083) * [OCPBUGS-16243](https://issues.redhat.com/browse/OCPBUGS-16243): allow cluster-config-operator to manage featuregate upgrade block [#28055](https://github.com/openshift/origin/pull/28055) * [OCPBUGS-15933](https://issues.redhat.com/browse/OCPBUGS-15933): remove references to registry.centos.org [#28033](https://github.com/openshift/origin/pull/28033) * [CCO-367](https://issues.redhat.com/browse/CCO-367): Allow CCO to be Upgradeable=False when credentialsMode=Manual [#27941](https://github.com/openshift/origin/pull/27941) * [OCPBUGS-14152](https://issues.redhat.com/browse/OCPBUGS-14152): Move from registry.centos.org to quay.io [#27949](https://github.com/openshift/origin/pull/27949) * [OCPBUGS-12914](https://issues.redhat.com/browse/OCPBUGS-12914): Add (optional) dual-stack tests to the CNI certification test suite [#27903](https://github.com/openshift/origin/pull/27903) * Updating openshift-enterprise-tests images to be consistent with ART [#27293](https://github.com/openshift/origin/pull/27293) * add specific test for failing cgroups path [#27856](https://github.com/openshift/origin/pull/27856) * [OCPBUGS-8705](https://issues.redhat.com/browse/OCPBUGS-8705): Bump(openshift/kubernetes): to get fix for resizing flake [#27794](https://github.com/openshift/origin/pull/27794) * [OCPBUGS-8024](https://issues.redhat.com/browse/OCPBUGS-8024): Backport fixes to resume gathering CI disruption data for SLB and image registry [#27759](https://github.com/openshift/origin/pull/27759) * [OCPBUGS-7633](https://issues.redhat.com/browse/OCPBUGS-7633): remove reference to old guard pods [#27732](https://github.com/openshift/origin/pull/27732) * [OCPBUGS-7285](https://issues.redhat.com/browse/OCPBUGS-7285): extended: security: do not explicitly set api audience on token request [#27716](https://github.com/openshift/origin/pull/27716) * [OCPBUGS-6850](https://issues.redhat.com/browse/OCPBUGS-6850): [release-4.12] upgrade/adminack: guarantee one admin ack check post-upgrade [#27684](https://github.com/openshift/origin/pull/27684) * [OCPBUGS-5493](https://issues.redhat.com/browse/OCPBUGS-5493): Use cluster network MTU for bond interfaces [#27637](https://github.com/openshift/origin/pull/27637) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): Fix intervalcreation incorrect year unit test bug [#27668](https://github.com/openshift/origin/pull/27668) * [OCPBUGS-5130](https://issues.redhat.com/browse/OCPBUGS-5130): run resourcewatch fixes [#27625](https://github.com/openshift/origin/pull/27625) * [OCPBUGS-4836](https://issues.redhat.com/browse/OCPBUGS-4836): 1sec [#27610](https://github.com/openshift/origin/pull/27610) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): Unskip service session affinity tests [#27598](https://github.com/openshift/origin/pull/27598) * [OCPBUGS-4851](https://issues.redhat.com/browse/OCPBUGS-4851): Add Kuryr exception to "pods should successfully create sandboxes" test [#27611](https://github.com/openshift/origin/pull/27611) * [OCPBUGS-4407](https://issues.redhat.com/browse/OCPBUGS-4407): Nginx 1.18 images will reach EOL in November 2022 [#27599](https://github.com/openshift/origin/pull/27599) * [OCPBUGS-2927](https://issues.redhat.com/browse/OCPBUGS-2927): [release-4.12] Bump kubernetes to latest release-4.12 [#27588](https://github.com/openshift/origin/pull/27588) * [OCPBUGS-3649](https://issues.redhat.com/browse/OCPBUGS-3649): : Fix flake reporting for certain tests. [#27557](https://github.com/openshift/origin/pull/27557) * [OCPBUGS-3649](https://issues.redhat.com/browse/OCPBUGS-3649): Revert "Merge pull request #27533 from dgoodwin/merge-alert-backstops" [#27550](https://github.com/openshift/origin/pull/27550) * Synchronize release-4.12 with master [#27541](https://github.com/openshift/origin/pull/27541) * [OCPBUGS-3428](https://issues.redhat.com/browse/OCPBUGS-3428): Skip broken [sig-devex][Feature:ImageEcosystem] tests [#27537](https://github.com/openshift/origin/pull/27537) * k8s 1.25.0 [#27503](https://github.com/openshift/origin/pull/27503) * Revert 1.25 again [#27499](https://github.com/openshift/origin/pull/27499) * Extend SCC tests with their corresponding service account variants [#27491](https://github.com/openshift/origin/pull/27491) * MicroShift: label e2es with more apigroup labels (squashing more PRs into a single one + fixes) [#27498](https://github.com/openshift/origin/pull/27498) * Skip resource growth checks in upgrade-rollback jobs [#27450](https://github.com/openshift/origin/pull/27450) * k8s 1.25.0 [#27490](https://github.com/openshift/origin/pull/27490) * Remove must-gather pod from lack priorityclass exception list [#27469](https://github.com/openshift/origin/pull/27469) * Ocpbugs 2275 remove templateservicebroker test [#27484](https://github.com/openshift/origin/pull/27484) * Support external topology for hypershift [#27437](https://github.com/openshift/origin/pull/27437) * USHIFT-481 Get event intervals for alerts only if Prometheus route exists [#27467](https://github.com/openshift/origin/pull/27467) * Revert "k8s 1.25.0" [#27489](https://github.com/openshift/origin/pull/27489) * k8s 1.25.0 [#27416](https://github.com/openshift/origin/pull/27416) * Automated - Update synthetic test data [#27475](https://github.com/openshift/origin/pull/27475) * microshift: avoid oauth and console disruption monitoring [#27462](https://github.com/openshift/origin/pull/27462) * Migrate route.sh, run.sh, service.sh and status.sh tests to go [#27455](https://github.com/openshift/origin/pull/27455) * Add skips logic for tests that require optional capabilities [#27481](https://github.com/openshift/origin/pull/27481) * Fix flaky cli tests [#27482](https://github.com/openshift/origin/pull/27482) * Migrate idle.sh to go tests [#27451](https://github.com/openshift/origin/pull/27451) * Add dgoodwin as approver to origin [#27477](https://github.com/openshift/origin/pull/27477) * update skip openshift-controller-manager scaling events in build testsuite [#27474](https://github.com/openshift/origin/pull/27474) * Fix unit tests that have broken since we stopped running them 2 years ago [#27460](https://github.com/openshift/origin/pull/27460) * [USHIFT-357](https://issues.redhat.com/browse/USHIFT-357): MicroShift: skip sig-scheduling tests [#27402](https://github.com/openshift/origin/pull/27402) * [USHIFT-356](https://issues.redhat.com/browse/USHIFT-356): MicroShift: skip sig-node tests [#27425](https://github.com/openshift/origin/pull/27425) * [OCPBUGS-2155](https://issues.redhat.com/browse/OCPBUGS-2155): Revert "Add etcd vertical scaling test suite" [#27463](https://github.com/openshift/origin/pull/27463) * [USHIFT-358](https://issues.redhat.com/browse/USHIFT-358): MicroShift: skip sig-storage tests [#27438](https://github.com/openshift/origin/pull/27438) * Check for console capability before launching it's disruption monitoring. [#27439](https://github.com/openshift/origin/pull/27439) * Add Invariant test to look for probe errors for openshift-config-operator [#27436](https://github.com/openshift/origin/pull/27436) * Fix missing reporting of 0s disruptions. [#27452](https://github.com/openshift/origin/pull/27452) * Add etcd vertical scaling test suite [#27444](https://github.com/openshift/origin/pull/27444) * [USHIFT-351](https://issues.redhat.com/browse/USHIFT-351): Microshift: skip sig-devex tests [#27392](https://github.com/openshift/origin/pull/27392) * [USHIFT-300](https://issues.redhat.com/browse/USHIFT-300): microshift: skip sig-imageregistry tests [#27367](https://github.com/openshift/origin/pull/27367) * Drastically reduce the jobs we enforce disruption on. [#27457](https://github.com/openshift/origin/pull/27457) * [USHIFT-354](https://issues.redhat.com/browse/USHIFT-354): MicroShift: skip sig-instrumentation tests [#27399](https://github.com/openshift/origin/pull/27399) * [USHIFT-350](https://issues.redhat.com/browse/USHIFT-350): MicroShift: skip sig-coreos tests [#27400](https://github.com/openshift/origin/pull/27400) * egressip: avoid curl hanging when sending probes [#27379](https://github.com/openshift/origin/pull/27379) * [OCPBUGS-1079](https://issues.redhat.com/browse/OCPBUGS-1079): Use kubeconfig from secret mount instead of /tmp [#27443](https://github.com/openshift/origin/pull/27443) * include storage and must-gather tests in expectedTestCount [#27356](https://github.com/openshift/origin/pull/27356) * feat: update query results [#27448](https://github.com/openshift/origin/pull/27448) * [USHIFT-283](https://issues.redhat.com/browse/USHIFT-283): microshift: skip sig-builds tests [#27361](https://github.com/openshift/origin/pull/27361) * Fix rare race condition in ImageStream admission tests. [#27442](https://github.com/openshift/origin/pull/27442) * remove test/extended OWNERS file [#27408](https://github.com/openshift/origin/pull/27408) * [OCPBUGS-985](https://issues.redhat.com/browse/OCPBUGS-985): Revert "Test Baremetal deployment without a provisoning network" [#27441](https://github.com/openshift/origin/pull/27441) * [USHIFT-344](https://issues.redhat.com/browse/USHIFT-344): MicroShift: fix sig-apps tests [#27397](https://github.com/openshift/origin/pull/27397) * [USHIFT-301](https://issues.redhat.com/browse/USHIFT-301): microshift: skip sig-operator tests [#27369](https://github.com/openshift/origin/pull/27369) * [USHIFT-343](https://issues.redhat.com/browse/USHIFT-343): MicroShift: skip sig-api-machinery tests [#27410](https://github.com/openshift/origin/pull/27410) * Remove test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#27391](https://github.com/openshift/origin/pull/27391) * [Bug 1933144](https://bugzilla.redhat.com/show_bug.cgi?id=1933144): Bump k8s to include c83b5d076f5 [#27380](https://github.com/openshift/origin/pull/27380) * Check version when discovery client [#27432](https://github.com/openshift/origin/pull/27432) * [USHIFT-285](https://issues.redhat.com/browse/USHIFT-285): MicroShift: allow CLI creation without OpenShift APIs [#27358](https://github.com/openshift/origin/pull/27358) * sig-api-machinery: remove project from authenticated browser APIServe… [#27333](https://github.com/openshift/origin/pull/27333) * Bump api-requests for console-operator on vsphere [#27431](https://github.com/openshift/origin/pull/27431) * [USHIFT-353](https://issues.redhat.com/browse/USHIFT-353): MicroShift: skip sig-installer tests [#27409](https://github.com/openshift/origin/pull/27409) * make runonce-ldapsearch pod name unique [#27426](https://github.com/openshift/origin/pull/27426) * [OCPBUGS-1265](https://issues.redhat.com/browse/OCPBUGS-1265): test/extended/prometheus: Consider telemeterClient.enabled [#27422](https://github.com/openshift/origin/pull/27422) * Fix double disruption testing and values for most backends in intervals chart and bigquery. [#27415](https://github.com/openshift/origin/pull/27415) * add retry for checkLADPConn [#27424](https://github.com/openshift/origin/pull/27424) * e2e/cli: Migrate completions, whoami and projects tests to go [#27371](https://github.com/openshift/origin/pull/27371) * Enable ServiceInternalTrafficPolicy tests in OVNK [#27043](https://github.com/openshift/origin/pull/27043) * [OCPBUGS-967](https://issues.redhat.com/browse/OCPBUGS-967): temporarily disable IngressClass test, which is changed in upstream in 1.25 [#27417](https://github.com/openshift/origin/pull/27417) * Add a test case to find job name/cluster version mismatches [#27413](https://github.com/openshift/origin/pull/27413) * upkeep: updated data set for 4.12 [#27420](https://github.com/openshift/origin/pull/27420) * [OCPBUGS-1237](https://issues.redhat.com/browse/OCPBUGS-1237): Fix s2i ruby test that relys on rack [#27419](https://github.com/openshift/origin/pull/27419) * Address exceeded maximum resolution of 11,000 points per timeseries [#27384](https://github.com/openshift/origin/pull/27384) * [OCPBUGS-587](https://issues.redhat.com/browse/OCPBUGS-587): Temporarily flake FailedToUpdateEndpointSlices [#27418](https://github.com/openshift/origin/pull/27418) * Ignore the "InsufficientInstanceCapacity" patholocial event [#27385](https://github.com/openshift/origin/pull/27385) * Automatically skip tests with apigroups which are not served [#27406](https://github.com/openshift/origin/pull/27406) * Label tests with openshift crafted API groups [#27387](https://github.com/openshift/origin/pull/27387) * skip route-controller-manager scaling events in build testsuite [#27394](https://github.com/openshift/origin/pull/27394) * Remove flake for 40% Secret/ConfigMap growth test. [#27381](https://github.com/openshift/origin/pull/27381) * [Bug 2100091](https://bugzilla.redhat.com/show_bug.cgi?id=2100091): Ignore FailedCreatePodSandBox events for garbage collector tests [#27270](https://github.com/openshift/origin/pull/27270) * Fix upgrade dry-run. [#27388](https://github.com/openshift/origin/pull/27388) * Update etcd tests with k8s 1.25 data [#27396](https://github.com/openshift/origin/pull/27396) * Update etcd tests with k8s data [#27393](https://github.com/openshift/origin/pull/27393) * Instead of returning errors when there is no etcd operator, just return static values for etcd metadata [#27342](https://github.com/openshift/origin/pull/27342) * Test baremetal deployment without provisioning network [#26676](https://github.com/openshift/origin/pull/26676) * Ensures operators use external cloud provider [#27349](https://github.com/openshift/origin/pull/27349) * [Bug 2098053](https://bugzilla.redhat.com/show_bug.cgi?id=2098053): Re-revert "Add networking test for invalid external gateway" [#27277](https://github.com/openshift/origin/pull/27277) * Separate out pathological event test for error updating endpoint slices [#27377](https://github.com/openshift/origin/pull/27377) * Revert "Label tests with openshift crafted API groups (round 3)" [#27378](https://github.com/openshift/origin/pull/27378) * Skip etcd scaling test for metal and vsphere platforms [#27375](https://github.com/openshift/origin/pull/27375) * Test we don't see substantial Secret/ConfigMap growth during upgrade. [#27354](https://github.com/openshift/origin/pull/27354) * Add ovnkube-node pods in the interval chart for ingress [#27372](https://github.com/openshift/origin/pull/27372) * update service load balancer test to gracefully roll out [#27180](https://github.com/openshift/origin/pull/27180) * EgressIP: Enable EgressIP tests for OpenStack [#27363](https://github.com/openshift/origin/pull/27363) * Label tests with openshift crafted API groups (round 3) [#27368](https://github.com/openshift/origin/pull/27368) * Suppress failures if certain firing alerts happened with related event [#27304](https://github.com/openshift/origin/pull/27304) * [Bug 2095623](https://bugzilla.redhat.com/show_bug.cgi?id=2095623): Revert "Disable azure-file tests" [#27259](https://github.com/openshift/origin/pull/27259) * job names: exclude text before `e2e` for both platform and network tests [#27373](https://github.com/openshift/origin/pull/27373) * upkeep: updated synthetic tests historical data for alerts and disruption [#27364](https://github.com/openshift/origin/pull/27364) * Update job name tests for hard failure cases [#27362](https://github.com/openshift/origin/pull/27362) * Label tests with openshift crafted API groups (round 1) [#27355](https://github.com/openshift/origin/pull/27355) * Add required pod security admission annotations into cmd/namespace [#27357](https://github.com/openshift/origin/pull/27357) * [Bug 2110503](https://bugzilla.redhat.com/show_bug.cgi?id=2110503): EgressIP: Probes and check tcpdump logs should succeed eventually [#27318](https://github.com/openshift/origin/pull/27318) * test/extended/util/disruption: Remove stale p95 references [#27351](https://github.com/openshift/origin/pull/27351) * display UTC time for timeline charts [#27348](https://github.com/openshift/origin/pull/27348) * networking/acl: live-retrieve the NS instead of f.Namespace [#27347](https://github.com/openshift/origin/pull/27347) * Consider Prometheus maximum points in a time series for alert tests [#27319](https://github.com/openshift/origin/pull/27319) * Tune watch limits for operators [#27281](https://github.com/openshift/origin/pull/27281) * allow techpreviewnoupgrade alert when testing techpreview [#27343](https://github.com/openshift/origin/pull/27343) * Ignore repo name when looking for network type in job name [#27339](https://github.com/openshift/origin/pull/27339) * Use "plugin" for some nw isolation test case names [#27330](https://github.com/openshift/origin/pull/27330) * Revert "Revert 'bump o/k for the fixed scheduling tests'"; layer fix on top [#27332](https://github.com/openshift/origin/pull/27332) * Update authenticated users RBAC e2e test [#27326](https://github.com/openshift/origin/pull/27326) * OWNERS_ALIASES: add me as a metal platform lead [#27337](https://github.com/openshift/origin/pull/27337) * Add Jan as image approver, remove Ravi and Clayton [#27331](https://github.com/openshift/origin/pull/27331) * [Bug 2114506](https://bugzilla.redhat.com/show_bug.cgi?id=2114506): test/extended/olm: Handle unset enabledCapabilities in marketplaceEnabled [#27336](https://github.com/openshift/origin/pull/27336) * Convert kubelet logs into monitor events for timelines [#27299](https://github.com/openshift/origin/pull/27299) * Revert "bump o/k for the fixed scheduling tests" [#27328](https://github.com/openshift/origin/pull/27328) * etcd vertical scaling test: add verbose timeout error messages and bump machine provisioning timeout for Azure [#27322](https://github.com/openshift/origin/pull/27322) * remove CLI.SetupNamespace() in favour of CLI.SetupProject() [#27325](https://github.com/openshift/origin/pull/27325) * Increase API requests limit for monitoring operator on openstack [#27324](https://github.com/openshift/origin/pull/27324) * bump o/k for the fixed scheduling tests [#27323](https://github.com/openshift/origin/pull/27323) * Separate out test for SamplesImagestreamImportFailing alarm [#27314](https://github.com/openshift/origin/pull/27314) * Fix same test name being used twice for pods on different nodes check. [#27315](https://github.com/openshift/origin/pull/27315) * etcd storage tests: work with dynamic namespace names [#27295](https://github.com/openshift/origin/pull/27295) * Add etcd vertical scaling test." [#27294](https://github.com/openshift/origin/pull/27294) * Add a new spyglass chart for image-registry, console, oauth [#27297](https://github.com/openshift/origin/pull/27297) * [Bug 2098194](https://bugzilla.redhat.com/show_bug.cgi?id=2098194): set sampleErr to bodyReadErr [#27260](https://github.com/openshift/origin/pull/27260) * Fixes OVN ACL audit log parsing [#27312](https://github.com/openshift/origin/pull/27312) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): pkg/monitor: wait for Prometheus sidecars to be ready [#27224](https://github.com/openshift/origin/pull/27224) * Add test that checks CI job name matches platform and network type [#27311](https://github.com/openshift/origin/pull/27311) * examples: drop OCP 3 library paths [#27266](https://github.com/openshift/origin/pull/27266) * Revert "Enable EgressIP tests for internal targets" [#27307](https://github.com/openshift/origin/pull/27307) * fix(olm-test): skip test if marketplace is not enabled [#27302](https://github.com/openshift/origin/pull/27302) * [Bug 2089966](https://bugzilla.redhat.com/show_bug.cgi?id=2089966): use multi-arch ldap and multicast test images [#27169](https://github.com/openshift/origin/pull/27169) * Revert "Bypass tests failing due to metal image rebuild on RHEL9" [#27288](https://github.com/openshift/origin/pull/27288) * Update to go 1.18 [#27253](https://github.com/openshift/origin/pull/27253) * separate interval gathering from interval calculation [#27298](https://github.com/openshift/origin/pull/27298) * Make margin wider to see more in spyglass charts [#27061](https://github.com/openshift/origin/pull/27061) * [Bug 2098096](https://bugzilla.redhat.com/show_bug.cgi?id=2098096): Enable EgressIP tests for internal targets [#27262](https://github.com/openshift/origin/pull/27262) * test/extended/prometheus: clean alert exceptions [#27211](https://github.com/openshift/origin/pull/27211) * test: allow -f to match tests for any test suite (redux) [#27096](https://github.com/openshift/origin/pull/27096) * BUG 2067323: test/extended/router: Drop host lookup for gRPC HTTP/2 h2spec tests [#27274](https://github.com/openshift/origin/pull/27274) * [Bug 2097297](https://bugzilla.redhat.com/show_bug.cgi?id=2097297): Show DNS lookup sampler problems on the disruption intervals chart. [#27261](https://github.com/openshift/origin/pull/27261) * [Bug 2094342](https://bugzilla.redhat.com/show_bug.cgi?id=2094342): bump cluster-capi-operator apirequests upper bound to 50 [#27225](https://github.com/openshift/origin/pull/27225) * Add Ravi and Abu as image approvers [#27282](https://github.com/openshift/origin/pull/27282) * Remove etcd vertical scaling test. [#27280](https://github.com/openshift/origin/pull/27280) * make a new category of pod sandbox failure [#27247](https://github.com/openshift/origin/pull/27247) * [Bug 2099698](https://bugzilla.redhat.com/show_bug.cgi?id=2099698): revert: no longer needed logic for rt kernel [#27264](https://github.com/openshift/origin/pull/27264) * Bypass tests failing due to metal image rebuild on RHEL9 [#27283](https://github.com/openshift/origin/pull/27283) * [Bug 2098053](https://bugzilla.redhat.com/show_bug.cgi?id=2098053): Re-revert "Add networking test for invalid external gateway" [#27273](https://github.com/openshift/origin/pull/27273) * [Bug 2098053](https://bugzilla.redhat.com/show_bug.cgi?id=2098053): Re-revert "Add networking test for invalid external gateway" [#26985](https://github.com/openshift/origin/pull/26985) * [Bug 2100439](https://bugzilla.redhat.com/show_bug.cgi?id=2100439): Enable GCP PD in-tree tests [#27272](https://github.com/openshift/origin/pull/27272) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): AUTH-133: test/extended/security/scc: comply to pod security admission [#27269](https://github.com/openshift/origin/pull/27269) * [Bug 2093122](https://bugzilla.redhat.com/show_bug.cgi?id=2093122): synthetictests: Event struct's Related field is optional [#27208](https://github.com/openshift/origin/pull/27208) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): authorization: add a test checking that the restricted-v2 SCC mutates securityContext to match restricted PSa [#27257](https://github.com/openshift/origin/pull/27257) * [Bug 2098095](https://bugzilla.redhat.com/show_bug.cgi?id=2098095): EgressIP tests: Use OpenShift API to retrieve CloudPrivateIPConfigs and EgressIPs [#27243](https://github.com/openshift/origin/pull/27243) * [Bug 2099611](https://bugzilla.redhat.com/show_bug.cgi?id=2099611): Increase etcd-operator watch channels upperbound for BareMetal Platform [#27263](https://github.com/openshift/origin/pull/27263) * [Bug 2098094](https://bugzilla.redhat.com/show_bug.cgi?id=2098094): EgressIP test: Remove print statement on test failure [#27191](https://github.com/openshift/origin/pull/27191) * [Bug 2093339](https://bugzilla.redhat.com/show_bug.cgi?id=2093339): move provisioning test to permanent disablement, since this is not yet officially supported [#27267](https://github.com/openshift/origin/pull/27267) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): Re-enable tests [#27258](https://github.com/openshift/origin/pull/27258) * [Bug 2097713](https://bugzilla.redhat.com/show_bug.cgi?id=2097713): Extend the allowance for etcdHighNumberOfLeaderChanges. [#27238](https://github.com/openshift/origin/pull/27238) * [Bug 2097684](https://bugzilla.redhat.com/show_bug.cgi?id=2097684): Nutanix provider for e2e testing [#27102](https://github.com/openshift/origin/pull/27102) * Add David Peraza as approver on samples test content [#27241](https://github.com/openshift/origin/pull/27241) * [Bug 2093992](https://bugzilla.redhat.com/show_bug.cgi?id=2093992): Bump timeout for cvo ugprade check to 10 minutes for Baremetal jobs [#27254](https://github.com/openshift/origin/pull/27254) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): update kube to v1.24.0 [#27244](https://github.com/openshift/origin/pull/27244) * [Bug 2097297](https://bugzilla.redhat.com/show_bug.cgi?id=2097297): Don't consider DNS lookup failure disruption [#27250](https://github.com/openshift/origin/pull/27250) * [Bug 2093051](https://bugzilla.redhat.com/show_bug.cgi?id=2093051): use the node update finished as a backup completion time for OSStaged [#27206](https://github.com/openshift/origin/pull/27206) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): Extend time for kube rebase [#27252](https://github.com/openshift/origin/pull/27252) * [Bug 2097009](https://bugzilla.redhat.com/show_bug.cgi?id=2097009): Run must-gather tests in later to reduce resource contention [#27249](https://github.com/openshift/origin/pull/27249) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): update samples for 4.11 [#27234](https://github.com/openshift/origin/pull/27234) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): Report late requests verification: Fix for Hypershift [#27220](https://github.com/openshift/origin/pull/27220) * [Bug 2094919](https://bugzilla.redhat.com/show_bug.cgi?id=2094919): Skip etcd vertical scaling test on vsphere [#27236](https://github.com/openshift/origin/pull/27236) * [Bug 2092961](https://bugzilla.redhat.com/show_bug.cgi?id=2092961): Use http for network endpoint test. [#27217](https://github.com/openshift/origin/pull/27217) * [Bug 2084361](https://bugzilla.redhat.com/show_bug.cgi?id=2084361): Print error msg before os.Exit() [#27230](https://github.com/openshift/origin/pull/27230) * [Bug 2093049](https://bugzilla.redhat.com/show_bug.cgi?id=2093049): test/extended/networking: fix [pod sysctls should not affect node] to use known host interfaces [#27221](https://github.com/openshift/origin/pull/27221) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): explicit timeout for the etcd scaling test [#27216](https://github.com/openshift/origin/pull/27216) * revert 1.24 tests to get back to work [#27233](https://github.com/openshift/origin/pull/27233) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): update kube to v1.24.0 [#27181](https://github.com/openshift/origin/pull/27181) * Revert "Bug 2079679: pkg/monitor: wait for Prometheus sidecars to be ready" [#27223](https://github.com/openshift/origin/pull/27223) * [Bug 2091110](https://bugzilla.redhat.com/show_bug.cgi?id=2091110): Skip ErrImagePull for expected failures [#27202](https://github.com/openshift/origin/pull/27202) * allow terminating pods to be ready=false [#27212](https://github.com/openshift/origin/pull/27212) * Revert "Bug 2093049: test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces" [#27219](https://github.com/openshift/origin/pull/27219) * [Bug 2092961](https://bugzilla.redhat.com/show_bug.cgi?id=2092961): Flake almost all ci cluster to external svc disruption. [#27210](https://github.com/openshift/origin/pull/27210) * [Bug 2093049](https://bugzilla.redhat.com/show_bug.cgi?id=2093049): test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces [#27203](https://github.com/openshift/origin/pull/27203) * [Bug 2093234](https://bugzilla.redhat.com/show_bug.cgi?id=2093234): Add regex filter and intervals duration to e2e-charts [#27186](https://github.com/openshift/origin/pull/27186) * [Bug 2093046](https://bugzilla.redhat.com/show_bug.cgi?id=2093046): priority class: add exception for must-gather pending bug fix [#27204](https://github.com/openshift/origin/pull/27204) * [Bug 2081732](https://bugzilla.redhat.com/show_bug.cgi?id=2081732): remove incorrect namespace check in static pod test [#27195](https://github.com/openshift/origin/pull/27195) * [Bug 2092961](https://bugzilla.redhat.com/show_bug.cgi?id=2092961): Add disruption test to an external service, not cluster under test. [#27179](https://github.com/openshift/origin/pull/27179) * [Bug 2091547](https://bugzilla.redhat.com/show_bug.cgi?id=2091547): Skip internet connection test if we use a proxy [#27093](https://github.com/openshift/origin/pull/27093) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): pkg/monitor: wait for Prometheus sidecars to be ready [#27201](https://github.com/openshift/origin/pull/27201) * [Bug 2091067](https://bugzilla.redhat.com/show_bug.cgi?id=2091067): EgressIP: Make tests retry on API timeout errors [#27185](https://github.com/openshift/origin/pull/27185) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): report late request (broken LB) for the external client [#27129](https://github.com/openshift/origin/pull/27129) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): brings back the etcd scaling test [#27176](https://github.com/openshift/origin/pull/27176) * [Bug 2091086](https://bugzilla.redhat.com/show_bug.cgi?id=2091086): test/extended/cli/explain: Include OperatorHub CRD when 'marketplace' is enabled [#27188](https://github.com/openshift/origin/pull/27188) * rename intervals to timelines to be self-explanatory [#27182](https://github.com/openshift/origin/pull/27182) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): label project-created namespaces to not sync PodSecurity labels [#27177](https://github.com/openshift/origin/pull/27177) * wait for kube-apiserver to settle after modifying network configuration [#27193](https://github.com/openshift/origin/pull/27193) * [Bug 1992596](https://bugzilla.redhat.com/show_bug.cgi?id=1992596): move help.sh to golang-based e2e [#27190](https://github.com/openshift/origin/pull/27190) * [Bug 2091086](https://bugzilla.redhat.com/show_bug.cgi?id=2091086): cli: don't insist on metal3 CRDs being present when cluster capabilities are None [#26998](https://github.com/openshift/origin/pull/26998) * restrict the per-namespace invariant alert check [#27184](https://github.com/openshift/origin/pull/27184) * [Bug 2090692](https://bugzilla.redhat.com/show_bug.cgi?id=2090692): slightly loosen oc exec help test [#27183](https://github.com/openshift/origin/pull/27183) * Updating openshift-enterprise-tests images to be consistent with ART [#27139](https://github.com/openshift/origin/pull/27139) * allow up to two DNS check pods to be waiting [#27175](https://github.com/openshift/origin/pull/27175) * [Bug 2086092](https://bugzilla.redhat.com/show_bug.cgi?id=2086092): skip tests to facilitate rebase [#27178](https://github.com/openshift/origin/pull/27178) * [Bug 2081732](https://bugzilla.redhat.com/show_bug.cgi?id=2081732): Static pod test error [#27160](https://github.com/openshift/origin/pull/27160) * Revert "Bug 2089831: Temporarily disable telemetry token test." [#27168](https://github.com/openshift/origin/pull/27168) * add per-namespace tests for kubepodnotready alert failures [#27151](https://github.com/openshift/origin/pull/27151) * remove the etcd vertical scaling test [#27174](https://github.com/openshift/origin/pull/27174) * [Bug 2089276](https://bugzilla.redhat.com/show_bug.cgi?id=2089276): Detect and use the packet capture interface for EgessIP tests. [#27164](https://github.com/openshift/origin/pull/27164) * remove test: 'etcd is able to vertically scale up and down with a single node' [#27170](https://github.com/openshift/origin/pull/27170) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): bump o/kube so that test namespaces aren't PSa label synced [#27173](https://github.com/openshift/origin/pull/27173) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): special configuration on barematal platform for the etcd vertical test is required [#27140](https://github.com/openshift/origin/pull/27140) * don't trigger single second disruption on contiguous disruption [#27161](https://github.com/openshift/origin/pull/27161) * [Bug 2089831](https://bugzilla.redhat.com/show_bug.cgi?id=2089831): Temporarily disable telemetry token test. [#27165](https://github.com/openshift/origin/pull/27165) * BZ2088533: Add subresource.status check exceptions for techpreview jobs [#27156](https://github.com/openshift/origin/pull/27156) * add pod graceful termination to pod lifecycle [#27153](https://github.com/openshift/origin/pull/27153) * [Bug 2081732](https://bugzilla.redhat.com/show_bug.cgi?id=2081732): Dump debug message whenever static pod test fails [#27143](https://github.com/openshift/origin/pull/27143) * [Bug 2086086](https://bugzilla.redhat.com/show_bug.cgi?id=2086086): image_ecosystem: remove deprecated imagestreams [#27133](https://github.com/openshift/origin/pull/27133) * [Bug 2086519](https://bugzilla.redhat.com/show_bug.cgi?id=2086519): Auth-133: test/extended/util: comply exec pod to restricted pod security profile [#27152](https://github.com/openshift/origin/pull/27152) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): makes the etcd invariant test work on dualstack platform [#27148](https://github.com/openshift/origin/pull/27148) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): ExternalControlPlaneTopology: Skip etcd master endpoint verification [#27149](https://github.com/openshift/origin/pull/27149) * BZ2087992: Add regex matching, regex inverse matching, and default end date option for intervals [#27117](https://github.com/openshift/origin/pull/27117) * BZ 2087504: Add Early test to check for CRD subresource.status [#26954](https://github.com/openshift/origin/pull/26954) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): the machine API can be unavailable resulting in a 404 or an empty list [#27147](https://github.com/openshift/origin/pull/27147) * EgressIP downstream tests for OVN Kubernetes [#26999](https://github.com/openshift/origin/pull/26999) * Add user coreydaley as an approver [#27144](https://github.com/openshift/origin/pull/27144) * handle cases where containers restart [#27137](https://github.com/openshift/origin/pull/27137) * commenting ipv6 for sysctls [#27142](https://github.com/openshift/origin/pull/27142) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): ensure number of voting members in the cm matches the number of master machines [#27141](https://github.com/openshift/origin/pull/27141) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): the etcd vertical scaling feature misses e2e tests [#27127](https://github.com/openshift/origin/pull/27127) * [Bug 2084361](https://bugzilla.redhat.com/show_bug.cgi?id=2084361): Add some debugging information for mysterious exit 2 errors [#27136](https://github.com/openshift/origin/pull/27136) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): adds new test to the API monitor [#27118](https://github.com/openshift/origin/pull/27118) * update alert and disruption limits [#27130](https://github.com/openshift/origin/pull/27130) * [Bug 2085997](https://bugzilla.redhat.com/show_bug.cgi?id=2085997): gives the backend monitoring an identity [#27134](https://github.com/openshift/origin/pull/27134) * always allow at least one second for disruption [#27131](https://github.com/openshift/origin/pull/27131) * [Bug 2080007](https://bugzilla.redhat.com/show_bug.cgi?id=2080007): unrevert external ip configuration e2e networking tests [#27078](https://github.com/openshift/origin/pull/27078) * [Bug 2083941](https://bugzilla.redhat.com/show_bug.cgi?id=2083941): feat: add fuzzy match on micro release [#27123](https://github.com/openshift/origin/pull/27123) * add test to catch single second disruption patterns [#27132](https://github.com/openshift/origin/pull/27132) * [Bug 2082538](https://bugzilla.redhat.com/show_bug.cgi?id=2082538): bump cluster-capi-operator apirequests upper bound for GCP And Azure [#27108](https://github.com/openshift/origin/pull/27108) * Revert "moves TestScalingUpAndDownSingleNode from cluster-etcd-operator" [#27126](https://github.com/openshift/origin/pull/27126) * Add debugging message for static pod test [#27111](https://github.com/openshift/origin/pull/27111) * Bump net.ipv6.neigh.IFNAME.retrans_time_ms for Multiarch [#27119](https://github.com/openshift/origin/pull/27119) * Don't hardcode the SA token audience when requesting one [#27120](https://github.com/openshift/origin/pull/27120) * timeline command, container exit fix, key resources by uid, and use reflector [#27114](https://github.com/openshift/origin/pull/27114) * [NE-883](https://issues.redhat.com/browse/NE-883): test/extended/router: Add test for spec.subdomain [#27030](https://github.com/openshift/origin/pull/27030) * moves TestScalingUpAndDownSingleNode from cluster-etcd-operator [#26917](https://github.com/openshift/origin/pull/26917) * Add config for golangci-lint no-sprintf-host-port [#27116](https://github.com/openshift/origin/pull/27116) * Correct pod timing [#27112](https://github.com/openshift/origin/pull/27112) * [Bug 2080687](https://bugzilla.redhat.com/show_bug.cgi?id=2080687): request prometheus service account token [#27100](https://github.com/openshift/origin/pull/27100) * Fix request token ic cli/admin tests [#27113](https://github.com/openshift/origin/pull/27113) * [Bug 2081012](https://bugzilla.redhat.com/show_bug.cgi?id=2081012): Don't wait for sa token [#27104](https://github.com/openshift/origin/pull/27104) * prometheus helper: add helper to retrieve prometheus query token [#27107](https://github.com/openshift/origin/pull/27107) * [Bug 2080679](https://bugzilla.redhat.com/show_bug.cgi?id=2080679): fix oc related test to land k8s 1.24 [#27099](https://github.com/openshift/origin/pull/27099) * [rebase 1.24] disable tests with time limit to facilitate rebase [#27086](https://github.com/openshift/origin/pull/27086) * [Bug 2082239](https://bugzilla.redhat.com/show_bug.cgi?id=2082239): Bump net.ipv6.neigh.IFNAME from 30005 to 30010 for Multiarch [#27101](https://github.com/openshift/origin/pull/27101) * test/extended/util/openshift/clusterversionoperator/adminack: Accept MultipleReasons [#27110](https://github.com/openshift/origin/pull/27110) * make it easy to create pod interval tests [#27092](https://github.com/openshift/origin/pull/27092) * [Bug 2080681](https://bugzilla.redhat.com/show_bug.cgi?id=2080681): Request new token instead of using node-bootstrapper token [#27098](https://github.com/openshift/origin/pull/27098) * Revert "NE-626: Add DNS CI coverage for golang and glibc resolver libraries" [#27103](https://github.com/openshift/origin/pull/27103) * make the pod ip check a controller [#27097](https://github.com/openshift/origin/pull/27097) * [NE-626](https://issues.redhat.com/browse/NE-626): Add DNS CI coverage for golang and glibc resolver libraries [#26957](https://github.com/openshift/origin/pull/26957) * Revert "test: allow -f to match tests for any test suite" [#27095](https://github.com/openshift/origin/pull/27095) * [MON-2148](https://issues.redhat.com/browse/MON-2148): Handle 401 code for prometheus api route [#27031](https://github.com/openshift/origin/pull/27031) * test: allow -f to match tests for any test suite [#27091](https://github.com/openshift/origin/pull/27091) * router: wait for "use scc restricted" SAR before pod creation [#27084](https://github.com/openshift/origin/pull/27084) * Remove non-functional gu workload tests. [#27044](https://github.com/openshift/origin/pull/27044) * test/extended/prometheus/image_pulls: New "should be fast" test-case [#27067](https://github.com/openshift/origin/pull/27067) * give multi-arch more time to complete upgrades to clean up signal [#27085](https://github.com/openshift/origin/pull/27085) * skip 'should not see excessive Back-off restarting failed containers' for e2e tests [#27087](https://github.com/openshift/origin/pull/27087) * haproxy needs to request privilege escalation in order to work [#27080](https://github.com/openshift/origin/pull/27080) * updates "managed cluster should report ready nodes the entire duration of the test run" [#27077](https://github.com/openshift/origin/pull/27077) * skip etcd quorum probes failures when etcd revision changes [#27072](https://github.com/openshift/origin/pull/27072) * don't wait for SA token secrets [#27081](https://github.com/openshift/origin/pull/27081) * Revert "Add e2e tests for ExternalIP Policy and AutoAssignCIDRs" [#27075](https://github.com/openshift/origin/pull/27075) * Add restricted-v2 to the default RBAC rules for authenticated users [#27071](https://github.com/openshift/origin/pull/27071) * Increase determinism when searching for prom service secret token [#27073](https://github.com/openshift/origin/pull/27073) * improves etcdRevisionChangeAllowance calculates the number of etcd's operator rollouts [#27070](https://github.com/openshift/origin/pull/27070) * Include timestamp when reporting observed ReusedPodIP events. [#27074](https://github.com/openshift/origin/pull/27074) * track pod IP re-use [#27062](https://github.com/openshift/origin/pull/27062) * hack/verify-generated: Replace --quiet with --exit-code [#27060](https://github.com/openshift/origin/pull/27060) * [Bug 1992596](https://bugzilla.redhat.com/show_bug.cgi?id=1992596): e2e/cli: Migrate create.sh to Go tests [#27049](https://github.com/openshift/origin/pull/27049) * force completes upgrade failure if operator failure [#27058](https://github.com/openshift/origin/pull/27058) * [Bug 2078528](https://bugzilla.redhat.com/show_bug.cgi?id=2078528): bump cluster-node-tuning-operator apirequests upper bound for OpenStack [#27052](https://github.com/openshift/origin/pull/27052) * handle cases where the DNS querier pod isn't yet running [#27056](https://github.com/openshift/origin/pull/27056) * Add e2e tests for ExternalIP Policy and AutoAssignCIDRs [#26894](https://github.com/openshift/origin/pull/26894) * tuning-cni: basic tests [#26953](https://github.com/openshift/origin/pull/26953) * Sysctl: validate that setting a pod sysctl does not affect node and other pods [#26940](https://github.com/openshift/origin/pull/26940) * the 'should be scheduled on different nodes' were only fixed in 4.11 and later [#27053](https://github.com/openshift/origin/pull/27053) * Separate out 'Back-off restarting failed container' from pathological test [#27047](https://github.com/openshift/origin/pull/27047) * Revert "Skip newly enabled networkpolicy tests on IPv6" [#27045](https://github.com/openshift/origin/pull/27045) * Flake pod sandbox errors pinging container registry on azure. [#26964](https://github.com/openshift/origin/pull/26964) * Ignore loki NetworkNotReady repeating events. [#27051](https://github.com/openshift/origin/pull/27051) * [Bug 2030972](https://bugzilla.redhat.com/show_bug.cgi?id=2030972): test/extended/util/openshift/clusterversionoperator: Survive API hiccups [#27041](https://github.com/openshift/origin/pull/27041) * [Bug 2077457](https://bugzilla.redhat.com/show_bug.cgi?id=2077457): Skip BeforeEach as well for the skipped HAProxy config manager test [#27034](https://github.com/openshift/origin/pull/27034) * synthetic: cloud api quota synthetic test should always be present [#27042](https://github.com/openshift/origin/pull/27042) * Remove fixed clusterIP service for ipv6 contexts [#26895](https://github.com/openshift/origin/pull/26895) * loosen SCC capabilities check to allow stricter caps [#27024](https://github.com/openshift/origin/pull/27024) * test/dns: add the bits to make the Restricted PodSecurityPolicy happy [#27035](https://github.com/openshift/origin/pull/27035) * Disable FIPS disabled serving routes test on BM [#27033](https://github.com/openshift/origin/pull/27033) * test/e2e/upgrade: Use PATCH instead of POST for ClusterVersion spec updates [#27023](https://github.com/openshift/origin/pull/27023) * Sysctl tests: pod with sysctls not on whitelist should not start [#26937](https://github.com/openshift/origin/pull/26937) * [Bug 2075584](https://bugzilla.redhat.com/show_bug.cgi?id=2075584): Use substring match instead of exact match [#27028](https://github.com/openshift/origin/pull/27028) * Switch to groupified APIs [#27025](https://github.com/openshift/origin/pull/27025) * Dump imagestreams and buildconfigs on build imagechange trigger test failure [#27019](https://github.com/openshift/origin/pull/27019) * Best matcher single node OVN [#26929](https://github.com/openshift/origin/pull/26929) * : Separate pod network creation failure from others in sandbox creation… [#27020](https://github.com/openshift/origin/pull/27020) * test/.../disruption: set pod security level centrally [#27017](https://github.com/openshift/origin/pull/27017) * Switch to groupified APIs [#27008](https://github.com/openshift/origin/pull/27008) * router: construct url with net.JoinHostPort [#27015](https://github.com/openshift/origin/pull/27015) * Add exception for etcd guard pod readiness probe error events [#27016](https://github.com/openshift/origin/pull/27016) * test/extended/*: set necessary pod security settings [#27014](https://github.com/openshift/origin/pull/27014) * getArchitecture: Fix to work with Hypershift [#27004](https://github.com/openshift/origin/pull/27004) * [Bug 2072171](https://bugzilla.redhat.com/show_bug.cgi?id=2072171): Reenable the implementation for basic egressfw e2e CI test [#26973](https://github.com/openshift/origin/pull/26973) * [MGMT-9440](https://issues.redhat.com/browse/MGMT-9440): Fix single node serial tests API crash [#26904](https://github.com/openshift/origin/pull/26904) * skip tests for etcd leaders when etcd revisions change a lot [#27009](https://github.com/openshift/origin/pull/27009) * Fix another issue with CVO upgrade ack timeout on metal. [#27001](https://github.com/openshift/origin/pull/27001) * bump o/kube to get latest PSa test updates [#27012](https://github.com/openshift/origin/pull/27012) * [Bug 2031564](https://bugzilla.redhat.com/show_bug.cgi?id=2031564): Separate out test for 'RequiredInstallerResourcesMissing secrets' [#26936](https://github.com/openshift/origin/pull/26936) * [Bug 2060406](https://bugzilla.redhat.com/show_bug.cgi?id=2060406): bump apirequests upper bounds for GCP [#27002](https://github.com/openshift/origin/pull/27002) * [Bug 2072533](https://bugzilla.redhat.com/show_bug.cgi?id=2072533): synthetictests: skip "alert/Watchdog must have no gaps or changes" on SNO upgrades [#26976](https://github.com/openshift/origin/pull/26976) * [Bug 2074445](https://bugzilla.redhat.com/show_bug.cgi?id=2074445): exclude loki-promtail from duplicated events [#27006](https://github.com/openshift/origin/pull/27006) * Fix up one more optional capabilities new-app test [#27005](https://github.com/openshift/origin/pull/27005) * actually set default PSa labels if unset [#27000](https://github.com/openshift/origin/pull/27000) * util/client.go: add method to specify pod security admission level [#26938](https://github.com/openshift/origin/pull/26938) * Add test for validating related object references. [#26921](https://github.com/openshift/origin/pull/26921) * correct pathological event detection [#26994](https://github.com/openshift/origin/pull/26994) * prevent npe for old container status readiness [#26996](https://github.com/openshift/origin/pull/26996) * [Bug 2011895](https://bugzilla.redhat.com/show_bug.cgi?id=2011895): Add synthetic test for cloud API throttling [#26559](https://github.com/openshift/origin/pull/26559) * router: fix all uses of Sprintf to build host:port for a URL [#26983](https://github.com/openshift/origin/pull/26983) * prevent pending/firing alert overlap [#26968](https://github.com/openshift/origin/pull/26968) * Skip newly enabled networkpolicy tests on IPv6 [#26977](https://github.com/openshift/origin/pull/26977) * test: switch to testing CapBnd over CapInh [#26960](https://github.com/openshift/origin/pull/26960) * remove wait for samples imagestreams, no longer needed [#26992](https://github.com/openshift/origin/pull/26992) * [Bug 2066865](https://bugzilla.redhat.com/show_bug.cgi?id=2066865): bump openshift/kubernetes [#26969](https://github.com/openshift/origin/pull/26969) * test/extended: add/update OWNERS files for Prometheus [#26910](https://github.com/openshift/origin/pull/26910) * test/extended/prometheus: Remove SDN/OVN-K alert rules [#26687](https://github.com/openshift/origin/pull/26687) * Unrevert and fix for the HAProxy test [#26980](https://github.com/openshift/origin/pull/26980) * Bump timeout for CVO to ack the upgrade generation. [#26974](https://github.com/openshift/origin/pull/26974) * [Bug 2066457](https://bugzilla.redhat.com/show_bug.cgi?id=2066457): don't fail when a query returns warnings [#26984](https://github.com/openshift/origin/pull/26984) * [Bug 2072924](https://bugzilla.redhat.com/show_bug.cgi?id=2072924): increase the threshold on the number of telemetry series [#26988](https://github.com/openshift/origin/pull/26988) * Update limits [#26982](https://github.com/openshift/origin/pull/26982) * fix evaluation of deleted pods for pod sandbox test [#26978](https://github.com/openshift/origin/pull/26978) * Revert "Fix HAProxy tests on FIPS properly" [#26979](https://github.com/openshift/origin/pull/26979) * Revert "Add networking test for invalid external gateway" [#26975](https://github.com/openshift/origin/pull/26975) * Revert "Implementation for basic egressfw e2e CI test" [#26967](https://github.com/openshift/origin/pull/26967) * [Bug 2067323](https://bugzilla.redhat.com/show_bug.cgi?id=2067323): extended/test/router: omit DNS managed conditions for shards [#26949](https://github.com/openshift/origin/pull/26949) * Add networking test for invalid external gateway [#26883](https://github.com/openshift/origin/pull/26883) * [Bug 2060406](https://bugzilla.redhat.com/show_bug.cgi?id=2060406): test: bump apirequests upper bounds for VSphere and AWS single node [#26962](https://github.com/openshift/origin/pull/26962) * test: update synthetic test node restart count [#26948](https://github.com/openshift/origin/pull/26948) * bump: k8s.io/kubernetes [#26955](https://github.com/openshift/origin/pull/26955) * Ignore FailedCreatePodSandBox event that is expected to happen [#26966](https://github.com/openshift/origin/pull/26966) * add pod lifecycle intervals to separate pages [#26908](https://github.com/openshift/origin/pull/26908) * Add missing operators from the known operators list [#26963](https://github.com/openshift/origin/pull/26963) * [Bug 2047913](https://bugzilla.redhat.com/show_bug.cgi?id=2047913): Fix HAProxy tests on FIPS properly [#26803](https://github.com/openshift/origin/pull/26803) * Bump allowed watches for node-tuning-operator [#26944](https://github.com/openshift/origin/pull/26944) * Migrate tests away from using samples-operator provided imagestreams [#26913](https://github.com/openshift/origin/pull/26913) * Image registry redirect [#26920](https://github.com/openshift/origin/pull/26920) * [Bug 1996883](https://bugzilla.redhat.com/show_bug.cgi?id=1996883): increasing build config loglevel [#26958](https://github.com/openshift/origin/pull/26958) * Use ServerGroupResources instead deprecated ServerResources [#26956](https://github.com/openshift/origin/pull/26956) * Fix typo in OVN Kubernetes skipper [#26950](https://github.com/openshift/origin/pull/26950) * [Bug 1996883](https://bugzilla.redhat.com/show_bug.cgi?id=1996883): Increasing log level to support decrease in default buildah log level [#26941](https://github.com/openshift/origin/pull/26941) * Implementation for basic egressfw e2e CI test [#26934](https://github.com/openshift/origin/pull/26934) * Check token response error code [#26926](https://github.com/openshift/origin/pull/26926) * Clarify that the image mirroring requirement applies to conformance tests only [#26912](https://github.com/openshift/origin/pull/26912) * coarse serialization of storage tests [#26933](https://github.com/openshift/origin/pull/26933) * Revert "bump: k8s.io/kubernetes" [#26939](https://github.com/openshift/origin/pull/26939) * bump: k8s.io/kubernetes [#26935](https://github.com/openshift/origin/pull/26935) * Flake on FailedCreatePodSandbox if missing ovn readiness file. [#26932](https://github.com/openshift/origin/pull/26932) * Add pod securityContext sysctl whitelist tests [#26809](https://github.com/openshift/origin/pull/26809) * Revert "Implementation for basic egressfw e2e CI test" [#26931](https://github.com/openshift/origin/pull/26931) * Update where the canary test lists is retrieved from [#26930](https://github.com/openshift/origin/pull/26930) * Implementation for basic egressfw e2e CI test [#26865](https://github.com/openshift/origin/pull/26865) * Implementation for egress-router-cni e2e ci test [#26875](https://github.com/openshift/origin/pull/26875) * Attempted fix for missing monitor events. [#26862](https://github.com/openshift/origin/pull/26862) * [JKNS-267](https://issues.redhat.com/browse/JKNS-267): minimize jenkins e2es (pipeline strategy verification only) [#26914](https://github.com/openshift/origin/pull/26914) * Attempt multiple different token requests [#26916](https://github.com/openshift/origin/pull/26916) * Simplify 26907 [#26924](https://github.com/openshift/origin/pull/26924) * [Bug 2034688](https://bugzilla.redhat.com/show_bug.cgi?id=2034688): allow Prometheus/Thanos to return 401 or 403 when the request isn't authenticated [#26695](https://github.com/openshift/origin/pull/26695) * Migrate builds tests away from using sample imagestreams since samples will be optional [#26909](https://github.com/openshift/origin/pull/26909) * Update prometheus owners [#26911](https://github.com/openshift/origin/pull/26911) * Pod scheduling tests improve pod deployment identification [#26906](https://github.com/openshift/origin/pull/26906) * Add early test to check router pods are not on same node [#26899](https://github.com/openshift/origin/pull/26899) * Give each interval chart a title [#26896](https://github.com/openshift/origin/pull/26896) * Mark image pull from registry.redhat.io as flake to track but not fail [#26897](https://github.com/openshift/origin/pull/26897) * [Bug 1961233](https://bugzilla.redhat.com/show_bug.cgi?id=1961233): Add DNS availability upgrade test [#26795](https://github.com/openshift/origin/pull/26795) * Revert "Disable intree vsphere tests" [#26797](https://github.com/openshift/origin/pull/26797) * [Bug 2026063](https://bugzilla.redhat.com/show_bug.cgi?id=2026063): build-quota test: fix cgroupv2 parsing holes exposed by buildah upgrade [#26885](https://github.com/openshift/origin/pull/26885) * [Bug 2057990](https://bugzilla.redhat.com/show_bug.cgi?id=2057990): Add debug info for signature test [#26884](https://github.com/openshift/origin/pull/26884) * [MGMT-9440](https://issues.redhat.com/browse/MGMT-9440): Fix single node serial tests API crash. [#26868](https://github.com/openshift/origin/pull/26868) * [Bug 2060498](https://bugzilla.redhat.com/show_bug.cgi?id=2060498): only add failure when no event was found for the target revision [#26880](https://github.com/openshift/origin/pull/26880) * [Bug 2060406](https://bugzilla.redhat.com/show_bug.cgi?id=2060406): operators should not create watch channels very often: bump OpenStack monitoring operator [#26877](https://github.com/openshift/origin/pull/26877) * Use common threshold constant as other event tests [#26873](https://github.com/openshift/origin/pull/26873) * cleanup network policy ACL extended test [#26876](https://github.com/openshift/origin/pull/26876) * add text to the timelines when you hover [#26871](https://github.com/openshift/origin/pull/26871) * Make a test to specifically look for image pull backoff for registry.redhat.io [#26858](https://github.com/openshift/origin/pull/26858) * [Bug 2059299](https://bugzilla.redhat.com/show_bug.cgi?id=2059299): IBMCloud: Ignore CRB already exists [#26864](https://github.com/openshift/origin/pull/26864) * Switch to batch/v1 CronJob [#26867](https://github.com/openshift/origin/pull/26867) * [Bug 2059277](https://bugzilla.redhat.com/show_bug.cgi?id=2059277): images/tests: yum update python3-six to workaround ART issue [#26863](https://github.com/openshift/origin/pull/26863) * Increase scale test timeout to 30 minutes [#26861](https://github.com/openshift/origin/pull/26861) * Fix ovnkube-node readiness test to include successes. [#26860](https://github.com/openshift/origin/pull/26860) * Bz2054254 rearrange test cases [#26857](https://github.com/openshift/origin/pull/26857) * Set ovnkube-node readiness failure to flake for now. [#26855](https://github.com/openshift/origin/pull/26855) * Increase cluster-monitor-operator watch count threshold on single-node clusters [#26685](https://github.com/openshift/origin/pull/26685) * allow slow kubelet updates for static pods, but still fail if they never succeed [#26852](https://github.com/openshift/origin/pull/26852) * OWNERS: Declare Bugzilla component [#26368](https://github.com/openshift/origin/pull/26368) * vsphere is firing this alert/VSphereOpenshiftNodeHealthFail and it is hiding other alerts [#26850](https://github.com/openshift/origin/pull/26850) * Updating openshift-enterprise-tests images to be consistent with ART [#26804](https://github.com/openshift/origin/pull/26804) * update alert thresholds after extending static pod install duration [#26844](https://github.com/openshift/origin/pull/26844) * ip reconciler ignore [#26842](https://github.com/openshift/origin/pull/26842) * [Bug 2049117](https://bugzilla.redhat.com/show_bug.cgi?id=2049117): Reenable wait on worker deletion and increase serial test timeout [#26810](https://github.com/openshift/origin/pull/26810) * [Bug 2053582](https://bugzilla.redhat.com/show_bug.cgi?id=2053582): fail on static pod lifecycle failures [#26837](https://github.com/openshift/origin/pull/26837) * Allow a single test to override suite timeout [#26833](https://github.com/openshift/origin/pull/26833) * [Bug 2053312](https://bugzilla.redhat.com/show_bug.cgi?id=2053312): requestheader test must wait for authentication operator to settle after config update [#26834](https://github.com/openshift/origin/pull/26834) * [Bug 2053143](https://bugzilla.redhat.com/show_bug.cgi?id=2053143): allow inexact matches for disruption data [#26831](https://github.com/openshift/origin/pull/26831) * Break out test for OSUpdateStaged event with no OSUpdateStarted. [#26824](https://github.com/openshift/origin/pull/26824) * add job type key to the error we track for statistical jobs [#26823](https://github.com/openshift/origin/pull/26823) * baremetal: add test for preprovisioning images [#26780](https://github.com/openshift/origin/pull/26780) * [Bug 2045590](https://bugzilla.redhat.com/show_bug.cgi?id=2045590): Alibaba: enable init for alibabacloud provider [#26818](https://github.com/openshift/origin/pull/26818) * Revert "Flake failed sandboxes from bug in new guard pods" [#26817](https://github.com/openshift/origin/pull/26817) * Debug missing OSUpdateStarted events [#26798](https://github.com/openshift/origin/pull/26798) * Delete extra workers before running metal high availability test [#26813](https://github.com/openshift/origin/pull/26813) * images: update registry to 2.8.0-beta.1 [#26811](https://github.com/openshift/origin/pull/26811) * [Bug 2044824](https://bugzilla.redhat.com/show_bug.cgi?id=2044824): Update k8s vendoring [#26805](https://github.com/openshift/origin/pull/26805) * [Bug 2050345](https://bugzilla.redhat.com/show_bug.cgi?id=2050345): update p99 values for disruption and alerts [#26815](https://github.com/openshift/origin/pull/26815) * [Bug 2047911](https://bugzilla.redhat.com/show_bug.cgi?id=2047911): IBMCloud: Concurrent CRB create [#26806](https://github.com/openshift/origin/pull/26806) * Only run parallel tests in the canary job since it runs in parallel [#26812](https://github.com/openshift/origin/pull/26812) * Fix broken console disruption test. [#26808](https://github.com/openshift/origin/pull/26808) * Add baremetal high availability tests [#26569](https://github.com/openshift/origin/pull/26569) * [Bug 2047362](https://bugzilla.redhat.com/show_bug.cgi?id=2047362): Prometheus check targets endpoint [#26793](https://github.com/openshift/origin/pull/26793) * Verify Builds with CSI Volume Sources [#26791](https://github.com/openshift/origin/pull/26791) * [Bug 2047790](https://bugzilla.redhat.com/show_bug.cgi?id=2047790): Skip some HAProxy tests on FIPS [#26800](https://github.com/openshift/origin/pull/26800) * don't double report early alert failures [#26796](https://github.com/openshift/origin/pull/26796) * [Full changelog](https://github.com/openshift/origin/compare/09fc485e8f45a31245b9b576f35d5e16a4895945...893161e0291fbda0118cfb01ef2acc9fef8c60f2) ### [thanos](https://github.com/openshift/thanos/tree/2867a6b552eaddefd73aa979f13e95f6df338070) * [OCPBUGS-27100](https://issues.redhat.com/browse/OCPBUGS-27100): Bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to 0.44.0 [#137](https://github.com/openshift/thanos/pull/137) * [OCPBUGS-21135](https://issues.redhat.com/browse/OCPBUGS-21135): Bump golang.org/x/net to v0.17.0 [#126](https://github.com/openshift/thanos/pull/126) * [OCPBUGS-4276](https://issues.redhat.com/browse/OCPBUGS-4276): Update exporter-toolkit to 0.7.3 [#111](https://github.com/openshift/thanos/pull/111) * Updating thanos images to be consistent with ART [#101](https://github.com/openshift/thanos/pull/101) * Bump openshift/thanos to v0.28.1 [#91](https://github.com/openshift/thanos/pull/91) * Bump openshift/thanos to v0.28.0 [#90](https://github.com/openshift/thanos/pull/90) * OWNERS: Add Joao and myself, and move former team members to emeritus [#88](https://github.com/openshift/thanos/pull/88) * Bump openshift/thanos to v0.27.0 [#85](https://github.com/openshift/thanos/pull/85) * [Bug 2067877](https://bugzilla.redhat.com/show_bug.cgi?id=2067877): [bot] Bump openshift/thanos to v0.26.0 [#83](https://github.com/openshift/thanos/pull/83) * Bump openshift/thanos to v0.25.2 [#80](https://github.com/openshift/thanos/pull/80) * Bump openshift/thanos to v0.25.1 [#79](https://github.com/openshift/thanos/pull/79) * Bump openshift/thanos to v0.25.0 [#78](https://github.com/openshift/thanos/pull/78) * Bump openshift/thanos to v0.24.0 [#76](https://github.com/openshift/thanos/pull/76) * Updating thanos images to be consistent with ART [#77](https://github.com/openshift/thanos/pull/77) * [Full changelog](https://github.com/openshift/thanos/compare/ac17631943be205d4ea38ccfc8ef49db999b4e47...2867a6b552eaddefd73aa979f13e95f6df338070) ### [vsphere-cloud-controller-manager](https://github.com/openshift/cloud-provider-vsphere/tree/e170dce5c1fe5d3a025ccd8264e78c4c987b1d7a) * [OCPBUGS-21493](https://issues.redhat.com/browse/OCPBUGS-21493): Bump golang.org/x/net to v0.18.0 [#56](https://github.com/openshift/cloud-provider-vsphere/pull/56) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 13.10.2022 k8s 1.25 [#28](https://github.com/openshift/cloud-provider-vsphere/pull/28) * Updating ose-vsphere-cloud-controller-manager images to be consistent with ART [#25](https://github.com/openshift/cloud-provider-vsphere/pull/25) * fix .dockerignore to satisfy OCP specific requirements [#24](https://github.com/openshift/cloud-provider-vsphere/pull/24) * Add OCP specific exclusion to the .dockerignore [#23](https://github.com/openshift/cloud-provider-vsphere/pull/23) * Updating ose-vsphere-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-vsphere/pull/22) * Updating ose-vsphere-cloud-controller-manager images to be consistent with ART [#18](https://github.com/openshift/cloud-provider-vsphere/pull/18) * [Bug 2087042](https://bugzilla.redhat.com/show_bug.cgi?id=2087042): Rebase cloud-provider-vsphere 15.06.2022 [#20](https://github.com/openshift/cloud-provider-vsphere/pull/20) * [Full changelog](https://github.com/openshift/cloud-provider-vsphere/compare/f2bc9eb32e2f367af2b498a79e32c1dbb006eefd...e170dce5c1fe5d3a025ccd8264e78c4c987b1d7a) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/e4c0e103ddbf264387d6efb26b612a4b915d362a) * [OCPBUGS-20417](https://issues.redhat.com/browse/OCPBUGS-20417): syncer: fix nil pointer dereference in log message [#98](https://github.com/openshift/vmware-vsphere-csi-driver/pull/98) * [OCPBUGS-21552](https://issues.redhat.com/browse/OCPBUGS-21552): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#92](https://github.com/openshift/vmware-vsphere-csi-driver/pull/92) * [OCPBUGS-14312](https://issues.redhat.com/browse/OCPBUGS-14312): Update 4.12 against v2.7.1 [#81](https://github.com/openshift/vmware-vsphere-csi-driver/pull/81) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Add migrationDataStore field [#59](https://github.com/openshift/vmware-vsphere-csi-driver/pull/59) * [OCPBUGS-6936](https://issues.redhat.com/browse/OCPBUGS-6936): fix for nil user session (#1859) [#57](https://github.com/openshift/vmware-vsphere-csi-driver/pull/57) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#48](https://github.com/openshift/vmware-vsphere-csi-driver/pull/48) * Updating vmware-vsphere-syncer images to be consistent with ART [#47](https://github.com/openshift/vmware-vsphere-csi-driver/pull/47) * Rebase to v2.6.1 [#45](https://github.com/openshift/vmware-vsphere-csi-driver/pull/45) * UPSTREAM: <carry>: Remove .github files [#46](https://github.com/openshift/vmware-vsphere-csi-driver/pull/46) * [STOR-863](https://issues.redhat.com/browse/STOR-863): Rebase to v2.6.0 [#44](https://github.com/openshift/vmware-vsphere-csi-driver/pull/44) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#43](https://github.com/openshift/vmware-vsphere-csi-driver/pull/43) * Updating vmware-vsphere-syncer images to be consistent with ART [#42](https://github.com/openshift/vmware-vsphere-csi-driver/pull/42) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#41](https://github.com/openshift/vmware-vsphere-csi-driver/pull/41) * Updating vmware-vsphere-syncer images to be consistent with ART [#40](https://github.com/openshift/vmware-vsphere-csi-driver/pull/40) * [Bug 2074294](https://bugzilla.redhat.com/show_bug.cgi?id=2074294): UPSTREAM: 1706: Update golang.org/x/crypto for CVE-2022-27191 [#39](https://github.com/openshift/vmware-vsphere-csi-driver/pull/39) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#38](https://github.com/openshift/vmware-vsphere-csi-driver/pull/38) * Updating vmware-vsphere-syncer images to be consistent with ART [#37](https://github.com/openshift/vmware-vsphere-csi-driver/pull/37) * [Bug 2071019](https://bugzilla.redhat.com/show_bug.cgi?id=2071019): Rebase against v2.5.1 [#36](https://github.com/openshift/vmware-vsphere-csi-driver/pull/36) * [Bug 2029835](https://bugzilla.redhat.com/show_bug.cgi?id=2029835): Revert "Merge pull request #30 from bertinatto/rebase-v2.4.1" [#35](https://github.com/openshift/vmware-vsphere-csi-driver/pull/35) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#33](https://github.com/openshift/vmware-vsphere-csi-driver/pull/33) * Updating vmware-vsphere-syncer images to be consistent with ART [#32](https://github.com/openshift/vmware-vsphere-csi-driver/pull/32) * [Bug 2029835](https://bugzilla.redhat.com/show_bug.cgi?id=2029835): UPSTREAM: 1468: Fixed parsing of /proc/self/mountinfo with spaces [#34](https://github.com/openshift/vmware-vsphere-csi-driver/pull/34) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/e310f4d3828a71fb96344ccbe8b29d22754ebf77...e4c0e103ddbf264387d6efb26b612a4b915d362a) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/d7cca470e82158e8240a09b3586f99e6a84f121f) * [OCPBUGS-21416](https://issues.redhat.com/browse/OCPBUGS-21416): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#175](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/175) * [OCPBUGS-18131](https://issues.redhat.com/browse/OCPBUGS-18131): Block upgrade to 4.13 via admin ack [#171](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/171) * [OCPBUGS-18333](https://issues.redhat.com/browse/OCPBUGS-18333): disable controller hostNetwork [#167](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/167) * [OCPBUGS-12712](https://issues.redhat.com/browse/OCPBUGS-12712): Add backoff for successful storage policy creations [#152](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/152) * [OCPBUGS-7901](https://issues.redhat.com/browse/OCPBUGS-7901): Bump sidecar timeouts for vsphere [#142](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/142) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Fix datastore migration bug in 4.12 [#139](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/139) * [OCPBUGS-4609](https://issues.redhat.com/browse/OCPBUGS-4609): Add multiple datacenters support [#123](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/123) * [OCPBUGS-3281](https://issues.redhat.com/browse/OCPBUGS-3281): set TLS cipher suites in Kube RBAC sidecars [#118](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/118) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#116](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/116) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#109](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/109) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#113](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/113) * [STOR-1050](https://issues.redhat.com/browse/STOR-1050): Enable topology aware provisioning [#107](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/107) * [OCPBUGS-1592](https://issues.redhat.com/browse/OCPBUGS-1592): Add HTTP proxy to syncer container [#110](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/110) * [OCPBUGS-1067](https://issues.redhat.com/browse/OCPBUGS-1067): Recreate storageclass in case it was deleted [#108](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/108) * [OCPBUGS-940](https://issues.redhat.com/browse/OCPBUGS-940): Rework "BlockDriverInstall" to "BlockUpgradeDriverInstall" [#106](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/106) * [STOR-794](https://issues.redhat.com/browse/STOR-794): Block upgrade when vSphere is < 7.0.2 [#94](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/94) * [Bug 2108473](https://bugzilla.redhat.com/show_bug.cgi?id=2108473): Warn if multiple credentials exists in secrets [#104](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/104) * [STOR-963](https://issues.redhat.com/browse/STOR-963): Add LOGGER_LEVEL env. var on debug log level [#102](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/102) * [Bug 2108054](https://bugzilla.redhat.com/show_bug.cgi?id=2108054): Reset metrics only after all check succeed [#100](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/100) * [Bug 2094783](https://bugzilla.redhat.com/show_bug.cgi?id=2094783): storageclass should not be created for unsupported vsphere version [#95](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/95) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#97](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/97) * [Bug 2081557](https://bugzilla.redhat.com/show_bug.cgi?id=2081557): Run at least one replica of Webhook [#92](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/92) * [Bug 2099864](https://bugzilla.redhat.com/show_bug.cgi?id=2099864): Reorder static resources to create RBAC first [#93](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/93) * [Bug 2095248](https://bugzilla.redhat.com/show_bug.cgi?id=2095248): Report max. nr. of attachable volumes per node [#90](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/90) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#85](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/85) * [Bug 2089419](https://bugzilla.redhat.com/show_bug.cgi?id=2089419): Don't block upgrades when another CSI driver is found [#87](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/87) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#86](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/86) * [Bug 2071021](https://bugzilla.redhat.com/show_bug.cgi?id=2071021): Enable snapshot support [#83](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/83) * [Bug 2072139](https://bugzilla.redhat.com/show_bug.cgi?id=2072139): Create separate controller and node roles [#82](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/82) * [Bug 2076637](https://bugzilla.redhat.com/show_bug.cgi?id=2076637): Scrape CSI driver + syncer metrics [#84](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/84) * add storageclass controller tests [#80](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/80) * [Bug 2059791](https://bugzilla.redhat.com/show_bug.cgi?id=2059791): [vSphere CSI driver Operator] didn't update 'vsphere_csi_driver_error' metric value when fixed the error manually [#81](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/81) * Set fsGroupPolicy in CSIDriver [#79](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/79) * [Bug 2053104](https://bugzilla.redhat.com/show_bug.cgi?id=2053104): Do not cache node check results between runs [#77](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/77) * [Bug 2043132](https://bugzilla.redhat.com/show_bug.cgi?id=2043132): Add metric when storageclass installation fails [#74](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/74) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#73](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/73) * readme: minor fixes [#63](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/63) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/f5d7362c88eb7d05bdfd0f70c2d53df7275d4ae2...d7cca470e82158e8240a09b3586f99e6a84f121f) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/f25ae2add899bbd4b63b476c2e6178cfbaf68ac4) * [OCPBUGS-21574](https://issues.redhat.com/browse/OCPBUGS-21574): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#131](https://github.com/openshift/vsphere-problem-detector/pull/131) * [OCPBUGS-10812](https://issues.redhat.com/browse/OCPBUGS-10812): Add build number to metrics [#104](https://github.com/openshift/vsphere-problem-detector/pull/104) * [OCPBUGS-6788](https://issues.redhat.com/browse/OCPBUGS-6788): Derive the fully qualified vSphere username when checking permissions [#98](https://github.com/openshift/vsphere-problem-detector/pull/98) * [OCPBUGS-5509](https://issues.redhat.com/browse/OCPBUGS-5509): Add a count of zonal volumes [#97](https://github.com/openshift/vsphere-problem-detector/pull/97) * [OCPBUGS-3442](https://issues.redhat.com/browse/OCPBUGS-3442): Lets remove datastore length checks for now [#92](https://github.com/openshift/vsphere-problem-detector/pull/92) * [OCPBUGS-1361](https://issues.redhat.com/browse/OCPBUGS-1361): Fix propagation of check errors to Available condition [#90](https://github.com/openshift/vsphere-problem-detector/pull/90) * [OCPBUGS-926](https://issues.redhat.com/browse/OCPBUGS-926): Resolve situations when an existing folder or resource pool is used at install-time. [#87](https://github.com/openshift/vsphere-problem-detector/pull/87) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#88](https://github.com/openshift/vsphere-problem-detector/pull/88) * Updating vsphere-problem-detector images to be consistent with ART [#89](https://github.com/openshift/vsphere-problem-detector/pull/89) * validate vmware user privileges [#56](https://github.com/openshift/vsphere-problem-detector/pull/56) * Updating vsphere-problem-detector images to be consistent with ART [#86](https://github.com/openshift/vsphere-problem-detector/pull/86) * [Bug 2089973](https://bugzilla.redhat.com/show_bug.cgi?id=2089973): bump libs to k8s 1.24 for OCP 4.11 [#84](https://github.com/openshift/vsphere-problem-detector/pull/84) * Updating vsphere-problem-detector images to be consistent with ART [#85](https://github.com/openshift/vsphere-problem-detector/pull/85) * [Bug 2058217](https://bugzilla.redhat.com/show_bug.cgi?id=2058217): fix docs for rwx volumes [#81](https://github.com/openshift/vsphere-problem-detector/pull/81) * [Bug 2042446](https://bugzilla.redhat.com/show_bug.cgi?id=2042446): Fix stale metrics by explicitly zeroed out old metrics [#79](https://github.com/openshift/vsphere-problem-detector/pull/79) * [Bug 2042446](https://bugzilla.redhat.com/show_bug.cgi?id=2042446): Fix stale metric collection [#77](https://github.com/openshift/vsphere-problem-detector/pull/77) * [Bug 2055729](https://bugzilla.redhat.com/show_bug.cgi?id=2055729): change NodePerfCheck criteria to be based on average latency [#75](https://github.com/openshift/vsphere-problem-detector/pull/75) * [Bug 2051881](https://bugzilla.redhat.com/show_bug.cgi?id=2051881): Dont forget to register metrics before emitting [#73](https://github.com/openshift/vsphere-problem-detector/pull/73) * Updating vsphere-problem-detector images to be consistent with ART [#72](https://github.com/openshift/vsphere-problem-detector/pull/72) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/a11df08a341b9084fd92c95e5b53368d1ea9aaa5...f25ae2add899bbd4b63b476c2e6178cfbaf68ac4)