# 4.2.36 Created: 2020-06-24 07:47:55 +0000 UTC Image Digest: `sha256:449b9b839d2cdf33ff2a494a5863d24dc1b436f995c286d8f8d58821ae293b82` Promoted from registry.svc.ci.openshift.org/ocp/release:4.2.0-0.nightly-2020-06-23-091453 ## Changes from 4.2.2 ### Components * Kubernetes 1.14.6 ### Rebuilt images without code change * [azure-machine-controllers](https://github.com/openshift/cluster-api-provider-azure) git [719f40a4](https://github.com/openshift/cluster-api-provider-azure/commit/719f40a46924bb1a46143a8df291b33ec17075b8) `sha256:72a9d1198595cff346b911b49c9f7f3ef2469e6e793261754db7bdd2fb8b1a8c` * [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal) git [a2a47790](https://github.com/openshift/cluster-api-provider-baremetal/commit/a2a477909c1d518ef7cf28601e5d7db56a4d4069) `sha256:2b4bcbb9b45a964cfbecc06386030bd9514bae63d64a5ee31ff9e90e9a796a42` * [baremetal-operator](https://github.com/openshift/baremetal-operator) git [7869f83d](https://github.com/openshift/baremetal-operator/commit/7869f83d0e93fdb9c589eaf66b7d459d67b39f83) `sha256:ff761de5619a195d6c6027f7e828e22a1d4f52152c4a3880e7667df83c6a1261` * [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler) git [c44b83da](https://github.com/openshift/kubernetes-autoscaler/commit/c44b83dacbdd3dc6bc051c96a1b0d6f6865c685b) `sha256:a90654321f70b068d41ae23356b6efb93a5184b951e8307b0bab6e8ba4314c0d` * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [106f76b4](https://github.com/openshift/cluster-bootstrap/commit/106f76b4d183cc24e58d26b3b57b2bf1e2362a9d) `sha256:9126b06756d5ca19a6764ee1e52130c348dc7de840698ac5d753b11ff3797421` * [cluster-config-operator](https://github.com/openshift/cluster-config-operator) git [7e4895c7](https://github.com/openshift/cluster-config-operator/commit/7e4895c7e79826566b0bcfab724b8b21cecc597d) `sha256:30792be0cf12b1dd29814d05dcff956877cbd2081b8a97890291cd8fa525dc17` * [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator) git [76ae60eb](https://github.com/openshift/cluster-openshift-apiserver-operator/commit/76ae60eb1baa4496a5097c3be282873f99ea70d3) `sha256:61bea75a9e3b6f92ee58c2e29032ecefd1fec324d013e8bc23fa12adb70c7f0f` * [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator) git [377cff19](https://github.com/openshift/cluster-openshift-controller-manager-operator/commit/377cff19428838c0b2c4fbde762e535471922a92) `sha256:9abf0134209bc831a5c05ef39efe316dca4c4182d153b7c8b2e1fd44087a2389` * [cluster-svcat-apiserver-operator](https://github.com/openshift/cluster-svcat-apiserver-operator) git [f8b8b5b3](https://github.com/openshift/cluster-svcat-apiserver-operator/commit/f8b8b5b355d0b525d25600fe8713297be0a3e8bf) `sha256:f55d74143dd232b6dd8e7de292bf0e9b53cb741c263d1f1206cb5af2e8c90446` * [cluster-svcat-controller-manager-operator](https://github.com/openshift/cluster-svcat-controller-manager-operator) git [9ef3f62c](https://github.com/openshift/cluster-svcat-controller-manager-operator/commit/9ef3f62c4b3d7b824c9b0b86c2081d694faff5ea) `sha256:2e138ff733855837ea4e37f49fb61f44759cd5e0e4e3dfe2ad7dce24f967f91c` * [cluster-update-keys](https://github.com/openshift/cluster-update-keys) git [cca4ce69](https://github.com/openshift/cluster-update-keys/commit/cca4ce696383e70ae669e770bd63265a9540b721) `sha256:46a2ea48269ab442a347ebbcb5b61d3db09e7fa02a2735b4b92c0253c4844c1b` * [configmap-reloader](https://github.com/openshift/configmap-reload) git [841b0bfe](https://github.com/openshift/configmap-reload/commit/841b0bfe743999fcc9b0528ea689f728eb92aee7) `sha256:663f4e61fbb7e556d37589a47fc39b5d5756860c3ea25125895dbe4bc4fd6239` * [container-networking-plugins](https://github.com/openshift/containernetworking-plugins) git [b5e1059a](https://github.com/openshift/containernetworking-plugins/commit/b5e1059a79397ef886a8047cb4c61919c787f5f5) `sha256:120e0bdb4322fbba710f69843e63a746606df4e0925dd6a9451919b38b5ff287` * [coredns](https://github.com/openshift/coredns) git [51569b24](https://github.com/openshift/coredns/commit/51569b24b4a92d6d8df2020c2e8e2866c5e78266) `sha256:60beb61ac1370ffbf58ec5c997a7c1d020c661c0bccf8fb5683e4718c41c8b09` * [etcd](https://github.com/openshift/etcd) git [3ebe3d9f](https://github.com/openshift/etcd/commit/3ebe3d9fa2302e5ae4712781caac61fc12d5f7f9) `sha256:b0bfc5889e5f2582d24fc2fe307ec79ff7e00bccbffaa7caf845b8e1d0bcd11a` * [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp) git [602750a8](https://github.com/openshift/cluster-api-provider-gcp/commit/602750a8c1762faf052124fc400b9342514ed8f3) `sha256:48654f67cea4f19fb9670b47894971832e005b1e56c7048a29f288aa199bb1c2` * [grafana](https://github.com/openshift/grafana) git [91b439ee](https://github.com/openshift/grafana/commit/91b439eee0cf1ac742ef63cf2a8f7fc9ea3e1432) `sha256:f6c1b8dddfc43747ebbef90a6810482b81fd52cdacd6202b35181b5658330233` * [ironic](https://github.com/openshift/ironic-image) git [246346b5](https://github.com/openshift/ironic-image/commit/246346b5f7fb8f871ab61f6a49f820f84bda9d2f) `sha256:1ea9f4ab5b2d32498342faedf741b1508ffde6488937d5700c3f7a6aee6ee784` * [ironic-inspector](https://github.com/openshift/ironic-inspector-image) git [b83630ce](https://github.com/openshift/ironic-inspector-image/commit/b83630cefa1a72b2d8ce03c9701acb4f117ab6f5) `sha256:cd92f8d7fa06ad04be94bb720b5b509c8a2f1703d5f3473fde416a3fd41a6481` * [ironic-ipa-downloader](https://github.com/openshift/ironic-ipa-downloader) git [b1a14498](https://github.com/openshift/ironic-ipa-downloader/commit/b1a144985e413d0c7f3d66bf8f47ecf14e8d617d) `sha256:71498c94e4f435c88b2c264bac686bdab591c1d45a8b0ef099f1651271045090` * [ironic-rhcos-downloader](https://github.com/openshift/ironic-rhcos-downloader) git [93c9e1c5](https://github.com/openshift/ironic-rhcos-downloader/commit/93c9e1c5cf83e25487933e46d5aadbe1c68dfea5) `sha256:00fa605b1ec95e90bfb42b7e59dbf4ee1e2e318ea9c3cf27e9a816d4ab544a57` * [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager) git [e33314bd](https://github.com/openshift/ironic-static-ip-manager/commit/e33314bda6f366472a2371c5598ff2d7dba111c8) `sha256:6b01b75345900fc9c0d18cecb2f0070b45a4315743ae2dbe25eb357a0a9d4085` * [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter) git [9c5a42a3](https://github.com/openshift/k8s-prometheus-adapter/commit/9c5a42a3fb4bd2adfa24fc10292a36becc669e1e) `sha256:aa895f5554dbadc7155771eb771df0d19fcfdfefa21c3b099e824201eeb3f99c` * [keepalived-ipfailover](https://github.com/openshift/images) git [1be922de](https://github.com/openshift/images/commit/1be922de56a99f4e254eb9c2fc42d30e5596cf77) `sha256:719b154fcd4394c7235063d51dd8861f35f1b83ac380e2b5cd1efa9468aad061` * [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy) git [2658b244](https://github.com/openshift/kube-rbac-proxy/commit/2658b2444b9992ea474177c73ca9f40f68f04304) `sha256:8b9c2c5c00ff86b42fcd29cc26a09f0f157b370703b7fb3b525cefa65a6de763` * [kube-state-metrics](https://github.com/openshift/kube-state-metrics) git [07b29740](https://github.com/openshift/kube-state-metrics/commit/07b29740ca81f5ddf527b8eb700247f7be4474a8) `sha256:b8ccc7ae76430b46adbbefb3f42ec794e3e63c8896e505d694531e4acbb61919` * [local-storage-static-provisioner](https://github.com/openshift/sig-storage-local-static-provisioner) git [da340b47](https://github.com/openshift/sig-storage-local-static-provisioner/commit/da340b475eb847c17cefe2f2f9bf9be1a3382d4a) `sha256:cdcc31dae587fe35c0413243a78fe451db94adf1707d42b70ddf129a39c31fcb` * [machine-api-operator](https://github.com/openshift/machine-api-operator) git [474e14e4](https://github.com/openshift/machine-api-operator/commit/474e14e4965a8c5e6788417c851ccc7fad1acb3a) `sha256:1c267f2ab73da57c8241884009cbc1f187d3fd3a10068c1c6e72b5fddbeb6ed4` * machine-os-content `sha256:b64e472b57538ebd6808a1e0528d9ea83877207d29c091634f41627a609f9b04` * [mdns-publisher](https://github.com/openshift/mdns-publisher) git [b02f19c5](https://github.com/openshift/mdns-publisher/commit/b02f19c5243c9a3ef41eafc41e9d90a24adc0f60) `sha256:d4ae7338ef372daae1cb27281cd8f8473a740f34f98fcff9bffafd47bd278b2e` * [multus-admission-controller](https://github.com/openshift/multus-admission-controller) git [ccd6c61c](https://github.com/openshift/multus-admission-controller/commit/ccd6c61c10aaa02c31a2053a1a6ac587cee6abb6) `sha256:3c597093aacd2f568d147992314df3d31aa42a67f482c133076af0fc7a70d80b` * [multus-cni](https://github.com/openshift/multus-cni) git [d3a18156](https://github.com/openshift/multus-cni/commit/d3a1815632cc3e1c7beb10165f960b4708d097fa) `sha256:6a51d7e3b2844bb98c8c75e02ba6da2107f0a8b1d19aff8f1d340c633167e93b` * [must-gather](https://github.com/openshift/must-gather) git [318faeff](https://github.com/openshift/must-gather/commit/318faeffd87d70d6727fd4cb30da28aab7c87da3) `sha256:169e701a77720baef6b64dcdfffd9131ad55e02d5ae0f8df5be5438666e5ad66` * [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics) git [c01d2de6](https://github.com/openshift/openshift-state-metrics/commit/c01d2de651071389d2621c46e934fd9cb2bf4b8d) `sha256:3b60f0cf0a622e86c3beecc12577d9bc34143ebdae1bcdfa3dc070b6f2722a00` * [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack) git [52a3e249](https://github.com/openshift/cluster-api-provider-openstack/commit/52a3e249a7053149b08374fd989fd5543d3bdcbd) `sha256:3cd2ff5a670b0f0e72bac4f23193d85b19efe39bb6e824b14da1da607caf29de` * [operator-registry](https://github.com/operator-framework/operator-registry) git [98ebd340](https://github.com/operator-framework/operator-registry/commit/98ebd3400de159c019b864c6ef7c17eb426d9698) `sha256:32ce6b3f9d799b290783bd044815a0d271bbd6365734971c906eefcd99db8199` * [pod](https://github.com/openshift/images) git [1be922de](https://github.com/openshift/images/commit/1be922de56a99f4e254eb9c2fc42d30e5596cf77) `sha256:482e7ac338a502f9e01f5edada3ca3df520bf21f339a40909d872c16413884dd` * [prom-label-proxy](https://github.com/openshift/prom-label-proxy) git [dd9a418a](https://github.com/openshift/prom-label-proxy/commit/dd9a418af5835ddb1a5181ae6f1303f86d8b1ef3) `sha256:b92e2f666275eea5bb21b0ac581a9e53a7481e3098474417efada16e0e9a7108` * [prometheus](https://github.com/openshift/prometheus) git [52650c0f](https://github.com/openshift/prometheus/commit/52650c0fd84e82e20b5dcfa283c69a9e7ada16cb) `sha256:eb35df9b1b01d06a0dfbc5e9efd3e7bd9de0b2429c764421109494b7cc6509f0` * [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager) git [6858fa0f](https://github.com/openshift/prometheus-alertmanager/commit/6858fa0f51a7d37db0bb7ff7497aaeef3333f18b) `sha256:666039179c8bbe627e4ae8ded180fdb3bb37667794879355b313d8af0e21b342` * [service-catalog](https://github.com/openshift/service-catalog) git [7d8b2a29](https://github.com/openshift/service-catalog/commit/7d8b2a29d2e6f1daa81b9b788c944f07cf3513e1) `sha256:10b4982ca40f7c82236d268b553de9788ba837f95f17b3f4e76c491ce232d77c` ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/75ed797523afaa1ba457b5a92ec6540673850f49) * [Bug 1796595](https://bugzilla.redhat.com/show_bug.cgi?id=1796595): [release-4.2] Mitigate aws eventual consistency issues [#295](https://github.com/openshift/cluster-api-provider-aws/pull/295) * [Bug 1799034](https://bugzilla.redhat.com/show_bug.cgi?id=1799034): [release-4.2] take into consideration all instance states for deletion [#294](https://github.com/openshift/cluster-api-provider-aws/pull/294) * [Bug 1781160](https://bugzilla.redhat.com/show_bug.cgi?id=1781160): Update Machine status with all instance IP addresses [#279](https://github.com/openshift/cluster-api-provider-aws/pull/279) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/d77b7ae80f23ce511c620f095e8d10844929311c...75ed797523afaa1ba457b5a92ec6540673850f49) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/4a3693e01623643e29eceda6f25517ac18c1af31) * [Bug 1842577](https://bugzilla.redhat.com/show_bug.cgi?id=1842577): images: libvirt: add yq to libvirt CI image [#3700](https://github.com/openshift/installer/pull/3700) * [Bug 1827795](https://bugzilla.redhat.com/show_bug.cgi?id=1827795): OpenStack: Replace remote_group_id with remote_ip_prefix [#3505](https://github.com/openshift/installer/pull/3505) * [Bug 1803221](https://bugzilla.redhat.com/show_bug.cgi?id=1803221): use region info when simulating permissions [#3142](https://github.com/openshift/installer/pull/3142) * [Bug 1788585](https://bugzilla.redhat.com/show_bug.cgi?id=1788585): OpenStack: create security rules sequentially [#2888](https://github.com/openshift/installer/pull/2888) * [Bug 1793128](https://bugzilla.redhat.com/show_bug.cgi?id=1793128): enable s390x bootimage support [#2933](https://github.com/openshift/installer/pull/2933) * [Bug 1788707](https://bugzilla.redhat.com/show_bug.cgi?id=1788707): Backport Azure private DNS to 4.2 branch [#2825](https://github.com/openshift/installer/pull/2825) * [Bug 1778969](https://bugzilla.redhat.com/show_bug.cgi?id=1778969): Default new file and directory permissions to not be world readable [#2793](https://github.com/openshift/installer/pull/2793) * images: add a new generic libvirt CI image [#2923](https://github.com/openshift/installer/pull/2923) * [Bug 1782994](https://bugzilla.redhat.com/show_bug.cgi?id=1782994): terraform/plugins: update libvirt provider [#2804](https://github.com/openshift/installer/pull/2804) * [Bug 1782588](https://bugzilla.redhat.com/show_bug.cgi?id=1782588): destroy/gcp/policybinding.go: identity deleted service accounts belonging to the cluster [#2798](https://github.com/openshift/installer/pull/2798) * [Bug 1771358](https://bugzilla.redhat.com/show_bug.cgi?id=1771358): manually prepare cloud provider's config [#2660](https://github.com/openshift/installer/pull/2660) * [Bug 1779793](https://bugzilla.redhat.com/show_bug.cgi?id=1779793): vSphere UPI: set specific version of ignition provider [#2752](https://github.com/openshift/installer/pull/2752) * [Bug 1773909](https://bugzilla.redhat.com/show_bug.cgi?id=1773909): OpenStack: Fix destroy module [#2701](https://github.com/openshift/installer/pull/2701) * [Bug 1775062](https://bugzilla.redhat.com/show_bug.cgi?id=1775062): OpenStack: Use UTF-8 locales in CI container image [#2700](https://github.com/openshift/installer/pull/2700) * [Bug 1775531](https://bugzilla.redhat.com/show_bug.cgi?id=1775531): images/openstack: add awscli to image [#2707](https://github.com/openshift/installer/pull/2707) * [Bug 1770223](https://bugzilla.redhat.com/show_bug.cgi?id=1770223): bootstrap kubeconfig to use api-int [#2668](https://github.com/openshift/installer/pull/2668) * [Bug 1766066](https://bugzilla.redhat.com/show_bug.cgi?id=1766066): Revert "Merge pull request #2471 from openshift-cherrypick-robot/cher… [#2640](https://github.com/openshift/installer/pull/2640) * [Bug 1765308](https://bugzilla.redhat.com/show_bug.cgi?id=1765308): pkg/types/aws/validation/platform: Include eu-north-1 [#2568](https://github.com/openshift/installer/pull/2568) * [Bug 1758663](https://bugzilla.redhat.com/show_bug.cgi?id=1758663): asset/manifests: Removes external api server from default noProxy [#2471](https://github.com/openshift/installer/pull/2471) * [Full changelog](https://github.com/openshift/installer/compare/e349157f325dba2d06666987603da39965be5319...4a3693e01623643e29eceda6f25517ac18c1af31) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/d22abd22d1f7f227721b29f9c842c23d846021d1) * [Bug 1775123](https://bugzilla.redhat.com/show_bug.cgi?id=1775123): Tweak VRID calculation to avoid 0 [#35](https://github.com/openshift/baremetal-runtimecfg/pull/35) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/d5bb4c0889ee6c57675def821103f42f6eefcd35...d22abd22d1f7f227721b29f9c842c23d846021d1) ### [cli, cli-artifacts, deployer](https://github.com/openshift/oc/tree/1337b299ce122ba5f4d38fa6d8aea1ca202fd009) * [Bug 1795312](https://bugzilla.redhat.com/show_bug.cgi?id=1795312): initialize auth plugins [#270](https://github.com/openshift/oc/pull/270) * [Bug 1789869](https://bugzilla.redhat.com/show_bug.cgi?id=1789869): allow --config and --kubeconfig [#248](https://github.com/openshift/oc/pull/248) * [Bug 1776495](https://bugzilla.redhat.com/show_bug.cgi?id=1776495): don't install quota CRDs [#214](https://github.com/openshift/oc/pull/214) * [Bug 1772463](https://bugzilla.redhat.com/show_bug.cgi?id=1772463): Set TypeSetter in get print flags, like we do everywhere elsewhere [#163](https://github.com/openshift/oc/pull/163) * [Bug 1770741](https://bugzilla.redhat.com/show_bug.cgi?id=1770741): Fixed Dockerfile FROM statement parser. [#154](https://github.com/openshift/oc/pull/154) * [Bug 1761922](https://bugzilla.redhat.com/show_bug.cgi?id=1761922): Manifest lists can fail to mirror because dependent manifests are not uploaded [#128](https://github.com/openshift/oc/pull/128) * [Bug 1773807](https://bugzilla.redhat.com/show_bug.cgi?id=1773807): Enable all Linux arches in cli-artifacts [4.2] [#168](https://github.com/openshift/oc/pull/168) * [Bug 1771420](https://bugzilla.redhat.com/show_bug.cgi?id=1771420): Update ruby-22-centos7 to ruby-25-centos7 [#195](https://github.com/openshift/oc/pull/195) * [Full changelog](https://github.com/openshift/oc/compare/420c3d6212a959907360fb0b6545f2f0ab173271...1337b299ce122ba5f4d38fa6d8aea1ca202fd009) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/3a1e5f22704e1c780076164654dcc68c632e0b42) * [Bug 1819183](https://bugzilla.redhat.com/show_bug.cgi?id=1819183): handle old Infrastructure objects without PlatformStatus [#173](https://github.com/openshift/cloud-credential-operator/pull/173) * [Bug 1803221](https://bugzilla.redhat.com/show_bug.cgi?id=1803221): improve permissions simulation by adding region info [#157](https://github.com/openshift/cloud-credential-operator/pull/157) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/b905f49fd022cdc6674a85fa4bcf0f423128831b...3a1e5f22704e1c780076164654dcc68c632e0b42) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/ed95fe78361f5ba05b9464a7972fe89b00e1dc86) * [Bug 1772839](https://bugzilla.redhat.com/show_bug.cgi?id=1772839): operator: add ingress and routes to related objects [#217](https://github.com/openshift/cluster-authentication-operator/pull/217) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/64fc3691e84c60d7e395c9f3c7d1653bcbe78604...ed95fe78361f5ba05b9464a7972fe89b00e1dc86) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/0ea559ca1490d7bea4fb7ee6c3619b7696b2ef49) * [Bug 1779743](https://bugzilla.redhat.com/show_bug.cgi?id=1779743): Don't suppress errors when reporting operator status [#126](https://github.com/openshift/cluster-autoscaler-operator/pull/126) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/045aea45264c5d47ccfdc924906f43a016eab169...0ea559ca1490d7bea4fb7ee6c3619b7696b2ef49) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/221cae05254ff889f2ad0f4c08e8b82618d95a0b) * [Bug 1780213](https://bugzilla.redhat.com/show_bug.cgi?id=1780213): Don't start DNS on NotReady nodes [#150](https://github.com/openshift/cluster-dns-operator/pull/150) * [Bug 1762960](https://bugzilla.redhat.com/show_bug.cgi?id=1762960): status: prevent degraded status flapping on rollout [#135](https://github.com/openshift/cluster-dns-operator/pull/135) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/6db7931cc2e4c45016fa9fb9b417ae50e95a8c7a...221cae05254ff889f2ad0f4c08e8b82618d95a0b) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/30f9b51e2ef61d50315eee79071643153526681f) * [Bug 1831088](https://bugzilla.redhat.com/show_bug.cgi?id=1831088): removing verify-sec / gosec [#545](https://github.com/openshift/cluster-image-registry-operator/pull/545) * [Bug 1820243](https://bugzilla.redhat.com/show_bug.cgi?id=1820243): nodeca daemon should tolerate all taints [#538](https://github.com/openshift/cluster-image-registry-operator/pull/538) * [Bug 1825718](https://bugzilla.redhat.com/show_bug.cgi?id=1825718): update object dumper [#534](https://github.com/openshift/cluster-image-registry-operator/pull/534) * [Bug 1808433](https://bugzilla.redhat.com/show_bug.cgi?id=1808433): tolerate all NoSchedule taints [#473](https://github.com/openshift/cluster-image-registry-operator/pull/473) * [Bug 1814765](https://bugzilla.redhat.com/show_bug.cgi?id=1814765): use junit_*.xml pattern for junit reports [#498](https://github.com/openshift/cluster-image-registry-operator/pull/498) * [Bug 1815125](https://bugzilla.redhat.com/show_bug.cgi?id=1815125): force path style for custom endpoints [#501](https://github.com/openshift/cluster-image-registry-operator/pull/501) * [Bug 1808505](https://bugzilla.redhat.com/show_bug.cgi?id=1808505): only process install config changes to configmaps in the… [#477](https://github.com/openshift/cluster-image-registry-operator/pull/477) * [Bug 1770658](https://bugzilla.redhat.com/show_bug.cgi?id=1770658): report Available when registry is explicitly Removed [#412](https://github.com/openshift/cluster-image-registry-operator/pull/412) * [Bug 1770658](https://bugzilla.redhat.com/show_bug.cgi?id=1770658): Set Version on Operator status even if Removed. [#408](https://github.com/openshift/cluster-image-registry-operator/pull/408) * [Bug 1760480](https://bugzilla.redhat.com/show_bug.cgi?id=1760480): Remove CGO_ENABLED=0 from build script [#401](https://github.com/openshift/cluster-image-registry-operator/pull/401) * [Bug 1756478](https://bugzilla.redhat.com/show_bug.cgi?id=1756478): Add flag 'DisableRedirect', decide to route all data through the registry [#400](https://github.com/openshift/cluster-image-registry-operator/pull/400) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/017a9fcc24253e356dd58d32fb9fe18a071901d3...30f9b51e2ef61d50315eee79071643153526681f) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/c0a5e5eb5a9e80dd304f4e49066e4bf52708be4a) * [Bug 1788707](https://bugzilla.redhat.com/show_bug.cgi?id=1788707): [release-4.2] NE-250: Support both DNSZone and PrivateDNSZone resources [#344](https://github.com/openshift/cluster-ingress-operator/pull/344) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/2a6afceeef9e96bf586bcc8effe57c7e45c3ecd0...c0a5e5eb5a9e80dd304f4e49066e4bf52708be4a) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/925d5210ffb332e4da75459df7a66380a135bc3a) * [Bug 1795395](https://bugzilla.redhat.com/show_bug.cgi?id=1795395): Properly set pod as privileged [#724](https://github.com/openshift/cluster-kube-apiserver-operator/pull/724) * [Bug 1820543](https://bugzilla.redhat.com/show_bug.cgi?id=1820543): certrotationcontroller: fix typo calling wrong internal LB func [#813](https://github.com/openshift/cluster-kube-apiserver-operator/pull/813) * [release 4-2] Bug 1810185: Components using globs in Dockerfile COPY commands may break on OCP 4 [#824](https://github.com/openshift/cluster-kube-apiserver-operator/pull/824) * [Bug 1803750](https://bugzilla.redhat.com/show_bug.cgi?id=1803750): [release-4.2] Improve node controller condition message [#766](https://github.com/openshift/cluster-kube-apiserver-operator/pull/766) * [Bug 1771665](https://bugzilla.redhat.com/show_bug.cgi?id=1771665): file observer has not restarted process on serving cert change [#680](https://github.com/openshift/cluster-kube-apiserver-operator/pull/680) * [Bug 1758958](https://bugzilla.redhat.com/show_bug.cgi?id=1758958): hide secrets in logs [#647](https://github.com/openshift/cluster-kube-apiserver-operator/pull/647) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/2515807cd5baf006944df47595deaba12a3a08e5...925d5210ffb332e4da75459df7a66380a135bc3a) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/be2c8227b8c58b162f1749409546f97ac2910d28) * [Bug 1770303](https://bugzilla.redhat.com/show_bug.cgi?id=1770303): alert when number of expected pods is equal or lower than desired healthy pods in a PDB [#306](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/306) * [Bug 1810185](https://bugzilla.redhat.com/show_bug.cgi?id=1810185): Remove wildcard COPY form Dockerfile [#372](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/372) * [Bug 1802297](https://bugzilla.redhat.com/show_bug.cgi?id=1802297): Inject kube-controller-manager pods trust stores with trusted ca bundle [#350](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/350) * [Bug 1803750](https://bugzilla.redhat.com/show_bug.cgi?id=1803750): [release-4.2] Improve node controller condition message [#348](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/348) * [Bug 1718061](https://bugzilla.redhat.com/show_bug.cgi?id=1718061): Fix KCM leader election configmap deletion recovery [#323](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/323) * [Bug 1779801](https://bugzilla.redhat.com/show_bug.cgi?id=1779801): watch for changes to input secrets from the operator namespace [#305](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/305) * [Bug 1758959](https://bugzilla.redhat.com/show_bug.cgi?id=1758959): hide secrets in logs [#314](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/314) * [Bug 1767047](https://bugzilla.redhat.com/show_bug.cgi?id=1767047): move rbac for cluster-policy-controller leader lock to kcm-o [#300](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/300) * [Bug 1759400](https://bugzilla.redhat.com/show_bug.cgi?id=1759400): add non-MITM proxy support [#286](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/286) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/423f9d1fa0f92d01a8620b0423c1a88977bcd504...be2c8227b8c58b162f1749409546f97ac2910d28) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/3e1ab1a5909f94a1ef971a191802ecc053ce6b36) * [Bug 1810185](https://bugzilla.redhat.com/show_bug.cgi?id=1810185): Fix dockerfile [#221](https://github.com/openshift/cluster-kube-scheduler-operator/pull/221) * [Bug 1803744](https://bugzilla.redhat.com/show_bug.cgi?id=1803744): [release-4.2] Improve node controller condition message [#209](https://github.com/openshift/cluster-kube-scheduler-operator/pull/209) * [Bug 1758957](https://bugzilla.redhat.com/show_bug.cgi?id=1758957): hide secrets in logs [#186](https://github.com/openshift/cluster-kube-scheduler-operator/pull/186) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/a42fcb7538e6fecad9278d650b04aced7c4e88be...3e1ab1a5909f94a1ef971a191802ecc053ce6b36) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/a226e0fc46cabee7186de69e7409020c861e454c) * [Bug 1781160](https://bugzilla.redhat.com/show_bug.cgi?id=1781160): Fall back to machine-api check if certificate check fails [#59](https://github.com/openshift/cluster-machine-approver/pull/59) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/a4a28b0e09ea04592319782a9fb9398aa9569934...a226e0fc46cabee7186de69e7409020c861e454c) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/add5655ff38248a0c18492b8a0e7de92f70213b9) * [Bug 1803957](https://bugzilla.redhat.com/show_bug.cgi?id=1803957): Specify grafana-proxy container by name [#719](https://github.com/openshift/cluster-monitoring-operator/pull/719) * [Bug 1791211](https://bugzilla.redhat.com/show_bug.cgi?id=1791211): Add alert for no routes configured in alertmanager [#614](https://github.com/openshift/cluster-monitoring-operator/pull/614) * [Bug 1803957](https://bugzilla.redhat.com/show_bug.cgi?id=1803957): Backport trusted ca support for prometheus [#683](https://github.com/openshift/cluster-monitoring-operator/pull/683) * [Bug 1796040](https://bugzilla.redhat.com/show_bug.cgi?id=1796040): pkg/manifests: change location of trustedCA bundle; add trustedCA to … [#658](https://github.com/openshift/cluster-monitoring-operator/pull/658) * [Bug 1788477](https://bugzilla.redhat.com/show_bug.cgi?id=1788477): trustedCA bundle support for grafana oauth proxy [#602](https://github.com/openshift/cluster-monitoring-operator/pull/602) * [Bug 1773665](https://bugzilla.redhat.com/show_bug.cgi?id=1773665): Bump telemeter to backport changes BZ 1760393 to 4.2.z [#589](https://github.com/openshift/cluster-monitoring-operator/pull/589) * [Bug 1773665](https://bugzilla.redhat.com/show_bug.cgi?id=1773665): add cluster cpu recording rules [#572](https://github.com/openshift/cluster-monitoring-operator/pull/572) * [Bug 1773246](https://bugzilla.redhat.com/show_bug.cgi?id=1773246): Bump telemeter to get whitelist changes for virt_platform [#573](https://github.com/openshift/cluster-monitoring-operator/pull/573) * [Bug 1773246](https://bugzilla.redhat.com/show_bug.cgi?id=1773246): Add a rule that sums the nodes reporting virt_platform types [#557](https://github.com/openshift/cluster-monitoring-operator/pull/557) * [Bug 1770779](https://bugzilla.redhat.com/show_bug.cgi?id=1770779): Fix filesystem alerts [#540](https://github.com/openshift/cluster-monitoring-operator/pull/540) * [Bug 1763057](https://bugzilla.redhat.com/show_bug.cgi?id=1763057): pkg/client: Fix setting number of unavailable pods for DaemonSet [#513](https://github.com/openshift/cluster-monitoring-operator/pull/513) * [Bug 1761887](https://bugzilla.redhat.com/show_bug.cgi?id=1761887): tasks/prometheusoperator: Change deployment selector migration strategy [#507](https://github.com/openshift/cluster-monitoring-operator/pull/507) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/6aaffce338682078dca26c4562f7422ee3e99414...add5655ff38248a0c18492b8a0e7de92f70213b9) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/6d9c42b2f2d18932036a4d34b0ce14f192a80584) * [Bug 1785728](https://bugzilla.redhat.com/show_bug.cgi?id=1785728): openshift-sdn, CNO: handle new kubeconfig path [#431](https://github.com/openshift/cluster-network-operator/pull/431) * [Bug 1778314](https://bugzilla.redhat.com/show_bug.cgi?id=1778314): False Alarm - SDN pod has gone too long without syncing iptables rule [#416](https://github.com/openshift/cluster-network-operator/pull/416) * [Bug 1778235](https://bugzilla.redhat.com/show_bug.cgi?id=1778235): network operator crashes when infra.status.platformStatus is missing [#407](https://github.com/openshift/cluster-network-operator/pull/407) * [Bug 1770223](https://bugzilla.redhat.com/show_bug.cgi?id=1770223): Reverts PR #388 [#405](https://github.com/openshift/cluster-network-operator/pull/405) * [Bug 1769482](https://bugzilla.redhat.com/show_bug.cgi?id=1769482): pkg/controller/operconfig/operconfig_controller: Add operator namespace to relatedObjects [#387](https://github.com/openshift/cluster-network-operator/pull/387) * [Bug 1760790](https://bugzilla.redhat.com/show_bug.cgi?id=1760790): Fix dereference in macvlan IPAM validation function (backport 4.2) [#349](https://github.com/openshift/cluster-network-operator/pull/349) * [Bug 1766066](https://bugzilla.redhat.com/show_bug.cgi?id=1766066): Revert "Merge pull request #334 from danehans/bz_1758656" [#388](https://github.com/openshift/cluster-network-operator/pull/388) * [Bug 1758656](https://bugzilla.redhat.com/show_bug.cgi?id=1758656): Removes external api server from default noProxy [#334](https://github.com/openshift/cluster-network-operator/pull/334) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/1eed8132527076b9ffca3dc244001a39855f1545...6d9c42b2f2d18932036a4d34b0ce14f192a80584) ### [cluster-node-tuned](https://github.com/openshift/openshift-tuned/tree/eeaa972122468e5521344d3d88e18565f308c304) * [Bug 1769832](https://bugzilla.redhat.com/show_bug.cgi?id=1769832): [release-4.2] Improve scalability of openshift-tuned. [#32](https://github.com/openshift/openshift-tuned/pull/32) * [Full changelog](https://github.com/openshift/openshift-tuned/compare/757086bd35f7b2d70c669da9629ebd5eb651262e...eeaa972122468e5521344d3d88e18565f308c304) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/f135787cf9cd2e23a27f7a55ff98d40f486d66a5) * [Bug 1795671](https://bugzilla.redhat.com/show_bug.cgi?id=1795671): Do not set owner references on tuned ServiceAccount (4.2) [#109](https://github.com/openshift/cluster-node-tuning-operator/pull/109) * [Bug 1769471](https://bugzilla.redhat.com/show_bug.cgi?id=1769471): Use net.ipv4.conf.all.arp_announce=2 in the openshift profile. [#93](https://github.com/openshift/cluster-node-tuning-operator/pull/93) * [Bug 1766628](https://bugzilla.redhat.com/show_bug.cgi?id=1766628): Bump PID limits to help capture goroutine stack traces [#87](https://github.com/openshift/cluster-node-tuning-operator/pull/87) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/ee308040a94323ea7cac103d41812ef1d2fdcd89...f135787cf9cd2e23a27f7a55ff98d40f486d66a5) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/37968e2ae5136b02fc5376bcc321c8b4ba84029e) * [Bug 1805615](https://bugzilla.redhat.com/show_bug.cgi?id=1805615): no longer gate removed processing when imagestreams in progress [#234](https://github.com/openshift/cluster-samples-operator/pull/234) * [Bug 1805250](https://bugzilla.redhat.com/show_bug.cgi?id=1805250): manifests: add openshift/oauth-proxy:v4.4 image [#248](https://github.com/openshift/cluster-samples-operator/pull/248) * [Bug 1779935](https://bugzilla.redhat.com/show_bug.cgi?id=1779935): set version to start for s390/ppc until we have actual samples [#206](https://github.com/openshift/cluster-samples-operator/pull/206) * [Bug 1775333](https://bugzilla.redhat.com/show_bug.cgi?id=1775333): fetch arch from GOARCH, allow for z/ppc [#200](https://github.com/openshift/cluster-samples-operator/pull/200) * [Bug 1772178](https://bugzilla.redhat.com/show_bug.cgi?id=1772178): no longer gate setting progressing to false on in flight imagestream … [#199](https://github.com/openshift/cluster-samples-operator/pull/199) * [Bug 1768816](https://bugzilla.redhat.com/show_bug.cgi?id=1768816): retry every failed IST; track retry on imagestream basis vs. global b… [#196](https://github.com/openshift/cluster-samples-operator/pull/196) * [Bug 1763891](https://bugzilla.redhat.com/show_bug.cgi?id=1763891): retry failed imagestream imports more than once [#189](https://github.com/openshift/cluster-samples-operator/pull/189) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/ee6f90967b5bb106a76fffb6600fd36352490876...37968e2ae5136b02fc5376bcc321c8b4ba84029e) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/8682a2af65d0a2199432b97db531ddfe68e5d9b2) * [Bug 1753355](https://bugzilla.redhat.com/show_bug.cgi?id=1753355): Enables updating of StorageClass if a change is detected. [#48](https://github.com/openshift/cluster-storage-operator/pull/48) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/7c627a01ca2b85f5dfdd901950398c697e3c87e9...8682a2af65d0a2199432b97db531ddfe68e5d9b2) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/38f67ee876e24828dba0d926515aedc966f95cc6) * [Bug 1846177](https://bugzilla.redhat.com/show_bug.cgi?id=1846177): pkg/cvo/sync_worker: Do not treat "All errors were context errors..." as success [#382](https://github.com/openshift/cluster-version-operator/pull/382) * [Bug 1800346](https://bugzilla.redhat.com/show_bug.cgi?id=1800346): lib/resourcemerge/core: Fix panic on container removal [#314](https://github.com/openshift/cluster-version-operator/pull/314) * [Bug 1792005](https://bugzilla.redhat.com/show_bug.cgi?id=1792005): lib/resourcemerge/core: Clear livenessProbe and readinessProbe if nil in required [#300](https://github.com/openshift/cluster-version-operator/pull/300) * [Bug 1802248](https://bugzilla.redhat.com/show_bug.cgi?id=1802248): lib/resourcemerge: remove ports which are no longer required [#325](https://github.com/openshift/cluster-version-operator/pull/325) * [Bug 1786315](https://bugzilla.redhat.com/show_bug.cgi?id=1786315): pkg/cvo/updatepayload: Drop ephemeral-storage request [#288](https://github.com/openshift/cluster-version-operator/pull/288) * [Bug 1785533](https://bugzilla.redhat.com/show_bug.cgi?id=1785533): Set resource requests on the extract job [#286](https://github.com/openshift/cluster-version-operator/pull/286) * [Bug 1775836](https://bugzilla.redhat.com/show_bug.cgi?id=1775836): Add proxy support for CVO [#271](https://github.com/openshift/cluster-version-operator/pull/271) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/e5e468961b5fd687f65844d511690d7ed0046447...38f67ee876e24828dba0d926515aedc966f95cc6) ### [console](https://github.com/openshift/console/tree/3b1ae8627c22b6bcc8e29e5810179075116f0a10) * [Bug 1807294](https://bugzilla.redhat.com/show_bug.cgi?id=1807294): Fix sort criteria for capacity for storage tables [#4688](https://github.com/openshift/console/pull/4688) * [Bug 1798646](https://bugzilla.redhat.com/show_bug.cgi?id=1798646): Backport fix for incorrect channel displayed in OperatorHub [#4379](https://github.com/openshift/console/pull/4379) * [Bug 1796634](https://bugzilla.redhat.com/show_bug.cgi?id=1796634): Fix bug where booleanSwitch does not default to false [#4142](https://github.com/openshift/console/pull/4142) * [Bug 1787585](https://bugzilla.redhat.com/show_bug.cgi?id=1787585): Fix off by one bug in metrics rows count [#3859](https://github.com/openshift/console/pull/3859) * [Bug 1790557](https://bugzilla.redhat.com/show_bug.cgi?id=1790557): Fix Pipeline Params [#3983](https://github.com/openshift/console/pull/3983) * [Bug 1774843](https://bugzilla.redhat.com/show_bug.cgi?id=1774843): Fix clone build access review [#3683](https://github.com/openshift/console/pull/3683) * [Bug 1791182](https://bugzilla.redhat.com/show_bug.cgi?id=1791182): Add 4.3 channels to UI in 4.2.z [#3991](https://github.com/openshift/console/pull/3991) * [Bug 1789903](https://bugzilla.redhat.com/show_bug.cgi?id=1789903): Fixed the display issue in operand detail view, when the value of the… [#3920](https://github.com/openshift/console/pull/3920) * [Bug 1789119](https://bugzilla.redhat.com/show_bug.cgi?id=1789119): Support for Pipeline Operator 0.9 on OpenShift 4.2 [#3898](https://github.com/openshift/console/pull/3898) * [Bug 1786591](https://bugzilla.redhat.com/show_bug.cgi?id=1786591): Shows the values in expand modal dropdown [#3843](https://github.com/openshift/console/pull/3843) * [Bug 1788705](https://bugzilla.redhat.com/show_bug.cgi?id=1788705): Lazy load images in OperatorHub [#3885](https://github.com/openshift/console/pull/3885) * [Bug 1776164](https://bugzilla.redhat.com/show_bug.cgi?id=1776164): Filtering Storage Class logic added [release-4.2] [#3576](https://github.com/openshift/console/pull/3576) * [Bug 1781055](https://bugzilla.redhat.com/show_bug.cgi?id=1781055): Fix new/old alerts comparison in withDashboardResources [#3638](https://github.com/openshift/console/pull/3638) * [Bug 1781146](https://bugzilla.redhat.com/show_bug.cgi?id=1781146): Fixes selection of SC from dropdown [#3748](https://github.com/openshift/console/pull/3748) * [Bug 1775217](https://bugzilla.redhat.com/show_bug.cgi?id=1775217): Fix access review message for namespaced resources [#3527](https://github.com/openshift/console/pull/3527) * [Bug 1776769](https://bugzilla.redhat.com/show_bug.cgi?id=1776769): Added CSI provisioner to storage class [#3595](https://github.com/openshift/console/pull/3595) * [Bug 1760357](https://bugzilla.redhat.com/show_bug.cgi?id=1760357): "VolumeMode Block" should be set for RBD+RWX in pvc creation [#3152](https://github.com/openshift/console/pull/3152) * [Bug 1775720](https://bugzilla.redhat.com/show_bug.cgi?id=1775720): Backport to 4.2 - Chargeback Reports and ReportQueries change to v1 apiVersion [#3523](https://github.com/openshift/console/pull/3523) * [Bug 1774508](https://bugzilla.redhat.com/show_bug.cgi?id=1774508): webpack: include contenthash in CSS filenames [#3491](https://github.com/openshift/console/pull/3491) * [Bug 1774653](https://bugzilla.redhat.com/show_bug.cgi?id=1774653): Fix overview dashboard prometheus queries [#3557](https://github.com/openshift/console/pull/3557) * [Bug 1772009](https://bugzilla.redhat.com/show_bug.cgi?id=1772009): Increase OSD size from 1Ti to 2Ti [#3502](https://github.com/openshift/console/pull/3502) * [Bug 1777012](https://bugzilla.redhat.com/show_bug.cgi?id=1777012): Align info tootip [#3594](https://github.com/openshift/console/pull/3594) * [Bug 1756403](https://bugzilla.redhat.com/show_bug.cgi?id=1756403): Backport for disabling ROX for the OCS based SC when creating PVs [#3414](https://github.com/openshift/console/pull/3414) * [Bug 1767865](https://bugzilla.redhat.com/show_bug.cgi?id=1767865): Bump kubevirt-web-ui-components-v0.1.44-2 [#3231](https://github.com/openshift/console/pull/3231) * [Bug 1768658](https://bugzilla.redhat.com/show_bug.cgi?id=1768658): Fix ScrollToTopOnMount for MS Edge [#3247](https://github.com/openshift/console/pull/3247) * [Bug 1767961](https://bugzilla.redhat.com/show_bug.cgi?id=1767961): Client Fix for Pipeline Operator 0.7.0 [#3220](https://github.com/openshift/console/pull/3220) * [Bug 1766376](https://bugzilla.redhat.com/show_bug.cgi?id=1766376): Incorrect link to unhealthy resource on Object Service Dashboard [#3126](https://github.com/openshift/console/pull/3126) * [Bug 1756935](https://bugzilla.redhat.com/show_bug.cgi?id=1756935): Modified the text to remove tainting of nodes text on ocs install flow [#3117](https://github.com/openshift/console/pull/3117) * [Bug 1756935](https://bugzilla.redhat.com/show_bug.cgi?id=1756935): Removed the tainting of nodes from ocs install flow [#3116](https://github.com/openshift/console/pull/3116) * [Bug 1755980](https://bugzilla.redhat.com/show_bug.cgi?id=1755980): Removes Add capacity option for other storage operators [#2863](https://github.com/openshift/console/pull/2863) * [Bug 1761879](https://bugzilla.redhat.com/show_bug.cgi?id=1761879): Fix crash with operand resources [#2981](https://github.com/openshift/console/pull/2981) * [Bug 1760044](https://bugzilla.redhat.com/show_bug.cgi?id=1760044): Console workload show restricted acccess if knative serverless TP1 operator is installed and logged in as non admin [#2960](https://github.com/openshift/console/pull/2960) * [Bug 1757134](https://bugzilla.redhat.com/show_bug.cgi?id=1757134): Modify View Update Strategy Descriptor [#2993](https://github.com/openshift/console/pull/2993) * tests: Combine e2e and olm tests suites back into one [#3092](https://github.com/openshift/console/pull/3092) * [Full changelog](https://github.com/openshift/console/compare/488d7636eaabc6ab3bb9b08023f48d12875356c0...3b1ae8627c22b6bcc8e29e5810179075116f0a10) ### [console-operator](https://github.com/openshift/console-operator/tree/c7f433dbe8da9750b119cfad367d51f127baf826) * [Bug 1773808](https://bugzilla.redhat.com/show_bug.cgi?id=1773808): Enable multi-arch support in downloads [4.2] [#352](https://github.com/openshift/console-operator/pull/352) * [Bug 1764227](https://bugzilla.redhat.com/show_bug.cgi?id=1764227): Incorrect validation pattern on ConsoleCLIDownloads Href field [#324](https://github.com/openshift/console-operator/pull/324) * [Full changelog](https://github.com/openshift/console-operator/compare/ea390b2345ff653a98ab7b5c65f6b907edef4e4b...c7f433dbe8da9750b119cfad367d51f127baf826) ### [docker-builder](https://github.com/openshift/builder/tree/942630c84b34f4cb6ccae4f1ba08a20dc8546fe6) * [Bug 1802888](https://bugzilla.redhat.com/show_bug.cgi?id=1802888): bump(*): CVE-2020-8945 [#137](https://github.com/openshift/builder/pull/137) * [Bug 1754680](https://bugzilla.redhat.com/show_bug.cgi?id=1754680): do not force skip tls verify to true on image source injection [#111](https://github.com/openshift/builder/pull/111) * [Full changelog](https://github.com/openshift/builder/compare/2f99856fb715f9ae1584a996ddef0770d3952167...942630c84b34f4cb6ccae4f1ba08a20dc8546fe6) ### [docker-registry](https://github.com/openshift/image-registry/tree/a7655f1922932b3b0b2a70c2f20e4e6fbc8c70a0) * Use Spyglass-compatible name for junit reports [#212](https://github.com/openshift/image-registry/pull/212) * [Bug 1755780](https://bugzilla.redhat.com/show_bug.cgi?id=1755780): Checking if image name is valid, prune otherwise. [#197](https://github.com/openshift/image-registry/pull/197) * [Bug 1755780](https://bugzilla.redhat.com/show_bug.cgi?id=1755780): Disabled gosec [#200](https://github.com/openshift/image-registry/pull/200) * [Full changelog](https://github.com/openshift/image-registry/compare/9beb3f4d795f66d9c0ecf07665d6c7837ab5dff0...a7655f1922932b3b0b2a70c2f20e4e6fbc8c70a0) ### [haproxy-router](https://github.com/openshift/router/tree/9d1233b4a7c230969f0f7e1679caedcc2ba64dee) * [Bug 1809398](https://bugzilla.redhat.com/show_bug.cgi?id=1809398): Dynamically reload metrics certificate/key file changes [#96](https://github.com/openshift/router/pull/96) * [Bug 1758373](https://bugzilla.redhat.com/show_bug.cgi?id=1758373): fix haproxy reload crash when processing ECDSA keys [#44](https://github.com/openshift/router/pull/44) * [Full changelog](https://github.com/openshift/router/compare/e7479192fadbc469e6f16ef752c5acfa99519690...9d1233b4a7c230969f0f7e1679caedcc2ba64dee) ### [hyperkube, tests](https://github.com/openshift/origin/tree/ae5fcd2fea15b3bb121e6d7169218682d4b91779) * [Bug 1825372](https://bugzilla.redhat.com/show_bug.cgi?id=1825372): Revert "Bug 1840872: UPSTREAM: 88440: Report deleted pod status correctly" [#25149](https://github.com/openshift/origin/pull/25149) * [Bug 1822486](https://bugzilla.redhat.com/show_bug.cgi?id=1822486): UPSTREAM: 89794: Clean up event messages for errors [#25050](https://github.com/openshift/origin/pull/25050) * [Bug 1840872](https://bugzilla.redhat.com/show_bug.cgi?id=1840872): UPSTREAM: 88440: Report deleted pod status correctly [#25038](https://github.com/openshift/origin/pull/25038) * [Bug 1810136](https://bugzilla.redhat.com/show_bug.cgi?id=1810136): UPSTREAM: 88251: Partially fix incorrect configuration of kubepods.slice unit by kubelet [#24631](https://github.com/openshift/origin/pull/24631) * [Bug 1808549](https://bugzilla.redhat.com/show_bug.cgi?id=1808549): UPSTREAM: 88146: remove duplicate pv delete commands [#24623](https://github.com/openshift/origin/pull/24623) * [Bug 1794854](https://bugzilla.redhat.com/show_bug.cgi?id=1794854): UPSTREAM: 86195: Sync the status of static Pods [#24454](https://github.com/openshift/origin/pull/24454) * [Bug 1803083](https://bugzilla.redhat.com/show_bug.cgi?id=1803083): 4.2: UPSTREAM: 87673: blank out value for unbounded client label [#24543](https://github.com/openshift/origin/pull/24543) * [Bug 1817619](https://bugzilla.redhat.com/show_bug.cgi?id=1817619): make s2i-dropcaps more reliable by not depending on a yum install to [#24785](https://github.com/openshift/origin/pull/24785) * [Bug 1791855](https://bugzilla.redhat.com/show_bug.cgi?id=1791855): backport e2e testing oauth-server fixes [#24747](https://github.com/openshift/origin/pull/24747) * [Bug 1791211](https://bugzilla.redhat.com/show_bug.cgi?id=1791211): test/extended/prometheus: exclude AlertmanagerReceiversNotConfigured from checking [#24638](https://github.com/openshift/origin/pull/24638) * [Bug 1794830](https://bugzilla.redhat.com/show_bug.cgi?id=1794830): move more image-eco db template tests from upstream repos to samples operator [#24511](https://github.com/openshift/origin/pull/24511) * [Bug 1800894](https://bugzilla.redhat.com/show_bug.cgi?id=1800894): test/cmd: build.sh can't reach old openshift/origin:v1.1 [#24521](https://github.com/openshift/origin/pull/24521) * [Bug 1765249](https://bugzilla.redhat.com/show_bug.cgi?id=1765249): CL fix fixture path & update config path, quickstarts & bindata [#24127](https://github.com/openshift/origin/pull/24127) * [Bug 1794813](https://bugzilla.redhat.com/show_bug.cgi?id=1794813): UPSTREAM: 79160: e2e Flake: Pass updated deployment for comparison of replica count [#24474](https://github.com/openshift/origin/pull/24474) * [Bug 1794830](https://bugzilla.redhat.com/show_bug.cgi?id=1794830): pin image-eco sclorg samples usage to specific versions to shield from upstream development changes [#24457](https://github.com/openshift/origin/pull/24457) * [Bug 1785268](https://bugzilla.redhat.com/show_bug.cgi?id=1785268): bump(*): pin ghodss/yaml [#24331](https://github.com/openshift/origin/pull/24331) * [Bug 1784881](https://bugzilla.redhat.com/show_bug.cgi?id=1784881): fix up ruby-25-centos7 tag check logic [#24325](https://github.com/openshift/origin/pull/24325) * [Bug 1781281](https://bugzilla.redhat.com/show_bug.cgi?id=1781281): UPSTREAM: 86009: kubelet: guarantee at most only one cinfo per containerID [#24271](https://github.com/openshift/origin/pull/24271) * [Bug 1781302](https://bugzilla.redhat.com/show_bug.cgi?id=1781302): Handle build controller skew in tests [#24273](https://github.com/openshift/origin/pull/24273) * [Bug 1764044](https://bugzilla.redhat.com/show_bug.cgi?id=1764044): 4.2: UPSTREAM: 83567: Fix attachment of just detached AWS volumes [#24240](https://github.com/openshift/origin/pull/24240) * [Bug 1772087](https://bugzilla.redhat.com/show_bug.cgi?id=1772087): Fix RS expectations [#24144](https://github.com/openshift/origin/pull/24144) * [Bug 1762658](https://bugzilla.redhat.com/show_bug.cgi?id=1762658): UPSTREAM: 83747: Improve efficiency of csiMountMgr.GetAttributes [#24006](https://github.com/openshift/origin/pull/24006) * [Bug 1775736](https://bugzilla.redhat.com/show_bug.cgi?id=1775736): KubeAPI server doesn't accept large patch requests [#24190](https://github.com/openshift/origin/pull/24190) * [Bug 1767182](https://bugzilla.redhat.com/show_bug.cgi?id=1767182): test/extended/prometheus: run full promQL queries and improve reporting firing alerts [#24152](https://github.com/openshift/origin/pull/24152) * [Bug 1758158](https://bugzilla.redhat.com/show_bug.cgi?id=1758158): aws: sort addresses of multiple interfaces correctly [4.2] [#23908](https://github.com/openshift/origin/pull/23908) * [Bug 1769950](https://bugzilla.redhat.com/show_bug.cgi?id=1769950): React to openshift/ruby-hello-world update [#24109](https://github.com/openshift/origin/pull/24109) * [Bug 1765179](https://bugzilla.redhat.com/show_bug.cgi?id=1765179): e2e: fix flaky route wait functions [#24063](https://github.com/openshift/origin/pull/24063) * [Bug 1757807](https://bugzilla.redhat.com/show_bug.cgi?id=1757807): e2e: stabilize ingress metrics tests [#23901](https://github.com/openshift/origin/pull/23901) * [Bug 1766365](https://bugzilla.redhat.com/show_bug.cgi?id=1766365): TestNamespaceCondition integration test fails [#23910](https://github.com/openshift/origin/pull/23910) * [Bug 1759181](https://bugzilla.redhat.com/show_bug.cgi?id=1759181): UPSTREAM: <carry>:Add a RBAC checker for external IP ranger [#23955](https://github.com/openshift/origin/pull/23955) * [Bug 1758682](https://bugzilla.redhat.com/show_bug.cgi?id=1758682): Make the quorum restore disruptive test to be resilient and add disruptive suite [#23877](https://github.com/openshift/origin/pull/23877) * [Bug 1757234](https://bugzilla.redhat.com/show_bug.cgi?id=1757234): Cherry-pick: Kubelet should use watch-based configMapAndSecretChangeDetectionStrategy [#23887](https://github.com/openshift/origin/pull/23887) * [Bug 1761814](https://bugzilla.redhat.com/show_bug.cgi?id=1761814): Informers can miss notifications [#23965](https://github.com/openshift/origin/pull/23965) * [Full changelog](https://github.com/openshift/origin/compare/7e13ab9a70bd8850f6c975b32a0861bf31261b40...ae5fcd2fea15b3bb121e6d7169218682d4b91779) ### [insights-operator](https://github.com/openshift/insights-operator/tree/39dbbca170d2b1baa5919fa8c5b9158b9ad7dd39) * [Bug 1798889](https://bugzilla.redhat.com/show_bug.cgi?id=1798889): initial commit for tests for release 4.2 [#57](https://github.com/openshift/insights-operator/pull/57) * [Bug 1788116](https://bugzilla.redhat.com/show_bug.cgi?id=1788116): override node selector (4.2) [#64](https://github.com/openshift/insights-operator/pull/64) * Backport code owners to 4.2 [#75](https://github.com/openshift/insights-operator/pull/75) * Added dummy e2e target for release 4.2 [#54](https://github.com/openshift/insights-operator/pull/54) * [Bug 1767719](https://bugzilla.redhat.com/show_bug.cgi?id=1767719): Fix the event reporting in insights operator [#56](https://github.com/openshift/insights-operator/pull/56) * [Bug 1767719](https://bugzilla.redhat.com/show_bug.cgi?id=1767719): gather: include network events for namespace that has degraded operator [#38](https://github.com/openshift/insights-operator/pull/38) * [Full changelog](https://github.com/openshift/insights-operator/compare/27768551b735b1cd6a4c9363db8b71a2a2b5c471...39dbbca170d2b1baa5919fa8c5b9158b9ad7dd39) ### [jenkins, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/b1276b03231e5c93cb4acc1a99b4e70048ca6271) * [Bug 1810389](https://bugzilla.redhat.com/show_bug.cgi?id=1810389): Bump login plugin to 1.0.23 [#1031](https://github.com/openshift/jenkins/pull/1031) * [Bug 1793321](https://bugzilla.redhat.com/show_bug.cgi?id=1793321): [4.2] Remove use of /etc/passwd and upgrade plugins versions [#1022](https://github.com/openshift/jenkins/pull/1022) * [Bug 1773434](https://bugzilla.redhat.com/show_bug.cgi?id=1773434): Bump Sync Plugin to 1.0.42 #980 [#980](https://github.com/openshift/jenkins/pull/980) * [Bug 1764461](https://bugzilla.redhat.com/show_bug.cgi?id=1764461): cve-2019-10432: Stored xss vulnerability [#981](https://github.com/openshift/jenkins/pull/981) * [Full changelog](https://github.com/openshift/jenkins/compare/e13fbe9ff385ff29f7627aecbfb0727bbfe2d565...b1276b03231e5c93cb4acc1a99b4e70048ca6271) ### [kube-client-agent, kube-etcd-signer-server](https://github.com/openshift/kubecsr/tree/cc0d71d58118b4c65fe3fa2b4f2e4747c5774668) * [Bug 1769992](https://bugzilla.redhat.com/show_bug.cgi?id=1769992): pkg/certsigner/signer: Add "client" usage to server profile [#17](https://github.com/openshift/kubecsr/pull/17) * [Full changelog](https://github.com/openshift/kubecsr/compare/227189dae8e64eca5ad13a8bb96df8d8d5502f35...cc0d71d58118b4c65fe3fa2b4f2e4747c5774668) ### [kube-proxy, node, sdn-controller](https://github.com/openshift/sdn/tree/929bc5bb40a9e53535add7a613f1dd6f6b21ffb6) * [Bug 1840763](https://bugzilla.redhat.com/show_bug.cgi?id=1840763): Fix egressVXLANMonitor and egressIPTracker deadlock [#147](https://github.com/openshift/sdn/pull/147) * [Bug 1760948](https://bugzilla.redhat.com/show_bug.cgi?id=1760948): Adjust SDN setup so AlreadySetUp check will fail on a half-set-up node [#87](https://github.com/openshift/sdn/pull/87) * [Bug 1816389](https://bugzilla.redhat.com/show_bug.cgi?id=1816389): handle pod updates correctly in networkpolicy [#130](https://github.com/openshift/sdn/pull/130) * [Bug 1797043](https://bugzilla.redhat.com/show_bug.cgi?id=1797043): [4.2] Clean up stale egress IP iptables rules on startup [#101](https://github.com/openshift/sdn/pull/101) * [Bug 1806648](https://bugzilla.redhat.com/show_bug.cgi?id=1806648): Fix pod startup reattach/kill loop [#110](https://github.com/openshift/sdn/pull/110) * [Bug 1793952](https://bugzilla.redhat.com/show_bug.cgi?id=1793952): [4.2] Fix reinitialization of deny-all NetworkPolicy state on restart [#105](https://github.com/openshift/sdn/pull/105) * [Bug 1794029](https://bugzilla.redhat.com/show_bug.cgi?id=1794029): [4.2] Use k8s.io/client-go fork with informer fix, run update-deps [#95](https://github.com/openshift/sdn/pull/95) * [Bug 1772592](https://bugzilla.redhat.com/show_bug.cgi?id=1772592): Make DNS querying more efficient by querying once per dns name [#72](https://github.com/openshift/sdn/pull/72) * [Bug 1790704](https://bugzilla.redhat.com/show_bug.cgi?id=1790704): proxy: add handler with same ResyncPeriod as shared informer. [#90](https://github.com/openshift/sdn/pull/90) * [Bug 1772905](https://bugzilla.redhat.com/show_bug.cgi?id=1772905): [4.2] Clean up egress IPs on startup [#73](https://github.com/openshift/sdn/pull/73) * [Bug 1768436](https://bugzilla.redhat.com/show_bug.cgi?id=1768436): UPSTREAM: 74840: kube-proxy: Drop packets in INVALID state [#56](https://github.com/openshift/sdn/pull/56) * [Bug 1769808](https://bugzilla.redhat.com/show_bug.cgi?id=1769808): Use protobuf for SDN where possible for better performance [#68](https://github.com/openshift/sdn/pull/68) * [Full changelog](https://github.com/openshift/sdn/compare/a8140cc16f57414529bde1d8a010ec6a4292bead...929bc5bb40a9e53535add7a613f1dd6f6b21ffb6) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/87d0a1bf2af11636cef2089f4e575a1fbb5db6af) * [Bug 1761507](https://bugzilla.redhat.com/show_bug.cgi?id=1761507): Avoid controller crash upon unexpected neutron error handling ports [#72](https://github.com/openshift/kuryr-kubernetes/pull/72) * [Bug 1763279](https://bugzilla.redhat.com/show_bug.cgi?id=1763279): Remove namespace leftover upon kuryr-controller restart [#74](https://github.com/openshift/kuryr-kubernetes/pull/74) * [Bug 1759986](https://bugzilla.redhat.com/show_bug.cgi?id=1759986): Fix race conditions between handling ResourceNotReady and deletions [#71](https://github.com/openshift/kuryr-kubernetes/pull/71) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/8c72c8d6d368daa2d6d1e9a6bc32b3e3dcc8551d...87d0a1bf2af11636cef2089f4e575a1fbb5db6af) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/79d3a265492b1658d57ca6ff1f610ebd7efc59cf) * [Bug 1783013](https://bugzilla.redhat.com/show_bug.cgi?id=1783013): Replace guestfish with config drive on s390x platform [#183](https://github.com/openshift/cluster-api-provider-libvirt/pull/183) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/8bf0d9472acb65f1c5134d847f6a5f7e5258a5b3...79d3a265492b1658d57ca6ff1f610ebd7efc59cf) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/204f5642bd3adbfa5c85e74958223fb0cf8ad2db) * [Bug 1840461](https://bugzilla.redhat.com/show_bug.cgi?id=1840461): Update the crio.conf template to have log_dir [#1753](https://github.com/openshift/machine-config-operator/pull/1753) * [Bug 1834823](https://bugzilla.redhat.com/show_bug.cgi?id=1834823): Write environment variables needed for etcdctl execution into ~/.profile [#1727](https://github.com/openshift/machine-config-operator/pull/1727) * [Bug 1785219](https://bugzilla.redhat.com/show_bug.cgi?id=1785219): [release-4.2] Discard audit messages from journald [#1350](https://github.com/openshift/machine-config-operator/pull/1350) * [Bug 1797790](https://bugzilla.redhat.com/show_bug.cgi?id=1797790): [release-4.2] prevent hitting annotation max size limit on nodes (cherry-pick) [#1432](https://github.com/openshift/machine-config-operator/pull/1432) * [Bug 1797038](https://bugzilla.redhat.com/show_bug.cgi?id=1797038): Get etcdctl binary from the etcd image and not from the upstream releases [#1464](https://github.com/openshift/machine-config-operator/pull/1464) * [Bug 1795561](https://bugzilla.redhat.com/show_bug.cgi?id=1795561): machineconfig.crd.yaml: add passwd schema [#1435](https://github.com/openshift/machine-config-operator/pull/1435) * [Bug 1781665](https://bugzilla.redhat.com/show_bug.cgi?id=1781665): pkg/daemon: randomize pivot container name [#1347](https://github.com/openshift/machine-config-operator/pull/1347) * [Bug 1789248](https://bugzilla.redhat.com/show_bug.cgi?id=1789248): cleanup sdn ips on reboot [#1362](https://github.com/openshift/machine-config-operator/pull/1362) * [Bug 1782152](https://bugzilla.redhat.com/show_bug.cgi?id=1782152): templates/container-storage: Add a "this is generated" note [#1323](https://github.com/openshift/machine-config-operator/pull/1323) * [Bug 1789565](https://bugzilla.redhat.com/show_bug.cgi?id=1789565): [release-4.2] Fix osImageURL upgrade race [#1358](https://github.com/openshift/machine-config-operator/pull/1358) * [Bug 1766514](https://bugzilla.redhat.com/show_bug.cgi?id=1766514): [release-4.2] pkg/daemon: remove force validation file if it exists [#1148](https://github.com/openshift/machine-config-operator/pull/1148) * [Bug 1772680](https://bugzilla.redhat.com/show_bug.cgi?id=1772680): [release-4.2] pkg/controller: do not enqueue a nil MCP [#1282](https://github.com/openshift/machine-config-operator/pull/1282) * [Bug 1763695](https://bugzilla.redhat.com/show_bug.cgi?id=1763695): [release-4.2] pkg/daemon: drain before applying changes [#1194](https://github.com/openshift/machine-config-operator/pull/1194) * [Bug 1765759](https://bugzilla.redhat.com/show_bug.cgi?id=1765759): templates/*etcd-member.yaml: give etcd-metrics container privilege [#1263](https://github.com/openshift/machine-config-operator/pull/1263) * [Bug 1759611](https://bugzilla.redhat.com/show_bug.cgi?id=1759611): [release-4.2] lib/resourcemerge: account for proxy changes [#1175](https://github.com/openshift/machine-config-operator/pull/1175) * [Bug 1769581](https://bugzilla.redhat.com/show_bug.cgi?id=1769581): 4.2: Specfile: Make `%global commit ...` overridable [#1249](https://github.com/openshift/machine-config-operator/pull/1249) * [Bug 1764720](https://bugzilla.redhat.com/show_bug.cgi?id=1764720): [release-4.2] kubelet: add dependency on network-online.target [#1212](https://github.com/openshift/machine-config-operator/pull/1212) * [Bug 1755557](https://bugzilla.redhat.com/show_bug.cgi?id=1755557): Ensure ETCD_INITIAL_CLUSTER is preserved during restore [#1134](https://github.com/openshift/machine-config-operator/pull/1134) * [Bug 1757390](https://bugzilla.redhat.com/show_bug.cgi?id=1757390): Revert: "Temporarily put OpenStack infra pods into non-existing namespace" [#1143](https://github.com/openshift/machine-config-operator/pull/1143) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/d73d5c6c95499f2820853c799366a157b0c0bd09...204f5642bd3adbfa5c85e74958223fb0cf8ad2db) ### [oauth-proxy](https://github.com/openshift/oauth-proxy/tree/f703423f84b93606ab27620aa6f1117d4758f701) * [Bug 1809258](https://bugzilla.redhat.com/show_bug.cgi?id=1809258): Reload serving certs [#164](https://github.com/openshift/oauth-proxy/pull/164) * [Bug 1762748](https://bugzilla.redhat.com/show_bug.cgi?id=1762748): Fix high memory usage [#139](https://github.com/openshift/oauth-proxy/pull/139) * [Full changelog](https://github.com/openshift/oauth-proxy/compare/104fe17337fb627194e0848d2907a73016fef000...f703423f84b93606ab27620aa6f1117d4758f701) ### [oauth-server](https://github.com/openshift/oauth-server/tree/3ac077fa8097fb851532453fa6e772e1dcfcb3bb) * [Bug 1768785](https://bugzilla.redhat.com/show_bug.cgi?id=1768785): RequestHeaders IdP: fix TLS handshake [#21](https://github.com/openshift/oauth-server/pull/21) * [Full changelog](https://github.com/openshift/oauth-server/compare/6a862b409947ae919d6b0cdc4250b8734040c5c3...3ac077fa8097fb851532453fa6e772e1dcfcb3bb) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/5bfde78e8d058caaaf15a143316d924a4bdbdf78) * [Bug 1803084](https://bugzilla.redhat.com/show_bug.cgi?id=1803084): 4.2: UPSTREAM: 87673: blank out value for unbounded client label [#76](https://github.com/openshift/openshift-apiserver/pull/76) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/55d971b2b5aa43b2ae45fed148cf73c149ca79a7...5bfde78e8d058caaaf15a143316d924a4bdbdf78) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/5f125848149cc871d9b3c3a84668ad06acd28ea0) * [Bug 1802882](https://bugzilla.redhat.com/show_bug.cgi?id=1802882): fixes for CVE-2020-8945 [#109](https://github.com/openshift/openshift-controller-manager/pull/109) * [Bug 1767047](https://bugzilla.redhat.com/show_bug.cgi?id=1767047): add leader lock for cluster-policy-controller in scc_namespace_allocator controller [#42](https://github.com/openshift/openshift-controller-manager/pull/42) * [Bug 1754680](https://bugzilla.redhat.com/show_bug.cgi?id=1754680): add build ca bundle to init containers [#47](https://github.com/openshift/openshift-controller-manager/pull/47) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/76900b07c76cb81079d1421ac650c0d04c69a48f...5f125848149cc871d9b3c3a84668ad06acd28ea0) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/724678af9fae43bb638f2f65edfdf4b02cb5730c) * [Bug 1836447](https://bugzilla.redhat.com/show_bug.cgi?id=1836447): Generation bug [#1554](https://github.com/operator-framework/operator-lifecycle-manager/pull/1554) * [Bug 1843767](https://bugzilla.redhat.com/show_bug.cgi?id=1843767): fix(resolver): don't pick operator from same package when resolve requiredAPI [#1572](https://github.com/operator-framework/operator-lifecycle-manager/pull/1572) * [Bug 1841859](https://bugzilla.redhat.com/show_bug.cgi?id=1841859): fix(queues): use a single gc queue [#1561](https://github.com/operator-framework/operator-lifecycle-manager/pull/1561) * [Bug 1808422](https://bugzilla.redhat.com/show_bug.cgi?id=1808422): Don't block on ctx.Done() if startup fails [#1422](https://github.com/operator-framework/operator-lifecycle-manager/pull/1422) * [Bug 1798666](https://bugzilla.redhat.com/show_bug.cgi?id=1798666): Fix cases where an operator's ready channel may never close. [#1281](https://github.com/operator-framework/operator-lifecycle-manager/pull/1281) * [Bug 1805575](https://bugzilla.redhat.com/show_bug.cgi?id=1805575): Remove run-level 1 from olm and openshift-operators namespaces [#1309](https://github.com/operator-framework/operator-lifecycle-manager/pull/1309) * [Bug 1805269](https://bugzilla.redhat.com/show_bug.cgi?id=1805269): Fix configmap registry server readiness probe timeouts [#1378](https://github.com/operator-framework/operator-lifecycle-manager/pull/1378) * [Bug 1809661](https://bugzilla.redhat.com/show_bug.cgi?id=1809661): Update subscription_sync_count to include the package name [#1367](https://github.com/operator-framework/operator-lifecycle-manager/pull/1367) * [Bug 1803148](https://bugzilla.redhat.com/show_bug.cgi?id=1803148): fix(packagemanifests): Fix index key func to avoid key collision [#1357](https://github.com/operator-framework/operator-lifecycle-manager/pull/1357) * [Bug 1797021](https://bugzilla.redhat.com/show_bug.cgi?id=1797021): Fix bad opgroup annotations [#1373](https://github.com/operator-framework/operator-lifecycle-manager/pull/1373) * [Bug 1796914](https://bugzilla.redhat.com/show_bug.cgi?id=1796914): packageserver update fails to adopt APIService [#1271](https://github.com/operator-framework/operator-lifecycle-manager/pull/1271) * [Bug 1774752](https://bugzilla.redhat.com/show_bug.cgi?id=1774752): schedule catalogsource pods to linux nodes only [#1145](https://github.com/operator-framework/operator-lifecycle-manager/pull/1145) * [Bug 1769561](https://bugzilla.redhat.com/show_bug.cgi?id=1769561): Replacing operator creates duplicate secrets [#1159](https://github.com/operator-framework/operator-lifecycle-manager/pull/1159) * [Bug 1787597](https://bugzilla.redhat.com/show_bug.cgi?id=1787597): fix(packageserver): cache packagemanifests [#1240](https://github.com/operator-framework/operator-lifecycle-manager/pull/1240) * [Bug 1749031](https://bugzilla.redhat.com/show_bug.cgi?id=1749031): Enable multiple namespaces sync if catsrc is updated in global ns [#1169](https://github.com/operator-framework/operator-lifecycle-manager/pull/1169) * [Bug 1775250](https://bugzilla.redhat.com/show_bug.cgi?id=1775250): make certificate updates live upon update [#1170](https://github.com/operator-framework/operator-lifecycle-manager/pull/1170) * [Bug 1767848](https://bugzilla.redhat.com/show_bug.cgi?id=1767848): Manual approval strategy ignored for subsequent release [#1112](https://github.com/operator-framework/operator-lifecycle-manager/pull/1112) * [Bug 1763749](https://bugzilla.redhat.com/show_bug.cgi?id=1763749): Prioritize APIs from same CatSrc [#1091](https://github.com/operator-framework/operator-lifecycle-manager/pull/1091) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/1c371728a2d5e65c970369c15ac17edb8fdb3442...724678af9fae43bb638f2f65edfdf4b02cb5730c) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/4a3f862f017c052290c0710a808c618ba3af58d0) * [Bug 1814012](https://bugzilla.redhat.com/show_bug.cgi?id=1814012): support serving marketplace prometheus metrics over https [#297](https://github.com/operator-framework/operator-marketplace/pull/297) * [Bug 1772768](https://bugzilla.redhat.com/show_bug.cgi?id=1772768): Schedule registry pods onto linux nodes only [#272](https://github.com/operator-framework/operator-marketplace/pull/272) * [Bug 1769841](https://bugzilla.redhat.com/show_bug.cgi?id=1769841): Don't create invalid deployment [#269](https://github.com/operator-framework/operator-marketplace/pull/269) * [Bug 1762006](https://bugzilla.redhat.com/show_bug.cgi?id=1762006): Assume available status is true without defaults [#263](https://github.com/operator-framework/operator-marketplace/pull/263) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/4ef67b2f50e9d884847c1c784b3a0040c45de1d1...4a3f862f017c052290c0710a808c618ba3af58d0) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/9f13be1d317c5c57b4ffb7102cee7b2c2f035cac) * [Bug 1755190](https://bugzilla.redhat.com/show_bug.cgi?id=1755190): ovn: fix a deadlock in the NetworkPolicy code [#54](https://github.com/openshift/ovn-kubernetes/pull/54) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/2838bf96025aa08e0472c016294ce425b2ff15df...9f13be1d317c5c57b4ffb7102cee7b2c2f035cac) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/9ead628b3c468174a31c93bf74ad158637727706) * [Bug 1763098](https://bugzilla.redhat.com/show_bug.cgi?id=1763098): *: Ensure containers have "FallbackToLogsOnError" termination policy [#41](https://github.com/openshift/prometheus-operator/pull/41) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/38109e45e3a6de5243de6ec45067402b67726c95...9ead628b3c468174a31c93bf74ad158637727706) ### [prometheus-node-exporter](https://github.com/openshift/node_exporter/tree/c8633ae9973bf7a6cb61dd00cb5558325cade8ac) * [Bug 1789085](https://bugzilla.redhat.com/show_bug.cgi?id=1789085): Not reporting 'none' when no platforms located [#50](https://github.com/openshift/node_exporter/pull/50) * [Bug 1791414](https://bugzilla.redhat.com/show_bug.cgi?id=1791414): Disable cpu info metric on non x86 arches [#54](https://github.com/openshift/node_exporter/pull/54) * [Bug 1773665](https://bugzilla.redhat.com/show_bug.cgi?id=1773665): cpu info metric [#46](https://github.com/openshift/node_exporter/pull/46) * [Bug 1773246](https://bugzilla.redhat.com/show_bug.cgi?id=1773246): Add a virtualization metric series from virt-what [#40](https://github.com/openshift/node_exporter/pull/40) * [Full changelog](https://github.com/openshift/node_exporter/compare/177a938ce401c3928a025fc1fd2ea1ca0ce1c230...c8633ae9973bf7a6cb61dd00cb5558325cade8ac) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/9947ab9d0d750b0a42b08527adbca81018d477c7) * [Bug 1810421](https://bugzilla.redhat.com/show_bug.cgi?id=1810421): Ensure service CA certs are created with unique serial numbers [#113](https://github.com/openshift/service-ca-operator/pull/113) * [Bug 1774156](https://bugzilla.redhat.com/show_bug.cgi?id=1774156): 4.2 cherry-picks in support of automated service ca rotation [#105](https://github.com/openshift/service-ca-operator/pull/105) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/f6720573b9b63147436374e51e6fda44683b1e9f...9947ab9d0d750b0a42b08527adbca81018d477c7) ### [telemeter](https://github.com/openshift/telemeter/tree/152b1b3355fbc5c9ed760b58f2fe6fc8fc082d31) * [Bug 1773665](https://bugzilla.redhat.com/show_bug.cgi?id=1773665): Backport changes from BZ 1760393 to 4.2.z [#281](https://github.com/openshift/telemeter/pull/281) * [Bug 1773246](https://bugzilla.redhat.com/show_bug.cgi?id=1773246): Report cluster:virt_platform_nodes:sum to telemetry [#266](https://github.com/openshift/telemeter/pull/266) * [Full changelog](https://github.com/openshift/telemeter/compare/3308c2642bfb673cb6bb61d8e120436675c06c13...152b1b3355fbc5c9ed760b58f2fe6fc8fc082d31)