# 4.6.52 Created: 2021-12-08 11:40:04 +0000 UTC Image Digest: `sha256:58c2e7bd1b248b1ffd9829b84b4ee89bb93e3e47b997d312e7e1ade5517eb1a6` Promoted from registry.ci.openshift.org/ocp/release:4.6.0-0.nightly-2021-12-06-014835 ## Changes from 4.6.2 ### Components * Kubernetes upgraded from 1.19.0 to 1.19.16 * Red Hat Enterprise Linux CoreOS upgraded from 46.82.202010301241-0 to 46.82.202112041703-0 ### New images * [driver-toolkit](https://github.com/openshift/driver-toolkit) git [bd508e26](https://github.com/openshift/driver-toolkit/commit/bd508e2631fe27e8ac15e57f943fd98ccb94c884) `sha256:829a92cf82a3c82ecd8b1ffe6b634938739cdaeeebc41e2d9e663bcf16d7f047` * [jenkins-agent-base](https://github.com/openshift/jenkins) git [3c3794f9](https://github.com/openshift/jenkins/commit/3c3794f95ee47aa8901e92cb8e43e48be4f8801e) `sha256:68638bbc166efa84cc45de947ac9f97cd72db987596786a63d03baf084d62783` ### Removed images * local-storage-static-provisioner ### Rebuilt images without code change * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [64410191](https://github.com/openshift/cluster-bootstrap/commit/6441019151cdc7cbbdd034fb7d459235682b4a74) `sha256:7d8011a2ca2ebf4d44ca586e3eb2c011e700aa0c62c87271e8582f8a7771d481` * [container-networking-plugins](https://github.com/openshift/containernetworking-plugins) git [ca372dec](https://github.com/openshift/containernetworking-plugins/commit/ca372decc534a71f425bbe972395f46c5de227b4) `sha256:9290248773de78bc750709a850ef66bd0d32a64ab1ed5228d344557e8bade398` * [ironic-hardware-inventory-recorder](https://github.com/openshift/ironic-hardware-inventory-recorder-image) git [2205538a](https://github.com/openshift/ironic-hardware-inventory-recorder-image/commit/2205538ae2eec1e1c9ca002011820ab86011b121) `sha256:1968e574815a8b22e6c0e051cf03ae3d7052704e64aa12c464bcbd5ca6ae8d3f` * [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator) git [6deeefa7](https://github.com/openshift/kubernetes-kube-storage-version-migrator/commit/6deeefa7d0ef32abd3ff7df04642cb7b29fc7ffa) `sha256:b268776e5b0b054bcac9ca4b57ce629c6d852d12792cf72d8c3adc2cb88037df` * machine-os-content `sha256:6ea6c6f23e0fe047c5813c0607c3bed53dc6bcf2c1064f8fc72235236aacc182` ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/b4647c129df74ac1d731c03b5a12c45cdac77f7d) * Updating ose-aws-ebs-csi-driver builder & base images to be consistent with ART [#177](https://github.com/openshift/aws-ebs-csi-driver/pull/177) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/a84081fd9c990179f4ef52ec92402202f708b493...b4647c129df74ac1d731c03b5a12c45cdac77f7d) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/71b6b96427de49ecbba3cf35726ff1607b9f4ae8) * [Bug 1915467](https://bugzilla.redhat.com/show_bug.cgi?id=1915467): redeploy CSI Controller Deployment when secret change [#110](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/110) * [Bug 1912720](https://bugzilla.redhat.com/show_bug.cgi?id=1912720): Remove stale ResourceSyncControllerDegraded condition [#105](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/105) * Updating ose-aws-ebs-csi-driver-operator builder & base images to be consistent with ART [#108](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/108) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/6563950426ef11198ba4ca0f3dc2740567578442...71b6b96427de49ecbba3cf35726ff1607b9f4ae8) ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/717942ec9db008bf8e2b4f0e409c536f947aa57f) * [Bug 1976198](https://bugzilla.redhat.com/show_bug.cgi?id=1976198): update aws-sdk-go to v1.38.25 [#414](https://github.com/openshift/cluster-api-provider-aws/pull/414) * [Bug 1941563](https://bugzilla.redhat.com/show_bug.cgi?id=1941563): Ensure response body is closed when we are finished with the request [#395](https://github.com/openshift/cluster-api-provider-aws/pull/395) * "Bug 1912531: revendor mao" [#388](https://github.com/openshift/cluster-api-provider-aws/pull/388) * Updating ose-aws-machine-controllers builder & base images to be consistent with ART [#383](https://github.com/openshift/cluster-api-provider-aws/pull/383) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/b1a6ba661ed8096ba75c24deeb03fc4287d30fa9...717942ec9db008bf8e2b4f0e409c536f947aa57f) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/d5f1271996d1feede3e6bcf0d4eda8246e535063) * Updating ose-aws-pod-identity-webhook builder & base images to be consistent with ART [#131](https://github.com/openshift/aws-pod-identity-webhook/pull/131) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/f9408af1ad376cb39d4fe5d11ab2c48d1c5277d0...d5f1271996d1feede3e6bcf0d4eda8246e535063) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/1cfb1b32f5aaf0dfe0fb2ea9da41c710da9b2c76) * [Bug 1964751](https://bugzilla.redhat.com/show_bug.cgi?id=1964751): Bump boot images for RHCOS fixes [#5228](https://github.com/openshift/installer/pull/5228) * Update OWNERS [#5244](https://github.com/openshift/installer/pull/5244) * OWNERS: add more core team members as approvers [#5125](https://github.com/openshift/installer/pull/5125) * [Bug 1981929](https://bugzilla.redhat.com/show_bug.cgi?id=1981929): aws: allow use of unknown regions in known partitions [#5073](https://github.com/openshift/installer/pull/5073) * release-4.6: Update OpenStack approvers [#4507](https://github.com/openshift/installer/pull/4507) * [Bug 1951572](https://bugzilla.redhat.com/show_bug.cgi?id=1951572): registry.svc.ci.openshift.org is no longer valid [#4862](https://github.com/openshift/installer/pull/4862) * [Bug 1956485](https://bugzilla.redhat.com/show_bug.cgi?id=1956485): bump RHCOS 4.6 boot images [#5011](https://github.com/openshift/installer/pull/5011) * [Bug 1963959](https://bugzilla.redhat.com/show_bug.cgi?id=1963959): remove ovirt_cafile from ovirt-credentials secret [#4955](https://github.com/openshift/installer/pull/4955) * [Bug 1974775](https://bugzilla.redhat.com/show_bug.cgi?id=1974775): Adding more nitro and the AMD instance types (AWS, UPI) [#5022](https://github.com/openshift/installer/pull/5022) * [Bug 1949150](https://bugzilla.redhat.com/show_bug.cgi?id=1949150): add proxy params to bootstrap ignition [#4847](https://github.com/openshift/installer/pull/4847) * [Bug 1976633](https://bugzilla.redhat.com/show_bug.cgi?id=1976633): upi/vsphere: Use Afterburn guestinfo for static IP and hostname config [#5036](https://github.com/openshift/installer/pull/5036) * [Bug 1971164](https://bugzilla.redhat.com/show_bug.cgi?id=1971164): Updating AWS instance types [#5021](https://github.com/openshift/installer/pull/5021) * [Bug 1964120](https://bugzilla.redhat.com/show_bug.cgi?id=1964120): pkg/asset/installconfig/aws: Add iam permission for destorying clusters [#4956](https://github.com/openshift/installer/pull/4956) * [Bug 1947998](https://bugzilla.redhat.com/show_bug.cgi?id=1947998): gcp: install google cloud sdk with yum the recommended way [#4840](https://github.com/openshift/installer/pull/4840) * [Bug 1929872](https://bugzilla.redhat.com/show_bug.cgi?id=1929872): remove GCP role bindings before service accounts [#4665](https://github.com/openshift/installer/pull/4665) * [Bug 1920552](https://bugzilla.redhat.com/show_bug.cgi?id=1920552): vSphere destroy: handle failed clusters [#4618](https://github.com/openshift/installer/pull/4618) * Updating ose-baremetal-installer builder & base images to be consistent with ART [#4539](https://github.com/openshift/installer/pull/4539) * Updating ose-installer builder & base images to be consistent with ART [#4538](https://github.com/openshift/installer/pull/4538) * Updating ose-installer-artifacts builder & base images to be consistent with ART [#4547](https://github.com/openshift/installer/pull/4547) * [Bug 1916297](https://bugzilla.redhat.com/show_bug.cgi?id=1916297): openstack: Create Control plane nodes sequentially [#4550](https://github.com/openshift/installer/pull/4550) * [Bug 1918510](https://bugzilla.redhat.com/show_bug.cgi?id=1918510): installconfig: enable vsphere folders for datacenters and clusters. [#4574](https://github.com/openshift/installer/pull/4574) * [Bug 1915050](https://bugzilla.redhat.com/show_bug.cgi?id=1915050): Set same additional networks on Bootstrap as Control Plane [#4535](https://github.com/openshift/installer/pull/4535) * [Bug 1917928](https://bugzilla.redhat.com/show_bug.cgi?id=1917928): Set Additional Control Plane Security Groups on Bootstrap Node [#4570](https://github.com/openshift/installer/pull/4570) * [Bug 1924670](https://bugzilla.redhat.com/show_bug.cgi?id=1924670): openstack/validation: enforce control plane size [#4612](https://github.com/openshift/installer/pull/4612) * [Bug 1918961](https://bugzilla.redhat.com/show_bug.cgi?id=1918961): vsphere destroy: delete tag category created by installer [#4579](https://github.com/openshift/installer/pull/4579) * [Bug 1920253](https://bugzilla.redhat.com/show_bug.cgi?id=1920253): disable anonymous auth on bootstrap nodes [#4591](https://github.com/openshift/installer/pull/4591) * [Bug 1913813](https://bugzilla.redhat.com/show_bug.cgi?id=1913813): OpenStack: Skip collecting info for empty subnet IDs [#4527](https://github.com/openshift/installer/pull/4527) * [Bug 1899161](https://bugzilla.redhat.com/show_bug.cgi?id=1899161): openstack: consider volumes for storage requirements checks [#4508](https://github.com/openshift/installer/pull/4508) * [Bug 1901736](https://bugzilla.redhat.com/show_bug.cgi?id=1901736): openstack: CP nodes port to use addtional SGs [#4420](https://github.com/openshift/installer/pull/4420) * [Bug 1894678](https://bugzilla.redhat.com/show_bug.cgi?id=1894678): Patch Flavor Not Found validation for OpenStack Install Config [#4505](https://github.com/openshift/installer/pull/4505) * [Bug 1898172](https://bugzilla.redhat.com/show_bug.cgi?id=1898172): add tagging perms for aws shared networks [#4384](https://github.com/openshift/installer/pull/4384) * [Bug 1899161](https://bugzilla.redhat.com/show_bug.cgi?id=1899161): Cherry-Pick: openstack: remove platform flavor validation [#4394](https://github.com/openshift/installer/pull/4394) * [Bug 1899176](https://bugzilla.redhat.com/show_bug.cgi?id=1899176): Bump RHCOS bootimages to 46.82.202011260640-0 [#4422](https://github.com/openshift/installer/pull/4422) * [Bug 1894310](https://bugzilla.redhat.com/show_bug.cgi?id=1894310): baremetal: pin libvirt to 4.5.0 [#4340](https://github.com/openshift/installer/pull/4340) * [Bug 1889855](https://bugzilla.redhat.com/show_bug.cgi?id=1889855): additional AWS regions for RHCOS AMIs [#4286](https://github.com/openshift/installer/pull/4286) * [Full changelog](https://github.com/openshift/installer/compare/a4f0869e0d2a5b2d645f0f28ef9e4b100fa8f779...1cfb1b32f5aaf0dfe0fb2ea9da41c710da9b2c76) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/32d804364c4d622a996af656b42b4992c49bf65a) * Updating baremetal-machine-controller builder & base images to be consistent with ART [#133](https://github.com/openshift/cluster-api-provider-baremetal/pull/133) * "Bug 1912531: revendor mao" [#137](https://github.com/openshift/cluster-api-provider-baremetal/pull/137) * [Bug 1886582](https://bugzilla.redhat.com/show_bug.cgi?id=1886582): Remove Node finalizer first on delete [#123](https://github.com/openshift/cluster-api-provider-baremetal/pull/123) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/b47af5a4080cdc4ede4e1fb7573ce04201ef9900...32d804364c4d622a996af656b42b4992c49bf65a) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/b4b10a088a0cef66c1ba8a9c0d88db4fa33699d3) * Updating ose-baremetal-operator builder & base images to be consistent with ART [#119](https://github.com/openshift/baremetal-operator/pull/119) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/9c39676f01fa180cf3e263c225eb52778b5ced16...b4b10a088a0cef66c1ba8a9c0d88db4fa33699d3) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/cdc8995cda7e83f72e29b74328fdb3c246ff8916) * [Bug 1983124](https://bugzilla.redhat.com/show_bug.cgi?id=1983124): Keepalived- verify that unicast peers list isn't empty on master nodes [#147](https://github.com/openshift/baremetal-runtimecfg/pull/147) * [Bug 1942506](https://bugzilla.redhat.com/show_bug.cgi?id=1942506): 4.6 EUS node-ip handling extravaganza [#133](https://github.com/openshift/baremetal-runtimecfg/pull/133) * [Bug 1932967](https://bugzilla.redhat.com/show_bug.cgi?id=1932967): Allow baremetal-runtimecfg to function when the node isn't attached to the VIP network [#123](https://github.com/openshift/baremetal-runtimecfg/pull/123) * [Bug 1926732](https://bugzilla.redhat.com/show_bug.cgi?id=1926732): add CloseIdleConnections for HTTP K8S API healthcheck [#121](https://github.com/openshift/baremetal-runtimecfg/pull/121) * Updating baremetal-runtimecfg builder & base images to be consistent with ART [#114](https://github.com/openshift/baremetal-runtimecfg/pull/114) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/0158c53a6dc0b4e8751b4dc1157e58ee73c9b38a...cdc8995cda7e83f72e29b74328fdb3c246ff8916) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/2c6062082e8dbbf36936b35dcc27c6882d3a2f67) * [Bug 2028280](https://bugzilla.redhat.com/show_bug.cgi?id=2028280): write to files instead of stdout [#984](https://github.com/openshift/oc/pull/984) * [Bug 1942818](https://bugzilla.redhat.com/show_bug.cgi?id=1942818): when mirroring to a file destination, mount images under the index location [#892](https://github.com/openshift/oc/pull/892) * [Bug 1969929](https://bugzilla.redhat.com/show_bug.cgi?id=1969929): exclude security during exctraction [#877](https://github.com/openshift/oc/pull/877) * [Bug 1976285](https://bugzilla.redhat.com/show_bug.cgi?id=1976285): skip-multiple-scopes with adm catalog mirror [#873](https://github.com/openshift/oc/pull/873) * [Bug 1971561](https://bugzilla.redhat.com/show_bug.cgi?id=1971561): set User-Agent when talking with registries [#872](https://github.com/openshift/oc/pull/872) * [Bug 1973613](https://bugzilla.redhat.com/show_bug.cgi?id=1973613): Preserve AuthInfo when switching projects [#862](https://github.com/openshift/oc/pull/862) * Fix unit test failure [#839](https://github.com/openshift/oc/pull/839) * [Bug 1947430](https://bugzilla.redhat.com/show_bug.cgi?id=1947430): Revert "Bug 1812813: oc debug node: create debug namespace" [#808](https://github.com/openshift/oc/pull/808) * [Bug 1942940](https://bugzilla.redhat.com/show_bug.cgi?id=1942940): [release-4.6] inspect clusteroperators as a backup to must-gather if it fails [#782](https://github.com/openshift/oc/pull/782) * [Bug 1926172](https://bugzilla.redhat.com/show_bug.cgi?id=1926172): add rsync & log re-tries [#760](https://github.com/openshift/oc/pull/760) * [Bug 1939549](https://bugzilla.redhat.com/show_bug.cgi?id=1939549): Fix unit test to use new IS [#770](https://github.com/openshift/oc/pull/770) * [Bug 1923054](https://bugzilla.redhat.com/show_bug.cgi?id=1923054): Fix error in jsonpath when object is empty [#724](https://github.com/openshift/oc/pull/724) * [Bug 1900991](https://bugzilla.redhat.com/show_bug.cgi?id=1900991): idle: also annotate the service [#727](https://github.com/openshift/oc/pull/727) * [Bug 1891892](https://bugzilla.redhat.com/show_bug.cgi?id=1891892): Create Windows version information [#630](https://github.com/openshift/oc/pull/630) * [Bug 1913109](https://bugzilla.redhat.com/show_bug.cgi?id=1913109): Should be able to debug an init container [#686](https://github.com/openshift/oc/pull/686) * [Bug 1906796](https://bugzilla.redhat.com/show_bug.cgi?id=1906796): use proper username for image verification [#667](https://github.com/openshift/oc/pull/667) * [Bug 1917548](https://bugzilla.redhat.com/show_bug.cgi?id=1917548): 4.6 backports for oc adm catalog mirror [#711](https://github.com/openshift/oc/pull/711) * [Bug 1906332](https://bugzilla.redhat.com/show_bug.cgi?id=1906332): bump discovery burst to 250 [#716](https://github.com/openshift/oc/pull/716) * Updating openshift-enterprise-cli builder & base images to be consistent with ART [#698](https://github.com/openshift/oc/pull/698) * Updating ose-tools builder & base images to be consistent with ART [#704](https://github.com/openshift/oc/pull/704) * Updating ose-cli-artifacts builder & base images to be consistent with ART [#705](https://github.com/openshift/oc/pull/705) * Updating openshift-enterprise-deployer builder & base images to be consistent with ART [#703](https://github.com/openshift/oc/pull/703) * [Bug 1891427](https://bugzilla.redhat.com/show_bug.cgi?id=1891427): Login: Avoid overwriting same user from different cluster [#619](https://github.com/openshift/oc/pull/619) * [Bug 1893693](https://bugzilla.redhat.com/show_bug.cgi?id=1893693): account for nil in LastTransitionTime in route status [#633](https://github.com/openshift/oc/pull/633) * [Full changelog](https://github.com/openshift/oc/compare/ffd68360997854d442e2ad2f40b099f5198b6471...2c6062082e8dbbf36936b35dcc27c6882d3a2f67) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/e3f009da89c0357fed1a176af618061dcb184793) * [Bug 1963421](https://bugzilla.redhat.com/show_bug.cgi?id=1963421): oVirt credentials secret contains unnecessary "ovirt_cafile" [#347](https://github.com/openshift/cloud-credential-operator/pull/347) * [Bug 1958959](https://bugzilla.redhat.com/show_bug.cgi?id=1958959): manifests/0000_90_cloud-credential-operator_04_alertrules: Drop CloudCredentialOperatorDown [#337](https://github.com/openshift/cloud-credential-operator/pull/337) * [Bug 1916868](https://bugzilla.redhat.com/show_bug.cgi?id=1916868): Check 47 creds backport [#287](https://github.com/openshift/cloud-credential-operator/pull/287) * [Bug 1910372](https://bugzilla.redhat.com/show_bug.cgi?id=1910372): Backport redistribute new root creds in passthrough mode [#279](https://github.com/openshift/cloud-credential-operator/pull/279) * Updating ose-cloud-credential-operator builder & base images to be consistent with ART [#281](https://github.com/openshift/cloud-credential-operator/pull/281) * [Bug 1921901](https://bugzilla.redhat.com/show_bug.cgi?id=1921901): exclude run-level 0 namespaces from MutatingWebhook for Pods [#292](https://github.com/openshift/cloud-credential-operator/pull/292) * [Bug 1896919](https://bugzilla.redhat.com/show_bug.cgi?id=1896919): [release-4.6] add new credentials field for AWS Secrets [#268](https://github.com/openshift/cloud-credential-operator/pull/268) * [Bug 1907613](https://bugzilla.redhat.com/show_bug.cgi?id=1907613): operator: remove odicdiscoveryendpoint controller [#277](https://github.com/openshift/cloud-credential-operator/pull/277) * [Bug 1896230](https://bugzilla.redhat.com/show_bug.cgi?id=1896230): manifests: Allow 'for: 20m' for CloudCredentialOperatorDown [#267](https://github.com/openshift/cloud-credential-operator/pull/267) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/c445f0722668816fda4fd8a3ba446f9396ce2092...e3f009da89c0357fed1a176af618061dcb184793) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/938196ece243bfffb6f0f3d634f86ae740e29118) * Updating ose-cluster-authentication-operator builder & base images to be consistent with ART [#397](https://github.com/openshift/cluster-authentication-operator/pull/397) * [Bug 1914848](https://bugzilla.redhat.com/show_bug.cgi?id=1914848): add ServiceMonitor for the oauth apiserver [#396](https://github.com/openshift/cluster-authentication-operator/pull/396) * [Bug 1891795](https://bugzilla.redhat.com/show_bug.cgi?id=1891795): deployment: update event spam [#367](https://github.com/openshift/cluster-authentication-operator/pull/367) * [Bug 1893803](https://bugzilla.redhat.com/show_bug.cgi?id=1893803): Fix wrong operator config informer [#374](https://github.com/openshift/cluster-authentication-operator/pull/374) * [Bug 1893803](https://bugzilla.redhat.com/show_bug.cgi?id=1893803): update ingress node available to handle custom placement [#371](https://github.com/openshift/cluster-authentication-operator/pull/371) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/adbb442cc7bbcb6a71f6118729d994a4f4dc8985...938196ece243bfffb6f0f3d634f86ae740e29118) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/a19224cf4a9f9ba6e3daaadc364e6a8fc91004b6) * Updating atomic-openshift-cluster-autoscaler builder & base images to be consistent with ART [#188](https://github.com/openshift/kubernetes-autoscaler/pull/188) * [Bug 1927854](https://bugzilla.redhat.com/show_bug.cgi?id=1927854): VPA: Ignore admission hook failures [#186](https://github.com/openshift/kubernetes-autoscaler/pull/186) * Updating vertical-pod-autoscaler builder & base images to be consistent with ART [#189](https://github.com/openshift/kubernetes-autoscaler/pull/189) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/698efa2f989b509c5c1a2549a531a08e7639bd9f...a19224cf4a9f9ba6e3daaadc364e6a8fc91004b6) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/8e81a68d7dccf65293328e3d775c1f9c879f167b) * [Bug 1908316](https://bugzilla.redhat.com/show_bug.cgi?id=1908316): Reduce verbosity of kube-rbac-proxy logging [#191](https://github.com/openshift/cluster-autoscaler-operator/pull/191) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/52ee4f03604b6a51b3b09913c72859e10f00faa0...8e81a68d7dccf65293328e3d775c1f9c879f167b) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/d7db686cd420964efa14cb3d0cdfebd6b222219e) * Updating ose-cluster-config-operator builder & base images to be consistent with ART [#177](https://github.com/openshift/cluster-config-operator/pull/177) * [Bug 1905573](https://bugzilla.redhat.com/show_bug.cgi?id=1905573): [release 4.6] Add warning of the consequences of changing bound token issuer [#179](https://github.com/openshift/cluster-config-operator/pull/179) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/60c2657a060979da79704c5c7b4cd7db8ed62e23...d7db686cd420964efa14cb3d0cdfebd6b222219e) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/68618ad3891579c0dcff5c3a701a927f2f383a42) * Updating ose-cluster-csi-snapshot-controller-operator builder & base images to be consistent with ART [#73](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/73) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/aa504504e63bfd667b12be717406bb406f62787a...68618ad3891579c0dcff5c3a701a927f2f383a42) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/b45ac97a50a7d2666e3acd6241ad8b1e4e57a19f) * [Bug 1970140](https://bugzilla.redhat.com/show_bug.cgi?id=1970140): Corefile: Set bufsize to 512 bytes for all servers [#279](https://github.com/openshift/cluster-dns-operator/pull/279) * [Bug 1955632](https://bugzilla.redhat.com/show_bug.cgi?id=1955632): Corefile: Enable bufsize plugin for all servers [#272](https://github.com/openshift/cluster-dns-operator/pull/272) * [Bug 1954760](https://bugzilla.redhat.com/show_bug.cgi?id=1954760): Enable errors plugin for custom upstream resolvers [#271](https://github.com/openshift/cluster-dns-operator/pull/271) * [Bug 1937090](https://bugzilla.redhat.com/show_bug.cgi?id=1937090): Configure CoreDNS to shut down gracefully [#248](https://github.com/openshift/cluster-dns-operator/pull/248) * [Bug 1944245](https://bugzilla.redhat.com/show_bug.cgi?id=1944245): Corefile: Use 30 second max TTL for caching of negative responses [#256](https://github.com/openshift/cluster-dns-operator/pull/256) * [Bug 1936589](https://bugzilla.redhat.com/show_bug.cgi?id=1936589): Set CoreDNS's cache's maximum TTL to 900 seconds [#246](https://github.com/openshift/cluster-dns-operator/pull/246) * [Bug 1928773](https://bugzilla.redhat.com/show_bug.cgi?id=1928773): Set CoreDNS readiness probe period and timeout each to 3 seconds [#236](https://github.com/openshift/cluster-dns-operator/pull/236) * [Bug 1916907](https://bugzilla.redhat.com/show_bug.cgi?id=1916907): Prevent dig errors from corrupting host's /etc/hosts [#231](https://github.com/openshift/cluster-dns-operator/pull/231) * [Bug 1903887](https://bugzilla.redhat.com/show_bug.cgi?id=1903887): Set DNS DaemonSet's maxUnavailable value to 10% [#219](https://github.com/openshift/cluster-dns-operator/pull/219) * Updating ose-cluster-dns-operator builder & base images to be consistent with ART [#228](https://github.com/openshift/cluster-dns-operator/pull/228) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/889561f9301b40fabbe1be767468d821588cafad...b45ac97a50a7d2666e3acd6241ad8b1e4e57a19f) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/6a3f3b506c5e824b40cbca78bcc8f8c0219b5b4a) * [Bug 1979585](https://bugzilla.redhat.com/show_bug.cgi?id=1979585): Validate the status of the etcd snapshot during backup and restore [#624](https://github.com/openshift/cluster-etcd-operator/pull/624) * [Bug 1987134](https://bugzilla.redhat.com/show_bug.cgi?id=1987134): Provide an option force backup even when API is not available to check the health. [#633](https://github.com/openshift/cluster-etcd-operator/pull/633) * [Bug 1978014](https://bugzilla.redhat.com/show_bug.cgi?id=1978014): Increase inertia duration for the EtcdMembersDegraded condition [#620](https://github.com/openshift/cluster-etcd-operator/pull/620) * [Bug 1965535](https://bugzilla.redhat.com/show_bug.cgi?id=1965535): [release-4.6] Improve cert controller detection and correction of invalid certs [#604](https://github.com/openshift/cluster-etcd-operator/pull/604) * [Bug 1905566](https://bugzilla.redhat.com/show_bug.cgi?id=1905566): Backup script should get the latest revision of static-pod-resources [#508](https://github.com/openshift/cluster-etcd-operator/pull/508) * [Bug 1934342](https://bugzilla.redhat.com/show_bug.cgi?id=1934342): pkg/operator/metriccontroller: cleanup transports [#551](https://github.com/openshift/cluster-etcd-operator/pull/551) * [Bug 1915560](https://bugzilla.redhat.com/show_bug.cgi?id=1915560): operator: remove EtcdMemberIPMigratorDegraded stale condition [#521](https://github.com/openshift/cluster-etcd-operator/pull/521) * [Bug 1918281](https://bugzilla.redhat.com/show_bug.cgi?id=1918281): *: ensure etcd listens on strong ciphers [#526](https://github.com/openshift/cluster-etcd-operator/pull/526) * [Bug 1917411](https://bugzilla.redhat.com/show_bug.cgi?id=1917411): pkg/operator: ensure etcd endpoints configmap [#530](https://github.com/openshift/cluster-etcd-operator/pull/530) * Updating cluster-etcd-operator builder & base images to be consistent with ART [#520](https://github.com/openshift/cluster-etcd-operator/pull/520) * [Bug 1903353](https://bugzilla.redhat.com/show_bug.cgi?id=1903353): Use socket readiness probe to avoid generating zombies [#503](https://github.com/openshift/cluster-etcd-operator/pull/503) * [Bug 1897542](https://bugzilla.redhat.com/show_bug.cgi?id=1897542): Revert "Use restore pod yaml from the backup when restoring" [#496](https://github.com/openshift/cluster-etcd-operator/pull/496) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/edf546af687917395ca9bf136f680790dfb86442...6a3f3b506c5e824b40cbca78bcc8f8c0219b5b4a) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/7d7a7acbb5e9114ad4016ba37224d5d446e1a023) * [Bug 1982611](https://bugzilla.redhat.com/show_bug.cgi?id=1982611): bump aws-sdk-go to v1.38.35 [#706](https://github.com/openshift/cluster-image-registry-operator/pull/706) * Updating ose-cluster-image-registry-operator builder & base images to be consistent with ART [#652](https://github.com/openshift/cluster-image-registry-operator/pull/652) * [Bug 1959563](https://bugzilla.redhat.com/show_bug.cgi?id=1959563): Using http.DefaultTransport timeouts [#690](https://github.com/openshift/cluster-image-registry-operator/pull/690) * [Bug 1949040](https://bugzilla.redhat.com/show_bug.cgi?id=1949040): Use mkdir -p to create ca-trust directories [#678](https://github.com/openshift/cluster-image-registry-operator/pull/678) * [Bug 1936984](https://bugzilla.redhat.com/show_bug.cgi?id=1936984): Make /etc/pki/ca-trust/extracted writable [#672](https://github.com/openshift/cluster-image-registry-operator/pull/672) * [Bug 1923993](https://bugzilla.redhat.com/show_bug.cgi?id=1923993): Make pruner always aware of registry name [#659](https://github.com/openshift/cluster-image-registry-operator/pull/659) * [Bug 1904091](https://bugzilla.redhat.com/show_bug.cgi?id=1904091): Creating prometheus record rule for v1 imports [#646](https://github.com/openshift/cluster-image-registry-operator/pull/646) * [Bug 1916857](https://bugzilla.redhat.com/show_bug.cgi?id=1916857): Sync status to spec with regards to Swift config [#654](https://github.com/openshift/cluster-image-registry-operator/pull/654) * [Bug 1893977](https://bugzilla.redhat.com/show_bug.cgi?id=1893977): Keep node-ca daemonset in-sync with reference version [#632](https://github.com/openshift/cluster-image-registry-operator/pull/632) * [Bug 1898152](https://bugzilla.redhat.com/show_bug.cgi?id=1898152): Reduce default log level for pruner [#641](https://github.com/openshift/cluster-image-registry-operator/pull/641) * [Bug 1894195](https://bugzilla.redhat.com/show_bug.cgi?id=1894195): Operator should use entrypoint script [#633](https://github.com/openshift/cluster-image-registry-operator/pull/633) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/be17d31642dbca139a84883a09f8502fb13d4f2e...7d7a7acbb5e9114ad4016ba37224d5d446e1a023) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/17dfa4424be9f0c002e262726d7e8695ed85fe18) * [Bug 1921193](https://bugzilla.redhat.com/show_bug.cgi?id=1921193): Fix inconsistent ingress operator status after upgrade [#541](https://github.com/openshift/cluster-ingress-operator/pull/541) * [Bug 1927364](https://bugzilla.redhat.com/show_bug.cgi?id=1927364): Verify that Serivce resources have idle annotations from corresponding Endpoint resources, should they exist. [#547](https://github.com/openshift/cluster-ingress-operator/pull/547) * [Bug 1918994](https://bugzilla.redhat.com/show_bug.cgi?id=1918994): Override termination grace period for the router deployment [#539](https://github.com/openshift/cluster-ingress-operator/pull/539) * [Bug 1896167](https://bugzilla.redhat.com/show_bug.cgi?id=1896167): Back port HAProxy reload failures alert fix [#486](https://github.com/openshift/cluster-ingress-operator/pull/486) * [Bug 1918371](https://bugzilla.redhat.com/show_bug.cgi?id=1918371): Add "ingress.operator.openshift.io/hard-stop-after" annotation [#535](https://github.com/openshift/cluster-ingress-operator/pull/535) * Updating ose-cluster-ingress-operator builder & base images to be consistent with ART [#528](https://github.com/openshift/cluster-ingress-operator/pull/528) * [Bug 1905490](https://bugzilla.redhat.com/show_bug.cgi?id=1905490): Revert "Support changing ingresscontroller load balancer scope" [#507](https://github.com/openshift/cluster-ingress-operator/pull/507) * [Bug 1904594](https://bugzilla.redhat.com/show_bug.cgi?id=1904594): Assume ingresscontroller is external absent status [#503](https://github.com/openshift/cluster-ingress-operator/pull/503) * [Bug 1893879](https://bugzilla.redhat.com/show_bug.cgi?id=1893879): Improve status reporting when pods cannot be scheduled [#483](https://github.com/openshift/cluster-ingress-operator/pull/483) * [Bug 1891626](https://bugzilla.redhat.com/show_bug.cgi?id=1891626): Support changing ingresscontroller load balancer scope [#482](https://github.com/openshift/cluster-ingress-operator/pull/482) * [Bug 1887935](https://bugzilla.redhat.com/show_bug.cgi?id=1887935): TestForwardedHeaderPolicy*: Make case-insensitive [#475](https://github.com/openshift/cluster-ingress-operator/pull/475) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/2050cf07849fea705fb56a9d4c74474081067194...17dfa4424be9f0c002e262726d7e8695ed85fe18) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/0a8f1f99f98b4637cfb5a22c61c92264687da859) * [Bug 1891742](https://bugzilla.redhat.com/show_bug.cgi?id=1891742): bump(library-go): controller/staticpod: reduce noise of not-ready containers [#1029](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1029) * [Bug 1900270](https://bugzilla.redhat.com/show_bug.cgi?id=1900270): don't allow upgrades when webhooktokenauthenticators are set [#1010](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1010) * [Bug 1888862](https://bugzilla.redhat.com/show_bug.cgi?id=1888862): [4.6] set servicesSubnet correctly in dual-stack clusters [#985](https://github.com/openshift/cluster-kube-apiserver-operator/pull/985) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/c4ef53e2fa2feff991927372e5b95b9abf4597c2...0a8f1f99f98b4637cfb5a22c61c92264687da859) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/b05961c979fff825cc17fbd66660f7409cc82f28) * [Bug 1913030](https://bugzilla.redhat.com/show_bug.cgi?id=1913030): Add recycler pod template as a ConfigMap [#490](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/490) * [Bug 1916347](https://bugzilla.redhat.com/show_bug.cgi?id=1916347): Updating ose-cluster-kube-controller-manager-operator builder & base images to be consistent with ART [#496](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/496) * [Bug 1891742](https://bugzilla.redhat.com/show_bug.cgi?id=1891742): bump(library-go): controller/staticpod: reduce noise of … [#493](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/493) * [Bug 1898831](https://bugzilla.redhat.com/show_bug.cgi?id=1898831): do not set allocate-node-cidrs, which is handled by ovn and sdn [#484](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/484) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/99f71bfe2911c776331a9bf1869b28e3ad3a62f4...b05961c979fff825cc17fbd66660f7409cc82f28) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/0b9b05bc63e9b079827b3fea86524811bf483612) * [Bug 1916347](https://bugzilla.redhat.com/show_bug.cgi?id=1916347): Updating ose-cluster-kube-scheduler-operator builder & base images to be consistent with ART [#320](https://github.com/openshift/cluster-kube-scheduler-operator/pull/320) * [Bug 1891742](https://bugzilla.redhat.com/show_bug.cgi?id=1891742): bump(library-go): controller/staticpod: reduce noise of … [#314](https://github.com/openshift/cluster-kube-scheduler-operator/pull/314) * [Bug 1903586](https://bugzilla.redhat.com/show_bug.cgi?id=1903586): Sync new kube-scheduler-client-cert-key on recovery [#315](https://github.com/openshift/cluster-kube-scheduler-operator/pull/315) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/6f60899f17df0103d1b9250d5f99814680a3737a...0b9b05bc63e9b079827b3fea86524811bf483612) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/a75236dc5a0ad8bc058a3f1e5f38adb1c70af1c4) * Updating ose-cluster-kube-storage-version-migrator-operator builder & base images to be consistent with ART [#37](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/37) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/9a52b3771d325d3025f09b1338ebb743e7ba0c4c...a75236dc5a0ad8bc058a3f1e5f38adb1c70af1c4) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/a6320f458e1bc658048625ab9a1c3020f3a6e165) * [Bug 1908316](https://bugzilla.redhat.com/show_bug.cgi?id=1908316): Reduce verbosity of kube-rbac-proxy logging [#99](https://github.com/openshift/cluster-machine-approver/pull/99) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/6c0d67b38482813fc021d5c643b9c9c5e9993243...a6320f458e1bc658048625ab9a1c3020f3a6e165) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/3f80cf57c9bb631138d7fb10b6d2bee305e0c601) * [Bug 2009094](https://bugzilla.redhat.com/show_bug.cgi?id=2009094): manifest allowlist: add acm_managed_cluster_info in 4.6 [#1408](https://github.com/openshift/cluster-monitoring-operator/pull/1408) * [Bug 1987246](https://bugzilla.redhat.com/show_bug.cgi?id=1987246): node exporter calls /proc/cpuinfo multiple times causing the node to freeze [#1304](https://github.com/openshift/cluster-monitoring-operator/pull/1304) * [Bug 1969964](https://bugzilla.redhat.com/show_bug.cgi?id=1969964): Recording rule for builds by strategy [#1207](https://github.com/openshift/cluster-monitoring-operator/pull/1207) * [Bug 1967938](https://bugzilla.redhat.com/show_bug.cgi?id=1967938): Use alertmanager_integrations metric instead of alertmanager_notifications_total for AlertmanagerReceiversNotConfigured [#1228](https://github.com/openshift/cluster-monitoring-operator/pull/1228) * [Bug 1941634](https://bugzilla.redhat.com/show_bug.cgi?id=1941634): allow only /metrics for kube-rbac-proxy in front of UWM [#1222](https://github.com/openshift/cluster-monitoring-operator/pull/1222) * [Bug 1955483](https://bugzilla.redhat.com/show_bug.cgi?id=1955483): [4.6] Drop high-cardinality metrics from kube-state-metrics which aren't used [#1221](https://github.com/openshift/cluster-monitoring-operator/pull/1221) * [Bug 1955464](https://bugzilla.redhat.com/show_bug.cgi?id=1955464): drop container_memory_failures_total metric backport [#1180](https://github.com/openshift/cluster-monitoring-operator/pull/1180) * [Bug 1955454](https://bugzilla.redhat.com/show_bug.cgi?id=1955454): [release-4.6] removing crio metric [#1159](https://github.com/openshift/cluster-monitoring-operator/pull/1159) * [Bug 1960465](https://bugzilla.redhat.com/show_bug.cgi?id=1960465): [release-4.6] Bring new etcd alerts [#1161](https://github.com/openshift/cluster-monitoring-operator/pull/1161) * [Bug 1955471](https://bugzilla.redhat.com/show_bug.cgi?id=1955471): [4.6] Disable collection of node_mountstats_nfs metrics in node_exporter [#1147](https://github.com/openshift/cluster-monitoring-operator/pull/1147) * [Bug 1946597](https://bugzilla.redhat.com/show_bug.cgi?id=1946597): Backport Remove the "instance" and "pod" labels for kube-state-metrics metrics [#1105](https://github.com/openshift/cluster-monitoring-operator/pull/1105) * [Bug 1929354](https://bugzilla.redhat.com/show_bug.cgi?id=1929354): [4.6] jsonnet/prometheus.jsonnet: Apply openshift-user-critical class to cluster Prometheus [#1071](https://github.com/openshift/cluster-monitoring-operator/pull/1071) * [Bug 1920898](https://bugzilla.redhat.com/show_bug.cgi?id=1920898): [4.6] pkg/manifests: fix prometheus-proxy trustedCA [#1083](https://github.com/openshift/cluster-monitoring-operator/pull/1083) * [Bug 1937907](https://bugzilla.redhat.com/show_bug.cgi?id=1937907): etcdInsufficientMembers is wrong when etcd is in a pod [#1080](https://github.com/openshift/cluster-monitoring-operator/pull/1080) * [Bug 1918202](https://bugzilla.redhat.com/show_bug.cgi?id=1918202): jsonnet: remove Ceph block devices in rules [#1040](https://github.com/openshift/cluster-monitoring-operator/pull/1040) * [Bug 1904091](https://bugzilla.redhat.com/show_bug.cgi?id=1904091): Exporting registry v1 protocol usage metric [#1002](https://github.com/openshift/cluster-monitoring-operator/pull/1002) * [Bug 1912430](https://bugzilla.redhat.com/show_bug.cgi?id=1912430): [Backport 4.6] Set resources to the native spec field [#1028](https://github.com/openshift/cluster-monitoring-operator/pull/1028) * [Bug 1907830](https://bugzilla.redhat.com/show_bug.cgi?id=1907830): Backporting #965 [#1022](https://github.com/openshift/cluster-monitoring-operator/pull/1022) * Updating cluster-monitoring-operator builder & base images to be consistent with ART [#1036](https://github.com/openshift/cluster-monitoring-operator/pull/1036) * [Bug 1900792](https://bugzilla.redhat.com/show_bug.cgi?id=1900792): Collect all resource counts for telemetry [#989](https://github.com/openshift/cluster-monitoring-operator/pull/989) * [Bug 1905903](https://bugzilla.redhat.com/show_bug.cgi?id=1905903): jsonnet: remove apiserver_request:availability30d [#1014](https://github.com/openshift/cluster-monitoring-operator/pull/1014) * [Bug 1892706](https://bugzilla.redhat.com/show_bug.cgi?id=1892706): fix cluster:cpu_core_hyperthreading rule for s390x [#1005](https://github.com/openshift/cluster-monitoring-operator/pull/1005) * [Bug 1900988](https://bugzilla.redhat.com/show_bug.cgi?id=1900988): jsonnet: configure SCCs [#990](https://github.com/openshift/cluster-monitoring-operator/pull/990) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/2858d14145e53460e7e83ea6c9b0a940fec70258...3f80cf57c9bb631138d7fb10b6d2bee305e0c601) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/4b79ca007a8270fe46267ec0b4d31cc4443a8b1b) * [Bug 1988427](https://bugzilla.redhat.com/show_bug.cgi?id=1988427): Change to use mountPath: /host [#1171](https://github.com/openshift/cluster-network-operator/pull/1171) * [Bug 1973770](https://bugzilla.redhat.com/show_bug.cgi?id=1973770): Reduce SSL sec level for ovsdb connections [#1131](https://github.com/openshift/cluster-network-operator/pull/1131) * [Bug 1942604](https://bugzilla.redhat.com/show_bug.cgi?id=1942604): Allow-from-router network policy support for ovn-kubernetes [#1150](https://github.com/openshift/cluster-network-operator/pull/1150) * [Bug 1983744](https://bugzilla.redhat.com/show_bug.cgi?id=1983744): Use 10% for ovnkube-node for maxUnavailable [#1157](https://github.com/openshift/cluster-network-operator/pull/1157) * [Bug 1851549](https://bugzilla.redhat.com/show_bug.cgi?id=1851549): Backport daemonset to drop icmp frag needed packets received from other nodes in the cluster to Rel 4.6 [#1121](https://github.com/openshift/cluster-network-operator/pull/1121) * [Bug 1972587](https://bugzilla.redhat.com/show_bug.cgi?id=1972587): config: Allow enable-profiling to be used to set profiling [#1135](https://github.com/openshift/cluster-network-operator/pull/1135) * [Bug 1973599](https://bugzilla.redhat.com/show_bug.cgi?id=1973599): Escape characters on ini file [#1137](https://github.com/openshift/cluster-network-operator/pull/1137) * [Bug 1937400](https://bugzilla.redhat.com/show_bug.cgi?id=1937400): kuryr/alerts: change the rule for free count [#1012](https://github.com/openshift/cluster-network-operator/pull/1012) * [Bug 1970453](https://bugzilla.redhat.com/show_bug.cgi?id=1970453): Replace to correct OpenFlow version when replacing flows [#1111](https://github.com/openshift/cluster-network-operator/pull/1111) * [Bug 1932114](https://bugzilla.redhat.com/show_bug.cgi?id=1932114): Detect Nodes Network MTU [#1070](https://github.com/openshift/cluster-network-operator/pull/1070) * [Bug 1963280](https://bugzilla.redhat.com/show_bug.cgi?id=1963280): The Multus daemonset should handle 10% maxUnavailable [#1103](https://github.com/openshift/cluster-network-operator/pull/1103) * [Bug 1963279](https://bugzilla.redhat.com/show_bug.cgi?id=1963279): Use 10% for ovs maxUnavailable for rolling update [#1102](https://github.com/openshift/cluster-network-operator/pull/1102) * [Bug 1959185](https://bugzilla.redhat.com/show_bug.cgi?id=1959185): Backport rbac proxy init script fixes [#1096](https://github.com/openshift/cluster-network-operator/pull/1096) * [Bug 1950407](https://bugzilla.redhat.com/show_bug.cgi?id=1950407): Fix kube-rbac-proxy startup scripts [#1061](https://github.com/openshift/cluster-network-operator/pull/1061) * [Bug 1936710](https://bugzilla.redhat.com/show_bug.cgi?id=1936710): OSD-6600 network-metrics missing priorityClass [#1006](https://github.com/openshift/cluster-network-operator/pull/1006) * [Bug 1950094](https://bugzilla.redhat.com/show_bug.cgi?id=1950094): Upgrade nodes before masters [#1060](https://github.com/openshift/cluster-network-operator/pull/1060) * [Bug 1897526](https://bugzilla.redhat.com/show_bug.cgi?id=1897526): Ensure LimitedPortsOnNetwork is only triggered when needed [#907](https://github.com/openshift/cluster-network-operator/pull/907) * [Bug 1942862](https://bugzilla.redhat.com/show_bug.cgi?id=1942862): Kuryr: Let Kuryr autodetect primary CNI interface [#1035](https://github.com/openshift/cluster-network-operator/pull/1035) * [Bug 1934652](https://bugzilla.redhat.com/show_bug.cgi?id=1934652): [release-4.6] - Improve the sb-db and nb-db readiness check to ensure it fails when cluster is not stable [#998](https://github.com/openshift/cluster-network-operator/pull/998) * [Bug 1938280](https://bugzilla.redhat.com/show_bug.cgi?id=1938280): Include LB members for Machines created on day-2 operation [#1018](https://github.com/openshift/cluster-network-operator/pull/1018) * [Bug 1916601](https://bugzilla.redhat.com/show_bug.cgi?id=1916601): guard against the deletion of the network CRD: `network.operator.openshift.io` [#953](https://github.com/openshift/cluster-network-operator/pull/953) * [Bug 1901605](https://bugzilla.redhat.com/show_bug.cgi?id=1901605): Kuryr: Allow changes to KuryrConfig [#890](https://github.com/openshift/cluster-network-operator/pull/890) * Updating cluster-network-operator builder & base images to be consistent with ART [#946](https://github.com/openshift/cluster-network-operator/pull/946) * [Bug 1887462](https://bugzilla.redhat.com/show_bug.cgi?id=1887462): Add ovn-db-pod label on the master pods [#871](https://github.com/openshift/cluster-network-operator/pull/871) * [Bug 1890297](https://bugzilla.redhat.com/show_bug.cgi?id=1890297): openshift-sdn: multitenant: join openshift-etcd-operator to etcd [#850](https://github.com/openshift/cluster-network-operator/pull/850) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/26111b2b7d19fcd7f2df8e97bc984efba17a25fc...4b79ca007a8270fe46267ec0b4d31cc4443a8b1b) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/4f212462ca20091177a52725eefe2e1db6256684) * [Bug 1990629](https://bugzilla.redhat.com/show_bug.cgi?id=1990629): gather all Tuned CRs [#259](https://github.com/openshift/cluster-node-tuning-operator/pull/259) * [Bug 1920525](https://bugzilla.redhat.com/show_bug.cgi?id=1920525): Recover gracefully after Tuned errors. [#197](https://github.com/openshift/cluster-node-tuning-operator/pull/197) * Updating cluster-node-tuning-operator builder & base images to be consistent with ART [#190](https://github.com/openshift/cluster-node-tuning-operator/pull/190) * [Bug 1900261](https://bugzilla.redhat.com/show_bug.cgi?id=1900261): Automatically restart stalld after exit. [#182](https://github.com/openshift/cluster-node-tuning-operator/pull/182) * [Bug 1896381](https://bugzilla.redhat.com/show_bug.cgi?id=1896381): Add a weak dependency on kmod to tuned. [#176](https://github.com/openshift/cluster-node-tuning-operator/pull/176) * [Bug 1892459](https://bugzilla.redhat.com/show_bug.cgi?id=1892459): [release-4.6] Ship the latest version of stalld. [#171](https://github.com/openshift/cluster-node-tuning-operator/pull/171) * [Bug 1892459](https://bugzilla.redhat.com/show_bug.cgi?id=1892459): [release-4.6] Set scheduling policy to SCHED_FIFO to stalld and lower threshold. [#170](https://github.com/openshift/cluster-node-tuning-operator/pull/170) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/e53f74375d6e9a613ba41100d572f80c37698eff...4f212462ca20091177a52725eefe2e1db6256684) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/b428bbd03787282cbf909541626a5ae150f0d93d) * [Bug 1996051](https://bugzilla.redhat.com/show_bug.cgi?id=1996051): bindata: run openshift-apiserver as root explicitly. [#469](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/469) * [Bug 1955506](https://bugzilla.redhat.com/show_bug.cgi?id=1955506): explicitly allow apiserver pods to write to their root FS [#470](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/470) * [Bug 1887718](https://bugzilla.redhat.com/show_bug.cgi?id=1887718): need to be able to disable kube-apiserver connectivity checks [#403](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/403) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/cc98264f9e169b0a4a59926a8225534fc0db29fe...b428bbd03787282cbf909541626a5ae150f0d93d) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/e6bd98b2cbb6d7580d90ccfe530f1724e557edfb) * [Bug 1944145](https://bugzilla.redhat.com/show_bug.cgi?id=1944145): Bump kubernetes to 0.19.9 [#205](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/205) * [Bug 1931857](https://bugzilla.redhat.com/show_bug.cgi?id=1931857): Set registry routes in operand config [#200](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/200) * [Bug 1916347](https://bugzilla.redhat.com/show_bug.cgi?id=1916347): Updating ose-cluster-openshift-controller-manager-operator builder & base images to be consistent with ART [#193](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/193) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/2b575c96419f8d5ebde7126ef4fa37a548b91fb2...e6bd98b2cbb6d7580d90ccfe530f1724e557edfb) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/aa12fbe31eb4704d221ddcbc245fd4b2f7d45a42) * Updating cluster-policy-controller builder & base images to be consistent with ART [#53](https://github.com/openshift/cluster-policy-controller/pull/53) * [Bug 1904028](https://bugzilla.redhat.com/show_bug.cgi?id=1904028): The quota controllers should resync on new resources and make progress. [#50](https://github.com/openshift/cluster-policy-controller/pull/50) * [Bug 1891518](https://bugzilla.redhat.com/show_bug.cgi?id=1891518): openshift-object-counts quota is not dynamically updating as the resource is deleted [#45](https://github.com/openshift/cluster-policy-controller/pull/45) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/5d2d36b2f71db903f3f8a2c051d8883270091c17...aa12fbe31eb4704d221ddcbc245fd4b2f7d45a42) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/45bc9dda411f488693a293a265f776d595f340b8) * [Bug 1950809](https://bugzilla.redhat.com/show_bug.cgi?id=1950809): add DeepCopy to avoid SharedInformer cache mutation [#371](https://github.com/openshift/cluster-samples-operator/pull/371) * Updating ose-cluster-samples-operator builder & base images to be consistent with ART [#353](https://github.com/openshift/cluster-samples-operator/pull/353) * [Bug 1890232](https://bugzilla.redhat.com/show_bug.cgi?id=1890232): Override jenkins-agent-base imagestream [#333](https://github.com/openshift/cluster-samples-operator/pull/333) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/26905ba587006743ea105b5082322e10b1d19765...45bc9dda411f488693a293a265f776d595f340b8) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/58bf46eaaee91a3be03625177fb884b735fc520c) * [Bug 1921599](https://bugzilla.redhat.com/show_bug.cgi?id=1921599): Add annotations to cluster-csi-drivers namespace [#132](https://github.com/openshift/cluster-storage-operator/pull/132) * Updating cluster-storage-operator builder & base images to be consistent with ART [#124](https://github.com/openshift/cluster-storage-operator/pull/124) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/7ac17e63f34f501b78574524a90a21bf4d99297d...58bf46eaaee91a3be03625177fb884b735fc520c) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/70c87c7025f2c726e523b2fefbb9252772550c1c) * [Bug 1916582](https://bugzilla.redhat.com/show_bug.cgi?id=1916582): readme: specify which keys are used in nightlies/OKD/OCP builds [#30](https://github.com/openshift/cluster-update-keys/pull/30) * Updating ose-cluster-update-keys builder & base images to be consistent with ART [#29](https://github.com/openshift/cluster-update-keys/pull/29) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/4cc42fb333592c974070c7112577806549d3f039...70c87c7025f2c726e523b2fefbb9252772550c1c) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/4a67954c0d5f154d24404e00b3a7d22d5f29629f) * [Bug 2014165](https://bugzilla.redhat.com/show_bug.cgi?id=2014165): pkg/cvo/egress: Load HTTPS proxy from Proxy status [#673](https://github.com/openshift/cluster-version-operator/pull/673) * [Bug 1943973](https://bugzilla.redhat.com/show_bug.cgi?id=1943973): pkg/cvo/sync_worker: Skip precreation of baremetal ClusterOperator [#540](https://github.com/openshift/cluster-version-operator/pull/540) * [Bug 1924194](https://bugzilla.redhat.com/show_bug.cgi?id=1924194): pkg/payload/task_graph: Require firstIncompleteNode to have tasks [#510](https://github.com/openshift/cluster-version-operator/pull/510) * [Bug 1925199](https://bugzilla.redhat.com/show_bug.cgi?id=1925199): add current profile annotations to CVO manifests [#512](https://github.com/openshift/cluster-version-operator/pull/512) * [Bug 1927515](https://bugzilla.redhat.com/show_bug.cgi?id=1927515): pkg/cvo: Use shutdownContext for final status synchronization [#517](https://github.com/openshift/cluster-version-operator/pull/517) * [Bug 1921180](https://bugzilla.redhat.com/show_bug.cgi?id=1921180): pkg/cvo/sync_worker.go: Ignore work changes during init [#506](https://github.com/openshift/cluster-version-operator/pull/506) * [Bug 1918494](https://bugzilla.redhat.com/show_bug.cgi?id=1918494): use child context to verify payload signature on forced update [#504](https://github.com/openshift/cluster-version-operator/pull/504) * *: Replace registry.svc.ci.openshift.org with registry.ci.openshift.org [#502](https://github.com/openshift/cluster-version-operator/pull/502) * [Bug 1896584](https://bugzilla.redhat.com/show_bug.cgi?id=1896584): pkg/cvo/metrics: Abandon child goroutines after shutdownContext expires [#480](https://github.com/openshift/cluster-version-operator/pull/480) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/c35a4e1e37fdf3559d208cae97cf5c9ded9064a7...4a67954c0d5f154d24404e00b3a7d22d5f29629f) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/2ac2b6353aa536ddbb5785509a182baea7829b57) * Updating configmap-reload builder & base images to be consistent with ART [#26](https://github.com/openshift/configmap-reload/pull/26) * [Full changelog](https://github.com/openshift/configmap-reload/compare/c2c7a042e59d3f80dfe2947baa79e71c216a5963...2ac2b6353aa536ddbb5785509a182baea7829b57) ### [console](https://github.com/openshift/console/tree/396693ae74da08241fe7a5bbca40d171c3b8f45c) * [Bug 2002151](https://bugzilla.redhat.com/show_bug.cgi?id=2002151): Fix the event listener optional types [#10019](https://github.com/openshift/console/pull/10019) * [Bug 1987228](https://bugzilla.redhat.com/show_bug.cgi?id=1987228): Handle array to string conversion for HTTPS checkbox value [#9676](https://github.com/openshift/console/pull/9676) * [Bug 1980182](https://bugzilla.redhat.com/show_bug.cgi?id=1980182): operator UI not working with multiple version CRD in 4.6 [#9549](https://github.com/openshift/console/pull/9549) * [Bug 1978159](https://bugzilla.redhat.com/show_bug.cgi?id=1978159): update cluster-local label for ksvc [#9389](https://github.com/openshift/console/pull/9389) * [Bug 1972694](https://bugzilla.redhat.com/show_bug.cgi?id=1972694): Omit bitbucket branch in URL if it contains slash [#9271](https://github.com/openshift/console/pull/9271) * [Bug 1970984](https://bugzilla.redhat.com/show_bug.cgi?id=1970984): Add pipeline annotation to secrets for private git repo import with pipeline [#9224](https://github.com/openshift/console/pull/9224) * [Bug 1972661](https://bugzilla.redhat.com/show_bug.cgi?id=1972661): fixes: WebTerminal widget should send resize events [#9270](https://github.com/openshift/console/pull/9270) * [Bug 1969878](https://bugzilla.redhat.com/show_bug.cgi?id=1969878): fix resources fetched by firehose to show the correct Pod donut [#9199](https://github.com/openshift/console/pull/9199) * [Bug 1960094](https://bugzilla.redhat.com/show_bug.cgi?id=1960094): Make console works against api proxy [#8915](https://github.com/openshift/console/pull/8915) * [Bug 1960545](https://bugzilla.redhat.com/show_bug.cgi?id=1960545): Overly generic CSS rules for dd and dt elements breaks styling elsewhere in console [#8926](https://github.com/openshift/console/pull/8926) * [Bug 1966422](https://bugzilla.redhat.com/show_bug.cgi?id=1966422): Create application edit url based on git provider [#9088](https://github.com/openshift/console/pull/9088) * [Bug 1950490](https://bugzilla.redhat.com/show_bug.cgi?id=1950490): Fix "Create binding" link from Role page, RoleBindings tab [#8686](https://github.com/openshift/console/pull/8686) * [Bug 1961936](https://bugzilla.redhat.com/show_bug.cgi?id=1961936): Fix topology crash on install of ODH operator to project [#8971](https://github.com/openshift/console/pull/8971) * [Bug 1933666](https://bugzilla.redhat.com/show_bug.cgi?id=1933666): [release-4.6] Create ImageStream and other resources for samples step by step [#8261](https://github.com/openshift/console/pull/8261) * [Bug 1948370](https://bugzilla.redhat.com/show_bug.cgi?id=1948370): Remove cluster label from predefined monitoring queries [#8614](https://github.com/openshift/console/pull/8614) * Updating openshift-enterprise-console builder & base images to be consistent with ART [#8386](https://github.com/openshift/console/pull/8386) * [Bug 1939609](https://bugzilla.redhat.com/show_bug.cgi?id=1939609): Fix null handling in FilterToolbar_ to prevent possible exceptions [#8395](https://github.com/openshift/console/pull/8395) * [Bug 1943160](https://bugzilla.redhat.com/show_bug.cgi?id=1943160): support service binding operator version 0.5.0 [#8465](https://github.com/openshift/console/pull/8465) * [Bug 1940905](https://bugzilla.redhat.com/show_bug.cgi?id=1940905): [release-4.6] Remove master as default branch and use only when ref is given [#8424](https://github.com/openshift/console/pull/8424) * [Bug 1943705](https://bugzilla.redhat.com/show_bug.cgi?id=1943705): Add 'Roll Back' action for Replication Controllers [#8491](https://github.com/openshift/console/pull/8491) * [Bug 1927855](https://bugzilla.redhat.com/show_bug.cgi?id=1927855): sort cluster task in pipeline builder [#8139](https://github.com/openshift/console/pull/8139) * [Bug 1925037](https://bugzilla.redhat.com/show_bug.cgi?id=1925037): fix delete app modal error when resource not found [#8053](https://github.com/openshift/console/pull/8053) * [Bug 1935096](https://bugzilla.redhat.com/show_bug.cgi?id=1935096): Apply var pf-global--FontFamily--monospace to the create secret textarea input [#8312](https://github.com/openshift/console/pull/8312) * [Bug 1931515](https://bugzilla.redhat.com/show_bug.cgi?id=1931515): allow choice of binding type when creating RoleBinding [#8212](https://github.com/openshift/console/pull/8212) * [Bug 1933017](https://bugzilla.redhat.com/show_bug.cgi?id=1933017): Fix to avoid overriding of d/dc pod template container values [#8322](https://github.com/openshift/console/pull/8322) * [Bug 1934664](https://bugzilla.redhat.com/show_bug.cgi?id=1934664): Consider finally tasks when calculating task status [#8292](https://github.com/openshift/console/pull/8292) * [Bug 1928230](https://bugzilla.redhat.com/show_bug.cgi?id=1928230): retry co-fetch on 409 POST or 429 [#8155](https://github.com/openshift/console/pull/8155) * [Bug 1933727](https://bugzilla.redhat.com/show_bug.cgi?id=1933727): fix Internal registry deploy flow [#8267](https://github.com/openshift/console/pull/8267) * [Bug 1926121](https://bugzilla.redhat.com/show_bug.cgi?id=1926121): Listing Subscriptions in OLM should also show them when 'All Projects' namespace is picked [#8096](https://github.com/openshift/console/pull/8096) * [Bug 1923939](https://bugzilla.redhat.com/show_bug.cgi?id=1923939): add missing trigger types and update the optional fields - 4.6 [#8015](https://github.com/openshift/console/pull/8015) * [Bug 1927800](https://bugzilla.redhat.com/show_bug.cgi?id=1927800): fix query browser prometheus URL for non admin user [#8138](https://github.com/openshift/console/pull/8138) * [Bug 1926371](https://bugzilla.redhat.com/show_bug.cgi?id=1926371): scale pods using the 'scale' subresource [#8099](https://github.com/openshift/console/pull/8099) * [Bug 1926340](https://bugzilla.redhat.com/show_bug.cgi?id=1926340): Fix that image containers are fetched from external container registries (which doesn't work for private image containers) [#8098](https://github.com/openshift/console/pull/8098) * [Bug 1924437](https://bugzilla.redhat.com/show_bug.cgi?id=1924437): Missing User RoleBindings in the Project Access Web UI [#8034](https://github.com/openshift/console/pull/8034) * [Bug 1924069](https://bugzilla.redhat.com/show_bug.cgi?id=1924069): fix pipeline rerun when pipelineSpec is embedded [#8024](https://github.com/openshift/console/pull/8024) * [Bug 1919138](https://bugzilla.redhat.com/show_bug.cgi?id=1919138): helmchartrepo is not http(s)_proxy-aware [#7901](https://github.com/openshift/console/pull/7901) * [Bug 1916860](https://bugzilla.redhat.com/show_bug.cgi?id=1916860): Filter out helm charts based on kubernetes version [#7851](https://github.com/openshift/console/pull/7851) * [Bug 1920493](https://bugzilla.redhat.com/show_bug.cgi?id=1920493): fix pipeline visualization with same pipeline & task name [#7927](https://github.com/openshift/console/pull/7927) * [Bug 1920530](https://bugzilla.redhat.com/show_bug.cgi?id=1920530): - System roles are not present while trying to create new role binding through web console [#7929](https://github.com/openshift/console/pull/7929) * [Bug 1914342](https://bugzilla.redhat.com/show_bug.cgi?id=1914342): make filesystem queries compatible with both RHCOS and RHEL nodes [#7777](https://github.com/openshift/console/pull/7777) * [Bug 1916406](https://bugzilla.redhat.com/show_bug.cgi?id=1916406): Helm chart repository index can contain unresolvable relative URL's [#7841](https://github.com/openshift/console/pull/7841) * [Bug 1911260](https://bugzilla.redhat.com/show_bug.cgi?id=1911260): Fix logs streaming issue in multistream logs [#7663](https://github.com/openshift/console/pull/7663) * [Bug 1924224](https://bugzilla.redhat.com/show_bug.cgi?id=1924224): Fix source code URL for apps created using self-hosted repositories [#8031](https://github.com/openshift/console/pull/8031) * [Bug 1921603](https://bugzilla.redhat.com/show_bug.cgi?id=1921603): Fix crash when loaded is true but the data set doesn't include the pods [#7985](https://github.com/openshift/console/pull/7985) * [Bug 1916378](https://bugzilla.redhat.com/show_bug.cgi?id=1916378): fix skipped tasks in conditional pipelines [#7843](https://github.com/openshift/console/pull/7843) * [Bug 1915013](https://bugzilla.redhat.com/show_bug.cgi?id=1915013): Fix pipeline visualization issue when taskspecs is used [#7859](https://github.com/openshift/console/pull/7859) * [Bug 1910199](https://bugzilla.redhat.com/show_bug.cgi?id=1910199): Replace 'Baremetal' with 'BareMetal' in the supported platforms for I… [#7637](https://github.com/openshift/console/pull/7637) * [Bug 1924085](https://bugzilla.redhat.com/show_bug.cgi?id=1924085): don't hard-code artifact dir path [#8025](https://github.com/openshift/console/pull/8025) * [Bug 1893738](https://bugzilla.redhat.com/show_bug.cgi?id=1893738): Fix crash when helm manifest yaml contains duplicate keys [#7069](https://github.com/openshift/console/pull/7069) * [Bug 1887813](https://bugzilla.redhat.com/show_bug.cgi?id=1887813): assign masquerade to pod interface in RHV import [#6936](https://github.com/openshift/console/pull/6936) * [Bug 1907827](https://bugzilla.redhat.com/show_bug.cgi?id=1907827): fixes issue with kn resources if trigger goes to ksvc and IMC from same broker [#7550](https://github.com/openshift/console/pull/7550) * [Bug 1905788](https://bugzilla.redhat.com/show_bug.cgi?id=1905788): - Role name missing on create role binding form [#7476](https://github.com/openshift/console/pull/7476) * [Bug 1909673](https://bugzilla.redhat.com/show_bug.cgi?id=1909673): Hide scale buttons of pod donut for Pod resources [#7472](https://github.com/openshift/console/pull/7472) * [Bug 1891697](https://bugzilla.redhat.com/show_bug.cgi?id=1891697): Handle missing labels as empty [#7002](https://github.com/openshift/console/pull/7002) * Updating openshift-enterprise-console builder & base images to be consistent with ART [#7811](https://github.com/openshift/console/pull/7811) * [Bug 1910066](https://bugzilla.redhat.com/show_bug.cgi?id=1910066): fix yaml editor from remounting [#7635](https://github.com/openshift/console/pull/7635) * [Bug 1910156](https://bugzilla.redhat.com/show_bug.cgi?id=1910156): Add tolerations for ocs taint in localvolumeset and localvolumediscovery [#7636](https://github.com/openshift/console/pull/7636) * [release-4.6 ]Bug 1908749: Fix cluster creation when using localvolume [#7591](https://github.com/openshift/console/pull/7591) * [Bug 1895325](https://bugzilla.redhat.com/show_bug.cgi?id=1895325): Enable external mode for OpenStack and oVirt platform [#7141](https://github.com/openshift/console/pull/7141) * [Bug 1905947](https://bugzilla.redhat.com/show_bug.cgi?id=1905947): Add support for phase values of CephObjectStoreKind CRD used in OCS 4.5 [#7478](https://github.com/openshift/console/pull/7478) * [Bug 1905622](https://bugzilla.redhat.com/show_bug.cgi?id=1905622): Remove restriction on disk type selection for LocalVolumeSet [#7464](https://github.com/openshift/console/pull/7464) * [Bug 1885442](https://bugzilla.redhat.com/show_bug.cgi?id=1885442): Fallback to GQL HTTP on iOS devices [#6843](https://github.com/openshift/console/pull/6843) * [Bug 1899382](https://bugzilla.redhat.com/show_bug.cgi?id=1899382): removes techpreview badge from eventing [#7264](https://github.com/openshift/console/pull/7264) * [Bug 1899056](https://bugzilla.redhat.com/show_bug.cgi?id=1899056): Update dc strategy type and rolling params [#7263](https://github.com/openshift/console/pull/7263) * [Bug 1898302](https://bugzilla.redhat.com/show_bug.cgi?id=1898302): Use KUBEADM_PASSWORD_FILE by default [#7227](https://github.com/openshift/console/pull/7227) * [Bug 1897766](https://bugzilla.redhat.com/show_bug.cgi?id=1897766): [release-4.6]Incorrect instructions in the Serverless operator and application quick starts (edit) [#7215](https://github.com/openshift/console/pull/7215) * [Bug 1897019](https://bugzilla.redhat.com/show_bug.cgi?id=1897019): disable os upload if no os avaliable [#7194](https://github.com/openshift/console/pull/7194) * [Bug 1896625](https://bugzilla.redhat.com/show_bug.cgi?id=1896625): update apiVersion for eventing resources wrt serverless 1.10 [#7179](https://github.com/openshift/console/pull/7179) * [Bug 1896149](https://bugzilla.redhat.com/show_bug.cgi?id=1896149): Determine Secret type upon the save [#7161](https://github.com/openshift/console/pull/7161) * [Bug 1895434](https://bugzilla.redhat.com/show_bug.cgi?id=1895434): Fix edit flow in case of custom template application [#7148](https://github.com/openshift/console/pull/7148) * [Bug 1895426](https://bugzilla.redhat.com/show_bug.cgi?id=1895426): Show custom builder image in edit flows BuilderImage section [#7147](https://github.com/openshift/console/pull/7147) * [Bug 1894878](https://bugzilla.redhat.com/show_bug.cgi?id=1894878): Access server API via kubernetes.default.svc from Helm endpoints [#7132](https://github.com/openshift/console/pull/7132) * [Bug 1891499](https://bugzilla.redhat.com/show_bug.cgi?id=1891499): Show additional machine config pools while updating [#7008](https://github.com/openshift/console/pull/7008) * [Bug 1891891](https://bugzilla.redhat.com/show_bug.cgi?id=1891891): Wrong detail head on network policy detail page [#7007](https://github.com/openshift/console/pull/7007) * [Bug 1890994](https://bugzilla.redhat.com/show_bug.cgi?id=1890994): Fix form re-render on cancelling [#6988](https://github.com/openshift/console/pull/6988) * [Bug 1890993](https://bugzilla.redhat.com/show_bug.cgi?id=1890993): Fix selected capacity to reflect correct disk size [#6987](https://github.com/openshift/console/pull/6987) * [Bug 1888717](https://bugzilla.redhat.com/show_bug.cgi?id=1888717): Cypress: Fix 'link-name' accesibility violation [#6942](https://github.com/openshift/console/pull/6942) * [Bug 1887551](https://bugzilla.redhat.com/show_bug.cgi?id=1887551): Add additional provisioners to their AccessMode mapping [#6908](https://github.com/openshift/console/pull/6908) * [Bug 1904600](https://bugzilla.redhat.com/show_bug.cgi?id=1904600): Fix cluster monitoring link [#7429](https://github.com/openshift/console/pull/7429) * [Bug 1901110](https://bugzilla.redhat.com/show_bug.cgi?id=1901110): fix pod donut information [#7313](https://github.com/openshift/console/pull/7313) * [Bug 1899728](https://bugzilla.redhat.com/show_bug.cgi?id=1899728): fix filesystem queries [#7278](https://github.com/openshift/console/pull/7278) * [Bug 1892428](https://bugzilla.redhat.com/show_bug.cgi?id=1892428): Update library-go and replace runc module for v1.0.0-rc8 version [#7022](https://github.com/openshift/console/pull/7022) * [Bug 1897043](https://bugzilla.redhat.com/show_bug.cgi?id=1897043): add support for customSchema in resource sidebar for helm charts [#7175](https://github.com/openshift/console/pull/7175) * [Bug 1898096](https://bugzilla.redhat.com/show_bug.cgi?id=1898096): Ensure correct git URL for topology edit icon [#7218](https://github.com/openshift/console/pull/7218) * [Bug 1890614](https://bugzilla.redhat.com/show_bug.cgi?id=1890614): Fix Cypress test flake and accesibility violation: 'Ensures buttons have discernible text' [#6981](https://github.com/openshift/console/pull/6981) * [Bug 1887782](https://bugzilla.redhat.com/show_bug.cgi?id=1887782): Include CDI disk cloning to VM status [#6923](https://github.com/openshift/console/pull/6923) * [Bug 1898875](https://bugzilla.redhat.com/show_bug.cgi?id=1898875): Remove Tech Preview badge from dev console monitoring [#7063](https://github.com/openshift/console/pull/7063) * [Bug 1893909](https://bugzilla.redhat.com/show_bug.cgi?id=1893909): Remove Project link from Application Details page [#7078](https://github.com/openshift/console/pull/7078) * [Bug 1899512](https://bugzilla.redhat.com/show_bug.cgi?id=1899512): Allow creating storage cluster irrespective of LSO namespace [#7268](https://github.com/openshift/console/pull/7268) * [Bug 1896600](https://bugzilla.redhat.com/show_bug.cgi?id=1896600): Tolerate missing `status` on OperatorGroups [#7177](https://github.com/openshift/console/pull/7177) * [Bug 1894868](https://bugzilla.redhat.com/show_bug.cgi?id=1894868): Correctly report errors when backend tests fail [#7273](https://github.com/openshift/console/pull/7273) * [Bug 1894868](https://bugzilla.redhat.com/show_bug.cgi?id=1894868): fixed test "returned merged index file for all accessible helm repos" [#7149](https://github.com/openshift/console/pull/7149) * [Bug 1894227](https://bugzilla.redhat.com/show_bug.cgi?id=1894227): Handle values of 0 for maxUnavailable and maxSurge [#7090](https://github.com/openshift/console/pull/7090) * [Bug 1893626](https://bugzilla.redhat.com/show_bug.cgi?id=1893626): Fix Encryption request for OCS [#7089](https://github.com/openshift/console/pull/7089) * [Bug 1885309](https://bugzilla.redhat.com/show_bug.cgi?id=1885309): Fix bug where <Timestamp> for 12 hour has incorrect suffix [#6835](https://github.com/openshift/console/pull/6835) * [Bug 1894235](https://bugzilla.redhat.com/show_bug.cgi?id=1894235): Fix to allow shift-drag to regroup knative services in topology [#7091](https://github.com/openshift/console/pull/7091) * [Bug 1893620](https://bugzilla.redhat.com/show_bug.cgi?id=1893620): Replace route dropdown input with typeahead select menu in import/edit flow [#7064](https://github.com/openshift/console/pull/7064) * [Bug 1892259](https://bugzilla.redhat.com/show_bug.cgi?id=1892259): Format markdown text in Install Operand Form [#7010](https://github.com/openshift/console/pull/7010) * [Bug 1890465](https://bugzilla.redhat.com/show_bug.cgi?id=1890465): Fix edit app flow in case service not available [#6978](https://github.com/openshift/console/pull/6978) * [Bug 1888577](https://bugzilla.redhat.com/show_bug.cgi?id=1888577): PVC upload cannot continue after approve the certificate [#6938](https://github.com/openshift/console/pull/6938) * [Bug 1887612](https://bugzilla.redhat.com/show_bug.cgi?id=1887612): Change default terminal command for Windows Pods [#6911](https://github.com/openshift/console/pull/6911) * [Bug 1885724](https://bugzilla.redhat.com/show_bug.cgi?id=1885724): Update doc links in installed operators page [#6855](https://github.com/openshift/console/pull/6855) * [Bug 1894129](https://bugzilla.redhat.com/show_bug.cgi?id=1894129): Dont use lookbehinds regexp [#7085](https://github.com/openshift/console/pull/7085) * [Bug 1893784](https://bugzilla.redhat.com/show_bug.cgi?id=1893784): Use correct service account for operator monitoring [#7073](https://github.com/openshift/console/pull/7073) * [Bug 1893015](https://bugzilla.redhat.com/show_bug.cgi?id=1893015): Fix compression card metrics for Persitent dashboard [#7044](https://github.com/openshift/console/pull/7044) * [Bug 1892695](https://bugzilla.redhat.com/show_bug.cgi?id=1892695): update kafkaSource v1beta1 spec to remove resources [#7027](https://github.com/openshift/console/pull/7027) * [Bug 1885239](https://bugzilla.redhat.com/show_bug.cgi?id=1885239): Fix runtime error for basic users creating Prometheus instance [#6834](https://github.com/openshift/console/pull/6834) * [Full changelog](https://github.com/openshift/console/compare/29ada8b5b6506739fa8efe0afa6ba90ec1574f7e...396693ae74da08241fe7a5bbca40d171c3b8f45c) ### [console-operator](https://github.com/openshift/console-operator/tree/7fd78a283616d3b0a99b5b5b1f2b765a192d9165) * Updating openshift-enterprise-console-operator builder & base images to be consistent with ART [#497](https://github.com/openshift/console-operator/pull/497) * [Full changelog](https://github.com/openshift/console-operator/compare/b195cebf52ea7af30178f4704ac269f482d70208...7fd78a283616d3b0a99b5b5b1f2b765a192d9165) ### [coredns](https://github.com/openshift/coredns/tree/885fb55e59fe360b17f9f8eb3c0aebd1d5f49987) * Updating coredns builder & base images to be consistent with ART [#49](https://github.com/openshift/coredns/pull/49) * [Full changelog](https://github.com/openshift/coredns/compare/546f3f058ba946112117e75c043884dd1f3a1a79...885fb55e59fe360b17f9f8eb3c0aebd1d5f49987) ### [csi-driver-manila](https://github.com/openshift/cloud-provider-openstack/tree/6dd9c20135583f65c7f8caca9ad583cf0c2281c8) * Updating csi-driver-manila builder & base images to be consistent with ART [#42](https://github.com/openshift/cloud-provider-openstack/pull/42) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/6c00ca59764fc584b6d7cb4fded8058439c36c55...6dd9c20135583f65c7f8caca9ad583cf0c2281c8) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/fe62be967e2337da1238592f75c4010f0c6694a0) * [Bug 2002556](https://bugzilla.redhat.com/show_bug.cgi?id=2002556): Do not degrade cluster on failure to reach Manila [#127](https://github.com/openshift/csi-driver-manila-operator/pull/127) * [Bug 2000097](https://bugzilla.redhat.com/show_bug.cgi?id=2000097): Use cluster Proxy when available [#118](https://github.com/openshift/csi-driver-manila-operator/pull/118) * Updating csi-driver-manila-operator builder & base images to be consistent with ART [#76](https://github.com/openshift/csi-driver-manila-operator/pull/76) * [Bug 1918367](https://bugzilla.redhat.com/show_bug.cgi?id=1918367): Make Manila operator more tolerant [#88](https://github.com/openshift/csi-driver-manila-operator/pull/88) * [Bug 1921599](https://bugzilla.redhat.com/show_bug.cgi?id=1921599): Add "openshift.io/node-selector" annotation to namespace [#87](https://github.com/openshift/csi-driver-manila-operator/pull/87) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/dbaa87c5c62e519764f082eb575cbe79830822f4...fe62be967e2337da1238592f75c4010f0c6694a0) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/5e962cbd824dc5b5634f54a645e4907a1494fe04) * [Bug 1916166](https://bugzilla.redhat.com/show_bug.cgi?id=1916166): Updating csi-driver-nfs builder & base images to be consistent with ART [#38](https://github.com/openshift/csi-driver-nfs/pull/38) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/a2fbb38d91b64e5216fefc1bde231dd0d14a2f4f...5e962cbd824dc5b5634f54a645e4907a1494fe04) ### [csi-external-attacher](https://github.com/openshift/csi-external-attacher/tree/45e712af8947aa25865ffb4ebf1f8e466a1d3281) * Updating csi-attacher builder & base images to be consistent with ART [#27](https://github.com/openshift/csi-external-attacher/pull/27) * [Full changelog](https://github.com/openshift/csi-external-attacher/compare/22028566f1a7f37b4e36b538675a012a2849eaa3...45e712af8947aa25865ffb4ebf1f8e466a1d3281) ### [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner/tree/e079d112ff1a9b751fb85c2972f71031af08f0c1) * Updating csi-provisioner builder & base images to be consistent with ART [#35](https://github.com/openshift/csi-external-provisioner/pull/35) * [Full changelog](https://github.com/openshift/csi-external-provisioner/compare/f9236b940f780b9d213f2827ecd9619472741f5f...e079d112ff1a9b751fb85c2972f71031af08f0c1) ### [csi-external-resizer](https://github.com/openshift/csi-external-resizer/tree/b2c4b92328ad1a1dd81498170d107ce9a57d89e3) * Updating ose-csi-external-resizer builder & base images to be consistent with ART [#116](https://github.com/openshift/csi-external-resizer/pull/116) * [Full changelog](https://github.com/openshift/csi-external-resizer/compare/71a3e63c75df148e842decf6f7d323cee4842829...b2c4b92328ad1a1dd81498170d107ce9a57d89e3) ### [csi-external-snapshotter, csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter/tree/c80c3836d33131ed810cbe9f599e3cc2d2746dfd) * Updating ose-csi-snapshot-controller builder & base images to be consistent with ART [#37](https://github.com/openshift/csi-external-snapshotter/pull/37) * Updating ose-csi-external-snapshotter builder & base images to be consistent with ART [#38](https://github.com/openshift/csi-external-snapshotter/pull/38) * [Full changelog](https://github.com/openshift/csi-external-snapshotter/compare/39e8856e4ea641509dbe26d36488f3f6457aeb66...c80c3836d33131ed810cbe9f599e3cc2d2746dfd) ### [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe/tree/53f2398ae6f0c7397a8854a2160d55a79b429252) * Updating csi-livenessprobe builder & base images to be consistent with ART [#20](https://github.com/openshift/csi-livenessprobe/pull/20) * [Full changelog](https://github.com/openshift/csi-livenessprobe/compare/d56a57739d234a04d5813f0ea3dfad052b38ab9a...53f2398ae6f0c7397a8854a2160d55a79b429252) ### [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar/tree/4ba25176eb3657f7b86b7c34854faae895212ce6) * Updating csi-node-driver-registrar builder & base images to be consistent with ART [#25](https://github.com/openshift/csi-node-driver-registrar/pull/25) * [Full changelog](https://github.com/openshift/csi-node-driver-registrar/compare/1746713b261823765a1f4c9e623f9570d35b2102...4ba25176eb3657f7b86b7c34854faae895212ce6) ### [docker-builder](https://github.com/openshift/builder/tree/263041a5e75138509e89d5a286a1fd5186609d9e) * [Bug 1946363](https://bugzilla.redhat.com/show_bug.cgi?id=1946363): move entitlement related secrets back to mounts.conf [#242](https://github.com/openshift/builder/pull/242) * [Bug 1939219](https://bugzilla.redhat.com/show_bug.cgi?id=1939219): bump(*): [#225](https://github.com/openshift/builder/pull/225) * [Bug 1919359](https://bugzilla.redhat.com/show_bug.cgi?id=1919359): better surface dockerconfigjson errors causing image pull errors [#210](https://github.com/openshift/builder/pull/210) * Updating openshift-enterprise-builder builder & base images to be consistent with ART [#201](https://github.com/openshift/builder/pull/201) * [Bug 1920626](https://bugzilla.redhat.com/show_bug.cgi?id=1920626): more automount of cluster trust bundle reverts; no longer automount /run/secrets [#212](https://github.com/openshift/builder/pull/212) * [Bug 1920626](https://bugzilla.redhat.com/show_bug.cgi?id=1920626): narrow scope of rhsm transient bind mount [#211](https://github.com/openshift/builder/pull/211) * Force use of runc, since we know we're privileged, and customize our seccomp filter [#207](https://github.com/openshift/builder/pull/207) * [Bug 1889955](https://bugzilla.redhat.com/show_bug.cgi?id=1889955): Bump dependencies to mitigate CVE-2020-8564 [#193](https://github.com/openshift/builder/pull/193) * [Bug 1901512](https://bugzilla.redhat.com/show_bug.cgi?id=1901512): Fix private git clones behind a proxy [#192](https://github.com/openshift/builder/pull/192) * [Bug 1895093](https://bugzilla.redhat.com/show_bug.cgi?id=1895093): Do not mount /etc/pki/ca-trust in builds [#186](https://github.com/openshift/builder/pull/186) * [Full changelog](https://github.com/openshift/builder/compare/c2e4bcb84835f3fa29532c04b4db21d5ec7078ce...263041a5e75138509e89d5a286a1fd5186609d9e) ### [docker-registry](https://github.com/openshift/image-registry/tree/6c33fc3a0b55ee4386c0ce44fdcc74922594f539) * [Bug 2003629](https://bugzilla.redhat.com/show_bug.cgi?id=2003629): Use apimachinery with HTTP/2 health checks enabled [#293](https://github.com/openshift/image-registry/pull/293) * [Bug 1982611](https://bugzilla.redhat.com/show_bug.cgi?id=1982611): bump aws-sdk-go to v1.38.35 [#287](https://github.com/openshift/image-registry/pull/287) * [Bug 1946694](https://bugzilla.redhat.com/show_bug.cgi?id=1946694): Run remote registries for pull-through tests as pods [#269](https://github.com/openshift/image-registry/pull/269) * [Bug 1930802](https://bugzilla.redhat.com/show_bug.cgi?id=1930802): Replace bitbucket.org/ww/goautoneg with its mirror [#266](https://github.com/openshift/image-registry/pull/266) * Updating openshift-enterprise-registry builder & base images to be consistent with ART [#261](https://github.com/openshift/image-registry/pull/261) * [Full changelog](https://github.com/openshift/image-registry/compare/077ff76b50c443a525afbb78ad4159bf35f28c0b...6c33fc3a0b55ee4386c0ce44fdcc74922594f539) ### [etcd](https://github.com/openshift/etcd/tree/2cc1056e339d36522b47b6a9c0835accc3395847) * [ETCD-178](https://issues.redhat.com/browse/ETCD-178): Bug 1951823: openshift-tools: fix on off flow and add unit tests [#77](https://github.com/openshift/etcd/pull/77) * Updating ose-etcd builder & base images to be consistent with ART [#66](https://github.com/openshift/etcd/pull/66) * [Full changelog](https://github.com/openshift/etcd/compare/2856025fb4b5b04504857e249fb0998e6a40722d...2cc1056e339d36522b47b6a9c0835accc3395847) ### [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp/tree/9b15b1192f37d45821100ca047617849db996342) * [Bug 1941563](https://bugzilla.redhat.com/show_bug.cgi?id=1941563): Ensure response body is closed when we are finished with the request [#154](https://github.com/openshift/cluster-api-provider-gcp/pull/154) * "Bug 1912531: revendor mao" [#149](https://github.com/openshift/cluster-api-provider-gcp/pull/149) * [Full changelog](https://github.com/openshift/cluster-api-provider-gcp/compare/a0fc9aa4ce818d9f8e5f1a4f84ef703ec6180558...9b15b1192f37d45821100ca047617849db996342) ### [grafana](https://github.com/openshift/grafana/tree/1075a442529594154a8fd148a9679b634194cc3b) * Updating grafana builder & base images to be consistent with ART [#53](https://github.com/openshift/grafana/pull/53) * [Full changelog](https://github.com/openshift/grafana/compare/0ef8a9c1bb49a85dad67d2143c31bc8bc53c6371...1075a442529594154a8fd148a9679b634194cc3b) ### [haproxy-router](https://github.com/openshift/router/tree/60ad303221c7abe68e115d699b68c3de78900986) * [Bug 1971013](https://bugzilla.redhat.com/show_bug.cgi?id=1971013): template helper - generateHAProxyWhiteListFile, use right arg type [#303](https://github.com/openshift/router/pull/303) * [Bug 1965329](https://bugzilla.redhat.com/show_bug.cgi?id=1965329): Add a condition to check if the Endpoints ID is duplicated [#292](https://github.com/openshift/router/pull/292) * [Bug 1938922](https://bugzilla.redhat.com/show_bug.cgi?id=1938922): router/template: Cache compiled regular expressions [#270](https://github.com/openshift/router/pull/270) * [Bug 1900991](https://bugzilla.redhat.com/show_bug.cgi?id=1900991): Move idle check from endpoints to service [#253](https://github.com/openshift/router/pull/253) * [Bug 1896167](https://bugzilla.redhat.com/show_bug.cgi?id=1896167): metrics: Rework template_router_reload_failure metric [#215](https://github.com/openshift/router/pull/215) * [Bug 1918194](https://bugzilla.redhat.com/show_bug.cgi?id=1918194): Prevent unnecessary reloads in router shards [#247](https://github.com/openshift/router/pull/247) * [Bug 1918371](https://bugzilla.redhat.com/show_bug.cgi?id=1918371): Add tunnel-timeout and hard-stop-after options to haproxy template [#249](https://github.com/openshift/router/pull/249) * Updating openshift-enterprise-haproxy-router builder & base images to be consistent with ART [#246](https://github.com/openshift/router/pull/246) * Updating ose-haproxy-router-base builder & base images to be consistent with ART [#242](https://github.com/openshift/router/pull/242) * [Bug 1904010](https://bugzilla.redhat.com/show_bug.cgi?id=1904010): Add unit tests to verify NotReadyAddresses in EndpointSlices [#232](https://github.com/openshift/router/pull/232) * [Bug 1904010](https://bugzilla.redhat.com/show_bug.cgi?id=1904010): Check Ready condition status in Endpointslices [#230](https://github.com/openshift/router/pull/230) * [Bug 1886213](https://bugzilla.redhat.com/show_bug.cgi?id=1886213): haproxy-config.template: Only enable HTX for HTTP/2 [#199](https://github.com/openshift/router/pull/199) * [Bug 1896905](https://bugzilla.redhat.com/show_bug.cgi?id=1896905): Clip haproxy.router.openshift.io/timeout annotation values to prevent bricking on upgrade [#217](https://github.com/openshift/router/pull/217) * [Full changelog](https://github.com/openshift/router/compare/189bd7fd5594e09e85b9af178738ae3550a39995...60ad303221c7abe68e115d699b68c3de78900986) ### [hyperkube](https://github.com/openshift/kubernetes/tree/3d191957052484a560fcc5385d6685547fc6c9f4) * [Bug 1939541](https://bugzilla.redhat.com/show_bug.cgi?id=1939541): UPSTREAM: 100678: apf: exempt probes /healthz /livez /readyz [#659](https://github.com/openshift/kubernetes/pull/659) * [Bug 2021468](https://bugzilla.redhat.com/show_bug.cgi?id=2021468): Rebase v1.19.16 [#1035](https://github.com/openshift/kubernetes/pull/1035) * [Bug 2008266](https://bugzilla.redhat.com/show_bug.cgi?id=2008266): Rebase 1.19.14 [#962](https://github.com/openshift/kubernetes/pull/962) * [Bug 1993752](https://bugzilla.redhat.com/show_bug.cgi?id=1993752): UPSTREAM: 104340: Pass additional flags to subpath mount to avoid fla… [#942](https://github.com/openshift/kubernetes/pull/942) * [Bug 1996849](https://bugzilla.redhat.com/show_bug.cgi?id=1996849): UPSTREAM: 98571: kubelet: Stop probing a pod during graceful shutdown [#902](https://github.com/openshift/kubernetes/pull/902) * [Bug 1989061](https://bugzilla.redhat.com/show_bug.cgi?id=1989061): don't apply defaultAllowPrivilegeEscalation:false when container is privileged [#939](https://github.com/openshift/kubernetes/pull/939) * [Bug 1981784](https://bugzilla.redhat.com/show_bug.cgi?id=1981784): UPSTREAM: <drop>: bump(apiserver-library-go) [#894](https://github.com/openshift/kubernetes/pull/894) * [Bug 1951727](https://bugzilla.redhat.com/show_bug.cgi?id=1951727): Speed up PV provisioning for vsphere driver (ocp-4.6) [#691](https://github.com/openshift/kubernetes/pull/691) * [Bug 1959420](https://bugzilla.redhat.com/show_bug.cgi?id=1959420): fix a 4.6 test flake [#740](https://github.com/openshift/kubernetes/pull/740) * [Bug 1958371](https://bugzilla.redhat.com/show_bug.cgi?id=1958371): UPSTREAM: 98424: register all pending pod deletions and check for kill [#779](https://github.com/openshift/kubernetes/pull/779) * [Bug 1966811](https://bugzilla.redhat.com/show_bug.cgi?id=1966811): UPSTREAM: 102224: Fix expired unit test certs [#781](https://github.com/openshift/kubernetes/pull/781) * [Bug 1942146](https://bugzilla.redhat.com/show_bug.cgi?id=1942146): Fix labels of Cinder PVs [#636](https://github.com/openshift/kubernetes/pull/636) * [Bug 1960002](https://bugzilla.redhat.com/show_bug.cgi?id=1960002): UPSTREAM: 99393: kubelet: reduce configmap and secret watch [#745](https://github.com/openshift/kubernetes/pull/745) * [Bug 1951467](https://bugzilla.redhat.com/show_bug.cgi?id=1951467): fix loop bug for verify attached volume [#683](https://github.com/openshift/kubernetes/pull/683) * [Bug 1942630](https://bugzilla.redhat.com/show_bug.cgi?id=1942630): UPSTREAM: 96789: Choosing the right source VIP for local endpoints [#639](https://github.com/openshift/kubernetes/pull/639) * [Bug 1933624](https://bugzilla.redhat.com/show_bug.cgi?id=1933624): 4.6: UPSTREAM: 96751: Lower the frequency of volume plugin deprecation warning [#596](https://github.com/openshift/kubernetes/pull/596) * [Bug 1930960](https://bugzilla.redhat.com/show_bug.cgi?id=1930960): UPSTREAM: 94087: kubelet: node sync at least once [#582](https://github.com/openshift/kubernetes/pull/582) * [Bug 1918994](https://bugzilla.redhat.com/show_bug.cgi?id=1918994): Override termination grace period on annotation [#533](https://github.com/openshift/kubernetes/pull/533) * [Bug 1913543](https://bugzilla.redhat.com/show_bug.cgi?id=1913543): UPSTREAM: 97006: kubelet: Fix cadvisor machine metrics [#511](https://github.com/openshift/kubernetes/pull/511) * [Bug 1924785](https://bugzilla.redhat.com/show_bug.cgi?id=1924785): UPSTREAM: 89885: SQUASH: Fix cinder crash [#548](https://github.com/openshift/kubernetes/pull/548) * BUG 1891107: UPSTREAM: 95259: allocate service-account flowschema to global-default [#428](https://github.com/openshift/kubernetes/pull/428) * [Bug 1926262](https://bugzilla.redhat.com/show_bug.cgi?id=1926262): Prevent GCP e2e tests from triggering a rate limit on the listZone API [#556](https://github.com/openshift/kubernetes/pull/556) * [Bug 1919453](https://bugzilla.redhat.com/show_bug.cgi?id=1919453): Allow test images to be in a single mirror [#536](https://github.com/openshift/kubernetes/pull/536) * [Bug 1919069](https://bugzilla.redhat.com/show_bug.cgi?id=1919069): UPSTREAM: 98103: kubelet: Delete static pod gracefully and fix mirrorPodTerminationMap leak [#535](https://github.com/openshift/kubernetes/pull/535) * [Bug 1900241](https://bugzilla.redhat.com/show_bug.cgi?id=1900241): UPSTREAM: Skip "subPath should be able to unmount" NFS test [#468](https://github.com/openshift/kubernetes/pull/468) * Updating openshift-enterprise-hyperkube builder & base images to be consistent with ART [#519](https://github.com/openshift/kubernetes/pull/519) * [Bug 1894916](https://bugzilla.redhat.com/show_bug.cgi?id=1894916): Panic output due to timeouts in kube apiserver [#480](https://github.com/openshift/kubernetes/pull/480) * Merge [#540](https://github.com/openshift/kubernetes/pull/540) * [Bug 1907461](https://bugzilla.redhat.com/show_bug.cgi?id=1907461): kubelet: do not rerun init containers if any main containers have status [#486](https://github.com/openshift/kubernetes/pull/486) * [Bug 1915583](https://bugzilla.redhat.com/show_bug.cgi?id=1915583): UPSTREAM: 97860: move all variables in sampleAndWaterMarkHistograms::innerSet [#521](https://github.com/openshift/kubernetes/pull/521) * [Bug 1916335](https://bugzilla.redhat.com/show_bug.cgi?id=1916335): UPSTREAM: 96310: PV e2e: fix race in NFS recycling test [#524](https://github.com/openshift/kubernetes/pull/524) * [Bug 1915247](https://bugzilla.redhat.com/show_bug.cgi?id=1915247): UPSTREAM: 97915: kube-aggregator: fix apiservice availability gauge [#518](https://github.com/openshift/kubernetes/pull/518) * [Bug 1887308](https://bugzilla.redhat.com/show_bug.cgi?id=1887308): UPSTREAM: 94712: avoid potential secret leaking while reading .dockercfg [#437](https://github.com/openshift/kubernetes/pull/437) * [Bug 1912564](https://bugzilla.redhat.com/show_bug.cgi?id=1912564): UPSTREAM: 97323: fix the deadlock in priority and fairness config controller [#501](https://github.com/openshift/kubernetes/pull/501) * [Bug 1912564](https://bugzilla.redhat.com/show_bug.cgi?id=1912564): UPSTREAM: 97206: clean up executing request on panic [#502](https://github.com/openshift/kubernetes/pull/502) * [Bug 1889936](https://bugzilla.redhat.com/show_bug.cgi?id=1889936): UPSTREAM: 94774: Fix misusage of RLock in timeCache lru.Cache.Get() [#419](https://github.com/openshift/kubernetes/pull/419) * [Bug 1887748](https://bugzilla.redhat.com/show_bug.cgi?id=1887748): [4.6] UPSTREAM: 95245: Mask Ceph RBD adminSecrets in logs when logLevel >= 4 [#407](https://github.com/openshift/kubernetes/pull/407) * [Bug 1901208](https://bugzilla.redhat.com/show_bug.cgi?id=1901208): Nodes goes into NotReady state (VMware) [#466](https://github.com/openshift/kubernetes/pull/466) * [Bug 1896691](https://bugzilla.redhat.com/show_bug.cgi?id=1896691): UPSTREAM: 96120: kubelet: Expose a simple Get-WinEvent shim on the kubelet logs endpoint [#446](https://github.com/openshift/kubernetes/pull/446) * [Bug 1885619](https://bugzilla.redhat.com/show_bug.cgi?id=1885619): fix kube-apiserver termination event(s) validation failures [#396](https://github.com/openshift/kubernetes/pull/396) * [Bug 1896318](https://bugzilla.redhat.com/show_bug.cgi?id=1896318): UPSTREAM: 95236: vsphere: improve logging message on node cache refresh event [#443](https://github.com/openshift/kubernetes/pull/443) * [Bug 1900630](https://bugzilla.redhat.com/show_bug.cgi?id=1900630): 4.6: Update from Kubernetes 1.19.0 to 1.19.4 [#435](https://github.com/openshift/kubernetes/pull/435) * [Bug 1899406](https://bugzilla.redhat.com/show_bug.cgi?id=1899406): HPA: Ignore deleted pods. [#465](https://github.com/openshift/kubernetes/pull/465) * [Full changelog](https://github.com/openshift/kubernetes/compare/9f84db336d1a77cba52684ecb51bfb197e9b4533...3d191957052484a560fcc5385d6685547fc6c9f4) ### [insights-operator](https://github.com/openshift/insights-operator/tree/69f216828f180b08c15ba4f2620ffa2404144090) * [release 4.6] Bug 1891544: Adds ContainerRuntimeConfig gatherer [#238](https://github.com/openshift/insights-operator/pull/238) * [Bug 1913645](https://bugzilla.redhat.com/show_bug.cgi?id=1913645): Improved Red Hat image and crashlooping OpenShift pod collection [#304](https://github.com/openshift/insights-operator/pull/304) * [release 4.6] Bug 1889676: Gather installplans [#243](https://github.com/openshift/insights-operator/pull/243) * [release 4.6] Bug 1887759: Adds MachineConfigPool gatherer [#213](https://github.com/openshift/insights-operator/pull/213) * [release 4.6] Bug 1905031: Collect spec config for clusteroperator resources [#286](https://github.com/openshift/insights-operator/pull/286) * Updating ose-insights-operator builder & base images to be consistent with ART [#311](https://github.com/openshift/insights-operator/pull/311) * [Bug 1894244](https://bugzilla.redhat.com/show_bug.cgi?id=1894244): Fixes records index on diskrecorder [#261](https://github.com/openshift/insights-operator/pull/261) * [release 4.6] Bug 1888165: Add the namespace to the gatherers reports to avoid conflicts [#221](https://github.com/openshift/insights-operator/pull/221) * [Bug 1904014](https://bugzilla.redhat.com/show_bug.cgi?id=1904014): Add hostsubnet to sample archive & fix bug… [#276](https://github.com/openshift/insights-operator/pull/276) * [release 4.6] Bug 1888602: Fixes policyClient and the corresponding config. [#226](https://github.com/openshift/insights-operator/pull/226) * temporarily remove e2e-tests (delayed upload) [#256](https://github.com/openshift/insights-operator/pull/256) * Update owners list [#251](https://github.com/openshift/insights-operator/pull/251) * Backport e2e tests [#248](https://github.com/openshift/insights-operator/pull/248) * [Full changelog](https://github.com/openshift/insights-operator/compare/c2d2c030daf42f3eeb7c3ad35a81e31624af4a86...69f216828f180b08c15ba4f2620ffa2404144090) ### [ironic](https://github.com/openshift/ironic-image/tree/e4a23ad4f2dbc42fca204c3fba272991dc4ba271) * [Bug 1917481](https://bugzilla.redhat.com/show_bug.cgi?id=1917481): Wait for expected number of drivers starting API [#136](https://github.com/openshift/ironic-image/pull/136) * [Bug 1918178](https://bugzilla.redhat.com/show_bug.cgi?id=1918178): Explicitly set minimum versions of ironic packages [#141](https://github.com/openshift/ironic-image/pull/141) * [Bug 1899107](https://bugzilla.redhat.com/show_bug.cgi?id=1899107): Limit the default number of API workers to 4 [#122](https://github.com/openshift/ironic-image/pull/122) * [Bug 1903649](https://bugzilla.redhat.com/show_bug.cgi?id=1903649): Re-enable automated_clean [#128](https://github.com/openshift/ironic-image/pull/128) * [Bug 1917937](https://bugzilla.redhat.com/show_bug.cgi?id=1917937): Force rebuild to pick up latest dnsmasq [#139](https://github.com/openshift/ironic-image/pull/139) * Updating ironic builder & base images to be consistent with ART [#135](https://github.com/openshift/ironic-image/pull/135) * [Full changelog](https://github.com/openshift/ironic-image/compare/81082047394a91221255837f9884590e02c9c37e...e4a23ad4f2dbc42fca204c3fba272991dc4ba271) ### [ironic-inspector](https://github.com/openshift/ironic-inspector-image/tree/38c91c8e3c96a76ea3cb4ecc3b629dce102217e4) * Updating ironic-inspector builder & base images to be consistent with ART [#55](https://github.com/openshift/ironic-inspector-image/pull/55) * [Bug 1918178](https://bugzilla.redhat.com/show_bug.cgi?id=1918178): Explicitly set minimum versions of python libraries [#60](https://github.com/openshift/ironic-inspector-image/pull/60) * [Full changelog](https://github.com/openshift/ironic-inspector-image/compare/30a7017a8d541db2a9cfd1331ca442aa84429e84...38c91c8e3c96a76ea3cb4ecc3b629dce102217e4) ### [ironic-ipa-downloader](https://github.com/openshift/ironic-ipa-downloader/tree/030491a4fe031e0dc6181c0773262e6cdeb98e8a) * [Bug 1975531](https://bugzilla.redhat.com/show_bug.cgi?id=1975531): [release-4.6] Update ipa version [#77](https://github.com/openshift/ironic-ipa-downloader/pull/77) * Updating ironic-ipa-downloader builder & base images to be consistent with ART [#58](https://github.com/openshift/ironic-ipa-downloader/pull/58) * [Bug 1905004](https://bugzilla.redhat.com/show_bug.cgi?id=1905004): Use new ironic-python-agent images [#52](https://github.com/openshift/ironic-ipa-downloader/pull/52) * [Bug 1902797](https://bugzilla.redhat.com/show_bug.cgi?id=1902797): Always set hostname from DHCP6_FQDN_FQDN if set [#54](https://github.com/openshift/ironic-ipa-downloader/pull/54) * [Bug 1899190](https://bugzilla.redhat.com/show_bug.cgi?id=1899190): Apply hack to eventlet [#53](https://github.com/openshift/ironic-ipa-downloader/pull/53) * [Full changelog](https://github.com/openshift/ironic-ipa-downloader/compare/e8886a093b6a9f39665ffa12325e303d05b26045...030491a4fe031e0dc6181c0773262e6cdeb98e8a) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/b289a391a2a370e503e35005176f2587c6d4d9bf) * Updating ironic-rhcos-downloader builder & base images to be consistent with ART [#35](https://github.com/openshift/ironic-rhcos-downloader/pull/35) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/555bf2c8a91b7b9b2166ad99893514e96beab5a1...b289a391a2a370e503e35005176f2587c6d4d9bf) ### [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager/tree/2f197d075db5cec48803455808e62b5f0ce03eb1) * [Bug 1918779](https://bugzilla.redhat.com/show_bug.cgi?id=1918779): Toggle addr_gen_mode to 1 and back [#17](https://github.com/openshift/ironic-static-ip-manager/pull/17) * Updating ironic-static-ip-manager builder & base images to be consistent with ART [#16](https://github.com/openshift/ironic-static-ip-manager/pull/16) * [Bug 1909682](https://bugzilla.redhat.com/show_bug.cgi?id=1909682): Force addr_gen_mode to "0" on PROVISIONING_INTERFACE [#13](https://github.com/openshift/ironic-static-ip-manager/pull/13) * [Full changelog](https://github.com/openshift/ironic-static-ip-manager/compare/123889f6598e032f5257a58b65117583e666a5b4...2f197d075db5cec48803455808e62b5f0ce03eb1) ### [jenkins, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/3c3794f95ee47aa8901e92cb8e43e48be4f8801e) * [Bug 2020612](https://bugzilla.redhat.com/show_bug.cgi?id=2020612): Update Jenkins and plugins per 2021-11 advisory [#1349](https://github.com/openshift/jenkins/pull/1349) * [Bug 1972366](https://bugzilla.redhat.com/show_bug.cgi?id=1972366): Bump jenkins version 2.289.2 [#1280](https://github.com/openshift/jenkins/pull/1280) * [Bug 1952561](https://bugzilla.redhat.com/show_bug.cgi?id=1952561): bump config-file-provider to 3.7.1 [#1266](https://github.com/openshift/jenkins/pull/1266) * [release 4.6] Bug 1952337: Update Jenkins to 2.277.3 and disable setup wizard [#1260](https://github.com/openshift/jenkins/pull/1260) * [release 4.6] Bug 1929121: update kubernetes-client-api [#1231](https://github.com/openshift/jenkins/pull/1231) * [release 4.6] Bug 1929919: Upgrade Jenkins to 2.263.3 [#1234](https://github.com/openshift/jenkins/pull/1234) * [Bug 1922139](https://bugzilla.redhat.com/show_bug.cgi?id=1922139): Update Maven version to 3.6 in maven agent [#1209](https://github.com/openshift/jenkins/pull/1209) * [Bug 1918637](https://bugzilla.redhat.com/show_bug.cgi?id=1918637): Updating openshift-jenkins-2 builder & base images to be consistent with ART [#1202](https://github.com/openshift/jenkins/pull/1202) * [Bug 1918619](https://bugzilla.redhat.com/show_bug.cgi?id=1918619): Updating ose-jenkins-agent-base builder & base images to be consistent with ART [#1201](https://github.com/openshift/jenkins/pull/1201) * [Bug 1918628](https://bugzilla.redhat.com/show_bug.cgi?id=1918628): Updating ose-jenkins-agent-nodejs-10 builder & base images to be consistent with ART [#1205](https://github.com/openshift/jenkins/pull/1205) * [Bug 1918632](https://bugzilla.redhat.com/show_bug.cgi?id=1918632): Updating ose-jenkins-agent-nodejs-12 builder & base images to be consistent with ART [#1204](https://github.com/openshift/jenkins/pull/1204) * [Bug 1918630](https://bugzilla.redhat.com/show_bug.cgi?id=1918630): Updating ose-jenkins-agent-maven builder & base images to be consistent with ART [#1203](https://github.com/openshift/jenkins/pull/1203) * [Bug 1914101](https://bugzilla.redhat.com/show_bug.cgi?id=1914101): Update ant plugin CVE-2020-11979 [#1194](https://github.com/openshift/jenkins/pull/1194) * [Bug 1899472](https://bugzilla.redhat.com/show_bug.cgi?id=1899472): Add casc plugins [#1185](https://github.com/openshift/jenkins/pull/1185) * [Bug 1896403](https://bugzilla.redhat.com/show_bug.cgi?id=1896403): various fixes [#1186](https://github.com/openshift/jenkins/pull/1186) * [Bug 1888650](https://bugzilla.redhat.com/show_bug.cgi?id=1888650): updating the scl_source enable from rh-maven35 to rh-maven36 [#1171](https://github.com/openshift/jenkins/pull/1171) * [Bug 1888901](https://bugzilla.redhat.com/show_bug.cgi?id=1888901): Align plugin version [#1174](https://github.com/openshift/jenkins/pull/1174) * [Full changelog](https://github.com/openshift/jenkins/compare/3c6b0beb43033e7b08b7923974a4a5a391c9e3cc...3c3794f95ee47aa8901e92cb8e43e48be4f8801e) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/7f012a26a1b7ccce4344d676e35f220fd209c614) * Updating ose-prometheus-adapter builder & base images to be consistent with ART [#42](https://github.com/openshift/k8s-prometheus-adapter/pull/42) * [Bug 1895532](https://bugzilla.redhat.com/show_bug.cgi?id=1895532): Populate both CPU and Memory resource container metrics if one is specified [#36](https://github.com/openshift/k8s-prometheus-adapter/pull/36) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/885e7a7dbaf7ec2bcb6b909a14f45e7274bb66d7...7f012a26a1b7ccce4344d676e35f220fd209c614) ### [keepalived-ipfailover, pod](https://github.com/openshift/images/tree/618b71dbd1ec125da6b0dd004e4dcc2a085f3cb3) * [Bug 1926267](https://bugzilla.redhat.com/show_bug.cgi?id=1926267): Egress router: Add iptables package to Dockerfile [#78](https://github.com/openshift/images/pull/78) * Updating openshift-enterprise-pod builder & base images to be consistent with ART [#66](https://github.com/openshift/images/pull/66) * Updating openshift-enterprise-base builder & base images to be consistent with ART [#64](https://github.com/openshift/images/pull/64) * [Full changelog](https://github.com/openshift/images/compare/5397b55f38a11c61749398f0a3759d4eab5b3960...618b71dbd1ec125da6b0dd004e4dcc2a085f3cb3) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/bc715d1b8182975218ed1216487197a86290872a) * [Bug 2004720](https://bugzilla.redhat.com/show_bug.cgi?id=2004720): improve SDN's OVS healthcheck and logging [#353](https://github.com/openshift/sdn/pull/353) * [Bug 1998453](https://bugzilla.redhat.com/show_bug.cgi?id=1998453): Fix MCS-blocking iptables rules [#340](https://github.com/openshift/sdn/pull/340) * [Bug 1995873](https://bugzilla.redhat.com/show_bug.cgi?id=1995873): Disable conntrack for vxlan traffic [#339](https://github.com/openshift/sdn/pull/339) * [Bug 1970046](https://bugzilla.redhat.com/show_bug.cgi?id=1970046): Fix for empty egress policy [#315](https://github.com/openshift/sdn/pull/315) * [Bug 1915849](https://bugzilla.redhat.com/show_bug.cgi?id=1915849): Bump 4.6 to use OVS 2.13 [#303](https://github.com/openshift/sdn/pull/303) * [Bug 1959425](https://bugzilla.redhat.com/show_bug.cgi?id=1959425): Fix incorrect unmonitoring of egress nodes [#298](https://github.com/openshift/sdn/pull/298) * [Bug 1926662](https://bugzilla.redhat.com/show_bug.cgi?id=1926662): Do not use egressIP on reply packets [#257](https://github.com/openshift/sdn/pull/257) * [Bug 1937547](https://bugzilla.redhat.com/show_bug.cgi?id=1937547): networkpolicy: pass traffic through NAT to handle possible tuple collisions [#274](https://github.com/openshift/sdn/pull/274) * [Bug 1928773](https://bugzilla.redhat.com/show_bug.cgi?id=1928773): Prefer local endpoint for cluster DNS service [#261](https://github.com/openshift/sdn/pull/261) * Updating ose-sdn builder & base images to be consistent with ART [#244](https://github.com/openshift/sdn/pull/244) * Updating kube-proxy builder & base images to be consistent with ART [#247](https://github.com/openshift/sdn/pull/247) * [Bug 1904455](https://bugzilla.redhat.com/show_bug.cgi?id=1904455): NetworkPolicy performance fixes, v2 [#249](https://github.com/openshift/sdn/pull/249) * [Bug 1915007](https://bugzilla.redhat.com/show_bug.cgi?id=1915007): Revert NetworkPolicy performance fixes (4.6) [#241](https://github.com/openshift/sdn/pull/241) * [Bug 1891454](https://bugzilla.redhat.com/show_bug.cgi?id=1891454): Fix error handling from DNS nameservers [#210](https://github.com/openshift/sdn/pull/210) * [Bug 1904455](https://bugzilla.redhat.com/show_bug.cgi?id=1904455): NetworkPolicy performance (pod caching) [#228](https://github.com/openshift/sdn/pull/228) * [Bug 1894155](https://bugzilla.redhat.com/show_bug.cgi?id=1894155): Ignore if netns is already deleted while deleting ns [#216](https://github.com/openshift/sdn/pull/216) * [Bug 1893809](https://bugzilla.redhat.com/show_bug.cgi?id=1893809): fix pod creation deadlock [#213](https://github.com/openshift/sdn/pull/213) * [Full changelog](https://github.com/openshift/sdn/compare/3e5aec2f6c0d6504509e1e444ec00792b1d26da5...bc715d1b8182975218ed1216487197a86290872a) ### [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy/tree/fae6ace52b865699ddd6dc4608ee3637ee4ee1b0) * Updating kube-rbac-proxy builder & base images to be consistent with ART [#39](https://github.com/openshift/kube-rbac-proxy/pull/39) * [Bug 1906836](https://bugzilla.redhat.com/show_bug.cgi?id=1906836): Dockerfile.ocp: specify numeric uid [#37](https://github.com/openshift/kube-rbac-proxy/pull/37) * [Full changelog](https://github.com/openshift/kube-rbac-proxy/compare/8337e6e5e40b4d888ecd9196a6b83ede11f315ac...fae6ace52b865699ddd6dc4608ee3637ee4ee1b0) ### [kube-state-metrics](https://github.com/openshift/kube-state-metrics/tree/3a6c689c6c7da5fc2a0488276c98e051c74e89b1) * Updating kube-state-metrics builder & base images to be consistent with ART [#42](https://github.com/openshift/kube-state-metrics/pull/42) * [Full changelog](https://github.com/openshift/kube-state-metrics/compare/104235b443edc83d3e6a96e2cfdac82a888acef6...3a6c689c6c7da5fc2a0488276c98e051c74e89b1) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/7c5a4f77ac205740ccc169dbb2c03a9ee9a8dd98) * [Bug 2019721](https://bugzilla.redhat.com/show_bug.cgi?id=2019721): Update TOX_CONSTRAINTS_FILE for stable/xena [#592](https://github.com/openshift/kuryr-kubernetes/pull/592) * [Bug 1983107](https://bugzilla.redhat.com/show_bug.cgi?id=1983107): Fix KLB conversion from annotations [#541](https://github.com/openshift/kuryr-kubernetes/pull/541) * [Bug 1983107](https://bugzilla.redhat.com/show_bug.cgi?id=1983107): Allow clean up of unused member [#540](https://github.com/openshift/kuryr-kubernetes/pull/540) * [Bug 1975676](https://bugzilla.redhat.com/show_bug.cgi?id=1975676): Workaround OVN bug causing subports to be DOWN [#533](https://github.com/openshift/kuryr-kubernetes/pull/533) * [Bug 1968418](https://bugzilla.redhat.com/show_bug.cgi?id=1968418): Fixing bug, Kuryr-Controller crashes when it's missing the status [#519](https://github.com/openshift/kuryr-kubernetes/pull/519) * [Bug 1958106](https://bugzilla.redhat.com/show_bug.cgi?id=1958106): Skip pool pre population if no Status is present on CRD [#513](https://github.com/openshift/kuryr-kubernetes/pull/513) * [Bug 1958106](https://bugzilla.redhat.com/show_bug.cgi?id=1958106): Fix port pools [#512](https://github.com/openshift/kuryr-kubernetes/pull/512) * [Bug 1958103](https://bugzilla.redhat.com/show_bug.cgi?id=1958103): Include service subnet to be open for namespaceSelector set to all. [#511](https://github.com/openshift/kuryr-kubernetes/pull/511) * [Bug 1958093](https://bugzilla.redhat.com/show_bug.cgi?id=1958093): kuryr-controller restarting after 3 days cluster running - pools without members [#509](https://github.com/openshift/kuryr-kubernetes/pull/509) * [Bug 1963846](https://bugzilla.redhat.com/show_bug.cgi?id=1963846): Fix NPs for OVN LBs with hairpin traffic [#518](https://github.com/openshift/kuryr-kubernetes/pull/518) * [Bug 1952429](https://bugzilla.redhat.com/show_bug.cgi?id=1952429): Narrow connection to the cluster only on namespaceSelector. [#507](https://github.com/openshift/kuryr-kubernetes/pull/507) * [Bug 1932114](https://bugzilla.redhat.com/show_bug.cgi?id=1932114): Allow to config network MTU [#506](https://github.com/openshift/kuryr-kubernetes/pull/506) * [Bug 1947343](https://bugzilla.redhat.com/show_bug.cgi?id=1947343): NPs: Do not set ports for protocol-less SG rules [#496](https://github.com/openshift/kuryr-kubernetes/pull/496) * [Bug 1940141](https://bugzilla.redhat.com/show_bug.cgi?id=1940141): Do not default protocol to TCP for allow-all NPs [#484](https://github.com/openshift/kuryr-kubernetes/pull/484) * [Bug 1938161](https://bugzilla.redhat.com/show_bug.cgi?id=1938161): Get trunks more diligently [#478](https://github.com/openshift/kuryr-kubernetes/pull/478) * [Bug 1897526](https://bugzilla.redhat.com/show_bug.cgi?id=1897526): Fix ports count on subnet [#427](https://github.com/openshift/kuryr-kubernetes/pull/427) * [Bug 1894408](https://bugzilla.redhat.com/show_bug.cgi?id=1894408): Delete ports created for host networking pods [#395](https://github.com/openshift/kuryr-kubernetes/pull/395) * [Bug 1893681](https://bugzilla.redhat.com/show_bug.cgi?id=1893681): Bulk port creation exception not completely formatted [#390](https://github.com/openshift/kuryr-kubernetes/pull/390) * [Bug 1906741](https://bugzilla.redhat.com/show_bug.cgi?id=1906741): Skip unscheduled pods when deleting NPs [#428](https://github.com/openshift/kuryr-kubernetes/pull/428) * [Bug 1920995](https://bugzilla.redhat.com/show_bug.cgi?id=1920995): Decrease CPU usage of Prometheus exporter [#440](https://github.com/openshift/kuryr-kubernetes/pull/440) * Updating kuryr-cni builder & base images to be consistent with ART [#435](https://github.com/openshift/kuryr-kubernetes/pull/435) * Updating kuryr-controller builder & base images to be consistent with ART [#434](https://github.com/openshift/kuryr-kubernetes/pull/434) * [Bug 1900562](https://bugzilla.redhat.com/show_bug.cgi?id=1900562): NP changes sometimes influence new pods/services. [#414](https://github.com/openshift/kuryr-kubernetes/pull/414) * [Bug 1896370](https://bugzilla.redhat.com/show_bug.cgi?id=1896370): Handle None or {} labels in match_selector() [#399](https://github.com/openshift/kuryr-kubernetes/pull/399) * [Bug 1892270](https://bugzilla.redhat.com/show_bug.cgi?id=1892270): Removing network policy from namespace causes inability to access pods through loadbalancer. [#385](https://github.com/openshift/kuryr-kubernetes/pull/385) * [Bug 1902204](https://bugzilla.redhat.com/show_bug.cgi?id=1902204): Force pyroute2 0.5.7 [#418](https://github.com/openshift/kuryr-kubernetes/pull/418) * [Bug 1898950](https://bugzilla.redhat.com/show_bug.cgi?id=1898950): Ensure members are deleted from pools when there is no endpoints [#407](https://github.com/openshift/kuryr-kubernetes/pull/407) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/309482fb765fd2902343880c5d516f30b65510bb...7c5a4f77ac205740ccc169dbb2c03a9ee9a8dd98) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/431c92767920b686ab186f6cc0b52312872e6656) * Updating ose-libvirt-machine-controllers builder & base images to be consistent with ART [#216](https://github.com/openshift/cluster-api-provider-libvirt/pull/216) * [Bug 1939259](https://bugzilla.redhat.com/show_bug.cgi?id=1939259): [release-4.6] Update MAO and set metrics on :8081 address [#220](https://github.com/openshift/cluster-api-provider-libvirt/pull/220) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/1ca52adab176154cbdd27e150fc67e2513acc84b...431c92767920b686ab186f6cc0b52312872e6656) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/55bf89b0a905fe6cd79ef7bb6dcdf9b6c9c603d9) * [Bug 2022840](https://bugzilla.redhat.com/show_bug.cgi?id=2022840): GCP CI runs are complaining about APIs not being enabled [#955](https://github.com/openshift/machine-api-operator/pull/955) * [Bug 1993120](https://bugzilla.redhat.com/show_bug.cgi?id=1993120): Make sure nodes don't have attached volumes before vm deletion [#905](https://github.com/openshift/machine-api-operator/pull/905) * [Bug 1947813](https://bugzilla.redhat.com/show_bug.cgi?id=1947813): vSphere, detach virtual disks before virtual machine destroy if node not available [#845](https://github.com/openshift/machine-api-operator/pull/845) * [Bug 1916772](https://bugzilla.redhat.com/show_bug.cgi?id=1916772): Inject the cluster-wide proxy environment variables in the baremetal pod [#808](https://github.com/openshift/machine-api-operator/pull/808) * [Bug 1933676](https://bugzilla.redhat.com/show_bug.cgi?id=1933676): Cherry-pick: Azure disconnected reject publicIP setting [#812](https://github.com/openshift/machine-api-operator/pull/812) * Updating ose-machine-api-operator builder & base images to be consistent with ART [#786](https://github.com/openshift/machine-api-operator/pull/786) * [Bug 1912531](https://bugzilla.redhat.com/show_bug.cgi?id=1912531): 4.6: Update kubectl dep [#782](https://github.com/openshift/machine-api-operator/pull/782) * [Bug 1890452](https://bugzilla.redhat.com/show_bug.cgi?id=1890452): Bump Azure dependency to include BYOK encryption fields [#763](https://github.com/openshift/machine-api-operator/pull/763) * [Bug 1908316](https://bugzilla.redhat.com/show_bug.cgi?id=1908316): Reduce verbosity of kube-rbac-proxy logging [#779](https://github.com/openshift/machine-api-operator/pull/779) * [Bug 1908316](https://bugzilla.redhat.com/show_bug.cgi?id=1908316): Reduce verbosity of kube-rbac-proxy logging for operator [#784](https://github.com/openshift/machine-api-operator/pull/784) * [Bug 1896705](https://bugzilla.redhat.com/show_bug.cgi?id=1896705): Inject cluster-wide proxy configuration in to machine-api-controller deployment [#756](https://github.com/openshift/machine-api-operator/pull/756) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/6abfb5440597d1836546ff7cd3ece698cd451fcc...55bf89b0a905fe6cd79ef7bb6dcdf9b6c9c603d9) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/c0b5ea57cf1be9fb30092472809bbb9378614c2e) * [Bug 2000502](https://bugzilla.redhat.com/show_bug.cgi?id=2000502): bump SystemMemoryExceedsReservation alert threshold to 95% [#2750](https://github.com/openshift/machine-config-operator/pull/2750) * [Bug 2004136](https://bugzilla.redhat.com/show_bug.cgi?id=2004136): [on-prem] Disable liveness probe until keepalived.conf exists [#2763](https://github.com/openshift/machine-config-operator/pull/2763) * [Bug 1998181](https://bugzilla.redhat.com/show_bug.cgi?id=1998181): ensure SSH key uniqueness [#2737](https://github.com/openshift/machine-config-operator/pull/2737) * [Bug 1975626](https://bugzilla.redhat.com/show_bug.cgi?id=1975626): Add nil check for KubeletConfig [#2719](https://github.com/openshift/machine-config-operator/pull/2719) * [Bug 1989403](https://bugzilla.redhat.com/show_bug.cgi?id=1989403): daemon: add check before updating kernelArgs [#2720](https://github.com/openshift/machine-config-operator/pull/2720) * [Bug 1987221](https://bugzilla.redhat.com/show_bug.cgi?id=1987221): Backport drain timeout optimizations [#2707](https://github.com/openshift/machine-config-operator/pull/2707) * [Bug 1993218](https://bugzilla.redhat.com/show_bug.cgi?id=1993218): alerts: SystemMemoryExceedsReservation triggers too quickly [#2713](https://github.com/openshift/machine-config-operator/pull/2713) * [Bug 1975626](https://bugzilla.redhat.com/show_bug.cgi?id=1975626): Fix KubeletConfig nil error [#2699](https://github.com/openshift/machine-config-operator/pull/2699) * [Bug 1975626](https://bugzilla.redhat.com/show_bug.cgi?id=1975626): KubeletConfig validation warning in CRD and Docs [#2672](https://github.com/openshift/machine-config-operator/pull/2672) * [Bug 1978041](https://bugzilla.redhat.com/show_bug.cgi?id=1978041): templates: split unit dropins into separate files [#2652](https://github.com/openshift/machine-config-operator/pull/2652) * [Bug 1926944](https://bugzilla.redhat.com/show_bug.cgi?id=1926944): enable madvdontneed in system components [#2632](https://github.com/openshift/machine-config-operator/pull/2632) * [Bug 1940594](https://bugzilla.redhat.com/show_bug.cgi?id=1940594): [baremetal and friends] Drop unnecessary readiness probes [#2480](https://github.com/openshift/machine-config-operator/pull/2480) * [Bug 1927555](https://bugzilla.redhat.com/show_bug.cgi?id=1927555): [vsphere] set hostname with --static to provide consistent node name for CSR approval [#2615](https://github.com/openshift/machine-config-operator/pull/2615) * [Bug 1942506](https://bugzilla.redhat.com/show_bug.cgi?id=1942506): [4.6] Use new --prefer-ipv6 flag to "runtimecfg node-ip" as appropriate [#2589](https://github.com/openshift/machine-config-operator/pull/2589) * [Bug 1953493](https://bugzilla.redhat.com/show_bug.cgi?id=1953493): daemon: return nil for unsupported operation on an OS [#2545](https://github.com/openshift/machine-config-operator/pull/2545) * [Bug 1955715](https://bugzilla.redhat.com/show_bug.cgi?id=1955715): Add on-prem namespaces to relatedObjects [#2556](https://github.com/openshift/machine-config-operator/pull/2556) * [Bug 1948533](https://bugzilla.redhat.com/show_bug.cgi?id=1948533): Add nodeip-configuration.service for oVirt [#2567](https://github.com/openshift/machine-config-operator/pull/2567) * [Bug 1945544](https://bugzilla.redhat.com/show_bug.cgi?id=1945544): templates: add After=ostree-finalize-staged.service to kubelet.service [#2502](https://github.com/openshift/machine-config-operator/pull/2502) * [Bug 1933206](https://bugzilla.redhat.com/show_bug.cgi?id=1933206): Revert "pkg/daemon: Add IgnitionVersion to Daemon" [#2439](https://github.com/openshift/machine-config-operator/pull/2439) * [Bug 1951089](https://bugzilla.redhat.com/show_bug.cgi?id=1951089): configure-ovs doesn't handle bond interfaces correctly for OVNKubernetes [#2537](https://github.com/openshift/machine-config-operator/pull/2537) * [Bug 1940585](https://bugzilla.redhat.com/show_bug.cgi?id=1940585): conditionally set nodeip-service enabled for vSphere [#2493](https://github.com/openshift/machine-config-operator/pull/2493) * [Bug 1883916](https://bugzilla.redhat.com/show_bug.cgi?id=1883916): [4.6z backport] Fixes setting route metric for ovs-config [#2467](https://github.com/openshift/machine-config-operator/pull/2467) * [Bug 1931617](https://bugzilla.redhat.com/show_bug.cgi?id=1931617): OVS Config: fixes detecting bond NM files with static IP [#2453](https://github.com/openshift/machine-config-operator/pull/2453) * [Bug 1908534](https://bugzilla.redhat.com/show_bug.cgi?id=1908534): update ctrcfg crd to make spec & containerruntimeconfig required [#2308](https://github.com/openshift/machine-config-operator/pull/2308) * [Bug 1897552](https://bugzilla.redhat.com/show_bug.cgi?id=1897552): Mode mismatch fix for confusing strings [#2353](https://github.com/openshift/machine-config-operator/pull/2353) * [Bug 1933075](https://bugzilla.redhat.com/show_bug.cgi?id=1933075): backport systemd dropin/units zero-length handling [#2435](https://github.com/openshift/machine-config-operator/pull/2435) * [Bug 1906298](https://bugzilla.redhat.com/show_bug.cgi?id=1906298): update MCDDrainErr to reduce cardinality & fix nodename [#2419](https://github.com/openshift/machine-config-operator/pull/2419) * [Bug 1908940](https://bugzilla.redhat.com/show_bug.cgi?id=1908940): [test] Skip TestKernelType on OKD [#2311](https://github.com/openshift/machine-config-operator/pull/2311) * [Bug 1919272](https://bugzilla.redhat.com/show_bug.cgi?id=1919272): [release-4.6] NM resolve prepender: support appending a nameserver for systemd-resolved [#2356](https://github.com/openshift/machine-config-operator/pull/2356) * [Bug 1901602](https://bugzilla.redhat.com/show_bug.cgi?id=1901602): Inject version into controllerconfig, refuse mismatches [#2257](https://github.com/openshift/machine-config-operator/pull/2257) * [Bug 1899535](https://bugzilla.redhat.com/show_bug.cgi?id=1899535): ds/machine-config-daemon: Set maxUnavailable 10% [#2240](https://github.com/openshift/machine-config-operator/pull/2240) * [Bug 1893409](https://bugzilla.redhat.com/show_bug.cgi?id=1893409): daemon: add back metrics for pivot error [#2216](https://github.com/openshift/machine-config-operator/pull/2216) * [Bug 1913099](https://bugzilla.redhat.com/show_bug.cgi?id=1913099): Handle keepalived hangs in liveness probe [#2319](https://github.com/openshift/machine-config-operator/pull/2319) * [Bug 1914910](https://bugzilla.redhat.com/show_bug.cgi?id=1914910): Add a prestart line to change ownership of openvswitch dir [#2331](https://github.com/openshift/machine-config-operator/pull/2331) * [Bug 1913316](https://bugzilla.redhat.com/show_bug.cgi?id=1913316): check for scheduler support before setting [#2321](https://github.com/openshift/machine-config-operator/pull/2321) * [Bug 1914892](https://bugzilla.redhat.com/show_bug.cgi?id=1914892): update.go: only set BFQ scheduler for masters [#2330](https://github.com/openshift/machine-config-operator/pull/2330) * Updating ose-machine-config-operator builder & base images to be consistent with ART [#2335](https://github.com/openshift/machine-config-operator/pull/2335) * [Bug 1899622](https://bugzilla.redhat.com/show_bug.cgi?id=1899622): backport bond options fixes [#2298](https://github.com/openshift/machine-config-operator/pull/2298) * [Bug 1904825](https://bugzilla.redhat.com/show_bug.cgi?id=1904825): [release-4.6] templates: Set vSphere hostname from guestinfo before NM starts [#2289](https://github.com/openshift/machine-config-operator/pull/2289) * [Bug 1904065](https://bugzilla.redhat.com/show_bug.cgi?id=1904065): [on-prem] export proxy variables to be taken in account [#2279](https://github.com/openshift/machine-config-operator/pull/2279) * [Bug 1898567](https://bugzilla.redhat.com/show_bug.cgi?id=1898567): Fix awk syntax in configure-ovs.sh [#2233](https://github.com/openshift/machine-config-operator/pull/2233) * [Bug 1900666](https://bugzilla.redhat.com/show_bug.cgi?id=1900666): daemon: Only switch to bfq scheduler when we have an OS update [#2251](https://github.com/openshift/machine-config-operator/pull/2251) * [Bug 1887519](https://bugzilla.redhat.com/show_bug.cgi?id=1887519): Use mc name as finalizer for kubelet config [#2150](https://github.com/openshift/machine-config-operator/pull/2150) * [Bug 1899735](https://bugzilla.redhat.com/show_bug.cgi?id=1899735): pkg/daemon: don't delete a file if its replaced with a dropin [#2246](https://github.com/openshift/machine-config-operator/pull/2246) * [Bug 1888467](https://bugzilla.redhat.com/show_bug.cgi?id=1888467): firstboot.service: disable existing repos before pivot [#2161](https://github.com/openshift/machine-config-operator/pull/2161) * [Bug 1897575](https://bugzilla.redhat.com/show_bug.cgi?id=1897575): server: Target the spec configuration if we have at least one node [#2225](https://github.com/openshift/machine-config-operator/pull/2225) * [Bug 1894483](https://bugzilla.redhat.com/show_bug.cgi?id=1894483): Fix bash in nodeip-configuration.service [#2200](https://github.com/openshift/machine-config-operator/pull/2200) * [Bug 1896329](https://bugzilla.redhat.com/show_bug.cgi?id=1896329): Drop kubelet logging back down to level 3 [#2244](https://github.com/openshift/machine-config-operator/pull/2244) * [Bug 1899368](https://bugzilla.redhat.com/show_bug.cgi?id=1899368): ctrcfg_test: Wait for our prior target config [#2239](https://github.com/openshift/machine-config-operator/pull/2239) * [Bug 1888853](https://bugzilla.redhat.com/show_bug.cgi?id=1888853): daemon: allow an extension to install group of packages [#2187](https://github.com/openshift/machine-config-operator/pull/2187) * [Bug 1887596](https://bugzilla.redhat.com/show_bug.cgi?id=1887596): Fix ovs-configuration detecting bond and vlan interfaces [#2174](https://github.com/openshift/machine-config-operator/pull/2174) * [Bug 1893483](https://bugzilla.redhat.com/show_bug.cgi?id=1893483): vendor in drain fix for using high cpu [#2193](https://github.com/openshift/machine-config-operator/pull/2193) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/4f29aba0ccd1d7c04f839f5c9ceaa3dd63a04960...c0b5ea57cf1be9fb30092472809bbb9378614c2e) ### [mdns-publisher](https://github.com/openshift/mdns-publisher/tree/bd79e15172c0725c6ad68c970952d22e3049dd44) * [Bug 2003563](https://bugzilla.redhat.com/show_bug.cgi?id=2003563): Update zeroconf vendoring [#40](https://github.com/openshift/mdns-publisher/pull/40) * [Bug 1936539](https://bugzilla.redhat.com/show_bug.cgi?id=1936539): Update zeroconf to pull in rate-limiting fix [#27](https://github.com/openshift/mdns-publisher/pull/27) * Updating ose-mdns-publisher builder & base images to be consistent with ART [#22](https://github.com/openshift/mdns-publisher/pull/22) * [Full changelog](https://github.com/openshift/mdns-publisher/compare/1a83a8058ab22b5874ff198c3d3a97568f70ba7b...bd79e15172c0725c6ad68c970952d22e3049dd44) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/de9b6e18cc0d3047cb05185e09b9e2e8bb3c5c34) * Updating ose-multus-admission-controller builder & base images to be consistent with ART [#31](https://github.com/openshift/multus-admission-controller/pull/31) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/a7312f5e55e9f34cc8b20f6cbfe1af0f363ca1e6...de9b6e18cc0d3047cb05185e09b9e2e8bb3c5c34) ### [multus-cni](https://github.com/openshift/multus-cni/tree/30668ec22bd3e92ae2bb258aeff8aca744377574) * Updating multus-cni builder & base images to be consistent with ART [#85](https://github.com/openshift/multus-cni/pull/85) * [Bug 1905230](https://bugzilla.redhat.com/show_bug.cgi?id=1905230): Multus should exit zero on DEL when cache file is missing [backport 4.6] [#84](https://github.com/openshift/multus-cni/pull/84) * [Full changelog](https://github.com/openshift/multus-cni/compare/dffa09195bd2632179d0fa0ec43f289462ff514b...30668ec22bd3e92ae2bb258aeff8aca744377574) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/da944e11953b64c1f6e6b8a0319c3a988997bcf6) * Updating ose-multus-route-override-cni builder & base images to be consistent with ART [#11](https://github.com/openshift/route-override-cni/pull/11) * [Full changelog](https://github.com/openshift/route-override-cni/compare/4cc155c7a5da69af3975c22923682ca6952f5767...da944e11953b64c1f6e6b8a0319c3a988997bcf6) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/577a9f82a77ee9e19a306b8ea4c40b5dc8657f3f) * [Bug 1931953](https://bugzilla.redhat.com/show_bug.cgi?id=1931953): [backport 4.6] Fix for IPv6 when leading hextets equal zero [#50](https://github.com/openshift/whereabouts-cni/pull/50) * [Bug 1898616](https://bugzilla.redhat.com/show_bug.cgi?id=1898616): Excluded subnet handling for ipv6 [backport 4.6] [#37](https://github.com/openshift/whereabouts-cni/pull/37) * [Bug 1898672](https://bugzilla.redhat.com/show_bug.cgi?id=1898672): Removes error when deallocating IP errors out, instead just warns [backport 4.6] [#40](https://github.com/openshift/whereabouts-cni/pull/40) * Updating ose-multus-whereabouts-ipam-cni builder & base images to be consistent with ART [#44](https://github.com/openshift/whereabouts-cni/pull/44) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/d5306d720c91d53d866669f90dedc6334cd2631f...577a9f82a77ee9e19a306b8ea4c40b5dc8657f3f) ### [must-gather](https://github.com/openshift/must-gather/tree/1b43cbb9a9ad56de79a85ce13cd594e64b8719c7) * [Bug 2018197](https://bugzilla.redhat.com/show_bug.cgi?id=2018197): [release-4.6] Add olm resources to default must-gather [#242](https://github.com/openshift/must-gather/pull/242) * [Bug 1975970](https://bugzilla.redhat.com/show_bug.cgi?id=1975970): Backport gather network logs [#233](https://github.com/openshift/must-gather/pull/233) * Updating ose-must-gather builder & base images to be consistent with ART [#203](https://github.com/openshift/must-gather/pull/203) * [Bug 1896691](https://bugzilla.redhat.com/show_bug.cgi?id=1896691): Collect docker logs from WinEvent log on Windows machines [#197](https://github.com/openshift/must-gather/pull/197) * [Full changelog](https://github.com/openshift/must-gather/compare/b35e739f020e9182fe8d5ce2c7a7128018966911...1b43cbb9a9ad56de79a85ce13cd594e64b8719c7) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/90c5e7ea878ffcb263f4ce9a22f2d6b13419c921) * Updating ose-network-metrics-daemon builder & base images to be consistent with ART [#31](https://github.com/openshift/network-metrics-daemon/pull/31) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/c5b56ed97be71c04fe1e56dbee3bbbb1dc28f4ad...90c5e7ea878ffcb263f4ce9a22f2d6b13419c921) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/3412a192ea1c2cd30acdf86dc8183e0235e78a16) * Updating ose-oauth-apiserver builder & base images to be consistent with ART [#36](https://github.com/openshift/oauth-apiserver/pull/36) * [Bug 1919966](https://bugzilla.redhat.com/show_bug.cgi?id=1919966): fixes a data race in SerializeObject function [#38](https://github.com/openshift/oauth-apiserver/pull/38) * [Bug 1905195](https://bugzilla.redhat.com/show_bug.cgi?id=1905195): Detecting broken connections to the Kube API takes up to 15 minutes [#34](https://github.com/openshift/oauth-apiserver/pull/34) * [Bug 1894345](https://bugzilla.redhat.com/show_bug.cgi?id=1894345): [release-4.6] register api groups to `legacyscheme.Scheme` early [#27](https://github.com/openshift/oauth-apiserver/pull/27) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/4861889b17358669085eba1d0c6ee907ed16ad5a...3412a192ea1c2cd30acdf86dc8183e0235e78a16) ### [oauth-proxy](https://github.com/openshift/oauth-proxy/tree/ac8570cf3b646b0a0c0bdd9b39541f32aeadc75f) * Updating golang-github-openshift-oauth-proxy builder & base images to be consistent with ART [#199](https://github.com/openshift/oauth-proxy/pull/199) * [Bug 1915667](https://bugzilla.redhat.com/show_bug.cgi?id=1915667): remove logging when authz header is present but basic auth is not attempted [#200](https://github.com/openshift/oauth-proxy/pull/200) * [Bug 1891725](https://bugzilla.redhat.com/show_bug.cgi?id=1891725): don't segfault on wrong option combination [#193](https://github.com/openshift/oauth-proxy/pull/193) * [Bug 1893969](https://bugzilla.redhat.com/show_bug.cgi?id=1893969): fix e2e tests to use aws cluster supplied by the CI [#194](https://github.com/openshift/oauth-proxy/pull/194) * [Full changelog](https://github.com/openshift/oauth-proxy/compare/e9c1738fb6caeee0bedba5e672224c05a79b8ee6...ac8570cf3b646b0a0c0bdd9b39541f32aeadc75f) ### [oauth-server](https://github.com/openshift/oauth-server/tree/231b3c3005e869ed44d9e18d8bb4774f23755681) * Updating oauth-server images to be consistent with ART [#89](https://github.com/openshift/oauth-server/pull/89) * [Bug 1905195](https://bugzilla.redhat.com/show_bug.cgi?id=1905195): Detecting broken connections to the Kube API takes up to 15 minutes [#64](https://github.com/openshift/oauth-server/pull/64) * [Full changelog](https://github.com/openshift/oauth-server/compare/163352664e55bc3116d4b288977405c767f74520...231b3c3005e869ed44d9e18d8bb4774f23755681) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/c09e60bc9c6e15cb432880858e5d14c711ff1d8d) * [Bug 1919966](https://bugzilla.redhat.com/show_bug.cgi?id=1919966): fixes a data race in SerializeObject function [#182](https://github.com/openshift/openshift-apiserver/pull/182) * [Bug 1900991](https://bugzilla.redhat.com/show_bug.cgi?id=1900991): policy/unidling-controller: allow get/update on services [#183](https://github.com/openshift/openshift-apiserver/pull/183) * [Bug 1905195](https://bugzilla.redhat.com/show_bug.cgi?id=1905195): Detecting broken connections to the Kube API takes up to 15 minutes [#162](https://github.com/openshift/openshift-apiserver/pull/162) * [Bug 1894916](https://bugzilla.redhat.com/show_bug.cgi?id=1894916): Panic output due to timeouts in openshift-apiserver [#161](https://github.com/openshift/openshift-apiserver/pull/161) * [Bug 1906428](https://bugzilla.redhat.com/show_bug.cgi?id=1906428): When using webhooks in OCP 4.5 fails to rollout latest deploymentconfig [#166](https://github.com/openshift/openshift-apiserver/pull/166) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/47cd22d46724e7739229cf9618b8576f18de1223...c09e60bc9c6e15cb432880858e5d14c711ff1d8d) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/48ac4624d5e80a4830ac416228c95b75e273952a) * [Bug 1955211](https://bugzilla.redhat.com/show_bug.cgi?id=1955211): fixed LANG for the builder container [#181](https://github.com/openshift/openshift-controller-manager/pull/181) * [Bug 1935362](https://bugzilla.redhat.com/show_bug.cgi?id=1935362): Listing All Events with Chunking [#170](https://github.com/openshift/openshift-controller-manager/pull/170) * [Bug 1900991](https://bugzilla.redhat.com/show_bug.cgi?id=1900991): unidling: switch away from endpoints to the service [#167](https://github.com/openshift/openshift-controller-manager/pull/167) * Updating ose-openshift-controller-manager builder & base images to be consistent with ART [#157](https://github.com/openshift/openshift-controller-manager/pull/157) * remove use of BUILD_ISOLATION env var (no longer inspected in openshift/builder) [#161](https://github.com/openshift/openshift-controller-manager/pull/161) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/5e84dd54a42aed15ae022f4ee615fa7326ef6ce2...48ac4624d5e80a4830ac416228c95b75e273952a) ### [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics/tree/24b34520a3a110dfc9884100d4f242da878dee35) * Updating openshift-state-metrics builder & base images to be consistent with ART [#65](https://github.com/openshift/openshift-state-metrics/pull/65) * [Full changelog](https://github.com/openshift/openshift-state-metrics/compare/041528b3321d5b20ac86a337693bc4cce1d36ca1...24b34520a3a110dfc9884100d4f242da878dee35) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/155e515661b893f7a19dd0c0c452d6916abe65d5) * [Bug 2002752](https://bugzilla.redhat.com/show_bug.cgi?id=2002752): Adds Proxy to provider client http transport [#201](https://github.com/openshift/cluster-api-provider-openstack/pull/201) * [Bug 1933667](https://bugzilla.redhat.com/show_bug.cgi?id=1933667): Update ose-openstack-machine-controllers builder & base images to be consistent with ART [#154](https://github.com/openshift/cluster-api-provider-openstack/pull/154) * [Bug 1933667](https://bugzilla.redhat.com/show_bug.cgi?id=1933667): Updating ose-openstack-machine-controllers builder & base images to be consistent with ART [#165](https://github.com/openshift/cluster-api-provider-openstack/pull/165) * "Bug 1912531: revendor mao" [#164](https://github.com/openshift/cluster-api-provider-openstack/pull/164) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/3622a0ce6b56750a9833d20554dcad3e214ac742...155e515661b893f7a19dd0c0c452d6916abe65d5) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/a6a6b9d756c5e74e2525d2987aaa8df07b8d55c8) * [Bug 1975456](https://bugzilla.redhat.com/show_bug.cgi?id=1975456): Handle invalid label during resource cleanup [#2209](https://github.com/operator-framework/operator-lifecycle-manager/pull/2209) * [Bug 1968226](https://bugzilla.redhat.com/show_bug.cgi?id=1968226): Fix inconsistent dependency candidate order. [#2184](https://github.com/operator-framework/operator-lifecycle-manager/pull/2184) * [Bug 1965307](https://bugzilla.redhat.com/show_bug.cgi?id=1965307): Make ClusterOperator Available condition sticky. [#2177](https://github.com/operator-framework/operator-lifecycle-manager/pull/2177) * [Bug 1969412](https://bugzilla.redhat.com/show_bug.cgi?id=1969412): fix(catalog): Reduce namespace resync in resolution failure [#2189](https://github.com/operator-framework/operator-lifecycle-manager/pull/2189) * [Bug 1965069](https://bugzilla.redhat.com/show_bug.cgi?id=1965069): Simplify deployment status check to reduce flapping. [#2176](https://github.com/operator-framework/operator-lifecycle-manager/pull/2176) * [Bug 1963139](https://bugzilla.redhat.com/show_bug.cgi?id=1963139): Set reason/message for Available condition in packageserver co [#2172](https://github.com/operator-framework/operator-lifecycle-manager/pull/2172) * [Bug 1962310](https://bugzilla.redhat.com/show_bug.cgi?id=1962310): Use DeploymentAvailable instead of custom test for CSV status. [#2169](https://github.com/operator-framework/operator-lifecycle-manager/pull/2169) * [Bug 1955112](https://bugzilla.redhat.com/show_bug.cgi?id=1955112): Preserve existing ServiceAccount owner references during installs. [#2128](https://github.com/operator-framework/operator-lifecycle-manager/pull/2128) * [Bug 1954880](https://bugzilla.redhat.com/show_bug.cgi?id=1954880): Add resource requests for bundle unpacker [#2126](https://github.com/operator-framework/operator-lifecycle-manager/pull/2126) * [Bug 1954759](https://bugzilla.redhat.com/show_bug.cgi?id=1954759): Fix resolution error if inner entry doesn't provide a required API. [#2123](https://github.com/operator-framework/operator-lifecycle-manager/pull/2123) * [Bug 1945149](https://bugzilla.redhat.com/show_bug.cgi?id=1945149): only override deployment resources when explicitly defined in subscription config [#2071](https://github.com/operator-framework/operator-lifecycle-manager/pull/2071) * [Bug 1947916](https://bugzilla.redhat.com/show_bug.cgi?id=1947916): Don't adopt copied csvs [#2094](https://github.com/operator-framework/operator-lifecycle-manager/pull/2094) * Updating operator-lifecycle-manager builder & base images to be consistent with ART [#1952](https://github.com/operator-framework/operator-lifecycle-manager/pull/1952) * [Bug 1940649](https://bugzilla.redhat.com/show_bug.cgi?id=1940649): Allow non-CSV-owned ServiceAccounts to satisfy CSV requirements. [#2051](https://github.com/operator-framework/operator-lifecycle-manager/pull/2051) * [Bug 1940453](https://bugzilla.redhat.com/show_bug.cgi?id=1940453): Support jittering relatively small resync intervals. [#2050](https://github.com/operator-framework/operator-lifecycle-manager/pull/2050) * [Bug 1938618](https://bugzilla.redhat.com/show_bug.cgi?id=1938618): Infer package name property for unannotated CSVs, if possible. [#2043](https://github.com/operator-framework/operator-lifecycle-manager/pull/2043) * [Bug 1938369](https://bugzilla.redhat.com/show_bug.cgi?id=1938369): fix(resolver): Allow skipped versions to be installed initially [#2040](https://github.com/operator-framework/operator-lifecycle-manager/pull/2040) * [Bug 1934637](https://bugzilla.redhat.com/show_bug.cgi?id=1934637): Honor all subscriptions to a package [#2026](https://github.com/operator-framework/operator-lifecycle-manager/pull/2026) * [Bug 1929335](https://bugzilla.redhat.com/show_bug.cgi?id=1929335): Only re-create operator resource if it has existing components [#2008](https://github.com/operator-framework/operator-lifecycle-manager/pull/2008) * [Bug 1922919](https://bugzilla.redhat.com/show_bug.cgi?id=1922919): Fix zero-delay resyncs for certain registry update policies. [#1989](https://github.com/operator-framework/operator-lifecycle-manager/pull/1989) * [Bug 1924257](https://bugzilla.redhat.com/show_bug.cgi?id=1924257): Fix time comparison in CSV reconcile loop [#1991](https://github.com/operator-framework/operator-lifecycle-manager/pull/1991) * Use docker driver for minikube installation test. [#1988](https://github.com/operator-framework/operator-lifecycle-manager/pull/1988) * [Bug 1917498](https://bugzilla.redhat.com/show_bug.cgi?id=1917498): use OLM client when installing CRDs [#1967](https://github.com/operator-framework/operator-lifecycle-manager/pull/1967) * [Bug 1918525](https://bugzilla.redhat.com/show_bug.cgi?id=1918525): Fix infinite loop when a CSV replacement chain contains a cycle. [#1970](https://github.com/operator-framework/operator-lifecycle-manager/pull/1970) * [Bug 1920873](https://bugzilla.redhat.com/show_bug.cgi?id=1920873): Support InstallPlan steps upgrading existing ClusterIP Services. [#1977](https://github.com/operator-framework/operator-lifecycle-manager/pull/1977) * [Bug 1908463](https://bugzilla.redhat.com/show_bug.cgi?id=1908463): Reduce log noise from OLM [#1910](https://github.com/operator-framework/operator-lifecycle-manager/pull/1910) * [Bug 1904583](https://bugzilla.redhat.com/show_bug.cgi?id=1904583): Check sa owner 46 [#1890](https://github.com/operator-framework/operator-lifecycle-manager/pull/1890) * [Bug 1901871](https://bugzilla.redhat.com/show_bug.cgi?id=1901871): fix(catalog): be defensive about directly indexing catalog pods [#1880](https://github.com/operator-framework/operator-lifecycle-manager/pull/1880) * [Bug 1906416](https://bugzilla.redhat.com/show_bug.cgi?id=1906416): Preserve original .status.lastUpdateTime in copied CSVs. [#1902](https://github.com/operator-framework/operator-lifecycle-manager/pull/1902) * [Bug 1905746](https://bugzilla.redhat.com/show_bug.cgi?id=1905746): fix(e2e): Fix subscription manual approval flaky test [#1898](https://github.com/operator-framework/operator-lifecycle-manager/pull/1898) * [Bug 1899747](https://bugzilla.redhat.com/show_bug.cgi?id=1899747): Recreate pending installplan if deleted before approval [#1874](https://github.com/operator-framework/operator-lifecycle-manager/pull/1874) * [Bug 1896051](https://bugzilla.redhat.com/show_bug.cgi?id=1896051): Services should not have duplicate ownerrefs [#1856](https://github.com/operator-framework/operator-lifecycle-manager/pull/1856) * [Bug 1886448](https://bugzilla.redhat.com/show_bug.cgi?id=1886448): Retrieve CA from conversion webhooks for CA Hash [#1802](https://github.com/operator-framework/operator-lifecycle-manager/pull/1802) * [Bug 1894163](https://bugzilla.redhat.com/show_bug.cgi?id=1894163): Add spec hash to service's label to ensure service is correct [#1851](https://github.com/operator-framework/operator-lifecycle-manager/pull/1851) * [Bug 1889745](https://bugzilla.redhat.com/show_bug.cgi?id=1889745): fix(operators): prevent hotloop [#1852](https://github.com/operator-framework/operator-lifecycle-manager/pull/1852) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/d7b2aff003ad580ecf84c8fe6036b7bea63413d8...a6a6b9d756c5e74e2525d2987aaa8df07b8d55c8) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/f0c3f9d6acc14bc3fc98f9c8c1766f60a1b9efc6) * Updating marketplace-operator builder & base images to be consistent with ART [#374](https://github.com/operator-framework/operator-marketplace/pull/374) * [Bug 1937986](https://bugzilla.redhat.com/show_bug.cgi?id=1937986): wrong community catalog image reference [#384](https://github.com/operator-framework/operator-marketplace/pull/384) * [Bug 1915905](https://bugzilla.redhat.com/show_bug.cgi?id=1915905): Preserve custom catsrc w/ default catsrc name [#375](https://github.com/operator-framework/operator-marketplace/pull/375) * [Bug 1892382](https://bugzilla.redhat.com/show_bug.cgi?id=1892382): Fix operator exited message [#365](https://github.com/operator-framework/operator-marketplace/pull/365) * [Bug 1895952](https://bugzilla.redhat.com/show_bug.cgi?id=1895952): Allow catsrc with default catsrc name in disconnected env [#362](https://github.com/operator-framework/operator-marketplace/pull/362) * [Bug 1895392](https://bugzilla.redhat.com/show_bug.cgi?id=1895392): clean up child resources for old opsrcs [#360](https://github.com/operator-framework/operator-marketplace/pull/360) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/e2e81fc3bbba4f15a98ad640957b5223b7c3a2c5...f0c3f9d6acc14bc3fc98f9c8c1766f60a1b9efc6) ### [operator-registry](https://github.com/operator-framework/operator-registry/tree/d13e51ceec5f7379de64aabce2c0befc094a3e7b) * [Bug 1968681](https://bugzilla.redhat.com/show_bug.cgi?id=1968681): fix(containerd): drop xattrs during unpack [#678](https://github.com/operator-framework/operator-registry/pull/678) * Updating operator-registry builder & base images to be consistent with ART [#550](https://github.com/operator-framework/operator-registry/pull/550) * [Bug 1915068](https://bugzilla.redhat.com/show_bug.cgi?id=1915068): Fix windows build with golang 1.15 [#547](https://github.com/operator-framework/operator-registry/pull/547) * [Bug 1918012](https://bugzilla.redhat.com/show_bug.cgi?id=1918012): Unexpected images left in `related_images` after pruning [#560](https://github.com/operator-framework/operator-registry/pull/560) * [Bug 1889865](https://bugzilla.redhat.com/show_bug.cgi?id=1889865): Avoid duplicate registry binaries across downstream image layers. [#535](https://github.com/operator-framework/operator-registry/pull/535) * [Bug 1904547](https://bugzilla.redhat.com/show_bug.cgi?id=1904547): Include the bundle image itself as a related image. [#532](https://github.com/operator-framework/operator-registry/pull/532) * [Bug 1898746](https://bugzilla.redhat.com/show_bug.cgi?id=1898746): fix(indexing): order bulk add by version field [#521](https://github.com/operator-framework/operator-registry/pull/521) * [Bug 1891064](https://bugzilla.redhat.com/show_bug.cgi?id=1891064): Check prerelease version for semver-skippatch mode [#488](https://github.com/operator-framework/operator-registry/pull/488) * [Bug 1892360](https://bugzilla.redhat.com/show_bug.cgi?id=1892360): Reconstruct replaces/splits for Listbundles from channel_entry. [#520](https://github.com/operator-framework/operator-registry/pull/520) * [Bug 1892391](https://bugzilla.redhat.com/show_bug.cgi?id=1892391): [release-4.6] Fix test flake based on random aggregate error order. [#498](https://github.com/operator-framework/operator-registry/pull/498) * [Bug 1892395](https://bugzilla.redhat.com/show_bug.cgi?id=1892395): [release-4.6] TestListPackages is flaky [#499](https://github.com/operator-framework/operator-registry/pull/499) * [Full changelog](https://github.com/operator-framework/operator-registry/compare/f6e5d9281f335472dda7110fca2c710794c97fb5...d13e51ceec5f7379de64aabce2c0befc094a3e7b) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/30cd2bc0f651b97fbd1541de7e6b19368e39f9f5) * [Bug 1960149](https://bugzilla.redhat.com/show_bug.cgi?id=1960149): disable metrics [#76](https://github.com/openshift/ovirt-csi-driver/pull/76) * [Bug 1924623](https://bugzilla.redhat.com/show_bug.cgi?id=1924623): pass ovirtClient to identity and remove redundant call to Test connection [#69](https://github.com/openshift/ovirt-csi-driver/pull/69) * Updating ose-ovirt-csi-driver builder & base images to be consistent with ART [#71](https://github.com/openshift/ovirt-csi-driver/pull/71) * [Bug 1921817](https://bugzilla.redhat.com/show_bug.cgi?id=1921817): support raw block devices [#68](https://github.com/openshift/ovirt-csi-driver/pull/68) * [Bug 1917149](https://bugzilla.redhat.com/show_bug.cgi?id=1917149): [release-4.6] bump go-ovirt and run make vendor [#64](https://github.com/openshift/ovirt-csi-driver/pull/64) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/230e4c345f0888cfbf68c1b8d22e384e76c8ec3a...30cd2bc0f651b97fbd1541de7e6b19368e39f9f5) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/c4fc2c7537199df38adc1bdc92bfa15794d99c47) * [Bug 1924626](https://bugzilla.redhat.com/show_bug.cgi?id=1924626): increase livenessProbe period [#44](https://github.com/openshift/ovirt-csi-driver-operator/pull/44) * [Bug 1916100](https://bugzilla.redhat.com/show_bug.cgi?id=1916100): [release-4.6] bump go-ovirt to 2020-10-23 [#38](https://github.com/openshift/ovirt-csi-driver-operator/pull/38) * [Bug 1916096](https://bugzilla.redhat.com/show_bug.cgi?id=1916096): [release-4.6] check FollowLink errors [#37](https://github.com/openshift/ovirt-csi-driver-operator/pull/37) * Updating ose-cluster-ovirt-csi-operator builder & base images to be consistent with ART [#39](https://github.com/openshift/ovirt-csi-driver-operator/pull/39) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/c4cddfb16881409918b8f2593687b9375c563d18...c4fc2c7537199df38adc1bdc92bfa15794d99c47) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/91f12f3f7dee290fa0f6977f5e06e3259e588087) * Updating ose-ovirt-machine-controllers builder & base images to be consistent with ART [#81](https://github.com/openshift/cluster-api-provider-ovirt/pull/81) * [Bug 1910104](https://bugzilla.redhat.com/show_bug.cgi?id=1910104): Node is not removed when VM has been removed from oVirt engine [#79](https://github.com/openshift/cluster-api-provider-ovirt/pull/79) * [Bug 1909990](https://bugzilla.redhat.com/show_bug.cgi?id=1909990): Port to machine-api-operator [#78](https://github.com/openshift/cluster-api-provider-ovirt/pull/78) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/a0c3243484fb44f0ee5c505724f547991aed7e3d...91f12f3f7dee290fa0f6977f5e06e3259e588087) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/35fe2741b33c82c31013368463a4f85d454827fe) * [Bug 1988512](https://bugzilla.redhat.com/show_bug.cgi?id=1988512): [release-4.6] Fix LGW externalIP [#676](https://github.com/openshift/ovn-kubernetes/pull/676) * [Bug 1972652](https://bugzilla.redhat.com/show_bug.cgi?id=1972652): Fix: egress IP route health check detection state on restart [#576](https://github.com/openshift/ovn-kubernetes/pull/576) * [Bug 2001980](https://bugzilla.redhat.com/show_bug.cgi?id=2001980): Fix sync egress IP for missed events on start-up [#723](https://github.com/openshift/ovn-kubernetes/pull/723) * [Bug 1985517](https://bugzilla.redhat.com/show_bug.cgi?id=1985517): Add v6 management interface address for host network policy [#626](https://github.com/openshift/ovn-kubernetes/pull/626) * [Bug 1985347](https://bugzilla.redhat.com/show_bug.cgi?id=1985347): ensure missed events are handled during a reconnection [#620](https://github.com/openshift/ovn-kubernetes/pull/620) * [Bug 1942604](https://bugzilla.redhat.com/show_bug.cgi?id=1942604): Allow-from-router network policy support for ovn-kubernetes [#603](https://github.com/openshift/ovn-kubernetes/pull/603) * [Bug 1972253](https://bugzilla.redhat.com/show_bug.cgi?id=1972253): CARRY: fix missed learn for hybrid exgw [#575](https://github.com/openshift/ovn-kubernetes/pull/575) * [Bug 1966833](https://bugzilla.redhat.com/show_bug.cgi?id=1966833): BACKPORT Add a cluster-wide group with node ls-to-cluster-router ports. [#573](https://github.com/openshift/ovn-kubernetes/pull/573) * [Bug 1966280](https://bugzilla.redhat.com/show_bug.cgi?id=1966280): Adds reconciliation for hanging pod adds [#561](https://github.com/openshift/ovn-kubernetes/pull/561) * [Bug 1953088](https://bugzilla.redhat.com/show_bug.cgi?id=1953088): master: Delay deleting Namespace's address set for 20 seconds [#534](https://github.com/openshift/ovn-kubernetes/pull/534) * [Bug 1949240](https://bugzilla.redhat.com/show_bug.cgi?id=1949240): Bump OVN version in 4.6 to 20.12.0-24 [#525](https://github.com/openshift/ovn-kubernetes/pull/525) * [Bug 1947098](https://bugzilla.redhat.com/show_bug.cgi?id=1947098): [4.6z] Ensure no SNAT on GR for DisableSNATMultipleGws [#535](https://github.com/openshift/ovn-kubernetes/pull/535) * [Bug 1950434](https://bugzilla.redhat.com/show_bug.cgi?id=1950434): [4.6] pods: bind pod logical switch ports to the node's chassis with requested-chassis [#504](https://github.com/openshift/ovn-kubernetes/pull/504) * [Bug 1947836](https://bugzilla.redhat.com/show_bug.cgi?id=1947836): Fix service update for policy type assertion [#501](https://github.com/openshift/ovn-kubernetes/pull/501) * [Bug 1945690](https://bugzilla.redhat.com/show_bug.cgi?id=1945690): Updating ose-ovn-kubernetes builder & base images to be consistent with ART [#401](https://github.com/openshift/ovn-kubernetes/pull/401) * [Bug 1945308](https://bugzilla.redhat.com/show_bug.cgi?id=1945308): Backport lr nat del add fixes [#486](https://github.com/openshift/ovn-kubernetes/pull/486) * [Bug 1945725](https://bugzilla.redhat.com/show_bug.cgi?id=1945725): Revert the ovn change to avoid a crash [#485](https://github.com/openshift/ovn-kubernetes/pull/485) * [Bug 1935691](https://bugzilla.redhat.com/show_bug.cgi?id=1935691): [release-4.6] Backport port_claim improvement [#459](https://github.com/openshift/ovn-kubernetes/pull/459) * [Bug 1933752](https://bugzilla.redhat.com/show_bug.cgi?id=1933752): Bump to ovn2.13-20.09.0-7.el8fdn [#455](https://github.com/openshift/ovn-kubernetes/pull/455) * [Bug 1889460](https://bugzilla.redhat.com/show_bug.cgi?id=1889460): Guard against nil address set usage [#353](https://github.com/openshift/ovn-kubernetes/pull/353) * [Bug 1920482](https://bugzilla.redhat.com/show_bug.cgi?id=1920482): Configure GARP for egress IP re-assignment [#424](https://github.com/openshift/ovn-kubernetes/pull/424) * [Bug 1921274](https://bugzilla.redhat.com/show_bug.cgi?id=1921274): Fix MCS-blocking iptables rules [#425](https://github.com/openshift/ovn-kubernetes/pull/425) * [Bug 1890274](https://bugzilla.redhat.com/show_bug.cgi?id=1890274): Fixes External IP with local gateway mode [#354](https://github.com/openshift/ovn-kubernetes/pull/354) * [Bug 1912328](https://bugzilla.redhat.com/show_bug.cgi?id=1912328): Bump OVS to 2.13.0-72 [#372](https://github.com/openshift/ovn-kubernetes/pull/372) * [Bug 1917240](https://bugzilla.redhat.com/show_bug.cgi?id=1917240): [4.6] Backport Add clusterIP to ingress policy AS for SNAT-ed hairpin Traffic Cherry Pick [#411](https://github.com/openshift/ovn-kubernetes/pull/411) * [Bug 1917609](https://bugzilla.redhat.com/show_bug.cgi?id=1917609): Fixes deleting exgw pod [#421](https://github.com/openshift/ovn-kubernetes/pull/421) * [Bug 1912388](https://bugzilla.redhat.com/show_bug.cgi?id=1912388): Fix broken make check on 4.6 [#395](https://github.com/openshift/ovn-kubernetes/pull/395) * [Bug 1898160](https://bugzilla.redhat.com/show_bug.cgi?id=1898160): Egress IP fail-over and health checks [#394](https://github.com/openshift/ovn-kubernetes/pull/394) * [Bug 1886062](https://bugzilla.redhat.com/show_bug.cgi?id=1886062): Backport klog v2 changes to 4.6 [#391](https://github.com/openshift/ovn-kubernetes/pull/391) * [Bug 1898178](https://bugzilla.redhat.com/show_bug.cgi?id=1898178): [release-4.6] Handle egress IP assignment for node IPs [#349](https://github.com/openshift/ovn-kubernetes/pull/349) * [Bug 1908803](https://bugzilla.redhat.com/show_bug.cgi?id=1908803): [4.6] fix network policy when the namespace label changes [#389](https://github.com/openshift/ovn-kubernetes/pull/389) * [Bug 1908472](https://bugzilla.redhat.com/show_bug.cgi?id=1908472): [4.6] Increase QPS and Burst setting [#388](https://github.com/openshift/ovn-kubernetes/pull/388) * [Bug 1883917](https://bugzilla.redhat.com/show_bug.cgi?id=1883917): backport reject acl fixes [#356](https://github.com/openshift/ovn-kubernetes/pull/356) * [Bug 1899266](https://bugzilla.redhat.com/show_bug.cgi?id=1899266): Fixes ICMPv6 flooding behavior [#374](https://github.com/openshift/ovn-kubernetes/pull/374) * [Bug 1898269](https://bugzilla.redhat.com/show_bug.cgi?id=1898269): Fix broken make check on 4.6 [#347](https://github.com/openshift/ovn-kubernetes/pull/347) * [Bug 1885675](https://bugzilla.redhat.com/show_bug.cgi?id=1885675): Consider changed configuration when kicking out raft members [#330](https://github.com/openshift/ovn-kubernetes/pull/330) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/c2935fd718630c8237428abaf2077b321a9e0bb9...35fe2741b33c82c31013368463a4f85d454827fe) ### [prom-label-proxy](https://github.com/openshift/prom-label-proxy/tree/2b51499247434f960a5b543803a92309e3e7ab22) * Updating prom-label-proxy builder & base images to be consistent with ART [#331](https://github.com/openshift/prom-label-proxy/pull/331) * [Full changelog](https://github.com/openshift/prom-label-proxy/compare/de0a460a2c223365cf9d3673aa68c2dd166e097a...2b51499247434f960a5b543803a92309e3e7ab22) ### [prometheus](https://github.com/openshift/prometheus/tree/f97d7ec81d51522546a076095c141b2d1eb21030) * Updating golang-github-prometheus-prometheus builder & base images to be consistent with ART [#71](https://github.com/openshift/prometheus/pull/71) * [Bug 1889711](https://bugzilla.redhat.com/show_bug.cgi?id=1889711): bump Prometheus to v2.22.2 [#62](https://github.com/openshift/prometheus/pull/62) * [Full changelog](https://github.com/openshift/prometheus/compare/890b92b3266f5555283b5177807ab24b4c7cbfc6...f97d7ec81d51522546a076095c141b2d1eb21030) ### [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager/tree/ddfb948a847563191515bd7edeb77e7a1deed596) * Updating golang-github-prometheus-alertmanager builder & base images to be consistent with ART [#42](https://github.com/openshift/prometheus-alertmanager/pull/42) * [Full changelog](https://github.com/openshift/prometheus-alertmanager/compare/9049b9f302e85130e430df4216de045c012f7ce6...ddfb948a847563191515bd7edeb77e7a1deed596) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/555d6020fa7e3cfd8237daa9802e2bd9cd72ba63) * [Bug 1935586](https://bugzilla.redhat.com/show_bug.cgi?id=1935586): pkg/prometheus: remove liveness probe [#110](https://github.com/openshift/prometheus-operator/pull/110) * Updating prometheus-operator builder & base images to be consistent with ART [#103](https://github.com/openshift/prometheus-operator/pull/103) * Updating prometheus-config-reloader builder & base images to be consistent with ART [#104](https://github.com/openshift/prometheus-operator/pull/104) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/1cbb5d5a81a80c2f996b4c9045a3cc85650cdfd7...555d6020fa7e3cfd8237daa9802e2bd9cd72ba63) ### [prometheus-node-exporter](https://github.com/openshift/node_exporter/tree/c63b8f3b05a5c432539a35ada3fdcac630475a06) * [Bug 1928073](https://bugzilla.redhat.com/show_bug.cgi?id=1928073): text_collectors: do not use space as a replacement for escape characters [#85](https://github.com/openshift/node_exporter/pull/85) * [Bug 1928073](https://bugzilla.redhat.com/show_bug.cgi?id=1928073): Remove escape characters [#83](https://github.com/openshift/node_exporter/pull/83) * Updating golang-github-prometheus-node_exporter builder & base images to be consistent with ART [#77](https://github.com/openshift/node_exporter/pull/77) * [Full changelog](https://github.com/openshift/node_exporter/compare/b13ea6076dae6819ad0a0f423308ce872a306463...c63b8f3b05a5c432539a35ada3fdcac630475a06) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/0a3162106840fcded685eb23f1a8beadc6ee2837) * Updating ose-service-ca-operator builder & base images to be consistent with ART [#135](https://github.com/openshift/service-ca-operator/pull/135) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/4f5b8bad62b562814fdfce5ae0ddf57bc4be2c02...0a3162106840fcded685eb23f1a8beadc6ee2837) ### [telemeter](https://github.com/openshift/telemeter/tree/d7cd4df1ba5ff2b4d51015cfcfee916365dc5192) * Updating telemeter builder & base images to be consistent with ART [#368](https://github.com/openshift/telemeter/pull/368) * [Full changelog](https://github.com/openshift/telemeter/compare/895aca154f5ca7f7ddd7602231d9a770d1e9d3c2...d7cd4df1ba5ff2b4d51015cfcfee916365dc5192) ### [tests](https://github.com/openshift/origin/tree/6a89fa01b6f6d4855b9dc71d275a180d6cc1487c) * [Bug 2019522](https://bugzilla.redhat.com/show_bug.cgi?id=2019522): Skip test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#26564](https://github.com/openshift/origin/pull/26564) * [Bug 1978717](https://bugzilla.redhat.com/show_bug.cgi?id=1978717): Add BareMetalPlatformType into e2e upgrade service unsupported list [#26309](https://github.com/openshift/origin/pull/26309) * [Bug 1981582](https://bugzilla.redhat.com/show_bug.cgi?id=1981582): [release-4.6] use vpa package and add debug logs to olm test [#26355](https://github.com/openshift/origin/pull/26355) * [Bug 1988176](https://bugzilla.redhat.com/show_bug.cgi?id=1988176): [release-4.6] Add test of documented backup/restore procedure [#26356](https://github.com/openshift/origin/pull/26356) * [Bug 1902221](https://bugzilla.redhat.com/show_bug.cgi?id=1902221): clean up remaining build busybox refs after claytons overhaul [#26332](https://github.com/openshift/origin/pull/26332) * [Bug 1977095](https://bugzilla.redhat.com/show_bug.cgi?id=1977095): correcting test case [#26308](https://github.com/openshift/origin/pull/26308) * [Bug 1978442](https://bugzilla.redhat.com/show_bug.cgi?id=1978442): comment out multi-namespace jenkins pipeline templates test; moving it to jenkins client plugin in-repo e2e's [#26301](https://github.com/openshift/origin/pull/26301) * [Bug 1977093](https://bugzilla.redhat.com/show_bug.cgi?id=1977093): Add consolequickstarts and consoleplugins extensions to the authenticated rules [#26288](https://github.com/openshift/origin/pull/26288) * [Bug 1955599](https://bugzilla.redhat.com/show_bug.cgi?id=1955599): test/extended/router: Fix-up Unidling test [#26119](https://github.com/openshift/origin/pull/26119) * [Bug 1965588](https://bugzilla.redhat.com/show_bug.cgi?id=1965588): Testimage install cinder 4.6 [#26193](https://github.com/openshift/origin/pull/26193) * [Bug 1963909](https://bugzilla.redhat.com/show_bug.cgi?id=1963909): move verify run test from tools to cli image; narrow scope to /run/secrets [#26177](https://github.com/openshift/origin/pull/26177) * [Bug 1958969](https://bugzilla.redhat.com/show_bug.cgi?id=1958969): test/extended/router/idle: Only run on OVNKubernetes or OpenShiftSDN [#26146](https://github.com/openshift/origin/pull/26146) * [Bug 1948233](https://bugzilla.redhat.com/show_bug.cgi?id=1948233): Add openshift/network/third-party suite, for CNI plugin conformance [#26059](https://github.com/openshift/origin/pull/26059) * [Bug 1936974](https://bugzilla.redhat.com/show_bug.cgi?id=1936974): Access git over https for tests [#26109](https://github.com/openshift/origin/pull/26109) * [Bug 1941577](https://bugzilla.redhat.com/show_bug.cgi?id=1941577): test/extended/router/idle: skip test on virt platforms [#26069](https://github.com/openshift/origin/pull/26069) * [Bug 1927954](https://bugzilla.redhat.com/show_bug.cgi?id=1927954): test/extended/router/idle: address flakes/failures seen in CI [#25893](https://github.com/openshift/origin/pull/25893) * [Bug 1915559](https://bugzilla.redhat.com/show_bug.cgi?id=1915559): upgrade/upgrade.go: Enhance upgrade ack time out error [#26055](https://github.com/openshift/origin/pull/26055) * [Bug 1931864](https://bugzilla.redhat.com/show_bug.cgi?id=1931864): test: add vsphere and libvirt to unsupported platforms for LB service [#25914](https://github.com/openshift/origin/pull/25914) * [Bug 1930537](https://bugzilla.redhat.com/show_bug.cgi?id=1930537): improve handling of pending pods crashloop detection test [#25600](https://github.com/openshift/origin/pull/25600) * [Bug 1902008](https://bugzilla.redhat.com/show_bug.cgi?id=1902008): fix ldap group sync tests and move them from bash to golang [#25808](https://github.com/openshift/origin/pull/25808) * [Bug 1939549](https://bugzilla.redhat.com/show_bug.cgi?id=1939549): Update tests to use Ruby 2.7 [#25967](https://github.com/openshift/origin/pull/25967) * [Bug 1930724](https://bugzilla.redhat.com/show_bug.cgi?id=1930724): server-side apply e2e: fix oauthclientauthorization race with KCM [#25908](https://github.com/openshift/origin/pull/25908) * [Bug 1902054](https://bugzilla.redhat.com/show_bug.cgi?id=1902054): Update multicast test image for use in release-4.6 [#25825](https://github.com/openshift/origin/pull/25825) * [Bug 1900991](https://bugzilla.redhat.com/show_bug.cgi?id=1900991): test/extended/router: add idle/unidle e2e test [#25858](https://github.com/openshift/origin/pull/25858) * [Bug 1925539](https://bugzilla.redhat.com/show_bug.cgi?id=1925539): Allow RHE7 /run contents for build fs test [#25864](https://github.com/openshift/origin/pull/25864) * [Bug 1924744](https://bugzilla.redhat.com/show_bug.cgi?id=1924744): allow OKD /run contents for build fs test [#25851](https://github.com/openshift/origin/pull/25851) * [Bug 1900991](https://bugzilla.redhat.com/show_bug.cgi?id=1900991): idle.sh: Drop endpoints mocks from idle tests [#25855](https://github.com/openshift/origin/pull/25855) * [Bug 1920626](https://bugzilla.redhat.com/show_bug.cgi?id=1920626): add test to verify build /run fs contents [#25838](https://github.com/openshift/origin/pull/25838) * [Bug 1921473](https://bugzilla.redhat.com/show_bug.cgi?id=1921473): don't wait for PV removal in volumes.sh [#25831](https://github.com/openshift/origin/pull/25831) * Updating openshift-enterprise-tests builder & base images to be consistent with ART [#25796](https://github.com/openshift/origin/pull/25796) * [Bug 1917014](https://bugzilla.redhat.com/show_bug.cgi?id=1917014): replace test/cmd/builds.sh direct/indirect docker.io refs with imagestream image refs [#25805](https://github.com/openshift/origin/pull/25805) * [Bug 1916687](https://bugzilla.redhat.com/show_bug.cgi?id=1916687): broaden acceptance of scl sample s2i image usage messages [#25804](https://github.com/openshift/origin/pull/25804) * [Bug 1902029](https://bugzilla.redhat.com/show_bug.cgi?id=1902029): move off docker.io in build e2e's (approximate recent 4.7 changes) [#25721](https://github.com/openshift/origin/pull/25721) * Add e2e testing of server-side apply for openshift types [#25699](https://github.com/openshift/origin/pull/25699) * [Bug 1891711](https://bugzilla.redhat.com/show_bug.cgi?id=1891711): deflake e2e test "Application behind service load balancer with PDB is not disrupted " [#25634](https://github.com/openshift/origin/pull/25634) * [Bug 1890297](https://bugzilla.redhat.com/show_bug.cgi?id=1890297): [release-4.6] Fix skipping of SDN tests [#25670](https://github.com/openshift/origin/pull/25670) * [Full changelog](https://github.com/openshift/origin/compare/e7c59480b463790113e34f1d0f835a1f0048671d...6a89fa01b6f6d4855b9dc71d275a180d6cc1487c) ### [thanos](https://github.com/openshift/thanos/tree/0bcab5dc06b05062d5c9caf2080ef7299a950771) * [Bug 1961158](https://bugzilla.redhat.com/show_bug.cgi?id=1961158): Changing resolver to address thanos-ruler pod issues [#57](https://github.com/openshift/thanos/pull/57) * Updating thanos builder & base images to be consistent with ART [#44](https://github.com/openshift/thanos/pull/44) * [Bug 1918792](https://bugzilla.redhat.com/show_bug.cgi?id=1918792): pkg/rules/proxy: fix hotlooping when receiving client errors [#47](https://github.com/openshift/thanos/pull/47) * [Bug 1885946](https://bugzilla.redhat.com/show_bug.cgi?id=1885946): pkg/query: eventually update rules client [#38](https://github.com/openshift/thanos/pull/38) * [Full changelog](https://github.com/openshift/thanos/compare/3bb9b293de77d87e446ebe4d4b15ec7457e4657e...0bcab5dc06b05062d5c9caf2080ef7299a950771)