# 4.7.12 Created: 2021-05-20 18:48:00 +0000 UTC Image Digest: `sha256:2029c5779202293f23418d47a1a823c4e4c8539c1ab25e8bda30d48335b4892e` Promoted from registry.ci.openshift.org/ocp/release:4.7.0-0.nightly-2021-05-20-112118 ## Changes from 4.7.10 ### Components * Kubernetes 1.20.0-beta.2 * Red Hat Enterprise Linux CoreOS upgraded from 47.83.202105041745-0 to 47.83.202105200135-0 ### New images * [driver-toolkit](https://github.com/openshift/driver-toolkit) git [bbf091e6](https://github.com/openshift/driver-toolkit/commit/bbf091e64bb3cf06edd61e39877ebe534037de3c) `sha256:0fd84aee69606178b6561ac71f8540f404d518ae5deff45f6d6ac8f02636c7f4` ### Rebuilt images without code change * [docker-builder](https://github.com/openshift/builder) git [df50aa9a](https://github.com/openshift/builder/commit/df50aa9a4dd8e378d77c398b4d5c55211b9d14ba) `sha256:6469a6b46478e824aaaa35e6784eee22276ef969c69f2525ad92a515d450bc7b` * machine-os-content `sha256:a6353ea35abc546c9d1a36546f583a2a029c34a046576651e4cf4f0d76afadaf` ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/d585f92b720275809904ba351dddc1d00a50e544) * [Bug 1940275](https://bugzilla.redhat.com/show_bug.cgi?id=1940275): Revert "baremetal: send full ignition to masters" [#4767](https://github.com/openshift/installer/pull/4767) * [Bug 1943500](https://bugzilla.redhat.com/show_bug.cgi?id=1943500): Bump gophercloud utils [#4794](https://github.com/openshift/installer/pull/4794) * [Bug 1958518](https://bugzilla.redhat.com/show_bug.cgi?id=1958518): aws: restore setting aws platform spec in infra resource [#4918](https://github.com/openshift/installer/pull/4918) * [Bug 1958428](https://bugzilla.redhat.com/show_bug.cgi?id=1958428): aws: support more auth options in manual mode [#4914](https://github.com/openshift/installer/pull/4914) * [Full changelog](https://github.com/openshift/installer/compare/3d157f47000c2a9963527ad1dc8c69b77053a4a6...d585f92b720275809904ba351dddc1d00a50e544) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/d088f49b436447a29a50958ddafd44e3362fb8ab) * [Bug 1948396](https://bugzilla.redhat.com/show_bug.cgi?id=1948396): oVirt credentials secret contains unnecessary "ovirt_cafile" [#322](https://github.com/openshift/cloud-credential-operator/pull/322) * [Bug 1948702](https://bugzilla.redhat.com/show_bug.cgi?id=1948702): [release-4.7] manifests/0000_90_cloud-credential-operator_04_alertrules: Drop CloudCredentialOperatorDown [#324](https://github.com/openshift/cloud-credential-operator/pull/324) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/2aec1a53520e4fc9f8def5bd040e3eca917e3d02...d088f49b436447a29a50958ddafd44e3362fb8ab) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/a28bdc97c7f9d1ec4a0a859abeaeda41b37e381f) * [Bug 1956797](https://bugzilla.redhat.com/show_bug.cgi?id=1956797): bump kube to 0.20.6 to prevent delegated authz panics [#443](https://github.com/openshift/cluster-authentication-operator/pull/443) * [Bug 1941840](https://bugzilla.redhat.com/show_bug.cgi?id=1941840): endpoints controller: close response bodies [#440](https://github.com/openshift/cluster-authentication-operator/pull/440) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/c19a2ade056390fbbc95572dcbaf403b3dc1781a...a28bdc97c7f9d1ec4a0a859abeaeda41b37e381f) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/9c724b82b3fc7704daf97e493f9092032a37b7fa) * OWNERS: add lilic as reviewer [#588](https://github.com/openshift/cluster-etcd-operator/pull/588) * [Bug 1954073](https://bugzilla.redhat.com/show_bug.cgi?id=1954073): bindata, pkg: Propagate operator log level to etcd itself [#578](https://github.com/openshift/cluster-etcd-operator/pull/578) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/ee35da5b3ee486f786d7687849d57599d46dfc2e...9c724b82b3fc7704daf97e493f9092032a37b7fa) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/5b48d8f445f9c0ac3bf99b68c5ee4a909da950b9) * [Bug 1955482](https://bugzilla.redhat.com/show_bug.cgi?id=1955482): Drop high-cardinality metrics from kube-state-metrics which aren't used [#1141](https://github.com/openshift/cluster-monitoring-operator/pull/1141) * [Bug 1955469](https://bugzilla.redhat.com/show_bug.cgi?id=1955469): remove node_mountstats_nfs_* metrics [#1154](https://github.com/openshift/cluster-monitoring-operator/pull/1154) * [Bug 1955462](https://bugzilla.redhat.com/show_bug.cgi?id=1955462): drop container_memory_failures_total metric backport [#1160](https://github.com/openshift/cluster-monitoring-operator/pull/1160) * [Bug 1952149](https://bugzilla.redhat.com/show_bug.cgi?id=1952149): oc adm top reporting unknown status for Windows node [#1130](https://github.com/openshift/cluster-monitoring-operator/pull/1130) * [Bug 1955449](https://bugzilla.redhat.com/show_bug.cgi?id=1955449): drop crio image metrics [#1134](https://github.com/openshift/cluster-monitoring-operator/pull/1134) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/da421b0e3c3362771e8d91befdd934ac09697db1...5b48d8f445f9c0ac3bf99b68c5ee4a909da950b9) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/011403f5fc7b87bf0c58f218d37c261461c2c8da) * [Bug 1954302](https://bugzilla.redhat.com/show_bug.cgi?id=1954302): Remove OVS daemonsets [#1076](https://github.com/openshift/cluster-network-operator/pull/1076) * [Bug 1956352](https://bugzilla.redhat.com/show_bug.cgi?id=1956352): [4.7] OVN kubernetes dual-stack conversion [#1082](https://github.com/openshift/cluster-network-operator/pull/1082) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/18b5ba04546d95a78b08c79dfd32ccda3cb59671...011403f5fc7b87bf0c58f218d37c261461c2c8da) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/ecfa2d959fe2afcbd3e947658d267b085a1b2063) * [Bug 1955502](https://bugzilla.redhat.com/show_bug.cgi?id=1955502): explicitly allow apiserver pods to write to their root FS [#449](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/449) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/e9dac4b23fb59c58a34d8d6533dd6bc1b6939ea3...ecfa2d959fe2afcbd3e947658d267b085a1b2063) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/a15fb1ed24e4c1478c67cf2f87d9319365d90c5b) * Adding the new Openshift CI Signer key [#34](https://github.com/openshift/cluster-update-keys/pull/34) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/a7065d83eff2a4dfed1146ff9f7a4f599a73d618...a15fb1ed24e4c1478c67cf2f87d9319365d90c5b) ### [console](https://github.com/openshift/console/tree/110b70f6e5cf53c045a59034e234efbae23ddbe8) * [Bug 1942027](https://bugzilla.redhat.com/show_bug.cgi?id=1942027): Fix RBAC check when creating a resource [#8448](https://github.com/openshift/console/pull/8448) * [Bug 1956336](https://bugzilla.redhat.com/show_bug.cgi?id=1956336): Fix Triggers section in eventlistener details page [#8842](https://github.com/openshift/console/pull/8842) * [Bug 1953937](https://bugzilla.redhat.com/show_bug.cgi?id=1953937): Fixing PVC creation page issue in 4.7(Reverting wrong commit) [#8784](https://github.com/openshift/console/pull/8784) * [Bug 1952578](https://bugzilla.redhat.com/show_bug.cgi?id=1952578): Don't poll ClusterVersion when user doesn't have authority [#8749](https://github.com/openshift/console/pull/8749) * [Bug 1950489](https://bugzilla.redhat.com/show_bug.cgi?id=1950489): Fix "Create binding" link from Role page, RoleBindings tab [#8685](https://github.com/openshift/console/pull/8685) * [Bug 1948958](https://bugzilla.redhat.com/show_bug.cgi?id=1948958): Fix ingress details page to show referenced secret name [#8633](https://github.com/openshift/console/pull/8633) * [Bug 1944955](https://bugzilla.redhat.com/show_bug.cgi?id=1944955): Fix close button in the new 'Storage cluster exists' warning alert modal [#8524](https://github.com/openshift/console/pull/8524) * [Bug 1956313](https://bugzilla.redhat.com/show_bug.cgi?id=1956313): Save additional parameters from build guidance container and drop it [#8841](https://github.com/openshift/console/pull/8841) * [Full changelog](https://github.com/openshift/console/compare/5b554d1ca01074fe459c0f71d19ae93dd9feed1d...110b70f6e5cf53c045a59034e234efbae23ddbe8) ### [hello-openshift, tests](https://github.com/openshift/origin/tree/ca0d30fdf36640b2db6dbdc0530933d672f31605) * [Bug 1958797](https://bugzilla.redhat.com/show_bug.cgi?id=1958797): test/extended/router/idle: Only run on OVNKubernetes or OpenShiftSDN [#26145](https://github.com/openshift/origin/pull/26145) * [Bug 1947705](https://bugzilla.redhat.com/show_bug.cgi?id=1947705): Add test of documented backup/restore procedure [#26110](https://github.com/openshift/origin/pull/26110) * [Full changelog](https://github.com/openshift/origin/compare/1990e35319fdc69317f9d0d2adb9cf8a0bba68c4...ca0d30fdf36640b2db6dbdc0530933d672f31605) ### [hyperkube](https://github.com/openshift/kubernetes/tree/df9c8387b2dc2308da01706ff89982c6b7ad9c48) * [Bug 1955883](https://bugzilla.redhat.com/show_bug.cgi?id=1955883): UPSTREAM: 99095: Prevent Kubelet stuck in DiskPressure when imagefs minreclaim is set [#725](https://github.com/openshift/kubernetes/pull/725) * [Bug 1951726](https://bugzilla.redhat.com/show_bug.cgi?id=1951726): Speed up PV provisioning for vsphere driver (ocp-4.7) [#690](https://github.com/openshift/kubernetes/pull/690) * [Bug 1942141](https://bugzilla.redhat.com/show_bug.cgi?id=1942141): fixes cinder PV labelling [#635](https://github.com/openshift/kubernetes/pull/635) * [Bug 1951815](https://bugzilla.redhat.com/show_bug.cgi?id=1951815): UPSTREAM: 99393: kubelet: reduce configmap and secret watch [#692](https://github.com/openshift/kubernetes/pull/692) * [Bug 1955231](https://bugzilla.redhat.com/show_bug.cgi?id=1955231): UPSTREAM: 101345: kubelet: improve the node informer sync check [#721](https://github.com/openshift/kubernetes/pull/721) * [Full changelog](https://github.com/openshift/kubernetes/compare/e3fdce453fbd3f6959611d3299ba2f2cf8445181...df9c8387b2dc2308da01706ff89982c6b7ad9c48) ### [insights-operator](https://github.com/openshift/insights-operator/tree/b0817c95c78b7b750ad3f966c500aa8bd7353b42) * [release 4.7] Bug 1953579: GatherClusterOperators and GatherClusterOperatorsPodAndEvents (#410) [#410](https://github.com/openshift/insights-operator/pull/410) * [Full changelog](https://github.com/openshift/insights-operator/compare/49a95e39920d721d36212a9c707bb262efd4cfd4...b0817c95c78b7b750ad3f966c500aa8bd7353b42) ### [ironic](https://github.com/openshift/ironic-image/tree/1a7f41bb1c2c04ccd06958669a24a08a0bf22258) * [Bug 1958965](https://bugzilla.redhat.com/show_bug.cgi?id=1958965): Updated ironic packages [#166](https://github.com/openshift/ironic-image/pull/166) * [Full changelog](https://github.com/openshift/ironic-image/compare/738bd6c0b8ed07a7570c21af0cb5d1658dcbcb4c...1a7f41bb1c2c04ccd06958669a24a08a0bf22258) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/d3eacc24156ef726caae230b9b4620059a76f781) * [release 4.7] Bug 1947810: Update Jenkins to 2.277.3 and disable setup wizard [#1259](https://github.com/openshift/jenkins/pull/1259) * [Bug 1952562](https://bugzilla.redhat.com/show_bug.cgi?id=1952562): bump config-file-provider to 3.7.1 [#1265](https://github.com/openshift/jenkins/pull/1265) * [Full changelog](https://github.com/openshift/jenkins/compare/503e5770e622bf78a746628a8b276a2616365135...d3eacc24156ef726caae230b9b4620059a76f781) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/8b61936867e8f3b224f0507685ba0e76e6d3bb95) * [Bug 1959766](https://bugzilla.redhat.com/show_bug.cgi?id=1959766): Fix NPs for OVN LBs with hairpin traffic [#516](https://github.com/openshift/kuryr-kubernetes/pull/516) * [Bug 1929066](https://bugzilla.redhat.com/show_bug.cgi?id=1929066): Skip pool pre population if no Status is present on CRD [#505](https://github.com/openshift/kuryr-kubernetes/pull/505) * [Bug 1941941](https://bugzilla.redhat.com/show_bug.cgi?id=1941941): Include service subnet to be open for namespaceSelector set to all. [#504](https://github.com/openshift/kuryr-kubernetes/pull/504) * [Bug 1929066](https://bugzilla.redhat.com/show_bug.cgi?id=1929066): Fix port pools [#455](https://github.com/openshift/kuryr-kubernetes/pull/455) * [Bug 1949551](https://bugzilla.redhat.com/show_bug.cgi?id=1949551): kuryr-controller restarting after 3 days cluster running - pools without members [#502](https://github.com/openshift/kuryr-kubernetes/pull/502) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/d49acc455c98dead4995e34add0bf9f3e6e7324b...8b61936867e8f3b224f0507685ba0e76e6d3bb95) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/bb9e0b5c11708f2cfc3ed069928e51453b7a42f3) * [Bug 1955689](https://bugzilla.redhat.com/show_bug.cgi?id=1955689): Webhook filter should check for both mutating and validating webhooks [#861](https://github.com/openshift/machine-api-operator/pull/861) * [Bug 1947372](https://bugzilla.redhat.com/show_bug.cgi?id=1947372): vSphere, detach virtual disks before virtual machine destroy if node not available [#841](https://github.com/openshift/machine-api-operator/pull/841) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/4a2d24f2b95583271394fbb0b409000ac052cc79...bb9e0b5c11708f2cfc3ed069928e51453b7a42f3) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/e3863b02b7403342cdf0f981889e8c3cfc2d86bb) * [Bug 1956749](https://bugzilla.redhat.com/show_bug.cgi?id=1956749): vsphere: platform none, vmxnet3v4 fix move to base [#2564](https://github.com/openshift/machine-config-operator/pull/2564) * [Bug 1950261](https://bugzilla.redhat.com/show_bug.cgi?id=1950261): create the ovs-config-executed file to signal ovs is running on the host [#2532](https://github.com/openshift/machine-config-operator/pull/2532) * [Bug 1957015](https://bugzilla.redhat.com/show_bug.cgi?id=1957015): [on-prem] Backport duplicate VIP fixes [#2566](https://github.com/openshift/machine-config-operator/pull/2566) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/b20ecdcd81dc3aa1269757ddfe97603918194b3b...e3863b02b7403342cdf0f981889e8c3cfc2d86bb) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/eaf3ca9bbd84af0a7edd6fed89132efea040d07c) * [Bug 1959009](https://bugzilla.redhat.com/show_bug.cgi?id=1959009): Use DeploymentAvailable instead of custom test for CSV status. [#2151](https://github.com/operator-framework/operator-lifecycle-manager/pull/2151) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/48aea63e3aa0d42c6d69215b23f6132188e2220f...eaf3ca9bbd84af0a7edd6fed89132efea040d07c) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/e2be0be9cf8d4021ce365e73f12f4aca632abbd0) * [Bug 1956270](https://bugzilla.redhat.com/show_bug.cgi?id=1956270): service controller should not use the target-port [#519](https://github.com/openshift/ovn-kubernetes/pull/519) * [Bug 1947097](https://bugzilla.redhat.com/show_bug.cgi?id=1947097): [4.7z] Ensure no SNAT on GR for DisableSNATMultipleGws [#533](https://github.com/openshift/ovn-kubernetes/pull/533) * [Bug 1939488](https://bugzilla.redhat.com/show_bug.cgi?id=1939488): Backport Handle Multus network-status annotations on pod update [#467](https://github.com/openshift/ovn-kubernetes/pull/467) * [Bug 1956318](https://bugzilla.redhat.com/show_bug.cgi?id=1956318): Revert "removing the hybrid overlay externalGW code" [#521](https://github.com/openshift/ovn-kubernetes/pull/521) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/7e5c5bf799456a19cbbc880ee9b224afb394b5a0...e2be0be9cf8d4021ce365e73f12f4aca632abbd0) ### [thanos](https://github.com/openshift/thanos/tree/cebfd5988491f80b1556a5beecd830d4888615b8) * [Bug 1957646](https://bugzilla.redhat.com/show_bug.cgi?id=1957646): cmd/thanos: use miekgdns resolver as default [#56](https://github.com/openshift/thanos/pull/56) * [Full changelog](https://github.com/openshift/thanos/compare/0526ff025d325790d57df34cf2d66810a25da578...cebfd5988491f80b1556a5beecd830d4888615b8)