# 4.8.54 Created: 2022-11-23 06:38:50 +0000 UTC Image Digest: `sha256:5d3587e7daf108a697e1a320247a729337403d500f1ec51e49501e9817053d7f` Promoted from registry.ci.openshift.org/ocp/release:4.8.0-0.nightly-2022-11-21-104412 ## Changes from 4.8.11 ### Components * Kubernetes upgraded from 1.21.1 to 1.21.11 * Red Hat Enterprise Linux CoreOS upgraded from 48.84.202109090400-0 to 48.84.202211140925-0 ### Rebuilt images without code change * [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator) git [d1fe616c](https://github.com/openshift/aws-ebs-csi-driver-operator/commit/d1fe616c0da0edddb7019a64b0ad1136b36a5f26) `sha256:e4500efff35733c60983fe95418a244f8a35122decbdfd7374da17147b4cbf8b` * [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver) git [2d461b39](https://github.com/openshift/azure-disk-csi-driver/commit/2d461b39bacc76f0b879f943015df4d2191f72f4) `sha256:c78dbe0731a5ab3fabdd7340730829a7682b0cf2691ebc480b36b9dc296bcded` * [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator) git [d3a3c298](https://github.com/openshift/azure-disk-csi-driver-operator/commit/d3a3c298c91371ccd37896857f623f4494dd78a6) `sha256:fd4aadb2b847a41f950c4422b87b0c5fd33c6a3d500392a8b7be87ae902eedf1` * [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler) git [7bbde4cc](https://github.com/openshift/kubernetes-autoscaler/commit/7bbde4cc4ddb1d0030f23b789b4bbf48ab3ef79d) `sha256:4ac7ea1f93dc0650c8b6df9602db0dc6d70db8065e7d7ccf113f086093e7bacb` * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [1af395b7](https://github.com/openshift/cluster-bootstrap/commit/1af395b7881d951a824858f5d393357609bddbf0) `sha256:d7837dddaa07b09579a7b9b678891f5172f34ffe1a417a90aa7e6c1217f81392` * [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator) git [07b3f810](https://github.com/openshift/cluster-csi-snapshot-controller-operator/commit/07b3f81036401073d68eb1ef152b96ab5e5a2fc6) `sha256:1c35fe21f15ab7b127605fe4b1935f98188a77a7f375c303b162f1836fc7591c` * [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator) git [fdb2ebec](https://github.com/openshift/cluster-dns-operator/commit/fdb2ebecdeb992444964f84fd0b5c17f37d80536) `sha256:23a0cc7140d5d2605ccabe5adea839d1e0bf17410ffa800f12f79227609b7179` * [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator) git [7fa48ebf](https://github.com/openshift/cluster-kube-controller-manager-operator/commit/7fa48ebf34e8c810ce8cbe8b62a4e10a7326856c) `sha256:f5d8a040f711995c1d951872df4267fe592f395af664c5fe638ec023407f0f65` * [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator) git [286c1577](https://github.com/openshift/cluster-openshift-controller-manager-operator/commit/286c157755c8120ce969c7c15f969737b46b1a0a) `sha256:8e994c499ec99f196ad38ab7d56862f7258eed25cfc9b01ceedb121bd19946cb` * [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller) git [ec46ea5c](https://github.com/openshift/cluster-policy-controller/commit/ec46ea5ce3735fcb3d10290834f9ae5fb31148f0) `sha256:9f18876f9ed494e2214db3914e50c3f81d8a4246e691cc002f2f4bcff51e057c` * [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator) git [31fb491f](https://github.com/openshift/cluster-samples-operator/commit/31fb491fc14faed6ebbe41a526764947069ff0a2) `sha256:62d98dc718089fea29866cd7893de11d24f8b9fbc67662ff736042fbed9b3591` * [cluster-update-keys](https://github.com/openshift/cluster-update-keys) git [87835b73](https://github.com/openshift/cluster-update-keys/commit/87835b737f0a90a6259150746114f251241bf52e) `sha256:c2ff6d312d500f96c0ccf046a8fa678158d9bb96ad927bb9e7d12cdf0bbfc792` * [configmap-reloader](https://github.com/openshift/configmap-reload) git [0d221296](https://github.com/openshift/configmap-reload/commit/0d221296e3918abc3c1367a1e7c220baf000965a) `sha256:246599a77d03e8316be68e5c990ea5fc6e3a50bf5e81f5f86e74d5acd9781d1f` * [container-networking-plugins](https://github.com/openshift/containernetworking-plugins) git [71a8b346](https://github.com/openshift/containernetworking-plugins/commit/71a8b3469df865daf68cb893bfe313328d4be992) `sha256:3ff5408ef42ee51912545e8be2267cbb7c46e26f71d44a801021a2d9a31d4f22` * [coredns](https://github.com/openshift/coredns) git [642b46ef](https://github.com/openshift/coredns/commit/642b46ef468d132d26c3f84a8bcb4b542d8df1e6) `sha256:0bc95c9a9d52eb870744539490ece8394a1fb8e07bf775f393921c03f3470956` * [csi-driver-manila](https://github.com/openshift/cloud-provider-openstack) git [3579eadc](https://github.com/openshift/cloud-provider-openstack/commit/3579eadc9b0e195a4bb80d9a43a33a250c4a8dd6) `sha256:2b2177d54861e1a83c8876eabf580f3e543c4e3cb529e2206d78096785ac5d20` * [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs) git [583088ef](https://github.com/openshift/csi-driver-nfs/commit/583088efa37346e23ed056b57ea24e61b0e5b9d8) `sha256:848e1d46b977ef5be3dcec0419cf9e4c673c7b10e808b2c7f225e7e852ff816a` * [csi-external-attacher](https://github.com/openshift/csi-external-attacher) git [596da63e](https://github.com/openshift/csi-external-attacher/commit/596da63ecf2886a9bce19c08ad1120e123b498af) `sha256:c2b5bfa40183cfee4e31560774d0cbf6ee81adb37bb43427745efc885ce919ec` * [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner) git [3ea7e68a](https://github.com/openshift/csi-external-provisioner/commit/3ea7e68a518870d63c7da9485f8a69fa1555b452) `sha256:f4cdde1d86820d39af7e11e2e90f4d44a1794d833f04bb83797c8faedb2d09ee` * [csi-external-resizer](https://github.com/openshift/csi-external-resizer) git [b5dd2b39](https://github.com/openshift/csi-external-resizer/commit/b5dd2b39e9dfb83addd0c07654c3b9119e24cb36) `sha256:3d5254433e5a02aa08f7f6f62305d3d850ab25bbbe3239bce1313a136303ac29` * [csi-external-snapshotter](https://github.com/openshift/csi-external-snapshotter) git [1e2cca95](https://github.com/openshift/csi-external-snapshotter/commit/1e2cca95999057e16fcfee07e8068f7a77f2e164) `sha256:098d836773421d7a11a7e3d05c83120bdb8e0997c8f49c18a6bb68165e84cc54` * [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe) git [a29b1153](https://github.com/openshift/csi-livenessprobe/commit/a29b1153451d6ffa6fbcb1dacbe25639c2523488) `sha256:bc2a0568245a51266356536a883e29a4f2f8808482bc6b4305a1c5db93f6b46f` * [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar) git [0519730f](https://github.com/openshift/csi-node-driver-registrar/commit/0519730f75f89c11f1ee07c7f81b0bcae1ddf705) `sha256:beec661b3cb4f96ecf13862cc993c8050e9e4e7f1e3951b86657d732050e85ae` * [csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter) git [1e2cca95](https://github.com/openshift/csi-external-snapshotter/commit/1e2cca95999057e16fcfee07e8068f7a77f2e164) `sha256:b123bacfc36d50fb489daf96faf2041f8c09a16cb713fb0fa555e0f52077999c` * [csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter) git [1e2cca95](https://github.com/openshift/csi-external-snapshotter/commit/1e2cca95999057e16fcfee07e8068f7a77f2e164) `sha256:25f83697f03fb31fa5059a057447eb84999bc7ef1f6ebe53b66878aa9b645832` * [egress-router-cni](https://github.com/openshift/egress-router-cni) git [016bea1a](https://github.com/openshift/egress-router-cni/commit/016bea1a6f5ec53aab8e936f4120c32a05322027) `sha256:965f09d124c2a714e8e9f10620bf7d01097d03f9a3df246b5c04236c51464bc4` * [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp) git [34db56eb](https://github.com/openshift/cluster-api-provider-gcp/commit/34db56ebf7a8a46828f5830d42b26f9d2bdd0db1) `sha256:35ce2b149ef8216af39aa5d7ac387471654943b65ddbab56e079add8bdba32a6` * [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator) git [35ebe860](https://github.com/openshift/gcp-pd-csi-driver-operator/commit/35ebe86003c339821d3a36186a66f8ef86049932) `sha256:0a57cc4071e1bd16611ffaa03454a168386dc18b0f05d6f0daa5300aa79c290b` * [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager) git [d2e40e34](https://github.com/openshift/ironic-static-ip-manager/commit/d2e40e34f8284d0ac7c4e9133b537baeac07b408) `sha256:a1d8ef8a0560f2d5da1dfb3eaef8f7637eedcff9428357151626e2c74de3b015` * [keepalived-ipfailover](https://github.com/openshift/images) git [ad38e116](https://github.com/openshift/images/commit/ad38e116f3533e0e78621a2887d8b70cde7cba31) `sha256:9b6774e15990c3ffa61724c4f0c4a0dc573367a70d53ecd64d8bed74e1b08720` * [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy) git [813c3da7](https://github.com/openshift/kube-rbac-proxy/commit/813c3da7222a4ccc95ef3827cd54b0ce93a8cbe5) `sha256:701f7139a68824adf445b2bc123e28dbf5981324ac159133a9c75d74f9e02d08` * [kube-state-metrics](https://github.com/openshift/kube-state-metrics) git [94716629](https://github.com/openshift/kube-state-metrics/commit/947166293195d115500d4479c0c40c8c01a25ad0) `sha256:ea44e40d70d99e355379415386cf6bbf15d1b381402f83fb69c03ff9e4e41116` * [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt) git [9542e5ac](https://github.com/openshift/cluster-api-provider-libvirt/commit/9542e5ac08b7731a37d20c881695aab904201c22) `sha256:a28c7d9e89041f89dfd643532d0b7a1618d6aab2823945e0d9ca42a7d9a109b2` * machine-os-content `sha256:ee72c889ff2a06b14a567bb313d67bbc9d05fd84649a40e222aa6928956974a3` * [multus-admission-controller](https://github.com/openshift/multus-admission-controller) git [64645feb](https://github.com/openshift/multus-admission-controller/commit/64645febe4129a794b1291d0a375a7b2bb7fba39) `sha256:8d1e073204ebe8e174dddd73505d75ef49018cbd97326a790cc72ecbd9b82aa9` * [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy) git [187ad91f](https://github.com/openshift/multus-networkpolicy/commit/187ad91f119ff6b73610922012e7af4e704c5e93) `sha256:14bc06e604423863314824cd7657f3a27d0a12a1fe0056b21d6d22a2f32f476f` * [network-tools](https://github.com/openshift/network-tools) git [5ac3739e](https://github.com/openshift/network-tools/commit/5ac3739e4382eb10cdd9209c8947096997fe38a2) `sha256:c750285329a579bcfdc938fde37687e10b3be5985dd5a1aa82977a0402b18505` * [oauth-proxy](https://github.com/openshift/oauth-proxy) git [3fc0d89b](https://github.com/openshift/oauth-proxy/commit/3fc0d89b2607808927f5b48168342f5dc3a1a271) `sha256:f3294083d3379b09e902a29e70ddb28ded2566208c0cbbd3f9f62cd48f77f44a` * [oauth-server](https://github.com/openshift/oauth-server) git [374e2ee3](https://github.com/openshift/oauth-server/commit/374e2ee38a1910c6d56172e9d4ec1828c4dea1be) `sha256:65bd5f1ff75392fbce96ba3db803ad6af71322f102b906205a3d83d97a28d5d6` * [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics) git [10142914](https://github.com/openshift/openshift-state-metrics/commit/101429149266e2c86a41b82baf47a033c9a93b02) `sha256:09488d0f324a3a13dbd38a5015b2bc171c3a85333d6ca45c238c75fd43e03c03` * [openstack-cinder-csi-driver](https://github.com/openshift/cloud-provider-openstack) git [3579eadc](https://github.com/openshift/cloud-provider-openstack/commit/3579eadc9b0e195a4bb80d9a43a33a250c4a8dd6) `sha256:f96ff99bc8a93498d660de462208a4825ec2a78fa9bf72931d3a47404bc2735c` * [prom-label-proxy](https://github.com/openshift/prom-label-proxy) git [2faeb405](https://github.com/openshift/prom-label-proxy/commit/2faeb4050010914d6b55da38bffb44b95702e052) `sha256:534de3f8fd891334a84ed508fd73f516dce6fac914b5b59ae552b7a1e7bd29ea` * [prometheus](https://github.com/openshift/prometheus) git [f3beb880](https://github.com/openshift/prometheus/commit/f3beb880dbde817bf5ed2befc1880445884e4be0) `sha256:8a18e7438779244761d726727a18f271ad0120be7e9e1b5570b4d36a05cd4532` * [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager) git [7b5ac874](https://github.com/openshift/prometheus-alertmanager/commit/7b5ac8741d87542c43d002aef3b881d7f8065133) `sha256:f7eeb90d99ecdb7470ef5db953ace91f47482bd661bcb25c096fbafd856e6479` * [prometheus-config-reloader](https://github.com/openshift/prometheus-operator) git [8f4efab9](https://github.com/openshift/prometheus-operator/commit/8f4efab9e7fa34f79a5900d95113f62908889168) `sha256:4aa086b509c8efa64963fe907dff01ac4e428d1170e0cfb2d878dc9ce439b1ac` * [prometheus-node-exporter](https://github.com/openshift/node_exporter) git [9ad2cf90](https://github.com/openshift/node_exporter/commit/9ad2cf906b9c0c44110401f121dc5cf7d657acca) `sha256:1619c5e4bf16703da35e539aff69b7da977f63fa7ff3bd5a4162fc7af32366e3` * [prometheus-operator](https://github.com/openshift/prometheus-operator) git [8f4efab9](https://github.com/openshift/prometheus-operator/commit/8f4efab9e7fa34f79a5900d95113f62908889168) `sha256:3c5fc62c3a1825cc061bc46fa06886caaa185731e03c8b2ed42e0bcdd22dc18f` * [thanos](https://github.com/openshift/thanos) git [f7c1227d](https://github.com/openshift/thanos/commit/f7c1227d2009f439d4200e305246659ebea299f8) `sha256:089fa4ca5f6f52b1d5414786611efc132b0a315db5dab121488d63d6564660a0` * [vsphere-csi-driver](https://github.com/openshift/vmware-vsphere-csi-driver) git [dd5345eb](https://github.com/openshift/vmware-vsphere-csi-driver/commit/dd5345eb7ed3c68eff6619ca434b5e83083f5bc9) `sha256:6cf5d5985b615d150b82f526b3fb02cd278710c5dfa9670d83f2e6ba1f1c2afc` * [vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver) git [dd5345eb](https://github.com/openshift/vmware-vsphere-csi-driver/commit/dd5345eb7ed3c68eff6619ca434b5e83083f5bc9) `sha256:0ab269bccc033c2f4bb78dec874173f1e7efeda292ed1930bb0f97954afbe096` ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/f052c89e99c63497b15e5bd38e2a5a71036fdefa) * [Bug 2106910](https://bugzilla.redhat.com/show_bug.cgi?id=2106910): Rebase to v1.4.0 [#205](https://github.com/openshift/aws-ebs-csi-driver/pull/205) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/8c036e44147d9e4546c726b934dedda3940790af...f052c89e99c63497b15e5bd38e2a5a71036fdefa) ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/0fae08ce8e72d491cc429f171421c140e8a324ac) * [OCPBUGS-2861](https://issues.redhat.com/browse/OCPBUGS-2861): Release-4.8 Fix go list for go1.18 [#450](https://github.com/openshift/cluster-api-provider-aws/pull/450) * [OCPBUGS-895](https://issues.redhat.com/browse/OCPBUGS-895): Fix panic when accessing nil machine annotations map [#447](https://github.com/openshift/cluster-api-provider-aws/pull/447) * [Bug 2066675](https://bugzilla.redhat.com/show_bug.cgi?id=2066675): Ensure IOPS setting is honoured on all supported block device types [#437](https://github.com/openshift/cluster-api-provider-aws/pull/437) * [Bug 2031905](https://bugzilla.redhat.com/show_bug.cgi?id=2031905): Prevent Machine from being considered provisioned until it exists in AWS [#432](https://github.com/openshift/cluster-api-provider-aws/pull/432) * [Bug 2016926](https://bugzilla.redhat.com/show_bug.cgi?id=2016926): do not requeue if the machine has been updated [#426](https://github.com/openshift/cluster-api-provider-aws/pull/426) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/9f0a34faa04c8720bbab07ae9bc6f2e0008f50c0...0fae08ce8e72d491cc429f171421c140e8a324ac) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/58ef8af861317beceac26691d5c452af45ca0e4a) * [Bug 2029253](https://bugzilla.redhat.com/show_bug.cgi?id=2029253): update go.mod for go1.16 [#148](https://github.com/openshift/aws-pod-identity-webhook/pull/148) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/2b8eee2a4f0555c6d4ce7700fda774190574fb5d...58ef8af861317beceac26691d5c452af45ca0e4a) ### [azure-machine-controllers](https://github.com/openshift/cluster-api-provider-azure/tree/f5498617c0f4c2afc44d73f1d6af358a5cb2653c) * [OCPBUGS-2754](https://issues.redhat.com/browse/OCPBUGS-2754): Fix go list for go1.18 [#265](https://github.com/openshift/cluster-api-provider-azure/pull/265) * [Bug 2051576](https://bugzilla.redhat.com/show_bug.cgi?id=2051576): Requeue create on invalid credentials errors [#253](https://github.com/openshift/cluster-api-provider-azure/pull/253) * [Full changelog](https://github.com/openshift/cluster-api-provider-azure/compare/830107632bf85869e13fbcb0848b27c310002d25...f5498617c0f4c2afc44d73f1d6af358a5cb2653c) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/d568517875a516614660fda5ee29dcb035beb959) * [OCPBUGS-1057](https://issues.redhat.com/browse/OCPBUGS-1057): Download yq in upi installer containers [#6322](https://github.com/openshift/installer/pull/6322) * [OCPBUGS-448](https://issues.redhat.com/browse/OCPBUGS-448): Allow setting bootstrap kubelet ip [#6253](https://github.com/openshift/installer/pull/6253) * [Bug 2098252](https://bugzilla.redhat.com/show_bug.cgi?id=2098252): locations fix [#6222](https://github.com/openshift/installer/pull/6222) * [Bug 2025901](https://bugzilla.redhat.com/show_bug.cgi?id=2025901): Improve host role management during assets creation [#5409](https://github.com/openshift/installer/pull/5409) * [Bug 2098252](https://bugzilla.redhat.com/show_bug.cgi?id=2098252): bump RHCOS 4.8 bootimage metadata [#6192](https://github.com/openshift/installer/pull/6192) * [Bug 2108581](https://bugzilla.redhat.com/show_bug.cgi?id=2108581): [release-4.8] RHCOS: move to rhcos.mirror.openshift.com [#6137](https://github.com/openshift/installer/pull/6137) * [Bug 2100304](https://bugzilla.redhat.com/show_bug.cgi?id=2100304): Collect whole journal and netstat data [#6040](https://github.com/openshift/installer/pull/6040) * [Bug 2098162](https://bugzilla.redhat.com/show_bug.cgi?id=2098162): Bootstrap timeout [#6026](https://github.com/openshift/installer/pull/6026) * [Bug 2006965](https://bugzilla.redhat.com/show_bug.cgi?id=2006965): bump RHCOS 4.8 boot images [#5987](https://github.com/openshift/installer/pull/5987) * [Bug 2069166](https://bugzilla.redhat.com/show_bug.cgi?id=2069166): stop considering Mint mode as supported on Azure (#5699) [#5753](https://github.com/openshift/installer/pull/5753) * [Bug 2022171](https://bugzilla.redhat.com/show_bug.cgi?id=2022171): Relax vcenter hostname check [#5371](https://github.com/openshift/installer/pull/5371) * Updating ose-installer-artifacts builder & base images to be consistent with ART [#4782](https://github.com/openshift/installer/pull/4782) * [Bug 2023363](https://bugzilla.redhat.com/show_bug.cgi?id=2023363): Add ingress rules to master SG for compact clusters [#5386](https://github.com/openshift/installer/pull/5386) * [Bug 2017986](https://bugzilla.redhat.com/show_bug.cgi?id=2017986): Set AWS Bootstrap Type == Master [#5338](https://github.com/openshift/installer/pull/5338) * [Bug 2017258](https://bugzilla.redhat.com/show_bug.cgi?id=2017258): bump oVirt terraform provider version which fix "Disk is locked" bug [#5329](https://github.com/openshift/installer/pull/5329) * [Bug 2002349](https://bugzilla.redhat.com/show_bug.cgi?id=2002349): Fix invalid UPI AWS instance type [#5199](https://github.com/openshift/installer/pull/5199) * [Bug 2008823](https://bugzilla.redhat.com/show_bug.cgi?id=2008823): baremetal: Ensure ipv6 bootstrap VM client-id is predictable [#5250](https://github.com/openshift/installer/pull/5250) * [Bug 2009019](https://bugzilla.redhat.com/show_bug.cgi?id=2009019): update legacy RHCOS boot image metadata [#5255](https://github.com/openshift/installer/pull/5255) * [Bug 1982001](https://bugzilla.redhat.com/show_bug.cgi?id=1982001): Bump RHCOS 4.8 boot image [#5227](https://github.com/openshift/installer/pull/5227) * Update OWNERS [#5242](https://github.com/openshift/installer/pull/5242) * [Bug 2004236](https://bugzilla.redhat.com/show_bug.cgi?id=2004236): Document how to enable Octavia Day 2 [#5161](https://github.com/openshift/installer/pull/5161) * [Bug 1973421](https://bugzilla.redhat.com/show_bug.cgi?id=1973421): [4.8] improve dual-stack install-config validation [#5114](https://github.com/openshift/installer/pull/5114) * [Full changelog](https://github.com/openshift/installer/compare/c06e9b1562ccb76ac23163fb8db35f231ead6e97...d568517875a516614660fda5ee29dcb035beb959) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/2dabef7e3dc39d29016b656b81d23d5a00e141ca) * [Bug 2100982](https://bugzilla.redhat.com/show_bug.cgi?id=2100982): Uplift BMO to remove go-getter dependency [#177](https://github.com/openshift/cluster-api-provider-baremetal/pull/177) * [OCPBUGS-2347](https://issues.redhat.com/browse/OCPBUGS-2347): Keep dockerfiles consistent [#178](https://github.com/openshift/cluster-api-provider-baremetal/pull/178) * Update OWNERS [#181](https://github.com/openshift/cluster-api-provider-baremetal/pull/181) * Updating baremetal-machine-controller builder & base images to be consistent with ART [#147](https://github.com/openshift/cluster-api-provider-baremetal/pull/147) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/a60d493e45aa9d3c0391297fd77cb168092fed35...2dabef7e3dc39d29016b656b81d23d5a00e141ca) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/5492cf52309927ed6015340887b15ff10025d371) * [Bug 2100994](https://bugzilla.redhat.com/show_bug.cgi?id=2100994): Uplift kustomize to remove go-getter dependency [#236](https://github.com/openshift/baremetal-operator/pull/236) * [Bug 2000442](https://bugzilla.redhat.com/show_bug.cgi?id=2000442): Add LIVE_ISO_FORCE_PERSISTENT_BOOT_DEVICE variable [#174](https://github.com/openshift/baremetal-operator/pull/174) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/015024fe8c50eca20850fcc550880b7357709613...5492cf52309927ed6015340887b15ff10025d371) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/c50d793ca33bd7d476b2b770d4f5d317b79b865b) * [Bug 2109329](https://bugzilla.redhat.com/show_bug.cgi?id=2109329): Avoid kubernetes node port range [#187](https://github.com/openshift/baremetal-runtimecfg/pull/187) * [Bug 2059584](https://bugzilla.redhat.com/show_bug.cgi?id=2059584): Ignore VIPs in node-ip show [#172](https://github.com/openshift/baremetal-runtimecfg/pull/172) * [Bug 2053720](https://bugzilla.redhat.com/show_bug.cgi?id=2053720): Avoid dynamically allocated port range for haproxy [#171](https://github.com/openshift/baremetal-runtimecfg/pull/171) * [Bug 2050288](https://bugzilla.redhat.com/show_bug.cgi?id=2050288): Add delay after sending bootstrap stop and start messages [#170](https://github.com/openshift/baremetal-runtimecfg/pull/170) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/ae824ab2973b62f03d423ccab100533c7c8ad948...c50d793ca33bd7d476b2b770d4f5d317b79b865b) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/3de49cf4459e63ca26ce3adb86a9f56ad2325272) * [Bug 2092264](https://bugzilla.redhat.com/show_bug.cgi?id=2092264): [inspect] Add namespace-scoped networking resources to inspect [#1158](https://github.com/openshift/oc/pull/1158) * [Bug 2052980](https://bugzilla.redhat.com/show_bug.cgi?id=2052980): bump(k8s.io/*) v0.21.9 [#1061](https://github.com/openshift/oc/pull/1061) * [Bug 2066760](https://bugzilla.redhat.com/show_bug.cgi?id=2066760): Add TMOUT env to debug node pod [#1095](https://github.com/openshift/oc/pull/1095) * [Bug 2039762](https://bugzilla.redhat.com/show_bug.cgi?id=2039762): Remove `git://` from new-app tests [#1023](https://github.com/openshift/oc/pull/1023) * [Bug 2053223](https://bugzilla.redhat.com/show_bug.cgi?id=2053223): Fix mirroring images that have dots in their namespace [#1069](https://github.com/openshift/oc/pull/1069) * [Bug 2038931](https://bugzilla.redhat.com/show_bug.cgi?id=2038931): properly handle --dry-run=server [#1017](https://github.com/openshift/oc/pull/1017) * [Bug 2004193](https://bugzilla.redhat.com/show_bug.cgi?id=2004193): Registry mirror panic [#926](https://github.com/openshift/oc/pull/926) * Add kevinrizza as catalog-approver [#921](https://github.com/openshift/oc/pull/921) * [Full changelog](https://github.com/openshift/oc/compare/0d10c3f72592addce965b9bb34992eb6fc283a3b...3de49cf4459e63ca26ce3adb86a9f56ad2325272) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/a29b63fea17f8fea0b03a271fad02a97519da364) * Update OWNERS to reflect reality [#499](https://github.com/openshift/cloud-credential-operator/pull/499) * [Bug 2058270](https://bugzilla.redhat.com/show_bug.cgi?id=2058270): Remove Azure mint mode support as Active Directory Graph API will be sunset [#454](https://github.com/openshift/cloud-credential-operator/pull/454) * [Bug 2027928](https://bugzilla.redhat.com/show_bug.cgi?id=2027928): pod-identity-webhook starts without tls [#429](https://github.com/openshift/cloud-credential-operator/pull/429) * [Bug 2027832](https://bugzilla.redhat.com/show_bug.cgi?id=2027832): Stop putting CCO in degraded state when stale credentials are found [#428](https://github.com/openshift/cloud-credential-operator/pull/428) * [Bug 2026098](https://bugzilla.redhat.com/show_bug.cgi?id=2026098): Check for aws status in infra platform status field before client setup [#425](https://github.com/openshift/cloud-credential-operator/pull/425) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/b8932e9fc555bc5bc356eddb3b48358caba72e92...a29b63fea17f8fea0b03a271fad02a97519da364) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/a180c2ab5c9b09746e984f4f6459b4e8cc06de82) * [Bug 2062591](https://bugzilla.redhat.com/show_bug.cgi?id=2062591): e2e: Pin Keycloack to the legacy variant [#557](https://github.com/openshift/cluster-authentication-operator/pull/557) * [Bug 1997906](https://bugzilla.redhat.com/show_bug.cgi?id=1997906): csr request: use generate names to prevent getting stuck waiting for a cert [#494](https://github.com/openshift/cluster-authentication-operator/pull/494) * [Bug 2003632](https://bugzilla.redhat.com/show_bug.cgi?id=2003632): manifests, bindata: explicitely set runAsUser for operator and operand [#484](https://github.com/openshift/cluster-authentication-operator/pull/484) * [Bug 2003946](https://bugzilla.redhat.com/show_bug.cgi?id=2003946): Deploy PDB to prevent more than one replica going unavailable [#488](https://github.com/openshift/cluster-authentication-operator/pull/488) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/8186ffeef6706ff96c34f5bbc9c1fccb94a769cc...a180c2ab5c9b09746e984f4f6459b4e8cc06de82) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/917d395f0483ba1b0f516283d9247c585039347a) * Updating ose-cluster-autoscaler-operator builder & base images to be consistent with ART [#193](https://github.com/openshift/cluster-autoscaler-operator/pull/193) * [Bug 2026237](https://bugzilla.redhat.com/show_bug.cgi?id=2026237): Change ClusterAutoscalerUnschedulablePods severity to info [#232](https://github.com/openshift/cluster-autoscaler-operator/pull/232) * [Bug 1995595](https://bugzilla.redhat.com/show_bug.cgi?id=1995595): add csidrivers and csistoragecapacities to autoscaler cluster role [#220](https://github.com/openshift/cluster-autoscaler-operator/pull/220) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/0bfa16b1085bd78bbd858942a5cd85b75c08c1ba...917d395f0483ba1b0f516283d9247c585039347a) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/117d47a29e9700088d81a3379a72a7d6d68668d1) * [Bug 2101000](https://bugzilla.redhat.com/show_bug.cgi?id=2101000): Uplift kustomize to remove go-getter dependency [#294](https://github.com/openshift/cluster-baremetal-operator/pull/294) * [OCPBUGS-1519](https://issues.redhat.com/browse/OCPBUGS-1519): [release-4.8] Fix a few papercuts [#293](https://github.com/openshift/cluster-baremetal-operator/pull/293) * Update with current OWNERS [#297](https://github.com/openshift/cluster-baremetal-operator/pull/297) * [Bug 2091748](https://bugzilla.redhat.com/show_bug.cgi?id=2091748): Fix interpretation of Deployment Status Conditions [#269](https://github.com/openshift/cluster-baremetal-operator/pull/269) * [Bug 2055279](https://bugzilla.redhat.com/show_bug.cgi?id=2055279): Calculating network stack only on supported Platforms [#248](https://github.com/openshift/cluster-baremetal-operator/pull/248) * [Bug 2000445](https://bugzilla.redhat.com/show_bug.cgi?id=2000445): Set LIVE_ISO_FORCE_PERSISTENT_BOOT_DEVICE=Never [#194](https://github.com/openshift/cluster-baremetal-operator/pull/194) * [Bug 1975711](https://bugzilla.redhat.com/show_bug.cgi?id=1975711): Only start static ip set if provisioning net not disabled [#166](https://github.com/openshift/cluster-baremetal-operator/pull/166) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/04a2ae214a8f6cea458b26a89b53190cf60fcad6...117d47a29e9700088d81a3379a72a7d6d68668d1) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/f32c07121bab6b6d37dee7bddd75ec9ae3973dc6) * [Bug 2081457](https://bugzilla.redhat.com/show_bug.cgi?id=2081457): bump API to fix ComponentRoutes TLD validation [#255](https://github.com/openshift/cluster-config-operator/pull/255) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/c1022410bf9a000e84d9764f8e8a5cfa35cfa452...f32c07121bab6b6d37dee7bddd75ec9ae3973dc6) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/642f3ebfa6f2edfa8bd62e257b052c26c1273100) * [OCPBUGS-2577](https://issues.redhat.com/browse/OCPBUGS-2577): fix cert rotation on IP changes [#949](https://github.com/openshift/cluster-etcd-operator/pull/949) * [Bug 2111446](https://bugzilla.redhat.com/show_bug.cgi?id=2111446): Add etcd pod liveness and readiness probes [#902](https://github.com/openshift/cluster-etcd-operator/pull/902) * [OCPBUGS-1230](https://issues.redhat.com/browse/OCPBUGS-1230): ensure healthy quorum before config update [#930](https://github.com/openshift/cluster-etcd-operator/pull/930) * [OCPBUGS-1307](https://issues.redhat.com/browse/OCPBUGS-1307): backport owners [#928](https://github.com/openshift/cluster-etcd-operator/pull/928) * [Bug 2008414](https://bugzilla.redhat.com/show_bug.cgi?id=2008414): pkg/operator/metriccontroller: read etcd-operator SA token rather than using prometheus [#665](https://github.com/openshift/cluster-etcd-operator/pull/665) * [Bug 1994483](https://bugzilla.redhat.com/show_bug.cgi?id=1994483): bindata/etcd: remove unix socket from advertised list [#642](https://github.com/openshift/cluster-etcd-operator/pull/642) * [Bug 1999777](https://bugzilla.redhat.com/show_bug.cgi?id=1999777): [release-4.8]: pkg/operator: add cluster backup upgrade controller [#652](https://github.com/openshift/cluster-etcd-operator/pull/652) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/0987b7c81c2e83b5425c24b508cfd7b9a281ed2b...642f3ebfa6f2edfa8bd62e257b052c26c1273100) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/4aa1e6f3e0321df1109672d2d105de5a8b913cb5) * [Bug 2074053](https://bugzilla.redhat.com/show_bug.cgi?id=2074053): Deployment annotations, runtimeClassName override and fs policy change [#767](https://github.com/openshift/cluster-image-registry-operator/pull/767) * [Bug 2067107](https://bugzilla.redhat.com/show_bug.cgi?id=2067107): Retry on pruner failures [#761](https://github.com/openshift/cluster-image-registry-operator/pull/761) * [Bug 2015098](https://bugzilla.redhat.com/show_bug.cgi?id=2015098): Avoid disruptions [#725](https://github.com/openshift/cluster-image-registry-operator/pull/725) * [Bug 2004028](https://bugzilla.redhat.com/show_bug.cgi?id=2004028): Update rolling update parameters [#717](https://github.com/openshift/cluster-image-registry-operator/pull/717) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/e137fea075b0e2c5a44f34faaf3c46f7ae070d93...4aa1e6f3e0321df1109672d2d105de5a8b913cb5) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/7163d38a50c505c1289bccf72d62b02e17d25c47) * [Bug 2084337](https://bugzilla.redhat.com/show_bug.cgi?id=2084337): Fix enabling PROXY protocol on an upgraded cluster [#758](https://github.com/openshift/cluster-ingress-operator/pull/758) * [Bug 2066302](https://bugzilla.redhat.com/show_bug.cgi?id=2066302): Disable keepalive for canary probe [#726](https://github.com/openshift/cluster-ingress-operator/pull/726) * [Bug 2017708](https://bugzilla.redhat.com/show_bug.cgi?id=2017708): Change default balancing algorithm to "leastconn" [#670](https://github.com/openshift/cluster-ingress-operator/pull/670) * [Bug 1998103](https://bugzilla.redhat.com/show_bug.cgi?id=1998103): cleanup condition metrics for deleted ingress controllers [#649](https://github.com/openshift/cluster-ingress-operator/pull/649) * [Bug 2000414](https://bugzilla.redhat.com/show_bug.cgi?id=2000414): Configure router to use "source" for passthrough [#651](https://github.com/openshift/cluster-ingress-operator/pull/651) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/e9e62957e31cc5fd2166c4c6aeb164c426a90fed...7163d38a50c505c1289bccf72d62b02e17d25c47) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/25c54939bdd02bc8e68f1329fa3ebe16904b3282) * [Bug 2026089](https://bugzilla.redhat.com/show_bug.cgi?id=2026089): library-go bump [#1320](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1320) * [Bug 2016213](https://bugzilla.redhat.com/show_bug.cgi?id=2016213): Exempt metrics scrapes from APF. [#1247](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1247) * [Bug 2012010](https://bugzilla.redhat.com/show_bug.cgi?id=2012010): alerts: give exact oc get apirequestcounts command in APIRemovedInNextReleaseInUse alert [#1241](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1241) * [Bug 2001244](https://bugzilla.redhat.com/show_bug.cgi?id=2001244): Enforce OpenShift's defined kubelet version skew policies [#1224](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1224) * [Bug 1993800](https://bugzilla.redhat.com/show_bug.cgi?id=1993800): bump(library-go): staticpod/installer: fix backoff of installers [#1214](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1214) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/7f3081b369dd33f994a0cf80d5ced6d432e3bf8f...25c54939bdd02bc8e68f1329fa3ebe16904b3282) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/1b3b34440de93395c46c7a6526be9870e8914ce8) * [Bug 2026110](https://bugzilla.redhat.com/show_bug.cgi?id=2026110): Disable balancedAllocation and add weight for HighNodeUtilization profile [#380](https://github.com/openshift/cluster-kube-scheduler-operator/pull/380) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/3c47d6f73c7e81dee830fb92629bd56a41375196...1b3b34440de93395c46c7a6526be9870e8914ce8) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/50c639cc7e318c1dab38a2869b928cf703a38515) * [Bug 2022844](https://bugzilla.redhat.com/show_bug.cgi?id=2022844): Extensive number of requests from storage version operator in cluster – Part 4 [#79](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/79) * [Bug 2022844](https://bugzilla.redhat.com/show_bug.cgi?id=2022844): Extensive number of requests from storage version operator in cluster – Part 1 [#78](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/78) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/c4f4f8bbfc87b9fe057de2a05e484387eea1fddb...50c639cc7e318c1dab38a2869b928cf703a38515) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/f0a396eee469a3ace9e473c0476a29d8983671eb) * [Bug 2031047](https://bugzilla.redhat.com/show_bug.cgi?id=2031047): Ensure pending CSR count is valid post approval [#146](https://github.com/openshift/cluster-machine-approver/pull/146) * [Bug 2032092](https://bugzilla.redhat.com/show_bug.cgi?id=2032092): Replace certificates with generated certificates [#148](https://github.com/openshift/cluster-machine-approver/pull/148) * [Bug 2024689](https://bugzilla.redhat.com/show_bug.cgi?id=2024689): Allow fallback to serving cert renewal accounting for egress IPs on SDN [#142](https://github.com/openshift/cluster-machine-approver/pull/142) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/724abd216ea546671fbfa4c9060180ff1619c85a...f0a396eee469a3ace9e473c0476a29d8983671eb) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/46e4dd9b8e80427a3c608f41c21ad4eebad79f2b) * [OCPBUGS-3665](https://issues.redhat.com/browse/OCPBUGS-3665): adding check for node exporter daemon set [#1813](https://github.com/openshift/cluster-monitoring-operator/pull/1813) * [OCPBUGS-1098](https://issues.redhat.com/browse/OCPBUGS-1098): Give precedence to CMO config map proxy config [#1765](https://github.com/openshift/cluster-monitoring-operator/pull/1765) * [OCPBUGS-644](https://issues.redhat.com/browse/OCPBUGS-644): grafana: bump to 7.5.11 [#1754](https://github.com/openshift/cluster-monitoring-operator/pull/1754) * [Bug 2030698](https://bugzilla.redhat.com/show_bug.cgi?id=2030698): KubePodCrashLooping may fire when pod is not in CrashLoopBackOff [#1619](https://github.com/openshift/cluster-monitoring-operator/pull/1619) * [Bug 2039538](https://bugzilla.redhat.com/show_bug.cgi?id=2039538): Add custom profile metric for Node Tuning Operator to telemetry [#1565](https://github.com/openshift/cluster-monitoring-operator/pull/1565) * [Bug 2018431](https://bugzilla.redhat.com/show_bug.cgi?id=2018431): [4.8] add kube_persistentvolumeclaim_labels and kube_persistentvolume_labels [#1459](https://github.com/openshift/cluster-monitoring-operator/pull/1459) * [Bug 2012039](https://bugzilla.redhat.com/show_bug.cgi?id=2012039): Allow namespace label in metric allow list [#1436](https://github.com/openshift/cluster-monitoring-operator/pull/1436) * [Bug 2005205](https://bugzilla.redhat.com/show_bug.cgi?id=2005205): improve update and status reporting 4.8 [#1428](https://github.com/openshift/cluster-monitoring-operator/pull/1428) * Revert "Bug 1999057: jsonnet: Sync with kube-prometheus" [#1394](https://github.com/openshift/cluster-monitoring-operator/pull/1394) * [Bug 1999057](https://bugzilla.redhat.com/show_bug.cgi?id=1999057): jsonnet: Sync with kube-prometheus [#1360](https://github.com/openshift/cluster-monitoring-operator/pull/1360) * [Bug 1997497](https://bugzilla.redhat.com/show_bug.cgi?id=1997497): Backport etcd telemetry [#1344](https://github.com/openshift/cluster-monitoring-operator/pull/1344) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/95b55142a909712479205b13d3fdc62a28003cbd...46e4dd9b8e80427a3c608f41c21ad4eebad79f2b) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/fb157736c52ce0bb281e49fa52be2dd50abed3ac) * Bug OCPBUGS-472: Kuryr: Bump timeoutSeconds for livenessProbe [#1572](https://github.com/openshift/cluster-network-operator/pull/1572) * [Bug 2092264](https://bugzilla.redhat.com/show_bug.cgi?id=2092264): Cleanup CNO relatedObjects [#1469](https://github.com/openshift/cluster-network-operator/pull/1469) * [Bug 2084366](https://bugzilla.redhat.com/show_bug.cgi?id=2084366): ovn: try to gracefully terminate ovn-northd [#1438](https://github.com/openshift/cluster-network-operator/pull/1438) * [Bug 2090000](https://bugzilla.redhat.com/show_bug.cgi?id=2090000): Reserve port TCP/9104 for cluster-network-operator [#1457](https://github.com/openshift/cluster-network-operator/pull/1457) * Adds dougbtv to owners [release-4.8] [#1403](https://github.com/openshift/cluster-network-operator/pull/1403) * [Bug 2058674](https://bugzilla.redhat.com/show_bug.cgi?id=2058674): ip-reconciler cronjob specification requires hostnetwork, api-int lb usage & proper backoff [backport 4.8] [#1324](https://github.com/openshift/cluster-network-operator/pull/1324) * [Bug 2038295](https://bugzilla.redhat.com/show_bug.cgi?id=2038295): Backport 4.8 OVN drop icmp frag from other nodes on Azure cluster [#1274](https://github.com/openshift/cluster-network-operator/pull/1274) * [Bug 2068895](https://bugzilla.redhat.com/show_bug.cgi?id=2068895): Do not apply OVN-Kubernetes PodDisruptionBudget on single-node clusters [#1351](https://github.com/openshift/cluster-network-operator/pull/1351) * [release 4.8] Updates owners [#1334](https://github.com/openshift/cluster-network-operator/pull/1334) * [Bug 2054642](https://bugzilla.redhat.com/show_bug.cgi?id=2054642): sbdb and nbdb containers leave pid around if they restarted or crashed [#1310](https://github.com/openshift/cluster-network-operator/pull/1310) * [Bug 2023426](https://bugzilla.redhat.com/show_bug.cgi?id=2023426): Add ip6tables NOTRACK rules for udp/6081 [#1228](https://github.com/openshift/cluster-network-operator/pull/1228) * [Bug 2021221](https://bugzilla.redhat.com/show_bug.cgi?id=2021221): ovnkube: set ovn-controller lflow cache limit to 1GB [#1278](https://github.com/openshift/cluster-network-operator/pull/1278) * [Bug 2034352](https://bugzilla.redhat.com/show_bug.cgi?id=2034352): Whereabouts IP Reconciliaton [backport 4.8] [#1265](https://github.com/openshift/cluster-network-operator/pull/1265) * [Bug 2022747](https://bugzilla.redhat.com/show_bug.cgi?id=2022747): Allow to use proxy to connect to OSP cloud [#1225](https://github.com/openshift/cluster-network-operator/pull/1225) * [Bug 2037500](https://bugzilla.redhat.com/show_bug.cgi?id=2037500): Bump openshift/build-machinery-go [#1271](https://github.com/openshift/cluster-network-operator/pull/1271) * [Bug 2029590](https://bugzilla.redhat.com/show_bug.cgi?id=2029590): Set upgrade strategy on kube-proxy #1244 [#1244](https://github.com/openshift/cluster-network-operator/pull/1244) * [Bug 2018513](https://bugzilla.redhat.com/show_bug.cgi?id=2018513): ovnkube: use ovn-nbctl daemon monitor mode to restart and log issues [#1211](https://github.com/openshift/cluster-network-operator/pull/1211) * [Bug 2008589](https://bugzilla.redhat.com/show_bug.cgi?id=2008589): [4.8z] Slow OVN Recovery on SNO [#1200](https://github.com/openshift/cluster-network-operator/pull/1200) * [Bug 1985308](https://bugzilla.redhat.com/show_bug.cgi?id=1985308): Add a newline between user CAs and system CAs [#1162](https://github.com/openshift/cluster-network-operator/pull/1162) * [Bug 1990928](https://bugzilla.redhat.com/show_bug.cgi?id=1990928): [Backport 4.8] Whereabouts should have RBAC for leases [#1185](https://github.com/openshift/cluster-network-operator/pull/1185) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/6088096af99b52544fcf5a7061d36a70a4ca4a33...fb157736c52ce0bb281e49fa52be2dd50abed3ac) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/9e185d59cfbb4dd083c0ae3c82014aea110697b3) * [Bug 2018053](https://bugzilla.redhat.com/show_bug.cgi?id=2018053): tuned: add timeout and restarts [#286](https://github.com/openshift/cluster-node-tuning-operator/pull/286) * [Bug 2013678](https://bugzilla.redhat.com/show_bug.cgi?id=2013678): TuneD: workaround for high CPU utilization of [scheduler] plug-in. [#280](https://github.com/openshift/cluster-node-tuning-operator/pull/280) * [Bug 1998120](https://bugzilla.redhat.com/show_bug.cgi?id=1998120): Add a cgroup blacklisting rule to parent openshift profile. [#266](https://github.com/openshift/cluster-node-tuning-operator/pull/266) * [Bug 1999608](https://bugzilla.redhat.com/show_bug.cgi?id=1999608): Reload when deps of recommended profile change. [#268](https://github.com/openshift/cluster-node-tuning-operator/pull/268) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/f784a419c11018dc07799309e08b240de832868f...9e185d59cfbb4dd083c0ae3c82014aea110697b3) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/7f0e9b6659949421100469e3af399888cca7042e) * [Bug 2052097](https://bugzilla.redhat.com/show_bug.cgi?id=2052097): global pull secret not working in OCP4.7.4+ for additio… [#493](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/493) * [Bug 2003946](https://bugzilla.redhat.com/show_bug.cgi?id=2003946): Deploy PDB to prevent more than one replica going unavailable [#473](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/473) * [Bug 1994655](https://bugzilla.redhat.com/show_bug.cgi?id=1994655): apiservice-controller: don't update the failing condition when an operator has been requested to shutdown [#482](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/482) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/5f30d101ecfb11d562b87414e9dd4878e02704a0...7f0e9b6659949421100469e3af399888cca7042e) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/2c97085fae78fba46c2808bf03a0128180f2c1e4) * [Bug 2103447](https://bugzilla.redhat.com/show_bug.cgi?id=2103447): Add missing ibm cloud annotations to prometheus rbac [#295](https://github.com/openshift/cluster-storage-operator/pull/295) * [Bug 2034270](https://bugzilla.redhat.com/show_bug.cgi?id=2034270): Add trusted CA bundle to vsphere operators [#249](https://github.com/openshift/cluster-storage-operator/pull/249) * [Bug 1996672](https://bugzilla.redhat.com/show_bug.cgi?id=1996672): Add proxy support to cinder CSI [#210](https://github.com/openshift/cluster-storage-operator/pull/210) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/874422cb87565b17402aacf4712408b47d9a527f...2c97085fae78fba46c2808bf03a0128180f2c1e4) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/c3bd0d0d0b1837f1b8893ce24971b943c7fbeb18) * [Bug 2109962](https://bugzilla.redhat.com/show_bug.cgi?id=2109962): pkg/cvo: retain initial completed update history entry [#803](https://github.com/openshift/cluster-version-operator/pull/803) * [Bug 2047434](https://bugzilla.redhat.com/show_bug.cgi?id=2047434): Changing the ClusterNotUpgradeable alert to info [#731](https://github.com/openshift/cluster-version-operator/pull/731) * [Bug 2038936](https://bugzilla.redhat.com/show_bug.cgi?id=2038936): *: Use --v=2 logging to drop client-side throttling noise [#724](https://github.com/openshift/cluster-version-operator/pull/724) * [Bug 1982683](https://bugzilla.redhat.com/show_bug.cgi?id=1982683): [release-4.8] Respect noProxy [#691](https://github.com/openshift/cluster-version-operator/pull/691) * [Bug 2025955](https://bugzilla.redhat.com/show_bug.cgi?id=2025955): Removing the extra indentation [#696](https://github.com/openshift/cluster-version-operator/pull/696) * [Bug 2015025](https://bugzilla.redhat.com/show_bug.cgi?id=2015025): lib/resourcemerge/imagestream.go: Copy all data for new tag reference [#679](https://github.com/openshift/cluster-version-operator/pull/679) * [Bug 2011954](https://bugzilla.redhat.com/show_bug.cgi?id=2011954): pkg/cvo/upgradeable: Include messages for multiple-reason Upgradeable=False [#672](https://github.com/openshift/cluster-version-operator/pull/672) * [Bug 1999092](https://bugzilla.redhat.com/show_bug.cgi?id=1999092): Add and enable admin ack Upgradeable condition gate [#647](https://github.com/openshift/cluster-version-operator/pull/647) * [Bug 1999777](https://bugzilla.redhat.com/show_bug.cgi?id=1999777): Ensure recent etcd backup before allowing minor-version updates [#649](https://github.com/openshift/cluster-version-operator/pull/649) * [Bug 1980411](https://bugzilla.redhat.com/show_bug.cgi?id=1980411): [release-4.8] pkg/cvo/egress: Load HTTPS proxy from Proxy status [#627](https://github.com/openshift/cluster-version-operator/pull/627) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/ea6e779ef89710879e2c08c0e5847a5b5e860b28...c3bd0d0d0b1837f1b8893ce24971b943c7fbeb18) ### [console](https://github.com/openshift/console/tree/e18c26bf18f96d87e880c160c4f954eb82f4d1e1) * [OCPBUGS-2591](https://issues.redhat.com/browse/OCPBUGS-2591): fetch shared resource imagestreams based on labels instance or name [#12190](https://github.com/openshift/console/pull/12190) * [Bug 2077100](https://bugzilla.redhat.com/show_bug.cgi?id=2077100): Fix Web Terminal availability check to verify operator is installed [#11371](https://github.com/openshift/console/pull/11371) * [OCPBUGS-2773](https://issues.redhat.com/browse/OCPBUGS-2773): updates test id for 3scale [#12203](https://github.com/openshift/console/pull/12203) * [OCPBUGS-1977](https://issues.redhat.com/browse/OCPBUGS-1977): Helm readme bugfix [#12132](https://github.com/openshift/console/pull/12132) * [OCPBUGS-1314](https://issues.redhat.com/browse/OCPBUGS-1314): use the correct Alertmanager tenancy proxy [#12036](https://github.com/openshift/console/pull/12036) * [OCPBUGS-1455](https://issues.redhat.com/browse/OCPBUGS-1455): show Limit exceeded state for large number of nodes in topology [#12060](https://github.com/openshift/console/pull/12060) * [Bug 2112999](https://bugzilla.redhat.com/show_bug.cgi?id=2112999): Replace sum_irate with sum_rate for Deployments CPU graph [#11917](https://github.com/openshift/console/pull/11917) * [OCPBUGS-604](https://issues.redhat.com/browse/OCPBUGS-604): Backport CI test fix to previous releases [#11990](https://github.com/openshift/console/pull/11990) * [Bug 2088756](https://bugzilla.redhat.com/show_bug.cgi?id=2088756): Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls [#11539](https://github.com/openshift/console/pull/11539) * [Bug 2092767](https://bugzilla.redhat.com/show_bug.cgi?id=2092767): Set dashboards timeout based on selected timespan [#11628](https://github.com/openshift/console/pull/11628) * [Bug 2089725](https://bugzilla.redhat.com/show_bug.cgi?id=2089725): Eliminate use of lookaside cache and move to Cachito [#11573](https://github.com/openshift/console/pull/11573) * [Bug 2079436](https://bugzilla.redhat.com/show_bug.cgi?id=2079436): Pipeline metrics: use prometheus-tenancy API to get data [#11409](https://github.com/openshift/console/pull/11409) * [Bug 2066365](https://bugzilla.redhat.com/show_bug.cgi?id=2066365): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11271](https://github.com/openshift/console/pull/11271) * [Bug 2060450](https://bugzilla.redhat.com/show_bug.cgi?id=2060450): Fix that the preferred namespace was not selected when it contains just numbers [#11134](https://github.com/openshift/console/pull/11134) * [Bug 2055132](https://bugzilla.redhat.com/show_bug.cgi?id=2055132): Fix TypeError when application has HelmRelease [#11069](https://github.com/openshift/console/pull/11069) * [Bug 2060616](https://bugzilla.redhat.com/show_bug.cgi?id=2060616): Add error boundary in edit-flows [#11137](https://github.com/openshift/console/pull/11137) * [Bug 2061266](https://bugzilla.redhat.com/show_bug.cgi?id=2061266): Update e2e test to use 3scale operator to increase test stability [#11141](https://github.com/openshift/console/pull/11141) * [Bug 2046215](https://bugzilla.redhat.com/show_bug.cgi?id=2046215): Filter superseded helm secrets and fix firehose to support partial metadata [#10936](https://github.com/openshift/console/pull/10936) * [Bug 2045592](https://bugzilla.redhat.com/show_bug.cgi?id=2045592): Check if name label exists before comparing [#10929](https://github.com/openshift/console/pull/10929) * [Bug 2048900](https://bugzilla.redhat.com/show_bug.cgi?id=2048900): Fix knative function label cherry pick [#10987](https://github.com/openshift/console/pull/10987) * [Bug 2045051](https://bugzilla.redhat.com/show_bug.cgi?id=2045051): Add subject name selector field to SinkBinding form [#10925](https://github.com/openshift/console/pull/10925) * [Bug 2046051](https://bugzilla.redhat.com/show_bug.cgi?id=2046051): Add support for fetching partial metadata and fix helm list page crash [#10932](https://github.com/openshift/console/pull/10932) * [Bug 2004086](https://bugzilla.redhat.com/show_bug.cgi?id=2004086): Add name field in edit deployment form [#10873](https://github.com/openshift/console/pull/10873) * [Bug 2046043](https://bugzilla.redhat.com/show_bug.cgi?id=2046043): Topology performance: Do not fetch HPA for each Deployment (Pod Ring) [#10931](https://github.com/openshift/console/pull/10931) * [Bug 2008141](https://bugzilla.redhat.com/show_bug.cgi?id=2008141): Allow web terminal to be installed in any namespace [#10134](https://github.com/openshift/console/pull/10134) * [Bug 2019301](https://bugzilla.redhat.com/show_bug.cgi?id=2019301): Check for resource in ServiceBinding spec's service reference [#10376](https://github.com/openshift/console/pull/10376) * [Bug 2018064](https://bugzilla.redhat.com/show_bug.cgi?id=2018064): fix dev-catalog stuck in loading state [#10346](https://github.com/openshift/console/pull/10346) * [Bug 2044571](https://bugzilla.redhat.com/show_bug.cgi?id=2044571): Update CRW operator name to fix failing e2e tests [#10918](https://github.com/openshift/console/pull/10918) * [Bug 2036045](https://bugzilla.redhat.com/show_bug.cgi?id=2036045): fix resource limit form validation [#10788](https://github.com/openshift/console/pull/10788) * [Bug 2034640](https://bugzilla.redhat.com/show_bug.cgi?id=2034640): cant delete VM with un-owned pvc attached [#10718](https://github.com/openshift/console/pull/10718) * [Bug 2030443](https://bugzilla.redhat.com/show_bug.cgi?id=2030443): Fix ClusterOperators link [#10638](https://github.com/openshift/console/pull/10638) * [Bug 2024206](https://bugzilla.redhat.com/show_bug.cgi?id=2024206): Fix resource metrics 403 errors for project admin users [#10496](https://github.com/openshift/console/pull/10496) * [Bug 2026950](https://bugzilla.redhat.com/show_bug.cgi?id=2026950): Fix autofocus on pf select component for search resource dropdown [#10577](https://github.com/openshift/console/pull/10577) * [Bug 2017469](https://bugzilla.redhat.com/show_bug.cgi?id=2017469): key not a valid prop name causing display issue in env editor [#10419](https://github.com/openshift/console/pull/10419) * [Bug 2009224](https://bugzilla.redhat.com/show_bug.cgi?id=2009224): Regular user cannot restore VM snapshot [#10436](https://github.com/openshift/console/pull/10436) * [Bug 2020162](https://bugzilla.redhat.com/show_bug.cgi?id=2020162): PVC is deleted along with VM even with "Delete Disks" unchecked [#10399](https://github.com/openshift/console/pull/10399) * [Bug 2017326](https://bugzilla.redhat.com/show_bug.cgi?id=2017326): Update PatternFly/react-console [#10384](https://github.com/openshift/console/pull/10384) * [Bug 1984102](https://bugzilla.redhat.com/show_bug.cgi?id=1984102): Switch Cypress OLM tests to use supported Red Hat operators [#9560](https://github.com/openshift/console/pull/9560) * [Bug 2005871](https://bugzilla.redhat.com/show_bug.cgi?id=2005871): Cannot create Network Attachment Definition through UI [#10314](https://github.com/openshift/console/pull/10314) * [Bug 1997901](https://bugzilla.redhat.com/show_bug.cgi?id=1997901): Cannot delete user created vm template [#10367](https://github.com/openshift/console/pull/10367) * [Bug 2001212](https://bugzilla.redhat.com/show_bug.cgi?id=2001212): Notifications is not translated on the top right bar [#10040](https://github.com/openshift/console/pull/10040) * [Bug 2002649](https://bugzilla.redhat.com/show_bug.cgi?id=2002649): Fix SerialConsole display bug [#10034](https://github.com/openshift/console/pull/10034) * [Bug 1994983](https://bugzilla.redhat.com/show_bug.cgi?id=1994983): use strict promoted template list [#9824](https://github.com/openshift/console/pull/9824) * [Bug 1977659](https://bugzilla.redhat.com/show_bug.cgi?id=1977659): Adjusting to new reference models changes - cherry-picked rls 4.8 [#9379](https://github.com/openshift/console/pull/9379) * [Bug 2013091](https://bugzilla.redhat.com/show_bug.cgi?id=2013091): adds check for status in ksvc in util logic [#10211](https://github.com/openshift/console/pull/10211) * [Bug 1998692](https://bugzilla.redhat.com/show_bug.cgi?id=1998692): Normal user cannot create VM because it cannot access v2v-vmware [#10171](https://github.com/openshift/console/pull/10171) * (4.8 Backport) Bug 1981416: Change OCM links from cloud. to console.redhat.com [#9470](https://github.com/openshift/console/pull/9470) * [Bug 2010076](https://bugzilla.redhat.com/show_bug.cgi?id=2010076): Update prow setup v4.8 [#10168](https://github.com/openshift/console/pull/10168) * [Bug 1999717](https://bugzilla.redhat.com/show_bug.cgi?id=1999717): Block and File and Object dashboards should not be part of OCP Console for ODF Managed Services [#9952](https://github.com/openshift/console/pull/9952) * [Bug 2005917](https://bugzilla.redhat.com/show_bug.cgi?id=2005917): CONSOLE-2152: Improve upgrade messaging when ClusterVersion Upgradeable=False [#10103](https://github.com/openshift/console/pull/10103) * [Bug 1993236](https://bugzilla.redhat.com/show_bug.cgi?id=1993236): Do not drop environment variables without name but with a value, also fix crash when ref is empty [#9799](https://github.com/openshift/console/pull/9799) * [Bug 2000474](https://bugzilla.redhat.com/show_bug.cgi?id=2000474): Create BuildConfig webhook secrets before creating knative resources [#9970](https://github.com/openshift/console/pull/9970) * [Bug 1996758](https://bugzilla.redhat.com/show_bug.cgi?id=1996758): Update Resource Dropdown Tech preview text [Release-4.8] [#9838](https://github.com/openshift/console/pull/9838) * [Bug 1990141](https://bugzilla.redhat.com/show_bug.cgi?id=1990141): Console overview operators shown upgrading when still waiting on approval [#9732](https://github.com/openshift/console/pull/9732) * [Bug 1995118](https://bugzilla.redhat.com/show_bug.cgi?id=1995118): Virtualization is not available in Home Overview [#9826](https://github.com/openshift/console/pull/9826) * [Full changelog](https://github.com/openshift/console/compare/9912e57e57ee5f26b20f02d81b359caca0777f6c...e18c26bf18f96d87e880c160c4f954eb82f4d1e1) ### [console-operator](https://github.com/openshift/console-operator/tree/2bee8bd9b1c9ad46015f4e0ff13b6b5ce09fd2b6) * [Bug 2071200](https://bugzilla.redhat.com/show_bug.cgi?id=2071200): Fix setting of custom cert for default route [#643](https://github.com/openshift/console-operator/pull/643) * [Bug 2008141](https://bugzilla.redhat.com/show_bug.cgi?id=2008141): Change web terminal subscription permissions from get to list [#595](https://github.com/openshift/console-operator/pull/595) * [Bug 2041359](https://bugzilla.redhat.com/show_bug.cgi?id=2041359): Bump build-machinery-go for console-operator to pickup change in yaml-patch repository [#627](https://github.com/openshift/console-operator/pull/627) * [Bug 2018391](https://bugzilla.redhat.com/show_bug.cgi?id=2018391): Remove SimpleHTTP 'server' response header value [#606](https://github.com/openshift/console-operator/pull/606) * [Bug 1987315](https://bugzilla.redhat.com/show_bug.cgi?id=1987315): Bump openshift/api to add missing 'include.release.openshift.io/single-node-developer' annotation to the ConsolePlugin CRD [#591](https://github.com/openshift/console-operator/pull/591) * [Bug 2003639](https://bugzilla.redhat.com/show_bug.cgi?id=2003639): Use kubernetes.io/hostname for workload anti-affi… …nity [#589](https://github.com/openshift/console-operator/pull/589) * [Bug 2001268](https://bugzilla.redhat.com/show_bug.cgi?id=2001268): console-operator should report Available=true when at least available replica exists [#583](https://github.com/openshift/console-operator/pull/583) * [Full changelog](https://github.com/openshift/console-operator/compare/696f4645f37ded0426b04adcc1ac5ed4d79053c0...2bee8bd9b1c9ad46015f4e0ff13b6b5ce09fd2b6) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/f6ffb0d7c2935db9d349f8dc1c51d9ea1b0df5ce) * [Bug 2002554](https://bugzilla.redhat.com/show_bug.cgi?id=2002554): Do not degrade cluster on failure to reach Manila [#125](https://github.com/openshift/csi-driver-manila-operator/pull/125) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/ede205af30f795c43c67847f495efb800541273d...f6ffb0d7c2935db9d349f8dc1c51d9ea1b0df5ce) ### [docker-builder](https://github.com/openshift/builder/tree/dc2c0061e5db06d96bac966bdfe2603fe7bbfa06) * [Bug 2053122](https://bugzilla.redhat.com/show_bug.cgi?id=2053122): [release-4.8] getAssembleUser(): strip the group part out before checking the UID [#289](https://github.com/openshift/builder/pull/289) * Update OWNERS file [#290](https://github.com/openshift/builder/pull/290) * [Full changelog](https://github.com/openshift/builder/compare/b59f2b3a9f1571b78f8337211b80a49a6da91269...dc2c0061e5db06d96bac966bdfe2603fe7bbfa06) ### [docker-registry](https://github.com/openshift/image-registry/tree/bc68848bf1e6fe91378510a0b0ef30cfcb6ec39e) * [Bug 2042678](https://bugzilla.redhat.com/show_bug.cgi?id=2042678): Fix auth for docker.io images [#306](https://github.com/openshift/image-registry/pull/306) * [Bug 2053223](https://bugzilla.redhat.com/show_bug.cgi?id=2053223): Fix pull-through for images that have dots in their namespace [#310](https://github.com/openshift/image-registry/pull/310) * [Bug 2012163](https://bugzilla.redhat.com/show_bug.cgi?id=2012163): Supporting mirror authentication during pull through [#297](https://github.com/openshift/image-registry/pull/297) * [Full changelog](https://github.com/openshift/image-registry/compare/55dda00416ba705c5ac34ad82c2cf62e128b4b48...bc68848bf1e6fe91378510a0b0ef30cfcb6ec39e) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/076a9209048c7d478f59084409c2dca5e3a6f2d8) * [Bug 2031938](https://bugzilla.redhat.com/show_bug.cgi?id=2031938): Add e2e test to 4.9 branch [#72](https://github.com/openshift/driver-toolkit/pull/72) * [Bug 2011460](https://bugzilla.redhat.com/show_bug.cgi?id=2011460): Add imagestream for driver-toolkit [#65](https://github.com/openshift/driver-toolkit/pull/65) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/72e1f298e1ad32747e0edb3491ea90c8906855f5...076a9209048c7d478f59084409c2dca5e3a6f2d8) ### [etcd](https://github.com/openshift/etcd/tree/fb7a80809bde854e6eb56c4b43bc0369fcbacf00) * [OCPBUGS-1023](https://issues.redhat.com/browse/OCPBUGS-1023): Rebase openshift/etcd 4.8 onto 3.4.21 [#150](https://github.com/openshift/etcd/pull/150) * Update OWNERS [#125](https://github.com/openshift/etcd/pull/125) * [Full changelog](https://github.com/openshift/etcd/compare/aefa6bf59b381938b50ab9ba4a7add9b4a767e27...fb7a80809bde854e6eb56c4b43bc0369fcbacf00) ### [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver/tree/3978a2100d6ff938db2a0cf8d962ce9dce0c6e4c) * [Bug 2052955](https://bugzilla.redhat.com/show_bug.cgi?id=2052955): Disable uuid checks on XFS [#23](https://github.com/openshift/gcp-pd-csi-driver/pull/23) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver/compare/0b618896c6b7c977f96d133060c54ed1b6c87540...3978a2100d6ff938db2a0cf8d962ce9dce0c6e4c) ### [grafana](https://github.com/openshift/grafana/tree/f98b47f33d7113c4f88d55640eac4ef2dcc1e68a) * [OCPBUGS-644](https://issues.redhat.com/browse/OCPBUGS-644): bump Grafana to 7.5.11 [#89](https://github.com/openshift/grafana/pull/89) * [Full changelog](https://github.com/openshift/grafana/compare/b987e4b1e20b6cf814bbc408dd2a740aed92e410...f98b47f33d7113c4f88d55640eac4ef2dcc1e68a) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/5cc9227e4695d1cca2a838420cc69f2d6db25eca) * [OCPBUGS-1461](https://issues.redhat.com/browse/OCPBUGS-1461): UPSTREAM: 109103: cpu/memory manager containerMap memory leak [#1371](https://github.com/openshift/kubernetes/pull/1371) * [Bug 2083557](https://bugzilla.redhat.com/show_bug.cgi?id=2083557): UPSTREAM: 109935: fix: exclude non-ready nodes and deleted nodes from azure load balancers [#1257](https://github.com/openshift/kubernetes/pull/1257) * [Bug 2105664](https://bugzilla.redhat.com/show_bug.cgi?id=2105664): UPSTREAM: <carry>: update list of deprecated apis [#1317](https://github.com/openshift/kubernetes/pull/1317) * [release 4.8] Bug Bug 2106970: UPSTREAM: <carry>: use correct base image for testing [#1323](https://github.com/openshift/kubernetes/pull/1323) * [Bug 2077004](https://bugzilla.redhat.com/show_bug.cgi?id=2077004): Rebase 1.21.11 [#1246](https://github.com/openshift/kubernetes/pull/1246) * [Bug 2063953](https://bugzilla.redhat.com/show_bug.cgi?id=2063953): UPSTREAM: <carry>: use hardcoded rest mapper from library-go [#1245](https://github.com/openshift/kubernetes/pull/1245) * [Bug 2075043](https://bugzilla.redhat.com/show_bug.cgi?id=2075043): golang toolchain unsupported parsers tag [#1240](https://github.com/openshift/kubernetes/pull/1240) * [Bug 2043808](https://bugzilla.redhat.com/show_bug.cgi?id=2043808): IPs with leading zeros are still valid in the apiserver [#1173](https://github.com/openshift/kubernetes/pull/1173) * [Bug 2060494](https://bugzilla.redhat.com/show_bug.cgi?id=2060494): Backports inotify leak fix into kubelet [#1203](https://github.com/openshift/kubernetes/pull/1203) * [Bug 2024642](https://bugzilla.redhat.com/show_bug.cgi?id=2024642): Rebase v1.21.8 [#1102](https://github.com/openshift/kubernetes/pull/1102) * [Bug 2050131](https://bugzilla.redhat.com/show_bug.cgi?id=2050131): UPSTREAM: <carry>: set correctly static pods CPUs when workload partitioning is disabled [#1168](https://github.com/openshift/kubernetes/pull/1168) * [Bug 2039377](https://bugzilla.redhat.com/show_bug.cgi?id=2039377): UPSTREAM: 89885: SQUASH: Retry fetching clouds.conf [#1108](https://github.com/openshift/kubernetes/pull/1108) * [Bug 2029466](https://bugzilla.redhat.com/show_bug.cgi?id=2029466): UPSTREAM: 107014: Mark volume as uncertain after Unmount* fails [#1146](https://github.com/openshift/kubernetes/pull/1146) * [Bug 2024995](https://bugzilla.redhat.com/show_bug.cgi?id=2024995): Fix subpath source check [#1067](https://github.com/openshift/kubernetes/pull/1067) * [Bug 2032325](https://bugzilla.redhat.com/show_bug.cgi?id=2032325): UPSTREAM: <carry>: api request counts for current hour are incorrect [#1092](https://github.com/openshift/kubernetes/pull/1092) * [Bug 2022741](https://bugzilla.redhat.com/show_bug.cgi?id=2022741): UPSTREAM: 106260: Don't guess SELinux support on error [#1054](https://github.com/openshift/kubernetes/pull/1054) * [Bug 2021997](https://bugzilla.redhat.com/show_bug.cgi?id=2021997): Read k8s version from hyperkube Dockerfile [#1045](https://github.com/openshift/kubernetes/pull/1045) * Updating openshift-enterprise-hyperkube builder & base images to be consistent with ART [#559](https://github.com/openshift/kubernetes/pull/559) * [Bug 2017027](https://bugzilla.redhat.com/show_bug.cgi?id=2017027): UPSTREAM: <drop>: bump apiserver-library-go [#1069](https://github.com/openshift/kubernetes/pull/1069) * [Bug 2022265](https://bugzilla.redhat.com/show_bug.cgi?id=2022265): Rebase v1.21.6 [#1060](https://github.com/openshift/kubernetes/pull/1060) * Updating openshift-enterprise-pod images to be consistent with ART [#680](https://github.com/openshift/kubernetes/pull/680) * [Bug 2020644](https://bugzilla.redhat.com/show_bug.cgi?id=2020644): Image policy should mutate DeploymentConfigs, StatefulSets, and new CronJobs [#1050](https://github.com/openshift/kubernetes/pull/1050) * [Bug 1994655](https://bugzilla.redhat.com/show_bug.cgi?id=1994655): openshift-apiserver should not set Available=False APIServicesAvailable on update [#955](https://github.com/openshift/kubernetes/pull/955) * [Bug 2008403](https://bugzilla.redhat.com/show_bug.cgi?id=2008403): Rebase v1.21.5 [#981](https://github.com/openshift/kubernetes/pull/981) * [Bug 2011460](https://bugzilla.redhat.com/show_bug.cgi?id=2011460): UPSTREAM: <carry>: openshift-hack/images/os/Dockerfile: Add io.openshift.build.versions, etc. [#1005](https://github.com/openshift/kubernetes/pull/1005) * [Bug 1995714](https://bugzilla.redhat.com/show_bug.cgi?id=1995714): UPSTREAM: <carry>: admission/managementcpusoverride: cover the roll-back case [#895](https://github.com/openshift/kubernetes/pull/895) * [Bug 1994457](https://bugzilla.redhat.com/show_bug.cgi?id=1994457): Update to kubernetes 1.21.4 [#888](https://github.com/openshift/kubernetes/pull/888) * [Bug 1993754](https://bugzilla.redhat.com/show_bug.cgi?id=1993754): UPSTREAM: 104347: Pass additional flags to subpath mount to avoid fla… [#940](https://github.com/openshift/kubernetes/pull/940) * [Bug 1998391](https://bugzilla.redhat.com/show_bug.cgi?id=1998391): UPSTREAM: 104530: [1.21] bump runc to 1.0.2 [#912](https://github.com/openshift/kubernetes/pull/912) * [Full changelog](https://github.com/openshift/kubernetes/compare/98073871f173baaa04dc2bafab50effd62c308a6...5cc9227e4695d1cca2a838420cc69f2d6db25eca) ### [insights-operator](https://github.com/openshift/insights-operator/tree/53425de1f7fbd79fd785f4260f40def8a6eec7b9) * TBD: Gather status of the cephclusters.ceph.rook.io resources (#659) (#665) (#668) [#659](https://github.com/openshift/insights-operator/pull/659) * [Bug 2077765](https://bugzilla.redhat.com/show_bug.cgi?id=2077765): Gather namespace names with overlapping UIDs (#605) (#611) (#612) [#605](https://github.com/openshift/insights-operator/pull/605) * [Bug 2033546](https://bugzilla.redhat.com/show_bug.cgi?id=2033546): Gather all CostManagementMericsConfig definitions. (#525) (#569) [#525](https://github.com/openshift/insights-operator/pull/525) * Update OWNERS (#543) [#543](https://github.com/openshift/insights-operator/pull/543) * [Bug 2027720](https://bugzilla.redhat.com/show_bug.cgi?id=2027720): gather webhook configurations (#508) (#560) [#508](https://github.com/openshift/insights-operator/pull/508) * [Bug 2026646](https://bugzilla.redhat.com/show_bug.cgi?id=2026646): Gather all the container logs from related namespaces of degraded clusteroperator (#516) (#554) [#516](https://github.com/openshift/insights-operator/pull/516) * [Bug 2021572](https://bugzilla.redhat.com/show_bug.cgi?id=2021572): Anonymize identity provider attributes in the (#520) (#527) (#541) [#520](https://github.com/openshift/insights-operator/pull/520) * [Bug 2020601](https://bugzilla.redhat.com/show_bug.cgi?id=2020601): Anonymize the ImageRegistry storage information also in status (#536) [#536](https://github.com/openshift/insights-operator/pull/536) * obfuscation ovn clusters bug (#523) [#523](https://github.com/openshift/insights-operator/pull/523) * Bug TBD: Gather installed PSP names (#489) (#490) [#489](https://github.com/openshift/insights-operator/pull/489) * [Full changelog](https://github.com/openshift/insights-operator/compare/e18f71539b9755a9de31875e6cc029c9452e8d49...53425de1f7fbd79fd785f4260f40def8a6eec7b9) ### [ironic](https://github.com/openshift/ironic-image/tree/4ed2e4b56c1eb82573b859b0499bb5141113bad0) * [OCP 4.8] Update OWNERS [#279](https://github.com/openshift/ironic-image/pull/279) * [Bug 2088196](https://bugzilla.redhat.com/show_bug.cgi?id=2088196): Backport weak eTag handling fix to OpenShift 4.8 [#276](https://github.com/openshift/ironic-image/pull/276) * [Bug 2048672](https://bugzilla.redhat.com/show_bug.cgi?id=2048672): Enable vMedia provisioning of Nokia servers [#275](https://github.com/openshift/ironic-image/pull/275) * [Bug 2023765](https://bugzilla.redhat.com/show_bug.cgi?id=2023765): Compare IPs using the short form of IPv6 address [#233](https://github.com/openshift/ironic-image/pull/233) * [Bug 2017413](https://bugzilla.redhat.com/show_bug.cgi?id=2017413): [4.8] fix Image provisioning fails with file name too long [#229](https://github.com/openshift/ironic-image/pull/229) * [Bug 2025755](https://bugzilla.redhat.com/show_bug.cgi?id=2025755): Enable vMedia provisioning of SuperMicro X11/X12 [#237](https://github.com/openshift/ironic-image/pull/237) * [Bug 2003035](https://bugzilla.redhat.com/show_bug.cgi?id=2003035): Sync sushy to include the latest bugfixes for 4.8 [#214](https://github.com/openshift/ironic-image/pull/214) * [Bug 1991979](https://bugzilla.redhat.com/show_bug.cgi?id=1991979): [4.8] Sync image with ironic [#206](https://github.com/openshift/ironic-image/pull/206) * [Full changelog](https://github.com/openshift/ironic-image/compare/3c80823993f1d9e5d8cae95b309a9f485f69f6fb...4ed2e4b56c1eb82573b859b0499bb5141113bad0) ### [ironic-hardware-inventory-recorder](https://github.com/openshift/ironic-hardware-inventory-recorder-image/tree/b3ecae8d1c6cd84a8784cf3dd17532797af7b724) * Updating ironic-hardware-inventory-recorder-image builder & base images to be consistent with ART [#504](https://github.com/openshift/ironic-hardware-inventory-recorder-image/pull/504) * [Full changelog](https://github.com/openshift/ironic-hardware-inventory-recorder-image/compare/61c4cc7dc99601fe32b239be8923a6ed693908b0...b3ecae8d1c6cd84a8784cf3dd17532797af7b724) ### [ironic-inspector](https://github.com/openshift/ironic-inspector-image/tree/08761ed526b7817de7c92e0d621698404fca7a05) * [Bug 2023765](https://bugzilla.redhat.com/show_bug.cgi?id=2023765): For inspector, compare IPs using the short form of IPv6 address [#71](https://github.com/openshift/ironic-inspector-image/pull/71) * [Full changelog](https://github.com/openshift/ironic-inspector-image/compare/9aafd074adf6dbc7ee7c2c3150568578e82acc3f...08761ed526b7817de7c92e0d621698404fca7a05) ### [ironic-ipa-downloader](https://github.com/openshift/ironic-ipa-downloader/tree/aa13ca35ba38f2ceadb5e98ddc9e8ad0b875bb96) * [Bug 2100787](https://bugzilla.redhat.com/show_bug.cgi?id=2100787): Include Fix discovering WWN/serial for devicemapper devices [#94](https://github.com/openshift/ironic-ipa-downloader/pull/94) * [Bug 2070519](https://bugzilla.redhat.com/show_bug.cgi?id=2070519): Multipath fix for passive paths [#91](https://github.com/openshift/ironic-ipa-downloader/pull/91) * [OCP 4.8] Update OWNERS [#90](https://github.com/openshift/ironic-ipa-downloader/pull/90) * [Full changelog](https://github.com/openshift/ironic-ipa-downloader/compare/ba8783261ea8f21afdcd46eb8a86986597c38c75...aa13ca35ba38f2ceadb5e98ddc9e8ad0b875bb96) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/dceaf1333634a4aea3f211849e81a6247160122b) * [Bug 2005805](https://bugzilla.redhat.com/show_bug.cgi?id=2005805): Clear proxy env variables if go would have [#72](https://github.com/openshift/ironic-rhcos-downloader/pull/72) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/71967e7deca9e9d0e094cbaedb7fe7ce0267dd84...dceaf1333634a4aea3f211849e81a6247160122b) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/30a7db8e57ab27aa61b6e56c46793dba682a12e4) * [OCPBUGS-3760](https://issues.redhat.com/browse/OCPBUGS-3760): [release-4.8] Update OWNERS [#1524](https://github.com/openshift/jenkins/pull/1524) * [Bug 2076251](https://bugzilla.redhat.com/show_bug.cgi?id=2076251): Mitigate multiple CVEs [#1435](https://github.com/openshift/jenkins/pull/1435) * [Bug 2078477](https://bugzilla.redhat.com/show_bug.cgi?id=2078477): set necessary JVM args to allow jenkins JVM to come up on a FIPS node [#1439](https://github.com/openshift/jenkins/pull/1439) * [Bug 2058750](https://bugzilla.redhat.com/show_bug.cgi?id=2058750): [release-4.8] 2022-02-15 Security Advisory [#1408](https://github.com/openshift/jenkins/pull/1408) * [Bug 2055911](https://bugzilla.redhat.com/show_bug.cgi?id=2055911): bump openshift-sync to 1.0.53 [#1392](https://github.com/openshift/jenkins/pull/1392) * [Bug 2044940](https://bugzilla.redhat.com/show_bug.cgi?id=2044940): Jenkins Fixes for CVE-2022-20617 and CVE-2022-20612 [#1370](https://github.com/openshift/jenkins/pull/1370) * [Bug 2038960](https://bugzilla.redhat.com/show_bug.cgi?id=2038960): bump sync plugin to 1.0.52 [#1362](https://github.com/openshift/jenkins/pull/1362) * [Bug 2037348](https://bugzilla.redhat.com/show_bug.cgi?id=2037348): Update openshift-sync-plugin to 1.0.51 and various dependant plugins [#1360](https://github.com/openshift/jenkins/pull/1360) * [Bug 2020614](https://bugzilla.redhat.com/show_bug.cgi?id=2020614): Update Jenkins and plugins per 2021-11 advisory [#1347](https://github.com/openshift/jenkins/pull/1347) * [Bug 2008114](https://bugzilla.redhat.com/show_bug.cgi?id=2008114): Upgrade Jenkins to 2.289.3 (and related fixes) [#1324](https://github.com/openshift/jenkins/pull/1324) * [Full changelog](https://github.com/openshift/jenkins/compare/8f554e2ad7ab8636cdbf55b5d0bde4577a5c0af6...30a7db8e57ab27aa61b6e56c46793dba682a12e4) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/bfffea3bf70fc5203814886f6483a569f2f22c87) * [Bug 2002281](https://bugzilla.redhat.com/show_bug.cgi?id=2002281): 4.8: pkg/resourceprovider: guard from negative metrics [#55](https://github.com/openshift/k8s-prometheus-adapter/pull/55) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/2856bc27f7319c069c02cbc5210852c34ef6e4ef...bfffea3bf70fc5203814886f6483a569f2f22c87) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/e008bf99ceabce30eb28bb0b0db7c31bb40da4c0) * [OCPBUGS-2205](https://issues.redhat.com/browse/OCPBUGS-2205): Fix DNS endpoint hack to prefer local instead of forcing it [#469](https://github.com/openshift/sdn/pull/469) * [Bug 2063971](https://bugzilla.redhat.com/show_bug.cgi?id=2063971): delete stale UDP conntrack entries for loadbalancer IPs [#414](https://github.com/openshift/sdn/pull/414) * [Bug 2092166](https://bugzilla.redhat.com/show_bug.cgi?id=2092166): Masquerade in cluster traffic that is marked for egress IP [#435](https://github.com/openshift/sdn/pull/435) * Remove some binaries that accidentally got committed [#398](https://github.com/openshift/sdn/pull/398) * [Bug 2027397](https://bugzilla.redhat.com/show_bug.cgi?id=2027397): [EgressIP] move ct(commit) action from OVS group to flow [#377](https://github.com/openshift/sdn/pull/377) * [Bug 2014166](https://bugzilla.redhat.com/show_bug.cgi?id=2014166): Remove locking from EgressIPTracker.Ping [#362](https://github.com/openshift/sdn/pull/362) * [Bug 2002290](https://bugzilla.redhat.com/show_bug.cgi?id=2002290): [4.8] proxy: don't re-check every userspace proxy rule on every change [#347](https://github.com/openshift/sdn/pull/347) * [Bug 1987239](https://bugzilla.redhat.com/show_bug.cgi?id=1987239): when assigning and releasing egressIP try more than once before failing [#326](https://github.com/openshift/sdn/pull/326) * [Full changelog](https://github.com/openshift/sdn/compare/87ac855c0eb25482abecc784b94031b1ddcaab4e...e008bf99ceabce30eb28bb0b0db7c31bb40da4c0) ### [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator/tree/38e0105c9fc5367a2e0bd22446b10a1f65fcb416) * Updating ose-kube-storage-version-migrator images to be consistent with ART [#174](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/174) * [Full changelog](https://github.com/openshift/kubernetes-kube-storage-version-migrator/compare/901a6d221d1cf79b4b6ba859bb43521e0ee635b3...38e0105c9fc5367a2e0bd22446b10a1f65fcb416) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/ddd2c3adeac4d31711a7949c347f444ee4fdce6d) * [Bug 2037745](https://bugzilla.redhat.com/show_bug.cgi?id=2037745): Improve retrieval of Trunks info [#621](https://github.com/openshift/kuryr-kubernetes/pull/621) * [Bug 2028307](https://bugzilla.redhat.com/show_bug.cgi?id=2028307): [4.8] Do not restart Kuryr-Controller when LB is stuck in PENDING_UPDATE state or Neutron port is DOWN [#607](https://github.com/openshift/kuryr-kubernetes/pull/607) * [Bug 2028274](https://bugzilla.redhat.com/show_bug.cgi?id=2028274): Ensure DOWN subports are cleaned up [#606](https://github.com/openshift/kuryr-kubernetes/pull/606) * [Bug 2022722](https://bugzilla.redhat.com/show_bug.cgi?id=2022722): Make completed Pods Ports reusable [#600](https://github.com/openshift/kuryr-kubernetes/pull/600) * [Bug 2018232](https://bugzilla.redhat.com/show_bug.cgi?id=2018232): Update TOX_CONSTRAINTS_FILE for stable/xena [#587](https://github.com/openshift/kuryr-kubernetes/pull/587) * [Bug 1995013](https://bugzilla.redhat.com/show_bug.cgi?id=1995013): Remove ep_slices from klb on endpoint delete event [#550](https://github.com/openshift/kuryr-kubernetes/pull/550) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/e6496908a18096b7c5f1b3cd69bbf577e3e79142...ddd2c3adeac4d31711a7949c347f444ee4fdce6d) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/edc3e864006486a7a85e2e5e4297e307339e9f0e) * [Bug 2048496](https://bugzilla.redhat.com/show_bug.cgi?id=2048496): Fix user-agent in vCenter sessions list [#984](https://github.com/openshift/machine-api-operator/pull/984) * [Bug 2027896](https://bugzilla.redhat.com/show_bug.cgi?id=2027896): [release-4.8] Add support for Azure Marketplace Images [#970](https://github.com/openshift/machine-api-operator/pull/970) * [Bug 2026562](https://bugzilla.redhat.com/show_bug.cgi?id=2026562): MaxUnhealthy should not be a string type [#962](https://github.com/openshift/machine-api-operator/pull/962) * [Bug 2022838](https://bugzilla.redhat.com/show_bug.cgi?id=2022838): GCP CI runs are complaining about APIs not being enabled [#953](https://github.com/openshift/machine-api-operator/pull/953) * [Bug 1999585](https://bugzilla.redhat.com/show_bug.cgi?id=1999585): [release-4.8] add alert for machine with long deletion phase [#908](https://github.com/openshift/machine-api-operator/pull/908) * [Bug 2000038](https://bugzilla.redhat.com/show_bug.cgi?id=2000038): Respect MaxUnhealthy limit for external remediation [#910](https://github.com/openshift/machine-api-operator/pull/910) * [Bug 1993117](https://bugzilla.redhat.com/show_bug.cgi?id=1993117): Make sure nodes don't have attached volumes before vm deletion [#903](https://github.com/openshift/machine-api-operator/pull/903) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/a6349c0280cc04fbbe8aa8d1d134e7f8b4926059...edc3e864006486a7a85e2e5e4297e307339e9f0e) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/d78f3bf23498ce7119fc712f124136a7482fa773) * [Bug 2089971](https://bugzilla.redhat.com/show_bug.cgi?id=2089971): lib/resourcemerge: handle container env var deletions [#3161](https://github.com/openshift/machine-config-operator/pull/3161) * [Bug 2109329](https://bugzilla.redhat.com/show_bug.cgi?id=2109329): Avoid kubernetes node port range [#3316](https://github.com/openshift/machine-config-operator/pull/3316) * [Bug 2094765](https://bugzilla.redhat.com/show_bug.cgi?id=2094765): configure-ovs: avoid restarting NetworkManager [#3180](https://github.com/openshift/machine-config-operator/pull/3180) * [Bug 2108699](https://bugzilla.redhat.com/show_bug.cgi?id=2108699): storage.conf: remove obsolete option override_kernel_check [#3259](https://github.com/openshift/machine-config-operator/pull/3259) * [Bug 2098274](https://bugzilla.redhat.com/show_bug.cgi?id=2098274): Add KUBELET_NODEIP_HINT to nodeip-configuration [#3192](https://github.com/openshift/machine-config-operator/pull/3192) * [Bug 2078799](https://bugzilla.redhat.com/show_bug.cgi?id=2078799): configure-ovs: move dhcp config from br-ex to ovs-if-br-ex [#3117](https://github.com/openshift/machine-config-operator/pull/3117) * [Bug 2057544](https://bugzilla.redhat.com/show_bug.cgi?id=2057544): daemon: Explicitly start rpm-ostreed, restart if we detect active txn [#2967](https://github.com/openshift/machine-config-operator/pull/2967) * [Bug 2062655](https://bugzilla.redhat.com/show_bug.cgi?id=2062655): Fix bad cherry-pick at 9f7a7eb96 [#3065](https://github.com/openshift/machine-config-operator/pull/3065) * [Bug 2062655](https://bugzilla.redhat.com/show_bug.cgi?id=2062655): Improvements for configure-ovs script [#3004](https://github.com/openshift/machine-config-operator/pull/3004) * [Bug 2025396](https://bugzilla.redhat.com/show_bug.cgi?id=2025396): annotate rendered config with OCP version [#2972](https://github.com/openshift/machine-config-operator/pull/2972) * [Bug 2059330](https://bugzilla.redhat.com/show_bug.cgi?id=2059330): ovs-configuration: use lower than NM default ethernet route metric [#2974](https://github.com/openshift/machine-config-operator/pull/2974) * [Bug 2058789](https://bugzilla.redhat.com/show_bug.cgi?id=2058789): Prepend to search domains instead of replacing [#2970](https://github.com/openshift/machine-config-operator/pull/2970) * [Bug 2028854](https://bugzilla.redhat.com/show_bug.cgi?id=2028854): Backport of SystemMemoryExceedsReservation alert rule [#2956](https://github.com/openshift/machine-config-operator/pull/2956) * [Bug 2032996](https://bugzilla.redhat.com/show_bug.cgi?id=2032996): fixes 1 to 1 containerruntime config mapping [#2877](https://github.com/openshift/machine-config-operator/pull/2877) * [Bug 2053720](https://bugzilla.redhat.com/show_bug.cgi?id=2053720): Avoid dynamically allocated port range for haproxy [#2951](https://github.com/openshift/machine-config-operator/pull/2951) * [Bug 2028025](https://bugzilla.redhat.com/show_bug.cgi?id=2028025): [Release 4.8] daemon: make cordon/uncordon more robust and better logging [#2853](https://github.com/openshift/machine-config-operator/pull/2853) * [Bug 2017493](https://bugzilla.redhat.com/show_bug.cgi?id=2017493): configure-ovs: Persist addr-gen-mode for ipv6 connections [#2810](https://github.com/openshift/machine-config-operator/pull/2810) * [Bug 2021073](https://bugzilla.redhat.com/show_bug.cgi?id=2021073): [ipi onprem] cherry pick Keepalived default ingress scripts fixes [#2826](https://github.com/openshift/machine-config-operator/pull/2826) * [Bug 2026085](https://bugzilla.redhat.com/show_bug.cgi?id=2026085): Send WARN message to stderr [#2836](https://github.com/openshift/machine-config-operator/pull/2836) * [Bug 2024511](https://bugzilla.redhat.com/show_bug.cgi?id=2024511): [release-4.8] [on-prem] Manual backporting of keepalived arp retries [#2831](https://github.com/openshift/machine-config-operator/pull/2831) * [Bug 2016275](https://bugzilla.redhat.com/show_bug.cgi?id=2016275): [on-prem] Set coredns bufsize to 512 [#2807](https://github.com/openshift/machine-config-operator/pull/2807) * [Bug 2011083](https://bugzilla.redhat.com/show_bug.cgi?id=2011083): templates: Silence audit events from container infra by default [#2793](https://github.com/openshift/machine-config-operator/pull/2793) * [Bug 1985736](https://bugzilla.redhat.com/show_bug.cgi?id=1985736): [ON-PREM] HAProxy - Verify that NM prepender script was applied using initcontainer [#2692](https://github.com/openshift/machine-config-operator/pull/2692) * [Bug 2000958](https://bugzilla.redhat.com/show_bug.cgi?id=2000958): fixes 1 to 1 kubelet config mapping [#2753](https://github.com/openshift/machine-config-operator/pull/2753) * [Bug 1999531](https://bugzilla.redhat.com/show_bug.cgi?id=1999531): Set timeoutSeconds for keepalived liveness probe [#2741](https://github.com/openshift/machine-config-operator/pull/2741) * [Bug 2004122](https://bugzilla.redhat.com/show_bug.cgi?id=2004122): Set ovs syslog level to info [#2762](https://github.com/openshift/machine-config-operator/pull/2762) * [Bug 1973873](https://bugzilla.redhat.com/show_bug.cgi?id=1973873): match tlsSecurityProfile doc with kubelet.conf file [#2628](https://github.com/openshift/machine-config-operator/pull/2628) * [Bug 2000500](https://bugzilla.redhat.com/show_bug.cgi?id=2000500): bump SystemMemoryExceedsReservation alert threshold to 95% [#2748](https://github.com/openshift/machine-config-operator/pull/2748) * [Bug 1976110](https://bugzilla.redhat.com/show_bug.cgi?id=1976110): configure-ovs: fix nondeterministic master in slave profiles [#2644](https://github.com/openshift/machine-config-operator/pull/2644) * [Bug 1985735](https://bugzilla.redhat.com/show_bug.cgi?id=1985735): [ON-PREM] HAProxy - enable listening sockets retrieval from old processes [#2691](https://github.com/openshift/machine-config-operator/pull/2691) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/a537783ea4a0cd3b4fe2a02626ab27887307ea51...d78f3bf23498ce7119fc712f124136a7482fa773) ### [mdns-publisher](https://github.com/openshift/mdns-publisher/tree/1c707a28e88b42780fb37fad4532be7220acd1c5) * [Bug 1988145](https://bugzilla.redhat.com/show_bug.cgi?id=1988145): Update zeroconf vendoring [#35](https://github.com/openshift/mdns-publisher/pull/35) * [Full changelog](https://github.com/openshift/mdns-publisher/compare/2c42cc4d95ef276b81cd78d9509e2dc34f3713c1...1c707a28e88b42780fb37fad4532be7220acd1c5) ### [multus-cni](https://github.com/openshift/multus-cni/tree/73d0cfedfff518269f7184615e120afc1406a466) * Updating multus-cni builder & base images to be consistent with ART [#95](https://github.com/openshift/multus-cni/pull/95) * [Full changelog](https://github.com/openshift/multus-cni/compare/0c972341809c1e40f9ea6e1545774d9e1f580455...73d0cfedfff518269f7184615e120afc1406a466) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/64807ab77cf97eb69d4202f25840e921290b3e12) * Updating ose-multus-route-override-cni builder & base images to be consistent with ART [#12](https://github.com/openshift/route-override-cni/pull/12) * [Full changelog](https://github.com/openshift/route-override-cni/compare/1662c3ec79b880fce5cd9c4e64f5ba0d4daffc00...64807ab77cf97eb69d4202f25840e921290b3e12) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/90e1e394907abea5a97a7cd68d5a91afe87a8913) * [Bug 2064860](https://bugzilla.redhat.com/show_bug.cgi?id=2064860): Sync context improvements [backport 4.8] [#90](https://github.com/openshift/whereabouts-cni/pull/90) * [Bug 2028966](https://bugzilla.redhat.com/show_bug.cgi?id=2028966): Whereabouts should reconcile IP addresses [backport 4.8] [#78](https://github.com/openshift/whereabouts-cni/pull/78) * [Bug 2009497](https://bugzilla.redhat.com/show_bug.cgi?id=2009497): Release on cancel, sync for 4.8 [#70](https://github.com/openshift/whereabouts-cni/pull/70) * [Bug 1990113](https://bugzilla.redhat.com/show_bug.cgi?id=1990113): Syncs with upstream for leader election [backport 4.8] [#63](https://github.com/openshift/whereabouts-cni/pull/63) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/9a05258711b1b459c0b24293a6d8fa77c9e5d852...90e1e394907abea5a97a7cd68d5a91afe87a8913) ### [must-gather](https://github.com/openshift/must-gather/tree/7e55480fddf089ec9707f02f6644be9f1200b2a2) * [Bug 2092264](https://bugzilla.redhat.com/show_bug.cgi?id=2092264): Add networking resources [#309](https://github.com/openshift/must-gather/pull/309) * [Bug 2057345](https://bugzilla.redhat.com/show_bug.cgi?id=2057345): Fix ovn-nbctl commands for ipv6 [#287](https://github.com/openshift/must-gather/pull/287) * [Full changelog](https://github.com/openshift/must-gather/compare/515e0502a886f0d7e7e0125792251d5872cc503b...7e55480fddf089ec9707f02f6644be9f1200b2a2) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/c8812eeb9aa3b535a843407704478454a0ab8c7d) * Added METRIC_TEST_IMAGE var (#57) [#57](https://github.com/openshift/network-metrics-daemon/pull/57) * Fix field selector (#52) [#52](https://github.com/openshift/network-metrics-daemon/pull/52) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/f02c63ae9475d2e51ee1b94b8e341ac8f9d590b7...c8812eeb9aa3b535a843407704478454a0ab8c7d) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/961db5cc19f78cb73c628c5219a0c5a6dbde7a3e) * [Bug 2043808](https://bugzilla.redhat.com/show_bug.cgi?id=2043808): IPs with leading zeros are still valid in the apiserver [#74](https://github.com/openshift/oauth-apiserver/pull/74) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/09435a5dd505b3b90eb7ce355ab41c8e4c1a349c...961db5cc19f78cb73c628c5219a0c5a6dbde7a3e) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/c23251132914110cc8deed896c415192c02259bb) * Add coreydaley as reviewer/approver for pkg/build [#300](https://github.com/openshift/openshift-apiserver/pull/300) * [Bug 2043808](https://bugzilla.redhat.com/show_bug.cgi?id=2043808): IPs with leading zeros are still valid in the apiserver [#280](https://github.com/openshift/openshift-apiserver/pull/280) * [Bug 2053223](https://bugzilla.redhat.com/show_bug.cgi?id=2053223): Fix importing images that have dots in their namespace [#283](https://github.com/openshift/openshift-apiserver/pull/283) * [Bug 2042732](https://bugzilla.redhat.com/show_bug.cgi?id=2042732): Make OriginImageMutators aware of origin objects [#271](https://github.com/openshift/openshift-apiserver/pull/271) * [Bug 2020644](https://bugzilla.redhat.com/show_bug.cgi?id=2020644): Image policy should mutate DeploymentConfigs [#259](https://github.com/openshift/openshift-apiserver/pull/259) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/628b46ccb01278190201fa3faf0c339ebfdef110...c23251132914110cc8deed896c415192c02259bb) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/69a83a3f3c290519692a66fd5ffe89586eb1b4b9) * [Bug 2006793](https://bugzilla.redhat.com/show_bug.cgi?id=2006793): BC ICT still must check spec last triggered image ID in case BC was last processed when cluster was pre 4.8 [#206](https://github.com/openshift/openshift-controller-manager/pull/206) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/2e25328c64ac83e6f25449a6a2507c145352abc9...69a83a3f3c290519692a66fd5ffe89586eb1b4b9) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/d431a72bce1aa5ce8d1e5cf7ba810ccaabacb5bb) * [Bug 2049088](https://bugzilla.redhat.com/show_bug.cgi?id=2049088): Explicitly set default value for ReclaimPolicy [#71](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/71) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/1184ace0cd3b6fd90549eaf77737f230822c318d...d431a72bce1aa5ce8d1e5cf7ba810ccaabacb5bb) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/77840b9a431880b15ee05d4a3f327b7ff2a682e8) * [Bug 2064634](https://bugzilla.redhat.com/show_bug.cgi?id=2064634): Ensure subnets belong to the queried network [#223](https://github.com/openshift/cluster-api-provider-openstack/pull/223) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/eb8656e9dfb4e6945ba8a7776433bc19e9397ba8...77840b9a431880b15ee05d4a3f327b7ff2a682e8) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/9e9736d6b162b877da9de3b760b06eeeb52ccd18) * [Bug 2074680](https://bugzilla.redhat.com/show_bug.cgi?id=2074680): Emit CSV metric on startup [#288](https://github.com/openshift/operator-framework-olm/pull/288) * [Bug 2073963](https://bugzilla.redhat.com/show_bug.cgi?id=2073963): Fix a bug in deletion of webhook service for replacement [#281](https://github.com/openshift/operator-framework-olm/pull/281) * [Bug 2030489](https://bugzilla.redhat.com/show_bug.cgi?id=2030489): Remove oudated subscription update logic to improve resolution delay [#222](https://github.com/openshift/operator-framework-olm/pull/222) * [Bug 1996162](https://bugzilla.redhat.com/show_bug.cgi?id=1996162): Check for pruned bundles on add in replaces mode [#165](https://github.com/openshift/operator-framework-olm/pull/165) * [Bug 1986476](https://bugzilla.redhat.com/show_bug.cgi?id=1986476): resolver: remove legacy support for fallback parsing of CSVs [#140](https://github.com/openshift/operator-framework-olm/pull/140) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/dca2c2c2c2054e1f282843a5dd34111402cc2e9b...9e9736d6b162b877da9de3b760b06eeeb52ccd18) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/3f3d7d1f9e914aff08d2ca2b5663358c8b611656) * [Bug 1998938](https://bugzilla.redhat.com/show_bug.cgi?id=1998938): Use client-go's leader election implementation [#421](https://github.com/operator-framework/operator-marketplace/pull/421) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/32b0052b1ecd89db4088c1aa7b47ac0b3dfd38f2...3f3d7d1f9e914aff08d2ca2b5663358c8b611656) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/c57863f25ec68b34f3928e02b9b750cfcef3c99c) * [Bug 2013945](https://bugzilla.redhat.com/show_bug.cgi?id=2013945): pvc stuck on pending status when using preallocated storage domain [#89](https://github.com/openshift/ovirt-csi-driver/pull/89) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/c0b1ec3222eb9ddabdc44200d7270898ea48eef5...c57863f25ec68b34f3928e02b9b750cfcef3c99c) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/3bab77baee7a006b7a96bea737828979d77cda9d) * [Bug 2062745](https://bugzilla.redhat.com/show_bug.cgi?id=2062745): Increase timeouts for CSI driver [#90](https://github.com/openshift/ovirt-csi-driver-operator/pull/90) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/7b6cd3d847c807663f63a6f293748c682c2cad2a...3bab77baee7a006b7a96bea737828979d77cda9d) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/368223b8507596055a33b731a7942aab82f59ce0) * [Bug 2046356](https://bugzilla.redhat.com/show_bug.cgi?id=2046356): detach non-bootable disks before removing the VM [#127](https://github.com/openshift/cluster-api-provider-ovirt/pull/127) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/cbf023408f4e8cee956e5996aa013346e1d16b65...368223b8507596055a33b731a7942aab82f59ce0) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/345e744a691a7ba8fc5043d3a0005e06e9746a89) * [Bug 2097018](https://bugzilla.redhat.com/show_bug.cgi?id=2097018): Duplicated IPs can be assigned to multiple Pods [#1137](https://github.com/openshift/ovn-kubernetes/pull/1137) * [Bug 2111557](https://bugzilla.redhat.com/show_bug.cgi?id=2111557): Remove conntrack entries after rules [#1221](https://github.com/openshift/ovn-kubernetes/pull/1221) * [Bug 2115039](https://bugzilla.redhat.com/show_bug.cgi?id=2115039): [release-4.8] OCP CARRY: Add the rules to EXTERNALIPs only for SGW mode [#1234](https://github.com/openshift/ovn-kubernetes/pull/1234) * [Bug 2105655](https://bugzilla.redhat.com/show_bug.cgi?id=2105655): egressIP: node retrieval failure is not respected, causes panic [#1187](https://github.com/openshift/ovn-kubernetes/pull/1187) * [Bug 2107645](https://bugzilla.redhat.com/show_bug.cgi?id=2107645): Set the OVS port as transient [#1197](https://github.com/openshift/ovn-kubernetes/pull/1197) * [Bug 2105272](https://bugzilla.redhat.com/show_bug.cgi?id=2105272): EGW: Clean Stale Conntrack Entries [#1193](https://github.com/openshift/ovn-kubernetes/pull/1193) * [Bug 2106089](https://bugzilla.redhat.com/show_bug.cgi?id=2106089): Fix panics in DestroyNetworkPolicy if policy is nil [#1184](https://github.com/openshift/ovn-kubernetes/pull/1184) * [Bug 2084110](https://bugzilla.redhat.com/show_bug.cgi?id=2084110): EgressIP NATs are not being cleared correctly from the logical router [#1107](https://github.com/openshift/ovn-kubernetes/pull/1107) * [Bug 2087227](https://bugzilla.redhat.com/show_bug.cgi?id=2087227): enable `exportloopref` linter and fix violations [#1097](https://github.com/openshift/ovn-kubernetes/pull/1097) * [Bug 2070762](https://bugzilla.redhat.com/show_bug.cgi?id=2070762): [release-4.8] Multiple ExGW cache validation/improvements [#1019](https://github.com/openshift/ovn-kubernetes/pull/1019) * [Bug 2077370](https://bugzilla.redhat.com/show_bug.cgi?id=2077370): [release-4.8] fix ipv6 network policy [#1047](https://github.com/openshift/ovn-kubernetes/pull/1047) * [Bug 2062842](https://bugzilla.redhat.com/show_bug.cgi?id=2062842): [4.8z] After reboot egress node, lr-policy-list was not correct, some duplicate records or missed internal IPs [#1009](https://github.com/openshift/ovn-kubernetes/pull/1009) * [Bug 2065303](https://bugzilla.redhat.com/show_bug.cgi?id=2065303): [CARRY][Downstream-only] Give warning when ipFamilyPolicy implicitly set [#998](https://github.com/openshift/ovn-kubernetes/pull/998) * [Bug 2070521](https://bugzilla.redhat.com/show_bug.cgi?id=2070521): egressgw: fix deadlock due to behavior of RWLock [#1018](https://github.com/openshift/ovn-kubernetes/pull/1018) * [Bug 2063836](https://bugzilla.redhat.com/show_bug.cgi?id=2063836): backport 2052975 to 4.8 [#997](https://github.com/openshift/ovn-kubernetes/pull/997) * [Bug 2068509](https://bugzilla.redhat.com/show_bug.cgi?id=2068509): EgressGW: only return unique elements from getRouteInfosForGateway() [#1011](https://github.com/openshift/ovn-kubernetes/pull/1011) * [Bug 2065311](https://bugzilla.redhat.com/show_bug.cgi?id=2065311): [release-4.8] Network Policy fixes [#999](https://github.com/openshift/ovn-kubernetes/pull/999) * [Bug 2057557](https://bugzilla.redhat.com/show_bug.cgi?id=2057557): Create iptables NAT rules also for loadbalancer services [#967](https://github.com/openshift/ovn-kubernetes/pull/967) * [Bug 2058679](https://bugzilla.redhat.com/show_bug.cgi?id=2058679): Bumps ovn2.13-20.12.0-195.el8fdp [#979](https://github.com/openshift/ovn-kubernetes/pull/979) * [release 4.8] Update project owners [#992](https://github.com/openshift/ovn-kubernetes/pull/992) * [Bug 2057931](https://bugzilla.redhat.com/show_bug.cgi?id=2057931): Fix podHandlerCache key [#969](https://github.com/openshift/ovn-kubernetes/pull/969) * [Bug 2057152](https://bugzilla.redhat.com/show_bug.cgi?id=2057152): Fix egress IP allocator sync [#965](https://github.com/openshift/ovn-kubernetes/pull/965) * [Bug 2053611](https://bugzilla.redhat.com/show_bug.cgi?id=2053611): Lock the reassignment procedure during node deletion to avoid races [#970](https://github.com/openshift/ovn-kubernetes/pull/970) * [Bug 2054225](https://bugzilla.redhat.com/show_bug.cgi?id=2054225): Fix gateway routers answer ARP/NDP requests for LoadBalancer/ExternalIP services [#957](https://github.com/openshift/ovn-kubernetes/pull/957) * [Bug 2056975](https://bugzilla.redhat.com/show_bug.cgi?id=2056975): Don't return err when annotation cannot be unmarshalled [#963](https://github.com/openshift/ovn-kubernetes/pull/963) * [Bug 2052966](https://bugzilla.redhat.com/show_bug.cgi?id=2052966): [release-4.8] bump ovn to 20.12.0-193 [#949](https://github.com/openshift/ovn-kubernetes/pull/949) * [Bug 2043757](https://bugzilla.redhat.com/show_bug.cgi?id=2043757): Fix node connectivity to service backed by egress IP pods [#922](https://github.com/openshift/ovn-kubernetes/pull/922) * [Bug 2042516](https://bugzilla.redhat.com/show_bug.cgi?id=2042516): Fixes for shared to local gateway migration [#916](https://github.com/openshift/ovn-kubernetes/pull/916) * [Bug 2037884](https://bugzilla.redhat.com/show_bug.cgi?id=2037884): [4.8-backport] Fix nepol statefulset 4.8 [#894](https://github.com/openshift/ovn-kubernetes/pull/894) * [Bug 2041767](https://bugzilla.redhat.com/show_bug.cgi?id=2041767): Fix pod handlers and pod IP parsing for egress IP [#912](https://github.com/openshift/ovn-kubernetes/pull/912) * [Bug 2039279](https://bugzilla.redhat.com/show_bug.cgi?id=2039279): filter out KubeAPIAuth when logging CNI requests [#897](https://github.com/openshift/ovn-kubernetes/pull/897) * [Bug 2021221](https://bugzilla.redhat.com/show_bug.cgi?id=2021221): Add ovn-controller logical flow cache options [#890](https://github.com/openshift/ovn-kubernetes/pull/890) * [Bug 2030465](https://bugzilla.redhat.com/show_bug.cgi?id=2030465): Make config parsing more resilient for unknown fields [#868](https://github.com/openshift/ovn-kubernetes/pull/868) * [Bug 2027873](https://bugzilla.redhat.com/show_bug.cgi?id=2027873): [4.8z] Fixes race between node handler and pod sync [#858](https://github.com/openshift/ovn-kubernetes/pull/858) * [Bug 2027487](https://bugzilla.redhat.com/show_bug.cgi?id=2027487): [4.8z] addressManager should not call sync() from ErrorCallback [#853](https://github.com/openshift/ovn-kubernetes/pull/853) * [Bug 2022043](https://bugzilla.redhat.com/show_bug.cgi?id=2022043): [4.8z] Avoid stale annotations by re-subscribing to netlink [#829](https://github.com/openshift/ovn-kubernetes/pull/829) * [Bug 2014332](https://bugzilla.redhat.com/show_bug.cgi?id=2014332): [4.8z] Scale fixes for pods/exgws [#798](https://github.com/openshift/ovn-kubernetes/pull/798) * [Bug 2011391](https://bugzilla.redhat.com/show_bug.cgi?id=2011391): [4.8] bump OVN to 20.12.0-183.el8fdp [#783](https://github.com/openshift/ovn-kubernetes/pull/783) * [Bug 1986708](https://bugzilla.redhat.com/show_bug.cgi?id=1986708): Add routes for pod: fail only after checking all the gw addresses / ips [#774](https://github.com/openshift/ovn-kubernetes/pull/774) * [Bug 2005480](https://bugzilla.redhat.com/show_bug.cgi?id=2005480): [4.8z] Remove waiting for namespace and namespace lock contention [#760](https://github.com/openshift/ovn-kubernetes/pull/760) * [release 4.8] Bug 1994624: Infer subnet for node /128 IPv6 addresses [#661](https://github.com/openshift/ovn-kubernetes/pull/661) * [Bug 2004336](https://bugzilla.redhat.com/show_bug.cgi?id=2004336): Ensure host interfaces are deleted by CNI [#745](https://github.com/openshift/ovn-kubernetes/pull/745) * [Bug 2005464](https://bugzilla.redhat.com/show_bug.cgi?id=2005464): [4.8z] Fixes skipping pods accidentally in retry [#758](https://github.com/openshift/ovn-kubernetes/pull/758) * [Bug 2005357](https://bugzilla.redhat.com/show_bug.cgi?id=2005357): [4.8z] Fixes misuse of pod annotations during update event [#753](https://github.com/openshift/ovn-kubernetes/pull/753) * [Bug 1996739](https://bugzilla.redhat.com/show_bug.cgi?id=1996739): Fix ensurePod to call addPodExternalGW only for annotation updates [#752](https://github.com/openshift/ovn-kubernetes/pull/752) * [Bug 2004488](https://bugzilla.redhat.com/show_bug.cgi?id=2004488): panic after EgressFirewall deletion and DNS record expiration [#749](https://github.com/openshift/ovn-kubernetes/pull/749) * [Bug 2004269](https://bugzilla.redhat.com/show_bug.cgi?id=2004269): Sync ECMP routes on startup and fixes stale ECMP routes [#743](https://github.com/openshift/ovn-kubernetes/pull/743) * [Bug 1999638](https://bugzilla.redhat.com/show_bug.cgi?id=1999638): Fix duplicate incrementing of subnet allocation metric [#700](https://github.com/openshift/ovn-kubernetes/pull/700) * [Bug 1996729](https://bugzilla.redhat.com/show_bug.cgi?id=1996729): NetworkPolicy: bulk-add pods to new policies (or on restart) [#678](https://github.com/openshift/ovn-kubernetes/pull/678) * [Bug 2000214](https://bugzilla.redhat.com/show_bug.cgi?id=2000214): Fix GetPortAddresses for HBO [#711](https://github.com/openshift/ovn-kubernetes/pull/711) * [Bug 2001641](https://bugzilla.redhat.com/show_bug.cgi?id=2001641): egressfirewall not set after upgrade [#722](https://github.com/openshift/ovn-kubernetes/pull/722) * [Bug 1996201](https://bugzilla.redhat.com/show_bug.cgi?id=1996201): Fixes cases of timed out while waiting for OVS port binding [#686](https://github.com/openshift/ovn-kubernetes/pull/686) * [Bug 2001542](https://bugzilla.redhat.com/show_bug.cgi?id=2001542): fix reserve joinSwitch LRP IPs [#720](https://github.com/openshift/ovn-kubernetes/pull/720) * [Bug 2001363](https://bugzilla.redhat.com/show_bug.cgi?id=2001363): [4.8z] Ensure client handling of canceled/dropped OVSDB monitor [#718](https://github.com/openshift/ovn-kubernetes/pull/718) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/8eb74914e7425f544504baa8357144dc21deac3d...345e744a691a7ba8fc5043d3a0005e06e9746a89) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/b66c45062dd1c4fc4ce7de2f587647522af60e11) * Updating ose-service-ca-operator images to be consistent with ART [#177](https://github.com/openshift/service-ca-operator/pull/177) * Update go version to 1.16 [#179](https://github.com/openshift/service-ca-operator/pull/179) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/bcc6df48bc48dff748481c5284d05e0c2066f4e6...b66c45062dd1c4fc4ce7de2f587647522af60e11) ### [telemeter](https://github.com/openshift/telemeter/tree/eabad556e8759422b85b2f27248c52626245f1ba) * Updating telemeter builder & base images to be consistent with ART [#374](https://github.com/openshift/telemeter/pull/374) * [Full changelog](https://github.com/openshift/telemeter/compare/d6ceb8a4e94f775510591974b2cdeb19819abda0...eabad556e8759422b85b2f27248c52626245f1ba) ### [tests](https://github.com/openshift/origin/tree/2eb86450ff251951d9aabda446cb4fd19e9e3b62) * [Bug 1999288](https://bugzilla.redhat.com/show_bug.cgi?id=1999288): [release-4.8]: bump openshift/kubernetes to the latest [#26886](https://github.com/openshift/origin/pull/26886) * [Bug 2038876](https://bugzilla.redhat.com/show_bug.cgi?id=2038876): [release-4.8] test: skip tests that won't work behind a proxy automatically [#26733](https://github.com/openshift/origin/pull/26733) * [Bug 1984275](https://bugzilla.redhat.com/show_bug.cgi?id=1984275): Add renamed Prometheus test into skipped disconnected list [#26344](https://github.com/openshift/origin/pull/26344) * [Bug 2033426](https://bugzilla.redhat.com/show_bug.cgi?id=2033426): test/e2e/upgrade/adminack: Poll gates for duration of update [#26704](https://github.com/openshift/origin/pull/26704) * [Bug 2033379](https://bugzilla.redhat.com/show_bug.cgi?id=2033379): [release-4.8] remove perma-failing prometheus upgrade invariant [#26698](https://github.com/openshift/origin/pull/26698) * [Bug 2027262](https://bugzilla.redhat.com/show_bug.cgi?id=2027262): Create new-project without updating kubeconfig [#26645](https://github.com/openshift/origin/pull/26645) * [Bug 2028815](https://bugzilla.redhat.com/show_bug.cgi?id=2028815): Skipping Django Test until bug is fixed [#26665](https://github.com/openshift/origin/pull/26665) * [Bug 2028021](https://bugzilla.redhat.com/show_bug.cgi?id=2028021): Bump update time limit 4.8 [#26657](https://github.com/openshift/origin/pull/26657) * [Bug 1929650](https://bugzilla.redhat.com/show_bug.cgi?id=1929650): Increase OVN upgrade timeout by 15m [#26654](https://github.com/openshift/origin/pull/26654) * [Bug 2025724](https://bugzilla.redhat.com/show_bug.cgi?id=2025724): Add admin ack Upgradeable condition gate test [#26635](https://github.com/openshift/origin/pull/26635) * [Bug 2020644](https://bugzilla.redhat.com/show_bug.cgi?id=2020644): Add more tests for image policy [#26584](https://github.com/openshift/origin/pull/26584) * [Bug 2019519](https://bugzilla.redhat.com/show_bug.cgi?id=2019519): Skip test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#26562](https://github.com/openshift/origin/pull/26562) * fix: add proxy support to OAuthServer tests [#26539](https://github.com/openshift/origin/pull/26539) * [Bug 2008114](https://bugzilla.redhat.com/show_bug.cgi?id=2008114): Add role label to jenkins imagestream [#26503](https://github.com/openshift/origin/pull/26503) * [Bug 2002552](https://bugzilla.redhat.com/show_bug.cgi?id=2002552): Retry kubeconfig checks, when kube-apiserver is temporarily unavailable [#26458](https://github.com/openshift/origin/pull/26458) * [Bug 1989402](https://bugzilla.redhat.com/show_bug.cgi?id=1989402): Add tests required internet into Skipped:Disconnected list [#26369](https://github.com/openshift/origin/pull/26369) * [Bug 1986259](https://bugzilla.redhat.com/show_bug.cgi?id=1986259): Enable TestEndpointAdmission test only for OpenShift SDN [#26351](https://github.com/openshift/origin/pull/26351) * [Full changelog](https://github.com/openshift/origin/compare/d06a8ab0899e51b13f202b8da5fc1005dd2543a2...2eb86450ff251951d9aabda446cb4fd19e9e3b62) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/18cd9873078206f26d25ecf18893ba0864c0cf62) * [Bug 2021620](https://bugzilla.redhat.com/show_bug.cgi?id=2021620): Close connection to vCenter API [#51](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/51) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/edbdd69cb34ced19b0cc0f3a180df56f1ca4899d...18cd9873078206f26d25ecf18893ba0864c0cf62) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/9ff996502f4cb87c89985cdaff346754d645b988) * [Bug 2036967](https://bugzilla.redhat.com/show_bug.cgi?id=2036967): Deferred logout after checks are run [#68](https://github.com/openshift/vsphere-problem-detector/pull/68) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/c02283d6c979f4e63b76945951272b1cfd134c32...9ff996502f4cb87c89985cdaff346754d645b988)