# 4.8.51 Created: 2022-10-05 09:01:17 +0000 UTC Image Digest: `sha256:ade848f9796f3938f8bd540ff5d94ef2791982b4f8c93929758efa0693c7a2db` Promoted from registry.ci.openshift.org/ocp/release:4.8.0-0.nightly-2022-10-04-090218 ## Changes from 4.8.3 ### Components * Kubernetes upgraded from 1.21.1 to 1.21.11 * Red Hat Enterprise Linux CoreOS upgraded from 48.84.202107271439-0 to 48.84.202209210418-0 ### Rebuilt images without code change * [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator) git [d1fe616c](https://github.com/openshift/aws-ebs-csi-driver-operator/commit/d1fe616c0da0edddb7019a64b0ad1136b36a5f26) `sha256:8a99c761722ca2a763d7edfd12a2f3d216f28a28856ecf4049d1e5e218ad737a` * [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver) git [2d461b39](https://github.com/openshift/azure-disk-csi-driver/commit/2d461b39bacc76f0b879f943015df4d2191f72f4) `sha256:2b5748463b29625dd40e1be8d437aa2c7f3aa707a6e49ec169545c3855408861` * [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator) git [d3a3c298](https://github.com/openshift/azure-disk-csi-driver-operator/commit/d3a3c298c91371ccd37896857f623f4494dd78a6) `sha256:707ec532cdf4fd0d061179a20849028e6b73e9f035c6b01ffebe63e38beb142d` * [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler) git [7bbde4cc](https://github.com/openshift/kubernetes-autoscaler/commit/7bbde4cc4ddb1d0030f23b789b4bbf48ab3ef79d) `sha256:6de8e6b689c06e227f8e73b15ccec568b43590d81f656f4976480404fadb194a` * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [1af395b7](https://github.com/openshift/cluster-bootstrap/commit/1af395b7881d951a824858f5d393357609bddbf0) `sha256:bf8cfb323478dd0e63679b1a2cd85cadd3550a140b95e80fb98957028d4026a7` * [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator) git [07b3f810](https://github.com/openshift/cluster-csi-snapshot-controller-operator/commit/07b3f81036401073d68eb1ef152b96ab5e5a2fc6) `sha256:806dbfba66e2fd36dc8d7d2b90b598b942ae93ae525d38e3563e76431b05c9b3` * [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator) git [fdb2ebec](https://github.com/openshift/cluster-dns-operator/commit/fdb2ebecdeb992444964f84fd0b5c17f37d80536) `sha256:0d3033d5ce335e42deb69077a46300cdb1d4202065fc1b352f052af34a7ab39d` * [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator) git [286c1577](https://github.com/openshift/cluster-openshift-controller-manager-operator/commit/286c157755c8120ce969c7c15f969737b46b1a0a) `sha256:7478243bd21c4fa6237b796eaacfcafbc7fb00d185cf75b367e2d78f52eea89d` * [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller) git [ec46ea5c](https://github.com/openshift/cluster-policy-controller/commit/ec46ea5ce3735fcb3d10290834f9ae5fb31148f0) `sha256:1d131273fa52719dfd295f889dc3644fa0bf7fe8c492d24dc6e414cdfea1745b` * [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator) git [31fb491f](https://github.com/openshift/cluster-samples-operator/commit/31fb491fc14faed6ebbe41a526764947069ff0a2) `sha256:6ead389ff821b59efcf13aec1ada90935c29f657be525900e7063708202aae23` * [cluster-update-keys](https://github.com/openshift/cluster-update-keys) git [87835b73](https://github.com/openshift/cluster-update-keys/commit/87835b737f0a90a6259150746114f251241bf52e) `sha256:8a56e85aa51ce4251eeba51d54b4d14afab6ead0d9ef37329a09d406b8d74de5` * [coredns](https://github.com/openshift/coredns) git [642b46ef](https://github.com/openshift/coredns/commit/642b46ef468d132d26c3f84a8bcb4b542d8df1e6) `sha256:f2242ac066837802e21f932ed20f0405b96c74c95c89380e389668ffcc777280` * [csi-driver-manila](https://github.com/openshift/cloud-provider-openstack) git [3579eadc](https://github.com/openshift/cloud-provider-openstack/commit/3579eadc9b0e195a4bb80d9a43a33a250c4a8dd6) `sha256:b71587fe76638fba77f239bbe9d2d4b4858804fb9babfd10930188b2496ed7b5` * [csi-external-attacher](https://github.com/openshift/csi-external-attacher) git [596da63e](https://github.com/openshift/csi-external-attacher/commit/596da63ecf2886a9bce19c08ad1120e123b498af) `sha256:f4209a8f34c9e431f5d3b528b67ead7dbe230005001fcabdcff694e97990514e` * [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner) git [3ea7e68a](https://github.com/openshift/csi-external-provisioner/commit/3ea7e68a518870d63c7da9485f8a69fa1555b452) `sha256:0626a9afa02f0a7981fc6ddb20586dad181cbedeed39331024138485d9c4de6b` * [csi-external-resizer](https://github.com/openshift/csi-external-resizer) git [b5dd2b39](https://github.com/openshift/csi-external-resizer/commit/b5dd2b39e9dfb83addd0c07654c3b9119e24cb36) `sha256:b80744b8658b5312a1eb8feb34b538da9d3d8f8cf804772cf19fdee3ff8e141f` * [csi-external-snapshotter](https://github.com/openshift/csi-external-snapshotter) git [1e2cca95](https://github.com/openshift/csi-external-snapshotter/commit/1e2cca95999057e16fcfee07e8068f7a77f2e164) `sha256:6bb0736c83cbed81d7210c322fcba4807ee8784e568c1ffbbcc6ff47fc9bb4b0` * [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe) git [a29b1153](https://github.com/openshift/csi-livenessprobe/commit/a29b1153451d6ffa6fbcb1dacbe25639c2523488) `sha256:a88afa984f0102be75d1243fa90f0b9f33a04984a45915a0f7c13370d5280bbf` * [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar) git [0519730f](https://github.com/openshift/csi-node-driver-registrar/commit/0519730f75f89c11f1ee07c7f81b0bcae1ddf705) `sha256:a589a0ea2a7340214ed3cd337f5c9ea3f826193bd6eed11a8c2430766a731e46` * [csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter) git [1e2cca95](https://github.com/openshift/csi-external-snapshotter/commit/1e2cca95999057e16fcfee07e8068f7a77f2e164) `sha256:225678d7ecef94a6fdcf13c1673e32c797f22dd1a9830565004fafd59ca97a8d` * [csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter) git [1e2cca95](https://github.com/openshift/csi-external-snapshotter/commit/1e2cca95999057e16fcfee07e8068f7a77f2e164) `sha256:b6dfed4a607dfa480933f3064e5c66c2022a81e6a812de0b6b8167eac291a143` * [egress-router-cni](https://github.com/openshift/egress-router-cni) git [016bea1a](https://github.com/openshift/egress-router-cni/commit/016bea1a6f5ec53aab8e936f4120c32a05322027) `sha256:62fa1517fc67d5c1fd7315966163845681ab3cedc706640e69bd5e0487c64e5a` * [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp) git [34db56eb](https://github.com/openshift/cluster-api-provider-gcp/commit/34db56ebf7a8a46828f5830d42b26f9d2bdd0db1) `sha256:10591b30e900da7a92a37d1c4fd9e65e093078e9ecbf96a703b0ecf5e504bf50` * [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator) git [35ebe860](https://github.com/openshift/gcp-pd-csi-driver-operator/commit/35ebe86003c339821d3a36186a66f8ef86049932) `sha256:3cf0037cca05f3cc807703e1e64765411b935b1fa11cd1718ee445ac0a85d22c` * [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager) git [d2e40e34](https://github.com/openshift/ironic-static-ip-manager/commit/d2e40e34f8284d0ac7c4e9133b537baeac07b408) `sha256:e00973468b0a11d7ae74d253161d57d22d18e0e9a8c4a8a1b7b9c7695df557a9` * [keepalived-ipfailover](https://github.com/openshift/images) git [ad38e116](https://github.com/openshift/images/commit/ad38e116f3533e0e78621a2887d8b70cde7cba31) `sha256:e522ba71bc0ce977870017ab9f7ec2fb60df0bd37bcc7195af63366fc739489f` * [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy) git [813c3da7](https://github.com/openshift/kube-rbac-proxy/commit/813c3da7222a4ccc95ef3827cd54b0ce93a8cbe5) `sha256:886a28619658f024e75a353f89442ec6d2b3d26e8922dc51ff044516ecf18900` * [kube-state-metrics](https://github.com/openshift/kube-state-metrics) git [94716629](https://github.com/openshift/kube-state-metrics/commit/947166293195d115500d4479c0c40c8c01a25ad0) `sha256:d297037a35ab8b6e81e10c74871ec11052bab74d98fd69998c65e381dd4d0d62` * machine-os-content `sha256:8d53259469cf459f90bd80f7204d970c6a5e468338190b3b816059ecc8481542` * [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy) git [187ad91f](https://github.com/openshift/multus-networkpolicy/commit/187ad91f119ff6b73610922012e7af4e704c5e93) `sha256:7d73a6f5fdfa9adb2647d8d399cdaef26e868b7de911691cea7f45ce7fe7baca` * [network-tools](https://github.com/openshift/network-tools) git [5ac3739e](https://github.com/openshift/network-tools/commit/5ac3739e4382eb10cdd9209c8947096997fe38a2) `sha256:09e6c47b06f985f965f79686c08de08684fe0efe35f82f20a912268d044e1b31` * [oauth-proxy](https://github.com/openshift/oauth-proxy) git [3fc0d89b](https://github.com/openshift/oauth-proxy/commit/3fc0d89b2607808927f5b48168342f5dc3a1a271) `sha256:a1b6d34418b23a6f874dc9302f5e63caaa520cc6dd4d089aae4d12181e306040` * [oauth-server](https://github.com/openshift/oauth-server) git [374e2ee3](https://github.com/openshift/oauth-server/commit/374e2ee38a1910c6d56172e9d4ec1828c4dea1be) `sha256:2f3d0c04e7ec5250efa2f0ac2c105064d624450c44dc08a3c8536657889295fb` * [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics) git [10142914](https://github.com/openshift/openshift-state-metrics/commit/101429149266e2c86a41b82baf47a033c9a93b02) `sha256:0213a3bc9b058ee41e4c9856f071f23efa6c6b0066045d169aa1ffbe538ad435` * [openstack-cinder-csi-driver](https://github.com/openshift/cloud-provider-openstack) git [3579eadc](https://github.com/openshift/cloud-provider-openstack/commit/3579eadc9b0e195a4bb80d9a43a33a250c4a8dd6) `sha256:6043d01500019b59feb49f5a44a1030b39f32d52d99456295b61788245c1a73d` * [prom-label-proxy](https://github.com/openshift/prom-label-proxy) git [2faeb405](https://github.com/openshift/prom-label-proxy/commit/2faeb4050010914d6b55da38bffb44b95702e052) `sha256:545fc0363b3bb1239e06ccc18f57102f2b2b882204c06af3afcbeed98526822e` * [prometheus](https://github.com/openshift/prometheus) git [f3beb880](https://github.com/openshift/prometheus/commit/f3beb880dbde817bf5ed2befc1880445884e4be0) `sha256:3c3ddf8a2cfac7215e617b93a33bc1356ca880b254c386778b7c5dcf081288f5` * [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager) git [7b5ac874](https://github.com/openshift/prometheus-alertmanager/commit/7b5ac8741d87542c43d002aef3b881d7f8065133) `sha256:7980aeb3475515441763553e45a0f4e8c16acea651dee0a20d900807e8539a91` * [vsphere-csi-driver](https://github.com/openshift/vmware-vsphere-csi-driver) git [dd5345eb](https://github.com/openshift/vmware-vsphere-csi-driver/commit/dd5345eb7ed3c68eff6619ca434b5e83083f5bc9) `sha256:9deca008332371e8db05371d082f8201f7127e9ede79adf14a71cefe76f790be` * [vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver) git [dd5345eb](https://github.com/openshift/vmware-vsphere-csi-driver/commit/dd5345eb7ed3c68eff6619ca434b5e83083f5bc9) `sha256:ee807d354956cfafe02b42ad85a4fa6b4d167aa9ec86203ac53d0f8cd5516414` ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/f052c89e99c63497b15e5bd38e2a5a71036fdefa) * [Bug 2106910](https://bugzilla.redhat.com/show_bug.cgi?id=2106910): Rebase to v1.4.0 [#205](https://github.com/openshift/aws-ebs-csi-driver/pull/205) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/8c036e44147d9e4546c726b934dedda3940790af...f052c89e99c63497b15e5bd38e2a5a71036fdefa) ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/1a6124fe5dd844c499158409c8130196736c805a) * [OCPBUGS-895](https://issues.redhat.com/browse/OCPBUGS-895): Fix panic when accessing nil machine annotations map [#447](https://github.com/openshift/cluster-api-provider-aws/pull/447) * [Bug 2066675](https://bugzilla.redhat.com/show_bug.cgi?id=2066675): Ensure IOPS setting is honoured on all supported block device types [#437](https://github.com/openshift/cluster-api-provider-aws/pull/437) * [Bug 2031905](https://bugzilla.redhat.com/show_bug.cgi?id=2031905): Prevent Machine from being considered provisioned until it exists in AWS [#432](https://github.com/openshift/cluster-api-provider-aws/pull/432) * [Bug 2016926](https://bugzilla.redhat.com/show_bug.cgi?id=2016926): do not requeue if the machine has been updated [#426](https://github.com/openshift/cluster-api-provider-aws/pull/426) * [Bug 1974680](https://bugzilla.redhat.com/show_bug.cgi?id=1974680): Fix eventual consistency logic to be consistent [#416](https://github.com/openshift/cluster-api-provider-aws/pull/416) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/4c66f3d38d89e4076051daebe8915ef92b52fe8f...1a6124fe5dd844c499158409c8130196736c805a) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/58ef8af861317beceac26691d5c452af45ca0e4a) * [Bug 2029253](https://bugzilla.redhat.com/show_bug.cgi?id=2029253): update go.mod for go1.16 [#148](https://github.com/openshift/aws-pod-identity-webhook/pull/148) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/2b8eee2a4f0555c6d4ce7700fda774190574fb5d...58ef8af861317beceac26691d5c452af45ca0e4a) ### [azure-machine-controllers](https://github.com/openshift/cluster-api-provider-azure/tree/ad5852b1255c2ecd3c5e385fee4a5e56b8ed8b22) * [Bug 2051576](https://bugzilla.redhat.com/show_bug.cgi?id=2051576): Requeue create on invalid credentials errors [#253](https://github.com/openshift/cluster-api-provider-azure/pull/253) * [Full changelog](https://github.com/openshift/cluster-api-provider-azure/compare/830107632bf85869e13fbcb0848b27c310002d25...ad5852b1255c2ecd3c5e385fee4a5e56b8ed8b22) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/d568517875a516614660fda5ee29dcb035beb959) * [OCPBUGS-1057](https://issues.redhat.com/browse/OCPBUGS-1057): Download yq in upi installer containers [#6322](https://github.com/openshift/installer/pull/6322) * [OCPBUGS-448](https://issues.redhat.com/browse/OCPBUGS-448): Allow setting bootstrap kubelet ip [#6253](https://github.com/openshift/installer/pull/6253) * [Bug 2098252](https://bugzilla.redhat.com/show_bug.cgi?id=2098252): locations fix [#6222](https://github.com/openshift/installer/pull/6222) * [Bug 2025901](https://bugzilla.redhat.com/show_bug.cgi?id=2025901): Improve host role management during assets creation [#5409](https://github.com/openshift/installer/pull/5409) * [Bug 2098252](https://bugzilla.redhat.com/show_bug.cgi?id=2098252): bump RHCOS 4.8 bootimage metadata [#6192](https://github.com/openshift/installer/pull/6192) * [Bug 2108581](https://bugzilla.redhat.com/show_bug.cgi?id=2108581): [release-4.8] RHCOS: move to rhcos.mirror.openshift.com [#6137](https://github.com/openshift/installer/pull/6137) * [Bug 2100304](https://bugzilla.redhat.com/show_bug.cgi?id=2100304): Collect whole journal and netstat data [#6040](https://github.com/openshift/installer/pull/6040) * [Bug 2098162](https://bugzilla.redhat.com/show_bug.cgi?id=2098162): Bootstrap timeout [#6026](https://github.com/openshift/installer/pull/6026) * [Bug 2006965](https://bugzilla.redhat.com/show_bug.cgi?id=2006965): bump RHCOS 4.8 boot images [#5987](https://github.com/openshift/installer/pull/5987) * [Bug 2069166](https://bugzilla.redhat.com/show_bug.cgi?id=2069166): stop considering Mint mode as supported on Azure (#5699) [#5753](https://github.com/openshift/installer/pull/5753) * [Bug 2022171](https://bugzilla.redhat.com/show_bug.cgi?id=2022171): Relax vcenter hostname check [#5371](https://github.com/openshift/installer/pull/5371) * Updating ose-installer-artifacts builder & base images to be consistent with ART [#4782](https://github.com/openshift/installer/pull/4782) * [Bug 2023363](https://bugzilla.redhat.com/show_bug.cgi?id=2023363): Add ingress rules to master SG for compact clusters [#5386](https://github.com/openshift/installer/pull/5386) * [Bug 2017986](https://bugzilla.redhat.com/show_bug.cgi?id=2017986): Set AWS Bootstrap Type == Master [#5338](https://github.com/openshift/installer/pull/5338) * [Bug 2017258](https://bugzilla.redhat.com/show_bug.cgi?id=2017258): bump oVirt terraform provider version which fix "Disk is locked" bug [#5329](https://github.com/openshift/installer/pull/5329) * [Bug 2002349](https://bugzilla.redhat.com/show_bug.cgi?id=2002349): Fix invalid UPI AWS instance type [#5199](https://github.com/openshift/installer/pull/5199) * [Bug 2008823](https://bugzilla.redhat.com/show_bug.cgi?id=2008823): baremetal: Ensure ipv6 bootstrap VM client-id is predictable [#5250](https://github.com/openshift/installer/pull/5250) * [Bug 2009019](https://bugzilla.redhat.com/show_bug.cgi?id=2009019): update legacy RHCOS boot image metadata [#5255](https://github.com/openshift/installer/pull/5255) * [Bug 1982001](https://bugzilla.redhat.com/show_bug.cgi?id=1982001): Bump RHCOS 4.8 boot image [#5227](https://github.com/openshift/installer/pull/5227) * Update OWNERS [#5242](https://github.com/openshift/installer/pull/5242) * [Bug 2004236](https://bugzilla.redhat.com/show_bug.cgi?id=2004236): Document how to enable Octavia Day 2 [#5161](https://github.com/openshift/installer/pull/5161) * [Bug 1973421](https://bugzilla.redhat.com/show_bug.cgi?id=1973421): [4.8] improve dual-stack install-config validation [#5114](https://github.com/openshift/installer/pull/5114) * [Bug 1987848](https://bugzilla.redhat.com/show_bug.cgi?id=1987848): openstack: quotas/BYON improvements [#5122](https://github.com/openshift/installer/pull/5122) * [Bug 1969651](https://bugzilla.redhat.com/show_bug.cgi?id=1969651): bump RHCOS 4.8 boot images [#5051](https://github.com/openshift/installer/pull/5051) * [Bug 1981548](https://bugzilla.redhat.com/show_bug.cgi?id=1981548): [release-4.8] aws: move elastic ip permissions to create networking category [#5056](https://github.com/openshift/installer/pull/5056) * OWNERS: add more core team members as approvers [#5124](https://github.com/openshift/installer/pull/5124) * Updating ose-installer builder & base images to be consistent with ART [#4780](https://github.com/openshift/installer/pull/4780) * [Full changelog](https://github.com/openshift/installer/compare/a5ddd2dd6c72d8a5ea0a5f17acd8b964b6a3d1be...d568517875a516614660fda5ee29dcb035beb959) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/03dc4268b2a50112f07d26722c79138aebc1ea81) * Update OWNERS [#181](https://github.com/openshift/cluster-api-provider-baremetal/pull/181) * Updating baremetal-machine-controller builder & base images to be consistent with ART [#147](https://github.com/openshift/cluster-api-provider-baremetal/pull/147) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/a60d493e45aa9d3c0391297fd77cb168092fed35...03dc4268b2a50112f07d26722c79138aebc1ea81) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/5492cf52309927ed6015340887b15ff10025d371) * [Bug 2100994](https://bugzilla.redhat.com/show_bug.cgi?id=2100994): Uplift kustomize to remove go-getter dependency [#236](https://github.com/openshift/baremetal-operator/pull/236) * [Bug 2000442](https://bugzilla.redhat.com/show_bug.cgi?id=2000442): Add LIVE_ISO_FORCE_PERSISTENT_BOOT_DEVICE variable [#174](https://github.com/openshift/baremetal-operator/pull/174) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/015024fe8c50eca20850fcc550880b7357709613...5492cf52309927ed6015340887b15ff10025d371) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/c50d793ca33bd7d476b2b770d4f5d317b79b865b) * [Bug 2109329](https://bugzilla.redhat.com/show_bug.cgi?id=2109329): Avoid kubernetes node port range [#187](https://github.com/openshift/baremetal-runtimecfg/pull/187) * [Bug 2059584](https://bugzilla.redhat.com/show_bug.cgi?id=2059584): Ignore VIPs in node-ip show [#172](https://github.com/openshift/baremetal-runtimecfg/pull/172) * [Bug 2053720](https://bugzilla.redhat.com/show_bug.cgi?id=2053720): Avoid dynamically allocated port range for haproxy [#171](https://github.com/openshift/baremetal-runtimecfg/pull/171) * [Bug 2050288](https://bugzilla.redhat.com/show_bug.cgi?id=2050288): Add delay after sending bootstrap stop and start messages [#170](https://github.com/openshift/baremetal-runtimecfg/pull/170) * [Bug 1996573](https://bugzilla.redhat.com/show_bug.cgi?id=1996573): CoreDNS Corefile hosts - add support for dual-stack [#149](https://github.com/openshift/baremetal-runtimecfg/pull/149) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/c8b1456c0f0aa124490b47281557a1beaa5afcf1...c50d793ca33bd7d476b2b770d4f5d317b79b865b) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/3de49cf4459e63ca26ce3adb86a9f56ad2325272) * [Bug 2092264](https://bugzilla.redhat.com/show_bug.cgi?id=2092264): [inspect] Add namespace-scoped networking resources to inspect [#1158](https://github.com/openshift/oc/pull/1158) * [Bug 2052980](https://bugzilla.redhat.com/show_bug.cgi?id=2052980): bump(k8s.io/*) v0.21.9 [#1061](https://github.com/openshift/oc/pull/1061) * [Bug 2066760](https://bugzilla.redhat.com/show_bug.cgi?id=2066760): Add TMOUT env to debug node pod [#1095](https://github.com/openshift/oc/pull/1095) * [Bug 2039762](https://bugzilla.redhat.com/show_bug.cgi?id=2039762): Remove `git://` from new-app tests [#1023](https://github.com/openshift/oc/pull/1023) * [Bug 2053223](https://bugzilla.redhat.com/show_bug.cgi?id=2053223): Fix mirroring images that have dots in their namespace [#1069](https://github.com/openshift/oc/pull/1069) * [Bug 2038931](https://bugzilla.redhat.com/show_bug.cgi?id=2038931): properly handle --dry-run=server [#1017](https://github.com/openshift/oc/pull/1017) * [Bug 2004193](https://bugzilla.redhat.com/show_bug.cgi?id=2004193): Registry mirror panic [#926](https://github.com/openshift/oc/pull/926) * Add kevinrizza as catalog-approver [#921](https://github.com/openshift/oc/pull/921) * [Bug 1992639](https://bugzilla.redhat.com/show_bug.cgi?id=1992639): revert incorrect allowance of ssh:// prefix with scp styled URLs [#898](https://github.com/openshift/oc/pull/898) * [Bug 1974267](https://bugzilla.redhat.com/show_bug.cgi?id=1974267): make oc logs work with BuildConfig's JenkinsPipeline strategy [#867](https://github.com/openshift/oc/pull/867) * [Full changelog](https://github.com/openshift/oc/compare/1077b0516d5baf6f2717e4cb34f58236c0fb7a8c...3de49cf4459e63ca26ce3adb86a9f56ad2325272) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/c21a2f905948b8879c747da08cd8ed1c7091d43f) * [Bug 2058270](https://bugzilla.redhat.com/show_bug.cgi?id=2058270): Remove Azure mint mode support as Active Directory Graph API will be sunset [#454](https://github.com/openshift/cloud-credential-operator/pull/454) * [Bug 2027928](https://bugzilla.redhat.com/show_bug.cgi?id=2027928): pod-identity-webhook starts without tls [#429](https://github.com/openshift/cloud-credential-operator/pull/429) * [Bug 2027832](https://bugzilla.redhat.com/show_bug.cgi?id=2027832): Stop putting CCO in degraded state when stale credentials are found [#428](https://github.com/openshift/cloud-credential-operator/pull/428) * [Bug 2026098](https://bugzilla.redhat.com/show_bug.cgi?id=2026098): Check for aws status in infra platform status field before client setup [#425](https://github.com/openshift/cloud-credential-operator/pull/425) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/b8932e9fc555bc5bc356eddb3b48358caba72e92...c21a2f905948b8879c747da08cd8ed1c7091d43f) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/a180c2ab5c9b09746e984f4f6459b4e8cc06de82) * [Bug 2062591](https://bugzilla.redhat.com/show_bug.cgi?id=2062591): e2e: Pin Keycloack to the legacy variant [#557](https://github.com/openshift/cluster-authentication-operator/pull/557) * [Bug 1997906](https://bugzilla.redhat.com/show_bug.cgi?id=1997906): csr request: use generate names to prevent getting stuck waiting for a cert [#494](https://github.com/openshift/cluster-authentication-operator/pull/494) * [Bug 2003632](https://bugzilla.redhat.com/show_bug.cgi?id=2003632): manifests, bindata: explicitely set runAsUser for operator and operand [#484](https://github.com/openshift/cluster-authentication-operator/pull/484) * [Bug 2003946](https://bugzilla.redhat.com/show_bug.cgi?id=2003946): Deploy PDB to prevent more than one replica going unavailable [#488](https://github.com/openshift/cluster-authentication-operator/pull/488) * [Bug 1989587](https://bugzilla.redhat.com/show_bug.cgi?id=1989587): pkg/operator: Add deprecated stale status [#471](https://github.com/openshift/cluster-authentication-operator/pull/471) * [Bug 1979303](https://bugzilla.redhat.com/show_bug.cgi?id=1979303): clear encryption conditions when there is no work to be done [#467](https://github.com/openshift/cluster-authentication-operator/pull/467) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/0ec8dd7df4221f8f91af9ca0ad9f3a3f15f7b03a...a180c2ab5c9b09746e984f4f6459b4e8cc06de82) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/917d395f0483ba1b0f516283d9247c585039347a) * Updating ose-cluster-autoscaler-operator builder & base images to be consistent with ART [#193](https://github.com/openshift/cluster-autoscaler-operator/pull/193) * [Bug 2026237](https://bugzilla.redhat.com/show_bug.cgi?id=2026237): Change ClusterAutoscalerUnschedulablePods severity to info [#232](https://github.com/openshift/cluster-autoscaler-operator/pull/232) * [Bug 1995595](https://bugzilla.redhat.com/show_bug.cgi?id=1995595): add csidrivers and csistoragecapacities to autoscaler cluster role [#220](https://github.com/openshift/cluster-autoscaler-operator/pull/220) * [Bug 1991501](https://bugzilla.redhat.com/show_bug.cgi?id=1991501): Do not recreate CA deployment when CA CR is being deleted [#217](https://github.com/openshift/cluster-autoscaler-operator/pull/217) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/fdae5baad94f8b6a5b7a9077d5af8650f35c1e94...917d395f0483ba1b0f516283d9247c585039347a) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/117d47a29e9700088d81a3379a72a7d6d68668d1) * [Bug 2101000](https://bugzilla.redhat.com/show_bug.cgi?id=2101000): Uplift kustomize to remove go-getter dependency [#294](https://github.com/openshift/cluster-baremetal-operator/pull/294) * [OCPBUGS-1519](https://issues.redhat.com/browse/OCPBUGS-1519): [release-4.8] Fix a few papercuts [#293](https://github.com/openshift/cluster-baremetal-operator/pull/293) * Update with current OWNERS [#297](https://github.com/openshift/cluster-baremetal-operator/pull/297) * [Bug 2091748](https://bugzilla.redhat.com/show_bug.cgi?id=2091748): Fix interpretation of Deployment Status Conditions [#269](https://github.com/openshift/cluster-baremetal-operator/pull/269) * [Bug 2055279](https://bugzilla.redhat.com/show_bug.cgi?id=2055279): Calculating network stack only on supported Platforms [#248](https://github.com/openshift/cluster-baremetal-operator/pull/248) * [Bug 2000445](https://bugzilla.redhat.com/show_bug.cgi?id=2000445): Set LIVE_ISO_FORCE_PERSISTENT_BOOT_DEVICE=Never [#194](https://github.com/openshift/cluster-baremetal-operator/pull/194) * [Bug 1975711](https://bugzilla.redhat.com/show_bug.cgi?id=1975711): Only start static ip set if provisioning net not disabled [#166](https://github.com/openshift/cluster-baremetal-operator/pull/166) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/04a2ae214a8f6cea458b26a89b53190cf60fcad6...117d47a29e9700088d81a3379a72a7d6d68668d1) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/f32c07121bab6b6d37dee7bddd75ec9ae3973dc6) * [Bug 2081457](https://bugzilla.redhat.com/show_bug.cgi?id=2081457): bump API to fix ComponentRoutes TLD validation [#255](https://github.com/openshift/cluster-config-operator/pull/255) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/c1022410bf9a000e84d9764f8e8a5cfa35cfa452...f32c07121bab6b6d37dee7bddd75ec9ae3973dc6) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/ac8dcd9770b50b9b42a0d2c55a99a88747f956d2) * [Bug 2111446](https://bugzilla.redhat.com/show_bug.cgi?id=2111446): Add etcd pod liveness and readiness probes [#902](https://github.com/openshift/cluster-etcd-operator/pull/902) * [OCPBUGS-1230](https://issues.redhat.com/browse/OCPBUGS-1230): ensure healthy quorum before config update [#930](https://github.com/openshift/cluster-etcd-operator/pull/930) * [OCPBUGS-1307](https://issues.redhat.com/browse/OCPBUGS-1307): backport owners [#928](https://github.com/openshift/cluster-etcd-operator/pull/928) * [Bug 2008414](https://bugzilla.redhat.com/show_bug.cgi?id=2008414): pkg/operator/metriccontroller: read etcd-operator SA token rather than using prometheus [#665](https://github.com/openshift/cluster-etcd-operator/pull/665) * [Bug 1994483](https://bugzilla.redhat.com/show_bug.cgi?id=1994483): bindata/etcd: remove unix socket from advertised list [#642](https://github.com/openshift/cluster-etcd-operator/pull/642) * [Bug 1999777](https://bugzilla.redhat.com/show_bug.cgi?id=1999777): [release-4.8]: pkg/operator: add cluster backup upgrade controller [#652](https://github.com/openshift/cluster-etcd-operator/pull/652) * [Bug 1993800](https://bugzilla.redhat.com/show_bug.cgi?id=1993800): Bump library-go to include backoff fix of installers [#648](https://github.com/openshift/cluster-etcd-operator/pull/648) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/300bdf3949e155295313cb6ecdc58dc7ecf17632...ac8dcd9770b50b9b42a0d2c55a99a88747f956d2) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/4aa1e6f3e0321df1109672d2d105de5a8b913cb5) * [Bug 2074053](https://bugzilla.redhat.com/show_bug.cgi?id=2074053): Deployment annotations, runtimeClassName override and fs policy change [#767](https://github.com/openshift/cluster-image-registry-operator/pull/767) * [Bug 2067107](https://bugzilla.redhat.com/show_bug.cgi?id=2067107): Retry on pruner failures [#761](https://github.com/openshift/cluster-image-registry-operator/pull/761) * [Bug 2015098](https://bugzilla.redhat.com/show_bug.cgi?id=2015098): Avoid disruptions [#725](https://github.com/openshift/cluster-image-registry-operator/pull/725) * [Bug 2004028](https://bugzilla.redhat.com/show_bug.cgi?id=2004028): Update rolling update parameters [#717](https://github.com/openshift/cluster-image-registry-operator/pull/717) * [Bug 1973662](https://bugzilla.redhat.com/show_bug.cgi?id=1973662): Properly set custom tolerations [#696](https://github.com/openshift/cluster-image-registry-operator/pull/696) * Updating ose-cluster-image-registry-operator builder & base images to be consistent with ART [#673](https://github.com/openshift/cluster-image-registry-operator/pull/673) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/f09049a3e23f5497b0319a4e06f86b4c33400305...4aa1e6f3e0321df1109672d2d105de5a8b913cb5) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/7163d38a50c505c1289bccf72d62b02e17d25c47) * [Bug 2084337](https://bugzilla.redhat.com/show_bug.cgi?id=2084337): Fix enabling PROXY protocol on an upgraded cluster [#758](https://github.com/openshift/cluster-ingress-operator/pull/758) * [Bug 2066302](https://bugzilla.redhat.com/show_bug.cgi?id=2066302): Disable keepalive for canary probe [#726](https://github.com/openshift/cluster-ingress-operator/pull/726) * [Bug 2017708](https://bugzilla.redhat.com/show_bug.cgi?id=2017708): Change default balancing algorithm to "leastconn" [#670](https://github.com/openshift/cluster-ingress-operator/pull/670) * [Bug 1998103](https://bugzilla.redhat.com/show_bug.cgi?id=1998103): cleanup condition metrics for deleted ingress controllers [#649](https://github.com/openshift/cluster-ingress-operator/pull/649) * [Bug 2000414](https://bugzilla.redhat.com/show_bug.cgi?id=2000414): Configure router to use "source" for passthrough [#651](https://github.com/openshift/cluster-ingress-operator/pull/651) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/e9e62957e31cc5fd2166c4c6aeb164c426a90fed...7163d38a50c505c1289bccf72d62b02e17d25c47) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/25c54939bdd02bc8e68f1329fa3ebe16904b3282) * [Bug 2026089](https://bugzilla.redhat.com/show_bug.cgi?id=2026089): library-go bump [#1320](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1320) * [Bug 2016213](https://bugzilla.redhat.com/show_bug.cgi?id=2016213): Exempt metrics scrapes from APF. [#1247](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1247) * [Bug 2012010](https://bugzilla.redhat.com/show_bug.cgi?id=2012010): alerts: give exact oc get apirequestcounts command in APIRemovedInNextReleaseInUse alert [#1241](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1241) * [Bug 2001244](https://bugzilla.redhat.com/show_bug.cgi?id=2001244): Enforce OpenShift's defined kubelet version skew policies [#1224](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1224) * [Bug 1993800](https://bugzilla.redhat.com/show_bug.cgi?id=1993800): bump(library-go): staticpod/installer: fix backoff of installers [#1214](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1214) * [Bug 1979303](https://bugzilla.redhat.com/show_bug.cgi?id=1979303): clear encryption conditions when there is no work to be done [#1188](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1188) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/755f9a04386d64e63030024d225169dcb93bf5c5...25c54939bdd02bc8e68f1329fa3ebe16904b3282) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/7fa48ebf34e8c810ce8cbe8b62a4e10a7326856c) * [Bug 1993800](https://bugzilla.redhat.com/show_bug.cgi?id=1993800): Bump library-go to include backoff fix of installers [#560](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/560) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/9dc35db7ecc27c5807b5d9b9d1e1de3080416a09...7fa48ebf34e8c810ce8cbe8b62a4e10a7326856c) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/1b3b34440de93395c46c7a6526be9870e8914ce8) * [Bug 2026110](https://bugzilla.redhat.com/show_bug.cgi?id=2026110): Disable balancedAllocation and add weight for HighNodeUtilization profile [#380](https://github.com/openshift/cluster-kube-scheduler-operator/pull/380) * [Bug 1993800](https://bugzilla.redhat.com/show_bug.cgi?id=1993800): Bump library-go to include backoff fix of installers [#366](https://github.com/openshift/cluster-kube-scheduler-operator/pull/366) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/170a5a66d6788179e23fa3529a7d5f76ee33caae...1b3b34440de93395c46c7a6526be9870e8914ce8) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/50c639cc7e318c1dab38a2869b928cf703a38515) * [Bug 2022844](https://bugzilla.redhat.com/show_bug.cgi?id=2022844): Extensive number of requests from storage version operator in cluster – Part 4 [#79](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/79) * [Bug 2022844](https://bugzilla.redhat.com/show_bug.cgi?id=2022844): Extensive number of requests from storage version operator in cluster – Part 1 [#78](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/78) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/c4f4f8bbfc87b9fe057de2a05e484387eea1fddb...50c639cc7e318c1dab38a2869b928cf703a38515) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/f0a396eee469a3ace9e473c0476a29d8983671eb) * [Bug 2031047](https://bugzilla.redhat.com/show_bug.cgi?id=2031047): Ensure pending CSR count is valid post approval [#146](https://github.com/openshift/cluster-machine-approver/pull/146) * [Bug 2032092](https://bugzilla.redhat.com/show_bug.cgi?id=2032092): Replace certificates with generated certificates [#148](https://github.com/openshift/cluster-machine-approver/pull/148) * [Bug 2024689](https://bugzilla.redhat.com/show_bug.cgi?id=2024689): Allow fallback to serving cert renewal accounting for egress IPs on SDN [#142](https://github.com/openshift/cluster-machine-approver/pull/142) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/724abd216ea546671fbfa4c9060180ff1619c85a...f0a396eee469a3ace9e473c0476a29d8983671eb) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/2c4ac8dbd9316343d2101dbdabc6b6742ee41274) * [OCPBUGS-1098](https://issues.redhat.com/browse/OCPBUGS-1098): Give precedence to CMO config map proxy config [#1765](https://github.com/openshift/cluster-monitoring-operator/pull/1765) * [OCPBUGS-644](https://issues.redhat.com/browse/OCPBUGS-644): grafana: bump to 7.5.11 [#1754](https://github.com/openshift/cluster-monitoring-operator/pull/1754) * [Bug 2030698](https://bugzilla.redhat.com/show_bug.cgi?id=2030698): KubePodCrashLooping may fire when pod is not in CrashLoopBackOff [#1619](https://github.com/openshift/cluster-monitoring-operator/pull/1619) * [Bug 2039538](https://bugzilla.redhat.com/show_bug.cgi?id=2039538): Add custom profile metric for Node Tuning Operator to telemetry [#1565](https://github.com/openshift/cluster-monitoring-operator/pull/1565) * [Bug 2018431](https://bugzilla.redhat.com/show_bug.cgi?id=2018431): [4.8] add kube_persistentvolumeclaim_labels and kube_persistentvolume_labels [#1459](https://github.com/openshift/cluster-monitoring-operator/pull/1459) * [Bug 2012039](https://bugzilla.redhat.com/show_bug.cgi?id=2012039): Allow namespace label in metric allow list [#1436](https://github.com/openshift/cluster-monitoring-operator/pull/1436) * [Bug 2005205](https://bugzilla.redhat.com/show_bug.cgi?id=2005205): improve update and status reporting 4.8 [#1428](https://github.com/openshift/cluster-monitoring-operator/pull/1428) * Revert "Bug 1999057: jsonnet: Sync with kube-prometheus" [#1394](https://github.com/openshift/cluster-monitoring-operator/pull/1394) * [Bug 1999057](https://bugzilla.redhat.com/show_bug.cgi?id=1999057): jsonnet: Sync with kube-prometheus [#1360](https://github.com/openshift/cluster-monitoring-operator/pull/1360) * [Bug 1997497](https://bugzilla.redhat.com/show_bug.cgi?id=1997497): Backport etcd telemetry [#1344](https://github.com/openshift/cluster-monitoring-operator/pull/1344) * [Bug 1995699](https://bugzilla.redhat.com/show_bug.cgi?id=1995699): Get insights on series churn during upgrades [#1349](https://github.com/openshift/cluster-monitoring-operator/pull/1349) * [Bug 1999148](https://bugzilla.redhat.com/show_bug.cgi?id=1999148): alert: ClusterMonitoringOperatorReconciliationErrors: reduce range du… [#1351](https://github.com/openshift/cluster-monitoring-operator/pull/1351) * [Bug 1991836](https://bugzilla.redhat.com/show_bug.cgi?id=1991836): Revise Alert Severity in OCP 4.8 [#1342](https://github.com/openshift/cluster-monitoring-operator/pull/1342) * [Bug 1984753](https://bugzilla.redhat.com/show_bug.cgi?id=1984753): jsonnet: Sync with kube-prometheus [#1323](https://github.com/openshift/cluster-monitoring-operator/pull/1323) * [Bug 1978208](https://bugzilla.redhat.com/show_bug.cgi?id=1978208): Sync dependencies for 4.8 release backports [#1264](https://github.com/openshift/cluster-monitoring-operator/pull/1264) * [Bug 1982778](https://bugzilla.redhat.com/show_bug.cgi?id=1982778): jsonnet: thanosquery: Use HTTP probes as opposed to exec [#1289](https://github.com/openshift/cluster-monitoring-operator/pull/1289) * [Bug 1976765](https://bugzilla.redhat.com/show_bug.cgi?id=1976765): Update AlertmanagerMembersInconsistent rule [#1283](https://github.com/openshift/cluster-monitoring-operator/pull/1283) * [Bug 1988991](https://bugzilla.redhat.com/show_bug.cgi?id=1988991): pkg/client/client.go: Add retry logic for daemonset create [#1309](https://github.com/openshift/cluster-monitoring-operator/pull/1309) * [Bug 1982369](https://bugzilla.redhat.com/show_bug.cgi?id=1982369): Fix deployment update with retry option [#1285](https://github.com/openshift/cluster-monitoring-operator/pull/1285) * [Bug 1981246](https://bugzilla.redhat.com/show_bug.cgi?id=1981246): [4.8]: Add HighlyAvailableWorkloadIncorrectlySpread alert [#1276](https://github.com/openshift/cluster-monitoring-operator/pull/1276) * [Bug 1943565](https://bugzilla.redhat.com/show_bug.cgi?id=1943565): ThanosSidecarUnhealthy will never fire if the sidecar is never healthy [#1265](https://github.com/openshift/cluster-monitoring-operator/pull/1265) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/5cfe241fab94c593c64d77718c6fb11e9498fb50...2c4ac8dbd9316343d2101dbdabc6b6742ee41274) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/596a3c13b20c9ed09456cd09d02ec9f695851868) * [Bug 2092264](https://bugzilla.redhat.com/show_bug.cgi?id=2092264): Cleanup CNO relatedObjects [#1469](https://github.com/openshift/cluster-network-operator/pull/1469) * [Bug 2084366](https://bugzilla.redhat.com/show_bug.cgi?id=2084366): ovn: try to gracefully terminate ovn-northd [#1438](https://github.com/openshift/cluster-network-operator/pull/1438) * [Bug 2090000](https://bugzilla.redhat.com/show_bug.cgi?id=2090000): Reserve port TCP/9104 for cluster-network-operator [#1457](https://github.com/openshift/cluster-network-operator/pull/1457) * Adds dougbtv to owners [release-4.8] [#1403](https://github.com/openshift/cluster-network-operator/pull/1403) * [Bug 2058674](https://bugzilla.redhat.com/show_bug.cgi?id=2058674): ip-reconciler cronjob specification requires hostnetwork, api-int lb usage & proper backoff [backport 4.8] [#1324](https://github.com/openshift/cluster-network-operator/pull/1324) * [Bug 2038295](https://bugzilla.redhat.com/show_bug.cgi?id=2038295): Backport 4.8 OVN drop icmp frag from other nodes on Azure cluster [#1274](https://github.com/openshift/cluster-network-operator/pull/1274) * [Bug 2068895](https://bugzilla.redhat.com/show_bug.cgi?id=2068895): Do not apply OVN-Kubernetes PodDisruptionBudget on single-node clusters [#1351](https://github.com/openshift/cluster-network-operator/pull/1351) * [release 4.8] Updates owners [#1334](https://github.com/openshift/cluster-network-operator/pull/1334) * [Bug 2054642](https://bugzilla.redhat.com/show_bug.cgi?id=2054642): sbdb and nbdb containers leave pid around if they restarted or crashed [#1310](https://github.com/openshift/cluster-network-operator/pull/1310) * [Bug 2023426](https://bugzilla.redhat.com/show_bug.cgi?id=2023426): Add ip6tables NOTRACK rules for udp/6081 [#1228](https://github.com/openshift/cluster-network-operator/pull/1228) * [Bug 2021221](https://bugzilla.redhat.com/show_bug.cgi?id=2021221): ovnkube: set ovn-controller lflow cache limit to 1GB [#1278](https://github.com/openshift/cluster-network-operator/pull/1278) * [Bug 2034352](https://bugzilla.redhat.com/show_bug.cgi?id=2034352): Whereabouts IP Reconciliaton [backport 4.8] [#1265](https://github.com/openshift/cluster-network-operator/pull/1265) * [Bug 2022747](https://bugzilla.redhat.com/show_bug.cgi?id=2022747): Allow to use proxy to connect to OSP cloud [#1225](https://github.com/openshift/cluster-network-operator/pull/1225) * [Bug 2037500](https://bugzilla.redhat.com/show_bug.cgi?id=2037500): Bump openshift/build-machinery-go [#1271](https://github.com/openshift/cluster-network-operator/pull/1271) * [Bug 2029590](https://bugzilla.redhat.com/show_bug.cgi?id=2029590): Set upgrade strategy on kube-proxy #1244 [#1244](https://github.com/openshift/cluster-network-operator/pull/1244) * [Bug 2018513](https://bugzilla.redhat.com/show_bug.cgi?id=2018513): ovnkube: use ovn-nbctl daemon monitor mode to restart and log issues [#1211](https://github.com/openshift/cluster-network-operator/pull/1211) * [Bug 2008589](https://bugzilla.redhat.com/show_bug.cgi?id=2008589): [4.8z] Slow OVN Recovery on SNO [#1200](https://github.com/openshift/cluster-network-operator/pull/1200) * [Bug 1985308](https://bugzilla.redhat.com/show_bug.cgi?id=1985308): Add a newline between user CAs and system CAs [#1162](https://github.com/openshift/cluster-network-operator/pull/1162) * [Bug 1990928](https://bugzilla.redhat.com/show_bug.cgi?id=1990928): [Backport 4.8] Whereabouts should have RBAC for leases [#1185](https://github.com/openshift/cluster-network-operator/pull/1185) * [Bug 1985588](https://bugzilla.redhat.com/show_bug.cgi?id=1985588): Update service network status to reflect dual stack entries [#1164](https://github.com/openshift/cluster-network-operator/pull/1164) * [Bug 1987046](https://bugzilla.redhat.com/show_bug.cgi?id=1987046): Add pre-puller ds to reduce upgrade downtime [#1167](https://github.com/openshift/cluster-network-operator/pull/1167) * [Bug 1988425](https://bugzilla.redhat.com/show_bug.cgi?id=1988425): Change to use mountPath: /host [#1169](https://github.com/openshift/cluster-network-operator/pull/1169) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/a5ebd1ebc3549acb84c74145612460f416788e21...596a3c13b20c9ed09456cd09d02ec9f695851868) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/9e185d59cfbb4dd083c0ae3c82014aea110697b3) * [Bug 2018053](https://bugzilla.redhat.com/show_bug.cgi?id=2018053): tuned: add timeout and restarts [#286](https://github.com/openshift/cluster-node-tuning-operator/pull/286) * [Bug 2013678](https://bugzilla.redhat.com/show_bug.cgi?id=2013678): TuneD: workaround for high CPU utilization of [scheduler] plug-in. [#280](https://github.com/openshift/cluster-node-tuning-operator/pull/280) * [Bug 1998120](https://bugzilla.redhat.com/show_bug.cgi?id=1998120): Add a cgroup blacklisting rule to parent openshift profile. [#266](https://github.com/openshift/cluster-node-tuning-operator/pull/266) * [Bug 1999608](https://bugzilla.redhat.com/show_bug.cgi?id=1999608): Reload when deps of recommended profile change. [#268](https://github.com/openshift/cluster-node-tuning-operator/pull/268) * [Bug 1986992](https://bugzilla.redhat.com/show_bug.cgi?id=1986992): Handle kube-apiserver disruption more gracefully. [#257](https://github.com/openshift/cluster-node-tuning-operator/pull/257) * [Bug 1985908](https://bugzilla.redhat.com/show_bug.cgi?id=1985908): scheduler: new option cgroup_ps_blacklist [#254](https://github.com/openshift/cluster-node-tuning-operator/pull/254) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/6be3f671b023377ef0e71fd60d2c57dfb0e25afa...9e185d59cfbb4dd083c0ae3c82014aea110697b3) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/7f0e9b6659949421100469e3af399888cca7042e) * [Bug 2052097](https://bugzilla.redhat.com/show_bug.cgi?id=2052097): global pull secret not working in OCP4.7.4+ for additio… [#493](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/493) * [Bug 2003946](https://bugzilla.redhat.com/show_bug.cgi?id=2003946): Deploy PDB to prevent more than one replica going unavailable [#473](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/473) * [Bug 1994655](https://bugzilla.redhat.com/show_bug.cgi?id=1994655): apiservice-controller: don't update the failing condition when an operator has been requested to shutdown [#482](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/482) * [Bug 1996044](https://bugzilla.redhat.com/show_bug.cgi?id=1996044): bindata: run openshift-apiserver as root explicitly. [#467](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/467) * [Bug 1979303](https://bugzilla.redhat.com/show_bug.cgi?id=1979303): clear encryption conditions when there is no work to be done [#463](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/463) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/683d00484fe517206404fdf47f509e82837bc3a8...7f0e9b6659949421100469e3af399888cca7042e) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/2c97085fae78fba46c2808bf03a0128180f2c1e4) * [Bug 2103447](https://bugzilla.redhat.com/show_bug.cgi?id=2103447): Add missing ibm cloud annotations to prometheus rbac [#295](https://github.com/openshift/cluster-storage-operator/pull/295) * [Bug 2034270](https://bugzilla.redhat.com/show_bug.cgi?id=2034270): Add trusted CA bundle to vsphere operators [#249](https://github.com/openshift/cluster-storage-operator/pull/249) * [Bug 1996672](https://bugzilla.redhat.com/show_bug.cgi?id=1996672): Add proxy support to cinder CSI [#210](https://github.com/openshift/cluster-storage-operator/pull/210) * [Bug 1986026](https://bugzilla.redhat.com/show_bug.cgi?id=1986026): Manila CSI driver is not in must-gather [#192](https://github.com/openshift/cluster-storage-operator/pull/192) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/0775fb674e3b8579c95195faeee0606b76adbf7c...2c97085fae78fba46c2808bf03a0128180f2c1e4) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/c3bd0d0d0b1837f1b8893ce24971b943c7fbeb18) * [Bug 2109962](https://bugzilla.redhat.com/show_bug.cgi?id=2109962): pkg/cvo: retain initial completed update history entry [#803](https://github.com/openshift/cluster-version-operator/pull/803) * [Bug 2047434](https://bugzilla.redhat.com/show_bug.cgi?id=2047434): Changing the ClusterNotUpgradeable alert to info [#731](https://github.com/openshift/cluster-version-operator/pull/731) * [Bug 2038936](https://bugzilla.redhat.com/show_bug.cgi?id=2038936): *: Use --v=2 logging to drop client-side throttling noise [#724](https://github.com/openshift/cluster-version-operator/pull/724) * [Bug 1982683](https://bugzilla.redhat.com/show_bug.cgi?id=1982683): [release-4.8] Respect noProxy [#691](https://github.com/openshift/cluster-version-operator/pull/691) * [Bug 2025955](https://bugzilla.redhat.com/show_bug.cgi?id=2025955): Removing the extra indentation [#696](https://github.com/openshift/cluster-version-operator/pull/696) * [Bug 2015025](https://bugzilla.redhat.com/show_bug.cgi?id=2015025): lib/resourcemerge/imagestream.go: Copy all data for new tag reference [#679](https://github.com/openshift/cluster-version-operator/pull/679) * [Bug 2011954](https://bugzilla.redhat.com/show_bug.cgi?id=2011954): pkg/cvo/upgradeable: Include messages for multiple-reason Upgradeable=False [#672](https://github.com/openshift/cluster-version-operator/pull/672) * [Bug 1999092](https://bugzilla.redhat.com/show_bug.cgi?id=1999092): Add and enable admin ack Upgradeable condition gate [#647](https://github.com/openshift/cluster-version-operator/pull/647) * [Bug 1999777](https://bugzilla.redhat.com/show_bug.cgi?id=1999777): Ensure recent etcd backup before allowing minor-version updates [#649](https://github.com/openshift/cluster-version-operator/pull/649) * [Bug 1980411](https://bugzilla.redhat.com/show_bug.cgi?id=1980411): [release-4.8] pkg/cvo/egress: Load HTTPS proxy from Proxy status [#627](https://github.com/openshift/cluster-version-operator/pull/627) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/ea6e779ef89710879e2c08c0e5847a5b5e860b28...c3bd0d0d0b1837f1b8893ce24971b943c7fbeb18) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/0d221296e3918abc3c1367a1e7c220baf000965a) * Updating configmap-reload builder & base images to be consistent with ART [#32](https://github.com/openshift/configmap-reload/pull/32) * [Full changelog](https://github.com/openshift/configmap-reload/compare/abc5c26e2e5034639f271a2b4f360b581da2a17d...0d221296e3918abc3c1367a1e7c220baf000965a) ### [console](https://github.com/openshift/console/tree/afa51a75b2c0dc45f104b57b7a677eadd0e0a8c9) * [OCPBUGS-1314](https://issues.redhat.com/browse/OCPBUGS-1314): use the correct Alertmanager tenancy proxy [#12036](https://github.com/openshift/console/pull/12036) * [OCPBUGS-1455](https://issues.redhat.com/browse/OCPBUGS-1455): show Limit exceeded state for large number of nodes in topology [#12060](https://github.com/openshift/console/pull/12060) * [Bug 2112999](https://bugzilla.redhat.com/show_bug.cgi?id=2112999): Replace sum_irate with sum_rate for Deployments CPU graph [#11917](https://github.com/openshift/console/pull/11917) * [OCPBUGS-604](https://issues.redhat.com/browse/OCPBUGS-604): Backport CI test fix to previous releases [#11990](https://github.com/openshift/console/pull/11990) * [Bug 2088756](https://bugzilla.redhat.com/show_bug.cgi?id=2088756): Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls [#11539](https://github.com/openshift/console/pull/11539) * [Bug 2092767](https://bugzilla.redhat.com/show_bug.cgi?id=2092767): Set dashboards timeout based on selected timespan [#11628](https://github.com/openshift/console/pull/11628) * [Bug 2089725](https://bugzilla.redhat.com/show_bug.cgi?id=2089725): Eliminate use of lookaside cache and move to Cachito [#11573](https://github.com/openshift/console/pull/11573) * [Bug 2079436](https://bugzilla.redhat.com/show_bug.cgi?id=2079436): Pipeline metrics: use prometheus-tenancy API to get data [#11409](https://github.com/openshift/console/pull/11409) * [Bug 2066365](https://bugzilla.redhat.com/show_bug.cgi?id=2066365): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11271](https://github.com/openshift/console/pull/11271) * [Bug 2060450](https://bugzilla.redhat.com/show_bug.cgi?id=2060450): Fix that the preferred namespace was not selected when it contains just numbers [#11134](https://github.com/openshift/console/pull/11134) * [Bug 2055132](https://bugzilla.redhat.com/show_bug.cgi?id=2055132): Fix TypeError when application has HelmRelease [#11069](https://github.com/openshift/console/pull/11069) * [Bug 2060616](https://bugzilla.redhat.com/show_bug.cgi?id=2060616): Add error boundary in edit-flows [#11137](https://github.com/openshift/console/pull/11137) * [Bug 2061266](https://bugzilla.redhat.com/show_bug.cgi?id=2061266): Update e2e test to use 3scale operator to increase test stability [#11141](https://github.com/openshift/console/pull/11141) * [Bug 2046215](https://bugzilla.redhat.com/show_bug.cgi?id=2046215): Filter superseded helm secrets and fix firehose to support partial metadata [#10936](https://github.com/openshift/console/pull/10936) * [Bug 2045592](https://bugzilla.redhat.com/show_bug.cgi?id=2045592): Check if name label exists before comparing [#10929](https://github.com/openshift/console/pull/10929) * [Bug 2048900](https://bugzilla.redhat.com/show_bug.cgi?id=2048900): Fix knative function label cherry pick [#10987](https://github.com/openshift/console/pull/10987) * [Bug 2045051](https://bugzilla.redhat.com/show_bug.cgi?id=2045051): Add subject name selector field to SinkBinding form [#10925](https://github.com/openshift/console/pull/10925) * [Bug 2046051](https://bugzilla.redhat.com/show_bug.cgi?id=2046051): Add support for fetching partial metadata and fix helm list page crash [#10932](https://github.com/openshift/console/pull/10932) * [Bug 2004086](https://bugzilla.redhat.com/show_bug.cgi?id=2004086): Add name field in edit deployment form [#10873](https://github.com/openshift/console/pull/10873) * [Bug 2046043](https://bugzilla.redhat.com/show_bug.cgi?id=2046043): Topology performance: Do not fetch HPA for each Deployment (Pod Ring) [#10931](https://github.com/openshift/console/pull/10931) * [Bug 2008141](https://bugzilla.redhat.com/show_bug.cgi?id=2008141): Allow web terminal to be installed in any namespace [#10134](https://github.com/openshift/console/pull/10134) * [Bug 2019301](https://bugzilla.redhat.com/show_bug.cgi?id=2019301): Check for resource in ServiceBinding spec's service reference [#10376](https://github.com/openshift/console/pull/10376) * [Bug 2018064](https://bugzilla.redhat.com/show_bug.cgi?id=2018064): fix dev-catalog stuck in loading state [#10346](https://github.com/openshift/console/pull/10346) * [Bug 2044571](https://bugzilla.redhat.com/show_bug.cgi?id=2044571): Update CRW operator name to fix failing e2e tests [#10918](https://github.com/openshift/console/pull/10918) * [Bug 2036045](https://bugzilla.redhat.com/show_bug.cgi?id=2036045): fix resource limit form validation [#10788](https://github.com/openshift/console/pull/10788) * [Bug 2034640](https://bugzilla.redhat.com/show_bug.cgi?id=2034640): cant delete VM with un-owned pvc attached [#10718](https://github.com/openshift/console/pull/10718) * [Bug 2030443](https://bugzilla.redhat.com/show_bug.cgi?id=2030443): Fix ClusterOperators link [#10638](https://github.com/openshift/console/pull/10638) * [Bug 2024206](https://bugzilla.redhat.com/show_bug.cgi?id=2024206): Fix resource metrics 403 errors for project admin users [#10496](https://github.com/openshift/console/pull/10496) * [Bug 2026950](https://bugzilla.redhat.com/show_bug.cgi?id=2026950): Fix autofocus on pf select component for search resource dropdown [#10577](https://github.com/openshift/console/pull/10577) * [Bug 2017469](https://bugzilla.redhat.com/show_bug.cgi?id=2017469): key not a valid prop name causing display issue in env editor [#10419](https://github.com/openshift/console/pull/10419) * [Bug 2009224](https://bugzilla.redhat.com/show_bug.cgi?id=2009224): Regular user cannot restore VM snapshot [#10436](https://github.com/openshift/console/pull/10436) * [Bug 2020162](https://bugzilla.redhat.com/show_bug.cgi?id=2020162): PVC is deleted along with VM even with "Delete Disks" unchecked [#10399](https://github.com/openshift/console/pull/10399) * [Bug 2017326](https://bugzilla.redhat.com/show_bug.cgi?id=2017326): Update PatternFly/react-console [#10384](https://github.com/openshift/console/pull/10384) * [Bug 1984102](https://bugzilla.redhat.com/show_bug.cgi?id=1984102): Switch Cypress OLM tests to use supported Red Hat operators [#9560](https://github.com/openshift/console/pull/9560) * [Bug 2005871](https://bugzilla.redhat.com/show_bug.cgi?id=2005871): Cannot create Network Attachment Definition through UI [#10314](https://github.com/openshift/console/pull/10314) * [Bug 1997901](https://bugzilla.redhat.com/show_bug.cgi?id=1997901): Cannot delete user created vm template [#10367](https://github.com/openshift/console/pull/10367) * [Bug 2001212](https://bugzilla.redhat.com/show_bug.cgi?id=2001212): Notifications is not translated on the top right bar [#10040](https://github.com/openshift/console/pull/10040) * [Bug 2002649](https://bugzilla.redhat.com/show_bug.cgi?id=2002649): Fix SerialConsole display bug [#10034](https://github.com/openshift/console/pull/10034) * [Bug 1994983](https://bugzilla.redhat.com/show_bug.cgi?id=1994983): use strict promoted template list [#9824](https://github.com/openshift/console/pull/9824) * [Bug 1977659](https://bugzilla.redhat.com/show_bug.cgi?id=1977659): Adjusting to new reference models changes - cherry-picked rls 4.8 [#9379](https://github.com/openshift/console/pull/9379) * [Bug 2013091](https://bugzilla.redhat.com/show_bug.cgi?id=2013091): adds check for status in ksvc in util logic [#10211](https://github.com/openshift/console/pull/10211) * [Bug 1998692](https://bugzilla.redhat.com/show_bug.cgi?id=1998692): Normal user cannot create VM because it cannot access v2v-vmware [#10171](https://github.com/openshift/console/pull/10171) * (4.8 Backport) Bug 1981416: Change OCM links from cloud. to console.redhat.com [#9470](https://github.com/openshift/console/pull/9470) * [Bug 2010076](https://bugzilla.redhat.com/show_bug.cgi?id=2010076): Update prow setup v4.8 [#10168](https://github.com/openshift/console/pull/10168) * [Bug 1999717](https://bugzilla.redhat.com/show_bug.cgi?id=1999717): Block and File and Object dashboards should not be part of OCP Console for ODF Managed Services [#9952](https://github.com/openshift/console/pull/9952) * [Bug 2005917](https://bugzilla.redhat.com/show_bug.cgi?id=2005917): CONSOLE-2152: Improve upgrade messaging when ClusterVersion Upgradeable=False [#10103](https://github.com/openshift/console/pull/10103) * [Bug 1993236](https://bugzilla.redhat.com/show_bug.cgi?id=1993236): Do not drop environment variables without name but with a value, also fix crash when ref is empty [#9799](https://github.com/openshift/console/pull/9799) * [Bug 2000474](https://bugzilla.redhat.com/show_bug.cgi?id=2000474): Create BuildConfig webhook secrets before creating knative resources [#9970](https://github.com/openshift/console/pull/9970) * [Bug 1996758](https://bugzilla.redhat.com/show_bug.cgi?id=1996758): Update Resource Dropdown Tech preview text [Release-4.8] [#9838](https://github.com/openshift/console/pull/9838) * [Bug 1990141](https://bugzilla.redhat.com/show_bug.cgi?id=1990141): Console overview operators shown upgrading when still waiting on approval [#9732](https://github.com/openshift/console/pull/9732) * [Bug 1995118](https://bugzilla.redhat.com/show_bug.cgi?id=1995118): Virtualization is not available in Home Overview [#9826](https://github.com/openshift/console/pull/9826) * [Bug 1999931](https://bugzilla.redhat.com/show_bug.cgi?id=1999931): move event sources add option to serverless add group [#9958](https://github.com/openshift/console/pull/9958) * [Bug 1984367](https://bugzilla.redhat.com/show_bug.cgi?id=1984367): OCS deployment using Multus: UI allows StorageCluster creation with empty public and cluster network in "Internal - Attached Devices" [#9566](https://github.com/openshift/console/pull/9566) * [Bug 1992720](https://bugzilla.redhat.com/show_bug.cgi?id=1992720): Update Ingress to v1 API version [#9788](https://github.com/openshift/console/pull/9788) * [Bug 1983644](https://bugzilla.redhat.com/show_bug.cgi?id=1983644): Add a TechPreviewBadge for Multus [#9539](https://github.com/openshift/console/pull/9539) * [Bug 1972987](https://bugzilla.redhat.com/show_bug.cgi?id=1972987): chore(i18n): update translations [#9284](https://github.com/openshift/console/pull/9284) * [Bug 1982458](https://bugzilla.redhat.com/show_bug.cgi?id=1982458): Remove kube admin notifier for kubeadmin crc user [#9516](https://github.com/openshift/console/pull/9516) * [Bug 1985193](https://bugzilla.redhat.com/show_bug.cgi?id=1985193): Add create resource extension [#9601](https://github.com/openshift/console/pull/9601) * [Bug 1989798](https://bugzilla.redhat.com/show_bug.cgi?id=1989798): Fix previously deleted dragged files that show up in import yaml editor [#9718](https://github.com/openshift/console/pull/9718) * [Bug 1985081](https://bugzilla.redhat.com/show_bug.cgi?id=1985081): Fix Pipeline Download All [#9596](https://github.com/openshift/console/pull/9596) * [Bug 1987167](https://bugzilla.redhat.com/show_bug.cgi?id=1987167): Add inspect url to devconsole monitoring chart [#9671](https://github.com/openshift/console/pull/9671) * [Bug 1972258](https://bugzilla.redhat.com/show_bug.cgi?id=1972258): adds check for kamelet source in provider [#9254](https://github.com/openshift/console/pull/9254) * [Bug 1971911](https://bugzilla.redhat.com/show_bug.cgi?id=1971911): Do not render samples column and helm link when add page customization disabled them [#9240](https://github.com/openshift/console/pull/9240) * [Bug 1976144](https://bugzilla.redhat.com/show_bug.cgi?id=1976144): fix optional workspace checkbox check/uncheck [#9343](https://github.com/openshift/console/pull/9343) * [Bug 1984242](https://bugzilla.redhat.com/show_bug.cgi?id=1984242): filter null yaml objects before validating to prevent undefined exception [#9565](https://github.com/openshift/console/pull/9565) * [Bug 1973696](https://bugzilla.redhat.com/show_bug.cgi?id=1973696): Fix time range issue for devconsole monitoring dashboard [#9298](https://github.com/openshift/console/pull/9298) * [Bug 1986581](https://bugzilla.redhat.com/show_bug.cgi?id=1986581): Web console doesn't list all the registries credentials in a secret [#9651](https://github.com/openshift/console/pull/9651) * [Bug 1985356](https://bugzilla.redhat.com/show_bug.cgi?id=1985356): Check for nonexistent CSVs in installed block [#9735](https://github.com/openshift/console/pull/9735) * [Bug 1989152](https://bugzilla.redhat.com/show_bug.cgi?id=1989152): [Release-4.8] Use specific release for files used in e2e tests [#9700](https://github.com/openshift/console/pull/9700) * [Bug 1982246](https://bugzilla.redhat.com/show_bug.cgi?id=1982246): Skip empty categories (id and label) in OperatorHub tab view [#9509](https://github.com/openshift/console/pull/9509) * [Bug 1980136](https://bugzilla.redhat.com/show_bug.cgi?id=1980136): Add cypress tests for key/value secrets with binary, ascii, and unicode values. [#9439](https://github.com/openshift/console/pull/9439) * [Bug 1978043](https://bugzilla.redhat.com/show_bug.cgi?id=1978043): Monitoring dashboards: Dropdowns default to "All" if present [#9388](https://github.com/openshift/console/pull/9388) * [Bug 1976008](https://bugzilla.redhat.com/show_bug.cgi?id=1976008): Monitoring dashboards: Custom time range fixes [#9342](https://github.com/openshift/console/pull/9342) * [Bug 1975559](https://bugzilla.redhat.com/show_bug.cgi?id=1975559): Fix typo in olm message [#9334](https://github.com/openshift/console/pull/9334) * [Bug 1972478](https://bugzilla.redhat.com/show_bug.cgi?id=1972478): improve failure alert for copied CSV [#9266](https://github.com/openshift/console/pull/9266) * [Bug 1986955](https://bugzilla.redhat.com/show_bug.cgi?id=1986955): Fix to persist YAML Editor success message [#9664](https://github.com/openshift/console/pull/9664) * [Bug 1982221](https://bugzilla.redhat.com/show_bug.cgi?id=1982221): Increase HTTP plugin proxy request timeout [#9506](https://github.com/openshift/console/pull/9506) * [Bug 1977782](https://bugzilla.redhat.com/show_bug.cgi?id=1977782): Preserve user annotations while editing an app [#9381](https://github.com/openshift/console/pull/9381) * [Full changelog](https://github.com/openshift/console/compare/15b7934e4f94c567e02e8143cf298c038eeb7cd8...afa51a75b2c0dc45f104b57b7a677eadd0e0a8c9) ### [console-operator](https://github.com/openshift/console-operator/tree/2bee8bd9b1c9ad46015f4e0ff13b6b5ce09fd2b6) * [Bug 2071200](https://bugzilla.redhat.com/show_bug.cgi?id=2071200): Fix setting of custom cert for default route [#643](https://github.com/openshift/console-operator/pull/643) * [Bug 2008141](https://bugzilla.redhat.com/show_bug.cgi?id=2008141): Change web terminal subscription permissions from get to list [#595](https://github.com/openshift/console-operator/pull/595) * [Bug 2041359](https://bugzilla.redhat.com/show_bug.cgi?id=2041359): Bump build-machinery-go for console-operator to pickup change in yaml-patch repository [#627](https://github.com/openshift/console-operator/pull/627) * [Bug 2018391](https://bugzilla.redhat.com/show_bug.cgi?id=2018391): Remove SimpleHTTP 'server' response header value [#606](https://github.com/openshift/console-operator/pull/606) * [Bug 1987315](https://bugzilla.redhat.com/show_bug.cgi?id=1987315): Bump openshift/api to add missing 'include.release.openshift.io/single-node-developer' annotation to the ConsolePlugin CRD [#591](https://github.com/openshift/console-operator/pull/591) * [Bug 2003639](https://bugzilla.redhat.com/show_bug.cgi?id=2003639): Use kubernetes.io/hostname for workload anti-affi… …nity [#589](https://github.com/openshift/console-operator/pull/589) * [Bug 2001268](https://bugzilla.redhat.com/show_bug.cgi?id=2001268): console-operator should report Available=true when at least available replica exists [#583](https://github.com/openshift/console-operator/pull/583) * [Bug 1976349](https://bugzilla.redhat.com/show_bug.cgi?id=1976349): Add policy-group label to the openshift-console namespace manifest [#561](https://github.com/openshift/console-operator/pull/561) * [Full changelog](https://github.com/openshift/console-operator/compare/b5cf3e0bc5efa293288a9cad25b573bb60bea041...2bee8bd9b1c9ad46015f4e0ff13b6b5ce09fd2b6) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/71a8b3469df865daf68cb893bfe313328d4be992) * Updating ose-containernetworking-plugins builder & base images to be consistent with ART [#42](https://github.com/openshift/containernetworking-plugins/pull/42) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/a8801b05722b803db020506231f645f93cf36e7d...71a8b3469df865daf68cb893bfe313328d4be992) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/f6ffb0d7c2935db9d349f8dc1c51d9ea1b0df5ce) * [Bug 2002554](https://bugzilla.redhat.com/show_bug.cgi?id=2002554): Do not degrade cluster on failure to reach Manila [#125](https://github.com/openshift/csi-driver-manila-operator/pull/125) * [Bug 1987020](https://bugzilla.redhat.com/show_bug.cgi?id=1987020): Use cluster Proxy when available [#109](https://github.com/openshift/csi-driver-manila-operator/pull/109) * [Bug 1988506](https://bugzilla.redhat.com/show_bug.cgi?id=1988506): Backport e2e testing [#111](https://github.com/openshift/csi-driver-manila-operator/pull/111) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/7e862529de616e3a4b07c81da4afc2e714e8e2e1...f6ffb0d7c2935db9d349f8dc1c51d9ea1b0df5ce) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/583088efa37346e23ed056b57ea24e61b0e5b9d8) * Updating csi-driver-nfs builder & base images to be consistent with ART [#40](https://github.com/openshift/csi-driver-nfs/pull/40) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/9404d343c020fd1806691704f64d930c779ad639...583088efa37346e23ed056b57ea24e61b0e5b9d8) ### [docker-builder](https://github.com/openshift/builder/tree/dc2c0061e5db06d96bac966bdfe2603fe7bbfa06) * [Bug 2053122](https://bugzilla.redhat.com/show_bug.cgi?id=2053122): [release-4.8] getAssembleUser(): strip the group part out before checking the UID [#289](https://github.com/openshift/builder/pull/289) * Update OWNERS file [#290](https://github.com/openshift/builder/pull/290) * [Bug 1992639](https://bugzilla.redhat.com/show_bug.cgi?id=1992639): bump(s2i): revert incorrect ssh scp fix [#259](https://github.com/openshift/builder/pull/259) * [Bug 1981939](https://bugzilla.redhat.com/show_bug.cgi?id=1981939): Updating openshift-enterprise-builder builder & base images to be consistent with ART [#230](https://github.com/openshift/builder/pull/230) * [Full changelog](https://github.com/openshift/builder/compare/70b7b9567744e805cc9538aabba86df2d13dea09...dc2c0061e5db06d96bac966bdfe2603fe7bbfa06) ### [docker-registry](https://github.com/openshift/image-registry/tree/bc68848bf1e6fe91378510a0b0ef30cfcb6ec39e) * [Bug 2042678](https://bugzilla.redhat.com/show_bug.cgi?id=2042678): Fix auth for docker.io images [#306](https://github.com/openshift/image-registry/pull/306) * [Bug 2053223](https://bugzilla.redhat.com/show_bug.cgi?id=2053223): Fix pull-through for images that have dots in their namespace [#310](https://github.com/openshift/image-registry/pull/310) * [Bug 2012163](https://bugzilla.redhat.com/show_bug.cgi?id=2012163): Supporting mirror authentication during pull through [#297](https://github.com/openshift/image-registry/pull/297) * Updating openshift-enterprise-registry builder & base images to be consistent with ART [#270](https://github.com/openshift/image-registry/pull/270) * [Full changelog](https://github.com/openshift/image-registry/compare/a87e6c50cd973723de8b5471453de7c345403d56...bc68848bf1e6fe91378510a0b0ef30cfcb6ec39e) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/076a9209048c7d478f59084409c2dca5e3a6f2d8) * [Bug 2031938](https://bugzilla.redhat.com/show_bug.cgi?id=2031938): Add e2e test to 4.9 branch [#72](https://github.com/openshift/driver-toolkit/pull/72) * [Bug 2011460](https://bugzilla.redhat.com/show_bug.cgi?id=2011460): Add imagestream for driver-toolkit [#65](https://github.com/openshift/driver-toolkit/pull/65) * [Bug 1988478](https://bugzilla.redhat.com/show_bug.cgi?id=1988478): Use kernel config to determine GCC version [#55](https://github.com/openshift/driver-toolkit/pull/55) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/03737139adc98cab7e3f66f546589a6fa5307ed1...076a9209048c7d478f59084409c2dca5e3a6f2d8) ### [etcd](https://github.com/openshift/etcd/tree/3cc60d0a8d1b0df6c0262809ac5b14611f300c86) * Update OWNERS [#125](https://github.com/openshift/etcd/pull/125) * [Full changelog](https://github.com/openshift/etcd/compare/aefa6bf59b381938b50ab9ba4a7add9b4a767e27...3cc60d0a8d1b0df6c0262809ac5b14611f300c86) ### [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver/tree/3978a2100d6ff938db2a0cf8d962ce9dce0c6e4c) * [Bug 2052955](https://bugzilla.redhat.com/show_bug.cgi?id=2052955): Disable uuid checks on XFS [#23](https://github.com/openshift/gcp-pd-csi-driver/pull/23) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver/compare/0b618896c6b7c977f96d133060c54ed1b6c87540...3978a2100d6ff938db2a0cf8d962ce9dce0c6e4c) ### [grafana](https://github.com/openshift/grafana/tree/f98b47f33d7113c4f88d55640eac4ef2dcc1e68a) * [OCPBUGS-644](https://issues.redhat.com/browse/OCPBUGS-644): bump Grafana to 7.5.11 [#89](https://github.com/openshift/grafana/pull/89) * [Full changelog](https://github.com/openshift/grafana/compare/b987e4b1e20b6cf814bbc408dd2a740aed92e410...f98b47f33d7113c4f88d55640eac4ef2dcc1e68a) ### [haproxy-router](https://github.com/openshift/router/tree/d0d63803fbefba67f09df0edb271199623659ca8) * [Bug 1990370](https://bugzilla.redhat.com/show_bug.cgi?id=1990370): haproxy-config.template: Fix power-of-two balancing [#324](https://github.com/openshift/router/pull/324) * [Bug 1984565](https://bugzilla.redhat.com/show_bug.cgi?id=1984565): config template: accept IPv6 IPs for whitelisting [#321](https://github.com/openshift/router/pull/321) * [Bug 1971730](https://bugzilla.redhat.com/show_bug.cgi?id=1971730): error pages - don't use bootstrap/normalize [#305](https://github.com/openshift/router/pull/305) * [Full changelog](https://github.com/openshift/router/compare/207d5463d341947133d344b352aef6abcd80a0c8...d0d63803fbefba67f09df0edb271199623659ca8) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/5cc9227e4695d1cca2a838420cc69f2d6db25eca) * [OCPBUGS-1461](https://issues.redhat.com/browse/OCPBUGS-1461): UPSTREAM: 109103: cpu/memory manager containerMap memory leak [#1371](https://github.com/openshift/kubernetes/pull/1371) * [Bug 2083557](https://bugzilla.redhat.com/show_bug.cgi?id=2083557): UPSTREAM: 109935: fix: exclude non-ready nodes and deleted nodes from azure load balancers [#1257](https://github.com/openshift/kubernetes/pull/1257) * [Bug 2105664](https://bugzilla.redhat.com/show_bug.cgi?id=2105664): UPSTREAM: <carry>: update list of deprecated apis [#1317](https://github.com/openshift/kubernetes/pull/1317) * [release 4.8] Bug Bug 2106970: UPSTREAM: <carry>: use correct base image for testing [#1323](https://github.com/openshift/kubernetes/pull/1323) * [Bug 2077004](https://bugzilla.redhat.com/show_bug.cgi?id=2077004): Rebase 1.21.11 [#1246](https://github.com/openshift/kubernetes/pull/1246) * [Bug 2063953](https://bugzilla.redhat.com/show_bug.cgi?id=2063953): UPSTREAM: <carry>: use hardcoded rest mapper from library-go [#1245](https://github.com/openshift/kubernetes/pull/1245) * [Bug 2075043](https://bugzilla.redhat.com/show_bug.cgi?id=2075043): golang toolchain unsupported parsers tag [#1240](https://github.com/openshift/kubernetes/pull/1240) * [Bug 2043808](https://bugzilla.redhat.com/show_bug.cgi?id=2043808): IPs with leading zeros are still valid in the apiserver [#1173](https://github.com/openshift/kubernetes/pull/1173) * [Bug 2060494](https://bugzilla.redhat.com/show_bug.cgi?id=2060494): Backports inotify leak fix into kubelet [#1203](https://github.com/openshift/kubernetes/pull/1203) * [Bug 2024642](https://bugzilla.redhat.com/show_bug.cgi?id=2024642): Rebase v1.21.8 [#1102](https://github.com/openshift/kubernetes/pull/1102) * [Bug 2050131](https://bugzilla.redhat.com/show_bug.cgi?id=2050131): UPSTREAM: <carry>: set correctly static pods CPUs when workload partitioning is disabled [#1168](https://github.com/openshift/kubernetes/pull/1168) * [Bug 2039377](https://bugzilla.redhat.com/show_bug.cgi?id=2039377): UPSTREAM: 89885: SQUASH: Retry fetching clouds.conf [#1108](https://github.com/openshift/kubernetes/pull/1108) * [Bug 2029466](https://bugzilla.redhat.com/show_bug.cgi?id=2029466): UPSTREAM: 107014: Mark volume as uncertain after Unmount* fails [#1146](https://github.com/openshift/kubernetes/pull/1146) * [Bug 2024995](https://bugzilla.redhat.com/show_bug.cgi?id=2024995): Fix subpath source check [#1067](https://github.com/openshift/kubernetes/pull/1067) * [Bug 2032325](https://bugzilla.redhat.com/show_bug.cgi?id=2032325): UPSTREAM: <carry>: api request counts for current hour are incorrect [#1092](https://github.com/openshift/kubernetes/pull/1092) * [Bug 2022741](https://bugzilla.redhat.com/show_bug.cgi?id=2022741): UPSTREAM: 106260: Don't guess SELinux support on error [#1054](https://github.com/openshift/kubernetes/pull/1054) * [Bug 2021997](https://bugzilla.redhat.com/show_bug.cgi?id=2021997): Read k8s version from hyperkube Dockerfile [#1045](https://github.com/openshift/kubernetes/pull/1045) * Updating openshift-enterprise-hyperkube builder & base images to be consistent with ART [#559](https://github.com/openshift/kubernetes/pull/559) * [Bug 2017027](https://bugzilla.redhat.com/show_bug.cgi?id=2017027): UPSTREAM: <drop>: bump apiserver-library-go [#1069](https://github.com/openshift/kubernetes/pull/1069) * [Bug 2022265](https://bugzilla.redhat.com/show_bug.cgi?id=2022265): Rebase v1.21.6 [#1060](https://github.com/openshift/kubernetes/pull/1060) * Updating openshift-enterprise-pod images to be consistent with ART [#680](https://github.com/openshift/kubernetes/pull/680) * [Bug 2020644](https://bugzilla.redhat.com/show_bug.cgi?id=2020644): Image policy should mutate DeploymentConfigs, StatefulSets, and new CronJobs [#1050](https://github.com/openshift/kubernetes/pull/1050) * [Bug 1994655](https://bugzilla.redhat.com/show_bug.cgi?id=1994655): openshift-apiserver should not set Available=False APIServicesAvailable on update [#955](https://github.com/openshift/kubernetes/pull/955) * [Bug 2008403](https://bugzilla.redhat.com/show_bug.cgi?id=2008403): Rebase v1.21.5 [#981](https://github.com/openshift/kubernetes/pull/981) * [Bug 2011460](https://bugzilla.redhat.com/show_bug.cgi?id=2011460): UPSTREAM: <carry>: openshift-hack/images/os/Dockerfile: Add io.openshift.build.versions, etc. [#1005](https://github.com/openshift/kubernetes/pull/1005) * [Bug 1995714](https://bugzilla.redhat.com/show_bug.cgi?id=1995714): UPSTREAM: <carry>: admission/managementcpusoverride: cover the roll-back case [#895](https://github.com/openshift/kubernetes/pull/895) * [Bug 1994457](https://bugzilla.redhat.com/show_bug.cgi?id=1994457): Update to kubernetes 1.21.4 [#888](https://github.com/openshift/kubernetes/pull/888) * [Bug 1993754](https://bugzilla.redhat.com/show_bug.cgi?id=1993754): UPSTREAM: 104347: Pass additional flags to subpath mount to avoid fla… [#940](https://github.com/openshift/kubernetes/pull/940) * [Bug 1998391](https://bugzilla.redhat.com/show_bug.cgi?id=1998391): UPSTREAM: 104530: [1.21] bump runc to 1.0.2 [#912](https://github.com/openshift/kubernetes/pull/912) * [Bug 1957133](https://bugzilla.redhat.com/show_bug.cgi?id=1957133): do not throw error when we can't get canonical path [#854](https://github.com/openshift/kubernetes/pull/854) * [Bug 1981770](https://bugzilla.redhat.com/show_bug.cgi?id=1981770): UPSTREAM: <drop>: bump(apiserver-library-go) [#864](https://github.com/openshift/kubernetes/pull/864) * [Full changelog](https://github.com/openshift/kubernetes/compare/051ac4f6786868fa0316800752e1905f31830383...5cc9227e4695d1cca2a838420cc69f2d6db25eca) ### [insights-operator](https://github.com/openshift/insights-operator/tree/53425de1f7fbd79fd785f4260f40def8a6eec7b9) * TBD: Gather status of the cephclusters.ceph.rook.io resources (#659) (#665) (#668) [#659](https://github.com/openshift/insights-operator/pull/659) * [Bug 2077765](https://bugzilla.redhat.com/show_bug.cgi?id=2077765): Gather namespace names with overlapping UIDs (#605) (#611) (#612) [#605](https://github.com/openshift/insights-operator/pull/605) * [Bug 2033546](https://bugzilla.redhat.com/show_bug.cgi?id=2033546): Gather all CostManagementMericsConfig definitions. (#525) (#569) [#525](https://github.com/openshift/insights-operator/pull/525) * Update OWNERS (#543) [#543](https://github.com/openshift/insights-operator/pull/543) * [Bug 2027720](https://bugzilla.redhat.com/show_bug.cgi?id=2027720): gather webhook configurations (#508) (#560) [#508](https://github.com/openshift/insights-operator/pull/508) * [Bug 2026646](https://bugzilla.redhat.com/show_bug.cgi?id=2026646): Gather all the container logs from related namespaces of degraded clusteroperator (#516) (#554) [#516](https://github.com/openshift/insights-operator/pull/516) * [Bug 2021572](https://bugzilla.redhat.com/show_bug.cgi?id=2021572): Anonymize identity provider attributes in the (#520) (#527) (#541) [#520](https://github.com/openshift/insights-operator/pull/520) * [Bug 2020601](https://bugzilla.redhat.com/show_bug.cgi?id=2020601): Anonymize the ImageRegistry storage information also in status (#536) [#536](https://github.com/openshift/insights-operator/pull/536) * obfuscation ovn clusters bug (#523) [#523](https://github.com/openshift/insights-operator/pull/523) * Bug TBD: Gather installed PSP names (#489) (#490) [#489](https://github.com/openshift/insights-operator/pull/489) * [Bug 1977342](https://bugzilla.redhat.com/show_bug.cgi?id=1977342): Fix obfuscation translation table secret 4.8 (#467) [#467](https://github.com/openshift/insights-operator/pull/467) * Gather all MachineConfig definitions (#449) (#459) [#449](https://github.com/openshift/insights-operator/pull/449) * [Bug 1974877](https://bugzilla.redhat.com/show_bug.cgi?id=1974877): Add egress ips to anonymizer to 4.8 (#462) [#462](https://github.com/openshift/insights-operator/pull/462) * [Bug 1982170](https://bugzilla.redhat.com/show_bug.cgi?id=1982170): Set also the summary operation when updating status (#475) [#475](https://github.com/openshift/insights-operator/pull/475) * MemoryRecord name can be obfuscated & fix case of duplicate records (#444) (#453) [#444](https://github.com/openshift/insights-operator/pull/444) * [Full changelog](https://github.com/openshift/insights-operator/compare/2040a7166c0a21bce45db4f6b7cfd60755a19895...53425de1f7fbd79fd785f4260f40def8a6eec7b9) ### [ironic](https://github.com/openshift/ironic-image/tree/4ed2e4b56c1eb82573b859b0499bb5141113bad0) * [OCP 4.8] Update OWNERS [#279](https://github.com/openshift/ironic-image/pull/279) * [Bug 2088196](https://bugzilla.redhat.com/show_bug.cgi?id=2088196): Backport weak eTag handling fix to OpenShift 4.8 [#276](https://github.com/openshift/ironic-image/pull/276) * [Bug 2048672](https://bugzilla.redhat.com/show_bug.cgi?id=2048672): Enable vMedia provisioning of Nokia servers [#275](https://github.com/openshift/ironic-image/pull/275) * [Bug 2023765](https://bugzilla.redhat.com/show_bug.cgi?id=2023765): Compare IPs using the short form of IPv6 address [#233](https://github.com/openshift/ironic-image/pull/233) * [Bug 2017413](https://bugzilla.redhat.com/show_bug.cgi?id=2017413): [4.8] fix Image provisioning fails with file name too long [#229](https://github.com/openshift/ironic-image/pull/229) * [Bug 2025755](https://bugzilla.redhat.com/show_bug.cgi?id=2025755): Enable vMedia provisioning of SuperMicro X11/X12 [#237](https://github.com/openshift/ironic-image/pull/237) * [Bug 2003035](https://bugzilla.redhat.com/show_bug.cgi?id=2003035): Sync sushy to include the latest bugfixes for 4.8 [#214](https://github.com/openshift/ironic-image/pull/214) * [Bug 1991979](https://bugzilla.redhat.com/show_bug.cgi?id=1991979): [4.8] Sync image with ironic [#206](https://github.com/openshift/ironic-image/pull/206) * [Bug 1975137](https://bugzilla.redhat.com/show_bug.cgi?id=1975137): [4.8] Sync image with the latest ironic code [#187](https://github.com/openshift/ironic-image/pull/187) * [Full changelog](https://github.com/openshift/ironic-image/compare/227b76b752d742de4fe9cfe746bfd88d352d75fa...4ed2e4b56c1eb82573b859b0499bb5141113bad0) ### [ironic-hardware-inventory-recorder](https://github.com/openshift/ironic-hardware-inventory-recorder-image/tree/b3ecae8d1c6cd84a8784cf3dd17532797af7b724) * Updating ironic-hardware-inventory-recorder-image builder & base images to be consistent with ART [#504](https://github.com/openshift/ironic-hardware-inventory-recorder-image/pull/504) * [Full changelog](https://github.com/openshift/ironic-hardware-inventory-recorder-image/compare/61c4cc7dc99601fe32b239be8923a6ed693908b0...b3ecae8d1c6cd84a8784cf3dd17532797af7b724) ### [ironic-inspector](https://github.com/openshift/ironic-inspector-image/tree/08761ed526b7817de7c92e0d621698404fca7a05) * [Bug 2023765](https://bugzilla.redhat.com/show_bug.cgi?id=2023765): For inspector, compare IPs using the short form of IPv6 address [#71](https://github.com/openshift/ironic-inspector-image/pull/71) * [Full changelog](https://github.com/openshift/ironic-inspector-image/compare/9aafd074adf6dbc7ee7c2c3150568578e82acc3f...08761ed526b7817de7c92e0d621698404fca7a05) ### [ironic-ipa-downloader](https://github.com/openshift/ironic-ipa-downloader/tree/aa13ca35ba38f2ceadb5e98ddc9e8ad0b875bb96) * [Bug 2100787](https://bugzilla.redhat.com/show_bug.cgi?id=2100787): Include Fix discovering WWN/serial for devicemapper devices [#94](https://github.com/openshift/ironic-ipa-downloader/pull/94) * [Bug 2070519](https://bugzilla.redhat.com/show_bug.cgi?id=2070519): Multipath fix for passive paths [#91](https://github.com/openshift/ironic-ipa-downloader/pull/91) * [OCP 4.8] Update OWNERS [#90](https://github.com/openshift/ironic-ipa-downloader/pull/90) * [Full changelog](https://github.com/openshift/ironic-ipa-downloader/compare/ba8783261ea8f21afdcd46eb8a86986597c38c75...aa13ca35ba38f2ceadb5e98ddc9e8ad0b875bb96) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/dceaf1333634a4aea3f211849e81a6247160122b) * [Bug 2005805](https://bugzilla.redhat.com/show_bug.cgi?id=2005805): Clear proxy env variables if go would have [#72](https://github.com/openshift/ironic-rhcos-downloader/pull/72) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/71967e7deca9e9d0e094cbaedb7fe7ce0267dd84...dceaf1333634a4aea3f211849e81a6247160122b) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/ca99ee68dfcf41ff07be2b298483f006994795c1) * [Bug 2076251](https://bugzilla.redhat.com/show_bug.cgi?id=2076251): Mitigate multiple CVEs [#1435](https://github.com/openshift/jenkins/pull/1435) * [Bug 2078477](https://bugzilla.redhat.com/show_bug.cgi?id=2078477): set necessary JVM args to allow jenkins JVM to come up on a FIPS node [#1439](https://github.com/openshift/jenkins/pull/1439) * [Bug 2058750](https://bugzilla.redhat.com/show_bug.cgi?id=2058750): [release-4.8] 2022-02-15 Security Advisory [#1408](https://github.com/openshift/jenkins/pull/1408) * [Bug 2055911](https://bugzilla.redhat.com/show_bug.cgi?id=2055911): bump openshift-sync to 1.0.53 [#1392](https://github.com/openshift/jenkins/pull/1392) * [Bug 2044940](https://bugzilla.redhat.com/show_bug.cgi?id=2044940): Jenkins Fixes for CVE-2022-20617 and CVE-2022-20612 [#1370](https://github.com/openshift/jenkins/pull/1370) * [Bug 2038960](https://bugzilla.redhat.com/show_bug.cgi?id=2038960): bump sync plugin to 1.0.52 [#1362](https://github.com/openshift/jenkins/pull/1362) * [Bug 2037348](https://bugzilla.redhat.com/show_bug.cgi?id=2037348): Update openshift-sync-plugin to 1.0.51 and various dependant plugins [#1360](https://github.com/openshift/jenkins/pull/1360) * [Bug 2020614](https://bugzilla.redhat.com/show_bug.cgi?id=2020614): Update Jenkins and plugins per 2021-11 advisory [#1347](https://github.com/openshift/jenkins/pull/1347) * [Bug 2008114](https://bugzilla.redhat.com/show_bug.cgi?id=2008114): Upgrade Jenkins to 2.289.3 (and related fixes) [#1324](https://github.com/openshift/jenkins/pull/1324) * [Full changelog](https://github.com/openshift/jenkins/compare/8f554e2ad7ab8636cdbf55b5d0bde4577a5c0af6...ca99ee68dfcf41ff07be2b298483f006994795c1) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/bfffea3bf70fc5203814886f6483a569f2f22c87) * [Bug 2002281](https://bugzilla.redhat.com/show_bug.cgi?id=2002281): 4.8: pkg/resourceprovider: guard from negative metrics [#55](https://github.com/openshift/k8s-prometheus-adapter/pull/55) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/2856bc27f7319c069c02cbc5210852c34ef6e4ef...bfffea3bf70fc5203814886f6483a569f2f22c87) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/39389ebf11ae91a6599747b4af6cfb9d1d1e40dd) * [Bug 2063971](https://bugzilla.redhat.com/show_bug.cgi?id=2063971): delete stale UDP conntrack entries for loadbalancer IPs [#414](https://github.com/openshift/sdn/pull/414) * [Bug 2092166](https://bugzilla.redhat.com/show_bug.cgi?id=2092166): Masquerade in cluster traffic that is marked for egress IP [#435](https://github.com/openshift/sdn/pull/435) * Remove some binaries that accidentally got committed [#398](https://github.com/openshift/sdn/pull/398) * [Bug 2027397](https://bugzilla.redhat.com/show_bug.cgi?id=2027397): [EgressIP] move ct(commit) action from OVS group to flow [#377](https://github.com/openshift/sdn/pull/377) * [Bug 2014166](https://bugzilla.redhat.com/show_bug.cgi?id=2014166): Remove locking from EgressIPTracker.Ping [#362](https://github.com/openshift/sdn/pull/362) * [Bug 2002290](https://bugzilla.redhat.com/show_bug.cgi?id=2002290): [4.8] proxy: don't re-check every userspace proxy rule on every change [#347](https://github.com/openshift/sdn/pull/347) * [Bug 1987239](https://bugzilla.redhat.com/show_bug.cgi?id=1987239): when assigning and releasing egressIP try more than once before failing [#326](https://github.com/openshift/sdn/pull/326) * [Bug 1999946](https://bugzilla.redhat.com/show_bug.cgi?id=1999946): improve SDN's OVS healthcheck and logging [#341](https://github.com/openshift/sdn/pull/341) * [Bug 1995871](https://bugzilla.redhat.com/show_bug.cgi?id=1995871): Disable conntrack for vxlan traffic [#337](https://github.com/openshift/sdn/pull/337) * Updating ose-sdn builder & base images to be consistent with ART [#255](https://github.com/openshift/sdn/pull/255) * Updating kube-proxy builder & base images to be consistent with ART [#256](https://github.com/openshift/sdn/pull/256) * [Full changelog](https://github.com/openshift/sdn/compare/00d84a9b8ca4ae8f0d1671ce253ab8e1bac7bd7c...39389ebf11ae91a6599747b4af6cfb9d1d1e40dd) ### [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator/tree/38e0105c9fc5367a2e0bd22446b10a1f65fcb416) * Updating ose-kube-storage-version-migrator images to be consistent with ART [#174](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/174) * [Full changelog](https://github.com/openshift/kubernetes-kube-storage-version-migrator/compare/901a6d221d1cf79b4b6ba859bb43521e0ee635b3...38e0105c9fc5367a2e0bd22446b10a1f65fcb416) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/ddd2c3adeac4d31711a7949c347f444ee4fdce6d) * [Bug 2037745](https://bugzilla.redhat.com/show_bug.cgi?id=2037745): Improve retrieval of Trunks info [#621](https://github.com/openshift/kuryr-kubernetes/pull/621) * [Bug 2028307](https://bugzilla.redhat.com/show_bug.cgi?id=2028307): [4.8] Do not restart Kuryr-Controller when LB is stuck in PENDING_UPDATE state or Neutron port is DOWN [#607](https://github.com/openshift/kuryr-kubernetes/pull/607) * [Bug 2028274](https://bugzilla.redhat.com/show_bug.cgi?id=2028274): Ensure DOWN subports are cleaned up [#606](https://github.com/openshift/kuryr-kubernetes/pull/606) * [Bug 2022722](https://bugzilla.redhat.com/show_bug.cgi?id=2022722): Make completed Pods Ports reusable [#600](https://github.com/openshift/kuryr-kubernetes/pull/600) * [Bug 2018232](https://bugzilla.redhat.com/show_bug.cgi?id=2018232): Update TOX_CONSTRAINTS_FILE for stable/xena [#587](https://github.com/openshift/kuryr-kubernetes/pull/587) * [Bug 1995013](https://bugzilla.redhat.com/show_bug.cgi?id=1995013): Remove ep_slices from klb on endpoint delete event [#550](https://github.com/openshift/kuryr-kubernetes/pull/550) * [Bug 1989550](https://bugzilla.redhat.com/show_bug.cgi?id=1989550): Increase keystoneauth's connection pool size [#546](https://github.com/openshift/kuryr-kubernetes/pull/546) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/8a4c2d85d5e5ce17214e989b11b33a2584bcb199...ddd2c3adeac4d31711a7949c347f444ee4fdce6d) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/9542e5ac08b7731a37d20c881695aab904201c22) * Updating ose-libvirt-machine-controllers builder & base images to be consistent with ART [#217](https://github.com/openshift/cluster-api-provider-libvirt/pull/217) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/1a48d4b99ab5a2ce89fa909d12f3256f7489544f...9542e5ac08b7731a37d20c881695aab904201c22) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/edc3e864006486a7a85e2e5e4297e307339e9f0e) * [Bug 2048496](https://bugzilla.redhat.com/show_bug.cgi?id=2048496): Fix user-agent in vCenter sessions list [#984](https://github.com/openshift/machine-api-operator/pull/984) * [Bug 2027896](https://bugzilla.redhat.com/show_bug.cgi?id=2027896): [release-4.8] Add support for Azure Marketplace Images [#970](https://github.com/openshift/machine-api-operator/pull/970) * [Bug 2026562](https://bugzilla.redhat.com/show_bug.cgi?id=2026562): MaxUnhealthy should not be a string type [#962](https://github.com/openshift/machine-api-operator/pull/962) * [Bug 2022838](https://bugzilla.redhat.com/show_bug.cgi?id=2022838): GCP CI runs are complaining about APIs not being enabled [#953](https://github.com/openshift/machine-api-operator/pull/953) * [Bug 1999585](https://bugzilla.redhat.com/show_bug.cgi?id=1999585): [release-4.8] add alert for machine with long deletion phase [#908](https://github.com/openshift/machine-api-operator/pull/908) * [Bug 2000038](https://bugzilla.redhat.com/show_bug.cgi?id=2000038): Respect MaxUnhealthy limit for external remediation [#910](https://github.com/openshift/machine-api-operator/pull/910) * [Bug 1993117](https://bugzilla.redhat.com/show_bug.cgi?id=1993117): Make sure nodes don't have attached volumes before vm deletion [#903](https://github.com/openshift/machine-api-operator/pull/903) * [Bug 1977634](https://bugzilla.redhat.com/show_bug.cgi?id=1977634): Prevent machine from stucking in Deleting phase on vSphere if related node object not found [#896](https://github.com/openshift/machine-api-operator/pull/896) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/115522033fd678820d70e570e6748ba488b36115...edc3e864006486a7a85e2e5e4297e307339e9f0e) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/30c5add55bde21a400791b3601fff3cc41b0149d) * [Bug 2094765](https://bugzilla.redhat.com/show_bug.cgi?id=2094765): configure-ovs: avoid restarting NetworkManager [#3180](https://github.com/openshift/machine-config-operator/pull/3180) * [Bug 2108699](https://bugzilla.redhat.com/show_bug.cgi?id=2108699): storage.conf: remove obsolete option override_kernel_check [#3259](https://github.com/openshift/machine-config-operator/pull/3259) * [Bug 2098274](https://bugzilla.redhat.com/show_bug.cgi?id=2098274): Add KUBELET_NODEIP_HINT to nodeip-configuration [#3192](https://github.com/openshift/machine-config-operator/pull/3192) * [Bug 2078799](https://bugzilla.redhat.com/show_bug.cgi?id=2078799): configure-ovs: move dhcp config from br-ex to ovs-if-br-ex [#3117](https://github.com/openshift/machine-config-operator/pull/3117) * [Bug 2057544](https://bugzilla.redhat.com/show_bug.cgi?id=2057544): daemon: Explicitly start rpm-ostreed, restart if we detect active txn [#2967](https://github.com/openshift/machine-config-operator/pull/2967) * [Bug 2062655](https://bugzilla.redhat.com/show_bug.cgi?id=2062655): Fix bad cherry-pick at 9f7a7eb96 [#3065](https://github.com/openshift/machine-config-operator/pull/3065) * [Bug 2062655](https://bugzilla.redhat.com/show_bug.cgi?id=2062655): Improvements for configure-ovs script [#3004](https://github.com/openshift/machine-config-operator/pull/3004) * [Bug 2025396](https://bugzilla.redhat.com/show_bug.cgi?id=2025396): annotate rendered config with OCP version [#2972](https://github.com/openshift/machine-config-operator/pull/2972) * [Bug 2059330](https://bugzilla.redhat.com/show_bug.cgi?id=2059330): ovs-configuration: use lower than NM default ethernet route metric [#2974](https://github.com/openshift/machine-config-operator/pull/2974) * [Bug 2058789](https://bugzilla.redhat.com/show_bug.cgi?id=2058789): Prepend to search domains instead of replacing [#2970](https://github.com/openshift/machine-config-operator/pull/2970) * [Bug 2028854](https://bugzilla.redhat.com/show_bug.cgi?id=2028854): Backport of SystemMemoryExceedsReservation alert rule [#2956](https://github.com/openshift/machine-config-operator/pull/2956) * [Bug 2032996](https://bugzilla.redhat.com/show_bug.cgi?id=2032996): fixes 1 to 1 containerruntime config mapping [#2877](https://github.com/openshift/machine-config-operator/pull/2877) * [Bug 2053720](https://bugzilla.redhat.com/show_bug.cgi?id=2053720): Avoid dynamically allocated port range for haproxy [#2951](https://github.com/openshift/machine-config-operator/pull/2951) * [Bug 2028025](https://bugzilla.redhat.com/show_bug.cgi?id=2028025): [Release 4.8] daemon: make cordon/uncordon more robust and better logging [#2853](https://github.com/openshift/machine-config-operator/pull/2853) * [Bug 2017493](https://bugzilla.redhat.com/show_bug.cgi?id=2017493): configure-ovs: Persist addr-gen-mode for ipv6 connections [#2810](https://github.com/openshift/machine-config-operator/pull/2810) * [Bug 2021073](https://bugzilla.redhat.com/show_bug.cgi?id=2021073): [ipi onprem] cherry pick Keepalived default ingress scripts fixes [#2826](https://github.com/openshift/machine-config-operator/pull/2826) * [Bug 2026085](https://bugzilla.redhat.com/show_bug.cgi?id=2026085): Send WARN message to stderr [#2836](https://github.com/openshift/machine-config-operator/pull/2836) * [Bug 2024511](https://bugzilla.redhat.com/show_bug.cgi?id=2024511): [release-4.8] [on-prem] Manual backporting of keepalived arp retries [#2831](https://github.com/openshift/machine-config-operator/pull/2831) * [Bug 2016275](https://bugzilla.redhat.com/show_bug.cgi?id=2016275): [on-prem] Set coredns bufsize to 512 [#2807](https://github.com/openshift/machine-config-operator/pull/2807) * [Bug 2011083](https://bugzilla.redhat.com/show_bug.cgi?id=2011083): templates: Silence audit events from container infra by default [#2793](https://github.com/openshift/machine-config-operator/pull/2793) * [Bug 1985736](https://bugzilla.redhat.com/show_bug.cgi?id=1985736): [ON-PREM] HAProxy - Verify that NM prepender script was applied using initcontainer [#2692](https://github.com/openshift/machine-config-operator/pull/2692) * [Bug 2000958](https://bugzilla.redhat.com/show_bug.cgi?id=2000958): fixes 1 to 1 kubelet config mapping [#2753](https://github.com/openshift/machine-config-operator/pull/2753) * [Bug 1999531](https://bugzilla.redhat.com/show_bug.cgi?id=1999531): Set timeoutSeconds for keepalived liveness probe [#2741](https://github.com/openshift/machine-config-operator/pull/2741) * [Bug 2004122](https://bugzilla.redhat.com/show_bug.cgi?id=2004122): Set ovs syslog level to info [#2762](https://github.com/openshift/machine-config-operator/pull/2762) * [Bug 1973873](https://bugzilla.redhat.com/show_bug.cgi?id=1973873): match tlsSecurityProfile doc with kubelet.conf file [#2628](https://github.com/openshift/machine-config-operator/pull/2628) * [Bug 2000500](https://bugzilla.redhat.com/show_bug.cgi?id=2000500): bump SystemMemoryExceedsReservation alert threshold to 95% [#2748](https://github.com/openshift/machine-config-operator/pull/2748) * [Bug 1976110](https://bugzilla.redhat.com/show_bug.cgi?id=1976110): configure-ovs: fix nondeterministic master in slave profiles [#2644](https://github.com/openshift/machine-config-operator/pull/2644) * [Bug 1985735](https://bugzilla.redhat.com/show_bug.cgi?id=1985735): [ON-PREM] HAProxy - enable listening sockets retrieval from old processes [#2691](https://github.com/openshift/machine-config-operator/pull/2691) * [Bug 1998106](https://bugzilla.redhat.com/show_bug.cgi?id=1998106): vSpehere: disable vmxnet3 tx csum offload [#2736](https://github.com/openshift/machine-config-operator/pull/2736) * [Bug 1995809](https://bugzilla.redhat.com/show_bug.cgi?id=1995809): crio: complete crio default config [#2724](https://github.com/openshift/machine-config-operator/pull/2724) * [Bug 1993385](https://bugzilla.redhat.com/show_bug.cgi?id=1993385): crio: use conmon from path [#2714](https://github.com/openshift/machine-config-operator/pull/2714) * [Bug 1975078](https://bugzilla.redhat.com/show_bug.cgi?id=1975078): Gracefully shutdown taking around 6-7 mins (libvirt provider) [#2636](https://github.com/openshift/machine-config-operator/pull/2636) * Updating ose-machine-config-operator builder & base images to be consistent with ART [#2484](https://github.com/openshift/machine-config-operator/pull/2484) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/29813c845a4a3ee8e6856713c585aca834e0bf1e...30c5add55bde21a400791b3601fff3cc41b0149d) ### [mdns-publisher](https://github.com/openshift/mdns-publisher/tree/1c707a28e88b42780fb37fad4532be7220acd1c5) * [Bug 1988145](https://bugzilla.redhat.com/show_bug.cgi?id=1988145): Update zeroconf vendoring [#35](https://github.com/openshift/mdns-publisher/pull/35) * [Full changelog](https://github.com/openshift/mdns-publisher/compare/2c42cc4d95ef276b81cd78d9509e2dc34f3713c1...1c707a28e88b42780fb37fad4532be7220acd1c5) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/64645febe4129a794b1291d0a375a7b2bb7fba39) * Updating ose-multus-admission-controller builder & base images to be consistent with ART [#32](https://github.com/openshift/multus-admission-controller/pull/32) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/a7312f5e55e9f34cc8b20f6cbfe1af0f363ca1e6...64645febe4129a794b1291d0a375a7b2bb7fba39) ### [multus-cni](https://github.com/openshift/multus-cni/tree/73d0cfedfff518269f7184615e120afc1406a466) * Updating multus-cni builder & base images to be consistent with ART [#95](https://github.com/openshift/multus-cni/pull/95) * [Full changelog](https://github.com/openshift/multus-cni/compare/0c972341809c1e40f9ea6e1545774d9e1f580455...73d0cfedfff518269f7184615e120afc1406a466) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/64807ab77cf97eb69d4202f25840e921290b3e12) * Updating ose-multus-route-override-cni builder & base images to be consistent with ART [#12](https://github.com/openshift/route-override-cni/pull/12) * [Full changelog](https://github.com/openshift/route-override-cni/compare/1662c3ec79b880fce5cd9c4e64f5ba0d4daffc00...64807ab77cf97eb69d4202f25840e921290b3e12) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/90e1e394907abea5a97a7cd68d5a91afe87a8913) * [Bug 2064860](https://bugzilla.redhat.com/show_bug.cgi?id=2064860): Sync context improvements [backport 4.8] [#90](https://github.com/openshift/whereabouts-cni/pull/90) * [Bug 2028966](https://bugzilla.redhat.com/show_bug.cgi?id=2028966): Whereabouts should reconcile IP addresses [backport 4.8] [#78](https://github.com/openshift/whereabouts-cni/pull/78) * [Bug 2009497](https://bugzilla.redhat.com/show_bug.cgi?id=2009497): Release on cancel, sync for 4.8 [#70](https://github.com/openshift/whereabouts-cni/pull/70) * [Bug 1990113](https://bugzilla.redhat.com/show_bug.cgi?id=1990113): Syncs with upstream for leader election [backport 4.8] [#63](https://github.com/openshift/whereabouts-cni/pull/63) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/9a05258711b1b459c0b24293a6d8fa77c9e5d852...90e1e394907abea5a97a7cd68d5a91afe87a8913) ### [must-gather](https://github.com/openshift/must-gather/tree/7e55480fddf089ec9707f02f6644be9f1200b2a2) * [Bug 2092264](https://bugzilla.redhat.com/show_bug.cgi?id=2092264): Add networking resources [#309](https://github.com/openshift/must-gather/pull/309) * [Bug 2057345](https://bugzilla.redhat.com/show_bug.cgi?id=2057345): Fix ovn-nbctl commands for ipv6 [#287](https://github.com/openshift/must-gather/pull/287) * Updating ose-must-gather builder & base images to be consistent with ART [#221](https://github.com/openshift/must-gather/pull/221) * [Full changelog](https://github.com/openshift/must-gather/compare/cc7e2a5b567ce43e73e42ff6602914251607a689...7e55480fddf089ec9707f02f6644be9f1200b2a2) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/c8812eeb9aa3b535a843407704478454a0ab8c7d) * Added METRIC_TEST_IMAGE var (#57) [#57](https://github.com/openshift/network-metrics-daemon/pull/57) * Fix field selector (#52) [#52](https://github.com/openshift/network-metrics-daemon/pull/52) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/f02c63ae9475d2e51ee1b94b8e341ac8f9d590b7...c8812eeb9aa3b535a843407704478454a0ab8c7d) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/961db5cc19f78cb73c628c5219a0c5a6dbde7a3e) * [Bug 2043808](https://bugzilla.redhat.com/show_bug.cgi?id=2043808): IPs with leading zeros are still valid in the apiserver [#74](https://github.com/openshift/oauth-apiserver/pull/74) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/09435a5dd505b3b90eb7ce355ab41c8e4c1a349c...961db5cc19f78cb73c628c5219a0c5a6dbde7a3e) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/c23251132914110cc8deed896c415192c02259bb) * Add coreydaley as reviewer/approver for pkg/build [#300](https://github.com/openshift/openshift-apiserver/pull/300) * [Bug 2043808](https://bugzilla.redhat.com/show_bug.cgi?id=2043808): IPs with leading zeros are still valid in the apiserver [#280](https://github.com/openshift/openshift-apiserver/pull/280) * [Bug 2053223](https://bugzilla.redhat.com/show_bug.cgi?id=2053223): Fix importing images that have dots in their namespace [#283](https://github.com/openshift/openshift-apiserver/pull/283) * [Bug 2042732](https://bugzilla.redhat.com/show_bug.cgi?id=2042732): Make OriginImageMutators aware of origin objects [#271](https://github.com/openshift/openshift-apiserver/pull/271) * [Bug 2020644](https://bugzilla.redhat.com/show_bug.cgi?id=2020644): Image policy should mutate DeploymentConfigs [#259](https://github.com/openshift/openshift-apiserver/pull/259) * [Bug 1992639](https://bugzilla.redhat.com/show_bug.cgi?id=1992639): revert incorrect ssh scp fix [#241](https://github.com/openshift/openshift-apiserver/pull/241) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/394986946b6db0d21da5567973bb674aa138d74f...c23251132914110cc8deed896c415192c02259bb) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/69a83a3f3c290519692a66fd5ffe89586eb1b4b9) * [Bug 2006793](https://bugzilla.redhat.com/show_bug.cgi?id=2006793): BC ICT still must check spec last triggered image ID in case BC was last processed when cluster was pre 4.8 [#206](https://github.com/openshift/openshift-controller-manager/pull/206) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/2e25328c64ac83e6f25449a6a2507c145352abc9...69a83a3f3c290519692a66fd5ffe89586eb1b4b9) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/d431a72bce1aa5ce8d1e5cf7ba810ccaabacb5bb) * [Bug 2049088](https://bugzilla.redhat.com/show_bug.cgi?id=2049088): Explicitly set default value for ReclaimPolicy [#71](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/71) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/1184ace0cd3b6fd90549eaf77737f230822c318d...d431a72bce1aa5ce8d1e5cf7ba810ccaabacb5bb) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/77840b9a431880b15ee05d4a3f327b7ff2a682e8) * [Bug 2064634](https://bugzilla.redhat.com/show_bug.cgi?id=2064634): Ensure subnets belong to the queried network [#223](https://github.com/openshift/cluster-api-provider-openstack/pull/223) * [Bug 2000542](https://bugzilla.redhat.com/show_bug.cgi?id=2000542): Adds Proxy to provider client http transport [#199](https://github.com/openshift/cluster-api-provider-openstack/pull/199) * [Bug 1985015](https://bugzilla.redhat.com/show_bug.cgi?id=1985015): Eliminate instanceCreate volume leak [#192](https://github.com/openshift/cluster-api-provider-openstack/pull/192) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/3024c78c7026e804f8c4b5765c652110f6df4d7a...77840b9a431880b15ee05d4a3f327b7ff2a682e8) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/9e9736d6b162b877da9de3b760b06eeeb52ccd18) * [Bug 2074680](https://bugzilla.redhat.com/show_bug.cgi?id=2074680): Emit CSV metric on startup [#288](https://github.com/openshift/operator-framework-olm/pull/288) * [Bug 2073963](https://bugzilla.redhat.com/show_bug.cgi?id=2073963): Fix a bug in deletion of webhook service for replacement [#281](https://github.com/openshift/operator-framework-olm/pull/281) * [Bug 2030489](https://bugzilla.redhat.com/show_bug.cgi?id=2030489): Remove oudated subscription update logic to improve resolution delay [#222](https://github.com/openshift/operator-framework-olm/pull/222) * [Bug 1996162](https://bugzilla.redhat.com/show_bug.cgi?id=1996162): Check for pruned bundles on add in replaces mode [#165](https://github.com/openshift/operator-framework-olm/pull/165) * [Bug 1986476](https://bugzilla.redhat.com/show_bug.cgi?id=1986476): resolver: remove legacy support for fallback parsing of CSVs [#140](https://github.com/openshift/operator-framework-olm/pull/140) * [Bug 1994038](https://bugzilla.redhat.com/show_bug.cgi?id=1994038): clarify maxOpenShiftVersion upgrade error message [#173](https://github.com/openshift/operator-framework-olm/pull/173) * [Bug 1994038](https://bugzilla.redhat.com/show_bug.cgi?id=1994038): Update kubebuilder installation in the build root dockerfile [#174](https://github.com/openshift/operator-framework-olm/pull/174) * [Bug 1994110](https://bugzilla.redhat.com/show_bug.cgi?id=1994110): fix(openshift): drop z from next calculated y-stream [#167](https://github.com/openshift/operator-framework-olm/pull/167) * [Bug 1989779](https://bugzilla.redhat.com/show_bug.cgi?id=1989779): installplans: retry crd updates on conflicts [#156](https://github.com/openshift/operator-framework-olm/pull/156) * [Bug 1989711](https://bugzilla.redhat.com/show_bug.cgi?id=1989711): fix(openshift): block upgrades on invalid max properties (#2302) [#155](https://github.com/openshift/operator-framework-olm/pull/155) * [Bug 1990650](https://bugzilla.redhat.com/show_bug.cgi?id=1990650): Add PriorityClass setting to registry pods for default CatalogSource (#2304) [#158](https://github.com/openshift/operator-framework-olm/pull/158) * [Bug 1986023](https://bugzilla.redhat.com/show_bug.cgi?id=1986023): Translate legacy "bundle dependencies" to properties. [#134](https://github.com/openshift/operator-framework-olm/pull/134) * [Bug 1979525](https://bugzilla.redhat.com/show_bug.cgi?id=1979525): OLM blocks minor OpenShift upgrades when incompatible optional operators are installed [#120](https://github.com/openshift/operator-framework-olm/pull/120) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/0e121cb2620547040ef455874d9c7a70e1533f2f...9e9736d6b162b877da9de3b760b06eeeb52ccd18) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/3f3d7d1f9e914aff08d2ca2b5663358c8b611656) * [Bug 1998938](https://bugzilla.redhat.com/show_bug.cgi?id=1998938): Use client-go's leader election implementation [#421](https://github.com/operator-framework/operator-marketplace/pull/421) * [Bug 1990650](https://bugzilla.redhat.com/show_bug.cgi?id=1990650): Add priorityclass annotation to default catalogsources [#418](https://github.com/operator-framework/operator-marketplace/pull/418) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/e39ff59d5abc3e27effc7b726329d06a37644f2e...3f3d7d1f9e914aff08d2ca2b5663358c8b611656) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/c57863f25ec68b34f3928e02b9b750cfcef3c99c) * [Bug 2013945](https://bugzilla.redhat.com/show_bug.cgi?id=2013945): pvc stuck on pending status when using preallocated storage domain [#89](https://github.com/openshift/ovirt-csi-driver/pull/89) * Updating ose-ovirt-csi-driver builder & base images to be consistent with ART [#75](https://github.com/openshift/ovirt-csi-driver/pull/75) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/b1d4ec36d194e7dd655e8cfb35229e1bed4c7a14...c57863f25ec68b34f3928e02b9b750cfcef3c99c) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/3bab77baee7a006b7a96bea737828979d77cda9d) * [Bug 2062745](https://bugzilla.redhat.com/show_bug.cgi?id=2062745): Increase timeouts for CSI driver [#90](https://github.com/openshift/ovirt-csi-driver-operator/pull/90) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/7b6cd3d847c807663f63a6f293748c682c2cad2a...3bab77baee7a006b7a96bea737828979d77cda9d) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/368223b8507596055a33b731a7942aab82f59ce0) * [Bug 2046356](https://bugzilla.redhat.com/show_bug.cgi?id=2046356): detach non-bootable disks before removing the VM [#127](https://github.com/openshift/cluster-api-provider-ovirt/pull/127) * [Bug 1989676](https://bugzilla.redhat.com/show_bug.cgi?id=1989676): correct IPAddress detection for OVNKubernetes [#116](https://github.com/openshift/cluster-api-provider-ovirt/pull/116) * [Bug 1987182](https://bugzilla.redhat.com/show_bug.cgi?id=1987182): allow auto pinning new names [#115](https://github.com/openshift/cluster-api-provider-ovirt/pull/115) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/86c1675092767604e1720313150a8dfc82b7fca6...368223b8507596055a33b731a7942aab82f59ce0) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/28810ad66d8556303f829d5e9a70800db821f9f7) * [Bug 2111557](https://bugzilla.redhat.com/show_bug.cgi?id=2111557): Remove conntrack entries after rules [#1221](https://github.com/openshift/ovn-kubernetes/pull/1221) * [Bug 2115039](https://bugzilla.redhat.com/show_bug.cgi?id=2115039): [release-4.8] OCP CARRY: Add the rules to EXTERNALIPs only for SGW mode [#1234](https://github.com/openshift/ovn-kubernetes/pull/1234) * [Bug 2105655](https://bugzilla.redhat.com/show_bug.cgi?id=2105655): egressIP: node retrieval failure is not respected, causes panic [#1187](https://github.com/openshift/ovn-kubernetes/pull/1187) * [Bug 2107645](https://bugzilla.redhat.com/show_bug.cgi?id=2107645): Set the OVS port as transient [#1197](https://github.com/openshift/ovn-kubernetes/pull/1197) * [Bug 2105272](https://bugzilla.redhat.com/show_bug.cgi?id=2105272): EGW: Clean Stale Conntrack Entries [#1193](https://github.com/openshift/ovn-kubernetes/pull/1193) * [Bug 2106089](https://bugzilla.redhat.com/show_bug.cgi?id=2106089): Fix panics in DestroyNetworkPolicy if policy is nil [#1184](https://github.com/openshift/ovn-kubernetes/pull/1184) * [Bug 2084110](https://bugzilla.redhat.com/show_bug.cgi?id=2084110): EgressIP NATs are not being cleared correctly from the logical router [#1107](https://github.com/openshift/ovn-kubernetes/pull/1107) * [Bug 2087227](https://bugzilla.redhat.com/show_bug.cgi?id=2087227): enable `exportloopref` linter and fix violations [#1097](https://github.com/openshift/ovn-kubernetes/pull/1097) * [Bug 2070762](https://bugzilla.redhat.com/show_bug.cgi?id=2070762): [release-4.8] Multiple ExGW cache validation/improvements [#1019](https://github.com/openshift/ovn-kubernetes/pull/1019) * [Bug 2077370](https://bugzilla.redhat.com/show_bug.cgi?id=2077370): [release-4.8] fix ipv6 network policy [#1047](https://github.com/openshift/ovn-kubernetes/pull/1047) * [Bug 2062842](https://bugzilla.redhat.com/show_bug.cgi?id=2062842): [4.8z] After reboot egress node, lr-policy-list was not correct, some duplicate records or missed internal IPs [#1009](https://github.com/openshift/ovn-kubernetes/pull/1009) * [Bug 2065303](https://bugzilla.redhat.com/show_bug.cgi?id=2065303): [CARRY][Downstream-only] Give warning when ipFamilyPolicy implicitly set [#998](https://github.com/openshift/ovn-kubernetes/pull/998) * [Bug 2070521](https://bugzilla.redhat.com/show_bug.cgi?id=2070521): egressgw: fix deadlock due to behavior of RWLock [#1018](https://github.com/openshift/ovn-kubernetes/pull/1018) * [Bug 2063836](https://bugzilla.redhat.com/show_bug.cgi?id=2063836): backport 2052975 to 4.8 [#997](https://github.com/openshift/ovn-kubernetes/pull/997) * [Bug 2068509](https://bugzilla.redhat.com/show_bug.cgi?id=2068509): EgressGW: only return unique elements from getRouteInfosForGateway() [#1011](https://github.com/openshift/ovn-kubernetes/pull/1011) * [Bug 2065311](https://bugzilla.redhat.com/show_bug.cgi?id=2065311): [release-4.8] Network Policy fixes [#999](https://github.com/openshift/ovn-kubernetes/pull/999) * [Bug 2057557](https://bugzilla.redhat.com/show_bug.cgi?id=2057557): Create iptables NAT rules also for loadbalancer services [#967](https://github.com/openshift/ovn-kubernetes/pull/967) * [Bug 2058679](https://bugzilla.redhat.com/show_bug.cgi?id=2058679): Bumps ovn2.13-20.12.0-195.el8fdp [#979](https://github.com/openshift/ovn-kubernetes/pull/979) * [release 4.8] Update project owners [#992](https://github.com/openshift/ovn-kubernetes/pull/992) * [Bug 2057931](https://bugzilla.redhat.com/show_bug.cgi?id=2057931): Fix podHandlerCache key [#969](https://github.com/openshift/ovn-kubernetes/pull/969) * [Bug 2057152](https://bugzilla.redhat.com/show_bug.cgi?id=2057152): Fix egress IP allocator sync [#965](https://github.com/openshift/ovn-kubernetes/pull/965) * [Bug 2053611](https://bugzilla.redhat.com/show_bug.cgi?id=2053611): Lock the reassignment procedure during node deletion to avoid races [#970](https://github.com/openshift/ovn-kubernetes/pull/970) * [Bug 2054225](https://bugzilla.redhat.com/show_bug.cgi?id=2054225): Fix gateway routers answer ARP/NDP requests for LoadBalancer/ExternalIP services [#957](https://github.com/openshift/ovn-kubernetes/pull/957) * [Bug 2056975](https://bugzilla.redhat.com/show_bug.cgi?id=2056975): Don't return err when annotation cannot be unmarshalled [#963](https://github.com/openshift/ovn-kubernetes/pull/963) * [Bug 2052966](https://bugzilla.redhat.com/show_bug.cgi?id=2052966): [release-4.8] bump ovn to 20.12.0-193 [#949](https://github.com/openshift/ovn-kubernetes/pull/949) * [Bug 2043757](https://bugzilla.redhat.com/show_bug.cgi?id=2043757): Fix node connectivity to service backed by egress IP pods [#922](https://github.com/openshift/ovn-kubernetes/pull/922) * [Bug 2042516](https://bugzilla.redhat.com/show_bug.cgi?id=2042516): Fixes for shared to local gateway migration [#916](https://github.com/openshift/ovn-kubernetes/pull/916) * [Bug 2037884](https://bugzilla.redhat.com/show_bug.cgi?id=2037884): [4.8-backport] Fix nepol statefulset 4.8 [#894](https://github.com/openshift/ovn-kubernetes/pull/894) * [Bug 2041767](https://bugzilla.redhat.com/show_bug.cgi?id=2041767): Fix pod handlers and pod IP parsing for egress IP [#912](https://github.com/openshift/ovn-kubernetes/pull/912) * [Bug 2039279](https://bugzilla.redhat.com/show_bug.cgi?id=2039279): filter out KubeAPIAuth when logging CNI requests [#897](https://github.com/openshift/ovn-kubernetes/pull/897) * [Bug 2021221](https://bugzilla.redhat.com/show_bug.cgi?id=2021221): Add ovn-controller logical flow cache options [#890](https://github.com/openshift/ovn-kubernetes/pull/890) * [Bug 2030465](https://bugzilla.redhat.com/show_bug.cgi?id=2030465): Make config parsing more resilient for unknown fields [#868](https://github.com/openshift/ovn-kubernetes/pull/868) * [Bug 2027873](https://bugzilla.redhat.com/show_bug.cgi?id=2027873): [4.8z] Fixes race between node handler and pod sync [#858](https://github.com/openshift/ovn-kubernetes/pull/858) * [Bug 2027487](https://bugzilla.redhat.com/show_bug.cgi?id=2027487): [4.8z] addressManager should not call sync() from ErrorCallback [#853](https://github.com/openshift/ovn-kubernetes/pull/853) * [Bug 2022043](https://bugzilla.redhat.com/show_bug.cgi?id=2022043): [4.8z] Avoid stale annotations by re-subscribing to netlink [#829](https://github.com/openshift/ovn-kubernetes/pull/829) * [Bug 2014332](https://bugzilla.redhat.com/show_bug.cgi?id=2014332): [4.8z] Scale fixes for pods/exgws [#798](https://github.com/openshift/ovn-kubernetes/pull/798) * [Bug 2011391](https://bugzilla.redhat.com/show_bug.cgi?id=2011391): [4.8] bump OVN to 20.12.0-183.el8fdp [#783](https://github.com/openshift/ovn-kubernetes/pull/783) * [Bug 1986708](https://bugzilla.redhat.com/show_bug.cgi?id=1986708): Add routes for pod: fail only after checking all the gw addresses / ips [#774](https://github.com/openshift/ovn-kubernetes/pull/774) * [Bug 2005480](https://bugzilla.redhat.com/show_bug.cgi?id=2005480): [4.8z] Remove waiting for namespace and namespace lock contention [#760](https://github.com/openshift/ovn-kubernetes/pull/760) * [release 4.8] Bug 1994624: Infer subnet for node /128 IPv6 addresses [#661](https://github.com/openshift/ovn-kubernetes/pull/661) * [Bug 2004336](https://bugzilla.redhat.com/show_bug.cgi?id=2004336): Ensure host interfaces are deleted by CNI [#745](https://github.com/openshift/ovn-kubernetes/pull/745) * [Bug 2005464](https://bugzilla.redhat.com/show_bug.cgi?id=2005464): [4.8z] Fixes skipping pods accidentally in retry [#758](https://github.com/openshift/ovn-kubernetes/pull/758) * [Bug 2005357](https://bugzilla.redhat.com/show_bug.cgi?id=2005357): [4.8z] Fixes misuse of pod annotations during update event [#753](https://github.com/openshift/ovn-kubernetes/pull/753) * [Bug 1996739](https://bugzilla.redhat.com/show_bug.cgi?id=1996739): Fix ensurePod to call addPodExternalGW only for annotation updates [#752](https://github.com/openshift/ovn-kubernetes/pull/752) * [Bug 2004488](https://bugzilla.redhat.com/show_bug.cgi?id=2004488): panic after EgressFirewall deletion and DNS record expiration [#749](https://github.com/openshift/ovn-kubernetes/pull/749) * [Bug 2004269](https://bugzilla.redhat.com/show_bug.cgi?id=2004269): Sync ECMP routes on startup and fixes stale ECMP routes [#743](https://github.com/openshift/ovn-kubernetes/pull/743) * [Bug 1999638](https://bugzilla.redhat.com/show_bug.cgi?id=1999638): Fix duplicate incrementing of subnet allocation metric [#700](https://github.com/openshift/ovn-kubernetes/pull/700) * [Bug 1996729](https://bugzilla.redhat.com/show_bug.cgi?id=1996729): NetworkPolicy: bulk-add pods to new policies (or on restart) [#678](https://github.com/openshift/ovn-kubernetes/pull/678) * [Bug 2000214](https://bugzilla.redhat.com/show_bug.cgi?id=2000214): Fix GetPortAddresses for HBO [#711](https://github.com/openshift/ovn-kubernetes/pull/711) * [Bug 2001641](https://bugzilla.redhat.com/show_bug.cgi?id=2001641): egressfirewall not set after upgrade [#722](https://github.com/openshift/ovn-kubernetes/pull/722) * [Bug 1996201](https://bugzilla.redhat.com/show_bug.cgi?id=1996201): Fixes cases of timed out while waiting for OVS port binding [#686](https://github.com/openshift/ovn-kubernetes/pull/686) * [Bug 2001542](https://bugzilla.redhat.com/show_bug.cgi?id=2001542): fix reserve joinSwitch LRP IPs [#720](https://github.com/openshift/ovn-kubernetes/pull/720) * [Bug 2001363](https://bugzilla.redhat.com/show_bug.cgi?id=2001363): [4.8z] Ensure client handling of canceled/dropped OVSDB monitor [#718](https://github.com/openshift/ovn-kubernetes/pull/718) * [Bug 1999895](https://bugzilla.redhat.com/show_bug.cgi?id=1999895): Revert "[release-4.8] fix reserve joinSwitch LRP IPs" [#706](https://github.com/openshift/ovn-kubernetes/pull/706) * [Bug 1996965](https://bugzilla.redhat.com/show_bug.cgi?id=1996965): Add quotes around nexthop and dst-ip fields [#680](https://github.com/openshift/ovn-kubernetes/pull/680) * [Bug 1994937](https://bugzilla.redhat.com/show_bug.cgi?id=1994937): Fix: sync egress IP for missed events on start-up [#665](https://github.com/openshift/ovn-kubernetes/pull/665) * [Bug 1997049](https://bugzilla.redhat.com/show_bug.cgi?id=1997049): fix reserve joinSwitch LRP IPs [#681](https://github.com/openshift/ovn-kubernetes/pull/681) * [Bug 1985957](https://bugzilla.redhat.com/show_bug.cgi?id=1985957): Backport ovnkube-trace requires ip package to be installed to 4.8 [#656](https://github.com/openshift/ovn-kubernetes/pull/656) * [Bug 1988487](https://bugzilla.redhat.com/show_bug.cgi?id=1988487): Fix lgw eip 4.8 [#636](https://github.com/openshift/ovn-kubernetes/pull/636) * [Bug 1976241](https://bugzilla.redhat.com/show_bug.cgi?id=1976241): Update existing policy ACLs on start [#635](https://github.com/openshift/ovn-kubernetes/pull/635) * Updating ose-ovn-kubernetes builder & base images to be consistent with ART [#473](https://github.com/openshift/ovn-kubernetes/pull/473) * [Bug 1985514](https://bugzilla.redhat.com/show_bug.cgi?id=1985514): Add v6 management interface address for host network policy [#624](https://github.com/openshift/ovn-kubernetes/pull/624) * [Bug 1986573](https://bugzilla.redhat.com/show_bug.cgi?id=1986573): Declare a maximum line length for batching [#631](https://github.com/openshift/ovn-kubernetes/pull/631) * [Bug 1976644](https://bugzilla.redhat.com/show_bug.cgi?id=1976644): Bump OVN to 20.12.0-140.el8fdp [#591](https://github.com/openshift/ovn-kubernetes/pull/591) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/dbc67b544463fed08ea794a2ed41fbd268a3d40a...28810ad66d8556303f829d5e9a70800db821f9f7) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/8f4efab9e7fa34f79a5900d95113f62908889168) * [Bug 1979575](https://bugzilla.redhat.com/show_bug.cgi?id=1979575): [4.8]: Add timeout to informers cache sync [#132](https://github.com/openshift/prometheus-operator/pull/132) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/9d679a145d5eabe58a86bce6cf0da72bd07dd026...8f4efab9e7fa34f79a5900d95113f62908889168) ### [prometheus-node-exporter](https://github.com/openshift/node_exporter/tree/9ad2cf906b9c0c44110401f121dc5cf7d657acca) * [Bug 1984074](https://bugzilla.redhat.com/show_bug.cgi?id=1984074): netclass: retrieve interface names and filter before parsing [#91](https://github.com/openshift/node_exporter/pull/91) * [Full changelog](https://github.com/openshift/node_exporter/compare/c9264499d45ecafa1a296db2c00f0a0411e8dc5a...9ad2cf906b9c0c44110401f121dc5cf7d657acca) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/b66c45062dd1c4fc4ce7de2f587647522af60e11) * Updating ose-service-ca-operator images to be consistent with ART [#177](https://github.com/openshift/service-ca-operator/pull/177) * Update go version to 1.16 [#179](https://github.com/openshift/service-ca-operator/pull/179) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/bcc6df48bc48dff748481c5284d05e0c2066f4e6...b66c45062dd1c4fc4ce7de2f587647522af60e11) ### [telemeter](https://github.com/openshift/telemeter/tree/eabad556e8759422b85b2f27248c52626245f1ba) * Updating telemeter builder & base images to be consistent with ART [#374](https://github.com/openshift/telemeter/pull/374) * [Full changelog](https://github.com/openshift/telemeter/compare/d6ceb8a4e94f775510591974b2cdeb19819abda0...eabad556e8759422b85b2f27248c52626245f1ba) ### [tests](https://github.com/openshift/origin/tree/2eb86450ff251951d9aabda446cb4fd19e9e3b62) * [Bug 1999288](https://bugzilla.redhat.com/show_bug.cgi?id=1999288): [release-4.8]: bump openshift/kubernetes to the latest [#26886](https://github.com/openshift/origin/pull/26886) * [Bug 2038876](https://bugzilla.redhat.com/show_bug.cgi?id=2038876): [release-4.8] test: skip tests that won't work behind a proxy automatically [#26733](https://github.com/openshift/origin/pull/26733) * [Bug 1984275](https://bugzilla.redhat.com/show_bug.cgi?id=1984275): Add renamed Prometheus test into skipped disconnected list [#26344](https://github.com/openshift/origin/pull/26344) * [Bug 2033426](https://bugzilla.redhat.com/show_bug.cgi?id=2033426): test/e2e/upgrade/adminack: Poll gates for duration of update [#26704](https://github.com/openshift/origin/pull/26704) * [Bug 2033379](https://bugzilla.redhat.com/show_bug.cgi?id=2033379): [release-4.8] remove perma-failing prometheus upgrade invariant [#26698](https://github.com/openshift/origin/pull/26698) * [Bug 2027262](https://bugzilla.redhat.com/show_bug.cgi?id=2027262): Create new-project without updating kubeconfig [#26645](https://github.com/openshift/origin/pull/26645) * [Bug 2028815](https://bugzilla.redhat.com/show_bug.cgi?id=2028815): Skipping Django Test until bug is fixed [#26665](https://github.com/openshift/origin/pull/26665) * [Bug 2028021](https://bugzilla.redhat.com/show_bug.cgi?id=2028021): Bump update time limit 4.8 [#26657](https://github.com/openshift/origin/pull/26657) * [Bug 1929650](https://bugzilla.redhat.com/show_bug.cgi?id=1929650): Increase OVN upgrade timeout by 15m [#26654](https://github.com/openshift/origin/pull/26654) * [Bug 2025724](https://bugzilla.redhat.com/show_bug.cgi?id=2025724): Add admin ack Upgradeable condition gate test [#26635](https://github.com/openshift/origin/pull/26635) * [Bug 2020644](https://bugzilla.redhat.com/show_bug.cgi?id=2020644): Add more tests for image policy [#26584](https://github.com/openshift/origin/pull/26584) * [Bug 2019519](https://bugzilla.redhat.com/show_bug.cgi?id=2019519): Skip test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#26562](https://github.com/openshift/origin/pull/26562) * fix: add proxy support to OAuthServer tests [#26539](https://github.com/openshift/origin/pull/26539) * [Bug 2008114](https://bugzilla.redhat.com/show_bug.cgi?id=2008114): Add role label to jenkins imagestream [#26503](https://github.com/openshift/origin/pull/26503) * [Bug 2002552](https://bugzilla.redhat.com/show_bug.cgi?id=2002552): Retry kubeconfig checks, when kube-apiserver is temporarily unavailable [#26458](https://github.com/openshift/origin/pull/26458) * [Bug 1989402](https://bugzilla.redhat.com/show_bug.cgi?id=1989402): Add tests required internet into Skipped:Disconnected list [#26369](https://github.com/openshift/origin/pull/26369) * [Bug 1986259](https://bugzilla.redhat.com/show_bug.cgi?id=1986259): Enable TestEndpointAdmission test only for OpenShift SDN [#26351](https://github.com/openshift/origin/pull/26351) * Re-enable cluster quota test [#26234](https://github.com/openshift/origin/pull/26234) * [Bug 1978090](https://bugzilla.redhat.com/show_bug.cgi?id=1978090): testPodSandboxCreation: skip sandbox errors for pods which were not deleted during network update [#26297](https://github.com/openshift/origin/pull/26297) * [Bug 1981246](https://bugzilla.redhat.com/show_bug.cgi?id=1981246): [4.8]: test/e2e: allow workload incorrectly spread alert [#26319](https://github.com/openshift/origin/pull/26319) * [Full changelog](https://github.com/openshift/origin/compare/ff927d2d2744c983923d0aa480561eff6128dcff...2eb86450ff251951d9aabda446cb4fd19e9e3b62) ### [thanos](https://github.com/openshift/thanos/tree/f7c1227d2009f439d4200e305246659ebea299f8) * [Bug 1994156](https://bugzilla.redhat.com/show_bug.cgi?id=1994156): dockerignore: remove vendor from ignored list [#70](https://github.com/openshift/thanos/pull/70) * [Full changelog](https://github.com/openshift/thanos/compare/c358e963a7c2fad1a4de605a09f4af5e7d2d07f4...f7c1227d2009f439d4200e305246659ebea299f8) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/18cd9873078206f26d25ecf18893ba0864c0cf62) * [Bug 2021620](https://bugzilla.redhat.com/show_bug.cgi?id=2021620): Close connection to vCenter API [#51](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/51) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/edbdd69cb34ced19b0cc0f3a180df56f1ca4899d...18cd9873078206f26d25ecf18893ba0864c0cf62) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/9ff996502f4cb87c89985cdaff346754d645b988) * [Bug 2036967](https://bugzilla.redhat.com/show_bug.cgi?id=2036967): Deferred logout after checks are run [#68](https://github.com/openshift/vsphere-problem-detector/pull/68) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/c02283d6c979f4e63b76945951272b1cfd134c32...9ff996502f4cb87c89985cdaff346754d645b988)