Back to index
Download the installer for your operating system or run
oc adm release extract --tools quay.io/openshift-release-dev/ocp-release:4.15.61-x86_64 Team Approvals:
Tests:
Blocking jobsupgrade Succeeded (2 retries) periodic-ci-openshift-release-master-stable-4.y-e2e-aws-ovn-upgradeupgrade-minor Failed (2 retries) periodic-ci-openshift-release-master-stable-4.y-e2e-aws-ovn-upgrade Informing jobs Upgrades from:
Untested upgrades:
4.14.19 ,
4.14.20 ,
4.14.21 ,
4.14.22 ,
4.14.23 ,
4.14.24 ,
4.14.25 ,
4.14.26 ,
4.14.27 ,
4.14.28 ,
4.14.30 ,
4.14.31 ,
4.14.32 ,
4.14.34 ,
4.14.35 ,
4.14.36 ,
4.14.37 ,
4.14.38 ,
4.14.39 ,
4.14.40 ,
4.14.41 ,
4.14.42 ,
4.14.43 ,
4.14.44 ,
4.14.45 ,
4.14.46 ,
4.14.48 ,
4.14.49 ,
4.14.50 ,
4.14.51 ,
4.14.52 ,
4.14.53 ,
4.14.54 ,
4.14.55 ,
4.14.56 ,
4.14.57 ,
4.15.10 ,
4.15.11 ,
4.15.12 ,
4.15.13 ,
4.15.14 ,
4.15.15 ,
4.15.16 ,
4.15.17 ,
4.15.18 ,
4.15.19 ,
4.15.21 ,
4.15.22 ,
4.15.23 ,
4.15.24 ,
4.15.25 ,
4.15.27 ,
4.15.28 ,
4.15.29 ,
4.15.30 ,
4.15.31 ,
4.15.32 ,
4.15.33 ,
4.15.34 ,
4.15.35 ,
4.15.36 ,
4.15.37 ,
4.15.38 ,
4.15.39 ,
4.15.40 ,
4.15.41 ,
4.15.42 ,
4.15.43 ,
4.15.45 ,
4.15.46 ,
4.15.47 ,
4.15.48 ,
4.15.49 ,
4.15.5 ,
4.15.50 ,
4.15.51 ,
4.15.52 ,
4.15.53 ,
4.15.54 ,
4.15.55 ,
4.15.56 ,
4.15.57 ,
4.15.6 ,
4.15.7 ,
4.15.8 ,
4.15.9
Loading changelog, this may take a while ...
Created: 2026-01-29 15:36:15 +0000 UTC
Image Digest: sha256:d517885ee59d46c2aca8be69fdcf916f78a510ae76a5a9f7875c1c5ab3cfc3c1
Components
New images
Removed images
kuryr-cni
kuryr-controller
openstack-machine-controllers
ovirt-machine-controllers
rhel-coreos-8
rhel-coreos-8-extensions
Rebuilt images without code change
machine-os-content sha256:7e0dc38c15bd4a3d323d84bcd6e981a05301fbb80f038ee547b6843cb384c1f1
OCPBUGS-58633 , OCPBUGS-58638 : Bump glog to v1.2.5 in release-4.15 (#7905) #7905
OCPBUGS-54402 : Bump go-jwt to 4.5.2 to fix CVE-30204 (#7487) #7487
OCPBUGS-46940 : OCPBUGS-46185: Bump golang.org/x/net to 0.33.0 (#7199) #7199
OCPBUGS-22539 : Bump otelhttp from 0.35.1 to 0.44.0 using replace approach (#6858) #6858
OCPBUGS-43022 : Update go-jose to v2.6.3 to mitigate CVE-2024-28180 (#6894) #6894
OCPBUGS-42571 : Libraries bump to mitigate CVE-2024-27289 (#6834) #6834
OCPBUGS-36577 : Switch to github.com/docker/distribution/reference to Mitigate CVE-2024-3727 (#6753) #6753
OCPBUGS-34641 : Invalid Pull-Secret when using password which contains a colon character (#6381) #6381
OCPBUGS-31631 : Deploy dual stack with IPv6 on top of bond/vlan fails (#6245) #6245
MGMT-17593 : Bump x/net to at least v0.24.0 to mitigate CVE-2023-45288 (#6217) #6217
17549: Bump runc version to 1.1.12 to Mitigate CVE-2024-21626 (#6211) #6211
Revert “MGMT-17549: Bump runc version to 1.1.12 to Mitigate CVE-2024-21626 (#6194)” (#6208) #6194
MGMT-17549 : Bump runc version to 1.1.12 to Mitigate CVE-2024-21626 (#6194) #6194
MGMT-17541 : Replace broken golangci reference (#6191) #6191
OCPBUGS-30232 : Handle skipping hostPrefix validation for IPv6 For non-OVN/SDN networkTypes, the hostPrefix validation is not required and it is skipped. This fixes a regression introduced in the fix for https://issues.redhat.com/browse/OCPBUGS-23069 in which IPv6 CIDRs were not using the correct default hostPrefix. In addition, all cases where the validation is used are now covered. (#6137) #6137
NO-ISSUE: replace postgres images as current one disappeared from quay (#6135) #6135
MGMT-16517 : Add Env Var Deployment Type & Set ABI (#6016) #6016
MGMT-16980 : Change the default value of ENABLE_SKIP_MCO_REBOOT to false (#6005) #6005
MGMT-16494 : Move ip hint file creation to ignition in order to change it in IBI process (#5926) #5926
OCPBUGS-24428 : Redact passwords logged in installConfigOverrides Ensure that any passwords included in installConfigOverrides are redacted in logs. (#5905) #5905
MGMT-16414 : When trying to create cluster with s390x architecture, an error occurs that stops cluster creation (#5876) #5876
NO-ISSUE: Bump OCP versions: 4.12 (#5783) #5783
MGMT-16289 : Add configuration variable and cluster attribute defining if soft timeouts feature is enabled (#5740) #5740
NO-ISSUE: Bump OCP versions: 4.14, 4.11, 4.13, 4.15 (#5779) #5779
fix: allow LVMS for MultiNode >=4.15.0 (#5757) #5757
Update RHTAP references (#5776) #5776
NO-ISSUE: add build tags option to enable FIPS build (#5768) #5768
Update RHTAP references (#5774) #5774
NO-ISSUE: update OS_IMAGES filter to 4.11 (#5773) #5773
MGMT-16303 : Disable skip MCO reboot for architecture s390x (#5765) #5765
Propagate OS_IMAGES var in deploy operator (#5762) #5762
Update RHTAP references (#5767) #5767
MGMT-15425 : Change chosen mce release to match openshift version (#5716) #5716
MGMT-14605 : Gather more data for hypershift tests (#5344) #5344
MGMT-16320 : Agent should connect to iBFT iSCSI targets (#5753) #5753
MGMT-16312 fix update host ignition for unbound host (#5751) #5751
NO-ISSUE: Inventory code cleanup - unused params (#5755) #5755
HOSTEDCP-999 : Fix incorrect ICSP for CAPI CI (#5747) #5747
MGMT-15690 : Add support for external platform (#5738) #5738
MGMT-16235 : Ensure that agent controller will watch for changes to ignition endpoint token. (#5736) #5736
MGMT-13461 : Fix Tang validation when day2 host join an imported cluster (#5700) #5700
MGMT-15972 : Remove Swagger definition for api_vip and ingress_vip (#5734) #5734
HOSTEDCP-999 : Fix incorrect check for CAPI image in ci (#5741) #5741
Update RHTAP references (#5733) #5733
MGMT-16273 : Allow installing on iSCSI disks on OCI (#5728) #5728
MGMT-16291 : revert default faulty OCP images (#5737) #5737
MGMT-14810 : Remove API and Ingress VIP (#5501) #5501
HOSTEDCP-999 : Missed service-cidr for capi ipv6 CI test (#5721) #5721
NO-ISSUE: Bump github.com/google/uuid from 1.3.1 to 1.4.0 (#5726) #5726
NO-ISSUE: Bump OCP versions: 4.14, 4.13, 4.12 (#5722) #5722
Update baremetal operator (#5698) #5698
MGMT-16001 : Sanitize reclaim agent daemonset name (#5699) #5699
HOSTEDCP-999 : Minor fixes for disconnected CAPI CI (#5713) #5713
AGENT-740 : Include baremetal host BMC fields in install-config override (#5675) #5675
NO-ISSUE: adding me to owners (#5709) #5709
NO-ISSUE: Cluster code cleanups (#5715) #5715
NO-ISSUE: Bump OCP versions: 4.12 (#5714) #5714
MGMT-16236 : remove elastic APM (#5702) #5702
NO-ISSUE: Upgrade debug image to latest delve (#5711) #5711
Update RHTAP references (#5688) #5688
HOSTEDCP-999 : Setup CI for disconnected ipv6 CAPI (#5536) #5536
NO-ISSUE: Inventory code cleanups (#5695) #5695
NO-ISSUE: dependabot optimize (#5697) #5697
NO-ISSUE: Bump OCP versions: 4.14, 4.13, 4.15 (#5701) #5701
NO-ISSUE: Remove unused functions (#5696) #5696
NO-ISSUE: BMH and Agent controllers code cleanup (#5693) #5693
NO-ISSUE: Remove unused functions from ctrl event wrapper (#5694) #5694
NO-ISSUE: Bump github.com/Azure/go-autorest/autorest/adal (#5604) #5604
NO-ISSUE: ClusterDeployments controller code cleanup (#5689) #5689
NO-ISSUE: InfraEnv controller code cleanup (#5690) #5690
MGMT-15271 : Append kargs to installer for s390x (#5665) #5665
Add missing scheme to ServiceMonitor (#5672) #5672
Updating ose-agent-installer-api-server-container image to be consistent with ART (#5495) #5495
MGMT-15971 : Create ManagedCluster CR so that the hub will show up as “Ready” in MCE (#5575) #5575
Update RHTAP references (#5682) #5682
NO-JIRA: Enable skip mco reboot functionality only if openshift version is 4.15 and higher (#5680) #5680
NO-ISSUE: Bump OCP versions: 4.11, 4.12, 4.13 (#5681) #5681
MGMT-16151 : allow CORS OPTIONS for s3 presigned url (#5674) #5674
Update RHTAP references (#5654) #5654
MGMT-16151 : allow CORS HEAD for s3 presigned url, as UI uses preflight checks (#5671) #5671
MGMT-16061 : changing dnsmasq configuration for sno in order to meet single ip installation flow for ibu (#5658) #5658
MGMT-16077 : Add 4.15 release and OS images (#5673) #5673
AGENT-723 : Use json.Marshal to correctly process vSphere credentials (#5592) #5592
NO-ISSUE: Fix for error in wait_for_cmd_amount function (#5670) #5670
MGMT-15902 : Trigger reboots for node event when day2 node moves to done (#5648) #5648
NO-JIRA: Allow the command in wait_for_cmd_amount to receive arguments (#5668) #5668
MGMT-16164 : Install 4.14 redhat-operators catalog for LSO (#5669) #5669
MGMT-15878 : Ensure that hosts emit event showing why preparation failed. (#5521) #5521
MGMT-15878 : Add a condition to show the last preparation failure (#5524) #5524
MGMT-16151 : change default envoy sidecar timeout value (#5667) #5667
MGMT-16114 : Update 4.14 release image to use GA version (#5651) #5651
MGMT-16052 : Fix cluster HighAvailabilityMode nil pointer in update flow (#5659) #5659
Bump OCP versions: 4.14, 4.12 (#5661) #5661
MGMT-15405 : Add a URL to infraenv to show download link from static network config (#5638) #5638
OCPBUGS-19823 : Ignore hostPrefix validation for plugins other than OVN/SDN (#5565) #5565
MGMT-15271 : Add the boot command line to the host inventory (#5649) #5649
MGMT-15680 : Adds InfraEnv ctrl watch for pull secret changes (#5589) #5589
NO-ISSUE: Bump github.com/jackc/pgconn from 1.12.0 to 1.14.1 (#5653) #5653
MGMT-16061 : changing dnsmasq configuration for sno in order to meet single ip installation flow for ibu (#5613) #5613
NO-ISSUE: Bump github.com/jackc/pgtype from 1.11.0 to 1.14.0 (#5647) #5647
Update RHTAP references (#5637) #5637
Bump OCP versions: 4.13 (#5645) #5645
NO-ISSUE: Bump go.opentelemetry.io/otel/exporters/otlp (#5644) #5644
MGMT-15683 : Ensure that manifest filename has valid name part (#5635) #5635
NO-ISSUE: Bump go.opentelemetry.io/contrib from 0.20.0 to 1.20.0 (#5641) #5641
NO-ISSUE: Bump go.uber.org/atomic from 1.7.0 to 1.11.0 (#5619) #5619
Update RHTAP references (#5624) #5624
MGMT-15684 : Return appropriate HTTP error code for invalid manifest file path (#5634) #5634
Bump OCP versions: 4.14 (#5633) #5633
NO-ISSUE: Bump github.com/jackc/pgproto3/v2 from 2.3.0 to 2.3.2 (#5632) #5632
MGMT-16037 : fix messaging errors on big clusters (#5628) #5628
MGMT-16039 : upgrade to golang 1.20 (#5616) #5616
NO-ISSUE: Bump github.com/Azure/go-autorest/autorest (#5622) #5622
Revert “NO-ISSUE: use kubectl 1.28.2 (#5572)” (#5618) #5572
Bump OCP versions: 4.12 (#5615) #5615
MGMT-16045 : mitigate CVE-2023-44487 (#5614) #5614
MGMT-15902 : Add event that shows the number of reboots for a node before completing installation (#5591) #5591
Add skopeo to OCP build (#5558) #5558
NO-ISSUE: Bump cloud.google.com/go/compute from 1.6.1 to 1.23.1 (#5601) #5601
NO-ISSUE: Bump github.com/pierrec/lz4 (#5600) #5600
NO-ISSUE: vendor current master (#5594) #5594
NO-ISSUE: fixing dependabot issues (#5595) #5595
Bump OCP versions: 4.13, 4.14 (#5593) #5593
Update RHTAP references (#5590) #5590
MGMT-16001 : Sanitize reclaim daemonset name (#5579) #5579
Bump OCP versions: 4.11, 4.12, 4.13 (#5586) #5586
MGMT-13198 : Add API endpoint to create assisted installer event (#5578) #5578
MGMT-15980 : added missing Create op to infraenvs Webhook (#5569) #5569
Update RHTAP references (#5573) #5573
NO-ISSUE: use kubectl 1.28.2 (#5572) #5572
Update RHTAP references (#5570) #5570
MGMT-15949 : fix missing ImageSetRef validation (#5552) #5552
Revert “NO-ISSUE: Set default ENABLE_SKIP_MCO_REBOOT: false (#5560)” (#5566) #5560
MGMT-15572 Hold installation when reconcile-pause annotation is set on cluster deployment (#5549) #5549
NO-ISSUE: Fix console output in ZTP jobs (#5562) #5562
NO-ISSUE: add console output for ztp (#5550) #5550
Bump OCP versions: 4.14 (#5559) #5559
MGMT-15796 : set CloudControllerManager to External for OCI (#5548) #5548
NO-ISSUE: Set default ENABLE_SKIP_MCO_REBOOT: false (#5560) #5560
Bump OCP versions: 4.12, 4.14, 4.13 (#5546) #5546
Update RHTAP references (#5539) #5539
MGMT-15950 : Fix DNS wilcard domain validation (#5544) #5544
WIP: Add assisted images service short URL routes (#5543) #5543
Update RHTAP references (#5538) #5538
MGMT-15738 : Support for E2E test, make sure we have an infraenv for adding a node to the local cluster. (#5477) #5477
Bump OCP versions: 4.13, 4.11 (#5537) #5537
MGMT-14409 : generate short image URL (#5523) #5523
MGMT-15762 : fix odf validation failing where is one small disk (#5529) #5529
Update RHTAP references (#5520) #5520
Bump OCP versions: 4.12, 4.14 (#5528) #5528
NO-ISSUE: fail upload if response is not 2XX (#5522) #5522
Bump OCP versions: 4.14 (#5525) #5525
NO-ISSUE: fix docker-ce-cli package missing (#5499) #5499
NO-ISSUE: Add versions file to onprem event upload (#5514) #5514
MGMT-15699 : Service changes for avoiding MCO reboot (#5453) #5453
Update RHTAP references (#5517) #5517
MGMT-15598 : Add a parameter to manifest list to disable filter (#5498) #5498
Bump OCP versions: 4.12 (#5515) #5515
Update RHTAP references (#5513) #5513
Bump OCP versions: 4.14 (#5512) #5512
NO-ISSUE: Fix email domain for event uploader (#5511) #5511
Update RHTAP references (#5510) #5510
Update RHTAP references (#5508) #5508
Bump OCP versions: 4.12, 4.13 (#5506) #5506
MGMT-15808 : change base image to stream9 (#5497) #5497
MGMT-15559 : Change detached annotation condition in non-converged flow (#5445) #5445
MGMT-15732 : Fix unbound variable (#5493) #5493
Update RHTAP references (#5492) #5492
Bump OCP versions: 4.14, 4.11 (#5496) #5496
Update RHTAP references (#5470) #5470
MGMT-15715 : Allow handling multi-document YAML custom manifests (#5480) #5480
MGMT-15732 : Add extra flag var for hypershift install (#5469) #5469
XMGMT-15704 : Bugfix for local cluster import (#5484) #5484
NO-ISSUE: update RHTAP deprecated image check (#5488) #5488
Bump OCP versions: 4.12, 4.13 (#5483) #5483
MGMT-15653 : Fix DNS regex validation (#5482) #5482
MGMT-15716 : notify events when updating cluster status (#5476) #5476
MGMT-15503 : Update operator bundle channel (#5474) #5474
Bump OCP versions: 4.14 (#5472) #5472
MGMT-15306 : Fix UpdateCluster for requests that include VIPS and UMA (#5462) #5462
MGMT-15704 : One typo and one missing piece of config, discovered after MGMT-15704 merged (#5465) #5465
Bump OCP versions: 4.12 (#5467) #5467
MGMT-15653 : Validate domain in one place (#5451) #5451
MGMT-15704 : Assisted service should create Day2 import CR for hub cluster. (#5459) #5459
MGMT-15340 : Ensure vlan interface names will be <= 15 characters (#5389) #5389
NO-ISSUE: Add subsystem tests to platform support level (#5460) #5460
Bump OCP versions: 4.10 (#5463) #5463
Bump OCP versions: 4.13 (#5457) #5457
Bump OCP versions: 4.13, 4.11, 4.12 (#5454) #5454
MGMT-11456 : Bugfix - remove redundant code (#5372) #5372
Bump OCP versions: 4.11, 4.12, 4.13 (#5452) #5452
AGENT-694 : Support external platform type for agent installer (#5438) #5438
MGMT-15100 : Remove unused feature-support-levels API endpoint (#5450) #5450
Update RHTAP references (#5410) #5410
Fix setup_env.sh failure handling (#5442) #5442
Add BMH annotation keys to docs (#5444) #5444
OCPBUGS-17992 day2 skip install config overrides (#5439) #5439
Bump OCP versions: 4.12, 4.10 (#5441) #5441
MGMT-14881 : return a valid error when no disks has been found (#5430) #5430
MGMT-15595 : Make client a separate go module (#5434) #5434
MGMT-15177 : Align feature support level to support platform as filterable feature (#5424) #5424
Bump OCP versions: 4.12 (#5432) #5432
Bump OCP versions: 4.11, 4.13 (#5431) #5431
Use go 1.18 when setting up environment (#5422) #5422
NO-ISSUE: Bump k8s.io/klog/v2 from 2.70.1 to 2.100.1 (#5428) #5428
MGMT-15356 : Ensure filenames are distinct between openshift and manifest (#5382) #5382
MGMT-15491 : Validate vSphere disk.EnableUUID ignoring cluster platform (#5416) #5416
NO-ISSUE: Extend waiting time to test DB container to be ready (#5425) #5425
Bump OCP versions: 4.10 (#5423) #5423
Bump OCP versions: 4.13, 4.12 (#5421) #5421
OCPBUGS-17415 : Bump golang.org/x/net (#5417) #5417
MGMT-14933 : Validate hosts running in OCI (#5413) #5413
Ensure inspection is disabled on day-2 spoke node BMHs (#5406) #5406
MGMT-15423 : Change the user message from: ‘Host is not compatible with cluster platform %s; either disable this host or choose a compatible cluster platform (%v)’ to ‘Host is not compatible with cluster platform %s; either disable this host or discover a new, compatible host.’ (#5412) #5412
Don’t set detached for BMHs without infraenv label (#5414) #5414
RHTAPBUGS-318 : Fetch tag in RHTAP build (#5333) #5333
MGMT-15424 : parametrize envoy configmap name (#5411) #5411
Bump OCP versions: 4.12 (#5409) #5409
Bump OCP versions: 4.11 (#5407) #5407
MGMT-15335 : Fix missing state when trying to update to not supported platform (#5399) #5399
Bump OCP versions: 4.14 (#5403) #5403
Update RHTAP references (#5387) #5387
MGMT-15389 : add feature flag to enable/disable OKD support (#5400) #5400
MGMT-11949 : MGMT-12278: Update libksba and libxml2 (#5398) #5398
MGMT-15388 : Remove unsupported platforms from the supported-platforms endpoint (#5394) #5394
AGENT-557 : Split register into registerCluster and registerInfraEnv (#5376) #5376
MGMT-15339 : Run network config before NetworkManager (#5375) #5375
MGMT-15128 : Remove control plane machine set so that control-plane-machine-set operator would not go degraded due to placeholder credentials on installation. (#5378) #5378
MGMT-15047 : use installer to deploy on external platform (#5381) #5381
MGMT-15343 : dependabot remove docker (#5392) #5392
Bump OCP versions: 4.13, 4.10 (#5391) #5391
Don’t attempt to contact spoke while unbinding a day2 host (#5383) #5383
Update RHTAP references (#5374) #5374
MGMT-15128 : Remove control plane machine set so that control-plane-machine-set operator would not go degraded due to placeholder credentials on installation. (#5364) #5364
Bump OCP versions: 4.12 (#5384) #5384
MGMT-14793 : Assisted discovery core and root user shell should have (#5373) #5373
MGMT-15215 : Allow setting of UI specific data for a cluster (#5358) #5358
MGMT-15343 : dependabot group updates (#5379) #5379
MGMT-14923 : add OSImageVersion to InfraEnvSpec (#5365) #5365
Bump OCP versions: 4.13 (#5377) #5377
Update RHTAP references (#5370) #5370
OCPBUGS-16077 : Fix DNS validation (#5371) #5371
MGMT-11456 : kube-api should allow user to specify infraenv additional trust bundle (#5357) #5357
Bump OCP versions: 4.11, 4.12 (#5369) #5369
MGMT-15295 : Fixc bug in list manifests (#5366) #5366
MGMT-14015 : Custom manifest feature usage is never turning off (#5363) #5363
MGMT-14491 : Invalid node label returns error 500 instead of 400 (#5362) #5362
Update RHTAP references (#5328) #5328
Bump OCP versions: 4.14 (#5360) #5360
MGMT-15243 : Skip any zero size manifests when applying (#5355) #5355
Bump OCP versions: 4.12 (#5356) #5356
MGMT-14656 : Sort disks by HCTL after the other options (#5354) #5354
No-ISSUE: Revert “MGMT-14634: Ensure that empty manifest may not be added. (#5348)” (#5353) #5348
MGMT-15213 : temporary disable release-domain-name-resolved-correctly validation (#5351) #5351
MGMT-15073 : Cluster reset - only system generated manifests to be deleted (#5338) #5338
MGMT-15070 : Unable to change machine-network with dual stack (#5349) #5349
MGMT-14634 : Ensure that empty manifest may not be added. (#5348) #5348
MGMT-15150 : Use same installer binary for all platform types (#5334) #5334
MGMT-14851 : Update docs for allowing automatedCleaningMode (#5343) #5343
Bump OCP versions: 4.14, 4.12 (#5345) #5345
MGMT-14726 : Ensure that manifest filename does not contain spaces. (#5342) #5342
MGMT-15064 : Update is_external API description (#5336) #5336
Bump OCP versions: 4.10, 4.11 (#5339) #5339
MGMT-14852 : Allow AutomatedCleaningMode to be set by user (#5319) #5319
MGMT-14374 : update day2 master docs (#5335) #5335
MGMT-14620 Only emit succesful host creation message for pre install hosts (#5296) #5296
MGMT-14704 : Provide info on custom/vs non custom manifest in manifest endpoint. (#5278) #5278
MGMT-15114 : remove event for cluster registration failed (#5330) #5330
MGMT-15126 : Add missing incompatible features in some of the feature-support feature (#5327) #5327
MGMT-15107 : Bump version for hacking LSO catalog (#5323) #5323
Create an override annotation for the ironic agent image (#5310) #5310
OCPBUGS-13621 : Fix singular Ingress and API cluster VIPs removal (#5216) #5216
Don’t require key encipherment usage for approving CSRs (#5322) #5322
MGMT-13284 : Check for BMH CRD before creating controller (#5284) #5284
MGMT-14937 : Deprecate user_managed_networking attribute (#5317) #5317
Bump OCP versions: 4.14 (#5320) #5320
Bump OCP versions: 4.13, 4.10, 4.12 (#5316) #5316
NO-ISSUE: parametrize template to enable switching secrets (#5313) #5313
MGMT-14240 : Specify connect-timeout on curl (#5314) #5314
MGMT-15034 : Fix patch of infrastructure CR with external platform (#5312) #5312
MGMT-14979 : add sasl/scraml auth method for kafka notifications (#5299) #5299
MGMT-15025 : Forbid register Z architecture cluster with OCI platform (#5309) #5309
MGMT-15015 Provider IsHostSupported panic if platform is not found (#5306) #5306
OCPBUGS-13738 enforce additional ntp sources added into chrony (#5295) #5295
MGMT-14992 : Fix Minimal ISO set as default in s390x (#5302) #5302
MGMT-14631 : Removing leftover of support for openshift 4.8 (#5301) #5301
Bump OCP versions: 4.14, 4.11 (#5300) #5300
MGMT-14973 : Fix misleading logs showing wrong platform and user_managed_networking combination (#5298) #5298
MGMT-14975 : Update MCE operator installation to use stable-2.3 channel (#5297) #5297
MGMT-14769 : Enable upgrade agent by default (#5276) #5276
MGMT-14165 : AgentClusterInstall Webhooks improvements and fixes (#5275) #5275
Bump OCP versions: 4.13, 4.12 (#5293) #5293
MGMT-14730 : Validate that manifest file size does not exceed 1MB (#5281) #5281
MGMT-14883 : Fix feature-support validation fail to validate openshift version (#5290) #5290
MGMT-14904 : fix error code for ignition size validation (#5291) #5291
MGMT-14631 : Remove support for openshift 4.8 (#5221) #5221
Add tls config for the service monitor (#5282) #5282
Bump OCP versions: 4.12, 4.10 (#5288) #5288
Red Hat Trusted App Pipeline update assisted-service-q2vh (#5270) #5270
Bump OCP versions: 4.13 (#5280) #5280
OCPBUGS-7076 : Copy Day2 BMH if Agent is installing (#5250) #5250
OCPBUGS-14405 : Avoid panic if pull secret contains non-string (#5267) #5267
MGMT-13746 : validate discovery ignition size (#5273) #5273
MGMT-14830 : Enable TechPreviewNoUpgrade when platform is external (#5279) #5279
MGMT-13431 : patching bug - ODF storage class not recognizing all device sets (#5268) #5268
MGMT-14803 : Fix cluster update won’t fail on incompatible OLM operator dependency (#5264) #5264
MGMT-14600 : Prevent installing dual-stack vSphere on OCP version smaller than 4.13 (#5271) #5271
MGMT-14750 : Allow FC, ECKD, FBA drive types on s390x (#5269) #5269
MGMT-12186 : Add MCE operator plugin (#5203) #5203
Bump OCP versions: 4.11, 4.12 (#5265) #5265
MGMT-14781 : Make LSO operator to support all CPU architectures (#5262) #5262
Bump OCP versions: 4.13 (#5261) #5261
MGMT-14582 : Set OCI platform behind a capability (#5249) #5249
MGMT-13997 : Issues when using multiple bonds with CIM Assisted Installer (#5233) #5233
MGMT-13685 : Make sure ingress and api vip are not broadcast address. (#5256) #5256
MGMT-14723 : Fix randomly failing subsystem test (#5259) #5259
MGMT-14649 : Add feature support for OCI platform (#5244) #5244
NO-ISSUE: fixed misleading error message, the order of the host status was reverse (#5257) #5257
MGMT-14306 : Update host role validation to accept AutoAssign in Day2 (#5247) #5247
Delete the spoke BMH before removing the finalizer (#5239) #5239
MGMT-14723 : Remove duplicate operator cpu architecture validation (#5254) #5254
MGMT-14734 : Fix failed to update Nutanix provider cluster when on multi architecture (#5253) #5253
MGMT-14728 : Escape the escape char () (#5252) #5252
Bump OCP versions: 4.14 (#5251) #5251
MGMT-14721 : Get icsp-file from registries.conf for oc extract command (#5245) #5245
Bump OCP versions: 4.10 (#5248) #5248
Docs fix: ensure kubeconfig secret is created with a kubeconfig key. (#5246) #5246
MGMT-13938 : support external platform (#5143) #5143
Bump OCP versions: 4.11, 4.12 (#5243) #5243
MGMT-8097 : masters schedulable kube-api (#5240) #5240
Remove the detached annotation when BMH is being deleted (#5228) #5228
MGMT-13643 : added MaxLength to additional_trust_bundle (#5226) #5226
Bump OCP versions: 4.11, 4.12 (#5232) #5232
MGMT-14356 : Set 4.13 to default (#5230) #5230
Fix cpu partitioning struct tag/field (#5227) #5227
Force a BMH reboot when the infraenv image changes (#5212) #5212
MGMT-14416 : VipDhcpAllocation from update params should take precedence (#5209) #5209
Bump OCP versions: 4.13 (#5225) #5225
MGMT-14526 : Possible issue with validateNoWildcardDNS resolution validation (#5198) #5198
MGMT-14648 : Make “sufficient-masters-count - failed” subsystem test tolerate extra event. (#5223) #5223
Don’t panic on BMH delete when agents are unbound (#5219) #5219
NO-ISSUE: Wait for hostedcontrolplane to be created (#5218) #5218
NO-ISSUE: Fix install customization doc (#5217) #5217
MGMT-14610 : Wait for the hostedcontrolplane CR ready status instead of watching the ready status of all pods in the namespace (#5215) #5215
OCPBUGS-13081 : Support by-path root device hints (#5185) #5185
MGMT-14526 : Allow trailing dot (.) to be appended to domain name (#5208) #5208
OCPBUGS-13310 support setting CPUPartitioningMode with install config overrides (#5207) #5207
Bump OCP versions: 4.12, 4.13 (#5205) #5205
Deprovision when using converged and unbinding (#5199) #5199
OCPBUGS-13356 : Fix ‘vendor’ root device hint evaluation (#5197) #5197
MGMT-13977 : Disallow single character base domain (#5196) #5196
Updating ose-agent-installer-api-server images to be consistent with ART (#5026) #5026
MGMT-14530 : Changing event message filtering to escape wildcards %,_ and not be case sensetive (#5194) #5194
OCPBUGS-13250 : Fix disk name in generated HardwareDetails (#5193) #5193
MGMT-14370 : add OCP 4.14.0-ec.0 images (#5190) #5190
Podman README-disconnected requires 4.2 and not 3.3 (#5191) #5191
Bump OCP versions: 4.13 (#5189) #5189
MGMT-14425 : Changing event counts behavior (#5186) #5186
MGMT-14226 : Upgrade moby to 20.10.24 (#5153) #5153
Remove all spoke resources when deleting the node (#5161) #5161
Bump OCP versions: 4.12, 4.10 (#5182) #5182
MGMT-14507 : Exposing event headers for scripts (#5179) #5179
MGMT-14509 return 404 if cluster not found when host try to register (#5180) #5180
NO-ISSUE: Check whether is defined (#5178) #5178
NO-ISSUE: Override the control plane operator image only if explicitly asked to (#5176) #5176
MGMT-11424 : added validations for ignition cert (#5145) #5145
Bump OCP versions: 4.11 (#5173) #5173
Bump OCP versions: 4.13 (#5170) #5170
NO-ISSUE: Fixes the UI deployment (#5169) #5169
Update state machine graphs (#5168) #5168
MGMT-14462 : Allow to deploy assisted-service with all available images (#5167) #5167
NO-ISSUE Remove Approvers that are not longer in the group (#5166) #5166
Handle ironic URLs in dual stack hub and IPv6 spoke (#5163) #5163
MGMT-14449 : change creation time for hosts to one minute ago instead of now, to avoid race conditions in tests (#5160) #5160
MGMT-13890 : Drain before deprovisioning spoke nodes (#5110) #5110
Bump OCP versions: 4.10, 4.11 (#5157) #5157
MGMT-13955 : Add known issue regarding ignoring disk size validations (#5158) #5158
MGMT-14315 : Allow to install P and Z architectures with Single Node Openshift on 4.13 (#5147) #5147
NO ISSUE: use literal for cpu limits, to enable nulliable value (#5155) #5155
Bump OCP versions: 4.12 (#5151) #5151
MGMT-14389 : Update operator bundle channel (#5148) #5148
MGMT-14108 : add readiness probe initialDelaySeconds for assisted-service and assisted-image-service (#5150) #5150
MGMT-14137 : Create test flow for ZTP for node labeling and avoiding reboot for custom role (#5086) #5086
Bump OCP versions: 4.13 (#5149) #5149
MGMT-14396 : Get correct path for binary from mirror (#5141) #5141
NO-ISSUE: Fix grammar mistakes (#5146) #5146
MGMT-14395 : Day-2 domain name resolution step shouldn’t include release image domain (#5139) #5139
Cache must-gather images by architecture (#5140) #5140
MGMT-14298 : Set full ISO as default for Z architecture (#5136) #5136
Improve inaccurate ODF validation message (#5137) #5137
MGMT-14338 : add missing stream notifications (#5132) #5132
Bump OCP versions: 4.11 (#5135) #5135
Bump OCP versions: 4.10, 4.12 (#5131) #5131
Use contexts in spoke client (#5130) #5130
MGMT-13083 : limit the size of release binaries (#5120) #5120
NO-ISSUE: Currently, while trying to fetch events using cluster_id, host_ids and severities we don’t get severity filtered correctly because of the precedence of AND, OR in SQL. (#5123) #5123
MGMT-14239 : Enable UMN as default for Power arch (ppc64le) (#5127) #5127
MGMT-14266 : Fix unclear message when creating a P/Z cluster with OCP ver 4.10 (#5122) #5122
MGMT-10977 : Validate DNS server connection (#5102) #5102
MGMT-14242 : MGMT-14017: MGMT-14239: MGMT-14300: Fix multiple bugs (feature support and feature usage) (#5119) #5119
Add private SELinux label for volume mount content (#5109) #5109
Bump OCP versions: 4.11, 4.12, 4.13 (#5118) #5118
MGMT-14283 : Ignored validations - validation id “all” does not work (#5117) #5117
MGMT-14125 : Use systemd unit instead of dracut hook to configure network (#5107) #5107
MGMT-12301 : refator the progress bar to use state machine (#5103) #5103
Bump OCP versions: 4.13, 4.9, 4.12, 4.11, 4.10 (#5115) #5115
MGMT-13178 : As part of events pagination epic, this commit is about adding ‘order’ parameter so the client can request the events in the desired order, and changing the counting of events by severity to apply after the filtering (#5106) #5106
Bump OCP versions: 4.12, 4.13 (#5105) #5105
MGMT-14195 : Use clusterIdMatcher instead of gomock.Any() in inventory_test (#5104) #5104
MGMT-14161 : removing multi cpu architecture for infra envs (#5098) #5098
MGMT-13846 : Reject UserManagedNetworking true when cluster VIPs are set (#5071) #5071
MGMT-13888 : Remove spoke node on BMH delete (#5028) #5028
MGMT-14190 : Allow installing Power architecture with CMN and MinimalISO (#5101) #5101
MGMT-14026 : Add validation to ensure ignored validation ID exists (#5074) #5074
MGMT-13918 : Modify ignored validation should not be possible post-install (#5077) #5077
NO-ISSUE: Make DB transaction terminate function only when error (#4946) #4946
NO-ISSUE: Wrap VIP update in the DB around transaction (#4943) #4943
MGMT-13916 : Update enhancement doc for ignoring validations feature (#5095) #5095
Bump OCP versions: 4.10, 4.11, 4.13 (#5100) #5100
Add a function for setting annotations (#5099) #5099
Presently, in the PreNetworkConfig script, we are removing the default network manager configuration for a host in every case. This should be altered so that the default configuration is deleted only if custom nmstate configuration has been provided for the host. (#5044) #5044
MGMT-14078 : Add “unavailable” option to the support-level enum (#5062) #5062
MGMT-14150 : Update install-config to support multi vSphere data-centers (#5090) #5090
MGMT-14133 : Fix P/Z support level allows cluster with OLM operators. (#5088) #5088
MGMT-14017 : report accurate P/Z feature usage if multi (#5079) #5079
MGMT-14074 : Don’t run nmcli if not available (#5087) #5087
Bump OCP versions: 4.12, 4.9 (#5080) #5080
MGMT-13925 : Get the ironic URLs in reconcile rather than at startup (#5041) #5041
MGMT-14074 : Reload NM config after creation (#5066) #5066
Update cluster-baremetal-operator to 4.13 branch (#5078) #5078
NO-ISSUE: add release tag to notified events versions (#5068) #5068
MGMT-14109 : Set P and Z architectures support label as tech-preview on 4.12 (#5072) #5072
MGMT-13308 : Adding events pagination - Currently events are retrieved by the service as a list of events which match the query. This commit is implementing events pagination. (#4987) #4987
MGMT-14073 : Fix logging for event uploader (#5070) #5070
Remove README section about the assisted-service live iso (#5069) #5069
MGMT-14040 : Add log that shows event upload is running (#5054) #5054
Bump OCP versions: 4.11 (#5060) #5060
actually use the ENABLE_DATA_COLLECTION parameter (#5063) #5063
MGMT-14075 : Fix register cluster won’t fail when creating cluster with P or Z architectures on 4.12 (#5061) #5061
MGMT-14000 : Document support-level new API (#5053) #5053
Cleanup BMAC logging (#5055) #5055
Bump OCP versions: 4.12 (#5057) #5057
MGMT-13550 : Create day2 support for node labeling (#5042) #5042
OKD: bump to latest stable release (#5020) #5020
MGMT-14042 : Disable data collection for SaaS by default (#5056) #5056
Bump OCP versions: 4.13 (#5051) #5051
manifests: Add a shebang to NM dispatcher script (#5050) #5050
MGMT-12486 : Add ENABLE_DATA_COLLECTION environment variable to template.yaml (#5048) #5048
MGMT-13520 : filter out unnecessary validations for unbound host (#5023) #5023
MGMT-13862 : Return bed request on wrong feature-feature or feature-architecture combination. (#5039) #5039
MGMT-13947 : Revert assisted boot reporter service (#5035) #5035
Sparing the redirect for official k8s registry (#5033) #5033
MGMT-13596 : Add PATCH to the Manifests API (#5015) #5015
Bump OCP versions: 4.12, 4.13, 4.9, 4.8, 4.11, 4.10 (#5043) #5043
NO-ISSUE: remove the full ignition from log (#5032) #5032
OCPBUGS-8335 : Don’t wait for console if disabled (#5022) #5022
Update multi image names (#5016) #5016
ACM-4127 : Cache release images even if there is no matching OS image (#5027) #5027
MGMT-13957 : deny requests with query parameters matching node-boot. Directed at upload files (#5037) #5037
In case the converged flow is enabled and the assisted-service fails to get a valid ironic inspection URL it’s using the Ironic URL as default. (#5031) #5031
MGMT-13903 : Select inside machine CIDR for BMH (#5024) #5024
MGMT-13904 Add missing feature IDs. (#5030) #5030
MGMT-13913 : Fix empty features list when calling GET v2/support-levels/features (#5029) #5029
MGMT-13859 : notify when creating cluster and resources (#5013) #5013
Allow removing the agent when BMH is deleted (#4948) #4948
MGMT-13659 : Design a feature support mechanism that supports different feature-support criteria (#4989) #4989
MGMT-12486 : Implement data sending for on-prem deployments (#4880) #4880
Fix invalid character in feature-support enhancement (#5021) #5021
MGMT-13780 : Write a feature-support-level enhancement doc (#5000) #5000
MGMT-13398 omit BMH secret from day2 spoke worker (#5009) #5009
NO-ISSUE: display code coverage locally without mocks (#5011) #5011
bminventory: throw Bad Request error on arm64 Nutanix clusters (#4906) #4906
Revert “MGMT-13471: SNO installation with OCP 4.13 lacks proper dnsmasq configuration (#4939)” (#5012) #4939
NO-ISSUE: customize the image path for disk creation (#5010) #5010
MGMT-13445 : Update Assisted Installer with the new LVMS requirements (#4986) #4986
MGMT-12956 : Add feature IDs for ppc64le and s390x (#5008) #5008
add 4.13 multi ec.3 dev preview images (#5005) #5005
NO-ISSUE: Bump gorm.io/gorm from 1.23.8 to 1.24.5 (#5006) #5006
MGMT-13580 : GC orphan hosts (#4997) #4997
Make get_image_without_tag work when registry has a port (#5007) #5007
MGMT-13374 : support Nutanix in kube-api (#4996) #4996
Updating ose-agent-installer-api-server images to be consistent with ART (#4752) #4752
Revert “Increase timeout waiting for image-service (#4871)” (#5001) #4871
Use the correct env var for the hub release image mirror (#4998) #4998
MGMT-12547 : Enhancement doc “api-for-skipping-validations” (#4870) #4870
Add registry config for ironic agent image (#4995) #4995
MGMT-13274 : Update time-synced-between-host-and-service message to remove bad advice (#4994) #4994
MGMT-13521 : Clearer messaging when non-overlapping-subnets validation is pending. (#4993) #4993
MGMT-13204 : Implement skipping of host and cluster validations (#4907) #4907
MGMT-13708 : allow overriding image service image in subscription (#4985) #4985
MGMT-13454 : Group Host and boot logs to a single tarball (#4975) #4975
MGMT-13711 : it takes the assisted-service few minutes to notice that the cluster installation is completed (#4988) #4988
MGMT-13620 : Make worker to use custom MCP if it was set as part of the host DB record (#4976) #4976
MGMT-13549 : Day1 implementation for K8S node labels (#4972) #4972
NO-ISSUE: Add logs to supported-platforms (#4982) #4982
MGMT-13045 : Enhancement document for node labeling (#4826) #4826
MGMT-13682 : Gather host logs on failure in day2 flow (#4983) #4983
MGMT-13292 : Add the installed version of the OLM operators in the monitor operators response (#4961) #4961
MGMT-13471 : SNO installation with OCP 4.13 lacks proper dnsmasq configuration (#4939) #4939
MGMT-13487 : handle day2 cluster authz (#4973) #4973
NO-ISSUE: added ENABLE_ORG_TENANCY to deploy-test target (#4974) #4974
MGMT-11805 : docs/change-iso-password.sh lint (#4971) #4971
NO-ISSUE: Add scenarios to consider to enhancement template (#4964) #4964
MGMT-11805 : Dedicated .sh file for the docs/change-iso-password.sh script (#4970) #4970
MGMT-13526 : Fix wrong subscription name on pre-release versions (#4957) #4957
MGMT-13203 : Create REST points for validation ignore feature. (#4927) #4927
Allow Agent installer to use aarch64 (#4441) #4441
MGMT-13505 : allow to edit ignition url in kube-api (#4967) #4967
MGMT-13447 : Fix LVM subscription name is empty on SNO CNV (#4963) #4963
MGMT-13548 : add feature-support-level list for 4.13 (#4962) #4962
NO-ISSUE: Add destroy to deploy_capi_cluster.sh (#4960) #4960
MGMT-13302 : Return a bad request if the user wants to install not supported operator for arm64 cluster (#4930) #4930
MGMT-12535 : Service implementation for verify-vips (#4925) #4925
Remove references to edge-infrastrcuture/psql image (#4950) #4950
NO-ISSUE: Add logs to getOLMOperators LVm flow (#4959) #4959
MGMT-13462 : Fix disk encryption validation pending (#4958) #4958
Add automatic ShellCheck linting for assisted-boot-reporter.sh (#4945) #4945
MGMT-12329 : Implements assisted boot reporter and add to ignition (#4543) #4543
OKD: update to OKD 4.12 (#4922) #4922
Verify detached annotation (#4941) #4941
NO-ISSUE: skipper error when podman is missing (#4953) #4953
MGMT-13493 : stream model data instead of DB data (#4947) #4947
Enable converged flow by default (#4935) #4935
MGMT-13305 : Fix invalid lvms version installed on 4.11 (#4942) #4942
NO-ISSUE: add method to access log (#4944) #4944
MGMT-12714 : Define RAID drive type (#4937) #4937
Fix support_level value for 4.12 to fully supported (#4938) #4938
MGMT-13008 : ignition size validation on register infraenv (#4934) #4934
MGMT-13317 : missing transition on refresh when media is disconnected (#4931) #4931
MGMT-12996 : enhancement for dynamic OCP fetching (#4893) #4893
NO-ISSUE: Update 4.13 release images to ec.2 (#4933) #4933
MGMT-12193 : Add enhancement doc for collecting on-prem data (#4457) #4457
NO-ISSUE: rename event that was erroneusly named as InfraEnv (#4928) #4928
NO-ISSUE: explicitly declare timeout (#4926) #4926
MGMT-13432 : fire and forget kafka messages for event notification (#4924) #4924
remove testing log message (#4920) #4920
MGMT-13327 : MGMT-13300: Add support with 4.13 dev preview images (#4898) #4898
update lvm subscription and the min version for lvm (#4899) #4899
Disable installation on FC disks (#4918) #4918
MGMT-13229 : Allow setting Joined to sno installation stages (#4903) #4903
Revert “bm_inventory: use HTTPS if possible for day2 workers (#4150)” (#4781) #4150
MGMT-12697 : Add ENABLE_REJECT_UNKNOWN_FIELDS to SaaS template (#4916) #4916
MGMT-12292 : stream events to kafka stream (#4823) #4823
MGMT-12975 : Update 4.12 release image to use GA version (#4912) #4912
MGMT-13342 : Git fails to trust git repository because of mismatch with files (#4908) #4908
MGMT-12970 : don’t reset auto-assign for irrelevant hosts (#4891) #4891
bump version for hacking LSO catalog (#4753) #4753
Fix iPXE ZTP host connectivity during initramfs (#4902) #4902
MGMT-13138 : Improve messaging over host connectivity. (#4895) #4895
MGMT-12405 : Enclose API endpoint with brackets if IPv6 address (#4900) #4900
MGMT-13008 : validation for ignition image size (#4894) #4894
Setting minikube registry addon to use images from quay.io (#4897) #4897
MGMT-10785 : report failing cluster operators (#4864) #4864
BMH: add another fallback location for spoke’s root CA (#4883) #4883
MGMT-13240 : Create ip hint file in sno installation even if there is (#4892) #4892
MGMT-13271 : Update 4.12 release images to use the latest rc version (#4890) #4890
MGMT-12312 : Adds node-boot log type (#4529) #4529
NO-ISSUE: When comparing VIPs, compare only IPs (#4882) #4882
MGMT-12423 : Watch for Agent changes in ClusterDeployment (#4793) #4793
MGMT-7878 : storage config doc using MachineConfig manifest (#4873) #4873
inventory: limit allowed Nutanix versions in API (#4878) #4878
MGMT-12655 : Add installation disk ID to Agent’s status (#4865) #4865
MGMT-12655 : Set Agent’s installation disk ID only if hints exist (#4856) #4856
MGMT-10869 : Forbid multiple machine networks in single-stack clusters (#4867) #4867
MGMT-11979 : verify install-config for none platform (#4844) #4844
Increase timeout waiting for image-service (#4871) #4871
MGMT-11090 : Enhancement Doc: Assisted boot-reporter service (#4444) #4444
MGMT-12294 : Run subsystem with deterministic openshift version (#4567) #4567
MGMT-13192 : dualstack SNO cluster fails to complete - getting error (#4869) #4869
Add ppc64le & s390x RHCOS ISOs to configmap - rebase (#4796) #4796
MGMT-13081 : Re-enable and fix a negative NNState subsystem test (#4866) #4866
MGMT-12273 : Updated logging in PreNetworkConfig script. (#4859) #4859
MGMT-13081 : CI to use CentOS8 (#4845) #4845
MGMT-12894 : Use the hub release image when determining the ironic agent image (#4798) #4798
MGMT-12951 : change log message from lvmo to lvms (#4857) #4857
MGMT-13170 : Fix nil pointer dereference in validation if host inventory is nil (#4861) #4861
MGMT-13132 : Respond with 409 when rejecting registration (#4858) #4858
MGMT-12978 : Handle multiple images with the same OCP version (#4817) #4817
MGMT-13080 : [Nutanix] - UMN and machine_network = [] - bootstrap is in insufficient (#4847) #4847
NO-ISSUE: Small numbering issue in doc, amendment (#4852) #4852
MGMT-12154 : Updating documentation to make Day 2 import process clearer. (#4848) #4848
NO-ISSUE: Bump golang.org/x/sys from 0.1.0 to 0.3.0 (#4850) #4850
NO-ISSUE: Bump github.com/go-openapi/spec from 0.20.6 to 0.20.7 (#4851) #4851
MGMT-13040 : Check cluster state before delete (#4849) #4849
MGMT-13098 : fix missing networks on V2GetClusterInstallConfig (#4842) #4842
NO-ISSUE: improve UpdateMachineCidr (#4846) #4846
MGMT-12794 : allow to edit ProvisionRequirement post install (#4843) #4843
MGMT-12875 : fail gracefully when konnectivity is missing (#4830) #4830
MGMT-6536 : select default cidr in SNO based on default route metrics (#4770) #4770
MGMT-12535 : Swagger changes for vip verification (#4841) #4841
Revert “MGMT-12794: allow to edit ACI post install (#4831)” (#4839) #4831
MGMT-13080 : UMN if machine cidr not set no need to validate bootstrap (#4835) #4835
NO-ISSUE: Bump github.com/golang-jwt/jwt/v4 from 4.4.2 to 4.4.3 (#4834) #4834
NO-ISSUE: Bump github.com/go-openapi/strfmt from 0.21.2 to 0.21.3 (#4833) #4833
MGMT-12794 : allow to edit ACI post install (#4831) #4831
MGMT-11979 : verify install-config manifest in subsystem (#4816) #4816
NO-ISSUE: disable invalid nmstate test (#4832) #4832
NO-ISSUE: Pass HA mode of the cluster to network validations (#4774) #4774
MGMT-12743 : adds enhancement proposal for shorter image URLs (#4703) #4703
MGMT-13038 : Git fails to trust git repository because of mismatch with files (#4822) #4822
MGMT-13036 : add emptyDir mount for filesystem cache and ephemeral-storage policy (#4821) #4821
MGMT-12755 : Disallow periods in cluster name (#4778) #4778
NO-ISSUE: Bump github.com/aws/aws-sdk-go from 1.44.51 to 1.44.163 (#4818) #4818
Provide the inspector URL to the ironic ignition builder (#4779) #4779
NO-ISSUE: Move SaaS networking documentation to Telco Docs (#4429) #4429
NO-ISSUE: Bump github.com/go-openapi/swag from 0.21.1 to 0.22.3 (#4813) #4813
MGMT-12978 : Append -multi suffix to multi-arch images in SupportedVersions (#4811) #4811
MGMT-12880 : Update the wording of statusRebootTimeout (#4805) #4805
MGMT-12911 : Update assisted service operator docs with new icsp behavior (#4804) #4804
MGMT-12950 : Disable compatible agent validation while installing (#4791) #4791
MGMT-12971 : remove 4.12.0.0-0 as openshift hardcoded version in host monitor loop (#4806) #4806
Bump OCP versions: 4.8, 4.11 (#4807) #4807
NO-ISSUE: Bump github.com/stretchr/testify from 1.7.2 to 1.8.1 (#4535) #4535
NO-ISSUE: Changing the way we handle an error from ‘updateNetworkParams’ from returning ‘nil, err’ to ‘cluster, err’ (#4714) #4714
NO-ISSUE: Add multiarch OCP 4.12 release images (#4795) #4795
NO-ISSUE: Add danmanor to approvers (#4801) #4801
MGMT-12445 : Update host install progress response (#4787) #4787
MGMT-12697 : Reject unknown json fields (#4794) #4794
MGMT-12366 : Automatically calculate 2nd Machine Network from 2nd VIP (#4761) #4761
MGMT-12591 : setting lvmo on non-SNO cluster should return bad request (#4742) #4742
MGMT-12237 : Limit upgrade agent events (#4786) #4786
Bump OCP versions: 4.10 (#4789) #4789
MGMT-12886 : fetch CRDs by group in HASC ctrl (#4768) #4768
OCPBUGS-2953 : Fix regex to filter images by tag and by sha (#4767) #4767
Refactor the versions handler into a proper cache (#4645) #4645
MGMT-12870 : Add missing dual-stack VIP CRUD for KubeAPI (#4755) #4755
NO-ISSUE: reduce build image size (#4775) #4775
MGMT-12433 : remove text minimum Size 0GB in lvm (#4772) #4772
Document the ironic agent image behavior for converged flow (#4771) #4771
NO-ISSUE: Added ZTP workflows to hive integration README.md (#4762) #4762
MGMT-12471 : Don’t wait for console if it is disabled (#4594) #4594
Set infra-env kernel params on preprovisioning image (#4757) #4757
NO-ISSUE: use two logger instance for generic and ocm logging (#4734) #4734
NO-ISSUE: extract client from reconcile context (#4720) #4720
Update cluster-baremetal-operator and use GetIronicIP from there (#4491) #4491
Bump OCP versions: 4.12, 4.9 (#4764) #4764
NO-ISSUE: Set the correct RAM size in BMH HardwareDetails (#4453) #4453
TELCODOCS-831 : Document capabilities exclusion (#4213) #4213
OCPBUGS-1683 : Assisted-install failing with None platform when multiple IP interfaces configured (#4750) #4750
oMGMT-12169: Changing the cluster’s validation message when disks size is not sufficient (#4729) #4729
NO-ISSUE: edit HASC enhancement doc (#4756) #4756
MGMT-9915 : Fix sample CRs for dual-stack VIPs (#4758) #4758
MGMT-12759 : Reinstate assisted NMState Go binding (#4698) #4698
MGMT-9915 : Prepare sample CRs for dual-stack VIPs (#4754) #4754
NO-ISSUE: Fix wrong unit test for CIDR autoallocation (#4736) (#4459) #4736
MGMT-12366 : Allow to use UpdateMachineCidr for multiple networks (#4747) #4747
MGMT-12863 : Assisted Spoke install-config does not generate icsp with multiple mirror to entries (#4745) #4745
Use policy/v1 for pod disruption budget (#4746) #4746
Split the os versions handling from the release image handling (#4737) #4737
Bump OCP versions: 4.12 (#4741) #4741
OKD-90 : execute should throw a warning (#4739) #4739
OCPBUGS-4493 : do not mutate ACI post installation start (#4723) #4723
NO-ISSUE: Fix wrong unit test for CIDR autoallocation (#4736) #4736
Use the cluster version when extracting the ironic agent image from a release (#4727) #4727
NO-ISSUE: Explicitly finish mock controllers in cluster transition tests (#4617) #4617
MGMT-12648 : Update operator bundle channel (#4732) #4732
MGMT-12634 : Create new allow-add-hosts endpoint (#4661) #4661
Move API handlers to a separate struct (#4728) #4728
MGMT-11506 : Present a more useful validation message for packet loss (#4717) #4717
NO-ISSUE: Verify that GORM embedded structure is always part of containing structure (#4730) #4730
MGMT-12662 : Add API documentation for Live ISO kernel arguments customization (#4669) #4669
MGMT-9915 : Enhancement for dual-stack VIPs (#4245) #4245
MGMT-12423 : Use pointers when collecting Agents from ACI (#4570) #4570
Bump OCP versions: 4.11 (#4722) #4722
NO-ISSUE: Bump github.com/moby/moby (#4721) #4721
MGMT-12400 : enable pprof when debug mode for memory profiling (#4712) #4712
MGMT-12797 : Missing dual-stack VIP values in SNO cluster (#4710) #4710
MGMT-12749 : BMH: add fallback location for spoke’s root CA (#4696) #4696
OKD: extract manifests if available (#4715) #4715
MGMT-11455 : Add formal API to allow users to set an additional trust bundle (#4447) #4447
MGMT-12806 : Allow registration when pending for input (#4718) #4718
MGMT-10376 : Adding a feature usage flag for setting UserManagedNetworking flag in a non-SNO configuration (#4579) #4579
MGMT-11386 : approve day2 CSRs for an agent without BMH (#4691) #4691
Bump OCP versions: 4.8 (#4702) #4702
MGMT-12423 : Additional debug logs when collecting Agents from ACI (#4704) #4704
MGMT-11536 : refresh cluster after host deletion (#4666) #4666
MGMT-12388 : Forbid dual-stack VIPs for OpenShift pre-4.12 (#4694) #4694
docs: add platform integration enhancement (#4192) #4192
NO-ISSUE: move grafana dashboards to other repository (#4701) #4701
Bump OCP versions: 4.10, 4.12 (#4693) #4693
NO-ISSUE: Enable state machine documentation (#4680) #4680
Remove ValidateAccessToMultiarch function (#4630) #4630
Revert “MGMT-11506: Present a more useful validation message for packet loss (#4358)” (#4695) #4358
MGMT-12666 : Document Unauthenticated Registries (#4692) #4692
MGMT-12616 : Reject register after install (#4665) #4665
MGMT-12723 : Fix log formatting in inventory.go (#4679) #4679
MGMT-12635 : Add icsp-file support for all oc commands (#4684) #4684
MGMT-12627 : Add Multiple VIPs support for state machine validators (#4643) #4643
MGMT-12389 : Add feature usage for dual-stack VIPs (#4596) #4596
MGMT-12360 : Pass multiple VIPs down to install-config on OCP >=4.12 (#4573) #4573
MGMT-12684 add envoy as sidecar to produce access log (#4670) #4670
Small doc addition for OLM operator plugins (#4689) #4689
Bump OCP versions: 4.11 (#4688) #4688
MGMT-12355 : API and Ingress VIPs CRUD implementation (#4568) #4568
bm_inventory: use HTTPS if possible for day2 workers (#4150) #4150
NO-ISSUE: Bump github.com/go-openapi/errors from 0.20.2 to 0.20.3 (#4681) #4681
MGMT-12678 : Deprecate API and Ingress VIP (Singular) (#4668) #4668
NO-ISSUE: add unauthenticatedRegistries to HASC on deploy (#4676) #4676
MGMT-11813 : how to install HASC doc (#4663) #4663
Bump OCP versions: 4.11 (#4674) #4674
MGMT-12686 : Allow installing on FC disks (#4671) #4671
Bump OCP versions: 4.9 (#4667) #4667
MGMT-8789 : Improve UX setting PUBLIC_CONTAINER_REGISTRIES (#4552) #4552
MGMT-12466 : Add feature usage for discovery kernel arguments (#4659) #4659
MGMT-12379 : PlatformType is not validated when installing SNO cluster. (#4656) #4656
Bump OCP versions: 4.12, 4.10 (#4662) #4662
NO-ISSUE: log build version (#4658) #4658
OKD-90 : Support automated extraction of OKD RPMs (#4650) #4650
MGMT-12332 : Kube API subsystem tests for kernel arguments (#4647) #4647
MGMT-12552 : Add UT for day-2 agent status updates (#4657) (#4660) #4657
MGMT-12552 : Add UT for day-2 agent status updates (#4657) #4657
MGMT-11506 : Present a more useful validation message for packet loss (#4358) #4358
MGMT-12592 : added webhooks tests to hypershift e2e (#4648) #4648
MGMT-12552 : Day-2 agent stuck with status_info rebooting although the node is already part of the cluster (#4652) #4652
MGMT-11740 : WebHook configuration in HASC (#4582) #4582
MGMT-12605 : Remove duplicated tests: Dual-stack UpdateCluster (#4644) #4644
NO-ISSUE: Explicitly finish mock controller in host tests (#4632) #4632
Bump OCP versions: 4.10, 4.8 (#4646) #4646
MGMT-11810 : added deploy_hypershift_cluster script (#4577) #4577
MGMT-8357 : change ‘local’ deployment method to ‘minikube’ (#4642) #4642
NO-ISSUE: Explicitly finish mock controller in host command tests (#4633) #4633
NO-ISSUE: Explicitly finish mock controller in host transition tests (#4631) #4631
MGMT-12500 : DPU cpu arch can be aarch64 and not arm64, adding aarch64 to (#4628) #4628
NO-ISSUE: Explicitly finish mock controller in cluster tests (#4618) #4618
MGMT-12318 : improve condition message of missing secret (#4641) #4641
Versions tech debt cleanup (#4640) #4640
MGMT-11087 : Replaced HPP with ODF LVMO on CNV for a single-node … (#4434) #4434
MGMT-12555 : Try avoid deadlocks when updating cluster or host (#4624) #4624
NO-ISSUE: add stage logs to grafana (#4638) #4638
MGMT-12332 : Subsystem tests for discovery kernel arguments (#4616) #4616
NO-ISSUE: Explicitly finish mock controller in ignition tests (#4634) #4634
NO-ISSUE: fix attach-disk failure (#4629) #4629
MGMT-12318 : added conditions for spoke kubeconfig secret (#4623) #4623
nutanix: remove worker MachineSet too (#4621) #4621
MGMT-8357 : Support kind hub-cluster (#4613) #4613
MGMT-12435 : Add a way to apply patches to core manifests (#4583) #4583
Disable converged flow by default (#4626) #4626
Describe openshift_version in os_image better (#4620) #4620
MGMT-12068 : kube api support for discovery kernel arguments (#4566) #4566
MGMT-12572 : Remove duplicated tests: V2UpdateCluster (#4625) #4625
MGMT-12552 : Day-2 agent stuck with status_info rebooting although the node is already part of the cluster (#4610) #4610
MGMT-12489 : We should validate that inventory is not nil while returning (#4611) #4611
NO-ISSUE: Bump github.com/google/go-cmp from 0.5.8 to 0.5.9 (#4615) #4615
MGMT-12557 : remove duplicated unit tests: monitored operators (#4612) #4612
MGMT-12545 : Rename “discovery kernel arguments” to “kernel argument” in infra-env context (#4605) #4605
MGMT-12492 : update statusRebootTimeout info message to ask the user to (#4586) #4586
Bump OCP versions: 4.12 (#4608) #4608
MGMT-12299 : Changing the message user sees when the cluster doesn’t contain the correct composition of control plane nodes and workers (#4537) #4537
OCPBUGSM-46219 : OCPBUGSM-46220: Update golang version to 1.18.1. (#4598) #4598
MGMT-12478 : AgentClusterInstall remains in installed state when using ignitionEndpoint (#4604) #4604
MGMT-12500 : Add AI support for a DPU worker (#4588) #4588
Bump OCP versions: 4.10, 4.11 (#4602) #4602
MGMT-12528 : Disable network scanning for very large IPv4 subnets (#4601) #4601
NO-ISSUE: add warning and info panel to log dashboard (#4572) #4572
MGMT-12507 : Remove duplicated unit tests: RegisterHost and GetNextSteps (#4595) #4595
MGMT-9915 : Create utility functions to get cluster’s VIPs (#4575) #4575
MGMT-12098 Remove legacy auto reset host (#4599) #4599
MGMT-12053 : Add support for aditional kernel arguments when serving iPXE (#4541) #4541
MGMT-12522 Fix unit test DB connection failure (#4597) #4597
Remove useless getReleaseImage function (#4593) #4593
Allow nightly 4.12 builds to use the converged flow (#4592) #4592
MGMT-12389 : Create flag for per-version support of dual-stack VIPs (#4565) #4565
MGMT-12354 : Migrate single VIP values to the new data structure (#4562) #4562
MGMT-12423 : Add debug logs for counting unsynced agents (#4571) #4571
MGMT-12398 : Regression fix: Move host stage to “Done” only when not in KubeAPI mode. (#4587) #4587
MGMT-12462 : Fix assisted-service swagger file (#4580) #4580
Remove redundant boto3 dependency (#4585) #4585
NO-ISSUE: Rename misleading network utility function (#4574) #4574
Bump OCP versions: 4.9 (#4576) #4576
MGMT-12305 : Fix a vulnerability which could cause a denial of service on version v0.3.7 of golang.org/x/text/language. (#4525) #4525
MGMT-12422 : Fix bm platform update failure when cluster platform different from bm/none (#4564) #4564
MGMT-12363 : Changing the message which the service sends when the right amount of dedicated control plane nodes is achieved (#4546) #4546
MGMT-12425 : Removal of problematic validation. (#4563) #4563
NO-ISSUE: add logs dashboard (#4569) #4569
MGMT-12083 : Create enhancement document for discovery kernel parameters (#4420) #4420
Bump OCP versions: 4.10, 4.11 (#4561) #4561
MGMT-12318 : handle conditions in HASC (#4555) #4555
MGMT-12353 : Add dual-stack VIP fields to the Rest API (#4548) #4548
Ensure the preprovisioningimage arch matches the infraenv (#4520) #4520
MGMT-11752 : enhancement doc: ai on zero worker hypershift (#4325) #4325
MGMT-9023 : Add hyperthreading feature usage (#4514) #4514
MGMT-11805 : Don’t go through the API for setting a discovery password (#4560) #4560
Add url auth for getting a single infra-env (#4559) #4559
NO-ISSUE: add initialDelaySeconds for readiness probe (#4557) #4557
MGMT-12380 : Improve message of vip validation failure (#4553) #4553
MGMT-12368 : Verify that Kernel Arguments API does not change in the future (#4547) #4547
MGMT-12056 : changing the default behavior of the network type for the CD/ACI controller - following OCP move to default OVNKubernetes network type from version 4.12 or higher, AI should install clusters accordingly (#4485) #4485
MGMT-12353 : Add dual-stack VIP fields to the KubeAPI (#4549) #4549
NO-ISSUE: Document how to add OCM capabilities (#4528) #4528
Bump to 4.12.0-ec.5 (#4554) #4554
MGMT-12214 : extract reconciler logic for using HASC (#4540) #4540
MGMT-11750 : ensure namespace exists on spoke cluster (HASC) (#4534) #4534
Bump OCP versions: 4.8 (#4550) #4550
Full changelog
OCPBUGS-58643 : Bump github.com/golang/glog pkg version to 1.2.4 (#1189) #1189
OCPBUGS-53714 : Bump jwt to 4.5.2 in release-4.15 (#1092) #1092
Bump golang.org/x/net to 0.33.0 (#1011) #1011
OCPBUGS-43026 : Pick up latest CVE changes by bumping service (#921) #921
OCPBUGS-42301 : Switch to github.com/docker/distribution/reference to Mitigate CVE-2024-3727 (#907) #907
OCPBUGS-36779 : Reload host inventory on conflict (#891) #891
OCPBUGS-35894 : Fix race to mark node Joined (#859) #859
MGMT-16843 : Use hostnamectl to replace illegal hostname (#851) #851
MGMT-17593 : Bump x/net to at least v0.24.0 to mitigate CVE-2023-45288 (#833) #833
MGMT-17549 : Bump runc version to 1.1.12 to Mitigate CVE-2024-21626 (#827) #827
MGMT-17541 : Replace broken golangci reference (#824) #824
MGMT-16843 : Ensure valid hostname during install (#791) #791
OCPBUGS-25718 : Do not remove uninitialized taints if vSphere (#785) #785
NO-ISSUE: Bump the go-dependencies group with 2 updates (#756) #756
NO-ISSUE: Bump the go-dependencies group with 2 updates (#755) #755
OCPBUGS-20049 : Remove uninitialized taint for agent-based installs (#739) #739
MGMT-16258 : Partitions naming convetion is different for various disk types (#752) #752
NO-ISSUE: Bump the go-dependencies group with 2 updates (#751) #751
Updating ose-agent-installer-orchestrator images to be consistent with ART (#719) #719
MGMT-15926 : Delete failed OLM jobs and subscription install plans in all cases during initialization check, not only in case of not found error (#748) #748
NO-ISSUE: Add my github account as an OWNER for this repository (#749) #749
NO-ISSUE: Bump the go-dependencies group with 2 updates (#747) #747
MGMT-15902 : Trigger event that notifies the number of reboots once the node installation is completed (#744) #744
NO-ISSUE: Bump the go-dependencies group with 1 update (#745) #745
NO-ISSUE: Bump github.com/google/uuid from 1.3.1 to 1.4.0 (#743) #743
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.7 to 0.18.0 (#742) #742
MGMT-16039 : upgrade to golang 1.20 (#741) #741
NO-ISSUE: Bump the go-dependencies group with 7 updates (#738) #738
OCPBUGS-16482 : Update dependencies to remove goproxy dependency (#701) #701
MGMT-15984 : Assisted installer doesn’t freeze and unmount file systems used for overwriting os image (#737) #737
NO-ISSUE: Bump golang.org/x/sync from 0.1.0 to 0.4.0 (#731) #731
Updating ose-agent-installer-csr-approver images to be consistent with ART (#718) #718
MGMT-15710 : Assisted installer changes for avoiding MCO reboot (#713) #713
MGMT-15810 : fix image missing nsenter executable (#729) #729
MGMT-15810 : change base image to stream9 (#725) #725
NO-ISSUE: fix dependabot ingored packages (#724) #724
NO-ISSUE: dependabot exclude k8s (#706) #706
OCPBUGS-16482 : bump golangci-lint to 1.53.1 (#702) #702
OCPBUGS-4240 : allow controller to complete for agent-based installs (#700) #700
MGMT-15235 : Compile with CGO_ENABLED=1 for amd64 (#699) #699
Revert “MGMT-15235: Compile with CGO_ENABLED=1 for FIPS (#683)” (#693) #683
OCPBUGS-17252 : Bump golang.org/x/net/html (#695) #695
Updating ose-agent-installer-orchestrator images to be consistent with ART (#652) #652
MGMT-15343 : dependabot group updates (#692) #692
MGMT-15344 : Assisted-controller should not timeout on waiting cvo by itself (#688) #688
MGMT-15235 : Compile with CGO_ENABLED=1 for FIPS (#683) #683
MGMT-13586 : Wait for ETCD Bootstrap to complete (#670) #670
NO-ISSUE: Remove slaviered from project OWNERS (#669) #669
NO-ISSUE: Bump github.com/go-openapi/strfmt from 0.21.3 to 0.21.7 (#663) #663
Updating ose-agent-installer-csr-approver images to be consistent with ART (#651) #651
MGMT-14299 : Limit untaint nodes to vsphere/nutanix (#660) #660
NO-ISSUE: Add javipolo to approvers (#659) #659
MGMT-12967 : Create network policy in assisted-installer namespace (#658) #658
NO-ISSUE: Bump github.com/onsi/gomega from 1.24.2 to 1.27.5 (#656) #656
MGMT-14114 : Nutanix - uninitialized set on nodes (#653) #653
NO-ISSUE: controller logs optimizations (#646) #646
NO-ISSUE: Bump golang.org/x/sync (#644) #644
MULTIARCH-3387 : Set boot device to target disk for powervm (#626) #626
MGMT-13710 : assisted-installer-controller hangs for 2 minutes before uploading the ingress CA (#638) #638
NO-ISSUE: Bump golang.org/x/net from 0.5.0 to 0.7.0 (#640) #640
NO-ISSUE: Replace iotil by os and io in order to fix lint issues (#642) #642
NO-ISSUE: Bump openshift/release from golang-1.18 to golang-1.19 (#612) #612
MGMT-13568 : Add pause mcp while setting new role labels (#623) #623
MGMT-13292 : Add the installed version of the OLM operators in the monitor operators response (#622) #622
Remove uninitialized taint from vSphere nodes (#629) #629
OCPBUGS-7149 : IPv6 multinode spoke no moving from rebooting/configuring stage (#627) #627
MGMT-13507 : Apply node labels only when node is Ready (#620) #620
MGMT-13463 : Assisted-controller can fail to send summary logs and we will not have any logs (#619) #619
MGMT-10785 : report failing cluster operators controller -> service (#617) #617
MGMT-13229 : SNO: Start controller when node is not ready, right after joined (#613) #613
MGMT-13385 : Installation fail due to race condition in etcd bootstrap strategy (#618) #618
MGMT-13131 : shorten SNO installation duration (#615) #615
NO-ISSUE: Bump golang.org/x/net from 0.4.0 to 0.5.0 (#611) #611
MGMT-13141 : assisted-installer-controller shouldn’t try to update BMH if (#610) #610
Updating ose-agent-installer-orchestrator images to be consistent with ART (#588) #588
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.1 to 0.17.3 (#609) #609
MGMT-12908 : Labeling nodes as quick as possible and fixing hostname possible issue (#601) #601
NO-ISSUE: Bump github.com/thoas/go-funk from 0.9.2 to 0.9.3 (#608) #608
Bump assisted-service to v1.0.10-0.20221222230528-2b0f66c4cdcd (#604) #604
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.2 to 0.17.3 (#603) #603
MGMT-12339 : Update host install progress on cleanup error (#597) #597
MGMT-12984 : Add more logs to LVM cleanup (#600) #600
NO-ISSUE: Bump github.com/onsi/gomega from 1.24.1 to 1.24.2 (#599) #599
MGMT-12339 : Add extra step to force clean disks with LVM volumes (#583) #583
Remove jira tickets prefix requirements (#594) #594
NO-ISSUE: Bump golang.org/x/net from 0.2.0 to 0.4.0 (#593) #593
MGMT-12471 : Don’t crash if operator isn’t monitored by service (#589) #589
NO-ISSUE: Bump github.com/go-openapi/runtime from 0.24.2 to 0.25.0 (#585) #585
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.1 to 0.17.2 (#584) #584
NO-ISSUE: Bump sigs.k8s.io/controller-runtime from 0.12.3 to 0.13.1 (#569) #569
NO-ISSUE: Bump github.com/onsi/gomega from 1.22.1 to 1.24.1 (#577) #577
NO-ISSUE: Bump k8s.io/client-go from 0.24.4 to 0.25.4 (#576) #576
OCPBUGSM-46219 : OCPBUGSM-46220: Update golang version to 1.18.1. (#581) #581
MGMT-12471 : Don’t wait for console if it is disabled (#574) #574
NO-ISSUE: change all ‘go get’ commands to ‘go install’ (#580) #580
NO-ISSUE: Log informative error in case subscription doesn’t have CSV (#573) #573
MGMT-12467 : Remove special handling for installing OCP < 4.7 (#571) #571
MGMT-12469 : Add resolv.conf content to controller logs in order to improve dns issue visibility (#572) #572
OCPBUGS-3166 : assisted-installer: pod creation fails due to violations of security policies in 4.12 (#568) #568
NO-ISSUE: improvement on gathering controller logs, validating that buffer is not empty (#567) #567
Full changelog
run go mod tidy / vendor #1020
And 125 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-23697 : Add Snyk file to exclude vendor directory on scan #48
OCPBUGS-21984 : Bump golang.org/x/net to v0.19.0 #41
OCPBUGS-24111 : Updating ose-alibaba-cloud-controller-manager-container image to be consistent with ART #39
Update OWNERS #36
Rebase onto latest upstream version #35
OCPBUGS-10120 : Updating ose-alibaba-cloud-controller-manager images to be consistent with ART #30
Update OWNERS #29
Update OWNERS #27
Updating ose-alibaba-cloud-controller-manager images to be consistent with ART #26
Full changelog
OCPBUGS-67910 : Bump github.com/sirupsen/logrus to v1.8.3 #47
OCPBUGS-24122 : Updating ose-alibaba-cloud-csi-driver-container image to be consistent with ART #42
STOR-1389 : Rebase to v1.2.1 for OCP 4.15 #41
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #34
OCPBUGS-19199 : Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #33
OCPBUGS-16783 : Chore: Update OWNERS #32
OCPBUGS-12544 : 4.14: UPSTREAM: 763: Bump (golang.org/x/net): to address CVE-2022-41723 #30
STOR-1159 : Rebase to v1.1.7 #29
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #28
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #27
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #26
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #25
OCPBUGS-6349 : UPSTREAM: 730: Fix CVE 2022 41717 #24
Bug 1877261 : UPSTREAM: 673: Feature/support disk waiting during mount #23
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #20
OCPBUGS-6222 : UPSTREAM: 682: fix gofmt #21
Bug 2067785 : Bump prometheus/client_golang to v1.11.1 #18
Full changelog
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #82
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #76
OCPBUGS-25233 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #77
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #72
OCPBUGS-22541 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #70
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #69
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #62
STOR-1276 : Enable support for mounting volumes with SELinux context #57
OCPBUGS-19111 : Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #61
STOR-1439 : Restart controller Pods if metrics-serving-cert changed #56
OCPBUGS-16783 : Chore: Update OWNERS #54
OCPBUGS-14824 : Bump alibaba-disk-csi-driver-operator library-go #53
STOR-1168 : Bump common libraries #51
OCPBUGS-12545 : Bump golang.org/x/net@v0.9.0 #50
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #49
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #48
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #47
OCPBUGS-8683 : Add management workloads annotations #46
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #45
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #44
STOR-947 : support disabling default StorageClass via ClusterCSIDriver #41
Bug 2106736 : Add multiplePVsSameID capability #43
STOR-1078 : Add hostPaths necessary for SELinux mounts #42
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #40
OCPBUGS-4347 : set TLS cipher suites in Kube RBAC sidecars #39
Full changelog
[[release-4.15] OCPBUGS-41800: set required-scc for openshift workloads #57
OCPBUGS-24124 : Updating ose-alibaba-machine-controllers-container image to be consistent with ART #47
NO-JIRA: Update OWNERS #45
OCPBUGS-19201 : Updating ose-alibaba-machine-controllers images to be consistent with ART #44
Updating ose-alibaba-machine-controllers images to be consistent with ART #42
OCPBUGS-10134 : Updating ose-alibaba-machine-controllers images to be consistent with ART #41
Update OWNERS #40
Updating ose-alibaba-machine-controllers images to be consistent with ART #39
Update OWNERS #38
Full changelog
OCPBUGS-67913 : Bumped logrus to 1.9.3 #492
OCPBUGS-33043 : Explicitly reserve 1 attachment for the root disk #222
OCPBUGS-30621 : remove legacy directory and duplicate Dockerfile.*.test files #201
OCPBUGS-30621 : move test manifest to top-level directory #195
OCPBUGS-26195 : Create RBAC objects first #93
OCPBUGS-25995 : Add selinux #91
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #90
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #82
OCPBUGS-25234 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #83
STOR-1500 : Switch to the new operator #69
Updating ose-aws-ebs-csi-driver-operator-container image to be consistent with ART #75
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #71
STOR-1400 : Add support for Batch DescribeVolume #74
STOR-1400 : Sync sidecar arguments with upstream #72
STOR-1500 : Add log for the new operator #70
Pull the latest AWS EBS operator #67
Fix vendoring of golang.org/x/net #68
hack: remove existing path from .gitignore #65
Drop Guest prefix from client names #64
Update all generated assets in a single run #63
Verify generated assets in make verify #62
Move operator config into pkg/drivers #61
Add AWS EBS CSI driver operator starter #58
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #59
STOR-1455 : Add asset generator #53
Delegate to aws-ebs-csi-driver-operator for tests and verify #57
Add aws ebs operator legacy #56
Add ci-operator config #54
Clean the repository, it will be reused for all CSI driver operators #52
Obsolete the operator #51
Fix hostpath image sample to support dynamic registration #47
Add kubelet-registration-path flag to csi-driver-registrar #44
Fix golint error #45
Output error message when failed to get CSIDriverDeployment and requeued #46
Add -nometadata to go-bindata to stop updating generated files by every build #43
Disable automatic installation of the operator in OpenShift #41
Pass SecurityContext to sidecar containers #40
Move EBS deployment sample to the right place #39
Use correct context timeouts #38
Add EBS sample deployment file #37
Add leader election to the operator #36
Embed git version into the operator binary #35
Generate bindata during build #34
Add more unit tests #33
Add controller unit tests #32
Fix deletion of non-namespaced objects #31
Fix e2e test #30
Add e2e test #29
Update to operator-sdk 0.1.1 #28
Fix liveness probe version #27
ADd a RHEL7 dockerfile and standardize format #26
Documentation update #23
Add unit test for validation #14
Fix status.conditions json name #11
Add CRD printer columns #12
Add configuration of liveness probe. #9
Increase resync period #10
Add /var/lib/kubelet HostPath directory to node drivers #8
Fix role bindings #7
Add liveness probe. #6
Fix operator images #5
Add OpenShift manifests to operator image #4
Use label selector for informers. #3
Use constants where appropriate #2
Add initial operator #1
And 26 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-32886 : Upgrade go-jose module to 2.6.3 #188
OCPBUGS-24163 : Updating ose-aws-pod-identity-webhook-container image to be consistent with ART #179
NO-ISSUE: Sync OWNERS with team members #173
snyk: exclude vendor/ #170
Bump k8s deps for CVE-2023-39325 #169
OCPBUGS-19264 : Updating ose-aws-pod-identity-webhook images to be consistent with ART #167
CCO-429 : Rebase master #166
Bump to go 1.20 in go.mod #163
Updating ose-aws-pod-identity-webhook images to be consistent with ART #162
Updating ose-aws-pod-identity-webhook images to be consistent with ART #159
Updating ose-aws-pod-identity-webhook images to be consistent with ART #158
Full changelog
OCPBUGS-25768 : UPSTREAM: 2132: CVE-2023-48795: bump golang.org/x/crypto to v0.17.0 #72
OCPBUGS-25236 : OCPBUGS-23831: UPSTREAM: 2090: Bump OpenTelemetry libraries to fix CVEs #68
OCPBUGS-24120 : Updating ose-azure-disk-csi-driver-container image to be consistent with ART #64
OCPBUGS-17542 : allow resizing to min required size for performance plus disks #52
STOR-1394 : Rebase v1.29.0 for OCP 4.15 #51
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #53
OCPBUGS-19172 : Updating ose-azure-disk-csi-driver images to be consistent with ART #50
OCPBUGS-17284 : UPSTREAM: 1927: chore(deps): bump golang.org/x/net from 0.10.0 to 0.14.0 #48
OCPBUGS-15658 : Update to v1.28.1 #45
OCPBUGS-16783 : Chore: Update OWNERS #46
STOR-1164 : Rebase to v1.28.0 for OCP 4.14 #43
Updating ose-azure-disk-csi-driver images to be consistent with ART #41
Updating ose-azure-disk-csi-driver images to be consistent with ART #39
Bug OCPBUGS-7408: UPSTREAM: 1725: Pin k8s.io/dynamic-resource-allocation version #38
STOR-1016 : Rebase to v1.26.1 for OCP 4.13 #37
Updating ose-azure-disk-csi-driver images to be consistent with ART #35
Full changelog
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #121
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #114
OCPBUGS-25237 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #115
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #110
OCPBUGS-22560 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #107
STOR-1276 : Enable support for mounting volumes with SELinux context #93
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #106
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #100
update readme #99
simplify workload identity feature enablement #92
update readme #94
OCPBUGS-19172 : Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #98
OCPBUGS-16654 : Revert revert “STOR-1065: Rework sidecar bindings to b… #88
OCPBUGS-16496 : Bump library-go to remove dependency on goproxy #90
OCPBUGS-16783 : Chore: Update OWNERS #89
Revert “STOR-1065: Rework sidecar bindings to bind common ClusterRoles” #87
STOR-1065 : Rework sidecar bindings to bind common ClusterRoles #84
OCPBUGS-14824 : Bump azure-disk-csi-driver-operator library-go #85
CCO-324 : Unrevert “CCO-324: add support for workload identity” #83
Revert “CCO-324: add support for workload identity” #82
CCO-324 : add support for workload identity #78
STOR-1168 : Bump common libraries #81
OCPBUGS-12559 : Bump golang.org/x/net@v0.9.0 #80
Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #79
OCPBUGS-8683 : Add management workloads annotations #74
OCPBUGS-10842 : Reorder static resources to create RBAC first #75
Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #73
STOR-873 : Implement custom keys in Azure Disk CSI driver operator #68
OCPBUGS-7617 : Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars #69
OCPBUGS-6658 : Disable managed identity authentication #67
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #66
STOR-947 : support disabling default StorageClass via ClusterCSIDriver #63
STOR-1078 : Add hostPaths necessary for SELinux mounts #64
Bug 2106736 : Add multiplePVsSameID capability #65
Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #62
OCPBUGS-4347 : set TLS cipher suites in Kube RBAC sidecars #61
OCPBUGS-3659 : Don’t expose metrics port to whole network #60
OCPBUGS-1904 : Only deploy VolumeSnapshotClass when CRD exists #56
And 1 elided commits (e.g. from squash or rebase merges)
Full changelog
ART-13080 : Regenerate go.mod to fix build failure #94
OCPBUGS-39444 : bump mount-utils to treat ENODEV error as corrupted mount #78
OCPBUGS-33038 : Rebase v1.29.5 for OCP 4.15 #65
OCPBUGS-25697 : UPSTREAM: 1626: CVE-2023-48795: bump golang.org/x/crypto to v0.17.0 #50
STOR-1390 : Rebase v1.29.2 for OCP 4.15 #43
OCPBUGS-24075 : Updating ose-azure-file-csi-driver-container image to be consistent with ART #44
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #36
OCPBUGS-19110 : Updating azure-file-csi-driver images to be consistent with ART #34
OCPBUGS-17285 : UPSTREAM: 1355: build(deps): bump golang.org/x/net from 0.12.0 to 0.14.0 #33
OCPBUGS-16783 : Chore: Update OWNERS #32
OCPBUGS-15657 : Update to 1.28.1 #31
STOR-1160 : Rebase to v1.28.0 for OCP 4.14 #29
Updating azure-file-csi-driver images to be consistent with ART #28
Updating azure-file-csi-driver images to be consistent with ART #27
Updating azure-file-csi-driver images to be consistent with ART #26
Updating azure-file-csi-driver images to be consistent with ART #25
OCPBUGS-7943 : Pin k8s.io/dynamic-resource-allocation to v0.26.0 #24
STOR-1010 : Rebase to v1.25.1 for OCP 4.13 #23
Updating azure-file-csi-driver images to be consistent with ART #21
Full changelog
OCPBUGS-67918 : Bump github.com/sirupsen/logrus to v1.9.3 #113
OCPBUGS-60544 : add tag matching to Azure File storage class #110
OCPBUGS-33038 : add token audience for Azure File #103
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #95
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #89
OCPBUGS-25238 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #90
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #84
OCPBUGS-22562 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #82
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #81
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #75
update readme #70
simplify workload identity feature enablement #69
OCPBUGS-19170 : Updating azure-file-csi-driver-operator images to be consistent with ART #74
STOR-1434 : Restart controller Pods if metrics-serving-cert changed #68
OCPBUGS-16654 : Revert revert “STOR-1065: Rework sidecar bindings to b… #64
OCPBUGS-16783 : Chore: Update OWNERS #65
OCPBUGS-16498 : Bump library-go to remove dependency on goproxy #66
Revert “STOR-1065: Rework sidecar bindings to bind common ClusterRoles” #63
STOR-1065 : Rework sidecar bindings to bind common ClusterRoles #60
CCO-325 : Unrevert “CCO-325: add support for workload identity” #62
STOR-989 : Remove SC and manifest file for NFS backend #58
OCPBUGS-14824 : Bump azure-file-csi-driver-operator library-go #61
Revert “CCO-325: add support for workload identity” #59
CCO-325 : add support for workload identity #54
CCO-325 : Mount serviceaccount token into csi-driver container #53
STOR-1168 : Bump common libraries #57
OCPBUGS-12561 : Bump golang.org/x/net@v0.9.0 #56
Updating azure-file-csi-driver-operator images to be consistent with ART #55
Updating azure-file-csi-driver-operator images to be consistent with ART #52
Updating azure-file-csi-driver-operator images to be consistent with ART #51
OCPBUGS-10842 : Reorder static resources to create RBAC first #50
OCPBUGS-8683 : Add management workloads annotations #49
Updating azure-file-csi-driver-operator images to be consistent with ART #48
OCPBUGS-6658 : Disable managed identity authentication #47
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #46
STOR-947 : support disabling default StorageClass via ClusterCSIDriver #42
STOR-1078 : Add hostPaths necessary for SELinux mounts #43
Bug 2106736 : Add multiplePVsSameID capability #44
Updating azure-file-csi-driver-operator images to be consistent with ART #41
OCPBUGS-4347 : set TLS cipher suites in Kube RBAC sidecars #40
Full changelog
OCPBUGS-42554 : only allow a single network in failure domain topology #9060
OCPBUGS-62849 : Release 4.15 bump terraform provider azurerm #10007
OCPBUGS-62410 : Make swift containers removal not fatal for UPI. #9978
OCPBUGS-60497 : update resolv.conf every time on bootstrap node #9885
OCPBUGS-39416 : OpenStack: Install CI dependencies from rpm #9103
OCPBUGS-54353 : aws/edge/byovpc: tag edge subnets with shared value #9612
OCPBUGS-54367 : IBMCloud: Move to IBM TF openshift fork #9614
OCPBUGS-45961 : Update upi references to api-internal #9298
OCPBUGS-50994 : Bump terraform-provider-google version to v5.37.0 to fix consistent issues during cluster creation #9509
OCPBUGS-41815 : Validate MTU for custom network #9294
OCPBUGS-28706 : [azure] update tested x86 instance type on 4.15 #7966
OCPBUGS-47716 : [release-4.15] Power VS: Create region-zone-sysType hierarchy #9340
OCPBUGS-44259 : IBMCloud: Ignore failed VPC regions #9183
ARO-12457 : Include bootstrap docker config file in go module #9260
OCPBUGS-45207 : add chrony.conf file when additional NTP sources are configured #9251
CORS-3753 : Allow mocking of the Azure client everywhere #9221
OCPBUGS-44035 : IBMCloud: Handle pagination for subnets #9160
OCPBUGS-43760 : azure: use filter when listing SKUs #9135
OCPBUGS-42139 : add tested instance type for IBMCloud #9032
OCPBUGS-42335 : Bump extract-machine-os timout to 20m #9051
OCPBUGS-42180 : Add AWS r8g to arm tested instance types #9040
OCPBUGS-39288 , OCPBUGS-42011 : Openstack UPI - Reintroduce unique resource names #9047
OCPBUGS-38198 : Remove timed context for gcp client #8824
OCPBUGS-29591 : vsphere-fix convert if only provided name #8034
OCPBUGS-32179 : Fix task for attaching IPv6 subnet to router. #8262
OCPBUGS-34721 : fix usage of host and user CA bundle in the agent ignition #8512
OCPBUGS-36090 : [release-4.15]: bump go-retryablehttp for CVE fix #8655
OCPBUGS-37064 : Changed vsphere CPMS to not include fields controlled by failure domains. #8735
OCPBUGS-37182 : ic: fix typo in warning message #8770
OCPBUGS-37067 : update RHCOS 4.15 bootimage metadata to 415.92.202407091355-0 #8746
OCPBUGS-33354 , OCPBUGS-33402 : Use assisted-image-service for ignition editing #8635
: OCPBUGS-36400: PowerVS: add ibmcloud plugins #8687
OCPBUGS-36225 : Make vSphere default ResourcePool formatting not contain double slash. #8664
OCPBUGS-35131 , OCPBUGS-35141 , OCPBUGS-35144 : [CVE-2023-48795] Bump golang.org/x/crypto to v0.21.0 #8646
OCPBUGS-35359 : GCP: Prevent cluster installation with mismatched worker assets and worker replicas #8581
OCPBUGS-35502 : [release-4.15] azure: bump profile used for network #8607
OCPBUGS-35586 : [release-4.15] bump github.com/containers/image for CVE fix #8621
OCPBUGS-31387 : If host is offline or disconnected don’t check ver #8208
OCPBUGS-35355 : baremetal: Don’t always enable provisioning-interface.service #8580
OCPBUGS-35032 : [release-4.15] aws: terraform: add spot instance support for masters #8540
OCPBUGS-35059 : images: change libvirt-installer base #8550
OCPBUGS-33672 : add quota support to ca-west-1 #8412
OCPBUGS-33454 : go.mod: bump aws-sdk-go for ca-west-1 support #8381
OCPBUGS-33205 : Gcp bootstraping release 4.15 #8339
OCPBUGS-33542 : images: do not force terraform-providers to be statically linked #8392
OCPBUGS-29929 : GCP Destroy cleanup correct zones/records #8062
OCPBUGS-32383 : sdk/aws: add ssh security group rule for compute #8282
OCPBUGS-32690 : AWS: bump CCO for permission fix #8302
OCPBUGS-32264 : always save serial logs if they were gathered #8274
OCPBUGS-30944 : Don’t run libvirt validations in agent installer #8167
NO-ISSUE: test fix to support slightly different nmstate error messages #8285
OCPBUGS-32259 : escape ‘%’ in proxy settings #8272
OCPBUGS-32355 : Updated libvirt installer to include multi-arch yq and symlink for backwards compatibility #8277
OCPBUGS-31335 : openstack: Honour worker server group policy #8202
: OCPBUGS-31590: GCP: Skip populating Private/Public Zones within DNS manifest #8220
OCPBUGS-30922 : coreos-installer iso kargs show broken on Agent ISO #8163
OCPBUGS-30822 : Validate control plane replicas #8143
OCPBUGS-31274 : IBMCloud: Restrict CIS and DNS Service lookup #8197
OCPBUGS-30605 : upi: aws: fix typo in worker templates #8125
Bug OCPBUGS-31284: OpenStack: enable 30000:32767 nodePort IPv6 traffic #8199
OCPBUGS-31087 : Fix vsi image missing #8186
OCPBUGS-30098 : feat: add check for SNO bootstrap condition #8089
OCPBUGS-30601 : update RHCOS 4.15 bootimage metadata to 415.92.202402201450-0 #8122
OCPBUGS-30854 : Power VS: Fix wait_for_workspace #8159
OCPBUGS-29964 : fix Azure API SKU calls timing out #8086
OCPBUGS-30792 : Enable deploy by Service ID on PowerVS #8138
OCPBUGS-30577 : Authn with platform-services-go-sdk for PowerVS #8118
OCPBUGS-30148 : fix “OpenShiftSDN deprecated” error message #8094
OCPBUGS-30011 : PowerVS: remove IBM-Cloud/bluemix-go/api/account/accountv2 in 4.15 #8076
OCPBUGS-29768 : Power VS: Add sleep to allow workspace to configure PER #8052
Bug OCPBUGS-29726: OpenStack: Fix dualstack with external load-balancer #8050
OCPBUGS-29495 : gcp: better error msg when service accnt missing #8024
Bug OCPBUGS-29458: OpenStack: fix controlPlanePort validation #8019
OCPBUGS-29236 : Fixed control plane machine set handling of static IPs when AddressesFromPools is not in use. #7996
OCPBUGS-28841 : PowerVS: Add dal12 region #7977
OCPBUGS-29955 : PowerVS: Add debugging to ServiceInstanceNameToGUID #8065
OCPBUGS-29585 : PowerVS: handle composite_instance #8032
OCPBUGS-29620 : Power VS: Fix service instance list #8035
OCPBUGS-29523 : Bump terraform-provider-ibm to v1.61.0 #8026
OCPBUGS-29436 : PowerVS Fix next start search #8013
OCPBUGS-29442 : update RHCOS 4.15 bootimage metadata to 415.92.202402130021-0 #8016
OCPBUGS-29219 : GCP: Skip validation of public and private zones for terraform vars #7994
OCPBUGS-29201 : Copy GCP manifests within MCO bootstrap to the correct location #7993
OCPBUGS-28822 : aws-edge-zones preventing err before discovering #7973
OCPBUGS-29117 : IBMCloud: Handle disk delete errors #7984
OCPBUGS-26036 : ic: aws: add iam:TagInstanceProfile permission requirement #7866
OCPBUGS-28779 : update tested Azure Arm64 instance type on 4.15 #7971
OCPBUGS-28546 : [release-4.15] Bump containerd for vulnerability fix #7957
OCPBUGS-27346 : Warn that FeatureSet is not supported #7922
OCPBUGS-27417 : baremetal: gather all recently refactored services #7928
OCPBUGS-27380 : set the –cluster-profile flag for openshift/api rendering #7955
OCPBUGS-27894 : duplicate failure domains in CMPS #7951
OCPBUGS-27329 : remove retired serial NCv2 from azure tested instance type list on x86 #7921
OCPBUGS-27850 : PowerVS: COS region configurable #7948
OCPBUGS-27814 : [release-4.15] CORS-2950: Remove openshift-sdn as an install-time option #7935
OCPBUGS-25251 : Changed OKD/FCOS workaround to also support Agent-based Installer #7830
OCPBUGS-27299 : Power VS: Add eu-de-1, eu-de-2, sao04, and wdc07 as supported zones #7913
OCPBUGS-26515 : preserve category name when trying to find tag category #7885
OCPBUGS-27311 : Fix depreciated typo #7912
OCPBUGS-26495 : Fix typo in CloudCredential validation #7916
CORS-3166 : GCP: Add load balancer info to cluster infra #7903
OCPBUGS-27188 : Redact platform passwords in agent-gather output #7910
CORS-3168 : build: only rebuild terraform providers if needed #7853
OCPBUGS-27148 : baremetal: correct external_http_url for v6-only BMCs #7906
CORS-3166 : GCP: Update DNSType within GCP PlatformStatus based on UserProvisionedDNS #7882
OCPBUGS-26495 : Add cloud credential capability validation #7890
OCPBUGS-26511 : Bump default channel to 4.15 #7883
OCPBUGS-26051 : aws: validate instance arch #7868
OCPBUGS-25990 : Fixes for the OpensStack UPI playbooks. #7863
OCPBUGS-24679 : Modify the terraform variables to support Nutanix Failure Domains #7813
OCPBUGS-25463 : IBMCloud: Set IBM TF visibility based on URLs #7844
OCPBUGS-25216 : ic: azure: fix retrieving marketplace image #7829
OCPBUGS-25192 : Revert “Merge pull request #7642 from AnnaZivkovic/azure_duplicate_im… #7827
CORS-2934 : IBMCloud: Update MAPI for BYOK #7812
METAL-803 : Update vendoring for baremetal-operator #7809
no-jira: Fix base image reference #7810
CORS-2952 : GCP Set “ClusterHostedDNS” in the Infra CR based on the value of userProvisionedDNS #7796
CORS-2813 : Pass LB ConfigMap manifest as a parameter to MCO instance during bootstrap #7662
OCPBUGS-23140 , OCPBUGS-23305 : Soften VIP validations for external load-balancer #7803
AGENT-739 : Support for install-config baremetal host BMC fields #7645
AGENT-729 : Support generic platform name for external platform #7585
MULTIARCH-4042 : Reuse existing Transit Gateway in target Workspace, or create anew #7592
OCPBUGS-23473 : update RHCOS 4.15 bootimage metadata to 415.92.202311241643-0 #7770
AGENT-615 : Split create-cluster-and-infraenv.service #7364
no-jira: image: infra-providers: use base image instead of builder #7800
no-jira: hack: drop hardcoded -j8 in make invocations. #7799
OCPBUGS-23458 : force destroy bootstrap ign #7791
OSASINFRA-3261 : OpenStack: support dualstack in UPI #7727
MULTIARCH-2678 : Patch for Agent Based Installer to support s390x as supported architecture. #7712
SPLAT-1218 : AWS BYO VPC support for Wavelength Zones #7652
CORS-2525 : Azure: remove storage account with bootstrap destroy #7642
AGENT-337 : Set VIPs directly in api, instead of install-config override #7574
OCPVE-648 : gomod: bump api version with CloudCredential cap #7466
CORS-2852 : cmd/create: ensure proper cleanup on exit #7693
OCPBUGS-9066 : Retry image download on failure #7106
NO-ISSUE: Remove dead code from ‘networking’ asset #7798
PowerVS: MULTIARCH-4030: Reintroduce serviceInstanceGUID install option #7795
OCPBUGS-24191 : set vmType in azure cloud config #7793
no-jira: pkg/asset: safety nets to keep installer from crashing #7792
CORS-2934 : IBMCloud: Add support for BYOK #7738
OCPBUGS-23539 : Keep Machine manifests out of OpenShift Manifests asset #7753
CORS-3020 : IBMCloud: Bump IBM TF provider #7784
MIXEDARCH-310 : Enable the use of the multi payload for agent installer #7595
CORS-2775 : ic: azure: remove deprecated errors package #7778
SPLAT-1126 : aws/clusterNetworkMTU config to change the MTU for overlay network #7765
CORS-2785 : images: decouple installer and installer-artifacts #7782
MULTIARCH-3793 : Power VS: Add mad and wdc assupported region #7773
CORS-2852 : Generate Cluster API Machine Manifests #7771
CORS-2854 : azure: Allow users to set visibility to components #7547
OCPBUGS-24008 : Remove sno_arm.txt integration test #7718
OCPBUGS-23947 : set client options when interacting with azure api #7768
CORS-2978 : enable AWS SDK Installation through feature gates #7715
CORS-2798 : GCP: User Configured DNS solution to update the bootstrap node with the Load Balancer Information #7631
CORS-2845 : azure: Enable storage account encryption #7520
SPLAT-1277 : unrevert PR 7418; implement vSphere control plane machinesets #7780
OSASINFRA-3303 : OpenStack: remove generation of trunks name #7772
AGENT-670 : Add assisted-db data to agent-gather #7719
SPLAT-1160 : AWS - Support Wavelength Zones with edge pool #7369
Skip cluster config #7666
OCPBUGS-24031 : Bump Fedora CoreOS to latest stable #7779
no-jira: destroy: azure: store session in the destroy object #7777
CORS-2975 : Add support for il-central-1 in AWS #7740
CORS-2428 : terraform: add build information to binaries #7763
OCPBUGS-24026 : Add owner for user provided client CA bundle #7749
SPLAT-1272 : Support Nutanix Failure Domains #7730
CORS-2775 : destroy: azure: remove deprecated errors package #7761
no-jira: cmd/openshift-install: Remove “migrate” command #7601
no-jira: go.mod: remove unused terraform-providers-nutanix import #7762
CORS-2835 : pkg/infrastructure: remove ARO build tag #7745
OCPBUGS-21777 : baremetal: populate customDeploy in advance #7674
CORS-2933 : IBMCloud: Basic service endpoint override #7632
CORS-2852 : Introduce Cluster API Infrastructure manifest generation #7672
OCPBUGS-22840 : ic/azure: validate field Plan when for marketplace images #7721
CORS-2604 : tag user-provided azure vnet #7611
MULTIARCH-3964 : Power VS: Control SMT level with machineconfig #7704
no-jira: destroy/azure: fix dropped negation from error comparison #7758
no-jira: destroy/azure: avoid cancelling main context #7750
OCPCLOUD-2130 : Fix Failuredomains check on manifests test #7617
OSASINFRA-3295 : OpenStack: fix client used to list flavors #7723
OSASINFRA-3294 : OpenStack: fix script to update bootstrap ignition shim #7743
no-jira: images: rename terraform- > infrastructure-providers #7716
OCPBUGS-23376 : vSphere - when using RP network path is incorrect #7737
no-jira: Stop rendering networks.config CRD #7732
OCPBUGS-22453 : Fixed systemd-resolved’s split dns config in OKD/FCOS #7634
SPLAT-1218 : upi/AWS: Templates to provision resources in Wavelength #7722
AGENT-337 : Support both VIP and VIPs in AgentClusterInstall #7724
OSASINFRA-3229 : Remove support for Kuryr #7675
CORS-2830 : Provision AWS Infrastructure with SDK #7676
MULTIARCH-4009 : Prepare for varying SysTypes for new datacenters #7717
MULTIARCH-3789 : Power VS: Remove cloud connection support #7696
CORS-2876 : images/installer-altinfra: initial Dockerfile #7711
Bug OCPBUGS-19462: OpenStack: Fix dual-stack machines Spec to contain network #7694
MULTIARCH-3965 : Check if PER is enabled in the target PowerVS workspace #7683
OSASINFRA-3280 : openstack: document etcd on local disk #7664
OCPBUGS-23170 : Revert #7418 “SPLAT-1141: implement vSphere control plane machinesets” #7708
MULTIARCH-2590 : PowerVS create service instance #7695
SPLAT-1141 : implement vSphere control plane machinesets #7418
CORS-2428 : images: add Dockerfile for a terraform-providers image #7687
OSASINFRA-3237 : move controlPlanePort API to GA #7570
CORS-2835 : use build tags to produce installer with alternate infrastructure providers #7656
CORS-2877 : Install Config Feature Gate Validation #7413
OCPBUGS-22772 : return Terraform statefile on error #7671
NO-JIRA: destroy/aws: replaced deprecated sets syntax #7680
OCPBUGS-19398 : IBMCloud: Add eu-es region #7668
OCPBUGS-22830 : fix google cli verson to 447.0.0 #7663
OCPBUGS-22113 : Do not generate azure-cloud-provider in manual mode for aro builds #7608
OCPBUGS-22757 : update RHCOS 4.15 bootimage metadata to 415.92.202310310037-0 #7654
CORS-2852 : Introduce pkg/clusterapi, system, and local control plane #7630
OCPBUGS-20403 : OpenStack: add SG rules for compact clusters on UPI #7576
OCPBUGS-17866 : check GOOGLE_APPLICATION_CREDENTIALS env var #6863
OCPBUGS-22773 : PowerVS: fix removeFromLoadBalancers #7653
OCPBUGS-13664 : Add KMS encryption keys if provided #7650
Bug OCPBUGS-22298: OpenStack: Fix IPv6 address configuration for bootstrap #7638
OCPBUGS-18387 : Add Azure ConfidentialVM capability and DiskEncryptionSet validations #7469
OCPBUGS-22489 : destroy: gcp: fix destroying regional disks #7643
OCPBUGS-22058 : Bump versions for golang modules to accommodate fixes for CVE-2023-39325 & CVE-2023-44487 #7590
OCPBUGS-18986 : Skip the deletion of instance profiles marked shared #7537
hack/go-lint: update golanci-lint to v1.53.1 #7635
OCPBUGS-22655 : Bump Fedora CoreOS to latest stable #7644
bootkube.sh: drop final mention of machine-os-content #7636
update tested x86 instance type on 4.14 #7639
OCPBUGS-4038 : bootstrap: Skip gatewayd units only on OKD agent-installer #7629
CORS-2852 : Build and package Cluster API and providers #7620
AGENT-713 : Use BM hosts in install-config if not defined in agent-config #7531
MIXEDARCH-353 : Add yq-v4 to the upi-installer image for CI and copy yq3 from a previous stage’s manifest-list image #7567
openstack: dual stack UPI - create security group rules for IPv6 #7552
OCPVE-740 : bump openshift/api #7613
AGENT-718 : Add vSphere credentials to install-config overrides #7593
Revert #7428 “OCPBUGS-13664: Add KMS encryption keys if provided” #7625
OCPBUGS-10906 : check extracted base iso coreos version is in sync #7030
OCPBUGS-4038 : bootstrap: Enable gatewayd units only on RHCOS #7580
OCPBUGS-21720 : images/libvirt/Dockerfile.ci: Use centos stream instead centos:7 #6813
CORS-2836 : Refactor Stages, encapsulate terraform #7488
OCPBUGS-20356 : update RHCOS 4.15 bootimage metadata to 415.92.202310170229-0 #7616
OCPBUGS-20364 : azure: validation: validate defaultMachinePlatform #7584
OCPBUGS-20525 : aws: use security groups from defaultMachinePlatform #7589
OCPBUGS-13664 : Add KMS encryption keys if provided #7428
OCPBUGS-5471 : Try to select rendezvousIP among non-worker hosts #7443
OCPBUGS-21781 : Rectify GCP label key validation check #7596
Revert skipping integration test agent sno arm #7561
OCPBUGS-20350 : vSphere,segfault on version check #7575
OCPBUGS-19093 : skip agent-tui on OCI #7512
OCPVE-675 : feat: bump api to add OLM capability #7495
Enforcing the serial execution of the integration tests #7591
images: Cleanup CI Dockerfiles #7507
OCPBUGS-20440 : Warn about host and target compatibility #7582
OCPBUGS-19444 : Use changes to AgentClusterInstall during loading #7506
OpenStack: Adapt nodePorts range 0.0.0.0/0 sg rules #7577
Remove unused method #7438
PowerVS: MULTIARCH-3791 Remove cloud connection reuse functionality #7564
OCPBUGS-19552 : Fixed DNS issues in OKD/FCOS due to split dns in systemd-resolved #7516
docs: Described process of adding vGPU capable nodes. #6606
OCPBUGS-19086 : Check if nmstatectl executable exists in the system #7492
OCPBUGS-16666 : Change where AdditionalTrustBundle is set #7485
OCPBUGS-18455 : Unable to disable external CCM for platform external #7533
OCPBUGS-18552 : Truncate vlan names defined in nmstate if > 15 chars #7486
OpenStack: enable IPv6 primary dual-stack cluster #7259
OCPBUGS-20110 : Add an unit test - at least one interface must be defined for each node #7555
OSASINFRA-3199 : Configure User-Agent for OpenStack API calls #7548
OCPBUGS-17757 : check credentials type to handle different gcp authentication methods #7422
Docs: Fix openstack command for image update in upi installation #7556
PowerVS: MULTIARCH-3790 Remove zones that only have CCs with exceptions #7563
PowerVS: Remove deprecated errors package #7544
Disable pxe sno arm integration test #7557
Inefficient wait for all clusteroperators #7535
OCPBUGS-15844 : Enable FIPS in agent ISO #7540
OCPBUGS-20058 : Use updated ansible-core for Openstack image #7549
OWNERS: Remove obsolete agent reviewers #7545
OCPBUGS-5728 : Log “agent wait-for” commands to .openshift_install.log #7452
OCPBUGS-19092 : Enable serial console for external OCI platform #7511
OCPBUGS-18690 : ic: azure: validate NVMe-only family types #7500
CORS-2479 : agent: Ensure registries.conf is world readable #6745
add jbtrystram to coreOS approvers and reviewers #7464
OCPBUGS-19093 , OCPBUGS-19688 : Allow agent-tui to use serial console #7526
Tweaks to validateRendezvousIPNotWorker #7437
OCPBUGS-18986 : Tag aws instance profiles. #7510
OCPBUGS-19376 : GCP default value for service account #7519
MULTIARCH-3701 : Enable ppc64le for agent installer #7366
pkg/asset/installconfig/powervs: fix dropped error #7419
OCPBUGS-19699 : Remove warning about CPUPartitioning #7527
OCPBUGS-18187 : Increase bootstrap timeout for vSphere platform by 30 mins #7518
OCPBUGS-18830 : AWS terraform bootstrap destroy will not refresh state #7491
OCPBUGS-12707 : always write AWS cloud.conf #7514
AGENT-710 : Use invoker for bootstrap template generation #7508
OCPBUGS-18876 : Pass CPUPartitioning via install-config overrides if set #7513
OpenStack: fix IPv6 docs #7482
OCPBUGS-18945 : update RHCOS 4.15 bootimage metadata to 415.92.202309161058-0 #7499
LICENSE: Update #7502
OCPBUGS-19286 : Updating ose-installer-artifacts images to be consistent with ART #7496
SPLAT-1170 : enable cloud controller manager type to be defined #7457
OpenStack: Set external network for cloud-provider #7411
OCPBUGS-17724 : Graceful fail for AWS getUser on destroy #7429
AGENT: publish services diagrams #7323
OCPBUGS-19149 : Updating ose-baremetal-installer images to be consistent with ART #7494
OCPBUGS-19130 : Updating ose-installer images to be consistent with ART #7493
OCPBUGS-17218 : Warn when firewall rull missing. #7417
OSASINFRA-3236 : deps: Bump gophercloud to v1.6.0 #7208
OCPBUGS-19037 : Handle agent tui failure gracefully #7490
OCPBUGS-19017 : Add Net capabilities to dnsmasq container #7487
OCPBUGS-18113 : Do not set FailureDomains on CPMS when in a single zone Azure region #7448
AGENT-702 : Generate minimal ISO for external platform #7450
OCPBUGS-18304 : for vsphere ipi add cluster domain to the uploaded vm configs so that… #7451
Implement workaround to allow SNO installations for OKD/FCOS #7445
OCPBUGS-18428 : Add ip=dhcp,dhcp6 kernel param for vSphere dual-stack #7467
OSDOCS-6999 : tested machine series ‘C3’, ‘C2D’ #7381
OCPBUGS-18450 : AWS permission missing for security group viewing. #7460
OCPBUGS-18365 : Fix defaulting of userManagedNetworking value #7458
integration tests: Swap order of diff arguments #7462
AGENT-693 : Support external platform #7442
OCPBUGS-18457 : Make extracting ISO kargs more robust #7463
OCPBUGS-18457 : Fix PXE integration tests #7461
OCPBUGS-17806 : gomod: bump openshift/api version #7421
OCPBUGS-17770 : azure: use marketplace image plan’s publisher #7426
OCPBUGS-7690 : azure: destroy: dns records leak if permissions missing #7433
OCPBUGS-17869 : azure: fix setting outboundType #7455
OSDOCS-6880 : Adding 64-bit ARM GCP instance types to documentation #7320
OCPBUGS-16204 : aws: attach additional security groups to controlPlane #7352
OCPBUGS-18046 : update govc version to v0.30.7 #7425
OCPBUGS-15659 : IPI pre-check for MachineAPI capability #7414
OCPBUGS-17860 : OpenStack: Remove NodePorts range 0.0.0.0/0 rules #7405
OCPBUGS-17073 : Revert “Merge pull request #7205 from rna-afk/azure_managed_by_tag” #7412
OCPBUGS-17940 : Add COS endpoint to proxy server (Power VS) #7430
AGENT-692 , OCPBUGS-3860 : Update assisted-service dependencies #7439
OCPBUGS-17227 : gcp: fix validation of custom instance types #7388
OCPBUGS-17869 : azure: put NAT gateway behind TechPreviewNoUpgrade #7434
Destroy startironic.sh forever #7250
CORS-2660 : GCP: deprecate the licenses field #7397
CFE-858 : Update google terraform provider to latest version #7201
MULTIARCH-3676 : PowerVS TG terraform changes #7389
CFE-686 : Generate Infrastructure CR with the GCP user defined tags & labels #7138
CFE-687 : Apply user defined labels on created gcp resources #7153
OCPBUGS-11999 : upkeep: updated description to remove techpreview #7313
CORS-2700 : Make bootstrap S3 bucket optional during bootstrap destroy #7288
CFE-688 : Update install-config CRD to support gcp labels and tags #7126
OCPBUGS-16776 : update RHCOS 4.14 bootimage metadata to 414.92.202308032115-0 #7409
Add baremetal capability validation #7394
azure: validation: machinepool: sort slice before comparing #7407
OCPBUGS-13408 : Log message and add integration test #7408
PowerVS: Update listCOSInstances to continue querying #7404
maintenance: update openshift/api #7401
MGMT-13628 : add support for confidential VMs on Azure #7312
openstack: Test zero replicas in worker machine-pool #7400
OpenStack: Fix user docs for additional network with IPv6 #7395
gather: Use journalctl -o with-unit #7371
SPLAT-1123 : Revert Alibaba deprecation warning #7396
OCPBUGS-15994 : Update core password after loading config-image #7338
OpenStack: Remove SGS created by CPO on destroy #7378
data/data/coreos: bump FCOS to F38 stable #7311
OCPBUGS-16912 : Ensure DHCPv6 client sends Solicit with mac address #7384
Bug OCPBUGS-16249: Add ip=dhcp,dhcp6 option to Kernel args #7367
PowerVS: Check whether Machine pool CIDR is /24 #6903
OCPBUGS-16292 : GCP XPN: clarify service account support #7347
OCPBUGS-6759 : Fix discrepancy with disk size master #7100
OCPBUGS-16959 : openstack/upi: add missing modules namespaces + doc #7373
CORS-2719 : Remove service account user permission #7291
OCPBUGS-17064 : always create a MachineSet #7380
OpenStack: Fix default for openstack_worker_server_group_names #7359
OCPBUGS-16692 : OpenStack: fix crash with empty platform in machinepool #7363
CORS-2445 : GCP add bootimage override in install-config #7215
CORS-2503 : azure: use marketplace images for all nodes #6890
MULTIARCH-3676 : PowerVS add transit gateway destroy #7294
CORS-1770 : Support pd-balanced disk types for GCP deployments #7337
OCPBUGS-15989 : vSphere - bump terraform provider #7354
OWNERS_ALIASES: Add new user to owners_aliases #7348
OCPBUGS-16515 : gcp: use zones available for both instance and project #7317
OCPBUGS-15852 : Single node cannot be installed if etcd appears in the hostname #7304
OCPBUGS-14877 : Validate that number hosts does not exceed replicas #7268
CORS-2628 : Allow users to set ManagedBy tag to resource group #7205
OCPBUGS-16380 : Add /etc/containers volume on create-cluster-and-infraenv #7332
OCPBUGS-16207 : ic: aws: validate max security groups #7345
OpenStack: Add steps to enable dual-stack clusters #7269
Revert “Merge pull request #7096 from r4f4/gcp-instance-zones” #7360
SPLAT-657 : AWS Local Zones subnets automation for edge compute pool #7137
OSASINFRA-3193 : Update openstack/Dockerfile.ci for ansible-core #7346
Include start-cluster.env in agent-gather #7350
Fix the deployment on OpenStack for worker pools with no replicas. #7356
OCPBUGS-16219 : Fix timing issue between network services #7355
OCPBUGS-16415 : Sync nmstateconfig script with assisted-service changes #7353
Agent: Allow additional kernel args to be passed to ISO #7306
Remove mentions of use-octavia #7335
OCPCLOUD-2036 : introduce External platform type #7217
OCPBUGS-16395 : openstack/upi: update doc for CCPMSO #7351
OCPBUGS-16245 : Make nmstateconfig.yaml optional in config-drive #7333
OSASINFRA-3181 : Volume Types for OpenStack CPMS #7300
CORS-2445 : GCP: Add default values for arm64 #7258
PowerVS: Replace deprecated key_id attribute with name for ibm_pi_key resource #7256
PowerVS: Handle empty serviceInstanceID in metadata.json #7328
OpenStack: Dual stack support with BYON #6797
MULTIARCH-3667 : Add support for CPMSO for Power VS #7226
OCPBUGS-15421 : Allow different service account for xpn installs in gcp #7308
OCPBUGS-15997 : openstack: add root volume AZ validation #7309
aws: drop hostedZoneRole Feature Gate #7327
Agent: clear service status once all services started #7316
AGENT-660 Display insert config image message to console #7299
PowerVS: Create new newAuthenticator function #7321
OCPBUGS-9404 : azure: skip LB creation when not needed #7063
Revert “Merge pull request #7289 from r4f4/padillon-settle-ops” #7318
Agent: Log kernel params when generating pxe assets #7314
OCPBUGS-15238 : GCP: ic: client: use a higher context timeout #7290
AGENT-648 : Remove validation check limiting None platform to SNO #7236
Allow destroy for C2S isolated (us-iso and us-isob) partitions. #7086
OCPBUGS-15999 : update RHCOS 4.14 bootimage metadata to 414.92.202307070025-0 #7310
OCPBUGS-14900 : Use correct SELinux label. Make rename atomic. #7307
create: add check for cluster operator stability #7289
SPLAT-827 : support static IP assignments with vSphere IPI #7179
AGENT-562 : Load config from config image #7200
OCPBUGS-15825 : Fix agent gather tui logs #7293
OSASINFRA-3155 : OpenStack: Create ControlPlaneMachineSet CRDs #7280
ic: gcp: validate instances against user-configured zones #7096
AGENT-678 : Fix concurrency issue in agent integration tests #7303
OCPBUGS-14762 : Use the same names for public LB in IPI and UPI Azure #7292
OCPBUGS-2324 : terraform: aws: bump version to 5.4.0 #7274
tls/root: Document this more and change friendly name #7232
CORS-2572 : azure: implement egress via NAT gateway #6933
docs: Add note about not configuring allowed address pairs for day 2 manila configuration #7287
OCPBUGS-14932 : specify azure cli version #7297
OCPBUGS-14932 : Update azure cli to 2.40.0+ #7216
PowerVS Add support for Capped processors #7286
CORS-2645 : AWS Cross-Account Private Hosted Zone: Add Further Validations #7253
AGENT-624 : Allow override of networkType #7223
Update hack/go-test.sh to golang 1.20 #7270
AGENT-627 : Decompress kernel on ARM #7276
OWNERS_ALIASES: offboard ashcrow and bgilbert from CoreOS #7275
AGENT-558 Generate unconfigured agent ignition #7186
OWNERS: merge agent/installer #7278
OSASINFRA-3182 : openstack: remove portTargets #7239
AGENT-498 : Get iPXE script template kernel parameters from ISO #7150
OCPBUGS-15238 : GCP: ic: improve project validation #7267
Default dataStore is returned the name instead the inventoryPath #7261
Use the correct image name for agent-tui extraction #7266
OCPBUGS-13636 : new Aws secret regions support #6184
CORS-2372 : Azure: auth Installer with Managed Identity from VM #7108
OCPBUGS-11796 : azure: skip NSG creation when BYO vnet #7094
OCPBUGS-9435 : terraform: aws: secret regions now support ALIAS record #7184
SPLAT-1094 : warn users about deprecation of Alibaba Cloud #7257
OCPBUGS-14869 : Add timezone info in installer logs #7243
CORS-2656 : Remove context from cluster uninstaller struct #7169
openstack: document external LB #6920
bootkube: Drop cruft in MCO bootstrap #7244
Update OWNERS_ALIASES #7203
Agent: run shellcheck on start-cluster-installation.sh #7062
OSASINFRA-2168 : Docs: update OpenStack requirements #7015
OCPBUGS-15095 : Add kubevirt digest-ref in RHCOS boot images #7254
AGENT-563 : Create configuration image #7157
AGENT-510 : Support interactive network console when pxe booting #7185
Allow CustomNoUpgrade features via install-config #7246
MULTIARCH-3664 : enable multipath for powervs #7222
OCPBUGS-13960 : update RHCOS 4.14 bootimage metadata to 414.92.202306141028-0 #7247
CFE-829 : Remove Azure Tags TechPreview only indicators and checks #7187
CORS-2631 : Add additional security group ids in AWS #7151
AGENT-596 : use agent-installer-utils for agent-tui extraction #7212
AGENT-491 : Support pxe base url #6723
OCPBUGS-14917 : PowerVS: Cleanup service instances for destroy cluster #7173
OpenStack: add support to multiple subnets in the bootstrap #7111
Add ControlPlaneMachineSet for Nutanix #7119
OPNET-298 : Allow primary-v6 dual-stack on vSphere #7124
CORS-2613 : AWS: Cross-account Shared VPC Support #7225
OpenStack: support user provided dual-stack api and ingress Port #7133
OpenStack: configure IPv6 address in the bootstrap node #7128
SPLAT-995 : vSphere Add new template field #6995
OCPBUGS-14757 : images: installer: add xz to the container #7238
OCPBUGS-14818 : disable oVirt provider #7213
AGENT-556 : Wait for rendezvous host configuration #7068
OCPBUGS-13955 : support OPENSHIFT_INSTALL_OS_IMAGE_OVERRIDE #7211
OCPBUGS-14121 : Convert Rendezvous IPv6 address to canonical format #7234
OCPBUGS-14416 : Shorten SNO installation duration by releasing CPC lease #7219
OCPBUGS-14565 : Replace with govc docker image and fix ibmcli folder permission issue #7231
OCPBUGS-13108 : Log additional host info at warning level #7209
OCPBUGS-13662 : Ignore CPUPartitioning for ABI #7218
OCPBUGS-11736 : gcp use preconfigured private zone for installation #7155
Bump & vendor k8s 1.27 dependencies #7220
OCPBUGS-10342 : Check that number of replicas matches hosts #7059
OSASINFRA-3153 : move loadBalancer API to GA for OpenStack #7127
OCPBUGS-10306 : [vSphere] Upi installation failed due to VMs for master and worker node creation failed #6999
AGENT-567 : Re-enable ‘create pxe-files’ command #7102
AGENT-555 : Move Rendezvous Host config to separate file #7061
OCPBUGS-13764 : Support /dev/disk/by-path root device hints #7192
OCPBUGS-1769 : Ignore IAM Roles that the Installer is not authorized to access #7180
OCPBUGS-14077 : MULTIARCH-3492: Avoid conflicting subnets #7145
OCPBUGS-14076 : PowerVS: Remove ClusterOSImage #6996
OCPBUGS-13094 : Use oc command in bootkube.service in a disconnected env #7178
OCPBUGS-7410 : Reject active VPC connections before service destroy #7101
OCPBUGS-7699 : CVE: go-getter vulnerable to denial of service via malicious compressed archive #6893
OCPBUGS-13552 : vSphere Add ova sha query; additional debugging #7171
OCPBUGS-13718 : ic: azure: validate diskTypes in AzureStack #7194
OCPBUGS-9378 : vSphere set bootstrap/master efi #7154
OCPBUGS-13535 : Set AdditionalTrustBundle in override when mirroring not enabled #7182
OCPBUGS-13547 : Ensure –payload-version is set for MCO on bootstrap #7160
OCPBUGS-13547 : remove special cases for featureset in rendering #7189
OCPBUGS-7978 : FCOS: bump to latest stable version #6902
OCPBUGS-13628 : Revert “remove special cases for featureset in rendering” #7183
OCPBUGS-13300 : masters on a single compute server group #7172
OCPBUGS-3542 : Add bootstrapExternalStaticDNS #6585
remove special cases for featureset in rendering #7158
OCPBUGS-13253 : update RHCOS 4.14 bootimage metadata to 414.92.202305090606-0 #7176
pass payload version and manifests to kas and kcm #7152
OCPBUGS-9081 : openstack destroy: account for BULK DELETE limits on object-storage #7168
OCPBUGS-7699 : terraform: google: bump provider for go-getter CVE fix #7051
OCPBUGS-13107 : openstack destroy: Limit Swift workers to 3 #7165
Updating ose-installer-artifacts images to be consistent with ART #7122
OCPBUGS-11921 : GCP XPN: Pass instance service acct in manual mode #7117
OCPBUGS-12964 : Bootstrap on aws should have same metadata service type as on other nodes #7149
OCPBUGS-11792 : update RHCOS 4.14 bootimage metadata to 414.92.202304252144-0 #7135
pass featuregate args to config-operator to get rendered featuregates #6990
OCPBUGS-12904 : openstack: Add netcat to the Installer image #7142
OCPBUGS-12776 : GCP XPN Private Cluster Fails with no Public Zone #7134
OCPBUGS-12869 : fix nmstate related unit tests #7089
Updating ose-baremetal-installer images to be consistent with ART #7121
Updating ose-installer images to be consistent with ART #7120
OCPBUGS-12748 : use python3 for cloud sdk #7118
OCPBUGS-12196 : bump CVO to stable-4.14 #7114
OCPBUGS-11999 : fix: remove feature flag for cpu partitioning no longer needed #7110
OCPBUGS-11801 : Fix agent-tui libnmstate dependency name #7095
OpenStack: enable ingress traffic for dual-stack installations #7099
OCPBUGS-10767 : Fix and improve locking session and AWS Metadata access #7070
OWNERS_ALIASES: offboard Sohan from CoreOS #7103
OCPBUGS-9081 : openstack: Bump Gophercloud #7098
OCPBUGS-11100 , OCPBUGS-11102 , OCPBUGS-11418 : CVE: bump hashicorp/vault version #7091
OCPBUGS-11788 : update RHCOS 4.14 bootimage metadata to 414.92.202304131328-0 #7092
OCPBUGS-8449 : Azure: don’t set default subscriptionID for disk encryption sets #7076
pkg: rhcos: use Errorf instead of Error #7074
OCPBUGS-4998 : Log additional info when status is pending-user-action #7060
OCPBUGS-10673 : [Alibaba] update the bandwidth value of EIP #7011
OCPBUGS-11636 : AWS - Remove ACLs from s3 ign #7081
OCPBUGS-11479 : Upgrade libnmstate version used #7075
OCPBUGS-10478 : gather: azure: fix collecting VM serial logs #6992
Add imageDigestSources, deprecate imageContentSources #6235
PowerVS: fix human readable group-id #7073
docs: gcp: upi: update obtaining RHCOS source image #7072
gcp: add confidential compute support for boostrap TF #7002
AGENT-275 : Add new agent graph command to output agent internal dependency graph #7066
OCPBUGS-7954 : openstack: Only check HTTPS certs on public endpoints #7057
MULTIARCH-2517 : PowerVS: create install-config improvements #6885
OCPBUGS-10845 : Use 100 GB as minimum disk size in validations #7025
openstack: Bump CI base image to v4.14 #7052
terraform: don’t run zip if building provider binary failed #7047
OCPBUGS-8449 : pkg/asset/installconfig: set subscriptionID #6975
OCPBUGS-11039 : remove container-runtime flag from kubelet config #7036
rhcos: Bump to 414.92.202303281555-0 #7038
update tested instance type on 4.13 #7042
OCPBUGS-11038 : GCP: add europe-west12 region to the survey as supported region #7033
OCPBUGS-7966 : Do not remove host default configuration unless network configuration is provided for it #6991
OCPBUGS-2130 : vSphere - finding networks use full path cluster #6973
OCPBUGS-7699 : bump terraform for go-getter CVE fix #6892
OCPBUGS-8349 : Kubelet Client Cert should include system:serviceaccounts group #7032
OCPBUGS-10728 add project filter to gcp usage api requests #7018
OCPBUGS-10638 : Properly handle invalid agent command #7005
OCPGUS-2363 : IBMCloud: Use direct COS endpoint #6952
OCPBUGS-9081 : openstack/destroy: BulkDelete more objects at once #7017
OCPBUGS-8035 : IBMCloud: Fix SSH Private bootstrap #6944
OCPBUGS-7973 : IBMCloud set dnsrecords offset #6924
OCPBUGS-8509 : baremetal: do not use port 80 for httpd #6945
OCPBUGS-9982 : bootstrap-pivot: skip pivot in SCOS Live ISO #6965
PowerVS: Add capacity checks before installation #6850
OCPBUGS-8237 : update terraform-provider-ironic to 0.4.0 #6956
OCPBUGS-6727 : Nutanix Hostname of the VM is not set when using DHCP network config #6981
AGENT-502 : add agent-tui it test #6978
openstack: Remove version info, update lb FIP -> API FIP #7001
OCPBUGS-10570 : openstack: No master primarySubnet control-plane if portTarget is set #6994
OSDOCS-5240 : doc/fix-aws-localzones: replace jq to aws –query #6993
OCPBUGS-10207 : Do not always output warning msg when releaseImage is digest #6971
OCPBUGS-7015 : vsphere, nutanix survey: relax vip in machine cidr #6967
OCPBUGS-9949 : Verify output file exists when oc image extract is run #6960
OCPBUGS-7954 : openstack: Provide manual instructions for invalid certificates #6998
OCPBUGS-10313 : fix agent tui showing up multiple times #6977
Bump mongo-driver from 1.10 to 1.11.2 #6987
OCPBUGS-8540 : CVE: bump mongo-go-driver for fix #6950
OCPBUGS-10394 : Sort userTags in Machine and Machineset manifests #6976
Shorten SNO installation duration by releasing CVO lease #6757
OCPBUGS-2968 : bootstrap: Do not needlessly podman pull #6536
terraform: google: bump stringset dependency #6951
openstack-manifests: Export JUnit results #6966
Updating ose-installer-artifacts images to be consistent with ART #6968
quota: gcp: replace deprecated monitoring package and fix linting issues #6896
OCPBUGS-8119 : CVE-2023-25173: bump containerd #6949
OCPBUGS-8468 : aws: bump aws-sdk-go version #6943
data: libvirt: increase volume size to 32GB #6963
Updating ose-baremetal-installer images to be consistent with ART #6954
Updating ose-installer images to be consistent with ART #6953
refactor: replace github.com/ghodss/yaml with sigs.k8s.io/yaml #6935
OpenStack: support multiple API and ingress VIPs #6940
update RHCOS 4.13 bootimage metadata #6886
OCPBUGS-8094 : In agent ‘wait-for bootstrap’ command, test ssh to Node0 #6919
openstack-manifest: Show assets dir if persisted #6929
OCPBUGS-7262 : Disable systemd status while TUI showing #6925
OpenStack Failure domains #6917
OCPBUGS-8203 : Don’t log password values #6922
OCPBUGS-5129 : Pass Capabilites from install-config to cluster #6923
OCPBUGS-8305 : Power VS: Add resourceGroup to infrastructure manifest #6928
AGENT-356 : Disable ‘create pxe-files’ command #6927
OCPBUGS-8258 : Specify filename for default registries.conf #6926
openstack: consistent TechPreview-only feature validation #6916
RFE-2782 : Create edge compute pool to support AWS Local Zones #6371
OPNET-199 : Allow v6-primary dual stack on baremetal #6881
Generate CSI driver manifests #6856
Azure: use managed storage account for boot logs #6848
OCPBUGS-7015 : Relax MachineCIDR check for vSphere, Nutanix #6915
ARMOCP-417 : enable arm64 for agent installer #6401
AGENT-502 : Enable agent tui #6898
GCP: conditionally create bootstrap service account #6853
vsphere: Remove bostrt from approver/reviewer group #6918
OCPBUGS-7860 : azure: session: fix unclear auth error messages #6901
OCPBUGS-7991 : vSphere - only create RP when cluster is not empty #6905
Support the new fields in NutanixMachineProviderConfig #6841
openstack-manifests: Option to run selected test cases #6908
AGENT-526 : Refactor Agent InstallConfig embedding #6796
OCPBUGS-7993 : hack/build-coreos-manifest: support OKD #6906
bump version of ovirt terraform provider #6883
OCPBUGS-7622 : Ignore CPMS file if not exist #6887
linter: enable reporting about exported names lacking comments #6880
CFE-757 : Fix issues reported by QE #6870
OCPBUGS-7579 : azure: fix certificate-based auth with passpharse #6871
Update alias for Metal Platform #6884
CORS-2496 : Default 2xlarge instead of xlarge in AWS when the control-plane is single-node #6814
OSASINFRA-3090 : External LB support for on-prem platforms #6812
Bug 1904573 : baremetal container modify /etc/passwd group writable #6872
SPLAT-823 : Zonal GA, single terraform, deprecate legacy platform spec #6770
openstack: Fix missing docs link #6852
OCPBUGS-7180 : update RHCOS 4.13 bootimage metadata #6861
Removes m1kola from azure-reviewers #6865
OCPBUGS-7495 : Convert platform type for AgentClusterInstall #6855
CFE-582 : Generate Infrastructure CR with the azure user defined tags #6310
AGENT-456 : Remove connectivity checks from bash script #6846
integration: Don’t pass host data in the install-config #6795
linter: bump version to sync with CI #6859
OCPBUGS-4954 : IBMCloud: Handle COS reclamations #6845
CFE-757 : Fix issues reported by QE #6820
CORS-2386 : IBMCloud: Add networkResourceGroupName #6613
IBMCloud: Add tests for installconfig metadata #6348
OCPBUGS-1048 : if tag categories don’t exist, the installation will fail to bootstrap #6327
CFE-586 : Apply user defined tags on created azure resources #6354
OCPBUGS-7356 : data/manifests/bootkube/cvo-overrides: Default to stable-4.13 #6689
OCPBUGS-6777 : Fix file check for loading openshift manifests #6821
AGENT-505 : Embed agent files in initrd #6842
installer dev build settings to enable delve #6835
OCPBUGS-7261 : Update AgentConfig template #6840
OCPBUGS-4549 : azure: fix MS Graph calls on Gov cloud #6844
openstack-manifests: Add a debug option #6839
OpenStack: Fix distribution of zones on 32-bit systems #6834
OCPBUGS-6422 : CVE-2022-41717: bump net/http for fix #6801
CNF-6357 : feat: add CPU Partitioning flag into the install config #6430
SPLAT-820 : multi-zone is no longer tech preview #6782
destroy: vsphere: move API calls to client abstraction and add unit tests #6604
Add support for confidential compute #6799
Add Adam #6824
OCPBUGS-5234 : azurestack: upi: fix compute scale up #6735
CNF-6362 : feat: add support for nto rendering during bootstrap #6691
OCPBUGS-4997 : Set the configured proxy settings for agent installer #6827
azure: Add error message when authorizer fails. #6551
OCPBUGS-6486 : fixing ovirt installation on iSCSI #6816
OCPBUGS-6270 : Don’t require vSphere details for agent installer #6793
OCPBUGS-6722 : bootimage: move secure execution artifact to separate artifact #6811
PowerVS: Check for potential network conflict in existing CCs #6798
OCPBUGS-6663 : Check platform baremetal settings against default values #6809
AGENT-455 : Check registry and rendezvous host access at startup #6767
OCPBUGS-4549 : destroy: azure: handle nil responses from msgraph sdk #6717
AGENT-505 : Embed agent-tui binary in the agent ISO #6786
PowerVS: Remove region requirement #6772
Bug 2072202 : Check for reachability of API and API-Int URLs later in bootkube #6611
Bug 2067847 : prometheus/client_golang: Denial of service using InstrumentHandlerCounter #6391
CORS-2479 : bootstrap: set 0644 mode for registries.conf #6789
GCP: Remove the BYOH code #6771
AGENT-453 : Create interactive console service for agent installer #6756
OCPBUGS-5959 : bump RHCOS 4.13 bootimage metadata #6790
CORS-2469 : upi: Document removal of CPMS for UPI installation #6727
Bug 2070744 : Fix infinite loop error #6515
CORS-1558 : Add uninstall complete after destroy code #6572
AGENT-504 : Agent extract binary #6777
OCPBUGS-5182 : validate additional confidential VM types #6733
OCPBUGS-5461 : Allow NO_PROXY to contain IPs #6776
OCPBUGS-3253 : Warn if agent assets detected when using non-agent waitfor #6740
OCPBUGS-4654 : azure: upi: use Image Gallery in ARM templates #6684
OCPBUGS-5184 : azure: validate Windows-only VM types #6734
CORS-2449 : gcp: Set pre-created CPMS to Active state #6752
OCPBUGS-1612 : vsphere: set default resource pool when missing failure domain topology #6409
Generate the cloudproviderconfig manifests for integration of nutanix-ccm to OCP #6269
CORS-2405 : Create ControlPlaneMachineSet CRDs #6632
OCPBUGS-5734 : make VIP 168.63.129.16 noProxy in all clouds except Public #6761
OCPBUGS-1695 : Update FCOS to latest 37.20221127.3.0 stable #6487
OCPBUGS-5770 : CVE-2021-4238: goutils: update for randomness fix #6763
BUG 2110982: GCP skip public loadbalancer ip addresses #6755
AGENT-501 : Make it easier to change node zero IP and SERVICE_BASE_URL #6747
MGMT-12839 : Add Shielded VMs options to gcp mpool and TF #6698
OCPBUGS-5324 : CVE-2021-4235 go-yaml: Denial of Service in go-yaml #6741
OCPBUGS-881 : fail to create install-config.yaml as apiVIP and ingress VIP are not in machine networks #6469
SPLAT-901 : set default for variables that are deprecated by failure_domains #6750
OCPBUGS-1769 : Check for AWS STS installation before trying to get all IAM Roles #6666
GCP XPN: remove tech preview feature gate #6754
Expose Azure useImageGallery parameter in the MachineSets() call #6737
OCPBUGS-2088 : Validate that the rendevousIP is assigned to a master #6716
ARO-1796 : Update Azure SDK for go to v63.1.0+incompatible #6746
openstack: Revert Gophercloud workaround #6663
SPLAT-900 : provision VMs in to failure domains #6738
OCPBUGS-4874 : Remove order dependency for agent CLI string #6739
CORS-2449 : Create CPMS manifest #6695
OCPBUGS-2881 : Destroy the service and host project dns records #6534
Bug OCPBUGS-3921: OpenStack: fix bootstrap destroy cmd #6617
OCPBUGS-3706 : Improve error reporting from agent wait-for install-complete #6730
Better logic to derive vpcRegion/Zone from vpcName/Subnets #6665
update tested instance types on 4.12 #6731
Updating ose-baremetal-installer images to be consistent with ART #6678
OCPBUGS-5151 : baremetal: Extra time for provisioning interface #6729
OCPBUGS-3032 : Report status on the console immediately #6697
Updating ose-installer images to be consistent with ART #6675
OSASINFRA-3057 : openstack: Document Image Registry migration to Swift #6710
openstack: Rely on Go’s stdlib for errors #6656
Updating ose-installer-artifacts images to be consistent with ART #6693
cmd: update import of deprecated terminal package #6594
GCP: Tfvars will determine the user has create firewall permissions #6679
OCPBUGS-4941 : OpenStack: Force JSON content-type in Swift object listing #6707
PowerVS: Defer cancel when calling contextWithTimeout #6700
linter: fix issues since revision 75173a17cf #6712
OCPBUGS-2996 : bump RHCOS 4.13 bootimage metadata #6703
CORS-2340 : hack: replace deprecated go-lint #6601
OCPBUGS-3706 : Wait longer for baremetal #6688
Fix import order using the gci tool #6643
Switch back to gp2 ebs volume type for bootstrap instance #6692
OCPBUGS-2891 : aws: destroy: delete ELB listeners #6528
Consolidate loadsdk debug statements #6686
OWNERS_ALIASES: Remove lucab #6696
OCPBUGS-4549 : azure: replace deprecated AD Graph API #6614
Save rendezvous IP in a file ‘rendezvousIP’ alongside the ISO #6683
OCPBUGS-3987 : Check nmstateconfig content in agent-config.yaml #6674
CORS-2147 : Add documentation for the client certs authentication #6505
OCPBUGS-4367 : Fix missing debug messages when getting baseISO #6662
Use backoff functions in PowerVS destroy logic #6591
OCPBUGS-3032 : Report agent installation problems on the console #6544
OCPBUGS-3668 : fully qualified username must be provided #6596
OCPBUGS-1560 : vsphere zonal, terraform depends on ova import #6498
Agent integration tests proposal #6598
CORS-2291 : terraform: save logs to a file #6532
OCPBUGS-3196 : Set ip=dhcp,dhcp6 for master nodes on dualstack #6626
OCPBUGS-2130 : import ova resource cluster path fix #6519
OCPBUGS-2498 : ose-installer-container: vault: insufficient certificate revocation list checking #6493
Wait longer for VM to obtain IP from DHCP in PowerVS #6651
platformprovisioncheck: fix shadowing of err variable #6595
Alibaba: add the tags of the machine nodes #6535
Azure: use azidentity with adapter #6003
OCPBUGS-4125 : Enable CVO unmanage overrides in bootstrap-in-place installations #6649
openstack: Refactor TFVars generation #6465
Update OpenStack spec dependencies #6382
OCPBUGS-3164 : hold bootkube service until bootstrap has pivoted #6488
OCPBUGS-4355 : Fix return value from execute() #6646
OCPBUGS-4328 : images: updating images to be consistent with ART #6641
vSphere Zonal: validate dns and external load balancer #6612
GCP: remove private zone manipulation #6610
Replace deprecated io/ioutil package #6602
ibmcloud plugin “permission denied” #6627
Bug 2105570 : out-of-bounds read in golang.org/x/text/language leads to DoS #6389
OCPBUGS-3524 : data: azurerm: restore RHCOS SA access configuration #6583
OCPBUGS-3405 : Redact pull secret from agent-gather #6574
Adding aarch64 instance types for azure #6531
OCPBUGS-2931 : Azure Stack: use managed images for compute nodes #6540
OCPBUGS-3985 : Pass featureset to kas #6579
mv ibmcloud to /bin folder #6624
OCPBUGS-3278 : (Agent) Do not require host data in platform baremetal section in installconfig #6573
OCPBUGS-3277 : Restart create-cluster-and-infraenv.service if it fails #6577
OCPBUGS-3933 : OpenStack: Force JSON content-type in Swift #6615
add ibmcloud cli to image #6600
Update vSphere Owner files #6607
OCPBUGS-2384 : [Alibaba] fix the creation of public record #5671
docs: fix broken link to default kubelet.service taint #6593
OCPBUGS-3186 : IBMCloud: Confirm Zones and BYON Subnets #6553
OCPBUGS-3123 : Pass FeatureSet to cluster config render #6576
OCPBUGS-2738 : Uplift terraform-provider-ironic to 0.3.0 #6511
OCPBUGS-3382 : Fix cluster wide proxy #6571
OCPBUGS-3280 : Automatically retry install #6567
OCPBUGS-3304 : Always use first matching mirror in assisted-service #6563
OCPBUGS-2841 : (AGENT) only support amd64 archs #6546
OCPBUGS-3214 : Always add router CAs to kubeconfig, even if console is not available #6557
Update apiVersion for lso operator group #6558
OCPBUGS-2513 : Set PublicContainerRegistries for entries in mirror #6545
OCPBUGS-1627 : [vsphere-zones] Fix user folders #6412
OCPBUGS-1704 : gcp: fail during validation if service usage is not enabled #6516
OCPBUGS-3287 : agent ased installation fix for dual stack vips #6530
OCPBUGS-3096 : Static linking the terraform and providers binaries #6548
OCPBUGS-2911 : Use project after creation #6552
OCPBUGS-3110 : azure: Fix client certs authentication #6527
OCPBUGS-2847 : GCP XPN Featuregates #6522
OCPBUGS-2758 : Provide datastore as full path #6547
Bug 2074299 : update golang.org/x/crypto to address security vulnerabilities #6388
OCPBUGS-2966 : Add GCP CreateFirewallRules to tech preview #6533
OCPBUGS-1791 : add bootstrap configmap during the SNO reboot #6521
OCPBUGS-2290 : Power VS Check for existing DNS permitted network and public gateway #6481
Add linux/arm64 binary to installer-artifacts #6514
OCPBUGS-1033 : support multiple documents in the same extra manifest file #6492
OCPBUGS-3018 : Use result from List function after checking error #6541
OCPBUGS-2144 : Azure: Set appropriate architecture for gen v1 image #6517
go-fmt: apply formatting with golang 1.19 #6497
OCPBUGS-2895 : Azure: Fix DiskEncryptionSet regex validation #6513
And 7 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-42726 : Check cast result in adm prune deployments to prevent panic #1893
OCPBUGS-39426 : Ignore pruning when deployment points to replicationcontroller #1865
OCPBUGS-36329 : Set required-scc annotation to privileged for node debug pods #1818
OCPBUGS-35201 : Bump joelanford/ignore to bump go-git to 5.11.0 #1798
OCPBUGS-32840 : Bump go-jose indirect reference to 2.6.3 #1749
OCPBUGS-31879 : Add OIDC specific certificate authority bundle flag #1730
OCPBUGS-31726 : Remove some of newapp unit tests relying on external deprecated images #1726
OCPBUGS-30286 : oc adm catalog mirror: use ToSlash and FromSlash to unify the path separators #1698
OCPBUGS-30270 : Introduce –issuer-url flag in oc login #1696
OCPBUGS-28204 : Add RHEL9 and RHEL8 based oc as new targets in command extraction #1672
WRKLDS-1041 : oc login: Built-in cred exec plugin implementation and wiring #1658
OCPBUGS-24695 : Remove deprecated password defaulting in default config flag #1620
OCPBUGS-25016 : Bump api to include the new CloudCredential cap #1623
OCPBUGS-24375 : Overwrite template’s namespace with the explicit one #1612
OCPBUGS-23723 : Add .snyk file to exclude vendor and ignore unit tests #1604
ACM-7713 : Skip related objects which are invalid #1550
OTA-1035 : adm upgrade status Add control plane update status #1597
OCPBUGS-23071 : Mention inspection completion in the error message #1601
NO-JIRA: Add client version in must-gather summary #1603
WRKLDS-908 : Promote some experimental commands, deprecate others #1596
WRKLDS-860 : Add volume usage percentage checker script in must-gather’s gather container #1533
OTA-1035 : Allow testing adm upgrade status on mock data #1595
NO-JIRA: Drop the experimental info for registry login and must-gather commands #1594
Updating content type variable name for CLI docs generation #1591
WRKLDS-874 : oc whoami: Ask from selfsubjectreview and fallback to internal oauth #1588
moved cert sharing library #1532
OCPBUGS-21612 : Use mutex to prevent concurrent writes #1589
OCPBUGS-20500 : Add directive example to kubelet-restart command #1586
pkg/cli/admin/upgrade/status: Add update duration #1583
oc/*: gracefully fail when user group is not configured #1585
create/identity: fail gracefully when no user API exists #1582
pkg/cli/admin/update: Add tech-preview ‘oc adm upgrade status’ #1554
OCPBUGS-20500 : Fix some commands incorrect examples #1581
OCPBUGS-9340 : pkg/cli/admin/upgrade: Warn on unrecognized subcommands #1557
OCPBUGS-20381 : Bump golang.org/x/net to v0.17.0 #1578
OCPBUGS-20528 : Revert “OCPBUGS-7465: Bump distribution/v3 to sync with oc-mirror” #1575
OCPBUGS-20474 : Set ImportPolicy to PreserveOriginal to honor –keep-manifest-list when mirroring a payload to an image stream #1572
OCPBUGS-20342 : Reflect container’s exit code for long running tasks not attached to terminal #1571
OCPBUGS-20063 : regeneratemco: explicitly check for PlatformStatus field #1555
OCPBUGS-7465 : Bump distribution/v3 to sync with oc-mirror #1556
OCPBUGS-20181 : Use quay redis image instead docker mysql #1559
OCPBUGS-7465 : Introduce refreshable dynamic credential store for image manifests #1540
Updating excluded list of unsupported oc adm commands in MicroShift #1558
WINC-692 : Add Windows node functionality to debug command #1524
WRKLDS-537 : oc adm release info: Add –first-parent to git log for simplification #1552
WRKLDS-806 : Bump kube dependencies to 1.28.2 #1547
OCPBUGS-19282 : Updating ose-tools images to be consistent with ART #1545
OCPBUGS-19281 : Updating openshift-enterprise-deployer images to be consistent with ART #1544
OCPBUGS-19517 : remove unsupported commands from microshift docs #1548
OCPBUGS-19283 : Updating ose-cli-artifacts images to be consistent with ART #1546
OCPBUGS-19129 : Updating openshift-enterprise-cli images to be consistent with ART #1542
OCPBUGS-17925 : pkg/cli/admin/prune/images: omit not found error for deployment configs #1530
OCPBUGS-17253 : Bump go x/net library to 0.13.0 #1529
OTA-559 : Revert “Revert “pkg/cli/admin/release/extract: Add –included and –install-config”” #1528
OCPBUGS-17711 : Revert “pkg/cli/admin/release/extract: Add –included and –install-config” #1527
Update openshift/api #1525
OTA-559 : pkg/cli/admin/release/extract: Add –included and –install-config #1521
Stop using deprecated github.com/docker/docker go APIs #1514
OCPBUGS-16735 : Truncate existing files when writing from inspect #1520
introduce plugin and plugin shadowing tests for oc #1424
pkg/cli/admin/upgrade: Newlines after –allow-upgrade-with-warnings errors #1519
Add profiling functionality and flags in oc #1516
Fix typo in /var/log folder #1517
login: improve usage message for –web option #1513
Bump k8s packages to 1.27.4 #1515
OTA-994 : pkg/cli/admin/release/extract: Centralize manifest extraction #1404
OCPBUGS-16009 : reboot: set ignition version to 3.1 #1499
Add tls-server-name when property exists in kubeconfig #1456
OCPBUGS-15776 : mcs cert: account for environments that use IP directly #1497
OCPNODE-1656 : oc release info: Introduce –idms-file and deprecate –icsp-file #1465
AUTH-355 : Add OAuth2 Authorization Code Grant Flow for login #1402
upgrade distribution No 2 #1495
WRKLDS-700 : bump(k8s) to v1.27.2 #1420
OCPBUGS-15012 : oc image extract: idms-file flag map to IDMSFile field #1464
Correct incorrect command in observe command #1419
Clarify the use of the filter without keep-manifest-list #1414
OCPBUGS-10612 : make registry auth prefence default to podman config locations #1376
handle the error case of node retrieval while waiting for reboot #1482
Fix the output of error prompt #1433
pkg/cli/admin/upgrade: Surface Recommended=Unknown more prominently #1442
pkg/cli/admin/upgrade: Add post-period to space to some error messages #1330
Wait for reboot #1473
tweak output format #1471
OCPNODE-1580 : Add –print-mirror-instructions to oc adm release mirror to allow idms instructions #1341
add reboot-nodes #1468
Trust check #1469
fix directories for consistency #1467
ocpcertificates: add ability to rotate MCS CA/cert #1450
OCPNODE-1656 : oc image extract: Introduce IDMS as alternative source #1426
pernodepod: percent works like this #1463
ocpcertificates: don’t make assumptions on resources not to bring pip… #1462
allow running a command while the kubelet is off #1459
add command to create new bootstrap kubeconfig for kubelet #1458
ocpcertificates: fix handling resources by names explicitly + other cosmetic fixes #1460
tweaks needed for wait #1455
Add a command to remove older trust #1447
create command to create new adminkubeconfig #1452
add a command to copy content to every node #1454
Minor updates to CLI help text #1453
add command for regenerating OCP leaf certs #1443
add a new command to wait for all clusteroperators to go stable #1444
add command to produce an updated CA bundle for trusting the kube-apiserver #1446
add printing for new revisions #1445
add oc adm ocp-certificates regenerate-top-level #1439
OCPBUGS-11652 : Extend adm node-logs to new API #1403
OCPBUGS-12793 : adds a mapping for exposed ports to DockerConfig when manifest listed #1415
OCPBUGS-14340 : Name containers w/‘multi’ when mirroring a multi release image #1423
OCPBUGS-11123 : oc adm groups sync: all groups: print warning before caching #1436
OCPBUGS-11632 : Skip invalid events yamls and continue #1429
OCPBUGS-14082 : Remove closed centos7 registry from newapp unit tests #1430
OCPBUGS-12901 : preserve explicit release image in ClusterVersion #1416
OCPBUGS-11123 : oc adm groups sync: fix the annotation key #1427
OCPBUGS-11123 : oc adm groups sync: print a warning when two or more groups are mapped to the same ldap uid #1425
OCPBUGS-13355 : Use RequestToken functions from library-go #991
OCPBUGS-11632 : Improve error log messages in event filtering #1417
OCPBUGS-12143 : oc login: unwrap tls.CertificateVerificationError to use x509 errors #1406
pkg/cli/admin/upgrade: Clarify client-side vs. server-side docs #1181
replace trimLeft with trimPrefix #1400
Support OCI manifest lists in image mirror #1362
OCPBUGS-8004 : Fix bug when recreating an index with fewer images #1335
adm catalog mirror update example to idms #1401
OCPBUGS-10843 : oc debug unique pod name #1393
adm catalog mirror generates idms manifest #1389
OCPBUGS-1115 : Use linux/arch when user’s OS isn’t in manifests #1311
Remove already deprecated adm create-kubeconfig command #1367
append: expose keep-manifest-list option and preserve manifestlist when appending to specific arch images #1361
Updating ose-tools images to be consistent with ART #1369
OCPBUGS-8048 : pkg/cli/admin/upgrade: Client-side checks for –to-multi-arch #1359
IR-300 , IR-301 : generates ImageStreamTags with import-mode when using oc new-build and oc-new-app #1353
OCPBUGS-10879 : Fix deprecated oc command suggestion #1390
Exclude irrelevant commands from MicroShift documentation #1375
Test Fix: Allow submodule using file transport with newer git #1378
Updating openshift-enterprise-deployer images to be consistent with ART #1368
Updating openshift-enterprise-cli images to be consistent with ART #1364
OCPBUGS-3393 : Always copy the blobs if the target isn’t a registry #1355
Updating ose-cli-artifacts images to be consistent with ART #1370
OCPBUGS-1117 : The architecture of oc in the cli-artifacts’ /usr/bin folder should to the one of the built image #1374
OCPBUGS-10622 : bump repo sclorg/s2i-ruby-container location for newapp test #1377
Add microshift into generate-docs #1365
OCPBUGS-5949 : Add subrepository support for ICSP #1350
Microshift command docs #1357
Do not set master node selector if there’s no masters #1347
OCPBUGS-7190 : Reuse LDAP connection when performing group sync #1336
Adding CommitDate to the Changelog json output #1348
OCPBUGS-7780 : pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates #1346
Use registry.k8s.io and update image version #1343
Add icsp file convert command #1238
OWNERS_ALIASES: Update approvers: add David, remove Jack #1340
oc debug: Use own fields instead directly depending on Attach’s #1337
Updating ose-tools images to be consistent with ART #1308
WRKLDS-594 : Bump to v1.26.1 #1329
OCPBUGS-3473 : oc adm release new: allow specifying crio and kernel versions #1287
OCPBUGS-6011 : Fix kube version from 1.24.1 to 1.25.2 #1325
Removing unwanted character from changelog output #1326
WRKLDS-629 : release run-namspace functionality #1322
OCPBUGS-5010 : Remove must-gather pod after it completes when explicit namespace is used #1320
Enable Changelog to output in JSON #1321
IR-261 : Add –import-mode to ‘tag’ #1312
IR-260 : Add CLI flag to set ImportMode when importing a tag #1289
OCPBUGS-4906 : oc process: Set original namespace if it differs #1318
Updating ose-cli-artifacts images to be consistent with ART #1309
Update errors when debug pod fails #1314
Expose events command to land k8s 1.26 #1315
handle admission webhook lists and CRD conversion webhooks #1301
OTA-818 : pkg/cli/admin/upgrade: Support –to-multi-arch per OTA-818 #1285
WRKLDS-629 : oc adm must-gather: unhidden –run-namespace flag #1313
FDN-112 : Parse any jira reference from commit text, not just OCPBUGS #1306
IR-266 : Add image manifests to ‘describe image’ #1310
Updating openshift-enterprise-deployer images to be consistent with ART #1307
Handle non-amd64 command pulls from amd64 payload #1259
OCPBUGS-4517 : oc adm release: Support extracting commands in specified architectures #1305
Rename registry.svc.ci.openshift.org to registry.ci.openshift.org #1304
OCPBUGS-3526 : Proceed archive if Lsetxattr gets unsupported error #1296
Updating openshift-enterprise-cli images to be consistent with ART #1302
OCPBUGS-4280 : oc import-image: reflect import image error #1300
pkg/cli/admin/release/info: Render multi-arch release information #1292
pkg/cli/admin/upgrade: Drop “force” from “No updates available” #1291
OCPBUGS-3714 : pkg/cli/admin/upgrade: Report on Failing!=False conditions #900
switch the deployer pod to use apply client to avoid conflicts #1288
release: extract linux/arm64 binaries from all payloads #1276
go.mod: update github.com/containers/image #1278
Promote ardaguclu to oc approver #1280
And 2 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-60974 : ccoctl: aws to use proper issuer url on subsequent runs #910
OCPBUGS-58678 : github.com/golang/glog v1.2.5 #894
OCPBUGS-53417 : github.com/golang/glog v1.2.4 #844
OCPBUGS-53818 : update github.com/golang-jwt/jwt #840
OCPBUGS-51540 : Ignore SNYK-GOLANG-GOLANGORGXOAUTH2JWS-8749594 due to not being affected #833
OCPBUGS-47068 : golang.org/x/net v0.33.0 #806
OCPBUGS-45940 : Add AWS region to aws-pod-identity-webhook #802
OCPBUGS-45008 : Add retry to ccoctl gcp create functions #795
OCPBUGS-45003 : github.com/golang-jwt/jwt/v4 v4.5.1 #784
OCPBUGS-43646 : Only attempt timed token credentials on supported platforms. #774
OCPBUGS-43338 : Update github.com/sirupsen/logrus v1.9.3 #768
OCPBUGS-41235 : List secrets in batches to avoid api timeout #754
OCPBUGS-38377 : Update google.golang.org/grpc v1.65.0 #749
OCPBUGS-37461 : Set required-scc for openshift workloads #736
OCPBUGS-37277 : Update to cloud.google.com/go/storage v1.43.0 #729
OCPBUGS-37288 : GCP passthrough permissions check to ignore problematic permissions. #730
OCPBUGS-37419 : SNYK ignore go-client misreporting #738
OCPBUGS-37061 : Update to azidentity v1.7.0 #728
OCPBUGS-36030 : IBM/go-sdk-core update to v5.17.4 #720
OCPBUGS-36291 : AWS STS should not error when a credentailsRequest does not have awsSTSIAMRoleARN #709
OCPBUGS-32900 : Upgrade go-jose module to 2.6.3 #696
OCPBUGS-31924 : aws: remove non-existent permission #691
OCPBUGS-30412 : gcp actuator update check to consider custom roles #686
OCPBUGS-29155 : Fix the ClusterOperator watch of the status controller #675
OCPBUGS-29113 : ccoctl - use proxy when validating CloudFront URL #674
OCPBUGS-27910 : Resolve all outstanding snyk vulnerabilities #649
OCPBUGS-27901 : Use cached clients to avoid client side throttling #660
OCPBUGS-27919 : Report manualpodidentity mode in metrics when using Azure Workload Identity #661
OCPBUGS-27117 : Write manifests when AWS IAM roles already exist. #653
OCPBUGS-26510 : Use live client for metrics #646
OCPVE-647 : annotate manifests with capability name #594
CCO-338 : cmd/operator: use correct kubeconfig for all clients #638
CCO-244 : gcp-ro-credentialrequest to use granular permissions #626
OCPBUGS-23178 : Enable GCP sync to undelete custom roles #637
OCPBUGS-13597 : Discover AWS dns suffix from partition and region. #596
CCO-372 : Azure Workload Identity info in CredsRequests creates a Secret #587
OCPBUGS-20478 : Explicitly set the vsphere secret credential data on sync. #628
CCO-440 : Bump k8s deps to 0.28.3 #614
CCO-192 : Use Leases for leader election #627
CCO-430 : Use per-project custom roles instead of per-cluster custom roles #611
snyk: exclude vendor/ #613
OCPBUGS-22369 : explicitly set azure oidc bucket to allow public blob access #610
Upgrade golang/x/net for CVE-2023-39325 #609
OCPBUGS-21745 : azure create-managed-identites to add cloud controller manager to network resource group #607
Removing andrew from OWNERS #606
Revert #592 “CCO-421: *: split pod identity webhooks from core controller” #604
CCO-421 : *: split pod identity webhooks from core controller #592
Docs: azure workload identity no longer requires TechPreviewNoUpgrade #603
CCO-437 : Document steps for in-place migration to Azure AD Workload Identity. #598
OCPBUGS-19123 : Updating ose-cloud-credential-operator images to be consistent with ART #600
OCPBUGS-18246 : Add networkResourceGroupName parameter for Azure #597
OCPBUGS-17719 : Double timeout delays for managed identity creation and role assignment from 2 to 4 minutes. #591
pkg/aws/actuator: Drop comment which suggested passthrough permission verification #590
CCO-363 : Adding azure identity webhook #559
OCPBUGS-16684 : Set cr.status.provisioned=false on syncErr path #583
OCPBUGS-17049 : update lastSyncGeneration in STS flow sync success #585
Revert “CCO-401: Add azure-workload-identity-webhook to image references.” #588
CCO-401 : Add azure-workload-identity-webhook to image references. #586
CCO-413 : Add dataPermissions to Azure credentials request. #584
CCO-402 : Create Azure AD pod identity webhook config secret manifest in create-all,create-oidc-issuer #573
OCPCLOUD-2012 : ccoctl: Plumb credreq.spec.cloudTokenPath override into Azure secret creation #580
OCPBUGS-16807 : ccoctl azure exit with error when OIDC and installation resource group names are the same #582
OCPCLOUD-2012 : ccoctl: Add –enable-tech-preview arg to azure create-all subcommand. #581
OCPBUGS-16614 : *: stop checking for the STS feature gate #579
Add DOCKER_CMD Makefile var to use podman when found. #577
OCPBUGS-16614 : go.mod: re-vendor openshift/api #578
CCO-233 : Add Azure AD Workload Identity doc. #566
*: use a global codec #576
OCPBUGS-16313 : pkg/operator: correctly fetch CA for AWS minter #575
OCPBUGS-16334 : Clarify updateActuatorConditions & update lastSync #568
OCPBUGS-16313 : manifests: allow list/watch globally on our config configmap #572
CCO-388 : manifests: add cloudcredentials.operator.openshift.io to HCP #571
Revert “manifests: manually amend resources that get laid down by CVO in HCP” #570
OCPBUGS-15365 : manifests: fix rbac #567
OCPBUGS-15906 : ccoctl azure delete to also delete role assignments #564
OCPBUGS-16088 : Adds [default] section header to STS Secrets #565
OCPBUGS-16036 : Set status on CR properly when STS provisioned #562
Revert “Merge pull request #398 from csrwng/exclude_config_ibmcloud” #561
OCPBUGS-15365 : *: use correct clients in the secretannotator #563
OCPBUGS-15365 : *: use a filtered LIST + WATCH on Secrets for AWS STS #545
reconcile status when the clusteroperator changes #560
CCO-353 : ccoctl to create azure custom roles #556
CCO-394 : Do not Add PodIdentityWebhook controller when InfraStatus.ControlPlaneToplogy is External. #547
CCO-366 Add ability to detect AWS STS and behave accordingly #542
Implement ccoctl command to create infrastructure required for Azure workload identity #523
PORTENABLE-526 : operator: use a partial metadata watch for Namespaces #546
manager: filter the cache of configmaps #544
Bump to go 1.20 in go.mod #536
OCPBUGS-13549 : Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. #537
Add a make target and stub for actuator e2e tests #535
Updating ose-cloud-credential-operator images to be consistent with ART #534
Updating ose-cloud-credential-operator images to be consistent with ART #533
Updating ose-cloud-credential-operator images to be consistent with ART #532
OCPBUGS-11671 : ccoctl: Enable public anon read access to default OIDC S3 bucket #526
Updating ose-cloud-credential-operator images to be consistent with ART #521
OCPBUGS-8666 : Correct pod-identity-webhook annotations for PreferredDuringScheduling. #522
SPLAT-950 : doc/aws-sts : steps to migrate from public bucket to private issuer URL #515
OCPBUGS-8666 : feat: add workload annotation to pod identity webhook deployment #520
Upgrade build-machinery-go: make vulncheck #519
Bump golang.org/x/net from v0.5.0 to v0.7.0 #517
OCPBUGS-6370 : Bump k8s dependencies from v0.25.3 to v0.26.1 #511
Add lleshchi to OWNERS file #513
OCPBUGS-6977 : Set pod identity webhook replicas=1 when infrastructure topology is SingleReplica #512
Make pod-identity-webhook deployment HA by default #492
OWNERS: add jstuever #510
azure: move away from ADAL and AD Graph #502
Updating ose-cloud-credential-operator images to be consistent with ART #509
Full changelog
OCPBUGS-33780 : Avoid panic when looking up attachedOutboundRule.ID in azure #145
OCPBUGS-31754 : Avoid nil pointer panic while assigning private IP on Azure #137
Kube 1.28 rebase for cloud-network-config-controller #124
Bump CI image #123
OCPBUGS-5491 : Azure: skip backend pool if attached to an outbound rule #121
OCPBUGS-19163 : Updating ose-cloud-network-config-controller images to be consistent with ART #122
OCPBUGS-17151 : AWS: Skipping Unusable Network Interfaces #120
OCPBUGS-15805 : Azure: Handle already existing IP configurations #115
CCO-356 : Add support for Azure workload identity tokens #102
SDN-3902 : Maintenance #111
OCPBUGS-13140 : increase GCP egress ip capacity to 100 from 10 #110
OCPBUGS-12566 : CVE-2022-41723 golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding #107
Updating ose-cloud-network-config-controller images to be consistent with ART #104
OCPBUGS-11187 : sync CloudPrivateIpConfig when node is missing #103
Updating ose-cloud-network-config-controller images to be consistent with ART #98
OCPBUGS-10526 : pull project name from subnet uri #100
Bump CI image #99
Add MovePrivateIP and its OpenStack implementation #95
Kube 1.26 rebase for cloud-network-config-controller #97
OpenStack: Fix race condition in TestGetNodeEgressIPConfiguration #96
azure: use azidentity with an adapter #70
Add ApplicationSecurityGroups to InterfaceIPConfiguration #91
Fix typos in README.md #90
OCPBUGS-4724 : OpenStack: Support multi AZ environments #87
Updating ose-cloud-network-config-controller images to be consistent with ART #86
OCPBUGS-3993 : OpenStack: Only return egressIPConfiguration for first InternalIP #77
Fix azure log message for assigning and releasing an IP #76
OCPBUGS-1430 : Add assigned egress ips into capacity #69
Full changelog
OCPBUGS-45149 : [release-4.15] VPA: Update OWNERS file #326
OCPBUGS-40930 : update VPA golang.org/x/net for http rapid reset for CVE-2024-8421 #315
OCPBUGS-33885 : fix: scale up broken for providers not implementing NodeGroup.GetOptions() #301
OCPBUGS-31464 : add check for taint.value == nil #293
OCPBUGS-27750 : Fix unstructured taint parsing in Cluster API provider #282
OCPBUGS-23576 : Add Snyk file to exclude vendor directory on scan #275
OCPBUGS-24066 : Updating atomic-openshift-cluster-autoscaler-container image to be consistent with ART #270
OCPBUGS-24146 : Updating ose-vertical-pod-autoscaler-container image to be consistent with ART #269
OCPCLOUD-2195 : rebase on upstream 1.28.0 release #265
Update OWNERS #264
OCPBUGS-18137 : UPSTREAM: 6066: Allow overriding the kubernetes.io/arch label set by the scale from zero methods via a new cmdline arg #261
OCPBUGS-19232 : Updating vertical-pod-autoscaler images to be consistent with ART #262
OCPBUGS-18852 : Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #260
Updating vertical-pod-autoscaler images to be consistent with ART #253
OCPCLOUD-2060 Merge https://github.com/kubernetes/autoscaler:master (d3ec0c4) into master #256
OCPBUGS-13228 : Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #255
Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #252
OCPCLOUD-1851 : Upstream rebase to CA 1.26.1 and VPA 0.13 #250
Update OWNERS #251
Updating vertical-pod-autoscaler images to be consistent with ART #248
Update OWNERS #249
Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #246
Full changelog
OCPBUGS-41798 : set required-scc for openshift workloads #332
OCPBUGS-31947 : Update x/net to v0.24.0 #319
OCPBUGS-23706 : Add Snyk file to exclude vendor directory on scan #307
OCPBUGS-24102 : Updating ose-cluster-autoscaler-operator-container image to be consistent with ART #302
OCPCLOUD-2137 : Check scale from zero annotations on MachineSets #294
OCPBUGS-21791 : Bump x/net package to v0.17.0 #295
Update OWNERS #296
OCPCLOUD-2196 : Update dependencies k8s 1.28 #293
OCPBUGS-18137 : Provide the architecture of the control plane as argument to –scale-up-from-zero-default-arch #284
OCPBUGS-18954 : Ensure status reporter caches exit if they don’t sync #285
OCPBUGS-19411 : cluster-autoscaler-operator: clusterrole add clusteroperators watch #287
OCPBUGS-19169 : Updating ose-cluster-autoscaler-operator images to be consistent with ART #286
OCPBUGS-18278 : Address long acquire times during upgrade #281
OCPBUGS-18338 : Fix CI by running tests natively by default #282
Reconcile when external process change the clusteroperator status #279
OCPBUGS-14356 : add nutanix labels that should be ignored #275
CNF-5642 make operator optional #269
OCPCLOUD-2061 : Rebase dependencies to k8s 1.27 #274
Updating ose-cluster-autoscaler-operator images to be consistent with ART #273
OCPBUGS-10105 : Updating ose-cluster-autoscaler-operator images to be consistent with ART #271
Bug 1943194 : update GPU resource limits type to have validation #268
Update OWNERS #270
revert GPU label changes from pr 223 #267
: Update tooling in Cluster Autoscaler Operator #266
Add infrastructures resource to config.openshift.io #265
Allow infrastructures.config.openshift.io to be listed #264
Register configv1 types to schemes #262
Updating ose-cluster-autoscaler-operator images to be consistent with ART #259
: Update CAO to ignore platform related zone labels #260
Update OWNERS #261
: Set default container for operator #258
Add client certificate and key to service monitor #249
Full changelog
OCPBUGS-24147 : Updating ose-cluster-bootstrap-container image to be consistent with ART #101
OCPBUGS-19235 : Updating ose-cluster-bootstrap images to be consistent with ART #100
OCPBUGS-16504 : bump(*): vendor update #99
Updating ose-cluster-bootstrap images to be consistent with ART #88
Updating ose-cluster-bootstrap images to be consistent with ART #82
OCPBUGS-3505 : Waiting for 2 masters in HA mode case #71
OCPBUGS-6234 : Bump dependencies and image #74
Add API team to reviewers #75
Add API team to the OWNERS #73
Full changelog
OCPBUGS-63169 : ccm: disable unused secure-serving port and webhook #424
OCPBUGS-36821 : Increase GCP Concurrent Service Syncs to 10 #359
OCPBUGS-33547 : update azure and ash tolerations on node manager #343
Bug OCPBUGS-32246: Allow to patch events in OpenStack RBAC #339
OCPBUGS-25751 : Add Snyk file to exclude vendor directory on scan #314
OCPBUGS-26480 , OCPCLOUD-1724 : GCP Credentials req. manifest of CCMO to use new API field #320
OCPBUGS-26210 : Adds CloudConfigTransformer for Azure #319
OCPVE-788 : annotate credentials request manifests #293
Undo TRT-1378: Revert for “OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS” #306
TRT-1378 : Revert #304 “Undo TRT-1374: Revert for \“OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS\”” #305
Undo TRT-1374: Revert for “OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS” #304
OCPBUGS-24127 : Updating ose-cluster-cloud-controller-manager-operator-container image to be consistent with ART #302
TRT-1374 : Revert #301 “OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS” #303
OCPCLOUD-2278 : Add kube-rbac-proxy container & ensure metrics are only available via HTTPS #301
OCPBUGS-23996 : trust bundle CA controller: add owner annotation for ccm-trusted-ca configmap #300
OCPBUGS-23308 : Set IPFamilyPriority and ExcludeNetworkSubnetCIDR for vSphere IPv6-only #299
OSASINFRA-3289 : OpenStack: Remove Kuryr bits #294
OSASINFRA-3284 : Add Events to OpenStack’s RBAC #292
OCPBUGS-20213 : Add azure cloud config transformer #291
Update OWNERS #290
OCPBUGS-17652 : apply necessary RBAC for the alibaba cloud controller manager #276
OCPBUGS-18841 : Additional permissions for internal load balancer on STS #287
OCPCLOUD-2188 : Bump k8s packages to v1.28 #285
update readme to stable status #286
OCPBUGS-19205 : Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #278
OCPBUGS-18641 : Set dual-stack IPFamilyPriority for vSphere #279
OCPBUGS-18841 : Ensure subnets read permission for granular roles #281
OCPBUGS-14718 : Add message for CABundleControllerDegradedCondition error #275
OCPCLOUD-2013 : Move Azure Credentials Request to custom role #274
OCPCLOUD-2149 : Azure: CCM and node manager to use provided credentials instead of MSI. #268
OCPBUGS-15154 : Prune provider permissions post move to use-service-account-credentials #259
OpenStack: Enable manage-security-groups by default #264
OpenStack: Extend owners #266
OpenStack: Set max-shared-lb to disable the feature #263
OCPBUGS-16690 : Allow all NoSchedule taints for Azure CNM DaemonSet #267
OpenStack: Remove use-octavia from config #262
OPNET-319 : Pass feature gates to vSphere and OpenStack providers #256
OCPBUGS-14425 : Alibaba platforms should not be upgreadable #257
CCO-324 , CCO-325 : add support for workload identity #245
OCPCLOUD-2010 : Re-vendor api and library-go for external platform support #253
OCPCLOUD-2052 : Rebase to 1.27 #252
OCPBUGS-13547 : [OCPCLOUD-2034] Update feature gate observation to use featuregateaccess #249
OCPBUGS-12635 : fix: add workload annotation to deployments #248
OCPBUGS-11284 : Add beta topology labels flag to Azure cloud node manager #240
Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #244
Update golangci-lint package to 1.52.2 #246
Revert azure out of tree provider change #242
OCPBUGS-8694 , OCPCLOUD-1779 : Set missed operator status in case of the ‘External’ platform type encountered #233
Reset library-go to openshift fork #234
OCPBUGS-10138 : Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #235
OCPBUGS-8530 : add rbac permission for Nutanix CCM manager #236
Update library-go dependency to move Azure to out of tree #231
Update library-go dependency to move AWS to out of tree #232
OCPCLOUD-1779 : Prevent operator to provision operands if platform is set to ‘External’ #230
OCPBUGS-5036 : Restart pods if related configuration was changed #227
: Update k8s packages to 1.26 #225
Update OWNERS #226
vSphere: If only one failuredomain do not config labels #224
: Modernize tooling #221
OCPBUGS-6658 : Clear useManagedIdentityExtension if it’s set #223
Replace YAML parse failure warning with info message #222
Integrate ccm-nutanix to OCP via CCCMO #201
OCPCLOUD-1817 : vSphere cloud-config yaml converter #218
Fixup go modules after library-go update #219
Update library-go dependency to move vSphere to out of tree #214
Change verbosity level for some logs #215
OCPCLOUD-1807 : Port to ginkgo v2 #210
Update OWNERS #211
OCPBUGS-4074 : Try to limit groups for the REST mapper discovery #207
Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #209
: Set default container for operator #208
Full changelog
OCPBUGS-36151 : Set required-scc for openshift workloads #420
OCPBUGS-26542 : remove duplicate manifests in image #395
OCPBUGS-28622 : Add required PSa labels #402
Revert “OCPBUGS-19106: Updating ose-cluster-config-operator-container image to be consistent with ART” #388
OCPBUGS-19106 : Updating ose-cluster-config-operator-container image to be consistent with ART #385
read featuregates from openshift/api #349
yield CRDs and empty resource rendering to api imge #379
CNF-10479 : Bump up api to pull mixed cpu allocation feature gate #386
NP-793 : Bump github.com/openshift/api #375
create manifest directory during rendering #382
SPLAT-1272 : Update for Nutanix failure domains api changes #378
create parent dir for output #381
Allow split rendering between cluster-config and openshift/api #380
MON-3480 : Add MetricsServer FeatureGate #377
NO-JIRA: pkg/cmd/render/config: Remove ReadFeatureGateV1OrDie #361
MCO-813 : add MCN featuregate #368
SPLAT-1127 : bring in vSphere CPMSO API updates #342
OCPBUGS-21781 : Update openshift/api package to latest version #365
OCPBUGS-21744 : bump library-go to include switch to HTTP/1.1 #366
CFE-887 : Bump openshift/api to add DNSNameResolver. #364
Enable ValidatingAdmissionPolicy in TechPreviewNoUpgrade. #358
OCPBUGS-20164 : Remove Build CRD #360
Remove AdmissionWebhookMatchConditions feature gate #359
OCPVE-708 : feat: bump(api) #357
OCPCLOUD-1989 : Promote GCP CCM from TPNU to default #319
OCPBUGS-19106 : Updating ose-cluster-config-operator images to be consistent with ART #353
CCO-412 : Bump API to promote azureWorkloadIdentity to defaultFeatures #351
Revert “Bump to enable ValidatingAdmissionPolicy in tech preview.” #346
Bump to enable ValidatingAdmissionPolicy in tech preview. #343
Bump openshift/api to add ValidatingAdmissionPolicy feature gate. #340
OCPVE-626 : bump(openshift/api@master) #341
CFE-689 : Update openshift/api package to latest version #335
OCPBUGS-16614 : go.mod: bump openshift/api #338
OCPBUGS-16614 : go.mod: update openshift/api #334
OCPBUGS-16507 : bump sigs.k8s.io/kube-storage-version-migrator #333
OCPCLOUD-2010 : Remove feature gate for external platform #331
SDN-4024 : Vendor openshift/api to get ANP feature-gate changes #330
Promote privateHostedZoneAWS from Tech Preview to Default #328
Update openshift/api #327
OCPBUGS-13547 : Promote Azure CCM from TPNU to default #307
OCPBUGS-15877 : go upgradeable=false when latencysensitive is used and not corrected #325
Enable feature gate for externalCertificate on Route API #326
stomp the latencysensitive featureset for equivalent default #324
WRKLDS-757 : Sync with openshift/api to drop MatchLabelKeysInPodTopologySpread from TechPreviewNoUpgrade #322
SPLAT-1099 : bump openshift/api for vSphere static IP feature gate and platform spec #323
remove dead flag for file #309
Changes to move to api@2d36f53 #321
OCPBUGS-12767 : Add CustomNoUpgrade CRD versions to payload #320
OCPCLOUD-2010 : Re-vendor api to support external platform #306
Update openshift/api to disable EventedPLEG featuregate in techpreview #317
update openshift/api for types and gates #316
Update github.com/openshift/api to pull in evented pleg and sigstore feature flags #312
Update github.com/openshift/api to pull in feature gates #311
OCPBUGS-6266 : Rename config-operator_00_namespace run level to 00 #303
Update library-go dependency #305
Add JoelSpeed to owners #302
Update API and library-go #301
Require consistency in rendered artifacts #299
specify all known featureGates in disabled #297
update render to handle directories of manifests #295
adjust to refined openshift/api types #296
update ordering and featuregates #294
add featuregate status #288
Updating ose-cluster-config-operator images to be consistent with ART #287
OCPBUGS-10037 : update openshift/api to get new apiserver schema #289
update openshift/api to get new techprevew apiserver schema #286
CFE-601 : Update openshift/api package version #279
OSASINFRA-3097 : update openshift/api to get External LB fields #278
OCPBUGS-6185 : Update go version and ART images #280
OCPBUGS-4207 : Revert “Increase verbosity level to track probe timeouts” #274
Update go.mod api,client-go to register crd #270
OCPBUGS-3123 : add –feature-set option to render options #271
Full changelog
OCPBUGS-45839 : relax validation on delete and if failureDomains not configured #336
[[release-4.15] OCPBUGS-41800: set required-scc for openshift workloads #326
OCPBUGS-24632 : Prevent rollout due to irrelevant path artifacts #317
CFE-1087 : API Bump for capacity Reservation #318
OCPBUGS-34971 : Add unreadyNodeGracePeriod for allowing brief node hiccups #299
OCPBUGS-35496 : Wait for ControlPlaneMachineSet to be created when waiting for it to be updated #308
OCPBUGS-35255 : Improved debugging of API listing errors #301
[Release 4.15] OCPBUGS-32414: Fix ExportFailureDomain to handle empty platform spec #290
[Release 4.15] OCPBUGS-32357: Modified webhook to allow templates by name instead of just by path. #289
OCPBUGS-29419 : Never delete a Machine when there’s a single Machine in an index #280
OCPBUGS-29236 : Fixed control plane machine set handling of static IPs when AddressesFromPools is not in use. #279
OCPBUGS-24140 : Updating ose-cluster-control-plane-machine-set-operator-container image to be consistent with ART #266
SPLAT-1280 : update documentation for vSphere #267
SPLAT-1272 : Add support for Nutanix failure domains #258
SPLAT-1129 : adding failure domain awareness for vSphere #228
OCPCLOUD-2297 : webhook/openstack: validate etcd block device size #264
Revert #239 “OCPCLOUD-2167: Test unhealthy node cases” #262
OSASINFRA-3242 [vendoring] new OpenShift API for OpenStack Block Devices #255
OCPCLOUD-2167 : Test unhealthy node cases #239
OCPBUGS-17851 : Reimplement “OCPCLOUD-2130: Add subnet to Azure FD, fix for optional fields in FD” #234
SPLAT-1211 : recognize topology and failure domains represented by the infrastructure resource #250
Update OWNERS #253
OCPBUGS-21863 : webhooks: set min version TLS 1.2 #252
OCPBUGS-21641 : Bump golang.org/x/net to v0.17.0 #251
OCPBUGS-17288 , OCPCLOUD-2179 : Update dependencies to k8s 1.28 #248
OCPBUGS-20070 : e2e: gcp e2-custom increase memory #246
OCPBUGS-20070 : fix: e2e: add gcp custom type to test framework #244
OCPCLOUD-2169 : Check CPMS events are not present when we expect error #243
OCPCLOUD-2169 : Add events for machine creation/deletion #242
OCPBUGS-19226 : Updating ose-cluster-control-plane-machine-set-operator images to be consistent with ART #241
OCPBUGS-18056 : Address long acquire times during upgrade #237
OCPBUGS-18013 : Enhance wehbooks to dry run machine creation to validate provider spec #230
Revert “OCPCLOUD-2130: Add subnet to Azure FD, fix for optional fields in FD” #233
OCPCLOUD-2130 : Add subnet to Azure FD, fix for optional fields in FD #229
test/e2e: override RootVolume.VolumeType to “” #232
openstack: volumeType is now required #231
manifests: Shift from run level 31 to 30 #227
vendoring: update openshift/api #226
e2e: OpenStack CPMS created automatically #224
OSASINFRA-3180 : openstack: volume type in failure domain #217
Bump openshift/api package #223
OSASINFRA-3133 : OpenStack support #195
OCPBUGS-15338 : Fix flaking machine mapping testing #220
add capability annotation #205
OCPBUGS-15308 : Fix lint issue #221
docs: Off-by-one error #201
OCPCLOUD-2016 : Surface cpms vs machine diff #180
OCPBUGS-13205 : Check for unknown fields in the provider spec #214
Add Nutanix support for CPMSO #200
OCPCLOUD-2042 : Update dependencies to K8s v1.27, go v1.20 #213
OCPBUGS-7516 : fix double machine creation on stale cache #207
OCPBUGS-12110 : Updating ose-cluster-control-plane-machine-set-operator images to be consistent with ART #202
OCPBUGS-12769 : Update golangci-lint package to 1.52.2 #203
OCPBUGS-12240 : Run make crds-sync #199
OCPBUGS-7921 : Prioritise machine mapping over alphabetical mapping #196
Inject a failure domain into a dry-run created machine #191
OCPBUGS-11369 : E2E periodics test timeout failures improvement #179
OCPBUGS-11389 : Use PlatformStatus instead of PlatformSpec to determine platform #185
OCPBUGS-2960 : Check ProviderSpec before generating MachineInfo #175
OCPBUGS-11142 : controlplanemachineset: start watching control plane nodes #182
Updating ose-cluster-control-plane-machine-set-operator images to be consistent with ART #176
OCPBUGS-10032 : updates: manually requeue when waiting for replicas being ready #177
OCPBUGS-7989 : machine’s node must be ready for CPMS machine to be ready #171
OCPCLOUD-1990 : Update supported platforms in docs #172
e2e: periodics: remove test with cluster-wide-proxy #170
Update ginkgo to 2.8.1 #169
Update OWNERS #168
Migrate test utils to actuator-pkg repository #159
OCPCLOUD-1869 : Bump k8s 1.26, go 1.19 #164
OCPBUGS-6760 : webhooks: disable mandatory TargetPools validation on GCP #165
golangci-lint: fix header year linting #162
OCPCLOUD-1740 : e2e periodic test: machine replacement with cluster wide proxy #156
OCPBUGS-996 : Reverts “Reverts “Add logic to handle extra updated machines in a single index + minor fixes”” #112
Add testing strategy documentation #155
Updating ose-cluster-control-plane-machine-set-operator images to be consistent with ART #150
Update OWNERS #154
OCPCLOUD-1753 : integration: rollingUpdate: test rebalances machines across failure domains #153
OCPCLOUD-1752 : integration: rollingUpdate: test replaces a not needing update, deleted Machine #152
OCPBUGS-4297 : Fix stale cache issue on createMachine #149
OCPCLOUD-1798 : e2e test: remove common test, unnecessary presubmit aftereach #148
OCPCLOUD-1744 : e2e presubmit: update to newest machine triggers inactive ControlPlaneMachineSet regeneration #147
Check OnDelete strategy rebalances machines #146
OCPCLOUD-1750 : e2e presubmit test: activating ControlPlaneMachineSet adds owner references #145
Add integration test for fulling rolling update replacement #140
OCPCLOUD-1746 : e2e presubmit test: activating ControlPlaneMachineSet doesn’t cause rollout #143
Increase unit test timeout to 10m #144
Check on delete strategy correctly replaces machines #139
Ensure stable output from RunCheckUntil #142
OCPCLOUD-1742 : e2e presubmit tests: generated ControlPlaneMachineSet replicas updated #141
OCPCLOUD-1741 : e2e presubmit tests: ControlPlaneMachineSet uninstall #138
Check OnDelete strategy updates status #137
: Ensure CPMS tests work on GCP #135
: Generate CPMS for GCP #133
: Enable CPMS for GCP #132
Add support for Azure e2e tests #131
Add RollingUpdate presubmit to test replacement of outdated machine #129
OCPBUGS-3320 : Deduplicate Failure Domains for the CPMS #130
Add full veritcal scaling rolling update periodic test #127
Azure: Generate ControlPlaneMachineSet for clusters t… #128
Set up basic E2E test framework #126
Full changelog
OCPBUGS-31807 : use RotatedSigningCASecret and RotatedSelfSignedCertKeySecret only in update mode #801
OCPBUGS-31865 : bump(library-go)=release-4.15 #797
OCPBUGS-27225 : Remove “include.release.openshift.io/ibm-cloud-managed:” annotation #790
OCPBUGS-24162 : Updating ose-cluster-kube-controller-manager-operator-container image to be consistent with ART #772
OCPBUGS-24215 : Annotate rotated certificates #769
OCPBUGS-23462 : bump(library-go) #771
bump(k8s) #763
OCPBUGS-21722 : bump(openshift/api|client-go|library-go) to pick up http2 disablement #762
OCPBUGS-21722 : Bump deps to address CVE-2023-44487 #755
bump(openshift/client-go,library-go) #753
OCPBUGS-16794 : installerpod: change pod manifest mode to 0600 #750
OCPBUGS-19263 : Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #747
Bump openshift/* libs #746
Update to Kubernetes 1.28.2 #744
STOR-1425 : Update to Kubernetes 1.28.1 #742
add roles for the new privileged namespaces PSa syncer controller #743
OCPBUGS-15256 : Sync openshift/api to reduce installerpod configmap based file permissions to 0600 #740
OCPCLOUD-2010 : Re-vendor api and library-go for external platform support #736
OCPBUGS-14323 : Change manifest directory permissions #739
OCPBUGS-13579 : remove RBAC for cluster-policy-controller CM leader election #738
OCPBUGS-13579 : Drop flags removed in k8s 1.26 #737
Remove featureset flag and use only the manifest #735
Update cloud provider tests with feature gate changes #731
STOR-1263 : Bump k8s 1.27 #713
Read feature manifest #733
Restricted featuregate reader #732
use new featuregate API #730
OCPBUGS-12709 : Reset library-go branch after Azure revert #729
OCPBUGS-12133 : Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #727
Revert azure out of tree provider change #724
OCPBUGS-11352 : AWS should not use external-cloud-volume-plugin post CSI migration #721
OCPBUGS-7440 : do not degrade KCM when when monitoring stack rollout is in progress #706
OCPBUGS-10568 : migrate to using lease objects for leader election #715
Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #709
OWNERS: remove ravi from the owners #714
Reset library-go to openshift fork #708
Update library-go dependency to move Azure to out of tree #705
Update library-go dependency to move AWS to out of tree #707
WRKLDS-705 : Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #701
WRKLDS-649 : Guard pod set readiness probe endpoint explicitly #693
OCPBUGS-6259 : bump(k8s): 1.26.1 #691
OCPBUGS-3985 : Enforce PSA when techpreview is enabled #663
Fixup vendor after library-go update #689
Update library-go dependency to move vSphere to out of tree #687
honor feature gates during bootstrapping #686
remove use of deprecated klog flags #685
OCPBUGS-5269 : remove unnecessary leader election RBAC #681
OCPBUGS-5006 : add leader-elect-renew-deadline into defaultconfit.yaml #678
Revert “Drop log flags removed in k8s 1.26” #684
bump (openshift/api) for CSIMigration* feature gates #682
Drop log flags removed in k8s 1.26 #680
Drop flags removed in k8s 1.26 #679
Bump library-go #677
Fix typo in podsecurity-admission-label-syncer-controller cluster role #671
Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #673
OCPBUGS-3283 : remove unnecessary RBAC #661
OCPBUGS-4401 : limit cluster-policy-controller RBAC permissions #670
OCPBUGS-3041 : guard controller: set an explicit hostname to avoid name collisions #664
remove not needed RemoveStaleConditionsController #662
bootstrap-kube-controller-manager: specify resources.requests #660
Full changelog
OCPBUGS-31865 : bump(library-go)=release-4.15 #537
OCPBUGS-24106 : Updating ose-cluster-kube-scheduler-operator-container image to be consistent with ART #513
OCPBUGS-24218 : Annotate serviceaccount-ca with ownership information #511
OCPBUGS-23463 : bump(library-go) #512
NO-JIRA: README.md: steps for enabling profiling, collecting heap and running go tool pprof #507
OCPNODE-1886 : Migrate from kubescheduler.config.k8s.io/v1beta3 to v1 #508
OCPBUGS-21734 : Bump openshift/library-go to disable http/2 by default #503
OCPBUGS-21734 : Bump deps to address CVE-2023-44487 #500
bump(openshift/client-go,library-go) #498
OCPBUGS-16794 : installerpod: change pod manifest mode to 0600 #496
OCPBUGS-19175 : Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #493
Bump openshift/* libs #492
Update to Kubernetes 1.28.2 #491
STOR-1425 : Update to Kubernetes 1.28.1 #490
OCPBUGS-14052 : KubeSchedulerDown: set runbook_url annotation #489
OCPBUGS-15256 : Sync openshift/api to reduce installerpod configmap based file permissions to 0600 #488
remove loglevel in deploy #487
OCPBUGS-14323 : Change manifest directory permissions #485
Remove featureset flag and use only the manifest #484
STOR-1263 : Bump k8s 1.27 #472
use standard featuregate library from API #483
OCPBUGS-12074 : Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #479
Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #466
OCPBUGS-10568 : migrate to using lease objects for leader election #476
disable debug pporf with unauthenticated port #468
WRKLDS-705 : Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #463
WRKLDS-649 : Guard pod set readiness probe endpoint explicitly #459
OCPBUGS-6261 : bump(k8s): 1.26.1 #460
Add client certificate and key to service monitor #434
remove use of deprecated klog flags #457
Revert “Drop log flags removed in k8s 1.26” #456
bump (openshift/api) for CSIMigration* feature gates #455
Drop log flags removed in k8s 1.26 #454
Drop flags removed in k8s 1.26 #453
OCPBUGS-3041 : guard controller: set an explicit hostname to avoid name collisions #446
bootstrap-kube-scheduler: specify resources.requests #445
Full changelog
OCPBUGS-36322 : Set required-scc for openshift workloads #112
OCPBUGS-24156 : Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART #100
OCPBUGS-21738 : bump library-go to include switch to HTTP/1.1 #95
OCPBUGS-19253 : Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART #94
Revert “specify master node selector on migrator pod” #93
OCPBUGS-17170 : specify master node selector on migrator pod #92
OCPBUGS-16513 : bump(*): update to 1.27.1 #91
Fix operator doc in README #90
Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART #89
OCPBUGS-6240 : Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART #87
Full changelog
OCPBUGS-62980 : Update CNO reviewers/approvers #2817
OCPBUGS-56649 : Fix live migration with feature migration configured explicitly #2715
OCPBUGS-36688 , OCPBUGS-43099 : Unexpected Behavior During Cluster Upgrade for the ovn-ipsec-host pods #2658
OCPBUGS-53282 : Not update status.migration of the network.config CR to empty #2669
[Release 4.15] OCPBUGS-51208: Use applyconfigurations for updating network.oprerator status #2653
OCPBUGS-47633 : Prevent live migration process from flapping between step-2 and step-3 #2609
OCPBUGS-45890 : Pass transit_switch_subnet options in ovnkube-node pod #2587
OCPBUGS-43716 : Skip including default crypto policies to avoid authby issue #2599
OCPBUGS-46149 : Remove ip xfrm state when IPsec is disabled #2596
OCPBUGS-43605 : OCPBUGS-42244: Exporting environment varialbe NODE_CNI for live migration #2539
OCPBUGS-44973 , SDN-5436 : Provide support for user owned IPsec machine configs #2576
OCPBUGS-42753 : Set mount propagation to HostToContainer for /var/lib/kubelet #2520
OCPBUGS-42865 : Add configurable subnets while running hybrid-overlay-node binary #2523
OCPBUGS-43268 : Update network operator status for IPsec #2530
OCPBUGS-43099 : Configure narrowing=yes for IPsec connections #2529
OCPBUGS-42020 : HyperShift: do not use antiaffinity on single replica control planes #2504
OCPBUGS-41947 : Add proxy env vars to onvkube-node #2503
OCPBUGS-31447 : Tighten the permissions on whereabouts.conf #2324
NP-1064 , OCPBUGS-39336 : Remove managed cluster checking for live migration #2485
OCPBUGS-34613 , OCPBUGS-34726 , OCPBUGS-34727 : Live migration backports #2393
OCPBUGS-37962 : Fix IC distributed control plane alerts #2459
OCPBUGS-35837 : Propogate hypershift control plane priority class override to multus and preserve container resource requests #2420
OCPBUGS-37205 : Check every MachineConfigPool for IPsec plugin existence #2439
OCPBUGS-34809 : Ensure that the node-identity webhook address contains colons for IPv6 #2396
OCPBUGS-36347 : Create the configmap mtu if not found #2426
OCPBUGS-36499 : [release-4.15] Bump Openshift API and backport configurable subnet knobs (transit / join / masquerade) #2375
OCPBUGS-36367 : update whereabouts crd #2427
OCPBUGS-32989 : Add conditions for ignored-namespaces #2379
OCPBUGS-29739 : Run dhcp-daemon pods as system-node-critical priority #2283
OCPBUGS-34596 : Add ipsec state metric #2389
OCPBUGS-32515 : Fix wait logic for IPsec certificate signing request #2348
OCPBUGS-29092 : Add probes to node-network-identity #2253
OCPBUGS-29654 : Fully disable network-node-identity on ROKS #2314
OCPBUGS-30927 : ensure local networking deployments within hypershift use the client side load balancer to be resilient to control plane node failures #2310
OCPBUGS-30615 : Fix managed cluster detection on ARO #2304
OCPBUGS-29090 : network-node-identity mounts secrets with mode 0640 #2251
OCPBUGS-29390 : ipsec: fix openssl typo #2272
OCPBUGS-29522 : Not set CNO to degraded if API server returns conflict error #2275
OCPBUGS-29654 : [release-4.15] Disable network-node-identity on ROKS #2278
OCPBUGS-29299 : Update ingressconfig_controller to use field Manager #2265
OCPBUGS-28902 : Fix CloudPrivateIPConfig CRD in common #2263
OCPBUGS-29082 , OCPBUGS-29150 : Remove libreswan rpm existence checks #2255
OCPBUGS-28778 : add env var in whereabouts-reconciler daemonset #2242
OCPBUGS-27421 : Only reconcile on Node updates with Label changes #2212
OCPBUGS-27199 : Remove egressip write permissions from ovn-kubernetes-node #2203
OCPBUGS-27174 : network node identity: tolarate all taints #2202
NP-905 , OCPBUGS-28902 : Bump openshift API #2247
OCPBUGS-28904 : [release-4.15] Restrict live migration to standalone managed clusters #2243
NO-JIRA: add kyrtapz as reviewer and approver for release 4.15 #2227
OCPBUGS-28214 : Not update migration conditions when any MCP is updating #2223
OCPBUGS-27777 : Deploy CNO IPsec MC even if user already have one #2215
OCPBUGS-25652 : fix whereabouts conformance test failures #2168
OCPBUGS-27748 : [release-4.15] Add ConfigMap mount to the whereabouts-reconciler #2214
OCPBUGS-27198 : [release-4.15] Update ovn-k managed control-plane RBAC #2204
OCPBUGS-27286 : Use specific permissions for CNCC in GCP #2190
OCPBUGS-27001 : Keep the live migration annotation consistant with the enhancement doc #2194
OCPBUGS-27186 : Ns ipsec 4.15 #2200
OCPBUGS-25864 : HyperShift, network-node-identity: Check the deployment in the management cluster #2180
OCPBUGS-24036 : remove all managed fields used by old manager #2167
OCPBUGS-25312 , OCPBUGS-25921 : Avoid removal of ipsec-host daemonset when node is NotReady #2181
OCPBUGS-24148 : Updating cluster-network-operator-container image to be consistent with ART #2133
OCPBUGS-22710 : Set enable-multi-external-gateway flag in ovnkube.conf #2158
OCPBUGS-19817 , SDN-4162 : Upgrade IPsec with single daemonset pod #2087
NP-615 : Live migration #2091
OCPBUGS-23161 : Set logging for controller-runtime #2129
SDN-4061 : Remove interconnect upgrade logic, single-zone YAMLs and everything related to OVNK centralized architecture #2101
OCPVE-779 : Annotate credentials request manifests #2105
NP-615 : Bump github.com/openshift/api #2138
SDN-4308 : Update status merge for APBRoute and EgressFirewall. #2132
OCPBUGS-22710 : Add apbroute/status patch rights for ovnkube-node to update status #2139
NETOBSERV-1047 : Add a cluster monitoring dashboard for ovn #1871
OCPBUGS-21924 : Bump library-go #2082
SDN-4101 : Remove HyperShift API dependency, Bump kubernetes dependencies #2128
NO ISSUE: add ownership of the proxy-ca #2111
OCPBUGS-22869 : hypershift, hosted clusters: enable multi-homing and multi-net features #2113
OCPBUGS-23082 : set automountServiceAccountToken to false for hypershift managed network-node-identity deploy #2100
OCPBUGS-21924 : Bump golang.org/x/net to v0.17.0 #2068
OCPBUGS-18088 , OCPBUGS-18089 : ovnkube: container scripts cleanup [v2] #2060
OCPBUGS-11179 : change CNO to use custom ServiceAccount #2084
two replicas for CM instead of 3 #2052
OCPBUGS-15817 : Egress router: request at least 100 milliCPU #2077
OCPBUGS-18785 : SDN controller manifest: add node name from downward kapi to sdn controller #2047
OCPBUGS-19370 : Added HCP label to CNO pods #2048
OCPBUGS-15220 : Add zone node preference to multus-admission-controller #1795
multinetworkpolicy: allow Neighbor Discovery Protocol traffic #2010
OCPBUGS-18569 : hypershift: adjust backoff on infrastructure name retry #1986
OCPBUGS-20533 : Revisit cipher suits for multus-admission-controller’s rbac-proxy #2074
OCPBUGS-10652 : ovnkube: disable conntrack on hybrid overlay VXLAN ports #1819
Make APB External Route namespace selector mandatory for a dynamic hop #1929
OCPBUGS-20519 : hosted cluster upgrade failure from 4.13 stable to 4.14 #2065
Revert “Merge pull request #2037 from dcbw/db-script-cleanup” #2058
OCPBUGS-18392 : notify when /etc/openvswitch path changes #1989
OCPBUGS-18088 , OCPBUGS-18089 : ovnkube: container scripts cleanup #2037
Remove ability to deploy with Kuryr #2056
OCPBUGS-20104 : Don’t run network node identity as root #2051
OCPBUGS-20076 : Multus should determine kubeconfig path #2049
Revert Kuryr MTU fixes #2038
Fix MTU miscalculation #1778
OCPBUGS-19918 : get ipsecStatus from host daemonset #2042
Network metrics daemon: change priority class to openshift-user-critical #2044
OCPBUGS-14819 : HyperShift: Use the local konnectivity proxy when checking proxy readiness #1985
OCPBUGS-19861 : Multus per-node certificates should have 24h duration #2039
OCPBUGS-19418 : Relax conditions to get IC upgrade started #2018
OCPBUGS-18396 : Fix config status MTU migration not being updated #2021
OCPBUGS-19705 : Use port 9108 for ovnkube-control-plane metrics #2031
OCPBUGS-19715 : Do not enable node admission webhook if the CNI is not OVN-Kubernetes #2030
OCPBUGS-17391 : remove prestop hooks for northd, sbdbd and nbdb #1978
OCPBUGS-19625 : Multus per-node certificate request #2009
OCPBUGS-19377 : Kuryr: Fix deriving MTU from previous config #2007
OCPBUGS-19648 : Network identity: node-specific certificate in ovnkube-node, admission webhook #1983
OCPBUGS-19550 : multus: set MULTUS_NODE_NAME to filter pods to local node #2020
OCPBUGS-19018 : use $CPE_NAME to find the OS major version #2003
OCPBUGS-19494 : ipsec: remove preStop from host #2015
OCPBUGS-18114 : Update node selector in various YAMLs #1845
Limit OVN-Kubernetes permissions #1982
OCPBUGS-18892 : make ipsec.service required #1999
OCPBUGS-19236 : Updating cluster-network-operator images to be consistent with ART #2006
separate libovsdblogs from main ovnkube-master logs #1938
OCPBUGS-15201 : Disable weak SSH cipher suites #1981
OCPBUGS-18676 : ovnkube: set northd backoff-interval and use a single thread to save CPU #1990
OCPBUGS-17380 : ipsec: fix oopsy from 2e3fc8e7a0 #1996
OCPBUGS-18517 : Kuryr: Set MTU on Bootstrap, not Render phase #1988
OCPBUGS-18135 : IBMCloud specific: patch out management workload for dataplane component thats needed for bootstrapping #1955
move IPsec to host #1849
OCPBUGS-17916 : Fix IC configmap lookup in pod_status.go #1954
OCPBUGS-17677 : [Azure]CNCC failed to assign egressIP to NIC for Azure Workload Identity Cluster #1980
OCPBUGS-18363 : Add ‘/etc/cni/multus/net.d’ into volumemount in multus pod #1979
OCPBUGS-18175 : Fix bond-cni’s default directory in multus manifest #1953
OCPBUGS-17782 , SDN-3664 : Join ovnkube-controller and ovnkube-node container for multizone setup #1971
OCPBUGS-16051 , OCPBUGS-3176 : Enables IP Forwarding config in CNO #1952
OCPBUGS-17257 : CVE-2023-3978: golang.org/x/net/html: Cross site scripting #1935
OCPBUGS-17677 : [Azure] Add granular permission for assigning egressIP to NIC to Azure CredentialsRequest for workload identity. #1949
OCPBUGS-17964 : ovn-k, managed: Align join subnet configuration #1962
SDN-4024 : Add ANP Feature Gate #1859
SDN-4057 : hypershift: Allow ovnkube-master and ovnkube-node to have different images #1942
Remove certificatesigningrequests/update permission from ovnkubenode #1934
Add rolling update for managed ovnkube-control-plane #1944
IC & openshift + hypershift #1874
OCPBUGS-16019 : prevent creation of multiple cni-sysctl-allowlist-ds pods #1904
OCPBUGS-10765 : make MAXLOGFILES a real variable and work for self-hosted #1931
Multus thick plugin support #1915
OVN-Kubernetes ipsec: create the CSR with a random name #1928
CCO-294 : Switch azure credentials request to use explicit permissions #1922
OVN-Kubernetes: Add status subresource permissions for setting labels and annotations #1896
SDN-3223 : Use encapsulation=true for IBM Cloud #1800
Bug 16136 : change whereabouts ip reconciler exec #1890
Add OpenStack platform to list of allowed dual-stack clusters #1697
OCPBUGS-15945 : Stop using utilruntime.PanicHandlers to handle reconciliation panics #1893
HOSTEDCP-1063 : allow webhooks in hosted clusters to reach multus-admission-controller service #1879
OCPBUGS-15961 : FIPS related CNO changes #1901
OCPBUGS-10765 : Revert “Revert “OCPBUGS-10765: Remove oldest ovn acl log files when f… #1876
ovn-k: Configure dns service namespace and name #1912
OCPBUGS-15544 : Enable multi-external-gateway feature by default for managed and hosted clusters #1887
OCPBUGS-15918 : Skip rendering 0.0.0.0/0 for cluster proxy status #1903
Change rhel7/8 to rhel8/9 #1870
Enable EgressService controller #1848
Edited multus-admission-controller deployment config to not add autom… #1767
OCPBUGS-15794 : fix: add missing annotation for workload partitioning #1866
OCPBUGS-15544 : Add adminpolicybasedexternalroutes rights for ovnkube-node. #1867
Revert “Remove oldest ovn acl log files when file limit exceeded” #1873 #1873
OCPBUGS-10765 : Remove oldest ovn acl log files when file limit exceeded #1868
kube-proxy config overriding updates #1831
OCPBUGS-15282 : Add release version annotation to whereabouts-reconciler #1851
CCO-356 : Add Infrastructures permission to CNCC cluster role #1843
Add multi-networkpolicies support for OVN #1796
Add support for AdminPolicyBasedExternalRoute CRD and controller’s RBAC #1765
OCPBUGS-15138 : Add kubernetes.io/os nodeSelector to wherebouts reconciler DS #1841
OCPBUGS-14988 , SDN-3901 : Rebase to kube 1.27 #1826
CCO-358 : Manifest changes necessary to support Azure Workload Identity #1755
OCPBUGS-14714 : Do not rely on ControlPlaneTopology do determine if running in HyperShift #1835
OCPBUGS-11882 : Added another volume to safe-to-evict-local-volume annotation #1830
OCPBUGS-14833 : Fixes lint issues #1834
OCPBUGS-14384 : Remove nodeSelector for architecture in whereabouts daemonset #1828
OCPBUGS-11882 : Added safe-to-evict annotation to ovnkube-master and multus admission controller components #1822
OCPBUGS-13922 : Revert “Do not set the operator as available before updating the network config” #1818
OCPBUGS-11448 : add Hypershift release-image annotation to multus #1770
OCPBUGS-10937 : multus-admission-controller mounts secret with mode 0640 #1752
OCPBUGS-13219 : Use IfNotPresent instead of Always in OVNK upgrades pre-puller #1803
OCPBUGS-5027 : Make the operator degraded on panic #1786
OCPBUGS-12856 : Support Device Plugin Resources For Smart NIC and DPU Hosts #1721
Updating cluster-network-operator images to be consistent with ART #1790
OCPBUGS-11565 : High API requests due to allowlist and operconfig reconcilers running too often #1788
OCPBUGS-8070 : Depreciate legacy field manager #1763
OCPBUGS-11550 : AUTH: update cluster-reader to include k8s.ovn.org #1791
OCPBUGS-10009 : HyperShift: Support HostedControlPlane node selector #1736
OCPBUGS-11046 : fix reconciliation process of the allowlist controller #1792
OCPBUGS-1341 : Enhance check controller to remove old check objects #1649
OCPBUGS-11046 : Fix allowlist ds template #1773
OCPBUGS-10647 : multus-admission-controller should not run as root under Hypershift #1745
OCPBUGS-9174 : The cluster-readers group should be able to get net-attach-defs #1343
Updating cluster-network-operator images to be consistent with ART #1768
OCPBUGS-9964 : Split out konnectivity certs #1734
SDN-3444 : Add runbook url for SBDB connectivity alert #1553
OCPBUGS-7777 : use –template instead of -a for ‘oc observe’ #1760
Fix tier label, privileged, HOSTNAME/NODENAME in whereabouts reconciler #1735
OCPBUGS-10433 : Hypershift: Add RollingUpdate parameters to multus-admission-controller #1740
ovn-kube: move back to unsuffixed RHEL9 images #1747
Updating cluster-network-operator images to be consistent with ART #1732
OCPBUGS-10649 : HyperShift: Add POD_NAME env to ovnkube-node #1748
OCPBUGS-10031 : operConfig reconcile can return nil error on failure #1744
Set OVN-K north/south bound stale alerts severity to critical #1668
OCPBUGS-8707 : Point libreswan to proper nss location #1727
Whereabouts should implement the reconciliation controller #1693
add/update some UTs around clusternetwork change #1725
OCPBUGS-9931 : Enable configuration of node healthz server on ovnkube #1715
OCPBUGS-8692 : HyperShift: Set affinity, tolerations and co-location for all hcp resources created by CNO #1728
Cno 4.13 kubernetes 1.26 #1708
use annotation on the daemonset to update hybrid overlay #1709
Remove the ovn-kind-cno.sh script #1710
SDN-3597 : OVN-K alerts: add OVS overflow alerts #1630
SDN-3730 : OVN IC: migrate master alerts to cluster manager #1716
Allow cidr expansion #1707
Enables nodeSelector to be used in egress firewall rule #1720
Add ovnk alert for resource retry failure #1674
OCPBUGS-6730 , SDN-3221 : ovn-kubernetes: use RHEL9-based images #1712
OCPBUGS-4343 : update apf configuration to use v1beta3 #1633
Jira OCPBUGS-7774: Print RawCNIConfig in its string representation #1718
OCPBUGS-6235 : Updating cluster-network-operator images to be consistent with ART #1656
Allow updates to pods #1717
OCPBUGS-5559 : add default noProxy config for Azure #1672
always create env.sh when run_vs_existing_cluster #1711
OCPBUGS-7354 : Revert “Revert “OCPBUGS-5842: Use pods oc vs host”” #1714
ovn-k, multi-homing: enable the feature #1699
Revert “OCPBUGS-5842: Use pods oc vs host” #1713
OCPBUGS-5842 : Use pods oc vs host #1681
OCPBUGS-4417 : Added missing API field podref to OverlappingRangeIPReservation CRD #1677
OCPBUGS-6651 : HyperShift: Add .hypershift.local to no proxy list #1692
OCPBUGS-6651 : HyperShift: Do not use proxy for internal routes #1694
remove TLS_RSA_WITH_AES_128_CBC_SHA256 cipher #1680
ovn-kubernetes: Allow node_mgmt_port_netdev_flags for non-DPU modes #1676
OCPBUGS-3272 : Unhealthy Readiness Probe failing ci #1665
OCPBUGS-5306 : ovn-kubernetes: ignore NB/SB readiness checks and dbchecker when not RAFT member #1673
OCPBUGS-5802 : Update github.com/Masterminds/sprig to v3 #1679
OCPBUGS-5306 : OVN-Kubernetes: Stop sorting master node addresses #1675
Allow SDN migration from Kuryr to OVNKubernetes #1639
update ‘make install.tools’ for golangci-lint #1670
Fix CNO crashing when Kuryr without MTU is set #1669
OCPBUGS-2947 : Disable the drop-icmp container ‘oc’ pprof webserver on Azure #1607
OCPBUGS-4350 : Fix handling of deployment and statefulset updates #1648
OCPBUGS-2532 : Fix default disable-udp-aggregation value on s390x #1655
Fix info log formatting #1650
Support RHOBS monitoring for HyperShift #1644
OCPBUGS-3916 : SDN alerts: Add $labels.node to SDNPodNotRady metric #1637
The allowlist daemonset should set a priority class. #1647
Bug OCPBUGS-736: Kuryr: If set use MTU from Config for svc net #1586
OCPBUGS-3883 : HyperShift: Co-locate OVN-Kubernetes master with other hcp pods #1627
OCPBUGS-2532 : Disable UDP aggregation on s390x #1629
Jira OCPBUGS-3777: IPsec: Fix broken counter++ expression #1623
OCPBUGS-3114 : HyperShift: Do not accept empty infrastructure name #1611
HyperShift: Fix typo in control-plane-component label value #1626
Remove references to the hosts kubeconfig #1612
OCPBUGS-3744 : SDN: /var/run mount cleanup #1625
OCPBUGS-3460 : CNI binary copy should account for the possibility of symlinks #1614
OCPBUGS-2598 : ipsec: Run ovs-monitor-ipsec in the foreground and change probes #1606
SDN-3508 : HyperShift: Render cncc with proxy settings of the management cluster #1577
NP-607 : update microshift ovnk manifests #1589
Bug 1896533 : moved SetDegraded call out of object loop to process all items first #1600
Full changelog
e2e:performance: decode to valid kubeletconfig object (#1275) #1275
Fix context deadlines in ExecCommandOnPod() (#1265) #1265
OCPBUGS-44275 : Drop sched_migration_cost_ns setting (#1207) #1207
OCPBUGS-44283 : right-hand-side profile_dirs take precedence (#1208) #1208
OCPBUGS-42284 : Add cluster-wide proxy env file (#1171) #1171
TuneD prior to kubelet in one-shot mode (#1125) #1125
set required-scc for openshift workloads (#1117) #1117
OCPBUGS-36870 : Remove tuned/rendered object (#1110) #1110
OCPBUGS-36355 : Backport fix for OCPBUGS-30647 (#1095) #1095
OCPBUGS-33929 : Negative net interface name does not reduce queues (#1066) #1066
Add a ‘.snyk’ to silence static code analysis warnings (#1001) #1001
fix extra-reboot on upgrade with paused mcp worker (#1049) #1049
fix rendering extra ctrcfgs (#975) #975
OCPBUGS-31694 : E2E: Workload hints test cases fixes (#1012) (#1043) #1012
Reduce number of reboots in offline tests (#1014) #1014
Systemd processes not being moved to cpuset/systemd.slice fix (#1016) #1016
Scheduler plugin: ignore IRQs (#983) #983
e2e: when crun is enabled by default skip checking runc config (#1013) #1013
OCPBUGS-30507 : Add performance real time tuned template (#984) #984
Report duplicate priority only for multiple matching profiles (#965) #965
hack: fix backport of render-sync.sh (#996) #996
OCPBUGS-29752 : [release-4.15][manual] backport performance profile owner reference ehnancements (#963) #963
Render: Add MCSelector to missing default MCPs (#959) #959
Add support to inject owner-ref argument to render command (#966) #966
OCPBUGS-29376 : Mixed CPUs e2e tests (#952) #952
OCPBUGS-27227 : irqbalance: set banned cpus list to ‘0’ (#953) #953
OCPBUGS-29396 : Labels for e2e testing (#949) #949
OCPBUGS-29376 : e2e: cgroups: introduce cgroup package (#942) #942
makefile: add target to trigger mixedcpus e2e test (#941) #941
OCPBUGS-27948 : Tuned rendering and MCP detection improvements (#928) #928
OCPBUGS-25982 : E2E: Add tests for Dynamic ovs pinning (#904) #904
rps: fail silently when rps application failed (#897) #897
OCPBUGS-25596 : Make MC names deterministic (#888) #888
OCPBUGS-25552 : rps: fix mask update for SR-IOV devices (#886) #886
OCPBUGS-24638 : Do not set default RPS sysctl twice (#869) #869
cpuset-configure: exit gracefully on cgroup v2 (#866) #866
CNF-7610 : Mixed CPUs plugin deployment support (#853) #853
New MachineConfig render command (#844) #844
Report duplicate profiles as ERRORs (#864) #864
CNF-10473 : featuregates: main: add feature gates support for PAO controller (#858) #858
e2e:latency: omit LatencyTestRun env variable (#857) #857
OCPBUGS-18649 : E2E: PPC Test cases (#708) #708
OCPBUGS-18640 : Fix Racing Machine Configs and add Day 0 Support (#854) #854
Avoid k8s.io/kubernetes as dep (#848) #848
Remove most //nolint:* overrides (#837) #837
CNF-10294 : main: remove deprecated multi ns function (#770) #770
OCPBUGS-22519 : bump opentelemetry package (#840) #840
Disable HTTP/2 for webhook and metrics servers (#834) #834
Remove obsolete protocols and weak ciphers (#827) #827
OCPBUGS-18662 : rps: trigger udev even per queue (#816) #816
render: change dir path (#824) #824
Makefile: remote tmp folder on clean target (#823) #823
Add golangci-lint (#793) #793
Updating cluster-node-tuning-operator images to be consistent with ART (#795) #795
fix: add if check for no resource match error (#801) #801
nto: avoid timeout when there are too many CSV (#731) #731
Set non-default UserAgent for easier debugging (#807) #807
Improve co/node-tuning operand version reporting (#792) #792
Add the k8s reporter to the configuration suite (#815) #815
OCPBUGS-18783 : e2e: perfprof: enhance the scheduling domain tests (#791) #791
Add kubeconfig path for IBM Managed OpenShift (#810) #810
Add k8s reporter to e2e tests (#666) #666
OCPBUGS-19459 : check for object being nil (#804) #804
Memory manager E2E test fixes (#784) #784
Some unit tests fail with go1.19 as some modules require 1.20 (#794) #794
e2e: add expected max latancy to hwlatdetec test & rename constant (#719) #719
OCPBUGS-18662 : e2e:rps: improve logging (#787) #787
Sync DaemonSet if operand image changes (#785) #785
OCPBUGS-18392 : Change the OVN trigger file name to adapt to OVN IC (#777) #777
OCPBUGS-15044 : e2e:irqloadbalance: wait for profile revert (#768) #768
Add SetLogger() prior to controller-runtime start (#779) #779
OCPBUGS-18052 : feat: added logic to handle legacy sno install (#778) #778
OCPBUGS-17943 : Add rtentsk plugin to pp tuned profile (#767) #767
Tighten the rules for modifying Tuned Profiles (#775) #775
Revert “Tighten the rules for modifying Tuned Profiles (#765)” (#771) #765
Tighten the rules for modifying Tuned Profiles (#765) #765
OCPBUGS-14026 : cgroup: Match the name of the cgroup to what is expected by kubelet (#758) #758
e2e: irqbalance: improve test troubleshooting (#753) #753
OCPBUGS-16348 : OSLAT latency spikes due to tsc karg setting (#756) #756
Makefile: hack: add helpers to compile testsuites (#751) #751
OCPBUGS-17219 : Render mode should not segfault w/ no matching MCP (#754) #754
Release leader election on manager exit (#745) #745
generate missing files (#752) #752
vendor: bump OCP dependencies 08082023 (#750) #750
OCPBUGS-7980 : e2e:ht-aware: exec on the correct worker node (#729) #729
bump k8s to 1.27.4 (#748) #748
e2e: wait for objects deletion (#749) #749
e2e:wait: return updated pod object explicitly (#744) #744
OCPBUGS-17258 : CVE-2023-3978: golang.org/x/net/html (#747) #747
e2e: remove image parameter from must gather (#743) #743
Update the config.openshift.io/node object’s cgroupMode to “v1” (#737) #737
Fix a race in e2e test rollback.go code (#739) #739
e2e:irqbalance: applied condition exists (#727) #727
Improve render error handling (#724) #724
e2e:irqbalance: wait for tuned profile to be ready (#721) #721
pao:status: do not take address of loop var (#720) #720
nto:tuned: remove sched_min_granularity_ns settings (#722) #722
Align TuneD with the latest shipped FDP version (#716) #716
E2E: update cpu load balancing test for latest cgroup related changes (#712) #712
Build gather-sysinfo (#714) #714
e2e: overhaul Performance-Addon-Operator tests (#590) #590
e2e: latency testing: increase the expected threshold (#706) #706
e2e: perf-prof: disable truncating gomega output (#702) #702
Configure OVS for dynamic cpu pinning (#559) #559
OCPVE-382 : fix: add default state for crio config (#700) #700
e2e: devmgr: fine tune kubelet restart test (#701) #701
e2e: RPS: fix expected cpu set (#703) #703
Switch to rslave/HostToContainer volume mount propagation (#692) #692
Do not rollback settings on TuneD exit (#699) #699
e2e: reboot: add kubelet restart test (#697) #697
remove conditional skip (#690) #690
e2e: memorymanager fix: check the hugepage size condition (#693) #693
Use RHEL9 as a base (#665) #665
Expose TuneD socket to host. (#651) #651
E2E: Use appropriate device path for rpsmask test (#691) #691
chore: replace github.com/ghodss/yaml with sigs.k8s.io/yaml (#628) #628
test: perfprof: devices: fix default test image (#672) #672
e2e: verify latency tests run with LATENCY_TEST_DELAY>120 (#662) #662
E2E: Add memory manager sanity test case (#573) #573
modify owners (#634) #634
Add minLength restriction to Tuned CR (#689) #689
OCPBUGS-14934 : consistent use of ginkgo flags in Makefile (#682) #682
OCPBUGS-14622 : Do not fail creating cgroups if they exist already (#683) #683
OCPBUGS-14193 : pao e2e: Split e2e PAO update lane to more lanes (#631) #631
OCPBUGS-4194 : rps: use default rps mask kernel API (#650) #650
OCPBUGS-14756 : [test] [e2e] Check ci lanes are executing the right test suites (#679) #679
check ocp version and export CNF_TEST_IMAGE variable with appropriate cluster version (#584) #584
OCPBUGS-5529 : Fix updating numa core siblings map in GetCpuSiblings function (#564) #564
Remove cpu-quota.crio.io: disable annotation (#663) #663
OCPBUGS-14137 : e2e: perfprof: add SNO device recovery test (#653) #653
Add PerformanceProfiles to ‘oc adm must-gather’ (#655) #655
Revert “Add PerformanceProfiles to ‘oc adm must-gather’ (#582)” (#654) #582
Add PerformanceProfiles to ‘oc adm must-gather’ (#582) #582
OCPBUGS-13148 : Configure cpu balancing cpu sets for all clusters (#646) #646
OCPBUGS-12978 use WatchNamespace() when deleting Profiles (#644) #644
Updating cluster-node-tuning-operator images to be consistent with ART (#579) #579
OCPBUGS-11083 : pao e2e: fix update test suit timeouts (#626) #626
e2e: Fix RPS test for multi-worker cluster (#641) #641
Revert PR558 and PR585 partially (#639) #639
e2e: add missing test id (#622) #622
OCPNODE-1539 : perf profile: add script for preparing cgroups for CPU load balance disabling (#601) #601
Remove subPaths, they are broken (#623) #623
OCPBUGS-10293 : performance-profile: enable crun for high-performance runtime (#588) #588
Revert #567 and cleanup PPC-generated TuneD config (#611) #611
Backup and revert profile when hugepages test completes (#597) #597
tuned: Handle UserLevelNetworking nil pointer gracefully (#608) #608
A new env var NO_BZ_CHECKS disables Bz and Jira status checks (#607) #607
OCPBUGS-9959 : check scheduler settings under /sys/kernel/debug/sched/ (#581) #581
workload-hints: disable stalld when rt disabled (#592) #592
render: remove uid from render-sync target (#594) #594
OCPBUGS-11083 : e2e: profile updates tests revised (#600) #600
Update to the latest k8s and OpenShift deps (#580) #580
Make the enable-leader-election option work (#586) #586
Update NTO-generated MC on MachineCount <= 1 (#585) #585
remove BZ 2181546 from skip list (#602) #602
Fix updating nodeSelector test (#595) #595
Remove the preStop hook for openshift-tuned (#587) #587
Skip tests depending on Jira or Bz issue status (#591) #591
kubectl explain to explicitly state workloadHint default values (#576) #576
Fix failing HyperShift presubmits (#578) #578
Add a script to validate upstream TuneD (#577) #577
CNF-5900 : feat: added support for generating workload partitioning files (#431) #431
Re enable node selector tests in update tests (#574) #574
Handle different # of CPUs are in the same MCP (#558) #558
composable OCP: make NTO components optional (#524) #524
Update to TuneD v2.20.0 (#565) #565
Remove trailing spaces from test names (#570) #570
Remove optimization to allow full resync (#567) #567
Report host-level sysctls in conflict with TuneD ones (#566) #566
E2E: Per Core Runtime Tuning Test automation (#509) #509
Add test case to check single rx queue on veth interface (#562) #562
Add update-manifests Makefile target (#560) #560
render: initialize klog flag (#538) #538
Refactor IRQ load balancing enable/disable test (#561) #561
update to ginkgo 2 (#517) #517
Skip watch on CA ConfigMap in HyperShift (#550) #550
update owners 20230109 (#542) #542
Add authentication to the /metrics endpoint (#541) #541
Run node selector tests only if we 2 non Performanceworker nodes (#532) #532
Updating profile new lane (#536) #536
Remove trailing space from test name (#540) #540
skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#537) #537
Generate must-gather data (#442) #442
e2e:latency: count LATENCY_TEST_DELAY in timeout (#535) #535
E2E: Network stack Pinning tests (#501) #501
refactor: move command func to seperate file (#522) #522
performance-profile: render: make target for render sync (#528) #528
Switch to golang 1.19 (#521) #521
Add Containerfile for RHEL-9 (#519) #519
Fix two irqbalance tests - smp affinity vs online (#518) #518
Fix default hard eviction threshold when PCC is applied (#505) #505
e2e: performance profile: add logs and minor fixes (#485) #485
PPCreator: If rt-kernel enabled, power consumption mode default cannot be selected (#512) #512
Configuration hotfixes documentation fixes (#513) #513
E2E: Automation offline CPUs test (#380) #380
pao: latency-tests: read test log directly from pod (#499) #499
Configure ktimers scheduler prio same as ksoftirqs (#507) #507
Run rps mask tests when Reserved cpu are not nil (#483) #483
Set RPS for all rx queues (#495) #495
Full changelog
OCPBUGS-36150 : Set required-scc for openshift workloads #581
OCPBUGS-27225 : Remove “include.release.openshift.io/ibm-cloud-managed:” annotation #567
OCPBUGS-24145 : Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART #560
OCPBUGS-18115 : Remove “include.release.openshift.io/ibm-cloud-managed:” annotation #551
OCPBUGS-19231 : Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART #548
OCPBUGS-21733 : bump library-go to include switch to HTTP/1.1 #552
WRKLDS-728 : Capabilities: drop build/apps APIService when capabilities are not enabled #532
switch image-registry cert CM #545
OCPBUGS-16554 : update dependencies to get rid of goproxy #546
AUTH-408 : bindata: set required-scc #544
Plumb featuregates to the openshift-apiserver #542
allow etcd healthcheck timeout closer to probe timeouts to avoid failing on slower etcd #540
Add AES-GCM encryption tests #539
OCPBUGS-14010 : increase timeout for probes #536
OCPBUGS-2765 : Library go bump #538
OCPBUGS-12813 : Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART #534
Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART #525
OCPBUGS-10040 : update openshift/api to include aesgcm provider in the default apiserver schema #526
API-1509 : Enable AESGCM encryption #521
OCPBUGS-4343 : update apf configuration to use v1beta3 #509
OCPBUGS-6233 : Bump dependencies and images #517
OCPBUGS-5300 : routes/status resources can leak sensitive data, exclude it from audit #511
make api team approver #506
OCPBUGS-3929 : update apf configuration to use v1beta2 #508
Full changelog
OCPBUGS-48832 : Add new team members to the OWNERS file #379
OCPBUGS-35922 : lots of churn during image registry managed/removed transition #358
OCPBUGS-35869 : nil pointer reference in ocm-operator #357
OCPBUGS-36152 : Set required-scc for openshift workloads #361
OCPBUGS-31708 : Update opentelemetry dependency 415 #342
OCPBUGS-25985 : Disable deployer-controller when deploymentconfig is disabled #322
OCPBUGS-24086 : Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART #319
OCPBUGS-28946 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #327
OCPBUGS-22956 : Remove blockage of ConfigObserver by build informer HasSynced flag #315
Revert “Revert #300 “API-1666: add image pull secret cleanup controller”” #314
Revert #300 “API-1666: add image pull secret cleanup controller” #313
API-1642 : add image pull secret cleanup controller #300
API-1642 : Do not generate image pull secrets for internal registry when internal registry is disabled. #298
OCPBUGS-21830 : bump(k8s,openshift) to address CVE-2023-44487 #308
OCPBUGS-20164 : Include Build CRD in manifests #306
WRKLDS-806 : Bump kube dependencies to 1.28.2 #305
OCPBUGS-19136 : Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #304
OCPBUGS-18932 : Always sort disabled controller list #302
OCPBUGS-18498 : Disable BuildConfigChange controller when Build cap is disabled #299
route-controller-manager deployment updates #295
OCPBUGS-16072 : Updating Kubernetes and other associated dependencies #296
OCPBUGS-13926 : change the operator log level to default normal in the deployment #289
BUILD-582 , OCPBUGS-14638 : bump(k8s): 1.27.1 #294
OCPBUGS-13926 : add loglevel controller for OCM-o #292
Revert “13895: [WRKLDS-730] route-controller-manager deployment updates” #293
OCPBUGS-13895 : [WRKLDS-730] route-controller-manager deployment updates #288
Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #287
Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #286
Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #285
Bump golang.org/x/net from 0.5.0 to 0.7.0 #284
Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #279
OCPBUGS-10568 : migrate to using lease objects for leader election #282
Add Divyanshu Agrawal as a reviewer #283
OCPBUGS-4343 : update apf configuration to use v1beta3 #273
Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #274
WRKLDS-594 : bump(k8s): 1.26.1 #277
OCPBUGS-5275 : remove unnecessary RBAC for leader-locking-ingress-to-route-controller #276
OCPBUGS-3929 : update apf configuration to use v1beta2 #272
let deployer pods patch/apply replication controllers #270
Bug 2111979 : Set openshift.io/run-level to nil in openshift-controller-manager nam… #269
And 1 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-24077 : Updating ose-cluster-platform-operators-manager-container image to be consistent with ART #104
manifests: Simplify filenames for default runlevel #101
Makefile: Drop yq prerequisite from ‘manifests’ target #103
OCPBUGS-22457 : manifests/0000_50_cluster-platform-operator-manager_07-aggregated-clusteroperator: Drop namespace #100
switch to bingo for dependency management (and bump golangci-lint@v1.51.0) #95
OCPBUGS-20511 : Bump golang.org/x/net to v0.17.0 #92
OCPBUGS-19118 : Updating ose-cluster-platform-operators-manager images to be consistent with ART #91
Merge rukpak updates into main + Required Fixes #88
Add ncdc to OWNERS #89
Temporarily remove from payload #90
Revert “Merge rukpak updates into main” #87
Merge rukpak updates into main #86
Updating ose-cluster-platform-operators-manager images to be consistent with ART #83
OCPBUGS-10333 : feat: add workload pinning annotations #82
OCPBUGS-6395 : Upgrade golang/x/net to v0.4.0 to fix CVE-2022-41717 #79
Update owners file #80
Updating ose-cluster-platform-operators-manager images to be consistent with ART #78
Full changelog
OCPBUGS-24078 : Updating ose-cluster-policy-controller-container image to be consistent with ART #143
go.mod: remove replaces #138
OCPBUGS-21638 : bump(k8s,openshift) to address CVE-2023-44487 #137
OCPBUGS-21638 : Bump deps to address CVE-2023-44487 #133
WRKLDS-806 : bump k8s to 1.28 #132
OCPBUGS-19119 : Updating cluster-policy-controller images to be consistent with ART #131
OCPBUGS-17458 : ps syncer: don’t hotloop on a missing namespace #130
OCPBUGS-17989 : pkg/psalabelsyncer: enforce syncing in case label is set #129
AUTH-413 : ps syncer: only sync labels if noone else is managing them #127
ps syncer: add a controller for run-level 0 namespaces #128
Adjust logs per generic troubleshooting #126
OCPBUGS-15568 : Add timeout into cache sync wait to prevent hanging forever #124
OCPBUGS-15568 : Remove debugs logs in workqueuebucket #125
Add more logs for queue operations #122
OCPBUGS-15568 : Handle error if caches are not synced instead silently exit #121
Add ingvagabund to owners #120
Add logs for quota namespace syncing with verbosity level 2 #119
OCPBUGS-13649 : fix ClusterResourceQuotas to work for all api resources including custom resources #115
OCPBUGS-13579 : bump(k8s) to v0.27.1 #113
OCPBUGS-8271 : external template and route Informer #100
Updating cluster-policy-controller images to be consistent with ART #110
complete controller description #104
OCPBUGS-160 : psalabelsyncer: handle empty namespace of a rolebinding subject #107
Updating cluster-policy-controller images to be consistent with ART #105
update psa dependency version #103
update controller-manager dependency to point to v0.25.0 #101
OCPBUGS-723 : clusterquotareconciliation: do not sync quota monitor cache with no monitors registered #94
OCPBUGS-3985 : enforce pod security admission when techpreview is enabled #89
Updating cluster-policy-controller images to be consistent with ART #91
Full changelog
OCPBUGS-63517 : references to github.com/sclorg/django-ex.git now also refer to the branch #660
OCPBUGS-55475 : Adding mutex to func createSamples on handler.go #634
OCPBUGS-54481 : add rhdmalone to owners #623
OCPBUGS-49369 : add shannon and aroyoredhat as owners #597
OCPBUGS-37464 : Set required-scc for openshift workloads #548
OCPBUGS-38157 : add mfrancisc and metlos as owners add owners 4.15 #550
OCPBUGS-22034 : bump K8s version to 29.2 #538
OCPBUGS-18857 : Updating ose-cluster-samples-operator-container image to be consistent with ART #523
SO-119 : Fix mariadb import url in OKD #525
SO-118 : Bumping the K8s to 28.2 and golang to 1.20 #524
SO-117 : Library Sync for OCP release 4.15 #522
OCPBUGS-22225 : Sync library to remove invalid dockerhub references for OKD #519
Use latest tag for network-tools imagestream #518
OCPBUGS-18857 : Updating ose-cluster-samples-operator images to be consistent with ART #517
manifests: Drop explicit runlevel from CRD manifest #515
OCPBUGS-16435 : Bump k8 to v0.27.2 for ocp 4.14 #514
OCPBUGS-16403 : Update Cluster Sample Operator dependencies and libraries for OCP 4.14 #511
reconcile status when clusteroperator changes #510
OCPBUGS-15754 : Update Jenkins and Jenkins Agent Base image versions #504
OCPBUGS-14491 : Updating to use Jenkins 4.13 images #502
OCPBUGS-12775 : Update Cluster Sample Operator dependencies and libraaies for OCP 4.14 #500
Updating ose-cluster-samples-operator images to be consistent with ART #499
OCPBUGS-10910 : Add network tools imagestreams #495
Updating ose-cluster-samples-operator images to be consistent with ART #493
Fix jira component #494
update Jenkins to use v4.12 imagestreams #491
OCPBUGS-855 : When setting allowedRegistries urls the openshift-samples operator is degraded #487
OCPBUGS-6811 : Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #485
Change importMode to preserveOriginal for Openshift imagestreams #482
OCPBUGS-6579 : update sample imagestreams with latest 4.11 image using specific image tag reference #483
OCPBUGS-4357 : Bump k8s master #476
OCPBUGS-4166 : Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #474
OCPBUGS-3426 : Update Cluster Sample Operator dependencies and libraries for OCP 4.12 #471
Updating ose-cluster-samples-operator images to be consistent with ART #470
Full changelog
OCPBUGS-50591 : Set openshift.io/required-scc: privileged annotation in version pods #1152
OCPBUGS-45330 : deps: bump golang.org/x/net to 0.31.0 #1119
OCPBUGS-44328 : Fix desired before sync_worker’s work is initialized #1104
OCPBUGS-36817 : Set required-scc for openshift workloads #1068
OCPBUGS-33984 : Add admin-gate for OCP 4.16 #1049
OCPBUGS-27359 : CO health: only track current in-progress upgrade start #1023
OCPBUGS-26607 : clusterOperatorBuilder: Reconcile metadata on COs #1017
OCPBUGS-25949 : pkg/cvo/availableupdates: Only bump LastAttempt on Cincinnati pulls #1013
OCPBUGS-25664 : pkg/cvo/sync_worker: Verification-failure details for unforced updates too #1007
OCPBUGS-25690 : pkg/payload/precondition/clusterversion/rollback: Allow previous version within z-stream #1008
OTA-917 : pkg/customsignaturestore: Implement signatureStores customization #994
OCPVE-646 : add cloud credential capability #963
OTA-855 : Create GET requests to the Prometheus API server #999
OCPBUGS-23290 : install/0000_90_cluster-version-operator_02_servicemonitor: ‘oc get …’ for CannotRetrieveUpdates #995
OCPBUGS-24138 : NO-JIRA: Updating cluster-version-operator-container image to be consistent with ART #1000
OCPBUGS-23377 : to reduce log noise, only log sync_worker messages on retry or payload change #997
OCPBUGS-19391 : do not reconcile rules if aggregationRule is set #993
OCPBUGS-8079 : install/0000_90_cluster-version-operator_02_servicemonitor: Drop $ from ${{ #992
OCPVE-740 : vendor: bump openshift/api #984
OCPBUGS-21933 : Bump http-related deps #983
OCPVE-673 : Bump API to Add OLM Capability #971
Revert openshift/api bump PR merged by mistake (977) #978
OCPVE-659 : bump openshift/api #977
OCPBUGS-19868 : pkg/clusterconditions/cache: Avoid panic on all-fresh-cache evaluation #975
OCPBUGS-19512 : pkg/clusterconditions/promql: Warm cache with 1s delay #939
OCPBUGS-18386 : Properly reconcile SCC resources #966
OTA-854 : Add configurable CVO knobs for risk-evaluation PromQL target #926
OCPBUGS-18984 : pkg/payload/precondition/clusterversion/etcdbackup: Drop precondition #968
OCPBUGS-19222 : Updating cluster-version-operator images to be consistent with ART #970
OCPBUGS-18567 : lib/resourcemerge/apps: Cover paused and other spec properties in EnsureDeployment #965
OCPBUGS-13308 : Simplify user-facing messages on risk evaluation throttling #955
OCPBUGS-17418 : Really handle DeletedFinalStateUnknown correctly #954
CNF-9385 : add ImageRegistry capability #950
OCPBUGS-17418 : Handle cache.DeletedFinalStateUnknown #952
docs/user/tasks-*by-number-and-component.svg: Update to 4.13 #949
Dockerfile: bump to 1.19 and use public UBI pullspec #944
pkg/payload: De-noise ‘excluding …’ logs #945
bump api version to add new capability #941
pkg/cvo/metrics: Doc from_version semantics for cluster_version{type=“completed”} #929
Code cleanups for golangci-lint failures #942
OTA-559 : Migrate to (*Manifest).Include(…, overrides) #934
OCPBUGS-9070 : Fix hotlooping on Cronjob resources #910
Updating cluster-version-operator images to be consistent with ART #932
Updating cluster-version-operator images to be consistent with ART #930
Updating cluster-version-operator images to be consistent with ART #928
syncStatus: Reduce verbosity when syncing nothing of interest #922
Update dnsPolicy to allow consistent resolution of the internal LB #920
OTA-941 : pkg/payload/precondition/clusterversion/rollback: New precondition #918
Updating cluster-version-operator images to be consistent with ART #911
OCPBUGS-5469 : pkg/cvo/availableupdates: Prioritize conditional risks for largest target version #909
pkg/cvo: code cleanups #902
OCPBUGS-7419 : Trigger new sync round on ClusterOperator Available changes #904
install/0000_90_cluster-version-operator_02_servicemonitor: Add ClusterReleaseNotAccepted #906
OCPBUGS-6097 : CVO hotloops on ImageStream and logs the information incorrectly #894
OCPBUGS-6292 : Update golang.org/x/net/http2 for CVE-2022-41717 #901
Bug 2090680 : RetrievePayload: Improve timeouts and cover behavior with tests #896
pkg/cvo: Set ‘controller’ in our ownerReferences #900
pkg/cvo/sync_worker: Fix “The sync worker already has a pending notification” formatting #898
vendor: update openshift/api for NodeTuning capability #883
Bug 2089138 : CVO hotloops on ValidatingWebhookConfiguration #893
logging: consistently use RFC3339 in log messages #889
OCPBUGS-702 : Fix removing caBundle field of CRDs when ...inject-cabundle=true #870
lib/validation: Drop “a previous version” from desiredUpdate validation #888
Adding David to approvers list and removing Jack #891
upgradeable: improve logging and refactor #886
start.go: simplify code for computing sync period #887
OCPBUGS-5505 : Set upgradeability check throttling period to 2m #882
Revert “pkg/cvo/updatepayload.go: timeout payload retrieval” #881
pkg/cincinnati: Set User-Agent for Cincinnati requests #839
Bug 2090680 : pkg/cvo/updatepayload.go: timeout payload retrieval #846
tests: fix rare nil dereference in TestCache #875
pkg/payload: code cleanups #877
OTA-817 : Support ClusterVersion spec DesiredUpdate Architecture field #860
OCPBUGS-4986 : pkg/payload/precondition: Do not claim warnings would have blocked #876
OTA-844 : pkg/cvo/metrics: Add ‘reason’ to cluster_operator_up #868
OTA-560 : Improve developer-oriented docs #871
Updating cluster-version-operator images to be consistent with ART #873
OCPBUGS-1443 : Avoid using a lister before client caches sync #874
OTA-560 : Modernize README.md to be user-centered #869
Build CVO from UBI8 instead of obsolete origin-v4.0:base #872
Bug 2089093 : CVO hotloops on OperatorGroup due to the diff of “upgradeStrategy” #862
update library-go to pick up feature-set annotation change #853
Add myself as approver and David Hurta as a reviewer #864
OCPBUGS-1458 : Allow CVO to update KUBERNETES_SERVICE_HOST with LB address #851
pkg/cvo/cvo_scenarios_test.go: Remove status check from TestCVO_UpgradeFailedPayloadLoadWithCapsChanges #857
resourcemerge: cleanup deprecated function calls #858
OCPBUGS-2727 : Do not fail precondition check for UnknownUpdate #856
And 2 elided commits (e.g. from squash or rebase merges)
Full changelog
Updating configmap-reload-container image to be consistent with ART #57
OCPBUGS-19171 : Updating configmap-reload images to be consistent with ART #56
Updating configmap-reload images to be consistent with ART #52
OCPBUGS-10106 : Updating openshift-state-metrics images to be consistent with ART #51
Updating configmap-reload images to be consistent with ART #48
Full changelog
OCPBUGS-69767 : Disallowed Pipelines-plugin Pipelines navigation section #15864
OCPBUGS-65822 : Remove required flag from ‘console.flag/model’ pipelines-plugin extension #15749
OCPBUGS-65601 : /auth/error?error=missing_state&error_type=auth is showing blank page #15727
OCPBUGS-44159 : bump dompurify to latest #15592
OCPBUGS-60672 : Secret key with binary file changes when edited via Console #15422
OCPBUGS-59997 : Remove the devconsole backend common internet proxy and replace it with dedicated ones #15359
OCPBUGS-59564 : Add flags in console static plugin for all the components of this epic #15306
OCPBUGS-60029 : fix bug where / in console.tab/horizontalNav href brea… #15353
OCPBUGS-57521 : Debug pod logs are not accessible when debugging a node via OpenShift Console #15181
OCPBUGS-58223 : Fix TypeError Cannot read properties of null (reading ‘metadata’) #15221
OCPBUGS-57097 : Add all files to vendor regardless of gitignore #15134
OCPBUGS-45257 : Enabling topology e2e tests on CI #14721
OCPBUGS-55733 : fix bug where operator appears twice #15021
OCPBUGS-55174 : Add missing pipelines plugin name to known plugins #14982
OCPBUGS-54673 : Added token to proxy header #14943
OCPBUGS-54252 : Update the monitoring topic used by the console team #14904
OCPBUGS-53138 : fix run time error when no completed version exists #14879
OCPBUGS-53055 : Show Observe section without PROMETHEUS and MONITORING flags #14867
OCPBUGS-52344 : fix alert rule link #14828
OCPBUGS-51332 : Do not pass CSV name to operand list page when an exen… #14800
OCPBUGS-49849 : include external labels so silenced alerts not displayed in notifications #14718
OCPBUGS-48593 : ReRun of Resolver based PipelineRuns fails from UI #14689
OCPBUGS-48592 : ImagePullSecret getting duplicated when editing DeploymentConfig in Form View #14688
OCPBUGS-48048 : Update vendor imports to include all PatternFly components #14662
OCPBUGS-47646 : fix table combination #14649
OCPBUGS-46430 : Plugins that use very old PF4 dropdown or menu components with grouped items have bullets and padding that needs to be removed. #14626
OCPBUGS-45950 : Unable to remove finally tasks in pipeline builder mode #14606
OCPBUGS-46389 : use TaskRuns results.tekton.dev/record annotation to get the logs #14622
OCPBUGS-45248 : Remove ClusterTask dependency in console from Pipelines 1.17 #14564
OCPBUGS-44979 : Don’t request user settings configmap if no user has been loaded. #14534
OCPBUGS-37397 : RWOP accessMode is not available on OpenShift console UI #14078
OCPBUGS-44998 : Add IBM Block Storage CSI driver support for RWX #14536
OCPBUGS-44738 : Add flag to hide the pipelines-plugin pipeline builder extensions #14513
OCPBUGS-44355 : A value submitted in From view is wrapped with single quotation after switching to Yaml view. #14476
OCPBUGS-42355 : Fix TypeError: Cannot read properties of null (reading ‘metadata’) in Topology view #14319
OCPBUGS-43414 : Console crashes when ssh is selected in add secret for starting a pipeline run #14401
OCPBUGS-36559 : Increase login flow state paramater length/entropy #14422
OCPBUGS-37202 : Bump github.com/cloudevents/sdk-go/v2 to 2.15.2 #14073
OCPBUGS-42470 : List of default Camel K event sources disappears when adding a custom event source #14331
OCPBUGS-42471 : Need to allow blank for Project/namespace when setting SA Subject in ‘Project access tab’ #14332
OCPBUGS-33283 : Adjust NAD name to “network-xxx-xxx” when creating #14020
OCPBUGS-42611 : Topology screen crashes when completed pod is selected #14353
OCPBUGS-42648 : Switch to use annotations as labels from PipelineRuns created through Pipelines as Code is deprecated #14358
OCPBUGS-38764 : Fix “Auto deploy when new image is available” becomes unchecked when editing a deployment from web console #14177
OCPBUGS-41991 : Values entered into the Instantiate Template form are automatically cleared #14294
OCPBUGS-42384 : Fix updating the “Until” field on the Silence > Edit page #14322
OCPBUGS-39343 : The filepath including leading slash makes error during parsing devfile using Gitlab #14227
OCPBUGS-42144 : Use vCenterCluster value from CM as primary resource #14307
OCPBUGS-38537 : Include PatternFly-4 chart styles so they are available for dynamic plugins that still use PF4 react-charts #14158
OCPBUGS-38108 : Revert - terminal: use username if uid is not present #14114
OCPBUGS-32793 : Fix that telemetry events didn’t incl. an userId anymore #13792
OCPBUGS-38970 : DeploymentConfigs deprecation info alert should not present on the Edit deployment page #14195
OCPBUGS-38969 : Tooltip on Pipeline when expression is not shows #14194
OCPBUGS-39085 : Fix utilization card limits/total display #14209
OCPBUGS-33938 : Add validation for vSphere fields Handle submit errors correctly #14210
OCPBUGS-39112 : Disable Knative e2e tests #14197
OCPBUGS-33076 : Remove deprecated resources from spec of the Pipeline #13801
OCPBUGS-35495 : fix crash if helm chart metadata is nil #13977
OCPBUGS-37452 : Redirects to new PipelineRun logs URL from old PipelineRun logs URL #14083
OCPBUGS-38496 : Fix password set to Secret created through Start Pipeline form #14152
OCPBUGS-37399 : Add default sorting column for VirtualizedTable component of dynamic plugin sdk #14079
OCPBUGS-37099 : fix BMH restart annotation #14071
OCPBUGS-37458 : one OAuth.config.openshift.io item on Global Configuration page links to non-existing resource #14085
OCPBUGS-34477 : Import from Git allow users to import an app with Build option Pipeline also when no Pipeline is available #13897
OCPBUGS-36971 : ensure correct API version for OperandDetails #14058
OCPBUGS-34912 : Improve Pipeline list page performance #13929
OCPBUGS-33642 : Patch PF dynamic module parser to exclude ‘next’ modules #13849
OCPBUGS-32501 : Pipeline details page Metrics tab crashed due to no custom data #13781
OCPBUGS-34478 : UI inconsistency in topology when application grouping is collapsed #13898
OCPBUGS-34350 : Create Serverless form does not create BuildConfig #13891
OCPBUGS-32029 : Use UserInfo username field when logging out as kubeadmin #13748
OCPBUGS-30208 : Fix asynccache bugs #13807
OCPBUGS-33838 : TaskRuns should not be fetched for Failed PLR’s #13863
OCPBUGS-34703 : fix bug where textarea is not resizable #13913
Revert “OCPBUGS-34550: Dont render ARN mode role field and warning for HyperShift clusters” #13905
OCPBUGS-33263 : Pipeline list page is crashed when navigating from Search page #13819
OCPBUGS-33166 : Fix NAD always on default namespace #13865
OCPBUGS-31863 : make sure folder is encapsulated with quotas #13737
OCPBUGS-33506 : Fix Pipeline details page with when expression using CEL expression #13835
OCPBUGS-32505 : Add visual connector between VMs and non VMs workloads #13782
OCPBUGS-33548 : restrict Masthead logo to max-height #13839
OCPBUGS-32497 : Improve Create serverless function error message #13778
OCPBUGS-33191 : Hide dev perspective Pipelines nav option if dynamic plugin nav option is enable #13810
OCPBUGS-33058 : fix issues with Edit Route form #13800
OCPBUGS-32187 : Add flag to hide Output tab contributed by pipelines-plugin #13756
OCPBUGS-32716 : Helm Plugin’s Catalog incorrectly renders a single index entry into multiple tiles #13788
OCPBUGS-32506 : setting correct image trigger annotation #13783
OCPBUGS-32933 : change OperatorHub filter FIPS Mode to Designed for FIPS #13796
OCPBUGS-31799 : Improve PipelineRun list view performance #13731
OCPBUGS-32796 : auth: fix OIDC logging out #13793
OCPBUGS-31445 : Upgrade Pipeline trigger resources to v1beta1 #13704
OCPBUGS-31045 : fix for execute inline markdown syntax issue #13681
OCPBUGS-32518 : Add warning about service binding operator will not be supported from 4.15 #13784
OCPBUGS-32391 : Routes created by devfiles do not always use HTTPS #13771
OCPBUGS-32340 : Increased max nodes limit to 200 in topology page #13767
OCPBUGS-32399 : Update devfile library to v2.2.2 #13762
OCPBUGS-32156 : TaskRun status is not displayed near the name #13752
OCPBUGS-31806 : Use bearer-token for local dev with auth #13732
OCPBUGS-31839 : fix bug where paused MCPs were incorrectly unpausing w… #13735
OCPBUGS-31105 : Update to pf5.2 to fix quick starts #13686
OCPBUGS-31476 : Requesting for country codes in localization of openshift - webconsole #13707
OCPBUGS-31046 : Application creation fail when manually entering input scaling value in local setup #13682
OCPBUGS-30916 , OCPBUGS-30917 : PipelineRuns in Console show wrong status or load indefinitely #13672
OCPBUGS-30869 : TaskRun with same name in different project don’t show 2 entries when listing in all namespace #13668
OCPBUGS-31107 : Upload Jar form’s Clear button is not functioning #13688
OCPBUGS-30759 : Fix bugs in Console dynamic plugin SDK webpack code #13678
OCPBUGS-30871 : fix Configure link in AlertmanagerReceiversNotConfigur… #13669
OCPBUGS-29963 : i18n upload/download routine task - chore(i18n): update translations #13670
OCPBUGS-30801 : Switch to service to get the PLR and TR logs from the Tekton results summary API #13663
OCPBUGS-30275 : adjusting documentation links for 4.15 #13648
OCPBUGS-30870 : chore(i18n): update translations: Completed OCP-4.15/Master Branch/Sprint 245 #13641
OCPBUGS-25831 : Date&Time values are not showing as per browser default language #13467
OCPBUGS-29080 : make getGroupVersionKindForResource null safe #13582
OCPBUGS-29781 : Fix operands list endpoint. #13633
OCPBUGS-29812 : Changes to prevent yaml editor crash in version 4.15 #13638
OCPBUGS-29842 : Switch to service from external result route endpoint #13627
OCPBUGS-28889 : VolumeSnapshots data not displayed in PVC > VolumeSnapshots tab #13570
OCPBUGS-27431 : Add source maps to production builds #13526
OCPBUGS-26481 : Tab VolumeSnapshots crashed on PVC page #13490
OCPBUGS-25984 : Fix config ini format #13475
OCPBUGS-29844 : Enable catalog source badge to truncate for long names #13629
OCPBUGS-29846 : Prevent complete page reload when changing perspective #13631
OCPBUGS-29845 : Page fails to return to the Secrets list after clicking ‘Cancel’ on any Secret creation page #13630
OCPBUGS-29843 : improve empty state message for Machines and MachineSets page #13628
OCPBUGS-29679 : TaskRuns list page is loading constantly for all projects #13618
OCPBUGS-29640 : Output image url link leads to 404 for Shipwright Builds #13615
OCPBUGS-28232 : do not deduplicate ImageManifestVulns in Overview popover #13545
chore(i18n) OCPBUGS-28623: update translations: : Completed OCP-4.15/Master Branch/Sprint 244 #13594
OCPBUGS-26567 : Fixed some problems in topology Chinese translation text #13498
OCPBUGS-29914 : [release-4.15] Use selfsubjectreview API from frontend #13636
OCPBUGS-29345 : Any namespace after deletion is still visible on UI if it is the default selection in namespace dropdown #13599
OCPBUGS-29096 : Add TaskRun tab in PLR details page using plugin #13584
OCPBUGS-29217 : Revision tab and routes tab in serving details page showing no resource found #13590
OCPBUGS-26411 : Logs for PipelineRuns fetched from the Tekton Results API is not loading #13486
OCPBUGS-28537 : remove “openshift-storage” namespace usage from the console #13548
OCPBUGS-29283 : Error in displaying BuildRun logs in Console #13595
OCPBUGS-28917 : Optimize federation of shared PF5 code for dynamic plugins #13566
OCPBUGS-29022 : fix i18n for Remove volume modal #13575
OCPBUGS-28940 : AUTH-440: fix usersettings identifier creation #13571
OCPBUGS-27012 : update check for the ‘provider’ label on the PackageMa… #13501
AUTH-440 : OIDC: refresh sessions with a refresh token if present #13563
OCPBUGS-28591 : Fixed bug with user feedback where inform the direction of RedHat was not showing up #13551
CONSOLE-3829 , OCPBUGS-27235 : backend: use the k8s SelfSubjectReview API to get info about a user #13514
OCPBUGS-27896 : Add flags checks to hide Pipeline static plugin List and details pages #13536
AUTH-440 : expand options for the OIDC authenticator #13509
OCPBUGS-27909 : fix bug where Expand PVC modal assumes pvc.spec.resou… #13542
OCPBUGS-26439 : Add support for custom segment domains (to load JS and make API calls) #13489
OCPBUGS-27177 : fix bug where Clone PVC modal assumes pvc.spec.resourc… #13508
OCPBUGS-27306 : Copy response code from proxied plugin requests #13518
OCPBUGS-26591 : add additional check to determine if file is binary #13499
OCPBUGS-24812 : Add missing https:// check for an external link #13433
OCPBUGS-26516 : bump helm version to 3.13.2 for OCP 4.15 #13465
OCPBUGS-26041 : fix bug where Update cluster modal will not open #13479
OCPBUGS-26209 : Fix PipelineRun Logs tab navigation #13484
OCPBUGS-25726 : Re-enable and fix pipelines e2e tests #13463
OCPBUGS-25706 : update the checks for showing Archived to Tekton results icon for PLRs and TRs list and details page #13461
OCPBUGS-25707 : fix Observe tab in Topology overview #13462
OCPBUGS-24668 : Follow on logic for only showing VPAs associated with a deployment for a specific project #13447
OCPBUGS-24668 : Only show VPAs that are associated with the selected namespace #13426
OCPBUGS-25324 : fix preferredTab selection on Pipelines page #13443
OCPBUGS-24680 : Backport Add support for Azure Workload Identity / Federated Identity #13428
OCPBUGS-25140 : fix runtime error on Node details Overview when Machin… #13435
OCPBUGS-24678 : Strip ‘Server’ header from proxy response #13427
OCPBUGS-25210 , OCPBUGS-25211 : Fix pipelineRuns loading on repository details page #13439
ODC-7389 : Update OpenShift favicons as well #13420
OCPBUGS-24582 : Updated functions list page to use new hook useParams #13419
OCPBUGS-18401 : add type and text filters to Events integration test #13407
OCPBUGS-13206 : Fix customPythonDeploymentConfig YAML script to create a Pipeline wasn’t working #13149
OCPBUGS-13204 : Fix that customNodeDeployment pipeline YAML script wasn’t working #13148
OCPBUGS-24252 : fix subscription page fields #13416
OCPBUGS-23764 : bump PF dependencies to the latest patch fix #13380
OU-286 : add test-id to panel charts to ease e2e tests when titles change #13340
OCPBUGS-23554 : Fix for monaco editor that happens with yaml is being edited #13414
OCPBUGS-23378 : Set min-width for PF popovers that are being overridden by an inline style #13390
OCPBUGS-23347 : fix vCenter cluster being empty #13209
OCPBUGS-24339 : Do not depend on a global installed lint-staged #13409
OCPBUGS-24399 : Update our overrides css rule to remove list bullet from PF4 ui elements #13406
OCPBUGS-23761 : PatternFly5 update: Fix quick search input background color in dark mode #13398
OCPBUGS-18401 : fix filtering issues on Events #13395
OCPBUGS-23263 : Update i18next-parser dev dependency in console #13330
OCPBUGS-24267 : Cluster configuration fields are not visible #13386
OCPBUGS-22976 : S2I Build Wizard should check for Containerfile in addition to Dockerfile #13378
OCPBUGS-24001 : Fix crash when ArtifactHub Task has no version #13379
OCPBUGS-18371 : Searching for items in quick search is confusing #13381
OCPBUGS-24280 : view sbom link redirection should be based on taskrun annotation #13387
OCPBUGS-24339 : Add note about git hooks and PATH env var to README #13396
OCPBUGS-18542 : Fixed topology package e2e tests #13136
CONSOLE-3852 : remove PatternFly classnames from integration tests #13337
OCPBUGS-24203 : ConsolePlugin metrics must no longer be grouped by the vendor #13383
CONSOLE-3732 : Add option to enable/disable tailing to Pod log viewer #13298
CONSOLE-3705 : Phase 1 of using OpenShift Dynamic Plugin SDK #13188
OCPBUGS-23779 : Fix crash when user clicks on Show tooltips #13382
OCPBUGS-19426 : Edit the secret and add the Chinese in the web-console, garbled characters will be displayed #13333
CONSOLE-3764 : Update husky to v8.0.3 #13320
OCPBUGS-23125 : add access review for impersonate #13345
OCPBUGS-23780 , OCPBUGS-23783 , OCPBUGS-23794 , OCPBUGS-23977 : Bring back the Decorators and Pod Rings around resources in Topology #13376
OCPBUGS-23956 : PatternFly5 update: Remove text decoration for task node on hover #13371
OCPBUGS-23786 : PatternFly5 update: fix code snippet color in quick start in dark mode #13366
OCPBUGS-23770 : After PatternFly5 update: Typology sidebar layout issue #13363
OCPBUGS-23248 : change Alertmanager form to create using matchers inst… #13358
OCPBUGS-23980 : Fix logs streaming auto scroll issue #13377
OCPBUGS-23778 : Apply the correct font-family for the page header action button and menu items. #13375
OCPBUGS-23756 : fix layout of Show tooltips in YAML editor #13374
OCPBUGS-23971 : remove pf-m-grid-md from tables so table headers appea… #13373
OCPBUGS-23927 : fix table layout issue with Identity providers table #13372
OCPBUGS-23769 : PatternFly5 update: fix Topologylist view hover effect #13368
CONSOLE-3793 : add uptime to Node pages #13312
OCPBUGS-23559 : Styling issue in functions list page after PatternFly upgrade #13356
chore(i18n): update translations: : Completed OCP-4.15/Master Branch/Sprint 243 #13253
OCPBUGS-23923 : fix PipelineRun task logs switcher #13369
OCPBUGS-23775 : After PatternFly5 update: Form error is missing when import a container image #13365
OCPBUGS-23765 : fix dark theme issue for helm release readme modal #13370
ODC-7359 : Fix shipwright build e2e tests #13296
OCPBUGS-23787 : PatternFly5 update: fix Quickstarts catalog item count alignment #13367
OCPBUGS-23776 : After PatternFly5 update: Add page > more button dropdown is too wide #13361
OCPBUGS-23768 : After PatternFly5 update: Navigation: Extra space after divider #13362
OCPBUGS-23912 , OCPBUGS-23918 : Add Vulnerabilities column and signed icon in PAC repository PLR list #13364
ODC-7426 : Deletion of pipeline run after tekton result installation should be user-friendly #13353
OCPBUGS-23388 : Pipeline Name gets changed to “new-pipeline” on the Edit Pipeline YAML/Builder #13344
ODC-7389 : Replace topology graphic with new version for openshift v4.15 #13350
OCPBUGS-23543 : Deployment option is missing in ‘Deploy Image’ #13354
ODC-7428 : Update quick start name and document links for getting started section #13348
OCPBUGS-22778 : Fix for yaml editor that crashes with MCE and ACM plugins enabled #13346
GITOPS-3575 : Added disallowed flag to gitops static plugin #13307
ODC-7419 : Feature new Quickstarts (RHDH on the admin dashboard and Pipelines/Serverless on the dev add page) #13303
CONSOLE-3693 : Upgrade to PFv5 versions #12983
ODC-7425 : Add serverless function icon in Add page group header #13338
OCPBUGS-20016 : account for useK8sWatchResource returning {} like it does f… #13347
ODC-7383 , ODC-7384 , ODC-7385 : Update the PipelineRun and TaskRun details page to use Tekton Results API to load all the info #13328
ODC-7424 : Add e2e tests for vulnerabilities column in pipelinerun list and details page #13335
OCPBUGS-23164 : Cannot Edit Shipwright Build #13341
ODC-7382 , ODC-7395 : add support for tektonresult api to load PipelineRuns #13311
ODC-7421 : Show vulnerability column in the pipelinerun list page #13329
ODC-7424 : add e2e tests for SBOM section and output tab #13325
OCPBUGS-23292 : Webpack-DevServer Hot-Reload Not Working #13331
CONSOLE-3823 : Split auth config to its own module #13261
ODC-7423 : move pipelinerun results to output tab #13323
ODC-7399 : Create getting started content in functions list page #13289
ODC-7422 : Add SBOM link and signed badge in PLR details page #13314
CONSOLE-3618 : Remove frontend multicluster code #13245
CONSOLE-3777 : Update NodeJS v14 to v18 #13213
ODC-7414 : Update Shipwright API from v1alpha1 to v1beta1 #13304
OCPBUGS-20016 : improve labels and annotations modal display and editi… #13295
CONSOLE-3695 : Add details item extension to console dynamic plugin SDK #13240
CONSOLE-3814 : Conditionally render “Users” and “Groups” nav items #13287
OCPBUGS-23110 : Disable Pipelines E2E Tests #13318
CONSOLE-3740 : Address memory issues in CI #13309
CONSOLE-3614 : Remove multicluster code from Bridge #13244
CONSOLE-3822 : Update obsolete deps #13294
OCPBUGS-22930 : remove expandable toggle for conditional update risk d… #13306
OCPBUGS-22749 : Adjust NAD name by using unique-names-generator #13263
CONSOLE-3781 : remove cypress.config comments #13301
CONSOLE-3819 : change Cypress’ default browser to Electron #13300
OCPBUGS-19916 : Fix MachineSetList capacity logic #13259
CNV-30298 : Add UI for OVN Secondary Localnet Network #13293
OCPBUGS-19875 : Fix plugin proxy handler #13272
CONSOLE-3808 : Remove Protactor from console-plugin-sdk #13283
OCPBUGS-22747 : Display “With Data upload form” in Create PVC drop down once #13292
CONSOLE-3811 : remove shared Protractor files #13282
ODC-7409 : Use @kubernetes-models/shipwright types in shipwright-plugin #13267
CONSOLE-3788 : remove local-storage-operator-plugin Protractor tests #13291
CONSOLE-3788 : remove network-attachment-definition-plugin Protractor … #13286
ODC-7386 : Ensure the Import Form gets submitted without errors if BC is not installed while Pipelines is installed #13145
CONSOLE-3788 : migrate console Protractor tests to Cypress #13257
OCPBUGS-22419 : Fix the forms when BC is not installed in the cluster #13241
CONSOLE-3788 : remove cnv console tests #13280
OCPBUGS-10562 : fix operator uninstall test #13214
CONSOLE-3740 : remove references to removed packages #13281
OCPBUGS-22213 : Fix links for CodeEditor component #13274
CONSOLE-3816 : Goodbye! #13255
OCPBUGS-19458 , OU-241 : Remove unused Observe > Metrics page code #13114
OCPBUGS-20295 : clarify Operator installMode error message #13232
CONSOLE-3740 : fix bug where renamed tests weren’t updated #13275
OCPBUGS-22284 : updating doc links for 4.14 GA #13266
OCPBUGS-22199 : Save also the location.search and .hash values in localStorage to restore them after login #13268
OCPBUGS-22213 : Fix links for CodeEditor component #13265
OCPBUGS-19970 : Workloads-AddPage: upload JAR file’s i18n misses #13264
OCPBUGS-16756 : Cluster dropdown items are not marked for i18n when ACM/MCE installed #13238
OCPBUGS-20362 : Delete results.tekton.dev annotations before rerun the pipelineRun #13230
OCPBUGS-9422 : Telemetry- Current page was sometimes not tracked when reloading the current page #13088
CONSOLE-3740 : check that user dropdown is present to verify logged in #13260
CONSOLE-3812 : remove packages/ceph-storage-plugin/integration-tests #13249
CONSOLE-3809 : remove orphaned OLM Protractor views #13248
OCPBUGS-19783 : Channel page shows “Required” message for the default name when navigate to create channel page #13222
OCPBUGS-20229 : Service details page shows revisions and routes from other service also #13221
CONSOLE-3766 : Update i18next-parser dev dependency in console #13197
CONSOLE-3740 : follow-on fixes and cleanup for Cypress upgrade #13242
OCPBUGS-20305 : Extra space is in the translation text(Chinese) of ‘Create rolebinding’ and ‘replicate rolebinding’ #13236
OCPBUGS-19714 : hide page-specific doc links for ROSA and OSD #13229
chore(i18n): update translations: Completed OCP-4.15/Master Branch/Sprint 242 #13201
OCPBUGS-21616 : Fix empty editor error #13176
ODC-7401 : Remove protractor from dev-console and knative plugins #13247
ODC-7400 : Fix e2e for dev-console, knative, topology, helm and pipeline packages #13231
CONSOLE-3740 : Upgrade Cypress #13070
CONSOLE-3758 : add support for new features annotations while preserv… #13183
ODC-7396 : Add Pipeline metrics tab using plugin #13225
CONSOLE-3084 : frontend/packages/console-shared/src/hooks/useCanClusterUpgrade: Not ROSA #13184
CONSOLE-3675 : Dynamic Demo Plugin: Add dashboard card with chart using QueryBrowser component #13105
OCPBUGS-20270 : Add instructions to the README for running the monitoring plugin locally #13226
OCPBUGS-16736 : use setTimeout to allow model to be created #13195
OCPBUGS-4242 : Fix CSV list and details page managed namespaces for copied CSVs. #13194
OCPBUGS-19970 : Home-Projects-Default-workloads-AddPage: upload JAR file’s i18n misses #13208
OCPBUGS-19966 : Builds - BuildConfigs : i18n misses #13211
OCPBUGS-19437 : API docs content issue (additional fixes) #13198
ODC-7377 , ODC-7378 : Add Revisions, Routes and Pods tab for service details page #13174
CONSOLE-3763 : Update null-loader dev dependency in console #13154
OCPBUGS-7893 : show all the legends for Pipeline metrics in PipelineRun TaskRun Duration chart #13077
OCPBUGS-14322 : fix ResourceLog permissions when impersonating #13196
ODC-7391 : Add a new allowInsecure option to the internet proxy API #13175
OCPBUGS-19743 : Fix Invalid URL crash #13192
OCPBUGS-18267 : 404 - not found will show on Knative-serving Details page #13156
OCPBUGS-17676 : Enable white space retain in resource logs #13101
OCPBUGS-4426 : All Projects’ dropdown”: Roles and RoleBindings “before all” hook for “test Roles detail page breadcrumbs to list page restores #13190
OCPBUGS-8777 : Don’t redirect after logout from login error route #13102
OCPBUGS-9157 : ‘Create Pod’ button should be disabled for normal user … #13040
OCPBUGS-19640 : Dont render ARN mode role field and warning for HyperShift clusters #13191
OCPBUGS-19437 : API docs content issue #13180
OCPBUGS-19546 : Set unlimited line width in YAML editor #13182
OCPBUGS-19413 : Fix demo dynamic plugin dev mode cypress tests #13172
OCPBUGS-19367 : Console should not panic when no response is retrieved for plugin assets #13166
OCPBUGS-19394 : document kebab menu cell props #13177
OCPBUGS-13152 : fetch TaskRuns without selector and reduces the get TaskRuns requests #13065
OCPBUGS-9719 : Correct logout process #10177
OCPBUGS-18832 : change resource icon for FenceAgentRemediationTemplate… #13162
OCPBUGS-18996 : fix issues with refactored “Create StorageClass” form #13153
OCPBUGS-19173 : Updating openshift-enterprise-console images to be consistent with ART #13157
OCPBUGS-11286 : Check if filtered object contains name property #12810
OCPBUGS-18464 : Hide the Builds NavItem if BuildConfig is not installed in the cluster #13141
OCPBUGS-18494 : Upgrade DomainMapping apiVersion to v1beta1 #13133
OCPBUGS-19314 : Hide the DeploymentConfig option in the User Preferences if that resource type isn’t available #13130
OCPBUGS-6515 : address ConsoleExternalLogLink test flake #13110
OCPBUGS-9285 : Remove redundant break line #13109
OCPBUGS-5571 : Update API docs content based on docs review #13108
OCPBUGS-3403 : Fix resource table sorting crash #13103
OCPBUGS-17203 : mock apis for git repo in test serverless function tests #13064
OCPBUGS-19313 : Hide DeploymentConfig option from forms when it’s not installed in the cluster #13129
OCPBUGS-19311 : Unhide the Import From Git Tab on the Add page if Pipelines Operator is installed and BuildConfig is not installed in the cluster #13128
OCPBUGS-18188 : Added React Icon #13111
OCPBUGS-18485 : Monitoring: Fix display of silenced alerts in dev console #13151
OCPBUGS-6513 : Fixed Edit Application form for Knative Services #12832
OCPBUGS-129 : bump @patternfly/react-core to v4.276.11 to pick up Sele… #13092
OCPBUGS-18439 : use active namespace in Create cta href of create action for operator backed #13132
OCPBUGS-18686 : Fix incorrect export of useLabelsModal in dynamic plug… #13142
OCPBUGS-18604 : [knative] Don’t rely on openshift/hello-openshift as a sample image #13134
OCPBUGS-18094 : Remove cluster filter and menu group title #13137
OCPBUGS-18348 : Add deprecation alert for DeploymentConfig #12968
OCPBUGS-13359 : Fix crash when filtering the quick start catalog #13126
OCPBUGS-18306 : fix useDeleteModal Example formatting #13117
OCPBUGS-18406 : Builds navigation item is missing in Developer perspective #13124
OCPBUGS-17341 : OCP console mandate secret for repository creation #13084
OCPBUGS-16108 : Fix DeploymentConfig list performance issues by lazy loading their ReplicationControllers #13118
CONSOLE-3126 : Update cluster paused alert message #13106
OCPBUGS-17864 : Web console slowness on Project>Project access page #13099
OCPBUGS-17981 : Remove DeploymentConfig, Build and BuildConfig sections from navigation and use flags so they can be enabled by cluster admins #13089
OCPBUGS-9182 : Enable default-container annotation to specify the default container for logs and terminal. #13098
OCPBUGS-17913 : Typo in the OCP console menu #13096
OCPBUGS-17948 : Fix that Devconsole plugin show essential features like add page and topology also when Builds and DeploymentConfigs capabilities are disabled #13097
OCPBUGS-13892 : Remove spaces from prometheus queries #13043
OCPBUGS-15927 : Error page when fresh normal user visiting BuildConfigs page of ‘default’ project #13091
OCPBUGS-16374 : Fix topology crash when a console.topology/data/factory extension tries to resolve a resource with version from the CRDs which doesn’t exists #13093
CONSOLE-3327 : Expose useActiveNamespace within dynamic-core-api #13033
OCPBUGS-17595 : Updating YAML from console shows error #13090
OU-206 : Merge monitoring alerts with alerts from other sources in the dev console #12940
CONSOLE-3681 : Convert storage-class-form.tsx from class component to … #13036
OCPBUGS-17496 : Bridge NAD should set “preserveDefaultVlan”: false #13076
CONSOLE-3126 : Remove paused state since its no longer relevant due to 4.14 changes … #13072
OCPBUGS-17515 : Console UI is broken due to patternfly/react-core version change #13086
OCPBUGS-17504 : Dev console: Remove checkboxes on Alert Details page Silenced By list #13085
OCPBUGS-16717 : Fix name validation regex #13075
OCPBUGS-17410 : Fix that “Delete application” doesn’t work in topology when Pipelines operator is not installed #13074
OCPBUGS-14138 : Console fix #13078
OCPBUGS-15458 : Links for console-dynamic-plugin-sdk markdown docs are not working #13062
OCPBUGS-129 : bump @patternfly/react-core to v4.276.11 to pick up Sel… #13052
OCPBUGS-17234 : change Command Line Tools text #13068
OCPBUGS-17347 : Fix “View alerting rule” action URL #13058
OCPBUGS-15419 : Title on Overview page has changed to “Cluster · Red Hat OpenShift” #12951
OCPBUGS-13387 , OCPBUGS-16693 : Import page create button is disabled due to PAC validation #13046
CONSOLE-3683 : Convert FireMan component in list-page.tsx from class c… #13024
OU-231 : Add jgbernalp and zhuje to OWNERS for monitoring #13069
OCPBUGS-17196 : Fix nad ovn type - annotation and netAttachName #13053
OCPBUGS-16844 : external link icon in resource added toast notification not linked #13057
OCPBUGS-15310 : Helm Chart installation modal “Documentation” field is always N/A #13032
CONSOLE-3686 : Convert SecretFormWrapper component in create-secret.ts… #13017
OCPBUGS-15008 : update the KnativeServing API version to v1beta1 for global-config extension #13059
CONSOLE-3679 : Convert instantiate-template.tsx from class component t… #12947
CONSOLE-3568 : expose DeleteModal via useDeleteModal hook in @console/shared #12974
CONSOLE-3677 : Convert edit-yaml.jsx from class component to functiona… #12973
CONSOLE-3678 : Convert EventStream component in events.jsx from class … #12989
OCPBUGS-16093 , OCPBUGS-16270 , OCPBUGS-9409 : Creation of GH webhook and attaching it to repo while importing from git using PAC #13021
CONSOLE-3682 : Convert components in cluster-settings folder from clas… #13011
CONSOLE-3676 : Convert app.jsx from class component to functional comp… #12952
OU-175 : Monitoring: Add “Silences” tab to Developer console #12900
OCPBUGS-10884 : propagate mpath device type to request data #13022
OCPBUGS-16656 : Devfile import fails on master branch #13050
OCPBUGS-9355 : Fix translation bug #13049
OCPBUGS-3495 : Add cacheBuster query string when requesting plugin entry scripts #13035
OCPBUGS-16599 : allow creation of v1beta1 APIversion Pipeline in Pipeline builder YAML view #13034
OCPBUGS-9285 : Add note to the console.page/route extension regarding its usage #13044
OCPBUGS-14341 : Check operands deletionTimestamp to disable kebab action menu #13042
ODC-7336 : automation for customization-of-catalog-add-page-form feature file #12934
OCPBUGS-11285 : Dynamic plugin translation support for plurals broken #13028
chore(i18n): update translations: Completed Master Branch - Sprint 238 #12999
OCPBUGS-16433 : Fixes location update issues #13023
CONSOLE-3591 : Remove directory listing for /static/* #13001
CONSOLE-3694 : Convert tile-view-page.jsx from class component to func… #12942
ODC-7334 : Show ConsoleSamples resources in the samples catalog #12970
CONSOLE-3666 : Validate shared modules of dynamic plugins #12881
OCPBUGS-11971 : When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. #13016
OCPBUGS-13808 : Console SDK components should be using GroupVersionKin… #13029
OCPBUGS-14837 , OCPBUGS-16025 : Hide the Duplicate Pipelines Card in the DevConsole Add Page #13007
OCPBUGS-8274 : Fix copy login command regression #13003
CONSOLE-3687 : Convert components in utils folder from class component… #12925
OCPBUGS-11219 : Fix incorrectly nested css rule for print styles #12991
OCPBUGS-11620 : Fix stop PLR option #13020
CONSOLE-3706 : Remove custom history.pushPath alias function #12873
CONSOLE-3431 : Allow building dynamic plugins without any exposed modules #12530
HELM-502 : Bump Helm to 3.12.1 #13014
OCPBUGS-15359 : Enable namespace dropdown selection when all namespace installation mode selected by default and… #12975
OCPBUGS-16174 : Update the VSCode extension link and descriptions on Create Serverless function form #13015
OCPBUGS-13142 : InstallPlan info cannot shown on Subscription tab for … #13012
OCPBUGS-14907 : Fix operator backed catalog page when copied CSVs disabled #12932
CONSOLE-3684 : Convert components in modals folder from class componen… #12941
OCPBUGS-16148 : disable Save if Use existing claim is active and no … #13010
OCPBUGS-16150 : Fix Start last run action in Topology sidepanel #13009
OCPBUGS-15458 : Links for console-dynamic-plugin-sdk markdown docs are not working #12993
OU-218 : Monitoring: Use useResolvedExtensions instead of useExtensions #12987
CONSOLE-3680 : Convert row-filter.jsx from class component to function… #12957
OCPBUGS-13808 : Console SDK components should be using GroupVersionKin… #12946
CONSOLE-3685 : Convert components in RBAC folder from class component … #12933
CONSOLE-3611 : User can configure the install of Operators that authenticate using STS #12779
OCPBUGS-9991 : Most of contents are lack of i18n on “Command Line Tools” page #12995
OCPBUGS-15021 : Use FLAGS.CAN_GET_NS to decide whether to show Route details > Metrics tab #12944
ODC-7341 : Show Build output in Shipwright Build list and details page #12972
OCPBUGS-8005 : Fix broken upstream doc link for cluster channel upgrades #12998
OCPBUGS-10884 : add multipath device type to LocalVolumeSet #12723
OCPBUGS-14434 : Running yarn dev results in the build running on a loop #12990
OCPBUGS-10844 : fix bug where binary secret values are corrupted on edit and add test coverage #12986
OCPBUGS-15011 : Upload JAR file does not work if the Cluster Samples Operator is disabled #12917
OCPBUGS-12891 : check for valid OLM selector in K8sResourceWidget to p… #12887
OCPBUGS-15896 : STS label not valid according to kube #12980
RHSTOR-4533 : added a mutator property for the storage class extension #12886
OCPBUGS-7416 : get Kamelets from the camel-k-operator namespace as well #12710
OCPBUGS-14548 : only show pipelines doc link for downstream #12979
CONSOLE-3565 : Expose annotations modal in dynamic plugins sdk #12843
CONSOLE-3610 : User can filter on STS enabled clusters for Operators that claim support for STS #12778
OCPBUGS-15773 : The upgrade Helm Release tab in OpenShift GUI Developer console is not refreshing with updated values. #12966
ODC-7319 : correcting - missing package tag across gherkin files #12847
ODC-7313 : Run CI tests with non-admin user #12814
OCPBUGS-15427 : Remove access review check for PipelineResource from Pipeline section #12964
ODC-7325 : Improve BuildConfig and Shipwright Build list pages #12910
ODC-7340 : Remove Shipwright Tech Preview badges #12960
OCPBUGS-14548 : update pipelines doc links #12890
OCPBUGS-15572 : Fix bug where the install operator update approval radio button does … #12959
OCPBUGS-14959 : Error for DuplicateClusterRoleBinding and Edit ClusterRoleBinding subject in RHOCP4 Web Console #12939
OCPBUGS-14665 , OCPBUGS-14874 , OCPBUGS-14875 : Helm Chart installation form hangs on create if JSON-schema is using 2019-09 or 2020-20 standard revisions #12929
OU-198 : Revert “Disable broken monitoring-tests” #12943
ODC-7337 : Skip wait for authentication operator to start progressing when the secret already exists #12884
OCPBUGS-497 : frontend: fix kube-apiserver availability query #12928
OCPBUGS-15060 : “Duplicate RoleBinding” leads to “Unsupported value” error #12921
OCPBUGS-7794 : Image pull secret creation form doesn’t re-enable Create button once it is disabled #12609
CONSOLE-3616 : Revert multicluster server flags #12782
OCPBUGS-15299 : Create Serverless Function Form is Broken #12926
OCPBUGS-13120 : Serverless functions UI warning is misleading #12923
ODC-7329 : Subsequent PipelineRuns take initial PipelineRun name into account #12913
CONSOLE-3612 : User is warned when cluster is in STS mode #12777
ODC-7322 : Implement a proxy to hit the Artifacthub.io API end point #12905
MGMT-15023 : Add help text to vCenter cluster field #12912
OCPBUGS-11464 : Availability requirement update is initially disabled … #12918
OCPBUGS-15135 : Make knative routes copyable similar to openshift routes #12908
OCPBUGS-14909 : Disabling web-terminal tests in CI #12892
OCPBUGS-14015 : Create helm release page doesn’t show a YAML editor when schema isn’t available (httpd-imagestreams chart) #12914
CONSOLE-3372 , OCPBUGS-13648 , OCPBUGS-13833 : Console supports installing non-latest Operator versions #12743
OCPBUGS-7036 : Add Git Repository (PAC) doesn’t setup GitLab and Bitbucket configuration correct #12593
chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 231 #12695
OCPBUGS-14354 : e2e: Enable Pipeline tests #12911
OCPBUGS-14915 : Remove entries from the menu that are now added by monitoring-plugin #12893
ODC-7316 : Add discoverability of the IDE extensions from Create Serverless form #12846
OCPBUGS-14419 : Remove tech preview badge from Pipeline repository pages #12888
ODC-7326 : Align Build, BuildRun and PipelineRun details page #12898
OCPBUGS-14836 : Updated BuildConfig and Shipwright Build lists shows runs from another namespace #12896
OCPBUGS-14890 : Missing ‘View details’ link for several servicemonitors.spec.endpoints fields in YAML sidebar #12895
OCPBUGS-14002 : Correct the alignment of yaml toolbar links #12894
OCPBUGS-14660 : Helm Repository “Edit” button results in 404 #12891
OCPBUGS-14716 : add ROSA branding option #12889
OCPBUGS-13208 : Fix PVC metrics query #12867
OCPBUGS-12897 : Knative Route Details Page should show the URL of the route as it is shown in the Openshift Routes Details page #12853
OCPBUGS-8682 : Fix empty create dropdown on provided APIs page #12819
OCPBUGS-9214 : Create button is disabled in Git Import form when git repo url has hyphens in owner part of the url #12652
OCPBUGS-4496 : Fix Samples/Snippets tab #12642
OCPBUGS-7361 : support JSON schema 06 in the helm install/upgrade form #12644
OU-138 : Move QueryBrowser component to dynamic SDK #12841
OCPBUGS-9063 : Remove frontend validation from legacy operand form gen… #12788
ODC-7275 : Implement invoke serverless functions #12755
OCPBUGS-14964 : Disable broken monitoring-tests #12902
OCPBUGS-11219 : Include print styles to allow printout of full screen and … #12849
ODC-7306 : Show the latest Build status in the Build list view #12809
ODC-7277 : added v1 support for Pipeline #12729
CONSOLE-3660 : Introduce react-router v6 compatibility #12861
OCPBUGS-8274 : Do not request token URL if auth is disabled #12818
OCPBUGS-14668 : visiting Configurations page returns error Cannot read… #12882
OCPBUGS-14602 : selected project was not taking effect when searching … #12880
OCPBUGS-14550 : Use proxy with web socket connection and monitoring d… #12877
CONSOLE-3392 : Implement exact search for more precise result sets and add user prefs setting #12838
ODC-7288 : Add proxy to invoke knative services with a public route #12789
ODC-7320 : Gherkin for customisation of add page and developer catalog through customisation form view #12855
OCPBUGS-14424 : OVN Kubernetes multi-homing #12869
OCPBUGS-14262 : Fix Pipeline metrics page #12863
OCPBUGS-10411 : Edit deployment don’t enable save button if image stream is added #12673
OCPBUGS-14149 : account for single object in status.conditions instead… #12866
OCPBUGS-14352 : E2e tests fails because OpenShift Pipelines operator could not be found #12872
OCPBUGS-9909 : Could not import multiple resources via JSON (while YAML supports this) #12721
ODC-7317 : Update Terminal step of the Guided Tour to indicate that odo CLI is accessible #12848
ODC-7308 : Update test cases of web terminal configuration page #12825
ODC-7283 : Add Web Terminal tab in cluster configuration page #12718
OCPBUGS-6767 : Regression: OpenShift Console no-longer filters SecretList when displaying ServiceAccount #12679
OCPBUGS-13782 : Surface the message from Operator developer #12840
OCPBUGS-12896 : Corrected Labels for resolving the bug related to the Create Route Checkbox #12834
ODC-7315 : Change help texts in initialize Terminal page #12824
OCPBUGS-11668 : Fix kebab actions on Installed Operators page #12822
OCPBUGS-13693 : Fix RTE in bridge. #12817
OCPBUGS-11256 : Topology UI doesn’t recognize Serverless Rust function for proper UI icon #12816
OCPBUGS-11996 : Fixed Make Serverless Form Error #12815
OCPBUGS-13257 : propagate labels to pipeline resources #12808
MGMT-14527 : Add vSphere cluster field. #12806
OCPBUGS-12783 : Remove “Action” type from OLM descriptor readme #12800
CONSOLE-3623 : Add X-CSRF token to console request headers #12719
OCPBUGS-5453 : Add Pipeline metrics unsupported empty page #12435
OCPBUGS-1829 : use service port name instead targetPort in the Pipeline Event listener route #12148
CONSOLE-2501 : Upgrade TypeScript version to 4.5 #12821
ODC-7318 : Update ODC owners, May 2023 edition #12839
CONSOLE-2501 : Update builder image #12828
OCPBUGS-13361 : Update plural string dynamic demo plugin locales #12799
ODC-7309 : Remove dev console integration-tests reviewers #12802
OCPBUGS-12244 : only copy workload annotations to debug pod #12794
ODC-7279 : Correcting CI failures of ODC Packages #12700
HELM-484 : Basic authentication documentation update #12768
CONSOLE-3615 : Mark multicluster code for removal #12754
ODC-7300 : Change method name for labelKeyForNodeKind to getTitleForNodeKind #12733
ODC-7296 : Rename all instances of YAMLEditor to CodeEditor #12708
Bug 2176216 : VMs are listed twice in cluster inventory #12795
OCPBUGS-12267 : Fix OLM k8sResourcePrefix descriptor dropdown behavior #12758
OCPBUGS-11099 : add support for minimal status of tekton #12724
OCPBUGS-12732 : fix buildconfig form ns #12771
OCPBUGS-12637 : update helm release empty state text #12767
OCPBUGS-12286 : Fix missing console plugin control on CSV details page. #12766
OCPBUGS-7692 : Fix that helm details page shows an inf. loading indicator when api call fails #12578
OCPBUGS-11057 : Importing a kn Service shows a non-working Open URL decorator also when the Add Route checkbox was unselected #12726
OCPBUGS-6581 : Serverless - Eventing - Channels: Conditions column i18n misses #12641
OCPBUGS-7485 : When Creating Sample Devfile from the Samples Page, Topology Icon is not set #12725
OCPBUGS-11596 : Do not fetch catalog sources on CSV or Subscription details pages. #12717
OCPBUGS-10224 : Multiple instances of tabs under ODF dashboard #12635
OCPBUGS-6770 : Pipeline doesn’t render correctly when displayed but looks fine in edit mode #12722
OCPBUGS-11869 : Pod Status Overlapping in Sidebar #12732
CONSOLE-3600 : Filter operators based on nodes OS type #12707
OCPBUGS-9329 : update dynamic plugin info for development mode #12666
OCPBUGS-10562 : disable operator-uninstall.ts as the uninstall test is… #12731
OCPBUGS-3036 : Do not list subscriptions in all namespaces on CSV details page. #12716
OCPBUGS-5548 : delete associated pipeline, triggertemplate and eventlistener when deleting app #12587
Add the possibility login with different IDP and user credentials #12709
ODC-7270 , ODC-7272 : Improve telemetry: Add resource and tab name to the page title #12669
Improve useModal docs example #12115
Improvements on Web Terminal Operator Installation functionality #12713
OCPBUGS-10956 : Reduce metrics cardinality by grouping well-known and other perspectives and plugins #12684
OCPBUGS-9305 : add missing readOnly conditions #12685
ODC-7280 : Add PipelineRun tab to Dev perspective Pipeline page #12672
OCPBUGS-10562 : re-enable and fix operator-uninstall.spec.ts #12678
ODC-7282 : Add webhook informations on Repository details and summary page #12690
OCPBUGS-11382 : Update Dockerfile to use latest builder images #12655
ODC-7274 : Prepare a page and modal to invoke a Serverless function #12686
OCPBUGS-103 : Move operator install status to it’s own route/page #12704
OCPBUGS-11020 : fix runtime error on OperatorHub details pages #12702
ODC-7281 : Provide Column management option for the TaskRuns list page #12689
Remove andybraren as dashboard reviewer #11807
OCPBUGS-11197 : Rephrase vCenter connection tooltips #12694
OCPBUGS-10961 : Fix description for BuildAdapter SDK extension #12683
CONSOLE-3577 : Remove deprecated metering endpoint from backend #12692
OCPBUGS-5940 : Wait with CRD/model translation until i18n bundles are loaded #12697
OCPBUGS-10916 : fix translation string for Image pull secret created alert #12681
OCPBUGS-10836 : fix All projects selection on Pipelines page in dev perspective #12676
OCPBUGS-10950 : use PipelineRun template from ‘pipelines-as-code-pipelinerun-go’ configMap for Go runtime #12682
ODC-7271 : add duration for PipelineRun and TaskRun on details page #12659
ODC-7276 : Add cancelled status color in Pipeline metrics page #12662
automation of edit build config feature file #12622
OCPBUGS-10619 : Enable modal scroll for uninstall operator instances #12680
OCPBUGS-10562 : disable operator-uninstall.spec.ts as the previous fix… #12677
PF Update 2023-2 #12664
OCPBUGS-10562 : re-enable and fix operator-uninstall.spec.ts #12661
OCPBUGS-10655 : Do not show builder ImageStreams without sampleRepo as samples #12667
OCPBUGS-10509 : Sync Debug in Terminal feature availability with 3.x pods in web console #12657
OCPBUGS-9956 : update the default pipelineRun template name #12660
OCPBUGS-7620 : Edit Deployment (and DC) form doesn’t enable Save button when changing strategy type #12608
OCPBUGS-8086 : Visual fixes for list items #12619
OCPBUGS-9907 : Fix alerts source display values #12632
OU-110 : Observe > Dashboards : Code Consolidation Fixes #12588
OCPBUGS-7484 : When there are 2 pipelines displayed in the dropdown menu, selecting one, unchecks the Add Pipeline checkbox #12650
OCPBUGS-8268 : OpenShift pipeline TaskRun(s) column Duration is not present as column in UI #12633
OCPBUGS-7632 : comment out suspected problematic test #12647
OCPBUGS-10345 : Fix backend runtime error #12654
OCPBUGS-10269 : Fix grammatical error in feedback modal #12634
OCPBUGS-8299 : CronJobs table/details UI doesn’t have Suspend indication #12638
OCPBUGS-7801 : taskrun ui fails when using object type results #12626
OCPBUGS-10230 : Fixes card sizes not even issue when commit info is not available on Environments page #12550
OCPBUGS-5360 : re-enable operator-install-single-namespace.spec.ts test #12424
OCPBUGS-10232 : Fixes argocd link for non-KAM added application envs #12558
OCPBUGS-7232 : Fixes resource status alignment issue #12429
CONSOLE-3393 : Proxy managed cluster monitoring requests through MCE c… #12360
CONSOLE-3425 : Expose ‘nameFilter’ prop to ‘ListPageFilter’ component #12438
OU-117 : No response for duplicate query with default disabled status when click ‘Hide all queries’ #12621
Update dockerignore. #12538
CONSOLE-3452 : Add patternfly customer feedback extension mechanism to console #12611
OCPBUGS-7446 : Show type of sample on the samples view #12548
OCPBUGS-7395 : Users don’t know what type of resource is being created by Import from Git or Deploy Image flows #12615
OCPBUGS-7178 : Add page title to Devconsole pages #12591
OCPBUGS-7632 : fix issue where project deletion fails #12618
ODC-7232 , ODC-7233 : Add new auth, serverconfig and usage metrics #12527
OCPBUGS-6994 : when ACM is installed and no previous perspective is set, default perspective to All Clusters #12542
OCPBUGS-6762 : Increase filter input width to accomodate placeholder text #12610
OCPBUGS-8066 : add checks for Pipeline in AddServerlessFunction form #12617
Correcting Knative Package Failures #12012
IR-267 : add details for submanifest to the ImageStreamTag #12549
OCPBUGS-5773 : Delete secret on async run error #12557
OCPBUGS-7970 : always close filter dropdown #12590
OCPBUGS-7971 : Monitoring: Fix “Label” filter on “Alerting rules” list page #12592
OCPBUGS-7031 : Pipelines repository list and creation form doesn’t show Tech Preview status #12541
ODC-6669 : rename edit-deployment routes and components #12400
OCPBUGS-7308 : remove ‘Download kubeconfig file’ from ServiceAccounts #12589
Bug 2076619 : Modified git import flow module to handle create button enable-disable issue #11493
OCPBUGS-7879 : fix devfile error #12594
OCPBUGS-7806 : Add NFS-export details for PersistentVolume details #12571
chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 230 #12584
OCPBUGS-3450 : Missing containerd and wicd service logs in Windows nodes #12572
OU-110 : Observe > Dashboards page: Use datasource defined in dashboard definition #12422
OCPBUGS-7668 : Bump helm pkg #12582
Add additional alerts datasource extension #12436
OCPBUGS-4646 : delete application should delete all part-of resources #12567
OCPBUGS-7144 : fix alignment issue of info alert on Pipeline metrics page #12563
Serverless function creation with Pipelines #12552
OCPBUGS-7421 : fix missing i18n error and validateDOMNesting warning #12561
OCPBUGS-1706 : Switch to use labelPlural for heading #12585
OCPBUGS-7195 : E2E correct sample page clicking #12574
OCPBUGS-3372 : Fix create silence error message adding response from the backend #12577
OCPBUGS-7117 : Expose endpoint to obtain copy login command URL for each cluster #12553
OCPBUGS-7399 : fix pipeline selection in Edit flow in devconsole #12564
OCPBUGS-266 : add subject kind dropdown in the project access form #12418
chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 229 #12568
OCPBUGS-7427 : Associate wait time with method to decrease run time #12559
OCPBUGS-7089 , OCPBUGS-7113 : move cluster menu to masthead to fix usability issues #12480
OCPBUGS-7418 : set default value for Scaling fields in Create Serverless Function form #12562
OCPBUGS-6610 : Developer - Topology : ‘Filter by resource’ drop-down i18n misses #12522
Bug 2115265 : Search page: LazyActionMenus are shown below Add/Remove from navigation button #12187
OCPBUGS-2479 : Right border radius is 0 for the pipeline visualization wrapper in dark mode #12501
OCPBUGS-1748 : PipelineRun templates must be fetched from OpenShift namespace #12537
OCPBUGS-7090 : Fix that Add to navigation does nothing when pinnedResource is {} #12536
OCPBUGS-5547 : Webhook Secret (1 of 2) is not removed when Knative Service is deleted #12517
OCPBUGS-5428 : Add missing SDK extensions descriptions #12431
OCPBUGS-6893 , OCPBUGS-7199 : Fix different CI issues #12554
OCPBUGS-4008 : Make sure console refresh toast notification pops up wh… #12470
OCPBUGS-6757 : Get the Event type value from the latest PLR of the Repository #12495
CONSOLE-3334 : Update copiedCSVsDisabled to contain managed clusters #12374
OCPBUGS-6967 : fix typeError while creating Serverless function #12520
OCPBUGS-6647 : Added translation to Last used in resource type dropdown #12504
OCPBUGS-5733 : Remove description field from the PLR parameters page #12434
ODC-7226 : update helm install and upgrade flow #12502
OCPBUGS-5948 : Better fix for runtime error in schema tab of api explorer when no schema exists #12499
OCPBUGS-186 : PipelineRun task status overlaps status text #12498
ODC-7234 : Provide option to configure PAC on importing app via import from git flow #12439
HELM-479 : Uninstall the Helm Charts Asynchronously #12465
OCPBUGS-6799 : Repositories list does not show the running pipelinerun as last pipelinerun #12497
chore(i18n): update translations: : Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 225 & 228 #12285
OCPBUGS-6098 : Show Git icon and repo link as per the Git provider #12456
OCPBUGS-4883 : Default Git type to other info alert should get remove after changing the git type #12384
OCPBUGS-5997 : Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered #12445
OCPBUGS-6660 : make Uninstall Operator checkbox instructions optional #12471
add preferred tab per user for dev perspective Pipelines page and make PipelineRuns tab default for Repository details page #12426
Query browser: Remove unused wrapperClassName prop #12464
OCPBUGS-2666 : Add RBAC check on Create a Project link in all-namespaces pages #12279
add create serverless function form and add action on add page #12396
Update ODC owner files #12430
ODC-7225 : Update Helm Releases list page and the details page #12432
Bug 2084452 : PodDisruptionBudgets help message should be semantic #12084
OCPBUGS-5948 : Fix runtime error in schema editor when theres no match for g/v/k in swagger definitions #12469
OCPBUGS-6049 : Do not show UpdateInProgress when status is Failing #12449
OCPBUGS-6634 : Enable building tectonic-console-builder on arm64 and fix the Dockerfile.product to work with no cached artifacts #12444
OCPBUGS-3228 : fix broken pipeline secret #12460
OCPBUGS-5851 : refactor descriptors test to remove interdependencies #12453
OCPBUGS-6053 : fix run-time error on Cluster Settings when availableUp… #12450
OCPBUGS-6272 : Start the pipeline with workspace #12442
OCPBUGS-4684 : In DeploymentConfig both the Form view and Yaml view are not in sync #12416
CONSOLE-3237 : Add opt out when Console deletes operands #12234
OCPBUGS-5851 : delete existing operand via CLI to workaround failing t… #12451
OCPBUGS-1598 : updates toast wording to Workload #12155
ODC-7210 : Create Serverless function using the Import from the Git with Builder Images #12411
OCPBUGS-5016 : Editing Pipeline in the ocp console should show correct information #12446
OCPBUGS-5851 : Using OLM descriptor components deletes operand #12433
CONSOLE-3389 : Use Cypress mock responses for multicluster cluster switcher and pod test #12421
Correcting Pipelines Package Failures #12073
Bug 2110565 : PDB Remove add/edit/remove actions in Pod resource action menu #12420
OCPBUGS-5542 : Project dropdown order is not as smart as project list page order #12428
OCPBUGS-1852 : Subscription tab for operator doesn’t land on correct URL #12336
OCPBUGS-4377 : Service name search ability while creating the Route from console #12383
OCPBUGS-5540 : fixes typo for milliseconds #12423
OCPBUGS-4894 : Disabled Serverless add actions should not be displayed for Knative Service #12379
OCPBUGS-4571 : Operator recommended namespace during installation incorrect. #12387
OU-121 : Monitoring: Convert Alerting list pages to use plugin SDK list filters #12399
OCPBUGS-5346 : Change vSphere connection health status icon #12410
OCPBUGS-3334 : Fix type inconsistencies and Readme for DynamicPlugins #12263
OCPBUGS-4047 : Fix secret CRUD test #12407
Bug 2083087 : Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC #12390
OCPBUGS-2145 : maxUnavailable and minAvailable on PDB creation page - i18n misses #12373
OCPBUGS-5287 : disable operator-install-single-namespace.spec.ts until… #12406
HELM-471 : Modify list releases response #12401
OCPBUGS-4047 : disable key/value secrets test as they fail at a high rate #12405
OCPBUGS-1606 : Do not filter spoke cluster operators by arch/os #12363
OCPBUGS-4701 : display ‘Control plane is hosted’ alert only when isCl… #12361
ODC-7188 : On importing application via import from git flow pac should be configured for the application #12335
OCPBUGS-4279 : Upgrade pf 2022 13 #12333
OCPBUGS-3033 : Make all feature flags available in perspective extensi… #12386
OCPBUGS-4700 : only show upgrade details if cluster not externally man… #12362
Health checks topology sidebar feature automation #12394
ODC-7184 : Show pre-pinned resources based on customization #12354
OCPBUGS-4781 : use /api/helm/release endpoint on helm release details page #12397
ODC-7185 : Allow admins to define pre-pinned resources using a form driven experience #12353
ODC-7183 : Provide a code snippet for adding pinned resources #12349
OCPBUGS-5164 : add support for version v1beta1 for knativeServing and knativeEventing #12391
OCPBUGS-5165 : Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) #12392
Monitoring: Convert Targets list page to use plugin SDK list filters #12342
ODC-7182 : add pinnedResources to server flags #12314
OCPBUGS-3373 : Observe > Metrics > Monitors, Error Message to indicate limited view due to user privileges #12319
OCPBUGS-3314 : Fix to use and set correct secretReference for build-config triggers #12375
OCPBUGS-2824 : The dropdown list component will be covered by deployment details page on Topology page #12369
adds support for timeout and custom image in cloudshell #12329
OU-122 : Monitoring: Convert modals to use PatternFly directly #12371
Bug 1948666 : Fix to show correct help texts for each git repo status error code #12237
Bug 2005232 : Pods list page should only show Create Pod button to user has sufficient permission #11999
OCPBUGS-4975 : Add missing translation in ceph stoage plugin #12380
OCPBUGS-3767 : fixed node maintenance plugin route configuration for BareMetalNodesPage #12359
OCPBUGS-2525 : improve newly migrated ConsoleLink test #12348
MGMT-12787 : Move MarkdownView to plugins-shared #12328
Bug 2100762 : Adding data-checked-state to radio inputs #12256
ODC-7177 : Add SBO label selector support for Topology page #12283
Sidebar-of-knative-revision-and-service| Knative Serverless #12351
ODC-7179 : Allow users to see which pods are receiving traffic #12272
OCPBUGS-3761 : close the guided tour modal before any action #12358
Domain-Mapping feature | Knative Serverless #12343
ODC-7172 : Update helm terms from install/uninstall to create/delete #12337
OCPBUGS-3033 : Update admin landing page if monitoring is disabled #12292
OCPBUGS-4691 : Fix that topology sidebar actions shows outdated data (Edit labels, Edit annotations, etc.) #12365
OCPBUGS-3951 : Do not disable dynamic plugin if extension coderef fail… #12347
CONSOLE-3371 : Add missing children prop to ResourceLink #12312
HELM-450 : Return secret for async install/upgrade #12289
Updating openshift-enterprise-console images to be consistent with ART #12350
Bug 2110570 : Topology sidebar: Edit pod count shows not the latest replicas value when edit the count again #12332
OCPBUGS-3863 : Set proper return code for plugin handlers #12346
Update helm and dev-console tests file #12301
Monitoring: Convert remaining kebab menus to use PatternFly directly #12326
OCPBUGS-4540 : Fix NavSection bug #12344
OU-75 New Query Added to the Beginning of List #12275
OCPBUGS-2525 : migrate CRD extensions tests to Cypress to mitigate flakes #12331
OCPBUGS-4518 : Monitoring: Fix alert descriptions with duplicate resources #12341
OCPBUGS-4047 : delete each created secret in case first test attempt r… #12316
Bug 2077138 : update pf-quickstart version #12298
OCPBUGS-4252 : fix issue where node debug terminal doesn’t load #12322
OCPBUGS-4110 : fixes misaligned form footer btn controls for WTO #12306
OCPBUGS-4415 : Disable shipwright tests again #12334
Monitoring: Extract Alertmanager config related code #12324
OCPBUGS-3896 : Make aria-expanded state label reflect correct expanded state in the masthead navigation button #12321
OCPBUGS-3771 : Add managed cluster proxy endpoint env var to multicluster-environment.sh script #12280
OCPBUGS-4206 : fix getContainerStateValue i18n #12318
CONSOLE-3282 : add Dynamic plugins to about modal #12294
OCPBUGS-4203 : remove padding from debug pod alert #12317
Monitoring: Use PatternFly components instead of ActionButtons #12302
OCPBUGS-3761 : follow on fix to ensure Administrator perspective is se… #12313
OCPBUGS-3027 : Do not disable metrics when auth is disabled #12287
Monitoring: Use PatternFly components instead of Breadcrumbs component #12303
OCPBUGS-1305 : Re-enable Shipwright e2e tests #12049
Monitoring: Don’t import EmptyBox #12227
OCPBUGS-2281 : Re-enable serverless e2e tests #12243
OCPBUGS-3476 : Show Tag label and tag name if tag is detected in repository PipelineRun list and details page #12274
OCPBUGS-3432 : Re-enable pipelines e2e tests #12242
OCPBUGS-2500 : Pan nodes into view if all nodes are not visible on load #12260
OCPBUGS-4026 : Fix rerender loop/crash when bindable-kinds is found but has no status #12296
OCPBUGS-4022 : Fix react warning when open console, add missing keys in navigation #12295
OCPBUGS-3024 : Add support for other Service types in Service list #12232
OCPBUGS-4012 : disabled Serverless add actions is not displayed in topology menu #12297
OCPBUGS-3776 : Update the tooltip to trigger only on mouseenter to remove focus trigger #12290
OCPBUGS-2480 : Task delete icon is not align properly on the Pipeline builder page #12266
CONSOLE-3350 : Add a PR template for the console #12257
OCPBUGS-3648 : Fix more runtime error edge cases in ImageManifestVuln … #12293
Monitoring: Refactor silence dropdowns to use PatternFly directly #12196
OCPBUGS-3395 : show event source, event sink card on add and associated action only if eventing is enabled #12268
OCPBUGS-3235 : Fix for initial showing of topology contents #12264
OCPBUGS-3761 : migrate Events integration test to Cypress to mitigate … #12286
topology-headless-failures-correction #12057
OCPBUGS-2904 : If all the actions are disabled in add page, Details on/off toggle switch to be disabled #12236
Monitoring: Import from the dynamic plugin SDK where possible and minor imports clean up #12231
OCPBUGS-2579 : Helm Charts and Samples are not disabled in topology actions if actions are disabled in customization #12197
OCPBUGS-1604 : Add cluster to query params of websocket requests #12250
OCPBUGS-2551 : show 403 error when normal user check operands on All … #12267
Bug 2092289 : Don’t proxy CORS response headers #12269
OCPBUGS-3069 : add Release not accepted to Update status on Cluster Se… #12251
Monitoring: Add popover help text for silence form’s negative matchers #12218
OCPBUGS-3709 : URI encode subjectName in CreateRoleBinding #12223
OCPBUGS-3458 : improve display of RetrievedUpdate condition in Update status #12261
OCPBUGS-2306 : fix number spinner input #12219
Bug 2080260 : Fix runtime erros in ImageManifestVuln related pages #12229
Create-knative-service-from-deployment-or-deployment-config feature #12125
OCPBUGS-1671 : frontend: use UBI httpd for StatefulSet template #12195
OCPBUGS-2735 : Switch spacing for inline radio & checkbox elements #12253
Bump helm version to 3.10.1 #12246
CONSOLE-3120 : Allow operator to specify where to run with CSV suggested namespace template annotation #12217
OCPBUGS-3316 : Remove refs-heads from the branch name for Repository pipelineRun row #12247
Monitoring: Move codicon font into monitoring/ dir #12230
OCPBUGS-2922 : Fix Console Plugin table sorting #12238
Monitoring: Don’t import CloseButton #12226
Bug 1993916 : Show tooltips for contextual information #11860
OCPBUGS-3172 : check that user can patch console operator config in s… #12222
add capacity action for SS CSV list page [OCP 4.12 & ODF 4.11] #12214
Monitoring: Fix type of bodyContent prop passed to PopoverField #12211
OCPBUGS-2961 : Change installed operator text when custom resource required. #12228
CONSOLE-3185 : Improve information available for Pending or Failed plugins so user can better troubleshoot plugins #12208
CONSOLE-3246 : Update i18next to version 21.x.x #12124
CONSOLE-3077 : Promote ConsolePlugins API version to v1 in console repository #12103
OCPBUGS-1061 : Monitoring: Fix permission check for Prometheus & Alertmanager pollers #12206
And 21 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-55948 : Check error returned by ipv6 SettleAddresses #190
OCPBUGS-37732 : Update owners #167
OCPBUGS-30045 : [4.15] cherry-pick containernetworking/plugins#997 #155
NP-807 : Upstream sync Nov 2023 #139
OCPBUGS-21906 : Bumps x/net + upstream sync november 2023 #128
OCPBUGS-19127 : Updating ose-containernetworking-plugins images to be consistent with ART #122
OCPBUGS-17681 : Default CNI binaries to RHEL 8 #116
Updating ose-containernetworking-plugins images to be consistent with ART #108
Updating ose-containernetworking-plugins images to be consistent with ART #107
Add rhel9 binary #106
OCPBUGS-14095 : Sync with upstream version v1.3.0 #98
Updating ose-containernetworking-plugins images to be consistent with ART #94
Updating ose-containernetworking-plugins images to be consistent with ART #93
Updating ose-containernetworking-plugins images to be consistent with ART #92
Updating ose-containernetworking-plugins images to be consistent with ART #80
Upstream sync Feb 2023 #73
OCPBUGS-5292 : Fixes tuning regression with vlan path fix #72
OCPBUGS-5292 : Revert “Fix path substitution to enable setting sysctls on vlan interfaces” (ocp 4.13) #70
Updating ose-containernetworking-plugins images to be consistent with ART #69
Upstream sync, Nov 2022 #67
Full changelog
OCPBUGS-28944 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #166
OCPBUGS-26758 , OCPBUGS-26759 : add snyk config file for SAST scan #162
OCPBUGS-24310 : Updating ose-csi-driver-shared-resource-container image to be consistent with ART #157
OCPBUGS-24096 : Updating ose-csi-driver-shared-resource-webhook-container image to be consistent with ART #156
OCPBUGS-23108 : Should reference configmaps instead of secrets #151
OCPBUGS-19155 : Updating ose-csi-driver-shared-resource images to be consistent with ART #143
OCPBUGS-21730 : bump golang.org/x/net to v0.17.0 #145
OCPBUGS-19291 : Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART #144
OCPBUGS-19155 : Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #142
OCPBUGS-16074 : Updating Kubernetes and other associated dependencies #141
OCPBUGS-14489 : Kubernetes 0.27 #139
OCPBUGS-12597 : bump(*): golang.org/x/net #138
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #136
Updating ose-csi-driver-shared-resource images to be consistent with ART #137
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #135
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #133
Add go-imports-organizer/goio to organize imports #132
OCPBUGS-10022 : add ‘system:serviceaccounts’ to SAR to allow group based RBAC #130
Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART #131
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #128
Updating ose-csi-driver-shared-resource images to be consistent with ART #129
Adding test scenariuos for Reserved Name Prefix for SharedSecret/SharedConfigMaps #127
OCPBUGS-7272 : add version file to must-gather output #125
OCPBUGS-7417 : Fix k8s.io/dynamic-resource-allocation error #126
BUILD-550 : bump(*) kubernetes 1.26 #123
BUILD-407 : reserve share names starting with openshift part one (code, unit test) #122
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #119
Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART #121
Updating ose-csi-driver-shared-resource images to be consistent with ART #120
Update to go1.19 #118
BUILD-531 : Rebase to Kubernetes 1.25 #114
Full changelog
OCPBUGS-28956 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #102
OCPBUGS-27035 : add snyk config file for SAST scan #96
OCPBUGS-23855 : bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #93
STOR-1402 : Chore: update libraries in all operators [4.15] #92
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #90
OCPBUGS-21724 : bump golang.org/x/net to v0.17.0 #85
OCPBUGS-19246 : Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #84
STOR-1442 : Restart webhook Pods if webhook-serving-cert changed #83
STOR-1441 : Restart node Pods if metrics-serving-cert changed #82
OCPBUGS-16073 : Updating Kubernetes and other associated dependencies #81
OCPBUGS-14824 : Bump csi-driver-shared-resource-operator library-go #80
OCPBUGS-14488 : bumping kubernetes to 0.27.1 #79
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #77
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #76
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #75
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #73
OCPBUGS-7906 : add openshift workload annotation to driver daemonset #72
BUILD-570 : hooks to allow operator to deploy on hypershift #71
BUILD-407 : remove pod wrapper types from validating webhook config #69
BUILD-407 : switch reserver share config from configmap to envvar; update webhook config to monitor share creates #68
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #66
Add a .ci-operator.yaml file #67
bump library-go to get ApplyCSIDriver changes #65
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #64
update to go1.19 #63
STOR-829 : set security.openshift.io/csi-ephemeral-volume-profile label #59
OCPBUGS-3358 : Revert “[build-407] Mount shared secret and configmap list config path into shared driver node” #61
Full changelog
OCPBUGS-24139 : Updating csi-attacher-container image to be consistent with ART #65
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #59
STOR-1404 : Rebase external-attacher to v4.4.0 for OCP 4.15 #58
OCPBUGS-19225 : Updating csi-attacher images to be consistent with ART #57
STOR-1169 : Rebase external-attacher to v4.3.0 for OCP 4.14 #54
OCPBUGS-14815 : Chore: Update OWNERS and OWNERS_ALIASES #55
Updating csi-attacher images to be consistent with ART #53
Updating csi-attacher images to be consistent with ART #52
Updating csi-attacher images to be consistent with ART #51
Updating csi-attacher images to be consistent with ART #50
STOR-1020 : Rebase external-attacher to v4.1.0 for OCP 4.13 #49
Updating csi-attacher images to be consistent with ART #48
Update to go v1.19 #45
Full changelog
OCPBUGS-25698 : UPSTREAM: 1132: CVE-2023-48795: bump golang.org/x/crypto to v0.17.0 #86
OCPBUGS-22528 , OCPBUGS-25232 : UPSTREAM: 1124: Bump OpenTelemetry to fix CVEs #82
OCPBUGS-23062 : UPSTREAM: 1047: Revert bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp from 0.44.0 to 0.45.0 #78
OCPBUGS-22528 : UPSTREAM: 1047: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp from 0.44.0 to 0.45.0 #77
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #71
STOR-1404 : Rebase external-provisioner to v3.6.0 for OCP 4.15 #70
OCPBUGS-19114 : Updating csi-provisioner images to be consistent with ART #69
OCPBUGS-17264 : USPTREAM: 969: build(deps): bump golang.org/x/tools from 0.9.3 to 0.12.0 #68
OCPBUGS-14811 : Chore: Update OWNERS and OWNERS_ALIASES #66
STOR-1169 : Rebase external-provisioner to v3.5.0 for OCP 4.14 #65
Updating csi-provisioner images to be consistent with ART #64
Updating csi-provisioner images to be consistent with ART #63
Updating csi-provisioner images to be consistent with ART #62
Updating csi-provisioner images to be consistent with ART #61
STOR-1020 : Rebase external-provisioner to v3.4.0 for OCP 4.13 #60
Updating csi-provisioner images to be consistent with ART #59
Full changelog
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #146
STOR-1404 : Rebase external-resizer to v1.9.0 for OCP 4.15 #145
OCPBUGS-19224 : Updating ose-csi-external-resizer images to be consistent with ART #144
STOR-1169 : Rebase external-resizer to v1.8.0 for OCP 4.14 #141
OCPBUGS-14812 : Chore: Update OWNERS and OWNERS_ALIASES #142
Updating ose-csi-external-resizer images to be consistent with ART #140
Updating ose-csi-external-resizer images to be consistent with ART #139
Updating ose-csi-external-resizer images to be consistent with ART #138
Updating ose-csi-external-resizer images to be consistent with ART #137
STOR-1020 : Rebase external-resizer to v1.7.0 for OCP 4.13 #136
Updating ose-csi-external-resizer images to be consistent with ART #135
Full changelog
OCPBUGS-31599 : add cmdline args to enable group snapshot webhooks #147
OCPBUGS-29336 : cherry-pick:release-4.15: OCPBUGS-29244 Update VolumeSnapshot and VolumeSnapshotContent using JSON patch #143
OCPBUGS-25521 : Updating ose-csi-external-snapshotter-container image to be consistent with ART #134
OCPBUGS-24330 : Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #124
OCPBUGS-24338 : Updating ose-csi-external-snapshotter-container image to be consistent with ART #123
OCPBUGS-24329 : Updating ose-csi-snapshot-controller-container image to be consistent with ART #121
OCPBUGS-24244 : Updating ose-csi-external-snapshotter-container image to be consistent with ART #118
OCPBUGS-24160 : Updating ose-csi-snapshot-validation-webhook-container image to be consistent with ART #116
OCPBUGS-24244 : Updating ose-csi-external-snapshotter-container image to be consistent with ART #117
OCPBUGS-24071 : Updating ose-csi-snapshot-controller-container image to be consistent with ART #115
OCPBUGS-23010 : UPSTREAM: 958: Re-queue SnapshotContents that are readyToUse: false #114
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #108
STOR-1404 : Rebase external-snapshotter to v6.3.0 for OCP 4.15 #107
OCPBUGS-19260 : Updating csi-snapshot-validation-webhook images to be consistent with ART #106
OCPBUGS-19223 : Updating ose-csi-external-snapshotter images to be consistent with ART #105
OCPBUGS-19100 : Updating ose-csi-snapshot-controller images to be consistent with ART #104
STOR-1169 : Rebase external-snapshotter to v6.2.2 for OCP 4.14 #101
OCPBUGS-14813 : Chore: Update OWNERS and OWNERS_ALIASES #102
Updating csi-snapshot-validation-webhook images to be consistent with ART #100
Updating ose-csi-external-snapshotter images to be consistent with ART #99
Updating ose-csi-snapshot-controller images to be consistent with ART #98
Updating csi-snapshot-validation-webhook images to be consistent with ART #97
Updating ose-csi-external-snapshotter images to be consistent with ART #96
Updating ose-csi-snapshot-controller images to be consistent with ART #95
Updating csi-snapshot-validation-webhook images to be consistent with ART #94
Updating ose-csi-external-snapshotter images to be consistent with ART #93
Updating ose-csi-snapshot-controller images to be consistent with ART #92
Updating csi-snapshot-validation-webhook images to be consistent with ART #91
Updating ose-csi-snapshot-controller images to be consistent with ART #89
Updating ose-csi-external-snapshotter images to be consistent with ART #90
STOR-1020 : Rebase external-snapshotter to v6.2.1 for OCP 4.13 #88
Updating csi-snapshot-validation-webhook images to be consistent with ART #87
Updating ose-csi-external-snapshotter images to be consistent with ART #86
Updating ose-csi-snapshot-controller images to be consistent with ART #85
Full changelog
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #49
STOR-1404 : Rebase livenessprobe to v2.11.0 for OCP 4.15 #48
OCPBUGS-19132 : Updating csi-livenessprobe images to be consistent with ART #47
STOR-1169 : Rebase livenessprobe to v2.10.0 for OCP 4.14 #44
OCPBUGS-14810 : Chore: Update OWNERS and OWNERS_ALIASES #45
Updating csi-livenessprobe images to be consistent with ART #40
Updating csi-livenessprobe images to be consistent with ART #38
STOR-1020 : Rebase csi-livenessprobe to v2.9.0 for OCP 4.13 #37
Updating csi-livenessprobe images to be consistent with ART #36
Full changelog
OCPBUGS-25231 : UPSTREAM: 354: Bump Bump OpenTelemetry to fix CVEs #60
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #51
STOR-1404 : Rebase node-driver-registrar to v2.9.0 for OCP 4.15 #50
OCPBUGS-19247 : Updating csi-node-driver-registrar images to be consistent with ART #49
STOR-1169 : Rebase node-driver-registrar to v2.8.0 for OCP 4.14 #46
OCPBUGS-14814 : Chore: Update OWNERS and OWNERS_ALIASES #47
Updating csi-node-driver-registrar images to be consistent with ART #45
Updating csi-node-driver-registrar images to be consistent with ART #44
Updating csi-node-driver-registrar images to be consistent with ART #43
Updating csi-node-driver-registrar images to be consistent with ART #42
STOR-1020 : Rebase csi-node-driver-registrar to v2.7.0 for OCP 4.13 #41
Updating csi-node-driver-registrar images to be consistent with ART #40
Full changelog
Add support for 64k pages with ARM64 (#141) #141
MGMT-16313 : Add support for C++ build (#137) #137
Revert “Start using rhel-coreos image rather than machine-os-content (#135)” (#136) #135
Start using rhel-coreos image rather than machine-os-content (#135) #135
Updating driver-toolkit images to be consistent with ART (#134) #134
Removing kernel[-rt]-core packages from the image. (#132) #132
Upgrade glibc, use dnf (#131) #131
Fixing the regexp used to get the correct GCC version. (#127) #127
Updating the docs to use ubi9 instead of ubi8. (#126) #126
Updating driver-toolkit images to be consistent with ART (#120) #120
Remove abi since it was not in 9.2 rpms (#121) #121
Fixing check-commits-count to work on other branches than master. (#118) #118
Adding rpm-build to the Dockerfile (#116) #116
Adding a missing space to README.md. (#115) #115
Updating README.md. (#114) #114
Updating the README.md. (#112) #112
Updating driver-toolkit images to be consistent with ART (#111) #111
Adding documentation regarding the driver-toolkit imagestream. (#110) #110
Adding kernel-rpm-macros to the Dockerfile. (#106) #106
Full changelog
OCPBUGS-35524 : update to go 1.20 and k8s.io mods to v0.28.3 #86
OCPBUGS-18003 : Ensure that IP forwarding is enabled #77
OCPBUGS-19258 : Updating egress-router-cni images to be consistent with ART #76
rework PR #74 to switch Dockerfile to use rhel9 #75
Updating egress-router-cni images to be consistent with ART #70
OCPBUGS-6553 : update go-yaml to v2.4.0 #67
Updating egress-router-cni images to be consistent with ART #66
Updating egress-router-cni images to be consistent with ART #65
Full changelog
OCPBUGS-24084 : Move builder and base image to RHEL 9 #52
STOR-1392 : Rebase to v1.12.2 for OCP 4.15 #50
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #43
OCPBUGS-19134 : Updating ose-gcp-pd-csi-driver images to be consistent with ART #42
OCPBUGS-17367 : UPSTREAM: <carry>: Remove the static library linking flag #41
OCPBUGS-16783 : Chore: Update OWNERS #39
UPSTREAM: <carry>: Fix OWNERS_ALIASES #40
STOR-1163 : Rebase to upstream v1.10.1 #37
Updating ose-gcp-pd-csi-driver images to be consistent with ART #36
Updating ose-gcp-pd-csi-driver images to be consistent with ART #33
Bug 1877261 : UPSTREAM: 973: filesystem is not resized when restoring #32
OCPBUGS-6411 : Rebase to v1.8.2 for OCP 4.13 #31
Updating ose-gcp-pd-csi-driver images to be consistent with ART #30
Full changelog
OCPBUGS-67971 : bump github.com/sirupsen/logrus to v1.9.3 #161
OCPBUGS-26993 : Increase data source provision timeout #114
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #108
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #102
OCPBUGS-25242 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #103
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #97
OCPBUGS-22600 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #94
STOR-1276 : Enable support for mounting volumes with SELinux context #81
Add clone test for gcp-pd-csi-driver #92
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #93
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #86
OCPBUGS-19229 : Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #85
CFE-878 : Add userLabels in Infrastructure to driver args list #74
OCPBUGS-16654 : Revert revert “STOR-1065: Rework sidecar bindings to b… #76
OCPBUGS-16569 : Bump library-go to remove dependency on goproxy #78
OCPBUGS-16783 : Chore: Update OWNERS #77
Revert “STOR-1065: Rework sidecar bindings to bind common ClusterRoles” #75
STOR-1065 : Rework sidecar bindings to bind common ClusterRoles #71
OCPBUGS-15823 : Change timeout of CSI sidecar #73
OCPBUGS-14824 : Bump gcp-pd-csi-driver-operator library-go #72
STOR-1301 : Restart controller Pods if metrics-serving-cert changed #68
STOR-1168 : Bump common libraries #70
OCPBUGS-12609 : Bump golang.org/x/net@v0.9.0 #69
Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #67
Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #66
Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #65
OCPBUGS-8683 : Add management workloads annotations #64
Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #63
STOR-874 : Implement custom keys in GCP PD CSI driver operator #62
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #61
STOR-947 : support disabling default StorageClass via ClusterCSIDriver #58
Bug 2106736 : Add multiplePVsSameID capability #60
STOR-1078 : Add hostPaths necessary for SELinux mounts #59
Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #57
OCPBUGS-4347 : set TLS cipher suites in Kube RBAC sidecars #56
Full changelog
OCPBUGS-59147 : UPSTREAM: 130047: adjusting loopback certificate validity in kube-apiserver #2358
OCPBUGS-59147 : UPSTREAM: <carry>: disable some legacy cloud provider Azure tests #2359
OCPBUGS-52183 : UPSTREAM: <carry>: kubelet/cm: fix bug where kubelet restarts from missing cpuset cgroup #2227
OCPBUGS-53139 : UPSTREAM: 129180: prevent unnecessary resolving of iscsi/fc devices to dm #2244
OCPBUGS-44514 : Bump k8s api to 1.28.15 #2132
OCPBUGS-42169 : Bump k8s api to 1.28.14 #2091
OCPBUGS-39016 : Update to Kubernetes v1.28.13 #2063
OCPBUGS-31467 : Return from EnsureHostInPool on all NIC errors #1964
: OCPBUGS-38861: Upstream: 115702 kubelet: output log even file is rotated #2058
NO-JIRA: update downstream owners #2050
OCPBUGS-37622 : Bump to Kubernetes v1.28.12 #2037
OCPBUGS-35552 : Bump to Kubernetes v1.28.11 #1994
OCPBUGS-33711 : Bump to Kubernetes v1.28.10 #1969
OCPBUGS-33347 : Provide SCC access via RBAC #1962
OCPBUGS-29613 : UPSTREAM: <carry>: bump structured-merge-diff #1893
OCPBUGS-32299 : Bump to k8s 1.28.9 #1946
OCPBUGS-29922 : UPSTREAM: <carry>: openshift-kube-apiserver: pod .spec.nodeName should not override project node selector in podNodeEnvironment admission plugin #1897
OCPBUGS-31807 : UPSTREAM: <carry>: allow type mutation for specific secrets #1939
UPSTREAM: <carry>: OCPBUGS-31348: fix cpu manager cpuset check #1915
OCPBUGS-31740 : 4.15: UPSTREAM: 124048: Use the right feature gate when updating uncertain volumes #1935
OCPBUGS-31503 : Bump to 1.28.8 #1926
Address CVE #11
OCPBUGS-30963 : Set up CEL IP/CIDR library from 4.14 onwards #1912
OCPBUGS-29661 : Bump to 1.28.7 #1891
OCPBUGS-29435 : structuredAuthenticationConfig for kube 1.28-ish #1884
OCPBUGS-27343 : UPSTREAM: <carry>: Update management webhook pod admission logic #1854
OCPBUGS-28209 : UPSTREAM <carry>: use snyk file #1873
AUTH-439 : loosen authentication.spec.type validation #1878
OCPBUGS-27368 : Update to kubernetes 1.28.6 #1857
OCPBUGS-25812 : Fix device uncertain errors on reboot - 4.15 #1832
OCPBUGS-26068 : Backport CEL IP and CIDR validations #1843
OCPBUGS-26005 : Update to Kubernetes 1.28.5 #1837
CNF-8809 : admission: add new admission for handling shared cpus request #1799
CNF-8326 : advertise shared cpus for mixed cpus feature #1795
OCPBUGS-23565 : Update to kubernetes 1.28.4 #1806
OCPBUGS-23073 : .spec.numberOfUsersToReport is not correctly applied in some circumstances #1794
OCPBUGS-22724 : UPSTREAM: 121881: Use golang library instead of mklink #1800
OCPBUGS-16922 : Remove skip flag for e2e tests related to AdmissionWebhookMatchConditions #1790
Update REBASE.openshift.md #1788
STOR-1278 : Fixes for SELinux mount context metrics #1771
Update to Kubernetes v1.28.3 #1776
openshift-hack: Fix sporadic 141 errors in build-rpms #1769
UPSTREAM: <carry>: support for both icsp and idms objects #1685
OCPBUGS-21584 : UPSTREAM: 121128: [CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 #1757
Do not allow nodes to set forbidden openshift labels #1735
OCPBUGS-20096 : bump pause image to RHEL9 #1734
Revert #1731 “Revert #1703 “Update builder & base images”” #1732
Revert #1703 “Update builder & base images” #1731
Update builder & base images #1703
UPSTREAM: <drop>: bump(openshift/client-go,library-go,apiserver-library-go) #1726
OCPBUGS-19666 : kubelet/cm: use MkdirAll when creating cpuset to ignore file exists error #1724
OCPBUGS-17534 : UPSTREAM: <carry>: vendor: bump cadvisor and runc to 1.1.9 #1711
UPSTREAM: 120817: e2e: bootstrap vsphere tests earlier #1714
OCPBUGS-19452 : UPSTREAM: 119317: change rolling update logic to exclude sunsetting nodes #1716
Update to new openshift/* dependencies #1704
STOR-1425 : Update to Kubernetes 1.28.1 #1646
OCPBUGS-16080 : UPSTREAM: <carry>: watch-termination: termination.log file #1638
UPSTREAM: <carry>: disable test removed in 1.28 #1698
<carry>: Export cpu stats of ovs.slice via prometheus #1686
OCPBUGS-17654 : cm: reorder setting of sched_load_balance for sandbox slice #1665
OCPBUGS-18608 : UPSTREAM: <carry>: Force using host go always and use host libriaries #1688
OCPBUGS-18149 : UPSTREAM: <carry>: retry etcd Unavailable errors #1681
OCPBUGS-18149 : UPSTREAM: <carry>: retry etcd Unavailable errors #1676
OCPBUGS-14301 : UPSTREAM: 117245: Fix TopologyAwareHint not working when zone label is added after Node creation #1673
OCPBUGS-14301 : UPSTREAM: 117249,118189: fix TopologyCache crashes #1668
OCPBUGS-7415 : grant user:full scope to self-SARs #1493
UPSTREAM: 118280: Set all PSa labels in tests #1663
OCPBUGS-17119 : UPSTREAM: <drop>: bump apiserver-library-go for updated required-scc errors #1661
OCPBUGS-15726 : UPSTREAM: <carry>: merge v3 openapi discovery and specs for special groups #1654
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #1660
Update to Kubernetes 1.27.4 #1653
OCPBUGS-15726 : UPSTREAM: 118879: make apiservices.apiregistration.k8s.io discoverabl… #1630
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #1645
OCPBUGS-15726 : UPSTREAM: 118881: fix openapi/v3 non local apiservices aggregation #1629
UPSTREAM: <drop>: hack/update-vendor.sh #1634
UPSTREAM: 119107: Stop using deprecated API #1624
OCPBUGS-13392 : UPSTREAM: 118915: remove legacy NetworkPolicy tests #1623
UPSTREAM: <drop>: update openshift/api,openshift/apiserver-library-go #1621
UPSTREAM: <carry>: when only this kube-apiserver can fulfill the kube… #1616
Update to Kubernetes 1.27.3 #1609
UPSTREAM: <carry>: STOR-1270: Admission plugin to deny deletion of storages.operator.openshift.io #1550
OCPBUGS-7181 : UPSTREAM: <drop>: bump apiserver-library-go #1605
STOR-1263 : Add csimock tests #1595
OCPBUGS-4053 : UPSTREAM: 118383: bump cadvisor for upstream patch 3301 #1594
Update test wrapper to match new k8s #1584
STOR-1263 : Bump to k8s 1.27.2 #1583
cherry-pick: #117785 from k/k - disable external IPs on e2e net tests #1581
UPSTREAM: 117893: When expecting pods count only active ones #1577
OCPBUGS-13854 : UPSTREAM: 117371: kubelet: Don’t reference the pod manager interface directly from components #1578
OCPBUGS-11652 : UPSTREAM: <carry>: Extend NodeLogQuery feature #1579
OCPBUGS-13148 : kubelet/cm: disable cpu load balancing on slices when using static cpu manager policy #1573
UPSTREAM: <carry>: move test rules from origin #1574
OCPBUGS-11143 : Azure: move to kube-proxy LB probes, don’t detach masters when unready #1569
OCPBUGS-10048 : UPSTREAM: <carry>: add conditional shutdown response header #1555
OCPBUGS-2474 : UPSTREAM: 116995: kubelet: Ensure pods that have not started track pendingUpdate #1561
STOR-1263 : Update to Kubernetes 1.27.1 #1558
OCPBUGS-10829 : UPSTREAM: 117310: kube-aggregator: correctly use client-go TLS cache with custom dialer #1548
UPSTREAM: <carry>: add shutdown annotation to response header #1537
UPSTREAM: <carry>: OCPNODE-1548,OCPNODE-1584: disable load balancing on created cgroups when managed is enabled #1518
Add wrapper which will allow running o/k tests as external binary in origin #1485
OCPBUGS-7267 : More fixes to SCC PSa extractor #1482
OCPBUGS-10048 : UPSTREAM: 115328: apiserver: annotate early (server not ready) and late (during shutdown) requests #1456
OCPBUGS-8220 : CSI Inline Volume admission plugin does not log object name correctly #1499
OCPBUGS-8092 : Fix mounted volume expansion tests #1498
UPSTREAM: <carry>: update rebase doc #1464
Bump to k8s 1.26.2 #1494
AUTH-336 : UPSTREAM: <carry>: PSa metrics: unset ocp_namespace on non-platform n… #1489
Bump to k8s 1.26.1 #1479
OCPBUGS-7267 : add SeccompProfile to Pod and Container accessors/mutators #1490
UPSTREAM: <drop>: OCPBUGS-5991: Kube APIServer panics in admission controller #1488
CNF-5901 : admission hook change for workload partition on all clusters #1312
UPSTREAM: 113799: tests: network: Prefer internal IPs first #1446
UPSTREAM: 115863: Remove global framework variable #1480
UPSTREAM: <carry>: add new approvers #1458
OCPBUGS-7555 : UPSTREAM: <carry>: add default kubelet sysctls within rpm #1475
AUTH-336 : UPSTREAM: <carry>: PSa metrics: log platform namespaces in audit denies #1454
add icsp validation: reject one of icsp idms.itms resources #1310
UPSTREAM: 114027: make GetSubnetPrefix IP family agnostic #1469
disable tests dependent on StackDriver #1466
UPSTREAM: 115484: Don’t explicitly set image version in tests #1465
UPSTREAM: 114994: kubelet: fix readiness probes with pod termination #1450
OCPBUGS-6030 : Rebase onto kube v1.26 #1432
Fix the mutated PodSpec extractor for warns if no SCC matches #1453
OCPBUGS-4900 : remove in-tree volume limits test now that CSIMigration is GA #1448
OCPBUGS-4658 : Apply shared defaulters to CRD-based routes. #1440
OCPBUGS-4657 : Bump library-go. #1431
UPSTREAM: <carry>: make the PSA workload admission warnings honor the… #1393
UPSTREAM: <carry>: Ensure balanced brackets in annotated test names #1410
STOR-829 : Add CSIInlineVolumeSecurity admission plugin #1384
OCPBUGS-3501 : UPSTREAM: <carry>: Add host assignment plugin for CRD-based routes. #1419
UPSTREAM: <drop>: Bump openshift/api. #1424
OCPBUGS-3499 : UPSTREAM: <carry>: Add validation plugin for CRD-based route parity. #1416
Bug 2117374 : UPSTREAM: <drop>: update apiserver-library-go to add message about wo… #1395
Bug OCPBUGS-2991: Disable expansion in SC, if driver does not support it #1402
OCPBUGS-3093 : Tag AWS security groups at creation #1411
UPSTREAM: <drop>: Bump library-go. #1406
OCPBUGS-2946 : Revert: 1340: tag AWS security group at creation #1401
OCPBUGS-3084 : UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines #1404
Full changelog
CNTRLPLANE-1266 : Drop extinct mce-2.5 pipeline #6655
CNTRLPLANE-1232 : Move CPO pipeline to hermetic builds #6601
OCPBUGS-58506 : [release-4.15] Add missing service network DNS entries to KAS cert #6394
OCPBUGS-57553 : Add proxy variables for the MCD Pod #6293
OCPBUGS-57121 : Add validation to avoid conflicts between KubeAPIServer and NamedCertificates SANs #6231
OCPBUGS-46467 : Consistently look up and dial cloud API hostnames #5300
OCPBUGS-52590 : Honor proxy vars in the util insecure http client #5791
CNTRLPLANE-920 : Konflux build pipeline service account migration #6086
CNTRLPLANE-920 : Konflux build pipeline service account migration #6081
OCPBUGS-55266 : [release-4.15] Add konnectivity-proxy sidecar to openshift-oauth-apiserver #6070
OCPBUGS-51800 : Fix golang crypto dependency go.mod replacement #5995
OCPBUGS-53898 : bump golang-jwt v4 and v5 #5908
Red Hat Konflux update control-plane-operator-4-15 #5955
ART-11792 : update go mod dependency for konflux #5923
OCPBUGS-51729 , OCPBUGS-51800 : Bump dependencies to OCP fork in backports #5902
OCPBUGS-50867 : Prevent IgnitionServer from flooding the API server with patch requests #5633
OCPBUGS-52992 : [release-4.15] OCPBUGS-52506: refactor aws identity health check into new controller #5815
OCPBUGS-52896 : Make managed-trust-bundle optional #5813
OCPBUGS-50699 : add region to AWS creds passed to operators managed by CPO #5669
NO-JIRA: chore(deps): update dependency mkdocs-material to v9.6.6 #5729
OCPBUGS-51253 : OCPBUGS-50692: Fix IsIPv4 function identifying also addresses instead of CIDRs #5701
OCPBUGS-52172 : [release-4.15] Add HostedCluster additional trustbundles to konnectivity-https-proxy #5722
NO-JIRA: chore(deps): update dependency mkdocs-material to v9.6.5 #5683
chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.5-1739420147 #5624
NO-JIRA: chore(deps): update dependency mkdocs-material to v9 #5642
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.5-1738816775 #5576
NO-JIRA: chore(deps): update konflux references #5588
NO-JIRA: Red Hat Konflux update control-plane-operator-4-15 #5338
NO-JIRA: chore(deps): update dependency mkdocs-mermaid2-plugin to v0.6.0 #5589
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.6.3 #5586
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.6.2 #5577
OCPBUGS-49668 : fix overwriting PKI operator HCP conditions #5512
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9/go-toolset docker tag to v9.5-1737480393 #5486
NO-JIRA: chore(deps): update konflux references (release-4.15) #5480
NO-JIRA: Update squidfunk/mkdocs-material Docker tag to v9.5.50 (release-4.15) #5434
NO-JIRA: Update dependency mkdocs-material to v8.5.11 (release-4.15) #5429
NO-JIRA: chore(deps): update konflux references (release-4.15) #5425
NO-JIRA: chore(deps): update konflux references (release-4.15) #5386
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9/go-toolset docker tag to v9.5-1736729788 (release-4.15) - abandoned #5380
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.5-1736404155 (release-4.15) #5379
NO-JIRA: Update squidfunk/mkdocs-material Docker tag to v9.5.49 (release-4.15) #5385
NO-JIRA: [release-4.15] Bump golang.org/x/crypto and golang.org/x/net #5371
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9/go-toolset docker tag to v9.5-1734626445 (release-4.15) - abandoned #5344
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.5-1734497536 (release-4.15) #5343
OCPBUGS-46075 : Do not send traffic to local audit-webhook through konnectivity #5274
NO-JIRA: Update dependency mkdocs-glightbox to v0.4.0 (release-4.15) #5327
NO-JIRA: Update Konflux references (release-4.15) #5326
OCPBUGS-47545 : Separate CPO containerfiles #5334
NO-JIRA: chore(deps): update dependency mkdocs to v1.6.1 (release-4.15) #5292
NO-JIRA: chore(deps): update konflux references (release-4.15) #5291
NO-JIRA: chore(deps): update konflux references (release-4.15) #5251
OCPBUGS-44522 : Add network policies for konnectivity server and ignition server proxy #5120
OCPBUGS-43931 : Return the right tagReference on Catalogs ImageStream #5187
NO-JIRA: Update squidfunk/mkdocs-material Docker tag to v9.5.47 (release-4.15) #5210
NO-JIRA: chore(deps): update konflux references (release-4.15) #5208
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.46 (release-4.15) #5190
NO-JIRA: chore(deps): update konflux references to 7779f9e (release-4.15) #5182
OCPBUGS-44278 : Configure OAuth https proxy to dial cloud endpoints directly #5068
NO-JIRA: chore(deps): update konflux references (release-4.15) #5159
chore(deps): update konflux references (release-4.15) #5136
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.5-1731604394 (release-4.15) #5129
chore(deps): update konflux references (release-4.15) #5118
NO-JIRA: chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.5-1731518200 (release-4.15) #5106
chore(deps): update registry.access.redhat.com/ubi9/go-toolset docker tag to v9 (release-4.15) #5110
NO-JIRA: Update Konflux references (release-4.15) #5109
NO-JIRA: chore(deps): update konflux references to 11b7f08 (release-4.15) #5101
chore(deps): update konflux references (release-4.15) #5077
NO-JIRA: chore(deps): update konflux references (release-4.15) #5054
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.44 (release-4.15) #5060
OCPBUGS-44201 : add ValidIDPConfiguration condition to report IDP config issues #5037
NO-JIRA: Update Konflux references to fedcfe0 (release-4.15) #5040
chore(deps): update konflux references (release-4.15) #5025
chore(deps): update konflux references to f53fe54 (release-4.15) #5022
NO-JIRA: Update squidfunk/mkdocs-material Docker tag to v9.5.43 (release-4.15) #5016
NO-JIRA: Update Konflux references (release-4.15) #5010
NO-JIRA: chore(deps): update konflux references (release-4.15) #4974
OCPBUGS-43635 : label routes only when HCP router used #4961
NO-JIRA: chore(deps): update konflux references (release-4.15) #4957
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.42 (release-4.15) #4949
OCPBUGS-43468 : Use guest DNS resolution in Konnectivity HTTPS proxy by default #4929
NO-JIRA: chore(deps): update konflux references (release-4.15) #4932
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.41 (release-4.15) #4916
NO-JIRA: chore(deps): update konflux references (release-4.15) #4922
NO-JIRA: chore(deps): update konflux references to 674e70f (release-4.15) #4909
OCPBUGS-42881 : Let payload generation pick the release for the NodePool #4867
OCPBUGS-42992 : Conditionally manage kubeconfig secrets for DNS and Ingress operators #4876
NO-JIRA: chore(deps): update konflux references (release-4.15) #4897
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.40 (release-4.15) #4881
NO-JIRA: chore(deps): update konflux references to 37b9187 (release-4.15) #4850
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.39 (release-4.15) #4807
NO-JIRA: chore(deps): update konflux references (release-4.15) #4815
NO-JIRA: chore(deps): update squidfunk/mkdocs-material docker tag to v9.5.37 (release-4.15) #4793
NO-JIRA: chore(deps): update konflux references (release-4.15) #4777
chore(deps): update registry.access.redhat.com/ubi9-minimal docker tag to v9.4-1227.1726694542 (release-4.15) #4766
NO-JIRA: Update squidfunk/mkdocs-material Docker tag to v9 (release-4.15) #4770
chore(deps): update squidfunk/mkdocs-material docker tag to v8.5.11 (release-4.15) #4769
chore(deps): update registry.access.redhat.com/ubi9/go-toolset docker tag to v1.21 (release-4.15) #4767
NO-JIRA: chore(deps): update konflux references (release-4.15) #4762
OCPBUGS-41373 : CPO oauth idp converter: resolve names before dialing #4746
NO-JIRA: Security fixes for openshift-ci-security job #4751
OCPBUGS-42214 : Make guest cluster components use the correct KAS port #4749
OCPBUGS-38059 : Add HTTP konnectivity proxy to OAuth server #4497
HOSTEDCP-1956 : bump CCO and go-jose version #4697
NO-JIRA: chore(deps): update konflux references (release-4.15) #4719
OCPBUGS-41701 : cmd: report server version, supported OCP #4702
OCPBUGS-38065 : [release-4.15] Use HTTP proxy for ingress controller #4699
OCPBUGS-41809 : copy image-registry AdditionalTrustedCA configmap into HC openshift-config #4706
HOSTEDCP-1896 : [release-4.15] Allow setting Kube APIServer maximum requests in flight #4552
OCPBUGS-39463 : handle version skewed NodePools that do not have rhel9 binaries #4666
OCPBUGS-39077 : Set KCM node monitor grace period #4628
OCPBUGS-30465 : fix: bump google.golang.org/protobuf #4616
OCPBUGS-39171 : fix: bump github.com/IBM/go-sdk-core/v5 #4625
OCPBUGS-35815 : Add hypershift-cluster-version-operator image to release providers #4243
NO-JIRA: test: relax mgmt KAS egress check #4631
NO-JIRA: Tolerate restarts for kubevirt external infra #4200
NO-JIRA: Flaky cert validation test #4630
OCPBUGS-38943 : copy oapi ca-trust recursively when building trust anchor #4613
OCPBUGS-39041 : set proxy envvars on aws and azure CCMs #4624
OCPBUGS-38613 : hcco: reconcile apiserver config into hosted cluster #4567
OCPBUGS-38561 : Let the CPO oidc check resolve through data plane #4564
OCPBUGS-34904 : remove weak ciphers from security profile #4547
OCPBUGS-37171 : OCPBUGS-35899: Doubled machineHealthCheck timeout on Agent and None #4489
NO-JIRA: Update Konflux 4.15 and perform migration #4487
NO-JIRA: [release-4.15] Kubevirt on Azure: Change KAS LB Port to 7443 #4469
OCPBUGS-36938 : [release-4.15]: Add HTTP(s) konnectivity proxy and use it with OpenShift APIServer #4358
OCPBUGS-37174 : Delete IDMS in dataplane once HCP ICS field is removed #4457
NO-JIRA: [release-4.15] kubevirt-csi-driver: Pass infra kubeconfig in case of external infra #4279
HOSTEDCP-1795 , HOSTEDCP-1796 : Customize the self-generated cert validity and rotation #4444
OCPBUGS-36916 : Add newline after TLS certs referenced by image.config #4443
OCPBUGS-37695 : Set right endpointSlice port #4441
NO-JIRA: Red Hat Konflux update hypershift-release-mce-25 #4433
NO-JIRA: [release-4.15] test/e2e: remove api budget checks #4413
OCPBUGS-37266 : extract rhel9 MCO binaries for rhel8 based MCO images #4385
OCPBUGS-36606 : enable audit log for oauth-openshift #4320
HOSTEDCP-1714 : Kubernetes API Server Log Verbosity Annotation cherry pick to 4.15 #4178
OCPBUGS-35736 : Complete KAS migration to none endpoint reconciler type #4228
OCPBUGS-35935 : check mgmt cluster for route capability before DeleteIfNeeded for ovn sbdb route #4265
NO-JIRA: chore(deps): update konflux references (release-4.15) #4259
OCPBUGS-35714 : Generate default worker security group rules based on machineCIDR #4266
NO-JIRA: chore(deps): update konflux references (release-4.15) #4252
OCPBUGS-32404 : Fix failure to create a second hostedcluster in the same namespace #3907
NO-JIRA: chore(deps): update konflux references to ff44cf3 (release-4.15) #4246
NO-JIRA: feat(olm): Set packageserver replicas to 2 for IBMCloudPlatform #4231
chore(deps): update konflux references to 2be7c9c (release-4.15) #4224
OCPBUGS-34580 : Add TrustedBundles to OAS container #4211
NO-JIRA: hack: make the e2e script generic #4199
OCPBUGS-33627 : Restrict image registry overrides to control plane components #4131
OCPBUGS-34156 : fix router on 4.14 y-stream upgrade #4077
OCPBUGS-35002 : [release-4.15] HOSTEDCP-1122: Backport etcd defrag controller #4162
NO-JIRA: Update Konflux references to 1025001 (release-4.15) #4180
NO-JIRA: chore(deps): update konflux references (release-4.15) #4167
OCPBUGS-34997 : add AWS STS URL to OIDC provider audiences #4157
OCPBUGS-35074 : Fix disconnected metadata inspection for nodepool #4175
HOSTEDCP-1708 : remove liveness and readiness probes that use the metrics #4128
OCPBUGS-34423 : Fixed audit-logs sigterm failing to terminate gracefully #4089
OCPBUGS-33526 : Disable DNS resolving for CNO #4148
OCPBUGS-34904 : remove weak cipher #4156
OCPBUGS-34510 : Reconcile KAS endpoints and endpoint slice #4097
NO-JIRA: test/e2e: fix prometheus serviceaccount handling against 4.16+ #4151
NO-JIRA: chore(deps): update rhtap references (release-4.15) #4120
NO-JIRA: chore(deps): update rhtap references (release-4.15) #4072
OCPBUGS-33510 : Run haproxy to connect to kas from data plane if noproxy settings contain kas #4014
NO-JIRA: chore(deps): update rhtap references to 7cd8020 (release-4.15) #4064
NO-JIRA: Remove CLI inspection of release image #4056
HOSTEDCP-1518 : Preserve container resource requests and limits #4032
NO-JIRA: Update RHTAP references (release-4.15) #4041
OCPBUGS-33118 : Recycler-pod image now points to the OCP Payload reference #3963
OCPBUGS-32220 : Fix disconnected metadata inspection #3881
NO-JIRA: Update RHTAP references to 1f62eaf (release-4.15) #4030
OCPBUGS-33117 : Reconcile over ICSP/IDMS #3962
NO-JIRA: Update RHTAP references to 2d39df1 (release-4.15) #4022
HOSTEDCP-1480 : Update TLS cert hash creation with sha512 #4017
HOSTEDCP-1513 : Support hypershift-operator scoping for hostedclusters #3998
Revert “[release-4.15] OCPBUGS-32013: Set OPERATOR_IMAGE environment variable” #3939
OCPBUGS-33207 : Remove kube-scheduler readiness probe #3955
NO-JIRA: chore(deps): update rhtap references to c6fdbf4 (release-4.15) #3989
OCPBUGS-25858 : Improve description for agent APIServerAddress CLI flag #3977
OCPBUGS-33224 : disable OCM pull secret controller when imageregistry config managementstate is Removed #3976
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3982
OCPBUGS-31747 : update desired image even when HCP doesn’t exist yet #3839
NO-JIRA: chore(deps): update rhtap references to e9efe99 (release-4.15) #3974
OCPBUGS-32229 : disable autoscaler when no nodepool require it #3884
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3967
HOSTEDCP-1552 : Update RHTAP tekton files for 0.3 -> 0.4 migration #3957
OCPBUGS-31826 : use dnsPolicy: Default for konnectivity-agent in data plane #3845
NO-JIRA: Update RHTAP references (release-4.15) #3935
OCPBUGS-32715 : Fix OLM intilization args #3923
HOSTEDCP-1519 : [release-4.15] feat(api): Add ingress-controller-load-balancer-scope annotation #3908
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3921
OCPBUGS-32164 : Fix ICSP and IDMS inclusion as registriesOverrides #3870
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3904
OCPBUGS-30280 : Switch to use service endpoint for Konnectivity #3692
OCPBUGS-32191 : Kas disable audit cherry pick release 4.15 #3875
OCPBUGS-32114 : Add new permission required in CAPA #3861
NO-JIRA: Update RHTAP references (release-4.15) #3887
NO-JIRA: [release-4.15] [e2e test framework] Add a flag to add an annotation to HostedCluster #3893
HOSTEDCP-1524 : [release-4.15] Support additional node selectors for request serving nodes #3883
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3873
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3868
OCPBUGS-32013 : Set OPERATOR_IMAGE environment variable #3853
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3857
NO-JIRA: Update RHTAP references (release-4.15) #3835
OCPBUGS-31766 : include hostnetwork SCC CPO role for 4.13 and earlier #3840
HOSTEDCP-1438 : [release-4.15] Preserve container resources for more hosted control plane components #3828
OCPBUGS-31324 : Add missing PodSecurityViolation alert #3798
NO-JIRA: Increase stability in autoscaled environments #3777
OCPBUGS-31471 : Reduce log file size for hypershift apiservers #3816
OCPBUGS-31604 : disable http2 for ignition server and proxy #3825
OCPBUGS-31426 : copy issuerCertificateAuthority configmap into HC openshift-config #3808
OCPBUGS-31265 : inject built-in MCP selector for KubeletConfigs and ContainerRuntimeConfigs #3802
NO-JIRA: Update RHTAP references (release-4.15) #3812
NO-JIRA: Remove unused ref to hostnetwork in cpo role #3796
OCPBUGS-31064 : ibmcloud KMS: remove breaking image check and enable KMS v2 support #3774
OCPBUGS-31377 : Manually cherry pick #3782 to 4.15 #3803
OCPBUGS-31326 : fix(ignition): Fix priority class override #3800
OCPBUGS-30804 : honor HC image configuration #3730
”[release-4.15] OCPBUGS-30164: Ensure cloud resources are destroyed for all platforms when –destroy-cloud-resources is used” #3677
OCPBUGS-31116 : external OIDC: fix certificateAuthority field in structured auth config #3783
OCPBUGS-30862 : Manual cherry pick 3685&3727 to release 4.15 #3740
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3791
NO-JIRA: Update RHTAP references (release-4.15) #3785
OCPBUGS-29881 : feat(ho): Add flag for dedicated request serving isolation #3633
OCPBUGS-30742 : [4.15] HCP deletion can get stuck if CPO is unable to delete the default worker security group #3726
OCPBUGS-30650 : Set KAS config pod security Enforce to privileged #3719
NO-JIRA: Bump CPO API budget to 4000 in EnsureApiBudget #3741
OCPBUGS-30651 : Remove EnsurePSANotPrivileged #3744
NO-JIRA: Update RHTAP references (release-4.15) #3754
HOSTEDCP-1488 : Use regionalized STS endpoints in AWS #3747
NO-JIRA: Update RHTAP references (release-4.15) #3738
OCPBUGS-30581 : [release-4.15] OCPBUGS-30220: Align PSA labels on guest cluster namespaces with standalone OCP #3684
OCPBUGS-30572 : [release-4.15] Update OLM Default Catalog Sources to 4.15 #3696
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3705
OCPBUGS-30189 : set Konnectivity cipher suites #3673
”[release-4.15] OCPBUGS-27500: Fix default release image lookup” #3549
OCPBUGS-30284 : do not set KAS OAuthMetadataFile with Authentication type OIDC #3694
OCPBUGS-30281 : [release-4.15] OCPBUGS-30102: Support to disable machine management components #3670
NO-JIRA: chore(deps): update rhtap references (release-4.15) #3675
Update RHTAP references (release-4.15) #3645
HOSTEDCP-1405 : Remove files not needed #3669
CNV-36056 : Expose NodeSelector for KubeVirt VMs in NodePool #3648
OCPBUGS-30088 : rollout kas on auth config change #3653
NO-JIRA: remove PrivateIngressController cleanup #3646
OCPBUGS-29880 : feat(config): Default RevisionHistoryLimit to 2 for deployments #3632
OCPBUGS-29025 : cpo: honor user provided oauthmetadata configmap passed in Authentication config #3522
OCPBUGS-30029 : sync AuthenticationConfiguration type with o/k 1.28 carry #3644
NO-JIRA: Red Hat Konflux update hypershift-release-mce-25 #3643
NO-JIRA: Remove specific pull secret watch in HCCO #3606
OCPBUGS-29850 : control-plane-pki-operator: fix CA used for SRE client credentials #3626
NO-JIRA: PDB backports #3628
OCPBUGS-29780 : use 2040 for apiserver svc in IBM provider #3595
OCPBUGS-29435 : Use structured authentication config #3607
OCPBUGS-28543 : Include OperatorHubSpec sync with HC when Config is empty #3480
OCPBUGS-29508 : Default NodeUpgradeType on day2 nodepool creation #3582
MULTIARCH-4084 : Reduce the policy access scope to specific instance #3529
NO-JIRA: Approvers update #3579
OCPBUGS-27149 : Add storage, csisnapshotcontroller and clustercsidrive… #3421
OCPBUGS-29416 : hypershift-operator: don’t create PKI rbac when disabled #3565
OCPBUGS-29418 : control-plane-pki-operator: add a signer for SRE break-glass #3566
OCPBUGS-29089 : Make ControllerAvailabilityPolicy immutable #3533
OCPBUGS-29310 : control-plane-pki-operator: validate CN for CSR #3558
OCPBUGS-29303 : release-4.15: revocation controller backport #3532
OCPBUGS-29020 : reduce external-dns route53 call volume #3521
OCPBUGS-29179 : [4.15] reflect NodePool replica count nil in status #3473
NO-JIRA: remove unneeded code to copy Authentication refs #3537
OCPBUGS-29029 : Add ValidatingAdmissionPolicy to KAS config #3523
OCPBUGS-28764 : node spread anti-affinity for HA HCP #3495
OCPBUGS-28603 : Remove webhook validations that introduce resource ordering #3515
OCPBUGS-28594 : backport API moves #3482
HOSTEDCP-1272 : Added CLI support to create DualStack clusters using default values #3502
OCPBUGS-27818 : Add GC knobs for KAS #3457
OCPBUGS-27103 : hcco: use manual mode for CCO #3420
NO-JIRA: kubevirt, e2e Add additional network test #3499
CNV-37394 : Remove ‘–attach-default-network’ from productized cli #3500
OCPBUGS-27380 : indicate cluster profile to render the correct manifests #3465
OCPBUGS-28235 : Required RBAC for network-node-identity is not created when hosted cluster networkType is set to Other. #3467
OCPBUGS-27432 : consider HCP upgradeable if CVO has no upgradable condition #3444
HOSTEDCP-1374 : external OIDC: copy Authentication OIDC client secrets through to guest #3393
OCPBUGS-27076 : availability-prober: wait for infrastructure name to be set #3419
OCPBUGS-27155 : Change KAS bootstrap image to cluster-config-api #3423
OCPBUGS-27071 : Apply Scheduling Configuration for kCCM #3417
OCPBUGS-26600 : set KAS runtime-config in alignment with feature gates #3399
OCPBUGS-26412 : Set new condition on SG deletion. #3381
OCPBUGS-26410 : Disable UWM Telemetry remote writer when MGMT cluster is disconnected #3380
OCPBUGS-26410 : Disable UWM Telemetry writer when telemeter-client cm not exists #3379
OCPBUGS-26223 : hostedcontrolplane: don’t start pki operator when disabled #3376
OCPBUGS-25782 : Added support for OLM Disable default sources on HC creation #3321
CCO-511 : control-plane-operator: reconcile the CCO #3336
NO-JIRA: no-op empty commit publish HO 4.15 to MCE 2.5 #3338
HOSTEDCP-1257 : control-plane-pki-operator: add a CSR flow for break-glass creds #3324
ACM-8466 : Add Kubernetes SCC V2 options to HO containers #3311
OCPBUGS-19271 : Updating ose-hypershift-container image to be consistent with ART #3247
HOSTEDCP-1336 : bump openshift/api #3282
NO-JIRA: Fix wrong annotation on cluster deletion #3289
OTA-855 : Enable CVO to evaluate conditional updates on self-managed HyperShift deployed on OpenShift #2807
HOSTEDCP-1318 : correct typo for OAS internal-oauth-disabled flag #3278
NO-JIRA: Bump the golang-dependencies group with 3 updates #3254
OCPBUGS-23126 : Fix a bug on deletion of a hostedcluster #3234
CNV-35774 : Improve CRD defaulting for HostedCluster and NodePool #3116
HOSTEDCP-1322 : NodeUpgradeType defaulted by provider via CLI #3273
NO-JIRA: cmd/cluster/core/dump: Gather PodDisruptionBudgets too #3263
CNV-34093 : kubevirt: verify release image falls within supported release window #3184
CNV-29003 : Re-enable NodePoolUpgradeTest for KubeVirt (Replace Only) #3189
OCPBUGS-22459 : Add prestop to konnectiviy server #3250
HOSTEDCP-1318 : pass internal-oauth-disable flag to openshift-apiserver when Auth type is OIDC #3244
OCPBUGS-23397 : Set shutdown-delay-duration to 15s #3204
HOSTEDCP-1234 : Add KMS support on Azure clusters using Azure Key Vault #3183
OCPBUGS-23555 : set respondWithChallenges false on CLI OAuth client #3249
WRKLDS-925 : remove duplicate passing of kubeconfig into route-controller-manager #3220
HOSTEDCP-1256 : control-plane-pki-operator: add an operator for managing PKI #3193
HOSTEDCP-1319 : Fix Dependabot & Group Dependency Updates #3246
OCPBUGS-24062 : fix(cpo): Set restart annotation on network-node-identity #3245
kubevirt, hcp, HOSTEDCP-1311: Add multinet knobs #3235
HOSTEDCP-1312 : Fixed update-codegen.sh to work locally #3214
OCPBUGS-23555 : add CLI oauthclient #3238
HOSTEDCP-1300 : Bump k8s.io/client-go to v0.28.3 #3191
OCPBUGS-19834 : add watch for HCP pullsecret to HCCO #3237
Update RHTAP references (main) #3230
HOSTEDCP-1236 : Enable public router+external DNS for azure #3233
OCPBUGS-23921 : Use correct kubeconfig in CCM and remove CCMs access t… #3222
OCPBUGS-22473 : Added OLMCatalogPlacement option to the CLI #3206
OSD-19085 : New hypershift_cluster_cores metric giving the total number of worker cores #3089
OCPBUGS-20246 : Added brackets to IPv6 KAS address on kubeconfig #3207
OCPBUGS-23737 : remove machine-approver probes #3227
OCPBUGS-23350 : Added IPFamilyPolicy to services exposed at the HCP in DualStack mode #3210
OCPBUGS-23466 : Let router use svc ips #3218
HOSTEDCP-1256 : api/hypershift: mark more conditions with list key types #3212
OCPBUGS-23472 : unset ServiceAccount on ignition-server-proxy #3209
OCPBUGS-23528 : Fix error when removing finalizer on cluster destroy #3219
HOSTEDCP-1256 : api/v1beta1: annotate hostedcontrolplane conditions #3211
OCPBUGS-23398 : Fixed AWS KMS Backup container args #3216
HOSTEDCP-1311 : kubevirt, Add support for secondary networks #3066
HOSTEDCP-1256 : expose cert rotation scale parameter #3208
OCPBUGS-23314 : SetLogger for CLI #3199
HOSTEDCP-1237 : Retrieve RHCOS VHD image from release image #3177
HOSTEDCP-1284 : Bumps k8s.io/pod-security-admission to v0.28.3 #3181
CNV-23418 : Validate jsonpatch annotation + add condition on wrong patch #3197
HOSTEDCP-1285 : Kas port svc cleanup #3186
HOSTEDCP-1254 : disable deployment of integrated oauth when authentication type is OIDC and set KAS flags #3151
CNV-23418 : fix the jsonpath annotation implemetation #3201
HOSTEDCP-1305 : Simplify HostedControlPlaneNamespace().Name #2619
OCPBUGS-22912 : Set value of elb tag to 1 instead of true #3198
CNV-30444 : Document recommended MTU settings for KubeVirt HCP #3129
HOSTEDCP-1306 : Bump Golang builder to 1.20 for RHTAP dockerfile #3196
NO-JIRA: chore(deps): update rhtap references #3192
CNV-23418 : unsupported escape hatch mechanism custom HS/KV vms #3187
HOSTEDCP-1256 : generate typed clients for apis #3179
NO-JIRA: *: Fix “succesfully” -> “successfully” typos #3188
OCPBUGS-20179 : Stop defining time series for hosted clusters or node pools which do not exist anymore. #2671
HOSTEDCP-1285 : Consume kas Pod port by name #3185
OCPBUGS-23083 : adding permission to CNO RBAC Calico path for network-node-identity deploy #3172
HOSTEDCP-1256 : Update Dependencies #3154
HOSTEDCP-1283 : Fixed Azure nodes not joining #3174
HOSTEDCP-1227 : Retrieve CAPZ image from OCP release image #3074
NO-JIRA: fix formatting for releaseImage log #3156
HOSTEDCP-1206 : Req serving isolation e2e enxebre #3150
OCPBUGS-23015 : Configure HSTS for kube-apiserver #3088
HOSTEDCP-1281 : Fix a bug in the validating webhook #3164
CNV-33847 : KubeVirt: create the etcd encryption key secret, if missing #3148
HOSTEDCP-1278 : Adjustment cluster-cidr,service-cidr to support dualstack #3161
OCPBUGS-10423 : Update regex validation for nodepool.spec.taints.value #3141
OCPBUGS-20161 : Stop exposing kas on 6443 private route service load balancer #3149
OCPBUGS-16079 : No error for overlapping service network and API IP #3067
OCPBUGS-22868 : Fixed accessTokenInactivityTimeout validation #3157
CNV-34094 : Add validating webhook #3132
Stop defaulting aws private haproxy external port to 6443 #3147
Remove GITHUB_ACCESS_TOKEN requirement from release notes script #3134
HOSTEDCP-1215 : Use the same etcd snapshot for all replicas during etcd restore #3081
Bump google.golang.org/grpc from 1.53.0 to 1.56.3 in /hack/tools #3136
OCPBUGS-20033 : Make the OLMCatalogPlacement field immutable #3113
HOSTEDCP-1113 : Improve NodePool CPU arch & platform check #3072
HOSTEDCP-1253 : bump openshift/api for new authentication config #3135
HOSTEDCP-1229 : Move azure cloud provider to out of tree #3086
contrib: increase HC quota to 40 #3140
HOSTEDCP-1200 : Remove pod exceptions from EnsureNoCrashingPods #3138
run EnsurePSANotPrivileged for TestCreateCluster only #3137
OCPBUGS-21776 : Cluster-policy-controller: add missing RBAC for privileged namespaces PSA syncer controller #3115
OCPBUGS-21626 : Validate accessTokenInactivityTimeout >= 300s #3110
OCPBUGS-20246 : Added brackets to the kubeconfig server address when IPv6 #3097
Bump golang.org/x/net from 0.13.0 to 0.17.0 #3092
OCPBUGS-22195 : Fix label selector check for CAPI provider #3108
Bump golang.org/x/net from 0.9.0 to 0.17.0 in /hack/tools #3093
Update RHTAP references #3062
OCPBUGS-21822 : Add ign proxy label selector for LabelTopologyZone PodAntiAffinity #3103
OCPBUGS-19419 change trusted bundle volume mount for CPO #3099
Disabling unused monitoring services #2730
OCPBUGS-18341 : change required pod anti-affinity rule to preferred rule #3095
SDN-4062 : Revert “SDN-4042: Increase upgrade rollout timers” #3090
CNV-31891 : Document port 80 is not supported with default ingress for KubeVirt #3079
MULTIARCH-3760 : Rename depricated flag for PowerVS capi deployment #3028
HOSTEDCP-1051 addition of grace period for aws infra destruction #2967
HOSTEDCP-1232 : Add clusterName label to CAPI kubeconfig secret #3087
OCPBUGS-19957 : Reconcile CNCC secret to CPO namespace #3065
OCPBUGS-20105 : OCPBUGS-20109: Update the scheduler to only accept paired Nodes and check scheduler HCs has two Nodes #3077
OCPBUGS-16189 , OCPBUGS-19746 : Added network validations #3047
CNV-30697 : Dedicated CPU for KubeVirt node pool #3048
Add record rules for kas qps #2858
Fix a typo in KubeVirt troubleshooting script #3073
HOSTEDCP-1184 : Document IPv6/IPv4/DualStack deployments for Hypershift in Baremetal #3008
Add aws-ebs-csi-driver-operator to allowed NeedManagementKASAccessLab… #3076
Upate azure docs #3075
OCPBUGS-13348 : Hypershift Audit configuration not working (part2). #3014
OCPBUGS-11939 , OCPBUGS-18128 , OCPBUGS-18460 , OCPBUGS-18602 , OCPBUGS-18879 : Support Disconnected HCP #2950
Add private link perms to docs and clarify log message #3063
OCPBUGS-14819 : Add konnectivity-proxy container to CNO #2974
OCPBUGS-19784 : Update capi agent version for CRD label #3050
KubeVirt platform troubleshooting documentation #3055
Remove EgressFirewall Creation in HCP namespace #3049
HOSTEDCP-1212 : Bump Golang to v1.20 #3038
Update RHTAP references (main) #3054
OCPBUGS-15215 : OAuth template config in HostedCluter.configuration.ouath is not honored in HyperShift #3041
Update RHTAP references (main) #3042
OCPBUGS-19271 : Updating hypershift images to be consistent with ART #3017
Update kubevirt csi driver deployment with proper timeouts #3044
OCPBUGS-19516 : Upgrade agent APIs to v1beta1 #3022
[kubevirt platform] Detect Suboptimal MTU and raise HostedCluster Condition accordingly #2976
OCPBUGS-19674 : Report correct port when API exposed via route #3037
OCPBUGS-13829 : set accesstoken-inactivity-timeout flag to openshift-oauth-apiserver #3025
HOSTEDCP-1209 : set ubi Containerfile labels #3039
Use example versions for KubeVirt platform that are supported #3027
OCPBUGS-17669 : Remove cluster name validation from HCC #3036
KubeVirt: document VMs logs collection #3031
Update RHTAP references (main) #3033
OCPBUGS-19381 : Let NodePools skip min version when SkipReleaseImageValidation is in HC #3024
OCPBUGS-19346 : set default deploymentconfig params on AWS CCM #3021
ACM-7278 : Remove marking pull secret as required in hcp cli #3013
OCPBUGS-19332 : Use impersonated client for fetching the localhost-kubeconfig from ma… #3011
Relax network policy e2e for private #3020
Dump KubeVirt pod logs #3000
Update RHTAP references #2995
OCPBUGS-19014 : Apply private-router network policy only if running OCP 4.14 #3012
Validate KubeVirt platform required versioning #2948
OCPBUGS-18720 : amend OLM catalogs ImageStream according to annotation #3001
OCPBUGS-17906 : reconcile Authentication global config #3009
feat: add _id label to all hypershift operator metrics #2991
OCPBUGS-18122 : Rename isUpgradeable to isUpgrading according to its return value #2955
OCPBUGS-18762 : unset ControlPlaneReleaseImage on HCP when ControlPlaneRelease is unset on HC #3004
OCPBUGS-18754 : tuned DS should not use controlPlaneReleaseImage #3003
HYPBLD-99 : enable CGO_ENABLED for building FIPS compliant images #2997
e2e: fixed gomega created from parent test context #2987
bump HO supported version for 4.15 #2927
HOSTEDCP-1075 : Document instructions for recovering etcd cluster from lost quorum #2952
HOSTEDCP-1185 : Add flag to create a single NAT gateway #2984
Dump kubevirt external infra clusters #2992
OCPBUGS-18568 : Use MCO and CCO image references when looking up mappings #2985
HOSTEDCP-591 : Amend OLM catalog IS according to OpenShiftImageRegistryOverrides #2947
e2e: skip CNO pod restart check #2986
HOSTEDCP-1133 : Signal NodePool rolling upgrade because of platform changes #2973
OCPBUGS-18127 : Enable caching of Unstructured Objects in HO #2988
e2e: run Ensure functions after Main part of test #2983
OCPBUGS-18127 : Ensure machineTemplate name length respects RFC1123 spec #2975
ACM-6435 : add pausedUntil create cluster option in CLI #2965
OCPBUGS-7840 : Untangle kas port #2964
OCPBUGS-18399 : Preserve mirror order when serializing ICSP to env #2977
OCPBUGS-18336 : make konnectivity routes roundrobin #2971
Use the correct pull secret for HCP KubeVirt components #2919
Disable nto inplace test for kubevirt #2980
OCPBUGS-18438 : Properly format IPv6 address when proxying it through Konnectivity #2969
OCPBUGS-18127 : Trigger a rolling upgrade on NodePool .spec.platfrom changes #2956
HOSTEDCP-1156 : Add defaulting webhook to installation and notes #2922
HOSTEDCP-979 : Re-enable nodepool in-place upgrade tests #2960
Add a default value (32Gi) for nodepool in create nodepool kubevirt command #2940
OCPBUGS-16221 : Adds trust bundle to ignition-server when configured in HC #2819
Avoid creating tar archive if –archive-dump=false #2963
OCPBUGS-3873 adding rbac for UserOAuthAccessToken #2962
HOSTEDCP-1178 fix limited support label key #2958
OCPBUGS-18065 : enable aws-pod-identity-webhook on AWS #2957
OCPBUGS-18308 : Do not use mgmt cluster ICSP to mutate CCO image in KAS pod #2966
OCPBUGS-18266 : fix Progressing condition when ControlPlaneRelease is set #2959
fix(ho): Restore match label selector behavior #2951
OCPBUGS-18072 : Set emptyDir storage for the image registry only on initial time for None and Kubevirt platform #2895
OCPBUGS-18024 : Set Arch to amd64 for HCP NodePool Create #2941
chore(deps): update rhtap references (main) #2920
OCPBUGS-16813 : switch konnectivity-server to additional container in KAS pods #2942
Updating hostedcluster controller to stop using deprecated flags #2946
OCPBUGS-17827 : e2e: remove private-router from NeedManagementKASAccessLabel allowlist #2939
MULTIARCH-3709 : PowerVS - Add reuse resource flags to e2e test #2902
MULTIARCH-3478 : Minor bug fix on PowerVS infra #2451
OCPBUGS-18069 : Ensure load balancers are not exist before declaring load balancers are cleaned up #2887
MULTIARCH-3708 : PowerVS - Fix cluster deletion when existing resources passed #2867
MGMT-15368 : Document scaling down NodePools #2944
OCPBUGS-13348 : Hypershift Audit configuration not working. #2945
TRT-1202 : set SkipReleaseImageValidation annotation properly on e2e clusters #2943
OCPBUGS-17678 : Reconcile cloud credentials configuration to hosted cluster #2937
Add e2e test for etcd member recovery #2930
OCPBUGS-17827 : remove NeedManagementKASAccessLabel from router pods #2934
OCPBUGS-17985 : Handle empty mirrorImage result for ignition disconnected registry #2935
OCPBUGS-17827 : e2e: refactor checkPodsHaveLabel to be allowlist rather than exact match #2928
OCPBUGS-16813 : do not hardcode ignition-server-proxy replicas #2933
fix(ho): Restore match label selector behavior #2893
TRT-1202 : add annotation to skip release image validation #2929
OCPBUGS-17812 : Update Etcd health check to mirror standalone etcd #2918
STOR-1443 : Sync 05_operator_role-hypershift.yaml manifest from cluster-csi-snapsht-controller-operator #2915
HOSTEDCP-1065 : CNO deployed hosted-cluster-kubecfg-setup initContainers use CPR image #2917
HOSTEDCP-1001 : Image registryOverride included in the image metadata extraction flow #2909
OCPBUGS-17669 : Validate HostedCluster name against RFC1123 #2914
HOSTEDCP-1075 : Document how to recover single etcd member #2916
HOSTEDCP-1085 : Create a monitoring dashboard per HostedCluster #2907
chore(deps): update rhtap references (main) #2903
HOSTEDCP-1063 : Account for guest webhook URLs without a port #2898
OCPBUGS-17680 : Remove immutable note from PullSecret #2910
Revert “HOSTEDCP-1001: Image registryOverride included in the image metadata extraction flow” #2908
OCPBUGS-16076 : Validate HostedCluster name against RFC1123 in CLI #2906
OCPBUGS-15331 , OCPBUGS-16049 : Enable AdvertiseAddress dual stack and IPv6 support and added the changes to be included in the certificates #2779
HOSTEDCP-1081 : Perform etcd recovery when etcd member data is lost #2900
SDN-4057 : Pass ControlPlane image to OVN #2896
test: e2e: remove SingleReplica etcd chaos test #2901
Allow overriding pod security admission label #2886
HOSTEDCP-1146 : cpo: use CPO spec container image if it is a sha256 reference #2899
HOSTEDCP-1022 : Set Arch to amd64 #2897
Re-introducing defaulting webhook for self managed HCP #2892
fix-CNV-30260: KubeVirt: fix failed conformance test #2891
OCPBUGS-16298 : Prevent the kube-apiserver from connecting to the managment kas #2888
HOSTEDCP-1001 : Image registryOverride included in the image metadata extraction flow #2820
HOSTEDCP-1046 , HOSTEDCP-1102 : Follow-on Items #2847
Revert “[HOSTEDCP-1041] Defaulting webhook for self managed HCP” #2889
OCPBUGS-17446 : Set advertise-address in HCP etcd to resolvable name #2884
Defaulting webhook for self managed HCP #2864
STOR-1432 : cso: add envvars for CSI driver controller images #2882
HOSTEDCP-1025 : Add HCP CLI Command to Create a NodePool on AWS #2852
SDN-4042 : Increase upgrade rollout timers #2881
skip olm-collect-profiles in EnsureComponentsHaveNeedManagementKASAccessLabel #2874
HOSTEDCP-1064 : Add egress policy for private-router #2792
HOSTEDCP-1121 : Ensure SG reconciliation for aws endpoint #2872
chore(deps): update rhtap references #2865
HOSTEDCP-1065 : add ControlPlaneImage API for provider-side HCP updates #2848
HOSTEDCP-1063 : Disallow webhooks URLs targeting control plane services #2775
OCPBUGS-17374 : Fast specific dockerignore #2879
Kubevirt how-to docs updates #2875
Fix nodepool upgrade docs link #2880
OCPBUGS-17171 : Update OLM catalog image tags #2877
HOSTEDCP-1029 : Add HCP CLI Command to Destroy a Cluster on AWS #2853
Add workload management annotation to kubevirt-csi daemonset #2840
WRKLDS-730 : use default /healthz path for readiness probe in OCM and RCM #2873
Add api and cli validation for kubevirt volume mode #2862
HOSTEDCP-1079 : RHTAP HO Containerfile #2857
OCPBUGS-16770 : add need-management-kas-access label to olm-collect-profiles pods #2854
MULTIARCH-3684 : PowerVS - Upgrade capi to use v1beta2 APIs #2831
HOSTEDCP-1046 : Add ImageDigestMirrorSet to Config API comment #2868
MULTIARCH-3683 : Add dev flags in destroy cluster powervs command #2764
kubevirt: Reconcile EgressFirewall only for ovn-k #2849
HOSTEDCP-1046 : Add IDMS to the list of valid config manifests #2837
OCPBUGS-17059 : Add volume mode to kubevirt root volume api #2860
Update RHTAP references (main) #2832
OCPBUGS-16809 : Configured IgnitionProxy to support IPv4 and IPv6 #2850
OCPBUGS-14163 : Fixed ETCD to work in Ipv6 and Dual stack envs #2846
HOSTEDCP-1112 : Add config to set creation frequency of RHTAP PRs #2838
HOSTEDCP-1020 : Remove name as a persistent flag required field #2836
OCPBUGS-16232 : skip z-stream version check when upgrade is forced #2823
OCPBUGS-16033 : ClusterNetwork’s HostPrefix validation for dual stack #2795
OCPBUGS-14783 : Fix NetworkPolicy to work over IPv4 and IPv6 #2704
Revert “HOSTEDCP-710: Make ImageContentSource immutable” #2829
Update RHTAP references (main) #2814
HOSTEDCP-1062 : Make CAPI pod selector backward compatible #2825
HOSTEDCP-1093 : Add default flags to HCP create cluster CLI cmd #2802
Revert “HOSTEDCP-1094: e2e autoscaler balancing similar node groups” #2828
HOSTEDCP-1090 : Use statically configured haproxy for router #2778
HOSTEDCP-1046 : Allow HCP Specification to Support ICSP & IDMS #2720
HOSTEDCP-710 : Make ImageContentSource immutable #2815
OCPBUGS-11835 : Add missing probes to two services #2430
HOSTEDCP-1094 : e2e autoscaler balancing similar node groups #2808
OCPBUGS-16113 : unshare ignition-server reconciliation between HO and CPO #2817
OCPBUGS-11939 : Fix additional issues with OCPBUGS-11939 #2804
OCPBUGS-16135 : fix deletion bug when hostedzone is already deleted #2811
OCPBUGS-14862 Improve clarity around hypershift operator permissions #2782
HOSTEDCP-1062 : Management kas policy #2796
Revert “HOSTEDCP-1062: Add management cluster KAS network policy” #2793
HOSTEDCP-1020 : Add pullSecret & NodePool replica flags to HCP CLI #2774
HOSTEDCP-1101 : Add snyk-secret HO RHTAP scripts #2788
OCPBUGS-15991 : use ignition-proxy Service to populate ignitionEndpoint with strategy NodePort #2787
OCPBUGS-15769 : Include hypershift specific labels to be ignored by similar autoscaler groups #2784
Add management cluster KAS network policy #2717
HOSTEDCP-1019 : Add create cluster for Agent for HCP CLI #2754
CNV-30407 : KubeVirt Platform: Support NetworkInterfaceMultiQueue #2760
HOSTEDCP-1030 : Add destroy cluster for Agent for HCP CLI #2756
OCPBUGS-15594 : Get valid arch image for cluster-config-operator #2753
kubevirt: Annotate VMs to be live migratable #2772
Revert “Merge pull request #2770 from dharaneeshvrd/upgrade-capi-ibmcloud #2776
MULTIARCH-3684 : PowerVS - Upgrade capi to use v1beta2 APIs #2770
OCPBUGS-14862 : Reject VPCE Connections during VPCE Service cleanup #2700
Update RHTAP references #2768
HOSTEDCP-1023 : Add create NodePool for Agent for HCP CLI #2755
HOSTEDCP-1061 : Implement dedicated request serving nodes for HostedClusters #2722
OCPBUGS-15769 : Set –balance-similar-node-groups for autoscaler #2769
Leader election config update. #2282
OCPBUGS-15723 : Let getMachinesForNodePool return machines ordered by creation Timestamp #2766
Fix KAS HealthCheck for non DNS-Based ingress points in LB service #2765
Bump github.com/docker/distribution from 2.8.1+incompatible to 2.8.2+incompatible #2741
Bump github.com/docker/distribution from 2.8.1+incompatible to 2.8.2+incompatible in /hack/tools #2740
Bump google.golang.org/protobuf from 1.29.0 to 1.29.1 in /hack/tools #2737
OCPBUGS-12208 ensureExists pullSecret resource reconciliation strategy #2732
Bump github.com/coreos/ignition/v2 from 2.10.1 to 2.14.0 #2739
Bump github.com/docker/docker from 23.0.1+incompatible to 23.0.3+incompatible in /hack/tools #2738
Remove hardcoded AWS CI References #2742
TRT-1118 : Remove DisableStrictZoneCheck from AWS CCM config #2757
Update RHTAP references #2750
add OWNERS for new ci-tooling area label #2743
Add production cli (hcp) to dockerfile #2747
feat: Enable priority class override #2661
test/e2e: retry configmap create in etcd chaos tests #2746
OCPBUGS-14578 : Set allocate-node-cidrs to false in the cluster-kube-controller-manager #2731
Revert “HOSTEDCP-1016: Validate publishing strategies” #2733
HOSTEDCP-1027 : Add Create kubeconfig for HCP CLI #2719
HOSTEDCP-1016 : Validate publishing strategies #2651
KubeVirt Platform documentation for Advanced Storage Configurations and External Infrastructure #2712
Follow up to PR comments on #2642 #2690
HOSTEDCP-1067 : Add dependabot dependency management #2708
HOSTEDCP-1073 : enforce blocked rollout of HCP #2726
Revert “HOSTEDCP-967: [Re-revert] Disable v1alpha1 and conversion webhook by default” #2705
Remove –service-publishing-strategy from production cli #2721
HOSTEDCP-1024 : Add Create NodePool for KubeVirt for HCP CLI #2718
HOSTEDCP-1032 : e2e: ensure default PSA policy is not privileged #2714
HOSTEDCP-1031 : Add Destroy Cluster Cmd for KubeVirt for HCP CLI #2673
Expose annotation to allow release image overrides #2595
HOSTEDCP-1060 : add ignition-server proxy #2668
OCPBUGS-14637 : Check OwningIngressController also in Labels #2706
HOSTEDCP-1020 : Add Create Cluster for KubeVirt for HCP CLI #2672
properly handle user CA bundle not existing #2703
OCPBUGS-15168 : fix(oauth): Do not proxy IBM Cloud IAM endpoints #2699
OCPBUGS-14859 : Skip AWS resource deletion for ‘Unknown’ OIDC state #2691
Whitelist access from virt-launchers to NodeIP if NodePort ServicePublishingStrategy is used #2688
OCPBUGS-13829 : cpo: oauth: honor AccessTokenInactivityTimeout #2693
Update NodePool docs to include data propagation #2687
HOSTEDCP-1008 : Add NodePoolTransitionSeconds metric #2631
HOSTEDCP-967 : [Re-revert] Disable v1alpha1 and conversion webhook by default #2685
Make NodePool arch input immutable #2689
Update autocaler RBAC to accomodate machinepools support added upstream #2663
Enforce Immutability of some KubeVirt Platform Values #2654
CNV-24818 : Add fsGroup support to kubevirt-csi-driver #2563
Let payload provider render feature gate yaml #2664
OCPBUGS-14633 : Check for OPENSHIFT_IMG_OVERRIDES before using #2660
HOSTEDCP-965 : Add impersonate feature to the CLI and document HC dump procedure #2653
OCPBUGS-11882 : Annotate HCP pods with the safe-to-evict-local-volume CA annotation #2647
Update RHTAP references #2657
Disable nodepool replace upgrade test #2665
OCPBUGS-14784 : Honor global ingress configuration LoadBalancer type on AWS #2669
OCPBUGS-14620 : Set DisableStrictZoneCheck = true in the AWS Cloud Provider config #2659
HOSTEDCP-992 : refactor ignition-server reconcilation #2662
Minor fix in KAS LB HealthCheck #2656
HOSTEDCP-1036 : Create Makefile path to create productized CLI #2633
Extend np test timeout for KubeVirt platform #2655
HOSTEDCP-1003 : Set AWS conditions only for AWS platform #2604
Remove alsologtostderr flag form CAP* #2648
OCPBUGS-14575 : Check for IDMS only if mgmt cluster has req API #2650
Network isolation of VirtualMachines for KubeVirt provider #2622
OCPBUGS-14428 : remove OLM alerts from the HCCO #2636
KubeVirt Openstack image annotation override #2629
Red Hat Trusted App Pipeline update hypershift-operator-main #2638
Red Hat Trusted App Pipeline purge hypershift-azjx #2635
cli: Add release-stream flag #2644
OCPBUGS-13547 : Pass payload-version to MCS and MCC #2643
KubeVirt: Handle deletion of the cache DV on an edge case #2620
OCPBUGS-14087 : Enable HCCO to reconcile over the OperatorHub’s disableAllDefaultSources object #2632
HOSTEDCP-1009 : Allow external-dns image to be set in install cli #2623
Ensure FeatureGate is copied from cluster to MCO render source #2581
OCPBUGS-12972 : Use different ports for MCS in the ignition provider #2628
hypershift dump: use random local port for kas port-forwarding #2625
OCPBUGS-11939 : Initialize RegistryOverrides w/ mgmt cluster ICSP #2437
Revert “Merge pull request #2596 from muraee/disable-valpha1” #2627
Add ‘Creating Arm NodePools Through the API’ Section #2587
HOSTEDCP-967 : Disable v1alpha1 and conversion webhook by default #2596
OCPBUGS-13113 : Add ClusterUpgradeDuration metric #2566
chore(deps): update rhtap references #2612
OCPBU-609 : agent infrastructure docs #2618
OCPBUGS-14169 : Remove external-dns –events flag #2616
OCPBUGS-13970 : Reconcile oauthDeployment annotations even if kubeadmin secret is not found #2593
cmd: infra: aws: retry on AuthorizeSecurityGroup failure #2605
Fix dump for Kubevirt #2589
Kubevirt CSI StorageClass mapping API #2528
Remove Arm e2e test #2591
HOSTEDCP-947 : Set ETCD Storage Size as immutable field and equalised the default size among both api versions #2588
OCPBUGS-13735 : Fixed revoking some permissions to CAPI Manager Clusterrole #2586
HOSTEDCP-445 : Add script to migrate hosted control plane #2598
Use newly introduced KubeVirt Platform rhcos Image #2576
OCPBUGS-13168 : Include default ingress CA in root CA bundle #2584
HOSTEDCP-975 : Add new grafana panels for nodepools SLOs #2592
HOSTEDCP-926 : Send metric when HO/CPO decide to skip cloud resource deletion #2531
Update RHTAP references #2420
OCPBUGS-13897 : Use cluster-config-operator to render featuregate status on KAS bootstrap #2585
HOSTEDCP-975 : Add cluster_name label to nodepools metrics #2580
Fix broken tests for non-aws platforms #2577
Updated secret permissions for openshift-route-controller-manager #2575
HOSTEDCP-987 : Update go version and dependencies in /hack/tools/go.mod #2551
remove flags set by CI env var #2521
HOSTEDCP-975 : Add NodePool DeletionDuration and InitialRolloutDuration metrics #2558
ARMOCP-412 : Add ARM nodepool to AWS x86 Hosted Cluster #1594
OCPBUGS-11939 : Fix minor codebase nits #2502
control-plane-operator/controllers/hostedcontrolplane: Align reconcileCloudControllerManager error strings #2500
HOSTEDCP-960 : Add e2e to validate HC/NP conditions expected status #2482
HOSTEDCP-830 : Update auto scaler role to get and list agentmachinetemplates #2564
HOSTEDCP-445 : Included how to fix image-registry clusteroperator after a disaster recovery migration #2481
OCPBUGS-13547 : Pass release image version to MCO bootstrap via –payload-version #2572
Cache KubeVirt Boot Image #1918
contrib: ci: increase HC quota in clusters namespace #2547
HOSTEDCP-996 : CLI: enable guest cluster dump for private clusters #2571
MULTIARCH-3205 : Support IBM COS as storage for PowerVS in image registry operator #2207
fix nil deref in DefaultWorkerSecurityGroupID check #2573
remove unused OLM catalog rollout code #2568
OCPBUGS-13034 : Cluster-api SA can’t create events #2565
ACM-4277 : docs: Add L2Advertisement CR to the Handling Ingress section in the agent docs #2470
HOSTEDCP-947 : Increases default etcd PV size to 8Gi #2549
Add a new e2e option for the ETCD storage class #2560
Red Hat Trusted App Pipeline update hypershift-azjx #2555
HOSTEDCP-975 : Revised nodePoolSize metric and added AvailableReplicasMetric #2532
OCPBUGS-11383 : Sync proxy TrustedCA to guest cluster #2550
Removed unused KMS permissions for nodePool role #2456
Lock down kubevirt csi storageclass mappings #2534
OCPBUGS-13021 : Add internal/external elb tags to subnets #2541
HOSTEDCP-918 : Add validation for NodePool security Group condition when using default SG #2498
HOSTEDCP-981 : Minor updates to Getting Started & Contribute pages #2527
OCPBUGS-13111 : Fix errors from HCP controller removeServiceCAAnnotationAndSecret() #2513
Stop triggering rollout on labels/taint change #2533
Validate HO private platform input #2536
OCPBUGS-13021 : Health check load balancers only on public clusters #2535
OCPBUGS-13309 : set FeatureGate global config #2543
Add audit-log-maxbackup setting for openshift-api-server #2509
OCPBUGS-11894 : Let the aws endpoint to use the hypershift owned SG #2475
HOSTEDCP-980 : Include HostedClusterDegraded in hypershift_hostedclusters_failure_conditions metric #2523
HOSTEDCP-788 : Configurable SRE MetricsSet #2505
OCPBUGS-13112 : Add timeout to KAS health check client #2522
HOSTEDCP-978 : Bump openshift/api version and fixed KCM flags (k8s 1.27) #2519
OCPBUGS-7841 : Account for expectedState == false when capturing hostedClustersWithFailureCondition #2507
OCPBUGS-11719 : Ensure ingress controllers are removed before load balancers #2444
Fixed assignment to entry in nil map #2508
Add new –featuregate-manifest to /usr/bin/cluster-config-operator render #2506
ACM-5116 : Increase KubeVirt default Mem and Root Volume Sizes #2471
HOSTEDCP-937 : New metric to expose Hypershift operator info #2443
HOSTEDCP-969 : Consolidate labels for metrics #2494
HOSTEDCP-969 : Move proxy, silence alerts and limited support metrics into HC controller #2489
HOSTEDCP-969 : Only track available metric once #2479
OCPBUGS-11738 : Delete kubeadmin secret when an idp is defined #2452
Add PollImmediate for e2e metrics to avoid race with prom scrape interval #2483
HOSTEDCP-969 : Move HC creation metrics #2477
OCPBUGS-12153 : fix(hcco): Get OLM CatalogSource images from defined map #2454
HOSTEDCP-917 : Add publicAndPrivate <-> Private e2e test #2383
add hyperv1.SilenceClusterAlertsLabel to HostedCluster on deletion #2476
HOSTEDCP-969 : Move guest cluster resource deletion metric #2463
OCPBUGS-11450 : Pass OPENSHIFT_RELEASE_IMAGE env variable to CNO #2384
HOSTEDCP-972 : Add pre-commit command to Make file #2465
HOSTEDCP-969 : Move cluster deletion duration metric into controller #2459
Fix kubevirt csi daemonset reconcile loop #2466
Fixes loop between HC controller and pod security label syncer #2460
docs: update OIDC bucket create with bucket policy #2461
OCPBUGS-11946 : Add new OCP 4.13 storage admission plugin #2445
OCPBUGS-11773 : remove ACL for aws bucket #2423
OCPBUGS-7841 : Set metrics to 0 when needed to keep time series honest #2440
OCPBUGS-11930 : Clean up existing VPC endpoint connections #2438
Revert “Add validation for default Security Group conditions during N… #2453
HOSTEDCP-918 : Add validation for default Security Group conditions during NodePool upgrade test #2342
OCPBUGS-11649 : Always requeue AWSEndpointService controllers #2424
Add IBMers as reviewers #2436
e2e: Cleanup shared OIDC provider on SIGTERM #2435
HOSTEDCP-950 : Fix haproxy image name in ignition server #2441
OCPBUGS-7091 : Restart kube-scheduler when its configuration changes #2421
OCPBUGS-11749 : Add pod security labels to hcp namespace #2415
HOSTEDCP-950 : Validate release payload images #2368
kubevirt: Block metadata server egress #2399
Bring latest MCO API #2434
Relax MCO API strict decoding #2433
docs: update OIDC s3 bucket creation procedure #2425
json export for a common grafana dashboard for SLOs #2422
Enable monitoring for hypershift namespace #2419
MULTIARCH-3449 : set priority class for cloud controller manager pod for PowerVS #2390
Fixes HCCO reconcile error for kubevirt csi driver #2259
Add monitoring label to HCP namespace #2393
Update tekton references #2308
add OWNERS for new area labels #2414
fix typo #2411
HOSTEDCP-807 : Requeue HCP always #2408
OCPBUGS-11640 : Update HostedCluster oauthCallbackURLTemplate #2400
e2e: Fixed idp test conflict error on HosterCluster update #2389
dump: Store guest worker node logs and increase kubevirt logs verbosity #2317
HOSTEDCP-568 : Update Konnectiviy socks5 proxy for IBM exception #2366
OCPBUGS-11442 : properly reconcile with user specified changes for in proxy configuration #2382
Updated kubevirt docs #2318
OCPBUGS-11439 : allow z-stream upgrade even if CVO Upgradeable is false #2381
HOSTEDCP-954 : Remove ec2:ReleaseAddress #2379
HOSTEDCP-802 : add cli flag to enable upgrade type #2367
e2e: Fix oauth idp e2e test #2377
HOSTEDCP-951 : Let install apply to aggregate errors #2372
Revert “Create a second scheme that always registers prometheusoperatorv1 GVKs” #2374
HOSTEDCP-807 : Check KAS loadbalancer health #2264
e2e: fix for non-AWS platform #2360
HOSTEDCP-445 : Fix the storage ClusterOperator during a DR migration #2358
HOSTEDCP-850 : Fix nodepool autoscaler logic #2354
support/releaseinfo/pod_provider: Drop unused legacy PodProvider #2341
Fix nodepool upgrade e2e test #2359
HOSTEDCP-806 : Fix ValidAWSKMSConfig condition #2322
HOSTEDCP-939 : Setup shared OIDC provider for e2e clusters #2335
OCPBUGS-10227 : Preserve false status of ValidAWSIdentityProvider condition #2344
ACM-4615 get pull secret instead of dockerconfigjson from mce credentials #2338
Slo alerts #2049
HOSTEDCP-943 : Add hypershift_hosted_cluster_transition_seconds histogram #2348
HOSTEDCP-944 : Add more expectedHCConditionStates metrics #2347
OCPBUGS-10227 : Create new EC2 client for AWS identity provider health check #2346
OCPBUGS-10823 ensure well known public domains do not get proxied on image imports #2321
SDA-8609 : No more specifying the scrape interval at servicemonitors & podmonitors level #2327
OCPBUGS-10807 : Pass runAsUser to CNO so it can run its managed services with proper security context #2319
Appstudio update hypershift-azjx #2332
Revert “cpo: cno: follow image name change in release payload” #2345
support/supportedversion: Include the problematic version strings in error messages #2334
OCPBUGS-10864 : fix external APIServer address selection based on endpointAccess #2328
OCPBUGS-8073 : Do not proxy when guest cluster resolution fails #2261
MULTIARCH-3028 : handle PowerVS instance which goes to failed state during infra create and destroy process. #2088
HOSTEDCP-938 : Added PSA default profile to RunTimeDefault in operator deployment #2333
HOSTEDCP-934 : Validate PublishingStrategyMapping #2324
OCPBUGS-7091 : Honor scheduler profile in HostedCluster configuration #2330
HOSTEDCP-736 : Docs on how we handle aws permissions #2311
Add support for external infra clusters in KubeVirt platform #2017
Create a second scheme that always registers prometheusoperatorv1 GVKs #2292
OCPBUGS-10504 : Deletion of the VPCEnpoint on conflicting service names #2290
HOSTEDCP-801 : Expose external DNS for private cluster endpoints #2286
HOSTEDCP-903 : Propagate AWSEndpointService conditions #2278
Appstudio update hypershift-azjx #2287
OCPBUGS-8691 : Add storage operators perms. to watch HostedControlPlane #2301
OCPBUGS-10423 : Add validation for taint.value in nodePool #2298
HOSTEDCP-839 : Audit log sidecars for openshift-apiserver and openshift-oauth-apiserver #2232
Route to kubevirt VMs using infra id as service label selector #2092
Force controleplane upgrade always #2288
HOSTEDCP-900 : Modified AWSPrivateLinkController and AWSEndpointServiceController to respect PausedUntil spec field #2265
HOSTEDCP-919 : Clean up and API doc #2280
HOSTEDCP-688 : E2E Test NodePool Upgrade #2256
HOSTEDCP-445 : Documented the possible issues found during a HostedCluster migration #2276
OCPBUGS-10227 : Ensure identity provider health check condition is persisted and remove awsendpoint control plane finalizer if invalid aws creds #2281
OCPBUGS-8040 : Switch NTO metrics auth to certs generated by HCP controller #2050
OCPBUGS-8381 : Use appropriate serving certificate for OAuth #2279
HOSTEDCP-501 : Added detailed documentation about Hypershift release process #2272
HOSTEDCP-919 : Add AWS cloud controller manager #2271
Update PowerVS prereq doc with install and authorization details #2172
Remove webhook validation #2217
HOSTEDCP-809 : Clone CA key/cert to TLS key/cert #2246
Refactor e2e nodepool tests #2228
Update HCP version in capi cluster ref #2119
Validate etcd KMS config #2174
OCPBUGS-8421 : fix API documentation for audit webhook field #2258
Add a debug section to the Node Tuning docs #2254
Destroy cloud resources by default #2224
Add e2e test for identity providers #2166
HOSTEDCP-638 : Add latest ocp supported info to -v command for cli and operator #2233
OCPBUGS-8231 : Fix cleanup of volumes on cluster deletion #2243
fix(cpo): Delete multus validatingwebhookconfiguration on CNO init #2231
add pull-secret to imagePullSecrets for NTO, CNO, and olm-collect-profiles #2248
Update images and hypershift operator to 4.14 #2249
HOSTEDCP-904 : Add release automation and docs #2236
kms addition for pod identity workflow #2214
fix(ho): No network validation for IBM Cloud #2225
feat(HCCO): Block DNS operator delete until Cluster Version updated #2223
Add configuration for automatic labeling and label commands #2238
Skip pod restart check for NTO #2239
cpo: cno: follow image name change in release payload #2230
Added documentation around supported-versions configmap #2220
Add comment for BaseDomainPrefix #2219
Add condition to NodePool indicating whether a security group for it is available #2216
HOSTEDCP-827 : Add root volume encryption e2e test #2192
fix(hypershift): reduce CAPI rbac access #2173
Validate Network Input for HostedCluster #2215
Add labels info #2218
HOSTEDCP-826 : Customize DNS base domain prefix #2213
ensure reconcilation of apiserver port #2197
Cleanup default security group only if authorized #2211
HOSTEDCP-593 : Update the pull secret source for ignition payload #2187
fix(ibmcloud): Explicitly set HCCO controllers #2185
Adding NTO again to find the issue with data recollection #2152
cli: Add –cli-root-volume-access-modes #2188
feat: Add pod gone check to prober + DNS operator leader elect #2155
HOSTEDCP-833 : Add Golang check for ‘go list’ errors in Makefile #2193
HOSTEDCP-833 : Set kubevirt.io/client-go version to fix ART Issue #2194
add KAS egress network policy #2181
cpo: kcm: add nfs pv recycler pod template #2183
Fix kubevirt how-to doc formatting issues #2178
Update cluster api provider kubevirt dependencies #2157
fix(cpo): Set restart annotation on multus-admission-controller #2150
fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac #2141
Add default NodePool name clarification to docs #2186
fix(cpo): Reduce CNO access if Calico used as network provider #2159
add PSA labels to openshift-infra in guest cluster #2180
Add cli flag to enable root volume encryption #2177
Update KubeVirt platform how-to documentation #2108
Filtering data recolection only for aws instances running #2153
Add PodMonitor for ingress-operator pods in HCP namespaces #2136
fix regex in registry operator pod monitor #2171
Add e2e test for hosted cluster behind a proxy #2077
Skip destroyAWSDefaultSecurityGroup if not AWS #2167
Give kubevirt csi controller get VMI RBAC #2154
set default PSA enforce to restricted #2097
Create default security group for AWS clusters #2146
AUTH-323 : konnectivity: split away the rootCA from konnectivity trust #2149
Use KAS kubeconfig for PowerVS CCM instead of external kubeconfig #2065
Add e2e test for secrets encryption using kms #2135
OSD-15099 : Delaying the creation of servicemonitor and podmonitor resources till the hostedcluster is Completed #2147
Add support for root volume encryption using KMS #2143
Check creation and deletion timestamps are not nil #2132
test: skip TestCreateClusterKms on non-AWS platforms #2151
expose silence alerts metric #2142
AUTH-323 : pki: split out konnectivity certs from the rootCA #1891
Clarify docs for nodePool.spec.config #2137
fix(ho): Delete user-data secret for non-AWS platforms #2134
Revert “Refactored NTO MachineConfig InPlace and Replace E2E Tests” #2145
Basic immutability for NodePool #2139
Changes autoscalling replica number when the nodepool replica is not set #2106
Add external DNS health condition #2130
Adding supportability for Private HostedCluster to be migrated #2089
fix openshift-route-controller-manager ServiceMonitor regex #2094
fix(api): Fix deprecated API conversion #1987
OpenID add support for groups claim in the config #2116
fix(cpo): Restart registry operator on annotation #2111
fix(cpo): Allow KAS profiling disablement #2110
update to golang 1.19 and 4.13 base image #2095
Add e2e test for cluster creation with AWS KMS #2093
Refactoring NTO MachineConfig InPlace and Replace E2E Tests #2051
Fix CAPA crd generation #2113
AWS: remove finalizer from deleted awsmachines if lost STS #2109
Minor fixes to notes on Getting Started and NodePool Upgrades pages #2117
Add dns docs clarification for private topology #2115
fix(cpo): Separate RBAC for NTO + CNO #2107
Set k8s.io/kubernetes dependency to v0.23.3 #2068
Moving from HC Migration to Disaster Recovery in documentation #1953
test: skip ovnkube-master in crashing pods check #2103
bump openshift/api and go1.19 for fmt #2096
Fixing issue between UpdatingVersion and UpdatingConfig at InPlace Up… #1978
Add tags and rename cloud instance name suffix #1779
fix(ibmcloud): Initialize image registry config on creates and bad config #2091
And 10 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-58739 : bump github.com/golang/glog to version v1.2.4 #107
OCPBUGS-56064 : tech debt: rework vendor patches #92
OCPBUGS-53906 : bump github.com/golang-jwt/jwt/v4 to v4.5.2 #85
OCPBUGS-36066 : CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 #72
STOR-1408 : Chore: Update OWNERS_ALIASES #59
Updating ose-ibm-vpc-block-csi-driver-container image to be consistent with ART #58
STOR-1408 : Chore: Update ibm-vpc-block-csi-driver to the latest release #55
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #48
OCPBUGS-18105 : [IBM VPC] failed provisioning volume in proxy cluster #43
OCPBUGS-16920 : UPSTREAM: 164: Disable UUID check on xfs (#164) #45
OCPBUGS-19188 : Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #44
OCPBUGS-16783 : Chore: Update OWNERS and OWNERS_ALIASES #41
OCPBUGS-12613 : 4.14: UPSTREAM: 157: K8S and grpc package upgrade #39
STOR-1158 : Merge v5.1.5 for OCP 4.14 #38
OCPBUGS-12325 : UPSTREAM: 118: Update golangci-lint #37
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #36
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #33
OCPBUGS-10125 : UPSTREAM: 121: Add missing Kubernetes deps #34
STOR-1011 : Rebase to v5.1.1 for OCP 4.13 #31
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #29
Full changelog
OCPBUGS-59775 : [IBM VPC] set offlineExpansion to false in e2e test manifest #150
OCPBUGS-42438 : Reorder static resources to create RBAC first #130
OCPBUGS-36072 : CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 #121
OCPBUGS-33641 : [ibm-vpc] Scheduling issue on IBM Cloud Bare Metal nodes #116
OCPBUGS-25604 : Bump go.opentelemetry.io/contrib/instrumentation/net/http/otelgrpc to v0.46 #103
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #99
STOR-1487 : Provide BYOK encryption support for OpenShift on IBM Cloud VPC #93
OCPBUGS-23862 : OCPBUGS-22603: CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46.0 #88
STOR-1402 : Chore: update libraries in all operators [4.15] #92
STOR-1485 : Support for endpoint override from config #89
OCPBUGS-22924 : Removing unncessary imagePullSecrets #87
STOR-1276 : Enable support for mounting volumes with SELinux context #77
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #86
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #80
OCPBUGS-19215 : Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #78
OCPBUGS-18105 : [IBM VPC] failed provisioning volume in proxy cluster #74
OCPBUGS-16654 : Revert revert “STOR-1065: Rename node-driver-registrar… #69
OCPBUGS-16571 : Bump library-go to remove dependency on goproxy #71
OCPBUGS-16783 : Chore: Update OWNERS #70
Revert “STOR-1065: Rename node-driver-registrar RBAC and Rework sidecar bindings to bind common ClusterRoles” #68
STOR-1065 : Rename node-driver-registrar RBAC and Rework sidecar bindings to bind common ClusterRoles #64
OCPBUGS-14824 : Bump ibm-vpc-block-csi-driver-operator library-go #65
OCPBUGS-12614 , STOR-1168 : Bump common libraries #57
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #56
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #55
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #54
OCPBUGS-8683 : Add management workloads annotations #53
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #52
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #51
STOR-947 : support disabling default StorageClass via ClusterCSIDriver #48
Bug 2106736 : Add multiplePVsSameID capability #50
STOR-1078 : Add hostPaths necessary for SELinux mounts #49
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #47
STOR-1060 : Update deployment files for snapshot support #45
Full changelog
OCPBUGS-56064 : tech debt: rework vendor patches #49
OCPBUGS-53538 : bump github.com/golang-jwt/jwt/v4 to v4.5.2 #45
OCPBUGS-36012 : CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 #41
Updating ibm-vpc-node-label-updater-container image to be consistent with ART #33
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #26
OCPBUGS-19217 : Updating ibm-vpc-node-label-updater images to be consistent with ART #25
OCPBUGS-12510 : UPSTREAM: 20: Bump (golang.org/x/net): to address CVE-2022-41723 #23
Updating ibm-vpc-node-label-updater images to be consistent with ART #22
Updating ibm-vpc-node-label-updater images to be consistent with ART #21
Updating ibm-vpc-node-label-updater images to be consistent with ART #20
Updating ibm-vpc-node-label-updater images to be consistent with ART #19
STOR-1011 : Rebase to v4.3.0 for OCP 4.13 #18
Updating ibm-vpc-node-label-updater images to be consistent with ART #16
Full changelog
Fix typo in link to gathers.json #876
Update documentation #783
update DVO metrics example in the sample archive #777
OCPBUGS-14270 : Revert “Implement periodic gathering as a job in tech … #785
And 118 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-18863 : Updating ironic-rhcos-downloader images to be consistent with ART #93
Binary should be compiled on rhel9 #89
Updating ironic-rhcos-downloader images to be consistent with ART #88
Updating ironic-rhcos-downloader images to be consistent with ART #87
Updating ironic-rhcos-downloader images to be consistent with ART #86
Updating ironic-rhcos-downloader images to be consistent with ART #85
Updating ironic-rhcos-downloader images to be consistent with ART #84
Full changelog
OCPBUGS-49836 : Fix subnet validation #49
OCPBUGS-18864 : Updating ironic-static-ip-manager images to be consistent with ART #40
OCPBUGS-14614 : Remove provisioning netowrk route from “lo” #39
OCPBUGS-4501 : Flush addresses on provisioning interface with global scope only #35
Updating ironic-static-ip-manager images to be consistent with ART #34
Updating ironic-static-ip-manager images to be consistent with ART #33
Full changelog
OCPBUGS-19254 : Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #152
OCPBUGS-30413 : update unit tests in egress/dns-proxy #168
OCPBUGS-19261 : Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #153
OCPBUGS-19107 : Updating ose-egress-http-proxy images to be consistent with ART #150
OCPBUGS-19239 : Updating openshift-enterprise-egress-router images to be consistent with ART #151
OCPBUGS-18860 : Updating openshift-enterprise-base-rhel9 images to be consistent with ART #149
OCPBUGS-18853 : Updating openshift-enterprise-base images to be consistent with ART #148
OCPBUGS-10176 : 15143307: Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #132
OCPBUGS-10163 : Updating openshift-enterprise-egress-router images to be consistent with ART #131
OCPBUGS-10181 : 15143312: Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #133
NE-1304 : container builds: switch to haproxy26 package #141
OCPBUGS-11385 : Removed chroot setting #137
egress: update owners #139
OCPBUGS-11595 : Revert “[NE-1267] container builds: switch to haproxy26 package” #138
egress/dns-proxy/Dockerfile: switch to haproxy26 package #136
OCPBUGS-10003 : Revert “bump RHEL8 egress-dns-proxy image to haproxy26” #134
Updating ose-egress-http-proxy images to be consistent with ART #130
Updating openshift-enterprise-base-rhel9 images to be consistent with ART #129
Updating openshift-enterprise-base images to be consistent with ART #128
Add jupierce as approver / remove Clayton #127
rhel9 base image: Fix build failure #126
Dockerfile: add RHEL9 base image dockerfile #124
bump RHEL8 egress-dns-proxy image to haproxy26 #125
Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #122
Updating ose-egress-http-proxy images to be consistent with ART #120
Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #123
Updating openshift-enterprise-base images to be consistent with ART #119
Full changelog
OCPBUGS-24158 : Updating kube-state-metrics-container image to be consistent with ART #105
MON-3548 : Bump openshift/kube-state-metrics to v2.10.1 #107
MON-3548 : Merge tag v2.10.1 #106
OCPBUGS-21760 : bump x/net to v0.17.0 #100
add machine424 and rexagod to OWNERS #96
OCPBUGS-19256 : Updating kube-state-metrics images to be consistent with ART #97
Merge with upstream/release-2.9 #95
OCPBUGS-12347 : Update 4.14 kube-state-metrics image to be consistent with ART #94
Bump openshift/kube-state-metrics to v2.8.2 #92
OCPBUGS-10177 : Updating kube-state-metrics images to be consistent with ART #91
Bump openshift/kube-state-metrics to v2.8.1 #90
OCPBUGS-6320 : Merge upstream/release-2.8 #89
Updating kube-state-metrics images to be consistent with ART #88
OCPBUGS-4275 : Update github.com/prometheus/exporter-toolkit #87
Bump openshift/kube-state-metrics to v2.7.0 #82
OCPBUGS-4089 : cherry-pick, do not expose ingress path metric when service is nil #81
OCPBUGS-3924 : cherry-pick, autoscaling/v2beta2 HorizontalPodAutoscaler is deprecated in v1.23+ #80
Full changelog
NO-JIRA: Add DOWNSTREAM_OWNERS (release 4-15). #228
OCPBUGS-24142 : Updating ose-kube-storage-version-migrator-container image to be consistent with ART #201
OCPBUGS-19227 : Updating ose-kube-storage-version-migrator images to be consistent with ART #199
bump(*): vendor bump to sync with kubernetes fork #198
OCPBUGS-10153 : Updating ose-kube-storage-version-migrator images to be consistent with ART #194
OCPBUGS-6231 : Update golang version and ART images #188
Full changelog
OCPBUGS-31801 : Bump opentelemetry #39
OCPBUGS-24118 : Updating ose-kubevirt-cloud-controller-manager-container image to be consistent with ART #28
OCPBUGS-22061 : Bump golang.org/x/net to v0.18.0 #34
OCPBUGS-19193 : Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #25
Auto sync upstream 2023 09 15 20 36 #24
Auto sync upstream 2023 05 15 20 44 #22
Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #21
Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #20
Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #19
Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #18
Updates the component owner field to match the new categories #17
Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #16
Full changelog
fix for OCPBUGS-58587: CVE-2024-45339 openshift4/kubevirt-csi-driver #69
OCPBUGS-29793 : [release-4.15] Address https://github.com/advisories/GHSA-fg9q-5cw2-p6r9: Restrict access to infrastructure PVCs by requiring matching infraClusterLabels on tenant PVCs #33
OCPBUGS-19115 : Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #23
Ensure volume is removed before returning success (#90) #22
Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #20
CNV-29315 : kubevirt-csi unable to unpublish volumes in the event a VM is unexpectedly destroyed #21
Auto sync upstream 2023 02 12 09 #19
Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #18
Upstream Sync Oct 31st #16
Full changelog
OCPBUGS-26506 : Updating ose-libvirt-machine-controllers-container image to be consistent with ART for 4.15 #282
OCPBUGS-26045 : Replace genisoimage with xorriso in 4.15 to allow rhel9 bump #272
OCPBUGS-25772 : Add Snyk file to exclude vendor directory on scan #278
Add workaround for SLOF regression #263
client/domain: Remove spice as domain grahics #260
OCPBUGS-19187 : Updating ose-libvirt-machine-controllers images to be consistent with ART #262
OCPBUGS-18338 : Fix CI by running tests natively by default #261
Updating ose-libvirt-machine-controllers images to be consistent with ART #259
Updating ose-libvirt-machine-controllers images to be consistent with ART #258
Updating ose-libvirt-machine-controllers images to be consistent with ART #257
Updating ose-libvirt-machine-controllers images to be consistent with ART #254
Remove myself (frobware) from OWNERS #253
refactor: replace github.com/ghodss/yaml with sigs.k8s.io/yaml #252
Update vendoring master #251
Updating ose-libvirt-machine-controllers images to be consistent with ART #243
Fix go fmt and update controller image tag #242
Full changelog
OCPBUGS-60214 : [release-4.15] OCPBUGS-53248: Enforce VIPs to be collocated at the same host #4988
OCPBUGS-59737 : Remove MachineConfigNode CRD from manifests #5188
OCPBUGS-48284 : Do not run resolv-prepender from NM dispatcher #4783
OCPBUGS-57340 : Do not enable on-prem-resolv-prepender.path for UPI #5115
OCPBUGS-36688 : Add ipsec connect wait service #4937
OCPBUGS-54206 : Update format verbs for alert logs #4943
OCPBUGS-54176 : Update ObservedGeneration in KubeletConfig #4944
OCPBUGS-43742 : Soften haproxy timeout for kubeapi probe #4663
OCPBUGS-50526 : Add clarification to invalid maxUnavailable alert #4842
OCPBUGS-48583 : trying to wait for sub-contorllers #4796
OCPBUGS-46034 : Remove trailing periods from AWS provided hostnames #4745
OCPBUGS-44565 : Post upgrading from 4.14 to 4.15.36, the observedGeneration count increased tremendously #4702
OCPBUGS-42137 : Removal of additionalTrustBundle CA does not remove certificate from node backport #4687
OCPBUGS-44240 : Disable ESP offload for OVS attached interfaces #4684
MCO-1341 : Backport Telemetry to 4.15 #4648
OCPBUGS-42110 : Do not use ‘restart’ for ‘oneshot’ service #4621
OCPBUGS-43582 : Panic seen in CI job for MCC pod #4653
OCPBUGS-43575 : MCPs report wrong number of nodes when we move nodes from one custom MCP to another custom MCP #4647
OCPBUGS-37704 : Make logging configurable for on-prem components #4501
OCPBUGS-32329 : Fix configure-ip-forwarding.sh #4324
OCPBUGS-37551 : On-Prem resolv prepender to watch for NM changes #4499
OCPBUGS-38712 : SCC-pinning for openshift workloads #4540
OCPBUGS-38370 : Revert “MCD-pull: run after network-online.target in Azure” #4525
OCPBUGS-37768 : Move StartLimitIntervalSec to Unit section #4506
OCPBUGS-37629 : Openshift uncordoned compute-node that was intentionally cordoned #4495
OCPBUGS-36863 : Copy RHEL9 binaries used in HCP #4476
OCPBUGS-35220 : Check both ready and health ingress endpoints #4398
OCPBUGS-30139 : [release-4.15] Use NM’s dns-change event for resolv.conf #4220
OCPBUGS-36769 : daemon: Handle correctly OS Version for 4.1 and 4.2 bootimages #4461
OCPBUGS-36550 : MCD-pull: run after network-online.target in Azure #4454
OCPBUGS-27436 : Fix mirrorSourcePolicy error prompt imagecontentsourcepolicies #4431
OCPBUGS-36258 : daemon/update: disable systemd unit before overwriting #4441
OCPBUGS-32092 : Decrease logs of haproxy #4313
OCPBUGS-35010 : set required-scc for openshift workloads #4393
OCPBUGS-31461 : Remove weights from ingress check script #4290
OCPBUGS-33847 : If multiple hostnames are returned, use the first one for the Node name #4373
OCPBUGS-20152 : Don’t error if the certs.d dir doesn’t exist yet #4358
OCPBUGS-32922 : [release-4.15] add cluster fleet evaluation support to mco #4334
OCPBUGS-28926 : [4.15] crio: update pids limit to be -1 #4163
OCPBUGS-28545 : Delete state files on reboot only #4311
OCPBUGS-31820 : Remove the condition for checking the multiple ovs-if-br-ex profiles #4309
OCPBUGS-27029 : Log network service output to console #4113
OCPBUGS-31646 : fix: resources were in the wrong indentation level #4301
: OCPBUGS-31576: kubelet: restorecon necessary files on kubelet’s prestart #4297
OCPBUGS-30884 : Prevent OVS-configuration to run before kdump #4259
OCPBUGS-31383 : make verify should use MCO’s kube version #4282
OCPBUGS-30971 : add preferredduringscheduling annotation to kube-rbac-proxy-crio #4264
OCPBUGS-29731 : Delete image openshift/openshift-proxy-pull-test #4199
OCPBUGS-30093 : Mount /run/nodeip-configuration into coredns containers #4229
OCPBUGS-30761 : add static pods for rbacproxy #4252
OCPBUGS-30017 : CRI-O: Add missing Devices annotation to CRI-O configuration #4227
OCPBUGS-29339 : annotate on-prem static pods for workload partitioning #4179
OCPBUGS-29797 : set nodeStatusReportFrequency #4211
OCPBUGS-29166 : ovs-configure: fix vlan_parent calculation #4171
OCPBUGS-29651 : nmstate, configure nmstate to keep service yamls #4192
OCPBUGS-29038 : Add existing kubeletconfig/ctrcfg mc-name-suffix annotation #4166
OCPSTRAT-1062 : [4.15] crio: enable log linking by default in 4.15 #4174
OCPBUGS-29105 : On-prem coredns manifests should not be generated for GCP #4169
OCPBUGS-28909 , OCPBUGS-28910 : Run resolv-prepender entirely async #4161
CORS-3169 : Add support for in-cluster DNS on Cloud Platforms when cloud DNS cannot be used #4155
OCPBUGS-28237 : daemon: allow the user to override drains on IR changes #4148
OCPBUGS-27486 : Add Image Credential Provider flags for Kubelet on AWS #4134
OCPBUGS-27307 : Fix typo in AWS node env unit #4130
OCPBUGS-25424 : Add \n in cert_writer for old cert methods and skip cloudCA validation #4077
OCPBUGS-26240 : Azure Run ovs-configuration.service before dnsmasq.service #4101
OCPBUGS-25948 : kubelet: fix kubelet labels #4090
OCPBUGS-25228 : crio: drop automatic image cleanup on upgrades #4072
OCPBUGS-17877 : daemon: Add support for new nmstate logic #4020
OCPBUGS-21597 : Alleviate confusion over mco_state #4000
OCPBUGS-24012 : Add templates for gc_thresh sysctls #4048
OCPBUGS-24035 : execute cert related processes to ensure proper rotation #4050
MCO-681 , OCPBUGS-20427 : Add Key State Metrics, No datapoint found when querying up certain registered metrics #4052
OCPBUGS-19352 : Fix bootstrap with NTO Operator and duplicate MachineConfigs #3972
COS-2526 : CoreOS: Remove imgid field in coreos aleph #4034
TRT-1377 : Revert #4028 “OCPBUGS-22324: Wait for br-ex up event before node-valid-hostname” #4053
TRT-1375 : Revert #3965 “MCO-681, OCPBUGS-20427: Add Key State Metrics, No datapoint found when querying up certain registered metrics” #4051
MCO-664 : adds on-cluster build dev preview docs #3885
OCPBUGS-24177 : fix race for MCN creation #4049
OCPBUGS-15934 : unit test ctrrcfg uses *resource.Quantity to use *resource.Quantity #4044
OCPBUGS-22324 : Wait for br-ex up event before node-valid-hostname #4028
MCO-681 , OCPBUGS-20427 : Add Key State Metrics, No datapoint found when querying up certain registered metrics #3965
OCPBUGS-24019 : Add ownership annotations to TLS artifacts #4045
MCO-795 : MCO-813: MCO-473: Implement Upgrade-Monitor, FeatureGate, and MachineConfigNode types #4012
OCPBUGS-23255 : Add FIPS information to oldconfig when checking if reboot is needed #4033
OCPBUGS-23484 : kubevirt, Activate nodeip-configuration.service #4039
OCPBUGS-23432 : Use shorter IP label for keepalived VIP #4040
OCPCLOUD-1609 : Fix syntax in vsphere-hostname.yaml for CAPI machines #4037
OCPBUGS-23209 : workaround nmstate bug by configuring ipv{4,6} addresses #4026
OCPBUGS-22200 : Retry fetching OpenStack hostname if it fails #3990
OCPBUGS-22721 : Don’t retry node-ip show in resolv-prepender #4017
MCO-772 : controller: allow custom pool configs to take priority #4015
OCPBUGS-18414 , OCPBUGS-18456 , OCPBUGS-18458 : Configures SSH Keys and Password for core, fixes config drift degradation #3946
Use the bridge interface name for ofport request #3998
OCPBUGS-7638 : typo s/iface_default_hint_file/default_bridge_file/ #4004
OCPBUGS-16871 : MCO - currentConfig missing on the filesystem #3963
OCPBUGS-20369 : Require a hostname override for AWS #3979
OCPBUGS-21814 : bump library-go and k8s dependencies to most recent version #3988
OCPBUGS-19736 : configure-ovs: handle SIGINT and SIGTERM #3982
Add kernel-64k kernelType #3903
MCO-593 : Consume MCO API and CRDs from openshift/api #3747
Get the nmstate pinned package from kojihub when building on top of a CentOS base image #3954
CRI-O: Use 127.0.0.1 for stream server with random port #3853
OCPBUGS-20499 : gcp-routes: don’t exit on crictl failures #3977
OCPBUGS-7638 : Allow specifying the interface for br-ex #3696
OCPBUGS-20338 : dashboard should detect unknown and not ready for not ready dashboard #3964
OCPBUGS-19722 : Informers are setup with incorrect namespace #3955
OCPBUGS-15087 : templates: Introduce kubelet-dependencies.target #3865
OCPBUGS-17841 : Ensure gcp-routes hack for internalLB hairpin traffic works for SGW #3953
OCPCLOUD-1609 : Set guestinfo.hostname for CAPI VMs on vSphere #3949
OCPBUGS-19708 : Support to append the duplicate kernel arguments to the rendered MC #3947
OCPBUGS-18771 : Consider ingress VIPs when selecting node IP #3943
MCO-424 : Drop machine-os-content references #3364
OCPBUGS-19992 : Add v6-primary dual stack support to VSphere UPI #3670
OCPNODE-1799 : support icsp and idms objects #3898
Improve kubelet error log #3914
OCPBUGS-18772 : Use image exists in resolv-prepender instead of wc -l #3910
MCO-707 : Strip registry transport from os image URL for comparison #3857
OCPBUGS-15583 : Revert “Revert “fix nodeStatusUpdateFrequency”” #3890
OCPBUGS-17811 : add certificate input to bootstrap mcs #3876
MCO-746 : make buildcontroller tests less flaky #3905
OCPBUGS-18902 : Internal Registry Secrets merge causing excessive API calls #3912
MCO-664 : adds e2e for on-cluster build dev preview #3807
Dockerfile: update local copy to OCP 4.15 image #3922
OCPBUGS-19365 : Ignore invoking nbctl calls if its SDN #3926
OCPBUGS-15910 : After dual-stack conversion reconcile IPFamilies #3909
OCPBUGS-18800 : fix merged image registry CA behavior #3851
mod: Update rpmostree-client-go #3916
OCPBUGS-13044 : daemon: always use podman cp to copy extensions container content #3921
OCPBUGS-18906 : Remove dependency on k8s.io/kubernetes packages #3913
OCPBUGS-19097 : Updating openshift-proxy-pull-test images to be consistent with ART #3918
OCPBUGS-18772 : resolv-prepender: avoid pulling baremetalRuntimeCfgImage again #3907
OCPBUGS-19179 : Updating ose-machine-config-operator images to be consistent with ART #3919
OCPBUGS-16905 : install: Recreate and delayed default ServiceAccount deletion #3895
MCO-765 : Examine/Remove memory limits on MCO pods #3915
MCO-731 : Move services machine-config-daemon-pull.service and machine-config-daemon-firstboot.service before ovs-configuration.service #3858
MCO-708 : Extract and merge kernel arguments from /proc/cmdline #3856
configure-ovs-network: Add tun device support #3618
OCPBUGS-11437 : MCO keeps the pull secret to .orig file once it replaced #3759
OCPBUGS-9972 : Fix azure routes hack for ovnk pods towards internalLB on master nodes in SGW mode #3878
OCPBUGS-18442 : MCO is degraded if not install image registry operator #3901
OCPBUGS-18097 : ensure cconfig is not updated too frequently #3891
OCPBUGS-18086 : Quiet controller noisiness #3886
OCPBUGS-16035 : daemon: create /etc/systemd/network directory on node #3883
Revert “fix nodeStatusUpdateFrequency” #3887
OCPBUGS-17787 : Fix sysctl breaking dots in paths #3870
OCPBUGS-16733 : on-prem: run resolv-prepender on NM reapply event #3827
OCPBUGS-15583 : fix nodeStatusUpdateFrequency #3784
OCPBUGS-17810 : temporarily remove cert observability fields, add storageversionmigration for machineconfigpools,controllerconfig #3866
OCPBUGS-11832 : SSHkeys fails to write on upgrade to 4.13.rc3 #3810
MCO-564 : Make MCD aware of on-cluster builds #3848
MCO 566: MCO 662 Wire up productionalized BuildController in Machine OS Builder binary and choosing backend image builder #3861
MCO-605 : MCO-550: Remove Certificates from MachineConfig #3787
MCO-573 : Wire up security/trust/pull secrets between rpm-ostree and internal registry #3806
OCPBUGS-17701 : daemon: igmore mounting MCD pod content when target is “/” #3860
mcs: Use certwatcher #3744
MCO-729 : BuildController should allow cluster admins to provide a custom Dockerfile #3847
MCO-564 : Make NodeController aware of BuildController #3817
OCPBUGS-17568 : Agent-based install process the container machine-config-controller will be oom #3862
OPNET-343 : Restore node-ip for kubelet in dual-stack vSphere #3859
OCPBUGS-17683 replace .. with : on registry CA file paths #3854
operator: remove metrics related log #3855
MCO-565 : MCO-568: MCO-659: MCO-660 On-cluster build opt-in function, building machine-os-builder stub, RBAC and service acct inclusions. Deletes deployment rather than scale down to 0 without label #3834
MCO-588 : Update ignition spec to 3.4, disallow ignition KernelArguments for now #3814
OCPBUGS-17433 : Sync featuregate controller during the node config controller sync #3846
OCPBUGS-8938 : OCPBUGS-15202: MCO-555: kube-rbac-proxy addition #3663
MCO-654 : forcefile should always trigger an OS update #3790
OCPBUGS-14945 : add HostToContainer propagation to all hostPath volume mounts #3792
MCO-532 : Finish lease type migration #3842
OCPBUGS-13825 : The machine-config-controller pod restart in SNO+1 causing daemonsets to restart #3838
OCPBUGS-14965 : Run hostnamectl with systemd-run #3746
install: Fix dash-to-hyhen for 04_kube_rbac_proxy_config.yaml prefix #3837
OCPNODE-1714 : files: add skip_mount_home to storage.conf #3777
OCPBUGS-16227 : make sure sshKey are not emptied out on firstboot #3829
daemon: Two minor fixes for reexec #3835
daemon: Remove even more dead legacy OS update code #3820
MCO-552 : implement the ability for the MCO to handle image registry certificates #3770
OCPBUGS-17156 : daemon: Always replace binary #3832
Revert “daemon: Make binary writing idempotent” #3831
OCPBUGS-16921 : daemon: Make binary writing idempotent #3825
Revert “MCO-565: MCO-568: MCO-659: MCO-660 On-cluster build opt-in function, building machine-os-builder stub, RBAC and service acct inclusions” #3830
Revert “ add Passwd to bootstrap served ignition” #3828
OCPBUGS-15367 : The kubeconfig copied on to each node has 644 permissions #3808
MCO-597 : Remove the MCO’s dependency on journal reads #3822
fix certExpiry description #3823
OCPBUGS-16227 : add Passwd to bootstrap served ignition #3811
MCO-565 : MCO-568: MCO-659: MCO-660 On-cluster build opt-in function, building machine-os-builder stub, RBAC and service acct inclusions #3763
OCPNODE-1717 : Make cgroupsv2 default in OCP-4.14 #3789
OCPNODE-1655 : Apply node-cluster dashboard as a config map #3708
MCO-607 : MCO-237: Keep track of certs in ControllerConfigStatus #3756
MCO-687 : Fix metrics e2e test #3813
MCO-585 : MCO-569: MCO-563: MCO-586: Introduces BuildController #3731
MCO MCO-424: daemon: Remove old legacy OS update path #3583
MGMT-14843 : ovs-configuration service should copy the statically configured address even if the method isn’t manual. #3774
OCPBUGS-16128 : daemon: Copy matching binary to host, re-exec with it #3799
MCO-596 : Deprecate the login monitor #3791
kubevirt: Configure IPv6 arp proxy default gw #3780
operator: Stop mounting /etc/kubernetes/ca.crt #3730
OCPBUGS-15613 : Soften grep pattern for ingress default router #3775
Bug OCPBUGS-15233: OpenStack: fix IPv6 configuration #3785
OCPBUGS-11997 : Prevent NM from unsetting the hostname #3794
add wasm extension #3776
set MCO namespace on all events #3767
OpenStack: restrict IPv6 configuration #3781
Update 0000_90_machine-config-operator_01_prometheus-rules.yaml #3779
OCPBUGS-14674 : set pool alert back to zero in more default scenarios. #3733
OCPBUGS-10115 : update image to use golang-1.20 #3766
OCPBUGS-15728 : Fix machine config drifts when deploying with platform external #3773
faq: Talk about “no enabled repositories” #3772
OCPBUGS-14185 : change the message annotation to description #3721
OKD-174 : Dockerfile: OKD: Reenable extensions image on SCOS #3741
OCPBUGS-15575 : Dockerfile: pin to nmstate-2.2.9 #3769
OCPBUGS-10924 : Switch default SA to machine-config-operator #3740
trivial: Fix namespace for kube api server operator #3762
OCPBUGS-8403 Deleting SSH keys / password hashes should not degrade MachineConfigPool / node #3606
OWNERS: Update onwer list #3761
OCPBUGS-4820 : Controller version mismatch causing degradation during upgrades #3738
MCO-640 : Move all log functions to klog #3734
OCPBUGS-14399 : Minor fix to support protectKernelDefaults field in Kubelet Config #3736
MCO-595 : Remove MCO’s pending config workflow #3700
OCPCLOUD-2010 : Re-vendor api and library-go for external platform support #3745
bootstrap: Clarify that “root ca” is really “MCS CA” #3728
add ipsec extension #3726
OpenStack: configure ipv6 addresses #3705
OCPBUGS-13656 : MCO-632: Update kube deps to 1.27.2 #3735
OCPBUGS-14612 : Improve logging for IPI deployments #3725
OCPBUGS-4370 : Add label to VIP via keepalived #3683
OCPBUGS-14793 : Allow userfaultfd syscall to be used by unprivileged users #3724
OCPBUGS-14272 : Race condition in TestMCDRotatesCertsOnPausedPool #3718
OCPBUGS-13547 : [OCPCLOUD-2034] Update Library-go and API for new featuregate changes #3688
OCPBUGS-2177 : MCO-634: add support for a node pool hierarchy #3505
OCPBUGS-13860 : Fix missing apiVersion and kind fields for embedded resources #3713
OCPBUGS-3176 : Disable global ipv4 and ipv6 forwarding for OVN deployments #3676
OCPBUGS-8447 : MCO-496: Support ignition versions 3.3 + 3.4 but keep version 3.2 as default #3576
OCPBUGS-13547 : Use payload-version flag to set release version consistently across components #3701
OCPBUGS-12885 : daemon: stop using nmstatectl persist-nic-names --inspect on el9 #3685
OCPBUGS-11304 : daemon: event only on actual OS updates #3695
OCPBUGS-11652 : kubelet: add enableSystemLogQuery #3645
OCPBUGS-12980 : daemon: write certs in firstboot-complete path #3694
OCPBUGS-11670 : mcc_drain_err metric should not be served for removed nodes #3689
OCPBUGS-12456 : fix duplicate RotateKubeletServerCertificate setting #3686
OCPBUGS-12951 : daemon: Don’t traverse /run/ostree/auth.json symlink #3691
OCPBUGS-11702 , OCPBUGS-4476 : keepalived/ingress: change healthcheck script #3441
OCPBUGS-11992 : ControllerConfig’s Proxy field should not be marked as embedded resource #3682
OCPBUGS-11162 : Do not trigger openshift-azure-routes/openshift-alibaba-routes service based on file existence #3643
OCPBUGS-10235 : Add quotes to variable with -z #3679
OCPBUGS-11280 : Fixing forcedns dispatcher script permission issue for assisted sno rhel9 upgrade #3648
OCPBUGS-7836 : The MCD has a non-functional pivot command that should be removed #3666
Test Revert “Block RHCOS gcp-routes service on both masters and workers” #3672
Accomodate ART limitation in parsing [[]] bash #3669
Block RHCOS gcp-routes service on both masters and workers #3619
OCPBUGS-10787 : Persist static IP addressed NIC names from rhel8 #3650
OCPBUGS-5356 : changed error handling so no runtime error #3651
OCPBUGS-4877 : End the operator’s “unknown field” logspam by marking controllerconfig embedded fields as embedded so they validate #3662
MCO-407 : add support for operator metrics #3537
Updating openshift-proxy-pull-test images to be consistent with ART #3593
OCPBUGS-4122 : Do not add deep nested scope to atomic transport #3653
OCPBUGS-10414 : Fix regex dot in coredns config file #3626
OCPBUGS-11092 : daemon: write certificate in OnceFrom and HyperShift #3654
remove container runtime flag #3640
OCPBUGS-4963 : Enable base nodeip-configuration for vsphere upi #3460
configure-ovs: would not retry on some errors #3625
OCPBUGS-10598 : Splitting NetworkManager-onprem.conf.yaml to 2 files: #3620
OCPBUGS-10379 : configure-ovs: support UUID in vlan.parent #3623
OCPBUGS-8676 : Fix kubelet.service node-ip for v6-primary dual-stack #3592
getPoolsForNode: Use constant MachineConfigPoolWorker instead of “worker” string #3635
MCO-423 : Adds OS image override test #3558
OCPBUGS-9969 : daemon: Drop duplicate --authfile used in run #3611
OCPBUGS-8446 : MCO-503: daemon: have a special path to sync in certs #3575
OCPBUGS-7559 : Remove hard requirement for the afterburn from early-running aws-related services #3585
Removing jstuever from OWNERS_ALIASES #3554
OCPBUGS-8113 : daemon: Only switchkernel if we are doing an OS update or kernel change #3600
OCPBUGS-9685 : daemon: Always remove pending deployment before we do updates #3599
Make OKD/SCOS Dockerfile regexes match again after rhel-coreos image name change #3597
Switch to rhel-coreos (9) #3596
OCPBUGS-8113 : daemon: Make switchKernel less stateful #3580
OCPBUGS-8523 : Revert “daemon: Temporarily copy auth file with more open perms on FCOS” #3591
Update library go to promote AWS CCM to out of tree #3590
machineconfigpool: Clarify status.configuration description #3371
daemon: Remove noisy log message #3588
OCPBUGS-5872 : Wrap podman commands in a while loop #3581
configure-ovs: permanent retry on failure #3544
OCPNODE-1495 : Default the cgroup version to “v1” via base template controller #3563
OCPBUGS-1662 : mcd_update_state metric should have a single time-series per node #3571
OPNET-208 : Prefer ipv6 on v6-primary dual stack deployments #3565
OCPBUGS-7719 : Add back cleanupDuplicateMC #3559
OCPBUGS-7903 : Pool degraded with error: rpm-ostree kargs: signal: terminated #3572
Fixing platform path order as platform specific path should be the last #3574
MCO-417 : MCO-418: MCD watches/create/update password with MachineConfig #3539
Regenerate controllerconfig.crd.yaml #3567
OCPBUGS-7743 : Adding dnsmasq config for sno #3551
WRKLDS-705 : Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #3568
OCPBUGS-7909 : Fix permissions on resolv.conf #3570
OCPBUGS-7896 : MCO should not add keepalived pod manifests in case of VSPHERE UPI #3569
OCPNODE-1501 : add protectKernelDefaults to kubelet config #3556
OPNET-197 : Remove node-ip from kubelet for dual-stack vSphere #3518
OSASINFRA-3091 : External LB support for on-prem platforms #3519
OCPBUGS-6682 : Switch from ifconfig to iproute2 #3524
OCPBUGS-1565 : Prevent possible split-brain scenario with keepalived unicast #3342
Fix typo in ctrcfg,kcfg docs #3547
OPNET-133 : Enabling remote worker feature only for baremetal platform #3540
OCPBUGS-7207 : configure-ovs: fix mtu-migration cleanup #3545
OCPBUGS-630 : controller: default overwrite to true for files #3525
Bug 2027000 : The user is ignored when we create a new file using a MachineConfig #3541
OCPNODE-1416 : CGroupsV2 feature GA in MCO #3520
Add doc for IDMS and ITMS CRDs #3530
OCPBUGS-5497 : MCDRebootError alarm disappears after 15 minutes #3507
OCPBUGS-6945 : Fixes node OS detection #3529
OCPBUGS-5888 : Don’t switch to the “live” certificate bundle until after first ControllerConfig is generated #3513
Bug 2104978 : fix degraded pool state message #3488
OCPBUGS-5520 : MCDPivotError alert fires due temporary transient failures #3523
Preserve logs from Podman executions #3516
daemon: Add some comments on the firstboot reboot sleep #3533
OCPBUGS-3612 : configure-ovs: optionally generate configuration in /run #3467
OCPBUGS-3909 : Don’t validate contents and mode for masked units #3437
OCPBUGS-3988 : haproxy - use curl for validation #3512
OCPBUGS-6213 : Update MCO images to be consistent with ART #3514
OCPBUGS-6004 : Adding network type parameter to nodeip-configuration service #3491
OCPBUGS-5188 : MCCDrainErr should reference the affected node #3477
OCPBUGS-6092 : Improvements for configure-ovs.sh #3509
ctrcfg: update CRD to always allow crun #3508
OCPCLOUD-1818 : Bump library-go to move vSphere to external CCM #3484
OCPBUGS-4049 : Only check image type if we are sure there is work that needs to be done #3464
OCPNODE-1330 : Set the CGroups version explicitly to “v1” #3486
Add CRD ImageDigestMirrorSet,ImageTagMirrorSet #3037
Bug 2113973 : Avoid ‘too restrictive’ SCC problems by being more explicit #3502
OCPBUGS-6018 : controller: don’t render new MC until base MCs update #3501
OCPBUGS-904 : Alerts from MCO are missing namespace #3498
OCPBUGS-5379 : There are not enough logs in case “oc extract” is stuck in mco first boot #3493
MCO-456 : Fix e2e test jobs #3492
OCPBUGS-5872 : Wrap podman commands in a while loop #3481
OCPBUGS-5696 : remove goutils from dependency tree #3480
Add mkowalsk as a bare metal reviewer and approver #3482
install/0000_90_machine-config-operator_01_prometheus-rules: Use labels for MCC logs #3470
fix unit test exit code propagation #3476
OCPBUGS-4769 : daemon: Explicitly pull image before running #3471
OCPBUGS-4521 : kubelet client certificate verification ca bundle should match kube-apiserver #3458
Bump openshift/api and update CSIMigration* feature gates #3469
OCPBUGS-5001 : install/0000_90_machine-config-operator_01_prometheus-rules: Fix MachineConfigControllerPausedPoolKubeletCA runbook URIs #3462
move envtest helpers into framework package for easier reuse #3428
OCPBUGS-2248 : [alicloud] provider ID not being set for kubelet #3449
MCO-420 : Migrate drain alert to drain controller #3424
Updating openshift-proxy-pull-test images to be consistent with ART #3444
OCPBUGS-4101 : Do not allow empty system reserved values #3439
Bug 1853264 : Fix unbound cardinality for MCDRebootErr and MCDPivotErr #3406
MCO-397 : Add repo doc for using “Layering Phase 0”, detail some of the tradeoffs/consequences/questions #3426
OCPBUGS-4656 : vsphere: check that /etc/hostname is not empty #3451
OCPBUGS-1761 : Imageinspect takes type of error into account, drop podman inspect fallback #3413
Add templates for required sysctls max_map_count and arp_announce #3440
OPNET-133 : Support remote worker in onprem installations #3431
OCPBUGS-4039 : NM resolv prepender: correct permissions for systemd resolved config #3432
OCPBUGS-4039 : NM resolve prepender: remove extra quotes in OKD flow #3430
OCPBUGS-2921 : configure-ovs: copy IP method and warn about low MTU #3411
daemon: Be very loud about failures of ostree-finalize-staged.service #3404
OCPBUGS-1491 : daemon: gate done state on uncordon completion #3399
OCPBUGS-3508 : Don’t make https call to http endpoint #3416
OCPBUGS-1577 : On-prem: Ensure resolv-prepender respects NM dispatcher timeout #3394
Cleanup BM owner aliases #3405
OCPBUGS-2935 : daemon: Stop setting I/O scheduler to bfq #3415
OCPBUGS-3621 : Revert “Substitute skopeo inspect for imageInspect/podman” #3412
Unpin all pinned dependencies #3403
OCPBUGS-2988 : Mount /run/nodeip-configuration into keepalived containers #3384
OCPBUGS-1761 : Substitute skopeo inspect for imageInspect/podman, drop podman inspect fallback #3390
Bug 2100181 : baremetal: clean state generated by NM when run by dracut #3208
Full changelog
OCPBUGS-54170 : Change rhcos release browser url #58
NO-ISSUE: Dummy change to force bumping fcos image to 39.20231101.3.0 #33
NO-ISSUE: Force updating 4.15 CI images #32
OCPBUGS-19133 : Updating ose-machine-os-images images to be consistent with ART #30
Fix condition check for logging #29
Force updating main rhcos image to version 414.92.202303281555-0 #28
Updating ose-machine-os-images images to be consistent with ART #26
Updating ose-machine-os-images images to be consistent with ART #25
Full changelog
OCPBUGS-58769 : Update the github.com/golang/glog module to v1.2.4 #104
OCPBUGS-37727 : Update owners #88
OCPBUGS-24069 : Updating ose-multus-admission-controller-container image to be consistent with ART #77
OCPBUGS-20531 : Update cipher for security hardenings #76
OCPBUGS-21775 : Update master (with CVE fix) #70
OCPBUGS-19094 : Updating ose-multus-admission-controller images to be consistent with ART #69
OCPBUGS-12640 : Bump golang.org/x/net from 0.0.0-20211209124913-491a49abca63 to 0.7.0 #67
Updating ose-multus-admission-controller images to be consistent with ART #65
Updating ose-multus-admission-controller images to be consistent with ART #64
Updating ose-multus-admission-controller images to be consistent with ART #62
Full changelog
OCPBUGS-35047 : Update owners file #240
OCPBUGS-35258 : Thick plugin should not wait for API readiness on CNI DEL #242
OCPBUGS-33477 : Fix CNI cache update function to prevent nil access #234
OCPBUGS-30237 : Reload bootstrap kubeconfig if cert mgr failed to load valid certs #223
OCPBUGS-28271 : Fix SAST scan issues for multus-cni-container [4.15] #219
OCPBUGS-22839 : Adds a wait on unix socket readiness [backport 4.15] #210
OCPBUGS-26535 : Revert #206 “Adds a wait on unix socket readiness [backport 4.15]” #209
OCPBUGS-22839 : Adds a wait on unix socket readiness [backport 4.15] #206
OCPBUGS-23475 : Fix to use lumberjack only for logging files #201
OCPBUGS-21915 : Upstream sync with go.mod update #193
OCPBUGS-19859 : Multus annotation permissions: Certificate duration should be configurable #191
OCPBUGS-18995 : Move chroot from multus main process to its child processes (#1161) #186
OCPBUGS-19364 : Updating multus-cni images to be consistent with ART #183
Per node cert #184
OCPBUGS-18307 : Performance and efficiency improvements in daemon/server mode #180
Use container base image’s /etc/os-release to copy multus binary #179
Change /usr/src/multus-cni/bin to rhel8 based one #178
Cherry pick upstream fix #177
Upstream sync 202308 #176
This change introduces wait to generate config until API is ready #175
Upstream sync to 202307, 99c4481 #168
Add rhel9 binary for multus #173
OCPBUGS-13815 : Fix multus to support CNI plugin which does not create interface #162
OCPBUGS-12519 : Bump golang.org/x/net from 0.1.0 to 0.7.0 (#1039) #160
Updating multus-cni images to be consistent with ART #159
Updating multus-cni images to be consistent with ART #158
Updating multus-cni images to be consistent with ART #157
Updating multus-cni images to be consistent with ART #148
Multus entrypoint should regenerate kubeconfig if secret changes #153
Multus 4.0 upstream sync, strike back #146
Updating multus-cni images to be consistent with ART #142
Full changelog
Revert art-bot PR#42 #43
And 13 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-41804 : [release-4.15]Update owners #59
OCPBUGS-18848 : Updating ose-multus-route-override-cni images to be consistent with ART #48
15393552: Updating ose-multus-route-override-cni images to be consistent with ART #47
15393552: Updating ose-multus-route-override-cni images to be consistent with ART #45
Revert ART changes to fix rhel9 base binary #44
Updating ose-multus-route-override-cni images to be consistent with ART #43
Fix Dockerfile to use rhel9 #42
Updating ose-multus-route-override-cni images to be consistent with ART #41
Add rhel9 binary #40
Updating ose-multus-route-override-cni images to be consistent with ART #36
Updating ose-multus-route-override-cni images to be consistent with ART #35
Updating ose-multus-route-override-cni images to be consistent with ART #34
Updating ose-multus-route-override-cni images to be consistent with ART #33
Dev/sync upstream #30
Updating ose-multus-route-override-cni images to be consistent with ART #28
Full changelog
OCPBUGS-55619 : Fixes leftover podref issue #366
OCPBUGS-37729 : Update owners #305
OCPBUGS-37813 , OCPBUGS-37816 : [release-4.15] align api calls timeout and skip pods marked for deletion #308
OCPBUGS-36367 : [release-4.15] Return previous IP allocation for add cmd #295
OCPBUGS-35081 : [release-4.15] Use IP to identify orphaned allocation to be deleted #288
OCPBUGS-27748 : Enable whereabouts-reconciler configuration 4.15 #239
OCPBUGS-18893 : Assignment error fix #228
OCPBUGS-22075 : update golang.org/x/net to v0.17.0 #206
OCPBUGS-18893 : Rechecking pending Pods (conflict resolved) #196
OCPBUGS-18847 : Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #192
Bug 16002 : Change default binary to RHEL8 image #172
OCPBUGS-15905 : Denormalize IP name before checking if pod is alive [Backport 4.14] #167
Bug 16136 : Introduce entrypoint.sh to call ip-control-loop based on RHEL ver #147
Downstream sync july23 #137
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #150
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #149
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #148
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #146
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #143
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #142
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #141
Restores RHEL specific binary copy and updates to rhel9/8 #140
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #136
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #130
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #129
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #128
OCPBUGS-11324 : respect requested allocation range when exluding ranges [backport 4.14] #121
Upstream sync 2023 03 29 #119
Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #115
Full changelog
OCPBUGS-36371 : Run ppc node collection in parallel #430
OCPBUGS-42970 : Collect etcd object count #456
OCPBUGS-48083 : Update owners #474
OCPBUGS-46451 : Support gathering IPsec data #471
OCPBUGS-43057 : [Relase-4.15] Multus is now a Pod and will be captured by normal #450
OSASINFRA-3290 : Remove Kuryr info gathering #393
machineconfig: always gather MCS-served config #380
OCPBUGS-20391 : Revert “Add must gather script for network observability” #390
gather_sriov: Fix typos and collect SRIOV cache at /var/lib/cni/sriov #369
sriov: Clean up ip netns output #387
OCPBUGS-19280 : Updating ose-must-gather images to be consistent with ART #381
ppc: explicitly add RuntimeClass to gathered resources #386
OCPBUGS-19761 : Removed workload partitioning annotation from ppc script #385
Use oc get daemonset to identify the NTO image #378
OCPBUGS-17907 : Revert “Added gathering script for SNOs with workload partitioning” #376
Split gather_network_logs into basics and extras #375
Added gathering script for SNOs with workload partitioning #373
Add csi-proxy logs collection in must-gather for Windows nodes #374
SDN-3687 : Support gathering DBs for OVNK-Interconnect mode #370
Collect information relevant to PerformanceProfile and low latency tuning #345
gather_network_logs: multus: Fix typo in error redirection #371
Collect leases.coordination.k8s.io from each namesapce #366
Create a generic “get_operator_ns” util function #368
Assert that only one subscription exists #367
MCO-608 : Gather MCO’s on-disk configs from degraded nodes #361
Gather ostree related bits #353
OCPBUGS-14984 : Collect Mellanox firmware information #365
OCPBUGS-14025 : Add gather_vsphere #363
NETOBSERV-987 : Add must gather script for network observability #357
Updating ose-must-gather images to be consistent with ART #358
OCPBUGS-10798 : Gather CSIStorageCapacity objects #356
OCPBUGS-11147 : network_logs: Gather multus resource yamls for namespaces #354
Updating ose-must-gather images to be consistent with ART #352
Revert “OCPNODE-1499: Add CMA gather script” #350
OCPNODE-1499 : Add CMA gather script #348
WINC-977 : Update kube-proxy log file name #347
Updating ose-must-gather images to be consistent with ART #343
WINC-958 : Collect WICD logs from Windows nodes #346
report correct version when multiple images invoked #327
Added hostsubnets to group_resources in gather_network_logs script #342
Remove no longer needed gather_admission_webhooks script #325
Added PodNetworkConnectivityCheck gather script #333
Full changelog
OCPBUGS-19192 : Updating ose-network-interface-bond-cni images to be consistent with ART #59
Add rhel9 binary #57
Updating ose-network-interface-bond-cni images to be consistent with ART #54
OCPBUGS-12327 : Updating ose-network-interface-bond-cni images to be consistent with ART #52
Updating ose-network-interface-bond-cni images to be consistent with ART #51
Updating ose-network-interface-bond-cni images to be consistent with ART #50
OCPBUGS-11190 : Ignore missing links during delete command #48
Update owners file #46
Align with upstream 14-04-2023 #45
Updating ose-network-interface-bond-cni images to be consistent with ART #44
Updating ose-network-interface-bond-cni images to be consistent with ART #43
Full changelog
Updating ose-network-metrics-daemon images to be consistent with ART #62
And 17 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-31764 : replace wireshark with wireshark-cli #118
NO-JIRA: Adding bcc to the container #104
SDN-4189 : Update OVS flows counter to work for cookies with leading 0. #103
OCPBUGS-24385 : Align status and assignee between jira and github #100
OCPBUGS-24276 : Add “networking / network-tools” to list of components #102
SDN-4189 : Fix error when nbdb and sbdb leader are located on different nodes #99
SDN-4189 : Add flow counter script for ACLs #98
SDN-4182 : Script cleanup + track ovnk upstream issues in jira #97
OCPBUGS-22166 : Move commands to the function to avoid them being executed on -h. #93
Update docs to use image-streams instead of quay image #91
jira-scripts: Add Zenghui, remove Vic #90
Add Flavio as approver #89
SDN-3904 : Update scripts in network-tools to reflect the changes in IC model #86
SDN-4047 : Migrate bug-dispath query scripts #88
OCPBUGS-19292 : Updating ose-network-tools images to be consistent with ART #87
ovn-db-run-locally: gracefully handle non-clustered dbs #84
Updating ose-network-tools images to be consistent with ART #81
Updating ose-network-tools images to be consistent with ART #78
Updating ose-network-tools images to be consistent with ART #76
OCPBUGS-7106 : Get OVN-Kubernetes leader identity from the lease #74
Rename subcomponent to ensure bugs are assigned correctly #73
Updating ose-network-tools images to be consistent with ART #72
Full changelog
OCPBUGS-47264 : fixing CVE-2024-45338 #117
OCPBUGS-51850 : CVE-2025-22868 #109
[[release-4.15] OCPBUGS-41800: set required-scc for openshift workloads #81
OCPBUGS-29548 : IPI install fails on Nutanix when using DHCP #69
Updating ose-nutanix-machine-controllers-container image to be consistent with ART #57
SPLAT-1272 : Add support for Nutanix failure domains. #56
Update OWNERS #55
OCPCLOUD-2189 : Update to match K8s v1.28 dependencies #54
OCPBUGS-19208 : Updating ose-nutanix-machine-controllers images to be consistent with ART #51
OCPBUGS-5969 : machine stuck in Provisioning and machineset scale/delete not work #52
OCPBUGS-18338 : Fix CI by running tests natively by default #50
OCPBUGS-12098 : Updating ose-nutanix-machine-controllers images to be consistent with ART #47
OCPCLOUD-2053 : Update dependencies to K8s 1.27 #49
OCPBUGS-11223 : Reduce metrics cardinality #46
OCPBUGS-12726 : Fix userData handling for Windows Machine #48
OCPBUGS-10141 : Updating ose-nutanix-machine-controllers images to be consistent with ART #42
OCPBUGS-6727 : Nutanix Hostname of the VM is not set when using DHCP network config #43
Support categories and project fields of NutanixMachineProviderConfig #38
: Port to ginkgo v2 #41
Update OWNERS #39
: Update k8s packages to 1.26 #40
Update the component in OWNERS file #36
Update OWNERS #34
Updating ose-nutanix-machine-controllers images to be consistent with ART #33
Full changelog
changes the owners file (#1014) #1014
OCPBUGS-48513 : e2e: use same version of crane as in go.mod (#1022) #1022
OCPBUGS-34521 : Fix DiskToMirror without internet connection without rebuild catalog (#866) #866
OCPBUGS-33575 : Change default behavior to not rebuild catalogs for V1 (#849) #849
OCPBUGS-31466 : Fix for oc-mirror new defaultChannel override (#846) #846
Bump version to include v5.11.0 of go-git (#819) #819
OCPBUGS-23550 : Generate both oc-mirror binaries for rhel9 and rhel8 (#804) #804
Fix to ensure operator not found error exits with correct status (#794) #794
OCPBUGS-27946 : Capability to override default channel (#786) #786
OCPBUGS-27252 : Add Type for CopyImageSchema; Skip graph for IDMS; Fix UpdateService (#780) #780
OCPBUGS-16801 : fix: fixes the bug on catalog when using field archiveSize: 1 (#774) #774
Updating oc-mirror-plugin-container image to be consistent with ART for 4.15 (#776) #776
OCPBUGS-25346 : - oc-mirror on RHEL9 Host with FIPS enabled (#764) #764
OCPBUGS-24359 : Fix including duplicate blobs in archive (#762) #762
Add generation of updateService.yaml (#759) #759
OCPBUGS-19429 : Fix cross EUS channel upgrade path calculation (#757) #757
OCPBUGS-23327 : Fix MirrorToDisk of oci catalogs in hidden folders (#756) #756
Fix default port for V2 ‘prepare’ subcommand (#747) #747
Adding release payload signatures to graph-data container (#742) #742
OCPBUGS-23339 : fix IDMS custom resource name (#743) #743
remove unnecessary print statement (#745) #745
OCPBUGS-23309 : Do not panic if port chosen to run local cache is already bound (#744) #744
CFE-994 : cache location separate of working-dir (#741) #741
Integrate Unarchive process to DiskToMirror workflow (#740) #740
CFE-977 , CFE-991 : archive generation at the end of MirrorToDisk workflow (#739) #739
CFE-981 : Create UnArchiver interface and implementation (#738) #738
CFE-977 , CFE-980 : Introduce Archiver interface and its implementation MirrorArchiver (#734) #734
feat: history file reader and writer (#736) #736
skipping prune failure if manifest not found (#733) #733
Package ioutil is deprecated as of Go 1.16 (#731) #731
CFE-977 : Implementation of a blob gatherer for images in the local cache (#732) #732
refactorings (#728) #728
Fix –from being set to default value in mirrorToDisk workflow (#727) #727
OCPBUGS-22947 : Should not generate graph with prepare subcommand (#725) #725
Cancel community office hours: none for the moment (#726) #726
CFE-965 : [V2] Enable signature verification (#709) #709
CFE-971 : Generate OSUS graph image - uses go-containerregistry implementation (#722) #722
Pr template change (#719) #719
CFE-899 , CFE-958 : feat: removes the registry dns (#718) #718
Remove Dockerfile.integration - not used - reduce confusion (#716) #716
OCPBUGS-21864 : fix: CVE-2023-39325 and CVE-2023-44487 (#712) #712
Introduce subcommand prepare (#702) #702
Initial implementation of IDMS generation (#707) #707
Fixes HTTP 401 issues when several catalogs are being mirrored and need to be rendered using operator-registry (#704) #704
CFE-935 : [V2] Implement a release collector relying on local registry as storage (#690) #690
Fix OCPBUGS-17546: pod catalogsource generated by oc-mirror will crashloopBackOff randomly (#697) #697
CFE-956 : feat: adds tags on the related images (#695) #695
Updating oc-mirror-plugin images to be consistent with ART (#698) #698
Update list updates CLI documentation (#687) #687
CFE-906 : [V2]Enclave support - Separate log file for local storage (#686) #686
CFE-955 : changes owner file (#694) #694
CFE-897 , CFE-907 : feat: add code to call v2 from v1 (#692) #692
OCPBUGS-17545 : Improve extracting opm binary from catalogs (#676) #676
OCPBUGS-7465 : Fix 401 Unauthorized due to stale auth token (#678) #678
Fix OCPBUGS-14402 - case where catalog is on a mirror from registries.conf (#682) #682
OCPBUGS-17998 : fix: ICSP with incorrect mirror path (#681) #681
OCPBUGS-17714 : Ensure errors are nil before closing registry to avoid… (#680) #680
CFE-825 : As a oc-mirror user, I would like mirrored operator catalogs to have valid caches (#651) #651
CFE-902 feat: removes go workspace due to incompatibility on ART builds (#672) #672
CFE-902 feat: adds go workspace to support multi-module (#670) #670
add go.mod files to testdata directories (#669) #669
fixing oc-mirror version when run from read-only fs (#660) #660
Make local storage port configurable via command line (#668) #668
Fix unit tests for local storage collector implementation (#667) #667
CFE-904 : Create AdditionalImage Collector implem. based on registry as localStore (#666) #666
v2 initial commit (#664) #664
OCPBUGS-13871 docs: changes the help message for oci-registries-config flag (#663) #663
OCPBUGS-11754 : add cleanup of /tmp directories (#655) #655
CFE-875 : Unlock MirrorToDisk and DiskToMirror workflows for local oci catalogs (#662) #662
Fix OCPBUGS-15329 - OCI index found, but accept header does not support OCI indexes (#658) #658
Enable mirroring of the multi release image (#657) #657
revendor to the latest oc (#656) #656
Replacing the hard coded path with graphDataMountPath (#585) #585
CFE-859 : Removing flag use-oci-feature starting release-4.14 (#622) #622
CFE-783 : A variety of changes needed for correct operation with multi architecture catalogs (#611) #611
MULTIARCH-3440 : refine multiarch support for test-unit and test-e2e using dockerfile and add ppc64le build to Makefile (#624) #624
Add ImageSetConfig examples (#610) #610
OCPBUGS-13871 : fix: changes on help info content (#653) #653
OCPBUGS-588 : minVersion in ImageSetConfiguration seems to be ignored (#603) #603
Fix OCPBUGS-14194 (#649) #649
Fix OCPBUGS-14402 (#652) #652
OCPBUGS-13332 : Create rfc 1035 compliant catalog source name (#636) #636
fix validateMapping OCPBUGS-13962 (#640) #640
adds Jeremy Peterson to OWNERS file (#644) #644
Chore: Remove Ross from OWNERS (#639) #639
OCPBUGS-13762 : make addRelatedImageToMapping multithreaded (#638) #638
Fix OCPBUGS-11840: ParseImageReference supports cases where both tag and digest are present in a ref (#633) #633
OCPBUGS-11922 : paths not needed in ICSPBuilder interface (#634) #634
OCPBUGS-11910 , OCPBUGS-11922 : Limit the nested repository path while mirroring the images (#623) #623
CFE-658 : Implementation of filtering by channel for OCI catalog (#627) #627
OCPBUGS-4959 : oc-mirror error on second synchronisation with no change (#605) #605
Deprecate –use-oci-feature in favor of –include-local-oci-catalogs (#620) #620
Updating oc-mirror-plugin images to be consistent with ART (#619) #619
Update OWNERS for CFE team (#614) #614
Revert adding ‘–cache-dir /tmp/cache’ to catalog images (#613) #613
OCPBUGS-11371 : fix: skips bundles with ‘skips’ field on head bundle (#608) #608
fix: work around OCPBUGS-6741 by explicitly setting –cache-dir (#604) #604
OCPBUGS-2633 : Fix (#601) #601
OCPBUGS-7845 fix: changes the way the version is shown (#599) #599
OCPBUGS-10348 fix: changes to include the registry path (#600) #600
OCPBUGS-1060 fix: changes confusing error message (#598) #598
Fix OCPBUGS-8156: Upgrade to containerd v1.6.18 (#593) #593
Bugfix check imagesetconfig for valid oci protocol when oci feature is used (#573) #573
Remove “unsupported” wording from info on console (#577) #577
Fix OCPBUGS-5168: Upgrade helm.sh/helm/v3 to v3.11.2 fixing CVE-2022-23526 and CVE-2022-23525 (#580) #580
OCPBUGS-10051 : fix: remove catalog reference from ImageContentSourcePolicy.yaml (#586) #586
Updating oc-mirror-plugin images to be consistent with ART (#575) #575
Bugfix for destination registry nested paths length (#572) #572
fix extract dir for cincinnati-graph-data container (#582) #582
OCPBUGS-8216 : fix: remove an unecessary error message (#579) #579
docs: add information about unsupported scenario (#574) #574
Fix usage of registries.conf for OCI feature (#569) #569
CFE-739 : Add skip pruning flag and logic (#567) #567
CFE-749 : add e2e test for oci catalog feature to include release and additiona… (#562) #562
CFE-764 : Introduce v1alpha2.Operator.TargetCatalog (#565) #565
docs: adds clarification to imageset reference and examples (#555) #555
CFE-768 : Update to allow for incremental and pruning for oci feature (#564) #564
use new cincinnati endpoint to download tarball (#552) #552
feat: OCI catalog filtering implementation (#559) #559
CFE-761 : Improve user experience of oc-mirror with the OCI FBC feature (#557) #557
Fix typo in diff.go (#556) #556
Upgrade base image for oc-mirror to 4.13 (#560) #560
CFE-743 : Update of golang version from 1.18.6 to 1.19.5 (#551) #551
Fix flaky test Valid/OperatorTypeWithRelatedImgs (#549) #549
OCPBUGS-5891 : fix: adds logic that searches for the correct name when using a heads… (#547) #547
New reviewers: Luigi Mario Zuccarelli, Sherine Khoury (#548) #548
CFE-657 : Update to include release and additionalImages with the new FBC feature (#535) #535
OCPBUGS-3414 : Fix: fixes issues encountered by QE (#536) #536
OCPBUGS-3414 : fix: Missing ‘ImageContentSourcePolicy’ and ‘CatalogSou… (#533) #533
OCPBUGS-4516 : fix: oc-mirror does not work as expected relative path for OCI format copy (#531) #531
OCPBUGS-4365 : Fix cases where namespace or subnamespace may be empty (#529) #529
OCPBUGS-2851 : fix (#525) #525
Full changelog
: OCPBUGS-30264: Bump Helm & K8s dependencies #79
OCPBUGS-27596 , OCPBUGS-27681 : UPSTREAM: <carry>: Update go-git to v5.11.0 #72
NO-ISSUE: Synchronize From Upstream Repositories #66
NO-ISSUE: UPSTREAM: <drop>: Remove GH activities #57
OPRUN-3080 : UPSTREAM: <carry>: Drop commitchecker #51
OPRUN-3078 : Update to Upstream v0.15.0 #50
Update to Upstream v0.14.0 #44
OCPBUGS-20506 : Bump golang.org/x/net from 0.15.0 to 0.17.0 #36
OCPBUGS-19167 : UPSTREAM: <carry>: Updating ose-olm-rukpak images to be consistent with ART #35
OCPBUGS-16793 : openshift/Dockerfile: exclude unpack binary from FIPS build overrides #33
Rename downstream overlay from service-ca-operator to openshift #32
UPSTREAM: <carry>: add manifests to image #31
Makefile,manifests: Add skeleton of default rukpak resources #18
Introduce barebones build and unit testing GH actions #14
Skeleton - k8s provisioner #7
update README to include latest APIs #5
Introduce a sanity github action check #3
Init API defs #1
Add barebones OWNERS file #2
And 463 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-58822 : Fix image reference in TestImageStreamImportQuayIO #517
OCPBUGS-47766 : Pass expected type to deploymentconfig/scale object validation. #466
OCPBUGS-32444 : Bump golang/x/net to v0.23.0 #428
OCPBUGS-28928 : Bump openshift/api to get updated docs for UnservableInFutureVersions #436
OCPBUGS-31469 : vendor upgrade runtime-utils #422
OCPBUGS-27101 : UPSTREAM: <carry>: retry etcd Unavailable errors #413
OCPBUGS-24090 : Updating ose-openshift-apiserver-container image to be consistent with ART #406
API-1644 : add serviceaccount/patch to pull secret controller role #408
OCPBUGS-21735 : Enable HTTP/2 CVE mitigation #396
OCPBUGS-19145 : Updating ose-openshift-apiserver images to be consistent with ART #390
API-1644 : add TokenRequest to pull-secret controller’s cluster role #403
Add internal-oauth-disabled flag to signal oauth APIs/apiserver disabled #395
OCPBUGS-18969 : remove image pruner cluster role creation #391
OCPBUGS-16514 : use import mode to manifest cache key #386
OCPBUGS-17674 : pkg/image: avoid unnecessary service lookups when registry is removed #387
OCPBUGS-5823 : remove unused service-ca roles #388
NE-1143 Adds route API changes to set/delete headers. #380
WRKLDS-728 : Disable apiservers #366
add comments about ownership of validation #384
add featuregates to server #382
idms migrations #318
Bump openshift/api to the latest release-4.14:head #383
Upgrade distribution to v3 #378
wire openapi v3 aggregation controller #379
OCPBUGS-11393 : Bump openshift/api #368
API-1586 : Bump k8s 1.27.2 #371
OCPBUGS-12813 : Updating ose-openshift-apiserver images to be consistent with ART #364
API-1537 : Bump k8s 1.26.2 proof #360
OCPBUGS-8232 : Clear metadata.namespace on projects before write. #356
Bump 1.26 proof #354
OCPBUGS-7689 : Fix a project validation error due to empty string value #352
OCPBUGS-6197 : Updating ose-openshift-apiserver images to be consistent with ART #338
IR-270 : support creation of image objects representing manifest lists #349
API-1492 : Bump kube-openapi for openapi-gen determinism fix. #348
IR-269 : Support multi-arch images in ImageStreamLayers #309
IR-269 : Bump openshift/api #344
pkg/image: add myself to OWNERS #342
IR-270 : handle image metadata for manifest lists #340
IR-326 : support get of image stream images of a manifest list #341
Use remaining route/v1 defaulters from library-go. #334
OCPBUGS-501 : fix printer panic #333
Drop dependency on internal types from route default test. #332
move the deployer role and binding to the ocm-o #331
Use shared route validation and defaulting from library-go. #328
IR-259 : changing image stream importMode increments its generation #325
Full changelog
OCPBUGS-57761 : Set node-pullsecrets volume to read-only to protect image pull credentials #396
OCPBUGS-56474 : Empty proxy variables are causing issues during the build #383
OCPBUGS-54344 : Unable to look up the service account secrets for build #370
OCPBUGS-48280 : Add team members to the OWNERS file #359
NO-JIRA: cleanup root and app OWNERS #348
OCPBUGS-32871 : replaces deprecated square/go-jose wtih go-jose/go-jose #333
OCPBUGS-41949 : Add adambkaplan as approver #291
OCPBUGS-32807 , OCPBUGS-33371 : Rollback state of managed image pull secrets after downgrade #303
OCPBUGS-31490 : Bumps opentelemetry dependencies #294
OCPBUGS-24086 : Updating ose-openshift-controller-manager-container image to be consistent with ART #281
OCPBUGS-28947 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #285
OCPBUGS-22471 : Mitigate CVE-2023-30551 (rekor) #280
API-1651 : Create separate controllers for default service accounts #272
API-1652 : bump go.mod go to 1.20 #267
OCPBUGS-19136 : Updating ose-openshift-controller-manager images to be consistent with ART #273
OCPBUGS-18498 : Disable Build and DeploymentConfig Informers if their caps are disabled #270
use constant controller names #265
OCPBUGS-16071 : Updating Kubernetes and other associated dependencies #263
update runtime-utils for idms migrations #243
OCPBUGS-14461 : Kubernetes 0.27 #261
Updating ose-openshift-controller-manager images to be consistent with ART #260
Updating ose-openshift-controller-manager images to be consistent with ART #259
Updating ose-openshift-controller-manager images to be consistent with ART #258
Updating ose-openshift-controller-manager images to be consistent with ART #253
OCPBUGS-10588 : mount build.Spec.Source.ConfigMaps for custom builder images #254
Add Divyanshu Agrawal as a reviewer #256
Add explicit license #248
BUILD-407 : Revert “remove tech preview feature gate for build csi volumes” #251
BUILD-407 : remove tech preview feature gate for build csi volumes #250
WRKLDS-594 : bump(k8s): 1.26.1 #249
Updating ose-openshift-controller-manager images to be consistent with ART #247
update the deploy pod to provide failure in pod #246
Full changelog
OCPBUGS-36586 : Add config map hooks #175
OCPBUGS-34927 : Correct out-of-bounds check #172
OCPBUGS-32744 : Relax requirement to enable topology #165
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #154
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #148
STOR-1281 : Make Cinder CSI Driver Topology feature configurable #127
OCPBUGS-23878 : OCPBUGS-22624: CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46.0 #141
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #143
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #140
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #134
STOR-1276 : Enable support for mounting volumes with SELinux context #129
OCPBUGS-19213 : Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #133
OSASINFRA-2139 : Document how we manage configuration #110
STOR-1436 : Restart openstack-cinder-csi-driver-controller Pods if metrics-serving-cert changed #128
Remove Dockerfile.rhel7 #126
Configure User Agent #123
OCPBUGS-16654 : Revert revert “STOR-1065: Rework sidecar bindings to b… #119
OCPBUGS-16783 : Chore: Update OWNERS and OWNERS_ALIASES #121
OCPBUGS-16526 : Bump library-go to remove dependency on goproxy #122
OCPBUGS-16678 : Fix SCC admission failure race during initial deployment #120
Revert “STOR-1065: Rework sidecar bindings to bind common ClusterRoles” #118
STOR-1065 : Rework sidecar bindings to bind common ClusterRoles #117
OCPBUGS-14824 : Bump cinder-csi-driver-operator library-go #116
STOR-1168 : Bump common libraries #115
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #113
OCPBUGS-12651 : Bump golang.org/x/net@v0.9.0 #114
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #112
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #111
OSASINFRA-3000 Prefer a Cinder CSI-specific config map #82
OCPBUGS-8683 : Add management workloads annotations #109
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #108
STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #107
STOR-947 : support disabling default StorageClass via ClusterCSIDriver #103
Bug 2106736 : Add multiplePVsSameID capability #106
STOR-1078 : Add hostPaths necessary for SELinux mounts #105
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #101
OCPBUGS-4347 : set TLS cipher suites in Kube RBAC sidecars #100
Bug OCPBUGS-2845: Add SecretHashAnnotation to node service #96
Full changelog
OCPBUGS-34665 : Failure to get bootstrap is non-fatal #120
OCPBUGS-30857 : Ensure portSecurity is correctly set in the Port #108
OCPBUGS-28326 : Add snyk configuration file #105
OCPBUGS-24097 : Updating ose-machine-api-provider-openstack-container image to be consistent with ART #99
OCPBUGS-23668 : Bump Kubernetes dependencies #97
OCPBUGS-23913 : Fix nil pointer exception when deleting machines without a root volume #98
OSASINFRA-3297 : Remove unnecessary retrieval of Network ID #96
OCPBUGS-16597 : Don’t build InstanceSpec during delete operations #90
NO-JIRA: Misc linter fixes #94
OSASINFRA-3283 : convert: add missing port profile #93
OSASINFRA-3243 : add ephemeral storage support #88
OCPBUGS-22319 : fix MachineToInstanceSpec when SG are nil #91
OSASINFRA-3272 : Move to CAPO v1alpha7 #87
OCPBUGS-22069 : Update dependencies #89
OCPBUGS-19156 : Updating ose-machine-api-provider-openstack images to be consistent with ART #84
Remove unnecessary print #79
Update OWNERS #83
make: Remove irrelevant/broken targets #82
Bug OCPBUGS-4629: Set controller’s SyncPeriod to 1 hour #59
Bump CAPO to match branch release-0.7 #80
Configure User Agent #75
Update README #77
OCPBUGS-16586 : Bump goproxy #74
Rework how we build the container image #76
go.mod: Upgrade Gophercloud to v1.5.0 #73
OSASINFRA-3063 : Bump CAPO to v0.7.2 #72
Updating ose-machine-api-provider-openstack images to be consistent with ART #70
Updating ose-machine-api-provider-openstack images to be consistent with ART #69
Updating ose-machine-api-provider-openstack images to be consistent with ART #68
OCPBUGS-8687 : machineset_controller: Stop caching clouds credentials #63
OCPBUGS-2153 : Use TenantID if ProjectID is empty #61
Updating ose-machine-api-provider-openstack images to be consistent with ART #60
Add dual stack API and Ingress VIPs support #58
OSASINFRA-3092 : Add support for external LB #56
OCPBUGS-6432 : Address CVE-2022-41717 #53
Bump gophercloud #50
Updating ose-machine-api-provider-openstack images to be consistent with ART #49
Use machine/v1alpha1 from openshift/api #46
Full changelog
OCPBUGS-61466 : [release-4.15] Add NetworkPolicy as a supported kind #1051
OCPBUGS-61389 : [4.15] e2e stability fixes #1084
OCPBUGS-57430 : reduce cache expiry frequency [release-4.19] #1023
OCPBUGS-56463 : fix(olm): improve error logging for missing olm.managed label (#3558) #1010
OCPBUGS-48662 : Fix concurrent namespace resolution #948
OCPBUGS-48697 : Fix excessive catalog source snapshots cause severe performance regression #958
OCPBUGS-46926 , OCPBUGS-46933 , OCPBUGS-47313 : x/net bump to v0.34.0 [release-4.15] #940
OCPBUGS-46479 : CRD upgrade existing CR validation fix #917
OCPBUGS-42114 : add optional schema migrations; default to olm.bundle.object instead of olm.csv.metadata #874
OCPBUGS-41981 : (fix) registry pods do not come up again after node failure (#3366) #868
OCPBUGS-41819 : [4.17] adds paginating lister for evaluating CRs’ upgrade fitness versus new CRDs. #864
OCPBUGS-41598 : Fix e2e flake: upgrade CRD with deprecated version #862
OCPBUGS-38383 : (fix) Resolver: list CatSrc using client, instead of referring to registry-server cache #840
OCPBUGS-38323 : Update junit report file name to show spec results on Test Grid #839
OCPBUGS-37677 : [release-4.15] Update e2e config and backport list of flakes #829
OCPBUGS-37554 : Set required-scc for openshift workloads #828
OCPBUGS-37017 : Bump github.com/containers/image/v5 #823
OCPBUGS-36812 : fix sorting unpack jobs #817
OCPBUGS-36451 : Can’t install operator on 4.15 after uninstalling it on a prior version #810
OCPBUGS-36813 : [CARRY] perform operator apiService certificate validity checks directly #819
OCPBUGS-35305 : [release-4.15] catalog-operator: delete catalog pods stuck in Terminating state due to unreachable node #779
OCPBUGS-35720 : Warn and allow CRD upgrade if validation fails but webhook is specified #789
OCPBUGS-31939 , OCPBUGS-31940 : UPSTREAM: <carry>: update golang.org/x/net for CVE-2023-45288 #747
OCPBUGS-35229 : Unblock CI #768
OCPBUGS-32860 : UPSTREAM: <carry>: bump go-jose #740
OCPBUGS-32311 : [release-4.15]: Update if AlreadyExists #736
OCPBUGS-31842 : copy-content: delete destination dirs before copying (#3197) #728
OCPBUGS-31651 : [release-4.15] Correctly detect catalog image ID for extractContent catalog pods #726
OCPBUGS-30219 : bump otelgrpc to 0.46.0 #712
OCPBUGS-30193 : Synchronize From Upstream Repositories #711
OCPBUGS-30141 : ClusterRoleBinding + Service SSA cherry-pick #707
OCPBUGS-30147 : Wait for required RBAC before creating packageserver CSV #710
NO-ISSUE: [release-4.15] Backport flaky CRD upgrade block e2e test fix #694
OCPBUGS-24159 : Updating operator-lifecycle-manager-container image to be consistent with ART #623
OCPBUGS-29083 : * olm,catalog: only validate the resources we label #683
OCPBUGS-29116 : [release-4.15]: Clear (existing) error cond from Subscription, once error resolved #684
OCPBUGS-27566 , OCPBUGS-27571 , OCPBUGS-27651 , OCPBUGS-27656 : bump go-git/v5 to 5.11.0 (#1175) #668
OCPBUGS-25798 : Fix snapshot failure, backport e2es #670
OCPBUGS-27435 : OCPBUGS-25989: operators/olm: filter RBAC lists by namespace #664
OCPBUGS-26066 : [release-4.15] NO-ISSUE: Synchronize From Upstream Repositories #648
OCPBUGS-25818 : NO-ISSUE: Synchronize From Upstream Repositories #644
OCPBUGS-25798 , OCPBUGS-25802 : [release-4.15] NO-ISSUE: Synchronize From Upstream Repositories #643
NO-ISSUE: Update verified directories for microshift-manifests #642
OCPBUGS-25367 : [CARRY] Fix panic issue when annotations map is nil #636
OCPBUGS-24121 : Updating operator-registry-container image to be consistent with ART #621
API-1674 : Add ownership annotations to new and existing olm-managed secrets #626
NO-ISSUE: Synchronize From Upstream Repositories #625
OPRUN-3063 : Microshift manifests fixes #622
NO-ISSUE: scripts: remove legacy bumping implementations #613
OPRUN-3063 : Microshift manifests remove collection-profiles cronjob from kustomization #615
OPRUN-3063 : Microshift manifests: Ignore “*.removed.yaml” files in kustomization.yaml #610
OPECO-3066 : Synchronize From Upstream Repositories #612
NO-ISSUE: Synchronize From Upstream Repositories #609
Synchronize From Upstream Repositories #606
OPRUN-3063 : Generate OLM microshift manifests #604
OCPBUGS-17041 : Release Leader Election on Manager Exit #556
OPRUN-3106 : skuznets/bump vendor ii #600
NO-ISSUE: Update downstreaming documentation. #602
Skuznets/bump vendor #581
scripts/bumper: only marshal missing commits #599
Small sync #597
OCPBUGS-17408 : Do not derive installplan.spec.clusterServiceNames from bundle IDs #596
OCPBUGS-22217 : Fixing flake tests so they don’t fail 100% of the time. #595
OCPBUGS-18948 : CRD Compatibility Validation #592
OCPVE-674 : feat: add annotations for capabilities feature #565
Remove 5m package-server-manager default #588
OCPBUGS-20503 : Bump golang.org/x/net from 0.10.0 to 0.17.0 #585
scripts/bumper: also run go mod in nested vendor #593
scripts/bumper: improve sort order #580
Sync script: handle multi commit merges #578
Sync 2023 10 05 no steve #579
scripts/bumper: exit when there’s nothing to do #569
OCPBUGS-17157 : manifests: add $GOMEMLIMIT to PSM #551
OCPBUGS-19196 : Updating operator-registry images to be consistent with ART #563
Skuznets/bump all #567
OCPBUGS-19257 : Updating operator-lifecycle-manager images to be consistent with ART #564
OPRUN-1873 : scripts/bumper: allow fetching using https #561
OCPBUGS-17950 : Make packageserver wakeup interval configurable #555
scripts/bumper: automate pushing changes and creating PRs #550
OCPBUGS-17157 : scripts: add a Go-based bumper, sync upstream #534
Add ncdc to DOWNSTREAM_OWNERS #539
OPRUN-3022 : Add support for make verify to sync script #537
Add tmshort to owners #535
fix the manifests generation #533
Sync 2023 08 04 #532
OCPBUGS-17157 : sync #531
OCPBUGS-17157 : operator-registry: cherry-pick to be up-to-date #526
OCPBUGS-17157 : cmd/package-server-manager: add pprof endpoints #527
OPRUN-3021 : Improve README #529
OPRUN-2913 : Sync api, operator-registry, operator-lifecycle-manager downstream #510
OPRUN-2913 : Add DOWNSTREAM_OWNERS #520
OCPBUGS-10178 : Updating operator-lifecycle-manager images to be consistent with ART #470
Allow cpb to be statically compiled / exempt from FIPS compliance #511
update verification script to work across non-standard bash location #505
OCPBUGS-13128 : Retry initialization error conditions (#2979) #502
Updating operator-registry images to be consistent with ART #495
OCPBUGS-13526 : fix dynamic conversion webhook #490
OPRUN-2995 : Remove dependency on cluster policy controller in favor of hardcoding #498
OPRUN-2941 : update cluster-policy-controller dependency #494
OCPBUGS-13789 : downstream y-streams-for-all semver template changes. #489
OCPBUGS-1684 : Optimize certificate generation #486
METAL-575 : Revert “Mutate service monitor manifests to include tlsConfig cert an… #478
OPRUN-2892 : Update service-monitor tls config #368
OCPBUGS-6016 : UpdateStrategy RegistryPoll with nil Interval #468
OCPBUGS-7910 : Sort channels in lexicographical order in Packagemanifestst (#2925) #476
OCPBUGS-7431 : Registry Pod Controller Flag #460
Update sync script #472
OPECO-2737 : Veneer template rename #461
fix pop_candidate script #467
Updating operator-registry images to be consistent with ART #469
OPECO-2646 : exclude bundles with olm.deprecated property when rendering #463
OCPBUGS-794 : remove dependence on OLM_VERSION file #462
OCPBUGS-7754 : update cluster policy operator dependency #455
OCPBUGS-948 : Set openshift.io/scc label to empty #445
update cpc dep #448
OCPBUGS-672 : Catalog Pod Startup Probe Timeout #446
OCPBUGS-7102 : make plugin e2e tests skippable #444
Packageserver version discoverability #437
Thread Safety test for UpdateSubsSyncCounterStorage (#2918) #438
OCPBUGS-6741 : refactor FBC caching (#1051) #435
OCPBUGS-6344 : Upgrade golang/x/net to v0.4.0 to fix CVE-2022-41717 (#1059) #434
OCPBUGS-6241 : Fix art consistency #433
OCPBUGS-5523 : Catalog, fatal error: concurrent map read and map write #429
OCPBUGS-4955 : Set ImagePullPolicy of bundle unpacker to “IfNotPresent” for image digests #425
OCPBUGS-4757 : Default to legacy psa settings (#273) #420
Updates to OWNERS file #422
Bump go and k8s #408
OCPBUGS-1088 : Run collect-profile pod on management nodes #394
provide the capability to filter mermaid output to a single package name / skipRange support (#1023) #400
OCPBUGS-1428 : fix service account token secret reference (#2862) #396
OCPBUGS-2556 : Order an operator CR’s status.Component.Refs array (#2880) #406
OCPBUGS-1272 : Add pipe support to render-veneer basic command (#1026) #401
Full changelog
OCPBUGS-56660 , OCPBUGS-58162 : Unpin OVS patch versions #2649 #2649
OCPBUGS-56419 : Update to FDP25.A.1 24.03.5-40. #2573
OCPBUGS-50583 : Bump OVN to 23.09.6-12 to consume fix for FDP-905 #2454
OCPBUGS-53384 : [release-4.15] Dockerfile.base: bump OVS version to 3.3 #2492
OCPBUGS-43605 : Add SDN node subnet gateway IP to host-network address_set #2419
OCPBUGS-46403 : Add static route to the hairpin masquerade IPs to pod #2396
OCPBUGS-47799 : Let OVN-northd bind remote ports #2407
OCPBUGS-44708 : Add hybird overlay pod IPs to the namespace address_set #2399
OCPBUGS-45097 : pin libreswan to 4.6-3.el9_0.3 #2374
OCPBUGS-44782 : Bump ovs to 3.1.0-137 #2359
OCPBUGS-42943 : Fix egress gateway pod cleanup for remote zone pods. #2342
OCPBUGS-41838 : Use more exact name match when deleting static routes to HO nodes. #2298
OCPBUGS-42780 : Add subnet overlap check for transit switch subnet #2313
OCPBUGS-41340 : Delete EgressIP LRP stale nexthops when node is not found #2288
OCPBUGS-38262 : [release-4.15] Bump OVSDBTimeout and make it configurable. #2252
OCPBUGS-37962 : Fix registering northd metrics on appropriate nodes #2246
OCPBUGS-37196 : [release-4.15] ovspinning: Set affinity of each thread #2235
OCPBUGS-35902 : Bump ovn to 23.09.4-16 #2216
OCPBUGS-36382 : Handle IP fragments in SGW mode #2215
OCPBUGS-33619 : EgressIP: Reload certificates for the grpc heatlhcheck server #2167
OCPBUGS-33623 , OCPBUGS-33624 : Improve CI signal by removing/suppressing signals #2168
OCPBUGS-31814 : ipv6+all protocols conntrack flush #2131
OCPBUGS-34404 : [release-4.15] dns: fix deadlock in case of error #2182
OCPBUGS-33294 : Reuse node-subnet from cache if exists #2163
OCPBUGS-33960 : Egressip garp fix 4.15 #2175
OCPBUGS-30899 : use a forked version of j-keck/arping that fixes a threading issue #2105
OCPBUGS-32426 : [release-4.15] Improves service iptables efficiency on start up #2156
[Release 4.15] OCPBUGS-32986: Bump OVS #2147
OCPBUGS-27852 : [release-4.15] Full implementation of KEP-1669 ProxyTerminatingEndpoints + ETP=local fix #2025
OCPBUGS-29316 : [release-4.15] Ignore missing live migratable pod annotation on AddNode #2065
OCPBUGS-32202 : [release-4.15] Bump OVN to 23.09.0-139 #2121
OCPBUGS-33020 : drop-forwarding: Add ClusterSubnets to allowed forwarding CIDRs #2141
OCPBUGS-32154 : Custom v4 and v6 transit switch subnets while creating kind cluster #2094
OCPBUGS-31081 : Periodically check the ovnkube-node certificate is not expired #2099
OCPBUGS-31033 : Remove OVN topology version reporting/detection #2098
OCPBUGS-31500 , OCPBUGS-31501 : EIP multi NIC IPv6 support and default route with next hop #2103
OCPBUGS-29599 : Update HostNetworkNamespace address_set for remote zone nodes #2074
OCPBUGS-29185 : Wait for ovnkube controller to start before checking result error. #2064
OCPBUGS-28725 : Update netpol namespace address sets usage to the old ways #2050
OCPBUGS-29230 : [release-4.15] separate the handler sync from the informer sync & remove the full service resync during node tracker startup #2060
OCPBUGS-28818 : Support Permanent Session Affinity #2045
OCPBUGS-28848 : Ignore hybrid-overlay nodes from EgressIP controller #2040
OCPBUGS-29001 : kubevirt, Replace routes on migration #2052
OCPBUGS-27947 : [release-4.15] Fix LGW ETP=Local on IPv6 #2028
OCPBUGS-27255 : Ensure session affinity cleanup on backend removal #2020
OCPBUGS-25938 : CARRY: Updates owners and adds Surya #2005
OCPBUGS-25395 : [release-4.15] Update namespace-owned port group (that used to be managed by multicast) #1998
OCPBUGS-25486 : Fix Egress IP Deletion Handler to Prevent OVN Policy Leaks #1999
OCPBUGS-25700 , OCPBUGS-25701 : Dockerfile: Bump OVN to ovn-23.09.0-91.el9fdp #1994
OCPBUGS-24610 : Updating ose-ovn-kubernetes-container image to be consistent with ART #1963
OCPBUGS-22847 : Downstream merge 12-7-23 #1976
NP-618 , OCPBUGS-22847 , SDN-4124 , SDN-4149 , SDN-4150 : [DownstreamMerge] 1 Dec 2023 #1965
OCPBUGS-24014 : Downstream merge 28th November 2023 #1962
OCPBUGS-21773 : Downstream Merge 22nd November 2023 #1958
NHE-805 , OCPBUGS-19050 , OCPBUGS-22691 , OCPBUGS-22767 , SDN-4173 : [DownstreamMerge] 11 November 2023 #1952
OCPBUGS-16634 , OCPBUGS-19635 , OCPBUGS-20210 : Downstream Merge 24th October 2023 #1942
OCPBUGS-11710 : Downstream Merge 18th Oct 2023 #1939
OCPBUGS-15538 , OCPBUGS-19961 : Downstream merge 2023-10-10 #1935
OCPBUGS-14787 : Dockerfile: stop installing CNI plugins RPM #1702
OCPBUGS-19289 : Updating ose-ovn-kubernetes images to be consistent with ART #1884
OCPBUGS-20178 , OCPBUGS-20238 : Downstream merge 2023-10-09 #1931
OCPBUGS-16217 , OCPBUGS-18071 , OCPBUGS-18598 , OCPBUGS-19698 : DownStream Merge 4th October 2023 #1923
OCPBUGS-19900 : DownStream Merge: 29th-September-2023 #1919
OCPBUGS-18317 : DownStream Merge: 28th-September-2023 #1917
OCPBUGS-18162 , OCPBUGS-19792 , OCPBUGS-19836 : [DownstreamMerge] 9-27-23 #1911
OCPBUGS-17455 , OCPBUGS-17641 , OCPBUGS-18352 , OCPBUGS-18549 , OCPBUGS-19456 : [DownstreamMerge] 9-26-23 #1907
OCPBUGS-19013 : Dockerfile: Copy ovnkube-trace file for RHEL8 platform #1887
OCPBUGS-19501 : Add additonal certificate acceptance condition feature in ovnkube-ide… #1895
Add ovnkube-identity binary to the downstream image #1897
OCPBUGS-19288 : Updating ovn-kubernetes-microshift images to be consistent with ART #1883
OCPBUGS-19278 : Updating ovn-kubernetes-base images to be consistent with ART #1882
OCPBUGS-16641 , OCPBUGS-18572 , OCPBUGS-19331 : [DownstreamMerge] 9-18-23 #1885
OCPBUGS-19004 , OCPBUGS-19010 : Dockerfile: bump OVN to ovn23.09-23.09.0-beta.31.el9fdp #1875
OCPBUGS-18895,OCPBUGS-14549,OCPBUGS-18402 [DownstreamMerge] 9-11-23 #1868
OCPBUGS-18467 : Fix OVN SNATing on GR by enabling gateway_mtu on rtoe port of GR #1854
OCPBUGS-14709 , OCPBUGS-16617 , OCPBUGS-18603 : Bump to OVN 23.09 #1842
OCPBUGS-18378 : LGW: Fix the precedence of rules in FORWARD chain #1851
OCPBUGS-17773 : Perf increases to pod deletion #1847
OCPBUGS-17731 : move clearInitialNodeNetworkUnavailableCondition to clustermanager #1839
OCPBUGS-18110 : Fix encap port configuration for remote chassis #1836
OCPBUGS-17406 , OCPBUGS-17844 , OCPBUGS-17970 : [DownstreamMerge] 24 Aug 2023 #1833
OCPBUGS-17867 : CARRY: Removes restriction for ip scope universe on node ips #1822
8-16-23 #1820
OCPBUGS-17666 : Downstream Merge august 15th 2023 #1817
Downstream Merge 2023-8-10 #1813
OCPBUGS-17147 : [DownstreamMerge] 8 Aug 2023 #1803
Downstream Merge 2023-08-03 #1798
8-1-23 #1795
OCPBUGS-16767 , SDN-3507 , SDN-3733 : [DownstreamMerge] 7-27-23 #1789
OCPBUGS-15811 : SDN-3733: Downstream Merge: 25th July 2023 #1784
OCPBUGS-10650 , OCPBUGS-12747 , OCPBUGS-16413 , SDN-3732 , SDN-3733 : [DownstreamMerge] 7-19-23 #1750
Dockerfile: build both RHEL8 and RHEL9 shims #1760
SDN-3733 : [DownstreamMerge] 7-13-23 #1757
11 jul 23 #1752
07 jul 23 #1747
SDN-3993 : [DownstreamMerge] 06 jul 23 #1742
OCPBUGS-14632 : [DownstreamMerge] 30 jun 23 #1729
OCPBUGS-15127 : Dockerfile: bump to ovn 23.03.0-69 (for LB templates) and ovs 3.1.0-32 (upgrade perf) #1710
OCPBUGS-15523 : [DownstreamMerge] 6-27-23 #1726
OCPBUGS-15227 : [DownstreamMerge] 6-21-23 #1718
OCPBUGS-15226 : EgressIP: do not patch the status if the object no longer exists #1717
6-18-2023 #1714
OCPBUGS-14769 , SDN-3885 : Downstream Merge 13th June 2023 #1707
OCPBUGS-10592 , OCPBUGS-10841 , OCPBUGS-11180 , OCPBUGS-12747 , OCPBUGS-1715 , OCPBUGS-4370 , OCPBUGS-4485 , SDN-3733 , SDN-3838 , SDN-3840 : Downstream Merge 6th June 2023 #1697
OCPBUGS-12352 : Updating ovn-kubernetes-base images to be consistent with ART #1700
OCPBUGS-14636 : Fix Downstream Unit Tests #1696
OCPBUGS-12800 , OCPBUGS-13863 , OCPBUGS-14286 , OCPBUGS-14449 , OCPBUGS-4485 , SDN-3555 , SDN-3790 : Downstream Merge 1st June #1692
OCPBUGS-9825 : LoadBalancer Templates Merge Downstream: 25th May 2023 #1683
OCPBUGS-6013 : Call SyncEndpoints from AddService #1671
OCPBUGS-13716 : Use ovsver and ovnver to infer the short version numbers for ovs and ovn #1664
OCPBUGS-12971 : Fix bug that resulted in routes not be restored to a new vnic #1665
OCPBUGS-11567 : Check the status of a pod before trying to get its ip #1663
OCPBUGS-11716 : [release-4.14] Use loadbalancer.Name as client index #1652
OCPBUGS-11534 : Stack migration #1643
Remove no-longer-used rhel9-specific dockerfiles #1635
OCPBUGS-283 , OCPBUGS-3176 : Downstream merge 3rd April 2023 #1626
Updating ovn-kubernetes-microshift images to be consistent with ART #1620
OCPBUGS-6947 : CARRY: use “prefer local” for annotated services #1622
OCPBUGS-10839 , OCPBUGS-10962 : [DownstreamMerge] 28 March 2023 #1611
OCPBUGS-10485 : Bump OVS to 3.1.0-10 #1613
node: small downstream CARRY patch cleanup #1549
OCPBUGS-10889 , OCPBUGS-8473 : Downstream Merge [27-mar-2023] #1608
OCPBUGS-7932 , OCPBUGS-7988 , OCPBUGS-8080 , OCPBUGS-8278 , OCPBUGS-8280 , OCPBUGS-9990 : Downstream Merge [10-mar-2023] #1574
Dockerfiles: copy RHEL-9 bits over top of unused RHEL8 bits #1553
OCPBUGS-10395 : Bump OVN to disable CT flush #1590
Updating ovn-kubernetes-microshift images to be consistent with ART #1576
Updating ose-ovn-kubernetes images to be consistent with ART #1578
Updating ovn-kubernetes-base images to be consistent with ART #1575
OCPBUGS-8222 , OCPBUGS-8397 , OCPBUGS-8464 : [DownstreamMerge] 7 Mar 2023 #1556
OCPBUGS-7952 : Dockerfile: bump to ovn23.03-23.03.0-4.el9fdp for RHEL9 #1554
OCPBUGS-5889 : [DownstreamMerge] 2023-03-03 #1552
Removal of small code delta from upstream #1548
rhel9: bump to ovn23.03-23.03.0-preview.4 #1550
Downstream Merge [March 2nd 2023] #1551
2-28-23 #1546
OCPBUGS-2663, Bug 2091780, OCPBUGS-6739: Downstream merge 2023-02-20 #1533
rhel9: bump to openvswitch3.1-3.1.0-2.el9fdp #1544
OCPBUGS-7296 : Remove ICNIv1 from ovn-kubernetes #1531
Dockerfiles: switch to dnf #1539
iptables package is missing in microshift image #1530
Updating ovn-kubernetes-microshift images to be consistent with ART #1443
rhel9: no longer need to use iptables wrappers #1526
cleanup: drop redundant selinux-policy install in onvkube dockerfiles #1525
iptables: use container iptables, not the host’s #1481
rhel9: oc RPM does the kubectl symlink #1523
rhel9: no longer need python3-pyOpenSSL #1519
rhel9: remove stray oc install #1518
Add RHEL9 image Dockerfiles #1495
Downstream merge 2023-02-07 #1510
OCPBUGS-6953 , OCPBUGS-6955 : [Downstream Merge 6th Feb 2023] #1509
OCPBUGS-4909 : Dockerfile: bump OVN to 22.12.0-18 #1487
Bug 2078222, OCPBUGS-4119, OCPBUGS-5930, OCPBUGS-4425: [DownstreamMerge] 1-31-23 #1496
Bug 2047299, OCPBUGS-2337: [DownstreamMerge] 13 Jan 2023 #1474
Bug 2041746 : Bump OVN to 22.12.0-4 #1468
Bug 2075548 : [DownstreamMerge] 09 Jan 2023 #1466
15 Dec 2022 #1454
Updating ose-ovn-kubernetes images to be consistent with ART #1430
OCPBUGS-4825 : [DownstreamMerge] 12-14-22 #1449
OCPBUGS-4659 : [DownstreamMerge] - 12-12-22 #1437
Updating ovn-kubernetes-base images to be consistent with ART #1431
Fix product build issue with more straight forward bash #1432
OCPBUGS-4502 : Downstream Merge 7th-December-2022 [Support service session affinity timeout] #1418
OCBUGS-4502 : Dockerfile: bump OVN to 22.09.0-25 #1424
Update base image of Dockerfile #1239
OCPBUGS-3739 : [DownstreamMerge] 12-02-22 #1410
OCPBUGS-2319 : [DownstreamMerge] 11-30-22 #1405
OCPBUGS-799 : Bump OVN to 22.09.0-22 #1403
Bug OCPBUGS-1352: [DownstreamMerge] 11-18-22 #1400
Bug 2092567 : [Downstream Merge] 16/11/2022 #1381
OCPBUGS-3797 : [4.13] Dockerfile: bump OVS to 2.17.0-62.el8fdp #1362
OCPBUGS-3292 : downstream windows fixes #1377
Update images to be consistent with ART #1371
Downstream merge 11-08-2022 #1364
EIP: remove downstream’s duplicate node delete test #1358
SDN-3589 : downstream merge 11-02-2022 #1355
OCPBUGS-2770 : Allow empty nexthop in L3GatewayConfig node annotation #1337
Full changelog
OCPBUGS-36096 : Fix CVE-2024-6104 by updating http-retryable to 0.7.7 #89
OCPBUGS-33622 : Fix CVE2023-45288 by bumping x/net to v0.24.0 -4.15 #80
OCPBUGS-25978 : Rebase with upstream: Fix snyk code issue: Path Traversal #71
Updating ose-powervs-block-csi-driver-container image to be consistent with ART #66
MULTIARCH-4027 : Rebase with upstream: Kubernetes Improper Input Validation vulnerability #65
MULTIARCH-4022 : Rebase with upstream: v0.5.1 changes #63
MULTIARCH-3987 : synk: ignore vendor dir #57
Rebase with upstream: v0.5.0 changes #56
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #49
Updating ose-powervs-block-csi-driver images to be consistent with ART #47
cherry-pick: Improve delete device failure logs in driver node #46
OCPBUGS-17309 : Updated golang.org/x/net/html dependency. #43
Rebase with upstream: v0.4.0 changes #42
Rebase: upgrading go modules #40
Rebase with upstream: reduce multipathd usage (OCPBUGS-16878) #39
Rebase with upstream: removed panic and some cleanup #38
Rebase with upstream #37
Package device-mapper-multipath added #36
Merging upstream code with downstream #33
OCPBUGS-12922 : Updated net dependencies #29
OCPBUGS-12716 : Updating ose-powervs-block-csi-driver images to be consistent with ART #30
Updating ose-powervs-block-csi-driver images to be consistent with ART #26
OCPBUGS-6454 : update net deps #23
Update OWNERS to Multi-Arch component #22
Rebase to upstream v8 #21
Updating ose-powervs-block-csi-driver images to be consistent with ART #19
Rebase with upstream kubernetes-sigs/ibm-powervs-block-csi-driver. #20
Rebase with upstream kubernetes-sigs/ibm-powervs-block-csi-driver. #16
Full changelog
OCPBUGS-25714 : snyk: ignore vendor dir #59
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #56
UPSTREAM <drop>: OCPBUGS-23628: SAST Scan detected vulnerability in go.uber.org/zap #52
STOR-1402 : Chore: update libraries in all operators [4.15] #51
OCPBUGS-22628 : Bump otelhttp to >= v0.44.0 #49
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #47
Update OWNERS add yussufsh #43
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #39
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #38
Update the powervs-csi-node to use nodeSelector for ppc64le #37
STOR-1438 : Restart controller Pods if metrics-serving-cert changed #36
OCPBUGS-16531 : Upgraded openshift/library-go to remove indirect references to goproxy. #35
OCPBUGS-16654 : Rename sidecar binding RBACs #32
OCPBUGS-16783 : Chore: Update OWNERS #33
STOR-1065 : Rework sidecar bindings to bind common ClusterRoles #31
OCPBUGS-14824 : Bump ibm-powervs-block-csi-driver-operator library-go #30
OCPBUGS-12925 : Updated net dependencies #26
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #25
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #24
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #23
Adding storage team to OWNERS so they can perform lib-go updates. #21
OCPBUGS-8683 : Add management workloads annotations #20
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #19
add proxy to node-update-controller #18
OCPBUGS-6455 : updating net deps #15
Update OWNERS to Multi-Arch component #14
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #12
Updated operator folder and deployment name in the readme file #11
Full changelog
OCPBUGS-36106 : UPSTREAM: <carry>: Fix go-retryablehttp CVE 4.15 #74
OCPBUGS-22629 : Bump otelhttp to >= v0.44.0 #58
OCPBUGS-24170 : Updating ose-powervs-cloud-controller-manager-container image to be consistent with ART #61
MULTIARCH-4036 : Manual rebase of upstream release 1.28 on 28-11-2023 #60
MULTIARCH-3989 : UPSTREAM: <carry>: snyk code scan exclude vendor directory #50
MULTIARCH-3997 : Support to use service instance name in config #49
OCPBUGS-21763 : CVE-2023-39325 - Update net dependencies - 4.15 #44
OCPBUGS-19272 : Updating ose-powervs-cloud-controller-manager images to be consistent with ART #43
UPSTREAM: <carry>: Add check for valid Power VS instance id #42
Manual rebase to k8s 1.27 and go 1.20 #40
Revert images golang 1.18 #38
Updating ose-powervs-cloud-controller-manager images to be consistent with ART #37
Revert build_image to the one currently specified in release repo #36
OCPBUGS-12921 : Updated net dependencies #33
Updating ose-powervs-cloud-controller-manager images to be consistent with ART #31
Updating ose-powervs-cloud-controller-manager images to be consistent with ART #30
OCPBUGS-6456 : update net deps #27
Update OWNERS to Multi-Arch component #26
Updating ose-powervs-cloud-controller-manager images to be consistent with ART #25
Full changelog
OCPBUGS-61702 : Use OS_GIT_VERSION in Makefile when found (for Konflux builds) #128
OCPBUGS-54753 : Fix for CVE-2024-51744 in github.com/golang-jwt/jwt/v4 in release-4.15 #115
OCPBUGS-41977 : Update go.mod to fix CVE - 4.15 #85
OCPBUGS-26555 : PowerVS: Bump powervs-utils to v0.0.0-20240105123432-7588e9595c17 #72
OCPBUGS-24089 : Updating ose-powervs-machine-controllers-container image to be consistent with ART #66
NO-ISSUE: snyk code scan exclude vendor directory #60
Fix nil nextURL #59
OCPBUGS-21878 : CVE-2023-44487 - Bump golang.org/x/net to v0.17.0 - 4.15 #53
Update dependencies and use k8 1.28 #52
OCPBUGS-19144 : Updating ose-powervs-machine-controllers images to be consistent with ART #51
OCPBUGS-18338 : Fix CI by running tests natively by default #50
MULTIARCH-3669 : Set instance build condition to avoid attempting to create duplicate vm with same name #49
MULTIARCH-3677 : Add pagination for listing service instances #48
MULTIARCH-3667 : Loadbalancer integration support for control plane machines #41
MULTIARCH-3668 : Update make file to use latest golang #47
MULTIARCH-3669 : Avoid setting VM provider ID as soon as VM creation #46
Updating ose-powervs-machine-controllers images to be consistent with ART #45
OCPBUGS-11223 : Reduce metrics cardinality #44
openshift/api version update to latest #42
Updating ose-powervs-machine-controllers images to be consistent with ART #40
OCPBUGS-6457 : Update dependencies to Kube 1.26 #38
Update OWNERS to Multi-Arch component #37
Updating ose-powervs-machine-controllers images to be consistent with ART #36
Full changelog
OCPBUGS-18854 : Updating prom-label-proxy images to be consistent with ART #357
Bump openshift/prom-label-proxy to v0.7.0 #356
OCPBUGS-12293 : Update 4.14 prom-label-proxy image to be consistent with ART #355
Updating prom-label-proxy images to be consistent with ART #353
Bump openshift/prom-label-proxy to v0.6.0 #352
Updating prom-label-proxy images to be consistent with ART #351
Full changelog
OCPBUGS-56740 : BACKPORT: fix promtool analyze block shows metric name with 0 cardinality #256
OCPBUGS-43669 : fix(discovery): Handle cache.DeletedFinalStateUnknown in node informers’ DeleteFunc #233
MON-3528 : [bot] Bump openshift/prometheus to v2.48.0 #186
OCPBUGS-22743 : bump Prometheus to 2.48.0 (manual) #185
Bump openshift/prometheus to v2.47.2 #181
Bump openshift/prometheus to v2.47.2 #180
Bump openshift/prometheus to v2.47.2 #179
OCPBUGS-21633 : update golang.org/x/net to v0.17.0 #173
update OWNERS file #172
Bump openshift/prometheus to v2.47.0 #168
OCPBUGS-18846 : Updating golang-github-prometheus-prometheus images to be consistent with ART #169
Bump openshift/prometheus to v2.46.0 #167
Bump openshift/prometheus to v2.45.0 #166
Bump openshift/prometheus to v2.44.0 #164
Dockerfile.ocp: update note about UI assets after switching to embed #165
OCPBUGS-12996 : Add missing assets after manual merge #162
OCPBUGS-12825 : Updating golang-github-prometheus-prometheus images to be consistent with ART #160
Bump openshift/prometheus to v2.43.0 #158
Updating golang-github-prometheus-prometheus images to be consistent with ART #156
Bump openshift/prometheus to v2.42.0 #154
Bump openshift/prometheus to v2.41.0 #153
Bump openshift/prometheus to v2.40.7 #152
Bump openshift/prometheus to v2.40.6 #151
Bump openshift/prometheus to v2.40.5 #150
OCPBUGS-4273 : Bump openshift/prometheus to v2.40.4 #148
OCPBUGS-2873 : fix certificate reloads after rotation #145
Updating golang-github-prometheus-prometheus images to be consistent with ART #147
Full changelog
OCPBUGS-21771 : Bump golang.org/x/net to v0.17.0 #79
Bump openshift/prometheus-alertmanager to v0.26.0 #78
update OWNERS file #77
Bump v0.26.0 #76
OCPBUGS-18846 : Updating golang-github-prometheus-alertmanager images to be consistent with ART #75
OCPBUGS-18250 : Update alertmanager to 0.25.1 #74
OCPBUGS-12506 : update golang.org/x/net #71
OCPBUGS-12289 : Update 4.14 golang-github-prometheus-alertmanager image to be consistent with ART #70
Updating golang-github-prometheus-alertmanager images to be consistent with ART #68
Bump openshift/prometheus-alertmanager to v0.25.0 #67
Updating golang-github-prometheus-alertmanager images to be consistent with ART #65
Full changelog
OCPBUGS-38400 : feat: sync proxy settings in Alertmanager configuration #300
OCPBUGS-36719 : add proxyURL validation for smon,pmon and probe #298
OCPBUGS-29180 : fix: convert continue field between v1beta1 and v1alpha1 #276
OCPBUGS-29509 : fix: don’t fail metadata transform on unknown types (#6298) #278
OCPBUGS-24323 : Bump openshift/prometheus-operator to v0.70.0 #263
OCPBUGS-24126 : Updating prometheus-operator-admission-webhook-container image to be consistent with ART #260
OCPBUGS-24073 : Updating prometheus-operator-container image to be consistent with ART #258
OCPBUGS-24105 : Updating prometheus-config-reloader-container image to be consistent with ART #259
MON-3479 : [bot] Bump openshift/prometheus-operator to v0.69.1 #256
OCPBUGS-18707 : [bot] Bump openshift/prometheus-operator to v0.69.0 #255
OCPBUGS-22946 : fix: remove verbose logging admission-webhook #254
OCPBUGS-21637 : fix: disable HTTP2 connections by default #252
OCPBUGS-21637 : Bump golang.org/x/net to v0.17.0 #246
update OWNERS file #245
OCPBUGS-19108 : Updating prometheus-operator images to be consistent with ART #242
OCPBUGS-19204 : Updating prometheus-operator-admission-webhook images to be consistent with ART #244
OCPBUGS-19174 : Updating prometheus-config-reloader images to be consistent with ART #243
: Bump openshift/prometheus-operator to v0.68.0 #241
Bump openshift/prometheus-operator to v0.67.1 #240
Bump openshift/prometheus-operator to v0.67.0 #239
OCPBUGS-14466 : bump openshift/prometheus-operator to v0.66.0 #236
OCPBUGS-14033 : cmd/prometheus-config-reloader: add SIGTERM handler #234
OCPBUGS-1626 : [bot] Bump openshift/prometheus-operator to v0.65.1 #233
OCPBUGS-12324 : Update 4.14 prometheus-config-reloader image to be consistent with ART #230
Updating prometheus-operator images to be consistent with ART #229
Updating prometheus-config-reloader images to be consistent with ART #227
Updating prometheus-operator-admission-webhook images to be consistent with ART #226
Updating prometheus-config-reloader images to be consistent with ART #225
OCPBUGS-10109 : Updating openshift-state-metrics images to be consistent with ART #221
OCPBUGS-10137 : Updating openshift-state-metrics images to be consistent with ART #222
Updating prometheus-operator images to be consistent with ART #220
OCPBUGS-6055 : [bot] Bump openshift/prometheus-operator to v0.63.0 #216
Bump openshift/prometheus-operator to v0.62.0 #215
Updating prometheus-operator-admission-webhook images to be consistent with ART #214
Updating prometheus-config-reloader images to be consistent with ART #213
Updating prometheus-operator images to be consistent with ART #212
OCPBUGS-2778 : [bot] Bump openshift/prometheus-operator to v0.61.1 #209
Full changelog
MON-3502 : [bot] Bump openshift/node_exporter to v1.7.0 #139
OCPBUGS-21635 : upgrade golang.org/x/net v0.17.0 #133
update OWNERS file #132
OCPBUGS-18850 : Updating golang-github-prometheus-node_exporter images to be consistent with ART #131
Bump openshift/node_exporter to v1.6.1 #130
OCPBUGS-12714 : Bump openshift/node_exporter to v1.6.0 #129
OCPBUGS-12507 : Upgrade golang.org/x/net to v0.10.0 to fix the CVE #128
Updating golang-github-prometheus-node_exporter images to be consistent with ART #122
Updating golang-github-prometheus-node_exporter images to be consistent with ART #120
OCPBUGS-6311 : addressing vulnerability GO-2022-1144 #119
Bump openshift/node_exporter to v1.5.0 #118
Updating golang-github-prometheus-node_exporter images to be consistent with ART #117
build(deps): bump github.com/prometheus/client_model from 0.2.0 to 0.3.0 #114
build(deps): bump github.com/jsimonetti/rtnetlink from 1.2.2 to 1.2.3 #115
Full changelog
OCPBUGS-15253 : Include ingress’s namespace in ingress without class metric #35
go.mod: remove replaces #33
OCPBUGS-21823 : bump(k8s,openshift) to address CVE-2023-44487 #32
WRKLDS-806 : bump k8s to 1.28 #31
OCPBUGS-19202 : Updating ose-route-controller-manager images to be consistent with ART #30
refactor route controller manager to use library-go server and ControlerCommand for generic setup #28
add dummy flags needed for a switch to library-go server and ControlerCommand #29
Revert “[WRKLDS-730] refactor route controller manager to use library-go server and ControlerCommand for generic setup” #25
refactor route controller manager to use library-go server and ControlerCommand for generic setup #22
WRKLDS-700 : bump(k8s) to v0.27.1 #21
Updating ose-route-controller-manager images to be consistent with ART #19
Updating ose-route-controller-manager images to be consistent with ART #18
Updating ose-route-controller-manager images to be consistent with ART #17
Update gomod mapping for k8s.io/dynamic-resource-allocation #16
Updating ose-route-controller-manager images to be consistent with ART #13
WRKLDS-594 : bump(k8s): v1.26.1 #15
OCPBUGS-4198 : do not depend on the API defaulting when creating Routes #11
Full changelog
OCPBUGS-34831 : fix issuer check during JWT authentication for 4.15 #538
: OCPBUGS-35076: Release Fix CVE go-jose #542
OCPBUGS-32890 : CVE-2024-28180 bump go-jose to v3.0.3 #531
OCPBUGS-24153 : Updating telemeter-container image to be consistent with ART #496
OCPBUGS-24153 : Force kill jobs after integration v2 test finish #515
RHOBS-956 : Rename subscription_labels to ocm_subscription #495
OCPBUGS-22744 : go.mod: bump go.opentelemetry.io/contrib/instrumentation/net/http/ote… #493
rhelemeter: Parse org and cn with regex #492
rhelemeter: Validation of incoming metrics #491
add machine424 and rexagod to OWNERS #478
Bump golang 1.20 #490
OCPBUGS-21636 : Bump golang.org/x/net to v0.17.0 #483
Server: Add support for shipping traces to an otel collector #482
rhelemeter: support client info file in jsonnet #481
OCPBUGS-19248 : Updating telemeter images to be consistent with ART #480
Fix: handle authorization server 403 responses #479
RHOBS-870 : Improve logging #477
RHOBS-855 : rhelemeter: Read client info/data from request #476
OCPBUGS-16397 : Nutanix OCP cluster telemetry data “host_type” shows “virt-unknown” #474
chore: bump github.com/prometheus/prometheus to v0.45.0 #475
: fix mtls secret generation #473
Revert wrong cert name change of #455 #472
: add secret for external mtls connection #470
MON-3230 : Add TLS auth to telemeter-client #455
jsonnet: Add config to support rhelemeter #468
Improve debug roundtripper logs #467
Fix integration test documentation #461
Fix path benchmark #466
Add RHEL POC server #465
OCPBUGS-12345 : tools: update to golangci-lint v1.51 #464
OCPBUGS-12678 : Update golang.org/x/net to lastest version #462
add thibaultmg in OWNERS file #459
Update OWNERS #456
Use receive handler logger #450
OCPBUGS-10169 : Updating telemeter images to be consistent with ART #452
Filter noisy logs from TCP probes #453
Add douglascamata as reviewer and approver #454
OCPBUGS-6962 : Add ‘agent-installer’ value to ‘install_type’ label #447
OCPBUGS-6477 : Upgrade go version and dependencies #448
server: Ensure logging level is flag is respected #449
Add ‘hypershift’ value to ‘install_type’ label #437
Replace ‘hypershift-unknown’ with ‘unknown’ #438
Fix receive whitelist logic #445
Bump snappy version and add debug logs #444
Add metrics for telemeter receive path #443
Log faulty tokens #441
pkg/receive: Sanitize metric labels #440
Updating telemeter images to be consistent with ART #439
Add Daniel Mellado to OWNERS #436
Add rules for cluster vCPU-hours #435
Full changelog
OCPBUGS-66329 : Replace RunHostCmd with Exec function to censor bearer token being exposed #30528
OCPBUGS-57335 : Fix regex parser for censoring private key #29913
OCPBUGS-61229 : images/tests: Remove rteval #30207
OCPBUGS-57136 : aws/edge: prevent test using unschedulable nodes #29897
OCPBUGS-55477 : support provider type external #29739
NO-JIRA: Sync OWNERS from main branch #29856
OCPBUGS-55695 : [build] Ensure Git Clone Does Not Run Privileged #29752
OCPBUGS-54769 : Fix egress firewall tests by updating the URL from docs.openshift.com to redhat.com #29664
OCPBUGS-52582 : Use payload pullspec for image info test #29590
OCPBUGS-41614 : Disable:Broken for [sig-builds][Feature:Builds][Slow] can use private repositories as build input build using an HTTP token should be able to clone source code via an HTTP token #29502
OCPBUGS-49647 : Fixing build s2i ruby test data inline with latest ruby version(>=3.0) #29503
OCPBUGS-48749 : Add/remove team members to the OWNERS file for Builds #29551
OCPBUGS-44106 : Adjust createDNSPod() to support hypershift dual-stack test #29257
OCPBUGS-38086 : vertical scaling test should not rely on CPMS replicas #28985
OCPBUGS-39136 : Bump timeout for the pod-network-service endpoints check #29053
OCPBUGS-38787 : [4.15] egressfirewall: skip ping tests in case of hypershift kubevirt on Azure infra #28994
OCPBUGS-36264 : add Proxy config #28912
OCPBUGS-37630 : remove unused in-cluster monitoring code #28956
#28746 FIX [release-4.15] OCPBUGS-33023: update egressFWTestE2E image which contains ping binary #28898
OCPBUGS-36724 : Removes dependency on samples operator images #28927
OCPBUGS-36319 : Only look for thanos connections to platform monitoring stack #28915
OCPBUGS-34949 : test/extended: skip etcd leader change check on hypershift #28919
OCPBUGS-28928 : Add test for UpgradeValidation contention #28820
OCPBUGS-33368 : [release-4.15] monitor test service-type-load-balancer-availability setup fails frequently in 4.14 & 4.15 PowerVS CI jobs #28821
#28776 FIX [release-4.15] OCPBUGS-33368: monitor test fix to wait before connecting to a non-existent dns on PowerVS and IBMCloud platforms #28791
OCPBUGS-26520 : Kuryr: Ignore Upgradeable=False on operators tests #28512
OCPBUGS-33347 : Provide SCC access via RBAC #28780
OCPBUGS-33541 : Adjust the method of get the apiServer (release-4.15) #28762
OCPBUGS-33473 : [release-4.15] MULTIARCH-4352: Censor private key from pod dump logs #28666
: OCPBUGS-32554: Also rely on oomkilled exit code 137 in build test #28724
OCPBUGS-31726 : Use centos7 tag instead of latest for cmd images tests #28688
OCPBUGS-30892 : fix panic on non-standard node-role labels #28656
OCPNODE-2101 : add kube-rbac-proxy-crio toleration change #28637
OCPBUGS-30161 : Skip tests for image-registry operator with single replica #28633
OCPBUGS-29927 : Only extract node role from properly formatted node-role label #28615
TRT-1512 : Add debug messages to debug openshift-tests hang #28610
OCPBUGS-27847 : Do not assume there is just a single kubelet systemd service #28545
OCPBUGS-29031 : Replace ‘coreydaley’ with ‘sayan-biswas’ #28573
OCPBUGS-26487 : Increase timeout for pod-network-service #28508
OCPBUGS-27934 : fix panic in service-poller #28550
OCPBUGS-26960 : updated timeout to 3 seconds to account for network timing issues #28519
OCPBUGS-27373 : pathologicalevents: fix regex in LeakyStatefulsetEvents matcher and add test #28549
OCPBUGS-27348 : pkg/monitortests/clusterversionoperator: Add an exception for ingress going Available=False on IngressUnavailable #28531
fix jira components to match actual jira components #28455
OCPBUGS-27373 : pathologicalevents: Ignore leaky RecreatingTerminatedP… #28533
OCPBUGS-27217 : [4.15] Live migration suite e2e #28524
OCPBUGS-26043 : Adding test case for when exceed openshift.io/image-tags will ban to … #28492
OCPBUGS-25724 : Cherrypick Ruby 3.0 ImageStream Fix #28483
TRT-1408 : Disable TopologyAwareHintsDisabled check whenever NoExecuteTaintManag… #28520
OCPBUGS-26239 : Properly ignore kube guard probe events #28504
OCPBUGS-26206 : Update cluster-monitoring-operator request limits #28506
OCPBUGS-24583 : push violation regression check into the default requirement result #28433
OWNER_ALIASES: update CoreOS team leads #28447
NOJIRA: collect certificate data: use SkipHashed option #28443
NO-JIRA: Increase cluster-capi-operator watch count take2 #28424
OCPNODE-1892 : Conditionally skip tests to help with k8s 1.29 #28436
NO-JIRA: Add test case for namespaced filename in oc process #28440
API-1524 : ignore stale condition challenge events #28438
TRT-1359 : Ignore azure interaction errors since they are not fatal for our usage #28420
TRT-1347 : Add ability to indicate a monitor test was skipped #28425
NO JIRA: update cert data #28437
OTA-362 : pkg/monitortests/clusterversionoperator: Fatal unless Available=False in allow-list #27231
OCPNODE-1892 : Update ETCD storage data for k8s 1.29 #28435
OCPBUGS-24290 : cert metadata: generate jsons and markdown for missing metadata viola #28432
NO-JIRA: test/e2e/upgrade/monitor: –abort-at=100 requires a complete update #28402
eliminate the closed channel race in pod_log_streamer #28426
OSASINFRA-3291 : Remove Kuryr bits #28397
OCPCLOUD-2256 : Increase cluster-capi-operator watch count #28422
TRT-1329 : Refactor pathological events framework #28399
SO-117 : Removing Ruby 2.7 UBI7-8 tests #28418
trt-1367: Get JobType After Collection Ends #28415
TRT-1235 : Add ability to specify alerts that should never fire #28411
TRT-1362 : Update disruption/alert test data and fix unit test #28409
make it slightly easy to produce markdown with table of contents #28407
update the TLS ownership files #28394
update cert inspect to skip the rest of proxy-CAs #28406
WRKLDS-908 : test: ignore deprecation warnings in command outputs #28404
collect certificate data: rewrite configmap/secret names #28405
Certs 11 fix certs after break #28395
ignore stale condition challenge events #28204
TRT-1274 : get azure disk metrics and create relevant intervals #28375
Revert “TRT-1339: Revert #28233 “ignore repeated TopologyAwareHintsDisabled events”” #28386
OCPBUGS-23079 : fix: increase watch count for KubeControllerManagerOperator #28388
OCPBUGS-23102 : Revert “[sig-instrumentation] tests fail due to JSON parsing error.” #28389
OCPBUGS-23084 : expect to not see “git clone” and not just “clone” during a test #28352
TRT-1354 : Add support for intervals to have row differentiators #28376
OCPBUGS-18776 : [sig-instrumentation] tests fail due to JSON parsing error. #28320
“TRT-1342: Trim the intervals for loki serializer to avoid errors during ingest” #28372
trt-1340: update run-upgrade to use ginkgorunsuiteoptions #28380
TRT-1339 : Revert #28233 “ignore repeated TopologyAwareHintsDisabled events” #28381
trt-1344: remove msg assertion #28379
Add test which verifies every certificate has necessary annotations #28305
OCPBUGS-19527 : retry Prometheus client creation #28323
OCPBUGS-20479 : Add pod sandbox failures to e2e charts #28366
skip revisioned certificates in raw info #28370
TRT-1340 : Increase cmd support for ExactMonitorTests and DisableMonitorTests #28371
OCPBUGS-22703 : tolerate AWS edge nodes on monitor tests #28363
Revert “OCPBUGS-22413: Use Centos 8 Stream mysql image in tests” #28367
Skip FailedScheduling intervals when masters are in NodeUpdate #28358
OCPBUGS-22413 : Use Centos 8 Stream mysql image in tests #28357
Allow the unknown alerts test to fail as it looks stable #28345
add hack/update-tls-ownership.sh #28359
Drop not-used pulledInvalidImages method #28330
start adding raw tls info #28334
Restore APIServer graceful shutdown windows #28354
Fix intervals mistakenly showing mass node NotReady #28351
Remove timelines command reprocessing intervals #28348
OCPBUGS-22358 : fix: increase upper bounds for samples operator #28353
put back previous Interval Slice algorithm #28344
OCPBUGS-22276 : Remove all docker.io images due to access denied #28347
Restore Node NotReady intervals #28349
trt-1320: update trt approvers #28343
Port remaining clusteroperator monitor intervals to structured #28341
Improvements and Additions to Alert Testing Stack #28332
Automated - Update synthetic test data #28237
prune the system CAs from proxy-ca in rawTLSInfo json #28336
add test tracking raw cert data #28321
OCPBUGS-9037 : Require http 1.1 or earlier when using curl #28301
Port Node and Pod State to Structured Intervals #28299
Extract the cluster operator name from Down/Degraded Alerts #28331
fix: wrap InitializeReleasePullSpecString in check for HasNoOptionalCapabilities #28329
Remove some redundant monitor tests #28326
OCPVE-723 : Add optional olm fixes #28302
Add debug info for interval counts and times #28311
OCPBUGS-20205 : feat: added support for ImageRegistry capability #28307
OCPBUGS-20024 : Revert “OCPBUGS-13366: ignore repeated TopologyAwareHintsDisabled events” #28233
pkg/monitortests/clusterversionoperator/legacycvomonitortests: Structured condition types #28306
Bump watch requests for cluster-baremetal-operator #28324
test/extended/images: update OWNERS #28322
hs, kubevirt: Wait node readiness before migration #28312
fix for OCP-11594 to skipped on disconnected env #28316
SDN-4062 : Revert “SDN-4042: Increase total upgrade time on OVN platforms” #28315
trt-1271: add risk analysis for monitor junit suites #28309
Revert #28295 “Automating test \“check the quota after import-image with –all option\” in upstrem” #28313
test/extended: Consolidate hard-coded local image registry dependencies #28308
Limit intervals to the current phase (addresses loki upload problems) #28294
Fix bug with disable-monitor #28293
Remove bug-related annotations #28298
OPNET-330 : fix DualStackIPv6Primary #28292
Automating test “check the quota after import-image with –all option” in upstrem #28295
Properly default –from-repository in run-monitor #28285
OCPBUGS-19909 : Updating parameters for build timing PushImage test #28288
make it possible to select which monitor tests to run #28215
Revert “Disable EgressIP test temporarily due to OVN-K bug” #28283
Port the clusteroperator intervals to new structured format #28262
Revert “Force using mirrored images in disruption tests” #28286
Bump openshift/kubernetes to get vSphere fix #28278
Force using mirrored images in disruption tests #28258
kubevirt: Add live migration tests #27980
some monitor tests only function on disruptive tests #28251
wait for the service to have endpoints before starting pollers #28242
fix PR 28224 #28238
OCPBUGS-18141 : retry query on MetricsAvailableAfterUpgradeTest setup #28228
Revert “OCPBUGS-18865: add monitortest: in-cluster disruption monitors” #28274
OCPBUGS-19293 : Updating openshift-enterprise-tests images to be consistent with ART #28264
OCPVE-295 : rteval #28261
add pod log streaming to monitor for etcd so we see all intervals #28243
OCPBUGS-18865 : add monitortest: in-cluster disruption monitors #28231
AUTH-365 : add PodSecurityViolation to watched alerts #28226
OCPBUGS-14053 : remove exception for MultipleDefaultStorageClasses #28042
remove unnecessary file from cmd folder #27979
STOR-1425 : Update to Kubernetes 1.28 #28097
Revert “Improvements and fixes for Loki intervals uploader” #28268
Adding leader election information to timeline #28225
Improvements and fixes for Loki intervals uploader #28053
Bring in updates k8s to disable networking test #28256
When –from-repository use built-in tests only #28253
[HyperShift/KubeVirt] Raise wait time between pod exec attempts #28249
Revert fake image injections for k8s 1.28 #28250
STOR-1425 : Add images coming in k8s 1.28 #28248
OCP-66086 : Automate PSAP NTO Prevent from stalld continually restarting #28157
Bug OCPBUGS-18718 Remove duplicate connection type from disruption name #28245
OCPVE-295 : fix: add rteval to the test image #28220
STOR-1425 : Add images coming in k8s 1.28 #28200
STOR-1425 : Disable NetworkPolicyStatus tests #28177
USHIFT-1590 : skip failing invariants in MicroShift #28193
Revert “created persistent volume claims can not exceed the limitation” #28232
Revert “in-cluster disruption: ensure that only one monitor is started in cluster” #28230
created persistent volume claims can not exceed the limitation #28224
Revert “Fail on APIs removed in the next release” #28227
OCPBUGS-13158 : in-cluster disruption: ensure that only one monitor is started in cluster #28081
Fail on APIs removed in the next release #27561
Service invariant #28202
prevent secondary errors reported in prior steps #28221
OCPBUGS-17477 : requestheader: wait for only 3 oauth-servers to be available #28161
[test/extended/networking] Rename ovnkube containers #28219
Reduce usage of dcs #28212
Do not fail etcd storage path test for GVRs that are not served. #28214
move graceful shutdown to monitor test #28201
move PDBUnhealthyPodEvictionPolicy from TP to beta #28206
if no openshift-tests image can be auto-detected or specified, skip it #28207
allow failures for tests intentionally producing failures #28211
fix *-to-host sampler failure calculation #28209
skip test with intermittent serial problems #28208
point host network, network disruption at the kubelet #28191
migrate some watching code to monitortests #28188
fail if no sampler output is found for the poller #28198
Fix possibility of intervals without from/to by requiring when we Build() #28182
OCPBUGS-17497 : Skip invariant load balancer test for None platform #28180
tolerate cluster without clusterversion #28197
select poller image from payload #28194
AUTH-409 : bump o/k for the updated PSa labels #28192
Fixes openshift-tests dry-run failure asking for KUBERNETES_MASTER #28165
TRT-930 : Update test to support 2 release query_results.json #28149
add e2e non-functional test for required-scc SCCs #28142
Add a test to flake if we see NetworkManager log “too many netlink events” #28098
OCPBUGS-16615 : Making prometheus telemetry test flake #28181
update watch-endpoint-slices to usable shape #28184
add comments requested in review #28186
rebrand invariant tests as monitor tests #28185
basic setup of podNetwork disruption tests #28179
start the watch-endpoint-slice command #28169
stop sampling when we stop #28178
run start and collect in parallel #28174
only close node ready if the node was not ready before #28170
make monitor command separately runnable #28168
OCPBUGS-15726 : add tests for openapi v3 #28129
fix microshift fix that broke all disruption #28175
Add stlaz and p0lyn0mial to OWNERS #28166
OCPBUGS-15726 : Revert “temporarily disable oc explain tests until openapi/v3 is working” #28155
Add some tests for event interval generation #28163
USHIFT-1464 : skip TestFrontProxy for MicroShift #28064
upgrade distribution to v3 #27958
Skip external service monitoring invariant for microshift #28160
Refactor e2e-test intervals to use the new locator builder #28099
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #28147
Remove obsolete buildanalyzer tool #28158
Bug OCPBUGS-17483: Skip invariant load balancer test for OpenStack #28154
be sure the exit code fails when the invariant tests fail #28152
OCPBUGS-17351 : Skip some invariants in microshift #28136
OCPBUGS-16166 : disable 2 tests in preparation to land k8s 1.27.4 #28148
Fix kubevirt test flake caused by pod name collision #28153
move the discovery filtering into suite filtering instead of post filtering #28145
move remaining disruption tests to invariants #28144
Disable EgressIP test termporarily due to OVN-K bug #28146
Bug OCPBUGS-6778: Correct condition for rejecting connection #27876
USHIFT-1484 : skip prometheus alerts for MicroShift #28070
remove unnecessary global modification from upgrade #28143
OCPBUGS-16615 : Moving Prometheus reporting telemetry to serial jobs #28138
OCPBUGS-15568 : Set quota wait timeout to 1 minute #28071
rough package alignment #28131
return calculated intervals #28141
move existing invariant tests #28130
remove extraneous layering for the monitor #28127
Fix ClusterOperator tests that can only report failures #28120
properly categorize the stop and start intervals #28139
MON-1960 : Remove exceptions for alert annotations #28118
Revert invariant and other refactors #28133
Remove exception on KubeSchedulerDown runbook #28126
expedient engineering: inject intervals into recorded events from out… #28128
Add Fabio and remove Stefan from image approvers #28125
separate the run, run-upgrade, and run-test #28121
Remove enabling multinetwork policy #28116
OCPVE-292 : OCPVE-293: OCPVE-294: feat: added a realtime latency test suite #28110
Update image mirroring instructions to handle uncompressed layers #28101
protect against nil panic on unassigned disruption adapter #28123
fix: workload partitioning - added more error handling for retry attempts #28111
Revert “adds legacy disruption to invariant tests” #28117
adds legacy disruption to invariant tests #28104
refactor command line start for openshift-tests #28107
oauth requestheaders: gather oauth-server logs as admin #28114
Automated - Update synthetic test data #28108
SDN-4042 : Increase total upgrade time on OVN platforms #28074
Update image stream test to create a manifest list image by default #28017
Adjust interval builder before we continue porting #28109
Put times in UTC to allow local testing; use asserts where we can #28091
feat: make data gathering more robust #28102
remove suite hook configuration and make information flow one-way #28090
USHIFT-1463 : add [apigroup] annotation to skip tests for MicroShift #28061
OCPVE-318 : feat: add node validation for workload partitioning #28056
Unrevert pull request #28069 from dgoodwin/interval-builder #28095
Disruption reverts #28093
AUTH-401 : test/e/authorization/pod_security_admission: add e2e test for pinning SCCs #28092
fix logic – If error, return current time; else return log line time #28084
add interface for future invariant tests #28077
Interval Building Phase 1 #28069
create a recorder interface that separates monitoring from recording #28080
remove unnecessary options and make monitor act like controller #28079
Fix retrieval of virt-launcher pod of the guest node #28082
Fix usage of priviliged pods in sig-kubevirt test cases #28078
trt-1150: move lock so prevent multiple file updates in single commit #28065
finish scrubbing out sampler #28076
Automated - Update synthetic test data #28072
MON-3280 : enable etcd metrics check again #28049
OCPBUGS-13158 : Run new tests which monitors in-cluster API server disruption as daemonsets on masters/workers #27909
fix: add missing namespaces to exclude list #28060
Update S2i Image tests for removing nodejs 14 ubi8 eol #28058
only close intervals if they are open #28059
USHIFT-704 : skip [sig-cli] whoami result with console for MicroShift #28005
ignore machine api capability #28052
ODC-7333 : Add consolesamples to the exception list of CRDs without a status #28057
Handle partial discovery results in DoesApiResourceExist. #28047
Remove audit id from sample err #28043
Remove sampler #27960
ODC-7333 : Add consolesamples to the list of console resources that all users should have read access #28045
OCPBUGS-15893 : Update permission to incl. watch for helmchartrepositories for console users #28044
Automated - Update synthetic test data #28014
increase cloud-credential-operator watch since we added a self-clusteroperator watch #28046
OCPBUGS-15291 : Update broken dc tests due to deprecation warning #28041
Enable Azure platform check in external cloud provider test #27776
update pathological event namespace label to be unambiguous #28038
multinetpolicy: use RetryOnConflict to reduce flakes #28035
USHIFT-1379 : skip must-gather tests for MicroShift #28015
Provide more detailed information when extracting binary fails #28034
test: extended: deployment: use correct apigroup for imagestreamtags #27689
Add logs in clusterquota test for more verbosity #28032
OCPBUGS-15500 : Avoid panic attempting to process interval logs #28012
Add test checking nodes are in proper read state before upgrade #28028
trt-1030: 80s for service lb under test #28004
OCPBUGS-15835 : remove references to registry.centos.org #28029
OCPVE-379 : fix: avoid checking resources for BestEffort pods #28006
OCPBUGS-15568 : Increase clusterquota wait timeout from 10 to 30 seconds #28026
OCPBUGS-15558 : retry promql a few times to mask i/o timeouts #28010
AUTH-377 : Add oauth-server redirect URI validation e2e tests #27922
temporarily disable oc explain tests until openapi/v3 is working properly #28022
USHIFT-647 : skip non-existing resources from security.openshift.io #27897
trt-1117: Test for update lease errors #28020
print out deployment for incorrectly scheduled pods #28011
OCPBUGS-14425 : Skip CCM upgradable condition on AlibabaCloud #27967
Update “verify that nodes have no unexpected reboots” test #28016
allow cluster-config-operator to manage featuregate upgrade block #28009
add a networking alert for OVNKubernetesResourceRetryFailure #28008
add debugging info for cluster not ready to upgrade #28007
OCPVE-378 : feat: remove skip, allow check on all platforms regardless #27911
Report external binary usage #28000
Changing the severity of “missing runbook_url annotation for critical alerts” test case from flaky to failure #27987
disruption refinement for availability, not latency. #28003
TRT-1097 : add KubeMemoryOvercommit to specific test so that the general test doesn’t fail #28002
OCPBUGS-11652 : Enable oc adm node-logs #27992
skip reboot test when machineconfigs not in target cluster #27999
OCPBUGS-15291 : [sig-cli] oc idle: get a dc name through labels instead of parsing oc create output #27998
Automated - Update synthetic test data #27995
Flake ci-cluster-network-liveness and new backend disruption failures to avoid payload rejections #27990
verifies number of node reboots even for HA #27994
OCPBUGS-13379 : machines: add a test which verifies number of node reboots #27993
strip operator framework from resource watch and fix bugs #27972
Fix panic in loki upload #27991
Replace dashes in locator keys for upload to loki, add namespace label when possible #27983
Automated - Update synthetic test data #27982
Update kubevirt LB connectivity tests to work with AWS ELB #27978
STOR-1263 : Bump (openshift/kubernetes): to get openshift/kubernetes#1595 #27970
add shutdown interval for apiserver from events #27919
Update expected name for OVN acl logging test #27974
Updated pathological events #27942
new disruption backend #27838
OCPBUGS-14667 : Revert “MON-3213: Changing the severity of “missing runbook_url annotation for critical alerts” test case from flaky to failure” #27969
MON-3213 : Changing the severity of “missing runbook_url annotation for critical alerts” test case from flaky to failure #27933
push intervals to loki #27930
USHIFT-1300 : Avoid getting cluster state for TEST_PROVIDER env var #27964
hard monitor.Event message creation #27946
ETCD-425 : restore test should validate state #27921
OCPBUGS-14338 : test/extended/prometheus: increase telemetry series threshold #27959
Running tests using external binary #27570
OCPBUGS-14321 : Increase timeout in sysctl allowlist test #27955
remove legacy recovery tests #27917
OCPBUGS-13649 : add tests for ClusterResourceQuota: count should work for all resources #27934
MON-3219 : Clear missing summary/description annotation test case exception #27944
OCPBUGS-13788 : 2x Revert “test/extended: Add MultiNetworkPolicy IPv4/IPv6 test cases” #27926 #27927
OCPBUGS-14125 : Move from registry.centos.org to quay.io #27945
LoadBalancer network connectivity test cases for HyperShift+KubeVirt #27931
Revert “Add coverage for GET verb and websocket handshake to SCC exec tests.” #27943
update the PDB resource to point to resource, not kind #27938
fix oc explain status and spec verification #27937
Add coverage for GET verb and websocket handshake to SCC exec tests. #27836
test/extended/prometheus: fix test with enabled telemetry #27915
bump(k8s.io/kubernetes) #27935
Automated - Update synthetic test data #27920
Change oc annotate cli test output check string #27932
Migrate set-image.sh to go based test #27863
STOR-1263 : Rebase 1.27.1 #27894
Update etcd team lead #27928
Revert “test/extended: Add MultiNetworkPolicy IPv4/IPv6 test cases” #27926
trt-1032: update upperbounds based on recent failures #27923
OCPBUGS-6586 : oc idle: increase wait timeouts to 60 sec #27913
test/extended: Add MultiNetworkPolicy IPv4/IPv6 test cases #27795
Mark ErrorReconcilingNode macAddress not found as known and with existing BZ #27918
OCPBUGS-13366 : ignore repeated TopologyAwareHintsDisabled events #27916
OCPBUGS-13372 : Add missing error check in sysctl allowlist test #27914
trt-900: log risk-analysis errors but don’t pass back up #27898
Automated - Update synthetic test data #27908
OCPBUGS-5943 : Revert “ignore repeated TopologyAwareHintsDisabled events” #27815
Reactivate netpol tests #26775
Adjust thresholds for reasonable upgrade durations #27905
Fix up the chart so the “Not” column is lined up #27886
Automated - Update synthetic test data #27861
OCPBUGS-12447 : Add intervals and test for ovs-vswitchd unreasonably long poll interval #27889
WRKLDS-665 : Enable [sig-scheduling] SchedulerPreemption [Serial] validates pod disruption condition is added to the preempted pod [Suite:openshift/conformance/serial] #27874
TRT-856 : DNS and disruption overlap test #27826
OCPBUGS-11944 : use tokenrequest from lib-go #27883
CCO-367 : Allow CCO to be Upgradeable=False when credentialsMode=Manual #27887
add anonymous cert detection test case #27890
Render html from monitor #27853
PSa podspec exporter e2e: don’t specifically add seccompProfile to the podspec #27756
ETCD-417 : add a new basic etcd backup/restore test #27875
test/extended: cpu-partitioning: skip cluster infrastructure for Hypershift #27884
OCPNODE-1257 : feat: remove custom node wait logic for upstream framework call #27882
Add (optional) dual-stack tests to the CNI certification test suite #27807
Trt-945 detect master node updates #27851
Updating openshift-enterprise-tests images to be consistent with ART #27793
Move selfsubjectreviews RBAC rule to the right place #27873
Add git retry to run resource watch #27865
Update ETCD storage data for k8s 1.27 #27871
OCPBUGS-11652 : disable oc adm node-logs #27867
NE-1243 : Validate TCP DNS local endpoint preference as well as UDP. #27791
Add selfsubjectreviews RBAC rules #27866
ETCD-399 : Add recovery suite to openshift-test cli #27869
add specific test for failing cgroups path #27852
not rely on deterministic pod names in oc debug tests #27842
Revert “TRT-889: Temp flake all azure disruption” #27843
add wait for ingress to be responsive before beginning upgrade #27857
Allow cluster daemonsets to use maxSurge #27819
retry getting the URL for routes until we succeed #27854
bump timeout #27849
OCPBUGS-11215 : fix: add namespace annotation helper for egress cni test #27834
negative filtering #27829
OCPBUGS-11072 : Add test for Egress Firewall node selector #27824
upkeep: updated query results #27835
Revert “Make unidle test more strict” #27833
OTA-824 : test/extended/cli/admin: Test ‘oc adm release extract –file image-references …’ #27822
STOR-1272 : DisableSC test should ignore in-tree storage classes #27814
add apiserver availability timeline events #27828
OCPBUGS-9831 : Make unidle test more strict #27673
remove runresourcewatch git lock file on failure #27820
Improve the disruptive suite description #27823
OpenStack: Restore in-tree cinder provisioner tests #27789
Add Divyanshu Agrawal as a reviewer #27821
Enable AWS platform check in external cloud provider test #27777
OCPBUGS-10824 : fix: add poll to get deployment status and avoid false positive #27818
Add a test case checking for cluster upgradeability #27806
Gather more interesting etcd pod logs for issues we’re debugging #27816
Strip ANSI control characters from junits #27801
Automated - Update synthetic test data #27703
move IsTechPreviewNoUpgrade function to exutil and reuse everywhere #27787
Mark previous pathological events so they get added to spyglass charts #27743
CNF-5652 : Add cpu partitioning tests #27770
Revert “Revert “Add vlan/macvlan/ipvlan incontainer master tests”” #27775
Separate pathological event tests for all known namespaces #27774
Scan etcd logs for dropped internal raft messages #27798
Add intervals, synthetic test, and charting for etcd “slow fdatasync” pod log messages #27772
OCPBUGS-8092 : Fix mounted volume expansion tests #27782
Specify Audit-ID to identify disruption requests in api audit logs #27780
TRT-889 : Temp flake all azure disruption #27781
OCPBUGS-8483 : Revert “Switch to readyz path for health probes on Azure” #27771
WRKLDS-657 : add test for UnhealthyPodEvictionPolicy for PDBs #27768
Enable vSphere platform check in external cloud provider test #27638
Realtime Kernel Tests #27751
OCPBUGS-8310 : Bump to 1.26.2 #27764
OSASINFRA-3109 : networking: add a test for control plane LB #27748
Add additional comments with findings from k8s 1.26 bump #27728
OCPBUGS-8092 : mark volume expansion test as Flaky #27767
Revert “Add vlan/macvlan/ipvlan incontainer master tests” #27766
OCPBUGS-7519 : Revert Skip nfs tests temporarilly #27762
TRT-800 : Collect variant data for risk analysis #27731
Add tap plugin test #27737
Port alert backstop test to invariant, allow running alert/disruption invariants locally for developers #27724
Add vlan/macvlan/ipvlan incontainer master tests #27700
STOR-1077 : promote CSIInlineVolumeAdmission feature gate to GA #27713
move disruption locators to monitorapi #27760
Switch to readyz path for health probes on Azure #27753
Fix defunct owners file in test/extended/util/annotate #27750
OCPBUGS-7833 : Rework no optional capabilities rules #27745
OCPVE-278 : fix: multi build error, only add rt-tests for x86 #27749
Restore alert refactor with fix for disruption tests all being skipped #27742
OCPBUGS-7519 : Skip nfs tests temporarilly #27747
OCPVE-278 : feat: add rt tests package to openshift-tests #27740
OCPBUGS-7616 : Revert Revert “bump(k8s): 1.26” #27738
Revert “bump(k8s): 1.26” #27736
test/extended/authorization/rbac: Condition console RBAC on ‘Console’ capability #27681
Revert “Alert Testing on new Namespace and Level” #27734
OCPBUGS-7488 : test flake: should not reconcile SC when state is Unmanaged #27726
Revert “perform build csi volume test on GA clusters” #27730
OCPBUGS-1125 : remove reference to old guard pods #27727
bump(k8s): 1.26 #27694
Do not bail on producing artifacts when nodes are dead #27729
audit inspection #27687
Allow baremetal tests to run on Azure platform #27573
OCPBUGS-6902 : Wait for DNS DS pods to be ready #27715
Chart CI cluster DNS problems in different color from disruption #27719
Add pathological events into spyglass charts #27649
BUILD-407 : perform build csi volume test on GA clusters #27720
Kubevirt network connectivity tests #27456
TRT-819 : Add check for parse signature error #27705
Allow baremetal tests to run on GCP platform #27618
Add PDB to resource watch #27721
replace centos with ubi8 in build test dockerfile #27718
Add external disruption sampling in openshift test #27717
STOR-950 : Add CI job for skipping StorageClass creation #27704
BUILD-407 : stage one of two of migrating shared resource from tech preview to GA #27708
Ensure NoColor for ginkgo in disruption/chamosmoney suite #27709
Alert Testing on new Namespace and Level #27710
STOR-1066 : add e2e tests for CSIInlineVolumeAdmission plugin #27682
OCPBUGS-3923 : adjust watch budget for monitoring components #27623
make supplemental groups test working again #27664
AUTH-337 : PSa: add test for SCC-mutated PodSpec extraction #27632
TRT-813 : Disabling disruption fallback for upgrades #27701
bump timeout #27695
OCPBUGS-6503 : upgrade/adminack: simplify polling and unblock “guaranteed” post-upgrade check #27678
Update S2i image tests for dotnet3.1 EOL #27698
extended: security: do not explicitly set api audience on token request #27697
Changes for NodeTuning cluster capability #27657
Skip the oc whoami –show-console test when the console capability is disabled #27679
Update etcd scaling test for CPMS supported platforms #27497
TRT-803 : FIxing test name #27688
Automated - Update synthetic test data #27676
Use ingress-canary route for testing instead of console since the console might be disabled #27680
ignore more repeated TopologyAwareHintsDisabled events #27672
Add result tag to the end of first line of an event message #27656
Automated - Update synthetic test data #27658
USHIFT-720 : skip server-side apply for rangeallocations #27619
ignore repeated TopologyAwareHintsDisabled events #27666
Update annotated rules for router tests #27662
Fix nil pointer dereference for createDNSPod. #27663
Revert “Remove dependency on some router tests on config.openshift.io api group” #27661
Don’t emit failure junit testcase when a retry is skipped #27652
OCPBUGS-5506 : DNS pod to be created on master node #27650
upgrade/adminack: guarantee one admin ack check post-upgrade #27645
Separate mcd error alert #27648
do not check for DeploymentConfig routers in router tests #27642
WRKLDS-605 : Remove dependency on some router tests on config.openshift.io api group #27643
Fix missing disruption data again. #27651
Add result key value to each topological event test output line #27641
fix tech preview test #27639
Fix missing disruption uploads. #27636
Update CVO test ownership: -Jack and Vadim, +Petr #27646
Automated - Update synthetic test data #27626
Add Event intervals for Startup Probe failures #27612
Use cluster network MTU for bond interfaces #27631
Use create token instead serviceaccounts token command #27629
Fix intervalcreation incorrect year unit test bug #27630
Update ETCD storage data for k8s 1.26 #27622
Filter out dropped targets to minimize the size of target api result #27594
NE-1068 : Add test using chaos plugin to detect local DNS endpoint preference. #27511
OpenStack: Skip in-tree cinder provisioner tests #27613
Automated - Update synthetic test data #27614
Test failures that flaked on retry remain counted as failures #27602
Remove ambiguity when checking for api resources existence #27583
OCPBUGS-4731 : oc status: clean job resource to prevent leaks #27608
Add tests for oc scc-subject-review and scc-review commands #27572
TRT-703 : Fix upgrade junit results not present in risk analysis #27600
Updating openshift-enterprise-tests images to be consistent with ART #27607
remove special cases for priority classes in the payload #27606
Automated - Update synthetic test data #27601
OCPBUGS-4550 : Bump api-requests for console-operator on vsphere #27605
run resourcewatch fixes #27596
OCPBUGS-4502 : Unskip service session affinity tests #27597
Automated - Update synthetic test data #27587
Add trozet to networking approvers #27395
Separate out “startupProbe failed” messages from pathological events test #27590
OCPBUGS-4190 : 1sec #27574
USHIFT-646 : ushift: Graceful return to disable telemetry #27578
Round the ratio for excessive watch requests test #27592
OCPVE-112 : feat: support higher threshold for connection refused on sno #27586
Allow baremetal tests to run on AWS platform #27569
USHIFT-644 : Skip sig-cloud-provider tests #27577
Remove redundant messages that might contain non-xml charactor #27582
USHIFT-647 : ushift: fix loop variable capture in sig-cli #27579
USHIFT-658 : ushift: skip networking bond interface tests #27584
TRT-662 : include test count totals for analysis #27585
OCPBUGS-2991 : Bump openshift/kubernetes to latest master v2 #27580
TRT-691 : use duplicateEventThreshold for ProbeTests #27562
Automated - Update synthetic test data #27543
Add separate tests for QPS exceeded and manifest unknown #27542
Test tuning cni whitelist update #27447
Introduce timeout for sippy risk analysis; add retries with backoff; add dated logging #27564
Remove unused cmd tests #27495
Fix risk analysis html to link to correct release and show bug keys #27568
Skip image-registry redirect test when non-permanent credentials used on GCP. #27556
Add Kuryr exception to “pods should successfully create sandboxes” test #27435
Bug 2093339 : Reenable data source test #27534
Flake and improve alert tests #27559
Trim stdout and stderr to the last 4K bytes to keep log size manageable #27560
OCPBUGS-3633 : Fix flake reporting for certain tests. #27553
Nginx 1.18 images will reach EOL in November 2022 #27551
make command errors easier to read #27544
OCPBUGS-3633 : Revert “Merge pull request #27533 from dgoodwin/merge-alert-backstops” #27547
Replace CreateProject with SetupProject #27271
cosmetic fix for bad disruption substitution #27510
Separate out more tests from ‘events should not repeat pathologically’ test #27539
OCPBUGSM-35025 : reenable unidling ci tests #27538
USHIFT-345 , USHIFT-348 , USHIFT-355 : API Groups for cli, arch & network #27540
And 14 elided commits (e.g. from squash or rebase merges)
Full changelog
Source code for this page located on github