# 4.12.0-0.okd-scos-2023-02-14-060109 Created: 2023-02-14 10:29:38 +0000 UTC Image Digest: `sha256:968a5b06be2095ef337aaf4f5d951292875dd538b6e76d5cee826f3a6cd307d1` Promoted from registry.ci.openshift.org/origin/release-scos:4.12.0-0.okd-scos-2023-02-14-060109 ## Changes from 4.12.0-0.okd-scos-2022-12-02-083740 ### Components * Kubernetes upgraded from 1.25.2 to 1.25.4 * CentOS Stream CoreOS upgraded from 412.9.202211241749-0 to 412.9.202302091303-0 ### Rebuilt images without code change * [aws-cloud-controller-manager](https://github.com/openshift/cloud-provider-aws) git [7fb891f4](https://github.com/openshift/cloud-provider-aws/commit/7fb891f4a534ff4f0a12a50ca3e13db8833560be) `sha256:50ea9a028607b3ddf1dddc830c8be18b52d002f157ee04a61e6eb18076ed4e6d` * centos-stream-coreos-9 `sha256:d5eefa3fd604488fd5d0bb0a02c781641867eda582c679b760b62d4b07c40e21` * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [f22d1c60](https://github.com/openshift/cluster-bootstrap/commit/f22d1c60c188a4b5ce1731a8b1db7c20067dc7e9) `sha256:871159555d4988b4dd8f53cb5b35e12d886c4658a5c542e45be94b1546afbf31` * [gcp-cloud-controller-manager](https://github.com/openshift/cloud-provider-gcp) git [8d208a7f](https://github.com/openshift/cloud-provider-gcp/commit/8d208a7f549b0c039420f67ca7aeff43fc1dcdfc) `sha256:47462c9653c96e184ec3ceee9e627c8b4db93fe6ea1cb3f5c7c093269f0b903e` * [ibm-cloud-controller-manager](https://github.com/openshift/cloud-provider-ibm) git [e5f25fc6](https://github.com/openshift/cloud-provider-ibm/commit/e5f25fc64911215a3a78cab186cba49cbd51dec6) `sha256:f121d1a92998c17ea4b2fe4094257166646543db0af617498c86b4e3768f7e06` * [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader) git [a580a447](https://github.com/openshift/ironic-rhcos-downloader/commit/a580a4479cb6988f3065ef3d4c5fcfcfc3609d12) `sha256:09155bac04a5d52c90f4173881a6f2351654bc52ef7632a8e46088e1d96383ad` * machine-os-content `sha256:d5eefa3fd604488fd5d0bb0a02c781641867eda582c679b760b62d4b07c40e21` * [prometheus](https://github.com/openshift/prometheus) git [c749fdb4](https://github.com/openshift/prometheus/commit/c749fdb468ee6d0ac586156832ad9b094c76d867) `sha256:91e7d68b28aa00e209065604b2b9ac1400671d9102581e8b49b37726acd7b6e4` * [vsphere-cloud-controller-manager](https://github.com/openshift/cloud-provider-vsphere) git [e993e31f](https://github.com/openshift/cloud-provider-vsphere/commit/e993e31f6a3b02938b11fb2f18d67681d60d8922) `sha256:add848b3f260994a7438af7bc2ca1fa7930efa48d75c5ff455fbc046b2dc72d6` ### [agent-installer-api-server](https://github.com/openshift/assisted-service/tree/b03e2db9f58b8bc2fdcb339659b47973688436e3) * [MGMT-13192](https://issues.redhat.com/browse/MGMT-13192): dualstack SNO cluster fails to complete - getting error In dual stack installation we should set dhcp,dhcp6 kargs in order to wait for ipv6 address when node comes after reboot (#4914) [#4914](https://github.com/openshift/assisted-service/pull/4914) * [MGMT-12863](https://issues.redhat.com/browse/MGMT-12863): Assisted Spoke install-config does not generate icsp with multiple mirror to entries (#4748) [#4748](https://github.com/openshift/assisted-service/pull/4748) * [MGMT-12635](https://issues.redhat.com/browse/MGMT-12635): Add icsp-file support for all oc commands (#4684) (#4700) [#4684](https://github.com/openshift/assisted-service/pull/4684) * [Full changelog](https://github.com/openshift/assisted-service/compare/0ec319f9eb1254e993631c454c5cbefe0bb54006...b03e2db9f58b8bc2fdcb339659b47973688436e3) ### [agent-installer-csr-approver, agent-installer-orchestrator](https://github.com/openshift/assisted-installer/tree/0f14c3d16cb089b55ca3658038e83bc0bcd01f47) * Remove jira tickets prefix requirements (#595) [#595](https://github.com/openshift/assisted-installer/pull/595) * [Full changelog](https://github.com/openshift/assisted-installer/compare/0a7dc62aa8e6931d941eaec4001bb4fa59f710fe...0f14c3d16cb089b55ca3658038e83bc0bcd01f47) ### [alibaba-cloud-csi-driver](https://github.com/openshift/alibaba-cloud-csi-driver/tree/664d8cb0a1f1263bad3797ac3cd3f910664dce8b) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#17](https://github.com/openshift/alibaba-cloud-csi-driver/pull/17) * [OCPBUGS-6493](https://issues.redhat.com/browse/OCPBUGS-6493): UPSTREAM: 682: fix gofmt [#22](https://github.com/openshift/alibaba-cloud-csi-driver/pull/22) * [Full changelog](https://github.com/openshift/alibaba-cloud-csi-driver/compare/2317a6ca07c8b4d5391e2b00326ff3f802c331d5...664d8cb0a1f1263bad3797ac3cd3f910664dce8b) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/6bd7afa3fae087853c0210050bdc981c899426c4) * [OCPBUGS-4251](https://issues.redhat.com/browse/OCPBUGS-4251): Add HyperShift specific priorityClass [#170](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/170) * [OCPBUGS-4527](https://issues.redhat.com/browse/OCPBUGS-4527): hypershift: use correct kubeconfig secret [#171](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/171) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/86a1f23dc68af8f82cb189f3f25ac8695569f6a6...6bd7afa3fae087853c0210050bdc981c899426c4) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/3539b13d710d656867912e8497e761c507d14b6e) * [OCPBUGS-6807](https://issues.redhat.com/browse/OCPBUGS-6807): Check platform baremetal settings against default values [#6815](https://github.com/openshift/installer/pull/6815) * [OCPBUGS-7103](https://issues.redhat.com/browse/OCPBUGS-7103): Set the configured proxy settings for agent installer [#6830](https://github.com/openshift/installer/pull/6830) * [OCPBUGS-7131](https://issues.redhat.com/browse/OCPBUGS-7131): bootstrap: set 0644 mode for registries.conf [#6804](https://github.com/openshift/installer/pull/6804) * [OCPBUGS-5960](https://issues.redhat.com/browse/OCPBUGS-5960): bump RHCOS 4.12 bootimage metadata [#6791](https://github.com/openshift/installer/pull/6791) * [OCPBUGS-5996](https://issues.redhat.com/browse/OCPBUGS-5996): vsphere: set default resource pool when missing failure domain topology [#6781](https://github.com/openshift/installer/pull/6781) * [OCPBUGS-5667](https://issues.redhat.com/browse/OCPBUGS-5667): CVE-2021-4238: goutils: update for randomness fix [#6764](https://github.com/openshift/installer/pull/6764) * [OCPBUGS-5782](https://issues.redhat.com/browse/OCPBUGS-5782): CVE-2021-4235: Denial of Service in go-yaml [#6769](https://github.com/openshift/installer/pull/6769) * [OCPBUGS-6052](https://issues.redhat.com/browse/OCPBUGS-6052): validate additional confidential VM types [#6785](https://github.com/openshift/installer/pull/6785) * [OCPBUGS-4895](https://issues.redhat.com/browse/OCPBUGS-4895): Set ip=dhcp,dhcp6 for master nodes on dualstack [#6706](https://github.com/openshift/installer/pull/6706) * [OCPBUGS-6015](https://issues.redhat.com/browse/OCPBUGS-6015): fail to create install-config.yaml as apiVIP and ingress VIP are not in machine networks [#6783](https://github.com/openshift/installer/pull/6783) * [OCPBUGS-5844](https://issues.redhat.com/browse/OCPBUGS-5844): Update FCOS to latest 37.20221127.3.0 stable [#6773](https://github.com/openshift/installer/pull/6773) * [OCPBUGS-5764](https://issues.redhat.com/browse/OCPBUGS-5764): Expose Azure useImageGallery parameter in the MachineSets() call [#6753](https://github.com/openshift/installer/pull/6753) * [OCPBUGS-4460](https://issues.redhat.com/browse/OCPBUGS-4460): hold bootkube service until bootstrap has pivoted [#6661](https://github.com/openshift/installer/pull/6661) * [OCPBUGS-5513](https://issues.redhat.com/browse/OCPBUGS-5513): Update Azure SDK to v63.1.0+incompatible [release-4.12] [#6751](https://github.com/openshift/installer/pull/6751) * [OCPBUGS-4649](https://issues.redhat.com/browse/OCPBUGS-4649): Report agent installation problems on the console [#6680](https://github.com/openshift/installer/pull/6680) * [OCPBUGS-5455](https://issues.redhat.com/browse/OCPBUGS-5455): Remove order dependency for agent CLI string [#6748](https://github.com/openshift/installer/pull/6748) * [OCPBUGS-4962](https://issues.redhat.com/browse/OCPBUGS-4962): Improve error reporting from agent wait-for install-complete [#6742](https://github.com/openshift/installer/pull/6742) * [OCPBUGS-4886](https://issues.redhat.com/browse/OCPBUGS-4886): Switch back to gp2 ebs volume type for bootstrap instance [#6705](https://github.com/openshift/installer/pull/6705) * [OCPBUGS-5190](https://issues.redhat.com/browse/OCPBUGS-5190): baremetal: Extra time for provisioning interface [#6732](https://github.com/openshift/installer/pull/6732) * [OCPBUGS-4943](https://issues.redhat.com/browse/OCPBUGS-4943): Wait longer for VM to obtain IP from DHCP in PowerVS [#6709](https://github.com/openshift/installer/pull/6709) * [OCPBUGS-3899](https://issues.redhat.com/browse/OCPBUGS-3899): [Alibaba] fix the creation of public record [#6605](https://github.com/openshift/installer/pull/6605) * [OCPBUGS-4962](https://issues.redhat.com/browse/OCPBUGS-4962): Wait longer for baremetal [#6713](https://github.com/openshift/installer/pull/6713) * [OCPBUGS-5035](https://issues.redhat.com/browse/OCPBUGS-5035): ose-installer-container: vault: insufficient certificate revocation list checking [#6722](https://github.com/openshift/installer/pull/6722) * [OCPBUGS-4869](https://issues.redhat.com/browse/OCPBUGS-4869): aws: destroy: delete ELB listeners [#6702](https://github.com/openshift/installer/pull/6702) * [OCPBUGS-5019](https://issues.redhat.com/browse/OCPBUGS-5019): OpenStack: Force JSON content-type in Swift object listing [#6718](https://github.com/openshift/installer/pull/6718) * [OCPBUGS-2997](https://issues.redhat.com/browse/OCPBUGS-2997): bump RHCOS 4.12 bootimage metadata [#6704](https://github.com/openshift/installer/pull/6704) * [OCPBUGS-3890](https://issues.redhat.com/browse/OCPBUGS-3890): IBMCloud: Confirm Zones and BYON Subnets [#6603](https://github.com/openshift/installer/pull/6603) * [OCPBUGS-3639](https://issues.redhat.com/browse/OCPBUGS-3639): Azure: Set appropriate architecture for gen v1 image [#6588](https://github.com/openshift/installer/pull/6588) * [OCPBUGS-4698](https://issues.redhat.com/browse/OCPBUGS-4698): Check nmstateconfig content in agent-config.yaml [#6687](https://github.com/openshift/installer/pull/6687) * [OCPBUGS-4547](https://issues.redhat.com/browse/OCPBUGS-4547): out-of-bounds read in golang.org/x/text/language leads to DoS [#6650](https://github.com/openshift/installer/pull/6650) * [OCPBUGS-4660](https://issues.redhat.com/browse/OCPBUGS-4660): Fix missing debug messages when getting baseISO [#6682](https://github.com/openshift/installer/pull/6682) * Alibaba: add the tags of the machine nodes [#6667](https://github.com/openshift/installer/pull/6667) * image: Updating installer images to be consistent with ART [#6658](https://github.com/openshift/installer/pull/6658) * [OCPBUGS-4506](https://issues.redhat.com/browse/OCPBUGS-4506): Enable CVO unmanage overrides in bootstrap-in-place installations [#6664](https://github.com/openshift/installer/pull/6664) * [OCPBUGS-4457](https://issues.redhat.com/browse/OCPBUGS-4457): Fix return value from execute() [#6659](https://github.com/openshift/installer/pull/6659) * [OCPBUGS-4342](https://issues.redhat.com/browse/OCPBUGS-4342): data: azurerm: restore RHCOS SA access configuration [#6645](https://github.com/openshift/installer/pull/6645) * [Full changelog](https://github.com/openshift/installer/compare/1f4545d38b6bfb04bb823831d120e70aa9340d99...3539b13d710d656867912e8497e761c507d14b6e) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/b3c82d0013281ab716f358f46fec6481ace5b27d) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): If primary ip address was already created no need to choose new ip [#214](https://github.com/openshift/baremetal-runtimecfg/pull/214) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/4d2e37f2e59877c1bdf94279fe18622a439821c5...b3c82d0013281ab716f358f46fec6481ace5b27d) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/b05f7d40f9a2dac30771be620e9e9148d26ffd07) * [OCPBUGS-6600](https://issues.redhat.com/browse/OCPBUGS-6600): Fix kube version from 1.24.1 to 1.25.2 [#1327](https://github.com/openshift/oc/pull/1327) * [Full changelog](https://github.com/openshift/oc/compare/854f807d8a84dde710c062a5281bca5bc07cb562...b05f7d40f9a2dac30771be620e9e9148d26ffd07) ### [cloud-network-config-controller](https://github.com/openshift/cloud-network-config-controller/tree/e613bcbce51f15e41f9b77becd5598877a7cfa1d) * Bug OCPBUGS-5156: Add ApplicationSecurityGroups to InterfaceIPConfiguration [#92](https://github.com/openshift/cloud-network-config-controller/pull/92) * [OCPBUGS-4783](https://issues.redhat.com/browse/OCPBUGS-4783): OpenStack: Support multi AZ environments [#88](https://github.com/openshift/cloud-network-config-controller/pull/88) * [OCPBUGS-4784](https://issues.redhat.com/browse/OCPBUGS-4784): OpenStack: Only return egressIPConfiguration for first InternalIP [#89](https://github.com/openshift/cloud-network-config-controller/pull/89) * [Full changelog](https://github.com/openshift/cloud-network-config-controller/compare/61b2d8a7550c8aa27b00366a3868922db4a6edfd...e613bcbce51f15e41f9b77becd5598877a7cfa1d) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/bb764848318a3f33275b75229a734e8bda5f471c) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#591](https://github.com/openshift/cluster-authentication-operator/pull/591) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/54844a487a78ace8f81c276e56b3cb20708d7d13...bb764848318a3f33275b75229a734e8bda5f471c) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/047391f09c68b3bb259262012693913af50c13a6) * [OCPBUGS-5072](https://issues.redhat.com/browse/OCPBUGS-5072): delete ironic-proxy/image-cache when not needed [#317](https://github.com/openshift/cluster-baremetal-operator/pull/317) * [OCPBUGS-4696](https://issues.redhat.com/browse/OCPBUGS-4696): Do not fail the reconciler when no master Machines exist [#314](https://github.com/openshift/cluster-baremetal-operator/pull/314) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/d96974ee2e8f8fbcfa38e505849f13638a1985a0...047391f09c68b3bb259262012693913af50c13a6) ### [cluster-capi-controllers](https://github.com/openshift/cluster-api/tree/) * NO-JIRA: Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.2 (da795db) into master [#199](https://github.com/openshift/cluster-api/pull/199) * [OCPBUGS-30586](https://issues.redhat.com/browse/OCPBUGS-30586): fix e2e tests on release branches [#200](https://github.com/openshift/cluster-api/pull/200) * [OCPCLOUD-2517](https://issues.redhat.com/browse/OCPCLOUD-2517): openshift: promote core CAPI IPAM CRDs to GA [#197](https://github.com/openshift/cluster-api/pull/197) * [OCPBUGS-29519](https://issues.redhat.com/browse/OCPBUGS-29519): openshift: add CustomNoUpgrade annotation value to feature-set [#196](https://github.com/openshift/cluster-api/pull/196) * [OCPBUGS-29476](https://issues.redhat.com/browse/OCPBUGS-29476): openshift: generate separate manifest for core CAPI CRDs [#195](https://github.com/openshift/cluster-api/pull/195) * [OCPBUGS-26111](https://issues.redhat.com/browse/OCPBUGS-26111): add snyk file [#194](https://github.com/openshift/cluster-api/pull/194) * [OCPCLOUD-2449](https://issues.redhat.com/browse/OCPCLOUD-2449): Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.0 (14efefe) into master [#192](https://github.com/openshift/cluster-api/pull/192) * NO-JIRA: e2e: add openstack testing script [#193](https://github.com/openshift/cluster-api/pull/193) * [OCPBUGS-25586](https://issues.redhat.com/browse/OCPBUGS-25586): Updating ose-cluster-api-container image to be consistent with ART [#191](https://github.com/openshift/cluster-api/pull/191) * [OCPBUGS-25000](https://issues.redhat.com/browse/OCPBUGS-25000): Updating ose-cluster-api-container image to be consistent with ART [#190](https://github.com/openshift/cluster-api/pull/190) * [OCPCLOUD-2255](https://issues.redhat.com/browse/OCPCLOUD-2255): Update manifests-gen tool [#189](https://github.com/openshift/cluster-api/pull/189) * [OCPCLOUD-2257](https://issues.redhat.com/browse/OCPCLOUD-2257): Use manifests generation tool from provider repo [#179](https://github.com/openshift/cluster-api/pull/179) * Update OWNERS [#183](https://github.com/openshift/cluster-api/pull/183) * [OCPBUGS-21645](https://issues.redhat.com/browse/OCPBUGS-21645): Bump golang.org/x/net to v0.17.0 [#182](https://github.com/openshift/cluster-api/pull/182) * [OCPBUGS-17286](https://issues.redhat.com/browse/OCPBUGS-17286), [OCPCLOUD-2222](https://issues.redhat.com/browse/OCPCLOUD-2222): Merge https://github.com/kubernetes-sigs/cluster-api:v1.5.2 (3290c5a) into master [#181](https://github.com/openshift/cluster-api/pull/181) * [OCPBUGS-19109](https://issues.redhat.com/browse/OCPBUGS-19109): Updating ose-cluster-api images to be consistent with ART [#180](https://github.com/openshift/cluster-api/pull/180) * [OCPBUGS-6354](https://issues.redhat.com/browse/OCPBUGS-6354), [OCPBUGS-6372](https://issues.redhat.com/browse/OCPBUGS-6372): Merge https://github.com/kubernetes-sigs/cluster-api:v1.4.2 (7b92ce4) into master [#175](https://github.com/openshift/cluster-api/pull/175) * Make openshift/e2e-tests.sh executable [#178](https://github.com/openshift/cluster-api/pull/178) * [OCPCLOUD-2121](https://issues.redhat.com/browse/OCPCLOUD-2121): Add openshift/e2e-tests for CAPI E2E testing [#177](https://github.com/openshift/cluster-api/pull/177) * Updating ose-cluster-api images to be consistent with ART [#174](https://github.com/openshift/cluster-api/pull/174) * Updating ose-cluster-api images to be consistent with ART [#170](https://github.com/openshift/cluster-api/pull/170) * Add enxebre approvers [#171](https://github.com/openshift/cluster-api/pull/171) * Merge https://github.com/kubernetes-sigs/cluster-api:release-1.3 (eb18352) into master [#167](https://github.com/openshift/cluster-api/pull/167) * Sync OWNERS file [#168](https://github.com/openshift/cluster-api/pull/168) * Updating ose-cluster-api images to be consistent with ART [#165](https://github.com/openshift/cluster-api/pull/165) * Merge https://github.com/kubernetes-sigs/cluster-api:main into master [#163](https://github.com/openshift/cluster-api/pull/163) * UPSTREAM: <carry>: bump build root image to golang-1.19 [#164](https://github.com/openshift/cluster-api/pull/164) * [Full changelog](https://github.com/openshift/cluster-api/compare/f9c215c4f298710ccf76676395465685b5d15268...) ### [cluster-capi-operator](https://github.com/openshift/cluster-capi-operator/tree/3bfe36aa9d1abbdfb11facf86a7ec6510abc390a) * [Bug 2116686](https://bugzilla.redhat.com/show_bug.cgi?id=2116686): OCPBUGS-5155: Add provider webhook [#96](https://github.com/openshift/cluster-capi-operator/pull/96) * [Full changelog](https://github.com/openshift/cluster-capi-operator/compare/8496c5085daaf9ce8ea47ac885e56310898a5c54...3bfe36aa9d1abbdfb11facf86a7ec6510abc390a) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/83768c8057de19a6da8f58edf6430884e3081050) * [OCPBUGS-5142](https://issues.redhat.com/browse/OCPBUGS-5142): Try to limit groups for the REST mapper discovery [#212](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/212) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/0acfa2d24deb6a03abce343608cfc6154650fd52...83768c8057de19a6da8f58edf6430884e3081050) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/4c6e171d26cc3c302c6d6193060344456bc381a1) * [OCPBUGS-4544](https://issues.redhat.com/browse/OCPBUGS-4544): Revert "Increase verbosity level to track probe timeouts" [#275](https://github.com/openshift/cluster-config-operator/pull/275) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/80bd57ab98ee7aeccb81372facb362e9386f09e8...4c6e171d26cc3c302c6d6193060344456bc381a1) ### [cluster-control-plane-machine-set-operator](https://github.com/openshift/cluster-control-plane-machine-set-operator/tree/89727d88312464361593a0ccc8ad07e79db9bd16) * [OCPBUGS-5820](https://issues.redhat.com/browse/OCPBUGS-5820): Deduplicate Failure Domains for the CPMS [#160](https://github.com/openshift/cluster-control-plane-machine-set-operator/pull/160) * Backport e2e/integration testing [#161](https://github.com/openshift/cluster-control-plane-machine-set-operator/pull/161) * golangci-lint: fix header year linting [#163](https://github.com/openshift/cluster-control-plane-machine-set-operator/pull/163) * [OCPBUGS-5401](https://issues.redhat.com/browse/OCPBUGS-5401): Reverts "Reverts "Add logic to handle extra updated machines in a single index + minor fixes"" [#158](https://github.com/openshift/cluster-control-plane-machine-set-operator/pull/158) * [OCPBUGS-4847](https://issues.redhat.com/browse/OCPBUGS-4847): Fix stale cache issue on createMachine [#151](https://github.com/openshift/cluster-control-plane-machine-set-operator/pull/151) * [Full changelog](https://github.com/openshift/cluster-control-plane-machine-set-operator/compare/3a90f7494188dc7962d9d8105232b4b858ce3987...89727d88312464361593a0ccc8ad07e79db9bd16) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/05d89ec796cf693cf80a2926f067683befea4b30) * [OCPBUGS-4526](https://issues.redhat.com/browse/OCPBUGS-4526): hypershift: use correct kubeconfig secret for csi-snapshot-controller [#138](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/138) * [OCPBUGS-4251](https://issues.redhat.com/browse/OCPBUGS-4251): Add HyperShift specific priorityClass [#135](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/135) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/d499537c332762cf9165f74e53701550d5d36001...05d89ec796cf693cf80a2926f067683befea4b30) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/ba09a528515b06065f1591e1e9357bfdd95b2583) * [OCPBUGS-6898](https://issues.redhat.com/browse/OCPBUGS-6898): updating library-go for CVE-2022-41717 [#998](https://github.com/openshift/cluster-etcd-operator/pull/998) * [OCPBUGS-5762](https://issues.redhat.com/browse/OCPBUGS-5762): should not scale-down when all members are healthy [#984](https://github.com/openshift/cluster-etcd-operator/pull/984) * [OCPBUGS-4743](https://issues.redhat.com/browse/OCPBUGS-4743): only allow TLS1.2/1.3 ciphersuites in etcd and CEO [#971](https://github.com/openshift/cluster-etcd-operator/pull/971) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#965](https://github.com/openshift/cluster-etcd-operator/pull/965) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/603b563d02a659fef6ed70de4f215f16958ccc09...ba09a528515b06065f1591e1e9357bfdd95b2583) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/) * [OCPBUGS-29559](https://issues.redhat.com/browse/OCPBUGS-29559): Apply hypershift cluster-profile for ibm-cloud-managed [#999](https://github.com/openshift/cluster-image-registry-operator/pull/999) * [OCPBUGS-32328](https://issues.redhat.com/browse/OCPBUGS-32328): azure-path-fix: support auth via account key (without clientID) [#1021](https://github.com/openshift/cluster-image-registry-operator/pull/1021) * [OCPBUGS-30484](https://issues.redhat.com/browse/OCPBUGS-30484): bump indirect google protobuf dependency [#1015](https://github.com/openshift/cluster-image-registry-operator/pull/1015) * NO-JIRA: remove bparees from owners [#1019](https://github.com/openshift/cluster-image-registry-operator/pull/1019) * [OCPBUGS-29233](https://issues.redhat.com/browse/OCPBUGS-29233): bump aws-sdk-go from v1.44 to v1.50 [#1012](https://github.com/openshift/cluster-image-registry-operator/pull/1012) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#1008](https://github.com/openshift/cluster-image-registry-operator/pull/1008) * NO-JIRA: bump golangci-lint to v1.56.2 [#1013](https://github.com/openshift/cluster-image-registry-operator/pull/1013) * [OCPBUGS-29932](https://issues.redhat.com/browse/OCPBUGS-29932): cmd/move-blobs: log and exit 1 on error instead of panic [#1006](https://github.com/openshift/cluster-image-registry-operator/pull/1006) * [OCPBUGS-29637](https://issues.redhat.com/browse/OCPBUGS-29637): azurepathfix: fix stack hub, government and workload identity setup [#1003](https://github.com/openshift/cluster-image-registry-operator/pull/1003) * [OCPBUGS-29003](https://issues.redhat.com/browse/OCPBUGS-29003): move azure storage blobs from `docker` back into `/docker` [#998](https://github.com/openshift/cluster-image-registry-operator/pull/998) * NO-JIRA: Add hack/local-dev.sh [#996](https://github.com/openshift/cluster-image-registry-operator/pull/996) * [OCPBUGS-28225](https://issues.redhat.com/browse/OCPBUGS-28225): pkg/storage/s3: enable bucket key on encryption settings [#993](https://github.com/openshift/cluster-image-registry-operator/pull/993) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#992](https://github.com/openshift/cluster-image-registry-operator/pull/992) * NO-JIRA: build(deps): bump golang.org/x/oauth2 from 0.8.0 to 0.16.0 [#989](https://github.com/openshift/cluster-image-registry-operator/pull/989) * [OCPBUGS-26767](https://issues.redhat.com/browse/OCPBUGS-26767): MULTIARCH-4074: PowerVS: update supported regions [#987](https://github.com/openshift/cluster-image-registry-operator/pull/987) * [IR-409](https://issues.redhat.com/browse/IR-409): build(deps): bump github.com/IBM/platform-services-go-sdk from 0.18.15 to 0.55.0 [#974](https://github.com/openshift/cluster-image-registry-operator/pull/974) * [OCPBUGS-24997](https://issues.redhat.com/browse/OCPBUGS-24997): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#979](https://github.com/openshift/cluster-image-registry-operator/pull/979) * [IR-410](https://issues.redhat.com/browse/IR-410): build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.61.1263 to 1.62.637 [#980](https://github.com/openshift/cluster-image-registry-operator/pull/980) * [OCPBUGS-11624](https://issues.redhat.com/browse/OCPBUGS-11624): manifests/02-rbac.yaml: stop using wild cards [#964](https://github.com/openshift/cluster-image-registry-operator/pull/964) * [OCPBUGS-24649](https://issues.redhat.com/browse/OCPBUGS-24649): add private endpoint permissions to Azure credentials request [#971](https://github.com/openshift/cluster-image-registry-operator/pull/971) * [OCPBUGS-24997](https://issues.redhat.com/browse/OCPBUGS-24997): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#975](https://github.com/openshift/cluster-image-registry-operator/pull/975) * [IR-412](https://issues.redhat.com/browse/IR-412): IBMCloud: Add support for endpoint overrides [#955](https://github.com/openshift/cluster-image-registry-operator/pull/955) * [CCO-248](https://issues.redhat.com/browse/CCO-248): Revert "Merge pull request #965 from jstuever/TRT-1368" [#967](https://github.com/openshift/cluster-image-registry-operator/pull/967) * [OCPVE-790](https://issues.redhat.com/browse/OCPVE-790): annotate credentials request manifests [#959](https://github.com/openshift/cluster-image-registry-operator/pull/959) * [OCPBUGS-24161](https://issues.redhat.com/browse/OCPBUGS-24161): Updating ose-cluster-image-registry-operator-container image to be consistent with ART [#966](https://github.com/openshift/cluster-image-registry-operator/pull/966) * [TRT-1368](https://issues.redhat.com/browse/TRT-1368): Revert "Merge pull request #935 from flavianmissi/CCO-248" [#965](https://github.com/openshift/cluster-image-registry-operator/pull/965) * [IR-366](https://issues.redhat.com/browse/IR-366), [IR-367](https://issues.redhat.com/browse/IR-367), [IR-411](https://issues.redhat.com/browse/IR-411): allow users to configure private storage accounts in Azure [#930](https://github.com/openshift/cluster-image-registry-operator/pull/930) * [IR-408](https://issues.redhat.com/browse/IR-408): request individual permissions for gcs [#935](https://github.com/openshift/cluster-image-registry-operator/pull/935) * [OCPBUGS-2889](https://issues.redhat.com/browse/OCPBUGS-2889): accept user/pass OR application credentials on Swift UPI secret [#924](https://github.com/openshift/cluster-image-registry-operator/pull/924) * [IR-406](https://issues.redhat.com/browse/IR-406), [OCPBUGS-21853](https://issues.redhat.com/browse/OCPBUGS-21853): bump k8s and openshift packages [#936](https://github.com/openshift/cluster-image-registry-operator/pull/936) * [OCPBUGS-21853](https://issues.redhat.com/browse/OCPBUGS-21853): disable http2 for metrics endpoint [#938](https://github.com/openshift/cluster-image-registry-operator/pull/938) * [OCPBUGS-18969](https://issues.redhat.com/browse/OCPBUGS-18969): move pruner role creation from openshift-apiserver [#925](https://github.com/openshift/cluster-image-registry-operator/pull/925) * [OCPBUGS-19262](https://issues.redhat.com/browse/OCPBUGS-19262): Updating ose-cluster-image-registry-operator images to be consistent with ART [#918](https://github.com/openshift/cluster-image-registry-operator/pull/918) * [OCPBUGS-18469](https://issues.redhat.com/browse/OCPBUGS-18469): increase storage account key cache expiration [#912](https://github.com/openshift/cluster-image-registry-operator/pull/912) * [OCPBUGS-17060](https://issues.redhat.com/browse/OCPBUGS-17060): use Recreate on operator deployment [#908](https://github.com/openshift/cluster-image-registry-operator/pull/908) * [OCPBUGS-18103](https://issues.redhat.com/browse/OCPBUGS-18103): check if response is nil before using it [#909](https://github.com/openshift/cluster-image-registry-operator/pull/909) * [OCPVE-632](https://issues.redhat.com/browse/OCPVE-632): add capability annotations to manifests [#856](https://github.com/openshift/cluster-image-registry-operator/pull/856) * [OCPBUGS-17882](https://issues.redhat.com/browse/OCPBUGS-17882): Add rbac permission IDMS, ITMS [#891](https://github.com/openshift/cluster-image-registry-operator/pull/891) * [TRT-1193](https://issues.redhat.com/browse/TRT-1193): Revert "IR-373: remove node-ca daemon" [#899](https://github.com/openshift/cluster-image-registry-operator/pull/899) * [CFE-846](https://issues.redhat.com/browse/CFE-846): Add user defined tags to the GCP buckets created [#873](https://github.com/openshift/cluster-image-registry-operator/pull/873) * [IR-373](https://issues.redhat.com/browse/IR-373): remove node-ca daemon [#867](https://github.com/openshift/cluster-image-registry-operator/pull/867) * build(deps): bump github.com/stretchr/testify from 1.8.1 to 1.8.4 [#877](https://github.com/openshift/cluster-image-registry-operator/pull/877) * build(deps): bump the k8s-dependencies group with 1 update [#895](https://github.com/openshift/cluster-image-registry-operator/pull/895) * [IR-363](https://issues.redhat.com/browse/IR-363): Update Azure Credentials Request manifest of the Cluster Image Registry Operator to use new API field for requesting permissions [#890](https://github.com/openshift/cluster-image-registry-operator/pull/890) * build(deps): bump github.com/prometheus/common from 0.37.0 to 0.44.0 [#878](https://github.com/openshift/cluster-image-registry-operator/pull/878) * [CFE-682](https://issues.redhat.com/browse/CFE-682): Add user defined labels to the GCP buckets created [#872](https://github.com/openshift/cluster-image-registry-operator/pull/872) * [CFE-682](https://issues.redhat.com/browse/CFE-682): Update openshift/api package to latest version [#887](https://github.com/openshift/cluster-image-registry-operator/pull/887) * [IR-390](https://issues.redhat.com/browse/IR-390): Make a configmap for MCO to consume CAs [#880](https://github.com/openshift/cluster-image-registry-operator/pull/880) * build(deps): bump github.com/aws/aws-sdk-go from 1.44.291 to 1.44.298 [#879](https://github.com/openshift/cluster-image-registry-operator/pull/879) * build(deps): bump golang.org/x/net from 0.8.0 to 0.11.0 [#871](https://github.com/openshift/cluster-image-registry-operator/pull/871) * build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.1.10+incompatible to 2.2.7+incompatible [#869](https://github.com/openshift/cluster-image-registry-operator/pull/869) * .github/dependabot.yml: group certain dependencies [#865](https://github.com/openshift/cluster-image-registry-operator/pull/865) * [IR-389](https://issues.redhat.com/browse/IR-389): bump aws-sdk-go [#860](https://github.com/openshift/cluster-image-registry-operator/pull/860) * .github: configure dependabot [#861](https://github.com/openshift/cluster-image-registry-operator/pull/861) * [IR-369](https://issues.redhat.com/browse/IR-369), [IR-370](https://issues.redhat.com/browse/IR-370): support Azure workload identity [#857](https://github.com/openshift/cluster-image-registry-operator/pull/857) * [OCPBUGS-12132](https://issues.redhat.com/browse/OCPBUGS-12132): Updating ose-cluster-image-registry-operator images to be consistent with ART [#854](https://github.com/openshift/cluster-image-registry-operator/pull/854) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#849](https://github.com/openshift/cluster-image-registry-operator/pull/849) * [OCPBUGS-8224](https://issues.redhat.com/browse/OCPBUGS-8224): fix storage selection on IBM cloud [#847](https://github.com/openshift/cluster-image-registry-operator/pull/847) * [OCPBUGS-6797](https://issues.redhat.com/browse/OCPBUGS-6797): Add nil validation for IBM Cloud and Power VS infrastructure status in ibmcos [#845](https://github.com/openshift/cluster-image-registry-operator/pull/845) * [MULTIARCH-3212](https://issues.redhat.com/browse/MULTIARCH-3212): Use IBM COS as storage backend for PowerVS [#843](https://github.com/openshift/cluster-image-registry-operator/pull/843) * [OCPBUGS-6621](https://issues.redhat.com/browse/OCPBUGS-6621): bump aws-sdk-go [#844](https://github.com/openshift/cluster-image-registry-operator/pull/844) * Add UserTags while creating Azure Storage Account [#829](https://github.com/openshift/cluster-image-registry-operator/pull/829) * [IR-341](https://issues.redhat.com/browse/IR-341): bump openshift/api [#828](https://github.com/openshift/cluster-image-registry-operator/pull/828) * [IR-270](https://issues.redhat.com/browse/IR-270): allow registry to create image objects [#823](https://github.com/openshift/cluster-image-registry-operator/pull/823) * [OCPBUGS-6175](https://issues.redhat.com/browse/OCPBUGS-6175): OpenStack: Add support for Proxy [#833](https://github.com/openshift/cluster-image-registry-operator/pull/833) * [IR-308](https://issues.redhat.com/browse/IR-308): Add support for External platform [#825](https://github.com/openshift/cluster-image-registry-operator/pull/825) * [OCPBUGS-4090](https://issues.redhat.com/browse/OCPBUGS-4090): swift: Retry connecting to OpenStack [#819](https://github.com/openshift/cluster-image-registry-operator/pull/819) * [IR-311](https://issues.redhat.com/browse/IR-311): storage: azure: use azidentity with an adapter [#807](https://github.com/openshift/cluster-image-registry-operator/pull/807) * [Bug 2065166](https://bugzilla.redhat.com/show_bug.cgi?id=2065166): Remove roles/iam.serviceAccountUser role [#824](https://github.com/openshift/cluster-image-registry-operator/pull/824) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#821](https://github.com/openshift/cluster-image-registry-operator/pull/821) * [IR-314](https://issues.redhat.com/browse/IR-314): Bump dependencies [#816](https://github.com/openshift/cluster-image-registry-operator/pull/816) * Add config for golangci-lint and fix errors [#820](https://github.com/openshift/cluster-image-registry-operator/pull/820) * hack/test-go.sh: generate coverage reports [#818](https://github.com/openshift/cluster-image-registry-operator/pull/818) * [OCPBUGS-3974](https://issues.redhat.com/browse/OCPBUGS-3974): check for nil pointer before dereferencing [#814](https://github.com/openshift/cluster-image-registry-operator/pull/814) * [Bug 2066388](https://bugzilla.redhat.com/show_bug.cgi?id=2066388): Add example for s3.regionEndpoint [#815](https://github.com/openshift/cluster-image-registry-operator/pull/815) * [OCPBUGS-2941](https://issues.redhat.com/browse/OCPBUGS-2941): Bump gophercloud [#808](https://github.com/openshift/cluster-image-registry-operator/pull/808) * add myself to OWNERS [#809](https://github.com/openshift/cluster-image-registry-operator/pull/809) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/c0e5dec7ab5030d924f7fb96e1733792aa3a3097...) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/) * [NE-1317](https://issues.redhat.com/browse/NE-1317): manifests - add ingress capability annotation [#950](https://github.com/openshift/cluster-ingress-operator/pull/950) * [OCPBUGS-32371](https://issues.redhat.com/browse/OCPBUGS-32371): Bump openshift/api, and update CRD generation [#1045](https://github.com/openshift/cluster-ingress-operator/pull/1045) * [OCPBUGS-25193](https://issues.redhat.com/browse/OCPBUGS-25193): Add vnet subnet read and join permission for azure [#1029](https://github.com/openshift/cluster-ingress-operator/pull/1029) * [OCPBUGS-30834](https://issues.redhat.com/browse/OCPBUGS-30834): Update to go 1.21 [#1040](https://github.com/openshift/cluster-ingress-operator/pull/1040) * [OCPBUGS-31722](https://issues.redhat.com/browse/OCPBUGS-31722): Use centos7 tag for quay.io/centos7/httpd-24-centos7 image [#1037](https://github.com/openshift/cluster-ingress-operator/pull/1037) * [OCPBUGS-3522](https://issues.redhat.com/browse/OCPBUGS-3522): Include recent errors in canary checks fail [#865](https://github.com/openshift/cluster-ingress-operator/pull/865) * [OCPBUGS-30091](https://issues.redhat.com/browse/OCPBUGS-30091): TestHostNetworkPortBinding: Delete t.Parallel() [#1032](https://github.com/openshift/cluster-ingress-operator/pull/1032) * [CFE-987](https://issues.redhat.com/browse/CFE-987): Use RouterExternalCertificate feature gate for adding ROUTER_ENABLE_EXTERNAL_CERTIFICATE env var to the router pods [#1017](https://github.com/openshift/cluster-ingress-operator/pull/1017) * [CORS-2317](https://issues.redhat.com/browse/CORS-2317): Add Ingress LB IPs to Infra CR and set DNS unmanaged when BYO DNS is enabled [#1016](https://github.com/openshift/cluster-ingress-operator/pull/1016) * [OCPBUGS-28596](https://issues.redhat.com/browse/OCPBUGS-28596): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.16 [#1020](https://github.com/openshift/cluster-ingress-operator/pull/1020) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#1019](https://github.com/openshift/cluster-ingress-operator/pull/1019) * [NE-1490](https://issues.redhat.com/browse/NE-1490): update to go v1.20 [#1012](https://github.com/openshift/cluster-ingress-operator/pull/1012) * [OCPBUGS-15253](https://issues.redhat.com/browse/OCPBUGS-15253): Include namespace in prometheus alerts IngressWithoutClassName and UnmanagedRoutes [#980](https://github.com/openshift/cluster-ingress-operator/pull/980) * [CCO-249](https://issues.redhat.com/browse/CCO-249): Replace GCP role with explicit permissions [#844](https://github.com/openshift/cluster-ingress-operator/pull/844) * [OCPBUGS-25006](https://issues.redhat.com/browse/OCPBUGS-25006): Updating ose-cluster-ingress-operator-container image to be consistent with ART [#1006](https://github.com/openshift/cluster-ingress-operator/pull/1006) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert " OCPBUGS-24531 Skip CI for scope change until OCPBUGS-24044 is resolved" [#1011](https://github.com/openshift/cluster-ingress-operator/pull/1011) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert "Merge pull request #1007 from candita/OCPBUGS-24531-SkipScopeChangeTest" and add changes to skip test only for Azure and GCP [#1008](https://github.com/openshift/cluster-ingress-operator/pull/1008) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Skip CI for scope change until OCPBUGS-24044 is resolved [#1007](https://github.com/openshift/cluster-ingress-operator/pull/1007) * [OCPVE-780](https://issues.redhat.com/browse/OCPVE-780): annotate credentials request manifests [#995](https://github.com/openshift/cluster-ingress-operator/pull/995) * [OCPBUGS-23742](https://issues.redhat.com/browse/OCPBUGS-23742): Bump controller-runtime to v0.16.3 [#1001](https://github.com/openshift/cluster-ingress-operator/pull/1001) * [NE-1402](https://issues.redhat.com/browse/NE-1402): Add service endpoint override capability to IBM DNS provider [#990](https://github.com/openshift/cluster-ingress-operator/pull/990) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Revert "OCPBUGS-16762: Bump openshift/api for container.maxLength fix" [#982](https://github.com/openshift/cluster-ingress-operator/pull/982) * [OCPBUGS-14994](https://issues.redhat.com/browse/OCPBUGS-14994): Don't add clientca-configmap finalizer if deleting [#948](https://github.com/openshift/cluster-ingress-operator/pull/948) * [OCPBUGS-22020](https://issues.redhat.com/browse/OCPBUGS-22020): Bump golang.org/x/net for CVE-2023-44487 [#985](https://github.com/openshift/cluster-ingress-operator/pull/985) * [OCPBUGS-21803](https://issues.redhat.com/browse/OCPBUGS-21803): test/e2e: Add test case for 2000000 maxConnections [#983](https://github.com/openshift/cluster-ingress-operator/pull/983) * [OCPBUGS-20192](https://issues.redhat.com/browse/OCPBUGS-20192): Require non-readonly filesystem in router container [#981](https://github.com/openshift/cluster-ingress-operator/pull/981) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Bump openshift/api for container.maxLength fix [#979](https://github.com/openshift/cluster-ingress-operator/pull/979) * [OCPBUGS-3541](https://issues.redhat.com/browse/OCPBUGS-3541): Don't create route metrics for ingress controllers that are not admitted [#869](https://github.com/openshift/cluster-ingress-operator/pull/869) * [OCPBUGS-18248](https://issues.redhat.com/browse/OCPBUGS-18248): Prevent GatewayClass from getting recreated [#975](https://github.com/openshift/cluster-ingress-operator/pull/975) * [OCPBUGS-19268](https://issues.redhat.com/browse/OCPBUGS-19268): Updating ose-cluster-ingress-operator images to be consistent with ART [#977](https://github.com/openshift/cluster-ingress-operator/pull/977) * [OCPBUGS-15900](https://issues.redhat.com/browse/OCPBUGS-15900): TestMTLSWithCRLs: only try to parse HTTP status code from curl output when stdout is long enough. [#973](https://github.com/openshift/cluster-ingress-operator/pull/973) * [OCPBUGS-3356](https://issues.redhat.com/browse/OCPBUGS-3356): E2E test for cookie length truncation [#871](https://github.com/openshift/cluster-ingress-operator/pull/871) * [OCPBUGS-15978](https://issues.redhat.com/browse/OCPBUGS-15978): Check public DNS zone when reporting status [#967](https://github.com/openshift/cluster-ingress-operator/pull/967) * [OCPBUGS-17359](https://issues.redhat.com/browse/OCPBUGS-17359): test/e2e: Don't use openshift/origin-node [#970](https://github.com/openshift/cluster-ingress-operator/pull/970) * [NE-1140](https://issues.redhat.com/browse/NE-1140), [NE-1145](https://issues.redhat.com/browse/NE-1145): Set/delete HTTP request/response headers via IngressController API [#872](https://github.com/openshift/cluster-ingress-operator/pull/872) * [OCPBUGS-16089](https://issues.redhat.com/browse/OCPBUGS-16089): Set spec.subdomain on the canary route [#965](https://github.com/openshift/cluster-ingress-operator/pull/965) * [OCPBUGS-14995](https://issues.redhat.com/browse/OCPBUGS-14995): desiredRouterDeployment: Set HostPort if needed [#947](https://github.com/openshift/cluster-ingress-operator/pull/947) * [OCPBUGS-10875](https://issues.redhat.com/browse/OCPBUGS-10875): gateway-service-dns: Set DNS policy appropriately [#934](https://github.com/openshift/cluster-ingress-operator/pull/934) * [NE-1244](https://issues.redhat.com/browse/NE-1244): Use permissions instead of the "Contributor" role in Azure CredentialsRequest [#929](https://github.com/openshift/cluster-ingress-operator/pull/929) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): README: Fix Bugzilla link [#968](https://github.com/openshift/cluster-ingress-operator/pull/968) * [RFE-3007](https://issues.redhat.com/browse/RFE-3007): Expose option-contstats as an unsupported option [#887](https://github.com/openshift/cluster-ingress-operator/pull/887) * [NE-1189](https://issues.redhat.com/browse/NE-1189): Refactor Test_desiredLoadBalancerService [#886](https://github.com/openshift/cluster-ingress-operator/pull/886) * [NE-1187](https://issues.redhat.com/browse/NE-1187): Use t.Run for table-driven tests [#884](https://github.com/openshift/cluster-ingress-operator/pull/884) * [NE-1183](https://issues.redhat.com/browse/NE-1183): Rename unit tests for specific functions [#880](https://github.com/openshift/cluster-ingress-operator/pull/880) * [NE-1269](https://issues.redhat.com/browse/NE-1269): Replace bindata using embed [#905](https://github.com/openshift/cluster-ingress-operator/pull/905) * [RFE-3765](https://issues.redhat.com/browse/RFE-3765): Allow Ingress to Modify the HAProxy Log Length when using a Sidecar [#900](https://github.com/openshift/cluster-ingress-operator/pull/900) * [OCPBUGS-9274](https://issues.redhat.com/browse/OCPBUGS-9274): canary: Tolerate infra node NoExecute taint [#932](https://github.com/openshift/cluster-ingress-operator/pull/932) * [OCPBUGS-7546](https://issues.redhat.com/browse/OCPBUGS-7546): Allow only 1 disruption with 3 replicas [#931](https://github.com/openshift/cluster-ingress-operator/pull/931) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Fix previous attempt of adding a missing trailing dot to hostname [#956](https://github.com/openshift/cluster-ingress-operator/pull/956) * [OCPBUGS-14396](https://issues.redhat.com/browse/OCPBUGS-14396): Set controller-runtime logger to a null logger for E2E [#946](https://github.com/openshift/cluster-ingress-operator/pull/946) * [OCPBUGS-14998](https://issues.redhat.com/browse/OCPBUGS-14998): Only use RoleARN for Route53 API [#951](https://github.com/openshift/cluster-ingress-operator/pull/951) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Create valid DNS names for Gateway API on GCP [#949](https://github.com/openshift/cluster-ingress-operator/pull/949) * [OCPBUGS-13106](https://issues.redhat.com/browse/OCPBUGS-13106): Add ingress controller status logging on waitForIngressControllerCondition [#924](https://github.com/openshift/cluster-ingress-operator/pull/924) * [OCPBUGS-13190](https://issues.redhat.com/browse/OCPBUGS-13190): Avoid spurious updates for internalTrafficPolicy [#927](https://github.com/openshift/cluster-ingress-operator/pull/927) * [OCPBUGS-13810](https://issues.redhat.com/browse/OCPBUGS-13810): Update TestAWSELBConnectionIdleTimeout to not use wildcard DNS record [#944](https://github.com/openshift/cluster-ingress-operator/pull/944) * [NE-1294](https://issues.redhat.com/browse/NE-1294): Add support for AWS shared VPC in another account [#928](https://github.com/openshift/cluster-ingress-operator/pull/928) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Enable Azure Workload Identity authentication. [#906](https://github.com/openshift/cluster-ingress-operator/pull/906) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#939](https://github.com/openshift/cluster-ingress-operator/pull/939) * [OCPBUGS-13963](https://issues.redhat.com/browse/OCPBUGS-13963): Bump vendors k8s libraries to 0.27.2 [#936](https://github.com/openshift/cluster-ingress-operator/pull/936) * Revert "OCPBUGS-6661, OCPBUGS-9464: Move mTLS CRL handling into the router, and fix accidental duplication of CRLs" [#938](https://github.com/openshift/cluster-ingress-operator/pull/938) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#930](https://github.com/openshift/cluster-ingress-operator/pull/930) * [OCPBUGS-5478](https://issues.redhat.com/browse/OCPBUGS-5478): add UBI based Dockerfile [#925](https://github.com/openshift/cluster-ingress-operator/pull/925) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Read feature gates for future usage [#908](https://github.com/openshift/cluster-ingress-operator/pull/908) * [OCPBUGS-12913](https://issues.redhat.com/browse/OCPBUGS-12913): Deflake TestRouterCompressionOperation [#920](https://github.com/openshift/cluster-ingress-operator/pull/920) * [OCPBUGS-6784](https://issues.redhat.com/browse/OCPBUGS-6784): bump controller-runtime to fix the multi namespace cache indexing [#913](https://github.com/openshift/cluster-ingress-operator/pull/913) * [OCPBUGS-12579](https://issues.redhat.com/browse/OCPBUGS-12579): Address CVE-2022-41723 [#915](https://github.com/openshift/cluster-ingress-operator/pull/915) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): Replace Bugzilla link with Red Hat Issue Tracker [#916](https://github.com/openshift/cluster-ingress-operator/pull/916) * [OCPBUGS-10714](https://issues.redhat.com/browse/OCPBUGS-10714): gatewayclass: Update for OSSM 2.4 API change [#901](https://github.com/openshift/cluster-ingress-operator/pull/901) * [OCPBUGS-10189](https://issues.redhat.com/browse/OCPBUGS-10189): Updating ose-cluster-ingress-operator images to be consistent with ART [#898](https://github.com/openshift/cluster-ingress-operator/pull/898) * [OCPBUGS-10846](https://issues.redhat.com/browse/OCPBUGS-10846): Fix TestClientTLS flakes [#904](https://github.com/openshift/cluster-ingress-operator/pull/904) * [NE-1184](https://issues.redhat.com/browse/NE-1184): Test_desiredHttpErrorCodeConfigMap: Kill dead code and fix format [#881](https://github.com/openshift/cluster-ingress-operator/pull/881) * [OCPBUGS-4054](https://issues.redhat.com/browse/OCPBUGS-4054): configurable-route: Don't use NewKindWithCache [#860](https://github.com/openshift/cluster-ingress-operator/pull/860) * [NE-1186](https://issues.redhat.com/browse/NE-1186): Test_getRR: Fix typo: "excepted" → "expected" [#883](https://github.com/openshift/cluster-ingress-operator/pull/883) * [CORS-2467](https://issues.redhat.com/browse/CORS-2467): dns: azure: use azidentity with an adapter [#846](https://github.com/openshift/cluster-ingress-operator/pull/846) * [NE-1105](https://issues.redhat.com/browse/NE-1105): Add support for Gateway API [#890](https://github.com/openshift/cluster-ingress-operator/pull/890) * [OCPBUGS-7424](https://issues.redhat.com/browse/OCPBUGS-7424): Bump vendored k8s libraries to 1.26.1 [#888](https://github.com/openshift/cluster-ingress-operator/pull/888) * [CFE-679](https://issues.redhat.com/browse/CFE-679): Add user defined tags to the created DNS resources [#874](https://github.com/openshift/cluster-ingress-operator/pull/874) * [OCPBUGS-6247](https://issues.redhat.com/browse/OCPBUGS-6247): Updating ose-cluster-ingress-operator images to be consistent with ART [#862](https://github.com/openshift/cluster-ingress-operator/pull/862) * [CORS-2072](https://issues.redhat.com/browse/CORS-2072): GCP - Parse Zone ID with a project ID embedded [#855](https://github.com/openshift/cluster-ingress-operator/pull/855) * [NE-1092](https://issues.redhat.com/browse/NE-1092): Add proxy protocol support for IBMCloud loadbalancers [#812](https://github.com/openshift/cluster-ingress-operator/pull/812) * [OCPBUGS-6384](https://issues.redhat.com/browse/OCPBUGS-6384): Address CVE-2022-41717 [#876](https://github.com/openshift/cluster-ingress-operator/pull/876) * [OCPBUGS-4827](https://issues.redhat.com/browse/OCPBUGS-4827): Add missing AWS permission for ListTagsForResources [#868](https://github.com/openshift/cluster-ingress-operator/pull/868) * [OCPBUGS-6701](https://issues.redhat.com/browse/OCPBUGS-6701): Avoid spurious updates for scope in IngressClass [#879](https://github.com/openshift/cluster-ingress-operator/pull/879) * [OCPBUGS-6698](https://issues.redhat.com/browse/OCPBUGS-6698): Fix conflict error message in ensureNodePortService [#877](https://github.com/openshift/cluster-ingress-operator/pull/877) * [OCPBUGS-6700](https://issues.redhat.com/browse/OCPBUGS-6700): updateIngressClass: Fix log message [#878](https://github.com/openshift/cluster-ingress-operator/pull/878) * [NE-1124](https://issues.redhat.com/browse/NE-1124): Add support for External platform to CIO [#873](https://github.com/openshift/cluster-ingress-operator/pull/873) * [OCPBUGS-4573](https://issues.redhat.com/browse/OCPBUGS-4573): Target metrics port by name in internal service [#864](https://github.com/openshift/cluster-ingress-operator/pull/864) * [OCPBUGS-434](https://issues.redhat.com/browse/OCPBUGS-434): Absorb PodsScheduled condition into MinAvailable [#854](https://github.com/openshift/cluster-ingress-operator/pull/854) * [OCPBUGS-4759](https://issues.redhat.com/browse/OCPBUGS-4759): Do not manage DNS for an ingresscontroller with domain mismatch in GCP [#866](https://github.com/openshift/cluster-ingress-operator/pull/866) * [OCPBUGS-4703](https://issues.redhat.com/browse/OCPBUGS-4703): Replace liveness-grace-period-seconds annotation [#863](https://github.com/openshift/cluster-ingress-operator/pull/863) * [OCPBUGS-3404](https://issues.redhat.com/browse/OCPBUGS-3404): Bump openshift/api for matchExpressions doc fix [#856](https://github.com/openshift/cluster-ingress-operator/pull/856) * [OPNET-133](https://issues.redhat.com/browse/OPNET-133): Support remote worker [#858](https://github.com/openshift/cluster-ingress-operator/pull/858) * [OCPBUGS-1725](https://issues.redhat.com/browse/OCPBUGS-1725): Ingress controller should not have affinity policy in single-replica clusters [#810](https://github.com/openshift/cluster-ingress-operator/pull/810) * [OCPBUGS-1807](https://issues.redhat.com/browse/OCPBUGS-1807): Fix bad `handleSingleNode4Dot11Upgrade` log message [#808](https://github.com/openshift/cluster-ingress-operator/pull/808) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/992b43b3cf3e1784bfe8d3083229c7ecb410e7e3...) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/) * [WRKLDS-1015](https://issues.redhat.com/browse/WRKLDS-1015): tolerate node-role.kubernetes.io/control-plane:NoExecute [#1664](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1664) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#1577](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1577) * [OCPBUGS-31384](https://issues.redhat.com/browse/OCPBUGS-31384): use RotatedSigningCASecret controller in update only mode [#1659](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1659) * NO-ISSUE: Revert "certrotationcontroller: set AutoRegenerateAfterOfflineExpiry for generated certificates [#1661](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1661) * NO-JIRA: certrotationcontroller: set AutoRegenerateAfterOfflineExpiry [#1652](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1652) * [OCPBUGS-30119](https://issues.redhat.com/browse/OCPBUGS-30119): certrotation: Bump library-go to latest master [#1651](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1651) * [OCPCLOUD-2514](https://issues.redhat.com/browse/OCPCLOUD-2514): External CCM should no longer rely on feature gate access [#1649](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1649) * [OCPBUGS-25894](https://issues.redhat.com/browse/OCPBUGS-25894): operator: stop removing kube-apiserver-slos asset [#1642](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1642) * NO-JIRA: extend node-system-admin-client validity to 2 years [#1618](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1618) * [OBSDA-553](https://issues.redhat.com/browse/OBSDA-553): add provider name to cluster_infrastructure_provider when external platform [#1638](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1638) * [AUTH-481](https://issues.redhat.com/browse/AUTH-481): Add PSa labels to openshift-kube-apiserver-operator namespace [#1637](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1637) * [OCPBUGS-27842](https://issues.redhat.com/browse/OCPBUGS-27842): Add sno section to alert description [#1633](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1633) * NO-JIRA: Add Vu and Vadim to OWNERS [#1634](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1634) * [OCPBUGS-24005](https://issues.redhat.com/browse/OCPBUGS-24005): when skipping a webhook check because of missing CA log the name of the webhook [#1632](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1632) * NO-JIRA: Add ownership for the admin kubeconfig [#1584](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1584) * [OCPBUGS-18939](https://issues.redhat.com/browse/OCPBUGS-18939): manifest: drop slo latency metrics in favor of sli [#1546](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1546) * NO-ISSUE: prevent update status conflicts [#1621](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1621) * [OCPBUGS-21846](https://issues.redhat.com/browse/OCPBUGS-21846): sync(library-go): revision_controller: update last revision only when a revision is completely rendered [#1619](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1619) * [OCPBUGS-14496](https://issues.redhat.com/browse/OCPBUGS-14496): manifests: fix the scope of the TechPreviewNoUpgrade alert [#1512](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1512) * [OCPBUGS-24907](https://issues.redhat.com/browse/OCPBUGS-24907): Updating ose-cluster-kube-apiserver-operator-container image to be consistent with ART [#1606](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1606) * [OCPNODE-1892](https://issues.redhat.com/browse/OCPNODE-1892): Rebase 1.29.0 [#1608](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1608) * [OCPBUGS-24005](https://issues.redhat.com/browse/OCPBUGS-24005): webhookcontroller: report when a webhook resource is missing a caBundle provided by the service-ca-operator [#1587](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1587) * [TRT-1420](https://issues.redhat.com/browse/TRT-1420): revert #1586 #1596 [#1607](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1607) * [OCPNODE-1890](https://issues.redhat.com/browse/OCPNODE-1890): Bump k8s api to v0.29.0 [#1586](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1586) * [OCPNODE-1892](https://issues.redhat.com/browse/OCPNODE-1892): Set flag to skip setting cloud-provider=external [#1596](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1596) * [OCPBUGS-24701](https://issues.redhat.com/browse/OCPBUGS-24701): ignore vendor folder in SAST scan [#1599](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1599) * [AUTH-442](https://issues.redhat.com/browse/AUTH-442): psa cluster fleet evaluation [#1588](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1588) * [OCPBUGS-24213](https://issues.redhat.com/browse/OCPBUGS-24213): Annotate managed certs [#1568](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1568) * [OCPBUGS-23796](https://issues.redhat.com/browse/OCPBUGS-23796): use AlwaysAllow UnhealthyPodEvictionPolicy option [#1579](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1579) * [OCPBUGS-21836](https://issues.redhat.com/browse/OCPBUGS-21836): use external load balancer url for jwks-uri [#1578](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1578) * manifests: set owning component for TLS artifacts [#1583](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1583) * [OCPBUGS-19160](https://issues.redhat.com/browse/OCPBUGS-19160): Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1550](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1550) * [OCPBUGS-20331](https://issues.redhat.com/browse/OCPBUGS-20331): manifests/0000_90_kube-apiserver-operator_04_servicemonitor-apiserver: Rename to kube-apiserver-performance-recording-rules [#1566](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1566) * [OCPBUGS-20331](https://issues.redhat.com/browse/OCPBUGS-20331): manifests: rename API performance dashboard [#1565](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1565) * [OCPBUGS-21729](https://issues.redhat.com/browse/OCPBUGS-21729): bump library-go to include switch to HTTP/1.1 [#1567](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1567) * Update required GV for ValidatingAdmissionPolicy gate. [#1561](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1561) * Update "deprecated API in use" alert expressions for 1.28. [#1562](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1562) * bump(openshift/client-go,library-go) [#1560](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1560) * [OCPBUGS-16794](https://issues.redhat.com/browse/OCPBUGS-16794): installerpod: change pod manifest mode to 0600 [#1557](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1557) * [OCPBUGS-19024](https://issues.redhat.com/browse/OCPBUGS-19024): remove featuregate upgradeable controller that moved to cluster-config-operator [#1547](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1547) * [OCPBUGS-18247](https://issues.redhat.com/browse/OCPBUGS-18247): manifests: don't include recording rules when Console capability is not enabled [#1542](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1542) * [OCPBUGS-15504](https://issues.redhat.com/browse/OCPBUGS-15504): manifest: remove kube-apiserver PrometheusRule [#1543](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1543) * Bump openshift/* libs [#1549](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1549) * Update to Kubernetes 1.28.2 [#1548](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1548) * [STOR-1425](https://issues.redhat.com/browse/STOR-1425): Update to Kubernetes 1.28.1 [#1534](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1534) * [OCPBUGS-17436](https://issues.redhat.com/browse/OCPBUGS-17436): Unrevert 1536 and 1538. [#1541](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1541) * Reverts DynamicResourceAllocation enablement on techpreview [#1540](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1540) * [OCPBUGS-17436](https://issues.redhat.com/browse/OCPBUGS-17436): Enable DynamicResourceAllocation API in kube-apiserver [#1538](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1538) * Set runtime-config in lockstep with feature-gates, if needed. [#1536](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1536) * bump(api) [#1535](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1535) * [OCPBUGS-16511](https://issues.redhat.com/browse/OCPBUGS-16511): bump(*): vendor update [#1529](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1529) * [OCPBUGS-16511](https://issues.redhat.com/browse/OCPBUGS-16511): remove dependency on typed prometheus client [#1527](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1527) * [OCPBUGS-13635](https://issues.redhat.com/browse/OCPBUGS-13635): make webhook connection failure a warning in log [#1526](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1526) * [OCPBUGS-15489](https://issues.redhat.com/browse/OCPBUGS-15489): manifests: add new PrometheusRule for recording rules [#1521](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1521) * certrotation: rotate kube-apiserver-to-kubelet-signer when 80% of validity is over [#1523](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1523) * [OCPBUGS-13946](https://issues.redhat.com/browse/OCPBUGS-13946): do not use one second timeout when asserting a webhook connection [#1510](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1510) * [OCPBUGS-14008](https://issues.redhat.com/browse/OCPBUGS-14008): Enable "send-retry-after-while-not-ready-once" on SNO [#1500](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1500) * update probes for best practices and consistency [#1516](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1516) * api_performance_dashboard: show apiserver_longrunning_requests metric [#1518](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1518) * allow greater timeout for etcd health check [#1517](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1517) * api_performance_dashboard: show apiserver_request_total instead of apiserver_dropped_requests [#1520](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1520) * [OCPBUGS-8404](https://issues.redhat.com/browse/OCPBUGS-8404): pkg/operator/configobserver: check that the serving certificate refer… [#1482](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1482) * [OCPBUGS-3986](https://issues.redhat.com/browse/OCPBUGS-3986): dashboard: use recording rules for most metrics [#1484](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1484) * [OCPBUGS-14940](https://issues.redhat.com/browse/OCPBUGS-14940): api_performance_dashboard: show apiserver_longrunning_requests metric [#1511](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1511) * [OCPBUGS-13946](https://issues.redhat.com/browse/OCPBUGS-13946): degraded_webhook.go x509: certificate signed by unknown authority [#1503](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1503) * [OCPBUGS-14323](https://issues.redhat.com/browse/OCPBUGS-14323): Change manifest directory permissions [#1505](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1505) * [OCPBUGS-13547](https://issues.redhat.com/browse/OCPBUGS-13547): Remove featureset flag and use only the manifest [#1491](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1491) * [OCPBUGS-13303](https://issues.redhat.com/browse/OCPBUGS-13303): pkg/operator/startupmonitor: skip openshift-apiserver readiness check… [#1492](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1492) * [OCPBUGS-14038](https://issues.redhat.com/browse/OCPBUGS-14038): Update APIRemovedInNextRelease alerts [#1497](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1497) * [STOR-1263](https://issues.redhat.com/browse/STOR-1263): Bump k8s 1.27 [#1469](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1469) * read featureset from the manifests [#1490](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1490) * Read feature manifest [#1488](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1488) * Cover featuregate access errors in PSA configobserver unit tests. [#1486](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1486) * switch to featuregates via the API [#1485](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1485) * [OCPBUGS-10831](https://issues.redhat.com/browse/OCPBUGS-10831): pod security: use v1 api [#1481](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1481) * [OCPBUGS-11361](https://issues.redhat.com/browse/OCPBUGS-11361): Revert "Merge pull request #1474 from benluddy/oapi-bump" [#1477](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1477) * Bump dependency on openshift/api. [#1474](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1474) * Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1460](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1460) * [OCPBUGS-10713](https://issues.redhat.com/browse/OCPBUGS-10713): PSA Violation alert: add ocp_namespace label [#1435](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1435) * [OCPBUGS-10039](https://issues.redhat.com/browse/OCPBUGS-10039): update openshift/api to include aesgcm provider in the default apiserver schema [#1462](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1462) * [OCPBUGS-10577](https://issues.redhat.com/browse/OCPBUGS-10577): update apf configuration to use v1beta3 [#1413](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1413) * [OCPBUGS-8711](https://issues.redhat.com/browse/OCPBUGS-8711): API-1509: Enable AES-GCM encryption [#1449](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1449) * [OCPBUGS-8478](https://issues.redhat.com/browse/OCPBUGS-8478): Disable TestBoundTokenSignerController [#1455](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1455) * [STOR-1051](https://issues.redhat.com/browse/STOR-1051): Allow CSI inline volumes in all SCCs [#1434](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1434) * [WRKLDS-705](https://issues.redhat.com/browse/WRKLDS-705): Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade [#1447](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1447) * bump(api) [#1444](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1444) * bump(*) [#1442](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1442) * Update OWNERS to remove/replace adambkaplan [#1438](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1438) * [OCPBUGS-5873](https://issues.redhat.com/browse/OCPBUGS-5873): dashboard: use apiserver_storage_objects metric [#1432](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1432) * [API-1520](https://issues.redhat.com/browse/API-1520): Update SLO alerts based on upstream improvements [#1431](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1431) * [WRKLDS-649](https://issues.redhat.com/browse/WRKLDS-649): Guard pod set readiness probe endpoint explicitly [#1437](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1437) * update APIRemovedInNextRelease alerts [#1436](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1436) * [OCPBUGS-6202](https://issues.redhat.com/browse/OCPBUGS-6202): Updating ose-cluster-kube-apiserver-operator images to be consistent with ART [#1415](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1415) * [OCPBUGS-6258](https://issues.redhat.com/browse/OCPBUGS-6258): bump(k8s): 1.26.1 [#1433](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1433) * increase audit log size to contain an entire upgrade+e2e run [#1430](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1430) * [OCPBUGS-3985](https://issues.redhat.com/browse/OCPBUGS-3985): enable pod security admission for techpreview [#1403](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1403) * [OCPBUGS-272](https://issues.redhat.com/browse/OCPBUGS-272): Remove duplicate find word in error msg for degraded webhook [#1428](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1428) * Fix typo in PodSecurityViolation alert's description [#1391](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1391) * make the bootstrap kube-apiserver honor cluster-wide featuregates [#1419](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1419) * remove use of deprecated klog flags [#1427](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1427) * Revert "drop log-file flag removed in 1.26" [#1425](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1425) * make api team approver [#1377](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1377) * drop log-file flag removed in 1.26 [#1420](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1420) * bump(api) [#1418](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1418) * Drop flags removed in k8s 1.26 [#1417](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1417) * [OCPBUGS-3041](https://issues.redhat.com/browse/OCPBUGS-3041): guard controller: set an explicit hostname to avoid name collisions [#1410](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1410) * [STOR-829](https://issues.redhat.com/browse/STOR-829): Enable CSIInlineVolumeSecurity admission plugin [#1385](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1385) * [OCPBUGS-3985](https://issues.redhat.com/browse/OCPBUGS-3985): update for featureset rendering [#1409](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1409) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#1408](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1408) * bootstrap-kube-apiserver: specify resources.requests [#1398](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1398) * [OCPBUGS-1601](https://issues.redhat.com/browse/OCPBUGS-1601): CVE-2022-3259: enable HSTS for kube-apiserver [#1392](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1392) * [Bug 2100429](https://bugzilla.redhat.com/show_bug.cgi?id=2100429): Allow ephemeral volumes in all SCCs [#1380](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1380) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/7e4fab00fe7778b1bf4d67d73dcc48f330463298...) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/9243e022c42c6d55e1d97a15ed51831f6080984a) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): Sync library go 4.12 [#676](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/676) * [OCPBUGS-4766](https://issues.redhat.com/browse/OCPBUGS-4766): limit cluster-policy-controller RBAC permissions [#675](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/675) * [OCPBUGS-4681](https://issues.redhat.com/browse/OCPBUGS-4681): remove unnecessary RBAC [#674](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/674) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/02fbdd194f75cd8e4fb1a6afc40e515a73dc450e...9243e022c42c6d55e1d97a15ed51831f6080984a) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/e0b6bf9c4ddb0da9268d504d23ca2ca11880d970) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): Sync library go 4.12 [#452](https://github.com/openshift/cluster-kube-scheduler-operator/pull/452) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/626f8cb576ded39fcf8dceec6455d2d10d10d080...e0b6bf9c4ddb0da9268d504d23ca2ca11880d970) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/) * [OCPBUGS-29567](https://issues.redhat.com/browse/OCPBUGS-29567): Apply hypershift cluster-profile for ibm-cloud-managed [#106](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/106) * [OCPBUGS-27930](https://issues.redhat.com/browse/OCPBUGS-27930): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.16 [#103](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/103) * [OCPBUGS-24989](https://issues.redhat.com/browse/OCPBUGS-24989): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART [#101](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/101) * [OCPBUGS-21738](https://issues.redhat.com/browse/OCPBUGS-21738): bump library-go to include switch to HTTP/1.1 [#95](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/95) * [OCPBUGS-19253](https://issues.redhat.com/browse/OCPBUGS-19253): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#94](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/94) * Revert "specify master node selector on migrator pod" [#93](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/93) * [OCPBUGS-17170](https://issues.redhat.com/browse/OCPBUGS-17170): specify master node selector on migrator pod [#92](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/92) * [OCPBUGS-16513](https://issues.redhat.com/browse/OCPBUGS-16513): bump(*): update to 1.27.1 [#91](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/91) * Fix operator doc in README [#90](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/90) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#89](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/89) * [OCPBUGS-6240](https://issues.redhat.com/browse/OCPBUGS-6240): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#87](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/87) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/12d050abd0cf37dae8973d453930bcf494a2499b...) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/) * [OCPBUGS-29568](https://issues.redhat.com/browse/OCPBUGS-29568): Apply hypershift cluster-profile for ibm-cloud-managed [#229](https://github.com/openshift/cluster-machine-approver/pull/229) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#227](https://github.com/openshift/cluster-machine-approver/pull/227) * [OCPBUGS-26116](https://issues.redhat.com/browse/OCPBUGS-26116): Add Snyk file to exclude vendor directory on scan [#225](https://github.com/openshift/cluster-machine-approver/pull/225) * [OCPCLOUD-2417](https://issues.redhat.com/browse/OCPCLOUD-2417): Update to kube 1.29 and controller-runtime 0.17.0 [#224](https://github.com/openshift/cluster-machine-approver/pull/224) * [OCPBUGS-23544](https://issues.redhat.com/browse/OCPBUGS-23544): Increase concurrent reconciles to 10 [#222](https://github.com/openshift/cluster-machine-approver/pull/222) * [OCPBUGS-25582](https://issues.redhat.com/browse/OCPBUGS-25582): Updating ose-cluster-machine-approver-container image to be consistent with ART [#223](https://github.com/openshift/cluster-machine-approver/pull/223) * [OCPBUGS-24985](https://issues.redhat.com/browse/OCPBUGS-24985): Updating ose-cluster-machine-approver-container image to be consistent with ART [#218](https://github.com/openshift/cluster-machine-approver/pull/218) * [OCPBUGS-24154](https://issues.redhat.com/browse/OCPBUGS-24154): Updating ose-cluster-machine-approver-container image to be consistent with ART [#217](https://github.com/openshift/cluster-machine-approver/pull/217) * [OCPCLOUD-2277](https://issues.redhat.com/browse/OCPCLOUD-2277): Ensure Cluster Machine Approver metrics are only available via HTTPS [#211](https://github.com/openshift/cluster-machine-approver/pull/211) * [OCPBUGS-21594](https://issues.redhat.com/browse/OCPBUGS-21594): Filter non node CSRs in metrics [#208](https://github.com/openshift/cluster-machine-approver/pull/208) * [OCPBUGS-21793](https://issues.redhat.com/browse/OCPBUGS-21793): Bump x/net package to v0.17.0 [#204](https://github.com/openshift/cluster-machine-approver/pull/204) * Update OWNERS [#205](https://github.com/openshift/cluster-machine-approver/pull/205) * [OCPBUGS-19250](https://issues.redhat.com/browse/OCPBUGS-19250): Updating ose-cluster-machine-approver images to be consistent with ART [#201](https://github.com/openshift/cluster-machine-approver/pull/201) * [OCPCLOUD-2181](https://issues.redhat.com/browse/OCPCLOUD-2181): Update K8s dependencies to 1.28 [#203](https://github.com/openshift/cluster-machine-approver/pull/203) * [OCPBUGS-17090](https://issues.redhat.com/browse/OCPBUGS-17090): Set logger for controller runtime [#200](https://github.com/openshift/cluster-machine-approver/pull/200) * [OCPBUGS-18338](https://issues.redhat.com/browse/OCPBUGS-18338): Fix CI by running tests natively by default [#199](https://github.com/openshift/cluster-machine-approver/pull/199) * [OCPBUGS-16156](https://issues.redhat.com/browse/OCPBUGS-16156): check if machine api present [#198](https://github.com/openshift/cluster-machine-approver/pull/198) * handle situation when machine CRD is not present [#191](https://github.com/openshift/cluster-machine-approver/pull/191) * [OCPCLOUD-2044](https://issues.redhat.com/browse/OCPCLOUD-2044): Update to Kubernetes 1.27 deps [#195](https://github.com/openshift/cluster-machine-approver/pull/195) * [OCPBUGS-10171](https://issues.redhat.com/browse/OCPBUGS-10171): Go 1.20 bump with fixed unit tests [#194](https://github.com/openshift/cluster-machine-approver/pull/194) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update node client allowed usages [#189](https://github.com/openshift/cluster-machine-approver/pull/189) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update isNodeClientCert to allow for new key usages [#186](https://github.com/openshift/cluster-machine-approver/pull/186) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): approver: fix ECDSA approvals in 1.27 [#184](https://github.com/openshift/cluster-machine-approver/pull/184) * Update TLS Bootstrapping doc links in README [#182](https://github.com/openshift/cluster-machine-approver/pull/182) * Updating ose-cluster-machine-approver images to be consistent with ART [#180](https://github.com/openshift/cluster-machine-approver/pull/180) * Update OWNERS [#179](https://github.com/openshift/cluster-machine-approver/pull/179) * : Update tooling for CMA [#178](https://github.com/openshift/cluster-machine-approver/pull/178) * [OCPCLOUD-1805](https://issues.redhat.com/browse/OCPCLOUD-1805): Port to ginkgo v2 [#176](https://github.com/openshift/cluster-machine-approver/pull/176) * Updating ose-cluster-machine-approver images to be consistent with ART [#174](https://github.com/openshift/cluster-machine-approver/pull/174) * Update OWNERS [#177](https://github.com/openshift/cluster-machine-approver/pull/177) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/60081982654993534de29d224d6a42c251762420...) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/5a154c3dd01544adc280691be54fec94a5dc8d67) * [OCPBUGS-4363](https://issues.redhat.com/browse/OCPBUGS-4363): Fixed TargetDown expression to join on the proper label [#1833](https://github.com/openshift/cluster-monitoring-operator/pull/1833) * [OCPBUGS-4488](https://issues.redhat.com/browse/OCPBUGS-4488): Fixes externalURL field for Prometheus and Alertmanager [#1840](https://github.com/openshift/cluster-monitoring-operator/pull/1840) * [OCPBUGS-4627](https://issues.redhat.com/browse/OCPBUGS-4627): compute doc link in PVC not configured message [#1844](https://github.com/openshift/cluster-monitoring-operator/pull/1844) * [OCPBUGS-4489](https://issues.redhat.com/browse/OCPBUGS-4489): Increase startupProbe for prometheus [#1841](https://github.com/openshift/cluster-monitoring-operator/pull/1841) * [OCPBUGS-4431](https://issues.redhat.com/browse/OCPBUGS-4431): add alert KubePodNotScheduled to group openshift-kubernetes.rules [#1837](https://github.com/openshift/cluster-monitoring-operator/pull/1837) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/f5639f575c79df7be778cb738c78d5640e2ab210...5a154c3dd01544adc280691be54fec94a5dc8d67) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/db00b4b6bab11ec3a27451cbf3c8597889e6e5da) * [OCPBUGS-4778](https://issues.redhat.com/browse/OCPBUGS-4778): Fix handling of deployment and statefulset updates [#1663](https://github.com/openshift/cluster-network-operator/pull/1663) * [OCPBUGS-4238](https://issues.redhat.com/browse/OCPBUGS-4238): HyperShift: Co-locate OVN-Kubernetes master with other hcp pods [#1645](https://github.com/openshift/cluster-network-operator/pull/1645) * [OCPBUGS-6494](https://issues.redhat.com/browse/OCPBUGS-6494): OVN-Kubernetes: Stop sorting master node addresses, ignore readiness checks for redundant NB/SB [#1691](https://github.com/openshift/cluster-network-operator/pull/1691) * [OCPBUGS-3461](https://issues.redhat.com/browse/OCPBUGS-3461): CNI binary copy should account for the possibility of symlinks [backport 4.12] [#1615](https://github.com/openshift/cluster-network-operator/pull/1615) * [OCPBUGS-4856](https://issues.redhat.com/browse/OCPBUGS-4856): Disable the drop-icmp container 'oc' pprof webserver on Azure [#1666](https://github.com/openshift/cluster-network-operator/pull/1666) * [OCPBUGS-4686](https://issues.redhat.com/browse/OCPBUGS-4686): Revert "Remove references to the hosts kubeconfig" [#1660](https://github.com/openshift/cluster-network-operator/pull/1660) * [OCPBUGS-4183](https://issues.redhat.com/browse/OCPBUGS-4183): Fix default disable-udp-aggregation value on s390x [#1661](https://github.com/openshift/cluster-network-operator/pull/1661) * [OCPBUGS-4637](https://issues.redhat.com/browse/OCPBUGS-4637): Support RHOBS monitoring for HyperShift [#1652](https://github.com/openshift/cluster-network-operator/pull/1652) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/766b7b632bc012f17f88e277d1c3fd7db96dc2aa...db00b4b6bab11ec3a27451cbf3c8597889e6e5da) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/ba3d16b1ed84ebbd8f2a6f0ca076dc356dfa1ce9) * E2E: Network stack Pinning tests (#533) [#533](https://github.com/openshift/cluster-node-tuning-operator/pull/533) * Run node selector tests only if we 2 non Performanceworker nodes (#554) [#554](https://github.com/openshift/cluster-node-tuning-operator/pull/554) * skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#543) [#543](https://github.com/openshift/cluster-node-tuning-operator/pull/543) * pao: latency-tests: read test log directly from pod (#547) [#547](https://github.com/openshift/cluster-node-tuning-operator/pull/547) * Add authentication to the /metrics endpoint (#553) [#553](https://github.com/openshift/cluster-node-tuning-operator/pull/553) * Update NTO images to be consistent with ART (#557) [#557](https://github.com/openshift/cluster-node-tuning-operator/pull/557) * [OCPBUGS-5021](https://issues.redhat.com/browse/OCPBUGS-5021): [release-4.12] Fix two irqbalance tests - smp affinity vs online (#530) [#530](https://github.com/openshift/cluster-node-tuning-operator/pull/530) * Remove trailing space from test name (#546) [#546](https://github.com/openshift/cluster-node-tuning-operator/pull/546) * Fix default hard eviction threshold when PCC is applied (#520) [#520](https://github.com/openshift/cluster-node-tuning-operator/pull/520) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/b4e363fcebf55d9d57e1147ddd21c7a5204895b1...ba3d16b1ed84ebbd8f2a6f0ca076dc356dfa1ce9) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/4c5b4882e20944d9c44272551053fccbe16d6451) * [OCPBUGS-3293](https://issues.redhat.com/browse/OCPBUGS-3293): routes/status resources can leak sensitive data, exclude it from audit [#512](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/512) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#507](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/507) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/eadecbf8ace05f4b1db7adb5051c881ea8eb9c1f...4c5b4882e20944d9c44272551053fccbe16d6451) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/d1915d130481541b8bacb5b98eddbc1541809d0a) * [OCPBUGS-4803](https://issues.redhat.com/browse/OCPBUGS-4803): [release-4.12] Correct go file formatting for go1.19 with gofmt [#275](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/275) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#271](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/271) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/d4a3b5064fa139d7cfd3f77208954f37a0d87525...d1915d130481541b8bacb5b98eddbc1541809d0a) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/105cc773b37f00be2351c9a4e6df24af94d547c1) * [OCPBUGS-5786](https://issues.redhat.com/browse/OCPBUGS-5786): clusterquotareconciliation: do not sync quota monitor cache with no monitors registered [#95](https://github.com/openshift/cluster-policy-controller/pull/95) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/c7a633416a8ee702fa653649488a13f578f3f857...105cc773b37f00be2351c9a4e6df24af94d547c1) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/ab23d0e04237ffc8cf69cbf9b73f8bc2eee190bb) * [OCPBUGS-7208](https://issues.redhat.com/browse/OCPBUGS-7208): When setting allowedRegistries urls the openshift-samples operator is degraded [#489](https://github.com/openshift/cluster-samples-operator/pull/489) * [OCPBUGS-4599](https://issues.redhat.com/browse/OCPBUGS-4599): Bump k8s master [#479](https://github.com/openshift/cluster-samples-operator/pull/479) * [OCPBUGS-4407](https://issues.redhat.com/browse/OCPBUGS-4407): Update Cluster Sample Operator dependencies and libraries for OCP 4.13 [#478](https://github.com/openshift/cluster-samples-operator/pull/478) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/83968a4b7cea7aa51e4431c00714b5cf610abfed...ab23d0e04237ffc8cf69cbf9b73f8bc2eee190bb) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/b24d60e55576e1997d6d450ba9106a80983f1512) * [OCPBUGS-5879](https://issues.redhat.com/browse/OCPBUGS-5879): Set upgradeability check throttling period to 2m [#884](https://github.com/openshift/cluster-version-operator/pull/884) * [OCPBUGS-5083](https://issues.redhat.com/browse/OCPBUGS-5083): pkg/payload/precondition: Do not claim warnings would have blocked [#878](https://github.com/openshift/cluster-version-operator/pull/878) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/f1dc3b6a6b7c5f5a85f94201ab90f9e03547a8a3...b24d60e55576e1997d6d450ba9106a80983f1512) ### [console](https://github.com/openshift/console/tree/cc711bd0ea22f230a0fed4667fa177d34caf6b8f) * [OCPBUGS-6913](https://issues.redhat.com/browse/OCPBUGS-6913): PipelineRun task status overlaps status text [#12516](https://github.com/openshift/console/pull/12516) * [OCPBUGS-6766](https://issues.redhat.com/browse/OCPBUGS-6766): Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC [#12491](https://github.com/openshift/console/pull/12491) * [OCPBUGS-6969](https://issues.redhat.com/browse/OCPBUGS-6969): Added translation to Last used in resource type dropdown [#12521](https://github.com/openshift/console/pull/12521) * [OCPBUGS-6764](https://issues.redhat.com/browse/OCPBUGS-6764): Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered [#12490](https://github.com/openshift/console/pull/12490) * [OCPBUGS-4281](https://issues.redhat.com/browse/OCPBUGS-4281): Do not disable metrics when auth is disabled [#12323](https://github.com/openshift/console/pull/12323) * [OCPBUGS-6669](https://issues.redhat.com/browse/OCPBUGS-6669): Do not show UpdateInProgress when status is Failing [#12473](https://github.com/openshift/console/pull/12473) * [OCPBUGS-5093](https://issues.redhat.com/browse/OCPBUGS-5093): Fix to show correct help texts for each git repo status error code [#12389](https://github.com/openshift/console/pull/12389) * [OCPBUGS-6085](https://issues.redhat.com/browse/OCPBUGS-6085): Editing Pipeline in the ocp console should show correct information [#12452](https://github.com/openshift/console/pull/12452) * [OCPBUGS-6758](https://issues.redhat.com/browse/OCPBUGS-6758): Add RBAC check on Create a Project link in all-namespaces pages [#12489](https://github.com/openshift/console/pull/12489) * [OCPBUGS-6755](https://issues.redhat.com/browse/OCPBUGS-6755): Remove `refs-heads` from the branch name for Repository pipelineRun row [#12487](https://github.com/openshift/console/pull/12487) * [OCPBUGS-6743](https://issues.redhat.com/browse/OCPBUGS-6743): Fix react warning when open console, add missing keys in navigation [#12484](https://github.com/openshift/console/pull/12484) * [OCPBUGS-5875](https://issues.redhat.com/browse/OCPBUGS-5875): Don't proxy CORS response headers [#12276](https://github.com/openshift/console/pull/12276) * [OCPBUGS-6678](https://issues.redhat.com/browse/OCPBUGS-6678): fix run-time error on Cluster Settings when availableUp… [#12476](https://github.com/openshift/console/pull/12476) * [OCPBUGS-4633](https://issues.redhat.com/browse/OCPBUGS-4633): Monitoring: Fix alert descriptions with duplicate resources [#12352](https://github.com/openshift/console/pull/12352) * [OCPBUGS-5303](https://issues.redhat.com/browse/OCPBUGS-5303): display 'Control plane is hosted' alert only when isCl… [#12409](https://github.com/openshift/console/pull/12409) * [OCPBUGS-5263](https://issues.redhat.com/browse/OCPBUGS-5263): only show upgrade details if cluster not externally man… [#12404](https://github.com/openshift/console/pull/12404) * [OCPBUGS-5444](https://issues.redhat.com/browse/OCPBUGS-5444): Change vSphere connection health status icon [#12415](https://github.com/openshift/console/pull/12415) * [OCPBUGS-4960](https://issues.redhat.com/browse/OCPBUGS-4960): Fix that topology sidebar actions shows outdated data (Edit Pod Count, Edit labels, Edit annotations, etc.) [#12378](https://github.com/openshift/console/pull/12378) * [OCPBUGS-5003](https://issues.redhat.com/browse/OCPBUGS-5003): fixed node maintenance plugin route configuration for BareMetalNodesPage [#12381](https://github.com/openshift/console/pull/12381) * [OCPBUGS-5185](https://issues.redhat.com/browse/OCPBUGS-5185): Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) [#12393](https://github.com/openshift/console/pull/12393) * [OCPBUGS-5191](https://issues.redhat.com/browse/OCPBUGS-5191): add support for version v1beta1 for knativeServing and knativeEventing [#12395](https://github.com/openshift/console/pull/12395) * [OCPBUGS-4897](https://issues.redhat.com/browse/OCPBUGS-4897): Pan nodes into view if all nodes are not visible on load [#12370](https://github.com/openshift/console/pull/12370) * [OCPBUGS-4013](https://issues.redhat.com/browse/OCPBUGS-4013): fix number spinner input [#12288](https://github.com/openshift/console/pull/12288) * "OCPBUGS-4512: Fix navsection bug" [#12340](https://github.com/openshift/console/pull/12340) * [OCPBUGS-4458](https://issues.redhat.com/browse/OCPBUGS-4458): fix issue where node debug terminal doesn't load [#12338](https://github.com/openshift/console/pull/12338) * [Full changelog](https://github.com/openshift/console/compare/42d6eb3af5f3c0113f25e75107e9228335ffb22c...cc711bd0ea22f230a0fed4667fa177d34caf6b8f) ### [console-operator](https://github.com/openshift/console-operator/tree/bb87c5921246a64a59c1c09336c2ab0423330b4d) * [OCPBUGS-6921](https://issues.redhat.com/browse/OCPBUGS-6921): Recover ConsoleNotificationSync after being degraded [#728](https://github.com/openshift/console-operator/pull/728) * [Full changelog](https://github.com/openshift/console-operator/compare/a34f2e4da55277b8ae63f90247dfa406aa6f6189...bb87c5921246a64a59c1c09336c2ab0423330b4d) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/6d237727d7af8981b373cb62509dce1fe19d35b8) * [OCPBUGS-5289](https://issues.redhat.com/browse/OCPBUGS-5289): Adds vlan path substitution fix to address tuning regression for runtime config [#71](https://github.com/openshift/containernetworking-plugins/pull/71) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/742547ee7d72b27c6f6dd7763e2092050839847f...6d237727d7af8981b373cb62509dce1fe19d35b8) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/2c0d3b1c56f485cf6f4ad2787753545975326e6d) * [OCPBUGS-6599](https://issues.redhat.com/browse/OCPBUGS-6599): Address CVE-2022-41717 [#166](https://github.com/openshift/csi-driver-manila-operator/pull/166) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/6cad8759f4456659c9397a61d20a7f084bd90304...2c0d3b1c56f485cf6f4ad2787753545975326e6d) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/d90992573acb3df6c7fbb6dbe1b215125d26fc34) * [OCPBUGS-6590](https://issues.redhat.com/browse/OCPBUGS-6590): Address CVE-2022-41717 [#105](https://github.com/openshift/csi-driver-nfs/pull/105) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/b7393faceb18e18eae133a6de89e4b4339295fa8...d90992573acb3df6c7fbb6dbe1b215125d26fc34) ### [docker-builder](https://github.com/openshift/builder/tree/e76828eb29e8afefc639706a7ead4e4584d4eb0a) * Updating openshift-enterprise-builder images to be consistent with ART [#315](https://github.com/openshift/builder/pull/315) * [OCPBUGS-4779](https://issues.redhat.com/browse/OCPBUGS-4779): [release-4.12] Update to go1.19 [#321](https://github.com/openshift/builder/pull/321) * [Full changelog](https://github.com/openshift/builder/compare/973602e0e576d7eccef4fc5810ba511405cd3064...e76828eb29e8afefc639706a7ead4e4584d4eb0a) ### [docker-registry](https://github.com/openshift/image-registry/tree/3bf8e25d5694f7a4dbbe7620a1cc2e26d611cf60) * [OCPBUGS-4678](https://issues.redhat.com/browse/OCPBUGS-4678): Bump aws-sdk-go to v1.44.145 [#357](https://github.com/openshift/image-registry/pull/357) * [Full changelog](https://github.com/openshift/image-registry/compare/fab1920c871a2c38daafaddfa31aafa5d9d1d53d...3bf8e25d5694f7a4dbbe7620a1cc2e26d611cf60) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/6e5c04c066a428047d1755478cf88b290d32ad8f) * Adding rpm-build to the Dockerfile (#117) [#117](https://github.com/openshift/driver-toolkit/pull/117) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/e31abf2cf547f172da7d51b998ff5b58c05a7a6a...6e5c04c066a428047d1755478cf88b290d32ad8f) ### [etcd](https://github.com/openshift/etcd/tree/978cfefd2f21c4ec1ac84ed95130cbff510fbe1b) * [OCPBUGS-5761](https://issues.redhat.com/browse/OCPBUGS-5761): UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… [#176](https://github.com/openshift/etcd/pull/176) * [OCPBUGS-3100](https://issues.redhat.com/browse/OCPBUGS-3100): Rebase openshift/etcd 4.12 onto v3.5.6 [#169](https://github.com/openshift/etcd/pull/169) * [Full changelog](https://github.com/openshift/etcd/compare/aa4a0cc432bf2385f924ff8e971bc609734565d8...978cfefd2f21c4ec1ac84ed95130cbff510fbe1b) ### [gcp-machine-controllers](https://github.com/openshift/machine-api-provider-gcp/tree/ada83dc67fc2efad2cc73f89ca3b33fd289e50ba) * [OCPBUGS-4504](https://issues.redhat.com/browse/OCPBUGS-4504): refactor restartPolicyToBool function [#28](https://github.com/openshift/machine-api-provider-gcp/pull/28) * [OCPBUGS-4499](https://issues.redhat.com/browse/OCPBUGS-4499): Set sync period for Machine controller [#25](https://github.com/openshift/machine-api-provider-gcp/pull/25) * [Full changelog](https://github.com/openshift/machine-api-provider-gcp/compare/dbe8e9c1e33bfc5d89d242f9b8ec769ccd734872...ada83dc67fc2efad2cc73f89ca3b33fd289e50ba) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/a34b9e9499e6c3a94e2326652bd8236a5378c0b2) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): remove in-tree volume limits test now that CSIMigration is GA [#1449](https://github.com/openshift/kubernetes/pull/1449) * [OCPBUGS-4808](https://issues.redhat.com/browse/OCPBUGS-4808): Apply shared defaulters to CRD-based routes. [#1441](https://github.com/openshift/kubernetes/pull/1441) * [OCPBUGS-4366](https://issues.redhat.com/browse/OCPBUGS-4366): Update to 1.25.4 [#1434](https://github.com/openshift/kubernetes/pull/1434) * [Full changelog](https://github.com/openshift/kubernetes/compare/553373323f102cd92183bfe80e5759984b399ab4...a34b9e9499e6c3a94e2326652bd8236a5378c0b2) ### [hypershift](https://github.com/openshift/hypershift/tree/54001d77ed2b14074f002aed2a7350ef3a1a946b) * Skip destroyAWSDefaultSecurityGroup if not AWS [#2168](https://github.com/openshift/hypershift/pull/2168) * Create default security group for AWS clusters [#2162](https://github.com/openshift/hypershift/pull/2162) * [AUTH-323](https://issues.redhat.com/browse/AUTH-323): pki: split out konnectivity certs from the rootCA [#2156](https://github.com/openshift/hypershift/pull/2156) * fix(ibmcloud): Initialize image registry config on creates and bad config [#2104](https://github.com/openshift/hypershift/pull/2104) * fix(cpo): Allow KAS profiling disablement [#2122](https://github.com/openshift/hypershift/pull/2122) * reduce ignition server scope [#2140](https://github.com/openshift/hypershift/pull/2140) * OpenID add support for groups claim in the config [#2129](https://github.com/openshift/hypershift/pull/2129) * fix(cpo): Restart registry operator on annotation [#2121](https://github.com/openshift/hypershift/pull/2121) * Fix CAPA crd generation [#2120](https://github.com/openshift/hypershift/pull/2120) * Set k8s.io/kubernetes dependency to v0.23.3 [#2118](https://github.com/openshift/hypershift/pull/2118) * fix(cpo): Separate RBAC for NTO + CNO [#2112](https://github.com/openshift/hypershift/pull/2112) * Merge main up to db7c22ae into 'release-4.12' [#2101](https://github.com/openshift/hypershift/pull/2101) * Merge main into release-4.12 branch [#2053](https://github.com/openshift/hypershift/pull/2053) * Release 4.12 rebase latest [#2047](https://github.com/openshift/hypershift/pull/2047) * Fix OpenID OAuth config parsing [#2029](https://github.com/openshift/hypershift/pull/2029) * Fast foward release-4.12 to main [#2003](https://github.com/openshift/hypershift/pull/2003) * [OCPBUGS-5133](https://issues.redhat.com/browse/OCPBUGS-5133): Reinstate hosted cluster configuration propagation [#1981](https://github.com/openshift/hypershift/pull/1981) * Remove CAPA command from deployment [#1970](https://github.com/openshift/hypershift/pull/1970) * Fast forward release-4.12 to main [#1964](https://github.com/openshift/hypershift/pull/1964) * Remove CAPI manager container command path [#1969](https://github.com/openshift/hypershift/pull/1969) * v1beta1: add missing S3 publishing strategy type [#1968](https://github.com/openshift/hypershift/pull/1968) * Fast forward 'release-4.12' branch to 'main' [#1932](https://github.com/openshift/hypershift/pull/1932) * [Full changelog](https://github.com/openshift/hypershift/compare/fb28fd19fbb25cc91e4b274e7acbb127d4c297ce...54001d77ed2b14074f002aed2a7350ef3a1a946b) ### [insights-operator](https://github.com/openshift/insights-operator/tree/9b28d553555da54585cc05b018a1828fb8f81a5e) * [OCPBUGS-5976](https://issues.redhat.com/browse/OCPBUGS-5976): operators gatherer - handle ingresscontroller relatedObject & simplify (#714) (#719) [#714](https://github.com/openshift/insights-operator/pull/714) * [OCPBUGS-5348](https://issues.redhat.com/browse/OCPBUGS-5348): do not periodically update Available clusteroperator co… (#710) [#710](https://github.com/openshift/insights-operator/pull/710) * do not get disabled rules (#706) (#713) [#706](https://github.com/openshift/insights-operator/pull/706) * [OCPBUGS-3377](https://issues.redhat.com/browse/OCPBUGS-3377): fix: storage/ceph path structure (#691) (#697) [#691](https://github.com/openshift/insights-operator/pull/691) * [Full changelog](https://github.com/openshift/insights-operator/compare/c2c68752c34ed7ea3be2cdebf6648d5fc84d35ee...9b28d553555da54585cc05b018a1828fb8f81a5e) ### [ironic](https://github.com/openshift/ironic-image/tree/27695b69851b0687e17b4325e364792026282d9f) * [OCPBUGS-5143](https://issues.redhat.com/browse/OCPBUGS-5143): Adding dosfstools and util-linux tools to ironic-image [#341](https://github.com/openshift/ironic-image/pull/341) * [OCPBUGS-5100](https://issues.redhat.com/browse/OCPBUGS-5100): Configure Ironic iLO driver to use web server [#339](https://github.com/openshift/ironic-image/pull/339) * [OCPBUGS-4789](https://issues.redhat.com/browse/OCPBUGS-4789): Update packages versions with latest available [#335](https://github.com/openshift/ironic-image/pull/335) * [OCPBUGS-4840](https://issues.redhat.com/browse/OCPBUGS-4840): Handle a different error code for missing TransferProtocolType [#334](https://github.com/openshift/ironic-image/pull/334) * Bug OCPBUGS-2052: Fix setting boot related attributes [#324](https://github.com/openshift/ironic-image/pull/324) * [OCPBUGS-4479](https://issues.redhat.com/browse/OCPBUGS-4479): fix: Add support for OKD/SCOS [#329](https://github.com/openshift/ironic-image/pull/329) * [OCPBUGS-4311](https://issues.redhat.com/browse/OCPBUGS-4311): Remove RDO distribution configuration (finally fixes #46) [#327](https://github.com/openshift/ironic-image/pull/327) * [OCPBUGS-4097](https://issues.redhat.com/browse/OCPBUGS-4097): Workaround for long time gap between operations in recent idrac [#322](https://github.com/openshift/ironic-image/pull/322) * [OCPBUGS-3111](https://issues.redhat.com/browse/OCPBUGS-3111): Don't save OS_ prefixed variables [#310](https://github.com/openshift/ironic-image/pull/310) * Bug OCPBUGS-3479: Improve resiliency of eTag handling [#315](https://github.com/openshift/ironic-image/pull/315) * [Full changelog](https://github.com/openshift/ironic-image/compare/4838a077d849070563b70761957178055d5d4517...27695b69851b0687e17b4325e364792026282d9f) ### [ironic-agent](https://github.com/openshift/ironic-agent-image/tree/fb675baa5849e2decd90e9e19e36b7031dc70a55) * [OCPBUGS-5067](https://issues.redhat.com/browse/OCPBUGS-5067): make coreos-installer output available in the logs [#66](https://github.com/openshift/ironic-agent-image/pull/66) * [Full changelog](https://github.com/openshift/ironic-agent-image/compare/a4408de0f9f6788e4f7517ec2a626e613c59021c...fb675baa5849e2decd90e9e19e36b7031dc70a55) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/d8a02d36d5aaa4737246b7807b0a10f9cafccec0) * [OCPBUGS-7227](https://issues.redhat.com/browse/OCPBUGS-7227): Update for 4.12 / go 1.19, including gofmt updates [#482](https://github.com/openshift/sdn/pull/482) * [OCPBUGS-4486](https://issues.redhat.com/browse/OCPBUGS-4486): Add node egress IP assignment resync [#487](https://github.com/openshift/sdn/pull/487) * [OCPBUGS-4422](https://issues.redhat.com/browse/OCPBUGS-4422): pass ResourceVersion:0 for kube List() calls [#473](https://github.com/openshift/sdn/pull/473) * [Full changelog](https://github.com/openshift/sdn/compare/832cbb86081fbb7cfb3e9dc389f78aabfd4d1e6c...d8a02d36d5aaa4737246b7807b0a10f9cafccec0) ### [kubevirt-csi-driver](https://github.com/openshift/kubevirt-csi-driver/tree/f407c8a71c831a8f7911bf0b4a99bb6b16e0e0b6) * Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART [#12](https://github.com/openshift/kubevirt-csi-driver/pull/12) * [Full changelog](https://github.com/openshift/kubevirt-csi-driver/compare/cb83c7ce7bd07e1a1b7c0b5dc255dfb02bcc2760...f407c8a71c831a8f7911bf0b4a99bb6b16e0e0b6) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/a99a63b994407212a5dcc83cc5bc7c02222350b3) * [OCPBUGS-5413](https://issues.redhat.com/browse/OCPBUGS-5413): Append annotations from machine template spec to the node [#1104](https://github.com/openshift/machine-api-operator/pull/1104) * [OCPBUGS-5117](https://issues.redhat.com/browse/OCPBUGS-5117): [release-4.12] Allow to use machine.openshift.io API in provider specs [#1086](https://github.com/openshift/machine-api-operator/pull/1086) * [OCPBUGS-5417](https://issues.redhat.com/browse/OCPBUGS-5417): machine-api-termination-handler: run DaemonSet only on Linux [#1105](https://github.com/openshift/machine-api-operator/pull/1105) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/6397450f3464ffb875f43011ed8ad7428e50f881...a99a63b994407212a5dcc83cc5bc7c02222350b3) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/f718950c3c532c7d0bf4fbb2328fa489f6f02dbd) * [OCPBUGS-6045](https://issues.redhat.com/browse/OCPBUGS-6045): There are not enough logs in case "oc extract" is stuck in mco first boot [#3503](https://github.com/openshift/machine-config-operator/pull/3503) * [OCPBUGS-6973](https://issues.redhat.com/browse/OCPBUGS-6973): configure-ovs: optionally generate configuration in /run [#3532](https://github.com/openshift/machine-config-operator/pull/3532) * [OCPBUGS-6779](https://issues.redhat.com/browse/OCPBUGS-6779): baremetal: clean state generated by NM when run by dracut [#3521](https://github.com/openshift/machine-config-operator/pull/3521) * [OCPBUGS-7241](https://issues.redhat.com/browse/OCPBUGS-7241): controller: default overwrite to true for files [#3546](https://github.com/openshift/machine-config-operator/pull/3546) * [OCPBUGS-6997](https://issues.redhat.com/browse/OCPBUGS-6997): Fix 4.12 art images [#3535](https://github.com/openshift/machine-config-operator/pull/3535) * [OCPBUGS-6805](https://issues.redhat.com/browse/OCPBUGS-6805): Only check image type if we are sure there is work that needs to be done [#3526](https://github.com/openshift/machine-config-operator/pull/3526) * [OCPBUGS-5999](https://issues.redhat.com/browse/OCPBUGS-5999): 4.12 - remove goutils from dependency tree [#3496](https://github.com/openshift/machine-config-operator/pull/3496) * [OCPBUGS-6179](https://issues.redhat.com/browse/OCPBUGS-6179): controller: don't render new MC until base MCs update [#3506](https://github.com/openshift/machine-config-operator/pull/3506) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): Mount /run/nodeip-configuration into keepalived containers [#3479](https://github.com/openshift/machine-config-operator/pull/3479) * [OCPBUGS-5384](https://issues.redhat.com/browse/OCPBUGS-5384): daemon: Explicitly pull image before running [#3475](https://github.com/openshift/machine-config-operator/pull/3475) * [OCPBUGS-3311](https://issues.redhat.com/browse/OCPBUGS-3311): [alicloud] provider ID not being set for kubelet [#3457](https://github.com/openshift/machine-config-operator/pull/3457) * [OCPBUGS-4805](https://issues.redhat.com/browse/OCPBUGS-4805): Do not allow empty system reserved values [#3453](https://github.com/openshift/machine-config-operator/pull/3453) * [OCPBUGS-4667](https://issues.redhat.com/browse/OCPBUGS-4667): vsphere: check that /etc/hostname is not empty [#3452](https://github.com/openshift/machine-config-operator/pull/3452) * [OCPBUGS-4091](https://issues.redhat.com/browse/OCPBUGS-4091): NM resolv prepender: correct permissions for systemd resolved config [#3442](https://github.com/openshift/machine-config-operator/pull/3442) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/eb094c27cf623d1582777fef8aa9e2356cdf1737...f718950c3c532c7d0bf4fbb2328fa489f6f02dbd) ### [machine-image-customization-controller](https://github.com/openshift/image-customization-controller/tree/27777d0e032119965c7ea5ce5b8f74bd885990bd) * [OCPBUGS-5655](https://issues.redhat.com/browse/OCPBUGS-5655): Update dependencies [#76](https://github.com/openshift/image-customization-controller/pull/76) * [Full changelog](https://github.com/openshift/image-customization-controller/compare/5f83bd7c20574e5620e7cc92dd424835ef8a0b28...27777d0e032119965c7ea5ce5b8f74bd885990bd) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/165ce7c1f66525bcba699282dba021da6d6a4ab5) * [OCPBUGS-3941](https://issues.redhat.com/browse/OCPBUGS-3941): Backport Excluded ranges bug (#282) [#103](https://github.com/openshift/whereabouts-cni/pull/103) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/057715ebdd38f6cfbeda9bf5fa6ac20e21947a60...165ce7c1f66525bcba699282dba021da6d6a4ab5) ### [oc-mirror](https://github.com/openshift/oc-mirror/tree/3d517407dcbc46ededd7323c7e8f6d6a45efc649) * [OCPBUGS-6703](https://issues.redhat.com/browse/OCPBUGS-6703): fix: adds logic that searches for the correct name when using a heads… (#554) [#554](https://github.com/openshift/oc-mirror/pull/554) * Updating oc-mirror-plugin images to be consistent with ART (#515) [#515](https://github.com/openshift/oc-mirror/pull/515) * [OCPBUGS-5253](https://issues.redhat.com/browse/OCPBUGS-5253): Fix: fixes issues encountered by QE (#543) [#543](https://github.com/openshift/oc-mirror/pull/543) * [OCPBUGS-5253](https://issues.redhat.com/browse/OCPBUGS-5253): fix: Missing 'ImageContentSourcePolicy' and 'CatalogSou… (#542) [#542](https://github.com/openshift/oc-mirror/pull/542) * [OCPBUGS-4516](https://issues.redhat.com/browse/OCPBUGS-4516): fix: oc-mirror does not work as expected relative path for OCI format copy (#532) [#532](https://github.com/openshift/oc-mirror/pull/532) * [OCPBUGS-4365](https://issues.redhat.com/browse/OCPBUGS-4365): Fix cases where namespace or subnamespace may be empty (#530) [#530](https://github.com/openshift/oc-mirror/pull/530) * [OCPBUGS-4414](https://issues.redhat.com/browse/OCPBUGS-4414): fix (#528) [#528](https://github.com/openshift/oc-mirror/pull/528) * [Full changelog](https://github.com/openshift/oc-mirror/compare/8a224c487cd856bd3b702ba31dd0fce31343ed09...3d517407dcbc46ededd7323c7e8f6d6a45efc649) ### [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics/tree/) * [OCPBUGS-24878](https://issues.redhat.com/browse/OCPBUGS-24878): Updating openshift-state-metrics-container image to be consistent with ART [#112](https://github.com/openshift/openshift-state-metrics/pull/112) * [MON-3530](https://issues.redhat.com/browse/MON-3530): Update OWNERS [#110](https://github.com/openshift/openshift-state-metrics/pull/110) * [OCPBUGS-23649](https://issues.redhat.com/browse/OCPBUGS-23649): bump dependencies [#109](https://github.com/openshift/openshift-state-metrics/pull/109) * [OCPBUGS-21754](https://issues.redhat.com/browse/OCPBUGS-21754): bump `x/net` to v0.17.0 [#103](https://github.com/openshift/openshift-state-metrics/pull/103) * Update Dockerfile to remove the maintainer tag [#98](https://github.com/openshift/openshift-state-metrics/pull/98) * [OCPBUGS-19120](https://issues.redhat.com/browse/OCPBUGS-19120): Updating openshift-state-metrics images to be consistent with ART [#102](https://github.com/openshift/openshift-state-metrics/pull/102) * [OCPBUGS-12538](https://issues.redhat.com/browse/OCPBUGS-12538): bump x/net to v0.7.0 [#101](https://github.com/openshift/openshift-state-metrics/pull/101) * [OCPBUGS-6343](https://issues.redhat.com/browse/OCPBUGS-6343): address CVE-2022-41717 [#100](https://github.com/openshift/openshift-state-metrics/pull/100) * [OCPBUGS-12305](https://issues.redhat.com/browse/OCPBUGS-12305): Update 4.14 openshift-state-metrics image to be consistent with ART [#97](https://github.com/openshift/openshift-state-metrics/pull/97) * [OCPBUGS-10076](https://issues.redhat.com/browse/OCPBUGS-10076): Updating openshift-state-metrics images to be consistent with ART [#95](https://github.com/openshift/openshift-state-metrics/pull/95) * Updating openshift-state-metrics images to be consistent with ART [#92](https://github.com/openshift/openshift-state-metrics/pull/92) * [Full changelog](https://github.com/openshift/openshift-state-metrics/compare/4c711c74a0857e55604d11bd975b32b9956db6a0...) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/9176d8600a10d34527992d462f4006178d4bfcf7) * [OCPBUGS-7155](https://issues.redhat.com/browse/OCPBUGS-7155): Address CVE-2022-41717 [#55](https://github.com/openshift/machine-api-provider-openstack/pull/55) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/5f1ea9f0dbdadb30f67e7539ff357170f9401773...9176d8600a10d34527992d462f4006178d4bfcf7) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/2fe8e470f6ebcdb73da63252d78c6af11ecde02f) * [OCPBUGS-6260](https://issues.redhat.com/browse/OCPBUGS-6260): Catalog, fatal error: concurrent map read and map write [#440](https://github.com/openshift/operator-framework-olm/pull/440) * [OCPBUGS-7025](https://issues.redhat.com/browse/OCPBUGS-7025): Set ImagePullPolicy of bundle unpacker to "IfNotPresent" for image digests [#439](https://github.com/openshift/operator-framework-olm/pull/439) * [OCPBUGS-3881](https://issues.redhat.com/browse/OCPBUGS-3881): Default to legacy psa settings [#426](https://github.com/openshift/operator-framework-olm/pull/426) * [OCPBUGS-4951](https://issues.redhat.com/browse/OCPBUGS-4951): Bump go and k8s [#424](https://github.com/openshift/operator-framework-olm/pull/424) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/cb68bcdc7dfba75b7f41bdddd6aad448e9110a98...2fe8e470f6ebcdb73da63252d78c6af11ecde02f) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/cfce6b5024f56305304599cd49dfbbe2b5d8ed3d) * [OCPBUGS-5466](https://issues.redhat.com/browse/OCPBUGS-5466): Default CatalogSource aren't always reverted to default settings [#504](https://github.com/operator-framework/operator-marketplace/pull/504) * [OCPBUGS-6232](https://issues.redhat.com/browse/OCPBUGS-6232): Updating marketplace-operator images to be consistent with ART [#493](https://github.com/operator-framework/operator-marketplace/pull/493) * [OCPBUGS-6323](https://issues.redhat.com/browse/OCPBUGS-6323): Upgrade golang/x/net to v0.4.0 to fix CVE-2022-41717 [#505](https://github.com/operator-framework/operator-marketplace/pull/505) * [OCPBUGS-5423](https://issues.redhat.com/browse/OCPBUGS-5423): Remove PSA audit and warnings [#502](https://github.com/operator-framework/operator-marketplace/pull/502) * [OCPBUGS-5423](https://issues.redhat.com/browse/OCPBUGS-5423): Run Default CatalogSource in Restricted mode [#498](https://github.com/operator-framework/operator-marketplace/pull/498) * [OCPBUGS-4873](https://issues.redhat.com/browse/OCPBUGS-4873): Add audit-version and warn-version labels [#495](https://github.com/operator-framework/operator-marketplace/pull/495) * Remove duplicate gprcPodConfig field in defaults [#496](https://github.com/operator-framework/operator-marketplace/pull/496) * [OCPBUGS-4758](https://issues.redhat.com/browse/OCPBUGS-4758): Unenforce PSA Restrictions [#491](https://github.com/operator-framework/operator-marketplace/pull/491) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/9da3498e1cd0e416ffeced38f2c4c9d724f4aceb...cfce6b5024f56305304599cd49dfbbe2b5d8ed3d) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) * [OCPBUGS-6309](https://issues.redhat.com/browse/OCPBUGS-6309): Fix swapped CPU socket and thread mapping [#173](https://github.com/openshift/cluster-api-provider-ovirt/pull/173) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/645b6d4db6af1f8ba4be95dd9e8d6d0aa7c632f7...03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) ### [ovn-kubernetes, ovn-kubernetes-microshift](https://github.com/openshift/ovn-kubernetes/tree/4b5172a7f3e68cd724a11b4beaaa0459ece307fa) * [OCPBUGS-7230](https://issues.redhat.com/browse/OCPBUGS-7230): Delete IGMP Groups when deleting stale chassis [#1516](https://github.com/openshift/ovn-kubernetes/pull/1516) * [OCPBUGS-3399](https://issues.redhat.com/browse/OCPBUGS-3399): Drop in-cluster traffic towards svcCIDR at wrong port [#1490](https://github.com/openshift/ovn-kubernetes/pull/1490) * [OCPBUGS-6961](https://issues.redhat.com/browse/OCPBUGS-6961): update base image of Dockerfile [#1504](https://github.com/openshift/ovn-kubernetes/pull/1504) * [OCPBUGS-6823](https://issues.redhat.com/browse/OCPBUGS-6823): [release-4.12] Fix Egress FW ACL rules in dualstack mode [#1500](https://github.com/openshift/ovn-kubernetes/pull/1500) * [OCPBUGS-4862](https://issues.redhat.com/browse/OCPBUGS-4862): Correct the deletion of noHostSubnet nodes [#1470](https://github.com/openshift/ovn-kubernetes/pull/1470) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): ovnkube-trace: run ovn-sbctl and ovn-trace with --no-leader-only [#1489](https://github.com/openshift/ovn-kubernetes/pull/1489) * [OCPBUGS-5841](https://issues.redhat.com/browse/OCPBUGS-5841): ovnkube-node: Existing management port check [#1475](https://github.com/openshift/ovn-kubernetes/pull/1475) * [OCPBUGS-6812](https://issues.redhat.com/browse/OCPBUGS-6812): [release-4.12] Ensure loadbalancer cleanup doesn't fail [#1497](https://github.com/openshift/ovn-kubernetes/pull/1497) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): Bump OVN to 22.09.0-54 [#1488](https://github.com/openshift/ovn-kubernetes/pull/1488) * [OCPBUGS-5923](https://issues.redhat.com/browse/OCPBUGS-5923): [release-4.12] Fix egress firewall to allow inbound connections in both gw modes [#1477](https://github.com/openshift/ovn-kubernetes/pull/1477) * [OCPBUGS-5046](https://issues.redhat.com/browse/OCPBUGS-5046): [release-4.12] egressip: fix test data race accessing podAssignment cache [#1467](https://github.com/openshift/ovn-kubernetes/pull/1467) * [OCPBUGS-3651](https://issues.redhat.com/browse/OCPBUGS-3651): downstream windows fixes [#1384](https://github.com/openshift/ovn-kubernetes/pull/1384) * [OCPBUGS-4533](https://issues.redhat.com/browse/OCPBUGS-4533): Move check_pkt_larger to gateway router ports [#1420](https://github.com/openshift/ovn-kubernetes/pull/1420) * [OCPBUGS-3651](https://issues.redhat.com/browse/OCPBUGS-3651): [release-4.12] cherry-pick hybrid overlay fixes from master branch [#1460](https://github.com/openshift/ovn-kubernetes/pull/1460) * Bug OCPBUGS-4383: Don't log in iterateRetryResources when there are no retry entries [#1413](https://github.com/openshift/ovn-kubernetes/pull/1413) * [OCPBUGS-4098](https://issues.redhat.com/browse/OCPBUGS-4098): [release-4.12] egress ip: Skip mgmt ports that cannot have assignable IP addresses [#1429](https://github.com/openshift/ovn-kubernetes/pull/1429) * [OCPBUGS-4884](https://issues.redhat.com/browse/OCPBUGS-4884): [release-4.12] Fixes scenario where deleted + completed pods may leak [#1451](https://github.com/openshift/ovn-kubernetes/pull/1451) * [OCPBUGS-4835](https://issues.redhat.com/browse/OCPBUGS-4835): [4.12] Fix address set cleanup: only delete address sets owned by given object. [#1446](https://github.com/openshift/ovn-kubernetes/pull/1446) * [OCPBUGS-4760](https://issues.redhat.com/browse/OCPBUGS-4760): [4.12] Avoid duplicate transactions and minimize handlers with empty namespace selectors [#1439](https://github.com/openshift/ovn-kubernetes/pull/1439) * [OCPBUGS-4286](https://issues.redhat.com/browse/OCPBUGS-4286): Fix delete equivalent acls [#1406](https://github.com/openshift/ovn-kubernetes/pull/1406) * [OCPBUGS-3378](https://issues.redhat.com/browse/OCPBUGS-3378): Set the node as reachable only when it is being added as an egressip node [#1402](https://github.com/openshift/ovn-kubernetes/pull/1402) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): Support LB Session Affinity TimeOut [#1427](https://github.com/openshift/ovn-kubernetes/pull/1427) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): [release-4.12] Dockerfile: bump OVN to 22.09.0-25 [#1425](https://github.com/openshift/ovn-kubernetes/pull/1425) * Bug OCPBUGS-4379: apply retry logic to ovnk-node controllers [#1411](https://github.com/openshift/ovn-kubernetes/pull/1411) * [OCPBUGS-4361](https://issues.redhat.com/browse/OCPBUGS-4361): Bp ovnkube trace changes [#1408](https://github.com/openshift/ovn-kubernetes/pull/1408) * [OCPBUGS-4505](https://issues.redhat.com/browse/OCPBUGS-4505): pods: deleteLogicalPort should not fail when node is gone [#1419](https://github.com/openshift/ovn-kubernetes/pull/1419) * [OCPBUGS-4453](https://issues.redhat.com/browse/OCPBUGS-4453): Set NODAD flag on masquerade address [#1416](https://github.com/openshift/ovn-kubernetes/pull/1416) * [Release 4.12] OCPBUGS-3397: Avoid Remetric pods [#1399](https://github.com/openshift/ovn-kubernetes/pull/1399) * [OCPBUGS-3390](https://issues.redhat.com/browse/OCPBUGS-3390): Handle k8s watcher restart scenario [#1359](https://github.com/openshift/ovn-kubernetes/pull/1359) * [OCPBUGS-3798](https://issues.redhat.com/browse/OCPBUGS-3798): [4.12] Dockerfile: bump regular image to OVS 2.17.0-62 [#1409](https://github.com/openshift/ovn-kubernetes/pull/1409) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/f3ca096a222b7879628175133819c5fa943bbf6f...4b5172a7f3e68cd724a11b4beaaa0459ece307fa) ### [powervs-block-csi-driver](https://github.com/openshift/ibm-powervs-block-csi-driver/tree/5eb2b132aef490ff8fec4784d8696c7758561e7e) * Update OWNERS component to Multi-Arch [#24](https://github.com/openshift/ibm-powervs-block-csi-driver/pull/24) * [Full changelog](https://github.com/openshift/ibm-powervs-block-csi-driver/compare/47cdccb57b862ace2d0036fbedbe3821d0e7af6f...5eb2b132aef490ff8fec4784d8696c7758561e7e) ### [powervs-block-csi-driver-operator](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/tree/b4da8bcc0ba35a656283c9781e0343a22fdcdfe7) * Update OWNERS component to Multi-Arch [#16](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/pull/16) * [Full changelog](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/compare/06ea8d061b0145555a41ae6e2501a3844e83aa86...b4da8bcc0ba35a656283c9781e0343a22fdcdfe7) ### [powervs-cloud-controller-manager](https://github.com/openshift/cloud-provider-powervs/tree/d8ddc10c99451542b42a725c5346ee7c174dae1f) * Updated OWNERS component to Multi-Arch [#29](https://github.com/openshift/cloud-provider-powervs/pull/29) * [Full changelog](https://github.com/openshift/cloud-provider-powervs/compare/6125f1d95855433e3ee55151557da9ca6f36a194...d8ddc10c99451542b42a725c5346ee7c174dae1f) ### [powervs-machine-controllers](https://github.com/openshift/machine-api-provider-powervs/tree/3f498f79cf7af3e4013cfcbfdcfb006ae64e19e9) * Update OWNERS [#39](https://github.com/openshift/machine-api-provider-powervs/pull/39) * [Full changelog](https://github.com/openshift/machine-api-provider-powervs/compare/727fe0f3bf1b4638d31b8e336b77edf421519804...3f498f79cf7af3e4013cfcbfdcfb006ae64e19e9) ### [tests](https://github.com/openshift/origin/tree/72810abf0110bd67b1103e889477075e2cd39865) * [OCPBUGS-7285](https://issues.redhat.com/browse/OCPBUGS-7285): extended: security: do not explicitly set api audience on token request [#27716](https://github.com/openshift/origin/pull/27716) * [OCPBUGS-6850](https://issues.redhat.com/browse/OCPBUGS-6850): [release-4.12] upgrade/adminack: guarantee one admin ack check post-upgrade [#27684](https://github.com/openshift/origin/pull/27684) * [OCPBUGS-5493](https://issues.redhat.com/browse/OCPBUGS-5493): Use cluster network MTU for bond interfaces [#27637](https://github.com/openshift/origin/pull/27637) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): Fix intervalcreation incorrect year unit test bug [#27668](https://github.com/openshift/origin/pull/27668) * [OCPBUGS-5130](https://issues.redhat.com/browse/OCPBUGS-5130): run resourcewatch fixes [#27625](https://github.com/openshift/origin/pull/27625) * [OCPBUGS-4836](https://issues.redhat.com/browse/OCPBUGS-4836): 1sec [#27610](https://github.com/openshift/origin/pull/27610) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): Unskip service session affinity tests [#27598](https://github.com/openshift/origin/pull/27598) * [OCPBUGS-4851](https://issues.redhat.com/browse/OCPBUGS-4851): Add Kuryr exception to "pods should successfully create sandboxes" test [#27611](https://github.com/openshift/origin/pull/27611) * [OCPBUGS-4407](https://issues.redhat.com/browse/OCPBUGS-4407): Nginx 1.18 images will reach EOL in November 2022 [#27599](https://github.com/openshift/origin/pull/27599) * [OCPBUGS-2927](https://issues.redhat.com/browse/OCPBUGS-2927): [release-4.12] Bump kubernetes to latest release-4.12 [#27588](https://github.com/openshift/origin/pull/27588) * [Full changelog](https://github.com/openshift/origin/compare/89447395f66a7952b654b62dcd168486c3c93a39...72810abf0110bd67b1103e889477075e2cd39865) ### [thanos](https://github.com/openshift/thanos/tree/306214e86722493edd8d940fd41553acae1dd600) * Updating thanos images to be consistent with ART [#101](https://github.com/openshift/thanos/pull/101) * [Full changelog](https://github.com/openshift/thanos/compare/9c6516b9beca8b9c6a205774eb4ad1e6a6744485...306214e86722493edd8d940fd41553acae1dd600) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/4d9496e254d15bfc50b58d60a37d0e9968986832) * [OCPBUGS-6936](https://issues.redhat.com/browse/OCPBUGS-6936): fix for nil user session (#1859) [#57](https://github.com/openshift/vmware-vsphere-csi-driver/pull/57) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/df89e303405042aa0c8f8704962910a4ef486ab8...4d9496e254d15bfc50b58d60a37d0e9968986832) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/03999e46b954151b52c7dc799b7341ca7d3e1744) * [OCPBUGS-4609](https://issues.redhat.com/browse/OCPBUGS-4609): Add multiple datacenters support [#123](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/123) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/7c8ccc7d25d9bfda2f79a9c965a667bed3431e11...03999e46b954151b52c7dc799b7341ca7d3e1744) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/7328d215995baa4bdf623021741c669251ea4296) * [OCPBUGS-5509](https://issues.redhat.com/browse/OCPBUGS-5509): Add a count of zonal volumes [#97](https://github.com/openshift/vsphere-problem-detector/pull/97) * [OCPBUGS-3442](https://issues.redhat.com/browse/OCPBUGS-3442): Lets remove datastore length checks for now [#92](https://github.com/openshift/vsphere-problem-detector/pull/92) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/9fbc809c9ba1a492901b799be3447ab7c4141089...7328d215995baa4bdf623021741c669251ea4296)