# 4.7.0-0.okd-2021-06-04-191031 Created: 2021-06-05 06:08:41 +0000 UTC Image Digest: `sha256:78ebb2404a0f3a5622fa141a6bcc923284d773ed0ccf65239a47ede1a3ad07d2` Promoted from registry.ci.openshift.org/origin/release:4.7.0-0.okd-2021-06-04-191031 ## Changes from 4.7.0-0.okd-2021-03-28-152009 ### Components * Kubernetes 1.20.0-beta.2 * Fedora CoreOS upgraded from 33.20210323.10 to 34.20210518.3 ### New images * [driver-toolkit](https://github.com/openshift/driver-toolkit) git [bbf091e6](https://github.com/openshift/driver-toolkit/commit/bbf091e64bb3cf06edd61e39877ebe534037de3c) `sha256:52ce5a78c22547ce1004e1237eac7a8cc652c713a4d575558d215e8fdcf9b14d` ### Rebuilt images without code change * [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal) git [25cbb8d8](https://github.com/openshift/cluster-api-provider-baremetal/commit/25cbb8d8f9e52244ccd6bf459e6dd4b84749de56) `sha256:35db17a664c972925be2ba965644c52c2a4afacf64ad535ceeb90d5314e9ab1c` * [baremetal-operator](https://github.com/openshift/baremetal-operator) git [74c60aa9](https://github.com/openshift/baremetal-operator/commit/74c60aa957f53432d0a98afc78099add55d27c44) `sha256:f8de068a6bb16340bfe340c5a96ea72c21c171bb6ade7b78a25ae8d448513d14` * [csi-external-resizer](https://github.com/openshift/csi-external-resizer) git [f77279e9](https://github.com/openshift/csi-external-resizer/commit/f77279e9561a02c18676dbcafcbe6db7d0ebd077) `sha256:3257a73312d45dd3d40bd293dbfa5c36e08748315664acd9ed81b3d7f5433f20` * [csi-external-snapshotter](https://github.com/openshift/csi-external-snapshotter) git [26773735](https://github.com/openshift/csi-external-snapshotter/commit/26773735c1cbf09de9bf31cb3c640abdca04cd83) `sha256:81e2185a9bc191c9c8228210b473650c519e371751c26d95c70742751aad5734` * [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe) git [3dad0280](https://github.com/openshift/csi-livenessprobe/commit/3dad0280ea630cfcc87bcf02806c75b7a066d81e) `sha256:4df9cecf8dc7544ed02f51540fee778da7c356a7bf3da1fa07bb2def4f32d260` * [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar) git [2a77963e](https://github.com/openshift/csi-node-driver-registrar/commit/2a77963e5458da1bcde318b4609a6abefaf868d7) `sha256:a7867af403524a47fde36dd9df7db4bf311f479b96075ca87331e35e52f273fe` * [csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter) git [26773735](https://github.com/openshift/csi-external-snapshotter/commit/26773735c1cbf09de9bf31cb3c640abdca04cd83) `sha256:292cfa81294a015e58ef0a934fd4458955db0fbec6db5c964f06ef1270b50afd` * [csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter) git [26773735](https://github.com/openshift/csi-external-snapshotter/commit/26773735c1cbf09de9bf31cb3c640abdca04cd83) `sha256:0cb89f34f95f8f4556f75f40b7ecce28f4af80ca717475460883d09c2e1025f1` * [docker-registry](https://github.com/openshift/image-registry) git [8e0c068a](https://github.com/openshift/image-registry/commit/8e0c068aef607fceffe3e179c3a9701f51c51dff) `sha256:a9280162c7af6a5ccee78df57c2ffd416e5fb20fe0eaaf1bbb2f118755e6c24d` * [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt) git [033be25c](https://github.com/openshift/cluster-api-provider-libvirt/commit/033be25ca038fe773b23c076e9ac64926de72474) `sha256:301975a9875c68eb7af7263fd5a8581f9827a37a61fc3268f5948ee36615e21a` * [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack) git [471cf3ab](https://github.com/openshift/cluster-api-provider-openstack/commit/471cf3ab636c26ed7c9fba6330374a5ea1b36b43) `sha256:37ebfd8f4dc4a8958ec06d3186363b40287a8df47774d4d6705cbdcdf05037d3` * [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver) git [72545e63](https://github.com/openshift/ovirt-csi-driver/commit/72545e6381b3625bcb37e37c4c713862d04cb145) `sha256:f5896064dd203631adb53d86f6e044b80d071c6c6f67ab7e2b9e4dfa096fef6a` * [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator) git [f8808a04](https://github.com/openshift/ovirt-csi-driver-operator/commit/f8808a04dc6bfe7ce36a8238089dbae7ab29cbb6) `sha256:1214f291361669db31c257f09de3b89cab08a1a94c6c7367b1e0868ed1d3f327` ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/8d9a84fb80765e74e4df09260ed38f455b6f712a) * Updating ose-aws-machine-controllers builder & base images to be consistent with ART [#373](https://github.com/openshift/cluster-api-provider-aws/pull/373) * [Bug 1924471](https://bugzilla.redhat.com/show_bug.cgi?id=1924471): Bump dependencies to Kubernetes 1.20.6 to mitigate CVE-2021-3121 [#409](https://github.com/openshift/cluster-api-provider-aws/pull/409) * [Bug 1952614](https://bugzilla.redhat.com/show_bug.cgi?id=1952614): [OCPCLOUD-1115] Get instance tags from infrastructure object [#405](https://github.com/openshift/cluster-api-provider-aws/pull/405) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/2d069b7f8bf4a443ba1a7ac8f669ef05ed92a50e...8d9a84fb80765e74e4df09260ed38f455b6f712a) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/9c5da32ba602e5881178e56269b0506fcb54ff92) * [Bug 1962949](https://bugzilla.redhat.com/show_bug.cgi?id=1962949): Keepalived- verify that unicast peers list isn't empty on master nodes [#140](https://github.com/openshift/baremetal-runtimecfg/pull/140) * [Bug 1942488](https://bugzilla.redhat.com/show_bug.cgi?id=1942488): sort AddressesDefault by route priority, ifindex, and IPv4/IPv6 preference [#132](https://github.com/openshift/baremetal-runtimecfg/pull/132) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/7cdf5fdf6947966780a1502ef37ad9e0ac647435...9c5da32ba602e5881178e56269b0506fcb54ff92) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/e29b355e74c9efd4491d64b9bb013c6091770d20) * Fix unit test failure [#838](https://github.com/openshift/oc/pull/838) * [Bug 1942938](https://bugzilla.redhat.com/show_bug.cgi?id=1942938): [release-4.7] inspect clusteroperators as a backup to must-gather if it fails [#766](https://github.com/openshift/oc/pull/766) * [Full changelog](https://github.com/openshift/oc/compare/2513fdbb36e2ddf13bc0b17460151c03eb3a3547...e29b355e74c9efd4491d64b9bb013c6091770d20) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/d088f49b436447a29a50958ddafd44e3362fb8ab) * [Bug 1948396](https://bugzilla.redhat.com/show_bug.cgi?id=1948396): oVirt credentials secret contains unnecessary "ovirt_cafile" [#322](https://github.com/openshift/cloud-credential-operator/pull/322) * [Bug 1948702](https://bugzilla.redhat.com/show_bug.cgi?id=1948702): [release-4.7] manifests/0000_90_cloud-credential-operator_04_alertrules: Drop CloudCredentialOperatorDown [#324](https://github.com/openshift/cloud-credential-operator/pull/324) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/2aec1a53520e4fc9f8def5bd040e3eca917e3d02...d088f49b436447a29a50958ddafd44e3362fb8ab) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/a28bdc97c7f9d1ec4a0a859abeaeda41b37e381f) * [Bug 1956797](https://bugzilla.redhat.com/show_bug.cgi?id=1956797): bump kube to 0.20.6 to prevent delegated authz panics [#443](https://github.com/openshift/cluster-authentication-operator/pull/443) * [Bug 1941840](https://bugzilla.redhat.com/show_bug.cgi?id=1941840): endpoints controller: close response bodies [#440](https://github.com/openshift/cluster-authentication-operator/pull/440) * [Bug 1949941](https://bugzilla.redhat.com/show_bug.cgi?id=1949941): add a scraper and an alert to check for old-style tokens [#437](https://github.com/openshift/cluster-authentication-operator/pull/437) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/cf1e1a6c79db7cf29e7de2a90ecdc458bc13059c...a28bdc97c7f9d1ec4a0a859abeaeda41b37e381f) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/c882ab7f35adfb0f438fa28f6579092aa0deea59) * Updating atomic-openshift-cluster-autoscaler builder & base images to be consistent with ART [#187](https://github.com/openshift/kubernetes-autoscaler/pull/187) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/ac544d46b0f4aa100e40336d87ec069eca335323...c882ab7f35adfb0f438fa28f6579092aa0deea59) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/a3fecc8e7dc5d793eecf8bf77e311f5b29f5e7dd) * [Bug 1924478](https://bugzilla.redhat.com/show_bug.cgi?id=1924478): Bump dependencies to Kubernetes 1.20.6 to mitigate CVE-2021-3121 [#207](https://github.com/openshift/cluster-autoscaler-operator/pull/207) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/4b0831e0a8c151850e73ab643c2e15f5ffe22c23...a3fecc8e7dc5d793eecf8bf77e311f5b29f5e7dd) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/175f8f5283faebd81fb9d1fb2915eb2682622e1e) * [Bug 1936544](https://bugzilla.redhat.com/show_bug.cgi?id=1936544): Inject proxy environment variables everywhere [#117](https://github.com/openshift/cluster-baremetal-operator/pull/117) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/ea1ff11f6cd33532bd3f3cdd7e010e97de0fcd04...175f8f5283faebd81fb9d1fb2915eb2682622e1e) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/07e059a6b0c98e98d71f0c08dc741605e2431914) * [Bug 1954152](https://bugzilla.redhat.com/show_bug.cgi?id=1954152): vendor: bump to the latest openshift/api [#200](https://github.com/openshift/cluster-config-operator/pull/200) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/3bc7ea731d4fe149250fbc8e6805c3004d7967d8...07e059a6b0c98e98d71f0c08dc741605e2431914) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/fc036b59b83b25ac6d1050aee0a172abb54502c6) * [Bug 1961719](https://bugzilla.redhat.com/show_bug.cgi?id=1961719): manifests/05_operator_rbac: Drop the unused namespace property [#89](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/89) * [Bug 1967328](https://bugzilla.redhat.com/show_bug.cgi?id=1967328): Remove exclude annotation from manifests to include in ROKS [#91](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/91) * [Bug 1929881](https://bugzilla.redhat.com/show_bug.cgi?id=1929881): Fix installation on ROKS [#80](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/80) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/95d85d4a9c9d61e02c980df28da66c5455028177...fc036b59b83b25ac6d1050aee0a172abb54502c6) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/d6ba05f21dacb373c9d3386fc15e755718b03d4d) * [Bug 1953097](https://bugzilla.redhat.com/show_bug.cgi?id=1953097): Corefile: Enable bufsize plugin for all servers [#267](https://github.com/openshift/cluster-dns-operator/pull/267) * [Bug 1953609](https://bugzilla.redhat.com/show_bug.cgi?id=1953609): Enable errors plugin for custom upstream resolvers [#268](https://github.com/openshift/cluster-dns-operator/pull/268) * [Bug 1942228](https://bugzilla.redhat.com/show_bug.cgi?id=1942228): Fix spurious reconciliation of DNS daemonset and service [#250](https://github.com/openshift/cluster-dns-operator/pull/250) * [Bug 1943826](https://bugzilla.redhat.com/show_bug.cgi?id=1943826): Corefile: Use 30 second max TTL for caching of negative responses [#254](https://github.com/openshift/cluster-dns-operator/pull/254) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/0eb71da96f0d4b70aea85c2241e226cda5865b1d...d6ba05f21dacb373c9d3386fc15e755718b03d4d) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/08595861de20850111f5e6cc76b4ad3a943b71a8) * [Bug 1958416](https://bugzilla.redhat.com/show_bug.cgi?id=1958416): pkg/dnshelpers: fallback to spec if status is not populated for serviceNetwork [#594](https://github.com/openshift/cluster-etcd-operator/pull/594) * [Bug 1955418](https://bugzilla.redhat.com/show_bug.cgi?id=1955418): manifests: Shift FlowSchema to level 50 [#582](https://github.com/openshift/cluster-etcd-operator/pull/582) * [Bug 1954121](https://bugzilla.redhat.com/show_bug.cgi?id=1954121): [release-4.7] Improve cert controller detection and correction of invalid certs [#577](https://github.com/openshift/cluster-etcd-operator/pull/577) * OWNERS: add lilic as reviewer [#588](https://github.com/openshift/cluster-etcd-operator/pull/588) * [Bug 1954073](https://bugzilla.redhat.com/show_bug.cgi?id=1954073): bindata, pkg: Propagate operator log level to etcd itself [#578](https://github.com/openshift/cluster-etcd-operator/pull/578) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/ee35da5b3ee486f786d7687849d57599d46dfc2e...08595861de20850111f5e6cc76b4ad3a943b71a8) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/4f854ba118c7a3424beb8739b34fa97499245f9e) * [Bug 1960562](https://bugzilla.redhat.com/show_bug.cgi?id=1960562): manifests: fix selector in image-registry-operator [#689](https://github.com/openshift/cluster-image-registry-operator/pull/689) * [Bug 1957308](https://bugzilla.redhat.com/show_bug.cgi?id=1957308): Setting user tags always when Storage is Managed [#684](https://github.com/openshift/cluster-image-registry-operator/pull/684) * [Bug 1955176](https://bugzilla.redhat.com/show_bug.cgi?id=1955176): Setting user provided tags on bucket creation [#682](https://github.com/openshift/cluster-image-registry-operator/pull/682) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/538ff7fed284953731785c495cf286ea33d97f50...4f854ba118c7a3424beb8739b34fa97499245f9e) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/fca8201e866741243b42fa75392875654acd8bf0) * [Bug 1942603](https://bugzilla.redhat.com/show_bug.cgi?id=1942603): [release-4.7] Add the new NetworkPolicy-matching label to the namespace [#615](https://github.com/openshift/cluster-ingress-operator/pull/615) * [Bug 1954097](https://bugzilla.redhat.com/show_bug.cgi?id=1954097): Annotate services of type LoadBalancer with user tags (AWS only) [#606](https://github.com/openshift/cluster-ingress-operator/pull/606) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/1d9717b7624acee5c40d9a2f6bffbf7e628fd23d...fca8201e866741243b42fa75392875654acd8bf0) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/099c6afa1f8b4fe7654207f7eabd7784b42ce2e3) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#1041](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1041) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/60dc437fe7f19ea91be6900e5e4974d7dadbeb11...099c6afa1f8b4fe7654207f7eabd7784b42ce2e3) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/9043e2bba8f4707a578895f8b29d4736a61a010c) * [Bug 1924492](https://bugzilla.redhat.com/show_bug.cgi?id=1924492): Bump dependencies to Kubernetes 1.20.6 to mitigate CVE-2021-3121 [#120](https://github.com/openshift/cluster-machine-approver/pull/120) * Updating ose-cluster-machine-approver builder & base images to be consistent with ART [#103](https://github.com/openshift/cluster-machine-approver/pull/103) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/72a4740ff38e9c924d0f7cd760b6b5fd85283242...9043e2bba8f4707a578895f8b29d4736a61a010c) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/e5ebf6ed4a158a488989184bfbfbc962ccf70c2a) * [Bug 1967966](https://bugzilla.redhat.com/show_bug.cgi?id=1967966): Switch back anti-affinity to soft from hard for Prometheus [#1200](https://github.com/openshift/cluster-monitoring-operator/pull/1200) * [Bug 1956565](https://bugzilla.redhat.com/show_bug.cgi?id=1956565): manifest allowlist: add acm_managed_cluster_info in 4.7 [#1144](https://github.com/openshift/cluster-monitoring-operator/pull/1144) * [Bug 1961069](https://bugzilla.redhat.com/show_bug.cgi?id=1961069): remove dependency of e2e tests on AWS [#1162](https://github.com/openshift/cluster-monitoring-operator/pull/1162) * [Bug 1957703](https://bugzilla.redhat.com/show_bug.cgi?id=1957703): [4.7]: Add hard anti-affinity constraints to Prometheuses [#1150](https://github.com/openshift/cluster-monitoring-operator/pull/1150) * [Bug 1950290](https://bugzilla.redhat.com/show_bug.cgi?id=1950290): remove KubeClientCertificateExpiration alert rule [#1171](https://github.com/openshift/cluster-monitoring-operator/pull/1171) * [Bug 1955482](https://bugzilla.redhat.com/show_bug.cgi?id=1955482): fix kube-state-metrics regexp patterns [#1163](https://github.com/openshift/cluster-monitoring-operator/pull/1163) * [Bug 1955482](https://bugzilla.redhat.com/show_bug.cgi?id=1955482): Drop high-cardinality metrics from kube-state-metrics which aren't used [#1141](https://github.com/openshift/cluster-monitoring-operator/pull/1141) * [Bug 1955469](https://bugzilla.redhat.com/show_bug.cgi?id=1955469): remove node_mountstats_nfs_* metrics [#1154](https://github.com/openshift/cluster-monitoring-operator/pull/1154) * [Bug 1955462](https://bugzilla.redhat.com/show_bug.cgi?id=1955462): drop container_memory_failures_total metric backport [#1160](https://github.com/openshift/cluster-monitoring-operator/pull/1160) * [Bug 1952149](https://bugzilla.redhat.com/show_bug.cgi?id=1952149): oc adm top reporting unknown status for Windows node [#1130](https://github.com/openshift/cluster-monitoring-operator/pull/1130) * [Bug 1955449](https://bugzilla.redhat.com/show_bug.cgi?id=1955449): drop crio image metrics [#1134](https://github.com/openshift/cluster-monitoring-operator/pull/1134) * [Bug 1945856](https://bugzilla.redhat.com/show_bug.cgi?id=1945856): Revert "Bug 1934516: [4.7]: jsonnet/prometheus.jsonnet: Apply system-cluster-critical class to cluster Prometheus " [#1103](https://github.com/openshift/cluster-monitoring-operator/pull/1103) * [Bug 1945851](https://bugzilla.redhat.com/show_bug.cgi?id=1945851): Backport Remove the "instance" and "pod" labels for kube-state-metrics metrics [#1101](https://github.com/openshift/cluster-monitoring-operator/pull/1101) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/3b4ba34a9afd6cedf534445d52d279fdd01e36a5...e5ebf6ed4a158a488989184bfbfbc962ccf70c2a) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/a955b29f027af0f99eafeecfba7840c6caa1db89) * [Bug 1942603](https://bugzilla.redhat.com/show_bug.cgi?id=1942603): [release-4.7] Allow from router policy support for cluster network operator [#1087](https://github.com/openshift/cluster-network-operator/pull/1087) * [Bug 1937396](https://bugzilla.redhat.com/show_bug.cgi?id=1937396): kuryr/alerts: change the rule for free count [#1011](https://github.com/openshift/cluster-network-operator/pull/1011) * [Bug 1957749](https://bugzilla.redhat.com/show_bug.cgi?id=1957749): ovnkube: add missing resource requests for SBDB [#1088](https://github.com/openshift/cluster-network-operator/pull/1088) * [Bug 1954302](https://bugzilla.redhat.com/show_bug.cgi?id=1954302): Remove OVS daemonsets [#1076](https://github.com/openshift/cluster-network-operator/pull/1076) * [Bug 1956352](https://bugzilla.redhat.com/show_bug.cgi?id=1956352): [4.7] OVN kubernetes dual-stack conversion [#1082](https://github.com/openshift/cluster-network-operator/pull/1082) * [Bug 1941214](https://bugzilla.redhat.com/show_bug.cgi?id=1941214): Use 10% for ovs maxUnavailable for rolling update [#1031](https://github.com/openshift/cluster-network-operator/pull/1031) * [Bug 1936719](https://bugzilla.redhat.com/show_bug.cgi?id=1936719): OSD-6600 network-metrics missing priorityClass [#1007](https://github.com/openshift/cluster-network-operator/pull/1007) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#1050](https://github.com/openshift/cluster-network-operator/pull/1050) * [Bug 1941212](https://bugzilla.redhat.com/show_bug.cgi?id=1941212): The Multus daemonset should handle 10% maxUnavailable [#1030](https://github.com/openshift/cluster-network-operator/pull/1030) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/fff8ccbf7647d260ca6ce3c075e20014ac255860...a955b29f027af0f99eafeecfba7840c6caa1db89) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/5b774014c4d296e198a694f3694777d000a87640) * [Bug 1960542](https://bugzilla.redhat.com/show_bug.cgi?id=1960542): manifests: fix selector in node-tuning-operator ServiceMonitor [#228](https://github.com/openshift/cluster-node-tuning-operator/pull/228) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/78e1417e306a54b589c5cfce659f672a74bc0456...5b774014c4d296e198a694f3694777d000a87640) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/ecfa2d959fe2afcbd3e947658d267b085a1b2063) * [Bug 1955502](https://bugzilla.redhat.com/show_bug.cgi?id=1955502): explicitly allow apiserver pods to write to their root FS [#449](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/449) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#444](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/444) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/3e7d4b41ef5c311b1bdc58490bdf5b5655cfa22c...ecfa2d959fe2afcbd3e947658d267b085a1b2063) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/245005e3065238ecd4aef208c21456afa09ec38e) * [Bug 1944142](https://bugzilla.redhat.com/show_bug.cgi?id=1944142): Bump kubernetes to 0.20.5 [#204](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/204) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/3193372af4e97dbf504f21ab84fe0d41cd96ec73...245005e3065238ecd4aef208c21456afa09ec38e) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/061bdb108232b5952929301a7dd34ada934016d7) * [Bug 1961518](https://bugzilla.redhat.com/show_bug.cgi?id=1961518): manifests: fix selector in ServiceMonitor [#375](https://github.com/openshift/cluster-samples-operator/pull/375) * [Bug 1950808](https://bugzilla.redhat.com/show_bug.cgi?id=1950808): add DeepCopy to avoid SharedInformer cache mutation [#370](https://github.com/openshift/cluster-samples-operator/pull/370) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/c283ca0858ce3a6bc7e64f2b7d1c3e61cc351aab...061bdb108232b5952929301a7dd34ada934016d7) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/6d2c25f3cfb931deca457a0c6261651c1a64c464) * [Bug 1961719](https://bugzilla.redhat.com/show_bug.cgi?id=1961719): manifests: remove namespace from cluster-storage-operator-role binding [#170](https://github.com/openshift/cluster-storage-operator/pull/170) * [Bug 1959546](https://bugzilla.redhat.com/show_bug.cgi?id=1959546): Add alert about vsphere-problem-detector unable to connect [#169](https://github.com/openshift/cluster-storage-operator/pull/169) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/fd2b47c06d0c7efae84c6ff44680f9025ac4f283...6d2c25f3cfb931deca457a0c6261651c1a64c464) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/b7e791773b67f9acd6f521b8c1f69778e43a7d94) * Pack both keys in one verifier-public-key-ci entry [#36](https://github.com/openshift/cluster-update-keys/pull/36) * Adding the new Openshift CI Signer key [#34](https://github.com/openshift/cluster-update-keys/pull/34) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/75a97e9bf5e9101f547be7bf3bb2310836e18837...b7e791773b67f9acd6f521b8c1f69778e43a7d94) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/ca61c7f365c0c7f0bece192333a387fb80d3e6e1) * [Bug 1959238](https://bugzilla.redhat.com/show_bug.cgi?id=1959238): pkg/cvo/sync_worker: Shift ClusterOperator pre-creation into the manifest-task node [#557](https://github.com/openshift/cluster-version-operator/pull/557) * [Bug 1943754](https://bugzilla.redhat.com/show_bug.cgi?id=1943754): Ensure automountServiceAccountToken is synced on service account updates [#539](https://github.com/openshift/cluster-version-operator/pull/539) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/7df967b0c2ed0763d6d0fe7f9c8623e9f970a760...ca61c7f365c0c7f0bece192333a387fb80d3e6e1) ### [console](https://github.com/openshift/console/tree/d9f43798f92e4d078c7c51b4b4cd1d388aaea2d6) * [Bug 1966798](https://bugzilla.redhat.com/show_bug.cgi?id=1966798): [release-4.7] Remove monitoring labelling step for 4.7 tests [#9073](https://github.com/openshift/console/pull/9073) * [Bug 1951210](https://bugzilla.redhat.com/show_bug.cgi?id=1951210): Fix default resource log download file name [#8707](https://github.com/openshift/console/pull/8707) * [Bug 1944046](https://bugzilla.redhat.com/show_bug.cgi?id=1944046): Warn using an unsupported IE browser [#8494](https://github.com/openshift/console/pull/8494) * [release 4.7] Bug 1939553: Support binary file type secret entries [#8389](https://github.com/openshift/console/pull/8389) * [Bug 1960544](https://bugzilla.redhat.com/show_bug.cgi?id=1960544): Overly generic CSS rules for dd and dt elements breaks styling elsewhere in console [#8925](https://github.com/openshift/console/pull/8925) * [Bug 1960093](https://bugzilla.redhat.com/show_bug.cgi?id=1960093): Make console works against api proxy [#8914](https://github.com/openshift/console/pull/8914) * [Bug 1942027](https://bugzilla.redhat.com/show_bug.cgi?id=1942027): Fix RBAC check when creating a resource [#8448](https://github.com/openshift/console/pull/8448) * [Bug 1956336](https://bugzilla.redhat.com/show_bug.cgi?id=1956336): Fix Triggers section in eventlistener details page [#8842](https://github.com/openshift/console/pull/8842) * [Bug 1953937](https://bugzilla.redhat.com/show_bug.cgi?id=1953937): Fixing PVC creation page issue in 4.7(Reverting wrong commit) [#8784](https://github.com/openshift/console/pull/8784) * [Bug 1952578](https://bugzilla.redhat.com/show_bug.cgi?id=1952578): Don't poll ClusterVersion when user doesn't have authority [#8749](https://github.com/openshift/console/pull/8749) * [Bug 1950489](https://bugzilla.redhat.com/show_bug.cgi?id=1950489): Fix "Create binding" link from Role page, RoleBindings tab [#8685](https://github.com/openshift/console/pull/8685) * [Bug 1948958](https://bugzilla.redhat.com/show_bug.cgi?id=1948958): Fix ingress details page to show referenced secret name [#8633](https://github.com/openshift/console/pull/8633) * [Bug 1944955](https://bugzilla.redhat.com/show_bug.cgi?id=1944955): Fix close button in the new 'Storage cluster exists' warning alert modal [#8524](https://github.com/openshift/console/pull/8524) * [Bug 1956313](https://bugzilla.redhat.com/show_bug.cgi?id=1956313): Save additional parameters from build guidance container and drop it [#8841](https://github.com/openshift/console/pull/8841) * [Bug 1953728](https://bugzilla.redhat.com/show_bug.cgi?id=1953728): Fix issues related to loading dynamic plugins [#8780](https://github.com/openshift/console/pull/8780) * [Bug 1945594](https://bugzilla.redhat.com/show_bug.cgi?id=1945594): fixing-project-creation-and-updated-packageJson [#8536](https://github.com/openshift/console/pull/8536) * [Bug 1950214](https://bugzilla.redhat.com/show_bug.cgi?id=1950214): Fix start pipeline action access review [#8681](https://github.com/openshift/console/pull/8681) * [Bug 1948369](https://bugzilla.redhat.com/show_bug.cgi?id=1948369): Remove cluster label from predefined monitoring queries [#8613](https://github.com/openshift/console/pull/8613) * [Bug 1954109](https://bugzilla.redhat.com/show_bug.cgi?id=1954109): Backport telemetry dynamic extension to release-4.7 [#8783](https://github.com/openshift/console/pull/8783) * [Bug 1952209](https://bugzilla.redhat.com/show_bug.cgi?id=1952209): Consistent formatting of dates and times [#8734](https://github.com/openshift/console/pull/8734) * [Bug 1952293](https://bugzilla.redhat.com/show_bug.cgi?id=1952293): adds check for templates [#8736](https://github.com/openshift/console/pull/8736) * [Bug 1942843](https://bugzilla.redhat.com/show_bug.cgi?id=1942843): Modified description for storage class encryption - 4.7 Backport [#8462](https://github.com/openshift/console/pull/8462) * [Bug 1948938](https://bugzilla.redhat.com/show_bug.cgi?id=1948938): [release-4.7] Prow script point to deleted resource [#8619](https://github.com/openshift/console/pull/8619) * [Bug 1944855](https://bugzilla.redhat.com/show_bug.cgi?id=1944855): Update Dockerfile.product for nodejs v14.16.0 [#8488](https://github.com/openshift/console/pull/8488) * [Bug 1945153](https://bugzilla.redhat.com/show_bug.cgi?id=1945153): Remove pipeline Tech preview badge for pipelines GA operator [#8528](https://github.com/openshift/console/pull/8528) * [Bug 1943643](https://bugzilla.redhat.com/show_bug.cgi?id=1943643): fix pipeline metrics endpoint for 1.4 osp [#8489](https://github.com/openshift/console/pull/8489) * [Bug 1944349](https://bugzilla.redhat.com/show_bug.cgi?id=1944349): fix backwards incompatible trigger api changes [#8503](https://github.com/openshift/console/pull/8503) * [Full changelog](https://github.com/openshift/console/compare/5c7d09c9a8d4e4d58e25508cd7103cffadfdba39...d9f43798f92e4d078c7c51b4b4cd1d388aaea2d6) ### [console-operator](https://github.com/openshift/console-operator/tree/44a0308f894abae02f066a40ba394c8aa7331424) * [Bug 1960589](https://bugzilla.redhat.com/show_bug.cgi?id=1960589): [release-4.7] quickstarts: remove "spec.version" [#547](https://github.com/openshift/console-operator/pull/547) * [Full changelog](https://github.com/openshift/console-operator/compare/4f933d59784bd37216466ca329ea51fc797b99a1...44a0308f894abae02f066a40ba394c8aa7331424) ### [docker-builder](https://github.com/openshift/builder/tree/82eeeac0c8cbad90f951885cc11939ecd51eda76) * Updating openshift-enterprise-builder builder & base images to be consistent with ART [#188](https://github.com/openshift/builder/pull/188) * [Bug 1943726](https://bugzilla.redhat.com/show_bug.cgi?id=1943726): add bracket logging on openshift/builder calls into buildah to assist test-platform team triage [#237](https://github.com/openshift/builder/pull/237) * [Bug 1945692](https://bugzilla.redhat.com/show_bug.cgi?id=1945692): move entitlement related secrets back to mounts.conf [#240](https://github.com/openshift/builder/pull/240) * [Full changelog](https://github.com/openshift/builder/compare/14156f392c82ac10a230c313cc93b3951af1f592...82eeeac0c8cbad90f951885cc11939ecd51eda76) ### [etcd](https://github.com/openshift/etcd/tree/45b6800c4fab213e7afee1e406abe48cc14ee020) * [ETCD-178](https://issues.redhat.com/browse/ETCD-178): Bug 1944386: openshift-tools: fix on off flow and add unit tests [#74](https://github.com/openshift/etcd/pull/74) * [Full changelog](https://github.com/openshift/etcd/compare/cca97c76b915b1d14abd39814995fa1e2d087145...45b6800c4fab213e7afee1e406abe48cc14ee020) ### [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp/tree/5f6589d4ef9496e63ebc072f4d863151bbeb4407) * [Bug 1924508](https://bugzilla.redhat.com/show_bug.cgi?id=1924508): Bump dependencies to Kubernetes 1.20.6 to mitigate CVE-2021-3121 [#164](https://github.com/openshift/cluster-api-provider-gcp/pull/164) * [Full changelog](https://github.com/openshift/cluster-api-provider-gcp/compare/7215497c95a43c5f633bc511e3e85dd1d956a931...5f6589d4ef9496e63ebc072f4d863151bbeb4407) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/9ffe95b9499258b8e2b5e1b8df9889abe3c9f73f) * [Bug 1940005](https://bugzilla.redhat.com/show_bug.cgi?id=1940005): Add CSIDriver object [#18](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/18) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/3583e00c7ff4f31957c0e9223d8c1dea3f4c23c3...9ffe95b9499258b8e2b5e1b8df9889abe3c9f73f) ### [haproxy-router](https://github.com/openshift/router/tree/5a0e6561b0480df9f32a8ef87a54a1dc4cf91b93) * [Bug 1965402](https://bugzilla.redhat.com/show_bug.cgi?id=1965402): Revert 'Bug 1896977: Enhance host name validation in router' [#293](https://github.com/openshift/router/pull/293) * [Bug 1963243](https://bugzilla.redhat.com/show_bug.cgi?id=1963243): Add a condition to check if the Endpoints ID is duplicated [#288](https://github.com/openshift/router/pull/288) * [Full changelog](https://github.com/openshift/router/compare/130b5993726c46e83ca871a97a930d73f2c433a8...5a0e6561b0480df9f32a8ef87a54a1dc4cf91b93) ### [hello-openshift, tests](https://github.com/openshift/origin/tree/dd7015e846380d5050494b9bb744f43cf04a4268) * [Bug 1966358](https://bugzilla.redhat.com/show_bug.cgi?id=1966358): Dockerfile.rhel: fix a bash typo [#26194](https://github.com/openshift/origin/pull/26194) * [Bug 1961367](https://bugzilla.redhat.com/show_bug.cgi?id=1961367): Add Cinder client to the test image [#26171](https://github.com/openshift/origin/pull/26171) * [Bug 1955600](https://bugzilla.redhat.com/show_bug.cgi?id=1955600): test/extended/router: Fix-up Unidling test [#26120](https://github.com/openshift/origin/pull/26120) * [Bug 1963115](https://bugzilla.redhat.com/show_bug.cgi?id=1963115): narrow verify /run test to /run/secrets [#26180](https://github.com/openshift/origin/pull/26180) * [Bug 1963115](https://bugzilla.redhat.com/show_bug.cgi?id=1963115): move verify run test from tools to cli image to avoid additional /run content [#26176](https://github.com/openshift/origin/pull/26176) * [Bug 1958797](https://bugzilla.redhat.com/show_bug.cgi?id=1958797): test/extended/router/idle: Only run on OVNKubernetes or OpenShiftSDN [#26145](https://github.com/openshift/origin/pull/26145) * [Bug 1947705](https://bugzilla.redhat.com/show_bug.cgi?id=1947705): Add test of documented backup/restore procedure [#26110](https://github.com/openshift/origin/pull/26110) * [Bug 1955669](https://bugzilla.redhat.com/show_bug.cgi?id=1955669): flake testKubeletToAPIServerGracefulTermination [#26121](https://github.com/openshift/origin/pull/26121) * [Bug 1942055](https://bugzilla.redhat.com/show_bug.cgi?id=1942055): upgrade/upgrade.go: Enhance upgrade ack time out error [#26012](https://github.com/openshift/origin/pull/26012) * [Full changelog](https://github.com/openshift/origin/compare/8eaf43f001f50c584d62f267a0030c23daa25ac8...dd7015e846380d5050494b9bb744f43cf04a4268) ### [hyperkube](https://github.com/openshift/kubernetes/tree/2817867655bb7b68215b4e77873a8facf82bee06) * [Bug 1966810](https://bugzilla.redhat.com/show_bug.cgi?id=1966810): UPSTREAM: 102224: Fix expired unit test certs [#780](https://github.com/openshift/kubernetes/pull/780) * [Bug 1963263](https://bugzilla.redhat.com/show_bug.cgi?id=1963263): UPSTREAM: 102000: Ref counting is only applicable to Remote endpoints [#763](https://github.com/openshift/kubernetes/pull/763) * [Bug 1955883](https://bugzilla.redhat.com/show_bug.cgi?id=1955883): UPSTREAM: 99095: Prevent Kubelet stuck in DiskPressure when imagefs minreclaim is set [#725](https://github.com/openshift/kubernetes/pull/725) * [Bug 1951726](https://bugzilla.redhat.com/show_bug.cgi?id=1951726): Speed up PV provisioning for vsphere driver (ocp-4.7) [#690](https://github.com/openshift/kubernetes/pull/690) * [Bug 1942141](https://bugzilla.redhat.com/show_bug.cgi?id=1942141): fixes cinder PV labelling [#635](https://github.com/openshift/kubernetes/pull/635) * [Bug 1951815](https://bugzilla.redhat.com/show_bug.cgi?id=1951815): UPSTREAM: 99393: kubelet: reduce configmap and secret watch [#692](https://github.com/openshift/kubernetes/pull/692) * [Bug 1955231](https://bugzilla.redhat.com/show_bug.cgi?id=1955231): UPSTREAM: 101345: kubelet: improve the node informer sync check [#721](https://github.com/openshift/kubernetes/pull/721) * [Bug 1952917](https://bugzilla.redhat.com/show_bug.cgi?id=1952917): UPSTREAM: 100228: For LoadBalancer Service type don't create a HNS policy for empty or invalid external loadbalancer IP [#697](https://github.com/openshift/kubernetes/pull/697) * [Bug 1928862](https://bugzilla.redhat.com/show_bug.cgi?id=1928862): Enable snapshot tests [#569](https://github.com/openshift/kubernetes/pull/569) * [Bug 1945856](https://bugzilla.redhat.com/show_bug.cgi?id=1945856): 99729:Only system-node-critical pods should be OOM Killed last [#642](https://github.com/openshift/kubernetes/pull/642) * [Bug 1927717](https://bugzilla.redhat.com/show_bug.cgi?id=1927717): UPSTREAM: 98939: fixes race in TestSyncPodsDeletesWhenSourcesAreReady [#567](https://github.com/openshift/kubernetes/pull/567) * [Full changelog](https://github.com/openshift/kubernetes/compare/bafe72fb05eddc8246040b9945ec242b9f805935...2817867655bb7b68215b4e77873a8facf82bee06) ### [insights-operator](https://github.com/openshift/insights-operator/tree/e7955cf0b199caa53726431df5d8800be5af049a) * [release 4.7] Bug 1960645: Adds virt_platform metric to the collected metrics (#428) [#428](https://github.com/openshift/insights-operator/pull/428) * [release 4.7] Bug 1953579: GatherClusterOperators and GatherClusterOperatorsPodAndEvents (#410) [#410](https://github.com/openshift/insights-operator/pull/410) * Add vsphere_node_hw_version_total metric (#416) [#416](https://github.com/openshift/insights-operator/pull/416) * [Bug 1950926](https://bugzilla.redhat.com/show_bug.cgi?id=1950926): Extend OLM data with CSV display name (#400) (#402) [#400](https://github.com/openshift/insights-operator/pull/400) * [Full changelog](https://github.com/openshift/insights-operator/compare/23a298922d25de761c8f765625d6ebb63a25774e...e7955cf0b199caa53726431df5d8800be5af049a) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/d3eacc24156ef726caae230b9b4620059a76f781) * [release 4.7] Bug 1947810: Update Jenkins to 2.277.3 and disable setup wizard [#1259](https://github.com/openshift/jenkins/pull/1259) * [Bug 1952562](https://bugzilla.redhat.com/show_bug.cgi?id=1952562): bump config-file-provider to 3.7.1 [#1265](https://github.com/openshift/jenkins/pull/1265) * [Full changelog](https://github.com/openshift/jenkins/compare/503e5770e622bf78a746628a8b276a2616365135...d3eacc24156ef726caae230b9b4620059a76f781) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/798a46be0fa09aeec90b25a4c4cf11bf0b2c5b6f) * [Bug 1962637](https://bugzilla.redhat.com/show_bug.cgi?id=1962637): ValidateMTU: check only the interface that holds the node ip [#304](https://github.com/openshift/sdn/pull/304) * [Bug 1923231](https://bugzilla.redhat.com/show_bug.cgi?id=1923231): rebase to sdn-4.7-kubernetes-1.20.0-rc.0 [#286](https://github.com/openshift/sdn/pull/286) * [Bug 1941993](https://bugzilla.redhat.com/show_bug.cgi?id=1941993): Fix incorrect unmonitoring of egress nodes [#279](https://github.com/openshift/sdn/pull/279) * [Full changelog](https://github.com/openshift/sdn/compare/9ddcd3669847fba83222504c91506f300bf081e3...798a46be0fa09aeec90b25a4c4cf11bf0b2c5b6f) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/07c197feeb6459aefdecbbc66f304e06b97411ed) * [Bug 1949541](https://bugzilla.redhat.com/show_bug.cgi?id=1949541): Fixing bug, Kuryr-Controller crashes when it's missing the status [#501](https://github.com/openshift/kuryr-kubernetes/pull/501) * [Bug 1959766](https://bugzilla.redhat.com/show_bug.cgi?id=1959766): Fix NPs for OVN LBs with hairpin traffic [#516](https://github.com/openshift/kuryr-kubernetes/pull/516) * [Bug 1929066](https://bugzilla.redhat.com/show_bug.cgi?id=1929066): Skip pool pre population if no Status is present on CRD [#505](https://github.com/openshift/kuryr-kubernetes/pull/505) * [Bug 1941941](https://bugzilla.redhat.com/show_bug.cgi?id=1941941): Include service subnet to be open for namespaceSelector set to all. [#504](https://github.com/openshift/kuryr-kubernetes/pull/504) * [Bug 1929066](https://bugzilla.redhat.com/show_bug.cgi?id=1929066): Fix port pools [#455](https://github.com/openshift/kuryr-kubernetes/pull/455) * [Bug 1949551](https://bugzilla.redhat.com/show_bug.cgi?id=1949551): kuryr-controller restarting after 3 days cluster running - pools without members [#502](https://github.com/openshift/kuryr-kubernetes/pull/502) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/d49acc455c98dead4995e34add0bf9f3e6e7324b...07c197feeb6459aefdecbbc66f304e06b97411ed) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/e179bb5ce397b543cd3f716f75fa4cd40046e0ad) * [Bug 1924517](https://bugzilla.redhat.com/show_bug.cgi?id=1924517): Bump dependencies to Kubernetes 1.20.6 to mitigate CVE-2021-3121 [#867](https://github.com/openshift/machine-api-operator/pull/867) * [Bug 1955689](https://bugzilla.redhat.com/show_bug.cgi?id=1955689): Webhook filter should check for both mutating and validating webhooks [#861](https://github.com/openshift/machine-api-operator/pull/861) * [Bug 1947372](https://bugzilla.redhat.com/show_bug.cgi?id=1947372): vSphere, detach virtual disks before virtual machine destroy if node not available [#841](https://github.com/openshift/machine-api-operator/pull/841) * [Bug 1954610](https://bugzilla.redhat.com/show_bug.cgi?id=1954610): Update GCP default image to match 4.7 release [#856](https://github.com/openshift/machine-api-operator/pull/856) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/a00ea96d676b2b87a7de6f8ad2cac09ed2f14c67...e179bb5ce397b543cd3f716f75fa4cd40046e0ad) ### [machine-os-content](https://github.com/openshift/okd-machine-os/tree/87307e58ba24f81bfab0b576b39b0ed3e594a4bc) * Update NetworkManager-ovs to 1.30 [#131](https://github.com/openshift/okd-machine-os/pull/131) * Bump NM to NetworkManager-ovs-1:1.26.8 [#124](https://github.com/openshift/okd-machine-os/pull/124) * Pin NetworkManager-ovs [#120](https://github.com/openshift/okd-machine-os/pull/120) * Strip xattrs [#112](https://github.com/openshift/okd-machine-os/pull/112) * [Full changelog](https://github.com/openshift/okd-machine-os/compare/b632cfe7be5dc185b8259395daacc82922178fb8...87307e58ba24f81bfab0b576b39b0ed3e594a4bc) ### [multus-cni](https://github.com/openshift/multus-cni/tree/5530094db7607fc9292e3b269fcf5a85b0dad3df) * [Bug 1927896](https://bugzilla.redhat.com/show_bug.cgi?id=1927896): make a copy of global RuntimeConfig on merge [#91](https://github.com/openshift/multus-cni/pull/91) * [Full changelog](https://github.com/openshift/multus-cni/compare/1728ddf0d06ef43386aa64aeab41a9e0380c6813...5530094db7607fc9292e3b269fcf5a85b0dad3df) ### [oauth-server](https://github.com/openshift/oauth-server/tree/61db550b94b09356eebabcffd39aea8d90eb6089) * [Bug 1965932](https://bugzilla.redhat.com/show_bug.cgi?id=1965932): bump kube to 0.20.4 [#79](https://github.com/openshift/oauth-server/pull/79) * [Full changelog](https://github.com/openshift/oauth-server/compare/3215761a70426326f0be2ca675b0e9b9fdae341e...61db550b94b09356eebabcffd39aea8d90eb6089) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/eb2414ce2c8bf60d871ed9047c02028bc84420e6) * [Bug 1961557](https://bugzilla.redhat.com/show_bug.cgi?id=1961557): sets shutdown-delay-duration from OpenShiftAPIServerConfig [#199](https://github.com/openshift/openshift-apiserver/pull/199) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/a0f41548179e57e9b184a3e713ac6227cc4385ff...eb2414ce2c8bf60d871ed9047c02028bc84420e6) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/39b6393236e5abab331de1ab3384d0d165510457) * [Bug 1955210](https://bugzilla.redhat.com/show_bug.cgi?id=1955210): fixed LANG for the builder container [#180](https://github.com/openshift/openshift-controller-manager/pull/180) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/e0755cd0dca5e8a0cdae0a52d7127f75f20b1e9a...39b6393236e5abab331de1ab3384d0d165510457) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/aa9d705167842d2ffa70005c68211957eb5f6848) * [Bug 1962314](https://bugzilla.redhat.com/show_bug.cgi?id=1962314): Explicitly set `readOnlyRootFilesystem: false` on created registry pods. [#2171](https://github.com/operator-framework/operator-lifecycle-manager/pull/2171) * [Bug 1963141](https://bugzilla.redhat.com/show_bug.cgi?id=1963141): Make ClusterOperator Available condition sticky. [#2173](https://github.com/operator-framework/operator-lifecycle-manager/pull/2173) * [Bug 1962312](https://bugzilla.redhat.com/show_bug.cgi?id=1962312): Simplify deployment status check to reduce flapping. [#2170](https://github.com/operator-framework/operator-lifecycle-manager/pull/2170) * [Bug 1962302](https://bugzilla.redhat.com/show_bug.cgi?id=1962302): Set reason/message for Available condition in packageserver co [#2168](https://github.com/operator-framework/operator-lifecycle-manager/pull/2168) * [Bug 1959009](https://bugzilla.redhat.com/show_bug.cgi?id=1959009): Use DeploymentAvailable instead of custom test for CSV status. [#2151](https://github.com/operator-framework/operator-lifecycle-manager/pull/2151) * [Bug 1924467](https://bugzilla.redhat.com/show_bug.cgi?id=1924467): Bumps k8s.io dependencies to v0.20.6 [#2121](https://github.com/operator-framework/operator-lifecycle-manager/pull/2121) * [Bug 1949139](https://bugzilla.redhat.com/show_bug.cgi?id=1949139): Preserve existing ServiceAccount owner references during installs. [#2088](https://github.com/operator-framework/operator-lifecycle-manager/pull/2088) * [Bug 1951657](https://bugzilla.redhat.com/show_bug.cgi?id=1951657): fix(catalog): Reduce namespace resync in resolution failure [#2107](https://github.com/operator-framework/operator-lifecycle-manager/pull/2107) * [Bug 1952851](https://bugzilla.redhat.com/show_bug.cgi?id=1952851): Add resource requests for bundle unpacker [#2109](https://github.com/operator-framework/operator-lifecycle-manager/pull/2109) * [Bug 1951232](https://bugzilla.redhat.com/show_bug.cgi?id=1951232): Fix resolution error if inner entry doesn't provide a required API. [#2106](https://github.com/operator-framework/operator-lifecycle-manager/pull/2106) * [Bug 1947909](https://bugzilla.redhat.com/show_bug.cgi?id=1947909): Do not adopt copied CSVs [#2089](https://github.com/operator-framework/operator-lifecycle-manager/pull/2089) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/44f92b8a8e6d8f716eef00b192f4d80441ea160d...aa9d705167842d2ffa70005c68211957eb5f6848) ### [operator-registry](https://github.com/operator-framework/operator-registry/tree/5ccabf956d25a2788cc64ad5591c404d7b950207) * [Bug 1924468](https://bugzilla.redhat.com/show_bug.cgi?id=1924468): Bump the k8s dependencies to v1.20.6 [#638](https://github.com/operator-framework/operator-registry/pull/638) * [Bug 1937097](https://bugzilla.redhat.com/show_bug.cgi?id=1937097): Add retries to opm index add [#643](https://github.com/operator-framework/operator-registry/pull/643) * [Full changelog](https://github.com/operator-framework/operator-registry/compare/a97d366a92d302ff2056fa2d19aa3e48b0fbc99c...5ccabf956d25a2788cc64ad5591c404d7b950207) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/01b9bf8368a3da974bf1c9114c618a548d346acd) * [Bug 1939358](https://bugzilla.redhat.com/show_bug.cgi?id=1939358): extract node machine ipaddress from the engine instead using DNS . [#98](https://github.com/openshift/cluster-api-provider-ovirt/pull/98) * [Bug 1939360](https://bugzilla.redhat.com/show_bug.cgi?id=1939360): providerIDController ignore nodes that have no machine [#99](https://github.com/openshift/cluster-api-provider-ovirt/pull/99) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/e6fa5e240bca27e126b9de179e8c56220f1a9c44...01b9bf8368a3da974bf1c9114c618a548d346acd) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/e71b4ad737e589c10eb9ab4b396e6c1bae052a35) * [Bug 1946682](https://bugzilla.redhat.com/show_bug.cgi?id=1946682): egress firewall as ACLs [#487](https://github.com/openshift/ovn-kubernetes/pull/487) * [Bug 1942603](https://bugzilla.redhat.com/show_bug.cgi?id=1942603): [release-4.7] Allow from router network policy support [#526](https://github.com/openshift/ovn-kubernetes/pull/526) * [Bug 1956980](https://bugzilla.redhat.com/show_bug.cgi?id=1956980): [release-4.7] fix ForEachAddressSet() as it is not calling the callback functions [#523](https://github.com/openshift/ovn-kubernetes/pull/523) * [Bug 1959737](https://bugzilla.redhat.com/show_bug.cgi?id=1959737): Fix: egress IP route health check detection state on restart [#538](https://github.com/openshift/ovn-kubernetes/pull/538) * [Bug 1956270](https://bugzilla.redhat.com/show_bug.cgi?id=1956270): service controller should not use the target-port [#519](https://github.com/openshift/ovn-kubernetes/pull/519) * [Bug 1947097](https://bugzilla.redhat.com/show_bug.cgi?id=1947097): [4.7z] Ensure no SNAT on GR for DisableSNATMultipleGws [#533](https://github.com/openshift/ovn-kubernetes/pull/533) * [Bug 1939488](https://bugzilla.redhat.com/show_bug.cgi?id=1939488): Backport Handle Multus network-status annotations on pod update [#467](https://github.com/openshift/ovn-kubernetes/pull/467) * [Bug 1956318](https://bugzilla.redhat.com/show_bug.cgi?id=1956318): Revert "removing the hybrid overlay externalGW code" [#521](https://github.com/openshift/ovn-kubernetes/pull/521) * [Bug 1951064](https://bugzilla.redhat.com/show_bug.cgi?id=1951064): master: cancel leader election on exit [#505](https://github.com/openshift/ovn-kubernetes/pull/505) * [Bug 1950131](https://bugzilla.redhat.com/show_bug.cgi?id=1950131): fix deadlock in EgressFirewall DNS code [#513](https://github.com/openshift/ovn-kubernetes/pull/513) * [Bug 1951552](https://bugzilla.redhat.com/show_bug.cgi?id=1951552): master: Delay deleting Namespace's address set for 20 seconds [#507](https://github.com/openshift/ovn-kubernetes/pull/507) * [Bug 1950432](https://bugzilla.redhat.com/show_bug.cgi?id=1950432): [4.7] pods: bind pod logical switch ports to the node's chassis with requested-chassis [#503](https://github.com/openshift/ovn-kubernetes/pull/503) * [Bug 1924826](https://bugzilla.redhat.com/show_bug.cgi?id=1924826): Backport Update gogo/protobuf to v1.3.2. [#464](https://github.com/openshift/ovn-kubernetes/pull/464) * [Bug 1943316](https://bugzilla.redhat.com/show_bug.cgi?id=1943316): [4.7] master: enable logical datapath groups for OVN >= 20.12 [#478](https://github.com/openshift/ovn-kubernetes/pull/478) * [Bug 1946696](https://bugzilla.redhat.com/show_bug.cgi?id=1946696): iptables: add filter on node local traffic [#489](https://github.com/openshift/ovn-kubernetes/pull/489) * [Bug 1947835](https://bugzilla.redhat.com/show_bug.cgi?id=1947835): Fix service update for policy type assertion [#493](https://github.com/openshift/ovn-kubernetes/pull/493) * [Bug 1942702](https://bugzilla.redhat.com/show_bug.cgi?id=1942702): backport lr-nat-del/add fixes [#484](https://github.com/openshift/ovn-kubernetes/pull/484) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/1481e2d2b1716fc3abeac8c59bc8ff8ed3457d08...e71b4ad737e589c10eb9ab4b396e6c1bae052a35) ### [thanos](https://github.com/openshift/thanos/tree/823d7cd2ee5de3cdab771cfd4b2557852dff7514) * [Bug 1944575](https://bugzilla.redhat.com/show_bug.cgi?id=1944575): pkg/rules: fix deduplication of equal alerts with different labels [#52](https://github.com/openshift/thanos/pull/52) * [Bug 1957646](https://bugzilla.redhat.com/show_bug.cgi?id=1957646): cmd/thanos: use miekgdns resolver as default [#56](https://github.com/openshift/thanos/pull/56) * [Full changelog](https://github.com/openshift/thanos/compare/0526ff025d325790d57df34cf2d66810a25da578...823d7cd2ee5de3cdab771cfd4b2557852dff7514) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/8f7c1246e6bcb99d8cdf667851b8d61f637f2801) * [Bug 1959546](https://bugzilla.redhat.com/show_bug.cgi?id=1959546): Update to current master [#40](https://github.com/openshift/vsphere-problem-detector/pull/40) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/077d6bef3bc1e003188e0bea4e086c874f97f944...8f7c1246e6bcb99d8cdf667851b8d61f637f2801)