Back to index
4.15.0-0.okd-2024-03-10-010116 Download installer and client with:
oc adm release extract --tools quay.io/openshift/okd:4.15.0-0.okd-2024-03-10-010116 Qualifiers (status api ): None
No tests for this release
Upgrades from:
Created: 2024-03-10 06:53:44 +0000 UTC
Image Digest: sha256:46b462be1e4c15ce5ab5fba97e713e8824bbb9f614ac5abe1be41fda916920cc
Release 4.15.0-0.okd-2024-03-10-010116 was created from registry.ci.openshift.org/origin/release:4.15.0-0.okd-2024-03-10-010116
Components
Kubernetes upgraded from 1.27.10 to 1.28.7
Fedora CoreOS upgraded from 38.20231027.3 to 39.20240210.3
New images
Removed images
kuryr-cni
kuryr-controller
Rebuilt images without code change
cli-manager git ff674b67 sha256:930269aa1411a4fcc63c1bc7e7455d76556773af36a95cd4b7f50e5b8806fef1
MGMT-16517 : Add Env Var Deployment Type & Set ABI (#6016) #6016
MGMT-16980 : Change the default value of ENABLE_SKIP_MCO_REBOOT to false (#6005) #6005
MGMT-16494 : Move ip hint file creation to ignition in order to change it in IBI process (#5926) #5926
OCPBUGS-24428 : Redact passwords logged in installConfigOverrides Ensure that any passwords included in installConfigOverrides are redacted in logs. (#5905) #5905
MGMT-16414 : When trying to create cluster with s390x architecture, an error occurs that stops cluster creation (#5876) #5876
NO-ISSUE: Bump OCP versions: 4.12 (#5783) #5783
MGMT-16289 : Add configuration variable and cluster attribute defining if soft timeouts feature is enabled (#5740) #5740
NO-ISSUE: Bump OCP versions: 4.14, 4.11, 4.13, 4.15 (#5779) #5779
fix: allow LVMS for MultiNode >=4.15.0 (#5757) #5757
Update RHTAP references (#5776) #5776
NO-ISSUE: add build tags option to enable FIPS build (#5768) #5768
Update RHTAP references (#5774) #5774
NO-ISSUE: update OS_IMAGES filter to 4.11 (#5773) #5773
MGMT-16303 : Disable skip MCO reboot for architecture s390x (#5765) #5765
Propagate OS_IMAGES var in deploy operator (#5762) #5762
Update RHTAP references (#5767) #5767
MGMT-15425 : Change chosen mce release to match openshift version (#5716) #5716
MGMT-14605 : Gather more data for hypershift tests (#5344) #5344
MGMT-16320 : Agent should connect to iBFT iSCSI targets (#5753) #5753
MGMT-16312 fix update host ignition for unbound host (#5751) #5751
NO-ISSUE: Inventory code cleanup - unused params (#5755) #5755
HOSTEDCP-999 : Fix incorrect ICSP for CAPI CI (#5747) #5747
MGMT-15690 : Add support for external platform (#5738) #5738
MGMT-16235 : Ensure that agent controller will watch for changes to ignition endpoint token. (#5736) #5736
MGMT-13461 : Fix Tang validation when day2 host join an imported cluster (#5700) #5700
MGMT-15972 : Remove Swagger definition for api_vip and ingress_vip (#5734) #5734
HOSTEDCP-999 : Fix incorrect check for CAPI image in ci (#5741) #5741
Update RHTAP references (#5733) #5733
MGMT-16273 : Allow installing on iSCSI disks on OCI (#5728) #5728
MGMT-16291 : revert default faulty OCP images (#5737) #5737
MGMT-14810 : Remove API and Ingress VIP (#5501) #5501
HOSTEDCP-999 : Missed service-cidr for capi ipv6 CI test (#5721) #5721
NO-ISSUE: Bump github.com/google/uuid from 1.3.1 to 1.4.0 (#5726) #5726
NO-ISSUE: Bump OCP versions: 4.14, 4.13, 4.12 (#5722) #5722
Update baremetal operator (#5698) #5698
MGMT-16001 : Sanitize reclaim agent daemonset name (#5699) #5699
HOSTEDCP-999 : Minor fixes for disconnected CAPI CI (#5713) #5713
AGENT-740 : Include baremetal host BMC fields in install-config override (#5675) #5675
NO-ISSUE: adding me to owners (#5709) #5709
NO-ISSUE: Cluster code cleanups (#5715) #5715
NO-ISSUE: Bump OCP versions: 4.12 (#5714) #5714
MGMT-16236 : remove elastic APM (#5702) #5702
NO-ISSUE: Upgrade debug image to latest delve (#5711) #5711
Update RHTAP references (#5688) #5688
HOSTEDCP-999 : Setup CI for disconnected ipv6 CAPI (#5536) #5536
NO-ISSUE: Inventory code cleanups (#5695) #5695
NO-ISSUE: dependabot optimize (#5697) #5697
NO-ISSUE: Bump OCP versions: 4.14, 4.13, 4.15 (#5701) #5701
NO-ISSUE: Remove unused functions (#5696) #5696
NO-ISSUE: BMH and Agent controllers code cleanup (#5693) #5693
NO-ISSUE: Remove unused functions from ctrl event wrapper (#5694) #5694
NO-ISSUE: Bump github.com/Azure/go-autorest/autorest/adal (#5604) #5604
NO-ISSUE: ClusterDeployments controller code cleanup (#5689) #5689
NO-ISSUE: InfraEnv controller code cleanup (#5690) #5690
MGMT-15271 : Append kargs to installer for s390x (#5665) #5665
Add missing scheme to ServiceMonitor (#5672) #5672
Updating ose-agent-installer-api-server-container image to be consistent with ART (#5495) #5495
MGMT-15971 : Create ManagedCluster CR so that the hub will show up as “Ready” in MCE (#5575) #5575
Update RHTAP references (#5682) #5682
NO-JIRA: Enable skip mco reboot functionality only if openshift version is 4.15 and higher (#5680) #5680
NO-ISSUE: Bump OCP versions: 4.11, 4.12, 4.13 (#5681) #5681
MGMT-16151 : allow CORS OPTIONS for s3 presigned url (#5674) #5674
Update RHTAP references (#5654) #5654
MGMT-16151 : allow CORS HEAD for s3 presigned url, as UI uses preflight checks (#5671) #5671
MGMT-16061 : changing dnsmasq configuration for sno in order to meet single ip installation flow for ibu (#5658) #5658
MGMT-16077 : Add 4.15 release and OS images (#5673) #5673
AGENT-723 : Use json.Marshal to correctly process vSphere credentials (#5592) #5592
NO-ISSUE: Fix for error in wait_for_cmd_amount function (#5670) #5670
MGMT-15902 : Trigger reboots for node event when day2 node moves to done (#5648) #5648
NO-JIRA: Allow the command in wait_for_cmd_amount to receive arguments (#5668) #5668
MGMT-16164 : Install 4.14 redhat-operators catalog for LSO (#5669) #5669
MGMT-15878 : Ensure that hosts emit event showing why preparation failed. (#5521) #5521
MGMT-15878 : Add a condition to show the last preparation failure (#5524) #5524
MGMT-16151 : change default envoy sidecar timeout value (#5667) #5667
MGMT-16114 : Update 4.14 release image to use GA version (#5651) #5651
MGMT-16052 : Fix cluster HighAvailabilityMode nil pointer in update flow (#5659) #5659
Bump OCP versions: 4.14, 4.12 (#5661) #5661
MGMT-15405 : Add a URL to infraenv to show download link from static network config (#5638) #5638
OCPBUGS-19823 : Ignore hostPrefix validation for plugins other than OVN/SDN (#5565) #5565
MGMT-15271 : Add the boot command line to the host inventory (#5649) #5649
MGMT-15680 : Adds InfraEnv ctrl watch for pull secret changes (#5589) #5589
NO-ISSUE: Bump github.com/jackc/pgconn from 1.12.0 to 1.14.1 (#5653) #5653
MGMT-16061 : changing dnsmasq configuration for sno in order to meet single ip installation flow for ibu (#5613) #5613
NO-ISSUE: Bump github.com/jackc/pgtype from 1.11.0 to 1.14.0 (#5647) #5647
Update RHTAP references (#5637) #5637
Bump OCP versions: 4.13 (#5645) #5645
NO-ISSUE: Bump go.opentelemetry.io/otel/exporters/otlp (#5644) #5644
MGMT-15683 : Ensure that manifest filename has valid name part (#5635) #5635
NO-ISSUE: Bump go.opentelemetry.io/contrib from 0.20.0 to 1.20.0 (#5641) #5641
NO-ISSUE: Bump go.uber.org/atomic from 1.7.0 to 1.11.0 (#5619) #5619
Update RHTAP references (#5624) #5624
MGMT-15684 : Return appropriate HTTP error code for invalid manifest file path (#5634) #5634
Bump OCP versions: 4.14 (#5633) #5633
NO-ISSUE: Bump github.com/jackc/pgproto3/v2 from 2.3.0 to 2.3.2 (#5632) #5632
MGMT-16037 : fix messaging errors on big clusters (#5628) #5628
MGMT-16039 : upgrade to golang 1.20 (#5616) #5616
NO-ISSUE: Bump github.com/Azure/go-autorest/autorest (#5622) #5622
Revert “NO-ISSUE: use kubectl 1.28.2 (#5572)” (#5618) #5572
Bump OCP versions: 4.12 (#5615) #5615
MGMT-16045 : mitigate CVE-2023-44487 (#5614) #5614
MGMT-15902 : Add event that shows the number of reboots for a node before completing installation (#5591) #5591
Add skopeo to OCP build (#5558) #5558
NO-ISSUE: Bump cloud.google.com/go/compute from 1.6.1 to 1.23.1 (#5601) #5601
NO-ISSUE: Bump github.com/pierrec/lz4 (#5600) #5600
NO-ISSUE: vendor current master (#5594) #5594
NO-ISSUE: fixing dependabot issues (#5595) #5595
Bump OCP versions: 4.13, 4.14 (#5593) #5593
Update RHTAP references (#5590) #5590
MGMT-16001 : Sanitize reclaim daemonset name (#5579) #5579
Bump OCP versions: 4.11, 4.12, 4.13 (#5586) #5586
MGMT-13198 : Add API endpoint to create assisted installer event (#5578) #5578
MGMT-15980 : added missing Create op to infraenvs Webhook (#5569) #5569
Update RHTAP references (#5573) #5573
NO-ISSUE: use kubectl 1.28.2 (#5572) #5572
Update RHTAP references (#5570) #5570
MGMT-15949 : fix missing ImageSetRef validation (#5552) #5552
Revert “NO-ISSUE: Set default ENABLE_SKIP_MCO_REBOOT: false (#5560)” (#5566) #5560
MGMT-15572 Hold installation when reconcile-pause annotation is set on cluster deployment (#5549) #5549
NO-ISSUE: Fix console output in ZTP jobs (#5562) #5562
NO-ISSUE: add console output for ztp (#5550) #5550
Bump OCP versions: 4.14 (#5559) #5559
MGMT-15796 : set CloudControllerManager to External for OCI (#5548) #5548
NO-ISSUE: Set default ENABLE_SKIP_MCO_REBOOT: false (#5560) #5560
Bump OCP versions: 4.12, 4.14, 4.13 (#5546) #5546
Update RHTAP references (#5539) #5539
MGMT-15950 : Fix DNS wilcard domain validation (#5544) #5544
WIP: Add assisted images service short URL routes (#5543) #5543
Update RHTAP references (#5538) #5538
MGMT-15738 : Support for E2E test, make sure we have an infraenv for adding a node to the local cluster. (#5477) #5477
Bump OCP versions: 4.13, 4.11 (#5537) #5537
MGMT-14409 : generate short image URL (#5523) #5523
MGMT-15762 : fix odf validation failing where is one small disk (#5529) #5529
Update RHTAP references (#5520) #5520
Bump OCP versions: 4.12, 4.14 (#5528) #5528
NO-ISSUE: fail upload if response is not 2XX (#5522) #5522
Bump OCP versions: 4.14 (#5525) #5525
NO-ISSUE: fix docker-ce-cli package missing (#5499) #5499
NO-ISSUE: Add versions file to onprem event upload (#5514) #5514
MGMT-15699 : Service changes for avoiding MCO reboot (#5453) #5453
Update RHTAP references (#5517) #5517
MGMT-15598 : Add a parameter to manifest list to disable filter (#5498) #5498
Bump OCP versions: 4.12 (#5515) #5515
Update RHTAP references (#5513) #5513
Bump OCP versions: 4.14 (#5512) #5512
NO-ISSUE: Fix email domain for event uploader (#5511) #5511
Update RHTAP references (#5510) #5510
Update RHTAP references (#5508) #5508
Bump OCP versions: 4.12, 4.13 (#5506) #5506
MGMT-15808 : change base image to stream9 (#5497) #5497
MGMT-15559 : Change detached annotation condition in non-converged flow (#5445) #5445
MGMT-15732 : Fix unbound variable (#5493) #5493
Update RHTAP references (#5492) #5492
Bump OCP versions: 4.14, 4.11 (#5496) #5496
Update RHTAP references (#5470) #5470
MGMT-15715 : Allow handling multi-document YAML custom manifests (#5480) #5480
MGMT-15732 : Add extra flag var for hypershift install (#5469) #5469
XMGMT-15704 : Bugfix for local cluster import (#5484) #5484
NO-ISSUE: update RHTAP deprecated image check (#5488) #5488
Bump OCP versions: 4.12, 4.13 (#5483) #5483
MGMT-15653 : Fix DNS regex validation (#5482) #5482
MGMT-15716 : notify events when updating cluster status (#5476) #5476
MGMT-15503 : Update operator bundle channel (#5474) #5474
Bump OCP versions: 4.14 (#5472) #5472
MGMT-15306 : Fix UpdateCluster for requests that include VIPS and UMA (#5462) #5462
Full changelog
MGMT-16843 : Ensure valid hostname during install (#791) #791
OCPBUGS-25718 : Do not remove uninitialized taints if vSphere (#785) #785
NO-ISSUE: Bump the go-dependencies group with 2 updates (#756) #756
NO-ISSUE: Bump the go-dependencies group with 2 updates (#755) #755
OCPBUGS-20049 : Remove uninitialized taint for agent-based installs (#739) #739
MGMT-16258 : Partitions naming convetion is different for various disk types (#752) #752
NO-ISSUE: Bump the go-dependencies group with 2 updates (#751) #751
Updating ose-agent-installer-orchestrator images to be consistent with ART (#719) #719
MGMT-15926 : Delete failed OLM jobs and subscription install plans in all cases during initialization check, not only in case of not found error (#748) #748
NO-ISSUE: Add my github account as an OWNER for this repository (#749) #749
NO-ISSUE: Bump the go-dependencies group with 2 updates (#747) #747
MGMT-15902 : Trigger event that notifies the number of reboots once the node installation is completed (#744) #744
NO-ISSUE: Bump the go-dependencies group with 1 update (#745) #745
NO-ISSUE: Bump github.com/google/uuid from 1.3.1 to 1.4.0 (#743) #743
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.7 to 0.18.0 (#742) #742
MGMT-16039 : upgrade to golang 1.20 (#741) #741
NO-ISSUE: Bump the go-dependencies group with 7 updates (#738) #738
OCPBUGS-16482 : Update dependencies to remove goproxy dependency (#701) #701
MGMT-15984 : Assisted installer doesn’t freeze and unmount file systems used for overwriting os image (#737) #737
NO-ISSUE: Bump golang.org/x/sync from 0.1.0 to 0.4.0 (#731) #731
Updating ose-agent-installer-csr-approver images to be consistent with ART (#718) #718
MGMT-15710 : Assisted installer changes for avoiding MCO reboot (#713) #713
MGMT-15810 : fix image missing nsenter executable (#729) #729
MGMT-15810 : change base image to stream9 (#725) #725
NO-ISSUE: fix dependabot ingored packages (#724) #724
Full changelog
MGMT-16335 : set HasUUID on appliance mock disk (#634) #634
NO-ISSUE: Bump the go-dependencies group with 3 updates (#635) #635
NO-ISSUE: Add Eran Ifrach account and mine as owners (#633) #633
NO-ISSUE: Bump the go-dependencies group with 2 updates (#630) #630
MGMT-15860 : add strictfipsruntime to build (#629) #629
NO-ISSUE: Bump the go-dependencies group with 1 update (#626) #626
OCPBUGS-16483 : Update apimachinery dependency to remove goproxy dep (#590) #590
MGMT-15271 : Get cmdline and set IBM in vendor (#624) #624
NO-ISSUE: Bump the go-dependencies group with 2 updates (#623) #623
NO-ISSUE: Bump the go-dependencies group with 2 updates (#621) #621
MGMT-16039 : upgrade to golang 1.20 (#619) #619
MGMT-16011 : Reduce agent image size (#617) #617
NO-ISSUE: Bump the go-dependencies group with 1 update (#618) #618
MGMT-15900 : Add enable-skip-mco-reboot flag to assisted installer install command (#614) #614
NO-ISSUE: Bump the go-dependencies group with 3 updates (#612) #612
NO-ISSUE: add adriengentil as approver (#611) #611
NO-ISSUE: Bump the go-dependencies group with 2 updates (#608) #608
MGMT-15809 : change base image to stream9 (#604) #604
Updating ose-agent-installer-node-agent images to be consistent with ART (#603) #603
OCPBUGS-16482 : bump golangci-lint to v1.53.1 (#591) #591
NO-ISSUE: fix lint target and code (#605) #605
MGMT-15653 : Update domain validation from assisted-service changes (#599) #599
Full changelog
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #82
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #76
OCPBUGS-25233 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #77
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #72
OCPBUGS-22541 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #70
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #69
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #62
STOR-1276 : Enable support for mounting volumes with SELinux context #57
OCPBUGS-19111 : Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #61
Full changelog
OCPBUGS-26195 : Create RBAC objects first #93
OCPBUGS-25995 : Add selinux #91
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #90
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #82
OCPBUGS-25234 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #83
STOR-1500 : Switch to the new operator #69
Updating ose-aws-ebs-csi-driver-operator-container image to be consistent with ART #75
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #71
STOR-1400 : Add support for Batch DescribeVolume #74
STOR-1400 : Sync sidecar arguments with upstream #72
STOR-1500 : Add log for the new operator #70
Pull the latest AWS EBS operator #67
Fix vendoring of golang.org/x/net #68
hack: remove existing path from .gitignore #65
Drop Guest prefix from client names #64
Update all generated assets in a single run #63
Verify generated assets in make verify #62
Move operator config into pkg/drivers #61
Add AWS EBS CSI driver operator starter #58
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #59
STOR-1455 : Add asset generator #53
Delegate to aws-ebs-csi-driver-operator for tests and verify #57
Add aws ebs operator legacy #56
Add ci-operator config #54
Clean the repository, it will be reused for all CSI driver operators #52
Obsolete the operator #51
Fix hostpath image sample to support dynamic registration #47
Add kubelet-registration-path flag to csi-driver-registrar #44
Fix golint error #45
Output error message when failed to get CSIDriverDeployment and requeued #46
Add -nometadata to go-bindata to stop updating generated files by every build #43
Disable automatic installation of the operator in OpenShift #41
Pass SecurityContext to sidecar containers #40
Move EBS deployment sample to the right place #39
Use correct context timeouts #38
Add EBS sample deployment file #37
Add leader election to the operator #36
Embed git version into the operator binary #35
Generate bindata during build #34
Add more unit tests #33
Add controller unit tests #32
Fix deletion of non-namespaced objects #31
Fix e2e test #30
Add e2e test #29
Update to operator-sdk 0.1.1 #28
Fix liveness probe version #27
ADd a RHEL7 dockerfile and standardize format #26
Documentation update #23
Add unit test for validation #14
Fix status.conditions json name #11
Add CRD printer columns #12
Add configuration of liveness probe. #9
Increase resync period #10
Add /var/lib/kubelet HostPath directory to node drivers #8
Fix role bindings #7
Add liveness probe. #6
Fix operator images #5
Add OpenShift manifests to operator image #4
Use label selector for informers. #3
Use constants where appropriate #2
Add initial operator #1
And 26 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-24163 : Updating ose-aws-pod-identity-webhook-container image to be consistent with ART #179
NO-ISSUE: Sync OWNERS with team members #173
snyk: exclude vendor/ #170
Bump k8s deps for CVE-2023-39325 #169
OCPBUGS-19264 : Updating ose-aws-pod-identity-webhook images to be consistent with ART #167
Full changelog
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #121
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #114
OCPBUGS-25237 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #115
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #110
OCPBUGS-22560 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #107
STOR-1276 : Enable support for mounting volumes with SELinux context #93
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #106
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #100
update readme #99
simplify workload identity feature enablement #92
update readme #94
OCPBUGS-19172 : Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #98
Full changelog
OCPBUGS-25355 : setting TLSSecurityProfile with no minTLSVersion crashes controller #95
OCPBUGS-25161 : Add annotation to CSI driver Pod preventing eviction from the cluster-autoscaler #89
OCPBUGS-25238 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #90
STOR-1402 , STOR-1453 : update libraries and specify TLS_MIN_VERSION #84
OCPBUGS-22562 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #82
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #81
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #75
update readme #70
simplify workload identity feature enablement #69
OCPBUGS-19170 : Updating azure-file-csi-driver-operator images to be consistent with ART #74
Full changelog
OCPBUGS-30148 : fix “OpenShiftSDN deprecated” error message #8094
OCPBUGS-30011 : PowerVS: remove IBM-Cloud/bluemix-go/api/account/accountv2 in 4.15 #8076
OCPBUGS-29768 : Power VS: Add sleep to allow workspace to configure PER #8052
Bug OCPBUGS-29726: OpenStack: Fix dualstack with external load-balancer #8050
OCPBUGS-29495 : gcp: better error msg when service accnt missing #8024
Bug OCPBUGS-29458: OpenStack: fix controlPlanePort validation #8019
OCPBUGS-29236 : Fixed control plane machine set handling of static IPs when AddressesFromPools is not in use. #7996
OCPBUGS-28841 : PowerVS: Add dal12 region #7977
OCPBUGS-29955 : PowerVS: Add debugging to ServiceInstanceNameToGUID #8065
OCPBUGS-29585 : PowerVS: handle composite_instance #8032
OCPBUGS-29620 : Power VS: Fix service instance list #8035
OCPBUGS-29523 : Bump terraform-provider-ibm to v1.61.0 #8026
OCPBUGS-29436 : PowerVS Fix next start search #8013
OCPBUGS-29442 : update RHCOS 4.15 bootimage metadata to 415.92.202402130021-0 #8016
OCPBUGS-29219 : GCP: Skip validation of public and private zones for terraform vars #7994
OCPBUGS-29201 : Copy GCP manifests within MCO bootstrap to the correct location #7993
OCPBUGS-28822 : aws-edge-zones preventing err before discovering #7973
OCPBUGS-29117 : IBMCloud: Handle disk delete errors #7984
OCPBUGS-26036 : ic: aws: add iam:TagInstanceProfile permission requirement #7866
OCPBUGS-28779 : update tested Azure Arm64 instance type on 4.15 #7971
OCPBUGS-28546 : [release-4.15] Bump containerd for vulnerability fix #7957
OCPBUGS-27346 : Warn that FeatureSet is not supported #7922
OCPBUGS-27417 : baremetal: gather all recently refactored services #7928
OCPBUGS-27380 : set the –cluster-profile flag for openshift/api rendering #7955
OCPBUGS-27894 : duplicate failure domains in CMPS #7951
OCPBUGS-27329 : remove retired serial NCv2 from azure tested instance type list on x86 #7921
OCPBUGS-27850 : PowerVS: COS region configurable #7948
OCPBUGS-27814 : [release-4.15] CORS-2950: Remove openshift-sdn as an install-time option #7935
OCPBUGS-25251 : Changed OKD/FCOS workaround to also support Agent-based Installer #7830
OCPBUGS-27299 : Power VS: Add eu-de-1, eu-de-2, sao04, and wdc07 as supported zones #7913
OCPBUGS-26515 : preserve category name when trying to find tag category #7885
OCPBUGS-27311 : Fix depreciated typo #7912
OCPBUGS-26495 : Fix typo in CloudCredential validation #7916
CORS-3166 : GCP: Add load balancer info to cluster infra #7903
OCPBUGS-27188 : Redact platform passwords in agent-gather output #7910
CORS-3168 : build: only rebuild terraform providers if needed #7853
OCPBUGS-27148 : baremetal: correct external_http_url for v6-only BMCs #7906
CORS-3166 : GCP: Update DNSType within GCP PlatformStatus based on UserProvisionedDNS #7882
OCPBUGS-26495 : Add cloud credential capability validation #7890
OCPBUGS-26511 : Bump default channel to 4.15 #7883
OCPBUGS-26051 : aws: validate instance arch #7868
OCPBUGS-25990 : Fixes for the OpensStack UPI playbooks. #7863
OCPBUGS-24679 : Modify the terraform variables to support Nutanix Failure Domains #7813
OCPBUGS-25463 : IBMCloud: Set IBM TF visibility based on URLs #7844
OCPBUGS-25216 : ic: azure: fix retrieving marketplace image #7829
OCPBUGS-25192 : Revert “Merge pull request #7642 from AnnaZivkovic/azure_duplicate_im… #7827
CORS-2934 : IBMCloud: Update MAPI for BYOK #7812
METAL-803 : Update vendoring for baremetal-operator #7809
no-jira: Fix base image reference #7810
CORS-2952 : GCP Set “ClusterHostedDNS” in the Infra CR based on the value of userProvisionedDNS #7796
CORS-2813 : Pass LB ConfigMap manifest as a parameter to MCO instance during bootstrap #7662
OCPBUGS-23140 , OCPBUGS-23305 : Soften VIP validations for external load-balancer #7803
AGENT-739 : Support for install-config baremetal host BMC fields #7645
AGENT-729 : Support generic platform name for external platform #7585
MULTIARCH-4042 : Reuse existing Transit Gateway in target Workspace, or create anew #7592
OCPBUGS-23473 : update RHCOS 4.15 bootimage metadata to 415.92.202311241643-0 #7770
AGENT-615 : Split create-cluster-and-infraenv.service #7364
no-jira: image: infra-providers: use base image instead of builder #7800
no-jira: hack: drop hardcoded -j8 in make invocations. #7799
OCPBUGS-23458 : force destroy bootstrap ign #7791
OSASINFRA-3261 : OpenStack: support dualstack in UPI #7727
MULTIARCH-2678 : Patch for Agent Based Installer to support s390x as supported architecture. #7712
SPLAT-1218 : AWS BYO VPC support for Wavelength Zones #7652
CORS-2525 : Azure: remove storage account with bootstrap destroy #7642
AGENT-337 : Set VIPs directly in api, instead of install-config override #7574
OCPVE-648 : gomod: bump api version with CloudCredential cap #7466
CORS-2852 : cmd/create: ensure proper cleanup on exit #7693
OCPBUGS-9066 : Retry image download on failure #7106
NO-ISSUE: Remove dead code from ‘networking’ asset #7798
PowerVS: MULTIARCH-4030: Reintroduce serviceInstanceGUID install option #7795
OCPBUGS-24191 : set vmType in azure cloud config #7793
no-jira: pkg/asset: safety nets to keep installer from crashing #7792
CORS-2934 : IBMCloud: Add support for BYOK #7738
OCPBUGS-23539 : Keep Machine manifests out of OpenShift Manifests asset #7753
CORS-3020 : IBMCloud: Bump IBM TF provider #7784
MIXEDARCH-310 : Enable the use of the multi payload for agent installer #7595
CORS-2775 : ic: azure: remove deprecated errors package #7778
SPLAT-1126 : aws/clusterNetworkMTU config to change the MTU for overlay network #7765
CORS-2785 : images: decouple installer and installer-artifacts #7782
MULTIARCH-3793 : Power VS: Add mad and wdc assupported region #7773
CORS-2852 : Generate Cluster API Machine Manifests #7771
CORS-2854 : azure: Allow users to set visibility to components #7547
OCPBUGS-24008 : Remove sno_arm.txt integration test #7718
OCPBUGS-23947 : set client options when interacting with azure api #7768
CORS-2978 : enable AWS SDK Installation through feature gates #7715
CORS-2798 : GCP: User Configured DNS solution to update the bootstrap node with the Load Balancer Information #7631
CORS-2845 : azure: Enable storage account encryption #7520
SPLAT-1277 : unrevert PR 7418; implement vSphere control plane machinesets #7780
OSASINFRA-3303 : OpenStack: remove generation of trunks name #7772
AGENT-670 : Add assisted-db data to agent-gather #7719
SPLAT-1160 : AWS - Support Wavelength Zones with edge pool #7369
Skip cluster config #7666
OCPBUGS-24031 : Bump Fedora CoreOS to latest stable #7779
no-jira: destroy: azure: store session in the destroy object #7777
CORS-2975 : Add support for il-central-1 in AWS #7740
CORS-2428 : terraform: add build information to binaries #7763
OCPBUGS-24026 : Add owner for user provided client CA bundle #7749
SPLAT-1272 : Support Nutanix Failure Domains #7730
CORS-2775 : destroy: azure: remove deprecated errors package #7761
no-jira: cmd/openshift-install: Remove “migrate” command #7601
no-jira: go.mod: remove unused terraform-providers-nutanix import #7762
CORS-2835 : pkg/infrastructure: remove ARO build tag #7745
OCPBUGS-21777 : baremetal: populate customDeploy in advance #7674
CORS-2933 : IBMCloud: Basic service endpoint override #7632
CORS-2852 : Introduce Cluster API Infrastructure manifest generation #7672
OCPBUGS-22840 : ic/azure: validate field Plan when for marketplace images #7721
CORS-2604 : tag user-provided azure vnet #7611
MULTIARCH-3964 : Power VS: Control SMT level with machineconfig #7704
no-jira: destroy/azure: fix dropped negation from error comparison #7758
no-jira: destroy/azure: avoid cancelling main context #7750
OCPCLOUD-2130 : Fix Failuredomains check on manifests test #7617
OSASINFRA-3295 : OpenStack: fix client used to list flavors #7723
OSASINFRA-3294 : OpenStack: fix script to update bootstrap ignition shim #7743
no-jira: images: rename terraform- > infrastructure-providers #7716
OCPBUGS-23376 : vSphere - when using RP network path is incorrect #7737
no-jira: Stop rendering networks.config CRD #7732
OCPBUGS-22453 : Fixed systemd-resolved’s split dns config in OKD/FCOS #7634
SPLAT-1218 : upi/AWS: Templates to provision resources in Wavelength #7722
AGENT-337 : Support both VIP and VIPs in AgentClusterInstall #7724
OSASINFRA-3229 : Remove support for Kuryr #7675
CORS-2830 : Provision AWS Infrastructure with SDK #7676
MULTIARCH-4009 : Prepare for varying SysTypes for new datacenters #7717
MULTIARCH-3789 : Power VS: Remove cloud connection support #7696
CORS-2876 : images/installer-altinfra: initial Dockerfile #7711
Bug OCPBUGS-19462: OpenStack: Fix dual-stack machines Spec to contain network #7694
MULTIARCH-3965 : Check if PER is enabled in the target PowerVS workspace #7683
OSASINFRA-3280 : openstack: document etcd on local disk #7664
OCPBUGS-23170 : Revert #7418 “SPLAT-1141: implement vSphere control plane machinesets” #7708
MULTIARCH-2590 : PowerVS create service instance #7695
SPLAT-1141 : implement vSphere control plane machinesets #7418
CORS-2428 : images: add Dockerfile for a terraform-providers image #7687
OSASINFRA-3237 : move controlPlanePort API to GA #7570
CORS-2835 : use build tags to produce installer with alternate infrastructure providers #7656
CORS-2877 : Install Config Feature Gate Validation #7413
OCPBUGS-22772 : return Terraform statefile on error #7671
NO-JIRA: destroy/aws: replaced deprecated sets syntax #7680
OCPBUGS-19398 : IBMCloud: Add eu-es region #7668
OCPBUGS-22830 : fix google cli verson to 447.0.0 #7663
OCPBUGS-22113 : Do not generate azure-cloud-provider in manual mode for aro builds #7608
OCPBUGS-22757 : update RHCOS 4.15 bootimage metadata to 415.92.202310310037-0 #7654
CORS-2852 : Introduce pkg/clusterapi, system, and local control plane #7630
OCPBUGS-20403 : OpenStack: add SG rules for compact clusters on UPI #7576
OCPBUGS-17866 : check GOOGLE_APPLICATION_CREDENTIALS env var #6863
OCPBUGS-22773 : PowerVS: fix removeFromLoadBalancers #7653
OCPBUGS-13664 : Add KMS encryption keys if provided #7650
Bug OCPBUGS-22298: OpenStack: Fix IPv6 address configuration for bootstrap #7638
OCPBUGS-18387 : Add Azure ConfidentialVM capability and DiskEncryptionSet validations #7469
OCPBUGS-22489 : destroy: gcp: fix destroying regional disks #7643
OCPBUGS-22058 : Bump versions for golang modules to accommodate fixes for CVE-2023-39325 & CVE-2023-44487 #7590
OCPBUGS-18986 : Skip the deletion of instance profiles marked shared #7537
hack/go-lint: update golanci-lint to v1.53.1 #7635
OCPBUGS-22655 : Bump Fedora CoreOS to latest stable #7644
bootkube.sh: drop final mention of machine-os-content #7636
update tested x86 instance type on 4.14 #7639
OCPBUGS-4038 : bootstrap: Skip gatewayd units only on OKD agent-installer #7629
CORS-2852 : Build and package Cluster API and providers #7620
AGENT-713 : Use BM hosts in install-config if not defined in agent-config #7531
MIXEDARCH-353 : Add yq-v4 to the upi-installer image for CI and copy yq3 from a previous stage’s manifest-list image #7567
openstack: dual stack UPI - create security group rules for IPv6 #7552
OCPVE-740 : bump openshift/api #7613
AGENT-718 : Add vSphere credentials to install-config overrides #7593
Revert #7428 “OCPBUGS-13664: Add KMS encryption keys if provided” #7625
OCPBUGS-10906 : check extracted base iso coreos version is in sync #7030
OCPBUGS-4038 : bootstrap: Enable gatewayd units only on RHCOS #7580
OCPBUGS-21720 : images/libvirt/Dockerfile.ci: Use centos stream instead centos:7 #6813
CORS-2836 : Refactor Stages, encapsulate terraform #7488
OCPBUGS-20356 : update RHCOS 4.15 bootimage metadata to 415.92.202310170229-0 #7616
OCPBUGS-20364 : azure: validation: validate defaultMachinePlatform #7584
OCPBUGS-20525 : aws: use security groups from defaultMachinePlatform #7589
OCPBUGS-13664 : Add KMS encryption keys if provided #7428
OCPBUGS-5471 : Try to select rendezvousIP among non-worker hosts #7443
OCPBUGS-21781 : Rectify GCP label key validation check #7596
Revert skipping integration test agent sno arm #7561
OCPBUGS-20350 : vSphere,segfault on version check #7575
OCPBUGS-19093 : skip agent-tui on OCI #7512
OCPVE-675 : feat: bump api to add OLM capability #7495
Enforcing the serial execution of the integration tests #7591
images: Cleanup CI Dockerfiles #7507
OCPBUGS-20440 : Warn about host and target compatibility #7582
OCPBUGS-19444 : Use changes to AgentClusterInstall during loading #7506
OpenStack: Adapt nodePorts range 0.0.0.0/0 sg rules #7577
Remove unused method #7438
PowerVS: MULTIARCH-3791 Remove cloud connection reuse functionality #7564
OCPBUGS-19552 : Fixed DNS issues in OKD/FCOS due to split dns in systemd-resolved #7516
docs: Described process of adding vGPU capable nodes. #6606
OCPBUGS-19086 : Check if nmstatectl executable exists in the system #7492
OCPBUGS-16666 : Change where AdditionalTrustBundle is set #7485
OCPBUGS-18455 : Unable to disable external CCM for platform external #7533
OCPBUGS-18552 : Truncate vlan names defined in nmstate if > 15 chars #7486
OpenStack: enable IPv6 primary dual-stack cluster #7259
OCPBUGS-20110 : Add an unit test - at least one interface must be defined for each node #7555
OSASINFRA-3199 : Configure User-Agent for OpenStack API calls #7548
OCPBUGS-17757 : check credentials type to handle different gcp authentication methods #7422
Docs: Fix openstack command for image update in upi installation #7556
PowerVS: MULTIARCH-3790 Remove zones that only have CCs with exceptions #7563
PowerVS: Remove deprecated errors package #7544
Disable pxe sno arm integration test #7557
Inefficient wait for all clusteroperators #7535
OCPBUGS-15844 : Enable FIPS in agent ISO #7540
OCPBUGS-20058 : Use updated ansible-core for Openstack image #7549
OWNERS: Remove obsolete agent reviewers #7545
OCPBUGS-5728 : Log “agent wait-for” commands to .openshift_install.log #7452
OCPBUGS-19092 : Enable serial console for external OCI platform #7511
OCPBUGS-18690 : ic: azure: validate NVMe-only family types #7500
CORS-2479 : agent: Ensure registries.conf is world readable #6745
add jbtrystram to coreOS approvers and reviewers #7464
OCPBUGS-19093 , OCPBUGS-19688 : Allow agent-tui to use serial console #7526
Tweaks to validateRendezvousIPNotWorker #7437
OCPBUGS-18986 : Tag aws instance profiles. #7510
OCPBUGS-19376 : GCP default value for service account #7519
MULTIARCH-3701 : Enable ppc64le for agent installer #7366
pkg/asset/installconfig/powervs: fix dropped error #7419
OCPBUGS-19699 : Remove warning about CPUPartitioning #7527
OCPBUGS-18187 : Increase bootstrap timeout for vSphere platform by 30 mins #7518
OCPBUGS-18830 : AWS terraform bootstrap destroy will not refresh state #7491
OCPBUGS-12707 : always write AWS cloud.conf #7514
AGENT-710 : Use invoker for bootstrap template generation #7508
OCPBUGS-18876 : Pass CPUPartitioning via install-config overrides if set #7513
OpenStack: fix IPv6 docs #7482
OCPBUGS-18945 : update RHCOS 4.15 bootimage metadata to 415.92.202309161058-0 #7499
LICENSE: Update #7502
OCPBUGS-19286 : Updating ose-installer-artifacts images to be consistent with ART #7496
SPLAT-1170 : enable cloud controller manager type to be defined #7457
OpenStack: Set external network for cloud-provider #7411
OCPBUGS-17724 : Graceful fail for AWS getUser on destroy #7429
AGENT: publish services diagrams #7323
OCPBUGS-19149 : Updating ose-baremetal-installer images to be consistent with ART #7494
OCPBUGS-19130 : Updating ose-installer images to be consistent with ART #7493
OCPBUGS-17218 : Warn when firewall rull missing. #7417
OSASINFRA-3236 : deps: Bump gophercloud to v1.6.0 #7208
OCPBUGS-19037 : Handle agent tui failure gracefully #7490
OCPBUGS-19017 : Add Net capabilities to dnsmasq container #7487
OCPBUGS-18113 : Do not set FailureDomains on CPMS when in a single zone Azure region #7448
AGENT-702 : Generate minimal ISO for external platform #7450
OCPBUGS-18304 : for vsphere ipi add cluster domain to the uploaded vm configs so that… #7451
Implement workaround to allow SNO installations for OKD/FCOS #7445
Full changelog
OCPBUGS-30270 : Introduce –issuer-url flag in oc login #1696
OCPBUGS-28204 : Add RHEL9 and RHEL8 based oc as new targets in command extraction #1672
WRKLDS-1041 : oc login: Built-in cred exec plugin implementation and wiring #1658
OCPBUGS-24695 : Remove deprecated password defaulting in default config flag #1620
OCPBUGS-25016 : Bump api to include the new CloudCredential cap #1623
OCPBUGS-24375 : Overwrite template’s namespace with the explicit one #1612
OCPBUGS-23723 : Add .snyk file to exclude vendor and ignore unit tests #1604
ACM-7713 : Skip related objects which are invalid #1550
OTA-1035 : adm upgrade status Add control plane update status #1597
OCPBUGS-23071 : Mention inspection completion in the error message #1601
NO-JIRA: Add client version in must-gather summary #1603
WRKLDS-908 : Promote some experimental commands, deprecate others #1596
WRKLDS-860 : Add volume usage percentage checker script in must-gather’s gather container #1533
OTA-1035 : Allow testing adm upgrade status on mock data #1595
NO-JIRA: Drop the experimental info for registry login and must-gather commands #1594
Updating content type variable name for CLI docs generation #1591
WRKLDS-874 : oc whoami: Ask from selfsubjectreview and fallback to internal oauth #1588
moved cert sharing library #1532
OCPBUGS-21612 : Use mutex to prevent concurrent writes #1589
OCPBUGS-20500 : Add directive example to kubelet-restart command #1586
pkg/cli/admin/upgrade/status: Add update duration #1583
oc/*: gracefully fail when user group is not configured #1585
create/identity: fail gracefully when no user API exists #1582
pkg/cli/admin/update: Add tech-preview ‘oc adm upgrade status’ #1554
OCPBUGS-20500 : Fix some commands incorrect examples #1581
OCPBUGS-9340 : pkg/cli/admin/upgrade: Warn on unrecognized subcommands #1557
OCPBUGS-20381 : Bump golang.org/x/net to v0.17.0 #1578
OCPBUGS-20528 : Revert “OCPBUGS-7465: Bump distribution/v3 to sync with oc-mirror” #1575
OCPBUGS-20474 : Set ImportPolicy to PreserveOriginal to honor –keep-manifest-list when mirroring a payload to an image stream #1572
OCPBUGS-20342 : Reflect container’s exit code for long running tasks not attached to terminal #1571
OCPBUGS-20063 : regeneratemco: explicitly check for PlatformStatus field #1555
OCPBUGS-7465 : Bump distribution/v3 to sync with oc-mirror #1556
OCPBUGS-20181 : Use quay redis image instead docker mysql #1559
OCPBUGS-7465 : Introduce refreshable dynamic credential store for image manifests #1540
Updating excluded list of unsupported oc adm commands in MicroShift #1558
WINC-692 : Add Windows node functionality to debug command #1524
WRKLDS-537 : oc adm release info: Add –first-parent to git log for simplification #1552
WRKLDS-806 : Bump kube dependencies to 1.28.2 #1547
OCPBUGS-19282 : Updating ose-tools images to be consistent with ART #1545
OCPBUGS-19281 : Updating openshift-enterprise-deployer images to be consistent with ART #1544
OCPBUGS-19517 : remove unsupported commands from microshift docs #1548
OCPBUGS-19283 : Updating ose-cli-artifacts images to be consistent with ART #1546
OCPBUGS-19129 : Updating openshift-enterprise-cli images to be consistent with ART #1542
And 1 elided commits (e.g. from squash or rebase merges)
Full changelog
OCPBUGS-30412 : gcp actuator update check to consider custom roles #686
OCPBUGS-29155 : Fix the ClusterOperator watch of the status controller #675
OCPBUGS-29113 : ccoctl - use proxy when validating CloudFront URL #674
OCPBUGS-27910 : Resolve all outstanding snyk vulnerabilities #649
OCPBUGS-27901 : Use cached clients to avoid client side throttling #660
OCPBUGS-27919 : Report manualpodidentity mode in metrics when using Azure Workload Identity #661
OCPBUGS-27117 : Write manifests when AWS IAM roles already exist. #653
OCPBUGS-26510 : Use live client for metrics #646
OCPVE-647 : annotate manifests with capability name #594
CCO-338 : cmd/operator: use correct kubeconfig for all clients #638
CCO-244 : gcp-ro-credentialrequest to use granular permissions #626
OCPBUGS-23178 : Enable GCP sync to undelete custom roles #637
OCPBUGS-13597 : Discover AWS dns suffix from partition and region. #596
CCO-372 : Azure Workload Identity info in CredsRequests creates a Secret #587
OCPBUGS-20478 : Explicitly set the vsphere secret credential data on sync. #628
CCO-440 : Bump k8s deps to 0.28.3 #614
CCO-192 : Use Leases for leader election #627
CCO-430 : Use per-project custom roles instead of per-cluster custom roles #611
snyk: exclude vendor/ #613
OCPBUGS-22369 : explicitly set azure oidc bucket to allow public blob access #610
Upgrade golang/x/net for CVE-2023-39325 #609
OCPBUGS-21745 : azure create-managed-identites to add cloud controller manager to network resource group #607
Removing andrew from OWNERS #606
Revert #592 “CCO-421: *: split pod identity webhooks from core controller” #604
CCO-421 : *: split pod identity webhooks from core controller #592
Docs: azure workload identity no longer requires TechPreviewNoUpgrade #603
CCO-437 : Document steps for in-place migration to Azure AD Workload Identity. #598
OCPBUGS-19123 : Updating ose-cloud-credential-operator images to be consistent with ART #600
OCPBUGS-18246 : Add networkResourceGroupName parameter for Azure #597
Full changelog
OCPBUGS-25751 : Add Snyk file to exclude vendor directory on scan #314
OCPBUGS-26480 , OCPCLOUD-1724 : GCP Credentials req. manifest of CCMO to use new API field #320
OCPBUGS-26210 : Adds CloudConfigTransformer for Azure #319
OCPVE-788 : annotate credentials request manifests #293
Undo TRT-1378: Revert for “OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS” #306
TRT-1378 : Revert #304 “Undo TRT-1374: Revert for \“OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS\”” #305
Undo TRT-1374: Revert for “OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS” #304
OCPBUGS-24127 : Updating ose-cluster-cloud-controller-manager-operator-container image to be consistent with ART #302
TRT-1374 : Revert #301 “OCPCLOUD-2278: Add kube-rbac-proxy container & ensure metrics are only available via HTTPS” #303
OCPCLOUD-2278 : Add kube-rbac-proxy container & ensure metrics are only available via HTTPS #301
OCPBUGS-23996 : trust bundle CA controller: add owner annotation for ccm-trusted-ca configmap #300
OCPBUGS-23308 : Set IPFamilyPriority and ExcludeNetworkSubnetCIDR for vSphere IPv6-only #299
OSASINFRA-3289 : OpenStack: Remove Kuryr bits #294
OSASINFRA-3284 : Add Events to OpenStack’s RBAC #292
OCPBUGS-20213 : Add azure cloud config transformer #291
Update OWNERS #290
OCPBUGS-17652 : apply necessary RBAC for the alibaba cloud controller manager #276
OCPBUGS-18841 : Additional permissions for internal load balancer on STS #287
OCPCLOUD-2188 : Bump k8s packages to v1.28 #285
update readme to stable status #286
OCPBUGS-19205 : Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #278
OCPBUGS-18641 : Set dual-stack IPFamilyPriority for vSphere #279
OCPBUGS-18841 : Ensure subnets read permission for granular roles #281
OCPBUGS-14718 : Add message for CABundleControllerDegradedCondition error #275
Full changelog
OCPBUGS-28622 : Add required PSa labels #402
Revert “OCPBUGS-19106: Updating ose-cluster-config-operator-container image to be consistent with ART” #388
OCPBUGS-19106 : Updating ose-cluster-config-operator-container image to be consistent with ART #385
read featuregates from openshift/api #349
yield CRDs and empty resource rendering to api imge #379
CNF-10479 : Bump up api to pull mixed cpu allocation feature gate #386
NP-793 : Bump github.com/openshift/api #375
create manifest directory during rendering #382
SPLAT-1272 : Update for Nutanix failure domains api changes #378
create parent dir for output #381
Allow split rendering between cluster-config and openshift/api #380
MON-3480 : Add MetricsServer FeatureGate #377
NO-JIRA: pkg/cmd/render/config: Remove ReadFeatureGateV1OrDie #361
MCO-813 : add MCN featuregate #368
SPLAT-1127 : bring in vSphere CPMSO API updates #342
OCPBUGS-21781 : Update openshift/api package to latest version #365
OCPBUGS-21744 : bump library-go to include switch to HTTP/1.1 #366
CFE-887 : Bump openshift/api to add DNSNameResolver. #364
Enable ValidatingAdmissionPolicy in TechPreviewNoUpgrade. #358
OCPBUGS-20164 : Remove Build CRD #360
Remove AdmissionWebhookMatchConditions feature gate #359
OCPVE-708 : feat: bump(api) #357
OCPCLOUD-1989 : Promote GCP CCM from TPNU to default #319
OCPBUGS-19106 : Updating ose-cluster-config-operator images to be consistent with ART #353
CCO-412 : Bump API to promote azureWorkloadIdentity to defaultFeatures #351
Full changelog
OCPBUGS-25240 : CVE-2023-47108: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.46 #180
OCPBUGS-24099 : Updating ose-cluster-csi-snapshot-controller-operator-container image to be consistent with ART #176
STOR-1402 : Chore: update libraries in all operators [4.15] #175
OCPBUGS-22569 : CVE-2023-45142: bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to v0.45.0 #173
OCPBUGS-22357 : CVE-2023-44487: bump github.com/openshift/library-go to master #172
OCPBUGS-21593 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #166
STOR-1443 : Restart webhook Pods if csi-snapshot-webhook-secret changed #157
OCPBUGS-19162 : Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART #160
OCPBUGS-3680 : Move readonlyRootFilesystem to the right place #159
Full changelog
OCPBUGS-29090 : network-node-identity mounts secrets with mode 0640 #2251
OCPBUGS-29390 : ipsec: fix openssl typo #2272
OCPBUGS-29522 : Not set CNO to degraded if API server returns conflict error #2275
OCPBUGS-29654 : [release-4.15] Disable network-node-identity on ROKS #2278
OCPBUGS-29299 : Update ingressconfig_controller to use field Manager #2265
OCPBUGS-28902 : Fix CloudPrivateIPConfig CRD in common #2263
OCPBUGS-29082 , OCPBUGS-29150 : Remove libreswan rpm existence checks #2255
OCPBUGS-28778 : add env var in whereabouts-reconciler daemonset #2242
OCPBUGS-27421 : Only reconcile on Node updates with Label changes #2212
OCPBUGS-27199 : Remove egressip write permissions from ovn-kubernetes-node #2203
OCPBUGS-27174 : network node identity: tolarate all taints #2202
NP-905 , OCPBUGS-28902 : Bump openshift API #2247
OCPBUGS-28904 : [release-4.15] Restrict live migration to standalone managed clusters #2243
NO-JIRA: add kyrtapz as reviewer and approver for release 4.15 #2227
OCPBUGS-28214 : Not update migration conditions when any MCP is updating #2223
OCPBUGS-27777 : Deploy CNO IPsec MC even if user already have one #2215
OCPBUGS-25652 : fix whereabouts conformance test failures #2168
OCPBUGS-27748 : [release-4.15] Add ConfigMap mount to the whereabouts-reconciler #2214
OCPBUGS-27198 : [release-4.15] Update ovn-k managed control-plane RBAC #2204
OCPBUGS-27286 : Use specific permissions for CNCC in GCP #2190
OCPBUGS-27001 : Keep the live migration annotation consistant with the enhancement doc #2194
OCPBUGS-27186 : Ns ipsec 4.15 #2200
OCPBUGS-25864 : HyperShift, network-node-identity: Check the deployment in the management cluster #2180
OCPBUGS-24036 : remove all managed fields used by old manager #2167
OCPBUGS-25312 , OCPBUGS-25921 : Avoid removal of ipsec-host daemonset when node is NotReady #2181
OCPBUGS-24148 : Updating cluster-network-operator-container image to be consistent with ART #2133
OCPBUGS-22710 : Set enable-multi-external-gateway flag in ovnkube.conf #2158
OCPBUGS-19817 , SDN-4162 : Upgrade IPsec with single daemonset pod #2087
NP-615 : Live migration #2091
OCPBUGS-23161 : Set logging for controller-runtime #2129
SDN-4061 : Remove interconnect upgrade logic, single-zone YAMLs and everything related to OVNK centralized architecture #2101
OCPVE-779 : Annotate credentials request manifests #2105
NP-615 : Bump github.com/openshift/api #2138
SDN-4308 : Update status merge for APBRoute and EgressFirewall. #2132
OCPBUGS-22710 : Add apbroute/status patch rights for ovnkube-node to update status #2139
NETOBSERV-1047 : Add a cluster monitoring dashboard for ovn #1871
OCPBUGS-21924 : Bump library-go #2082
SDN-4101 : Remove HyperShift API dependency, Bump kubernetes dependencies #2128
NO ISSUE: add ownership of the proxy-ca #2111
OCPBUGS-22869 : hypershift, hosted clusters: enable multi-homing and multi-net features #2113
OCPBUGS-23082 : set automountServiceAccountToken to false for hypershift managed network-node-identity deploy #2100
OCPBUGS-21924 : Bump golang.org/x/net to v0.17.0 #2068
OCPBUGS-18088 , OCPBUGS-18089 : ovnkube: container scripts cleanup [v2] #2060
OCPBUGS-11179 : change CNO to use custom ServiceAccount #2084
two replicas for CM instead of 3 #2052
OCPBUGS-15817 : Egress router: request at least 100 milliCPU #2077
OCPBUGS-18785 : SDN controller manifest: add node name from downward kapi to sdn controller #2047
OCPBUGS-19370 : Added HCP label to CNO pods #2048
OCPBUGS-15220 : Add zone node preference to multus-admission-controller #1795
multinetworkpolicy: allow Neighbor Discovery Protocol traffic #2010
OCPBUGS-18569 : hypershift: adjust backoff on infrastructure name retry #1986
OCPBUGS-20533 : Revisit cipher suits for multus-admission-controller’s rbac-proxy #2074
OCPBUGS-10652 : ovnkube: disable conntrack on hybrid overlay VXLAN ports #1819
Make APB External Route namespace selector mandatory for a dynamic hop #1929
OCPBUGS-20519 : hosted cluster upgrade failure from 4.13 stable to 4.14 #2065
Revert “Merge pull request #2037 from dcbw/db-script-cleanup” #2058
OCPBUGS-18392 : notify when /etc/openvswitch path changes #1989
OCPBUGS-18088 , OCPBUGS-18089 : ovnkube: container scripts cleanup #2037
Remove ability to deploy with Kuryr #2056
OCPBUGS-20104 : Don’t run network node identity as root #2051
OCPBUGS-20076 : Multus should determine kubeconfig path #2049
Revert Kuryr MTU fixes #2038
Fix MTU miscalculation #1778
OCPBUGS-19918 : get ipsecStatus from host daemonset #2042
Network metrics daemon: change priority class to openshift-user-critical #2044
OCPBUGS-14819 : HyperShift: Use the local konnectivity proxy when checking proxy readiness #1985
OCPBUGS-19861 : Multus per-node certificates should have 24h duration #2039
OCPBUGS-19418 : Relax conditions to get IC upgrade started #2018
OCPBUGS-18396 : Fix config status MTU migration not being updated #2021
OCPBUGS-19705 : Use port 9108 for ovnkube-control-plane metrics #2031
OCPBUGS-19715 : Do not enable node admission webhook if the CNI is not OVN-Kubernetes #2030
OCPBUGS-17391 : remove prestop hooks for northd, sbdbd and nbdb #1978
OCPBUGS-19625 : Multus per-node certificate request #2009
OCPBUGS-19377 : Kuryr: Fix deriving MTU from previous config #2007
OCPBUGS-19648 : Network identity: node-specific certificate in ovnkube-node, admission webhook #1983
OCPBUGS-19550 : multus: set MULTUS_NODE_NAME to filter pods to local node #2020
OCPBUGS-19018 : use $CPE_NAME to find the OS major version #2003
OCPBUGS-19494 : ipsec: remove preStop from host #2015
OCPBUGS-18114 : Update node selector in various YAMLs #1845
Limit OVN-Kubernetes permissions #1982
OCPBUGS-18892 : make ipsec.service required #1999
OCPBUGS-19236 : Updating cluster-network-operator images to be consistent with ART #2006
separate libovsdblogs from main ovnkube-master logs #1938
OCPBUGS-15201 : Disable weak SSH cipher suites #1981
OCPBUGS-18676 : ovnkube: set northd backoff-interval and use a single thread to save CPU #1990
OCPBUGS-17380 : ipsec: fix oopsy from 2e3fc8e7a0 #1996
OCPBUGS-18517 : Kuryr: Set MTU on Bootstrap, not Render phase #1988
Full changelog
OCPBUGS-29752 : [release-4.15][manual] backport performance profile owner reference ehnancements (#963) #963
Render: Add MCSelector to missing default MCPs (#959) #959
Add support to inject owner-ref argument to render command (#966) #966
OCPBUGS-29376 : Mixed CPUs e2e tests (#952) #952
OCPBUGS-27227 : irqbalance: set banned cpus list to ‘0’ (#953) #953
OCPBUGS-29396 : Labels for e2e testing (#949) #949
OCPBUGS-29376 : e2e: cgroups: introduce cgroup package (#942) #942
makefile: add target to trigger mixedcpus e2e test (#941) #941
OCPBUGS-27948 : Tuned rendering and MCP detection improvements (#928) #928
OCPBUGS-25982 : E2E: Add tests for Dynamic ovs pinning (#904) #904
rps: fail silently when rps application failed (#897) #897
OCPBUGS-25596 : Make MC names deterministic (#888) #888
OCPBUGS-25552 : rps: fix mask update for SR-IOV devices (#886) #886
OCPBUGS-24638 : Do not set default RPS sysctl twice (#869) #869
cpuset-configure: exit gracefully on cgroup v2 (#866) #866
CNF-7610 : Mixed CPUs plugin deployment support (#853) #853
New MachineConfig render command (#844) #844
Report duplicate profiles as ERRORs (#864) #864
CNF-10473 : featuregates: main: add feature gates support for PAO controller (#858) #858
e2e:latency: omit LatencyTestRun env variable (#857) #857
OCPBUGS-18649 : E2E: PPC Test cases (#708) #708
OCPBUGS-18640 : Fix Racing Machine Configs and add Day 0 Support (#854) #854
Avoid k8s.io/kubernetes as dep (#848) #848
Remove most //nolint:* overrides (#837) #837
CNF-10294 : main: remove deprecated multi ns function (#770) #770
OCPBUGS-22519 : bump opentelemetry package (#840) #840
Disable HTTP/2 for webhook and metrics servers (#834) #834
Remove obsolete protocols and weak ciphers (#827) #827
OCPBUGS-18662 : rps: trigger udev even per queue (#816) #816
render: change dir path (#824) #824
Makefile: remote tmp folder on clean target (#823) #823
Add golangci-lint (#793) #793
Updating cluster-node-tuning-operator images to be consistent with ART (#795) #795
fix: add if check for no resource match error (#801) #801
nto: avoid timeout when there are too many CSV (#731) #731
Set non-default UserAgent for easier debugging (#807) #807
Improve co/node-tuning operand version reporting (#792) #792
Add the k8s reporter to the configuration suite (#815) #815
OCPBUGS-18783 : e2e: perfprof: enhance the scheduling domain tests (#791) #791
Add kubeconfig path for IBM Managed OpenShift (#810) #810
Add k8s reporter to e2e tests (#666) #666
OCPBUGS-19459 : check for object being nil (#804) #804
Memory manager E2E test fixes (#784) #784
Some unit tests fail with go1.19 as some modules require 1.20 (#794) #794
e2e: add expected max latancy to hwlatdetec test & rename constant (#719) #719
OCPBUGS-18662 : e2e:rps: improve logging (#787) #787
Full changelog
OCPBUGS-24086 : Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART #319
OCPBUGS-28946 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #327
OCPBUGS-22956 : Remove blockage of ConfigObserver by build informer HasSynced flag #315
Revert “Revert #300 “API-1666: add image pull secret cleanup controller”” #314
Revert #300 “API-1666: add image pull secret cleanup controller” #313
API-1642 : add image pull secret cleanup controller #300
API-1642 : Do not generate image pull secrets for internal registry when internal registry is disabled. #298
OCPBUGS-21830 : bump(k8s,openshift) to address CVE-2023-44487 #308
OCPBUGS-20164 : Include Build CRD in manifests #306
WRKLDS-806 : Bump kube dependencies to 1.28.2 #305
OCPBUGS-19136 : Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #304
OCPBUGS-18932 : Always sort disabled controller list #302
OCPBUGS-18498 : Disable BuildConfigChange controller when Build cap is disabled #299
Full changelog
OCPBUGS-24077 : Updating ose-cluster-platform-operators-manager-container image to be consistent with ART #104
manifests: Simplify filenames for default runlevel #101
Makefile: Drop yq prerequisite from ‘manifests’ target #103
OCPBUGS-22457 : manifests/0000_50_cluster-platform-operator-manager_07-aggregated-clusteroperator: Drop namespace #100
switch to bingo for dependency management (and bump golangci-lint@v1.51.0) #95
OCPBUGS-20511 : Bump golang.org/x/net to v0.17.0 #92
OCPBUGS-19118 : Updating ose-cluster-platform-operators-manager images to be consistent with ART #91
Full changelog
Source code for this page located on github