Back to index
4.8.0-0.okd-2023-04-19-211216 Download installer and client with:
oc adm release extract --tools registry.ci.openshift.org/origin/release:4.8.0-0.okd-2023-04-19-211216 Team Approvals:
No tests for this release
Loading changelog, this may take a while ...
Created: 2023-04-19 21:12:22 +0000 UTC
Image Digest: sha256:eadc7dbb6c0d154c106597a17dc9364ce9eca6176eb6dfa3388bef891edf9fe4
Components
Kubernetes 1.21.14
Fedora CoreOS 48.34.4
OCPBUGS-46361 : Mark adm pod-network command as hidden and depcated #1955
OTA-1393 : status: recognize multi-arch in node phase (2) #1933
OCPBUGS-19824 : release new: replace 0.0.1-snapshot in all manifests #1945
OCPBUGS-18961 : pkg/cli/admin/release/extract_tools: Enable ImageRegistry, etc. on 4.13-to-4.14 #1539
OCPBUGS-45991 : Mark –report and –pxe flags as experimental #1951
OCPBUGS-45311 : fix oc adm node-image create –pxe command to copy the correct artifacts #1931
OCPBUGS-45754 : Updating openshift-enterprise-deployer-container image to be consistent with ART for 4.19 #1946
NO-JIRA: adm release: simplify safe manifests mappers #1942
OCPBUGS-45454 : Update to 4.19 and Go 1.23.0 #1938
NO-JIRA: adm release: clarify manifest processing #1936
OCPBUGS-45363 : adm node-logs: Also parse logs when encountered with standard html header #1934
NO-JIRA: adm release: simplify image-references
check #1930
OTA-1393 : status: recognize multi-arch in node phase #1928
OCPBUGS-45022 : Obfuscate sensitive data in Proxy resource while inspection #1929
OTA-1393 : status: recognize multi-arch in target version #1926
no-jira: Documentation fix: add missing whitespace character #1911
NO-JIRA: adm release: simplify manifest iteration #1917
OTA-1393 : status: compute mcoImagePullSpec only once #1924
OTA-1393 : status: recognize the process of migration to multi-arch #1920
Revert “OCPBUGS-37344: Skip inspection of the daemonset pods running on data plane” #1921
AGENT-1032 : oc adm node-image: make monitor and create commands log more similar #1919
AGENT-1000 : improve oc adm node-image output #1916
OTA-1340 : upgrade status: show updating cluster operator names in the output #1882
NO-ISSUE: pkg/cli/admin/upgrade/recommend: “no known issues” placeholder, etc. #1908
OTA-1224 : status: simplify worker status line #1915
OCPBUGS-44388 : add retry in case of image pull error #1909
OTA-902 : pkg/cli/admin/upgrade/recommend: Treat Upgradeable=False as a conditional update risk #1907
NO-JIRA: Fix newapp unit test failure by using different image #1910
OCPBUGS-8259 : pkg/cli/admin/upgrade: Propagate –force for –to-multi-arch #1906
WRKLDS-1320 : Support PXE files with “node-image create” #1898
OCPBUGS-43309 : The “oc adm ocp-certificates regenerate-machine-config-server-serving-cert” command is failing #1900
OCPBUGS-43513 : Show node-joiner container logs when error occurs #1903
OTA-1273 : pkg/cli/admin/upgrade/recommend: Add –version option for specific releases #1897
API-1835 : gather discovery when using inspect #1901
OCPBUGS-42775 : Do not allow new line in user in create user #1899
OCPBUGS-42601 : Remove redundant defaulting message in description #1896
AGENT-966 : additional rbac policy rules #1895
OTA-1272 : pkg/cli/admin/upgrade/recommend: Show most-recent update options #1889
WRKLDS-1492 : Update k8s dependencies to 1.31.1 #1877
NO-JIRA: OWNERS_ALIASES: Update the username of David Hurta #1890
OCPBUGS-42528 : fix outputname flag for node-image create command #1887
OCPBUGS-37344 : Skip inspection of the daemonset pods running on data plane #1883
OTA-1272 : pkg/cli/admin/upgrade/recommend: Add end-to-end output test coverage #1885
NO-JIRA: Update root-approvers of oc #1881
OCPBUGS-38450 : Fix copy artifacts for all CPU architectures #1855
OCPBUGS-42143 : Check cast result in adm prune deployments to prevent panic #1878
OTA-1292 : upgrade-status: improve messages for NotReady/DiskPressure/NetworkUnavailable #1851
NO-JIRA: Fixing -o flag in command example #1874
OCPBUGS-41519 : Add HOST env var in oc debug for sos report collects more #1873
NO-JIRA: Fixing line that should be commented out #1872
OTA-1271 : Create the oc adm upgrade recommend
subcommand #1863
OCPBUGS-39628 : Updating ose-tools-container image to be consistent with ART for 4.18 #1867
OCPBUGS-41288 : Updating ose-cli-artifacts-container image to be consistent with ART for 4.18 #1871
OCPBUGS-41286 : Updating openshift-enterprise-deployer-container image to be consistent with ART for 4.18 #1870
OCPBUGS-39551 : Updating openshift-enterprise-cli-container image to be consistent with ART for 4.18 #1866
OCPBUGS-39375 : Update push targets of digest with new appended tags #1864
OCPBUGS-30658 : pkg/cli/admin/upgrade: –to-latest help “next” -> “latest” #1861
OTA-1153 : update-status: re-title “Operator Health” #1859
OTA-1309 : hide the empty “Worker Upgrade” section #1858
OCPBUGS-38990 : use proxy settings when required #1857
make the idle command’s scale update unconditional #1853
OTA-1292 : upgrade-status: handle the OS image annotation better #1848
OTA-1292 : upgrade-status: handle unschedulable nodes better #1849
OTA-1292 : upgrade-status: handle expected MCD state better #1847
NO-JIRA: upgrade status
: improve tests for missing annotations #1846
OTA-1212 : Hide or condense control plane sections once successfully updated #1844
OCPBUGS-32053 : Add examples for some oc adm policy commands #1845
OTA-1292 : upgrade-status: bubble up the reason for unavailable nodes #1838
WRKLDS-1318 : flags for single node interface #1841
OTA-1309 : upgrade-status: test a compact cluster and a single-node cluster #1829
WRKLDS-1429 : Adds a guardrail for node-image commands which is supported only for Openshift version 4.17+ #1837
OTA-1153 : upgrade-status: communicate control plane completion clearly #1831
NO-JIRA: upgrade-status: fix HasOSImage function #1834
WRKLDS-1316 : Retry and do not fail when logs cannot be updated #1836
NO-JIRA: upgrade-status: fix a typo in README #1830
WRKLDS-1316 : Remove clusterversions from certificates api group #1835
AGENT-854 : add the required role to support platform type validation #1832
WRKLDS-1316 : oc adm node-image monitor command #1823
OTA-1291 : upgrade status: removes custom nodes from the worker pool (2) #1825
NO-JIRA: Minor wording tweaks for CLI help #1826
OCPBUGS-37345 : Revert “OCPBUGS-35994: pkg/cli/admin/upgrade/rollback: Drop this command” #1827
OTA-1291 : upgrade status: removes custom nodes from the worker pool #1822
: MULTIARCH-4568: Inject ReleaseArch into openshift-install #1792
OCPBUGS-35994 : pkg/cli/admin/upgrade/rollback: Drop this command #1806
no-jira: Extend the kube version check for images/tools/Dockerfile #1813
OCPBUGS-36525 : Bump k8s to 1.30.2 #1812
WRKLDS-1310 : pkg/cli/admin/mustgather: GA since and since-time flags #1811
OCPBUGS-36183 : pkg/cli/admin/prune/renderedmachineconfigs: ‘Error dry-run deleting’ #1807
OCPBUGS-33897 : upgrade status
: control plane completion estimate #1742
OCPBUGS-31848 : don’t manually delete must-gather’s cluster role binding #1790
OCPBUGS-34877 : Ignore pruning when deployment points to replicationcontroller #1797
NO-JIRA: pkg/helpers: remove legacy pkg #1791
WRKLDS-1292 : oc k8s 1.30 bump #1789
NO-JIRA: Update comment about using OpenFileSequential #1793
OCPBUGS-33896 : upgrade status
: polish alert insights #1787
OCPBUGS-32108 : stop loading legacy schemes on global scheme #1775
OCPBUGS-33896 : status/inspect-alerts
: handle non-200 by Thanos #1782
OCPBUGS-34465 : Updating openshift-enterprise-deployer-container image to be consistent with ART for 4.17 #1785
OCPBUGS-33903 : Simplify output when not updating #1774
OCPBUGS-34207 : Updating ose-tools-container image to be consistent with ART for 4.17 #1780
OCPBUGS-34154 : Updating openshift-enterprise-cli-container image to be consistent with ART for 4.17 #1779
OCPBUGS-33762 : Hardcode resource groups/kinds for now #1773
AUTH-482 : set required-scc annotation to privileged for node debug pods #1763
OCPBUGS-33905 : pkg/cli/admin/upgrade/rollback: Gate on OC_ENABLE_CMD_UPGRADE_ROLLBACK #1764
OCPBUGS-33651 : Add s390x based oc into extraction target #1766
OCPBUGS-33896 : add alert data to upgrade health in oc adm upgrade status #1740
OCPNODE-2281 : Support multiple icsps in migrate icsp #1751
OCPNODE-2282 : Support multiple ImageDigestMirrorSet objects in the th… #1756
OTA-1275 : cli/admin/release/git: use optimized git flags #1754
WRKLDS-1251 : Switch cli image to RHEL9 base image #1752
OTA-1154 : pkg/cli/admin/upgrade/status: Drop free-form Progressing output line #1753
OTA-1279 : pkg/cli/admin/upgrade/status: Move Failing from free-form to updateInsight #1744
OCPBUGS-32841 : Bump go-jose indirect reference to 2.6.3 #1747
OTA-1174 : update status
: unify on --details
#1748
OCPBUGS-32786 : Improve error message when binary is not in target list #1746
OCPBUGS-32080 : release: extract ccoctl.rhel8 and ccoctl.rhel9 #1734
OTA-1174 : upgrade status
: Show resources in --details=health
#1737
OTA-1155 : update status
: Simplify CO status line #1741
OCPBUGS-20097 : Migrate tools image to RHEL9 #1652
NO-JIRA: Print an error msg instead of panicking when all image manifests are filtered out #1729
WRKLDS-1190 : oc adm must-gather: print timestamp when logging in fallback mode #1738
OTA-1202 : Changing the conditional risk to known issues #1739
OTA-1174 : upgrade status
: Expand health insights with --detailed=health
#1736
OTA-1174 : upgrade status
: add --detailed=nodes
that shows all nodes #1735
MCO-1056 : MCO-1057: Implement oc adm prune machineconfigs command #1723
NO-JIRA: Report tests for feature #1728
OTA-1036 : adm update status
: Refactor node status #1732
OTA-1036 : adm upgrade status
: Add control plane nodes status #1731
OCPBUGS-31498 : Add OIDC specific certificate authority bundle flag #1720
WRKLDS-1171 : Add openshift-install-fips target to oc release extract #1725
OCPBUGS-31615 : Add help text the behavior of filter-by-os against single image #1721
make output table slightly easier to read #1719
NO-JIRA: update featuregate diff for clusterprofiles #1714
WRKLDS-1128 : revert cli/admin/release/git: use optimized git flags #1718
OCPBUGS-31484 : Remove some of newapp unit tests relying on external deprecated images #1717
WRKLDS-1128 : cli/admin/release/git: use optimized git flags #1708
WRKLDS-1076 : oc idle: Remove redundant endpoint resource modification #1692
OCPBUGS-30703 : Bump coreos/go-oidc to 3.10.0 #1713
WRKLDS-1103 : tools: extend the image with sosreport #1704
OTA-1165 : adm upgrade status
: Add Worker Node Status #1689
OCPBUGS-29623 : Introduce certificate-authority flag for image related commands #1693
OCPBUGS-30212 : oc adm catalog mirror: use ToSlash and FromSlash to unify the path separators #1680
OCPBUGS-30244 : Add images mismatching kubectl version into warning to track #1695
OCPBUGS-30162 : Introduce –issuer-url flag in oc login #1694
NO-JIRA: Bump k8s dependencies to 1.29.1 #1684
OCPBUGS-23386 : Extract oc also for linux/ppc64le #1691
OTA-1080 : pkg/cli/admin/inspectalerts: New tech-preview inspect-alerts subcommand #1674
OCPBUGS-29210 : Update some commands incorrect examples #1686
NO-JIRA: Print log rather than returning an error when kubectl version mistmaches #1685
Do not force the ancient OS version dist tag. #1536
TRT-1503 : Tools image no longer has python;adding #1682
Revert “NO-JIRA: Bump k8s dependencies to 1.29.1” #1683
NO-JIRA: Bump k8s dependencies to 1.29.1 #1681
OCPBUGS-29039 : fix copy-to-node #1679
OCPBUGS-28540 : Copy oc.rhel8 instead of symlink #1669
OCPBUGS-27732 : Bump joelanford/ignore to bump go-git to 5.11.0 #1671
WRKLDS-1016 : Bump kube dependencies to 1.29.0 #1661
OCPBUGS-27957 : pkg/cli/admin/inspect: use since/since-time for previous container logs #1666
NO-JIRA: Fix –parallelism flag formatting in help #1664
NO-JIRA: pkg/cli/admin/inspect: format RFC3339 parse error #1663
OCPBUGS-28230 : add FallbackToLogsOnError for easier debugging #1667
OCPBUGS-27489 : Use correct hash sum of extracted tarball after re-signing with codesign #1659
NO-JIRA: Simplified kubectl component version check #1662
CNV-37284 : Add –all-images flag to must-gather #1633
Revert “WRKLDS-1016: Bump kube dependencies to 1.29.0” #1660
WRKLDS-1016 : Bump kube dependencies to 1.29.0 #1655
NO-JIRA: Consider kubectl version checks only from cli and cli-artifact images #1656
WRKLDS-998 : oc login: Built-in cred exec plugin implementation and wiring #1640
NO-JIRA: adm update status: add TODOs to remind us to revise early decisions #1654
WRKLDS-1012 : oc adm must-gather: pull gather container logs #1641
WRKLDS-950 : add since and since-time flags to limit log collection on must-gather #1648
WRKLDS-1010 : pkg/cli/admin/inspect: use since/since-time for rotated logs #1653
NO-ISSUE: add information about featuregate diff in a particular release #1650
NO-JIRA: report kubectl version to the release controller #1651
OCPBUGS-25461 : Add RHEL9 and RHEL8 based oc as new targets in command extraction #1647
OTA-1087 : Add upgade health section to adm update status
#1636
OCPBUGS-19807 : pkg/cli/admin/release/extract: Log a warning on –credentials-requests without –included #1551
NO-JIRA: Sanitize path using filepath Clean #1645
OTA-492 : pkg/cli/admin/upgrade/rollback: New rollback command #1642
NO-JIRA: oc adm prune images: fix –certificate-authority flag name in validation code #1644
OCPBUGS-25703 : validate tag name on creation #1643
NO-JIRA: Migrate from deprecated ioutils to relevant libraries #1602
OCPBUGS-23386 : Generate FIPS compatible RHEL9 oc binary #1632
OCPBUGS-25021 : Bump ocp images to 4.16 in addition to go 1.21 #1628
OCPNODE-1656 : oc release extract: Introduce –idms-file and deprecate icsp-file #1624
OCPBUGS-24834 : Bump api to include the new CloudCredential cap #1622
OCPBUGS-24225 : Remove deprecated password defaulting in default config flag #1619
OCPBUGS-24375 : Overwrite template’s namespace with the explicit one #1612
OCPBUGS-23723 : Add .snyk file to exclude vendor and ignore unit tests #1604
ACM-7713 : Skip related objects which are invalid #1550
OTA-1035 : adm upgrade status
Add control plane update status #1597
OCPBUGS-23071 : Mention inspection completion in the error message #1601
NO-JIRA: Add client version in must-gather summary #1603
WRKLDS-908 : Promote some experimental commands, deprecate others #1596
WRKLDS-860 : Add volume usage percentage checker script in must-gather’s gather container #1533
OTA-1035 : Allow testing adm upgrade status
on mock data #1595
NO-JIRA: Drop the experimental info for registry login and must-gather commands #1594
Updating content type variable name for CLI docs generation #1591
WRKLDS-874 : oc whoami: Ask from selfsubjectreview and fallback to internal oauth #1588
moved cert sharing library #1532
OCPBUGS-21612 : Use mutex to prevent concurrent writes #1589
OCPBUGS-20500 : Add directive example to kubelet-restart command #1586
pkg/cli/admin/upgrade/status: Add update duration #1583
oc/*: gracefully fail when user group is not configured #1585
create/identity: fail gracefully when no user API exists #1582
pkg/cli/admin/update: Add tech-preview ‘oc adm upgrade status’ #1554
OCPBUGS-20500 : Fix some commands incorrect examples #1581
OCPBUGS-9340 : pkg/cli/admin/upgrade: Warn on unrecognized subcommands #1557
OCPBUGS-20381 : Bump golang.org/x/net to v0.17.0 #1578
OCPBUGS-20528 : Revert “OCPBUGS-7465: Bump distribution/v3 to sync with oc-mirror” #1575
OCPBUGS-20474 : Set ImportPolicy to PreserveOriginal to honor –keep-manifest-list when mirroring a payload to an image stream #1572
OCPBUGS-20342 : Reflect container’s exit code for long running tasks not attached to terminal #1571
OCPBUGS-20063 : regeneratemco: explicitly check for PlatformStatus field #1555
OCPBUGS-7465 : Bump distribution/v3 to sync with oc-mirror #1556
OCPBUGS-20181 : Use quay redis image instead docker mysql #1559
OCPBUGS-7465 : Introduce refreshable dynamic credential store for image manifests #1540
Updating excluded list of unsupported oc adm commands in MicroShift #1558
WINC-692 : Add Windows node functionality to debug command #1524
WRKLDS-537 : oc adm release info: Add –first-parent to git log for simplification #1552
WRKLDS-806 : Bump kube dependencies to 1.28.2 #1547
OCPBUGS-19282 : Updating ose-tools images to be consistent with ART #1545
OCPBUGS-19281 : Updating openshift-enterprise-deployer images to be consistent with ART #1544
OCPBUGS-19517 : remove unsupported commands from microshift docs #1548
OCPBUGS-19283 : Updating ose-cli-artifacts images to be consistent with ART #1546
OCPBUGS-19129 : Updating openshift-enterprise-cli images to be consistent with ART #1542
OCPBUGS-17925 : pkg/cli/admin/prune/images: omit not found error for deployment configs #1530
OCPBUGS-17253 : Bump go x/net library to 0.13.0 #1529
OTA-559 : Revert “Revert “pkg/cli/admin/release/extract: Add –included and –install-config”” #1528
OCPBUGS-17711 : Revert “pkg/cli/admin/release/extract: Add –included and –install-config” #1527
Update openshift/api #1525
OTA-559 : pkg/cli/admin/release/extract: Add –included and –install-config #1521
Stop using deprecated github.com/docker/docker go APIs #1514
OCPBUGS-16735 : Truncate existing files when writing from inspect #1520
introduce plugin and plugin shadowing tests for oc #1424
pkg/cli/admin/upgrade: Newlines after –allow-upgrade-with-warnings errors #1519
Add profiling functionality and flags in oc #1516
Fix typo in /var/log folder #1517
login: improve usage message for –web option #1513
Bump k8s packages to 1.27.4 #1515
OTA-994 : pkg/cli/admin/release/extract: Centralize manifest extraction #1404
OCPBUGS-16009 : reboot: set ignition version to 3.1 #1499
Add tls-server-name when property exists in kubeconfig #1456
OCPBUGS-15776 : mcs cert: account for environments that use IP directly #1497
OCPNODE-1656 : oc release info: Introduce –idms-file and deprecate –icsp-file #1465
AUTH-355 : Add OAuth2 Authorization Code Grant Flow for login #1402
upgrade distribution No 2 #1495
WRKLDS-700 : bump(k8s) to v1.27.2 #1420
OCPBUGS-15012 : oc image extract: idms-file flag map to IDMSFile field #1464
Correct incorrect command in observe command #1419
Clarify the use of the filter without keep-manifest-list #1414
OCPBUGS-10612 : make registry auth prefence default to podman config locations #1376
handle the error case of node retrieval while waiting for reboot #1482
Fix the output of error prompt #1433
pkg/cli/admin/upgrade: Surface Recommended=Unknown more prominently #1442
pkg/cli/admin/upgrade: Add post-period to space to some error messages #1330
Wait for reboot #1473
tweak output format #1471
OCPNODE-1580 : Add –print-mirror-instructions to oc adm release mirror to allow idms instructions #1341
add reboot-nodes #1468
Trust check #1469
fix directories for consistency #1467
ocpcertificates: add ability to rotate MCS CA/cert #1450
OCPNODE-1656 : oc image extract: Introduce IDMS as alternative source #1426
pernodepod: percent works like this #1463
ocpcertificates: don’t make assumptions on resources not to bring pip… #1462
allow running a command while the kubelet is off #1459
add command to create new bootstrap kubeconfig for kubelet #1458
ocpcertificates: fix handling resources by names explicitly + other cosmetic fixes #1460
tweaks needed for wait #1455
Add a command to remove older trust #1447
create command to create new adminkubeconfig #1452
add a command to copy content to every node #1454
Minor updates to CLI help text #1453
add command for regenerating OCP leaf certs #1443
add a new command to wait for all clusteroperators to go stable #1444
add command to produce an updated CA bundle for trusting the kube-apiserver #1446
add printing for new revisions #1445
add oc adm ocp-certificates regenerate-top-level #1439
OCPBUGS-11652 : Extend adm node-logs to new API #1403
OCPBUGS-12793 : adds a mapping for exposed ports to DockerConfig when manifest listed #1415
OCPBUGS-14340 : Name containers w/‘multi’ when mirroring a multi release image #1423
OCPBUGS-11123 : oc adm groups sync: all groups: print warning before caching #1436
OCPBUGS-11632 : Skip invalid events yamls and continue #1429
OCPBUGS-14082 : Remove closed centos7 registry from newapp unit tests #1430
OCPBUGS-12901 : preserve explicit release image in ClusterVersion #1416
OCPBUGS-11123 : oc adm groups sync: fix the annotation key #1427
OCPBUGS-11123 : oc adm groups sync: print a warning when two or more groups are mapped to the same ldap uid #1425
OCPBUGS-13355 : Use RequestToken functions from library-go #991
OCPBUGS-11632 : Improve error log messages in event filtering #1417
OCPBUGS-12143 : oc login: unwrap tls.CertificateVerificationError to use x509 errors #1406
pkg/cli/admin/upgrade: Clarify client-side vs. server-side docs #1181
replace trimLeft with trimPrefix #1400
Support OCI manifest lists in image mirror #1362
OCPBUGS-8004 : Fix bug when recreating an index with fewer images #1335
adm catalog mirror update example to idms #1401
OCPBUGS-10843 : oc debug unique pod name #1393
adm catalog mirror generates idms manifest #1389
OCPBUGS-1115 : Use linux/arch when user’s OS isn’t in manifests #1311
Remove already deprecated adm create-kubeconfig command #1367
append: expose keep-manifest-list option and preserve manifestlist when appending to specific arch images #1361
Updating ose-tools images to be consistent with ART #1369
OCPBUGS-8048 : pkg/cli/admin/upgrade: Client-side checks for –to-multi-arch #1359
IR-300 , IR-301 : generates ImageStreamTags with import-mode when using oc new-build and oc-new-app #1353
OCPBUGS-10879 : Fix deprecated oc command suggestion #1390
Exclude irrelevant commands from MicroShift documentation #1375
Test Fix: Allow submodule using file transport with newer git #1378
Updating openshift-enterprise-deployer images to be consistent with ART #1368
Updating openshift-enterprise-cli images to be consistent with ART #1364
OCPBUGS-3393 : Always copy the blobs if the target isn’t a registry #1355
Updating ose-cli-artifacts images to be consistent with ART #1370
OCPBUGS-1117 : The architecture of oc in the cli-artifacts’ /usr/bin folder should to the one of the built image #1374
OCPBUGS-10622 : bump repo sclorg/s2i-ruby-container location for newapp test #1377
Add microshift into generate-docs #1365
OCPBUGS-5949 : Add subrepository support for ICSP #1350
Microshift command docs #1357
Do not set master node selector if there’s no masters #1347
OCPBUGS-7190 : Reuse LDAP connection when performing group sync #1336
Adding CommitDate
to the Changelog json output #1348
OCPBUGS-7780 : pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates #1346
Use registry.k8s.io and update image version #1343
Add icsp file convert command #1238
OWNERS_ALIASES: Update approvers: add David, remove Jack #1340
oc debug: Use own fields instead directly depending on Attach’s #1337
Updating ose-tools images to be consistent with ART #1308
WRKLDS-594 : Bump to v1.26.1 #1329
OCPBUGS-3473 : oc adm release new: allow specifying crio and kernel versions #1287
OCPBUGS-6011 : Fix kube version from 1.24.1 to 1.25.2 #1325
Removing unwanted character from changelog output #1326
WRKLDS-629 : release run-namspace functionality #1322
OCPBUGS-5010 : Remove must-gather pod after it completes when explicit namespace is used #1320
Enable Changelog to output in JSON #1321
IR-261 : Add –import-mode to ‘tag’ #1312
IR-260 : Add CLI flag to set ImportMode when importing a tag #1289
OCPBUGS-4906 : oc process: Set original namespace if it differs #1318
Updating ose-cli-artifacts images to be consistent with ART #1309
Update errors when debug pod fails #1314
Expose events command to land k8s 1.26 #1315
handle admission webhook lists and CRD conversion webhooks #1301
OTA-818 : pkg/cli/admin/upgrade: Support –to-multi-arch per OTA-818 #1285
WRKLDS-629 : oc adm must-gather: unhidden –run-namespace flag #1313
FDN-112 : Parse any jira reference from commit text, not just OCPBUGS #1306
IR-266 : Add image manifests to ‘describe image’ #1310
Updating openshift-enterprise-deployer images to be consistent with ART #1307
Handle non-amd64 command pulls from amd64 payload #1259
OCPBUGS-4517 : oc adm release: Support extracting commands in specified architectures #1305
Rename registry.svc.ci.openshift.org to registry.ci.openshift.org #1304
OCPBUGS-3526 : Proceed archive if Lsetxattr gets unsupported error #1296
Updating openshift-enterprise-cli images to be consistent with ART #1302
OCPBUGS-4280 : oc import-image: reflect import image error #1300
pkg/cli/admin/release/info: Render multi-arch release information #1292
pkg/cli/admin/upgrade: Drop “force” from “No updates available” #1291
OCPBUGS-3714 : pkg/cli/admin/upgrade: Report on Failing!=False conditions #900
switch the deployer pod to use apply client to avoid conflicts #1288
release: extract linux/arm64 binaries from all payloads #1276
go.mod: update github.com/containers/image #1278
Promote ardaguclu to oc approver #1280
remove support for empty files and stdout in oc registry login #1277
Bump go to 1.19 in go.mod #1262
Bug 2093046 : oc debug: Add priorityClassName into node debugging pod template #1263
use correct namespace with sample templates #1272
Do not try to load plugins for cobra commands #1267
Bug 2078694 : New-App Using Git via SSH #1269
OCPBUGS-2495 : pkg/cli/login: Warn, but do not fail, on surprise project-list errors #1268
IR-262 : Keep manifest list children #1229
oc debug,version: minor todo improvements #1265
pkg/cli/admin/release/extract: Don’t print image metadata verification messages when extracting to stdout #1264
pkg/cli/admin/release/extract: Unify extraction cases #1237
OWNERS_ALIASES: Freshen update-approvers #1260
Bug 2059125 : release extract: Add binary re-signing for macos arm64 #1242
Bug 2000554 : oc inspect: Also gather namespaces in which webhook services are running #1258
add support for –next flag in oc adm release new #1243
oc 4.12 kubernetes 1.25.2 bump #1250
Bug 2033167 : oc extract: Create target directory if not exist #1248
Update login.go #1188
Add –overwrite flag into pod security violation error message #1234
OCPBUGS-613 : oc adm logs: generate proper path for static pods #1231
OCPBUGS-852 : cli/debug: Create temporary namespace for node debugging #1236
Bug 1879980 : Bump go-ldap module to v3 #1226
Updating openshift-enterprise-deployer images to be consistent with ART #1200
Updating ose-cli-artifacts images to be consistent with ART #1202
Updating openshift-enterprise-cli images to be consistent with ART #1195
Bug 2087679 : [inspect] Add EgressQoS to inspect #1148
Updating ose-tools images to be consistent with ART #1201
Give a complete oc label command in pod security error message #1228
Bug 2112934 : Add servicemonitors into common namespaces for inspection #1224
Bug 2108307 : Set HostIPC to true when debugging node #1218
Bug 2111537 : (image info): Introduce show-multiarch flag #1217
Bug 2095708 : oc adm inspect: check a resource exists before its inspection #1215
Bug 2092731 : Change error message to signal passing keep-manifest-list flag #1213
Bug 1880865 : Avoid TLS cert checking when login with –insecure-skip-tls-verify=true #1161
Bug 2105325 : Add ManifestListDigest field to release info struct #1203
Add unit tests for release new package #1197
Support for identity token #1199
release info bug printing: enable --skip-bug-check
for --output=json
#1204
release: extract ccoctl #1194
Bug 2103126 : set proper pod security ns labels #1187
Bug 2100702 : Set hasMedataOverrides to true when ToImageBase is set #1192
Bug 2100166 : Add new IsManifestList flag into ReleaseInfo struct #1185
Bug 2101885 : Set completion function for get command #1186
Bug 2100702 : Use from-release as based image when base digest is invalid #1183
Bug 2100708 : Lower chosen platform architecture/OS log level #1184
Bug 1905850 : add a new option for checking a subresource to oc adm policy who-can #1179
Bug 2015321 : Add destdir special character validation in must-gather #1178
Bug 2100138 : Add json support for release info bug printing #1177
Bug 2099637 : Use filter options only when keep-manifest-list is true #1176
Bug 2096855 : extract linux/amd64 to read release metadata #1174
Bug 2057633 : add validations for a pod & container to rsync #1087
Bug 1957668 : show console URL when asking for Authentication #883
Bug 2097334 : ensure kubectl name is replaced in plugin cmd #1173
Bug 1823143 : add –icsp-file option to adm release subcommands #1169
Bug 2090692 : fix version from 1.24.0 beta to 1.24.1 #1168
Bug 1999891 : bubble errors which happen prior to collection to BackupGathering #1093
Bug 2090266 : add –filter-by-os support in oc adm release extract and linux/amd64 for getting IS during mirror #1167
Bug 2093797 : deprecate –service-account flag for oc registry login #1166
Bug 2088483 : update ‘oc adm catalog mirror’ command to accept –continue-on-error flag #1152
*: add relevant code owners for catalog alias #1159
Bug 2087103 : pkg/cli/admin/upgrade: “Updating to” -> “Requesting update to” #1156
Bug 2090692 : Beautify help and align with kubectl output #1121
Bug 2086519 : pkg/cli/debug: suggest pod security labels on violations #1155
Add user coreydaley as an approver #1144
Bug 2090751 : Correcting skipMissing flag usage when a manifest cannot be found #1105
Bug 2083770 : Change release signature file extension to json #1151
Bug 2040654 : Pass pod exit error codes to user #1150
Bug 2083999 : Delete recently created images when –prune-over-size-limit is used #1143
Bug 2086459 : Continue inspection when some resources are not found #1137
Bug 2065507 : Add the ReleaseAccepted condition to the oc adm upgrade command #1113
Update images to be consistent with ART #1132
release: update oc source URL in client READMEs #1129
WRKLDS-370 : copy manifests from linux/amd64 to all manifests in a list #1120
Enable using existing namespace for must-gather operations #1080
Bug 2023295 : [inspect] Add namespace-scoped networking resources to inspect #1128
Bug 2074237 : clarify use of –image-stream for oc new-app #1119
Deprecate oc serviceaccounts command #1126
Replace temporary show-managed fields hack with a proper solution #1127
Bug 2080416 : Fix project command auto completion #1125
Remove long-deprecated commands oc adm migrate etcd-ttl|image-references|legacy-hpa|storage #1124
Fix squash merge regex #1118
Bug 2007647 : Add squash-merge support into oc adm release info #1116
Bug 2071614 : Remove network CRDs scheme registration #1110
Bug 2074902 : Pass non-zero exit code to debug command #1115
adm inspect: delete unused pod URL getting code #1032
Bug 2073113 : do not report docker conf deprecation warning when the docker is not available #1106
Drop k8s carries and bump to kubectl v0.24.0-beta-0 #1092
Bug 2075647 : pkg/cli/admin/upgrade: Use PATCH instead of POST for spec updates #1111
Add –keep-manifest-list support to oc adm release *
commands #1109
Bug 2041454 : Validate reference-policy for import-image command #1108
Bug 1823143 : wire ICSP lookups to oc image info #829
Use ServerGroupResources instead deprecated ServerResources #1101
Introduce Jira defects into release info #1100
Fix component name for oc #1102
pkg/cli/admin/mustgather: label must-gather ns as privileged #1099
Obtain OpenShift version from ClusterVersion resource #1091
Allow triggers on batch/v1 CronJobs #1077
pkg/cli/admin/upgrade: Mention channel choices #1088
Add Nutanix platform #1046
Bug 2057101 : remove klog format and update messages for docker config deprecation #1082
Bug 2056893 : pkg/cli/admin/upgrade: Drop –to-image help warning #1078
Bug 2049889 : logging / help improvements around ‘oc new-app –search’ #1086
Bug 2056122 : expose –keep-startup flag for oc debug #1085
Bug 2052578 : reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories #1059
Add support for batch/v1 CronJob #1081
OSDOCS-3257 : Adding in new metadata requirement for docs #1072
Update all images to be consistent with ART #1071
Updating openshift-enterprise-cli images to be consistent with ART #1039
Bug 2049234 : Fix mirroring images that have dots in their namespace #1063
Bug 2052034 : make sure that we check for resorces and files before picking the simplest path #1062
Bug 2049133 : Fix catalog mirror from files #1058
Comment tolerations used in must-gather #1004
Remove unused methods and re-use pre-existing ones where needed #951
Show managedFields in inspect #1051
Bug 2046319 : improve error message for debug #1053
Bug 2047895 : release: handle aarch64/arm64 naming disparity in mirror #1038
Bug 2044140 : pkg/cli/admin/upgrade: Fix nextStep option sense #1050
Add TMOUT env to debug node pod #1048
Bug 2044140 : Updated the error message to include the suggestion #1041
Bug 2035717 : Enhancing the output provided when backup collections are attempted #1013
Bug 1976894 : Idling a StatefulSet seems to work however accessing the Services Route does not wake up the application (“Application is not available” error page is returned). #1026
Bug 2039359 : Fix adm prune rs orphans #1030
Bug 1972962 : Add validation for max-icsp-size flag #851
Bug 1999246 : adm catalog mirror should ignore .indexignore files #918
Bug 2042059 : bump discovery burst and qps #1033
Bug 2038160 : Inform user about inability to schedule a debug pod #1029
Bug 1990014 : Throw error when debugging Windows nodes #1028
Bug 2039311 : Add support for build csi volume source #994
Bug 2039491 : Remove git://
from new-app tests #1020
Bug 2036826 : Improved prune deployments #1019
Ignore VSCode files #1018
Bug 2036826 : Fix prune deploy resolver #1015
Bug 2036940 : allow empty files and stdout in oc registry login #1011
Bug 1992596 : Remove admin bashcomp func #1014
Bug 2035393 : properly handle –dry-run=server #1010
Bug 2034889 : Fix another prune panic #1008
Bug 2034889 : Fix prune deployment panic #1005
Bug 2033751 : Revert “Modified MG pod tolerations” #1003
Bug 2033751 : pkg/cli/admin/inspect: Fix “ocurred” -> “occurred” typos #1002
Bug 2033751 : Bump k8s.io to v0.23.0 #1001
Bug 2032111 : requestproject: use agnhost serve-hostname #995
Modified MG pod tolerations #942
Adding the flag –allow-not-recommended to oc adm upgrade #986
release: extract darwin/arm64 openshift-install #1000
Add darwin/arm64 oc #990
oc adm prune deployments for ReplicaSets #987
Fix documentation issue #937 #944
feat/oc-release-extract-cco: add support for alibabacloud #978
fix registry-config messages and imports #983
Bug 1982498 : default to podman credential configs #893
Bug 1858760 : allow Authorization Service URL to differ from Registry URL when retrieving tokens #924
Adding an example for oc adm upgrade #977
Bug 2020377 : add linux capability for host network packet captures #962
Fix docs for oc adm policy add-role-to-user vs oc policy add-role-to-user #973
Drop patches for apimachinery and client-go forks #976
mustgather: add NodeName to destDir folder name #965
Bump go.mod for go1.17 #974
Updating ose-tools images to be consistent with ART #932
Display conditional and not-recommended versions #961
Introduce an option to retrieve rotated log files for a pod #958
Updating ose-cli-artifacts-alt images to be consistent with ART #933
GitHub-38217: Removing old example that mentions limitSecretReferences #967
pkg/cli/admin/upgrade: Indent multi-line messages #952
Bug 1952230 : pkg/cli/admin/upgrade: Always run all client-side checks #812
Bug 1878925 : pkg/cli/admin/upgrade: Remove help text around history lookups #566
bump openshift/library-go #949
fix update-generated-completions.sh #948
Bug 1987257 : Always set User-Agent header for registries #915
PowerVS support #955
Bug 1970805 : Replace slashes in suggested ImageStream name #922
Re-use DialContext and Proxy configuration from original http.Transport #837
runAsNonRoot in Pod SCC should be nil when oc debug run with --as-root
#880
Adjust oc with kubectl and several cleaning items #946
Bug 1926522 : oc adm catalog mirror tmp directory cleanup #935
Drop policy mentions in oc adm policy help #943
Add MacOS local building instructions to README #936
Bug 1977414 : check BuildConfig Secrets and ConfigMaps before start-build creates a build #919
OWNERS: Prune crawford #930
Bug 2002950 : Define a Command instead of Arguments for Container #925
Bug 1992680 : pkg/cli/admin/upgrade: Changing “Updates” string to “Available Updates” #903
Bug 1992591 : ensure the same oc is used everywhere in cli-artifacts #904
Bug 1990014 : Use cmd for Windows pods #907
Bug 1996881 : adm catalog mirror: log deprecation message when sqlite-based catalog is in use #908
Bug 1994872 : Fix manifest path regression #906
Bug 1989504 : The code logic of channel clear is ambiguous, as well as the help info and output messages #891
Bug 1989505 : bump kubernetes-client-go library #909
Bug 1999159 : Update the catalog-related owner alias’ #910
Bug 1995291 : Remove docker adjective whenever possible. #767
Bug 1995573 : Replacing kubectl with oc adm in help for certificate ap… #905
Bug 1989391 : Revert to UnstructuredList to fix yaml output #895
Bug 1992680 : pkg/cli/admin/upgrade/upgrade: Copy edits, including “assists with cluster upgrades” #899
Bug 1786835 : Check for out of range condition #894
Bug 1903545 : Replace colons with dashes in Windows file paths #897
Bug 1986003 : Bump k8s.io to 1.22.0-rc.0 #890
Bug 1971332 : revert incorrect allowance of ssh:// prefix with scp styled URLs #875
Add support for declarative configs to “adm catalog mirror” #868
Support ibmcloud provider in release extract #852
Bug 1980118 : Keep workload annotations during the oc debug
call. #887
Bug 1978629 : Add oc describe output for build volumes #874
Bug 1955292 : show consistent unit format in cluster resource quota describe #882
contrib/completions/OWNERS: Delegate to all approver aliases #878
pkg/cli/admin/upgrade/channel: Add ‘oc adm upgrade channel …’ #576
Bug 1976112 : Fixed warnings about deprecated CronJob in image-pruner pods #876
release: extract Linux binaries for multiple architectures #816
BUILD-87 : bumping openshift/api with new fields for build volumes #843
Bug 1925534 : Add proxy to oc #751
Updating openshift-enterprise-cli-alt images to be consistent with ART #855
Updating openshift-enterprise-deployer images to be consistent with ART #856
Updating ose-cli-artifacts-alt images to be consistent with ART #858
Updating ose-tools images to be consistent with ART #857
fix typo in examples template #739
Bug 1973643 : make oc logs work with BuildConfig’s JenkinsPipeline strategy #863
Update ruby-hello-world images #860
Add json.Valid check before trying to read docker config #747
Full changelog
OCPBUGS-44786 : add support for the LLC alignment cpumanager policy option #2136
WRKLDS-1449 : Update to Kubernetes v1.31.3 #2141
OCPBUGS-44896 : Enable format library for 4.18 #2139
TRT-1835 : Add an openshift-tests-extension compatible test binary #2105
OCPBUGS-34373 : Bump library-go to fix routes/custom-host permission for externalCertificate #2129
NO-JIRA: drop openshift-sdn references #2057
SDN-5457 : Bump kube-proxy image to 4.18 base images #2127
SDN-5457 : Add Dockerfile for standalone kube-proxy image #2082
WRKLDS-1449 : Bump k8s api to 1.31.2 #2122
OCPBUGS-28812 : UPSTREAM: <carry>: kubelet/cm: fix bug where kubelet restarts from missing cpuset cgroup #2031
OCPBUGS-39004 : CRD type check test fix #2116
OCPBUGS-38838 : Re-enable 1.31 kubectl tests #2114
TRT-1867 : Revert #2067 “OCPBUGS-39305: log only deprecated api requests” #2112
OCPBUGS-39305 : log only deprecated api requests #2067
WRKLDS-1449 : Update Hyperkube Dockerfile with the right Kubernetes version #2102
WRKLDS-1449 : Rebase 1.31.1 #2092
OCPBUGS-41172 : Updating openshift-enterprise-pod-container image to be consistent with ART for 4.18 #2076
OCPBUGS-42120 : UPSTREAM: 125398: Fix issue with scheduler failing on hostname mismatch #2095
NO-JIRA: UPSTREAM: <carry>: retrying etcd Unavailable errors for the etcd health and ready checkers #2079
OCPBUGS-39004 : UPSTREAM: 127243: Fix invalid label use in validatingadmissionpolicy e2e #2080
OCPBUGS-36295 : UPSTREAM: 126295: dynamiccertificates: denoise Kubelet logs by skipping removal of non-existent file watchers #2064
OCPBUGS-38515 : UPSTREAM: <carry>: bump cadvisor version to fix missing network stats #2074
NO-JIRA: UPSTREAM: annotate audit events for requests during unready phase and graceful termination phase #2077
OCPBUGS-39004 : UPSTREAM: 126994: Add required FieldManager for validatingadmissionpolicy e2e #2069
NO-JIRA: UPSTREAM:<drop>: bump openshift/library-go@4d55b6d #2068
OCPBUGS-38336 : UPSTREAM: 126641: e2e/storage: update block device test to always specify a valid path #2054
NO-JIRA: update downstream owners #2047
OCPBUGS-35297 : UPSTREAM: 126470: Move APIServingWithRoutine to alpha and disabled by default #2044
OCPBUGS-37620 : Bump 1.30.3 #2038
NO-JIRA: UPSTREAM: 126213: add test about container metrics from cadvisor #2040
OCPBUGS-37281 : UPSTREAM: 126104: Add funcs in pkg/filesystem/util to set file permissions on Windows and update container log dir perms #2034
OCPEDGE-1181 : UPSTREAM: <carry>: update test annotations for sno #2033
NO-JIRA: add tool to validate test packages imported #2024
OCPBUGS-36742 : UPSTREAM: <carry>: sync imports #2017
OCPBUGS-37111 : UPSTREAM: 125404: Fix that PodIP field is temporarily removed for a terminal pod #2025
NO-JIRA: UPSTREAM: <drop>: bump(github.com/openshift/apiserver-library-go) #2023
MULTIARCH-4229 : UPSTREAM:<carry>:bump cadvisor for 3516 upstream patches #2012
OCPBUGS-36743 : UPSTREAM: <carry>: inject k8s version from hyperkube Dockerfile #2018
OCPBUGS-34294 : OCPBUGS-34309: UPSTREAM: <carry>: update base image #1998
API-1783 : Bump 1.30.2 #1996
OCPBUGS-14613 : drop carry “don’t fail integration due to too many goroutines” #1995
OCPBUGS-34544 : UPSTREAM: <carry>: Disable PersistentVolumeLabel by default #1991
OCPBUGS-34050 : Backport 125337 #1987
OCPBUGS-34544 : UPSTREAM: <carry>: Disable e2e tests that need PersistentVolumeLabel #1986
OCPBUGS-34593 : UPSTREAM: 124933: [Scheduler] Use allNodes when calculating nextStartNodeIndex #1983
API-1783 : UPSTREAM: <carry>: skip PodLifecycleSleepAction test #1982
API-1783 : UPSTREAM: <carry>: skip storage tests #1981
OCPBUGS-25331 : UPSTREAM: <carry>: extend termination events #1827
API-1783 : Bump 1.30.1 #1979
API-1783 : Rebase 1.30.0 #1953
OCPBUGS-33574 : bump openshift/library-go@e22d25a #1967
OCPBUGS-32934 : UPSTREAM: 124795: e2e: DaemonSet maxSurge test should account for terminated pods #1966
no-jira: UPSTREAM <carry>: add native build to installer image #1961
API-1809 : Provide SCC access via RBAC #1959
NO-JIRA: UPSTREAM: <carry>: Revert create readyz event for kubeapi server #1957
OCPBUGS-20097 : Migrate tools image to RHEL9 #1954
OCPBUGS-32296 : Bump K8s api to 1.29.4 #1947
OCPBUGS-22301 : UPSTREAM: <carry>: Fix garbage-collection for CRDs. #1811
OCPBUGS-26440 : UPSTREAM: <carry>: create readyz event for kubeapi server #1914
UPSTREAM: <carry>: OCPEDGE-807: add support for cpu limits into management workloads #1902
CFE-910 : RouteExternalCertificate validation in openshift-kube-apiserver custom resource validator #1904
NO-JIRA: UPSTREAM: <carry>: featureset validation moved to CEL #1944
CFE-910 : bump library-go #1941
OCPBUGS-11933 : UPSTREAM: <drop>: bump apiserver-library-go #1910
OCPBUGS-31663 : UPSTREAM: <carry>: add management workload check for guaranteed qos #1928
OCPBUGS-30957 : Use the right feature gate when updating uncertain … #1919
OCPBUGS-31384 : UPSTREAM: <carry>: allow type mutation for specific secrets #1932
OCPNODE-1886 : Bump k8s 1.29.3 #1925
OCPBUGS-31384 : UPSTREAM: <carry>: allow type mutation for specific secrets #1929
OCPBUGS-31384 : UPSTREAM: <carry>: allow type mutation for specific secrets #1924
OCPBUGS-30767 : UPSTREAM: 124110: retry policy creation for CRD type checking E2E test #1922
OCPBUILD-13 : UPSTREAM: <carry>: fix [sig-auth] ServiceAccounts no secret-based service account token should be auto-generated #1909
CFE-910 : [o/k-apis] Add context to ObjectValidator; Consume FeatureGate(s) in kube-apiserver #1852
UPSTREAM: <carry>: OCPBUGS-29520: fix cpu manager cpuset check #1892
OCPBUGS-30954 : Set up CEL IP/CIDR library from 4.14 onwards #1911
OCPBUGS-24481 : Enable SELinux tests #1908
MCO-392 : openshift-hack/images/os: delete #1805
OCPBUGS-23900 : UPSTREAM: 123512: system:kube-scheduler: extend the RBAC with pods/finalizers #1900
OCPBUGS-10996 : Fix race condition between resizer and kubelet #1899
OCPBUGS-29437 : Upstream: <carry>: RPM: Split apiserver, scheduler, k-c-m, kubelet into subpackages #1882
OCPNODE-1892 : Bump k8s to 1.29.2 #1888
NO-JIRA: Clean carry patches #1880
OCPBUGS-29435 : UPSTREAM: 123165: Add AudienceMatchPolicy and support multiple audien… #1881
CORS-3191 : Add Dockerfile to buld kube-apiserver for openshift-install architectures #1872
NO-JIRA: Revert “OCPBUGS-24404: add ignore for SAST scan” #1870
OCPBUGS-24404 : UPSTREAM <carry>: use snyk file #1871
OCPBUGS-26058 : UPSTREAM: <carry>: watch-termination: termination.log file with restricted permissions #1841
OCPBUGS-16760 : permanently disable NodeLogQuery e2e test #1792
OCPNODE-1892 : Bump k8s to 1.29.1 #1858
OCPNODE-1892 : Switch to golang 1.21 #1845
OCPBUGS-24606 : UPSTREAM: <carry>: Update management webhook pod admission logic #1821
OCPNODE-1892 : UPSTREAM: <carry>: update test rules #1849
OCPBUGS-17249 : UPSTREAM: <carry>: openshift-kube-apiserver: pod .spec.nodeName should not override project node selector in podNodeEnvironment admission plugin #1787
OCPNODE-1892 : UPSTREAM: 122683: Use v1beta1 endpoints when cleaning up ValidatingAdmissionPolicies #1848
OCPBUGS-23896 : Fix device uncertain errors on reboot #1829
OCPBUGS-24404 : add ignore for SAST scan #1824
AUTH-439 : loosen authentication.spec.type validation #1770
OCPNODE-1892 : UPSTREAM: 122643: Add a new neverTerminate job behavior just for upgrade #1846
OCPBUGS-26067 : Backport CEL IP and CIDR validations #1828
OCPNODE-1892 : Bump k8s api to 1.29.0 #1840
OCPNODE-1895 : temporarily disable reporting e2e text bugs #1836
OCPNODE-1892 : Rebase 1.29.0 #1815
CNF-8809 : admission: add new admission for handling shared cpus request #1799
CNF-8326 : advertise shared cpus for mixed cpus feature #1795
OCPBUGS-23565 : Update to kubernetes 1.28.4 #1806
OCPBUGS-23073 : .spec.numberOfUsersToReport is not correctly applied in some circumstances #1794
OCPBUGS-22724 : UPSTREAM: 121881: Use golang library instead of mklink #1800
OCPBUGS-16922 : Remove skip flag for e2e tests related to AdmissionWebhookMatchConditions #1790
Update REBASE.openshift.md #1788
STOR-1278 : Fixes for SELinux mount context metrics #1771
Update to Kubernetes v1.28.3 #1776
openshift-hack: Fix sporadic 141 errors in build-rpms #1769
UPSTREAM: <carry>: support for both icsp and idms objects #1685
OCPBUGS-21584 : UPSTREAM: 121128: [CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 #1757
Do not allow nodes to set forbidden openshift labels #1735
OCPBUGS-20096 : bump pause image to RHEL9 #1734
Revert #1731 “Revert #1703 “Update builder & base images”” #1732
Revert #1703 “Update builder & base images” #1731
Update builder & base images #1703
UPSTREAM: <drop>: bump(openshift/client-go,library-go,apiserver-library-go) #1726
OCPBUGS-19666 : kubelet/cm: use MkdirAll when creating cpuset to ignore file exists error #1724
OCPBUGS-17534 : UPSTREAM: <carry>: vendor: bump cadvisor and runc to 1.1.9 #1711
UPSTREAM: 120817: e2e: bootstrap vsphere tests earlier #1714
OCPBUGS-19452 : UPSTREAM: 119317: change rolling update logic to exclude sunsetting nodes #1716
Update to new openshift/* dependencies #1704
STOR-1425 : Update to Kubernetes 1.28.1 #1646
OCPBUGS-16080 : UPSTREAM: <carry>: watch-termination: termination.log file #1638
UPSTREAM: <carry>: disable test removed in 1.28 #1698
<carry>: Export cpu stats of ovs.slice via prometheus #1686
OCPBUGS-17654 : cm: reorder setting of sched_load_balance for sandbox slice #1665
OCPBUGS-18608 : UPSTREAM: <carry>: Force using host go always and use host libriaries #1688
OCPBUGS-18149 : UPSTREAM: <carry>: retry etcd Unavailable errors #1681
OCPBUGS-18149 : UPSTREAM: <carry>: retry etcd Unavailable errors #1676
OCPBUGS-14301 : UPSTREAM: 117245: Fix TopologyAwareHint not working when zone label is added after Node creation #1673
OCPBUGS-14301 : UPSTREAM: 117249,118189: fix TopologyCache crashes #1668
OCPBUGS-7415 : grant user:full scope to self-SARs #1493
UPSTREAM: 118280: Set all PSa labels in tests #1663
OCPBUGS-17119 : UPSTREAM: <drop>: bump apiserver-library-go for updated required-scc errors #1661
OCPBUGS-15726 : UPSTREAM: <carry>: merge v3 openapi discovery and specs for special groups #1654
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #1660
Update to Kubernetes 1.27.4 #1653
OCPBUGS-15726 : UPSTREAM: 118879: make apiservices.apiregistration.k8s.io discoverabl… #1630
OCPBUGS-16166 : Update to Kubernetes 1.27.4 #1645
OCPBUGS-15726 : UPSTREAM: 118881: fix openapi/v3 non local apiservices aggregation #1629
UPSTREAM: <drop>: hack/update-vendor.sh #1634
UPSTREAM: 119107: Stop using deprecated API #1624
OCPBUGS-13392 : UPSTREAM: 118915: remove legacy NetworkPolicy tests #1623
UPSTREAM: <drop>: update openshift/api,openshift/apiserver-library-go #1621
UPSTREAM: <carry>: when only this kube-apiserver can fulfill the kube… #1616
Update to Kubernetes 1.27.3 #1609
UPSTREAM: <carry>: STOR-1270: Admission plugin to deny deletion of storages.operator.openshift.io #1550
OCPBUGS-7181 : UPSTREAM: <drop>: bump apiserver-library-go #1605
STOR-1263 : Add csimock tests #1595
OCPBUGS-4053 : UPSTREAM: 118383: bump cadvisor for upstream patch 3301 #1594
Update test wrapper to match new k8s #1584
STOR-1263 : Bump to k8s 1.27.2 #1583
cherry-pick
: #117785 from k/k
- disable external IPs on e2e net tests #1581
UPSTREAM: 117893: When expecting pods count only active ones #1577
OCPBUGS-13854 : UPSTREAM: 117371: kubelet: Don’t reference the pod manager interface directly from components #1578
OCPBUGS-11652 : UPSTREAM: <carry>: Extend NodeLogQuery feature #1579
OCPBUGS-13148 : kubelet/cm: disable cpu load balancing on slices when using static cpu manager policy #1573
UPSTREAM: <carry>: move test rules from origin #1574
OCPBUGS-11143 : Azure: move to kube-proxy LB probes, don’t detach masters when unready #1569
OCPBUGS-10048 : UPSTREAM: <carry>: add conditional shutdown response header #1555
OCPBUGS-2474 : UPSTREAM: 116995: kubelet: Ensure pods that have not started track pendingUpdate #1561
STOR-1263 : Update to Kubernetes 1.27.1 #1558
OCPBUGS-10829 : UPSTREAM: 117310: kube-aggregator: correctly use client-go TLS cache with custom dialer #1548
UPSTREAM: <carry>: add shutdown annotation to response header #1537
UPSTREAM: <carry>: OCPNODE-1548,OCPNODE-1584: disable load balancing on created cgroups when managed is enabled #1518
Add wrapper which will allow running o/k tests as external binary in origin #1485
OCPBUGS-7267 : More fixes to SCC PSa extractor #1482
OCPBUGS-10048 : UPSTREAM: 115328: apiserver: annotate early (server not ready) and late (during shutdown) requests #1456
OCPBUGS-8220 : CSI Inline Volume admission plugin does not log object name correctly #1499
OCPBUGS-8092 : Fix mounted volume expansion tests #1498
UPSTREAM: <carry>: update rebase doc #1464
Bump to k8s 1.26.2 #1494
AUTH-336 : UPSTREAM: <carry>: PSa metrics: unset ocp_namespace on non-platform n… #1489
Bump to k8s 1.26.1 #1479
OCPBUGS-7267 : add SeccompProfile to Pod and Container accessors/mutators #1490
UPSTREAM: <drop>: OCPBUGS-5991: Kube APIServer panics in admission controller #1488
CNF-5901 : admission hook change for workload partition on all clusters #1312
UPSTREAM: 113799: tests: network: Prefer internal IPs first #1446
UPSTREAM: 115863: Remove global framework variable #1480
UPSTREAM: <carry>: add new approvers #1458
OCPBUGS-7555 : UPSTREAM: <carry>: add default kubelet sysctls within rpm #1475
AUTH-336 : UPSTREAM: <carry>: PSa metrics: log platform namespaces in audit denies #1454
add icsp validation: reject one of icsp idms.itms resources #1310
UPSTREAM: 114027: make GetSubnetPrefix IP family agnostic #1469
disable tests dependent on StackDriver #1466
UPSTREAM: 115484: Don’t explicitly set image version in tests #1465
UPSTREAM: 114994: kubelet: fix readiness probes with pod termination #1450
OCPBUGS-6030 : Rebase onto kube v1.26 #1432
Fix the mutated PodSpec extractor for warns if no SCC matches #1453
OCPBUGS-4900 : remove in-tree volume limits test now that CSIMigration is GA #1448
OCPBUGS-4658 : Apply shared defaulters to CRD-based routes. #1440
OCPBUGS-4657 : Bump library-go. #1431
UPSTREAM: <carry>: make the PSA workload admission warnings honor the… #1393
UPSTREAM: <carry>: Ensure balanced brackets in annotated test names #1410
STOR-829 : Add CSIInlineVolumeSecurity admission plugin #1384
OCPBUGS-3501 : UPSTREAM: <carry>: Add host assignment plugin for CRD-based routes. #1419
UPSTREAM: <drop>: Bump openshift/api. #1424
OCPBUGS-3499 : UPSTREAM: <carry>: Add validation plugin for CRD-based route parity. #1416
Bug 2117374 : UPSTREAM: <drop>: update apiserver-library-go to add message about wo… #1395
Bug OCPBUGS-2991: Disable expansion in SC, if driver does not support it #1402
OCPBUGS-3093 : Tag AWS security groups at creation #1411
UPSTREAM: <drop>: Bump library-go. #1406
OCPBUGS-2946 : Revert: 1340: tag AWS security group at creation #1401
OCPBUGS-3084 : UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines #1404
OCPBUGS-2774 : UPSTREAM: 112807 Fix Load balancer services with xTP local #1400
UPSTREAM: 113208: Set default test timeouts first, only then modify the required ones #1396
UPSTREAM: <carry>: Bug 2098054: tag AWS security group at creation #1340
UPSTREAM: 113135: Wait for pod not running or gone in storage tests #1394
Bump to k8s 1.25.2 #1380
Bug 2041317 : Fix replica calculation at start of HPA scaling policy period #1391
UPSTREAM: <carry>: allow annotating with a specific suite #1388
k8s 1.25.0 #1360
UPSTREAM: <carry>: Dockerfile: use centos:stream9 #1366
OCPBUGS-718 : UPSTREAM: 112267: aws: skip health rules if they are a subnet of the client rule #1358
UPSTREAM: <carry>: optionally enable retry after until apiserver is ready #1346
UPSTREAM: 110639: endpointslices: node missing on Pod scenario #1359
UPSTREAM: <carry>: Update kubensenter to use exec instead of subprocess #1350
UPSTREAM: 110039: Add readinessProbe to aggregated api service test #1307
Bug 2118318 : UPSTREAM: 110939: don’t quota events.k8s.io events by default #1344
UPSTREAM: 111789: Update Netpol e2e tests to use framework CreateName… #1349
UPSTREAM: <carry>: Skip session affinity timeout tests #1339
Bug 2117569 : UPSTREAM: 110888: feat: fix a bug thaat not all event be ignored by gc controller #1338
Add kubensenter to the openshift RPM #1327
UPSTREAM: 111306: Make scheduling e2e tests run PSa-restricted pods #1333
trt-393: add plugin name to caches not synchronized error #1330
Bug 2102383 : UPSTREAM: 89885: Fix panic in openstack.InstanceExistsByProviderID() #1315
Bug 2088606 : Overly loose admission check when configuring UpstreamResolvers or ForwardPlugin #1247
Bug 2081194 : UPSTREAM: <carry>: update list of deprecated apis #1091
Bug 2082773 : Fix resizing of ephemeral volumes #1296
UPSTREAM: <carry>: Remove reserved CPUs from default set #1295
Bug 2094012 : UPSTREAM: 110652: fix: –chunk-size with selector returns missing result #1303
Bug 2063414 : UPSTREAM: 109441: kubelet: parseResolvConf: Handle “search .” #1283
Bug 2086519 : get SCC admission default securityContext.runAsNonRoot to true on positive UIDs #1290
Bug 2078778 : UPSTREAM: 110408: apiserver: printers should use int64 #1288
Bug 2089933 : Backport 110191 Re-enable Kubelet Pod Readiness Probes on Termination and Pod probes should be handled by pod worker #1285
Bug 2087685 : Worker Latency Profiles: Config node object validation for extreme profile transition #1287
Bug 2065749 : UPSTREAM: 109103: cpu/memory manager containerMap memory leak #1229
Bug 2094954 : UPSTREAM: 110258: Fix pod eviction ip #1282
UPSTREAM: <carry>: provide unique reason for pod probe event during t… #1281
Bug 2086092 : UPSTREAM: 108284: fix: exclude non-ready nodes and deleted nodes from azure load balancers #1261
Fixes probe readiness shutdowns #1269
Bug 2086092 : update kube to v1.24.0 #1252
Bug 2086519 : UPSTREAM: <carry>: e2e-framework: don’t autosync PodSecurity labels #1268
Bug 2062459 : Identify if there are multiple schedulers running #1251
Bug 2075621 : UPSTREAM: 109487: Disable JobTrackingWithFinalizers due to unresolved bug #1243
Bug 1999325 : Backport 107821 and 107831 #1225
UPSTREAM: 109283: test/e2e/*: use restricted policy by default, default existing tests to privileged #1238
Bug 2051985 : UPSTREAM: <carry>: An APIRequestCount without dots in the name can cause a panic #1172
Bug 2066865 : Skip azure topology tests #1230
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1227
Revert “UPSTREAM: <carry>: Unskip OCP SDN related tests” #1228
bump apiserver-library-go #1218
UPSTREAM: <carry>: update list of deprecated apis #1204
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1226
Bug 1957668 : UPSTREAM: <carry>: use console-public config map for console redirect #1110
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1212
Bug 2022507 : Backport 108366: OutofCpu Fixes #1199
Bug 1945329 : enable should drop INVALID conntrack entries test #897
Bug 2063938 : UPSTREAM: <carry>: use hardcoded rest mapper from library-go #1215
Bug 2062459 : Generate event when cache update is failed #1210
UPSTREAM:<carry>:Unskip OCP SDN related tests #1201
Bug 2034958 : enable “Conntrack should be able to preserve UDP traffic when initial… #1197
UPSTREAM: 106454: SQUASH: test/e2e: let e2e tests specify pod security admiss… #1128
Bug 2040715 : UPSTREAM: 108284: fix: exclude non-ready nodes from azure load balancer #1190
UPSTREAM: <drop>: zero-diff to pick up tags for versions #1193
Bug 2040715 : upstream 108149: do not return early in the node informer when there is no change #1184
Bug 2040533 : UPSTREAM: <drop>: Ignore container notfound error while getPodstatuses #1176
Bug 2040533 : UPSTREAM: 107900: Pods that have terminated before starting should not block startup #1157
UPSTREAM: 107847: service REST: Call Decorator(old) on update path #1156
Bug 1979671 : UPSTREAM <carry>: Remove pod warning annotation when workload partitioning is disabled #977
Bug 2044824 : UPSTREAM: 107786: Ensure the execHostnameTest() compares hostnames #1153
Bug 2044347 : bump to k8s 1.23.3 #1145
Bug 2039539 : Revert “UPSTREAM: <drop>: revert upstream PR 106306” #1143
Bug 2041583 : UPSTREAM: <carry>: set correctly static pods CPUs when workload partitioning is disabled #1136
Bug 2040533 : UPSTREAM: 107695: kubelet: fix podstatus not containing pod full name #1140
Bug 2039539 : UPSTREAM: <drop>: revert upstream PR 106306 #1130
Bug 2022824 : Fix the leak of vSphere client sessions #1104
Bug 2042169 : UPSTREAM: <carry>: remove egressnetworkpolicies from gc ignored resources #1123
Bug 2040793 : Fix ordering issues with snapshot e2e #1119
Bug 2038968 : Restore upstream feature gates #1112
Bug 2004542 : UPSTREAM: 89885: SQUASH: Retry fetching clouds.conf #1099
Bug 2041641 : Backport k8s.io/utils fix for a memory leak within the inotify utilities #1122
Bug 2042493 : UPSTREAM 107564: kube-apiserver integration test: allow IPs with leading zeros on the API #1124
Bug 2039414 : UPSTREAM: <carry>: allows for switching KS to talk to Kube API over localhost-squash to other #1121
Bug 2042493 : UPSTREAM: <carry>: Fix conformance and serial tests by stopping node cordoning #1129
Bug 1933144 : hardens the aggregated API e2e tests in an HA setup #1114
Bug 2001442 : empty termination.log file for the kube-apiserver has too permissive mode #1096
Bug 2034705 : UPSTREAM 107136: Don’t log vSphere configuration data in storage e2e tests #1098
Bug 2033751 : fix -rt builds and copy extensions into resulting image #1106
Bug 2033751 : Kube 1.23.0 rebase #1087
Switch to go1.17 #1080
Bug 2021629 : UPSTREAM: <carry>: api request counts for current hour are incorrect #1037
UPSTREAM: 105910: retry PV create in e2e-test on API quota failure #1078
UPSTREAM: <drop>: revert to go1.16 #1079
Updating openshift-enterprise-hyperkube images to be consistent with ART #934
UPSTREAM: <drop>: remove creation of openshift-infra ns and recycler SA #1039
Bug 2008532 : Fix subpath sources check #1065
Bug 2017276 : UPSTREAM: 105934: Don’t guess SELinux support on error #1052
Rebase Automation Script #1040
Updating openshift-enterprise-pod images to be consistent with ART #933
UPSTREAM: <carry>: delay queuing deletion for PV to allow nodes some time to unmount #1062
Bug 1978528 : UPSTREAM: <carry>: bump cadvisor for 2957, 2999 and 2979 upstream patches #1049
Bug 2023779 : Fix patch 104847 #1059
Bug 2022811 : UPSTREAM: 106382: defer close the rotated log open #1051
Bug 2007495 : UPSTREAM: 105213: remove StartedPodsErrorsTotal metrice message #988
Bug 2021936 : Read k8s version from hyperkube Dockerfile #1038
Bug 2002759 : UPSTREAM: <carry>: verify required http2 cipher suites #1022
UPSTREAM: <carry>: update rebase doc #1031
Bug 2000216 : Image policy should mutate DeploymentConfigs, StatefulSets, and new CronJobs #1014
Bug 1970331 : UPSTREAM: <drop>: bump apiserver-library-go #1017
Bug 1990190 : Remove Error Message Check Dynamic PV Tests #1011
Bug 2011513 : kubelet: do not arbitrarily create a podSyncStatus for finished pods #1007
UPSTREAM: <drop>: bump apiserver-library-go #1008
Bug 1997478 : Ensure terminal pods maintain terminal status #999
Bug 2010348 : UPSTREAM: 105352: revert pie build mode #993
UPSTREAM: <carry>: allow SCC to be disabled on a per-namespace basis #984
Bug 2000754 : UPSTREAM: 104865: e2e iperf2 change threshold to 10MBps = 80 Mbps #980
Bug 1965368 : UPSTREAM: <drop>: bump(apiserver-library-go) #971
Remove Error Message for Unsupported Volume Test #905
Add CSI migration feature gates for vSphere and Azure File #961
etcd-client starts retrying transient errors from the etcd cluster #959
UPSTREAM: <carry>: openshift-hack/images/os/Dockerfile: Add io.openshift.build.versions, etc. #963
Bug 2005182 : UPSTREAM: <carry>: update list of deprecated apis to be removed #965
Bug 1999133 : kubelet: Handle UID reuse in pod worker #938
UPSTREAM: <carry>: add control plane to allowed roles #957
UPSTREAM: <drop>: bump openshift, k8s to 1.22.1 #950
Bug 2003269 : UPSTREAM: 104817: kubelet: Rejected pods should be filtered from admission #948
Bugzilla 2001763: UPSTREAM: <carry>: 104437: run etcd healthcheck in the background and… #893
UPSTREAM: 104314: legacy-cloud-providers: aws: Add support for consuming web identity credentials #927
Bug 1996689 : Tighten up RestrictedEndpointsAdmission #899
Bug 1996779 : Fix bug with goroutine capturing loop variable #904
Bug 2000451 : UPSTREAM: <drop>: Disable broken sig-storage test #925
Bug 1994643 : UPSTREAM: 104630: remove server option startup-send-retry-after-until… #922
Bug 1992016 : UPSTREAM: <carry>: add OPENSHIFT_MAX_HOUSEKEEPING_INTERVAL_DURATION and OPENSHIFT_EVICTION_MONITORING_PERIOD_DURATION #909
Bug 1994927 : Revert “Remove Endpoints write access from aggregated edit role” #908
Bug 1997657 : UPSTREAM: 104577: kubelet: Admission must exclude completed pods and avoid races #920
Bug 1948089 : openshift-apiserver should not set Available=False APIServicesAvailable on update #915
Bug 1986003 : Rebase 1.22.1 #916
Bug 1994643 : UPSTREAM: <carry>: sets X-OpenShift-Internal-If-Not-Ready HTTP Header for GC and Namespace controllers #907
Bug 1994643 : UPSTREAM: <carry>: send Retry-After when not ready with a caller opt in #906
Bug 1993980 : UPSTREAM: 104529: [1.22] vendor: bump runc to 1.0.2 #910
Bug 1948089 : openshift-apiserver should not set Available=False APIServicesAvailable on update #903
Bug 1986307 : UPSTREAM: <carry>: re-enable networking tests #885
Bug 1995804 : UPSTREAM: <carry>: rename termination events to use lifecycleSignals #896
Bug 1950993 : UPSTREAM: <drop>: bump cadvisor for 2868 and 2925 upstream patches #892
Bug 1997465 : UPSTREAM: 104466: bump k8s.io/util to get fix for LRU cache #898
Bug 1994643 : UPSTREAM: 104281: send retry-after until the apiserver is ready #889
Bug 1982868 : UPSTREAM: <carry>: admission/managementcpusoverride: cover the roll-back case #877
Bug 1986306 : Kubectl client kubectl wait should ignore not found error with –for=delete #891
Bug 1994643 : UPSTREAM: <carry>: use lifeCycleSignals for isTerminating #887
Bug 1980118 : UPSTREAM: <carry>: drop the warning to use –keep-annotations #860
Bug 1992900 : Fix build with multiple GOFLAGS #886
Bug 1986003 : Bump k8s.io to 1.22.0-rc.0 #862
UPSTREAM: <carry>: prevent the kubecontrollermanager service-ca from getting less secure #853
Bug 1981477 : Do not throw error when we can’t get canonical path #817
UPSTREAM: <carry>: add a way to inject a vulnerable, legacy service-c… #852
produce events for readyz going true #807
UPSTREAM: <drop>: remove the openshift authenticator from the apiserver #822
UPSTREAM: <drop>: bump(apiserver-library-go) #846
UPSTREAM: <carry>: add CSI migration feature gates for GCE PD and Azure Disk #831
UPSTREAM: 103385: Fix Multi-AZ test #837
Bug 1977920 : Ensure scc compatibility with BoundServiceAccountTokenVolume #841
UPSTREAM: 103050: Bug 1975325: Fix NodeAuthenticator tests in dual stack #823
Updating openshift-enterprise-hyperkube images to be consistent with ART #814
Bug 1976379 : UPSTREAM: <carry>: Reject the pod creation when we can not decide the cluster type #832
Updating openshift-enterprise-pod images to be consistent with ART #812
UPSTREAM: <carry>: update rebase doc #824
Bug 1975283 : update Multi-AZ Cluster Volumes test name #825
UPSTREAM: <carry>: update rebase doc #818
UPSTREAM: <carry>: crd: add ClusterOperator condition message table column #810
Bug 1971745 : only chown if non-windows machine with projected volumes #804
Full changelog
OCPBUGS-32754 , OCPBUGS-41156 , OCPBUGS-43354 , OCPBUGS-43519 , OCPBUGS-44794 , SDN-4930 : Downstream Merge [12-04-2024] #2357
OCPBUGS-45951 : bump OVS version to 3.4.0-18 #2387
OCPBUGS-45314 : pin libreswan to 4.6-3.el9_0.3 #2375
SDN-5498 : make dnf get through repo troubles faster #2367
OCPBUGS-44381 : ds merge 11-11-2024 #2345
SDN-4930 : Bump OVN to ovn24.09-24.09.0-33.el9fdp #2319
OKD-227 : bump ovn version to 24.09.0-41 for OKD #2327
OCPBUGS-41499 , SDN-4930 : Downstream Merge [10-31-2024] #2334
OCPBUGS-38753 , OCPBUGS-42616 , SDN-4930 , SDN-5031 : [DownstreamMerge] 10-8-24 #2314
OCPBUGS-39009 , SDN-4930 : Downstream Merge Sept 18th #2302
SDN-4930 : Bump OVN to ovn24.09-24.09.0-beta.31.el9fdp #2297
OCPBUGS-39157 , SDN-4930 : Downstream Merge Sept 4th #2286
OCPBUGS-38949 , SDN-4930 : Downstream Merge 28th August #2276
OCPBUGS-38270 : Dockerfile: Bump OVS to 3.4.0-1 #2273
SDN-4930 : Downstream Merge August 26th #2272
SDN-4930 : Downstream Merge 20th august #2268
OCPBUGS-37056 , OCPBUGS-37439 , OCPBUGS-37439 : Downstream Merge 14th August 2024 #2259
OCPBUGS-37541 : Fix per-pod MCS/metadata blocking #2240
OCPBUGS-36614 , OCPBUGS-36865 , SDN-4919 : [DownstreamMerge] 29 July 2024 #2241
OCPBUGS-37709 : Revert #2233 DownStream Merge: 24th July 2024 #2243
OCPBUGS-36865 , SDN-4919 : DownStream Merge: 24th July 2024 #2233
SDN-4919 : Downstream Merge July 10th #2223
OCPBUGS-33758 , OCPBUGS-33758 , OCPBUGS-35347 , OCPBUGS-35367 , SDN-4919 , SDN-5011 : Downstream Merge: July 2nd #2217
OCPBUGS-34463 : Updating ovn-kubernetes-microshift-container image to be consistent with ART for 4.17 #2186
OCPBUGS-34778 : bump OVN to fix multicast bug #2210
OCPBUGS-34462 : Updating ose-ovn-kubernetes-container image to be consistent with ART for 4.17 #2191
OCPBUGS-33005 : Downstream Merge June 17th #2206
SDN-4157 : Downstream Merge June 7th 2024 #2201
OCPBUGS-34109 : Updating ose-ovn-kubernetes-base-container image to be consistent with ART for 4.17 #2176
OCPBUGS-34331 : [DownstreamMerge] 23 May 2024 #2180
OKD-40 : Add ovnver_okd and ovsver_okd to Dockerfile.base #2161
SDN-4157 , SDN-4436 : Downstream Merge 16th May 2024 #2171
OCPBUGS-30224 , OCPBUGS-33328 , SDN-4388 : [DownstreamMerge] 10 may 2024 #2162
OCPBUGS-33080 : Downstream Merge May 2nd 2024 #2152
OCPBUGS-32925 , OCPBUGS-32985 : Dockerfile: Bump OVS to 3.3.0-2 #2142
OCPBUGS-32985 , SDN-4436 : Dockerfile.base: Bump OVN to ovn24.03-24.03.1-36.el9fdp #2126
OCPBUGS-31419 , OCPBUGS-32461 , SDN-4243 : Downstream Merge 22nd April 2024 #2136
SDN-4458 : Do per-pod MCS/metadata blocking with nftables rather than iptables #1946
SDN-4606 , SDN-4688 : Downstream Merge April 18th 2024 #2132
OCPBUGS-31419 : [DownstreamMerge] 4-16-24 #2129
SDN-4403 : Downstream merge 20240415 #2124
OCPBUGS-25889 , OCPBUGS-29952 , SDN-3931 : Downstream merge 12 04 24 #2120
OCPBUGS-27093 , OCPBUGS-29511 , SDN-4157 : [DownstreamMerge] 4 April 2024 #2110
SDN-4157 : DownstreamMerge 25th march 2024 #2100
OCPBUGS-31557 : Revert “Remove unnecessary rhel8 build layer” #2104
OCPBUGS-24007 : Remove unnecessary rhel8 build layer #2083
OCPBUGS-27821 : [DownstreamMerge] 3-8-24 #2093
OCPBUGS-29350 , OCPBUGS-29389 , SDN-4542 : Downstream Merge 29th Feb 2024 #2089
OCPBUGS-17207 , OCPBUGS-28742 : Downstream Merge 22nd Feb 2024 #2081
OCPBUGS-12876 , OCPBUGS-13665 , OCPBUGS-23519 , OCPBUGS-28724 : Downstream Merge 15th Feb 2024 #2073
OCPBUGS-27093 : Dockerfile: Bump OVN to ovn-23.09.0-112.el9fdp #2066
OCPBUGS-27853 : [DownstreamMerge] 9 Feb 2024 #2063
OCPBUGS-20336 , OCPBUGS-28558 : [DownstreamMerge] 7 Feb 2024 #2057
USHIFT-2256 : updating ovn kubernetes microshift image to golang-1.21 #2051
OCPBUGS-20209 , OCPBUGS-20220 , OCPBUGS-22923 , OCPBUGS-24271 , OCPBUGS-26979 , OCPBUGS-27215 : Downstream Merge 2nd Feb 2024 #2048
OCPBUGS-22221 , OCPBUGS-24219 , OCPBUGS-25670 : Downstream Merge 31st Jan 2024 #2038
OCPBUGS-27933 : Updating ose-ovn-kubernetes-container image to be consistent with ART for 4.16 #2027
OCPBUGS-23430 , OCPBUGS-24363 , OCPBUGS-26023 , OCPBUGS-27211 : [DownstreamMerge] Merge 1-16-24 #2018
OCPBUGS-27285 : Dockerfile: Bump OVS to openvswitch3.1-3.1.0-73.el9fdp #1995
OCPBUGS-25030 : Updating ovn-kubernetes-microshift-container image to be consistent with ART #1979
OCPBUGS-18716 : [DownstreamMerge] 1-5-24 #2010
OCPBUGS-24965 : Updating ose-ovn-kubernetes-base-container image to be consistent with ART #1978
OCPBUGS-25810 : CARRY: Updates owners and adds Surya #2000
OCPBUGS-25032 : Updating ose-ovn-kubernetes-container image to be consistent with ART #1980
OCPBUGS-24055 , OCPBUGS-25394 , SDN-4194 : [DownstreamMerge] 14 Dec 2023 #1990
OCPBUGS-24322 , OCPBUGS-25357 : Dockerfile: Bump OVN to ovn-23.09.0-91.el9fdp #1986
OCPBUGS-22847 : Downstream merge 12-7-23 #1976
NP-618 , OCPBUGS-22847 , SDN-4124 , SDN-4149 , SDN-4150 : [DownstreamMerge] 1 Dec 2023 #1965
OCPBUGS-24014 : Downstream merge 28th November 2023 #1962
OCPBUGS-21773 : Downstream Merge 22nd November 2023 #1958
NHE-805 , OCPBUGS-19050 , OCPBUGS-22691 , OCPBUGS-22767 , SDN-4173 : [DownstreamMerge] 11 November 2023 #1952
OCPBUGS-16634 , OCPBUGS-19635 , OCPBUGS-20210 : Downstream Merge 24th October 2023 #1942
OCPBUGS-11710 : Downstream Merge 18th Oct 2023 #1939
OCPBUGS-15538 , OCPBUGS-19961 : Downstream merge 2023-10-10 #1935
OCPBUGS-14787 : Dockerfile: stop installing CNI plugins RPM #1702
OCPBUGS-19289 : Updating ose-ovn-kubernetes images to be consistent with ART #1884
OCPBUGS-20178 , OCPBUGS-20238 : Downstream merge 2023-10-09 #1931
OCPBUGS-16217 , OCPBUGS-18071 , OCPBUGS-18598 , OCPBUGS-19698 : DownStream Merge 4th October 2023 #1923
OCPBUGS-19900 : DownStream Merge: 29th-September-2023 #1919
OCPBUGS-18317 : DownStream Merge: 28th-September-2023 #1917
OCPBUGS-18162 , OCPBUGS-19792 , OCPBUGS-19836 : [DownstreamMerge] 9-27-23 #1911
OCPBUGS-17455 , OCPBUGS-17641 , OCPBUGS-18352 , OCPBUGS-18549 , OCPBUGS-19456 : [DownstreamMerge] 9-26-23 #1907
OCPBUGS-19013 : Dockerfile: Copy ovnkube-trace file for RHEL8 platform #1887
OCPBUGS-19501 : Add additonal certificate acceptance condition feature in ovnkube-ide… #1895
Add ovnkube-identity binary to the downstream image #1897
OCPBUGS-19288 : Updating ovn-kubernetes-microshift images to be consistent with ART #1883
OCPBUGS-19278 : Updating ovn-kubernetes-base images to be consistent with ART #1882
OCPBUGS-16641 , OCPBUGS-18572 , OCPBUGS-19331 : [DownstreamMerge] 9-18-23 #1885
OCPBUGS-19004 , OCPBUGS-19010 : Dockerfile: bump OVN to ovn23.09-23.09.0-beta.31.el9fdp #1875
OCPBUGS-18895,OCPBUGS-14549,OCPBUGS-18402 [DownstreamMerge] 9-11-23 #1868
OCPBUGS-18467 : Fix OVN SNATing on GR by enabling gateway_mtu on rtoe port of GR #1854
OCPBUGS-14709 , OCPBUGS-16617 , OCPBUGS-18603 : Bump to OVN 23.09 #1842
OCPBUGS-18378 : LGW: Fix the precedence of rules in FORWARD chain #1851
OCPBUGS-17773 : Perf increases to pod deletion #1847
OCPBUGS-17731 : move clearInitialNodeNetworkUnavailableCondition to clustermanager #1839
OCPBUGS-18110 : Fix encap port configuration for remote chassis #1836
OCPBUGS-17406 , OCPBUGS-17844 , OCPBUGS-17970 : [DownstreamMerge] 24 Aug 2023 #1833
OCPBUGS-17867 : CARRY: Removes restriction for ip scope universe on node ips #1822
8-16-23 #1820
OCPBUGS-17666 : Downstream Merge august 15th 2023 #1817
Downstream Merge 2023-8-10 #1813
OCPBUGS-17147 : [DownstreamMerge] 8 Aug 2023 #1803
Downstream Merge 2023-08-03 #1798
8-1-23 #1795
OCPBUGS-16767 , SDN-3507 , SDN-3733 : [DownstreamMerge] 7-27-23 #1789
OCPBUGS-15811 : SDN-3733: Downstream Merge: 25th July 2023 #1784
OCPBUGS-10650 , OCPBUGS-12747 , OCPBUGS-16413 , SDN-3732 , SDN-3733 : [DownstreamMerge] 7-19-23 #1750
Dockerfile: build both RHEL8 and RHEL9 shims #1760
SDN-3733 : [DownstreamMerge] 7-13-23 #1757
11 jul 23 #1752
07 jul 23 #1747
SDN-3993 : [DownstreamMerge] 06 jul 23 #1742
OCPBUGS-14632 : [DownstreamMerge] 30 jun 23 #1729
OCPBUGS-15127 : Dockerfile: bump to ovn 23.03.0-69 (for LB templates) and ovs 3.1.0-32 (upgrade perf) #1710
OCPBUGS-15523 : [DownstreamMerge] 6-27-23 #1726
OCPBUGS-15227 : [DownstreamMerge] 6-21-23 #1718
OCPBUGS-15226 : EgressIP: do not patch the status if the object no longer exists #1717
6-18-2023 #1714
OCPBUGS-14769 , SDN-3885 : Downstream Merge 13th June 2023 #1707
OCPBUGS-10592 , OCPBUGS-10841 , OCPBUGS-11180 , OCPBUGS-12747 , OCPBUGS-1715 , OCPBUGS-4370 , OCPBUGS-4485 , SDN-3733 , SDN-3838 , SDN-3840 : Downstream Merge 6th June 2023 #1697
OCPBUGS-12352 : Updating ovn-kubernetes-base images to be consistent with ART #1700
OCPBUGS-14636 : Fix Downstream Unit Tests #1696
OCPBUGS-12800 , OCPBUGS-13863 , OCPBUGS-14286 , OCPBUGS-14449 , OCPBUGS-4485 , SDN-3555 , SDN-3790 : Downstream Merge 1st June #1692
OCPBUGS-9825 : LoadBalancer Templates Merge Downstream: 25th May 2023 #1683
OCPBUGS-6013 : Call SyncEndpoints from AddService #1671
OCPBUGS-13716 : Use ovsver and ovnver to infer the short version numbers for ovs and ovn #1664
OCPBUGS-12971 : Fix bug that resulted in routes not be restored to a new vnic #1665
OCPBUGS-11567 : Check the status of a pod before trying to get its ip #1663
OCPBUGS-11716 : [release-4.14] Use loadbalancer.Name as client index #1652
OCPBUGS-11534 : Stack migration #1643
Remove no-longer-used rhel9-specific dockerfiles #1635
OCPBUGS-283 , OCPBUGS-3176 : Downstream merge 3rd April 2023 #1626
Updating ovn-kubernetes-microshift images to be consistent with ART #1620
OCPBUGS-6947 : CARRY: use “prefer local” for annotated services #1622
OCPBUGS-10839 , OCPBUGS-10962 : [DownstreamMerge] 28 March 2023 #1611
OCPBUGS-10485 : Bump OVS to 3.1.0-10 #1613
node: small downstream CARRY patch cleanup #1549
OCPBUGS-10889 , OCPBUGS-8473 : Downstream Merge [27-mar-2023] #1608
OCPBUGS-7932 , OCPBUGS-7988 , OCPBUGS-8080 , OCPBUGS-8278 , OCPBUGS-8280 , OCPBUGS-9990 : Downstream Merge [10-mar-2023] #1574
Dockerfiles: copy RHEL-9 bits over top of unused RHEL8 bits #1553
OCPBUGS-10395 : Bump OVN to disable CT flush #1590
Updating ovn-kubernetes-microshift images to be consistent with ART #1576
Updating ose-ovn-kubernetes images to be consistent with ART #1578
Updating ovn-kubernetes-base images to be consistent with ART #1575
OCPBUGS-8222 , OCPBUGS-8397 , OCPBUGS-8464 : [DownstreamMerge] 7 Mar 2023 #1556
OCPBUGS-7952 : Dockerfile: bump to ovn23.03-23.03.0-4.el9fdp for RHEL9 #1554
OCPBUGS-5889 : [DownstreamMerge] 2023-03-03 #1552
Removal of small code delta from upstream #1548
rhel9: bump to ovn23.03-23.03.0-preview.4 #1550
Downstream Merge [March 2nd 2023] #1551
2-28-23 #1546
OCPBUGS-2663, Bug 2091780, OCPBUGS-6739: Downstream merge 2023-02-20 #1533
rhel9: bump to openvswitch3.1-3.1.0-2.el9fdp #1544
OCPBUGS-7296 : Remove ICNIv1 from ovn-kubernetes #1531
Dockerfiles: switch to dnf #1539
iptables package is missing in microshift image #1530
Updating ovn-kubernetes-microshift images to be consistent with ART #1443
rhel9: no longer need to use iptables wrappers #1526
cleanup: drop redundant selinux-policy install in onvkube dockerfiles #1525
iptables: use container iptables, not the host’s #1481
rhel9: oc RPM does the kubectl symlink #1523
rhel9: no longer need python3-pyOpenSSL #1519
rhel9: remove stray oc
install #1518
Add RHEL9 image Dockerfiles #1495
Downstream merge 2023-02-07 #1510
OCPBUGS-6953 , OCPBUGS-6955 : [Downstream Merge 6th Feb 2023] #1509
OCPBUGS-4909 : Dockerfile: bump OVN to 22.12.0-18 #1487
Bug 2078222, OCPBUGS-4119, OCPBUGS-5930, OCPBUGS-4425: [DownstreamMerge] 1-31-23 #1496
Bug 2047299, OCPBUGS-2337: [DownstreamMerge] 13 Jan 2023 #1474
Bug 2041746 : Bump OVN to 22.12.0-4 #1468
Bug 2075548 : [DownstreamMerge] 09 Jan 2023 #1466
15 Dec 2022 #1454
Updating ose-ovn-kubernetes images to be consistent with ART #1430
OCPBUGS-4825 : [DownstreamMerge] 12-14-22 #1449
OCPBUGS-4659 : [DownstreamMerge] - 12-12-22 #1437
Updating ovn-kubernetes-base images to be consistent with ART #1431
Fix product build issue with more straight forward bash #1432
OCPBUGS-4502 : Downstream Merge 7th-December-2022 [Support service session affinity timeout] #1418
OCBUGS-4502 : Dockerfile: bump OVN to 22.09.0-25 #1424
Update base image of Dockerfile #1239
OCPBUGS-3739 : [DownstreamMerge] 12-02-22 #1410
OCPBUGS-2319 : [DownstreamMerge] 11-30-22 #1405
OCPBUGS-799 : Bump OVN to 22.09.0-22 #1403
Bug OCPBUGS-1352: [DownstreamMerge] 11-18-22 #1400
Bug 2092567 : [Downstream Merge] 16/11/2022 #1381
OCPBUGS-3797 : [4.13] Dockerfile: bump OVS to 2.17.0-62.el8fdp #1362
OCPBUGS-3292 : downstream windows fixes #1377
Update images to be consistent with ART #1371
Downstream merge 11-08-2022 #1364
EIP: remove downstream’s duplicate node delete test #1358
SDN-3589 : downstream merge 11-02-2022 #1355
OCPBUGS-2770 : Allow empty nexthop in L3GatewayConfig node annotation #1337
OCPBUGS-2569 : Fix netpol races #1323
OCPBUGS-1427 : Ignore non-ready endpoints when processing endpointslices #1330
OCPBUGS-2826 : ovnkube-trace: Fix ofproto/trace for IPv6 #1338
OCPBUGS-1520 : Fixes SNAT-ing Logic for EgressIPs #1331
OCPBUGS-1520 : Prioritize adding events to handlers for shared resources #1333
OCPBUGS-1643 : Add logging verbosity to configuring OVN logs #1324
OCPBUGS-2175 : Allocate Hybrid Overlay IP on node updates too #1319
OCPBUGS-2004 : egress IP: fix log when gRPC connection fails #1304
OCPBUGS-2176 : add endpointSlice informer in master process #1302
OCPBUGS-2085 : CARRY: Dockerfile.base: bump to openvswitch2.17.0-37.4.el8fdp #1298
OCPBUGS-1705 : Don’t use ACL names ever! #1300
Dockerfile: bump to ovn22.09-22.09.0-5.el8fdp #1284
9-23-22 b - dualstack fixed #1289
OCPBUGS-1705 : Trim ACL names according to RFC1123 #1281
OCPBUGS-1553 : Dockerfile: bump to openvswitch2.17.0-37.4.el8fdp #1273
Use iptables-restore to add MCS/metadata blocking in the pod #1262
9-12-22 merge #1267
9-7-22 merge #1264
9-2-22 merge #1263
OCPBUGS-165 : [DownstreamMerge] 8-29-2022 merge #1255
8-25-2022 #1253
revert endpoints #1248
8-8-2022 #1237
Fix ovn version in Dockerfile.base #1236
Introduce ovn-kubernetes-{base|singlenode} images #1213
Bug 2109945 : [Downstream Merge: 04-08-2022] #1231
Bug 2111534 : Downstream Merge: 27-07-2022 #1214
Updating ose-ovn-kubernetes images to be consistent with ART #1174
Bug 2111733 : Bump OVN to 22.06.0-27 #1222
OCPBUGSM-45393 : Bug 2078691: [Downstream Merge] 22-07-2022 #1210
4.12 initial merge from upstream: 7-18-22 #1205
Bug 2106862 : Append the SNAT rule in management chain #1199
Bug 2095444 : EGW: Clean Stale Conntrack Entries #1189
Bug 2106298 : populate sock address for ovndb connection in unix mode #1188
Bug 2100507 : Remove redundant log lines in obj_retry.go #1162
Bug 2097243 : Fix egressips for pods recreated with same name #1169
Bug 2097221 : Dockerfile: bump to ovn22.06-22.06.0-7.el8fdp #1170
Bug 2091238 : Fix Panic in Network Policy deletion #1166
Bug 2100220 : Fix completed pods releasing IP address on update #1158
Bug 2089807 : Release Leader election lock on errors #1167
Bug 2100249 : Revert “Bug 2082599: add upper bound to number of failed attempts” #1161
Bug 2085089 : Add support for enabling UDP packet aggregation on veth interfaces #1129
Bug 2099755 : Add new EgressIP config option “egressip-reachability-total-timeout” #1156
Bug 2073378 : Add node name into egress ip status for the removal #1114
Bug 2079012 : Fix egressIP object deletion if the node is deleted first #1143
Bug 2089392 : Update logging for specific policy when creating it #1145
Bug 2082599 : add upper bound to number of failed attempts #1147
Bug 2094088 : Fixes Updating non-default columns as well as libovsdb fixes for empty values #1146
[release 4.11] Bug 2092579: pods: deleteLogicalPort should not fail if port is already deleted #1123
Bug 2092889 : update all egress ACLs’ direction to “from-lport” #1128
Bug 2089716 : Downstream fix for OVN-Kube node cardinality #1135
Bug 2095113 : Dockerfile: bump to openvswitch2.17-2.17.0-22.el8fdp #1117
Bug 2094039 : egressIP: node retrieval failure is not respected, causes panic #1130
Bug 2093396 : Remove node-tainting for too-small MTU #1127
Bug 2091634 : Use ovs-appctl dpctl/* instead of ovs-dpctl #1118
Bug 2091990 : fix lflow-cache-limit-kb ovs external-id #1116
Bug 2070674 : improve performance of service sync #1110
Bug 2092473 : libovsdb perf backports #1119
Bug 2089930 : Dockerfile: bump OVN to ovn22.06 #1102
Bug 2090843 : addLogicalPort() optimization cherry-picks #1109
Bug 2090537 : OVNDBManager: Retry migrations #1108
Bug 2081069 : Bumps OVN to 22.03.0-37.el8fdp #1100
Bug 2086851 : enable exportloopref
linter and fix violations #1092
Bug 2084249 : [DownstreamMerge] 5-12-22 #1090
Bug 2077357 : Bump OVN to ovn22.03-22.03.0-24 #1052
5-4-22 #1081
Bug 2070929 : Downstream Merge: 04-05-2022 #1078
Bug 2079439 : [DownstreamMerge] 4-29-22 #1064
Downstream Merge 25-04-2022 #1050
Bug 2023691 : Downstream merge 2022-04-22 #1049
Bug 2072134 : [DownstreamMerge] 4-18-22 #1040
Dockerfile: bump to OVS 2.17 #1031
Fix gofmt for downstream files #1028
Bug 2026461 : 4-4-22 merge #1010
Bug 2047710 : Bump OVS version to 2.16.0-57.el8fdp #980
Downstream merge 2022-03-22 #1006
Bug 2063321 : [DownstreamMerge] Downstream merge 17-03-2022 #1000
Bug 2060549 : Downstream merge 3-8-22 #989
Bug 2052975 : Downstream merge 07-03-2022 #988
Merge 3-4-22 #987
Bug 2052975 : Bump OVN to ovn-2021-21.12.0-30.el8fdp #982
Bug 2052398 : [DownstreamMerge] 2-25-22 #975
Bump OVS to 2.16.0-53.el8fdp #968
Bug 2048538 : [DownstreamMerge] 2-22-22 #966
Bug 2045577 : Bump OVN to ovn-2021-21.12.0-15.el8fdp #958
Bug 2048538 : [DownstreamMerge] 2-14-22 #956
Bug 2011525 : [DownstreamMerge] Downstream merge 08-02-2022 #947
Update project owners #950
Downstream merge 2-1-22 #940
Bug 2040357 : Dockerfile: bump OVN to ovn-2021-21.12.0-11.el8fdp #902
Bug 2039253 : avoid passing duplicate Flow endpoints to ovs-vsctl #930
Bug 2031926 : Shared gateway: Modification of ClusterIPs shall trigger svc update #924
Bug 2042001 : Adds wait method for ovsdb operations that created named objects #934
Bug 2044303 : Fix update of CloudPrivateIPConfig #923
Bug 2046297 : libovsdb: give connects more time to process than normal transactions #931
Bug 2044680 : libovsdb performance and resource consumption fixes #927
Bug 2017650 : EF: Pull up switch names from cache #908
Bug 2025467 : ETP=local,SGW: Add DNAT rule towards 169.254.169.3 #907
Bug 2043961 : Fix pod-creation-retry #926
Bug 2040540 : Fix String formatting error #904
Clean up OWNERS a bit #919
Bug 2039880 : Metrics: Increase log level for CP recorder #899
Bug 2039099 : EgressIP fixes for 4.10 #917
Bug 2032998 : perf/scale backports #911
Bug 2034577 : Set l3GWConfig.mode correctly #909
Bug 2034155 : Make egressIPs compatible with ICNI #915
Bug 2029742 : egressip: fix usage of clientModel doAfter #910
Bug 2041830 : Fix panic in Hybrid Overlay #913
Bug 2039698 : Hacky way of doing ITP:preferLocal for openshift-dns:default #896
Bug 2039516 : Dockerfile: bump OVN to ovn21.12-21.12.0-25 #883
Bug 2022536 : Validate ExGW Cache and fix cache keys #895
Bug 2031012 : Create iptables NAT rules also for loadbalancer services #888
Bug 2033728 : Dockerfile: bump OVS to 2.16.0-33.el8fdp #833
Merge 21-12-16 #875
Block access to metadata service based on platform type #873
Downstream merge 2021-12-10 #871
21-12-9 #869
Merge 21-12-7 #867
ovn: bump to ovn21.12-21.12.0-24.el8fdp #818
03-12-2021 #863
Bug 2019809 : [DownstreamMerge] 11-29-21 #851
Bug 2009873 : [4.10.0] Avoid stale annotations by re-subscribing to netlink #843
Revert revert #834
Revert “[DownstreamMerge] Fix previous downstream merge” #831
Fix previous downstream merge #812
Bug 2017909 : EgressGW: only return unique elements from getRouteInfosForGateway() #816
Revert #796 and #807 #810
fixup: reduce delta from upstream #807
Merge 2021-10-13 #796
CARRY: go-ovn: prevent deadlock processing Updates during initial DB dump #800
Bug 2016479 : Update iface-id-ver for existing ports #802
Bug 1987445 : Fix gateway routers answer ARP/NDP requests for LoadBalancer/ExternalIP services #793
Bug 2011386 : pods: fix overwriting returned error from defer() #787
Bug 2007443 : bump OVN to ovn21.09-21.09.0-20.el8fdp #784
pods: remove unnecessary LSPGet() calls #781
Bug 1959352 : phase 2 scale improvements #750
ovs: bump to 2.16.0-15.el8fdp #775
Bug 2006325 : Bump OVN to ovn21.09-21.09.0-19.el8fdp #768
Updating ose-ovn-kubernetes images to be consistent with ART #744
Bug 1999261 : filter out KubeAPIAuth when logging CNI requests #742
Bug 2002010 : Fixes skipping pods accidentally in retry #739
Bug 2000057 : panic after EgressFirewall deletion and DNS record expiration #741
Bug 2003195 : Ensure host interfaces are deleted by CNI #738
Fix bad merge on egressip test #732
Bug 2002372 : Fixes misuse of pod annotations during update event #735
Bug 1995335 : Add “iface-id-ver=${POD_UID}” tuple to the external-ids of logical and OVS ports #729
Bug 1903408 : Merge externalTrafficPolicy ONLY #663
Bug 1976399 : DBChecker: reconcile the election timeouts when specified #647
Bug 1998614 : Ensure client handling of canceled/dropped OVSDB monitor #717
Bug 1997438 : egressfirewall not set after upgrade #716
Bug 1998423 : kube master don’t fail trying to cache same GW LRP IPs as already exist #705
Bug 1986946 : Fix ensurePod to call addPodExternalGW only for annotation updates #691
Bug 2000721 : bump OVS userland to openvswitch2.16-2.16.0-6.el8fdp #714
Bug 1999852 : bump OVN to ovn21.09-21.09.0-18.el8fdp #704
Bug 1999138 : Revert “Taint node with NoSchedule effect when ovnkube pod is down” #708
README: Add doc links #669
Bug 1998146 : Fix lb delete during node deletion #698
Bug 1962344 : Use DGP to connect logical switches to the cluster router. #688
Bug 1997270 : bump OVN to ovn21.09-21.09.0-15.el8fdp #685
Bug 1995816 : [4.9] backport “attempting to reduce cardinality in the interest of memory performance” #672
Bug 1997114 : Fixes ensure address set #684
Bug 1994647 : Add quotes around nexthop and dst-ip fields #677
Bug 1973215 : fix reserve joinSwitch LRP IPs #679
Bug 1989615 : Fix GetPortAddresses for HBO #670
Bug 1943334 : Taint node with NoSchedule when ovnkube pod is down #671
Bug 1995330 : Cherry-pick of per-service loadbalancers #666
Bug 1959352 : scale fixes 1 #667
Bug 1978797 : Sync exgw routes on startup #658
Bug 1994069 : bump OVN to ovn21.09-21.09.0-13.el8fdp #659
Bug 1976215 : Fix: sync egress IP for missed events on start-up #655
Bug 1991793 : [4.9] bump OVN to ovn21.09-21.09.0-12.el8fdp #652
Bug 1989694 : Bump OVN to ovn21.09-21.09.0-10.el8fdp #643
Bug 1986440 : Bump OVN to ovn21.09-21.09.0-9.el8fdp #630
Bug 1986443 : Fix pod handler race downstream #628
Bump OVN to ovn21.09-21.09.0-8.el8fdp #621
Bump OVS to openvswitch2.15-2.15.0-28.el8fdp #622
Bug 1985512 : Add v6 management interface address for host network policy #623
Merge 2021-07-21 2nd #619
Merge 2021-07-18 #609
Bug 1973286 : Merge 2021-07-06 #600
Bug 1973813 : 6-21-2021 merge #582
Updating ose-ovn-kubernetes images to be consistent with ART #578
Bug 1972287 : 6-17-21 merge #579
add JacobTanenbaum to the list of approvers #544
Bug 1958375 : Bump OVN to 20.12.0-140.el8fdp #580
Updating .ci-operator.yaml build_root_image
from openshift/release #574
Full changelog
OCPBUGS-45586 : Updating golang-github-prometheus-prometheus-container image to be consistent with ART for 4.19 #238
NO-JIRA: [bot] Bump openshift/prometheus to v2.55.1 #236
NO-JIRA: [bot] Bump openshift/prometheus to v2.55.1 #235
NO-JIRA: [bot] Bump openshift/prometheus to v2.55.0 #234
MON-4065 : [bot] Bump openshift/prometheus to v2.55.0 #232
OCPBUGS-43378 : fix(discovery): Handle cache.DeletedFinalStateUnknown in node informers’ DeleteFunc #229
OCPBUGS-41113 : Updating golang-github-prometheus-prometheus-container image to be consistent with ART for 4.18 #226
MON-3989 : [bot] Bump openshift/prometheus to v2.54.1 #223
MON-3989 : [bot] Bump openshift/prometheus to v2.54.1 #222
OCPBUGS-38622 : Restore Prometheus functionality to accept samples with different timestamps from the same series in a single scrape. #220
MON-3981 : [bot] Bump openshift/prometheus to v2.54.0 #219
MON-3981 : [bot] Bump openshift/prometheus to v2.54.0 #218
MON-3914 : [bot] Bump openshift/prometheus to v2.53.1 #215
OCPBUGS-37370 : backport of upstream fix #216
OCPBUGS-37244 : [bot] Bump openshift/prometheus to v2.53.1 #211
OCPBUGS-35483 : cherry-pick upstream fix to make PrometheusRemoteWriteBehind fire when remote endpoint is never reached. #213
OCPBUGS-36768 : cherry-pick upstream remote-write fix #210
MON-3914 : [bot] Bump openshift/prometheus to v2.53.0 #208
MON-3914 : [bot] Bump openshift/prometheus to v2.53.0 #206
OCPBUGS-34264 : Updating golang-github-prometheus-prometheus-container image to be consistent with ART for 4.17 #205
MON-3856 : Bump openshift/prometheus to v2.52.0 #202
MON-3856 : Bump openshift/prometheus to v2.52.0 #201
MON-3825 : Bump openshift/prometheus to v2.51.2 #200
MON-3825 : Bump openshift/prometheus to v2.51.2 #199
MON-3794 : Bump openshift/prometheus to v2.51.1 #198
MON-3794 : Bump openshift/prometheus to v2.50.1 #196
OCPBUGS-29981 : Updating golang-github-prometheus-prometheus-container image to be consistent with ART for 4.16 #197
MON-3673 : [bot] Bump openshift/prometheus to v2.49.1 #193
MON-3676 : move raptorsun out of reviewer list #194
MON-3673 : Bump Prometheus to v2.49.1 #192
MON-3633 : Bump openshift/prometheus to v2.48.1 #188
OCPBUGS-24745 : Updating golang-github-prometheus-prometheus-container image to be consistent with ART #187
MON-3528 : [bot] Bump openshift/prometheus to v2.48.0 #186
OCPBUGS-22743 : bump Prometheus to 2.48.0 (manual) #185
Bump openshift/prometheus to v2.47.2 #181
Bump openshift/prometheus to v2.47.2 #180
Bump openshift/prometheus to v2.47.2 #179
OCPBUGS-21633 : update golang.org/x/net to v0.17.0 #173
update OWNERS file #172
Bump openshift/prometheus to v2.47.0 #168
OCPBUGS-18846 : Updating golang-github-prometheus-prometheus images to be consistent with ART #169
Bump openshift/prometheus to v2.46.0 #167
Bump openshift/prometheus to v2.45.0 #166
Bump openshift/prometheus to v2.44.0 #164
Dockerfile.ocp: update note about UI assets after switching to embed #165
OCPBUGS-12996 : Add missing assets after manual merge #162
OCPBUGS-12825 : Updating golang-github-prometheus-prometheus images to be consistent with ART #160
Bump openshift/prometheus to v2.43.0 #158
Updating golang-github-prometheus-prometheus images to be consistent with ART #156
Bump openshift/prometheus to v2.42.0 #154
Bump openshift/prometheus to v2.41.0 #153
Bump openshift/prometheus to v2.40.7 #152
Bump openshift/prometheus to v2.40.6 #151
Bump openshift/prometheus to v2.40.5 #150
OCPBUGS-4273 : Bump openshift/prometheus to v2.40.4 #148
OCPBUGS-2873 : fix certificate reloads after rotation #145
Updating golang-github-prometheus-prometheus images to be consistent with ART #147
Revert unwanted downstream patch #144
OCPBUGS-1718 : [bot] Bump openshift/prometheus to v2.39.1 #142
Updating golang-github-prometheus-prometheus images to be consistent with ART #141
Bump openshift/prometheus to v2.38.0 #140
OWNERS: Add myself, and move former team members to emeritus #139
Updating golang-github-prometheus-prometheus images to be consistent with ART #137
Bump openshift/prometheus to v2.37.0 #138
Bug 2099561 : Bump openshift/prometheus to v2.36.2 #136
Bug 2064984 : Update Prometheus to v2.36.1 #133
Updating golang-github-prometheus-prometheus images to be consistent with ART #132
web/ui/.gitignore: unignore generated assets for downstream build #130
Bump openshift/prometheus to v2.35.0 #128
Updates OWNERS file #124
Bump openshift/prometheus to v2.34.0 #123
Bump openshift/prometheus to v2.33.5 #122
Bug 2056802 : scrape: Fix label_limits cache usage #121
Bump openshift/prometheus to v2.33.4 #120
Updating golang-github-prometheus-prometheus images to be consistent with ART #119
Bug 2034192 : [bot] Bump openshift/prometheus to v2.32.1 #117
Don’t use dependabot #115
Bump openshift/prometheus to v2.32.0 #104
Bump openshift/prometheus to v2.31.1 #103
Update scripts/rh-manifest.sh replacing yarn by npm #99
Updating golang-github-prometheus-prometheus images to be consistent with ART #102
OWNERS: cleanup #101
Bump v2.30.3 #98
Bug 1943860 : Bump 2.30.0 #96
Updating golang-github-prometheus-prometheus images to be consistent with ART #94
openshift: Add script to generate rh-manifest.txt #90
Updating golang-github-prometheus-prometheus images to be consistent with ART #93
Bug 1999397 : Bump 2.29.2 #92
Bug 1986243 : bump 2.29 #91
Bug 1934324 : Update to 2.28.1 #89
Updating golang-github-prometheus-prometheus images to be consistent with ART #88
Update OWNERS file to reflect new maintainers #87
Full changelog
OCPBUGS-45644 : Updating prometheus-config-reloader-container image to be consistent with ART for 4.19 #319
OCPBUGS-45736 : Updating prometheus-operator-container image to be consistent with ART for 4.19 #320
OCPBUGS-45453 : Updating prometheus-operator-admission-webhook-container image to be consistent with ART for 4.19 #317
NO-JIRA: [bot] Bump openshift/prometheus-operator to v0.78.2 #314
OCPBUGS-27250 : [bot] Bump openshift/prometheus-operator to v0.78.1 #313
MON-4060 : Bump openshift/prometheus-operator to v0.77.2 #311
OCPBUGS-30122 : Bump openshift/prometheus-operator to v0.77.1 #307
MON-3994 : [bot] Bump openshift/prometheus-operator to v0.76.2 #305
Updating prometheus-config-reloader-container image to be consistent with ART for 4.18 #303
OCPBUGS-41278 : Updating prometheus-operator-container image to be consistent with ART for 4.18 #304
MON-3994 : [bot] Bump openshift/prometheus-operator to v0.76.1 #301
Updating prometheus-operator-admission-webhook-container image to be consistent with ART for 4.18 #302
MON-3982 : [bot] Bump openshift/prometheus-operator to v0.76.0 #297
OCPBUGS-38174 : feat: sync proxy settings in Alertmanager configuration #295
MON-3947 : Bump openshift/prometheus-operator to v0.75.2 #294
MON-3889 : [bot] Bump openshift/prometheus-operator to v0.74.0 #287
OCPBUGS-34153 , OCPBUGS-34308 , OCPBUGS-34459 : Updating prometheus-operator-container image to be consistent with ART for 4.17 #293
OCPBUGS-34308 : Updating prometheus-config-reloader-container image to be consistent with ART for 4.17 #289
OCPBUGS-34153 : Updating prometheus-operator-admission-webhook-container image to be consistent with ART for 4.17 #288
MON-3838 : Bump openshift/prometheus-operator to v0.73.2 #286
OCPBUGS-31847 : Bump openshift/prometheus-operator to v0.73.1 #285
MON-3793 : Bump openshift/prometheus-operator to v0.73.0 #284
MON-3771 : Bump openshift/prometheus-operator to v0.72.0 #281
OCPBUGS-29304 : fix: don’t fail metadata transform on unknown types (#6298) #277
OCPBUGS-28251 : fix: convert continue
field between v1beta1 and v1alpha1 #275
MON-3689 : Bump openshift/prometheus-operator to v0.71.2 #274
MON-3689 : Bump openshift/prometheus-operator to v0.71.1 #273
MON-3676 : move raptorsun out of reviewer list #272
MON-3661 : Bump openshift/prometheus-operator to v0.71.0 #271
OCPBUGS-26147 : configure Snyk scanner #269
OCPBUGS-25560 : Updating prometheus-config-reloader-container image to be consistent with ART #270
OCPBUGS-24947 : Updating prometheus-operator-admission-webhook-container image to be consistent with ART #266
OCPBUGS-24914 : Updating prometheus-config-reloader-container image to be consistent with ART #268
OCPBUGS-24914 : Updating prometheus-config-reloader-container image to be consistent with ART #265
OCPBUGS-24872 : Updating prometheus-operator-container image to be consistent with ART #264
OCPBUGS-24323 : Bump openshift/prometheus-operator to v0.70.0 #263
OCPBUGS-24126 : Updating prometheus-operator-admission-webhook-container image to be consistent with ART #260
OCPBUGS-24073 : Updating prometheus-operator-container image to be consistent with ART #258
OCPBUGS-24105 : Updating prometheus-config-reloader-container image to be consistent with ART #259
MON-3479 : [bot] Bump openshift/prometheus-operator to v0.69.1 #256
OCPBUGS-18707 : [bot] Bump openshift/prometheus-operator to v0.69.0 #255
OCPBUGS-22946 : fix: remove verbose logging admission-webhook #254
OCPBUGS-21637 : fix: disable HTTP2 connections by default #252
OCPBUGS-21637 : Bump golang.org/x/net to v0.17.0 #246
update OWNERS file #245
OCPBUGS-19108 : Updating prometheus-operator images to be consistent with ART #242
OCPBUGS-19204 : Updating prometheus-operator-admission-webhook images to be consistent with ART #244
OCPBUGS-19174 : Updating prometheus-config-reloader images to be consistent with ART #243
: Bump openshift/prometheus-operator to v0.68.0 #241
Bump openshift/prometheus-operator to v0.67.1 #240
Bump openshift/prometheus-operator to v0.67.0 #239
OCPBUGS-14466 : bump openshift/prometheus-operator to v0.66.0 #236
OCPBUGS-14033 : cmd/prometheus-config-reloader: add SIGTERM handler #234
OCPBUGS-1626 : [bot] Bump openshift/prometheus-operator to v0.65.1 #233
OCPBUGS-12324 : Update 4.14 prometheus-config-reloader image to be consistent with ART #230
Updating prometheus-operator images to be consistent with ART #229
Updating prometheus-config-reloader images to be consistent with ART #227
Updating prometheus-operator-admission-webhook images to be consistent with ART #226
Updating prometheus-config-reloader images to be consistent with ART #225
OCPBUGS-10109 : Updating openshift-state-metrics images to be consistent with ART #221
OCPBUGS-10137 : Updating openshift-state-metrics images to be consistent with ART #222
Updating prometheus-operator images to be consistent with ART #220
OCPBUGS-6055 : [bot] Bump openshift/prometheus-operator to v0.63.0 #216
Bump openshift/prometheus-operator to v0.62.0 #215
Updating prometheus-operator-admission-webhook images to be consistent with ART #214
Updating prometheus-config-reloader images to be consistent with ART #213
Updating prometheus-operator images to be consistent with ART #212
OCPBUGS-2778 : [bot] Bump openshift/prometheus-operator to v0.61.1 #209
Bump openshift/prometheus-operator to v0.60.1 #208
Bump openshift/prometheus-operator to v0.60.0 #207
Updating prometheus-operator-admission-webhook images to be consistent with ART #206
Updating prometheus-config-reloader images to be consistent with ART #205
Bump openshift/prometheus-operator to v0.59.2 #203
Bump openshift/prometheus-operator to v0.59.1 #200
OWNERS: Add myself, and move former team members to emeritus #198
Bump openshift/prometheus-operator to v0.58.0 #197
Updating prometheus-operator-admission-webhook images to be consistent with ART #195
Updating prometheus-config-reloader images to be consistent with ART #194
Updating prometheus-operator images to be consistent with ART #193
Bug 2097716 : pkg/apis/monitoring/v1beta1: fix httpConfig conversion #191
Bug 2091595 : bump to Prometheus operator v0.57.0 #190
Bug 2079679 : pkg/prometheus: fix curl exec probe #189
Revert “Bug 2091595: Bump openshift/prometheus-operator to v0.56.3” #188
Bug 2091595 : Bump openshift/prometheus-operator to v0.56.3 #185
Updating prometheus-operator-admission-webhook images to be consistent with ART #180
Updating prometheus-config-reloader images to be consistent with ART #178
Bug 2084288 : Revert “Bump openshift/prometheus-operator to v0.56.2” #177
Updating prometheus-operator images to be consistent with ART #176
Bump openshift/prometheus-operator to v0.56.2 #174
Revert “Bump openshift/prometheus-operator to v0.56.1” #171
Bump openshift/prometheus-operator to v0.56.1 #170
Add myself to OWNER file #166
Bug 2079679 : Revert “[bot] Bump openshift/prometheus-operator to v0.56.0” #168
Bump openshift/prometheus-operator to v0.56.0 #165
Bump openshift/prometheus-operator to v0.55.1 #164
Bump openshift/prometheus-operator to v0.55.0 #162
Fix typo in admission webhook bin output #163
Add Dockerfile and targets for standalone admission webhook image #160
Standalone webhook server #159
Bump openshift/prometheus-operator to v0.54.1 #158
Updating prometheus-config-reloader images to be consistent with ART #155
Bump openshift/prometheus-operator to v0.54.0 #151
Updating prometheus-operator images to be consistent with ART #154
Bug 2030539 : Address race condition in recreate flow for statefulset #152
Bug 2036717 : [bot] Bump openshift/prometheus-operator to v0.53.1 #147
Bump openshift/prometheus-operator to v0.53.0 #146
Release 0.52 #141
Updating prometheus-config-reloader images to be consistent with ART #144
OWNERS: cleanup #140
Bump v0.51.2 #139
Updating prometheus-operator images to be consistent with ART #136
Bump to v0.50.0 #133
Updating prometheus-config-reloader images to be consistent with ART #135
Updating prometheus-operator images to be consistent with ART #134
Bug 1977435 : Bump prometheus-operator to v0.49.0 #131
Updating prometheus-config-reloader images to be consistent with ART #130
Updating prometheus-operator images to be consistent with ART #129
Update OWNERS file to reflect new maintainers #127
Updating .ci-operator.yaml build_root_image
from openshift/release #128
Full changelog
Source code for this page located on github