# 4.10.67 Created: 2023-08-31 07:31:38 +0000 UTC Image Digest: `sha256:828afb599f68042c213498161977de6c1cc938da4836ae585561af25fd43440b` Promoted from registry.ci.openshift.org/ocp/release:4.10.0-0.nightly-2023-08-30-093810 ## Changes from 4.10.3 ### Components * Kubernetes upgraded from 1.23.3 to 1.23.17 * Red Hat Enterprise Linux CoreOS upgraded from 410.84.202202251620-0 to 410.84.202308291254-0 ### New images * [hypershift](https://github.com/openshift/hypershift) git [13fd957d](https://github.com/openshift/hypershift/commit/13fd957d2af1a182f84e112e06c5b47d94ada2f1) `sha256:03a2d830aacb6a30dea7e9feb96e07945ac67d30f8317c0cc6a9da17865f08a9` ### Removed images * cluster-capi-controllers * cluster-capi-operator ### Rebuilt images without code change * [alibaba-cloud-controller-manager](https://github.com/openshift/cloud-provider-alibaba-cloud) git [db2d118a](https://github.com/openshift/cloud-provider-alibaba-cloud/commit/db2d118ad70ff62a2111e83a8d14c5b32e176b38) `sha256:312a4b947b15edabc317c022e262a5231f36ce9f8815351105540c2ad321f0e7` * [aws-cloud-controller-manager](https://github.com/openshift/cloud-provider-aws) git [d85867fe](https://github.com/openshift/cloud-provider-aws/commit/d85867feab1e80f094624d57221a071d7b6a148c) `sha256:f5b099a9816d2c390543a3ab06bdef7126841f5f8b799ebec69624bf91797e64` * [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook) git [7f9eb87a](https://github.com/openshift/aws-pod-identity-webhook/commit/7f9eb87aea90ff2bac0c98df741b6d6dd0c61449) `sha256:50ce420a069da82eff1899d0ec3b5b29110820fd3966cc9138f5a1c2103c9cb5` * [azure-file-csi-driver-operator](https://github.com/openshift/azure-file-csi-driver-operator) git [3807eb37](https://github.com/openshift/azure-file-csi-driver-operator/commit/3807eb37247bb9008d7e64c10e3bf6a3872d199d) `sha256:4fd33c1f350f9187545446dfd5d01e0eb2558433f93fc028eb0897ceb3517dcf` * [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator) git [b8b65d15](https://github.com/openshift/cluster-openshift-controller-manager-operator/commit/b8b65d15d14c21e6a5dd316dd59a9cfb3a2f403a) `sha256:3846b76c736b900a530cf24d8fde67ad3b8ee0d09c480cfbacb3d7d566084e00` * [csi-driver-shared-resource](https://github.com/openshift/csi-driver-shared-resource) git [d06ff18b](https://github.com/openshift/csi-driver-shared-resource/commit/d06ff18b2ff23e5165638d6c3df42a2e1715b28f) `sha256:79b33d8d432669be87c42b29150185de417ae569aa2a5c00de301879f5d303e3` * [csi-driver-shared-resource-operator](https://github.com/openshift/csi-driver-shared-resource-operator) git [662615b3](https://github.com/openshift/csi-driver-shared-resource-operator/commit/662615b3427b57d8aafff6b982a7e4b34692eadc) `sha256:36e1bd2796f72d0f39cce1e6f454f3ef49db2c75005e2820e01531df2991c660` * [csi-external-attacher](https://github.com/openshift/csi-external-attacher) git [27e71f2b](https://github.com/openshift/csi-external-attacher/commit/27e71f2bb577200dc3cd87851989f0c950521eb8) `sha256:39649bb03aa094de0f9eb43bb8e83ee7c57c4f6f46ed4031769b817f25cda369` * [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner) git [31de1e19](https://github.com/openshift/csi-external-provisioner/commit/31de1e19119e6b63cd9d52622f5b9d9df7e4c384) `sha256:22adff89cbff5d39d7b59c8f3cb1bf2a7d24992e8b969c7bc4b9580ae1b8c4d8` * [csi-external-resizer](https://github.com/openshift/csi-external-resizer) git [e5934091](https://github.com/openshift/csi-external-resizer/commit/e5934091f8cc4a6ca58f3719ba4487a46b4252df) `sha256:f72c3ae76f8cee44dbef9b700e02e7a1f37f59b35c7451c26e63e8e1226c89b0` * [csi-external-snapshotter](https://github.com/openshift/csi-external-snapshotter) git [fe4a0a2f](https://github.com/openshift/csi-external-snapshotter/commit/fe4a0a2f48fcc9069910773b32188597d899bdde) `sha256:10bfc3d3baef35ea49f2fa77cda3c981b95922015aca5dfc3b41e92b94e2a616` * [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar) git [bb0bd823](https://github.com/openshift/csi-node-driver-registrar/commit/bb0bd823c2212c6657e5835eb0015aab4e93839d) `sha256:fc822a3e9abe48e5a00b23def1e6fa2a342b97f76cd691d9e08d8eeb2bf923a8` * [csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter) git [fe4a0a2f](https://github.com/openshift/csi-external-snapshotter/commit/fe4a0a2f48fcc9069910773b32188597d899bdde) `sha256:240ef7008f5a9ce6fcb5919e0a3c0187d26c6d80dabd07ced45a9119f97ee082` * [csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter) git [fe4a0a2f](https://github.com/openshift/csi-external-snapshotter/commit/fe4a0a2f48fcc9069910773b32188597d899bdde) `sha256:81def31ce08aceade30213bea88f9c1fa8135eec46bfe198901fe7e8e675f971` * [egress-router-cni](https://github.com/openshift/egress-router-cni) git [5c56bc8a](https://github.com/openshift/egress-router-cni/commit/5c56bc8a0b27f560435f1564de0f3f440e68d889) `sha256:f18000315c49c24d19fa10239b0ea5e53f013abb61c160f28e4e73e87e5f10f6` * [gcp-cloud-controller-manager](https://github.com/openshift/cloud-provider-gcp) git [4dc728d0](https://github.com/openshift/cloud-provider-gcp/commit/4dc728d0e1af40893815149de016e5d6e5a7bacb) `sha256:55ae0f1d15a6859a9ccf258f7614208a62cac22731fdfea1d00ec5735fd8483f` * [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver) git [19e9a57f](https://github.com/openshift/gcp-pd-csi-driver/commit/19e9a57f04436cfc7df7d38bf5ba047d46982268) `sha256:2b4117ed8746d138220439bb7764c8b0ae185616af459d108ffc08e7c0c99ca6` * [ibm-cloud-controller-manager](https://github.com/openshift/cloud-provider-ibm) git [e3039120](https://github.com/openshift/cloud-provider-ibm/commit/e30391202c3f02694b2f5b3c2d73cb560d9c133d) `sha256:e41401335fad176bdfd0dd4ce9a2bd4e5bd073b5ef36243234fb7db7e496f028` * [ibm-vpc-node-label-updater](https://github.com/openshift/ibm-vpc-node-label-updater) git [7074dfc3](https://github.com/openshift/ibm-vpc-node-label-updater/commit/7074dfc35cdd3c2e19790a934c1025c8f690c9a6) `sha256:cc16f0f3305654d3068cf3d119e0ee602cdeae099a37b05b98b92f2ebbd77c4e` * [ibmcloud-machine-controllers](https://github.com/openshift/cluster-api-provider-ibmcloud) git [7449a94f](https://github.com/openshift/cluster-api-provider-ibmcloud/commit/7449a94fcd0001cac6371600a75b20850b235cc9) `sha256:00c18b1b0ffe3cfd0a93debdfcafb9d10778b4025e03735068023db2dc1cac62` * [ironic-hardware-inventory-recorder](https://github.com/openshift/ironic-hardware-inventory-recorder-image) git [62469223](https://github.com/openshift/ironic-hardware-inventory-recorder-image/commit/6246922338bc8aa21276c7e679bdd082307cbd45) `sha256:0ee90ca5557ce6d361b2ea351cdb7f9b316d907798a3f1f0a075913f3adb67b3` * [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader) git [81fe2974](https://github.com/openshift/ironic-rhcos-downloader/commit/81fe29749c844a4a19fea0f0e2ff0a53c3b0fa25) `sha256:4e47d5cfb1c769813e4f11e03a584a97a7a7be41762502a2dbb2b2b6b04ac59c` * [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager) git [45a1c542](https://github.com/openshift/ironic-static-ip-manager/commit/45a1c542c44d9492a110ea5edb09ac026afd86de) `sha256:215819a6fc123661504606a1fb5460e128bf703ff14d32609869bb4e987afd39` * [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter) git [4052b317](https://github.com/openshift/k8s-prometheus-adapter/commit/4052b317ff62b93019a11e2981d1d81b8b6b2e4d) `sha256:cd211842b9395936c955f849c77968ed72dbbe489941ff06f8615e56087d5058` * [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy) git [4f198b2b](https://github.com/openshift/kube-rbac-proxy/commit/4f198b2bd5d141a561fbe6642de20b520d72e513) `sha256:695eb0e189565eb8ccf06d32f6f06598908d35cdfea88edc0c75560806a037b7` * [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator) git [901a6d22](https://github.com/openshift/kubernetes-kube-storage-version-migrator/commit/901a6d221d1cf79b4b6ba859bb43521e0ee635b3) `sha256:cb035bc1ae31bd147032445a180db06b97d86719ef7f751bdd618ad6a6137de8` * [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt) git [3b330b72](https://github.com/openshift/cluster-api-provider-libvirt/commit/3b330b72f43b178f1c16c5d504cf9ce248e679ad) `sha256:39db70c6ce2e04334ef78b0cb9c042e3e3a1b5efdd2644c8688f397ea0b74f16` * machine-os-content `sha256:ec0997939fae90b34207a415ea82fe30041d13d98e5d8baa61c8291bfa1ffefb` * [multus-route-override-cni](https://github.com/openshift/route-override-cni) git [707dd380](https://github.com/openshift/route-override-cni/commit/707dd38046554810f601f2fae4a69bc4b907d7d3) `sha256:14b7a9fb4bcf45427d950eebf84df5e14d82a0e970cff1744ad67af6f6449701` * [network-tools](https://github.com/openshift/network-tools) git [bcfec9c5](https://github.com/openshift/network-tools/commit/bcfec9c5a054f4c60356175b42a2477ec181fbd9) `sha256:44102cb6046621b34acd3d41350aca88368aa54b6eea61f48b5f5f6387758f97` * [oauth-proxy](https://github.com/openshift/oauth-proxy) git [799d414b](https://github.com/openshift/oauth-proxy/commit/799d414ba87ca5b28d08cf4af07409032c04df2b) `sha256:e49589dbfb006cdff570c7e30b065278e1659d708e9e0d6b539c8a86018cdeb1` * [oauth-server](https://github.com/openshift/oauth-server) git [245b95f8](https://github.com/openshift/oauth-server/commit/245b95f8a8e28e3960e4d369f3ca9a42be99bdf8) `sha256:e2891a32f5a3355431c05f38763a1dd8366e811643558d98cf5385720dbd698f` * [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager) git [2c2d50db](https://github.com/openshift/openshift-controller-manager/commit/2c2d50dbda3a06681a3b9c683c53ff3b3ba3b685) `sha256:a0a8cfcc3a961142e678a258d8a1beb6980ebc6a5cb6ea7e36211ba83dddff8a` * [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack) git [2401f74d](https://github.com/openshift/machine-api-provider-openstack/commit/2401f74dba8112e0dd4a4a1bb77c26887d5da3f4) `sha256:a0d6d6dd6d23e8d65a3c9a87d702ce579dd913381d93f8519b18e8333a4189ce` * [operator-marketplace](https://github.com/operator-framework/operator-marketplace) git [80b92ecf](https://github.com/operator-framework/operator-marketplace/commit/80b92ecff398578b389cd953605a7b0f7bbd4f24) `sha256:cc3d1698ce9c702e21b493735780b2dbb85eac91ea537e4672a409bade13940c` * [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt) git [35ce9aaf](https://github.com/openshift/cluster-api-provider-ovirt/commit/35ce9aafee1ffad0734f02ff0d5f8632d3905f09) `sha256:aecf1fedfb71c991daa26425fa0d5bc21d541f30ae5ce77aa15e010572989d0c` * [powervs-machine-controllers](https://github.com/openshift/machine-api-provider-powervs) git [c1d68e7b](https://github.com/openshift/machine-api-provider-powervs/commit/c1d68e7b97a8bcf9b350e4a686fd202ffc69978f) `sha256:24f15b8a71ff658020fab02212db2a6f299d74e2eae49570c1c800f02341acd8` * [prom-label-proxy](https://github.com/openshift/prom-label-proxy) git [5f4c8992](https://github.com/openshift/prom-label-proxy/commit/5f4c89923dcfb1c620490e8ed8de8cd1bdaf5122) `sha256:6f67682be74d2723c623df09eb8f1a92797f3937f593bc9dac0a6431de8e3545` * [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager) git [01339596](https://github.com/openshift/prometheus-alertmanager/commit/013395968b37eb66909d7bbee7e34249b120835e) `sha256:36147358c69327c7803fada4a6bac203bb50e30cda3ac69b36ca9caf3305287f` * [prometheus-node-exporter](https://github.com/openshift/node_exporter) git [0eed3102](https://github.com/openshift/node_exporter/commit/0eed31026699ad13ca7fcebbc547a830371a920c) `sha256:cedec3adbd73631b97fdd2379a1b9c978c03b41965101dde488579a49c9cd1c4` * [service-ca-operator](https://github.com/openshift/service-ca-operator) git [1611373e](https://github.com/openshift/service-ca-operator/commit/1611373e4bf053ca78dc89b5fd4a4daf078312cf) `sha256:39cfba4dba3cc9f0f185c5261de3f21abede0e816d28ff233e0ad10f3908465a` * [vsphere-csi-driver](https://github.com/openshift/vmware-vsphere-csi-driver) git [e310f4d3](https://github.com/openshift/vmware-vsphere-csi-driver/commit/e310f4d3828a71fb96344ccbe8b29d22754ebf77) `sha256:c6dffb74c59059a88c5321689db9d474144ed9b2570fc6eccca8f01bc41c5e0e` * [vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver) git [e310f4d3](https://github.com/openshift/vmware-vsphere-csi-driver/commit/e310f4d3828a71fb96344ccbe8b29d22754ebf77) `sha256:a03c494a988c01793dc2a8990c963b4839e73557504b0587db3ed50b747dd9cf` ### [alibaba-cloud-csi-driver](https://github.com/openshift/alibaba-cloud-csi-driver/tree/5c30ca11ee5a7a312f5eed9f372d43c1af3c2154) * [OCPBUGS-4123](https://issues.redhat.com/browse/OCPBUGS-4123): Add explicit pciutils package [#19](https://github.com/openshift/alibaba-cloud-csi-driver/pull/19) * [Bug 2076671](https://bugzilla.redhat.com/show_bug.cgi?id=2076671): 4.10: Add a parameter to the schema to automatically increase volume sizes [#14](https://github.com/openshift/alibaba-cloud-csi-driver/pull/14) * [Full changelog](https://github.com/openshift/alibaba-cloud-csi-driver/compare/b9dd1ad5bd2a8971c22dca927d61d8f259516035...5c30ca11ee5a7a312f5eed9f372d43c1af3c2154) ### [alibaba-disk-csi-driver-operator](https://github.com/openshift/alibaba-disk-csi-driver-operator/tree/f0d6966321e3d416efec2ac7405494b057cb35f8) * [Bug 2076671](https://bugzilla.redhat.com/show_bug.cgi?id=2076671): Auto increase volume size to 20 GiB in the default storage class [#28](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/28) * [Bug 2058716](https://bugzilla.redhat.com/show_bug.cgi?id=2058716): Add test manifests + Dockerfile for it [#22](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/22) * [Full changelog](https://github.com/openshift/alibaba-disk-csi-driver-operator/compare/9c102a7743a6c145422efae2cab810bbd8a4f414...f0d6966321e3d416efec2ac7405494b057cb35f8) ### [alibaba-machine-controllers](https://github.com/openshift/cluster-api-provider-alibaba/tree/9617f1f0b1266797f9237b2c3dd184f5a05f8f5b) * Updating ose-alibaba-machine-controllers images to be consistent with ART [#23](https://github.com/openshift/cluster-api-provider-alibaba/pull/23) * [Full changelog](https://github.com/openshift/cluster-api-provider-alibaba/compare/0206121348c9a0d220dd6805cea79d1eae7fd3e0...9617f1f0b1266797f9237b2c3dd184f5a05f8f5b) ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/2bad4b40757a33bf92ab8937ececf279cc46376c) * [OCPBUGS-1804](https://issues.redhat.com/browse/OCPBUGS-1804): UPSTREAM: 1398: Add resolver to handle custom endpoints [#210](https://github.com/openshift/aws-ebs-csi-driver/pull/210) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/8ba0c7a879c4a03e628c4d123ff8fdab884cedbb...2bad4b40757a33bf92ab8937ececf279cc46376c) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/c2e6dc19fac0006651d0820272a9734e231b1ce5) * [Bug 2077894](https://bugzilla.redhat.com/show_bug.cgi?id=2077894): Set custom endpoint environment variable if available [#154](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/154) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/b97403911f93755ea71b77941b57e4f33f13ea1f...c2e6dc19fac0006651d0820272a9734e231b1ce5) ### [aws-machine-controllers](https://github.com/openshift/machine-api-provider-aws/tree/8c8d1c15bfbbe52abaa2e2dd34d360854f40e1b1) * [Bug 2117557](https://bugzilla.redhat.com/show_bug.cgi?id=2117557): Fix panic when accessing nil machine annotations map [#50](https://github.com/openshift/machine-api-provider-aws/pull/50) * [Bug 2109124](https://bugzilla.redhat.com/show_bug.cgi?id=2109124): Validate unknown regions using AWS API [#48](https://github.com/openshift/machine-api-provider-aws/pull/48) * [Bug 2083270](https://bugzilla.redhat.com/show_bug.cgi?id=2083270): Custom DHCP Option Set: empty domain-name is a valid custom domain [#37](https://github.com/openshift/machine-api-provider-aws/pull/37) * [Full changelog](https://github.com/openshift/machine-api-provider-aws/compare/192e5f9c1c89560ceec02ed9244388849f11ab97...8c8d1c15bfbbe52abaa2e2dd34d360854f40e1b1) ### [azure-cloud-controller-manager, azure-cloud-node-manager](https://github.com/openshift/cloud-provider-azure/tree/ae571af8f8f60ccc14b3772032bd5c1072f2a746) * bug OCPBUGS-2062: .dockerignore: enable OSBS2 builds [#42](https://github.com/openshift/cloud-provider-azure/pull/42) * [Full changelog](https://github.com/openshift/cloud-provider-azure/compare/07f1335140207eb41fb92fa0e689a89bc9b5efd9...ae571af8f8f60ccc14b3772032bd5c1072f2a746) ### [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver/tree/c7c7188d259bb45decb8dd685798316f24faed19) * [Bug 2118392](https://bugzilla.redhat.com/show_bug.cgi?id=2118392): Update dd table 4.10 [#31](https://github.com/openshift/azure-disk-csi-driver/pull/31) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver/compare/3d79d39e02f49de7608bcf921694b64d827147af...c7c7188d259bb45decb8dd685798316f24faed19) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/35aa99d74d4fd34f2c4d7b1a73d09d90b7df6413) * [OCPBUGS-8020](https://issues.redhat.com/browse/OCPBUGS-8020): Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars [#72](https://github.com/openshift/azure-disk-csi-driver-operator/pull/72) * [Bug 2105304](https://bugzilla.redhat.com/show_bug.cgi?id=2105304): Increase pod startup timeout in e2e tests [#52](https://github.com/openshift/azure-disk-csi-driver-operator/pull/52) * [Bug 2097439](https://bugzilla.redhat.com/show_bug.cgi?id=2097439): Only use credentials that are provided by the azure-inject-credential… [#50](https://github.com/openshift/azure-disk-csi-driver-operator/pull/50) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/3b25a5d7c612c4b0d9dfdf1fc44e4dc8483d7ae3...35aa99d74d4fd34f2c4d7b1a73d09d90b7df6413) ### [azure-file-csi-driver](https://github.com/openshift/azure-file-csi-driver/tree/87b4a7182b596354458d22c02bf7c51566f695ed) * [OCPBUGS-2607](https://issues.redhat.com/browse/OCPBUGS-2607): remove "replace" directive in go.mod [#20](https://github.com/openshift/azure-file-csi-driver/pull/20) * [Full changelog](https://github.com/openshift/azure-file-csi-driver/compare/f88155b4c4a3a6dc4d56bac44edb82198a967a4b...87b4a7182b596354458d22c02bf7c51566f695ed) ### [azure-machine-controllers](https://github.com/openshift/machine-api-provider-azure/tree/04ed0af96d9a8667360a911b5c760767c8a97f0a) * [OCPBUGS-3165](https://issues.redhat.com/browse/OCPBUGS-3165): Update azure instance types cache [#38](https://github.com/openshift/machine-api-provider-azure/pull/38) * [OCPBUGS-930](https://issues.redhat.com/browse/OCPBUGS-930): Ignore unknown Instance types in accelerated networking check [#34](https://github.com/openshift/machine-api-provider-azure/pull/34) * [Bug 2093275](https://bugzilla.redhat.com/show_bug.cgi?id=2093275): update getAvailabilitySetName function [#23](https://github.com/openshift/machine-api-provider-azure/pull/23) * [Full changelog](https://github.com/openshift/machine-api-provider-azure/compare/177035a6720a99b86e3ecd0ee83ca9f0ec63b60c...04ed0af96d9a8667360a911b5c760767c8a97f0a) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/56485334b74321275b2f05cbc17c9f8d6fd39c13) * [OCPBUGS-12751](https://issues.redhat.com/browse/OCPBUGS-12751): [Alibaba] update the bandwidth value of EIP [#7130](https://github.com/openshift/installer/pull/7130) * [OCPBUGS-14557](https://issues.redhat.com/browse/OCPBUGS-14557): openstack: Add netcat to the Installer image [#7230](https://github.com/openshift/installer/pull/7230) * [OCPBUGS-537](https://issues.redhat.com/browse/OCPBUGS-537): vSphere - enable steal time accounting [#6261](https://github.com/openshift/installer/pull/6261) * [OCPBUGS-5931](https://issues.redhat.com/browse/OCPBUGS-5931): destroy/gcp: Disk names are filtered using kubernetes name format [#6972](https://github.com/openshift/installer/pull/6972) * [OCPBUGS-5663](https://issues.redhat.com/browse/OCPBUGS-5663): CVE-2021-4238: goutils: update for randomness fix [#6766](https://github.com/openshift/installer/pull/6766) * [OCPBUGS-2731](https://issues.redhat.com/browse/OCPBUGS-2731): OpenStack UPI: Create server group for Computes [#6510](https://github.com/openshift/installer/pull/6510) * [OCPBUGS-6697](https://issues.redhat.com/browse/OCPBUGS-6697): destroy/gcp: Use min length for destroying disks [#6808](https://github.com/openshift/installer/pull/6808) * [OCPBUGS-2743](https://issues.redhat.com/browse/OCPBUGS-2743): skip sts credentials check in terraform [#6518](https://github.com/openshift/installer/pull/6518) * [OCPBUGS-5112](https://issues.redhat.com/browse/OCPBUGS-5112): OpenStack: Force JSON content-type in Swift object listing [#6726](https://github.com/openshift/installer/pull/6726) * [OCPBUGS-377](https://issues.redhat.com/browse/OCPBUGS-377): UPI image download govc rate limit failure [#6245](https://github.com/openshift/installer/pull/6245) * [OCPBUGS-4160](https://issues.redhat.com/browse/OCPBUGS-4160): OpenStack: Force JSON content-type in Swift [#6628](https://github.com/openshift/installer/pull/6628) * [OCPBUGS-3743](https://issues.redhat.com/browse/OCPBUGS-3743): build: change ppc64le linking mode [#6597](https://github.com/openshift/installer/pull/6597) * [Bug 2099604](https://bugzilla.redhat.com/show_bug.cgi?id=2099604): Remove optional services from permissions check [#6507](https://github.com/openshift/installer/pull/6507) * [OCPBUGS-2795](https://issues.redhat.com/browse/OCPBUGS-2795): Bump gophercloud [#6529](https://github.com/openshift/installer/pull/6529) * [Bug 2101014](https://bugzilla.redhat.com/show_bug.cgi?id=2101014): Release 4.10 go getter update [#6361](https://github.com/openshift/installer/pull/6361) * [OCPBUGS-1737](https://issues.redhat.com/browse/OCPBUGS-1737): OpenStack: Lift validation for 14 chars cluster names [#6420](https://github.com/openshift/installer/pull/6420) * [OCPBUGS-1936](https://issues.redhat.com/browse/OCPBUGS-1936): bump RHCOS 4.10 bootimage metadata [#6454](https://github.com/openshift/installer/pull/6454) * [Bug 2107154](https://bugzilla.redhat.com/show_bug.cgi?id=2107154): Make azure baseDomainResoureGroup optional for private c… [#6120](https://github.com/openshift/installer/pull/6120) * [Bug 2112914](https://bugzilla.redhat.com/show_bug.cgi?id=2112914): Fix validation errors for instance type [#6189](https://github.com/openshift/installer/pull/6189) * [Bug 2102363](https://bugzilla.redhat.com/show_bug.cgi?id=2102363): Dynamic retrieval of GCP Regions for a Project [#6059](https://github.com/openshift/installer/pull/6059) * [OCPBUGS-784](https://issues.redhat.com/browse/OCPBUGS-784): Download yq in upi installer containers [#6285](https://github.com/openshift/installer/pull/6285) * [Bug 2111258](https://bugzilla.redhat.com/show_bug.cgi?id=2111258): vsphere installconfig: use full dc path in network validation [#6173](https://github.com/openshift/installer/pull/6173) * [OCPBUGS-249](https://issues.redhat.com/browse/OCPBUGS-249): Allow setting bootstrap kubelet ip [#6231](https://github.com/openshift/installer/pull/6231) * [Bug 2095319](https://bugzilla.redhat.com/show_bug.cgi?id=2095319): bump RHCOS 4.10 bootimage metadata [#6095](https://github.com/openshift/installer/pull/6095) * [Bug 2099673](https://bugzilla.redhat.com/show_bug.cgi?id=2099673): Collect whole journal and netstat data [#6035](https://github.com/openshift/installer/pull/6035) * [Bug 2097753](https://bugzilla.redhat.com/show_bug.cgi?id=2097753): Bootstrap timeout increase [#6017](https://github.com/openshift/installer/pull/6017) * [Bug 2083632](https://bugzilla.redhat.com/show_bug.cgi?id=2083632): Delete all the ports from tagged Neutron networks. [#5882](https://github.com/openshift/installer/pull/5882) * [Bug 2077904](https://bugzilla.redhat.com/show_bug.cgi?id=2077904): Fix empty string usage in ValidateForProvisioning [#5835](https://github.com/openshift/installer/pull/5835) * [Bug 2045771](https://bugzilla.redhat.com/show_bug.cgi?id=2045771): bump RHCOS 4.10 bootimage metadata [#5932](https://github.com/openshift/installer/pull/5932) * [Bug 2083335](https://bugzilla.redhat.com/show_bug.cgi?id=2083335): Set rc-manager=unmanaged for on-prem bootstrap [#5876](https://github.com/openshift/installer/pull/5876) * [Bug 2084547](https://bugzilla.redhat.com/show_bug.cgi?id=2084547): update azure arm templates to support customer provided vnet [#5892](https://github.com/openshift/installer/pull/5892) * [Bug 2083327](https://bugzilla.redhat.com/show_bug.cgi?id=2083327): [release-4.10] Add 'ARG TAGS=""' line for each build step [#5874](https://github.com/openshift/installer/pull/5874) * [Bug 2076613](https://bugzilla.redhat.com/show_bug.cgi?id=2076613): [release-4.10] data/data/coreos/fcos.json: update initial FCOS to 35.20220327.3.0 [#5820](https://github.com/openshift/installer/pull/5820) * [Bug 2079589](https://bugzilla.redhat.com/show_bug.cgi?id=2079589): azurestack: stop pinning to Standard_LRS for disk type [#5851](https://github.com/openshift/installer/pull/5851) * [Bug 2041765](https://bugzilla.redhat.com/show_bug.cgi?id=2041765): Update BMO vendor [#5705](https://github.com/openshift/installer/pull/5705) * [Bug 2077411](https://bugzilla.redhat.com/show_bug.cgi?id=2077411): for vsphere ipi add cluster domain to the uploaded vm configs so that 30-local-dns-prepender can use it [#5827](https://github.com/openshift/installer/pull/5827) * [Bug 2068948](https://bugzilla.redhat.com/show_bug.cgi?id=2068948): Update region check for coreos AMIs [#5752](https://github.com/openshift/installer/pull/5752) * [Bug 2072135](https://bugzilla.redhat.com/show_bug.cgi?id=2072135): vsphere: Use Managed Object ID for networks instead of potentially duplicate name. [#5773](https://github.com/openshift/installer/pull/5773) * [Bug 2062429](https://bugzilla.redhat.com/show_bug.cgi?id=2062429): IBMCloud: Missing infra providertype [#5693](https://github.com/openshift/installer/pull/5693) * [Bug 2065808](https://bugzilla.redhat.com/show_bug.cgi?id=2065808): stop considering Mint mode as supported on Azure (#5699) [#5717](https://github.com/openshift/installer/pull/5717) * [Bug 2064731](https://bugzilla.redhat.com/show_bug.cgi?id=2064731): fix(ibmcloud): Properly match regex for DNS destroy [#5711](https://github.com/openshift/installer/pull/5711) * [Bug 2051334](https://bugzilla.redhat.com/show_bug.cgi?id=2051334): Remove non-public AWS regions from list of regions [#5624](https://github.com/openshift/installer/pull/5624) * [Bug 2062748](https://bugzilla.redhat.com/show_bug.cgi?id=2062748): vsphere: Not found TagCategory when destroying ipi cluster [#5696](https://github.com/openshift/installer/pull/5696) * [Full changelog](https://github.com/openshift/installer/compare/3b701903d96b6375f6c3852a02b4b70fea01d694...56485334b74321275b2f05cbc17c9f8d6fd39c13) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/adff401d86d176d61cf2dc47c4142e30d7b04e4b) * Update OWNERS [#179](https://github.com/openshift/cluster-api-provider-baremetal/pull/179) * [Bug 2099584](https://bugzilla.redhat.com/show_bug.cgi?id=2099584): Update BMO vendor to v0.0.0-20211102102625-469cc9bf7fee [#174](https://github.com/openshift/cluster-api-provider-baremetal/pull/174) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/0716ee4cb33bdef966f9ccbef2579d68df8bcd92...adff401d86d176d61cf2dc47c4142e30d7b04e4b) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/01960d8dbf91d3fae8804534089eb8e13e0b72c3) * [OCPBUGS-11686](https://issues.redhat.com/browse/OCPBUGS-11686): allow namespace to continue with terminating when deprovisioning at t… [#263](https://github.com/openshift/baremetal-operator/pull/263) * [Bug 2061794](https://bugzilla.redhat.com/show_bug.cgi?id=2061794): [4.10] Only update the HFS status on changes [#247](https://github.com/openshift/baremetal-operator/pull/247) * [Bug 2069638](https://bugzilla.redhat.com/show_bug.cgi?id=2069638): Use deep copy/equal for host root device hints [#221](https://github.com/openshift/baremetal-operator/pull/221) * [Bug 2047930](https://bugzilla.redhat.com/show_bug.cgi?id=2047930): Move from Available to Preparing if HostFirmwareSettings changed [#210](https://github.com/openshift/baremetal-operator/pull/210) * [Bug 2100996](https://bugzilla.redhat.com/show_bug.cgi?id=2100996): Uplift kustomize to v4 to remove go-getter dependency [#234](https://github.com/openshift/baremetal-operator/pull/234) * [Bug 2097695](https://bugzilla.redhat.com/show_bug.cgi?id=2097695): Stop treating missing network as fatal error [#230](https://github.com/openshift/baremetal-operator/pull/230) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/28771f489634da2364fb46766953f2e1962bf350...01960d8dbf91d3fae8804534089eb8e13e0b72c3) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/40c11f7299386a9608e18feb8cc062c2ebc3364b) * [Bug 2084187](https://bugzilla.redhat.com/show_bug.cgi?id=2084187): Avoid kubernetes node port range [#178](https://github.com/openshift/baremetal-runtimecfg/pull/178) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/edc9617a13839571f596109529573937fe199c2d...40c11f7299386a9608e18feb8cc062c2ebc3364b) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/5f40be42e083d61858a07f4d8ae4fad1e60b0627) * [OCPBUGS-16060](https://issues.redhat.com/browse/OCPBUGS-16060): mcs cert: account for environments that use IP directly [#1505](https://github.com/openshift/oc/pull/1505) * [OCPBUGS-16196](https://issues.redhat.com/browse/OCPBUGS-16196): reboot: set ignition version to 3.1 [#1511](https://github.com/openshift/oc/pull/1511) * Add extraction for rhel7 oc [#1490](https://github.com/openshift/oc/pull/1490) * Use rhel 8 builder to match the base image [#1489](https://github.com/openshift/oc/pull/1489) * handle the error case of node retrieval while waiting for reboot [#1487](https://github.com/openshift/oc/pull/1487) * bring some cert rotation helpers back into 4.10 [fix unit-tests] [#1481](https://github.com/openshift/oc/pull/1481) * [OCPBUGS-10750](https://issues.redhat.com/browse/OCPBUGS-10750): pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates [#1379](https://github.com/openshift/oc/pull/1379) * [OCPBUGS-10777](https://issues.redhat.com/browse/OCPBUGS-10777): bump repo sclorg/s2i-ruby-container location for newapp test [#1383](https://github.com/openshift/oc/pull/1383) * [Bug 2086969](https://bugzilla.redhat.com/show_bug.cgi?id=2086969): Delete recently created images when --prune-over-size-limit is used [#1146](https://github.com/openshift/oc/pull/1146) * [OCPBUGS-3968](https://issues.redhat.com/browse/OCPBUGS-3968): set proper pod security ns labels [#1293](https://github.com/openshift/oc/pull/1293) * [Bug 2015119](https://bugzilla.redhat.com/show_bug.cgi?id=2015119): bump(k8s.io/kubectl) to pick up k/k#110764 [#1270](https://github.com/openshift/oc/pull/1270) * [OCPBUGS-1788](https://issues.redhat.com/browse/OCPBUGS-1788): oc adm logs: generate proper path for static pods [#1246](https://github.com/openshift/oc/pull/1246) * [OCPBUGS-1638](https://issues.redhat.com/browse/OCPBUGS-1638): Increase default value of cache TTL to 6 hours [#1241](https://github.com/openshift/oc/pull/1241) * [Bug 2116526](https://bugzilla.redhat.com/show_bug.cgi?id=2116526): oc adm inspect: check a resource exists before its inspection [#1227](https://github.com/openshift/oc/pull/1227) * [Bug 2106158](https://bugzilla.redhat.com/show_bug.cgi?id=2106158): remove klog format and update messages for docker config deprecation [#1205](https://github.com/openshift/oc/pull/1205) * [Bug 2095584](https://bugzilla.redhat.com/show_bug.cgi?id=2095584): Backport `oc adm catalog mirror` --continue-on-error flag [#1170](https://github.com/openshift/oc/pull/1170) * [Bug 2084591](https://bugzilla.redhat.com/show_bug.cgi?id=2084591): [inspect] Add namespace-scoped networking resources to inspect [#1133](https://github.com/openshift/oc/pull/1133) * [Bug 2087248](https://bugzilla.redhat.com/show_bug.cgi?id=2087248): Add the ReleaseAccepted condition to the oc adm upgrade command [#1147](https://github.com/openshift/oc/pull/1147) * [Bug 2080151](https://bugzilla.redhat.com/show_bug.cgi?id=2080151): Remove network CRDs scheme registration [#1122](https://github.com/openshift/oc/pull/1122) * [Bug 2084429](https://bugzilla.redhat.com/show_bug.cgi?id=2084429): Fix project command auto completion [#1131](https://github.com/openshift/oc/pull/1131) * [Bug 2077332](https://bugzilla.redhat.com/show_bug.cgi?id=2077332): pkg/cli/admin/upgrade: Use PATCH instead of POST for spec updates [#1114](https://github.com/openshift/oc/pull/1114) * [Bug 2079325](https://bugzilla.redhat.com/show_bug.cgi?id=2079325): Fix kubectl version to 1.23.0 [#1117](https://github.com/openshift/oc/pull/1117) * [Bug 2068763](https://bugzilla.redhat.com/show_bug.cgi?id=2068763): make sure that we check for resorces and files before picking the simplest path [#1098](https://github.com/openshift/oc/pull/1098) * [Bug 2068474](https://bugzilla.redhat.com/show_bug.cgi?id=2068474): expose --keep-startup flag for oc debug [#1097](https://github.com/openshift/oc/pull/1097) * [Bug 2049427](https://bugzilla.redhat.com/show_bug.cgi?id=2049427): Enhancing the output provided when backup collections are attempted [#1056](https://github.com/openshift/oc/pull/1056) * [Bug 2060419](https://bugzilla.redhat.com/show_bug.cgi?id=2060419): reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories [#1083](https://github.com/openshift/oc/pull/1083) * [Bug 2051267](https://bugzilla.redhat.com/show_bug.cgi?id=2051267): pkg/cli/admin/upgrade: Mention --allow-explicit-upgrade next step when appropriate [#1052](https://github.com/openshift/oc/pull/1052) * [Full changelog](https://github.com/openshift/oc/compare/f93da179fe606775f8249fed96e0b9903d9188ed...5f40be42e083d61858a07f4d8ae4fad1e60b0627) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/cb5054fcca4d94491f07bb8138178752e454049a) * [OCPBUGS-13847](https://issues.redhat.com/browse/OCPBUGS-13847): Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. [#541](https://github.com/openshift/cloud-credential-operator/pull/541) * [OCPBUGS-11717](https://issues.redhat.com/browse/OCPBUGS-11717): ccoctl: Enable public anon read access to default OIDC S3 bucket [#531](https://github.com/openshift/cloud-credential-operator/pull/531) * [OCPBUGS-2802](https://issues.redhat.com/browse/OCPBUGS-2802): Backport --credentials-requests-dir for ccoctl gcp delete. [#507](https://github.com/openshift/cloud-credential-operator/pull/507) * [OCPBUGS-2884](https://issues.redhat.com/browse/OCPBUGS-2884): Make ccoctl use regional STS endpoint by default [#504](https://github.com/openshift/cloud-credential-operator/pull/504) * [OCPBUGS-2279](https://issues.redhat.com/browse/OCPBUGS-2279): Add ccoctl support to create OIDC endpoint with private S3 bucket [#501](https://github.com/openshift/cloud-credential-operator/pull/501) * [Bug 2107276](https://bugzilla.redhat.com/show_bug.cgi?id=2107276): Make ccoctl work with credentials fetched from gcloud cli defaults [#479](https://github.com/openshift/cloud-credential-operator/pull/479) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/aa5510254782d506f59a0578661f22a8d639dc85...cb5054fcca4d94491f07bb8138178752e454049a) ### [cloud-network-config-controller](https://github.com/openshift/cloud-network-config-controller/tree/e2f6f5e0e407dddb481e0e53c71c913ef3cb4d04) * [OCPBUGS-16626](https://issues.redhat.com/browse/OCPBUGS-16626): pull project name from subnet uri [#119](https://github.com/openshift/cloud-network-config-controller/pull/119) * Bug OCPBUGS-5419: Add ApplicationSecurityGroups to InterfaceIPConfiguration [#94](https://github.com/openshift/cloud-network-config-controller/pull/94) * [OCPBUGS-2162](https://issues.redhat.com/browse/OCPBUGS-2162): Add resolver to handle custom endpoints [#67](https://github.com/openshift/cloud-network-config-controller/pull/67) * [Bug 2075444](https://bugzilla.redhat.com/show_bug.cgi?id=2075444): Get subnet information from subnet instead of from network addresses [#40](https://github.com/openshift/cloud-network-config-controller/pull/40) * [Bug 2076935](https://bugzilla.redhat.com/show_bug.cgi?id=2076935): azure: default empty environment to AzurePublicCloud [#37](https://github.com/openshift/cloud-network-config-controller/pull/37) * [Bug 2062133](https://bugzilla.redhat.com/show_bug.cgi?id=2062133): Fix Azure VNET lookup when the NIC's subnet is in a different resource group [#28](https://github.com/openshift/cloud-network-config-controller/pull/28) * [Full changelog](https://github.com/openshift/cloud-network-config-controller/compare/224020ca9f043e8023e68dcc133d9a957025d6d1...e2f6f5e0e407dddb481e0e53c71c913ef3cb4d04) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/6a015c7108252fa22c75ffa4b7757d28bfed902a) * [Bug 2084054](https://bugzilla.redhat.com/show_bug.cgi?id=2084054): only ever include certificates in the oauth-serving-cert CM [#577](https://github.com/openshift/cluster-authentication-operator/pull/577) * [Bug 2060473](https://bugzilla.redhat.com/show_bug.cgi?id=2060473): e2e: Pin Keycloack to the legacy variant [#555](https://github.com/openshift/cluster-authentication-operator/pull/555) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/47704457a1a1015e74eec4dc566ecbae8b3d2c48...6a015c7108252fa22c75ffa4b7757d28bfed902a) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/266ba2db3dbf1fb7ddd07aca7c6223d800ecf3d2) * [OCPBUGS-2546](https://issues.redhat.com/browse/OCPBUGS-2546): UPSTREAM: <carry>: switched policy for PodDisruptionBudget from v1beta1 to v1 in time for 1.25 [#245](https://github.com/openshift/kubernetes-autoscaler/pull/245) * [Bug 2105110](https://bugzilla.redhat.com/show_bug.cgi?id=2105110): Have VPA ignore phantom containers named "POD" [#236](https://github.com/openshift/kubernetes-autoscaler/pull/236) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/25d3ad55b9c54979ae42b05e258a66c1ec23bff5...266ba2db3dbf1fb7ddd07aca7c6223d800ecf3d2) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/8bcdcccbf043bc164eb5b728a8cfd962112b2aa5) * [Bug 2069095](https://bugzilla.redhat.com/show_bug.cgi?id=2069095): add leader election flags to autoscaler deployment [#243](https://github.com/openshift/cluster-autoscaler-operator/pull/243) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/a09e626e2f76a372b1b2a48ae53036f65aab9892...8bcdcccbf043bc164eb5b728a8cfd962112b2aa5) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/0e3d8397951f4b45000a92ad923b30cff5f9e767) * [OCPBUGS-3997](https://issues.redhat.com/browse/OCPBUGS-3997): add a workaround for a NetworkManager issue [#308](https://github.com/openshift/cluster-baremetal-operator/pull/308) * [OCPBUGS-1239](https://issues.redhat.com/browse/OCPBUGS-1239): do not rely on string "master" to be in BMH names [#287](https://github.com/openshift/cluster-baremetal-operator/pull/287) * [OCPBUGS-1517](https://issues.redhat.com/browse/OCPBUGS-1517): [release-4.10] Fix a few papercuts [#291](https://github.com/openshift/cluster-baremetal-operator/pull/291) * [Bug 2101002](https://bugzilla.redhat.com/show_bug.cgi?id=2101002): Uplift kustomize and BMO to remove go-getter dependency [#281](https://github.com/openshift/cluster-baremetal-operator/pull/281) * Synchronize OWNERS from master [#274](https://github.com/openshift/cluster-baremetal-operator/pull/274) * [Bug 2091738](https://bugzilla.redhat.com/show_bug.cgi?id=2091738): Fix interpretation of Deployment Status Conditions [#267](https://github.com/openshift/cluster-baremetal-operator/pull/267) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/76fd38be960e6aad3f98b7e645607f96e5bfcd36...0e3d8397951f4b45000a92ad923b30cff5f9e767) ### [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap/tree/195cde607d94b264a88b21f17baade02fd32ad3b) * Add API team to the OWNERS [#96](https://github.com/openshift/cluster-bootstrap/pull/96) * [Full changelog](https://github.com/openshift/cluster-bootstrap/compare/f22d1c60c188a4b5ce1731a8b1db7c20067dc7e9...195cde607d94b264a88b21f17baade02fd32ad3b) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/237ae9966d99fec1b493e22a552b6da59bf6225d) * [OCPBUGS-6039](https://issues.redhat.com/browse/OCPBUGS-6039): Try to limit groups for the REST mapper discovery [#229](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/229) * [Bug 2099499](https://bugzilla.redhat.com/show_bug.cgi?id=2099499): Backport resourceapply changes for being able to recreate daemonsets/deployments [#194](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/194) * [Bug 2079791](https://bugzilla.redhat.com/show_bug.cgi?id=2079791): Ensure release version is injected into all controller status clients [#187](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/187) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/d9bab3cba0ddc4afcef77ab76f275da99513f1c8...237ae9966d99fec1b493e22a552b6da59bf6225d) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/0840c6f2f7f25ad9aba1a36597760f36ff0ab097) * [Bug 2072739](https://bugzilla.redhat.com/show_bug.cgi?id=2072739): [release-4.10] Bump openshift/api to a83e6f8f1d [#247](https://github.com/openshift/cluster-config-operator/pull/247) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/a726e3ee93ee0058b90aef3ec37106a2411b7216...0840c6f2f7f25ad9aba1a36597760f36ff0ab097) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/ace186237dad53c28b0d05761a2c85ce7b32b56b) * [Bug 2062197](https://bugzilla.redhat.com/show_bug.cgi?id=2062197): Fix race when setting Progressing condition [#115](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/115) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/fbc3e634de34ac2ca7347dc7b12da23a8fe276ac...ace186237dad53c28b0d05761a2c85ce7b32b56b) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/ab6f33b3d2b388c3bc804f5e7aa0dedb8207396f) * [OCPBUGS-2602](https://issues.redhat.com/browse/OCPBUGS-2602): Allow autoscaler to evict DNS pods [#350](https://github.com/openshift/cluster-dns-operator/pull/350) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/bc48e0aa0135bfdcdb6dbf7fbf18628c5849892b...ab6f33b3d2b388c3bc804f5e7aa0dedb8207396f) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/e6fbce54d19b30d069ffa558d09529ca89aaa1fa) * [OCPBUGS-10233](https://issues.redhat.com/browse/OCPBUGS-10233): increase live/ready timeout and failure thresholds [#1026](https://github.com/openshift/cluster-etcd-operator/pull/1026) * [OCPBUGS-7741](https://issues.redhat.com/browse/OCPBUGS-7741): fail early on missing node status envs [#1008](https://github.com/openshift/cluster-etcd-operator/pull/1008) * [OCPBUGS-7827](https://issues.redhat.com/browse/OCPBUGS-7827): set default timeouts in etcdcli [#1010](https://github.com/openshift/cluster-etcd-operator/pull/1010) * [OCPBUGS-5425](https://issues.redhat.com/browse/OCPBUGS-5425): only allow TLS1.2/1.3 ciphersuites in etcd and CEO [#979](https://github.com/openshift/cluster-etcd-operator/pull/979) * [OCPBUGS-2940](https://issues.redhat.com/browse/OCPBUGS-2940): revisit defrag controller degradation [#961](https://github.com/openshift/cluster-etcd-operator/pull/961) * [OCPBUGS-2920](https://issues.redhat.com/browse/OCPBUGS-2920): update prometheus alerts [#956](https://github.com/openshift/cluster-etcd-operator/pull/956) * [OCPBUGS-2800](https://issues.redhat.com/browse/OCPBUGS-2800): Add niceness to important etcd processes [#953](https://github.com/openshift/cluster-etcd-operator/pull/953) * [OCPBUGS-1758](https://issues.redhat.com/browse/OCPBUGS-1758): fix cert rotation on IP changes [#936](https://github.com/openshift/cluster-etcd-operator/pull/936) * [Bug 2116624](https://bugzilla.redhat.com/show_bug.cgi?id=2116624): etcd-metrics container is flooding logs [#906](https://github.com/openshift/cluster-etcd-operator/pull/906) * [OCPBUGS-200](https://issues.redhat.com/browse/OCPBUGS-200): Exits with a non-zero code in case Etcd backup fails [#907](https://github.com/openshift/cluster-etcd-operator/pull/907) * [Bug 2108176](https://bugzilla.redhat.com/show_bug.cgi?id=2108176): Fix etcd minor upgrade backup [#892](https://github.com/openshift/cluster-etcd-operator/pull/892) * [Bug 2105249](https://bugzilla.redhat.com/show_bug.cgi?id=2105249): Add etcd pod liveness and readiness probes [#880](https://github.com/openshift/cluster-etcd-operator/pull/880) * [Bug 2086451](https://bugzilla.redhat.com/show_bug.cgi?id=2086451): fix races in etcdclient [#828](https://github.com/openshift/cluster-etcd-operator/pull/828) * fixing unit test health flakes with tolerance [#882](https://github.com/openshift/cluster-etcd-operator/pull/882) * [Bug 2105148](https://bugzilla.redhat.com/show_bug.cgi?id=2105148): fix degraded missing cluster version [#878](https://github.com/openshift/cluster-etcd-operator/pull/878) * [Bug 2102793](https://bugzilla.redhat.com/show_bug.cgi?id=2102793): avoid extrapolation in leaderhip alert [#870](https://github.com/openshift/cluster-etcd-operator/pull/870) * [Bug 2095579](https://bugzilla.redhat.com/show_bug.cgi?id=2095579): etcdHighNumberOfFailedGRPCRequests alerts with wrong results [#850](https://github.com/openshift/cluster-etcd-operator/pull/850) * [Bug 2101912](https://bugzilla.redhat.com/show_bug.cgi?id=2101912): Upping defrag timeout to 1 minute [#866](https://github.com/openshift/cluster-etcd-operator/pull/866) * [Bug 2095114](https://bugzilla.redhat.com/show_bug.cgi?id=2095114): cluster-backup.sh script has a conflict to use the '/etc/kubernetes/static-pod-certs' folder if a custom API certificate is defined [#848](https://github.com/openshift/cluster-etcd-operator/pull/848) * [Bug 2010346](https://bugzilla.redhat.com/show_bug.cgi?id=2010346): Add summary to etcd alert rules [#825](https://github.com/openshift/cluster-etcd-operator/pull/825) * [Bug 2088131](https://bugzilla.redhat.com/show_bug.cgi?id=2088131): remove etcd_perf before restore [#836](https://github.com/openshift/cluster-etcd-operator/pull/836) * [Bug 2082312](https://bugzilla.redhat.com/show_bug.cgi?id=2082312): Adding Thomas to reviewers, adding Allen to approvers [#817](https://github.com/openshift/cluster-etcd-operator/pull/817) * [Bug 2080554](https://bugzilla.redhat.com/show_bug.cgi?id=2080554): manually disable defrag [#809](https://github.com/openshift/cluster-etcd-operator/pull/809) * [Bug 2079660](https://bugzilla.redhat.com/show_bug.cgi?id=2079660): pkg/operator/upgradebackupcontroller: Pivot from Failing to ReleaseAccepted [#806](https://github.com/openshift/cluster-etcd-operator/pull/806) * [Bug 2055833](https://bugzilla.redhat.com/show_bug.cgi?id=2055833): Increase IBMCloud VPC heartbeat timeout to 500ms and leader election timeout to 2500ms [#794](https://github.com/openshift/cluster-etcd-operator/pull/794) * [Bug 2059632](https://bugzilla.redhat.com/show_bug.cgi?id=2059632): pkg/operator/metriccontroller/fsync_controller: Fix "treshold" -> "thresholds" typos [#757](https://github.com/openshift/cluster-etcd-operator/pull/757) * [Bug 2076773](https://bugzilla.redhat.com/show_bug.cgi?id=2076773): Update owners to add new team members [#793](https://github.com/openshift/cluster-etcd-operator/pull/793) * [Bug 2059347](https://bugzilla.redhat.com/show_bug.cgi?id=2059347): Fix FSyncController degraded latch [#755](https://github.com/openshift/cluster-etcd-operator/pull/755) * [Bug 2069825](https://bugzilla.redhat.com/show_bug.cgi?id=2069825): turn on initial corruption check [#771](https://github.com/openshift/cluster-etcd-operator/pull/771) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/9619a078840a25e131ac0dcee19fc3602e47e271...e6fbce54d19b30d069ffa558d09529ca89aaa1fa) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/80540e65a4b8fbed7996fc6a0773141e23d97867) * [OCPBUGS-6972](https://issues.redhat.com/browse/OCPBUGS-6972): OpenStack: Add support for Proxy [#837](https://github.com/openshift/cluster-image-registry-operator/pull/837) * [OCPBUGS-5974](https://issues.redhat.com/browse/OCPBUGS-5974): swift: Retry connecting to OpenStack [#832](https://github.com/openshift/cluster-image-registry-operator/pull/832) * add myself to OWNERS [#838](https://github.com/openshift/cluster-image-registry-operator/pull/838) * [Bug 2110957](https://bugzilla.redhat.com/show_bug.cgi?id=2110957): Add progressing condition for node-ca daemon set [#791](https://github.com/openshift/cluster-image-registry-operator/pull/791) * [OCPBUGS-2107](https://issues.redhat.com/browse/OCPBUGS-2107): Enable enableHttpsTrafficOnly for Azure storage account [#804](https://github.com/openshift/cluster-image-registry-operator/pull/804) * [Bug 2110957](https://bugzilla.redhat.com/show_bug.cgi?id=2110957): Use actualDaemonSet for SetDaemonSetGeneration [#799](https://github.com/openshift/cluster-image-registry-operator/pull/799) * [Bug 2115267](https://bugzilla.redhat.com/show_bug.cgi?id=2115267): Disable dualstack when it is not available [#794](https://github.com/openshift/cluster-image-registry-operator/pull/794) * [Bug 2110963](https://bugzilla.redhat.com/show_bug.cgi?id=2110963): Bump aws-sdk-go to 1.44.4 [#793](https://github.com/openshift/cluster-image-registry-operator/pull/793) * [Bug 2083242](https://bugzilla.redhat.com/show_bug.cgi?id=2083242): IR-253: add prometheus rules for image registry operations metrics [#786](https://github.com/openshift/cluster-image-registry-operator/pull/786) * [Bug 2083242](https://bugzilla.redhat.com/show_bug.cgi?id=2083242): IR-120: Add prometheus rules for image stream tags rules [#777](https://github.com/openshift/cluster-image-registry-operator/pull/777) * [Bug 2083242](https://bugzilla.redhat.com/show_bug.cgi?id=2083242): IR-120: Implementing metrics for ImageStreams [#775](https://github.com/openshift/cluster-image-registry-operator/pull/775) * [Bug 2084514](https://bugzilla.redhat.com/show_bug.cgi?id=2084514): Fix cloudfront middleware configuration [#780](https://github.com/openshift/cluster-image-registry-operator/pull/780) * [Bug 2083559](https://bugzilla.redhat.com/show_bug.cgi?id=2083559): IBMCloud: Add admin permissions to CR [#778](https://github.com/openshift/cluster-image-registry-operator/pull/778) * [Bug 2074050](https://bugzilla.redhat.com/show_bug.cgi?id=2074050): Deployment annotations, runtimeClassName override and fs policy change [#765](https://github.com/openshift/cluster-image-registry-operator/pull/765) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/09249777960bed4477eb7f96c4ef234244ba1abf...80540e65a4b8fbed7996fc6a0773141e23d97867) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/805d0587ee481a7d7260d0b4ced0e6046cbfb7b6) * [OCPBUGS-4494](https://issues.redhat.com/browse/OCPBUGS-4494): Update CRLs when they expire [#861](https://github.com/openshift/cluster-ingress-operator/pull/861) * BUG 2094051: Fix removing custom created service in openshift-ingress with same naming convention [#820](https://github.com/openshift/cluster-ingress-operator/pull/820) * [Bug 2079034](https://bugzilla.redhat.com/show_bug.cgi?id=2079034): Add allowPrivilegeEscalation to the router container [#748](https://github.com/openshift/cluster-ingress-operator/pull/748) * [Bug 2097735](https://bugzilla.redhat.com/show_bug.cgi?id=2097735): Fix loadBalancerServiceAnnotationsChanged check and update [#784](https://github.com/openshift/cluster-ingress-operator/pull/784) * [Bug 2100630](https://bugzilla.redhat.com/show_bug.cgi?id=2100630): Fix flakey logic in haproxy timeout tests [#792](https://github.com/openshift/cluster-ingress-operator/pull/792) * [Bug 2082161](https://bugzilla.redhat.com/show_bug.cgi?id=2082161): Delete LoadBalancer-type service finalizer logic [#755](https://github.com/openshift/cluster-ingress-operator/pull/755) * BUG 2063283: Disable keepalive for canary probe [#719](https://github.com/openshift/cluster-ingress-operator/pull/719) * [Bug 2059210](https://bugzilla.redhat.com/show_bug.cgi?id=2059210): Set Upgradeable=False if default cert has no SAN [#710](https://github.com/openshift/cluster-ingress-operator/pull/710) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/377604b43df7d588c70f82c01d48be65808b4f8b...805d0587ee481a7d7260d0b4ced0e6046cbfb7b6) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/9d85e4af2055f6eaba062856e022138b4618a258) * [OCPBUGS-8235](https://issues.redhat.com/browse/OCPBUGS-8235): Guard pod set readiness probe endpoint explicitly [#1451](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1451) * [OCPBUGS-5345](https://issues.redhat.com/browse/OCPBUGS-5345): routes/status resources can leak sensitive data [#1421](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1421) * [OCPBUGS-2202](https://issues.redhat.com/browse/OCPBUGS-2202): [release-4.10] Wire support for trusted service account issuers [#1387](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1387) * [Bug 2060058](https://bugzilla.redhat.com/show_bug.cgi?id=2060058): superfluous apirequestcount entries in audit log [#1327](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1327) * [Bug 2071030](https://bugzilla.redhat.com/show_bug.cgi?id=2071030): OCP 4.10 should be firing APIRemovedInNextEUSReleaseInUse for APIs removed in 1.25 [#1335](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1335) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/913f3f36494108ebec9f854fef6f3528ed0fcd1a...9d85e4af2055f6eaba062856e022138b4618a258) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/252604c216eee7c3f38a621b8a1f1f4b28a1665b) * [OCPBUGS-8235](https://issues.redhat.com/browse/OCPBUGS-8235): Guard pod set readiness probe endpoint explicitly 4.10 [#704](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/704) * [OCPBUGS-466](https://issues.redhat.com/browse/OCPBUGS-466): PodDisruptionBudgetAtLimit should not alert when no app/pods exist [#648](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/648) * [Bug 2116983](https://bugzilla.redhat.com/show_bug.cgi?id=2116983): e2e: Fix test pod disruption budget at limit alert [#646](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/646) * [Bug 2114587](https://bugzilla.redhat.com/show_bug.cgi?id=2114587): add runbook urls to KCM-o alerts [#645](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/645) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/ca3ff5396f45632a4ae9997d9b71441b52b62efd...252604c216eee7c3f38a621b8a1f1f4b28a1665b) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/0ed42ed800c1306e2367de60482fb72e3dd22e4a) * [OCPBUGS-8235](https://issues.redhat.com/browse/OCPBUGS-8235): Guard controller: set the readiness probe endpoint explicitly [#465](https://github.com/openshift/cluster-kube-scheduler-operator/pull/465) * [Bug 2089336](https://bugzilla.redhat.com/show_bug.cgi?id=2089336): Fix bootstrap leader election config [#429](https://github.com/openshift/cluster-kube-scheduler-operator/pull/429) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/0c57d73f94b50ab95fc2914a7615cc1b23e7678e...0ed42ed800c1306e2367de60482fb72e3dd22e4a) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/7e1f56849bb85b870585b2b67566d29fd7767a31) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#65](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/65) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/9030c0dc82348a977a9a15330d63448ac0c767ff...7e1f56849bb85b870585b2b67566d29fd7767a31) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/95404c4edb82f0c9d5eb1d03786c81bd3a137384) * Updating ose-cluster-machine-approver images to be consistent with ART [#168](https://github.com/openshift/cluster-machine-approver/pull/168) * [Bug 2072928](https://bugzilla.redhat.com/show_bug.cgi?id=2072928): Reconcile recently approved CSRs by other controllers [#162](https://github.com/openshift/cluster-machine-approver/pull/162) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/49dd2dc8f511cdee7a846a0a6c49ca0caefeb902...95404c4edb82f0c9d5eb1d03786c81bd3a137384) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/c413a79d9da0999c1ae98758b213968c7bdf5418) * [OCPBUGS-11579](https://issues.redhat.com/browse/OCPBUGS-11579): jsonnet: Add prometheus container in UWM prometheus asset file [#1942](https://github.com/openshift/cluster-monitoring-operator/pull/1942) * [OCPBUGS-10491](https://issues.redhat.com/browse/OCPBUGS-10491): Increase startupProbe for prometheus [#1920](https://github.com/openshift/cluster-monitoring-operator/pull/1920) * [OCPBUGS-5864](https://issues.redhat.com/browse/OCPBUGS-5864): grafana: add the Content-Security-Policy header to requests [#1866](https://github.com/openshift/cluster-monitoring-operator/pull/1866) * [OCPBUGS-2623](https://issues.redhat.com/browse/OCPBUGS-2623): Fix dashboards having container_fs* metrices in queries [#1798](https://github.com/openshift/cluster-monitoring-operator/pull/1798) * [OCPBUGS-2037](https://issues.redhat.com/browse/OCPBUGS-2037): Bump Thanos to 0.23.2 [#1811](https://github.com/openshift/cluster-monitoring-operator/pull/1811) * [OCPBUGS-450](https://issues.redhat.com/browse/OCPBUGS-450): jsonnet: bump dependencies [#1802](https://github.com/openshift/cluster-monitoring-operator/pull/1802) * [OCPBUGS-1446](https://issues.redhat.com/browse/OCPBUGS-1446): [release-4.10] Use service ca beta annotation [#1778](https://github.com/openshift/cluster-monitoring-operator/pull/1778) * [OCPBUGS-1676](https://issues.redhat.com/browse/OCPBUGS-1676): Dedicated kubelet ServiceMonitor for prometheus-adapter [#1777](https://github.com/openshift/cluster-monitoring-operator/pull/1777) * [OCPBUGS-924](https://issues.redhat.com/browse/OCPBUGS-924): increase alertmanager's startupProbe failure threshold [#1760](https://github.com/openshift/cluster-monitoring-operator/pull/1760) * [OCPBUGS-579](https://issues.redhat.com/browse/OCPBUGS-579): Give precedence to CMO config map proxy config [#1751](https://github.com/openshift/cluster-monitoring-operator/pull/1751) * [Bug 2118303](https://bugzilla.redhat.com/show_bug.cgi?id=2118303): Adds UWM extrenalLabels from Prometheus to ThanosRuler labels [#1742](https://github.com/openshift/cluster-monitoring-operator/pull/1742) * [Bug 2099526](https://bugzilla.redhat.com/show_bug.cgi?id=2099526): Updates jsonnet dependencies, prom-adapter [#1715](https://github.com/openshift/cluster-monitoring-operator/pull/1715) * [Bug 2098505](https://bugzilla.redhat.com/show_bug.cgi?id=2098505): Backport PR#1692 to release-4.10 [#1695](https://github.com/openshift/cluster-monitoring-operator/pull/1695) * [Bug 2083242](https://bugzilla.redhat.com/show_bug.cgi?id=2083242): IR-254: Collecting registry and image stream usage [#1694](https://github.com/openshift/cluster-monitoring-operator/pull/1694) * [Bug 2089806](https://bugzilla.redhat.com/show_bug.cgi?id=2089806): Refactors CreateRouteIfNotExists to CreateOrUpdateRoute [#1677](https://github.com/openshift/cluster-monitoring-operator/pull/1677) * [Bug 2090422](https://bugzilla.redhat.com/show_bug.cgi?id=2090422): pkg/manifest: Allow retention to be configurable for Thanos-Ruler in UWM [#1678](https://github.com/openshift/cluster-monitoring-operator/pull/1678) * [Bug 2090602](https://bugzilla.redhat.com/show_bug.cgi?id=2090602): Federation for UWM metrics [#1657](https://github.com/openshift/cluster-monitoring-operator/pull/1657) * [Bug 2083460](https://bugzilla.redhat.com/show_bug.cgi?id=2083460): Set timeout across Grafana components [#1654](https://github.com/openshift/cluster-monitoring-operator/pull/1654) * [Bug 2077722](https://bugzilla.redhat.com/show_bug.cgi?id=2077722): Adjust NodeFilesystemSpaceFillingUp thresholds according default kubelet GC behavior [#1665](https://github.com/openshift/cluster-monitoring-operator/pull/1665) * [Bug 2075757](https://bugzilla.redhat.com/show_bug.cgi?id=2075757): UWM: add SAR capabilities to prometheus cluster role [#1653](https://github.com/openshift/cluster-monitoring-operator/pull/1653) * [Bug 2075757](https://bugzilla.redhat.com/show_bug.cgi?id=2075757): use bearer token as fall-back authn method [#1641](https://github.com/openshift/cluster-monitoring-operator/pull/1641) * [Bug 2062452](https://bugzilla.redhat.com/show_bug.cgi?id=2062452): React to changes in clusteroperators [#1585](https://github.com/openshift/cluster-monitoring-operator/pull/1585) * [Bug 2060756](https://bugzilla.redhat.com/show_bug.cgi?id=2060756): Properly deal with an empty console URL [#1582](https://github.com/openshift/cluster-monitoring-operator/pull/1582) * [Bug 2058148](https://bugzilla.redhat.com/show_bug.cgi?id=2058148): jsonnet: Give CMO explicit get permissions for ReplicaSets [#1568](https://github.com/openshift/cluster-monitoring-operator/pull/1568) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/1727e2b94659e9e5caa7b555e611500ea10134c2...c413a79d9da0999c1ae98758b213968c7bdf5418) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/c7855f10edeadf5771e5a6f145150ce3826ef95d) * [OCPBUGS-343](https://issues.redhat.com/browse/OCPBUGS-343): Configure ignored namespaces into multus-admission-controller [#1809](https://github.com/openshift/cluster-network-operator/pull/1809) * [OCPBUGS-12795](https://issues.redhat.com/browse/OCPBUGS-12795): remove TLS_RSA_WITH_AES_128_CBC_SHA256 cipher [#1794](https://github.com/openshift/cluster-network-operator/pull/1794) * [OCPBUGS-11828](https://issues.redhat.com/browse/OCPBUGS-11828): Kuryr: Update CRD from upstream [#1782](https://github.com/openshift/cluster-network-operator/pull/1782) * [OCPBUGS-64](https://issues.redhat.com/browse/OCPBUGS-64): CNI binary copy should account for the possibility of symlinks [backport 4.10] [#1617](https://github.com/openshift/cluster-network-operator/pull/1617) * [OCPBUGS-5955](https://issues.redhat.com/browse/OCPBUGS-5955): Backport Added missing API field podref to OverlappingRangeIPReservation CRD [#1687](https://github.com/openshift/cluster-network-operator/pull/1687) * [OCPBUGS-6736](https://issues.redhat.com/browse/OCPBUGS-6736): Remove nbctl logfile [#1587](https://github.com/openshift/cluster-network-operator/pull/1587) * [OCPBUGS-5575](https://issues.redhat.com/browse/OCPBUGS-5575): CVE-2021-4238 goutils: RandomAlphaNumeric and CryptoRandomAlphaNumeric are not as random as they should be [#1682](https://github.com/openshift/cluster-network-operator/pull/1682) * [Bug 2092193](https://bugzilla.redhat.com/show_bug.cgi?id=2092193): Bump PodDisruptionBudget to v1 [#1470](https://github.com/openshift/cluster-network-operator/pull/1470) * [OCPBUGS-4614](https://issues.redhat.com/browse/OCPBUGS-4614): ipsec: Run ovs-monitor-ipsec in the foreground and change probes [#1651](https://github.com/openshift/cluster-network-operator/pull/1651) * Jira OCPBUGS-3853: IPsec: Fix broken counter++ expression [#1646](https://github.com/openshift/cluster-network-operator/pull/1646) * [Bug 2111588](https://bugzilla.redhat.com/show_bug.cgi?id=2111588): Enable OVS metrics for ovnk [#1599](https://github.com/openshift/cluster-network-operator/pull/1599) * [OCPBUGS-1538](https://issues.redhat.com/browse/OCPBUGS-1538): Make northd probe interval default to 10 seconds [#1563](https://github.com/openshift/cluster-network-operator/pull/1563) * Bug OCPBUGS-942: Kuryr: Bump timeoutSeconds for livenessProbe [#1550](https://github.com/openshift/cluster-network-operator/pull/1550) * [Bug 2095111](https://bugzilla.redhat.com/show_bug.cgi?id=2095111): ovn: fix northd preStop command handling [#1477](https://github.com/openshift/cluster-network-operator/pull/1477) * [Bug 2083266](https://bugzilla.redhat.com/show_bug.cgi?id=2083266): Limit Kuryr pods permissions [#1435](https://github.com/openshift/cluster-network-operator/pull/1435) * [Bug 2077384](https://bugzilla.redhat.com/show_bug.cgi?id=2077384): Bump max value of hist quantile for kuryr_cni_request_duration [#1388](https://github.com/openshift/cluster-network-operator/pull/1388) * [Bug 2084591](https://bugzilla.redhat.com/show_bug.cgi?id=2084591): Cleanup CNO relatedObjects [#1467](https://github.com/openshift/cluster-network-operator/pull/1467) * [Bug 2085510](https://bugzilla.redhat.com/show_bug.cgi?id=2085510): OCPVE-106 Customize rollout strategy to fix SNO upgrade [#1445](https://github.com/openshift/cluster-network-operator/pull/1445) * [Bug 2078501](https://bugzilla.redhat.com/show_bug.cgi?id=2078501): [release-4.10] Drop Node update permission for sdn-node [#1410](https://github.com/openshift/cluster-network-operator/pull/1410) * [Bug 2058508](https://bugzilla.redhat.com/show_bug.cgi?id=2058508): Add rolling update strategy for Kuryr-CNI. [#1321](https://github.com/openshift/cluster-network-operator/pull/1321) * [Bug 2083593](https://bugzilla.redhat.com/show_bug.cgi?id=2083593): Add default-route field to egress-router k8s.v1.cni.cncf.io/networks [#1436](https://github.com/openshift/cluster-network-operator/pull/1436) * [Bug 2079031](https://bugzilla.redhat.com/show_bug.cgi?id=2079031): Make the use of the ip-reconciler cronjob opt-in by detecting IPAM type usage [backport 4.10] [#1398](https://github.com/openshift/cluster-network-operator/pull/1398) * [Bug 2081149](https://bugzilla.redhat.com/show_bug.cgi?id=2081149): Reserve port TCP/9104 for cluster-network-operator [#1418](https://github.com/openshift/cluster-network-operator/pull/1418) * Adds dougbtv to owners [release-4.10] [#1401](https://github.com/openshift/cluster-network-operator/pull/1401) * [Bug 2058672](https://bugzilla.redhat.com/show_bug.cgi?id=2058672): ip-reconciler cronjob specification requires hostnetwork, api-int lb usage & proper backoff [backport 4.10] [#1322](https://github.com/openshift/cluster-network-operator/pull/1322) * [Bug 2057961](https://bugzilla.redhat.com/show_bug.cgi?id=2057961): Do not apply OVN-Kubernetes `PodDisruptionBudget` on single-node clusters [#1317](https://github.com/openshift/cluster-network-operator/pull/1317) * [Bug 2052446](https://bugzilla.redhat.com/show_bug.cgi?id=2052446): Kuryr: Decrease vif_annotation_timeout [#1303](https://github.com/openshift/cluster-network-operator/pull/1303) * Update project owners [#1332](https://github.com/openshift/cluster-network-operator/pull/1332) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/a0e506ca7d323493afd1ff32f8366e06fd1f1c59...c7855f10edeadf5771e5a6f145150ce3826ef95d) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/b1c5690f87b4f3bba9b932474b55282c8dbf264e) * Switch to OS-shipped stalld (#490) [#490](https://github.com/openshift/cluster-node-tuning-operator/pull/490) * e2e: check for tsc=reliable instead of tsc=nowatchdog (#428) [#428](https://github.com/openshift/cluster-node-tuning-operator/pull/428) * Ignore Profile updates triggered by old operands (#357) [#357](https://github.com/openshift/cluster-node-tuning-operator/pull/357) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/3c5760e9013f0f28c106d6a216ccedcc27393f4f...b1c5690f87b4f3bba9b932474b55282c8dbf264e) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/91038370b1b6c56f55b47c31fc596deb304ca69a) * [OCPBUGS-5345](https://issues.redhat.com/browse/OCPBUGS-5345): routes/status resources can leak sensitive data, exclude it from audit [#514](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/514) * [release 4.10] Bug 2109235: openshift-apiserver pods never going NotReady [#501](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/501) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/224b294e6ffb13dc7715904151d9dc5642f7a7d1...91038370b1b6c56f55b47c31fc596deb304ca69a) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/85e14c7cf4ccf86a443e7d70f42465f83f0ba7f8) * [OCPBUGS-5788](https://issues.redhat.com/browse/OCPBUGS-5788): clusterquotareconciliation: do not sync quota monitor cache with no monitors registered [#97](https://github.com/openshift/cluster-policy-controller/pull/97) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/8e5b36511861e63664cf4abd4f4f63642ae3c644...85e14c7cf4ccf86a443e7d70f42465f83f0ba7f8) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/b27c4ce6602596083cb688b605f594c688fb4701) * [OCPBUGS-2132](https://issues.redhat.com/browse/OCPBUGS-2132): openshift template cakephp-mysql-persistent apiVersion for 4.10 [#466](https://github.com/openshift/cluster-samples-operator/pull/466) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/d41950dc8b41b3bf87b6ca3ae12af525b6908d3c...b27c4ce6602596083cb688b605f594c688fb4701) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/0ad6026dffef5fd7c4a12e11ea468cdd2b35ee73) * [OCPBUGS-691](https://issues.redhat.com/browse/OCPBUGS-691): [release-4.10] correct sc error messages for ibm and alibaba platforms [#314](https://github.com/openshift/cluster-storage-operator/pull/314) * [OCPBUGS-286](https://issues.redhat.com/browse/OCPBUGS-286): HTTPS_PROXY ENV missing in some CSI driver operators [#311](https://github.com/openshift/cluster-storage-operator/pull/311) * [Bug 2098655](https://bugzilla.redhat.com/show_bug.cgi?id=2098655): gcp cluster rollback fails due to storage failure [#300](https://github.com/openshift/cluster-storage-operator/pull/300) * [Bug 2102242](https://bugzilla.redhat.com/show_bug.cgi?id=2102242): Add missing ibm cloud annotations to prometheus rbac [#293](https://github.com/openshift/cluster-storage-operator/pull/293) * [Bug 2072191](https://bugzilla.redhat.com/show_bug.cgi?id=2072191): cluster storage operator AWS credentialsrequest lacks KMS privileges [#268](https://github.com/openshift/cluster-storage-operator/pull/268) * [Bug 2061483](https://bugzilla.redhat.com/show_bug.cgi?id=2061483): Incorrect installation of ibmcloud vpc csi driver in IBM… [#265](https://github.com/openshift/cluster-storage-operator/pull/265) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/2eb1fd83439da37e4f54231d627c3120735b20ee...0ad6026dffef5fd7c4a12e11ea468cdd2b35ee73) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/684f6f42381cf6401dfb7e4f6f5f9fd0e441639b) * Updating ose-cluster-update-keys images to be consistent with ART [#41](https://github.com/openshift/cluster-update-keys/pull/41) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/342eb8e2631f3218ea386479102784d5e288d868...684f6f42381cf6401dfb7e4f6f5f9fd0e441639b) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/33e65325a5780906244c2b36031e6e14d812d8b2) * [OCPBUGS-10814](https://issues.redhat.com/browse/OCPBUGS-10814): pkg/cvo/availableupdates: Prioritize conditional risks for largest target version [#917](https://github.com/openshift/cluster-version-operator/pull/917) * [OCPBUGS-233](https://issues.redhat.com/browse/OCPBUGS-233): pkg/cvo/updatepayload: Set 'readOnlyRootFilesystem: false' [#824](https://github.com/openshift/cluster-version-operator/pull/824) * [OCPBUGS-235](https://issues.redhat.com/browse/OCPBUGS-235): pkg/clusterconditions/promql: Cap PromQL queries at 5 minutes [#825](https://github.com/openshift/cluster-version-operator/pull/825) * [Bug 2108292](https://bugzilla.redhat.com/show_bug.cgi?id=2108292): pkg/cvo: retain initial completed update history entry [#798](https://github.com/openshift/cluster-version-operator/pull/798) * [Bug 2094078](https://bugzilla.redhat.com/show_bug.cgi?id=2094078): pkg/cvo/updatepayload: Guard against 'rm -fR -whatever' with ./* [#787](https://github.com/openshift/cluster-version-operator/pull/787) * [Bug 2090150](https://bugzilla.redhat.com/show_bug.cgi?id=2090150): pkg/cvo/sync_worker.go: Save overrides [#782](https://github.com/openshift/cluster-version-operator/pull/782) * [Bug 2083370](https://bugzilla.redhat.com/show_bug.cgi?id=2083370): Do not save desired update on load failures [#776](https://github.com/openshift/cluster-version-operator/pull/776) * [Bug 2080058](https://bugzilla.redhat.com/show_bug.cgi?id=2080058): pkg/cvo/updatepayload: Prune previous payload downloads [#769](https://github.com/openshift/cluster-version-operator/pull/769) * [Bug 2071211](https://bugzilla.redhat.com/show_bug.cgi?id=2071211): lib/resourcebuilder/batch: Stop waiting on Job deadline exceeded [#764](https://github.com/openshift/cluster-version-operator/pull/764) * [Bug 2064991](https://bugzilla.redhat.com/show_bug.cgi?id=2064991): pkg/cvo: Separate payload load from payload apply [#753](https://github.com/openshift/cluster-version-operator/pull/753) * [Bug 2052839](https://bugzilla.redhat.com/show_bug.cgi?id=2052839): pkg/cvo/sync_worker: Use current state, not suggested state, for guarding Initializing->Updating [#738](https://github.com/openshift/cluster-version-operator/pull/738) * [Bug 2053359](https://bugzilla.redhat.com/show_bug.cgi?id=2053359): Feature gate initialization [#740](https://github.com/openshift/cluster-version-operator/pull/740) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/07295564ba659631396b6274171a78132b122bac...33e65325a5780906244c2b36031e6e14d812d8b2) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/1e5a18ebda95b5703ea6e9fe511f459cb9615162) * [OCPBUGS-6538](https://issues.redhat.com/browse/OCPBUGS-6538): go.mod: update github.com/prometheus/client_golang to v1.11.0 [#49](https://github.com/openshift/configmap-reload/pull/49) * [Full changelog](https://github.com/openshift/configmap-reload/compare/22a40ce77a1c3d4842b80de89f4df449672e5f5e...1e5a18ebda95b5703ea6e9fe511f459cb9615162) ### [console](https://github.com/openshift/console/tree/3b007da0238043f18542363ef7d5947ea2990075) * [OCPBUGS-18014](https://issues.redhat.com/browse/OCPBUGS-18014): When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. [#13100](https://github.com/openshift/console/pull/13100) * [OCPBUGS-15932](https://issues.redhat.com/browse/OCPBUGS-15932): visiting Configurations page returns error Cannot read… [#12985](https://github.com/openshift/console/pull/12985) * [OCPBUGS-13831](https://issues.redhat.com/browse/OCPBUGS-13831): Get the Event type value from the latest PLR of the Repository [#12833](https://github.com/openshift/console/pull/12833) * [OCPBUGS-13358](https://issues.redhat.com/browse/OCPBUGS-13358): add subject kind dropdown in the project access form [#12803](https://github.com/openshift/console/pull/12803) * [OCPBUGS-8320](https://issues.redhat.com/browse/OCPBUGS-8320): Repositories list does not show the running pipelinerun as last pipelinerun [#12623](https://github.com/openshift/console/pull/12623) * [OCPBUGS-12438](https://issues.redhat.com/browse/OCPBUGS-12438): Fix that topology sidebar actions shows outdated data (Edit Pod Count, Edit labels, Edit annotations, etc.) [#12533](https://github.com/openshift/console/pull/12533) * [OCPBUGS-7961](https://issues.redhat.com/browse/OCPBUGS-7961): fix broken pipeline secret [#12607](https://github.com/openshift/console/pull/12607) * [OCPBUGS-7478](https://issues.redhat.com/browse/OCPBUGS-7478): Add RBAC check on Create a Project link in all-namespaces pages [#12566](https://github.com/openshift/console/pull/12566) * [OCPBUGS-12245](https://issues.redhat.com/browse/OCPBUGS-12245): disable operator-install-single-namespace.spec.ts to solve CI issues [#12752](https://github.com/openshift/console/pull/12752) * [OCPBUGS-7657](https://issues.redhat.com/browse/OCPBUGS-7657): Editing Pipeline in the ocp console should show correct information [#12576](https://github.com/openshift/console/pull/12576) * [OCPBUGS-7787](https://issues.redhat.com/browse/OCPBUGS-7787): [4.10.z] Fix kubevirt-console tests [#12580](https://github.com/openshift/console/pull/12580) * [OCPBUGS-6754](https://issues.redhat.com/browse/OCPBUGS-6754): Fix for initial showing of topology contents [#12486](https://github.com/openshift/console/pull/12486) * [OCPBUGS-5296](https://issues.redhat.com/browse/OCPBUGS-5296): Pan nodes into view if all nodes are not visible on load [#12485](https://github.com/openshift/console/pull/12485) * [OCPBUGS-6690](https://issues.redhat.com/browse/OCPBUGS-6690): Fix NPE when displaying CSV with incomplete information [#12481](https://github.com/openshift/console/pull/12481) * [OCPBUGS-5961](https://issues.redhat.com/browse/OCPBUGS-5961): add support for version v1beta1 for knativeServing and knativeEventing [#12441](https://github.com/openshift/console/pull/12441) * [OCPBUGS-3485](https://issues.redhat.com/browse/OCPBUGS-3485): check that user can patch console operator config in s… [#12258](https://github.com/openshift/console/pull/12258) * [Bug 2105911](https://bugzilla.redhat.com/show_bug.cgi?id=2105911): Fix create-namespace e2e test with updated 3scale operator [#11811](https://github.com/openshift/console/pull/11811) * [OCPBUGS-3619](https://issues.redhat.com/browse/OCPBUGS-3619): Find latest pipeline run without firehose selector [#12265](https://github.com/openshift/console/pull/12265) * [OCPBUGS-3336](https://issues.redhat.com/browse/OCPBUGS-3336): Add checks for pods in hpaPodRingLabel [#12249](https://github.com/openshift/console/pull/12249) * [OCPBUGS-2717](https://issues.redhat.com/browse/OCPBUGS-2717): Update dependencies to the registry library and devfile parser [#12191](https://github.com/openshift/console/pull/12191) * [OCPBUGS-2781](https://issues.redhat.com/browse/OCPBUGS-2781): Fix broken advanced options layout on the add page [#12204](https://github.com/openshift/console/pull/12204) * [OCPBUGS-3161](https://issues.redhat.com/browse/OCPBUGS-3161): 'CatalogSource not found' in the virtualization [#12202](https://github.com/openshift/console/pull/12202) * [Bug 2072792](https://bugzilla.redhat.com/show_bug.cgi?id=2072792): Fetch common templates in a different namespace [#12163](https://github.com/openshift/console/pull/12163) * [Bug 2071517](https://bugzilla.redhat.com/show_bug.cgi?id=2071517): Fix swap usage queries for Top Consumers card in virtualization Overview page [#12172](https://github.com/openshift/console/pull/12172) * [Bug 2090127](https://bugzilla.redhat.com/show_bug.cgi?id=2090127): Remove nodeSelectorTerms if not defined [#12161](https://github.com/openshift/console/pull/12161) * [Bug 2052469](https://bugzilla.redhat.com/show_bug.cgi?id=2052469): Filter template list for boot source available [#12164](https://github.com/openshift/console/pull/12164) * [OCPBUGS-2583](https://issues.redhat.com/browse/OCPBUGS-2583): attach owner reference to resources created on creating a user to allow garbage collection [#12189](https://github.com/openshift/console/pull/12189) * [OCPBUGS-2894](https://issues.redhat.com/browse/OCPBUGS-2894): UI crash when storage class had missing annotation [#12220](https://github.com/openshift/console/pull/12220) * [OCPBUGS-1696](https://issues.redhat.com/browse/OCPBUGS-1696): Handle missing BMH for Node gracefully [#12129](https://github.com/openshift/console/pull/12129) * [OCPBUGS-1465](https://issues.redhat.com/browse/OCPBUGS-1465): mock call to /api/devfile in e2e [#12062](https://github.com/openshift/console/pull/12062) * [OCPBUGS-2622](https://issues.redhat.com/browse/OCPBUGS-2622): Use local test data to mock a devfile registry [#12194](https://github.com/openshift/console/pull/12194) * [OCPBUGS-2523](https://issues.redhat.com/browse/OCPBUGS-2523): updates test id for 3scale [#12184](https://github.com/openshift/console/pull/12184) * [Bug 2072790](https://bugzilla.redhat.com/show_bug.cgi?id=2072790): Regression "Create VM" [#12160](https://github.com/openshift/console/pull/12160) * [OCPBUGS-938](https://issues.redhat.com/browse/OCPBUGS-938): do not show NodesUpdateGroup if there are 0 nodes [#12061](https://github.com/openshift/console/pull/12061) * [Bug 2090127](https://bugzilla.redhat.com/show_bug.cgi?id=2090127): CNV 20527: Enable boot source select for vm template [#12082](https://github.com/openshift/console/pull/12082) * [Bug 2094074](https://bugzilla.redhat.com/show_bug.cgi?id=2094074): Remove error on user template with DS [#12092](https://github.com/openshift/console/pull/12092) * [Bug 2054917](https://bugzilla.redhat.com/show_bug.cgi?id=2054917): Fix template example yaml [#12091](https://github.com/openshift/console/pull/12091) * [Bug 2072790](https://bugzilla.redhat.com/show_bug.cgi?id=2072790): Select template using also queryParams [#12090](https://github.com/openshift/console/pull/12090) * [OCPBUGS-1759](https://issues.redhat.com/browse/OCPBUGS-1759): Show already loaded catalog items after a timeout (3sec) [#12106](https://github.com/openshift/console/pull/12106) * [OCPBUGS-403](https://issues.redhat.com/browse/OCPBUGS-403): fix broken update server link [#11974](https://github.com/openshift/console/pull/11974) * [OCPBUGS-1815](https://issues.redhat.com/browse/OCPBUGS-1815): fetch shared resource imagestreams based on labels instance or name [#12110](https://github.com/openshift/console/pull/12110) * [Bug 2107898](https://bugzilla.redhat.com/show_bug.cgi?id=2107898): Access mode and volume mode with sourceRef will now be taken from default storageclass [#11907](https://github.com/openshift/console/pull/11907) * [OCPBUGS-1828](https://issues.redhat.com/browse/OCPBUGS-1828): Fix devfile registry assertion [#12112](https://github.com/openshift/console/pull/12112) * [OCPBUGS-1634](https://issues.redhat.com/browse/OCPBUGS-1634): Update registry library dependency to pick up proxy support [#12040](https://github.com/openshift/console/pull/12040) * [Bug 2080389](https://bugzilla.redhat.com/show_bug.cgi?id=2080389): Link to documentation from the overview page goes to a missing link [#11909](https://github.com/openshift/console/pull/11909) * [OCPBUGS-382](https://issues.redhat.com/browse/OCPBUGS-382): [OSD] ClusterVersion YAML editor should be read only [#11922](https://github.com/openshift/console/pull/11922) * [OCPBUGS-550](https://issues.redhat.com/browse/OCPBUGS-550): Input values in Instantiate Template are disappeared randomly in the developer console [#11983](https://github.com/openshift/console/pull/11983) * [Bug 2077142](https://bugzilla.redhat.com/show_bug.cgi?id=2077142): Fix Web Terminal availability check to verify operator is installed [#11374](https://github.com/openshift/console/pull/11374) * [Bug 2117642](https://bugzilla.redhat.com/show_bug.cgi?id=2117642): Backport CI test fix to relase 4.10 [#11966](https://github.com/openshift/console/pull/11966) * [Bug 2117351](https://bugzilla.redhat.com/show_bug.cgi?id=2117351): fix helm readme bug [#11950](https://github.com/openshift/console/pull/11950) * Revert "Bug 2100103: Can't delete rootdisk in customization wizard" [#11932](https://github.com/openshift/console/pull/11932) * [Bug 2114833](https://bugzilla.redhat.com/show_bug.cgi?id=2114833): Use hostname from provided git url when making git api calls [#11924](https://github.com/openshift/console/pull/11924) * [Bug 2111335](https://bugzilla.redhat.com/show_bug.cgi?id=2111335): Cannot edit ssh even vm is stopped [#11886](https://github.com/openshift/console/pull/11886) * [Bug 2101412](https://bugzilla.redhat.com/show_bug.cgi?id=2101412): fix bug where Cluster update modal errors weren't displa… [#11765](https://github.com/openshift/console/pull/11765) * [Bug 2112910](https://bugzilla.redhat.com/show_bug.cgi?id=2112910): Fix search redirect [#11914](https://github.com/openshift/console/pull/11914) * [Bug 2100103](https://bugzilla.redhat.com/show_bug.cgi?id=2100103): Can't delete rootdisk in customization wizard [#11887](https://github.com/openshift/console/pull/11887) * [Bug 2052444](https://bugzilla.redhat.com/show_bug.cgi?id=2052444): Unstar RHEL 7 template [#11885](https://github.com/openshift/console/pull/11885) * [Bug 2110536](https://bugzilla.redhat.com/show_bug.cgi?id=2110536): add z-index to ocs-drawer to make box-shadow visible [#11873](https://github.com/openshift/console/pull/11873) * [Bug 2110938](https://bugzilla.redhat.com/show_bug.cgi?id=2110938): VM list page crashed [#11879](https://github.com/openshift/console/pull/11879) * [Bug 2063153](https://bugzilla.redhat.com/show_bug.cgi?id=2063153): Use link to the downstream doc for Sysprep info [#11772](https://github.com/openshift/console/pull/11772) * [Bug 2108193](https://bugzilla.redhat.com/show_bug.cgi?id=2108193): update icons for eventSource and eventSink [#11847](https://github.com/openshift/console/pull/11847) * [Bug 2053703](https://bugzilla.redhat.com/show_bug.cgi?id=2053703): Handle blank usernames in error message [#11045](https://github.com/openshift/console/pull/11045) * [Bug 2109225](https://bugzilla.redhat.com/show_bug.cgi?id=2109225): Remove `modelsLoaded` conditional rendering from ModelStatusBox [#11857](https://github.com/openshift/console/pull/11857) * [Bug 2106385](https://bugzilla.redhat.com/show_bug.cgi?id=2106385): Fix CronJob resource version to batch/v1 [#11820](https://github.com/openshift/console/pull/11820) * [Bug 2106385](https://bugzilla.redhat.com/show_bug.cgi?id=2106385): redirect v1beta1 CronJobs [#11819](https://github.com/openshift/console/pull/11819) * [Bug 2095217](https://bugzilla.redhat.com/show_bug.cgi?id=2095217): VM SSH command generated by UI points at api VIP [#11779](https://github.com/openshift/console/pull/11779) * [release 4.10] Bug 2094584: Cant create vm with sysprep [#11775](https://github.com/openshift/console/pull/11775) * [Bug 2100974](https://bugzilla.redhat.com/show_bug.cgi?id=2100974): Restore spacing between/below modal body content [#11763](https://github.com/openshift/console/pull/11763) * [Bug 2092832](https://bugzilla.redhat.com/show_bug.cgi?id=2092832): Check if spec is available in MCP details page [#11629](https://github.com/openshift/console/pull/11629) * [Bug 2084629](https://bugzilla.redhat.com/show_bug.cgi?id=2084629): Add params prop to HorizontalNav component [#11488](https://github.com/openshift/console/pull/11488) * [Bug 2100330](https://bugzilla.redhat.com/show_bug.cgi?id=2100330): disable upload for sourceRef templates [#11774](https://github.com/openshift/console/pull/11774) * [Bug 2104889](https://bugzilla.redhat.com/show_bug.cgi?id=2104889): Fix topology sidebar update issues [#11798](https://github.com/openshift/console/pull/11798) * [Bug 2052416](https://bugzilla.redhat.com/show_bug.cgi?id=2052416): fix offensive vm names [#11778](https://github.com/openshift/console/pull/11778) * [Bug 2094194](https://bugzilla.redhat.com/show_bug.cgi?id=2094194): fix bug where log stream pauses in Chrome [#11654](https://github.com/openshift/console/pull/11654) * [Bug 2100345](https://bugzilla.redhat.com/show_bug.cgi?id=2100345): fix clone vm error creating DV [#11770](https://github.com/openshift/console/pull/11770) * [Bug 2097338](https://bugzilla.redhat.com/show_bug.cgi?id=2097338): Filter virtualization alerts in status card [#11715](https://github.com/openshift/console/pull/11715) * [Bug 2094215](https://bugzilla.redhat.com/show_bug.cgi?id=2094215): Pass contextSource to TopologyApplicationActionProvider [#11656](https://github.com/openshift/console/pull/11656) * [Bug 2099600](https://bugzilla.redhat.com/show_bug.cgi?id=2099600): Topology toolbars are unaligned to other toolbars [#11703](https://github.com/openshift/console/pull/11703) * [Bug 2095637](https://bugzilla.redhat.com/show_bug.cgi?id=2095637): Disable update channel validation as well [#11753](https://github.com/openshift/console/pull/11753) * [Bug 2078699](https://bugzilla.redhat.com/show_bug.cgi?id=2078699): Display disk size in correct units [#11746](https://github.com/openshift/console/pull/11746) * [Bug 2099527](https://bugzilla.redhat.com/show_bug.cgi?id=2099527): Bug fix context menu position on topology [#11735](https://github.com/openshift/console/pull/11735) * [Bug 2078699](https://bugzilla.redhat.com/show_bug.cgi?id=2078699): Display disk size in GiB in VM customize wizard [#11733](https://github.com/openshift/console/pull/11733) * [Bug 2079985](https://bugzilla.redhat.com/show_bug.cgi?id=2079985): use the correct Alertmanager tenancy proxy [#11418](https://github.com/openshift/console/pull/11418) * [Bug 2094348](https://bugzilla.redhat.com/show_bug.cgi?id=2094348): Display only running VMs in Virtualization Overview chart [#11659](https://github.com/openshift/console/pull/11659) * [Bug 2095217](https://bugzilla.redhat.com/show_bug.cgi?id=2095217): Fix SSH command string [#11679](https://github.com/openshift/console/pull/11679) * [Bug 2062980](https://bugzilla.redhat.com/show_bug.cgi?id=2062980): fixes uri case for event sink [#11175](https://github.com/openshift/console/pull/11175) * [Bug 2092496](https://bugzilla.redhat.com/show_bug.cgi?id=2092496): [release-4.10] Added vault_tenants_sa to the list of supported providers [#11584](https://github.com/openshift/console/pull/11584) * [Bug 2094863](https://bugzilla.redhat.com/show_bug.cgi?id=2094863): fix web terminal start [#11672](https://github.com/openshift/console/pull/11672) * [Bug 2094211](https://bugzilla.redhat.com/show_bug.cgi?id=2094211): Change Ping source spec.jsonData (deprecated) field to spec.data [#11655](https://github.com/openshift/console/pull/11655) * [Bug 2090750](https://bugzilla.redhat.com/show_bug.cgi?id=2090750): Handle medik8s node maintenance [#11581](https://github.com/openshift/console/pull/11581) * [Bug 2091482](https://bugzilla.redhat.com/show_bug.cgi?id=2091482): change metrics queries based on metrics level configurations [#11595](https://github.com/openshift/console/pull/11595) * [Bug 2089589](https://bugzilla.redhat.com/show_bug.cgi?id=2089589): add debounce to tektonhub versions api call to avoid many calls [#11552](https://github.com/openshift/console/pull/11552) * [Bug 2092140](https://bugzilla.redhat.com/show_bug.cgi?id=2092140): Avoid using 'gp2' hardcoded storage class [#11618](https://github.com/openshift/console/pull/11618) * [Bug 2089315](https://bugzilla.redhat.com/show_bug.cgi?id=2089315): fix rolebinding in DevConsole dropping all subjects when updating [#11545](https://github.com/openshift/console/pull/11545) * [Bug 2095637](https://bugzilla.redhat.com/show_bug.cgi?id=2095637): Fix failing backend test after devfile registry update [#11710](https://github.com/openshift/console/pull/11710) * [Bug 2094001](https://bugzilla.redhat.com/show_bug.cgi?id=2094001): Add high priority alerts to overview [#11647](https://github.com/openshift/console/pull/11647) * [Bug 2092168](https://bugzilla.redhat.com/show_bug.cgi?id=2092168): Add 'Unavailable' status to clusteroperator status filter [#11619](https://github.com/openshift/console/pull/11619) * [Bug 2088210](https://bugzilla.redhat.com/show_bug.cgi?id=2088210): Monitoring: Fix first panel sometimes not rendered [#11528](https://github.com/openshift/console/pull/11528) * [Bug 2090124](https://bugzilla.redhat.com/show_bug.cgi?id=2090124): Removing SSH service selectors to minimum required [#11565](https://github.com/openshift/console/pull/11565) * [Bug 2081946](https://bugzilla.redhat.com/show_bug.cgi?id=2081946): Fix default branch param in pipeline import from git flow [#11442](https://github.com/openshift/console/pull/11442) * [Bug 2091402](https://bugzilla.redhat.com/show_bug.cgi?id=2091402): cloud-init User check for Windows VM refuses to accept capitalized [#11592](https://github.com/openshift/console/pull/11592) * [Bug 2084430](https://bugzilla.redhat.com/show_bug.cgi?id=2084430): fixes apiversion for k8s svc and resource selection for sink for form yaml switcher [#11482](https://github.com/openshift/console/pull/11482) * [Bug 2087065](https://bugzilla.redhat.com/show_bug.cgi?id=2087065): show Limit exceeded state for large number of nodes in topology [#11506](https://github.com/openshift/console/pull/11506) * [Bug 2050273](https://bugzilla.redhat.com/show_bug.cgi?id=2050273): Update MON_DISK_LOW whitelisted alert documentation URL [#11411](https://github.com/openshift/console/pull/11411) * [Bug 2089162](https://bugzilla.redhat.com/show_bug.cgi?id=2089162): Change learn more link in virtualization -> migration tool [#11541](https://github.com/openshift/console/pull/11541) * [Bug 2089547](https://bugzilla.redhat.com/show_bug.cgi?id=2089547): Eliminate use of lookaside cache and move to Cachito [#11551](https://github.com/openshift/console/pull/11551) * [Bug 2088430](https://bugzilla.redhat.com/show_bug.cgi?id=2088430): Set dashboards timeout based on selected timespan [#11532](https://github.com/openshift/console/pull/11532) * [Bug 2084091](https://bugzilla.redhat.com/show_bug.cgi?id=2084091): MCG standalone deployment page goes blank when the KMS option is enabled [#11479](https://github.com/openshift/console/pull/11479) * [Bug 2088247](https://bugzilla.redhat.com/show_bug.cgi?id=2088247): Different status shows on VM list page and details page [#11538](https://github.com/openshift/console/pull/11538) * [Bug 2087041](https://bugzilla.redhat.com/show_bug.cgi?id=2087041): back port conditional updates [#11487](https://github.com/openshift/console/pull/11487) * [Bug 2088281](https://bugzilla.redhat.com/show_bug.cgi?id=2088281): Attached disk keeps in loading status when add disk to a power off VM by non-privileged user [#11530](https://github.com/openshift/console/pull/11530) * [Bug 2088246](https://bugzilla.redhat.com/show_bug.cgi?id=2088246): Overview page crash if no labels available [#11525](https://github.com/openshift/console/pull/11525) * [Bug 2051433](https://bugzilla.redhat.com/show_bug.cgi?id=2051433): [release-4.10] Create HANA VM does not use values from customized HANA templates [#11011](https://github.com/openshift/console/pull/11011) * [Bug 2088255](https://bugzilla.redhat.com/show_bug.cgi?id=2088255): Adding missing annotations to create VM from YAML [#11527](https://github.com/openshift/console/pull/11527) * [Bug 2088019](https://bugzilla.redhat.com/show_bug.cgi?id=2088019): The default YAML on vm wizard is not latest [#11522](https://github.com/openshift/console/pull/11522) * [Bug 2083729](https://bugzilla.redhat.com/show_bug.cgi?id=2083729): Fix Filter Dropdown State Management [#11471](https://github.com/openshift/console/pull/11471) * [Bug 2084489](https://bugzilla.redhat.com/show_bug.cgi?id=2084489): Create VM from template that has sourceRef - will now reflect sourceRef at yaml [#11485](https://github.com/openshift/console/pull/11485) * [Bug 2076989](https://bugzilla.redhat.com/show_bug.cgi?id=2076989): Fix ResourceQuota dashboard card and ACRQ donut label [#11367](https://github.com/openshift/console/pull/11367) * [Bug 2083385](https://bugzilla.redhat.com/show_bug.cgi?id=2083385): fix bug where "Update blocked" label incorrectly displa… [#11466](https://github.com/openshift/console/pull/11466) * [Bug 2076370](https://bugzilla.redhat.com/show_bug.cgi?id=2076370): fix CRD name filter [#11356](https://github.com/openshift/console/pull/11356) * [Bug 2083551](https://bugzilla.redhat.com/show_bug.cgi?id=2083551): customize wizard is crashed [#11469](https://github.com/openshift/console/pull/11469) * [Bug 2076275](https://bugzilla.redhat.com/show_bug.cgi?id=2076275): Update and scope our breadcrumb padding rule so it doesn't effect a pure implementation [#11365](https://github.com/openshift/console/pull/11365) * [Bug 2076777](https://bugzilla.redhat.com/show_bug.cgi?id=2076777): add update mode to Update cluster [#11364](https://github.com/openshift/console/pull/11364) * [Bug 2074163](https://bugzilla.redhat.com/show_bug.cgi?id=2074163): remove `.pf-c-button.pf-m-link` override [#11315](https://github.com/openshift/console/pull/11315) * [Bug 2071904](https://bugzilla.redhat.com/show_bug.cgi?id=2071904): Translate Extensions On Each Language Change [#11348](https://github.com/openshift/console/pull/11348) * [Bug 2078385](https://bugzilla.redhat.com/show_bug.cgi?id=2078385): Remove reference to deprecated `v2v-vmware` ConfigMap [#11387](https://github.com/openshift/console/pull/11387) * [Bug 2076369](https://bugzilla.redhat.com/show_bug.cgi?id=2076369): fix bug where ClusterRole > RoleBindings did not display… [#11354](https://github.com/openshift/console/pull/11354) * [Bug 2073477](https://bugzilla.redhat.com/show_bug.cgi?id=2073477): Add IBM Flashsystem volume types [#11308](https://github.com/openshift/console/pull/11308) * [Bug 2077641](https://bugzilla.redhat.com/show_bug.cgi?id=2077641): Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls [#11382](https://github.com/openshift/console/pull/11382) * [Bug 2065008](https://bugzilla.redhat.com/show_bug.cgi?id=2065008): add a hardcoded blog link as fallback in guided tours [#11193](https://github.com/openshift/console/pull/11193) * [Bug 2074571](https://bugzilla.redhat.com/show_bug.cgi?id=2074571): fix bug where Cluster Settings shows 0 of N, 0% progres… [#11319](https://github.com/openshift/console/pull/11319) * [Bug 2073023](https://bugzilla.redhat.com/show_bug.cgi?id=2073023): Fix WebSockets not reconnecting during upgrade [#11302](https://github.com/openshift/console/pull/11302) * [Bug 2072839](https://bugzilla.redhat.com/show_bug.cgi?id=2072839): fix bug where RoleBindings are not displaying in ClusterRole > RoleBindings [#11297](https://github.com/openshift/console/pull/11297) * [Bug 2069246](https://bugzilla.redhat.com/show_bug.cgi?id=2069246): Fixed the render of a Tab Extension when there is a version present [#11242](https://github.com/openshift/console/pull/11242) * [Bug 2076221](https://bugzilla.redhat.com/show_bug.cgi?id=2076221): Fix failing TestGetRegistrySamples test [#11351](https://github.com/openshift/console/pull/11351) * [Bug 2057218](https://bugzilla.redhat.com/show_bug.cgi?id=2057218): Added support for customized wizard - new templates [#11341](https://github.com/openshift/console/pull/11341) * [Bug 2069959](https://bugzilla.redhat.com/show_bug.cgi?id=2069959): Update getting started blog link [#11255](https://github.com/openshift/console/pull/11255) * [Bug 2074895](https://bugzilla.redhat.com/show_bug.cgi?id=2074895): Display correct disk size in Edit disk modal [#11329](https://github.com/openshift/console/pull/11329) * [Bug 2061250](https://bugzilla.redhat.com/show_bug.cgi?id=2061250): Update ConsolePlugin manifest [#11267](https://github.com/openshift/console/pull/11267) * [Bug 2072440](https://bugzilla.redhat.com/show_bug.cgi?id=2072440): avoid pre-fetching tekton hub task versions in pipeline builder [#11290](https://github.com/openshift/console/pull/11290) * [Bug 2067719](https://bugzilla.redhat.com/show_bug.cgi?id=2067719): correct ChannelDocLink url [#11225](https://github.com/openshift/console/pull/11225) * [Bug 2069913](https://bugzilla.redhat.com/show_bug.cgi?id=2069913): Fix disabling community tasks in pipeline builder issue [#11253](https://github.com/openshift/console/pull/11253) * [Bug 2059186](https://bugzilla.redhat.com/show_bug.cgi?id=2059186): Don't pass Authorization header when not needed [#11108](https://github.com/openshift/console/pull/11108) * [Bug 2048892](https://bugzilla.redhat.com/show_bug.cgi?id=2048892): Add empty state to running VMs card [#10986](https://github.com/openshift/console/pull/10986) * [Bug 2054949](https://bugzilla.redhat.com/show_bug.cgi?id=2054949): Disabling Vault SA based auth for storage class encryption [#11064](https://github.com/openshift/console/pull/11064) * [Bug 2049762](https://bugzilla.redhat.com/show_bug.cgi?id=2049762): Cannot change storage class of boot disk when creating VM [#10994](https://github.com/openshift/console/pull/10994) * [Bug 2054650](https://bugzilla.redhat.com/show_bug.cgi?id=2054650): Allow custom template namespace [#11057](https://github.com/openshift/console/pull/11057) * [Bug 2067983](https://bugzilla.redhat.com/show_bug.cgi?id=2067983): Pipeline metrics: use prometheus-tenancy API to get data [#11226](https://github.com/openshift/console/pull/11226) * [Bug 2065480](https://bugzilla.redhat.com/show_bug.cgi?id=2065480): Fix VolumeSnapshot creation sort [#11196](https://github.com/openshift/console/pull/11196) * [Bug 2064988](https://bugzilla.redhat.com/show_bug.cgi?id=2064988): [Tekton Hub] show read more link in the task quick search details pane [#11192](https://github.com/openshift/console/pull/11192) * [Bug 2057507](https://bugzilla.redhat.com/show_bug.cgi?id=2057507): Decode secrets before authorizing repository [#11094](https://github.com/openshift/console/pull/11094) * [Bug 2052414](https://bugzilla.redhat.com/show_bug.cgi?id=2052414): Add started-by annotation to pipelines created with "Start last run" [#11015](https://github.com/openshift/console/pull/11015) * [Bug 2059807](https://bugzilla.redhat.com/show_bug.cgi?id=2059807): Show standalone resources as sink and not the one's owned by other resource [#11119](https://github.com/openshift/console/pull/11119) * [Bug 2065672](https://bugzilla.redhat.com/show_bug.cgi?id=2065672): Fix alert from showing an object [#11200](https://github.com/openshift/console/pull/11200) * [Bug 2060090](https://bugzilla.redhat.com/show_bug.cgi?id=2060090): updates versions for kafka and kafkaTopic [#11127](https://github.com/openshift/console/pull/11127) * [Bug 2059989](https://bugzilla.redhat.com/show_bug.cgi?id=2059989): Fix to add labels to webhook secrets created during import [#11125](https://github.com/openshift/console/pull/11125) * [Bug 2056512](https://bugzilla.redhat.com/show_bug.cgi?id=2056512): fix ClusterOperator Status, Version col sorts [#11084](https://github.com/openshift/console/pull/11084) * [Bug 2064510](https://bugzilla.redhat.com/show_bug.cgi?id=2064510): Change the tekton hub api endpoint to use v1 api [#11186](https://github.com/openshift/console/pull/11186) * [Bug 2062258](https://bugzilla.redhat.com/show_bug.cgi?id=2062258): Add optional chaining to avoid npe [#11164](https://github.com/openshift/console/pull/11164) * [Bug 2059805](https://bugzilla.redhat.com/show_bug.cgi?id=2059805): clear dashboard variables for dev perspective on unmount [#11118](https://github.com/openshift/console/pull/11118) * [Bug 2060448](https://bugzilla.redhat.com/show_bug.cgi?id=2060448): Fix potential issues with namespaces that contains just numbers [#11132](https://github.com/openshift/console/pull/11132) * [Bug 2059849](https://bugzilla.redhat.com/show_bug.cgi?id=2059849): fix console crashing in the edit deployment form [#11122](https://github.com/openshift/console/pull/11122) * [Bug 2055444](https://bugzilla.redhat.com/show_bug.cgi?id=2055444): Fix sticky footer in pipeline builder's form yaml switcher [#11079](https://github.com/openshift/console/pull/11079) * [Bug 2054757](https://bugzilla.redhat.com/show_bug.cgi?id=2054757): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11059](https://github.com/openshift/console/pull/11059) * [Bug 2062146](https://bugzilla.redhat.com/show_bug.cgi?id=2062146): Allow topology list to select application group [#11162](https://github.com/openshift/console/pull/11162) * [Bug 2059848](https://bugzilla.redhat.com/show_bug.cgi?id=2059848): fix duplicate edit app action on installing virtualization operator [#11121](https://github.com/openshift/console/pull/11121) * [Bug 2062837](https://bugzilla.redhat.com/show_bug.cgi?id=2062837): Remove tech preview badge for web terminal [#11173](https://github.com/openshift/console/pull/11173) * [Bug 2055290](https://bugzilla.redhat.com/show_bug.cgi?id=2055290): Sum total memory of unnamed container only [#11072](https://github.com/openshift/console/pull/11072) * [Bug 2057260](https://bugzilla.redhat.com/show_bug.cgi?id=2057260): Fix pipeline run logs autoscrolling issue [#11092](https://github.com/openshift/console/pull/11092) * [Bug 2048047](https://bugzilla.redhat.com/show_bug.cgi?id=2048047): Make namespace bar full width and sticky in console [#11065](https://github.com/openshift/console/pull/11065) * [Full changelog](https://github.com/openshift/console/compare/b6503ffd1c916bc5e9a1bfb2f96fb21c8a92efa9...3b007da0238043f18542363ef7d5947ea2990075) ### [console-operator](https://github.com/openshift/console-operator/tree/7ec7b2f3f790ad49bf694e0dbf2bb0bcb16a80be) * [OCPBUGS-11342](https://issues.redhat.com/browse/OCPBUGS-11342): Deleting downloads deployment should not fail if already deleted [#744](https://github.com/openshift/console-operator/pull/744) * [OCPBUGS-14845](https://issues.redhat.com/browse/OCPBUGS-14845): Distinguish between route conditions and remove the old ones [#768](https://github.com/openshift/console-operator/pull/768) * [Bug 2106944](https://bugzilla.redhat.com/show_bug.cgi?id=2106944): InfrastructureTopology must be driving console affinity rule creation [#664](https://github.com/openshift/console-operator/pull/664) * [Bug 2078912](https://bugzilla.redhat.com/show_bug.cgi?id=2078912): Modify the operator display name to match it with the name displayed in operatorhub [#651](https://github.com/openshift/console-operator/pull/651) * [Bug 2076453](https://bugzilla.redhat.com/show_bug.cgi?id=2076453): Console operator should not block installation/upgrade process when set to Removed state [#649](https://github.com/openshift/console-operator/pull/649) * [Bug 2059992](https://bugzilla.redhat.com/show_bug.cgi?id=2059992): Re-enable TestMetricsEndpoint e2e test case [#646](https://github.com/openshift/console-operator/pull/646) * [Bug 2054535](https://bugzilla.redhat.com/show_bug.cgi?id=2054535): ODF quickstart permissions check [#637](https://github.com/openshift/console-operator/pull/637) * [Bug 2054199](https://bugzilla.redhat.com/show_bug.cgi?id=2054199): Dockerfile.rhel7: add new Helm CRD, ProjectHelmChartRepository [#636](https://github.com/openshift/console-operator/pull/636) * [Full changelog](https://github.com/openshift/console-operator/compare/17a555447f3a6323d371cf2d5228dbc95918c80e...7ec7b2f3f790ad49bf694e0dbf2bb0bcb16a80be) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/3123ef8b0c773a55d0d5071c050919449d29fa90) * [Bug 2103175](https://bugzilla.redhat.com/show_bug.cgi?id=2103175): Sysctl IFNAME [backport 4.10] [#63](https://github.com/openshift/containernetworking-plugins/pull/63) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/55e1cf1c72a5cd4b7bfa273bcd809f3282e317de...3123ef8b0c773a55d0d5071c050919449d29fa90) ### [coredns](https://github.com/openshift/coredns/tree/6c0325145a4d108f110f2bcb23aa69ba352e70d1) * [OCPBUGS-2902](https://issues.redhat.com/browse/OCPBUGS-2902): Remove bufsize hardcoding to 2048 on cache upstream refreshes. [#80](https://github.com/openshift/coredns/pull/80) * [Full changelog](https://github.com/openshift/coredns/compare/3ec1ee7dd91d5a1193745984c2c247ba3f2518d3...6c0325145a4d108f110f2bcb23aa69ba352e70d1) ### [csi-driver-manila, openstack-cinder-csi-driver, openstack-cloud-controller-manager](https://github.com/openshift/cloud-provider-openstack/tree/cb2949cac4331ee7f902be5eee9caae0258e2bd9) * [OCPBUGS-6903](https://issues.redhat.com/browse/OCPBUGS-6903): Merge https://github.com/kubernetes/cloud-provider-openstack:release-1.23 into release-4.10 [#177](https://github.com/openshift/cloud-provider-openstack/pull/177) * [OCPBUGS-5012](https://issues.redhat.com/browse/OCPBUGS-5012): Sync with upstream release-1.23 [#158](https://github.com/openshift/cloud-provider-openstack/pull/158) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/df0b27de80cfaa3f01e8cf0210f3a8d0c9a248d9...cb2949cac4331ee7f902be5eee9caae0258e2bd9) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/3b06768c823d54df549f488355ed348dff82a171) * [OCPBUGS-10722](https://issues.redhat.com/browse/OCPBUGS-10722): Bump go.mongodb.org/mongo-driver to v1.5.1 [#178](https://github.com/openshift/csi-driver-manila-operator/pull/178) * [OCPBUGS-7796](https://issues.redhat.com/browse/OCPBUGS-7796): Address CVE-2022-41717 [#169](https://github.com/openshift/csi-driver-manila-operator/pull/169) * [Bug 2091649](https://bugzilla.redhat.com/show_bug.cgi?id=2091649): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#150](https://github.com/openshift/csi-driver-manila-operator/pull/150) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/16f67d6cf67395065ee6084d2ef7fcb7c74bb151...3b06768c823d54df549f488355ed348dff82a171) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/e6b56647e363c623e4a1538f59d2cc60475c44ad) * [OCPBUGS-10554](https://issues.redhat.com/browse/OCPBUGS-10554): Bump go.mongodb.org/mongo-driver to v1.5.1 [#114](https://github.com/openshift/csi-driver-nfs/pull/114) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/3448830c086f092863ce701cccc6b627bca5b827...e6b56647e363c623e4a1538f59d2cc60475c44ad) ### [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe/tree/270d66c38fec64cb131b0c0e860960fc67aa71f5) * [OCPBUGS-13143](https://issues.redhat.com/browse/OCPBUGS-13143): Bump gRPC from 1.38.0 to 1.49.0 [#41](https://github.com/openshift/csi-livenessprobe/pull/41) * [Full changelog](https://github.com/openshift/csi-livenessprobe/compare/8c1a5bcac1675711b51fffe88b40bb46f0e22db9...270d66c38fec64cb131b0c0e860960fc67aa71f5) ### [docker-builder](https://github.com/openshift/builder/tree/beffada427156a46d0e38e62d17843f9ee2ee5fd) * [OCPBUGS-15652](https://issues.redhat.com/browse/OCPBUGS-15652): Add the git-lfs package [#355](https://github.com/openshift/builder/pull/355) * [OCPBUGS-11782](https://issues.redhat.com/browse/OCPBUGS-11782): manage-dockerfile: use the original form of HEALTHCHECK [#342](https://github.com/openshift/builder/pull/342) * [OCPBUGS-205](https://issues.redhat.com/browse/OCPBUGS-205): Add support for BUILDAH_QUIET environment variable [#310](https://github.com/openshift/builder/pull/310) * [Full changelog](https://github.com/openshift/builder/compare/24d8db40f7544806bf6e5acc32f56e223a59eed7...beffada427156a46d0e38e62d17843f9ee2ee5fd) ### [docker-registry](https://github.com/openshift/image-registry/tree/1892f21a94df9ea88a3fdbfe4648d672c319038f) * [OCPBUGS-920](https://issues.redhat.com/browse/OCPBUGS-920): Keep OCI image configs when hard prune [#344](https://github.com/openshift/image-registry/pull/344) * [Bug 2110963](https://bugzilla.redhat.com/show_bug.cgi?id=2110963): Bump aws-sdk-go to 1.44.4 [#340](https://github.com/openshift/image-registry/pull/340) * [Bug 2099416](https://bugzilla.redhat.com/show_bug.cgi?id=2099416): Support authentication using gcp workload identity federation [#336](https://github.com/openshift/image-registry/pull/336) * [Bug 2085414](https://bugzilla.redhat.com/show_bug.cgi?id=2085414): forward http.StatusTooManyRequests to client [#332](https://github.com/openshift/image-registry/pull/332) * [Bug 2069807](https://bugzilla.redhat.com/show_bug.cgi?id=2069807): Bug 2060362: Revert "Support authentication using gcp workload identity federation" [#321](https://github.com/openshift/image-registry/pull/321) * [Bug 2061785](https://bugzilla.redhat.com/show_bug.cgi?id=2061785): Fix ICSP for subrepositories [#318](https://github.com/openshift/image-registry/pull/318) * [Full changelog](https://github.com/openshift/image-registry/compare/9fb745125fafe759d08b01c18adf3a5734fb829b...1892f21a94df9ea88a3fdbfe4648d672c319038f) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/fd4ea71c5456122d046ca9c188f3ab04fb7fd4d7) * Adding kernel-rpm-macros to the Dockerfile. (#109) [#109](https://github.com/openshift/driver-toolkit/pull/109) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/0c77c8d662851e5a2ba8e85f4400c60f63d2fb6c...fd4ea71c5456122d046ca9c188f3ab04fb7fd4d7) ### [etcd](https://github.com/openshift/etcd/tree/c3be56f7c25b24881b06c3cc421abdde9ea8db06) * Update owners [#187](https://github.com/openshift/etcd/pull/187) * Updating ose-etcd images to be consistent with ART [#151](https://github.com/openshift/etcd/pull/151) * [OCPBUGS-5950](https://issues.redhat.com/browse/OCPBUGS-5950): UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… [#179](https://github.com/openshift/etcd/pull/179) * [OCPBUGS-3103](https://issues.redhat.com/browse/OCPBUGS-3103): Rebase openshift/etcd 4.10 onto v3.5.6 [#171](https://github.com/openshift/etcd/pull/171) * [OCPBUGS-2142](https://issues.redhat.com/browse/OCPBUGS-2142): Rebase openshift/etcd 4.10 onto 3.5.5 [#156](https://github.com/openshift/etcd/pull/156) * Update OWNERS [#123](https://github.com/openshift/etcd/pull/123) * [Bug 2077498](https://bugzilla.redhat.com/show_bug.cgi?id=2077498): Merge Upstream etcd 3.5.3 into Openshift 4.10 [#118](https://github.com/openshift/etcd/pull/118) * [Full changelog](https://github.com/openshift/etcd/compare/7bbf25aea3061b645e23bb05bb832955be9b10e3...c3be56f7c25b24881b06c3cc421abdde9ea8db06) ### [gcp-machine-controllers](https://github.com/openshift/machine-api-provider-gcp/tree/a8d5b9445f4096b6f2c0fc38789cc065e8f736b4) * [OCPBUGS-5291](https://issues.redhat.com/browse/OCPBUGS-5291): refactor restartPolicyToBool function [#36](https://github.com/openshift/machine-api-provider-gcp/pull/36) * [Full changelog](https://github.com/openshift/machine-api-provider-gcp/compare/3fe46c8bc8bdbbccc778fd71dd1939495888ed56...a8d5b9445f4096b6f2c0fc38789cc065e8f736b4) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/0e369dee1b74696a17faf9b9c28e391d6726bf52) * [Bug 2098655](https://bugzilla.redhat.com/show_bug.cgi?id=2098655): gcp cluster rollback fails due to storage failure [#49](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/49) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/223a251c3ba39d8af605258d14794b32a5cfafda...0e369dee1b74696a17faf9b9c28e391d6726bf52) ### [grafana](https://github.com/openshift/grafana/tree/ca476d4cc6e8692bf3fb377a6da0a37285659e6c) * [OCPBUGS-4260](https://issues.redhat.com/browse/OCPBUGS-4260): bump github.com/crewjam/saml dependency [#93](https://github.com/openshift/grafana/pull/93) * [Full changelog](https://github.com/openshift/grafana/compare/48aec355b16ba21f9a7d3f2896a538351526d104...ca476d4cc6e8692bf3fb377a6da0a37285659e6c) ### [haproxy-router](https://github.com/openshift/router/tree/c1e7f4053c219d193ca908711255fe37fd931bc7) * [Bug 2098230](https://bugzilla.redhat.com/show_bug.cgi?id=2098230): Fix gap in router's handling of graceful shutdowns. [#406](https://github.com/openshift/router/pull/406) * [Bug 2096362](https://bugzilla.redhat.com/show_bug.cgi?id=2096362): HAProxy: enable PROXY protocol for all listeners [#405](https://github.com/openshift/router/pull/405) * [Bug 2076371](https://bugzilla.redhat.com/show_bug.cgi?id=2076371): generateRouteHostRegexp: Escape blanks [#385](https://github.com/openshift/router/pull/385) * [Full changelog](https://github.com/openshift/router/compare/820e08aa07d54458ebb02bc98d512688f86880af...c1e7f4053c219d193ca908711255fe37fd931bc7) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/26fdcdf8fc0ac7f437d6301eedd96704d95cfd10) * [OCPBUGS-8735](https://issues.redhat.com/browse/OCPBUGS-8735): UPSTREAM: <drop>: bump apiserver-library-go [#1628](https://github.com/openshift/kubernetes/pull/1628) * [OCPBUGS-8314](https://issues.redhat.com/browse/OCPBUGS-8314): bump to k8s 1.23.17 [#1497](https://github.com/openshift/kubernetes/pull/1497) * [OCPBUGS-10244](https://issues.redhat.com/browse/OCPBUGS-10244): Fix mounted volume expansion tests [#1510](https://github.com/openshift/kubernetes/pull/1510) * [OCPBUGS-3434](https://issues.redhat.com/browse/OCPBUGS-3434): UPSTREAM: 113517: kubelet: fix pod log line corruption when using timestamps and long lines [#1415](https://github.com/openshift/kubernetes/pull/1415) * UPSTREAM: <carry>: Wait for default service account in node authorizer test [#1398](https://github.com/openshift/kubernetes/pull/1398) * [Bug 2101326](https://bugzilla.redhat.com/show_bug.cgi?id=2101326): bump to k8s 1.23.12 [#1382](https://github.com/openshift/kubernetes/pull/1382) * [OCPBUGS-1266](https://issues.redhat.com/browse/OCPBUGS-1266): UPSTREAM: <carry>: Remove reserved CPUs from default set [#1362](https://github.com/openshift/kubernetes/pull/1362) * [Bug 2106414](https://bugzilla.redhat.com/show_bug.cgi?id=2106414): UPSTREAM: 109103: cpu/memory manager containerMap memory leak [#1318](https://github.com/openshift/kubernetes/pull/1318) * [Bug 2103381](https://bugzilla.redhat.com/show_bug.cgi?id=2103381): UPSTREAM: <carry>: update list of deprecated apis [#1306](https://github.com/openshift/kubernetes/pull/1306) * [Bug 2104928](https://bugzilla.redhat.com/show_bug.cgi?id=2104928): UPSTREAM: 109932: fix: exclude non-ready nodes and deleted nodes from azure load balancers [#1263](https://github.com/openshift/kubernetes/pull/1263) * [Bug 2067464](https://bugzilla.redhat.com/show_bug.cgi?id=2067464): Backport 107821 and 107831 [#1241](https://github.com/openshift/kubernetes/pull/1241) * [Bug 2075831](https://bugzilla.redhat.com/show_bug.cgi?id=2075831): UPSTREAM: 109487: Disable JobTrackingWithFinalizers due to unresolved… [#1244](https://github.com/openshift/kubernetes/pull/1244) * [Bug 2074094](https://bugzilla.redhat.com/show_bug.cgi?id=2074094): UPSTREAM: <carry>: An APIRequestCount without dots in the name can cause a panic [#1237](https://github.com/openshift/kubernetes/pull/1237) * [Bug 2069311](https://bugzilla.redhat.com/show_bug.cgi?id=2069311): UPSTREAM: <carry>: use hardcoded rest mapper from library-go [#1231](https://github.com/openshift/kubernetes/pull/1231) * [Bug 2065774](https://bugzilla.redhat.com/show_bug.cgi?id=2065774): Backport 108723 OutofCpu Fixes [#1221](https://github.com/openshift/kubernetes/pull/1221) * [Bug 2065620](https://bugzilla.redhat.com/show_bug.cgi?id=2065620): Rebase 1.23.5 [#1220](https://github.com/openshift/kubernetes/pull/1220) * [Full changelog](https://github.com/openshift/kubernetes/compare/e419edff267ffa1c60d5e3c51aaaeba7d39c3483...26fdcdf8fc0ac7f437d6301eedd96704d95cfd10) ### [ibm-vpc-block-csi-driver](https://github.com/openshift/ibm-vpc-block-csi-driver/tree/fc60caeba29541f39992217049e74e2fc9fd03cf) * [OCPBUGS-1488](https://issues.redhat.com/browse/OCPBUGS-1488): Add udev [#20](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/20) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver/compare/d54e3706bb8b38447800aa91632a946eb6c990ec...fc60caeba29541f39992217049e74e2fc9fd03cf) ### [ibm-vpc-block-csi-driver-operator](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/tree/28bad53d117d403b4147b68666ecfc52cee6ceca) * [Bug 2077419](https://bugzilla.redhat.com/show_bug.cgi?id=2077419): [4.10] [ibm-vpc-block] Unable to change default storage class [#35](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/35) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/compare/45f1fad5fd60b9d1503b2b4b7aa39946545800f8...28bad53d117d403b4147b68666ecfc52cee6ceca) ### [image-customization-controller](https://github.com/openshift/image-customization-controller/tree/a24f082c8ebd32ede3d53c088c8ef11007384401) * [OCPBUGS-3999](https://issues.redhat.com/browse/OCPBUGS-3999): use host IPC for the agent container [#71](https://github.com/openshift/image-customization-controller/pull/71) * [OCPBUGS-754](https://issues.redhat.com/browse/OCPBUGS-754): mount /run/udev into the agent container [#64](https://github.com/openshift/image-customization-controller/pull/64) * [Bug 2098627](https://bugzilla.redhat.com/show_bug.cgi?id=2098627): Remove the container at exit [#56](https://github.com/openshift/image-customization-controller/pull/56) * Update OWNERS to current team status [#53](https://github.com/openshift/image-customization-controller/pull/53) * [Bug 2061977](https://bugzilla.redhat.com/show_bug.cgi?id=2061977): Add delay between ironic-agent restart, but restart forever [#54](https://github.com/openshift/image-customization-controller/pull/54) * [Bug 2061977](https://bugzilla.redhat.com/show_bug.cgi?id=2061977): Restart ironic-agent.service when it fails [#43](https://github.com/openshift/image-customization-controller/pull/43) * [Full changelog](https://github.com/openshift/image-customization-controller/compare/04a5cb352bd086a12436b6d2683d5b1bc99c39bc...a24f082c8ebd32ede3d53c088c8ef11007384401) ### [insights-operator](https://github.com/openshift/insights-operator/tree/871cc6053ee5187f8889815c1f88094279444bcf) * [OCPBUGS-6832](https://issues.redhat.com/browse/OCPBUGS-6832): feat(recent_metrics) adds openshift_apps_deploymentconfigs_strategy_total (#726) (#740) [#726](https://github.com/openshift/insights-operator/pull/726) * [OCPBUGS-1987](https://issues.redhat.com/browse/OCPBUGS-1987): do not periodically update Available clusteroperator co… (#718) (#720) [#718](https://github.com/openshift/insights-operator/pull/718) * helm upgrades and uninstalls backport 4.10 (#663) [#663](https://github.com/openshift/insights-operator/pull/663) * OCPBUGS-251 Gather status of the cephclusters.ceph.rook.io resources (#659) [#659](https://github.com/openshift/insights-operator/pull/659) * Backport console helm installs to 4.10 (#638) [#638](https://github.com/openshift/insights-operator/pull/638) * [Bug 2081844](https://bugzilla.redhat.com/show_bug.cgi?id=2081844): Fix the clusteroperator conditions values when IO is (#619) [#619](https://github.com/openshift/insights-operator/pull/619) * [Bug 2079318](https://bugzilla.redhat.com/show_bug.cgi?id=2079318): Remove PSP gatherer (#608) (#615) [#608](https://github.com/openshift/insights-operator/pull/608) * [Bug 2072848](https://bugzilla.redhat.com/show_bug.cgi?id=2072848): Gather namespace names with overlapping UIDs (#605) [#605](https://github.com/openshift/insights-operator/pull/605) * Gather some error messages from the kube-controller-manager containers (#598) [#598](https://github.com/openshift/insights-operator/pull/598) * Gather cluster images.config.openshift.io resource definition (#581) [#581](https://github.com/openshift/insights-operator/pull/581) * [Full changelog](https://github.com/openshift/insights-operator/compare/007dfade2f36b95cedfd90a5a5ea6f0c5e89dab3...871cc6053ee5187f8889815c1f88094279444bcf) ### [ironic](https://github.com/openshift/ironic-image/tree/caf63f4967c11aed4c5b340bdd3e057be492d1fa) * [OCPBUGS-13729](https://issues.redhat.com/browse/OCPBUGS-13729): Bump python-sushy [#374](https://github.com/openshift/ironic-image/pull/374) * [OCPBUGS-7163](https://issues.redhat.com/browse/OCPBUGS-7163): Increase power_state_change_timeout setting [#348](https://github.com/openshift/ironic-image/pull/348) * Bug OCPBUGS-6886: Fix setting boot related attributes [#347](https://github.com/openshift/ironic-image/pull/347) * [OCPBUGS-5344](https://issues.redhat.com/browse/OCPBUGS-5344): Configure Ironic iLO driver to use web server [#343](https://github.com/openshift/ironic-image/pull/343) * [OCPBUGS-4467](https://issues.redhat.com/browse/OCPBUGS-4467): Remove RDO distribution configuration [#330](https://github.com/openshift/ironic-image/pull/330) * [OCPBUGS-5415](https://issues.redhat.com/browse/OCPBUGS-5415): Update packages versions with latest available [#345](https://github.com/openshift/ironic-image/pull/345) * Bug OCPBUGS-3477: Improve resiliency of eTag handling [#316](https://github.com/openshift/ironic-image/pull/316) * [OCPBUGS-2829](https://issues.redhat.com/browse/OCPBUGS-2829): Removed ServerName from VirtualHost Directives [#307](https://github.com/openshift/ironic-image/pull/307) * [OCPBUGS-1740](https://issues.redhat.com/browse/OCPBUGS-1740): Backport improvements to iDRAC steps to OCP 4.10 [#303](https://github.com/openshift/ironic-image/pull/303) * [OCPBUGS-1225](https://issues.redhat.com/browse/OCPBUGS-1225): sync BIOS settings fixes [#298](https://github.com/openshift/ironic-image/pull/298) * [Bug 2109125](https://bugzilla.redhat.com/show_bug.cgi?id=2109125): Upgrade version of ironic package to include fix for ZTP deployment [#284](https://github.com/openshift/ironic-image/pull/284) * [Bug 2080442](https://bugzilla.redhat.com/show_bug.cgi?id=2080442): Update sushy version [#272](https://github.com/openshift/ironic-image/pull/272) * [Full changelog](https://github.com/openshift/ironic-image/compare/db4f6aa56c5c0105e3fe3bc6448dc709d819f350...caf63f4967c11aed4c5b340bdd3e057be492d1fa) ### [ironic-agent](https://github.com/openshift/ironic-agent-image/tree/28ee0ef73966f9989e5ad83ef55791390738a59a) * [OCPBUGS-7533](https://issues.redhat.com/browse/OCPBUGS-7533): make coreos-installer output available in the logs [#68](https://github.com/openshift/ironic-agent-image/pull/68) * [OCPBUGS-1232](https://issues.redhat.com/browse/OCPBUGS-1232): Include Fix for discovering bond interfaces [#63](https://github.com/openshift/ironic-agent-image/pull/63) * [Bug 2100775](https://bugzilla.redhat.com/show_bug.cgi?id=2100775): Include Fix discovering WWN/serial for devicemapper devices [#56](https://github.com/openshift/ironic-agent-image/pull/56) * [Bug 2100836](https://bugzilla.redhat.com/show_bug.cgi?id=2100836): Add missing multipath modules [#55](https://github.com/openshift/ironic-agent-image/pull/55) * [Bug 2089312](https://bugzilla.redhat.com/show_bug.cgi?id=2089312): multipath fix for passive paths [#52](https://github.com/openshift/ironic-agent-image/pull/52) * [Bug 2053752](https://bugzilla.redhat.com/show_bug.cgi?id=2053752): import time [#49](https://github.com/openshift/ironic-agent-image/pull/49) * [Bug 2053752](https://bugzilla.redhat.com/show_bug.cgi?id=2053752): Bump retries for UEFI boot configuration [#48](https://github.com/openshift/ironic-agent-image/pull/48) * [Bug 2061278](https://bugzilla.redhat.com/show_bug.cgi?id=2061278): [release-4.10] Retry UEFI boot Configuration [#43](https://github.com/openshift/ironic-agent-image/pull/43) * [Bug 2048481](https://bugzilla.redhat.com/show_bug.cgi?id=2048481): Update ironic-python-agent to latest bugfix version [#38](https://github.com/openshift/ironic-agent-image/pull/38) * [Full changelog](https://github.com/openshift/ironic-agent-image/compare/2004c66bc93bd3a9189ed771835d3a0acaedaebc...28ee0ef73966f9989e5ad83ef55791390738a59a) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/e654cfb2806b535132e605917d8f5430a2606499) * [OCPBUGS-14650](https://issues.redhat.com/browse/OCPBUGS-14650): Bump Jenkins plugins to latest versions [#1696](https://github.com/openshift/jenkins/pull/1696) * [OCPBUGS-14401](https://issues.redhat.com/browse/OCPBUGS-14401): Combined backport updates [#1689](https://github.com/openshift/jenkins/pull/1689) * [OCPBUGS-14279](https://issues.redhat.com/browse/OCPBUGS-14279): Updates to use Java 11 by default [#1682](https://github.com/openshift/jenkins/pull/1682) * mitigate CVEs [#1675](https://github.com/openshift/jenkins/pull/1675) * [OCPBUGS-13654](https://issues.redhat.com/browse/OCPBUGS-13654): Bump Jenkins version and Plugin versions [#1672](https://github.com/openshift/jenkins/pull/1672) * [OCPBUGS-11499](https://issues.redhat.com/browse/OCPBUGS-11499), [OCPBUGS-11500](https://issues.redhat.com/browse/OCPBUGS-11500), [OCPBUGS-11501](https://issues.redhat.com/browse/OCPBUGS-11501): Various issues [#1658](https://github.com/openshift/jenkins/pull/1658) * [OCPBUGS-11238](https://issues.redhat.com/browse/OCPBUGS-11238): Fix labels for jenkins-slave-base-rhel8 [#1643](https://github.com/openshift/jenkins/pull/1643) * [OCPBUGS-10012](https://issues.redhat.com/browse/OCPBUGS-10012), [OCPBUGS-10020](https://issues.redhat.com/browse/OCPBUGS-10020), [OCPBUGS-6079](https://issues.redhat.com/browse/OCPBUGS-6079): Bump Jenkins [#1639](https://github.com/openshift/jenkins/pull/1639) * [OCPBUGS-11236](https://issues.redhat.com/browse/OCPBUGS-11236), [OCPBUGS-11237](https://issues.redhat.com/browse/OCPBUGS-11237), [OCPBUGS-11239](https://issues.redhat.com/browse/OCPBUGS-11239): Bump Jenkins version to 2.387.1 [#1642](https://github.com/openshift/jenkins/pull/1642) * [OCPBUGS-11240](https://issues.redhat.com/browse/OCPBUGS-11240): configuration-as-code bumped to 1569.vb_72405b_80249 [#1644](https://github.com/openshift/jenkins/pull/1644) * [OCPBUGS-6627](https://issues.redhat.com/browse/OCPBUGS-6627): Bump script security plugin [#1624](https://github.com/openshift/jenkins/pull/1624) * [OCPBUGS-7238](https://issues.redhat.com/browse/OCPBUGS-7238): Enable Websocket support [#1587](https://github.com/openshift/jenkins/pull/1587) * [OCPBUGS-7052](https://issues.redhat.com/browse/OCPBUGS-7052): Sync jenkins version and plugins with ma… [#1582](https://github.com/openshift/jenkins/pull/1582) * [OCPBUGS-4095](https://issues.redhat.com/browse/OCPBUGS-4095): Required Plugin `workflow-multibranch` [#1569](https://github.com/openshift/jenkins/pull/1569) * [OCPBUGS-6645](https://issues.redhat.com/browse/OCPBUGS-6645): Handle routes properly in s2i/run [#1562](https://github.com/openshift/jenkins/pull/1562) * [OCPBUGS-4095](https://issues.redhat.com/browse/OCPBUGS-4095): Various CVEs September/2022 [#1547](https://github.com/openshift/jenkins/pull/1547) * [OCPBUGS-900](https://issues.redhat.com/browse/OCPBUGS-900): Bump openshift login plugin to 1.0.29 [#1561](https://github.com/openshift/jenkins/pull/1561) * [OCPBUGS-912](https://issues.redhat.com/browse/OCPBUGS-912): Add maven plugin dependency in base plugins [#1530](https://github.com/openshift/jenkins/pull/1530) * [OCPBUGS-3697](https://issues.redhat.com/browse/OCPBUGS-3697): [release-4.10] Update OWNERS [#1521](https://github.com/openshift/jenkins/pull/1521) * [release: 4.10] OCPBUGS-2137: Sync javax-mail-api with version required by jenkins 2.361.1 [#1496](https://github.com/openshift/jenkins/pull/1496) * [OCPBUGS-724](https://issues.redhat.com/browse/OCPBUGS-724): Update blueocean-autofavorite to 1.2.5 [#1478](https://github.com/openshift/jenkins/pull/1478) * [OCPBUGS-2943](https://issues.redhat.com/browse/OCPBUGS-2943): Force git-server to an earlier version [#1509](https://github.com/openshift/jenkins/pull/1509) * [OCPBUGS-2185](https://issues.redhat.com/browse/OCPBUGS-2185): Bump Jenkins version to 2.361.1 [#1499](https://github.com/openshift/jenkins/pull/1499) * [OCPBUGS-1440](https://issues.redhat.com/browse/OCPBUGS-1440): fix install plugins script [#1484](https://github.com/openshift/jenkins/pull/1484) * [OCPBUGS-1037](https://issues.redhat.com/browse/OCPBUGS-1037): Install glibc language package to remove `setLocale` warning [#1480](https://github.com/openshift/jenkins/pull/1480) * [OCPBUGS-473](https://issues.redhat.com/browse/OCPBUGS-473): CVE mitigations [#1479](https://github.com/openshift/jenkins/pull/1479) * [OCPBUGS-713](https://issues.redhat.com/browse/OCPBUGS-713): Add user coreydaley to approvers list [#1477](https://github.com/openshift/jenkins/pull/1477) * [OCPBUGS-400](https://issues.redhat.com/browse/OCPBUGS-400): Revert xmlstarlet usage [#1469](https://github.com/openshift/jenkins/pull/1469) * [Bug 2095620](https://bugzilla.redhat.com/show_bug.cgi?id=2095620): Bump matrix-project plugin to 1.20 [#1453](https://github.com/openshift/jenkins/pull/1453) * [Bug 2080204](https://bugzilla.redhat.com/show_bug.cgi?id=2080204): Correctly declare Jenkins URL with trailing slash [#1441](https://github.com/openshift/jenkins/pull/1441) * [Bug 2076253](https://bugzilla.redhat.com/show_bug.cgi?id=2076253): Mitigate multiple CVEs [#1430](https://github.com/openshift/jenkins/pull/1430) * [Bug 2075135](https://bugzilla.redhat.com/show_bug.cgi?id=2075135): set necessary JVM args to allow jenkins JVM to come up on a FIPS node [#1425](https://github.com/openshift/jenkins/pull/1425) * [Bug 2069134](https://bugzilla.redhat.com/show_bug.cgi?id=2069134): [release-4.10] Update bundle-plugins.txt [#1420](https://github.com/openshift/jenkins/pull/1420) * [Bug 2069134](https://bugzilla.redhat.com/show_bug.cgi?id=2069134): [release-4.10] Enable supply-chain check [#1417](https://github.com/openshift/jenkins/pull/1417) * [Bug 2061616](https://bugzilla.redhat.com/show_bug.cgi?id=2061616): [release-4.10] Compute bundle plugins in build [#1398](https://github.com/openshift/jenkins/pull/1398) * [Bug 2063898](https://bugzilla.redhat.com/show_bug.cgi?id=2063898): [release-4.10] 2022-02-15 Security Advisory [#1403](https://github.com/openshift/jenkins/pull/1403) * [Bug 2062053](https://bugzilla.redhat.com/show_bug.cgi?id=2062053): Add Jitendar to OWNERS file [#1401](https://github.com/openshift/jenkins/pull/1401) * [Bug 2055653](https://bugzilla.redhat.com/show_bug.cgi?id=2055653): Add xmlstarlet to handle JENKINS_PASSWORD properly [#1391](https://github.com/openshift/jenkins/pull/1391) * [Full changelog](https://github.com/openshift/jenkins/compare/10e9ee33dcfa338d6cca0f261b98b245e0206ccc...e654cfb2806b535132e605917d8f5430a2606499) ### [keepalived-ipfailover](https://github.com/openshift/images/tree/5d526c41d70e481820119cbdae922130f42b36d7) * Updating openshift-enterprise-base images to be consistent with ART [#110](https://github.com/openshift/images/pull/110) * [Full changelog](https://github.com/openshift/images/compare/544601e82413bc549bfe2eb8b54a7ff9f8c7c42e...5d526c41d70e481820119cbdae922130f42b36d7) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/cc28efbf6946233ecfcf2ee979f0ddff4fb1da65) * [OCPBUGS-13919](https://issues.redhat.com/browse/OCPBUGS-13919): save and delete the old egress network policy [#545](https://github.com/openshift/sdn/pull/545) * [OCPBUGS-13984](https://issues.redhat.com/browse/OCPBUGS-13984): CVE-2018-17419 ose-node-container: dns: Denial of Service (DoS) [openshift-4] [#548](https://github.com/openshift/sdn/pull/548) * [OCPBUGS-10912](https://issues.redhat.com/browse/OCPBUGS-10912): Fix race in Egress IP Tracker start [#524](https://github.com/openshift/sdn/pull/524) * [OCPBUGS-10524](https://issues.redhat.com/browse/OCPBUGS-10524): Initialize egress node monitoring struct with previous reachability status [#519](https://github.com/openshift/sdn/pull/519) * [OCPBUGS-8091](https://issues.redhat.com/browse/OCPBUGS-8091): Handle race condition to setup default vnid flows [#512](https://github.com/openshift/sdn/pull/512) * [OCPBUGS-5977](https://issues.redhat.com/browse/OCPBUGS-5977): Use pagination and set ResourceVersion to 0 when listing resources [#494](https://github.com/openshift/sdn/pull/494) * [OCPBUGS-6911](https://issues.redhat.com/browse/OCPBUGS-6911): Add node egress IP assignment resync [#501](https://github.com/openshift/sdn/pull/501) * [OCPBUGS-2106](https://issues.redhat.com/browse/OCPBUGS-2106): fix network policy egress [#465](https://github.com/openshift/sdn/pull/465) * Bug OCPBUGS-4387: Rebase against cherry-pick of kubernetes#107413 [#475](https://github.com/openshift/sdn/pull/475) * [OCPBUGS-3996](https://issues.redhat.com/browse/OCPBUGS-3996): egressip: Continue to process other nodes if a node is not ready [#472](https://github.com/openshift/sdn/pull/472) * [OCPBUGS-647](https://issues.redhat.com/browse/OCPBUGS-647): Fix DNS endpoint hack to prefer local instead of forcing it [#467](https://github.com/openshift/sdn/pull/467) * [OCPBUGS-647](https://issues.redhat.com/browse/OCPBUGS-647): Fix OCP hack to prefer local DNS endpoints [#457](https://github.com/openshift/sdn/pull/457) * [OCPBUGS-255](https://issues.redhat.com/browse/OCPBUGS-255): setup network policy rules during pod creation to fix postStart hook [#455](https://github.com/openshift/sdn/pull/455) * [Bug 2078501](https://bugzilla.redhat.com/show_bug.cgi?id=2078501): [release-4.10] Remove node-tainting for too-small MTU [#422](https://github.com/openshift/sdn/pull/422) * [Bug 2087763](https://bugzilla.redhat.com/show_bug.cgi?id=2087763): Probe failures and pod restarts during 4.7 to 4.8 upgrade [#431](https://github.com/openshift/sdn/pull/431) * [Bug 2082451](https://bugzilla.redhat.com/show_bug.cgi?id=2082451): Masquerade in cluster traffic that is marked for egress IP [#430](https://github.com/openshift/sdn/pull/430) * [Bug 2066466](https://bugzilla.redhat.com/show_bug.cgi?id=2066466): Fix releasing egress IP in cloud environments [#416](https://github.com/openshift/sdn/pull/416) * [Bug 2064807](https://bugzilla.redhat.com/show_bug.cgi?id=2064807): Rebase SDN k8 1.23.4 [#415](https://github.com/openshift/sdn/pull/415) * [Bug 2062859](https://bugzilla.redhat.com/show_bug.cgi?id=2062859): mixed ingress and egress policies can result in half-isolated pods [#410](https://github.com/openshift/sdn/pull/410) * [Full changelog](https://github.com/openshift/sdn/compare/62d09f934bc6a22495ee3d29eb453534e7773101...cc28efbf6946233ecfcf2ee979f0ddff4fb1da65) ### [kube-state-metrics](https://github.com/openshift/kube-state-metrics/tree/df55d3ea3dc12dbebf4daedcf4f886b3b73a8e35) * [OCPBUGS-4086](https://issues.redhat.com/browse/OCPBUGS-4086): cherry-pick, do not expose ingress path metric when service is nil [#86](https://github.com/openshift/kube-state-metrics/pull/86) * [OCPBUGS-2196](https://issues.redhat.com/browse/OCPBUGS-2196): internal/store: fix metrics slice length [#79](https://github.com/openshift/kube-state-metrics/pull/79) * [Bug 2078835](https://bugzilla.redhat.com/show_bug.cgi?id=2078835): internal/store: fix potential panic in pod store [#70](https://github.com/openshift/kube-state-metrics/pull/70) * [Bug 2085329](https://bugzilla.redhat.com/show_bug.cgi?id=2085329): Use v1 PodDisruptionBudget and CronJob resources [#72](https://github.com/openshift/kube-state-metrics/pull/72) * [Full changelog](https://github.com/openshift/kube-state-metrics/compare/6530ff5a6e35345e6aa8353c21d6fd5aa5873c12...df55d3ea3dc12dbebf4daedcf4f886b3b73a8e35) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/f77249c3e04cdd55a3b5b25eec32129665950f20) * [OCPBUGS-15491](https://issues.redhat.com/browse/OCPBUGS-15491): KuryrPort cleanup: Fix issue of subport not found [#736](https://github.com/openshift/kuryr-kubernetes/pull/736) * Bug OCPBUGS-13779: Fix ValueError when Pod has no IP address [#732](https://github.com/openshift/kuryr-kubernetes/pull/732) * Bug OCPBUGS-2216: Cleanup KuryrPort when Pod is missing [#702](https://github.com/openshift/kuryr-kubernetes/pull/702) * [OCPBUGS-11828](https://issues.redhat.com/browse/OCPBUGS-11828): CNI: Watch for deleted pods [#712](https://github.com/openshift/kuryr-kubernetes/pull/712) * Bug OCPBUGS-941: Fix unbound router_id variable while creating event [#688](https://github.com/openshift/kuryr-kubernetes/pull/688) * [Bug 2082079](https://bugzilla.redhat.com/show_bug.cgi?id=2082079): Parallelize ports removal [#663](https://github.com/openshift/kuryr-kubernetes/pull/663) * [Bug 2097277](https://bugzilla.redhat.com/show_bug.cgi?id=2097277): Use upper-constraints.txt from stable/xena in UT [#673](https://github.com/openshift/kuryr-kubernetes/pull/673) * [Bug 2077384](https://bugzilla.redhat.com/show_bug.cgi?id=2077384): Increase cni_request_duration buckets [#656](https://github.com/openshift/kuryr-kubernetes/pull/656) * [Bug 2055661](https://bugzilla.redhat.com/show_bug.cgi?id=2055661): Update KLB .spec.provider when required [#637](https://github.com/openshift/kuryr-kubernetes/pull/637) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/e77f917b77e4e73a06630721ec2a8d194c13c7e6...f77249c3e04cdd55a3b5b25eec32129665950f20) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/a7dfb7f5745370a2fb4e38fa75aaed562796e981) * [OCPBUGS-13600](https://issues.redhat.com/browse/OCPBUGS-13600): vSphere - enable steal time accounting [#1143](https://github.com/openshift/machine-api-operator/pull/1143) * [OCPBUGS-11327](https://issues.redhat.com/browse/OCPBUGS-11327): Fix empty component version [#1134](https://github.com/openshift/machine-api-operator/pull/1134) * [OCPBUGS-8359](https://issues.redhat.com/browse/OCPBUGS-8359): Append annotations from machine template spec to the node [#1125](https://github.com/openshift/machine-api-operator/pull/1125) * Updating ose-machine-api-operator images to be consistent with ART [#1103](https://github.com/openshift/machine-api-operator/pull/1103) * [OCPBUGS-957](https://issues.redhat.com/browse/OCPBUGS-957): Change "create" sequence with powering on the vm after clone [#1065](https://github.com/openshift/machine-api-operator/pull/1065) * [Bug 2109124](https://bugzilla.redhat.com/show_bug.cgi?id=2109124): Add DescribeRegions permission for aws controller [#1046](https://github.com/openshift/machine-api-operator/pull/1046) * [Bug 2086104](https://bugzilla.redhat.com/show_bug.cgi?id=2086104): Set vCenter client request timeout [#1017](https://github.com/openshift/machine-api-operator/pull/1017) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/668c5b52b104f44f339622cd397c51f584879e02...a7dfb7f5745370a2fb4e38fa75aaed562796e981) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/59a8d308bfa4cd89abdec9d345e396fe9dafd7b0) * Permit consistent go compilation [#3748](https://github.com/openshift/machine-config-operator/pull/3748) * [OCPBUGS-9837](https://issues.redhat.com/browse/OCPBUGS-9837): Increase keepalived API check fall value to 3](https://github.com/openshift/machine-config-operator/pull/3176#top) [#3176](https://github.com/openshift/machine-config-operator/pull/3176) * [OCPBUGS-10703](https://issues.redhat.com/browse/OCPBUGS-10703): configure-ovs: fix mtu-migration cleanup [#3622](https://github.com/openshift/machine-config-operator/pull/3622) * [OCPBUGS-5692](https://issues.redhat.com/browse/OCPBUGS-5692): 4.10 - remove goutils from dependency tree [#3500](https://github.com/openshift/machine-config-operator/pull/3500) * [OCPBUGS-4830](https://issues.redhat.com/browse/OCPBUGS-4830): daemon: gate done state on uncordon completion [#3278](https://github.com/openshift/machine-config-operator/pull/3278) * [OCPBUGS-6702](https://issues.redhat.com/browse/OCPBUGS-6702): controller: don't render new MC until base MCs update [#3517](https://github.com/openshift/machine-config-operator/pull/3517) * [OCPBUGS-5831](https://issues.redhat.com/browse/OCPBUGS-5831): Do not allow empty system reserved values [#3487](https://github.com/openshift/machine-config-operator/pull/3487) * [OCPBUGS-4810](https://issues.redhat.com/browse/OCPBUGS-4810): Sync controllerconfig anyway if daemon sync fails [#3454](https://github.com/openshift/machine-config-operator/pull/3454) * [OCPBUGS-4136](https://issues.redhat.com/browse/OCPBUGS-4136): configure-ovs: auto-connect ovs-if-phys0 with br-ex [#3436](https://github.com/openshift/machine-config-operator/pull/3436) * [OCPBUGS-4134](https://issues.redhat.com/browse/OCPBUGS-4134): Avoid NM managing patch port between br-int and br-ex [#3435](https://github.com/openshift/machine-config-operator/pull/3435) * [OCPBUGS-3500](https://issues.redhat.com/browse/OCPBUGS-3500): Add ephemeral storage to kubelet system reserved args [#3408](https://github.com/openshift/machine-config-operator/pull/3408) * [Bug 2069754](https://bugzilla.redhat.com/show_bug.cgi?id=2069754): [on-prem] Add NetworkManager reload to resolv-prepender [#3041](https://github.com/openshift/machine-config-operator/pull/3041) * [OCPBUGS-2973](https://issues.redhat.com/browse/OCPBUGS-2973): drop doc overlaysize default [#3395](https://github.com/openshift/machine-config-operator/pull/3395) * [OCPBUGS-2070](https://issues.redhat.com/browse/OCPBUGS-2070): Make sure there is a search domain in resolv.conf [#3366](https://github.com/openshift/machine-config-operator/pull/3366) * [OCPBUGS-642](https://issues.redhat.com/browse/OCPBUGS-642): Fix .ssh directory not owned by core when created by Machine Config Daemon [#3315](https://github.com/openshift/machine-config-operator/pull/3315) * [Bug 2118609](https://bugzilla.redhat.com/show_bug.cgi?id=2118609): Fix problem with retaining data in string array in piped while loop [#3289](https://github.com/openshift/machine-config-operator/pull/3289) * [Bug 2118607](https://bugzilla.redhat.com/show_bug.cgi?id=2118607): configure-ovs: clone inactive autoconnect slaves [#3288](https://github.com/openshift/machine-config-operator/pull/3288) * [Bug 2100894](https://bugzilla.redhat.com/show_bug.cgi?id=2100894): fix MCNameSuffix with kcfg ctrrcfg [#3224](https://github.com/openshift/machine-config-operator/pull/3224) * [Bug 2084187](https://bugzilla.redhat.com/show_bug.cgi?id=2084187): Avoid kubernetes node port range [#3145](https://github.com/openshift/machine-config-operator/pull/3145) * [Bug 2099686](https://bugzilla.redhat.com/show_bug.cgi?id=2099686): controller: de-couple FIPS and realtime detection [#3201](https://github.com/openshift/machine-config-operator/pull/3201) * [Bug 2098626](https://bugzilla.redhat.com/show_bug.cgi?id=2098626): configure-ovs: improve handling of static ip and mac address configuration [#3197](https://github.com/openshift/machine-config-operator/pull/3197) * [Bug 2096564](https://bugzilla.redhat.com/show_bug.cgi?id=2096564): Bug fix for node drain caused by ICSP objects [#3181](https://github.com/openshift/machine-config-operator/pull/3181) * [Bug 2089757](https://bugzilla.redhat.com/show_bug.cgi?id=2089757): configure-ovs: avoid restarting NetworkManager [#3159](https://github.com/openshift/machine-config-operator/pull/3159) * [Bug 2085410](https://bugzilla.redhat.com/show_bug.cgi?id=2085410): OVN Kubernetes configure-ovs-network set static if conversion metric [#3147](https://github.com/openshift/machine-config-operator/pull/3147) * [Bug 2081317](https://bugzilla.redhat.com/show_bug.cgi?id=2081317): configure-ovs.sh: Provide store hint for default route interface [#3131](https://github.com/openshift/machine-config-operator/pull/3131) * [Bug 2076493](https://bugzilla.redhat.com/show_bug.cgi?id=2076493): [on-prem] make Corefile api matching stricter [#3095](https://github.com/openshift/machine-config-operator/pull/3095) * [Bug 2082567](https://bugzilla.redhat.com/show_bug.cgi?id=2082567): [vsphere] remove warning encountered on vSphere UPI cluster without API VIP [#3138](https://github.com/openshift/machine-config-operator/pull/3138) * [Bug 2069798](https://bugzilla.redhat.com/show_bug.cgi?id=2069798): ClusterRoleUpdated/ClusterRoleBindingUpdated Spamming Event Logs [#3045](https://github.com/openshift/machine-config-operator/pull/3045) * [Bug 2079097](https://bugzilla.redhat.com/show_bug.cgi?id=2079097): Ensure only one apiserver-watcher process is active on a node. [#3121](https://github.com/openshift/machine-config-operator/pull/3121) * [Bug 2071696](https://bugzilla.redhat.com/show_bug.cgi?id=2071696): Add KUBELET_NODEIP_HINT to nodeip-configuration [#3058](https://github.com/openshift/machine-config-operator/pull/3058) * [Bug 2072621](https://bugzilla.redhat.com/show_bug.cgi?id=2072621): Fix bootstrap-unit test failure caused by #3008 [#3109](https://github.com/openshift/machine-config-operator/pull/3109) * [Bug 2076308](https://bugzilla.redhat.com/show_bug.cgi?id=2076308): Move removeUpdateInProgressTaint functionality to mcc [#3091](https://github.com/openshift/machine-config-operator/pull/3091) * [Bug 2072621](https://bugzilla.redhat.com/show_bug.cgi?id=2072621): [OCPNODE-869] Create a drop-in file for cri-o's seccomp use default config [#3008](https://github.com/openshift/machine-config-operator/pull/3008) * [Bug 2070492](https://bugzilla.redhat.com/show_bug.cgi?id=2070492): configure-ovs: move dhcp config from br-ex to ovs-if-br-ex [#3049](https://github.com/openshift/machine-config-operator/pull/3049) * [Bug 2062666](https://bugzilla.redhat.com/show_bug.cgi?id=2062666): configure-ovs: reload NM only when necessary [#3005](https://github.com/openshift/machine-config-operator/pull/3005) * [Bug 2062290](https://bugzilla.redhat.com/show_bug.cgi?id=2062290): Add --templates flag to MCC bootstrap command [#2997](https://github.com/openshift/machine-config-operator/pull/2997) * [Bug 2063326](https://bugzilla.redhat.com/show_bug.cgi?id=2063326): [release-4.10] Ensure directories are created with usable permission bits [#3012](https://github.com/openshift/machine-config-operator/pull/3012) * [Bug 2060954](https://bugzilla.redhat.com/show_bug.cgi?id=2060954): Explicitly set keyfile as the default plugin [#2985](https://github.com/openshift/machine-config-operator/pull/2985) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/14a1ca2cb91ff7e0faf9146b21ba12cd6c652d22...59a8d308bfa4cd89abdec9d345e396fe9dafd7b0) ### [machine-os-images](https://github.com/openshift/machine-os-images/tree/09a132b7c844082fe6945b327fd0243d5a729f7c) * [OCPBUGS-960](https://issues.redhat.com/browse/OCPBUGS-960): Update rhcos release browser url [#24](https://github.com/openshift/machine-os-images/pull/24) * [Bug 2090022](https://bugzilla.redhat.com/show_bug.cgi?id=2090022): Get rid of lookaside cache in OCP build [#17](https://github.com/openshift/machine-os-images/pull/17) * Revert .ci-operator.yaml [#18](https://github.com/openshift/machine-os-images/pull/18) * Updating ose-machine-os-images images to be consistent with ART [#9](https://github.com/openshift/machine-os-images/pull/9) * [Bug 2077305](https://bugzilla.redhat.com/show_bug.cgi?id=2077305): Remove destination coreos if it exists [#14](https://github.com/openshift/machine-os-images/pull/14) * [Full changelog](https://github.com/openshift/machine-os-images/compare/4d1e087ed00fddbab16a8cf8fe22d0cce4fef025...09a132b7c844082fe6945b327fd0243d5a729f7c) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/8557de96b849421acf495693b5e1375d6b4d88e9) * [OCPBUGS-343](https://issues.redhat.com/browse/OCPBUGS-343): Configure ignored namespaces into multus-admission-controller [#55](https://github.com/openshift/multus-admission-controller/pull/55) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/d7a7fe5df9f6303487475767acbb5228e8135af3...8557de96b849421acf495693b5e1375d6b4d88e9) ### [multus-cni](https://github.com/openshift/multus-cni/tree/09993f095b446e28932a3ba9c201ea38cab04d85) * [OCPBUGS-11590](https://issues.redhat.com/browse/OCPBUGS-11590): suppress uid mismatch error/warning in case of static pod [#150](https://github.com/openshift/multus-cni/pull/150) * [OCPBUGS-8672](https://issues.redhat.com/browse/OCPBUGS-8672): SNO: Pods fail to delete, Multus: failed to open netns [backport 4.10] [#147](https://github.com/openshift/multus-cni/pull/147) * [Bug 2071800](https://bugzilla.redhat.com/show_bug.cgi?id=2071800): Remove error handling for getPod to force to proceed cmdDel [backport 4.10] [#132](https://github.com/openshift/multus-cni/pull/132) * [OCPBUGS-2448](https://issues.redhat.com/browse/OCPBUGS-2448): Fix missing device-info in networks-status annotation for chained plugins [#137](https://github.com/openshift/multus-cni/pull/137) * [Bug 2084289](https://bugzilla.redhat.com/show_bug.cgi?id=2084289): Bumps net-attach-def client library (for CNI v1.0 IP compatibility) [backport 4.10] [#128](https://github.com/openshift/multus-cni/pull/128) * Updating multus-cni images to be consistent with ART [#110](https://github.com/openshift/multus-cni/pull/110) * [Full changelog](https://github.com/openshift/multus-cni/compare/d27ed81cf52f5f2c3837f536bdf0f487f7abc961...09993f095b446e28932a3ba9c201ea38cab04d85) ### [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy/tree/f545a32b3a90abe5fb96d7058153e8b63e16d63f) * Updating multus-networkpolicy images to be consistent with ART [#14](https://github.com/openshift/multus-networkpolicy/pull/14) * [Full changelog](https://github.com/openshift/multus-networkpolicy/compare/bfcc6c85b5ad1c47fc1d50ddec0acd108d270fe1...f545a32b3a90abe5fb96d7058153e8b63e16d63f) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/2381402a17778cc0853e30b554c9884a51a7ac06) * [OCPBUGS-13242](https://issues.redhat.com/browse/OCPBUGS-13242): Added trailing 0 to ipv6 ranges that end in ":" [Backport 4.10] [#133](https://github.com/openshift/whereabouts-cni/pull/133) * [OCPBUGS-3943](https://issues.redhat.com/browse/OCPBUGS-3943): Excluded ranges bug (#282) [#105](https://github.com/openshift/whereabouts-cni/pull/105) * [OCPBUGS-1659](https://issues.redhat.com/browse/OCPBUGS-1659): ip-reconciler: Add all non default interfaces to Pod IP list [#98](https://github.com/openshift/whereabouts-cni/pull/98) * [Bug 2065488](https://bugzilla.redhat.com/show_bug.cgi?id=2065488): Sync upstream for context improvements for reconciler [backport 4.10] [#88](https://github.com/openshift/whereabouts-cni/pull/88) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/47aa9387a5a4b302488887eca907fe974548fc3d...2381402a17778cc0853e30b554c9884a51a7ac06) ### [must-gather](https://github.com/openshift/must-gather/tree/db7f815b979352e130967695b4a08f4f2c886bfb) * [Bug 2106842](https://bugzilla.redhat.com/show_bug.cgi?id=2106842): Add timeout to oc cp command to fix must-gather delays when routers are terminating [#323](https://github.com/openshift/must-gather/pull/323) * [Bug 2059777](https://bugzilla.redhat.com/show_bug.cgi?id=2059777): Fix the namespace extract filter [#288](https://github.com/openshift/must-gather/pull/288) * [Bug 2106559](https://bugzilla.redhat.com/show_bug.cgi?id=2106559): fix gather_insights collection [#322](https://github.com/openshift/must-gather/pull/322) * [Bug 2084591](https://bugzilla.redhat.com/show_bug.cgi?id=2084591): Add networking resources [#307](https://github.com/openshift/must-gather/pull/307) * [Bug 2069554](https://bugzilla.redhat.com/show_bug.cgi?id=2069554): Collect NMState resources when operator is installed [#294](https://github.com/openshift/must-gather/pull/294) * [Full changelog](https://github.com/openshift/must-gather/compare/a42fad8768e171ee014d23d3cbdc5aa0e65f7dec...db7f815b979352e130967695b4a08f4f2c886bfb) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/6edc4a731f7db838f8693c918fe23fd971eb5689) * [Bug 2116642](https://bugzilla.redhat.com/show_bug.cgi?id=2116642): Backport "mac duplicates" [#42](https://github.com/openshift/bond-cni/pull/42) * [Bug 2101841](https://bugzilla.redhat.com/show_bug.cgi?id=2101841): Backport Fix incorrect bond name issue [#36](https://github.com/openshift/bond-cni/pull/36) * [Bug 2084289](https://bugzilla.redhat.com/show_bug.cgi?id=2084289): Backport IPAM fixes [4.10] [#34](https://github.com/openshift/bond-cni/pull/34) * [Full changelog](https://github.com/openshift/bond-cni/compare/84922601528bcd051fbc1e502627cbe93b781c6b...6edc4a731f7db838f8693c918fe23fd971eb5689) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/234c13885e0c00a3b3f4f1bf81a868c82508dd2d) * Updating ose-network-metrics-daemon images to be consistent with ART (#40) [#40](https://github.com/openshift/network-metrics-daemon/pull/40) * Fix field selector (#50) [#50](https://github.com/openshift/network-metrics-daemon/pull/50) * Added METRIC_TEST_IMAGE var (#47) [#47](https://github.com/openshift/network-metrics-daemon/pull/47) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/ab62184d9084039e0b580fb58d7ffaf41b176584...234c13885e0c00a3b3f4f1bf81a868c82508dd2d) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/cd4f5bb0d9792c582dc70bd186a3a1580abc5fc0) * [OCPBUGS-2553](https://issues.redhat.com/browse/OCPBUGS-2553): bump kube to 1.23.12 to fix group sync [#85](https://github.com/openshift/oauth-apiserver/pull/85) * [Bug 2094022](https://bugzilla.redhat.com/show_bug.cgi?id=2094022): Update 4.10 to 1.23 [#79](https://github.com/openshift/oauth-apiserver/pull/79) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/e854413452142e9c96f4764c0c048f805d5c0e57...cd4f5bb0d9792c582dc70bd186a3a1580abc5fc0) ### [oc-mirror](https://github.com/openshift/oc-mirror/tree/71ca0a1af2e4f37ada0c3e93a0902e610edb10d7) * [Bug 2075051](https://bugzilla.redhat.com/show_bug.cgi?id=2075051): [release-4.10] fix: adds handling for channel with different prefixes in cincinnati.go (#413) [#413](https://github.com/openshift/oc-mirror/pull/413) * build(deps): bump operator-registry dep to v1.21.1 (#390) [#390](https://github.com/openshift/oc-mirror/pull/390) * [Bug 2064901](https://bugzilla.redhat.com/show_bug.cgi?id=2064901): fix(associations): modifies association return values to allows image… (#359) [#359](https://github.com/openshift/oc-mirror/pull/359) * [Bug 2065500](https://bugzilla.redhat.com/show_bug.cgi?id=2065500): resolves multiple channel heads in merged catalogs (#372) [#372](https://github.com/openshift/oc-mirror/pull/372) * chore: adds dynamic version info for version command with ldflags (#328) (#334) [#328](https://github.com/openshift/oc-mirror/pull/328) * [Full changelog](https://github.com/openshift/oc-mirror/compare/0a2b069f4859606f9ac85e8d15761fdfb259cf55...71ca0a1af2e4f37ada0c3e93a0902e610edb10d7) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/7f883e65efdd40f63a543e5a687a820fa159180f) * [OCPBUGS-4341](https://issues.redhat.com/browse/OCPBUGS-4341): fix printer panic [#337](https://github.com/openshift/openshift-apiserver/pull/337) * [OCPBUGS-4604](https://issues.redhat.com/browse/OCPBUGS-4604): [release-4.10] bump to kube 1.23.12 [#323](https://github.com/openshift/openshift-apiserver/pull/323) * Add coreydaley as reviewer/approver for pkg/build [#298](https://github.com/openshift/openshift-apiserver/pull/298) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/6b16f7fa1a9561fd0c47f7cbd17ef6c4332485c7...7f883e65efdd40f63a543e5a687a820fa159180f) ### [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics/tree/e5c50aae141e4f72c6843a3964f167bec6e79475) * Updating openshift-state-metrics images to be consistent with ART [#80](https://github.com/openshift/openshift-state-metrics/pull/80) * [Bug 2052804](https://bugzilla.redhat.com/show_bug.cgi?id=2052804): adding new build comments required for go 1.17 [#83](https://github.com/openshift/openshift-state-metrics/pull/83) * [Full changelog](https://github.com/openshift/openshift-state-metrics/compare/2dcf523061502a5fff2b13829c74b3f266e1776c...e5c50aae141e4f72c6843a3964f167bec6e79475) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/12a5dee1b6cbfe7b122c2336b78705e9b0705fc8) * Bug OCPBUGS-4717: Add SecretHashAnnotation to node service [#104](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/104) * [Bug 2091649](https://bugzilla.redhat.com/show_bug.cgi?id=2091649): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#89](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/89) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/e0b571594762e0f724b1baa298d03b20a06588b4...12a5dee1b6cbfe7b122c2336b78705e9b0705fc8) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/963993b2017a498bf28fe72a89cf38878ab83a34) * [OCPBUGS-6596](https://issues.redhat.com/browse/OCPBUGS-6596): Address CVE-2022-41717 [#251](https://github.com/openshift/cluster-api-provider-openstack/pull/251) * [OCPBUGS-2628](https://issues.redhat.com/browse/OCPBUGS-2628): Ensure network defs without subnet follow noAllowedAddressPairs [#249](https://github.com/openshift/cluster-api-provider-openstack/pull/249) * [OCPBUGS-1951](https://issues.redhat.com/browse/OCPBUGS-1951): Apply noAllowedAddressPairs on intended subnets only [#245](https://github.com/openshift/cluster-api-provider-openstack/pull/245) * [Bug 1921656](https://bugzilla.redhat.com/show_bug.cgi?id=1921656): Remove dependence on annotation to allow Server deletion [#240](https://github.com/openshift/cluster-api-provider-openstack/pull/240) * [Bug 2077380](https://bugzilla.redhat.com/show_bug.cgi?id=2077380): Fix InstanceCreate port & trunk cleanup [#233](https://github.com/openshift/cluster-api-provider-openstack/pull/233) * [Bug 2071538](https://bugzilla.redhat.com/show_bug.cgi?id=2071538): Address CVE-2022-21698 [#226](https://github.com/openshift/cluster-api-provider-openstack/pull/226) * [Bug 2050064](https://bugzilla.redhat.com/show_bug.cgi?id=2050064): Ensure subnets belong to the queried network [#219](https://github.com/openshift/cluster-api-provider-openstack/pull/219) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/e6b35eb43631023a38b92460661130531236347c...963993b2017a498bf28fe72a89cf38878ab83a34) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/4ff2396bacb601f73beae867d42700a407cff2bf) * [OCPBUGS-17779](https://issues.redhat.com/browse/OCPBUGS-17779): fix dynamic conversion webhook [#546](https://github.com/openshift/operator-framework-olm/pull/546) * Introduce DOWNSTREAM_OWNERS file [#543](https://github.com/openshift/operator-framework-olm/pull/543) * [OCPBUGS-7904](https://issues.redhat.com/browse/OCPBUGS-7904): Cleanup conversion webhooks when an operator is uninstalled [#458](https://github.com/openshift/operator-framework-olm/pull/458) * Allow cpb to be statically compiled / exempt from FIPS compliance [#514](https://github.com/openshift/operator-framework-olm/pull/514) * [OCPBUGS-6498](https://issues.redhat.com/browse/OCPBUGS-6498): Order an operator CR's status.Component.Refs array (#2880) [#432](https://github.com/openshift/operator-framework-olm/pull/432) * [OCPBUGS-1525](https://issues.redhat.com/browse/OCPBUGS-1525): Package Server Manager should enforce expected csv values [#387](https://github.com/openshift/operator-framework-olm/pull/387) * [OCPBUGS-5294](https://issues.redhat.com/browse/OCPBUGS-5294): backport cert rotation fix [#428](https://github.com/openshift/operator-framework-olm/pull/428) * [OCPBUGS-4799](https://issues.redhat.com/browse/OCPBUGS-4799): Fix label key truncation for subscription annotations (#2731) [#421](https://github.com/openshift/operator-framework-olm/pull/421) * [OCPBUGS-4128](https://issues.redhat.com/browse/OCPBUGS-4128): concurrent write bug fix [#415](https://github.com/openshift/operator-framework-olm/pull/415) * [OCPBUGS-2898](https://issues.redhat.com/browse/OCPBUGS-2898): [release-4.10] fix(openshift): use env var instead of clusterversion status (#2817) [#389](https://github.com/openshift/operator-framework-olm/pull/389) * [OCPBUGS-1323](https://issues.redhat.com/browse/OCPBUGS-1323): Add autoscaling eviction annotation to catalog pods to enable proper draining of nodes [#392](https://github.com/openshift/operator-framework-olm/pull/392) * [OCPBUGS-1087](https://issues.redhat.com/browse/OCPBUGS-1087): Stop corrupting resolver cache. [#385](https://github.com/openshift/operator-framework-olm/pull/385) * [Bug 2115874](https://bugzilla.redhat.com/show_bug.cgi?id=2115874): fix(grpc): Add startupProbe to check for grpc health readiness (#2791) [#348](https://github.com/openshift/operator-framework-olm/pull/348) * [Bug 2118261](https://bugzilla.redhat.com/show_bug.cgi?id=2118261): Update containerd version [#357](https://github.com/openshift/operator-framework-olm/pull/357) * [Bug 2106838](https://bugzilla.redhat.com/show_bug.cgi?id=2106838): remove broken thread-safety (#2697) [#340](https://github.com/openshift/operator-framework-olm/pull/340) * [Bug 2101802](https://bugzilla.redhat.com/show_bug.cgi?id=2101802): opm bug fix [#327](https://github.com/openshift/operator-framework-olm/pull/327) * [Bug 2095329](https://bugzilla.redhat.com/show_bug.cgi?id=2095329): [release-4.10] Bump go to v1.17 (#922) [#310](https://github.com/openshift/operator-framework-olm/pull/310) * [Bug 2080609](https://bugzilla.redhat.com/show_bug.cgi?id=2080609): Fix GRPC CheckRegistryServer function (#2756) [#298](https://github.com/openshift/operator-framework-olm/pull/298) * [Bug 2071941](https://bugzilla.redhat.com/show_bug.cgi?id=2071941): Replace collect-profile jobs that haven't completed [#277](https://github.com/openshift/operator-framework-olm/pull/277) * [Bug 2070131](https://bugzilla.redhat.com/show_bug.cgi?id=2070131): Fix a bug in deletion of webhook service for replacement [#272](https://github.com/openshift/operator-framework-olm/pull/272) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/5863540f44addf07e564b2e7c833c8a5f85841e7...4ff2396bacb601f73beae867d42700a407cff2bf) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/9773aef8782056fa23e6af597195daf4a256f585) * [OCPBUGS-761](https://issues.redhat.com/browse/OCPBUGS-761): CSI provisioned disks are preallocated [#117](https://github.com/openshift/ovirt-csi-driver/pull/117) * [OCPBUGS-620](https://issues.redhat.com/browse/OCPBUGS-620): Upgrade go-ovirt-client to 1.0.0 [#116](https://github.com/openshift/ovirt-csi-driver/pull/116) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/633cbb6d16878d1e32e4a3f006315e670a4d9e22...9773aef8782056fa23e6af597195daf4a256f585) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/573ac4789b95f3ff5f9806e7023faca7b610566b) * [Bug 2050118](https://bugzilla.redhat.com/show_bug.cgi?id=2050118): Add custom CA bundle support [#84](https://github.com/openshift/ovirt-csi-driver-operator/pull/84) * [Bug 2070525](https://bugzilla.redhat.com/show_bug.cgi?id=2070525): Recreate oVirt connection for every sync [#94](https://github.com/openshift/ovirt-csi-driver-operator/pull/94) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/d329b0229bba1d59b4c0dde229734a3fdae1e780...573ac4789b95f3ff5f9806e7023faca7b610566b) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/51baafc3fb8e3803b63077994c89b616383367f6) * [OCPBUGS-17165](https://issues.redhat.com/browse/OCPBUGS-17165): ovnkube-master pod failed to reconnect to ovn db due to ssl expire [#1794](https://github.com/openshift/ovn-kubernetes/pull/1794) * [OCPBUGS-16206](https://issues.redhat.com/browse/OCPBUGS-16206): Fix stale SNAT entries for completed pods [#1758](https://github.com/openshift/ovn-kubernetes/pull/1758) * Bug OCPBUGS-12792: [release-4.10] Delete equivalent ACLs when searching by predicate. [#1670](https://github.com/openshift/ovn-kubernetes/pull/1670) * [OCPBUGS-11453](https://issues.redhat.com/browse/OCPBUGS-11453): [release-4.10] Batch potentially big transaction on egress firewall ACLs migration [#1641](https://github.com/openshift/ovn-kubernetes/pull/1641) * [OCPBUGS-11557](https://issues.redhat.com/browse/OCPBUGS-11557): Fix leak in service controller cache [#1634](https://github.com/openshift/ovn-kubernetes/pull/1634) * [OCPBUGS-11423](https://issues.redhat.com/browse/OCPBUGS-11423): [release-4.10] Handle Completed pods deletion [#1628](https://github.com/openshift/ovn-kubernetes/pull/1628) * [OCPBUGS-4762](https://issues.redhat.com/browse/OCPBUGS-4762): [4.10] Dockerfile: bump to OVS 2.17.0-62 [#1440](https://github.com/openshift/ovn-kubernetes/pull/1440) * Updating ose-ovn-kubernetes images to be consistent with ART [#1615](https://github.com/openshift/ovn-kubernetes/pull/1615) * [OCPBUGS-8513](https://issues.redhat.com/browse/OCPBUGS-8513): Don't recreate clusterPGs and clusterRtrPGs unless needed [#1562](https://github.com/openshift/ovn-kubernetes/pull/1562) * [OCPBUGS-7021](https://issues.redhat.com/browse/OCPBUGS-7021), [OCPBUGS-7990](https://issues.redhat.com/browse/OCPBUGS-7990): Delete stale egress ip snat entries by node [#1542](https://github.com/openshift/ovn-kubernetes/pull/1542) * [OCPBUGS-6641](https://issues.redhat.com/browse/OCPBUGS-6641): Drop in-cluster traffic towards svcCIDR at wrong port [#1492](https://github.com/openshift/ovn-kubernetes/pull/1492) * [OCPBUGS-3656](https://issues.redhat.com/browse/OCPBUGS-3656): Fixes dualstack clusterIPs for network policy svc handler [#1378](https://github.com/openshift/ovn-kubernetes/pull/1378) * [OCPBUGS-7012](https://issues.redhat.com/browse/OCPBUGS-7012): [release-4.10] Fix Egress FW ACL rules in dualstack mode [#1508](https://github.com/openshift/ovn-kubernetes/pull/1508) * [OCPBUGS-2013](https://issues.redhat.com/browse/OCPBUGS-2013): Validate node subnet annotations against cluster networks [#1332](https://github.com/openshift/ovn-kubernetes/pull/1332) * [Bug 2092895](https://bugzilla.redhat.com/show_bug.cgi?id=2092895): update all egress ACLs' direction to "from-lport" [#1148](https://github.com/openshift/ovn-kubernetes/pull/1148) * [OCPBUGS-6814](https://issues.redhat.com/browse/OCPBUGS-6814): [release-4.10] Ensure loadbalancer cleanup doesn't fail [#1499](https://github.com/openshift/ovn-kubernetes/pull/1499) * [OCPBUGS-4882](https://issues.redhat.com/browse/OCPBUGS-4882): append instead of overwrite logicalSwitch other-config [#1450](https://github.com/openshift/ovn-kubernetes/pull/1450) * [OCPBUGS-3615](https://issues.redhat.com/browse/OCPBUGS-3615): [4.10] CARRY: client: don't construct transaction log string when it's not needed [#1375](https://github.com/openshift/ovn-kubernetes/pull/1375) * [OCPBUGS-5929](https://issues.redhat.com/browse/OCPBUGS-5929): [release-4.10] Fix egress firewall to allow inbound connections in both gw modes [#1482](https://github.com/openshift/ovn-kubernetes/pull/1482) * [OCPBUGS-5990](https://issues.redhat.com/browse/OCPBUGS-5990): egressip: fix test data race accessing podAssignment cache [#1480](https://github.com/openshift/ovn-kubernetes/pull/1480) * [OCPBUGS-5077](https://issues.redhat.com/browse/OCPBUGS-5077): [release-4.10] Fix load balancer health check locking and update [#1463](https://github.com/openshift/ovn-kubernetes/pull/1463) * [OCPBUGS-5299](https://issues.redhat.com/browse/OCPBUGS-5299): Set the node as reachable only when it is being added as an egressip node [#1464](https://github.com/openshift/ovn-kubernetes/pull/1464) * [OCPBUGS-5040](https://issues.redhat.com/browse/OCPBUGS-5040): [release-4.10] Fix hybrid overlay unit tests [#1462](https://github.com/openshift/ovn-kubernetes/pull/1462) * [OCPBUGS-4864](https://issues.redhat.com/browse/OCPBUGS-4864): [release-4.10] Fix address set cleanup: only delete address sets owned by given object [#1453](https://github.com/openshift/ovn-kubernetes/pull/1453) * [OCPBUGS-4888](https://issues.redhat.com/browse/OCPBUGS-4888): [release-4.10] Fixes scenario where deleted + completed pods may leak [#1458](https://github.com/openshift/ovn-kubernetes/pull/1458) * [OCPBUGS-4839](https://issues.redhat.com/browse/OCPBUGS-4839), [OCPBUGS-4861](https://issues.redhat.com/browse/OCPBUGS-4861): [release-4.10] Avoid duplicate transactions and minimize handlers with empty namespace selectors [#1452](https://github.com/openshift/ovn-kubernetes/pull/1452) * [Bug 2115872](https://bugzilla.redhat.com/show_bug.cgi?id=2115872): Fix unit-test failures in 4.10 [#1457](https://github.com/openshift/ovn-kubernetes/pull/1457) * [OCPBUGS-1568](https://issues.redhat.com/browse/OCPBUGS-1568): pods: deleteLogicalPort should not fail when node is gone [#1423](https://github.com/openshift/ovn-kubernetes/pull/1423) * [OCPBUGS-3778](https://issues.redhat.com/browse/OCPBUGS-3778): [release-4.10] Netpol races partial fixes [#1434](https://github.com/openshift/ovn-kubernetes/pull/1434) * [OCPBUGS-4598](https://issues.redhat.com/browse/OCPBUGS-4598): Bumps libovsdb to pick up fixes for optional values [#1426](https://github.com/openshift/ovn-kubernetes/pull/1426) * [OCPBUGS-3858](https://issues.redhat.com/browse/OCPBUGS-3858): Adjust ovs bundle timeout [#1385](https://github.com/openshift/ovn-kubernetes/pull/1385) * [OCPBUGS-1568](https://issues.redhat.com/browse/OCPBUGS-1568): pods: deleteLogicalPort should not fail when ls is gone [#1293](https://github.com/openshift/ovn-kubernetes/pull/1293) * [Bug 2099843](https://bugzilla.redhat.com/show_bug.cgi?id=2099843): Add final db check to egress IP test [#1357](https://github.com/openshift/ovn-kubernetes/pull/1357) * [Bug 2105657](https://bugzilla.redhat.com/show_bug.cgi?id=2105657): Fix egressIP object deletion if the node is deleted first [#1228](https://github.com/openshift/ovn-kubernetes/pull/1228) * [OCPBUGS-2660](https://issues.redhat.com/browse/OCPBUGS-2660): Add logging verbosity to configuring OVN logs [#1326](https://github.com/openshift/ovn-kubernetes/pull/1326) * [OCPBUGS-1454](https://issues.redhat.com/browse/OCPBUGS-1454): Fix NP upgrade bug: unexpectedly found multiple equivalent ACLs (arp v/s arp||nd) [#1269](https://github.com/openshift/ovn-kubernetes/pull/1269) * [OCPBUGS-2746](https://issues.redhat.com/browse/OCPBUGS-2746): Fixes SNAT-ing Logic for EgressIPs [#1336](https://github.com/openshift/ovn-kubernetes/pull/1336) * [OCPBUGS-2208](https://issues.redhat.com/browse/OCPBUGS-2208): getDefaultGatewayInterfaceByFamily: custom filter for MultiHop [#1303](https://github.com/openshift/ovn-kubernetes/pull/1303) * [OCPBUGS-2464](https://issues.redhat.com/browse/OCPBUGS-2464): Fix the golang image used for unit-tests [#1299](https://github.com/openshift/ovn-kubernetes/pull/1299) * [OCPBUGS-1024](https://issues.redhat.com/browse/OCPBUGS-1024): Dockerfile: bump to 2.16.0-89.3.el8fdp [#1271](https://github.com/openshift/ovn-kubernetes/pull/1271) * [Bug 2111552](https://bugzilla.redhat.com/show_bug.cgi?id=2111552): Remove conntrack entries after rules [#1219](https://github.com/openshift/ovn-kubernetes/pull/1219) * [OCPBUGS-660](https://issues.redhat.com/browse/OCPBUGS-660): [release-4.10] pods: deleteLogicalPort should not fail when port is already gone [#1257](https://github.com/openshift/ovn-kubernetes/pull/1257) * [Bug 2113861](https://bugzilla.redhat.com/show_bug.cgi?id=2113861): reconcile-node-lbs [#1227](https://github.com/openshift/ovn-kubernetes/pull/1227) * [OCPBUGS-174](https://issues.redhat.com/browse/OCPBUGS-174): [release-4.10] Fix race when adding and removing pod with same name [#1250](https://github.com/openshift/ovn-kubernetes/pull/1250) * [Bug 2070392](https://bugzilla.redhat.com/show_bug.cgi?id=2070392): Fix egress IP reassignment on cloud [#1203](https://github.com/openshift/ovn-kubernetes/pull/1203) * [Bug 2111588](https://bugzilla.redhat.com/show_bug.cgi?id=2111588): [release-4.10] export OVS metrics [#1215](https://github.com/openshift/ovn-kubernetes/pull/1215) * [Bug 2109442](https://bugzilla.redhat.com/show_bug.cgi?id=2109442): Fix GetPodsBySelector/GetNamespacesBySelector so MatchExpressions is respected [#1195](https://github.com/openshift/ovn-kubernetes/pull/1195) * [Bug 2104454](https://bugzilla.redhat.com/show_bug.cgi?id=2104454): improve performance of service sync [#1173](https://github.com/openshift/ovn-kubernetes/pull/1173) * [Bug 2105653](https://bugzilla.redhat.com/show_bug.cgi?id=2105653): egressIP: node retrieval failure is not respected, causes panic [#1185](https://github.com/openshift/ovn-kubernetes/pull/1185) * [Bug 2105275](https://bugzilla.redhat.com/show_bug.cgi?id=2105275): Fix egressips for pods recreated with same name [#1179](https://github.com/openshift/ovn-kubernetes/pull/1179) * [Bug 2107903](https://bugzilla.redhat.com/show_bug.cgi?id=2107903): Append the SNAT rule in management chain [#1201](https://github.com/openshift/ovn-kubernetes/pull/1201) * [Bug 2105265](https://bugzilla.redhat.com/show_bug.cgi?id=2105265): EGW: Clean Stale Conntrack Entries [#1191](https://github.com/openshift/ovn-kubernetes/pull/1191) * [Bug 2099680](https://bugzilla.redhat.com/show_bug.cgi?id=2099680): [release-4.10] libovsdb fixes for empty values [#1164](https://github.com/openshift/ovn-kubernetes/pull/1164) * [Bug 2105276](https://bugzilla.redhat.com/show_bug.cgi?id=2105276): Fix panics in DestroyNetworkPolicy if policy is nil [#1182](https://github.com/openshift/ovn-kubernetes/pull/1182) * [Bug 2099206](https://bugzilla.redhat.com/show_bug.cgi?id=2099206): Update logging for specific policy when creating it [#1149](https://github.com/openshift/ovn-kubernetes/pull/1149) * [Bug 2099822](https://bugzilla.redhat.com/show_bug.cgi?id=2099822): Fix pointer loop var [#1153](https://github.com/openshift/ovn-kubernetes/pull/1153) * [Bug 2091157](https://bugzilla.redhat.com/show_bug.cgi?id=2091157): [release-4.10] Free IPs and delete resources for completed pods [#1152](https://github.com/openshift/ovn-kubernetes/pull/1152) * [Bug 2092501](https://bugzilla.redhat.com/show_bug.cgi?id=2092501): Fixes finding default gateway for configured GW interface [#1131](https://github.com/openshift/ovn-kubernetes/pull/1131) * [Bug 2095193](https://bugzilla.redhat.com/show_bug.cgi?id=2095193): duplicated IPs can be assigned to multiple Pods [#1132](https://github.com/openshift/ovn-kubernetes/pull/1132) * [Bug 2088582](https://bugzilla.redhat.com/show_bug.cgi?id=2088582): Bumps OVN to 21.12.0-58.el8fdp [#1101](https://github.com/openshift/ovn-kubernetes/pull/1101) * [Bug 2086891](https://bugzilla.redhat.com/show_bug.cgi?id=2086891): policy: Fix multicast allow policy type. [#1093](https://github.com/openshift/ovn-kubernetes/pull/1093) * [Bug 2088040](https://bugzilla.redhat.com/show_bug.cgi?id=2088040): Delete ChassisPrivate along with Chassis [#1099](https://github.com/openshift/ovn-kubernetes/pull/1099) * [Bug 2077129](https://bugzilla.redhat.com/show_bug.cgi?id=2077129): [release-4.10] Fixes secondary bridge [#1044](https://github.com/openshift/ovn-kubernetes/pull/1044) * [Bug 2088627](https://bugzilla.redhat.com/show_bug.cgi?id=2088627): EgressIP NATs are not being cleared correctly from the logical router [#1098](https://github.com/openshift/ovn-kubernetes/pull/1098) * [Bug 2087203](https://bugzilla.redhat.com/show_bug.cgi?id=2087203): enable `exportloopref` linter and fix violations [#1095](https://github.com/openshift/ovn-kubernetes/pull/1095) * [Bug 2082467](https://bugzilla.redhat.com/show_bug.cgi?id=2082467): Fix cluster/status parsing for single-member db cluster (SNO) [#1082](https://github.com/openshift/ovn-kubernetes/pull/1082) * [Bug 2083116](https://bugzilla.redhat.com/show_bug.cgi?id=2083116): delete SNAT2NIP if pod.node == egressNodeServingPod [#1084](https://github.com/openshift/ovn-kubernetes/pull/1084) * [Bug 2080069](https://bugzilla.redhat.com/show_bug.cgi?id=2080069): Cleanup conntrack entries when services are deleted [#1061](https://github.com/openshift/ovn-kubernetes/pull/1061) * [Bug 2080895](https://bugzilla.redhat.com/show_bug.cgi?id=2080895): Ensure stale information is not present in metrics with labels when they change [#1070](https://github.com/openshift/ovn-kubernetes/pull/1070) * [Bug 2080882](https://bugzilla.redhat.com/show_bug.cgi?id=2080882): Fix incorrectly logged error when searching for ovnkube master pod [#1069](https://github.com/openshift/ovn-kubernetes/pull/1069) * [Bug 2080925](https://bugzilla.redhat.com/show_bug.cgi?id=2080925): Don't spawn go routines for adding metric events [#1071](https://github.com/openshift/ovn-kubernetes/pull/1071) * [Bug 2079546](https://bugzilla.redhat.com/show_bug.cgi?id=2079546): [release-4.10] call clearInitialNodeNetworkUnavailableCondition for noHostSubnet nodes [#1057](https://github.com/openshift/ovn-kubernetes/pull/1057) * [Bug 2065780](https://bugzilla.redhat.com/show_bug.cgi?id=2065780): [release-4.10][backport] Fix cleaning VF representor ports [#1001](https://github.com/openshift/ovn-kubernetes/pull/1001) * [Bug 2073411](https://bugzilla.redhat.com/show_bug.cgi?id=2073411): Fix ETP=local for host->svc traffic [#1063](https://github.com/openshift/ovn-kubernetes/pull/1063) * [Bug 2073137](https://bugzilla.redhat.com/show_bug.cgi?id=2073137): Fix lgw flows for ingress-svc traffic [#1026](https://github.com/openshift/ovn-kubernetes/pull/1026) * [Bug 2074839](https://bugzilla.redhat.com/show_bug.cgi?id=2074839): [release-4.10] fix ipv6 network policy [#1043](https://github.com/openshift/ovn-kubernetes/pull/1043) * [Bug 2052017](https://bugzilla.redhat.com/show_bug.cgi?id=2052017): Retry Pod Deletions on Failure [#1025](https://github.com/openshift/ovn-kubernetes/pull/1025) * [Bug 2059354](https://bugzilla.redhat.com/show_bug.cgi?id=2059354): [4.10z] After reboot egress node, lr-policy-list was not correct [#994](https://github.com/openshift/ovn-kubernetes/pull/994) * [Bug 2061804](https://bugzilla.redhat.com/show_bug.cgi?id=2061804): [4.10] Fixes "ErrorAddingLogicalPort: duplicate IP found in ECMP Pod route cache!" for same pod [#990](https://github.com/openshift/ovn-kubernetes/pull/990) * [Bug 2063834](https://bugzilla.redhat.com/show_bug.cgi?id=2063834): backport 2052975 to 4.10 [#995](https://github.com/openshift/ovn-kubernetes/pull/995) * [Bug 2057723](https://bugzilla.redhat.com/show_bug.cgi?id=2057723): Multiple fixes around Network Policies [#971](https://github.com/openshift/ovn-kubernetes/pull/971) * Update project owners [#983](https://github.com/openshift/ovn-kubernetes/pull/983) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/bb5b9dbdb65cbd62ce984bc1617fe5730c51b719...51baafc3fb8e3803b63077994c89b616383367f6) ### [prometheus](https://github.com/openshift/prometheus/tree/b91d7c75372b3ae707ce287e56df3fc7db935bac) * [OCPBUGS-3078](https://issues.redhat.com/browse/OCPBUGS-3078): Backkport OCPBUGS-1718 to release 4.10 [#146](https://github.com/openshift/prometheus/pull/146) * [Full changelog](https://github.com/openshift/prometheus/compare/3c6cd55e3a5e5332e810274ad27fddf662d4f506...b91d7c75372b3ae707ce287e56df3fc7db935bac) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/e916c2d8a19309cc86558d70515639d450c66af0) * [OCPBUGS-7795](https://issues.redhat.com/browse/OCPBUGS-7795): Fixes ThanoRuler StatefulSet re-creation bug [#219](https://github.com/openshift/prometheus-operator/pull/219) * [Bug 2108976](https://bugzilla.redhat.com/show_bug.cgi?id=2108976): pkg/prometheus: fix curl exec probe [#196](https://github.com/openshift/prometheus-operator/pull/196) * [Bug 2060718](https://bugzilla.redhat.com/show_bug.cgi?id=2060718): Add relabel validations [#161](https://github.com/openshift/prometheus-operator/pull/161) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/53d6d76f3f90adb5a46be6f2347a968e5885c586...e916c2d8a19309cc86558d70515639d450c66af0) ### [telemeter](https://github.com/openshift/telemeter/tree/3b5eb87fd042feafba13502ddf724951942dc8df) * [OCPBUGS-6575](https://issues.redhat.com/browse/OCPBUGS-6575): update prometheus/client_golang version [#446](https://github.com/openshift/telemeter/pull/446) * [Full changelog](https://github.com/openshift/telemeter/compare/2c9c76e62783073dfd31a3780b3cdea5acdd481b...3b5eb87fd042feafba13502ddf724951942dc8df) ### [tests](https://github.com/openshift/origin/tree/09fc485e8f45a31245b9b576f35d5e16a4895945) * [OCPBUGS-15178](https://issues.redhat.com/browse/OCPBUGS-15178): Move from registry.centos.org to quay.io [#27988](https://github.com/openshift/origin/pull/27988) * [CCO-367](https://issues.redhat.com/browse/CCO-367): Allow CCO to be Upgradeable=False when credentialsMode=Manual [#27962](https://github.com/openshift/origin/pull/27962) * [OCPBUGS-11874](https://issues.redhat.com/browse/OCPBUGS-11874): Add Kuryr exception to "pods should successfully create sandboxes" test [#27878](https://github.com/openshift/origin/pull/27878) * [OCPBUGS-11560](https://issues.redhat.com/browse/OCPBUGS-11560), [OCPBUGS-11629](https://issues.redhat.com/browse/OCPBUGS-11629): flake Pods Extended Pod Container lifecycle evicted pods [#27872](https://github.com/openshift/origin/pull/27872) * [OCPBUGS-10244](https://issues.redhat.com/browse/OCPBUGS-10244): Bump(openshift/kubernetes): to get fix for resizing flake [#27800](https://github.com/openshift/origin/pull/27800) * [OCPBUGS-4578](https://issues.redhat.com/browse/OCPBUGS-4578): Bond test 4.10 backport [#27593](https://github.com/openshift/origin/pull/27593) * [OCPBUGS-2614](https://issues.redhat.com/browse/OCPBUGS-2614): Fix s2i ruby test that relys on rack [#27479](https://github.com/openshift/origin/pull/27479) * disruption checking is disabled for prior releases because we lack a good baseline [#27472](https://github.com/openshift/origin/pull/27472) * [OCPBUGS-1454](https://issues.redhat.com/browse/OCPBUGS-1454): Fixes OVN ACL audit log parsing [#27429](https://github.com/openshift/origin/pull/27429) * [Bug 2117301](https://bugzilla.redhat.com/show_bug.cgi?id=2117301): Skip ErrImagePull for expected failures [#27352](https://github.com/openshift/origin/pull/27352) * [Bug 2115862](https://bugzilla.redhat.com/show_bug.cgi?id=2115862): Skip internet connection test if we use a proxy [#27344](https://github.com/openshift/origin/pull/27344) * [Bug 2065028](https://bugzilla.redhat.com/show_bug.cgi?id=2065028): rearrange test cases [#26915](https://github.com/openshift/origin/pull/26915) * [OCPBUGS-374](https://issues.redhat.com/browse/OCPBUGS-374): test: allow -f to match tests for any test suite [#27366](https://github.com/openshift/origin/pull/27366) * [Bug 2080198](https://bugzilla.redhat.com/show_bug.cgi?id=2080198): skip tests for etcd leaders when etcd revisions change a lot [#27076](https://github.com/openshift/origin/pull/27076) * [Bug 2080759](https://bugzilla.redhat.com/show_bug.cgi?id=2080759): Remove BlueOcean annotation check [#27065](https://github.com/openshift/origin/pull/27065) * [Bug 2077995](https://bugzilla.redhat.com/show_bug.cgi?id=2077995): Best matcher single node OVN [#27048](https://github.com/openshift/origin/pull/27048) * [Bug 2059845](https://bugzilla.redhat.com/show_bug.cgi?id=2059845): [test]: bump upper bounds for AWS single node and GCP [#27055](https://github.com/openshift/origin/pull/27055) * [Bug 2077414](https://bugzilla.redhat.com/show_bug.cgi?id=2077414): MGMT-9440: Fix single node serial tests API crash [#27037](https://github.com/openshift/origin/pull/27037) * [Bug 2074714](https://bugzilla.redhat.com/show_bug.cgi?id=2074714): synthetictests: skip "alert/Watchdog must have no gaps or changes" on SNO upgrades [#27011](https://github.com/openshift/origin/pull/27011) * [Bug 2074448](https://bugzilla.redhat.com/show_bug.cgi?id=2074448): exclude loki-promtail from duplicated events [#27010](https://github.com/openshift/origin/pull/27010) * [Bug 2077516](https://bugzilla.redhat.com/show_bug.cgi?id=2077516): don't fail when a query returns warnings [#27039](https://github.com/openshift/origin/pull/27039) * [Bug 2059845](https://bugzilla.redhat.com/show_bug.cgi?id=2059845): operators should not create watch channels very often: bump OpenStack monitoring operator [#26879](https://github.com/openshift/origin/pull/26879) * [Bug 2076265](https://bugzilla.redhat.com/show_bug.cgi?id=2076265): [release-4.10] test: switch to testing CapBnd over CapInh [#27021](https://github.com/openshift/origin/pull/27021) * [Bug 2060592](https://bugzilla.redhat.com/show_bug.cgi?id=2060592): only add failure when no event was found for the target revision [#26881](https://github.com/openshift/origin/pull/26881) * [Bug 2055381](https://bugzilla.redhat.com/show_bug.cgi?id=2055381): cleanup network policy ACL extended test [#26946](https://github.com/openshift/origin/pull/26946) * [Bug 2059717](https://bugzilla.redhat.com/show_bug.cgi?id=2059717): IBMCloud: Ignore CRB already exists [#26869](https://github.com/openshift/origin/pull/26869) * [Bug 2061554](https://bugzilla.redhat.com/show_bug.cgi?id=2061554): Add debug info for signature test [#26889](https://github.com/openshift/origin/pull/26889) * [Bug 2060862](https://bugzilla.redhat.com/show_bug.cgi?id=2060862): [release-4.10] Increase cluster-monitor-operator watch count threshold on single-node clusters [#26872](https://github.com/openshift/origin/pull/26872) * [Bug 2059454](https://bugzilla.redhat.com/show_bug.cgi?id=2059454): images/tests: yum update python3-six to workaround ART issue [#26866](https://github.com/openshift/origin/pull/26866) * [Bug 2058688](https://bugzilla.redhat.com/show_bug.cgi?id=2058688): Alibaba: enable init for alibabacloud provider [#26821](https://github.com/openshift/origin/pull/26821) * [Full changelog](https://github.com/openshift/origin/compare/c1d90688b63638110134e736334da1f29e51b2df...09fc485e8f45a31245b9b576f35d5e16a4895945) ### [thanos](https://github.com/openshift/thanos/tree/ac17631943be205d4ea38ccfc8ef49db999b4e47) * [OCPBUGS-2037](https://issues.redhat.com/browse/OCPBUGS-2037): Bump 4.10 to 0.23.2 [#92](https://github.com/openshift/thanos/pull/92) * [Full changelog](https://github.com/openshift/thanos/compare/10ca1d38d107c9f12dd2c85a4455626ca0f2e29b...ac17631943be205d4ea38ccfc8ef49db999b4e47) ### [vsphere-cloud-controller-manager](https://github.com/openshift/cloud-provider-vsphere/tree/f2bc9eb32e2f367af2b498a79e32c1dbb006eefd) * [Bug 2106666](https://bugzilla.redhat.com/show_bug.cgi?id=2106666): Return error when VM's info returned from VC doesn't contain IP address [#29](https://github.com/openshift/cloud-provider-vsphere/pull/29) * [OCPBUGS-2065](https://issues.redhat.com/browse/OCPBUGS-2065): fix .dockerignore to satisfy OCP specific requirements [#27](https://github.com/openshift/cloud-provider-vsphere/pull/27) * [Full changelog](https://github.com/openshift/cloud-provider-vsphere/compare/25b98d3b2fa812ef3b28ddcd90454c1b937898a9...f2bc9eb32e2f367af2b498a79e32c1dbb006eefd) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/f5d7362c88eb7d05bdfd0f70c2d53df7275d4ae2) * [OCPBUGS-5895](https://issues.redhat.com/browse/OCPBUGS-5895): Fix vendored ini package [#137](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/137) * [OCPBUGS-5895](https://issues.redhat.com/browse/OCPBUGS-5895): Backport multi dc support 410 [#133](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/133) * [OCPBUGS-5507](https://issues.redhat.com/browse/OCPBUGS-5507): Fix sc creation if it is deleted [#128](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/128) * [OCPBUGS-3288](https://issues.redhat.com/browse/OCPBUGS-3288): set TLS cipher suites in Kube RBAC sidecars [#120](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/120) * [OCPBUGS-2282](https://issues.redhat.com/browse/OCPBUGS-2282): Add HTTP proxy to syncer container [#114](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/114) * [OCPBUGS-376](https://issues.redhat.com/browse/OCPBUGS-376): storageclass should not be created for unsupported vsphere version [#105](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/105) * [Bug 2108003](https://bugzilla.redhat.com/show_bug.cgi?id=2108003): 4.10: Don't block upgrades when another CSI driver is found [#99](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/99) * [Bug 2095824](https://bugzilla.redhat.com/show_bug.cgi?id=2095824): Report max. nr. of attachable volumes per node [#91](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/91) * [Bug 2060213](https://bugzilla.redhat.com/show_bug.cgi?id=2060213): Fix node check result cache between checks [#78](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/78) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/edf114e9077df2350c833dd713a8b08ee154b00c...f5d7362c88eb7d05bdfd0f70c2d53df7275d4ae2) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/a11df08a341b9084fd92c95e5b53368d1ea9aaa5) * [Bug 2055895](https://bugzilla.redhat.com/show_bug.cgi?id=2055895): change NodePerfCheck criteria to be based on average latency [#76](https://github.com/openshift/vsphere-problem-detector/pull/76) * [Bug 2059255](https://bugzilla.redhat.com/show_bug.cgi?id=2059255): Fix stale metrics by resetting them [#80](https://github.com/openshift/vsphere-problem-detector/pull/80) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/f756bf810a0dedde2d6634887146a5f0fda9731a...a11df08a341b9084fd92c95e5b53368d1ea9aaa5)