# 4.12.0-0.nightly-2024-11-04-051708 Created: 2024-11-04 05:18:45 +0000 UTC Image Digest: `sha256:5d37f49544b3818341aba34df6b1b176919b756c4792efa8fccd1d3bb3cd8f1d` ## Changes from 4.11.59 ### Components * Kubernetes upgraded from 1.24.16 to 1.25.16 * Red Hat Enterprise Linux CoreOS upgraded from 411.86.202403120448-0 to 412.86.202411040143-0 ### New images * [cluster-control-plane-machine-set-operator](https://github.com/openshift/cluster-control-plane-machine-set-operator) git [8df44eae](https://github.com/openshift/cluster-control-plane-machine-set-operator/commit/8df44eaee8f4a31754d77f3f3a18ff59878efc72) `sha256:7b30edd793adac4e05a002f35960666537eda9ec1c169ebd9229ebe1dbcc8249` * [cluster-platform-operators-manager](https://github.com/openshift/platform-operators) git [c930dc74](https://github.com/openshift/platform-operators/commit/c930dc745f23ee5bde8b48d13557976186c21c7c) `sha256:e8d1e12d12f635943d13618f84147e039e4baf6186c9a45a33f28f1668288750` * [ibmcloud-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-ibmcloud) git [0fe74f67](https://github.com/openshift/cluster-api-provider-ibmcloud/commit/0fe74f674bf5a1e464a5e2f872def13e1a9bb2a9) `sha256:c70ac933ac92a34616008c090ae40c3059edb937c7d7c0b64a08439798c5fa2b` * [kubevirt-cloud-controller-manager](https://github.com/openshift/cloud-provider-kubevirt) git [a19615cd](https://github.com/openshift/cloud-provider-kubevirt/commit/a19615cda3daf69008253d75cc848ac0ad397179) `sha256:493ade6bf4c6159b80730ae5ad86c6f3e3fd02f4cba282978923b9e50e651783` * [kubevirt-csi-driver](https://github.com/openshift/kubevirt-csi-driver) git [f407c8a7](https://github.com/openshift/kubevirt-csi-driver/commit/f407c8a71c831a8f7911bf0b4a99bb6b16e0e0b6) `sha256:ba0a38ac771951e317a94c306ae5377a2e432f13413f46aabfea6dbfaa26d5b6` * [olm-rukpak](https://github.com/openshift/operator-framework-rukpak) git [bb06dd01](https://github.com/openshift/operator-framework-rukpak/commit/bb06dd0133acc2d10fa5425d90557edc068f48a7) `sha256:7d54dfa0bfab6bc0adabfdafe27aa81af434e7e16d91a7120b7c76bb7d6d0bb1` * [ovn-kubernetes-microshift](https://github.com/openshift/ovn-kubernetes) git [2996be21](https://github.com/openshift/ovn-kubernetes/commit/2996be215b6dc887d9c439ad4256e47568eb7a0e) `sha256:2ba7563f221ea8278e3eff1879caae7f6a204331aea1e66523136f94b8669626` * [powervs-block-csi-driver](https://github.com/openshift/ibm-powervs-block-csi-driver) git [b78e8e78](https://github.com/openshift/ibm-powervs-block-csi-driver/commit/b78e8e7871bd50ff77a68fdae320775a17856373) `sha256:c22b2a739948d37876b48a7fdde3690225aa6633665081d8254ee2d7b764c450` * [powervs-block-csi-driver-operator](https://github.com/openshift/ibm-powervs-block-csi-driver-operator) git [7dadc08a](https://github.com/openshift/ibm-powervs-block-csi-driver-operator/commit/7dadc08acb9f515735c6c3fdb417424d0c668d44) `sha256:793bc92c978a6f16a1dfea5153d46fe6970c6121e6b36e4fc9d10dd2d7cc55f6` * rhel-coreos-8 `sha256:94cfeaea4efec05199dd242a2819b2ae6e9779f661549e1c896963dadcce26c0` * rhel-coreos-8-extensions `sha256:d2625fb50ee3b531002dcbe51d01001189196440563b4cf90e702579f8098ccf` * [route-controller-manager](https://github.com/openshift/route-controller-manager) git [0f141ce9](https://github.com/openshift/route-controller-manager/commit/0f141ce9d349fb30755e3d0d7f9f196a91782957) `sha256:b2f3b0d74d83f072c4f8639c40f8287a43e0c8fd7aa63f47fdf3b254315deeca` ### Rebuilt images without code change * [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator) git [596745ce](https://github.com/openshift/kubernetes-kube-storage-version-migrator/commit/596745cec38b8401d1d906bfb9d3d78fdaeabcde) `sha256:a50a289c603360ac9d7295ad13bf5ffc39f20048d0d51219243e5c63f3221f83` * machine-os-content `sha256:96dcb65e284b22da5cd1305ffb8d0657efe4fc0cfe33296f2beaefac37e11f9d` ### [agent-installer-api-server](https://github.com/openshift/assisted-service/tree/844e6efd0d1c9d583afdefc6bc5ae744471ef9c1) * [MGMT-11753](https://issues.redhat.com/browse/MGMT-11753): moving CI Dockerfiles to the repo [#4386](https://github.com/openshift/assisted-service/pull/4386) * Bump mockgen to prevent dependencies removal [#4321](https://github.com/openshift/assisted-service/pull/4321) * NO-ISSUE: do not print error message when docker doesn't exist [#4129](https://github.com/openshift/assisted-service/pull/4129) * [Full changelog](https://github.com/openshift/assisted-service/compare/bc51be826e96cae9e00d0fff0970fd273c078d9a...844e6efd0d1c9d583afdefc6bc5ae744471ef9c1) ### [agent-installer-csr-approver, agent-installer-orchestrator](https://github.com/openshift/assisted-installer/tree/bc8fd423f1f7b47c46a9d97ede546f989785015d) * [MGMT-17596](https://issues.redhat.com/browse/MGMT-17596): Bump x/net to at least v0.24.0 to mitigate CVE-2023-45288 (#836) [#836](https://github.com/openshift/assisted-installer/pull/836) * [MGMT-17590](https://issues.redhat.com/browse/MGMT-17590): Bump runc to v1.1.12 to mitigate CVE-2024-21626 (#828) [#828](https://github.com/openshift/assisted-installer/pull/828) * [MGMT-17541](https://issues.redhat.com/browse/MGMT-17541): Replace broken golangci reference (#825) [#825](https://github.com/openshift/assisted-installer/pull/825) * [MGMT-13586](https://issues.redhat.com/browse/MGMT-13586): Wait for ETCD Bootstrap to complete (#670) (#726) [#670](https://github.com/openshift/assisted-installer/pull/670) * [OCPBUGS-7149](https://issues.redhat.com/browse/OCPBUGS-7149): IPv6 multinode spoke no moving from rebooting/configuring stage Update the mcs log regex (#631) [#631](https://github.com/openshift/assisted-installer/pull/631) * Remove jira tickets prefix requirements (#595) [#595](https://github.com/openshift/assisted-installer/pull/595) * Updating ose-agent-installer-csr-approver images to be consistent with ART (#535) [#535](https://github.com/openshift/assisted-installer/pull/535) * [MGMT-12305](https://issues.redhat.com/browse/MGMT-12305): Fix a vulnerability which could cause a denial of service on version v0.3.7 of golang.org/x/text/language. (#565) [#565](https://github.com/openshift/assisted-installer/pull/565) * Updating ose-agent-installer-orchestrator images to be consistent with ART (#557) [#557](https://github.com/openshift/assisted-installer/pull/557) * NO-ISSUE: Bump github.com/go-openapi/runtime from 0.24.1 to 0.24.2 (#564) [#564](https://github.com/openshift/assisted-installer/pull/564) * NO-ISSUE: Bump github.com/onsi/gomega from 1.21.1 to 1.22.1 (#561) [#561](https://github.com/openshift/assisted-installer/pull/561) * NO-ISSUE: Bump github.com/onsi/gomega from 1.20.2 to 1.21.1 (#559) [#559](https://github.com/openshift/assisted-installer/pull/559) * [MGMT-12077](https://issues.redhat.com/browse/MGMT-12077): Assisted Installer doesn't remove a PV if it's not attached to a volume group (#558) [#558](https://github.com/openshift/assisted-installer/pull/558) * [MGMT-12115](https://issues.redhat.com/browse/MGMT-12115): Fix wrong formatting in Controller Pod definition (#553) [#553](https://github.com/openshift/assisted-installer/pull/553) * NO-ISSUE: Remove unused function RemoveLV (#552) [#552](https://github.com/openshift/assisted-installer/pull/552) * [MGMT-12115](https://issues.redhat.com/browse/MGMT-12115): assisted-installer-controller Job does not apply Additional Root CA Trust Bundle (#551) [#551](https://github.com/openshift/assisted-installer/pull/551) * Update approvers and reviewers lists (#550) [#550](https://github.com/openshift/assisted-installer/pull/550) * NO-ISSUE: Bump github.com/operator-framework/api from 0.17.0 to 0.17.1 (#546) [#546](https://github.com/openshift/assisted-installer/pull/546) * [MGMT-12055](https://issues.redhat.com/browse/MGMT-12055): Assisted controller should log if one of the nodes changed it's ip after reboot (#545) [#545](https://github.com/openshift/assisted-installer/pull/545) * [MGMT-12070](https://issues.redhat.com/browse/MGMT-12070): Assisted controller should not set status done on host more than once (#543) [#543](https://github.com/openshift/assisted-installer/pull/543) * NO-ISSUE: add Adrien as a maintainer (#544) [#544](https://github.com/openshift/assisted-installer/pull/544) * [MGMT-12057](https://issues.redhat.com/browse/MGMT-12057): Remove enablement of router access logs in controller, not needed anymore (#542) [#542](https://github.com/openshift/assisted-installer/pull/542) * [MGMT-12038](https://issues.redhat.com/browse/MGMT-12038): Controller should upload logs from file on summary logs (#540) [#540](https://github.com/openshift/assisted-installer/pull/540) * NO-ISSUE: print boot order after setting it (#539) [#539](https://github.com/openshift/assisted-installer/pull/539) * Updating ose-agent-installer-orchestrator images to be consistent with ART (#496) [#496](https://github.com/openshift/assisted-installer/pull/496) * [MGMT-11348](https://issues.redhat.com/browse/MGMT-11348): Changes for upstream multi-arch support (#536) [#536](https://github.com/openshift/assisted-installer/pull/536) * NO-ISSUE: Bump github.com/onsi/gomega from 1.20.1 to 1.20.2 (#538) [#538](https://github.com/openshift/assisted-installer/pull/538) * [MGMT-11565](https://issues.redhat.com/browse/MGMT-11565): Add handleOLMEarlySetupBug when waiting for CSV (#531) [#531](https://github.com/openshift/assisted-installer/pull/531) * NO-ISSUE: Bump github.com/operator-framework/api from 0.16.0 to 0.17.0 (#534) [#534](https://github.com/openshift/assisted-installer/pull/534) * NO-ISSUE: Bump github.com/onsi/gomega from 1.20.0 to 1.20.1 (#533) [#533](https://github.com/openshift/assisted-installer/pull/533) * NO-ISSUE: Bump github.com/onsi/gomega from 1.19.0 to 1.20.0 (#509) [#509](https://github.com/openshift/assisted-installer/pull/509) * [MGMT-11695](https://issues.redhat.com/browse/MGMT-11695): Disk cleanup does not clean all volume groups in a physical volume. (#518) [#518](https://github.com/openshift/assisted-installer/pull/518) * [MGMT-11170](https://issues.redhat.com/browse/MGMT-11170): Report the caller in the log. (#527) [#527](https://github.com/openshift/assisted-installer/pull/527) * NO-ISSUE: Bump k8s.io/client-go from 0.24.2 to 0.24.4 (#523) [#523](https://github.com/openshift/assisted-installer/pull/523) * NO-ISSUE: Bump github.com/operator-framework/operator-lifecycle-manager (#525) [#525](https://github.com/openshift/assisted-installer/pull/525) * NO-ISSUE: Bump github.com/go-openapi/swag from 0.22.0 to 0.22.3 (#521) [#521](https://github.com/openshift/assisted-installer/pull/521) * [MGMT-10085](https://issues.redhat.com/browse/MGMT-10085): Get real filepath of RAID device (#517) [#517](https://github.com/openshift/assisted-installer/pull/517) * NO-ISSUE: Bump github.com/go-openapi/swag from 0.21.1 to 0.22.0 (#515) [#515](https://github.com/openshift/assisted-installer/pull/515) * [MGMT-11100](https://issues.redhat.com/browse/MGMT-11100): changing url for router status check from console to canary (#512) [#512](https://github.com/openshift/assisted-installer/pull/512) * [MGMT-11365](https://issues.redhat.com/browse/MGMT-11365): fix flaky installation of golangci-lint (#510) [#510](https://github.com/openshift/assisted-installer/pull/510) * NO-ISSUE: Bump github.com/sirupsen/logrus from 1.8.1 to 1.9.0 (#508) [#508](https://github.com/openshift/assisted-installer/pull/508) * NO-ISSUE: Add `jhernand` to `OWNERS_ALIASES` (#507) [#507](https://github.com/openshift/assisted-installer/pull/507) * [MGMT-11106](https://issues.redhat.com/browse/MGMT-11106): Writing controller logs to file in order to be able to send (#506) [#506](https://github.com/openshift/assisted-installer/pull/506) * NO-ISSUE: Bump github.com/go-openapi/strfmt from 0.21.2 to 0.21.3 (#504) [#504](https://github.com/openshift/assisted-installer/pull/504) * NO-ISSUE: Bump k8s.io/apimachinery from 0.24.2 to 0.24.3 (#502) [#502](https://github.com/openshift/assisted-installer/pull/502) * [BZ-2107887](https://issues.redhat.com/browse/BZ-2107887): misleading configuring state when installing with assisted-installer (#501) [#501](https://github.com/openshift/assisted-installer/pull/501) * [MGMT-8855](https://issues.redhat.com/browse/MGMT-8855): repeated event messages in wait for olm operators due to (#499) [#499](https://github.com/openshift/assisted-installer/pull/499) * NO-ISSUE: Bump sigs.k8s.io/controller-runtime from 0.12.2 to 0.12.3 (#498) [#498](https://github.com/openshift/assisted-installer/pull/498) * [MGMT-11100](https://issues.redhat.com/browse/MGMT-11100): Adding get router status logic in case of sno failure. (#497) [#497](https://github.com/openshift/assisted-installer/pull/497) * [MGMT-11063](https://issues.redhat.com/browse/MGMT-11063): assisted-installer isn't sending the host logs in case the installation was successful and cacert was added (#495) [#495](https://github.com/openshift/assisted-installer/pull/495) * NO-ISSUE: add stage info in case converged flow is enabled (#493) [#493](https://github.com/openshift/assisted-installer/pull/493) * NO-ISSUE: Add @rccrdpccl as approver (#492) [#492](https://github.com/openshift/assisted-installer/pull/492) * NO-ISSUE: Bump github.com/hashicorp/go-version from 1.5.0 to 1.6.0 (#491) [#491](https://github.com/openshift/assisted-installer/pull/491) * [MGMT-10660](https://issues.redhat.com/browse/MGMT-10660): Refactor assisted-installer ops code to allow writing unitests (#488) [#488](https://github.com/openshift/assisted-installer/pull/488) * NO-ISSUE: In case must-gather upload failed but logs were gathered (#487) [#487](https://github.com/openshift/assisted-installer/pull/487) * NO-ISSUE: Bump sigs.k8s.io/controller-runtime from 0.12.1 to 0.12.2 (#489) [#489](https://github.com/openshift/assisted-installer/pull/489) * [Full changelog](https://github.com/openshift/assisted-installer/compare/aa467482746b55af2a64137302a7b3ef556c83c4...bc8fd423f1f7b47c46a9d97ede546f989785015d) ### [agent-installer-node-agent](https://github.com/openshift/assisted-installer-agent/tree/ce915b7d0a3d3b225b6a190d2babf20cc864d22e) * Update README.md [#395](https://github.com/openshift/assisted-installer-agent/pull/395) * [Full changelog](https://github.com/openshift/assisted-installer-agent/compare/e74ffbf509d382c42891884b90a8a9fb82922f5e...ce915b7d0a3d3b225b6a190d2babf20cc864d22e) ### [alibaba-cloud-controller-manager](https://github.com/openshift/cloud-provider-alibaba-cloud/tree/191c9e34c1e70cf585d78f6293f95a2b89061a48) * [OCPBUGS-21218](https://issues.redhat.com/browse/OCPBUGS-21218): Bump golang.org/x/net to v0.19.0 [#45](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/45) * Merge https://github.com/kubernetes/cloud-provider-alibaba-cloud:master into master [#21](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/21) * Updating ose-alibaba-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/22) * [Full changelog](https://github.com/openshift/cloud-provider-alibaba-cloud/compare/58acf96b268c12dd56970a28d1b45d5f984a353e...191c9e34c1e70cf585d78f6293f95a2b89061a48) ### [alibaba-cloud-csi-driver](https://github.com/openshift/alibaba-cloud-csi-driver/tree/4d3b1125cfd3acfe3fbafa4c83543bbb89de97a2) * [OCPBUGS-21313](https://issues.redhat.com/browse/OCPBUGS-21313): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#38](https://github.com/openshift/alibaba-cloud-csi-driver/pull/38) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#17](https://github.com/openshift/alibaba-cloud-csi-driver/pull/17) * [OCPBUGS-6493](https://issues.redhat.com/browse/OCPBUGS-6493): UPSTREAM: 682: fix gofmt [#22](https://github.com/openshift/alibaba-cloud-csi-driver/pull/22) * UPSTREAM: <carry>: Remove .github files [#16](https://github.com/openshift/alibaba-cloud-csi-driver/pull/16) * Updating ose-alibaba-cloud-csi-driver images to be consistent with ART [#15](https://github.com/openshift/alibaba-cloud-csi-driver/pull/15) * [Full changelog](https://github.com/openshift/alibaba-cloud-csi-driver/compare/10cd3a7e86f948d28143e83ea22ac935cfcb0162...4d3b1125cfd3acfe3fbafa4c83543bbb89de97a2) ### [alibaba-disk-csi-driver-operator](https://github.com/openshift/alibaba-disk-csi-driver-operator/tree/99bcda8da7c9c2e4415f30b82371f0b79d527d3d) * [OCPBUGS-21404](https://issues.redhat.com/browse/OCPBUGS-21404): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#66](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/66) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#58](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/58) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#38](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/38) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#36](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/36) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#37](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/37) * [Bug 2114009](https://bugzilla.redhat.com/show_bug.cgi?id=2114009): Add VolumeSnapshotClassController [#35](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/35) * Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART [#34](https://github.com/openshift/alibaba-disk-csi-driver-operator/pull/34) * [Full changelog](https://github.com/openshift/alibaba-disk-csi-driver-operator/compare/481b4d44ce58757d136ee571ba5dbbdf109400ec...99bcda8da7c9c2e4415f30b82371f0b79d527d3d) ### [alibaba-machine-controllers](https://github.com/openshift/cluster-api-provider-alibaba/tree/b9287c05091424c4d21fd95454020ccc225f5bcb) * Feature/actuators unit tests [#32](https://github.com/openshift/cluster-api-provider-alibaba/pull/32) * [Full changelog](https://github.com/openshift/cluster-api-provider-alibaba/compare/414510891904915fd490e5f2d3f5f53320998c98...b9287c05091424c4d21fd95454020ccc225f5bcb) ### [apiserver-network-proxy](https://github.com/openshift/apiserver-network-proxy/tree/f56c606ae15041b0c981e654ab577d2b0a3a0a8f) * [OCPBUGS-38066](https://issues.redhat.com/browse/OCPBUGS-38066): Revert "Agent: Respect HTTPS_PROXY env vars for proxied connections" [#61](https://github.com/openshift/apiserver-network-proxy/pull/61) * [OCPBUGS-31984](https://issues.redhat.com/browse/OCPBUGS-31984): Bump golang.org/x/net to v0.23.0 [#52](https://github.com/openshift/apiserver-network-proxy/pull/52) * [Full changelog](https://github.com/openshift/apiserver-network-proxy/compare/3362d673b054807a4974b4d600486933f7e0bd42...f56c606ae15041b0c981e654ab577d2b0a3a0a8f) ### [aws-cloud-controller-manager](https://github.com/openshift/cloud-provider-aws/tree/f90fb443bc71b2319d8cce276b280c26d0f18fb7) * [OCPBUGS-32079](https://issues.redhat.com/browse/OCPBUGS-32079): update for CVE-2023-45288 [release-4.12] [#85](https://github.com/openshift/cloud-provider-aws/pull/85) * [OCPBUGS-20722](https://issues.redhat.com/browse/OCPBUGS-20722): Update golang.org/x/net to v0.17.0 [#55](https://github.com/openshift/cloud-provider-aws/pull/55) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#25](https://github.com/openshift/cloud-provider-aws/pull/25) * [OCPBUGS-2076](https://issues.redhat.com/browse/OCPBUGS-2076): Replace k8s.io/cloud-provider with openshift's version [#28](https://github.com/openshift/cloud-provider-aws/pull/28) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 03.10.2022 k8s 1.25 [#26](https://github.com/openshift/cloud-provider-aws/pull/26) * Merge https://github.com/kubernetes/cloud-provider-aws:master into master [#24](https://github.com/openshift/cloud-provider-aws/pull/24) * Updating ose-aws-cloud-controller-manager images to be consistent with ART [#23](https://github.com/openshift/cloud-provider-aws/pull/23) * [Full changelog](https://github.com/openshift/cloud-provider-aws/compare/611fef9447b1bd6602561a07a69e4d11ff1ca161...f90fb443bc71b2319d8cce276b280c26d0f18fb7) ### [aws-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/16156accbe3b9bcedbe39ef988170e1f644fcd75) * [OCPBUGS-20810](https://issues.redhat.com/browse/OCPBUGS-20810): bump golang.org/x/net to v0.17.0 [#483](https://github.com/openshift/cluster-api-provider-aws/pull/483) * [OCPBUGS-15548](https://issues.redhat.com/browse/OCPBUGS-15548): Pass right SGs for IsExternallyManaged on creation [#469](https://github.com/openshift/cluster-api-provider-aws/pull/469) * Updating ose-aws-cluster-api-controllers images to be consistent with ART [#448](https://github.com/openshift/cluster-api-provider-aws/pull/448) * Rebase to v1.5.0 [#443](https://github.com/openshift/cluster-api-provider-aws/pull/443) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/b7408966b5e5952e60588ca08794c876f2cb575f...16156accbe3b9bcedbe39ef988170e1f644fcd75) ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/bbab20f9559a1be6f39fed8e604712d41f507b49) * [OCPBUGS-33457](https://issues.redhat.com/browse/OCPBUGS-33457): UPSTREAM: 1919: Add reserved-volume-attachments [#267](https://github.com/openshift/aws-ebs-csi-driver/pull/267) * [OCPBUGS-20919](https://issues.redhat.com/browse/OCPBUGS-20919): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#241](https://github.com/openshift/aws-ebs-csi-driver/pull/241) * [OCPBUGS-14281](https://issues.redhat.com/browse/OCPBUGS-14281): Volume unmount repeats after successful unmount, preventing pod delete [#226](https://github.com/openshift/aws-ebs-csi-driver/pull/226) * UPSTREAM: <carry>: Remove .github files [#212](https://github.com/openshift/aws-ebs-csi-driver/pull/212) * [STOR-860](https://issues.redhat.com/browse/STOR-860): Rebase to v1.11.4 for OCP 4.12 [#206](https://github.com/openshift/aws-ebs-csi-driver/pull/206) * [OCPBUGS-1574](https://issues.redhat.com/browse/OCPBUGS-1574): UPSTREAM: 1398: Add resolver to handle custom endpoints [#208](https://github.com/openshift/aws-ebs-csi-driver/pull/208) * Fix older dockerfile [#207](https://github.com/openshift/aws-ebs-csi-driver/pull/207) * Updating ose-aws-ebs-csi-driver images to be consistent with ART [#202](https://github.com/openshift/aws-ebs-csi-driver/pull/202) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/46bd913789c6c1c246ecff2d982e4b3b4654254d...bbab20f9559a1be6f39fed8e604712d41f507b49) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/71bb7838f93bc88e679b0a967fbf1660cdf8aff1) * [OCPBUGS-33457](https://issues.redhat.com/browse/OCPBUGS-33457): Explicitly reserve 1 attachment for the root disk [#308](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/308) * [OCPBUGS-21018](https://issues.redhat.com/browse/OCPBUGS-21018): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#282](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/282) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#265](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/265) * [OCPBUGS-13721](https://issues.redhat.com/browse/OCPBUGS-13721): assets/hypershift/controller_sa: Set controller ServiceAccount imagePullSecrets [#230](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/230) * 4.12: OCPBUGS-10646: 4.12 hypershift set control plane [#208](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/208) * [OCPBUGS-7892](https://issues.redhat.com/browse/OCPBUGS-7892): do not inject-proxy when deploying in hypershift control plane [#187](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/187) * [OCPBUGS-4251](https://issues.redhat.com/browse/OCPBUGS-4251): Add HyperShift specific priorityClass [#170](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/170) * [OCPBUGS-4527](https://issues.redhat.com/browse/OCPBUGS-4527): hypershift: use correct kubeconfig secret [#171](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/171) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Don't deploy VolumeSnapshotClass in static controller [#166](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/166) * [STOR-1040](https://issues.redhat.com/browse/STOR-1040): port to hypershift [#159](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/159) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#164](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/164) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#162](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/162) * Reformat for go 1.19 [#163](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/163) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#161](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/161) * [STOR-764](https://issues.redhat.com/browse/STOR-764): Change the default StorageClass to the CSI one (AWS) [#160](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/160) * Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART [#158](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/158) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/2c9edc2a947c6677fa9def34172f8e8be532084b...71bb7838f93bc88e679b0a967fbf1660cdf8aff1) ### [aws-machine-controllers](https://github.com/openshift/machine-api-provider-aws/tree/440886d004a6ecbc45d5bc04c2f703fb0efaa632) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce metrics cardinality [#97](https://github.com/openshift/machine-api-provider-aws/pull/97) * [OCPBUGS-21562](https://issues.redhat.com/browse/OCPBUGS-21562): Update golang.org/x/net to v0.17.0 [#90](https://github.com/openshift/machine-api-provider-aws/pull/90) * [OCPCLOUD-1131](https://issues.redhat.com/browse/OCPCLOUD-1131): Implement fetching instance types from API [#53](https://github.com/openshift/machine-api-provider-aws/pull/53) * Updating ose-machine-api-provider-aws images to be consistent with ART [#45](https://github.com/openshift/machine-api-provider-aws/pull/45) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#52](https://github.com/openshift/machine-api-provider-aws/pull/52) * Update Machine API Operator dependency [#51](https://github.com/openshift/machine-api-provider-aws/pull/51) * Update Machine API operator dependency [#49](https://github.com/openshift/machine-api-provider-aws/pull/49) * pkg/actuators/machineset/controller: Fix %s in scale-from-zero logging [#43](https://github.com/openshift/machine-api-provider-aws/pull/43) * [Bug 2106733](https://bugzilla.redhat.com/show_bug.cgi?id=2106733): Fix panic when accessing nil machine annotations map [#46](https://github.com/openshift/machine-api-provider-aws/pull/46) * [Bug 2060068](https://bugzilla.redhat.com/show_bug.cgi?id=2060068): check securityGroupIDs for emptiness [#44](https://github.com/openshift/machine-api-provider-aws/pull/44) * [Full changelog](https://github.com/openshift/machine-api-provider-aws/compare/48926df1a7c81558cc17c588a9ef822ef58e05b1...440886d004a6ecbc45d5bc04c2f703fb0efaa632) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/31917a5f3e7557916b8e92a0a9ae529ab176f738) * [OCPBUGS-32880](https://issues.redhat.com/browse/OCPBUGS-32880): Upgrade go-jose module to 2.6.3 [#191](https://github.com/openshift/aws-pod-identity-webhook/pull/191) * [OCPBUGS-21312](https://issues.redhat.com/browse/OCPBUGS-21312): Upgrade golang/x/net for CVE-2023-39325 (4.12) [#185](https://github.com/openshift/aws-pod-identity-webhook/pull/185) * NO-ISSUE: Sync OWNERS with team members [#178](https://github.com/openshift/aws-pod-identity-webhook/pull/178) * NO-ISSUE: snyk: exclude vendor/ [#174](https://github.com/openshift/aws-pod-identity-webhook/pull/174) * Update OWNERS [#157](https://github.com/openshift/aws-pod-identity-webhook/pull/157) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#156](https://github.com/openshift/aws-pod-identity-webhook/pull/156) * Updating ose-aws-pod-identity-webhook images to be consistent with ART [#155](https://github.com/openshift/aws-pod-identity-webhook/pull/155) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/7bcd87c48a619d699eab6d4c6369d8e70102d90f...31917a5f3e7557916b8e92a0a9ae529ab176f738) ### [azure-cloud-controller-manager, azure-cloud-node-manager](https://github.com/openshift/cloud-provider-azure/tree/2193ccfa8575aeb0520a25b77ec963097a66cd6e) * [OCPBUGS-21401](https://issues.redhat.com/browse/OCPBUGS-21401): Bump golang.org/x/net to v0.18.0 [#95](https://github.com/openshift/cloud-provider-azure/pull/95) * [OCPBUGS-22832](https://issues.redhat.com/browse/OCPBUGS-22832): UPSTREAM: 2805: add disk lun check in AttachDisk to avoid race condition [#91](https://github.com/openshift/cloud-provider-azure/pull/91) * [OCPBUGS-17159](https://issues.redhat.com/browse/OCPBUGS-17159): Increase service idle max timeout to 100 minutes [#82](https://github.com/openshift/cloud-provider-azure/pull/82) * [OCPBUGS-2076](https://issues.redhat.com/browse/OCPBUGS-2076): Replace k8s.io/cloud-provider with openshift's version [#44](https://github.com/openshift/cloud-provider-azure/pull/44) * Updating ose-azure-cloud-controller-manager images to be consistent with ART [#41](https://github.com/openshift/cloud-provider-azure/pull/41) * Updating ose-azure-cloud-node-manager images to be consistent with ART [#40](https://github.com/openshift/cloud-provider-azure/pull/40) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase cloud-provider-azure 29.09.2022 [#39](https://github.com/openshift/cloud-provider-azure/pull/39) * fix .dockerignore to satisfy OCP specific requirements [#37](https://github.com/openshift/cloud-provider-azure/pull/37) * Replace .dockerignore file with the OCP specific one [#36](https://github.com/openshift/cloud-provider-azure/pull/36) * Updating ose-azure-cloud-node-manager images to be consistent with ART [#34](https://github.com/openshift/cloud-provider-azure/pull/34) * Updating ose-azure-cloud-controller-manager images to be consistent with ART [#35](https://github.com/openshift/cloud-provider-azure/pull/35) * [Full changelog](https://github.com/openshift/cloud-provider-azure/compare/673e7b9d40ecdd9b9aa938113aedefb8aa33412e...2193ccfa8575aeb0520a25b77ec963097a66cd6e) ### [azure-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-azure/tree/a1b2a37b7d31951708a8f6e1db201fe0c1ff687a) * [OCPBUGS-36021](https://issues.redhat.com/browse/OCPBUGS-36021): Update go-retryablehttp to v0.7.7 [#315](https://github.com/openshift/cluster-api-provider-azure/pull/315) * [OCPBUGS-21489](https://issues.redhat.com/browse/OCPBUGS-21489): bump golang.org/x/net to v0.17.0 [#289](https://github.com/openshift/cluster-api-provider-azure/pull/289) * [Bug 2087043](https://bugzilla.redhat.com/show_bug.cgi?id=2087043): Merge https://github.com/kubernetes-sigs/cluster-api-provider-azure:main into master [#260](https://github.com/openshift/cluster-api-provider-azure/pull/260) * Updating ose-azure-cluster-api-controllers images to be consistent with ART [#263](https://github.com/openshift/cluster-api-provider-azure/pull/263) * UPSTREAM: <carry>: remove "coverage.*" from gitignore [#262](https://github.com/openshift/cluster-api-provider-azure/pull/262) * UPSTREAM: <carry>: bump .ci-operator.yaml to use golang 1.18 [#261](https://github.com/openshift/cluster-api-provider-azure/pull/261) * Updating ose-azure-cluster-api-controllers images to be consistent with ART [#259](https://github.com/openshift/cluster-api-provider-azure/pull/259) * [Full changelog](https://github.com/openshift/cluster-api-provider-azure/compare/2118fe60689f382c8ce1c9150c6014cd9340b965...a1b2a37b7d31951708a8f6e1db201fe0c1ff687a) ### [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver/tree/a930c89beac514d4d98f6055bf6cfe78eeec25a5) * [OCPBUGS-22941](https://issues.redhat.com/browse/OCPBUGS-22941): UPSTREAM: 1755: fix: detach disk failure when there is throttling [#62](https://github.com/openshift/azure-disk-csi-driver/pull/62) * [OCPBUGS-22832](https://issues.redhat.com/browse/OCPBUGS-22832): UPSTREAM: 2805: add disk lun check in AttachDisk to avoid race condition [#60](https://github.com/openshift/azure-disk-csi-driver/pull/60) * [OCPBUGS-20675](https://issues.redhat.com/browse/OCPBUGS-20675): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#56](https://github.com/openshift/azure-disk-csi-driver/pull/56) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#34](https://github.com/openshift/azure-disk-csi-driver/pull/34) * UPSTREAM: <carry>: Remove .github files [#33](https://github.com/openshift/azure-disk-csi-driver/pull/33) * [STOR-864](https://issues.redhat.com/browse/STOR-864): Rebase to v1.22.0 [#32](https://github.com/openshift/azure-disk-csi-driver/pull/32) * [Bug 2111811](https://bugzilla.redhat.com/show_bug.cgi?id=2111811): UPSTREAM 1367, 1409: Update max data disk count table [#29](https://github.com/openshift/azure-disk-csi-driver/pull/29) * Updating ose-azure-disk-csi-driver images to be consistent with ART [#28](https://github.com/openshift/azure-disk-csi-driver/pull/28) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver/compare/f4bb81ea10d3c72f245c11ae99e9c5cddd2761a7...a930c89beac514d4d98f6055bf6cfe78eeec25a5) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/988b8cc8ead51c2904c6cb75446529bfe3674ee3) * [OCPBUGS-20749](https://issues.redhat.com/browse/OCPBUGS-20749): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#103](https://github.com/openshift/azure-disk-csi-driver-operator/pull/103) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#95](https://github.com/openshift/azure-disk-csi-driver-operator/pull/95) * [OCPBUGS-7885](https://issues.redhat.com/browse/OCPBUGS-7885): Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars [#70](https://github.com/openshift/azure-disk-csi-driver-operator/pull/70) * [OCPBUGS-3425](https://issues.redhat.com/browse/OCPBUGS-3425): Only deploy VolumeSnapshotClass if CRD exists [#59](https://github.com/openshift/azure-disk-csi-driver-operator/pull/59) * Updating ose-azure-disk-csi-driver-operator images to be consistent with ART [#55](https://github.com/openshift/azure-disk-csi-driver-operator/pull/55) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#53](https://github.com/openshift/azure-disk-csi-driver-operator/pull/53) * Updating ose-azure-disk-csi-driver-operator images to be consistent with ART [#51](https://github.com/openshift/azure-disk-csi-driver-operator/pull/51) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/c9fa000ca7bccec9261f50b30cd9a9c826f48dde...988b8cc8ead51c2904c6cb75446529bfe3674ee3) ### [azure-file-csi-driver](https://github.com/openshift/azure-file-csi-driver/tree/15aade4d58785b54ac732a660f1359132d27f9b9) * [OCPBUGS-20842](https://issues.redhat.com/browse/OCPBUGS-20842): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#39](https://github.com/openshift/azure-file-csi-driver/pull/39) * [STOR-865](https://issues.redhat.com/browse/STOR-865): Rebase to v1.21.0 for OCP 4.12 [#17](https://github.com/openshift/azure-file-csi-driver/pull/17) * Updating azure-file-csi-driver images to be consistent with ART [#19](https://github.com/openshift/azure-file-csi-driver/pull/19) * UPSTREAM: <carry>: Remove .github files [#18](https://github.com/openshift/azure-file-csi-driver/pull/18) * Updating azure-file-csi-driver images to be consistent with ART [#16](https://github.com/openshift/azure-file-csi-driver/pull/16) * [Full changelog](https://github.com/openshift/azure-file-csi-driver/compare/c322c8f3392dcd6c978241adf75cc7a0e580a8e7...15aade4d58785b54ac732a660f1359132d27f9b9) ### [azure-file-csi-driver-operator](https://github.com/openshift/azure-file-csi-driver-operator/tree/060ba825fead5953bef544017ef4b3d0cbabe3e5) * [OCPBUGS-20946](https://issues.redhat.com/browse/OCPBUGS-20946): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#78](https://github.com/openshift/azure-file-csi-driver-operator/pull/78) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#71](https://github.com/openshift/azure-file-csi-driver-operator/pull/71) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#37](https://github.com/openshift/azure-file-csi-driver-operator/pull/37) * Updating azure-file-csi-driver-operator images to be consistent with ART [#38](https://github.com/openshift/azure-file-csi-driver-operator/pull/38) * [Bug 2080449](https://bugzilla.redhat.com/show_bug.cgi?id=2080449): disable VHD disk feature [#33](https://github.com/openshift/azure-file-csi-driver-operator/pull/33) * Updating azure-file-csi-driver-operator images to be consistent with ART [#34](https://github.com/openshift/azure-file-csi-driver-operator/pull/34) * [Full changelog](https://github.com/openshift/azure-file-csi-driver-operator/compare/a5c172bdbe328e75192f7333369e74f5df2d6abb...060ba825fead5953bef544017ef4b3d0cbabe3e5) ### [azure-machine-controllers](https://github.com/openshift/machine-api-provider-azure/tree/6b5bfffdcf6315871d6c296025db7d0812132868) * [OCPBUGS-36148](https://issues.redhat.com/browse/OCPBUGS-36148): Fix mapi_instance_create_failed metric with accelerated networking [#115](https://github.com/openshift/machine-api-provider-azure/pull/115) * [OCPBUGS-30809](https://issues.redhat.com/browse/OCPBUGS-30809): Don't create availability set when using spot instances [#105](https://github.com/openshift/machine-api-provider-azure/pull/105) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce cardinality [#97](https://github.com/openshift/machine-api-provider-azure/pull/97) * [OCPBUGS-20741](https://issues.redhat.com/browse/OCPBUGS-20741): Bump x/net package to v0.18.0 [#84](https://github.com/openshift/machine-api-provider-azure/pull/84) * [OCPBUGS-19549](https://issues.redhat.com/browse/OCPBUGS-19549), [OCPBUGS-22247](https://issues.redhat.com/browse/OCPBUGS-22247): Fix empty clusterName references for GenerateMachinePublicIPName [#82](https://github.com/openshift/machine-api-provider-azure/pull/82) * [OCPBUGS-17960](https://issues.redhat.com/browse/OCPBUGS-17960): Machine Actuator should not set metadata.name [#71](https://github.com/openshift/machine-api-provider-azure/pull/71) * [OCPBUGS-17221](https://issues.redhat.com/browse/OCPBUGS-17221): Add user defined Tags to NIC Azure resources [#69](https://github.com/openshift/machine-api-provider-azure/pull/69) * [OCPBUGS-1871](https://issues.redhat.com/browse/OCPBUGS-1871): Fix machine not going failed with invalid vmsize [#36](https://github.com/openshift/machine-api-provider-azure/pull/36) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#35](https://github.com/openshift/machine-api-provider-azure/pull/35) * Update Machine API Operator dependency to fix phase transition metric [#33](https://github.com/openshift/machine-api-provider-azure/pull/33) * [Bug 2108647](https://bugzilla.redhat.com/show_bug.cgi?id=2108647): Implement fetching SKUs information from Azure [#32](https://github.com/openshift/machine-api-provider-azure/pull/32) * [Bug 2117439](https://bugzilla.redhat.com/show_bug.cgi?id=2117439): Populate internalLoadBalancer for Control Plane Machines when not set [#31](https://github.com/openshift/machine-api-provider-azure/pull/31) * Update Machine API Operator to bring in drain controller update [#30](https://github.com/openshift/machine-api-provider-azure/pull/30) * [Bug 2085390](https://bugzilla.redhat.com/show_bug.cgi?id=2085390): make Azure instance types case-insensitive [#27](https://github.com/openshift/machine-api-provider-azure/pull/27) * Enable configuration of boot diagnostics when creating VMs [#24](https://github.com/openshift/machine-api-provider-azure/pull/24) * [Full changelog](https://github.com/openshift/machine-api-provider-azure/compare/b3c71cfab08545a4f095549afeb712bb25c4b2c4...6b5bfffdcf6315871d6c296025db7d0812132868) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/798aeaaf61fbc22669b6bad2edc058ea6949d733) * [OCPBUGS-36087](https://issues.redhat.com/browse/OCPBUGS-36087): [release-4.12]: bump go-retryablehttp for CVE fix [#8660](https://github.com/openshift/installer/pull/8660) * [OCPBUGS-39290](https://issues.redhat.com/browse/OCPBUGS-39290): Add yq v4 to ci image [#8929](https://github.com/openshift/installer/pull/8929) * [OCPBUGS-36179](https://issues.redhat.com/browse/OCPBUGS-36179): [release-4.12]: bump github.com/container/images for CVE fix [#8663](https://github.com/openshift/installer/pull/8663) * [OCPBUGS-22981](https://issues.redhat.com/browse/OCPBUGS-22981): IBMCloud: Add eu-es region [#7686](https://github.com/openshift/installer/pull/7686) * [OCPBUGS-30630](https://issues.redhat.com/browse/OCPBUGS-30630): baremetal: populate customDeploy in advance [#8144](https://github.com/openshift/installer/pull/8144) * [OCPBUGS-32449](https://issues.redhat.com/browse/OCPBUGS-32449): Updated libvirt installer to include multi-arch yq and symlink for backwards compatibility [#8290](https://github.com/openshift/installer/pull/8290) * [OCPBUGS-30768](https://issues.redhat.com/browse/OCPBUGS-30768): update RHCOS 4.12 bootimage metadata to 412.86.202402272018-0 [#8140](https://github.com/openshift/installer/pull/8140) * [OCPBUGS-30134](https://issues.redhat.com/browse/OCPBUGS-30134): [release-4.12] bump containerd for vulnerability fix [#8091](https://github.com/openshift/installer/pull/8091) * [OCPBUGS-27454](https://issues.redhat.com/browse/OCPBUGS-27454): baremetal: correct external_http_url for v6-only BMCs [#7900](https://github.com/openshift/installer/pull/7900) * [OCPBUGS-25593](https://issues.redhat.com/browse/OCPBUGS-25593): [release-4.12] OCPBUGS-16640: Update azure cli version to 2.49.0 [#7849](https://github.com/openshift/installer/pull/7849) * [OCPBUGS-23184](https://issues.redhat.com/browse/OCPBUGS-23184): azure: validation: validate defaultMachinePlatform [#7709](https://github.com/openshift/installer/pull/7709) * [OCPBUGS-25476](https://issues.redhat.com/browse/OCPBUGS-25476): destroy: gcp: fix destroying regional disks [#7845](https://github.com/openshift/installer/pull/7845) * [OCPBUGS-23302](https://issues.redhat.com/browse/OCPBUGS-23302): images: installer: add xz to the container [#7726](https://github.com/openshift/installer/pull/7726) * [OCPBUGS-23379](https://issues.redhat.com/browse/OCPBUGS-23379): images: update govc image in upi-installer [#7739](https://github.com/openshift/installer/pull/7739) * [OCPBUGS-22116](https://issues.redhat.com/browse/OCPBUGS-22116): Add KMS encryption keys if provided [#7769](https://github.com/openshift/installer/pull/7769) * [OCPBUGS-23329](https://issues.redhat.com/browse/OCPBUGS-23329): Specify google cloud CLI to version 447.0.0 [#7731](https://github.com/openshift/installer/pull/7731) * [OCPBUGS-22933](https://issues.redhat.com/browse/OCPBUGS-22933): [release-4.12]: vsphere: fix validation of CPUS and CoresPerSocket [#7677](https://github.com/openshift/installer/pull/7677) * [OCPBUGS-13288](https://issues.redhat.com/browse/OCPBUGS-13288): use python3 for cloud sdk [#7170](https://github.com/openshift/installer/pull/7170) * [OCPBUGS-18645](https://issues.redhat.com/browse/OCPBUGS-18645): new Aws secret regions support [#7473](https://github.com/openshift/installer/pull/7473) * [OCPBUGS-22288](https://issues.redhat.com/browse/OCPBUGS-22288): Don't log password values [#7627](https://github.com/openshift/installer/pull/7627) * [OCPBUGS-18644](https://issues.redhat.com/browse/OCPBUGS-18644): terraform: aws: secret regions now support ALIAS record [#7472](https://github.com/openshift/installer/pull/7472) * [OCPBUGS-17651](https://issues.redhat.com/browse/OCPBUGS-17651): Validate that the rendevousIP is assigned to a master [#7416](https://github.com/openshift/installer/pull/7416) * [OCPBUGS-20145](https://issues.redhat.com/browse/OCPBUGS-20145): [release-4.12] Use updated ansible-core for Openstack image [#7560](https://github.com/openshift/installer/pull/7560) * [OCPBUGS-18646](https://issues.redhat.com/browse/OCPBUGS-18646): Allow destroy for C2S isolated (us-iso and us-isob) partitions [#7474](https://github.com/openshift/installer/pull/7474) * [OCPBUGS-10992](https://issues.redhat.com/browse/OCPBUGS-10992): bootstrap-pivot: skip pivot in SCOS Live ISO [#7035](https://github.com/openshift/installer/pull/7035) * [CORS-2792](https://issues.redhat.com/browse/CORS-2792): AWS Shared VPC Backport [release-4.12] [#7435](https://github.com/openshift/installer/pull/7435) * [OCPBUGS-18320](https://issues.redhat.com/browse/OCPBUGS-18320): CORS-2445: GCP: Add osImage to the install config [#7454](https://github.com/openshift/installer/pull/7454) * [OCPBUGS-17404](https://issues.redhat.com/browse/OCPBUGS-17404): backport openstack UPI for ansible 2.10 [#7399](https://github.com/openshift/installer/pull/7399) * [OCPBUGS-16778](https://issues.redhat.com/browse/OCPBUGS-16778): bump RHCOS 4.12 bootimage metadata to 412.86.202308081039-0 [#7420](https://github.com/openshift/installer/pull/7420) * [OCPBUGS-17467](https://issues.redhat.com/browse/OCPBUGS-17467): Allow override of networkType [#7406](https://github.com/openshift/installer/pull/7406) * [OCPBUGS-17174](https://issues.redhat.com/browse/OCPBUGS-17174): Set AdditionalTrustBundle in override when mirroring not enabled [#7386](https://github.com/openshift/installer/pull/7386) * [OCPBUGS-16382](https://issues.redhat.com/browse/OCPBUGS-16382): azure: skip LB creation when not needed [#7342](https://github.com/openshift/installer/pull/7342) * [OCPBUGS-14868](https://issues.redhat.com/browse/OCPBUGS-14868): Shorten SNO installation duration by releasing CPC lease [#7242](https://github.com/openshift/installer/pull/7242) * [OCPBUGS-14495](https://issues.redhat.com/browse/OCPBUGS-14495): Support /dev/disk/by-path root device hints [#7227](https://github.com/openshift/installer/pull/7227) * [OCPBUGS-16151](https://issues.redhat.com/browse/OCPBUGS-16151): ic: azure: validate diskTypes in AzureStack [#7331](https://github.com/openshift/installer/pull/7331) * [OCPBUGS-11199](https://issues.redhat.com/browse/OCPBUGS-11199): azure: upi: use Image Gallery in ARM templates [#7054](https://github.com/openshift/installer/pull/7054) * [OCPBUGS-13940](https://issues.redhat.com/browse/OCPBUGS-13940): bump RHCOS 4.12 bootimage metadata to 412.86.202306132230-0 [#7249](https://github.com/openshift/installer/pull/7249) * [OCPBUGS-14664](https://issues.redhat.com/browse/OCPBUGS-14664): Shorten SNO installation duration by releasing CVO lease [#7235](https://github.com/openshift/installer/pull/7235) * [OCPBUGS-7400](https://issues.redhat.com/browse/OCPBUGS-7400): Check for AWS STS installation before trying to get all IAM Roles [#7175](https://github.com/openshift/installer/pull/7175) * [OCPBUGS-13819](https://issues.redhat.com/browse/OCPBUGS-13819): Bootstrap on aws should have same metadata service type as on other nodes [#7196](https://github.com/openshift/installer/pull/7196) * [OCPBUGS-12202](https://issues.redhat.com/browse/OCPBUGS-12202): Relax vsphere, nutanix VIP validation [#7116](https://github.com/openshift/installer/pull/7116) * [OCPBUGS-7551](https://issues.redhat.com/browse/OCPBUGS-7551): vSphere - ignore all bootstrap disk changes [#6860](https://github.com/openshift/installer/pull/6860) * [OCPBUGS-14014](https://issues.redhat.com/browse/OCPBUGS-14014): Do not always output warning msg when releaseImage is digest [#7202](https://github.com/openshift/installer/pull/7202) * [OCPBUGS-13052](https://issues.redhat.com/browse/OCPBUGS-13052): bump RHCOS 4.12 bootimage metadata [#7164](https://github.com/openshift/installer/pull/7164) * [OCPBUGS-12956](https://issues.redhat.com/browse/OCPBUGS-12956): openstack: Add netcat to the Installer image [#7148](https://github.com/openshift/installer/pull/7148) * [OCPBUGS-12749](https://issues.redhat.com/browse/OCPBUGS-12749): [Alibaba] update the bandwidth value of EIP [#7131](https://github.com/openshift/installer/pull/7131) * [OCPBUGS-7400](https://issues.redhat.com/browse/OCPBUGS-7400): Check for AWS STS installation before trying to get all IAM Roles [#7141](https://github.com/openshift/installer/pull/7141) * [OCPBUGS-11360](https://issues.redhat.com/browse/OCPBUGS-11360): Use 100 GB as minimum disk size in validations [#7065](https://github.com/openshift/installer/pull/7065) * [OCPBUGS-11662](https://issues.redhat.com/browse/OCPBUGS-11662): AWS - Remove ACLs from s3 ign [#7084](https://github.com/openshift/installer/pull/7084) * [OCPBUGS-11208](https://issues.redhat.com/browse/OCPBUGS-11208): GCP: add europe-west12 region to the survey as supported region [#7055](https://github.com/openshift/installer/pull/7055) * [OCPBUGS-11108](https://issues.redhat.com/browse/OCPBUGS-11108): Kubelet Client Cert should include system:serviceaccounts group [#7050](https://github.com/openshift/installer/pull/7050) * [OCPBUGS-8384](https://issues.redhat.com/browse/OCPBUGS-8384): Specify filename for default registries.conf [#6941](https://github.com/openshift/installer/pull/6941) * [OCPBUGS-10904](https://issues.redhat.com/browse/OCPBUGS-10904): IBMCloud: Fix SSH Private bootstrap [#7028](https://github.com/openshift/installer/pull/7028) * [OCPBUGS-10905](https://issues.redhat.com/browse/OCPBUGS-10905): IBMCloud set dnsrecords offset [#7029](https://github.com/openshift/installer/pull/7029) * [OCPBUGS-10740](https://issues.redhat.com/browse/OCPBUGS-10740): bump RHCOS 4.12 bootimage metadata [#7019](https://github.com/openshift/installer/pull/7019) * [OCPBUGS-7481](https://issues.redhat.com/browse/OCPBUGS-7481): Fix file check for loading openshift manifests [#6907](https://github.com/openshift/installer/pull/6907) * [OCPBUGS-10497](https://issues.redhat.com/browse/OCPBUGS-10497): [release-4.12] aws: bump aws-sdk-go version [#6985](https://github.com/openshift/installer/pull/6985) * [OCPBUGS-10439](https://issues.redhat.com/browse/OCPBUGS-10439): Sort userTags in Machine and Machineset manifests [#6984](https://github.com/openshift/installer/pull/6984) * [OCPBUGS-7469](https://issues.redhat.com/browse/OCPBUGS-7469): [release-4.12] GCP XPN Featuregates [#6851](https://github.com/openshift/installer/pull/6851) * [OCPBUGS-7063](https://issues.redhat.com/browse/OCPBUGS-7063): vSphere - Remove regexs in terraform ova import [#6868](https://github.com/openshift/installer/pull/6868) * [OCPBUGS-8658](https://issues.redhat.com/browse/OCPBUGS-8658): Pass Capabilites from install-config to cluster [#6947](https://github.com/openshift/installer/pull/6947) * [OCPBUGS-7594](https://issues.redhat.com/browse/OCPBUGS-7594): fully qualified username must be provided [#6864](https://github.com/openshift/installer/pull/6864) * [OCPBUGS-7746](https://issues.redhat.com/browse/OCPBUGS-7746): Convert platform type for AgentClusterInstall [#6878](https://github.com/openshift/installer/pull/6878) * [OCPBUGS-8015](https://issues.redhat.com/browse/OCPBUGS-8015): make VIP 168.63.129.16 noProxy in all clouds except Public [#6909](https://github.com/openshift/installer/pull/6909) * [OCPBUGS-6087](https://issues.redhat.com/browse/OCPBUGS-6087): Warn if agent assets detected when using non-agent waitfor [#6788](https://github.com/openshift/installer/pull/6788) * [OCPBUGS-7607](https://issues.redhat.com/browse/OCPBUGS-7607): IBMCloud: Handle COS reclamations [#6867](https://github.com/openshift/installer/pull/6867) * [OCPBUGS-7529](https://issues.redhat.com/browse/OCPBUGS-7529): bump RHCOS 4.12 bootimage metadata [#6873](https://github.com/openshift/installer/pull/6873) * [OCPBUGS-7521](https://issues.redhat.com/browse/OCPBUGS-7521): Update AgentConfig template [#6857](https://github.com/openshift/installer/pull/6857) * [OCPBUGS-5992](https://issues.redhat.com/browse/OCPBUGS-5992): azure: validate Windows-only VM types [#6780](https://github.com/openshift/installer/pull/6780) * [OCPBUGS-6991](https://issues.redhat.com/browse/OCPBUGS-6991): Don't require vSphere details for agent installer [#6826](https://github.com/openshift/installer/pull/6826) * [OCPBUGS-6807](https://issues.redhat.com/browse/OCPBUGS-6807): Check platform baremetal settings against default values [#6815](https://github.com/openshift/installer/pull/6815) * [OCPBUGS-7103](https://issues.redhat.com/browse/OCPBUGS-7103): Set the configured proxy settings for agent installer [#6830](https://github.com/openshift/installer/pull/6830) * [OCPBUGS-7131](https://issues.redhat.com/browse/OCPBUGS-7131): bootstrap: set 0644 mode for registries.conf [#6804](https://github.com/openshift/installer/pull/6804) * [OCPBUGS-5960](https://issues.redhat.com/browse/OCPBUGS-5960): bump RHCOS 4.12 bootimage metadata [#6791](https://github.com/openshift/installer/pull/6791) * [OCPBUGS-5996](https://issues.redhat.com/browse/OCPBUGS-5996): vsphere: set default resource pool when missing failure domain topology [#6781](https://github.com/openshift/installer/pull/6781) * [OCPBUGS-5667](https://issues.redhat.com/browse/OCPBUGS-5667): CVE-2021-4238: goutils: update for randomness fix [#6764](https://github.com/openshift/installer/pull/6764) * [OCPBUGS-5782](https://issues.redhat.com/browse/OCPBUGS-5782): CVE-2021-4235: Denial of Service in go-yaml [#6769](https://github.com/openshift/installer/pull/6769) * [OCPBUGS-6052](https://issues.redhat.com/browse/OCPBUGS-6052): validate additional confidential VM types [#6785](https://github.com/openshift/installer/pull/6785) * [OCPBUGS-4895](https://issues.redhat.com/browse/OCPBUGS-4895): Set ip=dhcp,dhcp6 for master nodes on dualstack [#6706](https://github.com/openshift/installer/pull/6706) * [OCPBUGS-6015](https://issues.redhat.com/browse/OCPBUGS-6015): fail to create install-config.yaml as apiVIP and ingress VIP are not in machine networks [#6783](https://github.com/openshift/installer/pull/6783) * [OCPBUGS-5844](https://issues.redhat.com/browse/OCPBUGS-5844): Update FCOS to latest 37.20221127.3.0 stable [#6773](https://github.com/openshift/installer/pull/6773) * [OCPBUGS-5764](https://issues.redhat.com/browse/OCPBUGS-5764): Expose Azure useImageGallery parameter in the MachineSets() call [#6753](https://github.com/openshift/installer/pull/6753) * [OCPBUGS-4460](https://issues.redhat.com/browse/OCPBUGS-4460): hold bootkube service until bootstrap has pivoted [#6661](https://github.com/openshift/installer/pull/6661) * [OCPBUGS-5513](https://issues.redhat.com/browse/OCPBUGS-5513): Update Azure SDK to v63.1.0+incompatible [release-4.12] [#6751](https://github.com/openshift/installer/pull/6751) * [OCPBUGS-4649](https://issues.redhat.com/browse/OCPBUGS-4649): Report agent installation problems on the console [#6680](https://github.com/openshift/installer/pull/6680) * [OCPBUGS-5455](https://issues.redhat.com/browse/OCPBUGS-5455): Remove order dependency for agent CLI string [#6748](https://github.com/openshift/installer/pull/6748) * [OCPBUGS-4962](https://issues.redhat.com/browse/OCPBUGS-4962): Improve error reporting from agent wait-for install-complete [#6742](https://github.com/openshift/installer/pull/6742) * [OCPBUGS-4886](https://issues.redhat.com/browse/OCPBUGS-4886): Switch back to gp2 ebs volume type for bootstrap instance [#6705](https://github.com/openshift/installer/pull/6705) * [OCPBUGS-5190](https://issues.redhat.com/browse/OCPBUGS-5190): baremetal: Extra time for provisioning interface [#6732](https://github.com/openshift/installer/pull/6732) * [OCPBUGS-4943](https://issues.redhat.com/browse/OCPBUGS-4943): Wait longer for VM to obtain IP from DHCP in PowerVS [#6709](https://github.com/openshift/installer/pull/6709) * [OCPBUGS-3899](https://issues.redhat.com/browse/OCPBUGS-3899): [Alibaba] fix the creation of public record [#6605](https://github.com/openshift/installer/pull/6605) * [OCPBUGS-4962](https://issues.redhat.com/browse/OCPBUGS-4962): Wait longer for baremetal [#6713](https://github.com/openshift/installer/pull/6713) * [OCPBUGS-5035](https://issues.redhat.com/browse/OCPBUGS-5035): ose-installer-container: vault: insufficient certificate revocation list checking [#6722](https://github.com/openshift/installer/pull/6722) * [OCPBUGS-4869](https://issues.redhat.com/browse/OCPBUGS-4869): aws: destroy: delete ELB listeners [#6702](https://github.com/openshift/installer/pull/6702) * [OCPBUGS-5019](https://issues.redhat.com/browse/OCPBUGS-5019): OpenStack: Force JSON content-type in Swift object listing [#6718](https://github.com/openshift/installer/pull/6718) * [OCPBUGS-2997](https://issues.redhat.com/browse/OCPBUGS-2997): bump RHCOS 4.12 bootimage metadata [#6704](https://github.com/openshift/installer/pull/6704) * [OCPBUGS-3890](https://issues.redhat.com/browse/OCPBUGS-3890): IBMCloud: Confirm Zones and BYON Subnets [#6603](https://github.com/openshift/installer/pull/6603) * [OCPBUGS-3639](https://issues.redhat.com/browse/OCPBUGS-3639): Azure: Set appropriate architecture for gen v1 image [#6588](https://github.com/openshift/installer/pull/6588) * [OCPBUGS-4698](https://issues.redhat.com/browse/OCPBUGS-4698): Check nmstateconfig content in agent-config.yaml [#6687](https://github.com/openshift/installer/pull/6687) * [OCPBUGS-4547](https://issues.redhat.com/browse/OCPBUGS-4547): out-of-bounds read in golang.org/x/text/language leads to DoS [#6650](https://github.com/openshift/installer/pull/6650) * [OCPBUGS-4660](https://issues.redhat.com/browse/OCPBUGS-4660): Fix missing debug messages when getting baseISO [#6682](https://github.com/openshift/installer/pull/6682) * Alibaba: add the tags of the machine nodes [#6667](https://github.com/openshift/installer/pull/6667) * image: Updating installer images to be consistent with ART [#6658](https://github.com/openshift/installer/pull/6658) * [OCPBUGS-4506](https://issues.redhat.com/browse/OCPBUGS-4506): Enable CVO unmanage overrides in bootstrap-in-place installations [#6664](https://github.com/openshift/installer/pull/6664) * [OCPBUGS-4457](https://issues.redhat.com/browse/OCPBUGS-4457): Fix return value from execute() [#6659](https://github.com/openshift/installer/pull/6659) * [OCPBUGS-4342](https://issues.redhat.com/browse/OCPBUGS-4342): data: azurerm: restore RHCOS SA access configuration [#6645](https://github.com/openshift/installer/pull/6645) * [OCPBUGS-3249](https://issues.redhat.com/browse/OCPBUGS-3249): update golang.org/x/crypto to address security vulnerabilities [#6631](https://github.com/openshift/installer/pull/6631) * [OCPBUGS-4267](https://issues.redhat.com/browse/OCPBUGS-4267): Azure Stack: use managed images for compute nodes [#6639](https://github.com/openshift/installer/pull/6639) * [OCPBUGS-4308](https://issues.redhat.com/browse/OCPBUGS-4308): Redact pull secret from agent-gather [#6640](https://github.com/openshift/installer/pull/6640) * [OCPBUGS-4068](https://issues.redhat.com/browse/OCPBUGS-4068): (Agent) Do not require host data in platform baremetal section in installconfig [#6623](https://github.com/openshift/installer/pull/6623) * [OCPBUGS-4064](https://issues.redhat.com/browse/OCPBUGS-4064): Restart create-cluster-and-infraenv.service if it fails [#6622](https://github.com/openshift/installer/pull/6622) * [OCPBUGS-3657](https://issues.redhat.com/browse/OCPBUGS-3657): Uplift terraform-provider-ironic to 0.3.0 [#6592](https://github.com/openshift/installer/pull/6592) * [OCPBUGS-4063](https://issues.redhat.com/browse/OCPBUGS-4063): OpenStack: Force JSON content-type in Swift [#6621](https://github.com/openshift/installer/pull/6621) * [OCPBUGS-3055](https://issues.redhat.com/browse/OCPBUGS-3055): add bootstrap configmap during the SNO reboot [#6555](https://github.com/openshift/installer/pull/6555) * [OCPBUGS-3523](https://issues.redhat.com/browse/OCPBUGS-3523): Pass FeatureSet to cluster config render [#6590](https://github.com/openshift/installer/pull/6590) * [OCPBUGS-3406](https://issues.redhat.com/browse/OCPBUGS-3406): Use project after creation [#6575](https://github.com/openshift/installer/pull/6575) * [OCPBUGS-3307](https://issues.redhat.com/browse/OCPBUGS-3307): gcp: fail during validation if service usage is not enabled [#6565](https://github.com/openshift/installer/pull/6565) * [OCPBUGS-3515](https://issues.redhat.com/browse/OCPBUGS-3515): (AGENT) only support amd64 archs [#6580](https://github.com/openshift/installer/pull/6580) * [OCPBUGS-3520](https://issues.redhat.com/browse/OCPBUGS-3520): Automatically retry install [#6582](https://github.com/openshift/installer/pull/6582) * [OCPBUGS-3519](https://issues.redhat.com/browse/OCPBUGS-3519): Always use first matching mirror in assisted-service [#6581](https://github.com/openshift/installer/pull/6581) * [OCPBUGS-3459](https://issues.redhat.com/browse/OCPBUGS-3459): Always add router CAs to kubeconfig, even if console is not available [#6578](https://github.com/openshift/installer/pull/6578) * [OCPBUGS-3250](https://issues.redhat.com/browse/OCPBUGS-3250): azure: Fix client certs authentication [#6561](https://github.com/openshift/installer/pull/6561) * [OCPBUGS-3398](https://issues.redhat.com/browse/OCPBUGS-3398): Fix cluster wide proxy [#6587](https://github.com/openshift/installer/pull/6587) * [OCPBUGS-3366](https://issues.redhat.com/browse/OCPBUGS-3366): Set PublicContainerRegistries for entries in mirror [#6568](https://github.com/openshift/installer/pull/6568) * [OCPBUGS-3306](https://issues.redhat.com/browse/OCPBUGS-3306): agent ased installation fix for dual stack vips [#6564](https://github.com/openshift/installer/pull/6564) * [OCPBUGS-3095](https://issues.redhat.com/browse/OCPBUGS-3095): Power VS Check for existing DNS permitted network and public gateway [#6550](https://github.com/openshift/installer/pull/6550) * [OCPBUGS-3035](https://issues.redhat.com/browse/OCPBUGS-3035): support multiple documents in the same extra manifest file [#6549](https://github.com/openshift/installer/pull/6549) * [OCPBUGS-3343](https://issues.redhat.com/browse/OCPBUGS-3343): [vsphere-zones] Fix user folders [#6566](https://github.com/openshift/installer/pull/6566) * [OCPBUGS-3263](https://issues.redhat.com/browse/OCPBUGS-3263): Static linking the terraform and providers binaries [#6562](https://github.com/openshift/installer/pull/6562) * [OCPBUGS-2984](https://issues.redhat.com/browse/OCPBUGS-2984): Azure: Fix DiskEncryptionSet regex validation [#6538](https://github.com/openshift/installer/pull/6538) * [OCPBUGS-3028](https://issues.redhat.com/browse/OCPBUGS-3028): Use result from List function after checking error [#6543](https://github.com/openshift/installer/pull/6543) * [AGENT-348](https://issues.redhat.com/browse/AGENT-348): Warn when information in install-config is ignored [#6523](https://github.com/openshift/installer/pull/6523) * [OCPBUGS-2837](https://issues.redhat.com/browse/OCPBUGS-2837): Reduce debug logs in agent wait-for commands [#6520](https://github.com/openshift/installer/pull/6520) * Fix unexpected behavior from merging #6470 and #6500 [#6526](https://github.com/openshift/installer/pull/6526) * [AGENT-390](https://issues.redhat.com/browse/AGENT-390): Include CPU Architecture in ISO filename [#6485](https://github.com/openshift/installer/pull/6485) * docs: feature sets [#6506](https://github.com/openshift/installer/pull/6506) * Agent-321: Cluster and Host validations rework [#6500](https://github.com/openshift/installer/pull/6500) * [OCPBUGS-2327](https://issues.redhat.com/browse/OCPBUGS-2327): Add validation for releaseImage and registry.conf [#6423](https://github.com/openshift/installer/pull/6423) * [OCPBUGS-2086](https://issues.redhat.com/browse/OCPBUGS-2086): Detect failure in wait-for on transition back to ready [#6470](https://github.com/openshift/installer/pull/6470) * [OCPBUGS-2627](https://issues.redhat.com/browse/OCPBUGS-2627): agent-config: Generate missing AdditionalNTPSources in InfraEnv [#6495](https://github.com/openshift/installer/pull/6495) * [OCPBUGS-2338](https://issues.redhat.com/browse/OCPBUGS-2338): Don't use error messages as default values [#6486](https://github.com/openshift/installer/pull/6486) * [OCPBUGS-1824](https://issues.redhat.com/browse/OCPBUGS-1824): enhance agent systemd service dependency [#6408](https://github.com/openshift/installer/pull/6408) * [OCPBUGS-1704](https://issues.redhat.com/browse/OCPBUGS-1704): Service Usage API is required, not optional [#6504](https://github.com/openshift/installer/pull/6504) * Revert "create: add check for cluster operator stability" [#6503](https://github.com/openshift/installer/pull/6503) * [OCPBUGS-2301](https://issues.redhat.com/browse/OCPBUGS-2301): Search Network Project For resources [#6499](https://github.com/openshift/installer/pull/6499) * [OCPBUGS-2436](https://issues.redhat.com/browse/OCPBUGS-2436): Revert "Revert "[AWS] Add LB Type in the infrastructure cluster object via install-config yaml"" and fix OCPBUGS-2436 [#6491](https://github.com/openshift/installer/pull/6491) * [OCPBUGS-2174](https://issues.redhat.com/browse/OCPBUGS-2174): fix metadata tags not supported in certain regions [#6475](https://github.com/openshift/installer/pull/6475) * Add initial support for OKD/SCOS [#6443](https://github.com/openshift/installer/pull/6443) * Updating golang version to fix gofmt issues [#6484](https://github.com/openshift/installer/pull/6484) * [Bug 2117537](https://bugzilla.redhat.com/show_bug.cgi?id=2117537): validation rule for invalid rendezvousIP in AgentConfig [#6474](https://github.com/openshift/installer/pull/6474) * create: add check for cluster operator stability [#6124](https://github.com/openshift/installer/pull/6124) * Revert "[AWS] Add LB Type in the infrastructure cluster object via install-config yaml" [#6490](https://github.com/openshift/installer/pull/6490) * Add LB Type in the infrastructure cluster object via install-config yaml [#6478](https://github.com/openshift/installer/pull/6478) * [Bug 2059491](https://bugzilla.redhat.com/show_bug.cgi?id=2059491): [Alibaba] fix the format of Name [#5668](https://github.com/openshift/installer/pull/5668) * [AGENT-284](https://issues.redhat.com/browse/AGENT-284): Allow user to choose platform type [#6438](https://github.com/openshift/installer/pull/6438) * [OCPBUGS-2262](https://issues.redhat.com/browse/OCPBUGS-2262): Update gcp explain for DNS zones [#6483](https://github.com/openshift/installer/pull/6483) * [OCPBUGS-1941](https://issues.redhat.com/browse/OCPBUGS-1941): bump RHCOS 4.12 bootimage metadata [#6452](https://github.com/openshift/installer/pull/6452) * [Bug 2072202](https://bugzilla.redhat.com/show_bug.cgi?id=2072202): Check for api and api-int resolution during cluster install [#5816](https://github.com/openshift/installer/pull/5816) * [OCPBUGS-2259](https://issues.redhat.com/browse/OCPBUGS-2259): Fix soft-anti-affinity known issue [#6479](https://github.com/openshift/installer/pull/6479) * Removing jstuever from OWNERS [#6480](https://github.com/openshift/installer/pull/6480) * [OCPBUGS-1881](https://issues.redhat.com/browse/OCPBUGS-1881): vsphere/destroy: improve logs when folder is not empty [#6456](https://github.com/openshift/installer/pull/6456) * Adding "syd05" as a choice for zones in PowerVS [#6468](https://github.com/openshift/installer/pull/6468) * [OCPBUGS-1856](https://issues.redhat.com/browse/OCPBUGS-1856): IBMCloud: Allow traffic to kube-api-lb [#6458](https://github.com/openshift/installer/pull/6458) * update to release.openshift.io/feature-set to match OCP 4.12 [#6476](https://github.com/openshift/installer/pull/6476) * [AGENT-347](https://issues.redhat.com/browse/AGENT-347): generate OS_IMAGES dynamically [#6441](https://github.com/openshift/installer/pull/6441) * [OCPBUGS-1900](https://issues.redhat.com/browse/OCPBUGS-1900): Avoid SNO bootstrap jsonpath error [#6463](https://github.com/openshift/installer/pull/6463) * [OCPBUGS-1698](https://issues.redhat.com/browse/OCPBUGS-1698): multi-zone network slice validation [#6422](https://github.com/openshift/installer/pull/6422) * [OCPBUGSM-47893](https://issues.redhat.com/browse/OCPBUGSM-47893): added validation rule for invalid mac address in AgentConfig [#6473](https://github.com/openshift/installer/pull/6473) * populate vSphere infrastructure spec [#6457](https://github.com/openshift/installer/pull/6457) * [OCPBUGS-1896](https://issues.redhat.com/browse/OCPBUGS-1896): Validate Credentials Mode After Install Config step [#6453](https://github.com/openshift/installer/pull/6453) * [OCPBUGS-2029](https://issues.redhat.com/browse/OCPBUGS-2029): Fix agent installation InstallConfig proxy processing [#6461](https://github.com/openshift/installer/pull/6461) * Add docs about IPv6 on the additional Networks [#6435](https://github.com/openshift/installer/pull/6435) * [AGENT-375](https://issues.redhat.com/browse/AGENT-375): generate FIPS annotation for ACI [#6467](https://github.com/openshift/installer/pull/6467) * [AGENT-349](https://issues.redhat.com/browse/AGENT-349): Allow console login to Agent ISO [#6464](https://github.com/openshift/installer/pull/6464) * [OCPBUGS-1913](https://issues.redhat.com/browse/OCPBUGS-1913): Agent Installer: Do not fail on deprecated apiVip and ingressVip values [#6462](https://github.com/openshift/installer/pull/6462) * Power VS: Disconnected cluster support [#6347](https://github.com/openshift/installer/pull/6347) * azure: create bootimages using image gallery [#6304](https://github.com/openshift/installer/pull/6304) * CORS 2046: GCP Add base domain validation when DNS zone is specified [#6300](https://github.com/openshift/installer/pull/6300) * Fixes tested_instance_types_aarch64.md [#6451](https://github.com/openshift/installer/pull/6451) * pkg/types: add feature set support [#6336](https://github.com/openshift/installer/pull/6336) * pkg/asset/releaseimage/pullspec: Include override pullspec in log message [#6460](https://github.com/openshift/installer/pull/6460) * [Bug 2104997](https://bugzilla.redhat.com/show_bug.cgi?id=2104997): Add additional fields to proxy manifest [#6374](https://github.com/openshift/installer/pull/6374) * [OCPBUGS-527](https://issues.redhat.com/browse/OCPBUGS-527): Improve error message in case of failure during the agent image generation [#6436](https://github.com/openshift/installer/pull/6436) * [AGENT-271](https://issues.redhat.com/browse/AGENT-271): Generate kubeadmin-password with ISO [#6313](https://github.com/openshift/installer/pull/6313) * AWS: destroy: move helper functions to their own file [#6131](https://github.com/openshift/installer/pull/6131) * [AGENT-369](https://issues.redhat.com/browse/AGENT-369): SNO validation [#6444](https://github.com/openshift/installer/pull/6444) * Add host-config status to agent-gather [#6442](https://github.com/openshift/installer/pull/6442) * [AGENT-321](https://issues.redhat.com/browse/AGENT-321): Move validation failures to debug log level [#6446](https://github.com/openshift/installer/pull/6446) * [CORS-2073](https://issues.redhat.com/browse/CORS-2073): Remove terraform provider "random" [#6387](https://github.com/openshift/installer/pull/6387) * Increase start timeouts for assisted services [#6445](https://github.com/openshift/installer/pull/6445) * [OCPBUGS-891](https://issues.redhat.com/browse/OCPBUGS-891): aws: add explicit EIP dependency for nat gw [#6379](https://github.com/openshift/installer/pull/6379) * images: UPI: update gcloud install on rhel8 container [#6158](https://github.com/openshift/installer/pull/6158) * [OCPBUGS-1490](https://issues.redhat.com/browse/OCPBUGS-1490): [vsphere-zones] Handle no set zones [#6390](https://github.com/openshift/installer/pull/6390) * powervs: introduce manifest for OVNKubernetes configuration [#6405](https://github.com/openshift/installer/pull/6405) * Power VS: Enable IBM DNS service for private cluster support [#6228](https://github.com/openshift/installer/pull/6228) * [AGENT-264](https://issues.redhat.com/browse/AGENT-264): validate agent-config macs [#6434](https://github.com/openshift/installer/pull/6434) * Ensure installer created ControlPlaneMachineSets are active on install [#6425](https://github.com/openshift/installer/pull/6425) * [AGENT-330](https://issues.redhat.com/browse/AGENT-330): Add disconnected instructions to MCE integration doc [#6424](https://github.com/openshift/installer/pull/6424) * [OCPBUGS-561](https://issues.redhat.com/browse/OCPBUGS-561): bump RHCOS 4.12 bootimage metadata [#6403](https://github.com/openshift/installer/pull/6403) * Remove extra blank line in DHCP debugging [#6439](https://github.com/openshift/installer/pull/6439) * Change PowerVS default machine CIDR [#6428](https://github.com/openshift/installer/pull/6428) * Change error on execute() to a debug message [#6427](https://github.com/openshift/installer/pull/6427) * fix agent-config-template emitted by `agent create` [#6306](https://github.com/openshift/installer/pull/6306) * CORS 2040: [gcp] Adding Public and Private Managed zones [#6288](https://github.com/openshift/installer/pull/6288) * [Bug 2116904](https://bugzilla.redhat.com/show_bug.cgi?id=2116904): Base generated NMStateConfig on InstallConfig name [#6244](https://github.com/openshift/installer/pull/6244) * [AGENT-354](https://issues.redhat.com/browse/AGENT-354): script for gathering install data [#6402](https://github.com/openshift/installer/pull/6402) * [AGENT-364](https://issues.redhat.com/browse/AGENT-364): Validate network type for SNO clusters [#6419](https://github.com/openshift/installer/pull/6419) * cleanup unused types and constants after platform spec refactor [#6370](https://github.com/openshift/installer/pull/6370) * [AGENT-351](https://issues.redhat.com/browse/AGENT-351): Add MachineNetwork to agent-cluster-install for dual stack [#6364](https://github.com/openshift/installer/pull/6364) * [AGENT-319](https://issues.redhat.com/browse/AGENT-319): Set agent-config version to v1beta1 [#6416](https://github.com/openshift/installer/pull/6416) * [OCPBUGS-816](https://issues.redhat.com/browse/OCPBUGS-816): Check that cached base ISP matches hash in release payload [#6318](https://github.com/openshift/installer/pull/6318) * [AGENT-365](https://issues.redhat.com/browse/AGENT-365): Set install invoker to "agent-installer" [#6418](https://github.com/openshift/installer/pull/6418) * [Bug 2055247](https://bugzilla.redhat.com/show_bug.cgi?id=2055247): pkg/asset/installconfig/azure: standardDDv5Family is not currently supported [#6203](https://github.com/openshift/installer/pull/6203) * Verifying yq is installed properly in libvirt installer containers [#6319](https://github.com/openshift/installer/pull/6319) * Agent installer: try to make systemd services more robust [#6312](https://github.com/openshift/installer/pull/6312) * [OCPBUGSM-47737](https://issues.redhat.com/browse/OCPBUGSM-47737): Do not enable pre-network-manager-config.service [#6323](https://github.com/openshift/installer/pull/6323) * Add documentation for agent networking [#6400](https://github.com/openshift/installer/pull/6400) * vsphere: prevent duplicate validation check in multi-zone [#6398](https://github.com/openshift/installer/pull/6398) * AGENT-288 Log rendezvous host IP when creating agent ISO [#6393](https://github.com/openshift/installer/pull/6393) * AGENT-309 Display the rendezvous IP in motd and issue [#6386](https://github.com/openshift/installer/pull/6386) * Agent: Don't pass AdminKubeConfigClientCertKey [#6373](https://github.com/openshift/installer/pull/6373) * hack: Use golang-1.16 image of origin-release [#6367](https://github.com/openshift/installer/pull/6367) * [OCPBUGS-1231](https://issues.redhat.com/browse/OCPBUGS-1231): disconnected machine-os-images info [#6339](https://github.com/openshift/installer/pull/6339) * AGENT-325 Set NetworkType in AgentClusterInstall [#6287](https://github.com/openshift/installer/pull/6287) * [Bug 2094716](https://bugzilla.redhat.com/show_bug.cgi?id=2094716): docs: fully air-gapped AWS IPI install [#6076](https://github.com/openshift/installer/pull/6076) * [OCPBUGS-1489](https://issues.redhat.com/browse/OCPBUGS-1489): [vsphere] Loop over all folders for destroy [#6378](https://github.com/openshift/installer/pull/6378) * AWS: resolve subnet-related FIXMEs [#6140](https://github.com/openshift/installer/pull/6140) * go getter update for terraform & terraform providers [#6352](https://github.com/openshift/installer/pull/6352) * GCP: Add me-west1 region [#6359](https://github.com/openshift/installer/pull/6359) * aws: replace deprecated object in terraform config [#6383](https://github.com/openshift/installer/pull/6383) * powervs-delete-named-dhcp [#6365](https://github.com/openshift/installer/pull/6365) * azure: validation: avoid specifying capabilities twice [#5952](https://github.com/openshift/installer/pull/5952) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add DNS Record for internal public traffic [#6375](https://github.com/openshift/installer/pull/6375) * [OCPBUGS-729](https://issues.redhat.com/browse/OCPBUGS-729): vSphere 6.7u3 failing privilege validation [#6293](https://github.com/openshift/installer/pull/6293) * Agent: Increase bootstrap-complete timeout [#6384](https://github.com/openshift/installer/pull/6384) * aws user tags: set limit == openshift/api [#6368](https://github.com/openshift/installer/pull/6368) * [OCPBUGS-927](https://issues.redhat.com/browse/OCPBUGS-927): azure: add sleep between zone and link creation [#6349](https://github.com/openshift/installer/pull/6349) * Update power-go-client [#6229](https://github.com/openshift/installer/pull/6229) * Fix generating Machine objects for PowerVS [#6366](https://github.com/openshift/installer/pull/6366) * [AGENT-328](https://issues.redhat.com/browse/AGENT-328): Add documentation for agent mce integration [#6358](https://github.com/openshift/installer/pull/6358) * aws: allow clusters with public only subnets [#6342](https://github.com/openshift/installer/pull/6342) * AWS UPI docs: remove control plane machineset [#6346](https://github.com/openshift/installer/pull/6346) * [OCPBUGS-705](https://issues.redhat.com/browse/OCPBUGS-705): vSphere privilege checking failing when providing user-defined folder and/or resource pool [#6281](https://github.com/openshift/installer/pull/6281) * GCP: allow environmental authentication [#6330](https://github.com/openshift/installer/pull/6330) * AGENT: add ipv6 support [#6328](https://github.com/openshift/installer/pull/6328) * [OCPBUGS-1234](https://issues.redhat.com/browse/OCPBUGS-1234): [CFE-580] Fixed error condition for user tag validation [#6356](https://github.com/openshift/installer/pull/6356) * [OCPBUGS-717](https://issues.redhat.com/browse/OCPBUGS-717): Upgrade python3.7 to 3.8 for AWS UPI [#6270](https://github.com/openshift/installer/pull/6270) * [OCPBUGS-963](https://issues.redhat.com/browse/OCPBUGS-963): OpenStack: Lift validation for 14 chars cluster names [#6309](https://github.com/openshift/installer/pull/6309) * [OCPBUGS-1234](https://issues.redhat.com/browse/OCPBUGS-1234): [CFE-580] Extend user tags limit to 40 based on AWS limits [#6345](https://github.com/openshift/installer/pull/6345) * [OCPBUGS-1226](https://issues.redhat.com/browse/OCPBUGS-1226): OpenStack UPI: Create server group for Computes [#6340](https://github.com/openshift/installer/pull/6340) * Power VS: use the new name field for the dhcp nw [#6294](https://github.com/openshift/installer/pull/6294) * Add AWS r6i into tested instance types table [#6337](https://github.com/openshift/installer/pull/6337) * vsphere zonal: platform spec and terraform updates [#6329](https://github.com/openshift/installer/pull/6329) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add DNS Service permitted VPC [#6325](https://github.com/openshift/installer/pull/6325) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add DNS Service destroy [#6321](https://github.com/openshift/installer/pull/6321) * [OCPBUGSM-47740](https://issues.redhat.com/browse/OCPBUGSM-47740): No networkconfig needed with DHCP agent config [#6317](https://github.com/openshift/installer/pull/6317) * azure: add support for arm64 instances (Dps_v5 instances) [#6298](https://github.com/openshift/installer/pull/6298) * azure: Add client certification to terraform [#6250](https://github.com/openshift/installer/pull/6250) * pkg/asset/ignition/bootstrap/cvoignore: Add group/kind/name(space) collision detection [#6247](https://github.com/openshift/installer/pull/6247) * Add additionalTrustBundlePolicy field to allow CA bundle propagation [#6232](https://github.com/openshift/installer/pull/6232) * [OCPBUGS-1247](https://issues.redhat.com/browse/OCPBUGS-1247): Restrict CPMS from being created with single node clusters [#6331](https://github.com/openshift/installer/pull/6331) * GCP: Add createFirewallRules parameter to installconfig. [#6338](https://github.com/openshift/installer/pull/6338) * [CORS-2043](https://issues.redhat.com/browse/CORS-2043): GCP: Passsthrough installer service account to Terraform r… [#6326](https://github.com/openshift/installer/pull/6326) * Bump Nutanix Prism Go Client dep to c8a2536 to include refactors. [#6308](https://github.com/openshift/installer/pull/6308) * [OCPBUGS-927](https://issues.redhat.com/browse/OCPBUGS-927): Add depends to enforce order for azure terraform dependencies [#6311](https://github.com/openshift/installer/pull/6311) * vSphere: Zonal Terraform [#6064](https://github.com/openshift/installer/pull/6064) * Terraform go 1.18 [#6257](https://github.com/openshift/installer/pull/6257) * Revert "AWS: Create ControlPlaneMachineSet CRDs" [#6324](https://github.com/openshift/installer/pull/6324) * [OCPBUGS-302](https://issues.redhat.com/browse/OCPBUGS-302): bootstrap gather: fix panic when platform is "none" [#6243](https://github.com/openshift/installer/pull/6243) * Add bind-utils in upi installer image [#6277](https://github.com/openshift/installer/pull/6277) * download 'aliyun' [#6265](https://github.com/openshift/installer/pull/6265) * [AGENT-308](https://issues.redhat.com/browse/AGENT-308): Add 4.12 to OS_IMAGES [#6315](https://github.com/openshift/installer/pull/6315) * [OCPBUGS-889](https://issues.redhat.com/browse/OCPBUGS-889): bump default channel to stable-4.12 [#6302](https://github.com/openshift/installer/pull/6302) * vSphere: Add the ability to attach a tag to a mob [#5357](https://github.com/openshift/installer/pull/5357) * Power VS: Machine CIDR [#6264](https://github.com/openshift/installer/pull/6264) * [AGENT-318](https://issues.redhat.com/browse/AGENT-318): Merge agent-based installer [#6263](https://github.com/openshift/installer/pull/6263) * [CORS-2280](https://issues.redhat.com/browse/CORS-2280): IBMCloud: Add TF support for private DNS [#6282](https://github.com/openshift/installer/pull/6282) * vsphere: error checking while creating vsphere clients [#6305](https://github.com/openshift/installer/pull/6305) * Correct the GCP machine series name [#6296](https://github.com/openshift/installer/pull/6296) * add bind config for PowerVS publish==internal IPI [#6227](https://github.com/openshift/installer/pull/6227) * [Bug 2084471](https://bugzilla.redhat.com/show_bug.cgi?id=2084471): validate baremetal hosts names are lowercase RFC 1123 [#6112](https://github.com/openshift/installer/pull/6112) * terraform: azurerm bump provider to v3.19.1 [#6262](https://github.com/openshift/installer/pull/6262) * Power VS: Enable global routing for cloud connection and specify dns [#6289](https://github.com/openshift/installer/pull/6289) * fix check for control plane suitability for default zones [#6295](https://github.com/openshift/installer/pull/6295) * [Bug 2070744](https://bugzilla.redhat.com/show_bug.cgi?id=2070744): Fix infinite loop when failing to untag resources [#5995](https://github.com/openshift/installer/pull/5995) * AWS: Create ControlPlaneMachineSet CRDs [#6172](https://github.com/openshift/installer/pull/6172) * Add dual stack API & Ingress VIP support for on-prem platforms [#5798](https://github.com/openshift/installer/pull/5798) * OWNER_ALIASES: remove Saqib Ali from the coreos approvers and reviewers [#6291](https://github.com/openshift/installer/pull/6291) * gcp: machines to use networkProjectID when defined [#6284](https://github.com/openshift/installer/pull/6284) * Bump FCOS to latest stable [#6290](https://github.com/openshift/installer/pull/6290) * Switch delete ordering of CloudConnect and VPCs [#6280](https://github.com/openshift/installer/pull/6280) * gcp: specify network_project_id for network and subnets [#6283](https://github.com/openshift/installer/pull/6283) * [Bug 2117439](https://bugzilla.redhat.com/show_bug.cgi?id=2117439): Azure masters should publish on an internal load balancer [#6230](https://github.com/openshift/installer/pull/6230) * Bug OCPBUGS-164: OpenStack: Update Kuryr storage requirements [#6286](https://github.com/openshift/installer/pull/6286) * [CORS-2271](https://issues.redhat.com/browse/CORS-2271): IBMCloud: Add DNS Service support - installconfig [#6255](https://github.com/openshift/installer/pull/6255) * Bug OCPBUGS-164: OpenStack: Set minimum disk of a flavor to 100 GB [#6268](https://github.com/openshift/installer/pull/6268) * validate vSphere privileges [#5741](https://github.com/openshift/installer/pull/5741) * Add support for private DNS server to PowerVS [#6157](https://github.com/openshift/installer/pull/6157) * GCP: Remove firewall rules when providing network project id [#6219](https://github.com/openshift/installer/pull/6219) * GCP: Add missing regions [#6259](https://github.com/openshift/installer/pull/6259) * manifests: Pass the NetworkProjectID to manifests [#6242](https://github.com/openshift/installer/pull/6242) * support for multi-zone/region installation [#5911](https://github.com/openshift/installer/pull/5911) * cmd/openshift-install/create: One shot console access [#5336](https://github.com/openshift/installer/pull/5336) * IBMCloud: Pull in latest openshift/api changes [#6056](https://github.com/openshift/installer/pull/6056) * [OCPBUGS-268](https://issues.redhat.com/browse/OCPBUGS-268): vSphere - enable steal time accounting [#6215](https://github.com/openshift/installer/pull/6215) * [Bug 2028474](https://bugzilla.redhat.com/show_bug.cgi?id=2028474): oVirt: Removed cluster name length limitation [#6206](https://github.com/openshift/installer/pull/6206) * gcp: Add validation for Network Project Data [#6207](https://github.com/openshift/installer/pull/6207) * [Bug 2098072](https://bugzilla.redhat.com/show_bug.cgi?id=2098072): vsphere: fix default disk type when not speficied [#6233](https://github.com/openshift/installer/pull/6233) * [Bug 2061947](https://bugzilla.redhat.com/show_bug.cgi?id=2061947): IBMCloud: Handle missing RG [#6152](https://github.com/openshift/installer/pull/6152) * [CORS-1994](https://issues.redhat.com/browse/CORS-1994): Update Installer Dependencies [#6175](https://github.com/openshift/installer/pull/6175) * [Bug 2109538](https://bugzilla.redhat.com/show_bug.cgi?id=2109538): nutanix: allow creating manifests without Prism Central connection [#6149](https://github.com/openshift/installer/pull/6149) * IBMCloud: Use unique mutex for Client retrieval [#6241](https://github.com/openshift/installer/pull/6241) * [OCPBUGS-262](https://issues.redhat.com/browse/OCPBUGS-262): UPI image download govc rate limit failure [#6047](https://github.com/openshift/installer/pull/6047) * Extract the image-references file from the release, pass it to `machine-config-operator` [#6234](https://github.com/openshift/installer/pull/6234) * powervs: allow VPC, Cloud connection, and NW re-use [#6217](https://github.com/openshift/installer/pull/6217) * [Bug 2109800](https://bugzilla.redhat.com/show_bug.cgi?id=2109800): IBMCloud: Allow metrics traffic [#6208](https://github.com/openshift/installer/pull/6208) * IBMCloud: BYON Enablement [#6183](https://github.com/openshift/installer/pull/6183) * IBMCLOUD Power VS: Updated Max and Min machinepool resource limits [#6147](https://github.com/openshift/installer/pull/6147) * GCP: Added user specified tags on control plane instances [#6199](https://github.com/openshift/installer/pull/6199) * Azure Stack UPI Docs: Remove Feature Gate CRs [#5657](https://github.com/openshift/installer/pull/5657) * [Bug 2115790](https://bugzilla.redhat.com/show_bug.cgi?id=2115790): bump RHCOS 4.12 bootimage metadata [#6212](https://github.com/openshift/installer/pull/6212) * terraform: ibmcloud: bump provider version [#6210](https://github.com/openshift/installer/pull/6210) * Revendor with golang 1.18 [#6077](https://github.com/openshift/installer/pull/6077) * Update installer images to use golang 1.18 [#6163](https://github.com/openshift/installer/pull/6163) * GCP: Add networkProjectID parameter to install-config. [#6166](https://github.com/openshift/installer/pull/6166) * powervs: default to tier1 storage [#6211](https://github.com/openshift/installer/pull/6211) * Download `yq` in upi installer containers [#6008](https://github.com/openshift/installer/pull/6008) * Remove LoadBalancer settings from cloud provider config [#5834](https://github.com/openshift/installer/pull/5834) * Add SPLAT members to platform reviewer/approver aliases [#6202](https://github.com/openshift/installer/pull/6202) * Alibaba: Use a static region list [#6178](https://github.com/openshift/installer/pull/6178) * Power VS: Add Montreal as a supported region [#6209](https://github.com/openshift/installer/pull/6209) * OWNERS_ALIASES: Add Adam Piasecki (c4rt0) [#6181](https://github.com/openshift/installer/pull/6181) * Switch libvirt VM's to vnc graphic mode [#6062](https://github.com/openshift/installer/pull/6062) * GCP: Added user specified tags on compute instances in installconfig [#6185](https://github.com/openshift/installer/pull/6185) * [CORS-2009](https://issues.redhat.com/browse/CORS-2009): Update default release image [#6180](https://github.com/openshift/installer/pull/6180) * Fix ineffassign [#4866](https://github.com/openshift/installer/pull/4866) * [Bug 2105933](https://bugzilla.redhat.com/show_bug.cgi?id=2105933): data/data/coreos: update FCOS to 36.20220716.3.1 [#6108](https://github.com/openshift/installer/pull/6108) * [Bug 2114754](https://bugzilla.redhat.com/show_bug.cgi?id=2114754): gather: properly delete serial log dir [#6197](https://github.com/openshift/installer/pull/6197) * tls: only report error if one happened [#6195](https://github.com/openshift/installer/pull/6195) * Updating ose-installer-artifacts images to be consistent with ART [#6096](https://github.com/openshift/installer/pull/6096) * Revert "GCP: Revert Instance Type from N2 to N1" [#6058](https://github.com/openshift/installer/pull/6058) * [CORS-2167](https://issues.redhat.com/browse/CORS-2167): Remove UPI Metal TF references [#6174](https://github.com/openshift/installer/pull/6174) * Change defaultNetworkType to ovn-kubernetes [#6014](https://github.com/openshift/installer/pull/6014) * PowerVS: Add 60 sec wait time after VPC creation. [#6162](https://github.com/openshift/installer/pull/6162) * updated terraform-provider-ovirt [#6169](https://github.com/openshift/installer/pull/6169) * Update vsphere permissions file [#5387](https://github.com/openshift/installer/pull/5387) * Update kube components to v0.24.0 [#6165](https://github.com/openshift/installer/pull/6165) * IBMCloud: BYON Enablement - SG Rule Cleanup [#6143](https://github.com/openshift/installer/pull/6143) * BUG 2105341: Remove required check for control planes in boostrap gather [#6168](https://github.com/openshift/installer/pull/6168) * BUG 2109388: Add AWS S3 Bucket Permissions [#6150](https://github.com/openshift/installer/pull/6150) * added soundcard_enabled field to tf resources for master vms [#6148](https://github.com/openshift/installer/pull/6148) * Update Installer approvers list [#6151](https://github.com/openshift/installer/pull/6151) * IBMCloud: Update RHCOS image for VSI [#6142](https://github.com/openshift/installer/pull/6142) * [Bug 2102324](https://bugzilla.redhat.com/show_bug.cgi?id=2102324): Fix validation errors for instance type [#6127](https://github.com/openshift/installer/pull/6127) * Updating ose-baremetal-installer images to be consistent with ART [#6085](https://github.com/openshift/installer/pull/6085) * As a developer I want to update installer to use propagateUserFlags for GA [#5994](https://github.com/openshift/installer/pull/5994) * terraform: update azure provider to v3 [#6000](https://github.com/openshift/installer/pull/6000) * Azure console logs gathering [#5904](https://github.com/openshift/installer/pull/5904) * OWNERS_ALIASES: drop miabbott from coreos aliases [#6123](https://github.com/openshift/installer/pull/6123) * Gcp console logs gathering [#5902](https://github.com/openshift/installer/pull/5902) * IBMCloud: BYON Enablement - Terraform [#6051](https://github.com/openshift/installer/pull/6051) * [Bug 2095323](https://bugzilla.redhat.com/show_bug.cgi?id=2095323): Create security group rules for each MachineNetwork CIDR [#6125](https://github.com/openshift/installer/pull/6125) * [Bug 2106061](https://bugzilla.redhat.com/show_bug.cgi?id=2106061): bump RHCOS 4.12 bootimage metadata [#6129](https://github.com/openshift/installer/pull/6129) * test: use `T.TempDir` to create temporary test directory [#5730](https://github.com/openshift/installer/pull/5730) * IBMCloud: BYON Enablement - InstallConfig [#6050](https://github.com/openshift/installer/pull/6050) * [Bug 2097691](https://bugzilla.redhat.com/show_bug.cgi?id=2097691): vsphere installconfig: use full dc path in network validation [#6105](https://github.com/openshift/installer/pull/6105) * Terraform: Remove azureprivatedns provider [#5983](https://github.com/openshift/installer/pull/5983) * Update OWENRS-ALIASES after changes in the team [#6113](https://github.com/openshift/installer/pull/6113) * [Bug 2106667](https://bugzilla.redhat.com/show_bug.cgi?id=2106667): OpenStack UPI: Allow setting external DNS [#6116](https://github.com/openshift/installer/pull/6116) * [Bug 2061947](https://bugzilla.redhat.com/show_bug.cgi?id=2061947): IBMCloud: Skip DNS Record delete [#6013](https://github.com/openshift/installer/pull/6013) * [Bug 2102228](https://bugzilla.redhat.com/show_bug.cgi?id=2102228): rhcos: Move to rhcos.mirror.openshift.com [#6109](https://github.com/openshift/installer/pull/6109) * [Bug 2082395](https://bugzilla.redhat.com/show_bug.cgi?id=2082395): Make azure baseDomainResoureGroup optional for private c… [#6049](https://github.com/openshift/installer/pull/6049) * cmd/openshift-install/gather: Errorf for Available=False [#5985](https://github.com/openshift/installer/pull/5985) * [Bug 2070318](https://bugzilla.redhat.com/show_bug.cgi?id=2070318): Allow setting bootstrap kubelet ip [#6042](https://github.com/openshift/installer/pull/6042) * Updating ose-installer images to be consistent with ART [#6083](https://github.com/openshift/installer/pull/6083) * [Bug 2098299](https://bugzilla.redhat.com/show_bug.cgi?id=2098299): Switch to perform normal marshalling with unknown fields [#6039](https://github.com/openshift/installer/pull/6039) * openstack: Update base images [#6082](https://github.com/openshift/installer/pull/6082) * AWS Destroy: Clean up endpoint services [#6089](https://github.com/openshift/installer/pull/6089) * openstack UPI: Remove Swift example, use Glance [#6091](https://github.com/openshift/installer/pull/6091) * [Bug 2104578](https://bugzilla.redhat.com/show_bug.cgi?id=2104578): Remove unnecessary SG rule [#6086](https://github.com/openshift/installer/pull/6086) * [Bug 2090836](https://bugzilla.redhat.com/show_bug.cgi?id=2090836): Fixes CFE-489 - AWS installer should go through proxy for s3 bootstrap ignition call [#5973](https://github.com/openshift/installer/pull/5973) * OpenStack: prompt FIP description [#6075](https://github.com/openshift/installer/pull/6075) * [Bug 1944365](https://bugzilla.redhat.com/show_bug.cgi?id=1944365): openstack: validate that VIPs are outside DHCP pools [#6069](https://github.com/openshift/installer/pull/6069) * openstack UPI: clarify naming of RHCOS image [#6081](https://github.com/openshift/installer/pull/6081) * [Bug 2102324](https://bugzilla.redhat.com/show_bug.cgi?id=2102324): Fix panic when unknown region is provided. [#6065](https://github.com/openshift/installer/pull/6065) * [Bug 2103144](https://bugzilla.redhat.com/show_bug.cgi?id=2103144): openstack: validate apiVIP and ingressVIP to be semantically different [#6067](https://github.com/openshift/installer/pull/6067) * [Bug 2103236](https://bugzilla.redhat.com/show_bug.cgi?id=2103236): Provide proper error message for empty projects list [#6071](https://github.com/openshift/installer/pull/6071) * BUG 2102632: destroy/gcp: Use min length for destroying disks [#6068](https://github.com/openshift/installer/pull/6068) * [Bug 2099401](https://bugzilla.redhat.com/show_bug.cgi?id=2099401): IBMCloud: Set regional URL for ibmcloud client [#6046](https://github.com/openshift/installer/pull/6046) * openstack: Prepare for a UPI CI job [#6055](https://github.com/openshift/installer/pull/6055) * [Full changelog](https://github.com/openshift/installer/compare/080693d2736ac301bfebf09f83da79cc4cf902d8...798aeaaf61fbc22669b6bad2edc058ea6949d733) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/24a47014aa42d649008687c5bd81771d6477c33c) * [OCPBUGS-21700](https://issues.redhat.com/browse/OCPBUGS-21700): Uplift x/net to v0.17.0 [#200](https://github.com/openshift/cluster-api-provider-baremetal/pull/200) * Updating baremetal-machine-controller images to be consistent with ART [#182](https://github.com/openshift/cluster-api-provider-baremetal/pull/182) * Updating baremetal-machine-controller images to be consistent with ART [#173](https://github.com/openshift/cluster-api-provider-baremetal/pull/173) * Update OWNERS file [#175](https://github.com/openshift/cluster-api-provider-baremetal/pull/175) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/1a6f3aa469970c91987f7025f5204a542839d875...24a47014aa42d649008687c5bd81771d6477c33c) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/9152e200990c26194a70c25033a71583e2775066) * [OCPBUGS-30630](https://issues.redhat.com/browse/OCPBUGS-30630): Do not update instance_info and deploy_interface for active nodes [#338](https://github.com/openshift/baremetal-operator/pull/338) * [OCPBUGS-24490](https://issues.redhat.com/browse/OCPBUGS-24490): backport: Delay delete of detached hosts [#326](https://github.com/openshift/baremetal-operator/pull/326) * [OCPBUGS-23291](https://issues.redhat.com/browse/OCPBUGS-23291): hack for deploying V6-only clusters from dualstack hubs [#320](https://github.com/openshift/baremetal-operator/pull/320) * [OCPBUGS-21154](https://issues.redhat.com/browse/OCPBUGS-21154): Uplift x/net to v0.17.0 [#310](https://github.com/openshift/baremetal-operator/pull/310) * [OCPBUGS-17703](https://issues.redhat.com/browse/OCPBUGS-17703): Trigger reconcile on Secret change [#298](https://github.com/openshift/baremetal-operator/pull/298) * [OCPBUGS-17459](https://issues.redhat.com/browse/OCPBUGS-17459): Set minimum TLS version for webhook to 1.2 [#297](https://github.com/openshift/baremetal-operator/pull/297) * [OCPBUGS-14188](https://issues.redhat.com/browse/OCPBUGS-14188): Deleting unmanaged BMH get stuck fix [#283](https://github.com/openshift/baremetal-operator/pull/283) * [OCPBUGS-13530](https://issues.redhat.com/browse/OCPBUGS-13530): Support /dev/disk/by-path root device hints [#278](https://github.com/openshift/baremetal-operator/pull/278) * [OCPBUGS-12175](https://issues.redhat.com/browse/OCPBUGS-12175): Revert live-iso validation [#269](https://github.com/openshift/baremetal-operator/pull/269) * [OCPBUGS-9955](https://issues.redhat.com/browse/OCPBUGS-9955): allow namespace to continue with terminating when deprovisioning a bmh [#258](https://github.com/openshift/baremetal-operator/pull/258) * Updating ose-baremetal-operator images to be consistent with ART [#243](https://github.com/openshift/baremetal-operator/pull/243) * [OCPBUGS-2210](https://issues.redhat.com/browse/OCPBUGS-2210): Exclude hosts with virtual media from PROVISIONING_LIMIT [#244](https://github.com/openshift/baremetal-operator/pull/244) * [OCPBUGS-1080](https://issues.redhat.com/browse/OCPBUGS-1080): Merge upstream [#242](https://github.com/openshift/baremetal-operator/pull/242) * Merge upstream [#241](https://github.com/openshift/baremetal-operator/pull/241) * Remove upstream release GitHub workflow [#240](https://github.com/openshift/baremetal-operator/pull/240) * Merge upstream [#239](https://github.com/openshift/baremetal-operator/pull/239) * Merge upstream [#238](https://github.com/openshift/baremetal-operator/pull/238) * Updating ose-baremetal-operator images to be consistent with ART [#232](https://github.com/openshift/baremetal-operator/pull/232) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/f7b90bfd5b29699406ce2a925ac124ec44ab373a...9152e200990c26194a70c25033a71583e2775066) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/474ed48e840fdb7bf859d769cd673b29705a7b91) * [OCPBUGS-26930](https://issues.redhat.com/browse/OCPBUGS-26930): Add .snyk file to ignore vendor and test files [#296](https://github.com/openshift/baremetal-runtimecfg/pull/296) * [OCPBUGS-20127](https://issues.redhat.com/browse/OCPBUGS-20127): Increase timeout for bootstrap kubeapi [#279](https://github.com/openshift/baremetal-runtimecfg/pull/279) * [OCPBUGS-18606](https://issues.redhat.com/browse/OCPBUGS-18606): Move haproxy firewall rule check earlier in loop [#272](https://github.com/openshift/baremetal-runtimecfg/pull/272) * [OCPBUGS-17715](https://issues.redhat.com/browse/OCPBUGS-17715): Don't render config with incomplete unicast peer list [#268](https://github.com/openshift/baremetal-runtimecfg/pull/268) * [OCPBUGS-15315](https://issues.redhat.com/browse/OCPBUGS-15315): Use machine-config state instead of comparing roles [#262](https://github.com/openshift/baremetal-runtimecfg/pull/262) * [OCPBUGS-12805](https://issues.redhat.com/browse/OCPBUGS-12805): Make nested dual stack VIP configs respect EnableUnicast [#240](https://github.com/openshift/baremetal-runtimecfg/pull/240) * [OCPBUGS-13405](https://issues.redhat.com/browse/OCPBUGS-13405): Verify kubelet version in upgrade check [#249](https://github.com/openshift/baremetal-runtimecfg/pull/249) * [OCPBUGS-11145](https://issues.redhat.com/browse/OCPBUGS-11145): fix isUpgradeStillRunning() [#232](https://github.com/openshift/baremetal-runtimecfg/pull/232) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): If primary ip address was already created no need to choose new ip [#214](https://github.com/openshift/baremetal-runtimecfg/pull/214) * [OCPBUGS-2512](https://issues.redhat.com/browse/OCPBUGS-2512): Improve IP address sort order for interface selection [#199](https://github.com/openshift/baremetal-runtimecfg/pull/199) * Updating baremetal-runtimecfg images to be consistent with ART [#196](https://github.com/openshift/baremetal-runtimecfg/pull/196) * Run go fmt [#197](https://github.com/openshift/baremetal-runtimecfg/pull/197) * Adding node ip hint for all who want to use it [#185](https://github.com/openshift/baremetal-runtimecfg/pull/185) * [OCPBUGS-669](https://issues.redhat.com/browse/OCPBUGS-669): Empty chosen list when retrying ip selection [#191](https://github.com/openshift/baremetal-runtimecfg/pull/191) * Add list of Node configs to handle multiple VIPs [#176](https://github.com/openshift/baremetal-runtimecfg/pull/176) * [OCPBUGS-669](https://issues.redhat.com/browse/OCPBUGS-669): Apply ipv6 bind check to non-VIP case too [#188](https://github.com/openshift/baremetal-runtimecfg/pull/188) * Updating baremetal-runtimecfg images to be consistent with ART [#184](https://github.com/openshift/baremetal-runtimecfg/pull/184) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/09f56048506bcf0a27a21cc835a799a91a50aab9...474ed48e840fdb7bf859d769cd673b29705a7b91) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/d691257345aeeec951c763e11658a944037f9b39) * [OCPBUGS-30289](https://issues.redhat.com/browse/OCPBUGS-30289): oc adm catalog mirror: use ToSlash and FromSlash to unify the path separators [#1701](https://github.com/openshift/oc/pull/1701) * [OCPBUGS-25642](https://issues.redhat.com/browse/OCPBUGS-25642): Add client version in must-gather summary [#1639](https://github.com/openshift/oc/pull/1639) * [OCPBUGS-24462](https://issues.redhat.com/browse/OCPBUGS-24462): Overwrite template's namespace with the explicit one [#1618](https://github.com/openshift/oc/pull/1618) * [OCPBUGS-23222](https://issues.redhat.com/browse/OCPBUGS-23222): regeneratemco: explicitly check for PlatformStatus field [#1598](https://github.com/openshift/oc/pull/1598) * [OCPBUGS-20248](https://issues.redhat.com/browse/OCPBUGS-20248): oc process: Set original namespace if it differs [#1560](https://github.com/openshift/oc/pull/1560) * [OCPBUGS-20291](https://issues.redhat.com/browse/OCPBUGS-20291): Truncate existing files when writing from inspect [#1563](https://github.com/openshift/oc/pull/1563) * [OCPBUGS-20299](https://issues.redhat.com/browse/OCPBUGS-20299): Use quay redis image instead docker mysql [#1567](https://github.com/openshift/oc/pull/1567) * [OCPBUGS-16173](https://issues.redhat.com/browse/OCPBUGS-16173): Add tls-server-name when property exists in kubeconfig [#1507](https://github.com/openshift/oc/pull/1507) * [OCPBUGS-1283](https://issues.redhat.com/browse/OCPBUGS-1283): Bump golang.org/x dependencies [#1421](https://github.com/openshift/oc/pull/1421) * [OCPBUGS-16056](https://issues.redhat.com/browse/OCPBUGS-16056): mcs cert: account for environments that use IP directly [#1501](https://github.com/openshift/oc/pull/1501) * [OCPBUGS-16194](https://issues.redhat.com/browse/OCPBUGS-16194): reboot: set ignition version to 3.1 [#1509](https://github.com/openshift/oc/pull/1509) * handle the error case of node retrieval while waiting for reboot [#1485](https://github.com/openshift/oc/pull/1485) * bring some cert rotation helpers back into 4.12 [fix unit-tests] [#1478](https://github.com/openshift/oc/pull/1478) * [OCPBUGS-14647](https://issues.redhat.com/browse/OCPBUGS-14647): [release-4.12] Do not set master node selector if there's no masters [#1366](https://github.com/openshift/oc/pull/1366) * [OCPBUGS-14236](https://issues.redhat.com/browse/OCPBUGS-14236): Remove closed centos7 registry from newapp unit tests [#1434](https://github.com/openshift/oc/pull/1434) * [OCPBUGS-10774](https://issues.redhat.com/browse/OCPBUGS-10774): bump repo sclorg/s2i-ruby-container location for newapp test [#1382](https://github.com/openshift/oc/pull/1382) * [OCPBUGS-7960](https://issues.redhat.com/browse/OCPBUGS-7960): pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates [#1354](https://github.com/openshift/oc/pull/1354) * [OCPBUGS-6600](https://issues.redhat.com/browse/OCPBUGS-6600): Fix kube version from 1.24.1 to 1.25.2 [#1327](https://github.com/openshift/oc/pull/1327) * remove support for empty files and stdout in oc registry login [#1277](https://github.com/openshift/oc/pull/1277) * Bump go to 1.19 in go.mod [#1262](https://github.com/openshift/oc/pull/1262) * [Bug 2093046](https://bugzilla.redhat.com/show_bug.cgi?id=2093046): oc debug: Add priorityClassName into node debugging pod template [#1263](https://github.com/openshift/oc/pull/1263) * use correct namespace with sample templates [#1272](https://github.com/openshift/oc/pull/1272) * Do not try to load plugins for cobra commands [#1267](https://github.com/openshift/oc/pull/1267) * [Bug 2078694](https://bugzilla.redhat.com/show_bug.cgi?id=2078694): New-App Using Git via SSH [#1269](https://github.com/openshift/oc/pull/1269) * [OCPBUGS-2495](https://issues.redhat.com/browse/OCPBUGS-2495): pkg/cli/login: Warn, but do not fail, on surprise project-list errors [#1268](https://github.com/openshift/oc/pull/1268) * [IR-262](https://issues.redhat.com/browse/IR-262): Keep manifest list children [#1229](https://github.com/openshift/oc/pull/1229) * oc debug,version: minor todo improvements [#1265](https://github.com/openshift/oc/pull/1265) * pkg/cli/admin/release/extract: Don't print image metadata verification messages when extracting to stdout [#1264](https://github.com/openshift/oc/pull/1264) * pkg/cli/admin/release/extract: Unify extraction cases [#1237](https://github.com/openshift/oc/pull/1237) * OWNERS_ALIASES: Freshen update-approvers [#1260](https://github.com/openshift/oc/pull/1260) * [Bug 2059125](https://bugzilla.redhat.com/show_bug.cgi?id=2059125): release extract: Add binary re-signing for macos arm64 [#1242](https://github.com/openshift/oc/pull/1242) * [Bug 2000554](https://bugzilla.redhat.com/show_bug.cgi?id=2000554): oc inspect: Also gather namespaces in which webhook services are running [#1258](https://github.com/openshift/oc/pull/1258) * add support for --next flag in oc adm release new [#1243](https://github.com/openshift/oc/pull/1243) * oc 4.12 kubernetes 1.25.2 bump [#1250](https://github.com/openshift/oc/pull/1250) * [Bug 2033167](https://bugzilla.redhat.com/show_bug.cgi?id=2033167): oc extract: Create target directory if not exist [#1248](https://github.com/openshift/oc/pull/1248) * Update login.go [#1188](https://github.com/openshift/oc/pull/1188) * Add --overwrite flag into pod security violation error message [#1234](https://github.com/openshift/oc/pull/1234) * [OCPBUGS-613](https://issues.redhat.com/browse/OCPBUGS-613): oc adm logs: generate proper path for static pods [#1231](https://github.com/openshift/oc/pull/1231) * [OCPBUGS-852](https://issues.redhat.com/browse/OCPBUGS-852): cli/debug: Create temporary namespace for node debugging [#1236](https://github.com/openshift/oc/pull/1236) * [Bug 1879980](https://bugzilla.redhat.com/show_bug.cgi?id=1879980): Bump go-ldap module to v3 [#1226](https://github.com/openshift/oc/pull/1226) * Updating openshift-enterprise-deployer images to be consistent with ART [#1200](https://github.com/openshift/oc/pull/1200) * Updating ose-cli-artifacts images to be consistent with ART [#1202](https://github.com/openshift/oc/pull/1202) * Updating openshift-enterprise-cli images to be consistent with ART [#1195](https://github.com/openshift/oc/pull/1195) * [Bug 2087679](https://bugzilla.redhat.com/show_bug.cgi?id=2087679): [inspect] Add EgressQoS to inspect [#1148](https://github.com/openshift/oc/pull/1148) * Updating ose-tools images to be consistent with ART [#1201](https://github.com/openshift/oc/pull/1201) * Give a complete oc label command in pod security error message [#1228](https://github.com/openshift/oc/pull/1228) * [Bug 2112934](https://bugzilla.redhat.com/show_bug.cgi?id=2112934): Add servicemonitors into common namespaces for inspection [#1224](https://github.com/openshift/oc/pull/1224) * [Bug 2108307](https://bugzilla.redhat.com/show_bug.cgi?id=2108307): Set HostIPC to true when debugging node [#1218](https://github.com/openshift/oc/pull/1218) * [Bug 2111537](https://bugzilla.redhat.com/show_bug.cgi?id=2111537): (image info): Introduce show-multiarch flag [#1217](https://github.com/openshift/oc/pull/1217) * [Bug 2095708](https://bugzilla.redhat.com/show_bug.cgi?id=2095708): oc adm inspect: check a resource exists before its inspection [#1215](https://github.com/openshift/oc/pull/1215) * [Bug 2092731](https://bugzilla.redhat.com/show_bug.cgi?id=2092731): Change error message to signal passing keep-manifest-list flag [#1213](https://github.com/openshift/oc/pull/1213) * [Bug 1880865](https://bugzilla.redhat.com/show_bug.cgi?id=1880865): Avoid TLS cert checking when login with --insecure-skip-tls-verify=true [#1161](https://github.com/openshift/oc/pull/1161) * [Bug 2105325](https://bugzilla.redhat.com/show_bug.cgi?id=2105325): Add ManifestListDigest field to release info struct [#1203](https://github.com/openshift/oc/pull/1203) * Add unit tests for release new package [#1197](https://github.com/openshift/oc/pull/1197) * Support for identity token [#1199](https://github.com/openshift/oc/pull/1199) * release info bug printing: enable `--skip-bug-check` for `--output=json` [#1204](https://github.com/openshift/oc/pull/1204) * release: extract ccoctl [#1194](https://github.com/openshift/oc/pull/1194) * [Bug 2103126](https://bugzilla.redhat.com/show_bug.cgi?id=2103126): set proper pod security ns labels [#1187](https://github.com/openshift/oc/pull/1187) * [Bug 2100702](https://bugzilla.redhat.com/show_bug.cgi?id=2100702): Set hasMedataOverrides to true when ToImageBase is set [#1192](https://github.com/openshift/oc/pull/1192) * [Bug 2100166](https://bugzilla.redhat.com/show_bug.cgi?id=2100166): Add new IsManifestList flag into ReleaseInfo struct [#1185](https://github.com/openshift/oc/pull/1185) * [Bug 2101885](https://bugzilla.redhat.com/show_bug.cgi?id=2101885): Set completion function for get command [#1186](https://github.com/openshift/oc/pull/1186) * [Bug 2100702](https://bugzilla.redhat.com/show_bug.cgi?id=2100702): Use from-release as based image when base digest is invalid [#1183](https://github.com/openshift/oc/pull/1183) * [Bug 2100708](https://bugzilla.redhat.com/show_bug.cgi?id=2100708): Lower chosen platform architecture/OS log level [#1184](https://github.com/openshift/oc/pull/1184) * [Full changelog](https://github.com/openshift/oc/compare/bf40a6c2b28d2ed7dec6a9d481ff4da057796de8...d691257345aeeec951c763e11658a944037f9b39) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/7a0370568a558c37e63cebc095c9e5b913dfedf6) * [OCPBUGS-37322](https://issues.redhat.com/browse/OCPBUGS-37322): update modules: grpc, protobuf, logrus [#764](https://github.com/openshift/cloud-credential-operator/pull/764) * [OCPBUGS-42166](https://issues.redhat.com/browse/OCPBUGS-42166): Resolve SNYK errors in security job. [#760](https://github.com/openshift/cloud-credential-operator/pull/760) * [OCPBUGS-37422](https://issues.redhat.com/browse/OCPBUGS-37422): SNYK ignore go-client misreporting [#744](https://github.com/openshift/cloud-credential-operator/pull/744) * NO-JIRA: Add jstuever to OWNERS [#733](https://github.com/openshift/cloud-credential-operator/pull/733) * [OCPBUGS-36027](https://issues.redhat.com/browse/OCPBUGS-36027): IBM/go-sdk-core update to v5.17.4 [#723](https://github.com/openshift/cloud-credential-operator/pull/723) * [OCPBUGS-32897](https://issues.redhat.com/browse/OCPBUGS-32897): Upgrade go-jose module to 2.6.3 [#699](https://github.com/openshift/cloud-credential-operator/pull/699) * [OCPBUGS-21348](https://issues.redhat.com/browse/OCPBUGS-21348): Upgrade golang/x/net for CVE-2023-39325 [#624](https://github.com/openshift/cloud-credential-operator/pull/624) * NO-ISSUE: snyk: exclude vendor/ [#619](https://github.com/openshift/cloud-credential-operator/pull/619) * NO-ISSUE: Removing andrew from OWNERS [#618](https://github.com/openshift/cloud-credential-operator/pull/618) * [OCPBUGS-13739](https://issues.redhat.com/browse/OCPBUGS-13739): Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. [#539](https://github.com/openshift/cloud-credential-operator/pull/539) * [OCPBUGS-11707](https://issues.redhat.com/browse/OCPBUGS-11707): ccoctl: Enable public anon read access to default OIDC S3 bucket [#529](https://github.com/openshift/cloud-credential-operator/pull/529) * Bump to k8s 1.25 [#505](https://github.com/openshift/cloud-credential-operator/pull/505) * Make ccoctl use regional STS endpoint by default [#491](https://github.com/openshift/cloud-credential-operator/pull/491) * Changes generated from make update-gofmt with go-1.19. [#495](https://github.com/openshift/cloud-credential-operator/pull/495) * Update OWNERS to reflect reality. [#494](https://github.com/openshift/cloud-credential-operator/pull/494) * Add support for granular GCP permissions using custom roles [#489](https://github.com/openshift/cloud-credential-operator/pull/489) * update to release.openshift.io/feature-set to match OCP 4.12 [#490](https://github.com/openshift/cloud-credential-operator/pull/490) * Add ccoctl support to create OIDC endpoint with private S3 bucket [#486](https://github.com/openshift/cloud-credential-operator/pull/486) * [TRT-481](https://issues.redhat.com/browse/TRT-481): fix: order conditions by type to limit un-needed updates [#488](https://github.com/openshift/cloud-credential-operator/pull/488) * [Bug 2118625](https://bugzilla.redhat.com/show_bug.cgi?id=2118625): Refactor Nutanix plugin to use external credentials structs [#485](https://github.com/openshift/cloud-credential-operator/pull/485) * [Bug 2117474](https://bugzilla.redhat.com/show_bug.cgi?id=2117474): Fix panic when the Provider spec is empty in credential request [#484](https://github.com/openshift/cloud-credential-operator/pull/484) * Rename azure-mind-mod-removal to fix typo [#481](https://github.com/openshift/cloud-credential-operator/pull/481) * [Bug 2100964](https://bugzilla.redhat.com/show_bug.cgi?id=2100964): Make ccoctl work with credentials fetched from gcloud cli defaults [#475](https://github.com/openshift/cloud-credential-operator/pull/475) * Updating ose-cloud-credential-operator images to be consistent with ART [#474](https://github.com/openshift/cloud-credential-operator/pull/474) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): manifests/00-namespace: Set empty openshift.io/run-level [#472](https://github.com/openshift/cloud-credential-operator/pull/472) * [Issue #452] Improving documentation [#465](https://github.com/openshift/cloud-credential-operator/pull/465) * doc(aws-sts): add alternative to host OIDC configuration in a private bucket using CloudFront [#468](https://github.com/openshift/cloud-credential-operator/pull/468) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/85f6afd591103fd54dae6bc07d85511d3d80fcb3...7a0370568a558c37e63cebc095c9e5b913dfedf6) ### [cloud-network-config-controller](https://github.com/openshift/cloud-network-config-controller/tree/c086bed76ee3d3b3fe9f516f873414e7b4348acd) * [OCPBUGS-33198](https://issues.redhat.com/browse/OCPBUGS-33198): Avoid nil pointer panic while assigning private IP on Azure [#141](https://github.com/openshift/cloud-network-config-controller/pull/141) * [OCPBUGS-22949](https://issues.redhat.com/browse/OCPBUGS-22949): Azure: skip backend pool if attached to an outbound rule [#128](https://github.com/openshift/cloud-network-config-controller/pull/128) * [OCPBUGS-16325](https://issues.redhat.com/browse/OCPBUGS-16325): Azure: Handle already existing IP configurations [#117](https://github.com/openshift/cloud-network-config-controller/pull/117) * [OCPBUGS-14717](https://issues.redhat.com/browse/OCPBUGS-14717): increase GCP egress ip capacity to 100 from 10 [#114](https://github.com/openshift/cloud-network-config-controller/pull/114) * [OCPBUGS-13802](https://issues.redhat.com/browse/OCPBUGS-13802): sync CloudPrivateIpConfig when node is missing [#112](https://github.com/openshift/cloud-network-config-controller/pull/112) * [OCPBUGS-13183](https://issues.redhat.com/browse/OCPBUGS-13183): pull project name from subnet uri [#108](https://github.com/openshift/cloud-network-config-controller/pull/108) * Bug OCPBUGS-5156: Add ApplicationSecurityGroups to InterfaceIPConfiguration [#92](https://github.com/openshift/cloud-network-config-controller/pull/92) * [OCPBUGS-4783](https://issues.redhat.com/browse/OCPBUGS-4783): OpenStack: Support multi AZ environments [#88](https://github.com/openshift/cloud-network-config-controller/pull/88) * [OCPBUGS-4784](https://issues.redhat.com/browse/OCPBUGS-4784): OpenStack: Only return egressIPConfiguration for first InternalIP [#89](https://github.com/openshift/cloud-network-config-controller/pull/89) * [OCPBUGS-4230](https://issues.redhat.com/browse/OCPBUGS-4230): Fix azure log message for assigning and releasing an IP [#80](https://github.com/openshift/cloud-network-config-controller/pull/80) * [OCPBUGS-3552](https://issues.redhat.com/browse/OCPBUGS-3552): Add assigned egress ips into capacity [#73](https://github.com/openshift/cloud-network-config-controller/pull/73) * [OCPBUGS-1736](https://issues.redhat.com/browse/OCPBUGS-1736): use proxy vars when available [#62](https://github.com/openshift/cloud-network-config-controller/pull/62) * [OCPBUGS-1417](https://issues.redhat.com/browse/OCPBUGS-1417): AWS: build temp credentials file from AWS key and secret [#68](https://github.com/openshift/cloud-network-config-controller/pull/68) * Update .ci-operator.yaml to use go 1.19 [#65](https://github.com/openshift/cloud-network-config-controller/pull/65) * Updating ose-cloud-network-config-controller images to be consistent with ART [#64](https://github.com/openshift/cloud-network-config-controller/pull/64) * [OCPBUGS-1629](https://issues.redhat.com/browse/OCPBUGS-1629): Add resolver to handle custom endpoints [#61](https://github.com/openshift/cloud-network-config-controller/pull/61) * [SDN-3203](https://issues.redhat.com/browse/SDN-3203): 1.25 rebase [#58](https://github.com/openshift/cloud-network-config-controller/pull/58) * [OCPBUGS-683](https://issues.redhat.com/browse/OCPBUGS-683): Node controller: Skip uninitialized nodes [#57](https://github.com/openshift/cloud-network-config-controller/pull/57) * Jira OCPBUGS-208: OpenStack: Avoid concurrent port updates for attach/detach operations [#54](https://github.com/openshift/cloud-network-config-controller/pull/54) * Jira OCPBUGS-247: OpenStack Return UnexpectedURIError when URI cannot be parsed [#55](https://github.com/openshift/cloud-network-config-controller/pull/55) * [Bug 2118563](https://bugzilla.redhat.com/show_bug.cgi?id=2118563): Adjust OpenStack port capacity to default max_allowed_address_pair [#53](https://github.com/openshift/cloud-network-config-controller/pull/53) * [Bug 2111878](https://bugzilla.redhat.com/show_bug.cgi?id=2111878): Make azure operations to be in sequence [#52](https://github.com/openshift/cloud-network-config-controller/pull/52) * [Bug 2104784](https://bugzilla.redhat.com/show_bug.cgi?id=2104784): AWS: Fix race in IP address assignment code [#50](https://github.com/openshift/cloud-network-config-controller/pull/50) * Update OWNERS [#51](https://github.com/openshift/cloud-network-config-controller/pull/51) * Add OpenStack cloud provider [#47](https://github.com/openshift/cloud-network-config-controller/pull/47) * Updating ose-cloud-network-config-controller images to be consistent with ART [#49](https://github.com/openshift/cloud-network-config-controller/pull/49) * [Bug 2105996](https://bugzilla.redhat.com/show_bug.cgi?id=2105996): Fix assign error display for cloudprivateipconfig [#48](https://github.com/openshift/cloud-network-config-controller/pull/48) * [Full changelog](https://github.com/openshift/cloud-network-config-controller/compare/fd849e37f0073049d64b85ccdd58794640aee011...c086bed76ee3d3b3fe9f516f873414e7b4348acd) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/4f7f6b1af4b674b24270e65c40728b19071ab3e3) * [OCPBUGS-20683](https://issues.redhat.com/browse/OCPBUGS-20683): CVE 2023 39325 [4.12] [#653](https://github.com/openshift/cluster-authentication-operator/pull/653) * [OCPBUGS-22689](https://issues.redhat.com/browse/OCPBUGS-22689): increase timeout for probes [#639](https://github.com/openshift/cluster-authentication-operator/pull/639) * [OCPBUGS-13346](https://issues.redhat.com/browse/OCPBUGS-13346): dont log jwt tokens [#622](https://github.com/openshift/cluster-authentication-operator/pull/622) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#591](https://github.com/openshift/cluster-authentication-operator/pull/591) * [OCPBUGS-4040](https://issues.redhat.com/browse/OCPBUGS-4040): Restart authentication operator if console capability is enabled [#593](https://github.com/openshift/cluster-authentication-operator/pull/593) * [OCPBUGS-3510](https://issues.redhat.com/browse/OCPBUGS-3510): Update cluster-authentication-operator not to go degraded without console [#590](https://github.com/openshift/cluster-authentication-operator/pull/590) * make the custom route controller use server-side-apply to avoid stomping unknown fields [#582](https://github.com/openshift/cluster-authentication-operator/pull/582) * e2e: address PSa failures [#581](https://github.com/openshift/cluster-authentication-operator/pull/581) * [Bug 2111842](https://bugzilla.redhat.com/show_bug.cgi?id=2111842): v/o/library-go - version-bump [#576](https://github.com/openshift/cluster-authentication-operator/pull/576) * Updating ose-cluster-authentication-operator images to be consistent with ART [#575](https://github.com/openshift/cluster-authentication-operator/pull/575) * Updating ose-cluster-authentication-operator images to be consistent with ART [#571](https://github.com/openshift/cluster-authentication-operator/pull/571) * [Bug 2078287](https://bugzilla.redhat.com/show_bug.cgi?id=2078287): only ever include certificates in the oauth-serving-cert CM [#573](https://github.com/openshift/cluster-authentication-operator/pull/573) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/bc149c8ede402ee1bb12b526030508114aabdfd3...4f7f6b1af4b674b24270e65c40728b19071ab3e3) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/f4975eeb107b16df2d7138c85348388daba97a74) * [OCPBUGS-40928](https://issues.redhat.com/browse/OCPBUGS-40928): update VPA golang.org/x/net for http rapid reset for CVE-2024-8421 [#318](https://github.com/openshift/kubernetes-autoscaler/pull/318) * [OCPBUGS-30911](https://issues.redhat.com/browse/OCPBUGS-30911): Fix unstructured taint parsing in Cluster API provider [#291](https://github.com/openshift/kubernetes-autoscaler/pull/291) * [OCPBUGS-23274](https://issues.redhat.com/browse/OCPBUGS-23274): Rebase 4.12 branch onto cluster autoscaler 1.25.3 [#267](https://github.com/openshift/kubernetes-autoscaler/pull/267) * Updating atomic-openshift-cluster-autoscaler images to be consistent with ART [#242](https://github.com/openshift/kubernetes-autoscaler/pull/242) * Updating vertical-pod-autoscaler images to be consistent with ART [#243](https://github.com/openshift/kubernetes-autoscaler/pull/243) * rebase on upstream 1.25.0 [#241](https://github.com/openshift/kubernetes-autoscaler/pull/241) * [Bug 2001027](https://bugzilla.redhat.com/show_bug.cgi?id=2001027): update clusterapi nodegroups processor [#240](https://github.com/openshift/kubernetes-autoscaler/pull/240) * Updating vertical-pod-autoscaler images to be consistent with ART [#235](https://github.com/openshift/kubernetes-autoscaler/pull/235) * [Bug 1944065](https://bugzilla.redhat.com/show_bug.cgi?id=1944065): Have VPA ignore phantom containers named "POD" [#233](https://github.com/openshift/kubernetes-autoscaler/pull/233) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/bf6c1c328ac39a367417e93c74fcbb3fe8628825...f4975eeb107b16df2d7138c85348388daba97a74) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/29a6e57c10cf027f5f04e9bcb2e8842497f63bf6) * [OCPBUGS-32005](https://issues.redhat.com/browse/OCPBUGS-32005): Update x/net to v0.25.0 [#325](https://github.com/openshift/cluster-autoscaler-operator/pull/325) * [OCPBUGS-20754](https://issues.redhat.com/browse/OCPBUGS-20754): Bump x/net package to v0.18.0 [#300](https://github.com/openshift/cluster-autoscaler-operator/pull/300) * Updating ose-cluster-autoscaler-operator images to be consistent with ART [#248](https://github.com/openshift/cluster-autoscaler-operator/pull/248) * [OCPCLOUD-1677](https://issues.redhat.com/browse/OCPCLOUD-1677): add flag for duplicated events [#253](https://github.com/openshift/cluster-autoscaler-operator/pull/253) * [Bug 1997396](https://bugzilla.redhat.com/show_bug.cgi?id=1997396): fix an error with autoscaler alert rules [#254](https://github.com/openshift/cluster-autoscaler-operator/pull/254) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s deps to 1.25 [#252](https://github.com/openshift/cluster-autoscaler-operator/pull/252) * [Bug 1997396](https://bugzilla.redhat.com/show_bug.cgi?id=1997396): update alerts for resource limits [#250](https://github.com/openshift/cluster-autoscaler-operator/pull/250) * [OCPCLOUD-1427](https://issues.redhat.com/browse/OCPCLOUD-1427): Expose autoscaler "--balancing-ignore-label" flag through CRD [#251](https://github.com/openshift/cluster-autoscaler-operator/pull/251) * Add verbosity option to ClusterAutoscaler object [#247](https://github.com/openshift/cluster-autoscaler-operator/pull/247) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/1731b6650d41a46207dc08f4d0993873b3b5d99f...29a6e57c10cf027f5f04e9bcb2e8842497f63bf6) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/537a74cd0b0cc48189684a273013c32d1269ddd9) * [OCPBUGS-32006](https://issues.redhat.com/browse/OCPBUGS-32006): bump x/net to 0.23.0 [#440](https://github.com/openshift/cluster-baremetal-operator/pull/440) * [OCPBUGS-23291](https://issues.redhat.com/browse/OCPBUGS-23291): hack for deploying V6-only clusters from dualstack hubs [#389](https://github.com/openshift/cluster-baremetal-operator/pull/389) * [OCPBUGS-20845](https://issues.redhat.com/browse/OCPBUGS-20845): Uplift x/net to v0.17.0 [#371](https://github.com/openshift/cluster-baremetal-operator/pull/371) * [OCPBUGS-19557](https://issues.redhat.com/browse/OCPBUGS-19557): Guard against nil PlatformStatus [#367](https://github.com/openshift/cluster-baremetal-operator/pull/367) * [OCPBUGS-16169](https://issues.redhat.com/browse/OCPBUGS-16169): use proxying for inspector in addition to ironic [#349](https://github.com/openshift/cluster-baremetal-operator/pull/349) * [OCPBUGS-15715](https://issues.redhat.com/browse/OCPBUGS-15715): Limit role binding to openshift-machine-api namespace [#347](https://github.com/openshift/cluster-baremetal-operator/pull/347) * [OCPBUGS-7585](https://issues.redhat.com/browse/OCPBUGS-7585): also use BMH.ConsumerRef for linking to master Machines [#326](https://github.com/openshift/cluster-baremetal-operator/pull/326) * [OCPBUGS-5072](https://issues.redhat.com/browse/OCPBUGS-5072): delete ironic-proxy/image-cache when not needed [#317](https://github.com/openshift/cluster-baremetal-operator/pull/317) * [OCPBUGS-4696](https://issues.redhat.com/browse/OCPBUGS-4696): Do not fail the reconciler when no master Machines exist [#314](https://github.com/openshift/cluster-baremetal-operator/pull/314) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#300](https://github.com/openshift/cluster-baremetal-operator/pull/300) * Golang 1.19 [#306](https://github.com/openshift/cluster-baremetal-operator/pull/306) * Handle AWS platform [#304](https://github.com/openshift/cluster-baremetal-operator/pull/304) * [OCPBUGS-1806](https://issues.redhat.com/browse/OCPBUGS-1806): Use machines instead of nodes to detect masters [#299](https://github.com/openshift/cluster-baremetal-operator/pull/299) * Add port to IRONIC_EXTERNAL_URL_V6 [#302](https://github.com/openshift/cluster-baremetal-operator/pull/302) * Enable running CBO from AWS [#301](https://github.com/openshift/cluster-baremetal-operator/pull/301) * [OCPBUGS-872](https://issues.redhat.com/browse/OCPBUGS-872): add a workaround for a NetworkManager issue [#286](https://github.com/openshift/cluster-baremetal-operator/pull/286) * Pass IRONIC_EXTERNAL_URL_V6 to baremetal-operator [#288](https://github.com/openshift/cluster-baremetal-operator/pull/288) * [OCPBUGS-651](https://issues.redhat.com/browse/OCPBUGS-651): ignore metal3 pods that are terminating [#284](https://github.com/openshift/cluster-baremetal-operator/pull/284) * Added handling PlatformStatus.Type other than Baremetal [#285](https://github.com/openshift/cluster-baremetal-operator/pull/285) * [OCPBUGS-421](https://issues.redhat.com/browse/OCPBUGS-421): do not rely on string "master" to be in BMH names [#282](https://github.com/openshift/cluster-baremetal-operator/pull/282) * Updating ose-cluster-baremetal-operator images to be consistent with ART [#273](https://github.com/openshift/cluster-baremetal-operator/pull/273) * Run a proxy for ironic when provisioning network is disabled [#279](https://github.com/openshift/cluster-baremetal-operator/pull/279) * Use platformStatus.type to determine type of platform [#280](https://github.com/openshift/cluster-baremetal-operator/pull/280) * [METAL-157](https://issues.redhat.com/browse/METAL-157): Don't run image cache unless required [#275](https://github.com/openshift/cluster-baremetal-operator/pull/275) * Stop passing HTPASSWD variables to services [#278](https://github.com/openshift/cluster-baremetal-operator/pull/278) * Add RBAC for metal3.io/hardwaredata [#277](https://github.com/openshift/cluster-baremetal-operator/pull/277) * Fix a few papercuts [#263](https://github.com/openshift/cluster-baremetal-operator/pull/263) * Update to golang 1.18 and regenerate CRDs [#265](https://github.com/openshift/cluster-baremetal-operator/pull/265) * Drop the IRONIC_HTTPD compatibility option [#245](https://github.com/openshift/cluster-baremetal-operator/pull/245) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/4d2ec1ddc45644a6ce86eda78c916a28382fe863...537a74cd0b0cc48189684a273013c32d1269ddd9) ### [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap/tree/138a1cf2b98578acb4ccf098736bdf08614d2d6a) * [OCPBUGS-14386](https://issues.redhat.com/browse/OCPBUGS-14386): Update dependencies and image [#91](https://github.com/openshift/cluster-bootstrap/pull/91) * Add API team to the OWNERS [#97](https://github.com/openshift/cluster-bootstrap/pull/97) * [Full changelog](https://github.com/openshift/cluster-bootstrap/compare/ffb5e2e417ab7e9da1caf7dd76007f5cfe8fc5a5...138a1cf2b98578acb4ccf098736bdf08614d2d6a) ### [cluster-capi-controllers](https://github.com/openshift/cluster-api/tree/03d89f216e0f2c3e1b2a647b0e37d52bbfdaefee) * [OCPBUGS-21521](https://issues.redhat.com/browse/OCPBUGS-21521): bump golang.org/x/net to v0.17.0 [#186](https://github.com/openshift/cluster-api/pull/186) * [Full changelog](https://github.com/openshift/cluster-api/compare/793bb48245f0e50e9dde2182286a4d219829ae6f...03d89f216e0f2c3e1b2a647b0e37d52bbfdaefee) ### [cluster-capi-operator](https://github.com/openshift/cluster-capi-operator/tree/60a36d8320ddfd196840a1597e61c065603778ee) * [OCPBUGS-21055](https://issues.redhat.com/browse/OCPBUGS-21055): Bump golang.org/x/net to v0.17.0 [#138](https://github.com/openshift/cluster-capi-operator/pull/138) * [Bug 2116686](https://bugzilla.redhat.com/show_bug.cgi?id=2116686): OCPBUGS-5155: Add provider webhook [#96](https://github.com/openshift/cluster-capi-operator/pull/96) * Add PowerVS platform to webhooks [#81](https://github.com/openshift/cluster-capi-operator/pull/81) * Add Power VS cluster api support [#79](https://github.com/openshift/cluster-capi-operator/pull/79) * Bug 2116686, Bug OCPBUGS-1493: Initial implementation of validation webhooks [#76](https://github.com/openshift/cluster-capi-operator/pull/76) * Update CI to use tools from vendor folder [#80](https://github.com/openshift/cluster-capi-operator/pull/80) * Updating ose-cluster-capi-operator images to be consistent with ART [#78](https://github.com/openshift/cluster-capi-operator/pull/78) * Update openshift/api and k8s to 1.25 [#77](https://github.com/openshift/cluster-capi-operator/pull/77) * Add tests that compare MAPI and CAPI created instances [#72](https://github.com/openshift/cluster-capi-operator/pull/72) * [Bug 2118550](https://bugzilla.redhat.com/show_bug.cgi?id=2118550): Momentarily disable Azure platform support [#75](https://github.com/openshift/cluster-capi-operator/pull/75) * Update manifests to use release.openshift.io/feature-set [#74](https://github.com/openshift/cluster-capi-operator/pull/74) * Set privileged pod security for openshift-cluster-api namespace [#73](https://github.com/openshift/cluster-capi-operator/pull/73) * Add webhooks for providers [#68](https://github.com/openshift/cluster-capi-operator/pull/68) * Update docs [#69](https://github.com/openshift/cluster-capi-operator/pull/69) * [Bug 2100852](https://bugzilla.redhat.com/show_bug.cgi?id=2100852): Improve log message for secret syncer [#71](https://github.com/openshift/cluster-capi-operator/pull/71) * Add option to choose a provider to update [#67](https://github.com/openshift/cluster-capi-operator/pull/67) * Updating ose-cluster-capi-operator images to be consistent with ART [#65](https://github.com/openshift/cluster-capi-operator/pull/65) * [Bug 2100822](https://bugzilla.redhat.com/show_bug.cgi?id=2100822): Add E2E for GCP [#64](https://github.com/openshift/cluster-capi-operator/pull/64) * [Full changelog](https://github.com/openshift/cluster-capi-operator/compare/8c08e223b1ec06969955abd696bf3220a8126109...60a36d8320ddfd196840a1597e61c065603778ee) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/3b1f0843e2bd25fb4e39659ef47424f67ccaa727) * [OCPBUGS-21148](https://issues.redhat.com/browse/OCPBUGS-21148): Bump golang.org/x/net to v0.18.0 [#297](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/297) * [OCPBUGS-13862](https://issues.redhat.com/browse/OCPBUGS-13862): add separate upgradeable condition for the sync controller [#254](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/254) * [OCPBUGS-13188](https://issues.redhat.com/browse/OCPBUGS-13188): update config sync controller to add upgrade status [#251](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/251) * [OCPBUGS-7898](https://issues.redhat.com/browse/OCPBUGS-7898): add a check for nutanix cloud conf map [#239](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/239) * [OCPBUGS-7884](https://issues.redhat.com/browse/OCPBUGS-7884): Restart pods if related configuration was changed [#228](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/228) * [OCPBUGS-5142](https://issues.redhat.com/browse/OCPBUGS-5142): Try to limit groups for the REST mapper discovery [#212](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/212) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump dependencies to k8s 1.25 [#203](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/203) * CCM namespace should be labelled as privileged [#202](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/202) * Reset Go mod after openstack library-go bump [#200](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/200) * Update library-go to set OpenStack provider to external [#199](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/199) * Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART [#196](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/196) * [Bug 2104373](https://bugzilla.redhat.com/show_bug.cgi?id=2104373): Improve decision logic around syncing cloud config [#197](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/197) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/2dbffc67e4fb2ef972f4ba6e6c1a76447193c6ce...3b1f0843e2bd25fb4e39659ef47424f67ccaa727) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/92c3b10237c1ebf7ab7a0c744db3949377614e52) * [OCPBUGS-16243](https://issues.redhat.com/browse/OCPBUGS-16243): retire LatencySensitive featureset [#336](https://github.com/openshift/cluster-config-operator/pull/336) * : OCPBUGS-21245: bump library-go to include switch to HTTP/1.1 [#373](https://github.com/openshift/cluster-config-operator/pull/373) * [CORS-2794](https://issues.redhat.com/browse/CORS-2794): AWS Shared VPC API Bump [release-4.12] [#344](https://github.com/openshift/cluster-config-operator/pull/344) * [OCPBUGS-4544](https://issues.redhat.com/browse/OCPBUGS-4544): Revert "Increase verbosity level to track probe timeouts" [#275](https://github.com/openshift/cluster-config-operator/pull/275) * [OCPBUGS-3523](https://issues.redhat.com/browse/OCPBUGS-3523): add --feature-set option to render options [#272](https://github.com/openshift/cluster-config-operator/pull/272) * [NE-975](https://issues.redhat.com/browse/NE-975): Update openshift/api for updated ingress config loadBalancer fields [#268](https://github.com/openshift/cluster-config-operator/pull/268) * Increase verbosity level to track probe timeouts [#267](https://github.com/openshift/cluster-config-operator/pull/267) * [Bug 1843043](https://bugzilla.redhat.com/show_bug.cgi?id=1843043): Update openshift/api for modified config resource description [#264](https://github.com/openshift/cluster-config-operator/pull/264) * update openshift/api for new ingress manifest [#263](https://github.com/openshift/cluster-config-operator/pull/263) * Update go.mod api,client-go to register crd [#262](https://github.com/openshift/cluster-config-operator/pull/262) * This is not the repo you're looking for. [#261](https://github.com/openshift/cluster-config-operator/pull/261) * Bump k8s dependencies [#260](https://github.com/openshift/cluster-config-operator/pull/260) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/4fbf99986d7d55885c0dc4a53610a53f97171242...92c3b10237c1ebf7ab7a0c744db3949377614e52) ### [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator/tree/f573eded61847fc153874615b29704d93ddcad8d) * [OCPBUGS-32429](https://issues.redhat.com/browse/OCPBUGS-32429): create suitable role and roleBinding for csi-snapshot-webhook [#207](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/207) * [OCPBUGS-21442](https://issues.redhat.com/browse/OCPBUGS-21442): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#169](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/169) * [OCPBUGS-10646](https://issues.redhat.com/browse/OCPBUGS-10646): Hypershift: set Deployment properties [#148](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/148) * [OCPBUGS-8374](https://issues.redhat.com/browse/OCPBUGS-8374): [4.12] remove cluster-admin role. [#143](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/143) * [OCPBUGS-4526](https://issues.redhat.com/browse/OCPBUGS-4526): hypershift: use correct kubeconfig secret for csi-snapshot-controller [#138](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/138) * [OCPBUGS-4251](https://issues.redhat.com/browse/OCPBUGS-4251): Add HyperShift specific priorityClass [#135](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/135) * [OCPBUGS-4121](https://issues.redhat.com/browse/OCPBUGS-4121): Don't remove PDB on SNO clusters [#134](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/134) * [STOR-971](https://issues.redhat.com/browse/STOR-971): Update for HyperShift [#125](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/125) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#130](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/130) * add capability annotation [#126](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/126) * [Bug 2101520](https://bugzilla.redhat.com/show_bug.cgi?id=2101520): bump library-go to get a that prevents watchers leaks [#129](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/129) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#128](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/128) * [OCPBUGS-990](https://issues.redhat.com/browse/OCPBUGS-990): Add RBAC to read extension-apiserver-authentication in kube-system [#127](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/127) * [STOR-970](https://issues.redhat.com/browse/STOR-970): Refactoring the oprator for newer library-go [#124](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/124) * Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART [#122](https://github.com/openshift/cluster-csi-snapshot-controller-operator/pull/122) * [Full changelog](https://github.com/openshift/cluster-csi-snapshot-controller-operator/compare/a95aec84224c06e448601b4de4906dfa49e1d429...f573eded61847fc153874615b29704d93ddcad8d) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/e955534113ef9a65ad055198eab63ba7d60fbd21) * [OCPBUGS-21525](https://issues.redhat.com/browse/OCPBUGS-21525): Bump golang.org/x/net/http2 to v0.17.0 for CVE-2023-39325 in cluster-dns-operator [#391](https://github.com/openshift/cluster-dns-operator/pull/391) * [OCPBUGS-19933](https://issues.redhat.com/browse/OCPBUGS-19933): update-node-resolver.sh: Check for errors from >> [#385](https://github.com/openshift/cluster-dns-operator/pull/385) * [OCPBUGS-19933](https://issues.redhat.com/browse/OCPBUGS-19933): ensure original hosts file contents are preserved [#383](https://github.com/openshift/cluster-dns-operator/pull/383) * [OCPBUGS-15251](https://issues.redhat.com/browse/OCPBUGS-15251): Add support for protocolStrategy API field to enable force_tcp configuration [#378](https://github.com/openshift/cluster-dns-operator/pull/378) * Updating ose-cluster-dns-operator images to be consistent with ART, and generate bindata [#344](https://github.com/openshift/cluster-dns-operator/pull/344) * [OCPBUGS-753](https://issues.redhat.com/browse/OCPBUGS-753): keep dns-default annotations intact [#340](https://github.com/openshift/cluster-dns-operator/pull/340) * [NE-929](https://issues.redhat.com/browse/NE-929): CoreDNS Cache Tuning - Functional Implementation [#335](https://github.com/openshift/cluster-dns-operator/pull/335) * [OCPBUGS-1439](https://issues.redhat.com/browse/OCPBUGS-1439): Fix TestDNSLogging race condition [#341](https://github.com/openshift/cluster-dns-operator/pull/341) * [OCPBUGS-1549](https://issues.redhat.com/browse/OCPBUGS-1549): Reconcile the DNS namespace [#343](https://github.com/openshift/cluster-dns-operator/pull/343) * [OCPBUGS-1558](https://issues.redhat.com/browse/OCPBUGS-1558): Bump vendored k8s libraries to 1.25 [#342](https://github.com/openshift/cluster-dns-operator/pull/342) * [NE-1066](https://issues.redhat.com/browse/NE-1066): Enable the chaos plugin for CoreDNS in order to expose CoreDNS metadata [#337](https://github.com/openshift/cluster-dns-operator/pull/337) * [DPP-10859](https://issues.redhat.com/browse/DPP-10859): Update Bugzilla links to "Networking" component [#333](https://github.com/openshift/cluster-dns-operator/pull/333) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/69b0ceb465c42e22ef51a01952f25ef7bb1f5d99...e955534113ef9a65ad055198eab63ba7d60fbd21) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/4bf4f66a77b9149d92496b439f14bb9306d1f19c) * [OCPBUGS-35501](https://issues.redhat.com/browse/OCPBUGS-35501): return errors in wait-for-ceo [#1277](https://github.com/openshift/cluster-etcd-operator/pull/1277) * [OCPBUGS-32001](https://issues.redhat.com/browse/OCPBUGS-32001): update golang x net [#1256](https://github.com/openshift/cluster-etcd-operator/pull/1256) * [OCPBUGS-30914](https://issues.redhat.com/browse/OCPBUGS-30914): Replace nodelister with master nodelister everywhere [#1224](https://github.com/openshift/cluster-etcd-operator/pull/1224) * [OCPBUGS-30938](https://issues.redhat.com/browse/OCPBUGS-30938): fix panic in health check timeouts [#1228](https://github.com/openshift/cluster-etcd-operator/pull/1228) * [OCPBUGS-27776](https://issues.redhat.com/browse/OCPBUGS-27776): [4.13] Remove z-upgrades from UpgradeBackupController [#1185](https://github.com/openshift/cluster-etcd-operator/pull/1185) * [OCPBUGS-23151](https://issues.redhat.com/browse/OCPBUGS-23151): relax readiness to local serializable requests [#1156](https://github.com/openshift/cluster-etcd-operator/pull/1156) * [OCPBUGS-21127](https://issues.redhat.com/browse/OCPBUGS-21127): fixing CVE-2023-39325 by updating dependencies [#1148](https://github.com/openshift/cluster-etcd-operator/pull/1148) * [OCPBUGS-20100](https://issues.redhat.com/browse/OCPBUGS-20100): [4.12] Backports of backup/restore fixes [#1137](https://github.com/openshift/cluster-etcd-operator/pull/1137) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#1128](https://github.com/openshift/cluster-etcd-operator/pull/1128) * [OCPBUGS-17808](https://issues.redhat.com/browse/OCPBUGS-17808): reset snapshot default counts to avoid file already lo… [#1100](https://github.com/openshift/cluster-etcd-operator/pull/1100) * [OCPBUGS-12473](https://issues.redhat.com/browse/OCPBUGS-12473): Fix Flake TestAttemptToScaleDown/scale_down_only_by_one_machine_at_a_time [#1046](https://github.com/openshift/cluster-etcd-operator/pull/1046) * [OCPBUGS-7830](https://issues.redhat.com/browse/OCPBUGS-7830): increase live/ready timeout and failure thresholds [#1011](https://github.com/openshift/cluster-etcd-operator/pull/1011) * Update reviewers and approvers [#987](https://github.com/openshift/cluster-etcd-operator/pull/987) * [OCPBUGS-7409](https://issues.redhat.com/browse/OCPBUGS-7409): set default timeouts in etcdcli [#1005](https://github.com/openshift/cluster-etcd-operator/pull/1005) * [OCPBUGS-6935](https://issues.redhat.com/browse/OCPBUGS-6935): add dedicated success status for bootstrap removal [#999](https://github.com/openshift/cluster-etcd-operator/pull/999) * [OCPBUGS-7373](https://issues.redhat.com/browse/OCPBUGS-7373): [release-4.12] fail early on missing node status envs [#1004](https://github.com/openshift/cluster-etcd-operator/pull/1004) * [OCPBUGS-6898](https://issues.redhat.com/browse/OCPBUGS-6898): updating library-go for CVE-2022-41717 [#998](https://github.com/openshift/cluster-etcd-operator/pull/998) * [OCPBUGS-5762](https://issues.redhat.com/browse/OCPBUGS-5762): should not scale-down when all members are healthy [#984](https://github.com/openshift/cluster-etcd-operator/pull/984) * [OCPBUGS-4743](https://issues.redhat.com/browse/OCPBUGS-4743): only allow TLS1.2/1.3 ciphersuites in etcd and CEO [#971](https://github.com/openshift/cluster-etcd-operator/pull/971) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#965](https://github.com/openshift/cluster-etcd-operator/pull/965) * [OCPBUGS-4193](https://issues.redhat.com/browse/OCPBUGS-4193): later bootstrap removal in delayed scaling [#967](https://github.com/openshift/cluster-etcd-operator/pull/967) * [OCPBUGS-2918](https://issues.redhat.com/browse/OCPBUGS-2918): update prometheus alerts [#958](https://github.com/openshift/cluster-etcd-operator/pull/958) * library-go vendoring for installer cmd timeout [#950](https://github.com/openshift/cluster-etcd-operator/pull/950) * doc access clusterbot resources [#948](https://github.com/openshift/cluster-etcd-operator/pull/948) * doc fixes for prometheus metrics [#933](https://github.com/openshift/cluster-etcd-operator/pull/933) * Hypershift: Stop trying to apply etcd prometheusrule [#917](https://github.com/openshift/cluster-etcd-operator/pull/917) * trt-589 library-go bump [#941](https://github.com/openshift/cluster-etcd-operator/pull/941) * [OCPBUGS-1329](https://issues.redhat.com/browse/OCPBUGS-1329): Add niceness to important etcd processes [#938](https://github.com/openshift/cluster-etcd-operator/pull/938) * [OCPBUGS-1130](https://issues.redhat.com/browse/OCPBUGS-1130): increase etcdGRPCRequestsSlow thresholds [#932](https://github.com/openshift/cluster-etcd-operator/pull/932) * Remove quorum guard pod after the pod is removed from the cluster [#923](https://github.com/openshift/cluster-etcd-operator/pull/923) * [Bug 2046335](https://bugzilla.redhat.com/show_bug.cgi?id=2046335): fix cert rotation on IP changes [#921](https://github.com/openshift/cluster-etcd-operator/pull/921) * [OCPBUGS-675](https://issues.redhat.com/browse/OCPBUGS-675): preserve log message on failures [#922](https://github.com/openshift/cluster-etcd-operator/pull/922) * [OCPBUGS-675](https://issues.redhat.com/browse/OCPBUGS-675): add nil check in checkSingleMemberHealth() [#918](https://github.com/openshift/cluster-etcd-operator/pull/918) * Revert "Adding cluster-etcd-operator sub command: ensure-env" [#914](https://github.com/openshift/cluster-etcd-operator/pull/914) * Set default container in etcd [#910](https://github.com/openshift/cluster-etcd-operator/pull/910) * Adding cluster-etcd-operator sub command: ensure-env [#726](https://github.com/openshift/cluster-etcd-operator/pull/726) * [Bug 2089199](https://bugzilla.redhat.com/show_bug.cgi?id=2089199): Remove etcd dashboards from Hypershift [#897](https://github.com/openshift/cluster-etcd-operator/pull/897) * vendor upstream alerts [#894](https://github.com/openshift/cluster-etcd-operator/pull/894) * Exits with a non-zero code in case Etcd backup fails [#871](https://github.com/openshift/cluster-etcd-operator/pull/871) * [Bug 2106044](https://bugzilla.redhat.com/show_bug.cgi?id=2106044): Fix etcd minor upgrade backup [#884](https://github.com/openshift/cluster-etcd-operator/pull/884) * [Bug 2097073](https://bugzilla.redhat.com/show_bug.cgi?id=2097073): vendor upstream alerts [#890](https://github.com/openshift/cluster-etcd-operator/pull/890) * fixing metrics proxy log spam [#883](https://github.com/openshift/cluster-etcd-operator/pull/883) * Updating cluster-etcd-operator images to be consistent with ART [#875](https://github.com/openshift/cluster-etcd-operator/pull/875) * remove etcd-health-monitor sidecar from pod manifest [#873](https://github.com/openshift/cluster-etcd-operator/pull/873) * fixing unit test health flakes with tolerance [#874](https://github.com/openshift/cluster-etcd-operator/pull/874) * [Bug 1884568](https://bugzilla.redhat.com/show_bug.cgi?id=1884568): Add etcd pod liveness probe [#869](https://github.com/openshift/cluster-etcd-operator/pull/869) * Add documentation for profiling CEO [#868](https://github.com/openshift/cluster-etcd-operator/pull/868) * [Bug 2097431](https://bugzilla.redhat.com/show_bug.cgi?id=2097431): fix degraded missing cluster version [#857](https://github.com/openshift/cluster-etcd-operator/pull/857) * [Bug 2093819](https://bugzilla.redhat.com/show_bug.cgi?id=2093819): add timeout to health checks [#862](https://github.com/openshift/cluster-etcd-operator/pull/862) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/5617740c013848971699d210a8b28e208938e0d8...4bf4f66a77b9149d92496b439f14bb9306d1f19c) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/77fd1a927087cd73330897a63016c23614ac3201) * [OCPBUGS-36033](https://issues.redhat.com/browse/OCPBUGS-36033): go.*,vendor: bump go-retryablehttp [#1071](https://github.com/openshift/cluster-image-registry-operator/pull/1071) * [OCPBUGS-22125](https://issues.redhat.com/browse/OCPBUGS-22125): increase storage account key cache expiration [#939](https://github.com/openshift/cluster-image-registry-operator/pull/939) * [OCPBUGS-20684](https://issues.redhat.com/browse/OCPBUGS-20684): mitigate effects of rapid reset [#947](https://github.com/openshift/cluster-image-registry-operator/pull/947) * [OCPBUGS-8491](https://issues.redhat.com/browse/OCPBUGS-8491): bump aws-sdk-go [#846](https://github.com/openshift/cluster-image-registry-operator/pull/846) * [OCPBUGS-6517](https://issues.redhat.com/browse/OCPBUGS-6517): OpenStack: Add support for Proxy [#834](https://github.com/openshift/cluster-image-registry-operator/pull/834) * [OCPBUGS-4678](https://issues.redhat.com/browse/OCPBUGS-4678): Bump aws-sdk-go to v1.44.145 [#822](https://github.com/openshift/cluster-image-registry-operator/pull/822) * [OCPBUGS-5154](https://issues.redhat.com/browse/OCPBUGS-5154): swift: Retry connecting to OpenStack [#826](https://github.com/openshift/cluster-image-registry-operator/pull/826) * [OCPBUGS-3175](https://issues.redhat.com/browse/OCPBUGS-3175): Bump gophercloud [#812](https://github.com/openshift/cluster-image-registry-operator/pull/812) * add myself to OWNERS [#813](https://github.com/openshift/cluster-image-registry-operator/pull/813) * [IR-295](https://issues.redhat.com/browse/IR-295): upgrade to Go 1.19 [#805](https://github.com/openshift/cluster-image-registry-operator/pull/805) * [IR-298](https://issues.redhat.com/browse/IR-298): Bump k8s to 1.25.2 [#803](https://github.com/openshift/cluster-image-registry-operator/pull/803) * [OCPBUGS-1717](https://issues.redhat.com/browse/OCPBUGS-1717): bump aws-go-sdk, adding support for me-central-1 [#800](https://github.com/openshift/cluster-image-registry-operator/pull/800) * Bug OCPBUGS-716: Add support for kube event recorder [#798](https://github.com/openshift/cluster-image-registry-operator/pull/798) * [Bug 2093440](https://bugzilla.redhat.com/show_bug.cgi?id=2093440): Use actualDaemonSet for SetDaemonSetGeneration [#790](https://github.com/openshift/cluster-image-registry-operator/pull/790) * [Bug 2093440](https://bugzilla.redhat.com/show_bug.cgi?id=2093440): Add progressing condition for node-ca daemon set [#789](https://github.com/openshift/cluster-image-registry-operator/pull/789) * Updating ose-cluster-image-registry-operator images to be consistent with ART [#788](https://github.com/openshift/cluster-image-registry-operator/pull/788) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/d34b3ef1941864e566ebdf9ee04c55d14b8b4cd9...77fd1a927087cd73330897a63016c23614ac3201) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/85e2d05159b7b4b2f16c8a95815c7d9927b68597) * [OCPBUGS-43703](https://issues.redhat.com/browse/OCPBUGS-43703): Add e2e test for duplicate Transfer-Encoding headers [#1158](https://github.com/openshift/cluster-ingress-operator/pull/1158) * [OCPBUGS-43703](https://issues.redhat.com/browse/OCPBUGS-43703): Add alert for RFC 7230 violation in Transfer-Encoding headers [#1162](https://github.com/openshift/cluster-ingress-operator/pull/1162) * [OCPBUGS-35454](https://issues.redhat.com/browse/OCPBUGS-35454): internal service changed fix target port logic [#1092](https://github.com/openshift/cluster-ingress-operator/pull/1092) * [OCPBUGS-35304](https://issues.redhat.com/browse/OCPBUGS-35304): TestHostNetworkPortBinding: Delete t.Parallel() [#1083](https://github.com/openshift/cluster-ingress-operator/pull/1083) * [OCPBUGS-35027](https://issues.redhat.com/browse/OCPBUGS-35027): Don't add clientca-configmap finalizer if deleting [#1080](https://github.com/openshift/cluster-ingress-operator/pull/1080) * [OCPBUGS-34888](https://issues.redhat.com/browse/OCPBUGS-34888): desiredRouterDeployment: Set HostPort if needed [#1076](https://github.com/openshift/cluster-ingress-operator/pull/1076) * [OCPBUGS-34757](https://issues.redhat.com/browse/OCPBUGS-34757): Avoid spurious updates for internalTrafficPolicy [#1070](https://github.com/openshift/cluster-ingress-operator/pull/1070) * [OCPBUGS-34110](https://issues.redhat.com/browse/OCPBUGS-34110): Avoid spurious updates for scope in IngressClass [#1056](https://github.com/openshift/cluster-ingress-operator/pull/1056) * [OCPBUGS-34548](https://issues.redhat.com/browse/OCPBUGS-34548): Use centos7 tag for quay.io/centos7/httpd-24-centos7 image [#1068](https://github.com/openshift/cluster-ingress-operator/pull/1068) * [OCPBUGS-20765](https://issues.redhat.com/browse/OCPBUGS-20765): Bump golang.org/x/net for CVE-2023-44487 [#988](https://github.com/openshift/cluster-ingress-operator/pull/988) * [OCPBUGS-22432](https://issues.redhat.com/browse/OCPBUGS-22432): test/e2e: Don't use openshift/origin-node [#992](https://github.com/openshift/cluster-ingress-operator/pull/992) * [NE-1372](https://issues.redhat.com/browse/NE-1372): Add support for AWS shared VPC in another account #966 [#971](https://github.com/openshift/cluster-ingress-operator/pull/971) * [OCPBUGS-13049](https://issues.redhat.com/browse/OCPBUGS-13049): bump controller-runtime to fix the multi namespace cache indexing [#922](https://github.com/openshift/cluster-ingress-operator/pull/922) * [OCPBUGS-15467](https://issues.redhat.com/browse/OCPBUGS-15467): Add missing AWS permission for ListTagsForResources [#954](https://github.com/openshift/cluster-ingress-operator/pull/954) * [OCPBUGS-16620](https://issues.redhat.com/browse/OCPBUGS-16620): Deflake TestRouterCompressionOperation [#963](https://github.com/openshift/cluster-ingress-operator/pull/963) * [OCPBUGS-16621](https://issues.redhat.com/browse/OCPBUGS-16621): Fix TestClientTLS flakes [#964](https://github.com/openshift/cluster-ingress-operator/pull/964) * [OCPBUGS-15644](https://issues.redhat.com/browse/OCPBUGS-15644): Update TestAWSELBConnectionIdleTimeout to not use wildcard DNS record [#959](https://github.com/openshift/cluster-ingress-operator/pull/959) * [OCPBUGS-14454](https://issues.redhat.com/browse/OCPBUGS-14454), [OCPBUGS-14455](https://issues.redhat.com/browse/OCPBUGS-14455): Handle mTLS CRLs, and fix accidental CRL duplication [#941](https://github.com/openshift/cluster-ingress-operator/pull/941) * [OCPBUGS-12464](https://issues.redhat.com/browse/OCPBUGS-12464): Target metrics port by name in internal service [#910](https://github.com/openshift/cluster-ingress-operator/pull/910) * [OCPBUGS-3517](https://issues.redhat.com/browse/OCPBUGS-3517): Ingress controller should not have affinity policy in single-replica clusters [#857](https://github.com/openshift/cluster-ingress-operator/pull/857) * [OCPBUGS-2775](https://issues.redhat.com/browse/OCPBUGS-2775): Changed "name" label to "shard_name" of route_metrics_controller_routes_per_shard metric [#851](https://github.com/openshift/cluster-ingress-operator/pull/851) * [OCPBUGS-2848](https://issues.redhat.com/browse/OCPBUGS-2848): Support matchExpressions selectors with route metrics [#850](https://github.com/openshift/cluster-ingress-operator/pull/850) * [Bug 2117524](https://bugzilla.redhat.com/show_bug.cgi?id=2117524): Update CRLs when they expire [#828](https://github.com/openshift/cluster-ingress-operator/pull/828) * [OCPBUGS-853](https://issues.redhat.com/browse/OCPBUGS-853): certificate-publisher: Don't publish extraneous certificates [#824](https://github.com/openshift/cluster-ingress-operator/pull/824) * [Bug 1962502](https://bugzilla.redhat.com/show_bug.cgi?id=1962502): Add alerts for unmanaged Routes and Ingresses without IngressClassName [#823](https://github.com/openshift/cluster-ingress-operator/pull/823) * [NE-1071](https://issues.redhat.com/browse/NE-1071): Default HAProxy maxconn value to 50000 for OCP 4.12) [#836](https://github.com/openshift/cluster-ingress-operator/pull/836) * Updating ose-cluster-ingress-operator images to be consistent with ART [#834](https://github.com/openshift/cluster-ingress-operator/pull/834) * [OCPBUGS-2435](https://issues.redhat.com/browse/OCPBUGS-2435): TestRouterCompressionOperation: Nil-pointer fix [#843](https://github.com/openshift/cluster-ingress-operator/pull/843) * [OCPBUGS-2493](https://issues.redhat.com/browse/OCPBUGS-2493): Fix TestUnmanagedDNSToManagedDNSInternal E2E test race conditions [#845](https://github.com/openshift/cluster-ingress-operator/pull/845) * [CFE-478](https://issues.redhat.com/browse/CFE-478): Added support for exporting Route type and Routes per Shard metrics [#779](https://github.com/openshift/cluster-ingress-operator/pull/779) * [NE-975](https://issues.redhat.com/browse/NE-975): Use ingress config to set default LB type on AWS [#837](https://github.com/openshift/cluster-ingress-operator/pull/837) * [OCPBUGS-2429](https://issues.redhat.com/browse/OCPBUGS-2429): Fix TestReloadInterval min value test cases and race conditions [#842](https://github.com/openshift/cluster-ingress-operator/pull/842) * [OCPBUGS-2334](https://issues.redhat.com/browse/OCPBUGS-2334): Added nil check for service object on load balancer scope change [#839](https://github.com/openshift/cluster-ingress-operator/pull/839) * [NE-956](https://issues.redhat.com/browse/NE-956): Configurable LB Source Ranges - Functional Implementation [#817](https://github.com/openshift/cluster-ingress-operator/pull/817) * [Bug 2107462](https://bugzilla.redhat.com/show_bug.cgi?id=2107462): Update CGO_ENABLED=1 [#833](https://github.com/openshift/cluster-ingress-operator/pull/833) * [OCPBUGS-236](https://issues.redhat.com/browse/OCPBUGS-236): Bump openshift/api for reloadInterval fix [#830](https://github.com/openshift/cluster-ingress-operator/pull/830) * [OCPBUGS-1554](https://issues.redhat.com/browse/OCPBUGS-1554): Bump vendored k8s libraries to 1.25 [#829](https://github.com/openshift/cluster-ingress-operator/pull/829) * Enable switching of AWS CLB to NLB without deletion of IngressController object. [#790](https://github.com/openshift/cluster-ingress-operator/pull/790) * [Bug 2066560](https://bugzilla.redhat.com/show_bug.cgi?id=2066560): Make ingress clusteroperator progressing=true when router deployment is rolling out [#769](https://github.com/openshift/cluster-ingress-operator/pull/769) * Add IBM Cloud DNS support for Power VS [#819](https://github.com/openshift/cluster-ingress-operator/pull/819) * [OCPBUGS-1049](https://issues.redhat.com/browse/OCPBUGS-1049): test/e2e: Fix TestCanaryRoute security context [#826](https://github.com/openshift/cluster-ingress-operator/pull/826) * [Bug 2089482](https://bugzilla.redhat.com/show_bug.cgi?id=2089482): Do not use deprecated API field InfrastructureStatus.Platform [#814](https://github.com/openshift/cluster-ingress-operator/pull/814) * [NE-969](https://issues.redhat.com/browse/NE-969): Add IBM DNS Services provider support for private clusters [#796](https://github.com/openshift/cluster-ingress-operator/pull/796) * [DPP-10860](https://issues.redhat.com/browse/DPP-10860): Update Bugzilla links to "Networking" component [#815](https://github.com/openshift/cluster-ingress-operator/pull/815) * [OCPBUGS-368](https://issues.redhat.com/browse/OCPBUGS-368): Fix e2e tests for pod security violations [#818](https://github.com/openshift/cluster-ingress-operator/pull/818) * [NE-979](https://issues.redhat.com/browse/NE-979): add ReloadInterval TuningOption [#805](https://github.com/openshift/cluster-ingress-operator/pull/805) * [Bug 2101878](https://bugzilla.redhat.com/show_bug.cgi?id=2101878): Fix another issue with route status clearing race condition caused by not validating generation id [#811](https://github.com/openshift/cluster-ingress-operator/pull/811) * [Bug 2108708](https://bugzilla.redhat.com/show_bug.cgi?id=2108708): Disable auto creation of default ingress contoller for hypershift [#797](https://github.com/openshift/cluster-ingress-operator/pull/797) * [Bug 2101878](https://bugzilla.redhat.com/show_bug.cgi?id=2101878): Fix route status clearing race condition caused by using the cache [#794](https://github.com/openshift/cluster-ingress-operator/pull/794) * [Bug 2106086](https://bugzilla.redhat.com/show_bug.cgi?id=2106086): Bump openshift/api for healthCheckInterval fix [#804](https://github.com/openshift/cluster-ingress-operator/pull/804) * [Bug 2104481](https://bugzilla.redhat.com/show_bug.cgi?id=2104481): Allow PROXY protocol for the "Private" endpoint publishing strategy [#803](https://github.com/openshift/cluster-ingress-operator/pull/803) * add Ethany-RH to OWNERS [#800](https://github.com/openshift/cluster-ingress-operator/pull/800) * [Bug 2086887](https://bugzilla.redhat.com/show_bug.cgi?id=2086887): Add better debug logging to TestIngressOperatorCacheIsNotGlobal to help debug flakes [#793](https://github.com/openshift/cluster-ingress-operator/pull/793) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/9e60f1f1e166b8097e21a6187123fd49ea0e02c2...85e2d05159b7b4b2f16c8a95815c7d9927b68597) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/09d7ddbaba9eb5715313e716476e6a33848d045c) * [OCPBUGS-22736](https://issues.redhat.com/browse/OCPBUGS-22736): pkg/operator/configobserver: check that the serving certificate refer… [#1571](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1571) * : OCPBUGS-20855: bump library-go to include switch to HTTP/1.1 [#1574](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1574) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#1559](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1559) * [OCPBUGS-17139](https://issues.redhat.com/browse/OCPBUGS-17139): make webhook connection failure a warning in log [#1533](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1533) * [OCPBUGS-13346](https://issues.redhat.com/browse/OCPBUGS-13346): dont log jwt tokens [#1524](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1524) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): enable pod security admission for techpreview [#1440](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1440) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): make the bootstrap kube-apiserver honor cluster-wide featuregates [#1439](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1439) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#1445](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1445) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): guard controller: set an explicit hostname to avoid name collisions [#1416](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1416) * [OCPBUGS-3056](https://issues.redhat.com/browse/OCPBUGS-3056): CVE-2022-3259: enable HSTS for kube-apiserver [#1400](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1400) * [OCPBUGS-3037](https://issues.redhat.com/browse/OCPBUGS-3037): Allow ephemeral volumes in all SCCs [#1399](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1399) * [OCPBUGS-4299](https://issues.redhat.com/browse/OCPBUGS-4299): bootstrap-kube-apiserver: specify resources.requests [#1411](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1411) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#1407](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1407) * [OCPBUGS-3663](https://issues.redhat.com/browse/OCPBUGS-3663): Revert "turn PodSecurity admission to enforce restricted globally" [#1405](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1405) * [OCPBUGS-2071](https://issues.redhat.com/browse/OCPBUGS-2071): revert dev cert rotation [#1401](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1401) * [Bug 2094362](https://bugzilla.redhat.com/show_bug.cgi?id=2094362): Duplicate prometheus rules for API SLOs after upgrade [#1376](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1376) * library-go vendoring for installer cmd timeout [#1395](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1395) * serviceaccountissuer: fix case when default value is being used and not trusted after change [#1393](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1393) * bindata/assets/alerts/api-usage: Include removed_release in APIRemovedInNext*ReleaseInUse labels [#1367](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1367) * Fix typo in operator status serviceAccountIssuer name field [#1390](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1390) * [OCPBUGS-2198](https://issues.redhat.com/browse/OCPBUGS-2198): AUTH-309: Wire support for trusted service account issuers [#1381](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1381) * Update API alerts after recent bump to k8s 1.25 [#1382](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1382) * trt-589 bump library-go [#1383](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1383) * [Bug 2073220](https://bugzilla.redhat.com/show_bug.cgi?id=2073220): routes/status resources can leak sensitive data [#1375](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1375) * k8s 1.25.0 [#1374](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1374) * make PodSecurity admission enforce restricted globally [#1369](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1369) * Update library-go to enable external provider for OpenStack by default [#1370](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1370) * enable dev cert rotation [#1364](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1364) * [Bug 2101444](https://bugzilla.redhat.com/show_bug.cgi?id=2101444): specify resource=pod for PSa violation alerts [#1363](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1363) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/06f0a3d686b9f4a8e70ca430059093ad6d71fced...09d7ddbaba9eb5715313e716476e6a33848d045c) ### [cluster-kube-cluster-api-operator](https://github.com/openshift/cluster-api-operator/tree/d50f7322addd997cc73a0ba8294eadb977974c3f) * [OCPBUGS-20962](https://issues.redhat.com/browse/OCPBUGS-20962): bump golang.org/x/net to v0.17.0 [#29](https://github.com/openshift/cluster-api-operator/pull/29) * Updating ose-cluster-kube-cluster-api-operator images to be consistent with ART [#8](https://github.com/openshift/cluster-api-operator/pull/8) * Updating ose-cluster-kube-cluster-api-operator images to be consistent with ART [#7](https://github.com/openshift/cluster-api-operator/pull/7) * [Full changelog](https://github.com/openshift/cluster-api-operator/compare/5ad359ecbb8edee5ebf0352e5d0969ee95dfe4d0...d50f7322addd997cc73a0ba8294eadb977974c3f) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/c3c07bebb7a644fe75bccd590fa088bcccd3749a) * [OCPBUGS-27068](https://issues.redhat.com/browse/OCPBUGS-27068): bump(library-go)=release-4.12 [#789](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/789) * [OCPBUGS-21048](https://issues.redhat.com/browse/OCPBUGS-21048): Bump deps to address CVE-2023-44487 [4.12] [#759](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/759) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#754](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/754) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): Enforce PSA when techpreview is enabled [#694](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/694) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): honor feature gates during bootstrapping [#695](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/695) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#699](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/699) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): Sync library go 4.12 [#676](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/676) * [OCPBUGS-4766](https://issues.redhat.com/browse/OCPBUGS-4766): limit cluster-policy-controller RBAC permissions [#675](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/675) * [OCPBUGS-4681](https://issues.redhat.com/browse/OCPBUGS-4681): remove unnecessary RBAC [#674](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/674) * [OCPBUGS-4303](https://issues.redhat.com/browse/OCPBUGS-4303): bootstrap-kube-controller-manager: specify resources.requests [#666](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/666) * library-go vendoring for installer cmd timeout [#659](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/659) * trt-589 bump library-go [#658](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/658) * Update go mod go version [#657](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/657) * add nodes.config.openshift.io to resource-graph [#655](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/655) * [Bug 2101843](https://bugzilla.redhat.com/show_bug.cgi?id=2101843): Label openshift-infra namespace as privileged [#647](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/647) * k8s 1.25.0 [#652](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/652) * [Bug 2118286](https://bugzilla.redhat.com/show_bug.cgi?id=2118286): always report and reconcile GarbageCollectorDegraded condition [#650](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/650) * [OCPBUGS-212](https://issues.redhat.com/browse/OCPBUGS-212): gc watcher should close connections after throwing away a client [#649](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/649) * Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART [#638](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/638) * [Bug 2001409](https://bugzilla.redhat.com/show_bug.cgi?id=2001409): add runbook urls to KCM-o alerts [#635](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/635) * Reset Go mod after openstack library-go bump [#642](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/642) * fix TestPodDisruptionBudgetAtLimitAlert by adding SecurityContext to a pod [#643](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/643) * Update library-go to set OpenStack provider to external [#641](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/641) * Make KCM-O conditionally dependent on monitoring stack availability [#639](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/639) * [Bug 2103940](https://bugzilla.redhat.com/show_bug.cgi?id=2103940): Decouple KCM-O's status from monitoring stack [#636](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/636) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/97ab7ed27bee6bf9e58f71aae573f20a028c5601...c3c07bebb7a644fe75bccd590fa088bcccd3749a) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/48cd96c9dc27c801beff17fa5ea8c3dac374f10d) * [OCPBUGS-27067](https://issues.redhat.com/browse/OCPBUGS-27067): bump(library-go)=release-4.12 [#529](https://github.com/openshift/cluster-kube-scheduler-operator/pull/529) * [OCPBUGS-21239](https://issues.redhat.com/browse/OCPBUGS-21239): Sync deps CVE 2023 39325 4.12 [#505](https://github.com/openshift/cluster-kube-scheduler-operator/pull/505) * [OCPBUGS-19837](https://issues.redhat.com/browse/OCPBUGS-19837): Update staticpod file permissions to conform with CIS benchmarks [#499](https://github.com/openshift/cluster-kube-scheduler-operator/pull/499) * [OCPBUGS-14652](https://issues.redhat.com/browse/OCPBUGS-14652): disable debug pporf with unauthenticated port for 4.12 [#481](https://github.com/openshift/cluster-kube-scheduler-operator/pull/481) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard controller: set the readiness probe endpoint explicitly [#462](https://github.com/openshift/cluster-kube-scheduler-operator/pull/462) * [OCPBUGS-4478](https://issues.redhat.com/browse/OCPBUGS-4478): Sync library go 4.12 [#452](https://github.com/openshift/cluster-kube-scheduler-operator/pull/452) * [OCPBUGS-4292](https://issues.redhat.com/browse/OCPBUGS-4292): bootstrap-kube-scheduler: specify resources.requests [#448](https://github.com/openshift/cluster-kube-scheduler-operator/pull/448) * library-go vendoring for installer cmd timeout [#444](https://github.com/openshift/cluster-kube-scheduler-operator/pull/444) * Bump openshift/api to bring the MatchLabelKeysInPodTopologySpread enabled in TPNoUpgrade [#442](https://github.com/openshift/cluster-kube-scheduler-operator/pull/442) * trt-589 bump library-go [#441](https://github.com/openshift/cluster-kube-scheduler-operator/pull/441) * Bump go.mod golang version to 1.19 [#440](https://github.com/openshift/cluster-kube-scheduler-operator/pull/440) * k8s 1.25.0 [#438](https://github.com/openshift/cluster-kube-scheduler-operator/pull/438) * Describe how to increase log level of kube-scheduler instances [#436](https://github.com/openshift/cluster-kube-scheduler-operator/pull/436) * Updating ose-cluster-kube-scheduler-operator images to be consistent with ART [#433](https://github.com/openshift/cluster-kube-scheduler-operator/pull/433) * Update owners [#432](https://github.com/openshift/cluster-kube-scheduler-operator/pull/432) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/554fc89c4317e6108851fd3c729dcd11a78f7834...48cd96c9dc27c801beff17fa5ea8c3dac374f10d) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/1a251f4d00c050404dc313c698279da435d08c07) * : OCPBUGS-21336: bump library-go to include switch to HTTP/1.1 [#98](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/98) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/56b2189809bbc3b39c04db7e6b4d27235ad2ab9a...1a251f4d00c050404dc313c698279da435d08c07) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/7b08a4de4a08da8cdb341948e0902395eb0da961) * [OCPBUGS-23486](https://issues.redhat.com/browse/OCPBUGS-23486): Filter non node CSRs in metrics [#220](https://github.com/openshift/cluster-machine-approver/pull/220) * [OCPBUGS-21430](https://issues.redhat.com/browse/OCPBUGS-21430): Bump x/net package to v0.18.0 [#214](https://github.com/openshift/cluster-machine-approver/pull/214) * [OCPBUGS-2621](https://issues.redhat.com/browse/OCPBUGS-2621): Update capi related CMA deployment ports [#173](https://github.com/openshift/cluster-machine-approver/pull/173) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#171](https://github.com/openshift/cluster-machine-approver/pull/171) * update to release.openshift.io/feature-set to match OCP 4.12 [#172](https://github.com/openshift/cluster-machine-approver/pull/172) * ignore case when checking csr hostnames [#170](https://github.com/openshift/cluster-machine-approver/pull/170) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/0533fa53b62f0261977101b8bd16076ac6480871...7b08a4de4a08da8cdb341948e0902395eb0da961) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/ee4a20d4d0214c9c8fdacaede3482683436d36e0) * [OCPBUGS-35558](https://issues.redhat.com/browse/OCPBUGS-35558): label for infra nodes for metric cluster:capacity_cpu_cores:sum [#2383](https://github.com/openshift/cluster-monitoring-operator/pull/2383) * [OCPBUGS-28766](https://issues.redhat.com/browse/OCPBUGS-28766): fix generation of telemeter token hash [#2306](https://github.com/openshift/cluster-monitoring-operator/pull/2306) * [OCPBUGS-25389](https://issues.redhat.com/browse/OCPBUGS-25389): Add RHACM telemetry metric for 4.12 [#2204](https://github.com/openshift/cluster-monitoring-operator/pull/2204) * [OCPBUGS-21441](https://issues.redhat.com/browse/OCPBUGS-21441): Set the new --disable-http2 flag for prometheus-adapter to disable HTTP2 [#2148](https://github.com/openshift/cluster-monitoring-operator/pull/2148) * [OCPBUGS-22843](https://issues.redhat.com/browse/OCPBUGS-22843): [release-4.12] add RHACS telemetry metrics [#2140](https://github.com/openshift/cluster-monitoring-operator/pull/2140) * [OCPBUGS-21234](https://issues.redhat.com/browse/OCPBUGS-21234): upgrade golang.org/x/net to v0.17.0 [#2123](https://github.com/openshift/cluster-monitoring-operator/pull/2123) * [OCPBUGS-17125](https://issues.redhat.com/browse/OCPBUGS-17125): backport metrics collection profiles selector logic to prevent users from double scraping when they upgrade from 4.12 to 4.13 [#2047](https://github.com/openshift/cluster-monitoring-operator/pull/2047) * [OCPBUGS-16028](https://issues.redhat.com/browse/OCPBUGS-16028): Add the trusted CA bundle in UWM Prometheus pods [#2042](https://github.com/openshift/cluster-monitoring-operator/pull/2042) * [OCPBUGS-15473](https://issues.redhat.com/browse/OCPBUGS-15473): Limit the value of GOMAXPROCS on node-exporter to 4 [#2023](https://github.com/openshift/cluster-monitoring-operator/pull/2023) * [OCPBUGS-13008](https://issues.redhat.com/browse/OCPBUGS-13008): Add build number to vcenter version information [#1965](https://github.com/openshift/cluster-monitoring-operator/pull/1965) * [OCPBUGS-12727](https://issues.redhat.com/browse/OCPBUGS-12727): backport OCPBUGS-5353 to 4.12 [#1955](https://github.com/openshift/cluster-monitoring-operator/pull/1955) * [OCPBUGS-11508](https://issues.redhat.com/browse/OCPBUGS-11508): add startup probe for prometheus-adapter [#1940](https://github.com/openshift/cluster-monitoring-operator/pull/1940) * [OCPBUGS-11623](https://issues.redhat.com/browse/OCPBUGS-11623): node-exporter: disable btrfs collector [#1944](https://github.com/openshift/cluster-monitoring-operator/pull/1944) * [OCPBUGS-11404](https://issues.redhat.com/browse/OCPBUGS-11404): jsonnet: Add prometheus container in UWM [#1935](https://github.com/openshift/cluster-monitoring-operator/pull/1935) * [OCPBUGS-2439](https://issues.redhat.com/browse/OCPBUGS-2439): set the argument path.udev.data in node exporter [#1800](https://github.com/openshift/cluster-monitoring-operator/pull/1800) * [OCPBUGS-4363](https://issues.redhat.com/browse/OCPBUGS-4363): Fixed TargetDown expression to join on the proper label [#1833](https://github.com/openshift/cluster-monitoring-operator/pull/1833) * [OCPBUGS-4488](https://issues.redhat.com/browse/OCPBUGS-4488): Fixes externalURL field for Prometheus and Alertmanager [#1840](https://github.com/openshift/cluster-monitoring-operator/pull/1840) * [OCPBUGS-4627](https://issues.redhat.com/browse/OCPBUGS-4627): compute doc link in PVC not configured message [#1844](https://github.com/openshift/cluster-monitoring-operator/pull/1844) * [OCPBUGS-4489](https://issues.redhat.com/browse/OCPBUGS-4489): Increase startupProbe for prometheus [#1841](https://github.com/openshift/cluster-monitoring-operator/pull/1841) * [OCPBUGS-4431](https://issues.redhat.com/browse/OCPBUGS-4431): add alert KubePodNotScheduled to group openshift-kubernetes.rules [#1837](https://github.com/openshift/cluster-monitoring-operator/pull/1837) * [OCPBUGS-3276](https://issues.redhat.com/browse/OCPBUGS-3276): Pin Down Dependencies on Release 4.12 [#1819](https://github.com/openshift/cluster-monitoring-operator/pull/1819) * [OCPBUGS-4029](https://issues.redhat.com/browse/OCPBUGS-4029): test: increase timeout when checking remote write metrics [#1820](https://github.com/openshift/cluster-monitoring-operator/pull/1820) * [MON-2727](https://issues.redhat.com/browse/MON-2727): Adds telemeter alert TelemeterClientFailures [#1803](https://github.com/openshift/cluster-monitoring-operator/pull/1803) * *: don't expose Prometheus operator's port [#1806](https://github.com/openshift/cluster-monitoring-operator/pull/1806) * Documentation: fix TelemeterClientConfig [#1801](https://github.com/openshift/cluster-monitoring-operator/pull/1801) * Synchronize versions of the downstream components [#1797](https://github.com/openshift/cluster-monitoring-operator/pull/1797) * jsonnet/components: remove PDB patches [#1799](https://github.com/openshift/cluster-monitoring-operator/pull/1799) * [OCPBUGS-1321](https://issues.redhat.com/browse/OCPBUGS-1321): Node Exporter - ignore virtual NICs from OVNK cluster [#1780](https://github.com/openshift/cluster-monitoring-operator/pull/1780) * [RHDEVDOCS-3165](https://issues.redhat.com/browse/RHDEVDOCS-3165): updates to config map code comments and docgen utility [#1773](https://github.com/openshift/cluster-monitoring-operator/pull/1773) * [CFE-551](https://issues.redhat.com/browse/CFE-551): Allowlist metrics related to Routes to be sent via telemetry [#1776](https://github.com/openshift/cluster-monitoring-operator/pull/1776) * test/e2e: improve getActiveTarget() [#1796](https://github.com/openshift/cluster-monitoring-operator/pull/1796) * Synchronize versions of the downstream components [#1793](https://github.com/openshift/cluster-monitoring-operator/pull/1793) * update to release.openshift.io/feature-set to match OCP 4.12 [#1794](https://github.com/openshift/cluster-monitoring-operator/pull/1794) * update to release.openshift.io/feature-set to match OCP 4.12 [#1764](https://github.com/openshift/cluster-monitoring-operator/pull/1764) * [OCPBUGS-2138](https://issues.redhat.com/browse/OCPBUGS-2138): Add os_image_url_override metric from MCO to telemetry [#1784](https://github.com/openshift/cluster-monitoring-operator/pull/1784) * [Bug 2043518](https://bugzilla.redhat.com/show_bug.cgi?id=2043518): set degraded and available status based on Prometheus resource status [#1558](https://github.com/openshift/cluster-monitoring-operator/pull/1558) * Updating cluster-monitoring-operator images to be consistent with ART [#1787](https://github.com/openshift/cluster-monitoring-operator/pull/1787) * Revert "[bot] Update jsonnet dependencies" [#1788](https://github.com/openshift/cluster-monitoring-operator/pull/1788) * Update jsonnet dependencies [#1770](https://github.com/openshift/cluster-monitoring-operator/pull/1770) * Synchronize versions of the downstream components [#1782](https://github.com/openshift/cluster-monitoring-operator/pull/1782) * Makefile: add docgen tool dependency to the docs target [#1772](https://github.com/openshift/cluster-monitoring-operator/pull/1772) * Synchronize versions of the downstream components [#1779](https://github.com/openshift/cluster-monitoring-operator/pull/1779) * [Bug 2114721](https://bugzilla.redhat.com/show_bug.cgi?id=2114721): Adds telemeter token hash to Deployment annotation [#1747](https://github.com/openshift/cluster-monitoring-operator/pull/1747) * [Bug 2100860](https://bugzilla.redhat.com/show_bug.cgi?id=2100860): Pass user-defined Alertmanager service in shared configmap [#1690](https://github.com/openshift/cluster-monitoring-operator/pull/1690) * [OCPBUGS-1364](https://issues.redhat.com/browse/OCPBUGS-1364): Dedicated kubelet ServiceMonitor for prometheus-adapter [#1752](https://github.com/openshift/cluster-monitoring-operator/pull/1752) * [Bug 1933144](https://bugzilla.redhat.com/show_bug.cgi?id=1933144): Extend KubeAggregatedAPIDown alert "for" to 15m [#1639](https://github.com/openshift/cluster-monitoring-operator/pull/1639) * Adds documentation about how to configure CMO [#1696](https://github.com/openshift/cluster-monitoring-operator/pull/1696) * Rename kube_pv to odf_system_pvs [#1756](https://github.com/openshift/cluster-monitoring-operator/pull/1756) * Synchronize versions of the downstream components [#1768](https://github.com/openshift/cluster-monitoring-operator/pull/1768) * go.{mod,sum}: require Go 1.18 [#1769](https://github.com/openshift/cluster-monitoring-operator/pull/1769) * Use odf metrics instead of ceph [#1718](https://github.com/openshift/cluster-monitoring-operator/pull/1718) * Add client certificate and key to service monitor [#1738](https://github.com/openshift/cluster-monitoring-operator/pull/1738) * Update jsonnet dependencies [#1766](https://github.com/openshift/cluster-monitoring-operator/pull/1766) * Add odf_system_objects_total and odf_system_bucket_count [#1763](https://github.com/openshift/cluster-monitoring-operator/pull/1763) * [MON-2654](https://issues.redhat.com/browse/MON-2654): Add a cluster advance feature usage metric [#1750](https://github.com/openshift/cluster-monitoring-operator/pull/1750) * Synchronize versions of the downstream components [#1761](https://github.com/openshift/cluster-monitoring-operator/pull/1761) * Update jsonnet dependencies [#1758](https://github.com/openshift/cluster-monitoring-operator/pull/1758) * Synchronize versions of the downstream components [#1759](https://github.com/openshift/cluster-monitoring-operator/pull/1759) * [OCPBUGS-864](https://issues.redhat.com/browse/OCPBUGS-864): sorted condition and update on change [#1746](https://github.com/openshift/cluster-monitoring-operator/pull/1746) * [MON-2646](https://issues.redhat.com/browse/MON-2646): Remove grafana related code [#1731](https://github.com/openshift/cluster-monitoring-operator/pull/1731) * [Bug 2099939](https://bugzilla.redhat.com/show_bug.cgi?id=2099939): Sets status when UserAlertmanagerConfig is missconfigured [#1724](https://github.com/openshift/cluster-monitoring-operator/pull/1724) * Update jsonnet dependencies [#1741](https://github.com/openshift/cluster-monitoring-operator/pull/1741) * Whitelist metrics for MCG addon [#1721](https://github.com/openshift/cluster-monitoring-operator/pull/1721) * [Bug 2116382](https://bugzilla.redhat.com/show_bug.cgi?id=2116382): Give precedence to CMO config map proxy config [#1737](https://github.com/openshift/cluster-monitoring-operator/pull/1737) * OWNERS: Add myself, and move former team members to emeritus [#1739](https://github.com/openshift/cluster-monitoring-operator/pull/1739) * [Bug 2100312](https://bugzilla.redhat.com/show_bug.cgi?id=2100312): go.mod: update openshift-api to current release-4.12 tip [#1740](https://github.com/openshift/cluster-monitoring-operator/pull/1740) * Update jsonnet dependencies [#1735](https://github.com/openshift/cluster-monitoring-operator/pull/1735) * [Bug 2115527](https://bugzilla.redhat.com/show_bug.cgi?id=2115527): reverts #1704 [#1734](https://github.com/openshift/cluster-monitoring-operator/pull/1734) * [MON-1261](https://issues.redhat.com/browse/MON-1261): exposing topology spread constraints through config [#1624](https://github.com/openshift/cluster-monitoring-operator/pull/1624) * Update jsonnet dependencies [#1730](https://github.com/openshift/cluster-monitoring-operator/pull/1730) * pkg/manifests/amcfg.go: reorder declarations [#1728](https://github.com/openshift/cluster-monitoring-operator/pull/1728) * Unpin Jsonnet dependencies. [#1725](https://github.com/openshift/cluster-monitoring-operator/pull/1725) * Synchronize versions of the downstream components [#1727](https://github.com/openshift/cluster-monitoring-operator/pull/1727) * [Bug 2083226](https://bugzilla.redhat.com/show_bug.cgi?id=2083226): increase alertmanager startupProbe failure threshold [#1720](https://github.com/openshift/cluster-monitoring-operator/pull/1720) * Synchronize versions of the downstream components [#1722](https://github.com/openshift/cluster-monitoring-operator/pull/1722) * [MON-2658](https://issues.redhat.com/browse/MON-2658): Add security context to additional containers in e2e tests [#1714](https://github.com/openshift/cluster-monitoring-operator/pull/1714) * [Bug 2089199](https://bugzilla.redhat.com/show_bug.cgi?id=2089199): Removes etcd related dashboards from CMO [#1674](https://github.com/openshift/cluster-monitoring-operator/pull/1674) * [Bug 2090988](https://bugzilla.redhat.com/show_bug.cgi?id=2090988): Set HA convention on admission-webhook [#1716](https://github.com/openshift/cluster-monitoring-operator/pull/1716) * Synchronize versions of the downstream components [#1713](https://github.com/openshift/cluster-monitoring-operator/pull/1713) * Add telemetry metrics for HyperShift [#1710](https://github.com/openshift/cluster-monitoring-operator/pull/1710) * Updating cluster-monitoring-operator images to be consistent with ART [#1711](https://github.com/openshift/cluster-monitoring-operator/pull/1711) * [Bug 2095719](https://bugzilla.redhat.com/show_bug.cgi?id=2095719): Updates CreateOrUpdateServiceAccounts [#1704](https://github.com/openshift/cluster-monitoring-operator/pull/1704) * [Bug 2100472](https://bugzilla.redhat.com/show_bug.cgi?id=2100472): fix alert controllers when not in techpreview [#1707](https://github.com/openshift/cluster-monitoring-operator/pull/1707) * Synchronize versions of the downstream components [#1705](https://github.com/openshift/cluster-monitoring-operator/pull/1705) * Revert "Bug 2100472: start alert controllers only when techpreview" [#1706](https://github.com/openshift/cluster-monitoring-operator/pull/1706) * [Bug 2100472](https://bugzilla.redhat.com/show_bug.cgi?id=2100472): start alert controllers only when techpreview [#1701](https://github.com/openshift/cluster-monitoring-operator/pull/1701) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/e131c1998d36790111a9af1c7bcdbee46ae295ba...ee4a20d4d0214c9c8fdacaede3482683436d36e0) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/28db40f169f64f881b0628c19bf7c64a7a9a2467) * [OCPBUGS-43872](https://issues.redhat.com/browse/OCPBUGS-43872): manifests/02-cncc-credentials: Set skipServiceCheck for GCP [#2548](https://github.com/openshift/cluster-network-operator/pull/2548) * [OCPBUGS-38905](https://issues.redhat.com/browse/OCPBUGS-38905): Add missing runbook for OVNKubernetesNorthdInactive [#2479](https://github.com/openshift/cluster-network-operator/pull/2479) * [OCPBUGS-37942](https://issues.redhat.com/browse/OCPBUGS-37942): [release-4.12] update whereabouts crd [#2461](https://github.com/openshift/cluster-network-operator/pull/2461) * [OCPBUGS-29167](https://issues.redhat.com/browse/OCPBUGS-29167): fix whereabouts conformance test failures [#2256](https://github.com/openshift/cluster-network-operator/pull/2256) * [OCPBUGS-29884](https://issues.redhat.com/browse/OCPBUGS-29884): add env var in whereabouts-reconciler daemonset [#2284](https://github.com/openshift/cluster-network-operator/pull/2284) * [OCPBUGS-29302](https://issues.redhat.com/browse/OCPBUGS-29302): Update ingressconfig_controller to use field Manager [#2268](https://github.com/openshift/cluster-network-operator/pull/2268) * [OCPBUGS-28801](https://issues.redhat.com/browse/OCPBUGS-28801): [release-4.12] Add ConfigMap mount to the whereabouts-reconciler DaemonSet [#2244](https://github.com/openshift/cluster-network-operator/pull/2244) * NO-JIRA: add kyrtapz as reviewer and approver for release 4.12 [#2230](https://github.com/openshift/cluster-network-operator/pull/2230) * [release 4.12] OCPBUGS-23025: Add maxLogFiles config for OVN-K Audit Logging [#2188](https://github.com/openshift/cluster-network-operator/pull/2188) * [OCPBUGS-24039](https://issues.redhat.com/browse/OCPBUGS-24039): remove all managed fields used by old manager [#2099](https://github.com/openshift/cluster-network-operator/pull/2099) * [OCPBUGS-21715](https://issues.redhat.com/browse/OCPBUGS-21715): Bump golang.org/x/net and github.com/openshift/library-go [#2124](https://github.com/openshift/cluster-network-operator/pull/2124) * [OCPBUGS-24571](https://issues.redhat.com/browse/OCPBUGS-24571): Disable weak SSH cipher suites [#2164](https://github.com/openshift/cluster-network-operator/pull/2164) * [OCPBUGS-25128](https://issues.redhat.com/browse/OCPBUGS-25128): Update to go 1.19 and x/net 0.8.0 [#2157](https://github.com/openshift/cluster-network-operator/pull/2157) * [OCPBUGS-23293](https://issues.redhat.com/browse/OCPBUGS-23293): IBMCloud specific: patch out management workload for dataplane component thats needed for bootstrapping [#2108](https://github.com/openshift/cluster-network-operator/pull/2108) * [OCPBUGS-20277](https://issues.redhat.com/browse/OCPBUGS-20277): Edited multus-admission-controller deployment config to not add autoount a service account token [#1884](https://github.com/openshift/cluster-network-operator/pull/1884) * [OCPBUGS-20197](https://issues.redhat.com/browse/OCPBUGS-20197): remove prestop hooks for northd, sbdbd and nbdb [#2055](https://github.com/openshift/cluster-network-operator/pull/2055) * [OCPBUGS-17656](https://issues.redhat.com/browse/OCPBUGS-17656): prevent creation of multiple cni-sysctl-allowlist-ds pods [#1948](https://github.com/openshift/cluster-network-operator/pull/1948) * [OCPBUGS-11547](https://issues.redhat.com/browse/OCPBUGS-11547): Hypershift: Add RollingUpdate parameters to multus-admission-controller [#1775](https://github.com/openshift/cluster-network-operator/pull/1775) * [OCPBUGS-16142](https://issues.redhat.com/browse/OCPBUGS-16142): fix reconciliation process of the allowlist controller [#1891](https://github.com/openshift/cluster-network-operator/pull/1891) * [release-4.12 ] OCPBUGS-11217:use annotation daemonset to update hybrid overlay [#1764](https://github.com/openshift/cluster-network-operator/pull/1764) * [OCPBUGS-15588](https://issues.redhat.com/browse/OCPBUGS-15588): Add release version annotation to whereabouts-reconciler [#1856](https://github.com/openshift/cluster-network-operator/pull/1856) * [OCPBUGS-13891](https://issues.redhat.com/browse/OCPBUGS-13891): [release-4.12] HyperShift: Support HostedControlPlane node selector [#1816](https://github.com/openshift/cluster-network-operator/pull/1816) * [OCPBUGS-13067](https://issues.redhat.com/browse/OCPBUGS-13067): Fix tier label, privileged, HOSTNAME/NODENAME in whereabouts reconciler [backport 4.12] [#1829](https://github.com/openshift/cluster-network-operator/pull/1829) * [OCPBUGS-6061](https://issues.redhat.com/browse/OCPBUGS-6061): Update github.com/Masterminds/sprig to v3 [#1689](https://github.com/openshift/cluster-network-operator/pull/1689) * [OCPBUGS-13013](https://issues.redhat.com/browse/OCPBUGS-13013): AUTH: update cluster-reader to include k8s.ovn.org [#1799](https://github.com/openshift/cluster-network-operator/pull/1799) * [OCPBUGS-13067](https://issues.redhat.com/browse/OCPBUGS-13067): Whereabouts should implement the reconciliation controller [backport 4.12] [#1801](https://github.com/openshift/cluster-network-operator/pull/1801) * [OCPBUGS-11559](https://issues.redhat.com/browse/OCPBUGS-11559): multus-admission-controller should not run as root under Hypershift [#1777](https://github.com/openshift/cluster-network-operator/pull/1777) * Bug OCPBUGS-4896: Kuryr: If set use MTU from Config for svc net [#1671](https://github.com/openshift/cluster-network-operator/pull/1671) * [OCPBUGS-10977](https://issues.redhat.com/browse/OCPBUGS-10977): HyperShift: Add POD_NAME env to ovnkube-node [#1753](https://github.com/openshift/cluster-network-operator/pull/1753) * [OCPBUGS-11461](https://issues.redhat.com/browse/OCPBUGS-11461): Split out konnectivity certs [#1771](https://github.com/openshift/cluster-network-operator/pull/1771) * [OCPBUGS-11178](https://issues.redhat.com/browse/OCPBUGS-11178): remove TLS_RSA_WITH_AES_128_CBC_SHA256 cipher [#1759](https://github.com/openshift/cluster-network-operator/pull/1759) * [OCPBUGS-11059](https://issues.redhat.com/browse/OCPBUGS-11059): Fix info log formatting [#1659](https://github.com/openshift/cluster-network-operator/pull/1659) * [OCPBUGS-10319](https://issues.redhat.com/browse/OCPBUGS-10319): HyperShift: Set affinity, tolerations and co-location for all hcp resources created by CNO [#1738](https://github.com/openshift/cluster-network-operator/pull/1738) * [OCPBUGS-8014](https://issues.redhat.com/browse/OCPBUGS-8014): add default noProxy config for Azure [#1722](https://github.com/openshift/cluster-network-operator/pull/1722) * [OCPBUGS-9927](https://issues.redhat.com/browse/OCPBUGS-9927): Enable configuration of node healthz server on ovnkube [#1731](https://github.com/openshift/cluster-network-operator/pull/1731) * [OCPBUGS-5953](https://issues.redhat.com/browse/OCPBUGS-5953): Backport Added missing API field podref to OverlappingRangeIPReservation CRD [Backport 4.12] [#1685](https://github.com/openshift/cluster-network-operator/pull/1685) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Add .hypershift.local to no proxy list [#1706](https://github.com/openshift/cluster-network-operator/pull/1706) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Do not use proxy for internal routes [#1704](https://github.com/openshift/cluster-network-operator/pull/1704) * [OCPBUGS-4778](https://issues.redhat.com/browse/OCPBUGS-4778): Fix handling of deployment and statefulset updates [#1663](https://github.com/openshift/cluster-network-operator/pull/1663) * [OCPBUGS-4238](https://issues.redhat.com/browse/OCPBUGS-4238): HyperShift: Co-locate OVN-Kubernetes master with other hcp pods [#1645](https://github.com/openshift/cluster-network-operator/pull/1645) * [OCPBUGS-6494](https://issues.redhat.com/browse/OCPBUGS-6494): OVN-Kubernetes: Stop sorting master node addresses, ignore readiness checks for redundant NB/SB [#1691](https://github.com/openshift/cluster-network-operator/pull/1691) * [OCPBUGS-3461](https://issues.redhat.com/browse/OCPBUGS-3461): CNI binary copy should account for the possibility of symlinks [backport 4.12] [#1615](https://github.com/openshift/cluster-network-operator/pull/1615) * [OCPBUGS-4856](https://issues.redhat.com/browse/OCPBUGS-4856): Disable the drop-icmp container 'oc' pprof webserver on Azure [#1666](https://github.com/openshift/cluster-network-operator/pull/1666) * [OCPBUGS-4686](https://issues.redhat.com/browse/OCPBUGS-4686): Revert "Remove references to the hosts kubeconfig" [#1660](https://github.com/openshift/cluster-network-operator/pull/1660) * [OCPBUGS-4183](https://issues.redhat.com/browse/OCPBUGS-4183): Fix default disable-udp-aggregation value on s390x [#1661](https://github.com/openshift/cluster-network-operator/pull/1661) * [OCPBUGS-4637](https://issues.redhat.com/browse/OCPBUGS-4637): Support RHOBS monitoring for HyperShift [#1652](https://github.com/openshift/cluster-network-operator/pull/1652) * [OCPBUGS-3956](https://issues.redhat.com/browse/OCPBUGS-3956): HyperShift: Do not accept empty infrastructure name [#1634](https://github.com/openshift/cluster-network-operator/pull/1634) * [OCPBUGS-4183](https://issues.redhat.com/browse/OCPBUGS-4183): Disable UDP aggregation on s390x [#1643](https://github.com/openshift/cluster-network-operator/pull/1643) * [OCPBUGS-3824](https://issues.redhat.com/browse/OCPBUGS-3824): ipsec: Run ovs-monitor-ipsec in the foreground and change probes [#1621](https://github.com/openshift/cluster-network-operator/pull/1621) * Jira OCPBUGS-3851: IPsec: Fix broken counter++ expression [#1636](https://github.com/openshift/cluster-network-operator/pull/1636) * [OCPBUGS-3944](https://issues.redhat.com/browse/OCPBUGS-3944): Remove references to the hosts kubeconfig [#1632](https://github.com/openshift/cluster-network-operator/pull/1632) * [OCPBUGS-3437](https://issues.redhat.com/browse/OCPBUGS-3437): HyperShift: Render cncc with proxy settings of the management cluster [#1613](https://github.com/openshift/cluster-network-operator/pull/1613) * [OCPBUGS-3889](https://issues.redhat.com/browse/OCPBUGS-3889): SDN: /var/run mount cleanup [#1628](https://github.com/openshift/cluster-network-operator/pull/1628) * [OCPBUGS-3184](https://issues.redhat.com/browse/OCPBUGS-3184): update microshift ovnk manifests [#1610](https://github.com/openshift/cluster-network-operator/pull/1610) * [OCPBUGS-2362](https://issues.redhat.com/browse/OCPBUGS-2362): Prefer oldest nodes, harden new alerts and revert setting new OVN-K alerts to info [#1579](https://github.com/openshift/cluster-network-operator/pull/1579) * fixed typo in comment [#1597](https://github.com/openshift/cluster-network-operator/pull/1597) * Jira OCPBUGS-1736: Always set PROXY variables for CNCC [#1576](https://github.com/openshift/cluster-network-operator/pull/1576) * Remove the allow_ra sysctl for ipv4 from default systl whitelist [#1590](https://github.com/openshift/cluster-network-operator/pull/1590) * [SDN-2591](https://issues.redhat.com/browse/SDN-2591): allow hybrid overlay to be enabled post install [#1584](https://github.com/openshift/cluster-network-operator/pull/1584) * [SDN-3515](https://issues.redhat.com/browse/SDN-3515): HyperShift: multus admission controller: expose metrics over HTTPs [#1583](https://github.com/openshift/cluster-network-operator/pull/1583) * rebase to k8s v1.25.0 [#1571](https://github.com/openshift/cluster-network-operator/pull/1571) * Bug OCPBUGS-2328: Fix for index out of range error [#1588](https://github.com/openshift/cluster-network-operator/pull/1588) * Add sysctl whitelist controller [#1573](https://github.com/openshift/cluster-network-operator/pull/1573) * Kuryr: Add missing keystoneauth options [#1581](https://github.com/openshift/cluster-network-operator/pull/1581) * [OCPBUGS-1341](https://issues.redhat.com/browse/OCPBUGS-1341): Set owner reference for pod network connectivity check [#1566](https://github.com/openshift/cluster-network-operator/pull/1566) * ovn-k, managed: pass join-subnet to control-plane [#1582](https://github.com/openshift/cluster-network-operator/pull/1582) * [OCPBUGS-1083](https://issues.redhat.com/browse/OCPBUGS-1083): Move OVNK alert level to info [#1564](https://github.com/openshift/cluster-network-operator/pull/1564) * Pass enable-udp-aggregation=true to ovn-kubernetes [#1533](https://github.com/openshift/cluster-network-operator/pull/1533) * [OCPBUGS-1038](https://issues.redhat.com/browse/OCPBUGS-1038): Multus IPAM detection should honor conflists [#1570](https://github.com/openshift/cluster-network-operator/pull/1570) * egress_ip: remove redundant config [#1568](https://github.com/openshift/cluster-network-operator/pull/1568) * [OCPBUGS-1515](https://issues.redhat.com/browse/OCPBUGS-1515): Use custom uint128 type when validating v6InternalSubnet [#1561](https://github.com/openshift/cluster-network-operator/pull/1561) * [SDN-3283](https://issues.redhat.com/browse/SDN-3283): HyperShift: Use a socks-proxy in ovnkube-master to allow for node heath checks [#1539](https://github.com/openshift/cluster-network-operator/pull/1539) * Bug: OCPBUGS-736: Kuryr: Use machine net MTU to create service net [#1545](https://github.com/openshift/cluster-network-operator/pull/1545) * Migrate Egress IP configuration during SDN migration and rollback [#1536](https://github.com/openshift/cluster-network-operator/pull/1536) * Allow empty vSphere status field in VIP sync [#1558](https://github.com/openshift/cluster-network-operator/pull/1558) * microshift: update ovnk manifests [#1552](https://github.com/openshift/cluster-network-operator/pull/1552) * Add ovn-kubernetes-microshift to image-stream [#1556](https://github.com/openshift/cluster-network-operator/pull/1556) * Migrate Multicast configuration during SDN migration and rollback [#1543](https://github.com/openshift/cluster-network-operator/pull/1543) * OVN-K: add patch/update service permissions to controller [#1554](https://github.com/openshift/cluster-network-operator/pull/1554) * Add controller to synchronize the API and Ingress VIP fields [#1519](https://github.com/openshift/cluster-network-operator/pull/1519) * Bug SDN-3458: HyperShift: Differentiate resources deployed by different CNO instances in status manager [#1541](https://github.com/openshift/cluster-network-operator/pull/1541) * OVN-K alerts: first tranche [#1526](https://github.com/openshift/cluster-network-operator/pull/1526) * [SDN-3432](https://issues.redhat.com/browse/SDN-3432): Add alert for OVNKubernetesControllerDisconnectedSouthboundDatabase [#1548](https://github.com/openshift/cluster-network-operator/pull/1548) * Add vSphere platform to allow dual-stack cluster [#1518](https://github.com/openshift/cluster-network-operator/pull/1518) * [OKD-49](https://issues.redhat.com/browse/OKD-49): Adds support for scos to multus [#1544](https://github.com/openshift/cluster-network-operator/pull/1544) * [Bug 1894268](https://bugzilla.redhat.com/show_bug.cgi?id=1894268): Allow users to specify ovnkube join subnet [#1508](https://github.com/openshift/cluster-network-operator/pull/1508) * Bug OCPBUGS-917: Add EgressQoS DstCIDR format validation [#1492](https://github.com/openshift/cluster-network-operator/pull/1492) * Multus admission controller: Wait for token in Hypershift [#1546](https://github.com/openshift/cluster-network-operator/pull/1546) * Use fixed name for creating EgressFirewall CRs [#1540](https://github.com/openshift/cluster-network-operator/pull/1540) * Migrate Egress Firewall Configuration during SDN migration and Rollback [#1534](https://github.com/openshift/cluster-network-operator/pull/1534) * hypershift: set multus controller priority appropriate for hosted clusters [#1538](https://github.com/openshift/cluster-network-operator/pull/1538) * [Bug 2094068](https://bugzilla.redhat.com/show_bug.cgi?id=2094068): Add northboundstale alert runbook [#1482](https://github.com/openshift/cluster-network-operator/pull/1482) * microshift: compact ovn databases periodically [#1537](https://github.com/openshift/cluster-network-operator/pull/1537) * Hypershift: Allow configuring hostname and labels on the route [#1531](https://github.com/openshift/cluster-network-operator/pull/1531) * Multus admission controller changes for hypershift [#1516](https://github.com/openshift/cluster-network-operator/pull/1516) * HyperShift: Move CNCC to the controll-plane namespace [#1525](https://github.com/openshift/cluster-network-operator/pull/1525) * Bug OCPBUGS-216: Kuryr: Bump timeoutSeconds for livenessProbe [#1528](https://github.com/openshift/cluster-network-operator/pull/1528) * Add missing runbook links for OVN-kubernetes alerts [#1523](https://github.com/openshift/cluster-network-operator/pull/1523) * [Bug 2103680](https://bugzilla.redhat.com/show_bug.cgi?id=2103680): avoid overrriding disableNetworkDiagnostics on reconciliation [#1527](https://github.com/openshift/cluster-network-operator/pull/1527) * Render CRDs for both OSDN and OVNK during migration [#1521](https://github.com/openshift/cluster-network-operator/pull/1521) * Configure ignored namespaces into multus-admission-controller [#1515](https://github.com/openshift/cluster-network-operator/pull/1515) * Add microshift ovnk manifests [#1517](https://github.com/openshift/cluster-network-operator/pull/1517) * [Bug 2116982](https://bugzilla.redhat.com/show_bug.cgi?id=2116982): multus-admission-controller SNO number of replicas [#1524](https://github.com/openshift/cluster-network-operator/pull/1524) * Enable the cloud-network-config-controller for OpenStack [#1505](https://github.com/openshift/cluster-network-operator/pull/1505) * multi-networkpolicy: Enable on SR-IOV networks [#1443](https://github.com/openshift/cluster-network-operator/pull/1443) * Updating cluster-network-operator images to be consistent with ART [#1507](https://github.com/openshift/cluster-network-operator/pull/1507) * Add configmap list/watch rights to cloud-network-config-controller [#1511](https://github.com/openshift/cluster-network-operator/pull/1511) * The Multus admission controller should run as a deployment [#1514](https://github.com/openshift/cluster-network-operator/pull/1514) * [Bug 2108232](https://bugzilla.redhat.com/show_bug.cgi?id=2108232): Revert "Bug 2085089: Pass enable-udp-aggregation=true to ovn-kubernetes" [#1510](https://github.com/openshift/cluster-network-operator/pull/1510) * [Bug 2100601](https://bugzilla.redhat.com/show_bug.cgi?id=2100601): Update CNO to config EgressIP timeout for ovnk [#1498](https://github.com/openshift/cluster-network-operator/pull/1498) * [Bug 2060079](https://bugzilla.redhat.com/show_bug.cgi?id=2060079): Enhance sensitivity of SDN alert NodeProxyApplySlow [#1491](https://github.com/openshift/cluster-network-operator/pull/1491) * [Bug 2103590](https://bugzilla.redhat.com/show_bug.cgi?id=2103590): Add init container to ensure that Status.podIP is set before postStart hooks run [#1503](https://github.com/openshift/cluster-network-operator/pull/1503) * remove @squeed from owners [#1497](https://github.com/openshift/cluster-network-operator/pull/1497) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/33da9fb933f67f53f2c317f3a021a458a41ce159...28db40f169f64f881b0628c19bf7c64a7a9a2467) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/20966da941ab8773261b5b4c133f3a1716699243) * irqbalance: set banned cpus list to 0 (#1006) [#1006](https://github.com/openshift/cluster-node-tuning-operator/pull/1006) * Refactor IRQ load balancing enable/disable test (#1038) [#1038](https://github.com/openshift/cluster-node-tuning-operator/pull/1038) * Scheduler plugin: ignore IRQs (#1034) [#1034](https://github.com/openshift/cluster-node-tuning-operator/pull/1034) * Disable HTTP/2 for webhook and metrics servers (#849) [#849](https://github.com/openshift/cluster-node-tuning-operator/pull/849) * Remove obsolete protocols and weak ciphers (#847) [#847](https://github.com/openshift/cluster-node-tuning-operator/pull/847) * [OCPBUGS-21837](https://issues.redhat.com/browse/OCPBUGS-21837): nto: pao avoid timeout when there are too many CSV (#838) [#838](https://github.com/openshift/cluster-node-tuning-operator/pull/838) * Tighten the rules for modifying Tuned Profiles (#790) [#790](https://github.com/openshift/cluster-node-tuning-operator/pull/790) * [OCPBUGS-19459](https://issues.redhat.com/browse/OCPBUGS-19459): check for object being nil (#821) [#821](https://github.com/openshift/cluster-node-tuning-operator/pull/821) * [OCPBUGS-18868](https://issues.redhat.com/browse/OCPBUGS-18868): [release-4.14] e2e: add expected max latancy to hwlatdetec test & rename constant (#788) (#808) (#809) [#788](https://github.com/openshift/cluster-node-tuning-operator/pull/788) * Release leader election on manager exit (#789) [#789](https://github.com/openshift/cluster-node-tuning-operator/pull/789) * Fix a race in e2e test rollback.go code (#742) [#742](https://github.com/openshift/cluster-node-tuning-operator/pull/742) * pao: e2e: Make script executable (#734) [#734](https://github.com/openshift/cluster-node-tuning-operator/pull/734) * pao e2e: Split gcp-pao lane (#728) [#728](https://github.com/openshift/cluster-node-tuning-operator/pull/728) * Do not rollback settings on TuneD exit (#711) [#711](https://github.com/openshift/cluster-node-tuning-operator/pull/711) * [OCPBUGS-15800](https://issues.redhat.com/browse/OCPBUGS-15800): e2e: latency testing: increase the expected threshold and fix gomega truncating output (#710) [#710](https://github.com/openshift/cluster-node-tuning-operator/pull/710) * Revert "Remove optimization to allow full resync (#569)" (#688) [#569](https://github.com/openshift/cluster-node-tuning-operator/pull/569) * update owners 20230109 (#549) [#549](https://github.com/openshift/cluster-node-tuning-operator/pull/549) * Add PerformanceProfiles to 'oc adm must-gather' (#667) [#667](https://github.com/openshift/cluster-node-tuning-operator/pull/667) * [OCPBUGS-14472](https://issues.redhat.com/browse/OCPBUGS-14472): Fix updating numa core siblings map in GetCpuSiblings function (#675) [#675](https://github.com/openshift/cluster-node-tuning-operator/pull/675) * Remove trailing spaces from test names (#572) [#572](https://github.com/openshift/cluster-node-tuning-operator/pull/572) * Remove optimization to allow full resync (#569) [#569](https://github.com/openshift/cluster-node-tuning-operator/pull/569) * e2e:latency: count LATENCY_TEST_DELAY in timeout (#539) [#539](https://github.com/openshift/cluster-node-tuning-operator/pull/539) * e2e: add missing test id (#630) [#630](https://github.com/openshift/cluster-node-tuning-operator/pull/630) * Remove subPaths, they are broken (#627) [#627](https://github.com/openshift/cluster-node-tuning-operator/pull/627) * Remove the preStop hook for openshift-tuned (#621) [#621](https://github.com/openshift/cluster-node-tuning-operator/pull/621) * E2E: Per Core Runtime Tuning Test automation (#509) (#568) [#509](https://github.com/openshift/cluster-node-tuning-operator/pull/509) * E2E: Network stack Pinning tests (#533) [#533](https://github.com/openshift/cluster-node-tuning-operator/pull/533) * Run node selector tests only if we 2 non Performanceworker nodes (#554) [#554](https://github.com/openshift/cluster-node-tuning-operator/pull/554) * skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#543) [#543](https://github.com/openshift/cluster-node-tuning-operator/pull/543) * pao: latency-tests: read test log directly from pod (#547) [#547](https://github.com/openshift/cluster-node-tuning-operator/pull/547) * Add authentication to the /metrics endpoint (#553) [#553](https://github.com/openshift/cluster-node-tuning-operator/pull/553) * Update NTO images to be consistent with ART (#557) [#557](https://github.com/openshift/cluster-node-tuning-operator/pull/557) * [OCPBUGS-5021](https://issues.redhat.com/browse/OCPBUGS-5021): [release-4.12] Fix two irqbalance tests - smp affinity vs online (#530) [#530](https://github.com/openshift/cluster-node-tuning-operator/pull/530) * Remove trailing space from test name (#546) [#546](https://github.com/openshift/cluster-node-tuning-operator/pull/546) * Fix default hard eviction threshold when PCC is applied (#520) [#520](https://github.com/openshift/cluster-node-tuning-operator/pull/520) * [OCPBUGS-4215](https://issues.redhat.com/browse/OCPBUGS-4215): e2e: performance profile: add logs and minor fixes (#516) [#516](https://github.com/openshift/cluster-node-tuning-operator/pull/516) * E2E: Automation offline CPUs test (#514) [#514](https://github.com/openshift/cluster-node-tuning-operator/pull/514) * Configure ktimers scheduler prio same as ksoftirqs (#511) [#511](https://github.com/openshift/cluster-node-tuning-operator/pull/511) * Set RPS for all rx queues (#503) [#503](https://github.com/openshift/cluster-node-tuning-operator/pull/503) * E2E fix: Make Nodeselector tests independent (#422) [#422](https://github.com/openshift/cluster-node-tuning-operator/pull/422) * Filter out copied csvs when removing pao CSV (#492) [#492](https://github.com/openshift/cluster-node-tuning-operator/pull/492) * e2e: perfprof: remove broken test (#494) [#494](https://github.com/openshift/cluster-node-tuning-operator/pull/494) * udev-rule: rationale for applying the rule on virtual interfaces (#482) [#482](https://github.com/openshift/cluster-node-tuning-operator/pull/482) * HyperShift: rename Tuned ConfigMap key from tuned to tuning (#491) [#491](https://github.com/openshift/cluster-node-tuning-operator/pull/491) * HyperShift: avoid unnecessary mcfg creation (#481) [#481](https://github.com/openshift/cluster-node-tuning-operator/pull/481) * e2e: perfprof: get cpus from node capacity (#486) [#486](https://github.com/openshift/cluster-node-tuning-operator/pull/486) * Add intel_pstate=disable to default configuration with no hints (#480) [#480](https://github.com/openshift/cluster-node-tuning-operator/pull/480) * [OCPBUGSM-47141](https://issues.redhat.com/browse/OCPBUGSM-47141): set RPS for veth only at host level (#479) [#479](https://github.com/openshift/cluster-node-tuning-operator/pull/479) * Adjust nto_custom_profiles:count metric to count by _id (#476) [#476](https://github.com/openshift/cluster-node-tuning-operator/pull/476) * Set default RealTime hint to true (#475) [#475](https://github.com/openshift/cluster-node-tuning-operator/pull/475) * Clean output of kernel args if no hugepages or add args are present (#474) [#474](https://github.com/openshift/cluster-node-tuning-operator/pull/474) * workloadHints not included in validateFields() (#468) [#468](https://github.com/openshift/cluster-node-tuning-operator/pull/468) * Add perPodPowerManagement workloadHint to PPC (#430) [#430](https://github.com/openshift/cluster-node-tuning-operator/pull/430) * previously know as Performance Addon Operator (#473) [#473](https://github.com/openshift/cluster-node-tuning-operator/pull/473) * Create HACKING.md file (#449) [#449](https://github.com/openshift/cluster-node-tuning-operator/pull/449) * Add API workloadHint perPodPowerManagement (#415) [#415](https://github.com/openshift/cluster-node-tuning-operator/pull/415) * Skip should set offline cpus after deploy PAO test (#470) [#470](https://github.com/openshift/cluster-node-tuning-operator/pull/470) * Add verification on kernel param rcutree.kthread (#464) [#464](https://github.com/openshift/cluster-node-tuning-operator/pull/464) * e2e: Fix metrics_cert_rotation.go (#471) [#471](https://github.com/openshift/cluster-node-tuning-operator/pull/471) * Performance profile Annotation to enable RPS (#462) [#462](https://github.com/openshift/cluster-node-tuning-operator/pull/462) * HyperShift: Create ConfigMaps for NTO-generated MachineConfigs (#456) [#456](https://github.com/openshift/cluster-node-tuning-operator/pull/456) * Toggle RPS configuration with realtime hint (#460) [#460](https://github.com/openshift/cluster-node-tuning-operator/pull/460) * Refactor WorkloadHints (#418) [#418](https://github.com/openshift/cluster-node-tuning-operator/pull/418) * Enable e2e tests for SNO (#459) [#459](https://github.com/openshift/cluster-node-tuning-operator/pull/459) * Improve tuned test (#426) [#426](https://github.com/openshift/cluster-node-tuning-operator/pull/426) * hack: performance: skip tests under 5_latency_testing (#448) [#448](https://github.com/openshift/cluster-node-tuning-operator/pull/448) * hypershift: Remove dynamic client and simplify getNodePoolNameFromNode (#452) [#452](https://github.com/openshift/cluster-node-tuning-operator/pull/452) * irqbalance: add unit to clear the cpu ban list #413 (#444) [#444](https://github.com/openshift/cluster-node-tuning-operator/pull/444) * Enable basic sysctl tuning of HyperShift hosted cluster nodes (#390) [#390](https://github.com/openshift/cluster-node-tuning-operator/pull/390) * e2e: performance: update path of latency binary (#443) [#443](https://github.com/openshift/cluster-node-tuning-operator/pull/443) * latency-tests: improve logs clarity (#393) [#393](https://github.com/openshift/cluster-node-tuning-operator/pull/393) * e2e: performance: Update PP isolated cpus (#429) [#429](https://github.com/openshift/cluster-node-tuning-operator/pull/429) * Allow new cri-o annotations for power management config (#383) [#383](https://github.com/openshift/cluster-node-tuning-operator/pull/383) * leader.go: remove unused file (#441) [#441](https://github.com/openshift/cluster-node-tuning-operator/pull/441) * convert core and cpu strings to integer (#432) [#432](https://github.com/openshift/cluster-node-tuning-operator/pull/432) * stalld: remove support for built-in stalld (#433) [#433](https://github.com/openshift/cluster-node-tuning-operator/pull/433) * e2e: fix a race in [reboots] tests (#439) [#439](https://github.com/openshift/cluster-node-tuning-operator/pull/439) * e2e: perfprof: unbreak the e2e-gcp PAO lane (#438) [#438](https://github.com/openshift/cluster-node-tuning-operator/pull/438) * [Bug 2105123](https://bugzilla.redhat.com/show_bug.cgi?id=2105123): tuned: disable irqbalance (#396) [#396](https://github.com/openshift/cluster-node-tuning-operator/pull/396) * Add function to node utils to fetch Core Siblings (#403) [#403](https://github.com/openshift/cluster-node-tuning-operator/pull/403) * Add client certificate and key to service monitor (#427) [#427](https://github.com/openshift/cluster-node-tuning-operator/pull/427) * openshift-tuned: remember recommended profile (#421) [#421](https://github.com/openshift/cluster-node-tuning-operator/pull/421) * Add offlined to v1 api (#417) [#417](https://github.com/openshift/cluster-node-tuning-operator/pull/417) * add +optional and +default=true to workloadHints API (#416) [#416](https://github.com/openshift/cluster-node-tuning-operator/pull/416) * TuneD: use the same FDP version for upstream (#412) [#412](https://github.com/openshift/cluster-node-tuning-operator/pull/412) * Fix cpu overlap error output (#409) [#409](https://github.com/openshift/cluster-node-tuning-operator/pull/409) * [Bug 2102450](https://bugzilla.redhat.com/show_bug.cgi?id=2102450): set rcutree.kthread_prio to ksoftirqd prio (#408) [#408](https://github.com/openshift/cluster-node-tuning-operator/pull/408) * e2e: add podsecurity labels (#405) [#405](https://github.com/openshift/cluster-node-tuning-operator/pull/405) * doc: fix description of the `PERFORMANCE_PROFILE_INPUT_FILES` env var (#399) [#399](https://github.com/openshift/cluster-node-tuning-operator/pull/399) * e2e: check for tsc=reliable instead of tsc=nowatchdog (#410) [#410](https://github.com/openshift/cluster-node-tuning-operator/pull/410) * test: utils: use updated profile, not original (#404) [#404](https://github.com/openshift/cluster-node-tuning-operator/pull/404) * Dockerfile: provide full URL to CentOS stream image (#406) [#406](https://github.com/openshift/cluster-node-tuning-operator/pull/406) * [Bug 2105967](https://bugzilla.redhat.com/show_bug.cgi?id=2105967): E2E test case Telco friendly workload hints (#374) [#374](https://github.com/openshift/cluster-node-tuning-operator/pull/374) * Rename Performance Addon Controller to Performance Profile Controller (#373) [#373](https://github.com/openshift/cluster-node-tuning-operator/pull/373) * makefile: enable running pao latency testing suite (#376) [#376](https://github.com/openshift/cluster-node-tuning-operator/pull/376) * Clean up file and fix API docs (#391) [#391](https://github.com/openshift/cluster-node-tuning-operator/pull/391) * Add clientset.go missing pkg/generated file (#397) [#397](https://github.com/openshift/cluster-node-tuning-operator/pull/397) * Fix typo realTime Hint in PerformanceProfile.yaml (#389) [#389](https://github.com/openshift/cluster-node-tuning-operator/pull/389) * Fix wrong kubelet test (#394) [#394](https://github.com/openshift/cluster-node-tuning-operator/pull/394) * Bump vendor dependencies to k8s 1.24.2 (#386) [#386](https://github.com/openshift/cluster-node-tuning-operator/pull/386) * must-gather e2e test (#365) [#365](https://github.com/openshift/cluster-node-tuning-operator/pull/365) * Switch to CentOS Stream for upstream Containerfile (#385) [#385](https://github.com/openshift/cluster-node-tuning-operator/pull/385) * Remove stale Profiles. (#381) [#381](https://github.com/openshift/cluster-node-tuning-operator/pull/381) * PAO: update README.txt (#369) [#369](https://github.com/openshift/cluster-node-tuning-operator/pull/369) * e2e: performance profile: Latency tests stabilization (#368) [#368](https://github.com/openshift/cluster-node-tuning-operator/pull/368) * Updating cluster-node-tuning-operator images to be consistent with ART (#382) [#382](https://github.com/openshift/cluster-node-tuning-operator/pull/382) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/e65d78b5407738b4aa3b52d74ac63de7a561dbd1...20966da941ab8773261b5b4c133f3a1716699243) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/b870fc67ef5a0e92df5e5bed1ba0cb1cf197d8c6) * [OCPBUGS-22689](https://issues.redhat.com/browse/OCPBUGS-22689): increase timeout for probes [#558](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/558) * : OCPBUGS-20694: bump library-go to include switch to HTTP/1.1 [#556](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/556) * [OCPBUGS-13346](https://issues.redhat.com/browse/OCPBUGS-13346): dont log jwt tokens [#543](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/543) * [OCPBUGS-3293](https://issues.redhat.com/browse/OCPBUGS-3293): routes/status resources can leak sensitive data, exclude it from audit [#512](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/512) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#507](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/507) * remove old ensureDaemonSetCleanup [#505](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/505) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): operator NS manifest: Set empty openshift.io/run-level [#497](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/497) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/0e82f58c55a5d966cc46e0cb489e33601eb1df6f...b870fc67ef5a0e92df5e5bed1ba0cb1cf197d8c6) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/ab963d8ad0387788c947b884a96eb9b2fed470b6) * [OCPBUGS-20777](https://issues.redhat.com/browse/OCPBUGS-20777): bump(k8s,openshift) to address CVE-2023-44487 [#311](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/311) * [OCPBUGS-4803](https://issues.redhat.com/browse/OCPBUGS-4803): [release-4.12] Correct go file formatting for go1.19 with gofmt [#275](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/275) * [OCPBUGS-3841](https://issues.redhat.com/browse/OCPBUGS-3841): update apf configuration to use v1beta2 [#271](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/271) * [BUILD-534](https://issues.redhat.com/browse/BUILD-534): Rebase to k8s 1.25 [#268](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/268) * manage openshift-controller-manager as a Deployment [#264](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/264) * [Bug 2055620](https://bugzilla.redhat.com/show_bug.cgi?id=2055620): Add permissions for image trigger controller [#244](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/244) * switch to route-controller-manager image and use ApplyDeployment no. 2 [#267](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/267) * Revert "switch to route-controller-manager image and use ApplyDeployment" [#265](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/265) * switch to route-controller-manager image and use ApplyDeployment [#258](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/258) * rename operator queue to OpenshiftControllerManagerOperator [#257](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/257) * fix README links [#263](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/263) * [OCPBUGS-722](https://issues.redhat.com/browse/OCPBUGS-722): handle errors during operand creation and update [#262](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/262) * [OCPBUGS-722](https://issues.redhat.com/browse/OCPBUGS-722): Fix NPD when accessing rote controller spec.deployment.replicas [#259](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/259) * Manage route controllers in separate ns [#255](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/255) * Adding leader election leases permissions for openshift-controller-manager-sa [#253](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/253) * [BUILD-417](https://issues.redhat.com/browse/BUILD-417): Adding leader election leases [#250](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/250) * [Bug 2110629](https://bugzilla.redhat.com/show_bug.cgi?id=2110629): Set openshift.io/run-level to nil in openshift-controller-manager namespace [#248](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/248) * [Bug 2110617](https://bugzilla.redhat.com/show_bug.cgi?id=2110617): Add namespace and RBAC needed for ingress-to-route [#247](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/247) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#245](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/245) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/a3473662f96140be5a462203885fc03d0e83f95c...ab963d8ad0387788c947b884a96eb9b2fed470b6) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/cb8862b0042ac2e7130a7c018e3e083ebc46705e) * [OCPBUGS-21080](https://issues.redhat.com/browse/OCPBUGS-21080): Bump deps to address CVE-2023-44487 [4.12] [#136](https://github.com/openshift/cluster-policy-controller/pull/136) * [OCPBUGS-12442](https://issues.redhat.com/browse/OCPBUGS-12442): psalabelsyncer: handle empty namespace of a rolebinding subject [#111](https://github.com/openshift/cluster-policy-controller/pull/111) * [OCPBUGS-14092](https://issues.redhat.com/browse/OCPBUGS-14092): [4.12] fix ClusterResourceQuotas to work for all api resources including custom resources [#117](https://github.com/openshift/cluster-policy-controller/pull/117) * [OCPBUGS-13889](https://issues.redhat.com/browse/OCPBUGS-13889): external template and route Informer [#114](https://github.com/openshift/cluster-policy-controller/pull/114) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): backport feature gate honoring for PSa label syncer [#98](https://github.com/openshift/cluster-policy-controller/pull/98) * [OCPBUGS-7705](https://issues.redhat.com/browse/OCPBUGS-7705): [release-4.12] update dependencies to point to v0.25.0 [#102](https://github.com/openshift/cluster-policy-controller/pull/102) * [OCPBUGS-5786](https://issues.redhat.com/browse/OCPBUGS-5786): clusterquotareconciliation: do not sync quota monitor cache with no monitors registered [#95](https://github.com/openshift/cluster-policy-controller/pull/95) * [OCPBUGS-3663](https://issues.redhat.com/browse/OCPBUGS-3663): Revert "Revert "Revert "psalabelsyncer: synchronize the enforcement l… [#90](https://github.com/openshift/cluster-policy-controller/pull/90) * Bump go to 1.19 in go.mod [#88](https://github.com/openshift/cluster-policy-controller/pull/88) * Bump Kubernetes module dependencies to 1.25. [#87](https://github.com/openshift/cluster-policy-controller/pull/87) * Factor our ns exemptions to make them consumable by other components [#85](https://github.com/openshift/cluster-policy-controller/pull/85) * pkg/psalabelsyncer: rm unused, simple bool return [#86](https://github.com/openshift/cluster-policy-controller/pull/86) * Revert "Revert "psalabelsyncer: synchronize the enforcement label"" [#84](https://github.com/openshift/cluster-policy-controller/pull/84) * Revert "psalabelsyncer: synchronize the enforcement label" [#82](https://github.com/openshift/cluster-policy-controller/pull/82) * psalabelsyncer: synchronize the enforcement label [#81](https://github.com/openshift/cluster-policy-controller/pull/81) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/83e97b522ef2e757440362f099593222121684d1...cb8862b0042ac2e7130a7c018e3e083ebc46705e) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/f1b49e34512d38bf908183318edd1f9f9aeef883) * [OCPBUGS-15757](https://issues.redhat.com/browse/OCPBUGS-15757): Update Jenkins and Jenkins Agent Base image versions [#506](https://github.com/openshift/cluster-samples-operator/pull/506) * [OCPBUGS-10918](https://issues.redhat.com/browse/OCPBUGS-10918): update Jenkins to v4.12 [#492](https://github.com/openshift/cluster-samples-operator/pull/492) * [OCPBUGS-7208](https://issues.redhat.com/browse/OCPBUGS-7208): When setting allowedRegistries urls the openshift-samples operator is degraded [#489](https://github.com/openshift/cluster-samples-operator/pull/489) * [OCPBUGS-4599](https://issues.redhat.com/browse/OCPBUGS-4599): Bump k8s master [#479](https://github.com/openshift/cluster-samples-operator/pull/479) * [OCPBUGS-4407](https://issues.redhat.com/browse/OCPBUGS-4407): Update Cluster Sample Operator dependencies and libraries for OCP 4.13 [#478](https://github.com/openshift/cluster-samples-operator/pull/478) * [OCPBUGS-4369](https://issues.redhat.com/browse/OCPBUGS-4369): Update Cluster Sample Operator dependencies and libraries for OCP 4.12 [#477](https://github.com/openshift/cluster-samples-operator/pull/477) * Updating ose-cluster-samples-operator images to be consistent with ART [#465](https://github.com/openshift/cluster-samples-operator/pull/465) * Add client certificate and key to service monitor [#464](https://github.com/openshift/cluster-samples-operator/pull/464) * Updating ose-cluster-samples-operator images to be consistent with ART [#435](https://github.com/openshift/cluster-samples-operator/pull/435) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/051761b88ee7a2327130172afdb8a3107405df94...f1b49e34512d38bf908183318edd1f9f9aeef883) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/21ebf328f53182111eb7dce344487ba633d09b1a) * [OCPBUGS-21266](https://issues.redhat.com/browse/OCPBUGS-21266): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#407](https://github.com/openshift/cluster-storage-operator/pull/407) * [OCPBUGS-18131](https://issues.redhat.com/browse/OCPBUGS-18131): Add patch for allowing configmap updates via clusterrole [#402](https://github.com/openshift/cluster-storage-operator/pull/402) * [OCPBUGS-14307](https://issues.redhat.com/browse/OCPBUGS-14307): User real node name in failing mount alerts [#377](https://github.com/openshift/cluster-storage-operator/pull/377) * [OCPBUGS-13719](https://issues.redhat.com/browse/OCPBUGS-13719): assets: csi: hypershift: add pull-secret to aws-ebs-csi-driver-operator ServiceAccount [#370](https://github.com/openshift/cluster-storage-operator/pull/370) * [OCPBUGS-10646](https://issues.redhat.com/browse/OCPBUGS-10646): Hypershift: set control plane operand properties [#355](https://github.com/openshift/cluster-storage-operator/pull/355) * [OCPBUGS-8374](https://issues.redhat.com/browse/OCPBUGS-8374): Add UID to CSO Pod to be able to run with custom SCCs [#347](https://github.com/openshift/cluster-storage-operator/pull/347) * [OCPBUGS-7331](https://issues.redhat.com/browse/OCPBUGS-7331): hypershift: remove inject-proxy annotation from aws-ebs-csi-driver-operator deployment [#337](https://github.com/openshift/cluster-storage-operator/pull/337) * [STOR-1039](https://issues.redhat.com/browse/STOR-1039): Make changes into CSO for hypershift [#318](https://github.com/openshift/cluster-storage-operator/pull/318) * [OCPBUGS-2880](https://issues.redhat.com/browse/OCPBUGS-2880): Fix panic on empty featureGate.spec.customNoUpgrade [#325](https://github.com/openshift/cluster-storage-operator/pull/325) * [Bug 2093016](https://bugzilla.redhat.com/show_bug.cgi?id=2093016): Add alert about attach / mount failing [#324](https://github.com/openshift/cluster-storage-operator/pull/324) * [OCPBUGS-1361](https://issues.redhat.com/browse/OCPBUGS-1361): Reword vSphere problem detector check alerts [#322](https://github.com/openshift/cluster-storage-operator/pull/322) * Remove specific UID from cluster-storage-operator [#316](https://github.com/openshift/cluster-storage-operator/pull/316) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Allow CSI operator to get CRDs [#323](https://github.com/openshift/cluster-storage-operator/pull/323) * add storage capability annotation [#303](https://github.com/openshift/cluster-storage-operator/pull/303) * Bump go to 1.19 [#321](https://github.com/openshift/cluster-storage-operator/pull/321) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#317](https://github.com/openshift/cluster-storage-operator/pull/317) * [STOR-1050](https://issues.redhat.com/browse/STOR-1050): bump openshift/api to latest master [#319](https://github.com/openshift/cluster-storage-operator/pull/319) * Remove in-tree AWS EBS and GCP PD storage classes [#312](https://github.com/openshift/cluster-storage-operator/pull/312) * [TRT-534](https://issues.redhat.com/browse/TRT-534): Add client certificate and key to service monitor [#306](https://github.com/openshift/cluster-storage-operator/pull/306) * [OCPBUGS-946](https://issues.redhat.com/browse/OCPBUGS-946): Resource csi.storage.k8s.io/csinodeinfos added to powervs-block-csi-d river-operator-clusterrole [#315](https://github.com/openshift/cluster-storage-operator/pull/315) * Updating cluster-storage-operator images to be consistent with ART [#296](https://github.com/openshift/cluster-storage-operator/pull/296) * [Bug 2112237](https://bugzilla.redhat.com/show_bug.cgi?id=2112237): correct sc error messages for ibm and alibaba platforms [#310](https://github.com/openshift/cluster-storage-operator/pull/310) * Add PowerVS Block CSI Driver Operator [#304](https://github.com/openshift/cluster-storage-operator/pull/304) * [Bug 2108054](https://bugzilla.redhat.com/show_bug.cgi?id=2108054): Allow Prometheus to scan openshift-cluster-csi-drivers namespace [#308](https://github.com/openshift/cluster-storage-operator/pull/308) * [STOR-956](https://issues.redhat.com/browse/STOR-956): Bump(openshift/api): to get CSI changes [#307](https://github.com/openshift/cluster-storage-operator/pull/307) * [Bug 2108054](https://bugzilla.redhat.com/show_bug.cgi?id=2108054): Add alert about unsupported CSI driver [#305](https://github.com/openshift/cluster-storage-operator/pull/305) * [Bug 2107043](https://bugzilla.redhat.com/show_bug.cgi?id=2107043): HTTPS_PROXY ENV missing in some CSI driver operators [#301](https://github.com/openshift/cluster-storage-operator/pull/301) * [Bug 2101645](https://bugzilla.redhat.com/show_bug.cgi?id=2101645): DefaultStorageClassController reports fake message on azure and openstack [#292](https://github.com/openshift/cluster-storage-operator/pull/292) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/bc69ea348a1d38a8f4d765e13de81afe9744e4c7...21ebf328f53182111eb7dce344487ba633d09b1a) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/2796e1732615521e818be82663058e0a3f1b3941) * Clean up owners file as part of DPP-10343 [#46](https://github.com/openshift/cluster-update-keys/pull/46) * Updating ose-cluster-update-keys images to be consistent with ART [#45](https://github.com/openshift/cluster-update-keys/pull/45) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/289032fb67e5e358f21808fab87350bcf5e5e85b...2796e1732615521e818be82663058e0a3f1b3941) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/8e2c472a67964065c8aa271f85ef7f7e57726ac4) * [OCPBUGS-27443](https://issues.redhat.com/browse/OCPBUGS-27443): pkg/cvo/availableupdates: Only bump LastAttempt on Cincinnati pulls [#1024](https://github.com/openshift/cluster-version-operator/pull/1024) * [OCPBUGS-20729](https://issues.redhat.com/browse/OCPBUGS-20729): [4.12] Bump http-related deps [#990](https://github.com/openshift/cluster-version-operator/pull/990) * [OCPBUGS-22408](https://issues.redhat.com/browse/OCPBUGS-22408): pkg/clusterconditions/promql: Warm cache with 1s delay [#988](https://github.com/openshift/cluster-version-operator/pull/988) * [OCPBUGS-22198](https://issues.redhat.com/browse/OCPBUGS-22198): Reconcile Volumes in SCCs [#985](https://github.com/openshift/cluster-version-operator/pull/985) * [OCPBUGS-14096](https://issues.redhat.com/browse/OCPBUGS-14096): Trigger new sync round on ClusterOperator Available changes [#938](https://github.com/openshift/cluster-version-operator/pull/938) * [OCPBUGS-12182](https://issues.redhat.com/browse/OCPBUGS-12182): Update dnsPolicy to allow consistent resolution of the internal LB [#931](https://github.com/openshift/cluster-version-operator/pull/931) * [OCPBUGS-10565](https://issues.redhat.com/browse/OCPBUGS-10565): RetrievePayload: Improve timeouts and cover behavior with tests [#914](https://github.com/openshift/cluster-version-operator/pull/914) * [OCPBUGS-10514](https://issues.redhat.com/browse/OCPBUGS-10514): pkg/cvo/availableupdates: Prioritize conditional risks for largest target version [#913](https://github.com/openshift/cluster-version-operator/pull/913) * [OCPBUGS-8304](https://issues.redhat.com/browse/OCPBUGS-8304): Adding admin-gate ack-4.12-kube-1.26-api-removals-in-4.13 [#908](https://github.com/openshift/cluster-version-operator/pull/908) * [OCPBUGS-5879](https://issues.redhat.com/browse/OCPBUGS-5879): Set upgradeability check throttling period to 2m [#884](https://github.com/openshift/cluster-version-operator/pull/884) * [OCPBUGS-5083](https://issues.redhat.com/browse/OCPBUGS-5083): pkg/payload/precondition: Do not claim warnings would have blocked [#878](https://github.com/openshift/cluster-version-operator/pull/878) * [OCPBUGS-3770](https://issues.redhat.com/browse/OCPBUGS-3770): Allow CVO to update `KUBERNETES_SERVICE_HOST` with LB address [#866](https://github.com/openshift/cluster-version-operator/pull/866) * [OCPBUGS-3352](https://issues.redhat.com/browse/OCPBUGS-3352): Do not fail precondition check for UnknownUpdate [#861](https://github.com/openshift/cluster-version-operator/pull/861) * [Bug 2033499](https://bugzilla.redhat.com/show_bug.cgi?id=2033499): Don't overwrite accepted risks if local payload [#852](https://github.com/openshift/cluster-version-operator/pull/852) * [OCPBUGS-2125](https://issues.redhat.com/browse/OCPBUGS-2125): Allow unknown capabilities during payload load and implicitl enablement checking [#850](https://github.com/openshift/cluster-version-operator/pull/850) * bump api version to add new capability [#835](https://github.com/openshift/cluster-version-operator/pull/835) * [Bug 2033499](https://bugzilla.redhat.com/show_bug.cgi?id=2033499): Populate acceptedRisks in ClusterVersion History [#841](https://github.com/openshift/cluster-version-operator/pull/841) * Dockerfile: Bump to Go 1.18 [#845](https://github.com/openshift/cluster-version-operator/pull/845) * Fix ups from gofmt 1.19 [#849](https://github.com/openshift/cluster-version-operator/pull/849) * Revert "Fix ups from gofmt 1.19 and yamllint" [#848](https://github.com/openshift/cluster-version-operator/pull/848) * Fix ups from gofmt 1.19 and yamllint [#844](https://github.com/openshift/cluster-version-operator/pull/844) * Updating cluster-version-operator images to be consistent with ART [#842](https://github.com/openshift/cluster-version-operator/pull/842) * [OCPBUGS-1636](https://issues.redhat.com/browse/OCPBUGS-1636): pkg/cvo/sync_worker: Pre-create ClusterOperator in reconciling-mode too [#840](https://github.com/openshift/cluster-version-operator/pull/840) * [Bug 1951835](https://bugzilla.redhat.com/show_bug.cgi?id=1951835): Handle report only sync errors [#837](https://github.com/openshift/cluster-version-operator/pull/837) * [OCPBUGS-1402](https://issues.redhat.com/browse/OCPBUGS-1402): pkg/cvo/sync_worker.go: remove Lock/Unlock [#832](https://github.com/openshift/cluster-version-operator/pull/832) * OWNERS: Prune vrutkovs [#838](https://github.com/openshift/cluster-version-operator/pull/838) * pkg/cvo: add test utility functions [#833](https://github.com/openshift/cluster-version-operator/pull/833) * allow more than one featureset [#821](https://github.com/openshift/cluster-version-operator/pull/821) * [OCPBUGS-575](https://issues.redhat.com/browse/OCPBUGS-575): lib/resourcemerge/core: Reconcile seccompProfile in ensurePodSecurityContext [#830](https://github.com/openshift/cluster-version-operator/pull/830) * [Bug 2006611](https://bugzilla.redhat.com/show_bug.cgi?id=2006611): Upgrade takes too much time when upgrading via --to-image [#808](https://github.com/openshift/cluster-version-operator/pull/808) * [OCPBUGS-569](https://issues.redhat.com/browse/OCPBUGS-569): CVO History Pruner return not assigned to config.Status.History [#828](https://github.com/openshift/cluster-version-operator/pull/828) * bump api version to add new capability [#801](https://github.com/openshift/cluster-version-operator/pull/801) * lib/capability: Sort all slices after building them [#827](https://github.com/openshift/cluster-version-operator/pull/827) * [Bug 1951835](https://bugzilla.redhat.com/show_bug.cgi?id=1951835): Propagate Degraded to update status [#662](https://github.com/openshift/cluster-version-operator/pull/662) * [Bug 2010365](https://bugzilla.redhat.com/show_bug.cgi?id=2010365): OpenShift Alerting Rules Style-Guide Compliance [#800](https://github.com/openshift/cluster-version-operator/pull/800) * Restore 'Pull arch from payload' and fix [#813](https://github.com/openshift/cluster-version-operator/pull/813) * /pkg/cvo: improve CV history pruning [#805](https://github.com/openshift/cluster-version-operator/pull/805) * [Bug 2117033](https://bugzilla.redhat.com/show_bug.cgi?id=2117033): pkg/cvo/sync_worker: Trigger new sync round on ClusterOperator versions[name=operator] changes [#818](https://github.com/openshift/cluster-version-operator/pull/818) * pkg/cvo/status.go: sort implicitly enabled caps [#814](https://github.com/openshift/cluster-version-operator/pull/814) * pkg/cvo/sync_worker: Consolidate all ClusterOperator errors by reason [#577](https://github.com/openshift/cluster-version-operator/pull/577) * Revert "Pull arch from payload" [#810](https://github.com/openshift/cluster-version-operator/pull/810) * Pull arch from payload [#796](https://github.com/openshift/cluster-version-operator/pull/796) * [Bug 2110590](https://bugzilla.redhat.com/show_bug.cgi?id=2110590): pkg/cvo/updatepayload: Set 'readOnlyRootFilesystem: false' [#807](https://github.com/openshift/cluster-version-operator/pull/807) * [Bug 2109374](https://bugzilla.redhat.com/show_bug.cgi?id=2109374): pkg/clusterconditions/promql: Cap PromQL queries at 5 minutes [#806](https://github.com/openshift/cluster-version-operator/pull/806) * [Bug 2094174](https://bugzilla.redhat.com/show_bug.cgi?id=2094174): pkg/cvo: reset payload load status [#788](https://github.com/openshift/cluster-version-operator/pull/788) * [Bug 2108858](https://bugzilla.redhat.com/show_bug.cgi?id=2108858): lib/resourcemerge: change SecurityContext reconcile [#804](https://github.com/openshift/cluster-version-operator/pull/804) * Updating cluster-version-operator images to be consistent with ART [#797](https://github.com/openshift/cluster-version-operator/pull/797) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/8966b291a649d3a262d1b714aef02c6d9d3ff402...8e2c472a67964065c8aa271f85ef7f7e57726ac4) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/e4d9170e71bdf8a79e9cde94dac53575a30f46f3) * Updating configmap-reload images to be consistent with ART [#47](https://github.com/openshift/configmap-reload/pull/47) * OWNERS: Add Joao and myself, and move former team members to emeritus [#46](https://github.com/openshift/configmap-reload/pull/46) * Updating configmap-reload images to be consistent with ART [#45](https://github.com/openshift/configmap-reload/pull/45) * [Full changelog](https://github.com/openshift/configmap-reload/compare/b7c03bb081cb4389b6492f3a38c1405c2518f9e3...e4d9170e71bdf8a79e9cde94dac53575a30f46f3) ### [console](https://github.com/openshift/console/tree/7e1a504f744ead2eb7142645276229b8e5e87b02) * [OCPBUGS-43639](https://issues.redhat.com/browse/OCPBUGS-43639): Copy response code from proxied plugin requests [#14423](https://github.com/openshift/console/pull/14423) * [OCPBUGS-33519](https://issues.redhat.com/browse/OCPBUGS-33519): Observe > Metrics targets, Alert user if they do not have access to information on this page (e.g. 403). [#14334](https://github.com/openshift/console/pull/14334) * [OCPBUGS-41600](https://issues.redhat.com/browse/OCPBUGS-41600): Fix plugin proxy handler [#14266](https://github.com/openshift/console/pull/14266) * [OCPBUGS-41854](https://issues.redhat.com/browse/OCPBUGS-41854): Redirects to new PipelineRun logs URL from old PipelineRun logs URL [#14283](https://github.com/openshift/console/pull/14283) * [OCPBUGS-34564](https://issues.redhat.com/browse/OCPBUGS-34564): Routes created by devfiles do not always use HTTPS [#13907](https://github.com/openshift/console/pull/13907) * [OCPBUGS-34933](https://issues.redhat.com/browse/OCPBUGS-34933): Helm Plugin's Catalog incorrectly renders a single index entry into multiple tiles [#13930](https://github.com/openshift/console/pull/13930) * [OCPBUGS-32146](https://issues.redhat.com/browse/OCPBUGS-32146): Bump graphql-go to v1.3.0 [#13923](https://github.com/openshift/console/pull/13923) * [OCPBUGS-34845](https://issues.redhat.com/browse/OCPBUGS-34845): Fix PipelineRun Logs tab navigation [#13920](https://github.com/openshift/console/pull/13920) * [OCPBUGS-33778](https://issues.redhat.com/browse/OCPBUGS-33778): fix issues with Edit Route form [#13859](https://github.com/openshift/console/pull/13859) * [OCPBUGS-27479](https://issues.redhat.com/browse/OCPBUGS-27479): Bump helm pkg [#13528](https://github.com/openshift/console/pull/13528) * [OCPBUGS-29746](https://issues.redhat.com/browse/OCPBUGS-29746): Add Pipeline metrics tab using plugin [#13621](https://github.com/openshift/console/pull/13621) * [OCPBUGS-29348](https://issues.redhat.com/browse/OCPBUGS-29348): Added Proxy to non k8s endpoints [#13600](https://github.com/openshift/console/pull/13600) * [OCPBUGS-22431](https://issues.redhat.com/browse/OCPBUGS-22431): Check if filtered object contains name property [#13285](https://github.com/openshift/console/pull/13285) * [OCPBUGS-25213](https://issues.redhat.com/browse/OCPBUGS-25213): add access review for impersonate [#13440](https://github.com/openshift/console/pull/13440) * [OCPBUGS-18116](https://issues.redhat.com/browse/OCPBUGS-18116): Bump helm version [#13104](https://github.com/openshift/console/pull/13104) * [OCPBUGS-24236](https://issues.redhat.com/browse/OCPBUGS-24236): Remove tech preview badge from Pipeline repository pages [#13384](https://github.com/openshift/console/pull/13384) * [OCPBUGS-23413](https://issues.redhat.com/browse/OCPBUGS-23413): Correct logout process [#13342](https://github.com/openshift/console/pull/13342) * [OCPBUGS-24364](https://issues.redhat.com/browse/OCPBUGS-24364): Subsequent PipelineRuns take initial PipelineRun name into account [#13401](https://github.com/openshift/console/pull/13401) * [OCPBUGS-13357](https://issues.redhat.com/browse/OCPBUGS-13357): add multipath device type to LocalVolumeSet [#12805](https://github.com/openshift/console/pull/12805) * [OCPBUGS-23346](https://issues.redhat.com/browse/OCPBUGS-23346): update the KnativeServing API version to v1beta1 for global-config extension [#13334](https://github.com/openshift/console/pull/13334) * [OCPBUGS-23154](https://issues.redhat.com/browse/OCPBUGS-23154): remove expandable toggle for conditional update risk d… [#13322](https://github.com/openshift/console/pull/13322) * [OCPBUGS-22964](https://issues.redhat.com/browse/OCPBUGS-22964): add support for new features annotations while preservi… [#13305](https://github.com/openshift/console/pull/13305) * [OCPBUGS-19382](https://issues.redhat.com/browse/OCPBUGS-19382): Could not import multiple resources via JSON (while YAML supports this) [#13168](https://github.com/openshift/console/pull/13168) * [OCPBUGS-20071](https://issues.redhat.com/browse/OCPBUGS-20071): Fix that "Delete application" doesn't work in topology when Pipelines operator is not installed [#13212](https://github.com/openshift/console/pull/13212) * [OCPBUGS-21727](https://issues.redhat.com/browse/OCPBUGS-21727): fetch TaskRuns without selector and reduces the get TaskRuns requests [#13251](https://github.com/openshift/console/pull/13251) * [OCPBUGS-21731](https://issues.redhat.com/browse/OCPBUGS-21731): show all the legends for Pipeline metrics in PipelineRun TaskRun Duration chart [#13252](https://github.com/openshift/console/pull/13252) * [OCPBUGS-13580](https://issues.redhat.com/browse/OCPBUGS-13580): Regression: OpenShift Console no-longer filters SecretList when displaying ServiceAccount [#12747](https://github.com/openshift/console/pull/12747) * [OCPBUGS-19907](https://issues.redhat.com/browse/OCPBUGS-19907): Fixed Edit Application form for Knative Services [#13205](https://github.com/openshift/console/pull/13205) * [OCPBUGS-19045](https://issues.redhat.com/browse/OCPBUGS-19045): Web console slowness on Project>Project access page [#13155](https://github.com/openshift/console/pull/13155) * [OCPBUGS-18273](https://issues.redhat.com/browse/OCPBUGS-18273): Fix topology crash when a console.topology/data/factory extension tries to resolve a resource with version from the CRDs which doesn't exists [#13113](https://github.com/openshift/console/pull/13113) * [OCPBUGS-18563](https://issues.redhat.com/browse/OCPBUGS-18563): OLM Pages work when copied CSVs are disabled [#13055](https://github.com/openshift/console/pull/13055) * [OCPBUGS-17530](https://issues.redhat.com/browse/OCPBUGS-17530): fix bug where binary secret values are corrupted on edit and add test coverage [#13087](https://github.com/openshift/console/pull/13087) * [OCPBUGS-18366](https://issues.redhat.com/browse/OCPBUGS-18366): Fix DeploymentConfig list performance issues by lazy loading their ReplicationControllers [#13122](https://github.com/openshift/console/pull/13122) * [OCPBUGS-16660](https://issues.redhat.com/browse/OCPBUGS-16660): Manual cherry-pick of #12978 [#13039](https://github.com/openshift/console/pull/13039) * [OCPBUGS-17192](https://issues.redhat.com/browse/OCPBUGS-17192): "Duplicate RoleBinding" leads to "Unsupported value" error [#13063](https://github.com/openshift/console/pull/13063) * [OCPBUGS-16846](https://issues.redhat.com/browse/OCPBUGS-16846): Fix stop PLR option [#13051](https://github.com/openshift/console/pull/13051) * [OCPBUGS-2182](https://issues.redhat.com/browse/OCPBUGS-2182): re-enable operator-install-single-namespace.spec.ts test [#13013](https://github.com/openshift/console/pull/13013) * [OCPBUGS-16732](https://issues.redhat.com/browse/OCPBUGS-16732): When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. [#13047](https://github.com/openshift/console/pull/13047) * [OCPBUGS-16046](https://issues.redhat.com/browse/OCPBUGS-16046), [OCPBUGS-16047](https://issues.redhat.com/browse/OCPBUGS-16047), [OCPBUGS-16048](https://issues.redhat.com/browse/OCPBUGS-16048): Helm Chart installation form hangs on create if JSON-schema is using 2019-09 or 2020-20 standard revisions [#12997](https://github.com/openshift/console/pull/12997) * [OCPBUGS-15898](https://issues.redhat.com/browse/OCPBUGS-15898): account for single object in status.conditions instead… [#12982](https://github.com/openshift/console/pull/12982) * [OCPBUGS-16139](https://issues.redhat.com/browse/OCPBUGS-16139): The upgrade Helm Release tab in OpenShift GUI Developer console is not refreshing with updated values. [#13004](https://github.com/openshift/console/pull/13004) * [OCPBUGS-15710](https://issues.redhat.com/browse/OCPBUGS-15710): Create helm release page doesn't show a YAML editor when schema isn't available (httpd-imagestreams chart) [#12962](https://github.com/openshift/console/pull/12962) * [OCPBUGS-15849](https://issues.redhat.com/browse/OCPBUGS-15849): Add Pipeline metrics unsupported empty page [#12977](https://github.com/openshift/console/pull/12977) * [OCPBUGS-9405](https://issues.redhat.com/browse/OCPBUGS-9405): [OSD] There is no error message shown on node label edi… [#12965](https://github.com/openshift/console/pull/12965) * [OCPBUGS-15798](https://issues.redhat.com/browse/OCPBUGS-15798): Remove access review check for PipelineResource from Pipeline section [#12969](https://github.com/openshift/console/pull/12969) * [OCPBUGS-13643](https://issues.redhat.com/browse/OCPBUGS-13643): Fix OLM k8sResourcePrefix descriptor dropdown behavior [#12813](https://github.com/openshift/console/pull/12813) * [OCPBUGS-15569](https://issues.redhat.com/browse/OCPBUGS-15569): use service port name instead targetPort in the Pipeline Event listener route [#12958](https://github.com/openshift/console/pull/12958) * [OCPBUGS-15535](https://issues.redhat.com/browse/OCPBUGS-15535): Delete annotation 'tekton.dev/v1beta1TaskRuns' when rerun the PLR [#12955](https://github.com/openshift/console/pull/12955) * [OCPBUGS-15404](https://issues.redhat.com/browse/OCPBUGS-15404): Importing a kn Service shows a non-working Open URL decorator also when the Add Route checkbox was unselected [#12935](https://github.com/openshift/console/pull/12935) * [OCPBUGS-15057](https://issues.redhat.com/browse/OCPBUGS-15057): only copy workload annotations to debug pod [#12903](https://github.com/openshift/console/pull/12903) * [OCPBUGS-15099](https://issues.redhat.com/browse/OCPBUGS-15099): visiting Configurations page returns error Cannot read… [#12906](https://github.com/openshift/console/pull/12906) * [OCPBUGS-15482](https://issues.redhat.com/browse/OCPBUGS-15482): Remove PipelineResource CRD check because it's not installed with PO 1.11 anymore [#12948](https://github.com/openshift/console/pull/12948) * [OCPBUGS-14190](https://issues.redhat.com/browse/OCPBUGS-14190): When Creating Sample Devfile from the Samples Page, Topology Icon is not set [#12859](https://github.com/openshift/console/pull/12859) * [OCPBUGS-11989](https://issues.redhat.com/browse/OCPBUGS-11989): Modified git import flow module to handle create button enable-disable issue [#12775](https://github.com/openshift/console/pull/12775) * [OCPBUGS-6848](https://issues.redhat.com/browse/OCPBUGS-6848): Service name search ability while creating the Route from console [#12505](https://github.com/openshift/console/pull/12505) * [OCPBUGS-7619](https://issues.redhat.com/browse/OCPBUGS-7619): Search page: LazyActionMenus are shown below Add/Remove from navigation button [#12575](https://github.com/openshift/console/pull/12575) * [OCPBUGS-7924](https://issues.redhat.com/browse/OCPBUGS-7924): Developer - Topology : 'Filter by resource' drop-down i18n misses [#12598](https://github.com/openshift/console/pull/12598) * [OCPBUGS-13803](https://issues.redhat.com/browse/OCPBUGS-13803): add support for minimal status of tekton [#12831](https://github.com/openshift/console/pull/12831) * [OCPBUGS-13750](https://issues.redhat.com/browse/OCPBUGS-13750): use PipelineRun template from 'pipelines-as-code-pipelinerun-go' configMap for Go runtime [#12829](https://github.com/openshift/console/pull/12829) * [OCPBUGS-12839](https://issues.redhat.com/browse/OCPBUGS-12839): Show type of sample on the samples view [#12783](https://github.com/openshift/console/pull/12783) * [OCPBUGS-12992](https://issues.redhat.com/browse/OCPBUGS-12992): Pipeline doesn't render correctly when displayed but looks fine in edit mode [#12791](https://github.com/openshift/console/pull/12791) * [OCPBUGS-9336](https://issues.redhat.com/browse/OCPBUGS-9336): use buildconfig form also for create [#12770](https://github.com/openshift/console/pull/12770) * [OCPBUGS-11601](https://issues.redhat.com/browse/OCPBUGS-11601): Move operator install status to it's own … [#12715](https://github.com/openshift/console/pull/12715) * [OCPBUGS-12232](https://issues.redhat.com/browse/OCPBUGS-12232): Fix for broken Create key/value secrets e2e tests [#12750](https://github.com/openshift/console/pull/12750) * [OCPBUGS-11844](https://issues.redhat.com/browse/OCPBUGS-11844): delete associated pipeline, triggertemplate and eventlistener when deleting app [#12727](https://github.com/openshift/console/pull/12727) * [OCPBUGS-11972](https://issues.redhat.com/browse/OCPBUGS-11972): update the default pipelineRun template name [#12687](https://github.com/openshift/console/pull/12687) * [OCPBUGS-6888](https://issues.redhat.com/browse/OCPBUGS-6888): Show Git icon and repo link as per the Git provider [#12511](https://github.com/openshift/console/pull/12511) * [OCPBUGS-12476](https://issues.redhat.com/browse/OCPBUGS-12476): Pipelines repository list and creation form doesn't show Tech Preview status [#12763](https://github.com/openshift/console/pull/12763) * [OCPBUGS-1753](https://issues.redhat.com/browse/OCPBUGS-1753): Fix OLM descriptor components deletes operand e2e test failing [#12573](https://github.com/openshift/console/pull/12573) * [OCPBUGS-12477](https://issues.redhat.com/browse/OCPBUGS-12477): Users don't know what type of resource is being created by Import from Git or Deploy Image flows [#12765](https://github.com/openshift/console/pull/12765) * [OCPBUGS-11998](https://issues.redhat.com/browse/OCPBUGS-11998): Do not show builder ImageStreams without `sampleRepo` as samples [#12740](https://github.com/openshift/console/pull/12740) * [OCPBUGS-5009](https://issues.redhat.com/browse/OCPBUGS-5009): Helm Charts and Samples are not disabled in topology actions if actions are disabled in customization [#12382](https://github.com/openshift/console/pull/12382) * [OCPBUGS-7953](https://issues.redhat.com/browse/OCPBUGS-7953): fix devfile error [#12605](https://github.com/openshift/console/pull/12605) * [OCPBUGS-6672](https://issues.redhat.com/browse/OCPBUGS-6672): In DeploymentConfig both the Form view and Yaml view are not in sync [#12475](https://github.com/openshift/console/pull/12475) * [OCPBUGS-8016](https://issues.redhat.com/browse/OCPBUGS-8016): PipelineRun templates must be fetched from OpenShift namespace [#12614](https://github.com/openshift/console/pull/12614) * [OCPBUGS-10225](https://issues.redhat.com/browse/OCPBUGS-10225): Get the Event type value from the latest PLR of the Repository [#12643](https://github.com/openshift/console/pull/12643) * [OCPBUGS-7333](https://issues.redhat.com/browse/OCPBUGS-7333): Add missing SDK extensions descriptions [#12556](https://github.com/openshift/console/pull/12556) * [OCPBUGS-7951](https://issues.redhat.com/browse/OCPBUGS-7951): delete application should delete all part-of resources [#12604](https://github.com/openshift/console/pull/12604) * [OCPBUGS-6036](https://issues.redhat.com/browse/OCPBUGS-6036): Project dropdown order is not as smart as project list page order [#12447](https://github.com/openshift/console/pull/12447) * [OCPBUGS-7800](https://issues.redhat.com/browse/OCPBUGS-7800): add subject kind dropdown in the project access form [#12586](https://github.com/openshift/console/pull/12586) * [OCPBUGS-8339](https://issues.redhat.com/browse/OCPBUGS-8339): disable operator-install-single-namespace.spec.ts until… [#12624](https://github.com/openshift/console/pull/12624) * [OCPBUGS-3892](https://issues.redhat.com/browse/OCPBUGS-3892): Add cluster to query params of websocket requests [#12282](https://github.com/openshift/console/pull/12282) * [OCPBUGS-5092](https://issues.redhat.com/browse/OCPBUGS-5092): Fix to use and set correct secretReference for build-config triggers [#12388](https://github.com/openshift/console/pull/12388) * [OCPBUGS-7895](https://issues.redhat.com/browse/OCPBUGS-7895): Bump helm version to 3.10.1 [#12579](https://github.com/openshift/console/pull/12579) * [OCPBUGS-6873](https://issues.redhat.com/browse/OCPBUGS-6873): The dropdown list component will be covered by deployment details page on Topology page [#12507](https://github.com/openshift/console/pull/12507) * [OCPBUGS-6831](https://issues.redhat.com/browse/OCPBUGS-6831): Fix crash when pinnedResources is null [#12503](https://github.com/openshift/console/pull/12503) * [OCPBUGS-7471](https://issues.redhat.com/browse/OCPBUGS-7471): Right border radius is 0 for the pipeline visualization wrapper in dark mode [#12565](https://github.com/openshift/console/pull/12565) * [OCPBUGS-7506](https://issues.redhat.com/browse/OCPBUGS-7506): Fix different CI issues [#12555](https://github.com/openshift/console/pull/12555) * [OCPBUGS-6966](https://issues.redhat.com/browse/OCPBUGS-6966): Remove description field from the PLR parameters page [#12519](https://github.com/openshift/console/pull/12519) * [OCPBUGS-7437](https://issues.redhat.com/browse/OCPBUGS-7437): Webhook Secret (1 of 2) is not removed when Knative Service is deleted [#12560](https://github.com/openshift/console/pull/12560) * [OCPBUGS-6887](https://issues.redhat.com/browse/OCPBUGS-6887): Show Tag label and tag name if tag is detected in repository PipelineRun list and details page [#12510](https://github.com/openshift/console/pull/12510) * [OCPBUGS-6816](https://issues.redhat.com/browse/OCPBUGS-6816): Repositories list does not show the running pipelinerun as last pipelinerun [#12500](https://github.com/openshift/console/pull/12500) * [OCPBUGS-4072](https://issues.redhat.com/browse/OCPBUGS-4072): Fix rerender loop/crash when bindable-kinds is found but has no status [#12304](https://github.com/openshift/console/pull/12304) * [OCPBUGS-6671](https://issues.redhat.com/browse/OCPBUGS-6671): fix broken pipeline secret [#12474](https://github.com/openshift/console/pull/12474) * [OCPBUGS-6913](https://issues.redhat.com/browse/OCPBUGS-6913): PipelineRun task status overlaps status text [#12516](https://github.com/openshift/console/pull/12516) * [OCPBUGS-6766](https://issues.redhat.com/browse/OCPBUGS-6766): Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC [#12491](https://github.com/openshift/console/pull/12491) * [OCPBUGS-6969](https://issues.redhat.com/browse/OCPBUGS-6969): Added translation to Last used in resource type dropdown [#12521](https://github.com/openshift/console/pull/12521) * [OCPBUGS-6764](https://issues.redhat.com/browse/OCPBUGS-6764): Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered [#12490](https://github.com/openshift/console/pull/12490) * [OCPBUGS-4281](https://issues.redhat.com/browse/OCPBUGS-4281): Do not disable metrics when auth is disabled [#12323](https://github.com/openshift/console/pull/12323) * [OCPBUGS-6669](https://issues.redhat.com/browse/OCPBUGS-6669): Do not show UpdateInProgress when status is Failing [#12473](https://github.com/openshift/console/pull/12473) * [OCPBUGS-5093](https://issues.redhat.com/browse/OCPBUGS-5093): Fix to show correct help texts for each git repo status error code [#12389](https://github.com/openshift/console/pull/12389) * [OCPBUGS-6085](https://issues.redhat.com/browse/OCPBUGS-6085): Editing Pipeline in the ocp console should show correct information [#12452](https://github.com/openshift/console/pull/12452) * [OCPBUGS-6758](https://issues.redhat.com/browse/OCPBUGS-6758): Add RBAC check on Create a Project link in all-namespaces pages [#12489](https://github.com/openshift/console/pull/12489) * [OCPBUGS-6755](https://issues.redhat.com/browse/OCPBUGS-6755): Remove `refs-heads` from the branch name for Repository pipelineRun row [#12487](https://github.com/openshift/console/pull/12487) * [OCPBUGS-6743](https://issues.redhat.com/browse/OCPBUGS-6743): Fix react warning when open console, add missing keys in navigation [#12484](https://github.com/openshift/console/pull/12484) * [OCPBUGS-5875](https://issues.redhat.com/browse/OCPBUGS-5875): Don't proxy CORS response headers [#12276](https://github.com/openshift/console/pull/12276) * [OCPBUGS-6678](https://issues.redhat.com/browse/OCPBUGS-6678): fix run-time error on Cluster Settings when availableUp… [#12476](https://github.com/openshift/console/pull/12476) * [OCPBUGS-4633](https://issues.redhat.com/browse/OCPBUGS-4633): Monitoring: Fix alert descriptions with duplicate resources [#12352](https://github.com/openshift/console/pull/12352) * [OCPBUGS-5303](https://issues.redhat.com/browse/OCPBUGS-5303): display 'Control plane is hosted' alert only when isCl… [#12409](https://github.com/openshift/console/pull/12409) * [OCPBUGS-5263](https://issues.redhat.com/browse/OCPBUGS-5263): only show upgrade details if cluster not externally man… [#12404](https://github.com/openshift/console/pull/12404) * [OCPBUGS-5444](https://issues.redhat.com/browse/OCPBUGS-5444): Change vSphere connection health status icon [#12415](https://github.com/openshift/console/pull/12415) * [OCPBUGS-4960](https://issues.redhat.com/browse/OCPBUGS-4960): Fix that topology sidebar actions shows outdated data (Edit Pod Count, Edit labels, Edit annotations, etc.) [#12378](https://github.com/openshift/console/pull/12378) * [OCPBUGS-5003](https://issues.redhat.com/browse/OCPBUGS-5003): fixed node maintenance plugin route configuration for BareMetalNodesPage [#12381](https://github.com/openshift/console/pull/12381) * [OCPBUGS-5185](https://issues.redhat.com/browse/OCPBUGS-5185): Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) [#12393](https://github.com/openshift/console/pull/12393) * [OCPBUGS-5191](https://issues.redhat.com/browse/OCPBUGS-5191): add support for version v1beta1 for knativeServing and knativeEventing [#12395](https://github.com/openshift/console/pull/12395) * [OCPBUGS-4897](https://issues.redhat.com/browse/OCPBUGS-4897): Pan nodes into view if all nodes are not visible on load [#12370](https://github.com/openshift/console/pull/12370) * [OCPBUGS-4013](https://issues.redhat.com/browse/OCPBUGS-4013): fix number spinner input [#12288](https://github.com/openshift/console/pull/12288) * "OCPBUGS-4512: Fix navsection bug" [#12340](https://github.com/openshift/console/pull/12340) * [OCPBUGS-4458](https://issues.redhat.com/browse/OCPBUGS-4458): fix issue where node debug terminal doesn't load [#12338](https://github.com/openshift/console/pull/12338) * [OCPBUGS-3333](https://issues.redhat.com/browse/OCPBUGS-3333): Promote ConsolePlugins API version to v1 in console repository [#12248](https://github.com/openshift/console/pull/12248) * [OCPBUGS-4035](https://issues.redhat.com/browse/OCPBUGS-4035): Fix for initial showing of topology contents [#12299](https://github.com/openshift/console/pull/12299) * [OCPBUGS-4117](https://issues.redhat.com/browse/OCPBUGS-4117): Re-enable serverless e2e tests [#12308](https://github.com/openshift/console/pull/12308) * [OCPBUGS-4116](https://issues.redhat.com/browse/OCPBUGS-4116): Re-enable pipelines e2e tests [#12307](https://github.com/openshift/console/pull/12307) * [OCPBUGS-4004](https://issues.redhat.com/browse/OCPBUGS-4004): migrate Events integration test to Cypress to mitigate … [#12291](https://github.com/openshift/console/pull/12291) * [OCPBUGS-3927](https://issues.redhat.com/browse/OCPBUGS-3927): show 403 error when normal user check operands on All … [#12284](https://github.com/openshift/console/pull/12284) * [OCPBUGS-3786](https://issues.redhat.com/browse/OCPBUGS-3786): add Release not accepted to Update status on Cluster Se… [#12273](https://github.com/openshift/console/pull/12273) * [OCPBUGS-3754](https://issues.redhat.com/browse/OCPBUGS-3754): Monitoring: Add popover help text for silence form's negative matchers [#12271](https://github.com/openshift/console/pull/12271) * [OCPBUGS-3696](https://issues.redhat.com/browse/OCPBUGS-3696): improve display of RetrievedUpdate condition in Update status [#12270](https://github.com/openshift/console/pull/12270) * [OCPBUGS-2874](https://issues.redhat.com/browse/OCPBUGS-2874): add capacity action for SS CSV list page [OCP 4.12 & ODF 4.11] [#12233](https://github.com/openshift/console/pull/12233) * [OCPBUGS-2974](https://issues.redhat.com/browse/OCPBUGS-2974): Monitoring: Fix permission check for Prometheus & Alertmanager pollers [#12225](https://github.com/openshift/console/pull/12225) * [OCPBUGS-3265](https://issues.redhat.com/browse/OCPBUGS-3265): check that user can patch console operator config in s… [#12239](https://github.com/openshift/console/pull/12239) * Create-Knative-Workload | Knative Serverless [#12165](https://github.com/openshift/console/pull/12165) * add tab extension to dev console [#12109](https://github.com/openshift/console/pull/12109) * [OCPBUGS-2651](https://issues.redhat.com/browse/OCPBUGS-2651): Show focus border on pipeline run nodes [#12157](https://github.com/openshift/console/pull/12157) * [OCPBUGS-2909](https://issues.redhat.com/browse/OCPBUGS-2909): Fix documentation link which leads to 404 [#12181](https://github.com/openshift/console/pull/12181) * [OCPBUGS-2478](https://issues.redhat.com/browse/OCPBUGS-2478): Fix i18n issue in Remove component node from application modal [#12180](https://github.com/openshift/console/pull/12180) * [Bug 2110256](https://bugzilla.redhat.com/show_bug.cgi?id=2110256): Storage -> PVC -> upload data, does not support source reference [#12213](https://github.com/openshift/console/pull/12213) * [OCPBUGS-1950](https://issues.redhat.com/browse/OCPBUGS-1950): Devfile samples (in Developer Catalog) link doesn't include the current selected namespace [#12193](https://github.com/openshift/console/pull/12193) * [CONSOLE-3164](https://issues.redhat.com/browse/CONSOLE-3164): Move main nav components [#12123](https://github.com/openshift/console/pull/12123) * [CONSOLE-3224](https://issues.redhat.com/browse/CONSOLE-3224): Expose errorMessage and errorCause for failed plugins [#12151](https://github.com/openshift/console/pull/12151) * [CONSOLE-3336](https://issues.redhat.com/browse/CONSOLE-3336): Make dynamic plugin dependencies optional [#12078](https://github.com/openshift/console/pull/12078) * [Bug 2115347](https://bugzilla.redhat.com/show_bug.cgi?id=2115347): Monitoring: Add support for Alertmanager negative matchers [#12139](https://github.com/openshift/console/pull/12139) * CONSOLE 3250: Configure default behavior for "Wrap lines" in log viewers [#12015](https://github.com/openshift/console/pull/12015) * chore(i18n): update translations: Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 224 [#12185](https://github.com/openshift/console/pull/12185) * [CONSOLE-3276](https://issues.redhat.com/browse/CONSOLE-3276): Expose ErrorBoundary capabilities in the SDK [#12170](https://github.com/openshift/console/pull/12170) * Replace resource URI with inline yaml in devfile [#12168](https://github.com/openshift/console/pull/12168) * [Bug 2110321](https://bugzilla.redhat.com/show_bug.cgi?id=2110321): Workloads list page has different PDB action items from details page when All Projects selected [#12117](https://github.com/openshift/console/pull/12117) * Update Devfile Import to use Kubernetes YAML definitions [#12000](https://github.com/openshift/console/pull/12000) * [OCPBUGS-2654](https://issues.redhat.com/browse/OCPBUGS-2654): Update OperatorHub tests [#12198](https://github.com/openshift/console/pull/12198) * [ODC-6786](https://issues.redhat.com/browse/ODC-6786): Add cluster configuration extension, page, and options for console customization [#12159](https://github.com/openshift/console/pull/12159) * MGMT-9085 Add vSphere Connection plugin [#12068](https://github.com/openshift/console/pull/12068) * [OCPBUGS-505](https://issues.redhat.com/browse/OCPBUGS-505): Input box aria-label and name wrong for editing PDB inside Deployments [#12064](https://github.com/openshift/console/pull/12064) * [OCPBUGS-2455](https://issues.redhat.com/browse/OCPBUGS-2455): Pods and PDBs list page just reports 'Not found' when no Pod/PDB [#12178](https://github.com/openshift/console/pull/12178) * [OCPBUGS-2100](https://issues.redhat.com/browse/OCPBUGS-2100): Fix warning icon color [#12177](https://github.com/openshift/console/pull/12177) * [OCPBUGS-1916](https://issues.redhat.com/browse/OCPBUGS-1916): Workloads list page has different HPA action items from details page when All Projects selected [#12120](https://github.com/openshift/console/pull/12120) * [OCPBUGS-548](https://issues.redhat.com/browse/OCPBUGS-548): Tweaks to make the "Favorites" section heading consistent with project menu section heading [#12119](https://github.com/openshift/console/pull/12119) * [OCPBUGS-1470](https://issues.redhat.com/browse/OCPBUGS-1470): i18n Incorrect plural for maxUnavailable pod count [#12065](https://github.com/openshift/console/pull/12065) * [OCPBUGS-1776](https://issues.redhat.com/browse/OCPBUGS-1776): Remove duplicate start guide alert from devconsole Search page [#12158](https://github.com/openshift/console/pull/12158) * [OCPBUGS-2430](https://issues.redhat.com/browse/OCPBUGS-2430): Add missing Quick Start translation [#12171](https://github.com/openshift/console/pull/12171) * [ODC-6779](https://issues.redhat.com/browse/ODC-6779): Hide sub-catalog(s) in the developer catalog or the entire dev catalog based on customization [#12067](https://github.com/openshift/console/pull/12067) * [OCPBUGS-800](https://issues.redhat.com/browse/OCPBUGS-800): Name of workload get changed, when project and image stream gets changed on reloading the form on the edit deployment page of the workload [#12024](https://github.com/openshift/console/pull/12024) * [OCPBUGS-1017](https://issues.redhat.com/browse/OCPBUGS-1017): Persist last cluster dropdown selection in session storage only [#12179](https://github.com/openshift/console/pull/12179) * [OCPBUGS-2344](https://issues.redhat.com/browse/OCPBUGS-2344): Change annotation to be used for fake helm repositories [#12141](https://github.com/openshift/console/pull/12141) * [OCPBUGS-1416](https://issues.redhat.com/browse/OCPBUGS-1416): Fix outdated, broken ODC add-page e2e test [#12055](https://github.com/openshift/console/pull/12055) * [OCPBUGS-2438](https://issues.redhat.com/browse/OCPBUGS-2438): Monitoring: Fix help popovers [#12166](https://github.com/openshift/console/pull/12166) * [OCPBUGS-1746](https://issues.redhat.com/browse/OCPBUGS-1746): Update the Github App events and permissions [#12162](https://github.com/openshift/console/pull/12162) * [OCPBUGS-193](https://issues.redhat.com/browse/OCPBUGS-193): Corrected kebab action overlapping issue in Helm page [#11980](https://github.com/openshift/console/pull/11980) * [OCPBUGS-2369](https://issues.redhat.com/browse/OCPBUGS-2369): adds check for metadata as metadata is not required in template spec [#12169](https://github.com/openshift/console/pull/12169) * [OCPBUGS-2075](https://issues.redhat.com/browse/OCPBUGS-2075): Hide silent switch for alerting rule if no associated alerts are present in devconsole [#12152](https://github.com/openshift/console/pull/12152) * [Bug 2100334](https://bugzilla.redhat.com/show_bug.cgi?id=2100334): separate fetching of serving and eventing as they can be enabled independently [#12080](https://github.com/openshift/console/pull/12080) * [OCPBUGS-2195](https://issues.redhat.com/browse/OCPBUGS-2195): fixes npe on topology [#12156](https://github.com/openshift/console/pull/12156) * Cards-display-on-serverless-operator-installation | Knative-serverless [#12089](https://github.com/openshift/console/pull/12089) * Updates flags and blocks migrated extensions [#11992](https://github.com/openshift/console/pull/11992) * Add resource quota alert to topology list view node [#12143](https://github.com/openshift/console/pull/12143) * [OCPBUGS-1040](https://issues.redhat.com/browse/OCPBUGS-1040): Add checks for pods in hpaPodRingLabel [#12118](https://github.com/openshift/console/pull/12118) * [OCPBUGS-2181](https://issues.redhat.com/browse/OCPBUGS-2181): updates test id for 3scale [#12167](https://github.com/openshift/console/pull/12167) * [OCPBUGS-1105](https://issues.redhat.com/browse/OCPBUGS-1105): OCPBUGS-1106: Update dependencies to the registry library and devfile parser [#12043](https://github.com/openshift/console/pull/12043) * [OCPBUGS-2265](https://issues.redhat.com/browse/OCPBUGS-2265): Allow passing documentation links for alerts [#12059](https://github.com/openshift/console/pull/12059) * [CONSOLE-3190](https://issues.redhat.com/browse/CONSOLE-3190): update OperatorHub filter to use nodeArchitectures instead of GOARCH [#12072](https://github.com/openshift/console/pull/12072) * ODC7127: Change node background color to yellow on zoom out [#12142](https://github.com/openshift/console/pull/12142) * [Bug 2100843](https://bugzilla.redhat.com/show_bug.cgi?id=2100843): Fix selection on add connector context menu option opens the side panel of the node [#12069](https://github.com/openshift/console/pull/12069) * [OCPBUGS-2102](https://issues.redhat.com/browse/OCPBUGS-2102): updates e2e to call resource type selection in advance option [#12147](https://github.com/openshift/console/pull/12147) * [ODC-6771](https://issues.redhat.com/browse/ODC-6771): Add telemetry support [#12140](https://github.com/openshift/console/pull/12140) * [ODC-6785](https://issues.redhat.com/browse/ODC-6785): Enable/Disable perspective(s) based on customization [#12025](https://github.com/openshift/console/pull/12025) * Refactor ResourceSection and move it under Advanced options [#12052](https://github.com/openshift/console/pull/12052) * [ODC-6772](https://issues.redhat.com/browse/ODC-6772): Show resource quota alert in deployment side-panel [#12029](https://github.com/openshift/console/pull/12029) * [OCPBUGS-194](https://issues.redhat.com/browse/OCPBUGS-194): Switch api explorer filters to use PF toolbar component for structure and adjustments. [#12111](https://github.com/openshift/console/pull/12111) * [Bug 2115522](https://bugzilla.redhat.com/show_bug.cgi?id=2115522): Strange padding in new Helm Chart Repository table row [#12102](https://github.com/openshift/console/pull/12102) * [OCPBUGS-1678](https://issues.redhat.com/browse/OCPBUGS-1678): Use local test data to mock a devfile registry [#12088](https://github.com/openshift/console/pull/12088) * Updating openshift-enterprise-console images to be consistent with ART [#12121](https://github.com/openshift/console/pull/12121) * [OU-38](https://issues.redhat.com/browse/OU-38): Monitoring: Refactor silence duration dropdown to use PatternFly [#12101](https://github.com/openshift/console/pull/12101) * Action on Knative-Service | Knative Serverless [#12081](https://github.com/openshift/console/pull/12081) * [OU-56](https://issues.redhat.com/browse/OU-56): Query browser: Refactor timespan dropdown to use PatternFly components [#12076](https://github.com/openshift/console/pull/12076) * [Bug 2079249](https://bugzilla.redhat.com/show_bug.cgi?id=2079249): Find latest pipeline run without firehose selector [#12071](https://github.com/openshift/console/pull/12071) * [OCPBUGS-1479](https://issues.redhat.com/browse/OCPBUGS-1479): PDB list page should only show Create Pod button to user has sufficient permission [#12066](https://github.com/openshift/console/pull/12066) * Update PL/PLR visualization to use new PF pipeline package [#12046](https://github.com/openshift/console/pull/12046) * [Bug 2057972](https://bugzilla.redhat.com/show_bug.cgi?id=2057972): Remove space in Chinese translation for Duplicate {{kindLabel}} [#12099](https://github.com/openshift/console/pull/12099) * HELM 386:Chart Verifier api integration [#11964](https://github.com/openshift/console/pull/11964) * [OCPBUGS-1827](https://issues.redhat.com/browse/OCPBUGS-1827): disable e2e for knative [#12114](https://github.com/openshift/console/pull/12114) * [OCPBUGS-184](https://issues.redhat.com/browse/OCPBUGS-184): Fix OperatorHub "View it here" link for installed operators [#12105](https://github.com/openshift/console/pull/12105) * Move some datetime functions to @openshift-console/plugin-shared [#12037](https://github.com/openshift/console/pull/12037) * [OCPBUGS-183](https://issues.redhat.com/browse/OCPBUGS-183): fix bug where line numbers greater than 5 digits overlay… [#12093](https://github.com/openshift/console/pull/12093) * [OCPBUGS-803](https://issues.redhat.com/browse/OCPBUGS-803): Handle fake helm chart repository [#12096](https://github.com/openshift/console/pull/12096) * [Bug 1904106](https://bugzilla.redhat.com/show_bug.cgi?id=1904106): Fix Y-axis labels for minimal / no data [#12087](https://github.com/openshift/console/pull/12087) * Monitoring: Clean up use of ISO datetime helpers [#12053](https://github.com/openshift/console/pull/12053) * OU-66 Add a 'Select/Unselect All' button to Observe > Metrics Page > … [#12033](https://github.com/openshift/console/pull/12033) * [ODC-6778](https://issues.redhat.com/browse/ODC-6778): add list of disabled dev catalog types to server flags [#11984](https://github.com/openshift/console/pull/11984) * [OCPBUGS-1522](https://issues.redhat.com/browse/OCPBUGS-1522): Allow regular users to access debug pods [#12098](https://github.com/openshift/console/pull/12098) * add list of enabled/disabled perspectives to server flags [#11993](https://github.com/openshift/console/pull/11993) * chore(i18n): update translations: Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 223 [#12083](https://github.com/openshift/console/pull/12083) * [Bug 2100860](https://bugzilla.redhat.com/show_bug.cgi?id=2100860): Use Alertmanager services for user-defined alerts from config [#11712](https://github.com/openshift/console/pull/11712) * YAML Editor with forwardRef [#11997](https://github.com/openshift/console/pull/11997) * [OCPBUGS-1677](https://issues.redhat.com/browse/OCPBUGS-1677): Fix devfile registry assertion [#12085](https://github.com/openshift/console/pull/12085) * [PF-2022](https://issues.redhat.com/browse/PF-2022): 12 package updates [#12063](https://github.com/openshift/console/pull/12063) * [OCPBUGS-1569](https://issues.redhat.com/browse/OCPBUGS-1569): add admin flag to disabled extensions [#12027](https://github.com/openshift/console/pull/12027) * [ODC-6784](https://issues.redhat.com/browse/ODC-6784): Added Code Snippets for Hiding Perspectives in Dev Console [#12075](https://github.com/openshift/console/pull/12075) * [Bug 2030406](https://bugzilla.redhat.com/show_bug.cgi?id=2030406): Remove nav override for fixed demo plugin nav component dom structure [#12079](https://github.com/openshift/console/pull/12079) * [OCPBUGS-1570](https://issues.redhat.com/browse/OCPBUGS-1570): fixes issue with eventsources vis on topology [#12074](https://github.com/openshift/console/pull/12074) * [CONSOLE-3183](https://issues.redhat.com/browse/CONSOLE-3183): Improve console.dashboards/overview/detail/item extension [#12058](https://github.com/openshift/console/pull/12058) * Action on Knative-Revision | Knative Serverless [#12034](https://github.com/openshift/console/pull/12034) * [Bug 2057972](https://bugzilla.redhat.com/show_bug.cgi?id=2057972): Switch to "verb kind" phrase so that Chinese translations do not have spaces between. [#12039](https://github.com/openshift/console/pull/12039) * [Bug 2077138](https://bugzilla.redhat.com/show_bug.cgi?id=2077138): update version of quick-start library to latest [#12038](https://github.com/openshift/console/pull/12038) * [ODC-6780](https://issues.redhat.com/browse/ODC-6780): Provide a code snippet for the console CRD for adding Subcatalogs in Dev Catalog [#12047](https://github.com/openshift/console/pull/12047) * [OCPBUGS-1268](https://issues.redhat.com/browse/OCPBUGS-1268): Remove required flags from helm actions to show the HCR actions also if no helm repo is enabled [#12042](https://github.com/openshift/console/pull/12042) * Expose the NamespaceBar component in the dynamic plugin SDK API [#12001](https://github.com/openshift/console/pull/12001) * [OCPBUGS-1141](https://issues.redhat.com/browse/OCPBUGS-1141): fetch shared resource imagestreams based on labels instance and name [#12035](https://github.com/openshift/console/pull/12035) * [OCPBUGS-943](https://issues.redhat.com/browse/OCPBUGS-943): Use the Deployment as resource kind and label also when importing a Devfile [#12022](https://github.com/openshift/console/pull/12022) * [OCPBUGS-1256](https://issues.redhat.com/browse/OCPBUGS-1256): Improve OLM descriptors e2e tests [#12044](https://github.com/openshift/console/pull/12044) * [OCPBUGS-1290](https://issues.redhat.com/browse/OCPBUGS-1290): updates description for kafkaSink [#12048](https://github.com/openshift/console/pull/12048) * OU-68 Add PodMonitors to Metrics targets Page [#12008](https://github.com/openshift/console/pull/12008) * Added resource quota warning message in topology and add page [#11962](https://github.com/openshift/console/pull/11962) * [OCPBUGS-270](https://issues.redhat.com/browse/OCPBUGS-270): Show already loaded catalog items after a timeout (3sec) [#12019](https://github.com/openshift/console/pull/12019) * [OU-85](https://issues.redhat.com/browse/OU-85): Monitoring: Add runbook URLs to alert and rule details pages [#12026](https://github.com/openshift/console/pull/12026) * Automate DevConsole Interop WTO Scenarios [#8814](https://github.com/openshift/console/pull/8814) * [Bug 2115899](https://bugzilla.redhat.com/show_bug.cgi?id=2115899): BuildConfig form: Change image repository to image registry [#11938](https://github.com/openshift/console/pull/11938) * [OCPBUGS-548](https://issues.redhat.com/browse/OCPBUGS-548): Changes to the application menu with search and favorite options so it is consistent with PatternFly menu and aligns with Project selection menu [#11985](https://github.com/openshift/console/pull/11985) * [OCPBUGS-939](https://issues.redhat.com/browse/OCPBUGS-939): Fix flaky CI and usability issue: Disable create button until Devfile is parsed [#12023](https://github.com/openshift/console/pull/12023) * Monitoring: Clean up and make more use of the dynamic plugin SDK [#12009](https://github.com/openshift/console/pull/12009) * [OCPBUGS-238](https://issues.redhat.com/browse/OCPBUGS-238): enable knative e2e in ci [#12021](https://github.com/openshift/console/pull/12021) * [OCPBUGS-896](https://issues.redhat.com/browse/OCPBUGS-896): Allows launching of modals from alert actions [#12018](https://github.com/openshift/console/pull/12018) * Pass className to HealthItem popup top-level component [#11952](https://github.com/openshift/console/pull/11952) * chore(i18n): update translations: Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 222 [#11989](https://github.com/openshift/console/pull/11989) * Update pf packages to pf-2022-10 [#11981](https://github.com/openshift/console/pull/11981) * [OCPBUGS-869](https://issues.redhat.com/browse/OCPBUGS-869): correct Azure product name for support link [#12016](https://github.com/openshift/console/pull/12016) * Migrates StorageClass Provisioner to dynamic-plugin-sdk [#11931](https://github.com/openshift/console/pull/11931) * Disable all OCS tests [#12013](https://github.com/openshift/console/pull/12013) * kafka-event-source & kafka-source-connection feature | Knative [#11957](https://github.com/openshift/console/pull/11957) * [Bug 2112812](https://bugzilla.redhat.com/show_bug.cgi?id=2112812): Update registry library dependency to pick up proxy support [#12011](https://github.com/openshift/console/pull/12011) * Gherkin for "Cancelled" and "Stopped" status of pipeline run [#11868](https://github.com/openshift/console/pull/11868) * [CONSOLE-3179](https://issues.redhat.com/browse/CONSOLE-3179): Improve control over shared modules provided by Console to dynamic plugins [#11700](https://github.com/openshift/console/pull/11700) * [OCPBUGS-704](https://issues.redhat.com/browse/OCPBUGS-704): Disable knative test suite [#12006](https://github.com/openshift/console/pull/12006) * [Bug 2109854](https://bugzilla.redhat.com/show_bug.cgi?id=2109854): Fix description for Max unavailable and Max surge [#11867](https://github.com/openshift/console/pull/11867) * Add support for param of array type when starting a Pipeline [#11953](https://github.com/openshift/console/pull/11953) * [OCPBUGS-451](https://issues.redhat.com/browse/OCPBUGS-451): show git icon in repository details page based on git provider [#12003](https://github.com/openshift/console/pull/12003) * OWNERS: add jerolimov to approvers [#11998](https://github.com/openshift/console/pull/11998) * [OU-59](https://issues.redhat.com/browse/OU-59): Query browser: Remove the metrics list dropdown [#11991](https://github.com/openshift/console/pull/11991) * [HELM-342](https://issues.redhat.com/browse/HELM-342): Add basic authentication support for Helm repositories [#11782](https://github.com/openshift/console/pull/11782) * Add functionality to add kafka-sinks as subscriber, trigger and event-source sink target [#11925](https://github.com/openshift/console/pull/11925) * [OCPBUGS-435](https://issues.redhat.com/browse/OCPBUGS-435): Dropdown items on storageclass creation page need i18n support [#11988](https://github.com/openshift/console/pull/11988) * chore(i18n): update translations: Completed-7034-OCP 4.12 UI Localization- sprint 221 [#11940](https://github.com/openshift/console/pull/11940) * [Bug 2102681](https://bugzilla.redhat.com/show_bug.cgi?id=2102681): Fix zh locale (greater than pod) [#11802](https://github.com/openshift/console/pull/11802) * Include ActionServiceProvider in dynamic-plugin-sdk [#11923](https://github.com/openshift/console/pull/11923) * create kafkaSink support in catalog [#11948](https://github.com/openshift/console/pull/11948) * ODC-6712 & ODC-6714: Add a build decorator for Shipwright Builds and builds section into topology sidebar for Shipwright Builds and BuildRuns [#11853](https://github.com/openshift/console/pull/11853) * correcting nightly failures: pipelines [#11891](https://github.com/openshift/console/pull/11891) * [RHSTOR-3593](https://issues.redhat.com/browse/RHSTOR-3593): Add basic support for Modals [#11163](https://github.com/openshift/console/pull/11163) * [Bug 2091573](https://bugzilla.redhat.com/show_bug.cgi?id=2091573): Input values in Instantiate Template are disappeared randomly in the developer console [#11967](https://github.com/openshift/console/pull/11967) * Query browser: Use PatternFly components directly for Actions and kebab dropdown menus [#11959](https://github.com/openshift/console/pull/11959) * [Bug 2091102](https://bugzilla.redhat.com/show_bug.cgi?id=2091102): Name of workload get changed, when project and image stream gets changed on edit deployment page of the workload [#11758](https://github.com/openshift/console/pull/11758) * correcting nightly failures: topology [#11878](https://github.com/openshift/console/pull/11878) * [Bug 2080260](https://bugzilla.redhat.com/show_bug.cgi?id=2080260): Update OLM pages to use details and list page extensions for operands when they exist [#11883](https://github.com/openshift/console/pull/11883) * [OCPBUGS-238](https://issues.redhat.com/browse/OCPBUGS-238): enable knative e2e in ci [#11963](https://github.com/openshift/console/pull/11963) * [OCPBUGS-180](https://issues.redhat.com/browse/OCPBUGS-180): Change 'Role' title to 'Roles' [#11960](https://github.com/openshift/console/pull/11960) * [Bug 2071792](https://bugzilla.redhat.com/show_bug.cgi?id=2071792): Support namespace of choice for the user that wants to use TLS verification [#11571](https://github.com/openshift/console/pull/11571) * Monitoring: Import enums from dynamic plugin SDK [#11961](https://github.com/openshift/console/pull/11961) * [Bug 2117738](https://bugzilla.redhat.com/show_bug.cgi?id=2117738): reset ErrorBoundary state on location change [#11955](https://github.com/openshift/console/pull/11955) * [CONSOLE-3179](https://issues.redhat.com/browse/CONSOLE-3179): Add deprecation note for react-helmet [#11876](https://github.com/openshift/console/pull/11876) * [Bug 2094502](https://bugzilla.redhat.com/show_bug.cgi?id=2094502): Fix bug where the create required custom resource button points to the wrong namespace. [#11949](https://github.com/openshift/console/pull/11949) * [Bug 2091555](https://bugzilla.redhat.com/show_bug.cgi?id=2091555): - Sort function doesn't work on "Namespaces" column on operator details page [#11958](https://github.com/openshift/console/pull/11958) * [Bug 2109502](https://bugzilla.redhat.com/show_bug.cgi?id=2109502): improve bug report links [#11874](https://github.com/openshift/console/pull/11874) * [Bug 2103090](https://bugzilla.redhat.com/show_bug.cgi?id=2103090): - Storage - StorageClasses - Create StorageClass - Provisioner: Upon selection of Provisoner i18n misses [#11945](https://github.com/openshift/console/pull/11945) * [OCPBUGS-169](https://issues.redhat.com/browse/OCPBUGS-169): Fixes E2E test [#11956](https://github.com/openshift/console/pull/11956) * [Bug 2117367](https://bugzilla.redhat.com/show_bug.cgi?id=2117367): Include referenced .scss files when building core plugin SDK package [#11951](https://github.com/openshift/console/pull/11951) * [Bug 2115280](https://bugzilla.redhat.com/show_bug.cgi?id=2115280): kubevirt-e2e-aws see two duplicated navigation items [#11943](https://github.com/openshift/console/pull/11943) * Monitoring: Clean up imports and types [#11784](https://github.com/openshift/console/pull/11784) * Capture telemetry event for Export application action [#11921](https://github.com/openshift/console/pull/11921) * [Bug 2116415](https://bugzilla.redhat.com/show_bug.cgi?id=2116415): e2e: Disable Shipwright e2e tests [#11947](https://github.com/openshift/console/pull/11947) * Updated dynamic demo plugin instructions [#11904](https://github.com/openshift/console/pull/11904) * Allow editing of Repositories using the form-yaml experience [#11866](https://github.com/openshift/console/pull/11866) * [CONSOLE-3244](https://issues.redhat.com/browse/CONSOLE-3244): Make status.HostIP for Pods visible in the OCP Web Console [#11919](https://github.com/openshift/console/pull/11919) * [Bug 2111686](https://bugzilla.redhat.com/show_bug.cgi?id=2111686): [OKD/nanokube] Fix NPE when project or build status is not defined [#11791](https://github.com/openshift/console/pull/11791) * [Bug 2109511](https://bugzilla.redhat.com/show_bug.cgi?id=2109511): fix failed PipelineRun log texts color in light mode [#11859](https://github.com/openshift/console/pull/11859) * [Bug 2102341](https://bugzilla.redhat.com/show_bug.cgi?id=2102341): Include min-width on operator icon img so that Firefox displays them correctly [#11934](https://github.com/openshift/console/pull/11934) * [Bug 2114488](https://bugzilla.redhat.com/show_bug.cgi?id=2114488): Fix Monitoring Alert decorator icon color in Topology [#11928](https://github.com/openshift/console/pull/11928) * [Bug 2110525](https://bugzilla.redhat.com/show_bug.cgi?id=2110525): Clear the error when switching between the Form and YAML editor [#11871](https://github.com/openshift/console/pull/11871) * improve export application flow [#11915](https://github.com/openshift/console/pull/11915) * [Bug 2115799](https://bugzilla.redhat.com/show_bug.cgi?id=2115799): Fix Resource selection for import flow [#11937](https://github.com/openshift/console/pull/11937) * [Bug 2107469](https://bugzilla.redhat.com/show_bug.cgi?id=2107469): Fix service-binding modal sub-title text when the target is available [#11898](https://github.com/openshift/console/pull/11898) * [CONSOLE-3188](https://issues.redhat.com/browse/CONSOLE-3188): Add alert with message for Console plugins page when console operator spec.managementState is Unmanaged [#11897](https://github.com/openshift/console/pull/11897) * Add Resource type dropdown on the User preferences page [#11833](https://github.com/openshift/console/pull/11833) * Gherkin for Builds v2 in Dev Console - Topology [#11893](https://github.com/openshift/console/pull/11893) * Added Repositories tab in Helm Page [#11844](https://github.com/openshift/console/pull/11844) * Add Cancel option and update the stop status for the PipelineRun [#11920](https://github.com/openshift/console/pull/11920) * [ODC-6740](https://issues.redhat.com/browse/ODC-6740): Move Build v2 e2e tests from dev-console to shipwright-plugin package [#11889](https://github.com/openshift/console/pull/11889) * [CONSOLE-3140](https://issues.redhat.com/browse/CONSOLE-3140): Expose ResourceIcon to dynamic-plugin-sdk [#11870](https://github.com/openshift/console/pull/11870) * [Bug 2084504](https://bugzilla.redhat.com/show_bug.cgi?id=2084504): can not silence platform alert from developer console [#11895](https://github.com/openshift/console/pull/11895) * Bug 2105918, Bug 2105303: specify namespace and index entry along with chart url to get the chart details [#11838](https://github.com/openshift/console/pull/11838) * [Bug 2112481](https://bugzilla.redhat.com/show_bug.cgi?id=2112481): Fix visual inconsistencies across synched editor forms [#11903](https://github.com/openshift/console/pull/11903) * [Bug 1951901](https://bugzilla.redhat.com/show_bug.cgi?id=1951901): incorrect Worker nodes number calculated when nodes have… [#11896](https://github.com/openshift/console/pull/11896) * [Bug 2001211](https://bugzilla.redhat.com/show_bug.cgi?id=2001211): Resource usage measurement data display the concatenati… [#11805](https://github.com/openshift/console/pull/11805) * [Bug 2099795](https://bugzilla.redhat.com/show_bug.cgi?id=2099795): README file for helm charts encoded in Chinese shows messy characters in the UI [#11881](https://github.com/openshift/console/pull/11881) * [Bug 2112862](https://bugzilla.redhat.com/show_bug.cgi?id=2112862): Fix broken Namespace CRUD e2e test [#11908](https://github.com/openshift/console/pull/11908) * [CONSOLE-3186](https://issues.redhat.com/browse/CONSOLE-3186): Add shared-plugin to the SDK Packages tables docs [#11882](https://github.com/openshift/console/pull/11882) * capture telemetry for helmChartRepo creation to detect scope [#11872](https://github.com/openshift/console/pull/11872) * SDK - add plain yaml editor [#11840](https://github.com/openshift/console/pull/11840) * [Bug 2070562](https://bugzilla.redhat.com/show_bug.cgi?id=2070562): Base64 data value for java keystore secret changing auto… [#11890](https://github.com/openshift/console/pull/11890) * [Bug 2111205](https://bugzilla.redhat.com/show_bug.cgi?id=2111205): [CI Watcher] Add yarn config to dynamic-demo-plugin [#11880](https://github.com/openshift/console/pull/11880) * [Bug 2112146](https://bugzilla.redhat.com/show_bug.cgi?id=2112146): Update pod YAML sample for restricted pod security admission policy [#11894](https://github.com/openshift/console/pull/11894) * [Bug 2110927](https://bugzilla.redhat.com/show_bug.cgi?id=2110927): Remove zero from edit yaml page and clear errors when the user press the save button [#11877](https://github.com/openshift/console/pull/11877) * [Bug 2075107](https://bugzilla.redhat.com/show_bug.cgi?id=2075107): consistency in web terminal headers [#11858](https://github.com/openshift/console/pull/11858) * bump codemirror and promql editor to the last version [#11822](https://github.com/openshift/console/pull/11822) * [Bug 2092319](https://bugzilla.redhat.com/show_bug.cgi?id=2092319): [Firefox] multi-line node status formatting issue [#11638](https://github.com/openshift/console/pull/11638) * [Bug 2089221](https://bugzilla.redhat.com/show_bug.cgi?id=2089221): Could not de-select a Git Secret in add and edit forms [#11606](https://github.com/openshift/console/pull/11606) * [Bug 2084453](https://bugzilla.redhat.com/show_bug.cgi?id=2084453): - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view [#11845](https://github.com/openshift/console/pull/11845) * [Bug 2097026](https://bugzilla.redhat.com/show_bug.cgi?id=2097026): Administration - Cluster Settings - Cluster Operators : … [#11742](https://github.com/openshift/console/pull/11742) * [Bug 2094240](https://bugzilla.redhat.com/show_bug.cgi?id=2094240): Update workload-pause.tsx to fix inconsistency between buttons in the notification and kebab action dropdown. [#11677](https://github.com/openshift/console/pull/11677) * Updates Ceph plugin OWNERS [#11657](https://github.com/openshift/console/pull/11657) * [Bug 2109673](https://bugzilla.redhat.com/show_bug.cgi?id=2109673): Align Console plugin SDK package dependencies with generated code [#11625](https://github.com/openshift/console/pull/11625) * Bug 2106366, Bug 2106377: Use displayname for PHCR in the catalog page [#11852](https://github.com/openshift/console/pull/11852) * [Bug 2108551](https://bugzilla.redhat.com/show_bug.cgi?id=2108551): [CI Watcher] Bulk Import e2e test flaking at a high rate [#11863](https://github.com/openshift/console/pull/11863) * [CONSOLE-3181](https://issues.redhat.com/browse/CONSOLE-3181): Deprecate useAccessReviewAllowed and useSafetyFirst [#11851](https://github.com/openshift/console/pull/11851) * support creation of helm chart repo using the existing PHCR form [#11821](https://github.com/openshift/console/pull/11821) * [Bug 2037329](https://bugzilla.redhat.com/show_bug.cgi?id=2037329): remove redundant model check to prevent tab reloading [#11862](https://github.com/openshift/console/pull/11862) * chore(i18n): update translations: Completed-7034-OCP 4.11 UI Localization- sprint 220 [#11846](https://github.com/openshift/console/pull/11846) * Bump webpack dependency in plugin SDK and demo plugin [#11771](https://github.com/openshift/console/pull/11771) * [Bug 2109469](https://bugzilla.redhat.com/show_bug.cgi?id=2109469): Fix create-namespace e2e test: cleanup useServiceLevelTitle hook usage [#11855](https://github.com/openshift/console/pull/11855) * [Bug 2108638](https://bugzilla.redhat.com/show_bug.cgi?id=2108638): SDK - expose useLastNamespace [#11828](https://github.com/openshift/console/pull/11828) * [Bug 2106805](https://bugzilla.redhat.com/show_bug.cgi?id=2106805): Enable running specific spec files with headless test-cypress [#11818](https://github.com/openshift/console/pull/11818) * add parameters tab on PipelineRun details page [#11767](https://github.com/openshift/console/pull/11767) * [Bug 2079690](https://bugzilla.redhat.com/show_bug.cgi?id=2079690): Fix operand affinity form field [#11834](https://github.com/openshift/console/pull/11834) * [Bug 2094558](https://bugzilla.redhat.com/show_bug.cgi?id=2094558): MetalLB: Creating ip address pool and community CR throu… [#11728](https://github.com/openshift/console/pull/11728) * [Bug 2105344](https://bugzilla.redhat.com/show_bug.cgi?id=2105344): correct usePodActionsProvider and apply it [#11816](https://github.com/openshift/console/pull/11816) * [Bug 2100640](https://bugzilla.redhat.com/show_bug.cgi?id=2100640): Adjust font size and alignment for show operands radio toggle [#11850](https://github.com/openshift/console/pull/11850) * [Bug 2106866](https://bugzilla.redhat.com/show_bug.cgi?id=2106866): Fix flaky OLM descriptor test [#11856](https://github.com/openshift/console/pull/11856) * [Bug 2092137](https://bugzilla.redhat.com/show_bug.cgi?id=2092137): Search doesn't show all entries when name filter is cleared [#11665](https://github.com/openshift/console/pull/11665) * [CONSOLE-3091](https://issues.redhat.com/browse/CONSOLE-3091): Remove orphaned code along with consolidating some code to use PF instead of Bootstrap [#11744](https://github.com/openshift/console/pull/11744) * [Bug 2090457](https://bugzilla.redhat.com/show_bug.cgi?id=2090457): openshift-debug-node- namespaces do not get deleted for … [#11824](https://github.com/openshift/console/pull/11824) * [Bug 2102098](https://bugzilla.redhat.com/show_bug.cgi?id=2102098): There is no error message shown on node label edi... [#11817](https://github.com/openshift/console/pull/11817) * [Bug 2106803](https://bugzilla.redhat.com/show_bug.cgi?id=2106803): mock call to /api/devfile in e2e [#11831](https://github.com/openshift/console/pull/11831) * [Bug 2093597](https://bugzilla.redhat.com/show_bug.cgi?id=2093597): Added the spacing between advanced options [#11739](https://github.com/openshift/console/pull/11739) * [Bug 2079214](https://bugzilla.redhat.com/show_bug.cgi?id=2079214): Switch default modal scroll behavior from inner modal body scroll to entire modal scroll to prevent bug and have consistent display of dropdown menus. [#11835](https://github.com/openshift/console/pull/11835) * [Bug 2081674](https://bugzilla.redhat.com/show_bug.cgi?id=2081674): Added onSubmit for create a project function for Dev perspective [#11781](https://github.com/openshift/console/pull/11781) * [Bug 2089773](https://bugzilla.redhat.com/show_bug.cgi?id=2089773): Added separate reducers for status and title for pipeline status [#11678](https://github.com/openshift/console/pull/11678) * [Bug 2106866](https://bugzilla.redhat.com/show_bug.cgi?id=2106866): Fix flaky OLM test [#11832](https://github.com/openshift/console/pull/11832) * [CONSOLE-3167](https://issues.redhat.com/browse/CONSOLE-3167): Remove static plugin nav extensions [#11825](https://github.com/openshift/console/pull/11825) * [Bug 2103981](https://bugzilla.redhat.com/show_bug.cgi?id=2103981): show last 3 build with option to view all in case of more then 3 builds [#11837](https://github.com/openshift/console/pull/11837) * [Bug 2103224](https://bugzilla.redhat.com/show_bug.cgi?id=2103224): Update the side nav perspective selection so it has the correct background and border color when in dark mode [#11790](https://github.com/openshift/console/pull/11790) * [Bug 2103972](https://bugzilla.redhat.com/show_bug.cgi?id=2103972): fix MultiColumnField header alignment used for Pipeline parameters [#11799](https://github.com/openshift/console/pull/11799) * [Bug 2078769](https://bugzilla.redhat.com/show_bug.cgi?id=2078769): Added translations for filter group names [#11594](https://github.com/openshift/console/pull/11594) * [CONSOLE-3067](https://issues.redhat.com/browse/CONSOLE-3067): Adding Rollout Restart function to the OpenShift Console [#11725](https://github.com/openshift/console/pull/11725) * [Bug 2091542](https://bugzilla.redhat.com/show_bug.cgi?id=2091542): - Error Loading/404 not found page shown after clicking "Current namespace only" [#11743](https://github.com/openshift/console/pull/11743) * [Bug 2021297](https://bugzilla.redhat.com/show_bug.cgi?id=2021297): Implement dynamic plugin dependency resolution [#11626](https://github.com/openshift/console/pull/11626) * [CONSOLE-3204](https://issues.redhat.com/browse/CONSOLE-3204): Add missing api docs for *Icon and *Status components [#11808](https://github.com/openshift/console/pull/11808) * [Bug 2098234](https://bugzilla.redhat.com/show_bug.cgi?id=2098234): fix broken update server link [#11768](https://github.com/openshift/console/pull/11768) * Bug 2105909, Bug 2105328: Fix create-namespace e2e test, ESOCKET timeout issue, and a11y violations to unblock CI [#11809](https://github.com/openshift/console/pull/11809) * [Bug 2052662](https://bugzilla.redhat.com/show_bug.cgi?id=2052662): Fix null reference [#11780](https://github.com/openshift/console/pull/11780) * Updating openshift-enterprise-console images to be consistent with ART [#11789](https://github.com/openshift/console/pull/11789) * [Bug 2093593](https://bugzilla.redhat.com/show_bug.cgi?id=2093593): Updated selected strategy file as devfile when devfile is selected [#11719](https://github.com/openshift/console/pull/11719) * [Bug 2100774](https://bugzilla.redhat.com/show_bug.cgi?id=2100774): add error color to required help text for image search field [#11776](https://github.com/openshift/console/pull/11776) * Update PF packages to pf-2022-8 [#11766](https://github.com/openshift/console/pull/11766) * [CONSOLE-3083](https://issues.redhat.com/browse/CONSOLE-3083): Update API docs for dynamic plugin sdk [#11639](https://github.com/openshift/console/pull/11639) * Update ODC owner files [#11760](https://github.com/openshift/console/pull/11760) * [Bug 2096350](https://bugzilla.redhat.com/show_bug.cgi?id=2096350): fix bug where Cluster update modal errors weren't displa… [#11762](https://github.com/openshift/console/pull/11762) * [Full changelog](https://github.com/openshift/console/compare/71da8a5d97fff0e6c6bf78356ff21e12246b8266...7e1a504f744ead2eb7142645276229b8e5e87b02) ### [console-operator](https://github.com/openshift/console-operator/tree/32e6d25c4ac9fe71bb64fa7b30073a72547f4974) * [OCPBUGS-33386](https://issues.redhat.com/browse/OCPBUGS-33386): Reset console operator's conditions [#898](https://github.com/openshift/console-operator/pull/898) * [OCPBUGS-20988](https://issues.redhat.com/browse/OCPBUGS-20988): Disable HTTP/2 for webhook [#876](https://github.com/openshift/console-operator/pull/876) * [OCPBUGS-30990](https://issues.redhat.com/browse/OCPBUGS-30990): [release-4.12] Bump library-go and golang.org/x/net [#867](https://github.com/openshift/console-operator/pull/867) * [OCPBUGS-18951](https://issues.redhat.com/browse/OCPBUGS-18951): Add haproxy timeout annotation to console routes [#792](https://github.com/openshift/console-operator/pull/792) * [OCPBUGS-18309](https://issues.redhat.com/browse/OCPBUGS-18309): Add missing watch permission for helm-chartrepos-viewers [#789](https://github.com/openshift/console-operator/pull/789) * [OCPBUGS-15834](https://issues.redhat.com/browse/OCPBUGS-15834): Dockerfile: Shift ConsolePlugin CRD after the operator Deployment [#791](https://github.com/openshift/console-operator/pull/791) * [OCPBUGS-18563](https://issues.redhat.com/browse/OCPBUGS-18563): OLM Pages work when copied CSVs are disabled [#780](https://github.com/openshift/console-operator/pull/780) * [OCPBUGS-13647](https://issues.redhat.com/browse/OCPBUGS-13647): Proper cleanup of route sync conditions [#762](https://github.com/openshift/console-operator/pull/762) * [OCPBUGS-7999](https://issues.redhat.com/browse/OCPBUGS-7999): Distinguish between route conditions and remove the old ones [#735](https://github.com/openshift/console-operator/pull/735) * [OCPBUGS-6921](https://issues.redhat.com/browse/OCPBUGS-6921): Recover ConsoleNotificationSync after being degraded [#728](https://github.com/openshift/console-operator/pull/728) * [CONSOLE-3252](https://issues.redhat.com/browse/CONSOLE-3252): Create a ConsoleNotification when cluster is performing an upgrade [#687](https://github.com/openshift/console-operator/pull/687) * [OCPBUGS-2219](https://issues.redhat.com/browse/OCPBUGS-2219): Empty string should be valid for i18n loadType [#689](https://github.com/openshift/console-operator/pull/689) * [CONSOLE-3337](https://issues.redhat.com/browse/CONSOLE-3337): Dynamic plugin proxy reference issue [#691](https://github.com/openshift/console-operator/pull/691) * [OCPBUGS-1708](https://issues.redhat.com/browse/OCPBUGS-1708): Set i18n LoadType to Lazy when v1alpha1 i18n annotation is set to false [#684](https://github.com/openshift/console-operator/pull/684) * update to release.openshift.io/feature-set to match OCP 4.12 [#688](https://github.com/openshift/console-operator/pull/688) * [CONSOLE-3125](https://issues.redhat.com/browse/CONSOLE-3125): Add cluster filtering by product and ocp version [#677](https://github.com/openshift/console-operator/pull/677) * [ODC-6778](https://issues.redhat.com/browse/ODC-6778): Bump openshift/api to get devcatalog disable types cuztomization changes [#676](https://github.com/openshift/console-operator/pull/676) * [CONSOLE-3069](https://issues.redhat.com/browse/CONSOLE-3069): Handle new v1 ConsolePlugin api in the operator [#683](https://github.com/openshift/console-operator/pull/683) * [OCPBUGS-785](https://issues.redhat.com/browse/OCPBUGS-785): Bump documentationBaseURL to 4.12 [#682](https://github.com/openshift/console-operator/pull/682) * [ODC-6783](https://issues.redhat.com/browse/ODC-6783): Export perspectives to console-config ConfigMap [#678](https://github.com/openshift/console-operator/pull/678) * CONSOLE 3096: Promote ConsolePlugin CRD to v1 [#670](https://github.com/openshift/console-operator/pull/670) * [Bug 2100860](https://bugzilla.redhat.com/show_bug.cgi?id=2100860): Retrieve user-defined Alertmanager services from shared configmap [#658](https://github.com/openshift/console-operator/pull/658) * [CONSOLE-3242](https://issues.redhat.com/browse/CONSOLE-3242): Heterogeneous architecture clusters [#669](https://github.com/openshift/console-operator/pull/669) * [CONSOLE-3220](https://issues.redhat.com/browse/CONSOLE-3220): Add console capability to all manifests [#665](https://github.com/openshift/console-operator/pull/665) * [OCPBUGS-457](https://issues.redhat.com/browse/OCPBUGS-457): TestEditUnmanagedPodDisruptionBudget flakes [#675](https://github.com/openshift/console-operator/pull/675) * [OCPBUGS-498](https://issues.redhat.com/browse/OCPBUGS-498): Update with latest openshift/api changes [#674](https://github.com/openshift/console-operator/pull/674) * [Bug 2117646](https://bugzilla.redhat.com/show_bug.cgi?id=2117646): Changing field on any of routes in the openshift-console namespace wont trigger sync loop [#672](https://github.com/openshift/console-operator/pull/672) * [Bug 2117142](https://bugzilla.redhat.com/show_bug.cgi?id=2117142): update annotations for project-helm-chartrepository-editor [#673](https://github.com/openshift/console-operator/pull/673) * [Bug 2117142](https://bugzilla.redhat.com/show_bug.cgi?id=2117142): Update permission for projecthelmchartrepositories with an aggregator role [#667](https://github.com/openshift/console-operator/pull/667) * [Bug 2089950](https://bugzilla.redhat.com/show_bug.cgi?id=2089950): Deleting downloads deployment should not fail if already deleted [#663](https://github.com/openshift/console-operator/pull/663) * [Bug 2093852](https://bugzilla.redhat.com/show_bug.cgi?id=2093852): InfrastructureTopology must be driving console affinity rule creation [#657](https://github.com/openshift/console-operator/pull/657) * [Bug 2021297](https://bugzilla.redhat.com/show_bug.cgi?id=2021297): Pass RELEASE_VERSION envar into the console pod [#659](https://github.com/openshift/console-operator/pull/659) * [Full changelog](https://github.com/openshift/console-operator/compare/488fe1393f90ed89881fb4963e957e3603e6d778...32e6d25c4ac9fe71bb64fa7b30073a72547f4974) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/1b33971993ca1013be9f24690c44560d2c58c70a) * [OCPBUGS-20593](https://issues.redhat.com/browse/OCPBUGS-20593): build(deps): bump golang.org/x/net from 0.10.0 to 0.17.0 [backport 4.12] [#131](https://github.com/openshift/containernetworking-plugins/pull/131) * [OCPBUGS-5289](https://issues.redhat.com/browse/OCPBUGS-5289): Adds vlan path substitution fix to address tuning regression for runtime config [#71](https://github.com/openshift/containernetworking-plugins/pull/71) * [OCPBUGS-4223](https://issues.redhat.com/browse/OCPBUGS-4223): Fix path substitution to enable setting sysctls on vlan interfaces [#68](https://github.com/openshift/containernetworking-plugins/pull/68) * Updating ose-containernetworking-plugins images to be consistent with ART [#66](https://github.com/openshift/containernetworking-plugins/pull/66) * Updating ose-containernetworking-plugins images to be consistent with ART [#65](https://github.com/openshift/containernetworking-plugins/pull/65) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/1addd7c74290115ec4071de171f5069a17633153...1b33971993ca1013be9f24690c44560d2c58c70a) ### [coredns](https://github.com/openshift/coredns/tree/cc1194ea004f6b4bcb132fd1c6cebee68666d38f) * [OCPBUGS-21023](https://issues.redhat.com/browse/OCPBUGS-21023): UPSTREAM: <carry>: openshift: Address CVE-2023-39325 [#103](https://github.com/openshift/coredns/pull/103) * [OCPBUGS-20144](https://issues.redhat.com/browse/OCPBUGS-20144): UPSTREAM: <carry>: openshift: Fix OCPBUGS-20144 [#98](https://github.com/openshift/coredns/pull/98) * [OCPBUGS-240](https://issues.redhat.com/browse/OCPBUGS-240): Remove bufsize hardcoding to 2048 on cache upstream refreshes. [#78](https://github.com/openshift/coredns/pull/78) * Updating coredns images to be consistent with ART [#77](https://github.com/openshift/coredns/pull/77) * [OCPBUGS-1731](https://issues.redhat.com/browse/OCPBUGS-1731): Merge 1.10.0 [#76](https://github.com/openshift/coredns/pull/76) * Updating coredns images to be consistent with ART [#75](https://github.com/openshift/coredns/pull/75) * [Full changelog](https://github.com/openshift/coredns/compare/e195fdd7d4c05474aeb2786a3909e00ba7be60b8...cc1194ea004f6b4bcb132fd1c6cebee68666d38f) ### [csi-driver-manila, openstack-cinder-csi-driver, openstack-cloud-controller-manager](https://github.com/openshift/cloud-provider-openstack/tree/2f1d9f8ac6af4364d8118c874b0071d9e9f3ee65) * update tags to v1.25.4 [#2118](https://github.com/openshift/cloud-provider-openstack/pull/2118) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/f985eeeb426c803a2a1d8e14e6b703ccc7114309...2f1d9f8ac6af4364d8118c874b0071d9e9f3ee65) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/8dab53208f3a161af85eedd6835c2701d337d5f9) * [OCPBUGS-30295](https://issues.redhat.com/browse/OCPBUGS-30295): Fix selector for manila-csi-driver-controller-metrics service [#228](https://github.com/openshift/csi-driver-manila-operator/pull/228) * [OCPBUGS-18475](https://issues.redhat.com/browse/OCPBUGS-18475): Don't cache OpenStack client [#202](https://github.com/openshift/csi-driver-manila-operator/pull/202) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#199](https://github.com/openshift/csi-driver-manila-operator/pull/199) * [OCPBUGS-10556](https://issues.redhat.com/browse/OCPBUGS-10556): Bump go.mongodb.org/mongo-driver to v1.5.1 [#176](https://github.com/openshift/csi-driver-manila-operator/pull/176) * [OCPBUGS-6599](https://issues.redhat.com/browse/OCPBUGS-6599): Address CVE-2022-41717 [#166](https://github.com/openshift/csi-driver-manila-operator/pull/166) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#159](https://github.com/openshift/csi-driver-manila-operator/pull/159) * Updating csi-driver-manila-operator images to be consistent with ART [#157](https://github.com/openshift/csi-driver-manila-operator/pull/157) * Ensure files follow go 1.19 formatting [#158](https://github.com/openshift/csi-driver-manila-operator/pull/158) * [Bug 2057637](https://bugzilla.redhat.com/show_bug.cgi?id=2057637): Include secrets to VolumeSnapshotClass [#156](https://github.com/openshift/csi-driver-manila-operator/pull/156) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#155](https://github.com/openshift/csi-driver-manila-operator/pull/155) * Bug OCPBUGS-944: Fix RBAC race during initial deployment [#154](https://github.com/openshift/csi-driver-manila-operator/pull/154) * Expose CSI_FSGROUP_POLICY as an operator option [#142](https://github.com/openshift/csi-driver-manila-operator/pull/142) * Updating csi-driver-manila-operator images to be consistent with ART [#151](https://github.com/openshift/csi-driver-manila-operator/pull/151) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/d3cb2f5c7f5fdbad0657b05dd11f8558a4c4abe7...8dab53208f3a161af85eedd6835c2701d337d5f9) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/d90992573acb3df6c7fbb6dbe1b215125d26fc34) * [OCPBUGS-6590](https://issues.redhat.com/browse/OCPBUGS-6590): Address CVE-2022-41717 [#105](https://github.com/openshift/csi-driver-nfs/pull/105) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#96](https://github.com/openshift/csi-driver-nfs/pull/96) * Updating csi-driver-nfs images to be consistent with ART [#95](https://github.com/openshift/csi-driver-nfs/pull/95) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#94](https://github.com/openshift/csi-driver-nfs/pull/94) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#93](https://github.com/openshift/csi-driver-nfs/pull/93) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#92](https://github.com/openshift/csi-driver-nfs/pull/92) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#91](https://github.com/openshift/csi-driver-nfs/pull/91) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#90](https://github.com/openshift/csi-driver-nfs/pull/90) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#89](https://github.com/openshift/csi-driver-nfs/pull/89) * Updating csi-driver-nfs images to be consistent with ART [#88](https://github.com/openshift/csi-driver-nfs/pull/88) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#87](https://github.com/openshift/csi-driver-nfs/pull/87) * Revert "<carry>: Umount volumes with force" [#86](https://github.com/openshift/csi-driver-nfs/pull/86) * Merge https://github.com/kubernetes-csi/csi-driver-nfs:master into master [#85](https://github.com/openshift/csi-driver-nfs/pull/85) * Merge remote-tracking branch 'upstream/master' into upstream-merge [#84](https://github.com/openshift/csi-driver-nfs/pull/84) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/f144bb436b5b13c5647983dcc4cb0bfcb730e25a...d90992573acb3df6c7fbb6dbe1b215125d26fc34) ### [csi-driver-shared-resource, csi-driver-shared-resource-webhook](https://github.com/openshift/csi-driver-shared-resource/tree/d054948fbc78ef04c7a55ac2a4b3ac0ed5648585) * [OCPBUGS-28953](https://issues.redhat.com/browse/OCPBUGS-28953): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#169](https://github.com/openshift/csi-driver-shared-resource/pull/169) * [OCPBUGS-23118](https://issues.redhat.com/browse/OCPBUGS-23118): Should reference configmaps instead of secrets [#154](https://github.com/openshift/csi-driver-shared-resource/pull/154) * [OCPBUGS-20703](https://issues.redhat.com/browse/OCPBUGS-20703): bump golang.org/x/net to v0.17.0 [#148](https://github.com/openshift/csi-driver-shared-resource/pull/148) * Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART [#112](https://github.com/openshift/csi-driver-shared-resource/pull/112) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#113](https://github.com/openshift/csi-driver-shared-resource/pull/113) * csi topology is only PV relatead, do not need [#111](https://github.com/openshift/csi-driver-shared-resource/pull/111) * Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART [#108](https://github.com/openshift/csi-driver-shared-resource/pull/108) * Updating ose-csi-driver-shared-resource images to be consistent with ART [#107](https://github.com/openshift/csi-driver-shared-resource/pull/107) * Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART [#106](https://github.com/openshift/csi-driver-shared-resource/pull/106) * [Full changelog](https://github.com/openshift/csi-driver-shared-resource/compare/c53236512eb9747c8969e466deeba4e9c615f91c...d054948fbc78ef04c7a55ac2a4b3ac0ed5648585) ### [csi-driver-shared-resource-operator](https://github.com/openshift/csi-driver-shared-resource-operator/tree/cc297702e6d2d4fb5a2b57a734c26d0d0a7bec1c) * [OCPBUGS-28959](https://issues.redhat.com/browse/OCPBUGS-28959): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#105](https://github.com/openshift/csi-driver-shared-resource-operator/pull/105) * [OCPBUGS-20787](https://issues.redhat.com/browse/OCPBUGS-20787): bump golang.org/x/net to v0.17.0 [#88](https://github.com/openshift/csi-driver-shared-resource-operator/pull/88) * [OCPBUGS-3359](https://issues.redhat.com/browse/OCPBUGS-3359): Revert "[build-407] Mount shared secret and configmap list config path into shared driver node" [#62](https://github.com/openshift/csi-driver-shared-resource-operator/pull/62) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#58](https://github.com/openshift/csi-driver-shared-resource-operator/pull/58) * Mount shared secret and configmap list config path into shared driver node [#56](https://github.com/openshift/csi-driver-shared-resource-operator/pull/56) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#57](https://github.com/openshift/csi-driver-shared-resource-operator/pull/57) * : Authorize shared secrets and configmaps with openshift- prefix [#53](https://github.com/openshift/csi-driver-shared-resource-operator/pull/53) * [Bug 2081557](https://bugzilla.redhat.com/show_bug.cgi?id=2081557): Run at least one replica of Webhook [#51](https://github.com/openshift/csi-driver-shared-resource-operator/pull/51) * Updating ose-csi-driver-shared-resource-operator images to be consistent with ART [#52](https://github.com/openshift/csi-driver-shared-resource-operator/pull/52) * [Full changelog](https://github.com/openshift/csi-driver-shared-resource-operator/compare/cef0485335717f66460da9e7216a431ef3bb722c...cc297702e6d2d4fb5a2b57a734c26d0d0a7bec1c) ### [csi-external-attacher](https://github.com/openshift/csi-external-attacher/tree/fac7b8fd905b4c68beadc2c968e6f981385463e8) * [OCPBUGS-21139](https://issues.redhat.com/browse/OCPBUGS-21139): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#62](https://github.com/openshift/csi-external-attacher/pull/62) * UPSTREAM: 379: Fix gofmt for go 1.19 [#47](https://github.com/openshift/csi-external-attacher/pull/47) * UPSTREAM: <carry>: Remove .github files [#43](https://github.com/openshift/csi-external-attacher/pull/43) * Updating csi-attacher images to be consistent with ART [#42](https://github.com/openshift/csi-external-attacher/pull/42) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v4.0.0 for OCP 4.12 [#41](https://github.com/openshift/csi-external-attacher/pull/41) * Updating csi-attacher images to be consistent with ART [#40](https://github.com/openshift/csi-external-attacher/pull/40) * [Full changelog](https://github.com/openshift/csi-external-attacher/compare/1e15b60167c2fc326dc81f3d23a9f47852f0f858...fac7b8fd905b4c68beadc2c968e6f981385463e8) ### [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner/tree/3aa7c527732e288c71119ea3e78fac739dfbd438) * [OCPBUGS-20743](https://issues.redhat.com/browse/OCPBUGS-20743): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#74](https://github.com/openshift/csi-external-provisioner/pull/74) * Updating csi-provisioner images to be consistent with ART [#58](https://github.com/openshift/csi-external-provisioner/pull/58) * UPSTREAM: <carry>: Remove .github files [#57](https://github.com/openshift/csi-external-provisioner/pull/57) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v3.3.0 for OCP 4.12 [#55](https://github.com/openshift/csi-external-provisioner/pull/55) * Updating csi-provisioner images to be consistent with ART [#54](https://github.com/openshift/csi-external-provisioner/pull/54) * [Bug 2101343](https://bugzilla.redhat.com/show_bug.cgi?id=2101343): UPSTREAM: 2101343: fix: changed the csistoragecapacity check namespace [#52](https://github.com/openshift/csi-external-provisioner/pull/52) * [Full changelog](https://github.com/openshift/csi-external-provisioner/compare/7729f3835e2a1a68953bb9f9265e2e89e7d04184...3aa7c527732e288c71119ea3e78fac739dfbd438) ### [csi-external-resizer](https://github.com/openshift/csi-external-resizer/tree/5b066ba420bd74ec5327978d2731da989d57d4f2) * [OCPBUGS-20885](https://issues.redhat.com/browse/OCPBUGS-20885): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#149](https://github.com/openshift/csi-external-resizer/pull/149) * Updating ose-csi-external-resizer images to be consistent with ART [#134](https://github.com/openshift/csi-external-resizer/pull/134) * UPSTREAM: <carry>: Remove .github files [#133](https://github.com/openshift/csi-external-resizer/pull/133) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v1.6.0 for OCP 4.12 [#132](https://github.com/openshift/csi-external-resizer/pull/132) * Updating ose-csi-external-resizer images to be consistent with ART [#131](https://github.com/openshift/csi-external-resizer/pull/131) * [Full changelog](https://github.com/openshift/csi-external-resizer/compare/15ef7669ad93f1c70c6916d5e07f86cdd9fa167e...5b066ba420bd74ec5327978d2731da989d57d4f2) ### [csi-external-snapshotter, csi-snapshot-controller, csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter/tree/6fdb648f67640dbb8b5eed10a1eab9830e6f8cdf) * [OCPBUGS-29244](https://issues.redhat.com/browse/OCPBUGS-29244): cherry-pick:release-4.12: OCPBUGS-29244 Update VolumeSnapshot and VolumeSnapshotContent using JSON patch [#140](https://github.com/openshift/csi-external-snapshotter/pull/140) * [OCPBUGS-20991](https://issues.redhat.com/browse/OCPBUGS-20991): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#111](https://github.com/openshift/csi-external-snapshotter/pull/111) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#84](https://github.com/openshift/csi-external-snapshotter/pull/84) * Updating ose-csi-external-snapshotter images to be consistent with ART [#83](https://github.com/openshift/csi-external-snapshotter/pull/83) * Updating ose-csi-snapshot-controller images to be consistent with ART [#82](https://github.com/openshift/csi-external-snapshotter/pull/82) * UPSTREAM: <carry>: Remove .github files [#81](https://github.com/openshift/csi-external-snapshotter/pull/81) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#80](https://github.com/openshift/csi-external-snapshotter/pull/80) * Updating ose-csi-external-snapshotter images to be consistent with ART [#79](https://github.com/openshift/csi-external-snapshotter/pull/79) * Updating ose-csi-snapshot-controller images to be consistent with ART [#78](https://github.com/openshift/csi-external-snapshotter/pull/78) * [STOR-859](https://issues.redhat.com/browse/STOR-859): Rebase to v6.1.0 for OCP 4.12 [#77](https://github.com/openshift/csi-external-snapshotter/pull/77) * Updating csi-snapshot-validation-webhook images to be consistent with ART [#76](https://github.com/openshift/csi-external-snapshotter/pull/76) * Updating ose-csi-external-snapshotter images to be consistent with ART [#75](https://github.com/openshift/csi-external-snapshotter/pull/75) * Updating ose-csi-snapshot-controller images to be consistent with ART [#74](https://github.com/openshift/csi-external-snapshotter/pull/74) * [Full changelog](https://github.com/openshift/csi-external-snapshotter/compare/54d2f3dc5227bbaaf0c76e256dc49f4d58cfb33c...6fdb648f67640dbb8b5eed10a1eab9830e6f8cdf) ### [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe/tree/e6545e71597df1da4635c266eb8f499fc376d970) * [OCPBUGS-20629](https://issues.redhat.com/browse/OCPBUGS-20629): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#52](https://github.com/openshift/csi-livenessprobe/pull/52) * [OCPBUGS-13821](https://issues.redhat.com/browse/OCPBUGS-13821): Bump gRPC from 1.38.0 to 1.49.0 [#43](https://github.com/openshift/csi-livenessprobe/pull/43) * Updating csi-livenessprobe images to be consistent with ART [#35](https://github.com/openshift/csi-livenessprobe/pull/35) * UPSTREAM: <carry>: Remove .github files [#34](https://github.com/openshift/csi-livenessprobe/pull/34) * Updating csi-livenessprobe images to be consistent with ART [#33](https://github.com/openshift/csi-livenessprobe/pull/33) * [Full changelog](https://github.com/openshift/csi-livenessprobe/compare/d8ed786f0e3ee68f51c82701e0f1918614fc6c41...e6545e71597df1da4635c266eb8f499fc376d970) ### [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar/tree/c316b8963a0b0ff8d45f2b32c56de972d55bfd37) * [OCPBUGS-20674](https://issues.redhat.com/browse/OCPBUGS-20674): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#54](https://github.com/openshift/csi-node-driver-registrar/pull/54) * Updating csi-node-driver-registrar images to be consistent with ART [#39](https://github.com/openshift/csi-node-driver-registrar/pull/39) * UPSTREAM: <carry>: Remove .github files [#38](https://github.com/openshift/csi-node-driver-registrar/pull/38) * Updating csi-node-driver-registrar images to be consistent with ART [#37](https://github.com/openshift/csi-node-driver-registrar/pull/37) * [Full changelog](https://github.com/openshift/csi-node-driver-registrar/compare/d5100c1d61be6cdc84a55730a0d86ed6f177c85e...c316b8963a0b0ff8d45f2b32c56de972d55bfd37) ### [docker-builder](https://github.com/openshift/builder/tree/3f240815de70301cbce65bf6b2f85e67eaa3573c) * Replace 'coreydaley' with 'sayan-biswas' [#408](https://github.com/openshift/builder/pull/408) * [BUILD-854](https://issues.redhat.com/browse/BUILD-854): Add adambkaplan as approver [#406](https://github.com/openshift/builder/pull/406) * [OCPBUGS-23037](https://issues.redhat.com/browse/OCPBUGS-23037): Add -p flag to cp command to preserve timestamps [#372](https://github.com/openshift/builder/pull/372) * [OCPBUGS-20695](https://issues.redhat.com/browse/OCPBUGS-20695): [release-4.12]Bump golang.org/x/net [#364](https://github.com/openshift/builder/pull/364) * [OCPBUGS-17228](https://issues.redhat.com/browse/OCPBUGS-17228): bump github.com/containers/buildah to v1.26.6 [#325](https://github.com/openshift/builder/pull/325) * [OCPBUGS-15643](https://issues.redhat.com/browse/OCPBUGS-15643): Add the git-lfs package [#353](https://github.com/openshift/builder/pull/353) * [OCPBUGS-6753](https://issues.redhat.com/browse/OCPBUGS-6753): manage-dockerfile: use the original form of HEALTHCHECK [#324](https://github.com/openshift/builder/pull/324) * Updating openshift-enterprise-builder images to be consistent with ART [#315](https://github.com/openshift/builder/pull/315) * [OCPBUGS-4779](https://issues.redhat.com/browse/OCPBUGS-4779): [release-4.12] Update to go1.19 [#321](https://github.com/openshift/builder/pull/321) * [BUILD-530](https://issues.redhat.com/browse/BUILD-530): Rebase to k8s.io 1.25 [#316](https://github.com/openshift/builder/pull/316) * bump(github.com/containers/buildah) to v1.26.4 [#306](https://github.com/openshift/builder/pull/306) * bump github.com/containers/buildah to v1.26.2 [#304](https://github.com/openshift/builder/pull/304) * Attempt to create /dev/fuse at startup [#305](https://github.com/openshift/builder/pull/305) * [Bug 2099991](https://bugzilla.redhat.com/show_bug.cgi?id=2099991): Add support for BUILDAH_QUIET environment variable [#303](https://github.com/openshift/builder/pull/303) * Set _CONTAINERS_USERNS_CONFIGURED if we create a user namespace [#301](https://github.com/openshift/builder/pull/301) * Updating openshift-enterprise-builder images to be consistent with ART [#302](https://github.com/openshift/builder/pull/302) * [Full changelog](https://github.com/openshift/builder/compare/f3147a0c11eb471ee57a0bd4f56ddf06521726e1...3f240815de70301cbce65bf6b2f85e67eaa3573c) ### [docker-registry](https://github.com/openshift/image-registry/tree/9e75355ca282cf5abac5595585a4b089e6a95e6f) * [OCPBUGS-19306](https://issues.redhat.com/browse/OCPBUGS-19306): bump docker-distribution [#382](https://github.com/openshift/image-registry/pull/382) * [OCPBUGS-10496](https://issues.redhat.com/browse/OCPBUGS-10496): bump docker-distribution [#365](https://github.com/openshift/image-registry/pull/365) * [OCPBUGS-8491](https://issues.redhat.com/browse/OCPBUGS-8491): bump aws-sdk-go [#362](https://github.com/openshift/image-registry/pull/362) * [OCPBUGS-4678](https://issues.redhat.com/browse/OCPBUGS-4678): Bump aws-sdk-go to v1.44.145 [#357](https://github.com/openshift/image-registry/pull/357) * [IR-299](https://issues.redhat.com/browse/IR-299): bump go to 1.19 and k8s to 1.25.2 [#351](https://github.com/openshift/image-registry/pull/351) * [OCPBUGS-1717](https://issues.redhat.com/browse/OCPBUGS-1717): bump aws-go-sdk, adding support for me-central-1 [#348](https://github.com/openshift/image-registry/pull/348) * [OCPBUGS-102](https://issues.redhat.com/browse/OCPBUGS-102): Keep OCI image configs when hard prune [#341](https://github.com/openshift/image-registry/pull/341) * Fix security context for test pods [#342](https://github.com/openshift/image-registry/pull/342) * Updating openshift-enterprise-registry images to be consistent with ART [#339](https://github.com/openshift/image-registry/pull/339) * [Full changelog](https://github.com/openshift/image-registry/compare/431737b34e0ee40bab77b6d6f0e67e2c57fa7e08...9e75355ca282cf5abac5595585a4b089e6a95e6f) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/6e5c04c066a428047d1755478cf88b290d32ad8f) * [OCPBUGS-1](https://issues.redhat.com/browse/OCPBUGS-1): Jira integration test PR 3 [#92](https://github.com/openshift/driver-toolkit/pull/92) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/28589b0a149df1fa10b2759fff13b1885d0dfa14...6e5c04c066a428047d1755478cf88b290d32ad8f) ### [egress-router-cni](https://github.com/openshift/egress-router-cni/tree/a92e415791b531ca15ec84953550b71bd3534566) * Updating egress-router-cni images to be consistent with ART [#64](https://github.com/openshift/egress-router-cni/pull/64) * Updating egress-router-cni images to be consistent with ART [#63](https://github.com/openshift/egress-router-cni/pull/63) * [Full changelog](https://github.com/openshift/egress-router-cni/compare/fccaf1d9818617b8e6349d49cf9d7bbd7443c1e1...a92e415791b531ca15ec84953550b71bd3534566) ### [etcd](https://github.com/openshift/etcd/tree/bb82e891abeaddd57e1a07775874d71f2ddd9e85) * [OCPBUGS-28736](https://issues.redhat.com/browse/OCPBUGS-28736): Rebase etcd 3.5.12 openshift 4.12 [#246](https://github.com/openshift/etcd/pull/246) * [OCPBUGS-27102](https://issues.redhat.com/browse/OCPBUGS-27102): Rebase etcd 3.5.11 openshift 4.12 [#240](https://github.com/openshift/etcd/pull/240) * [OCPBUGS-21187](https://issues.redhat.com/browse/OCPBUGS-21187): [4.12] Carrying fixes for CVE-2023-44487 [#228](https://github.com/openshift/etcd/pull/228) * [OCPBUGS-15860](https://issues.redhat.com/browse/OCPBUGS-15860): [4.12] Rebase openshift/etcd to 3.5.9 [#207](https://github.com/openshift/etcd/pull/207) * Update owners [#185](https://github.com/openshift/etcd/pull/185) * Updating ose-etcd images to be consistent with ART [#153](https://github.com/openshift/etcd/pull/153) * [OCPBUGS-5761](https://issues.redhat.com/browse/OCPBUGS-5761): UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… [#176](https://github.com/openshift/etcd/pull/176) * [OCPBUGS-3100](https://issues.redhat.com/browse/OCPBUGS-3100): Rebase openshift/etcd 4.12 onto v3.5.6 [#169](https://github.com/openshift/etcd/pull/169) * UPSTREAM: <carry>: rebase script [#159](https://github.com/openshift/etcd/pull/159) * [OCPBUGS-861](https://issues.redhat.com/browse/OCPBUGS-861): Rebase openshift/etcd 4.12 onto v3.5.5 [#144](https://github.com/openshift/etcd/pull/144) * Updating ose-etcd images to be consistent with ART [#134](https://github.com/openshift/etcd/pull/134) * [Full changelog](https://github.com/openshift/etcd/compare/e73305f67d109e401acfb86f099065e3a5797c5c...bb82e891abeaddd57e1a07775874d71f2ddd9e85) ### [gcp-cloud-controller-manager](https://github.com/openshift/cloud-provider-gcp/tree/8a84952ec7ff1aa001f885b10ec583540f298c73) * [OCPBUGS-21282](https://issues.redhat.com/browse/OCPBUGS-21282): Bump golang.org/x/net to v0.18.0 [#44](https://github.com/openshift/cloud-provider-gcp/pull/44) * Updating ose-gcp-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-gcp/pull/22) * [OCPBUGS-2076](https://issues.redhat.com/browse/OCPBUGS-2076): Replace k8s.io/cloud-provider with openshift's version [#23](https://github.com/openshift/cloud-provider-gcp/pull/23) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 29.09.2022 k8s 1.25 [#21](https://github.com/openshift/cloud-provider-gcp/pull/21) * Updating ose-gcp-cloud-controller-manager images to be consistent with ART [#19](https://github.com/openshift/cloud-provider-gcp/pull/19) * [Full changelog](https://github.com/openshift/cloud-provider-gcp/compare/51f5a82f90d254e769d3cb18e761aff903777e18...8a84952ec7ff1aa001f885b10ec583540f298c73) ### [gcp-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-gcp/tree/e00019faa4bd74f70826344a8cc085ba13768422) * [OCPBUGS-21380](https://issues.redhat.com/browse/OCPBUGS-21380): Bump golang.org/x/net to v0.17.0 [#205](https://github.com/openshift/cluster-api-provider-gcp/pull/205) * Updating ose-gcp-cluster-api-controllers images to be consistent with ART [#186](https://github.com/openshift/cluster-api-provider-gcp/pull/186) * Merge https://github.com/kubernetes-sigs/cluster-api-provider-gcp:main into master [#185](https://github.com/openshift/cluster-api-provider-gcp/pull/185) * Updating ose-gcp-cluster-api-controllers images to be consistent with ART [#184](https://github.com/openshift/cluster-api-provider-gcp/pull/184) * [Full changelog](https://github.com/openshift/cluster-api-provider-gcp/compare/09063c1edef1f7f50fa3a3d12639f2471372622e...e00019faa4bd74f70826344a8cc085ba13768422) ### [gcp-machine-controllers](https://github.com/openshift/machine-api-provider-gcp/tree/d6d8c1cc5b58ff7cf311bcb72dbeb00eb704511a) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce metrics cardinality. [#76](https://github.com/openshift/machine-api-provider-gcp/pull/76) * [OCPBUGS-20833](https://issues.redhat.com/browse/OCPBUGS-20833): Bump x/net package to v0.18.0 [#69](https://github.com/openshift/machine-api-provider-gcp/pull/69) * [OCPBUGS-14120](https://issues.redhat.com/browse/OCPBUGS-14120): Register control plane machines to instance group [#52](https://github.com/openshift/machine-api-provider-gcp/pull/52) * [OCPBUGS-4504](https://issues.redhat.com/browse/OCPBUGS-4504): refactor restartPolicyToBool function [#28](https://github.com/openshift/machine-api-provider-gcp/pull/28) * [OCPBUGS-4499](https://issues.redhat.com/browse/OCPBUGS-4499): Set sync period for Machine controller [#25](https://github.com/openshift/machine-api-provider-gcp/pull/25) * Updating ose-machine-api-provider-gcp images to be consistent with ART [#19](https://github.com/openshift/machine-api-provider-gcp/pull/19) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#17](https://github.com/openshift/machine-api-provider-gcp/pull/17) * update windows script handling [#16](https://github.com/openshift/machine-api-provider-gcp/pull/16) * Update windows detection [#15](https://github.com/openshift/machine-api-provider-gcp/pull/15) * Add windows machine support [#14](https://github.com/openshift/machine-api-provider-gcp/pull/14) * Updating ose-machine-api-provider-gcp images to be consistent with ART [#13](https://github.com/openshift/machine-api-provider-gcp/pull/13) * [Full changelog](https://github.com/openshift/machine-api-provider-gcp/compare/e7ff9c41c80344d8c9dcf56b17afac5fa2506826...d6d8c1cc5b58ff7cf311bcb72dbeb00eb704511a) ### [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver/tree/5dcfd6755ea1eff7dcf1c0c831b048eda1b41736) * [OCPBUGS-20718](https://issues.redhat.com/browse/OCPBUGS-20718): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#47](https://github.com/openshift/gcp-pd-csi-driver/pull/47) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#29](https://github.com/openshift/gcp-pd-csi-driver/pull/29) * UPSTREAM: <carry>: Remove .github files [#28](https://github.com/openshift/gcp-pd-csi-driver/pull/28) * [STOR-862](https://issues.redhat.com/browse/STOR-862): Rebase to v1.7.3 for OCP 4.12 [#27](https://github.com/openshift/gcp-pd-csi-driver/pull/27) * Updating ose-gcp-pd-csi-driver images to be consistent with ART [#26](https://github.com/openshift/gcp-pd-csi-driver/pull/26) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver/compare/86fbfaebf646bf4ef2cab54e70c770d8b29db0dc...5dcfd6755ea1eff7dcf1c0c831b048eda1b41736) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/30e97ba511547edb057071b63498e1ca4c68ec16) * [OCPBUGS-20807](https://issues.redhat.com/browse/OCPBUGS-20807): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#89](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/89) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#82](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/82) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#55](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/55) * Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART [#53](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/53) * Remove unused bindata from the operator [#54](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/54) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#52](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/52) * [STOR-752](https://issues.redhat.com/browse/STOR-752): Change the default StorageClass to the CSI one (GCE) [#51](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/51) * Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART [#50](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/50) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/89605b14ce5e8e6c55f7eeee339c6a45186e7079...30e97ba511547edb057071b63498e1ca4c68ec16) ### [haproxy-router](https://github.com/openshift/router/tree/6a092687d2ed1b709403e3bdebc2f069c0ce4a01) * [OCPBUGS-43703](https://issues.redhat.com/browse/OCPBUGS-43703): add duplicate_te_header_total metric [#632](https://github.com/openshift/router/pull/632) * [OCPBUGS-35875](https://issues.redhat.com/browse/OCPBUGS-35875): Properly handle rewrite-target annotation [#610](https://github.com/openshift/router/pull/610) * [OCPBUGS-33432](https://issues.redhat.com/browse/OCPBUGS-33432): Route 'haproxy.router.openshift.io/timeout' value is not validated [#593](https://github.com/openshift/router/pull/593) * [OCPBUGS-34212](https://issues.redhat.com/browse/OCPBUGS-34212): Reject routes with MD5 certs [#601](https://github.com/openshift/router/pull/601) * [OCPBUGS-33517](https://issues.redhat.com/browse/OCPBUGS-33517): Count active services before setting weight to 1 [#581](https://github.com/openshift/router/pull/581) * [OCPBUGS-21098](https://issues.redhat.com/browse/OCPBUGS-21098): Bump golang.org/x/net to v0.17.0 to address CVE-2023-39325 [#532](https://github.com/openshift/router/pull/532) * [OCPBUGS-17766](https://issues.redhat.com/browse/OCPBUGS-17766): haproxy/template: mitigate CVE-2023-40225 [#507](https://github.com/openshift/router/pull/507) * [OCPBUGS-18639](https://issues.redhat.com/browse/OCPBUGS-18639): properly handle weight=0 [#511](https://github.com/openshift/router/pull/511) * [OCPBUGS-14454](https://issues.redhat.com/browse/OCPBUGS-14454), [OCPBUGS-14455](https://issues.redhat.com/browse/OCPBUGS-14455): Handle mTLS CRLs, and fix accidental CRL duplication [#491](https://github.com/openshift/router/pull/491) * Updating ose-haproxy-router-base images to be consistent with ART [#424](https://github.com/openshift/router/pull/424) * [Bug 2107462](https://bugzilla.redhat.com/show_bug.cgi?id=2107462): Update CGO_ENABLED=1 [#423](https://github.com/openshift/router/pull/423) * [NE-1071](https://issues.redhat.com/browse/NE-1071): Default HAProxy maxconn value to 50000 for OCP 4.12 [#417](https://github.com/openshift/router/pull/417) * [OCPBUGS-1730](https://issues.redhat.com/browse/OCPBUGS-1730): Bump vendored K8S libraries to 1.25.2 [#421](https://github.com/openshift/router/pull/421) * Updating openshift-enterprise-haproxy-router images to be consistent with ART [#411](https://github.com/openshift/router/pull/411) * Updating ose-haproxy-router-base images to be consistent with ART [#410](https://github.com/openshift/router/pull/410) * [Full changelog](https://github.com/openshift/router/compare/60fb6ea5d782172ea2dc3eadf74b90b5e9022cc8...6a092687d2ed1b709403e3bdebc2f069c0ce4a01) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/1eb868227a9b8ed70f88be1681321405094d7adf) * [OCPBUGS-37282](https://issues.redhat.com/browse/OCPBUGS-37282): UPSTREAM: 126104: Add funcs in pkg/filesystem/util that can actually … [#2046](https://github.com/openshift/kubernetes/pull/2046) * [OCPBUGS-30454](https://issues.redhat.com/browse/OCPBUGS-30454): CVE 2024-24786 [#1974](https://github.com/openshift/kubernetes/pull/1974) * UPSTREAM: <drop>: Bump golang.org/x/net to v0.23.0 [#1940](https://github.com/openshift/kubernetes/pull/1940) * Address CVE [#13](https://github.com/openshift/kubernetes/pull/13) * [OCPBUGS-15527](https://issues.redhat.com/browse/OCPBUGS-15527): Prevent partially filled HPA behaviors from crashing kube-controller-manager [#1887](https://github.com/openshift/kubernetes/pull/1887) * [OCPBUGS-25815](https://issues.redhat.com/browse/OCPBUGS-25815): Fix device uncertain errors on reboot 4.12 [#1833](https://github.com/openshift/kubernetes/pull/1833) * [OCPBUGS-25214](https://issues.redhat.com/browse/OCPBUGS-25214): legacy-cloud-providers: prevent index out-of-range in getNextUnitNumber [#1835](https://github.com/openshift/kubernetes/pull/1835) * [OCPBUGS-23568](https://issues.redhat.com/browse/OCPBUGS-23568): Update to kubernetes 1.25.16 [#1807](https://github.com/openshift/kubernetes/pull/1807) * [OCPBUGS-23288](https://issues.redhat.com/browse/OCPBUGS-23288): UPSTREAM: 121881: Use golang library instead of mklink [#1803](https://github.com/openshift/kubernetes/pull/1803) * [OCPBUGS-20113](https://issues.redhat.com/browse/OCPBUGS-20113): UPSTREAM: <carry>: Do not allow nodes to set forbidden openshift labels [#1747](https://github.com/openshift/kubernetes/pull/1747) * openshift-hack: Fix sporadic 141 errors in build-rpms [#1774](https://github.com/openshift/kubernetes/pull/1774) * [OCPBUGS-21435](https://issues.redhat.com/browse/OCPBUGS-21435): [release-4.12] UPSTREAM: 121125: [1.25][CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 [#1760](https://github.com/openshift/kubernetes/pull/1760) * [OCPBUGS-18288](https://issues.redhat.com/browse/OCPBUGS-18288), [OCPBUGS-19483](https://issues.redhat.com/browse/OCPBUGS-19483): Update to kubernetes 1.25.14 [#1719](https://github.com/openshift/kubernetes/pull/1719) * [OCPBUGS-18768](https://issues.redhat.com/browse/OCPBUGS-18768): UPSTREAM: <carry>: Force using host go always and use host libriaries [#1694](https://github.com/openshift/kubernetes/pull/1694) * [OCPBUGS-17188](https://issues.redhat.com/browse/OCPBUGS-17188): Update to Kubernetes 1.25.12 [#1669](https://github.com/openshift/kubernetes/pull/1669) * [OCPBUGS-17159](https://issues.redhat.com/browse/OCPBUGS-17159): Increase service idle max timeout to 100 minutes [#1662](https://github.com/openshift/kubernetes/pull/1662) * [OCPBUGS-8737](https://issues.redhat.com/browse/OCPBUGS-8737): UPSTREAM: <drop>: bump apiserver-library-go for scc fix [#1619](https://github.com/openshift/kubernetes/pull/1619) * [OCPBUGS-15309](https://issues.redhat.com/browse/OCPBUGS-15309): Bump to k8s 1.25.11 [#1615](https://github.com/openshift/kubernetes/pull/1615) * [OCPBUGS-14745](https://issues.redhat.com/browse/OCPBUGS-14745): [release-4.12] UPSTREAM: 118383: bump cadvisor for upstream patch 3301 [#1600](https://github.com/openshift/kubernetes/pull/1600) * [OCPBUGS-13173](https://issues.redhat.com/browse/OCPBUGS-13173): Bump to k8s 1.25.10 [#1582](https://github.com/openshift/kubernetes/pull/1582) * [OCPBUGS-7589](https://issues.redhat.com/browse/OCPBUGS-7589): UPSTREAM: <carry>: add default kubelet sysctls within rpm [#1478](https://github.com/openshift/kubernetes/pull/1478) * [OCPBUGS-11166](https://issues.redhat.com/browse/OCPBUGS-11166): UPSTREAM: <carry>: Force using the go tooling from the system [#1531](https://github.com/openshift/kubernetes/pull/1531) * [OCPBUGS-11166](https://issues.redhat.com/browse/OCPBUGS-11166): Bump to k8s 1.25.8 [#1527](https://github.com/openshift/kubernetes/pull/1527) * [OCPBUGS-8705](https://issues.redhat.com/browse/OCPBUGS-8705): Fix mounted volume expansion tests [#1503](https://github.com/openshift/kubernetes/pull/1503) * [OCPBUGS-7078](https://issues.redhat.com/browse/OCPBUGS-7078): Bump to k8s 1.25.7 [#1496](https://github.com/openshift/kubernetes/pull/1496) * [OCPBUGS-5769](https://issues.redhat.com/browse/OCPBUGS-5769): scc admission - seccomp profiles fix [#1471](https://github.com/openshift/kubernetes/pull/1471) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): remove in-tree volume limits test now that CSIMigration is GA [#1449](https://github.com/openshift/kubernetes/pull/1449) * [OCPBUGS-4808](https://issues.redhat.com/browse/OCPBUGS-4808): Apply shared defaulters to CRD-based routes. [#1441](https://github.com/openshift/kubernetes/pull/1441) * [OCPBUGS-4366](https://issues.redhat.com/browse/OCPBUGS-4366): Update to 1.25.4 [#1434](https://github.com/openshift/kubernetes/pull/1434) * [OCPBUGS-3878](https://issues.redhat.com/browse/OCPBUGS-3878): UPSTREAM: <drop>: Bump openshift/api. [#1425](https://github.com/openshift/kubernetes/pull/1425) * [OCPBUGS-3875](https://issues.redhat.com/browse/OCPBUGS-3875): UPSTREAM: <carry>: Add host assignment plugin for CRD-based routes. [#1427](https://github.com/openshift/kubernetes/pull/1427) * [OCPBUGS-3780](https://issues.redhat.com/browse/OCPBUGS-3780): UPSTREAM: <carry>: Add validation plugin for CRD-based route parity. [#1422](https://github.com/openshift/kubernetes/pull/1422) * [OCPBUGS-3503](https://issues.redhat.com/browse/OCPBUGS-3503): UPSTREAM: <drop>: Bump library-go. [#1423](https://github.com/openshift/kubernetes/pull/1423) * Bug OCPBUGS-2927: Disable expansion in SC, if driver does not support it [#1403](https://github.com/openshift/kubernetes/pull/1403) * [OCPBUGS-3503](https://issues.redhat.com/browse/OCPBUGS-3503): UPSTREAM: : Bump library-go. [#1414](https://github.com/openshift/kubernetes/pull/1414) * [OCPBUGS-3094](https://issues.redhat.com/browse/OCPBUGS-3094): Tag AWS security groups at creation [#1412](https://github.com/openshift/kubernetes/pull/1412) * [OCPBUGS-3071](https://issues.redhat.com/browse/OCPBUGS-3071): 4.12: revert: 1340: tag AWS security group at creation [#1405](https://github.com/openshift/kubernetes/pull/1405) * [OCPBUGS-3117](https://issues.redhat.com/browse/OCPBUGS-3117): UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines [#1407](https://github.com/openshift/kubernetes/pull/1407) * [OCPBUGS-2774](https://issues.redhat.com/browse/OCPBUGS-2774): UPSTREAM: 112807 Fix Load balancer services with xTP local [#1400](https://github.com/openshift/kubernetes/pull/1400) * UPSTREAM: 113208: Set default test timeouts first, only then modify the required ones [#1396](https://github.com/openshift/kubernetes/pull/1396) * UPSTREAM: <carry>: Bug 2098054: tag AWS security group at creation [#1340](https://github.com/openshift/kubernetes/pull/1340) * UPSTREAM: 113135: Wait for pod not running or gone in storage tests [#1394](https://github.com/openshift/kubernetes/pull/1394) * Bump to k8s 1.25.2 [#1380](https://github.com/openshift/kubernetes/pull/1380) * [Bug 2041317](https://bugzilla.redhat.com/show_bug.cgi?id=2041317): Fix replica calculation at start of HPA scaling policy period [#1391](https://github.com/openshift/kubernetes/pull/1391) * UPSTREAM: <carry>: allow annotating with a specific suite [#1388](https://github.com/openshift/kubernetes/pull/1388) * k8s 1.25.0 [#1360](https://github.com/openshift/kubernetes/pull/1360) * UPSTREAM: <carry>: Dockerfile: use centos:stream9 [#1366](https://github.com/openshift/kubernetes/pull/1366) * [OCPBUGS-718](https://issues.redhat.com/browse/OCPBUGS-718): UPSTREAM: 112267: aws: skip health rules if they are a subnet of the client rule [#1358](https://github.com/openshift/kubernetes/pull/1358) * UPSTREAM: <carry>: optionally enable retry after until apiserver is ready [#1346](https://github.com/openshift/kubernetes/pull/1346) * UPSTREAM: 110639: endpointslices: node missing on Pod scenario [#1359](https://github.com/openshift/kubernetes/pull/1359) * UPSTREAM: <carry>: Update kubensenter to use exec instead of subprocess [#1350](https://github.com/openshift/kubernetes/pull/1350) * UPSTREAM: 110039: Add readinessProbe to aggregated api service test [#1307](https://github.com/openshift/kubernetes/pull/1307) * [Bug 2118318](https://bugzilla.redhat.com/show_bug.cgi?id=2118318): UPSTREAM: 110939: don't quota events.k8s.io events by default [#1344](https://github.com/openshift/kubernetes/pull/1344) * UPSTREAM: 111789: Update Netpol e2e tests to use framework CreateName… [#1349](https://github.com/openshift/kubernetes/pull/1349) * UPSTREAM: <carry>: Skip session affinity timeout tests [#1339](https://github.com/openshift/kubernetes/pull/1339) * [Bug 2117569](https://bugzilla.redhat.com/show_bug.cgi?id=2117569): UPSTREAM: 110888: feat: fix a bug thaat not all event be ignored by gc controller [#1338](https://github.com/openshift/kubernetes/pull/1338) * Add kubensenter to the openshift RPM [#1327](https://github.com/openshift/kubernetes/pull/1327) * UPSTREAM: 111306: Make scheduling e2e tests run PSa-restricted pods [#1333](https://github.com/openshift/kubernetes/pull/1333) * trt-393: add plugin name to caches not synchronized error [#1330](https://github.com/openshift/kubernetes/pull/1330) * [Bug 2102383](https://bugzilla.redhat.com/show_bug.cgi?id=2102383): UPSTREAM: 89885: Fix panic in openstack.InstanceExistsByProviderID() [#1315](https://github.com/openshift/kubernetes/pull/1315) * [Bug 2088606](https://bugzilla.redhat.com/show_bug.cgi?id=2088606): Overly loose admission check when configuring UpstreamResolvers or ForwardPlugin [#1247](https://github.com/openshift/kubernetes/pull/1247) * [Bug 2081194](https://bugzilla.redhat.com/show_bug.cgi?id=2081194): UPSTREAM: <carry>: update list of deprecated apis [#1091](https://github.com/openshift/kubernetes/pull/1091) * [Bug 2082773](https://bugzilla.redhat.com/show_bug.cgi?id=2082773): Fix resizing of ephemeral volumes [#1296](https://github.com/openshift/kubernetes/pull/1296) * UPSTREAM: <carry>: Remove reserved CPUs from default set [#1295](https://github.com/openshift/kubernetes/pull/1295) * [Bug 2094012](https://bugzilla.redhat.com/show_bug.cgi?id=2094012): UPSTREAM: 110652: fix: --chunk-size with selector returns missing result [#1303](https://github.com/openshift/kubernetes/pull/1303) * [Full changelog](https://github.com/openshift/kubernetes/compare/2e1e13716c780e450a311e9a73bb90cf183f1e40...1eb868227a9b8ed70f88be1681321405094d7adf) ### [hypershift](https://github.com/openshift/hypershift/tree/da93f69c5c56fe938e65115dd08428604ed42bed) * [OCPBUGS-41516](https://issues.redhat.com/browse/OCPBUGS-41516): set Konnectivity cipher suites [#4283](https://github.com/openshift/hypershift/pull/4283) * [MULTIARCH-3709](https://issues.redhat.com/browse/MULTIARCH-3709): PowerVS - Add reuse resource flags to e2e test [#2994](https://github.com/openshift/hypershift/pull/2994) * [MULTIARCH-3732](https://issues.redhat.com/browse/MULTIARCH-3732): PowerVS - Fix cluster deletion when existing resources passed [#2993](https://github.com/openshift/hypershift/pull/2993) * [MULTIARCH-3733](https://issues.redhat.com/browse/MULTIARCH-3733): Add dev flags in destroy cluster powervs command [#2998](https://github.com/openshift/hypershift/pull/2998) * Updated secret permissions for openshift-route-controller-manager [#2924](https://github.com/openshift/hypershift/pull/2924) * fix(hcco): Add HCP label to HCCO by default [#2972](https://github.com/openshift/hypershift/pull/2972) * fix(ignition): Add HCP label to ignition-server by default [#2949](https://github.com/openshift/hypershift/pull/2949) * [OCPBUGS-16847](https://issues.redhat.com/browse/OCPBUGS-16847): use ignition-proxy Service to populate ignitionEndpoint with strategy NodePort [#2855](https://github.com/openshift/hypershift/pull/2855) * [release 4.12] OCPBUGS-11555: OAuth OpenShift deployment requires ConfigMap mount patch2 [#2803](https://github.com/openshift/hypershift/pull/2803) * [OCPBUGS-16411](https://issues.redhat.com/browse/OCPBUGS-16411): fix deletion bug when hostedzone is already deleted [#2835](https://github.com/openshift/hypershift/pull/2835) * Kas policy 4.12 [#2826](https://github.com/openshift/hypershift/pull/2826) * Leader election config update. [#2800](https://github.com/openshift/hypershift/pull/2800) * [OCPBUGS-15614](https://issues.redhat.com/browse/OCPBUGS-15614): Check OwningIngressController also in Labels [#2759](https://github.com/openshift/hypershift/pull/2759) * [OCPBUGS-16086](https://issues.redhat.com/browse/OCPBUGS-16086): autoscaling balance similar groups [#2806](https://github.com/openshift/hypershift/pull/2806) * [HOSTEDCP-1060](https://issues.redhat.com/browse/HOSTEDCP-1060): refactor ignition-server reconcilation and add ignition-server proxy [#2749](https://github.com/openshift/hypershift/pull/2749) * [OCPBUGS-14873](https://issues.redhat.com/browse/OCPBUGS-14873): Update vendored openshift API for 4.12 [#2734](https://github.com/openshift/hypershift/pull/2734) * [HOSTEDCP-1073](https://issues.redhat.com/browse/HOSTEDCP-1073): enforce blocked rollout of HCP [#2745](https://github.com/openshift/hypershift/pull/2745) * properly handle user CA bundle not existing [#2711](https://github.com/openshift/hypershift/pull/2711) * [OCPBUGS-15304](https://issues.redhat.com/browse/OCPBUGS-15304): [release-4.12] fix(oauth): Do not proxy IBM Cloud IAM endpoints [#2695](https://github.com/openshift/hypershift/pull/2695) * [OCPBUGS-14873](https://issues.redhat.com/browse/OCPBUGS-14873): Honor global ingress configuration LoadBalancer type on AWS [#2678](https://github.com/openshift/hypershift/pull/2678) * [OCPBUGS-14803](https://issues.redhat.com/browse/OCPBUGS-14803): Set `DisableStrictZoneCheck = true` in the AWS Cloud Provider config [#2667](https://github.com/openshift/hypershift/pull/2667) * [release 4.12] OCPBUGS-11555: OAuth OpenShift deployment requires ConfigMap mount [#2512](https://github.com/openshift/hypershift/pull/2512) * [OCPBUGS-14156](https://issues.redhat.com/browse/OCPBUGS-14156): Reconcile oauthDeployment annotations even if kubeadmin secret is not found [#2614](https://github.com/openshift/hypershift/pull/2614) * [OCPBUGS-14031](https://issues.redhat.com/browse/OCPBUGS-14031): Include default ingress CA in root CA bundle [#2600](https://github.com/openshift/hypershift/pull/2600) * [OCPBUGS-13626](https://issues.redhat.com/browse/OCPBUGS-13626): Sync proxy TrustedCA to guest cluster [#2557](https://github.com/openshift/hypershift/pull/2557) * [OCPBUGS-13639](https://issues.redhat.com/browse/OCPBUGS-13639): Cherry pick aws endpoint sg [#2579](https://github.com/openshift/hypershift/pull/2579) * [OCPBUGS-12787](https://issues.redhat.com/browse/OCPBUGS-12787): fix(hcco): Get OLM CatalogSource images from defined map [#2485](https://github.com/openshift/hypershift/pull/2485) * ACM-5173 [backport 4.12] get pull secret instead of dockerconfigjson from mce credentials [#2486](https://github.com/openshift/hypershift/pull/2486) * Configurable SRE MetricsSet [#2545](https://github.com/openshift/hypershift/pull/2545) * [OCPBUGS-13077](https://issues.redhat.com/browse/OCPBUGS-13077): Ensure ingress controllers are removed before load balancers [#2515](https://github.com/openshift/hypershift/pull/2515) * [OCPBUGS-11544](https://issues.redhat.com/browse/OCPBUGS-11544): Pass runAsUser to CNO so it can run its managed services with proper security context [#2391](https://github.com/openshift/hypershift/pull/2391) * [OCPBUGS-12845](https://issues.redhat.com/browse/OCPBUGS-12845): Delete kubeadmin secret when an idp is defined [#2492](https://github.com/openshift/hypershift/pull/2492) * [OCPBUGS-12738](https://issues.redhat.com/browse/OCPBUGS-12738): Pass OPENSHIFT_RELEASE_IMAGE env variable to CNO [#2473](https://github.com/openshift/hypershift/pull/2473) * [OCPBUGS-12199](https://issues.redhat.com/browse/OCPBUGS-12199): remove ACL for aws bucket [#2458](https://github.com/openshift/hypershift/pull/2458) * [OCPBUGS-11607](https://issues.redhat.com/browse/OCPBUGS-11607): properly reconcile with user specified changes for in proxy configuration [#2395](https://github.com/openshift/hypershift/pull/2395) * [OCPBUGS-11726](https://issues.redhat.com/browse/OCPBUGS-11726): Update HostedCluster oauthCallbackURLTemplate [#2410](https://github.com/openshift/hypershift/pull/2410) * e2e: Cleanup shared OIDC provider on SIGTERM [#2449](https://github.com/openshift/hypershift/pull/2449) * [HOSTEDCP-568](https://issues.redhat.com/browse/HOSTEDCP-568): Update Konnectiviy socks5 proxy for IBM exception [#2406](https://github.com/openshift/hypershift/pull/2406) * [OCPBUGS-10584](https://issues.redhat.com/browse/OCPBUGS-10584): Switch NTO metrics auth to certs generated by HCP controller [#2293](https://github.com/openshift/hypershift/pull/2293) * [OCPBUGS-11014](https://issues.redhat.com/browse/OCPBUGS-11014): Do not proxy when guest cluster resolution fails [#2340](https://github.com/openshift/hypershift/pull/2340) * [OCPBUGS-11654](https://issues.redhat.com/browse/OCPBUGS-11654): [release-4.12] Create new EC2 client for AWS identity provider health check [#2403](https://github.com/openshift/hypershift/pull/2403) * [OCPBUGS-10646](https://issues.redhat.com/browse/OCPBUGS-10646): Add storage operators perms. to watch HostedControlPlane [#2306](https://github.com/openshift/hypershift/pull/2306) * [HOSTEDCP-939](https://issues.redhat.com/browse/HOSTEDCP-939): [release-4.12] Setup shared OIDC provider for e2e clusters [#2365](https://github.com/openshift/hypershift/pull/2365) * [HOSTEDCP-806](https://issues.redhat.com/browse/HOSTEDCP-806): Fix ValidAWSKMSConfig condition [#2362](https://github.com/openshift/hypershift/pull/2362) * [OCPBUGS-11056](https://issues.redhat.com/browse/OCPBUGS-11056): fix external APIServer address selection based on endpointAccess [#2350](https://github.com/openshift/hypershift/pull/2350) * OCPBUGS-10823 ensure well known public domains do not get proxied on image imports [#2351](https://github.com/openshift/hypershift/pull/2351) * [SDA-8707](https://issues.redhat.com/browse/SDA-8707): No more specifying the scrape interval at servicemonitors & podmonitors level [#2356](https://github.com/openshift/hypershift/pull/2356) * [HOSTEDCP-900](https://issues.redhat.com/browse/HOSTEDCP-900): Modified AWSPrivateLinkController and AWSEndpointServiceController to respect PausedUntil spec field [#2285](https://github.com/openshift/hypershift/pull/2285) * [OCPBUGS-10504](https://issues.redhat.com/browse/OCPBUGS-10504): Deletion of the VPCEnpoint on conflicting service names [#2310](https://github.com/openshift/hypershift/pull/2310) * [HOSTEDCP-806](https://issues.redhat.com/browse/HOSTEDCP-806): [release-4.12] Validate etcd KMS config [#2273](https://github.com/openshift/hypershift/pull/2273) * [HOSTEDCP-801](https://issues.redhat.com/browse/HOSTEDCP-801): [release-4.12] Expose external DNS for private cluster endpoints [#2314](https://github.com/openshift/hypershift/pull/2314) * [HOSTEDCP-839](https://issues.redhat.com/browse/HOSTEDCP-839): Audit log sidecars for openshift-apiserver and openshift-oauth-apiserver [#2297](https://github.com/openshift/hypershift/pull/2297) * [OCPBUGS-10587](https://issues.redhat.com/browse/OCPBUGS-10587): Use appropriate serving certificate for OAuth [#2295](https://github.com/openshift/hypershift/pull/2295) * [OSD-15099](https://issues.redhat.com/browse/OSD-15099): Delaying the creation of servicemonitor and podmonitor resources till the hostedcluster is Completed [#2274](https://github.com/openshift/hypershift/pull/2274) * Add PodMonitor for ingress-operator pods in HCP namespaces [#2275](https://github.com/openshift/hypershift/pull/2275) * [OCPBUGS-8334](https://issues.redhat.com/browse/OCPBUGS-8334): [release-4.12] Update the pull secret source for ignition payload [#2268](https://github.com/openshift/hypershift/pull/2268) * Force controleplane upgrade always [#2289](https://github.com/openshift/hypershift/pull/2289) * [OCPBUGS-8370](https://issues.redhat.com/browse/OCPBUGS-8370): Fix cleanup of volumes on cluster deletion [#2253](https://github.com/openshift/hypershift/pull/2253) * [OCPBUGS-8241](https://issues.redhat.com/browse/OCPBUGS-8241): Add external DNS health condition / release-4.12 [#2206](https://github.com/openshift/hypershift/pull/2206) * [HOSTEDCP-809](https://issues.redhat.com/browse/HOSTEDCP-809): Clone CA key/cert to TLS key/cert [#2263](https://github.com/openshift/hypershift/pull/2263) * Add configuration for automatic labeling and label commands [#2255](https://github.com/openshift/hypershift/pull/2255) * fix(cpo): Delete multus validatingwebhookconfiguration on CNO init [#2251](https://github.com/openshift/hypershift/pull/2251) * feat(HCCO): Block DNS operator delete until Cluster Version updated [#2242](https://github.com/openshift/hypershift/pull/2242) * kms addition for pod identity workflow [#2247](https://github.com/openshift/hypershift/pull/2247) * Add e2e test for hosted cluster behind a proxy [#2199](https://github.com/openshift/hypershift/pull/2199) * Add e2e test for cluster creation with AWS KMS [#2201](https://github.com/openshift/hypershift/pull/2201) * [HOSTEDCP-826](https://issues.redhat.com/browse/HOSTEDCP-826): Customize DNS base domain prefix [#2235](https://github.com/openshift/hypershift/pull/2235) * feat: Add pod gone check to prober + DNS operator leader elect [#2209](https://github.com/openshift/hypershift/pull/2209) * fix(ibmcloud): Explicitly set HCCO controllers [#2208](https://github.com/openshift/hypershift/pull/2208) * ensure reconcilation of apiserver port is in 4.12 [#2195](https://github.com/openshift/hypershift/pull/2195) * Cleanup default security group only if authorized [#2212](https://github.com/openshift/hypershift/pull/2212) * fix(cpo): Set restart annotation on multus-admission-controller [#2190](https://github.com/openshift/hypershift/pull/2190) * fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac [#2189](https://github.com/openshift/hypershift/pull/2189) * fix(cpo): Reduce CNO access if Calico used as network provider [#2184](https://github.com/openshift/hypershift/pull/2184) * Skip destroyAWSDefaultSecurityGroup if not AWS [#2168](https://github.com/openshift/hypershift/pull/2168) * Create default security group for AWS clusters [#2162](https://github.com/openshift/hypershift/pull/2162) * [AUTH-323](https://issues.redhat.com/browse/AUTH-323): pki: split out konnectivity certs from the rootCA [#2156](https://github.com/openshift/hypershift/pull/2156) * fix(ibmcloud): Initialize image registry config on creates and bad config [#2104](https://github.com/openshift/hypershift/pull/2104) * fix(cpo): Allow KAS profiling disablement [#2122](https://github.com/openshift/hypershift/pull/2122) * reduce ignition server scope [#2140](https://github.com/openshift/hypershift/pull/2140) * OpenID add support for groups claim in the config [#2129](https://github.com/openshift/hypershift/pull/2129) * fix(cpo): Restart registry operator on annotation [#2121](https://github.com/openshift/hypershift/pull/2121) * Fix CAPA crd generation [#2120](https://github.com/openshift/hypershift/pull/2120) * Set k8s.io/kubernetes dependency to v0.23.3 [#2118](https://github.com/openshift/hypershift/pull/2118) * fix(cpo): Separate RBAC for NTO + CNO [#2112](https://github.com/openshift/hypershift/pull/2112) * Merge main up to db7c22ae into 'release-4.12' [#2101](https://github.com/openshift/hypershift/pull/2101) * Merge main into release-4.12 branch [#2053](https://github.com/openshift/hypershift/pull/2053) * Release 4.12 rebase latest [#2047](https://github.com/openshift/hypershift/pull/2047) * Fix OpenID OAuth config parsing [#2029](https://github.com/openshift/hypershift/pull/2029) * Fast foward release-4.12 to main [#2003](https://github.com/openshift/hypershift/pull/2003) * [OCPBUGS-5133](https://issues.redhat.com/browse/OCPBUGS-5133): Reinstate hosted cluster configuration propagation [#1981](https://github.com/openshift/hypershift/pull/1981) * Remove CAPA command from deployment [#1970](https://github.com/openshift/hypershift/pull/1970) * Fast forward release-4.12 to main [#1964](https://github.com/openshift/hypershift/pull/1964) * Remove CAPI manager container command path [#1969](https://github.com/openshift/hypershift/pull/1969) * v1beta1: add missing S3 publishing strategy type [#1968](https://github.com/openshift/hypershift/pull/1968) * Fast forward 'release-4.12' branch to 'main' [#1932](https://github.com/openshift/hypershift/pull/1932) * [SDN-3508](https://issues.redhat.com/browse/SDN-3508): Add proxy env variables to CNO deployment [#1845](https://github.com/openshift/hypershift/pull/1845) * [MCO-258](https://issues.redhat.com/browse/MCO-258): inplaceupgrader: handle multiple upgrade versions [#1810](https://github.com/openshift/hypershift/pull/1810) * PowerVS Refactor docs - bug fixes [#1825](https://github.com/openshift/hypershift/pull/1825) * Docs: add nodes for InPlace Upgrade NodePools [#1805](https://github.com/openshift/hypershift/pull/1805) * network: Use non default ovn-k V4InternalSubnet at tenant [#1783](https://github.com/openshift/hypershift/pull/1783) * Adds davidvossel as approver [#1833](https://github.com/openshift/hypershift/pull/1833) * NodePool API: rename spec.tunedConfig to spec.tuningConfig [#1802](https://github.com/openshift/hypershift/pull/1802) * reduce konnectivity-agent log verbosity [#1828](https://github.com/openshift/hypershift/pull/1828) * add HC available duration metric [#1829](https://github.com/openshift/hypershift/pull/1829) * aws: use gp3-csi storage class by default [#1830](https://github.com/openshift/hypershift/pull/1830) * add note for public zone creation doc [#1827](https://github.com/openshift/hypershift/pull/1827) * PowerVS: Bug fix on flags usage [#1812](https://github.com/openshift/hypershift/pull/1812) * Clean up AWS endpointAccess + servicePublishingStrategy logic [#1803](https://github.com/openshift/hypershift/pull/1803) * Ensure kubevirt-csi containers all have resource.Requests and PullPolicy set [#1816](https://github.com/openshift/hypershift/pull/1816) * Add custom types for enum fields in PowerVSNodePoolPlatform [#1809](https://github.com/openshift/hypershift/pull/1809) * Updated Agent provider docs [#1814](https://github.com/openshift/hypershift/pull/1814) * Add KubeVirt Platform Owners [#1817](https://github.com/openshift/hypershift/pull/1817) * Add comments to clarify aws endpoints controllers [#1808](https://github.com/openshift/hypershift/pull/1808) * Fixing some doc typos and issues [#1742](https://github.com/openshift/hypershift/pull/1742) * KubeVirt CSI Driver Integration [#1733](https://github.com/openshift/hypershift/pull/1733) * feat: Added "Scale dataplane to zero" workflow to the documentation [#1804](https://github.com/openshift/hypershift/pull/1804) * [STOR-1040](https://issues.redhat.com/browse/STOR-1040): Render AWS CSI Driver credentials in the mgmt cluster [#1751](https://github.com/openshift/hypershift/pull/1751) * bug: Fixes HOSTEDCP-528, OIDCConfigurationInvalidReason should be always present [#1743](https://github.com/openshift/hypershift/pull/1743) * Extracts correct mco image based on managed cluster's arch [#1716](https://github.com/openshift/hypershift/pull/1716) * Fix image registry reconcile loop [#1794](https://github.com/openshift/hypershift/pull/1794) * Add CAPI provider image override for PowerVS [#1800](https://github.com/openshift/hypershift/pull/1800) * bug: HOSTEDCP-587 explain more in detail Public and PublicAndPrivate endpoint-access [#1788](https://github.com/openshift/hypershift/pull/1788) * Enable NodePool controller to apply generated MachineConfigs [#1729](https://github.com/openshift/hypershift/pull/1729) * Allow certain EndpointAccess transitions [#1761](https://github.com/openshift/hypershift/pull/1761) * increase loop detector threshold to 10 [#1801](https://github.com/openshift/hypershift/pull/1801) * Remove KubeletConfig & ContainerRuntimeConfig CRDs [#1775](https://github.com/openshift/hypershift/pull/1775) * HCCO: inplace upgrade: do not reconcile bare upgrade pod [#1799](https://github.com/openshift/hypershift/pull/1799) * Fix recreate issue on serviceID - MULTIARCH-2895 [#1753](https://github.com/openshift/hypershift/pull/1753) * Add compute and memory args for powervs e2e [#1797](https://github.com/openshift/hypershift/pull/1797) * test: e2e: exclude catalog pods from restart check [#1798](https://github.com/openshift/hypershift/pull/1798) * Update Dockerfiles for consistency [#1795](https://github.com/openshift/hypershift/pull/1795) * Make NodePool platform condition types generic [#1792](https://github.com/openshift/hypershift/pull/1792) * Ensure existing DHCP server is in ACTIVE state [#1784](https://github.com/openshift/hypershift/pull/1784) * Update Dockerfile with same labels as Dockerfile.control-plane [#1791](https://github.com/openshift/hypershift/pull/1791) * Expose HC NodeSelector in the cli [#1759](https://github.com/openshift/hypershift/pull/1759) * Add recording rule for NTO metric needed in telemetry [#1763](https://github.com/openshift/hypershift/pull/1763) * Use separate image for route controller manager [#1790](https://github.com/openshift/hypershift/pull/1790) * How to Migrate a HostedClusters among the same AWS Region [#1780](https://github.com/openshift/hypershift/pull/1780) * Update index.md. [#1535](https://github.com/openshift/hypershift/pull/1535) * Decompress and decode config if supported by current CPO [#1758](https://github.com/openshift/hypershift/pull/1758) * update OLM catalogs to 4.11 [#1746](https://github.com/openshift/hypershift/pull/1746) * Add image overrides [#1785](https://github.com/openshift/hypershift/pull/1785) * Specify ca for gitlab oauth only when passed as input [#1772](https://github.com/openshift/hypershift/pull/1772) * [STOR-1053](https://issues.redhat.com/browse/STOR-1053): Add storage objects to guest cluster dump [#1770](https://github.com/openshift/hypershift/pull/1770) * Add cloud.ibm.com into konnectivity cloudAPI [#1741](https://github.com/openshift/hypershift/pull/1741) * Add fallback for mco flags [#1781](https://github.com/openshift/hypershift/pull/1781) * Pass imagerefs to mco [#1773](https://github.com/openshift/hypershift/pull/1773) * install: add flag to wait for HyperShift operator rollout [#1760](https://github.com/openshift/hypershift/pull/1760) * gzip and base64-encode ignition configs [#1671](https://github.com/openshift/hypershift/pull/1671) * Add separate deployment for openshift route controller manager [#1756](https://github.com/openshift/hypershift/pull/1756) * Add release image validation for NodePools [#1709](https://github.com/openshift/hypershift/pull/1709) * Fix cmd.Context() usage in PowerVS [#1754](https://github.com/openshift/hypershift/pull/1754) * Refactor how-to docs [#1740](https://github.com/openshift/hypershift/pull/1740) * Increase DHCP service polling interval [#1739](https://github.com/openshift/hypershift/pull/1739) * Add Kubevirt Cloud Controller Manager [#1725](https://github.com/openshift/hypershift/pull/1725) * Ensure generated junit.xml has a defined suite name [#1712](https://github.com/openshift/hypershift/pull/1712) * Add cluster name prefix before secrets [#1730](https://github.com/openshift/hypershift/pull/1730) * [SDN-3283](https://issues.redhat.com/browse/SDN-3283): CNO: Add an environment variable with socks5-proxy image [#1731](https://github.com/openshift/hypershift/pull/1731) * Revert "Make zone spread only apply within a given revision" [#1744](https://github.com/openshift/hypershift/pull/1744) * remove alvaroaleman and ironcladlou from OWNERS [#1745](https://github.com/openshift/hypershift/pull/1745) * Make zone spread only apply within a given revision [#1724](https://github.com/openshift/hypershift/pull/1724) * Route LDAP IDPs in the oauth server through guest VPC [#1680](https://github.com/openshift/hypershift/pull/1680) * Add missing rbac for authentication reader [#1734](https://github.com/openshift/hypershift/pull/1734) * Add nodepool create cmd for PowerVS [#1726](https://github.com/openshift/hypershift/pull/1726) * Add PowerVS OVN Kube routing config [#1718](https://github.com/openshift/hypershift/pull/1718) * Add granular access for PowerVS using cloud credential operator and add storage operator creds [#1612](https://github.com/openshift/hypershift/pull/1612) * Enable Node Tuning Operator in HyperShift [#1651](https://github.com/openshift/hypershift/pull/1651) * Refactor PowerVS changes [#1682](https://github.com/openshift/hypershift/pull/1682) * fix(oauth): Do not proxy IBM Cloud IAM endpoints [#1722](https://github.com/openshift/hypershift/pull/1722) * Bug SDN-3459: Handle long OVN SBDB route hostname [#1711](https://github.com/openshift/hypershift/pull/1711) * fix(pki): Allow BYO PKI for ignition server [#1721](https://github.com/openshift/hypershift/pull/1721) * Set DNS server explicitly while creating DHCP [#1720](https://github.com/openshift/hypershift/pull/1720) * Fix CLI panic when status.version is nil [#1715](https://github.com/openshift/hypershift/pull/1715) * OVN SBDB: Use private router when possible [#1689](https://github.com/openshift/hypershift/pull/1689) * Registry operator: Avoid restarts when token file changes [#1713](https://github.com/openshift/hypershift/pull/1713) * HO: Ignore NoSuchBucket error when deleting OIDC docs [#1714](https://github.com/openshift/hypershift/pull/1714) * Add a drain controller for inplace upgrades [#1691](https://github.com/openshift/hypershift/pull/1691) * Reconcile default ingress controller on creation only [#1710](https://github.com/openshift/hypershift/pull/1710) * [NE-1043](https://issues.redhat.com/browse/NE-1043): Move the DNS operator into the management cluster [#1537](https://github.com/openshift/hypershift/pull/1537) * Add node controller to HCCO Manager [#1702](https://github.com/openshift/hypershift/pull/1702) * Add recording rules for telemetry [#1690](https://github.com/openshift/hypershift/pull/1690) * Destroy: Don't fail if finalizer can not be added [#1707](https://github.com/openshift/hypershift/pull/1707) * Upgrade AWS SDK [#1701](https://github.com/openshift/hypershift/pull/1701) * Use kubeconfig port for worker haproxy [#1708](https://github.com/openshift/hypershift/pull/1708) * Set right API group [#1706](https://github.com/openshift/hypershift/pull/1706) * AWS infra destroy: Handle bucket not found during batch delete [#1700](https://github.com/openshift/hypershift/pull/1700) * Cleanup etcd rule manifest in CVO [#1699](https://github.com/openshift/hypershift/pull/1699) * Oauth: Fix hostname when using DNS indirection and no public router LB [#1705](https://github.com/openshift/hypershift/pull/1705) * Fix clusters where apiserver is exposed through LB and DNS indirection is used [#1696](https://github.com/openshift/hypershift/pull/1696) * Update external-dns image [#1694](https://github.com/openshift/hypershift/pull/1694) * Move Cloud network config controller to the management cluster [#1679](https://github.com/openshift/hypershift/pull/1679) * Allow OpenShiftSDN CNI for PowerVS platform [#1693](https://github.com/openshift/hypershift/pull/1693) * Add CIDR checks to webhook on create [#1688](https://github.com/openshift/hypershift/pull/1688) * Fix clusters that use LB expose strategy with a custom port [#1683](https://github.com/openshift/hypershift/pull/1683) * Validate OCP release version and SDN on initial install [#1686](https://github.com/openshift/hypershift/pull/1686) * Reconcile spec of clusterversion resource [#1687](https://github.com/openshift/hypershift/pull/1687) * APIServer route expose strategy: Fix with private clusters [#1685](https://github.com/openshift/hypershift/pull/1685) * remove external-dns provider variable from openshift template parameters [#1684](https://github.com/openshift/hypershift/pull/1684) * E2E: Fix flakes due to inability of finding matching nodepools [#1681](https://github.com/openshift/hypershift/pull/1681) * Enable cleaning up of hosted cluster cloud resources on destroy [#1672](https://github.com/openshift/hypershift/pull/1672) * ClusterID and infraID should be immutable. [#1660](https://github.com/openshift/hypershift/pull/1660) * Correctly manage infra status condition when there is no LB controller [#1678](https://github.com/openshift/hypershift/pull/1678) * Fix Switch to library-go to compute audit profile audit policy [#1677](https://github.com/openshift/hypershift/pull/1677) * Add IBMPowerVSCluster to status subresource set [#1676](https://github.com/openshift/hypershift/pull/1676) * OAuth: do not reference paths for empty optional secrets or configmaps [#1674](https://github.com/openshift/hypershift/pull/1674) * Honor the debug-deployments annotation [#1673](https://github.com/openshift/hypershift/pull/1673) * Ignition server: Use common pki code [#1657](https://github.com/openshift/hypershift/pull/1657) * Fix router reconciliation when apiserver is exposed through LB [#1669](https://github.com/openshift/hypershift/pull/1669) * E2E: Consistently use Patch to avoid conflict failures [#1664](https://github.com/openshift/hypershift/pull/1664) * Fix e2e powervs destroy opts [#1650](https://github.com/openshift/hypershift/pull/1650) * Drop insecure port on router to save rules [#1668](https://github.com/openshift/hypershift/pull/1668) * external-dns settings for operator install template rendering [#1666](https://github.com/openshift/hypershift/pull/1666) * PowerVS: Add provider id fmt for capi deployment [#1665](https://github.com/openshift/hypershift/pull/1665) * Registry operator: Set proxy vars [#1663](https://github.com/openshift/hypershift/pull/1663) * A few simple kubebuilder validations. [#1658](https://github.com/openshift/hypershift/pull/1658) * Ingress endpoint [#1597](https://github.com/openshift/hypershift/pull/1597) * Add rbac so route-to-ingress controller can do its leader election [#1662](https://github.com/openshift/hypershift/pull/1662) * Move image registry operator to control plane [#1643](https://github.com/openshift/hypershift/pull/1643) * CI script to install hypershift from pre-release MCE catalog source [#1648](https://github.com/openshift/hypershift/pull/1648) * Add a helper to create SA kubeconfigs [#1654](https://github.com/openshift/hypershift/pull/1654) * HCCO: Use cpo manifests for references [#1645](https://github.com/openshift/hypershift/pull/1645) * Increase the unittest timeout to 20m from the default 10m [#1653](https://github.com/openshift/hypershift/pull/1653) * Add unittests for haproxy config generation [#1652](https://github.com/openshift/hypershift/pull/1652) * Drop hypershift-operator util and consolidate with support [#1647](https://github.com/openshift/hypershift/pull/1647) * HO: Fix haproxy to have apiserver external address for public clusters [#1649](https://github.com/openshift/hypershift/pull/1649) * Self image lookup: Retry on empty string [#1628](https://github.com/openshift/hypershift/pull/1628) * private aws cluster guide - update IAM policy example [#1641](https://github.com/openshift/hypershift/pull/1641) * [Full changelog](https://github.com/openshift/hypershift/compare/da0a576c1cdd3f3d4bbd7b3540bf6ac843fa4483...da93f69c5c56fe938e65115dd08428604ed42bed) ### [ibm-cloud-controller-manager](https://github.com/openshift/cloud-provider-ibm/tree/8bd0ea8fadbbb09ed912984d3dc6903a0aad0562) * [OCPBUGS-24644](https://issues.redhat.com/browse/OCPBUGS-24644): Add Snyk file to exclude vendor directory on scan [#67](https://github.com/openshift/cloud-provider-ibm/pull/67) * [OCPBUGS-21113](https://issues.redhat.com/browse/OCPBUGS-21113): Bump golang.org/x/net to v0.18.0 [#57](https://github.com/openshift/cloud-provider-ibm/pull/57) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#42](https://github.com/openshift/cloud-provider-ibm/pull/42) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 30.09.2022 k8s 1.25 [#41](https://github.com/openshift/cloud-provider-ibm/pull/41) * Updating ose-ibm-cloud-controller-manager images to be consistent with ART [#40](https://github.com/openshift/cloud-provider-ibm/pull/40) * [Full changelog](https://github.com/openshift/cloud-provider-ibm/compare/2ee983c42ac2ca664cd72febde5b176f4c928bbb...8bd0ea8fadbbb09ed912984d3dc6903a0aad0562) ### [ibm-vpc-block-csi-driver](https://github.com/openshift/ibm-vpc-block-csi-driver/tree/921509f3833b7b69a08d63fddd13890125e974fa) * [OCPBUGS-36063](https://issues.redhat.com/browse/OCPBUGS-36063): CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 [#75](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/75) * [OCPBUGS-20583](https://issues.redhat.com/browse/OCPBUGS-20583): [IBM VPC] failed provisioning volume in proxy cluster [#56](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/56) * [OCPBUGS-21206](https://issues.redhat.com/browse/OCPBUGS-21206): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#52](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/52) * [OCPBUGS-8451](https://issues.redhat.com/browse/OCPBUGS-8451): Rebase to v5.1.2 for OCP 4.12 [#32](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/32) * [STOR-1060](https://issues.redhat.com/browse/STOR-1060): Update ibm-vpc-block-csi-driver to v5.0.0 [#26](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/26) * UPSTREAM: 99: Update golint to 1.50 [#25](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/25) * UPSTREAM: 98: Reformat code with go 1.19 again [#24](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/24) * UPSTREAM: 98: Reformat code with go 1.19 (#98) [#23](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/23) * UPSTREAM: <carry>: Remove .github files [#21](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/21) * [STOR-867](https://issues.redhat.com/browse/STOR-867): Update ibm-vpc-block-csi-driver to the latest release [#18](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/18) * [OCPBUGS-416](https://issues.redhat.com/browse/OCPBUGS-416): Add udev [#17](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/17) * Rebase: ibm-vpc-block-csi-driver v4.4.4 [#14](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/14) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver/compare/60cd8f0d98508e453aa590a3f926ccd38f244235...921509f3833b7b69a08d63fddd13890125e974fa) ### [ibm-vpc-block-csi-driver-operator](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/tree/f2b726d578e020d369902c14173307a6e13853b4) * [OCPBUGS-36069](https://issues.redhat.com/browse/OCPBUGS-36069): CVE-2024-6104: bump github.com/hashicorp/go-retryablehttp to v0.7.7 [#124](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/124) * [OCPBUGS-20583](https://issues.redhat.com/browse/OCPBUGS-20583): [IBM VPC] failed provisioning volume in proxy cluster [#79](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/79) * [OCPBUGS-21302](https://issues.redhat.com/browse/OCPBUGS-21302): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#83](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/83) * [OCPBUGS-3464](https://issues.redhat.com/browse/OCPBUGS-3464): Update deployment files for snapshot support [#46](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/46) * [OCPBUGS-2354](https://issues.redhat.com/browse/OCPBUGS-2354): Inject proxy settings and custom CA bundle into vpc-node-label-updater container [#44](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/44) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#43](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/43) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#42](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/42) * Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART [#41](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/41) * [Bug 2047732](https://bugzilla.redhat.com/show_bug.cgi?id=2047732): [IBM]Volume is not deleted after destroy cluster [#40](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/pull/40) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver-operator/compare/2f873ffe2b02a01b4df6c466695b572bb2af82e6...f2b726d578e020d369902c14173307a6e13853b4) ### [ibm-vpc-node-label-updater](https://github.com/openshift/ibm-vpc-node-label-updater/tree/f9da23ac8abe04dc1615763e120cd174bde6e617) * [OCPBUGS-21415](https://issues.redhat.com/browse/OCPBUGS-21415): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#29](https://github.com/openshift/ibm-vpc-node-label-updater/pull/29) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#15](https://github.com/openshift/ibm-vpc-node-label-updater/pull/15) * [STOR-867](https://issues.redhat.com/browse/STOR-867): Update ibm-vpc-block-csi-driver to the latest release [#14](https://github.com/openshift/ibm-vpc-node-label-updater/pull/14) * Updating ibm-vpc-node-label-updater images to be consistent with ART [#13](https://github.com/openshift/ibm-vpc-node-label-updater/pull/13) * Rebase: ibm-vpc-node-label-updater v4.1.6 [#11](https://github.com/openshift/ibm-vpc-node-label-updater/pull/11) * [Full changelog](https://github.com/openshift/ibm-vpc-node-label-updater/compare/1b1d427f533e3282f2834f016481000e9ab245b4...f9da23ac8abe04dc1615763e120cd174bde6e617) ### [ibmcloud-machine-controllers](https://github.com/openshift/machine-api-provider-ibmcloud/tree/31a67daca92c374cb4d9a87928ec8c28528a0c0e) * [OCPBUGS-3289](https://issues.redhat.com/browse/OCPBUGS-3289): IBMCloud: Replace stuck machine [#11](https://github.com/openshift/machine-api-provider-ibmcloud/pull/11) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#7](https://github.com/openshift/machine-api-provider-ibmcloud/pull/7) * Fix version [#5](https://github.com/openshift/machine-api-provider-ibmcloud/pull/5) * [Bug 2062579](https://bugzilla.redhat.com/show_bug.cgi?id=2062579): IBMCloud: Verify machine profile [#4](https://github.com/openshift/machine-api-provider-ibmcloud/pull/4) * Default version when one isn't available [#3](https://github.com/openshift/machine-api-provider-ibmcloud/pull/3) * Synch repo cluster-api-provider-ibmcloud with machine-api-provider-ibmcloud [#1](https://github.com/openshift/machine-api-provider-ibmcloud/pull/1) * [Full changelog](https://github.com/openshift/machine-api-provider-ibmcloud/compare/fabf1f6680853595bda32b4b26d18d4edd5fa212...31a67daca92c374cb4d9a87928ec8c28528a0c0e) ### [insights-operator](https://github.com/openshift/insights-operator/tree/6b543885144d6eb40c7c8342dac15f80e77bb4fa) * [OCPBUGS-32004](https://issues.redhat.com/browse/OCPBUGS-32004): bump golang.org/x/net version (#932) [#932](https://github.com/openshift/insights-operator/pull/932) * [OCPBUGS-28519](https://issues.redhat.com/browse/OCPBUGS-28519): Add extra check in ids to bypass validations (#906) [#906](https://github.com/openshift/insights-operator/pull/906) * adds helm information gather (#890) [#890](https://github.com/openshift/insights-operator/pull/890) * [OCPBUGS-23439](https://issues.redhat.com/browse/OCPBUGS-23439): remove username & password config options (#869) [#869](https://github.com/openshift/insights-operator/pull/869) * [OCPBUGS-22922](https://issues.redhat.com/browse/OCPBUGS-22922): create Prometheus rules programmatically according the… (#860) (#862) [#860](https://github.com/openshift/insights-operator/pull/860) * [OCPBUGS-20731](https://issues.redhat.com/browse/OCPBUGS-20731): update dependencies (#841) [#841](https://github.com/openshift/insights-operator/pull/841) * Add cherry-pick from 4.13 (#853) [#853](https://github.com/openshift/insights-operator/pull/853) * [OCPBUGS-19476](https://issues.redhat.com/browse/OCPBUGS-19476): update Insights report config logging (#831) [#831](https://github.com/openshift/insights-operator/pull/831) * [OCPBUGS-19405](https://issues.redhat.com/browse/OCPBUGS-19405): workload info gatherer, add external image repo (#823) [#823](https://github.com/openshift/insights-operator/pull/823) * [OCPBUGS-15031](https://issues.redhat.com/browse/OCPBUGS-15031): fix the config serialization & add test (#794) (#800) [#794](https://github.com/openshift/insights-operator/pull/794) * [OCPBUGS-15459](https://issues.redhat.com/browse/OCPBUGS-15459): gather PDBs only from openshift namespaces (#804) [#804](https://github.com/openshift/insights-operator/pull/804) * [OCPBUGS-15414](https://issues.redhat.com/browse/OCPBUGS-15414): extend configmap gatherer to get gateway-mode-config (#788) (#791) (#801) [#788](https://github.com/openshift/insights-operator/pull/788) * [OCPBUGS-7871](https://issues.redhat.com/browse/OCPBUGS-7871): Collect info about monitoring pods pv (#769) [#769](https://github.com/openshift/insights-operator/pull/769) * [OCPBUGS-11008](https://issues.redhat.com/browse/OCPBUGS-11008): update the cluster transfer interval to 12h (#765) [#765](https://github.com/openshift/insights-operator/pull/765) * [OCPBUGS-10531](https://issues.redhat.com/browse/OCPBUGS-10531): service_accounts.go Marshal fix (#754) [#754](https://github.com/openshift/insights-operator/pull/754) * [OCPBUGS-6732](https://issues.redhat.com/browse/OCPBUGS-6732): Anonymize env vars from containers: HTTP_PROXY, HTTPS_PROXY (#727) [#727](https://github.com/openshift/insights-operator/pull/727) * [OCPBUGS-6833](https://issues.redhat.com/browse/OCPBUGS-6833): feat(recent_metrics) adds openshift_apps_deploymentconfigs_strategy_total (#736) [#736](https://github.com/openshift/insights-operator/pull/736) * [OCPBUGS-6782](https://issues.redhat.com/browse/OCPBUGS-6782): Create gatherer for gathering machines. (#734) [#734](https://github.com/openshift/insights-operator/pull/734) * [OCPBUGS-5976](https://issues.redhat.com/browse/OCPBUGS-5976): operators gatherer - handle ingresscontroller relatedObject & simplify (#714) (#719) [#714](https://github.com/openshift/insights-operator/pull/714) * [OCPBUGS-5348](https://issues.redhat.com/browse/OCPBUGS-5348): do not periodically update Available clusteroperator co… (#710) [#710](https://github.com/openshift/insights-operator/pull/710) * do not get disabled rules (#706) (#713) [#706](https://github.com/openshift/insights-operator/pull/706) * [OCPBUGS-3377](https://issues.redhat.com/browse/OCPBUGS-3377): fix: storage/ceph path structure (#691) (#697) [#691](https://github.com/openshift/insights-operator/pull/691) * [OCPBUGS-2915](https://issues.redhat.com/browse/OCPBUGS-2915): Updated info link in insights recommendations (#683) [#683](https://github.com/openshift/insights-operator/pull/683) * refactor(workloads_info): improving code reability (#650) [#650](https://github.com/openshift/insights-operator/pull/650) * [OCPBUGS-2249](https://issues.redhat.com/browse/OCPBUGS-2249): fix the schema checking conditional gathering rules (#687) [#687](https://github.com/openshift/insights-operator/pull/687) * Improve GatherNodeLogs docs (#690) [#690](https://github.com/openshift/insights-operator/pull/690) * Update owners list (#688) [#688](https://github.com/openshift/insights-operator/pull/688) * [OCPBUGS-2346](https://issues.redhat.com/browse/OCPBUGS-2346): refactor(dvo_metrics): remove name and namespace from dvo metrics (#685) [#685](https://github.com/openshift/insights-operator/pull/685) * limit the size of logs loaded into memory (#681) [#681](https://github.com/openshift/insights-operator/pull/681) * Updating ose-insights-operator images to be consistent with ART (#682) [#682](https://github.com/openshift/insights-operator/pull/682) * read DataPolicy attribute from the config API (#680) [#680](https://github.com/openshift/insights-operator/pull/680) * Update PNCC gatherer (#679) [#679](https://github.com/openshift/insights-operator/pull/679) * [OCPBUGS-1351](https://issues.redhat.com/browse/OCPBUGS-1351): do not include disabled rules in the total metric (#678) [#678](https://github.com/openshift/insights-operator/pull/678) * updated conditional gathering rules checking (#670) [#670](https://github.com/openshift/insights-operator/pull/670) * read new config API and disable gatherers based on the API values (#673) [#673](https://github.com/openshift/insights-operator/pull/673) * [OCPBUGS-1068](https://issues.redhat.com/browse/OCPBUGS-1068): fix alert namespace label (#674) [#674](https://github.com/openshift/insights-operator/pull/674) * Implement insights report updating in the insightsoperators.operator.openshift.io resource (#669) [#669](https://github.com/openshift/insights-operator/pull/669) * K8s & OpenShift version updates (#671) [#671](https://github.com/openshift/insights-operator/pull/671) * manifests/02-namespace: Explicitly clear run-level label (#672) [#672](https://github.com/openshift/insights-operator/pull/672) * openshift-machine-api warning events gatherer (#658) [#658](https://github.com/openshift/insights-operator/pull/658) * Introduce insightsoperators.openshift.io CR & implement its gather st… (#666) [#666](https://github.com/openshift/insights-operator/pull/666) * [OCPBUGS-439](https://issues.redhat.com/browse/OCPBUGS-439): update the DVO metrics gatherer (#664) [#664](https://github.com/openshift/insights-operator/pull/664) * fix: order conditions by type to limit un-needed updates (#667) [#667](https://github.com/openshift/insights-operator/pull/667) * chore(manifests): adding insights capability annotations (#646) [#646](https://github.com/openshift/insights-operator/pull/646) * Update K8s & OpenShift versions + vendoring (#661) [#661](https://github.com/openshift/insights-operator/pull/661) * helm upgrade and uninstall metric gathering (#657) [#657](https://github.com/openshift/insights-operator/pull/657) * Remove Bugzilla references (#660) [#660](https://github.com/openshift/insights-operator/pull/660) * Extend the conditional gatherer docs (#656) [#656](https://github.com/openshift/insights-operator/pull/656) * Gather status of the cephclusters.ceph.rook.io resources (#654) [#654](https://github.com/openshift/insights-operator/pull/654) * Enable Insights recommendations as alerts by default (#653) [#653](https://github.com/openshift/insights-operator/pull/653) * Gather & store firing alerts in JSON too (#652) [#652](https://github.com/openshift/insights-operator/pull/652) * Updating ose-insights-operator images to be consistent with ART (#649) [#649](https://github.com/openshift/insights-operator/pull/649) * Expose Insights recommendations as alerts (#644) [#644](https://github.com/openshift/insights-operator/pull/644) * Minor gatherer's docs & OWNERS update (#647) [#647](https://github.com/openshift/insights-operator/pull/647) * chore(docs): adding list of insights generated metrics (#645) [#645](https://github.com/openshift/insights-operator/pull/645) * [Full changelog](https://github.com/openshift/insights-operator/compare/325ecc86f380b8d4f8908e3cf9103e01079b497d...6b543885144d6eb40c7c8342dac15f80e77bb4fa) ### [ironic](https://github.com/openshift/ironic-image/tree/4530d5eae40623a8d342dccbdd2755984c222318) * [OCPBUGS-37766](https://issues.redhat.com/browse/OCPBUGS-37766), [OCPBUGS-39385](https://issues.redhat.com/browse/OCPBUGS-39385): Include fixes for CVE-2024-44082 [#586](https://github.com/openshift/ironic-image/pull/586) * [OCPBUGS-38513](https://issues.redhat.com/browse/OCPBUGS-38513): set min version for python3-webob [#558](https://github.com/openshift/ironic-image/pull/558) * [OCPBUGS-33373](https://issues.redhat.com/browse/OCPBUGS-33373): bump werkzeug [#547](https://github.com/openshift/ironic-image/pull/547) * [OCPBUGS-34897](https://issues.redhat.com/browse/OCPBUGS-34897): bump jinja2 [#541](https://github.com/openshift/ironic-image/pull/541) * [OCPBUGS-32362](https://issues.redhat.com/browse/OCPBUGS-32362): [4.12] remove unused prometheus-exporter [#489](https://github.com/openshift/ironic-image/pull/489) * [OCPBUGS-32386](https://issues.redhat.com/browse/OCPBUGS-32386): Use unix sockets by default for reverse proxy communication [#477](https://github.com/openshift/ironic-image/pull/477) * [OCPBUGS-29229](https://issues.redhat.com/browse/OCPBUGS-29229): Fix Inspector iPXE config for IPv6 addresses [#454](https://github.com/openshift/ironic-image/pull/454) * [OCPBUGS-23979](https://issues.redhat.com/browse/OCPBUGS-23979): Ironic side of external_http_url (METAL-163) is not wired in correctly [#431](https://github.com/openshift/ironic-image/pull/431) * [OCPBUGS-23357](https://issues.redhat.com/browse/OCPBUGS-23357): Upgrade werkzeug dependency [#423](https://github.com/openshift/ironic-image/pull/423) * [OCPBUGS-23182](https://issues.redhat.com/browse/OCPBUGS-23182): Use bash process substitution instead of pipe [#419](https://github.com/openshift/ironic-image/pull/419) * [OCPBUGS-19064](https://issues.redhat.com/browse/OCPBUGS-19064): Handle Eject DVD in 4.12 [#417](https://github.com/openshift/ironic-image/pull/417) * [OCPBUGS-21849](https://issues.redhat.com/browse/OCPBUGS-21849): bump eventlet version [#409](https://github.com/openshift/ironic-image/pull/409) * [OCPBUGS-17642](https://issues.redhat.com/browse/OCPBUGS-17642): Expand regex for fcos/okd packages list [#392](https://github.com/openshift/ironic-image/pull/392) * [OCPBUGS-16169](https://issues.redhat.com/browse/OCPBUGS-16169): allow inspector to also be proxied [#385](https://github.com/openshift/ironic-image/pull/385) * [OCPBUGS-13586](https://issues.redhat.com/browse/OCPBUGS-13586): Add python-flask dependency [#373](https://github.com/openshift/ironic-image/pull/373) * Bug OCPBUGS-13335: Bump ironic version to include fix to OCPBUGS-13335. [#367](https://github.com/openshift/ironic-image/pull/367) * [OCPBUGS-13041](https://issues.redhat.com/browse/OCPBUGS-13041): Bump python-sushy [#363](https://github.com/openshift/ironic-image/pull/363) * [OCPBUGS-7566](https://issues.redhat.com/browse/OCPBUGS-7566): Bump werkzeug 4.12 [#352](https://github.com/openshift/ironic-image/pull/352) * [OCPBUGS-5143](https://issues.redhat.com/browse/OCPBUGS-5143): Adding dosfstools and util-linux tools to ironic-image [#341](https://github.com/openshift/ironic-image/pull/341) * [OCPBUGS-5100](https://issues.redhat.com/browse/OCPBUGS-5100): Configure Ironic iLO driver to use web server [#339](https://github.com/openshift/ironic-image/pull/339) * [OCPBUGS-4789](https://issues.redhat.com/browse/OCPBUGS-4789): Update packages versions with latest available [#335](https://github.com/openshift/ironic-image/pull/335) * [OCPBUGS-4840](https://issues.redhat.com/browse/OCPBUGS-4840): Handle a different error code for missing TransferProtocolType [#334](https://github.com/openshift/ironic-image/pull/334) * Bug OCPBUGS-2052: Fix setting boot related attributes [#324](https://github.com/openshift/ironic-image/pull/324) * [OCPBUGS-4479](https://issues.redhat.com/browse/OCPBUGS-4479): fix: Add support for OKD/SCOS [#329](https://github.com/openshift/ironic-image/pull/329) * [OCPBUGS-4311](https://issues.redhat.com/browse/OCPBUGS-4311): Remove RDO distribution configuration (finally fixes #46) [#327](https://github.com/openshift/ironic-image/pull/327) * [OCPBUGS-4097](https://issues.redhat.com/browse/OCPBUGS-4097): Workaround for long time gap between operations in recent idrac [#322](https://github.com/openshift/ironic-image/pull/322) * [OCPBUGS-3111](https://issues.redhat.com/browse/OCPBUGS-3111): Don't save OS_ prefixed variables [#310](https://github.com/openshift/ironic-image/pull/310) * Bug OCPBUGS-3479: Improve resiliency of eTag handling [#315](https://github.com/openshift/ironic-image/pull/315) * Removed ServerName from VirtualHost Directives [#305](https://github.com/openshift/ironic-image/pull/305) * Sync with upstream metal3-io ironic-image 2022-09-29 [#301](https://github.com/openshift/ironic-image/pull/301) * [OCPBUGS-1799](https://issues.redhat.com/browse/OCPBUGS-1799): use brackets for IPv6 addresses in ironic-proxy [#300](https://github.com/openshift/ironic-image/pull/300) * Update sushy to 4.3.0 (Zed final) [#299](https://github.com/openshift/ironic-image/pull/299) * [Bug 2104275](https://bugzilla.redhat.com/show_bug.cgi?id=2104275): sync the ValueDisplayName fix [#296](https://github.com/openshift/ironic-image/pull/296) * Update ironic and ironic-inspector for OCP 4.12 [#293](https://github.com/openshift/ironic-image/pull/293) * Update dependencies for OCP 4.12 [#290](https://github.com/openshift/ironic-image/pull/290) * ironic-proxy: never validate TLS peer name [#292](https://github.com/openshift/ironic-image/pull/292) * [OCPBUGS-171](https://issues.redhat.com/browse/OCPBUGS-171): Fix IRONIC_EXTERNAL_IP when TLS is used for virtual media [#291](https://github.com/openshift/ironic-image/pull/291) * Merge from upstream metal3-io/ironic-image [#289](https://github.com/openshift/ironic-image/pull/289) * [METAL-256](https://issues.redhat.com/browse/METAL-256): Add a new entry point for the Ironic proxy [#286](https://github.com/openshift/ironic-image/pull/286) * Sync with upstream metal3-io ironic-image [#283](https://github.com/openshift/ironic-image/pull/283) * Updating ironic images to be consistent with ART [#282](https://github.com/openshift/ironic-image/pull/282) * [Full changelog](https://github.com/openshift/ironic-image/compare/240777d34c88ec9a6780510307ced3d4ac96b1ba...4530d5eae40623a8d342dccbdd2755984c222318) ### [ironic-agent](https://github.com/openshift/ironic-agent-image/tree/fc37dec83ae7cbd6878a5ddcc25126f424586095) * [OCPBUGS-39385](https://issues.redhat.com/browse/OCPBUGS-39385): Include fixes for CVE-2024-44082 [#165](https://github.com/openshift/ironic-agent-image/pull/165) * [OCPBUGS-38513](https://issues.redhat.com/browse/OCPBUGS-38513): set webob and bump werkzeug [#153](https://github.com/openshift/ironic-agent-image/pull/153) * [OCPBUGS-29769](https://issues.redhat.com/browse/OCPBUGS-29769): Always add ignition to set hostname on /etc/hostname [#112](https://github.com/openshift/ironic-agent-image/pull/112) * [OCPBUGS-19008](https://issues.redhat.com/browse/OCPBUGS-19008): better compatibility with old hostnamectl [#92](https://github.com/openshift/ironic-agent-image/pull/92) * [OCPBUGS-19008](https://issues.redhat.com/browse/OCPBUGS-19008): backport hostname fixes [#90](https://github.com/openshift/ironic-agent-image/pull/90) * "Bug OCPBUGS-15831: Switch to udevadm command install instead of package" [#82](https://github.com/openshift/ironic-agent-image/pull/82) * [OCPBUGS-9934](https://issues.redhat.com/browse/OCPBUGS-9934): Adding dep on python3-werkzeug >= 2.0.3-4 [#72](https://github.com/openshift/ironic-agent-image/pull/72) * [OCPBUGS-5067](https://issues.redhat.com/browse/OCPBUGS-5067): make coreos-installer output available in the logs [#66](https://github.com/openshift/ironic-agent-image/pull/66) * [OCPBUGS-456](https://issues.redhat.com/browse/OCPBUGS-456): Update ironic-python-agent for OCP 4.12 [#61](https://github.com/openshift/ironic-agent-image/pull/61) * Update dependencies for OCP 4.12 [#60](https://github.com/openshift/ironic-agent-image/pull/60) * Updating ironic-agent images to be consistent with ART [#57](https://github.com/openshift/ironic-agent-image/pull/57) * Install iproute explicitely [#59](https://github.com/openshift/ironic-agent-image/pull/59) * [Full changelog](https://github.com/openshift/ironic-agent-image/compare/1dad35c5b3844f04b81468c4ad6b33953953cdc6...fc37dec83ae7cbd6878a5ddcc25126f424586095) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/c65c1f1c19a9b62ef5f4a857e5ce86ad6fca3d29) * [OCPBUGS-15735](https://issues.redhat.com/browse/OCPBUGS-15735): Binary should be compiled on rhel9 [#92](https://github.com/openshift/ironic-rhcos-downloader/pull/92) * Updating ironic-rhcos-downloader images to be consistent with ART [#83](https://github.com/openshift/ironic-rhcos-downloader/pull/83) * [OCPBUGS-478](https://issues.redhat.com/browse/OCPBUGS-478): Install libguestfs-tools-c instead of libguestfs-tools [#82](https://github.com/openshift/ironic-rhcos-downloader/pull/82) * Updating ironic-rhcos-downloader images to be consistent with ART [#79](https://github.com/openshift/ironic-rhcos-downloader/pull/79) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/876128b5ac733a244a3838b151b0a6df663937aa...c65c1f1c19a9b62ef5f4a857e5ce86ad6fca3d29) ### [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager/tree/a8ade8fe60ad5fb1ab225a514ec331123b256cff) * [OCPBUGS-14415](https://issues.redhat.com/browse/OCPBUGS-14415): Flush addresses on provisioning interface with global scope only [#37](https://github.com/openshift/ironic-static-ip-manager/pull/37) * Updating ironic-static-ip-manager images to be consistent with ART [#31](https://github.com/openshift/ironic-static-ip-manager/pull/31) * [Full changelog](https://github.com/openshift/ironic-static-ip-manager/compare/8c8af7bec058936780626d6b5d1b44f15b88791c...a8ade8fe60ad5fb1ab225a514ec331123b256cff) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/36c06694097a1a09a8c4e1f70a9025187814cb1a) * [OCPBUGS-21441](https://issues.redhat.com/browse/OCPBUGS-21441): upgrade golang.org/x/net to 0.17.0 to address CVE [#91](https://github.com/openshift/k8s-prometheus-adapter/pull/91) * [OCPBUGS-20580](https://issues.redhat.com/browse/OCPBUGS-20580): limit number of simultaneous client requests [#79](https://github.com/openshift/k8s-prometheus-adapter/pull/79) * Updating ose-prometheus-adapter images to be consistent with ART [#65](https://github.com/openshift/k8s-prometheus-adapter/pull/65) * Bump openshift/k8s-prometheus-adapter to v0.10.0 [#64](https://github.com/openshift/k8s-prometheus-adapter/pull/64) * OWNERS: Add Joao and myself, and move former team members to emeritus [#63](https://github.com/openshift/k8s-prometheus-adapter/pull/63) * Updating ose-prometheus-adapter images to be consistent with ART [#62](https://github.com/openshift/k8s-prometheus-adapter/pull/62) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/c223902cf8f136d8e2769bf955e079ffc0064e49...36c06694097a1a09a8c4e1f70a9025187814cb1a) ### [keepalived-ipfailover](https://github.com/openshift/images/tree/7e8a0105eb7369f3f92ad7b2581a2efffab5b28e) * Updating openshift-enterprise-egress-router images to be consistent with ART [#115](https://github.com/openshift/images/pull/115) * Updating ose-egress-http-proxy images to be consistent with ART [#114](https://github.com/openshift/images/pull/114) * Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART [#117](https://github.com/openshift/images/pull/117) * Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART [#116](https://github.com/openshift/images/pull/116) * Add bparees as approver [#118](https://github.com/openshift/images/pull/118) * Updating openshift-enterprise-base images to be consistent with ART [#113](https://github.com/openshift/images/pull/113) * [Full changelog](https://github.com/openshift/images/compare/f1330f6fb99d1056544bca67f30c098059ef3edf...7e8a0105eb7369f3f92ad7b2581a2efffab5b28e) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/9706f967ca7bb1ade1a789123c71fe6cb55a025e) * [OCPBUGS-20753](https://issues.redhat.com/browse/OCPBUGS-20753): update x/net to v0.17.0 [#615](https://github.com/openshift/sdn/pull/615) * [OCPBUGS-22972](https://issues.redhat.com/browse/OCPBUGS-22972): Change the permission of 80-openshift-network.conf to 600 [#583](https://github.com/openshift/sdn/pull/583) * [OCPBUGS-18325](https://issues.redhat.com/browse/OCPBUGS-18325): Vendor o/k to consume update to prefer local TCP eps for DNS [#573](https://github.com/openshift/sdn/pull/573) * [OCPBUGS-13785](https://issues.redhat.com/browse/OCPBUGS-13785): EgressNetworkPolicy DNS resolution does not fall back to TCP [#542](https://github.com/openshift/sdn/pull/542) * [OCPBUGS-14304](https://issues.redhat.com/browse/OCPBUGS-14304): fix possible concurrent map read/write [#551](https://github.com/openshift/sdn/pull/551) * [OCPBUGS-13058](https://issues.redhat.com/browse/OCPBUGS-13058): save and delete the old egress network policy [#539](https://github.com/openshift/sdn/pull/539) * [OCPBUGS-13761](https://issues.redhat.com/browse/OCPBUGS-13761): CVE-2018-17419 ose-node-container: dns: Denial of Service (DoS) [#541](https://github.com/openshift/sdn/pull/541) * [OCPBUGS-10805](https://issues.redhat.com/browse/OCPBUGS-10805): Fix race in Egress IP Tracker start [#521](https://github.com/openshift/sdn/pull/521) * [OCPBUGS-7474](https://issues.redhat.com/browse/OCPBUGS-7474): Initialize egress node monitoring struct with previous reachability status [#505](https://github.com/openshift/sdn/pull/505) * [OCPBUGS-6842](https://issues.redhat.com/browse/OCPBUGS-6842): Handle race condition to setup default vnid flows [#497](https://github.com/openshift/sdn/pull/497) * [OCPBUGS-7227](https://issues.redhat.com/browse/OCPBUGS-7227): Update for 4.12 / go 1.19, including gofmt updates [#482](https://github.com/openshift/sdn/pull/482) * [OCPBUGS-4486](https://issues.redhat.com/browse/OCPBUGS-4486): Add node egress IP assignment resync [#487](https://github.com/openshift/sdn/pull/487) * [OCPBUGS-4422](https://issues.redhat.com/browse/OCPBUGS-4422): pass ResourceVersion:0 for kube List() calls [#473](https://github.com/openshift/sdn/pull/473) * [OCPBUGS-69](https://issues.redhat.com/browse/OCPBUGS-69): Generate egress ip metrics for sdn node [#470](https://github.com/openshift/sdn/pull/470) * [OCPBUGS-1533](https://issues.redhat.com/browse/OCPBUGS-1533): rebase to kube 1.25.1 [#458](https://github.com/openshift/sdn/pull/458) * [OCPBUGS-256](https://issues.redhat.com/browse/OCPBUGS-256): fix network policy egress [#459](https://github.com/openshift/sdn/pull/459) * [Bug 2104953](https://bugzilla.redhat.com/show_bug.cgi?id=2104953): rebase to 1.24, take 2 [#450](https://github.com/openshift/sdn/pull/450) * Enable EgressIP on OpenStack [#447](https://github.com/openshift/sdn/pull/447) * [Bug 2081562](https://bugzilla.redhat.com/show_bug.cgi?id=2081562): setup network policy rules during pod creation to fix postStart hook [#439](https://github.com/openshift/sdn/pull/439) * Updating kube-proxy images to be consistent with ART [#448](https://github.com/openshift/sdn/pull/448) * [Bug 2101622](https://bugzilla.redhat.com/show_bug.cgi?id=2101622): Revert 'kube 1.24 rebase'; master [#442](https://github.com/openshift/sdn/pull/442) * [Full changelog](https://github.com/openshift/sdn/compare/e5b34b769cb7dd359cd027b9bb19cf4988a2c5dd...9706f967ca7bb1ade1a789123c71fe6cb55a025e) ### [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy/tree/c69fae7877557d64dce64f36e0a78751952571c4) * [OCPBUGS-32000](https://issues.redhat.com/browse/OCPBUGS-32000): CVE-2023-45288 [4.12] [#106](https://github.com/openshift/kube-rbac-proxy/pull/106) * [OCPBUGS-20687](https://issues.redhat.com/browse/OCPBUGS-20687): trim down http2, make it configurable 4.12 [#85](https://github.com/openshift/kube-rbac-proxy/pull/85) * [OCPBUGS-11645](https://issues.redhat.com/browse/OCPBUGS-11645): Updating kube-rbac-proxy images to be consistent with ART [#56](https://github.com/openshift/kube-rbac-proxy/pull/56) * Merg upstream into downstream [#60](https://github.com/openshift/kube-rbac-proxy/pull/60) * OWNERS: add myself (ibihim) [#57](https://github.com/openshift/kube-rbac-proxy/pull/57) * [Full changelog](https://github.com/openshift/kube-rbac-proxy/compare/c04896cdf9288341c9f88051a2744ca192300182...c69fae7877557d64dce64f36e0a78751952571c4) ### [kube-state-metrics](https://github.com/openshift/kube-state-metrics/tree/748f71317b9d3e3e5a96b14131294e2695f26434) * [OCPBUGS-20764](https://issues.redhat.com/browse/OCPBUGS-20764): bump x/net to v0.17.0 [#103](https://github.com/openshift/kube-state-metrics/pull/103) * [OCPBUGS-4118](https://issues.redhat.com/browse/OCPBUGS-4118): cherry-pick, do not expose ingress path metric when service is nil [#84](https://github.com/openshift/kube-state-metrics/pull/84) * [OCPBUGS-4112](https://issues.redhat.com/browse/OCPBUGS-4112): cherry-pick, autoscaling/v2beta2 HorizontalPodAutoscaler is deprecated in v1.23+ [#83](https://github.com/openshift/kube-state-metrics/pull/83) * Updating kube-state-metrics images to be consistent with ART [#78](https://github.com/openshift/kube-state-metrics/pull/78) * Bump openshift/kube-state-metrics to v2.6.0 [#77](https://github.com/openshift/kube-state-metrics/pull/77) * OWNERS: Add Joao and myself, and move former team members to emeritus [#76](https://github.com/openshift/kube-state-metrics/pull/76) * Updating kube-state-metrics images to be consistent with ART [#75](https://github.com/openshift/kube-state-metrics/pull/75) * [Full changelog](https://github.com/openshift/kube-state-metrics/compare/7d0ca88aaf60227733ea06152114b623c5574779...748f71317b9d3e3e5a96b14131294e2695f26434) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/8fd2f8b0f7e2849b1a7db252beba0c8250552e36) * Bug OCPBUGS-16376: Fix np retry [#740](https://github.com/openshift/kuryr-kubernetes/pull/740) * [OCPBUGS-15493](https://issues.redhat.com/browse/OCPBUGS-15493): Remove unneeded grpcio dependencies from RPM [#737](https://github.com/openshift/kuryr-kubernetes/pull/737) * [OCPBUGS-13778](https://issues.redhat.com/browse/OCPBUGS-13778): KuryrPort cleanup: Fix issue of subport not found [#731](https://github.com/openshift/kuryr-kubernetes/pull/731) * Bug OCPBUGS-12164: Fix ValueError when Pod has no IP address [#722](https://github.com/openshift/kuryr-kubernetes/pull/722) * [OCPBUGS-11993](https://issues.redhat.com/browse/OCPBUGS-11993): Fix VIF revert on KuryrPort status update error [#721](https://github.com/openshift/kuryr-kubernetes/pull/721) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#707](https://github.com/openshift/kuryr-kubernetes/pull/707) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#706](https://github.com/openshift/kuryr-kubernetes/pull/706) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#705](https://github.com/openshift/kuryr-kubernetes/pull/705) * Updating kuryr-cni images to be consistent with ART [#697](https://github.com/openshift/kuryr-kubernetes/pull/697) * Bug OCPBUGS-198: Cleanup KuryrPort when Pod is missing [#691](https://github.com/openshift/kuryr-kubernetes/pull/691) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#690](https://github.com/openshift/kuryr-kubernetes/pull/690) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#689](https://github.com/openshift/kuryr-kubernetes/pull/689) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#686](https://github.com/openshift/kuryr-kubernetes/pull/686) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#685](https://github.com/openshift/kuryr-kubernetes/pull/685) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#684](https://github.com/openshift/kuryr-kubernetes/pull/684) * Rebase from upstream [#683](https://github.com/openshift/kuryr-kubernetes/pull/683) * Updating kuryr-cni images to be consistent with ART [#677](https://github.com/openshift/kuryr-kubernetes/pull/677) * Updating kuryr-controller images to be consistent with ART [#676](https://github.com/openshift/kuryr-kubernetes/pull/676) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#681](https://github.com/openshift/kuryr-kubernetes/pull/681) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#679](https://github.com/openshift/kuryr-kubernetes/pull/679) * Merge https://opendev.org/openstack/kuryr-kubernetes:master into master [#678](https://github.com/openshift/kuryr-kubernetes/pull/678) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/c7326997276f4fb2bf78d0454d076795c2cfb645...8fd2f8b0f7e2849b1a7db252beba0c8250552e36) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/a2882f7aa56d4059a20bdc02486da905b5764062) * Updating ose-libvirt-machine-controllers images to be consistent with ART [#240](https://github.com/openshift/cluster-api-provider-libvirt/pull/240) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/b6e14eabe93e25323cf32b7661edd0e7422b4e4b...a2882f7aa56d4059a20bdc02486da905b5764062) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/b6c243d139f4345a88d5678eb6ba6041a2abb405) * [OCPBUGS-43872](https://issues.redhat.com/browse/OCPBUGS-43872): install/0000_30_machine-api-operator_00_credentials-request: Set skipServiceCheck again for GCP [#1305](https://github.com/openshift/machine-api-operator/pull/1305) * [OCPBUGS-32007](https://issues.redhat.com/browse/OCPBUGS-32007): Update x/net to v0.25.0 [#1257](https://github.com/openshift/machine-api-operator/pull/1257) * [OCPBUGS-25303](https://issues.redhat.com/browse/OCPBUGS-25303): Update reference URL [#1189](https://github.com/openshift/machine-api-operator/pull/1189) * [OCPBUGS-21501](https://issues.redhat.com/browse/OCPBUGS-21501): Bump golang.org/x/net to v0.18.0 [#1176](https://github.com/openshift/machine-api-operator/pull/1176) * [OCPBUGS-10943](https://issues.redhat.com/browse/OCPBUGS-10943): Fix empty component version [#1132](https://github.com/openshift/machine-api-operator/pull/1132) * [OCPBUGS-7882](https://issues.redhat.com/browse/OCPBUGS-7882): Block machine deletion if extra disks are attached [#1120](https://github.com/openshift/machine-api-operator/pull/1120) * [OCPBUGS-8286](https://issues.redhat.com/browse/OCPBUGS-8286): Short circuit misfiring [#1109](https://github.com/openshift/machine-api-operator/pull/1109) * [OCPBUGS-5413](https://issues.redhat.com/browse/OCPBUGS-5413): Append annotations from machine template spec to the node [#1104](https://github.com/openshift/machine-api-operator/pull/1104) * [OCPBUGS-5117](https://issues.redhat.com/browse/OCPBUGS-5117): [release-4.12] Allow to use machine.openshift.io API in provider specs [#1086](https://github.com/openshift/machine-api-operator/pull/1086) * [OCPBUGS-5417](https://issues.redhat.com/browse/OCPBUGS-5417): machine-api-termination-handler: run DaemonSet only on Linux [#1105](https://github.com/openshift/machine-api-operator/pull/1105) * Show warnings if provider specs have invalid GroupVersionKind [#1018](https://github.com/openshift/machine-api-operator/pull/1018) * Update envtest [#1071](https://github.com/openshift/machine-api-operator/pull/1071) * [OCPCLOUD-1131](https://issues.redhat.com/browse/OCPCLOUD-1131): Add DescribeInstanceTypes permission for AWS provider [#1062](https://github.com/openshift/machine-api-operator/pull/1062) * [OCPBUGS-2151](https://issues.redhat.com/browse/OCPBUGS-2151): Don't degrade when workers not expected [#1074](https://github.com/openshift/machine-api-operator/pull/1074) * Updating ose-machine-api-operator images to be consistent with ART [#1073](https://github.com/openshift/machine-api-operator/pull/1073) * Update default Azure image to use image galleries [#1076](https://github.com/openshift/machine-api-operator/pull/1076) * [OCPBUGS-1274](https://issues.redhat.com/browse/OCPBUGS-1274): add tolerations to termination handler [#1072](https://github.com/openshift/machine-api-operator/pull/1072) * Restrict creating Power VS machine with negative processor and memory [#1067](https://github.com/openshift/machine-api-operator/pull/1067) * [OCPBUGS-519](https://issues.redhat.com/browse/OCPBUGS-519): update error message for disconnected installation validation [#1068](https://github.com/openshift/machine-api-operator/pull/1068) * Update dependencies to K8s 1.25 [#1070](https://github.com/openshift/machine-api-operator/pull/1070) * Only drain a single control plane machine at once [#1066](https://github.com/openshift/machine-api-operator/pull/1066) * Add tag and category id to the caching client log messages [#1063](https://github.com/openshift/machine-api-operator/pull/1063) * [Bug 2101736](https://bugzilla.redhat.com/show_bug.cgi?id=2101736): Ignore managed fields during finalizer removal [#1061](https://github.com/openshift/machine-api-operator/pull/1061) * Ensure the phase transition metric only updates when the phase changes [#1059](https://github.com/openshift/machine-api-operator/pull/1059) * Release leader election lease when shutting down [#1060](https://github.com/openshift/machine-api-operator/pull/1060) * Tags/categories ids cache implementation [#1057](https://github.com/openshift/machine-api-operator/pull/1057) * [OCPBUGS-268](https://issues.redhat.com/browse/OCPBUGS-268): vSphere - enable steal time accounting [#1056](https://github.com/openshift/machine-api-operator/pull/1056) * [Bug 2111972](https://bugzilla.redhat.com/show_bug.cgi?id=2111972): operator NS manifest: Set empty openshift.io/run-level [#1053](https://github.com/openshift/machine-api-operator/pull/1053) * Change the git command [#1050](https://github.com/openshift/machine-api-operator/pull/1050) * add a helper function to detect windows os [#1055](https://github.com/openshift/machine-api-operator/pull/1055) * [Bug 2115308](https://bugzilla.redhat.com/show_bug.cgi?id=2115308): Ensure failed drains are subject to exponential backoff [#1051](https://github.com/openshift/machine-api-operator/pull/1051) * [Bug 2087981](https://bugzilla.redhat.com/show_bug.cgi?id=2087981): Change "create" sequence with powering on the vm after clone [#1047](https://github.com/openshift/machine-api-operator/pull/1047) * update windows helper functions [#1049](https://github.com/openshift/machine-api-operator/pull/1049) * [Bug 2110501](https://bugzilla.redhat.com/show_bug.cgi?id=2110501): Revert "Bug 2101880: operator NS manifest: Set empty openshift.io/run-level" [#1045](https://github.com/openshift/machine-api-operator/pull/1045) * [Bug 2109258](https://bugzilla.redhat.com/show_bug.cgi?id=2109258): add more support for old delete annotation [#1042](https://github.com/openshift/machine-api-operator/pull/1042) * [Bug 2101736](https://bugzilla.redhat.com/show_bug.cgi?id=2101736): allow to remove finalizers [#1037](https://github.com/openshift/machine-api-operator/pull/1037) * [Bug 2107578](https://bugzilla.redhat.com/show_bug.cgi?id=2107578): Fix while setting default processor value for Power VS platform [#1040](https://github.com/openshift/machine-api-operator/pull/1040) * [Bug 2104642](https://bugzilla.redhat.com/show_bug.cgi?id=2104642): fix the Machine validation webhook for nutanix providerSpec [#1038](https://github.com/openshift/machine-api-operator/pull/1038) * [Bug 2104642](https://bugzilla.redhat.com/show_bug.cgi?id=2104642): Add a validation webhook for Nutanix MachineProviderConfig [#1034](https://github.com/openshift/machine-api-operator/pull/1034) * [Bug 2097153](https://bugzilla.redhat.com/show_bug.cgi?id=2097153): change ListTags call to ListTagsForCategory [#1027](https://github.com/openshift/machine-api-operator/pull/1027) * [Bug 1994820](https://bugzilla.redhat.com/show_bug.cgi?id=1994820): Degrade operator on cluster bootstrap if not all Machines are Running [#1019](https://github.com/openshift/machine-api-operator/pull/1019) * Migrate delete annotation to match upstream CAPI annotation [#1024](https://github.com/openshift/machine-api-operator/pull/1024) * add utility functions for windows powershell tags [#1030](https://github.com/openshift/machine-api-operator/pull/1030) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): operator NS manifest: Set empty openshift.io/run-level [#1031](https://github.com/openshift/machine-api-operator/pull/1031) * Add webhook validations for Azure boot diagnostics [#1029](https://github.com/openshift/machine-api-operator/pull/1029) * Update revendoring tool [#1028](https://github.com/openshift/machine-api-operator/pull/1028) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/b00c052468ea0ea410494d615b2b46ab8733afd0...b6c243d139f4345a88d5678eb6ba6041a2abb405) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/952b12c5365dcd6334849007d71c83c9613be7ed) * [OCPBUGS-38382](https://issues.redhat.com/browse/OCPBUGS-38382): [release-4.12] daemon/update: disable systemd unit before overwriting [#4530](https://github.com/openshift/machine-config-operator/pull/4530) * [OCPBUGS-33665](https://issues.redhat.com/browse/OCPBUGS-33665): Run resolv-prepender entirely async [#4364](https://github.com/openshift/machine-config-operator/pull/4364) * [OCPBUGS-30829](https://issues.redhat.com/browse/OCPBUGS-30829): Add existing kubeletconfig/ctrcfg mc-name-suffix annotation [#4257](https://github.com/openshift/machine-config-operator/pull/4257) * [OCPBUGS-30823](https://issues.redhat.com/browse/OCPBUGS-30823): Introduce kubelet-dependencies.target and firstboot-osupdate.target [#4268](https://github.com/openshift/machine-config-operator/pull/4268) * [OCPBUGS-30329](https://issues.redhat.com/browse/OCPBUGS-30329): set nodeStatusReportFrequency [#4246](https://github.com/openshift/machine-config-operator/pull/4246) * [OCPBUGS-19659](https://issues.redhat.com/browse/OCPBUGS-19659): After dual-stack conversion reconcile IPFamilies [#3936](https://github.com/openshift/machine-config-operator/pull/3936) * [OCPBUGS-29366](https://issues.redhat.com/browse/OCPBUGS-29366): release-4.12: fix nodeStatusUpdateFrequency [#4180](https://github.com/openshift/machine-config-operator/pull/4180) * [OCPBUGS-29278](https://issues.redhat.com/browse/OCPBUGS-29278): crio: drop automatic image cleanup on upgrades [#4178](https://github.com/openshift/machine-config-operator/pull/4178) * [OCPBUGS-14071](https://issues.redhat.com/browse/OCPBUGS-14071): Imageinspect takes type of error into account, drop podman inspect fallback [#3717](https://github.com/openshift/machine-config-operator/pull/3717) * [OCPBUGS-21038](https://issues.redhat.com/browse/OCPBUGS-21038): update library-go and kube deps to latest version [#4013](https://github.com/openshift/machine-config-operator/pull/4013) * [OCPBUGS-22719](https://issues.redhat.com/browse/OCPBUGS-22719): Backport logspam PRs [#4008](https://github.com/openshift/machine-config-operator/pull/4008) * [OCPBUGS-21723](https://issues.redhat.com/browse/OCPBUGS-21723): keepalived/ingress: change healthcheck script [#3985](https://github.com/openshift/machine-config-operator/pull/3985) * [OCPBUGS-18433](https://issues.redhat.com/browse/OCPBUGS-18433): Prevent NM from unsetting the hostname [#3900](https://github.com/openshift/machine-config-operator/pull/3900) * [OCPBUGS-20509](https://issues.redhat.com/browse/OCPBUGS-20509): resolv-prepender: avoid pulling baremetalRuntimeCfgImage again if it … [#3969](https://github.com/openshift/machine-config-operator/pull/3969) * [OCPBUGS-19779](https://issues.redhat.com/browse/OCPBUGS-19779): daemon: always use `podman cp` to copy extensions container content [#3944](https://github.com/openshift/machine-config-operator/pull/3944) * [OCPBUGS-19515](https://issues.redhat.com/browse/OCPBUGS-19515): The kubeconfig copied on to each node has 644 permissions [#3931](https://github.com/openshift/machine-config-operator/pull/3931) * [OCPBUGS-17862](https://issues.redhat.com/browse/OCPBUGS-17862): Agent-based install process the container machine-config-controller will be oom [#3875](https://github.com/openshift/machine-config-operator/pull/3875) * [OCPBUGS-17461](https://issues.redhat.com/browse/OCPBUGS-17461): The machine-config-controller pod restart in SNO+1 causing daemonsets to restart [#3844](https://github.com/openshift/machine-config-operator/pull/3844) * [OCPBUGS-15570](https://issues.redhat.com/browse/OCPBUGS-15570): configure-ovs: support UUID in vlan.parent [#3768](https://github.com/openshift/machine-config-operator/pull/3768) * [OCPBUGS-16754](https://issues.redhat.com/browse/OCPBUGS-16754): daemon: Don't traverse `/run/ostree/auth.json` symlink [#3818](https://github.com/openshift/machine-config-operator/pull/3818) * [OCPBUGS-11303](https://issues.redhat.com/browse/OCPBUGS-11303): Fix regex dot in coredns config file [#3660](https://github.com/openshift/machine-config-operator/pull/3660) * [OCPBUGS-13757](https://issues.redhat.com/browse/OCPBUGS-13757): The MCD has a non-functional pivot command that should be removed [#3710](https://github.com/openshift/machine-config-operator/pull/3710) * [OCPBUGS-7718](https://issues.redhat.com/browse/OCPBUGS-7718): Prevent possible split-brain scenario with keepalived unicast [#3562](https://github.com/openshift/machine-config-operator/pull/3562) * [OCPBUGS-7945](https://issues.redhat.com/browse/OCPBUGS-7945): [release-4.12] Forklift most of resolv-prepender dispatcher script to systemd [#3573](https://github.com/openshift/machine-config-operator/pull/3573) * [OCPBUGS-5935](https://issues.redhat.com/browse/OCPBUGS-5935): Wrap podman commands in a while loop [#3495](https://github.com/openshift/machine-config-operator/pull/3495) * [OCPBUGS-7167](https://issues.redhat.com/browse/OCPBUGS-7167): Avoid 'too restrictive' SCC problems by being more explicit [#3542](https://github.com/openshift/machine-config-operator/pull/3542) * [OCPBUGS-10505](https://issues.redhat.com/browse/OCPBUGS-10505): daemon: Drop duplicate `--authfile` used in `run` [#3617](https://github.com/openshift/machine-config-operator/pull/3617) * [OCPBUGS-10372](https://issues.redhat.com/browse/OCPBUGS-10372): Remove hard requirement for the afterburn from early-running aws-related services [#3613](https://github.com/openshift/machine-config-operator/pull/3613) * [OCPBUGS-9993](https://issues.redhat.com/browse/OCPBUGS-9993): Revert "daemon: Temporarily copy auth file with more open perms on FCOS" [#3608](https://github.com/openshift/machine-config-operator/pull/3608) * [OCPBUGS-7445](https://issues.redhat.com/browse/OCPBUGS-7445): configure-ovs: fix mtu-migration cleanup [#3555](https://github.com/openshift/machine-config-operator/pull/3555) * [OCPBUGS-8261](https://issues.redhat.com/browse/OCPBUGS-8261): [release-4.12] backport cleanupDuplicateMC [#3578](https://github.com/openshift/machine-config-operator/pull/3578) * [OCPBUGS-6943](https://issues.redhat.com/browse/OCPBUGS-6943): Improvements for `configure-ovs.sh` [#3528](https://github.com/openshift/machine-config-operator/pull/3528) * [OCPBUGS-6045](https://issues.redhat.com/browse/OCPBUGS-6045): There are not enough logs in case "oc extract" is stuck in mco first boot [#3503](https://github.com/openshift/machine-config-operator/pull/3503) * [OCPBUGS-6973](https://issues.redhat.com/browse/OCPBUGS-6973): configure-ovs: optionally generate configuration in /run [#3532](https://github.com/openshift/machine-config-operator/pull/3532) * [OCPBUGS-6779](https://issues.redhat.com/browse/OCPBUGS-6779): baremetal: clean state generated by NM when run by dracut [#3521](https://github.com/openshift/machine-config-operator/pull/3521) * [OCPBUGS-7241](https://issues.redhat.com/browse/OCPBUGS-7241): controller: default overwrite to true for files [#3546](https://github.com/openshift/machine-config-operator/pull/3546) * [OCPBUGS-6997](https://issues.redhat.com/browse/OCPBUGS-6997): Fix 4.12 art images [#3535](https://github.com/openshift/machine-config-operator/pull/3535) * [OCPBUGS-6805](https://issues.redhat.com/browse/OCPBUGS-6805): Only check image type if we are sure there is work that needs to be done [#3526](https://github.com/openshift/machine-config-operator/pull/3526) * [OCPBUGS-5999](https://issues.redhat.com/browse/OCPBUGS-5999): 4.12 - remove goutils from dependency tree [#3496](https://github.com/openshift/machine-config-operator/pull/3496) * [OCPBUGS-6179](https://issues.redhat.com/browse/OCPBUGS-6179): controller: don't render new MC until base MCs update [#3506](https://github.com/openshift/machine-config-operator/pull/3506) * [OCPBUGS-5743](https://issues.redhat.com/browse/OCPBUGS-5743): Mount /run/nodeip-configuration into keepalived containers [#3479](https://github.com/openshift/machine-config-operator/pull/3479) * [OCPBUGS-5384](https://issues.redhat.com/browse/OCPBUGS-5384): daemon: Explicitly pull image before running [#3475](https://github.com/openshift/machine-config-operator/pull/3475) * [OCPBUGS-3311](https://issues.redhat.com/browse/OCPBUGS-3311): [alicloud] provider ID not being set for kubelet [#3457](https://github.com/openshift/machine-config-operator/pull/3457) * [OCPBUGS-4805](https://issues.redhat.com/browse/OCPBUGS-4805): Do not allow empty system reserved values [#3453](https://github.com/openshift/machine-config-operator/pull/3453) * [OCPBUGS-4667](https://issues.redhat.com/browse/OCPBUGS-4667): vsphere: check that /etc/hostname is not empty [#3452](https://github.com/openshift/machine-config-operator/pull/3452) * [OCPBUGS-4091](https://issues.redhat.com/browse/OCPBUGS-4091): NM resolv prepender: correct permissions for systemd resolved config [#3442](https://github.com/openshift/machine-config-operator/pull/3442) * [OCPBUGS-4091](https://issues.redhat.com/browse/OCPBUGS-4091): NM resolve prepender: remove extra quotes in OKD flow [#3433](https://github.com/openshift/machine-config-operator/pull/3433) * [OCPBUGS-3955](https://issues.redhat.com/browse/OCPBUGS-3955): daemon: gate done state on uncordon completion [#3425](https://github.com/openshift/machine-config-operator/pull/3425) * [OCPBUGS-3750](https://issues.redhat.com/browse/OCPBUGS-3750): daemon: Stop setting I/O scheduler to bfq [#3417](https://github.com/openshift/machine-config-operator/pull/3417) * [OCPBUGS-3874](https://issues.redhat.com/browse/OCPBUGS-3874): Don't make https call to http endpoint [#3420](https://github.com/openshift/machine-config-operator/pull/3420) * [OCPBUGS-3504](https://issues.redhat.com/browse/OCPBUGS-3504): On-prem: Ensure resolv-prepender respects NM dispatcher timeout [#3410](https://github.com/openshift/machine-config-operator/pull/3410) * [OCPBUGS-3650](https://issues.redhat.com/browse/OCPBUGS-3650): Revert "Substitute skopeo inspect for imageInspect/podman" [#3414](https://github.com/openshift/machine-config-operator/pull/3414) * [OCPBUGS-3001](https://issues.redhat.com/browse/OCPBUGS-3001): Substitute skopeo inspect for imageInspect/podman, drop podman inspect fallback [#3396](https://github.com/openshift/machine-config-operator/pull/3396) * Force string format when logging rpm-ostree status [#3393](https://github.com/openshift/machine-config-operator/pull/3393) * controller: Don't allow creating the force file via MachineConfig [#3391](https://github.com/openshift/machine-config-operator/pull/3391) * [Bug 2034883](https://bugzilla.redhat.com/show_bug.cgi?id=2034883): Sync controllerconfig anyway if daemon sync fails [#3388](https://github.com/openshift/machine-config-operator/pull/3388) * Fix machine-config-operator logspam when extensions container is not present [#3387](https://github.com/openshift/machine-config-operator/pull/3387) * [OCPBUGS-2757](https://issues.redhat.com/browse/OCPBUGS-2757): Reconcile successfully if already booted into target [#3383](https://github.com/openshift/machine-config-operator/pull/3383) * [OCPBUGS-1257](https://issues.redhat.com/browse/OCPBUGS-1257): Have keepalived check for haproxy status for API VIP [#3339](https://github.com/openshift/machine-config-operator/pull/3339) * daemon: Only try to apply layered changes if BaseOSExtensionsContainerImage is not empty [#3382](https://github.com/openshift/machine-config-operator/pull/3382) * [OCPBUGS-89](https://issues.redhat.com/browse/OCPBUGS-89): configure-ovs: auto-connect ovs-if-phys0 with br-ex [#3312](https://github.com/openshift/machine-config-operator/pull/3312) * [Bug 2107090](https://bugzilla.redhat.com/show_bug.cgi?id=2107090): Machine config server hangs on handling large number of requests in parallel [#3262](https://github.com/openshift/machine-config-operator/pull/3262) * [OCPBUGS-2079](https://issues.redhat.com/browse/OCPBUGS-2079): Add ephemeral storage to kubelet system reserved args [#3375](https://github.com/openshift/machine-config-operator/pull/3375) * [MCO-400](https://issues.redhat.com/browse/MCO-400): helpers: Do synchronize condition if message changes [#3369](https://github.com/openshift/machine-config-operator/pull/3369) * [OCPBUGS-2197](https://issues.redhat.com/browse/OCPBUGS-2197): update: Set proxy for inplace container update too [#3377](https://github.com/openshift/machine-config-operator/pull/3377) * [OCPBUGS-2197](https://issues.redhat.com/browse/OCPBUGS-2197): OCPBUGS-2122: update: Inject proxy data for firstboot [#3370](https://github.com/openshift/machine-config-operator/pull/3370) * [OCPBUGS-2269](https://issues.redhat.com/browse/OCPBUGS-2269): Upgrade failures and MCDPivotError Alert Firing on GCP realtime kernel [#3373](https://github.com/openshift/machine-config-operator/pull/3373) * daemon: Temporarily copy auth file with more open perms on SCOS too [#3372](https://github.com/openshift/machine-config-operator/pull/3372) * : Add missing bits for dual-stack ingress VIPs [#3341](https://github.com/openshift/machine-config-operator/pull/3341) * Jira OCPBUGS-1503: configure-ovs.sh: Do not fail bond with invalid slave device names [#3345](https://github.com/openshift/machine-config-operator/pull/3345) * [MCO-396](https://issues.redhat.com/browse/MCO-396): daemon: FCOS workaround, plus SELinux workaround [#3358](https://github.com/openshift/machine-config-operator/pull/3358) * Switch to https://github.com/coreos/rpmostree-client-go [#3302](https://github.com/openshift/machine-config-operator/pull/3302) * [RFE-2962](https://issues.redhat.com/browse/RFE-2962): configure ovs should use node-ip-hint set by nodeip-configuration [#3362](https://github.com/openshift/machine-config-operator/pull/3362) * [MCO-371](https://issues.redhat.com/browse/MCO-371): metrics: aggregate os_image_url_override metric to avoid unbounded cardinality [#3363](https://github.com/openshift/machine-config-operator/pull/3363) * Rename KUBELET_NODEIP_HINT to just NODEIP_HINT [#3353](https://github.com/openshift/machine-config-operator/pull/3353) * Revert "RFE-2962: configure ovs should use node-ip-hint set by nodeip-configuration service" [#3360](https://github.com/openshift/machine-config-operator/pull/3360) * [Bug 2056387](https://bugzilla.redhat.com/show_bug.cgi?id=2056387): fix alibaba kubelet node name unit [#3338](https://github.com/openshift/machine-config-operator/pull/3338) * Dockerfile: Remove SCOS extensions image references [#3356](https://github.com/openshift/machine-config-operator/pull/3356) * bootstrap: Add CLI arguments for new format oscontainer [#3354](https://github.com/openshift/machine-config-operator/pull/3354) * [RFE-2962](https://issues.redhat.com/browse/RFE-2962): configure ovs should use node-ip-hint set by nodeip-configuration service [#3233](https://github.com/openshift/machine-config-operator/pull/3233) * Add cgroupv2 configuration support in MCO [#3349](https://github.com/openshift/machine-config-operator/pull/3349) * [MCO-289](https://issues.redhat.com/browse/MCO-289): Teach the MCO to use new format image [#3317](https://github.com/openshift/machine-config-operator/pull/3317) * [MCO-371](https://issues.redhat.com/browse/MCO-371): metrics: Add metric for OS image override [#3343](https://github.com/openshift/machine-config-operator/pull/3343) * [OCPBUGS-1616](https://issues.redhat.com/browse/OCPBUGS-1616): Revert "Merge pull request #3311 from sairameshv/cgroupv2" [#3348](https://github.com/openshift/machine-config-operator/pull/3348) * OCPNODE-1146 Add cgroup confiuration support in MCO [#3311](https://github.com/openshift/machine-config-operator/pull/3311) * Bump openshift/api [#3336](https://github.com/openshift/machine-config-operator/pull/3336) * Dual stack vips [#3269](https://github.com/openshift/machine-config-operator/pull/3269) * [TRT-540](https://issues.redhat.com/browse/TRT-540): Add privileged label to infra namespaces [#3328](https://github.com/openshift/machine-config-operator/pull/3328) * update to release.openshift.io/feature-set to match OCP 4.12 [#3329](https://github.com/openshift/machine-config-operator/pull/3329) * added @engelmi, @eslutsky, @Darth-Mera to ovirt-approvers [#3332](https://github.com/openshift/machine-config-operator/pull/3332) * [OCPBUGS-825](https://issues.redhat.com/browse/OCPBUGS-825): Provide a reason if operator is unavailable [#3324](https://github.com/openshift/machine-config-operator/pull/3324) * [MCO-256](https://issues.redhat.com/browse/MCO-256): hypershift: add disruptionless updates to MCD [#3320](https://github.com/openshift/machine-config-operator/pull/3320) * [OCPBUGS-224](https://issues.redhat.com/browse/OCPBUGS-224): Make sure there is a search domain in resolv.conf [#3306](https://github.com/openshift/machine-config-operator/pull/3306) * Hypershift: remove error message on return [#3326](https://github.com/openshift/machine-config-operator/pull/3326) * daemon: Drop mock node updater client [#3325](https://github.com/openshift/machine-config-operator/pull/3325) * [OCPBUGS-631](https://issues.redhat.com/browse/OCPBUGS-631): Pull container image as a separate step [#3318](https://github.com/openshift/machine-config-operator/pull/3318) * Add kubens.service, drop-ins, and kubensenter prefix to kubelet.service [#3274](https://github.com/openshift/machine-config-operator/pull/3274) * Add RuntimeDefault to ctrcfg [#3295](https://github.com/openshift/machine-config-operator/pull/3295) * daemon: Use just one NodeUpdaterClient instance [#3304](https://github.com/openshift/machine-config-operator/pull/3304) * vendor: Bump containers/image [#3303](https://github.com/openshift/machine-config-operator/pull/3303) * OKD: Add build args for FCOS and SCOS [#3294](https://github.com/openshift/machine-config-operator/pull/3294) * [Bug 2107113](https://bugzilla.redhat.com/show_bug.cgi?id=2107113): Fix .ssh directory not owned by core when created by Machine Config D… [#3250](https://github.com/openshift/machine-config-operator/pull/3250) * fixes config decompression lint issue [#3301](https://github.com/openshift/machine-config-operator/pull/3301) * Round off SYSTEM_RESERVED_MEMORY if value is in decimal [#3299](https://github.com/openshift/machine-config-operator/pull/3299) * Remove `onPremPlatformKeepalivedEnableUnicast` function [#3174](https://github.com/openshift/machine-config-operator/pull/3174) * MCD: Add support for RHCOS9 and SCOS9 [#3179](https://github.com/openshift/machine-config-operator/pull/3179) * Bug-2051533: Adding day2 remote worker node requires manually approving CSRs [#3276](https://github.com/openshift/machine-config-operator/pull/3276) * Decompress and decode Ignition configs from ConfigMap [#3280](https://github.com/openshift/machine-config-operator/pull/3280) * [Bug 2111817](https://bugzilla.redhat.com/show_bug.cgi?id=2111817): daemon: Add a workaround for bug 2111817 [#3291](https://github.com/openshift/machine-config-operator/pull/3291) * Don't reference `rhel-coreos-8-extensions` yet [#3290](https://github.com/openshift/machine-config-operator/pull/3290) * Accept new image format, consume in controllerconfig, but stop there [#3286](https://github.com/openshift/machine-config-operator/pull/3286) * Allow overriding OSImageURL with a layered image [#3272](https://github.com/openshift/machine-config-operator/pull/3272) * daemon: drop `systemctl stop kubelet` during node reboot [#2509](https://github.com/openshift/machine-config-operator/pull/2509) * [Bug 2105003](https://bugzilla.redhat.com/show_bug.cgi?id=2105003): on-prem: improvements on resolv-prepender [#3271](https://github.com/openshift/machine-config-operator/pull/3271) * Fix typo [#3279](https://github.com/openshift/machine-config-operator/pull/3279) * Update library-go to set OpenStack provider to external [#3270](https://github.com/openshift/machine-config-operator/pull/3270) * add control-plane label [#3273](https://github.com/openshift/machine-config-operator/pull/3273) * Prep patches for bumping openshift/client-go [#3251](https://github.com/openshift/machine-config-operator/pull/3251) * Update approvers and reviewers list with current active members [#3266](https://github.com/openshift/machine-config-operator/pull/3266) * ctrcfg controller remove cleanupmc() [#3149](https://github.com/openshift/machine-config-operator/pull/3149) * [Bug 2109963](https://bugzilla.redhat.com/show_bug.cgi?id=2109963): Master node in SchedulingDisabled after upgrade from 4.10.24 -> 4.11.0-rc.4 [#3264](https://github.com/openshift/machine-config-operator/pull/3264) * daemon: Drop tuneableFCOSArgsAllowlist [#3248](https://github.com/openshift/machine-config-operator/pull/3248) * daemon: Drop workarounds for rpm-ostree bugs [#3239](https://github.com/openshift/machine-config-operator/pull/3239) * [Bug 2104619](https://bugzilla.redhat.com/show_bug.cgi?id=2104619): Remove rollback deployment [#3243](https://github.com/openshift/machine-config-operator/pull/3243) * on-prem: render-config-coredns from /var/run/NetworkManager/resolv.conf [#3237](https://github.com/openshift/machine-config-operator/pull/3237) * [Bug 2101157](https://bugzilla.redhat.com/show_bug.cgi?id=2101157): configure-ovs: fix handling of connection names with spaces and checking the connection name suffix [#3242](https://github.com/openshift/machine-config-operator/pull/3242) * [Bug 2104503](https://bugzilla.redhat.com/show_bug.cgi?id=2104503): Updating ose-machine-config-operator images to be consistent with ART [#3228](https://github.com/openshift/machine-config-operator/pull/3228) * [Bug 2103786](https://bugzilla.redhat.com/show_bug.cgi?id=2103786): drain controller: don't skip the MCC pod drain [#3212](https://github.com/openshift/machine-config-operator/pull/3212) * [Bug 2102004](https://bugzilla.redhat.com/show_bug.cgi?id=2102004): pkg/controller/common/helpers: Explicitly set mode 0644 [#3226](https://github.com/openshift/machine-config-operator/pull/3226) * [Bug 2099945](https://bugzilla.redhat.com/show_bug.cgi?id=2099945): configure-ovs: clone inactive autoconnect slaves [#3203](https://github.com/openshift/machine-config-operator/pull/3203) * [Bug 2101157](https://bugzilla.redhat.com/show_bug.cgi?id=2101157): configure-ovs: fix handling of connection names with spaces and checking the connection name suffix [#3214](https://github.com/openshift/machine-config-operator/pull/3214) * [Bug 2097785](https://bugzilla.redhat.com/show_bug.cgi?id=2097785): Send out OSUpdateStaged event directly [#3189](https://github.com/openshift/machine-config-operator/pull/3189) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): NS manifest: Set empty openshift.io/run-level [#3217](https://github.com/openshift/machine-config-operator/pull/3217) * Update block payload test with vendored runtime-utils [#3148](https://github.com/openshift/machine-config-operator/pull/3148) * [Bug 2099664](https://bugzilla.redhat.com/show_bug.cgi?id=2099664): daemon: initialize nodewriter before login monitor [#3211](https://github.com/openshift/machine-config-operator/pull/3211) * [Bug 2096413](https://bugzilla.redhat.com/show_bug.cgi?id=2096413): configure-ovs: set mac only for non fail_over_mac bonds [#3202](https://github.com/openshift/machine-config-operator/pull/3202) * README: Link to the product documentation for example MachineConfigs [#3150](https://github.com/openshift/machine-config-operator/pull/3150) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/15d0b0288a4330b90ac89f14c781dfa7349af52c...952b12c5365dcd6334849007d71c83c9613be7ed) ### [machine-image-customization-controller](https://github.com/openshift/image-customization-controller/tree/e456249dbf0c5456bd0671d41a4445bd266b3660) * [OCPBUGS-27090](https://issues.redhat.com/browse/OCPBUGS-27090): configurable ironic agent vlan creation [#119](https://github.com/openshift/image-customization-controller/pull/119) * [OCPBUGS-21543](https://issues.redhat.com/browse/OCPBUGS-21543): Uplift x/net to v0.17.0 [#106](https://github.com/openshift/image-customization-controller/pull/106) * [OCPBUGS-19008](https://issues.redhat.com/browse/OCPBUGS-19008): Pass BareMetalHost name to IPA (take 2) [#101](https://github.com/openshift/image-customization-controller/pull/101) * [OCPBUGS-18687](https://issues.redhat.com/browse/OCPBUGS-18687): Watch networkData Secrets for changes [#96](https://github.com/openshift/image-customization-controller/pull/96) * [OCPBUGS-5655](https://issues.redhat.com/browse/OCPBUGS-5655): Update dependencies [#76](https://github.com/openshift/image-customization-controller/pull/76) * Updating ose-image-customization-controller images to be consistent with ART [#65](https://github.com/openshift/image-customization-controller/pull/65) * [OCPBUGS-3557](https://issues.redhat.com/browse/OCPBUGS-3557): use host IPC for the agent container [#69](https://github.com/openshift/image-customization-controller/pull/69) * Use GO 1.19 [#66](https://github.com/openshift/image-customization-controller/pull/66) * [OCPBUGS-389](https://issues.redhat.com/browse/OCPBUGS-389): mount /run/udev into the agent container [#61](https://github.com/openshift/image-customization-controller/pull/61) * Support different IP addresses for Inspector and Ironic [#60](https://github.com/openshift/image-customization-controller/pull/60) * Updating ose-image-customization-controller images to be consistent with ART [#57](https://github.com/openshift/image-customization-controller/pull/57) * Upgrade golangci linter to 1.47.3 [#58](https://github.com/openshift/image-customization-controller/pull/58) * Remove IPA settings that match the defaults in ironic-agent-image [#38](https://github.com/openshift/image-customization-controller/pull/38) * [Full changelog](https://github.com/openshift/image-customization-controller/compare/30f98fdb5341d13f33c264faae0910af74424265...e456249dbf0c5456bd0671d41a4445bd266b3660) ### [machine-os-images](https://github.com/openshift/machine-os-images/tree/566bf59501f178bd80e410fda66cc424de6a4891) * Updating ose-machine-os-images images to be consistent with ART [#20](https://github.com/openshift/machine-os-images/pull/20) * [OCPBUGS-884](https://issues.redhat.com/browse/OCPBUGS-884): Update rhcos release browser url [#21](https://github.com/openshift/machine-os-images/pull/21) * [Full changelog](https://github.com/openshift/machine-os-images/compare/b1580a29e6bc76598c2d408c0e27460bc6b638be...566bf59501f178bd80e410fda66cc424de6a4891) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/e27952fc813ac994e64f715a8690f3d36a9ec778) * [OCPBUGS-21330](https://issues.redhat.com/browse/OCPBUGS-21330): Update go.mod for CVE-2023-39325 [Release-4.12] [#73](https://github.com/openshift/multus-admission-controller/pull/73) * Updating ose-multus-admission-controller images to be consistent with ART [#61](https://github.com/openshift/multus-admission-controller/pull/61) * [OCPBUGS-10506](https://issues.redhat.com/browse/OCPBUGS-10506): Client golang [backport 4.12] [#59](https://github.com/openshift/multus-admission-controller/pull/59) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/dbbd93bebf0fe24394ea26588c5e02de7d575764...e27952fc813ac994e64f715a8690f3d36a9ec778) ### [multus-cni](https://github.com/openshift/multus-cni/tree/07d8af54f06652b283dc0aa8db68d438c4bfe741) * [OCPBUGS-28520](https://issues.redhat.com/browse/OCPBUGS-28520): Fix SAST scan issues for multus-cni-container [4.12] [#225](https://github.com/openshift/multus-cni/pull/225) * [OCPBUGS-21061](https://issues.redhat.com/browse/OCPBUGS-21061): Update go.mod for CVE-2023-39325 [Release-4.12] [#196](https://github.com/openshift/multus-cni/pull/196) * [OCPBUGS-22461](https://issues.redhat.com/browse/OCPBUGS-22461): fix multiple default gw [#200](https://github.com/openshift/multus-cni/pull/200) * [OCPBUGS-7844](https://issues.redhat.com/browse/OCPBUGS-7844): Fix multus to support CNI plugin which does not create interface [backport 4.12] [#164](https://github.com/openshift/multus-cni/pull/164) * [Full changelog](https://github.com/openshift/multus-cni/compare/a3dbf84666cbdabbbfbcfb63cefc98877fe67361...07d8af54f06652b283dc0aa8db68d438c4bfe741) ### [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy/tree/644461f25fb6b45054d1a8be7a996670959a5a9d) * [OCPBUGS-21420](https://issues.redhat.com/browse/OCPBUGS-21420): Update go.mod for CVE-2023-39325 (#36) [#36](https://github.com/openshift/multus-networkpolicy/pull/36) * [OCPBUGS-977](https://issues.redhat.com/browse/OCPBUGS-977): Sync k8snetworkplumbingwg/multi-networkpolicy-iptables 2022_10 (#20) [#20](https://github.com/openshift/multus-networkpolicy/pull/20) * Updating multus-networkpolicy images to be consistent with ART (#19) [#19](https://github.com/openshift/multus-networkpolicy/pull/19) * Upstream rebase (#18) [#18](https://github.com/openshift/multus-networkpolicy/pull/18) * Updating multus-networkpolicy images to be consistent with ART (#17) [#17](https://github.com/openshift/multus-networkpolicy/pull/17) * [Full changelog](https://github.com/openshift/multus-networkpolicy/compare/6bc780e4f79cc1d666249da342fff1805c1121bf...644461f25fb6b45054d1a8be7a996670959a5a9d) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/efd6ffbb275a133196e30edfe9f241e2a3b4f0c0) * Updating ose-multus-route-override-cni images to be consistent with ART [#27](https://github.com/openshift/route-override-cni/pull/27) * [Full changelog](https://github.com/openshift/route-override-cni/compare/523b79044306b7590ad449d7eab06a233d687d86...efd6ffbb275a133196e30edfe9f241e2a3b4f0c0) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/5993d022e7fad3a1bede89235502f1a90f618bf2) * [OCPBUGS-37942](https://issues.redhat.com/browse/OCPBUGS-37942), [OCPBUGS-38019](https://issues.redhat.com/browse/OCPBUGS-38019): [release-4.12] Stateful fixes [#310](https://github.com/openshift/whereabouts-cni/pull/310) * [OCPBUGS-28801](https://issues.redhat.com/browse/OCPBUGS-28801): [release-4.12] Enable whereabouts config [#244](https://github.com/openshift/whereabouts-cni/pull/244) * [OCPBUGS-16008](https://issues.redhat.com/browse/OCPBUGS-16008): Cherry pick fix assignment 4.12 [#238](https://github.com/openshift/whereabouts-cni/pull/238) * [OCPBUGS-21499](https://issues.redhat.com/browse/OCPBUGS-21499): update golang.org/x/net to v0.17.0 [#209](https://github.com/openshift/whereabouts-cni/pull/209) * [OCPBUGS-5953](https://issues.redhat.com/browse/OCPBUGS-5953): Denormalize IP name before checking if pod is alive [Backport 4.12] [#178](https://github.com/openshift/whereabouts-cni/pull/178) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#134](https://github.com/openshift/whereabouts-cni/pull/134) * [OCPBUGS-8673](https://issues.redhat.com/browse/OCPBUGS-8673): Dual stack support [#131](https://github.com/openshift/whereabouts-cni/pull/131) * [OCPBUGS-7429](https://issues.redhat.com/browse/OCPBUGS-7429): Invalid ipv6 backport 4.12 [#109](https://github.com/openshift/whereabouts-cni/pull/109) * [OCPBUGS-11321](https://issues.redhat.com/browse/OCPBUGS-11321): respect requested allocation range when exluding ranges [Backport 4.12] [#123](https://github.com/openshift/whereabouts-cni/pull/123) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#93](https://github.com/openshift/whereabouts-cni/pull/93) * [OCPBUGS-3941](https://issues.redhat.com/browse/OCPBUGS-3941): Backport Excluded ranges bug (#282) [#103](https://github.com/openshift/whereabouts-cni/pull/103) * Fix commitish for non-default interfaces fix [#96](https://github.com/openshift/whereabouts-cni/pull/96) * ip-reconciler: Add all non default interfaces to Pod IP list [#95](https://github.com/openshift/whereabouts-cni/pull/95) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/7d544f9f2c44303f28dcc6dd4d5620da24907d9c...5993d022e7fad3a1bede89235502f1a90f618bf2) ### [must-gather](https://github.com/openshift/must-gather/tree/dc23fd8103fdf54262f101c16b11102242d9d002) * [OCPBUGS-24523](https://issues.redhat.com/browse/OCPBUGS-24523): [release-4.12] Add csi-proxy logs collection in must-gather for Windows nodes [#394](https://github.com/openshift/must-gather/pull/394) * [OCPBUGS-4250](https://issues.redhat.com/browse/OCPBUGS-4250): [release-4.12] backport PodNetworkConnectivityCheck gather script #334 [#334](https://github.com/openshift/must-gather/pull/334) * Updating ose-must-gather images to be consistent with ART [#330](https://github.com/openshift/must-gather/pull/330) * [Bug 2000552](https://bugzilla.redhat.com/show_bug.cgi?id=2000552): Add apiservices logs gathering by default [#332](https://github.com/openshift/must-gather/pull/332) * [OCPBUGS-1810](https://issues.redhat.com/browse/OCPBUGS-1810): fix ingress node firewall script permission [#329](https://github.com/openshift/must-gather/pull/329) * Add ingress node firewall must-gather collection script [#328](https://github.com/openshift/must-gather/pull/328) * Updating ose-must-gather images to be consistent with ART [#320](https://github.com/openshift/must-gather/pull/320) * [Bug 2103283](https://bugzilla.redhat.com/show_bug.cgi?id=2103283): Add timeout to oc cp command to fix must-gather delays when routers are terminating [#317](https://github.com/openshift/must-gather/pull/317) * Stop collecting Docker logs on Windows instances [#315](https://github.com/openshift/must-gather/pull/315) * [Full changelog](https://github.com/openshift/must-gather/compare/44f6adacb094952723f957d4d7d61043b6f2fe04...dc23fd8103fdf54262f101c16b11102242d9d002) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/30386d6b8d4f3b05931842b6a9b85f15c241b09a) * [OCPBUGS-13836](https://issues.redhat.com/browse/OCPBUGS-13836): Ignore missing links during delete command [#53](https://github.com/openshift/bond-cni/pull/53) * Updating ose-network-interface-bond-cni images to be consistent with ART [#37](https://github.com/openshift/bond-cni/pull/37) * ds merges: mac duplicates [#40](https://github.com/openshift/bond-cni/pull/40) * Add mtu verification for nics that are not sriov (#40) [#38](https://github.com/openshift/bond-cni/pull/38) * ds merges: github ci [#33](https://github.com/openshift/bond-cni/pull/33) * [Full changelog](https://github.com/openshift/bond-cni/compare/b76a677034edb66ddaf123cb79a2bb20a301f694...30386d6b8d4f3b05931842b6a9b85f15c241b09a) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/fad45782360032bdde3a10b9a28ba30ecc14684f) * Added METRIC_TEST_IMAGE var (#92) [#92](https://github.com/openshift/network-metrics-daemon/pull/92) * Update the k8s dependencies to 1.25.15 (#84) [#84](https://github.com/openshift/network-metrics-daemon/pull/84) * Revert "Remove e2e tests that consistently fail in 4.12 (#74)" (#77) [#74](https://github.com/openshift/network-metrics-daemon/pull/74) * Remove e2e tests that consistently fail in 4.12 (#74) [#74](https://github.com/openshift/network-metrics-daemon/pull/74) * Updating ose-network-metrics-daemon images to be consistent with ART (#60) [#60](https://github.com/openshift/network-metrics-daemon/pull/60) * Fix gofmt check issue (#68) [#68](https://github.com/openshift/network-metrics-daemon/pull/68) * Update golang.org/x/text to 0.7.0 (#66) [#66](https://github.com/openshift/network-metrics-daemon/pull/66) * Adjusted test ns for the new ocp security model (#61) [#61](https://github.com/openshift/network-metrics-daemon/pull/61) * Updating ose-network-metrics-daemon images to be consistent with ART (#59) [#59](https://github.com/openshift/network-metrics-daemon/pull/59) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/ec215698a4984fab85b29966bbdd420f1bbc58f4...fad45782360032bdde3a10b9a28ba30ecc14684f) ### [network-tools](https://github.com/openshift/network-tools/tree/c76613c77c8785b91611bb3c4245bc34f3b14f76) * [OCPBUGS-1831](https://issues.redhat.com/browse/OCPBUGS-1831): Improve error propagation [#70](https://github.com/openshift/network-tools/pull/70) * Updating ose-network-tools images to be consistent with ART [#71](https://github.com/openshift/network-tools/pull/71) * Minor fixed found during demo preparation [#68](https://github.com/openshift/network-tools/pull/68) * Add pod-run-netns-command script to run command from network-tools [#67](https://github.com/openshift/network-tools/pull/67) * Implement new scripts to interact with ovn cluster [#66](https://github.com/openshift/network-tools/pull/66) * Migrate existing scripts to network-tools [#65](https://github.com/openshift/network-tools/pull/65) * Rework network-tools to [#64](https://github.com/openshift/network-tools/pull/64) * update owners [#62](https://github.com/openshift/network-tools/pull/62) * Updating ose-network-tools images to be consistent with ART [#63](https://github.com/openshift/network-tools/pull/63) * [Full changelog](https://github.com/openshift/network-tools/compare/4e87286cff4d645777cf2632a0671eed0d82270c...c76613c77c8785b91611bb3c4245bc34f3b14f76) ### [nutanix-machine-controllers](https://github.com/openshift/machine-api-provider-nutanix/tree/708c6daea2aba7d0de0b8c55590e1c777639829f) * [OCPBUGS-25675](https://issues.redhat.com/browse/OCPBUGS-25675): Fix CI by running tests natively by default [#62](https://github.com/openshift/machine-api-provider-nutanix/pull/62) * [OCPBUGS-1411](https://issues.redhat.com/browse/OCPBUGS-1411): Bump k8s dependencies to 1.25 [#27](https://github.com/openshift/machine-api-provider-nutanix/pull/27) * Add .ci-operator.yaml config file to specify build image for OCP ci [#28](https://github.com/openshift/machine-api-provider-nutanix/pull/28) * Updating ose-nutanix-machine-controllers images to be consistent with ART [#26](https://github.com/openshift/machine-api-provider-nutanix/pull/26) * [OCPBUGS-766](https://issues.redhat.com/browse/OCPBUGS-766): Add warning message when the region/zone label value is 'Unnamed' [#25](https://github.com/openshift/machine-api-provider-nutanix/pull/25) * Upgrade dependency prism-go-library version to v0.2.0 [#24](https://github.com/openshift/machine-api-provider-nutanix/pull/24) * [OCPBUGS-766](https://issues.redhat.com/browse/OCPBUGS-766): Missing the instance-type/region/zone labels in Machine CRs [#23](https://github.com/openshift/machine-api-provider-nutanix/pull/23) * Updating ose-nutanix-machine-controllers images to be consistent with ART [#20](https://github.com/openshift/machine-api-provider-nutanix/pull/20) * [Full changelog](https://github.com/openshift/machine-api-provider-nutanix/compare/a94eb77c298d1420219d350df6a6c7bca575aac0...708c6daea2aba7d0de0b8c55590e1c777639829f) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/1053f14213faf18c67162760598a8fc47a5ad4b5) * [OCPBUGS-32010](https://issues.redhat.com/browse/OCPBUGS-32010): bump x/net to 0.24.0 [#113](https://github.com/openshift/oauth-apiserver/pull/113) * [OCPBUGS-21049](https://issues.redhat.com/browse/OCPBUGS-21049): Bump K8s to v1.25 [#104](https://github.com/openshift/oauth-apiserver/pull/104) * Updating ose-oauth-apiserver images to be consistent with ART [#80](https://github.com/openshift/oauth-apiserver/pull/80) * bump kube to 1.24.4 [#81](https://github.com/openshift/oauth-apiserver/pull/81) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/c9c2dd15751d391a6a81ceee744db7b2d07a208b...1053f14213faf18c67162760598a8fc47a5ad4b5) ### [oauth-proxy](https://github.com/openshift/oauth-proxy/tree/03e5b13b8b7087dd70abfd70efb4c5b92f800a4f) * Update logo [#245](https://github.com/openshift/oauth-proxy/pull/245) * fix json examples for --openshift-delegate-urls [#203](https://github.com/openshift/oauth-proxy/pull/203) * [Full changelog](https://github.com/openshift/oauth-proxy/compare/aad1b28fcf4b32d9ad592eee33e439bd575565a2...03e5b13b8b7087dd70abfd70efb4c5b92f800a4f) ### [oauth-server](https://github.com/openshift/oauth-server/tree/0c434f420b178093a2e940dfb2c445ff638d1914) * [OCPBUGS-27478](https://issues.redhat.com/browse/OCPBUGS-27478): bump osin deps [#144](https://github.com/openshift/oauth-server/pull/144) * [OCPBUGS-13906](https://issues.redhat.com/browse/OCPBUGS-13906): don't log request query and fragment on failed authn request [#129](https://github.com/openshift/oauth-server/pull/129) * [OCPBUGS-12757](https://issues.redhat.com/browse/OCPBUGS-12757): bump lib-go for group cache fix, kube 1.24->1.25 [#127](https://github.com/openshift/oauth-server/pull/127) * Updating oauth-server images to be consistent with ART [#109](https://github.com/openshift/oauth-server/pull/109) * Bump library-go to b2073c41366aae78868b24e86d99021b79d754cb [#112](https://github.com/openshift/oauth-server/pull/112) * fix linter findings [#98](https://github.com/openshift/oauth-server/pull/98) * [Full changelog](https://github.com/openshift/oauth-server/compare/8d80088ebf859d717e470b47fed9f9014b9226a0...0c434f420b178093a2e940dfb2c445ff638d1914) ### [oc-mirror](https://github.com/openshift/oc-mirror/tree/3f39dc6e5a01bae1c66fa8bc7c24553d032e2e4d) * Bump version to include v5.11.0 of go-git (#825) [#825](https://github.com/openshift/oc-mirror/pull/825) * [OCPBUGS-385](https://issues.redhat.com/browse/OCPBUGS-385): Capability to override default channel (#749) (#796) [#749](https://github.com/openshift/oc-mirror/pull/749) * [OCPBUGS-19429](https://issues.redhat.com/browse/OCPBUGS-19429): Fix cross EUS channel upgrade path calculation (#779) [#779](https://github.com/openshift/oc-mirror/pull/779) * [OCPBUGS-21440](https://issues.redhat.com/browse/OCPBUGS-21440): fix: CVE-2023-39325 and CVE-2023-44487 (#713) [#713](https://github.com/openshift/oc-mirror/pull/713) * [OCPBUGS-14065](https://issues.redhat.com/browse/OCPBUGS-14065): Fix destination image reference (#650) [#650](https://github.com/openshift/oc-mirror/pull/650) * [OCPBUGS-11908](https://issues.redhat.com/browse/OCPBUGS-11908): Fix (#607) (#641) [#607](https://github.com/openshift/oc-mirror/pull/607) * [OCPBUGS-14065](https://issues.redhat.com/browse/OCPBUGS-14065): fix: Limit the nested repository path while mirroring the images (#642) [#642](https://github.com/openshift/oc-mirror/pull/642) * updates the OWNERS file (#646) [#646](https://github.com/openshift/oc-mirror/pull/646) * [OCPBUGS-12261](https://issues.redhat.com/browse/OCPBUGS-12261): fix: skips bundles with 'skips' field on head bundle (#618) [#618](https://github.com/openshift/oc-mirror/pull/618) * [OCPBUGS-863](https://issues.redhat.com/browse/OCPBUGS-863): Add skip pruning flag and logic (#591) [#591](https://github.com/openshift/oc-mirror/pull/591) * Bugfix for destination registry nested paths length (#590) [#590](https://github.com/openshift/oc-mirror/pull/590) * [OCPBUGS-6703](https://issues.redhat.com/browse/OCPBUGS-6703): fix: adds logic that searches for the correct name when using a heads… (#554) [#554](https://github.com/openshift/oc-mirror/pull/554) * Updating oc-mirror-plugin images to be consistent with ART (#515) [#515](https://github.com/openshift/oc-mirror/pull/515) * [OCPBUGS-5253](https://issues.redhat.com/browse/OCPBUGS-5253): Fix: fixes issues encountered by QE (#543) [#543](https://github.com/openshift/oc-mirror/pull/543) * [OCPBUGS-5253](https://issues.redhat.com/browse/OCPBUGS-5253): fix: Missing 'ImageContentSourcePolicy' and 'CatalogSou… (#542) [#542](https://github.com/openshift/oc-mirror/pull/542) * [OCPBUGS-4516](https://issues.redhat.com/browse/OCPBUGS-4516): fix: oc-mirror does not work as expected relative path for OCI format copy (#532) [#532](https://github.com/openshift/oc-mirror/pull/532) * [OCPBUGS-4365](https://issues.redhat.com/browse/OCPBUGS-4365): Fix cases where namespace or subnamespace may be empty (#530) [#530](https://github.com/openshift/oc-mirror/pull/530) * [OCPBUGS-4414](https://issues.redhat.com/browse/OCPBUGS-4414): fix (#528) [#528](https://github.com/openshift/oc-mirror/pull/528) * docs: adds grammar fixes to metadata-management.md (#521) [#521](https://github.com/openshift/oc-mirror/pull/521) * WRKLDS-547 (#519) [#519](https://github.com/openshift/oc-mirror/pull/519) * remove afflom (#520) [#520](https://github.com/openshift/oc-mirror/pull/520) * Add feature to mirror to alternative registry (#518) [#518](https://github.com/openshift/oc-mirror/pull/518) * Pr 512 follow (#517) [#517](https://github.com/openshift/oc-mirror/pull/517) * [CFE-538](https://issues.redhat.com/browse/CFE-538): WRKLDS-456 - WRKLDS-457: copy images from and to remote registry using local directory (oci format) (#512) [#512](https://github.com/openshift/oc-mirror/pull/512) * Fix --ignore-hisotry description and some format adjustment (#495) [#495](https://github.com/openshift/oc-mirror/pull/495) * updateURL: Allow overriding for CI builds (#514) [#514](https://github.com/openshift/oc-mirror/pull/514) * Migration of the diff logic from operator-registry + setting of defaultChannel fix by adding channel's Priority property (#497) [#497](https://github.com/openshift/oc-mirror/pull/497) * Create ParseReference function in the image package, that wraps around imagesource.ParseReference, adding support for "oci:" prefix (#503) [#503](https://github.com/openshift/oc-mirror/pull/503) * chore: remove jpower432 as approver (#505) [#505](https://github.com/openshift/oc-mirror/pull/505) * fix: remove release architecture validation at the config level (#501) [#501](https://github.com/openshift/oc-mirror/pull/501) * Updating oc-mirror-plugin images to be consistent with ART (#496) [#496](https://github.com/openshift/oc-mirror/pull/496) * [Full changelog](https://github.com/openshift/oc-mirror/compare/2dfc357af343e09f00eced3cd3b17127c82caf63...3f39dc6e5a01bae1c66fa8bc7c24553d032e2e4d) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/e9ad64992e81a10230e1759db6577db078f18b38) * : OCPBUGS-21429: Enable HTTP/2 CVE mitigation [#399](https://github.com/openshift/openshift-apiserver/pull/399) * [OCPBUGS-8717](https://issues.redhat.com/browse/OCPBUGS-8717): Clear metadata.namespace on projects before write. [#358](https://github.com/openshift/openshift-apiserver/pull/358) * [OCPBUGS-4339](https://issues.redhat.com/browse/OCPBUGS-4339): fix printer panic [#335](https://github.com/openshift/openshift-apiserver/pull/335) * [IR-259](https://issues.redhat.com/browse/IR-259): changing image stream importMode increments its generation [#329](https://github.com/openshift/openshift-apiserver/pull/329) * [IR-258](https://issues.redhat.com/browse/IR-258): ImageStreamImport manifest list support [#290](https://github.com/openshift/openshift-apiserver/pull/290) * bump to kube 1.25.2 [#320](https://github.com/openshift/openshift-apiserver/pull/320) * [OCPBUGS-2803](https://issues.redhat.com/browse/OCPBUGS-2803): Revert "projects: add rw mutex to auth cache" [#326](https://github.com/openshift/openshift-apiserver/pull/326) * Perform route host defaulting and update authz using v1 types. [#321](https://github.com/openshift/openshift-apiserver/pull/321) * Drop AllocateRouterShard from hostname allocation interface. [#322](https://github.com/openshift/openshift-apiserver/pull/322) * Use route/v1 types for route warnings. [#317](https://github.com/openshift/openshift-apiserver/pull/317) * Remove k8s.io/kubernetes deps from route validation/defaulting. [#319](https://github.com/openshift/openshift-apiserver/pull/319) * Condense the route host allocator abstraction. [#313](https://github.com/openshift/openshift-apiserver/pull/313) * Move route host assignment code out of the route REST strategy. [#315](https://github.com/openshift/openshift-apiserver/pull/315) * Make route validation operate on v1 types. [#312](https://github.com/openshift/openshift-apiserver/pull/312) * make api team approver [#316](https://github.com/openshift/openshift-apiserver/pull/316) * Remove use of %w formatting directive from t.Errorf call. [#293](https://github.com/openshift/openshift-apiserver/pull/293) * add retry on imagestreamtag update [#304](https://github.com/openshift/openshift-apiserver/pull/304) * Add coreydaley as reviewer/approver for pkg/build [#294](https://github.com/openshift/openshift-apiserver/pull/294) * Stop unnecessary project auth cache invalidations. [#295](https://github.com/openshift/openshift-apiserver/pull/295) * [Bug 2089402](https://bugzilla.redhat.com/show_bug.cgi?id=2089402): Validate Image labels correctly [#292](https://github.com/openshift/openshift-apiserver/pull/292) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/35df5a026c69f864c3ca499718256f6b2592d811...e9ad64992e81a10230e1759db6577db078f18b38) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/bde7e3af208ac9079de5646a3b47120dc762606f) * [OCPBUGS-41953](https://issues.redhat.com/browse/OCPBUGS-41953): Add adambkaplan as approver [#336](https://github.com/openshift/openshift-controller-manager/pull/336) * Updating ose-openshift-controller-manager images to be consistent with ART [#241](https://github.com/openshift/openshift-controller-manager/pull/241) * [OCPBUGS-978](https://issues.redhat.com/browse/OCPBUGS-978): gracefully release leases in OCM [#239](https://github.com/openshift/openshift-controller-manager/pull/239) * template namespace processing [#242](https://github.com/openshift/openshift-controller-manager/pull/242) * bump to kube 1.25.2 [#244](https://github.com/openshift/openshift-controller-manager/pull/244) * Remove route controllers [#240](https://github.com/openshift/openshift-controller-manager/pull/240) * remove route controllers from OCM process (openshift-controller-manager start) [#238](https://github.com/openshift/openshift-controller-manager/pull/238) * Updating ose-openshift-controller-manager images to be consistent with ART [#236](https://github.com/openshift/openshift-controller-manager/pull/236) * [Bug 2117235](https://bugzilla.redhat.com/show_bug.cgi?id=2117235): separate route controllers to a new command [#234](https://github.com/openshift/openshift-controller-manager/pull/234) * [Bug 2116715](https://bugzilla.redhat.com/show_bug.cgi?id=2116715): remove GenericResourceInformer code because it is not used anymore [#235](https://github.com/openshift/openshift-controller-manager/pull/235) * [BUILD-417](https://issues.redhat.com/browse/BUILD-417): Rebase k8s 1.24 [#226](https://github.com/openshift/openshift-controller-manager/pull/226) * [Bug 2110617](https://bugzilla.redhat.com/show_bug.cgi?id=2110617): Split route controller [#230](https://github.com/openshift/openshift-controller-manager/pull/230) * [BUILD-433](https://issues.redhat.com/browse/BUILD-433): Run builds in user namespaces without seccomp if BUILD_PRIVILEGED=false [#173](https://github.com/openshift/openshift-controller-manager/pull/173) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/79bfbb51f113f5098a39821f1891a21ffd446434...bde7e3af208ac9079de5646a3b47120dc762606f) ### [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics/tree/3d5dc18d2bee5ba7132560bf40790af997952d33) * [OCPBUGS-20706](https://issues.redhat.com/browse/OCPBUGS-20706): bump `x/net` to v0.17.0 [#106](https://github.com/openshift/openshift-state-metrics/pull/106) * Updating openshift-state-metrics images to be consistent with ART [#91](https://github.com/openshift/openshift-state-metrics/pull/91) * OWNERS: Add myself, and move former team members to emeritus [#90](https://github.com/openshift/openshift-state-metrics/pull/90) * Updating openshift-state-metrics images to be consistent with ART [#89](https://github.com/openshift/openshift-state-metrics/pull/89) * Updating openshift-state-metrics images to be consistent with ART [#88](https://github.com/openshift/openshift-state-metrics/pull/88) * [Full changelog](https://github.com/openshift/openshift-state-metrics/compare/78bc019d4b7d7a1b215711dcbeec240756a3d562...3d5dc18d2bee5ba7132560bf40790af997952d33) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/d09e51ae44b3ac6d27236b515c1f7c6da847689d) * [OCPBUGS-21557](https://issues.redhat.com/browse/OCPBUGS-21557): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#137](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/137) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#130](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/130) * Bug OCPBUGS-3774: Add SecretHashAnnotation to node service [#98](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/98) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#94](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/94) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#93](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/93) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#92](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/92) * Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART [#90](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/90) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/a6d74d7263737fda5684f54bae26b388e7cdee63...d09e51ae44b3ac6d27236b515c1f7c6da847689d) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/05657663c02be6d03d074d0f39a2b247cef9286a) * Bug OCPBUGS-19770: Set controller's SyncPeriod to 1 hour [#86](https://github.com/openshift/machine-api-provider-openstack/pull/86) * [OCPBUGS-10607](https://issues.redhat.com/browse/OCPBUGS-10607): Use TenantID if ProjectID is empty [#66](https://github.com/openshift/machine-api-provider-openstack/pull/66) * [OCPBUGS-10603](https://issues.redhat.com/browse/OCPBUGS-10603): machineset_controller: Stop caching clouds credentials [#65](https://github.com/openshift/machine-api-provider-openstack/pull/65) * [OCPBUGS-7155](https://issues.redhat.com/browse/OCPBUGS-7155): Address CVE-2022-41717 [#55](https://github.com/openshift/machine-api-provider-openstack/pull/55) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#47](https://github.com/openshift/machine-api-provider-openstack/pull/47) * Depend on CAPO v0.6.3 [#45](https://github.com/openshift/machine-api-provider-openstack/pull/45) * gofmt with Go v1.19 [#48](https://github.com/openshift/machine-api-provider-openstack/pull/48) * Update dependencies [#44](https://github.com/openshift/machine-api-provider-openstack/pull/44) * Updating ose-machine-api-provider-openstack images to be consistent with ART [#43](https://github.com/openshift/machine-api-provider-openstack/pull/43) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/0446d771465fa6e03ea8ed24f1cea706d0d2b15e...05657663c02be6d03d074d0f39a2b247cef9286a) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/f13e381e962777d48fadcaa3570a583e72aa80c7) * [OCPBUGS-20780](https://issues.redhat.com/browse/OCPBUGS-20780): deps: Upgrade golang.org/x/net to v0.17.0 [#277](https://github.com/openshift/cluster-api-provider-openstack/pull/277) * [OCPBUGS-2508](https://issues.redhat.com/browse/OCPBUGS-2508): Ensure network defs without subnet follow noAllowedAddressPairs [#247](https://github.com/openshift/cluster-api-provider-openstack/pull/247) * Updating ose-openstack-machine-controllers images to be consistent with ART [#244](https://github.com/openshift/cluster-api-provider-openstack/pull/244) * gofmt with Go v1.19 [#246](https://github.com/openshift/cluster-api-provider-openstack/pull/246) * [OCPBUGS-1765](https://issues.redhat.com/browse/OCPBUGS-1765): Apply noAllowedAddressPairs on intended subnets only [#242](https://github.com/openshift/cluster-api-provider-openstack/pull/242) * Updating ose-openstack-machine-controllers images to be consistent with ART [#239](https://github.com/openshift/cluster-api-provider-openstack/pull/239) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/4f21449a757895eebf1b21611c49a772669b11dc...f13e381e962777d48fadcaa3570a583e72aa80c7) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/b7e63d634cc7b2813d331d4a7e3e65209c669526) * NO-ISSUE: [release-4.12] Backport e2e fixes [#880](https://github.com/openshift/operator-framework-olm/pull/880) * [OCPBUGS-38610](https://issues.redhat.com/browse/OCPBUGS-38610): (fix) Resolver: list CatSrc using client, instead of referring to registry-server cache (#3349) [#875](https://github.com/openshift/operator-framework-olm/pull/875) * [OCPBUGS-42161](https://issues.redhat.com/browse/OCPBUGS-42161): adds paginating lister for evaluating CRs' upgrade fitness versus new CRDs [#873](https://github.com/openshift/operator-framework-olm/pull/873) * [OCPBUGS-41881](https://issues.redhat.com/browse/OCPBUGS-41881): [CARRY] perform operator apiService certificate validity checks directly [#866](https://github.com/openshift/operator-framework-olm/pull/866) * [OCPBUGS-32854](https://issues.redhat.com/browse/OCPBUGS-32854): bump go-jose to v2.6.3 [#782](https://github.com/openshift/operator-framework-olm/pull/782) * [OCPBUGS-35242](https://issues.redhat.com/browse/OCPBUGS-35242): Unblock CI [#773](https://github.com/openshift/operator-framework-olm/pull/773) * [OCPBUGS-27563](https://issues.redhat.com/browse/OCPBUGS-27563), [OCPBUGS-27568](https://issues.redhat.com/browse/OCPBUGS-27568), [OCPBUGS-27648](https://issues.redhat.com/browse/OCPBUGS-27648), [OCPBUGS-27653](https://issues.redhat.com/browse/OCPBUGS-27653): bump go-git/v5 to 5.11.0 [#688](https://github.com/openshift/operator-framework-olm/pull/688) * [OCPBUGS-27962](https://issues.redhat.com/browse/OCPBUGS-27962): [CARRY] SSC RBAC [#671](https://github.com/openshift/operator-framework-olm/pull/671) * [OCPBUGS-28229](https://issues.redhat.com/browse/OCPBUGS-28229): Registry Pod Controller Flag [#673](https://github.com/openshift/operator-framework-olm/pull/673) * [OCPBUGS-24619](https://issues.redhat.com/browse/OCPBUGS-24619): Update to latest k8s v0.25.15 API server and enable HTTP/2 DoS mitigations [#660](https://github.com/openshift/operator-framework-olm/pull/660) * [OCPBUGS-22132](https://issues.redhat.com/browse/OCPBUGS-22132): [release-4.12] Bump golang.org/x/net to v0.17.0 [#590](https://github.com/openshift/operator-framework-olm/pull/590) * [OCPBUGS-18512](https://issues.redhat.com/browse/OCPBUGS-18512), [RHIBMCS-168](https://issues.redhat.com/browse/RHIBMCS-168): Copied csv listing backport [#559](https://github.com/openshift/operator-framework-olm/pull/559) * Introduce DOWNSTREAM_OWNERS file [#541](https://github.com/openshift/operator-framework-olm/pull/541) * Allow cpb to be statically compiled / exempt from FIPS compliance [#512](https://github.com/openshift/operator-framework-olm/pull/512) * [OCPBUGS-15858](https://issues.redhat.com/browse/OCPBUGS-15858): fix dynamic conversion webhook [#503](https://github.com/openshift/operator-framework-olm/pull/503) * [OCPBUGS-15737](https://issues.redhat.com/browse/OCPBUGS-15737): Re-enable psa plugin [#500](https://github.com/openshift/operator-framework-olm/pull/500) * [OCPBUGS-7650](https://issues.redhat.com/browse/OCPBUGS-7650): Catalog Pod Startup Probe Timeout [#450](https://github.com/openshift/operator-framework-olm/pull/450) * Updating operator-registry images to be consistent with ART [#397](https://github.com/openshift/operator-framework-olm/pull/397) * [OCPBUGS-7825](https://issues.redhat.com/browse/OCPBUGS-7825): Set openshift.io/scc label to empty [#456](https://github.com/openshift/operator-framework-olm/pull/456) * [OCPBUGS-7769](https://issues.redhat.com/browse/OCPBUGS-7769): [release-4.12] update cluster policy operator dependency [#454](https://github.com/openshift/operator-framework-olm/pull/454) * [OCPBUGS-7556](https://issues.redhat.com/browse/OCPBUGS-7556): Defuse E2e timebomb [#449](https://github.com/openshift/operator-framework-olm/pull/449) * [OCPBUGS-7086](https://issues.redhat.com/browse/OCPBUGS-7086): cherry-pick pull request refactor FBC caching (#1051) f… [#441](https://github.com/openshift/operator-framework-olm/pull/441) * [OCPBUGS-6260](https://issues.redhat.com/browse/OCPBUGS-6260): Catalog, fatal error: concurrent map read and map write [#440](https://github.com/openshift/operator-framework-olm/pull/440) * [OCPBUGS-7025](https://issues.redhat.com/browse/OCPBUGS-7025): Set ImagePullPolicy of bundle unpacker to "IfNotPresent" for image digests [#439](https://github.com/openshift/operator-framework-olm/pull/439) * [OCPBUGS-3881](https://issues.redhat.com/browse/OCPBUGS-3881): Default to legacy psa settings [#426](https://github.com/openshift/operator-framework-olm/pull/426) * [OCPBUGS-4951](https://issues.redhat.com/browse/OCPBUGS-4951): Bump go and k8s [#424](https://github.com/openshift/operator-framework-olm/pull/424) * Updating operator-lifecycle-manager images to be consistent with ART [#398](https://github.com/openshift/operator-framework-olm/pull/398) * [OCPBUGS-3837](https://issues.redhat.com/browse/OCPBUGS-3837): fix service account token secret reference (#2862) [#412](https://github.com/openshift/operator-framework-olm/pull/412) * [OCPBUGS-3795](https://issues.redhat.com/browse/OCPBUGS-3795): Order an operator CR's status.Component.Refs array (#2880) [#411](https://github.com/openshift/operator-framework-olm/pull/411) * Update OWNERS file [#402](https://github.com/openshift/operator-framework-olm/pull/402) * test/e2e: Preserve the existing environment when using exec.Command [#403](https://github.com/openshift/operator-framework-olm/pull/403) * Attempt workaround for https://issues.redhat.com/browse/CLOUDBLD-11068 [#399](https://github.com/openshift/operator-framework-olm/pull/399) * [OCPBUGS-1912](https://issues.redhat.com/browse/OCPBUGS-1912): Move opm diff to oc mirror [#391](https://github.com/openshift/operator-framework-olm/pull/391) * [OCPBUGS-122](https://issues.redhat.com/browse/OCPBUGS-122): Psa legacy catalog enablement [#383](https://github.com/openshift/operator-framework-olm/pull/383) * [OLM-2695](https://issues.redhat.com/browse/OLM-2695): Adds downstream only CSV Namespace Labeler Plug-In [#370](https://github.com/openshift/operator-framework-olm/pull/370) * [OCPBUGS-1004](https://issues.redhat.com/browse/OCPBUGS-1004): dump descriptive source info on error instead of the source data (#1021) [#380](https://github.com/openshift/operator-framework-olm/pull/380) * [OCPBUGS-858](https://issues.redhat.com/browse/OCPBUGS-858): Package Server Manager should enforce expected csv values [#378](https://github.com/openshift/operator-framework-olm/pull/378) * [OCPBUGS-650](https://issues.redhat.com/browse/OCPBUGS-650): fixing reliance on candidate channel containing all referenced bundle… [#379](https://github.com/openshift/operator-framework-olm/pull/379) * [OLM-2690](https://issues.redhat.com/browse/OLM-2690): Subscription affinity [#359](https://github.com/openshift/operator-framework-olm/pull/359) * OLM-1803 channel upgrade graph visualization [#377](https://github.com/openshift/operator-framework-olm/pull/377) * [OLM-2753](https://issues.redhat.com/browse/OLM-2753): Semver veneer pipe support [#376](https://github.com/openshift/operator-framework-olm/pull/376) * [OCPBUGS-643](https://issues.redhat.com/browse/OCPBUGS-643), [OLM-2726](https://issues.redhat.com/browse/OLM-2726): downstreaming `opm serve` changes from operator-registry [#374](https://github.com/openshift/operator-framework-olm/pull/374) * [OCPBUGS-78](https://issues.redhat.com/browse/OCPBUGS-78): Cleanup conversion webhooks when an operator is uninstalled [#360](https://github.com/openshift/operator-framework-olm/pull/360) * [OCPBUGS-440](https://issues.redhat.com/browse/OCPBUGS-440): improve CA and certificate generation [#361](https://github.com/openshift/operator-framework-olm/pull/361) * noqe: script fixes [#369](https://github.com/openshift/operator-framework-olm/pull/369) * (psa) restrict olm namespace + remove labels from openshift-operators ns [#367](https://github.com/openshift/operator-framework-olm/pull/367) * noqe: operator-registry QoL improvements [#362](https://github.com/openshift/operator-framework-olm/pull/362) * noqe: Update magic catalog for psa changes (#2842) [#365](https://github.com/openshift/operator-framework-olm/pull/365) * Psa downstream [#349](https://github.com/openshift/operator-framework-olm/pull/349) * Add a more robust script for automating the upstream/downstream sync process [#351](https://github.com/openshift/operator-framework-olm/pull/351) * Support Global Operators in Console [#326](https://github.com/openshift/operator-framework-olm/pull/326) * [Bug 2097557](https://bugzilla.redhat.com/show_bug.cgi?id=2097557): use env var for OCP version instead of clusterversion status [#346](https://github.com/openshift/operator-framework-olm/pull/346) * Explicitly override the global catalog namespace [#345](https://github.com/openshift/operator-framework-olm/pull/345) * Sync 07/26 [#343](https://github.com/openshift/operator-framework-olm/pull/343) * [Bug 2105045](https://bugzilla.redhat.com/show_bug.cgi?id=2105045): Only update namespaces when OperatorGroup labels need to change. (#2809) [#336](https://github.com/openshift/operator-framework-olm/pull/336) * Sync 0707 [#335](https://github.com/openshift/operator-framework-olm/pull/335) * [Bug 2101357](https://bugzilla.redhat.com/show_bug.cgi?id=2101357): concurrent write bug fix [#337](https://github.com/openshift/operator-framework-olm/pull/337) * [Bug 2106449](https://bugzilla.redhat.com/show_bug.cgi?id=2106449): Update containerd version [#338](https://github.com/openshift/operator-framework-olm/pull/338) * Updating operator-lifecycle-manager images to be consistent with ART [#334](https://github.com/openshift/operator-framework-olm/pull/334) * Update makefile to default to gsed if present [#313](https://github.com/openshift/operator-framework-olm/pull/313) * Updating operator-registry images to be consistent with ART [#333](https://github.com/openshift/operator-framework-olm/pull/333) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/5ea0428ed52bf0cae15094d7e4fb24b0953932d7...b7e63d634cc7b2813d331d4a7e3e65209c669526) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/38b9ed80140123508ab5012e8fa0b067e7aafc12) * NO-ISSUE: Updating marketplace-operator images to be consistent with ART [4.12] [#510](https://github.com/operator-framework/operator-marketplace/pull/510) * [OCPBUGS-32081](https://issues.redhat.com/browse/OCPBUGS-32081): update golang.org/x/net for CVE-2023-45288 [#567](https://github.com/operator-framework/operator-marketplace/pull/567) * [OCPBUGS-20955](https://issues.redhat.com/browse/OCPBUGS-20955): [release-4.12] bump golang.org/x/net to 0.17.0 [#550](https://github.com/operator-framework/operator-marketplace/pull/550) * [OCPBUGS-18503](https://issues.redhat.com/browse/OCPBUGS-18503): remove a race condition [#533](https://github.com/operator-framework/operator-marketplace/pull/533) * [OCPBUGS-14109](https://issues.redhat.com/browse/OCPBUGS-14109): Revert default catsrc diff changes [#519](https://github.com/operator-framework/operator-marketplace/pull/519) * [OCPBUGS-7108](https://issues.redhat.com/browse/OCPBUGS-7108): Default CatalogSource aren't always reverted to default settings [#506](https://github.com/operator-framework/operator-marketplace/pull/506) * [OCPBUGS-5468](https://issues.redhat.com/browse/OCPBUGS-5468): Remove PSA audit and warnings [#503](https://github.com/operator-framework/operator-marketplace/pull/503) * [OCPBUGS-5474](https://issues.redhat.com/browse/OCPBUGS-5474): Run Default CatalogSource in Restricted mode [#500](https://github.com/operator-framework/operator-marketplace/pull/500) * [OCPBUGS-4763](https://issues.redhat.com/browse/OCPBUGS-4763): Unenforce PSA Restrictions [#494](https://github.com/operator-framework/operator-marketplace/pull/494) * [OCPBUGS-2223](https://issues.redhat.com/browse/OCPBUGS-2223): Update Default CatalogSource Images to 4.12 tag [#487](https://github.com/operator-framework/operator-marketplace/pull/487) * Updating marketplace-operator images to be consistent with ART [#479](https://github.com/operator-framework/operator-marketplace/pull/479) * [OCPBUGS-441](https://issues.redhat.com/browse/OCPBUGS-441): Dockerfile.okd: include custom OperatorHub manifest [#481](https://github.com/operator-framework/operator-marketplace/pull/481) * (psa) make marketplace namespace restricted [#484](https://github.com/operator-framework/operator-marketplace/pull/484) * (namespace) remove PSA baseline enforcement [#483](https://github.com/operator-framework/operator-marketplace/pull/483) * Add PSA enforcement label [#480](https://github.com/operator-framework/operator-marketplace/pull/480) * [Bug 2010375](https://bugzilla.redhat.com/show_bug.cgi?id=2010375): Clarify reason/steps to diagnose in *CatalogError prom alert [#469](https://github.com/operator-framework/operator-marketplace/pull/469) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/c3bae405daf605563d85fed86de0748d3b424bff...38b9ed80140123508ab5012e8fa0b067e7aafc12) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/87ab37895e56ea3c80be0163571fa593ce96d86b) * [OCPBUGS-23162](https://issues.redhat.com/browse/OCPBUGS-23162): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#131](https://github.com/openshift/ovirt-csi-driver/pull/131) * Updating ose-ovirt-csi-driver images to be consistent with ART [#122](https://github.com/openshift/ovirt-csi-driver/pull/122) * Bump go version [#123](https://github.com/openshift/ovirt-csi-driver/pull/123) * improved logging if no storage domain is found by name [#121](https://github.com/openshift/ovirt-csi-driver/pull/121) * updated go-ovirt-client [#120](https://github.com/openshift/ovirt-csi-driver/pull/120) * Added @Darth-Mera as approver [#119](https://github.com/openshift/ovirt-csi-driver/pull/119) * added k8s deployment files [#114](https://github.com/openshift/ovirt-csi-driver/pull/114) * update go-ovirt-client [#113](https://github.com/openshift/ovirt-csi-driver/pull/113) * Updating ose-ovirt-csi-driver images to be consistent with ART [#112](https://github.com/openshift/ovirt-csi-driver/pull/112) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/cd3370fb298994289659a5a9c73262c007e8a836...87ab37895e56ea3c80be0163571fa593ce96d86b) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/e5e02335951010745a42f472a0656b5948ffdade) * [OCPBUGS-23266](https://issues.redhat.com/browse/OCPBUGS-23266): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#128](https://github.com/openshift/ovirt-csi-driver-operator/pull/128) * [OCPBUGS-18417](https://issues.redhat.com/browse/OCPBUGS-18417): set TLS cipher suites in Kube RBAC sidecars [#121](https://github.com/openshift/ovirt-csi-driver-operator/pull/121) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#108](https://github.com/openshift/ovirt-csi-driver-operator/pull/108) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#107](https://github.com/openshift/ovirt-csi-driver-operator/pull/107) * updated go-ovirt-client [#106](https://github.com/openshift/ovirt-csi-driver-operator/pull/106) * [OCPRHV-685](https://issues.redhat.com/browse/OCPRHV-685): added secret informer for daemonset [#104](https://github.com/openshift/ovirt-csi-driver-operator/pull/104) * Added @Darth-Mera as approver [#105](https://github.com/openshift/ovirt-csi-driver-operator/pull/105) * update go-ovirt-client [#103](https://github.com/openshift/ovirt-csi-driver-operator/pull/103) * Add client certificate and key to service monitor [#102](https://github.com/openshift/ovirt-csi-driver-operator/pull/102) * [Bug 2088033](https://bugzilla.redhat.com/show_bug.cgi?id=2088033): Clear text password stored on disk [#99](https://github.com/openshift/ovirt-csi-driver-operator/pull/99) * Update credentials automatically [#101](https://github.com/openshift/ovirt-csi-driver-operator/pull/101) * Updating ose-cluster-ovirt-csi-operator images to be consistent with ART [#100](https://github.com/openshift/ovirt-csi-driver-operator/pull/100) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/1c75c1240c4c0feda419378d6f63767cddab50df...e5e02335951010745a42f472a0656b5948ffdade) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) * [OCPBUGS-6309](https://issues.redhat.com/browse/OCPBUGS-6309): Fix swapped CPU socket and thread mapping [#173](https://github.com/openshift/cluster-api-provider-ovirt/pull/173) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#170](https://github.com/openshift/cluster-api-provider-ovirt/pull/170) * Improve logging [#168](https://github.com/openshift/cluster-api-provider-ovirt/pull/168) * update go-ovirt-client [#167](https://github.com/openshift/cluster-api-provider-ovirt/pull/167) * added wrapped klogr for unified logging [#166](https://github.com/openshift/cluster-api-provider-ovirt/pull/166) * Remove duplicate MemoryMB validation [#165](https://github.com/openshift/cluster-api-provider-ovirt/pull/165) * Ocprhv 681 automatic credentials update [#161](https://github.com/openshift/cluster-api-provider-ovirt/pull/161) * Added @Darth-Mera as approver [#164](https://github.com/openshift/cluster-api-provider-ovirt/pull/164) * Add validations tests [#163](https://github.com/openshift/cluster-api-provider-ovirt/pull/163) * updated readme and custom capo docs [#162](https://github.com/openshift/cluster-api-provider-ovirt/pull/162) * Refactor controller structure [#160](https://github.com/openshift/cluster-api-provider-ovirt/pull/160) * Disable memory ballooning in high perf workers [#143](https://github.com/openshift/cluster-api-provider-ovirt/pull/143) * Fix OCPRHV-789 [#159](https://github.com/openshift/cluster-api-provider-ovirt/pull/159) * [OCPRHV-788](https://issues.redhat.com/browse/OCPRHV-788): added check for high_performance to set placement_policy_affinity [#144](https://github.com/openshift/cluster-api-provider-ovirt/pull/144) * added functional test for automatically updating credentials [#158](https://github.com/openshift/cluster-api-provider-ovirt/pull/158) * set serial console enabled for high performance VMs [#157](https://github.com/openshift/cluster-api-provider-ovirt/pull/157) * enable headless for high performance VMs [#156](https://github.com/openshift/cluster-api-provider-ovirt/pull/156) * disable soundcard for high performance VMs [#155](https://github.com/openshift/cluster-api-provider-ovirt/pull/155) * dedicated functional test run script [#154](https://github.com/openshift/cluster-api-provider-ovirt/pull/154) * update envtest setup for CI [#153](https://github.com/openshift/cluster-api-provider-ovirt/pull/153) * added generation of crds [#150](https://github.com/openshift/cluster-api-provider-ovirt/pull/150) * removed test stage in dockerfile [#151](https://github.com/openshift/cluster-api-provider-ovirt/pull/151) * [OCPRHV-806](https://issues.redhat.com/browse/OCPRHV-806): added functional test for actuator [#148](https://github.com/openshift/cluster-api-provider-ovirt/pull/148) * added first set unit tests for machine validation [#147](https://github.com/openshift/cluster-api-provider-ovirt/pull/147) * Updating ose-ovirt-machine-controllers images to be consistent with ART [#146](https://github.com/openshift/cluster-api-provider-ovirt/pull/146) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/5a93d94c208baf4867bc41529cc379aeb25c9cc4...03e8cb50f9ffa28b48d8aeaeb8410ab1598750d1) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/2996be215b6dc887d9c439ad4256e47568eb7a0e) * [OCPBUGS-35876](https://issues.redhat.com/browse/OCPBUGS-35876): [release-4.12] ipv6+all protocols conntrack flush [#2214](https://github.com/openshift/ovn-kubernetes/pull/2214) * [OCPBUGS-29864](https://issues.redhat.com/browse/OCPBUGS-29864): CVE-2022-41723: avoid quadratic complexity in HPACK decoding [#2204](https://github.com/openshift/ovn-kubernetes/pull/2204) * [OCPBUGS-34273](https://issues.redhat.com/browse/OCPBUGS-34273), [OCPBUGS-34414](https://issues.redhat.com/browse/OCPBUGS-34414): Improves service iptables efficiency on start up + ICMP error messages to pass through [#2184](https://github.com/openshift/ovn-kubernetes/pull/2184) * [OCPBUGS-32990](https://issues.redhat.com/browse/OCPBUGS-32990): Bump OVS [#2144](https://github.com/openshift/ovn-kubernetes/pull/2144) * [OCPBUGS-33422](https://issues.redhat.com/browse/OCPBUGS-33422): [release-4.12] Full implementation of KEP-1669 ProxyTerminatingEndpoints + ETP=local fix [#2135](https://github.com/openshift/ovn-kubernetes/pull/2135) * [OCPBUGS-25889](https://issues.redhat.com/browse/OCPBUGS-25889): [release-4.12] OVN bump to 23.06.1-112 [#2154](https://github.com/openshift/ovn-kubernetes/pull/2154) * [OCPBUGS-23259](https://issues.redhat.com/browse/OCPBUGS-23259): [release-4.12] Update leaderelection config to allow retries [#2017](https://github.com/openshift/ovn-kubernetes/pull/2017) * [OCPBUGS-28598](https://issues.redhat.com/browse/OCPBUGS-28598): CARRY: Updates owners and adds Surya [#2034](https://github.com/openshift/ovn-kubernetes/pull/2034) * [OCPBUGS-26700](https://issues.redhat.com/browse/OCPBUGS-26700): [release-4.12] fixes MTU configuration on gateway router [#2015](https://github.com/openshift/ovn-kubernetes/pull/2015) * [OCPBUGS-24420](https://issues.redhat.com/browse/OCPBUGS-24420): OVNK/GW: Ignore headless services in syncServices [#1972](https://github.com/openshift/ovn-kubernetes/pull/1972) * [OCPBUGS-23981](https://issues.redhat.com/browse/OCPBUGS-23981): Netpol retryFramework cleanup [#1977](https://github.com/openshift/ovn-kubernetes/pull/1977) * [OCPBUGS-26243](https://issues.redhat.com/browse/OCPBUGS-26243): Fix Egress IP Deletion Handler to Prevent OVN Policy Leaks [#2006](https://github.com/openshift/ovn-kubernetes/pull/2006) * [OCPBUGS-25096](https://issues.redhat.com/browse/OCPBUGS-25096): Fragment oversized reply packets in LGW mode [#1984](https://github.com/openshift/ovn-kubernetes/pull/1984) * [OCPBUGS-22091](https://issues.redhat.com/browse/OCPBUGS-22091): Bump OVN to 23.06.1-39.el8fdp [#1943](https://github.com/openshift/ovn-kubernetes/pull/1943) * [OCPBUGS-18681](https://issues.redhat.com/browse/OCPBUGS-18681): Check libovsdbclient.ErrNotFound on wrapped errors [#1862](https://github.com/openshift/ovn-kubernetes/pull/1862) * [OCPBUGS-20241](https://issues.redhat.com/browse/OCPBUGS-20241): fix race condition in hybrid overlay DRIP alloc [#1932](https://github.com/openshift/ovn-kubernetes/pull/1932) * [OCPBUGS-18353](https://issues.redhat.com/browse/OCPBUGS-18353): Update bridge flow cache when the host address changes [#1872](https://github.com/openshift/ovn-kubernetes/pull/1872) * [OCPBUGS-14708](https://issues.redhat.com/browse/OCPBUGS-14708), [OCPBUGS-19089](https://issues.redhat.com/browse/OCPBUGS-19089), [OCPBUGS-19904](https://issues.redhat.com/browse/OCPBUGS-19904), [OCPBUGS-19906](https://issues.redhat.com/browse/OCPBUGS-19906): Dockerfile: bump OVN to ovn22.12-22.12.1-18.el8fdp [#1881](https://github.com/openshift/ovn-kubernetes/pull/1881) * [OCPBUGS-18054](https://issues.redhat.com/browse/OCPBUGS-18054): Emit node events only when retry failure [#1837](https://github.com/openshift/ovn-kubernetes/pull/1837) * [OCPBUGS-18652](https://issues.redhat.com/browse/OCPBUGS-18652): Do not return error if pod IP cannot be retrieved for `deletePeerPod` and perf improvements [#1903](https://github.com/openshift/ovn-kubernetes/pull/1903) * [OCPBUGS-19432](https://issues.redhat.com/browse/OCPBUGS-19432): Remove stale egressip status entry [#1892](https://github.com/openshift/ovn-kubernetes/pull/1892) * [OCPBUGS-18586](https://issues.redhat.com/browse/OCPBUGS-18586): Fix OVN SNATing on GR by enabling gateway_mtu on rtoe port of GR [#1856](https://github.com/openshift/ovn-kubernetes/pull/1856) * [OCPBUGS-18058](https://issues.redhat.com/browse/OCPBUGS-18058): [release-4.12] Create egress firewall with one db transaction [#1835](https://github.com/openshift/ovn-kubernetes/pull/1835) * [OCPBUGS-17675](https://issues.redhat.com/browse/OCPBUGS-17675): Don't return error on delete event that doesn't ave a chance to succeed. [#1814](https://github.com/openshift/ovn-kubernetes/pull/1814) * [OCPBUGS-17522](https://issues.redhat.com/browse/OCPBUGS-17522): [release-4.12] libovsdb: give monitor setup time to process than normal transactions [#1808](https://github.com/openshift/ovn-kubernetes/pull/1808) * [OCPBUGS-16336](https://issues.redhat.com/browse/OCPBUGS-16336): Backport support AllocateLoadBalancerNodePortsFalse [#1766](https://github.com/openshift/ovn-kubernetes/pull/1766) * [OCPBUGS-15593](https://issues.redhat.com/browse/OCPBUGS-15593): ovnkube-master pod failed to reconnect to ovn db due to ssl expire [#1730](https://github.com/openshift/ovn-kubernetes/pull/1730) * [OCPBUGS-15719](https://issues.redhat.com/browse/OCPBUGS-15719): [relase-4.12] Fix egressFirewall create error handling [#1746](https://github.com/openshift/ovn-kubernetes/pull/1746) * [OCPBUGS-13744](https://issues.redhat.com/browse/OCPBUGS-13744): Improve syncNodes to remove stale data [#1732](https://github.com/openshift/ovn-kubernetes/pull/1732) * [OCPBUGS-13885](https://issues.redhat.com/browse/OCPBUGS-13885): [release-4.12] Drop packets that were not properly SNATed [#1679](https://github.com/openshift/ovn-kubernetes/pull/1679) * [OCPBUGS-15388](https://issues.redhat.com/browse/OCPBUGS-15388): Fix stale SNAT entries for completed pods [#1723](https://github.com/openshift/ovn-kubernetes/pull/1723) * [OCPBUGS-15709](https://issues.redhat.com/browse/OCPBUGS-15709): [release-4.12] Remove non-existing functions test. [#1739](https://github.com/openshift/ovn-kubernetes/pull/1739) * [OCPBUGS-15424](https://issues.redhat.com/browse/OCPBUGS-15424): [release-4.12] Fix network policy to work with long namespace names [#1725](https://github.com/openshift/ovn-kubernetes/pull/1725) * [OCPBUGS-14982](https://issues.redhat.com/browse/OCPBUGS-14982): Validate port before deleting conntrack flow [#1713](https://github.com/openshift/ovn-kubernetes/pull/1713) * [OCPBUGS-14041](https://issues.redhat.com/browse/OCPBUGS-14041): Fix bug that resulted in routes not be restored to a new vnic [#1681](https://github.com/openshift/ovn-kubernetes/pull/1681) * [OCPBUGS-13953](https://issues.redhat.com/browse/OCPBUGS-13953): [release-4.12] Use loadbalancer.Name as client index [#1680](https://github.com/openshift/ovn-kubernetes/pull/1680) * [OCPBUGS-13599](https://issues.redhat.com/browse/OCPBUGS-13599): Call SyncEndpoints from AddService [#1673](https://github.com/openshift/ovn-kubernetes/pull/1673) * [OCPBUGS-7439](https://issues.redhat.com/browse/OCPBUGS-7439): [release-4.12]: Egress Service: Fix nodeSelector parsing [#1529](https://github.com/openshift/ovn-kubernetes/pull/1529) * [OCPBUGS-12768](https://issues.redhat.com/browse/OCPBUGS-12768): : [release-4.12] Delete equivalent ACLs when searching by predicate. [#1661](https://github.com/openshift/ovn-kubernetes/pull/1661) * [OCPBUGS-12265](https://issues.redhat.com/browse/OCPBUGS-12265): [release-4.12] Network scale metrics [#1653](https://github.com/openshift/ovn-kubernetes/pull/1653) * [OCPBUGS-8226](https://issues.redhat.com/browse/OCPBUGS-8226): fix hybridOverlay DRIP in ICNIv1 pods [#1633](https://github.com/openshift/ovn-kubernetes/pull/1633) * [OCPBUGS-11701](https://issues.redhat.com/browse/OCPBUGS-11701): [release-4.12] CARRY: use "prefer local" for annotated services [#1638](https://github.com/openshift/ovn-kubernetes/pull/1638) * [OCPBUGS-11109](https://issues.redhat.com/browse/OCPBUGS-11109): [release-4.12] Batch potentially big transaction on egress firewall ACLs migration [#1617](https://github.com/openshift/ovn-kubernetes/pull/1617) * [OCPBUGS-10947](https://issues.redhat.com/browse/OCPBUGS-10947): [release-4.12] Egress firewall fix retry [#1610](https://github.com/openshift/ovn-kubernetes/pull/1610) * [OCPBUGS-10314](https://issues.redhat.com/browse/OCPBUGS-10314): [release-4.12] Handle Completed pods deletion [#1581](https://github.com/openshift/ovn-kubernetes/pull/1581) * Updating ovn-kubernetes-microshift images to be consistent with ART [#1288](https://github.com/openshift/ovn-kubernetes/pull/1288) * [OCPBUGS-10632](https://issues.redhat.com/browse/OCPBUGS-10632): Check the "Serving" field for endpoints [#1569](https://github.com/openshift/ovn-kubernetes/pull/1569) * [OCPBUGS-6034](https://issues.redhat.com/browse/OCPBUGS-6034): Update egress node assignability on every egress node update [#1483](https://github.com/openshift/ovn-kubernetes/pull/1483) * [OCPBUGS-7732](https://issues.redhat.com/browse/OCPBUGS-7732): Fix leak in service controller cache [#1545](https://github.com/openshift/ovn-kubernetes/pull/1545) * [OCPBUGS-10490](https://issues.redhat.com/browse/OCPBUGS-10490): [release-4.12] Move checkForStaleOVSInterfaces and related code to node.go [#1595](https://github.com/openshift/ovn-kubernetes/pull/1595) * [OCPBUGS-10318](https://issues.redhat.com/browse/OCPBUGS-10318): [release-4.12] node: add node healthz server for cloud load balancers [#1570](https://github.com/openshift/ovn-kubernetes/pull/1570) * [OCPBUGS-7346](https://issues.redhat.com/browse/OCPBUGS-7346): [release-4.12] Fully remove dependency on default gateway for services [#1577](https://github.com/openshift/ovn-kubernetes/pull/1577) * [OCPBUGS-6957](https://issues.redhat.com/browse/OCPBUGS-6957): [release-4.12] Ensure routes are not duplicated [#1503](https://github.com/openshift/ovn-kubernetes/pull/1503) * [OCPBUGS-8501](https://issues.redhat.com/browse/OCPBUGS-8501), [OCPBUGS-8506](https://issues.redhat.com/browse/OCPBUGS-8506), [OCPBUGS-8508](https://issues.redhat.com/browse/OCPBUGS-8508): [release-4.12] Fix EFW's name truncation logic & make EFW ACLs unique using extIDs [#1559](https://github.com/openshift/ovn-kubernetes/pull/1559) * [OCPBUGS-7223](https://issues.redhat.com/browse/OCPBUGS-7223): node: don't consider internal masquerade addresses as node IP addresses [#1528](https://github.com/openshift/ovn-kubernetes/pull/1528) * [OCPBUGS-7317](https://issues.redhat.com/browse/OCPBUGS-7317): [release-4.12] Delete stale egress ip snat entries by node [#1520](https://github.com/openshift/ovn-kubernetes/pull/1520) * [OCPBUGS-7026](https://issues.redhat.com/browse/OCPBUGS-7026): Bump OVN to 22.12 and turn off neighbour response in router options. [#1521](https://github.com/openshift/ovn-kubernetes/pull/1521) * [OCPBUGS-6040](https://issues.redhat.com/browse/OCPBUGS-6040): addMasqueradeRoute: fallback to gateway interface IPs [#1484](https://github.com/openshift/ovn-kubernetes/pull/1484) * [OCPBUGS-7230](https://issues.redhat.com/browse/OCPBUGS-7230): Delete IGMP Groups when deleting stale chassis [#1516](https://github.com/openshift/ovn-kubernetes/pull/1516) * [OCPBUGS-3399](https://issues.redhat.com/browse/OCPBUGS-3399): Drop in-cluster traffic towards svcCIDR at wrong port [#1490](https://github.com/openshift/ovn-kubernetes/pull/1490) * [OCPBUGS-6961](https://issues.redhat.com/browse/OCPBUGS-6961): update base image of Dockerfile [#1504](https://github.com/openshift/ovn-kubernetes/pull/1504) * [OCPBUGS-6823](https://issues.redhat.com/browse/OCPBUGS-6823): [release-4.12] Fix Egress FW ACL rules in dualstack mode [#1500](https://github.com/openshift/ovn-kubernetes/pull/1500) * [OCPBUGS-4862](https://issues.redhat.com/browse/OCPBUGS-4862): Correct the deletion of noHostSubnet nodes [#1470](https://github.com/openshift/ovn-kubernetes/pull/1470) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): ovnkube-trace: run ovn-sbctl and ovn-trace with --no-leader-only [#1489](https://github.com/openshift/ovn-kubernetes/pull/1489) * [OCPBUGS-5841](https://issues.redhat.com/browse/OCPBUGS-5841): ovnkube-node: Existing management port check [#1475](https://github.com/openshift/ovn-kubernetes/pull/1475) * [OCPBUGS-6812](https://issues.redhat.com/browse/OCPBUGS-6812): [release-4.12] Ensure loadbalancer cleanup doesn't fail [#1497](https://github.com/openshift/ovn-kubernetes/pull/1497) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): Bump OVN to 22.09.0-54 [#1488](https://github.com/openshift/ovn-kubernetes/pull/1488) * [OCPBUGS-5923](https://issues.redhat.com/browse/OCPBUGS-5923): [release-4.12] Fix egress firewall to allow inbound connections in both gw modes [#1477](https://github.com/openshift/ovn-kubernetes/pull/1477) * [OCPBUGS-5046](https://issues.redhat.com/browse/OCPBUGS-5046): [release-4.12] egressip: fix test data race accessing podAssignment cache [#1467](https://github.com/openshift/ovn-kubernetes/pull/1467) * [OCPBUGS-3651](https://issues.redhat.com/browse/OCPBUGS-3651): downstream windows fixes [#1384](https://github.com/openshift/ovn-kubernetes/pull/1384) * [OCPBUGS-4533](https://issues.redhat.com/browse/OCPBUGS-4533): Move check_pkt_larger to gateway router ports [#1420](https://github.com/openshift/ovn-kubernetes/pull/1420) * [OCPBUGS-3651](https://issues.redhat.com/browse/OCPBUGS-3651): [release-4.12] cherry-pick hybrid overlay fixes from master branch [#1460](https://github.com/openshift/ovn-kubernetes/pull/1460) * Bug OCPBUGS-4383: Don't log in iterateRetryResources when there are no retry entries [#1413](https://github.com/openshift/ovn-kubernetes/pull/1413) * [OCPBUGS-4098](https://issues.redhat.com/browse/OCPBUGS-4098): [release-4.12] egress ip: Skip mgmt ports that cannot have assignable IP addresses [#1429](https://github.com/openshift/ovn-kubernetes/pull/1429) * [OCPBUGS-4884](https://issues.redhat.com/browse/OCPBUGS-4884): [release-4.12] Fixes scenario where deleted + completed pods may leak [#1451](https://github.com/openshift/ovn-kubernetes/pull/1451) * [OCPBUGS-4835](https://issues.redhat.com/browse/OCPBUGS-4835): [4.12] Fix address set cleanup: only delete address sets owned by given object. [#1446](https://github.com/openshift/ovn-kubernetes/pull/1446) * [OCPBUGS-4760](https://issues.redhat.com/browse/OCPBUGS-4760): [4.12] Avoid duplicate transactions and minimize handlers with empty namespace selectors [#1439](https://github.com/openshift/ovn-kubernetes/pull/1439) * [OCPBUGS-4286](https://issues.redhat.com/browse/OCPBUGS-4286): Fix delete equivalent acls [#1406](https://github.com/openshift/ovn-kubernetes/pull/1406) * [OCPBUGS-3378](https://issues.redhat.com/browse/OCPBUGS-3378): Set the node as reachable only when it is being added as an egressip node [#1402](https://github.com/openshift/ovn-kubernetes/pull/1402) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): Support LB Session Affinity TimeOut [#1427](https://github.com/openshift/ovn-kubernetes/pull/1427) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): [release-4.12] Dockerfile: bump OVN to 22.09.0-25 [#1425](https://github.com/openshift/ovn-kubernetes/pull/1425) * Bug OCPBUGS-4379: apply retry logic to ovnk-node controllers [#1411](https://github.com/openshift/ovn-kubernetes/pull/1411) * [OCPBUGS-4361](https://issues.redhat.com/browse/OCPBUGS-4361): Bp ovnkube trace changes [#1408](https://github.com/openshift/ovn-kubernetes/pull/1408) * [OCPBUGS-4505](https://issues.redhat.com/browse/OCPBUGS-4505): pods: deleteLogicalPort should not fail when node is gone [#1419](https://github.com/openshift/ovn-kubernetes/pull/1419) * [OCPBUGS-4453](https://issues.redhat.com/browse/OCPBUGS-4453): Set NODAD flag on masquerade address [#1416](https://github.com/openshift/ovn-kubernetes/pull/1416) * [Release 4.12] OCPBUGS-3397: Avoid Remetric pods [#1399](https://github.com/openshift/ovn-kubernetes/pull/1399) * [OCPBUGS-3390](https://issues.redhat.com/browse/OCPBUGS-3390): Handle k8s watcher restart scenario [#1359](https://github.com/openshift/ovn-kubernetes/pull/1359) * [OCPBUGS-3798](https://issues.redhat.com/browse/OCPBUGS-3798): [4.12] Dockerfile: bump regular image to OVS 2.17.0-62 [#1409](https://github.com/openshift/ovn-kubernetes/pull/1409) * [OCPBUGS-4356](https://issues.redhat.com/browse/OCPBUGS-4356): Bump OVN to 22.09.0-22 [#1407](https://github.com/openshift/ovn-kubernetes/pull/1407) * [OCPBUGS-2896](https://issues.redhat.com/browse/OCPBUGS-2896): Refactor retry into its own pkg [#1376](https://github.com/openshift/ovn-kubernetes/pull/1376) * Updating ovn-kubernetes-base images to be consistent with ART [#1287](https://github.com/openshift/ovn-kubernetes/pull/1287) * [OCPBUGS-3798](https://issues.redhat.com/browse/OCPBUGS-3798): [4.12] Dockerfile: bump OVS to 2.17.0-62.el8fdp [#1387](https://github.com/openshift/ovn-kubernetes/pull/1387) * [OCPBUGS-3977](https://issues.redhat.com/browse/OCPBUGS-3977): Handle expired entry while handling dns update [#1392](https://github.com/openshift/ovn-kubernetes/pull/1392) * [OCPBUGS-3871](https://issues.redhat.com/browse/OCPBUGS-3871): Ignore addresses in masquerade subnet when retrieving gateway IPs [#1386](https://github.com/openshift/ovn-kubernetes/pull/1386) * [OCPBUGS-3348](https://issues.redhat.com/browse/OCPBUGS-3348): Validate node subnet annotations against cluster networks [#1351](https://github.com/openshift/ovn-kubernetes/pull/1351) * [OCPBUGS-3658](https://issues.redhat.com/browse/OCPBUGS-3658): [release-4.12] Support proper parsing of IPs with leading zeros [#1379](https://github.com/openshift/ovn-kubernetes/pull/1379) * [OCPBUGS-3773](https://issues.redhat.com/browse/OCPBUGS-3773): Adjust ovs bundle timeout [#1382](https://github.com/openshift/ovn-kubernetes/pull/1382) * [OCPBUGS-3468](https://issues.redhat.com/browse/OCPBUGS-3468): Disable packet MTU check when OVS HW Offload is enabled [#1368](https://github.com/openshift/ovn-kubernetes/pull/1368) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): Adapt ovnkube-trace to work with external controlplane [#1363](https://github.com/openshift/ovn-kubernetes/pull/1363) * [OCPBUGS-3075](https://issues.redhat.com/browse/OCPBUGS-3075): [release-4.12] Fix netpol races [#1347](https://github.com/openshift/ovn-kubernetes/pull/1347) * [OCPBUGS-3346](https://issues.redhat.com/browse/OCPBUGS-3346): vendor: bump libovsdb to 8f21d188c3a50d0ce378bd66ec68215967aaad77 [#1348](https://github.com/openshift/ovn-kubernetes/pull/1348) * [OCPBUGS-3369](https://issues.redhat.com/browse/OCPBUGS-3369): Fix mac address not set in SRIOV container interface [#1361](https://github.com/openshift/ovn-kubernetes/pull/1361) * [OCPBUGS-3221](https://issues.redhat.com/browse/OCPBUGS-3221): Allow empty nexthop in L3GatewayConfig node annotation [#1356](https://github.com/openshift/ovn-kubernetes/pull/1356) * [OCPBUGS-3003](https://issues.redhat.com/browse/OCPBUGS-3003): Ignore non-ready endpoints when processing endpointslices [#1344](https://github.com/openshift/ovn-kubernetes/pull/1344) * [OCPBUGS-2826](https://issues.redhat.com/browse/OCPBUGS-2826): ovnkube-trace: Fix ofproto/trace for IPv6 [#1338](https://github.com/openshift/ovn-kubernetes/pull/1338) * [OCPBUGS-1520](https://issues.redhat.com/browse/OCPBUGS-1520): Fixes SNAT-ing Logic for EgressIPs [#1331](https://github.com/openshift/ovn-kubernetes/pull/1331) * [OCPBUGS-1520](https://issues.redhat.com/browse/OCPBUGS-1520): Prioritize adding events to handlers for shared resources [#1333](https://github.com/openshift/ovn-kubernetes/pull/1333) * [OCPBUGS-1643](https://issues.redhat.com/browse/OCPBUGS-1643): Add logging verbosity to configuring OVN logs [#1324](https://github.com/openshift/ovn-kubernetes/pull/1324) * [OCPBUGS-2175](https://issues.redhat.com/browse/OCPBUGS-2175): Allocate Hybrid Overlay IP on node updates too [#1319](https://github.com/openshift/ovn-kubernetes/pull/1319) * [OCPBUGS-2004](https://issues.redhat.com/browse/OCPBUGS-2004): egress IP: fix log when gRPC connection fails [#1304](https://github.com/openshift/ovn-kubernetes/pull/1304) * [OCPBUGS-2176](https://issues.redhat.com/browse/OCPBUGS-2176): add endpointSlice informer in master process [#1302](https://github.com/openshift/ovn-kubernetes/pull/1302) * [OCPBUGS-2085](https://issues.redhat.com/browse/OCPBUGS-2085): CARRY: Dockerfile.base: bump to openvswitch2.17.0-37.4.el8fdp [#1298](https://github.com/openshift/ovn-kubernetes/pull/1298) * [OCPBUGS-1705](https://issues.redhat.com/browse/OCPBUGS-1705): Don't use ACL names ever! [#1300](https://github.com/openshift/ovn-kubernetes/pull/1300) * Dockerfile: bump to ovn22.09-22.09.0-5.el8fdp [#1284](https://github.com/openshift/ovn-kubernetes/pull/1284) * 9-23-22 b - dualstack fixed [#1289](https://github.com/openshift/ovn-kubernetes/pull/1289) * [OCPBUGS-1705](https://issues.redhat.com/browse/OCPBUGS-1705): Trim ACL names according to RFC1123 [#1281](https://github.com/openshift/ovn-kubernetes/pull/1281) * [OCPBUGS-1553](https://issues.redhat.com/browse/OCPBUGS-1553): Dockerfile: bump to openvswitch2.17.0-37.4.el8fdp [#1273](https://github.com/openshift/ovn-kubernetes/pull/1273) * Use iptables-restore to add MCS/metadata blocking in the pod [#1262](https://github.com/openshift/ovn-kubernetes/pull/1262) * 9-12-22 merge [#1267](https://github.com/openshift/ovn-kubernetes/pull/1267) * 9-7-22 merge [#1264](https://github.com/openshift/ovn-kubernetes/pull/1264) * 9-2-22 merge [#1263](https://github.com/openshift/ovn-kubernetes/pull/1263) * [OCPBUGS-165](https://issues.redhat.com/browse/OCPBUGS-165): [DownstreamMerge] 8-29-2022 merge [#1255](https://github.com/openshift/ovn-kubernetes/pull/1255) * 8-25-2022 [#1253](https://github.com/openshift/ovn-kubernetes/pull/1253) * revert endpoints [#1248](https://github.com/openshift/ovn-kubernetes/pull/1248) * 8-8-2022 [#1237](https://github.com/openshift/ovn-kubernetes/pull/1237) * Fix ovn version in Dockerfile.base [#1236](https://github.com/openshift/ovn-kubernetes/pull/1236) * Introduce ovn-kubernetes-{base|singlenode} images [#1213](https://github.com/openshift/ovn-kubernetes/pull/1213) * [Bug 2109945](https://bugzilla.redhat.com/show_bug.cgi?id=2109945): [Downstream Merge: 04-08-2022] [#1231](https://github.com/openshift/ovn-kubernetes/pull/1231) * [Bug 2111534](https://bugzilla.redhat.com/show_bug.cgi?id=2111534): Downstream Merge: 27-07-2022 [#1214](https://github.com/openshift/ovn-kubernetes/pull/1214) * Updating ose-ovn-kubernetes images to be consistent with ART [#1174](https://github.com/openshift/ovn-kubernetes/pull/1174) * [Bug 2111733](https://bugzilla.redhat.com/show_bug.cgi?id=2111733): Bump OVN to 22.06.0-27 [#1222](https://github.com/openshift/ovn-kubernetes/pull/1222) * [OCPBUGSM-45393](https://issues.redhat.com/browse/OCPBUGSM-45393): Bug 2078691: [Downstream Merge] 22-07-2022 [#1210](https://github.com/openshift/ovn-kubernetes/pull/1210) * 4.12 initial merge from upstream: 7-18-22 [#1205](https://github.com/openshift/ovn-kubernetes/pull/1205) * [Bug 2106862](https://bugzilla.redhat.com/show_bug.cgi?id=2106862): Append the SNAT rule in management chain [#1199](https://github.com/openshift/ovn-kubernetes/pull/1199) * [Bug 2095444](https://bugzilla.redhat.com/show_bug.cgi?id=2095444): EGW: Clean Stale Conntrack Entries [#1189](https://github.com/openshift/ovn-kubernetes/pull/1189) * [Bug 2106298](https://bugzilla.redhat.com/show_bug.cgi?id=2106298): populate sock address for ovndb connection in unix mode [#1188](https://github.com/openshift/ovn-kubernetes/pull/1188) * [Bug 2100507](https://bugzilla.redhat.com/show_bug.cgi?id=2100507): Remove redundant log lines in obj_retry.go [#1162](https://github.com/openshift/ovn-kubernetes/pull/1162) * [Bug 2097243](https://bugzilla.redhat.com/show_bug.cgi?id=2097243): Fix egressips for pods recreated with same name [#1169](https://github.com/openshift/ovn-kubernetes/pull/1169) * [Bug 2097221](https://bugzilla.redhat.com/show_bug.cgi?id=2097221): Dockerfile: bump to ovn22.06-22.06.0-7.el8fdp [#1170](https://github.com/openshift/ovn-kubernetes/pull/1170) * [Bug 2091238](https://bugzilla.redhat.com/show_bug.cgi?id=2091238): Fix Panic in Network Policy deletion [#1166](https://github.com/openshift/ovn-kubernetes/pull/1166) * [Bug 2100220](https://bugzilla.redhat.com/show_bug.cgi?id=2100220): Fix completed pods releasing IP address on update [#1158](https://github.com/openshift/ovn-kubernetes/pull/1158) * [Bug 2089807](https://bugzilla.redhat.com/show_bug.cgi?id=2089807): Release Leader election lock on errors [#1167](https://github.com/openshift/ovn-kubernetes/pull/1167) * [Bug 2100249](https://bugzilla.redhat.com/show_bug.cgi?id=2100249): Revert "Bug 2082599: add upper bound to number of failed attempts" [#1161](https://github.com/openshift/ovn-kubernetes/pull/1161) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/2e60df220e147198e60b63950f9bab91e68facd7...2996be215b6dc887d9c439ad4256e47568eb7a0e) ### [powervs-cloud-controller-manager](https://github.com/openshift/cloud-provider-powervs/tree/4fb4334ca8aa9eb8290488359dd8d1cc5261da49) * [OCPBUGS-24740](https://issues.redhat.com/browse/OCPBUGS-24740): UPSTREAM: <carry>: snyk code scan exclude vendor directory [#52](https://github.com/openshift/cloud-provider-powervs/pull/52) * [OCPBUGS-21260](https://issues.redhat.com/browse/OCPBUGS-21260): CVE-2023-39325 - Update net dependencies - 4.12 [#47](https://github.com/openshift/cloud-provider-powervs/pull/47) * Updated OWNERS component to Multi-Arch [#29](https://github.com/openshift/cloud-provider-powervs/pull/29) * Rebase 30.09.2022 k8s 1.25 [#23](https://github.com/openshift/cloud-provider-powervs/pull/23) * Updating ose-powervs-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-powervs/pull/22) * Add JoelSpeed as approver [#21](https://github.com/openshift/cloud-provider-powervs/pull/21) * Add Karthik-K-N as approver [#20](https://github.com/openshift/cloud-provider-powervs/pull/20) * Updating ose-powervs-cloud-controller-manager images to be consistent with ART [#18](https://github.com/openshift/cloud-provider-powervs/pull/18) * [Full changelog](https://github.com/openshift/cloud-provider-powervs/compare/c08a0572fb47bf78646b010c5e91c1c0d30ac6df...4fb4334ca8aa9eb8290488359dd8d1cc5261da49) ### [powervs-machine-controllers](https://github.com/openshift/machine-api-provider-powervs/tree/8a37e70af86197341dfe33077565cc1f7c919333) * [OCPBUGS-24564](https://issues.redhat.com/browse/OCPBUGS-24564): Reduce metrics cardinality [#75](https://github.com/openshift/machine-api-provider-powervs/pull/75) * [OCPBUGS-24738](https://issues.redhat.com/browse/OCPBUGS-24738): snyk code scan exclude vendor directory [#63](https://github.com/openshift/machine-api-provider-powervs/pull/63) * [OCPBUGS-21882](https://issues.redhat.com/browse/OCPBUGS-21882): CVE-2023-39325 - Bump golang.org/x/net to v0.17.0 - 4.12 [#57](https://github.com/openshift/machine-api-provider-powervs/pull/57) * Update OWNERS [#39](https://github.com/openshift/machine-api-provider-powervs/pull/39) * Updating ose-powervs-machine-controllers images to be consistent with ART [#34](https://github.com/openshift/machine-api-provider-powervs/pull/34) * Update go versoin to 1.19 and gofmted file as per go 1.19 [#35](https://github.com/openshift/machine-api-provider-powervs/pull/35) * Updating ose-powervs-machine-controllers images to be consistent with ART [#32](https://github.com/openshift/machine-api-provider-powervs/pull/32) * Update k8s to 1.25 [#33](https://github.com/openshift/machine-api-provider-powervs/pull/33) * Add infrastructure sync controller for custom service endpoints [#31](https://github.com/openshift/machine-api-provider-powervs/pull/31) * Add JoelSpeed approver [#30](https://github.com/openshift/machine-api-provider-powervs/pull/30) * Add Karthik-K-N as approver [#29](https://github.com/openshift/machine-api-provider-powervs/pull/29) * Autoscaler support [#25](https://github.com/openshift/machine-api-provider-powervs/pull/25) * Set the node internal dns address for machine [#27](https://github.com/openshift/machine-api-provider-powervs/pull/27) * Updating ose-powervs-machine-controllers images to be consistent with ART [#26](https://github.com/openshift/machine-api-provider-powervs/pull/26) * [Full changelog](https://github.com/openshift/machine-api-provider-powervs/compare/5dd624a2cd03fdb108338a5490c09a9b6474ef18...8a37e70af86197341dfe33077565cc1f7c919333) ### [prom-label-proxy](https://github.com/openshift/prom-label-proxy/tree/b1907888004888b977918cf911b189de736642b2) * Updating prom-label-proxy images to be consistent with ART [#350](https://github.com/openshift/prom-label-proxy/pull/350) * OWNERS: Add myself, and move former team members to emeritus [#349](https://github.com/openshift/prom-label-proxy/pull/349) * Updating prom-label-proxy images to be consistent with ART [#347](https://github.com/openshift/prom-label-proxy/pull/347) * Bump v0.5.0 [#348](https://github.com/openshift/prom-label-proxy/pull/348) * [Full changelog](https://github.com/openshift/prom-label-proxy/compare/af12fbc4482a0d8fe9e4748c675d56bbc43975f2...b1907888004888b977918cf911b189de736642b2) ### [prometheus](https://github.com/openshift/prometheus/tree/72ceaef4a59ec0cfb0639563ba9bd28928f4bcc0) * [OCPBUGS-21219](https://issues.redhat.com/browse/OCPBUGS-21219): update golang.org/x/net to v0.17.0 [4.12] [#175](https://github.com/openshift/prometheus/pull/175) * [OCPBUGS-4048](https://issues.redhat.com/browse/OCPBUGS-4048): fix certificate reloads after rotation [#149](https://github.com/openshift/prometheus/pull/149) * Revert unwanted downstream patch [#144](https://github.com/openshift/prometheus/pull/144) * [OCPBUGS-1718](https://issues.redhat.com/browse/OCPBUGS-1718): [bot] Bump openshift/prometheus to v2.39.1 [#142](https://github.com/openshift/prometheus/pull/142) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#141](https://github.com/openshift/prometheus/pull/141) * Bump openshift/prometheus to v2.38.0 [#140](https://github.com/openshift/prometheus/pull/140) * OWNERS: Add myself, and move former team members to emeritus [#139](https://github.com/openshift/prometheus/pull/139) * Updating golang-github-prometheus-prometheus images to be consistent with ART [#137](https://github.com/openshift/prometheus/pull/137) * Bump openshift/prometheus to v2.37.0 [#138](https://github.com/openshift/prometheus/pull/138) * [Full changelog](https://github.com/openshift/prometheus/compare/4e4243d54331efdbe2a32f7441740faa4d335acb...72ceaef4a59ec0cfb0639563ba9bd28928f4bcc0) ### [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager/tree/914cad827e9a177b29b23e02eb48b4065da8dca2) * [OCPBUGS-21031](https://issues.redhat.com/browse/OCPBUGS-21031): Bump golang.org/x/net to v0.17.0 [#82](https://github.com/openshift/prometheus-alertmanager/pull/82) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#64](https://github.com/openshift/prometheus-alertmanager/pull/64) * Updating golang-github-prometheus-alertmanager images to be consistent with ART [#61](https://github.com/openshift/prometheus-alertmanager/pull/61) * OWNERS: Add myself, and move former team members to emeritus [#62](https://github.com/openshift/prometheus-alertmanager/pull/62) * [Full changelog](https://github.com/openshift/prometheus-alertmanager/compare/7e3c773132f52d79c263320ce7c559349bce935b...914cad827e9a177b29b23e02eb48b4065da8dca2) ### [prometheus-config-reloader, prometheus-operator, prometheus-operator-admission-webhook](https://github.com/openshift/prometheus-operator/tree/d1e399d5cead91c677cee4a80a032f5057cb43e3) * [OCPBUGS-20843](https://issues.redhat.com/browse/OCPBUGS-20843): Bump golang.org/x/net to v0.17.0 [#249](https://github.com/openshift/prometheus-operator/pull/249) * [OCPBUGS-7458](https://issues.redhat.com/browse/OCPBUGS-7458): Fixes ThanoRuler StatefulSet re-creation bug [#217](https://github.com/openshift/prometheus-operator/pull/217) * Updating prometheus-operator images to be consistent with ART [#204](https://github.com/openshift/prometheus-operator/pull/204) * Bump openshift/prometheus-operator to v0.60.1 [#208](https://github.com/openshift/prometheus-operator/pull/208) * Bump openshift/prometheus-operator to v0.60.0 [#207](https://github.com/openshift/prometheus-operator/pull/207) * Updating prometheus-operator-admission-webhook images to be consistent with ART [#206](https://github.com/openshift/prometheus-operator/pull/206) * Updating prometheus-config-reloader images to be consistent with ART [#205](https://github.com/openshift/prometheus-operator/pull/205) * Bump openshift/prometheus-operator to v0.59.2 [#203](https://github.com/openshift/prometheus-operator/pull/203) * Bump openshift/prometheus-operator to v0.59.1 [#200](https://github.com/openshift/prometheus-operator/pull/200) * OWNERS: Add myself, and move former team members to emeritus [#198](https://github.com/openshift/prometheus-operator/pull/198) * Bump openshift/prometheus-operator to v0.58.0 [#197](https://github.com/openshift/prometheus-operator/pull/197) * Updating prometheus-operator-admission-webhook images to be consistent with ART [#195](https://github.com/openshift/prometheus-operator/pull/195) * Updating prometheus-config-reloader images to be consistent with ART [#194](https://github.com/openshift/prometheus-operator/pull/194) * Updating prometheus-operator images to be consistent with ART [#193](https://github.com/openshift/prometheus-operator/pull/193) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/ef9b02af91f3f5906f5a463b76e70f1318306cf9...d1e399d5cead91c677cee4a80a032f5057cb43e3) ### [prometheus-node-exporter](https://github.com/openshift/node_exporter/tree/99077a3c8c3b0fce152fe0affce1e31fc2c6efaa) * [OCPBUGS-21123](https://issues.redhat.com/browse/OCPBUGS-21123): upgrade golang.org/x/net to v0.17.0 [#136](https://github.com/openshift/node_exporter/pull/136) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#112](https://github.com/openshift/node_exporter/pull/112) * Align to upstream v1.4.0 [#109](https://github.com/openshift/node_exporter/pull/109) * Fix a bug of metric format on AMD EPYC platforms [#107](https://github.com/openshift/node_exporter/pull/107) * Updating golang-github-prometheus-node_exporter images to be consistent with ART [#104](https://github.com/openshift/node_exporter/pull/104) * OWNERS: Add myself, and move former team members to emeritus [#106](https://github.com/openshift/node_exporter/pull/106) * [Full changelog](https://github.com/openshift/node_exporter/compare/31707a12bf07365256743ff63aef8c2695ac0cb1...99077a3c8c3b0fce152fe0affce1e31fc2c6efaa) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/ef1d057db0bf8d0846d96e09cdd1f55998a1f80b) * [OCPBUGS-21026](https://issues.redhat.com/browse/OCPBUGS-21026): CVE 2023 39325 (4.12) [#231](https://github.com/openshift/service-ca-operator/pull/231) * [OCPBUGS-3279](https://issues.redhat.com/browse/OCPBUGS-3279): Return nil from start funcs after context is cancelled. [#203](https://github.com/openshift/service-ca-operator/pull/203) * [Bug 2048349](https://bugzilla.redhat.com/show_bug.cgi?id=2048349): make the operator react to workload logLevel configuration [#196](https://github.com/openshift/service-ca-operator/pull/196) * Quality of life changes, fix e2e tests failing too often [#197](https://github.com/openshift/service-ca-operator/pull/197) * Updating ose-cluster-authentication-operator images to be consistent with ART [#192](https://github.com/openshift/service-ca-operator/pull/192) * [Bug 2101880](https://bugzilla.redhat.com/show_bug.cgi?id=2101880): operator NS manifest: Set empty openshift.io/run-level [#194](https://github.com/openshift/service-ca-operator/pull/194) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/0899d1127049ab3906484bade3d47c306d5e3677...ef1d057db0bf8d0846d96e09cdd1f55998a1f80b) ### [telemeter](https://github.com/openshift/telemeter/tree/c9592ded3e9a8daa8dfddfb7b8d874a2aaf1972c) * [OCPBUGS-34827](https://issues.redhat.com/browse/OCPBUGS-34827): fix issuer check during JWT authentication 4.12 [#541](https://github.com/openshift/telemeter/pull/541) * [OCPBUGS-21310](https://issues.redhat.com/browse/OCPBUGS-21310): [release-4.12] fix: Bump golang.org/x/net to v0.17.0 [#486](https://github.com/openshift/telemeter/pull/486) * [OCPBUGS-7702](https://issues.redhat.com/browse/OCPBUGS-7702): Add 'agent-installer' value to 'install_type' label [#451](https://github.com/openshift/telemeter/pull/451) * Fixes typo in telemeter/client/kubernetes.libsonnet [#434](https://github.com/openshift/telemeter/pull/434) * Updating telemeter images to be consistent with ART [#433](https://github.com/openshift/telemeter/pull/433) * Adds TemeterClientJobFailing alert [#431](https://github.com/openshift/telemeter/pull/431) * Add rules for cluster CPU-hours and Instance-hours [#418](https://github.com/openshift/telemeter/pull/418) * *: Update docs with latest Telemeter architecture [#430](https://github.com/openshift/telemeter/pull/430) * Forward: Add logic to sanitize labels [#429](https://github.com/openshift/telemeter/pull/429) * pkg/receive/handler: Add middleware to respect whitelist + elide [#427](https://github.com/openshift/telemeter/pull/427) * OWNERS: Add myself to owners file [#425](https://github.com/openshift/telemeter/pull/425) * pkg/receive/handler: Use OIDC client [#426](https://github.com/openshift/telemeter/pull/426) * pkg/receive/handler: Propagate upstream error message [#423](https://github.com/openshift/telemeter/pull/423) * OWNERS: Add myself, and move former team members to emeritus [#424](https://github.com/openshift/telemeter/pull/424) * pkg/server: use v1 forward requests counter [#422](https://github.com/openshift/telemeter/pull/422) * Bump Telemeter rules evaluation interval to 4m [#420](https://github.com/openshift/telemeter/pull/420) * [Bug 1924548](https://bugzilla.redhat.com/show_bug.cgi?id=1924548): go.mod: update github.com/gogo/protobuf to v1.3.2 [#419](https://github.com/openshift/telemeter/pull/419) * Bump Telemeter rules evaluation interval to 3m [#417](https://github.com/openshift/telemeter/pull/417) * Updating telemeter images to be consistent with ART [#415](https://github.com/openshift/telemeter/pull/415) * pkg/forwarder: add counter for the total number of requests [#416](https://github.com/openshift/telemeter/pull/416) * Updates version of golangci-lint to support GO1.18 [#413](https://github.com/openshift/telemeter/pull/413) * [Full changelog](https://github.com/openshift/telemeter/compare/f40faee6edd85acc9581382c99ae7b106bbaafc8...c9592ded3e9a8daa8dfddfb7b8d874a2aaf1972c) ### [tests](https://github.com/openshift/origin/tree/daedb2e584a91e7384b765d0599ad096aa2e78df) * [OCPBUGS-41585](https://issues.redhat.com/browse/OCPBUGS-41585): Removes dependency on samples operator images [#29080](https://github.com/openshift/origin/pull/29080) * Bug OCPBUGS-20557: Correct condition for rejecting connection [#28327](https://github.com/openshift/origin/pull/28327) * [OCPBUGS-18490](https://issues.redhat.com/browse/OCPBUGS-18490): bump monitoring SNO bounds [#28239](https://github.com/openshift/origin/pull/28239) * [OCPBUGS-18527](https://issues.redhat.com/browse/OCPBUGS-18527): Ignore timeout and connection refused errors during upgrade tests for 4.12 [#28270](https://github.com/openshift/origin/pull/28270) * [OCPBUGS-18309](https://issues.redhat.com/browse/OCPBUGS-18309): Add missing watch permission for console users [#28234](https://github.com/openshift/origin/pull/28234) * [OCPBUGS-16696](https://issues.redhat.com/browse/OCPBUGS-16696): Wait for DNS DS pods to be ready [#28083](https://github.com/openshift/origin/pull/28083) * [OCPBUGS-16243](https://issues.redhat.com/browse/OCPBUGS-16243): allow cluster-config-operator to manage featuregate upgrade block [#28055](https://github.com/openshift/origin/pull/28055) * [OCPBUGS-15933](https://issues.redhat.com/browse/OCPBUGS-15933): remove references to registry.centos.org [#28033](https://github.com/openshift/origin/pull/28033) * [CCO-367](https://issues.redhat.com/browse/CCO-367): Allow CCO to be Upgradeable=False when credentialsMode=Manual [#27941](https://github.com/openshift/origin/pull/27941) * [OCPBUGS-14152](https://issues.redhat.com/browse/OCPBUGS-14152): Move from registry.centos.org to quay.io [#27949](https://github.com/openshift/origin/pull/27949) * [OCPBUGS-12914](https://issues.redhat.com/browse/OCPBUGS-12914): Add (optional) dual-stack tests to the CNI certification test suite [#27903](https://github.com/openshift/origin/pull/27903) * Updating openshift-enterprise-tests images to be consistent with ART [#27293](https://github.com/openshift/origin/pull/27293) * add specific test for failing cgroups path [#27856](https://github.com/openshift/origin/pull/27856) * [OCPBUGS-8705](https://issues.redhat.com/browse/OCPBUGS-8705): Bump(openshift/kubernetes): to get fix for resizing flake [#27794](https://github.com/openshift/origin/pull/27794) * [OCPBUGS-8024](https://issues.redhat.com/browse/OCPBUGS-8024): Backport fixes to resume gathering CI disruption data for SLB and image registry [#27759](https://github.com/openshift/origin/pull/27759) * [OCPBUGS-7633](https://issues.redhat.com/browse/OCPBUGS-7633): remove reference to old guard pods [#27732](https://github.com/openshift/origin/pull/27732) * [OCPBUGS-7285](https://issues.redhat.com/browse/OCPBUGS-7285): extended: security: do not explicitly set api audience on token request [#27716](https://github.com/openshift/origin/pull/27716) * [OCPBUGS-6850](https://issues.redhat.com/browse/OCPBUGS-6850): [release-4.12] upgrade/adminack: guarantee one admin ack check post-upgrade [#27684](https://github.com/openshift/origin/pull/27684) * [OCPBUGS-5493](https://issues.redhat.com/browse/OCPBUGS-5493): Use cluster network MTU for bond interfaces [#27637](https://github.com/openshift/origin/pull/27637) * [OCPBUGS-5490](https://issues.redhat.com/browse/OCPBUGS-5490): Fix intervalcreation incorrect year unit test bug [#27668](https://github.com/openshift/origin/pull/27668) * [OCPBUGS-5130](https://issues.redhat.com/browse/OCPBUGS-5130): run resourcewatch fixes [#27625](https://github.com/openshift/origin/pull/27625) * [OCPBUGS-4836](https://issues.redhat.com/browse/OCPBUGS-4836): 1sec [#27610](https://github.com/openshift/origin/pull/27610) * [OCPBUGS-4503](https://issues.redhat.com/browse/OCPBUGS-4503): Unskip service session affinity tests [#27598](https://github.com/openshift/origin/pull/27598) * [OCPBUGS-4851](https://issues.redhat.com/browse/OCPBUGS-4851): Add Kuryr exception to "pods should successfully create sandboxes" test [#27611](https://github.com/openshift/origin/pull/27611) * [OCPBUGS-4407](https://issues.redhat.com/browse/OCPBUGS-4407): Nginx 1.18 images will reach EOL in November 2022 [#27599](https://github.com/openshift/origin/pull/27599) * [OCPBUGS-2927](https://issues.redhat.com/browse/OCPBUGS-2927): [release-4.12] Bump kubernetes to latest release-4.12 [#27588](https://github.com/openshift/origin/pull/27588) * [OCPBUGS-3649](https://issues.redhat.com/browse/OCPBUGS-3649): : Fix flake reporting for certain tests. [#27557](https://github.com/openshift/origin/pull/27557) * [OCPBUGS-3649](https://issues.redhat.com/browse/OCPBUGS-3649): Revert "Merge pull request #27533 from dgoodwin/merge-alert-backstops" [#27550](https://github.com/openshift/origin/pull/27550) * Synchronize release-4.12 with master [#27541](https://github.com/openshift/origin/pull/27541) * [OCPBUGS-3428](https://issues.redhat.com/browse/OCPBUGS-3428): Skip broken [sig-devex][Feature:ImageEcosystem] tests [#27537](https://github.com/openshift/origin/pull/27537) * k8s 1.25.0 [#27503](https://github.com/openshift/origin/pull/27503) * Revert 1.25 again [#27499](https://github.com/openshift/origin/pull/27499) * Extend SCC tests with their corresponding service account variants [#27491](https://github.com/openshift/origin/pull/27491) * MicroShift: label e2es with more apigroup labels (squashing more PRs into a single one + fixes) [#27498](https://github.com/openshift/origin/pull/27498) * Skip resource growth checks in upgrade-rollback jobs [#27450](https://github.com/openshift/origin/pull/27450) * k8s 1.25.0 [#27490](https://github.com/openshift/origin/pull/27490) * Remove must-gather pod from lack priorityclass exception list [#27469](https://github.com/openshift/origin/pull/27469) * Ocpbugs 2275 remove templateservicebroker test [#27484](https://github.com/openshift/origin/pull/27484) * Support external topology for hypershift [#27437](https://github.com/openshift/origin/pull/27437) * USHIFT-481 Get event intervals for alerts only if Prometheus route exists [#27467](https://github.com/openshift/origin/pull/27467) * Revert "k8s 1.25.0" [#27489](https://github.com/openshift/origin/pull/27489) * k8s 1.25.0 [#27416](https://github.com/openshift/origin/pull/27416) * Automated - Update synthetic test data [#27475](https://github.com/openshift/origin/pull/27475) * microshift: avoid oauth and console disruption monitoring [#27462](https://github.com/openshift/origin/pull/27462) * Migrate route.sh, run.sh, service.sh and status.sh tests to go [#27455](https://github.com/openshift/origin/pull/27455) * Add skips logic for tests that require optional capabilities [#27481](https://github.com/openshift/origin/pull/27481) * Fix flaky cli tests [#27482](https://github.com/openshift/origin/pull/27482) * Migrate idle.sh to go tests [#27451](https://github.com/openshift/origin/pull/27451) * Add dgoodwin as approver to origin [#27477](https://github.com/openshift/origin/pull/27477) * update skip openshift-controller-manager scaling events in build testsuite [#27474](https://github.com/openshift/origin/pull/27474) * Fix unit tests that have broken since we stopped running them 2 years ago [#27460](https://github.com/openshift/origin/pull/27460) * [USHIFT-357](https://issues.redhat.com/browse/USHIFT-357): MicroShift: skip sig-scheduling tests [#27402](https://github.com/openshift/origin/pull/27402) * [USHIFT-356](https://issues.redhat.com/browse/USHIFT-356): MicroShift: skip sig-node tests [#27425](https://github.com/openshift/origin/pull/27425) * [OCPBUGS-2155](https://issues.redhat.com/browse/OCPBUGS-2155): Revert "Add etcd vertical scaling test suite" [#27463](https://github.com/openshift/origin/pull/27463) * [USHIFT-358](https://issues.redhat.com/browse/USHIFT-358): MicroShift: skip sig-storage tests [#27438](https://github.com/openshift/origin/pull/27438) * Check for console capability before launching it's disruption monitoring. [#27439](https://github.com/openshift/origin/pull/27439) * Add Invariant test to look for probe errors for openshift-config-operator [#27436](https://github.com/openshift/origin/pull/27436) * Fix missing reporting of 0s disruptions. [#27452](https://github.com/openshift/origin/pull/27452) * Add etcd vertical scaling test suite [#27444](https://github.com/openshift/origin/pull/27444) * [USHIFT-351](https://issues.redhat.com/browse/USHIFT-351): Microshift: skip sig-devex tests [#27392](https://github.com/openshift/origin/pull/27392) * [USHIFT-300](https://issues.redhat.com/browse/USHIFT-300): microshift: skip sig-imageregistry tests [#27367](https://github.com/openshift/origin/pull/27367) * Drastically reduce the jobs we enforce disruption on. [#27457](https://github.com/openshift/origin/pull/27457) * [USHIFT-354](https://issues.redhat.com/browse/USHIFT-354): MicroShift: skip sig-instrumentation tests [#27399](https://github.com/openshift/origin/pull/27399) * [USHIFT-350](https://issues.redhat.com/browse/USHIFT-350): MicroShift: skip sig-coreos tests [#27400](https://github.com/openshift/origin/pull/27400) * egressip: avoid curl hanging when sending probes [#27379](https://github.com/openshift/origin/pull/27379) * [OCPBUGS-1079](https://issues.redhat.com/browse/OCPBUGS-1079): Use kubeconfig from secret mount instead of /tmp [#27443](https://github.com/openshift/origin/pull/27443) * include storage and must-gather tests in expectedTestCount [#27356](https://github.com/openshift/origin/pull/27356) * feat: update query results [#27448](https://github.com/openshift/origin/pull/27448) * [USHIFT-283](https://issues.redhat.com/browse/USHIFT-283): microshift: skip sig-builds tests [#27361](https://github.com/openshift/origin/pull/27361) * Fix rare race condition in ImageStream admission tests. [#27442](https://github.com/openshift/origin/pull/27442) * remove test/extended OWNERS file [#27408](https://github.com/openshift/origin/pull/27408) * [OCPBUGS-985](https://issues.redhat.com/browse/OCPBUGS-985): Revert "Test Baremetal deployment without a provisoning network" [#27441](https://github.com/openshift/origin/pull/27441) * [USHIFT-344](https://issues.redhat.com/browse/USHIFT-344): MicroShift: fix sig-apps tests [#27397](https://github.com/openshift/origin/pull/27397) * [USHIFT-301](https://issues.redhat.com/browse/USHIFT-301): microshift: skip sig-operator tests [#27369](https://github.com/openshift/origin/pull/27369) * [USHIFT-343](https://issues.redhat.com/browse/USHIFT-343): MicroShift: skip sig-api-machinery tests [#27410](https://github.com/openshift/origin/pull/27410) * Remove test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#27391](https://github.com/openshift/origin/pull/27391) * [Bug 1933144](https://bugzilla.redhat.com/show_bug.cgi?id=1933144): Bump k8s to include c83b5d076f5 [#27380](https://github.com/openshift/origin/pull/27380) * Check version when discovery client [#27432](https://github.com/openshift/origin/pull/27432) * [USHIFT-285](https://issues.redhat.com/browse/USHIFT-285): MicroShift: allow CLI creation without OpenShift APIs [#27358](https://github.com/openshift/origin/pull/27358) * sig-api-machinery: remove project from authenticated browser APIServe… [#27333](https://github.com/openshift/origin/pull/27333) * Bump api-requests for console-operator on vsphere [#27431](https://github.com/openshift/origin/pull/27431) * [USHIFT-353](https://issues.redhat.com/browse/USHIFT-353): MicroShift: skip sig-installer tests [#27409](https://github.com/openshift/origin/pull/27409) * make runonce-ldapsearch pod name unique [#27426](https://github.com/openshift/origin/pull/27426) * [OCPBUGS-1265](https://issues.redhat.com/browse/OCPBUGS-1265): test/extended/prometheus: Consider telemeterClient.enabled [#27422](https://github.com/openshift/origin/pull/27422) * Fix double disruption testing and values for most backends in intervals chart and bigquery. [#27415](https://github.com/openshift/origin/pull/27415) * add retry for checkLADPConn [#27424](https://github.com/openshift/origin/pull/27424) * e2e/cli: Migrate completions, whoami and projects tests to go [#27371](https://github.com/openshift/origin/pull/27371) * Enable ServiceInternalTrafficPolicy tests in OVNK [#27043](https://github.com/openshift/origin/pull/27043) * [OCPBUGS-967](https://issues.redhat.com/browse/OCPBUGS-967): temporarily disable IngressClass test, which is changed in upstream in 1.25 [#27417](https://github.com/openshift/origin/pull/27417) * Add a test case to find job name/cluster version mismatches [#27413](https://github.com/openshift/origin/pull/27413) * upkeep: updated data set for 4.12 [#27420](https://github.com/openshift/origin/pull/27420) * [OCPBUGS-1237](https://issues.redhat.com/browse/OCPBUGS-1237): Fix s2i ruby test that relys on rack [#27419](https://github.com/openshift/origin/pull/27419) * Address exceeded maximum resolution of 11,000 points per timeseries [#27384](https://github.com/openshift/origin/pull/27384) * [OCPBUGS-587](https://issues.redhat.com/browse/OCPBUGS-587): Temporarily flake FailedToUpdateEndpointSlices [#27418](https://github.com/openshift/origin/pull/27418) * Ignore the "InsufficientInstanceCapacity" patholocial event [#27385](https://github.com/openshift/origin/pull/27385) * Automatically skip tests with apigroups which are not served [#27406](https://github.com/openshift/origin/pull/27406) * Label tests with openshift crafted API groups [#27387](https://github.com/openshift/origin/pull/27387) * skip route-controller-manager scaling events in build testsuite [#27394](https://github.com/openshift/origin/pull/27394) * Remove flake for 40% Secret/ConfigMap growth test. [#27381](https://github.com/openshift/origin/pull/27381) * [Bug 2100091](https://bugzilla.redhat.com/show_bug.cgi?id=2100091): Ignore FailedCreatePodSandBox events for garbage collector tests [#27270](https://github.com/openshift/origin/pull/27270) * Fix upgrade dry-run. [#27388](https://github.com/openshift/origin/pull/27388) * Update etcd tests with k8s 1.25 data [#27396](https://github.com/openshift/origin/pull/27396) * Update etcd tests with k8s data [#27393](https://github.com/openshift/origin/pull/27393) * Instead of returning errors when there is no etcd operator, just return static values for etcd metadata [#27342](https://github.com/openshift/origin/pull/27342) * Test baremetal deployment without provisioning network [#26676](https://github.com/openshift/origin/pull/26676) * Ensures operators use external cloud provider [#27349](https://github.com/openshift/origin/pull/27349) * [Bug 2098053](https://bugzilla.redhat.com/show_bug.cgi?id=2098053): Re-revert "Add networking test for invalid external gateway" [#27277](https://github.com/openshift/origin/pull/27277) * Separate out pathological event test for error updating endpoint slices [#27377](https://github.com/openshift/origin/pull/27377) * Revert "Label tests with openshift crafted API groups (round 3)" [#27378](https://github.com/openshift/origin/pull/27378) * Skip etcd scaling test for metal and vsphere platforms [#27375](https://github.com/openshift/origin/pull/27375) * Test we don't see substantial Secret/ConfigMap growth during upgrade. [#27354](https://github.com/openshift/origin/pull/27354) * Add ovnkube-node pods in the interval chart for ingress [#27372](https://github.com/openshift/origin/pull/27372) * update service load balancer test to gracefully roll out [#27180](https://github.com/openshift/origin/pull/27180) * EgressIP: Enable EgressIP tests for OpenStack [#27363](https://github.com/openshift/origin/pull/27363) * Label tests with openshift crafted API groups (round 3) [#27368](https://github.com/openshift/origin/pull/27368) * Suppress failures if certain firing alerts happened with related event [#27304](https://github.com/openshift/origin/pull/27304) * [Bug 2095623](https://bugzilla.redhat.com/show_bug.cgi?id=2095623): Revert "Disable azure-file tests" [#27259](https://github.com/openshift/origin/pull/27259) * job names: exclude text before `e2e` for both platform and network tests [#27373](https://github.com/openshift/origin/pull/27373) * upkeep: updated synthetic tests historical data for alerts and disruption [#27364](https://github.com/openshift/origin/pull/27364) * Update job name tests for hard failure cases [#27362](https://github.com/openshift/origin/pull/27362) * Label tests with openshift crafted API groups (round 1) [#27355](https://github.com/openshift/origin/pull/27355) * Add required pod security admission annotations into cmd/namespace [#27357](https://github.com/openshift/origin/pull/27357) * [Bug 2110503](https://bugzilla.redhat.com/show_bug.cgi?id=2110503): EgressIP: Probes and check tcpdump logs should succeed eventually [#27318](https://github.com/openshift/origin/pull/27318) * test/extended/util/disruption: Remove stale p95 references [#27351](https://github.com/openshift/origin/pull/27351) * display UTC time for timeline charts [#27348](https://github.com/openshift/origin/pull/27348) * networking/acl: live-retrieve the NS instead of f.Namespace [#27347](https://github.com/openshift/origin/pull/27347) * Consider Prometheus maximum points in a time series for alert tests [#27319](https://github.com/openshift/origin/pull/27319) * Tune watch limits for operators [#27281](https://github.com/openshift/origin/pull/27281) * allow techpreviewnoupgrade alert when testing techpreview [#27343](https://github.com/openshift/origin/pull/27343) * Ignore repo name when looking for network type in job name [#27339](https://github.com/openshift/origin/pull/27339) * Use "plugin" for some nw isolation test case names [#27330](https://github.com/openshift/origin/pull/27330) * Revert "Revert 'bump o/k for the fixed scheduling tests'"; layer fix on top [#27332](https://github.com/openshift/origin/pull/27332) * Update authenticated users RBAC e2e test [#27326](https://github.com/openshift/origin/pull/27326) * OWNERS_ALIASES: add me as a metal platform lead [#27337](https://github.com/openshift/origin/pull/27337) * Add Jan as image approver, remove Ravi and Clayton [#27331](https://github.com/openshift/origin/pull/27331) * [Bug 2114506](https://bugzilla.redhat.com/show_bug.cgi?id=2114506): test/extended/olm: Handle unset enabledCapabilities in marketplaceEnabled [#27336](https://github.com/openshift/origin/pull/27336) * Convert kubelet logs into monitor events for timelines [#27299](https://github.com/openshift/origin/pull/27299) * Revert "bump o/k for the fixed scheduling tests" [#27328](https://github.com/openshift/origin/pull/27328) * etcd vertical scaling test: add verbose timeout error messages and bump machine provisioning timeout for Azure [#27322](https://github.com/openshift/origin/pull/27322) * remove CLI.SetupNamespace() in favour of CLI.SetupProject() [#27325](https://github.com/openshift/origin/pull/27325) * Increase API requests limit for monitoring operator on openstack [#27324](https://github.com/openshift/origin/pull/27324) * bump o/k for the fixed scheduling tests [#27323](https://github.com/openshift/origin/pull/27323) * Separate out test for SamplesImagestreamImportFailing alarm [#27314](https://github.com/openshift/origin/pull/27314) * Fix same test name being used twice for pods on different nodes check. [#27315](https://github.com/openshift/origin/pull/27315) * etcd storage tests: work with dynamic namespace names [#27295](https://github.com/openshift/origin/pull/27295) * Add etcd vertical scaling test." [#27294](https://github.com/openshift/origin/pull/27294) * Add a new spyglass chart for image-registry, console, oauth [#27297](https://github.com/openshift/origin/pull/27297) * [Bug 2098194](https://bugzilla.redhat.com/show_bug.cgi?id=2098194): set sampleErr to bodyReadErr [#27260](https://github.com/openshift/origin/pull/27260) * Fixes OVN ACL audit log parsing [#27312](https://github.com/openshift/origin/pull/27312) * [Bug 2079679](https://bugzilla.redhat.com/show_bug.cgi?id=2079679): pkg/monitor: wait for Prometheus sidecars to be ready [#27224](https://github.com/openshift/origin/pull/27224) * Add test that checks CI job name matches platform and network type [#27311](https://github.com/openshift/origin/pull/27311) * examples: drop OCP 3 library paths [#27266](https://github.com/openshift/origin/pull/27266) * Revert "Enable EgressIP tests for internal targets" [#27307](https://github.com/openshift/origin/pull/27307) * fix(olm-test): skip test if marketplace is not enabled [#27302](https://github.com/openshift/origin/pull/27302) * [Bug 2089966](https://bugzilla.redhat.com/show_bug.cgi?id=2089966): use multi-arch ldap and multicast test images [#27169](https://github.com/openshift/origin/pull/27169) * Revert "Bypass tests failing due to metal image rebuild on RHEL9" [#27288](https://github.com/openshift/origin/pull/27288) * Update to go 1.18 [#27253](https://github.com/openshift/origin/pull/27253) * separate interval gathering from interval calculation [#27298](https://github.com/openshift/origin/pull/27298) * Make margin wider to see more in spyglass charts [#27061](https://github.com/openshift/origin/pull/27061) * [Bug 2098096](https://bugzilla.redhat.com/show_bug.cgi?id=2098096): Enable EgressIP tests for internal targets [#27262](https://github.com/openshift/origin/pull/27262) * test/extended/prometheus: clean alert exceptions [#27211](https://github.com/openshift/origin/pull/27211) * test: allow -f to match tests for any test suite (redux) [#27096](https://github.com/openshift/origin/pull/27096) * BUG 2067323: test/extended/router: Drop host lookup for gRPC HTTP/2 h2spec tests [#27274](https://github.com/openshift/origin/pull/27274) * [Bug 2097297](https://bugzilla.redhat.com/show_bug.cgi?id=2097297): Show DNS lookup sampler problems on the disruption intervals chart. [#27261](https://github.com/openshift/origin/pull/27261) * [Bug 2094342](https://bugzilla.redhat.com/show_bug.cgi?id=2094342): bump cluster-capi-operator apirequests upper bound to 50 [#27225](https://github.com/openshift/origin/pull/27225) * Add Ravi and Abu as image approvers [#27282](https://github.com/openshift/origin/pull/27282) * Remove etcd vertical scaling test. [#27280](https://github.com/openshift/origin/pull/27280) * make a new category of pod sandbox failure [#27247](https://github.com/openshift/origin/pull/27247) * [Bug 2099698](https://bugzilla.redhat.com/show_bug.cgi?id=2099698): revert: no longer needed logic for rt kernel [#27264](https://github.com/openshift/origin/pull/27264) * Bypass tests failing due to metal image rebuild on RHEL9 [#27283](https://github.com/openshift/origin/pull/27283) * [Full changelog](https://github.com/openshift/origin/compare/b34b8a2503424d03cd50b8ecd0860b380a492f4f...daedb2e584a91e7384b765d0599ad096aa2e78df) ### [thanos](https://github.com/openshift/thanos/tree/2867a6b552eaddefd73aa979f13e95f6df338070) * [OCPBUGS-27100](https://issues.redhat.com/browse/OCPBUGS-27100): Bump go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp to 0.44.0 [#137](https://github.com/openshift/thanos/pull/137) * [OCPBUGS-21135](https://issues.redhat.com/browse/OCPBUGS-21135): Bump golang.org/x/net to v0.17.0 [#126](https://github.com/openshift/thanos/pull/126) * [OCPBUGS-4276](https://issues.redhat.com/browse/OCPBUGS-4276): Update exporter-toolkit to 0.7.3 [#111](https://github.com/openshift/thanos/pull/111) * Updating thanos images to be consistent with ART [#101](https://github.com/openshift/thanos/pull/101) * Bump openshift/thanos to v0.28.1 [#91](https://github.com/openshift/thanos/pull/91) * Bump openshift/thanos to v0.28.0 [#90](https://github.com/openshift/thanos/pull/90) * OWNERS: Add Joao and myself, and move former team members to emeritus [#88](https://github.com/openshift/thanos/pull/88) * Bump openshift/thanos to v0.27.0 [#85](https://github.com/openshift/thanos/pull/85) * [Full changelog](https://github.com/openshift/thanos/compare/45baf4b41798633ce46a944786bbea39ba8c074e...2867a6b552eaddefd73aa979f13e95f6df338070) ### [vsphere-cloud-controller-manager](https://github.com/openshift/cloud-provider-vsphere/tree/e170dce5c1fe5d3a025ccd8264e78c4c987b1d7a) * [OCPBUGS-21493](https://issues.redhat.com/browse/OCPBUGS-21493): Bump golang.org/x/net to v0.18.0 [#56](https://github.com/openshift/cloud-provider-vsphere/pull/56) * [OCPBUGS-1413](https://issues.redhat.com/browse/OCPBUGS-1413): Rebase 13.10.2022 k8s 1.25 [#28](https://github.com/openshift/cloud-provider-vsphere/pull/28) * Updating ose-vsphere-cloud-controller-manager images to be consistent with ART [#25](https://github.com/openshift/cloud-provider-vsphere/pull/25) * fix .dockerignore to satisfy OCP specific requirements [#24](https://github.com/openshift/cloud-provider-vsphere/pull/24) * Add OCP specific exclusion to the .dockerignore [#23](https://github.com/openshift/cloud-provider-vsphere/pull/23) * Updating ose-vsphere-cloud-controller-manager images to be consistent with ART [#22](https://github.com/openshift/cloud-provider-vsphere/pull/22) * [Full changelog](https://github.com/openshift/cloud-provider-vsphere/compare/91f7b1fab3342f890274bec2b93b2bc0de8d99e1...e170dce5c1fe5d3a025ccd8264e78c4c987b1d7a) ### [vsphere-cluster-api-controllers](https://github.com/openshift/cluster-api-provider-vsphere/tree/a61d43b751249c1a74376a48498571da1d665685) * [OCPBUGS-21548](https://issues.redhat.com/browse/OCPBUGS-21548): bump golang.org/x/net to v0.17.0 [#24](https://github.com/openshift/cluster-api-provider-vsphere/pull/24) * [Bug 2087043](https://bugzilla.redhat.com/show_bug.cgi?id=2087043): Merge https://github.com/kubernetes-sigs/cluster-api-provider-vsphere:main into master [#6](https://github.com/openshift/cluster-api-provider-vsphere/pull/6) * Updating ose-vsphere-cluster-api-controllers images to be consistent with ART [#7](https://github.com/openshift/cluster-api-provider-vsphere/pull/7) * Updating ose-vsphere-cluster-api-controllers images to be consistent with ART [#5](https://github.com/openshift/cluster-api-provider-vsphere/pull/5) * [Full changelog](https://github.com/openshift/cluster-api-provider-vsphere/compare/dc8bb53005c6020143b4ff581925e1e9fdaa0078...a61d43b751249c1a74376a48498571da1d665685) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/e4c0e103ddbf264387d6efb26b612a4b915d362a) * [OCPBUGS-20417](https://issues.redhat.com/browse/OCPBUGS-20417): syncer: fix nil pointer dereference in log message [#98](https://github.com/openshift/vmware-vsphere-csi-driver/pull/98) * [OCPBUGS-21552](https://issues.redhat.com/browse/OCPBUGS-21552): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#92](https://github.com/openshift/vmware-vsphere-csi-driver/pull/92) * [OCPBUGS-14312](https://issues.redhat.com/browse/OCPBUGS-14312): Update 4.12 against v2.7.1 [#81](https://github.com/openshift/vmware-vsphere-csi-driver/pull/81) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Add migrationDataStore field [#59](https://github.com/openshift/vmware-vsphere-csi-driver/pull/59) * [OCPBUGS-6936](https://issues.redhat.com/browse/OCPBUGS-6936): fix for nil user session (#1859) [#57](https://github.com/openshift/vmware-vsphere-csi-driver/pull/57) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#48](https://github.com/openshift/vmware-vsphere-csi-driver/pull/48) * Updating vmware-vsphere-syncer images to be consistent with ART [#47](https://github.com/openshift/vmware-vsphere-csi-driver/pull/47) * Rebase to v2.6.1 [#45](https://github.com/openshift/vmware-vsphere-csi-driver/pull/45) * UPSTREAM: <carry>: Remove .github files [#46](https://github.com/openshift/vmware-vsphere-csi-driver/pull/46) * [STOR-863](https://issues.redhat.com/browse/STOR-863): Rebase to v2.6.0 [#44](https://github.com/openshift/vmware-vsphere-csi-driver/pull/44) * Updating ose-vmware-vsphere-csi-driver images to be consistent with ART [#43](https://github.com/openshift/vmware-vsphere-csi-driver/pull/43) * Updating vmware-vsphere-syncer images to be consistent with ART [#42](https://github.com/openshift/vmware-vsphere-csi-driver/pull/42) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/f66027216f745565058ab288b0b9e78ea7b80485...e4c0e103ddbf264387d6efb26b612a4b915d362a) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/d7cca470e82158e8240a09b3586f99e6a84f121f) * [OCPBUGS-21416](https://issues.redhat.com/browse/OCPBUGS-21416): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#175](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/175) * [OCPBUGS-18131](https://issues.redhat.com/browse/OCPBUGS-18131): Block upgrade to 4.13 via admin ack [#171](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/171) * [OCPBUGS-18333](https://issues.redhat.com/browse/OCPBUGS-18333): disable controller hostNetwork [#167](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/167) * [OCPBUGS-12712](https://issues.redhat.com/browse/OCPBUGS-12712): Add backoff for successful storage policy creations [#152](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/152) * [OCPBUGS-7901](https://issues.redhat.com/browse/OCPBUGS-7901): Bump sidecar timeouts for vsphere [#142](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/142) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Fix datastore migration bug in 4.12 [#139](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/139) * [OCPBUGS-4609](https://issues.redhat.com/browse/OCPBUGS-4609): Add multiple datacenters support [#123](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/123) * [OCPBUGS-3281](https://issues.redhat.com/browse/OCPBUGS-3281): set TLS cipher suites in Kube RBAC sidecars [#118](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/118) * [OCPBUGS-1904](https://issues.redhat.com/browse/OCPBUGS-1904): Only deploy VolumeSnapshotClass when CRD exists [#116](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/116) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#109](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/109) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#113](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/113) * [STOR-1050](https://issues.redhat.com/browse/STOR-1050): Enable topology aware provisioning [#107](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/107) * [OCPBUGS-1592](https://issues.redhat.com/browse/OCPBUGS-1592): Add HTTP proxy to syncer container [#110](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/110) * [OCPBUGS-1067](https://issues.redhat.com/browse/OCPBUGS-1067): Recreate storageclass in case it was deleted [#108](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/108) * [OCPBUGS-940](https://issues.redhat.com/browse/OCPBUGS-940): Rework "BlockDriverInstall" to "BlockUpgradeDriverInstall" [#106](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/106) * [STOR-794](https://issues.redhat.com/browse/STOR-794): Block upgrade when vSphere is < 7.0.2 [#94](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/94) * [Bug 2108473](https://bugzilla.redhat.com/show_bug.cgi?id=2108473): Warn if multiple credentials exists in secrets [#104](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/104) * [STOR-963](https://issues.redhat.com/browse/STOR-963): Add LOGGER_LEVEL env. var on debug log level [#102](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/102) * [Bug 2108054](https://bugzilla.redhat.com/show_bug.cgi?id=2108054): Reset metrics only after all check succeed [#100](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/100) * [Bug 2094783](https://bugzilla.redhat.com/show_bug.cgi?id=2094783): storageclass should not be created for unsupported vsphere version [#95](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/95) * Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART [#97](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/97) * [Bug 2081557](https://bugzilla.redhat.com/show_bug.cgi?id=2081557): Run at least one replica of Webhook [#92](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/92) * [Bug 2099864](https://bugzilla.redhat.com/show_bug.cgi?id=2099864): Reorder static resources to create RBAC first [#93](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/93) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/565bbff8a2e2b44889be302cb76dbcbea4b6c849...d7cca470e82158e8240a09b3586f99e6a84f121f) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/f25ae2add899bbd4b63b476c2e6178cfbaf68ac4) * [OCPBUGS-21574](https://issues.redhat.com/browse/OCPBUGS-21574): CVE-2023-44487: bump golang.org/x/net to v0.17.0 [#131](https://github.com/openshift/vsphere-problem-detector/pull/131) * [OCPBUGS-10812](https://issues.redhat.com/browse/OCPBUGS-10812): Add build number to metrics [#104](https://github.com/openshift/vsphere-problem-detector/pull/104) * [OCPBUGS-6788](https://issues.redhat.com/browse/OCPBUGS-6788): Derive the fully qualified vSphere username when checking permissions [#98](https://github.com/openshift/vsphere-problem-detector/pull/98) * [OCPBUGS-5509](https://issues.redhat.com/browse/OCPBUGS-5509): Add a count of zonal volumes [#97](https://github.com/openshift/vsphere-problem-detector/pull/97) * [OCPBUGS-3442](https://issues.redhat.com/browse/OCPBUGS-3442): Lets remove datastore length checks for now [#92](https://github.com/openshift/vsphere-problem-detector/pull/92) * [OCPBUGS-1361](https://issues.redhat.com/browse/OCPBUGS-1361): Fix propagation of check errors to Available condition [#90](https://github.com/openshift/vsphere-problem-detector/pull/90) * [OCPBUGS-926](https://issues.redhat.com/browse/OCPBUGS-926): Resolve situations when an existing folder or resource pool is used at install-time. [#87](https://github.com/openshift/vsphere-problem-detector/pull/87) * [STOR-858](https://issues.redhat.com/browse/STOR-858): Bump github.com/openshift/* and k8s.io/* [#88](https://github.com/openshift/vsphere-problem-detector/pull/88) * Updating vsphere-problem-detector images to be consistent with ART [#89](https://github.com/openshift/vsphere-problem-detector/pull/89) * validate vmware user privileges [#56](https://github.com/openshift/vsphere-problem-detector/pull/56) * Updating vsphere-problem-detector images to be consistent with ART [#86](https://github.com/openshift/vsphere-problem-detector/pull/86) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/b4164c48266e43bbcccfdb65c6999a741ff7b77d...f25ae2add899bbd4b63b476c2e6178cfbaf68ac4)