# 4.7.58 Created: 2022-09-02 10:43:25 +0000 UTC Image Digest: `sha256:dee33ede78272450743ede855e1a2f1611500e388be212ec0cde68d45b801fa7` Promoted from registry.ci.openshift.org/ocp/release:4.7.0-0.nightly-2022-08-31-025349 ## Changes from 4.7.16 ### Components * Kubernetes upgraded from 1.20.0-beta.2 to 1.20.15 * Red Hat Enterprise Linux CoreOS upgraded from 47.83.202106032343-0 to 47.84.202208302213-0 ### Rebuilt images without code change * [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver) git [f6a71bf7](https://github.com/openshift/aws-ebs-csi-driver/commit/f6a71bf783f3b7429a8c2fbbc6f3d586e6a7eb60) `sha256:db8eb0faf92970b494d1005fb643109e5a715a2851ce0d059750707a928ac046` * [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg) git [9c5da32b](https://github.com/openshift/baremetal-runtimecfg/commit/9c5da32ba602e5881178e56269b0506fcb54ff92) `sha256:34e2e111d3995951b79c7e4d11eeace7addcf0986f9ce7724dfdc2b5614d58a3` * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [6665cae3](https://github.com/openshift/cluster-bootstrap/commit/6665cae3374c18d466f11c9e0b8e41a61fcb0819) `sha256:63202b33482e49e95c7bc184f05b33a9555bbabe92e000f7abd4178e9f90ee5d` * [cluster-config-operator](https://github.com/openshift/cluster-config-operator) git [07e059a6](https://github.com/openshift/cluster-config-operator/commit/07e059a6b0c98e98d71f0c08dc741605e2431914) `sha256:868485b4534d647e06115d696fb1d890b247ec7bfd30c0ee2dfe373853d51a96` * [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator) git [fc036b59](https://github.com/openshift/cluster-csi-snapshot-controller-operator/commit/fc036b59b83b25ac6d1050aee0a172abb54502c6) `sha256:e10ba7de470bd257d44dbb9991501554b1fe621d34325538b3cc7a8378f0e6e8` * [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator) git [28159093](https://github.com/openshift/cluster-kube-controller-manager-operator/commit/281590936f3a94d4ae1eb008709fda6614fe763b) `sha256:06c1bf96da4e19754aa8564df3317f2cdd1e57c64131440dd28ea118dd65d4b6` * [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator) git [b2204ca2](https://github.com/openshift/cluster-kube-scheduler-operator/commit/b2204ca23a57e9f01af915375e6a18fc86ffecda) `sha256:0b5e86dbf3931f01cd8081a8dcdc7d5717e3986f9ac39c612ed80ec12ab50583` * [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator) git [54484757](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/commit/54484757581ec26f178c599215715bafd6029582) `sha256:c03547bdf3e4fdb8db14b226eb271fbe085ba691ca4c3d25df97136bad494038` * [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver) git [9043e2bb](https://github.com/openshift/cluster-machine-approver/commit/9043e2bba8f4707a578895f8b29d4736a61a010c) `sha256:27a9e652d314af1459a0eef7cac355b15d139ebf6fc4b245fe3efa2ff7006ce0` * [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller) git [42791bac](https://github.com/openshift/cluster-policy-controller/commit/42791bac64066daac0922b3d77e4bd86edae3b4e) `sha256:807d68810214fb572786499b771a3c5ea6142b3e50e8e73df0ae0bfa2295be7d` * [cluster-update-keys](https://github.com/openshift/cluster-update-keys) git [b7e79177](https://github.com/openshift/cluster-update-keys/commit/b7e791773b67f9acd6f521b8c1f69778e43a7d94) `sha256:bf515dc7316aead00e08079c9b2d47d70cc73b0128acb2727d18390c104c4679` * [coredns](https://github.com/openshift/coredns) git [d4a3ba3f](https://github.com/openshift/coredns/commit/d4a3ba3f6e03426d2623da86635caba17c0c3926) `sha256:45f405e0aa1bdbd126807bb7dcf62ff1a491582c770abc47a55eba612209ad67` * [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs) git [9404d343](https://github.com/openshift/csi-driver-nfs/commit/9404d343c020fd1806691704f64d930c779ad639) `sha256:3a6b74eb47f83b956cc7ff7915344c359a2ce48923467dfd90a30c824968a68c` * [csi-external-attacher](https://github.com/openshift/csi-external-attacher) git [f152de8a](https://github.com/openshift/csi-external-attacher/commit/f152de8ab08d9a4f13c97941afa01ef343b92b68) `sha256:da855caaa593d19fe27ab7860b966ded9cecf6580fc2549b494ff197225e04bb` * [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner) git [a49415e1](https://github.com/openshift/csi-external-provisioner/commit/a49415e114b90060c8cdbb88b1ca3f0a4c5d2ebc) `sha256:5971efc1f08bdcb3d95a038a833b9ee0ce5f6c42080dd41b05acf46af6e10e54` * [csi-external-resizer](https://github.com/openshift/csi-external-resizer) git [f77279e9](https://github.com/openshift/csi-external-resizer/commit/f77279e9561a02c18676dbcafcbe6db7d0ebd077) `sha256:5c5fa142031fc5cc98bede070599b38e42fc114c62f9b8012429be87152c0358` * [csi-external-snapshotter](https://github.com/openshift/csi-external-snapshotter) git [26773735](https://github.com/openshift/csi-external-snapshotter/commit/26773735c1cbf09de9bf31cb3c640abdca04cd83) `sha256:28f757ffb0f8378a63685b14bf9a88763fecfbb6918dd70d81c605a73e48d8dd` * [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe) git [3dad0280](https://github.com/openshift/csi-livenessprobe/commit/3dad0280ea630cfcc87bcf02806c75b7a066d81e) `sha256:67283950b12f73b5324db6f5a36381801d579f2b8554d7caf9b5448dfc79da5e` * [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar) git [2a77963e](https://github.com/openshift/csi-node-driver-registrar/commit/2a77963e5458da1bcde318b4609a6abefaf868d7) `sha256:5e5f6d44e626b42007ec26226a08f2a4283bdbe0412ad26ee04121a2a0f03dd0` * [csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter) git [26773735](https://github.com/openshift/csi-external-snapshotter/commit/26773735c1cbf09de9bf31cb3c640abdca04cd83) `sha256:4d0d6214c9042f355fe9e31039d9dd54a6e5bd109c2f07700fe4cf2d0d664826` * [csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter) git [26773735](https://github.com/openshift/csi-external-snapshotter/commit/26773735c1cbf09de9bf31cb3c640abdca04cd83) `sha256:dd3387fc7f3cad67c39643a4db765b3d607f35b4345f83729beca3448ab8d77f` * [egress-router-cni](https://github.com/openshift/egress-router-cni) git [96ebd378](https://github.com/openshift/egress-router-cni/commit/96ebd3782cbb63de098e75ebcedeac60546cfee3) `sha256:b13ae2c2966bbebaab87ad85c95dfae08ab0a0082b83d2f479b53cc386567c9c` * [ironic](https://github.com/openshift/ironic-image) git [1a7f41bb](https://github.com/openshift/ironic-image/commit/1a7f41bb1c2c04ccd06958669a24a08a0bf22258) `sha256:9f1647f835c4859b6aff5b1c94f19c81b9d4ddba88f4afb3224631bd4a708169` * [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager) git [43d640a0](https://github.com/openshift/ironic-static-ip-manager/commit/43d640a07582a5aaaa485ea85319bb0721dea251) `sha256:5a8a2e1f85b0f0deebec58f0077adf536a56ae79b0a4add4803996ad5ea2a047` * [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter) git [212d80b4](https://github.com/openshift/k8s-prometheus-adapter/commit/212d80b4bd35fc6f19ec9ec537d0261a2a300cfd) `sha256:b226a900432c2ad576708b5a93afc988389e0725d3ea7eef172aee8eff5fdd75` * [keepalived-ipfailover](https://github.com/openshift/images) git [0e45f638](https://github.com/openshift/images/commit/0e45f638fbf5fa9e9bdb507d81b2cb9f12fadbaf) `sha256:32c33ce0707ad1877d1205cb6aada24dc0d4718a9470b3455c7eea995516da63` * [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy) git [14c288e6](https://github.com/openshift/kube-rbac-proxy/commit/14c288e6d19578d96e502def75995b882f1c9b37) `sha256:97f42319fa5955c65b2b89dfd98098b27c69c7cca82d66c4d31920b10301ded6` * [kube-state-metrics](https://github.com/openshift/kube-state-metrics) git [04bff708](https://github.com/openshift/kube-state-metrics/commit/04bff708e05190cbc18182a2dbb8a10930433c1d) `sha256:ac2f0b5759e6712e128a8a26f5cdc94820310743cc54d1dc3d0d41a443792114` * machine-os-content `sha256:f0e2591da07a1c11b03e4dca83b1d9af80f05336823626d1ebf06f50b01001f5` * [multus-cni](https://github.com/openshift/multus-cni) git [5530094d](https://github.com/openshift/multus-cni/commit/5530094db7607fc9292e3b269fcf5a85b0dad3df) `sha256:17b73931c23664a36f42013518ba083861786b70cb458fdd1167044a99b3b8c9` * [multus-route-override-cni](https://github.com/openshift/route-override-cni) git [1662c3ec](https://github.com/openshift/route-override-cni/commit/1662c3ec79b880fce5cd9c4e64f5ba0d4daffc00) `sha256:759a02d9248d22c0d3b084cebbcede12a2289a9fcdc02d1408c4cb99e90eba19` * [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics) git [40b0968e](https://github.com/openshift/openshift-state-metrics/commit/40b0968ee1d488b791cdd6750fac6534abac122e) `sha256:55d20e8a8bc180bf7ad7849d79e40e8caadbf06f563fe256814c9224c472792f` * [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver) git [72545e63](https://github.com/openshift/ovirt-csi-driver/commit/72545e6381b3625bcb37e37c4c713862d04cb145) `sha256:a1a116d896eb1be24e931fa4be94729335920aeeed828606b2bc057c81e740d0` * [pod](https://github.com/openshift/images) git [0e45f638](https://github.com/openshift/images/commit/0e45f638fbf5fa9e9bdb507d81b2cb9f12fadbaf) `sha256:e6b858b0d4b97e913ef9e5e4db8fa2a0032fcbc61b4e4097034e9e05fb6cd624` * [prom-label-proxy](https://github.com/openshift/prom-label-proxy) git [db87872c](https://github.com/openshift/prom-label-proxy/commit/db87872c6aba7e4e9def29b33beea582557ce940) `sha256:d572b7d5994c7d7b6a4bdaf3401ea77a2fc2209fa8fcf17a04b6f090c51d69db` * [prometheus](https://github.com/openshift/prometheus) git [cb5e53cd](https://github.com/openshift/prometheus/commit/cb5e53cdfedfee185feffcec13304dda87ff3055) `sha256:00e16d624d8b426fb13c5d6616b46646d3b4425afc8323b50b3fd501ab67dccb` * [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager) git [9954cc42](https://github.com/openshift/prometheus-alertmanager/commit/9954cc421d26ecf498ac82f3cbdc64ce3afa4c74) `sha256:0bd872c7513a3449815a6828c10641c04265ce02cd5a88612ffe0dcd0142a58f` * [prometheus-config-reloader](https://github.com/openshift/prometheus-operator) git [1f0fd51d](https://github.com/openshift/prometheus-operator/commit/1f0fd51df863c8773d2094e4ca78b4bd14cbf6e6) `sha256:23aafa7cfe8c7537558ca0f8d0ae258bd3c32c636f739290f2f554b6e6672f43` * [prometheus-node-exporter](https://github.com/openshift/node_exporter) git [76974e2e](https://github.com/openshift/node_exporter/commit/76974e2ed037c4bf81387dabf7ccd388a724c5aa) `sha256:f8212abd8b6d3ad959ce528822feda2268bbfd98b4164917fc53f8edd511cfc3` * [prometheus-operator](https://github.com/openshift/prometheus-operator) git [1f0fd51d](https://github.com/openshift/prometheus-operator/commit/1f0fd51df863c8773d2094e4ca78b4bd14cbf6e6) `sha256:7a97d39cea9f3c01ac6ef0ba083f54bb803e4639f1a190fe5df1b2b5b6acbe06` * [telemeter](https://github.com/openshift/telemeter) git [e4dac512](https://github.com/openshift/telemeter/commit/e4dac5123ef6b3ecb16b5151e2e8f8aeb8b1f21a) `sha256:5c2f98521fdadbf1c2ce85a86c78998a6cacd97445b23a14167f205c3b8fa4be` ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/3a9ff17d523a342ee71a967a2b82d5cf044f1eb8) * [Bug 1996070](https://bugzilla.redhat.com/show_bug.cgi?id=1996070): Add maxUnavailable to DaemonSets [#135](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/135) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/97f73eb7de4b474497169771239dcd81990d3f2e...3a9ff17d523a342ee71a967a2b82d5cf044f1eb8) ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/5368195c02ca672dc7f7a4ad571df5584fa4087f) * [Bug 1976192](https://bugzilla.redhat.com/show_bug.cgi?id=1976192): update aws-sdk-go to v1.38.25 [#415](https://github.com/openshift/cluster-api-provider-aws/pull/415) * [Bug 1942966](https://bugzilla.redhat.com/show_bug.cgi?id=1942966): Update EC2 instance types [#398](https://github.com/openshift/cluster-api-provider-aws/pull/398) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/8d9a84fb80765e74e4df09260ed38f455b6f712a...5368195c02ca672dc7f7a4ad571df5584fa4087f) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/5ad66502d3abfe7bda9b962815ba382096a80610) * [Bug 2046237](https://bugzilla.redhat.com/show_bug.cgi?id=2046237): update go.mod for go1.15 [#149](https://github.com/openshift/aws-pod-identity-webhook/pull/149) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/0074d6afef9e20f5a1bcbde85cd7c01e422202ca...5ad66502d3abfe7bda9b962815ba382096a80610) ### [azure-machine-controllers](https://github.com/openshift/cluster-api-provider-azure/tree/e77402b9159835cc2d9987b2ebd3d7d66fe6a683) * [Bug 2057559](https://bugzilla.redhat.com/show_bug.cgi?id=2057559): Requeue create on invalid credentials errors [#254](https://github.com/openshift/cluster-api-provider-azure/pull/254) * [Full changelog](https://github.com/openshift/cluster-api-provider-azure/compare/03057670065365162f137e8b5d1942088b9592c2...e77402b9159835cc2d9987b2ebd3d7d66fe6a683) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/bfdba2d19e3fa1105bab93aa4cce8bb7f44b4b2c) * [Bug 2007087](https://bugzilla.redhat.com/show_bug.cgi?id=2007087): bump RHCOS 4.7 boot images [#6012](https://github.com/openshift/installer/pull/6012) * [Bug 2066406](https://bugzilla.redhat.com/show_bug.cgi?id=2066406): OpenStack+Kuryr: Fix `cluster destroy` with BYON [#5754](https://github.com/openshift/installer/pull/5754) * [Bug 1973367](https://bugzilla.redhat.com/show_bug.cgi?id=1973367): baremetal: pass IP_OPTIONS to os downloader [#5013](https://github.com/openshift/installer/pull/5013) * [Bug 1928761](https://bugzilla.redhat.com/show_bug.cgi?id=1928761): Validation of platform.openstack.machineSubnet [#5434](https://github.com/openshift/installer/pull/5434) * [Bug 1964753](https://bugzilla.redhat.com/show_bug.cgi?id=1964753): Bump RHCOS 4.7 boot image [#5229](https://github.com/openshift/installer/pull/5229) * Update OWNERS [#5243](https://github.com/openshift/installer/pull/5243) * [Bug 1980866](https://bugzilla.redhat.com/show_bug.cgi?id=1980866): [4.7] Prefer IPv6 hostIP on bootstrap IPv6 deployments [#5067](https://github.com/openshift/installer/pull/5067) * [Bug 1981553](https://bugzilla.redhat.com/show_bug.cgi?id=1981553): [release-4.7] aws: move elastic ip permissions to create networking category [#5055](https://github.com/openshift/installer/pull/5055) * [Bug 1954595](https://bugzilla.redhat.com/show_bug.cgi?id=1954595): Validate noProxy input and add prefix for proxy urls [#5060](https://github.com/openshift/installer/pull/5060) * OWNERS: add more core team members as approvers [#5123](https://github.com/openshift/installer/pull/5123) * [Bug 1977481](https://bugzilla.redhat.com/show_bug.cgi?id=1977481): Dockerfile: repin libvirt [#5043](https://github.com/openshift/installer/pull/5043) * [Bug 1975819](https://bugzilla.redhat.com/show_bug.cgi?id=1975819): upi/vsphere: Use Afterburn guestinfo for static IP and hostname config [#5025](https://github.com/openshift/installer/pull/5025) * [Bug 1974282](https://bugzilla.redhat.com/show_bug.cgi?id=1974282): gather: collect networking information in log bundle [#5017](https://github.com/openshift/installer/pull/5017) * [Bug 1971163](https://bugzilla.redhat.com/show_bug.cgi?id=1971163): Updating AWS instance types [#4992](https://github.com/openshift/installer/pull/4992) * [Bug 1945467](https://bugzilla.redhat.com/show_bug.cgi?id=1945467): aws: allow use of unknown regions in known partitions [#4807](https://github.com/openshift/installer/pull/4807) * [Bug 1938426](https://bugzilla.redhat.com/show_bug.cgi?id=1938426): Set default values to machine pools before validation [#4750](https://github.com/openshift/installer/pull/4750) * [Bug 1967355](https://bugzilla.redhat.com/show_bug.cgi?id=1967355): pattern removed from sed to prevent expansion [#4975](https://github.com/openshift/installer/pull/4975) * [Bug 1956483](https://bugzilla.redhat.com/show_bug.cgi?id=1956483): Bump boot images for RHCOS fixes [#4961](https://github.com/openshift/installer/pull/4961) * [Full changelog](https://github.com/openshift/installer/compare/70efdbfb18d87ba66fb75c20806d7ad0592239d3...bfdba2d19e3fa1105bab93aa4cce8bb7f44b4b2c) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/6d86e627a0150115deffbba726b56e04e6b7ca0e) * Updating baremetal-machine-controller images to be consistent with ART [#161](https://github.com/openshift/cluster-api-provider-baremetal/pull/161) * [Bug 1938967](https://bugzilla.redhat.com/show_bug.cgi?id=1938967): Updating baremetal-machine-controller builder & base images to be consistent with ART [#134](https://github.com/openshift/cluster-api-provider-baremetal/pull/134) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/25cbb8d8f9e52244ccd6bf459e6dd4b84749de56...6d86e627a0150115deffbba726b56e04e6b7ca0e) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/e36cbc13f82e290ca5f525a4da0fab516808d113) * [Bug 1972430](https://bugzilla.redhat.com/show_bug.cgi?id=1972430): Don't deprovision provisioned host due to error [#159](https://github.com/openshift/baremetal-operator/pull/159) * [Bug 1961341](https://bugzilla.redhat.com/show_bug.cgi?id=1961341): config: use rbacv1 instead of rbacv1beta1 [#148](https://github.com/openshift/baremetal-operator/pull/148) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/74c60aa957f53432d0a98afc78099add55d27c44...e36cbc13f82e290ca5f525a4da0fab516808d113) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/c4ebc7adea655be4dab6dcb421d16367ca034130) * [Bug 2039763](https://bugzilla.redhat.com/show_bug.cgi?id=2039763): Remove `git://` from new-app tests [#1024](https://github.com/openshift/oc/pull/1024) * [Bug 2004194](https://bugzilla.redhat.com/show_bug.cgi?id=2004194): Registry mirror panic [#927](https://github.com/openshift/oc/pull/927) * [Bug 1995074](https://bugzilla.redhat.com/show_bug.cgi?id=1995074): revert incorrect allowance of ssh:// prefix with scp styled URLs [#902](https://github.com/openshift/oc/pull/902) * [Bug 1974264](https://bugzilla.redhat.com/show_bug.cgi?id=1974264): make oc logs work with BuildConfig's JenkinsPipeline strategy [#864](https://github.com/openshift/oc/pull/864) * [Bug 1976284](https://bugzilla.redhat.com/show_bug.cgi?id=1976284): skip-multiple-scopes with adm catalog mirror [#869](https://github.com/openshift/oc/pull/869) * [Bug 1963784](https://bugzilla.redhat.com/show_bug.cgi?id=1963784): Preserve AuthInfo when switching projects [#861](https://github.com/openshift/oc/pull/861) * [Bug 1970811](https://bugzilla.redhat.com/show_bug.cgi?id=1970811): set User-Agent when talking with registries [#848](https://github.com/openshift/oc/pull/848) * [Bug 1969928](https://bugzilla.redhat.com/show_bug.cgi?id=1969928): exclude security during exctraction [#844](https://github.com/openshift/oc/pull/844) * [Full changelog](https://github.com/openshift/oc/compare/e29b355e74c9efd4491d64b9bb013c6091770d20...c4ebc7adea655be4dab6dcb421d16367ca034130) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/113f33cc6ceef272835e6fd17dff543b541485ef) * [Bug 2064428](https://bugzilla.redhat.com/show_bug.cgi?id=2064428): Remove Azure mint mode support as Active Directory Graph API will be sunset [#455](https://github.com/openshift/cloud-credential-operator/pull/455) * [Bug 2027750](https://bugzilla.redhat.com/show_bug.cgi?id=2027750): Check for aws status in infra platform status field before client setup [#427](https://github.com/openshift/cloud-credential-operator/pull/427) * [Bug 1958983](https://bugzilla.redhat.com/show_bug.cgi?id=1958983): rework GCP passthrough permissions checking [#338](https://github.com/openshift/cloud-credential-operator/pull/338) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/d088f49b436447a29a50958ddafd44e3362fb8ab...113f33cc6ceef272835e6fd17dff543b541485ef) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/5c93df529fa7cf9a7081d845a496aa17f92b937b) * [Bug 2003633](https://bugzilla.redhat.com/show_bug.cgi?id=2003633): manifests, bindata: explicitely set runAsUser for operator and operand [#485](https://github.com/openshift/cluster-authentication-operator/pull/485) * Updating ose-cluster-authentication-operator builder & base images to be consistent with ART [#408](https://github.com/openshift/cluster-authentication-operator/pull/408) * [Bug 1971087](https://bugzilla.redhat.com/show_bug.cgi?id=1971087): add a controller to remove webhooktokenauthenticator config [#418](https://github.com/openshift/cluster-authentication-operator/pull/418) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/a28bdc97c7f9d1ec4a0a859abeaeda41b37e381f...5c93df529fa7cf9a7081d845a496aa17f92b937b) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/8b2e494f7796639b46f9867407fe21546cfc01c3) * [Bug 1924416](https://bugzilla.redhat.com/show_bug.cgi?id=1924416): Bump dependencies to Kubernetes 1.20.6 to mitigate CVE-2021-3121 [#204](https://github.com/openshift/kubernetes-autoscaler/pull/204) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/c882ab7f35adfb0f438fa28f6579092aa0deea59...8b2e494f7796639b46f9867407fe21546cfc01c3) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/b252568c646fb46cbbf52a719a501b768a216272) * Updating ose-cluster-autoscaler-operator images to be consistent with ART [#239](https://github.com/openshift/cluster-autoscaler-operator/pull/239) * [Bug 1961341](https://bugzilla.redhat.com/show_bug.cgi?id=1961341): manifests: use v1 for RBAC [#206](https://github.com/openshift/cluster-autoscaler-operator/pull/206) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/a3fecc8e7dc5d793eecf8bf77e311f5b29f5e7dd...b252568c646fb46cbbf52a719a501b768a216272) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/f73e5fcb432e4b847cddec5ce8570f8c5c32e902) * [Bug 1976924](https://bugzilla.redhat.com/show_bug.cgi?id=1976924): Update bmh crd [#190](https://github.com/openshift/cluster-baremetal-operator/pull/190) * [Bug 1933726](https://bugzilla.redhat.com/show_bug.cgi?id=1933726): provisioning: configure DHCP range with netmask [#112](https://github.com/openshift/cluster-baremetal-operator/pull/112) * [Bug 1973367](https://bugzilla.redhat.com/show_bug.cgi?id=1973367): Pass IP_OPTIONS=dhcp|dhcp6 down to OS Downloader container [#171](https://github.com/openshift/cluster-baremetal-operator/pull/171) * [Bug 1972291](https://bugzilla.redhat.com/show_bug.cgi?id=1972291): Use a cache URL with the .svc.cluster.local suffix [#161](https://github.com/openshift/cluster-baremetal-operator/pull/161) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/175f8f5283faebd81fb9d1fb2915eb2682622e1e...f73e5fcb432e4b847cddec5ce8570f8c5c32e902) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/cf8be7b279499d5010894b8c9bf79acc9853be36) * [Bug 1967766](https://bugzilla.redhat.com/show_bug.cgi?id=1967766): Corefile: Set bufsize to 512 bytes for all servers [#277](https://github.com/openshift/cluster-dns-operator/pull/277) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/d6ba05f21dacb373c9d3386fc15e755718b03d4d...cf8be7b279499d5010894b8c9bf79acc9853be36) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/51cb8c4147c45672c9645fae39bfcc6d696adc85) * [Bug 1976988](https://bugzilla.redhat.com/show_bug.cgi?id=1976988): [release-4.7]: Increase inertia duration for the EtcdMembersDegraded condition [#618](https://github.com/openshift/cluster-etcd-operator/pull/618) * [Bug 1976287](https://bugzilla.redhat.com/show_bug.cgi?id=1976287): Validate the status of the etcd snapshot during backup and restore [#617](https://github.com/openshift/cluster-etcd-operator/pull/617) * [Bug 1951447](https://bugzilla.redhat.com/show_bug.cgi?id=1951447): pkg/etcdenvvar/etcd_env.go: Sort endpoints to prevent rollout [#568](https://github.com/openshift/cluster-etcd-operator/pull/568) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/08595861de20850111f5e6cc76b4ad3a943b71a8...51cb8c4147c45672c9645fae39bfcc6d696adc85) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/70a85883e406641339251b5c1473e4dec7083928) * [Bug 1988388](https://bugzilla.redhat.com/show_bug.cgi?id=1988388): Properly set custom tolerations [#708](https://github.com/openshift/cluster-image-registry-operator/pull/708) * [Bug 1984979](https://bugzilla.redhat.com/show_bug.cgi?id=1984979): Creating StorageAccount V2 instead of V1 [#707](https://github.com/openshift/cluster-image-registry-operator/pull/707) * Updating ose-cluster-image-registry-operator builder & base images to be consistent with ART [#651](https://github.com/openshift/cluster-image-registry-operator/pull/651) * [Bug 1977159](https://bugzilla.redhat.com/show_bug.cgi?id=1977159): bump aws-sdk-go to v1.38.35 [#704](https://github.com/openshift/cluster-image-registry-operator/pull/704) * [Bug 1973693](https://bugzilla.redhat.com/show_bug.cgi?id=1973693): Setting required pod anti-affinity rules [#697](https://github.com/openshift/cluster-image-registry-operator/pull/697) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/4f854ba118c7a3424beb8739b34fa97499245f9e...70a85883e406641339251b5c1473e4dec7083928) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/e76561d4a0e8976f44c6eaf5e7360827b583a21a) * [Bug 1996897](https://bugzilla.redhat.com/show_bug.cgi?id=1996897): Add startup probe to the router deployment [#645](https://github.com/openshift/cluster-ingress-operator/pull/645) * [Bug 1978845](https://bugzilla.redhat.com/show_bug.cgi?id=1978845): Specify topology spread constraints [#632](https://github.com/openshift/cluster-ingress-operator/pull/632) * [Bug 1973983](https://bugzilla.redhat.com/show_bug.cgi?id=1973983): Canary: Handle downgrades from 4.8 to 4.7 properly [#627](https://github.com/openshift/cluster-ingress-operator/pull/627) * [Bug 1960776](https://bugzilla.redhat.com/show_bug.cgi?id=1960776): Reconcile openshift-ingress namespace on upgrade [#616](https://github.com/openshift/cluster-ingress-operator/pull/616) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/fca8201e866741243b42fa75392875654acd8bf0...e76561d4a0e8976f44c6eaf5e7360827b583a21a) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/d5d5759042b1820715983fb5546fcf2ea1183e66) * [Bug 2001243](https://bugzilla.redhat.com/show_bug.cgi?id=2001243): Enforce OpenShift's defined kubelet version skew policies [#1223](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1223) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/099c6afa1f8b4fe7654207f7eabd7784b42ce2e3...d5d5759042b1820715983fb5546fcf2ea1183e66) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/0f7da469218513896435381193ff97df3b23f66a) * [Bug 2014023](https://bugzilla.redhat.com/show_bug.cgi?id=2014023): Backport etcd telemetry [#1433](https://github.com/openshift/cluster-monitoring-operator/pull/1433) * [Bug 1986591](https://bugzilla.redhat.com/show_bug.cgi?id=1986591): node exporter calls /proc/cpuinfo multiple times causing the node to freeze [#1300](https://github.com/openshift/cluster-monitoring-operator/pull/1300) * [Bug 1969963](https://bugzilla.redhat.com/show_bug.cgi?id=1969963): Recording rule for builds by strategy [#1206](https://github.com/openshift/cluster-monitoring-operator/pull/1206) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/e5ebf6ed4a158a488989184bfbfbc962ccf70c2a...0f7da469218513896435381193ff97df3b23f66a) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/faca567ea613fd2c7284e713dc1dad1ae7c21d60) * [Bug 2058675](https://bugzilla.redhat.com/show_bug.cgi?id=2058675): ip-reconciler cronjob specification requires hostnetwork, api-int lb usage & proper backoff [backport 4.7] [#1325](https://github.com/openshift/cluster-network-operator/pull/1325) * Adds dougbtv to owners [release-4.7] [#1404](https://github.com/openshift/cluster-network-operator/pull/1404) * [release 4.8] Updates owners [#1337](https://github.com/openshift/cluster-network-operator/pull/1337) * [Bug 2041893](https://bugzilla.redhat.com/show_bug.cgi?id=2041893): Allow to use proxy to connect to OSP cloud [#1284](https://github.com/openshift/cluster-network-operator/pull/1284) * [Bug 2021224](https://bugzilla.redhat.com/show_bug.cgi?id=2021224): ovnkube: set ovn-controller lflow cache limit to 1GB [#1217](https://github.com/openshift/cluster-network-operator/pull/1217) * [Bug 2034355](https://bugzilla.redhat.com/show_bug.cgi?id=2034355): Whereabouts IP Reconciliaton [backport 4.7] [#1266](https://github.com/openshift/cluster-network-operator/pull/1266) * [Bug 1924839](https://bugzilla.redhat.com/show_bug.cgi?id=1924839): [release-4.7] Update protobuf version to address CVE-2021-3121 [#1084](https://github.com/openshift/cluster-network-operator/pull/1084) * [Bug 1990932](https://bugzilla.redhat.com/show_bug.cgi?id=1990932): [Backport 4.7] Whereabouts should have RBAC for leases [#1186](https://github.com/openshift/cluster-network-operator/pull/1186) * [Bug 2003800](https://bugzilla.redhat.com/show_bug.cgi?id=2003800): Use 10% for sdn maxUnavailable for rolling update [#1202](https://github.com/openshift/cluster-network-operator/pull/1202) * [Bug 1996063](https://bugzilla.redhat.com/show_bug.cgi?id=1996063): Use 10% for nw-check-target maxUnavailable [#1184](https://github.com/openshift/cluster-network-operator/pull/1184) * [Bug 1988426](https://bugzilla.redhat.com/show_bug.cgi?id=1988426): Change to use mountPath: /host [#1170](https://github.com/openshift/cluster-network-operator/pull/1170) * [Bug 1962036](https://bugzilla.redhat.com/show_bug.cgi?id=1962036): Use the election mechanism provided by library-go [#1098](https://github.com/openshift/cluster-network-operator/pull/1098) * [Bug 1972549](https://bugzilla.redhat.com/show_bug.cgi?id=1972549): Remove reference to v1beta1 API [#1134](https://github.com/openshift/cluster-network-operator/pull/1134) * [Bug 1982217](https://bugzilla.redhat.com/show_bug.cgi?id=1982217): Use 10% for ovnkube-node for maxUnavailable [#1153](https://github.com/openshift/cluster-network-operator/pull/1153) * [Bug 1969860](https://bugzilla.redhat.com/show_bug.cgi?id=1969860): Escape characters on ini file [#1127](https://github.com/openshift/cluster-network-operator/pull/1127) * [Bug 1967994](https://bugzilla.redhat.com/show_bug.cgi?id=1967994): Backport daemonset to drop icmp frag needed packets received from other nodes in the cluster to Rel 4.7 [#1119](https://github.com/openshift/cluster-network-operator/pull/1119) * [Bug 1972183](https://bugzilla.redhat.com/show_bug.cgi?id=1972183): config: Set enable-profiling true by default and allow enable-profiling as a proxy argument [#1129](https://github.com/openshift/cluster-network-operator/pull/1129) * [Bug 1967388](https://bugzilla.redhat.com/show_bug.cgi?id=1967388): annotate flowcontrol with `networkoperator.openshift.io/ignore-errors` [#1118](https://github.com/openshift/cluster-network-operator/pull/1118) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/f86cbb5b530288fa6b6aa9aedb5f95beb8542207...faca567ea613fd2c7284e713dc1dad1ae7c21d60) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/ddbc574c9f136c88a3834ccbe3cc1414cff2390c) * [Bug 2014430](https://bugzilla.redhat.com/show_bug.cgi?id=2014430): stalld: update to v1.13.0 [#281](https://github.com/openshift/cluster-node-tuning-operator/pull/281) * [Bug 1986739](https://bugzilla.redhat.com/show_bug.cgi?id=1986739): gather all Tuned CRs [#255](https://github.com/openshift/cluster-node-tuning-operator/pull/255) * [Bug 1958885](https://bugzilla.redhat.com/show_bug.cgi?id=1958885): Switch to client-go leader-with-lease election. [#238](https://github.com/openshift/cluster-node-tuning-operator/pull/238) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/5b774014c4d296e198a694f3694777d000a87640...ddbc574c9f136c88a3834ccbe3cc1414cff2390c) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/df9b1a45165dd1a2cc17b5a885370093bb237e41) * [Bug 1996045](https://bugzilla.redhat.com/show_bug.cgi?id=1996045): bindata: run openshift-apiserver as root explicitly. [#468](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/468) * Updating ose-cluster-openshift-apiserver-operator builder & base images to be consistent with ART [#427](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/427) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/ecfa2d959fe2afcbd3e947658d267b085a1b2063...df9b1a45165dd1a2cc17b5a885370093bb237e41) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/2a8963a9c5755d4951d882bd816cd4d6ccdf02cd) * [Bug 1924494](https://bugzilla.redhat.com/show_bug.cgi?id=1924494): Update k8s.io dependencies to address CVE-2021-3121 [#222](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/222) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/245005e3065238ecd4aef208c21456afa09ec38e...2a8963a9c5755d4951d882bd816cd4d6ccdf02cd) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/1892553d5556068b3e1d89336a349e1e3b3511af) * [Bug 2001977](https://bugzilla.redhat.com/show_bug.cgi?id=2001977): delete hello-openshift in payload imagestream [#393](https://github.com/openshift/cluster-samples-operator/pull/393) * [Bug 1923036](https://bugzilla.redhat.com/show_bug.cgi?id=1923036): Update Jenkins monitored templates names [#359](https://github.com/openshift/cluster-samples-operator/pull/359) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/061bdb108232b5952929301a7dd34ada934016d7...1892553d5556068b3e1d89336a349e1e3b3511af) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/8110e0d77934c119736a3739a739074f0586f34d) * [Bug 2104632](https://bugzilla.redhat.com/show_bug.cgi?id=2104632): Add missing ibm cloud annotations to prometheus rbac [#297](https://github.com/openshift/cluster-storage-operator/pull/297) * [Bug 2030740](https://bugzilla.redhat.com/show_bug.cgi?id=2030740): Add trusted CA bundle to vsphere operators [#248](https://github.com/openshift/cluster-storage-operator/pull/248) * [Bug 1986030](https://bugzilla.redhat.com/show_bug.cgi?id=1986030): Manila CSI driver is not in must-gather [#193](https://github.com/openshift/cluster-storage-operator/pull/193) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/6d2c25f3cfb931deca457a0c6261651c1a64c464...8110e0d77934c119736a3739a739074f0586f34d) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/8d3c71dd10f8415e240c68df9aaf584f36d79e7a) * [Bug 2117347](https://bugzilla.redhat.com/show_bug.cgi?id=2117347): pkg/cvo: retain initial completed update history entry [#819](https://github.com/openshift/cluster-version-operator/pull/819) * [Bug 2030628](https://bugzilla.redhat.com/show_bug.cgi?id=2030628): [release-4.7] Respect noProxy [#711](https://github.com/openshift/cluster-version-operator/pull/711) * [Bug 2007674](https://bugzilla.redhat.com/show_bug.cgi?id=2007674): pkg/cvo/egress: Load HTTPS proxy from Proxy status [#664](https://github.com/openshift/cluster-version-operator/pull/664) * [Bug 1961341](https://bugzilla.redhat.com/show_bug.cgi?id=1961341): Remove rbacv1beta1 support [#652](https://github.com/openshift/cluster-version-operator/pull/652) * [Bug 1991010](https://bugzilla.redhat.com/show_bug.cgi?id=1991010): pkg/cvo/metrics: Ignore Degraded for cluster_operator_up [#638](https://github.com/openshift/cluster-version-operator/pull/638) * [Bug 1924428](https://bugzilla.redhat.com/show_bug.cgi?id=1924428): CVE-2021-3121 gogo/protobuf lacks certain index validation [#625](https://github.com/openshift/cluster-version-operator/pull/625) * [Bug 1970272](https://bugzilla.redhat.com/show_bug.cgi?id=1970272): Fixing the log message in rbac.go for clusterrole [#609](https://github.com/openshift/cluster-version-operator/pull/609) * [Bug 1970272](https://bugzilla.redhat.com/show_bug.cgi?id=1970272): Log object updates and show existing/required diff [#589](https://github.com/openshift/cluster-version-operator/pull/589) * [Bug 1969501](https://bugzilla.redhat.com/show_bug.cgi?id=1969501): install/0000_90_cluster-version-operator_02_servicemonitor: Soften ClusterOperatorDegraded [#587](https://github.com/openshift/cluster-version-operator/pull/587) * [Bug 1969378](https://bugzilla.redhat.com/show_bug.cgi?id=1969378): avoid hotlooping on RoleBindings with empty APIGroup [#584](https://github.com/openshift/cluster-version-operator/pull/584) * [Bug 1966977](https://bugzilla.redhat.com/show_bug.cgi?id=1966977): Prevent hotlooping in ImageStreams [#580](https://github.com/openshift/cluster-version-operator/pull/580) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/ca61c7f365c0c7f0bece192333a387fb80d3e6e1...8d3c71dd10f8415e240c68df9aaf584f36d79e7a) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/b957dff7cc1887f844938383237ed0e9c3577beb) * Updating configmap-reload builder & base images to be consistent with ART [#27](https://github.com/openshift/configmap-reload/pull/27) * vendor: regenerate [#31](https://github.com/openshift/configmap-reload/pull/31) * [Full changelog](https://github.com/openshift/configmap-reload/compare/25dfb671c6ce9a73f5594efe699ed410fbf01d44...b957dff7cc1887f844938383237ed0e9c3577beb) ### [console](https://github.com/openshift/console/tree/330ce5dc8efb136794e0d4fe7aa34eec7ca106e2) * [Bug 2090384](https://bugzilla.redhat.com/show_bug.cgi?id=2090384): Eliminate use of lookaside cache and move to Cachito [#11574](https://github.com/openshift/console/pull/11574) * [Bug 2073602](https://bugzilla.redhat.com/show_bug.cgi?id=2073602): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11309](https://github.com/openshift/console/pull/11309) * [Bug 2060451](https://bugzilla.redhat.com/show_bug.cgi?id=2060451): Fix a crash when the preferred namespace contains just numbers [#11135](https://github.com/openshift/console/pull/11135) * [Bug 2052859](https://bugzilla.redhat.com/show_bug.cgi?id=2052859): override normal namespace hiding for pods view in node details [#11027](https://github.com/openshift/console/pull/11027) * [Bug 2055411](https://bugzilla.redhat.com/show_bug.cgi?id=2055411): Filter superseded helm secrets and fix firehose to support partial metadata [#11078](https://github.com/openshift/console/pull/11078) * [Bug 2044949](https://bugzilla.redhat.com/show_bug.cgi?id=2044949): fix dev-catalog stuck in loading state [#10923](https://github.com/openshift/console/pull/10923) * [Bug 2055403](https://bugzilla.redhat.com/show_bug.cgi?id=2055403): Add support for fetching partial metadata and fix helm list page crash [#11077](https://github.com/openshift/console/pull/11077) * [Bug 2049313](https://bugzilla.redhat.com/show_bug.cgi?id=2049313): Topology performance: Do not fetch HPA for each Deployment (Pod Ring) [#10991](https://github.com/openshift/console/pull/10991) * [Bug 2052858](https://bugzilla.redhat.com/show_bug.cgi?id=2052858): Add subject name selector field to SinkBinding form [#11026](https://github.com/openshift/console/pull/11026) * (4.7 Backport) Bug 1981412: Change OCM links from cloud. to console.redhat.com #9470 [#9471](https://github.com/openshift/console/pull/9471) * [Bug 2005298](https://bugzilla.redhat.com/show_bug.cgi?id=2005298): Block and File and Object dashboards should not be part of OCP Console for ODF Managed Services [#10097](https://github.com/openshift/console/pull/10097) * [Bug 2005138](https://bugzilla.redhat.com/show_bug.cgi?id=2005138): Console overview operators shown upgrading when still waiting on approval [#10093](https://github.com/openshift/console/pull/10093) * [release 4.7] Bug 1969754: windows vms fail to start rls 4.7 [#9657](https://github.com/openshift/console/pull/9657) * [Bug 2004946](https://bugzilla.redhat.com/show_bug.cgi?id=2004946): Use httpd in workload YAML templates [#10089](https://github.com/openshift/console/pull/10089) * [Bug 1973707](https://bugzilla.redhat.com/show_bug.cgi?id=1973707): Add chart URl to annotations during helm install/upgrade [#9299](https://github.com/openshift/console/pull/9299) * [Bug 1995617](https://bugzilla.redhat.com/show_bug.cgi?id=1995617): Fix Pipeline Download All [#9839](https://github.com/openshift/console/pull/9839) * [Bug 1986724](https://bugzilla.redhat.com/show_bug.cgi?id=1986724): Show the content of Insights widget when there are 0 recommendations for cluster [#9655](https://github.com/openshift/console/pull/9655) * [Bug 1989642](https://bugzilla.redhat.com/show_bug.cgi?id=1989642): Preserve user annotations while editing an app [#9714](https://github.com/openshift/console/pull/9714) * [Bug 1975560](https://bugzilla.redhat.com/show_bug.cgi?id=1975560): Fix typo in olm message [#9335](https://github.com/openshift/console/pull/9335) * [Bug 1975469](https://bugzilla.redhat.com/show_bug.cgi?id=1975469): Handle array to string conversion for HTTPS checkbox value [#9332](https://github.com/openshift/console/pull/9332) * Updating openshift-enterprise-console images to be consistent with ART [#8596](https://github.com/openshift/console/pull/8596) * [Bug 1973572](https://bugzilla.redhat.com/show_bug.cgi?id=1973572): Hardcode strings in Home->Overview page [#9322](https://github.com/openshift/console/pull/9322) * [Bug 1942864](https://bugzilla.redhat.com/show_bug.cgi?id=1942864): Warning Alert for Encrypted PVs in Create StorageClass [#8464](https://github.com/openshift/console/pull/8464) * [Bug 1965526](https://bugzilla.redhat.com/show_bug.cgi?id=1965526): Removing library charts from the merged helm repo index entries. [#9076](https://github.com/openshift/console/pull/9076) * [Bug 1970796](https://bugzilla.redhat.com/show_bug.cgi?id=1970796): update cluster-local label for ksvc [#9220](https://github.com/openshift/console/pull/9220) * [Bug 1970720](https://bugzilla.redhat.com/show_bug.cgi?id=1970720): fix rotated pipelinerun status icon issue in safari [#9216](https://github.com/openshift/console/pull/9216) * [Bug 1969536](https://bugzilla.redhat.com/show_bug.cgi?id=1969536): Omit bitbucket branch in URL if it contains slash [#9180](https://github.com/openshift/console/pull/9180) * [Bug 1954962](https://bugzilla.redhat.com/show_bug.cgi?id=1954962): removes extra annotations form spec template for ksvc [#8823](https://github.com/openshift/console/pull/8823) * [Bug 1948537](https://bugzilla.redhat.com/show_bug.cgi?id=1948537): add hide/reveal button for kms token [#8616](https://github.com/openshift/console/pull/8616) * [Bug 1942160](https://bugzilla.redhat.com/show_bug.cgi?id=1942160): Update the scope of GitOpsService resource [#8450](https://github.com/openshift/console/pull/8450) * [Bug 1971667](https://bugzilla.redhat.com/show_bug.cgi?id=1971667): Track and show error messages in modals [#9232](https://github.com/openshift/console/pull/9232) * [Bug 1969791](https://bugzilla.redhat.com/show_bug.cgi?id=1969791): fixes: WebTerminal widget should send resize events [#9190](https://github.com/openshift/console/pull/9190) * [Bug 1969105](https://bugzilla.redhat.com/show_bug.cgi?id=1969105): Update IP address on pods list to show podIP other than … [#9172](https://github.com/openshift/console/pull/9172) * [Bug 1967106](https://bugzilla.redhat.com/show_bug.cgi?id=1967106): can't open terminal for pods that have more than one co… [#9117](https://github.com/openshift/console/pull/9117) * [Bug 1966275](https://bugzilla.redhat.com/show_bug.cgi?id=1966275): Fix Pipeline Parameters in Modals accept empty string defaults [#9085](https://github.com/openshift/console/pull/9085) * [Bug 1961567](https://bugzilla.redhat.com/show_bug.cgi?id=1961567): Remove the broken Devfile Sample for BuildConfigs [#8956](https://github.com/openshift/console/pull/8956) * [Bug 1963025](https://bugzilla.redhat.com/show_bug.cgi?id=1963025): Fix documentation link to network policies [#8953](https://github.com/openshift/console/pull/8953) * [Bug 1953606](https://bugzilla.redhat.com/show_bug.cgi?id=1953606): Fixing failure domain issue with custom pools (4.7 backport) [#8775](https://github.com/openshift/console/pull/8775) * [Bug 1970485](https://bugzilla.redhat.com/show_bug.cgi?id=1970485): Add pipeline annotation to secrets for private git repo import with pipeline [#9207](https://github.com/openshift/console/pull/9207) * [Bug 1964400](https://bugzilla.redhat.com/show_bug.cgi?id=1964400): Fix RGW Total Used Query [#9038](https://github.com/openshift/console/pull/9038) * [Full changelog](https://github.com/openshift/console/compare/c35386530e46c153f62e8d4aaa78646ba64b09e6...330ce5dc8efb136794e0d4fe7aa34eec7ca106e2) ### [console-operator](https://github.com/openshift/console-operator/tree/c3019e23019b0147d3caa9790c0dbee50eff7b62) * [Bug 2042534](https://bugzilla.redhat.com/show_bug.cgi?id=2042534): Bump build-machinery-go for console-operator to pickup change in yaml-patch repository [#629](https://github.com/openshift/console-operator/pull/629) * [Bug 2016654](https://bugzilla.redhat.com/show_bug.cgi?id=2016654): Use hard requirements for antiaffinity rules [#605](https://github.com/openshift/console-operator/pull/605) * [Full changelog](https://github.com/openshift/console-operator/compare/44a0308f894abae02f066a40ba394c8aa7331424...c3019e23019b0147d3caa9790c0dbee50eff7b62) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/e473a14159b22cd8f6f1693eaedf772bfc1b1078) * Updating ose-containernetworking-plugins builder & base images to be consistent with ART [#41](https://github.com/openshift/containernetworking-plugins/pull/41) * [Bug 1925077](https://bugzilla.redhat.com/show_bug.cgi?id=1925077): vendor: bump libcni [#44](https://github.com/openshift/containernetworking-plugins/pull/44) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/fc27124d43b9dc995057b1f309d5f16e1b2ef151...e473a14159b22cd8f6f1693eaedf772bfc1b1078) ### [csi-driver-manila, openstack-cinder-csi-driver](https://github.com/openshift/cloud-provider-openstack/tree/d3f709218512df9f46e11c1d13347fc68774d72c) * [Bug 1969345](https://bugzilla.redhat.com/show_bug.cgi?id=1969345): Backport ignore proxy connecting to CSI sockets [#54](https://github.com/openshift/cloud-provider-openstack/pull/54) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/5202bfdc042bafa732f19dcbec31ca6137fa3fa4...d3f709218512df9f46e11c1d13347fc68774d72c) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/b652a62f269127e6e9195383eab951d59c6d7a6d) * [Bug 2002555](https://bugzilla.redhat.com/show_bug.cgi?id=2002555): Do not degrade cluster on failure to reach Manila [#126](https://github.com/openshift/csi-driver-manila-operator/pull/126) * [Bug 1987036](https://bugzilla.redhat.com/show_bug.cgi?id=1987036): Use cluster Proxy when available [#110](https://github.com/openshift/csi-driver-manila-operator/pull/110) * [Bug 1996070](https://bugzilla.redhat.com/show_bug.cgi?id=1996070): Add maxUnavailable to DaemonSets [#116](https://github.com/openshift/csi-driver-manila-operator/pull/116) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/00b1f648e74d8008ce32ae65eb4d6d8b5ac1bbed...b652a62f269127e6e9195383eab951d59c6d7a6d) ### [docker-builder](https://github.com/openshift/builder/tree/5a46979e5e747b6df27a1b50ec0c922a172298f2) * [Bug 1995074](https://bugzilla.redhat.com/show_bug.cgi?id=1995074): bump(s2i): revert incorrect ssh scp fix [#261](https://github.com/openshift/builder/pull/261) * [Bug 1924455](https://bugzilla.redhat.com/show_bug.cgi?id=1924455): Update dependencies to address CVE-2021-3121 [#258](https://github.com/openshift/builder/pull/258) * [Full changelog](https://github.com/openshift/builder/compare/82eeeac0c8cbad90f951885cc11939ecd51eda76...5a46979e5e747b6df27a1b50ec0c922a172298f2) ### [docker-registry](https://github.com/openshift/image-registry/tree/8b03485af777f8d718427393aa575bbaf6f21610) * [Bug 1984094](https://bugzilla.redhat.com/show_bug.cgi?id=1984094): use apimachinery with HTTP/2 health checks enabled [#288](https://github.com/openshift/image-registry/pull/288) * Updating openshift-enterprise-registry builder & base images to be consistent with ART [#262](https://github.com/openshift/image-registry/pull/262) * [Bug 1977159](https://bugzilla.redhat.com/show_bug.cgi?id=1977159): bump aws-sdk-go to v1.38.35 [#282](https://github.com/openshift/image-registry/pull/282) * [Full changelog](https://github.com/openshift/image-registry/compare/8e0c068aef607fceffe3e179c3a9701f51c51dff...8b03485af777f8d718427393aa575bbaf6f21610) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/bcd11a1f0137bb10b1958f1e27e04a213aef96be) * [Bug 1985545](https://bugzilla.redhat.com/show_bug.cgi?id=1985545): Use kernel config to determine GCC version [#56](https://github.com/openshift/driver-toolkit/pull/56) * [Bug 1985545](https://bugzilla.redhat.com/show_bug.cgi?id=1985545): Remove curl of extract-vmlinux [#50](https://github.com/openshift/driver-toolkit/pull/50) * [Bug 1985546](https://bugzilla.redhat.com/show_bug.cgi?id=1985546): /etc/driver-toolkit-release.json kernel version match rpm -q output [#51](https://github.com/openshift/driver-toolkit/pull/51) * [Bug 1976302](https://bugzilla.redhat.com/show_bug.cgi?id=1976302): Cherry pick gcc to release 4.7 [#41](https://github.com/openshift/driver-toolkit/pull/41) * [Bug 1975480](https://bugzilla.redhat.com/show_bug.cgi?id=1975480): DPDK KNI modules need some additional tools [#40](https://github.com/openshift/driver-toolkit/pull/40) * [Bug 1975479](https://bugzilla.redhat.com/show_bug.cgi?id=1975479): Requirements for authenticating kernel modules with X.509 keys [#39](https://github.com/openshift/driver-toolkit/pull/39) * [Bug 1962285](https://bugzilla.redhat.com/show_bug.cgi?id=1962285): Update Dockerfile [#21](https://github.com/openshift/driver-toolkit/pull/21) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/bbf091e64bb3cf06edd61e39877ebe534037de3c...bcd11a1f0137bb10b1958f1e27e04a213aef96be) ### [etcd](https://github.com/openshift/etcd/tree/d2520432398216427b7394e304087dc882bb196f) * Update OWNERS [#126](https://github.com/openshift/etcd/pull/126) * [Bug 1970141](https://bugzilla.redhat.com/show_bug.cgi?id=1970141): discover-etcd-initial-cluster: retry if member is not part of member list and dataDir exists [#82](https://github.com/openshift/etcd/pull/82) * [Full changelog](https://github.com/openshift/etcd/compare/45b6800c4fab213e7afee1e406abe48cc14ee020...d2520432398216427b7394e304087dc882bb196f) ### [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp/tree/6172617c112dcc377dd4929648d98e78d09c8a0b) * Updating ose-gcp-machine-controllers builder & base images to be consistent with ART [#143](https://github.com/openshift/cluster-api-provider-gcp/pull/143) * [Full changelog](https://github.com/openshift/cluster-api-provider-gcp/compare/5f6589d4ef9496e63ebc072f4d863151bbeb4407...6172617c112dcc377dd4929648d98e78d09c8a0b) ### [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver/tree/0cb61d205d0f911fe8ca614094f0cd3f911d665c) * Updating ose-gcp-pd-csi-driver builder & base images to be consistent with ART [#10](https://github.com/openshift/gcp-pd-csi-driver/pull/10) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver/compare/091f0212dfa6d93df37b99fcd2b4b9a4c6d5bbba...0cb61d205d0f911fe8ca614094f0cd3f911d665c) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/d40dd57595673e4737fa77e29a955f6beefac284) * [Bug 1996070](https://bugzilla.redhat.com/show_bug.cgi?id=1996070): Add maxUnavailable to DaemonSets [#33](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/33) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/9ffe95b9499258b8e2b5e1b8df9889abe3c9f73f...d40dd57595673e4737fa77e29a955f6beefac284) ### [grafana](https://github.com/openshift/grafana/tree/613acadcf2dc21745cd78f9d6c263e76adf9f6cb) * [OCPBUGS-656](https://issues.redhat.com/browse/OCPBUGS-656): Fix static patch matching issue [#91](https://github.com/openshift/grafana/pull/91) * [Full changelog](https://github.com/openshift/grafana/compare/b02c35dc2d01fce696a3edc28839a9f9fd0150a3...613acadcf2dc21745cd78f9d6c263e76adf9f6cb) ### [haproxy-router](https://github.com/openshift/router/tree/e246a5fa45c659c55e1243497b485cfa8e104b88) * [Bug 1994645](https://bugzilla.redhat.com/show_bug.cgi?id=1994645): config template: accept IPv6 IPs for whitelisting [#325](https://github.com/openshift/router/pull/325) * [Bug 1967733](https://bugzilla.redhat.com/show_bug.cgi?id=1967733): template helper - generateHAProxyWhiteListFile, use right arg type [#297](https://github.com/openshift/router/pull/297) * [Full changelog](https://github.com/openshift/router/compare/5a0e6561b0480df9f32a8ef87a54a1dc4cf91b93...e246a5fa45c659c55e1243497b485cfa8e104b88) ### [hello-openshift, tests](https://github.com/openshift/origin/tree/7706ed41ca790a298404e144e11ab7fcccc55c5b) * [Bug 2034370](https://bugzilla.redhat.com/show_bug.cgi?id=2034370): test: Nodes that are deleted should not fire the unready alert [#26716](https://github.com/openshift/origin/pull/26716) * [Bug 2031104](https://bugzilla.redhat.com/show_bug.cgi?id=2031104): Skipping Django Test until bug is fixed [#26688](https://github.com/openshift/origin/pull/26688) * [Bug 2022188](https://bugzilla.redhat.com/show_bug.cgi?id=2022188): Add more tests for image policy [#26626](https://github.com/openshift/origin/pull/26626) * [Bug 2019520](https://bugzilla.redhat.com/show_bug.cgi?id=2019520): Skip test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#26563](https://github.com/openshift/origin/pull/26563) * [Bug 1983616](https://bugzilla.redhat.com/show_bug.cgi?id=1983616): Wait longer in tests where namespace cleanup is slow [#26282](https://github.com/openshift/origin/pull/26282) * [Bug 1982929](https://bugzilla.redhat.com/show_bug.cgi?id=1982929): Improve GC Check for Builds [#26334](https://github.com/openshift/origin/pull/26334) * Re-enable quota test [#26284](https://github.com/openshift/origin/pull/26284) * [Bug 1980540](https://bugzilla.redhat.com/show_bug.cgi?id=1980540): Use cluster-logging for operator installation smoke test. [#26315](https://github.com/openshift/origin/pull/26315) * [Bug 1977383](https://bugzilla.redhat.com/show_bug.cgi?id=1977383): [release-4.7] Update resource quota test for compatibility with service ca configmap publishing [#26303](https://github.com/openshift/origin/pull/26303) * [Bug 1928862](https://bugzilla.redhat.com/show_bug.cgi?id=1928862): [4.7] Bump openshift/kubernetes [#26259](https://github.com/openshift/origin/pull/26259) * [Bug 1978000](https://bugzilla.redhat.com/show_bug.cgi?id=1978000): builds: comment out multi-namespace template test [#26296](https://github.com/openshift/origin/pull/26296) * NOOP - Trigger a new CI build [#26291](https://github.com/openshift/origin/pull/26291) * [Bug 1977383](https://bugzilla.redhat.com/show_bug.cgi?id=1977383): [release-4.7] Skip cluster quota test to enable service ca publisher to merge to o/k [#26283](https://github.com/openshift/origin/pull/26283) * [Bug 1970411](https://bugzilla.redhat.com/show_bug.cgi?id=1970411): properly remove project after test ends [#26217](https://github.com/openshift/origin/pull/26217) * [Full changelog](https://github.com/openshift/origin/compare/dd7015e846380d5050494b9bb744f43cf04a4268...7706ed41ca790a298404e144e11ab7fcccc55c5b) ### [hyperkube](https://github.com/openshift/kubernetes/tree/98b2293bac8becdb8dd2e26d62fcc3e60d9b59cd) * [Bug 2082029](https://bugzilla.redhat.com/show_bug.cgi?id=2082029): Rebase 1.20.15 [#1253](https://github.com/openshift/kubernetes/pull/1253) * [Bug 2043804](https://bugzilla.redhat.com/show_bug.cgi?id=2043804): IPs with leading zeros are still valid in the apiserver [#1234](https://github.com/openshift/kubernetes/pull/1234) * [Bug 2060528](https://bugzilla.redhat.com/show_bug.cgi?id=2060528): Backport inotify patch to 4.7 [#1205](https://github.com/openshift/kubernetes/pull/1205) * [Bug 2024640](https://bugzilla.redhat.com/show_bug.cgi?id=2024640): Rebase v1.20.14 [#1101](https://github.com/openshift/kubernetes/pull/1101) * [Bug 2054669](https://bugzilla.redhat.com/show_bug.cgi?id=2054669): UPSTREAM: 89885: SQUASH: Retry fetching clouds.conf [#1178](https://github.com/openshift/kubernetes/pull/1178) * [Bug 2024996](https://bugzilla.redhat.com/show_bug.cgi?id=2024996): Fix subpath source check [#1068](https://github.com/openshift/kubernetes/pull/1068) * [Bug 2022720](https://bugzilla.redhat.com/show_bug.cgi?id=2022720): UPSTREAM: 106261: Don't guess SELinux support on error [#1055](https://github.com/openshift/kubernetes/pull/1055) * [Bug 2022188](https://bugzilla.redhat.com/show_bug.cgi?id=2022188): Image policy should mutate DeploymentConfigs, StatefulSets, and new CronJobs [#1073](https://github.com/openshift/kubernetes/pull/1073) * [Bug 2022259](https://bugzilla.redhat.com/show_bug.cgi?id=2022259): Rebase v1.20.12 [#1046](https://github.com/openshift/kubernetes/pull/1046) * [Bug 1939537](https://bugzilla.redhat.com/show_bug.cgi?id=1939537): UPSTREAM: 100678: apf: exempt probes /healthz /livez /readyz [#658](https://github.com/openshift/kubernetes/pull/658) * [Bug 1926724](https://bugzilla.redhat.com/show_bug.cgi?id=1926724): UPSTREAM: 98028: add auto update for priority & fairness bootstrap configuration objects [#563](https://github.com/openshift/kubernetes/pull/563) * [Bug 2008508](https://bugzilla.redhat.com/show_bug.cgi?id=2008508): Rebase v1.20.11 [#982](https://github.com/openshift/kubernetes/pull/982) * [Bug 1993753](https://bugzilla.redhat.com/show_bug.cgi?id=1993753): UPSTREAM: 104348: Pass additional flags to subpath mount to avoid fla… [#941](https://github.com/openshift/kubernetes/pull/941) * [Bug 2003027](https://bugzilla.redhat.com/show_bug.cgi?id=2003027): Rebase 1.20.10 [#935](https://github.com/openshift/kubernetes/pull/935) * [Bug 1996846](https://bugzilla.redhat.com/show_bug.cgi?id=1996846): UPSTREAM: 98571: kubelet: Stop probing a pod during graceful shutdown [#901](https://github.com/openshift/kubernetes/pull/901) * [Bug 1973766](https://bugzilla.redhat.com/show_bug.cgi?id=1973766): 4.7: Do not throw error when we can't get canonical path [#881](https://github.com/openshift/kubernetes/pull/881) * [Bug 1981775](https://bugzilla.redhat.com/show_bug.cgi?id=1981775): Bump apiserver libary go 4.7 [#879](https://github.com/openshift/kubernetes/pull/879) * [Bug 1981634](https://bugzilla.redhat.com/show_bug.cgi?id=1981634): UPSTREAM: <drop>: use the legacy service-ca.crt content for clusters started in 4.7 or before [#857](https://github.com/openshift/kubernetes/pull/857) * [Bug 1977383](https://bugzilla.redhat.com/show_bug.cgi?id=1977383): [release-4.7] Ensure service ca configmap is created in all namespaces [#834](https://github.com/openshift/kubernetes/pull/834) * [Bug 1977383](https://bugzilla.redhat.com/show_bug.cgi?id=1977383): [release-4.7] Fix watch conformance test [#843](https://github.com/openshift/kubernetes/pull/843) * [Bug 1977383](https://bugzilla.redhat.com/show_bug.cgi?id=1977383): Update resource quota test for compatibility with service ca configmap publishing [#839](https://github.com/openshift/kubernetes/pull/839) * [Bug 1975553](https://bugzilla.redhat.com/show_bug.cgi?id=1975553): only chown if non-windows machine with projected volumes [#826](https://github.com/openshift/kubernetes/pull/826) * [Bug 1928862](https://bugzilla.redhat.com/show_bug.cgi?id=1928862): [release-4.7] UPSTREAM: <carry>: kube-apiserver: ignore SIGTERM/INT after the first one [#739](https://github.com/openshift/kubernetes/pull/739) * [Full changelog](https://github.com/openshift/kubernetes/compare/2817867655bb7b68215b4e77873a8facf82bee06...98b2293bac8becdb8dd2e26d62fcc3e60d9b59cd) ### [insights-operator](https://github.com/openshift/insights-operator/tree/accd49647d70932fe2c6cdfb113a6523053f55d7) * [Bug 2028092](https://bugzilla.redhat.com/show_bug.cgi?id=2028092): gather webhook configurations (#508) (#561) [#508](https://github.com/openshift/insights-operator/pull/508) * [Bug 2026659](https://bugzilla.redhat.com/show_bug.cgi?id=2026659): Gather all the container logs from related namespaces of degraded clusteroperator (#516) (#555) [#516](https://github.com/openshift/insights-operator/pull/516) * [Bug 2026410](https://bugzilla.redhat.com/show_bug.cgi?id=2026410): Fix PDB gatherer (#552) [#552](https://github.com/openshift/insights-operator/pull/552) * [Bug 2024614](https://bugzilla.redhat.com/show_bug.cgi?id=2024614): Anonymize identity provider attributes in the (#520) (#527) (#541) (#549) [#520](https://github.com/openshift/insights-operator/pull/520) * [Bug 2022637](https://bugzilla.redhat.com/show_bug.cgi?id=2022637): Anonymize the ImageRegistry storage information also in status (#546) [#546](https://github.com/openshift/insights-operator/pull/546) * [Bug 2002539](https://bugzilla.redhat.com/show_bug.cgi?id=2002539): Fix wrong rebase of PSP gatherer (#512) [#512](https://github.com/openshift/insights-operator/pull/512) * [Bug 2002539](https://bugzilla.redhat.com/show_bug.cgi?id=2002539): Gather installed PSP names (#489) (#493) [#489](https://github.com/openshift/insights-operator/pull/489) * [Bug 1982170](https://bugzilla.redhat.com/show_bug.cgi?id=1982170): Set also the summary operation when updating status (#480) [#480](https://github.com/openshift/insights-operator/pull/480) * [Full changelog](https://github.com/openshift/insights-operator/compare/e7955cf0b199caa53726431df5d8800be5af049a...accd49647d70932fe2c6cdfb113a6523053f55d7) ### [ironic-hardware-inventory-recorder](https://github.com/openshift/ironic-hardware-inventory-recorder-image/tree/564aaca3b4bd95007472d3c3cd8d2d0748778ef4) * Updating ironic-hardware-inventory-recorder-image builder & base images to be consistent with ART [#502](https://github.com/openshift/ironic-hardware-inventory-recorder-image/pull/502) * [Full changelog](https://github.com/openshift/ironic-hardware-inventory-recorder-image/compare/61c4cc7dc99601fe32b239be8923a6ed693908b0...564aaca3b4bd95007472d3c3cd8d2d0748778ef4) ### [ironic-inspector](https://github.com/openshift/ironic-inspector-image/tree/b6cbf0338ba9f892735d09093ba4732ab3602b43) * [Bug 2002405](https://bugzilla.redhat.com/show_bug.cgi?id=2002405): Sync inspector to include the latest bugfixes for 4.7 [#70](https://github.com/openshift/ironic-inspector-image/pull/70) * [Full changelog](https://github.com/openshift/ironic-inspector-image/compare/916bdc6e005aaa73ef5c3a9b60f5c47cd0a10e29...b6cbf0338ba9f892735d09093ba4732ab3602b43) ### [ironic-ipa-downloader](https://github.com/openshift/ironic-ipa-downloader/tree/f33b14ad0d4f9e4b11b053a4423ebdec62709035) * [Bug 2013591](https://bugzilla.redhat.com/show_bug.cgi?id=2013591): Bump IPA version to 15.2-20211013.1 [#86](https://github.com/openshift/ironic-ipa-downloader/pull/86) * [Bug 1963210](https://bugzilla.redhat.com/show_bug.cgi?id=1963210): Add support for no_proxy [#78](https://github.com/openshift/ironic-ipa-downloader/pull/78) * [Full changelog](https://github.com/openshift/ironic-ipa-downloader/compare/df6bb639fd9bf26ce276ae78e78548fba53783d1...f33b14ad0d4f9e4b11b053a4423ebdec62709035) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/f810d3425bfb3d89c9232fdc7bfe11c72eed841b) * [Bug 1948538](https://bugzilla.redhat.com/show_bug.cgi?id=1948538): Clear proxy env variables if go would have [#77](https://github.com/openshift/ironic-rhcos-downloader/pull/77) * [Bug 1963210](https://bugzilla.redhat.com/show_bug.cgi?id=1963210): Add support for no_proxy [#53](https://github.com/openshift/ironic-rhcos-downloader/pull/53) * [Bug 1973367](https://bugzilla.redhat.com/show_bug.cgi?id=1973367): Modify dhcp kernel args based on ipv4/ipv6 [#55](https://github.com/openshift/ironic-rhcos-downloader/pull/55) * [Bug 1971549](https://bugzilla.redhat.com/show_bug.cgi?id=1971549): Unconditionally remove TMPDIR [#45](https://github.com/openshift/ironic-rhcos-downloader/pull/45) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/4cdc8c311630d0d9807accb12e63bbfa8bbc3ad4...f810d3425bfb3d89c9232fdc7bfe11c72eed841b) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/a05b75300b3dcea578a8347c71e14eaa6cdbc784) * [Bug 2076250](https://bugzilla.redhat.com/show_bug.cgi?id=2076250): Mitigate multiple CVEs [#1436](https://github.com/openshift/jenkins/pull/1436) * [Bug 2069142](https://bugzilla.redhat.com/show_bug.cgi?id=2069142): [release-4.7] 2022-02-15 Security Advisory [#1415](https://github.com/openshift/jenkins/pull/1415) * [Bug 2044939](https://bugzilla.redhat.com/show_bug.cgi?id=2044939): Jenkins Fixes for CVE-2022-20617 and CVE-2022-20612 [#1371](https://github.com/openshift/jenkins/pull/1371) * [Bug 2020613](https://bugzilla.redhat.com/show_bug.cgi?id=2020613): Update Jenkins and plugins per 2021-11 advisory [#1348](https://github.com/openshift/jenkins/pull/1348) * [Bug 1972361](https://bugzilla.redhat.com/show_bug.cgi?id=1972361): Bump jenkins version 2.289.2 [#1281](https://github.com/openshift/jenkins/pull/1281) * [Full changelog](https://github.com/openshift/jenkins/compare/d3eacc24156ef726caae230b9b4620059a76f781...a05b75300b3dcea578a8347c71e14eaa6cdbc784) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/0e051e55d52b142d14254d9fcf4f14543a8b71eb) * [Bug 2005494](https://bugzilla.redhat.com/show_bug.cgi?id=2005494): Support allow-from-router feature using openshift-host-network namespace [#300](https://github.com/openshift/sdn/pull/300) * [Bug 2002291](https://bugzilla.redhat.com/show_bug.cgi?id=2002291): [4.7] proxy: don't re-check every userspace proxy rule on every change [#348](https://github.com/openshift/sdn/pull/348) * [Bug 1987297](https://bugzilla.redhat.com/show_bug.cgi?id=1987297): when assigning and releasing egressIP try more than once before failing [#327](https://github.com/openshift/sdn/pull/327) * [Bug 2001531](https://bugzilla.redhat.com/show_bug.cgi?id=2001531): improve SDN's OVS healthcheck and logging [#343](https://github.com/openshift/sdn/pull/343) * [Bug 1995872](https://bugzilla.redhat.com/show_bug.cgi?id=1995872): Disable conntrack for vxlan traffic [#338](https://github.com/openshift/sdn/pull/338) * [Bug 1971669](https://bugzilla.redhat.com/show_bug.cgi?id=1971669): Fix 4.7 SDN Egress Network Policy [#334](https://github.com/openshift/sdn/pull/334) * [Full changelog](https://github.com/openshift/sdn/compare/798a46be0fa09aeec90b25a4c4cf11bf0b2c5b6f...0e051e55d52b142d14254d9fcf4f14543a8b71eb) ### [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator/tree/391865be861f1d479ab5314f7468c2c4f0c7b208) * Updating ose-kube-storage-version-migrator builder & base images to be consistent with ART [#167](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/167) * [Full changelog](https://github.com/openshift/kubernetes-kube-storage-version-migrator/compare/329a4b06361cef8d70c8424d57466a6f5bcd4a59...391865be861f1d479ab5314f7468c2c4f0c7b208) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/72de60e9d56489a9c3874a1592fb3382f9eb93c6) * [Bug 2028396](https://bugzilla.redhat.com/show_bug.cgi?id=2028396): Make completed Pods Ports reusable [#608](https://github.com/openshift/kuryr-kubernetes/pull/608) * [Bug 2018244](https://bugzilla.redhat.com/show_bug.cgi?id=2018244): Update TOX_CONSTRAINTS_FILE for stable/xena [#588](https://github.com/openshift/kuryr-kubernetes/pull/588) * [Bug 2001518](https://bugzilla.redhat.com/show_bug.cgi?id=2001518): Increase keystoneauth's connection pool size [#554](https://github.com/openshift/kuryr-kubernetes/pull/554) * [Bug 1972631](https://bugzilla.redhat.com/show_bug.cgi?id=1972631): Workaround OVN bug causing subports to be DOWN [#525](https://github.com/openshift/kuryr-kubernetes/pull/525) * [Bug 1970320](https://bugzilla.redhat.com/show_bug.cgi?id=1970320): Fix Subnet retrival when creating Service without Selector [#522](https://github.com/openshift/kuryr-kubernetes/pull/522) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/07c197feeb6459aefdecbbc66f304e06b97411ed...72de60e9d56489a9c3874a1592fb3382f9eb93c6) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/eb819cb931e86f66853ad24b919e251369ec83c1) * Updating ose-libvirt-machine-controllers builder & base images to be consistent with ART [#212](https://github.com/openshift/cluster-api-provider-libvirt/pull/212) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/033be25ca038fe773b23c076e9ac64926de72474...eb819cb931e86f66853ad24b919e251369ec83c1) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/8578fefdadf45cde741447871ca0ccf9a74451c5) * [Bug 2022839](https://bugzilla.redhat.com/show_bug.cgi?id=2022839): GCP CI runs are complaining about APIs not being enabled [#954](https://github.com/openshift/machine-api-operator/pull/954) * Bump some SHAs [#937](https://github.com/openshift/machine-api-operator/pull/937) * [Bug 1993118](https://bugzilla.redhat.com/show_bug.cgi?id=1993118): Make sure nodes don't have attached volumes before vm deletion [#904](https://github.com/openshift/machine-api-operator/pull/904) * [Bug 1999590](https://bugzilla.redhat.com/show_bug.cgi?id=1999590): [release-4.7] add alert for machine with long deletion phase [#907](https://github.com/openshift/machine-api-operator/pull/907) * [Bug 1989648](https://bugzilla.redhat.com/show_bug.cgi?id=1989648): Prevent machine from stucking in Deleting phase on vSphere if related node object not found [#895](https://github.com/openshift/machine-api-operator/pull/895) * [Bug 1933586](https://bugzilla.redhat.com/show_bug.cgi?id=1933586): Make sure phase is always set before creation [#858](https://github.com/openshift/machine-api-operator/pull/858) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/e179bb5ce397b543cd3f716f75fa4cd40046e0ad...8578fefdadf45cde741447871ca0ccf9a74451c5) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/54116a94477f669acb9b00b43069a6c8b1ca6282) * [Bug 2105082](https://bugzilla.redhat.com/show_bug.cgi?id=2105082): 4.7: daemon: Explicitly start rpm-ostreed, restart if we detect active txn [#3240](https://github.com/openshift/machine-config-operator/pull/3240) * [Bug 2101555](https://bugzilla.redhat.com/show_bug.cgi?id=2101555): Add KUBELET_NODEIP_HINT to nodeip-configuration [#3210](https://github.com/openshift/machine-config-operator/pull/3210) * [Bug 2025470](https://bugzilla.redhat.com/show_bug.cgi?id=2025470): annotate rendered config with OCP version [#2993](https://github.com/openshift/machine-config-operator/pull/2993) * [Bug 2057526](https://bugzilla.redhat.com/show_bug.cgi?id=2057526): ovs-configuration: use lower than NM default ethernet route metric [#2975](https://github.com/openshift/machine-config-operator/pull/2975) * [Bug 2033000](https://bugzilla.redhat.com/show_bug.cgi?id=2033000): fixes 1 to 1 containerruntime config mapping [#2878](https://github.com/openshift/machine-config-operator/pull/2878) * [Bug 2059724](https://bugzilla.redhat.com/show_bug.cgi?id=2059724): Prepend to search domains instead of replacing [#2977](https://github.com/openshift/machine-config-operator/pull/2977) * [Bug 2038383](https://bugzilla.redhat.com/show_bug.cgi?id=2038383): Respect DHCP option 119 for on-prem [#2904](https://github.com/openshift/machine-config-operator/pull/2904) * [Bug 2028525](https://bugzilla.redhat.com/show_bug.cgi?id=2028525): [Release 4.7] daemon: make cordon/uncordon more robust and better logging [#2854](https://github.com/openshift/machine-config-operator/pull/2854) * [Bug 2026825](https://bugzilla.redhat.com/show_bug.cgi?id=2026825): Send WARN message to stderr [#2841](https://github.com/openshift/machine-config-operator/pull/2841) * [Bug 1988102](https://bugzilla.redhat.com/show_bug.cgi?id=1988102): [IPI ON-PREM] move Keepalived default ingress script to separate file [#2825](https://github.com/openshift/machine-config-operator/pull/2825) * [Bug 1975174](https://bugzilla.redhat.com/show_bug.cgi?id=1975174): configure-ovs: fix nondeterministic master in slave profiles [#2640](https://github.com/openshift/machine-config-operator/pull/2640) * [Bug 2008692](https://bugzilla.redhat.com/show_bug.cgi?id=2008692): Don't write empty static pod manifests [#2783](https://github.com/openshift/machine-config-operator/pull/2783) * [Bug 1995621](https://bugzilla.redhat.com/show_bug.cgi?id=1995621): Backport fix 1 to 1 relation to kubelet configs and machine config pools [#2759](https://github.com/openshift/machine-config-operator/pull/2759) * [Bug 2011375](https://bugzilla.redhat.com/show_bug.cgi?id=2011375): templates: Silence audit events from container infra by default [#2792](https://github.com/openshift/machine-config-operator/pull/2792) * [Bug 2008759](https://bugzilla.redhat.com/show_bug.cgi?id=2008759): Set timeoutSeconds for keepalived liveness probe [#2773](https://github.com/openshift/machine-config-operator/pull/2773) * [Bug 2008588](https://bugzilla.redhat.com/show_bug.cgi?id=2008588): Check suffix annotation is a number [#2781](https://github.com/openshift/machine-config-operator/pull/2781) * [Bug 2004581](https://bugzilla.redhat.com/show_bug.cgi?id=2004581): Set ovs syslog level to info [#2767](https://github.com/openshift/machine-config-operator/pull/2767) * [Bug 2000501](https://bugzilla.redhat.com/show_bug.cgi?id=2000501): bump SystemMemoryExceedsReservation alert threshold to 95% [#2749](https://github.com/openshift/machine-config-operator/pull/2749) * [Bug 1989751](https://bugzilla.redhat.com/show_bug.cgi?id=1989751): [on-prem] Disable liveness probe until keepalived.conf exists [#2701](https://github.com/openshift/machine-config-operator/pull/2701) * [Bug 1995853](https://bugzilla.redhat.com/show_bug.cgi?id=1995853): Gracefully shutdown taking around 6-7 mins (libvirt provider) [#2727](https://github.com/openshift/machine-config-operator/pull/2727) * [Bug 1988102](https://bugzilla.redhat.com/show_bug.cgi?id=1988102): [release-4.7] On-prem: add default ingress track script to Keepalived [#2697](https://github.com/openshift/machine-config-operator/pull/2697) * [Bug 1998112](https://bugzilla.redhat.com/show_bug.cgi?id=1998112): vSpehere: disable vmxnet3 tx csum offload [#2738](https://github.com/openshift/machine-config-operator/pull/2738) * [Bug 1995810](https://bugzilla.redhat.com/show_bug.cgi?id=1995810): crio: complete crio default config [#2725](https://github.com/openshift/machine-config-operator/pull/2725) * [Bug 1992240](https://bugzilla.redhat.com/show_bug.cgi?id=1992240): change system-connections-merged directory to systemConnectionsMerged [#2709](https://github.com/openshift/machine-config-operator/pull/2709) * [Bug 1956462](https://bugzilla.redhat.com/show_bug.cgi?id=1956462): ensure SSH key uniqueness [#2563](https://github.com/openshift/machine-config-operator/pull/2563) * [Bug 1993386](https://bugzilla.redhat.com/show_bug.cgi?id=1993386): crio: use conmon from path [#2715](https://github.com/openshift/machine-config-operator/pull/2715) * [Bug 1992687](https://bugzilla.redhat.com/show_bug.cgi?id=1992687): alerts: SystemMemoryExceedsReservation triggers too quickly [#2710](https://github.com/openshift/machine-config-operator/pull/2710) * [Bug 1970166](https://bugzilla.redhat.com/show_bug.cgi?id=1970166): MCO: maxUnavailable of ds/machine-config-daemon does not get updated due to missing resourcemerge check [#2682](https://github.com/openshift/machine-config-operator/pull/2682) * [Bug 1977432](https://bugzilla.redhat.com/show_bug.cgi?id=1977432): crio: enable internal_wipe option [#2649](https://github.com/openshift/machine-config-operator/pull/2649) * [Bug 1970590](https://bugzilla.redhat.com/show_bug.cgi?id=1970590): daemon: Change runGetOut to not intermix stdout/stderr [#2609](https://github.com/openshift/machine-config-operator/pull/2609) * [Bug 1976232](https://bugzilla.redhat.com/show_bug.cgi?id=1976232): Explicitly set keyfile as the default plugin of NetworkManager for RHEL7 [#2641](https://github.com/openshift/machine-config-operator/pull/2641) * [Bug 1971864](https://bugzilla.redhat.com/show_bug.cgi?id=1971864): Stop setting nopreempt on bootstrap keepalived.conf [#2616](https://github.com/openshift/machine-config-operator/pull/2616) * [Bug 1973006](https://bugzilla.redhat.com/show_bug.cgi?id=1973006): daemon: cordon the node before performing drain [#2623](https://github.com/openshift/machine-config-operator/pull/2623) * [Bug 1961341](https://bugzilla.redhat.com/show_bug.cgi?id=1961341): rbac: update remaining apis to v1 [#2620](https://github.com/openshift/machine-config-operator/pull/2620) * [Bug 1971374](https://bugzilla.redhat.com/show_bug.cgi?id=1971374): daemon/drain.go: bump initial drain sleeps down to 1min [#2612](https://github.com/openshift/machine-config-operator/pull/2612) * [Bug 1970154](https://bugzilla.redhat.com/show_bug.cgi?id=1970154): operator/sync.go confirm renderedconfig osimageurl matches cvo [#2607](https://github.com/openshift/machine-config-operator/pull/2607) * [Bug 1968759](https://bugzilla.redhat.com/show_bug.cgi?id=1968759): Bump drain timeout to 1h [#2605](https://github.com/openshift/machine-config-operator/pull/2605) * [Bug 1949348](https://bugzilla.redhat.com/show_bug.cgi?id=1949348): gcp-routes should wait until network is stopped [#2593](https://github.com/openshift/machine-config-operator/pull/2593) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/3c1fc49624d0a9edbbd4ac20223afbdbd4b5ccf4...54116a94477f669acb9b00b43069a6c8b1ca6282) ### [mdns-publisher](https://github.com/openshift/mdns-publisher/tree/af3f360536eca53d47ada65c3ddc842888432198) * [Bug 2004537](https://bugzilla.redhat.com/show_bug.cgi?id=2004537): Update zeroconf vendoring [#39](https://github.com/openshift/mdns-publisher/pull/39) * [Bug 1983695](https://bugzilla.redhat.com/show_bug.cgi?id=1983695): [release-4.7] Truncate long service names to 63 characters [#34](https://github.com/openshift/mdns-publisher/pull/34) * [Full changelog](https://github.com/openshift/mdns-publisher/compare/207a7e5d80dbca3ffb2dc205ebba516e29ebaa6d...af3f360536eca53d47ada65c3ddc842888432198) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/6b4d2ba375af54bbc9d12f4315f337c6f5ff680b) * Updating ose-multus-admission-controller builder & base images to be consistent with ART [#30](https://github.com/openshift/multus-admission-controller/pull/30) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/a7312f5e55e9f34cc8b20f6cbfe1af0f363ca1e6...6b4d2ba375af54bbc9d12f4315f337c6f5ff680b) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/7b05b370c3ca670ad775eb0f690ade1658068fbf) * [Bug 2028967](https://bugzilla.redhat.com/show_bug.cgi?id=2028967): Whereabouts should reconcile IP addresses [backport 4.7] [#79](https://github.com/openshift/whereabouts-cni/pull/79) * [Bug 1965268](https://bugzilla.redhat.com/show_bug.cgi?id=1965268): Syncs with upstream for leader election [backport 4.7] [#65](https://github.com/openshift/whereabouts-cni/pull/65) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/dfe6b395b67c0cede73e6edf758976ae208b930c...7b05b370c3ca670ad775eb0f690ade1658068fbf) ### [must-gather](https://github.com/openshift/must-gather/tree/205d4e3cffb19bda7a658836c84587f2ac78d82c) * Updating ose-must-gather builder & base images to be consistent with ART [#202](https://github.com/openshift/must-gather/pull/202) * [Bug 1954302](https://bugzilla.redhat.com/show_bug.cgi?id=1954302): Add ovs related services to GENERAL_SERVICES [#229](https://github.com/openshift/must-gather/pull/229) * [Full changelog](https://github.com/openshift/must-gather/compare/140ea5e8081106c68668b6bd2d0873dc9032af0b...205d4e3cffb19bda7a658836c84587f2ac78d82c) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/65557c98741c3a469f6e82c39efe19db16a3beb9) * Added METRIC_TEST_IMAGE var (#58) [#58](https://github.com/openshift/network-metrics-daemon/pull/58) * Change repo from Docker to quay.io (#44) [#44](https://github.com/openshift/network-metrics-daemon/pull/44) * Updating ose-network-metrics-daemon images to be consistent with ART (#32) [#32](https://github.com/openshift/network-metrics-daemon/pull/32) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/b1926150fd61d1f5137d18606661ff451f504a98...65557c98741c3a469f6e82c39efe19db16a3beb9) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/c09024a868005eac4f4c999389b66cdaad07f4b4) * [Bug 2043804](https://bugzilla.redhat.com/show_bug.cgi?id=2043804): IPs with leading zeros are still valid in the apiserver [#76](https://github.com/openshift/oauth-apiserver/pull/76) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/69f527e90f599e0f509cfce73ba7b95656f03f7f...c09024a868005eac4f4c999389b66cdaad07f4b4) ### [oauth-proxy](https://github.com/openshift/oauth-proxy/tree/fd4dfe78bcd8373c545284a671499681f824c645) * Updating golang-github-openshift-oauth-proxy builder & base images to be consistent with ART [#198](https://github.com/openshift/oauth-proxy/pull/198) * [Full changelog](https://github.com/openshift/oauth-proxy/compare/4bd4705011c19a7556551c9a1dfaaa5eacc7898c...fd4dfe78bcd8373c545284a671499681f824c645) ### [oauth-server](https://github.com/openshift/oauth-server/tree/55f888e101a2d2a7fe2b5f7d789cabe0628f1907) * Updating oauth-server images to be consistent with ART [#90](https://github.com/openshift/oauth-server/pull/90) * [Full changelog](https://github.com/openshift/oauth-server/compare/61db550b94b09356eebabcffd39aea8d90eb6089...55f888e101a2d2a7fe2b5f7d789cabe0628f1907) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/ba80d4ba354a79828efef0f1050bb461c059c808) * Add coreydaley as reviewer/approver for pkg/build [#301](https://github.com/openshift/openshift-apiserver/pull/301) * [Bug 2043804](https://bugzilla.redhat.com/show_bug.cgi?id=2043804): IPs with leading zeros are still valid in the apiserver [#287](https://github.com/openshift/openshift-apiserver/pull/287) * [Bug 2022188](https://bugzilla.redhat.com/show_bug.cgi?id=2022188): Image policy should mutate DeploymentConfigs [#261](https://github.com/openshift/openshift-apiserver/pull/261) * [Bug 1995074](https://bugzilla.redhat.com/show_bug.cgi?id=1995074): revert incorrect ssh scp fix [#242](https://github.com/openshift/openshift-apiserver/pull/242) * [Bug 1965402](https://bugzilla.redhat.com/show_bug.cgi?id=1965402): Revert 'Bug 1965402: Enhance API host name validation' [#211](https://github.com/openshift/openshift-apiserver/pull/211) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/eb2414ce2c8bf60d871ed9047c02028bc84420e6...ba80d4ba354a79828efef0f1050bb461c059c808) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/c93745bf6898f41c6d10c66e7024238ddf20a86d) * [Bug 1924531](https://bugzilla.redhat.com/show_bug.cgi?id=1924531): Update k8s.io dependencies to address CVE-2021-3121 [#191](https://github.com/openshift/openshift-controller-manager/pull/191) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/39b6393236e5abab331de1ab3384d0d165510457...c93745bf6898f41c6d10c66e7024238ddf20a86d) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/a35d9af0d9558aed65a261ac3454df3b0b7bc93c) * [Bug 2049879](https://bugzilla.redhat.com/show_bug.cgi?id=2049879): Explicitly set default value for ReclaimPolicy [#72](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/72) * [Bug 2016286](https://bugzilla.redhat.com/show_bug.cgi?id=2016286): Fix error when mounting /var/lib/kubelet/pods [#58](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/58) * [Bug 1996070](https://bugzilla.redhat.com/show_bug.cgi?id=1996070): Add maxUnavailable to DaemonSets [#54](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/54) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/117ce62c69b399c524850f4ca32324a4ed288acd...a35d9af0d9558aed65a261ac3454df3b0b7bc93c) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/dcb7828fd3753b90a5f617349495e59eca0307d1) * [Bug 2000551](https://bugzilla.redhat.com/show_bug.cgi?id=2000551): Adds Proxy to provider client http transport [#200](https://github.com/openshift/cluster-api-provider-openstack/pull/200) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/471cf3ab636c26ed7c9fba6330374a5ea1b36b43...dcb7828fd3753b90a5f617349495e59eca0307d1) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/64cff34a90939bba60c274d3ba464b5157b1f4d2) * Fix kubebuilder installation in the build root Dockerfile [#2351](https://github.com/operator-framework/operator-lifecycle-manager/pull/2351) * [Bug 1982693](https://bugzilla.redhat.com/show_bug.cgi?id=1982693): remove cleanup from startup [#2287](https://github.com/operator-framework/operator-lifecycle-manager/pull/2287) * [Bug 1972075](https://bugzilla.redhat.com/show_bug.cgi?id=1972075): Add OperatorCondition status sync and update operator upgradeable check [#2206](https://github.com/operator-framework/operator-lifecycle-manager/pull/2206) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/f05ea078ab46c241311b04661ecf5cbefd350d09...64cff34a90939bba60c274d3ba464b5157b1f4d2) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/23f38d3c0385e3fef87848c3378cf6c0a4cbe4d7) * [Bug 1961341](https://bugzilla.redhat.com/show_bug.cgi?id=1961341): [release-4.7] Update openshift rolebindings to v1 [#409](https://github.com/operator-framework/operator-marketplace/pull/409) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/96bab9b9f5bb2c8fce141992230cf75e48f14f78...23f38d3c0385e3fef87848c3378cf6c0a4cbe4d7) ### [operator-registry](https://github.com/operator-framework/operator-registry/tree/06e950de5ebca66e493f6cd2414e73c8978090d3) * [Bug 1968680](https://bugzilla.redhat.com/show_bug.cgi?id=1968680): fix(containerd): drop xattrs during unpack [#676](https://github.com/operator-framework/operator-registry/pull/676) * [Full changelog](https://github.com/operator-framework/operator-registry/compare/5ccabf956d25a2788cc64ad5591c404d7b950207...06e950de5ebca66e493f6cd2414e73c8978090d3) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/5e51508c107a161416c0ffffdd17163f14136478) * [Bug 1996070](https://bugzilla.redhat.com/show_bug.cgi?id=1996070): Backport maxUnavailable: 10% for DaemonSets [#69](https://github.com/openshift/ovirt-csi-driver-operator/pull/69) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/f8808a04dc6bfe7ce36a8238089dbae7ab29cbb6...5e51508c107a161416c0ffffdd17163f14136478) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/75b327298f514972f4f27ea8f401dd354471dc7d) * [Bug 2001287](https://bugzilla.redhat.com/show_bug.cgi?id=2001287): correct IPAddress detection for OVNKubernetes [#120](https://github.com/openshift/cluster-api-provider-ovirt/pull/120) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/01b9bf8368a3da974bf1c9114c618a548d346acd...75b327298f514972f4f27ea8f401dd354471dc7d) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/41d32eae5b828fcebdba612ec995d8b848cc6a8f) * [Bug 2117078](https://bugzilla.redhat.com/show_bug.cgi?id=2117078): [release-4.7] Multiple ExGW cache validation/improvements [#1241](https://github.com/openshift/ovn-kubernetes/pull/1241) * [Bug 2105274](https://bugzilla.redhat.com/show_bug.cgi?id=2105274): EGW: Clean Stale Conntrack Entries [#1194](https://github.com/openshift/ovn-kubernetes/pull/1194) * [Bug 2063245](https://bugzilla.redhat.com/show_bug.cgi?id=2063245): Fix Netpol retry mechanisms [#1051](https://github.com/openshift/ovn-kubernetes/pull/1051) * [Bug 2070339](https://bugzilla.redhat.com/show_bug.cgi?id=2070339): Fix egress IP allocator sync [#1017](https://github.com/openshift/ovn-kubernetes/pull/1017) * [Bug 2069247](https://bugzilla.redhat.com/show_bug.cgi?id=2069247): egressgw: Fix deadlocks [#1013](https://github.com/openshift/ovn-kubernetes/pull/1013) * [Bug 2021224](https://bugzilla.redhat.com/show_bug.cgi?id=2021224): Add ovn-controller logical flow cache options [#891](https://github.com/openshift/ovn-kubernetes/pull/891) * [Bug 2047325](https://bugzilla.redhat.com/show_bug.cgi?id=2047325): Fix node connectivity to service backed by egress IP pods [#946](https://github.com/openshift/ovn-kubernetes/pull/946) * [Bug 2043677](https://bugzilla.redhat.com/show_bug.cgi?id=2043677): Fix pod handlers and pod IP parsing for egress IP [#920](https://github.com/openshift/ovn-kubernetes/pull/920) * [Bug 2039282](https://bugzilla.redhat.com/show_bug.cgi?id=2039282): filter out KubeAPIAuth when logging CNI requests [#906](https://github.com/openshift/ovn-kubernetes/pull/906) * [Bug 2034506](https://bugzilla.redhat.com/show_bug.cgi?id=2034506): Make config parsing more resilient for unknown fields [#882](https://github.com/openshift/ovn-kubernetes/pull/882) * [Bug 2027874](https://bugzilla.redhat.com/show_bug.cgi?id=2027874): [4.7z] Fixes race between node handler and pod sync [#859](https://github.com/openshift/ovn-kubernetes/pull/859) * [Bug 2019093](https://bugzilla.redhat.com/show_bug.cgi?id=2019093): Not exit when ovnkube runs with '--gateway-interface none' [#820](https://github.com/openshift/ovn-kubernetes/pull/820) * [Bug 2027468](https://bugzilla.redhat.com/show_bug.cgi?id=2027468): 4.7 backport [#850](https://github.com/openshift/ovn-kubernetes/pull/850) * [Bug 2014360](https://bugzilla.redhat.com/show_bug.cgi?id=2014360): [4.7z] Scale fixes for pods/exgws [#799](https://github.com/openshift/ovn-kubernetes/pull/799) * [Bug 2011402](https://bugzilla.redhat.com/show_bug.cgi?id=2011402): [4.7] bump OVN to 20.12.0-183.el8fdp [#786](https://github.com/openshift/ovn-kubernetes/pull/786) * [Bug 1935149](https://bugzilla.redhat.com/show_bug.cgi?id=1935149): Resync node management port on subnet change [#456](https://github.com/openshift/ovn-kubernetes/pull/456) * [Bug 2005519](https://bugzilla.redhat.com/show_bug.cgi?id=2005519): [4.7z] Remove waiting for namespace and namespace lock contention [#766](https://github.com/openshift/ovn-kubernetes/pull/766) * [Bug 2005468](https://bugzilla.redhat.com/show_bug.cgi?id=2005468): [4.7z] Fixes skipping pods accidentally in retry [#759](https://github.com/openshift/ovn-kubernetes/pull/759) * [Bug 2007653](https://bugzilla.redhat.com/show_bug.cgi?id=2007653): Fix ensurePod to call addPortExternalGW only for annotation updates [#765](https://github.com/openshift/ovn-kubernetes/pull/765) * [Bug 2006159](https://bugzilla.redhat.com/show_bug.cgi?id=2006159): Fix duplicate incrementing of subnet allocation metric [#764](https://github.com/openshift/ovn-kubernetes/pull/764) * [Bug 2004489](https://bugzilla.redhat.com/show_bug.cgi?id=2004489): panic after EgressFirewall deletion and DNS record expiration [#751](https://github.com/openshift/ovn-kubernetes/pull/751) * [Bug 2007665](https://bugzilla.redhat.com/show_bug.cgi?id=2007665): [4.7z] Ensure host interfaces are deleted by CNI [#769](https://github.com/openshift/ovn-kubernetes/pull/769) * [Bug 2005391](https://bugzilla.redhat.com/show_bug.cgi?id=2005391): [4.7z] Fixes misuse of pod annotations during update event [#754](https://github.com/openshift/ovn-kubernetes/pull/754) * [Bug 2005913](https://bugzilla.redhat.com/show_bug.cgi?id=2005913): [4.7z] Sync ECMP routes on startup and fixes stale ECMP routes [#763](https://github.com/openshift/ovn-kubernetes/pull/763) * [Bug 2001543](https://bugzilla.redhat.com/show_bug.cgi?id=2001543): fix reserve joinSwitch LRP IPs [#721](https://github.com/openshift/ovn-kubernetes/pull/721) * [Bug 2001364](https://bugzilla.redhat.com/show_bug.cgi?id=2001364): [4.7z] Ensure client handling of canceled/dropped OVSDB monitor [#719](https://github.com/openshift/ovn-kubernetes/pull/719) * [Bug 2001998](https://bugzilla.redhat.com/show_bug.cgi?id=2001998): egressfirewall not set after upgrade [#724](https://github.com/openshift/ovn-kubernetes/pull/724) * [Bug 1988495](https://bugzilla.redhat.com/show_bug.cgi?id=1988495): Fix LocalGatway ExternalIP [#638](https://github.com/openshift/ovn-kubernetes/pull/638) * [Bug 1999896](https://bugzilla.redhat.com/show_bug.cgi?id=1999896): Revert "[release-4.7] fix reserve joinSwitch LRP IPs" [#707](https://github.com/openshift/ovn-kubernetes/pull/707) * [Bug 1997574](https://bugzilla.redhat.com/show_bug.cgi?id=1997574): Fix: sync egress IP for missed events on start-up [#687](https://github.com/openshift/ovn-kubernetes/pull/687) * [Bug 1976242](https://bugzilla.redhat.com/show_bug.cgi?id=1976242): Update existing policy ACLs on start [#650](https://github.com/openshift/ovn-kubernetes/pull/650) * [Bug 1997104](https://bugzilla.redhat.com/show_bug.cgi?id=1997104): fix reserve joinSwitch LRP IPs [#683](https://github.com/openshift/ovn-kubernetes/pull/683) * [Bug 1995910](https://bugzilla.redhat.com/show_bug.cgi?id=1995910): Backport ovnkube-trace requires ip package to be installed [#674](https://github.com/openshift/ovn-kubernetes/pull/674) * [Bug 1991445](https://bugzilla.redhat.com/show_bug.cgi?id=1991445): Bump OVN to 20.12.0-140.el8fdp [#649](https://github.com/openshift/ovn-kubernetes/pull/649) * [Bug 1967132](https://bugzilla.redhat.com/show_bug.cgi?id=1967132): policy: handle NetworkPolicies single "from" multiple "ipBlock" [#562](https://github.com/openshift/ovn-kubernetes/pull/562) * [Bug 1985516](https://bugzilla.redhat.com/show_bug.cgi?id=1985516): Add v6 management interface address for host network policy [#625](https://github.com/openshift/ovn-kubernetes/pull/625) * [Bug 1962608](https://bugzilla.redhat.com/show_bug.cgi?id=1962608): ensure missed events are handled during a reconnection [#547](https://github.com/openshift/ovn-kubernetes/pull/547) * [Bug 1972484](https://bugzilla.redhat.com/show_bug.cgi?id=1972484): egress firewall as ACLs + service connectivity fixes [#592](https://github.com/openshift/ovn-kubernetes/pull/592) * [Bug 1940566](https://bugzilla.redhat.com/show_bug.cgi?id=1940566): Properly log when hybrid overlay errors out [#543](https://github.com/openshift/ovn-kubernetes/pull/543) * [Bug 1970779](https://bugzilla.redhat.com/show_bug.cgi?id=1970779): Remove getDefaultIfAddr and use getNetworkInterfaceIPAddresses [#571](https://github.com/openshift/ovn-kubernetes/pull/571) * [Bug 1962590](https://bugzilla.redhat.com/show_bug.cgi?id=1962590): NewAddressSet: return nil in case of error [#546](https://github.com/openshift/ovn-kubernetes/pull/546) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/b687219c202639bde8ecf89955a890d19bf12703...41d32eae5b828fcebdba612ec995d8b848cc6a8f) ### [service-ca-operator](https://github.com/openshift/service-ca-operator/tree/f65053f55de7b1793956629c8fa02edb7bb0e5cc) * [Bug 1981634](https://bugzilla.redhat.com/show_bug.cgi?id=1981634): add vulnerable legacy injector to allow for upgrade clusters to use [#170](https://github.com/openshift/service-ca-operator/pull/170) * [Full changelog](https://github.com/openshift/service-ca-operator/compare/e113f2498bb2b54202449ddc3488cb8471997a10...f65053f55de7b1793956629c8fa02edb7bb0e5cc) ### [thanos](https://github.com/openshift/thanos/tree/319e70c1dacc87e9d88c4f364541699979c31602) * [Bug 1994123](https://bugzilla.redhat.com/show_bug.cgi?id=1994123): dockerignore: remove vendor from ignored list [#69](https://github.com/openshift/thanos/pull/69) * [Full changelog](https://github.com/openshift/thanos/compare/823d7cd2ee5de3cdab771cfd4b2557852dff7514...319e70c1dacc87e9d88c4f364541699979c31602) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/9854609067d7520ad7895c7e0017627febc006e2) * [Bug 2039341](https://bugzilla.redhat.com/show_bug.cgi?id=2039341): Deferred logout after checks are run [#70](https://github.com/openshift/vsphere-problem-detector/pull/70) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/8f7c1246e6bcb99d8cdf667851b8d61f637f2801...9854609067d7520ad7895c7e0017627febc006e2)