Back to index
4.11.0-0.ci-2024-07-01-091038 Download the installer for your operating system or run
oc adm release extract --tools registry.ci.openshift.org/ocp/release:4.11.0-0.ci-2024-07-01-091038 Team Approvals:
Tests:
Blocking jobs Informing jobs Upgrades from:
Upgrades to:
Loading changelog, this may take a while ...
Created: 2024-07-01 09:16:00 +0000 UTC
Image Digest: sha256:7d51b348aa4788fdd884043eab420e246c4ebb480c7ad668b11a2f4a234b14a7
Components
New images
Removed images
grafana
image-customization-controller
jenkins
jenkins-agent-base
jenkins-agent-maven
jenkins-agent-nodejs
Rebuilt images without code change
machine-os-content sha256:cc10eb0011a038c5496d148585e1a3d926f0ecc7c17e8145adf8899fb451550f
OCPBUGS-21292 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #39
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #13
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #10
Bug 2057495 : Add a parameter to the schema to automatically increase volume sizes … #12
Bug 2069075 : Add explicit pciutils package #11
Full changelog
OCPBUGS-21389 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #67
OCPBUGS-18418 : set TLS cipher suites in Kube RBAC sidecars #59
Bug 2096691 : Fix typo in resourceGroupId param #33
Bug 2096691 : Add resourceGroupID to StorageClass parameters #32
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #29
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #30
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #27
Bug 2057495 : Auto increase volume size to 20 GiB in the default storage class #25
Set fsGroupPolicy in CSIDriver #23
Disable snapshot tests #21
Add e2e test manifest #20
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #17
Add Dockerfile.test #18
Full changelog
OCPBUGS-20997 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #283
OCPBUGS-18418 : set TLS cipher suites in Kube RBAC sidecars #266
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #156
Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART #157
Bug 2074706 : Set custom endpoint environment variable if available #153
Bug 2049671 : avoid excessive GET and DELETE in ResourcesSync controller #151
Set CSIDriver fsGroupPolicy #150
Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART #148
Full changelog
OCPBUGS-21554 : Update golang.org/x/net to v0.17.0 #91
Updating ose-machine-api-provider-aws images to be consistent with ART #57
Bug 2108021 : Fix panic when accessing nil machine annotations map #47
Bug 2060068 : return error when no security group found #41
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #42
Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #40
Bug 2091433 : Update EC2 instance types #39
Bump machine-api-operator to 25e61c2 #38
Validate unknown regions using AWS API #32
AWS Placement Group controller logic #33
Bug 2072195 : Custom DHCP Option Set: empty domain-name is a valid custom domain #36
Remove unreleased AWS Placement Groups support #35
AWS IMDSv2 support #34
Refactor provider status to use metav1.Condition #31
Bug 2067791 : Bump prometheus/client_golang #30
Add AWSPlacementGroup controller #25
Bug 2065510 : Update AWS SDK to 1.43.20 #29
Bug 2065160 : Ensure IP based NLB targets are deregistered before Machines are removed #28
Bug 2060697 : Update openshift/api dependency #27
Leverage basic AWSPlacementGroup for AWS PG membership #23
Ensure Machine level tags have precedence over infrastructure level tags #24
Allow Machines to select EFA network interfaces #8
CFE-68 : user defined resource tags on EC2 instances updatable #15
Full changelog
OCPBUGS-21295 : Upgrade golang/x/net for CVE-2023-39325 (4.11) #186
NO-ISSUE: snyk: exclude vendor/ #175
Updating ose-aws-pod-identity-webhook images to be consistent with ART #153
Bug 2093986 : Comply to restricted pod security level #154
Bug 2067792 : upgrade prometheus/client_golang to v1.12.1 #152
Updating ose-aws-pod-identity-webhook images to be consistent with ART #151
Full changelog
OCPBUGS-20662 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #57
Bug 2112266 : UPSTREAM 1367, 1409: Update max data disk count table #30
Updating ose-azure-disk-csi-driver images to be consistent with ART #27
Bug 2073373 : Rebase to v1.16.0 #24
Dockerfile should copy binary for the correct ARCH #23
build: set GOARCH appropriately #22
Updating ose-azure-disk-csi-driver images to be consistent with ART #21
Full changelog
OCPBUGS-20733 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #104
OCPBUGS-18418 : set TLS cipher suites in Kube RBAC sidecars #96
OCPBUGS-7987 : Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars #71
Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #42
Bug 2095049 : Only use credentials that are provided by the azure-inject-credential… #49
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #48
Mark CSI StorageClass as the default one #47
Bug 2062152 : Increase pod startup timeout in e2e tests #45
Bug 2073373 : Sync cmdline arguments with upstream #46
Fix CSIDriver fsGroupPolicy #44
Full changelog
OCPBUGS-20822 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #40
Bug 2080449 : UPSTREAM: 1023: add new option to allow VHD feature opt-out #15
Updating azure-file-csi-driver images to be consistent with ART #14
Bug 2074282 : UPSTREAM: 978: chore: Update golang.org/x/crypto for CVE-2022-27191 #13
Bug 2073436 : Update to v1.14.0 #12
Dockerfile should copy binary for the correct ARCH #10
build: set GOARCH appropriately #9
Updating azure-file-csi-driver images to be consistent with ART #8
Full changelog
OCPBUGS-20924 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #79
OCPBUGS-18418 : set TLS cipher suites in Kube RBAC sidecars #72
Bug 2105972 : disable VHD disk feature #35
Bug 2099968 : Only use credentials that are provided by the azure-inject-credentials container #32
Bug 2092502 : Don’t ship a StorageClass backed by NFS by default #30
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #27
Fix driver definition manifest: fsGroup is supported, snapshots are not #28
Updating azure-file-csi-driver-operator images to be consistent with ART #29
disable snapshots #26
Updating azure-file-csi-driver-operator images to be consistent with ART #25
Full changelog
OCPBUGS-20725 : Bump x/net package to v0.17.0 #85
OCPBUGS-14012 : Add user defined tags to Azure NIC resources #70
OCPBUGS-2123 : Fix availability sets unwanted creation for unknown vmSizes #41
OCPBUGS-2501 : Update azure instance types cache #37
Bug 2109487 : make Azure instance types case-insensitive #29
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #26
Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #21
Bug 2093044 : update getAvailabilitySetName function #22
Updating ose-machine-api-provider-azure images to be consistent with ART #19
Bug 2085336 : Ignore unknown Instance types in accelerated networking check #20
Bump machine-api-operator to 25e61c2 #18
update azure instance types #17
Refactor provider status to use metav1.Condition #16
Bug 2067798 : Bump prometheus/client_golang #15
Data Disks: add deletionPolicy logic #14
Implement Azure Ultra Disk (UltraSSD) support #13
Updating ose-machine-api-provider-azure images to be consistent with ART #12
Full changelog
OCPBUGS-22963 : use python3 for cloud sdk #7682
OCPBUGS-23478 : Specify google cloud CLI to version 256.0.0 #7747
OCPBUGS-494 : [release-4.11] Switch libvirt VM’s to vnc graphic mode #6252
OCPBUGS-18545 : CORS-2445: GCP: Add osImage to the install config #7468
OCPBUGS-16779 : bump RHCOS 4.11 bootimage metadata to 411.86.202308081056-0 #7424
OCPBUGS-17246 : azurestack: do not use gen2 images #7393
OCPBUGS-16915 : [release-4.11] azure: skip LB creation when not needed #7372
OCPBUGS-16353 : ic: azure: validate diskTypes in AzureStack #7341
OCPBUGS-17002 : GCP: add europe-west12 region to the survey as supported region #7377
OCPBUGS-5708 : hold bootkube service until bootstrap has pivoted #6759
OCPBUGS-13104 : openstack: Add netcat to the Installer image #7163
OCPBUGS-14288 : baremetal: Extra time for provisioning interface #7214
OCPBUGS-12750 : [Alibaba] update the bandwidth value of EIP #7132
OCPBUGS-11663 : AWS - Remove ACLs from s3 ign #7085
OCPBUGS-10594 : [release-4.11] aws: bump aws-sdk-go version #7000
OCPBUGS-7530 : bump RHCOS 4.11 bootimage metadata #6875
OCPBUGS-5665 : CVE-2021-4238: goutils: update for randomness fix #6765
OCPBUGS-5422 : Switch back to gp2 ebs volume type for bootstrap instance #6743
OCPBUGS-4685 : out-of-bounds read in golang.org/x/text/language leads to DoS #6685
OCPBUGS-3193 : [release-4.11] [AWS] Add AWS r6i into tested instance types table #6350
OCPBUGS-3362 : bump RHCOS 4.11 bootimage metadata #6720
OCPBUGS-4720 : GCP: Add me-west1 region #6690
OCPBUGS-5078 : OpenStack: Force JSON content-type in Swift object listing #6725
OCPBUGS-4405 : UPI: Azure: create HyperV2 rhcos image #6681
OCPBUGS-4530 : Enable CVO unmanage overrides in bootstrap-in-place installations #6668
OCPBUGS-4398 : update golang.org/x/crypto #6652
OCPBUGS-3023 : GCP: Add missing regions #6542
OCPBUGS-4325 : gcp: fail during validation if service usage is not enabled #6647
OCPBUGS-4325 : Service Usage API is required, not optional #6642
OCPBUGS-4081 : OpenStack: Force JSON content-type in Swift #6625
Bug 2105331 : Switch to perform normal marshalling with unknown fields #6102
OCPBUGS-378 : UPI image download govc rate limit failure #6246
OCPBUGS-2983 : Azure: Fix DiskEncryptionSet regex validation #6537
OCPBUGS-1346 : OpenStack UPI: Create server group for Computes #6351
Bug 2101015 : go getter update for terraform & terraform providers #6411
OCPBUGS-1242 : Add PowerVS zone mon01 support #6341
OCPBUGS-536 : vSphere - enable steal time accounting #6260
BUG 2117368: Add AWS S3 Bucket Permissions #6216
OCPBUGS-1876 : download ‘aliyun’ #6377
OCPBUGS-562 : bump RHCOS 4.11 bootimage metadata #6459
OCPBUGS-1349 : OpenStack: Lift validation for 14 chars cluster names #6355
Bug 2107153 : Make azure baseDomainResoureGroup optional for private c… #6119
OCPBUGS-759 : Extend user tags limit to 25 based on AWS limits for 4.11 release #6303
Revert “[release-4.11] OCPBUGS-1157: Add depends to enforce order for azure terraform dependencies” #6344
OCPBUGS-1157 : Add depends to enforce order for azure terraform dependencies #6333
OCPBUGS-455 : vsphere: fix default disk type when not speficied #6256
Bug 2104825 : Remove unnecessary SG rule #6092
Bug 2112928 : Fix validation errors for instance type #6190
OCPBUGS-433 : nutanix: allow creating manifests without Prism Central connection #6251
Bug 2115807 : data/data/coreos: update FCOS to 36.20220716.3.1 #6204
Bug 2117279 : bump RHCOS 4.11 bootimage metadata #6226
OCPBUGS-365 : Updating ose-baremetal-installer images to be consistent with ART #5897
Bug 2118514 : [4.11] Download yq in upi installer containers #6225
Bug 2106014 : Allow setting bootstrap kubelet ip #6110
Updating ose-installer-artifacts images to be consistent with ART #5951
Bug 2110482 : vsphere installconfig: use full dc path in network validation #6160
Bug 2106062 : bump RHCOS 4.11 bootimage metadata #6130
BUG 2104906: destroy/gcp: Use min length for destroying disks #6094
Bug 2104727 : Fixes CFE-489 - AWS installer should go through proxy for s3 bootstrap ignition call #6090
Bug 2093126 : bump RHCOS 4.11 boot image metadata #6060
Bug 2100841 : Print the “export KUBECONFIG=…” command on its own line for easier cut-and-paste #6018
Bug 1997704 : [OpenStack] Document in-tree limitation for external LBs #6033
Bug 2100496 : oVirt VM creation fails on empty affinity group description #6044
Bug 2064693 : Restore ability to use local clouds.yaml #5947
Bug 2047732 : [IBM]Volume is not deleted after destroy cluster #5962
Bug 2076646 : destroy/gcp: Disk names are filtered using kubernetes name format #5976
Bug 2095226 : Added changes to verify cloud connection and dhcp serviceinstance details of a powervs instance #5899
Bug 2097940 : PowerVS: Handle optional VPCRegion #6020
Bug 2082283 : Transition to the oVirt Terraform provider v2 #5867
Bug 2096905 : Swap Nutanix Prism Client #6002
Bug 2094694 : Nutanix cluster name validation #5991
Bug 2098243 : Adding error handling to powervs platform #5958
Bug 2096605 : vsphere: validate diskType if supplied #6019
Bug 2049108 : Fix network interface not found error #6016
Bug 2097260 : Fixes openshift-install create manifest failure of Power VS Platform #6007
Bug 2092107 : Re-add Power VS install-config DNS validation tests #5938
Bug 2092296 : Changed DefaultMachineCIDR of PowerVS to 192.168.0.0/16 #5940
Bug 2097239 : Changed Lower limits of CPU for PowerVS Cloud #5929
Bug 2090816 : Increase bootstrap timeout, not k8s API timeout #6010
Bug 2095917 : Nutanix set osDisk with diskSizeGB rather than diskSizeMiB #5998
Bug 1859153 : IAM instance profile race condition #5982
OWNERS_ALIASES: update coreos aliases #5989
Bug 2096352 : Collect whole journal and netstat data #5988
Bug 2090816 : baremetal: wait longer for bootstrap to complete #5981
baremetal: static IP for bootstrap node #5787
Bug 2068180 : update doc for DNS and disconnected clusters #5974
Bug 2090049 : GCP Destroy resources that are owned by cluster #5965
Bug 2094902 : Simplify cross-compiling #5905
Bug 2085336 : based on 4.11 CORS-1916 add the vm family #5913
Bug 2089563 : Use Power VS machine provider spec from openshift/api #5873
Bug 2093368 : OpenStack: Fix LoadBalancer FIP deletion on destroy #5964
Bug 2057582 : Remove all occurances of packet_device from upi/metal #5969
Bug 2057582 : For metal upi update source and versions of terraform providers #5941
BUG 2075459: IOPS was not being set even when manually configured #5925
Bug 2084280 : Remove optional services from permissions check #5915
Bug 2085380 : azure: validate VM image and instance HyperV gen match #5918
Bug 2084580 : Add check to validate cluster name for dots #5931
Bug 2086791 : Azure: validate ultrassd instance types in multi-zone regions #5937
Bug 2090487 : SNO network type update #5927
Updating ose-installer images to be consistent with ART #5950
Updating ose-installer-artifacts images to be consistent with ART #5908
Bug 2085187 : terraform: revendor golang.org/x/sys #5896
Bug 2088660 : Fix for absence folder for bootstrap ignition iso #5935
Bug 2089682 : Ensure Presence of Overlay networks in cluster is handled gracefully #5939
Bug 1965468 : Revert “Bug 1909136: OpenStack: delete volume snapshots” #5923
Bug 1969794 : Correct typo #5922
Bug 2084441 : azure: proper premiumIO validation message #5924
Bug 2078431 : Set TF_DATA_DIR to the Terraform Dir. #5864
Bug 2086718 : Add destroy cluster support for PowerVS #5737
Bug 2086936 : vSphere: change socket back to cores #5914
Bug 2086056 : openstack: add doc for OVS HW offload #5886
Bug 2065893 : bump RHCOS 4.11 bootimage metadata #5887
Bug 2085721 : Fix name for customization controller image #5909
Power VS: Use bucket name from coreos stream rather than inferring it #5782
Increase Unit Testing Coverage of AWS Install Config to Include ValidateForProvisioning #5791
Added changes for validating the IBM Account Type for Provisioning Power VS resources #5734
Updating ose-installer images to be consistent with ART #5895
AGENT-40 : allow reading cert keys #5872
Power VS: Separating bootstrap resources to own stage for clean destroy #5901
Aws console logs #5807
GCP: Revert Instance Type from N2 to N1 #5898
Dynamic retrieval of GCP Regions for a Project #5815
Update to Golang v1.17 #5870
azure: move zones functionality to the client API #5844
azure: validation: dedup getting the capabilities #5893
update azure arm templates to support customer provided vnet #5880
machines: Set defaults for machine instance types #5841
Azure Provider: fix vmNetworkType defaults by checking vm capabilities #5846
OpenStack: fix SR-IOV documentation TOC #5881
Bug 2078875 : Delete all the ports from tagged Neutron networks. #5838
Bug 2082604 : Revert “image: set os name to red-coreos-stable-amd64” #5869
openstack: Add the Kuryr squad as approvers #5866
Update template for CloudProviderConfig #5875
Bump Azure Stack Terraform Provider for Go 1.18 #5865
Add -n argument to copy network config from install environment to install-to-disk.sh.template #5795
Update SR-IOV & DPDK doc for OpenStack #5712
Bug 2080054 : Add ‘ARG TAGS=“”’ line for each build step #5794
Pull the OS Image for Nutanix via URL #5868
Power VS: fix terraform vars #5863
Update TF Provider Version to 1.40.1 #5862
Use neutral pronoun in doc. #5384
Change the default machine pool config for Nutanix #5857
Bug 2074210 : Add new Regions to the GCP Installer configuration list #5811
Update os name to correct value #5860
Update the comment explaining vCPUs on Nutanix #5859
Bug 2064170 : Fixed duplicate strings in explain #5836
Bug 2077662 : Fix AWS Platform Provisioning Check #5831
Support RAID and BIOS configuration for master nodes of baremetal IPI deployments #5196
Power VS: Create Remaining TF Resources #5780
Handle the mapi-provider-nutanix types moving to openshift/api #5812
vsphere: upi ignition leak #5850
vSphere: ignore bootstrap eagerly scrub changes #5848
Bug 2078895 : ovirt: fixing incorrect ‘format’ value validation #5847
vsphere upi: missing etc resolv #5842
vsphere: remove unused namer interface #5824
Bug 2029438 : Set rc-manager=unmanaged on baremetal bootstrap #5482
Unpack to install dir #5825
baremetal: remove redundant proxy setting #5598
Determine Nic name in Bootstrap VM for ARM and x86 #5698
Add bootstrap directory for Nutanix platform #5828
Provider Azure: Enable accelerated networking on control plane nodes #5309
Ensure that the /bin/terraform-provider-matchbox binary is present #5829
Bug 2074659 : Fix empty string usage in ValidateForProvisioning #5801
vsphere: upi, use community ignition provider #5808
Bug 2076393 : vsphere: no longer logout of platform client before finished #5818
Bug 2076880 : for vsphere ipi add cluster domain to the uploaded vm configs so that 30-local-dns-prepender can use it #5788
Ensure Nutanix API VIP is populated in the SAN for the MCS Cert #5821
Bug 2048451 : Fix proxy dial to pick all proxies #5743
update the vm types OCPQE-8674 #5704
data/bootstrap/files/usr/local/bin/bootkube: –rm all Podman containers #5803
libvirt: use el8 repo for Google Cloud SDK #5467
AWS IMDSv2 support #5793
Bug 2075873 : data/data/coreos/fcos.json: update initial FCOS to 35.20220327.3.0 #5817
Changing the machine-config service name #5707
Ensure ignition host is set to API VIP for Nutanix platform #5813
Add Power VS-specific fields to cloud-provider config #5809
Check for CVO failing condition before exiting as success #5745
Add in-repo documentation for user-selectable capabilities #5732
vSphere session cleanup #5796
Power VS: Add basic install-config validation #5779
Adding public&private zones to DNS config on PowerVS #5749
Revert “cluster: unpack terraform binaries into install directory” #5810
Bug 2064170 : Fixed Azure punctuation installconfig.controlPlane.platf… #5802
Repin libvirt-version #5797
Add IBM Power VS: tf data #5614
cluster: unpack terraform binaries into install directory #5715
azure: Enable HyperVGeneration setting for Azure disks #5721
pkg/destroy/aws: Log unfiltered pagination #5775
terraform: fix module name of terraform providers #5727
remove platform.azure.osDisk #5785
Lower severity of ListAWSDefaultServiceQuotas warning msg #5747
images: Update terraform version in UPI image #5762
Bug 2033482 : vsphere: ensure terraform variables are defined #5778
Add VolumeID testscases for Power VS machinepool #5742
Power VS quota asset #5748
MGMT-9797 : Set single-node none-platform clusters Ingress DefaultPlacement
to ControlPlane
#5746
Added platform validation testcases for IBM PowerVS platform #5708
Add cluster destroy logic for Nutanix clusters #5638
Add IBM Power VS: tfvars #5615
pkg/asset/manifests/operators: Set kubernetes.io/description for cluster-config-v1 #5783
Updating ose-baremetal-installer images to be consistent with ART #5590
Add exit code for infra, bootstrip and install failures #5702
Bootstrap-in-place ignition creation should also create a worker.ign
file #5786
Remove defaultStorageContainer from nutanix platform installconfig #5784
Update installconfig validation for Nutanix #5781
Re-update BMO vendor to use ipxe for iRMC #5662
Bug 2038774 : [IBM] add IPsec IKE UDP ports 500, 4500 to security group #5539
Update declarative assets for Nutanix #5636
Bug 2056460 : Preallocated disks for OCP nodes on oVirt #5594
gather: collect sssd journal logs #5771
Add nutanix-specific terraform variables #5637
Removing no-longer-needed DNS etcd stuff #5764
Add nutanix-specific customizations to installconfig #5633
Update default releaseimage to 4.11 #5774
collect machine state in bootstrap gather #5770
Refactor UltraSSD tfvars #5757
Bug 1918005 : vsphere: Use Managed Object ID for networks instead of potentially duplicate name. #5673
Azure: validate UltraSSD instance types #5759
OWNERS_ALIASES: Update current installer team #5766
Validate disk encryption sets #5692
vendor: update api to latest version to use AzureUltraSSDCapabilityEnabled #5756
vsphere: make cluster destroy more resilient to api failures #5556
Bug 2061891 : IBMCloud: Add br-sao region to static list #5760
Add Nutanix-specific customizations to manifests #5631
terraform: add terraform verification to ./hack/verify-vendor.sh #5675
Add nutanix-specific customizaitons to machines #5632
Bug 2047935 : bump RHCOS 4.11 bootimage metadata #5729
Bug 2066463 : IBMCloud: Patch IBM client auth #5736
Bug 2062998 : Update region check for coreos AMIs #5731
terraform: compress provider binaries faster #5739
Add nutanix-specific customizations for assorted assets #5634
Bug 2048067 : [Alibaba] fix location service endpoint #5664
Bug 2060687 : terraform: fix setting of zone in load balancers for non-zonal azure regions #5684
Doc: Update VIP number to 2 #5599
Updating ose-installer-artifacts images to be consistent with ART #5591
Add the terraform plugin for Nutanix #5635
Add IBM Power VS: cluster assets #5651
AlibabaCloud: fix for bootstrap teardown removing slb backends #5682
Use powervs NewClient in GetDNSZone #5723
vsphereprivate: update to v2 terraform sdk #5716
Bug 2064969 : terraform: upgrade aws provider to v4.5.0 #5719
Revert “Merge pull request #5665 from r4f4/azure-azid-adapter” #5722
vendor: upgrade aws sdk to v1.43.19 #5710
Azure: Add ultraSSDCapability to control plane instances. #5701
Bug 2061549 : azurestack: create the api DNS record when publishing internally #5691
Set ignition string to sensitive #5720
Bug 2047670 : aws: remove validation check for internal publish strategy #5695
baremetal: refresh owners list #5713
include conn timed out err for bootstrap collection #5677
Bump gophercloud #5686
Add Nutanix-specific platform types #5603
vSphere: Update terraform provider to current upstream #5694
Add IBM Power VS: machine assets #5611
Bug 2060617 : fix(ibmcloud): Properly match regex for DNS destroy #5679
Add IBM Power VS: manifest assets #5610
Azure azidentity adapter #5665
Validate BMC driver supported and requires provisioning network #5458
terraform: build binaries on go.mod changes #5672
Add IBM Power VS: installconfig assets #5612
Add VPCRegionForPowerVSRegion function #5700
Azure disk encryption support #5641
Bug 2060508 : azurestack: fix backend address pools for internal publishing #5678
azure/validation: Skip “resource group empty” check for ARO #5330
Bug 2061527 : IBMCloud: Missing infra providertype #5687
Bug 2061544 : azurestack: stop pinning to Standard_LRS for disk type #5688
Bug 2060970 : data/data/coreos/fcos.json: update initial FCOS to 35.20220213.3.0 #5680
doc: terraform maintenance document #5670
Updating ose-installer images to be consistent with ART #5589
remove stray tmp/simple_log.log file #5606
GCP may also return Forbidden status when trying to check quotas #5649
Bug 2026356 : Fix bootstrap disk instance type #5515
Bug 2034147 : Validate num cores with vcpus #5656
Bug 2059213 : build all terraform providers and terraform binary locally #5666
Add IBM Power VS: types #5609
point 06_workers.json to azurestack version #5661
Bug 2021041 : vsphere: Not found TagCategory when destroying ipi cluster #5558
Render the CVO manifest with user-specified capabilities from the install-config #5645
isolate terraform #5507
Bug 2046181 : baremetal: reduce API timeout to 15 minutes #5639
Check for DeletePlacementGroup permission before destroying cluster #5655
OWNERS_ALIASES: Drop wking from approvers #5644
data/manifests/bootkube/cvo-overrides: Default to stable-4.11 #5621
Updated owners to current OCP on RHV members #5654
baremetal: use combined Ironic, drop MariaDB #5553
Update OWNERS_ALIASES #5640
Bug 2047257 : openstack: Migration script should –force drain #5618
Tested instance type lists for AWS/Azure/GCP #5517
Bug 2047925 : Update BMO vendor #5588
cmd/openshift-install/create: Do not attempt analysis when we fail to gather logs #5582
Bug 2046181 : baremetal: wait for image-customization to come up #5579
aws: support the entirety of the secret partitions #5597
Bug 2050767 : vsphere: check that network exist in provisioning validation #5607
Bug 2048451 : Use proxy dial to validate endpoints #5600
Bug 2050146 : Don’t shortcut OpenStack scraping if quota is unavailable #5601
Bug 2048222 : Remove non-public AWS regions from list of regions #5595
Azure Stack: Add UPI Instructions for internal CA #5573
Remove Caleb Boylan from core installer reviewers #5593
Ensure removal of placement-groups during cluster destroy on AWS #5528
Full changelog
OCPBUGS-21136 : Uplift x/net to v0.17.0 #311
OCPBUGS-17955 : Trigger reconcile on Secret change #299
OCPBUGS-11612 : allow namespace to continue with terminating when deprovisioning at t… #262
OCPBUGS-8298 : cve: 2022-21698: upgrade prometheus/client_golang #256
Updating ose-baremetal-operator images to be consistent with ART #225
Bug 2087213 : Don’t require pre-provisioning image for live ISO provisioning #231
Bug 2087213 : Don’t require PreprovisioningImages for older ZTP #229
Bug 2092650 : Stop treating missing network as fatal error #227
Merge upstream #224
Bug 2080305 : Uplift kustomize to v4 to remove go-getter dependency #223
Update vendoring #222
Disable iDRAC RAID #219
Merge upstream #218
Move bmh crd to level 31 #216
Enable multi-arch builds #214
ocp: add baremetal capability annotation #212
Merge upstream #213
Merge upstream #211
Merge upstream #209
Bug 2043118 : Move from Available to Preparing if HostFirmwareSettings… #208
downstream: add vendor target #207
Merge upstream #205
Add bfournier & remove asalfeld from OWNERS #206
Updating ose-baremetal-operator images to be consistent with ART #204
Full changelog
OCPBUGS-26599 : release-4.11: use correct namespace with sample templates #1649
ART-8372 : el7 version of oc in 4.11 #1609
OCPBUGS-20292 : Truncate existing files when writing from inspect #1564
OCPBUGS-20309 : Use quay redis image instead docker mysql #1568
OCPBUGS-16059 : mcs cert: account for environments that use IP directly #1504
OCPBUGS-16195 : reboot: set ignition version to 3.1 #1510
OCPBUGS-4812 : [release-4.11] New-App Using Git via SSH #1283
handle the error case of node retrieval while waiting for reboot #1486
bring some cert rotation helpers back into 4.11 [fix unit-tests] #1479
OCPBUGS-10772 : bump repo sclorg/s2i-ruby-container location for newapp test #1380
OCPBUGS-8205 : pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates #1360
Bug OCPBUGS-915: [inspect] Add EgressQoS to inspect #1230
OCPBUGS-2766 : pkg/cli/login: Warn, but do not fail, on surprise project-list errors #1274
OCPBUGS-1497 : oc adm logs: generate proper path for static pods #1239
Bug 2117823 : release: extract ccoctl #1220
Bug 2110567 : oc adm inspect: check a resource exists before its inspection #1222
Bug 2107003 : Set completion function for get command #1206
Bug 2103638 : Use from-release as based image when base digest is invalid #1196
Bug 2108617 : Add ManifestListDigest field to release info struct #1209
Bug 2104589 : set proper pod security ns labels #1198
Bug 2104282 : Add new IsManifestList flag into ReleaseInfo struct #1193
Bug 1905850 : add a new option for checking a subresource to oc adm policy who-can #1179
Bug 2015321 : Add destdir special character validation in must-gather #1178
Bug 2100138 : Add json support for release info bug printing #1177
Bug 2099637 : Use filter options only when keep-manifest-list is true #1176
Bug 2096855 : extract linux/amd64 to read release metadata #1174
Bug 2057633 : add validations for a pod & container to rsync #1087
Bug 1957668 : show console URL when asking for Authentication #883
Bug 2097334 : ensure kubectl name is replaced in plugin cmd #1173
Bug 1823143 : add –icsp-file option to adm release subcommands #1169
Bug 2090692 : fix version from 1.24.0 beta to 1.24.1 #1168
Bug 1999891 : bubble errors which happen prior to collection to BackupGathering #1093
Bug 2090266 : add –filter-by-os support in oc adm release extract and linux/amd64 for getting IS during mirror #1167
Bug 2093797 : deprecate –service-account flag for oc registry login #1166
Bug 2088483 : update ‘oc adm catalog mirror’ command to accept –continue-on-error flag #1152
*: add relevant code owners for catalog alias #1159
Bug 2087103 : pkg/cli/admin/upgrade: “Updating to” -> “Requesting update to” #1156
Bug 2090692 : Beautify help and align with kubectl output #1121
Bug 2086519 : pkg/cli/debug: suggest pod security labels on violations #1155
Add user coreydaley as an approver #1144
Bug 2090751 : Correcting skipMissing flag usage when a manifest cannot be found #1105
Bug 2083770 : Change release signature file extension to json #1151
Bug 2040654 : Pass pod exit error codes to user #1150
Bug 2083999 : Delete recently created images when –prune-over-size-limit is used #1143
Bug 2086459 : Continue inspection when some resources are not found #1137
Bug 2065507 : Add the ReleaseAccepted condition to the oc adm upgrade command #1113
Update images to be consistent with ART #1132
release: update oc source URL in client READMEs #1129
WRKLDS-370 : copy manifests from linux/amd64 to all manifests in a list #1120
Enable using existing namespace for must-gather operations #1080
Bug 2023295 : [inspect] Add namespace-scoped networking resources to inspect #1128
Bug 2074237 : clarify use of –image-stream for oc new-app #1119
Deprecate oc serviceaccounts command #1126
Replace temporary show-managed fields hack with a proper solution #1127
Bug 2080416 : Fix project command auto completion #1125
Remove long-deprecated commands oc adm migrate etcd-ttl|image-references|legacy-hpa|storage #1124
Fix squash merge regex #1118
Bug 2007647 : Add squash-merge support into oc adm release info #1116
Bug 2071614 : Remove network CRDs scheme registration #1110
Bug 2074902 : Pass non-zero exit code to debug command #1115
adm inspect: delete unused pod URL getting code #1032
Bug 2073113 : do not report docker conf deprecation warning when the docker is not available #1106
Drop k8s carries and bump to kubectl v0.24.0-beta-0 #1092
Bug 2075647 : pkg/cli/admin/upgrade: Use PATCH instead of POST for spec updates #1111
Add –keep-manifest-list support to oc adm release *
commands #1109
Bug 2041454 : Validate reference-policy for import-image command #1108
Bug 1823143 : wire ICSP lookups to oc image info #829
Use ServerGroupResources instead deprecated ServerResources #1101
Introduce Jira defects into release info #1100
Fix component name for oc #1102
pkg/cli/admin/mustgather: label must-gather ns as privileged #1099
Obtain OpenShift version from ClusterVersion resource #1091
Allow triggers on batch/v1 CronJobs #1077
pkg/cli/admin/upgrade: Mention channel choices #1088
Add Nutanix platform #1046
Bug 2057101 : remove klog format and update messages for docker config deprecation #1082
Bug 2056893 : pkg/cli/admin/upgrade: Drop –to-image help warning #1078
Bug 2049889 : logging / help improvements around ‘oc new-app –search’ #1086
Bug 2056122 : expose –keep-startup flag for oc debug #1085
Bug 2052578 : reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories #1059
Add support for batch/v1 CronJob #1081
OSDOCS-3257 : Adding in new metadata requirement for docs #1072
Update all images to be consistent with ART #1071
Updating openshift-enterprise-cli images to be consistent with ART #1039
Bug 2049234 : Fix mirroring images that have dots in their namespace #1063
Bug 2052034 : make sure that we check for resorces and files before picking the simplest path #1062
Bug 2049133 : Fix catalog mirror from files #1058
Comment tolerations used in must-gather #1004
Remove unused methods and re-use pre-existing ones where needed #951
Show managedFields in inspect #1051
Bug 2046319 : improve error message for debug #1053
Bug 2047895 : release: handle aarch64/arm64 naming disparity in mirror #1038
Bug 2044140 : pkg/cli/admin/upgrade: Fix nextStep option sense #1050
Add TMOUT env to debug node pod #1048
Bug 2044140 : Updated the error message to include the suggestion #1041
Bug 2035717 : Enhancing the output provided when backup collections are attempted #1013
Full changelog
OCPBUGS-21328 : Upgrade golang/x/net for CVE-2023-39325 #625
NO-ISSUE: snyk: exclude vendor/ #621
NO-ISSUE: Removing andrew from OWNERS #620
OCPBUGS-13792 : Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. #540
OCPBUGS-11708 : ccoctl: Enable public anon read access to default OIDC S3 bucket #530
OCPBUGS-2801 : Backport –credentials-requests-dir for ccoctl gcp delete. #506
OCPBUGS-2883 : Make ccoctl use regional STS endpoint by default #503
OCPBUGS-2278 : Add ccoctl support to create OIDC endpoint with private S3 bucket #500
Update OWNERS to reflect reality. #496
Bug 2118680 : Refactor Nutanix plugin to use external credentials structs #487
Bug 2105468 : Make ccoctl work with credentials fetched from gcloud cli defaults #477
Bug 2102834 : manifests/00-namespace: Set empty openshift.io/run-level #473
Bug 2093986 : Make pod identity webhook comply to restricted pod security level #469
Updating ose-cloud-credential-operator images to be consistent with ART #466
manifests/deployment: comply to restricted pod security level #463
Add a check for no CredentialsRequest manifest in directory #462
Bug 2067800 : upgrade prometheus/client_golang to v1.12.1 #464
Minor doc updates #461
Update OWNERS file to reflect reality #460
Change the ccoctl generated nutanix-credentials secret data format #457
Skip directories when reading credentials requests #459
Add nutanix credentials handling with manual mode #450
Leader election migration 1: ConfigMap & Lease #446
Updating ose-cloud-credential-operator images to be consistent with ART #449
Full changelog
OCPBUGS-13240 : pull project name from subnet uri #109
Bug OCPBUGS-5359: Add ApplicationSecurityGroups to InterfaceIPConfiguration #93
OCPBUGS-3932 : Add assigned egress ips into capacity #78
OCPBUGS-4529 : Node controller: Skip uninitialized nodes #85
OCPBUGS-4528 : AWS: build temp credentials file from AWS key and secret #84
OCPBUGS-4167 : Run azure operations in sequence #79
OCPBUGS-4163 : AWS: Fix race in IP address assignment code #83
Jira OCPBUGS-4179: Fix assign error display for cloudprivateipconfig #75
OCPBUGS-4233 : Updating ose-cloud-network-config-controller images to be consistent with ART #81
OCPBUGS-3089 : Update OWNERS #71
OCPBUGS-1846 : Add resolver to handle custom endpoints #63
Bug 2094438 : Make AWS URL parsing more lenient for GetNodeEgressIPConfiguration #45
Bug 2092047 : 1.24 rebase #44
Bug 2071914 : azure: default empty environment to AzurePublicCloud #36
Add instructions for how to run image in cloud #31
Bug 2072439 : Get subnet information from subnet instead of from network addresses #32
Bug 2060334 : Fix Azure VNET lookup when the NIC’s subnet is in a different resource group #26
Bug 2060361 : Fix Unable to enumerate NICs due to a missing ‘primary’ field due to security restrictions #27
Fix run_locally.sh #21
Updating ose-cloud-network-config-controller images to be consistent with ART #25
README.md #22
Full changelog
Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #221
Updating vertical-pod-autoscaler images to be consistent with ART #222
OCPBUGS-2046 : switched policy for PodDisruptionBudget from v1beta1 to v1 in time for 1.25 #244
Bug 2102947 : Have VPA ignore phantom containers named “POD” #234
Bug 2087037 : Rebase onto latest master from upstream #231
Bug 2087037 : Rebase Autoscaler onto upstream release-1.24 branch #227
added bindata.go in e2e/vendor to fix the e2e test failures #225
add user configurable cluster api version #223
Full changelog
OCPBUGS-20828 : Uplift x/net to v0.17.0 #372
OCPBUGS-5628 : Update dependencies #321
Updating ose-cluster-baremetal-operator images to be consistent with ART #264
OCPBUGS-5075 : Do not fail the reconciler when no master Machines exist #318
OCPBUGS-1762 : add a workaround for a NetworkManager issue #298
OCPBUGS-747 : Use machines instead of nodes to detect masters #307
OCPBUGS-1511 : [release-4.11] Fix a few papercuts #290
OCPBUGS-747 : do not rely on string “master” to be in BMH names #283
Bug 2084215 : Add baremetal prefix to kube-rbac-proxy #272
Bug 2099928 : Add UT for image_customization_test #243
Bug 2088428 : Fix interpretation of Deployment Status Conditions #266
Bug 2080306 : Uplift kustomize and BMO to remove go-getter dependency #262
Change registry reference for image customization controller image, p… #260
Revert “Allow access to InfraEnv resources from assisted service” #254
Extract functions for ZTP integration #261
bump golangci #257
Change registry reference for image customization controller image #258
Bug 1961844 : Adding baremetal ClusterOperator relatedObjects directly to its manifest #255
Add baremetal capability annotations #249
Allow access to InfraEnv resources from assisted service #251
More updates to the OWNERS file #253
Update the OWNERS file based on new contributors #252
Updating ose-cluster-baremetal-operator images to be consistent with ART #242
Use combined Ironic process, drop RPC and MariaDB #234
Remove asalkeld and kirankt from Owners #228
Full changelog
OCPBUGS-5781 : Try to limit groups for the REST mapper discovery #216
Bug 2110524 : Improve decision logic around syncing cloud config #198
Bug 2089334 : Use service account credentials for all providers #193
Bug 2067806 : Bump dependencies to K8s 1.24 #192
Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #191
Bug 2082687 : IBMCloud: Remove CCM port argument #189
Remove port argument and update enivronment variable name from powervs cloud provider deployment #188
Bug 2074471 : update enabled and use-octavia options in cloud-conf config-map #183
Bug 2074606 : Allow OpenStack CCM to annotate Service objects #184
OpenStack: ensure config-map is updated only when needed #185
Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #166
Bug 2051457 : CCM PodDisruptionBudgets #174
Add a troubleshooting doc #177
Add generation of config for OpenStack CCM #178
Add PowerVS cloud controller manager #179
Use “go install” to fetch binaries #161
Bug 2059716 : Ensure release version is set on config sync controller #176
Bug 2059716 : Ensure release version is injected into all controller status clients #175
Bug 2055723 : start watching KubeControllerManager resource #173
Changes to support config map sych for Power VS Platform #172
Added credential request file for Power VS #171
Update OWNERS #170
Fix a typo in watch predicates #169
Bug 2047998 : Alibaba should deploy image from release payload #167
Full changelog
: OCPBUGS-21231: bump library-go to include switch to HTTP/1.1 #374
Update images to be consistent with ART #253
Bug 2082763 : Drop the OperatorHub CR instance #245
bump openshift/api, client-go #251
manifests/deployment: comply to restricted pod security level #248
Reorder the empty Node CR resource to ensure it is applied after the Node CRD #244
Bump(o/client-go); Add empty config/v1/node/cluster object #238
Bug 2074243 : Bump openshift/api
to c3bb724c28
#243
Revert config/v1/Node crd.yaml #242
Bump openshift/api, openshit/client-go to add ImageMirrorSet CRDs #236
bumped openshift API to have node object related changes #233
Full changelog
OCPBUGS-21425 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #170
OCPBUGS-19513 : Fix readOnlyRootFilesystem for 4.11 #165
Bug 2097283 : Update manifests to v6.0.1 #121
Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART #119
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #118
AUTH-133 : assets: comply to restricted pod security level #120
manifests/deployment: comply to restricted pod security level #116
Bug 2057079 : Fix race when setting Progressing condition #114
Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART #113
Full changelog
OCPBUGS-21511 : Bump golang.org/x/net/http2 to v0.17.0 for CVE-2023-39325 in cluster-dns-operator #392
OCPBUGS-2528 : keep dns-default annotations intact #349
OCPBUGS-2050 : Reconcile the DNS namespace #346
OCPBUGS-2112 : [release-4.11] Backport Address e2e failures due to pod security #347
Bug 2092041 : Bump k8s to 1.24 and Golang to 1.18 #328
Bug 2095941 : topology aware hints to prefer to keep dns traffic within a zone #322
Bug 2093236 : propagate retry request for progressing updates #325
Bug 2061244 : desiredDNSDaemonSet: Allow autoscaler to evict #320
Bug 2037190 : Skip frequent updates to progressing and degraded conditions to prevent status flaps #318
NE-755 : Support CoreDNS forwarding DNS requests over TLS #314
AUTH-182 : manifests/deployment: comply to restricted pod security level #319
NE-815 Extract test Corefiles inside DNS ConfigMap test to individual files #315
Added gcs278 to OWNERS #312
Full changelog
OCPBUGS-21108 : fixing CVE-2023-39325 by updating dependencies #1150
OCPBUGS-22785 : [4.11] Backports of backup/restore fixes #1145
OCPBUGS-18283 : reset snapshot default counts to avoid file already lo… #1103
OCPBUGS-9908 : Garbage collect grafana-dashboard-etcd #1022
OCPBUGS-9967 : increase live/ready timeout and failure thresholds #1025
OCPBUGS-7720 : set default timeouts in etcdcli #1007
OCPBUGS-7510 : [release-4.11] fail early on missing node status envs #1006
OCPBUGS-4785 : only allow TLS1.2 ⁄1 .3 ciphersuites in etcd and CEO #973
OCPBUGS-2919 : update prometheus alerts #957
OCPBUGS-2113 : Add niceness to important etcd processes #943
OCPBUGS-1607 : increase etcdGRPCRequestsSlow thresholds #934
OCPBUGS-1354 : fix cert rotation on IP changes #931
OCPBUGS-685 : preserve log message on failures #924
Bug 2108595 : Cherrypick move etcd monitoring dashboard… #893
Bug 2107070 : etcd-metrics container is flooding logs #889
Bug 2108175 : Fix etcd minor upgrade backup #891
fixing unit test health flakes with tolerance #881
Bug 2105146 : fix degraded missing cluster version #877
Bug 2105247 : Add etcd pod liveness probe #879
Bug 2101460 : add timeout to health checks #863
Bug 2095703 : fix multi-address member removal #858
Bug 2092880 : avoid extrapolation in leaderhip alert #851
Bug 2092395 : etcdHighNumberOfFailedGRPCRequests alerts with wrong results #843
Bug 2064024 : Update library-go to 80f9619c2 #816
Bug 2090929 : cluster-backup.sh script has a conflict to use the ‘/etc/kubernetes/static-pod-certs’ folder if a custom API certificate is defined #845
Bug 2085997 : defines a startupProbe for etcd container #840
Bug 2085997 : brings back initial delay seconds to the previous value #839
Bug 2085997 : increase initial delay seconds to match the discovery timeout #838
Bug 2085997 : removes TestScalingUpAndDownSingleNode #813
Bug 2073901 : revisit defrag controller degradation #812
Bug 2087983 : remove etcd_perf before restore #823
Updating cluster-etcd-operator images to be consistent with ART #831
Bug 2012065 : Add summary to etcd alert rules #822
Bug 2067738 : update prometheus client #821
Bug 2061496 : Adding message to ControllerStarted:RecentBackup condition #760
Bug 2063183 : Upping defrag timeout to 1 minute #762
manifests/deployment: comply to restricted pod security level #802
test utils changes the way endpoints data key is calculated #814
Bug 2077160 : Adding Thomas to reviewers and me to approvers #815
Bug 2079724 : manually disable defrag #798
fire an event on successfull member removal #808
Scale up new members as learners #758
clustermemberremovalcontroller must examine cluster health before removing a member #805
Bug 2077833 : add more logging #800
Bug 2076793 : pkg/operator/upgradebackupcontroller: Pivot from Failing to ReleaseAccepted #799
Bug 2076831 : fixing client readyz leak #796
exports common functions used by the scaling controllers #795
introduces MachineDeletionHooksController #781
ClusterMemberController adds members whose machines are not pending deletion #790
Update owners with new team members #792
member removal part two #779
adds attemptToRemoveLearningMember to the cluster member removal controller #791
Bug 2063831 : Replace quorumguard and add readyz server #789
Bug 2074544 : revert #784 and #780 to fix ipv6 #786
Bug 2075015 : Revert “replace quorumguard and add readyz server” #787
no pending on etcdHighNumberOfLeaderChanges 1st 1h #783
Bug 2063831 : replace quorumguard and add readyz server #763
adds attemptToRemoveLearningMember to the cluster member removal controller #784
Bug 2053596 : Increase IBMCloud VPC heartbeat timeout to 500ms and leader election timeout to 2500ms #759
ClusterMemberController adds members whose machines are not pending deletion #780
refactors the member removal controller #782
Revert “Merge pull request #768 from p0lyn0mial/member-removal-part-two” #778
member removal part two #768
turn on initial corruption check #770
adds helpers functions used by the vertical scaling controllers #769
introduces ReadDesiredControlPlaneReplicasCount #767
Bug 2057642 : Change fsync degraded reason to CamelCase #756
Bug 2057644 : Fix FSyncController degraded latch #754
an e2e test for checking scaling up and down by one master node #740
adds member removal controller #737
Bug 2053596 : Increasing election timeout for IBMCloud VPC #746
Bug 2053582 : Track static pod lifecycle #750
Bug 2053582 : Track static pod lifecycle #748
changes the signature of the MemberRemove method to accept a memberID (uint64) not a Name (string) #741
Bug 2052270 : pkg/operator/metriccontroller/fsync_controller: Fix “treshold” -> “thresholds” typos #743
an e2e test for checking scaling up by one master node #732
wait for other installers to finish #736
Bug 2042501 : bump library-go #729
Full changelog
OCPBUGS-20748 : Bump golang.org/x/net for CVE-2023-44487 #989
OCPBUGS-22433 : test/e2e: Don’t use openshift/origin-node #993
OCPBUGS-14456 , OCPBUGS-14457 : Handle mTLS CRLs, and fix accidental CRL duplication #942
OCPBUGS-3560 : Allow PROXY protocol for “Private” strategy #914
OCPBUGS-8000 : certificate-publisher: Don’t publish extraneous certificates #894
OCPBUGS-3049 : Update CRLs when they expire #853
Bug 2110528 : Fix another issue with route status clearing race condition caused by not validating generation id #813
Bug 2108214 : Fix route status clearing race condition caused by using the cache #807
Bug 2106116 : Bump openshift/api for healthCheckInterval fix #806
Bug 2093462 : status: Watch clusteroperators #714
Bug 2092042 : Bump vendored k8s libraries to 1.24 #768
Bug 1944851 : Clear route status when an ingress controller is deleted or a route is un-admitted #724
Bug 2094932 : Patching config.ingresses status requires patch permissions #788
Bug 2097555 : Fix loadBalancerServiceAnnotationsChanged check and update #783
Bug 2094932 : Ingress operator needs permission to list nodes #785
Bug 2095229 : desiredRouterDeployment: Check for nil hostNetwork #780
Bug 2094962 : Fix flakey logic in haproxy timeout tests #775
Bug 2094932 : MGMT-10403: Set the defaultPlacement
for none-platform SNO clusters installed before 4.11 #767
Bug 2075671 : Add a e2e test that verifies the ingress operator’s cache doesn’t include everything #764
Bug 2055601 : Add cluster tag to *.apps domain record #737
Bug 2080379 : Group all e2e tests as parallel or serial #756
Bug 2082428 : Add MicroSecond processing #762
NE-408 : Allow configuring ELB connection idle timeout #451
NE-825 : Update router to use random balancing algorithm once again #727
Bug 2084433 : AUTH-133: assets: comply to pod security #760
NE-577 : Support a Configurable ROUTER_MAX_CONNECTIONS in HAproxy #735
Add support for route53 in the us-isob-east-1 region + fix #754
AUTH-184 : manifests/deployment: comply to restricted pod security level #749
Bug 2081447 : desiredRouterDeployment
: Fix for port defaulting #753
Bug 2079468 : Enhance the waitForIngressControllerCondition for better CI results #745
NE-882 : Set ROUTER_DOMAIN
to enable route subdomain field #674
Specify host port for host networking strategy #694
Bug 2007246 : Add allowPrivilegeEscalation to the router container #743
MGMT-9797 : Determine number of replicas according to DefaultPlacement
#728
Bug 2076193 : Remove special-casing for default ingresscontroller probe parameters #742
NE-585 : Make ROUTER_BACKEND_CHECK_INTERVAL configurable #712
BUG 2076984: test/e2e: add resilience to RBAC test teardown #744
BUG 2054200: Fix removing custom created service in openshift-ingress with same name #707
Add Nutanix platform #730
Revert “Bug 2007246: Ingress Controller does not set allowPrivilegeEscalation in the router deployment” #741
Bug 2075671 : Fix k8s client cache object global inclusion and duplication. #740
NE-781 : Allow users to tune kubelet probe timeouts #736
Bug 2072106 : Fix test Errorf
limitation in go 1.18 #733
Bug 2071139 : add pod eviction permission #734
Bug 2071139 : delete default ingress pod if it is scheduled where another router pod already is #720
Bug 2069457 : Delete LoadBalancer-type service finalizer logic #729
Bug 2021446 : Set canary status as unknown if not admitted to default ingress controller #723
Bug 2066444 : update relatedObjects for clusteroperator status #721
Bug 2007246 : Ingress Controller does not set allowPrivilegeEscalation in the router deployment #718
Bug 1995953 : Add unit test for verifying router deployment env is always sorted #715
Bug 2057762 : Set Upgradeable=False if default cert has no SAN #708
Bug 2055470 : Normalize the AWS internal LB annotation value #704
BUG 2037447: Disable keepalive for canary probe #701
pkg/operator/controller/ingress/status_test: Fix ...-tag
-> ...-tags
test-case description #700
Added gcs278 to OWNERS #698
Full changelog
OCPBUGS-26405 : pkg/operator/configobserver: check that the serving certificate refer… #1616
: OCPBUGS-20839: bump library-go to include switch to HTTP/1.1 #1575
OCPBUGS-7756 : Guard pod set readiness probe endpoint explicitly #1448
OCPBUGS-2938 : Duplicate prometheus rules for API SLOs after upgrade #1397
OCPBUGS-4551 : guard controller: set an explicit hostname to avoid name collisions #1429
OCPBUGS-4301 : bootstrap-kube-apiserver: specify resources.requests #1412
OCPBUGS-3290 : routes/status resources can leak sensitive data, exclude it from audit #1422
OCPBUGS-2160 : [release-4.11] serviceaccountissuer: fix case when default value is being used and not trusted after change #1394
OCPBUGS-2199 : [release-4.11] Wire support for trusted service account issuers #1386
Bug 2100155 : specify resource=pod for PSa violation alerts #1362
Bug 2100155 : Add new alert on Pod Security violations #1361
Bug 2050407 : revert dev cert rotation #1307
Bug 2100347 : Bump(openshift/library-go) latency profile observer, controller #1360
Bug 2074031 : Support tuning GOGC within a limited range. #1359
Bug 2086519 : exempt build controller SA from PodSecurity admission #1358
Bug 2067456 : OCP 4.11 should be firing APIRemovedInNextEUSReleaseInUse and APIRemovedInNextReleaseInUse for APIs removed in 1.25 #1332
Bug 2086092 : bump to k8s v0.24.0 #1341
Updating ose-cluster-kube-apiserver-operator images to be consistent with ART #1356
Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile #1328
Update library-go to 80f9619c2 #1354
Fix debugging information #1353
Revert “Revert “Merge pull request #1338 from stlaz/more_restrictive_sccs”” #1351
Revert “Merge pull request #1338 from stlaz/more_restrictive_sccs” #1350
manifests/deployment: comply to restricted pod security level #1348
add more restrictive SCCs to the platform #1338
[rebase v1.24]: remove insecure-port from kas args #1347
remove enable-swagger-ui from default config #1343
AUTH-2 : reenable PodSecurity on privileged level #1308
render apirequest count to reduce startup errors #1336
Bump(openshift/api): to get CSI changes #1310
Revert pull request 1309 #1316
fix label for max-in-flight-recorder #1333
Bug 2063342 : vendor: bump library-go #1330
Bug 2067384 : OCP 4.10 should be firing APIRemovedInNextEUSReleaseInUse for APIs removed in 1.25 #1331
Bug 2053582 : Track static pod lifecycle #1323
Bug 2053582 : Track static pod lifecycle #1321
Bug 2052513 : degraded webhook conditions to errors #1313
Bug 2052513 : disable webhook supportability during upgrade #1309
update library-go to get rapid installer pod fixes #1300
Updating ose-cluster-kube-apiserver-operator images to be consistent with ART #1299
Full changelog
OCPBUGS-21036 : Bump deps to address CVE-2023-44487 [4.11] #765
OCPBUGS-7756 : Guard pod set readiness probe endpoint explicitly #703
OCPBUGS-4551 : guard controller: set an explicit hostname to avoid name collisions #690
OCPBUGS-4304 : resources.requests for operator pod #667
OCPBUGS-826 : gc watcher should close connections after throwing away a client #654
Bug 2118282 : Make KCM-O conditionally dependent on monitoring stack availability + reconcile #653
Bug 2114580 : add runbook urls to KCM-o alerts #644
Bug 2104552 : Decouple KCM-O’s status from monitoring stack #637
Bug 2099668 : introduce GC Watcher controller and add alerts for GarbageCollector #623
Bug 2087684 : Reject transition from/to extreme latency profiles (default<->low) #629
Bug 1902307 : Let vsphere-legacy-cloud-provider update node objects #631
Bug 2097186 : add rbac roles for the podsecuritylabelsyncer even outside bootkube #632
Bug 2053622 : PodDisruptionBudgetAtLimit should not alert when no app/pods exist #630
Bug 2086092 : bump to k8s v0.24.0 #614
Bug 2086519 : bindata/../namespace-openshift-infra: label namespace as privileged #628
Bug 2086958 : e2e: Fix test pod disruption budget at limit alert #627
Bug 2086959 : e2e: fix flaky TestLogLevel #626
Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #624
Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile #611
add RBAC for PSa label syncing controller #616
Fix debugging information #621
manifests/deployment: comply to restricted pod security level #619
policy-controller RBAC: use the new leases API #618
Bug 1918690 : update resource-graph to include current resources #613
Update OWNERS #612
Bump(openshift/api): to get CSI changes #601
Bug 2053582 : Track static pod lifecycle #608
Bug 2053582 : Track static pod lifecycle #606
Update to use configmapleases #602
Bug 2029470 : update library-go to get rapid installer pod fixes #597
Bug 2045872 : allow cluster-policy-controller to fallback to default cert #594
Full changelog
OCPBUGS-21220 : bump(golang.org/x/net,openshift) to address CVE-2023-44487 #506
OCPBUGS-7756 : Guard controller: set the readiness probe endpoint explicitly #464
OCPBUGS-4551 : guard controller: set an explicit hostname to avoid name collisions #458
OCPBUGS-4294 : bootstrap-kube-scheduler: specify resources.requests #449
Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #426
Bug 2117746 : Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #435
Bug 2062459 : Introduce sync unit test #430
Bug 2086092 : bump to k8s v0.24.0 #420
Bug 2062459 : Fix bootstrap leader election config #428
Bug 2064024 : README: fix scheduler configuration formatting #427
Bug 2064024 : Update library-go to 80f9619c2 #425
Fix debugging information #424
manifests/deployment: comply to restricted pod security level #421
[rebase v1.24] remove –port flag from bootstrap #422
Update OWNERS #419
Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #406
Bug 2053582 : Track static pod lifecycle #417
Bug 2053582 : Track static pod lifecycle #415
Update resourcelock to configmapleases #412
Bump(openshift/api): to get CSI changes #411
Do not wait for a port which is no longer used by the scheduler #410
update cert injection annotations to beta #409
Bug 2029470 : update library-go to get rapid installer pod fixes #407
Full changelog
: OCPBUGS-21314: bump library-go to include switch to HTTP/1.1 #99
Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART #82
bindata: comply to restricted pod security level #85
manifests/deployment: comply to restricted pod security level #83
Full changelog
OCPBUGS-25377 : Filter non node CSRs in metrics #221
OCPBUGS-21413 : Bump x/net package to v0.18.0 #215
OCPBUGS-10382 : ignore case when checking csr hostnames #181
Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #165
Set default container for log retrieval #163
Define all flags before parsing flags #161
Bug 2047702 : Reconcile CSRs approved by other controllers #160
Add techpreview manifests for CAPI machines #159
Bug 1978303 : update approve condition logic #158
Allow to define several API groups #157
Shrink csr_check_test.go size #155
Make ‘reject_expired’ tests works in any time zone #154
README.md: Elaborate a bit more on node join #150
Updating ose-cluster-machine-approver images to be consistent with ART #153
Full changelog
OCPBUGS-21423 : Set the new –disable-http2 flag for prometheus-adapter to disable HTTP2 #2149
OCPBUGS-22845 : [release-4.11] add RHACS telemetry metrics #2141
OCPBUGS-21214 : upgrade golang.org/x/net to v0.17.0 #2124
OCPBUGS-20073 : Limit the value of GOMAXPROCS on node-exporter to 4 #2110
OCPBUGS-11759 : add startup probe for prometheus-adapter #1947
OCPBUGS-11465 : jsonnet: Add prometheus container in UWM #1938
Bug OCPBUGS-879: [release-4.11] Add telemetry metrics for HyperShift #1749
OCPBUGS-4640 : Increase startupProbe for prometheus #1845
OCPBUGS-4030 : test: increase timeout when checking remote write metrics #1821
OCPBUGS-1790 : Pass user-defined Alertmanager service in shared configmap #1781
OCPBUGS-1551 : Dedicated kubelet ServiceMonitor for prometheus-adapter #1774
Bug 2111345 : go.mod: update openshift-api to current release-4.11 tip #1755
Bug 2103127 : fix alert controllers when not in techpreview #1709
OCPBUGS-516 : [release-4.11] Give precedence to CMO config map proxy config #1743
Bug 2108595 : Removes etcd related dashboards from CMO #1723
Bug 2109731 : increase alertmanager startupProbe failure threshold #1726
Bug 2107493 : Set HA convention on admission-webhook #1717
Synchronize versions of the downstream components #1698
MON-2091 : Add support for user-defined alert relabel configs #1676
Bug 2037513 : Fix dashboards having container_fs* metrices in queries #1554
MON-2552 : Add support for user-defined alerting rules #1675
Pin Jsonnet versions for release 4.11 #1693
Bug 2091902 : Improve performance of Prometheus Adapter #1692
Adding a usage metric for Openshift Sandboxed Containers #1662
MON-2567 : enable AlertmanagerConfig v1beta1 #1682
Synchronize versions of the downstream components #1689
Bug 2096315 : Create a patch im CMO for NodeClockNotSynchronising #1604
*: bump Go dependencies #1688
Bug 2057832 : Updates recording rule cluster:telemetry_selected_series:count #1646
Bug 2094704 : remove verbose output from kube-rbac-proxy in Prometheus-k8s pod #1684
Allow deployment of dedicated Alertmanager for user-defined alerts #1661
MON-2480 : Double the ServiceMonitor intervals for SNO #1652
Synchronize versions of the downstream components #1666
whitelist cluster-logging-operator metrics for telemetry #1546
Bug 2090838 : ignore flapping host interface ‘tunbr’ #1681
Bug 2089574 : Removes master node selector from PO when running with HostedControlPlane external #1679
Bug 2009352 : IR-254: Collecting registry and image stream usage #1668
Bug 2079292 : Adds necessary SecurityContext settings to UWM deployments #1660
eo metrics for Telemetry #1559
Bug 2084079 : Refactors CreateRouteIfNotExists to CreateOrUpdateRoute #1671
Add bodysize limit for metric scraping. #1467
OWNERS: move @fpetkovski, @PhilipGough and @bison to emeritus section #1670
Updating cluster-monitoring-operator images to be consistent with ART #1667
Bug 2069068 : Refactors DeleteDeployment to wait for deletion of the deployment #1655
Expose ovnkube_master_egress_routing_via_host via telemetry #1635
Add runbook for kube persistent volume inodes filling up #1663
Synchronize versions of the downstream components #1658
MON-1913 : pkg/manifest: Allow retention to be configurable for Thanos-Ruler in UWM #1651
*: add standalone admission webhook #1640
Synchronize versions of the downstream components #1650
Bug 2064705 : [bot] Synchronize versions of the downstream components #1648
MON-2213 : Expose the /federate endpoint of UWM Prometheus as a route #1633
Bug 2074807 : [bot] Update jsonnet dependencies #1643
Bug 2073112 : Adds UWM extrenalLabels from Prometheus to ThanosRuler labels #1645
Extend e2e metric test #1642
MON-2193 : pkg/manifests: Expose retention size settings for UWM Prometheus #1630
MON-2193 : pkg/manifests: Expose retention size settings for Platform Prometheus #1579
MON-2206 : Adds sigv4 settings for remote write #1638
Bug 2074084 : CMO metrics not visible in the OCP webconsole UI #1634
Bug 2033575 : use bearer token as fall-back authn method #1637
Bug 2067740 : update prometheus/client_golang version #1636
MON-2207 : Expose Authorization settings for remote write in the CMO configuration #1598
Bug 2057967 : [bot] Update jsonnet dependencies #1628
Add Oauth2 settings to prometheusK8s.remoteWrite config #1617
MON-2212 : Expose the /federate endpoint of UWM Prometheus as a service #1601
Bug 2067005 : Remove Grafana from Prometheus rules added by CMO #1629
MON-1708 : Enforce label scrape limits in UWM #1350
CHANGELOG: add entry for https://issues.redhat.com/browse/MON-2245 #1623
Bug 2048333 : [bot] Update jsonnet dependencies #1621
doc: add Testing section to CONTRIBUTING.md #1620
pkg/manifest: remove unused function AlertmanagerExternalURL #1622
Bug 2063047 : Add condition to check for relative paths in query log file path #1608
Synchronize versions of the downstream components #1616
Update jsonnet dependencies #1615
Documentation/data-collection: Collect cluster_version_capability #1607
MON-2269 : test: deploy prometheus as remote_write receiver #1602
Synchronize versions of the downstream components #1614
Documentation/data-collection: Assign cluster-version metrics to Cincinnati team #1606
Bug 2067004 : manifests: Remove Grafana image references #1612
Bug 2063905 : [bot] Update jsonnet dependencies #1610
Bug 2067062 : [bot] Synchronize versions of the downstream components #1609
Bug 2065577 : CMO now creates by default an empty CM for UWM #1603
Automated jsonnet dependencies update #1600
Bug 2065682 : manifest: explicitly drop the temporary cluster id label #1597
Bug 2065076 : manifests: advertise public urls without path component #1595
MON-1632 Removing grafana from monitoring stack #1557
Makefile: add tools to path for run-local target #1592
MON-2245 : manifest: Add cluster_id label to remote_write configurations #1578
OADP-22 : Send Telemetry metrics on OADP #1536
Bug 2063047 : Added support for full-path query log file #1587
MON-2222 : Enable validating webhook for AlertmanagerConfig custom resources #1567
Automated dependencies version update #1591
Automated jsonnet dependencies update #1583
Bug 2060083 : React to changes in clusteroperators #1575
Automated dependencies version update #1540
Bug 2050120 : Sanitize all regex allow/denylist used in KSM component #1574
Bug 2060091 : Properly deal with an empty console URL #1576
Bug 2051470 : Update prometheus-operator and sync jsonnet #1571
manifest: use path module to construct externalURL #1562
Bug 2057403 : jsonnet: Give CMO explicit get permissions for ReplicaSets #1564
Bug 2037513 : Update jsonnet dependencies and prometheus-operator version #1556
Bug 2057025 : fix init-config-reloader resource requests #1563
go.mod: switch to go 1.17 #1561
Use service ca beta annotation #1560
: Add runbooks for FailedToSendAlerts #1530
pkg: drop code removing the legacy Alertmanager service monitor #1551
Bug 2050707 : test: account for pdb and Prometheus’ staleness period #1553
MON-1631 : prometheus: remove ui access #1532
Updating cluster-monitoring-operator images to be consistent with ART #1550
Full changelog
OCPBUGS-21714 : Bump golang.org/x/net and github.com/openshift/library-go #2125
OCPBUGS-23321 : IBMCloud specific: patch out management workload for dataplane component thats needed for bootstrapping #2109
OCPBUGS-13661 : AUTH: update cluster-reader to include k8s.ovn.org #1811
OCPBUGS-11763 : HyperShift: Add POD_NAME env to ovnkube-node #1780
OCPBUGS-12277 : remove TLS_RSA_WITH_AES_128_CBC_SHA256 cipher #1789
OCPBUGS-10487 : Enable configuration of node healthz server on ovnkube #1742
OCPBUGS-5954 : Backport Added missing API field podref to OverlappingRangeIPReservation CRD #1686
OCPBUGS-6993 : HyperShift: Co-locate OVN-Kubernetes master with other hcp pods #1702
OCPBUGS-3462 : CNI binary copy should account for the possibility of symlinks [backport 4.11] #1616
OCPBUGS-6920 : Configure ignored namespaces into multus-admission-controller #1698
OCPBUGS-3971 : HyperShift: Do not accept empty infrastructure name #1635
OCPBUGS-3490 : OVN-Kubernetes: Prefer oldest nodes #1641
OCPBUGS-4137 : ipsec: Run ovs-monitor-ipsec in the foreground and change probes #1640
Jira OCPBUGS-3852: IPsec: Fix broken counter++ expression #1638
Bug OCPBUGS-945: Add EgressQoS DstCIDR format validation #1551
OCPBUGS-3911 : SDN: /var/run mount cleanup #1631
Bug OCPBUGS-1075: HyperShift: Differentiate resources deployed by different CNO instances #1555
Bug OCPBUGS-1367: Hypershift: Allow configuring hostname and labels on the route #1559
OCPBUGS-393 : Setting disableNetworkDiagnostics: true does not persist when network-operator pod gets re-created #1530
Bug OCPBUGS-500: Kuryr: Bump timeoutSeconds for livenessProbe #1535
Bug 2096456 : Add init container to ensure that Status.podIP is set before postStart hooks run #1512
Bug 2108236 : Revert “Bug 2085089: Pass enable-udp-aggregation=true to ovn-kubernetes” #1513
Bug 2085089 : Pass enable-udp-aggregation=true to ovn-kubernetes #1489
Bug 2089681 : Disable EgressIP reachability check in hypershift deployments #1485
Bug 2084062 : Make northd probe interval default to 10 seconds #1494
Bug 2100079 : Update sdn-controller perms for “configmapsleases” leaderelection #1496
Bug 2099357 : k8s 1.24 bump: add RBAC coordination leases for ovn-k master #1490
Bug 2094071 : Add southboundStale alert runbook #1481
Bug 2095772 : bindata: managed: reduce memory requests to align with observed usage #1479
Bug 2095756 : client: register types during init, not later #1483
Bug 2090336 : Multus should log at a verbose log level (without a logfile) #1474
Bug 2092047 : cncc: add RBAC coordination.k8s.io leases #1461
Bug 2089805 : Enable config duration for OVN-Kubernetes #1455
Bug 2090437 : Bump CNO to k8s 1.24 #1459
Bug 2073452 : Copying CNI binaries should be an atomic operation. #1472
Bug 2092495 : ovn: use up to 4 northd threads in non-SNO clusters #1471
Bug 2091167 : incorrectly setting rbac role for certificatesigningrequests #1463
Revert “Copying CNI binaries should be an atomic operation.” #1466
Bug 2073452 : Copying CNI binaries should be an atomic operation. #1462
Bug 2076776 : remove patch permissions from ovnkube-node service account #1450
Bug 2089968 : ensures type: Directory for multus host paths #1453
Bug 2090343 : [temporary] Adds multus debug logging #1456
Bug 2087942 : bump to go 1.18, lint improvements #1451
Bug 2086461 : Hypershift: Also add default for Azure mtu #1454
Bug 2086461 : AWS: Use hardcoded MTU to speed up cluster creation #1441
Bug 2087556 : Fix rendering DPU manifests #1448
Bug 2086506 : hypershift: respect statefulset when upgrading ovnk #1447
Bug 2087135 : Fixing Hypershift nodeport flow #1440
Bug 2086544 : Stop passing hosted cluster token as a parameter to ovnkube-master #1446
Bug 2086437 : Enable EgressQoS controller #1430
Bug 2086143 : Status controller: use a label, rather than watching all objects #1431
Bug 2082235 : manifests: Add in service, service-cert, and ServiceMonitor #1433
Bug 2023295 : Cleanup CNO relatedObjects #1432
Bug 2079422 : Bump PodDisruptionBudget to v1 #1427
Re-reconcile network on configmap, stop watching all configmaps in proxy controllers #1416
hypershift: add ovnkube-node-proxy container in ovnkube-node ds #1408
Hypershift: enable TLS for ovnkube-master metrics #1423
Add gm metric record to use for telemetry exposure #1425
Revert “ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds” #1428
Bug 2082611 : Limit Kuryr pods permissions #1367
Bug 2076877 : Bump FlowScema apiVersion to v1beta2 #1419
bindata/network-diagnostics, cloud-network-config-controller: comply to restricted pod security level #1406
Remove ObjectMeta.ClusterName usage #1421
Hypershift: Fix ovnkube-master priority class and set resource requests on token-minter #1420
add more sysctls to the multus allowlist #1411
ovn: fix northd preStop command handling #1414
Add control-plane-component label to ovnkube-master for hypershift #1422
Add link to runbook urls #1417
Hypershift: Copy all CNO conditions to HostedControlPlane status #1415
ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds #1412
Bug 2075475 : Add default-route field to egress-router k8s.v1.cni.cncf.io/networks #1390
OCPVE-106 Customize rollout strategy to fix SNO upgrade #1392
Bug 2080255 : SDN: Re-add list/watch/get permissions for nodes needed for EgressIP #1409
Bug 2071859 : Switch dnsPolicy to Default for OVN hostNetwork pods #1395
Revert “Revert ipsec: Allow enablement/disablement at runtime” #1384
ovnkube: export OVS metrics along with OVN metrics #1393
Bug 2078910 : Correct runbook_url field location within schema #1396
Adds dougbtv to owners as approver and reviewer #1397
Bug 2072215 : Make the use of the ip-reconciler cronjob opt-in by detecting IPAM type usage #1369
ovn-kube hypershift: fix pipefailure that prevents HA startup #1394
Bug 2063123 : Drop Node update permission for sdn-node #1350
OVN-K alert: Increase severity and add runbook_url for NoRunningOvnMa… #1327
Remove Kuryr mutating DNS webhook #1363
raise the alert NoOvnMasterLeader to critical and add the runbook url #1328
Bug 2072710 : Make northd probe interval default to 10 seconds #1386
hypershift: get control plane replicas from hcp #1385
Bug 2072766 : Reserve port TCP/9104 for cluster-network-operator #1378
Multus: split pod/status rbac #1340
add runbook link for NodeWithoutOVNKubeNodePodRunning and V4SubnetAll… #1366
OVN: remove detecing db_ip via kapi #1368
Hypershift: Respect publishing strategy of OVN southbound database service #1349
Proxyconfig: Add a knob for Hypershift to enable proxying internal apiserver address #1381
Bug 1983056 : Kuryr: Update CRD from upstream #1360
hypershift: disable TLS for ovnk master metrics #1382
hypershift: enable publishNotReadyAddress explicitly for ovnk-master service #1372
Bug 2070047 : Bump max value of hist quantile for kuryr_cni_request_duration #1359
Don’t return err with empty relatedClusterObject annotation #1379
hypershift: enable ovnk-master metrics in management cluster #1374
Use (un)setProgressing for pod status update #1376
Use the hosted cluster token explicitly #1370
HyperShift: Watch StatefulSets in the management cluster #1364
Exclude openshift-kube-apiserver and openshift-apiserver service/endpoints from connectivity checks in hypershift #1375
Run ovnkube-master statefulset pods in parallel #1361
Add ibm-cloud-managed annotations to 02-cncc-credentials.yaml, this is required in HyperShift #1358
Add ipsec daemonset for hypershift managed cluster #1356
Add statefulset in status manager #1345
hypershift ovnk route status #1341
Add tuning cni sysctl allowlist to nodes #1347
Bug 2058368 : move enable memory trimming to readiness prob #1365
Add ovnkube-node initContainer to make sure sbdb is up before running other containers #1354
Vendor: pull in hypershift #1346
Hypershift: Use token minter instead of a kubeconfig in ovn-kubernetes master #1344
Add an option to define the client name for in-cluster config #1342
Add ovnkube manifests for hypershift #1329
network, bootstrap: don’t get apiserver from the environment #1339
Fix MTU detection for multi path default routes #1338
Multi cluster support in CNO #1319
Fix golang image version in Dockerfile #1330
Remove empty selector from the mtu prober job. #1331
Switch to server-side apply #1304
Probe MTU from a Job, rather than directly in the CNO #1313
Bug 2058368 : Move memory-trimming-on-compaction out of dbchecker to nbdb/sbdb #1320
Fix group for CVO override used for running CNO locally #1314
Bug 2058671 : ip reconciler: auto clean failed jobs #1318
Bug 2037721 : Do not apply OVN-Kubernetes PodDisruptionBudget
on single-node clusters #1307
ovn: stop spawning the ovn-nbctl daemon #1315
Bug 1944264 : ovnkube: gracefully terminate databases from preStop #1312
Bug 2044227 : Add rolling update strategy for Kuryr-CNI. #1311
Bug 2032559 : Block DualStack migration for unsupported cluster types #1257
Bug 2010361 : SDN alerts: conform to monitoring team style guide #1248
Update project owners #1309
Bug 2048575 : The Whereabouts ip-reconciler should use api-int load balancer #1302
Bug 2048793 : Kuryr: Decrease vif_annotation_timeout #1293
Bug 2049613 : Use a separate configmap for mtu migration config to avoid pod restart #1299
Fix bond cni source directory path #1295
Updating cluster-network-operator images to be consistent with ART #1294
Full changelog
OCPBUGS-20757 : bump(k8s,openshift) to address CVE-2023-44487 #312
Bug 2111901 : Add namespace and RBAC needed for ingress-to-route #251
Bug 2111992 : BUILD-417: Adding leader election leases #252
Bug 2110715 : Set openshift.io/run-level to nil in openshift-controller-manager namespace #249
BUILD-418 : Rebase to k8s 1.24 #242
Add user coreydaley as an approver #241
Bug 2086519 : AUTH-133: bindata: comply to restricted pod security level #240
Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #236
manifests/deployment: comply to restricted pod security level #239
Bug 2067820 : Update prometheus client_golang from 1.11.0 => 1.11.1 #238
Bug 2042587 : Simplify Sync of Global CA ConfigMap #233
update cert injection annotations to beta #237
Full changelog
OCPBUGS-21062 : Bump deps to address CVE-2023-44487 [4.11] #142
OCPBUGS-5787 : clusterquotareconciliation: do not sync quota monitor cache with no monitors registered #96
Bug 2095716 : [psalabelsyncer] - remove openshift-operator from the refused list to sync since it is used by OPC/OLM users to install Operator solutions #79
Bug 2086519 : Introduce Pod Security Admission Label Synchronization controller #75
Bug 2067822 : Update deps #78
Updating cluster-policy-controller images to be consistent with ART #74
Update OWNERS #76
Full changelog
OCPBUGS-15758 : Update Jenkins and Jenkins Agent Base image versions #507
OCPBUGS-7330 : When setting allowedRegistries urls the openshift-samples operator is degraded #490
OCPBUGS-2092 : Use X.Y floating tags for golang #467
Bug 2086086 : Update Cluster Sample Operator dependencies and libraries for OCP 4.11 #433
update jenkins CPaaS image refs prior to 4.11 GA #432
Bug 2086086 : Update Cluster Sample Operator dependencies and libraries for OCP 4.11 #431
Bug 2095256 : Samples Owner needs to be Updated #429
Bug 2086086 : Update Cluster Sample Operator dependencies and libraries for OCP 4.11 #428
AUTH-133 : manifests/deployment: comply to restricted pod security level #425
Updating ose-cluster-samples-operator images to be consistent with ART #426
JNKS-289 : pull in jenkins imagestream updates (add back maven/nodejs streams) #422
Jira SO-19: Make sure template and imagestream api version is groupified #420
JNKS-287 : remove imagestream manifest refs; remove override of jenkins images with payload images #416
Bug 2010364 : OpenShift Alerting Rules Style-Guide Compliance #419
Bug 2067823 : Taking care of CVE-2022-21698 #418
Bug 2064610 : Remove duplicate v1 from cakephp-mysql templates #417
manifests: Add capability.openshift.io/name #414
Updating ose-cluster-samples-operator images to be consistent with ART #412
Full changelog
OCPBUGS-21253 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #408
OCPBUGS-689 : correct sc error messages for ibm and alibaba platforms #313
Bug 2102576 : DefaultStorageClassController reports fake message on azure and openstack #298
Bug 2109205 : HTTPS_PROXY ENV missing in some CSI driver operators #302
Bug 2077599 : Fix vCenter / ESXi version alerts #290
Bug 2097400 : Allow Shared Resource Driver to operate validating webhook #288
Bug 2077050 : Un-Revert “OCP should default to pd-ssd disk type on GCP” #284
Bug 2081557 : Fix DefaultStorageClassController getting Available=False on error #277
Bug 2088533 : remove unused ‘-v’ for shared resource operator as part of klogv2/openshift api/ k8s bump #287
Bug 2086231 : BUILD-405: Install the Shared Resource CSI Driver WebHook #278
Updating cluster-storage-operator images to be consistent with ART #282
Bug 2077050 : Revert “OCP should default to pd-ssd disk type on GCP” #283
Bug 2077599 : Alert on vCenter < 7.0.2 #279
Bug 2077050 : OCP should default to pd-ssd disk type on GCP #273
Bug 2079197 : alert when more than one default storage class is detected #276
manifests/deployment: comply to restricted pod security level #274
remove openstack in-tree storage class #271
remove azure in-tree storage class #272
Azure File CSI Driver Operator is GA in OCP 4.11 #266
Add missing ibm cloud annotations to prometheus rbac #267
no CredentialsRequests in ibm-cloud-managed #253
Bug 2060509 : Incorrect installation of ibmcloud vpc csi driver in IBM… #264
Bug 2049872 : cluster storage operator AWS credentialsrequest lacks KMS privileges #263
Bug 2043132 : Add metrics for vsphere operator #262
Bug 2050300 : Don’t set generation in object comming from cache #261
Updating cluster-storage-operator images to be consistent with ART #260
Full changelog
ART-10934 : Move sigstore to release-3 key #63
OCPBUGS-41185 : Updating ose-cluster-update-keys-container image to be consistent with ART for 4.18 #62
Revert “OCPBUGS-37770: Revert #58 “OTA-1304: manifests.rhel/0000_90_openshift-cluster-image-policy: New manifest”” #60
OCPBUGS-37770 : Revert #58 “OTA-1304: manifests.rhel/0000_90_openshift-cluster-image-policy: New manifest” #59
OTA-1304 : manifests.rhel/0000_90_openshift-cluster-image-policy: New manifest #58
OCPBUGS-35528 : keys: Update Red Hat keys to use SHA256 signatures #57
OCPBUGS-29570 : Apply hypershift cluster-profile for ibm-cloud-managed #54
OCPBUGS-24932 : Updating ose-cluster-update-keys-container image to be consistent with ART #53
OCPBUGS-24115 : Updating ose-cluster-update-keys-container image to be consistent with ART #52
OCPBUGS-19189 : Updating ose-cluster-update-keys images to be consistent with ART #51
Adding the new CI Signer public key #49
Clean up owners file as part of DPP-10343 #46
Updating ose-cluster-update-keys images to be consistent with ART #45
Updating ose-cluster-update-keys images to be consistent with ART #43
Update OWNERS #44
Full changelog
OCPBUGS-5011 : Backport SecurityContext
reconciliation behavior #940
OCPBUGS-13043 : pkg/cvo: reset payload load status #935
OCPBUGS-10671 : pkg/cvo/availableupdates: Prioritize conditional risks for largest target version #915
OCPBUGS-5882 : Set upgradeability check throttling period to 2m #885
OCPBUGS-2293 : Allow unknown capabilities during payload load and implicit enablement checking #854
OCPBUGS-1251 : Add admin-gate ack-4.11-kube-1.25-api-removals-in-4.12 #836
OCPBUGS-306 : pkg/cvo/sync_worker: Trigger new sync round on ClusterOperator versions[name=operator] changes #826
Bug 2114602 : pkg/cvo/updatepayload: Set ‘readOnlyRootFilesystem: false’ #811
Bug 2115564 : pkg/clusterconditions/promql: Cap PromQL queries at 5 minutes #815
Bug 2100533 : remove local golang lint #792
Bug 2097067 : pkg/cvo: retain initial completed update history entry #791
Updating cluster-version-operator images to be consistent with ART #779
Bug 2091770 : pkg/cvo/updatepayload: Guard against ‘rm -fR -whatever’ with ./* #783
Bug 2071998 : pkg/cvo/updatepayload: Event when forcing through a sig-verification failure #763
Bug 2081895 : lib/resourcebuilder: Drop Get from check*Health functions #780
Bug 2079789 : capability: Init prior known from CV status #773
Bug 2084331 : vendor: Bump library-go to pick up manifest checkResourceEnablement fix #781
Bug 2081895 : lib/resourcebuilder/apiext: Restore check for Established=True CRDs #771
Revert “admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate” #775
Bug 2080429 : pkg/cvo/sync_worker.go: Save overrides and capabilities #770
admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate #772
Bug 2079789 : pkg/cvo/sync_worker.go: Initialize implicitlyEnabledCaps #768
Bug 2072389 : Do not save desired update on load failures #766
Bug 2070805 : pkg/cvo/updatepayload: Restore shell for rm globbing #767
Bug 2070805 : pkg/cvo/updatepayload: Shift previous-download removal into the job #765
Bug 2070854 : syncWorkerStatus: Avoid saving stale status values #759
Implicitly enable capabilities on updates #758
Bug 2070887 : pkg/cvo/sync_worker.go: set implicitly enabled caps earlier #761
pkg/cvo/sync_worker: Log only changed enabled capabilities #762
Bug 2070805 : pkg/cvo/updatepayload: Prune previous payload downloads #760
capability: disallow disabling, add enabling capabilities #754
Bump openshift/api to include new marketplace capability #757
pkg/cvo/metrics: Add a cluster_version_capability metric #755
vendor: update openshift/api #751
lib/capability: Sort status.capabilities arrays #752
pkg/cvo/sync_worker.go: ensure all of SyncWorkerStatus copied #750
pkg/payload: Log load-time manifest exclusion at V(2) #749
Consume post install static spec capabilities #744
Bug 2062568 : lib/resourcebuilder/batch: Stop waiting on Job deadline exceeded #748
Get cluster version object earlier in startup #741
Bug 1822752 : pkg/cvo: Fix ups from separating load from apply #683 #745
Bug 1822752 : pkg/cvo: Separate payload load from payload apply #683
Bug 2050946 : Fix wrong informer for feature-gate-stopper #739
pkg/payload: Log manifest exclusion #712
vendor: Bump openshift/api to pick up capabilities #737
Updating cluster-version-operator images to be consistent with ART #732
Bug 2050946 : pkg/featurechangestopper: Seed queue to guard against incorrect startingTechPreviewState #736
Bug 2009845 : pkg/cvo/sync_worker: Use current state, not suggested state, for guarding Initializing->Updating #733
pkg/cvo: Drop unused ‘workers’ argument from Operator.Run #719
Full changelog
Bug 2067745 : Merge Upstream Master Branch #44
Updating configmap-reload images to be consistent with ART #42
Updating configmap-reload images to be consistent with ART #41
Full changelog
OCPBUGS-23064 : add support for new features annotations while preservi… #13315
OCPBUGS-19930 : Web console slowness on Project>Project access page #13206
OCPBUGS-19297 : Fix topology crash when a console.topology/data/factory extension tries to resolve a resource with version from the CRDs which doesn’t exists #13158
OCPBUGS-20217 : Fixed Edit Application form for Knative Services #13220
OCPBUGS-18486 : Fix stop PLR option #13131
OCPBUGS-19409 : Backport tab extension to fix LOG-4504 (support LOG-3388 on OCP 4.11) #13171
OCPBUGS-19359 : Remove PipelineResource CRD check because it’s not installed with PO 1.11 anymore #13079
OCPBUGS-17375 : When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. #13071
OCPBUGS-15562 : only copy workload annotations to debug pod #12956
OCPBUGS-15532 : visiting Configurations page returns error Cannot read… #12953
OCPBUGS-14004 : use PipelineRun template from ‘pipelines-as-code-pipelinerun-go’ configMap for Go runtime #12845
OCPBUGS-14413 : Modified git import flow module to handle create button enable-disable issue #12874
OCPBUGS-13214 : the name of the object (imagestream-name) does not match the name on the URL (deployment_name) #12835
OCPBUGS-12284 : Fix to use and set correct secretReference for build-config triggers #12762
OCPBUGS-13864 : delete associated pipeline, triggertemplate and eventlistener when deleting app #12837
OCPBUGS-13730 : Show type of sample on the samples view #12826
OCPBUGS-13746 : PipelineRun templates must be fetched from OpenShift namespace #12827
OCPBUGS-12279 : Do not show builder ImageStreams without sampleRepo
as samples #12759
OCPBUGS-12959 : update the default pipelineRun template name #12790
OCPBUGS-12231 : Get the Event type value from the latest PLR of the Repository #12749
OCPBUGS-10708 : delete application should delete all part-of resources #12772
OCPBUGS-13012 : Show Tag label and tag name if tag is detected in repository PipelineRun list and details page #12793
OCPBUGS-10613 : add subject kind dropdown in the project access form #12663
OCPBUGS-11580 : In DeploymentConfig both the Form view and Yaml view are not in sync #12714
OCPBUGS-6984 : Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered #12523
OCPBUGS-7949 : Webhook Secret (1 of 2) is not removed when Knative Service is deleted #12602
OCPBUGS-6954 : Fix to show correct help texts for each git repo status error code #12518
OCPBUGS-7764 : Fix crash when pinnedResources is null #12581
OCPBUGS-2916 : Storage -> PVC -> upload data, does not support source reference #12221
OCPBUGS-6687 : Hide silent switch for alerting rule if no associated alerts are present in devconsole #12479
OCPBUGS-2844 : [OKD/nanokube] Fix NPE when project or build status is not defined #12207
OCPBUGS-12243 : disable operator-install-single-namespace.spec.ts to solve CI issues #12751
OCPBUGS-7950 : Repositories list does not show the running pipelinerun as last pipelinerun #12603
OCPBUGS-7494 : fix broken pipeline secret #12569
OCPBUGS-7789 : [4.11.z] Fix kubevirt-console tests #12325
OCPBUGS-7539 : Fix rerender loop/crash when bindable-kinds is found but has no status #12570
OCPBUGS-7043 : Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC #12532
OCPBUGS-7127 : Editing Pipeline in the ocp console should show correct information #12540
OCPBUGS-6879 : Remove refs-heads
from the branch name for Repository pipelineRun row #12509
OCPBUGS-7069 : PipelineRun task status overlaps status text #12534
OCPBUGS-6492 : Add RBAC check on Create a Project link in all-namespaces pages #12514
OCPBUGS-6989 : Don’t proxy CORS response headers #12524
OCPBUGS-5459 : Fix that topology sidebar actions shows outdated data (Edit Pod Count, Edit labels, Edit annotations, etc.) #12417
OCPBUGS-6689 : Fix NPE when displaying CSV with incomplete information #12478
OCPBUGS-1727 : Allow regular users to access debug pods #12100
OCPBUGS-5258 : add support for version v1beta1 for knativeServing and knativeEventing #12403
OCPBUGS-5418 : Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) #12413
OCPBUGS-4786 : Fix for initial showing of topology contents #12311
OCPBUGS-5206 : Pan nodes into view if all nodes are not visible on load #12398
OCPBUGS-2443 : Monitoring: Fix help popovers #12173
OCPBUGS-2716 : Update dependencies to the registry library and devfile parser #12186
OCPBUGS-3300 : check that user can patch console operator config in s… #12240
OCPBUGS-2447 : Add checks for pods in hpaPodRingLabel #12174
OCPBUGS-1790 : Use Alertmanager services for user-defined alerts from config #12104
OCPBUGS-2077 : Find latest pipeline run without firehose selector #12144
OCPBUGS-2515 : Change annotation to be used for fake helm repositories #12182
OCPBUGS-2014 : Use local test data to mock a devfile registry #12137
OCPBUGS-2451 : updates test id for 3scale #12175
OCPBUGS-1984 : fix helm version dropdown entries #12135
OCPBUGS-526 : improve bug report links #11965
OCPBUGS-1974 : Use displayname for PHCR in the catalog page #12130
OCPBUGS-1782 : Handle fake helm chart repository #12107
Bug 2109573 : Fix operand affinity form field #11861
OCPBUGS-1419 : fetch shared resource imagestreams based on labels instance or name #12056
OCPBUGS-1786 : Fix devfile registry assertion #12108
OCPBUGS-1523 : Show already loaded catalog items after a timeout (3sec) #12070
OCPBUGS-1410 : mock call to /api/devfile in e2e #12020
OCPBUGS-721 : show git icon in repository details page based on git provider #12005
OCPBUGS-1030 : Update registry library dependency to pick up proxy support #12028
OCPBUGS-1070 : Update ODC owner files #11936
OCPBUGS-524 : reset ErrorBoundary state on location change #11968
Bug 2109887 : remove redundant model check to prevent tab reloading #11899
OCPBUGS-185 : Search doesn’t show all entries when name filter is cleared #11975
Bug 2102335 : Implement dynamic plugin dependency resolution #11901
OCPBUGS-541 : Input values in Instantiate Template are disappeared randomly in the developer console #11982
Bug 2116265 : fix failed PipelineRun log texts color in light mode #11941
Bug 2115561 : fix MultiColumnField header alignment used for Pipeline parameters #11935
Bug 2116288 : Fix Monitoring Alert decorator icon color in Topology #11942
Bug 2106755 : fix broken update server link #11830
Bug 2113019 : Update pod YAML sample for restricted pod security admission policy #11916
Bug 2113962 : - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view #11918
Bug 2107777 : Added separate reducers for status and title for pipeline status #11842
Bug 2109052 : Unset the overflow to display sub menu content #11854
Bug 2107871 : Added the spacing between advanced options #11843
Bug 2115315 : fix helm readme bug #11933
Bug 2109709 : Error Loading/404 not found page shown after clicking “Current namespace only” #11864
Bug 2104951 : fix bug where Cluster update modal errors weren’t displa… #11800
Bug 2105910, Bug 2106594: Fix create-namespace e2e test, ESOCKET timeout issue, and a11y violations to unblock CI #11826
Automation of Eventing-broker-actions | knative - eventing #11503
Bug 2100669 : Don’t log usernames with the telemetry plugin #11759
Bug 2100159 : [dark theme] Fix build pending icon color in topology sidebar #11756
Bug 2099528 : Restore spacing between/below modal body content #11755
Bug 2099358 : Fix application group background colors #11752
Bug 2100356 : remove Condition tab and create option if the crd is not available #11750
eventing-channel feature | knative-plugin #11634
Bug 1948556 : Add check if model is defined to prevent RTE #11224
Bug 2099330 : Add accessReview to Edit application grouping option #11745
Bug 2094023 : Add correct pod template labels via add flows #11740
CONSOLE-3061 : Add failed plugins into the notification drawer #11732
CONSOLE-3062 : add Dynamic Plugins to Cluster Overview Status card #11664
Actions on Horizontal-pod-autoscaler | Topology #11642
Quota charts now show all resource types #11596
Bug 2099654 : Fix endless re-render loop when associatedDeployment is not defined #11749
Bug 2029797 : if linkTo is false, do not attempt to get path #11696
Bug 2062920 : Remove the namespace dropdown set menu height to prevent unneccessary… #11748
Bug 2087772 : Fix layout issue caused by badges in header of catalog details panel #11711
CONSOLE-3153 : Expose timestamp component as part of the dynamic plugin sdk API #11693
Bug 2093586 : Close quick-search modal on ctrl+space #11741
Bug 2072883 : Fix dashboard graph width tracking #11730
Bug 2094227 : Added Create Service Binding to the top of the action list #11702
Bug 2071747 : Fix the machine configuration docs link #11668
Bug 2096392 : [Dark Theme]: Add white background to node icons in Topology in dark mode #11699
Bug 2022611 : Remove BlockPools tab in external mode #11727
Bug 2015042 : Adding a template from the catalog creates a secret that is not owned by the TemplateInstance #11649
Bug 2077373 : fix dev perspective accessibility issue #11738
Bug 2099763 : update icons for eventSource and eventSink #11731
ODC-6660 : Render topology differently based on zoom level #11698
chore(i18n): update translations: Completed-7034-OCP 4.11 UI Localization- print 219 #11695
Bug 2099582 : Format and update the repository overview page #11737
Console 3155: Display Operator logos on a white background on dark them to prevent visual issues and consistency #11491
Bug 2096908 : [Dark Theme]: fix several issues in the dark mode. #11706
Bug 2093601 : allow project access page to update the settings twice #11713
eventing-create-sink-broker feature | knative-plugin #11717
Bug 2089405 : fix topology build decorator color #11722
Bug 1993916 : Visual feedback on OBC deletion #11415
Bug 2072793 : Update top consumer metrics #11721
Gherkin and automation of topology usability improvements #11566
Bug 2089675 : Fix for setting position of topology groups with no children #11723
Bug 2096394 : Switch from overriding dark theme pf-c-card background to increasing its boxshadow. #11707
Bug 2091029 : - Cancel rollout action only appears when rollout is completed #11648
Bug 2097000 : fix visualisation of kafka connection along with kafka sink #11718
Bug 2027603 : Fix arbiter zone selection issue #11692
Bug 2090895 : Support startsWith Nav Extension property #11660
Gherkin and automation of support builds v2 in Dev Console #11709
Bug 2043068 : <x> available of <y> text disappears in Utilization item if x is 0 #11617
Topology-workload-sidebar feature #11605
CONSOLE-3162 : Implement check for the new i18n annotation for dynamic plugins #11586
Topology-connecting-workloads and editing app | Topology Automation #11452
Bug 2036629 : Remove NooBaa Management UI link #11680
Bug 2093600 : Added create call before delete call #11704
Gherkin for add git repository in pipeline as code #11681
Gherkin and automation of dev usability improvements #11601
Bug 2097163 : Expose useURLPoll hook in internal SDK #11708
Add extensions for project overview inventory and utilization cards #11620
Bug 2093047 : Clean up duplicate entries in api.md #11705
Bug 2090457 : openshift-debug-node- namespaces do not get deleted for… #11674
Automation of eventing-broker-trigger | knative-eventing #11576
Bug 2057251 : promql: Improve a few cluster-dashboard queries #11265
CONSOLE-3081 : Adjust darkest purple resource color to one PF shade lighter for better contrast on dark theme. #11685
Automation of event-sources-sink-to-uri | knative-plugin #11450
Bug 2084453 : - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view #11494
Bug 2094239 : do not show NodesUpdateGroup if there are 0 nodes #11694
Bug 2095687 : fix issue with debugcontainer for build logs #11687
Bug 2095083 : Monitoring dashboards: Increase default graph samples from 30 to 60 #11667
Bug 2096053 : [Dark Theme]: Add white background to Builder Image icons in Git import flow #11689
Bug 2086521 : [Dark Theme]: fix Topology context menu icon to support dark theme #11688
Bug 2094152 : Filter alerts in virtualization overview status card #11653
Remove now unused function getPrometheusExpressionBrowserURL #11609
CONSOLE-3081 : Adjust pf-c-card background color, when on dark theme, so that it is discernible. #11684
Bug 2095247 : update fetch for dynamic channels in sink as done for source #11682
Bug 2091603 : move terminal tick & add phase handlers #11650
ODC-6694 : New service binding plugin with a list and detail page, updated topology package #11671
Bug 2094833 : Fix empty pipeline run template section for non-admin users #11670
Render icon as a svg instead of img tag to support dark theme #11663
Gherkin for console dark theme #11643
Bug 2095231 : Fix default sidebar for resources like Kafka sink, Kafka connection #11683
Bug 2095071 : Fix failing backend test after devfile registry update #11675
ODC-4981 : Add new plugin to support Shipwright Builds and BuildRuns #11641
CONSOLE-2321 : Allow operators installed globally to display operand instances for all managed namespaces in their details #8930
Bug 2094104 : Demo dynamic plugin image tests should be skipped when testing console-operator #11652
Bug 2085407 : Update Node details page to include inline edit labels button #11563
Bug 2065840 : redirect v1beta1 CronJobs #11662
Bug 2092414 : Display only running VMs in Virtualization Overview chart #11651
Bug 2091901 : fix bug where log stream pauses in Chrome #11646
ODC-6670 : Add –telemetry support to console backend (bridge) #11531
Topology-Toolbar Filter Group Gherkin Design and Automation #11610
Update pf packages to pf-2022-7 #11632
captures telemetry events for userPreferences, SBO, WTO and getting started #11579
Add pipelines as code Repository form #11627
Bug 2077138 : fix {{execute}} regex for multiline executables in QuickStart #11572
CONSOLE-3163 : kubeadmin notifier changes #11578
Bug 2063764 : Operators - OperatorHub : i18n misses #11583
Bug 2092408 : Change icon in virtualization overview permissions card #11623
CONSOLE-2977 : update MCP list page for control plane only updates #11502
Bug 2091746 : Check if spec is available in MCP details page #11613
Bug 2086546 : [Dark Theme]: update Service binding connector color to support dark mode #11600
Bug 2091218 : Update helm to 3.9.0 #11590
Bug 2088489 : fix app selection in list view #11608
Add console-telemetry-plugin #11549
Bug 2080387 : Pass contextSource to TopologyApplicationActionProvider #11615
Bug 2070000 : Add high priority alerts to overview #11614
Bug 2074635 : fix web terminal start #11597
Bug 2084438 : Change Ping source spec.jsonData (deprecated) field to spec.data #11548
Bug 2089996 : Don’t rerun yarn install when running tests #11517
Bug 2084615 : Fix Add to navigation alignment on search page #11516
Bug 2079685 : Kms details enabled in the StorageClass creation page #11498
[Dark Theme]: fix dark theme issues in pipeline task visualization #11575
Bug 2077386 : Replaced enum type with const to add translation #11419
Bug 2091854 : Add ‘Unavailable’ status to clusteroperator status filter #11612
Bug 2079818 : Remove duplicate padding from catalog side panel #11602
Bug 2063732 : Workloads - StatefulSets : I18n misses #11589
Prometheus hook returns loaded instead of loading - same as k8s watch… #11568
Bug 2084635 : Avoid using ‘gp2’ hardcoded storage class #11603
Fix Multiple instances of Object Bucket, Object Bucket Claims under storage section #11540
Bug 2087546 : Expose getting started card resources #11569
Topology-toolbar-filter feature #11529
ODC-6497 : Restore checks in environment e2e test #11598
Automation of eventing-camelk | knative-eventing #11577
e2e: Add package parameter to nightly cypress script #11507
Bug 2071617 : remove Kubevirt extensions in favour of dynamic plugin #11557
Bug 2090178 : Fix SSH command string #11599
Bug 2081201 : cloud-init User check for Windows VM refuses to accept capitalized #11591
Bug 2074767 : change metrics queries based on metrics level configurations #11449
Bug 2091030 : Expose boot mode field in BMH wizard #11585
Ocp 4.11 UI localization sprint 218 #11582
update helm catalog description #11562
Bug 2083154 : Fix missing params and formatting issues in dynamic plug in generated API docs #11501
Bug 2091087 : Adding new team members and removing users not in team #11587
Bug 2090993 : Handle missing BMH for Node gracefully #11492
Add React-Router Docs to our Extension docs #11570
Form based experience for creating Deployments #11262
Bug 2090621 : Handle medik8s node maintenance #11504
Bug 2090178 : Fix SSH command string #11567
Bug 2084459 : fixes topology list URI flow #11542
Change metrics autocomplete filter #11555
Prometheus poll hook can return undefined #11543
CONSOLE-3081 : swapped labels out for details view and modal #11376
Reposition low resolution alert #11468
Bug 2084287 : Fix NPE when consuming CSVs with missing informations #11544
chore(i18n): update translations : Completed-7034-OCP 4.11 UI Localization- print 217 #11462
CONSOLE-3081 : Include pf charts dark theme css file in app.jsx to ensure they are loaded last #11535
Bug 2088304 : Eliminate use of lookaside cache and move to Cachito #11497
Bug 2089271 : Virtualization appears twice in sidebar #11546
Bug 2064256 : Fix topology sidebar update issues #11420
Bug 2088248 : Create HANA VM does not use values from customized HANA templates #11534
Bug 2087944 : fixes kafka sink visualisation #11536
Bug 2079845 : fix catalog filter group getting removed on keyword change #11481
In-context-add-options feature | Topology #11496
Bug 2088161 : Match dockerfile image name with the name used in the release repo for demo plugin #11524
adds hint and updates helptext for PAC #11520
Bug 2020483 : Monitoring dashboards: Improve display text for interval variables #10472
Bug 2066782 : Attached disk keeps in loading status when add disk to a power off VM by non-privileged user #11521
Bug 2064239 : Overview page crash if no labels available #11514
Bug 2015356 : Different status shows on VM list page and details page #11512
Bug 2086542 : Fix that Service Binding could not be created via drag and drop #11511
Send activity tick by polling #11390
Bug 2069654 : Adding missing annotations to create VM from YAML #11518
Improve cross portfolio consistency #11470
Bug 2081377 : Remove pf-c-code-block__pre since pf updated allows classnames #11431
Bug 2086469 : Monitoring: Fix first panel sometimes not rendered #11505
Updating openshift-enterprise-console images to be consistent with ART #10974
Bug 2067246 : Removing SSH service selectors to minimum required #11508
Gherkin for pipeline builder to support local tektonhub instances #11448
Bug 2076553 : fix rolebinding in DevConsole dropping all subjects when updating #11292
Bug 2054735 : Change learn more link in virtualization -> migration tool #11499
Monitoring: Add “fade out” horizontal gradient to Metrics page table #11474
Bug 2077943 : If there is a service with multiple ports, and the route uses 8080, when editing the 8080 port isn’t replaced, but a random port gets replaced and 8080 still stays #11464
Bug 2086417 : Fix start pipeline default value for GIT REVISION field #11495
change Event Sink and Event Source icons #11437
Gherkin and automation for PAC bootstrap form #11478
Bug 2055492 : The default YAML on vm wizard is not latest #11500
Bug 2082566 : Set dashboards timeout based on selected timespan #11477
ODC-6645 : Convert the ProjectHelmChartRepository create form into a form-yaml switcher #11440
Bug 2070457 : and PF-2022-6 PF update to fix Image vulnerability Popover #11489
CCXDEV-7974 : show error message when Insights Operator cannot process results #11399
Bug 2083756 : enable simplifiedAutoLink for ClusterNotUpgradeableAlert #11490
Chart-Area-Visual feature | Topology #11453
Gherkin Scripts and Automation for Web-Terminal | Dev Console #11378
CONSOLE-3136 : add conditional updates to Cluster Settings #11445
CONSOLE-3138 : add conditional updates to cluster update modal #11424
Bug 2084124 : fix upstream “Learn more” link in Update cluster modal #11480
Bug 2083641 : fixes apiversion for k8s svc and resource selection for sink for form yaml switcher #11475
Bug 2084292 : Add useDashboardResources hook #11467
Bug 2081067 : add help text indicating Cluster history may be excerpted #11472
feat: Add Deployment History Tab (#1950) #11439
Bug 2079062 : Update user from node to 1001 similar to console docker file user id #11473
E2E tests: wait for project list to load before creating #11443
Bug 2068181 : Fix Event source powered with kamelet type source to show associated resources in the sidepanel #11301
Bug 2075592 : add z-index to ocs-drawer to make box-shadow visible #11369
Bug 2078375 : Create VM from template that has sourceRef - will now reflect sourceRed at yaml #11457
Bug 2078769 : Added language translation on filter items #11435
Update QE OWNERS roles for integration tests #11455
[Dark Theme]: fix quick search bar and project selector in User Preferences page #11447
Bug 2076527 : Fix multiple Tektonhub Versions API call #11438
Bug 2070720 : Fix Filter Dropdown & Label Selection State Management #11428
Bug 2076544 : Added margin-bottom for the paragraph component #11404
Bug 2083149 : fix bug where “Update blocked” label incorrectly displa… #11459
GitOps-1941 fixed dark theme color issue #11426
Bug 2082380 : customize wizard is crashed #11458
CONSOLE-3081 : updated skeleton color definitions, updated sidebar shadow #11408
Bug 2060329 : show Limit exceeded state for large number of nodes in topology #11334
CONSOLE-2936 : Add support for PDB #10445
Bug 2013461 : Import deployment from Git with s2i expose always port 8080 (Service and Pod template, not Route) if another Route port is selected by the user #11355
MGMT-9862 : Add extension for dashboard’s Details card #11272
Automation of event-sources-installation | knative-plugin #11444
Bug 2072999 : Add params prop to HorizontalNav component #11343
Bug 2079961 : Fix bug where the search results accordion section has no spacing between sidebar. #11446
Document Console to SDK versions #11429
Bug 2074585 : fix kms issue for mcg standalone #11410
Bug 1990384 : Improve Alertmanager unavailable message #11397
CONSOLE-3090 : [Dark Theme] Convert custom row-filter to use PatternFly ToggleGroup component for styling that is dark theme enabled. #11384
Update topology to Patternfly topology package containing updates and styles. #11166
Expose UsePrometheusPoll in console-dynamic-plugin-sdk #11295
Bug 2081743 : disable kubevirt flaky tests #11436
Automation for quick-search-topology | Topology #11396
Bug 2080873 : Fix crash when stored topology layout isn’t supported anymore #11427
Automation for application and resource grouping | Topology #11395
Automation of knative-plugin | admin-perspective #11389
Monitoring: Add duplicate query option to kebab menu #11004
CONSOLE-3141 : Hide ‘Control Plane’ section in the status card for External controlPlaneTopology #11398
CCXDEV-5788 : render the “last refresh” timestamp in the Insights Advisor widget #11391
CONSOLE 3132: Introduce new console-plugin-shared npm package #11360
Bug 2071747 : Fix the machine configuration docs link #11417
Bug 2079062 : use xl timeout to verify the demo pull spec is accurate #11416
CONSOLE-3072 : Cluster overview page changes for HyperShift provisioned clusters #11366
Bug 2079673 : disable migrated components #11205
KafkaSink Visualization #11333
Gherkin and Automation of e2e support for event sinks #11276
Bug 2027613 : use the correct Alertmanager tenancy proxy #10818
Bug 2039161 : text visibility fixed #10978
Bug 2079663 : change default image features in RBD storageclass #11070
Bug 2079062 : Update the wait time for demo plugin to 60s #11414
Bug 2079216 : Update cluster update reference doc link #11407
CONSOLE-3081 : moved imports #11370
Bug 1994117 : remove orphaned Service Catalog and Chargeback code #11400
Monitoring: Integrate PromQL codemirror for better autocomplete UX #11143
Bug 2079062 : increase timeout to render toast notification for demo plugin test #11402
Bug 2075189 : Fix failed module resoltion errors in console sdk #11381
Filter out global configs when cluster is externally managed #11383
Bug 2077150 : Required parent class added so that margin spacing for breadcrumbs is applied. #11394
Bug 2042852 : Topology toolbars are unaligned to other toolbars #11160
[Dark Theme]: fix Topology empty state to support dark theme #11393
Gherkin and automation for project vulnerability #11325
Bug 2075117 : Added inline-flex styling for searchbar filter div #11379
CONSOLE-3074 : update notifications for HyperShift Provisioned Clusters #11375
Bug 2024708 : Don’t use lodash startCase on default operand field labels #11346
CONSOLE-3090 : [Dark Theme] This is to reassign the correct blue and orange heading colors that are used in the getting started sections on both Admin and Dev console #11385
Bug 1965934 : Fix Run queries button UX #11388
Update pf packages to pf-2022-5 #11372
Bug 2061918 : Fixed side-bar scrolling issue #11386
Automation of Service bindings | dev-console #11352
[Dark Theme]: fix mutilStream logs and pod logs viewer and console header to support dark theme #11357
Bug 2070731 : details switch label is not clickable on add page #11311
Make project access form discoverable #11349
CONSOLE-3071 : update Cluster Settings and ClusterVersion Details page… #11363
adds support for Pipelines as code #11336
Add Helm Chart repositories add action on Add page #11345
Bug 2075575 : Align url polling interval for Overview pages with other pages #11380
Automation of pipeline-runs | pipelines-plugin #11324
Epic Automation for ODC-4315 #11203
Bug 2073437 : Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls #11307
Bug 2039477 : Add a workaround to show the PF validation status also when the input field is autofilled. #11201
CONSOLE-3090 : [Dark Theme] Several dark theme fixes. Includes borders, hr, disabled form element, row hover, hint blocks #11303
Bug 2007340 : fix accessibility issues in topology list view #11251
Bug 2015555 : keep query table and chart in sync #11359
Bug 2073176 : Fix key/value pair removal issue in configmap form yaml switcher #11328
Bug 2065804 : Fix Web Terminal availability check to verify operator is installed #11202
CONSOLE-2925 : Add initial dynamic demo plugin tests #10644
Bug 2076614 : Expose ResourceEventStream Component as part of the Core SDK #11274
Gherkin for service binding enhancement- discoverability #11326
Add infotip and remove not bindable filter #11313
Bug 2071715 : fix 404 on Environments nav #11337
Bug 2074756 : fix bug where ClusterRole > RoleBindings did not display… #11353
Bug 2074100 : fix CRD name filter #11347
Bug 2074465 : Fix default branch param in pipeline import from git flow #11323
Bug 2061918 : Topology sidebar broken issue is fixed #11299
Update links to examples - descriptors reference.md #11342
use incluster tekton hub Api endpoint in pipeline builder #11335
Bug 2071578 : Add new MONITORING flag to hide dev perspective nav item and topology sidebar observe section if not available #11190
Bug 2071617 : remove Kubevirt extensions in favour of dynamic plugin #11273
Bug 2071617 : Stop disabling extensions with non-existing disallowed
flags #11344
Hide Upgrade Cluster Alert in About Modal When Externally Managed #11339
Bug 2075778 : Fix failing TestGetRegistrySamples test #11350
Bug 2073329 : fix pipelineruns name in repository details page #11338
[Dark theme]: fix Observe dashboard, Topology list page and web terminal tab view #11231
CONSOLE-3124 : migrate Cluster Dashboard test to Cypress #11332
[Dark Theme]: fixes quick starts, user preferences project selector, quick search, and help text color #11331
Automation of create-from-add-options feature file | pipelines-plugin #11291
add visual effects on dragging the pinned resource #11266
Bug 2065513 : Fix ResourceQuota dashboard card and ACRQ donut label #11340
Bug 2040180 : handle dashboards single column case #11327
Bug 2071691 : Update and scope our breadcrumb padding rule so it doesn’t effect a pure implementation #11321
Bug 2075149 : Fix translation of flag-enabled extensions #11305
add data test ids for MultiTabTerminal #11330
Automation of Pipeline-Workspaces | Pipeline-Plugin #11322
Bug 2074447 : cluster-dashboard: exclude iowait and steal from CPU Utilisation #10450
Bug 2071761 : - Translation Keys Are Not Namespaced #11284
Bug 2072805 : Monitoring dashboards: Add support for __range* variables #11289
Bug 2070160 : Remove custom classes pre and code element and apply using a custom class. #11263
Add form for PAC repository #11264
Update OWNERS for promql/ directory #11317
Bug 2074475 : fix kubevirt gating #11314
Automation of Pipelines-as-code(PAC) #11298
fix(modal): removed drop shadow, updated colors #11148
CONSOLE-2976 : add update mode to Update cluster #11053
chore(i18n): update translations - Completed-7034-OCP 4.11 UI Localization- Sprint 216 #11280
Update pf packages to pf-2022-4 #11261
Bug 2071719 : remove .pf-c-button.pf-m-link
override #11306
Automation of event-tab-in-pipeline-run | pipelines-plugin #11230
Automation of pipeline-task-runs-display | pipelines-plugin #11294
Bug 2015375 : Add IBM Flashsystem volume types #10285
Bug 2038244 : Use hostname from provided git url when making git api calls #10827
Bug 2056841 : Improve handling of /api/check-updates request failure in PollConsoleUpdates #11304
Bug 2068594 : disable Details Card test since it was flaking at a high… #11296
Bug 2058051 : Expose YAMLEditor to Core SDK #11244
Bug 2072570 : test: use stable test titles #11257
Bug 2072807 : Monitoring dashboards: Handle tables without panel.styles
attribute #11293
Bug 2071599 : fix bug where RoleBindings are not displaying in ClusterRole > RoleBindings #11285
Bug 2069760 : Added divider to developer console navigation #11283
Bug 2069914 : fix casing of ‘Red Hat Applications’ so all links appear… #11268
chore(OWNERS): remove rebeccaalpert #11188
Bug 2058282 : Fix WebSockets not reconnecting during upgrade #11288
Bug 2057183 : Only show operator detail page “Valid Subscriptions” item when it’s not empty #11287
create form for adding project helm chart repo #11227
Bug 2065840 : Fix CronJob resource version to batch/v1 #11216
Bug 2069577 : Update dynamic-demo-plugin readme #11286
Bug 2070020 : create correct apiversion: group/version for creating custom resource key for Resource Dropdown #11260
Bug 2046435 : improve import error message #10983
Bug 2071700 : Use ‘reportingComponent’ field for v1 Events #11277
Bug 2063753 : Translate Extensions On Each Language Change #11278
Bug 2069632 : fix ‘linkURL’ for ‘previous’ logs #11275
Bug 2069685 : Fix UI crash when pinned resource model does not exist #11249
Bug 2068594 : follow on fix to remove timeout value #11248
Automation of Pipeline Metrics #11220
Add synced form-yaml editor for routes #11156
CONSOLE-3081 : updated –pf-global–BorderColor—100 to –pf-global–BorderColor–100 #11234
add Event Sink option to broker and channel connector and context menu #11259
Add and Edit configmap form #11150
Add multitabbed terminal for cloudshell #11191
fix the quick search style to support dark theme #11254
Automation of Builder Page Pipelines #11258
Automation of Pipeline Actions #11238
update and add image vulnerability toggle group in IMV details page #11222
Bug 1997142 : improve performance of OperatorHub text input filter #11252
Bug 2067298 : Remove modelsLoaded
conditional rendering from ModelStatusBox #11245
updates text description for Event sinks #11214
Bug 2069577 : Update ConsolePlugin manifest #11247
Bug 2068538 : Visual formatting adjustments to popover. #11236
CONSOLE-3081 : [Dark theme] Update pages to use PageHeading where possible #11183
Bug 2069181 : Fix disabling community tasks in pipeline builder issue #11241
Bug 2068908 : Update getting started blog link #11239
support visualisation of internal deployment in topology view and sidepanel for event sink #11223
Bug 2069198 : Use pre-installed pipeline task in e2e test #11240
Bug 2068490 : change ‘kubectl’ to ‘oc’ to fix descriptors test #11233
Bug 2068594 : fix Cluster Dashboard Details Card test #11235
Updates and fixes for pipelines-plugin cypress tests #11172
Bug 2067180 : Completed-7034-OCP 4.11 UI Localization- Sprint 215 #11169
Bug 2068115 : Fixed the rendering of a Tab Extension when there is a version present #11228
Bug 2067776 : Update prometheus/client_golang to 1.11.1 #11232
Bug 2064744 : Remove duplicate app label on debug terminal #11229
Bug 2017001 : Bug fix context menu position on topology #11152
Console3080 - Add Control Plane Topology flag to console UI #11170
Update pf packages to pf 2022-3 #11158
Allow user to re-arrange the resources added to nav #11142
CONSOLE-3081 : [Dark theme] Additional skeleton updates for dark theme #11177
Add theme switcher in user preferences page #11115
Bug 2064607 : avoid pre-fetching tekton hub task versions in pipeline builder #11195
Bug 2063708 : correct JA translation for ‘Expand’ #11221
feat(theme): added theme file #11151
Bug 2066418 : correct ChannelDocLink url #11217
Bug 2041769 : Pipeline metrics: use prometheus-tenancy API to get data #10870
Bug 2057183 : Add validSubscription filter to OperatorHub #11219
Bug 2064553 : Remove reference to deprecated v2v-vmware
ConfigMap #11207
CONSOLE-3081 : [Dark theme] Changes to support the events and project select bar when in dark theme mode #11136
Bug 2058051 : Exposing service list table #11178
Bug 2066754 : Don’t delete core Cypress reports #11215
Bug 2063756 : - User Preferences - Applications - Insecure traffic : i18n misses #11213
Bug 2019564 : attach owner reference to resources created on creating a user to allow garbage collection #11130
Bug 2063699 : - Builds - Builds - Logs: i18n misses. #11211
Bug 2061755 : remove Breadcrumbs from Create Operand pages #11174
Bug 2063957 : fix bug where impersonating message was not translated #11212
CONSOLE-3081 : Integrate dark theme - fix(background-color): updated to –pf-global–BackgroundColor—100 #11167
Bug 2060583 : Remove internal-kubevirt Console plugin SDK package #11091
Bug 2060924 : Fix alert from showing an object #11185
Bug 2065338 : Fix VolumeSnapshot creation sort #11194
CONSOLE-3081 : [Dark theme] Updates hint block element #11155
Fix namespace and backing store table to show pre selected values. #11180
Bug 2064596 : [Tekton Hub] show read more link in the task quick search details pane #11187
Bug 2063897 : Change the tekton hub api endpoint to use v1 api #11179
Bug 2050637 : add a hardcoded blog link as fallback in guided tours #11120
Sort catalog filters and other enhancements #11161
CONSOLE-3081 : [Dark theme] Changes to horizontal-nav to enable dark theme support #11139
CONSOLE-3081 : Integrate dark theme - fix(background-color): updates to –pf-global–BackgroundColor—200 #11168
Replace GitTypes with the GitProvider type #11165
CONSOLE-3081 : Integrate dark theme - fix(borders): convert #ccc, #ddd, $pf-color-black-300, $color-row-filter-border to var(–pf-global–BorderColor–100) #11154
end to end flow for event sink #11138
CONSOLE-3081 : Integrate dark theme - fix borders updates #eee, #ededed, $table-border-color to var(--pf-global--BorderColor--300)
#11157
ODC-6495 Remove layout2 topology #11145
Bug 2062524 : fixes uri case for event sink #11171
fix(skeleton): updated sass var #11147
chore(vscode config): disabling the organizeImports functionality of … #11037
[Dark theme]Fix namespaced pages, add page and catalogs page #11144
Bug 2013144 : catalog category filters can be opened via ctrl+click now #11029
Bug 2009345 : Fix potential issues with namespaces that contains just numbers (crashes on 4.7) #11126
Bug 2061333 : Add optional chaining to avoid npe #11146
Bug 2061301 : Add tooltips why add and delete buttons in knative traffic splitting modal are disabled #11106
Bug 2060894 : Preceding/Trailing Whitespaces In Form Elements on the add page #11075
Bug 2059674 : Adjusts the Dynamic Demo Plugin and the SDK to meet on the usecases #11116
Fix CSS for edit bucket class modal #11046
Bug 2055702 : enable Serverless e2e tests #11124
Bug 2046156 : fix showing error in netpol affected pods #10934
Bug 2056496 : update upload jar flow for no builder image #11099
service binding discoverability labels in dev catalog #11035
CONSOLE-3087 : Fix ActionContext type warning in components/actions/types.ts #11128
Update PF Packages to 2022-2: Dark theme stylesheet #11083
Bug 2058623 : updates versions for kafka and kafkaTopic #11111
Bug 2002602 : remove returning of err if json fails to parse #11017
Bug 2054630 : Fix history stack handling when opening the silence alerts form #11107
Bug 2042838 : the status of container is not consistent on Container details and pod details page #11031
Bug 2052986 : fix console crashing in the edit deployment form #11052
Bug 2059654 : update ConsolePlugin proxy settings #10893
Bug 2044207 : Clear text on switching auth method #10995
Bug 2052956 : fix duplicate edit app action on installing virtualization operator #11076
Remove Mode from Topology view #11088
Bug 2058424 : Don’t pass Authorization header when not needed #11102
Bug 2054950 : Display correct disk size in Edit disk modal #11105
Bug 2046598 : Display disk size in correct units #11104
Bug 2057054 : Improves K8s Utils Return Type #11103
Clean up of CronJobSource code references #11086
Trim trailing whitespace in test names. #11100
Bug 2054285 : Show standalone resources as sink and not the one’s owned by other resource #11085
Bug 2042710 : Custom imagepullsecret reference information not found when creating pod using console in openshift #11058
Bug 2050005 : Fix webpack module federation runtime chunk ID clashes #11062
Bug 2046531 : Remove schema subdir from dynamic plugin sdk #11089
Bug 2048059 : fix proxy so requests to account management service work #11090
Bug 2014161 : Fix pipeline run logs autoscrolling issue #11056
Migrate ListPageBody to the SDK #10938
Bug 2052953 : clear dashboard variables for dev perspective on unmount #11066
Bug 2053501 : Decode secrets before authorizing repository #11071
Monitoring: Redirect Prometheus UI format URLs to query browser page #10963
Bug 2055980 : Expose more components/hooks/etc. needed by KubeVirt dynamic plugin #11074
Bug 2055814 : Support custom extensions in console-extensions.json files #11051
Bug 2053304 : Fix debug route and add testcases #11040
Bug 2046598 : Display disk size in GiB in VM customize wizard #11024
Bug 2037625 : Always show ResourceQuota charts #11022
Bug 2037542 : Fix sticky footer in pipeline builder’s form yaml switcher #10783
Bug 2046496 : Update the list Toolbar to use ToolbarToggleGroup when less than 769px width #11063
Bug 1934304 : Sum total memory of unnamed container only #11067
Bug 2051578 : fix ClusterOperator Status, Version col sorts #11061
Remove unnecessary polyfills #10016
Bug 2053168 : Fix dynamic plugin SDK typescript IDE errors #11034
Bug 2048442 : Disabling Vault SA based auth for storage class encryption #10998
Bug 2050902 : Fix to add labels to webhook secrets created during import #11032
Bug 2051775 : Allow custom template namespace #11054
Bug 2028821 : Misspelled label in ODF management UI #11047
Remove Console plugin SDK host-app package #11043
Bug 2050698 : fix bug where Cluster Settings shows 0 of N, 0% progres… #11038
Migrate checkAccess & useAccessReview to the SDK #10847
Bug 2039647 : Use namespaced links for dev perspective nav items #11007
Bug 2051657 : removed Tech preview
badge #11016
Bug 2051642 : Remove tech preview badge for web terminal #11012
Bug 2053685 : (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls #11001
Bug 2054238 : Update E2E to use 3scale operator #11044
Bug 2052595 : Revert “Add Dev Preview tag for IBM FlashSystem” #11033
Bug 2051558 : omit rolebindings with no subjects #11013
Bug 2049483 : Revert “fix annotations on updating workload” #11002
Bug 2052674 : Remove a couple of extra spaces #11021
Migrate impersonateStateToProps #10953
Bug 2052671 : chore(i18n): update translations #11020
Bug 2052095 : Fix auth redirect loop caused by duplicate state-token cookie #11014
Bug 2046498 : fix casing of project and application #10999
valut
typo fixed #11009
Bug 2046618 : Add started-by annotation to pipelines created with “Start last run” #11005
Bug 2037628 : added test-id to kms flows #11003
createProject for non-admin users #11000
Expose useFlag as part of the Dynamic SDK #10872
Bug 2050011 : Query Browser: Fix widths of timespan text input #10996
Monitoring: Comment to explain how Alertmanager links are handled #10997
default apiDiscovery in SDK #10903
Bug 2046596 : Customized wizard PVC name #10977
Bug 2014640 : Cannot change storage class of boot disk when creating VM #10992
Bug 2041774 : defaulting to s2i if git type can’t be figured out #10966
Bug 2044421 : Allow topology list to select application group #10988
Migrate Status component to the SDK #10805
docs/helm: update documentation according reviews #10889
Bug 2030530 : Remove quotation marks surrounding VM pwd #10930
Bug 2007141 : pipeline-plugin scripts are updated #10329
Bug 2048221 : Capitalization of titles first-word-only rule #10980
Bug 2046601 : Dont assume its a pvc #10949
Bug 2014420 : Remove depracated v2v resources from plugin config #10954
Bug 2047277 : Add storage status to status card #10951
Bug 2046591 : Added support for customized wizard - new templates #10945
Bug 2006067 : Handle blank usernames in error message #10782
Bug 2047310 : Add empty state to running VMs card #10957
Bug 2046594 : “Requested template could not be found” while creating VM from user-created template #10952
Bug 2033492 : Highlight moves from Template to VirtualMachines while open template wizard #10941
CONSOLE-2999 : Switch the OCP branding logo and title to Red Hat OpenShift logo and title #10940
Bug 2044803 : buttons styles aligned #10935
Bug 2048276 : test-cypress.sh script: Add curly brackets around nightly var #10976
Bug 2022253 : fix web terminal resize layout issue #10948
Uncomment and edit the automation code for ODC-6361 #10967
Bug 2039462 : fix width of dropdowns in the userpreferences applications tab #10960
Bug 2038115 : Make namespace bar full width and sticky in console #10856
Bug 2047320 : Fix that new route annotations doesn’t work on Knative Services #10955
Bug 2039277 : fix topology list view #10883
ODC-5671 : Setup for nightly CI cypress runs #10927
Automation for Observe page features #10566
Add support for doc generation for Core API #10431
Full changelog
OCPBUGS-18424 : Add missing watch permission for helm-chartrepos-viewers #804
OCPBUGS-11343 : Distinguish between route conditions and remove the old ones #745
OCPBUGS-11969 : Changing field on any of routes in the openshift-console namespace wont trigger sync loop #753
OCPBUGS-5518 : Deleting downloads deployment should not fail if already deleted #715
Bug 1770297 : State that odo is comunity supported #700
OCPBUGS-1790 : Retrieve user-defined Alertmanager services from shared configmap #685
Bug 2117640 : Update permission for projecthelmchartrepositories with an aggregator role #671
Bug 2102335 : Pass RELEASE_VERSION envar into the console pod #679
Bug 2111037 : InfrastructureTopology must be driving console affinity rule creation #666
CONSOLE-3063 : PDB for console pods avoid too many replicas down #655
CONSOLE-3162 : Implement check for the new i18n annotation for dynamic plugins #654
ODC-6670 : Sync consoleConfig telemetry annotations to console-config.yaml #653
Bug 2086519 : AUTH-133: manifests: comply to restricted pod security #652
Bug 2067155 : Modify the operator display name to match it with the name displayed in operatorhub #650
Bug 2075478 : Bump docs version to 4.11 #648
MGMT-9797 : Bump openshift/api
dependency to 04e1813ebb11
#644
Bug 2046497 : Metrics e2e should not fail on first failed polling attempt #645
Bug 2057696 : Console operator should not block installation/upgrade process when set to Removed state #642
CONSOLE 3070: Console-operator should pass infrastructure config’s ControlPlaneToplogy to the console-config.yaml #639
Bug 2046497 : Re-enable TestMetricsEndpoint e2e test case #640
Bug 2048541 : ODF quickstart permissions check #634
Dockerfile.rhel7: add new Helm CRD, ProjectHelmChartRepository #635
Full changelog
OCPBUGS-20592 : build(deps): bump golang.org/x/net from 0.10.0 to 0.17.0 [backport 4.11] #132
Updating ose-containernetworking-plugins images to be consistent with ART #62
Check for duplicated sysctl keys #61
Sync with upstream for win-overlay V2 support #59
Updating ose-containernetworking-plugins images to be consistent with ART #55
WIP: Tuning cni: adding interface level sysctls and sysctl whitelist #56
Sync downstream with upstream v1.1.1 #57
Full changelog
OCPBUGS-28954 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #170
OCPBUGS-23123 : Should reference configmaps instead of secrets #155
OCPBUGS-20690 : bump golang.org/x/net to v0.17.0 #149
BUILD-478 : Validate resource admission smoke test #105
BUILD-392 : Shared Resources: Validate Resource Admission #103
BUILD-504 : Rebase k8s 1.24 #104
change entrypoint for the webhook #102
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #99
BUILD-469 : change cmd webhook package to cmd main package #101
Add user coreydaley to approvers list #100
more atomic writer related doc updates #98
Updating ose-csi-driver-shared-resource images to be consistent with ART #97
add Tekton example, update/correction to README and existing example docs #96
Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART #95
BUILD-469 : add webhook main entrypoint and dockerfile #92
update test pod to alleviate PodSecurity warnings #94
use k8s atomic writer for storage of secrets / configmaps #93
Bug 2067829 : bump(*): prometheus/client_golang #91
remove use of ‘hostpath’ in names #90
Data removed when permission removed #89
Updating ose-csi-driver-shared-resource images to be consistent with ART #88
Simplify the must-gather dockerfile #87
Full changelog
OCPBUGS-28960 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #106
OCPBUGS-20768 : bump golang.org/x/net to v0.17.0 #89
BUILD-392 : webhook validation resource admission #49
BUILD-505 : Rebase k8s 1.24 #50
BUILD-405 : Install shared resource csi driver webhook alongside the s… #45
Bug 2088533 : update openshift/api to master to pick up status subresource #48
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #46
Add user coreydaley to approvers list #47
Bug 2067830 : bump(*): prometheus/client_golang #43
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #40
update registrar kubelet socket location to mirror what other CSI drivers do #42
Start using embed module for static assets #41
Full changelog
OCPBUGS-20865 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #150
Bug 2097503 : Rebase external-resizer against v1.5 #130
Updating ose-csi-external-resizer images to be consistent with ART #129
Updating ose-csi-external-resizer images to be consistent with ART #128
Full changelog
OCPBUGS-20971 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #112
Bug 2097283 : Rebase to v6.0.1 for OCP 4.11 #73
Updating ose-csi-snapshot-controller images to be consistent with ART #70
Updating csi-snapshot-validation-webhook images to be consistent with ART #72
Updating ose-csi-external-snapshotter images to be consistent with ART #71
Updating ose-csi-external-snapshotter images to be consistent with ART #68
Updating csi-snapshot-validation-webhook images to be consistent with ART #69
Updating ose-csi-snapshot-controller images to be consistent with ART #67
Full changelog
OCPBUGS-20625 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #53
OCPBUGS-13820 : Bump gRPC from 1.38.0 to 1.49.0 #42
Updating csi-livenessprobe images to be consistent with ART #32
Updating csi-livenessprobe images to be consistent with ART #31
Full changelog
OCPBUGS-20657 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #55
Bug 2097286 : Rebase to v2.5.1 for OCP 4.12 #36
Updating csi-node-driver-registrar images to be consistent with ART #35
Updating csi-node-driver-registrar images to be consistent with ART #34
Full changelog
OCPBUGS-1 : Jira integration test PR 3 #92
Updating the documentation on how to use DTK as a multi-stage image. #80
Remove all kmods-via-containers references and dependencies #79
Removing the ‘make buildprep’ from README.md. #78
OCPBUGS-1 : Jira integration test PR 2 #77
Updating README.md. #76
OCPBUGS-1 Jira integration test PR #75
Updating driver-toolkit images to be consistent with ART #73
Bumping KVC to the last available commit. #74
Full changelog
Bug 2034411 : Call ip6tables for v6 mode #60
Updating egress-router-cni images to be consistent with ART #59
Updating egress-router-cni images to be consistent with ART #56
Full changelog
OCPBUGS-20122 : Make kubelet set alpha.kubernetes.io/provided-node-ip unconditionally #1796
OCPBUGS-23289 : UPSTREAM: 121881: Use golang library instead of mklink #1804
OCPBUGS-20112 : UPSTREAM: <carry>: Do not allow nodes to set forbidden openshift labels #1748
openshift-hack: Fix sporadic 141 errors in build-rpms #1775
OCPBUGS-21471 : [release-4.11] UPSTREAM: <carry>: [CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 #1761
OCPBUGS-18843 : UPSTREAM: <carry>: Force using host go always and use host libriaries #1697
OCPBUGS-17189 : Update to Kubernetes 1.24.16 #1672
OCPBUGS-8736 : UPSTREAM: <drop>: bump apiserver-library-go #1627
OCPBUGS-15361 : Bump to k8s 1.24.15 #1607
OCPBUGS-14746 : [release-4.11] UPSTREAM: 118383: bump cadvisor for upstream patch 3301 #1606
OCPBUGS-13166 : Bump to k8s 1.24.14 #1588
OCPBUGS-11314 : UPSTREAM: <carry>: Force using the go tooling from the system #1536
OCPBUGS-11314 : Bump to k8s 1.24.12 #1529
OCPBUGS-10215 : Fix mounted volume expansion tests #1509
OCPBUGS-7079 : Bump to k8s 1.24.11 #1500
OCPBUGS-6683 : add message about possibly working with restricted SCC #1459
Bug 2117679 : UPSTREAM: 110888: feat: fix a bug thaat not all event be ignored by gc controller #1343
OCPBUGS-1991 : UPSTREAM: 110939: don’t quota events.k8s.io events by default #1379
OCPBUGS-3174 : UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines #1408
Bug 2099800 : bump to k8s 1.24.6 #1381
OCPBUGS-1540 : UPSTREAM: 112267: aws: skip health rules if they are a subnet of the client rule #1375
[release 4.11] Bug 2117424: UPSTREAM: <carry>: Remove reserved CPUs from default set #1351
Bug 2104344 : Fix resizing of ephemeral volumes #1314
Bug 2109270 : UPSTREAM: 89885: Fix panic in openstack.InstanceExistsByProviderID() #1332
Bug 2105117 : UPSTREAM: <carry>: update list of deprecated apis #1313
Bug 2103075 : UPSTREAM: 110652: fix: –chunk-size with selector returns missing result #1304
Bug 2063414 : UPSTREAM: 109441: kubelet: parseResolvConf: Handle “search .” #1283
Bug 2086519 : get SCC admission default securityContext.runAsNonRoot to true on positive UIDs #1290
Bug 2078778 : UPSTREAM: 110408: apiserver: printers should use int64 #1288
Bug 2089933 : Backport 110191 Re-enable Kubelet Pod Readiness Probes on Termination and Pod probes should be handled by pod worker #1285
Bug 2087685 : Worker Latency Profiles: Config node object validation for extreme profile transition #1287
Bug 2065749 : UPSTREAM: 109103: cpu/memory manager containerMap memory leak #1229
Bug 2094954 : UPSTREAM: 110258: Fix pod eviction ip #1282
UPSTREAM: <carry>: provide unique reason for pod probe event during t… #1281
Bug 2086092 : UPSTREAM: 108284: fix: exclude non-ready nodes and deleted nodes from azure load balancers #1261
Fixes probe readiness shutdowns #1269
Bug 2086092 : update kube to v1.24.0 #1252
Bug 2086519 : UPSTREAM: <carry>: e2e-framework: don’t autosync PodSecurity labels #1268
Bug 2062459 : Identify if there are multiple schedulers running #1251
Bug 2075621 : UPSTREAM: 109487: Disable JobTrackingWithFinalizers due to unresolved bug #1243
Bug 1999325 : Backport 107821 and 107831 #1225
UPSTREAM: 109283: test/e2e/*: use restricted policy by default, default existing tests to privileged #1238
Bug 2051985 : UPSTREAM: <carry>: An APIRequestCount without dots in the name can cause a panic #1172
Bug 2066865 : Skip azure topology tests #1230
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1227
Revert “UPSTREAM: <carry>: Unskip OCP SDN related tests” #1228
bump apiserver-library-go #1218
UPSTREAM: <carry>: update list of deprecated apis #1204
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1226
Bug 1957668 : UPSTREAM: <carry>: use console-public config map for console redirect #1110
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1212
Bug 2022507 : Backport 108366: OutofCpu Fixes #1199
Bug 1945329 : enable should drop INVALID conntrack entries test #897
Bug 2063938 : UPSTREAM: <carry>: use hardcoded rest mapper from library-go #1215
Bug 2062459 : Generate event when cache update is failed #1210
UPSTREAM:<carry>:Unskip OCP SDN related tests #1201
Bug 2034958 : enable “Conntrack should be able to preserve UDP traffic when initial… #1197
UPSTREAM: 106454: SQUASH: test/e2e: let e2e tests specify pod security admiss… #1128
Bug 2040715 : UPSTREAM: 108284: fix: exclude non-ready nodes from azure load balancer #1190
UPSTREAM: <drop>: zero-diff to pick up tags for versions #1193
Bug 2040715 : upstream 108149: do not return early in the node informer when there is no change #1184
Bug 2040533 : UPSTREAM: <drop>: Ignore container notfound error while getPodstatuses #1176
Bug 2040533 : UPSTREAM: 107900: Pods that have terminated before starting should not block startup #1157
UPSTREAM: 107847: service REST: Call Decorator(old) on update path #1156
Bug 1979671 : UPSTREAM <carry>: Remove pod warning annotation when workload partitioning is disabled #977
Bug 2044824 : UPSTREAM: 107786: Ensure the execHostnameTest() compares hostnames #1153
Full changelog
OCPBUGS-11608 : properly reconcile with user specified changes for in proxy configuration #2396
install: add flag to wait for HyperShift operator rollout #2370
OCPBUGS-10823 ensure well known public domains do not get proxied on image imports #2352
cherry-pick #2006 #2028
Bug HOSTEDCP-604: Don’t store machine payload in token secret for replace node pools (#1873) #1880
Add missing rbac for authentication reader #1822
update OLM catalogs to 4.11 #1786
Bug OCPBUGS-1367: CNO: Handle long OVN SBDB route hostnames #1747
Add rbac so route-to-ingress controller can do its leader election #1728
fix(oauth): Do not proxy IBM Cloud IAM endpoints #1723
Ingress endpoint #1667
Self image lookup: Retry on empty string #1695
Forward from main #1655
Updating hypershift images to be consistent with ART #1576
Optional RestoreSnapshotURL should have omitempty #1585
Fast-Forward from main #1536
Fast-Forward from main #1494
Add PowerVS Ingress Operator Changes #1458
Improve user experience of HostedCluster configuration API #1463
Updated secret permissions to conform to kubernetes CIS benchmark #1477
The ValidateReleaseImage was returning an error stating it could not find the pull-secret and blocked HC #1472
Reduce HyperShift operator metrics cardinality #1467
docs: refactor agent documentation #1466
inplaceupgrader: switch to using payload MCO image #1459
Drop kas call in agent ReconcileCAPIInfraCR and fail if no ign #1469
Add ValidReleaseImage condition to HostedCluster #1296
Add missing control plane prometheus rules #1406
Use right conditions reason for inplace upgrade #1464
Ensure cache is set during token rotation before reconciling #1460
Bug 2089224 : Remove monitoring config reconciliation #1420
add allowed CIDR blocks to HostedCluster API #1429
nat gateway: check for invalid eip #1457
Add PowerVS Cloud Controller Manager #1422
Fix the private router to work on a 4.11 mgmt cluster #1453
E2E: Add TestNodepoolMachineconfigGetsRolledout #1339
e2e: notice FailedScheduling or Preempted events #1332
Trim docker-pullable://
prefix when reading imageID from container status #1449
Set snapshot-count on etcd to limit memory usage variability #1448
Add memory rss recording rule #1447
Manage ignition server from CPO #1446
Add recording rule for cpu requests #1445
Adjust memory requests to align with PerfScale recommendations #1444
Enable passing -run parameter in ci-test-e2e #1441
Add recording rule for component memory requests #1442
add api-server-address flags to kubevirt and agent cluster create #1440
CNO operands use private APIServer address when HCP is private #1433
Remove unused kubevirt specific e2e test #1436
Fix the e2e-kubevirt-gcp-ovn CI lane #1434
Increase MHC nodeStartupTimeout #1435
aws private link controller: improve error messages #1432
Use git commit as version in HyperShift binaries #1431
Scrape all KAS metrics inside guest cluster #1421
Nodepool: Insert the worker role label #1428
KCM: Set leader election args #1427
Tests: Enable junit #1411
Set autoscaler CAPI group explicitely #1425
Add local timeouts for e2e tests #1424
hack/publish-ocp.sh fix cut syntax #1417
KAS: Stop setting removed –enable-swagger-ui flag #1418
Added PowerVS Cluster Create & Destroy #1381
Ensure that the private router pod uses the HC’s pull secret #1413
Loopdetector: Give some more leeway #1412
adopt existing immutable selectors to prevent errors reconciling components from roks toolkit clusters #1403
Fix(cpo): Propagate TLS security profile config to kube-controller-manager and kube-scheduler #1388
Allow nodepool deletion when hcluster is gone #1408
Operator image lookup: Use sha256 rather than tag #1303
e2e: increase budget to only catch extreme situations #1407
Change infrastructureAvailabilityPolicy default to single replica #1405
feat(cpo): adhere to upgrade order from kube version skew policy #1322
Make kubevirt compatible with generic e2e tests #1377
Add allowed principals to service endpoints #1402
Ignition server: Use https health check if possible #1392
Nodepool render: Avoid including a logline #1401
Replace router shard with private router in control plane namespace #1398
Add inplace upgrader controller to hcco #1382
Expose HostedCluster and NodePool metrics in HyperShift operator #1376
HAProxy ignition config: Use nodepool release image #1394
Change ignition server http code if token not found. #1399
AWS: Deploy Pod Identity Webhook #1351
Add docs section for goals and design invariants #1396
Add sane defaults for InfrastructureAvailabilityPolicy and ControllerAvailabilityPolicy #1395
Bump kube depedencies and controller-runtime to 1.24 level #1393
Delete endpoint connections before deleting endpoint services #1390
Add more resources to hypershift dump cmd #1389
test: adjust HO mutate budget #1385
e2e: Increase parallel test limit #1384
Update KubeVirt Doc to indicate RHCOS is no longer a required cli arg #1374
Tag endpoint services with the mgmt cluster infra ID #1380
fix Makefile #1375
Add IBMCloud PowerVS infra create & destroy #1280
Prevent update of a MachineDeployment after it is initially created #1373
Make the binaries contain the commit version #1324
Make CI master nodes schedulable for cnv VMs #1369
test: update API budget #1372
Update loopdetector to not get tripped by inplace upgrade #1370
add ci-test-e2e target to Makefile #1368
Add resource requests to cluster-api-provider-kubevirt container #1366
fix(cpo): Scope down secrets access for olm collect profiles cj #1349
Add image-content-sources option to create cluster CLI #1355
Add a sidecar to the KAS that tails the audit log #1308
Autodetect KubeVirt disk image using release payload #1352
Refactor e2e test common cleanup #1345
Upgrade test: Stop verifying the nodecount #1367
Set shutdown params to improve graceful shutdown #1365
Nodepool in-place upgrade: Reduce api requests #1358
Etcd: Keep etcd_server_leader_changes_seen_total metric #1363
Add hostedClusterAvailable check for in place upgrades #1340
move to ga apis for all components now that management clusters at minimum release boundary #1350
E2E: Stop hardcoding network type #1331
configure cipher suites to prevent using medium strength ssl ciphers #1357
fix the region parameter in app-sre templates #1356
Revise and simplify NodePool’s KubeVirt platform API #1314
fix panic due to race on hosted API cache start #1348
Change webhook to implement webhook.CustomValidator #1346
Add Metrics Set for Telemetry metrics #1294
Cancel context to kill watch guest cluster subroutines #1341
Add docs for versioning support #1343
Dump: Dump namespaces, rbac and SCCs of hosted cluster #1336
create infra aws: set minimum on private zone SOA records #1337
Enforce pull policy for all capi providers #1334
Add test for NodePools in place upgrades #1290
adjust CPO resource requests #1330
Fix webhook to allow apiserver port defaulting and add tests #1313
Add OAuthURL to HostedCluster status #1320
e2e: log the error when failing to connect to the guest KAS #1318
Export ign_server_payload_generation_seconds
metric and add e2e budget #1316
Rename nodepool.spec.nodeCount to replicas #1205
E2E: Allow configuring a SSH key #1329
Reduce KubeVirt e2e test flakiness #1321
Omit MachineConfig and MachineConfigPool CRDs from release payload #1295
Retry NAT Gateway creation #1328
Add retries and debug output to journal dump #1327
Use apiserver host/port from InfraStatus in reconciling Kube API Server #1319
Ensure that everything uses imagePullPolicy IfNotPresent for resiliency #1304
Ignition server: Actually use workdir #1312
disable reconcile of registry config in IBMCloud deployments #1305
e2e: report elapsed time for each test step #1307
Use forked processes instead of pods to generate ignition payload #1214
Updating hypershift images to be consistent with ART #1288
Update KubeVirt platform to work with OVNKubernetes #1277
Azure: Add missing csi driver secret #1302
Add missing resource requests for Azure CAPI provider #1300
Allow running e2e tests for azure #1299
Sync KAS PSP configuration with what kas operator does #1292
feat(cpo): Disable PodSecurity for 4.10 #1287
Installer assets for CAPIBM used by PowerVS #1279
Use go 1.18 for CI builds #1244
Drop outdated TODO for machine configs #1285
Configure the CNO to proxy the apiserver for public clusters #1283
contrib: admission-tracer for API call tracing #1281
avoid no-op status updates to AWSEndpointServices #1276
inplace upgrade: add initial upgrade logic #1258
Begin using KubeVirt as the infrastructure platform instead of None #1282
Add cleanup manifest for existing CNO #1278
Introduce IBMPowerVS platform #1255
e2e: update HO budgets #1274
konnectivity ds: Tolerate all taints #1272
Add tests for network defaulting #1273
Use ‘–’ for flags in kms token minter container #1270
Default network to SDN if minor < 11 #1271
Konnektivity: Set proxy env vars #1267
Use OVNKubernetes as default network type #1268
e2e: fix early exit on destroy infra aws #1269
Move CNO into management cluster / add OVN to types #1253
e2e: add AWS cluster create test #1260
Set network status if empty #1266
exclude InfraID from immutability check #1264
e2e: Add a nodepool upgrade test #1257
Expose a service account signing key in the API #1259
destroy infra aws: delete network LBs and reduce dependency error noise #1263
add update validation logic to HostedCluster webhook #1262
reconcile oauth serving cert rbac to allow oauth proxies in the openshift-monitoring namespace to work #1256
Add validating webhook for HostedClusters #1241
ensure release image annotation added to deployment template metadata to enable proper detection in IBM Cloud deployment process #1251
Fix kubernetes.default for public clusters with proxy #1249
continue to allow support for specification of clusterAutoscalerImage… #1250
Make HyperShift operator compatible with previous CPOs without utilities #1245
AWS infra destroy, handle empty instanceIDs #1246
ensure imagePullPolicies are IfNotPresent for some deployments #1242
Disable PodSecurity admission in 4.11 as it breaks conformance #1243
Signal parsing config failure in a condition #1240
Enforce hostedcluster service route immutability constraints #1238
Create valid route names with long namespace names #1220
Add support to set up a http proxy for guest clusters #1236
Do not wait on capi clusterrolebinding delete #1237
Introduce logic to accommodate in place upgrades. #1227
Add node troubleshooting documentation #1232
Remove ValidAMI
AWS NodePool condition when AMI is user-defined #1235
Full changelog
OCPBUGS-21194 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #53
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #15
UPSTREAM: 93: bump golint for go 1.18 #28
OCPBUGS-1460 : Add udev #19
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #13
Bug 2073522 : Update ibm-vpc-block-csi-driver to v4.2.0 #12
Bug 2042348 : Rebase to v4.1.3 for OCP 4.11 #11
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #10
Full changelog
OCPBUGS-21283 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #84
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #38
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #39
Changes to fetch region from node #37
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #36
Bug 2066665 : [ibm-vpc-block] Unable to change default storage class #34
Bug 2067843 : Bump prometheus/client_golang to v1.11.1 #31
Disable topology tests until bz2035027 is fixed #30
Update CSIDriver instance #29
Bug 2053006 : Resource id fetch optimised #26
Bug 2052309 : IBMCloud: Add critical spec to ctlr #24
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #21
Bug 2048824 : IBMCloud: Add critical spec to driver daemonset #22
Full changelog
OCPBUGS-21396 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #30
Updating ibm-vpc-node-label-updater images to be consistent with ART #12
Bug 2073525 : Update vpc-node-label-updater to v4.1.2 #9
Updating ibm-vpc-node-label-updater images to be consistent with ART #10
Updating ibm-vpc-node-label-updater images to be consistent with ART #8
Full changelog
OCPBUGS-21376 : [release-4.11] Bump golang.org/x/net to v0.18.0 #69
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #21
Bug 2067844 : Update dependencies to K8s 1.24, go 1.18 #20
Updating ose-ibmcloud-machine-controllers images to be consistent with ART #19
Updating ose-ibmcloud-machine-controllers images to be consistent with ART #18
Full changelog
Revert “Set default messages & reconcile clusteroperator status conditions (#584) #586
Full changelog
Updating ironic-hardware-inventory-recorder-image images to be consistent with ART #511
Full changelog
Bug 2111636 : libguestfs: error: download: /boot/loader/entries/ostree-1-rhcos.conf: No such file or directory #80
Updating ironic-rhcos-downloader images to be consistent with ART #73
Full changelog
OCPBUGS-21423 : upgrade golang.org/x/net to 0.17.0 to address CVE #92
OCPBUGS-21652 : limit number of simultaneous client requests #87
Updating ose-prometheus-adapter images to be consistent with ART #61
Updating ose-prometheus-adapter images to be consistent with ART #60
Full changelog
OCPBUGS-33629 : Only set the instancetype to master if the preempt strategy is not nopreempt. #197
OCPBUGS-39480 : Updating openshift-enterprise-egress-dns-proxy-container image to be consistent with ART for 4.18 #193
OCPBUGS-41231 : Updating openshift-enterprise-keepalived-ipfailover-container image to be consistent with ART for 4.18 #196
OCPBUGS-41213 : Updating ose-egress-http-proxy-container image to be consistent with ART for 4.18 #195
OCPBUGS-39544 : Updating openshift-enterprise-egress-router-container image to be consistent with ART for 4.18 #194
OCPBUGS-38285 : Updating openshift-enterprise-base-rhel9-container image to be consistent with ART for 4.18 #191
OCPBUGS-38286 : Updating openshift-enterprise-base-container image to be consistent with ART for 4.18 #192
OCPBUGS-34348 : Updating openshift-enterprise-keepalived-ipfailover-container image to be consistent with ART for 4.17 #186
OKD-219 : add util-linux to base image #187
OCPBUGS-34152 : Updating openshift-enterprise-egress-router-container image to be consistent with ART for 4.17 #184
OCPBUGS-34338 : Updating ose-egress-http-proxy-container image to be consistent with ART for 4.17 #185
OCPBUGS-34103 : Updating openshift-enterprise-egress-dns-proxy-container image to be consistent with ART for 4.17 #183
OCPBUGS-33909 : Updating openshift-enterprise-base-container image to be consistent with ART for 4.17 #182
OCPBUGS-33908 : Updating openshift-enterprise-base-rhel9-container image to be consistent with ART for 4.17 #181
OKD-40 : Revert #179 #180
OKD-40 : Remove centos-openstack-zed and add in rdo repo to get python-cinderclient dependency #179
Add dnf-plugins-core in scos to help with OCP image compat #178
OKD-210 : Add sig-cloud repository and enable rt repository #177
OKD-210 : Add the sig-nfv repo in the CS9 base #176
OCPBUGS-24850 : Bump OpenShift 4.16, RHEL9, and iptables package #175
OCPBUGS-24990 : Updating openshift-enterprise-keepalived-ipfailover-container image to be consistent with ART #159
OCPBUGS-24800 : Updating ose-egress-http-proxy-container image to be consistent with ART #156
NO-ISSUE: Add Scott and Mrunal as image approvers #170
NO-ISSUE: remove bparees from owners #169
OCPBUGS-29484 : update unit tests in egress/dns-proxy #165
NE-1444 : egress/dns-proxy: switch to haproxy28 RPM package #160
OCPBUGS-24861 : Updating openshift-enterprise-egress-dns-proxy-container image to be consistent with ART #158
OCPBUGS-24751 : Updating openshift-enterprise-base-rhel9-container image to be consistent with ART #155
OCPBUGS-24723 : Updating openshift-enterprise-base-container image to be consistent with ART #154
OCPBUGS-19261 : Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #153
OCPBUGS-19107 : Updating ose-egress-http-proxy images to be consistent with ART #150
OCPBUGS-19239 : Updating openshift-enterprise-egress-router images to be consistent with ART #151
OCPBUGS-18860 : Updating openshift-enterprise-base-rhel9 images to be consistent with ART #149
OCPBUGS-18853 : Updating openshift-enterprise-base images to be consistent with ART #148
OCPBUGS-10176 : 15143307: Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #132
OCPBUGS-10163 : Updating openshift-enterprise-egress-router images to be consistent with ART #131
OCPBUGS-10181 : 15143312: Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #133
NE-1304 : container builds: switch to haproxy26 package #141
OCPBUGS-11385 : Removed chroot setting #137
egress: update owners #139
OCPBUGS-11595 : Revert “[NE-1267] container builds: switch to haproxy26 package” #138
egress/dns-proxy/Dockerfile: switch to haproxy26 package #136
OCPBUGS-10003 : Revert “bump RHEL8 egress-dns-proxy image to haproxy26” #134
Updating ose-egress-http-proxy images to be consistent with ART #130
Updating openshift-enterprise-base-rhel9 images to be consistent with ART #129
Updating openshift-enterprise-base images to be consistent with ART #128
Add jupierce as approver / remove Clayton #127
rhel9 base image: Fix build failure #126
Dockerfile: add RHEL9 base image dockerfile #124
bump RHEL8 egress-dns-proxy image to haproxy26 #125
Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #122
Updating ose-egress-http-proxy images to be consistent with ART #120
Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #123
Updating openshift-enterprise-base images to be consistent with ART #119
Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #117
Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #116
Add bparees as approver #118
Updating openshift-enterprise-base images to be consistent with ART #113
Updating ose-egress-http-proxy images to be consistent with ART #105
Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #108
Updating openshift-enterprise-egress-router images to be consistent with ART #106
Bug 2062126 : ipfailover: Autodetect the “ens3” NIC #111
Updating openshift-enterprise-base images to be consistent with ART #109
Bug 2018188 : VRRP ID conflict between keepalived-ipfailover and cluster VIPs #104
Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #107
Full changelog
OCPBUGS-20746 : bump x/net to v0.17.0 #99
OCPBUGS-4087 : cherry-pick, do not expose ingress path metric when service is nil #85
Bug 2075091 : Bump to KSM 2.5.0 #74
Updating kube-state-metrics images to be consistent with ART #73
Bug 2075091 : internal/store: fix metrics slice length #71
Bug 2075091 : internal/store: fix potential panic in pod store #69
Bump openshift/kube-state-metrics to v2.4.2 #68
Bump openshift/kube-state-metrics to v2.4.1 #67
Updating kube-state-metrics images to be consistent with ART #66
Full changelog
Updating ose-libvirt-machine-controllers images to be consistent with ART #239
Updating ose-libvirt-machine-controllers images to be consistent with ART #236
Bug 2018517 : fix the check that machine has been modified #235
Full changelog
OCPBUGS-25304 : Update Reference URL #1198
OCPBUGS-21490 : Bump golang.org/x/net to v0.18.0 #1177
OCPBUGS-10719 : [release-4.11] - manual cp #1057 - machines stuck in provisioned or provisioning #1141
OCPBUGS-11326 : Fix empty component version #1133
OCPBUGS-10901 : Block machine deletion if extra disks are attached #1131
OCPBUGS-8311 : Short circuit misfiring #1124
OCPBUGS-8257 : Append annotations from machine template spec to the node #1123
OCPBUGS-536 : vSphere - enable steal time accounting #1081
OCPBUGS-955 : Change “create” sequence with powering on the vm after clone #1064
Bug 2109193 : Fix while setting default processor value for Power VS platform #1041
Bug 2110505 : revert: Bug 2101880: operator NS manifest: Set empty openshift.io/run-level #1044
Bug 2105382 : Add a validation webhook for Nutanix MachineProviderConfig #1039
Bug 2102834 : operator NS manifest: Set empty openshift.io/run-level #1033
Bug 2082667 : Separate controller for the node draining #1023
Bug 2094196 : Added webhook support for PowerVS platform #998
Bug 2087039 : Bump go to 1.18 #1022
Bug 2087039 : Update dependencies to K8s 1.24 #1021
Updating ose-machine-api-operator images to be consistent with ART #1015
Bug 2059338 : Add template HW version detection during clone #1016
Bug 2083237 : Set vCenter client request timeout #1013
Skip validation if we just remove the finalizer #996
Don’t force a requeue after updating Status.Phase #1012
Remove unreleased AWS Placement Groups support #1009
Fix broken link to CVO run levels #991
AWS IMDSv2 machine spec validation #1008
Add DescribeRegions permission for aws controller #1007
Add Nutanix Platform to Machine API Operator #988
Add pd-balanced disks support for GCP #1006
Adding cluster api provider url(ibm) #1005
Refactor provider status to use metav1.Condition #1004
webhook: machine: add Azure Data Disks deletionPolicy validation #1003
Remove 30s wait before creating a machine #999
Make MAPO the default for OpenStack deployments #1000
Bug 2067852 : Bump prometheus/client_golang #1002
Machine webhook validation for Azure Ultra Disks #1001
Update govmomi to 0.27.4 #995
Bug 2060697 : Update openshift/api dependency #994
Fix MAPO image #993
Update OpenShift API to include placement groups #992
Replace broken image references #881
modify prometheus alerts to ignore pod #986
Updating ose-machine-api-operator images to be consistent with ART #983
Allow to remove ec2 placement groups #990
Validate AWS NetworkInterfaceType in webhook #989
Add IAM permissions required for AWS Placement Group enhancement #976
fix readme after migrating from cluster-api-provider-* #982
Full changelog
OCPBUGS-21016 : vendor: unpin deps and update library-go, container and kube deps #4019
OCPBUGS-21995 : Prevent NM from unsetting the hostname #3989
OCPBUGS-18075 : Agent-based install process the container machine-config-controller will be oom #3882
OCPBUGS-11556 : Prevent possible split-brain scenario with keepalived unicast #3667
OCPBUGS-11283 : Wrap podman commands in a while loop #3657
OCPBUGS-9986 : configure-ovs: fix mtu-migration cleanup #3607
OCPBUGS-10425 : Remove hard requirement for the afterburn from early-running aws-related services #3615
OCPBUGS-8260 : [release-4.11] backport cleanupDuplicateMC #3577
OCPBUGS-6002 : There are not enough logs in case “oc extract” is stuck in mco first boot in mco first boot #3497
OCPBUGS-5694 : 4.11 - remove goutils from dependency tree #3499
OCPBUGS-3507 : On-prem: Ensure resolv-prepender respects NM dispatcher timeout #3422
OCPBUGS-6622 : controller: don’t render new MC until base MCs update #3511
OCPBUGS-4945 : Do not allow empty system reserved values #3459
OCPBUGS-4099 : daemon: gate done state on uncordon completion #3434
OCPBUGS-3882 : Sync controllerconfig anyway if daemon sync fails #3421
OCPBUGS-3807 : configure-ovs: auto-connect ovs-if-phys0 with br-ex #3419
OCPBUGS-3756 : daemon: Stop setting I/O scheduler to bfq #3418
OCPBUGS-2730 : Add ephemeral storage to kubelet system reserved args #3381
OCPBUGS-2091 : [release-4.11] TRT-540: Add privileged label to infra namespaces #3346
OCPBUGS-1939 : Create a drop-in file for cri-o’s add inheritable capabilities #3352
OCPBUGS-1099 : Make sure there is a search domain in resolv.conf #3330
Bug 2110283 : [release-4.11] daemon: Drop tuneableFCOSArgsAllowlist #3265
OCPBUGS-737 : Pull container image as a separate step #3319
OCPBUGS-688 : Adding day2 remote worker node requires manually approving CSRs #3305
OCPBUGS-509 : Fix .ssh directory not owned by core when created by Machine Config D… #3307
Bug 2118586 : on-prem: improvements on resolv-prepender #3287
OCPBUGS-197 : daemon: Add a workaround for bug 2111817 #3292
Bug 2110737 : Master node in SchedulingDisabled after upgrade from 4.10.24 -> 4.11.0-rc.4 #3267
Bug 2104510 : [release-4.11] Update ose-machine-config-operator images to be consistent with ART #3229
Bug 2104687 : drain controller: don’t skip the MCC pod drain #3234
Bug 2104386 : Fix problem with retaining data in string array in piped while loop #3245
Bug 2103899 : configure-ovs: clone inactive autoconnect slaves #3220
Bug 2106723 : Remove rollback deployment #3249
Bug 2104561 : pkg/controller/common/helpers: Explicitly set mode 0644 #3232
Bug 2103749 : daemon: initialize nodewriter before login monitor #3219
Bug 2103080 : configure-ovs: set mac only for non fail_over_mac bonds #3216
Bug 2102834 : NS manifest: Set empty openshift.io/run-level #3221
Bug 1817075 : MCC & MCO don’t free leader leases during shut down -> 10 minutes of leader election timeouts #3185
Bug 2092442 : drain_controller: slow down retries for failing nodes #3178
Bug 2096496 : controller: de-couple FIPS and realtime detection #3200
Bug 2096413 : configure-ovs: improve handling of static ip and mac address configuration #3190
Bug 2005694 : Removing proxy object takes up to 10 minutes for the changes to propagate to the MCO #3166
Bug 2090794 : drain controller: continue retry after 1h timeout #3167
Bug 2092003 : Fixup of URL for AWS unit/file to compute instance provider-id #3170
Bug 2089775 : Fix regexp in keepalived script chk_default_ingress.sh #3156
Bug 2087687 : MCO does not generate event when user applies Default -> LowUpdateSlowReaction WorkerLatencyProfile #3163
Updating openshift-proxy-pull-test images to be consistent with ART #2935
Bug 2090358 : Move drain log message to when drain starts #3168
Bug 2089687 : Update alert message for drain failure #3169
Bug 2045559 : Increase keepalived API check fall value to 3 #3158
Bug 2090436 : It takes 30min-60min to update the machine count in custom MachineConfigPools (MCPs) when a node is removed from the pool #3165
Bug 2091730 : create openshift-monitoring token in e2e #3172
Revert “Merge pull request #3162 from damdo/BZ2084450-2” #3175
Bug 2084450 : Add unit/file for AWS to compute instance provider-id and pass it to the kubelet #3162
Bug 1948551 : apiserver-watcher should run in a privileged namespace #3107
Bug 2012969 : emit kube events for skipped and upgraded OSes #3153
Bug 2086728 : Move node draining to controller. Remove MCD privs #3135
Bug 2078866 : configure-ovs: avoid restarting NetworkManager #3120
Bug 2086728 : Improves Config Drift Monitor e2e tests #3146
Bug 2056442 : Bug fix for node drain caused by ICSP objects #3144
Allow blocking payload reg if it has mirrors configured #2819
daemon: Have nodeWriter maintain ref to lister and node name #3143
manifests: Lower daemon RBAC permissions on machineconfig objects #3140
RFE-2703 : add prometheus rules for master memory usage #3124
[low priority] test/helpers: fix typo hardcoded pool #3061
Use library-go resourcemerge helper functions #3078
Bug 2076355 : fix MCNameSuffix when kcfg ctrrcfg after bootstrap config #3093
OWNERS: remove mkenigs, add raisaat #3139
removed the workerlatencyprofile status related code #3129
Bug 2080267 : [vsphere] remove warning encountered on vSphere UPI cluster without API VIP #3132
colin’s small patches rollup #3108
Move Ignition file generation to controller/common, fix Compression #3128
Bug 2081119 : drop doc overlaysize default #3127
Bug 2076521 : mcc: update node sort to account for matching zones #3125
daemon: Validate kernel arguments #3105
Bug 2078945 : Ensure only one apiserver-watcher process is active on a node. #3106
Do not check for status of other operators for node config #3111
Bug 2072040 : Avoid NM managing patch port between br-int and br-ex #3059
nodecontroller: 3 logging patches #3104
kcfg controller remove cleanupmc #3096
Bug 2076975 : OVN Kubernetes configure-ovs-network set static if conversion metric #3100
daemon: Add some logging for state #3102
workerlatency profiles - updating the kubelet configuration based on the nodes.config.openshift.io resource #3015
Bug 2066605 : [on-prem] make Corefile api matching stricter #3033
Kubelet: apply default podPidsLimit #3085
Bug 2073021 : firstboot: Retry on failure #3070
Revise KubeVirt platform for hypershift usage #3084
Deprecate the use of pkg/errors #2868
Bug 2074613 : templates: Don’t use :z
with podman on system directories #3079
Bug 2035005 : Move removeUpdateInProgressTaint functionality to mcc #3064
[low priority] kubelet controller: rm unused userDefinedSystemReserved #3054
mcc/node controller: order node updates by zone #3009
[low priority] update_test: remove redundant types #3082
updateKernelArgs: pass kargs instead of MCs #3055
daemon: add desiredConfigMap mode for Hypershift #3068
daemon: add a comment explaining CoreOSDaemon #3080
adds zacks hack scripts #2953
Bug 2069740 : Avoid kubernetes node port range #3044
Update github.com/containers/image #2695
Render Nutanix cloud provider as blank. #3051
Create MCONamespace constant #3025
Bug 2055433 : configure-ovs: set networking on before restarting NetworkManager #3006
Bug 1949827 : Add KUBELET_NODEIP_HINT to nodeip-configuration #2888
Bug 2058030 : configure-ovs: move dhcp config from br-ex to ovs-if-br-ex #3024
start.go: rm orphaned err check #3042
Bug 2067857 : prometheus/client_golang v1.11.0 -> v1.12.1 #3038
mcd: Remove redundant MkdirAll call in update.go #2895
Remove runtime request timeout restriction #3026
Bug 2068613 : ClusterRoleUpdated/ClusterRoleBindingUpdated Spamming Event Logs #3040
Bug 2057160 : configure-ovs.sh: Provide store hint for default route interface #2971
Move log statement to UpdateTuningArgs #3032
build-sys: Default to make binaries
#3035
e2e: Use /proc/cmdline
instead of rpm-ostree kargs
#3034
Fix description typo in osImageURL CRD parameter #3029
Add Nutanix Platform to Machine Config Operator #2942
bootstrap_test.go: remove unused constants #3023
Make our resourcemerge fork update a container’s Resources.Requests, un-revert #2802 #3028
Revert “Send alert when MCO can’t safely apply updated Kubelet CA on nodes in paused pool” #3027
Send alert when MCO can’t safely apply updated Kubelet CA on nodes in paused pool #2802
server/api_test: Adjust expected error message for Go 1.18 #3019
Enable unicast keepalived for all on-prem platforms #3016
templates: Clean out filesystem properties #2894
Bug 2063324 : Ensure directories are created with usable permission bits #3011
enhance MCO test library #3000
Bump(openshift/api): to get CSI changes #3010
daemon: get the apiserver url from the kubelet’s kubeconfig #2978
Update vendored Ignition to v2.13 #2996
daemon.go/update.go: various cleanup surrounding OS updates #2973
Remove unused etcd images #3001
daemon: bootimage and ignition logging #2994
configure-ovs: reload NM only when necessary #2992
Add --templates
flag to MCC bootstrap
command #2995
Preparatory patches for bumping fcct -> butane #2980
Bug 2060133 : Explicitly set keyfile as the default plugin #2984
Use afterburn to collect instance metadata in order to populate nodename #2988
Remove bindata.go
#2983
Add new extension for kerberos #2979
Bug 2048352 : ovn-kubernetes: Fixed ofport_request for physical ports #2941
Bug 2050466 : Not allow empty string in icsp&image CR #2969
Bug 2058626 : Revert “Bump(openshift/api): to get CSI changes” #2968
Bump(openshift/api): to get CSI changes #2949
Bug 2041814 : do not generate new KubeletConfigKey for the first kubel… #2936
OpenStack: set transient hostname in afterburn-hostname #2945
Bug 1929160 : Add NetworkManager reload to resolv-prepender #2488
test/helpers: use RetryOnConflict
for node writes #2921
updates docs for config drift detection #2872
templates: Change default container-runtime config to enable all CRI-O metrics #2911
Revert “Remove sysctl-inotify.conf.yaml”
#2944
Remove sysctl-inotify.conf.yaml #2909
Bug 2047445 : Use ip command to check for ipv6 addresses #2934
Add Christoph as a baremetal owner #2920
docs: Update links from “Optimized Updates” to “Rebootless Updates” #2913
Full changelog
OCPBUGS-21309 : Update go.mod for CVE-2023-39325 [Release-4.11] #74
Updating ose-multus-admission-controller images to be consistent with ART #63
OCPBUGS-9784 : Client golang [backport 4.11] #60
OCPBUGS-6176 : Configure ignored namespaces into multus-admission-controller #56
Updating ose-multus-admission-controller images to be consistent with ART #44
Updating ose-multus-admission-controller images to be consistent with ART #42
Full changelog
OCPBUGS-21040 : Update go.mod for CVE-2023-39325 [Release-4.11] #197
Updating multus-cni images to be consistent with ART #155
OCPBUGS-9863 : Multus sync to OCP 4.11 mar-21-2023 #152
Bug 2092839 : Fix missing device-info in networks-status annotation for chained plugins #131
Bug 2071799 : Skip status update in CmdDel if getPod is failed #130
Updating multus-cni images to be consistent with ART #119
Bug 2082360 : Bumps net-attach-def client library (for CNI v1.0 IP compatibility) #127
types: fix usage of strings.Split() for parsing CNI_ARGS (#836) #126
Bug 2071799 : Remove error handling for getPod to force to proceed cmdDel. #124
Bug 2038019 : Upstream sync for 4.11 #121
crio: mount /run rslave #120
Full changelog
Updating ose-multus-route-override-cni images to be consistent with ART #25
Updating ose-multus-route-override-cni images to be consistent with ART #21
Full changelog
OCPBUGS-4324 : backport PodNetworkConnectivityCheck gather script #334 #338
Bug 2104701 : Add timeout to oc cp command to fix must-gather delays when routers are terminating #318
Updating ose-must-gather images to be consistent with ART #302
Bug 2097346 : Updates how gether_monitoring obtains SA token #313
Bug 2091658 : Improve the sriov gather script #305
Bug 2090730 : Adds collection of Multus log files #306
Bug 2023295 : fix getting deployment name #303
Bug 1999529 : Filter disabled resources in inspection to proceed others #296
fix gather_insights collection #301
Bug 2023295 : Add networking resources #300
Add SR-IOV gather script #297
gather_profiling_node: correctly manage NotReady Nodes #299
Add new metallb crds to the gather script #295
add capability for oauth-server audit logging #265
Simplify CRD collection #293
Bug 2062355 : Collect NMState resources when operator is installed #292
List the pods by label app=etcd to only list etcd pods #289
WINC-708 : Collect containerd logs on Windows instances #290
Bug 2054319 : Fix the namespace extract filter #286
RUNNING_ETCD_POD must not be a quorum pod for must-gather #276
collection-scripts: allow collection of CRI-O profiling data #285
Collect prometheus target details #277
Updating ose-must-gather images to be consistent with ART #281
Add script to collect kubelet profiling data #273
Full changelog
Bug 2112297 : Backport “mac duplicates” #41
Updating ose-network-interface-bond-cni images to be consistent with ART #32
ds merges: IPAM fix, tests, bond interface name fix #31
Updating ose-network-interface-bond-cni images to be consistent with ART #30
Full changelog
Update golang.org/x/net to v0.17.0 (#85) #85
Update golang.org/x/text to 0.7.0 (#67) #67
Updating ose-network-metrics-daemon images to be consistent with ART (#46) #46
Updated prometheus client_golang version to v1.11.1 (#48) #48
Fix field selector (#49) #49
Full changelog
Updating ose-network-tools images to be consistent with ART #61
Bug 2043094 : Add ovn clean conntrack functionality #55
Updating ose-network-tools images to be consistent with ART #54
Add docs for invoking ovnkube-trace #56
Full changelog
Use resourceName in Openshift SAR rule #243
Updating golang-github-openshift-oauth-proxy images to be consistent with ART #241
Full changelog
OCPBUGS-23175 : [release-4.11] fix template namespace processing #277
Bug 2111901 : Split route controller #232
Bug 2117746 : [release-4.11] Rebase k8s 1.24 #233
Updating ose-openshift-controller-manager images to be consistent with ART #217
Add user coreydaley as an approver #224
NE-860 : ingress-to-route: add support for destinationCACertificate #218
Image trigger handler: Include the object name on error #221
Bug 2075584 : Bubble actual error message up to the build #220
Bug 2067868 : Update prometheus client_golang from 1.11.0 => 1.11.1 #219
Accept stop signal #215
Full changelog
OCPBUGS-20691 : bump x/net
to v0.17.0 #105
Updating openshift-state-metrics images to be consistent with ART #87
Updates OWNERS file #86
Bug 2067783 : Bump client_golang to v1.12.1 #85
Use service CA beta annotation #84
Updating openshift-state-metrics images to be consistent with ART #81
Adding the right build comment as per go 1.17 #82
Full changelog
OCPBUGS-21553 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #138
OCPBUGS-18418 : set TLS cipher suites in Kube RBAC sidecars #131
Bug OCPBUGS-4103: Add SecretHashAnnotation to node service #99
Bug 2090662 : SWEET32: Improve TLS configuration for Kube RBAC Proxy (cont) #88
Bug 2090662 : SWEET32: Improve TLS configuration for Kube RBAC Proxy #85
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #84
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #83
Bug 2065597 : Add support for dynamic, user-managed config #78
Mark CSI StorageClass as the default one #80
Add OpenStack team to approvers #81
Bug 2074292 : Address CVE-2022-27191 #79
Bug 2067869 : Address CVE-2022-21698 #77
Remove Ephemeral mode from the CSI driver #76
Bug 2061732 : Fail gracefully on failure to populate cloud info #74
Set fsGroupPolicy in CSIDriver #75
Bump gophercloud #73
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #68
Full changelog
OCPBUGS-10954 : machineset_controller: Stop caching clouds credentials #67
OCPBUGS-7322 : Address CVE-2022-41717 #57
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #42
Bug 2067844 : Update dependencies to K8s 1.24, go 1.18 #41
Updating ose-machine-api-provider-openstack images to be consistent with ART #40
Bump machine-api-operator to 25e61c2 #39
Update cluster-api-provider-openstack to v0.6 #38
Add Profile and Trunks to Ports and Networks #35
Bug 2054701 : Convert Machines directly to InstanceSpec #33
Bug 2070181 : Add support for ServerGroupName #34
Add OpenShift CAPO default tags #28
Bug 2067870 : Address CVE-2022-21698 #32
Upgrade external dependencies #31
Depend on the downstream CAPO #30
Bug 2046133 : Set proxy settings on the provider client #27
Bug 2036594 : Refactor MAPO to use a reconcile function for update and create #26
Bug 2043672 : Support root volumes #23
Updating ose-machine-api-provider-openstack images to be consistent with ART #22
shiftstack: Update OWNERS #21
Update Dockerfile to 4.10 #9
Full changelog
OCPBUGS-20761 : deps: Upgrade golang.org/x/net to v0.17.0 #278
OCPBUGS-2626 : Ensure network defs without subnet follow noAllowedAddressPairs #248
OCPBUGS-1890 : Apply noAllowedAddressPairs on intended subnets only #243
Updating ose-openstack-machine-controllers images to be consistent with ART #237
Bug 2073398 : Fix InstanceCreate port & trunk cleanup #232
Bug 2067870 : Address CVE-2022-21698 #224
hack/e2e: cleanup tmp dir #221
Add target to run e2e tests #220
Bug 2033862 : Ensure subnets belong to the queried network #218
Updating ose-openstack-machine-controllers images to be consistent with ART #217
shiftstack: Update OWNERS #215
Full changelog
OCPBUGS-24618 : Update to latest k8s v0.24.x API server and enable HTTP/2 DoS mitigations #662
OCPBUGS-22131 : [release-4.11] Bump golang.org/x/net to v0.17.0 #591
OCPBUGS-18513 , RHIBMCS-169 : Copied csv listing backport #560
OCPBUGS-16075 : fix dynamic conversion webhook #536
Introduce DOWNSTREAM_OWNERS file #542
OCPBUGS-16126 : Catalog Pod Startup Probe Timeout #509
Allow cpb to be statically compiled / exempt from FIPS compliance #513
OCPBUGS-12263 : cherry-pick pull request refactor FBC caching (#1051) f… #482
OCPBUGS-3876 : Order an operator CR’s status.Component.Refs array (#2880) #413
OCPBUGS-4446 : fix service account token secret reference (#2862) #416
OCPBUGS-1556 : Cleanup conversion webhooks when an operator is uninstalled #388
OCPBUGS-1326 : Opm serve cmds #382
OCPBUGS-1104 : Package Server Manager should enforce expected csv values #381
Bug OCPBUGS-828: backport opm serve
caching functionality (and bugfix) + opm serve
leaving orphan tmpfiles #375
Bug 2107045 : Only update namespaces when OperatorGroup labels need to change. (#2809) #341
Bug 2114574 : use env var for OCP version instead of clusterversion status #347
Bug 2117324 : concurrent write bug fix #355
Bug 2106772 : Update containerd version #339
Bug 2076323 : Exclude global catalogs from resolution #320
Bug 2100323 : Fix legacy registries no longer working (#974) #324
Bug 2088541 : Update unpack job pod security (#2793) #323
Bug 2088541 : Update catalog source pod security context #309
Bug 2093288 : fix(grpc): Add startupProbe to check for grpc health readiness (#2791) #314
Bug 2094303 : fix(vendor/scoped): bump k8s version to 1.24, go version to 1.18 and fix scoped client (#2794) #316
Bug 2020484 : Refactor installer to surface certificate rotation (#2775) #306
Bug 2039135 : add more descriptive error message to pruning of FBC #308
Bug 1982737 : Make malformed CSV fail nicely (#2673) #307
manifests/*: comply to restricted pod security level #299
Sync 05 03 #300
Fix currentServiceAccount debug message (#2765) #297
Bug 2074612 : Fix GRPC CheckRegistryServer function (#2756) #294
Sync OLM commits 04/25 #292
Identify fail forward in csvSources (#2743) #290
Downstream Sync 04.13 #289
Sync 04 11 #285
sync update staging directory 04-07 #279
sync: Update staging directories 04-05 #278
Bug 2055861 : Replace collect-profile jobs that haven’t completed #255
Adds CRC deployment automation and CI documentation #268
Update staging OLM 03-30 #274
go.*,vendor: Bump root module to go 1.17 #271
Makefile: Remove the duplicate unit/psm target #270
Sync upstream commits to the 4.11 release branch #269
Update PATH setting in base Dockerfile #261
Remove unsupported project_image from .ci-operator.yaml #262
Bug 1975543 : Use CVO to delete manifests removed from OLM #245
Fix install_kubebuilder.sh script #258
Update the build root Dockerfile base image #257
Updating operator-lifecycle-manager images to be consistent with ART #250
Updating operator-registry images to be consistent with ART #249
Bug 2048563 : feat added leader election conventions #228
clean up unused scripts #227
Full changelog
OCPBUGS-20937 : [release-4.11] bump golang.org/x/net to 0.17.0 #551
OCPBUGS-697 : [release-4.11] Dockerfile.okd: include custom OperatorHub manifest #485
Bug 2088541 : Add psa anotations to namespace to suppress warnings #478
Updating marketplace-operator images to be consistent with ART #473
Bug 2092464 : Update default catalogsource to use 4.11 images #477
Bug 2079610 : Fix operatorHub status #470
Revert “Bug 2092464: shift marketplace operator catalogs default to v4.11” #476
Bug 2092464 : shift marketplace operator catalogs default to v4.11 #474
manifests/deployment: comply to restricted pod security level #471
chore(modules): bump openshift/api for new operatorhub crd #472
Bug 2057558 : increase polling time of status report to reduce log spam #461
fix(manifests): add singleton operatorhub cr #468
fix(capabilities): add operatorhub crd manifest #467
Bug 2070792 : chore(manifests): add missing capabilities annotation #465
manifests/10_clusteroperator: Drop the unused namespace property #401
chore(manifests): add openshift capability annotation #462
Bug 2067909 : Bump github.com/prometheus/client_golang to v0.12.1 #463
Update OWNERS #464
Bump repository to Go 1.17 and k8s v0.23.x #460
Updating marketplace-operator images to be consistent with ART #459
Full changelog
OCPBUGS-18418 : set TLS cipher suites in Kube RBAC sidecars #122
Bug 2091567 : oVirt CSI driver operator should use latest go-ovirt-client #98
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #96
Updating ose-cluster-ovirt-csi-operator images to be consistent with ART #97
Added @engelmi as approver #95
Bug 2067821 : Bump prometheus/client_golang to v1.11.1 #93
Bug 2064613 : Recreate oVirt connection for every sync #92
Set fsGroupPolicy in CSIDriver #89
Bug 2006201 : Increase timeouts for CSI driver #86
Updated OCP on RHV team members #82
Bug 2049169 : Add custom CA bundle support #83
Updating ose-cluster-ovirt-csi-operator images to be consistent with ART #81
Full changelog
OCPBUGS-24724 : snyk code scan exclude vendor directory #62
OCPBUGS-21883 : CVE-2023-39325 - Bump golang.org/x/net to v0.17.0 - 4.11 #56
Bug 2111471 : Set the node internal dns address for machine #28
Bug 2100825 : Update go modules #24
Bug 2100033 : Fetch VM IP from DHCP server to set NodeInternalIP #22
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #20
Bug 2089563 : Use PowerVS api types from openshift/api #17
Bug 2087039 : Update dependencies to K8s 1.24, go 1.18 #19
Updating ose-powervs-machine-controllers images to be consistent with ART #18
Fixed Provider ID format #16
Set zone, region labels to machines #13
Removed node update controller #8
allow user to pass in regex for resource lookup #9
Bump machine-api-operator #12
Updated Makefile #11
Updated power go client #7
Remove whitespace from the ip address #6
Updating ose-powervs-machine-controllers images to be consistent with ART #4
Full changelog
Updating prom-label-proxy images to be consistent with ART #346
Updates OWNERS file #345
Updating prom-label-proxy images to be consistent with ART #343
Full changelog
OCPBUGS-21199 : update golang.org/x/net to v0.17.0 [4.11] #177
OCPBUGS-2640 : Fix ‘invalid magic number 0’ bug (#11338) #143
Bug 2099561 : Bump openshift/prometheus to v2.36.2 #136
Bug 2064984 : Update Prometheus to v2.36.1 #133
Updating golang-github-prometheus-prometheus images to be consistent with ART #132
web/ui/.gitignore: unignore generated assets for downstream build #130
Bump openshift/prometheus to v2.35.0 #128
Updates OWNERS file #124
Bump openshift/prometheus to v2.34.0 #123
Bump openshift/prometheus to v2.33.5 #122
Bug 2056802 : scrape: Fix label_limits cache usage #121
Bump openshift/prometheus to v2.33.4 #120
Updating golang-github-prometheus-prometheus images to be consistent with ART #119
Full changelog
OCPBUGS-21013 : Bump golang.org/x/net to v0.17.0 #83
Updating golang-github-prometheus-alertmanager images to be consistent with ART #60
Updates OWNERS file #59
Bump openshift/prometheus-alertmanager to v0.24.0 #58
Bump openshift/prometheus-alertmanager to v0.23.0 #55
Updating golang-github-prometheus-alertmanager images to be consistent with ART #57
Full changelog
OCPBUGS-20823 : Bump golang.org/x/net to v0.17.0 #250
OCPBUGS-7590 : Fixes ThanoRuler StatefulSet re-creation bug #218
Bug 2097716 : pkg/apis/monitoring/v1beta1: fix httpConfig conversion #191
Bug 2091595 : bump to Prometheus operator v0.57.0 #190
Bug 2079679 : pkg/prometheus: fix curl exec probe #189
Revert “Bug 2091595: Bump openshift/prometheus-operator to v0.56.3” #188
Bug 2091595 : Bump openshift/prometheus-operator to v0.56.3 #185
Updating prometheus-operator-admission-webhook images to be consistent with ART #180
Updating prometheus-config-reloader images to be consistent with ART #178
Bug 2084288 : Revert “Bump openshift/prometheus-operator to v0.56.2” #177
Updating prometheus-operator images to be consistent with ART #176
Bump openshift/prometheus-operator to v0.56.2 #174
Revert “Bump openshift/prometheus-operator to v0.56.1” #171
Bump openshift/prometheus-operator to v0.56.1 #170
Add myself to OWNER file #166
Bug 2079679 : Revert “[bot] Bump openshift/prometheus-operator to v0.56.0” #168
Bump openshift/prometheus-operator to v0.56.0 #165
Bump openshift/prometheus-operator to v0.55.1 #164
Bump openshift/prometheus-operator to v0.55.0 #162
Fix typo in admission webhook bin output #163
Add Dockerfile and targets for standalone admission webhook image #160
Standalone webhook server #159
Bump openshift/prometheus-operator to v0.54.1 #158
Updating prometheus-config-reloader images to be consistent with ART #155
Bump openshift/prometheus-operator to v0.54.0 #151
Updating prometheus-operator images to be consistent with ART #154
Full changelog
OCPBUGS-21104 : upgrade golang.org/x/net to v0.17.0 #137
OCPBUGS-1723 : Fix a bug of metric format on AMD EPYC platforms #108
Updating golang-github-prometheus-node_exporter images to be consistent with ART #103
Updates OWNERS file #102
Updating golang-github-prometheus-node_exporter images to be consistent with ART #101
Full changelog
NO-JIRA: fix outdated doc links #241
OCPBUGS-24916 : Bump to rhel9 #240
OCPBUGS-29583 : Apply hypershift cluster-profile for ibm-cloud-managed #234
AUTH-482 : set required-scc for openshift workloads #235
OCPBUGS-28230 : add FallbackToLogsOnError for easier debugging #230
API-1673 : Add description annotations to service CA secret and configmap #225
add ownership for unshared secrets and configmaps #220
OCPBUGS-21798 : go.mod: bump golang.org/x/net to v0.17.0 #223
OCPBUGS-19176 : Updating ose-service-ca-operator images to be consistent with ART #221
OCPBUGS-8512 : fix admission webhook CA injection #219
OCPBUGS-16536 : bump lib-go to get rid of the goproxy dep #213
OCPBUGS-12662 : bump kube to 1.27.1 #212
Updating ose-service-ca-operator images to be consistent with ART #211
API-1525 : Add openshift_service-ca namespace yaml to manifests dir #208
OCPBUGS-3195 : Return nil from start funcs after context is cancelled. #202
Bug 2048349 : make the operator react to workload logLevel configuration #196
Quality of life changes, fix e2e tests failing too often #197
Updating ose-cluster-authentication-operator images to be consistent with ART #192
Bug 2101880 : operator NS manifest: Set empty openshift.io/run-level #194
manifests/deployment: comply to restricted pod security level #190
Full changelog
OCPBUGS-21298 : [release-4.11] fix: Bump golang.org/x/net to v0.17.0 #488
OCPBUGS-1007 : go.mod: update github.com/gogo/protobuf to v1.3.2 #421
Updating telemeter images to be consistent with ART #412
Bug 2105937 : [release-4.11] Updates version of golangci-lint to support GO1.18 #414
Adds PrometheusRule telemetry that was previously hosted in cluster-monitoring-operator #411
Bug 2067888 : update prometheus/client_golang version #409
Use service CA beta annotation #408
Updating telemeter images to be consistent with ART #407
Full changelog
OCPBUGS-11313 : Mon watch requets sno 4.11 #28325
OCPBUGS-18424 : Add missing watch permission for console users #28235
OCPBUGS-18129 : Ignore timeout and connection refused errors during upgrade tests for 4.11 #28247
OCPBUGS-15942 : remove references to registry.centos.org #28036
OCPBUGS-15151 : Move from registry.centos.org to quay.io #27985
CCO-367 : Allow CCO to be Upgradeable=False when credentialsMode=Manual #27961
OCPBUGS-12962 : Add (optional) dual-stack tests to the CNI certification test suite #27904
OCPBUGS-10215 : Bump(openshift/kubernetes): to get fix for resizing flake #27796
OCPBUGS-7727 : remove reference to old guard pods #27735
OCPBUGS-7319 : Unskip service session affinity tests #27722
OCPBUGS-6851 : [release-4.11] upgrade/adminack: guarantee one admin ack check post-upgrade #27685
OCPBUGS-5091 : Add Kuryr exception to “pods should successfully create sandboxes” test #27621
SPLAT-856 : [release-4.11] include storage and must-gather tests in expectedTestCount #27494
OCPBUGS-3819 : Add bond cni test #27554
OCPBUGS-2616 : Fix s2i ruby test that relys on rack #27480
disruption checking is disabled for prior releases because we lack a good baseline #27468
Bug 2108978 : pkg/monitor: wait for Prometheus sidecars to be ready #27313
Bug 2104203 : revert: no longer needed logic for rt kernel #27290
BUG 2103700: test/extended/router: Drop host lookup for gRPC HTTP/2 h2spec tests #27287
OCPBUGS-772 : [release-4.11] Fixes OVN ACL audit log parsing #27390
Bug 2110723 : [4.11] test: allow -f to match tests for any test suite #27300
Bug 2106942 : use multi-arch ldap and multicast test images #27305
Bug 2104162 : [release-4.11] Remove etcd vertical scaling test. #27284
Bug 2098053 : Re-revert “Add networking test for invalid external gateway” #27273
Bug 2098053 : Re-revert “Add networking test for invalid external gateway” #26985
Bug 2100439 : Enable GCP PD in-tree tests #27272
Bug 2086519 : AUTH-133: test/extended/security/scc: comply to pod security admission #27269
Bug 2093122 : synthetictests: Event struct’s Related field is optional #27208
Bug 2086519 : authorization: add a test checking that the restricted-v2 SCC mutates securityContext to match restricted PSa #27257
Bug 2098095 : EgressIP tests: Use OpenShift API to retrieve CloudPrivateIPConfigs and EgressIPs #27243
Bug 2099611 : Increase etcd-operator watch channels upperbound for BareMetal Platform #27263
Bug 2098094 : EgressIP test: Remove print statement on test failure #27191
Bug 2093339 : move provisioning test to permanent disablement, since this is not yet officially supported #27267
Bug 2086092 : Re-enable tests #27258
Bug 2097713 : Extend the allowance for etcdHighNumberOfLeaderChanges. #27238
Bug 2097684 : Nutanix provider for e2e testing #27102
Add David Peraza as approver on samples test content #27241
Bug 2093992 : Bump timeout for cvo ugprade check to 10 minutes for Baremetal jobs #27254
Bug 2086092 : update kube to v1.24.0 #27244
Bug 2097297 : Don’t consider DNS lookup failure disruption #27250
Bug 2093051 : use the node update finished as a backup completion time for OSStaged #27206
Bug 2086092 : Extend time for kube rebase #27252
Bug 2097009 : Run must-gather tests in later to reduce resource contention #27249
Bug 2086086 : update samples for 4.11 #27234
Bug 2085997 : Report late requests verification: Fix for Hypershift #27220
Bug 2094919 : Skip etcd vertical scaling test on vsphere #27236
Bug 2092961 : Use http for network endpoint test. #27217
Bug 2084361 : Print error msg before os.Exit() #27230
Bug 2093049 : test/extended/networking: fix [pod sysctls should not affect node] to use known host interfaces #27221
Bug 2085997 : explicit timeout for the etcd scaling test #27216
revert 1.24 tests to get back to work #27233
Bug 2086092 : update kube to v1.24.0 #27181
Revert “Bug 2079679: pkg/monitor: wait for Prometheus sidecars to be ready” #27223
Bug 2091110 : Skip ErrImagePull for expected failures #27202
allow terminating pods to be ready=false #27212
Revert “Bug 2093049: test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces” #27219
Bug 2092961 : Flake almost all ci cluster to external svc disruption. #27210
Bug 2093049 : test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces #27203
Bug 2093234 : Add regex filter and intervals duration to e2e-charts #27186
Bug 2093046 : priority class: add exception for must-gather pending bug fix #27204
Bug 2081732 : remove incorrect namespace check in static pod test #27195
Bug 2092961 : Add disruption test to an external service, not cluster under test. #27179
Bug 2091547 : Skip internet connection test if we use a proxy #27093
Bug 2079679 : pkg/monitor: wait for Prometheus sidecars to be ready #27201
Bug 2091067 : EgressIP: Make tests retry on API timeout errors #27185
Bug 2085997 : report late request (broken LB) for the external client #27129
Bug 2085997 : brings back the etcd scaling test #27176
Bug 2091086 : test/extended/cli/explain: Include OperatorHub CRD when ‘marketplace’ is enabled #27188
rename intervals to timelines to be self-explanatory #27182
Bug 2086519 : label project-created namespaces to not sync PodSecurity labels #27177
wait for kube-apiserver to settle after modifying network configuration #27193
Bug 1992596 : move help.sh to golang-based e2e #27190
Bug 2091086 : cli: don’t insist on metal3 CRDs being present when cluster capabilities are None #26998
restrict the per-namespace invariant alert check #27184
Bug 2090692 : slightly loosen oc exec help test #27183
Updating openshift-enterprise-tests images to be consistent with ART #27139
allow up to two DNS check pods to be waiting #27175
Bug 2086092 : skip tests to facilitate rebase #27178
Bug 2081732 : Static pod test error #27160
Revert “Bug 2089831: Temporarily disable telemetry token test.” #27168
add per-namespace tests for kubepodnotready alert failures #27151
remove the etcd vertical scaling test #27174
Bug 2089276 : Detect and use the packet capture interface for EgessIP tests. #27164
remove test: ‘etcd is able to vertically scale up and down with a single node’ #27170
Bug 2086519 : bump o/kube so that test namespaces aren’t PSa label synced #27173
Bug 2085997 : special configuration on barematal platform for the etcd vertical test is required #27140
don’t trigger single second disruption on contiguous disruption #27161
Bug 2089831 : Temporarily disable telemetry token test. #27165
BZ2088533: Add subresource.status check exceptions for techpreview jobs #27156
add pod graceful termination to pod lifecycle #27153
Bug 2081732 : Dump debug message whenever static pod test fails #27143
Bug 2086086 : image_ecosystem: remove deprecated imagestreams #27133
Bug 2086519 : Auth-133: test/extended/util: comply exec pod to restricted pod security profile #27152
Bug 2085997 : makes the etcd invariant test work on dualstack platform #27148
Bug 2085997 : ExternalControlPlaneTopology: Skip etcd master endpoint verification #27149
BZ2087992: Add regex matching, regex inverse matching, and default end date option for intervals #27117
BZ 2087504: Add Early test to check for CRD subresource.status #26954
Bug 2085997 : the machine API can be unavailable resulting in a 404 or an empty list #27147
EgressIP downstream tests for OVN Kubernetes #26999
Add user coreydaley as an approver #27144
handle cases where containers restart #27137
commenting ipv6 for sysctls #27142
Bug 2085997 : ensure number of voting members in the cm matches the number of master machines #27141
Bug 2085997 : the etcd vertical scaling feature misses e2e tests #27127
Bug 2084361 : Add some debugging information for mysterious exit 2 errors #27136
Bug 2085997 : adds new test to the API monitor #27118
update alert and disruption limits #27130
Bug 2085997 : gives the backend monitoring an identity #27134
always allow at least one second for disruption #27131
Bug 2080007 : unrevert external ip configuration e2e networking tests #27078
Bug 2083941 : feat: add fuzzy match on micro release #27123
add test to catch single second disruption patterns #27132
Bug 2082538 : bump cluster-capi-operator apirequests upper bound for GCP And Azure #27108
Revert “moves TestScalingUpAndDownSingleNode from cluster-etcd-operator” #27126
Add debugging message for static pod test #27111
Bump net.ipv6.neigh.IFNAME.retrans_time_ms for Multiarch #27119
Don’t hardcode the SA token audience when requesting one #27120
timeline command, container exit fix, key resources by uid, and use reflector #27114
NE-883 : test/extended/router: Add test for spec.subdomain #27030
moves TestScalingUpAndDownSingleNode from cluster-etcd-operator #26917
Add config for golangci-lint no-sprintf-host-port #27116
Correct pod timing #27112
Bug 2080687 : request prometheus service account token #27100
Fix request token ic cli/admin tests #27113
Bug 2081012 : Don’t wait for sa token #27104
prometheus helper: add helper to retrieve prometheus query token #27107
Bug 2080679 : fix oc related test to land k8s 1.24 #27099
[rebase 1.24] disable tests with time limit to facilitate rebase #27086
Bug 2082239 : Bump net.ipv6.neigh.IFNAME from 30005 to 30010 for Multiarch #27101
test/extended/util/openshift/clusterversionoperator/adminack: Accept MultipleReasons #27110
make it easy to create pod interval tests #27092
Bug 2080681 : Request new token instead of using node-bootstrapper token #27098
Revert “NE-626: Add DNS CI coverage for golang and glibc resolver libraries” #27103
make the pod ip check a controller #27097
NE-626 : Add DNS CI coverage for golang and glibc resolver libraries #26957
Revert “test: allow -f to match tests for any test suite” #27095
MON-2148 : Handle 401 code for prometheus api route #27031
test: allow -f to match tests for any test suite #27091
router: wait for “use scc restricted” SAR before pod creation #27084
Remove non-functional gu workload tests. #27044
test/extended/prometheus/image_pulls: New “should be fast” test-case #27067
give multi-arch more time to complete upgrades to clean up signal #27085
skip ‘should not see excessive Back-off restarting failed containers’ for e2e tests #27087
haproxy needs to request privilege escalation in order to work #27080
updates “managed cluster should report ready nodes the entire duration of the test run” #27077
skip etcd quorum probes failures when etcd revision changes #27072
don’t wait for SA token secrets #27081
Revert “Add e2e tests for ExternalIP Policy and AutoAssignCIDRs” #27075
Add restricted-v2 to the default RBAC rules for authenticated users #27071
Increase determinism when searching for prom service secret token #27073
improves etcdRevisionChangeAllowance calculates the number of etcd’s operator rollouts #27070
Include timestamp when reporting observed ReusedPodIP events. #27074
track pod IP re-use #27062
hack/verify-generated: Replace –quiet with –exit-code #27060
Bug 1992596 : e2e/cli: Migrate create.sh to Go tests #27049
force completes upgrade failure if operator failure #27058
Bug 2078528 : bump cluster-node-tuning-operator apirequests upper bound for OpenStack #27052
handle cases where the DNS querier pod isn’t yet running #27056
Add e2e tests for ExternalIP Policy and AutoAssignCIDRs #26894
tuning-cni: basic tests #26953
Sysctl: validate that setting a pod sysctl does not affect node and other pods #26940
the ‘should be scheduled on different nodes’ were only fixed in 4.11 and later #27053
Separate out ‘Back-off restarting failed container’ from pathological test #27047
Revert “Skip newly enabled networkpolicy tests on IPv6” #27045
Flake pod sandbox errors pinging container registry on azure. #26964
Ignore loki NetworkNotReady repeating events. #27051
Bug 2030972 : test/extended/util/openshift/clusterversionoperator: Survive API hiccups #27041
Bug 2077457 : Skip BeforeEach as well for the skipped HAProxy config manager test #27034
synthetic: cloud api quota synthetic test should always be present #27042
Remove fixed clusterIP service for ipv6 contexts #26895
loosen SCC capabilities check to allow stricter caps #27024
test/dns: add the bits to make the Restricted PodSecurityPolicy happy #27035
Disable FIPS disabled serving routes test on BM #27033
test/e2e/upgrade: Use PATCH instead of POST for ClusterVersion spec updates #27023
Sysctl tests: pod with sysctls not on whitelist should not start #26937
Bug 2075584 : Use substring match instead of exact match #27028
Switch to groupified APIs #27025
Dump imagestreams and buildconfigs on build imagechange trigger test failure #27019
Best matcher single node OVN #26929
: Separate pod network creation failure from others in sandbox creation… #27020
test/…/disruption: set pod security level centrally #27017
Switch to groupified APIs #27008
router: construct url with net.JoinHostPort #27015
Add exception for etcd guard pod readiness probe error events #27016
test/extended/*: set necessary pod security settings #27014
getArchitecture: Fix to work with Hypershift #27004
Bug 2072171 : Reenable the implementation for basic egressfw e2e CI test #26973
MGMT-9440 : Fix single node serial tests API crash #26904
skip tests for etcd leaders when etcd revisions change a lot #27009
Fix another issue with CVO upgrade ack timeout on metal. #27001
bump o/kube to get latest PSa test updates #27012
Bug 2031564 : Separate out test for ‘RequiredInstallerResourcesMissing secrets’ #26936
Bug 2060406 : bump apirequests upper bounds for GCP #27002
Bug 2072533 : synthetictests: skip “alert/Watchdog must have no gaps or changes” on SNO upgrades #26976
Bug 2074445 : exclude loki-promtail from duplicated events #27006
Fix up one more optional capabilities new-app test #27005
actually set default PSa labels if unset #27000
util/client.go: add method to specify pod security admission level #26938
Add test for validating related object references. #26921
correct pathological event detection #26994
prevent npe for old container status readiness #26996
Bug 2011895 : Add synthetic test for cloud API throttling #26559
router: fix all uses of Sprintf to build host:port for a URL #26983
prevent pending/firing alert overlap #26968
Skip newly enabled networkpolicy tests on IPv6 #26977
test: switch to testing CapBnd over CapInh #26960
remove wait for samples imagestreams, no longer needed #26992
Bug 2066865 : bump openshift/kubernetes #26969
test/extended: add/update OWNERS files for Prometheus #26910
test/extended/prometheus: Remove SDN/OVN-K alert rules #26687
Unrevert and fix for the HAProxy test #26980
Bump timeout for CVO to ack the upgrade generation. #26974
Bug 2066457 : don’t fail when a query returns warnings #26984
Bug 2072924 : increase the threshold on the number of telemetry series #26988
Update limits #26982
fix evaluation of deleted pods for pod sandbox test #26978
Revert “Fix HAProxy tests on FIPS properly” #26979
Revert “Add networking test for invalid external gateway” #26975
Revert “Implementation for basic egressfw e2e CI test” #26967
Bug 2067323 : extended/test/router: omit DNS managed conditions for shards #26949
Add networking test for invalid external gateway #26883
Bug 2060406 : test: bump apirequests upper bounds for VSphere and AWS single node #26962
test: update synthetic test node restart count #26948
bump: k8s.io/kubernetes #26955
Ignore FailedCreatePodSandBox event that is expected to happen #26966
add pod lifecycle intervals to separate pages #26908
Add missing operators from the known operators list #26963
Bug 2047913 : Fix HAProxy tests on FIPS properly #26803
Bump allowed watches for node-tuning-operator #26944
Migrate tests away from using samples-operator provided imagestreams #26913
Image registry redirect #26920
Bug 1996883 : increasing build config loglevel #26958
Use ServerGroupResources instead deprecated ServerResources #26956
Fix typo in OVN Kubernetes skipper #26950
Bug 1996883 : Increasing log level to support decrease in default buildah log level #26941
Implementation for basic egressfw e2e CI test #26934
Check token response error code #26926
Clarify that the image mirroring requirement applies to conformance tests only #26912
coarse serialization of storage tests #26933
Revert “bump: k8s.io/kubernetes” #26939
bump: k8s.io/kubernetes #26935
Flake on FailedCreatePodSandbox if missing ovn readiness file. #26932
Add pod securityContext sysctl whitelist tests #26809
Revert “Implementation for basic egressfw e2e CI test” #26931
Update where the canary test lists is retrieved from #26930
Implementation for basic egressfw e2e CI test #26865
Implementation for egress-router-cni e2e ci test #26875
Attempted fix for missing monitor events. #26862
JKNS-267 : minimize jenkins e2es (pipeline strategy verification only) #26914
Attempt multiple different token requests #26916
Simplify 26907 #26924
Bug 2034688 : allow Prometheus/Thanos to return 401 or 403 when the request isn’t authenticated #26695
Migrate builds tests away from using sample imagestreams since samples will be optional #26909
Update prometheus owners #26911
Pod scheduling tests improve pod deployment identification #26906
Add early test to check router pods are not on same node #26899
Give each interval chart a title #26896
Mark image pull from registry.redhat.io as flake to track but not fail #26897
Bug 1961233 : Add DNS availability upgrade test #26795
Revert “Disable intree vsphere tests” #26797
Bug 2026063 : build-quota test: fix cgroupv2 parsing holes exposed by buildah upgrade #26885
Bug 2057990 : Add debug info for signature test #26884
MGMT-9440 : Fix single node serial tests API crash. #26868
Bug 2060498 : only add failure when no event was found for the target revision #26880
Bug 2060406 : operators should not create watch channels very often: bump OpenStack monitoring operator #26877
Use common threshold constant as other event tests #26873
cleanup network policy ACL extended test #26876
add text to the timelines when you hover #26871
Make a test to specifically look for image pull backoff for registry.redhat.io #26858
Bug 2059299 : IBMCloud: Ignore CRB already exists #26864
Switch to batch/v1 CronJob #26867
Bug 2059277 : images/tests: yum update python3-six to workaround ART issue #26863
Increase scale test timeout to 30 minutes #26861
Fix ovnkube-node readiness test to include successes. #26860
Bz2054254 rearrange test cases #26857
Set ovnkube-node readiness failure to flake for now. #26855
Increase cluster-monitor-operator watch count threshold on single-node clusters #26685
allow slow kubelet updates for static pods, but still fail if they never succeed #26852
OWNERS: Declare Bugzilla component #26368
vsphere is firing this alert/VSphereOpenshiftNodeHealthFail and it is hiding other alerts #26850
Updating openshift-enterprise-tests images to be consistent with ART #26804
update alert thresholds after extending static pod install duration #26844
ip reconciler ignore #26842
Bug 2049117 : Reenable wait on worker deletion and increase serial test timeout #26810
Bug 2053582 : fail on static pod lifecycle failures #26837
Allow a single test to override suite timeout #26833
Bug 2053312 : requestheader test must wait for authentication operator to settle after config update #26834
Bug 2053143 : allow inexact matches for disruption data #26831
Break out test for OSUpdateStaged event with no OSUpdateStarted. #26824
add job type key to the error we track for statistical jobs #26823
baremetal: add test for preprovisioning images #26780
Bug 2045590 : Alibaba: enable init for alibabacloud provider #26818
Revert “Flake failed sandboxes from bug in new guard pods” #26817
Debug missing OSUpdateStarted events #26798
Delete extra workers before running metal high availability test #26813
images: update registry to 2.8.0-beta.1 #26811
Bug 2044824 : Update k8s vendoring #26805
Bug 2050345 : update p99 values for disruption and alerts #26815
Bug 2047911 : IBMCloud: Concurrent CRB create #26806
Only run parallel tests in the canary job since it runs in parallel #26812
Fix broken console disruption test. #26808
Add baremetal high availability tests #26569
Bug 2047362 : Prometheus check targets endpoint #26793
Verify Builds with CSI Volume Sources #26791
Bug 2047790 : Skip some HAProxy tests on FIPS #26800
don’t double report early alert failures #26796
Full changelog
OCPBUGS-21542 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #93
OCPBUGS-7404 : fix for nil user session (#1859) #58
Updating ose-vmware-vsphere-csi-driver images to be consistent with ART #41
Updating vmware-vsphere-syncer images to be consistent with ART #40
Bug 2074294 : UPSTREAM: 1706: Update golang.org/x/crypto for CVE-2022-27191 #39
Updating ose-vmware-vsphere-csi-driver images to be consistent with ART #38
Updating vmware-vsphere-syncer images to be consistent with ART #37
Bug 2071019 : Rebase against v2.5.1 #36
Bug 2029835 : Revert “Merge pull request #30 from bertinatto/rebase-v2.4.1” #35
Updating ose-vmware-vsphere-csi-driver images to be consistent with ART #33
Updating vmware-vsphere-syncer images to be consistent with ART #32
Bug 2029835 : UPSTREAM: 1468: Fixed parsing of /proc/self/mountinfo with spaces #34
Full changelog
OCPBUGS-21402 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #176
OCPBUGS-5790 : Allow cluster to be upgraded even if using multiple datacenters #130
OCPBUGS-5472 : Fix sc creation on resync #127
OCPBUGS-3285 : set TLS cipher suites in Kube RBAC sidecars #119
OCPBUGS-1710 : Add HTTP proxy to syncer container #111
Bug 2109977 : storageclass should not be created for unsupported vsphere version #101
Bug 2105334 : Reorder static resources to create RBAC first #98
Bug 2095248 : Report max. nr. of attachable volumes per node #90
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #85
Bug 2089419 : Don’t block upgrades when another CSI driver is found #87
Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART #86
Bug 2071021 : Enable snapshot support #83
Bug 2072139 : Create separate controller and node roles #82
Bug 2076637 : Scrape CSI driver + syncer metrics #84
add storageclass controller tests #80
Bug 2059791 : [vSphere CSI driver Operator] didn’t update ‘vsphere_csi_driver_error’ metric value when fixed the error manually #81
Set fsGroupPolicy in CSIDriver #79
Bug 2053104 : Do not cache node check results between runs #77
Bug 2043132 : Add metric when storageclass installation fails #74
Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART #73
readme: minor fixes #63
Full changelog
Source code for this page located on github