Back to index 
Download the installer  for your operating system or run 
oc adm release extract --tools quay.io/openshift-release-dev/ocp-release:4.11.18-x86_64 Team Approvals: 
Tests:
Upgrades from:
Untested upgrades: 
4.10.20 , 
4.10.21 , 
4.10.22 , 
4.10.23 , 
4.10.24 , 
4.10.25 , 
4.10.26 , 
4.10.27 , 
4.10.28 , 
4.10.29 , 
4.10.30 , 
4.10.32 , 
4.10.34 , 
4.10.35 , 
4.10.36 , 
4.10.37 , 
4.10.38 , 
4.10.39 , 
4.10.40 , 
4.11.10 , 
4.11.12 , 
4.11.3 , 
4.11.4 , 
4.11.5 , 
4.11.6 , 
4.11.7 , 
4.11.9 Upgrades to:
Loading changelog, this may take a while ...
Created: 2022-11-30 09:32:14 +0000 UTC
Image Digest: sha256:22e149142517dfccb47be828f012659b1ccf71d26620e6f62468c264a7ce7863
Release 4.11.18 was created from registry.ci.openshift.org/ocp/release:4.11.0-0.nightly-2022-11-29-160615 
Components 
New images 
Removed images 
grafana 
image-customization-controller 
ironic-hardware-inventory-recorder 
jenkins 
jenkins-agent-base 
jenkins-agent-maven 
jenkins-agent-nodejs 
 
Rebuilt images without code change 
cluster-bootstrap  git f22d1c60  sha256:75e37cce23f2627660cd041e2ad5b751873e569fc87f501a874c2741bde6f9f8machine-os-content sha256:ec904f342a22c352f58a371d35f0c2e4e5df2b1d47da6f3fece5edb4d459e1b0 
 
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #13  
Updating ose-alibaba-cloud-csi-driver images to be consistent with ART #10  
Bug 2057495 : Add a parameter to the schema to automatically increase volume sizes … #12 Bug 2069075 : Add explicit pciutils package #11 Full changelog  
Bug 2096691 : Fix typo in resourceGroupId param #33 Bug 2096691 : Add resourceGroupID to StorageClass parameters #32 Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #29 Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #30  
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #27  
Bug 2057495 : Auto increase volume size to 20 GiB in the default storage class #25 Set fsGroupPolicy in CSIDriver #23  
Disable snapshot tests #21  
Add e2e test manifest #20  
Updating ose-alibaba-disk-csi-driver-operator images to be consistent with ART #17  
Add Dockerfile.test #18  
Full changelog  
OCPBUGS-4185 : Fix nodeService.getVolumesLimit() adding more instance #213 OCPBUGS-1749 : UPSTREAM: 1398: Add resolver to handle custom endpoints #209 Updating ose-aws-ebs-csi-driver images to be consistent with ART #201  
Bug 2074279 : UPSTREAM: 1210: Update golang.org/x/crypto for CVE-2022-27191 #200 Bug 2050173 : Fix build on ARM after rebase #198 Updating ose-aws-ebs-csi-driver images to be consistent with ART #197  
Rebase v1.5.1 #195  
Full changelog  
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #156 Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART #157  
Bug 2074706 : Set custom endpoint environment variable if available #153 Bug 2049671 : avoid excessive GET and DELETE in ResourcesSync controller #151 Set CSIDriver fsGroupPolicy #150  
Updating ose-aws-ebs-csi-driver-operator images to be consistent with ART #148  
Full changelog  
Bug 2108021 : Fix panic when accessing nil machine annotations map #47 Bug 2060068 : return error when no security group found #41 Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #42 Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #40 Bug 2091433 : Update EC2 instance types #39 Bump machine-api-operator to 25e61c2 #38  
Validate unknown regions using AWS API #32  
AWS Placement Group controller logic #33  
Bug 2072195 : Custom DHCP Option Set: empty domain-name is a valid custom domain #36 Remove unreleased AWS Placement Groups support #35  
AWS IMDSv2 support #34  
Refactor provider status to use metav1.Condition #31  
Bug 2067791 : Bump prometheus/client_golang #30 Add AWSPlacementGroup controller #25  
Bug 2065510 : Update AWS SDK to 1.43.20 #29 Bug 2065160 : Ensure IP based NLB targets are deregistered before Machines are removed #28 Bug 2060697 : Update openshift/api dependency #27 Leverage basic AWSPlacementGroup for AWS PG membership #23  
Ensure Machine level tags have precedence over infrastructure level tags #24  
Allow Machines to select EFA network interfaces #8  
CFE-68 : user defined resource tags on EC2 instances updatable #15 Full changelog  
Updating ose-aws-pod-identity-webhook images to be consistent with ART #153  
Bug 2093986 : Comply to restricted pod security level #154 Bug 2067792 : upgrade prometheus/client_golang to v1.12.1 #152 Updating ose-aws-pod-identity-webhook images to be consistent with ART #151  
Full changelog  
Bug 2112266 : UPSTREAM 1367, 1409: Update max data disk count table #30 Updating ose-azure-disk-csi-driver images to be consistent with ART #27  
Bug 2073373 : Rebase to v1.16.0 #24 Dockerfile should copy binary for the correct ARCH #23  
build: set GOARCH appropriately #22  
Updating ose-azure-disk-csi-driver images to be consistent with ART #21  
Full changelog  
Updating ose-azure-disk-csi-driver-operator images to be consistent with ART #42  
Bug 2095049 : Only use credentials that are provided by the azure-inject-credential… #49 Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #48 Mark CSI StorageClass as the default one #47  
Bug 2062152 : Increase pod startup timeout in e2e tests #45 Bug 2073373 : Sync cmdline arguments with upstream #46 Fix CSIDriver fsGroupPolicy #44  
Full changelog  
Bug 2080449 : UPSTREAM: 1023: add new option to allow VHD feature opt-out #15 Updating azure-file-csi-driver images to be consistent with ART #14  
Bug 2074282 : UPSTREAM: 978: chore: Update golang.org/x/crypto for CVE-2022-27191 #13 Bug 2073436 : Update to v1.14.0 #12 Dockerfile should copy binary for the correct ARCH #10  
build: set GOARCH appropriately #9  
Updating azure-file-csi-driver images to be consistent with ART #8  
Full changelog  
Bug 2105972 : disable VHD disk feature #35 Bug 2099968 : Only use credentials that are provided by the azure-inject-credentials container #32 Bug 2092502 : Don’t ship a StorageClass backed by NFS by default #30 Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #27 Fix driver definition manifest: fsGroup is supported, snapshots are not #28  
Updating azure-file-csi-driver-operator images to be consistent with ART #29  
disable snapshots #26  
Updating azure-file-csi-driver-operator images to be consistent with ART #25  
Full changelog  
OCPBUGS-2501 : Update azure instance types cache #37 Bug 2109487 : make Azure instance types case-insensitive #29 Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #26 Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #21 Bug 2093044 : update getAvailabilitySetName function #22 Updating ose-machine-api-provider-azure images to be consistent with ART #19  
Bug 2085336 : Ignore unknown Instance types in accelerated networking check #20 Bump machine-api-operator to 25e61c2 #18  
update azure instance types #17  
Refactor provider status to use metav1.Condition #16  
Bug 2067798 : Bump prometheus/client_golang #15 Data Disks: add deletionPolicy logic #14  
Implement Azure Ultra Disk (UltraSSD) support #13  
Updating ose-machine-api-provider-azure images to be consistent with ART #12  
Full changelog  
OCPBUGS-4081 : OpenStack: Force JSON content-type in Swift #6625 Bug 2105331 : Switch to perform normal marshalling with unknown fields #6102 OCPBUGS-378 : UPI image download govc rate limit failure #6246 OCPBUGS-2983 : Azure: Fix DiskEncryptionSet regex validation #6537 OCPBUGS-1346 : OpenStack UPI: Create server group for Computes #6351 Bug 2101015 : go getter update for terraform & terraform providers #6411 OCPBUGS-1242 : Add PowerVS zone mon01 support #6341 OCPBUGS-536 : vSphere - enable steal time accounting #6260 BUG 2117368: Add AWS S3 Bucket Permissions #6216  
OCPBUGS-1876 : download ‘aliyun’ #6377 OCPBUGS-562 : bump RHCOS 4.11 bootimage metadata #6459 OCPBUGS-1349 : OpenStack: Lift validation for 14 chars cluster names #6355 Bug 2107153 : Make azure baseDomainResoureGroup optional for private c… #6119 OCPBUGS-759 : Extend user tags limit to 25 based on AWS limits for 4.11 release #6303 Revert “[release-4.11] OCPBUGS-1157: Add depends to enforce order for azure terraform dependencies” #6344  
OCPBUGS-1157 : Add depends to enforce order for azure terraform dependencies #6333 OCPBUGS-455 : vsphere: fix default disk type when not speficied #6256 Bug 2104825 : Remove unnecessary SG rule #6092 Bug 2112928 : Fix validation errors for instance type #6190 OCPBUGS-433 : nutanix: allow creating manifests without Prism Central connection #6251 Bug 2115807 : data/data/coreos: update FCOS to 36.20220716.3.1 #6204 Bug 2117279 : bump RHCOS 4.11 bootimage metadata #6226 OCPBUGS-365 : Updating ose-baremetal-installer images to be consistent with ART #5897 Bug 2118514 : [4.11] Download yq in upi installer containers #6225 Bug 2106014 : Allow setting bootstrap kubelet ip #6110 Updating ose-installer-artifacts images to be consistent with ART #5951  
Bug 2110482 : vsphere installconfig: use full dc path in network validation #6160 Bug 2106062 : bump RHCOS 4.11 bootimage metadata #6130 BUG 2104906: destroy/gcp: Use min length for destroying disks #6094  
Bug 2104727 : Fixes CFE-489 - AWS installer should go through proxy for s3 bootstrap ignition call #6090 Bug 2093126 : bump RHCOS 4.11 boot image metadata #6060 Bug 2100841 : Print the “export KUBECONFIG=…” command on its own line for easier cut-and-paste #6018 Bug 1997704 : [OpenStack] Document in-tree limitation for external LBs #6033 Bug 2100496 : oVirt VM creation fails on empty affinity group description #6044 Bug 2064693 : Restore ability to use local clouds.yaml #5947 Bug 2047732 : [IBM]Volume is not deleted after destroy cluster #5962 Bug 2076646 : destroy/gcp: Disk names are filtered using kubernetes name format #5976 Bug 2095226 : Added changes to verify cloud connection and dhcp serviceinstance details of a  powervs instance #5899 Bug 2097940 : PowerVS: Handle optional VPCRegion #6020 Bug 2082283 : Transition to the oVirt Terraform provider v2 #5867 Bug 2096905 : Swap Nutanix Prism Client #6002 Bug 2094694 : Nutanix cluster name validation #5991 Bug 2098243 : Adding error handling to powervs platform #5958 Bug 2096605 : vsphere: validate diskType if supplied #6019 Bug 2049108 : Fix network interface not found error #6016 Bug 2097260 : Fixes openshift-install create manifest failure of Power VS Platform #6007 Bug 2092107 : Re-add Power VS install-config DNS validation tests #5938 Bug 2092296 : Changed DefaultMachineCIDR of PowerVS to 192.168.0.0/16 #5940 Bug 2097239 : Changed Lower limits of CPU for PowerVS Cloud #5929 Bug 2090816 : Increase bootstrap timeout, not k8s API timeout #6010 Bug 2095917 : Nutanix set osDisk with diskSizeGB rather than diskSizeMiB #5998 Bug 1859153 : IAM instance profile race condition #5982 OWNERS_ALIASES: update coreos aliases #5989  
Bug 2096352 : Collect whole journal and netstat data #5988 Bug 2090816 : baremetal: wait longer for bootstrap to complete #5981 baremetal: static IP for bootstrap node #5787  
Bug 2068180 : update doc for DNS and disconnected clusters #5974 Bug 2090049 : GCP Destroy resources that are owned by cluster #5965 Bug 2094902 : Simplify cross-compiling #5905 Bug 2085336 : based on 4.11 CORS-1916 add the vm family #5913 Bug 2089563 : Use Power VS machine provider spec from openshift/api #5873 Bug 2093368 : OpenStack: Fix LoadBalancer FIP deletion on destroy #5964 Bug 2057582 : Remove all occurances of packet_device from upi/metal #5969 Bug 2057582 : For metal upi update source and versions of terraform providers #5941 BUG 2075459: IOPS was not being set even when manually configured #5925  
Bug 2084280 : Remove optional services from permissions check #5915 Bug 2085380 : azure: validate VM image and instance HyperV gen match #5918 Bug 2084580 : Add check to validate cluster name for dots #5931 Bug 2086791 : Azure: validate ultrassd instance types in multi-zone regions #5937 Bug 2090487 : SNO network type update #5927 Updating ose-installer images to be consistent with ART #5950  
Updating ose-installer-artifacts images to be consistent with ART #5908  
Bug 2085187 : terraform: revendor golang.org/x/sys #5896 Bug 2088660 : Fix for absence folder for bootstrap ignition iso #5935 Bug 2089682 : Ensure Presence of Overlay networks in cluster is handled gracefully #5939 Bug 1965468 : Revert “Bug 1909136: OpenStack: delete volume snapshots” #5923 Bug 1969794 : Correct typo #5922 Bug 2084441 : azure: proper premiumIO validation message #5924 Bug 2078431 : Set TF_DATA_DIR to the Terraform Dir. #5864 Bug 2086718 : Add destroy cluster support for PowerVS #5737 Bug 2086936 : vSphere: change socket back to cores #5914 Bug 2086056 : openstack: add doc for OVS HW offload #5886 Bug 2065893 : bump RHCOS 4.11 bootimage metadata #5887 Bug 2085721 : Fix name for customization controller image #5909 Power VS: Use bucket name from coreos stream rather than inferring it #5782  
Increase Unit Testing Coverage of AWS Install Config to Include ValidateForProvisioning #5791  
Added changes for validating the IBM Account Type for Provisioning Power VS resources #5734  
Updating ose-installer images to be consistent with ART #5895  
AGENT-40 : allow reading cert keys #5872 Power VS: Separating bootstrap resources to own stage for clean destroy #5901  
Aws console logs #5807  
GCP: Revert Instance Type from N2 to N1 #5898  
Dynamic retrieval of GCP Regions for a Project #5815  
Update to Golang v1.17 #5870  
azure: move zones functionality to the client API #5844  
azure: validation: dedup getting the capabilities #5893  
update azure arm templates to support customer provided vnet #5880  
machines: Set defaults for machine instance types #5841  
Azure Provider: fix vmNetworkType defaults by checking vm capabilities #5846  
OpenStack: fix SR-IOV documentation TOC #5881  
Bug 2078875 : Delete all the ports from tagged Neutron networks. #5838 Bug 2082604 : Revert “image: set os name to red-coreos-stable-amd64” #5869 openstack: Add the Kuryr squad as approvers #5866  
Update template for CloudProviderConfig #5875  
Bump Azure Stack Terraform Provider for Go 1.18 #5865  
Add -n argument to copy network config from install environment to install-to-disk.sh.template #5795  
Update SR-IOV & DPDK doc for OpenStack #5712  
Bug 2080054 : Add ‘ARG TAGS=“”’ line for each build step #5794 Pull the OS Image for Nutanix via URL #5868  
Power VS: fix terraform vars #5863  
Update TF Provider Version to 1.40.1 #5862  
Use neutral pronoun in doc. #5384  
Change the default machine pool config for Nutanix #5857  
Bug 2074210 : Add new Regions to the GCP Installer configuration list #5811 Update os name to correct value #5860  
Update the comment explaining vCPUs on Nutanix #5859  
Bug 2064170 : Fixed duplicate strings in explain #5836 Bug 2077662 : Fix AWS Platform Provisioning Check #5831 Support RAID and BIOS configuration for master nodes of baremetal IPI deployments #5196  
Power VS: Create Remaining TF Resources #5780  
Handle the mapi-provider-nutanix types moving to openshift/api #5812  
vsphere: upi ignition leak #5850  
vSphere: ignore bootstrap eagerly scrub changes #5848  
Bug 2078895 : ovirt: fixing incorrect ‘format’ value validation #5847 vsphere upi: missing etc resolv #5842  
vsphere: remove unused namer interface #5824  
Bug 2029438 : Set rc-manager=unmanaged on baremetal bootstrap #5482 Unpack to install dir #5825  
baremetal: remove redundant proxy setting #5598  
Determine Nic name in Bootstrap VM for ARM and x86 #5698  
Add bootstrap directory for Nutanix platform #5828  
Provider Azure: Enable accelerated networking on control plane nodes #5309  
Ensure that the /bin/terraform-provider-matchbox binary is present #5829  
Bug 2074659 : Fix empty string usage in ValidateForProvisioning #5801 vsphere: upi, use community ignition provider #5808  
Bug 2076393 : vsphere: no longer logout of platform client before finished #5818 Bug 2076880 : for vsphere ipi add cluster domain to the uploaded vm configs so that 30-local-dns-prepender can use it #5788 Ensure Nutanix API VIP is populated in the SAN for the MCS Cert #5821  
Bug 2048451 : Fix proxy dial to pick all proxies #5743 update the vm types OCPQE-8674 #5704  
data/bootstrap/files/usr/local/bin/bootkube: –rm all Podman containers #5803  
libvirt: use el8 repo for Google Cloud SDK #5467  
AWS IMDSv2 support #5793  
Bug 2075873 : data/data/coreos/fcos.json: update initial FCOS to 35.20220327.3.0 #5817 Changing the machine-config service name #5707  
Ensure ignition host is set to API VIP for Nutanix platform #5813  
Add Power VS-specific fields to cloud-provider config #5809  
Check for CVO failing condition before exiting as success #5745  
Add in-repo documentation for user-selectable capabilities #5732  
vSphere session cleanup #5796  
Power VS: Add basic install-config validation #5779  
Adding public&private zones to DNS config on PowerVS #5749  
Revert “cluster: unpack terraform binaries into install directory” #5810  
Bug 2064170 : Fixed Azure punctuation installconfig.controlPlane.platf… #5802 Repin libvirt-version #5797  
Add IBM Power VS: tf data #5614  
cluster: unpack terraform binaries into install directory #5715  
azure: Enable HyperVGeneration setting for Azure disks #5721  
pkg/destroy/aws: Log unfiltered pagination #5775  
terraform: fix module name of terraform providers #5727  
remove platform.azure.osDisk #5785  
Lower severity of ListAWSDefaultServiceQuotas warning msg #5747  
images: Update terraform version in UPI image #5762  
Bug 2033482 : vsphere: ensure terraform variables are defined #5778 Add VolumeID testscases for Power VS machinepool #5742  
Power VS quota asset #5748  
MGMT-9797 : Set single-node none-platform clusters Ingress DefaultPlacement to ControlPlane #5746 Added platform validation testcases for IBM PowerVS platform #5708  
Add cluster destroy logic for Nutanix clusters #5638  
Add IBM Power VS: tfvars #5615  
pkg/asset/manifests/operators: Set kubernetes.io/description for cluster-config-v1 #5783  
Updating ose-baremetal-installer images to be consistent with ART #5590  
Add exit code for infra, bootstrip and install failures #5702  
Bootstrap-in-place ignition creation should also create a worker.ign file #5786  
Remove defaultStorageContainer from nutanix platform installconfig #5784  
Update installconfig validation for Nutanix #5781  
Re-update BMO vendor to use ipxe for iRMC #5662  
Bug 2038774 : [IBM] add IPsec IKE UDP ports 500, 4500 to security group #5539 Update declarative assets for Nutanix #5636  
Bug 2056460 : Preallocated disks for OCP nodes on oVirt #5594 gather: collect sssd journal logs #5771  
Add nutanix-specific terraform variables #5637  
Removing no-longer-needed DNS etcd stuff #5764  
Add nutanix-specific customizations to installconfig #5633  
Update default releaseimage to 4.11 #5774  
collect machine state in bootstrap gather #5770  
Refactor UltraSSD tfvars #5757  
Bug 1918005 : vsphere: Use Managed Object ID for networks instead of potentially duplicate name. #5673 Azure: validate UltraSSD instance types #5759  
OWNERS_ALIASES: Update current installer team #5766  
Validate disk encryption sets #5692  
vendor: update api to latest version to use AzureUltraSSDCapabilityEnabled #5756  
vsphere: make cluster destroy more resilient to api failures #5556  
Bug 2061891 : IBMCloud: Add br-sao region to static list #5760 Add Nutanix-specific customizations to manifests #5631  
terraform: add terraform verification to ./hack/verify-vendor.sh #5675  
Add nutanix-specific customizaitons to machines #5632  
Bug 2047935 : bump RHCOS 4.11 bootimage metadata #5729 Bug 2066463 : IBMCloud: Patch IBM client auth #5736 Bug 2062998 : Update region check for coreos AMIs #5731 terraform: compress provider binaries faster #5739  
Add nutanix-specific customizations for assorted  assets #5634  
Bug 2048067 : [Alibaba] fix location service endpoint #5664 Bug 2060687 : terraform: fix setting of zone in load balancers for non-zonal azure regions #5684 Doc: Update VIP number to 2 #5599  
Updating ose-installer-artifacts images to be consistent with ART #5591  
Add the terraform plugin for Nutanix #5635  
Add IBM Power VS: cluster assets #5651  
AlibabaCloud: fix for bootstrap teardown removing slb backends #5682  
Use powervs NewClient in GetDNSZone #5723  
vsphereprivate: update to v2 terraform sdk #5716  
Bug 2064969 : terraform: upgrade aws provider to v4.5.0 #5719 Revert “Merge pull request #5665 from r4f4/azure-azid-adapter” #5722  
vendor: upgrade aws sdk to v1.43.19 #5710  
Azure: Add ultraSSDCapability to control plane instances. #5701  
Bug 2061549 : azurestack: create the api DNS record when publishing internally #5691 Set ignition string to sensitive #5720  
Bug 2047670 : aws: remove validation check for internal publish strategy #5695 baremetal: refresh owners list #5713  
include conn timed out err for bootstrap collection #5677  
Bump gophercloud #5686  
Add Nutanix-specific platform types #5603  
vSphere: Update terraform provider to current upstream #5694  
Add IBM Power VS: machine assets #5611  
Bug 2060617 : fix(ibmcloud): Properly match regex for DNS destroy #5679 Add IBM Power VS: manifest assets #5610  
Azure azidentity adapter #5665  
Validate BMC driver supported and requires provisioning network #5458  
terraform: build binaries on go.mod changes #5672  
Add IBM Power VS: installconfig assets #5612  
Add VPCRegionForPowerVSRegion function #5700  
Azure disk encryption support #5641  
Bug 2060508 : azurestack: fix backend address pools for internal publishing #5678 azure/validation: Skip “resource group empty” check for ARO #5330  
Bug 2061527 : IBMCloud: Missing infra providertype #5687 Bug 2061544 : azurestack: stop pinning to Standard_LRS for disk type #5688 Bug 2060970 : data/data/coreos/fcos.json: update initial FCOS to 35.20220213.3.0 #5680 doc: terraform maintenance document #5670  
Updating ose-installer images to be consistent with ART #5589  
remove stray tmp/simple_log.log file #5606  
GCP may also return Forbidden status when trying to check quotas #5649  
Bug 2026356 : Fix bootstrap disk instance type #5515 Bug 2034147 : Validate num cores with vcpus #5656 Bug 2059213 : build all terraform providers and terraform binary locally #5666 Add IBM Power VS: types #5609  
point 06_workers.json to azurestack version #5661  
Bug 2021041 : vsphere: Not found TagCategory when destroying ipi cluster #5558 Render the CVO manifest with user-specified capabilities from the install-config #5645  
isolate terraform #5507  
Bug 2046181 : baremetal: reduce API timeout to 15 minutes #5639 Check for DeletePlacementGroup permission before destroying cluster #5655  
OWNERS_ALIASES: Drop wking from approvers #5644  
data/manifests/bootkube/cvo-overrides: Default to stable-4.11 #5621  
Updated owners to current OCP on RHV members #5654  
baremetal: use combined Ironic, drop MariaDB #5553  
Update OWNERS_ALIASES #5640  
Bug 2047257 : openstack: Migration script should –force drain #5618 Tested instance type lists for AWS/Azure/GCP #5517  
Bug 2047925 : Update BMO vendor #5588 cmd/openshift-install/create: Do not attempt analysis when we fail to gather logs #5582  
Bug 2046181 : baremetal: wait for image-customization to come up #5579 aws: support the entirety of the secret partitions #5597  
Bug 2050767 : vsphere: check that network exist in provisioning validation #5607 Bug 2048451 : Use proxy dial to validate endpoints #5600 Bug 2050146 : Don’t shortcut OpenStack scraping if quota is unavailable #5601 Bug 2048222 : Remove non-public AWS regions from list of regions #5595 Azure Stack: Add UPI Instructions for internal CA #5573  
Remove Caleb Boylan from core installer reviewers #5593  
Ensure removal of placement-groups during cluster destroy on AWS #5528  
And 3 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Updating baremetal-machine-controller images to be consistent with ART #165  
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #172 Bug 2067734 : [CVE] Upgrade controller-runtime to v0.12.1 #171 Bug 2080303 : Uplift BMO to remove go-getter dependency #170 Bug 2061833 : Delay after ensuring annotation #167 Update OWNERS file #169  
Bump mao version, rewrite Machine types import to openshift/api #168  
Remove stbenjam from OWNERS #163  
Full changelog  
Updating ose-baremetal-operator images to be consistent with ART #225  
Bug 2087213 : Don’t require pre-provisioning image for live ISO provisioning #231 Bug 2087213 : Don’t require PreprovisioningImages for older ZTP #229 Bug 2092650 : Stop treating missing network as fatal error #227 Merge upstream #224  
Bug 2080305 : Uplift kustomize to v4 to remove go-getter dependency #223 Update vendoring #222  
Disable iDRAC RAID #219  
Merge upstream #218  
Move bmh crd to level 31 #216  
Enable multi-arch builds #214  
ocp: add baremetal capability annotation #212  
Merge upstream #213  
Merge upstream #211  
Merge upstream #209  
Bug 2043118 : Move from Available to Preparing if HostFirmwareSettings… #208 downstream: add vendor target #207  
Merge upstream #205  
Add bfournier & remove asalfeld from OWNERS #206  
Updating ose-baremetal-operator images to be consistent with ART #204  
Full changelog  
OCPBUGS-673 : Apply ipv6 bind check to non-VIP case too #192 Bug 2096226 : Check chosen node-ip can be used #181 Bug 2086483 : Update k8s dependencies to 1.24 #180 Updating baremetal-runtimecfg images to be consistent with ART #179  
Bug 2069740 : Avoid kubernetes node port range #175 node: update IsUpgradeStillRunning() logic #173  
Update OWNERS to reflect current team #177  
Dockerfile: migrate repo to CentOS 8 Stream #174  
Updating baremetal-runtimecfg images to be consistent with ART #168  
Full changelog  
Bug OCPBUGS-915: [inspect] Add EgressQoS to inspect #1230  
OCPBUGS-2766 : pkg/cli/login: Warn, but do not fail, on surprise project-list errors #1274 OCPBUGS-1497 : oc adm logs: generate proper path for static pods #1239 Bug 2117823 : release: extract ccoctl #1220 Bug 2110567 : oc adm inspect: check a resource exists before its inspection #1222 Bug 2107003 : Set completion function for get command #1206 Bug 2103638 : Use from-release as based image when base digest is invalid #1196 Bug 2108617 : Add ManifestListDigest field to release info struct #1209 Bug 2104589 : set proper pod security ns labels #1198 Bug 2104282 : Add new IsManifestList flag into ReleaseInfo struct #1193 Bug 1905850 : add a new option for checking a subresource to oc adm policy who-can #1179 Bug 2015321 : Add destdir special character validation in must-gather #1178 Bug 2100138 : Add json support for release info bug printing #1177 Bug 2099637 : Use filter options only when keep-manifest-list is true #1176 Bug 2096855 : extract linux/amd64 to read release metadata #1174 Bug 2057633 : add validations for a pod & container to rsync #1087 Bug 1957668 : show console URL when asking for Authentication #883 Bug 2097334 : ensure kubectl name is replaced in plugin cmd #1173 Bug 1823143 : add –icsp-file option to adm release subcommands #1169 Bug 2090692 : fix version from 1.24.0 beta to 1.24.1 #1168 Bug 1999891 : bubble errors which happen prior to collection to BackupGathering #1093 Bug 2090266 : add –filter-by-os support in oc adm release extract and linux/amd64 for getting IS during mirror #1167 Bug 2093797 : deprecate –service-account flag for oc registry login #1166 Bug 2088483 : update ‘oc adm catalog mirror’ command to accept –continue-on-error flag #1152 *: add relevant code owners for catalog alias #1159  
Bug 2087103 : pkg/cli/admin/upgrade: “Updating to” -> “Requesting update to” #1156 Bug 2090692 : Beautify help and align with kubectl output #1121 Bug 2086519 : pkg/cli/debug: suggest pod security labels on violations #1155 Add user coreydaley as an approver #1144  
Bug 2090751 : Correcting skipMissing flag usage when a manifest cannot be found #1105 Bug 2083770 : Change release signature file extension to json #1151 Bug 2040654 : Pass pod exit error codes to user #1150 Bug 2083999 : Delete recently created images when –prune-over-size-limit is used #1143 Bug 2086459 : Continue inspection when some resources are not found #1137 Bug 2065507 : Add the ReleaseAccepted condition to the oc adm upgrade command #1113 Update images to be consistent with ART #1132  
release: update oc source URL in client READMEs #1129  
WRKLDS-370 : copy manifests from linux/amd64 to all manifests in a list #1120 Enable using existing namespace for must-gather operations #1080  
Bug 2023295 : [inspect] Add namespace-scoped networking resources to inspect #1128 Bug 2074237 : clarify use of –image-stream for oc new-app #1119 Deprecate oc serviceaccounts command #1126  
Replace temporary show-managed fields hack with a proper solution #1127  
Bug 2080416 : Fix project command auto completion #1125 Remove long-deprecated commands oc adm migrate etcd-ttl|image-references|legacy-hpa|storage #1124  
Fix squash merge regex #1118  
Bug 2007647 : Add squash-merge support into oc adm release info #1116 Bug 2071614 : Remove network CRDs scheme registration #1110 Bug 2074902 : Pass non-zero exit code to debug command #1115 adm inspect: delete unused pod URL getting code #1032  
Bug 2073113 : do not report docker conf deprecation warning when the docker is not available #1106 Drop k8s carries and bump to kubectl v0.24.0-beta-0 #1092  
Bug 2075647 : pkg/cli/admin/upgrade: Use PATCH instead of POST for spec updates #1111 Add –keep-manifest-list support to oc adm release * commands #1109  
Bug 2041454 : Validate reference-policy for import-image command #1108 Bug 1823143 : wire ICSP lookups to oc image info #829 Use ServerGroupResources instead deprecated ServerResources #1101  
Introduce Jira defects into release info #1100  
Fix component name for oc #1102  
pkg/cli/admin/mustgather: label must-gather ns as privileged #1099  
Obtain OpenShift version from ClusterVersion resource #1091  
Allow triggers on batch/v1 CronJobs #1077  
pkg/cli/admin/upgrade: Mention channel choices #1088  
Add Nutanix platform #1046  
Bug 2057101 : remove klog format and update messages for docker config deprecation #1082 Bug 2056893 : pkg/cli/admin/upgrade: Drop –to-image help warning #1078 Bug 2049889 : logging / help improvements around ‘oc new-app –search’ #1086 Bug 2056122 : expose –keep-startup flag for oc debug #1085 Bug 2052578 : reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories #1059 Add support for batch/v1 CronJob #1081  
OSDOCS-3257 : Adding in new metadata requirement for docs #1072 Update all images to be consistent with ART #1071  
Updating openshift-enterprise-cli images to be consistent with ART #1039  
Bug 2049234 : Fix mirroring images that have dots in their namespace #1063 Bug 2052034 : make sure that we check for resorces and files before picking the simplest path #1062 Bug 2049133 : Fix catalog mirror from files #1058 Comment tolerations used in must-gather #1004  
Remove unused methods and re-use pre-existing ones where needed #951  
Show managedFields in inspect #1051  
Bug 2046319 : improve error message for debug #1053 Bug 2047895 : release: handle aarch64/arm64 naming disparity in mirror #1038 Bug 2044140 : pkg/cli/admin/upgrade: Fix nextStep option sense #1050 Add TMOUT env to debug node pod #1048  
Bug 2044140 : Updated the error message to include the suggestion #1041 Bug 2035717 : Enhancing the output provided when backup collections are attempted #1013 Full changelog  
OCPBUGS-2801 : Backport –credentials-requests-dir for ccoctl gcp delete. #506 OCPBUGS-2883 : Make ccoctl use regional STS endpoint by default #503 OCPBUGS-2278 : Add ccoctl support to create OIDC endpoint with private S3 bucket #500 Update OWNERS to reflect reality. #496  
Bug 2118680 : Refactor Nutanix plugin to use external credentials structs #487 Bug 2105468 : Make ccoctl work with credentials fetched from gcloud cli defaults #477 Bug 2102834 : manifests/00-namespace: Set empty openshift.io/run-level #473 Bug 2093986 : Make pod identity webhook comply to restricted pod security level #469 Updating ose-cloud-credential-operator images to be consistent with ART #466  
manifests/deployment: comply to restricted pod security level #463  
Add a check for no CredentialsRequest manifest in directory #462  
Bug 2067800 : upgrade prometheus/client_golang to v1.12.1 #464 Minor doc updates #461  
Update OWNERS file to reflect reality #460  
Change the ccoctl generated nutanix-credentials secret data format #457  
Skip directories when reading credentials requests #459  
Add nutanix credentials handling with manual mode #450  
Leader election migration 1: ConfigMap & Lease #446  
Updating ose-cloud-credential-operator images to be consistent with ART #449  
Full changelog  
OCPBUGS-3089 : Update OWNERS #71 OCPBUGS-1846 : Add resolver to handle custom endpoints #63 Bug 2094438 : Make AWS URL parsing more lenient for GetNodeEgressIPConfiguration #45 Bug 2092047 : 1.24 rebase #44 Bug 2071914 : azure: default empty environment to AzurePublicCloud #36 Add instructions for how to run image in cloud #31  
Bug 2072439 : Get subnet information from subnet instead of from network addresses #32 Bug 2060334 : Fix Azure VNET lookup when the NIC’s subnet is in a different resource group #26 Bug 2060361 : Fix Unable to enumerate NICs due to a missing ‘primary’ field due to security restrictions #27 Fix run_locally.sh #21  
Updating ose-cloud-network-config-controller images to be consistent with ART #25  
README.md #22  
Full changelog  
Updating atomic-openshift-cluster-autoscaler images to be consistent with ART #221  
Updating vertical-pod-autoscaler images to be consistent with ART #222  
OCPBUGS-2046 : switched policy for PodDisruptionBudget from v1beta1 to v1 in time for 1.25 #244 Bug 2102947 : Have VPA ignore phantom containers named “POD” #234 Bug 2087037 : Rebase onto latest master from upstream #231 Bug 2087037 : Rebase Autoscaler onto upstream release-1.24 branch #227 added bindata.go in e2e/vendor to fix the e2e test failures #225  
add user configurable cluster api version #223  
Full changelog  
OCPBUGS-1762 : add a workaround for a NetworkManager issue #298 OCPBUGS-747 : Use machines instead of nodes to detect masters #307 OCPBUGS-1511 : [release-4.11] Fix a few papercuts #290 OCPBUGS-747 : do not rely on string “master” to be in BMH names #283 Bug 2084215 : Add baremetal prefix to kube-rbac-proxy #272 Bug 2099928 : Add UT for image_customization_test #243 Bug 2088428 : Fix interpretation of Deployment Status Conditions #266 Bug 2080306 : Uplift kustomize and BMO to remove go-getter dependency #262 Change registry reference for image customization controller image, p… #260  
Revert “Allow access to InfraEnv resources from assisted service” #254  
Extract functions for ZTP integration #261  
bump golangci #257  
Change registry reference for image customization controller image #258  
Bug 1961844 : Adding baremetal ClusterOperator relatedObjects directly to its manifest #255 Add baremetal capability annotations #249  
Allow access to InfraEnv resources from assisted service #251  
More updates to the OWNERS file #253  
Update the OWNERS file based on new contributors #252  
Updating ose-cluster-baremetal-operator images to be consistent with ART #242  
Use combined Ironic process, drop RPC and MariaDB #234  
Remove asalkeld and kirankt from Owners #228  
Full changelog  
Bug 2110524 : Improve decision logic around syncing cloud config #198 Bug 2089334 : Use service account credentials for all providers #193 Bug 2067806 : Bump dependencies to K8s 1.24 #192 Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #191  
Bug 2082687 : IBMCloud: Remove CCM port argument #189 Remove port argument and update enivronment variable name from powervs cloud provider deployment #188  
Bug 2074471 : update enabled and use-octavia options in cloud-conf config-map #183 Bug 2074606 : Allow OpenStack CCM to annotate Service objects #184 OpenStack: ensure config-map is updated only when needed #185  
Updating ose-cluster-cloud-controller-manager-operator images to be consistent with ART #166  
Bug 2051457 : CCM PodDisruptionBudgets #174 Add a troubleshooting doc #177  
Add generation of config for OpenStack CCM #178  
Add PowerVS cloud controller manager #179  
Use “go install” to fetch binaries #161  
Bug 2059716 : Ensure release version is set on config sync controller #176 Bug 2059716 : Ensure release version is injected into all controller status clients #175 Bug 2055723 : start watching KubeControllerManager resource #173 Changes to support config map sych for Power VS Platform #172  
Added credential request file for Power VS #171  
Update OWNERS #170  
Fix a typo in watch predicates #169  
Bug 2047998 : Alibaba should deploy image from release payload #167 Full changelog  
Update images to be consistent with ART #253  
Bug 2082763 : Drop the OperatorHub CR instance #245 bump openshift/api, client-go #251  
manifests/deployment: comply to restricted pod security level #248  
Reorder the empty Node CR resource to ensure it is applied after the Node CRD #244  
Bump(o/client-go); Add empty config/v1/node/cluster object #238  
Bug 2074243 : Bump openshift/api to c3bb724c28 #243 Revert config/v1/Node crd.yaml #242  
Bump openshift/api, openshit/client-go to add ImageMirrorSet CRDs #236  
bumped openshift API to have node object related changes #233  
Full changelog  
Bug 2097283 : Update manifests to v6.0.1 #121 Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART #119  
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #118 AUTH-133 : assets: comply to restricted pod security level #120 manifests/deployment: comply to restricted pod security level #116  
Bug 2057079 : Fix race when setting Progressing condition #114 Updating ose-cluster-csi-snapshot-controller-operator images to be consistent with ART #113  
Full changelog  
OCPBUGS-2528 : keep dns-default annotations intact #349 OCPBUGS-2050 : Reconcile the DNS namespace #346 OCPBUGS-2112 : [release-4.11] Backport Address e2e failures due to pod security #347 Bug 2092041 : Bump k8s to 1.24 and Golang to 1.18 #328 Bug 2095941 : topology aware hints to prefer to keep dns traffic within a zone #322 Bug 2093236 : propagate retry request for progressing updates #325 Bug 2061244 : desiredDNSDaemonSet: Allow autoscaler to evict #320 Bug 2037190 : Skip frequent updates to progressing and degraded conditions to prevent status flaps #318 NE-755 : Support CoreDNS forwarding DNS requests over TLS #314 AUTH-182 : manifests/deployment: comply to restricted pod security level #319 NE-815 Extract test Corefiles inside DNS ConfigMap test to individual files #315  
Added gcs278 to OWNERS #312  
And 1 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-2919 : update prometheus alerts #957 OCPBUGS-2113 : Add niceness to important etcd processes #943 OCPBUGS-1607 : increase etcdGRPCRequestsSlow thresholds #934 OCPBUGS-1354 : fix cert rotation on IP changes #931 OCPBUGS-685 : preserve log message on failures #924 Bug 2108595 : Cherrypick move etcd monitoring dashboard… #893 Bug 2107070 : etcd-metrics container is flooding logs #889 Bug 2108175 : Fix etcd minor upgrade backup #891 fixing unit test health flakes with tolerance #881  
Bug 2105146 : fix degraded missing cluster version #877 Bug 2105247 : Add etcd pod liveness probe #879 Bug 2101460 : add timeout to health checks #863 Bug 2095703 : fix multi-address member removal #858 Bug 2092880 : avoid extrapolation in leaderhip alert #851 Bug 2092395 : etcdHighNumberOfFailedGRPCRequests alerts with wrong results #843 Bug 2064024 : Update library-go to 80f9619c2 #816 Bug 2090929 : cluster-backup.sh script has a conflict to use the ‘/etc/kubernetes/static-pod-certs’ folder if a custom API certificate is defined #845 Bug 2085997 : defines a startupProbe for etcd container #840 Bug 2085997 : brings back initial delay seconds to the previous value #839 Bug 2085997 : increase initial delay seconds to match the discovery timeout #838 Bug 2085997 : removes TestScalingUpAndDownSingleNode #813 Bug 2073901 : revisit defrag controller degradation #812 Bug 2087983 : remove etcd_perf before restore #823 Updating cluster-etcd-operator images to be consistent with ART #831  
Bug 2012065 : Add summary to etcd alert rules #822 Bug 2067738 : update prometheus client #821 Bug 2061496 : Adding message to ControllerStarted:RecentBackup condition #760 Bug 2063183 : Upping defrag timeout to 1 minute #762 manifests/deployment: comply to restricted pod security level #802  
test utils changes the way endpoints data key is calculated #814  
Bug 2077160 : Adding Thomas to reviewers and me to approvers #815 Bug 2079724 : manually disable defrag #798 fire an event on successfull member removal #808  
Scale up new members as learners #758  
clustermemberremovalcontroller must examine cluster health before removing a member #805  
Bug 2077833 : add more logging #800 Bug 2076793 : pkg/operator/upgradebackupcontroller: Pivot from Failing to ReleaseAccepted #799 Bug 2076831 : fixing client readyz leak #796 exports common functions used by the scaling controllers #795  
introduces MachineDeletionHooksController #781  
ClusterMemberController adds members whose machines are not pending deletion #790  
Update owners with new team members #792  
member removal part two #779  
adds attemptToRemoveLearningMember to the cluster member removal controller #791  
Bug 2063831 : Replace quorumguard and add readyz server #789 Bug 2074544 : revert #784 and #780 to fix ipv6 #786 Bug 2075015 : Revert “replace quorumguard and add readyz server” #787 no pending on etcdHighNumberOfLeaderChanges 1st 1h #783  
Bug 2063831 : replace quorumguard and add readyz server #763 adds attemptToRemoveLearningMember to the cluster member removal controller #784  
Bug 2053596 : Increase IBMCloud VPC heartbeat timeout to 500ms and leader election timeout to 2500ms #759 ClusterMemberController adds members whose machines are not pending deletion #780  
refactors the member removal controller #782  
Revert “Merge pull request #768 from p0lyn0mial/member-removal-part-two” #778  
member removal part two #768  
turn on initial corruption check #770  
adds helpers functions used by the vertical scaling controllers #769  
introduces ReadDesiredControlPlaneReplicasCount #767  
Bug 2057642 : Change fsync degraded reason to CamelCase #756 Bug 2057644 : Fix FSyncController degraded latch #754 an e2e test for checking scaling up and down by one master node #740  
adds member removal controller #737  
Bug 2053596 : Increasing election timeout for IBMCloud VPC #746 Bug 2053582 : Track static pod lifecycle #750 Bug 2053582 : Track static pod lifecycle #748 changes the signature of the MemberRemove method to accept a memberID (uint64) not a Name (string) #741  
Bug 2052270 : pkg/operator/metriccontroller/fsync_controller: Fix “treshold” -> “thresholds” typos #743 an e2e test for checking scaling up by one master node #732  
wait for other installers to finish #736  
Bug 2042501 : bump library-go #729 And 6 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Bug 2110528 : Fix another issue with route status clearing race condition caused by not validating generation id #813 Bug 2108214 : Fix route status clearing race condition caused by using the cache #807 Bug 2106116 : Bump openshift/api for healthCheckInterval fix #806 Bug 2093462 : status: Watch clusteroperators #714 Bug 2092042 : Bump vendored k8s libraries to 1.24 #768 Bug 1944851 : Clear route status when an ingress controller is deleted or a route is un-admitted #724 Bug 2094932 : Patching config.ingresses status requires patch permissions #788 Bug 2097555 : Fix loadBalancerServiceAnnotationsChanged check and update #783 Bug 2094932 : Ingress operator needs permission to list nodes #785 Bug 2095229 : desiredRouterDeployment: Check for nil hostNetwork #780 Bug 2094962 : Fix flakey logic in haproxy timeout tests #775 Bug 2094932 : MGMT-10403: Set the defaultPlacement for none-platform SNO clusters installed before 4.11 #767 Bug 2075671 : Add a e2e test that verifies the ingress operator’s cache doesn’t include everything #764 Bug 2055601 : Add cluster tag to *.apps domain record #737 Bug 2080379 : Group all e2e tests as parallel or serial #756 Bug 2082428 : Add MicroSecond processing #762 NE-408 : Allow configuring ELB connection idle timeout #451 NE-825 : Update router to use random balancing algorithm once again #727 Bug 2084433 : AUTH-133: assets: comply to pod security #760 NE-577 : Support a Configurable ROUTER_MAX_CONNECTIONS in HAproxy #735 Add support for route53 in the us-isob-east-1 region + fix #754  
AUTH-184 : manifests/deployment: comply to restricted pod security level #749 Bug 2081447 : desiredRouterDeployment: Fix for port defaulting #753 Bug 2079468 : Enhance the waitForIngressControllerCondition for better CI results #745 NE-882 : Set ROUTER_DOMAIN to enable route subdomain field #674 Specify host port for host networking strategy #694  
Bug 2007246 : Add allowPrivilegeEscalation to the router container #743 MGMT-9797 : Determine number of replicas according to DefaultPlacement #728 Bug 2076193 : Remove special-casing for default ingresscontroller probe parameters #742 NE-585 : Make ROUTER_BACKEND_CHECK_INTERVAL configurable #712 BUG 2076984: test/e2e: add resilience to RBAC test teardown #744  
BUG 2054200: Fix removing custom created service in openshift-ingress with same name #707  
Add Nutanix platform #730  
Revert “Bug 2007246: Ingress Controller does not set allowPrivilegeEscalation in the router deployment” #741  
Bug 2075671 : Fix k8s client cache object global inclusion and duplication. #740 NE-781 : Allow users to tune kubelet probe timeouts #736 Bug 2072106 : Fix test Errorf limitation in go 1.18 #733 Bug 2071139 : add pod eviction permission #734 Bug 2071139 : delete default ingress pod if it is scheduled where another router pod already is #720 Bug 2069457 : Delete LoadBalancer-type service finalizer logic #729 Bug 2021446 : Set canary status as unknown if not admitted to default ingress controller #723 Bug 2066444 : update relatedObjects for clusteroperator status #721 Bug 2007246 : Ingress Controller does not set allowPrivilegeEscalation in the router deployment #718 Bug 1995953 : Add unit test for verifying router deployment env is always sorted #715 Bug 2057762 : Set Upgradeable=False if default cert has no SAN #708 Bug 2055470 : Normalize the AWS internal LB annotation value #704 BUG 2037447: Disable keepalive for canary probe #701  
pkg/operator/controller/ingress/status_test: Fix ...-tag -> ...-tags test-case description #700  
Added gcs278 to OWNERS #698  
And 1 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-2160 : [release-4.11] serviceaccountissuer: fix case when default value is being used and not trusted after change #1394 OCPBUGS-2199 : [release-4.11] Wire support for trusted service account issuers #1386 Bug 2100155 : specify resource=pod for PSa violation alerts #1362 Bug 2100155 : Add new alert on Pod Security violations #1361 Bug 2050407 : revert dev cert rotation #1307 Bug 2100347 : Bump(openshift/library-go) latency profile observer, controller #1360 Bug 2074031 : Support tuning GOGC within a limited range. #1359 Bug 2086519 : exempt build controller SA from PodSecurity admission #1358 Bug 2067456 : OCP 4.11 should be firing APIRemovedInNextEUSReleaseInUse and APIRemovedInNextReleaseInUse for APIs removed in 1.25 #1332 Bug 2086092 : bump to k8s v0.24.0 #1341 Updating ose-cluster-kube-apiserver-operator images to be consistent with ART #1356  
Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile #1328  
Update library-go to 80f9619c2 #1354  
Fix debugging information #1353  
Revert “Revert “Merge pull request #1338 from stlaz/more_restrictive_sccs”” #1351  
Revert “Merge pull request #1338 from stlaz/more_restrictive_sccs” #1350  
manifests/deployment: comply to restricted pod security level #1348  
add more restrictive SCCs to the platform #1338  
[rebase v1.24]: remove insecure-port from kas args #1347  
remove enable-swagger-ui from default config #1343  
AUTH-2 : reenable PodSecurity on privileged level #1308 render apirequest count to reduce startup errors #1336  
Bump(openshift/api): to get CSI changes #1310  
Revert pull request 1309 #1316  
fix label for max-in-flight-recorder #1333  
Bug 2063342 : vendor: bump library-go #1330 Bug 2067384 : OCP 4.10 should be firing APIRemovedInNextEUSReleaseInUse for APIs removed in 1.25 #1331 Bug 2053582 : Track static pod lifecycle #1323 Bug 2053582 : Track static pod lifecycle #1321 Bug 2052513 : degraded webhook conditions to errors #1313 Bug 2052513 : disable webhook supportability during upgrade #1309 update library-go to get rapid installer pod fixes #1300  
Updating ose-cluster-kube-apiserver-operator images to be consistent with ART #1299  
Full changelog  
OCPBUGS-826 : gc watcher should close connections after throwing away a client #654 Bug 2118282 : Make KCM-O conditionally dependent on monitoring stack availability + reconcile #653 Bug 2114580 : add runbook urls to KCM-o alerts #644 Bug 2104552 : Decouple KCM-O’s status from monitoring stack #637 Bug 2099668 : introduce GC Watcher controller and add alerts for GarbageCollector #623 Bug 2087684 : Reject transition from/to extreme latency profiles (default<->low) #629 Bug 1902307 : Let vsphere-legacy-cloud-provider update node objects #631 Bug 2097186 : add rbac roles for the podsecuritylabelsyncer even outside bootkube #632 Bug 2053622 : PodDisruptionBudgetAtLimit should not alert when no app/pods exist #630 Bug 2086092 : bump to k8s v0.24.0 #614 Bug 2086519 : bindata/../namespace-openshift-infra: label namespace as privileged #628 Bug 2086958 : e2e: Fix test pod disruption budget at limit alert #627 Bug 2086959 : e2e: fix flaky TestLogLevel #626 Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #624  
Config Observer and Latency Controller for nodes.config.openshift.io WorkerLatencyProfile #611  
add RBAC for PSa label syncing controller #616  
Fix debugging information #621  
manifests/deployment: comply to restricted pod security level #619  
policy-controller RBAC: use the new leases API #618  
Bug 1918690 : update resource-graph to include current resources #613 Update OWNERS #612  
Bump(openshift/api): to get CSI changes #601  
Bug 2053582 : Track static pod lifecycle #608 Bug 2053582 : Track static pod lifecycle #606 Update to use configmapleases #602  
Bug 2029470 : update library-go to get rapid installer pod fixes #597 Bug 2045872 : allow cluster-policy-controller to fallback to default cert #594 Full changelog  
Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #426  
Bug 2117746 : Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #435 Bug 2062459 : Introduce sync unit test #430 Bug 2086092 : bump to k8s v0.24.0 #420 Bug 2062459 : Fix bootstrap leader election config #428 Bug 2064024 : README: fix scheduler configuration formatting #427 Bug 2064024 : Update library-go to 80f9619c2 #425 Fix debugging information #424  
manifests/deployment: comply to restricted pod security level #421  
[rebase v1.24] remove –port flag from bootstrap #422  
Update OWNERS #419  
Updating ose-cluster-kube-scheduler-operator images to be consistent with ART #406  
Bug 2053582 : Track static pod lifecycle #417 Bug 2053582 : Track static pod lifecycle #415 Update resourcelock to configmapleases #412  
Bump(openshift/api): to get CSI changes #411  
Do not wait for a port which is no longer used by the scheduler #410  
update cert injection annotations to beta #409  
Bug 2029470 : update library-go to get rapid installer pod fixes #407 Full changelog  
Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART #82  
bindata: comply to restricted pod security level #85  
manifests/deployment: comply to restricted pod security level #83  
Full changelog  
Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #165 Set default container for log retrieval #163  
Define all flags before parsing flags #161  
Bug 2047702 : Reconcile CSRs approved by other controllers #160 Add techpreview manifests for CAPI machines #159  
Bug 1978303 : update approve condition logic #158 Allow to define several API groups #157  
Shrink csr_check_test.go size #155  
Make ‘reject_expired’ tests works in any time zone #154  
README.md: Elaborate a bit more on node join #150  
Updating ose-cluster-machine-approver images to be consistent with ART #153  
Full changelog  
OCPBUGS-4030 : test: increase timeout when checking remote write metrics #1821 OCPBUGS-1790 : Pass user-defined Alertmanager service in shared configmap #1781 OCPBUGS-1551 : Dedicated kubelet ServiceMonitor for prometheus-adapter #1774 Bug 2111345 : go.mod: update openshift-api to current release-4.11 tip #1755 Bug 2103127 : fix alert controllers when not in techpreview #1709 OCPBUGS-516 : [release-4.11] Give precedence to CMO config map proxy config #1743 Bug 2108595 : Removes etcd related dashboards from CMO #1723 Bug 2109731 : increase alertmanager startupProbe failure threshold #1726 Bug 2107493 : Set HA convention on admission-webhook #1717 Synchronize versions of the downstream components #1698  
MON-2091 : Add support for user-defined alert relabel configs #1676 Bug 2037513 : Fix dashboards having container_fs* metrices in queries #1554 MON-2552 : Add support for user-defined alerting rules #1675 Pin Jsonnet versions for release 4.11 #1693  
Bug 2091902 : Improve performance of Prometheus Adapter #1692 Adding a usage metric for Openshift Sandboxed Containers #1662  
MON-2567 : enable AlertmanagerConfig v1beta1 #1682 Synchronize versions of the downstream components #1689  
Bug 2096315 : Create a patch im CMO for NodeClockNotSynchronising #1604 *: bump Go dependencies #1688  
Bug 2057832 : Updates recording rule cluster:telemetry_selected_series:count #1646 Bug 2094704 : remove verbose output from kube-rbac-proxy in Prometheus-k8s pod #1684 Allow deployment of dedicated Alertmanager for user-defined alerts #1661  
MON-2480 : Double the ServiceMonitor intervals for SNO #1652 Synchronize versions of the downstream components #1666  
whitelist cluster-logging-operator metrics for telemetry #1546  
Bug 2090838 : ignore flapping host interface ‘tunbr’ #1681 Bug 2089574 : Removes master node selector from PO when running with HostedControlPlane external #1679 Bug 2009352 : IR-254: Collecting registry and image stream usage #1668 Bug 2079292 : Adds necessary SecurityContext settings to UWM deployments #1660 eo metrics for Telemetry #1559  
Bug 2084079 : Refactors CreateRouteIfNotExists to CreateOrUpdateRoute #1671 Add bodysize limit for metric scraping. #1467  
OWNERS: move @fpetkovski, @PhilipGough and @bison to emeritus section #1670  
Updating cluster-monitoring-operator images to be consistent with ART #1667  
Bug 2069068 : Refactors DeleteDeployment to wait for deletion of the deployment #1655 Expose ovnkube_master_egress_routing_via_host via telemetry #1635  
Add runbook for kube persistent volume inodes filling up #1663  
Synchronize versions of the downstream components #1658  
MON-1913 : pkg/manifest: Allow retention to be configurable for Thanos-Ruler in UWM #1651 *: add standalone admission webhook #1640  
Synchronize versions of the downstream components #1650  
Bug 2064705 : [bot] Synchronize versions of the downstream components #1648 MON-2213 : Expose the /federate endpoint of UWM Prometheus as a route #1633 Bug 2074807 : [bot] Update jsonnet dependencies #1643 Bug 2073112 : Adds UWM extrenalLabels from Prometheus to ThanosRuler labels #1645 Extend e2e metric test #1642  
MON-2193 : pkg/manifests: Expose retention size settings for UWM Prometheus #1630 MON-2193 : pkg/manifests: Expose retention size settings for Platform Prometheus #1579 MON-2206 : Adds sigv4 settings for remote write #1638 Bug 2074084 : CMO metrics not visible in the OCP webconsole UI #1634 Bug 2033575 : use bearer token as fall-back authn method #1637 Bug 2067740 : update prometheus/client_golang version #1636 MON-2207 : Expose Authorization settings for remote write in the CMO configuration #1598 Bug 2057967 : [bot] Update jsonnet dependencies #1628 Add Oauth2 settings to prometheusK8s.remoteWrite config #1617  
MON-2212 : Expose the /federate endpoint of UWM Prometheus as a service #1601 Bug 2067005 : Remove Grafana from Prometheus rules added by CMO #1629 MON-1708 : Enforce label scrape limits in UWM #1350 CHANGELOG: add entry for https://issues.redhat.com/browse/MON-2245  #1623  
Bug 2048333 : [bot] Update jsonnet dependencies #1621 doc: add Testing section to CONTRIBUTING.md #1620  
pkg/manifest: remove unused function AlertmanagerExternalURL #1622  
Bug 2063047 : Add condition to check for relative paths in query log file path #1608 Synchronize versions of the downstream components #1616  
Update jsonnet dependencies #1615  
Documentation/data-collection: Collect cluster_version_capability #1607  
MON-2269 : test: deploy prometheus as remote_write receiver #1602 Synchronize versions of the downstream components #1614  
Documentation/data-collection: Assign cluster-version metrics to Cincinnati team #1606  
Bug 2067004 : manifests: Remove Grafana image references #1612 Bug 2063905 : [bot] Update jsonnet dependencies #1610 Bug 2067062 : [bot] Synchronize versions of the downstream components #1609 Bug 2065577 : CMO now creates by default an empty CM for UWM #1603 Automated jsonnet dependencies update #1600  
Bug 2065682 : manifest: explicitly drop the temporary cluster id label #1597 Bug 2065076 : manifests: advertise public urls without path component #1595 MON-1632 Removing grafana from monitoring stack #1557  
Makefile: add tools to path for run-local target #1592  
MON-2245 : manifest: Add cluster_id label to remote_write configurations #1578 OADP-22 : Send Telemetry metrics on OADP #1536 Bug 2063047 : Added support for full-path query log file #1587 MON-2222 : Enable validating webhook for AlertmanagerConfig custom resources #1567 Automated dependencies version update #1591  
Automated jsonnet dependencies update #1583  
Bug 2060083 : React to changes in clusteroperators #1575 Automated dependencies version update #1540  
Bug 2050120 : Sanitize all regex allow/denylist used in KSM component #1574 Bug 2060091 : Properly deal with an empty console URL #1576 Bug 2051470 : Update prometheus-operator and sync jsonnet #1571 manifest: use path module to construct externalURL #1562  
Bug 2057403 : jsonnet: Give CMO explicit get permissions for ReplicaSets #1564 Bug 2037513 : Update jsonnet dependencies and prometheus-operator version #1556 Bug 2057025 : fix init-config-reloader resource requests #1563 go.mod: switch to go 1.17 #1561  
Use service ca beta annotation #1560  
: Add runbooks for FailedToSendAlerts #1530  
pkg: drop code removing the legacy Alertmanager service monitor #1551  
Bug 2050707 : test: account for pdb and Prometheus’ staleness period #1553 MON-1631 : prometheus: remove ui access #1532 Updating cluster-monitoring-operator images to be consistent with ART #1550  
Full changelog  
Jira OCPBUGS-3852: IPsec: Fix broken counter++ expression #1638  
Bug OCPBUGS-945: Add EgressQoS DstCIDR format validation #1551  
OCPBUGS-3911 : SDN: /var/run mount cleanup #1631 Bug OCPBUGS-1075: HyperShift: Differentiate resources deployed by different CNO instances #1555  
Bug OCPBUGS-1367: Hypershift: Allow configuring hostname and labels on the route #1559  
OCPBUGS-393 : Setting disableNetworkDiagnostics: true does not persist when network-operator pod gets re-created #1530 Bug OCPBUGS-500: Kuryr: Bump timeoutSeconds for livenessProbe #1535  
Bug 2096456 : Add init container to ensure that Status.podIP is set before postStart hooks run #1512 Bug 2108236 : Revert “Bug 2085089: Pass enable-udp-aggregation=true to ovn-kubernetes” #1513 Bug 2085089 : Pass enable-udp-aggregation=true to ovn-kubernetes #1489 Bug 2089681 : Disable EgressIP reachability check in hypershift deployments #1485 Bug 2084062 : Make northd probe interval default to 10 seconds #1494 Bug 2100079 : Update sdn-controller perms for “configmapsleases” leaderelection #1496 Bug 2099357 : k8s 1.24 bump: add RBAC coordination leases for ovn-k master #1490 Bug 2094071 : Add southboundStale alert runbook #1481 Bug 2095772 : bindata: managed: reduce memory requests to align with observed usage #1479 Bug 2095756 : client: register types during init, not later #1483 Bug 2090336 : Multus should log at a verbose log level (without a logfile) #1474 Bug 2092047 : cncc: add RBAC coordination.k8s.io leases #1461 Bug 2089805 : Enable config duration for OVN-Kubernetes #1455 Bug 2090437 : Bump CNO to k8s 1.24 #1459 Bug 2073452 : Copying CNI binaries should be an atomic operation. #1472 Bug 2092495 : ovn: use up to 4 northd threads in non-SNO clusters #1471 Bug 2091167 : incorrectly setting rbac role for certificatesigningrequests #1463 Revert “Copying CNI binaries should be an atomic operation.” #1466  
Bug 2073452 : Copying CNI binaries should be an atomic operation. #1462 Bug 2076776 : remove patch permissions from ovnkube-node service account #1450 Bug 2089968 : ensures type: Directory for multus host paths #1453 Bug 2090343 : [temporary] Adds multus debug logging #1456 Bug 2087942 : bump to go 1.18, lint improvements #1451 Bug 2086461 : Hypershift: Also add default for Azure mtu #1454 Bug 2086461 : AWS: Use hardcoded MTU to speed up cluster creation #1441 Bug 2087556 : Fix rendering DPU manifests #1448 Bug 2086506 : hypershift: respect statefulset when upgrading ovnk #1447 Bug 2087135 : Fixing Hypershift nodeport flow #1440 Bug 2086544 : Stop passing hosted cluster token as a parameter to ovnkube-master #1446 Bug 2086437 : Enable EgressQoS controller #1430 Bug 2086143 : Status controller: use a label, rather than watching all objects #1431 Bug 2082235 : manifests: Add in service, service-cert, and ServiceMonitor #1433 Bug 2023295 : Cleanup CNO relatedObjects #1432 Bug 2079422 : Bump PodDisruptionBudget to v1 #1427 Re-reconcile network on configmap, stop watching all configmaps in proxy controllers #1416  
hypershift: add ovnkube-node-proxy container in ovnkube-node ds #1408  
Hypershift: enable TLS for ovnkube-master metrics #1423  
Add gm metric record to use for telemetry exposure #1425  
Revert “ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds” #1428  
Bug 2082611 : Limit Kuryr pods permissions #1367 Bug 2076877 : Bump FlowScema apiVersion to v1beta2 #1419 bindata/network-diagnostics, cloud-network-config-controller: comply to restricted pod security level #1406  
Remove ObjectMeta.ClusterName usage #1421  
Hypershift: Fix ovnkube-master priority class and set resource requests on token-minter #1420  
add more sysctls to the multus allowlist #1411  
ovn: fix northd preStop command handling #1414  
Add control-plane-component label to ovnkube-master for hypershift #1422  
Add link to runbook urls #1417  
Hypershift: Copy all CNO conditions to HostedControlPlane status #1415  
ovn: reduce SB<->ovn-controller inactivity probe to 30 seconds #1412  
Bug 2075475 : Add default-route field to egress-router k8s.v1.cni.cncf.io/networks #1390 OCPVE-106 Customize rollout strategy to fix SNO upgrade #1392  
Bug 2080255 : SDN: Re-add list/watch/get permissions for nodes needed for EgressIP #1409 Bug 2071859 : Switch dnsPolicy to Default for OVN hostNetwork pods #1395 Revert “Revert ipsec: Allow enablement/disablement at runtime” #1384  
ovnkube: export OVS metrics along with OVN metrics #1393  
Bug 2078910 : Correct runbook_url field location within schema #1396 Adds dougbtv to owners as approver and reviewer #1397  
Bug 2072215 : Make the use of the ip-reconciler cronjob opt-in by detecting IPAM type usage #1369 ovn-kube hypershift: fix pipefailure that prevents HA startup #1394  
Bug 2063123 : Drop Node update permission for sdn-node #1350 OVN-K alert: Increase severity and add runbook_url for NoRunningOvnMa… #1327  
Remove Kuryr mutating DNS webhook #1363  
raise the alert NoOvnMasterLeader to critical and add the runbook url #1328  
Bug 2072710 : Make northd probe interval default to 10 seconds #1386 hypershift: get control plane replicas from hcp #1385  
Bug 2072766 : Reserve port TCP/9104 for cluster-network-operator #1378 Multus: split pod/status rbac #1340  
add runbook link for NodeWithoutOVNKubeNodePodRunning and V4SubnetAll… #1366  
OVN: remove detecing db_ip via kapi #1368  
Hypershift: Respect publishing strategy of OVN southbound database service #1349  
Proxyconfig: Add a knob for Hypershift to enable proxying internal apiserver address #1381  
Bug 1983056 : Kuryr: Update CRD from upstream #1360 hypershift: disable TLS for ovnk master metrics #1382  
hypershift: enable publishNotReadyAddress explicitly for ovnk-master service #1372  
Bug 2070047 : Bump max value of hist quantile for kuryr_cni_request_duration #1359 Don’t return err with empty relatedClusterObject annotation #1379  
hypershift: enable ovnk-master metrics in management cluster #1374  
Use (un)setProgressing for pod status update #1376  
Use the hosted cluster token explicitly #1370  
HyperShift: Watch StatefulSets in the management cluster #1364  
Exclude openshift-kube-apiserver and openshift-apiserver service/endpoints from connectivity checks in hypershift #1375  
Run ovnkube-master statefulset pods in parallel #1361  
Add ibm-cloud-managed annotations to 02-cncc-credentials.yaml, this is required in HyperShift #1358  
Add ipsec daemonset for hypershift managed cluster #1356  
Add statefulset in status manager #1345  
hypershift ovnk route status #1341  
Add tuning cni sysctl allowlist to nodes #1347  
Bug 2058368 : move enable memory trimming to readiness prob #1365 Add ovnkube-node initContainer to make sure sbdb is up before running other containers #1354  
Vendor: pull in hypershift #1346  
Hypershift: Use token minter instead of a kubeconfig in ovn-kubernetes master #1344  
Add an option to define the client name for in-cluster config #1342  
Add ovnkube manifests for hypershift #1329  
network, bootstrap: don’t get apiserver from the environment #1339  
Fix MTU detection for multi path default routes #1338  
Multi cluster support in CNO #1319  
Fix golang image version in Dockerfile #1330  
Remove empty selector from the mtu prober job. #1331  
Switch to server-side apply #1304  
Probe MTU from a Job, rather than directly in the CNO #1313  
Bug 2058368 : Move memory-trimming-on-compaction out of dbchecker to nbdb/sbdb #1320 Fix group for CVO override used for running CNO locally #1314  
Bug 2058671 : ip reconciler: auto clean failed jobs #1318 Bug 2037721 : Do not apply OVN-Kubernetes PodDisruptionBudget on single-node clusters #1307 ovn: stop spawning the ovn-nbctl daemon #1315  
Bug 1944264 : ovnkube: gracefully terminate databases from preStop #1312 Bug 2044227 : Add rolling update strategy for Kuryr-CNI. #1311 Bug 2032559 : Block DualStack migration for unsupported cluster types #1257 Bug 2010361 : SDN alerts: conform to monitoring team style guide #1248 Update project owners #1309  
Bug 2048575 : The Whereabouts ip-reconciler should use api-int load balancer #1302 Bug 2048793 : Kuryr: Decrease vif_annotation_timeout #1293 Bug 2049613 : Use a separate configmap for mtu migration config to avoid pod restart #1299 Fix bond cni source directory path #1295  
Updating cluster-network-operator images to be consistent with ART #1294  
Full changelog  
Revert PAO and later changes #330  
And 66 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Bug 2111901 : Add namespace and RBAC needed for ingress-to-route #251 Bug 2111992 : BUILD-417: Adding leader election leases #252 Bug 2110715 : Set openshift.io/run-level to nil in openshift-controller-manager namespace #249 BUILD-418 : Rebase to k8s 1.24 #242 Add user coreydaley as an approver #241  
Bug 2086519 : AUTH-133: bindata: comply to restricted pod security level #240 Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART #236  
manifests/deployment: comply to restricted pod security level #239  
Bug 2067820 : Update prometheus client_golang from 1.11.0 => 1.11.1 #238 Bug 2042587 : Simplify Sync of Global CA ConfigMap #233 update cert injection annotations to beta #237  
Full changelog  
Bug 2095716 : [psalabelsyncer] - remove openshift-operator from the refused list to sync since it is used by OPC/OLM users to install Operator solutions #79 Bug 2086519 : Introduce Pod Security Admission Label Synchronization controller #75 Bug 2067822 : Update deps #78 Updating cluster-policy-controller images to be consistent with ART #74  
Update OWNERS #76  
Full changelog  
OCPBUGS-2092 : Use X.Y floating tags for golang #467 Bug 2086086 : Update Cluster Sample Operator dependencies and libraries for OCP 4.11 #433 update jenkins CPaaS image refs prior to 4.11 GA #432  
Bug 2086086 : Update Cluster Sample Operator dependencies and libraries for OCP 4.11 #431 Bug 2095256 : Samples Owner needs to be Updated #429 Bug 2086086 : Update Cluster Sample Operator dependencies and libraries for OCP 4.11 #428 AUTH-133 : manifests/deployment: comply to restricted pod security level #425 Updating ose-cluster-samples-operator images to be consistent with ART #426  
JNKS-289 : pull in jenkins imagestream updates (add back maven/nodejs streams) #422 Jira SO-19: Make sure template and imagestream api version is groupified #420  
JNKS-287 : remove imagestream manifest refs; remove override of jenkins images with payload images #416 Bug 2010364 : OpenShift Alerting Rules Style-Guide Compliance #419 Bug 2067823 : Taking care of CVE-2022-21698 #418 Bug 2064610 : Remove duplicate v1 from cakephp-mysql templates #417 manifests: Add capability.openshift.io/name #414  
Updating ose-cluster-samples-operator images to be consistent with ART #412  
Full changelog  
OCPBUGS-689 : correct sc error messages for ibm and alibaba platforms #313 Bug 2102576 : DefaultStorageClassController reports fake message on azure and openstack #298 Bug 2109205 : HTTPS_PROXY ENV missing in some CSI driver operators #302 Bug 2077599 : Fix vCenter / ESXi version alerts #290 Bug 2097400 : Allow Shared Resource Driver to operate validating webhook #288 Bug 2077050 : Un-Revert “OCP should default to pd-ssd disk type on GCP” #284 Bug 2081557 : Fix DefaultStorageClassController getting Available=False on error #277 Bug 2088533 : remove unused ‘-v’ for shared resource operator as part of klogv2/openshift api/ k8s bump #287 Bug 2086231 : BUILD-405: Install the Shared Resource CSI Driver WebHook #278 Updating cluster-storage-operator images to be consistent with ART #282  
Bug 2077050 : Revert “OCP should default to pd-ssd disk type on GCP” #283 Bug 2077599 : Alert on vCenter < 7.0.2 #279 Bug 2077050 : OCP should default to pd-ssd disk type on GCP #273 Bug 2079197 : alert when more than one default storage class is detected #276 manifests/deployment: comply to restricted pod security level #274  
remove openstack in-tree storage class #271  
remove azure in-tree storage class #272  
Azure File CSI Driver Operator is GA in OCP 4.11 #266  
Add missing ibm cloud annotations to prometheus rbac #267  
no CredentialsRequests in ibm-cloud-managed #253  
Bug 2060509 : Incorrect installation of ibmcloud vpc csi driver in IBM… #264 Bug 2049872 : cluster storage operator AWS credentialsrequest lacks KMS privileges #263 Bug 2043132 : Add metrics for vsphere operator #262 Bug 2050300 : Don’t set generation in object comming from cache #261 Updating cluster-storage-operator images to be consistent with ART #260  
Full changelog  
Updating ose-cluster-update-keys images to be consistent with ART #43  
Update OWNERS #44  
Full changelog  
OCPBUGS-2293 : Allow unknown capabilities during payload load and implicit enablement checking #854 OCPBUGS-1251 : Add admin-gate ack-4.11-kube-1.25-api-removals-in-4.12 #836 OCPBUGS-306 : pkg/cvo/sync_worker: Trigger new sync round on ClusterOperator versions[name=operator] changes #826 Bug 2114602 : pkg/cvo/updatepayload: Set ‘readOnlyRootFilesystem: false’ #811 Bug 2115564 : pkg/clusterconditions/promql: Cap PromQL queries at 5 minutes #815 Bug 2100533 : remove local golang lint #792 Bug 2097067 : pkg/cvo: retain initial completed update history entry #791 Updating cluster-version-operator images to be consistent with ART #779  
Bug 2091770 : pkg/cvo/updatepayload: Guard against ‘rm -fR -whatever’ with ./* #783 Bug 2071998 : pkg/cvo/updatepayload: Event when forcing through a sig-verification failure #763 Bug 2081895 : lib/resourcebuilder: Drop Get from check*Health functions #780 Bug 2079789 : capability: Init prior known from CV status #773 Bug 2084331 : vendor: Bump library-go to pick up manifest checkResourceEnablement fix #781 Bug 2081895 : lib/resourcebuilder/apiext: Restore check for Established=True CRDs #771 Revert “admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate” #775  
Bug 2080429 : pkg/cvo/sync_worker.go: Save overrides and capabilities #770 admin-gates: Add ack-4.11-kube-1.25-api-removals-in-4.12 gate #772  
Bug 2079789 : pkg/cvo/sync_worker.go: Initialize implicitlyEnabledCaps #768 Bug 2072389 : Do not save desired update on load failures #766 Bug 2070805 : pkg/cvo/updatepayload: Restore shell for rm globbing #767 Bug 2070805 : pkg/cvo/updatepayload: Shift previous-download removal into the job #765 Bug 2070854 : syncWorkerStatus: Avoid saving stale status values #759 Implicitly enable capabilities on updates #758  
Bug 2070887 : pkg/cvo/sync_worker.go: set implicitly enabled caps earlier #761 pkg/cvo/sync_worker: Log only changed enabled capabilities #762  
Bug 2070805 : pkg/cvo/updatepayload: Prune previous payload downloads #760 capability: disallow disabling, add enabling capabilities #754  
Bump openshift/api to include new marketplace capability #757  
pkg/cvo/metrics: Add a cluster_version_capability metric #755  
vendor: update openshift/api #751  
lib/capability: Sort status.capabilities arrays #752  
pkg/cvo/sync_worker.go: ensure all of SyncWorkerStatus copied #750  
pkg/payload: Log load-time manifest exclusion at V(2) #749  
Consume post install static spec capabilities #744  
Bug 2062568 : lib/resourcebuilder/batch: Stop waiting on Job deadline exceeded #748 Get cluster version object earlier in startup #741  
Bug 1822752 : pkg/cvo: Fix ups from separating load from apply #683 #745 Bug 1822752 : pkg/cvo: Separate payload load from payload apply #683 Bug 2050946 : Fix wrong informer for feature-gate-stopper #739 pkg/payload: Log manifest exclusion #712  
vendor: Bump openshift/api to pick up capabilities #737  
Updating cluster-version-operator images to be consistent with ART #732  
Bug 2050946 : pkg/featurechangestopper: Seed queue to guard against incorrect startingTechPreviewState #736 Bug 2009845 : pkg/cvo/sync_worker: Use current state, not suggested state, for guarding Initializing->Updating #733 pkg/cvo: Drop unused ‘workers’ argument from Operator.Run #719  
Full changelog  
Bug 2067745 : Merge Upstream Master Branch #44 Updating configmap-reload images to be consistent with ART #42  
Updating configmap-reload images to be consistent with ART #41  
Full changelog  
OCPBUGS-2716 : Update dependencies to the registry library and devfile parser #12186 OCPBUGS-3300 : check that user can patch console operator config in s… #12240 OCPBUGS-2447 : Add checks for pods in hpaPodRingLabel #12174 OCPBUGS-1790 : Use Alertmanager services for user-defined alerts from config #12104 OCPBUGS-2077 : Find latest pipeline run without firehose selector #12144 OCPBUGS-2515 : Change annotation to be used for fake helm repositories #12182 OCPBUGS-2014 : Use local test data to mock a devfile registry #12137 OCPBUGS-2451 : updates test id for 3scale #12175 OCPBUGS-1984 : fix helm version dropdown entries #12135 OCPBUGS-526 : improve bug report links #11965 OCPBUGS-1974 : Use displayname for PHCR in the catalog page #12130 OCPBUGS-1782 : Handle fake helm chart repository #12107 Bug 2109573 : Fix operand affinity form field #11861 OCPBUGS-1419 : fetch shared resource imagestreams based on labels instance or name #12056 OCPBUGS-1786 : Fix devfile registry assertion #12108 OCPBUGS-1523 : Show already loaded catalog items after a timeout (3sec) #12070 OCPBUGS-1410 : mock call to /api/devfile in e2e #12020 OCPBUGS-721 : show git icon in repository details page based on git provider #12005 OCPBUGS-1030 : Update registry library dependency to pick up proxy support #12028 OCPBUGS-1070 : Update ODC owner files #11936 OCPBUGS-524 : reset ErrorBoundary state on location change #11968 Bug 2109887 : remove redundant model check to prevent tab reloading #11899 OCPBUGS-185 : Search doesn’t show all entries when name filter is cleared #11975 Bug 2102335 : Implement dynamic plugin dependency resolution #11901 OCPBUGS-541 : Input values in Instantiate Template are disappeared randomly in the developer console #11982 Bug 2116265 : fix failed PipelineRun log texts color in light mode #11941 Bug 2115561 : fix MultiColumnField header alignment used for Pipeline parameters #11935 Bug 2116288 : Fix Monitoring Alert decorator icon color in Topology #11942 Bug 2106755 : fix broken update server link #11830 Bug 2113019 : Update pod YAML sample for restricted pod security admission policy #11916 Bug 2113962 : - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view #11918 Bug 2107777 : Added separate reducers for status and title for pipeline status #11842 Bug 2109052 : Unset the overflow to display sub menu content #11854 Bug 2107871 : Added the spacing between advanced options #11843 Bug 2115315 : fix helm readme bug #11933 Bug 2109709 : Error Loading/404 not found page shown after clicking “Current namespace only” #11864 Bug 2104951 : fix bug where Cluster update modal errors weren’t displa… #11800 Bug 2105910, Bug 2106594: Fix create-namespace e2e test, ESOCKET timeout issue, and a11y violations to unblock CI #11826  
Automation of Eventing-broker-actions | knative - eventing #11503  
Bug 2100669 : Don’t log usernames with the telemetry plugin #11759 Bug 2100159 : [dark theme] Fix build pending icon color in topology sidebar #11756 Bug 2099528 : Restore spacing between/below modal body content #11755 Bug 2099358 : Fix application group background colors #11752 Bug 2100356 : remove Condition tab and create option if the crd is not available #11750 eventing-channel feature | knative-plugin #11634  
Bug 1948556 : Add check if model is defined to prevent RTE #11224 Bug 2099330 : Add accessReview to Edit application grouping option #11745 Bug 2094023 : Add correct pod template labels via add flows #11740 CONSOLE-3061 : Add failed plugins into the notification drawer #11732 CONSOLE-3062 : add Dynamic Plugins to Cluster Overview Status card #11664 Actions on Horizontal-pod-autoscaler | Topology #11642  
Quota charts now show all resource types #11596  
Bug 2099654 : Fix endless re-render loop when associatedDeployment is not defined #11749 Bug 2029797 : if linkTo is false, do not attempt to get path #11696 Bug 2062920 : Remove the namespace dropdown set menu height to prevent unneccessary… #11748 Bug 2087772 : Fix layout issue caused by badges in header of catalog details panel #11711 CONSOLE-3153 : Expose timestamp component as part of the dynamic plugin sdk API #11693 Bug 2093586 : Close quick-search modal on ctrl+space #11741 Bug 2072883 : Fix dashboard graph width tracking #11730 Bug 2094227 : Added Create Service Binding to the top of the action list #11702 Bug 2071747 : Fix the machine configuration docs link #11668 Bug 2096392 : [Dark Theme]: Add white background to node icons in Topology in dark mode #11699 Bug 2022611 : Remove BlockPools tab in external mode #11727 Bug 2015042 : Adding a template from the catalog creates a secret that is not owned by the TemplateInstance #11649 Bug 2077373 : fix dev perspective accessibility issue #11738 Bug 2099763 : update icons for eventSource and eventSink #11731 ODC-6660 : Render topology differently based on zoom level #11698 chore(i18n): update translations: Completed-7034-OCP 4.11 UI Localization- print 219 #11695  
Bug 2099582 : Format and update the repository overview page #11737 Console 3155: Display Operator logos on a white background on dark them to prevent visual issues and consistency #11491  
Bug 2096908 : [Dark Theme]: fix several issues in the dark mode. #11706 Bug 2093601 : allow project access page to update the settings twice #11713 eventing-create-sink-broker feature | knative-plugin #11717  
Bug 2089405 : fix topology build decorator color #11722 Bug 1993916 : Visual feedback on OBC deletion #11415 Bug 2072793 : Update top consumer metrics #11721 Gherkin and automation of topology usability improvements #11566  
Bug 2089675 : Fix for setting position of topology groups with no children #11723 Bug 2096394 : Switch from overriding dark theme pf-c-card background to increasing its boxshadow. #11707 Bug 2091029 : - Cancel rollout action only appears when rollout is completed #11648 Bug 2097000 : fix visualisation of kafka connection along with kafka sink #11718 Bug 2027603 : Fix arbiter zone selection issue #11692 Bug 2090895 : Support startsWith Nav Extension property #11660 Gherkin and automation of support builds v2 in Dev Console #11709  
Bug 2043068 : <x> available of <y> text disappears in Utilization item if x is 0 #11617 Topology-workload-sidebar feature #11605  
CONSOLE-3162 : Implement check for the new i18n annotation for dynamic plugins #11586 Topology-connecting-workloads and editing app | Topology Automation #11452  
Bug 2036629 : Remove NooBaa Management UI link #11680 Bug 2093600 : Added create call before delete call #11704 Gherkin for add git repository in pipeline as code #11681  
Gherkin and automation of dev usability improvements #11601  
Bug 2097163 : Expose useURLPoll hook in internal SDK #11708 Add extensions for project overview inventory and utilization cards #11620  
Bug 2093047 : Clean up duplicate entries in api.md #11705 Bug 2090457 : openshift-debug-node- namespaces do not get deleted for… #11674 Automation of eventing-broker-trigger | knative-eventing #11576  
Bug 2057251 : promql: Improve a few cluster-dashboard queries #11265 CONSOLE-3081 : Adjust darkest purple resource color to one PF shade lighter for better contrast on dark theme. #11685 Automation of event-sources-sink-to-uri | knative-plugin #11450  
Bug 2084453 : - Edit PodDisruptionBudget page sometimes takes user to not synced YAML view #11494 Bug 2094239 : do not show NodesUpdateGroup if there are 0 nodes #11694 Bug 2095687 : fix issue with debugcontainer for build logs #11687 Bug 2095083 : Monitoring dashboards: Increase default graph samples from 30 to 60 #11667 Bug 2096053 : [Dark Theme]: Add white background to Builder Image icons in Git import flow #11689 Bug 2086521 : [Dark Theme]: fix Topology context menu icon to support dark theme #11688 Bug 2094152 : Filter alerts in virtualization overview status card #11653 Remove now unused function getPrometheusExpressionBrowserURL #11609  
CONSOLE-3081 : Adjust pf-c-card background color, when on dark theme, so that it is discernible. #11684 Bug 2095247 : update fetch for dynamic channels in sink as done for source #11682 Bug 2091603 : move terminal tick & add phase handlers #11650 ODC-6694 : New service binding plugin with a list and detail page, updated topology package #11671 Bug 2094833 : Fix empty pipeline run template section for non-admin users #11670 Render icon as a svg instead of img tag to support dark theme #11663  
Gherkin for console dark theme #11643  
Bug 2095231 : Fix default sidebar for resources like Kafka sink, Kafka connection #11683 Bug 2095071 : Fix failing backend test after devfile registry update #11675 ODC-4981 : Add new plugin to support Shipwright Builds and BuildRuns #11641 CONSOLE-2321 : Allow operators installed globally to display operand instances for all managed namespaces in their details #8930 Bug 2094104 : Demo dynamic plugin image tests should be skipped when testing console-operator #11652 Bug 2085407 : Update Node details page to include inline edit labels button #11563 Bug 2065840 : redirect v1beta1 CronJobs #11662 Bug 2092414 : Display only running VMs in Virtualization Overview chart #11651 Bug 2091901 : fix bug where log stream pauses in Chrome #11646 ODC-6670 : Add –telemetry support to console backend (bridge) #11531 Topology-Toolbar Filter Group Gherkin Design and Automation #11610  
Update pf packages to pf-2022-7 #11632  
captures telemetry events for userPreferences, SBO, WTO and getting started #11579  
Add pipelines as code Repository form #11627  
Bug 2077138 : fix {{execute}} regex for multiline executables in QuickStart #11572 CONSOLE-3163 : kubeadmin notifier changes #11578 Bug 2063764 : Operators - OperatorHub : i18n misses #11583 Bug 2092408 : Change icon in virtualization overview permissions card #11623 CONSOLE-2977 : update MCP list page for control plane only updates #11502 Bug 2091746 : Check if spec is available in MCP details page #11613 Bug 2086546 : [Dark Theme]: update Service binding connector color to support dark mode #11600 Bug 2091218 : Update helm to 3.9.0 #11590 Bug 2088489 : fix app selection in list view #11608 Add console-telemetry-plugin #11549  
Bug 2080387 : Pass contextSource to TopologyApplicationActionProvider #11615 Bug 2070000 : Add high priority alerts to overview #11614 Bug 2074635 : fix web terminal start #11597 Bug 2084438 : Change Ping source spec.jsonData (deprecated) field to spec.data #11548 Bug 2089996 : Don’t rerun yarn install when running tests #11517 Bug 2084615 : Fix Add to navigation alignment on search page #11516 Bug 2079685 : Kms details enabled in the StorageClass creation page #11498 [Dark Theme]: fix dark theme issues in pipeline task visualization #11575  
Bug 2077386 : Replaced enum type with const to add translation #11419 Bug 2091854 : Add ‘Unavailable’ status to clusteroperator status filter #11612 Bug 2079818 : Remove duplicate padding from catalog side panel #11602 Bug 2063732 : Workloads - StatefulSets : I18n misses #11589 Prometheus hook returns loaded instead of loading - same as k8s watch… #11568  
Bug 2084635 : Avoid using ‘gp2’ hardcoded storage class #11603 Fix Multiple instances of Object Bucket, Object Bucket Claims under storage section #11540  
Bug 2087546 : Expose getting started card resources #11569 Topology-toolbar-filter feature #11529  
ODC-6497 : Restore checks in environment e2e test #11598 Automation of eventing-camelk | knative-eventing #11577  
e2e: Add package parameter to nightly cypress script #11507  
Bug 2071617 : remove Kubevirt extensions in favour of dynamic plugin #11557 Bug 2090178 : Fix SSH command string #11599 Bug 2081201 : cloud-init User check for Windows VM refuses to accept capitalized #11591 Bug 2074767 : change metrics queries based on metrics level configurations #11449 Bug 2091030 : Expose boot mode field in BMH wizard #11585 Ocp 4.11 UI localization sprint 218 #11582  
update helm catalog description #11562  
Bug 2083154 : Fix missing params and formatting issues in dynamic plug in generated API docs #11501 Bug 2091087 : Adding new team members and removing users not in team #11587 Bug 2090993 : Handle missing BMH for Node gracefully #11492 Add React-Router Docs to our Extension docs #11570  
Form based experience for creating Deployments #11262  
Bug 2090621 : Handle medik8s node maintenance #11504 Bug 2090178 : Fix SSH command string #11567 Bug 2084459 : fixes topology list URI flow #11542 Change metrics autocomplete filter #11555  
Prometheus poll hook can return undefined #11543  
CONSOLE-3081 : swapped labels out for details view and modal #11376 Reposition low resolution alert #11468  
Bug 2084287 : Fix NPE when consuming CSVs with missing informations #11544 chore(i18n): update translations : Completed-7034-OCP 4.11 UI Localization- print 217 #11462  
CONSOLE-3081 : Include pf charts dark theme css file in app.jsx to ensure they are loaded last #11535 Bug 2088304 : Eliminate use of lookaside cache and move to Cachito #11497 Bug 2089271 : Virtualization appears twice in sidebar #11546 Bug 2064256 : Fix topology sidebar update issues #11420 Bug 2088248 : Create HANA VM does not use values from customized HANA templates #11534 Bug 2087944 : fixes kafka sink visualisation #11536 Bug 2079845 : fix catalog filter group getting removed on keyword change #11481 In-context-add-options feature | Topology #11496  
Bug 2088161 : Match dockerfile image name with the name used in the release repo for demo plugin #11524 adds hint and updates helptext for PAC #11520  
Bug 2020483 : Monitoring dashboards: Improve display text for interval variables #10472 Bug 2066782 : Attached disk keeps in loading status when add disk to a power off VM by non-privileged user #11521 Bug 2064239 : Overview page crash if no labels available #11514 Bug 2015356 : Different status shows on VM list page and details page #11512 Bug 2086542 : Fix that Service Binding could not be created via drag and drop #11511 Send activity tick by polling #11390  
Bug 2069654 : Adding missing annotations to create VM from YAML #11518 Improve cross portfolio consistency #11470  
Bug 2081377 : Remove pf-c-code-block__pre since pf updated allows classnames #11431 Bug 2086469 : Monitoring: Fix first panel sometimes not rendered #11505 Updating openshift-enterprise-console images to be consistent with ART #10974  
Bug 2067246 : Removing SSH service selectors to minimum required #11508 Gherkin for pipeline builder to support local tektonhub instances #11448  
Bug 2076553 : fix rolebinding in DevConsole dropping all subjects when updating #11292 Bug 2054735 : Change learn more link in virtualization -> migration tool #11499 Monitoring: Add “fade out” horizontal gradient to Metrics page table #11474  
Bug 2077943 : If there is a service with multiple ports, and the route uses 8080, when editing the 8080 port isn’t replaced, but a random port gets replaced and 8080 still stays #11464 Bug 2086417 : Fix start pipeline default value for GIT REVISION field #11495 change Event Sink and Event Source icons #11437  
Gherkin and automation for PAC bootstrap form #11478  
Bug 2055492 : The default YAML on vm wizard is not latest #11500 Bug 2082566 : Set dashboards timeout based on selected timespan #11477 ODC-6645 : Convert the ProjectHelmChartRepository create form into a form-yaml switcher #11440 Bug 2070457 : and PF-2022-6 PF update to fix Image vulnerability Popover #11489 CCXDEV-7974 : show error message when Insights Operator cannot process results #11399 Bug 2083756 : enable simplifiedAutoLink for ClusterNotUpgradeableAlert #11490 Chart-Area-Visual feature | Topology #11453  
Gherkin Scripts and Automation for Web-Terminal | Dev Console #11378  
CONSOLE-3136 : add conditional updates to Cluster Settings #11445 CONSOLE-3138 : add conditional updates to cluster update modal #11424 Bug 2084124 : fix upstream “Learn more” link in Update cluster modal #11480 Bug 2083641 : fixes apiversion for k8s svc and resource selection for sink for form yaml switcher #11475 Bug 2084292 : Add useDashboardResources hook #11467 Bug 2081067 : add help text indicating Cluster history may be excerpted #11472 feat: Add Deployment History Tab (#1950) #11439  
Bug 2079062 : Update user from node to 1001 similar to console docker file user id #11473 E2E tests: wait for project list to load before creating #11443  
Bug 2068181 : Fix Event source powered with kamelet type source to show associated resources in the sidepanel #11301 Bug 2075592 : add z-index to ocs-drawer to make box-shadow visible #11369 Bug 2078375 : Create VM from template that has sourceRef - will now reflect sourceRed at yaml #11457 Bug 2078769 : Added language translation on filter items #11435 Update QE OWNERS roles for integration tests #11455  
[Dark Theme]: fix quick search bar and  project selector in User Preferences page #11447  
Bug 2076527 : Fix multiple Tektonhub Versions API call #11438 Bug 2070720 : Fix Filter Dropdown & Label Selection State Management #11428 Bug 2076544 : Added margin-bottom for the paragraph component #11404 Bug 2083149 : fix bug where “Update blocked” label incorrectly displa… #11459 GitOps-1941 fixed dark theme color issue #11426  
Bug 2082380 : customize wizard is crashed #11458 CONSOLE-3081 : updated skeleton color definitions, updated sidebar shadow #11408 Bug 2060329 : show Limit exceeded state for large number of nodes in topology #11334 CONSOLE-2936 : Add support for PDB #10445 Bug 2013461 : Import deployment from Git with s2i expose always port 8080 (Service and Pod template, not Route) if another Route port is selected by the user #11355 MGMT-9862 : Add extension for dashboard’s Details card #11272 Automation of event-sources-installation | knative-plugin #11444  
Bug 2072999 : Add params prop to HorizontalNav component #11343 Bug 2079961 : Fix bug where the search results accordion section has no spacing between sidebar. #11446 Document Console to SDK versions #11429  
Bug 2074585 : fix kms issue for mcg standalone #11410 Bug 1990384 : Improve Alertmanager unavailable message #11397 CONSOLE-3090 : [Dark Theme] Convert custom row-filter to use PatternFly ToggleGroup component for styling that is dark theme enabled. #11384 Update topology to Patternfly topology package containing updates and styles. #11166  
Expose UsePrometheusPoll in console-dynamic-plugin-sdk #11295  
Bug 2081743 : disable kubevirt flaky tests #11436 Automation for quick-search-topology | Topology #11396  
Bug 2080873 : Fix crash when stored topology layout isn’t supported anymore #11427 Automation for application and resource grouping | Topology #11395  
Automation of knative-plugin | admin-perspective #11389  
Monitoring: Add duplicate query option to kebab menu #11004  
CONSOLE-3141 : Hide ‘Control Plane’ section in the status card for External controlPlaneTopology #11398 CCXDEV-5788 : render the “last refresh” timestamp in the Insights Advisor widget #11391 CONSOLE 3132: Introduce new console-plugin-shared npm package #11360  
Bug 2071747 : Fix the machine configuration docs link #11417 Bug 2079062 : use xl timeout to verify the demo pull spec is accurate #11416 CONSOLE-3072 : Cluster overview page changes for HyperShift provisioned clusters #11366 Bug 2079673 : disable migrated components #11205 KafkaSink Visualization #11333  
Gherkin and Automation of e2e support for event sinks #11276  
Bug 2027613 : use the correct Alertmanager tenancy proxy #10818 Bug 2039161 : text visibility fixed #10978 Bug 2079663 : change default image features in RBD storageclass #11070 Bug 2079062 : Update the wait time for demo plugin to 60s #11414 Bug 2079216 : Update cluster update reference doc link #11407 CONSOLE-3081 : moved imports #11370 Bug 1994117 : remove orphaned Service Catalog and Chargeback code #11400 Monitoring: Integrate PromQL codemirror for better autocomplete UX #11143  
Bug 2079062 : increase timeout to render toast notification for demo plugin test #11402 Bug 2075189 : Fix failed module resoltion errors in console sdk #11381 Filter out global configs when cluster is externally managed #11383  
Bug 2077150 : Required parent class added so that margin spacing for breadcrumbs is applied. #11394 Bug 2042852 : Topology toolbars are unaligned to other toolbars #11160 [Dark Theme]: fix Topology empty state to support dark theme #11393  
Gherkin and automation for project vulnerability #11325  
Bug 2075117 : Added inline-flex styling for searchbar filter div #11379 CONSOLE-3074 : update notifications for HyperShift Provisioned Clusters #11375 Bug 2024708 : Don’t use lodash startCase on default operand field labels #11346 CONSOLE-3090 : [Dark Theme]  This is to reassign the correct blue and orange heading colors that are used in the getting started sections on both Admin and Dev console #11385 Bug 1965934 : Fix Run queries button UX #11388 Update pf packages to pf-2022-5 #11372  
Bug 2061918 : Fixed side-bar scrolling issue #11386 Automation of Service bindings | dev-console #11352  
[Dark Theme]: fix mutilStream logs and pod logs viewer and console header to support dark theme #11357  
Bug 2070731 : details switch label is not clickable on add page #11311 Make project access form discoverable #11349  
CONSOLE-3071 : update Cluster Settings and ClusterVersion Details page… #11363 adds support for Pipelines as code #11336  
Add Helm Chart repositories add action on Add page #11345  
Bug 2075575 : Align url polling interval for Overview pages with other pages #11380 Automation of pipeline-runs | pipelines-plugin #11324  
Epic Automation for ODC-4315 #11203  
Bug 2073437 : Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls #11307 Bug 2039477 : Add a workaround to show the PF validation status also when the input field is autofilled. #11201 CONSOLE-3090 : [Dark Theme] Several dark theme fixes. Includes borders, hr, disabled form element, row hover, hint blocks #11303 Bug 2007340 : fix accessibility issues in topology list view #11251 Bug 2015555 : keep query table and chart in sync #11359 Bug 2073176 : Fix key/value pair removal issue in configmap form yaml switcher #11328 Bug 2065804 : Fix Web Terminal availability check to verify operator is installed #11202 CONSOLE-2925 : Add initial dynamic demo plugin tests #10644 Bug 2076614 : Expose ResourceEventStream Component as part of the Core SDK #11274 Gherkin for service binding enhancement- discoverability #11326  
Add infotip and remove not bindable filter #11313  
Bug 2071715 : fix 404 on Environments nav #11337 Bug 2074756 : fix bug where ClusterRole > RoleBindings did not display… #11353 Bug 2074100 : fix CRD name filter #11347 Bug 2074465 : Fix default branch param in pipeline import from git flow #11323 Bug 2061918 : Topology sidebar broken issue is fixed #11299 Update links to examples - descriptors reference.md #11342  
use incluster tekton hub Api endpoint in pipeline builder #11335  
Bug 2071578 : Add new MONITORING flag to hide dev perspective nav item and topology sidebar observe section if not available #11190 Bug 2071617 : remove Kubevirt extensions in favour of dynamic plugin #11273 Bug 2071617 : Stop disabling extensions with non-existing disallowed flags #11344 Hide Upgrade Cluster Alert in About Modal When Externally Managed #11339  
Bug 2075778 : Fix failing TestGetRegistrySamples test #11350 Bug 2073329 : fix pipelineruns name in repository details page #11338 [Dark theme]: fix Observe dashboard, Topology list page and web terminal tab view #11231  
CONSOLE-3124 : migrate Cluster Dashboard test to Cypress #11332 [Dark Theme]: fixes quick starts, user preferences project selector, quick search, and help text color #11331  
Automation of create-from-add-options feature file | pipelines-plugin #11291  
add visual effects on dragging the pinned resource #11266  
Bug 2065513 : Fix ResourceQuota dashboard card and ACRQ donut label #11340 Bug 2040180 : handle dashboards single column case #11327 Bug 2071691 : Update and scope our breadcrumb padding rule so it doesn’t effect a pure implementation #11321 Bug 2075149 : Fix translation of flag-enabled extensions #11305 add data test ids for MultiTabTerminal #11330  
Automation of Pipeline-Workspaces | Pipeline-Plugin #11322  
Bug 2074447 : cluster-dashboard: exclude iowait and steal from CPU Utilisation #10450 Bug 2071761 : - Translation Keys Are Not Namespaced #11284 Bug 2072805 : Monitoring dashboards: Add support for __range* variables #11289 Bug 2070160 : Remove custom classes pre and code element and apply using a custom class. #11263 Add form for PAC repository #11264  
Update OWNERS for promql/ directory #11317  
Bug 2074475 : fix kubevirt gating #11314 Automation of Pipelines-as-code(PAC) #11298  
fix(modal): removed drop shadow, updated colors #11148  
CONSOLE-2976 : add update mode to Update cluster #11053 chore(i18n): update translations - Completed-7034-OCP 4.11 UI Localization- Sprint 216 #11280  
Update pf packages to pf-2022-4 #11261  
Bug 2071719 : remove .pf-c-button.pf-m-link override #11306 Automation of event-tab-in-pipeline-run | pipelines-plugin #11230  
Automation of pipeline-task-runs-display | pipelines-plugin #11294  
Bug 2015375 : Add IBM Flashsystem volume types #10285 Bug 2038244 : Use hostname from provided git url when making git api calls #10827 Bug 2056841 : Improve handling of /api/check-updates request failure in PollConsoleUpdates #11304 Bug 2068594 : disable Details Card test since it was flaking at a high… #11296 Bug 2058051 : Expose YAMLEditor to Core SDK #11244 Bug 2072570 : test: use stable test titles #11257 Bug 2072807 : Monitoring dashboards: Handle tables without panel.styles attribute #11293 Bug 2071599 : fix bug where RoleBindings are not displaying in ClusterRole > RoleBindings #11285 Bug 2069760 : Added divider to developer console navigation #11283 Bug 2069914 : fix casing of ‘Red Hat Applications’ so all links appear… #11268 chore(OWNERS): remove rebeccaalpert #11188  
Bug 2058282 : Fix WebSockets not reconnecting during upgrade #11288 Bug 2057183 : Only show operator detail page “Valid Subscriptions” item when it’s not empty #11287 create form for adding project helm chart repo #11227  
Bug 2065840 : Fix CronJob resource version to batch/v1 #11216 Bug 2069577 : Update dynamic-demo-plugin readme #11286 Bug 2070020 : create correct apiversion: group/version for creating custom resource key for Resource Dropdown #11260 Bug 2046435 : improve import error message #10983 Bug 2071700 : Use ‘reportingComponent’ field for v1 Events #11277 Bug 2063753 : Translate Extensions On Each Language Change #11278 Bug 2069632 : fix ‘linkURL’ for ‘previous’ logs #11275 Bug 2069685 : Fix UI crash when pinned resource model does not exist #11249 Bug 2068594 : follow on fix to remove timeout value #11248 Automation of Pipeline Metrics #11220  
Add synced form-yaml editor for routes #11156  
CONSOLE-3081 : updated –pf-global–BorderColor—100 to –pf-global–BorderColor–100 #11234 add Event Sink  option to broker and channel connector and context menu #11259  
Add and Edit configmap form #11150  
Add multitabbed terminal for cloudshell #11191  
fix the quick search style to support dark theme #11254  
Automation of Builder Page Pipelines #11258  
Automation of Pipeline Actions #11238  
update and add image vulnerability toggle group in IMV details page #11222  
Bug 1997142 : improve performance of OperatorHub text input filter #11252 Bug 2067298 : Remove modelsLoaded conditional rendering from ModelStatusBox #11245 updates text description for Event sinks #11214  
Bug 2069577 : Update ConsolePlugin manifest #11247 Bug 2068538 : Visual formatting adjustments to popover. #11236 CONSOLE-3081 : [Dark theme] Update pages to use PageHeading where possible #11183 Bug 2069181 : Fix disabling community tasks in pipeline builder issue #11241 Bug 2068908 : Update getting started blog link #11239 support visualisation of internal deployment in topology view and sidepanel for event sink #11223  
Bug 2069198 : Use pre-installed pipeline task in e2e test #11240 Bug 2068490 : change ‘kubectl’ to ‘oc’ to fix descriptors test #11233 Bug 2068594 : fix Cluster Dashboard Details Card test #11235 Updates and fixes for pipelines-plugin cypress tests #11172  
Bug 2067180 : Completed-7034-OCP 4.11 UI Localization- Sprint 215 #11169 Bug 2068115 : Fixed the rendering of a Tab Extension when there is a version present #11228 Bug 2067776 : Update prometheus/client_golang to 1.11.1 #11232 Bug 2064744 : Remove duplicate app label on debug terminal #11229 Bug 2017001 : Bug fix context menu position on topology #11152 Console3080 - Add Control Plane Topology flag to console UI #11170  
Update pf packages to pf 2022-3 #11158  
Allow user to re-arrange the resources added to nav #11142  
CONSOLE-3081 : [Dark theme] Additional skeleton updates for dark theme #11177 Add theme switcher in user preferences page #11115  
Bug 2064607 : avoid pre-fetching tekton hub task versions in pipeline builder #11195 Bug 2063708 : correct JA translation for ‘Expand’ #11221 feat(theme): added theme file #11151  
Bug 2066418 : correct ChannelDocLink url #11217 Bug 2041769 : Pipeline metrics: use prometheus-tenancy API to get data #10870 Bug 2057183 : Add validSubscription filter to OperatorHub #11219 Bug 2064553 : Remove reference to deprecated v2v-vmware ConfigMap #11207 CONSOLE-3081 : [Dark theme] Changes to support the events and project select bar when in dark theme mode #11136 Bug 2058051 : Exposing service list table #11178 Bug 2066754 : Don’t delete core Cypress reports #11215 Bug 2063756 : - User Preferences - Applications - Insecure traffic : i18n misses #11213 Bug 2019564 : attach owner reference to resources created on creating a user to allow garbage collection #11130 Bug 2063699 : - Builds - Builds - Logs: i18n misses. #11211 Bug 2061755 : remove Breadcrumbs from Create Operand pages #11174 Bug 2063957 : fix bug where impersonating message was not translated #11212 CONSOLE-3081 : Integrate dark theme - fix(background-color): updated to –pf-global–BackgroundColor—100 #11167 Bug 2060583 : Remove internal-kubevirt Console plugin SDK package #11091 Bug 2060924 : Fix  alert from showing an object #11185 Bug 2065338 : Fix VolumeSnapshot creation sort #11194 CONSOLE-3081 : [Dark theme] Updates hint block element #11155 Fix namespace and backing store table to show pre selected values. #11180  
Bug 2064596 : [Tekton Hub] show read more link in the task quick search details pane #11187 Bug 2063897 : Change the tekton hub api endpoint to use v1 api #11179 Bug 2050637 : add a hardcoded blog link as fallback in guided tours #11120 Sort catalog filters and other enhancements #11161  
CONSOLE-3081 : [Dark theme] Changes to horizontal-nav to enable dark theme support #11139 CONSOLE-3081 : Integrate dark theme - fix(background-color): updates to –pf-global–BackgroundColor—200 #11168 Replace GitTypes with the GitProvider type #11165  
CONSOLE-3081 : Integrate dark theme - fix(borders): convert #ccc, #ddd, $pf-color-black-300, $color-row-filter-border to var(–pf-global–BorderColor–100) #11154 end to end flow for event sink #11138  
CONSOLE-3081 : Integrate dark theme - fix borders updates #eee, #ededed, $table-border-color to var(--pf-global--BorderColor--300) #11157 ODC-6495 Remove layout2 topology #11145  
Bug 2062524 : fixes uri case for event sink #11171 fix(skeleton): updated sass var #11147  
chore(vscode config): disabling the organizeImports functionality of … #11037  
[Dark theme]Fix namespaced pages, add page and catalogs page #11144  
Bug 2013144 : catalog category filters can be opened via ctrl+click now #11029 Bug 2009345 : Fix potential issues with namespaces that contains just numbers (crashes on 4.7) #11126 Bug 2061333 : Add optional chaining to avoid npe #11146 Bug 2061301 : Add tooltips why add and delete buttons in knative traffic splitting modal are disabled #11106 Bug 2060894 : Preceding/Trailing Whitespaces In Form Elements on the add page #11075 Bug 2059674 : Adjusts the Dynamic Demo Plugin and the SDK to meet on the usecases #11116 Fix CSS for edit bucket class modal #11046  
Bug 2055702 : enable Serverless e2e tests #11124 Bug 2046156 : fix showing error in netpol affected pods #10934 Bug 2056496 : update upload jar flow for no builder image #11099 service binding discoverability labels in dev catalog #11035  
CONSOLE-3087 : Fix ActionContext type warning in components/actions/types.ts #11128 Update PF Packages to 2022-2: Dark theme stylesheet #11083  
Bug 2058623 : updates versions for kafka and kafkaTopic #11111 Bug 2002602 : remove returning of err if json fails to parse #11017 Bug 2054630 : Fix history stack handling when opening the silence alerts form #11107 Bug 2042838 : the status of container is not consistent on Container details and pod details page #11031 Bug 2052986 : fix console crashing in the edit deployment form #11052 Bug 2059654 : update ConsolePlugin proxy settings #10893 Bug 2044207 : Clear text on switching auth method #10995 Bug 2052956 : fix duplicate edit app action on installing virtualization operator #11076 Remove Mode from Topology view #11088  
Bug 2058424 : Don’t pass Authorization header when not needed #11102 Bug 2054950 : Display correct disk size in Edit disk modal #11105 Bug 2046598 : Display disk size in correct units #11104 Bug 2057054 : Improves K8s Utils Return Type #11103 Clean up of CronJobSource code references #11086  
Trim trailing whitespace in test names. #11100  
Bug 2054285 : Show standalone resources as sink and not the one’s owned by other resource #11085 Bug 2042710 : Custom imagepullsecret reference information not found when creating pod using console in openshift #11058 Bug 2050005 : Fix webpack module federation runtime chunk ID clashes #11062 Bug 2046531 : Remove schema subdir from dynamic plugin sdk #11089 Bug 2048059 : fix proxy so requests to account management service work #11090 Bug 2014161 : Fix pipeline run logs autoscrolling issue #11056 Migrate ListPageBody to the SDK #10938  
Bug 2052953 : clear dashboard variables for dev perspective on unmount #11066 Bug 2053501 : Decode secrets before authorizing repository #11071 Monitoring: Redirect Prometheus UI format URLs to query browser page #10963  
Bug 2055980 : Expose more components/hooks/etc. needed by KubeVirt dynamic plugin #11074 Bug 2055814 : Support custom extensions in console-extensions.json files #11051 Bug 2053304 : Fix debug route and add testcases #11040 Bug 2046598 : Display disk size in GiB in VM customize wizard #11024 Bug 2037625 : Always show ResourceQuota charts #11022 Bug 2037542 : Fix sticky footer in pipeline builder’s form yaml switcher #10783 Bug 2046496 : Update the list Toolbar to use ToolbarToggleGroup when less than 769px width #11063 Bug 1934304 : Sum total memory of unnamed container only #11067 Bug 2051578 : fix ClusterOperator Status, Version col sorts #11061 Remove unnecessary polyfills #10016  
Bug 2053168 : Fix dynamic plugin SDK typescript IDE errors #11034 Bug 2048442 : Disabling Vault SA based auth for storage class encryption #10998 Bug 2050902 : Fix to add labels to webhook secrets created during import #11032 Bug 2051775 : Allow custom template namespace #11054 Bug 2028821 : Misspelled label in ODF management UI #11047 Remove Console plugin SDK host-app package #11043  
Bug 2050698 : fix bug where Cluster Settings shows 0 of N, 0% progres… #11038 Migrate checkAccess & useAccessReview to the SDK #10847  
Bug 2039647 : Use namespaced links for dev perspective nav items #11007 Bug 2051657 : removed Tech preview badge #11016 Bug 2051642 : Remove tech preview badge for web terminal #11012 Bug 2053685 : (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls #11001 Bug 2054238 : Update E2E to use 3scale operator #11044 Bug 2052595 : Revert “Add Dev Preview tag for IBM FlashSystem” #11033 Bug 2051558 : omit rolebindings with no subjects #11013 Bug 2049483 : Revert “fix annotations on updating workload” #11002 Bug 2052674 : Remove a couple of extra spaces #11021 Migrate impersonateStateToProps #10953  
Bug 2052671 : chore(i18n): update translations #11020 Bug 2052095 : Fix auth redirect loop caused by duplicate state-token cookie #11014 Bug 2046498 : fix casing of project and application #10999 valut typo fixed #11009 Bug 2046618 : Add started-by annotation to pipelines created with “Start last run” #11005 Bug 2037628 : added test-id to kms flows #11003 createProject for non-admin users #11000  
Expose useFlag as part of the Dynamic SDK #10872  
Bug 2050011 : Query Browser: Fix widths of timespan text input #10996 Monitoring: Comment to explain how Alertmanager links are handled #10997  
default apiDiscovery in SDK #10903  
Bug 2046596 : Customized wizard PVC name #10977 Bug 2014640 : Cannot change storage class of boot disk when creating VM #10992 Bug 2041774 : defaulting to s2i if git type can’t be figured out #10966 Bug 2044421 : Allow topology list to select application group #10988 Migrate Status component to the SDK #10805  
docs/helm: update documentation according reviews #10889  
Bug 2030530 : Remove quotation marks surrounding VM pwd #10930 Bug 2007141 : pipeline-plugin scripts are updated #10329 Bug 2048221 : Capitalization of titles first-word-only rule #10980 Bug 2046601 : Dont assume its a pvc #10949 Bug 2014420 : Remove depracated v2v resources from plugin config #10954 Bug 2047277 : Add storage status to status card #10951 Bug 2046591 : Added support for customized wizard - new templates #10945 Bug 2006067 : Handle blank usernames in error message #10782 Bug 2047310 : Add empty state to running VMs card #10957 Bug 2046594 : “Requested template could not be found” while creating VM from user-created template #10952 Bug 2033492 : Highlight moves from Template to VirtualMachines while open template wizard #10941 CONSOLE-2999 : Switch the OCP branding logo and title to Red Hat OpenShift logo and title #10940 Bug 2044803 : buttons styles aligned #10935 Bug 2048276 : test-cypress.sh script: Add curly brackets around nightly var #10976 Bug 2022253 : fix web terminal resize layout issue #10948 Uncomment and edit the automation code for ODC-6361 #10967  
Bug 2039462 : fix width of dropdowns in the userpreferences applications tab #10960 Bug 2038115 : Make namespace bar full width and sticky in console #10856 Bug 2047320 : Fix that new route annotations doesn’t work on Knative Services #10955 Bug 2039277 : fix topology list view #10883 ODC-5671 : Setup for nightly CI cypress runs #10927 Automation for Observe page features #10566  
Add support for doc generation for Core API #10431  
And 6 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-1790 : Retrieve user-defined Alertmanager services from shared configmap #685 Bug 2117640 : Update permission for projecthelmchartrepositories with an aggregator role #671 Bug 2102335 : Pass RELEASE_VERSION envar into the console pod #679 Bug 2111037 : InfrastructureTopology must be driving console affinity rule creation #666 CONSOLE-3063 : PDB for console pods avoid too many replicas down #655 CONSOLE-3162 : Implement check for the new i18n annotation for dynamic plugins #654 ODC-6670 : Sync consoleConfig telemetry annotations to console-config.yaml #653 Bug 2086519 : AUTH-133: manifests: comply to restricted pod security #652 Bug 2067155 : Modify the operator display name to match it with the name displayed in operatorhub #650 Bug 2075478 : Bump docs version to 4.11 #648 MGMT-9797 : Bump openshift/api dependency to 04e1813ebb11 #644 Bug 2046497 : Metrics e2e should not fail on first failed polling attempt #645 Bug 2057696 : Console operator should not block installation/upgrade process when set to Removed state #642 CONSOLE 3070: Console-operator should pass infrastructure config’s ControlPlaneToplogy to the console-config.yaml #639  
Bug 2046497 : Re-enable TestMetricsEndpoint e2e test case #640 Bug 2048541 : ODF quickstart permissions check #634 Dockerfile.rhel7: add new Helm CRD, ProjectHelmChartRepository #635  
Full changelog  
Updating ose-containernetworking-plugins images to be consistent with ART #62  
Check for duplicated sysctl keys #61  
Sync with upstream for win-overlay V2 support #59  
Updating ose-containernetworking-plugins images to be consistent with ART #55  
WIP: Tuning cni: adding interface level sysctls and sysctl whitelist #56  
Sync downstream with upstream v1.1.1 #57  
Full changelog  
BUILD-478 : Validate resource admission smoke test #105 BUILD-392 : Shared Resources: Validate Resource Admission #103 BUILD-504 : Rebase k8s 1.24 #104 change entrypoint for the webhook #102  
Updating ose-csi-driver-shared-resource-webhook images to be consistent with ART #99  
BUILD-469 : change cmd webhook package to cmd main package #101 Add user coreydaley to approvers list #100  
more atomic writer related doc updates #98  
Updating ose-csi-driver-shared-resource images to be consistent with ART #97  
add Tekton example, update/correction to README and existing example docs #96  
Updating ose-csi-driver-shared-resource-mustgather images to be consistent with ART #95  
BUILD-469 : add webhook main entrypoint and dockerfile #92 update test pod to alleviate PodSecurity warnings #94  
use k8s atomic writer for storage of secrets / configmaps #93  
Bug 2067829 : bump(*): prometheus/client_golang #91 remove use of ‘hostpath’ in names #90  
Data removed when permission removed #89  
Updating ose-csi-driver-shared-resource images to be consistent with ART #88  
Simplify the must-gather dockerfile #87  
Full changelog  
BUILD-392 : webhook validation resource admission #49 BUILD-505 : Rebase k8s 1.24 #50 BUILD-405 : Install shared resource csi driver webhook alongside the s… #45 Bug 2088533 : update openshift/api to master to pick up status subresource #48 Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #46  
Add user coreydaley to approvers list #47  
Bug 2067830 : bump(*): prometheus/client_golang #43 Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #40  
update registrar kubelet socket location to mirror what other CSI drivers do #42  
Start using embed module for static assets #41  
Full changelog  
Bug 2097503 : Rebase external-resizer against v1.5 #130 Updating ose-csi-external-resizer images to be consistent with ART #129  
Updating ose-csi-external-resizer images to be consistent with ART #128  
Full changelog  
Bug 2097283 : Rebase to v6.0.1 for OCP 4.11 #73 Updating ose-csi-snapshot-controller images to be consistent with ART #70  
Updating csi-snapshot-validation-webhook images to be consistent with ART #72  
Updating ose-csi-external-snapshotter images to be consistent with ART #71  
Updating ose-csi-external-snapshotter images to be consistent with ART #68  
Updating csi-snapshot-validation-webhook images to be consistent with ART #69  
Updating ose-csi-snapshot-controller images to be consistent with ART #67  
Full changelog  
Updating csi-livenessprobe images to be consistent with ART #32  
Updating csi-livenessprobe images to be consistent with ART #31  
Full changelog  
Bug 2097286 : Rebase to v2.5.1 for OCP 4.12 #36 Updating csi-node-driver-registrar images to be consistent with ART #35  
Updating csi-node-driver-registrar images to be consistent with ART #34  
Full changelog  
Bug 2118375 : Add support for BUILDAH_QUIET environment variable #308 BUILD-416 : Rebase k8s 1.24 #299 Update OWNERS file #298  
Updating openshift-enterprise-builder images to be consistent with ART #297  
Bug 2075145 : Revert using –quiet with log levels below 2 #296 Bug 2067775 : Update prometheus client_golang from 1.11.0 => 1.11.1 #294 main(): accept –loglevel as an alias for -v #283  
Bug 2071364 : invalid syntax when parsing empty BUILD_LOGLEVEL #293 Bug 1996883 : Add –quiet option to buildah if log level is less than 2 #288 BUILD-433 : use the right mappings when we don’t need to set any #291 Updating openshift-enterprise-builder images to be consistent with ART #284  
Bug 2026063 : Update buildah to v1.24.2 #282 Add openshift goimports #287  
Full changelog  
Updating the documentation on how to use DTK as a multi-stage image. #80  
Remove all kmods-via-containers references and dependencies #79  
Removing the ‘make buildprep’ from README.md. #78  
OCPBUGS-1 : Jira integration test PR 2 #77 Updating README.md. #76  
OCPBUGS-1 Jira integration test PR #75  
Updating driver-toolkit images to be consistent with ART #73  
Bumping KVC to the last available commit. #74  
And 5 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Bug 2034411 : Call ip6tables for v6 mode #60 Updating egress-router-cni images to be consistent with ART #59  
Updating egress-router-cni images to be consistent with ART #56  
Full changelog  
OCPBUGS-947 : Rebase openshift/etcd 4.11 onto 3.5.5 #155 Bug 2085997 : increases cluster discovery time from 10s to 135s #131 Revert “UPSTREAM: <carry>: increases cluster discovery time from 10s to 180s” #130  
Bug 2085997 : increases cluster discovery time from 10s to 180s #129 Add new members to reviewers/approvers #121  
Remove MemberList patch #120  
3.5.3 with history #116  
Contiguous to 3.5.2 #109  
Full changelog  
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #12 Bug 2087039 : update dependencies to K8s 1.24, go 1.18 #11 Bump machine-api-operator to 25e61c2 #10  
Bump google.golang.org/api #9  
Bug 2067836 : Bump prometheus/client_golang #7 Refactor provider status to use metav1.Condition #8  
Full changelog  
Updating ose-gcp-pd-csi-driver images to be consistent with ART #25  
Bug 2072891 : Update to v1.5.1 #24 Updating ose-gcp-pd-csi-driver images to be consistent with ART #22  
Full changelog  
Updating ose-gcp-pd-csi-driver-operator images to be consistent with ART #45  
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #48 Bug 2077050 : OCP should default to pd-ssd disk type on GCP #47 Set fsGroupPolicy in CSIDriver #46  
Full changelog  
Bug 2090829 : Bump OpenShift router to k8s 1.24 and go 1.18 #395 Updating openshift-enterprise-haproxy-router images to be consistent with ART #374  
Bug 2093454 : HAProxy: enable PROXY protocol for all listeners #369 Updating ose-haproxy-router-base images to be consistent with ART #373  
NE-882 : Support subdomain field when host is unset #357 NE-822 Don’t scale route weight on single service routes #377  
Bug 2076297 : Fix gap in router’s handling of graceful shutdowns. #383 Bug 2074304 : generateRouteHostRegexp: Escape blanks #381 Bug 2025624 : Fix certificate reloader #379 BUG 2067778: Bump prometheus/client_golang to v1.11.1 #378  
Bug 1928932 : Update deploy manifests to use stable apis #349 Added gcs278 to OWNERS #372  
Full changelog  
OCPBUGS-3174 : UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines #1408 Bug 2099800 : bump to k8s 1.24.6 #1381 OCPBUGS-1540 : UPSTREAM: 112267: aws: skip health rules if they are a subnet of the client rule #1375 [release 4.11] Bug 2117424: UPSTREAM: <carry>: Remove reserved CPUs from default set #1351  
Bug 2104344 : Fix resizing of ephemeral volumes #1314 Bug 2109270 : UPSTREAM: 89885: Fix panic in openstack.InstanceExistsByProviderID() #1332 Bug 2105117 : UPSTREAM: <carry>: update list of deprecated apis #1313 Bug 2103075 : UPSTREAM: 110652: fix: –chunk-size with selector returns missing result #1304 Bug 2063414 : UPSTREAM: 109441: kubelet: parseResolvConf: Handle “search .” #1283 Bug 2086519 : get SCC admission default securityContext.runAsNonRoot to true on positive UIDs #1290 Bug 2078778 : UPSTREAM: 110408: apiserver: printers should use int64 #1288 Bug 2089933 : Backport 110191 Re-enable Kubelet Pod Readiness Probes on Termination and Pod probes should be handled by pod worker #1285 Bug 2087685 : Worker Latency Profiles: Config node object validation for extreme profile transition #1287 Bug 2065749 : UPSTREAM: 109103: cpu/memory manager containerMap memory leak #1229 Bug 2094954 : UPSTREAM: 110258: Fix pod eviction ip #1282 UPSTREAM: <carry>: provide unique reason for pod probe event during t… #1281  
Bug 2086092 : UPSTREAM: 108284: fix: exclude non-ready nodes and deleted nodes from azure load balancers #1261 Fixes probe readiness shutdowns #1269  
Bug 2086092 : update kube to v1.24.0 #1252 Bug 2086519 : UPSTREAM: <carry>: e2e-framework: don’t autosync PodSecurity labels #1268 Bug 2062459 : Identify if there are multiple schedulers running #1251 Bug 2075621 : UPSTREAM: 109487: Disable JobTrackingWithFinalizers due to unresolved bug #1243 Bug 1999325 : Backport 107821 and 107831 #1225 UPSTREAM: 109283: test/e2e/*: use restricted policy by default, default existing tests to privileged #1238  
Bug 2051985 : UPSTREAM: <carry>: An APIRequestCount without dots in the name can cause a panic #1172 Bug 2066865 : Skip azure topology tests #1230 UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1227  
Revert “UPSTREAM: <carry>: Unskip OCP SDN related tests” #1228  
bump apiserver-library-go #1218  
UPSTREAM: <carry>: update list of deprecated apis #1204  
UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1226  
Bug 1957668 : UPSTREAM: <carry>: use console-public config map for console redirect #1110 UPSTREAM: 106454: test/e2e: fix e2e tests for restricted policy #1212  
Bug 2022507 : Backport 108366: OutofCpu Fixes #1199 Bug 1945329 : enable should drop INVALID conntrack entries test #897 Bug 2063938 : UPSTREAM: <carry>: use hardcoded rest mapper from library-go #1215 Bug 2062459 : Generate event when cache update is failed #1210 UPSTREAM:<carry>:Unskip OCP SDN related tests #1201  
Bug 2034958 : enable “Conntrack should be able to preserve UDP traffic when initial… #1197 UPSTREAM: 106454: SQUASH: test/e2e: let e2e tests specify pod security admiss… #1128  
Bug 2040715 : UPSTREAM: 108284: fix: exclude non-ready nodes from azure load balancer #1190 UPSTREAM: <drop>: zero-diff to pick up tags for versions #1193  
Bug 2040715 : upstream 108149: do not return early in the node informer when there is no change #1184 Bug 2040533 : UPSTREAM: <drop>: Ignore container notfound error while getPodstatuses #1176 Bug 2040533 : UPSTREAM: 107900: Pods that have terminated before starting should not block startup #1157 UPSTREAM: 107847: service REST: Call Decorator(old) on update path #1156  
Bug 1979671 : UPSTREAM <carry>: Remove pod warning annotation when workload partitioning is disabled #977 Bug 2044824 : UPSTREAM: 107786: Ensure the execHostnameTest() compares hostnames #1153 Full changelog  
Add missing rbac for authentication reader #1822  
update OLM catalogs to 4.11 #1786  
Bug OCPBUGS-1367: CNO: Handle long OVN SBDB route hostnames #1747  
Add rbac so route-to-ingress controller can do its leader election #1728  
fix(oauth): Do not proxy IBM Cloud IAM endpoints #1723  
Ingress endpoint #1667  
Self image lookup: Retry on empty string #1695  
Forward from main #1655  
Updating hypershift images to be consistent with ART #1576  
Optional RestoreSnapshotURL should have omitempty #1585  
Fast-Forward from main #1536  
Fast-Forward from main #1494  
Add PowerVS Ingress Operator Changes #1458  
Improve user experience of HostedCluster configuration API #1463  
Updated secret permissions to conform to kubernetes CIS benchmark #1477  
The ValidateReleaseImage was returning an error stating it could not find the pull-secret and blocked HC #1472  
Reduce HyperShift operator metrics cardinality #1467  
docs: refactor agent documentation #1466  
inplaceupgrader: switch to using payload MCO image #1459  
Drop kas call in agent ReconcileCAPIInfraCR and fail if no ign #1469  
Add ValidReleaseImage condition to HostedCluster #1296  
Add missing control plane prometheus rules #1406  
Use right conditions reason for inplace upgrade #1464  
Ensure cache is set during token rotation before reconciling #1460  
Bug 2089224 : Remove monitoring config reconciliation #1420 add allowed CIDR blocks to HostedCluster API #1429  
nat gateway: check for invalid eip #1457  
Add PowerVS Cloud Controller Manager #1422  
Fix the private router to work on a 4.11 mgmt cluster #1453  
E2E: Add TestNodepoolMachineconfigGetsRolledout #1339  
e2e: notice FailedScheduling or Preempted events #1332  
Trim docker-pullable:// prefix when reading imageID from container status #1449  
Set snapshot-count on etcd to limit memory usage variability #1448  
Add memory rss recording rule #1447  
Manage ignition server from CPO #1446  
Add recording rule for cpu requests #1445  
Adjust memory requests to align with PerfScale recommendations #1444  
Enable passing -run parameter in ci-test-e2e #1441  
Add recording rule for component memory requests #1442  
add api-server-address flags to kubevirt and agent cluster create #1440  
CNO operands use private APIServer address when HCP is private #1433  
Remove unused kubevirt specific e2e test #1436  
Fix the e2e-kubevirt-gcp-ovn CI lane #1434  
Increase MHC nodeStartupTimeout #1435  
aws private link controller: improve error messages #1432  
Use git commit as version in HyperShift binaries #1431  
Scrape all KAS metrics inside guest cluster #1421  
Nodepool: Insert the worker role label #1428  
KCM: Set leader election args #1427  
Tests: Enable junit #1411  
Set autoscaler CAPI group explicitely #1425  
Add local timeouts for e2e tests #1424  
hack/publish-ocp.sh fix cut syntax #1417  
KAS: Stop setting removed –enable-swagger-ui flag #1418  
Added PowerVS Cluster Create & Destroy #1381  
Ensure that the private router pod uses the HC’s pull secret #1413  
Loopdetector: Give some more leeway #1412  
adopt existing immutable selectors to prevent errors reconciling components from roks toolkit clusters #1403  
Fix(cpo): Propagate TLS security profile config to kube-controller-manager and kube-scheduler #1388  
Allow nodepool deletion when hcluster is gone #1408  
Operator image lookup: Use sha256 rather than tag #1303  
e2e: increase budget to only catch extreme situations #1407  
Change infrastructureAvailabilityPolicy default to single replica #1405  
feat(cpo): adhere to upgrade order from kube version skew policy #1322  
Make kubevirt compatible with generic e2e tests #1377  
Add allowed principals to service endpoints #1402  
Ignition server: Use https health check if possible #1392  
Nodepool render: Avoid including a logline #1401  
Replace router shard with private router in control plane namespace #1398  
Add inplace upgrader controller to hcco #1382  
Expose HostedCluster and NodePool metrics in HyperShift operator #1376  
HAProxy ignition config: Use nodepool release image #1394  
Change ignition server http code if token not found. #1399  
AWS: Deploy Pod Identity Webhook #1351  
Add docs section for goals and design invariants #1396  
Add sane defaults for InfrastructureAvailabilityPolicy and ControllerAvailabilityPolicy #1395  
Bump kube depedencies and controller-runtime to 1.24 level #1393  
Delete endpoint connections before deleting endpoint services #1390  
Add more resources to hypershift dump cmd #1389  
test: adjust HO mutate budget #1385  
e2e: Increase parallel test limit #1384  
Update KubeVirt Doc to indicate RHCOS is no longer a required cli arg #1374  
Tag endpoint services with the mgmt cluster infra ID #1380  
fix Makefile #1375  
Add IBMCloud PowerVS infra create & destroy #1280  
Prevent update of a MachineDeployment after it is initially created #1373  
Make the binaries contain the commit version #1324  
Make CI master nodes schedulable for cnv VMs #1369  
test: update API budget #1372  
Update loopdetector to not get tripped by inplace upgrade #1370  
add ci-test-e2e target to Makefile #1368  
Add resource requests to cluster-api-provider-kubevirt container #1366  
fix(cpo): Scope down secrets access for olm collect profiles cj #1349  
Add image-content-sources option to create cluster CLI #1355  
Add a sidecar to the KAS that tails the audit log #1308  
Autodetect KubeVirt disk image using release payload #1352  
Refactor e2e test common cleanup #1345  
Upgrade test: Stop verifying the nodecount #1367  
Set shutdown params to improve graceful shutdown #1365  
Nodepool in-place upgrade: Reduce api requests #1358  
Etcd: Keep etcd_server_leader_changes_seen_total metric #1363  
Add hostedClusterAvailable check for in place upgrades #1340  
move to ga apis for all components now that management clusters at minimum release boundary #1350  
E2E: Stop hardcoding network type #1331  
configure cipher suites to prevent using medium strength ssl ciphers #1357  
fix the region parameter in app-sre templates #1356  
Revise and simplify NodePool’s KubeVirt platform API #1314  
fix panic due to race on hosted API cache start #1348  
Change webhook to implement webhook.CustomValidator #1346  
Add Metrics Set for Telemetry metrics #1294  
Cancel context to kill watch guest cluster subroutines #1341  
Add docs for versioning support #1343  
Dump: Dump namespaces, rbac and SCCs of hosted cluster #1336  
create infra aws: set minimum on private zone SOA records #1337  
Enforce pull policy for all capi providers #1334  
Add test for NodePools in place upgrades #1290  
adjust CPO resource requests #1330  
Fix webhook to allow apiserver port defaulting and add tests #1313  
Add OAuthURL to HostedCluster status #1320  
e2e: log the error when failing to connect to the guest KAS #1318  
Export ign_server_payload_generation_seconds metric and add e2e budget #1316  
Rename nodepool.spec.nodeCount to replicas #1205  
E2E: Allow configuring a SSH key #1329  
Reduce KubeVirt e2e test flakiness #1321  
Omit MachineConfig and MachineConfigPool CRDs from release payload #1295  
Retry NAT Gateway creation #1328  
Add retries and debug output to journal dump #1327  
Use apiserver host/port from InfraStatus in reconciling Kube API Server #1319  
Ensure that everything uses imagePullPolicy IfNotPresent for resiliency #1304  
Ignition server: Actually use workdir #1312  
disable reconcile of registry config in IBMCloud deployments #1305  
e2e: report elapsed time for each test step #1307  
Use forked processes instead of pods to generate ignition payload #1214  
Updating hypershift images to be consistent with ART #1288  
Update KubeVirt platform to work with OVNKubernetes #1277  
Azure: Add missing csi driver secret #1302  
Add missing resource requests for Azure CAPI provider #1300  
Allow running e2e tests for azure #1299  
Sync KAS PSP configuration with what kas operator does #1292  
feat(cpo): Disable PodSecurity for 4.10 #1287  
Installer assets for CAPIBM used by PowerVS #1279  
Use go 1.18 for CI builds #1244  
Drop outdated TODO for machine configs #1285  
Configure the CNO to proxy the apiserver for public clusters #1283  
contrib: admission-tracer for API call tracing #1281  
avoid no-op status updates to AWSEndpointServices #1276  
inplace upgrade: add initial upgrade logic #1258  
Begin using KubeVirt as the infrastructure platform instead of None #1282  
Add cleanup manifest for existing CNO #1278  
Introduce IBMPowerVS platform #1255  
e2e: update HO budgets #1274  
konnectivity ds: Tolerate all taints #1272  
Add tests for network defaulting #1273  
Use ‘–’ for flags in kms token minter container #1270  
Default network to SDN if minor < 11 #1271  
Konnektivity: Set proxy env vars #1267  
Use OVNKubernetes as default network type #1268  
e2e: fix early exit on destroy infra aws #1269  
Move CNO into management cluster / add OVN to types #1253  
e2e: add AWS cluster create test #1260  
Set network status if empty #1266  
exclude InfraID from immutability check #1264  
e2e: Add a nodepool upgrade test #1257  
Expose a service account signing key in the API #1259  
destroy infra aws: delete network LBs and reduce dependency error noise #1263  
add update validation logic to HostedCluster webhook #1262  
reconcile oauth serving cert rbac to allow oauth proxies in the openshift-monitoring namespace to work #1256  
Add validating webhook for HostedClusters #1241  
ensure release image annotation added to deployment template metadata  to enable proper detection in IBM Cloud deployment process #1251  
Fix kubernetes.default for public clusters with proxy #1249  
continue to allow support for specification of clusterAutoscalerImage… #1250  
Make HyperShift operator compatible with previous CPOs without utilities #1245  
AWS infra destroy, handle empty instanceIDs #1246  
ensure imagePullPolicies are IfNotPresent for some deployments #1242  
Disable PodSecurity admission in 4.11 as it breaks conformance #1243  
Signal parsing config failure in a condition #1240  
Enforce hostedcluster service route immutability constraints #1238  
Create valid route names with long namespace names #1220  
Add support to set up a http proxy for guest clusters #1236  
Do not wait on capi clusterrolebinding delete #1237  
Introduce logic to accommodate in place upgrades. #1227  
Add node troubleshooting documentation #1232  
Remove ValidAMI AWS NodePool condition when AMI is user-defined #1235  
And 2 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #15  
UPSTREAM: 93: bump golint for go 1.18 #28  
OCPBUGS-1460 : Add udev #19 Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #13  
Bug 2073522 : Update ibm-vpc-block-csi-driver to v4.2.0 #12 Bug 2042348 : Rebase to v4.1.3 for OCP 4.11 #11 Updating ose-ibm-vpc-block-csi-driver images to be consistent with ART #10  
Full changelog  
Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #38 Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #39  
Changes to fetch region from node #37  
Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #36  
Bug 2066665 : [ibm-vpc-block] Unable to change default storage class #34 Bug 2067843 : Bump prometheus/client_golang to v1.11.1 #31 Disable topology tests until bz2035027 is fixed #30  
Update CSIDriver instance #29  
Bug 2053006 : Resource id fetch optimised #26 Bug 2052309 : IBMCloud: Add critical spec to ctlr #24 Updating ose-ibm-vpc-block-csi-driver-operator images to be consistent with ART #21  
Bug 2048824 : IBMCloud: Add critical spec to driver daemonset #22 Full changelog  
Updating ibm-vpc-node-label-updater images to be consistent with ART #12  
Bug 2073525 : Update vpc-node-label-updater to v4.1.2 #9 Updating ibm-vpc-node-label-updater images to be consistent with ART #10  
Updating ibm-vpc-node-label-updater images to be consistent with ART #8  
Full changelog  
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #21 Bug 2067844 : Update dependencies to K8s 1.24, go 1.18 #20 Updating ose-ibmcloud-machine-controllers images to be consistent with ART #19  
Updating ose-ibmcloud-machine-controllers images to be consistent with ART #18  
Full changelog  
Revert “Set default messages & reconcile clusteroperator status conditions (#584) #586  
And 54 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Bug 2111636 : libguestfs: error: download: /boot/loader/entries/ostree-1-rhcos.conf: No such file or directory #80 Updating ironic-rhcos-downloader images to be consistent with ART #73  
Full changelog  
Updating ose-prometheus-adapter images to be consistent with ART #61  
Updating ose-prometheus-adapter images to be consistent with ART #60  
Full changelog  
Updating ose-egress-http-proxy images to be consistent with ART #105  
Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #108  
Updating openshift-enterprise-egress-router images to be consistent with ART #106  
Bug 2062126 : ipfailover: Autodetect the “ens3” NIC #111 Updating openshift-enterprise-base images to be consistent with ART #109  
Bug 2018188 : VRRP ID conflict between keepalived-ipfailover and cluster VIPs #104 Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #107  
Full changelog  
OCPBUGS-4087 : cherry-pick, do not expose ingress path metric when service is nil #85 Bug 2075091 : Bump to KSM 2.5.0 #74 Updating kube-state-metrics images to be consistent with ART #73  
Bug 2075091 : internal/store: fix metrics slice length #71 Bug 2075091 : internal/store: fix potential panic in pod store #69 Bump openshift/kube-state-metrics to v2.4.2 #68  
Bump openshift/kube-state-metrics to v2.4.1 #67  
Updating kube-state-metrics images to be consistent with ART #66  
Full changelog  
Updating ose-libvirt-machine-controllers images to be consistent with ART #239  
Updating ose-libvirt-machine-controllers images to be consistent with ART #236  
Bug 2018517 : fix the check that machine has been modified #235 Full changelog  
OCPBUGS-536 : vSphere - enable steal time accounting #1081 OCPBUGS-955 : Change “create” sequence with powering on the vm after clone #1064 Bug 2109193 : Fix while setting default processor value for Power VS platform #1041 Bug 2110505 : revert: Bug 2101880: operator NS manifest: Set empty openshift.io/run-level #1044 Bug 2105382 : Add a validation webhook for Nutanix MachineProviderConfig #1039 Bug 2102834 : operator NS manifest: Set empty openshift.io/run-level #1033 Bug 2082667 : Separate controller for the node draining #1023 Bug 2094196 : Added webhook support for PowerVS platform #998 Bug 2087039 : Bump go to 1.18 #1022 Bug 2087039 : Update dependencies to K8s 1.24 #1021 Updating ose-machine-api-operator images to be consistent with ART #1015  
Bug 2059338 : Add template HW version detection during clone #1016 Bug 2083237 : Set vCenter client request timeout #1013 Skip validation if we just remove the finalizer #996  
Don’t force a requeue after updating Status.Phase #1012  
Remove unreleased AWS Placement Groups support #1009  
Fix broken link to CVO run levels #991  
AWS IMDSv2 machine spec validation #1008  
Add DescribeRegions permission for aws controller #1007  
Add Nutanix Platform to Machine API Operator #988  
Add pd-balanced disks support for GCP #1006  
Adding cluster api provider url(ibm) #1005  
Refactor provider status to use metav1.Condition #1004  
webhook: machine: add Azure Data Disks deletionPolicy validation #1003  
Remove 30s wait before creating a machine #999  
Make MAPO the default for OpenStack deployments #1000  
Bug 2067852 : Bump prometheus/client_golang #1002 Machine webhook validation for Azure Ultra Disks #1001  
Update govmomi to 0.27.4 #995  
Bug 2060697 : Update openshift/api dependency #994 Fix MAPO image #993  
Update OpenShift API to include placement groups #992  
Replace broken image references #881  
modify prometheus alerts to ignore pod #986  
Updating ose-machine-api-operator images to be consistent with ART #983  
Allow to remove ec2 placement groups #990  
Validate AWS NetworkInterfaceType in webhook #989  
Add IAM permissions required for AWS Placement Group enhancement #976  
fix readme after migrating from cluster-api-provider-* #982  
Full changelog  
OCPBUGS-3882 : Sync controllerconfig anyway if daemon sync fails #3421 OCPBUGS-3807 : configure-ovs: auto-connect ovs-if-phys0 with br-ex #3419 OCPBUGS-3756 : daemon: Stop setting I/O scheduler to bfq #3418 OCPBUGS-2730 : Add ephemeral storage to kubelet system reserved args #3381 OCPBUGS-2091 : [release-4.11] TRT-540: Add privileged label to infra namespaces #3346 OCPBUGS-1939 : Create a drop-in file for cri-o’s add inheritable capabilities #3352 OCPBUGS-1099 : Make sure there is a search domain in resolv.conf #3330 Bug 2110283 : [release-4.11] daemon: Drop tuneableFCOSArgsAllowlist #3265 OCPBUGS-737 : Pull container image as a separate step #3319 OCPBUGS-688 : Adding day2 remote worker node requires manually approving CSRs #3305 OCPBUGS-509 : Fix .ssh directory not owned by core when created by Machine Config D… #3307 Bug 2118586 : on-prem: improvements on resolv-prepender #3287 OCPBUGS-197 : daemon: Add a workaround for bug 2111817 #3292 Bug 2110737 : Master node in SchedulingDisabled after upgrade from 4.10.24 -> 4.11.0-rc.4 #3267 Bug 2104510 : [release-4.11] Update ose-machine-config-operator images to be consistent with ART #3229 Bug 2104687 : drain controller: don’t skip the MCC pod drain #3234 Bug 2104386 : Fix problem with retaining data in string array in piped while loop #3245 Bug 2103899 : configure-ovs: clone inactive autoconnect slaves #3220 Bug 2106723 : Remove rollback deployment #3249 Bug 2104561 : pkg/controller/common/helpers: Explicitly set mode 0644 #3232 Bug 2103749 : daemon: initialize nodewriter before login monitor #3219 Bug 2103080 : configure-ovs: set mac only for non fail_over_mac bonds #3216 Bug 2102834 : NS manifest: Set empty openshift.io/run-level #3221 Bug 1817075 : MCC & MCO don’t free leader leases during shut down -> 10 minutes of leader election timeouts #3185 Bug 2092442 : drain_controller: slow down retries for failing nodes #3178 Bug 2096496 : controller: de-couple FIPS and realtime detection #3200 Bug 2096413 : configure-ovs: improve handling of static ip and mac address configuration #3190 Bug 2005694 : Removing proxy object takes up to 10 minutes for the changes to propagate to the MCO #3166 Bug 2090794 : drain controller: continue retry after 1h timeout #3167 Bug 2092003 : Fixup of URL for AWS unit/file to compute instance provider-id #3170 Bug 2089775 : Fix regexp in keepalived script chk_default_ingress.sh #3156 Bug 2087687 : MCO does not generate event when user applies Default -> LowUpdateSlowReaction WorkerLatencyProfile #3163 Updating openshift-proxy-pull-test images to be consistent with ART #2935  
Bug 2090358 : Move drain log message to when drain starts #3168 Bug 2089687 : Update alert message for drain failure #3169 Bug 2045559 : Increase keepalived API check fall value to 3 #3158 Bug 2090436 : It takes 30min-60min to update the machine count in custom MachineConfigPools (MCPs) when a node is removed from the pool #3165 Bug 2091730 : create openshift-monitoring token in e2e #3172 Revert “Merge pull request #3162 from damdo/BZ2084450-2” #3175  
Bug 2084450 : Add unit/file for AWS to compute instance provider-id and pass it to the kubelet #3162 Bug 1948551 : apiserver-watcher should run in a privileged namespace #3107 Bug 2012969 : emit kube events for skipped and upgraded OSes #3153 Bug 2086728 : Move node draining to controller. Remove MCD privs #3135 Bug 2078866 : configure-ovs: avoid restarting NetworkManager #3120 Bug 2086728 : Improves Config Drift Monitor e2e tests #3146 Bug 2056442 : Bug fix for node drain caused by ICSP objects #3144 Allow blocking payload reg if it has mirrors configured #2819  
daemon: Have nodeWriter maintain ref to lister and node name #3143  
manifests: Lower daemon RBAC permissions on machineconfig objects #3140  
RFE-2703 : add prometheus rules for master memory usage #3124 [low priority] test/helpers: fix typo hardcoded pool #3061  
Use library-go resourcemerge helper functions #3078  
Bug 2076355 : fix MCNameSuffix when kcfg ctrrcfg after bootstrap config #3093 OWNERS: remove mkenigs, add raisaat #3139  
removed the workerlatencyprofile status related code #3129  
Bug 2080267 : [vsphere] remove warning encountered on vSphere UPI cluster without API VIP #3132 colin’s small patches rollup #3108  
Move Ignition file generation to controller/common, fix Compression #3128  
Bug 2081119 : drop doc overlaysize default #3127 Bug 2076521 : mcc: update node sort to account for matching zones #3125 daemon: Validate kernel arguments #3105  
Bug 2078945 : Ensure only one apiserver-watcher process is active on a node. #3106 Do not check for status of other operators for node config #3111  
Bug 2072040 : Avoid NM managing patch port between br-int and br-ex #3059 nodecontroller: 3 logging patches #3104  
kcfg controller remove cleanupmc #3096  
Bug 2076975 : OVN Kubernetes configure-ovs-network set static if conversion metric #3100 daemon: Add some logging for state #3102  
workerlatency profiles - updating the kubelet configuration based on the nodes.config.openshift.io resource #3015  
Bug 2066605 : [on-prem] make Corefile api matching stricter #3033 Kubelet: apply default podPidsLimit #3085  
Bug 2073021 : firstboot: Retry on failure #3070 Revise KubeVirt platform for hypershift usage #3084  
Deprecate the use of pkg/errors #2868  
Bug 2074613 : templates: Don’t use :z with podman on system directories #3079 Bug 2035005 : Move removeUpdateInProgressTaint functionality to mcc #3064 [low priority] kubelet controller: rm unused userDefinedSystemReserved #3054  
mcc/node controller: order node updates by zone #3009  
[low priority] update_test: remove redundant types #3082  
updateKernelArgs: pass kargs instead of MCs #3055  
daemon: add desiredConfigMap mode for Hypershift #3068  
daemon: add a comment explaining CoreOSDaemon #3080  
adds zacks hack scripts #2953  
Bug 2069740 : Avoid kubernetes node port range #3044 Update github.com/containers/image #2695  
Render Nutanix cloud provider as blank. #3051  
Create MCONamespace constant #3025  
Bug 2055433 : configure-ovs: set networking on before restarting NetworkManager #3006 Bug 1949827 : Add KUBELET_NODEIP_HINT to nodeip-configuration #2888 Bug 2058030 : configure-ovs: move dhcp config from br-ex to ovs-if-br-ex #3024 start.go: rm orphaned err check #3042  
Bug 2067857 : prometheus/client_golang v1.11.0 -> v1.12.1 #3038 mcd: Remove redundant MkdirAll call in update.go #2895  
Remove runtime request timeout restriction #3026  
Bug 2068613 : ClusterRoleUpdated/ClusterRoleBindingUpdated Spamming Event Logs #3040 Bug 2057160 : configure-ovs.sh: Provide store hint for default route interface #2971 Move log statement to UpdateTuningArgs #3032  
build-sys: Default to make binaries #3035  
e2e: Use /proc/cmdline instead of rpm-ostree kargs #3034  
Fix description typo in osImageURL CRD parameter #3029  
Add Nutanix Platform to Machine Config Operator #2942  
bootstrap_test.go: remove unused constants #3023  
Make our resourcemerge fork update a container’s Resources.Requests, un-revert #2802 #3028  
Revert “Send alert when MCO can’t safely apply updated Kubelet CA on nodes in paused pool” #3027  
Send alert when MCO can’t safely apply updated Kubelet CA on nodes in paused pool #2802  
server/api_test: Adjust expected error message for Go 1.18 #3019  
Enable unicast keepalived for all on-prem platforms #3016  
templates: Clean out filesystem properties #2894  
Bug 2063324 : Ensure directories are created with usable permission bits #3011 enhance MCO test library #3000  
Bump(openshift/api): to get CSI changes #3010  
daemon: get the apiserver url from the kubelet’s kubeconfig #2978  
Update vendored Ignition to v2.13 #2996  
daemon.go/update.go: various cleanup surrounding OS updates #2973  
Remove unused etcd images #3001  
daemon: bootimage and ignition logging #2994  
configure-ovs: reload NM only when necessary #2992  
Add --templates flag to MCC bootstrap command #2995  
Preparatory patches for bumping fcct -> butane #2980  
Bug 2060133 : Explicitly set keyfile as the default plugin #2984 Use afterburn to collect instance metadata in order to populate nodename #2988  
Remove bindata.go #2983  
Add new extension for kerberos #2979  
Bug 2048352 : ovn-kubernetes: Fixed ofport_request for physical ports #2941 Bug 2050466 : Not allow empty string in icsp&image CR #2969 Bug 2058626 : Revert “Bump(openshift/api): to get CSI changes” #2968 Bump(openshift/api): to get CSI changes #2949  
Bug 2041814 : do not generate new KubeletConfigKey for the first kubel… #2936 OpenStack: set transient hostname in afterburn-hostname #2945  
Bug 1929160 : Add NetworkManager reload to resolv-prepender #2488 test/helpers: use RetryOnConflict for node writes #2921  
updates docs for config drift detection #2872  
templates: Change default container-runtime config to enable all CRI-O metrics #2911  
Revert “Remove sysctl-inotify.conf.yaml”
 #2944  
Remove sysctl-inotify.conf.yaml #2909  
Bug 2047445 : Use ip command to check for ipv6 addresses #2934 Add Christoph as a baremetal owner #2920  
docs: Update links from “Optimized Updates” to “Rebootless Updates” #2913  
Full changelog  
Updating ose-multus-admission-controller images to be consistent with ART #44  
Updating ose-multus-admission-controller images to be consistent with ART #42  
Full changelog  
Bug 2092839 : Fix missing device-info in networks-status annotation for chained plugins #131 Bug 2071799 : Skip status update in CmdDel if getPod is failed #130 Updating multus-cni images to be consistent with ART #119  
Bug 2082360 : Bumps net-attach-def client library (for CNI v1.0 IP compatibility) #127 types: fix usage of strings.Split() for parsing CNI_ARGS (#836) #126  
Bug 2071799 : Remove error handling for getPod to force to proceed cmdDel. #124 Bug 2038019 : Upstream sync for 4.11 #121 crio: mount /run rslave #120  
Full changelog  
Updating multus-networkpolicy images to be consistent with ART (#16) #16  
Updating multus-networkpolicy images to be consistent with ART (#15) #15  
Full changelog  
Updating ose-multus-route-override-cni images to be consistent with ART #25  
Updating ose-multus-route-override-cni images to be consistent with ART #21  
Full changelog  
OCPBUGS-1658 : ip-reconciler Add all non default interfaces to Pod IP list [backport 4.11] #97 Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART #81  
Bug 2065785 : Sync upstream for context improvements #87 Bug 2050409 : ip-reconciler should have known errors from api server on instantiation #84 Bug 2052055 : client-go bump to v1.22 #82 Full changelog  
Bug 2104701 : Add timeout to oc cp command to fix must-gather delays when routers are terminating #318 Updating ose-must-gather images to be consistent with ART #302  
Bug 2097346 : Updates how gether_monitoring obtains SA token #313 Bug 2091658 : Improve the sriov gather script #305 Bug 2090730 : Adds collection of Multus log files #306 Bug 2023295 : fix getting deployment name #303 Bug 1999529 : Filter disabled resources in inspection to proceed others #296 fix gather_insights collection #301  
Bug 2023295 : Add networking resources #300 Add SR-IOV gather script #297  
gather_profiling_node: correctly manage NotReady Nodes #299  
Add new metallb crds to the gather script #295  
add capability for oauth-server audit logging #265  
Simplify CRD collection #293  
Bug 2062355 : Collect NMState resources when operator is installed #292 List the pods by label app=etcd to only list etcd pods #289  
WINC-708 : Collect containerd logs on Windows instances #290 Bug 2054319 : Fix the namespace extract filter #286 RUNNING_ETCD_POD must not be a quorum pod for must-gather #276  
collection-scripts: allow collection of CRI-O profiling data #285  
Collect prometheus target details #277  
Updating ose-must-gather images to be consistent with ART #281  
Add script to collect kubelet profiling data #273  
Full changelog  
Bug 2112297 : Backport “mac duplicates” #41 Updating ose-network-interface-bond-cni images to be consistent with ART #32  
ds merges: IPAM fix, tests, bond interface name fix #31  
Updating ose-network-interface-bond-cni images to be consistent with ART #30  
Full changelog  
Updating ose-network-metrics-daemon images to be consistent with ART (#46) #46  
Updated prometheus client_golang version to v1.11.1 (#48) #48  
Fix field selector (#49) #49  
Full changelog  
Updating ose-network-tools images to be consistent with ART #61  
Bug 2043094 : Add ovn clean conntrack functionality #55 Updating ose-network-tools images to be consistent with ART #54  
Add docs for invoking ovnkube-trace #56  
Full changelog  
Use resourceName in Openshift SAR rule #243  
Updating golang-github-openshift-oauth-proxy images to be consistent with ART #241  
Full changelog  
And 103 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Bug 2111901 : Split route controller #232 Bug 2117746 : [release-4.11] Rebase k8s 1.24 #233 Updating ose-openshift-controller-manager images to be consistent with ART #217  
Add user coreydaley as an approver #224  
NE-860 : ingress-to-route: add support for destinationCACertificate #218 Image trigger handler: Include the object name on error #221  
Bug 2075584 : Bubble actual error message up to the build #220 Bug 2067868 : Update prometheus client_golang from 1.11.0 => 1.11.1 #219 Accept stop signal #215  
Full changelog  
Updating openshift-state-metrics images to be consistent with ART #87  
Updates OWNERS file #86  
Bug 2067783 : Bump client_golang to v1.12.1 #85 Use service CA beta annotation #84  
Updating openshift-state-metrics images to be consistent with ART #81  
Adding the right build comment as per go 1.17 #82  
Full changelog  
Bug 2090662 : SWEET32: Improve TLS configuration for Kube RBAC Proxy (cont) #88 Bug 2090662 : SWEET32: Improve TLS configuration for Kube RBAC Proxy #85 Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #84 Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #83  
Bug 2065597 : Add support for dynamic, user-managed config #78 Mark CSI StorageClass as the default one #80  
Add OpenStack team to approvers #81  
Bug 2074292 : Address CVE-2022-27191 #79 Bug 2067869 : Address CVE-2022-21698 #77 Remove Ephemeral mode from the CSI driver #76  
Bug 2061732 : Fail gracefully on failure to populate cloud info #74 Set fsGroupPolicy in CSIDriver #75  
Bump gophercloud #73  
Updating ose-openstack-cinder-csi-driver-operator images to be consistent with ART #68  
Full changelog  
Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #42 Bug 2067844 : Update dependencies to K8s 1.24, go 1.18 #41 Updating ose-machine-api-provider-openstack images to be consistent with ART #40  
Bump machine-api-operator to 25e61c2 #39  
Update cluster-api-provider-openstack to v0.6 #38  
Add Profile and Trunks to Ports and Networks #35  
Bug 2054701 : Convert Machines directly to InstanceSpec #33 Bug 2070181 : Add support for ServerGroupName #34 Add OpenShift CAPO default tags #28  
Bug 2067870 : Address CVE-2022-21698 #32 Upgrade external dependencies #31  
Depend on the downstream CAPO #30  
Bug 2046133 : Set proxy settings on the provider client #27 Bug 2036594 : Refactor MAPO to use a reconcile function for update and create #26 Bug 2043672 : Support root volumes #23 Updating ose-machine-api-provider-openstack images to be consistent with ART #22  
shiftstack: Update OWNERS #21  
Update Dockerfile to 4.10 #9  
Full changelog  
OCPBUGS-2626 : Ensure network defs without subnet follow noAllowedAddressPairs #248 OCPBUGS-1890 : Apply noAllowedAddressPairs on intended subnets only #243 Updating ose-openstack-machine-controllers images to be consistent with ART #237  
Bug 2073398 : Fix InstanceCreate port & trunk cleanup #232 Bug 2067870 : Address CVE-2022-21698 #224 hack/e2e: cleanup tmp dir #221  
Add target to run e2e tests #220  
Bug 2033862 : Ensure subnets belong to the queried network #218 Updating ose-openstack-machine-controllers images to be consistent with ART #217  
shiftstack: Update OWNERS #215  
Full changelog  
OCPBUGS-1556 : Cleanup conversion webhooks when an operator is uninstalled #388 OCPBUGS-1326 : Opm serve cmds #382 OCPBUGS-1104 : Package Server Manager should enforce expected csv values #381 Bug OCPBUGS-828: backport opm serve caching functionality (and bugfix) + opm serve leaving orphan tmpfiles #375  
Bug 2107045 : Only update namespaces when OperatorGroup labels need to change. (#2809) #341 Bug 2114574 : use env var for OCP version instead of clusterversion status #347 Bug 2117324 : concurrent write bug fix #355 Bug 2106772 : Update containerd version #339 Bug 2076323 : Exclude global catalogs from resolution #320 Bug 2100323 : Fix legacy registries no longer working  (#974) #324 Bug 2088541 : Update unpack job pod security (#2793) #323 Bug 2088541 : Update catalog source pod security context #309 Bug 2093288 : fix(grpc): Add startupProbe to check for grpc health readiness (#2791) #314 Bug 2094303 : fix(vendor/scoped): bump k8s version to 1.24, go version to 1.18 and fix scoped client (#2794) #316 Bug 2020484 : Refactor installer to surface certificate rotation (#2775) #306 Bug 2039135 : add more descriptive error message to pruning of FBC #308 Bug 1982737 : Make malformed CSV fail nicely (#2673) #307 manifests/*: comply to restricted pod security level #299  
Sync 05 03 #300  
Fix currentServiceAccount debug message (#2765) #297  
Bug 2074612 : Fix GRPC CheckRegistryServer function (#2756) #294 Sync OLM commits 04/25 #292  
Identify fail forward in csvSources (#2743) #290  
Downstream Sync 04.13 #289  
Sync 04 11 #285  
sync update staging directory 04-07 #279  
sync: Update staging directories 04-05 #278  
Bug 2055861 : Replace collect-profile jobs that haven’t completed #255 Adds CRC deployment automation and CI documentation #268  
Update staging OLM 03-30 #274  
go.*,vendor: Bump root module to go 1.17 #271  
Makefile: Remove the duplicate unit/psm target #270  
Sync upstream commits to the 4.11 release branch #269  
Update PATH setting in base Dockerfile #261  
Remove unsupported project_image from .ci-operator.yaml #262  
Bug 1975543 : Use CVO to delete manifests removed from OLM #245 Fix install_kubebuilder.sh script #258  
Update the build root Dockerfile base image #257  
Updating operator-lifecycle-manager images to be consistent with ART #250  
Updating operator-registry images to be consistent with ART #249  
Bug 2048563 : feat added leader election conventions #228 clean up unused scripts #227  
Full changelog  
OCPBUGS-697 : [release-4.11] Dockerfile.okd: include custom OperatorHub manifest #485 Bug 2088541 : Add psa anotations to namespace to suppress warnings #478 Updating marketplace-operator images to be consistent with ART #473  
Bug 2092464 : Update default catalogsource to use 4.11 images #477 Bug 2079610 : Fix operatorHub status #470 Revert “Bug 2092464: shift marketplace operator catalogs default to v4.11” #476  
Bug 2092464 : shift marketplace operator catalogs default to v4.11 #474 manifests/deployment: comply to restricted pod security level #471  
chore(modules): bump openshift/api for new operatorhub crd #472  
Bug 2057558 : increase polling time of status report to reduce log spam #461 fix(manifests): add singleton operatorhub cr #468  
fix(capabilities): add operatorhub crd manifest #467  
Bug 2070792 : chore(manifests): add missing capabilities annotation #465 manifests/10_clusteroperator: Drop the unused namespace property #401  
chore(manifests): add openshift capability annotation #462  
Bug 2067909 : Bump github.com/prometheus/client_golang to v0.12.1 #463 Update OWNERS #464  
Bump repository to Go 1.17 and k8s v0.23.x #460  
Updating marketplace-operator images to be consistent with ART #459  
Full changelog  
Bug 2091567 : oVirt CSI driver operator should use latest go-ovirt-client #98 Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #96 Updating ose-cluster-ovirt-csi-operator images to be consistent with ART #97  
Added @engelmi as approver #95  
Bug 2067821 : Bump prometheus/client_golang to v1.11.1 #93 Bug 2064613 : Recreate oVirt connection for every sync #92 Set fsGroupPolicy in CSIDriver #89  
Bug 2006201 : Increase timeouts for CSI driver #86 Updated OCP on RHV team members #82  
Bug 2049169 : Add custom CA bundle support #83 Updating ose-cluster-ovirt-csi-operator images to be consistent with ART #81  
Full changelog  
Bug 2111471 : Set the node internal dns address for machine #28 Bug 2100825 : Update go modules #24 Bug 2100033 : Fetch VM IP from DHCP server to set NodeInternalIP #22 Bug 2082667 : Bump MAPI dependency. Separate node drain controller. #20 Bug 2089563 : Use PowerVS api types from openshift/api #17 Bug 2087039 : Update dependencies to K8s 1.24, go 1.18 #19 Updating ose-powervs-machine-controllers images to be consistent with ART #18  
Fixed Provider ID format #16  
Set zone, region labels to machines #13  
Removed node update controller #8  
allow user to pass in regex for resource lookup #9  
Bump machine-api-operator #12  
Updated Makefile #11  
Updated power go client #7  
Remove whitespace from the ip address #6  
Updating ose-powervs-machine-controllers images to be consistent with ART #4  
And 1 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Updating prom-label-proxy images to be consistent with ART #346  
Updates OWNERS file #345  
Updating prom-label-proxy images to be consistent with ART #343  
Full changelog  
OCPBUGS-2640 : Fix ‘invalid magic number 0’ bug (#11338) #143 Bug 2099561 : Bump openshift/prometheus to v2.36.2 #136 Bug 2064984 : Update Prometheus to v2.36.1 #133 Updating golang-github-prometheus-prometheus images to be consistent with ART #132  
web/ui/.gitignore: unignore generated assets for downstream build #130  
Bump openshift/prometheus to v2.35.0 #128  
Updates OWNERS file #124  
Bump openshift/prometheus to v2.34.0 #123  
Bump openshift/prometheus to v2.33.5 #122  
Bug 2056802 : scrape: Fix label_limits cache usage #121 Bump openshift/prometheus to v2.33.4 #120  
Updating golang-github-prometheus-prometheus images to be consistent with ART #119  
Full changelog  
Updating golang-github-prometheus-alertmanager images to be consistent with ART #60  
Updates OWNERS file #59  
Bump openshift/prometheus-alertmanager to v0.24.0 #58  
Bump openshift/prometheus-alertmanager to v0.23.0 #55  
Updating golang-github-prometheus-alertmanager images to be consistent with ART #57  
Full changelog  
Bug 2097716 : pkg/apis/monitoring/v1beta1: fix httpConfig conversion #191 Bug 2091595 : bump to Prometheus operator v0.57.0 #190 Bug 2079679 : pkg/prometheus: fix curl exec probe #189 Revert “Bug 2091595: Bump openshift/prometheus-operator to v0.56.3” #188  
Bug 2091595 : Bump openshift/prometheus-operator to v0.56.3 #185 Updating prometheus-operator-admission-webhook images to be consistent with ART #180  
Updating prometheus-config-reloader images to be consistent with ART #178  
Bug 2084288 : Revert “Bump openshift/prometheus-operator to v0.56.2” #177 Updating prometheus-operator images to be consistent with ART #176  
Bump openshift/prometheus-operator to v0.56.2 #174  
Revert “Bump openshift/prometheus-operator to v0.56.1” #171  
Bump openshift/prometheus-operator to v0.56.1 #170  
Add myself to OWNER file #166  
Bug 2079679 : Revert “[bot] Bump openshift/prometheus-operator to v0.56.0” #168 Bump openshift/prometheus-operator to v0.56.0 #165  
Bump openshift/prometheus-operator to v0.55.1 #164  
Bump openshift/prometheus-operator to v0.55.0 #162  
Fix typo in admission webhook bin output #163  
Add Dockerfile and targets for standalone admission webhook image #160  
Standalone webhook server #159  
Bump openshift/prometheus-operator to v0.54.1 #158  
Updating prometheus-config-reloader images to be consistent with ART #155  
Bump openshift/prometheus-operator to v0.54.0 #151  
Updating prometheus-operator images to be consistent with ART #154  
Full changelog  
OCPBUGS-1723 : Fix a bug of metric format on AMD EPYC platforms #108 Updating golang-github-prometheus-node_exporter images to be consistent with ART #103  
Updates OWNERS file #102  
Updating golang-github-prometheus-node_exporter images to be consistent with ART #101  
Full changelog  
OCPBUGS-1007 : go.mod: update github.com/gogo/protobuf to v1.3.2 #421 Updating telemeter images to be consistent with ART #412  
Bug 2105937 : [release-4.11] Updates version of golangci-lint to support GO1.18 #414 Adds PrometheusRule telemetry that was previously hosted in cluster-monitoring-operator #411  
Bug 2067888 : update prometheus/client_golang version #409 Use service CA beta annotation #408  
Updating telemeter images to be consistent with ART #407  
Full changelog  
OCPBUGS-2616 : Fix s2i ruby test that relys on rack #27480 disruption checking is disabled for prior releases because we lack a good baseline #27468  
Bug 2108978 : pkg/monitor: wait for Prometheus sidecars to be ready #27313 Bug 2104203 : revert: no longer needed logic for rt kernel #27290 BUG 2103700: test/extended/router: Drop host lookup for gRPC HTTP/2 h2spec tests #27287  
OCPBUGS-772 : [release-4.11] Fixes OVN ACL audit log parsing #27390 Bug 2110723 : [4.11] test: allow -f to match tests for any test suite #27300 Bug 2106942 : use multi-arch ldap and multicast test images #27305 Bug 2104162 : [release-4.11] Remove etcd vertical scaling test. #27284 Bug 2098053 : Re-revert “Add networking test for invalid external gateway” #27273 Bug 2098053 : Re-revert “Add networking test for invalid external gateway” #26985 Bug 2100439 : Enable GCP PD in-tree tests #27272 Bug 2086519 : AUTH-133: test/extended/security/scc: comply to pod security admission #27269 Bug 2093122 : synthetictests: Event struct’s Related field is optional #27208 Bug 2086519 : authorization: add a test checking that the restricted-v2 SCC mutates securityContext to match restricted PSa #27257 Bug 2098095 : EgressIP tests: Use OpenShift API to retrieve CloudPrivateIPConfigs and EgressIPs #27243 Bug 2099611 : Increase etcd-operator watch channels upperbound for BareMetal Platform #27263 Bug 2098094 : EgressIP test: Remove print statement on test failure #27191 Bug 2093339 : move provisioning test to permanent disablement, since this is not yet officially supported #27267 Bug 2086092 : Re-enable tests #27258 Bug 2097713 : Extend the allowance for etcdHighNumberOfLeaderChanges. #27238 Bug 2097684 : Nutanix provider for e2e testing #27102 Add David Peraza as approver on samples test content #27241  
Bug 2093992 : Bump timeout for cvo ugprade check to 10 minutes for Baremetal jobs #27254 Bug 2086092 : update kube to v1.24.0 #27244 Bug 2097297 : Don’t consider DNS lookup failure disruption #27250 Bug 2093051 : use the node update finished as a backup completion time for OSStaged #27206 Bug 2086092 : Extend time for kube rebase #27252 Bug 2097009 : Run must-gather tests in later to reduce resource contention #27249 Bug 2086086 : update samples for 4.11 #27234 Bug 2085997 : Report late requests verification: Fix for Hypershift #27220 Bug 2094919 : Skip etcd vertical scaling test on vsphere #27236 Bug 2092961 : Use http for network endpoint test. #27217 Bug 2084361 : Print error msg before os.Exit() #27230 Bug 2093049 : test/extended/networking: fix [pod sysctls should not affect node] to use known host interfaces #27221 Bug 2085997 : explicit timeout for the etcd scaling test #27216 revert 1.24 tests to get back to work #27233  
Bug 2086092 : update kube to v1.24.0 #27181 Revert “Bug 2079679: pkg/monitor: wait for Prometheus sidecars to be ready” #27223  
Bug 2091110 : Skip ErrImagePull for expected failures #27202 allow terminating pods to be ready=false #27212  
Revert “Bug 2093049: test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces” #27219  
Bug 2092961 : Flake almost all ci cluster to external svc disruption. #27210 Bug 2093049 : test/extended/networking: fix [pod sysctls should not affect node] to use host interfaces #27203 Bug 2093234 : Add regex filter and intervals duration to e2e-charts #27186 Bug 2093046 : priority class: add exception for must-gather pending bug fix #27204 Bug 2081732 : remove incorrect namespace check in static pod test #27195 Bug 2092961 : Add disruption test to an external service, not cluster under test. #27179 Bug 2091547 : Skip internet connection test if we use a proxy #27093 Bug 2079679 : pkg/monitor: wait for Prometheus sidecars to be ready #27201 Bug 2091067 : EgressIP: Make tests retry on API timeout errors #27185 Bug 2085997 : report late request (broken LB) for the external client #27129 Bug 2085997 : brings back the etcd scaling test #27176 Bug 2091086 : test/extended/cli/explain: Include OperatorHub CRD when ‘marketplace’ is enabled #27188 rename intervals to timelines to be self-explanatory #27182  
Bug 2086519 : label project-created namespaces to not sync PodSecurity labels #27177 wait for kube-apiserver to settle after modifying network configuration #27193  
Bug 1992596 : move help.sh to golang-based e2e #27190 Bug 2091086 : cli: don’t insist on metal3 CRDs being present when cluster capabilities are None #26998 restrict the per-namespace invariant alert check #27184  
Bug 2090692 : slightly loosen oc exec help test #27183 Updating openshift-enterprise-tests images to be consistent with ART #27139  
allow up to two DNS check pods to be waiting #27175  
Bug 2086092 : skip tests to facilitate rebase #27178 Bug 2081732 : Static pod test error #27160 Revert “Bug 2089831: Temporarily disable telemetry token test.” #27168  
add per-namespace tests for kubepodnotready alert failures #27151  
remove the etcd vertical scaling test #27174  
Bug 2089276 : Detect and use the packet capture interface for EgessIP tests. #27164 remove test: ‘etcd is able to vertically scale up and down with a single node’ #27170  
Bug 2086519 : bump o/kube so that test namespaces aren’t PSa label synced #27173 Bug 2085997 : special configuration on barematal platform for the etcd vertical test is required #27140 don’t trigger single second disruption on contiguous disruption #27161  
Bug 2089831 : Temporarily disable telemetry token test. #27165 BZ2088533: Add subresource.status check exceptions for techpreview jobs #27156  
add pod graceful termination to pod lifecycle #27153  
Bug 2081732 : Dump debug message whenever static pod test fails #27143 Bug 2086086 : image_ecosystem: remove deprecated imagestreams #27133 Bug 2086519 : Auth-133: test/extended/util: comply exec pod to restricted pod security profile #27152 Bug 2085997 : makes the etcd invariant test work on dualstack platform #27148 Bug 2085997 : ExternalControlPlaneTopology: Skip etcd master endpoint verification #27149 BZ2087992: Add regex matching, regex inverse matching, and default end date option for intervals #27117  
BZ 2087504: Add Early test to check for CRD subresource.status #26954  
Bug 2085997 : the machine API can be unavailable resulting in a 404 or an empty list #27147 EgressIP downstream tests for OVN Kubernetes #26999  
Add user coreydaley as an approver #27144  
handle cases where containers restart #27137  
commenting ipv6 for sysctls #27142  
Bug 2085997 : ensure number of voting members in the cm matches the number of master machines #27141 Bug 2085997 : the etcd vertical scaling feature misses e2e tests #27127 Bug 2084361 : Add some debugging information for mysterious exit 2 errors #27136 Bug 2085997 : adds new test to the API monitor #27118 update alert and disruption limits #27130  
Bug 2085997 : gives the backend monitoring an identity #27134 always allow at least one second for disruption #27131  
Bug 2080007 : unrevert external ip configuration e2e networking tests #27078 Bug 2083941 : feat: add fuzzy match on micro release #27123 add test to catch single second disruption patterns #27132  
Bug 2082538 : bump cluster-capi-operator apirequests upper bound for GCP And Azure #27108 Revert “moves TestScalingUpAndDownSingleNode from cluster-etcd-operator” #27126  
Add debugging message for static pod test #27111  
Bump net.ipv6.neigh.IFNAME.retrans_time_ms for Multiarch #27119  
Don’t hardcode the SA token audience when requesting one #27120  
timeline command, container exit fix, key resources by uid, and use reflector #27114  
NE-883 : test/extended/router: Add test for spec.subdomain #27030 moves TestScalingUpAndDownSingleNode from cluster-etcd-operator #26917  
Add config for golangci-lint no-sprintf-host-port #27116  
Correct pod timing #27112  
Bug 2080687 : request prometheus service account token #27100 Fix request token ic cli/admin tests #27113  
Bug 2081012 : Don’t wait for sa token #27104 prometheus helper: add helper to retrieve prometheus query token #27107  
Bug 2080679 : fix oc related test to land k8s 1.24 #27099 [rebase 1.24] disable tests with time limit to facilitate rebase #27086  
Bug 2082239 : Bump net.ipv6.neigh.IFNAME from 30005 to 30010 for Multiarch #27101 test/extended/util/openshift/clusterversionoperator/adminack: Accept MultipleReasons #27110  
make it easy to create pod interval tests #27092  
Bug 2080681 : Request new token instead of using node-bootstrapper token #27098 Revert “NE-626: Add DNS CI coverage for golang and glibc resolver libraries” #27103  
make the pod ip check a controller #27097  
NE-626 : Add DNS CI coverage for golang and glibc resolver libraries #26957 Revert “test: allow -f to match tests for any test suite” #27095  
MON-2148 : Handle 401 code for prometheus api route #27031 test: allow -f to match tests for any test suite #27091  
router: wait for “use scc restricted” SAR before pod creation #27084  
Remove non-functional gu workload tests. #27044  
test/extended/prometheus/image_pulls: New “should be fast” test-case #27067  
give multi-arch more time to complete upgrades to clean up signal #27085  
skip ‘should not see excessive Back-off restarting failed containers’ for e2e tests #27087  
haproxy needs to request privilege escalation in order to work #27080  
updates “managed cluster should report ready nodes the entire duration of the test run” #27077  
skip etcd quorum probes failures when etcd revision changes #27072  
don’t wait for SA token secrets #27081  
Revert “Add e2e tests for ExternalIP Policy and AutoAssignCIDRs” #27075  
Add restricted-v2 to the default RBAC rules for authenticated users #27071  
Increase determinism when searching for prom service secret token #27073  
improves etcdRevisionChangeAllowance calculates the number of etcd’s operator rollouts #27070  
Include timestamp when reporting observed ReusedPodIP events. #27074  
track pod IP re-use #27062  
hack/verify-generated: Replace –quiet with –exit-code #27060  
Bug 1992596 : e2e/cli: Migrate create.sh to Go tests #27049 force completes upgrade failure if operator failure #27058  
Bug 2078528 : bump cluster-node-tuning-operator apirequests upper bound for OpenStack #27052 handle cases where the DNS querier pod isn’t yet running #27056  
Add e2e tests for ExternalIP Policy and AutoAssignCIDRs #26894  
tuning-cni: basic tests #26953  
Sysctl: validate that setting a pod sysctl does not affect node and other pods #26940  
the ‘should be scheduled on different nodes’ were only fixed in 4.11 and later #27053  
Separate out ‘Back-off restarting failed container’ from pathological test #27047  
Revert “Skip newly enabled networkpolicy tests on IPv6” #27045  
Flake pod sandbox errors pinging container registry on azure. #26964  
Ignore loki NetworkNotReady repeating events. #27051  
Bug 2030972 : test/extended/util/openshift/clusterversionoperator: Survive API hiccups #27041 Bug 2077457 : Skip BeforeEach as well for the skipped HAProxy config manager test #27034 synthetic: cloud api quota synthetic test should always be present #27042  
Remove fixed clusterIP service for ipv6 contexts #26895  
loosen SCC capabilities check to allow stricter caps #27024  
test/dns: add the bits to make the Restricted PodSecurityPolicy happy #27035  
Disable FIPS disabled serving routes test on BM #27033  
test/e2e/upgrade: Use PATCH instead of POST for ClusterVersion spec updates #27023  
Sysctl tests: pod with sysctls not on whitelist should not start #26937  
Bug 2075584 : Use substring match instead of exact match #27028 Switch to groupified APIs #27025  
Dump imagestreams and buildconfigs on build imagechange trigger test failure #27019  
Best matcher single node OVN #26929  
: Separate pod network creation failure from others in sandbox creation… #27020  
test/…/disruption: set pod security level centrally #27017  
Switch to groupified APIs #27008  
router: construct url with net.JoinHostPort #27015  
Add exception for etcd guard pod readiness probe error events #27016  
test/extended/*: set necessary pod security settings #27014  
getArchitecture: Fix to work with Hypershift #27004  
Bug 2072171 : Reenable the implementation for basic egressfw e2e CI test #26973 MGMT-9440 : Fix single node serial tests API crash #26904 skip tests for etcd leaders when etcd revisions change a lot #27009  
Fix another issue with CVO upgrade ack timeout on metal. #27001  
bump o/kube to get latest PSa test updates #27012  
Bug 2031564 : Separate out test for ‘RequiredInstallerResourcesMissing secrets’ #26936 Bug 2060406 : bump apirequests upper bounds for GCP #27002 Bug 2072533 : synthetictests: skip “alert/Watchdog must have no gaps or changes” on SNO upgrades #26976 Bug 2074445 : exclude loki-promtail from duplicated events #27006 Fix up one more optional capabilities new-app test #27005  
actually set default PSa labels if unset #27000  
util/client.go: add method to specify pod security admission level #26938  
Add test for validating related object references. #26921  
correct pathological event detection #26994  
prevent npe for old container status readiness #26996  
Bug 2011895 : Add synthetic test for cloud API throttling #26559 router: fix all uses of Sprintf to build host:port for a URL #26983  
prevent pending/firing alert overlap #26968  
Skip newly enabled networkpolicy tests on IPv6 #26977  
test: switch to testing CapBnd over CapInh #26960  
remove wait for samples imagestreams, no longer needed #26992  
Bug 2066865 : bump openshift/kubernetes #26969 test/extended: add/update OWNERS files for Prometheus #26910  
test/extended/prometheus: Remove SDN/OVN-K alert rules #26687  
Unrevert and fix for the HAProxy test #26980  
Bump timeout for CVO to ack the upgrade generation. #26974  
Bug 2066457 : don’t fail when a query returns warnings #26984 Bug 2072924 : increase the threshold on the number of telemetry series #26988 Update limits #26982  
fix evaluation of deleted pods for pod sandbox test #26978  
Revert “Fix HAProxy tests on FIPS properly” #26979  
Revert “Add networking test for invalid external gateway” #26975  
Revert “Implementation for basic egressfw e2e CI test” #26967  
Bug 2067323 : extended/test/router: omit DNS managed conditions for shards #26949 Add networking test for invalid external gateway #26883  
Bug 2060406 : test: bump apirequests upper bounds for VSphere and AWS single node #26962 test: update synthetic test node restart count #26948  
bump: k8s.io/kubernetes #26955  
Ignore FailedCreatePodSandBox event that is expected to happen #26966  
add pod lifecycle intervals to separate pages #26908  
Add missing operators from the known operators list #26963  
Bug 2047913 : Fix HAProxy tests on FIPS properly #26803 Bump allowed watches for node-tuning-operator #26944  
Migrate tests away from using samples-operator provided imagestreams #26913  
Image registry redirect #26920  
Bug 1996883 : increasing build config loglevel #26958 Use ServerGroupResources instead deprecated ServerResources #26956  
Fix typo in OVN Kubernetes skipper #26950  
Bug 1996883 : Increasing log level to support decrease in default buildah log level #26941 Implementation for basic egressfw e2e CI test #26934  
Check token response error code #26926  
Clarify that the image mirroring requirement applies to conformance tests only #26912  
coarse serialization of storage tests #26933  
Revert “bump: k8s.io/kubernetes” #26939  
bump: k8s.io/kubernetes #26935  
Flake on FailedCreatePodSandbox if missing ovn readiness file. #26932  
Add pod securityContext sysctl whitelist tests #26809  
Revert “Implementation for basic egressfw e2e CI test” #26931  
Update where the canary test lists is retrieved from #26930  
Implementation for basic egressfw e2e CI test #26865  
Implementation for egress-router-cni e2e ci test #26875  
Attempted fix for missing monitor events. #26862  
JKNS-267 : minimize jenkins e2es (pipeline strategy verification only) #26914 Attempt multiple different token requests #26916  
Simplify 26907 #26924  
Bug 2034688 : allow Prometheus/Thanos to return 401 or 403 when the request isn’t authenticated #26695 Migrate builds tests away from using sample imagestreams since samples will be optional #26909  
Update prometheus owners #26911  
Pod scheduling tests improve pod deployment identification #26906  
Add early test to check router pods are not on same node #26899  
Give each interval chart a title #26896  
Mark image pull from registry.redhat.io as flake to track but not fail #26897  
Bug 1961233 : Add DNS availability upgrade test #26795 Revert “Disable intree vsphere tests” #26797  
Bug 2026063 : build-quota test: fix cgroupv2 parsing holes exposed by buildah upgrade #26885 Bug 2057990 : Add debug info for signature test #26884 MGMT-9440 : Fix single node serial tests API crash. #26868 Bug 2060498 : only add failure when no event was found for the target revision #26880 Bug 2060406 : operators should not create watch channels very often: bump OpenStack monitoring operator #26877 Use common threshold constant as other event tests #26873  
cleanup network policy ACL extended test #26876  
add text to the timelines when you hover #26871  
Make a test to specifically look for image pull backoff for registry.redhat.io #26858  
Bug 2059299 : IBMCloud: Ignore CRB already exists #26864 Switch to batch/v1 CronJob #26867  
Bug 2059277 : images/tests: yum update python3-six to workaround ART issue #26863 Increase scale test timeout to 30 minutes #26861  
Fix ovnkube-node readiness test to include successes. #26860  
Bz2054254 rearrange test cases #26857  
Set ovnkube-node readiness failure to flake for now. #26855  
Increase cluster-monitor-operator watch count threshold on single-node clusters #26685  
allow slow kubelet updates for static pods, but still fail if they never succeed #26852  
OWNERS: Declare Bugzilla component #26368  
vsphere is firing this alert/VSphereOpenshiftNodeHealthFail and it is hiding other alerts #26850  
Updating openshift-enterprise-tests images to be consistent with ART #26804  
update alert thresholds after extending static pod install duration #26844  
ip reconciler ignore #26842  
Bug 2049117 : Reenable wait on worker deletion and increase serial test timeout #26810 Bug 2053582 : fail on static pod lifecycle failures #26837 Allow a single test to override suite timeout #26833  
Bug 2053312 : requestheader test must wait for authentication operator to settle after config update #26834 Bug 2053143 : allow inexact matches for disruption data #26831 Break out test for OSUpdateStaged event with no OSUpdateStarted. #26824  
add job type key to the error we track for statistical jobs #26823  
baremetal: add test for preprovisioning images #26780  
Bug 2045590 : Alibaba: enable init for alibabacloud provider #26818 Revert “Flake failed sandboxes from bug in new guard pods” #26817  
Debug missing OSUpdateStarted events #26798  
Delete extra workers before running metal high availability test #26813  
images: update registry to 2.8.0-beta.1 #26811  
Bug 2044824 : Update k8s vendoring #26805 Bug 2050345 : update p99 values for disruption and alerts #26815 Bug 2047911 : IBMCloud: Concurrent CRB create #26806 Only run parallel tests in the canary job since it runs in parallel #26812  
Fix broken console disruption test. #26808  
Add baremetal high availability tests #26569  
Bug 2047362 : Prometheus check targets endpoint #26793 Verify Builds with CSI Volume Sources #26791  
Bug 2047790 : Skip some HAProxy tests on FIPS #26800 don’t double report early alert failures #26796  
Full changelog  
OCPBUGS-3764 : Fix local-test for go 1.18 #87 Bug 2067877 : [bot] Bump openshift/thanos to v0.26.0 #83 Bump openshift/thanos to v0.25.2 #80  
Bump openshift/thanos to v0.25.1 #79  
Bump openshift/thanos to v0.25.0 #78  
Bump openshift/thanos to v0.24.0 #76  
Updating thanos images to be consistent with ART #77  
Full changelog  
Updating ose-vmware-vsphere-csi-driver images to be consistent with ART #41  
Updating vmware-vsphere-syncer images to be consistent with ART #40  
Bug 2074294 : UPSTREAM: 1706: Update golang.org/x/crypto for CVE-2022-27191 #39 Updating ose-vmware-vsphere-csi-driver images to be consistent with ART #38  
Updating vmware-vsphere-syncer images to be consistent with ART #37  
Bug 2071019 : Rebase against v2.5.1 #36 Bug 2029835 : Revert “Merge pull request #30 from bertinatto/rebase-v2.4.1” #35 Updating ose-vmware-vsphere-csi-driver images to be consistent with ART #33  
Updating vmware-vsphere-syncer images to be consistent with ART #32  
Bug 2029835 : UPSTREAM: 1468: Fixed parsing of /proc/self/mountinfo with spaces #34 Full changelog  
OCPBUGS-3285 : set TLS cipher suites in Kube RBAC sidecars #119 OCPBUGS-1710 : Add HTTP proxy to syncer container #111 Bug 2109977 : storageclass should not be created for unsupported vsphere version #101 Bug 2105334 : Reorder static resources to create RBAC first #98 Bug 2095248 : Report max. nr. of attachable volumes per node #90 Bug 2089973 : bump libs to k8s 1.24 for OCP 4.11 #85 Bug 2089419 : Don’t block upgrades when another CSI driver is found #87 Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART #86  
Bug 2071021 : Enable snapshot support #83 Bug 2072139 : Create separate controller and node roles #82 Bug 2076637 : Scrape CSI driver + syncer metrics #84 add storageclass controller tests #80  
Bug 2059791 : [vSphere CSI driver Operator] didn’t update ‘vsphere_csi_driver_error’ metric value when fixed the error manually #81 Set fsGroupPolicy in CSIDriver #79  
Bug 2053104 : Do not cache node check results between runs #77 Bug 2043132 : Add metric when storageclass installation fails #74 Updating ose-vmware-vsphere-csi-driver-operator images to be consistent with ART #73  
readme: minor fixes #63  
Full changelog  
Source code for this page located on github