Back to index 
Download the installer  for your operating system or run 
oc adm release extract --tools quay.io/openshift-release-dev/ocp-release:4.13.45-x86_64 Team Approvals: 
Tests:
Blocking jobs Informing jobs Upgrades from:
Untested upgrades: 
4.12.19 , 
4.12.20 , 
4.12.21 , 
4.12.23 , 
4.12.24 , 
4.12.25 , 
4.12.26 , 
4.12.27 , 
4.12.28 , 
4.12.29 , 
4.12.30 , 
4.12.31 , 
4.12.32 , 
4.12.33 , 
4.12.34 , 
4.12.35 , 
4.12.36 , 
4.12.37 , 
4.12.38 , 
4.12.39 , 
4.12.40 , 
4.12.41 , 
4.12.42 , 
4.12.43 , 
4.12.44 , 
4.12.45 , 
4.12.46 , 
4.12.47 , 
4.12.48 , 
4.12.49 , 
4.12.50 , 
4.12.51 , 
4.12.53 , 
4.12.55 , 
4.12.56 , 
4.13.12 , 
4.13.13 , 
4.13.14 , 
4.13.15 , 
4.13.16 , 
4.13.17 , 
4.13.18 , 
4.13.19 , 
4.13.21 , 
4.13.22 , 
4.13.23 , 
4.13.24 , 
4.13.25 , 
4.13.26 , 
4.13.27 , 
4.13.28 , 
4.13.29 , 
4.13.3 , 
4.13.31 , 
4.13.32 , 
4.13.33 , 
4.13.34 , 
4.13.35 , 
4.13.36 , 
4.13.37 , 
4.13.38 , 
4.13.39 , 
4.13.4 , 
4.13.40 , 
4.13.41 , 
4.13.5 , 
4.13.6 , 
4.13.7 , 
4.13.8 , 
4.13.9 Upgrades to:
Loading changelog, this may take a while ...
Created: 2024-07-11 15:12:59 +0000 UTC
Image Digest: sha256:c7e3658ca8f0f1fc8ce1512ecc36785a68b1388dfbfc39642bff8120bfa86a33
Release 4.13.45 was created from registry.ci.openshift.org/ocp/release:4.13.0-0.nightly-2024-07-11-010152 
Components 
New images 
Removed images 
openstack-machine-controllers 
ovn-kubernetes 
ovn-kubernetes-microshift 
rhel-coreos-8 
rhel-coreos-8-extensions 
 
Rebuilt images without code change 
apiserver-network-proxy  git a3c0e6b7  sha256:61b52293dbd7f1520f7669585eb63eb21117a310ab48c2a66011404412288670machine-os-content sha256:7214c39178baeddf78e2e093fbf32f24e31d6761aa4a917483293c82d0a15723 
 
MGMT-17595 : Bump x/net to v0.24.0 to mitigate CVE-2023-45288 (#6215) #6215 MGMT-17588 : Bump runc to v1.1.12 to mitigate CVE-2024-21626 (#6202) #6202 MGMT-17541 : Replace broken golangci reference (#6196) #6196 NO-ISSUE: replace postgres images as current one disappeared from quay (#6133) #6133  
MGMT-15150 : Use same installer binary for all platform types (#5346) #5346 MGMT-13947 : Revert assisted boot reporter service (#5292) #5292 OCPBUGS-13083 : Support by-path root device hints (#5213) #5213 OCPBUGS-13356 : Fix ‘vendor’ root device hint evaluation (#5204) #5204 manifests: Add a shebang to NM dispatcher script (#5085) #5085  
bminventory: throw Bad Request error on arm64 Nutanix clusters (#4906) #4906  
Revert “MGMT-13471: SNO installation with OCP 4.13 lacks proper dnsmasq configuration (#4939)” (#5012) #4939  
NO-ISSUE: customize the image path for disk creation (#5010) #5010  
MGMT-13445 : Update Assisted Installer with the new LVMS requirements (#4986) #4986 MGMT-12956 : Add feature IDs for ppc64le and s390x (#5008) #5008 add 4.13 multi ec.3 dev preview images (#5005) #5005  
NO-ISSUE: Bump gorm.io/gorm from 1.23.8 to 1.24.5 (#5006) #5006  
MGMT-13580 : GC orphan hosts (#4997) #4997 Make get_image_without_tag work when registry has a port (#5007) #5007  
MGMT-13374 : support Nutanix in kube-api (#4996) #4996 Updating ose-agent-installer-api-server images to be consistent with ART (#4752) #4752  
Revert “Increase timeout waiting for image-service (#4871)” (#5001) #4871  
Use the correct env var for the hub release image mirror (#4998) #4998  
MGMT-12547 : Enhancement doc “api-for-skipping-validations” (#4870) #4870 Add registry config for ironic agent image (#4995) #4995  
MGMT-13274 : Update time-synced-between-host-and-service message to remove bad advice (#4994) #4994 MGMT-13521 : Clearer messaging when non-overlapping-subnets validation is pending. (#4993) #4993 MGMT-13204 : Implement skipping of host and cluster validations (#4907) #4907 MGMT-13708 : allow overriding image service image in subscription (#4985) #4985 MGMT-13454 : Group Host and boot logs to a single tarball (#4975) #4975 MGMT-13711 : it takes the assisted-service few minutes to notice that the cluster installation is completed (#4988) #4988 MGMT-13620 : Make worker to use custom MCP if it was set as part of the host DB record (#4976) #4976 MGMT-13549 : Day1 implementation for K8S node labels (#4972) #4972 NO-ISSUE: Add logs to supported-platforms (#4982) #4982  
MGMT-13045 : Enhancement document for node labeling (#4826) #4826 MGMT-13682 : Gather host logs on failure in day2 flow (#4983) #4983 MGMT-13292 : Add the installed version of the OLM operators in the monitor operators response (#4961) #4961 MGMT-13471 : SNO installation with OCP 4.13 lacks proper dnsmasq configuration (#4939) #4939 MGMT-13487 : handle day2 cluster authz (#4973) #4973 NO-ISSUE: added ENABLE_ORG_TENANCY to deploy-test target (#4974) #4974  
MGMT-11805 : docs/change-iso-password.sh lint (#4971) #4971 NO-ISSUE: Add scenarios to consider to enhancement template (#4964) #4964  
MGMT-11805 : Dedicated .sh file for the docs/change-iso-password.sh script (#4970) #4970 MGMT-13526 : Fix wrong subscription name on pre-release versions (#4957) #4957 MGMT-13203 : Create REST points for validation ignore feature. (#4927) #4927 Allow Agent installer to use aarch64 (#4441) #4441  
MGMT-13505 : allow to edit ignition url in kube-api (#4967) #4967 MGMT-13447 : Fix LVM subscription name is empty on SNO CNV (#4963) #4963 MGMT-13548 : add feature-support-level list for 4.13 (#4962) #4962 NO-ISSUE: Add destroy to deploy_capi_cluster.sh (#4960) #4960  
MGMT-13302 : Return a bad request if the user wants to install not supported operator for arm64 cluster (#4930) #4930 MGMT-12535 : Service implementation for verify-vips (#4925) #4925 Remove references to edge-infrastrcuture/psql image (#4950) #4950  
NO-ISSUE: Add logs to getOLMOperators LVm flow (#4959) #4959  
MGMT-13462 : Fix disk encryption validation pending (#4958) #4958 Add automatic ShellCheck linting for assisted-boot-reporter.sh (#4945) #4945  
MGMT-12329 : Implements assisted boot reporter and add to ignition (#4543) #4543 OKD: update to OKD 4.12 (#4922) #4922  
Verify detached annotation (#4941) #4941  
NO-ISSUE: skipper error when podman is missing (#4953) #4953  
MGMT-13493 : stream model data instead of DB data (#4947) #4947 Enable converged flow by default (#4935) #4935  
MGMT-13305 : Fix invalid lvms version installed on 4.11 (#4942) #4942 NO-ISSUE: add method to access log (#4944) #4944  
MGMT-12714 : Define RAID drive type (#4937) #4937 Fix support_level value for 4.12 to fully supported (#4938) #4938  
MGMT-13008 : ignition size validation on register infraenv (#4934) #4934 MGMT-13317 : missing transition on refresh when media is disconnected (#4931) #4931 MGMT-12996 : enhancement for dynamic OCP fetching (#4893) #4893 NO-ISSUE: Update 4.13 release images to ec.2 (#4933) #4933  
MGMT-12193 : Add enhancement doc for collecting on-prem data (#4457) #4457 NO-ISSUE: rename event that was erroneusly named as InfraEnv (#4928) #4928  
NO-ISSUE: explicitly declare timeout (#4926) #4926  
MGMT-13432 : fire and forget kafka messages for event notification (#4924) #4924 remove testing log message (#4920) #4920  
MGMT-13327 : MGMT-13300: Add support with 4.13 dev preview images (#4898) #4898 update lvm subscription and the min version for lvm (#4899) #4899  
Disable installation on FC disks (#4918) #4918  
MGMT-13229 : Allow setting Joined to sno installation stages (#4903) #4903 Revert “bm_inventory: use HTTPS if possible for day2 workers (#4150)” (#4781) #4150  
MGMT-12697 : Add ENABLE_REJECT_UNKNOWN_FIELDS to SaaS template (#4916) #4916 MGMT-12292 : stream events to kafka stream (#4823) #4823 MGMT-12975 : Update 4.12 release image to use GA version (#4912) #4912 MGMT-13342 : Git fails to trust git repository because of mismatch with files (#4908) #4908 MGMT-12970 : don’t reset auto-assign for irrelevant hosts (#4891) #4891 bump version for hacking LSO catalog (#4753) #4753  
Fix iPXE ZTP host connectivity during initramfs (#4902) #4902  
MGMT-13138 : Improve messaging over host connectivity. (#4895) #4895 MGMT-12405 : Enclose API endpoint with brackets if IPv6 address (#4900) #4900 MGMT-13008 : validation for ignition image size (#4894) #4894 Setting minikube registry addon to use images from quay.io (#4897) #4897  
MGMT-10785 : report failing cluster operators (#4864) #4864 BMH: add another fallback location for spoke’s root CA (#4883) #4883  
MGMT-13240 : Create ip hint file in sno installation even if there is (#4892) #4892 MGMT-13271 : Update 4.12 release images to use the latest rc version (#4890) #4890 MGMT-12312 : Adds node-boot log type (#4529) #4529 NO-ISSUE: When comparing VIPs, compare only IPs (#4882) #4882  
MGMT-12423 : Watch for Agent changes in ClusterDeployment (#4793) #4793 MGMT-7878 : storage config doc using MachineConfig manifest (#4873) #4873 inventory: limit allowed Nutanix versions in API (#4878) #4878  
MGMT-12655 : Add installation disk ID to  Agent’s status (#4865) #4865 MGMT-12655 : Set Agent’s installation disk ID only if hints exist (#4856) #4856 MGMT-10869 : Forbid multiple machine networks in single-stack clusters (#4867) #4867 MGMT-11979 : verify install-config for none platform (#4844) #4844 Increase timeout waiting for image-service (#4871) #4871  
MGMT-11090 : Enhancement Doc: Assisted boot-reporter service (#4444) #4444 MGMT-12294 : Run subsystem with deterministic openshift version (#4567) #4567 MGMT-13192 : dualstack SNO cluster fails to complete - getting error (#4869) #4869 Add ppc64le & s390x RHCOS ISOs to configmap - rebase (#4796) #4796  
MGMT-13081 : Re-enable and fix a negative NNState subsystem test (#4866) #4866 MGMT-12273 : Updated logging in PreNetworkConfig script. (#4859) #4859 MGMT-13081 : CI to use CentOS8 (#4845) #4845 MGMT-12894 : Use the hub release image when determining the ironic agent image (#4798) #4798 MGMT-12951 : change log message from lvmo to lvms (#4857) #4857 MGMT-13170 : Fix nil pointer dereference in validation if host inventory is nil (#4861) #4861 MGMT-13132 : Respond with 409 when rejecting registration (#4858) #4858 MGMT-12978 : Handle multiple images with the same OCP version (#4817) #4817 MGMT-13080 : [Nutanix] - UMN and machine_network = [] - bootstrap is in insufficient (#4847) #4847 NO-ISSUE: Small numbering issue in doc, amendment (#4852) #4852  
MGMT-12154 : Updating documentation to make Day 2 import process clearer. (#4848) #4848 NO-ISSUE: Bump golang.org/x/sys from 0.1.0 to 0.3.0 (#4850) #4850  
NO-ISSUE: Bump github.com/go-openapi/spec from 0.20.6 to 0.20.7 (#4851) #4851  
MGMT-13040 : Check cluster state before delete (#4849) #4849 MGMT-13098 : fix missing networks on V2GetClusterInstallConfig (#4842) #4842 NO-ISSUE: improve UpdateMachineCidr (#4846) #4846  
MGMT-12794 : allow to edit ProvisionRequirement post install (#4843) #4843 MGMT-12875 : fail gracefully when konnectivity is missing (#4830) #4830 MGMT-6536 : select default cidr in SNO based on default route metrics (#4770) #4770 MGMT-12535 : Swagger changes for vip verification (#4841) #4841 Revert “MGMT-12794: allow to edit ACI post install (#4831)” (#4839) #4831  
MGMT-13080 : UMN if machine cidr not set no need to validate bootstrap (#4835) #4835 NO-ISSUE: Bump github.com/golang-jwt/jwt/v4 from 4.4.2 to 4.4.3 (#4834) #4834  
NO-ISSUE: Bump github.com/go-openapi/strfmt from 0.21.2 to 0.21.3 (#4833) #4833  
MGMT-12794 : allow to edit ACI post install (#4831) #4831 MGMT-11979 : verify install-config manifest in subsystem (#4816) #4816 NO-ISSUE: disable invalid nmstate test (#4832) #4832  
NO-ISSUE: Pass HA mode of the cluster to network validations (#4774) #4774  
MGMT-12743 : adds enhancement proposal for shorter image URLs (#4703) #4703 MGMT-13038 : Git fails to trust git repository because of mismatch with files (#4822) #4822 MGMT-13036 : add emptyDir mount for filesystem cache and ephemeral-storage policy (#4821) #4821 MGMT-12755 : Disallow periods in cluster name (#4778) #4778 NO-ISSUE: Bump github.com/aws/aws-sdk-go from 1.44.51 to 1.44.163 (#4818) #4818  
Provide the inspector URL to the ironic ignition builder (#4779) #4779  
NO-ISSUE: Move SaaS networking documentation to Telco Docs (#4429) #4429  
NO-ISSUE: Bump github.com/go-openapi/swag from 0.21.1 to 0.22.3 (#4813) #4813  
MGMT-12978 : Append -multi suffix to multi-arch images in SupportedVersions (#4811) #4811 MGMT-12880 : Update the wording of statusRebootTimeout (#4805) #4805 MGMT-12911 : Update assisted service operator docs with new icsp behavior (#4804) #4804 MGMT-12950 : Disable compatible agent validation while installing (#4791) #4791 MGMT-12971 : remove 4.12.0.0-0 as openshift hardcoded version in host monitor loop (#4806) #4806 Bump OCP versions: 4.8, 4.11 (#4807) #4807  
NO-ISSUE: Bump github.com/stretchr/testify from 1.7.2 to 1.8.1 (#4535) #4535  
NO-ISSUE: Changing the way we handle an error from ‘updateNetworkParams’ from returning ‘nil, err’ to ‘cluster, err’ (#4714) #4714  
NO-ISSUE: Add multiarch OCP 4.12 release images (#4795) #4795  
NO-ISSUE: Add danmanor to approvers (#4801) #4801  
MGMT-12445 : Update host install progress response (#4787) #4787 MGMT-12697 : Reject unknown json fields (#4794) #4794 MGMT-12366 : Automatically calculate 2nd Machine Network from 2nd VIP (#4761) #4761 MGMT-12591 : setting lvmo on non-SNO cluster should return bad request (#4742) #4742 MGMT-12237 : Limit upgrade agent events (#4786) #4786 Bump OCP versions: 4.10 (#4789) #4789  
MGMT-12886 : fetch CRDs by group in HASC ctrl (#4768) #4768 OCPBUGS-2953 : Fix regex to filter images by tag and by sha (#4767) #4767 Refactor the versions handler into a proper cache (#4645) #4645  
MGMT-12870 : Add missing dual-stack VIP CRUD for KubeAPI (#4755) #4755 NO-ISSUE: reduce build image size (#4775) #4775  
MGMT-12433 : remove text minimum Size 0GB in lvm (#4772) #4772 Document the ironic agent image behavior for converged flow (#4771) #4771  
NO-ISSUE: Added ZTP workflows to hive integration README.md (#4762) #4762  
MGMT-12471 : Don’t wait for console if it is disabled (#4594) #4594 Set infra-env kernel params on preprovisioning image (#4757) #4757  
NO-ISSUE: use two logger instance for generic and ocm logging (#4734) #4734  
NO-ISSUE: extract client from reconcile context (#4720) #4720  
Update cluster-baremetal-operator and use GetIronicIP from there (#4491) #4491  
Bump OCP versions: 4.12, 4.9 (#4764) #4764  
NO-ISSUE: Set the correct RAM size in BMH HardwareDetails (#4453) #4453  
TELCODOCS-831 : Document capabilities exclusion (#4213) #4213 OCPBUGS-1683 : Assisted-install failing with None platform when multiple IP interfaces configured (#4750) #4750 oMGMT-12169: Changing the cluster’s validation message when disks size is not sufficient (#4729) #4729  
NO-ISSUE: edit HASC enhancement doc (#4756) #4756  
MGMT-9915 : Fix sample CRs for dual-stack VIPs (#4758) #4758 MGMT-12759 : Reinstate assisted NMState Go binding (#4698) #4698 MGMT-9915 : Prepare sample CRs for dual-stack VIPs (#4754) #4754 NO-ISSUE: Fix wrong unit test for CIDR autoallocation (#4736) (#4459) #4736  
MGMT-12366 : Allow to use UpdateMachineCidr for multiple networks (#4747) #4747 MGMT-12863 : Assisted Spoke install-config does not generate icsp with multiple mirror to entries (#4745) #4745 Use policy/v1 for pod disruption budget (#4746) #4746  
Split the os versions handling from the release image handling (#4737) #4737  
Bump OCP versions: 4.12 (#4741) #4741  
OKD-90 : execute should throw a warning (#4739) #4739 OCPBUGS-4493 : do not mutate ACI post installation start (#4723) #4723 NO-ISSUE: Fix wrong unit test for CIDR autoallocation (#4736) #4736  
Use the cluster version when extracting the ironic agent image from a release (#4727) #4727  
NO-ISSUE: Explicitly finish mock controllers in cluster transition tests (#4617) #4617  
MGMT-12648 : Update operator bundle channel (#4732) #4732 MGMT-12634 : Create new allow-add-hosts endpoint (#4661) #4661 Move API handlers to a separate struct (#4728) #4728  
MGMT-11506 : Present a more useful validation message for packet loss (#4717) #4717 NO-ISSUE:  Verify that GORM embedded structure is always part of containing structure (#4730) #4730  
MGMT-12662 : Add API documentation for Live ISO kernel arguments customization (#4669) #4669 MGMT-9915 : Enhancement for dual-stack VIPs (#4245) #4245 MGMT-12423 : Use pointers when collecting Agents from ACI (#4570) #4570 Bump OCP versions: 4.11 (#4722) #4722  
NO-ISSUE: Bump github.com/moby/moby (#4721) #4721  
MGMT-12400 : enable pprof when debug mode for memory profiling (#4712) #4712 MGMT-12797 : Missing dual-stack VIP values in SNO cluster (#4710) #4710 MGMT-12749 : BMH: add fallback location for spoke’s root CA (#4696) #4696 OKD: extract manifests if available (#4715) #4715  
MGMT-11455 : Add formal API to allow users to set an additional trust bundle (#4447) #4447 MGMT-12806 : Allow registration when pending for input (#4718) #4718 MGMT-10376 : Adding a feature usage flag for setting UserManagedNetworking flag in a non-SNO configuration (#4579) #4579 MGMT-11386 : approve day2 CSRs for an agent without BMH (#4691) #4691 Bump OCP versions: 4.8 (#4702) #4702  
MGMT-12423 : Additional debug logs when collecting Agents from ACI (#4704) #4704 MGMT-11536 : refresh cluster after host deletion (#4666) #4666 MGMT-12388 : Forbid dual-stack VIPs for OpenShift pre-4.12 (#4694) #4694 docs: add platform integration enhancement (#4192) #4192  
NO-ISSUE: move grafana dashboards to other repository (#4701) #4701  
Bump OCP versions: 4.10, 4.12 (#4693) #4693  
NO-ISSUE: Enable state machine documentation (#4680) #4680  
Remove ValidateAccessToMultiarch function (#4630) #4630  
Revert “MGMT-11506: Present a more useful validation message for packet loss (#4358)” (#4695) #4358  
MGMT-12666 : Document Unauthenticated Registries (#4692) #4692 MGMT-12616 : Reject register after install (#4665) #4665 MGMT-12723 : Fix log formatting in inventory.go (#4679) #4679 MGMT-12635 : Add icsp-file support for all oc commands (#4684) #4684 MGMT-12627 : Add Multiple VIPs support for state machine validators (#4643) #4643 MGMT-12389 : Add feature usage for dual-stack VIPs (#4596) #4596 MGMT-12360 : Pass multiple VIPs down to install-config on OCP >=4.12 (#4573) #4573 MGMT-12684 add envoy as sidecar to produce access log (#4670) #4670  
Small doc addition for OLM operator plugins (#4689) #4689  
Bump OCP versions: 4.11 (#4688) #4688  
MGMT-12355 : API and Ingress VIPs CRUD implementation (#4568) #4568 bm_inventory: use HTTPS if possible for day2 workers (#4150) #4150  
NO-ISSUE: Bump github.com/go-openapi/errors from 0.20.2 to 0.20.3 (#4681) #4681  
MGMT-12678 : Deprecate API and Ingress VIP (Singular) (#4668) #4668 NO-ISSUE: add unauthenticatedRegistries to HASC on deploy (#4676) #4676  
MGMT-11813 : how to install HASC doc (#4663) #4663 Bump OCP versions: 4.11 (#4674) #4674  
MGMT-12686 : Allow installing on FC disks (#4671) #4671 Bump OCP versions: 4.9 (#4667) #4667  
MGMT-8789 : Improve UX setting PUBLIC_CONTAINER_REGISTRIES (#4552) #4552 MGMT-12466 : Add feature usage for discovery kernel arguments (#4659) #4659 MGMT-12379 : PlatformType is not validated when installing SNO cluster. (#4656) #4656 Bump OCP versions: 4.12, 4.10 (#4662) #4662  
NO-ISSUE: log build version (#4658) #4658  
OKD-90 : Support automated extraction of OKD RPMs (#4650) #4650 MGMT-12332 : Kube API subsystem tests for kernel arguments (#4647) #4647 MGMT-12552 : Add UT for day-2 agent status updates (#4657) (#4660) #4657 MGMT-12552 : Add UT for day-2 agent status updates (#4657) #4657 MGMT-11506 : Present a more useful validation message for packet loss (#4358) #4358 MGMT-12592 : added webhooks tests to hypershift e2e (#4648) #4648 MGMT-12552 : Day-2 agent stuck with status_info rebooting although the node is already part of the cluster (#4652) #4652 MGMT-11740 : WebHook configuration in HASC (#4582) #4582 MGMT-12605 : Remove duplicated tests: Dual-stack UpdateCluster (#4644) #4644 NO-ISSUE: Explicitly finish mock controller in host tests (#4632) #4632  
Bump OCP versions: 4.10, 4.8 (#4646) #4646  
MGMT-11810 : added deploy_hypershift_cluster script (#4577) #4577 MGMT-8357 : change ‘local’ deployment method to ‘minikube’ (#4642) #4642 NO-ISSUE: Explicitly finish mock controller in host command tests (#4633) #4633  
NO-ISSUE: Explicitly finish mock controller in host transition tests (#4631) #4631  
MGMT-12500 : DPU cpu arch can be aarch64 and not arm64, adding aarch64 to (#4628) #4628 NO-ISSUE: Explicitly finish mock controller in cluster tests (#4618) #4618  
MGMT-12318 : improve condition message of missing secret (#4641) #4641 Versions tech debt cleanup (#4640) #4640  
MGMT-11087 : Replaced HPP with ODF LVMO on CNV for a single-node … (#4434) #4434 MGMT-12555 : Try avoid deadlocks when updating cluster or host (#4624) #4624 NO-ISSUE: add stage logs to grafana (#4638) #4638  
MGMT-12332 : Subsystem tests for discovery kernel arguments (#4616) #4616 NO-ISSUE: Explicitly finish mock controller in ignition tests (#4634) #4634  
NO-ISSUE: fix attach-disk failure (#4629) #4629  
MGMT-12318 : added conditions for spoke kubeconfig secret (#4623) #4623 nutanix: remove worker MachineSet too (#4621) #4621  
MGMT-8357 : Support kind hub-cluster (#4613) #4613 MGMT-12435 : Add a way to apply patches to core manifests (#4583) #4583 Disable converged flow by default (#4626) #4626  
Describe openshift_version in os_image better (#4620) #4620  
MGMT-12068 : kube api support for discovery kernel arguments (#4566) #4566 MGMT-12572 : Remove duplicated tests: V2UpdateCluster (#4625) #4625 MGMT-12552 : Day-2 agent stuck with status_info rebooting although the node is already part of the cluster (#4610) #4610 MGMT-12489 : We should validate that inventory is not nil while returning (#4611) #4611 NO-ISSUE: Bump github.com/google/go-cmp from 0.5.8 to 0.5.9 (#4615) #4615  
MGMT-12557 : remove duplicated unit tests: monitored operators (#4612) #4612 MGMT-12545 : Rename “discovery kernel arguments” to “kernel argument” in infra-env context (#4605) #4605 MGMT-12492 : update statusRebootTimeout info message to ask the user to (#4586) #4586 Bump OCP versions: 4.12 (#4608) #4608  
MGMT-12299 : Changing the message user sees when the cluster doesn’t contain the correct composition of control plane nodes and workers (#4537) #4537 OCPBUGSM-46219 : OCPBUGSM-46220: Update golang version to 1.18.1. (#4598) #4598 MGMT-12478 : AgentClusterInstall remains in installed state when using ignitionEndpoint (#4604) #4604 MGMT-12500 : Add AI support for a DPU worker (#4588) #4588 Bump OCP versions: 4.10, 4.11 (#4602) #4602  
MGMT-12528 : Disable network scanning for very large IPv4 subnets (#4601) #4601 NO-ISSUE: add warning and info panel to log dashboard (#4572) #4572  
MGMT-12507 : Remove duplicated unit tests: RegisterHost and GetNextSteps (#4595) #4595 MGMT-9915 : Create utility functions to get cluster’s VIPs (#4575) #4575 MGMT-12098 Remove legacy auto reset host (#4599) #4599  
MGMT-12053 : Add support for aditional kernel arguments when serving iPXE (#4541) #4541 MGMT-12522 Fix unit test DB connection failure (#4597) #4597  
Remove useless getReleaseImage function (#4593) #4593  
Allow nightly 4.12 builds to use the converged flow (#4592) #4592  
MGMT-12389 : Create flag for per-version support of dual-stack VIPs (#4565) #4565 MGMT-12354 : Migrate single VIP values to the new data structure (#4562) #4562 MGMT-12423 : Add debug logs for counting unsynced agents (#4571) #4571 MGMT-12398 : Regression fix: Move host stage to “Done” only when not in KubeAPI mode. (#4587) #4587 MGMT-12462 : Fix assisted-service swagger file (#4580) #4580 Remove redundant boto3 dependency (#4585) #4585  
NO-ISSUE: Rename misleading network utility function (#4574) #4574  
Bump OCP versions: 4.9 (#4576) #4576  
MGMT-12305 : Fix a vulnerability which could cause a denial of service on version v0.3.7 of golang.org/x/text/language. (#4525) #4525 MGMT-12422 : Fix bm platform update failure when cluster platform different from bm/none (#4564) #4564 MGMT-12363 : Changing the message which the service sends when the right amount of dedicated control plane nodes is achieved (#4546) #4546 MGMT-12425 : Removal of problematic validation. (#4563) #4563 NO-ISSUE: add logs dashboard (#4569) #4569  
MGMT-12083 : Create enhancement document for discovery kernel parameters (#4420) #4420 Bump OCP versions: 4.10, 4.11 (#4561) #4561  
MGMT-12318 : handle conditions in HASC (#4555) #4555 MGMT-12353 : Add dual-stack VIP fields to the Rest API (#4548) #4548 Ensure the preprovisioningimage arch matches the infraenv (#4520) #4520  
MGMT-11752 : enhancement doc: ai on zero worker hypershift (#4325) #4325 MGMT-9023 : Add hyperthreading feature usage (#4514) #4514 MGMT-11805 : Don’t go through the API for setting a discovery password (#4560) #4560 Add url auth for getting a single infra-env (#4559) #4559  
NO-ISSUE: add initialDelaySeconds for readiness probe (#4557) #4557  
MGMT-12380 : Improve message of vip validation failure (#4553) #4553 MGMT-12368 : Verify that Kernel Arguments API does not change in the future (#4547) #4547 MGMT-12056 : changing the default behavior of the network type for the CD/ACI controller - following OCP move to default OVNKubernetes network type from version 4.12 or higher, AI should install clusters accordingly (#4485) #4485 MGMT-12353 : Add dual-stack VIP fields to the KubeAPI (#4549) #4549 NO-ISSUE: Document how to add OCM capabilities (#4528) #4528  
Bump to 4.12.0-ec.5 (#4554) #4554  
MGMT-12214 : extract reconciler logic for using HASC (#4540) #4540 MGMT-11750 : ensure namespace exists on spoke cluster (HASC) (#4534) #4534 Bump OCP versions: 4.8 (#4550) #4550  
Full changelog  
MGMT-17595 : Bump x/net to at least v0.24.0 to mitigate CVE-2023-45288 (#835) #835 MGMT-17588 : Bump runc to v1.1.12 to mitigate CVE-2024-21626 (#829) #829 MGMT-17541 : Replace broken golangci reference (#826) #826 MGMT-13586 : Wait for ETCD Bootstrap to complete (#670) (#717) #670 Updating ose-agent-installer-csr-approver images to be consistent with ART (#587) #587  
NO-ISSUE: controller logs optimizations (#646) #646  
NO-ISSUE: Bump golang.org/x/sync (#644) #644  
MULTIARCH-3387 : Set boot device to target disk for powervm (#626) #626 MGMT-13710 : assisted-installer-controller hangs for 2 minutes before uploading the ingress CA (#638) #638 NO-ISSUE: Bump golang.org/x/net from 0.5.0 to 0.7.0 (#640) #640  
NO-ISSUE: Replace iotil by os and io in order to fix lint issues (#642) #642  
NO-ISSUE: Bump openshift/release from golang-1.18 to golang-1.19 (#612) #612  
MGMT-13568 : Add pause mcp while setting new role labels (#623) #623 MGMT-13292 : Add the installed version of the OLM operators in the monitor operators response (#622) #622 Remove uninitialized taint from vSphere nodes (#629) #629  
OCPBUGS-7149 : IPv6 multinode spoke no moving from rebooting/configuring stage (#627) #627 MGMT-13507 : Apply node labels only when node is Ready (#620) #620 MGMT-13463 : Assisted-controller can fail to send summary logs and we will not have any logs (#619) #619 MGMT-10785 : report failing cluster operators controller -> service (#617) #617 MGMT-13229 : SNO: Start controller when node is not ready, right after joined (#613) #613 MGMT-13385 : Installation fail due to race condition in etcd bootstrap strategy (#618) #618 MGMT-13131 : shorten SNO installation duration (#615) #615 NO-ISSUE: Bump golang.org/x/net from 0.4.0 to 0.5.0 (#611) #611  
MGMT-13141 : assisted-installer-controller shouldn’t try to update BMH if (#610) #610 Updating ose-agent-installer-orchestrator images to be consistent with ART (#588) #588  
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.1 to 0.17.3 (#609) #609  
MGMT-12908 : Labeling nodes as quick as possible and fixing hostname possible issue (#601) #601 NO-ISSUE: Bump github.com/thoas/go-funk from 0.9.2 to 0.9.3 (#608) #608  
Bump assisted-service to v1.0.10-0.20221222230528-2b0f66c4cdcd (#604) #604  
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.2 to 0.17.3 (#603) #603  
MGMT-12339 : Update host install progress on cleanup error (#597) #597 MGMT-12984 : Add more logs to LVM cleanup (#600) #600 NO-ISSUE: Bump github.com/onsi/gomega from 1.24.1 to 1.24.2 (#599) #599  
MGMT-12339 : Add extra step to force clean disks with LVM volumes (#583) #583 Remove jira tickets prefix requirements (#594) #594  
NO-ISSUE: Bump golang.org/x/net from 0.2.0 to 0.4.0 (#593) #593  
MGMT-12471 : Don’t crash if operator isn’t monitored by service (#589) #589 NO-ISSUE: Bump github.com/go-openapi/runtime from 0.24.2 to 0.25.0 (#585) #585  
NO-ISSUE: Bump github.com/operator-framework/api from 0.17.1 to 0.17.2 (#584) #584  
NO-ISSUE: Bump sigs.k8s.io/controller-runtime from 0.12.3 to 0.13.1 (#569) #569  
NO-ISSUE: Bump github.com/onsi/gomega from 1.22.1 to 1.24.1 (#577) #577  
NO-ISSUE: Bump k8s.io/client-go from 0.24.4 to 0.25.4 (#576) #576  
OCPBUGSM-46219 : OCPBUGSM-46220: Update golang version to 1.18.1. (#581) #581 MGMT-12471 : Don’t wait for console if it is disabled (#574) #574 NO-ISSUE: change all ‘go get’ commands to ‘go install’ (#580) #580  
NO-ISSUE: Log informative error in case subscription doesn’t have CSV (#573) #573  
MGMT-12467 : Remove special handling for installing OCP < 4.7 (#571) #571 MGMT-12469 : Add resolv.conf content to controller logs in order to improve dns issue visibility (#572) #572 OCPBUGS-3166 : assisted-installer: pod creation fails due to violations of security policies in 4.12 (#568) #568 NO-ISSUE: improvement on gathering controller logs, validating that buffer is not empty (#567) #567  
Full changelog  
MGMT-17595 : Bump x/net to at least v0.24.0 to mitigate CVE-2023-45288 (#706) #706 NO-ISSUE: Quick fix for broken ignition download test in 4.13 release (#700) #700  
MGMT-17588 : Bump runc to v1.1.12 to mitigate CVE-2024-21626 (#702) #702 MGMT-17541 : Replace broken golangci reference (#697) #697 MGMT-13111 : Freeze on 404 Not Found (#628) #628 OCPBUGS-16373 : Ignore arping errors on RHEL 9 (#577) #577 MGMT-15661 : Update to latest ghw version (#594) (#596) #594 OCPBUGS-15557 : vendor agent-installer-utils to v0.0.0-20230707155933-79b142ede77d (#565) #565 OCPBUGS-14848 : Filter out hidden devices (#559) #559 MGMT-14319 chronyc segfaulting Running chronyc on host and not in container (#535) #535  
OCPBUGS-8695 : vendor agent-installer-utils to v0.0.0-20230310220517-8506fbb6a346 (#518) #518 MGMT-13946 : Ignore Proliant Gen 11 serial (#523) #523 OCPBUGS-8677 : vendor agent-installer-utils to v0.0.0-20230308101916-306b7995977e (#515) #515 OCPBUGS-8390 : vendor agent-installer-utils to v0.0.0-20230307094740-57807526b660 (#512) (#513) #512 AGENT-565 : revendor agent-utils (#508) #508 vendor agent-installer-utils to v0.0.0-20230228190135-5b30a39dadf6 (#506) #506  
vendor agent-installer-utils (#505) #505  
NO-ISSUE: Bump github.com/stretchr/testify from 1.8.1 to 1.8.2 (#504) #504  
NO-ISSUE: Bump github.com/coreos/ignition/v2 from 2.14.0 to 2.15.0 (#502) #502  
MGMT-13758 : In connectivity check, ARPING checks should not run on nics without valid IPv4 address (#501) #501 Updating ose-agent-installer-node-agent images to be consistent with ART (#469) #469  
AGENT-502 : Add agent based installer agent-tui (#482) #482 Make the agent team be the OWNERS of the Dockerfile.ocp file (#498) #498  
Add sg3_utils package (#497) #497  
NO-ISSUE: Bump github.com/onsi/gomega from 1.26.0 to 1.27.1 (#495) #495  
MGMT-13665 : Bring full journal by default in log gather (#492) #492 NO-ISSUE: Bump golang.org/x/sys from 0.4.0 to 0.5.0 (#491) #491  
Remove S.M.A.R.T. collection (#489) #489  
Update Dockerfile.assisted_installer_agent (#487) #487  
NO-ISSUE: Bump github.com/onsi/gomega from 1.25.0 to 1.26.0 (#488) #488  
MULTIARCH-3239 : - Add multipath FC disk check for Power (#483) #483 NO-ISSUE: Bump github.com/onsi/gomega from 1.24.2 to 1.25.0 (#486) #486  
MGMT-13420 : Adding cleanup of next-step-runner before starting it. (#484) #484 MGMT-12535 : Add step verify vips (#476) #476 MGMT-12906 : Refactor connectivity check (#471) #471 NO-ISSUE: Bump github.com/thoas/go-funk from 0.9.2 to 0.9.3 (#474) #474  
NO-ISSUE: Bump github.com/itchyny/gojq from 0.12.9 to 0.12.11 (#473) #473  
NO-ISSUE: Bump github.com/onsi/gomega from 1.22.1 to 1.24.2 (#472) #472  
MGMT-11885 : disk_speed_check: escape colons when calling fio (#427) (#464) #427 MGMT-12827 : Don’t try to rename when there is no usable NIC (#466) #466 NO-ISSUE: Bump github.com/go-openapi/runtime from 0.24.2 to 0.25.0 (#465) #465  
MGMT-12537 : detect virtualized environment (#451) #451 NO-ISSUE: Stop retry when backoff expires or context is cancelled (#462) #462  
MGMT-12793 : Tang unit tests should not query external URLs (#463) #463 OCPBUGS-3157 : The connectivity check fails if an interface has a link-local address (#461) #461 Remove validation on commit messages (#460) #460  
MGMT-12760 : Don’t panic when retrying after no response (#459) #459 OCPBUGSM-46219 : OCPBUGSM-46220: Update golang version to 1.18.1. (#452) #452 MGMT-12711 : Verify that L2 connectivity checks are received grouped by ip+mac instead of just mac (#456) #456 MGMT-11551 : Retry when service fails (#438) #438 MGMT-11970 : Detect and handle IP conflicts (#433) #433 NO-ISSUE: Bump github.com/spf13/afero from 1.9.0 to 1.9.3 (#454) #454  
MGMT-11551 : Retry when service fails (#442) #442 MGMT-8460 : Automatically rename discovered hosts (#449) #449 Full changelog  
Update OWNERS #40  
Updating ose-alibaba-machine-controllers images to be consistent with ART #39  
Update OWNERS #38  
Full changelog  
OCPBUGS-21419 : Bump golang.org/x/net to v0.18.0 #94 OCPBUGS-17145 : Increase service idle max timeout to 100 minutes #81 OCPBUGS-13952 : Update x/net package to v0.8.0 #68 OCPBUGS-13011 : Allow deprecated beta topology labels to be applied for those not ready to migrate #66 OCPBUGS-8326 : update kubernetes dependencies to 1.26 #56 Update OWNERS #54  
Updating ose-azure-cloud-node-manager images to be consistent with ART #51  
Updating ose-azure-cloud-controller-manager images to be consistent with ART #52  
Update OWNERS #53  
Full changelog  
OCPBUGS-35976 : [release-4.13] bump github.com/containers/image for CVE fix #8651 OCPBUGS-33732 : preserve category name when trying to find tag category #8419 OCPBUGS-33062 : openstack: Honour worker server group policy #8323 OCPBUGS-32359 : Updated libvirt installer to include multi-arch yq and symlink for backwards compatibility #8284 OCPBUGS-22979 : IBMCloud: Add eu-es region #7685 OCPBUGS-30629 : baremetal: populate customDeploy in advance #8129 OCPBUGS-29627 : update RHCOS 4.13 bootimage metadata to 413.92.202402131523-0 #8038 OCPBUGS-30000 : [release-4.13] Bump containerd for vulnerability fix #8073 OCPBUGS-28654 : Fix depreciated typo #7963 OCPBUGS-27453 : baremetal: correct external_http_url for v6-only BMCs #7934 OCPBUGS-23499 : update RHCOS 4.13 bootimage metadata to 413.92.202401100947-0 #7920 OCPBUGS-25420 : destroy: gcp: fix destroying regional disks #7840 OCPBUGS-23464 : Add KMS encryption keys if provided #7746 OCPBUGS-23141 : Specify google cloud CLI to version 447.0.0 #7706 OCPBUGS-22939 : azure: validation: validate defaultMachinePlatform #7679 OCPBUGS-14551 : [vSphere] Upi installation failed due to VMs for master and worker node creation failed #7229 OCPBUGS-19307 : Implement workaround to allow SNO installations for OKD/FCOS #7480 OCPBUGS-18787 : vSphere set bootstrap/master efi #7481 OCPBUGS-19320 : [release-4.13] for vsphere ipi add cluster domain to the uploaded vm configs so that… #7498 OCPBUGS-20141 : [release-4.13] Use updated ansible-core for Openstack image #7559 OCPBUGS-19670 : [release-4.13] Allow different service account for xpn installs in gcp #7524 OCPBUGS-19773 : Increase bootstrap timeout for vSphere platform by 30 mins #7530 OCPBUGS-16383 : [release-4.13] Default dataStore is returned the name instead the inventoryPath #7343 OCPBUGS-13681 : FCOS: bump to latest stable version #7188 OCPBUGS-11093 : Azure: don’t set default subscriptionID for disk encryption sets #7432 OCPBUGS-17809 : Allow destroy for C2S isolated (us-iso and us-isob) partitions #7427 OCPBUGS-15231 : new Aws secret regions support #7264 OCPBUGS-15222 : terraform: aws: secret regions now support ALIAS record #7262 OCPBUGS-17823 : CORS-2445: GCP: Add osImage to the install config #7431 OCPBUGS-14432 : Replica validations #7423 OCPBUGS-13865 : vSphere Add ova sha query; additional debugging #7198 OCPBUGS-16640 : [release-4.13] Update azure cli version to 2.49.0 #7357 OCPBUGS-16777 : update RHCOS 4.13 bootimage metadata to 413.92.202307260246-0 #7410 CORS-2764 : AWS Shared VPC Backport [release-4.13] #7362 OCPBUGS-17104 : [release-4.13] vsphere terraform bump #7383 OCPBUGS-17397 : backport openstack UPI for ansible 2.10 #7385 OCPBUGS-15290 : GCP: ic: improve project validation #7361 OCPBUGS-16390 : Allow override of networkType #7344 OCPBUGS-16673 : Fix timing issue between network services #7358 OCPBUGS-14711 : Convert Rendezvous IPv6 address to canonical format #7237 OCPBUGS-16066 : Use correct SELinux label. Make rename atomic. #7315 OCPBUGS-14599 : Log additional host info at warning level #7233 OCPBUGS-15866 : Use the same names for public LB in IPI and UPI Azure #7302 OCPBUGS-16124 : azure: skip LB creation when not needed #7322 OCPBUGS-13812 : ic: azure: validate diskTypes in AzureStack #7195 OCPBUGS-15230 : azure: skip NSG creation when BYO vnet #7263 OCPBUGS-15591 : [release-4.13] gcp: add confidential compute support for boostrap TF #7298 OCPBUGS-15187 : images: installer: add xz to the container #7260 OCPBUGS-14867 : Shorten SNO installation duration by releasing CPC lease #7241 OCPBUGS-13752 : Set AdditionalTrustBundle in override when mirroring not enabled #7191 OCPBUGS-15289 : gcp use preconfigured private zone for installation #7271 OCPBUGS-14916 : Replace with govc docker image and fix ibmcli folder permission issue #7245 OCPBUGS-13323 : update RHCOS 4.13 bootimage metadata to 413.92.202306140611-0 #7248 OCPBUGS-14860 : GCP XPN Private Cluster Fails with no Public Zone #7240 OCPBUGS-13765 : Support /dev/disk/by-path root device hints #7193 OCPBUGS-14171 : Ignore IAM Roles that the Installer is not authorized to access #7210 OCPBUGS-11530 : [release-4.13] add project filter to gcp usage api requests #7045 OCPBUGS-10493 : Nutanix Hostname of the VM is not set when using DHCP network config #7016 OCPBUGS-14027 : GCP XPN: Pass instance service acct in manual mode #7204 OCPBUGS-11775 : Log additional info when status is pending-user-action #7090 OCPBUGS-13086 : Bootstrap on aws should have same metadata service type as on other nodes #7162 OCPBUGS-12886 : use python3 for cloud sdk #7140 OCPBUGS-11799 : update RHCOS 4.13 bootimage metadata to 413.92.202305021736-0 #7156 OCPBUGS-12910 : openstack: Add netcat to the Installer image #7144 OCPBUGS-11845 , OCPBUGS-11846 , OCPBUGS-11847 : CVE: bump hashicorp/vault  version #7097 OCPBUGS-5140 : [Alibaba] update the bandwidth value of EIP #7010 OCPBUGS-11261 : Fix and improve locking session and AWS Metadata access #7129 OCPBUGS-12179 : agent: copy also symbolic link when storing agent-tui related files into the agent ISO #7113 OCPBUGS-11950 : vsphere, nutanix survey: relax vip in machine cidr #7107 OCPBUGS-11529 : [release-4.13] gather: azure: fix collecting VM serial logs #7077 OCPBUGS-10658 : openstack: No master primarySubnet control-plane if portTarget is set #7008 OCPBUGS-11789 : update RHCOS 4.13 bootimage metadata to 413.92.202304131328-0 #7093 OCPBUGS-11659 : Upgrade libnmstate version used #7082 OCPBUGS-11661 : AWS - Remove ACLs from s3 ign #7083 OCPBUGS-11010 : vSphere - finding networks use full path cluster #7043 OCPBUGS-10892 : Don’t log password values #7024 OCPBUGS-11093 : pkg/asset/installconfig: set subscriptionID #7049 OCPBUGS-11188 : Use 100 GB as minimum disk size in validations #7053 OCPBUGS-10989 : Properly handle invalid agent command #7034 OCPBUGS-10903 : IBMCloud: Fix SSH Private bootstrap #7027 OCPBUGS-11011 : Do not remove host default configuration unless network configuration is provided for it #7044 OCPBUGS-11040 : remove container-runtime flag from kubelet config #7048 OCPBUGS-11054 : GCP: add europe-west12 region to the survey as supported region #7046 OCPBUGS-11004 : Kubelet Client Cert should include system:serviceaccounts group #7039 OCPBUGS-10902 : IBMCloud set dnsrecords offset #7026 rhcos: Bump to 413.92.202303281804-0 #7041  
OCPBUGS-10657 : Do not always output warning msg when releaseImage is digest #7007 OCPBUGS-10656 : Verify output file exists when oc image extract is run #7006 OCPBUGS-10813 : bootstrap-pivot: skip pivot in SCOS Live ISO #7020 OCPBUGS-8511 : baremetal: do not use port 80 for httpd #7022 OCPBUGS-10214 : CVE-2023-25173: bump containerd #7013 OCPBUGS-10597 : fix agent tui showing up multiple times #6989 OCPBUGS-6265 : Shorten SNO installation duration by releasing CVO lease #6979 OCPBUGS-10585 : rhcos: Update to 413.92.202303190222-0 #6997 OCPBUGS-10499 : [release-4.13] CVE: bump mongo-go-driver for fix #6986 OCPBUGS-10436 : Sort userTags in Machine and Machineset manifests #6983 OCPBUGS-10213 : aws: bump aws-sdk-go version #6969 update RHCOS 4.13 bootimage metadata #6955  
OCPBUGS-8463 : [release-4.13] OpenStack Failure domains #6948 OCPBUGS-8312 : Power VS: Add resourceGroup to infrastructure manifest #6930 OCPBUGS-8353 : Disable ‘create pxe-files’ command #6939 OCPBUGS-8463 : [release-4.13] openstack: consistent TechPreview-only feature validation #6934 OCPBUGS-8341 : Pass Capabilites from install-config to cluster #6936 OCPBUGS-8343 : Disable systemd status while TUI showing #6938 OCPBUGS-8342 : Specify filename for default registries.conf #6937 SPLAT-636 : Create edge compute pool to support AWS Local Zones #6931 OPNET-199 : Allow v6-primary dual stack on baremetal #6881 Generate CSI driver manifests #6856  
Azure: use managed storage account for boot logs #6848  
OCPBUGS-7015 : Relax MachineCIDR check for vSphere, Nutanix #6915 ARMOCP-417 : enable arm64 for agent installer #6401 AGENT-502 : Enable agent tui #6898 GCP: conditionally create bootstrap service account #6853  
vsphere: Remove bostrt from approver/reviewer group #6918  
OCPBUGS-7860 : azure: session: fix unclear auth error messages #6901 OCPBUGS-7991 : vSphere - only create RP when cluster is not empty #6905 Support the new fields in NutanixMachineProviderConfig #6841  
openstack-manifests: Option to run selected test cases #6908  
AGENT-526 : Refactor Agent InstallConfig embedding #6796 OCPBUGS-7993 : hack/build-coreos-manifest: support OKD #6906 bump version of ovirt terraform provider #6883  
OCPBUGS-7622 : Ignore CPMS file if not exist #6887 linter: enable reporting about exported names lacking comments #6880  
CFE-757 : Fix issues reported by QE #6870 OCPBUGS-7579 : azure: fix certificate-based auth with passpharse #6871 Update alias for Metal Platform #6884  
CORS-2496 : Default 2xlarge instead of xlarge in AWS when the control-plane is single-node #6814 OSASINFRA-3090 : External LB support for on-prem platforms #6812 Bug 1904573 : baremetal container modify /etc/passwd group writable #6872 SPLAT-823 : Zonal GA, single terraform, deprecate legacy platform spec #6770 openstack: Fix missing docs link #6852  
OCPBUGS-7180 : update RHCOS 4.13 bootimage metadata #6861 Removes m1kola from azure-reviewers #6865  
OCPBUGS-7495 : Convert platform type for AgentClusterInstall #6855 CFE-582 : Generate Infrastructure CR with the azure user defined tags #6310 AGENT-456 : Remove connectivity checks from bash script #6846 integration: Don’t pass host data in the install-config #6795  
linter: bump version to sync with CI #6859  
OCPBUGS-4954 : IBMCloud: Handle COS reclamations #6845 CFE-757 : Fix issues reported by QE #6820 CORS-2386 : IBMCloud: Add networkResourceGroupName #6613 IBMCloud: Add tests for installconfig metadata #6348  
OCPBUGS-1048 : if tag categories don’t exist, the installation will fail to bootstrap #6327 CFE-586 : Apply user defined tags on created azure resources #6354 OCPBUGS-7356 : data/manifests/bootkube/cvo-overrides: Default to stable-4.13 #6689 OCPBUGS-6777 : Fix file check for loading openshift manifests #6821 AGENT-505 : Embed agent files in initrd #6842 installer dev build settings to enable delve #6835  
OCPBUGS-7261 : Update AgentConfig template #6840 OCPBUGS-4549 : azure: fix MS Graph calls on Gov cloud #6844 openstack-manifests: Add a debug option #6839  
OpenStack: Fix distribution of zones on 32-bit systems #6834  
OCPBUGS-6422 : CVE-2022-41717: bump net/http for fix #6801 CNF-6357 : feat: add CPU Partitioning flag into the install config #6430 SPLAT-820 : multi-zone is no longer tech preview #6782 destroy: vsphere: move API calls to client abstraction and add unit tests #6604  
Add support for confidential compute #6799  
Add Adam #6824  
OCPBUGS-5234 : azurestack: upi: fix compute scale up #6735 CNF-6362 : feat: add support for nto rendering during bootstrap #6691 OCPBUGS-4997 : Set the configured proxy settings for agent installer #6827 azure: Add error message when authorizer fails. #6551  
OCPBUGS-6486 : fixing ovirt installation on iSCSI #6816 OCPBUGS-6270 : Don’t require vSphere details for agent installer #6793 OCPBUGS-6722 : bootimage: move secure execution artifact to separate artifact #6811 PowerVS: Check for potential network conflict in existing CCs #6798  
OCPBUGS-6663 : Check platform baremetal settings against default values #6809 AGENT-455 : Check registry and rendezvous host access at startup #6767 OCPBUGS-4549 : destroy: azure: handle nil responses from msgraph sdk #6717 AGENT-505 : Embed agent-tui binary in the agent ISO #6786 PowerVS: Remove region requirement #6772  
Bug 2072202 : Check for reachability of API and API-Int URLs later in bootkube #6611 Bug 2067847 : prometheus/client_golang: Denial of service using InstrumentHandlerCounter #6391 CORS-2479 : bootstrap: set 0644 mode for registries.conf #6789 GCP: Remove the BYOH code #6771  
AGENT-453 : Create interactive console service for agent installer #6756 OCPBUGS-5959 : bump RHCOS 4.13 bootimage metadata #6790 CORS-2469 : upi: Document removal of CPMS for UPI installation #6727 Bug 2070744 : Fix infinite loop error #6515 CORS-1558 : Add uninstall complete after destroy code #6572 AGENT-504 : Agent extract binary #6777 OCPBUGS-5182 : validate additional confidential VM types #6733 OCPBUGS-5461 : Allow NO_PROXY to contain IPs #6776 OCPBUGS-3253 : Warn if agent assets detected when using non-agent waitfor #6740 OCPBUGS-4654 : azure: upi: use Image Gallery in ARM templates #6684 OCPBUGS-5184 : azure: validate Windows-only VM types #6734 CORS-2449 : gcp: Set pre-created CPMS to Active state #6752 OCPBUGS-1612 : vsphere: set default resource pool when missing failure domain topology #6409 Generate the cloudproviderconfig manifests for integration of nutanix-ccm to OCP #6269  
CORS-2405 : Create ControlPlaneMachineSet CRDs #6632 OCPBUGS-5734 : make VIP 168.63.129.16 noProxy in all clouds except Public #6761 OCPBUGS-1695 : Update FCOS to latest 37.20221127.3.0 stable #6487 OCPBUGS-5770 : CVE-2021-4238: goutils: update for randomness fix #6763 BUG 2110982: GCP skip public loadbalancer ip addresses #6755  
AGENT-501 : Make it easier to change node zero IP and SERVICE_BASE_URL #6747 MGMT-12839 : Add Shielded VMs options to gcp mpool and TF #6698 OCPBUGS-5324 : CVE-2021-4235 go-yaml: Denial of Service in go-yaml #6741 OCPBUGS-881 : fail to create install-config.yaml as apiVIP and ingress VIP are not in machine networks #6469 SPLAT-901 : set default for variables that are deprecated by failure_domains #6750 OCPBUGS-1769 : Check for AWS STS installation before trying to get all IAM Roles #6666 GCP XPN: remove tech preview feature gate #6754  
Expose Azure useImageGallery parameter in the MachineSets() call #6737  
OCPBUGS-2088 : Validate that the rendevousIP is assigned to a master #6716 ARO-1796 : Update Azure SDK for go to v63.1.0+incompatible #6746 openstack: Revert Gophercloud workaround #6663  
SPLAT-900 : provision VMs in to failure domains #6738 OCPBUGS-4874 : Remove order dependency for agent CLI string #6739 CORS-2449 : Create CPMS manifest #6695 OCPBUGS-2881 : Destroy the service and host project dns records #6534 Bug OCPBUGS-3921: OpenStack: fix bootstrap destroy cmd #6617  
OCPBUGS-3706 : Improve error reporting from agent wait-for install-complete #6730 Better logic to derive vpcRegion/Zone from vpcName/Subnets #6665  
update tested instance types on 4.12 #6731  
Updating ose-baremetal-installer images to be consistent with ART #6678  
OCPBUGS-5151 : baremetal: Extra time for provisioning interface #6729 OCPBUGS-3032 : Report status on the console immediately #6697 Updating ose-installer images to be consistent with ART #6675  
OSASINFRA-3057 : openstack: Document Image Registry migration to Swift #6710 openstack: Rely on Go’s stdlib for errors #6656  
Updating ose-installer-artifacts images to be consistent with ART #6693  
cmd: update import of deprecated terminal package #6594  
GCP: Tfvars will determine the user has create firewall permissions #6679  
OCPBUGS-4941 : OpenStack: Force JSON content-type in Swift object listing #6707 PowerVS: Defer cancel when calling contextWithTimeout #6700  
linter: fix issues since revision 75173a17cf #6712  
OCPBUGS-2996 : bump RHCOS 4.13 bootimage metadata #6703 CORS-2340 : hack: replace deprecated go-lint #6601 OCPBUGS-3706 : Wait longer for baremetal #6688 Fix import order using the gci tool #6643  
Switch back to gp2 ebs volume type for bootstrap instance #6692  
OCPBUGS-2891 : aws: destroy: delete ELB listeners #6528 Consolidate loadsdk debug statements #6686  
OWNERS_ALIASES: Remove lucab #6696  
OCPBUGS-4549 : azure: replace deprecated AD Graph API #6614 Save rendezvous IP in a file ‘rendezvousIP’ alongside the ISO #6683  
OCPBUGS-3987 : Check nmstateconfig content in agent-config.yaml #6674 CORS-2147 : Add documentation for the client certs authentication #6505 OCPBUGS-4367 : Fix missing debug messages when getting baseISO #6662 Use backoff functions in PowerVS destroy logic #6591  
OCPBUGS-3032 : Report agent installation problems on the console #6544 OCPBUGS-3668 : fully qualified username must be provided #6596 OCPBUGS-1560 : vsphere zonal, terraform depends on ova import #6498 Agent integration tests proposal #6598  
CORS-2291 : terraform: save logs to a file #6532 OCPBUGS-3196 : Set ip=dhcp,dhcp6 for master nodes on dualstack #6626 OCPBUGS-2130 : import ova resource cluster path fix #6519 OCPBUGS-2498 : ose-installer-container: vault: insufficient certificate revocation list checking #6493 Wait longer for VM to obtain IP from DHCP in PowerVS #6651  
platformprovisioncheck: fix shadowing of err variable #6595  
Alibaba: add the tags of the machine nodes #6535  
Azure: use azidentity with adapter #6003  
OCPBUGS-4125 : Enable CVO unmanage overrides in bootstrap-in-place installations #6649 openstack: Refactor TFVars generation #6465  
Update OpenStack spec dependencies #6382  
OCPBUGS-3164 : hold bootkube service until bootstrap has pivoted #6488 OCPBUGS-4355 : Fix return value from execute() #6646 OCPBUGS-4328 : images: updating images to be consistent with ART #6641 vSphere Zonal: validate dns and external load balancer #6612  
GCP: remove private zone manipulation #6610  
Replace deprecated io/ioutil package #6602  
ibmcloud plugin “permission denied” #6627  
Bug 2105570 : out-of-bounds read in golang.org/x/text/language leads to DoS #6389 OCPBUGS-3524 : data: azurerm: restore RHCOS SA access configuration #6583 OCPBUGS-3405 : Redact pull secret from agent-gather #6574 Adding aarch64 instance types for azure #6531  
OCPBUGS-2931 : Azure Stack: use managed images for compute nodes #6540 OCPBUGS-3985 : Pass featureset to kas #6579 mv ibmcloud to /bin folder #6624  
OCPBUGS-3278 : (Agent) Do not require host data in platform baremetal section in installconfig #6573 OCPBUGS-3277 : Restart create-cluster-and-infraenv.service if it fails #6577 OCPBUGS-3933 : OpenStack: Force JSON content-type in Swift #6615 add ibmcloud cli to image #6600  
Update vSphere Owner files #6607  
OCPBUGS-2384 : [Alibaba] fix the creation of public record #5671 docs: fix broken link to default kubelet.service taint #6593  
OCPBUGS-3186 : IBMCloud: Confirm Zones and BYON Subnets #6553 OCPBUGS-3123 : Pass FeatureSet to cluster config render #6576 OCPBUGS-2738 : Uplift terraform-provider-ironic to 0.3.0 #6511 OCPBUGS-3382 : Fix cluster wide proxy #6571 OCPBUGS-3280 : Automatically retry install #6567 OCPBUGS-3304 : Always use first matching mirror in assisted-service #6563 OCPBUGS-2841 : (AGENT) only support amd64 archs #6546 OCPBUGS-3214 : Always add router CAs to kubeconfig, even if console is not available #6557 Update apiVersion for lso operator group #6558  
OCPBUGS-2513 : Set PublicContainerRegistries for entries in mirror #6545 OCPBUGS-1627 : [vsphere-zones] Fix user folders #6412 OCPBUGS-1704 : gcp: fail during validation if service usage is not enabled #6516 OCPBUGS-3287 : agent ased installation fix for dual stack vips #6530 OCPBUGS-3096 : Static linking the terraform and providers binaries #6548 OCPBUGS-2911 : Use project after creation #6552 OCPBUGS-3110 : azure: Fix client certs authentication #6527 OCPBUGS-2847 : GCP XPN Featuregates #6522 OCPBUGS-2758 : Provide datastore as full path #6547 Bug 2074299 : update golang.org/x/crypto to address security vulnerabilities #6388 OCPBUGS-2966 : Add GCP CreateFirewallRules to tech preview #6533 OCPBUGS-1791 : add bootstrap configmap during the SNO reboot #6521 OCPBUGS-2290 : Power VS Check for existing DNS permitted network and public gateway #6481 Add linux/arm64 binary to installer-artifacts #6514  
OCPBUGS-1033 : support multiple documents in the same extra manifest file #6492 OCPBUGS-3018 : Use result from List function after checking error #6541 OCPBUGS-2144 : Azure: Set appropriate architecture for gen v1 image #6517 go-fmt: apply formatting with golang 1.19 #6497  
OCPBUGS-2895 : Azure: Fix DiskEncryptionSet regex validation #6513 And 5 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-30288 : oc adm catalog mirror: use ToSlash and FromSlash to unify the path separators #1700 OCPBUGS-25418 : Add client version in must-gather summary #1635 OCPBUGS-24461 : Overwrite template’s namespace with the explicit one #1617 AUTH-443 : Add OAuth2 Authorization Code Grant Flow for login #1599 OCPBUGS-22815 : regeneratemco: explicitly check for PlatformStatus field #1593 OCPBUGS-20298 : Use quay redis image instead docker mysql #1566 OCPBUGS-19942 : Truncate existing files when writing from inspect #1553 OCPBUGS-13527 : Bump x org deps 4.13 #1422 OCPBUGS-16055 : mcs cert: account for environments that use IP directly #1500 OCPBUGS-16193 : reboot: set ignition version to 3.1 #1508 OCPBUGS-16172 : Add tls-server-name when property exists in kubeconfig #1506 handle the error case of node retrieval while waiting for reboot #1484  
bring some cert rotation helpers back into 4.13 #1474  
OCPBUGS-14249 : preserve explicit release image in ClusterVersion #1435 OCPBUGS-14180 : Remove closed centos7 registry from newapp unit tests #1432 OCPBUGS-10773 : bump repo sclorg/s2i-ruby-container location for newapp test #1381 OCPBUGS-10378 : Add microshift into generate-docs #1372 Microshift command docs #1357  
Do not set master node selector if there’s no masters #1347  
OCPBUGS-7190 : Reuse LDAP connection when performing group sync #1336 Adding CommitDate to the Changelog json output #1348  
OCPBUGS-7780 : pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates #1346 Use registry.k8s.io and update image version #1343  
Add icsp file convert command #1238  
OWNERS_ALIASES: Update approvers: add David, remove Jack #1340  
oc debug: Use own fields instead directly depending on Attach’s #1337  
Updating ose-tools images to be consistent with ART #1308  
WRKLDS-594 : Bump to v1.26.1 #1329 OCPBUGS-3473 : oc adm release new: allow specifying crio and kernel versions #1287 OCPBUGS-6011 : Fix kube version from 1.24.1 to 1.25.2 #1325 Removing unwanted character from changelog output #1326  
WRKLDS-629 : release run-namspace functionality #1322 OCPBUGS-5010 : Remove must-gather pod after it completes when explicit namespace is used #1320 Enable Changelog to output in JSON #1321  
IR-261 : Add –import-mode to ‘tag’ #1312 IR-260 : Add CLI flag to set ImportMode when importing a tag #1289 OCPBUGS-4906 : oc process: Set original namespace if it differs #1318 Updating ose-cli-artifacts images to be consistent with ART #1309  
Update errors when debug pod fails #1314  
Expose events command to land k8s 1.26 #1315  
handle admission webhook lists and CRD conversion webhooks #1301  
OTA-818 : pkg/cli/admin/upgrade: Support –to-multi-arch per OTA-818 #1285 WRKLDS-629 : oc adm must-gather: unhidden –run-namespace flag #1313 FDN-112 : Parse any jira reference from commit text, not just OCPBUGS #1306 IR-266 : Add image manifests to ‘describe image’ #1310 Updating openshift-enterprise-deployer images to be consistent with ART #1307  
Handle non-amd64 command pulls from amd64 payload #1259  
OCPBUGS-4517 : oc adm release: Support extracting commands in specified architectures #1305 Rename registry.svc.ci.openshift.org to registry.ci.openshift.org #1304  
OCPBUGS-3526 : Proceed archive if Lsetxattr gets unsupported error #1296 Updating openshift-enterprise-cli images to be consistent with ART #1302  
OCPBUGS-4280 : oc import-image: reflect import image error #1300 pkg/cli/admin/release/info: Render multi-arch release information #1292  
pkg/cli/admin/upgrade: Drop “force” from “No updates available” #1291  
OCPBUGS-3714 : pkg/cli/admin/upgrade: Report on Failing!=False conditions #900 switch the deployer pod to use apply client to avoid conflicts #1288  
release: extract linux/arm64 binaries from all payloads #1276  
go.mod: update github.com/containers/image #1278  
Promote ardaguclu to oc approver #1280  
Full changelog  
OCPBUGS-32898 : Upgrade go-jose module to 2.6.3 #698 OCPBUGS-27912 : Resolve all outstanding snyk vulnerabilities #651 NO-JIRA: Removing andrew from OWNERS #644  
OCPBUGS-25369 : Discover AWS dns suffix from partition and region. #640 OCPBUGS-21367 : Upgrade golang/x/net for CVE-2023-39325 #623 snyk: exclude vendor/ #616  
OCPBUGS-12565 : CVE-2022-41723 ose-cloud-credential-operator-container: net/http, golang.org/x/net/http2: avoid quadratic complexity in HPACK decoding [openshift-4] #543 OCPBUGS-13692 : Determine AWS partition based on region for readOnlyAnonUserPolicyTemplate bucket ARN. #538 OCPBUGS-11706 : ccoctl: Enable public anon read access to default OIDC S3 bucket #528 OCPBUGS-10822 : Adding missing workload annotations #524 OCPBUGS-6370 : Bump k8s dependencies from v0.25.3 to v0.26.1 #511 Add lleshchi to OWNERS file #513  
OCPBUGS-6977 : Set pod identity webhook replicas=1 when infrastructure topology is SingleReplica #512 Make pod-identity-webhook deployment HA by default #492  
OWNERS: add jstuever #510  
azure: move away from ADAL and AD Graph #502  
Updating ose-cloud-credential-operator images to be consistent with ART #509  
Full changelog  
OCPBUGS-32180 : Avoid nil pointer panic while assigning private IP on Azure #139 OCPBUGS-22299 : Azure: skip backend pool if attached to an outbound rule #126 OCPBUGS-15856 : Azure: Handle already existing IP configurations #116 OCPBUGS-14635 : increase GCP egress ip capacity to 100 from 10 #113 OCPBUGS-13127 : sync CloudPrivateIpConfig when node is missing #106 OCPBUGS-10990 : pull project name from subnet uri #101 Add MovePrivateIP and its OpenStack implementation #95  
Kube 1.26 rebase for cloud-network-config-controller #97  
OpenStack: Fix race condition in TestGetNodeEgressIPConfiguration #96  
azure: use azidentity with an adapter #70  
Add ApplicationSecurityGroups to InterfaceIPConfiguration #91  
Fix typos in README.md #90  
OCPBUGS-4724 : OpenStack: Support multi AZ environments #87 Updating ose-cloud-network-config-controller images to be consistent with ART #86  
OCPBUGS-3993 : OpenStack: Only return egressIPConfiguration for first InternalIP #77 Fix azure log message for assigning and releasing an IP #76  
OCPBUGS-1430 : Add assigned egress ips into capacity #69 Full changelog  
OCPBUGS-31992 : Update x/net to v0.25.0 #324 OCPBUGS-20770 : Bump x/net package to v0.18.0 #299 OCPBUGS-17056 : Address long acquire times during update #289 OCPBUGS-17098 : update x/net dependency to 0.7.0 #280 OCPBUGS-16768 : add nutanix labels that should be ignored #278 Bug 1943194 : update GPU resource limits type to have validation #268 Update OWNERS #270  
revert GPU label changes from pr 223 #267  
: Update tooling in Cluster Autoscaler Operator #266  
Add infrastructures resource to config.openshift.io #265  
Allow infrastructures.config.openshift.io to be listed #264  
Register configv1 types to schemes #262  
Updating ose-cluster-autoscaler-operator images to be consistent with ART #259  
: Update CAO to ignore platform related zone labels #260  
Update OWNERS #261  
: Set default container for operator #258  
Add client certificate and key to service monitor #249  
Full changelog  
OCPBUGS-35380 : Improved debugging of API listing errors #304 OCPBUGS-30156 : Never delete a Machine when there’s a single Machine in an index #286 OCPBUGS-21364 : Bump golang.org/x/net to v0.17.0 #259 OCPBUGS-20482 : fix: e2e: add gcp custom type to test framework #249 OCPBUGS-17055 : Address long acquire times during update #240 OCPBUGS-15330 : Fix lint issue #222 OCPBUGS-15161 : Surface cpms vs machine diff #218 OCPBUGS-14024 : Check ProviderSpec before generating MachineInfo #211 OCPBUGS-13888 : fix double machine creation on stale cache #208 OCPBUGS-11968 : Prioritise machine mapping over alphabetical mapping #198 OCPBUGS-11506 : E2E periodics test timeout failures improvement #187 OCPBUGS-11460 : Use PlatformStatus instead of PlatformSpec to determine platform #186 OCPBUGS-11354 : controlplanemachineset: start watching control plane nodes #184 OCPBUGS-10771 : updates: manually requeue when waiting for replicas being ready #181 OCPBUGS-8424 : machine’s node must be ready for CPMS machine to be ready #173 e2e: periodics: remove test with cluster-wide-proxy #170  
Update ginkgo to 2.8.1 #169  
Update OWNERS #168  
Migrate test utils to actuator-pkg repository #159  
OCPCLOUD-1869 : Bump k8s 1.26, go 1.19 #164 OCPBUGS-6760 : webhooks: disable mandatory TargetPools validation on GCP #165 golangci-lint: fix header year linting #162  
OCPCLOUD-1740 : e2e periodic test: machine replacement with cluster wide proxy #156 OCPBUGS-996 : Reverts “Reverts “Add logic to handle extra updated machines in a single index + minor fixes”” #112 Add testing strategy documentation #155  
Updating ose-cluster-control-plane-machine-set-operator images to be consistent with ART #150  
Update OWNERS #154  
OCPCLOUD-1753 : integration: rollingUpdate: test rebalances machines across failure domains #153 OCPCLOUD-1752 : integration: rollingUpdate: test replaces a not needing update, deleted Machine #152 OCPBUGS-4297 : Fix stale cache issue on createMachine #149 OCPCLOUD-1798 : e2e test: remove common test, unnecessary presubmit aftereach #148 OCPCLOUD-1744 : e2e presubmit: update to newest machine triggers inactive ControlPlaneMachineSet regeneration #147 Check OnDelete strategy rebalances machines #146  
OCPCLOUD-1750 : e2e presubmit test: activating ControlPlaneMachineSet adds owner references #145 Add integration test for fulling rolling update replacement #140  
OCPCLOUD-1746 : e2e presubmit test: activating ControlPlaneMachineSet doesn’t cause rollout #143 Increase unit test timeout to 10m #144  
Check on delete strategy correctly replaces machines #139  
Ensure stable output from RunCheckUntil #142  
OCPCLOUD-1742 : e2e presubmit tests: generated ControlPlaneMachineSet replicas updated #141 OCPCLOUD-1741 : e2e presubmit tests: ControlPlaneMachineSet uninstall #138 Check OnDelete strategy updates status #137  
: Ensure CPMS tests work on GCP #135  
: Generate CPMS for GCP #133  
: Enable CPMS for GCP #132  
Add support for Azure e2e tests #131  
Add RollingUpdate presubmit to test replacement of outdated machine #129  
OCPBUGS-3320 : Deduplicate Failure Domains for the CPMS #130 Add full veritcal scaling rolling update periodic test #127  
Azure: Generate ControlPlaneMachineSet for clusters t… #128  
Set up basic E2E test framework #126  
Full changelog  
OCPBUGS-27066 : bump(library-go)=release-4.13 #788 OCPBUGS-21103 : Drop flags removed in k8s 1.26 [4.13] #766 OCPBUGS-21078 : Bump deps to address CVE-2023-44487 [4.13] #758 OCPBUGS-19825 : Update staticpod file permissions to conform with CIS benchmarks #752 OCPBUGS-11353 : AWS should not use external-cloud-volume-plugin post CSI migration #734 OCPBUGS-11146 : KCMO and MCO must set env var for CSI migration #718 OCPBUGS-11222 : do not degrade KCM when when monitoring stack rollout is in progress #717 OCPBUGS-7785 : migrate to using lease objects for leader election #716 OCPBUGS-8710 : Move PSa back to logging #711 OCPBUGS-7785 : migrate to using lease objects for leader election #712 WRKLDS-705 : Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #701 WRKLDS-649 : Guard pod set readiness probe endpoint explicitly #693 OCPBUGS-6259 : bump(k8s): 1.26.1 #691 OCPBUGS-3985 : Enforce PSA when techpreview is enabled #663 Fixup vendor after library-go update #689  
Update library-go dependency to move vSphere to out of tree #687  
honor feature gates during bootstrapping #686  
remove use of deprecated klog flags #685  
OCPBUGS-5269 : remove unnecessary leader election RBAC #681 OCPBUGS-5006 : add leader-elect-renew-deadline into defaultconfit.yaml #678 Revert “Drop log flags removed in k8s 1.26” #684  
bump (openshift/api) for CSIMigration* feature gates #682  
Drop log flags removed in k8s 1.26 #680  
Drop flags removed in k8s 1.26 #679  
Bump library-go #677  
Fix typo in podsecurity-admission-label-syncer-controller cluster role #671  
Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART #673  
OCPBUGS-3283 : remove unnecessary RBAC #661 OCPBUGS-4401 : limit cluster-policy-controller RBAC permissions #670 OCPBUGS-3041 : guard controller: set an explicit hostname to avoid name collisions #664 remove not needed RemoveStaleConditionsController #662  
bootstrap-kube-controller-manager: specify resources.requests #660  
Full changelog  
OCPBUGS-27065 : bump(library-go)=release-4.13 #528 OCPBUGS-21811 : Bump deps to address CVE-2023-44487 #502 OCPBUGS-19825 : Update staticpod file permissions to conform with CIS benchmarks #497 OCPBUGS-14651 : disable debug pporf with unauthenticated port for 4.13 #480 OCPBUGS-7785 : migrate to using lease objects for leader election #477 OCPBUGS-7785 : migrate to using lease objects for leader election #470 WRKLDS-705 : Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #463 WRKLDS-649 : Guard pod set readiness probe endpoint explicitly #459 OCPBUGS-6261 : bump(k8s): 1.26.1 #460 Add client certificate and key to service monitor #434  
remove use of deprecated klog flags #457  
Revert “Drop log flags removed in k8s 1.26” #456  
bump (openshift/api) for CSIMigration* feature gates #455  
Drop log flags removed in k8s 1.26 #454  
Drop flags removed in k8s 1.26 #453  
OCPBUGS-3041 : guard controller: set an explicit hostname to avoid name collisions #446 bootstrap-kube-scheduler: specify resources.requests #445  
Full changelog  
: OCPBUGS-21355: bump library-go to include switch to HTTP/1.1 #97  
OCPBUGS-6240 : Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART #87 Full changelog  
OCPBUGS-33581 : label for infra nodes for metric cluster:capacity_cpu_cores:sum #2344 OCPBUGS-28767 : fix generation of telemeter token hash #2305 OCPBUGS-25388 : Add RHACM telemetry metric for 4.13 #2203 OCPBUGS-21457 : Set the new –disable-http2 flag for prometheus-adapter to disable HTTP2 #2146 OCPBUGS-22920 : jsonnet: pin commits #2144 OCPBUGS-22842 : [release-4.13] add RHACS telemetry metrics #2139 OCPBUGS-22308 : fix: force HTTP/1.1 connections #2134 OCPBUGS-21250 : upgrade golang.org/x/net to v0.17.0 #2122 OCPBUGS-22099 : Extend remote write test timeout #2127 OCPBUGS-11016 : Node Exporter ignores network interface under name “cali[a-f0-9]*” #1927 OCPBUGS-16023 : Add the trusted CA bundle in UWM Prometheus pods #2041 OCPBUGS-15469 : Limit the value of GOMAXPROCS on node-exporter to 4. #2021 OCPBUGS-14251 : Add new web console usage metrics #1976 OCPBUGS-12488 : go.mod: update golang.org/x/net to v0.7.0 #1957 OCPBUGS-13007 : Add build number to rules #1964 OCPBUGS-13397 : Uncomment cluster:vsphere_infrastructure_failure_domains:max #1962 4.13: OCPBUGS-11294: Add vSphere CSI migration to telemetry #1929  
OCPBUGS-11536 : node-exporter: disable btrfs collector #1941 OCPBUGS-10895 : add startup probe for prometheus-adapter #1923 OCPBUGS-11333 : jsonnet: Add prometheus container in UWM #1934 OCPBUGS-10793 : bugfix in Node Exporter argument setting #1922 OCPBUGS-10476 : turn off netlink mode of netclass collector in Node Exporter. #1919 MON-2973 : test/e2e: Add cleanup func for alertmanager uwm secret test #1907 MON-2693 : Scrape profiles #1785 MON-2959 : test/e2e: Add test for alertmanager secret platform #1899 MON-2904 : add nodeExporter.collectors.buddyinfo settings. #1891 MON-2895 : toggle netlink implementation of netclass collector #1894 MON-2932 : jsonnet/dashboards: add role template variable to node related dashbo… #1879 MON-2900 : add nodeExporter.collectors.netclass settings. #1893 Update jsonnet dependencies #1903  
MON-2951 : create Routes only with ingress operator #1885 OCPBUGS-7391 : wait for service CA secrets #1900 Synchronize versions of the downstream components #1902  
MON-2973 : pkg/manifests: Allow configuring secrets in alertmanager (UWM) #1884 Synchronize versions of the downstream components #1898  
pkg/operator: fix typo in info logs #1896  
MON-2901 : add nodeExporter.collectors.netdev settings. #1888 STOR-1154 : Add vSphere topology to telemetry #1886 Add nodeExporter.collectors.tcpstat settings. #1876  
Synchronize versions of the downstream components #1887  
MON-2959 : Allow configuring secrets in alertmanager (platform) #1882 Update jsonnet dependencies #1880  
Synchronize versions of the downstream components #1878  
pkg/manifests/manifests.go: move constants to jsonnet #1873  
Synchronize versions of the downstream components #1877  
add nodeExporter.collectors.cpufreq settings. #1855  
Update jsonnet dependencies #1869  
Fix ‘make run-local’ target #1874  
*: remove kube-rbac-proxy sidecar container #1870  
OCPBUGS-2729 : unify ignored network device list of Node Exporter. #1871 OCPBUGS-5353 : unstack dashboards with limit markers. #1868 Update jsonnet dependencies #1865  
Synchronize versions of the downstream components #1867  
Update jsonnet dependencies #1864  
Synchronize versions of the downstream components #1863  
OCPBUGS-4521 : check that all targets are up after certificate recreation #1848 Synchronize versions of the downstream components #1861  
OCPBUGS-4219 : Adds runbook link to PrometheusRuleFailures #1860 MON-2807 : Use bearer token file for remote write authentication with telemeter #1733 OCPBUGS-1998 : pkg/client: Update daemonset degrade condition #1812 Synchronize versions of the downstream components #1859  
Bug 2114515 : jsonnet: ignore /var/lib/ibmc-s3fs/ mountpoints #1854 Synchronize versions of the downstream components #1853  
Synchronize versions of the downstream components #1852  
OCPBUGS-4793 : fix object reference in Kubernetes events #1842 Synchronize versions of the downstream components #1849  
Updating cluster-monitoring-operator images to be consistent with ART #1846  
OCPBUGS-2729 : Node Exporter ignore virtual network device ‘enP.*’. #1843 Unpin and update jsonnet dependencies #1818  
OCPBUGS-2141 : compute doc link in PVC not configured message #1836 Synchronize versions of the downstream components #1838  
go.mod: switch to go 1.19 #1839  
Synchronize versions of the downstream components #1835  
OCPBUGS-2260 : add alert KubePodNotScheduled to group openshift-kubernetes.rules #1830 Synchronize versions of the downstream components #1831  
Remove deprecated option from kube-state-metrics args #1832  
OCPBUGS-4184 : use mTLS authentication for metrics scraping #1827 OCPBUGS-4168 : Increase startupProbe for prometheus #1824 OCPBUGS-4181 : Fixes externalURL field for Prometheus and Alertmanager #1826 Synchronize versions of the downstream components #1823  
OCPBUGS-1453 : Fixed TargetDown expression to join on the proper label #1767 Bug 2095719 : Updates CreateOrUpdateServiceAccounts #1745 OCPBUGS-4024 : test: increase timeout when checking remote write metrics #1817 OCPBUGS-3331 : Pin Jsonnet Deps + Update go.mod for 4.12 + Patch Alert KubePodNotRead #1816 Revert “OCPBUGS-3331: Pin Jsonnet Deps + Update go.mod for 4.12” #1815  
OCPBUGS-3331 : Pin Jsonnet Deps + Update go.mod for 4.12 #1814 Switch ksm registry to registry.k8s.io #1809  
MGDAPI-4488 : RHOAM fleet wide observability metrics #1771 Full changelog  
OCPBUGS-33030 : [release-4.13][manual]Reduce number of reboots in offline tests (#1048) #1048 Scheduler plugin: ignore IRQs (#1027) #1027  
irqbalance: set banned cpus list to 0 (#1003) #1003  
OCPBUGS-24353 : rps: cherry-picks of rps fixes (#865) #865 Disable HTTP/2 for webhook and metrics servers (#846) #846  
Remove obsolete protocols and weak ciphers (#843) #843  
OCPBUGS-18493 : e2e: deflake IRQ load-balancing (#782) #782 Use RHEL9 as a base (#829) #829  
OCPBUGS-17943 : Add rtentsk plugin to pp tuned profile Signed-off-by: Brent Rowsell <browsell@redhat.com> (#796) #796 nto: avoid timeout when there are too many CSV (#818) #818  
OCPBUGS-19459 : check for object being nil (#820) #820 Add kubeconfig path for IBM Managed OpenShift (#814) #814  
OCPBUGS-14137 : e2e: perfprof: add SNO device recovery test (#653) (#806) #653 OCPBUGS-18868 : [release-4.14] e2e: add expected max latancy to hwlatdetec test & rename constant (#788) (#808) #788 Sync DaemonSet if operand image changes (#786) #786  
Revert “Revert “Release leader election on manager exit (#773)” (#797)” (#802) #773  
OCPBUGS-19351 : Keep Profile status.bootcmdline around (#803) #803 Revert “Release leader election on manager exit (#773)” (#797) #773  
Release leader election on manager exit (#773) #773  
Tighten the rules for modifying Tuned Profiles (#766) #766  
OCPBUGS-18063 : cgroup: Match the name of the cgroup to what is expected by kubelet (#774) #774 update tsc karg to tsc=reliable (#757) #757  
OCPBUGS-17845 : deflake ht aware test (#763) #763 OCPBUGS-17794 : rps: use default rps mask kernel API (#760) #760 Improve render error handling (#755) #755  
nto:tuned: remove sched_min_granularity_ns settings (#726) #726  
Fix a race in e2e test rollback.go code (#740) #740  
E2E: Add memory manager sanity test case (#573) (#695) #573  
e2e: latency testing: increase the expected threshold (#709) #709  
Do not rollback settings on TuneD exit (#704) #704  
Switch to rslave/HostToContainer volume mount propagation (#705) #705  
e2e: perf-prof: disable truncating gomega output (#707) #707  
OCPBUGS-14895 : Do not fail creating cgroups if they exist already (#684) #684 OCPBUGS-14331 : Fix updating numa core siblings map in GetCpuSiblings function (#669) #669 render: remove uid from render-sync target (#594) (#609) #594  
Remove cpu-quota.crio.io: disable annotation (#670) #670  
Add PerformanceProfiles to ‘oc adm must-gather’ (#657) #657  
OCPBUGS-11709 : pao e2e: skip hugepages and numa tests properly (#643) #643 e2e: Fix RPS test for multi-worker cluster (#648) #648  
OCPBUGS-12978 use WatchNamespace() when deleting Profiles (#645) #645  
OCPBUGS-11336 : pao e2e: fix update test suit timeouts (#642) #642 Address CVE-2022-41723 (#633) #633  
OCPBUGS-13148 : Configure cpu balancing cpu sets for all clusters (#647) #647 Revert PR558 and PR585 partially (#640) #640  
workload-hints: disable stalld when rt disabled (#604) #604  
e2e: add missing test id (#629) #629  
Remove subPaths, they are broken (#624) #624  
OCPNODE-1539 : perf profile: add script for preparing cgroups for CPU load balance disabling (#617) #617 Update NTO-generated MC on MachineCount <= 1 (#620) #620  
OCPBUGS-11336 : e2e: profile updates tests revised (#618) #618 OCPBUGS-11813 : performance-profile: enable crun for high-performance runtime (#616) #616 A new env var NO_BZ_CHECKS disables Bz and Jira status checks (#614) #614  
Revert #567 and cleanup PPC-generated TuneD config (#615) #615  
Skip tests depending on Jira or Bz issue status (#599) #599  
Recent 4.13 RHCOS incorporated RHEL9 kernel based on 5.14 which (#606) #606  
Remove the preStop hook for openshift-tuned (#596) #596  
Fix updating nodeSelector test (#598) #598  
Fix failing HyperShift presubmits (#578) #578  
Add a script to validate upstream TuneD (#577) #577  
CNF-5900 : feat: added support for generating workload partitioning files (#431) #431 Re enable node selector tests in update tests (#574) #574  
Handle different # of CPUs are in the same MCP (#558) #558  
composable OCP: make NTO components optional (#524) #524  
Update to TuneD v2.20.0 (#565) #565  
Remove trailing spaces from test names (#570) #570  
Remove optimization to allow full resync (#567) #567  
Report host-level sysctls in conflict with TuneD ones (#566) #566  
E2E: Per Core Runtime Tuning Test automation (#509) #509  
Add test case to check single rx queue on veth interface (#562) #562  
Add update-manifests Makefile target (#560) #560  
render: initialize klog flag (#538) #538  
Refactor IRQ load balancing enable/disable test (#561) #561  
update to ginkgo 2 (#517) #517  
Skip watch on CA ConfigMap in HyperShift (#550) #550  
update owners 20230109 (#542) #542  
Add authentication to the /metrics endpoint (#541) #541  
Run node selector tests only if we 2 non Performanceworker nodes (#532) #532  
Updating profile new lane (#536) #536  
Remove trailing space from test name (#540) #540  
skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#537) #537  
Generate must-gather data (#442) #442  
e2e:latency: count LATENCY_TEST_DELAY in timeout (#535) #535  
E2E: Network stack Pinning tests (#501) #501  
refactor: move command func to seperate file (#522) #522  
performance-profile: render: make target for render sync (#528) #528  
Switch to golang 1.19 (#521) #521  
Add Containerfile for RHEL-9 (#519) #519  
Fix two irqbalance tests - smp affinity vs online (#518) #518  
Fix default hard eviction threshold when PCC is applied (#505) #505  
e2e: performance profile: add logs and minor fixes (#485) #485  
PPCreator: If rt-kernel enabled, power consumption mode default cannot be selected (#512) #512  
Configuration hotfixes documentation fixes (#513) #513  
E2E: Automation offline CPUs test (#380) #380  
pao: latency-tests: read test log directly from pod (#499) #499  
Configure ktimers scheduler prio same as ksoftirqs (#507) #507  
Run rps mask tests when Reserved cpu are not nil (#483) #483  
Set RPS for all rx queues (#495) #495  
Full changelog  
OCPBUGS-21103 : Bump deps to address CVE-2023-44487 [4.13] #135 OCPBUGS-14091 : [4.13] fix ClusterResourceQuotas to work for all api resources including custom resources #116 OCPBUGS-13731 : external template and route Informer #112 OCPBUGS-11473 : psalabelsyncer: handle empty namespace of a rolebinding subject #108 OCPBUGS-8710 : psalabelsyncer: invert the enforce/log logic to default to logging #106 update psa dependency version #103  
update controller-manager dependency to point to v0.25.0 #101  
OCPBUGS-723 : clusterquotareconciliation: do not sync quota monitor cache with no monitors registered #94 OCPBUGS-3985 : enforce pod security admission when techpreview is enabled #89 Updating cluster-policy-controller images to be consistent with ART #91  
Full changelog  
OCPBUGS-22390 : Sync library to remove invalid dockerhub references for OKD #521 OCPBUGS-15756 : Update Jenkins and Jenkins Agent Base image versions #505 OCPBUGS-14598 : Updating to use Jenkins 4.13 images #503 OCPBUGS-13029 : Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #501 OCPBUGS-10965 : Add network tools imagestreams #496 update Jenkins to use v4.12 imagestreams #491  
OCPBUGS-855 : When setting allowedRegistries urls the openshift-samples operator is degraded #487 OCPBUGS-6811 : Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #485 Change importMode to preserveOriginal for Openshift imagestreams #482  
OCPBUGS-6579 : update sample imagestreams with latest 4.11 image using specific image tag reference #483 OCPBUGS-4357 : Bump k8s master #476 OCPBUGS-4166 : Update Cluster Sample Operator dependencies and libraries for OCP 4.13 #474 OCPBUGS-3426 : Update Cluster Sample Operator dependencies and libraries for OCP 4.12 #471 Updating ose-cluster-samples-operator images to be consistent with ART #470  
Full changelog  
OCPBUGS-27049 : pkg/cvo/availableupdates: Only bump LastAttempt on Cincinnati pulls #1019 OCPBUGS-20744 : [4.13] Bump http-related deps #989 OCPBUGS-19472 : Reconcile Volumes in SCCs and flag Upgradeable=False when detecting modified SCC #969 OCPBUGS-20321 : pkg/cvo/sync_worker: Always enable the DeploymentConfig capability #981 OCPBUGS-19828 : pkg/clusterconditions/promql: Warm cache with 1s delay #974 OCPBUGS-20263 : pkg/clusterconditions/cache: Avoid panic on all-fresh-cache evaluation #980 OCPBUGS-16613 : Add admin-gate ack-4.13-kube-1.27-api-removals-in-4.14 #948 OCPBUGS-11435 : Update dnsPolicy to allow consistent resolution of the internal LB #923 OCPBUGS-10221 : pkg/cvo/availableupdates: Prioritize conditional risks for largest target version #912 pkg/cvo: code cleanups #902  
OCPBUGS-7419 : Trigger new sync round on ClusterOperator Available changes #904 install/0000_90_cluster-version-operator_02_servicemonitor: Add ClusterReleaseNotAccepted #906  
OCPBUGS-6097 : CVO hotloops on ImageStream and logs the information incorrectly #894 OCPBUGS-6292 : Update golang.org/x/net/http2 for CVE-2022-41717 #901 Bug 2090680 : RetrievePayload: Improve timeouts and cover behavior with tests #896 pkg/cvo: Set ‘controller’ in our ownerReferences #900  
pkg/cvo/sync_worker: Fix “The sync worker already has a pending notification” formatting #898  
vendor: update openshift/api for NodeTuning capability #883  
Bug 2089138 : CVO hotloops on ValidatingWebhookConfiguration #893 logging: consistently use RFC3339 in log messages #889  
OCPBUGS-702 : Fix removing caBundle field of CRDs when ...inject-cabundle=true #870 lib/validation: Drop “a previous version” from desiredUpdate validation #888  
Adding David to approvers list and removing Jack #891  
upgradeable: improve logging and refactor #886  
start.go: simplify code for computing sync period #887  
OCPBUGS-5505 : Set upgradeability check throttling period to 2m #882 Revert “pkg/cvo/updatepayload.go: timeout payload retrieval” #881  
pkg/cincinnati: Set User-Agent for Cincinnati requests #839  
Bug 2090680 : pkg/cvo/updatepayload.go: timeout payload retrieval #846 tests: fix rare nil dereference in TestCache #875  
pkg/payload: code cleanups #877  
OTA-817 : Support ClusterVersion spec DesiredUpdate Architecture field #860 OCPBUGS-4986 : pkg/payload/precondition: Do not claim warnings would have blocked #876 OTA-844 : pkg/cvo/metrics: Add ‘reason’ to cluster_operator_up #868 OTA-560 : Improve developer-oriented docs #871 Updating cluster-version-operator images to be consistent with ART #873  
OCPBUGS-1443 : Avoid using a lister before client caches sync #874 OTA-560 : Modernize README.md to be user-centered #869 Build CVO from UBI8 instead of obsolete origin-v4.0:base #872  
Bug 2089093 : CVO hotloops on OperatorGroup due to the diff of “upgradeStrategy” #862 update library-go to pick up feature-set annotation change #853  
Add myself as approver and David Hurta as a reviewer #864  
OCPBUGS-1458 : Allow CVO to update KUBERNETES_SERVICE_HOST with LB address #851 pkg/cvo/cvo_scenarios_test.go: Remove status check from TestCVO_UpgradeFailedPayloadLoadWithCapsChanges #857  
resourcemerge: cleanup deprecated function calls #858  
OCPBUGS-2727 : Do not fail precondition check for UnknownUpdate #856 Full changelog  
OCPBUGS-32147 : Bump graphql-go to v1.3.0 #13922 OCPBUGS-33978 : Helm Plugin’s Catalog incorrectly renders a single index entry into multiple tiles #13872 OCPBUGS-34342 : Fix PipelineRun Logs tab navigation #13890 OCPBUGS-24395 : Extra space is in the translation text(Chinese) of ‘Create rolebinding’ and ‘replicate rolebinding’ #13405 OCPBUGS-33777 : restrict Masthead logo to max-height to 60px #13860 OCPBUGS-33749 : Add visual connector between VMs and non VMs workloads #13857 OCPBUGS-33382 : Routes created by devfiles do not always use HTTPS #13827 OCPBUGS-33650 : fix issues with Edit Route form #13851 OCPBUGS-32500 : PipelineRuns in Console show wrong status or load indefinitely #13780 OCPBUGS-31077 : Pipeline Name gets changed to “new-pipeline” on the Edit Pipeline YAML/Builder #13683 OCPBUGS-31595 : Fix operands list endpoint. #13714 OCPBUGS-29063 : add additional check to determine if file is binary #13579 OCPBUGS-28788 : Copy response code from proxied plugin requests #13561 OCPBUGS-29243 : Add a new allowInsecure option to the internet proxy #13593 OCPBUGS-27406 : Add Pipeline metrics tab using plugin #13525 OCPBUGS-23483 : add access to create, edit and delete silences for developer user from developer perspective #13349 OCPBUGS-25427 : Fix plugin proxy handler #13449 OCPBUGS-25465 : fix runtime error on Node details Overview when Machin… #13452 OCPBUGS-25146 : add access review for impersonate #13437 OCPBUGS-24591 : ConsolePlugin metrics must no longer be grouped by the vendor #13424 OCPBUGS-22241 : Save also the location.search and .hash values in localStorage to restore them after login #13271 OCPBUGS-24240 : Subsequent PipelineRuns take initial PipelineRun name into account #13385 OCPBUGS-23497 : Cannot Edit Shipwright Build #13352 OCPBUGS-11316 : Fix description for BuildAdapter SDK extension #12703 OCPBUGS-22986 : Correct logout process #13310 OCPBUGS-23065 : remove expandable toggle for conditional update risk d… #13316 OCPBUGS-22784 : add support for new features annotations while preservi… #13299 OCPBUGS-19532 : use active namespace in Create cta href of create action for operator backed #13179 OCPBUGS-18271 : update the KnativeServing API version to v1beta1 for global-config extension #13112 OCPBUGS-20232 : show all the legends for Pipeline metrics in PipelineRun TaskRun Duration chart #13224 OCPBUGS-20231 : fetch TaskRuns without selector and reduces the get TaskRuns requests #13223 OCPBUGS-20330 : Check if filtered object contains name property #13227 OCPBUGS-13285 : add multipath device type to LocalVolumeSet #12804 OCPBUGS-17481 : Fix that “Delete application” doesn’t work in topology when Pipelines operator is not installed #13083 OCPBUGS-18764 : Fixed Edit Application form for Knative Services #13147 OCPBUGS-18538 : OCP console mandate secret for repository creation #13135 OCPBUGS-18679 : [knative] Don’t rely on openshift/hello-openshift as a sample image #13140 OCPBUGS-18289 : Not able to import the repository with .tekton directory and func.yaml file present #13116 OCPBUGS-18443 : Fix crash when filtering the quick start catalog #13127 OCPBUGS-18312 : Web console slowness on Project>Project access page #13119 OCPBUGS-18335 : Fix DeploymentConfig list performance issues by lazy loading their ReplicationControllers #13120 OCPBUGS-17876 : Fix topology crash when a console.topology/data/factory extension tries to resolve a resource with version from the CRDs which doesn’t exists #13095 OCPBUGS-16668 : Dynamic plugin translation support for plurals broken #13041 OCPBUGS-17181 : Creation of GH webhook and attaching it to repo while importing from git using PAC #13060 OCPBUGS-16040 : fix bug where binary secret values are corrupted on edit and add test coverage #13048 OCPBUGS-16659 : Fix RTE in bridge. #13038 OCPBUGS-16158 : “Duplicate RoleBinding” leads to “Unsupported value” error #13008 OCPBUGS-16434 : Fix stop PLR option #13031 OCPBUGS-14265 : Regression: OpenShift Console no-longer filters SecretList when displaying ServiceAccount #12865 OCPBUGS-13641 : Do not fetch catalog sources on CSV or Subscription details pages. #12811 OCPBUGS-16421 : When removing the project owner from the project in GUI, instead of that user, the group (the default group added as project admin through the project template) will be removed. #13030 OCPBUGS-15998 : Upload JAR file does not work if the Cluster Samples Operator is disabled #12992 OCPBUGS-15810 : only show pipelines doc link for downstream #12981 OCPBUGS-15982 : get Kamelets from the camel-k-operator namespace as well #12988 OCPBUGS-16244 : Fix operator backed catalog page when copied CSVs disabled #13019 OCPBUGS-15194 : Remove tech preview badge from Pipeline repository pages #12916 OCPBUGS-10326 : re-enable operator-install-single-namespace.spec.ts test #12653 OCPBUGS-15848 : The upgrade Helm Release tab in OpenShift GUI Developer console is not refreshing with updated values. #12976 OCPBUGS-15890 : Use proxy with web socket connection and monitoring dashboard #12978 OCPBUGS-15720 , OCPBUGS-15721 , OCPBUGS-15722 : Helm Chart installation form hangs on create if JSON-schema is using 2019-09 or 2020-20 standard revisions #12963 OCPBUGS-14426 : account for single object in status.conditions instead… #12875 OCPBUGS-14267 : Add Pipeline metrics unsupported empty page #12864 OCPBUGS-15410 : Add Git Repository (PAC) doesn’t setup GitLab and Bitbucket configuration correct #12936 OCPBUGS-15787 : Remove access review check for PipelineResource from Pipeline section #12967 OCPBUGS-15228 : Create helm release page doesn’t show a YAML editor when schema isn’t available (httpd-imagestreams chart) #12937 [release 4.13] OCPBUGS-15360: Serverless functions UI warning is misleading #12931  
OCPBUGS-14166 : Fixed Make Serverless Form Error #12857 OCPBUGS-14336 : use service port name instead targetPort in the Pipeline Event listener route #12870 OCPBUGS-14310 : Could not import multiple resources via JSON (while YAML supports this) #12868 OCPBUGS-15335 : Delete annotation ‘tekton.dev/v1beta1TaskRuns’ when rerun the PLR #12927 OCPBUGS-15130 : Helm Repository “Edit” button results in 404 #12909 OCPBUGS-14189 : Corrected Labels for resolving the bug related to the Create Route Checkbox #12858 OCPBUGS-13642 : Fix OLM k8sResourcePrefix descriptor dropdown behavior #12812 OCPBUGS-11974 : Add page title to Devconsole pages #12844 OCPBUGS-15465 , OCPBUGS-15481 : Remove PipelineResource CRD check because it’s not installed with PO 1.11 anymore and disable operator-uninstall test #12949 OCPBUGS-14943 : visiting Configurations page returns error Cannot read… #12897 OCPBUGS-12785 : Project admin can update and view subscription from operator details page #12780 OCPBUGS-14574 : only copy workload annotations to debug pod #12879 OCPBUGS-14258 : Add vSphere cluster field. #12862 OCPBUGS-14195 : Topology UI doesn’t recognize Serverless Rust function for proper UI icon #12860 OCPBUGS-10527 : When there are 2 pipelines displayed in the dropdown menu, selecting one, unchecks the Add Pipeline checkbox #12658 OCPBUGS-14165 : propagate labels to pipeline resources #12856 OCPBUGS-13959 : Wait with CRD/model translation until i18n bundles are loaded #12842 OCPBUGS-13783 : fix runtime error on OperatorHub details pages #12830 OCPBUGS-12770 : fix buildconfig form ns #12776 OCPBUGS-12850 : add support for minimal status of tekton #12784 OCPBUGS-12740 : update helm release empty state text #12773 OCPBUGS-11866 : delete associated pipeline, triggertemplate and eventlistener when deleting app #12730 OCPBUGS-12186 : Pipeline doesn’t render correctly when displayed but looks fine in edit mode #12748 OCPBUGS-11218 : use PipelineRun template from ‘pipelines-as-code-pipelinerun-go’ configMap for Go runtime #12696 OCPBUGS-12273 : When Creating Sample Devfile from the Samples Page, Topology Icon is not set #12757 OCPBUGS-12272 : Importing a kn Service shows a non-working Open URL decorator also when the Add Route checkbox was unselected #12756 OCPBUGS-12173 : taskrun ui fails when using object type results #12745 OCPBUGS-10832 : Edit Deployment (and DC) form doesn’t enable Save button when changing strategy type #12674 OCPBUGS-11919 : Reduce metrics cardinality by grouping well-known and other perspectives and plugins #12742 OCPBUGS-10266 : Fixes argocd link for non-KAM added application envs #12649 OCPBUGS-10265 : Fixes resource status alignment issue #12648 OCPBUGS-10299 : Fixes card sizes not even issue when commit info is not available on Environments page #12651 OCPBUGS-12172 : Users don’t know what type of resource is being created by Import from Git or Deploy Image flows #12744 OCPBUGS-10678 : Do not show builder ImageStreams without sampleRepo as samples #12668 OCPBUGS-11232 : fix All projects selection on Pipelines page in dev perspective #12698 OCPBUGS-11390 : Move operator install status to it’s own route/page #12706 OCPBUGS-11107 : Fix alerts source display values #12688 OCPBUGS-11248 : fix translation string for Image pull secret created alert #12699 OCPBUGS-10833 : update the default pipelineRun template name #12675 OCPBUGS-10679 : Show type of sample on the samples view #12639 OCPBUGS-10474 : OpenShift pipeline TaskRun(s) column Duration is not present as column in UI #12656 OCPBUGS-7632 : fix issue where project deletion fails #12618 ODC-7232 , ODC-7233 : Add new auth, serverconfig and usage metrics #12527 OCPBUGS-6994 : when ACM is installed and no previous perspective is set, default perspective to All Clusters #12542 OCPBUGS-6762 : Increase filter input width to accomodate placeholder text #12610 OCPBUGS-8066 : add checks for Pipeline in AddServerlessFunction form #12617 Correcting Knative Package Failures #12012  
IR-267 : add details for submanifest to the ImageStreamTag #12549 OCPBUGS-5773 : Delete secret on async run error #12557 OCPBUGS-7970 : always close filter dropdown #12590 OCPBUGS-7971 : Monitoring: Fix “Label” filter on “Alerting rules” list page #12592 OCPBUGS-7031 : Pipelines repository list and creation form doesn’t show Tech Preview status #12541 ODC-6669 : rename edit-deployment routes and components #12400 OCPBUGS-7308 : remove ‘Download kubeconfig file’ from ServiceAccounts #12589 Bug 2076619 : Modified git import flow module to handle create button enable-disable issue #11493 OCPBUGS-7879 : fix devfile error #12594 OCPBUGS-7806 : Add NFS-export details for PersistentVolume details #12571 chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 230 #12584  
OCPBUGS-3450 : Missing containerd and wicd service logs in Windows nodes #12572 OU-110 : Observe > Dashboards page: Use datasource defined in dashboard definition #12422 OCPBUGS-7668 : Bump helm pkg #12582 Add additional alerts datasource extension #12436  
OCPBUGS-4646 : delete application should delete all part-of resources #12567 OCPBUGS-7144 : fix alignment issue of info alert on Pipeline metrics page #12563 Serverless function creation with Pipelines #12552  
OCPBUGS-7421 : fix missing i18n error and validateDOMNesting warning #12561 OCPBUGS-1706 : Switch to use labelPlural for heading #12585 OCPBUGS-7195 : E2E correct sample page clicking #12574 OCPBUGS-3372 : Fix create silence error message adding response from the backend #12577 OCPBUGS-7117 : Expose endpoint to obtain copy login command URL for each cluster #12553 OCPBUGS-7399 : fix pipeline selection in Edit flow in devconsole #12564 OCPBUGS-266 : add subject kind dropdown in the project access form #12418 chore(i18n): update translations: Completed-7034-OCP 4.13/Master Branch UI Localization- Sprint 229 #12568  
OCPBUGS-7427 : Associate wait time with method to decrease run time #12559 OCPBUGS-7089 , OCPBUGS-7113 : move cluster menu to masthead to fix usability issues #12480 OCPBUGS-7418 : set default value for Scaling fields in Create Serverless Function form #12562 OCPBUGS-6610 : Developer - Topology : ‘Filter by resource’ drop-down i18n misses #12522 Bug 2115265 : Search page: LazyActionMenus are shown below Add/Remove from navigation button #12187 OCPBUGS-2479 : Right border radius is 0 for the pipeline visualization wrapper in dark mode #12501 OCPBUGS-1748 : PipelineRun templates must be fetched from OpenShift namespace #12537 OCPBUGS-7090 : Fix that Add to navigation does nothing when pinnedResource is {} #12536 OCPBUGS-5547 : Webhook Secret (1 of 2) is not removed when Knative Service is deleted #12517 OCPBUGS-5428 : Add missing SDK extensions descriptions #12431 OCPBUGS-6893 , OCPBUGS-7199 : Fix different CI issues #12554 OCPBUGS-4008 : Make sure console refresh toast notification pops up wh… #12470 OCPBUGS-6757 : Get the Event type value from the latest PLR of the Repository #12495 CONSOLE-3334 : Update copiedCSVsDisabled to contain managed clusters #12374 OCPBUGS-6967 : fix typeError while creating Serverless function #12520 OCPBUGS-6647 : Added translation to Last used in resource type dropdown #12504 OCPBUGS-5733 : Remove description field from the PLR parameters page #12434 ODC-7226 : update helm install and upgrade flow #12502 OCPBUGS-5948 : Better fix for runtime error in schema tab of api explorer when no schema exists #12499 OCPBUGS-186 : PipelineRun task status overlaps status text #12498 ODC-7234 : Provide option to configure PAC on importing app via import from git flow #12439 HELM-479 : Uninstall the Helm Charts Asynchronously #12465 OCPBUGS-6799 : Repositories list does not show the running pipelinerun as last pipelinerun #12497 chore(i18n): update translations: : Completed-7034-OCP 4.12/Master Branch UI Localization- Sprint 225 & 228 #12285  
OCPBUGS-6098 : Show Git icon and repo link as per the Git provider #12456 OCPBUGS-4883 : Default Git type to other info alert should get remove after changing the git type #12384 OCPBUGS-5997 : Add Git Repository (PAC) showed empty permission content and non-working help link until a git url is entered #12445 OCPBUGS-6660 : make Uninstall Operator checkbox instructions optional #12471 add preferred tab per user for dev perspective Pipelines page and make PipelineRuns tab default for Repository details page #12426  
Query browser: Remove unused wrapperClassName prop #12464  
OCPBUGS-2666 : Add RBAC check on Create a Project link in all-namespaces pages #12279 add create serverless function form and add action on add page #12396  
Update ODC owner files #12430  
ODC-7225 : Update Helm Releases list page and the details page #12432 Bug 2084452 : PodDisruptionBudgets help message should be semantic #12084 OCPBUGS-5948 : Fix runtime error in schema editor when theres no match for g/v/k in swagger definitions #12469 OCPBUGS-6049 : Do not show UpdateInProgress when status is Failing #12449 OCPBUGS-6634 : Enable building tectonic-console-builder on arm64 and fix the Dockerfile.product to work with no cached artifacts #12444 OCPBUGS-3228 : fix broken pipeline secret #12460 OCPBUGS-5851 : refactor descriptors test to remove interdependencies #12453 OCPBUGS-6053 : fix run-time error on Cluster Settings when availableUp… #12450 OCPBUGS-6272 : Start the pipeline with workspace #12442 OCPBUGS-4684 : In DeploymentConfig both the Form view and Yaml view are not in sync #12416 CONSOLE-3237 : Add opt out when Console deletes operands #12234 OCPBUGS-5851 : delete existing operand via CLI to workaround failing t… #12451 OCPBUGS-1598 : updates toast wording to Workload #12155 ODC-7210 : Create Serverless function using the Import from the Git with Builder Images #12411 OCPBUGS-5016 : Editing Pipeline in the ocp console should show correct information #12446 OCPBUGS-5851 : Using OLM descriptor components deletes operand #12433 CONSOLE-3389 : Use Cypress mock responses for multicluster cluster switcher and pod test #12421 Correcting Pipelines Package Failures #12073  
Bug 2110565 : PDB Remove add/edit/remove actions in Pod resource action menu #12420 OCPBUGS-5542 : Project dropdown order is not as smart as project list page order #12428 OCPBUGS-1852 : Subscription tab for operator doesn’t land on correct URL #12336 OCPBUGS-4377 : Service name search ability while creating the Route from console #12383 OCPBUGS-5540 : fixes typo for milliseconds #12423 OCPBUGS-4894 : Disabled Serverless add actions should not be displayed for Knative Service #12379 OCPBUGS-4571 : Operator recommended namespace during installation incorrect. #12387 OU-121 : Monitoring: Convert Alerting list pages to use plugin SDK list filters #12399 OCPBUGS-5346 : Change vSphere connection health status icon #12410 OCPBUGS-3334 : Fix type inconsistencies and Readme for DynamicPlugins #12263 OCPBUGS-4047 : Fix secret CRUD test #12407 Bug 2083087 : Fix to provide an option to delete all app resources on delete-resource modal for D/DC/KSVC #12390 OCPBUGS-2145 : maxUnavailable and minAvailable on PDB creation page - i18n misses #12373 OCPBUGS-5287 : disable operator-install-single-namespace.spec.ts until… #12406 HELM-471 : Modify list releases response #12401 OCPBUGS-4047 : disable key/value secrets test as they fail at a high rate #12405 OCPBUGS-1606 : Do not filter spoke cluster operators by arch/os #12363 OCPBUGS-4701 : display ‘Control plane is hosted’ alert only when isCl… #12361 ODC-7188 : On importing application via import from git flow pac should be configured for the application #12335 OCPBUGS-4279 : Upgrade pf 2022 13 #12333 OCPBUGS-3033 : Make all feature flags available in perspective extensi… #12386 OCPBUGS-4700 : only show upgrade details if cluster not externally man… #12362 Health checks topology sidebar feature automation #12394  
ODC-7184 : Show pre-pinned resources based on customization #12354 OCPBUGS-4781 : use /api/helm/release endpoint on helm release details page #12397 ODC-7185 : Allow admins to define pre-pinned resources using a form driven experience #12353 ODC-7183 : Provide a code snippet for adding pinned resources #12349 OCPBUGS-5164 : add support for version v1beta1 for knativeServing and knativeEventing #12391 OCPBUGS-5165 : Add DevSandbox specific telemetry config (to allow these cluster to enforce cluster type and opt-out) #12392 Monitoring: Convert Targets list page to use plugin SDK list filters #12342  
ODC-7182 : add pinnedResources to server flags #12314 OCPBUGS-3373 : Observe > Metrics > Monitors,  Error Message to indicate limited view due to user privileges #12319 OCPBUGS-3314 : Fix to use and set correct secretReference for build-config triggers #12375 OCPBUGS-2824 : The dropdown list component will be covered by deployment details page on Topology page #12369 adds support for timeout and custom image in cloudshell #12329  
OU-122 : Monitoring: Convert modals to use PatternFly directly #12371 Bug 1948666 : Fix to show correct help texts for each git repo status error code #12237 Bug 2005232 : Pods list page should only show Create Pod button to user has sufficient permission #11999 OCPBUGS-4975 : Add missing translation in ceph stoage plugin #12380 OCPBUGS-3767 : fixed node maintenance plugin route configuration for BareMetalNodesPage #12359 OCPBUGS-2525 : improve newly migrated ConsoleLink test #12348 MGMT-12787 : Move MarkdownView to plugins-shared #12328 Bug 2100762 : Adding data-checked-state to radio inputs #12256 ODC-7177 : Add SBO label selector support for Topology page #12283 Sidebar-of-knative-revision-and-service| Knative Serverless #12351  
ODC-7179 : Allow users to see which pods are receiving traffic #12272 OCPBUGS-3761 : close the guided tour modal before any action #12358 Domain-Mapping feature | Knative Serverless #12343  
ODC-7172 : Update helm terms from install/uninstall to create/delete #12337 OCPBUGS-3033 : Update admin landing page if monitoring is disabled #12292 OCPBUGS-4691 : Fix that topology sidebar actions shows outdated data (Edit labels, Edit annotations, etc.) #12365 OCPBUGS-3951 : Do not disable dynamic plugin if extension coderef fail… #12347 CONSOLE-3371 : Add missing children prop to ResourceLink #12312 HELM-450 : Return secret for async install/upgrade #12289 Updating openshift-enterprise-console images to be consistent with ART #12350  
Bug 2110570 : Topology sidebar: Edit pod count shows not the latest replicas value when edit the count again #12332 OCPBUGS-3863 : Set proper return code for plugin handlers #12346 Update helm and dev-console tests file #12301  
Monitoring: Convert remaining kebab menus to use PatternFly directly #12326  
OCPBUGS-4540 : Fix NavSection bug #12344 OU-75 New Query Added to the Beginning  of List #12275  
OCPBUGS-2525 : migrate CRD extensions tests to Cypress to mitigate flakes #12331 OCPBUGS-4518 : Monitoring: Fix alert descriptions with duplicate resources #12341 OCPBUGS-4047 : delete each created secret in case first test attempt r… #12316 Bug 2077138 : update pf-quickstart version #12298 OCPBUGS-4252 : fix issue where node debug terminal doesn’t load #12322 OCPBUGS-4110 : fixes misaligned form footer btn controls for WTO #12306 OCPBUGS-4415 : Disable shipwright tests again #12334 Monitoring: Extract Alertmanager config related code #12324  
OCPBUGS-3896 : Make aria-expanded state label reflect correct expanded state in the masthead navigation button #12321 OCPBUGS-3771 : Add managed cluster proxy endpoint env var to multicluster-environment.sh script #12280 OCPBUGS-4206 : fix getContainerStateValue i18n #12318 CONSOLE-3282 : add Dynamic plugins to about modal #12294 OCPBUGS-4203 : remove padding from debug pod alert #12317 Monitoring: Use PatternFly components instead of ActionButtons #12302  
OCPBUGS-3761 : follow on fix to ensure Administrator perspective is se… #12313 OCPBUGS-3027 : Do not disable metrics when auth is disabled #12287 Monitoring: Use PatternFly components instead of Breadcrumbs component #12303  
OCPBUGS-1305 : Re-enable Shipwright e2e tests #12049 Monitoring: Don’t import EmptyBox #12227  
OCPBUGS-2281 : Re-enable serverless e2e tests #12243 OCPBUGS-3476 : Show Tag label and tag name if tag is detected in repository PipelineRun list and details page #12274 OCPBUGS-3432 : Re-enable pipelines e2e tests #12242 OCPBUGS-2500 : Pan nodes into view if all nodes are not visible on load #12260 OCPBUGS-4026 : Fix rerender loop/crash when bindable-kinds is found but has no status #12296 OCPBUGS-4022 : Fix react warning when open console, add missing keys in navigation #12295 OCPBUGS-3024 : Add support for other Service types in Service list #12232 OCPBUGS-4012 : disabled Serverless add actions is not displayed in topology menu #12297 OCPBUGS-3776 : Update the tooltip to trigger only on mouseenter to remove focus trigger #12290 OCPBUGS-2480 : Task delete icon is not align properly on the Pipeline builder page #12266 CONSOLE-3350 : Add a PR template for the console #12257 OCPBUGS-3648 : Fix more runtime error edge cases in ImageManifestVuln … #12293 Monitoring: Refactor silence dropdowns to use PatternFly directly #12196  
OCPBUGS-3395 : show event source, event sink card on add and associated action only if eventing is enabled #12268 OCPBUGS-3235 : Fix for initial showing of topology contents #12264 OCPBUGS-3761 : migrate Events integration test to Cypress to mitigate … #12286 topology-headless-failures-correction #12057  
OCPBUGS-2904 : If all the actions are disabled in add page, Details on/off toggle switch to be disabled #12236 Monitoring: Import from the dynamic plugin SDK where possible and minor imports clean up #12231  
OCPBUGS-2579 : Helm Charts and Samples are not disabled in topology actions if actions are disabled in customization #12197 OCPBUGS-1604 : Add cluster to query params of websocket requests #12250 OCPBUGS-2551 : show 403 error when normal user check operands on All … #12267 Bug 2092289 : Don’t proxy CORS response headers #12269 OCPBUGS-3069 : add Release not accepted to Update status on Cluster Se… #12251 Monitoring: Add popover help text for silence form’s negative matchers #12218  
OCPBUGS-3709 : URI encode subjectName in CreateRoleBinding #12223 OCPBUGS-3458 : improve display of RetrievedUpdate condition in Update status #12261 OCPBUGS-2306 : fix number spinner input #12219 Bug 2080260 : Fix runtime erros in ImageManifestVuln related pages #12229 Create-knative-service-from-deployment-or-deployment-config feature #12125  
OCPBUGS-1671 : frontend: use UBI httpd for StatefulSet template #12195 OCPBUGS-2735 : Switch spacing for inline radio & checkbox elements #12253 Bump helm version  to 3.10.1 #12246  
CONSOLE-3120 : Allow operator to specify where to run with CSV suggested namespace template annotation #12217 OCPBUGS-3316 : Remove refs-heads from the branch name for Repository pipelineRun row #12247 Monitoring: Move codicon font into monitoring/ dir #12230  
OCPBUGS-2922 : Fix Console Plugin table sorting #12238 Monitoring: Don’t import CloseButton #12226  
Bug 1993916 : Show tooltips for contextual information #11860 OCPBUGS-3172 : check that user can patch console operator config in s… #12222 add capacity action for SS CSV list page [OCP 4.12 & ODF 4.11] #12214  
Monitoring: Fix type of bodyContent prop passed to PopoverField #12211  
OCPBUGS-2961 : Change installed operator text when custom resource required. #12228 CONSOLE-3185 : Improve information available for Pending or Failed plugins so user can better troubleshoot plugins #12208 CONSOLE-3246 : Update i18next to version 21.x.x #12124 CONSOLE-3077 : Promote ConsolePlugins API version to v1 in console repository #12103 OCPBUGS-1061 : Monitoring: Fix permission check for Prometheus & Alertmanager pollers #12206 And 11 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-20594 : build(deps): bump golang.org/x/net from 0.10.0 to 0.17.0 [backport 4.13] #130 OCPBUGS-17728 : Default CNI binaries to RHEL 8 #117 Add rhel9 binary #102  
Upstream sync Feb 2023 #73  
OCPBUGS-5292 : Fixes tuning regression with vlan path fix #72 OCPBUGS-5292 : Revert “Fix path substitution to enable setting sysctls on vlan interfaces” (ocp 4.13) #70 Updating ose-containernetworking-plugins images to be consistent with ART #69  
Upstream sync, Nov 2022 #67  
Full changelog  
Switch to a new CI #2444  
update tags to v1.26.1 #2119  
update tags to v1.26.0 release #2070  
update go version in GHA #1989  
And 61 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-28958 : Replace ‘coreydaley’ with ‘sayan-biswas’ in OWNERS file #104 OCPBUGS-20806 : bump golang.org/x/net to v0.17.0 #87 OCPBUGS-11432 : add openshift workload annotation to driver daemonset #74 BUILD-570 : hooks to allow operator to deploy on hypershift #71 BUILD-407 : remove pod wrapper types from validating webhook config #69 BUILD-407 : switch reserver share config from configmap to envvar; update webhook config to monitor share creates #68 STOR-1019 : Bump to k8s 1.26 libs for OCP 4.13 #66 Add a .ci-operator.yaml file #67  
bump library-go to get ApplyCSIDriver changes #65  
Updating ose-csi-driver-shared-resource-operator images to be consistent with ART #64  
update to go1.19 #63  
STOR-829 : set security.openshift.io/csi-ephemeral-volume-profile label #59 OCPBUGS-3358 : Revert “[build-407] Mount shared secret and configmap list config path into shared driver node” #61 Full changelog  
OCPBUGS-29728 : cherry-pick:release-4.13: OCPBUGS-29244 Update VolumeSnapshot and VolumeSnapshotContent using JSON patch #141 OCPBUGS-21011 : CVE-2023-44487: bump golang.org/x/net to v0.17.0 #110 OCPBUGS-16638 : [release-4.13] UPSTREAM: 815: updated go module files #103 STOR-1020 : Rebase external-snapshotter to v6.2.1 for OCP 4.13 #88 Updating csi-snapshot-validation-webhook images to be consistent with ART #87  
Updating ose-csi-external-snapshotter images to be consistent with ART #86  
Updating ose-csi-snapshot-controller images to be consistent with ART #85  
Full changelog  
Upgrade glibc, use dnf (#130) #130  
Fixing the regexp used to get the correct GCC version. (#129) #129  
Updating the docs to use ubi9 instead of ubi8. (#128) #128  
Moving to rhel9 base image. (#125) #125  
Remove abi since it was not in 9.2 rpms (#124) #124  
Fixing check-commits-count to work on other branches than master. (#118) #118  
Adding rpm-build to the Dockerfile (#116) #116  
Adding a missing space to README.md. (#115) #115  
Updating README.md. (#114) #114  
Updating the README.md. (#112) #112  
Updating driver-toolkit images to be consistent with ART (#111) #111  
Adding documentation regarding the driver-toolkit imagestream. (#110) #110  
Adding kernel-rpm-macros to the Dockerfile. (#106) #106  
Full changelog  
OCPBUGS-28660 : UPSTREAM: <carry>: kubelet/cm: use MkdirAll when creating cpuset to ignore file exists error #1875 UPSTREAM: <drop>: Bump golang.org/x/net to v0.23.0 #1938  
OCPBUGS-31505 : Update to kubernetes 1.26.15 #1930 Address CVE #14  
OCPBUGS-29663 : Update to kubernetes 1.26.14 #1889 OCPBUGS-12210 : Prevent partially filled HPA behaviors from crashing kube-controller-manager #1876 OCPBUGS-27370 : Update to kubernetes 1.26.13 #1859 OCPBUGS-25814 : Fix device uncertain errors on reboot - 4.13 #1831 OCPBUGS-25988 : Update to kubernetes 1.26.12 #1839 OCPBUGS-25767 : legacy-cloud-providers: prevent index out-of-range in getNextUnitNumber #1834 OCPBUGS-23521 : UPSTREAM: <carry>: support for both icsp and idms objects #1798 OCPBUGS-23567 : Update to kubernetes 1.26.11 #1809 OCPBUGS-18829 : cm: reorder setting of sched_load_balance for sandbox slice #1696 OCPBUGS-23287 : UPSTREAM: 121881: Use golang library instead of mklink #1802 openshift-hack: Fix sporadic 141 errors in build-rpms #1773  
OCPBUGS-20114 : UPSTREAM: <carry>: Do not allow nodes to set forbidden openshift labels #1746 OCPBUGS-21063 : [release-4.13] UPSTREAM: 121126: [1.26][CVE-2023-39325] .: bump golang.org/x/net to v0.17.0 #1759 OCPBUGS-19885 : UPSTREAM: 120789: change rolling update logic to exclude sunsetting nodes #1725 OCPBUGS-18287 , OCPBUGS-19480 : Update to Kubernetes 1.26.9 #1715 OCPBUGS-18677 : UPSTREAM: <carry>: Force using host go always and use host libriaries #1689 OCPBUGS-17187 : Update to Kubernetes 1.26.7 #1649 OCPBUGS-17145 : Increase service idle max timeout to 100 minutes #1657 OCPBUGS-15866 : remove readiness check for cache exclusion #1625 OCPBUGS-15866 : UPSTREAM: <drop>: hack/update-vendor.sh #1637 OCPBUGS-15246 : Bump to k8s 1.26.6 #1610 OCPBUGS-8738 : bump apiserver-lib-go #1611 OCPBUGS-14589 : [release-4.13] UPSTREAM: 118383: bump cadvisor for upstream patch 3301 #1596 OCPBUGS-13747 : 4.13: kubelet/cm: disable cpu load balancing on slices when using static cpu manager policy #1580 OCPBUGS-14048 : Bump to k8s 1.26.5 #1586 OCPBUGS-11146 : Enable CSI migration configuration via env vars #1514 OCPBUGS-11823 : UPSTREAM: 117311: kube-aggregator: correctly use client-go TLS cache with custom dialer #1549 OCPBUGS-7268 : Extractor more fixes 4.13 #1544 UPSTREAM: <carry>: OCPNODE-1548,OCPNODE-1584: disable load balancing on created cgroups when managed is enabled #1543  
OCPBUGS-11669 : Bump to k8s 1.26.3 #1540 OCPBUGS-10432 : CSI Inline Volume admission plugin does not log object name correctly #1515 OCPBUGS-6201 : Updating openshift-enterprise-pod images to be consistent with ART #1435 OCPBUGS-7359 : Azure: move to kube-proxy LB probes, don’t detach masters when unready #1506 OCPBUGS-10515 : UPSTREAM: 115328: apiserver: annotate early (server not ready) and late (during shutdown) requests #1517 OCPBUGS-8412 : Fix mounted volume expansion tests #1502 OCPBUGS-8308 : Bump to k8s 1.26.2 #1495 AUTH-336 : UPSTREAM: <carry>: PSa metrics: unset ocp_namespace on non-platform n… #1489 Bump to k8s 1.26.1 #1479  
OCPBUGS-7267 : add SeccompProfile to Pod and Container accessors/mutators #1490 UPSTREAM: <drop>: OCPBUGS-5991: Kube APIServer panics in admission controller #1488  
CNF-5901 : admission hook change for workload partition on all clusters #1312 UPSTREAM: 113799: tests: network: Prefer internal IPs first #1446  
UPSTREAM: 115863: Remove global framework variable #1480  
UPSTREAM: <carry>: add new approvers #1458  
OCPBUGS-7555 : UPSTREAM: <carry>: add default kubelet sysctls within rpm #1475 AUTH-336 : UPSTREAM: <carry>: PSa metrics: log platform namespaces in audit denies #1454 add icsp validation: reject one of icsp idms.itms resources #1310  
UPSTREAM: 114027: make GetSubnetPrefix IP family agnostic #1469  
disable tests dependent on StackDriver #1466  
UPSTREAM: 115484: Don’t explicitly set image version in tests #1465  
UPSTREAM: 114994: kubelet: fix readiness probes with pod termination #1450  
OCPBUGS-6030 : Rebase onto kube v1.26 #1432 Fix the mutated PodSpec extractor for warns if no SCC matches #1453  
OCPBUGS-4900 : remove in-tree volume limits test now that CSIMigration is GA #1448 OCPBUGS-4658 : Apply shared defaulters to CRD-based routes. #1440 OCPBUGS-4657 : Bump library-go. #1431 UPSTREAM: <carry>: make the PSA workload admission warnings honor the… #1393  
UPSTREAM: <carry>: Ensure balanced brackets in annotated test names #1410  
STOR-829 : Add CSIInlineVolumeSecurity admission plugin #1384 OCPBUGS-3501 : UPSTREAM: <carry>: Add host assignment plugin for CRD-based routes. #1419 UPSTREAM: <drop>: Bump openshift/api. #1424  
OCPBUGS-3499 : UPSTREAM: <carry>: Add validation plugin for CRD-based route parity. #1416 Bug 2117374 : UPSTREAM: <drop>: update apiserver-library-go to add message about wo… #1395 Bug OCPBUGS-2991: Disable expansion in SC, if driver does not support it #1402  
OCPBUGS-3093 : Tag AWS security groups at creation #1411 UPSTREAM: <drop>: Bump library-go. #1406  
OCPBUGS-2946 : Revert: 1340: tag AWS security group at creation #1401 OCPBUGS-3084 : UPSTREAM: 113481: kubelet: fix pod log line corruption when using timestamps and long lines #1404 Full changelog  
NO-JIRA: hack: make the e2e script generic #4202  
HOSTEDCP-1146 : cpo: use CPO spec container image if it is a sha256 reference #3296 OCPBUGS-22971 : Add konnectivity-proxy container to CNO #3167 OCPBUGS-23455 : Use the same etcd snapshot for all replicas during etcd restore #3205 NO-JIRA: Red Hat Trusted App Pipeline purge hypershift-operator-release-413 #3217  
chore(deps): update rhtap references (release-4.13) #3043  
Update RHTAP references (release-4.13) #2996  
OCPBUGS-17182 : add need-management-kas-access label to olm-collect-profiles pods #2871 OCPBUGS-16225 : Add missing probes to two services #2821 fix(olm): Use 4.13 catalog source images #2978  
Updated secret permissions for openshift-route-controller-manager #2923  
HOSTEDCP-1121 : Ensure SG reconciliation for aws endpoint #2885 chore(deps): update rhtap references (release-4.13) #2921  
Revert “HOSTEDCP-1110: [backport-4.13] Allow HCP Specification to Support ICSP & IDMS” #2931  
chore(deps): update rhtap references (release-4.13) #2904  
Update RHTAP references (release-4.13) #2866  
HOSTEDCP-1046 : Add ImageDigestMirrorSet to Config API comment #2870 HOSTEDCP-1046 : Add IDMS to the list of valid config manifests #2863 Update RHTAP references (release-4.13) #2833  
HOSTEDCP-1110 : [backport-4.13] Allow HCP Specification to Support ICSP & IDMS #2839 OCPBUGS-15743 : Let getMachinesForNodePool return machines ordered by creation Timestamp #2767 4.13: Add management cluster KAS network policy #2786  
Leader election config update. #2801  
OCPBUGS-16160 : fix deletion bug when hostedzone is already deleted #2813 HOSTEDCP-1061 : [release-4.13] Implement dedicated request serving nodes for HostedClusters #2809 Update RHTAP references (release-4.13) #2816  
OCPBUGS-16057 : use ignition-proxy Service to populate ignitionEndpoint with strategy NodePort #2798 OCPBUGS-14862 Improve clarity around hypershift operator permissions #2810  
HOSTEDCP-1101 : Add snyk-secret HO RHTAP scripts #2799 OCPBUGS-16125 : [release-4.13] Update vendored dependencies #2797 OCPBUGS-15774 : autoscaling balance similar groups #2805 OCPBUGS-15965 : Reject VPCE Connections during VPCE Service cleanup #2789 Update RHTAP references (release-4.13) #2751  
OCPBUGS-15171 : Skip AWS resource deletion for ‘Unknown’ OIDC state #2701 HOSTEDCP-1008 : Add NodePoolTransitionSeconds metric #2758 OCPBUGS-15281 : Check OwningIngressController also in Labels #2715 HOSTEDCP-1060 : refactor ignition-server reconcilation and add ignition-server proxy #2748 HOSTEDCP-1073 : enforce blocked rollout of HCP #2735 HOSTEDCP-1003 : Set AWS conditions only for AWS platform #2670 OCPBUGS-15268 properly handle user CA bundle not existing #2710  
OCPBUGS-15301 : [release-4.13] fix(oauth): Do not proxy IBM Cloud IAM endpoints #2696 OCPBUGS-14030 : Include default ingress CA in root CA bundle #2599 OCPBUGS-14490 : Enable HCCO to reconcile over the OperatorHub’s disableAllDefaultSources object #2645 OCPBUGS-14801 : Set DisableStrictZoneCheck = true in the AWS Cloud Provider config #2666 HOSTEDCP-1048 : Add impersonate feature to the CLI and document HC dump procedure #2681 OCPBUGS-14872 : Honor global ingress configuration LoadBalancer type on AWS #2677 OCPBUGS-14436 : Add ClusterUpgradeDuration metric #2637 HOSTEDCP-1009 : Allow external-dns image to be set in install cli #2652 Red Hat Trusted App Pipeline update hypershift-operator-release-413 #2641  
Red Hat Trusted App Pipeline purge hypershift #2640  
OCPBUGS-13735 : Cluster-api SA can’t create events and fix permissions wrongly included #2610 OCPBUGS-14242 : Remove external-dns –events flag #2621 OCPBUGS-14155 : Reconcile oauthDeployment annotations even if kubeadmin secret is not found #2613 OCPBUGS-13399 : Fix errors from HCP controller removeServiceCAAnnotationAndSecret() #2552 HOSTEDCP-1010 : Set ETCD Storage Size as immutable field and equalised the default size among both api versions #2611 HOSTEDCP-947 : Increases default etcd PV size to 8Gi #2569 HOSTEDCP-926 : Send metric when HO/CPO decide to skip cloud resource deletion #2594 HOSTEDCP-975 : Backport nodepools metrics #2601 Red Hat Trusted App Pipeline update hypershift #2603  
OCPBUGS-13594 : Sync proxy TrustedCA to guest cluster #2556 fix nil deref in DefaultWorkerSecurityGroupID check #2574  
OCPBUGS-13215 : Let the aws endpoint to use the hypershift owned SG #2529 OCPBUGS-13497 : Add internal/external elb tags to subnets #2553 OCPBUGS-13531 : Clean up existing VPC endpoint connections #2554 Stop triggering rollout on labels/taint change #2548  
Fixes HCCO reconcile error for kubevirt csi driver #2538  
Fix kubevirt csi daemonset reconcile loop #2542  
HOSTEDCP-980 : Include HostedClusterDegraded in hypershift_hostedclusters_failure_conditions metric #2525 Bug HOSTEDCP-788: [release-4.13] Configurable SRE MetricsSet #2544  
ACM-5173 [backport 4.13] get pull secret instead of dockerconfigjson from mce credentials #2487  
OCPBUGS-13085 : Account for expectedState == false when capturing hostedClustersWithFailureCondition #2516 OCPBUGS-13076 : Ensure ingress controllers are removed before load balancers #2514 HOSTEDCP-937 : Add new metric to expose hypershift operator info #2499 Fixed assignment to entry in nil map #2510  
OCPBUGS-12786 : fix(hcco): Get OLM CatalogSource images from defined map #2484 add hyperv1.SilenceClusterAlertsLabel to HostedCluster on deletion #2480  
OCPBUGS-12844 : Delete kubeadmin secret when an idp is defined #2491 HOSTEDCP-917 : Add publicAndPrivate <-> Private e2e test #2490 OCPBUGS-12689 : hosted clusters default KAS PDA config should be consistent with OCP #2496 HOSTEDCP-969 : Consolidate labels for metrics #2497 HOSTEDCP-969 : Move metrics #2495 OCPBUGS-12737 : Pass OPENSHIFT_RELEASE_IMAGE env variable to CNO #2472 OCPBUGS-12225 : Add new OCP 4.13 storage admission plugin #2462 OCPBUGS-12198 : remove ACL for aws bucket #2457 kubevirt: Block metadata server egress #2439  
HOSTEDCP-638 : Add latest ocp supported info to -v command for cli and operator #2447 add pull-secret to imagePullSecrets for NTO, CNO, and olm-collect-profiles #2432  
e2e: Cleanup shared OIDC provider on SIGTERM #2448  
OCPBUGS-11842 : allow z-stream upgrade even if CVO Upgradeable is false #2431 Relax MCO API strict decoding #2442  
Enable monitoring for hypershift & HCP namespace #2429  
OCPBUGS-11545 : Pass runAsUser to CNO so it can run its managed services with proper security context #2392 OCPBUGS-10422 : Create new EC2 client for AWS identity provider health check #2402 OCPBUGS-10995 : Honor scheduler profile in HostedCluster configuration #2337 OCPBUGS-11725 : Update HostedCluster oauthCallbackURLTemplate #2409 HOSTEDCP-568 : Update Konnectiviy socks5 proxy for IBM exception #2404 bug OCPBUGS-10422: Preserve false status of ValidAWSIdentityProvider condition #2401  
HOSTEDCP-802 : add cli flag to enable upgrade type #2388 OCPBUGS-11606 : properly reconcile with user specified changes for in proxy configuration #2394 Let install apply to aggregate errors #2375  
Revert “Create a second scheme that always registers prometheusoperatorv1 GVKs #2376  
HOSTEDCP-939 : [release-4.13] Setup shared OIDC provider for e2e clusters #2364 OCPBUGS-10422 : Ensure identity provider health check condition is persisted and remove awsendpoint control plane finalizer if invalid aws creds #2283 HOSTEDCP-850 : Fix nodepool autoscaler logic #2363 HOSTEDCP-806 : Fix ValidAWSKMSConfig condition #2361 OCPBUGS-10867 : Switch NTO metrics auth to certs generated by HCP controller #2331 OCPBUGS-10823 ensure well known public domains do not get proxied on image imports #2353  
OCPBUGS-10645 : Add storage operators perms. to watch HostedControlPlane #2305 SDA-8706 : No more specifying the scrape interval at servicemonitors & podmonitors level #2355 OCPBUGS-11013 : Do not proxy when guest cluster resolution fails #2339 OCPBUGS-11055 : fix external APIServer address selection based on endpointAccess #2349 HOSTEDCP-934 : [release-4.13] Validate PublishingStrategyMapping #2343 HOSTEDCP-900 : Modified AWSPrivateLinkController and AWSEndpointServiceController to respect PausedUntil spec field #2284 HOSTEDCP-903 : Propagate AWSEndpointService conditions #2307 OCPBUGS-10792 : [release-4.13] Create a second scheme that always registers prometheusoperatorv1 GVKs #2312 HOSTEDCP-801 : [release-4.13] Expose external DNS for private cluster endpoints #2313 Update HCP version in capi cluster ref #2266  
OCPBUGS-10504 : Deletion of the VPCEnpoint on conflicting service names #2309 HOSTEDCP-839 : Audit log sidecars for openshift-apiserver and openshift-oauth-apiserver #2296 OCPBUGS-10586 : Use appropriate serving certificate for OAuth #2294 Validate etcd KMS config #2260  
Force controleplane upgrade always #2291  
Disable inplace upgrade e2e tests #2303  
HOSTEDCP-809 : Clone CA key/cert to TLS key/cert #2262 OCPBUGS-8369 : Fix cleanup of volumes on cluster deletion #2252 HOSTEDCP-904 : Add release automation and docs #2236 kms addition for pod identity workflow #2214  
fix(ho): No network validation for IBM Cloud #2225  
feat(HCCO): Block DNS operator delete until Cluster Version updated #2223  
Add configuration for automatic labeling and label commands #2238  
Skip pod restart check for NTO #2239  
cpo: cno: follow image name change in release payload #2230  
Added documentation around supported-versions configmap #2220  
Add comment for BaseDomainPrefix #2219  
Add condition to NodePool indicating whether a security group for it is available #2216  
HOSTEDCP-827 : Add root volume encryption e2e test #2192 fix(hypershift): reduce CAPI rbac access #2173  
Validate Network Input for HostedCluster #2215  
Add labels info #2218  
HOSTEDCP-826 : Customize DNS base domain prefix #2213 ensure reconcilation of apiserver port #2197  
Cleanup default security group only if authorized #2211  
HOSTEDCP-593 : Update the pull secret source for ignition payload #2187 fix(ibmcloud): Explicitly set HCCO controllers #2185  
Adding NTO again to find the issue with data recollection #2152  
cli: Add –cli-root-volume-access-modes #2188  
feat: Add pod gone check to prober + DNS operator leader elect #2155  
HOSTEDCP-833 : Add Golang check for ‘go list’ errors in Makefile #2193 HOSTEDCP-833 : Set kubevirt.io/client-go version to fix ART Issue #2194 add KAS egress network policy #2181  
cpo: kcm: add nfs pv recycler pod template #2183  
Fix kubevirt how-to doc formatting issues #2178  
Update cluster api provider kubevirt dependencies #2157  
fix(cpo): Set restart annotation on multus-admission-controller #2150  
fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac #2141  
Add default NodePool name clarification to docs #2186  
fix(cpo): Reduce CNO access if Calico used as network provider #2159  
add PSA labels to openshift-infra in guest cluster #2180  
Add cli flag to enable root volume encryption #2177  
Update KubeVirt platform how-to documentation #2108  
Filtering data recolection only for aws instances running #2153  
Add PodMonitor for ingress-operator pods in HCP namespaces #2136  
fix regex in registry operator pod monitor #2171  
Add e2e test for hosted cluster behind a proxy #2077  
Skip destroyAWSDefaultSecurityGroup if not AWS #2167  
Give kubevirt csi controller get VMI RBAC #2154  
set default PSA enforce to restricted #2097  
Create default security group for AWS clusters #2146  
AUTH-323 : konnectivity: split away the rootCA from konnectivity trust #2149 Use KAS kubeconfig for PowerVS CCM instead of external kubeconfig #2065  
Add e2e test for secrets encryption using kms #2135  
OSD-15099 : Delaying the creation of servicemonitor and podmonitor resources till the hostedcluster is Completed #2147 Add support for root volume encryption using KMS #2143  
Check creation and deletion timestamps are not nil #2132  
test: skip TestCreateClusterKms on non-AWS platforms #2151  
expose silence alerts metric #2142  
AUTH-323 : pki: split out konnectivity certs from the rootCA #1891 Clarify docs for nodePool.spec.config #2137  
fix(ho): Delete user-data secret for non-AWS platforms #2134  
Revert “Refactored NTO MachineConfig InPlace and Replace E2E Tests” #2145  
Basic immutability for NodePool #2139  
Changes autoscalling replica number when the nodepool replica is not set #2106  
Add external DNS health condition #2130  
Adding supportability for Private HostedCluster to be migrated #2089  
fix openshift-route-controller-manager ServiceMonitor regex #2094  
fix(api): Fix deprecated API conversion #1987  
OpenID add support for groups claim in the config #2116  
fix(cpo): Restart registry operator on annotation #2111  
fix(cpo): Allow KAS profiling disablement #2110  
update to golang 1.19 and 4.13 base image #2095  
Add e2e test for cluster creation with AWS KMS #2093  
Refactoring NTO MachineConfig InPlace and Replace E2E Tests #2051  
Fix CAPA crd generation #2113  
AWS: remove finalizer from deleted awsmachines if lost STS #2109  
Minor fixes to notes on Getting Started and NodePool Upgrades pages #2117  
Add dns docs clarification for private topology #2115  
fix(cpo): Separate RBAC for NTO + CNO #2107  
Set k8s.io/kubernetes dependency to v0.23.3 #2068  
Moving from HC Migration to Disaster Recovery in documentation #1953  
test: skip ovnkube-master in crashing pods check #2103  
bump openshift/api and go1.19 for fmt #2096  
Fixing issue between UpdatingVersion and UpdatingConfig at InPlace Up… #1978  
Add tags and rename cloud instance name suffix #1779  
fix(ibmcloud): Initialize image registry config on creates and bad config #2091  
And 1 elided commits (e.g. from squash or rebase merges) 
Full changelog  
OCPBUGS-33449 : anonymization - externalIP can be nil (#931) (#933) (#935) #931 OCPBUGS-31991 : bump golang.org/x/net version (#927) #927 OCPBUGS-28157 : Add extra check in ids to bypass validations (#905) #905 gather etcd_server_slow metrics (#902) (#909) #902  
OCPBUGS-23962 : adds helm information gather (#868) (#883) #868 OCPBUGS-22958 : adds cluster storageclasses gather (#858) (#875) #858 OCPBUGS-22953 : create Prometheus rules programmatically according the… (#860) #860 OCPBUGS-22914 : remove username & password config options (#859) #859 OCPBUGS-20750 : update dependencies (#840) #840 Add cherry-pick from 4.14 (#848) #848  
OCPBUGS-19476 : update Insights report config logging (#828) #828 OCPBUGS-17661 : workload info gatherer, add external image repo (#816) #816 OCPBUGS-14773 : extend configmap gatherer to get gateway-mode-config (#788) (#791) #788 [release-4.13 ]OCPBUGS-15031: fix the config serialization & add test (#794) (#796) #794  
OCPBUGS-14318 : gather PDBs only from openshift namespaces (#786) #786 OCPBUGS-12618 : update golang.org/x/net version (#775) #775 OCPBUGS-8243 : Collect info about monitoring pods pv (#753) #753 OCPBUGS-11008 : update the cluster transfer interval to 12h (#762) #762 OCPBUGS-10239 : service_accounts.go Marshal fix (#750) #750 test(clusterconfig): add unit test for silenced_alerts.go and rename it to gather_silenced_alerts.go (#728) #728  
test(clusterconfig): add unit test for ingresses.go and rename it to gather_cluster_ingress.go  (#729) #729  
test(oauth): add unit test for oauth.go and rename it to gather_cluster_oauth.go  (#738) #738  
gather logs - update “FilterLogFromScanner” function and add some tests (#735) #735  
Add unit tests to openshift sdn controller logs gatherer (#733) #733  
OCPBUGS-6731 : Anonymize env vars from containers: HTTP_PROXY, HTTPS_PROXY (#723) #723 OCPBUGS-6832 : feat(recent_metrics) adds openshift_apps_deploymentconfigs_strategy_total (#726) #726 OCPBUGS-6781 : Create gatherer for gathering machines. (#725) #725 chore(docs): update gathered documentation (#704) #704  
arch docs update - explain disabled=true status more (#721) #721  
operators gatherer - handle ingresscontroller relatedObject & simplify (#714) #714  
Revert “OCPBUGS-5347: additional fix (#716)” (#717) #716  
OCPBUGS-5347 : additional fix (#716) #716 OCPBUGS-5347 : do not periodically update Available clusteroperator co… (#709) #709 Update operator name in the OWNERS file (#712) #712  
OCPBUGS-5257 do not get disabled rules (#706) #706  
refactor(webhookconfigurations): remove asset method and split tests (#702) #702  
refactor(scheduler): move GatherSchedulerLogs to its own file (#701) #701  
chore(golanglint-ci) disabling some linters for *_test.go files (#703) #703  
Update OpenShift versions & new Download time field (#705) #705  
Updating ose-insights-operator images to be consistent with ART (#700) #700  
Change of kube-system namespace configmap location according to docs.  (#694) #694  
OCPBUGS-3377 : fix: storage/ceph path structure (#691) #691 PR template preview and changelog update (#692) #692  
Use cgroups memory usage data in the archive metadata (#693) #693  
Full changelog  
OCPBUGS-29725 : Always add ignition to set hostname on /etc/hostname #111 OCPBUGS-19006 : backport hostname fixes #89 Switch to udevadm command install instead of package [OKD] #83  
“Bug OCPBUGS-15777: Switch to udevadm command install instead of package” #81  
OCPBUGS-8380 : Adding dep on python3-werkzeug >= 2.0.3-4 #70 OCPBUGS-4899 : make coreos-installer output available in the logs #65 Updating ironic-agent images to be consistent with ART #64  
Full changelog  
OCPBUGS-14315 : Flush addresses on provisioning interface with global scope only #36 Updating ironic-static-ip-manager images to be consistent with ART #33  
Full changelog  
OCPBUGS-6236 : Updating openshift-enterprise-egress-router images to be consistent with ART #121 OCPBUGS-10519 : Revert “bump RHEL8 egress-dns-proxy image to haproxy26” #135 Add jupierce as approver / remove Clayton #127  
rhel9 base image: Fix build failure #126  
Dockerfile: add RHEL9 base image dockerfile #124  
bump RHEL8 egress-dns-proxy image to haproxy26 #125  
Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART #122  
Updating ose-egress-http-proxy images to be consistent with ART #120  
Updating openshift-enterprise-egress-dns-proxy images to be consistent with ART #123  
Updating openshift-enterprise-base images to be consistent with ART #119  
Full changelog  
OCPBUGS-20778 : bump x/net to v0.17.0 #102 Bump openshift/kube-state-metrics to v2.8.1 #90  
OCPBUGS-6320 : Merge upstream/release-2.8 #89 Updating kube-state-metrics images to be consistent with ART #88  
OCPBUGS-4275 : Update github.com/prometheus/exporter-toolkit #87 Bump openshift/kube-state-metrics to v2.7.0 #82  
OCPBUGS-4089 : cherry-pick, do not expose ingress path metric when service is nil #81 OCPBUGS-3924 : cherry-pick, autoscaling/v2beta2 HorizontalPodAutoscaler is deprecated in v1.23+ #80 Full changelog  
Updates the component owner field to match the new categories #17  
Updating ose-kubevirt-cloud-controller-manager images to be consistent with ART #16  
Full changelog  
“OCPBUGS-29791: [release-4.13] Address CVE-2024-1725: Restrict access to infrastructure PVCs by requiring matching infraClusterLabels on tenant PVCs” #35  
Auto sync upstream 2023 02 12 09 #19  
Updating ose-kubevirt-csi-driver-rhel8 images to be consistent with ART #18  
Upstream Sync Oct 31st #16  
Full changelog  
“OCPBUGS-19927: libvirt: Don’t force use of virtio console” #268  
Update vendoring master #251  
Updating ose-libvirt-machine-controllers images to be consistent with ART #243  
Fix go fmt and update controller image tag #242  
Full changelog  
OCPBUGS-32015 : Fix zone tag value reconciliation for vSphere machines #1225 OCPBUGS-31994 : Update x/net to v0.25.0 #1245 NO-JIRA: [release-4.13] Fix data race conditions in unit tests #1254  
OCPBUGS-25165 : Add Snyk file to exclude vendor directory on scan #1194 OCPBUGS-24277 : Update reference URL #1188 OCPBUGS-24277 : Use docs URL instead of KCS article #1181 OCPBUGS-21513 : Bump golang.org/x/net to v0.18.0 #1175 OCPBUGS-12626 : Update golang.org/x/net dependency #1148 OCPBUGS-10661 : Fix empty component version #1130 OCPBUGS-6063 : Add missed permission for a pod deletion on vsphere platform #1121 Add Machine webhook to validate the new fields of NutanixMachineProviderConfig #1117  
OCPBUGS-6063 : Forcefully delete unevicted pods within vSphere machine deletion procedure #1118 : Update tooling for MAO #1100  
OCPCLOUD-1852 : Bump k8s dependencies to 1.26; go 1.19 #1115 OCPBUGS-3275 : Update machinehealthcheck dropping log from Error to Warning #1116 Metal3 remediation backport #1075  
OCPBUGS-6063 : Block machine deletion if extra disks are attached #1114 Add webhook validation for ConfidentialCompute on GCP #1112  
Remove the openstack-machine-controllers image #1111  
MGMT-12838 : add webook validation for shieldedInstanceConfig on GCP #1102 : Short circuit misfiring #1107  
OCPCLOUD-1801 : Port to ginkgo v2 #1099 Add warning for unknown fields when unmarshaling the provider spec #1106  
OCPBUGS-5018 : machine-api-termination-handler: run DaemonSet only on Linux #1101 OCPBUGS-4566 : Append annotations from machine template spec to the node #1096 Updating ose-machine-api-operator images to be consistent with ART #1095  
OCPCLOUD-1769 : Make machine phases public consts #1088 : Set default container for machine-api-operator #1092  
Revert custom role #1097  
Add permissions for regionBackendServices #1094  
: GCP Credentials req. using new API field permissions #1087  
Fix lint issues reported by golangci-lint #1069  
Increase timeout for machineset tests #1091  
Use StringDeref from k8s.io/utils instead of custrom implementation #1090  
docs: Add a reference to machine-config-server #1089  
Allow to use machine.openshift.io API in provider specs #1085  
Bug 2095274 : vSphere, fix network existence check for network devices during machine creation #1082 Full changelog  
OCPBUGS-36782 : daemon: Handle correctly OS Version for 4.1 and 4.2 bootimages #4464 OCPBUGS-32208 : Run resolv-prepender entirely async #4314 OCPBUGS-33327 : make verify should use MCO’s kube version #4352 OCPBUGS-29721 : Add existing kubeletconfig/ctrcfg mc-name-suffix annotation #4206 OCPBUGS-30285 : set nodeStatusReportFrequency #4243 OCPBUGS-28740 : crio: drop automatic image cleanup on upgrades #4154 OCPBUGS-29151 : fix nodeStatusUpdateFrequency #4170 OCPBUGS-24661 : daemon: Add support for new nmstate logic #4036 OCPBUGS-27816 : use *resource.Quantity to not automatically set 0 #4141 OCPBUGS-22272 , OCPBUGS-27172 : kubelet: fix kubelet labels #4120 OCPBUGS-27096 : Azure Run ovs-configuration.service before dnsmasq.service #4115 OCPBUGS-19658 : After dual-stack conversion reconcile IPFamilies #3935 OCPBUGS-23468 : support icsp and idms objects #4027 OCPBUGS-23536 : Introduce kubelet-dependencies.target and firstboot-osupdate.target #4043 OCPBUGS-21052 : Update library-go and kube deps to latest version #4011 OCPBUGS-22205 : Consider ingress VIPs when selecting node IP #3991 OCPBUGS-18031 : on-prem: run resolv-prepender on NM reapply event #3880 OCPBUGS-22412 : bootstrap_test: always set APIVersion and Kind for DNS #4002 OCPBUGS-21721 : install/0000_90_machine-config-operator_90_deletion: Drop this file #3983 OCPBUGS-20333 : resolv-prepender: avoid pulling baremetalRuntimeCfgImage again if it … #3962 OCPBUGS-18803 : Soften grep pattern for ingress default router #3908 OCPBUGS-19958 : [release-4.13] Backport logspam PRs #3950 OCPBUGS-19675 : daemon: always use podman cp to copy extensions container content #3938 OCPBUGS-19400 : install: Recreate and delayed default ServiceAccount deletion #3923 OCPBUGS-19509 : Ignore invoking nbctl calls if its SDN #3929 OCPBUGS-19414 : The kubeconfig copied on to each node has 644 permissions #3924 OCPBUGS-18159 : Ensure azure-routes hack for internalLB hairpin traffic works for SGW #3904 OCPBUGS-16218 : Prevent NM from unsetting the hostname #3805 OCPBUGS-17997 : SSHkeys fails to write on upgrade to 4.13.rc3 #3879 OCPBUGS-18076 : daemon: create /etc/systemd/network directory on node #3888 OCPBUGS-17769 : Agent-based install process the container machine-config-controller will be oom #3868 OKD-174 : Dockerfile: OKD: Reenable extensions image on SCOS #3845 OCPBUGS-17430 : The machine-config-controller pod restart in SNO+1 causing daemonsets to restart #3841 OCPBUGS-17163 : daemon: Always replace binary #3833 OCPBUGS-16888 : daemon: Make binary writing idempotent #3826 OCPBUGS-16888 : daemon: no need to reexec when target and source rhel version is same #3824 OCPBUGS-16622 : daemon: Copy matching binary to host, re-exec with it #3812 OCPNODE-1717 : Update config node spec while explicitly updating the cgroups mode #3793 4.13: Revert rhel9 binaries builds #3802  
OCPBUGS-14459 : daemon: Remove noisy log message #3723 OCPBUGS-15580 : 4.13: Dockerfile: update rhel7 nmstate pin #3764 OCPBUGS-15463 : Minor fix to support protectKernelDefaults field in Kubelet Config #3757 4.13: Dockerfile: use proper rhel9 image #3771  
4.13: use rhel9 builder for daemon binary #3760  
OCPBUGS-13311 : daemon: write certs in firstboot-complete path #3702 OCPBUGS-13404 , OCPBUGS-14298 : Dockerfile: pin to nmstate-2.2.9-6.rhaos4.13.el8 #3716 OCPBUGS-14850 : Allow userfaultfd syscall to be used by unprivileged users #3743 OCPBUGS-13974 : MCO-496: Support ignition versions 3.3 + 3.4 but keep version 3.2 as default #3714 OCPBUGS-13138 : daemon: Don’t traverse /run/ostree/auth.json symlink #3697 OCPBUGS-11302 : Fix regex dot in coredns config file #3659 OCPBUGS-12784 , OCPBUGS-4476 : keepalived/ingress: change healthcheck script #3687 OCPBUGS-12919 : The MCD has a non-functional pivot command that should be removed #3690 OCPBUGS-10966 : configure-ovs: support UUID in vlan.parent #3639 OCPBUGS-13312 : daemon: event only on actual OS updates #3703 OCPBUGS-11598 : Do not trigger openshift-azure-routes/openshift-alibaba-routes service based on file existence #3681 OCPBUGS-11146 : update cloud provider flags on vSphere for storage options #3655 OCPBUGS-11778 : Fixing forcedns dispatcher script permission issue for assisted sno rhel9 upgrade #3678 OCPBUGS-11051 : Splitting NetworkManager-onprem.conf.yaml to 2 files: #3642 OCPBUGS-10946 : Fix kubelet.service node-ip for v6-primary dual-stack #3638 OCPBUGS-11507 : Accomodate ART limitation in parsing [[]] bash #3671 OCPBUGS-11507 : Persist static IP addressed NIC names from rhel8 #3664 OCPBUGS-11289 : daemon: write certificate in OnceFrom and HyperShift #3658 OCPBUGS-11040 : remove container runtime flag #3641 OCPBUGS-11068 : Enable base nodeip-configuration for vsphere upi #3644 OCPBUGS-8317 : Wrap podman commands in a while loop #3605 OCPBUGS-10367 : MCO-503: daemon: have a special path to sync in certs #3612 OCPBUGS-10427 : daemon: Drop duplicate --authfile used in run #3616 OCPBUGS-10220 : Remove hard requirement for the afterburn from early-running aws-related services #3610 COS-1926 , MCO-116 , OCPBUGS-8703 , OCPBUGS-9951 : rhel coreos 9 4.13 katamari #3604 OCPBUGS-8702 : Revert “daemon: Temporarily copy auth file with more open perms on FCOS” #3594 OCPBUGS-8445 : Default the cgroup version to “v1” via base template controller #3587 OCPBUGS-8703 : Backport switchkernel 4.13 #3595 OPNET-208 : Prefer ipv6 on v6-primary dual stack deployments #3565 OCPBUGS-7719 : Add back cleanupDuplicateMC #3559 OCPBUGS-7903 : Pool degraded with error: rpm-ostree kargs: signal: terminated #3572 Fixing platform path order as platform specific path should be the last #3574  
MCO-417 : MCO-418: MCD watches/create/update password with MachineConfig #3539 Regenerate controllerconfig.crd.yaml #3567  
OCPBUGS-7743 : Adding dnsmasq config for sno #3551 WRKLDS-705 : Bump openshift/api to enable DynamicResourceAllocation through TechPreviewNoUpgrade #3568 OCPBUGS-7909 : Fix permissions on resolv.conf #3570 OCPBUGS-7896 : MCO should not add keepalived pod manifests in case of VSPHERE UPI #3569 OCPNODE-1501 : add protectKernelDefaults to kubelet config #3556 OPNET-197 : Remove node-ip from kubelet for dual-stack vSphere #3518 OSASINFRA-3091 : External LB support for on-prem platforms #3519 OCPBUGS-6682 : Switch from ifconfig to iproute2 #3524 OCPBUGS-1565 : Prevent possible split-brain scenario with keepalived unicast #3342 Fix typo in ctrcfg,kcfg docs #3547  
OPNET-133 : Enabling remote worker feature only for baremetal platform #3540 OCPBUGS-7207 : configure-ovs: fix mtu-migration cleanup #3545 OCPBUGS-630 : controller: default overwrite to true for files #3525 Bug 2027000 : The user is ignored when we create a new file using a MachineConfig #3541 OCPNODE-1416 : CGroupsV2 feature GA in MCO #3520 Add doc for IDMS and ITMS CRDs #3530  
OCPBUGS-5497 : MCDRebootError alarm disappears after 15 minutes #3507 OCPBUGS-6945 : Fixes node OS detection #3529 OCPBUGS-5888 : Don’t switch to the “live” certificate bundle until after first ControllerConfig is generated #3513 Bug 2104978 : fix degraded pool state message #3488 OCPBUGS-5520 : MCDPivotError alert fires due temporary transient failures #3523 Preserve logs from Podman executions #3516  
daemon: Add some comments on the firstboot reboot sleep #3533  
OCPBUGS-3612 : configure-ovs: optionally generate configuration in /run #3467 OCPBUGS-3909 : Don’t validate contents and mode for masked units #3437 OCPBUGS-3988 : haproxy - use curl for validation #3512 OCPBUGS-6213 : Update MCO images to be consistent with ART #3514 OCPBUGS-6004 : Adding network type parameter to nodeip-configuration service #3491 OCPBUGS-5188 : MCCDrainErr should reference the affected node #3477 OCPBUGS-6092 : Improvements for configure-ovs.sh #3509 ctrcfg: update CRD to always allow crun #3508  
OCPCLOUD-1818 : Bump library-go to move vSphere to external CCM #3484 OCPBUGS-4049 : Only check image type if we are sure there is work that needs to be done #3464 OCPNODE-1330 : Set the CGroups version explicitly to “v1” #3486 Add CRD ImageDigestMirrorSet,ImageTagMirrorSet #3037  
Bug 2113973 : Avoid ‘too restrictive’ SCC problems by being more explicit #3502 OCPBUGS-6018 : controller: don’t render new MC until base MCs update #3501 OCPBUGS-904 : Alerts from MCO are missing namespace #3498 OCPBUGS-5379 : There are not enough logs in case “oc extract” is stuck in mco first boot #3493 MCO-456 : Fix e2e test jobs #3492 OCPBUGS-5872 : Wrap podman commands in a while loop #3481 OCPBUGS-5696 : remove goutils from dependency tree #3480 Add mkowalsk as a bare metal reviewer and approver #3482  
install/0000_90_machine-config-operator_01_prometheus-rules: Use labels for MCC logs #3470  
fix unit test exit code propagation #3476  
OCPBUGS-4769 : daemon: Explicitly pull image before running #3471 OCPBUGS-4521 : kubelet client certificate verification ca bundle should match kube-apiserver #3458 Bump openshift/api and update CSIMigration* feature gates #3469  
OCPBUGS-5001 : install/0000_90_machine-config-operator_01_prometheus-rules: Fix MachineConfigControllerPausedPoolKubeletCA runbook URIs #3462 move envtest helpers into framework package for easier reuse #3428  
OCPBUGS-2248 : [alicloud] provider ID not being set for kubelet #3449 MCO-420 : Migrate drain alert to drain controller #3424 Updating openshift-proxy-pull-test images to be consistent with ART #3444  
OCPBUGS-4101 : Do not allow empty system reserved values #3439 Bug 1853264 : Fix unbound cardinality for MCDRebootErr and MCDPivotErr #3406 MCO-397 : Add repo doc for using “Layering Phase 0”, detail some of the tradeoffs/consequences/questions #3426 OCPBUGS-4656 : vsphere: check that /etc/hostname is not empty #3451 OCPBUGS-1761 : Imageinspect takes type of error into account, drop podman inspect fallback #3413 Add templates for required sysctls max_map_count and arp_announce #3440  
OPNET-133 : Support remote worker in onprem installations #3431 OCPBUGS-4039 : NM resolv prepender: correct permissions for systemd resolved config #3432 OCPBUGS-4039 : NM resolve prepender: remove extra quotes in OKD flow #3430 OCPBUGS-2921 : configure-ovs: copy IP method and warn about low MTU #3411 daemon: Be very loud about failures of ostree-finalize-staged.service #3404  
OCPBUGS-1491 : daemon: gate done state on uncordon completion #3399 OCPBUGS-3508 : Don’t make https call to http endpoint #3416 OCPBUGS-1577 : On-prem: Ensure resolv-prepender respects NM dispatcher timeout #3394 Cleanup BM owner aliases #3405  
OCPBUGS-2935 : daemon: Stop setting I/O scheduler to bfq #3415 OCPBUGS-3621 : Revert “Substitute skopeo inspect for imageInspect/podman” #3412 Unpin all pinned dependencies #3403  
OCPBUGS-2988 : Mount /run/nodeip-configuration into keepalived containers #3384 OCPBUGS-1761 : Substitute skopeo inspect for imageInspect/podman, drop podman inspect fallback #3390 Bug 2100181 : baremetal: clean state generated by NM when run by dracut #3208 Full changelog  
Force updating rhcos image to version 413.92.202303190222-0 #27  
Updating ose-machine-os-images images to be consistent with ART #25  
Full changelog  
OCPBUGS-28020 : Fix SAST scan issues for multus-cni-container [4.13] #224 OCPBUGS-21076 : Update go.mod for CVE-2023-39325 [Release-4.13] #195 Add rhel9 binary for multus #169  
OCPBUGS-8398 : Multus entrypoint should regenerate kubeconfig if secret changes [backport 4.13] #154 OCPBUGS-13759 : Bump golang.org/x/net from 0.1.0 to 0.7.0 (#1039) #161 OCPBUGS-13814 : Fix multus to support CNI plugin which does not create interface [backport 4.13] #163 Multus 4.0 upstream sync, strike back #146  
Updating multus-cni images to be consistent with ART #142  
Full changelog  
Add rhel9 binary #37  
Dev/sync upstream #30  
Updating ose-multus-route-override-cni images to be consistent with ART #28  
Full changelog  
OCPBUGS-19928 : [release-4.13] Add csi-proxy logs collection in must-gather for Windows nodes #383 Revert “OCPNODE-1499: Add CMA gather script” #350  
OCPNODE-1499 : Add CMA gather script #348 WINC-977 : Update kube-proxy log file name #347 Updating ose-must-gather images to be consistent with ART #343  
WINC-958 : Collect WICD logs from Windows nodes #346 report correct version when multiple images invoked #327  
Added hostsubnets to group_resources in gather_network_logs script #342  
Remove no longer needed gather_admission_webhooks script #325  
Added PodNetworkConnectivityCheck gather script #333  
Full changelog  
Updating ose-network-metrics-daemon images to be consistent with ART #62  
And 5 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Dockerfile: move to RHEL9 base image #83  
Updating ose-network-tools images to be consistent with ART #75  
OCPBUGS-7106 : Get OVN-Kubernetes leader identity from the lease #74 Rename subcomponent to ensure bugs are assigned correctly #73  
Updating ose-network-tools images to be consistent with ART #72  
Full changelog  
OCPBUGS-24563 : Reduce metrics cardinality #59 OCPBUGS-25459 : Fix CI by running tests natively by default #60 OCPBUGS-10493 : Nutanix Hostname of the VM is not set when using DHCP network config #44 Support categories and project fields of NutanixMachineProviderConfig #38  
: Port to ginkgo v2 #41  
Update OWNERS #39  
: Update k8s packages to 1.26 #40  
Update the component in OWNERS file #36  
Update OWNERS #34  
Updating ose-nutanix-machine-controllers images to be consistent with ART #33  
Full changelog  
Bump version to include v5.11.0 of go-git (#823) #823  
OCPBUGS-385 : Capability to override default channel (#749) (#791) #749 OCPBUGS-19429 : Fix cross EUS channel upgrade path calculation (#775) #775 OCPBUGS-21460 : Fix CVE-2023-44487 and CVE-2023-39325 (#714) #714 Fix OCPBUGS-17546: pod catalogsource generated by oc-mirror will crashloopBackOff randomly (#700) #700  
Fix OCPBUGS-14402 (#675) #675  
OCPBUGS-18556 : operator catalogs from oc-mirror fail to deploy because of invalid caches (#691) #691 OCPBUGS-18106 : manual cherrypick (#684) #684 OCPBUGS-17998 : fix: ICSP with incorrect mirror path (#685) #685 OCPBUGS-17453 : Fix “ OCI index found, but accept header does not support OCI indexes (#677) #677 OCPBUGS-16372 : A variety of changes needed for correct operation with multi… (#661) #661 OCPBUGS-13871 : fix: changes on help info content (#654) #654 Fix OCPBUGS-11840: ParseImageReference supports cases where both tag and digest are present in a ref (#637) #637  
Removes Ross and adds Jeremy in the OWNER file (#645) #645  
OCPBUGS-13591 , OCPBUGS-13592 : Limit the nested repository path while mirroring the images (#635) #635 CFE-658 : Implementation of filtering by channel for OCI catalog (#628) #628 Deprecate –use-oci-feature in favor of –include-local-oci-catalogs (#621) #621  
Update OWNERS for CFE team (#625) #625  
Revert adding ‘–cache-dir /tmp/cache’ to catalog images (#616) #616  
OCPBUGS-12259 : fix: skips bundles with ‘skips’ field on head bundle (#617) #617 fix: work around OCPBUGS-6741 by explicitly setting –cache-dir (#606) #606  
OCPBUGS-11908 : Fix (#607) #607 OCPBUGS-10348 fix: changes to include the registry path (#602) #602  
Fix OCPBUGS-8156: Upgrade to containerd v1.6.18 (#596) #596  
fix extract dir for cincinnati-graph-data container (#584) #584  
Bugfix check imagesetconfig for valid oci protocol when oci feature is used (#595) #595  
Remove “unsupported” wording from info on console (#594) #594  
Bugfix for destination registry nested paths length (#583) #583  
Fix OCPBUGS-5168: Upgrade helm.sh/helm/v3 to v3.11.2 fixing CVE-2022-23526 and CVE-2022-23525 (#592) #592  
OCPBUGS-10051 : fix: remove catalog reference from ImageContentSourcePolicy.yaml (#587) #587 OCPBUGS-8216 : fix: remove an unecessary error message (#581) #581 docs: add information about unsupported scenario (#578) #578  
Updating oc-mirror-plugin images to be consistent with ART (#570) #570  
Fix usage of registries.conf for OCI feature (#569) #569  
CFE-739 : Add skip pruning flag and logic (#567) #567 CFE-749 : add e2e test for oci catalog feature to include release and additiona… (#562) #562 CFE-764 : Introduce v1alpha2.Operator.TargetCatalog  (#565) #565 docs: adds clarification to imageset reference and examples (#555) #555  
CFE-768 : Update to allow for incremental and pruning for oci feature (#564) #564 use new cincinnati endpoint to download tarball (#552) #552  
feat: OCI catalog filtering implementation (#559) #559  
CFE-761 : Improve user experience of oc-mirror with the OCI FBC feature (#557) #557 Fix typo in diff.go (#556) #556  
Upgrade base image for oc-mirror to 4.13 (#560) #560  
CFE-743 : Update of golang version from 1.18.6 to 1.19.5 (#551) #551 Fix flaky test Valid/OperatorTypeWithRelatedImgs (#549) #549  
OCPBUGS-5891 : fix: adds logic that searches for the correct name when using a heads… (#547) #547 New reviewers: Luigi Mario Zuccarelli, Sherine Khoury (#548) #548  
CFE-657 : Update to include release and additionalImages  with the new FBC feature (#535) #535 OCPBUGS-3414 : Fix: fixes issues encountered by QE (#536) #536 OCPBUGS-3414 : fix: Missing ‘ImageContentSourcePolicy’ and ‘CatalogSou… (#533) #533 OCPBUGS-4516 : fix: oc-mirror does not work as expected relative path for OCI format copy (#531) #531 OCPBUGS-4365 : Fix cases where namespace or subnamespace may be empty (#529) #529 OCPBUGS-2851 : fix (#525) #525 Full changelog  
: OCPBUGS-21449: Enable HTTP/2 CVE mitigation #398  
OCPBUGS-6448 : Bump k8s 1.26.2 proof #361 OCPBUGS-8701 : Clear metadata.namespace on projects before write. #357 Bump 1.26 proof #354  
OCPBUGS-7689 : Fix a project validation error due to empty string value #352 OCPBUGS-6197 : Updating ose-openshift-apiserver images to be consistent with ART #338 IR-270 : support creation of image objects representing manifest lists #349 API-1492 : Bump kube-openapi for openapi-gen determinism fix. #348 IR-269 : Support multi-arch images in ImageStreamLayers #309 IR-269 : Bump openshift/api #344 pkg/image: add myself to OWNERS #342  
IR-270 : handle image metadata for manifest lists #340 IR-326 : support get of image stream images of a manifest list #341 Use remaining route/v1 defaulters from library-go. #334  
OCPBUGS-501 : fix printer panic #333 Drop dependency on internal types from route default test. #332  
move the deployer role and binding to the ocm-o #331  
Use shared route validation and defaulting from library-go. #328  
IR-259 : changing image stream importMode increments its generation #325 Full changelog  
OCPBUGS-11091 : mount build.Spec.Source.ConfigMaps for custom builder images #257 Add explicit license #248  
BUILD-407 : Revert “remove tech preview feature gate for build csi volumes” #251 BUILD-407 : remove tech preview feature gate for build csi volumes #250 WRKLDS-594 : bump(k8s): 1.26.1 #249 Updating ose-openshift-controller-manager images to be consistent with ART #247  
update the deploy pod to provide failure in pod #246  
Full changelog  
Fix swapped CPU socket and thread mapping #172  
Updating ose-ovirt-machine-controllers images to be consistent with ART #171  
Full changelog  
OCPBUGS-33638 : Fix CVE2023-45288 by bumping x/net to v0.24.0 -4.13 #82 OCPBUGS-24728 : synk: ignore vendor dir #61 OCPBUGS-21089 : CVE-2023-39325 - Update net dependencies - 4.13 #52 Update OWNERS add yussufsh #54  
Updated golang.org/x/net/html dependency. #44  
Openshiftrelease 4.13 #41  
OCPBUGS-12950 : Updated net dependencies #31 OCPBUGS-6454 : update net deps #23 Update OWNERS to Multi-Arch component #22  
Rebase to upstream v8 #21  
Updating ose-powervs-block-csi-driver images to be consistent with ART #19  
Rebase with upstream kubernetes-sigs/ibm-powervs-block-csi-driver. #20  
Rebase with upstream kubernetes-sigs/ibm-powervs-block-csi-driver. #16  
Full changelog  
OCPBUGS-25716 : snyk: ignore vendor dir #61 OCPBUGS-21186 : CVE-2023-39325 - Update net dependencies - 4.13 #41 Update OWNERS add yussufsh #45  
OCPBUGS-16250 : Add management workloads annotations #34 OCPBUGS-12656 : Updated net dependencies #27 Adding storage team to OWNERS so they can perform lib-go updates. #22  
add proxy to node-update-controller #18  
OCPBUGS-6455 : updating net deps #15 Update OWNERS to Multi-Arch component #14  
Updating ose-powervs-block-csi-driver-operator images to be consistent with ART #12  
Updated operator folder and deployment name in the readme file #11  
Full changelog  
Bump openshift/prom-label-proxy to v0.6.0 #352  
Updating prom-label-proxy images to be consistent with ART #351  
Full changelog  
OCPBUGS-26423 : Add Exemplars support for all time series #191 OCPBUGS-21240 : update golang.org/x/net to v0.17.0 [4.13] #174 OCPBUGS-12508 : go.mod: update golang.org/x/net to v0.7.0 #161 Bump openshift/prometheus to v2.42.0 #154  
Bump openshift/prometheus to v2.41.0 #153  
Bump openshift/prometheus to v2.40.7 #152  
Bump openshift/prometheus to v2.40.6 #151  
Bump openshift/prometheus to v2.40.5 #150  
OCPBUGS-4273 : Bump openshift/prometheus to v2.40.4 #148 OCPBUGS-2873 : fix certificate reloads after rotation #145 Updating golang-github-prometheus-prometheus images to be consistent with ART #147  
Full changelog  
OCPBUGS-21043 : Bump golang.org/x/net to v0.17.0 #81 Bump openshift/prometheus-alertmanager to v0.25.0 #67  
Updating golang-github-prometheus-alertmanager images to be consistent with ART #65  
Full changelog  
OCPBUGS-20861 : Bump golang.org/x/net to v0.17.0 #248 OCPBUGS-12672 : update golang.org/x/net #237 OCPBUGS-6055 : [bot] Bump openshift/prometheus-operator to v0.63.0 #216 Bump openshift/prometheus-operator to v0.62.0 #215  
Updating prometheus-operator-admission-webhook images to be consistent with ART #214  
Updating prometheus-config-reloader images to be consistent with ART #213  
Updating prometheus-operator images to be consistent with ART #212  
OCPBUGS-2778 : [bot] Bump openshift/prometheus-operator to v0.61.1 #209 Full changelog  
OCPBUGS-21143 : upgrade golang.org/x/net to v0.17.0 #135 OCPBUGS-14274 : Upgrade golang.org/x/net to v0.10.0 to fix the CVE #127 OCPBUGS-6311 : addressing vulnerability GO-2022-1144 #119 Bump openshift/node_exporter to v1.5.0 #118  
Updating golang-github-prometheus-node_exporter images to be consistent with ART #117  
build(deps): bump github.com/prometheus/client_model from 0.2.0 to 0.3.0 #114  
build(deps): bump github.com/jsimonetti/rtnetlink from 1.2.2 to 1.2.3 #115  
Full changelog  
OCPBUGS-34829 : fix issuer check during JWT authentication 4.13 #540 OCPBUGS-21327 : [release-4.13]: Bump golang.org/x/net to v0.17.0 #485 OCPBUGS-14418 : Update golang.org/x/net to lastest version #463 OCPBUGS-6962 : Add ‘agent-installer’ value to ‘install_type’ label #447 OCPBUGS-6477 : Upgrade go version and dependencies #448 server: Ensure logging level is flag is respected #449  
Add ‘hypershift’ value to ‘install_type’ label #437  
Replace ‘hypershift-unknown’ with ‘unknown’ #438  
Fix receive whitelist logic #445  
Bump snappy version and add debug logs #444  
Add metrics for telemeter receive path #443  
Log faulty tokens #441  
pkg/receive: Sanitize metric labels #440  
Updating telemeter images to be consistent with ART #439  
Add Daniel Mellado to OWNERS #436  
Add rules for cluster vCPU-hours #435  
Full changelog  
OCPBUGS-36501 : test/extended: skip etcd leader change check on hypershift #28922 OCPBUGS-35857 : Use centos7 tag instead of latest for cmd images tests #28895 OCPBUGS-33985 : Provide SCC access via RBAC #28835 AUTH-443 : Add oauth-server redirect URI validation e2e tests #28396 OCPBUGS-19378 : [4.13] backport etcd restore tests #28267 Bug OCPBUGS-17469: Correct condition for rejecting connection #28151  
OCPBUGS-20361 : Update image stream test to create a manifest list image by default #28318 OCPBUGS-16241 : Update permission to incl. watch for helmchartrepositories for console users #28054 OCPBUGS-16164 : allow cluster-config-operator to manage featuregate upgrade block #28050 OCPBUGS-15892 : remove references to registry.centos.org #28031 OCPBUGS-15746 : Skip CCM upgradable condition on AlibabaCloud #28025 OCPBUGS-7762 : Bump with latest openshift/kubernetes at 4.13 #27973 OCPBUGS-5029 : [release-4.13] OpenStack: Restore in-tree cinder provisioner tests #27827 OCPBUGS-14342 : Increase timeout in sysctl allowlist test #27956 OCPBUGS-13840 : Add missing error check in sysctl allowlist test #27929 OCPBUGS-14127 : Move from registry.centos.org to quay.io #27948 OCPBUGS-12700 : update-etcd-scaling-test #27892 CCO-367 : Allow CCO to be Upgradeable=False when credentialsMode=Manual #27895 OCPBUGS-11449 : [release-4.13] Allow cluster daemonsets to use maxSurge #27859 OCPBUGS-12878 : [release-4.13] Add (optional) dual-stack tests to the CNI certification test suite #27877 OCPBUGS-12271 : test/extended: cpu-partitioning: skip cluster infrastructure for Hypershift #27885 Revert “TRT-889: Temp flake all azure disruption” #27870  
OCPBUGS-11307 : Add test for Egress Firewall node selector #27845 add specific test for failing cgroups path #27855  
OCPBUGS-11335 : fix: add namespace annotation helper for egress cni test #27848 OCPBUGS-11315 : Increasing limits for Nodes OSUpdateStaged time test #27847 OCPBUGS-11295 : e2e: Config v1 client shim for static configuration manifests with read-only operations #27840 OCPBUGS-11146 : DisableSC test should ignore in-tree storage classes #27831 OCPBUGS-10968 : fix: add poll to get deployment status and avoid false positive #27825 4.13 disruption/alert data update #27813  
OCPBUGS-10662 : Add cpu partitioning tests #27812 OCPBUGS-8488 : Realtime Kernel Tests #27778 TRT-910 : Temporarily flake ALL P99 disruption tests in 4.13 #27810 OCPBUGS-9913 : add test for UnhealthyPodEvictionPolicy for PDBs #27785 OCPBUGS-8412 : Bump(openshift/kubernetes): to get fix for resizing flake #27792 OCPBUGS-9915 : Temp flake all azure disruption #27786 OCPBUGS-8742 : Revert “Switch to readyz path for health probes on Azure” #27784 OCPBUGS-8401 : Bump to 1.26.2 #27769 OSASINFRA-3109 : networking: add a test for control plane LB #27748 Add additional comments with findings from k8s 1.26 bump #27728  
OCPBUGS-8092 : mark volume expansion test as Flaky #27767 Revert “Add vlan/macvlan/ipvlan incontainer master tests” #27766  
OCPBUGS-7519 : Revert Skip nfs tests temporarilly #27762 TRT-800 : Collect variant data for risk analysis #27731 Add tap plugin test #27737  
Port alert backstop test to invariant, allow running alert/disruption invariants locally for developers #27724  
Add vlan/macvlan/ipvlan incontainer master tests #27700  
STOR-1077 : promote CSIInlineVolumeAdmission feature gate to GA #27713 move disruption locators to monitorapi #27760  
Switch to readyz path for health probes on Azure #27753  
Fix defunct owners file in test/extended/util/annotate #27750  
OCPBUGS-7833 : Rework no optional capabilities rules #27745 OCPVE-278 : fix: multi build error, only add rt-tests for x86 #27749 Restore alert refactor with fix for disruption tests all being skipped #27742  
OCPBUGS-7519 : Skip nfs tests temporarilly #27747 OCPVE-278 : feat: add rt tests package to openshift-tests #27740 OCPBUGS-7616 : Revert Revert “bump(k8s): 1.26” #27738 Revert “bump(k8s): 1.26” #27736  
test/extended/authorization/rbac: Condition console RBAC on ‘Console’ capability #27681  
Revert “Alert Testing on new Namespace and Level” #27734  
OCPBUGS-7488 : test flake: should not reconcile SC when state is Unmanaged #27726 Revert “perform build csi volume test on GA clusters” #27730  
OCPBUGS-1125 : remove reference to old guard pods #27727 bump(k8s): 1.26 #27694  
Do not bail on producing artifacts when nodes are dead #27729  
audit inspection #27687  
Allow baremetal tests to run on Azure platform #27573  
OCPBUGS-6902 : Wait for DNS DS pods to be ready #27715 Chart CI cluster DNS problems in different color from disruption #27719  
Add pathological events into spyglass charts #27649  
BUILD-407 : perform build csi volume test on GA clusters #27720 Kubevirt network connectivity tests #27456  
TRT-819 : Add check for parse signature error #27705 Allow baremetal tests to run on GCP platform #27618  
Add PDB to resource watch #27721  
replace centos with ubi8 in build test dockerfile #27718  
Add external disruption sampling in openshift test #27717  
STOR-950 : Add CI job for skipping StorageClass creation #27704 BUILD-407 : stage one of two of migrating shared resource from tech preview to GA #27708 Ensure NoColor for ginkgo in disruption/chamosmoney suite #27709  
Alert Testing on new Namespace and Level #27710  
STOR-1066 : add e2e tests for CSIInlineVolumeAdmission plugin #27682 OCPBUGS-3923 : adjust watch budget for monitoring components #27623 make supplemental groups test working again #27664  
AUTH-337 : PSa: add test for SCC-mutated PodSpec extraction #27632 TRT-813 : Disabling disruption fallback for upgrades #27701 bump timeout #27695  
OCPBUGS-6503 : upgrade/adminack: simplify polling and unblock “guaranteed” post-upgrade check #27678 Update S2i image tests for dotnet3.1 EOL #27698  
extended: security: do not explicitly set api audience on token request #27697  
Changes for NodeTuning cluster capability #27657  
Skip the oc whoami –show-console test when the console capability is disabled #27679  
Update etcd scaling test for CPMS supported platforms #27497  
TRT-803 : FIxing test name #27688 Automated - Update synthetic test data #27676  
Use ingress-canary route for testing instead of console since the console might be disabled #27680  
ignore more repeated TopologyAwareHintsDisabled events #27672  
Add result tag to the end of first line of an event message #27656  
Automated - Update synthetic test data #27658  
USHIFT-720 : skip server-side apply for rangeallocations #27619 ignore repeated TopologyAwareHintsDisabled events #27666  
Update annotated rules for router tests #27662  
Fix nil pointer dereference for createDNSPod. #27663  
Revert “Remove dependency on some router tests on config.openshift.io api group” #27661  
Don’t emit failure junit testcase when a retry is skipped #27652  
OCPBUGS-5506 : DNS pod to be created on master node #27650 upgrade/adminack: guarantee one admin ack check post-upgrade #27645  
Separate mcd error alert #27648  
do not check for DeploymentConfig routers in router tests #27642  
WRKLDS-605 : Remove dependency on some router tests on config.openshift.io api group #27643 Fix missing disruption data again. #27651  
Add result key value to each topological event test output line #27641  
fix tech preview test #27639  
Fix missing disruption uploads. #27636  
Update CVO test ownership: -Jack and Vadim, +Petr #27646  
Automated - Update synthetic test data #27626  
Add Event intervals for Startup Probe failures #27612  
Use cluster network MTU for bond interfaces #27631  
Use create token instead serviceaccounts token command #27629  
Fix intervalcreation incorrect year unit test bug #27630  
Update ETCD storage data for k8s 1.26 #27622  
Filter out dropped targets to minimize the size of target api result #27594  
NE-1068 : Add test using chaos plugin to detect local DNS endpoint preference. #27511 OpenStack: Skip in-tree cinder provisioner tests #27613  
Automated - Update synthetic test data #27614  
Test failures that flaked on retry remain counted as failures #27602  
Remove ambiguity when checking for api resources existence #27583  
OCPBUGS-4731 : oc status: clean job resource to prevent leaks #27608 Add tests for oc scc-subject-review and scc-review commands #27572  
TRT-703 : Fix upgrade junit results not present in risk analysis #27600 Updating openshift-enterprise-tests images to be consistent with ART #27607  
remove special cases for priority classes in the payload #27606  
Automated - Update synthetic test data #27601  
OCPBUGS-4550 : Bump api-requests for console-operator on vsphere #27605 run resourcewatch fixes #27596  
OCPBUGS-4502 : Unskip service session affinity tests #27597 Automated - Update synthetic test data #27587  
Add trozet to networking approvers #27395  
Separate out “startupProbe failed” messages from pathological events test #27590  
OCPBUGS-4190 : 1sec #27574 USHIFT-646 : ushift: Graceful return to disable telemetry #27578 Round the ratio for excessive watch requests test #27592  
OCPVE-112 : feat: support higher threshold for connection refused on sno #27586 Allow baremetal tests to run on AWS platform #27569  
USHIFT-644 : Skip sig-cloud-provider tests #27577 Remove redundant messages that might contain non-xml charactor #27582  
USHIFT-647 : ushift: fix loop variable capture in sig-cli #27579 USHIFT-658 : ushift: skip networking bond interface tests #27584 TRT-662 : include test count totals for analysis #27585 OCPBUGS-2991 : Bump openshift/kubernetes to latest master v2 #27580 TRT-691 : use duplicateEventThreshold for ProbeTests #27562 Automated - Update synthetic test data #27543  
Add separate tests for QPS exceeded and manifest unknown #27542  
Test tuning cni whitelist update #27447  
Introduce timeout for sippy risk analysis; add retries with backoff; add dated logging #27564  
Remove unused cmd tests #27495  
Fix risk analysis html to link to correct release and show bug keys #27568  
Skip image-registry redirect test when non-permanent credentials used on GCP. #27556  
Add Kuryr exception to “pods should successfully create sandboxes” test #27435  
Bug 2093339 : Reenable data source test #27534 Flake and improve alert tests #27559  
Trim stdout and stderr to the last 4K bytes to keep log size manageable #27560  
OCPBUGS-3633 : Fix flake reporting for certain tests. #27553 Nginx 1.18 images will reach EOL in November 2022 #27551  
make command errors easier to read #27544  
OCPBUGS-3633 : Revert “Merge pull request #27533 from dgoodwin/merge-alert-backstops” #27547 Replace CreateProject with SetupProject #27271  
cosmetic fix for bad disruption substitution #27510  
Separate out more tests from ‘events should not repeat pathologically’ test #27539  
OCPBUGSM-35025 : reenable unidling ci tests #27538 USHIFT-345 , USHIFT-348 , USHIFT-355 : API Groups for cli, arch & network #27540 And 4 elided commits (e.g. from squash or rebase merges) 
Full changelog  
Source code for this page located on github