# 4.12.0-0.okd-2023-04-01-051724 Created: 2023-04-01 07:14:05 +0000 UTC Image Digest: `sha256:a8272e9992eee6b9c9dfa1b44e7348e5f979c0de96ad60d6235477a1aa0d7897` Promoted from registry.ci.openshift.org/origin/release:4.12.0-0.okd-2023-04-01-051724 ## Changes from 4.12.0-0.okd-2023-02-04-212953 ### Components * Kubernetes upgraded from 1.25.4 to 1.25.7 * Fedora CoreOS upgraded from 37.20230110.3 to 37.20230303.3 ### Rebuilt images without code change * [azure-machine-controllers](https://github.com/openshift/machine-api-provider-azure) git [cfb76acd](https://github.com/openshift/machine-api-provider-azure/commit/cfb76acd1429fa8be4925cf15789f1dc62252d7f) `sha256:fd114ce5547460ee4c7d587317661a7c69e545cefe2a060f6ba50d94e36cfb74` * [cluster-capi-operator](https://github.com/openshift/cluster-capi-operator) git [3bfe36aa](https://github.com/openshift/cluster-capi-operator/commit/3bfe36aa9d1abbdfb11facf86a7ec6510abc390a) `sha256:2c9c2d17ac800ba92f769c1be1023ac7077ffef254f46560cf99dfb9927b9500` * [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator) git [1c136fe3](https://github.com/openshift/cluster-dns-operator/commit/1c136fe38b8cd5c0de99577d23157f884728d20b) `sha256:863cc4e4eefcb7821db6933cb4906b65f946a33ae02ea363f1289fb6df00d2c2` * [coredns](https://github.com/openshift/coredns) git [9aaa7e0a](https://github.com/openshift/coredns/commit/9aaa7e0a86b69bafb9f544a0e5cb1873535a8f6b) `sha256:07111ef8b11cab545d571ca3f416e35c860e25dcee4f7737729de8a80ec104c2` * [gcp-machine-controllers](https://github.com/openshift/machine-api-provider-gcp) git [ada83dc6](https://github.com/openshift/machine-api-provider-gcp/commit/ada83dc67fc2efad2cc73f89ca3b33fd289e50ba) `sha256:a098684f8165249bb7898d67483adb91a0305b5b06a11b5e51ec7ae1fd1dc5e1` * [kuryr-cni](https://github.com/openshift/kuryr-kubernetes) git [92b9be25](https://github.com/openshift/kuryr-kubernetes/commit/92b9be25999aee9c3b225606510c56fd14378bdf) `sha256:5cda4cd8c1e6bab1fab6ed319b6206d2d6e3d4d2e2054acb4b944446d6049a13` * [kuryr-controller](https://github.com/openshift/kuryr-kubernetes) git [92b9be25](https://github.com/openshift/kuryr-kubernetes/commit/92b9be25999aee9c3b225606510c56fd14378bdf) `sha256:4bbd64a481cd6105db3da0c255b4c6302a8ff01f2d2cb888cb6703144bb7dfdc` * [machine-os-images](https://github.com/openshift/machine-os-images) git [566bf595](https://github.com/openshift/machine-os-images/commit/566bf59501f178bd80e410fda66cc424de6a4891) `sha256:feebbf5fdeaebbe67347255ee1aeef93e2e1da0e6da966deaaa095589cf0373d` ### [agent-installer-api-server](https://github.com/openshift/assisted-service/tree/) * [MGMT-20464](https://issues.redhat.com/browse/MGMT-20464): Fix NFD detection of NVIDIA GPUs [#7696](https://github.com/openshift/assisted-service/pull/7696) * [MGMT-20324](https://issues.redhat.com/browse/MGMT-20324): Fix day2 add hosts with P/Z CPU architectures [#7527](https://github.com/openshift/assisted-service/pull/7527) * [MGMT-20207](https://issues.redhat.com/browse/MGMT-20207): avoid adding system CA bundle to AdditionalTrustBundle [#7448](https://github.com/openshift/assisted-service/pull/7448) * [MGMT-20009](https://issues.redhat.com/browse/MGMT-20009): Change OCP 4.19 to the default version [#7506](https://github.com/openshift/assisted-service/pull/7506) * NO-ISSUE: Change node-maintenance operator namespace to avoid conflict with node-healthcheck operator [#7491](https://github.com/openshift/assisted-service/pull/7491) * NO-ISSUE: fixing late binding [#7070](https://github.com/openshift/assisted-service/pull/7070) * [Full changelog](https://github.com/openshift/assisted-service/compare/b03e2db9f58b8bc2fdcb339659b47973688436e3...) ### [agent-installer-csr-approver, agent-installer-orchestrator](https://github.com/openshift/assisted-installer/tree/bb9c2fee04cd5bd1736fb1590db728643ba27ea1) * [OCPBUGS-7149](https://issues.redhat.com/browse/OCPBUGS-7149): IPv6 multinode spoke no moving from rebooting/configuring stage Update the mcs log regex (#631) [#631](https://github.com/openshift/assisted-installer/pull/631) * [Full changelog](https://github.com/openshift/assisted-installer/compare/0f14c3d16cb089b55ca3658038e83bc0bcd01f47...bb9c2fee04cd5bd1736fb1590db728643ba27ea1) ### [agent-installer-node-agent](https://github.com/openshift/assisted-installer-agent/tree/a7aa60002fc11c7320dd17c1681feb9956dd288f) * [MGMT-13946](https://issues.redhat.com/browse/MGMT-13946): Ignore Proliant Gen 11 serial (#524) [#524](https://github.com/openshift/assisted-installer-agent/pull/524) * Add sg3_utils package (#497) (#500) [#497](https://github.com/openshift/assisted-installer-agent/pull/497) * [Full changelog](https://github.com/openshift/assisted-installer-agent/compare/271a6f48486db5702d3ebc4b644b74722319d49d...a7aa60002fc11c7320dd17c1681feb9956dd288f) ### [alibaba-cloud-controller-manager](https://github.com/openshift/cloud-provider-alibaba-cloud/tree/) * NO-JIRA: Update OWNERS [#53](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/53) * [OCPBUGS-23004](https://issues.redhat.com/browse/OCPBUGS-23004): Merge https://github.com/kubernetes/cloud-provider-alibaba-cloud:master (8244569) into master [#37](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/37) * [OCPBUGS-25563](https://issues.redhat.com/browse/OCPBUGS-25563): Updating ose-alibaba-cloud-controller-manager-container image to be consistent with ART [#44](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/44) * [OCPBUGS-25632](https://issues.redhat.com/browse/OCPBUGS-25632): Add Snyk file to exclude vendor directory on scan [#47](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/47) * [OCPBUGS-25457](https://issues.redhat.com/browse/OCPBUGS-25457): Bump golang.org/x/net to v0.19.0 [#42](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/42) * [OCPBUGS-24926](https://issues.redhat.com/browse/OCPBUGS-24926): Updating ose-alibaba-cloud-controller-manager-container image to be consistent with ART [#40](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/40) * [OCPBUGS-24111](https://issues.redhat.com/browse/OCPBUGS-24111): Updating ose-alibaba-cloud-controller-manager-container image to be consistent with ART [#39](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/39) * Update OWNERS [#36](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/36) * Rebase onto latest upstream version [#35](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/35) * [OCPBUGS-10120](https://issues.redhat.com/browse/OCPBUGS-10120): Updating ose-alibaba-cloud-controller-manager images to be consistent with ART [#30](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/30) * Update OWNERS [#29](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/29) * Update OWNERS [#27](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/27) * Updating ose-alibaba-cloud-controller-manager images to be consistent with ART [#26](https://github.com/openshift/cloud-provider-alibaba-cloud/pull/26) * [Full changelog](https://github.com/openshift/cloud-provider-alibaba-cloud/compare/1959de0e3f2c3457c32fd2f545fe5ca65f12cd6c...) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/e375c84d00604ebb475acff2c4b9079f843ccbe2) * [OCPBUGS-7892](https://issues.redhat.com/browse/OCPBUGS-7892): do not inject-proxy when deploying in hypershift control plane [#187](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/187) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/6bd7afa3fae087853c0210050bdc981c899426c4...e375c84d00604ebb475acff2c4b9079f843ccbe2) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/6b1d69d29271e0183885b0d27a3293579fd37e02) * [OCPBUGS-7885](https://issues.redhat.com/browse/OCPBUGS-7885): Adjust client-side QPS, burst and worker threads in provisioner and attacher sidecars [#70](https://github.com/openshift/azure-disk-csi-driver-operator/pull/70) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/e4ed4ee1123d34a1183e4ccb8a31a57ea3237c4f...6b1d69d29271e0183885b0d27a3293579fd37e02) ### [baremetal-installer, installer, installer-artifacts, ovirt-installer](https://github.com/openshift/installer/tree/c4e4dc8621610a11795bc120956e89440f9fc477) * [OCPBUGS-8384](https://issues.redhat.com/browse/OCPBUGS-8384): Specify filename for default registries.conf [#6941](https://github.com/openshift/installer/pull/6941) * [OCPBUGS-10904](https://issues.redhat.com/browse/OCPBUGS-10904): IBMCloud: Fix SSH Private bootstrap [#7028](https://github.com/openshift/installer/pull/7028) * [OCPBUGS-10905](https://issues.redhat.com/browse/OCPBUGS-10905): IBMCloud set dnsrecords offset [#7029](https://github.com/openshift/installer/pull/7029) * [OCPBUGS-10740](https://issues.redhat.com/browse/OCPBUGS-10740): bump RHCOS 4.12 bootimage metadata [#7019](https://github.com/openshift/installer/pull/7019) * [OCPBUGS-7481](https://issues.redhat.com/browse/OCPBUGS-7481): Fix file check for loading openshift manifests [#6907](https://github.com/openshift/installer/pull/6907) * [OCPBUGS-10497](https://issues.redhat.com/browse/OCPBUGS-10497): [release-4.12] aws: bump aws-sdk-go version [#6985](https://github.com/openshift/installer/pull/6985) * [OCPBUGS-10439](https://issues.redhat.com/browse/OCPBUGS-10439): Sort userTags in Machine and Machineset manifests [#6984](https://github.com/openshift/installer/pull/6984) * [OCPBUGS-7469](https://issues.redhat.com/browse/OCPBUGS-7469): [release-4.12] GCP XPN Featuregates [#6851](https://github.com/openshift/installer/pull/6851) * [OCPBUGS-7063](https://issues.redhat.com/browse/OCPBUGS-7063): vSphere - Remove regexs in terraform ova import [#6868](https://github.com/openshift/installer/pull/6868) * [OCPBUGS-8658](https://issues.redhat.com/browse/OCPBUGS-8658): Pass Capabilites from install-config to cluster [#6947](https://github.com/openshift/installer/pull/6947) * [OCPBUGS-7594](https://issues.redhat.com/browse/OCPBUGS-7594): fully qualified username must be provided [#6864](https://github.com/openshift/installer/pull/6864) * [OCPBUGS-7746](https://issues.redhat.com/browse/OCPBUGS-7746): Convert platform type for AgentClusterInstall [#6878](https://github.com/openshift/installer/pull/6878) * [OCPBUGS-8015](https://issues.redhat.com/browse/OCPBUGS-8015): make VIP 168.63.129.16 noProxy in all clouds except Public [#6909](https://github.com/openshift/installer/pull/6909) * [OCPBUGS-6087](https://issues.redhat.com/browse/OCPBUGS-6087): Warn if agent assets detected when using non-agent waitfor [#6788](https://github.com/openshift/installer/pull/6788) * [OCPBUGS-7607](https://issues.redhat.com/browse/OCPBUGS-7607): IBMCloud: Handle COS reclamations [#6867](https://github.com/openshift/installer/pull/6867) * [OCPBUGS-7529](https://issues.redhat.com/browse/OCPBUGS-7529): bump RHCOS 4.12 bootimage metadata [#6873](https://github.com/openshift/installer/pull/6873) * [OCPBUGS-7521](https://issues.redhat.com/browse/OCPBUGS-7521): Update AgentConfig template [#6857](https://github.com/openshift/installer/pull/6857) * [OCPBUGS-5992](https://issues.redhat.com/browse/OCPBUGS-5992): azure: validate Windows-only VM types [#6780](https://github.com/openshift/installer/pull/6780) * [OCPBUGS-6991](https://issues.redhat.com/browse/OCPBUGS-6991): Don't require vSphere details for agent installer [#6826](https://github.com/openshift/installer/pull/6826) * [OCPBUGS-6807](https://issues.redhat.com/browse/OCPBUGS-6807): Check platform baremetal settings against default values [#6815](https://github.com/openshift/installer/pull/6815) * [OCPBUGS-7103](https://issues.redhat.com/browse/OCPBUGS-7103): Set the configured proxy settings for agent installer [#6830](https://github.com/openshift/installer/pull/6830) * [OCPBUGS-7131](https://issues.redhat.com/browse/OCPBUGS-7131): bootstrap: set 0644 mode for registries.conf [#6804](https://github.com/openshift/installer/pull/6804) * [Full changelog](https://github.com/openshift/installer/compare/3ba140f2142ec633dcf7e3894fadc652e1fd4fa4...c4e4dc8621610a11795bc120956e89440f9fc477) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/5f47d131a86964aa53f3b6a46a1c49e44e2ac9c0) * [OCPBUGS-9955](https://issues.redhat.com/browse/OCPBUGS-9955): allow namespace to continue with terminating when deprovisioning a bmh [#258](https://github.com/openshift/baremetal-operator/pull/258) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/a5af4fc968cbfb7702c1422950c00168bd8d2564...5f47d131a86964aa53f3b6a46a1c49e44e2ac9c0) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/31aa3e89a926f81aa0af30320ffcb71acadf3015) * [OCPBUGS-10774](https://issues.redhat.com/browse/OCPBUGS-10774): bump repo sclorg/s2i-ruby-container location for newapp test [#1382](https://github.com/openshift/oc/pull/1382) * [OCPBUGS-7960](https://issues.redhat.com/browse/OCPBUGS-7960): pkg/cli/admin/upgrade/channel: Use PATCH instead of POST for spec updates [#1354](https://github.com/openshift/oc/pull/1354) * [Full changelog](https://github.com/openshift/oc/compare/b05f7d40f9a2dac30771be620e9e9148d26ffd07...31aa3e89a926f81aa0af30320ffcb71acadf3015) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/8164b8ba38c35d6c1a41efcc369f8963f612de6c) * [OCPBUGS-7585](https://issues.redhat.com/browse/OCPBUGS-7585): also use BMH.ConsumerRef for linking to master Machines [#326](https://github.com/openshift/cluster-baremetal-operator/pull/326) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/047391f09c68b3bb259262012693913af50c13a6...8164b8ba38c35d6c1a41efcc369f8963f612de6c) ### [cluster-capi-controllers](https://github.com/openshift/cluster-api/tree/) * NO-JIRA: Merge https://github.com/kubernetes-sigs/cluster-api:v1.10.2 (5255664) into master [#240](https://github.com/openshift/cluster-api/pull/240) * [OCPCLOUD-2917](https://issues.redhat.com/browse/OCPCLOUD-2917): Merge https://github.com/kubernetes-sigs/cluster-api:v1.10.1 (647a1b7) into master [#238](https://github.com/openshift/cluster-api/pull/238) * [OCPBUGS-55947](https://issues.redhat.com/browse/OCPBUGS-55947): Regenerate manifests to drop v1beta1 admissionregistration usage [#236](https://github.com/openshift/cluster-api/pull/236) * [OCPCLOUD-2860](https://issues.redhat.com/browse/OCPCLOUD-2860): Enable propagation of Machine annotations to Nodes [#233](https://github.com/openshift/cluster-api/pull/233) * [OCPCLOUD-2680](https://issues.redhat.com/browse/OCPCLOUD-2680): Enable machine to node propagation [#229](https://github.com/openshift/cluster-api/pull/229) * NO-JIRA: Update manifests generator tooling [#232](https://github.com/openshift/cluster-api/pull/232) * [OCPCLOUD-2680](https://issues.redhat.com/browse/OCPCLOUD-2680): Merge https://github.com/kubernetes-sigs/cluster-api:v1.9.5 (068c0f3) into master [#231](https://github.com/openshift/cluster-api/pull/231) * [OCPCLOUD-2857](https://issues.redhat.com/browse/OCPCLOUD-2857): Merge https://github.com/kubernetes-sigs/cluster-api:v1.9.4 (79e6731) into master [#230](https://github.com/openshift/cluster-api/pull/230) * [OCPBUGS-45428](https://issues.redhat.com/browse/OCPBUGS-45428): Updating ose-cluster-api-container image to be consistent with ART for 4.19 [#228](https://github.com/openshift/cluster-api/pull/228) * [OCPCLOUD-2742](https://issues.redhat.com/browse/OCPCLOUD-2742): Merge https://github.com/kubernetes-sigs/cluster-api:v1.8.4 into master [#225](https://github.com/openshift/cluster-api/pull/225) * [OCPCLOUD-2703](https://issues.redhat.com/browse/OCPCLOUD-2703): OWNERS: update subcomponent [#223](https://github.com/openshift/cluster-api/pull/223) * [OCPBUGS-39516](https://issues.redhat.com/browse/OCPBUGS-39516): Updating ose-cluster-api-container image to be consistent with ART for 4.18 [#222](https://github.com/openshift/cluster-api/pull/222) * NO-JIRA: Update OWNERS [#211](https://github.com/openshift/cluster-api/pull/211) * [OCPCLOUD-2625](https://issues.redhat.com/browse/OCPCLOUD-2625): Merge https://github.com/kubernetes-sigs/cluster-api:v1.7.2 (a5898a2) into master [#210](https://github.com/openshift/cluster-api/pull/210) * [OCPBUGS-34133](https://issues.redhat.com/browse/OCPBUGS-34133): Updating ose-cluster-api-container image to be consistent with ART for 4.17 [#208](https://github.com/openshift/cluster-api/pull/208) * [OCPBUGS-33170](https://issues.redhat.com/browse/OCPBUGS-33170): All containers must fallback to logs on error [#207](https://github.com/openshift/cluster-api/pull/207) * [OCPBUGS-30480](https://issues.redhat.com/browse/OCPBUGS-30480): Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.4 (36c0e55) into master [#203](https://github.com/openshift/cluster-api/pull/203) * NO-JIRA: Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.2 (da795db) into master [#199](https://github.com/openshift/cluster-api/pull/199) * [OCPBUGS-30586](https://issues.redhat.com/browse/OCPBUGS-30586): fix e2e tests on release branches [#200](https://github.com/openshift/cluster-api/pull/200) * [OCPCLOUD-2517](https://issues.redhat.com/browse/OCPCLOUD-2517): openshift: promote core CAPI IPAM CRDs to GA [#197](https://github.com/openshift/cluster-api/pull/197) * [OCPBUGS-29519](https://issues.redhat.com/browse/OCPBUGS-29519): openshift: add CustomNoUpgrade annotation value to feature-set [#196](https://github.com/openshift/cluster-api/pull/196) * [OCPBUGS-29476](https://issues.redhat.com/browse/OCPBUGS-29476): openshift: generate separate manifest for core CAPI CRDs [#195](https://github.com/openshift/cluster-api/pull/195) * [OCPBUGS-26111](https://issues.redhat.com/browse/OCPBUGS-26111): add snyk file [#194](https://github.com/openshift/cluster-api/pull/194) * [OCPCLOUD-2449](https://issues.redhat.com/browse/OCPCLOUD-2449): Merge https://github.com/kubernetes-sigs/cluster-api:v1.6.0 (14efefe) into master [#192](https://github.com/openshift/cluster-api/pull/192) * NO-JIRA: e2e: add openstack testing script [#193](https://github.com/openshift/cluster-api/pull/193) * [OCPBUGS-25586](https://issues.redhat.com/browse/OCPBUGS-25586): Updating ose-cluster-api-container image to be consistent with ART [#191](https://github.com/openshift/cluster-api/pull/191) * [OCPBUGS-25000](https://issues.redhat.com/browse/OCPBUGS-25000): Updating ose-cluster-api-container image to be consistent with ART [#190](https://github.com/openshift/cluster-api/pull/190) * [OCPCLOUD-2255](https://issues.redhat.com/browse/OCPCLOUD-2255): Update manifests-gen tool [#189](https://github.com/openshift/cluster-api/pull/189) * [OCPCLOUD-2257](https://issues.redhat.com/browse/OCPCLOUD-2257): Use manifests generation tool from provider repo [#179](https://github.com/openshift/cluster-api/pull/179) * Update OWNERS [#183](https://github.com/openshift/cluster-api/pull/183) * [OCPBUGS-21645](https://issues.redhat.com/browse/OCPBUGS-21645): Bump golang.org/x/net to v0.17.0 [#182](https://github.com/openshift/cluster-api/pull/182) * [OCPBUGS-17286](https://issues.redhat.com/browse/OCPBUGS-17286), [OCPCLOUD-2222](https://issues.redhat.com/browse/OCPCLOUD-2222): Merge https://github.com/kubernetes-sigs/cluster-api:v1.5.2 (3290c5a) into master [#181](https://github.com/openshift/cluster-api/pull/181) * [OCPBUGS-19109](https://issues.redhat.com/browse/OCPBUGS-19109): Updating ose-cluster-api images to be consistent with ART [#180](https://github.com/openshift/cluster-api/pull/180) * [OCPBUGS-6354](https://issues.redhat.com/browse/OCPBUGS-6354), [OCPBUGS-6372](https://issues.redhat.com/browse/OCPBUGS-6372): Merge https://github.com/kubernetes-sigs/cluster-api:v1.4.2 (7b92ce4) into master [#175](https://github.com/openshift/cluster-api/pull/175) * Make openshift/e2e-tests.sh executable [#178](https://github.com/openshift/cluster-api/pull/178) * [OCPCLOUD-2121](https://issues.redhat.com/browse/OCPCLOUD-2121): Add openshift/e2e-tests for CAPI E2E testing [#177](https://github.com/openshift/cluster-api/pull/177) * Updating ose-cluster-api images to be consistent with ART [#174](https://github.com/openshift/cluster-api/pull/174) * Updating ose-cluster-api images to be consistent with ART [#170](https://github.com/openshift/cluster-api/pull/170) * Add enxebre approvers [#171](https://github.com/openshift/cluster-api/pull/171) * Merge https://github.com/kubernetes-sigs/cluster-api:release-1.3 (eb18352) into master [#167](https://github.com/openshift/cluster-api/pull/167) * Sync OWNERS file [#168](https://github.com/openshift/cluster-api/pull/168) * Updating ose-cluster-api images to be consistent with ART [#165](https://github.com/openshift/cluster-api/pull/165) * Merge https://github.com/kubernetes-sigs/cluster-api:main into master [#163](https://github.com/openshift/cluster-api/pull/163) * UPSTREAM: <carry>: bump build root image to golang-1.19 [#164](https://github.com/openshift/cluster-api/pull/164) * [Full changelog](https://github.com/openshift/cluster-api/compare/f9c215c4f298710ccf76676395465685b5d15268...) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/efccbb31f95542615c9b7bea9cde36b416b17824) * [OCPBUGS-7884](https://issues.redhat.com/browse/OCPBUGS-7884): Restart pods if related configuration was changed [#228](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/228) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/83768c8057de19a6da8f58edf6430884e3081050...efccbb31f95542615c9b7bea9cde36b416b17824) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/2538b572330d394c71a077ab3d891ae66d82bd4e) * [OCPBUGS-7830](https://issues.redhat.com/browse/OCPBUGS-7830): increase live/ready timeout and failure thresholds [#1011](https://github.com/openshift/cluster-etcd-operator/pull/1011) * Update reviewers and approvers [#987](https://github.com/openshift/cluster-etcd-operator/pull/987) * [OCPBUGS-7409](https://issues.redhat.com/browse/OCPBUGS-7409): set default timeouts in etcdcli [#1005](https://github.com/openshift/cluster-etcd-operator/pull/1005) * [OCPBUGS-6935](https://issues.redhat.com/browse/OCPBUGS-6935): add dedicated success status for bootstrap removal [#999](https://github.com/openshift/cluster-etcd-operator/pull/999) * [OCPBUGS-7373](https://issues.redhat.com/browse/OCPBUGS-7373): [release-4.12] fail early on missing node status envs [#1004](https://github.com/openshift/cluster-etcd-operator/pull/1004) * [OCPBUGS-6898](https://issues.redhat.com/browse/OCPBUGS-6898): updating library-go for CVE-2022-41717 [#998](https://github.com/openshift/cluster-etcd-operator/pull/998) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/a9aaf7d163b9f118347aca4080ce8cab746b241e...2538b572330d394c71a077ab3d891ae66d82bd4e) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/e9a895af74906435bea0bb230773a3bc1898abc6) * [OCPBUGS-8491](https://issues.redhat.com/browse/OCPBUGS-8491): bump aws-sdk-go [#846](https://github.com/openshift/cluster-image-registry-operator/pull/846) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/62a3aa8ff1ffcc5b52a762847ecf1391730fff92...e9a895af74906435bea0bb230773a3bc1898abc6) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/) * [OCPBUGS-58358](https://issues.redhat.com/browse/OCPBUGS-58358): desiredIstio: Do not enable a default PDB [#1240](https://github.com/openshift/cluster-ingress-operator/pull/1240) * [OCPBUGS-57728](https://issues.redhat.com/browse/OCPBUGS-57728): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.20 [#1236](https://github.com/openshift/cluster-ingress-operator/pull/1236) * [OCPBUGS-55652](https://issues.redhat.com/browse/OCPBUGS-55652): Removed PrivateHostedZoneAWS from component [#1230](https://github.com/openshift/cluster-ingress-operator/pull/1230) * [OCPBUGS-54745](https://issues.redhat.com/browse/OCPBUGS-54745): status: Conditionally add CRDs to relatedObjects [#1217](https://github.com/openshift/cluster-ingress-operator/pull/1217) * [OCPBUGS-55317](https://issues.redhat.com/browse/OCPBUGS-55317): Check capabilities before watching OLM resource [#1232](https://github.com/openshift/cluster-ingress-operator/pull/1232) * [CNTRLPLANE-112](https://issues.redhat.com/browse/CNTRLPLANE-112): Remove ARO HCP MIv2 Authentication for Ingress Operator [#1222](https://github.com/openshift/cluster-ingress-operator/pull/1222) * [CNTRLPLANE-112](https://issues.redhat.com/browse/CNTRLPLANE-112): Add new Azure authentication type for managed Azure HCP for cluster-ingress [#1191](https://github.com/openshift/cluster-ingress-operator/pull/1191) * [NE-2009](https://issues.redhat.com/browse/NE-2009): Relax pod bound validating admission rule for HyperShift [#1221](https://github.com/openshift/cluster-ingress-operator/pull/1221) * [NE-1969](https://issues.redhat.com/browse/NE-1969): Set Degraded=True if unmanaged Gateway API CRDs exist [#1205](https://github.com/openshift/cluster-ingress-operator/pull/1205) * [NE-1957](https://issues.redhat.com/browse/NE-1957): Add Gateway API DNS Feature e2e tests [#1213](https://github.com/openshift/cluster-ingress-operator/pull/1213) * [OCPBUGS-54650](https://issues.redhat.com/browse/OCPBUGS-54650), [OCPBUGS-54651](https://issues.redhat.com/browse/OCPBUGS-54651), [OCPBUGS-54652](https://issues.redhat.com/browse/OCPBUGS-54652): desiredSubscription: Specify annotations and SCC [#1214](https://github.com/openshift/cluster-ingress-operator/pull/1214) * [NE-2009](https://issues.redhat.com/browse/NE-2009): Move VAP to Default featureset [#1216](https://github.com/openshift/cluster-ingress-operator/pull/1216) * [OCPBUGS-54568](https://issues.redhat.com/browse/OCPBUGS-54568): desiredIstio: Specify priorityClassName [#1211](https://github.com/openshift/cluster-ingress-operator/pull/1211) * [OCPBUGS-53424](https://issues.redhat.com/browse/OCPBUGS-53424): Wait for install plans to enter the "Requires Approval" phase before approving them [#1203](https://github.com/openshift/cluster-ingress-operator/pull/1203) * [NE-2008](https://issues.redhat.com/browse/NE-2008): Add GRPC conformance tests [#1208](https://github.com/openshift/cluster-ingress-operator/pull/1208) * [NE-1277](https://issues.redhat.com/browse/NE-1277): status: Add Gateway API objects to relatedObjects [#933](https://github.com/openshift/cluster-ingress-operator/pull/933) * [NE-1994](https://issues.redhat.com/browse/NE-1994): Add E2E test for Istio manual deployment [#1204](https://github.com/openshift/cluster-ingress-operator/pull/1204) * [NE-1969](https://issues.redhat.com/browse/NE-1969): Add "v1" version to OpenShift GatewayClass controller name [#1202](https://github.com/openshift/cluster-ingress-operator/pull/1202) * [NE-1934](https://issues.redhat.com/browse/NE-1934): Bump to OSSM 3.0 for Gateway API support [#1152](https://github.com/openshift/cluster-ingress-operator/pull/1152) * [CORS-3907](https://issues.redhat.com/browse/CORS-3907): Update ingress operator to with custom endpoints [#1197](https://github.com/openshift/cluster-ingress-operator/pull/1197) * [NE-1953](https://issues.redhat.com/browse/NE-1953): Add experimental Gateway API group to Validating Admission Policy [#1200](https://github.com/openshift/cluster-ingress-operator/pull/1200) * [NE-1907](https://issues.redhat.com/browse/NE-1907): Manage OSSM operator subscription manually to ensure a compatible version is installed [#1112](https://github.com/openshift/cluster-ingress-operator/pull/1112) * [NE-1981](https://issues.redhat.com/browse/NE-1981): Move controller test helpers to dedicated package [#1199](https://github.com/openshift/cluster-ingress-operator/pull/1199) * [NE-1953](https://issues.redhat.com/browse/NE-1953): Add Validating Admission Policy for Gateway API CRDs [#1192](https://github.com/openshift/cluster-ingress-operator/pull/1192) * [NE-1954](https://issues.redhat.com/browse/NE-1954): Implement GatewayAPIController feature gate [#1198](https://github.com/openshift/cluster-ingress-operator/pull/1198) * [NE-1936](https://issues.redhat.com/browse/NE-1936): Bump k8s.io dependencies to v0.32.1 [#1184](https://github.com/openshift/cluster-ingress-operator/pull/1184) * [OCPBUGS-31550](https://issues.redhat.com/browse/OCPBUGS-31550): Gateway API - recreating SMCP which breaks Gateway API [#1115](https://github.com/openshift/cluster-ingress-operator/pull/1115) * [OCPBUGS-32776](https://issues.redhat.com/browse/OCPBUGS-32776): Fix IBM Public Cloud DNS Provider Update Logic [#1133](https://github.com/openshift/cluster-ingress-operator/pull/1133) * [OCPBUGS-48780](https://issues.redhat.com/browse/OCPBUGS-48780): Fix IBMCloud DNS Propagation Issues in E2E [#1164](https://github.com/openshift/cluster-ingress-operator/pull/1164) * [OCPBUGS-43745](https://issues.redhat.com/browse/OCPBUGS-43745): Skip Test_IdleConnectionTerminationPolicyDeferred when DCM feature gate is enabled [#1186](https://github.com/openshift/cluster-ingress-operator/pull/1186) * [NE-1260](https://issues.redhat.com/browse/NE-1260): Add Makefile target to run Gateway API conformance tests [#1176](https://github.com/openshift/cluster-ingress-operator/pull/1176) * [OCPBUGS-43745](https://issues.redhat.com/browse/OCPBUGS-43745): Add support for IdleCloseTerminationPolicy (Go http.Client) [#1182](https://github.com/openshift/cluster-ingress-operator/pull/1182) * [OCPBUGS-45585](https://issues.redhat.com/browse/OCPBUGS-45585): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.19 [#1173](https://github.com/openshift/cluster-ingress-operator/pull/1173) * [OCPBUGS-41892](https://issues.redhat.com/browse/OCPBUGS-41892): Single Watch on GWAPI CRD [#1165](https://github.com/openshift/cluster-ingress-operator/pull/1165) * [NE-1790](https://issues.redhat.com/browse/NE-1790): Follow up to enable Dynamic Configuration Manager feature gate [#1174](https://github.com/openshift/cluster-ingress-operator/pull/1174) * [SPLAT-1722](https://issues.redhat.com/browse/SPLAT-1722): Remove alibaba [#1111](https://github.com/openshift/cluster-ingress-operator/pull/1111) * [CORS-3755](https://issues.redhat.com/browse/CORS-3755): AWS: Add Ingress LB IPs to Infra CR when in-cluster DNS is enabled [#1167](https://github.com/openshift/cluster-ingress-operator/pull/1167) * [NE-1790](https://issues.redhat.com/browse/NE-1790): Enable Dynamic Configuration Manager feature gate [#1159](https://github.com/openshift/cluster-ingress-operator/pull/1159) * [OSASINFRA-3642](https://issues.redhat.com/browse/OSASINFRA-3642): openstack: support setting external LB floating IP [#1147](https://github.com/openshift/cluster-ingress-operator/pull/1147) * [HOSTEDCP-2031](https://issues.redhat.com/browse/HOSTEDCP-2031): Use Client Certificate Authentication for ARO HCP deployments [#1151](https://github.com/openshift/cluster-ingress-operator/pull/1151) * [OCPBUGS-43412](https://issues.redhat.com/browse/OCPBUGS-43412): Bump to k8s.io v0.31.1 (and deps) [#1156](https://github.com/openshift/cluster-ingress-operator/pull/1156) * [NE-1716](https://issues.redhat.com/browse/NE-1716): Bump Gateway API to v1.0.0 and OSSM to v2.6 [#1163](https://github.com/openshift/cluster-ingress-operator/pull/1163) * [CFE-1134](https://issues.redhat.com/browse/CFE-1134): Watch infrastructure and update AWS tags [#1148](https://github.com/openshift/cluster-ingress-operator/pull/1148) * [OCPBUGS-43033](https://issues.redhat.com/browse/OCPBUGS-43033): e2e/ingress_dns: support both private & public [#1153](https://github.com/openshift/cluster-ingress-operator/pull/1153) * [OCPBUGS-37932](https://issues.redhat.com/browse/OCPBUGS-37932): Always log AWS service endpoints [#1137](https://github.com/openshift/cluster-ingress-operator/pull/1137) * [OCPBUGS-36340](https://issues.redhat.com/browse/OCPBUGS-36340): Retry IngressController and Route updates in E2E tests [#1116](https://github.com/openshift/cluster-ingress-operator/pull/1116) * [OCPBUGS-42004](https://issues.redhat.com/browse/OCPBUGS-42004): Set the MI client ID for the ARO HCP override [#1144](https://github.com/openshift/cluster-ingress-operator/pull/1144) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#1031](https://github.com/openshift/cluster-ingress-operator/pull/1031) * [OCPBUGS-36044](https://issues.redhat.com/browse/OCPBUGS-36044): Bump IBM/go-sdk-core to v5.17.4 [#1120](https://github.com/openshift/cluster-ingress-operator/pull/1120) * [OCPBUGS-41527](https://issues.redhat.com/browse/OCPBUGS-41527): Add tolerations to survive scheduler taint manager e2e tests on workers [#1143](https://github.com/openshift/cluster-ingress-operator/pull/1143) * [OCPBUGS-41112](https://issues.redhat.com/browse/OCPBUGS-41112): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.18 [#1140](https://github.com/openshift/cluster-ingress-operator/pull/1140) * [OCPBUGS-39151](https://issues.redhat.com/browse/OCPBUGS-39151): Add Missing Scope Change Instructions [#1135](https://github.com/openshift/cluster-ingress-operator/pull/1135) * [OCPBUGS-38871](https://issues.redhat.com/browse/OCPBUGS-38871): ingress: deployment: explicitly set DeploymentStrategy in SingleReplica case [#1134](https://github.com/openshift/cluster-ingress-operator/pull/1134) * [OCPBUGS-37491](https://issues.redhat.com/browse/OCPBUGS-37491): Ingress operator status not degraded when canary route fails [#1125](https://github.com/openshift/cluster-ingress-operator/pull/1125) * [OCPBUGS-38217](https://issues.redhat.com/browse/OCPBUGS-38217): Clear LB Status Parameters on LB Type Change [#1126](https://github.com/openshift/cluster-ingress-operator/pull/1126) * [OCPBUGS-34418](https://issues.redhat.com/browse/OCPBUGS-34418): Allow router pods to use the "restricted" SCC [#1064](https://github.com/openshift/cluster-ingress-operator/pull/1064) * [OCPBUGS-38441](https://issues.redhat.com/browse/OCPBUGS-38441): Resolve DNS Resolution CI Flakes in Subnets and EIP E2E [#1127](https://github.com/openshift/cluster-ingress-operator/pull/1127) * [OCPBUGS-38079](https://issues.redhat.com/browse/OCPBUGS-38079): Bump controller-runtime to v0.18.4 [#1122](https://github.com/openshift/cluster-ingress-operator/pull/1122) * [NE-1798](https://issues.redhat.com/browse/NE-1798): API bump for promotion of eipAllocation from feature gates to GA. [#1118](https://github.com/openshift/cluster-ingress-operator/pull/1118) * [NE-1688](https://issues.redhat.com/browse/NE-1688): Enable Azure MSI authentication for ARO HCP [#1119](https://github.com/openshift/cluster-ingress-operator/pull/1119) * [NE-1674](https://issues.redhat.com/browse/NE-1674): Add LB EIP Allocation for AWS [#1109](https://github.com/openshift/cluster-ingress-operator/pull/1109) * [NE-1531](https://issues.redhat.com/browse/NE-1531): Fix Initialization of NLB Status Parameters [#1114](https://github.com/openshift/cluster-ingress-operator/pull/1114) * [NE-1531](https://issues.redhat.com/browse/NE-1531): AWS Subnet Selection [#1046](https://github.com/openshift/cluster-ingress-operator/pull/1046) * [NE-1273](https://issues.redhat.com/browse/NE-1273): Add a watch to the ingress operator so it will recreate the gwapi crds [#1106](https://github.com/openshift/cluster-ingress-operator/pull/1106) * [OCPBUGS-37627](https://issues.redhat.com/browse/OCPBUGS-37627): Fix getRouteHost error handling [#1110](https://github.com/openshift/cluster-ingress-operator/pull/1110) * [NE-1208](https://issues.redhat.com/browse/NE-1208): Gateway API E2E Testing [#1023](https://github.com/openshift/cluster-ingress-operator/pull/1023) * [OCPBUGS-31664](https://issues.redhat.com/browse/OCPBUGS-31664): Fix SyncLoadBalancerFailed status message of IngressController [#1102](https://github.com/openshift/cluster-ingress-operator/pull/1102) * [OCPBUGS-36465](https://issues.redhat.com/browse/OCPBUGS-36465): Delete and recreate canary route to clear spec.host [#1095](https://github.com/openshift/cluster-ingress-operator/pull/1095) * [OCPBUGS-34413](https://issues.redhat.com/browse/OCPBUGS-34413): Refine logging for accurate infra CR status updates [#1103](https://github.com/openshift/cluster-ingress-operator/pull/1103) * [OCPBUGS-35342](https://issues.redhat.com/browse/OCPBUGS-35342): Add e2e test for connect timeout [#1084](https://github.com/openshift/cluster-ingress-operator/pull/1084) * NO-JIRA: Add grzpiotrowski to OWNERS [#1090](https://github.com/openshift/cluster-ingress-operator/pull/1090) * NO-JIRA: addowner-Thealisyed [#1091](https://github.com/openshift/cluster-ingress-operator/pull/1091) * [OCPBUGS-35356](https://issues.redhat.com/browse/OCPBUGS-35356): Retry IngressController updates in router status E2E [#1085](https://github.com/openshift/cluster-ingress-operator/pull/1085) * [OCPBUGS-9037](https://issues.redhat.com/browse/OCPBUGS-9037): Change Canary to use passthrough route [#978](https://github.com/openshift/cluster-ingress-operator/pull/978) * [OCPBUGS-35368](https://issues.redhat.com/browse/OCPBUGS-35368): Add Regexp Anchor to TestAll [#1087](https://github.com/openshift/cluster-ingress-operator/pull/1087) * [OCPBUGS-23221](https://issues.redhat.com/browse/OCPBUGS-23221): internalServiceChanged: Fix target port logic [#1052](https://github.com/openshift/cluster-ingress-operator/pull/1052) * [OCPBUGS-34262](https://issues.redhat.com/browse/OCPBUGS-34262): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.17 [#1067](https://github.com/openshift/cluster-ingress-operator/pull/1067) * [NE-1400](https://issues.redhat.com/browse/NE-1400): Bump to OSSM 2.5 and Gateway API v0.6.2 CRDs [#1018](https://github.com/openshift/cluster-ingress-operator/pull/1018) * [OCPBUGS-33792](https://issues.redhat.com/browse/OCPBUGS-33792): Bump openshift/library-go to resolve NewPrometheusClient E2E failures [#1054](https://github.com/openshift/cluster-ingress-operator/pull/1054) * [OCPBUGS-32887](https://issues.redhat.com/browse/OCPBUGS-32887): Allow operator to update Route spec.subdomain [#1047](https://github.com/openshift/cluster-ingress-operator/pull/1047) * [OCPBUGS-32942](https://issues.redhat.com/browse/OCPBUGS-32942): Bump controller-runtime to v0.17.3 [#1050](https://github.com/openshift/cluster-ingress-operator/pull/1050) * [OCPBUGS-28673](https://issues.redhat.com/browse/OCPBUGS-28673): implement connect timeout tuning option [#1035](https://github.com/openshift/cluster-ingress-operator/pull/1035) * [NE-1317](https://issues.redhat.com/browse/NE-1317): manifests - add ingress capability annotation [#950](https://github.com/openshift/cluster-ingress-operator/pull/950) * [OCPBUGS-32371](https://issues.redhat.com/browse/OCPBUGS-32371): Bump openshift/api, and update CRD generation [#1045](https://github.com/openshift/cluster-ingress-operator/pull/1045) * [OCPBUGS-25193](https://issues.redhat.com/browse/OCPBUGS-25193): Add vnet subnet read and join permission for azure [#1029](https://github.com/openshift/cluster-ingress-operator/pull/1029) * [OCPBUGS-30834](https://issues.redhat.com/browse/OCPBUGS-30834): Update to go 1.21 [#1040](https://github.com/openshift/cluster-ingress-operator/pull/1040) * [OCPBUGS-31722](https://issues.redhat.com/browse/OCPBUGS-31722): Use centos7 tag for quay.io/centos7/httpd-24-centos7 image [#1037](https://github.com/openshift/cluster-ingress-operator/pull/1037) * [OCPBUGS-3522](https://issues.redhat.com/browse/OCPBUGS-3522): Include recent errors in canary checks fail [#865](https://github.com/openshift/cluster-ingress-operator/pull/865) * [OCPBUGS-30091](https://issues.redhat.com/browse/OCPBUGS-30091): TestHostNetworkPortBinding: Delete t.Parallel() [#1032](https://github.com/openshift/cluster-ingress-operator/pull/1032) * [CFE-987](https://issues.redhat.com/browse/CFE-987): Use RouterExternalCertificate feature gate for adding ROUTER_ENABLE_EXTERNAL_CERTIFICATE env var to the router pods [#1017](https://github.com/openshift/cluster-ingress-operator/pull/1017) * [CORS-2317](https://issues.redhat.com/browse/CORS-2317): Add Ingress LB IPs to Infra CR and set DNS unmanaged when BYO DNS is enabled [#1016](https://github.com/openshift/cluster-ingress-operator/pull/1016) * [OCPBUGS-28596](https://issues.redhat.com/browse/OCPBUGS-28596): Updating ose-cluster-ingress-operator-container image to be consistent with ART for 4.16 [#1020](https://github.com/openshift/cluster-ingress-operator/pull/1020) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#1019](https://github.com/openshift/cluster-ingress-operator/pull/1019) * [NE-1490](https://issues.redhat.com/browse/NE-1490): update to go v1.20 [#1012](https://github.com/openshift/cluster-ingress-operator/pull/1012) * [OCPBUGS-15253](https://issues.redhat.com/browse/OCPBUGS-15253): Include namespace in prometheus alerts IngressWithoutClassName and UnmanagedRoutes [#980](https://github.com/openshift/cluster-ingress-operator/pull/980) * [CCO-249](https://issues.redhat.com/browse/CCO-249): Replace GCP role with explicit permissions [#844](https://github.com/openshift/cluster-ingress-operator/pull/844) * [OCPBUGS-25006](https://issues.redhat.com/browse/OCPBUGS-25006): Updating ose-cluster-ingress-operator-container image to be consistent with ART [#1006](https://github.com/openshift/cluster-ingress-operator/pull/1006) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert " OCPBUGS-24531 Skip CI for scope change until OCPBUGS-24044 is resolved" [#1011](https://github.com/openshift/cluster-ingress-operator/pull/1011) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Revert "Merge pull request #1007 from candita/OCPBUGS-24531-SkipScopeChangeTest" and add changes to skip test only for Azure and GCP [#1008](https://github.com/openshift/cluster-ingress-operator/pull/1008) * [OCPBUGS-24531](https://issues.redhat.com/browse/OCPBUGS-24531): Skip CI for scope change until OCPBUGS-24044 is resolved [#1007](https://github.com/openshift/cluster-ingress-operator/pull/1007) * [OCPVE-780](https://issues.redhat.com/browse/OCPVE-780): annotate credentials request manifests [#995](https://github.com/openshift/cluster-ingress-operator/pull/995) * [OCPBUGS-23742](https://issues.redhat.com/browse/OCPBUGS-23742): Bump controller-runtime to v0.16.3 [#1001](https://github.com/openshift/cluster-ingress-operator/pull/1001) * [NE-1402](https://issues.redhat.com/browse/NE-1402): Add service endpoint override capability to IBM DNS provider [#990](https://github.com/openshift/cluster-ingress-operator/pull/990) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Revert "OCPBUGS-16762: Bump openshift/api for container.maxLength fix" [#982](https://github.com/openshift/cluster-ingress-operator/pull/982) * [OCPBUGS-14994](https://issues.redhat.com/browse/OCPBUGS-14994): Don't add clientca-configmap finalizer if deleting [#948](https://github.com/openshift/cluster-ingress-operator/pull/948) * [OCPBUGS-22020](https://issues.redhat.com/browse/OCPBUGS-22020): Bump golang.org/x/net for CVE-2023-44487 [#985](https://github.com/openshift/cluster-ingress-operator/pull/985) * [OCPBUGS-21803](https://issues.redhat.com/browse/OCPBUGS-21803): test/e2e: Add test case for 2000000 maxConnections [#983](https://github.com/openshift/cluster-ingress-operator/pull/983) * [OCPBUGS-20192](https://issues.redhat.com/browse/OCPBUGS-20192): Require non-readonly filesystem in router container [#981](https://github.com/openshift/cluster-ingress-operator/pull/981) * [OCPBUGS-16762](https://issues.redhat.com/browse/OCPBUGS-16762): Bump openshift/api for container.maxLength fix [#979](https://github.com/openshift/cluster-ingress-operator/pull/979) * [OCPBUGS-3541](https://issues.redhat.com/browse/OCPBUGS-3541): Don't create route metrics for ingress controllers that are not admitted [#869](https://github.com/openshift/cluster-ingress-operator/pull/869) * [OCPBUGS-18248](https://issues.redhat.com/browse/OCPBUGS-18248): Prevent GatewayClass from getting recreated [#975](https://github.com/openshift/cluster-ingress-operator/pull/975) * [OCPBUGS-19268](https://issues.redhat.com/browse/OCPBUGS-19268): Updating ose-cluster-ingress-operator images to be consistent with ART [#977](https://github.com/openshift/cluster-ingress-operator/pull/977) * [OCPBUGS-15900](https://issues.redhat.com/browse/OCPBUGS-15900): TestMTLSWithCRLs: only try to parse HTTP status code from curl output when stdout is long enough. [#973](https://github.com/openshift/cluster-ingress-operator/pull/973) * [OCPBUGS-3356](https://issues.redhat.com/browse/OCPBUGS-3356): E2E test for cookie length truncation [#871](https://github.com/openshift/cluster-ingress-operator/pull/871) * [OCPBUGS-15978](https://issues.redhat.com/browse/OCPBUGS-15978): Check public DNS zone when reporting status [#967](https://github.com/openshift/cluster-ingress-operator/pull/967) * [OCPBUGS-17359](https://issues.redhat.com/browse/OCPBUGS-17359): test/e2e: Don't use openshift/origin-node [#970](https://github.com/openshift/cluster-ingress-operator/pull/970) * [NE-1140](https://issues.redhat.com/browse/NE-1140), [NE-1145](https://issues.redhat.com/browse/NE-1145): Set/delete HTTP request/response headers via IngressController API [#872](https://github.com/openshift/cluster-ingress-operator/pull/872) * [OCPBUGS-16089](https://issues.redhat.com/browse/OCPBUGS-16089): Set spec.subdomain on the canary route [#965](https://github.com/openshift/cluster-ingress-operator/pull/965) * [OCPBUGS-14995](https://issues.redhat.com/browse/OCPBUGS-14995): desiredRouterDeployment: Set HostPort if needed [#947](https://github.com/openshift/cluster-ingress-operator/pull/947) * [OCPBUGS-10875](https://issues.redhat.com/browse/OCPBUGS-10875): gateway-service-dns: Set DNS policy appropriately [#934](https://github.com/openshift/cluster-ingress-operator/pull/934) * [NE-1244](https://issues.redhat.com/browse/NE-1244): Use permissions instead of the "Contributor" role in Azure CredentialsRequest [#929](https://github.com/openshift/cluster-ingress-operator/pull/929) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): README: Fix Bugzilla link [#968](https://github.com/openshift/cluster-ingress-operator/pull/968) * [RFE-3007](https://issues.redhat.com/browse/RFE-3007): Expose option-contstats as an unsupported option [#887](https://github.com/openshift/cluster-ingress-operator/pull/887) * [NE-1189](https://issues.redhat.com/browse/NE-1189): Refactor Test_desiredLoadBalancerService [#886](https://github.com/openshift/cluster-ingress-operator/pull/886) * [NE-1187](https://issues.redhat.com/browse/NE-1187): Use t.Run for table-driven tests [#884](https://github.com/openshift/cluster-ingress-operator/pull/884) * [NE-1183](https://issues.redhat.com/browse/NE-1183): Rename unit tests for specific functions [#880](https://github.com/openshift/cluster-ingress-operator/pull/880) * [NE-1269](https://issues.redhat.com/browse/NE-1269): Replace bindata using embed [#905](https://github.com/openshift/cluster-ingress-operator/pull/905) * [RFE-3765](https://issues.redhat.com/browse/RFE-3765): Allow Ingress to Modify the HAProxy Log Length when using a Sidecar [#900](https://github.com/openshift/cluster-ingress-operator/pull/900) * [OCPBUGS-9274](https://issues.redhat.com/browse/OCPBUGS-9274): canary: Tolerate infra node NoExecute taint [#932](https://github.com/openshift/cluster-ingress-operator/pull/932) * [OCPBUGS-7546](https://issues.redhat.com/browse/OCPBUGS-7546): Allow only 1 disruption with 3 replicas [#931](https://github.com/openshift/cluster-ingress-operator/pull/931) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Fix previous attempt of adding a missing trailing dot to hostname [#956](https://github.com/openshift/cluster-ingress-operator/pull/956) * [OCPBUGS-14396](https://issues.redhat.com/browse/OCPBUGS-14396): Set controller-runtime logger to a null logger for E2E [#946](https://github.com/openshift/cluster-ingress-operator/pull/946) * [OCPBUGS-14998](https://issues.redhat.com/browse/OCPBUGS-14998): Only use RoleARN for Route53 API [#951](https://github.com/openshift/cluster-ingress-operator/pull/951) * [OCPBUGS-15100](https://issues.redhat.com/browse/OCPBUGS-15100): Create valid DNS names for Gateway API on GCP [#949](https://github.com/openshift/cluster-ingress-operator/pull/949) * [OCPBUGS-13106](https://issues.redhat.com/browse/OCPBUGS-13106): Add ingress controller status logging on waitForIngressControllerCondition [#924](https://github.com/openshift/cluster-ingress-operator/pull/924) * [OCPBUGS-13190](https://issues.redhat.com/browse/OCPBUGS-13190): Avoid spurious updates for internalTrafficPolicy [#927](https://github.com/openshift/cluster-ingress-operator/pull/927) * [OCPBUGS-13810](https://issues.redhat.com/browse/OCPBUGS-13810): Update TestAWSELBConnectionIdleTimeout to not use wildcard DNS record [#944](https://github.com/openshift/cluster-ingress-operator/pull/944) * [NE-1294](https://issues.redhat.com/browse/NE-1294): Add support for AWS shared VPC in another account [#928](https://github.com/openshift/cluster-ingress-operator/pull/928) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Enable Azure Workload Identity authentication. [#906](https://github.com/openshift/cluster-ingress-operator/pull/906) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#939](https://github.com/openshift/cluster-ingress-operator/pull/939) * [OCPBUGS-13963](https://issues.redhat.com/browse/OCPBUGS-13963): Bump vendors k8s libraries to 0.27.2 [#936](https://github.com/openshift/cluster-ingress-operator/pull/936) * Revert "OCPBUGS-6661, OCPBUGS-9464: Move mTLS CRL handling into the router, and fix accidental duplication of CRLs" [#938](https://github.com/openshift/cluster-ingress-operator/pull/938) * [OCPBUGS-6661](https://issues.redhat.com/browse/OCPBUGS-6661), [OCPBUGS-9464](https://issues.redhat.com/browse/OCPBUGS-9464): Move mTLS CRL handling into the router, and fix accidental duplication of CRLs [#930](https://github.com/openshift/cluster-ingress-operator/pull/930) * [OCPBUGS-5478](https://issues.redhat.com/browse/OCPBUGS-5478): add UBI based Dockerfile [#925](https://github.com/openshift/cluster-ingress-operator/pull/925) * [CCO-318](https://issues.redhat.com/browse/CCO-318): Read feature gates for future usage [#908](https://github.com/openshift/cluster-ingress-operator/pull/908) * [OCPBUGS-12913](https://issues.redhat.com/browse/OCPBUGS-12913): Deflake TestRouterCompressionOperation [#920](https://github.com/openshift/cluster-ingress-operator/pull/920) * [OCPBUGS-6784](https://issues.redhat.com/browse/OCPBUGS-6784): bump controller-runtime to fix the multi namespace cache indexing [#913](https://github.com/openshift/cluster-ingress-operator/pull/913) * [OCPBUGS-12579](https://issues.redhat.com/browse/OCPBUGS-12579): Address CVE-2022-41723 [#915](https://github.com/openshift/cluster-ingress-operator/pull/915) * [OCPBUGS-12790](https://issues.redhat.com/browse/OCPBUGS-12790): Replace Bugzilla link with Red Hat Issue Tracker [#916](https://github.com/openshift/cluster-ingress-operator/pull/916) * [OCPBUGS-10714](https://issues.redhat.com/browse/OCPBUGS-10714): gatewayclass: Update for OSSM 2.4 API change [#901](https://github.com/openshift/cluster-ingress-operator/pull/901) * [OCPBUGS-10189](https://issues.redhat.com/browse/OCPBUGS-10189): Updating ose-cluster-ingress-operator images to be consistent with ART [#898](https://github.com/openshift/cluster-ingress-operator/pull/898) * [OCPBUGS-10846](https://issues.redhat.com/browse/OCPBUGS-10846): Fix TestClientTLS flakes [#904](https://github.com/openshift/cluster-ingress-operator/pull/904) * [NE-1184](https://issues.redhat.com/browse/NE-1184): Test_desiredHttpErrorCodeConfigMap: Kill dead code and fix format [#881](https://github.com/openshift/cluster-ingress-operator/pull/881) * [OCPBUGS-4054](https://issues.redhat.com/browse/OCPBUGS-4054): configurable-route: Don't use NewKindWithCache [#860](https://github.com/openshift/cluster-ingress-operator/pull/860) * [NE-1186](https://issues.redhat.com/browse/NE-1186): Test_getRR: Fix typo: "excepted" → "expected" [#883](https://github.com/openshift/cluster-ingress-operator/pull/883) * [CORS-2467](https://issues.redhat.com/browse/CORS-2467): dns: azure: use azidentity with an adapter [#846](https://github.com/openshift/cluster-ingress-operator/pull/846) * [NE-1105](https://issues.redhat.com/browse/NE-1105): Add support for Gateway API [#890](https://github.com/openshift/cluster-ingress-operator/pull/890) * [OCPBUGS-7424](https://issues.redhat.com/browse/OCPBUGS-7424): Bump vendored k8s libraries to 1.26.1 [#888](https://github.com/openshift/cluster-ingress-operator/pull/888) * [CFE-679](https://issues.redhat.com/browse/CFE-679): Add user defined tags to the created DNS resources [#874](https://github.com/openshift/cluster-ingress-operator/pull/874) * [OCPBUGS-6247](https://issues.redhat.com/browse/OCPBUGS-6247): Updating ose-cluster-ingress-operator images to be consistent with ART [#862](https://github.com/openshift/cluster-ingress-operator/pull/862) * [CORS-2072](https://issues.redhat.com/browse/CORS-2072): GCP - Parse Zone ID with a project ID embedded [#855](https://github.com/openshift/cluster-ingress-operator/pull/855) * [NE-1092](https://issues.redhat.com/browse/NE-1092): Add proxy protocol support for IBMCloud loadbalancers [#812](https://github.com/openshift/cluster-ingress-operator/pull/812) * [OCPBUGS-6384](https://issues.redhat.com/browse/OCPBUGS-6384): Address CVE-2022-41717 [#876](https://github.com/openshift/cluster-ingress-operator/pull/876) * [OCPBUGS-4827](https://issues.redhat.com/browse/OCPBUGS-4827): Add missing AWS permission for ListTagsForResources [#868](https://github.com/openshift/cluster-ingress-operator/pull/868) * [OCPBUGS-6701](https://issues.redhat.com/browse/OCPBUGS-6701): Avoid spurious updates for scope in IngressClass [#879](https://github.com/openshift/cluster-ingress-operator/pull/879) * [OCPBUGS-6698](https://issues.redhat.com/browse/OCPBUGS-6698): Fix conflict error message in ensureNodePortService [#877](https://github.com/openshift/cluster-ingress-operator/pull/877) * [OCPBUGS-6700](https://issues.redhat.com/browse/OCPBUGS-6700): updateIngressClass: Fix log message [#878](https://github.com/openshift/cluster-ingress-operator/pull/878) * [NE-1124](https://issues.redhat.com/browse/NE-1124): Add support for External platform to CIO [#873](https://github.com/openshift/cluster-ingress-operator/pull/873) * [OCPBUGS-4573](https://issues.redhat.com/browse/OCPBUGS-4573): Target metrics port by name in internal service [#864](https://github.com/openshift/cluster-ingress-operator/pull/864) * [OCPBUGS-434](https://issues.redhat.com/browse/OCPBUGS-434): Absorb PodsScheduled condition into MinAvailable [#854](https://github.com/openshift/cluster-ingress-operator/pull/854) * [OCPBUGS-4759](https://issues.redhat.com/browse/OCPBUGS-4759): Do not manage DNS for an ingresscontroller with domain mismatch in GCP [#866](https://github.com/openshift/cluster-ingress-operator/pull/866) * [OCPBUGS-4703](https://issues.redhat.com/browse/OCPBUGS-4703): Replace liveness-grace-period-seconds annotation [#863](https://github.com/openshift/cluster-ingress-operator/pull/863) * [OCPBUGS-3404](https://issues.redhat.com/browse/OCPBUGS-3404): Bump openshift/api for matchExpressions doc fix [#856](https://github.com/openshift/cluster-ingress-operator/pull/856) * [OPNET-133](https://issues.redhat.com/browse/OPNET-133): Support remote worker [#858](https://github.com/openshift/cluster-ingress-operator/pull/858) * [OCPBUGS-1725](https://issues.redhat.com/browse/OCPBUGS-1725): Ingress controller should not have affinity policy in single-replica clusters [#810](https://github.com/openshift/cluster-ingress-operator/pull/810) * [OCPBUGS-1807](https://issues.redhat.com/browse/OCPBUGS-1807): Fix bad `handleSingleNode4Dot11Upgrade` log message [#808](https://github.com/openshift/cluster-ingress-operator/pull/808) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/992b43b3cf3e1784bfe8d3083229c7ecb410e7e3...) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/2076f3d0e4fea6fca54028ec7831407173ea81f5) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): enable pod security admission for techpreview [#1440](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1440) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): make the bootstrap kube-apiserver honor cluster-wide featuregates [#1439](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1439) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#1445](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1445) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/336ffd5e7491f565faccf843571303377b1d4825...2076f3d0e4fea6fca54028ec7831407173ea81f5) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/b108134de5b1c7ef179fc523ffd62bc5898106a3) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): honor feature gates during bootstrapping [#695](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/695) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard pod set readiness probe endpoint explicitly [#699](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/699) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/9243e022c42c6d55e1d97a15ed51831f6080984a...b108134de5b1c7ef179fc523ffd62bc5898106a3) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/845ae423e831b1cacf0bcae5e6528f1d21b5ddf2) * [OCPBUGS-7369](https://issues.redhat.com/browse/OCPBUGS-7369): Guard controller: set the readiness probe endpoint explicitly [#462](https://github.com/openshift/cluster-kube-scheduler-operator/pull/462) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/e0b6bf9c4ddb0da9268d504d23ca2ca11880d970...845ae423e831b1cacf0bcae5e6528f1d21b5ddf2) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/) * [OCPBUGS-57807](https://issues.redhat.com/browse/OCPBUGS-57807): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.20 [#124](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/124) * [OCPBUGS-45640](https://issues.redhat.com/browse/OCPBUGS-45640): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.19 [#122](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/122) * [API-1835](https://issues.redhat.com/browse/API-1835): bump library-go [#120](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/120) * [OCPBUGS-20062](https://issues.redhat.com/browse/OCPBUGS-20062): "gracefully" shutdown KSVM pod. [#118](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/118) * NO-JIRA: operator/starter.go: don't report an error on shutdown [#117](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/117) * [OCPBUGS-41169](https://issues.redhat.com/browse/OCPBUGS-41169): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.18 [#116](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/116) * NO-JIRA: bump(*) [#113](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/113) * [OCPBUGS-34306](https://issues.redhat.com/browse/OCPBUGS-34306): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.17 [#110](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/110) * [OCPBUGS-34306](https://issues.redhat.com/browse/OCPBUGS-34306): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.17 [#109](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/109) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#107](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/107) * [OCPBUGS-29567](https://issues.redhat.com/browse/OCPBUGS-29567): Apply hypershift cluster-profile for ibm-cloud-managed [#106](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/106) * [OCPBUGS-27930](https://issues.redhat.com/browse/OCPBUGS-27930): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART for 4.16 [#103](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/103) * [OCPBUGS-24989](https://issues.redhat.com/browse/OCPBUGS-24989): Updating ose-cluster-kube-storage-version-migrator-operator-container image to be consistent with ART [#101](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/101) * [OCPBUGS-21738](https://issues.redhat.com/browse/OCPBUGS-21738): bump library-go to include switch to HTTP/1.1 [#95](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/95) * [OCPBUGS-19253](https://issues.redhat.com/browse/OCPBUGS-19253): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#94](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/94) * Revert "specify master node selector on migrator pod" [#93](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/93) * [OCPBUGS-17170](https://issues.redhat.com/browse/OCPBUGS-17170): specify master node selector on migrator pod [#92](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/92) * [OCPBUGS-16513](https://issues.redhat.com/browse/OCPBUGS-16513): bump(*): update to 1.27.1 [#91](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/91) * Fix operator doc in README [#90](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/90) * Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#89](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/89) * [OCPBUGS-6240](https://issues.redhat.com/browse/OCPBUGS-6240): Updating ose-cluster-kube-storage-version-migrator-operator images to be consistent with ART [#87](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/87) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/12d050abd0cf37dae8973d453930bcf494a2499b...) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/) * [OCPBUGS-19856](https://issues.redhat.com/browse/OCPBUGS-19856): Improve log message when searching for node by InternalDNS [#269](https://github.com/openshift/cluster-machine-approver/pull/269) * No-Jira: ignore test file csr_check_test.go [#270](https://github.com/openshift/cluster-machine-approver/pull/270) * [OCPCLOUD-2832](https://issues.redhat.com/browse/OCPCLOUD-2832): Bump k8s 1.32 [#268](https://github.com/openshift/cluster-machine-approver/pull/268) * [OCPBUGS-48056](https://issues.redhat.com/browse/OCPBUGS-48056): Fix race condition in CO status controller test [#264](https://github.com/openshift/cluster-machine-approver/pull/264) * [OCPCLOUD-2787](https://issues.redhat.com/browse/OCPCLOUD-2787): Deploy CAPI manifests in CustomNoUpgrade [#262](https://github.com/openshift/cluster-machine-approver/pull/262) * [OCPBUGS-36404](https://issues.redhat.com/browse/OCPBUGS-36404): Filter CSRs by signerName [#243](https://github.com/openshift/cluster-machine-approver/pull/243) * [OCPBUGS-45434](https://issues.redhat.com/browse/OCPBUGS-45434): Updating ose-cluster-machine-approver-container image to be consistent with ART for 4.19 [#247](https://github.com/openshift/cluster-machine-approver/pull/247) * [OCPBUGS-45306](https://issues.redhat.com/browse/OCPBUGS-45306): Ensure trailing dots on DNS names do not block serving cert auth [#253](https://github.com/openshift/cluster-machine-approver/pull/253) * [OCPBUGS-45306](https://issues.redhat.com/browse/OCPBUGS-45306): Client internal DNS checks should ignore trailing dot [#248](https://github.com/openshift/cluster-machine-approver/pull/248) * [OCPCLOUD-2736](https://issues.redhat.com/browse/OCPCLOUD-2736): Update to k8s 1.31 [#240](https://github.com/openshift/cluster-machine-approver/pull/240) * [OCPCLOUD-2703](https://issues.redhat.com/browse/OCPCLOUD-2703): OWNERS: update subcomponent [#239](https://github.com/openshift/cluster-machine-approver/pull/239) * [OCPBUGS-39526](https://issues.redhat.com/browse/OCPBUGS-39526): Updating ose-cluster-machine-approver-container image to be consistent with ART for 4.18 [#238](https://github.com/openshift/cluster-machine-approver/pull/238) * [OCPBUGS-36871](https://issues.redhat.com/browse/OCPBUGS-36871): Client internal DNS checks should be case insensitive [#237](https://github.com/openshift/cluster-machine-approver/pull/237) * NO-JIRA: Update OWNERS [#236](https://github.com/openshift/cluster-machine-approver/pull/236) * [OCPCLOUD-2602](https://issues.redhat.com/browse/OCPCLOUD-2602): Update dependencies to Kube 1.30 [#235](https://github.com/openshift/cluster-machine-approver/pull/235) * [OCPBUGS-34138](https://issues.redhat.com/browse/OCPBUGS-34138): Updating ose-cluster-machine-approver-container image to be consistent with ART for 4.17 [#232](https://github.com/openshift/cluster-machine-approver/pull/232) * [OCPBUGS-33644](https://issues.redhat.com/browse/OCPBUGS-33644): check for machine crd before listing machines [#231](https://github.com/openshift/cluster-machine-approver/pull/231) * [OCPBUGS-29568](https://issues.redhat.com/browse/OCPBUGS-29568): Apply hypershift cluster-profile for ibm-cloud-managed [#229](https://github.com/openshift/cluster-machine-approver/pull/229) * [OCPBUGS-28230](https://issues.redhat.com/browse/OCPBUGS-28230): add FallbackToLogsOnError for easier debugging [#227](https://github.com/openshift/cluster-machine-approver/pull/227) * [OCPBUGS-26116](https://issues.redhat.com/browse/OCPBUGS-26116): Add Snyk file to exclude vendor directory on scan [#225](https://github.com/openshift/cluster-machine-approver/pull/225) * [OCPCLOUD-2417](https://issues.redhat.com/browse/OCPCLOUD-2417): Update to kube 1.29 and controller-runtime 0.17.0 [#224](https://github.com/openshift/cluster-machine-approver/pull/224) * [OCPBUGS-23544](https://issues.redhat.com/browse/OCPBUGS-23544): Increase concurrent reconciles to 10 [#222](https://github.com/openshift/cluster-machine-approver/pull/222) * [OCPBUGS-25582](https://issues.redhat.com/browse/OCPBUGS-25582): Updating ose-cluster-machine-approver-container image to be consistent with ART [#223](https://github.com/openshift/cluster-machine-approver/pull/223) * [OCPBUGS-24985](https://issues.redhat.com/browse/OCPBUGS-24985): Updating ose-cluster-machine-approver-container image to be consistent with ART [#218](https://github.com/openshift/cluster-machine-approver/pull/218) * [OCPBUGS-24154](https://issues.redhat.com/browse/OCPBUGS-24154): Updating ose-cluster-machine-approver-container image to be consistent with ART [#217](https://github.com/openshift/cluster-machine-approver/pull/217) * [OCPCLOUD-2277](https://issues.redhat.com/browse/OCPCLOUD-2277): Ensure Cluster Machine Approver metrics are only available via HTTPS [#211](https://github.com/openshift/cluster-machine-approver/pull/211) * [OCPBUGS-21594](https://issues.redhat.com/browse/OCPBUGS-21594): Filter non node CSRs in metrics [#208](https://github.com/openshift/cluster-machine-approver/pull/208) * [OCPBUGS-21793](https://issues.redhat.com/browse/OCPBUGS-21793): Bump x/net package to v0.17.0 [#204](https://github.com/openshift/cluster-machine-approver/pull/204) * Update OWNERS [#205](https://github.com/openshift/cluster-machine-approver/pull/205) * [OCPBUGS-19250](https://issues.redhat.com/browse/OCPBUGS-19250): Updating ose-cluster-machine-approver images to be consistent with ART [#201](https://github.com/openshift/cluster-machine-approver/pull/201) * [OCPCLOUD-2181](https://issues.redhat.com/browse/OCPCLOUD-2181): Update K8s dependencies to 1.28 [#203](https://github.com/openshift/cluster-machine-approver/pull/203) * [OCPBUGS-17090](https://issues.redhat.com/browse/OCPBUGS-17090): Set logger for controller runtime [#200](https://github.com/openshift/cluster-machine-approver/pull/200) * [OCPBUGS-18338](https://issues.redhat.com/browse/OCPBUGS-18338): Fix CI by running tests natively by default [#199](https://github.com/openshift/cluster-machine-approver/pull/199) * [OCPBUGS-16156](https://issues.redhat.com/browse/OCPBUGS-16156): check if machine api present [#198](https://github.com/openshift/cluster-machine-approver/pull/198) * handle situation when machine CRD is not present [#191](https://github.com/openshift/cluster-machine-approver/pull/191) * [OCPCLOUD-2044](https://issues.redhat.com/browse/OCPCLOUD-2044): Update to Kubernetes 1.27 deps [#195](https://github.com/openshift/cluster-machine-approver/pull/195) * [OCPBUGS-10171](https://issues.redhat.com/browse/OCPBUGS-10171): Go 1.20 bump with fixed unit tests [#194](https://github.com/openshift/cluster-machine-approver/pull/194) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update node client allowed usages [#189](https://github.com/openshift/cluster-machine-approver/pull/189) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): Update isNodeClientCert to allow for new key usages [#186](https://github.com/openshift/cluster-machine-approver/pull/186) * [OCPBUGS-11225](https://issues.redhat.com/browse/OCPBUGS-11225): approver: fix ECDSA approvals in 1.27 [#184](https://github.com/openshift/cluster-machine-approver/pull/184) * Update TLS Bootstrapping doc links in README [#182](https://github.com/openshift/cluster-machine-approver/pull/182) * Updating ose-cluster-machine-approver images to be consistent with ART [#180](https://github.com/openshift/cluster-machine-approver/pull/180) * Update OWNERS [#179](https://github.com/openshift/cluster-machine-approver/pull/179) * : Update tooling for CMA [#178](https://github.com/openshift/cluster-machine-approver/pull/178) * [OCPCLOUD-1805](https://issues.redhat.com/browse/OCPCLOUD-1805): Port to ginkgo v2 [#176](https://github.com/openshift/cluster-machine-approver/pull/176) * Updating ose-cluster-machine-approver images to be consistent with ART [#174](https://github.com/openshift/cluster-machine-approver/pull/174) * Update OWNERS [#177](https://github.com/openshift/cluster-machine-approver/pull/177) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/60081982654993534de29d224d6a42c251762420...) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/87f8994bfb151b74274363a3daacc5c2ae3880b7) * [OCPBUGS-2439](https://issues.redhat.com/browse/OCPBUGS-2439): set the argument path.udev.data in node exporter [#1800](https://github.com/openshift/cluster-monitoring-operator/pull/1800) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/5a154c3dd01544adc280691be54fec94a5dc8d67...87f8994bfb151b74274363a3daacc5c2ae3880b7) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/6878a2cec16309dcd96aaf03ae0d7db8f37d3cde) * [OCPBUGS-11059](https://issues.redhat.com/browse/OCPBUGS-11059): Fix info log formatting [#1659](https://github.com/openshift/cluster-network-operator/pull/1659) * [OCPBUGS-10319](https://issues.redhat.com/browse/OCPBUGS-10319): HyperShift: Set affinity, tolerations and co-location for all hcp resources created by CNO [#1738](https://github.com/openshift/cluster-network-operator/pull/1738) * [OCPBUGS-8014](https://issues.redhat.com/browse/OCPBUGS-8014): add default noProxy config for Azure [#1722](https://github.com/openshift/cluster-network-operator/pull/1722) * [OCPBUGS-9927](https://issues.redhat.com/browse/OCPBUGS-9927): Enable configuration of node healthz server on ovnkube [#1731](https://github.com/openshift/cluster-network-operator/pull/1731) * [OCPBUGS-5953](https://issues.redhat.com/browse/OCPBUGS-5953): Backport Added missing API field podref to OverlappingRangeIPReservation CRD [Backport 4.12] [#1685](https://github.com/openshift/cluster-network-operator/pull/1685) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Add .hypershift.local to no proxy list [#1706](https://github.com/openshift/cluster-network-operator/pull/1706) * [OCPBUGS-7044](https://issues.redhat.com/browse/OCPBUGS-7044): HyperShift: Do not use proxy for internal routes [#1704](https://github.com/openshift/cluster-network-operator/pull/1704) * [OCPBUGS-4778](https://issues.redhat.com/browse/OCPBUGS-4778): Fix handling of deployment and statefulset updates [#1663](https://github.com/openshift/cluster-network-operator/pull/1663) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/68d109ac3b8605525c2aabc29789415bc302c9c7...6878a2cec16309dcd96aaf03ae0d7db8f37d3cde) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/e2f675373469b69324f306b8d1bba848731dde70) * E2E: Per Core Runtime Tuning Test automation (#509) (#568) [#509](https://github.com/openshift/cluster-node-tuning-operator/pull/509) * E2E: Network stack Pinning tests (#533) [#533](https://github.com/openshift/cluster-node-tuning-operator/pull/533) * Run node selector tests only if we 2 non Performanceworker nodes (#554) [#554](https://github.com/openshift/cluster-node-tuning-operator/pull/554) * skip multiple ranges test if cores < 20 and use core as key to delete cpu siblings (#543) [#543](https://github.com/openshift/cluster-node-tuning-operator/pull/543) * pao: latency-tests: read test log directly from pod (#547) [#547](https://github.com/openshift/cluster-node-tuning-operator/pull/547) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/e40a5156fd9282c6ea3d7f4ac9c9407ae4f326ba...e2f675373469b69324f306b8d1bba848731dde70) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/) * NO-JIRA: operator: annotate image-import-ca configmap with owner [#616](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/616) * [OCPBUGS-48177](https://issues.redhat.com/browse/OCPBUGS-48177): Exclude etcd readiness checks from /readyz to ignore temporary etcd hiccups [#612](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/612) * [MON-4129](https://issues.redhat.com/browse/MON-4129): adjust Prometheus classic histograms 'le' related selectors in relabel config to accommodate the update to Prometheus v3 [#611](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/611) * [OCPBUGS-45701](https://issues.redhat.com/browse/OCPBUGS-45701): Updating ose-cluster-openshift-apiserver-operator-cont… [#607](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/607) * NO-JIRA: Revert Disable ResilientWatchCacheInitialization [#604](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/604) * [OCPBUGS-44693](https://issues.redhat.com/browse/OCPBUGS-44693): Disable ResilientWatchCacheInitialization [#603](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/603) * [OCPBUGS-23435](https://issues.redhat.com/browse/OCPBUGS-23435): bump library-go to bring in workload-conditions fix [#600](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/600) * NO-JIRA: bump dependencies [#598](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/598) * [API-1835](https://issues.redhat.com/browse/API-1835): update to use the latest API [#597](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/597) * [API-1835](https://issues.redhat.com/browse/API-1835): switch OpenshiftDeploymentLatestRevisionClient to use the generic client [#595](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/595) * [API-1835](https://issues.redhat.com/browse/API-1835): update for more apply loops [#592](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/592) * [MULTIARCH-4557](https://issues.redhat.com/browse/MULTIARCH-4557): Sync import mode image config status field in the observed config [#582](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/582) * NO-JIRA: remove unused OperatorClient [#594](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/594) * [API-1835](https://issues.redhat.com/browse/API-1835): last transition time update [#593](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/593) * [API-1835](https://issues.redhat.com/browse/API-1835): update library-go to use new operator client [#584](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/584) * create CRDs from openshift/api [#591](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/591) * [OCPBUGS-41617](https://issues.redhat.com/browse/OCPBUGS-41617): increase openshift-apiserver failureThreshold [#588](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/588) * [OCPBUGS-41232](https://issues.redhat.com/browse/OCPBUGS-41232): Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART for 4.18 [#586](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/586) * NO-JIRA: Bump library-go to add audit logs about events [#587](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/587) * [OCPBUGS-39589](https://issues.redhat.com/browse/OCPBUGS-39589): Rebase 1.30 [#585](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/585) * [OCPBUGS-30492](https://issues.redhat.com/browse/OCPBUGS-30492): bump google.golang.org/protobuf [#583](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/583) * [OCPBUGS-34349](https://issues.redhat.com/browse/OCPBUGS-34349): Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART for 4.17 [#580](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/580) * [OCPBUGS-34349](https://issues.redhat.com/browse/OCPBUGS-34349): Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART for 4.17 [#579](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/579) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): Set required-scc for openshift workloads [#573](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/573) * [WRKLDS-1015](https://issues.redhat.com/browse/WRKLDS-1015): tolerate node-role.kubernetes.io/control-plane:NoExecute [#574](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/574) * [OCPBUGS-29580](https://issues.redhat.com/browse/OCPBUGS-29580): Apply hypershift cluster-profile for ibm-cloud-managed [#572](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/572) * [OCPBUGS-32346](https://issues.redhat.com/browse/OCPBUGS-32346): the apiservice controller waits until bootstrap complete [#575](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/575) * NO-ISSUE: Makefile: fixes test-e2e-encryption-rotation targets [#577](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/577) * NO-ISSUE: fix: TestRedeployOnConfigChange [#576](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/576) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#559](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/559) * [OCPBUGS-18115](https://issues.redhat.com/browse/OCPBUGS-18115): Remove "include.release.openshift.io/ibm-cloud-managed:" annotation [#566](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/566) * [OCPBUGS-18939](https://issues.redhat.com/browse/OCPBUGS-18939): manifest: drop slo latency metrics in favor of sli [#547](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/547) * [WRKLDS-1004](https://issues.redhat.com/browse/WRKLDS-1004): use AlwaysAllow UnhealthyPodEvictionPolicy in PDBs [#562](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/562) * [OCPBUGS-24972](https://issues.redhat.com/browse/OCPBUGS-24972): Updating ose-cluster-openshift-apiserver-operator-container image to be consistent with ART [#561](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/561) * [OCPBUGS-18115](https://issues.redhat.com/browse/OCPBUGS-18115): Remove "include.release.openshift.io/ibm-cloud-managed:" annotation [#551](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/551) * [OCPBUGS-19231](https://issues.redhat.com/browse/OCPBUGS-19231): Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#548](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/548) * [OCPBUGS-21733](https://issues.redhat.com/browse/OCPBUGS-21733): bump library-go to include switch to HTTP/1.1 [#552](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/552) * [WRKLDS-728](https://issues.redhat.com/browse/WRKLDS-728): Capabilities: drop build/apps APIService when capabilities are not enabled [#532](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/532) * switch image-registry cert CM [#545](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/545) * [OCPBUGS-16554](https://issues.redhat.com/browse/OCPBUGS-16554): update dependencies to get rid of goproxy [#546](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/546) * [AUTH-408](https://issues.redhat.com/browse/AUTH-408): bindata: set required-scc [#544](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/544) * Plumb featuregates to the openshift-apiserver [#542](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/542) * allow etcd healthcheck timeout closer to probe timeouts to avoid failing on slower etcd [#540](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/540) * Add AES-GCM encryption tests [#539](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/539) * [OCPBUGS-14010](https://issues.redhat.com/browse/OCPBUGS-14010): increase timeout for probes [#536](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/536) * [OCPBUGS-2765](https://issues.redhat.com/browse/OCPBUGS-2765): Library go bump [#538](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/538) * [OCPBUGS-12813](https://issues.redhat.com/browse/OCPBUGS-12813): Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#534](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/534) * Updating ose-cluster-openshift-apiserver-operator images to be consistent with ART [#525](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/525) * [OCPBUGS-10040](https://issues.redhat.com/browse/OCPBUGS-10040): update openshift/api to include aesgcm provider in the default apiserver schema [#526](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/526) * [API-1509](https://issues.redhat.com/browse/API-1509): Enable AESGCM encryption [#521](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/521) * [OCPBUGS-4343](https://issues.redhat.com/browse/OCPBUGS-4343): update apf configuration to use v1beta3 [#509](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/509) * [OCPBUGS-6233](https://issues.redhat.com/browse/OCPBUGS-6233): Bump dependencies and images [#517](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/517) * [OCPBUGS-5300](https://issues.redhat.com/browse/OCPBUGS-5300): routes/status resources can leak sensitive data, exclude it from audit [#511](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/511) * make api team approver [#506](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/506) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#508](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/508) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/4c5b4882e20944d9c44272551053fccbe16d6451...) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/) * [WRKLDS-844](https://issues.redhat.com/browse/WRKLDS-844): sync: Use more descriptive variable name [#390](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/390) * [WRKLDS-844](https://issues.redhat.com/browse/WRKLDS-844): pkg/operator: Split OCM/RCM status conditions [#387](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/387) * [WRKLDS-954](https://issues.redhat.com/browse/WRKLDS-954): pkg/operator: Remove expired conditional resources [#388](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/388) * [WRKLDS-1676](https://issues.redhat.com/browse/WRKLDS-1676): ocm deployment: Add POD_NAME [#386](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/386) * [WRKLDS-1676](https://issues.redhat.com/browse/WRKLDS-1676): controller manager config: Set leaderElection.name [#385](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/385) * [WRKLDS-1653](https://issues.redhat.com/browse/WRKLDS-1653): bump(k8s): update k8s.io/* dependencies to v1.32.2 [#381](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/381) * [OCPBUGS-47528](https://issues.redhat.com/browse/OCPBUGS-47528): Add team members to the OWNERS file [#373](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/373) * [OCPBUGS-45698](https://issues.redhat.com/browse/OCPBUGS-45698): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART for 4.19 [#372](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/372) * [API-1835](https://issues.redhat.com/browse/API-1835): bump library-go [#370](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/370) * [WRKLDS-1492](https://issues.redhat.com/browse/WRKLDS-1492): Update k8s dependencies to 1.31.1 [#368](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/368) * [OCPBUGS-41227](https://issues.redhat.com/browse/OCPBUGS-41227): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART for 4.18 [#364](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/364) * create CRDs from openshift/api [#367](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/367) * no-jira: OWNERS: remove former employees [#354](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/354) * [OCPBUGS-35801](https://issues.redhat.com/browse/OCPBUGS-35801): nil pointer reference in ocm-operator [#355](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/355) * [WRKLDS-1327](https://issues.redhat.com/browse/WRKLDS-1327): Replace wildcards by explicit list of verbs [#353](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/353) * [WRKLDS-1292](https://issues.redhat.com/browse/WRKLDS-1292): Bump k8s dependencies to 1.30.1 [#352](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/352) * [OCPBUGS-34395](https://issues.redhat.com/browse/OCPBUGS-34395): Move `cluster` Build CR to runlevel 10 to match CRD [#351](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/351) * [OCPBUGS-34077](https://issues.redhat.com/browse/OCPBUGS-34077): Always Disable Default Rolebindings Controller [#346](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/346) * [OCPBUGS-34054](https://issues.redhat.com/browse/OCPBUGS-34054): lots of churn during image registry managed/removed transition [#347](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/347) * [OCPBUILD-9](https://issues.redhat.com/browse/OCPBUILD-9): Adds capabilities for builder & deployer rolebindings controller [#335](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/335) * [AUTH-482](https://issues.redhat.com/browse/AUTH-482): set required-scc for openshift workloads [#336](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/336) * [OCPBUGS-23848](https://issues.redhat.com/browse/OCPBUGS-23848): Bumps opentelemetry dependencies [#341](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/341) * [OCPBUGS-29973](https://issues.redhat.com/browse/OCPBUGS-29973): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART for 4.16 [#337](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/337) * [OCPBUGS-29581](https://issues.redhat.com/browse/OCPBUGS-29581): Apply hypershift cluster-profile for ibm-cloud-managed [#334](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/334) * [OCPBUGS-22969](https://issues.redhat.com/browse/OCPBUGS-22969): Use v1 for flowcontrol API [#316](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/316) * [BUILD-854](https://issues.redhat.com/browse/BUILD-854): Add adambkaplan as approver [#338](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/338) * [OCPBUGS-24888](https://issues.redhat.com/browse/OCPBUGS-24888): Updating ose-cluster-openshift-controller-manager-operator-container image to be consistent with ART [#321](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/321) * [OCPBUGS-28666](https://issues.redhat.com/browse/OCPBUGS-28666): Replace 'coreydaley' with 'sayan-biswas' in OWNERS file [#326](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/326) * [OCPBUGS-23624](https://issues.redhat.com/browse/OCPBUGS-23624): Add .snyk file to exclude vendor and ignore unit tests [#325](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/325) * [WRKLDS-1016](https://issues.redhat.com/browse/WRKLDS-1016): Bump k8s dependencies to 1.29.0 [#324](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/324) * [OCPBUGS-24190](https://issues.redhat.com/browse/OCPBUGS-24190): Disable deployer-controller when deploymentconfig is disabled [#320](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/320) * [OCPBUGS-22956](https://issues.redhat.com/browse/OCPBUGS-22956): Remove blockage of ConfigObserver by build informer HasSynced flag [#315](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/315) * Revert "Revert #300 "API-1666: add image pull secret cleanup controller"" [#314](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/314) * Revert #300 "API-1666: add image pull secret cleanup controller" [#313](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/313) * [API-1642](https://issues.redhat.com/browse/API-1642): add image pull secret cleanup controller [#300](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/300) * [API-1642](https://issues.redhat.com/browse/API-1642): Do not generate image pull secrets for internal registry when internal registry is disabled. [#298](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/298) * [OCPBUGS-21830](https://issues.redhat.com/browse/OCPBUGS-21830): bump(k8s,openshift) to address CVE-2023-44487 [#308](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/308) * [OCPBUGS-20164](https://issues.redhat.com/browse/OCPBUGS-20164): Include Build CRD in manifests [#306](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/306) * [WRKLDS-806](https://issues.redhat.com/browse/WRKLDS-806): Bump kube dependencies to 1.28.2 [#305](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/305) * [OCPBUGS-19136](https://issues.redhat.com/browse/OCPBUGS-19136): Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#304](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/304) * [OCPBUGS-18932](https://issues.redhat.com/browse/OCPBUGS-18932): Always sort disabled controller list [#302](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/302) * [OCPBUGS-18498](https://issues.redhat.com/browse/OCPBUGS-18498): Disable BuildConfigChange controller when Build cap is disabled [#299](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/299) * route-controller-manager deployment updates [#295](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/295) * [OCPBUGS-16072](https://issues.redhat.com/browse/OCPBUGS-16072): Updating Kubernetes and other associated dependencies [#296](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/296) * [OCPBUGS-13926](https://issues.redhat.com/browse/OCPBUGS-13926): change the operator log level to default normal in the deployment [#289](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/289) * [BUILD-582](https://issues.redhat.com/browse/BUILD-582), [OCPBUGS-14638](https://issues.redhat.com/browse/OCPBUGS-14638): bump(k8s): 1.27.1 [#294](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/294) * [OCPBUGS-13926](https://issues.redhat.com/browse/OCPBUGS-13926): add loglevel controller for OCM-o [#292](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/292) * Revert "13895: [WRKLDS-730] route-controller-manager deployment updates" [#293](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/293) * [OCPBUGS-13895](https://issues.redhat.com/browse/OCPBUGS-13895): [WRKLDS-730] route-controller-manager deployment updates [#288](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/288) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#287](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/287) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#286](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/286) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#285](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/285) * Bump golang.org/x/net from 0.5.0 to 0.7.0 [#284](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/284) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#279](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/279) * [OCPBUGS-10568](https://issues.redhat.com/browse/OCPBUGS-10568): migrate to using lease objects for leader election [#282](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/282) * Add Divyanshu Agrawal as a reviewer [#283](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/283) * [OCPBUGS-4343](https://issues.redhat.com/browse/OCPBUGS-4343): update apf configuration to use v1beta3 [#273](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/273) * Updating ose-cluster-openshift-controller-manager-operator images to be consistent with ART [#274](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/274) * [WRKLDS-594](https://issues.redhat.com/browse/WRKLDS-594): bump(k8s): 1.26.1 [#277](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/277) * [OCPBUGS-5275](https://issues.redhat.com/browse/OCPBUGS-5275): remove unnecessary RBAC for leader-locking-ingress-to-route-controller [#276](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/276) * [OCPBUGS-3929](https://issues.redhat.com/browse/OCPBUGS-3929): update apf configuration to use v1beta2 [#272](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/272) * let deployer pods patch/apply replication controllers [#270](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/270) * [Bug 2111979](https://bugzilla.redhat.com/show_bug.cgi?id=2111979): Set openshift.io/run-level to nil in openshift-controller-manager nam… [#269](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/269) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/d1915d130481541b8bacb5b98eddbc1541809d0a...) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/139ac0499ac4d744023827ceb6d16aa6b467be27) * [OCPBUGS-6789](https://issues.redhat.com/browse/OCPBUGS-6789): backport feature gate honoring for PSa label syncer [#98](https://github.com/openshift/cluster-policy-controller/pull/98) * [OCPBUGS-7705](https://issues.redhat.com/browse/OCPBUGS-7705): [release-4.12] update dependencies to point to v0.25.0 [#102](https://github.com/openshift/cluster-policy-controller/pull/102) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/105cc773b37f00be2351c9a4e6df24af94d547c1...139ac0499ac4d744023827ceb6d16aa6b467be27) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/6a815f9b4bcb50e01c1bed2ec945553d7e033a3f) * [OCPBUGS-10918](https://issues.redhat.com/browse/OCPBUGS-10918): update Jenkins to v4.12 [#492](https://github.com/openshift/cluster-samples-operator/pull/492) * [OCPBUGS-7208](https://issues.redhat.com/browse/OCPBUGS-7208): When setting allowedRegistries urls the openshift-samples operator is degraded [#489](https://github.com/openshift/cluster-samples-operator/pull/489) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/212a4553b3bf87d56f2f360b562187a685099c3e...6a815f9b4bcb50e01c1bed2ec945553d7e033a3f) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/2d374a11249588e92be7e46406240cf45b55e07a) * [OCPBUGS-8374](https://issues.redhat.com/browse/OCPBUGS-8374): Add UID to CSO Pod to be able to run with custom SCCs [#347](https://github.com/openshift/cluster-storage-operator/pull/347) * [OCPBUGS-7331](https://issues.redhat.com/browse/OCPBUGS-7331): hypershift: remove inject-proxy annotation from aws-ebs-csi-driver-operator deployment [#337](https://github.com/openshift/cluster-storage-operator/pull/337) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/220a777e094ff6b198007518d0734f9b54a7f9af...2d374a11249588e92be7e46406240cf45b55e07a) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/a5c40317056e4419193f04962c9ca3273eb2408b) * [OCPBUGS-10565](https://issues.redhat.com/browse/OCPBUGS-10565): RetrievePayload: Improve timeouts and cover behavior with tests [#914](https://github.com/openshift/cluster-version-operator/pull/914) * [OCPBUGS-10514](https://issues.redhat.com/browse/OCPBUGS-10514): pkg/cvo/availableupdates: Prioritize conditional risks for largest target version [#913](https://github.com/openshift/cluster-version-operator/pull/913) * [OCPBUGS-8304](https://issues.redhat.com/browse/OCPBUGS-8304): Adding admin-gate ack-4.12-kube-1.26-api-removals-in-4.13 [#908](https://github.com/openshift/cluster-version-operator/pull/908) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/b24d60e55576e1997d6d450ba9106a80983f1512...a5c40317056e4419193f04962c9ca3273eb2408b) ### [console](https://github.com/openshift/console/tree/72e9e3df9cb8890d2800330d545df756f61f9597) * [OCPBUGS-7333](https://issues.redhat.com/browse/OCPBUGS-7333): Add missing SDK extensions descriptions [#12556](https://github.com/openshift/console/pull/12556) * [OCPBUGS-7951](https://issues.redhat.com/browse/OCPBUGS-7951): delete application should delete all part-of resources [#12604](https://github.com/openshift/console/pull/12604) * [OCPBUGS-6036](https://issues.redhat.com/browse/OCPBUGS-6036): Project dropdown order is not as smart as project list page order [#12447](https://github.com/openshift/console/pull/12447) * [OCPBUGS-7800](https://issues.redhat.com/browse/OCPBUGS-7800): add subject kind dropdown in the project access form [#12586](https://github.com/openshift/console/pull/12586) * [OCPBUGS-8339](https://issues.redhat.com/browse/OCPBUGS-8339): disable operator-install-single-namespace.spec.ts until… [#12624](https://github.com/openshift/console/pull/12624) * [OCPBUGS-3892](https://issues.redhat.com/browse/OCPBUGS-3892): Add cluster to query params of websocket requests [#12282](https://github.com/openshift/console/pull/12282) * [OCPBUGS-5092](https://issues.redhat.com/browse/OCPBUGS-5092): Fix to use and set correct secretReference for build-config triggers [#12388](https://github.com/openshift/console/pull/12388) * [OCPBUGS-7895](https://issues.redhat.com/browse/OCPBUGS-7895): Bump helm version to 3.10.1 [#12579](https://github.com/openshift/console/pull/12579) * [OCPBUGS-6873](https://issues.redhat.com/browse/OCPBUGS-6873): The dropdown list component will be covered by deployment details page on Topology page [#12507](https://github.com/openshift/console/pull/12507) * [OCPBUGS-6831](https://issues.redhat.com/browse/OCPBUGS-6831): Fix crash when pinnedResources is null [#12503](https://github.com/openshift/console/pull/12503) * [OCPBUGS-7471](https://issues.redhat.com/browse/OCPBUGS-7471): Right border radius is 0 for the pipeline visualization wrapper in dark mode [#12565](https://github.com/openshift/console/pull/12565) * [OCPBUGS-7506](https://issues.redhat.com/browse/OCPBUGS-7506): Fix different CI issues [#12555](https://github.com/openshift/console/pull/12555) * [OCPBUGS-6966](https://issues.redhat.com/browse/OCPBUGS-6966): Remove description field from the PLR parameters page [#12519](https://github.com/openshift/console/pull/12519) * [OCPBUGS-7437](https://issues.redhat.com/browse/OCPBUGS-7437): Webhook Secret (1 of 2) is not removed when Knative Service is deleted [#12560](https://github.com/openshift/console/pull/12560) * [OCPBUGS-6887](https://issues.redhat.com/browse/OCPBUGS-6887): Show Tag label and tag name if tag is detected in repository PipelineRun list and details page [#12510](https://github.com/openshift/console/pull/12510) * [OCPBUGS-6816](https://issues.redhat.com/browse/OCPBUGS-6816): Repositories list does not show the running pipelinerun as last pipelinerun [#12500](https://github.com/openshift/console/pull/12500) * [OCPBUGS-4072](https://issues.redhat.com/browse/OCPBUGS-4072): Fix rerender loop/crash when bindable-kinds is found but has no status [#12304](https://github.com/openshift/console/pull/12304) * [OCPBUGS-6671](https://issues.redhat.com/browse/OCPBUGS-6671): fix broken pipeline secret [#12474](https://github.com/openshift/console/pull/12474) * [OCPBUGS-6913](https://issues.redhat.com/browse/OCPBUGS-6913): PipelineRun task status overlaps status text [#12516](https://github.com/openshift/console/pull/12516) * [Full changelog](https://github.com/openshift/console/compare/63cb4d6e28e931640f55e9f1dca83ed76db99a46...72e9e3df9cb8890d2800330d545df756f61f9597) ### [console-operator](https://github.com/openshift/console-operator/tree/bb87c5921246a64a59c1c09336c2ab0423330b4d) * [OCPBUGS-6921](https://issues.redhat.com/browse/OCPBUGS-6921): Recover ConsoleNotificationSync after being degraded [#728](https://github.com/openshift/console-operator/pull/728) * [Full changelog](https://github.com/openshift/console-operator/compare/8c938a46686746518cc37e71b444d40d1b4e6c2d...bb87c5921246a64a59c1c09336c2ab0423330b4d) ### [csi-driver-manila, openstack-cinder-csi-driver, openstack-cloud-controller-manager](https://github.com/openshift/cloud-provider-openstack/tree/c21f88a0470f4321943e26b6cb19a8939a300fb9) * [OCPBUGS-6591](https://issues.redhat.com/browse/OCPBUGS-6591): Merge https://github.com/kubernetes/cloud-provider-openstack:release-1.25 into release-4.12 [#174](https://github.com/openshift/cloud-provider-openstack/pull/174) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/3125fe729221139aa8c87b427655669880bbd06c...c21f88a0470f4321943e26b6cb19a8939a300fb9) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/af25a1f4319ee69d0852f10ecbd330450609f514) * [OCPBUGS-10556](https://issues.redhat.com/browse/OCPBUGS-10556): Bump go.mongodb.org/mongo-driver to v1.5.1 [#176](https://github.com/openshift/csi-driver-manila-operator/pull/176) * [OCPBUGS-6599](https://issues.redhat.com/browse/OCPBUGS-6599): Address CVE-2022-41717 [#166](https://github.com/openshift/csi-driver-manila-operator/pull/166) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/6cad8759f4456659c9397a61d20a7f084bd90304...af25a1f4319ee69d0852f10ecbd330450609f514) ### [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs/tree/d90992573acb3df6c7fbb6dbe1b215125d26fc34) * [OCPBUGS-6590](https://issues.redhat.com/browse/OCPBUGS-6590): Address CVE-2022-41717 [#105](https://github.com/openshift/csi-driver-nfs/pull/105) * [Full changelog](https://github.com/openshift/csi-driver-nfs/compare/b7393faceb18e18eae133a6de89e4b4339295fa8...d90992573acb3df6c7fbb6dbe1b215125d26fc34) ### [docker-registry](https://github.com/openshift/image-registry/tree/95e39bf0e31a5af9ebcee698a69a4996a39e221a) * [OCPBUGS-10496](https://issues.redhat.com/browse/OCPBUGS-10496): bump docker-distribution [#365](https://github.com/openshift/image-registry/pull/365) * [OCPBUGS-8491](https://issues.redhat.com/browse/OCPBUGS-8491): bump aws-sdk-go [#362](https://github.com/openshift/image-registry/pull/362) * [Full changelog](https://github.com/openshift/image-registry/compare/3bf8e25d5694f7a4dbbe7620a1cc2e26d611cf60...95e39bf0e31a5af9ebcee698a69a4996a39e221a) ### [etcd](https://github.com/openshift/etcd/tree/c1d76ffd4b4cf0a0d2a6056a505fbef0b187c027) * Update owners [#185](https://github.com/openshift/etcd/pull/185) * Updating ose-etcd images to be consistent with ART [#153](https://github.com/openshift/etcd/pull/153) * [Full changelog](https://github.com/openshift/etcd/compare/978cfefd2f21c4ec1ac84ed95130cbff510fbe1b...c1d76ffd4b4cf0a0d2a6056a505fbef0b187c027) ### [fedora-coreos, machine-os-content, okd-rpms](https://github.com/openshift/okd-machine-os/tree/1de40e554a52787e52e4416fd423660b9d709980) * Bump fedora-coreos to latest stable [#569](https://github.com/openshift/okd-machine-os/pull/569) * Dockerfile: symlink netcat to nc [#565](https://github.com/openshift/okd-machine-os/pull/565) * Bump fedora-coreos-config to latest stable [#560](https://github.com/openshift/okd-machine-os/pull/560) * Bump fedora-coreos to latest stable [#555](https://github.com/openshift/okd-machine-os/pull/555) * Revert "Dockerfile.ci: report real FCOS version" [#552](https://github.com/openshift/okd-machine-os/pull/552) * Revert "DEBUG: don't pull in fresh FCOS" [#532](https://github.com/openshift/okd-machine-os/pull/532) * Dockerfile.ci: report real FCOS version [#549](https://github.com/openshift/okd-machine-os/pull/549) * manifests: remove extensions manifests [#548](https://github.com/openshift/okd-machine-os/pull/548) * selinux fixes: allow iptables wrapper to write to tmpfs [#546](https://github.com/openshift/okd-machine-os/pull/546) * Dockerfile: replace existing kubelet [#543](https://github.com/openshift/okd-machine-os/pull/543) * Add a service which applies custom SELinux fixes [#541](https://github.com/openshift/okd-machine-os/pull/541) * Dockerfile: enable services via systemd presets [#540](https://github.com/openshift/okd-machine-os/pull/540) * Dockerfile: install netcat [#538](https://github.com/openshift/okd-machine-os/pull/538) * Bump fedora-coreos to latest stable [#531](https://github.com/openshift/okd-machine-os/pull/531) * overlay: prevent NM from modifying resolv.conf [#528](https://github.com/openshift/okd-machine-os/pull/528) * Bump fedora-coreos to latest stable [#526](https://github.com/openshift/okd-machine-os/pull/526) * Dockerfile.rpms: use stable CRIO releases [#521](https://github.com/openshift/okd-machine-os/pull/521) * [Full changelog](https://github.com/openshift/okd-machine-os/compare/03a7b60ec1521a42695454f6ddd4d757ef56e485...1de40e554a52787e52e4416fd423660b9d709980) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/eab9cc98fe4c002916621ace6cdd623afa519203) * [OCPBUGS-8705](https://issues.redhat.com/browse/OCPBUGS-8705): Fix mounted volume expansion tests [#1503](https://github.com/openshift/kubernetes/pull/1503) * [OCPBUGS-7078](https://issues.redhat.com/browse/OCPBUGS-7078): Bump to k8s 1.25.7 [#1496](https://github.com/openshift/kubernetes/pull/1496) * [OCPBUGS-5769](https://issues.redhat.com/browse/OCPBUGS-5769): scc admission - seccomp profiles fix [#1471](https://github.com/openshift/kubernetes/pull/1471) * [Full changelog](https://github.com/openshift/kubernetes/compare/a34b9e9499e6c3a94e2326652bd8236a5378c0b2...eab9cc98fe4c002916621ace6cdd623afa519203) ### [hypershift](https://github.com/openshift/hypershift/tree/d7a9bda8bb954a91ab877e7edc6be31f9eeb351b) * [HOSTEDCP-806](https://issues.redhat.com/browse/HOSTEDCP-806): Fix ValidAWSKMSConfig condition [#2362](https://github.com/openshift/hypershift/pull/2362) * [OCPBUGS-11056](https://issues.redhat.com/browse/OCPBUGS-11056): fix external APIServer address selection based on endpointAccess [#2350](https://github.com/openshift/hypershift/pull/2350) * OCPBUGS-10823 ensure well known public domains do not get proxied on image imports [#2351](https://github.com/openshift/hypershift/pull/2351) * [SDA-8707](https://issues.redhat.com/browse/SDA-8707): No more specifying the scrape interval at servicemonitors & podmonitors level [#2356](https://github.com/openshift/hypershift/pull/2356) * [HOSTEDCP-900](https://issues.redhat.com/browse/HOSTEDCP-900): Modified AWSPrivateLinkController and AWSEndpointServiceController to respect PausedUntil spec field [#2285](https://github.com/openshift/hypershift/pull/2285) * [OCPBUGS-10504](https://issues.redhat.com/browse/OCPBUGS-10504): Deletion of the VPCEnpoint on conflicting service names [#2310](https://github.com/openshift/hypershift/pull/2310) * [HOSTEDCP-806](https://issues.redhat.com/browse/HOSTEDCP-806): [release-4.12] Validate etcd KMS config [#2273](https://github.com/openshift/hypershift/pull/2273) * [HOSTEDCP-801](https://issues.redhat.com/browse/HOSTEDCP-801): [release-4.12] Expose external DNS for private cluster endpoints [#2314](https://github.com/openshift/hypershift/pull/2314) * [HOSTEDCP-839](https://issues.redhat.com/browse/HOSTEDCP-839): Audit log sidecars for openshift-apiserver and openshift-oauth-apiserver [#2297](https://github.com/openshift/hypershift/pull/2297) * [OCPBUGS-10587](https://issues.redhat.com/browse/OCPBUGS-10587): Use appropriate serving certificate for OAuth [#2295](https://github.com/openshift/hypershift/pull/2295) * [OSD-15099](https://issues.redhat.com/browse/OSD-15099): Delaying the creation of servicemonitor and podmonitor resources till the hostedcluster is Completed [#2274](https://github.com/openshift/hypershift/pull/2274) * Add PodMonitor for ingress-operator pods in HCP namespaces [#2275](https://github.com/openshift/hypershift/pull/2275) * [OCPBUGS-8334](https://issues.redhat.com/browse/OCPBUGS-8334): [release-4.12] Update the pull secret source for ignition payload [#2268](https://github.com/openshift/hypershift/pull/2268) * Force controleplane upgrade always [#2289](https://github.com/openshift/hypershift/pull/2289) * [OCPBUGS-8370](https://issues.redhat.com/browse/OCPBUGS-8370): Fix cleanup of volumes on cluster deletion [#2253](https://github.com/openshift/hypershift/pull/2253) * [OCPBUGS-8241](https://issues.redhat.com/browse/OCPBUGS-8241): Add external DNS health condition / release-4.12 [#2206](https://github.com/openshift/hypershift/pull/2206) * [HOSTEDCP-809](https://issues.redhat.com/browse/HOSTEDCP-809): Clone CA key/cert to TLS key/cert [#2263](https://github.com/openshift/hypershift/pull/2263) * Add configuration for automatic labeling and label commands [#2255](https://github.com/openshift/hypershift/pull/2255) * fix(cpo): Delete multus validatingwebhookconfiguration on CNO init [#2251](https://github.com/openshift/hypershift/pull/2251) * feat(HCCO): Block DNS operator delete until Cluster Version updated [#2242](https://github.com/openshift/hypershift/pull/2242) * kms addition for pod identity workflow [#2247](https://github.com/openshift/hypershift/pull/2247) * Add e2e test for hosted cluster behind a proxy [#2199](https://github.com/openshift/hypershift/pull/2199) * Add e2e test for cluster creation with AWS KMS [#2201](https://github.com/openshift/hypershift/pull/2201) * [HOSTEDCP-826](https://issues.redhat.com/browse/HOSTEDCP-826): Customize DNS base domain prefix [#2235](https://github.com/openshift/hypershift/pull/2235) * feat: Add pod gone check to prober + DNS operator leader elect [#2209](https://github.com/openshift/hypershift/pull/2209) * fix(ibmcloud): Explicitly set HCCO controllers [#2208](https://github.com/openshift/hypershift/pull/2208) * ensure reconcilation of apiserver port is in 4.12 [#2195](https://github.com/openshift/hypershift/pull/2195) * Cleanup default security group only if authorized [#2212](https://github.com/openshift/hypershift/pull/2212) * fix(cpo): Set restart annotation on multus-admission-controller [#2190](https://github.com/openshift/hypershift/pull/2190) * fix(cpo): Remove OLM collect for IBM Cloud to reduce artifacts and rbac [#2189](https://github.com/openshift/hypershift/pull/2189) * fix(cpo): Reduce CNO access if Calico used as network provider [#2184](https://github.com/openshift/hypershift/pull/2184) * Skip destroyAWSDefaultSecurityGroup if not AWS [#2168](https://github.com/openshift/hypershift/pull/2168) * Create default security group for AWS clusters [#2162](https://github.com/openshift/hypershift/pull/2162) * [AUTH-323](https://issues.redhat.com/browse/AUTH-323): pki: split out konnectivity certs from the rootCA [#2156](https://github.com/openshift/hypershift/pull/2156) * fix(ibmcloud): Initialize image registry config on creates and bad config [#2104](https://github.com/openshift/hypershift/pull/2104) * fix(cpo): Allow KAS profiling disablement [#2122](https://github.com/openshift/hypershift/pull/2122) * reduce ignition server scope [#2140](https://github.com/openshift/hypershift/pull/2140) * OpenID add support for groups claim in the config [#2129](https://github.com/openshift/hypershift/pull/2129) * fix(cpo): Restart registry operator on annotation [#2121](https://github.com/openshift/hypershift/pull/2121) * [Full changelog](https://github.com/openshift/hypershift/compare/d93280cff4348d3d2e0438ae91e0cba06c614458...d7a9bda8bb954a91ab877e7edc6be31f9eeb351b) ### [ibm-vpc-block-csi-driver](https://github.com/openshift/ibm-vpc-block-csi-driver/tree/e0f7a3bc39c7941dfb8b03f4c111f98edbe4792f) * [OCPBUGS-8451](https://issues.redhat.com/browse/OCPBUGS-8451): Rebase to v5.1.2 for OCP 4.12 [#32](https://github.com/openshift/ibm-vpc-block-csi-driver/pull/32) * [Full changelog](https://github.com/openshift/ibm-vpc-block-csi-driver/compare/2364e6a3835070cdcec29375aa0a3bf296720f64...e0f7a3bc39c7941dfb8b03f4c111f98edbe4792f) ### [insights-operator](https://github.com/openshift/insights-operator/tree/4429a619890f9852e902a337dd571fe8a41f9d20) * [OCPBUGS-10531](https://issues.redhat.com/browse/OCPBUGS-10531): service_accounts.go Marshal fix (#754) [#754](https://github.com/openshift/insights-operator/pull/754) * [OCPBUGS-6732](https://issues.redhat.com/browse/OCPBUGS-6732): Anonymize env vars from containers: HTTP_PROXY, HTTPS_PROXY (#727) [#727](https://github.com/openshift/insights-operator/pull/727) * [OCPBUGS-6833](https://issues.redhat.com/browse/OCPBUGS-6833): feat(recent_metrics) adds openshift_apps_deploymentconfigs_strategy_total (#736) [#736](https://github.com/openshift/insights-operator/pull/736) * [OCPBUGS-6782](https://issues.redhat.com/browse/OCPBUGS-6782): Create gatherer for gathering machines. (#734) [#734](https://github.com/openshift/insights-operator/pull/734) * [Full changelog](https://github.com/openshift/insights-operator/compare/9b28d553555da54585cc05b018a1828fb8f81a5e...4429a619890f9852e902a337dd571fe8a41f9d20) ### [ironic](https://github.com/openshift/ironic-image/tree/5da16428e35519afe7fd68111474cd579ac66392) * [OCPBUGS-7566](https://issues.redhat.com/browse/OCPBUGS-7566): Bump werkzeug 4.12 [#352](https://github.com/openshift/ironic-image/pull/352) * [Full changelog](https://github.com/openshift/ironic-image/compare/27695b69851b0687e17b4325e364792026282d9f...5da16428e35519afe7fd68111474cd579ac66392) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/fb8e06532ecff1b15d19b33e0783001e5488025d) * [OCPBUGS-10805](https://issues.redhat.com/browse/OCPBUGS-10805): Fix race in Egress IP Tracker start [#521](https://github.com/openshift/sdn/pull/521) * [OCPBUGS-7474](https://issues.redhat.com/browse/OCPBUGS-7474): Initialize egress node monitoring struct with previous reachability status [#505](https://github.com/openshift/sdn/pull/505) * [OCPBUGS-6842](https://issues.redhat.com/browse/OCPBUGS-6842): Handle race condition to setup default vnid flows [#497](https://github.com/openshift/sdn/pull/497) * [OCPBUGS-7227](https://issues.redhat.com/browse/OCPBUGS-7227): Update for 4.12 / go 1.19, including gofmt updates [#482](https://github.com/openshift/sdn/pull/482) * [Full changelog](https://github.com/openshift/sdn/compare/d6903305ca12bf21f4ef6b96cb7aeed7defa2fc2...fb8e06532ecff1b15d19b33e0783001e5488025d) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/fb26570202ec71abef2c468d8d9d47c9abf84577) * [OCPBUGS-7882](https://issues.redhat.com/browse/OCPBUGS-7882): Block machine deletion if extra disks are attached [#1120](https://github.com/openshift/machine-api-operator/pull/1120) * [OCPBUGS-8286](https://issues.redhat.com/browse/OCPBUGS-8286): Short circuit misfiring [#1109](https://github.com/openshift/machine-api-operator/pull/1109) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/a99a63b994407212a5dcc83cc5bc7c02222350b3...fb26570202ec71abef2c468d8d9d47c9abf84577) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/52fe26136643a946ff1dd1307012cbdef31ebf97) * [OCPBUGS-7167](https://issues.redhat.com/browse/OCPBUGS-7167): Avoid 'too restrictive' SCC problems by being more explicit [#3542](https://github.com/openshift/machine-config-operator/pull/3542) * [OCPBUGS-10505](https://issues.redhat.com/browse/OCPBUGS-10505): daemon: Drop duplicate `--authfile` used in `run` [#3617](https://github.com/openshift/machine-config-operator/pull/3617) * [OCPBUGS-10372](https://issues.redhat.com/browse/OCPBUGS-10372): Remove hard requirement for the afterburn from early-running aws-related services [#3613](https://github.com/openshift/machine-config-operator/pull/3613) * [OCPBUGS-9993](https://issues.redhat.com/browse/OCPBUGS-9993): Revert "daemon: Temporarily copy auth file with more open perms on FCOS" [#3608](https://github.com/openshift/machine-config-operator/pull/3608) * [OCPBUGS-7445](https://issues.redhat.com/browse/OCPBUGS-7445): configure-ovs: fix mtu-migration cleanup [#3555](https://github.com/openshift/machine-config-operator/pull/3555) * [OCPBUGS-8261](https://issues.redhat.com/browse/OCPBUGS-8261): [release-4.12] backport cleanupDuplicateMC [#3578](https://github.com/openshift/machine-config-operator/pull/3578) * [OCPBUGS-6943](https://issues.redhat.com/browse/OCPBUGS-6943): Improvements for `configure-ovs.sh` [#3528](https://github.com/openshift/machine-config-operator/pull/3528) * [OCPBUGS-6045](https://issues.redhat.com/browse/OCPBUGS-6045): There are not enough logs in case "oc extract" is stuck in mco first boot [#3503](https://github.com/openshift/machine-config-operator/pull/3503) * [OCPBUGS-6973](https://issues.redhat.com/browse/OCPBUGS-6973): configure-ovs: optionally generate configuration in /run [#3532](https://github.com/openshift/machine-config-operator/pull/3532) * [OCPBUGS-6779](https://issues.redhat.com/browse/OCPBUGS-6779): baremetal: clean state generated by NM when run by dracut [#3521](https://github.com/openshift/machine-config-operator/pull/3521) * [OCPBUGS-7241](https://issues.redhat.com/browse/OCPBUGS-7241): controller: default overwrite to true for files [#3546](https://github.com/openshift/machine-config-operator/pull/3546) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/84e78c83d5f1d6cb97a43b264154f1f519b69fb2...52fe26136643a946ff1dd1307012cbdef31ebf97) ### [multus-admission-controller](https://github.com/openshift/multus-admission-controller/tree/5bd752a1dfe37d5894cd59b66aff6fe4a6a64cfc) * Updating ose-multus-admission-controller images to be consistent with ART [#61](https://github.com/openshift/multus-admission-controller/pull/61) * [OCPBUGS-10506](https://issues.redhat.com/browse/OCPBUGS-10506): Client golang [backport 4.12] [#59](https://github.com/openshift/multus-admission-controller/pull/59) * [Full changelog](https://github.com/openshift/multus-admission-controller/compare/d9b6b11b817058b84056c93d5089f55ff815f271...5bd752a1dfe37d5894cd59b66aff6fe4a6a64cfc) ### [multus-cni](https://github.com/openshift/multus-cni/tree/d59f94da5e080177e3a3f8c98045fd03cd74ed8d) * [OCPBUGS-10535](https://issues.redhat.com/browse/OCPBUGS-10535): Multus sync Mar-20-2023 to OCP 4.12 [#149](https://github.com/openshift/multus-cni/pull/149) * [OCPBUGS-7792](https://issues.redhat.com/browse/OCPBUGS-7792): Multus sync v3.9.3 to OCP 4.12 [#145](https://github.com/openshift/multus-cni/pull/145) * [Full changelog](https://github.com/openshift/multus-cni/compare/b34bd0f5ddaf6563b824e849c3819c684e74e567...d59f94da5e080177e3a3f8c98045fd03cd74ed8d) ### [network-interface-bond-cni](https://github.com/openshift/bond-cni/tree/e8d4dc2e25fa71ca34c3066097aaf8511daf2b1e) * Updating ose-network-interface-bond-cni images to be consistent with ART [#37](https://github.com/openshift/bond-cni/pull/37) * [Full changelog](https://github.com/openshift/bond-cni/compare/a88d72fc5df78d3a43ec17cf313ac57678423b87...e8d4dc2e25fa71ca34c3066097aaf8511daf2b1e) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/ccff7e70c454a543ced557ae3209a631852550de) * Updating ose-network-metrics-daemon images to be consistent with ART (#60) [#60](https://github.com/openshift/network-metrics-daemon/pull/60) * Fix gofmt check issue (#68) [#68](https://github.com/openshift/network-metrics-daemon/pull/68) * Update golang.org/x/text to 0.7.0 (#66) [#66](https://github.com/openshift/network-metrics-daemon/pull/66) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/2dfa218ea9feb2b80f22f16c27bddd16fbcbfb87...ccff7e70c454a543ced557ae3209a631852550de) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/cfafdccf09150ab55b8b853df16e4395ff3bda4b) * Updating ose-oauth-apiserver images to be consistent with ART [#80](https://github.com/openshift/oauth-apiserver/pull/80) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/94026d8cfe0ae214aec62a5f14ae5934676b4355...cfafdccf09150ab55b8b853df16e4395ff3bda4b) ### [oc-mirror](https://github.com/openshift/oc-mirror/tree/7635353ed12fdcb725855b1d4165cfec8dc10e16) * [OCPBUGS-863](https://issues.redhat.com/browse/OCPBUGS-863): Add skip pruning flag and logic (#591) [#591](https://github.com/openshift/oc-mirror/pull/591) * Bugfix for destination registry nested paths length (#590) [#590](https://github.com/openshift/oc-mirror/pull/590) * [OCPBUGS-6703](https://issues.redhat.com/browse/OCPBUGS-6703): fix: adds logic that searches for the correct name when using a heads… (#554) [#554](https://github.com/openshift/oc-mirror/pull/554) * [Full changelog](https://github.com/openshift/oc-mirror/compare/4d9ea8d0d25673c0af0950adf8c6b8714ea6016c...7635353ed12fdcb725855b1d4165cfec8dc10e16) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/635ed5cc49f0d9668969a8a78bec91d426b4d26b) * [OCPBUGS-8717](https://issues.redhat.com/browse/OCPBUGS-8717): Clear metadata.namespace on projects before write. [#358](https://github.com/openshift/openshift-apiserver/pull/358) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/30c5f26d173c7576d396b8d74707de03da266ce2...635ed5cc49f0d9668969a8a78bec91d426b4d26b) ### [openstack-machine-api-provider](https://github.com/openshift/machine-api-provider-openstack/tree/c6d1737cc8b0cc3e27823691d5cc26b1478b9169) * [OCPBUGS-10603](https://issues.redhat.com/browse/OCPBUGS-10603): machineset_controller: Stop caching clouds credentials [#65](https://github.com/openshift/machine-api-provider-openstack/pull/65) * [OCPBUGS-7155](https://issues.redhat.com/browse/OCPBUGS-7155): Address CVE-2022-41717 [#55](https://github.com/openshift/machine-api-provider-openstack/pull/55) * [Full changelog](https://github.com/openshift/machine-api-provider-openstack/compare/5f1ea9f0dbdadb30f67e7539ff357170f9401773...c6d1737cc8b0cc3e27823691d5cc26b1478b9169) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/dd3cc9cbf5ccc16441f427b2d1386d6ca430f82f) * [OCPBUGS-7650](https://issues.redhat.com/browse/OCPBUGS-7650): Catalog Pod Startup Probe Timeout [#450](https://github.com/openshift/operator-framework-olm/pull/450) * Updating operator-registry images to be consistent with ART [#397](https://github.com/openshift/operator-framework-olm/pull/397) * [OCPBUGS-7825](https://issues.redhat.com/browse/OCPBUGS-7825): Set openshift.io/scc label to empty [#456](https://github.com/openshift/operator-framework-olm/pull/456) * [OCPBUGS-7769](https://issues.redhat.com/browse/OCPBUGS-7769): [release-4.12] update cluster policy operator dependency [#454](https://github.com/openshift/operator-framework-olm/pull/454) * [OCPBUGS-7556](https://issues.redhat.com/browse/OCPBUGS-7556): Defuse E2e timebomb [#449](https://github.com/openshift/operator-framework-olm/pull/449) * [OCPBUGS-7086](https://issues.redhat.com/browse/OCPBUGS-7086): cherry-pick pull request refactor FBC caching (#1051) f… [#441](https://github.com/openshift/operator-framework-olm/pull/441) * [OCPBUGS-6260](https://issues.redhat.com/browse/OCPBUGS-6260): Catalog, fatal error: concurrent map read and map write [#440](https://github.com/openshift/operator-framework-olm/pull/440) * [OCPBUGS-7025](https://issues.redhat.com/browse/OCPBUGS-7025): Set ImagePullPolicy of bundle unpacker to "IfNotPresent" for image digests [#439](https://github.com/openshift/operator-framework-olm/pull/439) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/d6d213925d54c360f4d2f93ef729ff983322375a...dd3cc9cbf5ccc16441f427b2d1386d6ca430f82f) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/787275319a2820e8fa5ba304b6425250cbd2d145) * [OCPBUGS-7108](https://issues.redhat.com/browse/OCPBUGS-7108): Default CatalogSource aren't always reverted to default settings [#506](https://github.com/operator-framework/operator-marketplace/pull/506) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/87790da6e17fccb6fd53b23f7eb060611fe73c2b...787275319a2820e8fa5ba304b6425250cbd2d145) ### [ovn-kubernetes, ovn-kubernetes-microshift](https://github.com/openshift/ovn-kubernetes/tree/ffce71cb9cc045517288ed0f28a5d25c059d2438) * [OCPBUGS-10947](https://issues.redhat.com/browse/OCPBUGS-10947): [release-4.12] Egress firewall fix retry [#1610](https://github.com/openshift/ovn-kubernetes/pull/1610) * [OCPBUGS-10314](https://issues.redhat.com/browse/OCPBUGS-10314): [release-4.12] Handle Completed pods deletion [#1581](https://github.com/openshift/ovn-kubernetes/pull/1581) * Updating ovn-kubernetes-microshift images to be consistent with ART [#1288](https://github.com/openshift/ovn-kubernetes/pull/1288) * [OCPBUGS-10632](https://issues.redhat.com/browse/OCPBUGS-10632): Check the "Serving" field for endpoints [#1569](https://github.com/openshift/ovn-kubernetes/pull/1569) * [OCPBUGS-6034](https://issues.redhat.com/browse/OCPBUGS-6034): Update egress node assignability on every egress node update [#1483](https://github.com/openshift/ovn-kubernetes/pull/1483) * [OCPBUGS-7732](https://issues.redhat.com/browse/OCPBUGS-7732): Fix leak in service controller cache [#1545](https://github.com/openshift/ovn-kubernetes/pull/1545) * [OCPBUGS-10490](https://issues.redhat.com/browse/OCPBUGS-10490): [release-4.12] Move checkForStaleOVSInterfaces and related code to node.go [#1595](https://github.com/openshift/ovn-kubernetes/pull/1595) * [OCPBUGS-10318](https://issues.redhat.com/browse/OCPBUGS-10318): [release-4.12] node: add node healthz server for cloud load balancers [#1570](https://github.com/openshift/ovn-kubernetes/pull/1570) * [OCPBUGS-7346](https://issues.redhat.com/browse/OCPBUGS-7346): [release-4.12] Fully remove dependency on default gateway for services [#1577](https://github.com/openshift/ovn-kubernetes/pull/1577) * [OCPBUGS-6957](https://issues.redhat.com/browse/OCPBUGS-6957): [release-4.12] Ensure routes are not duplicated [#1503](https://github.com/openshift/ovn-kubernetes/pull/1503) * [OCPBUGS-8501](https://issues.redhat.com/browse/OCPBUGS-8501), [OCPBUGS-8506](https://issues.redhat.com/browse/OCPBUGS-8506), [OCPBUGS-8508](https://issues.redhat.com/browse/OCPBUGS-8508): [release-4.12] Fix EFW's name truncation logic & make EFW ACLs unique using extIDs [#1559](https://github.com/openshift/ovn-kubernetes/pull/1559) * [OCPBUGS-7223](https://issues.redhat.com/browse/OCPBUGS-7223): node: don't consider internal masquerade addresses as node IP addresses [#1528](https://github.com/openshift/ovn-kubernetes/pull/1528) * [OCPBUGS-7317](https://issues.redhat.com/browse/OCPBUGS-7317): [release-4.12] Delete stale egress ip snat entries by node [#1520](https://github.com/openshift/ovn-kubernetes/pull/1520) * [OCPBUGS-7026](https://issues.redhat.com/browse/OCPBUGS-7026): Bump OVN to 22.12 and turn off neighbour response in router options. [#1521](https://github.com/openshift/ovn-kubernetes/pull/1521) * [OCPBUGS-6040](https://issues.redhat.com/browse/OCPBUGS-6040): addMasqueradeRoute: fallback to gateway interface IPs [#1484](https://github.com/openshift/ovn-kubernetes/pull/1484) * [OCPBUGS-7230](https://issues.redhat.com/browse/OCPBUGS-7230): Delete IGMP Groups when deleting stale chassis [#1516](https://github.com/openshift/ovn-kubernetes/pull/1516) * [OCPBUGS-3399](https://issues.redhat.com/browse/OCPBUGS-3399): Drop in-cluster traffic towards svcCIDR at wrong port [#1490](https://github.com/openshift/ovn-kubernetes/pull/1490) * [OCPBUGS-6961](https://issues.redhat.com/browse/OCPBUGS-6961): update base image of Dockerfile [#1504](https://github.com/openshift/ovn-kubernetes/pull/1504) * [OCPBUGS-6823](https://issues.redhat.com/browse/OCPBUGS-6823): [release-4.12] Fix Egress FW ACL rules in dualstack mode [#1500](https://github.com/openshift/ovn-kubernetes/pull/1500) * [OCPBUGS-4862](https://issues.redhat.com/browse/OCPBUGS-4862): Correct the deletion of noHostSubnet nodes [#1470](https://github.com/openshift/ovn-kubernetes/pull/1470) * [OCPBUGS-298](https://issues.redhat.com/browse/OCPBUGS-298): ovnkube-trace: run ovn-sbctl and ovn-trace with --no-leader-only [#1489](https://github.com/openshift/ovn-kubernetes/pull/1489) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/e5fff733e0936d3ce30633f41d402da82e173186...ffce71cb9cc045517288ed0f28a5d25c059d2438) ### [prometheus-config-reloader, prometheus-operator, prometheus-operator-admission-webhook](https://github.com/openshift/prometheus-operator/tree/57e7c5741af878b97e473827c5bd82462e996856) * [OCPBUGS-7458](https://issues.redhat.com/browse/OCPBUGS-7458): Fixes ThanoRuler StatefulSet re-creation bug [#217](https://github.com/openshift/prometheus-operator/pull/217) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/9b41d30910b7f36da0dad500fdb0870e86759366...57e7c5741af878b97e473827c5bd82462e996856) ### [telemeter](https://github.com/openshift/telemeter/tree/fc631fcbec5c87612ab52476818b4f264b7ab849) * [OCPBUGS-7702](https://issues.redhat.com/browse/OCPBUGS-7702): Add 'agent-installer' value to 'install_type' label [#451](https://github.com/openshift/telemeter/pull/451) * [Full changelog](https://github.com/openshift/telemeter/compare/4d304019274307c21afefa108493c8af89a2429d...fc631fcbec5c87612ab52476818b4f264b7ab849) ### [tests](https://github.com/openshift/origin/tree/157761f6c6ab4095b2819fb6caeca23351525849) * [OCPBUGS-8705](https://issues.redhat.com/browse/OCPBUGS-8705): Bump(openshift/kubernetes): to get fix for resizing flake [#27794](https://github.com/openshift/origin/pull/27794) * [OCPBUGS-8024](https://issues.redhat.com/browse/OCPBUGS-8024): Backport fixes to resume gathering CI disruption data for SLB and image registry [#27759](https://github.com/openshift/origin/pull/27759) * [OCPBUGS-7633](https://issues.redhat.com/browse/OCPBUGS-7633): remove reference to old guard pods [#27732](https://github.com/openshift/origin/pull/27732) * [OCPBUGS-7285](https://issues.redhat.com/browse/OCPBUGS-7285): extended: security: do not explicitly set api audience on token request [#27716](https://github.com/openshift/origin/pull/27716) * [OCPBUGS-6850](https://issues.redhat.com/browse/OCPBUGS-6850): [release-4.12] upgrade/adminack: guarantee one admin ack check post-upgrade [#27684](https://github.com/openshift/origin/pull/27684) * [Full changelog](https://github.com/openshift/origin/compare/bcbf338ea7ca23ed7b6014455d17b09b66417355...157761f6c6ab4095b2819fb6caeca23351525849) ### [vsphere-csi-driver, vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver/tree/0eda8a0d61cdfc88e57d23b6c0b9f1b11ae7a731) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Add migrationDataStore field [#59](https://github.com/openshift/vmware-vsphere-csi-driver/pull/59) * [OCPBUGS-6936](https://issues.redhat.com/browse/OCPBUGS-6936): fix for nil user session (#1859) [#57](https://github.com/openshift/vmware-vsphere-csi-driver/pull/57) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver/compare/df89e303405042aa0c8f8704962910a4ef486ab8...0eda8a0d61cdfc88e57d23b6c0b9f1b11ae7a731) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/4861197f38425f4f92c7c28b7e65f1ec42f5dabf) * [OCPBUGS-7901](https://issues.redhat.com/browse/OCPBUGS-7901): Bump sidecar timeouts for vsphere [#142](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/142) * [OCPBUGS-7426](https://issues.redhat.com/browse/OCPBUGS-7426): Fix datastore migration bug in 4.12 [#139](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/139) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/03999e46b954151b52c7dc799b7341ca7d3e1744...4861197f38425f4f92c7c28b7e65f1ec42f5dabf) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/c65eb79c378729ef266cdc219324ecc3e7c3ac87) * [OCPBUGS-6788](https://issues.redhat.com/browse/OCPBUGS-6788): Derive the fully qualified vSphere username when checking permissions [#98](https://github.com/openshift/vsphere-problem-detector/pull/98) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/7328d215995baa4bdf623021741c669251ea4296...c65eb79c378729ef266cdc219324ecc3e7c3ac87)